Et voilà le rapport de combofix :
ComboFix 08-11-02.05 - kahairw 2008-11-03 20:35:02.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.1620 [GMT 1:00]
Lancé depuis: c:documents and settingskahairwBureauComboFix.exe
.
((((((((((((((((((((((((((((( Fichiers créés du 2008-10-03 au 2008-11-03 ))))))))))))))))))))))))))))))))))))
.
2008-11-03 19:05 . 2008-11-03 19:05 <REP> d-------- c:windowsERUNT
2008-11-03 19:03 . 2008-11-03 19:10 <REP> d-------- C:SDFix
2008-11-03 17:10 . 2008-11-03 17:10 <REP> d-------- c:program filesLavasoft
2008-11-03 17:10 . 2008-11-03 17:10 <REP> d-------- c:program filesFichiers communsWise Installation Wizard
2008-11-03 17:10 . 2008-11-03 17:10 <REP> d-------- c:documents and settingsAll UsersApplication DataLavasoft
2008-11-03 13:54 . 2008-11-03 13:54 <REP> d-------- C:Kaspersky
2008-11-03 13:52 . 2008-11-03 13:52 <REP> d-------- c:program filesMalwarebytes' Anti-Malware
2008-11-03 13:52 . 2008-11-03 13:52 <REP> d-------- c:documents and settingskahairwApplication DataMalwarebytes
2008-11-03 13:52 . 2008-11-03 13:52 <REP> d-------- c:documents and settingsAll UsersApplication DataMalwarebytes
2008-11-03 13:52 . 2008-10-22 16:10 38,496 --a------ c:windowssystem32driversmbamswissarmy.sys
2008-11-03 13:52 . 2008-10-22 16:10 15,504 --a------ c:windowssystem32driversmbam.sys
2008-11-03 13:49 . 2008-11-03 13:49 <REP> d-------- c:program filesFichiers communsBitDefender
2008-11-03 13:49 . 2008-11-03 13:49 <REP> d-------- c:program filesBitDefender
2008-11-02 17:03 . 2008-11-02 17:03 <REP> d-------- c:program filesMSXML 4.0
2008-11-01 15:51 . 2008-11-01 15:51 <REP> d-------- c:documents and settingskahairwApplication DataSony
2008-11-01 15:47 . 2008-11-01 15:47 <REP> d-------- c:program filesSony Setup
2008-11-01 15:42 . 2008-11-01 15:42 <REP> d-------- c:documents and settingskahairwApplication DataPropellerhead Software
2008-11-01 15:42 . 2008-11-01 15:42 <REP> d-------- c:documents and settingsAll UsersApplication DataPropellerhead Software
2008-11-01 15:42 . 2008-11-01 15:42 368,640 --a------ c:windowssystem32ReWire.dll
2008-11-01 15:42 . 2008-11-01 15:42 233,472 --a------ c:windowssystem32REX Shared Library.dll
2008-11-01 14:03 . 2008-11-01 14:03 257 --a------ c:windowswininit.ini
2008-10-30 14:03 . 2008-10-30 14:13 <REP> d-------- c:documents and settingskahairwApplication DataCorel
2008-10-30 14:03 . 2008-10-30 14:03 <REP> d-------- c:documents and settingsAll UsersApplication DataCorel
2008-10-30 14:02 . 2008-10-30 14:03 <REP> d-------- c:program filesFichiers communsCorel
2008-10-30 14:01 . 2008-10-30 14:39 2,516 --ahs---- c:windowssystem32KGyGaAvL.sys
2008-10-30 14:01 . 2008-10-30 14:03 88 -r-hs---- c:windowssystem32A07CBF2059.sys
2008-10-30 14:00 . 2008-10-30 14:02 <REP> d-------- c:program filesCorel
2008-10-23 11:01 . 2008-10-23 11:01 <REP> d-------- c:documents and settingsAll UsersApplication DataInstallShield
2008-10-23 10:58 . 2008-10-23 10:58 <REP> d-------- c:program filesgPotato.eu
