Voilà le rapport, je crioise les doigts:
ComboFix 09-07-01.04 - Michel FOULQUIER 02/07/2009 18:39.7 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.1023.595 [GMT 2:00]
Lancé depuis: c:\documents and settings\Michel FOULQUIER\Bureau\Combofix.exe
Commutateurs utilisés :: c:\documents and settings\Michel FOULQUIER\Bureau\CFScript.txt
AV: Bitdefender Antivirus *On-access scanning disabled* (Updated) {6C4BB89C-B0ED-4F41-A29C-4373888923BB}
FW: Bitdefender Firewall *disabled* {4055920F-2E99-48A8-A270-4243D2B8F242}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\Installer\1c504e6.msp
c:\windows\Installer\222c05.msp
c:\windows\Installer\236fcbe.msp
c:\windows\Installer\2cf518.msp
c:\windows\Installer\2d5daa.msi
c:\windows\Installer\397c2f.msi
c:\windows\Installer\a4565.msp
c:\windows\Installer\a9e0b5.msp
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-06-02 au 2009-07-02 ))))))))))))))))))))))))))))))))))))
.
2009-06-30 05:02 . 2009-07-01 12:17 -------- d-----w- c:\documents and settings\michel\Application Data\EoRezo
2009-06-29 15:40 . 2009-06-29 15:40 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\AVS4YOU
2009-06-29 15:40 . 2009-06-29 15:40 -------- d-----w- c:\documents and settings\All Users\Application Data\AVS4YOU
2009-06-29 15:39 . 2009-06-29 15:47 -------- d-----w- c:\program files\Fichiers communs\AVSMedia
2009-06-29 15:39 . 2009-06-29 15:47 -------- d-----w- c:\program files\AVS4YOU
2009-06-29 13:53 . 2009-06-29 13:53 -------- d-----w- c:\program files\Rocket Division Software
2009-06-29 13:52 . 2009-06-29 13:53 7211174 ----a-w- c:\documents and settings\Michel FOULQUIER\Application Data\EoRezo\install.exe
2009-06-29 13:51 . 2009-06-29 13:51 698903 ----a-w- c:\documents and settings\Michel FOULQUIER\Application Data\EoRezo\SoftwareUpdate\unins000.exe
2009-06-29 13:51 . 2008-12-09 08:13 368224 ----a-w- c:\documents and settings\Michel FOULQUIER\Application Data\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
2009-06-29 13:51 . 2008-12-09 08:12 499296 ----a-w- c:\documents and settings\Michel FOULQUIER\Application Data\EoRezo\SoftwareUpdate\SoftwareUpdate.exe
2009-06-29 13:51 . 2009-07-02 16:21 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\EoRezo
2009-06-29 13:51 . 2009-07-02 07:39 -------- d-----w- c:\program files\EoRezo
2009-06-26 17:03 . 2009-06-26 17:03 -------- d-----w- c:\program files\JRE
2009-06-21 15:51 . 2009-06-21 15:51 -------- d-----w- c:\program files\eChanblard
2009-06-19 05:59 . 2009-06-19 06:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2009-06-14 07:02 . 2009-04-30 21:16 12800 ------w- c:\windows\system32\dllcache\xpshims.dll
2009-06-14 07:02 . 2009-04-30 21:16 246272 ------w- c:\windows\system32\dllcache\ieproxy.dll
2009-06-14 06:59 . 2009-06-14 07:01 -------- dc-h--w- c:\windows\ie8
2009-06-04 17:55 . 2009-06-04 17:55 -------- d-----w- c:\documents and settings\michel\Local Settings\Application Data\Logitech-LS
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-02 16:38 . 2008-06-14 12:57 81984 ----a-w- c:\windows\system32\bdod.bin
2009-07-02 15:18 . 2008-12-22 16:43 1 ----a-w- c:\documents and settings\Michel FOULQUIER\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-07-02 13:27 . 2007-11-21 16:19 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\Canon
2009-07-02 10:33 . 2004-08-16 16:41 64492 ----a-w- c:\windows\system32\perfc00C.dat
2009-07-02 10:33 . 2004-08-16 16:41 447772 ----a-w- c:\windows\system32\perfh00C.dat
2009-07-01 16:30 . 2009-03-07 09:57 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-07-01 16:22 . 2008-02-07 14:18 -------- d-----w- c:\program files\Trend Micro
2009-06-30 16:08 . 2008-12-23 11:20 1 ----a-w- c:\documents and settings\michel\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-06-29 18:48 . 2005-04-24 16:51 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-06-29 14:13 . 2006-03-24 14:19 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-29 12:40 . 2008-07-25 09:52 -------- d-----w- c:\documents and settings\michel\Application Data\Canon
2009-06-27 06:48 . 2008-04-15 07:26 116488 ----a-w- c:\documents and settings\michel\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-06-27 06:23 . 2005-02-23 15:33 116488 -c--a-w- c:\documents and settings\Michel FOULQUIER\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-06-26 17:03 . 2008-12-22 16:12 -------- d-----w- c:\program files\OpenOffice.org 3
2009-06-23 14:58 . 2009-04-29 11:51 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\dvdcss
2009-06-20 09:35 . 2009-03-06 19:03 -------- d-----w- c:\documents and settings\michel\Application Data\dvdcss
2009-06-19 06:00 . 2007-01-06 10:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2009-06-19 06:00 . 2005-10-23 09:33 -------- d-----w- c:\program files\Yahoo!
