Ps2: par contre, j'étais sérieux quand je disais qu'il m'arrivait de dormir.
je te rassure moi aussi il marrive de dormir
d'ailleurs en general je dors deja a cette heure la..
merci du temps que tu m'as consacré les gens comme toi sont vraiment rare de nos jours..
je te met le rapport a demain je vais dodo jsui ko
MERCIIIIIIII
ComboFix 08-09-30.03 - st,phanie 2008-10-02 0:06:23.1 - NTFSx86
Microsoft Windows XP Edition familiale 5.1.2600.2.1252.1.1036.18.640 [GMT 2:00]
Lancé depuis: C:Documents and Settingsst,phanieBureauComboFix.exe
Commutateurs utilisés :: C:Documents and Settingsst,phanieBureauWinXP_FR_PER_BF.EXE
* Un nouveau point de restauration a été créé
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:InfoSat.txt
C:WINDOWSsystem32TDSSadw.dll
C:WINDOWSsystem32TDSSerrors.log
C:WINDOWSsystem32 dssl.dll
C:WINDOWSsystem32 dsslog.dll
C:WINDOWSsystem32TDSSserf1.dll
C:WINDOWSsystem32 dssservers.dat
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------Legacy_TDSSSERV
-------Service_TDSSserv
((((((((((((((((((((((((((((( Fichiers créés du 2008-09-01 au 2008-10-01 ))))))))))))))))))))))))))))))))))))
.
2008-10-01 23:23 . 2008-10-01 23:47 <REP> d-------- C:Program FilesCCleaner
2008-10-01 21:36 . <REP> C:Documents and SettingsstéphanieApplication DataMalwarebytes
2008-10-01 21:35 . 2008-10-01 21:35 <REP> d-------- C:Documents and SettingsAll UsersApplication DataMalwarebytes
2008-10-01 20:25 . 2007-11-28 18:56 <REP> d-------- C:SDFix
2008-10-01 20:13 . 2008-10-01 20:13 938 --a------ C:WINDOWSsystem32 mp.reg
2008-10-01 19:16 . 2008-10-01 19:16 <REP> d-------- C:Program FilesTrend Micro
2008-09-30 00:22 . 2008-09-30 00:22 965,226 ---hs---- C:WINDOWSsystem32ugmmcfdm.ini
2008-09-29 18:22 . 2008-09-29 18:23 964,188 ---hs---- C:WINDOWSsystem32
dctpeec.ini
2008-09-29 12:20 . 2008-09-29 12:20 961,114 ---hs---- C:WINDOWSsystem32ivmybuyh.ini
2008-09-26 18:10 . 2008-09-26 18:10 <REP> d--h----- C:WINDOWSPIF
2008-09-26 12:45 . <REP> C:Documents and SettingsstéphanieTracing
2008-09-26 12:43 . 2008-09-26 12:43 <REP> d-------- C:Program FilesMicrosoft
2008-09-26 12:39 . 2008-09-26 12:39 <REP> d-------- C:Program FilesFichiers communsWindows Live
2008-09-26 12:35 . 2008-09-26 12:35 <REP> d-------- C:Program FilesMicrosoft Silverlight
2008-09-24 15:42 . <REP> C:Documents and SettingsstéphanieApplication DataOpenOffice.org2
2008-09-24 15:40 . 2008-09-24 15:40 <REP> d-------- C:Program FilesOpenOffice.org 2.4
2008-09-24 15:40 . 2007-12-14 01:59 69,632 --a------ C:WINDOWSsystem32javacpl.cpl
2008-09-23 01:47 . 2008-09-23 02:10 <REP> d-------- C:WINDOWSsystem32CatRoot_bak
2008-09-22 13:44 . 2008-06-23 18:28 6,066,176 -----c--- C:WINDOWSsystem32dllcacheieframe.dll
2008-09-22 13:44 . 2007-04-17 11:32 2,455,488 -----c--- C:WINDOWSsystem32dllcacheieapfltr.dat
