Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Rapport COMBO FIX


Messages recommandés

Posté(e)

voici le raport fait par combo fix apres l'analyse, merci de bien vouloir m'aider et me dire si il reste des danger car la version d'essai de kaspersky m'informe qu'il y a encore un virus...:

 

 

ComboFix 10-10-08.01 - Collégien 09/10/2010 13:28:06.2.2 - x86

Microsoft Windows 7 Professionnel 6.1.7600.0.1252.33.1036.18.2042.1468 [GMT 2:00]

Lancé depuis: c:\combofix\ComboFix.exe

Commutateurs utilisés :: ComboFix

.

 

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))

.

 

c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job

 

.

((((((((((((((((((((((((((((( Fichiers créés du 2010-09-09 au 2010-10-09 ))))))))))))))))))))))))))))))))))))

.

 

2010-10-09 11:34 . 2010-10-09 11:34 -------- d-----w- c:\users\Public\AppData\Local\temp

2010-10-09 11:34 . 2010-10-09 11:34 -------- d-----w- c:\users\Default\AppData\Local\temp

2010-10-09 11:12 . 2010-10-09 11:12 247120 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\general\bases\uds\uds.dll

2010-10-09 11:12 . 2010-10-09 11:12 1037648 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\general\bases\sw2\klavasyswatch.dll

2010-10-09 11:09 . 2010-10-09 11:09 1049936 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\bases\sw2\klavasyswatch.dll

2010-10-09 11:09 . 2010-10-09 11:09 247120 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\bases\uds\uds.dll

2010-10-09 11:09 . 2010-10-09 11:09 132432 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\bases\dnscln\dns_client.dll

2010-10-09 10:57 . 2010-10-09 10:57 288080 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\bases\av\kdb\i386\win\avengine.dll

2010-10-09 09:33 . 2010-10-09 09:33 97549 ----a-w- c:\windows\system32\drivers\klick.dat

2010-10-09 09:33 . 2010-10-09 09:33 113933 ----a-w- c:\windows\system32\drivers\klin.dat

2010-10-09 09:32 . 2010-10-09 09:32 -------- d-----w- c:\program files\Kaspersky Lab

2010-10-09 09:32 . 2010-10-09 11:26 -------- d-----w- c:\programdata\Kaspersky Lab

2010-10-07 19:06 . 2010-08-27 13:25 2565448 ----a-w- c:\programdata\AVG Security Toolbar\IEToolbar.dll

2010-10-07 19:06 . 2010-10-07 19:06 -------- d-----w- c:\programdata\AVG Security Toolbar

2010-10-06 12:29 . 2010-10-06 12:29 -------- d--h--w- c:\programdata\Common Files

2010-10-06 12:28 . 2010-10-07 19:07 -------- d-----w- c:\programdata\AVG10

2010-10-06 12:23 . 2010-10-06 12:27 -------- d-----w- c:\programdata\MFAData

2010-10-06 11:37 . 2010-10-09 09:30 -------- d-----w- c:\programdata\Kaspersky Lab Setup Files

2010-10-06 11:20 . 2010-10-09 11:26 -------- d-----w- c:\windows\system32\wbem\repository

2010-10-06 10:31 . 2010-10-06 11:01 -------- d-----w- c:\program files\CCleaner

2010-10-06 10:01 . 2010-10-06 10:01 1619296 ----a-w- c:\programdata\avg9\update\backup\avgssie.dll

2010-10-05 11:46 . 2010-10-07 19:07 -------- d-----w- c:\program files\AVG

2010-10-05 11:46 . 2010-10-05 11:46 -------- d-----w- c:\programdata\avg9

2010-10-04 15:37 . 2010-10-04 15:37 -------- d-----w- c:\program files\Trend Micro

2010-10-03 21:11 . 2010-10-03 21:11 -------- d-----w- c:\windows\Sun

2010-09-29 07:42 . 2010-03-04 04:04 146304 ----a-w- c:\windows\system32\drivers\usbvideo.sys

2010-09-29 07:42 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys

2010-09-28 22:52 . 2010-06-19 06:15 2048 ----a-w- c:\windows\system32\tzres.dll

2010-09-21 18:37 . 2010-09-21 18:37 932288 ----a-w- c:\programdata\Adobe\Reader\9.2\ARM\32234\AdobeARM.exe

2010-09-21 18:37 . 2010-09-21 18:37 70584 ----a-w- c:\programdata\Adobe\Reader\9.2\ARM\32234\AdobeExtractFiles.dll