2009-06-19 06:00 . 2007-12-30 18:31 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\skypePM
2009-06-19 05:51 . 2006-08-22 13:02 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\Skype
2009-06-13 17:15 . 2009-06-14 06:47 187308 ----a-w- c:\windows\pchealth\helpctr\Config\Cache\Personal_32_1036.dat
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\UNINST_Uninstall_G_408FFBEED62349E08B232864A94D2864.exe
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutOGL_EB071909B9884F8CBF3D6115D4ADEE5E.exe
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutDX_EB071909B9884F8CBF3D6115D4ADEE5E.exe
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe1_407B9B5CDAC54F44A756B57CAB4E6A8B.exe
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe_407B9B5CDAC54F44A756B57CAB4E6A8B.exe
2009-05-30 09:24 . 2009-05-30 09:24 25214 ----a-r- c:\documents and settings\Michel FOULQUIER\Application Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ARPPRODUCTICON.exe
2009-05-30 09:23 . 2008-05-09 15:59 -------- d-----w- c:\program files\Google
2009-05-30 07:46 . 2009-05-30 07:46 15688 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lsdelete.exe
2009-05-30 07:46 . 2009-02-14 17:43 15688 ----a-w- c:\windows\system32\lsdelete.exe
2009-05-30 07:46 . 2009-05-30 07:46 83808 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\ShellExt.dll
2009-05-30 07:45 . 2009-05-30 07:45 212848 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll
2009-05-30 07:45 . 2009-05-30 07:45 40288 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll
2009-05-29 10:38 . 2008-05-15 10:53 -------- d-----w- c:\documents and settings\michel\Application Data\Skype
2009-05-29 07:29 . 2008-07-24 07:28 -------- d-----w- c:\documents and settings\michel\Application Data\skypePM
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\UNINST_Uninstall_G_408FFBEED62349E08B232864A94D2864.exe
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\ShortcutOGL_EB071909B9884F8CBF3D6115D4ADEE5E.exe
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\ShortcutDX_EB071909B9884F8CBF3D6115D4ADEE5E.exe
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\googleearth.exe1_407B9B5CDAC54F44A756B57CAB4E6A8B.exe
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\googleearth.exe_407B9B5CDAC54F44A756B57CAB4E6A8B.exe
2009-05-20 16:00 . 2009-05-20 16:00 25214 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{9509674F-3972-11DE-806D-005056806466}\ARPPRODUCTICON.exe
2009-05-13 05:04 . 2004-08-16 16:41 915456 ----a-w- c:\windows\system32\wininet.dll
2009-05-12 09:07 . 2009-05-02 09:38 -------- d-----w- c:\program files\Astonsoft
2009-05-10 16:08 . 2009-05-10 16:07 -------- d-----w- c:\documents and settings\michel\Application Data\vlc
2009-05-08 16:29 . 2009-05-08 16:28 -------- d-----w- c:\documents and settings\Michel FOULQUIER\Application Data\vlc
2009-05-07 15:33 . 2008-07-24 09:27 348672 ----a-w- c:\windows\system32\localspl.dll
2009-04-24 06:39 . 2009-04-24 06:39 64160 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys
2009-04-24 06:39 . 2009-02-14 16:16 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-04-19 19:50 . 2008-07-24 09:27 1847296 ----a-w- c:\windows\system32\win32k.sys
2009-04-15 14:53 . 2004-08-16 16:41 585216 ----a-w- c:\windows\system32\rpcrt4.dll
.