2008-10-23 10:58 . 2005-08-11 14:29 73,728 --a------ c:windowssystem32ISUSPM.cpl
2008-10-21 10:24 . 2008-10-23 12:13 <REP> d-------- C:Warhammer Online - Age of Reckoning
2008-10-21 07:23 . 2008-10-21 07:23 <REP> d-------- C:ProgramData
2008-10-21 07:23 . 2008-10-21 07:23 <REP> d-------- c:program filesElectronic Arts
2008-10-17 13:12 . 2008-10-17 13:12 <REP> d-------- c:documents and settingsAll UsersApplication DataLogiShrd
2008-10-17 13:11 . 2008-10-17 13:11 <REP> d-------- c:documents and settingskahairwApplication DataLogitech
2008-10-17 13:11 . 2008-10-17 13:11 0 --ah----- c:windowssystem32driversMsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-10-17 13:11 . 2008-10-17 13:11 0 --ah----- c:windowssystem32driversMsft_Kernel_LUsbFilt_01005.Wdf
2008-10-17 13:11 . 2008-10-17 13:11 0 --ah----- c:windowssystem32driversMsft_Kernel_LMouFilt_01005.Wdf
2008-10-17 13:10 . 2008-10-17 13:10 <REP> d-------- c:program filesLogitech
2008-10-17 13:10 . 2008-10-17 13:10 <REP> d-------- c:program filesFichiers communsLogishrd
2008-10-17 13:10 . 2008-10-17 13:10 <REP> d-------- c:documents and settingsAll UsersApplication DataLogitech
2008-10-17 13:10 . 2008-05-02 01:38 301,656 --a------ c:windowssystem32BtCoreIf.dll
2008-10-17 13:10 . 2008-05-02 01:39 170,512 --a------ c:windowssystem32kemutb.dll
2008-10-17 13:10 . 2008-05-02 01:39 145,936 --a------ c:windowssystem32KemUtil.dll
2008-10-17 13:10 . 2008-05-02 01:40 117,264 --a------ c:windowssystem32KemWnd.dll
2008-10-17 13:10 . 2008-05-02 01:40 84,496 --a------ c:windowssystem32KemXML.dll
2008-10-17 11:13 . 2008-10-17 11:13 63 --a------ c:windowsyesmessenger.ini
2008-10-12 16:06 . 2006-08-21 10:14 128,896 -----c--- c:windowssystem32dllcachefltmgr.sys
2008-10-12 16:06 . 2006-08-21 10:14 23,040 -----c--- c:windowssystem32dllcachefltmc.exe
2008-10-12 16:06 . 2006-08-21 13:26 16,896 -----c--- c:windowssystem32dllcachefltlib.dll
2008-10-12 11:46 . 2007-07-09 14:11 584,192 -----c--- c:windowssystem32dllcache
pcrt4.dll
2008-10-12 11:31 . 2008-10-23 12:09 183,120 --a------ c:windowssystem32PnkBstrB.exe
2008-10-12 11:31 . 2008-10-23 12:09 137,480 --a------ c:windowssystem32driversPnkBstrK.sys
2008-10-12 11:30 . 2008-11-03 19:08 <REP> d-------- c:windowssystem32LogFiles
2008-10-12 11:30 . 2008-10-12 11:30 66,872 --a------ c:windowssystem32PnkBstrA.exe
2008-10-10 21:08 . 2008-10-10 21:11 <REP> d-------- c:program filesFichiers communsApple
2008-10-10 21:08 . 2008-10-10 21:08 <REP> d-------- c:program filesApple Software Update
2008-10-10 21:08 . 2008-10-10 21:08 <REP> d-------- c:documents and settingsAll UsersApplication DataApple
2008-10-10 16:17 . 2008-10-10 16:17 <REP> d-------- c:program filesFichiers communssnp325
2008-10-10 16:17 . 2007-01-19 15:38 10,241,280 --a------ c:windowssystem32driverssnp325.sys
2008-10-10 16:17 . 2006-10-10 13:11 827,392 --a------ c:windowsvsnp325.exe
2008-10-10 16:17 . 2006-10-10 14:49 270,336 --a------ c:windows snp325.exe
