ComboFix 08-07-01.5 - Jean 2008-07-02 21:29:18.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.1235 [GMT 2:00]
Endroit: C:\Documents and Settings\Jean\Mes documents\ComboFix.exe
* Création d'un nouveau point de restauration
AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !!
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\BM471e9319.txt
C:\WINDOWS\cookies.ini
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\dqpbwcwe.ini
C:\WINDOWS\system32\drfolmmv.dll
C:\WINDOWS\system32\ecgpgeex.ini
C:\WINDOWS\system32\egpnlyjo.ini
C:\WINDOWS\system32\lmdguqmi.ini
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\mmuqnrok.dll
C:\WINDOWS\system32\mmurjgpy.ini
C:\WINDOWS\system32\pmmmmbny.dll
C:\WINDOWS\system32\qhlwkceb.ini
C:\WINDOWS\system32\rgbjht.dll
C:\WINDOWS\system32\rqBayccf.ini
C:\WINDOWS\system32\rqBayccf.ini2
C:\WINDOWS\system32\rwarwvyi.ini
C:\WINDOWS\system32\RYIjQqss.ini
C:\WINDOWS\system32\RYIjQqss.ini2
C:\WINDOWS\system32\uwEfNXyb.ini
C:\WINDOWS\system32\uwEfNXyb.ini2
C:\WINDOWS\system32\vmmlofrd.ini
C:\WINDOWS\system32\ydlfljxl.dll
C:\WINDOWS\system32\ykapeqrg.dll
.
((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-06-02 to 2008-07-02 ))))))))))))))))))))))))))))))))))))
.
2008-07-02 16:26 . 2008-07-02 16:26 <REP> d-------- C:\Documents and Settings\Jean\eau
2008-07-01 19:52 . 2008-07-01 19:52 <REP> d-------- C:\Program Files\Free Audio Pack
2008-07-01 12:11 . 2008-07-01 12:22 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Dev-Cpp
2008-07-01 12:11 . 2008-07-01 12:11 <REP> d-------- C:\Dev-Cpp
2008-06-30 17:18 . 2008-06-30 17:19 1,712,990 ---hs---- C:\WINDOWS\system32\dqpbwcwe.tmp
2008-06-29 21:09 . 1999-10-09 17:30 305,152 --a------ C:\WINDOWS\IsUninst.exe
2008-06-29 21:08 . 2008-06-30 17:46 525 --a------ C:\WINDOWS\QIII.INI
2008-06-29 17:30 . 1996-11-16 03:01 2,090,170 --------- C:\WINDOWS\system32\2gmgsmt.sf2
2008-06-29 17:30 . 1999-06-28 03:06 218,528 --------- C:\WINDOWS\system32\drivers\emu10k1.sys
2008-06-29 17:30 . 1999-06-16 03:00 160,832 --------- C:\WINDOWS\system32\drivers\ctsyn.sys
2008-06-29 17:30 . 1998-08-31 13:40 151,552 --a------ C:\WINDOWS\CTDEL.EXE
2008-06-29 17:30 . 1997-06-02 04:06 34,816 --a------ C:\WINDOWS\CTRES32.DLL
2008-06-29 17:30 . 1999-02-09 03:00 27,264 --------- C:\WINDOWS\system32\drivers\sfman.sys
2008-06-29 17:30 . 1999-06-25 03:00 19,456 --------- C:\WINDOWS\system32\ctsyn32.dll
2008-06-29 17:30 . 1999-04-29 03:05 18,432 --------- C:\WINDOWS\system32\ctmm32.dll
2008-06-29 17:28 . 1998-12-08 01:53 223,744 --a------ C:\WINDOWS\system32\CtDetect.cpl
2008-06-29 17:28 . 1998-12-07 01:52 58,880 --a------ C:\WINDOWS\system32\CTDETRES.DLL
2008-06-29 17:27 . 1997-04-18 11:49 298,496 --a------ C:\WINDOWS\UNINST.EXE