(((((((((((((((((((((((((((((
SnapShot@2009-07-01_18.35.34 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-02 07:40 . 2009-07-02 07:40 16384 c:\windows\Temp\Perflib_Perfdata_d30.dat
+ 2009-07-02 07:39 . 2009-07-02 07:39 16384 c:\windows\Temp\Perflib_Perfdata_2a8.dat
- 2004-08-16 16:40 . 2009-04-18 12:40 53608 c:\windows\system32\perfc009.dat
+ 2004-08-16 16:40 . 2009-07-02 10:33 53608 c:\windows\system32\perfc009.dat
+ 2009-07-01 06:18 . 2009-07-01 06:18 22528 c:\windows\Installer\d7023.msi
+ 2005-08-04 19:03 . 2005-08-04 19:03 20480 c:\windows\Installer\1926a63.msi
+ 2004-08-05 13:00 . 2004-08-05 13:00 69632 c:\windows\I386\WINNT32.MSI
- 2004-08-16 16:40 . 2009-04-18 12:40 383254 c:\windows\system32\perfh009.dat
+ 2004-08-16 16:40 . 2009-07-02 10:33 383254 c:\windows\system32\perfh009.dat
+ 2008-07-24 08:21 . 2004-08-05 13:00 370688 c:\windows\ServicePackFiles\i386\digreqex.msi
+ 2008-07-24 08:21 . 2004-08-05 13:00 868352 c:\windows\ServicePackFiles\i386\digopt.msi
+ 2005-02-21 12:24 . 2005-02-21 12:24 439808 c:\windows\Installer\f748b.msi
+ 2006-10-06 16:42 . 2006-10-06 16:42 123904 c:\windows\Installer\f2a73d.msi
+ 2006-10-06 16:42 . 2006-10-06 16:42 123904 c:\windows\Installer\f2a738.msi
+ 2006-10-06 16:42 . 2006-10-06 16:42 123904 c:\windows\Installer\f2a733.msi
+ 2007-10-17 13:14 . 2007-10-17 13:14 491008 c:\windows\Installer\ef200.msi
+ 2007-10-17 13:14 . 2007-10-17 13:14 247296 c:\windows\Installer\ef1fb.msi
+ 2007-10-17 13:14 . 2007-10-17 13:14 175616 c:\windows\Installer\ef1f0.msi
+ 2007-10-17 13:14 . 2007-10-17 13:14 121344 c:\windows\Installer\ef1eb.msi
+ 2007-10-17 13:13 . 2007-10-17 13:13 399872 c:\windows\Installer\ef1e6.msi
+ 2007-10-17 13:13 . 2007-10-17 13:13 337920 c:\windows\Installer\ef1e1.msi
+ 2007-10-17 13:13 . 2007-10-17 13:13 261632 c:\windows\Installer\ef1db.msi
+ 2008-05-02 11:10 . 2008-05-02 11:10 289792 c:\windows\Installer\c2019.msi
+ 2008-01-23 14:56 . 2008-01-23 14:56 805376 c:\windows\Installer\a9e0e0.msp
+ 2008-07-28 13:09 . 2008-07-28 13:09 160768 c:\windows\Installer\a9e0cc.msp
+ 2005-03-30 15:39 . 2005-03-30 15:39 400384 c:\windows\Installer\971060.msi
+ 2008-12-03 07:47 . 2008-12-03 07:47 562176 c:\windows\Installer\95232.msi
+ 2007-10-25 07:49 . 2007-10-25 07:49 282624 c:\windows\Installer\42a8cb.msi
+ 2007-12-14 09:24 . 2007-12-14 09:24 891904 c:\windows\Installer\41d55e.msi
+ 2007-08-15 08:24 . 2007-08-15 08:24 431104 c:\windows\Installer\4098d3.msi
+ 2009-03-05 08:30 . 2009-03-05 08:30 140288 c:\windows\Installer\3d938f8.msi
+ 2008-06-29 14:17 . 2008-06-29 14:17 691200 c:\windows\Installer\3bdd41.msi
+ 2008-02-27 08:21 . 2008-02-27 08:21 690688 c:\windows\Installer\2dcf7f.msi
+ 2006-11-15 07:28 . 2006-11-15 07:28 428544 c:\windows\Installer\2701bd.msi
+ 2008-12-23 13:56 . 2008-12-23 13:56 360448 c:\windows\Installer\26e163.msi
+ 2009-01-15 17:17 . 2009-01-15 17:17 146944 c:\windows\Installer\2573b9.msi
+ 2008-11-12 16:59 . 2008-11-12 16:59 432640 c:\windows\Installer\22d6f92.msi
