Bonjour, pendant le scan combofix, mon antivirus kaspersky c'est déclenché 3 fois pour :
Trojan.win32.inject.ph dans C:/Docum~1/logear~1/locals~1/temp/bjpevoyrMickael.dll
avec 2 options ( ignorer et supprimer )
si je clique sur supprimer, la même fenêtre réapparait avec seulement l'option ignorer.
Voici le log combofix :
ComboFix 07-12-21.4 - LOGEARD Mickael 2007-12-30 11:28:27.4 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.564 [GMT 1:00]
Running from: C:\Documents and Settings\LOGEARD Mickael\Bureau\ComboFix.exe
Command switches used :: C:\Documents and Settings\LOGEARD Mickael\Bureau\cfscript.txt
* Created a new restore point
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\SecTaskMan
C:\Documents and Settings\All Users\Application Data\SecTaskMan\_entreelist.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\_enviewlist.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\BackWeb-8876480.exe.q_34924000_q
C:\Documents and Settings\All Users\Application Data\SecTaskMan\BackWeb-8876480.exe.q_34924000_q.ini
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_00006FCA9B229EC4896DC2FC53B9CA70
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_00006FCA9B229EC4896DC2FC53B9CA70.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_05CA691F59C71E249974DBBA81FBC3C8
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_05CA691F59C71E249974DBBA81FBC3C8.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_0B080C3E5F32FA94988FE8D8CB986E95
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_0B080C3E5F32FA94988FE8D8CB986E95.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_12341
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_12345
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_17400AB28230347339DBAF1833357A38
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_17400AB28230347339DBAF1833357A38.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_178535099B1899D4A8317AEE792F7DEF
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_178535099B1899D4A8317AEE792F7DEF.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_1D034B0FAA6BD374B960AAD30DF10D8B
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_1D034B0FAA6BD374B960AAD30DF10D8B.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_1F3B805BA42A0C233B0158879691FE82
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_1F3B805BA42A0C233B0158879691FE82.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_22DD1096A725FE1409958EF1DE9E4E49
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_22DD1096A725FE1409958EF1DE9E4E49.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_243493A986A4ABE4586A555B954F7E00
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_243493A986A4ABE4586A555B954F7E00.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_271A48771F16E54438860661700EDD22
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_271A48771F16E54438860661700EDD22.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_29FE602138E29584CABC02843CBCD76A
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_29FE602138E29584CABC02843CBCD76A.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_32F08EBE021D5F141814E55F638CDBA7
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_32F08EBE021D5F141814E55F638CDBA7.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_382244D9DA8894F4588681ECE6AA51FA
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_382244D9DA8894F4588681ECE6AA51FA.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_3AAE86E4A57724540AA874BDE8E8476A
