Rapport bien mérité au bout de 3 jours bibou

: qu'en penses tu ? heu ! est ce que je bloc ce truc de microsoft stp ?
ComboFix 08-01-14.4 - Utilisateur 2008-01-16 19:44:13.4 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.74 [GMT 1:00]
Running from: H:\Documents and Settings\Utilisateur\Bureau\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\background.jpg
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food1.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food1.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food2.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food2.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food3.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\food\food3.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\frames\upgrade_0001.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\tables\2top.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\tables\2top.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\tables\4top.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\tables\4top.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\diner\upgrades.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\restaurants\tableshadow.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\choosedifficulty.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\chooseplayer.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\chooserestaurant.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\credits.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\game.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\gothighscore.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\help.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\help2.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\hiscore.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\hiscoreinfo.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\hiscoresubmit.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\levelintro.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\levelover.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\loading.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\mainloop.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\mainmenu.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\ok.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\pause.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\style.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\tutorialintro.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\upgrade.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\upsell.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\webcomic.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\scripts\yesno.lua
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\splash\gamelabsplash.jpg
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\splash\playfirst_logo.jpg
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\angersmoke.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\angersmoke.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\chairflags.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\chairflags.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\check.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\checkmark.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\clock.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\closed.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\closingtime.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\coinflip.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\coinflip.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\dollar.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\doodles\coffee.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\doodles\tables.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\doodles\wallpaper.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\expert.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\expertscore.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\foodpoof.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\foodpoof.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\fork_timer.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\goalcompleted.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\heartgrow.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\heartgrow.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\jar.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\jar.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\level.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\level_career.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\score.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\sound.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\staroff.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\staron.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\tablenumber.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\tablenumberup.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\traynumber.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\tutorial_character.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\tutorialarrow.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\tutorialbox.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgradeanim.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgradeanim.xml