2010-09-21 18:37 . 2010-09-21 18:37 338856 ----a-w- c:\programdata\Adobe\Reader\9.2\ARM\32234\ReaderUpdater.exe

2010-09-21 18:37 . 2010-09-21 18:37 338856 ----a-w- c:\programdata\Adobe\Reader\9.2\ARM\32234\AcrobatUpdater.exe

2010-09-15 12:41 . 2010-08-21 05:32 316928 ----a-w- c:\windows\system32\spoolsv.exe

2010-09-13 14:27 . 2010-09-13 14:27 25680 ----a-w- c:\windows\system32\drivers\AVGIDSEH.sys

2010-09-11 14:49 . 2010-08-05 06:46 37336 ----a-w- c:\windows\system32\CleanMFT32.exe

2010-09-11 14:49 . 2004-08-04 05:00 506368 ----a-w- c:\windows\system32\msxml.dll

2010-09-11 14:49 . 2010-10-06 10:58 -------- d-----w- c:\program files\Common Files\PC Tools

 

.

(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-10-09 11:33 . 2009-09-17 04:19 695004 ----a-w- c:\windows\system32\perfh00C.dat

2010-10-09 11:33 . 2009-09-17 04:19 127684 ----a-w- c:\windows\system32\perfc00C.dat

2010-10-09 11:12 . 2010-06-30 16:43 247120 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Bases\uds.dll

2010-10-09 11:12 . 2010-06-30 16:43 1037648 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Bases\klavasyswatch.dll

2010-10-09 09:33 . 2009-12-24 15:12 -------- d-----w- c:\program files\Mozilla Thunderbird

2010-10-09 09:25 . 2010-09-01 21:19 -------- d-----w- c:\program files\Google

2010-10-06 12:48 . 2009-07-13 22:09 96848 ----a-w- c:\windows\system32\drivers\lsi_scsi.sys

2010-10-06 12:17 . 2010-07-03 16:24 -------- d-----w- c:\program files\Common Files\Symantec Shared

2010-10-06 11:41 . 2010-02-16 11:45 -------- d-----w- c:\programdata\Alwil Software

2010-10-06 11:32 . 2009-09-17 03:53 -------- d-----w- c:\programdata\PDFC

2010-10-06 11:02 . 2010-07-03 08:28 -------- d-----w- c:\programdata\Symantec

2010-10-06 11:02 . 2010-07-03 08:28 -------- d-----w- c:\programdata\Norton

2010-10-06 11:02 . 2010-07-03 08:28 -------- d-----w- c:\program files\Norton Security Scan

2010-10-06 11:02 . 2010-07-03 08:28 -------- d-----w- c:\program files\NortonInstaller

2010-10-06 11:02 . 2010-01-07 01:26 -------- d-----w- c:\program files\Alwil Software

2010-10-06 11:02 . 2009-12-29 12:53 -------- d-----w- c:\program files\Common Files\Adobe

2010-10-06 10:58 . 2010-09-01 21:19 -------- d-----w- c:\program files\DivX

2010-10-06 10:58 . 2009-12-22 09:20 -------- d-----w- c:\program files\Common Files\Windows Live

2010-10-06 10:58 . 2009-09-17 04:07 -------- d-----w- c:\program files\Common Files\Sonic Shared

2010-10-06 10:58 . 2009-09-17 04:07 -------- d-----w- c:\program files\Common Files\Roxio Shared

2010-10-06 10:58 . 2009-07-14 04:52 -------- d-----w- c:\program files\DVD Maker

2010-10-06 10:58 . 2010-09-01 21:20 -------- d-----w- c:\program files\Common Files\DivX Shared

2010-10-06 10:58 . 2009-09-17 04:11 -------- d-----w- c:\program files\Common Files\LightScribe

2010-10-06 10:58 . 2009-09-17 03:48 -------- d-----w- c:\program files\Common Files\InstallShield

2010-10-06 10:58 . 2009-12-30 09:09 -------- d-----w- c:\program files\CNDP

2010-10-06 10:58 . 2009-12-29 14:22 -------- d-----w- c:\program files\Audacity

2010-10-06 10:58 . 2009-12-22 18:03 -------- d-----w- c:\program files\ATI

2010-10-06 10:58 . 2009-12-22 18:03 -------- d-----w- c:\program files\ATI Technologies

2010-10-06 10:58 . 2009-12-22 09:17 -------- d-----w- c:\program files\Analog Devices