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_3AAE86E4A57724540AA874BDE8E8476A.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4301AEBD288588A40833184CFEC0AF92
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4301AEBD288588A40833184CFEC0AF92.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_44483C3ECADB2E04C9849F648B8D2EEA
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_44483C3ECADB2E04C9849F648B8D2EEA.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_445E44DF0D7EABD4F90AA81E1A033009
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_445E44DF0D7EABD4F90AA81E1A033009.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4476FDAB78736F848B9CC4945904D156
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4476FDAB78736F848B9CC4945904D156.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4A7BEBF5F732A02478EE94BBA52072DE
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4A7BEBF5F732A02478EE94BBA52072DE.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4C7B834C8F4B5C944AFDFFF6F1427287
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_4C7B834C8F4B5C944AFDFFF6F1427287.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_508A456A9D147C04AA64A40FF440D416
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_508A456A9D147C04AA64A40FF440D416.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_56A36D6F32DB3F649B3A784F24244318
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_56A36D6F32DB3F649B3A784F24244318.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_56A968A049C8C7F45A7C79D2C3C8DEE9
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_56A968A049C8C7F45A7C79D2C3C8DEE9.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_62287FAB00234BD4EB33D429A2978904
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_62287FAB00234BD4EB33D429A2978904.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_643483E6C1DC00A48958CBE8A605CE5B
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_643483E6C1DC00A48958CBE8A605CE5B.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_68AB67CA7DA746454382080000000030
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_68AB67CA7DA746454382080000000030.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_68AB67CA7DA76301B7448A0100000030
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_68AB67CA7DA76301B7448A0100000030.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_694456D3D3C9565458C8E355E1DC4A2E
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_694456D3D3C9565458C8E355E1DC4A2E.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_7BD25099295922545A854571BBDA84EE
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_7BD25099295922545A854571BBDA84EE.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_8A0F842331866D117AB7000B0D610003
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_8A0F842331866D117AB7000B0D610003.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B024059C2814AE9458A06A2ABA0FC6B6
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B024059C2814AE9458A06A2ABA0FC6B6.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B38F40E19BA21034E97F8E36707FC927
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B38F40E19BA21034E97F8E36707FC927.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B7838C8CB89A8E4408A7A1B9F715FFAD
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_B7838C8CB89A8E4408A7A1B9F715FFAD.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_C040820900063D11C8EF00054038389C