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\drinks.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\maitred.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\oven.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\select.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\shoes.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\stereo.png
H:\WINDOWS\Downloaded Program Files\DinerDash.1.0.0.58\assets\ui\upgrades\table.png
H:\WINDOWS\system32\drivers\srosa.sys
H:\WINDOWS\system32\wintems.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_SROSA
-------\srosa
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2007-12-16 to 2008-01-16 ))))))))))))))))))))))))))))))))))))
.
2008-01-16 19:43 . 2008-01-16 19:43 <REP> d-------- H:\WINDOWS\system32\drivers\down
2008-01-16 15:38 . 2008-01-16 15:38 4,608 --ahs---- H:\WINDOWS\system32\Thumbs.db
2008-01-16 14:51 . 2000-08-31 08:00 51,200 --a------ H:\WINDOWS\NirCmd.exe
2008-01-15 01:44 . 2008-01-16 15:45 70,660 --a------ H:\WINDOWS\system32\mdelk.exe
2008-01-13 20:28 . 2008-01-13 20:28 <REP> d-------- H:\WINDOWS\system32\Kaspersky Lab
2008-01-13 16:41 . 2008-01-13 16:41 <REP> d-------- H:\Program Files\Chocolatier
2008-01-13 15:28 . 2008-01-16 19:35 <REP> d--h----- H:\Documents and Settings\Utilisateur\Application Data\m
2008-01-13 00:16 . 2008-01-13 00:16 <REP> d-------- H:\Deckard
2008-01-12 21:58 . 2008-01-12 22:06 <REP> d-------- H:\Program Files\Navilog1
2008-01-12 20:22 . 2008-01-12 20:22 <REP> d-------- H:\Program Files\Trend Micro
2008-01-12 17:58 . 2008-01-12 23:01 <REP> d-------- H:\WINDOWS\BDOSCAN8
2008-01-12 14:45 . 2006-04-07 10:05 516,948 --------- H:\WINDOWS\system32\drivers\hldrrr.exe
2008-01-12 11:56 . 2008-01-12 11:56 <REP> d-------- H:\Documents and Settings\Utilisateur\Application Data\Valusoft
2008-01-12 11:56 . 2008-01-12 11:56 <REP> d-------- H:\Documents and Settings\All Users\Application Data\Valusoft
2008-01-12 02:50 . 2008-01-12 02:50 <REP> d-------- H:\Program Files\Hot Dish
2008-01-11 12:34 . 2008-01-11 12:34 53,500 --a------ H:\adventure.dat
2008-01-10 12:45 . 2008-01-10 13:16 <REP> d-------- H:\Program Files\Super Granny 3
2008-01-05 17:33 . 2008-01-12 16:57 <REP> d-------- H:\Program Files\WildWestWendy
2008-01-05 13:37 . 2008-01-12 13:43 2,157 --a------ H:\WINDOWS\wwwconfig.dat
2008-01-02 16:17 . 2008-01-02 16:17 <REP> d-------- H:\Program Files\LightScribe
2008-01-02 16:15 . 2008-01-02 16:15 <REP> d-------- H:\Program Files\Fichiers communs\LightScribe
2007-12-23 09:53 . 2007-12-23 09:53 <REP> d-------- H:\Program Files\Dnote Software
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-16 18:59 --------- d-----w H:\Documents and Settings\Utilisateur\Application Data\SolidDocuments
2008-01-13 15:41 --------- d-----w H:\Documents and Settings\Utilisateur\Application Data\PlayFirst
2008-01-13 15:41 --------- d-----w H:\Documents and Settings\All Users\Application Data\PlayFirst
2008-01-12 17:34 --------- d-----w H:\Documents and Settings\All Users\Application Data\Sandlot Games
2008-01-12 17:26 --------- d-----w H:\Documents and Settings\Utilisateur\Application Data\ViquaSoft
2008-01-12 17:24 --------- d-----w H:\Documents and Settings\Utilisateur\Application Data\Sandlot Games
2008-01-12 15:57 --------- d-----w H:\Program Files\TribalWeb.net
2008-01-12 15:57 --------- d-----w H:\Program Files\Traffic Jam Extreme
2008-01-12 15:57 --------- d-----w H:\Program Files\Slingo Quest
2008-01-12 15:57 --------- d-----w H:\Program Files\creation sonnerieMP3
2008-01-12 15:57 --------- d-----w H:\Program Files\Alien Shooter
2008-01-12 15:57 --------- d-----w H:\Program Files\Air Strike 2
2008-01-12 13:42 --------- d-----w H:\Program Files\Mulet
2008-01-12 12:01 --------- d---a-w H:\Documents and Settings\All Users\Application Data\TEMP
2008-01-10 11:48 --------- d-----w H:\Program Files\Fichiers communs\Sandlot Shared
2008-01-05 16:33 --------- d-----w H:\Program Files\Fichiers communs\Oberon Media
2007-12-21 10:19 --------- d-----w H:\Program Files\Virtual Villagers 2
2007-12-21 10:16 --------- d-----w H:\Program Files\Diner Dash Hometown Hero
2007-12-13 10:21 --------- d-----w H:\Program Files\DivX
2007-12-13 08:26 --------- d-----w H:\Program Files\Virtual Villagers
2007-12-11 09:03 --------- d-----w H:\Program Files\DestinatorApps
2007-12-11 07:15 --------- d-----w H:\Program Files\Microsoft CAPICOM 2.1.0.2
2007-12-10 18:49 --------- d-----w H:\Program Files\Microsoft ActiveSync
2007-12-07 17:47 --------- d-----w H:\Program Files\Windows Live
2007-12-07 17:47 --------- d-----w H:\Program Files\MSN Messenger
2007-12-07 17:47 --------- d-----w H:\Program Files\Messenger Plus! Live
2007-12-01 00:32 --------- d-----w H:\Documents and Settings\All Users\Application Data\Fugazo
2007-11-29 22:30 43,528 ------w H:\WINDOWS\system32\drivers\PxHelp20.sys
2007-11-27 22:10 --------- d-----w H:\Program Files\Ricochet Infinity
2007-11-25 18:51 --------- d-----w H:\Documents and Settings\All Users\Application Data\Reflexive
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="H:\WINDOWS\system32\ctfmon.exe" [2004-08-19 16:09 15360]
"swg"="H:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2006-04-07 10:05 516948]
"Philips Intelligent Agent"="H:\Program Files\Philips Intelligent Agent\Philips Intelligent Agent.exe" [2007-03-06 10:58 579760]