2008-09-22 13:44 . 2007-03-08 07:10 1,048,576 -----c--- C:WINDOWSsystem32dllcacheieframe.dll.mui
2008-09-22 13:44 . 2008-06-23 18:28 459,264 -----c--- C:WINDOWSsystem32dllcachemsfeeds.dll
2008-09-22 13:44 . 2008-06-23 18:28 383,488 -----c--- C:WINDOWSsystem32dllcacheieapfltr.dll
2008-09-22 13:44 . 2008-06-23 18:28 267,776 -----c--- C:WINDOWSsystem32dllcacheiertutil.dll
2008-09-22 13:44 . 2008-06-23 18:28 63,488 -----c--- C:WINDOWSsystem32dllcacheicardie.dll
2008-09-22 13:44 . 2008-06-23 18:28 52,224 -----c--- C:WINDOWSsystem32dllcachemsfeedsbs.dll
2008-09-22 13:44 . 2008-06-23 11:20 13,824 -----c--- C:WINDOWSsystem32dllcacheieudinit.exe
2008-09-22 13:43 . 2008-09-22 13:44 <REP> d-------- C:WINDOWSsystem32fr-fr
2008-09-21 22:27 . 2008-09-21 22:27 <REP> d-------- C:Program FilesPhotoFiltre
2008-09-20 22:37 . <REP> C:Documents and SettingsstéphanieApplication DataWinRAR
2008-09-20 14:56 . 2008-10-01 17:00 <REP> d-------- C:Program FileseMule
2008-09-20 03:07 . 2008-06-14 19:59 272,768 --------- C:WINDOWSsystem32driversthport.sys
2008-09-20 03:07 . 2008-06-14 19:59 272,768 -----c--- C:WINDOWSsystem32dllcachethport.sys
2008-09-20 01:08 . 2004-08-03 23:07 59,264 --a------ C:WINDOWSsystem32driversUSBAUDIO.sys
2008-09-20 01:08 . 2004-08-03 23:07 59,264 --a--c--- C:WINDOWSsystem32dllcacheusbaudio.sys
2008-09-19 20:49 . 2008-09-19 20:49 <REP> d-------- C:Program FilesWindows Media Connect 2
2008-09-19 20:48 . 2008-09-19 20:48 <REP> d-------- C:WINDOWSsystem32LogFiles
2008-09-19 20:48 . 2008-09-19 20:49 <REP> d-------- C:WINDOWSsystem32driversUMDF
2008-09-19 18:10 . 2008-09-19 18:10 <REP> d-------- C:Program FilesABAEnglishCourse
2008-09-19 17:39 . 2008-07-18 22:07 270,880 --a------ C:WINDOWSsystem32mucltui.dll
2008-09-19 17:39 . 2008-07-18 22:07 210,976 --a------ C:WINDOWSsystem32muweb.dll
2008-09-19 17:39 . 2008-07-18 22:07 29,728 --a------ C:WINDOWSsystem32mucltui.dll.mui
2008-09-19 01:19 . <REP> C:Documents and SettingsstéphanieApplication Datavlc
2008-09-19 01:16 . 2008-09-19 01:16 <REP> d-------- C:Program FilesVideoLAN
2008-09-19 00:20 . <REP> C:Documents and SettingsstéphanieApplication DataMozilla
2008-09-19 00:20 . 2008-09-19 00:20 0 --a------ C:WINDOWS
sreg.dat
2008-09-19 00:19 . 2008-09-19 00:19 <REP> d-------- C:WINDOWSSun
2008-09-19 00:19 . <REP> C:Documents and SettingsstéphanieApplication DataSun
2008-09-19 00:05 . 2001-08-23 17:04 12,288 --a------ C:WINDOWSsystem32driversmouhid.sys
2008-09-19 00:05 . 2001-08-23 17:04 12,288 --a--c--- C:WINDOWSsystem32dllcachemouhid.sys
2008-09-19 00:05 . 2008-09-19 00:05 4,384 --a------ C:WINDOWSsystem32driversO2MDDISK.PNF
2008-09-19 00:05 . 2008-09-19 00:05 4,352 --a------ C:WINDOWSsystem32driversO2SDDISK.PNF
2008-09-19 00:02 . 2008-09-19 00:02 <REP> d-------- C:Documents and SettingsAll UsersApplication DataMessenger Plus!
