Et voila le rapport Combofix!!!!
ComboFix 08-12-09.03 - Sa3p 2008-12-11 15:22:34.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.1.1036.18.1675 [GMT 1:00]
Lancé depuis: c:\documents and settings\Sa3p\Bureau\ComboFix.exe
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-11-11 au 2008-12-11 ))))))))))))))))))))))))))))))))))))
.
2008-12-11 15:06 . 2008-12-11 15:06 <REP> d-------- c:\program files\Trend Micro
2008-12-11 05:07 . 2008-12-11 05:07 <REP> d-------- c:\windows\system32\Kaspersky Lab
2008-12-11 03:59 . 2008-12-11 03:59 <REP> d--h----- c:\windows\system32\GroupPolicy
2008-12-10 23:25 . 2008-12-10 23:25 <REP> d-------- c:\program files\MSBuild
2008-12-10 23:22 . 2008-12-10 23:22 <REP> d-------- c:\windows\system32\XPSViewer
2008-12-10 23:22 . 2008-12-10 23:22 <REP> d-------- c:\program files\Reference Assemblies
2008-12-10 23:21 . 2006-06-29 13:07 14,048 --------- c:\windows\system32\spmsg2.dll
2008-12-10 22:47 . 2008-12-10 22:47 35,328 --a------ c:\windows\system32\qoMfcBrR.dll
2008-12-10 22:47 . 2008-12-10 22:47 35,328 --a------ c:\windows\system32\geBusqrS.dll
2008-12-10 22:46 . 2008-12-10 22:46 35,328 --a------ c:\windows\system32\yaywtsRj.dll
2008-12-10 22:33 . 2008-12-10 22:33 <REP> dr-h----- c:\documents and settings\Sa3p\Application Data\SecuROM
2008-12-10 22:32 . 2008-12-10 22:44 107,888 --a------ c:\windows\system32\CmdLineExt.dll
2008-12-10 22:30 . 2008-12-10 22:30 <REP> d-------- c:\windows\system32\xlive
2008-12-10 22:30 . 2008-12-10 23:50 <REP> d-------- c:\program files\Microsoft Games for Windows - LIVE
2008-12-10 22:30 . 2007-04-04 18:53 81,768 --a------ c:\windows\system32\xinput1_3.dll
2008-12-10 22:15 . 2008-12-10 23:17 <REP> d-------- c:\program files\Rockstar Games
2008-12-10 16:30 . 2008-12-10 16:30 <REP> d-------- c:\program files\Audacity
2008-12-10 03:29 . 2008-03-09 07:25 236 --ah----- c:\program files\Fichiers communs\dx.reg
2008-12-10 02:52 . 2008-12-11 15:14 <REP> d-------- c:\program files\Mozilla Firefox 3.1 Beta 2
2008-12-10 02:47 . 2008-12-10 02:47 <REP> d-------- c:\program files\CCleaner
2008-12-10 02:44 . 2008-12-10 02:44 0 --ah----- c:\windows\system32\drivers\MsftWdf_user_01_07_00.Wdf
2008-12-10 02:44 . 2008-12-10 02:44 0 --ah----- c:\windows\system32\drivers\Msft_User_M4iPodWPDDriver_01_07_00.Wdf
2008-12-10 02:42 . 2008-12-10 02:42 <REP> d-------- c:\program files\Windows Media Connect 2
2008-12-10 02:41 . 2008-12-10 02:41 <REP> d-------- c:\windows\system32\LogFiles
2008-12-10 02:41 . 2008-12-10 02:44 <REP> d-------- c:\windows\system32\drivers\UMDF
2008-12-10 02:33 . 2008-12-10 02:33 <REP> d-------- c:\documents and settings\Sa3p\Application Data\CopyTrans