"LightScribe Control Panel"="H:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe" [2007-12-05 12:30 2295072]
"H/PC Connection Agent"="H:\Program Files\Microsoft ActiveSync\Wcescomm.exe" [2006-11-13 14:07 1289000]
"german.exe"="H:\WINDOWS\system32\wintems.exe" [ ]
"SpybotSD TeaTimer"="H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [ ]
"mule_st_key"="H:\Documents and Settings\Utilisateur\Application Data\m\flec006.exe" [2008-01-16 15:45 96772]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="H:\WINDOWS\system32\NvCpl.dll" [2006-10-22 12:22 7700480]
"LogitechCommunicationsManager"="H:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" [2007-07-25 15:02 563984]
"LogitechQuickCamRibbon"="H:\Program Files\Logitech\QuickCam\Quickcam.exe" [2007-07-25 15:06 2027792]
"NvMediaCenter"="H:\WINDOWS\system32\NvMcTray.dll" [2006-10-22 12:22 86016]
"SpybotSnD"="H:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="H:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 16:09 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"
[HKLM\~\startupfolder\H:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^AutoScreenShot.lnk]
path=H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\AutoScreenShot.lnk
backup=H:\WINDOWS\pss\AutoScreenShot.lnkCommon Startup
[HKLM\~\startupfolder\H:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Logitech Desktop Messenger.lnk]
path=H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Logitech Desktop Messenger.lnk
backup=H:\WINDOWS\pss\Logitech Desktop Messenger.lnkCommon Startup
[HKLM\~\startupfolder\H:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^WinZip Quick Pick.lnk]
path=H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\WinZip Quick Pick.lnk
backup=H:\WINDOWS\pss\WinZip Quick Pick.lnkCommon Startup
[HKLM\~\startupfolder\H:^Documents and Settings^Utilisateur^Menu Démarrer^Programmes^Démarrage^BoontyBox 01net.lnk]
path=H:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Démarrage\BoontyBox 01net.lnk
backup=H:\WINDOWS\pss\BoontyBox 01net.lnkStartup
[HKLM\~\startupfolder\H:^Documents and Settings^Utilisateur^Menu Démarrer^Programmes^Démarrage^TribalWeb.lnk]
path=H:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Démarrage\TribalWeb.lnk
backup=H:\WINDOWS\pss\TribalWeb.lnkStartup
[HKLM\~\startupfolder\H:^Documents and Settings^Utilisateur^Menu Démarrer^Programmes^Démarrage^TribalWeb.net.lnk]
path=H:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Démarrage\TribalWeb.net.lnk
backup=H:\WINDOWS\pss\TribalWeb.net.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
--a------ 2007-03-09 10:09 63712 H:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2007-10-10 19:51 39792 H:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet]
--a------ 2007-09-10 13:33 6338360 H:\Program Files\BitComet\BitComet.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]
--------- 2004-08-19 16:10 110592 H:\WINDOWS\system32\bthprops.cpl
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\gcasServ]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ItLauncherAutoStart]
--a------ 2006-06-09 21:57 81983 H:\PROGRA~1\JEUXCL~1\bin\ITLAUN~1.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\L07FXLRD_157176703]
H:\Program Files\Microsoft Etudes\Microsoft Encarta 2007 - Études DVD\EDICT.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LDM]
H:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCommunicationsManager]
--a------ 2007-07-25 15:02 563984 H:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideo[inspector]]
H:\Program Files\Logitech\Video\InstallHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCAgentExe]
h:\PROGRA~1\mcafee.com\agent\mcagent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCUpdateExe]
H:\PROGRA~1\McAfee.com\Agent\McUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2006-01-12 15:40 155648 H:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
--a------ 2006-10-22 12:22 1622016 H:\WINDOWS\system32\nwiz.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
-r------- 2005-09-22 09:42 90112 H:\WINDOWS\soundman.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
H:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
-ra------ 2006-12-27 16:53 73840 H:\Program Files\Macrogaming\SweetIM\SweetIM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
H:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
H:\Program Files\Windows Defender\MSASCui.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Yahoo! Pager"="H:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
S3 Boonty Games;Boonty Games;"H:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe" [2007-06-09 16:22]
S3 LVPrcMon;Logitech LVPrcMon Driver;H:\WINDOWS\system32\drivers\LVPrcMon.sys [2005-12-09 14:37]
S3 NPF;NetGroup Packet Filter Driver;H:\WINDOWS\system32\drivers\npf.sys [2005-08-02 22:10]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"H:\Program Files\Fichiers communs\LightScribe\LSRunOnce.exe"
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2007-10-18 12:24:49 H:\WINDOWS\Tasks\Spybot - Search & Destroy - Scheduled Task.job"
- H:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-01-16 20:01:50
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-16 20:05:17 - machine was rebooted [Utilisateur]
ComboFix-quarantined-files.txt 2008-01-16 19:05:13
.
2007-12-11 07:15:18 --- E O F ---