2008-06-29 17:27 . 1998-12-31 01:50 165,888 --a------ C:\WINDOWS\CTDelLau.exe
2008-06-29 17:27 . 1998-12-31 01:00 17,408 --a------ C:\WINDOWS\UnInstall.dll
2008-06-29 17:27 . 2008-06-29 17:55 28 --a------ C:\WINDOWS\CTDelLau.INI
2008-06-29 17:26 . 2008-02-03 00:13 231 --a------ C:\WINDOWS\SYSTEM.I~I
2008-06-29 17:06 . 1998-02-25 03:00 2,259,067 --------- C:\WINDOWS\system32\default.ecw
2008-06-29 17:06 . 2002-07-19 10:56 270,336 --a------ C:\WINDOWS\system32\SFMS32.DLL
2008-06-29 17:06 . 1999-01-13 04:00 111,104 --------- C:\WINDOWS\system32\sfman32.dll
2008-06-29 17:06 . 2002-07-19 11:07 53,248 --a------ C:\WINDOWS\system32\AC3API.DLL
2008-06-29 16:54 . 1998-01-08 03:00 1,048,576 --a------ C:\WINDOWS\system32\SFMAN.DAT
2008-06-29 16:54 . 1995-01-13 14:10 149,504 --a------ C:\WINDOWS\system32\MFCANS32.DLL
2008-06-29 16:54 . 1995-01-13 14:10 108,032 --a------ C:\WINDOWS\system32\MFCUIA32.DLL
2008-06-29 16:54 . 1998-06-05 04:00 84,992 --a------ C:\WINDOWS\system32\SFCVRT32.DLL
2008-06-29 16:54 . 1995-08-30 02:02 82,432 --a------ C:\WINDOWS\system32\CTWFLT32.DLL
2008-06-29 16:54 . 1994-12-05 03:11 53,552 --a------ C:\WINDOWS\CTCCW.DLL
2008-06-29 16:54 . 1995-07-13 02:01 26,768 --a------ C:\WINDOWS\system32\CTL3D.DLL
2008-06-29 16:54 . 1996-06-03 02:24 25,024 --a------ C:\WINDOWS\CTRES.DLL
2008-06-29 16:54 . 2008-06-29 17:39 282 --a------ C:\WINDOWS\SBWIN.INI
2008-06-29 16:53 . 2008-06-29 17:39 <REP> d-------- C:\WINDOWS\system32\Data
2008-06-29 16:52 . 1999-12-17 01:00 6,752 --------- C:\WINDOWS\system32\PFMODNT.SYS
2008-06-29 16:48 . 2004-08-03 23:08 10,624 --a------ C:\WINDOWS\system32\drivers\gameenum.sys
2008-06-29 16:48 . 2004-08-03 23:08 10,624 --a--c--- C:\WINDOWS\system32\dllcache\gameenum.sys
2008-06-29 16:48 . 2001-08-17 20:19 3,712 --a------ C:\WINDOWS\system32\drivers\ctljystk.sys
2008-06-29 16:48 . 2001-08-17 20:19 3,712 --a--c--- C:\WINDOWS\system32\dllcache\ctljystk.sys
2008-06-29 16:46 . 2008-06-29 17:54 <REP> d-------- C:\Program Files\Creative
2008-06-29 15:41 . 2008-06-29 15:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Nokia
2008-06-29 15:41 . 2008-02-01 15:17 138,112 --a------ C:\WINDOWS\system32\drivers\nmwcdnsu.sys
2008-06-29 15:41 . 2008-02-01 15:17 8,320 --a------ C:\WINDOWS\system32\drivers\nmwcdnsuc.sys
2008-06-28 14:50 . 2008-06-28 14:50 <REP> d-------- C:\Program Files\iPod
2008-06-27 19:49 . 2008-06-27 20:05 <REP> d-------- C:\Program Files\Frets on Fire
2008-06-27 19:49 . 2008-06-27 20:07 <REP> d-------- C:\Documents and Settings\Jean\Application Data\fretsonfire
2008-06-25 13:49 . 2008-06-25 22:52 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Command & Conquer 3 Les guerres du Tiberium