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_C040820900063D11C8EF00054038389C.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_c049C053C7D38EE4AB9A00CB3B5D2472
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_c049C053C7D38EE4AB9A00CB3B5D2472.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_C141C48B31A9EB44A99603D1B7118D63
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_C141C48B31A9EB44A99603D1B7118D63.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_D014477C9FE37ED4CA1033623161E3FC
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_D014477C9FE37ED4CA1033623161E3FC.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_D95C861BFCF5CEE44B46FB7A8A621605
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_D95C861BFCF5CEE44B46FB7A8A621605.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DA79C8A0DEED49844B64A3AB597AD7D0
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DA79C8A0DEED49844B64A3AB597AD7D0.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DDE7F2BCF1D91C3409CFF425AE1E271A
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DDE7F2BCF1D91C3409CFF425AE1E271A.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DF5E4AFA07DE29D4990D61F25DD69C68
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_DF5E4AFA07DE29D4990D61F25DD69C68.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_F2507A5F4FA2ABC49815629B4167DBBA
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_F2507A5F4FA2ABC49815629B4167DBBA.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_F8C0C4671B1BFB94EACDE4848E756A76
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_F8C0C4671B1BFB94EACDE4848E756A76.dll
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_FA2589B80B0B7B74B95C989AD5776B9C
C:\Documents and Settings\All Users\Application Data\SecTaskMan\icn_FA2589B80B0B7B74B95C989AD5776B9C.dll
.
((((((((((((((((((((((((((((( Fichiers créés 2007-11-28 to 2007-12-30 ))))))))))))))))))))))))))))))))))))
.
2007-12-28 17:24 . 2007-12-28 17:24 <REP> d-------- C:\Program Files\Trend Micro
2007-12-26 16:26 . 2007-12-26 16:26 <REP> d-------- C:\Program Files\C-Media
2007-12-26 16:13 . 2007-12-26 16:13 <REP> d-------- C:\Documents and Settings\LOGEARD Mickael\Application Data\ATI
2007-12-26 16:13 . 2007-12-26 16:13 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ATI
2007-12-26 16:05 . 2007-12-05 14:17 593,920 --------- C:\WINDOWS\system32\ati2sgag.exe
2007-12-26 15:40 . 2007-12-26 15:40 23,600 --a------ C:\WINDOWS\system32\drivers\TVICHW32.SYS
2007-12-26 13:11 . 2007-12-26 13:11 <REP> dr------- C:\Documents and Settings\LocalService\Favoris
2007-12-26 13:11 . 2007-12-26 13:11 264 --a------ C:\WINDOWS\system32\LEXSUP.HTM
2007-12-23 16:12 . 2007-12-23 16:13 <REP> d-------- C:\regseeker
2007-12-23 11:39 . 2007-12-23 11:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-18 17:43 . 2007-12-18 17:43 <REP> d-------- C:\Program Files\MP3 Player Utilities 3.57
2007-12-18 17:43 . 2005-07-11 08:28 8,802 -ra------ C:\WINDOWS\AmvTransform.ini
2007-12-18 17:43 . 2005-07-07 02:07 7,763 -ra------ C:\WINDOWS\AmvPlayer.ini
2007-12-18 17:43 . 2005-05-11 04:05 7,207 -ra------ C:\WINDOWS\Disktool.INI
2007-12-18 17:43 . 2005-06-24 04:25 6,565 -ra------ C:\WINDOWS\fwupgrade.ini
2007-12-18 17:43 . 2004-05-12 03:28 3,677 -ra------ C:\WINDOWS\SoundCon.INI
2007-12-18 17:26 . 2007-12-18 17:26 73 --a------ C:\WINDOWS\MediaManager.INI
2007-12-11 23:34 . 2007-12-11 23:34 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2007-12-11 23:34 . 2007-12-11 23:34 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2007-12-06 14:06 . 2007-12-06 14:06 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TomTom