2008-12-10 02:32 . 2008-12-10 02:33 <REP> d-------- c:\documents and settings\Sa3p\Application Data\CopyTransManager
2008-12-10 02:32 . 2008-12-10 02:32 <REP> d-------- c:\documents and settings\Sa3p\Application Data\CopyTransControlCenter
2008-12-09 23:24 . 2008-12-11 03:34 <REP> d-------- c:\documents and settings\Sa3p\Application Data\BitTorrent
2008-12-09 23:23 . 2008-12-11 15:21 <REP> d-------- c:\program files\DNA
2008-12-09 23:23 . 2008-12-09 23:23 <REP> d-------- c:\program files\BitTorrent
2008-12-09 23:23 . 2008-12-09 23:23 <REP> d-------- c:\program files\AskSearch
2008-12-09 23:23 . 2008-12-11 15:21 <REP> d-------- c:\documents and settings\Sa3p\Application Data\DNA
2008-12-09 21:22 . 2008-12-09 21:22 236 --a------ C:\sqmdata01.sqm
2008-12-09 21:22 . 2008-12-09 21:22 200 --a------ C:\sqmnoopt01.sqm
2008-12-09 08:36 . 2008-12-09 08:36 <REP> d-------- c:\documents and settings\Sa3p\Application Data\Thinking Minds Budiling Bytes
2008-12-09 03:56 . 2008-12-10 00:34 <REP> d-------- c:\documents and settings\Sa3p\Application Data\dvdcss
2008-12-09 03:51 . 2008-12-11 14:58 <REP> d-------- c:\documents and settings\Sa3p\Tracing
2008-12-09 03:45 . 2008-12-09 03:45 <REP> d-------- c:\program files\Microsoft
2008-12-09 03:43 . 2008-12-09 03:43 <REP> d-------- c:\program files\Fichiers communs\Windows Live
2008-12-09 02:38 . 2008-12-11 15:20 200,712 --a------ c:\windows\system32\nvapps.xml
2008-12-09 02:37 . 2008-12-09 02:37 <REP> d-------- c:\windows\nview
2008-12-09 02:37 . 2008-09-17 23:55 453,152 --a------ c:\windows\system32\nvuninst.exe
2008-12-09 02:37 . 2008-09-17 23:55 453,152 --a------ c:\windows\system32\nvudisp.exe
2008-12-09 02:37 . 2008-09-17 23:55 18,394 --a------ c:\windows\system32\nvdisp.nvu
2008-12-09 02:19 . 2008-12-09 02:19 <REP> d-------- c:\program files\Avira
2008-12-09 02:19 . 2008-12-09 02:19 <REP> d-------- c:\documents and settings\All Users\Application Data\Avira
2008-12-09 02:19 . 2008-12-09 02:19 664 --a------ c:\windows\system32\d3d9caps.dat
2008-12-09 02:07 . 2008-12-09 02:08 <REP> d-------- c:\program files\Winamp
2008-12-09 02:07 . 2008-12-09 02:08 <REP> d-------- c:\documents and settings\Sa3p\Application Data\Winamp
2008-12-09 02:04 . 2008-12-09 02:04 <REP> d-------- c:\program files\Fichiers communs\Adobe
2008-12-09 02:03 . 2008-12-09 02:15 <REP> d-------- c:\program files\NOS
2008-12-09 02:03 . 2008-12-09 02:15 <REP> d-------- c:\documents and settings\All Users\Application Data\NOS
2008-12-09 00:49 . 2008-12-09 00:49 <REP> d-------- c:\documents and settings\All Users\Application Data\Messenger Plus!
