Bonjour à tous lors d'un telechargement sur la mule j'ai chopper shredder
il n'y a pas de pc confidencial ou winferno sur mes programmes mais j'ai toujours l'icone shredder sur le bureau
lors du clic droit que 2 possibilité ouvrir ou creer un raccourci
de plus maintenant lorsque j'ouvre firefox je tombe sur une page http://www.forexstart.net/ j'ai beau essayer dans option internet de mettre google ou n'importe quoi il ouvre toujours la même chose
J'ai lu vos different post et j'ai donc fait un coup de ccleaner et installé combofix voila le Compte rendu
ComboFix 09-09-20.04 - Laurent 21/09/2009 21:46.1.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.1022.356 [GMT 2:00]
Lancé depuis: c:\documents and settings\Laurent\Mes documents\Téléchargements\ComboFix.exe
AV: avast! antivirus 4.8.1351 [VPS 090921-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\recycler\S-1-5-21-1819038537-504100470-2846571143-500
c:\windows\Alcmtr.exe
c:\windows\Installer\WMEncoder.msi
c:\windows\kb913800.exe
c:\windows\TEMP\logishrd\LVPrcInj01.dll
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-08-21 au 2009-09-21 ))))))))))))))))))))))))))))))))))))
.
2009-09-21 19:27 . 2009-09-21 19:27 -------- d-----w- c:\program files\CCleaner
2009-09-21 16:58 . 2009-09-21 16:58 -------- d-----w- c:\documents and settings\Laurent\Application Data\Titanium Gears
2009-09-21 16:57 . 2006-10-09 11:06 495616 ----a-w- c:\windows\system32\WINUTIL5.DLL
2009-09-21 16:57 . 2006-05-17 06:40 393216 ----a-w- c:\windows\system32\WINLCTL5.DLL
2009-09-21 15:48 . 2009-09-21 15:48 -------- d-----w- c:\program files\HLP
2009-09-09 20:58 . 2009-06-21 22:06 153088 ------w- c:\windows\system32\dllcache\triedit.dll
2009-08-29 09:56 . 2009-08-17 16:04 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-08-29 09:56 . 2009-08-17 16:04 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-08-29 09:56 . 2009-08-17 16:05 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-08-29 09:56 . 2009-08-17 16:05 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-08-29 09:56 . 2009-08-17 16:03 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-08-29 09:56 . 2009-08-17 16:02 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-08-29 09:56 . 2009-08-17 16:06 93392 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-08-29 09:56 . 2009-08-17 16:06 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-08-29 09:55 . 2009-08-17 16:10 1279456 ----a-w- c:\windows\system32\aswBoot.exe
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-21 17:41 . 2006-11-09 13:52 72704 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-09-21 17:36 . 2007-09-27 14:31 -------- d-----w- c:\program files\eMule
2009-09-14 16:29 . 2009-03-08 10:20 56764 ---ha-w- c:\windows\system32\mlfcache.dat
2009-08-29 09:55 . 2008-04-01 18:05 -------- d-----w- c:\program files\Alwil Software
2009-08-16 23:20 . 2004-09-23 17:12 84766 ----a-w- c:\windows\system32\perfc00C.dat
2009-08-16 23:20 . 2004-09-23 17:12 510742 ----a-w- c:\windows\system32\perfh00C.dat
2009-08-16 23:17 . 2009-08-16 23:17 -------- d-----w- c:\program files\MSBuild
2009-08-16 23:17 . 2009-08-16 23:17 -------- d-----w- c:\program files\Reference Assemblies
2009-08-16 23:14 . 2009-08-16 23:14 -------- d-----w- c:\program files\MSXML 6.0
2009-08-05 09:06 . 2004-09-23 17:10 205312 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-17 18:56 . 2004-09-23 17:09 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-13 21:43 . 2004-09-23 17:13 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-06-29 15:57 . 2004-09-23 17:11 827392 ----a-w- c:\windows\system32\wininet.dll
2009-06-29 15:57 . 2004-09-23 17:10 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-06-29 15:57 . 2004-09-23 17:10 17408 ------w- c:\windows\system32\corpol.dll
2009-06-25 18:36 . 2004-09-23 17:10 95744 ----a-w- c:\windows\system32\mqsec.dll
2009-06-25 18:36 . 2004-09-23 17:10 661504 ----a-w- c:\windows\system32\mqqm.dll
2009-06-25 18:36 . 2004-09-23 17:10 527360 ----a-w- c:\windows\system32\mqutil.dll
2009-06-25 18:36 . 2004-09-23 17:10 517120 ----a-w- c:\windows\system32\mqsnap.dll
2009-06-25 18:36 . 2004-09-23 17:10 48640 ----a-w- c:\windows\system32\mqupgrd.dll