2008-06-25 10:32 . 2008-06-25 10:32 <REP> d-------- C:\Program Files\Electronic Arts
2008-06-24 07:47 . 2008-06-30 15:36 <REP> d-------- C:\Program Files\EA GAMES
2008-06-22 23:05 . 2008-06-22 23:06 <REP> d-------- C:\Documents and Settings\Jean\.jpi_cache
2008-06-22 23:05 . 2008-06-22 23:05 <REP> d-------- C:\Documents and Settings\Jean\.java
2008-06-22 22:21 . 2008-06-22 22:30 <REP> d-------- C:\UnrealTournament
2008-06-22 21:09 . 2008-06-22 21:09 <REP> d-------- C:\totalcmd
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\UC.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\RAR.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\PKZIP.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\PKUNZIP.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\NOCLOSE.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\LHA.PIF
2008-06-22 21:09 . 2008-04-22 07:03 545 --a------ C:\WINDOWS\ARJ.PIF
2008-06-22 21:09 . 2008-06-22 21:10 396 --a------ C:\WINDOWS\wincmd.ini
2008-06-22 20:42 . 2008-06-24 23:09 25,992 --a------ C:\WINDOWS\system32\pgdfgsvc.exe
2008-06-22 17:05 . 2008-06-22 23:21 <REP> d-------- C:\Documents and Settings\Jean\.jchatirc
2008-06-22 17:04 . 2003-05-01 08:05 229,487 --a------ C:\WINDOWS\system32\jpicpl32.cpl
2008-06-22 17:03 . 2008-06-22 17:04 <REP> d-------- C:\Program Files\JChatIRC
2008-06-22 13:09 . 2008-06-22 13:09 <REP> d-------- C:\Program Files\Fichiers communs\DVDVIDEOSOFT
2008-06-22 13:09 . 2008-06-22 13:09 <REP> d-------- C:\Program Files\DVDVIDEOSOFT
2008-06-22 13:09 . 2002-01-05 15:37 344,064 --a------ C:\WINDOWS\system32\msvcr70.dll
2008-06-22 12:54 . 2008-06-22 13:02 <REP> d-------- C:\WINDOWS\SxsCaPendDel
2008-06-22 00:32 . 2008-06-22 00:33 1,441,588 --a------ C:\SDFix.exe
2008-06-22 00:30 . 2008-06-22 00:30 <REP> d-------- C:\SDFIX
2008-06-22 00:30 . 2008-06-22 00:30 <REP> d-------- C:\Program Files\Trend Micro
2008-06-22 00:29 . 2008-07-01 14:06 <REP> d-------- C:\Documents and Settings\Jean\dwhelper
2008-06-22 00:01 . 2008-06-22 00:01 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-06-22 00:01 . 2008-06-22 00:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-06-22 00:00 . 2008-06-22 00:00 <REP> d-------- C:\Program Files\Safer Networking
2008-06-21 23:52 . 2008-06-21 23:52 <REP> d-------- C:\WINDOWS\DED53B0BB67C4244AE6AD6FD3C28D1EF.TMP
2008-06-21 23:26 . 2008-06-21 23:26 <REP> dr-h----- C:\Documents and Settings\Jean\Application Data\SecuROM
2008-06-21 18:54 . 2008-06-21 18:54 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Command & Conquer 3 Tiberium Wars
2008-06-20 13:50 . 2008-06-20 13:50 <REP> d-------- C:\Documents and Settings\Jean\Application Data\Inkscape
2008-06-20 13:50 . 2008-06-20 13:55 <REP> d-------- C:\Documents and Settings\Jean\Application Data\gtk-2.0