2008-12-04 12:42 . 2008-09-12 11:44 206,256 --a------ c:\windows\system32\idmmbc.dll
2008-11-27 23:55 . 2008-12-09 16:46 <REP> d-------- c:\program files\Messenger Plus! Live
2008-11-27 20:03 . 2008-11-27 20:51 <REP> d-------- c:\program files\ma-config.com
2008-11-27 20:03 . 2008-11-27 20:03 <REP> d-------- c:\documents and settings\All Users\Application Data\ma-config.com
2008-11-27 19:39 . 2008-11-27 19:41 <REP> d-------- c:\windows\NV38564084.TMP
2008-11-27 18:46 . 2008-11-27 18:46 <REP> d-------- c:\program files\ASIO4ALL v2
2008-11-27 17:13 . 2008-11-27 17:13 <REP> d-------- c:\program files\VideoLAN
2008-11-27 17:13 . 2008-11-27 17:14 <REP> d-------- c:\documents and settings\Sa3p\Application Data\vlc
2008-11-27 16:49 . 2008-10-16 14:06 268,648 --a------ c:\windows\system32\mucltui.dll
2008-11-27 16:49 . 2008-10-16 14:06 27,496 --a------ c:\windows\system32\mucltui.dll.mui
2008-11-27 15:39 . 2008-11-27 15:39 <REP> d-------- c:\program files\MozBackup
2008-11-27 15:37 . 2008-11-27 15:37 0 --a------ c:\windows\nsreg.dat
2008-11-27 13:39 . 2008-11-27 13:39 <REP> d-------- c:\windows\system32\CatRoot_bak
2008-11-27 13:24 . 2008-11-27 13:24 <REP> d-------- c:\windows\system32\fr-fr
2008-11-27 13:23 . 2006-11-03 10:03 8,292,352 -----c--- c:\windows\system32\dllcache\wmploc.dll
2008-11-27 13:21 . 2006-12-28 12:01 19,569 --a------ c:\windows\[u]0/u05165_.tmp
2008-11-27 13:21 . 2008-04-13 11:40 10,240 --------- c:\windows\system32\drivers\sffp_mmc.sys
2008-11-27 13:04 . 2008-06-14 18:33 272,768 -----c--- c:\windows\system32\dllcache\bthport.sys
2008-11-27 13:04 . 2008-08-14 11:04 138,496 -----c--- c:\windows\system32\dllcache\afd.sys
2008-11-27 13:03 . 2008-09-15 16:26 1,846,528 -----c--- c:\windows\system32\dllcache\win32k.sys
2008-11-27 13:03 . 2008-09-08 11:41 333,824 -----c--- c:\windows\system32\dllcache\srv.sys
2008-11-27 13:01 . 2008-08-14 14:23 2,191,232 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
2008-11-27 13:01 . 2008-08-14 14:23 2,147,328 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
2008-11-27 13:01 . 2008-08-14 14:23 2,068,096 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
2008-11-27 13:01 . 2008-08-14 14:23 2,025,984 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
2008-11-27 13:00 . 2008-10-24 12:21 455,296 -----c--- c:\windows\system32\dllcache\mrxsmb.sys
2008-11-27 13:00 . 2008-05-01 15:36 331,776 -----c--- c:\windows\system32\dllcache\msadce.dll
2008-11-27 13:00 . 2008-05-08 15:02 203,136 -----c--- c:\windows\system32\dllcache\rmcast.sys
2008-11-27 12:59 . 2008-09-04 18:16 1,106,944 -----c--- c:\windows\system32\dllcache\msxml3.dll
2008-11-27 12:59 . 2008-04-11 20:05 691,712 -----c--- c:\windows\system32\dllcache\inetcomm.dll
2008-11-27 12:59 . 2008-10-15 17:35 337,408 -----c--- c:\windows\system32\dllcache\netapi32.dll
2008-11-27 12:57 . 2008-12-11 15:19 <REP> d-------- c:\program files\Internet Download Manager
2008-11-27 12:57 . 2008-11-27 15:25 <REP> d-------- c:\documents and settings\Sa3p\Contacts
2008-11-27 12:57 . 2008-12-11 14:59 <REP> d-------- c:\documents and settings\Sa3p\Application Data\IDM
2008-11-27 12:57 . 2008-12-11 15:23 <REP> d-------- c:\documents and settings\Sa3p\Application Data\DMCache
2008-11-27 12:55 . 2008-11-27 12:55 268 --ah----- C:\sqmdata00.sqm
2008-11-27 12:55 . 2008-11-27 12:55 244 --ah----- C:\sqmnoopt00.sqm
2008-11-27 12:28 . 2008-12-09 21:32 <REP> d--h----- c:\windows\$hf_mig$
2008-11-27 12:25 . 2008-11-27 12:25 <REP> d---s---- c:\documents and settings\Sa3p\UserData