2008-10-10 16:17 . 2006-04-12 11:11 147,456 --a------ c:windowssystem32
snp325.dll
2008-10-10 16:17 . 2006-08-28 10:53 57,344 --a------ c:windowssystem32vsnp325.dll
2008-10-10 16:17 . 2005-11-23 12:55 53,248 --a------ c:windowssystem32csnp325.dll
2008-10-10 16:17 . 2006-10-09 16:32 20,480 --a------ c:windowsCameraFixer.exe
2008-10-10 16:17 . 2004-02-27 16:36 15,498 --a------ c:windowssnp325.ini
2008-10-10 16:17 . 2004-02-27 16:36 13,023 --a------ c:windowssnp325.src
2008-10-09 15:55 . 2008-10-27 12:30 <REP> d-------- c:program filesSpybot - Search & Destroy
2008-10-09 15:55 . 2008-11-03 15:56 <REP> d-------- c:documents and settingsAll UsersApplication DataSpybot - Search & Destroy
2008-10-09 11:18 . 2008-10-24 16:44 <REP> d-------- c:program filesAmphibizorus
2008-10-09 10:50 . 2008-10-09 10:50 <REP> d-------- c:program filesLphantBar
2008-10-09 10:50 . 2008-10-09 10:50 <REP> d-------- c:program filesConduit
2008-10-09 10:45 . 2008-10-09 10:50 <REP> d-------- c:program filesLphant
2008-10-08 20:11 . 2008-10-24 16:56 <REP> d-------- c:documents and settingskahairwApplication Data eamspeak2
2008-10-08 19:58 . 2008-10-08 19:58 <REP> d-------- c:documents and settingsAll UsersApplication Data
View_Profiles
2008-10-08 19:51 . 2008-10-08 19:51 <REP> d-------- c:documents and settingskahairwApplication DataVentrilo
2008-10-08 17:53 . 2008-10-08 17:53 0 --a------ c:windows
sreg.dat
2008-10-08 17:38 . 2008-10-08 18:00 <REP> d-------- c:windowssystem32CatRoot_bak
2008-10-08 17:37 . 2008-04-11 19:51 683,520 -----c--- c:windowssystem32dllcacheinetcomm.dll
2008-10-08 17:37 . 2008-05-01 15:31 331,776 -----c--- c:windowssystem32dllcachemsadce.dll
2008-10-08 17:37 . 2008-06-14 18:59 272,768 -----c--- c:windowssystem32dllcachethport.sys
2008-10-08 17:34 . 2008-07-18 21:07 270,880 --a------ c:windowssystem32mucltui.dll
2008-10-08 17:34 . 2008-07-18 21:07 210,976 --a------ c:windowssystem32muweb.dll
2008-10-08 17:34 . 2008-07-18 21:07 29,728 --a------ c:windowssystem32mucltui.dll.mui
2008-10-07 19:37 . 2008-10-22 21:27 <REP> d-------- c:program filesDivX
2008-10-07 18:42 . 2008-10-07 18:42 <REP> d-------- c:windowsPixArt
2008-10-07 18:40 . 2008-10-07 18:40 <REP> d-------- c:program filesWebcam 1200
2008-10-07 18:40 . 2008-10-07 18:40 <REP> d-------- c:documents and settingskahairwApplication DataInstallShield
2008-10-07 18:40 . 2007-06-29 15:32 611,584 --a------ c:windowssystem32driversPFC027.SYS
2008-10-07 18:40 . 2007-05-17 14:50 129,024 --a------ c:windowssystem32SP207.AX
2008-10-07 18:40 . 2006-11-20 08:04 6,656 --a------ c:windowssystem32CoInst_070629.dll
2008-10-07 18:40 . 2007-06-29 10:07 566 --a------ c:windowssystem32SP207.INI
2008-10-07 18:38 . 2006-07-03 09:31 94,208 --a------ c:windowsamcap.exe
2008-10-07 18:01 . 2008-11-03 16:59 <REP> d-------- c:program filesSteam
2008-10-07 17:24 . 2008-10-31 19:52 <REP> d-------- c:documents and settingsAll UsersApplication DataMessenger Plus!