2008-06-20 13:46 . 2008-06-20 13:49 <REP> d-------- C:\Program Files\Inkscape
2008-06-18 13:49 . 2008-07-01 21:42 16,574 --a------ C:\WINDOWS\EPISMF00.SWB
2008-06-17 22:04 . 2008-06-17 22:13 <REP> d-------- C:\Program Files\PGameScan
2008-06-16 05:13 . 2008-07-02 21:22 110,428 --a------ C:\WINDOWS\BM471e9319.xml
2008-06-15 20:13 . 2008-07-02 09:30 15,804 --ah----- C:\WINDOWS\system32\mlfcache.dat
2008-06-15 12:03 . 2008-06-15 12:03 <REP> d-------- C:\Documents and Settings\Nicolas\Application Data\PC Suite
2008-06-12 19:48 . 2008-06-12 19:48 <REP> d-------- C:\Documents and Settings\Nicolas\WebEx
2008-06-12 19:48 . 2008-06-12 19:48 <REP> d-------- C:\Documents and Settings\Nicolas\Application Data\webex
2008-06-12 19:48 . 2008-06-12 19:48 202,827 --a------ C:\WINDOWS\system32\atasnt40.dll
2008-06-12 19:48 . 2008-06-12 19:48 51,304 --a------ C:\WINDOWS\system32\drivers\atnt40k.sys
2008-06-11 13:15 . 2008-06-14 19:59 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-06-11 13:15 . 2008-06-14 19:59 272,768 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys
2008-06-07 14:26 . 2008-07-02 17:37 107,832 --a------ C:\WINDOWS\system32\PnkBstrB.exe
2008-06-07 14:26 . 2008-06-16 19:36 66,872 --a------ C:\WINDOWS\system32\PnkBstrA.exe
2008-06-07 14:26 . 2008-07-02 17:37 22,328 --a------ C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-06-07 14:26 . 2008-06-07 14:26 22,328 --a------ C:\Documents and Settings\Jean\Application Data\PnkBstrK.sys
2008-06-07 14:26 . 2008-06-07 14:26 291 --a------ C:\WINDOWS\game.ini
2008-06-07 13:06 . 2008-07-02 21:34 <REP> d-------- C:\WINDOWS\system32\LogFiles
2008-06-07 13:02 . 2008-06-07 13:02 <REP> d--hs---- C:\WINDOWS\ftpcache
2008-06-07 12:12 . 2008-06-26 17:56 642 --a------ C:\WINDOWS\settings.cfg
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-02 19:35 --------- d-----w C:\Program Files\SysMetrix
2008-07-02 19:33 --------- d-----w C:\Documents and Settings\Jean\Application Data\Free Download Manager
2008-07-02 19:33 --------- d-----w C:\Documents and Settings\Jean\Application Data\DNA
2008-07-01 21:56 --------- d-----w C:\Documents and Settings\Jean\Application Data\BitTorrent
2008-06-30 13:36 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-29 13:41 --------- d-----w C:\Program Files\Nokia
2008-06-29 13:40 --------- d-----w C:\Program Files\Fichiers communs\Nokia
2008-06-29 13:39 --------- d-----w C:\Documents and Settings\All Users\Application Data\Installations
2008-06-29 10:06 --------- d-----w C:\Documents and Settings\Nicolas\Application Data\OpenOffice.org2
2008-06-28 12:50 --------- d-----w C:\Program Files\iTunes
2008-06-27 18:00 --------- d-----w C:\Program Files\CleanUp!