2007-12-05 04:05 . 2007-12-05 04:05 368,640 --a------ C:\WINDOWS\system32\ATIDEMGX.dll
2007-12-05 03:48 . 2007-12-05 03:48 9,535,488 --a------ C:\WINDOWS\system32\atioglx2.dll
2007-12-05 03:48 . 2007-12-05 03:48 6,217,728 --a------ C:\WINDOWS\system32\Atioglgl.dll
2007-12-05 03:33 . 2007-12-05 03:33 3,107,788 --a------ C:\WINDOWS\system32\ativvaxx.dat
2007-12-05 03:33 . 2007-12-05 03:33 3,107,788 --a------ C:\WINDOWS\system32\ativva5x.dat
2007-12-05 03:33 . 2007-12-05 03:33 887,724 --a------ C:\WINDOWS\system32\ativva6x.dat
2007-12-05 03:19 . 2007-12-05 03:19 385,024 --a------ C:\WINDOWS\system32\atikvmag.dll
2007-12-05 03:16 . 2007-12-05 03:16 49,152 --a------ C:\WINDOWS\system32\drivers\ati2erec.dll
2007-12-05 03:14 . 2007-12-05 03:14 180,224 --a------ C:\WINDOWS\system32\atiok3x2.dll
2007-12-04 02:33 . 2007-12-04 02:33 823,296 --a------ C:\WINDOWS\system32\divx_xx0c.dll
2007-12-04 02:33 . 2007-12-04 02:33 823,296 --a------ C:\WINDOWS\system32\divx_xx07.dll
2007-12-04 02:33 . 2007-12-04 02:33 802,816 --a------ C:\WINDOWS\system32\divx_xx11.dll
2007-12-04 02:33 . 2007-12-04 02:33 682,496 --a------ C:\WINDOWS\system32\DivX.dll
2007-11-30 11:13 . 2001-08-23 17:47 46,080 --a--c--- C:\WINDOWS\system32\dllcache\esunib.dll
2007-11-30 11:13 . 2001-08-23 17:47 46,080 --a--c--- C:\WINDOWS\system32\dllcache\esuni.dll
2007-11-30 11:13 . 2001-08-23 17:47 34,816 --a--c--- C:\WINDOWS\system32\dllcache\esuimg.dll
2007-11-30 11:13 . 2001-08-17 20:12 16,998 --a--c--- C:\WINDOWS\system32\dllcache\ex10.sys
2007-11-30 11:13 . 2001-08-17 20:12 16,074 --a--c--- C:\WINDOWS\system32\dllcache\fa312nd5.sys
2007-11-30 11:13 . 2001-08-17 20:11 12,362 --a--c--- C:\WINDOWS\system32\dllcache\f3ab18xi.sys
2007-11-30 11:13 . 2001-08-17 20:11 11,850 --a--c--- C:\WINDOWS\system32\dllcache\f3ab18xj.sys
2007-11-30 11:13 . 2001-08-17 21:52 7,040 --a--c--- C:\WINDOWS\system32\dllcache\exabyte2.sys
2007-11-30 11:11 . 2001-08-17 20:14 952,007 --a--c--- C:\WINDOWS\system32\dllcache\diwan.sys
2007-11-30 11:10 . 2001-08-23 17:47 422,429 --a--c--- C:\WINDOWS\system32\dllcache\dgconfig.dll
2007-11-30 11:09 . 2001-08-23 17:04 980,034 --a--c--- C:\WINDOWS\system32\dllcache\cicap.sys
2007-11-30 11:08 . 2001-08-17 21:28 871,388 --a--c--- C:\WINDOWS\system32\dllcache\bcmdm.sys
2007-11-30 11:07 . 2004-08-04 00:54 870,784 --a--c--- C:\WINDOWS\system32\dllcache\ati3d1ag.dll
2007-11-30 11:06 . 2001-08-17 20:19 747,392 --a--c--- C:\WINDOWS\system32\dllcache\adm8830.sys
2007-11-30 11:05 . 2001-08-17 21:28 762,780 --a--c--- C:\WINDOWS\system32\dllcache\3cwmcru.sys
2007-11-29 23:30 . 2007-11-29 23:30 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2007-11-29 23:30 . 2007-11-29 23:30 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe
2007-11-29 23:30 . 2007-11-29 23:30 9,878 --a------ C:\WINDOWS\system32\dsm_fr.qm
2007-11-29 23:30 . 2007-11-29 23:30 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb
2007-11-29 23:28 . 2007-11-29 23:28 196,608 --a------ C:\WINDOWS\system32\dtu100.dll
2007-11-29 23:28 . 2007-11-29 23:28 81,920 --a------ C:\WINDOWS\system32\dpl100.dll
2007-11-29 23:28 . 2007-11-29 23:28 416 --a------ C:\WINDOWS\system32\dtu100.dll.manifest
2007-11-29 23:28 . 2007-11-29 23:28 416 --a------ C:\WINDOWS\system32\dpl100.dll.manifest
2007-11-28 22:55 . 2007-11-28 22:55 156,992 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-11-28 22:53 . 2007-11-28 22:53 593,920 --a------ C:\WINDOWS\system32\dpuGUI11.dll