2008-10-07 17:16 . 2008-10-07 17:22 <REP> d-------- c:program filesYahoo!
2008-10-07 17:16 . 2008-10-07 17:16 <REP> d-------- c:program filesVideoLAN
2008-10-07 17:16 . 2008-10-07 17:16 <REP> d-------- c:program filesCCleaner
2008-10-07 17:16 . 2008-10-07 17:16 <REP> d-------- c:documents and settingskahairwApplication Datavlc
2008-10-07 17:15 . 2008-10-07 17:15 <REP> d-------- c:program filesXvid
2008-10-07 17:15 . 2008-10-07 17:15 <REP> d-------- c:program filesK-Lite Codec Pack
2008-10-07 17:11 . 2008-10-07 17:11 <REP> d-------- c:program filesMessenger Plus! Live
2008-10-07 17:11 . 2008-10-07 17:11 <REP> d-------- c:program filesGpljoy
2008-10-07 17:11 . 2008-10-07 17:11 <REP> d-------- c:program filesCircle Developement
2008-10-07 17:11 . 2008-10-07 17:12 <REP> d-------- c:documents and settingskahairwApplication DataGpljoy
2008-10-07 17:11 . 2008-10-07 17:11 <REP> d-------- c:documents and settingsAll UsersApplication Data2 tray tick inside
2008-10-07 17:10 . 2008-10-30 18:43 <REP> d-------- c:documents and settingskahairwContacts
2008-10-07 17:09 . 2008-10-07 17:09 <REP> d----c--- c:windowssystem32DRVSTORE
2008-10-07 17:08 . 2008-10-07 17:09 <REP> d-------- c:program filesWindows Live
2008-10-07 17:08 . 2008-10-07 17:09 <REP> d--hsc--- c:program filesFichiers communsWindowsLiveInstaller
2008-10-07 17:08 . 2008-10-07 17:08 <REP> d-------- c:documents and settingsAll UsersApplication DataWLInstaller
2008-10-07 17:02 . 2008-10-17 10:09 <REP> d--h----- c:windows$hf_mig$
2008-10-07 17:01 . 2008-07-18 21:10 45,768 --a------ c:windowssystem32wups2.dll
2008-10-07 17:01 . 2008-07-18 21:10 38,088 --a------ c:windowssystem32wucltui.dll.mui
2008-10-07 17:01 . 2008-07-18 21:09 29,896 --a------ c:windowssystem32wuaucpl.cpl.mui
2008-10-07 17:01 . 2008-07-18 21:09 29,896 --a------ c:windowssystem32wuapi.dll.mui
2008-10-07 17:01 . 2008-07-18 21:09 22,216 --a------ c:windowssystem32wuaueng.dll.mui
2008-10-07 16:56 . 2008-10-07 16:56 <REP> d-------- c:documents and settingsLocalServiceMenu Démarrer
2008-10-07 16:51 . 2008-10-07 16:51 <REP> d-------- c:windowsServicePackFiles
2008-10-07 16:51 . 2004-08-19 15:09 77,312 --a------ c:windowssystem32usbui.dll
2008-10-07 16:51 . 2004-08-19 14:54 58,496 --a------ c:windowssystem32drivers
edbook.sys
2008-10-07 16:51 . 2001-08-17 21:46 6,400 --a------ c:windowssystem32driversenum1394.sys
2008-10-07 16:49 . 2006-10-08 20:51 23,856 --a------ c:windowssystem32spupdsvc.exe
2008-10-07 16:49 . 2004-07-17 10:40 19,528 --a------ c:windows
002325_.tmp
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-07 14:57 --------- d-----w c:program filesmicrosoft frontpage
2008-10-07 14:56 558,142 ----a-w c:windowsjavaPackagesHBVD3FVX.ZIP
2008-10-07 14:56 155,995 ----a-w c:windowsjavaPackagesLRV3RPFH.ZIP
2008-10-07 14:54 --------- d-----w c:program filesServices en ligne
2008-09-19 21:55 200,704 ----a-w c:windowssystem32ssldivx.dll
2008-09-19 21:55 1,044,480 ----a-w c:windowssystem32libdivx.dll
2008-09-15 15:39 1,846,144 ----a-w c:windowssystem32win32k.sys