+ 2009-01-05 07:49 . 2009-01-05 07:49 467968 c:\windows\Installer\22ae40.msi
+ 2008-07-22 10:56 . 2008-07-22 10:56 313856 c:\windows\Installer\1be9d7.msp
+ 2007-12-15 09:33 . 2007-12-15 09:33 470528 c:\windows\Installer\1b739.msi
+ 2008-10-18 15:36 . 2008-10-18 15:36 331264 c:\windows\Installer\1b7223.msi
+ 2009-02-14 16:13 . 2009-02-14 16:13 570368 c:\windows\Installer\1a5150c.msi
+ 2009-02-14 16:12 . 2009-02-14 16:12 236032 c:\windows\Installer\1a51507.msi
+ 2004-08-16 17:19 . 2004-08-16 17:19 265216 c:\windows\Installer\174b2.msi
+ 2005-04-09 14:20 . 2005-04-09 14:20 943616 c:\windows\Installer\15ccb8c.msi
+ 2005-04-09 14:16 . 2005-04-09 14:16 841216 c:\windows\Installer\15ccb3b.msi
+ 2009-04-29 11:46 . 2009-04-29 11:46 220160 c:\windows\Installer\15b775.msi
+ 2007-10-17 13:19 . 2007-10-17 13:19 222720 c:\windows\Installer\155333.msi
+ 2007-10-17 13:19 . 2007-10-17 13:19 274432 c:\windows\Installer\15532d.msi
+ 2007-10-17 13:19 . 2007-10-17 13:19 121344 c:\windows\Installer\155325.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 402944 c:\windows\Installer\155320.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 131072 c:\windows\Installer\1552ae.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 210432 c:\windows\Installer\1552a8.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 137728 c:\windows\Installer\15529c.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 123904 c:\windows\Installer\155297.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 135680 c:\windows\Installer\155291.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 124416 c:\windows\Installer\15528b.msi
+ 2007-10-17 13:18 . 2007-10-17 13:18 123904 c:\windows\Installer\155286.msi
+ 2007-10-17 13:17 . 2007-10-17 13:17 260608 c:\windows\Installer\15522e.msi
+ 2007-10-17 13:16 . 2007-10-17 13:16 121344 c:\windows\Installer\155225.msi
+ 2008-12-22 14:34 . 2008-12-22 14:34 348672 c:\windows\Installer\1446764.msi
+ 2007-10-17 13:16 . 2007-10-17 13:16 152576 c:\windows\Installer\140ad2.msi
+ 2007-10-17 13:16 . 2007-10-17 13:16 281088 c:\windows\Installer\140acd.msi
+ 2007-10-17 13:16 . 2007-10-17 13:16 353792 c:\windows\Installer\140ac7.msi
+ 2007-10-17 13:16 . 2007-10-17 13:16 528384 c:\windows\Installer\140abe.msi
+ 2007-10-17 13:15 . 2007-10-17 13:15 121344 c:\windows\Installer\140aaf.msi
+ 2007-10-17 13:15 . 2007-10-17 13:15 239616 c:\windows\Installer\140aaa.msi
+ 2007-10-17 13:15 . 2007-10-17 13:15 121344 c:\windows\Installer\140aa1.msi
+ 2007-10-06 07:42 . 2007-10-06 07:42 203264 c:\windows\Installer\122f25.msp
+ 2006-03-24 14:17 . 2005-04-04 00:07 982016 c:\windows\Downloaded Installations\{59C4F14F-7590-45FC-BE9F-A67AB3590709}\ISScript11.Msi
+ 2004-08-16 16:41 . 2004-08-05 13:00 1355776 c:\windows\system32\webfldrs.msi
+ 2008-07-24 08:22 . 2004-08-05 13:00 1355776 c:\windows\ServicePackFiles\i386\webfldrs.msi
+ 2008-07-24 08:22 . 2004-08-05 13:00 5097984 c:\windows\ServicePackFiles\i386\msnmsgs.msi