2009-06-25 18:36 . 2004-09-23 17:10 186880 ----a-w- c:\windows\system32\mqtrig.dll
2009-06-25 18:36 . 2004-09-23 17:10 177152 ----a-w- c:\windows\system32\mqrt.dll
2009-06-25 18:36 . 2004-09-23 17:10 123392 ----a-w- c:\windows\system32\mqrtdep.dll
2009-06-25 18:36 . 2004-09-23 17:10 47104 ----a-w- c:\windows\system32\mqdscli.dll
2009-06-25 18:36 . 2004-09-23 17:10 225280 ----a-w- c:\windows\system32\mqoa.dll
2009-06-25 18:36 . 2004-09-23 17:10 16896 ----a-w- c:\windows\system32\mqise.dll
2009-06-25 18:36 . 2004-09-23 17:10 138240 ----a-w- c:\windows\system32\mqad.dll
2009-06-25 08:18 . 2004-09-23 17:11 59392 ----a-w- c:\windows\system32\wdigest.dll
2009-06-25 08:18 . 2004-09-23 17:11 56320 ----a-w- c:\windows\system32\secur32.dll
2009-06-25 08:18 . 2004-09-23 17:11 168448 ----a-w- c:\windows\system32\schannel.dll
2009-06-25 08:18 . 2004-09-23 17:10 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-06-25 08:18 . 2004-09-23 17:10 736256 ----a-w- c:\windows\system32\lsasrv.dll
2009-06-25 08:18 . 2004-09-23 17:10 301568 ----a-w- c:\windows\system32\kerberos.dll
2009-02-17 19:03 . 2009-02-17 19:02 21878064 ----a-w- c:\program files\QuickTimeInstaller.exe
2008-10-26 18:06 . 2008-10-26 18:05 7606832 ----a-w- c:\program files\Firefox Setup 3.0.3.exe
2008-06-10 18:30 . 2008-06-10 18:30 4399029 ----a-w- c:\program files\quickzip.exe
2008-04-01 17:49 . 2008-04-01 17:49 21907616 ----a-w- c:\program files\setupfre.exe
2007-12-06 15:33 . 2007-11-03 11:46 10705664 ----a-w- c:\program files\TU2007TrialFR.exe
2007-11-12 16:39 . 2007-11-12 16:39 18164640 ----a-w- c:\program files\aaw2007.exe
2007-10-13 11:33 . 2007-10-13 11:33 13411824 ----a-w- c:\program files\Google_Earth_BZXD.exe
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-10-19 68856]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168]
"ATICCC"="c:\program files\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-05-10 90112]
"itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2006-11-22 813912]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2007-02-05 849280]
"TrayServer"="c:\program files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe" [2007-07-17 90112]
"LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-12-20 2656528]
"CamserviceDeluxe2"="c:\program files\Hercules\Deluxe Optical Glass\Camservice.exe" [2007-08-10 81920]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-08-17 81000]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2008-05-02 15872]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2006-05-18 16207872]
"SkyTel"="SkyTel.EXE" - c:\windows\SkyTel.exe [2006-05-16 2879488]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-10 15360]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
"updateMgr"=c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
"SmpcSys"=c:\apps\SMP\SmpSys.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Picasa Media Detector"=c:\program files\Picasa2\PicasaMediaDetector.exe
"Conjugaison"=f:\conjugaison 4.70\conjLauncher.exe
"DetectorApp"=c:\program files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
"EmailChecker"=c:\apps\EmailChecker\ech.exe
"EULA"=c:\apps\PB_TB\EULALauncher.exe
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
"ehTray"=c:\windows\ehome\ehtray.exe
"SunJavaUpdateSched"=c:\program files\Java\jre1.5.0_04\bin\jusched.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%ProgramFiles%\\AOL 9.0\\aol.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
"c:\\Program Files\\Hercules\\Deluxe Optical Glass\\Station2.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [29/08/2009 11:56 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [29/08/2009 11:56 20560]
R3 camfilt2;camfilt2;c:\windows\system32\drivers\camfilt2.sys [03/06/2009 20:54 94720]
S2 gupdate1c98b53e7e3c902;Google Update Service (gupdate1c98b53e7e3c902);c:\program files\Google\Update\GoogleUpdate.exe [10/02/2009 09:48 133104]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\MAGIX\Common\Database\bin\fbserver.exe [12/03/2008 12:46 1527900]
S3 SaiH80C0;SaiH80C0;c:\windows\system32\drivers\SaiH80C0.sys [27/12/2007 21:44 176384]
.
