

cacahuet
Membres-
Compteur de contenus
1 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
Francais , anglais
cacahuet's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Bonjour, Mon PC à un gros soucis que je n'arrive pas à résoudre : Il plante au bout de 1 minute environ après le démarrage. Il se fige, en général, il plante quand j'essaie de faire quelque chose du genre ouvrir un programme, ou même un clic droit sur un icône du bureau. En mode sans echec c'est pareil, quoique je sens une net amélioration depuis peu. J'ai désinstallé bitdefender, car je le soupçonnais, mais c'est pas mieux. Avec Malwarebytesanti-malware, il m'a trouvé 2 trojans qu'il a supprimé J'ai réussis à faire un combofix dont voici le rapport. Si quelqu'un peux m'éclaircir par rapport aux virus et même si vous voyez quelque chose de pas très net : MERCI ! ComboFix 10-05-10.05 - Jean-yves.marinier 12/05/2010 12:00:27.1.2 - x86 Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6002.2.1252.33.1036.18.2042.1126 [GMT 2:00] Lancé depuis: c:\users\Jean-yves.marinier\Desktop\ComboFix.exe * Un nouveau point de restauration a été créé . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Install.exe c:\program files\Fast Browser Search c:\program files\Fast Browser Search\IE\FBStoolbar.exe c:\windows\system32\Install.cmd . ((((((((((((((((((((((((((((( Fichiers créés du 2010-04-12 au 2010-05-12 )))))))))))))))))))))))))))))))))))) . 2010-05-12 10:06 . 2010-05-12 10:07 -------- d-----w- c:\users\Jean-yves.marinier\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\users\TEMP\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\users\ROMAIN\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\users\Default\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\windows\system32\config\systemprofile\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\users\Jean-yvesMarinier\AppData\Local\temp 2010-05-12 10:06 . 2010-05-12 10:06 -------- d-----w- c:\users\CHLOE\AppData\Local\temp 2010-05-11 11:35 . 2010-05-11 11:35 -------- d-----w- c:\program files\Windows Portable Devices 2010-05-11 11:32 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe 2010-05-11 11:31 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll 2010-05-11 11:31 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll 2010-05-11 11:31 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll 2010-05-11 11:30 . 2010-01-06 15:39 1696256 ----a-w- c:\windows\system32\gameux.dll 2010-05-11 11:30 . 2010-01-06 15:38 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2010-05-11 11:30 . 2010-01-06 13:30 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2010-05-11 10:56 . 2010-05-11 10:59 -------- d-----w- c:\windows\system32\ca-ES 2010-05-11 10:56 . 2010-05-11 10:58 -------- d-----w- c:\windows\system32\eu-ES 2010-05-11 10:56 . 2010-05-11 10:58 -------- d-----w- c:\windows\system32\vi-VN 2010-05-10 20:01 . 2010-05-10 20:01 -------- d-----w- c:\users\Jean-yves.marinier\AppData\Roaming\Malwarebytes 2010-05-10 20:00 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-05-10 20:00 . 2010-05-11 05:06 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-05-10 20:00 . 2010-05-10 20:00 -------- d-----w- c:\programdata\Malwarebytes 2010-05-10 20:00 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-05-10 19:35 . 2010-05-10 19:35 -------- d-----w- c:\program files\Common Files\Java 2010-05-10 19:34 . 2010-04-12 15:29 411368 ----a-w- c:\windows\system32\deployJava1.dll 2010-05-10 19:29 . 2010-05-10 19:42 -------- d-----w- c:\program files\CCleaner 2010-04-22 17:56 . 2010-04-22 17:56 -------- d-----w- c:\users\ROMAIN\AppData\Local\Microsoft Help 2010-04-17 19:41 . 2010-04-17 19:41 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\Microsoft Games 2010-04-16 11:17 . 2010-04-16 11:17 -------- d-----w- c:\users\Jean-yves.marinier\AppData\Roaming\Microsoft Games 2010-04-15 19:13 . 