2008-06-26 20:20 --------- d-----w C:\Documents and Settings\Jean\Application Data\OpenOffice.org2
2008-06-22 15:04 --------- d-----w C:\Program Files\Java
2008-06-21 21:54 --------- d-----w C:\Program Files\QuickTime
2008-06-21 21:54 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-06-21 21:52 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-06-21 21:13 --------- d-----w C:\Program Files\Safari
2008-06-20 11:56 --------- d-----w C:\Documents and Settings\Jean\Application Data\FileZilla
2008-06-14 08:41 --------- d-----w C:\Documents and Settings\Jean\Application Data\Nokia
2008-06-07 12:01 --------- d-----w C:\Program Files\Download
2008-06-04 17:19 --------- d-----w C:\Program Files\BitTorrent
2008-06-03 16:24 --------- d-----w C:\Program Files\Last.fm
2008-06-01 11:25 --------- d-----w C:\Program Files\DNA
2008-05-30 21:09 307,968 ----a-w C:\WINDOWS\system32\TuneUpDefragService.exe
2008-05-30 21:09 --------- d-----w C:\Program Files\TuneUp Utilities 2008
2008-05-30 21:09 --------- d-----w C:\Documents and Settings\Jean\Application Data\TuneUp Software
2008-05-30 21:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-05-24 21:51 33,824 ----a-w C:\WINDOWS\system32\drivers\oreans32.sys
2008-05-24 09:59 --------- d-----w C:\Program Files\Universal Extractor
2008-05-23 15:07 --------- d-----w C:\Program Files\Audacity
2008-05-19 16:25 0 ---ha-w C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-05-19 16:25 0 ---ha-w C:\WINDOWS\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2008-05-10 21:50 --------- d-----w C:\Program Files\Batch_optimisateur_pour_PhpWebGallery
2008-05-09 19:26 --------- d-----w C:\Program Files\Fichiers communs\Thraex Software
2008-05-08 12:28 202,752 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
2008-05-07 15:32 --------- d-----w C:\Program Files\Apple Software Update
2008-05-07 05:15 1,293,824 ----a-w C:\WINDOWS\system32\quartz.dll
2008-04-30 20:03 52,736 ----a-w C:\WINDOWS\pw3.exe
2008-04-30 20:03 39,936 ----a-w C:\WINDOWS\pw4.exe
2008-04-30 20:02 51,200 ----a-w C:\WINDOWS\inf.exe
2008-04-23 04:16 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2008-04-17 09:28 219,648 ----a-w C:\WINDOWS\system32\uxtheme.dll
2008-04-17 09:28 219,648 ----a-w C:\WINDOWS\system32\dllcache\uxtheme.dll
2008-04-14 02:34 7,680 ----a-w C:\WINDOWS\system32\spdwnwxp.exe
2008-04-14 02:33 221,184 ----a-w C:\WINDOWS\system32\wmpns.dll
2008-04-14 02:33 218,112 ----a-w C:\WINDOWS\system32\c_g18030.dll
2008-04-14 02:32 76,288 ----a-w C:\WINDOWS\system32\uniime.dll
2008-04-14 02:31 811,064 ----a-w C:\WINDOWS\system32\imjp81k.dll
2008-04-14 02:31 7,168 ----a-w C:\WINDOWS\system32\kbdibm02.dll
2008-04-14 02:31 7,168 ----a-w C:\WINDOWS\system32\f3ahvoas.dll
2008-04-14 02:31 6,656 ----a-w C:\WINDOWS\system32\kbdlk41a.dll
2008-04-14 02:31 6,144 ----a-w C:\WINDOWS\system32\kbdlk41j.dll
2008-04-14 02:31 6,144 ----a-w C:\WINDOWS\system32\kbdax2.dll
2008-04-14 02:31 6,144 ----a-w C:\WINDOWS\system32\kbd106n.dll
2008-04-14 02:31 6,144 ----a-w C:\WINDOWS\system32\kbd106.dll
2008-04-14 02:31 6,144 ----a-w C:\WINDOWS\system32\kbd101.dll
1998-08-24 10:09 10,000 ----a-w C:\WINDOWS\inf\unregpn.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 16:09 15360]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-01-17 18:51 486856]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 12:34 5724184]
"BitTorrent DNA"="C:\Program Files\DNA\btdna.exe" [2008-06-01 13:25 289088]
"PC Suite Tray"="C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-03-28 11:20 1079296]
"Free Download Manager"="C:\Program Files\Free Download Manager\fdm.exe" [2007-12-16 21:39 2449455]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe" [2003-05-29 17:28 790528]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]