2008-09-18 23:34 . <REP> C:Documents and SettingsstéphanieApplication DataAdobe
2008-09-18 23:33 . <REP> C:Documents and SettingsstéphanieApplication DataMacromedia
2008-09-18 21:03 . 2004-08-04 02:54 21,504 --a------ C:WINDOWSsystem32hidserv.dll
2008-09-18 21:03 . 2001-08-17 23:59 3,072 --a------ C:WINDOWSsystem32driversaudstub.sys
2008-09-18 21:01 . 2008-09-26 12:44 <REP> d--hs---- C:WINDOWSInstaller
2008-09-18 21:01 . 2008-09-18 21:01 <REP> d--h----- C:Documents and SettingsDefault UserVoisinage r,seau
2008-09-18 21:01 . 2008-09-18 21:01 <REP> d--h----- C:Documents and SettingsDefault UserVoisinage d'impression
2008-09-18 21:01 . 2008-09-18 19:06 <REP> d--h----- C:Documents and SettingsDefault UserModSles
2008-09-18 21:01 . 2008-09-18 21:01 <REP> d-------- C:Documents and SettingsDefault UserMes documents
2008-09-18 21:01 . 2008-09-18 21:01 <REP> dr------- C:Documents and SettingsDefault UserMenu D,marrer
2008-09-18 21:01 . 2008-09-18 21:01 <REP> d-------- C:Documents and SettingsDefault UserFavoris
2008-09-18 21:01 . 2008-09-18 19:14 <REP> d-------- C:Documents and SettingsDefault UserBureau
2008-09-18 21:01 . 2008-09-24 15:40 <REP> d--h----- C:Documents and SettingsAll UsersModSles
2008-09-18 21:01 . 2008-09-26 12:42 <REP> dr------- C:Documents and SettingsAll UsersMenu D,marrer
2008-09-18 21:01 . 2008-09-18 21:01 <REP> d-------- C:Documents and SettingsAll UsersFavoris
2008-09-18 21:01 . 2008-09-26 12:43 <REP> dr------- C:Documents and SettingsAll UsersDocuments
2008-09-18 21:01 . 2008-10-01 23:14 <REP> d-------- C:Documents and SettingsAll UsersBureau
2008-09-18 21:00 . 2008-10-02 00:07 <REP> d-------- C:WINDOWSsystem32CatRoot2
2008-09-18 21:00 . 2008-09-23 02:10 <REP> d-------- C:WINDOWSsystem32CatRoot
2008-09-18 21:00 . 2008-09-18 19:14 <REP> d--h----- C:Documents and SettingsDefault User
2008-09-18 21:00 . 2008-09-18 19:08 <REP> d-------- C:Documents and SettingsAll Users
2008-09-18 21:00 . 2008-09-18 19:34 <REP> d-------- C:Documents and Settings
2008-09-09 00:03 . 2008-09-09 00:03 51,712 --a------ C:WINDOWSsystem32sirenacm.dll
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-01 19:09 90,112 ----a-w C:WINDOWSDUMP4e2f.tmp
2008-10-01 19:07 90,112 ----a-w C:WINDOWSDUMP8c2d.tmp
2008-10-01 17:52 90,112 ----a-w C:WINDOWSDUMP44d9.tmp
2008-10-01 15:22 --------- d-s---w C:Documents and SettingsstéphanieApplication DataMicrosoft
2008-09-26 10:56 --------- d-----w C:Program FilesMessenger Plus! Live
2008-09-26 10:42 --------- d-----w C:Program FilesWindows Live
2008-09-24 13:39 --------- d-----w C:Program FilesJava
2008-09-18 22:05 22,192 ----a-w C:WINDOWSsystem32driversINFCACHE.1
2008-09-18 19:02 9,388 ----a-w C:WINDOWSsystem32driversiaStor.PNF
2008-09-18 19:02 7,280 ----a-w C:WINDOWSsystem32driversviamraid.PNF
2008-09-18 19:02 63,240 ----a-w C:WINDOWSsystem32driversSi3112r.PNF
2008-09-18 19:02 6,984 ----a-w C:WINDOWSsystem32driversSiSRaid.PNF
2008-09-18 19:02 12,432 ----a-w C:WINDOWSsystem32driversadpu320.PNF
2008-09-18 19:02 12,204 ----a-w C:WINDOWSsystem32drivers
vraid.PNF
2008-09-18 19:02 10,828 ----a-w C:WINDOWSsystem32driversiaAHCI.PNF
2008-09-18 18:20 --------- dcsh--w C:Program FilesFichiers communsWindowsLiveInstaller
2008-09-18 18:17 --------- d-----w C:Documents and SettingsAll UsersApplication DataWLInstaller
2008-09-18 18:00 --------- d-----w C:Program FilesAlwil Software
2008-09-18 17:47 6,748 ----a-w C:WINDOWSsystem32driverso2media.PNF