2010-04-15 19:13 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\Ubisoft 2010-04-15 19:08 . 2010-04-15 19:08 -------- d-----w- c:\programdata\Ubisoft 2010-04-15 18:54 . 2010-04-15 18:54 -------- d-----w- c:\program files\Ubisoft 2010-04-15 18:54 . 2010-04-15 18:54 -------- d-----w- c:\users\Jean-yves.marinier\AppData\Roaming\InstallShield 2010-04-15 18:53 . 2010-04-16 12:15 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\DAEMON Tools Lite 2010-04-15 18:44 . 2010-04-15 18:46 -------- d-----w- c:\program files\DAEMON Tools Lite 2010-04-14 19:37 . 2010-04-14 19:37 -------- d-----w- c:\program files\Activision 2010-04-14 11:53 . 2010-03-04 17:33 430080 ----a-w- c:\windows\system32\vbscript.dll 2010-04-14 11:30 . 2010-02-18 13:30 200704 ----a-w- c:\windows\system32\iphlpsvc.dll 2010-04-14 11:30 . 2010-02-18 14:07 904576 ----a-w- c:\windows\system32\drivers\tcpip.sys 2010-04-14 11:30 . 2010-02-18 11:28 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys 2010-04-14 11:27 . 2010-02-23 11:10 212992 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys 2010-04-14 11:27 . 2010-02-23 11:10 79360 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys 2010-04-14 11:27 . 2010-02-23 11:10 106496 ----a-w- c:\windows\system32\drivers\mrxsmb.sys 2010-04-14 11:27 . 2010-02-18 14:07 3600776 ----a-w- c:\windows\system32\ntkrnlpa.exe 2010-04-14 11:27 . 2010-02-18 14:07 3548040 ----a-w- c:\windows\system32\ntoskrnl.exe 2010-04-14 07:04 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust.dll 2010-04-14 07:04 . 2010-01-13 17:34 98304 ----a-w- c:\windows\system32\cabview.dll 2010-04-13 19:17 . 2010-04-13 19:17 -------- d-----w- c:\program files\MotoGP 2010-04-13 09:51 . 2010-04-13 10:02 -------- d-----w- c:\program files\Tomb Raider - Legend . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2010-05-12 10:02 . 2008-01-21 08:40 669566 ----a-w- c:\windows\system32\perfh00C.dat 2010-05-12 10:02 . 2008-01-21 08:40 123556 ----a-w- c:\windows\system32\perfc00C.dat 2010-05-11 23:59 . 2009-09-08 18:49 81984 ----a-w- c:\windows\system32\bdod.bin 2010-05-11 11:35 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat 2010-05-11 11:35 . 2010-05-11 11:35 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf 2010-05-11 11:34 . 2010-05-11 11:34 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar 2010-05-11 10:59 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery 2010-05-11 10:59 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender 2010-05-11 05:15 . 2008-11-11 01:15 -------- d-----w- c:\program files\Common Files\Adobe 2010-05-10 19:34 . 2009-06-06 20:46 -------- d-----w- c:\program files\Java 2010-05-06 08:36 . 2010-03-01 17:34 221568 ------w- c:\windows\system32\MpSigStub.exe 2010-04-29 19:54 . 2010-03-31 18:20 -------- d-----w- c:\program files\Zylom Games 2010-04-26 21:16 . 2009-06-07 09:14 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\LimeWire 2010-04-22 20:58 . 2009-07-01 19:13 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\dvdcss 2010-04-18 19:54 . 2006-11-02 12:37 -------- d-----w- c:\program files\Microsoft Games 2010-04-15 18:54 . 2008-11-11 01:00 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-04-15 18:46 . 2009-09-08 17:17 -------- d-----w- c:\program files\DAEMON Tools Toolbar 2010-04-15 18:45 . 2009-09-08 17:13 691696 ----a-w- c:\windows\system32\drivers\sptd.sys 2010-04-15 18:44 . 2009-09-08 17:17 -------- d-----w- c:\programdata\DAEMON Tools Lite 2010-04-14 20:50 . 2008-11-11 01:08 -------- d-----w- c:\programdata\Microsoft Help 2010-04-13 20:41 . 2008-11-11 01:04 -------- d-----w- c:\program files\Common Files\InstallShield 2010-04-13 10:02 . 2009-06-07 09:57 98304 ----a-w- c:\windows\system32\CmdLineExt.dll 2010-04-12 18:18 . 2009-06-10 21:14 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\vlc 2010-04-09 21:22 . 