+ 2007-05-25 11:08 . 2007-05-25 11:08 9609728 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp
+ 2005-02-21 12:24 . 2005-02-21 12:24 1324032 c:\windows\Installer\f749b.msi
+ 2005-02-21 12:24 . 2005-02-21 12:24 1296896 c:\windows\Installer\f7493.msi
+ 2005-02-21 12:24 . 2005-02-21 12:24 1341952 c:\windows\Installer\f7486.msi
+ 2005-02-21 12:23 . 2005-02-21 12:23 1306624 c:\windows\Installer\f747e.msi
+ 2005-02-21 12:23 . 2005-02-21 12:23 1315840 c:\windows\Installer\f7476.msi
+ 2009-04-21 15:58 . 2009-04-21 15:58 5522944 c:\windows\Installer\f0ce1.msi
+ 2007-10-17 13:12 . 2007-10-17 13:12 3443712 c:\windows\Installer\ef1d3.msi
+ 2005-02-03 03:25 . 2005-02-03 03:25 3141120 c:\windows\Installer\da9e.msi
+ 2005-02-03 03:24 . 2005-02-03 03:24 4630528 c:\windows\Installer\da92.msi
+ 2005-02-03 03:21 . 2005-02-03 03:21 1231360 c:\windows\Installer\da77.msi
+ 2005-04-22 13:29 . 2005-04-22 13:29 4855296 c:\windows\Installer\d5141.msp
+ 2008-11-18 08:01 . 2008-11-18 08:01 4244480 c:\windows\Installer\c45c1.msi
+ 2008-05-04 09:45 . 2008-05-04 09:45 1383424 c:\windows\Installer\b6161a.msi
+ 2008-10-22 21:43 . 2008-10-22 21:43 6820352 c:\windows\Installer\b243ca.msp
+ 2008-10-22 21:48 . 2008-10-22 21:48 7672832 c:\windows\Installer\b243a6.msp
+ 2008-11-05 13:25 . 2008-11-05 13:25 5518336 c:\windows\Installer\b24382.msp
+ 2008-02-29 10:50 . 2008-02-29 10:50 2793984 c:\windows\Installer\b1145c.msi
+ 2005-04-03 13:37 . 2005-04-03 13:37 2593792 c:\windows\Installer\ae8cda.msp
+ 2004-10-21 15:56 . 2004-10-21 15:56 5533696 c:\windows\Installer\ae8cc4.msp
+ 2004-10-21 08:23 . 2004-10-21 08:23 3581952 c:\windows\Installer\ae8cac.msp
+ 2005-03-02 08:23 . 2005-03-02 08:23 4775424 c:\windows\Installer\ae8c96.msp
+ 2005-02-14 11:10 . 2005-02-14 11:10 5378048 c:\windows\Installer\ae8bc7.msp
+ 2005-04-24 15:25 . 2005-04-24 15:25 5842944 c:\windows\Installer\ae8ad2.msi
+ 2008-07-16 08:39 . 2008-07-16 08:39 5519360 c:\windows\Installer\a9e128.msp
+ 2008-07-08 09:27 . 2008-07-08 09:27 8436736 c:\windows\Installer\a9e104.msp
+ 2008-01-31 09:30 . 2008-01-31 09:30 9947648 c:\windows\Installer\a9dcec.msp
+ 2008-02-15 13:57 . 2008-02-15 13:57 5517312 c:\windows\Installer\a9dcc1.msp
+ 2007-10-17 13:04 . 2007-10-17 13:04 9909760 c:\windows\Installer\9d4dd.msi
+ 2007-03-30 21:20 . 2007-03-30 21:20 5800960 c:\windows\Installer\95ef8b.msp
+ 2008-06-19 17:28 . 2008-06-19 17:28 1573376 c:\windows\Installer\95ef7b.msp
+ 2007-05-15 20:21 . 2007-05-15 20:21 1042944 c:\windows\Installer\95ef6a.msp
+ 2007-07-21 12:26 . 2007-07-21 12:26 7574016 c:\windows\Installer\95ef52.msp
+ 2008-04-18 09:18 . 2008-04-18 09:18 1549312 c:\windows\Installer\8e76e1.msi
+ 2009-05-30 09:24 . 2009-05-30 09:24 1401344 c:\windows\Installer\88ca1a.msi
+ 2006-10-07 19:13 . 2006-10-07 19:13 2914304 c:\windows\Installer\7a21e.msi
+ 2009-04-06 15:00 . 2009-04-06 15:00 5518336 c:\windows\Installer\6094be.msp