2010-09-04 07:45 . 2010-09-03 20:58 -------- d-----w- c:\programdata\PMB Files

2010-09-03 14:08 . 2010-09-03 14:08 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01009.Wdf

2010-09-03 14:08 . 2010-09-03 14:08 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll

2010-09-03 14:08 . 2010-09-03 14:08 245424 ----a-w- c:\windows\system32\drivers\SynTP.sys

2010-09-03 14:08 . 2010-09-03 14:08 165160 ----a-w- c:\windows\system32\SynTPAPI.dll

2010-09-03 14:08 . 2010-09-03 14:08 120104 ----a-w- c:\windows\system32\SynTPCo4.dll

2010-09-03 14:08 . 2010-09-03 14:08 210216 ----a-w- c:\windows\system32\SynCtrl.dll

2010-09-03 14:08 . 2010-09-03 14:08 173352 ----a-w- c:\windows\system32\SynCOM.dll

2010-09-02 09:03 . 2010-09-02 09:03 1567232 ----a-w- c:\users\Collégien\AppData\Roaming\EoRezo\install.exe

2010-09-02 09:03 . 2010-09-02 09:03 1567232 ----a-w- c:\users\Collégien\AppData\Roaming\EoRezo\install.exe

2010-09-01 21:20 . 2010-09-01 21:20 54073 ----a-w- c:\programdata\DivX\Qt4.5\Uninstaller.exe

2010-09-01 21:20 . 2010-09-01 21:20 56969 ----a-w- c:\programdata\DivX\ASPEncoder\Uninstaller.exe

2010-09-01 21:19 . 2010-09-01 21:21 185640 ----a-w- c:\programdata\DivX\Setup\finishPlugin.dll

2010-09-01 21:18 . 2010-09-01 21:21 1062184 ----a-w- c:\programdata\DivX\Setup\Resource.dll

2010-09-01 21:18 . 2010-09-01 21:18 144696 ----a-w- c:\programdata\DivX\RunAsUser\RUNASUSERPROCESS.exe

2010-09-01 21:18 . 2010-09-01 21:21 850200 ----a-w- c:\programdata\DivX\Setup\DivXSetup.exe

2010-09-01 19:45 . 2009-12-24 14:35 1 ----a-w- c:\users\Collégien\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys

2010-09-01 19:45 . 2009-12-24 14:35 1 ----a-w- c:\users\Collégien\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys

2010-08-30 22:33 . 2010-08-30 22:33 -------- d-----w- c:\programdata\LightScribe

2010-08-26 13:10 . 2010-08-26 13:10 92816 ----a-w- c:\programdata\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2011 11.0.1.400\French\setup.exe

2010-08-26 13:10 . 2010-08-26 13:10 68256 ----a-w- c:\programdata\Kaspersky Lab Setup Files\Kaspersky Internet Security 2011 11.0.1.400\French\setup.exe

2010-08-18 12:16 . 2010-08-18 12:16 271696 ----a-w- c:\programdata\Kaspersky Lab\AVP11\Bases\sys_critical_obj.dll

2010-08-12 04:07 . 2009-07-09 11:00 45648 ----a-w- c:\windows\system32\drivers\pxhelp20.sys

2010-07-29 06:30 . 2010-08-29 10:42 197632 ----a-w- c:\windows\system32\ir32_32.dll

2010-07-29 06:30 . 2010-08-29 10:42 82944 ----a-w- c:\windows\system32\iccvid.dll

2010-07-16 11:51 . 2010-07-16 11:51 14904 ----a-w- c:\windows\help\OEM\Scripts\LaunchHPForums.exe

2010-07-12 02:34 . 2010-07-12 02:34 54112 ----a-w- c:\windows\system32\drivers\avgfwd6x.sys

2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat

.

 

((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392]

"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-16 3872080]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-07-27 288312]

"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-08-25 186904]

"PDF Complete"="c:\program files\PDF Complete\pdfsty.exe" [2009-06-18 563736]

"WirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744]

"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2010-09-03 1721640]

"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-08-04 98304]

"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2009-05-18 1314816]

"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-24 149280]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]

"Pstart"="c:\ordinateur-collegiens\lanceur\pstart.exe" [2007-10-10 778760]

"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-08-20 1164584]

"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2010-08-05 104408]

"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-10-09 352976]

 

c:\users\Coll‚gien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-8-18 384000]

 

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-7-30 795936]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableLUA"= 0 (0x0)