2008-08-14 13:44 2,182,400 ----a-w c:windowssystem32
toskrnl.exe
2008-08-14 13:44 2,059,776 ----a-w c:windowssystem32
tkrnlpa.exe
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerURLSearchHooks]
"{6b284373-1765-4464-a587-80fbc2b2eefa}"= "c:program filesLphantBar bLpha.dll" [2008-03-13 1524248]
[HKEY_CLASSES_ROOTclsid{6b284373-1765-4464-a587-80fbc2b2eefa}]
[HKEY_LOCAL_MACHINE~Browser Helper Objects{6b284373-1765-4464-a587-80fbc2b2eefa}]
2008-03-13 09:30 1524248 --a------ c:program filesLphantBar bLpha.dll
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar]
"{6b284373-1765-4464-a587-80fbc2b2eefa}"= "c:program filesLphantBar bLpha.dll" [2008-03-13 1524248]
[HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun]
"msnmsgr"="c:program filesWindows LiveMessengermsnmsgr.exe" [2007-10-18 5724184]
[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun]
"NvCplDaemon"="c:windowssystem32NvCpl.dll" [2007-12-05 8523776]
[HKEY_USERS.DEFAULTSoftwareMicrosoftWindowsCurrentVersionRun]
"CTFMON.EXE"="c:windowsSystem32CTFMON.EXE" [2004-08-19 15360]
[HKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionwinlogon
otifyLBTWlgn]
2008-05-02 01:42 72208 c:program filesFichiers communsLogishrdBluetoothLBTWLgn.dll
[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalWdfLoadGroup]
@=""
[HKLM~startupfolderC:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Logitech SetPoint.lnk]
path=c:documents and settingsAll UsersMenu DémarrerProgrammesDémarrageLogitech SetPoint.lnk
backup=c:windowspssLogitech SetPoint.lnkCommon Startup
[HKLM~startupfolderC:^Documents and Settings^kahairw^Menu Démarrer^Programmes^Démarrage^Empty.pif]
path=c:documents and settingskahairwMenu DémarrerProgrammesDémarrageEmpty.pif
backup=c:windowspssEmpty.pifStartup
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregCameraFixer]
--a------ 2006-10-09 16:32 20480 c:windowsCameraFixer.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregCTFMON.EXE]
--a------ 2004-08-19 15:09 15360 c:windowssystem32ctfmon.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregEA Core]
--a------ 2008-06-13 17:27 2752512 c:program filesElectronic ArtsEADMCore.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregEnvyHFCPL]
--a------ 2005-01-09 19:24 3894272 c:program filesAudio DeckEnMixCPL.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregLicense Boob]
--a------ 2008-10-07 17:11 514048 c:docume~1kahairwAPPLIC~1Gpljoyanti heck inside.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMonitor]
--a------ 2006-11-03 10:01 319488 c:windowsPixArtPac207Monitor.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMSConfig]
--a------ 2004-08-19 15:10 160768 c:windowsPCHealthHelpCtrBinariesmsconfig.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMSMSGS]
--------- 2004-10-13 17:24 1694208 c:program filesMessengermsmsgs.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregMsnMsgr]
--a------ 2007-10-18 10:34 5724184 c:program filesWindows LiveMessengermsnmsgr.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregNvCplDaemon]