2007-11-28 22:53 . 2007-11-28 22:53 344,064 --a------ C:\WINDOWS\system32\dpus11.dll
2007-11-28 22:53 . 2007-11-28 22:53 294,912 --a------ C:\WINDOWS\system32\dpu11.dll
2007-11-28 22:53 . 2007-11-28 22:53 294,912 --a------ C:\WINDOWS\system32\dpu10.dll
2007-11-28 22:53 . 2007-11-28 22:53 57,344 --a------ C:\WINDOWS\system32\dpv11.dll
2007-11-28 22:53 . 2007-11-28 22:53 53,248 --a------ C:\WINDOWS\system32\dpuGUI10.dll
2007-11-28 22:52 . 2007-11-28 22:52 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
2007-11-28 22:52 . 2007-11-28 22:52 8,835 --a------ C:\WINDOWS\system32\dpufr.qm
2007-11-28 22:52 . 2007-11-28 22:52 3,162 --a------ C:\WINDOWS\system32\dtu_fr.qm
2007-11-28 22:50 . 2007-11-28 22:50 11,717 --a------ C:\WINDOWS\atiogl.xml
2007-11-27 17:33 . 2007-11-27 17:56 2,119 --a------ C:\WINDOWS\checkip.dat
2007-11-26 16:42 . 2007-11-26 16:42 <REP> d-------- C:\Program Files\Aspecto Software
2007-11-26 15:58 . 2007-11-26 15:58 <REP> d-------- C:\WINDOWS\CatRoot
2007-11-26 15:58 . 2007-11-26 15:58 <REP> d-------- C:\Program Files\Vimicro
2007-11-26 15:58 . 2000-10-31 12:00 307,200 --a------ C:\WINDOWS\vidcap32.Exe
2007-11-26 15:58 . 2004-08-31 13:26 233,539 --a------ C:\WINDOWS\system32\VM31bPrp.Ax
2007-11-26 15:58 . 2002-08-22 16:34 147,456 --a------ C:\WINDOWS\VMCap.exe
2007-11-26 15:58 . 2004-09-07 16:11 90,568 --a------ C:\WINDOWS\system32\drivers\usbVM31b.sys
2007-11-26 15:58 . 2003-05-15 17:17 61,440 --a------ C:\WINDOWS\system32\VM31bSTI.dll
2007-11-26 15:58 . 2002-08-22 17:02 53,248 --a------ C:\WINDOWS\StillCap.exe
2007-11-26 15:58 . 2004-06-09 15:37 40,960 --a------ C:\WINDOWS\Vm_sti.exe
2007-11-26 15:58 . 2004-03-08 17:00 24,576 --a------ C:\WINDOWS\RunSetup.dll
2007-11-26 15:56 . 2007-11-26 15:56 <REP> d-------- C:\Program Files\eMPIA
2007-11-26 15:26 . 2007-11-26 15:26 <REP> d-------- C:\WINDOWS\system32\Epson
2007-11-26 15:21 . 2004-02-18 01:10 98,304 --a------ C:\WINDOWS\system32\E_SAGSET.DLL
2007-11-26 15:21 . 2004-05-21 05:04 79,622 --a------ C:\WINDOWS\system32\EBPMON24.DLL
2007-11-26 15:21 . 2003-07-16 13:14 31,744 --a------ C:\WINDOWS\system32\E_DCINST.DLL
2007-11-26 14:31 . 2007-11-26 14:34 <REP> d-------- C:\tmp
2007-11-21 19:50 . 2007-11-21 19:50 <REP> d-------- C:\Documents and Settings\LOGEARD Mickael\Application Data\Leadertech
2007-11-17 16:13 . 2007-11-17 16:13 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TERMINAL Studio
2007-11-15 19:09 . 2007-11-15 19:09 <REP> d-------- C:\Documents and Settings\LocalService\Bureau
2007-11-13 09:24 . 2007-11-13 09:24 <REP> d-------- C:\Documents and Settings\LOGEARD Mickael\Application Data\Windows Live Writer
2007-11-13 09:08 . 2006-11-29 13:06 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
2007-11-13 09:07 . 2007-11-13 09:07 <REP> d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2007-11-13 09:01 . 2007-11-13 09:03 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2007-11-06 15:19 . 2007-11-06 15:19 158,080 --a------ C:\WINDOWS\system32\atiicdxx.dat
2007-11-03 19:08 . 2007-11-04 09:57 <REP> d-------- C:\Program Files\Windows Live Toolbar
2007-11-03 19:01 . 2007-11-13 13:12 <REP> d-------- C:\Program Files\Windows Live
2007-11-03 10:08 . 2007-11-03 10:08 5,070 --a------ C:\WINDOWS\system32\tmp.reg
2007-11-02 19:39 . 2007-11-02 19:39 8,192 --ahs---- C:\WINDOWS\Thumbs.db
2007-11-02 10:10 . 2007-10-27 11:59 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage réseau