+ 2008-03-16 15:11 . 2008-03-16 15:11 5512704 c:\windows\Installer\5e747e.msp
+ 2005-05-18 08:07 . 2005-05-18 08:07 4853248 c:\windows\Installer\57a8a.msp
+ 2008-05-09 13:35 . 2008-05-09 13:35 1395712 c:\windows\Installer\4b17ab.msi
+ 2005-10-26 13:59 . 2005-10-26 13:59 2883072 c:\windows\Installer\39d60d.msp
+ 2008-01-14 15:54 . 2008-01-14 15:54 5505024 c:\windows\Installer\39d5f8.msp
+ 2008-01-14 15:53 . 2008-01-14 15:53 5213696 c:\windows\Installer\39d5d1.msp
+ 2008-01-25 14:29 . 2008-01-25 14:29 5514752 c:\windows\Installer\39d5ae.msp
+ 2008-08-14 13:01 . 2008-08-14 13:01 5517312 c:\windows\Installer\3128ab.msp
+ 2007-01-15 17:41 . 2007-01-15 17:41 3571200 c:\windows\Installer\30458.msi
+ 2007-01-15 17:40 . 2007-01-15 17:40 4105216 c:\windows\Installer\3044f.msi
+ 2009-05-12 11:01 . 2009-05-12 11:01 6818816 c:\windows\Installer\2cbb00.msp
+ 2008-05-15 07:50 . 2008-05-15 07:50 5515776 c:\windows\Installer\2b80bb.msp
+ 2009-02-11 14:02 . 2009-02-11 14:02 5519872 c:\windows\Installer\2ac6313.msp
+ 2008-06-11 13:05 . 2008-06-11 13:05 9994240 c:\windows\Installer\267cacf.msp
+ 2008-06-10 12:09 . 2008-06-10 12:09 5517312 c:\windows\Installer\267caa7.msp
+ 2008-12-12 10:09 . 2008-12-12 10:09 5517824 c:\windows\Installer\23fa195.msp
+ 2008-09-05 11:08 . 2008-09-05 11:08 5515776 c:\windows\Installer\23c48a6.msp
+ 2008-10-25 08:15 . 2008-10-25 08:15 6227456 c:\windows\Installer\22d6fca.msp
+ 2008-10-17 08:03 . 2008-10-17 08:03 5518336 c:\windows\Installer\22d6fa6.msp
+ 2009-05-28 10:32 . 2009-05-28 10:32 5518848 c:\windows\Installer\222bf4.msp
+ 2009-04-23 15:57 . 2009-04-23 15:57 7672832 c:\windows\Installer\222bd0.msp
+ 2008-04-17 13:36 . 2008-04-17 13:36 1395712 c:\windows\Installer\21db4d.msi
+ 2009-05-20 16:00 . 2009-05-20 16:00 1298432 c:\windows\Installer\216e5cb.msi
+ 2009-05-01 13:49 . 2009-05-01 13:49 4328960 c:\windows\Installer\2120237.msp
+ 2009-04-24 10:31 . 2009-04-24 10:31 1425920 c:\windows\Installer\2120221.msp
+ 2009-04-24 10:38 . 2009-04-24 10:38 1229312 c:\windows\Installer\2120217.msp
+ 2009-01-14 14:43 . 2009-01-14 14:43 5520384 c:\windows\Installer\1e856d.msp
+ 2007-11-16 11:58 . 2007-11-16 11:58 5495296 c:\windows\Installer\1b724.msp
+ 2009-06-26 17:06 . 2009-06-26 17:06 9814528 c:\windows\Installer\1a450fd.msi
+ 2005-06-26 22:12 . 2005-06-26 22:12 4980224 c:\windows\Installer\1926a77.msp
+ 2009-06-19 05:49 . 2009-06-19 05:49 1602048 c:\windows\Installer\181212.msi
+ 2005-04-09 14:27 . 2005-04-09 14:27 4016128 c:\windows\Installer\15ccba6.msi
+ 2007-10-17 13:17 . 2007-10-17 13:17 1587712 c:\windows\Installer\155281.msi
+ 2008-04-18 12:26 . 2008-04-18 12:26 5518336 c:\windows\Installer\151391.msp
+ 2008-04-01 12:33 . 2008-04-01 12:33 5479936 c:\windows\Installer\15137c.msp
+ 2008-12-22 14:35 . 2008-12-22 14:35 1894400 c:\windows\Installer\144677e.msi
+ 2007-11-14 15:01 . 2007-11-14 15:01 4132864 c:\windows\Installer\122f10.msp
+ 2009-03-05 13:40 . 2009-03-05 13:40 6819840 c:\windows\Installer\10d873.msp