2008-11-27 12:13 . 2008-12-09 03:45 <REP> d-------- c:\program files\Windows Live
2008-11-27 12:13 . 2008-11-27 12:17 <REP> d--hsc--- c:\program files\Fichiers communs\WindowsLiveInstaller
2008-11-27 12:13 . 2008-11-27 12:13 <REP> d-------- c:\documents and settings\All Users\Application Data\WLInstaller
2008-11-27 12:06 . 2006-12-08 15:20 10,528,768 --a------ c:\windows\system32\RTLCPL.exe
2008-11-27 12:06 . 2008-09-24 10:40 4,122,368 -ra------ c:\windows\system32\drivers\alcxwdm.sys
2008-11-27 12:06 . 2002-02-05 13:54 141,016 --a------ c:\windows\system32\alsndmgr.wav
2008-11-27 12:05 . 2008-11-27 12:05 <REP> d-------- c:\program files\Realtek AC97
2008-11-27 12:05 . 2006-07-31 11:19 315,392 --a------ c:\windows\alcupd.exe
2008-11-27 12:05 . 2006-07-31 11:27 217,088 --a------ c:\windows\alcrmv.exe
2008-11-27 11:55 . 2008-08-05 20:10 1,684,736 --a------ c:\windows\system32\drivers\Ambfilt.sys
2008-11-27 11:55 . 2006-01-04 15:41 1,389,056 --a------ c:\windows\system32\drivers\Monfilt.sys
2008-11-27 11:55 . 2008-11-10 15:35 34,816 --a------ c:\windows\system32\RtkCoInstXP.dll
2008-11-27 11:55 . 2007-11-14 15:18 553 --a------ c:\windows\USetup.iss
2008-11-27 11:47 . 2007-05-31 08:19 96,896 -ra------ c:\windows\system32\drivers\Rtenicxp.sys
2008-11-27 11:46 . 2008-11-27 11:46 <REP> d-------- c:\windows\system32\Lang
2008-11-27 11:46 . 2008-11-27 11:46 <REP> d-------- c:\windows\OPTIONS
2008-11-27 11:46 . 2008-11-27 11:46 <REP> d-------- c:\documents and settings\Sa3p\Application Data\InstallShield
2008-11-27 11:46 . 2008-11-27 11:46 940,794 --a------ c:\windows\system32\LoopyMusic.wav
2008-11-27 11:46 . 2008-11-27 11:46 146,650 --a------ c:\windows\system32\BuzzingBee.wav
2008-11-27 11:42 . 2008-11-27 12:17 <REP> d----c--- c:\windows\system32\DRVSTORE
2008-11-27 11:42 . 2008-11-27 11:46 <REP> d-------- c:\program files\Realtek
2008-11-27 11:42 . 2008-11-27 11:42 <REP> d-------- c:\program files\Fichiers communs\InstallShield
2008-11-27 11:42 . 2008-11-27 11:42 <REP> d-------- c:\program files\DIFX
2008-11-27 11:40 . 2008-11-27 11:40 <REP> d-------- c:\documents and settings\LocalService\Menu Démarrer
2008-11-27 11:39 . 2008-11-27 11:39 <REP> d---s---- c:\windows\system32\Microsoft
2008-11-26 01:02 . 2008-11-26 00:22 261 --a------ c:\windows\system32\$winnt$.inf
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-10 22:27 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-27 11:54 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2008-11-27 10:46 16,512 ----a-w c:\windows\gdrv.sys
2008-11-25 23:30 21,419 ----a-w c:\windows\system32\drivers\AegisP.sys
2008-11-25 23:29 --------- d-----w c:\program files\Belkin
2008-11-25 23:20 --------- d-----w c:\program files\microsoft frontpage
2008-11-25 23:17 --------- d-----w c:\program files\Services en ligne
2008-11-11 16:21 4,946,944 ----a-w c:\windows\system32\drivers\RtkHDAud.sys
2008-11-07 15:40 17,421,824 ----a-w c:\windows\RTHDCPL.EXE
2008-10-28 16:41 14,303,392 ----a-w c:\windows\system32\xlive.dll
2008-10-28 16:41 13,643,936 ----a-w c:\windows\system32\xlivefnt.dll
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-16 13:06 208,744 ----a-w c:\windows\system32\muweb.dll
2008-10-16 01:01 670,208 ----a-w c:\windows\system32\wininet.dll
2008-10-03 10:03 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-09-30 15:38 2,168,320 ----a-w c:\windows\MicCal.exe
2008-09-22 15:34 1,302,600 ----a-w c:\windows\system32\WUDFUpdate_01007.dll
2008-09-19 16:48 1,200,128 ----a-w c:\windows\RtlUpd.exe
2008-09-15 15:26 1,846,528 ----a-w c:\windows\system32\win32k.sys
.