--a------ 2007-12-05 00:41 8523776 c:windowssystem32
vcpl.dll
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregNvMediaCenter]
--a------ 2007-12-05 00:41 81920 c:windowssystem32
vmctray.dll
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregsnp325]
--a------ 2006-10-10 13:11 827392 c:windowsvsnp325.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSpybotSD TeaTimer]
--------- 2008-07-07 08:42 2156368 c:program filesSpybot - Search & DestroyTeaTimer.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSteam]
--a------ 2008-10-08 17:35 1410296 c:program filesSteamSteam.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregTICK INSIDE TIME WAY]
--a------ 2008-10-08 17:54 688128 c:documents and settingsAll UsersApplication Data2 tray tick insideFive Grid.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupreg snp325]
--a------ 2006-10-10 14:49 270336 c:windows snp325.exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregKernel and Hardware Abstraction Layer]
--a------ 2008-02-29 02:12 76304 c:windowsKHALMNPR.Exe
[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupreg
wiz]
--a------ 2007-12-05 00:41 1626112 c:windowssystem32
wiz.exe
[HKLM~servicessharedaccessparametersfirewallpolicystandardprofileAuthorizedApplicationsList]
"%windir%\system32\sessmgr.exe"=
"c:\Program Files\Windows Live\Messenger\msnmsgr.exe"=
"c:\Program Files\Windows Live\Messenger\livecall.exe"=
"c:\Program Files\Steam\SteamApps\krysounet\counter-strike\hl.exe"=
"c:\Program Files\Amphibizorus\mirc.exe"=
"c:\Program Files\Steam\SteamApps\common\call of duty 4\iw3mp.exe"=
"c:\Program Files\Steam\Steam.exe"=
"c:\Program Files\Electronic Arts\EADM\Core.exe"=
"c:\Program Files\Lphant\eLePhantClient.exe"=
R3 Envy24HFS;ICE Envy24 Family Audio Controller WDM;c:windowssystem32driversEnvy24HF.sys [2005-01-11 580736]
R3 PAC207;Webcam 1200;c:windowssystem32DRIVERSPFC027.SYS [2007-06-29 611584]
S2 BDVEDISK;BDVEDISK;c:program filesBitDefenderBitDefender 2009BDVEDISK.sys [ ]
S3 SNP325;USB PC Camera (SNPSTD325);c:windowssystem32DRIVERSsnp325.sys [2007-01-19 10241280]
*Newly Created Service* - PROCEXP90
.
Contenu du dossier 'Tâches planifiées'
2008-11-03 c:windowsTasksA299A16791865D97.job
- c:docume~1kahairwapplic~1gpljoyloudclockjump.exe [2008-10-07 17:12]
.
- - - - ORPHELINS SUPPRIMES - - - -
MSConfigStartUp-Bron-Spizaetus - c:windowsShellNewRakyatKelaparan.exe
MSConfigStartUp-Tok-Cirrhatus - c:documents and settingskahairwLocal SettingsApplication Datasmss.exe
MSConfigStartUp-Tok-Cirrhatus-2718 - c:documents and settingskahairwLocal SettingsApplication Datasmss.exe
.
------- Examen supplémentaire -------
.
FireFox -: Profile - c:documents and settingskahairwApplication DataMozillaFirefoxProfiles48xvwn7l.default
FireFox -: prefs.js - STARTUP.HOMEPAGE -
www.google.fr
FF -: plugin - c:program filesYahoo!Common
pyaxmpb.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-11-03 20:38:50
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
Heure de fin: 2008-11-03 20:39:30
ComboFix-quarantined-files.txt 2008-11-03 19:39:24