Message redondant des des pubb

patty -  
BP'S Messages postés 1607 Statut Membre -
Bonjour,
jai des fenetres publicitaire internet qui souvre tout le temp nommer CID et je ne sait pas comment me debaraser de sa car mon antivirus trouve rien et mon S&D ne toruve pas despion non plus alors je ne sait pas commetn men debaraser veillez maider svp merci=)
A voir également:

4 réponses

BP'S Messages postés 1607 Statut Membre 314
 
hello,

Tu vas faire ceci :

Désactives le contrôle des comptes utilisateurs (le réactiver à la fin de la désinfection) :
Vas dans démarrer puis Panneau de configuration.
Double-cliques sur l'icône "Comptes d'utilisateurs".
Cliques ensuite sur désactiver et valider.
Fais un clic droit sur ce lien : http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

Enregistrez la cible (du lien) sous... et enregistrez-le sur le Bureau.
Ensuite double-cliques sur Navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, fais un clic droit sur le raccourci Navilog1 présent sur le Bureau et choisis Exécuter en tant qu'administrateur.
Arriver au menu principal, choisis l'option 1 et valider.
Patientes jusqu'au message : *** Analyse terminée le ..... ***
Appuyes sur une touche, le Bloc-notes s'ouvre, enregistrer le rapport de manière à le retrouver.
Poster le rapport dans la prochaine réponse
0
patty
 
voici mon rapport
Search Navipromo version 3.7.2 commencé le 2009-02-08 à 13:19:51,73

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 07.02.2009 à 10h00 par IL-MAFIOSO

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 4400+ )
BIOS : Default System BIOS
USER : Patrick ( Administrator )
BOOT : Normal boot

Antivirus : AVG Anti-Virus Free 8.0 (Activated)


C:\ (Local Disk) - NTFS - Total:113 Go (Free:67 Go)
D:\ (Local Disk) - NTFS - Total:170 Go (Free:150 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)


Recherche executé en mode normal

*** Recherche Programmes installés ***


*** Recherche dossiers dans "C:\Windows" ***


*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" ***


*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" ***


*** Recherche dossiers dans "C:\ProgramData" ***


*** Recherche dossiers dans "c:\users\patrick\appdata\roaming\micros~1\windows\startm~1\programs" ***


*** Recherche dossiers dans "C:\Users\Patrick\AppData\Local\virtualstore\Program Files" ***



*** Recherche dossiers dans "C:\Users\Patrick\AppData\Local" ***




*** Recherche dossiers dans "C:\Users\Patrick\AppData\Roaming" ***


*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\Patrick\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\Patrick\AppData\Local\virtualstore\windows\system32" *

* Recherche dans "C:\Users\Patrick\AppData\Local" *



*** Recherche fichiers ***



*** Recherche clés spécifiques dans le Registre ***
!! Les clés trouvées ne sont pas forcément infectées !!


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\Windows\system32" :


* Dans "C:\Users\Patrick\AppData\Local\Microsoft" :


* Dans "C:\Users\Patrick\AppData\Local\virtualstore\windows\system32" :


* Dans "C:\Users\Patrick\AppData\Local" :


3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche autres dossiers et fichiers connus :


C:\ProgramData\Download Move Bleh.z9czwn trouvé ! Infection Lop possible non traitée par cet outil !

C:\ProgramData\Pure More More.e4okvw trouvé ! Infection Lop possible non traitée par cet outil !

C:\ProgramData\Pure More More.meticn9 trouvé ! Infection Lop possible non traitée par cet outil !


*** Analyse terminée le 2009-02-08 à 13:20:52,58 ***
0
BP'S Messages postés 1607 Statut Membre 314
 
re,

Télécharge LOP S&D d'Eric71 ici https://sites.google.com/site/eric71mespages/lop.sd.exe

Double-clique dessus pour lancer l'installation.
Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau.
Séléctionne la langue souhaitée , puis choisis l'Option 1
Patiente jusqu'à la fin du scan.
Postes le rapport obtenu
0
patty
 
--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 4400+ )
BIOS : Default System BIOS
USER : Patrick ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
C:\ (Local Disk) - NTFS - Total:113 Go (Free:68 Go)
D:\ (Local Disk) - NTFS - Total:170 Go (Free:150 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 2009-02-08|13:50 )

[ UAC => 1 ]

