ComboFix 10-08-14.02 - Itachi 15/08/2010 13:54:19.1.2 - x86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.1023.521 [GMT 2:00]
Lancé depuis: c:\documents and settings\Itachi\Bureau\asdehi.exe
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\hosts
c:\windows\system32\hosts
.
((((((((((((((((((((((((((((( Fichiers créés du 2010-07-15 au 2010-08-15 ))))))))))))))))))))))))))))))))))))
.
2010-08-15 11:21 . 2010-08-15 11:21 275792 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\general\bases\av\kdb\i386\win\avengine.dll
2010-08-15 11:21 . 2010-08-15 11:21 404152 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\patch\AutoPatches\kav11\11.0.1.400\mcouas.dll
2010-08-15 10:44 . 2010-08-15 11:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2010-08-15 10:44 . 2010-08-15 10:44 -------- d-----w- c:\program files\Kaspersky Lab
2010-08-14 22:05 . 2010-08-14 22:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2010-08-14 21:48 . 2009-05-07 07:04 157712 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2010-08-14 21:42 . 2010-08-14 21:44 -------- d-----w- c:\documents and settings\Itachi\Application Data\QuickScan
2010-08-14 21:42 . 2010-05-31 14:34 702120 ----a-w- c:\documents and settings\Itachi\Application Data\Mozilla\Firefox\Profiles\5kx0hfsc.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
2010-08-14 21:42 . 2010-05-31 14:34 868456 ----a-w- c:\documents and settings\Itachi\Application Data\Mozilla\Firefox\Profiles\5kx0hfsc.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
2010-08-14 21:27 . 2010-08-14 21:27 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Mozilla
2010-08-14 15:17 . 2010-08-14 15:17 -------- d-----w- c:\documents and settings\LocalService\Application Data\PCToolsFirewallPlus
2010-08-14 15:17 . 2010-08-14 15:17 -------- d-----w- c:\documents and settings\LocalService\Application Data\Spam Monitor
2010-08-14 15:11 . 2010-08-14 15:13 -------- d-----w- c:\documents and settings\Itachi\.VirtualBox
2010-08-14 15:09 . 2010-08-05 12:08 143184 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2010-08-14 15:09 . 2010-08-05 12:08 41936 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2010-08-14 15:09 . 2010-08-14 15:09 -------- d-----w- c:\program files\Oracle
2010-08-14 11:56 . 2006-05-04 06:33 53248 ----a-w- c:\windows\system32\CommonDL.dll
2010-08-14 11:56 . 2005-11-24 00:34 82432 ----a-w- c:\windows\system32\msxml4r.dll
2010-08-14 11:56 . 2005-10-03 23:39 44544 ----a-w- c:\windows\system32\msxml4a.dll
2010-08-14 11:56 . 2005-09-11 12:51 1233920 ----a-w- c:\windows\system32\msxml4.dll
2010-08-14 11:56 . 2010-08-13 06:02 1066936 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\LGUserCSTool.exe
2010-08-14 11:56 . 2010-08-13 04:13 337848 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
2010-08-14 11:56 . 2010-08-11 05:32 100280 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\LGMLauncher.exe
2010-08-14 11:56 . 2010-08-11 05:14 106496 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\LGMobileDL.dll
2010-08-14 11:56 . 2010-08-11 05:14 524288 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\LGMUpgradeDL.dll
2010-08-14 11:56 . 2010-05-20 04:49 206784 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CAppUninstall.exe
2010-08-14 11:56 . 2010-03-16 06:31 24576 ----a-w- c:\documents and settings\All Users\Application Data\LGMOBILEAX\B2C_Client\LGMobileDLRapi.dll
2010-08-14 11:56 . 2010-08-14 11:56 -------- d-----w- c:\documents and settings\All Users\Application Data\LGMOBILEAX
2010-08-14 10:45 . 2010-08-14 10:45 -------- d-----w- c:\windows\system32\wbem\Repository
2010-08-14 10:31 . 2010-08-14 10:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Windows Genuine Advantage(2)
2010-08-14 10:25 . 2010-08-14 10:25 -------- d-----w- c:\documents and settings\Itachi\PrivacIE
2010-08-14 10:13 . 2010-08-14 10:13 -------- d-----w- c:\documents and settings\LocalService\IETldCache
2010-08-14 10:03 . 2010-08-14 10:03 -------- d-----w- c:\documents and settings\Itachi\IETldCache
2010-08-14 09:57 . 2010-08-14 09:58 -------- d-----w- c:\windows\ie8updates
2010-08-14 09:56 . 2010-08-14 10:44 -------- dc----w- c:\windows\ie8