2010-04-09 21:22 653576 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2010-03-31 18:20 . 2010-03-31 18:20 -------- d-----w- c:\programdata\Zylom 2010-03-26 21:26 . 2010-03-26 21:26 -------- d-----w- c:\users\ROMAIN\AppData\Roaming\pokerth 2010-03-23 19:01 . 2010-03-23 19:01 0 ----a-w- c:\windows\nsreg.dat 2010-03-22 10:49 . 2010-03-22 10:48 471040 ----a-w- c:\windows\Medabots.scr 2010-03-22 10:49 . 2010-03-22 10:48 12288 ----a-w- c:\windows\impborl.dll 2010-03-21 17:24 . 2009-09-12 17:26 -------- d-----w- c:\program files\Atout Clic 5e 2010-03-12 09:02 . 2009-06-07 08:30 680 ----a-w- c:\users\ROMAIN\AppData\Local\d3d9caps.dat 2010-03-12 02:27 . 2009-06-06 15:36 588472 ----a-w- c:\windows\system32\ezsvc7x.dll 2010-03-09 21:57 . 2010-03-09 21:57 0 ----a-w- c:\users\ROMAIN\AppData\Roaming\wklnhst.dat 2010-03-09 16:25 . 2010-03-31 14:00 78336 ----a-w- c:\windows\system32\ieencode.dll 2010-03-09 15:42 . 2010-03-31 14:00 834048 ----a-w- c:\windows\system32\wininet.dll 2010-02-27 09:40 . 2009-06-06 15:43 104032 ----a-w- c:\users\Jean-yves.marinier\AppData\Local\GDIPFONTCACHEV1.DAT 2010-02-26 16:40 . 2010-02-26 16:40 104032 ----a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT 2010-02-26 16:40 . 2009-06-06 17:20 8224 ----a-w- c:\users\CHLOE\AppData\Local\GDIPFONTCACHEV1.DAT 2010-02-25 17:48 . 2009-06-06 17:15 104032 ----a-w- c:\users\Jean-yvesMarinier\AppData\Local\GDIPFONTCACHEV1.DAT 2010-02-25 09:28 . 2009-06-06 17:21 104032 ----a-w- c:\users\ROMAIN\AppData\Local\GDIPFONTCACHEV1.DAT 2010-02-20 23:06 . 2010-03-12 02:02 24064 ----a-w- c:\windows\system32\nshhttp.dll 2010-02-20 23:05 . 2010-03-12 02:02 30720 ----a-w- c:\windows\system32\httpapi.dll 2010-02-20 20:53 . 2010-03-12 02:02 411648 ----a-w- c:\windows\system32\drivers\http.sys 2010-02-20 17:15 . 2009-10-11 11:08 6836 ----a-w- c:\users\Jean-yves.marinier\AppData\Local\d3d9caps.dat 2010-02-12 10:48 . 2010-03-02 02:01 293376 ----a-w- c:\windows\system32\browserchoice.exe 2009-11-16 22:21 . 2010-03-25 16:28 65536 ----a-w- c:\program files\mozilla firefox\components\FFComm.dll 2008-09-19 09:30 . 2008-11-11 09:00 332800 --sha-w- c:\windows\System32\oobe\INFO\Lang\ES\~WRL0005.tmp 2008-09-19 09:30 . 2008-11-11 09:00 332800 --sha-w- c:\windows\System32\oobe\INFO\Lang\S0\~WRL0005.tmp . ------- Sigcheck ------- [-] 2008-01-21 . 53B202ABEE6455406254444303E87BE1 . 17408 . . [6.0.6001.18000] . . c:\windows\System32\drivers\asyncmac.sys [-] 2008-01-21 . 67E506B75BD5326A3EC7B70BD014DFB6 . 6144 . . [6.0.6001.18000] . . c:\windows\System32\drivers\beep.sys [-] 2008-01-21 . C5DBBCDA07D780BDA9B685DF333BB41E . 4608 . . [6.0.6001.18000] . . c:\windows\System32\drivers\null.sys [-] 2008-01-21 . A3629A0C4226F9E9C72FAAEEBC3AD33C . 81920 . . [6.0.6000.16386] . . c:\windows\System32\browser.dll [-] 2009-06-15 . 3978F3540329E16C0AC3BCF677E5669F . 9728 . . [6.0.6000.16386] . . c:\windows\System32\lsass.exe [-] 2008-01-21 . C8052711DAECC48B982434C5116CA401 . 274432 . . [6.0.6000.16386] . . c:\windows\System32\netman.dll [-] 2009-04-11 . 93952506C6D67330367F7E7934B6A02F . 758784 . . [7.0.6001.18000] . . c:\windows\System32\qmgr.dll [-] 2009-04-11 . 3B5B4D53FEC14F7476CA29A20CC31AC9 . 550400 . . [6.0.6000.16386] . . c:\windows\System32\rpcss.dll [-] 2009-04-11 . D4E6D91C1349B7BFB3599A6ADA56851B . 279552 . . [6.0.6000.16386] . . c:\windows\System32\services.exe [-] 2009-04-11 . 524BFBEA40E6E404737CCBC754647A2E . 127488 . . [6.0.6000.16386] . . c:\windows\System32\spoolsv.exe [-] 2009-04-11 . 898E7C06A350D4A1A64A9EA264D55452 . 314368 . . [6.0.6001.18000] . . c:\windows\System32\winlogon.exe [-] 2008-01-21 . 50CDFD99E606D172875E73B87C64053D . 531968 . . [5.82] . . c:\windows\System32\comctl32.dll [-] 2009-04-11 . FB27772BEAF8E1D28CCD825C09DA939B . 129024 . . [6.0.6000.16386] . . c:\windows\System32\cryptsvc.dll [-] 2009-04-11 . 67058C46504BC12D821F38CF99B7B28F . 