--------------------\\ Listing des dossiers dans Local

[2008-09-06|15:03] C:\Users\Patrick\AppData\Local\Acer Arcade Live
[2008-10-29|19:50] C:\Users\Patrick\AppData\Local\Adobe
[2008-09-06|16:02] C:\Users\Patrick\AppData\Local\Apple
[2008-09-17|13:04] C:\Users\Patrick\AppData\Local\Apple Computer
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Application Data
[2008-09-06|14:19] C:\Users\Patrick\AppData\Local\ATI
[2009-02-02|08:37] C:\Users\Patrick\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-09-06|14:34] C:\Users\Patrick\AppData\Local\Downloaded Installations
[2008-09-06|14:35] C:\Users\Patrick\AppData\Local\edsinstaller.txt-20080906.log
[2008-12-21|13:18] C:\Users\Patrick\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-01-24|13:55] C:\Users\Patrick\AppData\Local\Google
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Historique
[2009-02-08|13:38] C:\Users\Patrick\AppData\Local\IconCache.db
[2008-10-08|10:47] C:\Users\Patrick\AppData\Local\JollyBear
[2008-09-18|19:23] C:\Users\Patrick\AppData\Local\Linksys_LLC_-_A_Division_
[2009-02-08|13:20] C:\Users\Patrick\AppData\Local\Microsoft
[2009-01-25|18:36] C:\Users\Patrick\AppData\Local\Microsoft Games
[2008-09-08|12:28] C:\Users\Patrick\AppData\Local\Mozilla
[2008-12-19|01:17] C:\Users\Patrick\AppData\Local\PMB Files
[2008-09-27|23:13] C:\Users\Patrick\AppData\Local\PokerStars
[2008-09-06|14:19] C:\Users\Patrick\AppData\Local\PowerCinema
[2009-01-25|16:15] C:\Users\Patrick\AppData\Local\Stardock
[2009-02-08|13:49] C:\Users\Patrick\AppData\Local\Temp
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Temporary Internet Files
[2008-09-19|19:16] C:\Users\Patrick\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[2009-02-07 23:31][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{51734A9F-FFF2-4FA1-B272-2F342BA173B2}.job
[2009-02-08 13:40][--ah-----] C:\Windows\tasks\SA.DAT
[2009-02-08 13:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[2008-03-15|18:12] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[2008-11-30|13:13] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2008-03-15|17:57] C:\ProgramData\Acer GameZone Console
[2008-09-27|22:58] C:\ProgramData\Adobe
[2008-09-06|16:01] C:\ProgramData\Apple
[2008-09-30|19:56] C:\ProgramData\Apple Computer
[2006-11-02|08:02] C:\ProgramData\Application Data
[2008-12-26|14:55] C:\ProgramData\Arcade Lab
[2008-09-06|14:19] C:\ProgramData\ATI
[2009-01-28|15:22] C:\ProgramData\avg8
[2008-09-06|14:13] C:\ProgramData\Bureau
[2008-09-06|15:03] C:\ProgramData\CyberLink
[2006-11-02|08:02] C:\ProgramData\Desktop
[2006-11-02|08:02] C:\ProgramData\Documents
[2009-02-08|01:35] C:\ProgramData\Download Move Bleh.z9czwn
[2008-09-06|15:07] C:\ProgramData\eSobi
[2008-09-06|14:13] C:\ProgramData\Favoris
[2006-11-02|08:02] C:\ProgramData\Favorites
[2008-03-15|17:57] C:\ProgramData\FloodLightGames
[2008-10-20|18:18] C:\ProgramData\InterAction studios
[2008-10-08|10:47] C:\ProgramData\JollyBear
[2008-10-08|19:26] C:\ProgramData\LightScribe
[2008-09-18|19:22] C:\ProgramData\Linksys
[2009-02-08|01:35] C:\ProgramData\LongAmenSixth
[2008-09-08|23:56] C:\ProgramData\Malwarebytes
[2008-12-24|01:21] C:\ProgramData\McAfee
[2008-09-06|14:13] C:\ProgramData\Menu D‚marrer
[2008-09-07|12:15] C:\ProgramData\Messenger Plus!
[2009-02-08|00:53] C:\ProgramData\Microsoft
[2008-12-11|00:12] C:\ProgramData\Microsoft Help
[2008-09-06|14:13] C:\ProgramData\ModŠles
[2009-01-26|17:47] C:\ProgramData\NCH Software
[2009-01-28|20:16] C:\ProgramData\NCH Swift Sound
[2008-10-19|17:28] C:\ProgramData\Nero
[2008-12-18|23:46] C:\ProgramData\NexonUS
[2008-10-20|18:29] C:\ProgramData\Oberon Games
[2009-01-17|21:47] C:\ProgramData\Oberon Media
[2008-12-18|23:22] C:\ProgramData\PMB Files
[2009-02-08|01:35] C:\ProgramData\Poke admin tons bike
[2009-02-08|01:34] C:\ProgramData\Pure More More.e4okvw
[2009-02-08|01:34] C:\ProgramData\Pure More More.meticn9
[2008-09-18|19:19] C:\ProgramData\Pure Networks
[2008-10-26|11:53] C:\ProgramData\Sandlot Games
[2008-10-01|14:19] C:\ProgramData\SiteAdvisor
[2008-10-08|10:10] C:\ProgramData\SpinTop Games