2008-09-18 17:47 6,708 ----a-w C:WINDOWSsystem32driverso2sd.PNF
2008-09-18 17:47 13,096 ----a-w C:WINDOWSsystem32driverso2mwxp.PNF
2008-09-18 17:47 --------- d-----w C:Program FilesFichiers communsInstallShield
2008-09-18 17:45 --------- d--h--w C:Program FilesInstallShield Installation Information
2008-09-18 17:45 --------- d-----w C:Program FilesRealtek
2008-09-18 17:44 --------- d-----w C:Program FilesIntel
2008-09-18 17:36 --------- d-----w C:Documents and SettingsstéphanieApplication DataIdentities
2008-09-18 17:14 --------- d-----w C:Program Filesmicrosoft frontpage
2008-09-18 17:13 --------- d-----w C:Program FilesFichiers communsJava
2008-09-18 17:08 --------- d-----w C:Program FilesServices en ligne
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun]
"CTFMON.EXE"="C:WINDOWSsystem32ctfmon.exe" [2004-08-05 15360]
"msnmsgr"="C:Program FilesWindows LiveMessengermsnmsgr.exe" [2008-09-09 3513344]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun]
"SunJavaUpdateSched"="C:Program FilesJavajre1.6.0_04injusched.exe" [2007-12-14 144784]
"igfxtray"="C:WINDOWSsystem32igfxtray.exe" [2006-03-23 94208]
"igfxhkcmd"="C:WINDOWSsystem32hkcmd.exe" [2006-03-23 77824]
"igfxpers"="C:WINDOWSsystem32igfxpers.exe" [2006-03-23 118784]
"RTHDCPL"="RTHDCPL.EXE" [2006-04-17 C:WINDOWSRTHDCPL.exe]
"SMSERIAL"="sm56hlpr.exe" [2006-01-20 C:WINDOWSsm56hlpr.exe]
[HKEY_USERS.DEFAULTSoftwareMicrosoftWindowsCurrentVersionRun]
"CTFMON.EXE"="C:WINDOWSsystem32CTFMON.EXE" [2004-08-05 15360]
C:Documents and Settingsst,phanieMenu D,marrerProgrammesD,marrage
OpenOffice.org 2.4.lnk - C:Program FilesOpenOffice.org 2.4programquickstart.exe [2008-01-21 393216]
[HKLM~servicessharedaccessparametersfirewallpolicystandardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM~servicessharedaccessparametersfirewallpolicystandardprofileAuthorizedApplicationsList]
"%windir%\system32\sessmgr.exe"=
"C:\Program Files\eMule\emule.exe"=
"%windir%\Network Diagnostic\xpnetdiag.exe"=
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"=
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"=
R0 O2MDRDR;O2MDRDR;C:WINDOWSsystem32DRIVERSo2media.sys [2006-02-27 34880]
R0 O2SDRDR;O2SDRDR;C:WINDOWSsystem32DRIVERSo2sd.sys [2006-02-20 29056]
R1 aswSP;avast! Self Protection;C:WINDOWSsystem32driversaswSP.sys [2008-07-19 78416]
R2 aswFsBlk;aswFsBlk;C:WINDOWSsystem32DRIVERSaswFsBlk.sys [2008-07-19 20560]
.
.
------- Examen supplémentaire -------
.
R0 -: HKCU-Main,Start Page =
hxxp://www.msn.fr/
R0 -: HKCU-Main,SearchMigratedDefaultURL =
hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-10-02 00:08:38
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
------------------------ Autres processus actifs ------------------------
.
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:WINDOWSsystem32o2flash.exe
C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
C:Program FilesWindows LiveContactswlcomm.exe
C:WINDOWSsystem32wscntfy.exe
C:ComboFixpv.cfexe
.
**************************************************************************
.
Heure de fin: 2008-10-02 0:09:56 - La machine a redémarré [st,phanie]
ComboFix-quarantined-files.txt 2008-10-01 22:09:53
Avant-CF: 56y608y673y792 octets libres
Après-CF: 56,927,375,360 octets libres
WinXP_FR_PER_BF.EXE
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)WINDOWS
[operating systems]
C:CMDCONSBOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)WINDOWS="Microsoft Windows XP