((((((((((((((((((((((((((((( snapshot@2008-12-11_15.21.09.67 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-12-11 14:00:56 66,512 ----a-w c:\windows\system32\perfc009.dat
+ 2008-12-11 14:23:25 66,512 ----a-w c:\windows\system32\perfc009.dat
- 2008-12-11 14:00:56 79,268 ----a-w c:\windows\system32\perfc00C.dat
+ 2008-12-11 14:23:25 79,268 ----a-w c:\windows\system32\perfc00C.dat
- 2008-12-11 14:00:56 427,728 ----a-w c:\windows\system32\perfh009.dat
+ 2008-12-11 14:23:25 427,728 ----a-w c:\windows\system32\perfh009.dat
- 2008-12-11 14:00:56 495,068 ----a-w c:\windows\system32\perfh00C.dat
+ 2008-12-11 14:23:25 495,068 ----a-w c:\windows\system32\perfh00C.dat
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}]
2008-12-10 22:46 35328 --a------ c:\windows\system32\yaywtsRj.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2008-12-04 2745776]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2008-12-09 342336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-09-17 13574144]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-09-17 86016]
"RTHDCPL"="RTHDCPL.EXE" [2008-11-07 c:\windows\RTHDCPL.EXE]
"nwiz"="nwiz.exe" [2008-09-17 c:\windows\system32\nwiz.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-13 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Belkin F5D8053 N Wireless USB Adapter Utility.lnk - c:\program files\Belkin\F5D8053\Belkinwcui.exe [2007-09-17 1732608]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}"= "c:\windows\system32\yaywtsRj.dll" [2008-12-10 35328]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\yaywtsRj]
2008-12-10 22:46 35328 c:\windows\system32\yaywtsRj.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=brdlcq.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Internet Download Manager\\IDMan.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\GTAIV.exe"=
R2 AWISp50;AWISp50 NDIS Protocol Driver;c:\windows\system32\Drivers\AWISp50.sys [2006-03-15 17664]
S3 rt2870;Ralink 802.11n USB Wireless LAN Card Driver;c:\windows\system32\DRIVERS\rt2870.sys [2007-07-28 517632]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.ask.com/?o=101760&l=dis
IE: Télécharger avec IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: Télécharger le contenu de video FLV avec IDM - c:\program files\Internet Download Manager\IEGetVL.htm
IE: Télécharger tous les liens avec IDM - c:\program files\Internet Download Manager\IEGetAll.htm
c:\windows\Downloaded Program Files\ewidoOnlineScan.dll - O16 -: {193C772A-87BE-4B19-A7BB-445B226FE9A1}
hxxp://downloads.ewido.net/ewidoOnlineScan.cab
FireFox -: Profile - c:\documents and settings\Sa3p\Application Data\Mozilla\Firefox\Profiles\8u5kduab.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - www.google.com
FF -: plugin - c:\documents and settings\Sa3p\Application Data\Mozilla\Firefox\Profiles\8u5kduab.default\extensions\{bb628310-0ab7-11db-9cd8-0800200c9a66}\plugins\nphardwaredetection.dll
FF -: plugin - c:\program files\DNA\plugins\npbtdna.dll
FF -: plugin - c:\program files\Mozilla Firefox 3.1 Beta 2\plugins\npnul32.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-11 15:23:33
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(916)
c:\windows\system32\yaywtsRj.dll
.
Heure de fin: 2008-12-11 15:24:12
ComboFix-quarantined-files.txt 2008-12-11 14:24:10
ComboFix2.txt 2008-12-11 14:21:35
Avant-CF: 93 427 900 416 octets libres
Après-CF: 93,415,526,400 octets libres
245 --- E O F --- 2008-12-09 20:32:50