[2008-09-07|22:59] C:\ProgramData\Spybot - Search & Destroy
[2006-11-02|08:02] C:\ProgramData\Start Menu
[2009-01-21|21:03] C:\ProgramData\TEMP
[2006-11-02|08:02] C:\ProgramData\Templates
[2008-09-19|13:47] C:\ProgramData\webex
[2008-09-06|15:14] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[2008-09-06|14:17] C:\Program Files\Acer
[2008-03-15|17:56] C:\Program Files\Acer Arcade Live
[2008-09-28|15:47] C:\Program Files\Acer Display
[2009-01-21|23:37] C:\Program Files\Acer GameZone
[2009-01-21|23:37] C:\Program Files\Acer GameZone Online
[2008-09-06|14:37] C:\Program Files\Acer Incorporated
[2008-03-15|18:12] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[2008-09-27|22:57] C:\Program Files\Adobe
[2008-09-16|23:59] C:\Program Files\Apple Software Update
[2008-09-06|14:06] C:\Program Files\ATI
[2008-09-06|14:07] C:\Program Files\ATI Technologies
[2008-12-24|01:14] C:\Program Files\AVG
[2008-12-29|17:45] C:\Program Files\BitComet
[2009-01-04|13:06] C:\Program Files\Bonjour
[2009-02-08|01:34] C:\Program Files\Circle Developement
[2009-02-08|00:45] C:\Program Files\Common Files
[2008-03-15|17:52] C:\Program Files\CyberLink
[2008-09-06|14:25] C:\Program Files\DIFX
[2008-09-25|00:42] C:\Program Files\DivX
[2008-03-15|18:24] C:\Program Files\eSobi
[2009-01-20|22:19] C:\Program Files\ffdshow
[2008-09-06|14:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[2009-01-24|13:55] C:\Program Files\Google
[2008-09-28|15:48] C:\Program Files\InstallShield Installation Information
[2009-01-28|15:54] C:\Program Files\Internet Explorer
[2008-11-30|13:13] C:\Program Files\iPod
[2008-11-30|13:13] C:\Program Files\iTunes
[2008-12-10|14:19] C:\Program Files\Java
[2009-02-05|22:09] C:\Program Files\Lavalys
[2009-02-08|00:39] C:\Program Files\LimeWire
[2008-09-18|19:19] C:\Program Files\Linksys
[2009-02-08|01:34] C:\Program Files\Messenger Plus! Live
[2009-02-08|00:54] C:\Program Files\Microsoft
[2006-11-02|07:37] C:\Program Files\Microsoft Games
[2008-12-19|16:47] C:\Program Files\Microsoft IntelliPoint
[2008-12-19|16:44] C:\Program Files\Microsoft IntelliType Pro
[2008-03-15|18:12] C:\Program Files\Microsoft Office
[2008-10-21|12:08] C:\Program Files\Microsoft Silverlight
[2008-09-06|15:19] C:\Program Files\Microsoft SQL Server Compact Edition
[2009-02-08|00:54] C:\Program Files\Microsoft Sync Framework
[2008-09-09|18:59] C:\Program Files\Microsoft Works
[2008-03-15|18:10] C:\Program Files\Microsoft.NET
[2008-01-20|21:35] C:\Program Files\Movie Maker
[2009-02-05|22:12] C:\Program Files\Mozilla Firefox
[2006-11-02|07:37] C:\Program Files\MSBuild
[2009-02-08|13:21] C:\Program Files\Navilog1
[2009-01-26|17:47] C:\Program Files\NCH Software
[2009-01-28|20:16] C:\Program Files\NCH Swift Sound
[2008-03-15|18:23] C:\Program Files\NewTech Infosystems
[2009-02-05|19:58] C:\Program Files\Panda Security
[2008-12-18|23:20] C:\Program Files\Pando Networks
[2008-09-28|15:48] C:\Program Files\Portrait Displays
[2008-11-30|13:12] C:\Program Files\QuickTime
[2008-03-15|17:43] C:\Program Files\Realtek
[2009-01-20|22:36] C:\Program Files\Red Kawa
[2006-11-02|07:37] C:\Program Files\Reference Assemblies
[2008-11-30|13:04] C:\Program Files\Safari
[2008-12-01|17:22] C:\Program Files\Spybot - Search & Destroy
[2009-02-08|13:41] C:\Program Files\Steam
[2006-11-02|08:01] C:\Program Files\Uninstall Information
[2008-12-24|03:08] C:\Program Files\Ventrilo
[2008-01-20|21:35] C:\Program Files\Windows Calendar
[2008-01-20|21:35] C:\Program Files\Windows Collaboration
[2008-01-20|21:35] C:\Program Files\Windows Defender
[2008-01-20|21:35] C:\Program Files\Windows Journal
[2009-02-08|00:54] C:\Program Files\Windows Live
[2008-09-27|12:46] C:\Program Files\Windows Live Safety Center
[2009-02-08|00:49] C:\Program Files\Windows Live SkyDrive
[2009-01-13|23:43] C:\Program Files\Windows Mail
[2008-01-20|21:35] C:\Program Files\Windows Media Player
[2008-09-06|14:13] C:\Program Files\Windows NT
[2008-01-20|21:35] C:\Program Files\Windows Photo Gallery
[2008-01-20|21:35] C:\Program Files\Windows Sidebar
[2008-12-30|21:05] C:\Program Files\Wondershare
[2008-09-06|14:24] C:\Program Files\YUAN