2010-08-13 19:19 . 2010-08-13 19:19 -------- d-----w- c:\documents and settings\Itachi\Local Settings\Application Data\Threat Expert
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-15 11:58 . 2010-08-15 10:47 -------- d-----w- c:\documents and settings\Itachi\Application Data\uTorrent
2010-08-15 11:58 . 2010-08-13 16:09 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2010-08-15 11:21 . 2010-06-28 17:47 283984 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Bases\avengine.dll
2010-08-15 11:21 . 2010-08-15 11:21 166584 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\patch\AutoPatches\kav11\11.0.1.400\klwtblc.dll
2010-08-15 11:21 . 2010-08-15 11:21 125624 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\patch\AutoPatches\kav11\11.0.1.400\shellex.dll
2010-08-15 11:21 . 2010-08-15 11:21 113336 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\rollback\patch\AutoPatches\kav11\11.0.1.400\sbstart.exe
2010-08-15 11:21 . 2010-08-15 10:46 97549 ----a-w- c:\windows\system32\drivers\klick.dat
2010-08-15 11:21 . 2010-08-15 10:46 113933 ----a-w- c:\windows\system32\drivers\klin.dat
2010-08-15 11:21 . 2010-08-15 11:21 129720 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav11\11.0.1.400\shellex.dll
2010-08-15 11:21 . 2010-08-15 11:21 113336 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav11\11.0.1.400\sbstart.exe
2010-08-15 11:21 . 2010-08-15 11:21 404152 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav11\11.0.1.400\mcouas.dll
2010-08-15 11:21 . 2010-08-15 11:21 170680 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav11\11.0.1.400\klwtblc.dll
2010-08-15 11:16 . 2010-08-15 11:16 283984 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Data\Updater\Temporary Files\temporaryFolder\bases\av\kdb\i386\win\avengine.dll
2010-08-15 11:04 . 2001-08-28 12:00 71248 ----a-w- c:\windows\system32\perfc00C.dat
2010-08-15 11:04 . 2001-08-28 12:00 458230 ----a-w- c:\windows\system32\perfh00C.dat
2010-08-15 10:52 . 2010-08-14 12:01 270406 ----a-w- c:\windows\system32\drivers\hosts
2010-08-15 10:48 . 2010-08-15 10:48 -------- d-----w- c:\program files\uTorrent
2010-08-15 10:41 . 2010-08-13 16:09 -------- d-----w- c:\program files\Fichiers communs\PC Tools
2010-08-15 10:41 . 2010-08-13 16:09 -------- d-----w- c:\program files\PC Tools Internet Security
2010-08-14 21:45 . 2010-08-13 16:09 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2010-08-13 16:24 . 2010-08-13 16:24 -------- d-----w- c:\documents and settings\Itachi\Application Data\PCToolsFirewallPlus
2010-08-13 16:24 . 2010-08-13 16:24 -------- d-----w- c:\documents and settings\Itachi\Application Data\Spam Monitor
2010-08-13 16:05 . 2010-08-13 16:02 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-08-13 16:02 . 2010-08-13 16:02 -------- d-----w- c:\documents and settings\Itachi\Application Data\TuneUp Software
2010-08-13 16:02 . 2010-08-13 16:02 -------- d-----w- c:\documents and settings\All Users\Application Data\TuneUp Software
2010-08-13 16:02 . 2010-08-13 16:02 -------- d-sh--w- c:\documents and settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-08-13 15:54 . 2010-08-13 15:53 -------- d-----w- c:\program files\Google
2010-08-13 15:52 . 2010-08-13 15:52 0 ----a-w- c:\windows\nsreg.dat
2010-08-13 15:48 . 2010-08-13 15:48 -------- d-----w- c:\program files\Realtek
2010-08-13 15:48 . 2010-08-13 15:48 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-08-13 15:48 . 2010-08-13 15:48 315392 ----a-w- c:\windows\HideWin.exe
2010-08-13 15:48 . 2010-08-13 15:48 -------- d-----w- c:\program files\Fichiers communs\InstallShield
2010-07-21 11:30 . 2010-08-13 15:44 101904 ----a-w- c:\windows\system32\drivers\AtihdXP3.sys
2010-07-06 12:12 . 2010-08-13 16:03 30528 ----a-w- c:\windows\system32\TURegOpt.exe
2010-07-06 12:07 . 2010-08-13 16:02 30016 ----a-w- c:\windows\system32\uxtuneup.dll
2010-07-01 19:35 . 2010-07-01 19:35 228024 ----a-w- c:\windows\system32\klogon.dll
2010-07-01 18:48 . 2010-07-01 18:48 68256 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 2011 11.0.1.400\French\setup.exe
2010-07-01 06:06 . 2010-07-01 06:06 1037648 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Bases\klavasyswatch.dll