+ 2008-07-21 15:51 . 2008-07-21 15:51 1383424 c:\windows\Installer\10b686.msi
+ 2005-07-21 14:19 . 2005-07-21 14:19 6369280 c:\windows\Downloaded Installations\{FB590DCB-74FE-4352-A2C5-1BEAAC216F7E}\Adobe Photoshop Album 2 ED.msi
+ 2007-01-15 17:19 . 2007-01-15 17:40 3705344 c:\windows\Downloaded Installations\{9FDD53B8-ADF9-48FC-B203-9D9F45917133}\Maxtor Backup.msi
+ 2006-07-24 16:12 . 2006-07-24 16:12 6976000 c:\windows\Downloaded Installations\{8379D168-79F6-4394-81A2-BB1944E8F892}\Adobe Photoshop Album 3 ED.msi
+ 2006-03-24 14:17 . 2006-02-23 15:42 9934848 c:\windows\Downloaded Installations\{59C4F14F-7590-45FC-BE9F-A67AB3590709}\iTunes.msi
+ 2006-12-04 19:06 . 2006-12-04 19:10 6570496 c:\windows\Downloaded Installations\{574598EF-8D3C-45D3-85AE-E15F91F27985}\Adobe Photoshop Album 2.0 Starter Edition.msi
+ 2005-02-15 12:30 . 2005-02-03 03:10 10352128 c:\windows\system32\config\systemprofile\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142050}\Java 2 Runtime Environment, SE v1.4.2_05.msi
+ 2007-01-05 17:53 . 2006-07-29 19:39 15582208 c:\windows\Installer\MSN Messenger 8.0.0812\MsnMsgs.Msi
+ 2004-07-07 16:30 . 2004-07-07 16:30 19922944 c:\windows\Installer\ae8bb1.msp
+ 2008-07-08 08:09 . 2008-07-08 08:09 11887616 c:\windows\Installer\a9e14c.msp
+ 2008-01-31 08:45 . 2008-01-31 08:45 11565056 c:\windows\Installer\a9dd34.msp
+ 2008-02-29 21:09 . 2008-02-29 21:09 16907776 c:\windows\Installer\a9dd10.msp
+ 2008-08-11 10:51 . 2008-08-11 10:51 15916544 c:\windows\Installer\95ef83.msp
+ 2008-08-11 10:49 . 2008-08-11 10:49 22457344 c:\windows\Installer\95ef72.msp
+ 2008-09-24 11:05 . 2008-09-24 11:05 16381440 c:\windows\Installer\95ef61.msp
+ 2007-04-21 19:16 . 2007-04-21 19:16 12490752 c:\windows\Installer\95ef5a.msp
+ 2009-04-04 05:41 . 2009-04-04 05:41 37025280 c:\windows\Installer\4ed182.msp
+ 2008-01-14 14:24 . 2008-01-14 14:24 10721280 c:\windows\Installer\39d58a.msp
+ 2008-01-14 15:50 . 2008-01-14 15:50 11887104 c:\windows\Installer\39d567.msp
+ 2008-07-30 06:50 . 2008-07-30 06:50 12506112 c:\windows\Installer\3128f3.msp
+ 2008-06-04 11:29 . 2008-06-04 11:29 16905728 c:\windows\Installer\3128cf.msp
+ 2008-08-13 12:49 . 2008-08-13 12:49 11816960 c:\windows\Installer\23c48ca.msp
+ 2007-11-30 19:00 . 2007-11-30 19:00 19210240 c:\windows\Installer\2344c8.msp
+ 2007-10-14 22:59 . 2007-10-14 22:59 26614784 c:\windows\Installer\1d93f89.msp
+ 2008-03-17 11:48 . 2008-03-17 11:48 11813888 c:\windows\Installer\1a846e1.msp
+ 2008-07-01 07:25 . 2008-07-01 07:25 11814912 c:\windows\Installer\1869e4.msp
+ 2008-04-14 12:26 . 2008-04-14 12:26 11888128 c:\windows\Installer\151356.msp
+ 2007-12-01 17:26 . 2007-12-01 17:26 15256576 c:\windows\Installer\12f74e.msp
+ 2007-01-15 17:16 . 2007-01-15 17:39 10473676 c:\windows\Downloaded Installations\{358152E9-6DBE-4848-B6B8-847AC6B6CC1B}\Maxtor OneTouch III.msi
+ 2007-07-27 08:30 . 2007-07-27 08:30 135083008 c:\windows\Installer\471a28.msp
.