"EnableUIADesktopToggle"= 0 (0x0)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\mzvkbd3.dll c:\progra~1\KASPER~1\KASPER~1\kloehk.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"aux"=wdmaud.drv

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

@="Driver"

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]

"DisableMonitoring"=dword:00000001

 

R3 5U876UVC;HP Webcam [2 MP series];c:\windows\system32\DRIVERS\5U876.sys [2009-06-30 13:01 118656]

R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]

R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]

R3 NETw1v32;Intel® Wireless WiFi Link 1000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw1v32.sys [2009-07-20 5958656]

R3 netw5v32;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]

R3 RoxMediaDB10;RoxMediaDB10;c:\program files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-06-13 1120752]

R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-08-29 1343400]

S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2010-09-13 25680]

S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2010-06-09 11352]

S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2010-04-22 22104]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]

S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-04 176128]

S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2009-07-08 26168]

S2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2010-08-05 583640]

S2 pdfcDispatcher;PDF Document Manager;c:\program files\PDF Complete\pdfsvc.exe [2009-06-18 635416]

S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 19984]

S3 NETw5s32;Pilote de carte Intel® Wireless WiFi Link pour Windows 7 32 bits ;c:\windows\system32\DRIVERS\NETw5s32.sys [2010-01-13 6755840]

S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-09-28 315392]

 

 

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]

2009-06-17 19:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe

.

Contenu du dossier 'Tâches planifiées'

 

2010-10-06 c:\windows\Tasks\Norton Security Scan for Collégien.job

- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-07-03 07:48]

 

.

.

------- Examen supplémentaire -------

.

uStart Page = hxxp://www.lo.st

mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_FR&c=92&bd=all&pf=cmnb

IE: Envoyer au périphérique &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

IE: Envoyer l'&image au périphérique Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

Trusted Zone: //about.htm/

Trusted Zone: //Exclude.htm/

Trusted Zone: //LanguageSelection.htm/

Trusted Zone: //Message.htm/

Trusted Zone: //MyAgttryCmd.htm/

Trusted Zone: //MyAgttryNag.htm/

Trusted Zone: //MyNotification.htm/

Trusted Zone: //NOCLessUpdate.htm/

Trusted Zone: //quarantine.htm/

Trusted Zone: //ScanNow.htm/

Trusted Zone: //strings.vbs/

Trusted Zone: //Template.htm/

Trusted Zone: //Update.htm/

Trusted Zone: //VirFound.htm/

Trusted Zone: mcafee.com\*

Trusted Zone: mcafeeasap.com\betavscan

Trusted Zone: mcafeeasap.com\vs

Trusted Zone: mcafeeasap.com\www

FF - ProfilePath - c:\users\Collégien\AppData\Roaming\Mozilla\Firefox\Profiles\v4v62qvi.default\

FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=

FF - prefs.js: browser.startup.homepage - hxxp://www.lo.st

FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=

 

---- PARAMETRES FIREFOX ----

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);

.

 

**************************************************************************

 

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, GMER - Rootkit Detector and Remover

 

device: opened successfully

user: MBR read successfully

called modules: >>UNKNOWN [0x82E05000]<< >>UNKNOWN [0x8A121000]<< >>UNKNOWN [0x8ADBA000]<< >>UNKNOWN [0x8AD7F000]<< >>UNKNOWN [0x83215000]<< >>UNKNOWN [0x8A2EF000]<<

kernel: MBR read successfully

detected MBR rootkit hooks:

IoDeviceObjectType -> DumpProcedure -> 0xd46a624f

user & kernel MBR OK

 

**************************************************************************

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\pdfcDispatcher]

"ImagePath"="c:\program files\PDF Complete\pdfsvc.exe /startedbyscm:66B66708-40E2BE4D-pdfcService"

.

--------------------- CLES DE REGISTRE BLOQUEES ---------------------

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

"MSCurrentCountry"=dword:000000b5

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Heure de fin: 2010-10-09 13:37:13

ComboFix-quarantined-files.txt 2010-10-09 11:37

ComboFix2.txt 2010-10-07 20:19

 

Avant-CF: 196 327 256 064 octets libres

Après-CF: 196 117 315 584 octets libres

 

- - End Of File - - EEE40E5A2F01DF2C2E0F2204B89DA3A2

Posté(e)

tu aurais du publier ces données dans le forum sécurité ...

si tu voulais quelles soient lues et commentées ...

cordialement

Rejoindre la conversation

Vous publiez en tant qu’invité. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...