2007-11-02 10:10 . 2007-10-27 11:59 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2007-11-02 10:10 . 2007-10-27 10:06 <REP> d--h----- C:\Documents and Settings\Administrateur\Modèles
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-30 10:36 24,109,600 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2007-12-30 10:33 1,063,968 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2007-12-30 10:15 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2007-12-29 23:10 325,688 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2007-12-29 23:10 102,452 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2007-12-29 15:48 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-29 15:43 --------- d-----w C:\Program Files\Winamp
2007-12-29 08:00 --------- d-----w C:\Program Files\Lx_cats
2007-12-26 15:26 818,496 ----a-w C:\WINDOWS\system32\drivers\cmuda.sys
2007-12-26 15:26 712,704 ----a-w C:\WINDOWS\system32\Audio3D.dll
2007-12-26 15:26 712,704 ----a-w C:\WINDOWS\system32\a3d.dll
2007-12-26 15:26 28,672 ----a-w C:\WINDOWS\system32\cmirmdrv.dll
2007-12-26 15:26 233,472 ----a-w C:\WINDOWS\system32\cmirmdrv.exe
2007-12-26 15:26 151,552 ----a-w C:\WINDOWS\system32\cmuda.dll
2007-12-26 15:06 --------- d-----w C:\Program Files\ATI Technologies
2007-12-20 18:25 91,492 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2007-12-19 06:27 --------- d-----w C:\Program Files\Micro Application
2007-12-18 16:30 --------- d-----w C:\Documents and Settings\LOGEARD Mickael\Application Data\Intervideo
2007-12-13 22:19 --------- d-----w C:\Program Files\DivX
2007-12-12 21:33 85,860 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2007-12-05 05:26 2,782,208 ----a-w C:\WINDOWS\system32\drivers\ati2mtag.sys
2007-12-05 03:04 269,312 ----a-w C:\WINDOWS\system32\ati2dvag.dll
2007-12-05 02:56 147,456 ----a-w C:\WINDOWS\system32\atipdlxx.dll
2007-12-05 02:55 43,520 ----a-w C:\WINDOWS\system32\ati2edxx.dll
2007-12-05 02:55 26,112 ----a-w C:\WINDOWS\system32\Ati2mdxx.exe
2007-12-05 02:55 122,880 ----a-w C:\WINDOWS\system32\Oemdspif.dll
2007-12-05 02:55 122,880 ----a-w C:\WINDOWS\system32\ati2evxx.dll
2007-12-05 02:54 307,200 ----a-w C:\WINDOWS\system32\atiiiexx.dll
2007-12-05 02:53 53,248 ----a-w C:\WINDOWS\system32\ATIDDC.DLL
2007-12-05 02:53 495,616 ----a-w C:\WINDOWS\system32\ati2evxx.exe
2007-12-05 02:44 3,175,584 ----a-w C:\WINDOWS\system32\ati3duag.dll
2007-12-05 02:33 1,640,192 ----a-w C:\WINDOWS\system32\ativvaxx.dll
2007-12-05 02:19 5,435,392 ----a-w C:\WINDOWS\system32\atioglxx.dll
2007-12-05 02:17 17,408 ----a-w C:\WINDOWS\system32\atitvo32.dll
2007-12-05 02:11 499,712 ----a-w C:\WINDOWS\system32\ati2cqag.dll
2007-11-30 07:25 684,032 ----a-w C:\WINDOWS\system32\sstext3d.scr
2007-11-26 17:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\InterVideo
2007-11-26 15:13 --------- d-----w C:\Program Files\Microsoft ActiveSync
2007-11-22 11:03 --------- d-----w C:\Program Files\WinAVI Video Converter
2007-11-13 10:25 20,480 ------w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-13 08:01 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2007-11-11 21:29 --------- d-----w C:\Program Files\Prassi PrimoCD Plus 2.0 (French)
2007-11-02 18:39 7,680 --sha-w C:\Program Files\Thumbs.db
2007-10-29 22:43 1,293,824 ------w C:\WINDOWS\system32\quartz.dll
2007-10-29 21:53 --------- d-----w C:\Documents and Settings\LOGEARD Mickael\Application Data\CyberLink
2007-10-29 18:36 --------- d-----w C:\Program Files\Macrogaming
2007-10-28 14:55 --------- d-----w C:\Program Files\compodif