268800 . . [2001.12.6932.18005] . . c:\windows\System32\es.dll [-] 2009-04-11 . C8BDCECEE082B54F0BAC838BF0A34597 . 114688 . . [6.0.6002.18005] . . c:\windows\System32\imm32.dll [-] 2009-04-11 . BB8509089E7DF514310814E1B2593FFC . 891392 . . [6.0.6001.18000] . . c:\windows\System32\kernel32.dll [-] 2006-11-02 . 24F90AEFEBE601D427CB4511E74CDCB6 . 22016 . . [6.0.6000.16386] . . c:\windows\System32\linkinfo.dll [-] 2009-06-15 . EB0E02749CE5C488741C9A0ABEAB5DEC . 23552 . . [6.0.6002.18051] . . c:\windows\System32\lpk.dll [-] 2010-03-09 . 2BBAE33B3393896FFC381EEEE02AB98E . 3601920 . . [7.00.6000.16386] . . c:\windows\System32\mshtml.dll [-] 2009-04-11 . F5E991236960137B1F5449C5E5DF4656 . 679936 . . [7.0.6002.18005] . . c:\windows\System32\msvcrt.dll [-] 2009-04-11 . 8617350C9B590B63E620881092751BCB . 223232 . . [6.0.6000.16386] . . c:\windows\System32\mswsock.dll [-] 2009-04-11 . 95DAECF0FB120A7B5DA679CC54E37DDE . 592896 . . [6.0.6001.18000] . . c:\windows\System32\netlogon.dll [-] 2009-04-11 . 9A7F4B2EDACD11444D048AA19CBB26AF . 98816 . . [6.0.6001.18000] . . c:\windows\System32\powrprof.dll [-] 2009-04-11 . 8FC182167381E9915651267044105EE1 . 177152 . . [6.0.6000.16386] . . c:\windows\System32\scecli.dll [-] 2006-11-02 . F4E1AA5D59C849A4AB47E895DC76B9C8 . 4608 . . [6.0.6000.16386] . . c:\windows\System32\sfc.dll [-] 2008-01-21 . 3794B461C45882E06856F282EEF025AF . 21504 . . [6.0.6000.16386] . . c:\windows\System32\svchost.exe [-] 2009-04-11 . D7673E4B38CE21EE54C59EEEB65E2483 . 242688 . . [6.0.6000.16386] . . c:\windows\System32\tapisrv.dll [-] 2009-04-11 . 75510147B94598407666F4802797C75A . 627712 . . [6.0.6001.18000] . . c:\windows\System32\user32.dll [-] 2008-01-21 . 0E135526E9785D085BCD9AEDE6FBCBF9 . 25088 . . [6.0.6000.16386] . . c:\windows\System32\userinit.exe [-] 2010-03-09 . 1846CD5B8EE042DB00DEB0A50ABF6737 . 834048 . . [7.00.6000.16386] . . c:\windows\System32\wininet.dll [-] 2008-01-21 . B304D47D5744BA20FCB99FB8B2C07B0B . 179200 . . [6.0.6000.16386] . . c:\windows\System32\ws2_32.dll [-] 2009-04-11 . D07D4C3038F3578FFCE1C0237F2A1253 . 2926592 . . [6.0.6000.16386] . . c:\windows\explorer.exe [-] 2006-11-02 . 7F15B4953378C8B5161D65C26D5FED4D . 11776 . . [6.0.6000.16386] . . c:\windows\System32\cngaudit.dll [-] 2006-11-02 . 22BFD03DF51065A9ED8D17F8FB72296B . 8704 . . [6.0.6000.16386] . . c:\windows\System32\ctfmon.exe [-] 2009-04-11 . C818C44C201898399BF999BB6B35D4E3 . 247296 . . [6.0.6000.16386] . . c:\windows\System32\shsvcs.dll [-] 2009-04-11 . 9E6894EA18DAFF37B63E1005F83AE4AB . 107008 . . [6.0.6000.16386] . . c:\windows\System32\regsvc.dll [-] 2009-04-11 . 323AE0BDFD2EB15B668DDA50CC597329 . 595456 . . [6.0.6001.18000] . . c:\windows\System32\schedsvc.dll [-] 2008-01-21 . 03D50B37234967433A5EA5BA72BC0B62 . 155648 . . [6.0.6000.16386] . . c:\windows\System32\ssdpsrv.dll [-] 2009-04-11 . BB95DA09BEF6E7A131BFF3BA5032090D . 449024 . . [6.0.6001.18000] . . c:\windows\System32\termsrv.dll [-] 2008-01-21 . 7A5F8218325F00396DAEA2F985FA0ECB . 18944 . . [6.0.6001.18000] . . c:\windows\System32\ias.dll [-] 2006-11-02 09:46 . BA8639F9EB0F74F2946DE6DE1AF4691F . 924944 . . [4.1.6140] . . c:\windows\System32\mfc40u.dll [-] 2008-01-21 . 68308183F4AE0BE7BF8ECD07CB297999 . 259072 . . [6.0.6000.16386] . . c:\windows\System32\upnphost.dll [-] 2009-04-11 . 84B8827562B005C118CADBA0F25DB2C6 . 444416 . . [6.0.6000.16386] . . c:\windows\System32\dsound.dll . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDAgent] 2009-11-16 22:21 782336 ----a-w- c:\program files\BitDefender\BitDefender 2009\bdagent.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitDefender Antiphishing Helper] 2009-02-23 09:30 69632 ----a-w- c:\program files\BitDefender\BitDefender 2009\IEShow.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] 2010-04-01 09:16 357696 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe] 2008-01-21 02:25 125952 ----a-w- c:\windows\ehome\ehtray.