-- Instantané actualisé --
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"LogitechSoftwareUpdate"="c:\program files\Logitech\Video\ManifestEngine.exe" [2005-06-08 196608]
"Messenger (Yahoo!)"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" [2005-02-03 180269]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-06-19 518488]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2008\IEShow.exe" [2007-10-09 61440]
"BDAgent"="c:\program files\BitDefender\BitDefender 2008\bdagent.exe" [2008-09-04 368640]
"EoEngine"="c:\program files\EoRezo\EoEngine.exe" [2009-02-23 472872]
"SoftwareHelper"="c:\documents and settings\Michel FOULQUIER\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe" [2008-12-09 368224]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
DSLMON.lnk - c:\program files\SAGEM\SAGEM F@st 800-840\dslmon.exe [2005-3-11 962661]
D‚marrage rapide du logiciel HP Image Zone.lnk - c:\program files\HP\Digital Imaging\bin\hpqthb08.exe [2005-5-12 73728]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"=
"%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\AOL 9.0\\aol.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%ProgramFiles%\\AOL 9.0\\aol.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [14/02/2009 18:16 64160]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [18/01/2009 23:34 1003344]
R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [02/06/2008 15:16 86792]
S2 gupdate1c9e107ee2b1e96;Service Google Update (gupdate1c9e107ee2b1e96);c:\program files\Google\Update\GoogleUpdate.exe [30/05/2009 11:20 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{A509B1FF-37FF-4bFF-8CFF-4F3A747040FF}]
c:\windows\system32\rundll32.exe c:\windows\system32\advpack.dll,LaunchINFSectionEx c:\program files\Internet Explorer\clrtour.inf,DefaultInstall.ResetTour,,12
.
Contenu du dossier 'Tâches planifiées'
2009-06-29 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-01-18 05:33]
2009-06-24 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-04-11 15:57]
2009-07-02 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-07 15:22]
2009-07-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-30 09:20]
2009-07-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-30 09:20]
2009-07-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2267675242-3138974447-637945849-1007Core.job
- c:\documents and settings\michel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-03-04 14:19]
2009-07-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2267675242-3138974447-637945849-1007UA.job
- c:\documents and settings\michel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-03-04 14:19]
2009-07-02 c:\windows\Tasks\User_Feed_Synchronization-{4BE2E42D-93B0-4BE9-99E6-86CB3E13FD68}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
2009-07-02 c:\windows\Tasks\User_Feed_Synchronization-{EF914157-F064-4EBC-A2FD-F7E59B197813}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Examen supplémentaire -------
.
uSearchMigratedDefaultURL =
hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page =
hxxp://y.lo.st
mStart Page =
hxxp://www.ustart.org
uInternet Settings,ProxyOverride = <local>
IE: ajouter cette page à vos favoris Orange - c:\docume~1\MICHEL~1\LOCALS~1\Temp\cce115.html
IE: traduire la page - c:\docume~1\MICHEL~1\LOCALS~1\Temp\cce113.html
IE: traduire le texte sélectionné - c:\docume~1\MICHEL~1\LOCALS~1\Temp\cce114.html
DPF: {3E82BB3F-ABE4-458D-9281-0187286A4E51} -
hxxp://contacts.orange.fr/wfr_webab/VoxsyncX.cab
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} -
hxxp://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} -
hxxps://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} -
hxxp://support.packardbell.com/files/activex/InfosFinder2.CAB
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-07-02 18:45
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-2267675242-3138974447-637945849-1006\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{191BF9AE-2A8B-C871-9453-E572E862369E}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"dbdcoaaghbhpplkegjfoomfmnbeehefelpkeaafb"=hex:6a,61,6b,62,6d,6c,65,68,6d,6a,
64,6f,68,6d,6c,70,66,69,64,61,00,fb
"cbncfpoeaeoeompbgmpbgamlcbpdfoiaeghaij"=hex:6a,61,6b,62,6d,6c,65,68,6d,6a,64,
6f,68,6d,6c,70,66,69,64,61,00,fb
"abhhdpdbfmjhcffigfipomfdlleimhbkja"=hex:61,61,00,00
"maihapdgoidpfohpkidgmbmegn"=hex:61,61,00,00
[HKEY_USERS\S-1-5-21-2267675242-3138974447-637945849-1006\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{9E2121D3-1598-9728-081B-2A191AFD4FFB}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"dbaohockkjifageajllkmmdgljlfkoomphanknhk"=hex:6a,61,62,6a,6f,69,66,6a,70,6f,
64,65,70,6d,6f,67,66,64,6b,70,00,1a
"cbknnnbhmbmjnmbnecgddomjdeifkkbjjiihjd"=hex:6a,61,62,6a,6f,69,66,6a,70,6f,64,
65,70,6d,6f,67,66,64,6b,70,00,1a
"abmohfohjgdjgonafjnpicfghmnkiifnmp"=hex:61,61,00,80
"mapokekmlmoepogheagandeeec"=hex:61,61,00,80
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"C040110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
"C040211900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
Heure de fin: 2009-07-02 18:48
ComboFix-quarantined-files.txt 2009-07-02 16:48
ComboFix2.txt 2009-07-02 06:31
ComboFix3.txt 2009-07-01 18:43
Avant-CF: 128 284 262 400 octets libres
Après-CF: 128 243 400 704 octets libres
403 --- E O F --- 2009-06-13 17:17
Merci et à plus