Contenu du dossier 'Tâches planifiées'
2009-09-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-10 07:48]
2009-09-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-10 07:48]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Laurent\Application Data\Mozilla\Firefox\Profiles\3nmh6yq8.default\
FF - prefs.js: browser.search.selectedEngine - Ask
FF - prefs.js: browser.startup.homepage - hxxp://www.forexstart.net/
FF - plugin: c:\program files\Google\Google Earth Plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJava11.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJava12.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJava13.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJava14.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJava32.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPJPI150_04.dll
FF - plugin: c:\program files\Java\jre1.5.0_04\bin\NPOJI610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- PARAMETRES FIREFOX ----
FF - user.js: yahoo.homepage.dontask - true.
- - - - ORPHELINS SUPPRIMES - - - -
HKLM-Run-QuickTime Task - c:\documents and settings\All Users\Bureau\QTTask.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-09-21 21:50
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file]
@=""
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell]
@="Open"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\New]
@="&Nouveau"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\New\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /n \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /n \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Open]
@="&Ouvrir"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Open\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Print]
@="&Imprimer"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Print\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /p \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /p \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\PrintTo\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /pt \"%2\" \"%3\" \"%4\" \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /pt \"%2\" \"%3\" \"%4\" \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Show]
@="A&fficher"
[HKEY_LOCAL_MACHINE\software\Classes\ *x$ª**¸C*:*\WINDOWS\system32\usmt\migwiz.exe_auto_file\shell\Show\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /s \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /s \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell]
@="Open"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\New]
@="&Nouveau"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\New\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /n \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /n \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Open]
@="&Ouvrir"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Open\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Print]
@="&Imprimer"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Print\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /p \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /p \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\PrintTo\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /pt \"%2\" \"%3\" \"%4\" \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /pt \"%2\" \"%3\" \"%4\" \"%1\"\00\00"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Show]
@="A&fficher"
[HKEY_LOCAL_MACHINE\software\Classes\ *mº**ù*àé½ÿÿÿÿ_*a*u*t*o*_*f*i*l*e*\shell\Show\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\POWERPNT.EXE\" /s \"%1\""
"command"=multi:"F84DVn-}f(YR]eAR6.jiPPTFiles>K_20zK0Kq8?2(+(gVfP_ /s \"%1\"\00\00"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(708)
c:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(2672)
c:\program files\Unlocker\UnlockerHook.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\system32\browselc.dll
c:\program files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
c:\program files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\system32\ati2evxx.exe
c:\windows\system32\ati2evxx.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Lavasoft\Ad-Aware 2007\aawservice.exe
c:\progra~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\windows\ehome\ehrecvr.exe
c:\program files\ATI Technologies\ATI.ACE\CLI.exe
c:\windows\ehome\ehSched.exe
c:\program files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Fichiers communs\LogiShrd\LQCVFX\COCIManager.exe
c:\program files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
c:\windows\ehome\mcrdsvc.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\windows\system32\dllhost.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\program files\ATI Technologies\ATI.ACE\CLI.exe
c:\program files\ATI Technologies\ATI.ACE\CLI.exe
.
**************************************************************************
.
Heure de fin: 2009-09-21 21:54 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-09-21 19:54
Avant-CF: 38 717 079 552 octets libres
Après-CF: 38 710 571 008 octets libres
269 --- E O F --- 2009-09-10 01:04
Que puis je faire ?