2007-10-28 14:51 74,752 ----a-w C:\WINDOWS\ST6UNST.EXE
2007-10-28 14:51 253,952 ------w C:\WINDOWS\Setup1.exe
2007-10-28 14:11 --------- d-----w C:\Documents and Settings\LOGEARD Mickael\Application Data\Winamp
2007-10-28 10:29 --------- d-----w C:\Documents and Settings\LOGEARD Mickael\Application Data\DivX
2007-10-27 16:51 977,375 ------w C:\Program Files\realplay.chm
2007-10-27 16:51 73,439 ------w C:\Program Files\howto.chm
2007-10-27 16:51 719,360 ------w C:\Program Files\dbghelp.dll
2007-10-27 16:51 667,648 ------w C:\Program Files\rjbres.dll
2007-10-27 16:51 656,503 ------w C:\Program Files\normal.vs
2007-10-27 16:51 61,495 ------w C:\Program Files\ssimages.vs
2007-10-27 16:51 61,440 ------w C:\Program Files\rjwmapln.dll
2007-10-27 16:51 61,208 ------w C:\Program Files\RealNetworks License.html
2007-10-27 16:51 61,208 ------w C:\Program Files\playrlic.html
2007-10-27 16:51 58,943 ------w C:\Program Files\RealNetworks License.txt
2007-10-27 16:51 58,943 ------w C:\Program Files\playrlic.txt
2007-10-27 16:51 57,344 ------w C:\Program Files\tpasdk.dll
2007-10-27 16:51 568 ------w C:\Program Files\fpsectbl
2007-10-27 16:51 54,600 ------w C:\Program Files\rpshellsearch.dll
2007-10-27 16:51 53,098 ------w C:\Program Files\presets.rnx
2007-10-27 16:51 49,152 ------w C:\Program Files\mmcdda32.dll
2007-10-27 16:51 49,152 ------w C:\Program Files\ierjplug.dll
2007-10-27 16:51 480 ------w C:\Program Files\keys.dat
2007-10-27 16:51 45,056 ------w C:\Program Files\rpau3260.dll
2007-10-27 16:51 339,968 ------w C:\Program Files\dtdr3260.dll
2007-10-27 16:51 335,872 ------w C:\Program Files\rjdlg.dll
2007-10-27 16:51 32,768 ------w C:\Program Files\tnetdtct.dll
2007-10-27 16:51 32,768 ------w C:\Program Files\rpwa3260.dll
2007-10-27 16:51 32,768 ------w C:\Program Files\rjprog.dll
2007-10-27 16:51 28,672 ------w C:\Program Files\wmdmhelper.dll
2007-10-27 16:51 20,480 ------w C:\Program Files\fixrjb.exe
2007-10-27 16:51 2,851 ------w C:\Program Files\cdroms.cfg
2007-10-27 16:51 16,296 ------w C:\Program Files\realtfon.fon
2007-10-27 16:51 139,264 ------w C:\Program Files\DUNZIP32.dll
2007-10-27 16:51 119,808 ------w C:\Program Files\waiting.avi
2007-10-27 16:51 11,444 ------w C:\Program Files\frw.bmp
2007-10-27 16:51 102,400 ------w C:\Program Files\tsasdk.dll
2007-10-27 16:50 86,016 ------w C:\Program Files\rpplugprot.dll
2007-10-27 16:50 70 ------w C:\Program Files\strs23.dat
2007-10-27 16:50 682 ------w C:\Program Files\realplay.exe.manifest
2007-10-27 16:50 57,344 ------w C:\Program Files\rdsf3260.dll
2007-10-27 16:50 54,584 ------w C:\Program Files\rpshell.dll
2007-10-27 16:50 29,773 ------w C:\Program Files\Readme.html
2007-10-27 16:50 23,558 ------w C:\Program Files\freeoffers.ico
2007-10-27 16:50 221 ------w C:\Program Files\subscription.rnx
2007-10-27 16:50 214,608 ------w C:\Program Files\realplay.exe
2007-10-27 16:50 20,480 ------w C:\Program Files\rphelperapp.exe
2007-10-27 16:50 20,480 ------w C:\Program Files\realjbox.exe
2007-10-27 16:50 177 ------w C:\Program Files\freeoffers.rnx
2007-10-27 16:50 17,846 ------w C:\Program Files\videotest.rm
2007-10-27 16:50 15 ------w C:\Program Files\strs26.dat
2007-10-27 16:50 1,042 ------w C:\Program Files\autoplaylist.dat
2007-10-27 13:49 769,536 ----a-w C:\Documents and Settings\LOGEARD Mickael\Application Data\sfdnwin.dll
2007-10-25 08:28 222,720 ------w C:\WINDOWS\system32\wmasf.dll
.
((((((((((((((((((((((((((((( snapshot@2007-12-29_17.06.54,40 )))))))))))))))))))))))))))))))))))))))))
.