2010-06-30 12:32 . 2008-04-13 17:33 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-30 05:06 . 2010-06-30 05:06 271696 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP11\Bases\sys_critical_obj.dll
2010-06-24 12:10 . 2008-04-13 17:33 671232 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 12:10 . 2008-04-13 17:33 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-06-24 09:02 . 2008-04-13 16:58 1852032 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2008-04-13 10:15 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2008-04-13 17:33 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 14:31 . 2010-08-13 15:26 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-14 07:42 . 2008-04-13 17:33 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-09 15:43 . 2010-06-09 15:43 11352 ----a-w- c:\windows\system32\drivers\kl2.sys
2010-06-09 15:43 . 2010-06-09 15:43 132184 ----a-w- c:\windows\system32\drivers\kl1.sys
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2010-08-15 327472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-06-13 16377344]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-07-01 357096]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"CTFMON.EXE"=c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
"c:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 2011 11.0.1.400\\French\\setup.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
R1 kl2;kl2;c:\windows\system32\drivers\kl2.sys [09/06/2010 17:43 11352]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [14/08/2010 17:09 143184]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [14/08/2010 17:09 41936]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\PC Tools Internet Security\BDT\BDTUpdateService.exe [13/08/2010 18:15 112592]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [06/07/2010 14:10 1051968]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdXP3.sys [13/08/2010 17:44 101904]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [07/05/2010 12:06 32856]
R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [02/11/2009 20:27 19472]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14/10/2009 07:24 10064]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\drivers\VBoxNetAdp.sys [05/08/2010 14:08 100496]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [05/08/2010 14:08 111312]
S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [13/08/2010 17:53 136176]
S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Tâches planifiées'
2010-08-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-08-13 15:53]
2010-08-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-08-13 15:53]
.
.
------- Examen supplémentaire -------
.
IE: Ajouter à l'Anti-bannière - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm
FF - ProfilePath - c:\documents and settings\Itachi\Application Data\Mozilla\Firefox\Profiles\5kx0hfsc.default\
FF - component: c:\documents and settings\Itachi\Application Data\Mozilla\Firefox\Profiles\5kx0hfsc.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
FF - component: c:\program files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru\components\abhelperxpcom.dll
FF - component: c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru\components\kavlinkfilter.dll
FF - plugin: c:\documents and settings\Itachi\Application Data\Mozilla\Firefox\Profiles\5kx0hfsc.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
---- PARAMETRES FIREFOX ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés:
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(1744)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'explorer.exe'(1952)
c:\windows\system32\eappprxy.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\WgaTray.exe
c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
c:\windows\RTHDCPL.EXE
.
**************************************************************************
.
Heure de fin: 2010-08-15 14:00:34 - La machine a redémarré
ComboFix-quarantined-files.txt 2010-08-15 12:00
Avant-CF: 157 053 501 440 octets libres
Après-CF: 157 042 749 440 octets libres
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect
- - End Of File - - CC71017D6ED4E764E3B13DFF2D0FF281