"NeroFilterCheck"="C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe" [2007-03-15 21:02 153136]
"EPSON Stylus DX4800 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE" [2005-02-02 06:00 98304]
"itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [2006-09-22 17:43 793408]
"SysMetrix"="C:\Program Files\SysMetrix\SysMetrix.exe" [2006-02-25 22:09 2637824]
"CameraFixer"="C:\WINDOWS\CameraFixer.exe" [2006-10-09 18:32 20480]
"tsnp325"="C:\WINDOWS\tsnp325.exe" [2006-10-10 16:49 270336]
"snp325"="C:\WINDOWS\vsnp325.exe" [2006-10-10 15:11 827392]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-05-27 10:50 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-06-02 11:13 267048]
"MSConfig"="C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2004-08-19 16:10 160768]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-19 16:09 15360]
"Nokia.PCSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2008-03-26 18:41 1232896]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= i420vfw.dll
"vidc.DIV3"= DivXc32.dll
"vidc.DIV4"= DivXc32f.dll
"msacm.divxa32"= DivXa32.acm
"vidc.yv12"= yv12vfw.dll
"aux"= ctwdm32.dll
=
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Free Download Manager"="C:\Program Files\Free Download Manager\fdm.exe" -autorun
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" -atboottime
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Fichiers communs\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Free Download Manager\\fdm.exe"=
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\DNA\\btdna.exe"=
"C:\\WINDOWS\\system32\\PnkBstrA.exe"=
"C:\\WINDOWS\\system32\\PnkBstrB.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\Program Files\\Electronic Arts\\Command & Conquer 3\\RetailExe\\1.0\\cnc3game.dat"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"C:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R1 oreans32;oreans32;C:\WINDOWS\system32\drivers\oreans32.sys [2008-05-24 23:51]
R1 VBoxDrv;VirtualBox Service;C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys [2008-02-20 21:17]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [2008-02-20 21:17]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R3 SNP325;USB PC Camera (SNPSTD325);C:\WINDOWS\system32\DRIVERS\snp325.sys [2007-01-19 17:38]
S2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 16:10]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2008-02-01 15:17]
S3 nmwcdnsuc;Nokia USB Flashing Generic;C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2008-02-01 15:17]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-05-30 23:09]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0c619736-2e64-11dd-bc54-0050fcedd2b2}]
\Shell\AutoRun\command - J:\Watch.exe
.
Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
"2008-07-02 19:34:07 C:\WINDOWS\Tasks\1-Click Maintenance.job"
- C:\Program Files\TuneUp Utilities 2008\OneClickStarter.exe
"2008-07-01 20:31:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
- - - - ORPHANS REMOVED - - - -
BHO-{87D5195F-A7AB-4BC2-99FC-8AA79B4EE418} - C:\WINDOWS\system32\byXNfEwu.dll
HKLM-Run-BM471e9319 - C:\WINDOWS\system32\pmmmmbny.dll
Notify-dimsntfy - (no file)
Notify-vtUnNEwx - vtUnNEwx.dll
Notify-wvUkICrQ - wvUkICrQ.dll
MSConfigStartUp-442da085 - C:\WINDOWS\system32\ewcwbpqd.dll
MSConfigStartUp-BM471e9319 - C:\WINDOWS\system32\pmmmmbny.dll
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-07-02 21:34:49
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cach‚s ...
Balayage cach‚ autostart entries ...
Balayage des fichiers cach‚s ...
Scan termin‚ avec succŠs
Les fichiers cach‚s: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-07-02 21:45:54 - machine was rebooted
ComboFix-quarantined-files.txt 2008-07-02 19:45:35
Pre-Run: 6,355,828,736 octets libres
Post-Run: 6,317,051,904 octets libres
327 --- E O F --- 2008-06-20 12:11:06