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search] 2009-10-30 18:36 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif] 2008-04-15 16:54 178712 ----a-w- c:\program files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] 2009-05-30 10:30 292136 ----a-w- c:\program files\iTunes\iTunesHelper.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] 2009-07-26 14:44 3883856 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2009-05-26 15:18 413696 ----a-w- c:\program files\QuickTime\QTTask.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] 2008-09-18 11:00 6294048 ----a-w- c:\windows\RtHDVCpl.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar] 2009-04-11 06:28 1233920 ----a-w- c:\program files\Windows Sidebar\sidebar.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmpcSys] 2008-07-07 15:26 1038136 ----a-w- c:\program files\PACKARD BELL\SetUpMyPC\SmpSys.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC] 2008-01-21 11:17 61440 ----a-w- c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] 2009-06-06 15:35 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] 2007-06-08 02:53 894512 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] 2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG] 2008-01-21 02:25 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WPCUMI] 2006-11-02 12:35 176128 ----a-w- c:\windows\System32\wpcumi.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "VistaSp2"=hex(b):92,69,a9,4d,fa,f0,ca,01 R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-04-15 691696] R3 bdfm;bdfm;c:\windows\system32\drivers\bdfm.sys [2008-09-18 111112] R4 Arrakis3;BitDefender Arrakis Server;c:\program files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2009-01-20 172032] R4 ETService;Empowering Technology Service;c:\program files\Packard Bell\Packard Bell Recovery Management\Service\ETService.exe [2008-07-16 24576] R4 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2008-01-21 21504] R4 GoogleDesktopManager-093009-130223;Google Desktop Manager 5.9.909.30391;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2009-10-30 30192] R4 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 135664] S2 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [2008-10-06 82696] S3 NETw5v32;Pilote de carte Intel® Wireless WiFi Link pour Windows Vista 32 bits ;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-04-27 3658752] S3 O2MDRDR;O2MDRDR;c:\windows\system32\DRIVERS\o2media.sys [2008-08-22 51288] S3 O2SDRDR;O2SDRDR;c:\windows\system32\DRIVERS\o2sd.sys [2008-06-12 43608] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bdx REG_MULTI_SZ scan LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ezSharedSvc . Contenu du dossier 'Tâches planifiées' 2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 15:57] 2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-29 15:57] . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.orange.fr/ mStart Page = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=040c&s=2&o=vp32&d=0209&m=easynote_sl65 uInternet Settings,ProxyOverride = *.local IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html LSP: c:\windows\system32\wpclsp.dll DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab FF - ProfilePath - FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- PARAMETRES FIREFOX ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr ef", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); . - - - - ORPHELINS SUPPRIMES - - - - HKLM-Run-eRecoveryService - (no file) ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-05-12 12:07 Windows 6.0.6002 Service Pack 2 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . Heure de fin: 2010-05-12 12:09:35 ComboFix-quarantined-files.txt 2010-05-12 10:09 Avant-CF: 126 492 368 896 octets libres Après-CF: 129 935 364 096 octets libres - - End Of File - - DE14816FCF70D55123422FC3EB2DCDFC