- 2007-12-28 07:15:34 16,384 ------w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
+ 2007-12-30 10:13:40 16,384 ------w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
- 2007-12-28 07:15:34 32,768 ------w C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat
+ 2007-12-30 10:13:40 32,768 ------w C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat
- 2007-12-28 07:15:34 32,768 ------w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2007-12-30 10:13:40 32,768 ------w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2007-12-30 10:13:48 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_44c.dat
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Free Internet Eraser"="C:\Program Files\PrivacyEraser Computing\Free Internet Eraser\InternetEraser.exe" [2007-03-09 18:30]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00]
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\Wcescomm.exe" [2006-11-13 13:07]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" [2007-06-26 16:53]
"Cmaudio"="RunDll32 cmicnfg.cpl" []
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [2004-02-05 09:07]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2004-02-05 09:07]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-05 13:00 C:\WINDOWS\system32\bthprops.cpl]
"LXBUCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll" [2004-11-02 21:03]
"WinDVR SchSvr"="C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe" [2005-01-24 05:37]
"WINCINEMAMGR"="C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe" [2005-01-24 04:51]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2007-10-10 06:28]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2007-10-27 17:50]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 12:35]
"RemoteControl"="C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe" [2004-06-28 20:29]
"MagicSpeed"="C:\Program Files\SamsungODD\Magic Speed\MagicSL.exe" [2004-01-12 09:13]
"lxbumon.exe"="C:\Program Files\Lexmark 6200 Series\lxbumon.exe" [2005-01-18 15:36]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" []
"Home Theater SchSvr"="C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe" [2005-01-24 05:37]
"flockbox"="C:\Program Files\My Lockbox\flockbox.exe" [2007-04-17 22:52]
"FaxCenterServer"="C:\Program Files\Lexmark Fax Solutions\fm3032.exe" [2004-11-22 12:29]
"EzPrint"="C:\Program Files\Lexmark 6200 Series\ezprint.exe" [2004-09-17 18:24]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2001-10-19 00:02]
"CmCardRun"="C:\WINDOWS\system32\CmWatch.exe" [2003-09-16 10:50]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-10-26 20:10]
"AGRSMMSG"="AGRSMMSG.exe" [2004-07-22 06:38 C:\WINDOWS\AGRSMMSG.exe]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" [2007-03-16 10:45]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Gamma Loader.lnk]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^BTTray.lnk]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^InterVideo Scheduler server.lnk]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^InterVideo WinCinema Manager.lnk]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
R0 MPRIFL;MPRIFL;C:\WINDOWS\system32\DRIVERS\MPRIFL.SYS [2007-04-17 22:52]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 14:58]
R3 UMSSSTOR;C-Media Storage;C:\WINDOWS\system32\DRIVERS\UMSS.SYS [2004-07-13 11:40]
R3 usbscan;Pilote de scanneur USB;C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 21:58]
R3 usbstor;Pilote de stockage de masse USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-05 13:00]
S3 p2pgasvc;Authentification de groupe réseau homologue;C:\WINDOWS\system32\svchost.exe -k p2psvc []
S3 p2pimsvc;Gestionnaire d'identité réseau homologue;C:\WINDOWS\system32\svchost.exe -k p2psvc []
S3 p2psvc;Réseau homologue;C:\WINDOWS\system32\svchost.exe -k p2psvc []
S3 PNRPSvc;Protocole de résolution de noms d'homologues;C:\WINDOWS\system32\svchost.exe -k p2psvc []
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
p2psvc REG_MULTI_SZ p2psvc p2pimsvc p2pgasvc PNRPSvc
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2007-12-30 10:18:00 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************
catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-12-30 11:34:02
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-30 11:37:20
C:\ComboFix2.txt ... 2007-12-29 17:07
.
2007-12-12 08:11:41 --- E O F ---
Et le log hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:37:57, on 30/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\System\SmWizard.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\SamsungODD\Magic Speed\MagicSL.exe
C:\Program Files\Lexmark 6200 Series\lxbumon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\My Lockbox\flockbox.exe
C:\Program Files\Lexmark 6200 Series\ezprint.exe
C:\WINDOWS\system32\lxbucoms.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\CmWatch.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.aol.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.marvell.com/yukon/support/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [LXBUCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [WinDVR SchSvr] "C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINCINEMAMGR] "C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [MagicSpeed] C:\Program Files\SamsungODD\Magic Speed\MagicSL.exe /autorun
O4 - HKLM\..\Run: [lxbumon.exe] "C:\Program Files\Lexmark 6200 Series\lxbumon.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [flockbox] C:\Program Files\My Lockbox\flockbox.exe /a
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 6200 Series\ezprint.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CmCardRun] C:\WINDOWS\system32\CmWatch.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKCU\..\Run: [Free Internet Eraser] C:\Program Files\PrivacyEraser Computing\Free Internet Eraser\InternetEraser.exe /Startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.07\AMVConverter\grab.html
O8 - Extra context menu item: Add to Windows &Live Favorites -
http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.07\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: lxbu_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbucoms.exe
O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\Pacsptisvr.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\Sptisrv.exe
O24 - Desktop Component 0: Privacy Protection - (no file)
--
End of file - 11231 bytes