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[2008-09-27|22:58] C:\Program Files\Common Files\Adobe
[2008-11-30|13:13] C:\Program Files\Common Files\Apple
[2008-03-15|18:10] C:\Program Files\Common Files\DESIGNER
[2009-01-26|19:38] C:\Program Files\Common Files\DVDVIDEOSOFT
[2008-03-15|17:45] C:\Program Files\Common Files\InstallShield
[2008-09-06|15:37] C:\Program Files\Common Files\Java
[2008-03-15|18:22] C:\Program Files\Common Files\LightScribe
[2009-02-08|00:49] C:\Program Files\Common Files\microsoft shared
[2008-03-15|18:22] C:\Program Files\Common Files\muvee Technologies
[2008-10-19|17:28] C:\Program Files\Common Files\Nero
[2009-01-21|23:36] C:\Program Files\Common Files\Oberon Media
[2008-09-28|15:48] C:\Program Files\Common Files\Portrait Displays
[2008-09-18|19:19] C:\Program Files\Common Files\Pure Networks Shared
[2008-09-25|00:42] C:\Program Files\Common Files\PX Storage Engine
[2006-11-02|06:18] C:\Program Files\Common Files\Services
[2006-11-02|06:18] C:\Program Files\Common Files\SpeechEngines
[2009-02-04|20:54] C:\Program Files\Common Files\Steam
[2008-01-20|21:35] C:\Program Files\Common Files\System
[2009-02-08|00:45] C:\Program Files\Common Files\Windows Live
[2008-09-06|15:17] C:\Program Files\Common Files\WindowsLiveInstaller
[2008-12-24|03:07] C:\Program Files\Common Files\Wise Installation Wizard

--------------------\\ Process

( 91 Processes )

iexplore.exe ~ [PID:5292]
iexplore.exe ~ [PID:5456]

--------------------\\ Recherche avec S_Lop

C:\ProgramData\Download Move Bleh.z9czwn
C:\ProgramData\Pure More More.e4okvw
C:\ProgramData\Pure More More.meticn9

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\ProgramData\Poke admin tons bike
C:\ProgramData\Poke admin tons bike\love 32.dat
C:\ProgramData\Poke admin tons bike\love 32.exe
C:\Users\Patrick\AppData\Local\Temp\msgpl_09b1.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_1342.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_3f1a.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_529c.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_7227.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_8356.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_cbde.tmp
C:\Users\Patrick\AppData\Local\Temp\msgpl_e70f.tmp
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"tons bike intra poll"="\"C:\\ProgramData\\Download Move Bleh.z9czwn\""
"DoesWave"="\"C:\\ProgramData\\Pure More More.meticn9\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-08 13:51:06
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 44

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Recent\Eminem Feat Dr. Dre & 50 Cent - Crack A Bottle.mp3.lnk


[F:120][D:18]-> C:\Users\Patrick\AppData\Local\Temp
[F:35][D:1]-> C:\Users\Patrick\AppData\Roaming\MICROS~1\Windows\Cookies
[F:388][D:4]-> C:\Users\Patrick\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:3][D:3]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 2009-02-08|13:52 - Option : [1]

--------------------\\ Fin du rapport a 13:52:18
[ UAC => 1 ]
0
BP'S Messages postés 1607 Statut Membre 314
 
re,

Tu vas pouvoir relancer lop S&D et cette fois ci choisis l option 2 et repostes le rapport de suppression
0
patty
 
--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 4400+ )
BIOS : Default System BIOS
USER : Patrick ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
C:\ (Local Disk) - NTFS - Total:113 Go (Free:68 Go)
D:\ (Local Disk) - NTFS - Total:170 Go (Free:150 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 2009-02-08|14:18 )

[ UAC => 1 ]


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\ProgramData\Poke admin tons bike\love 32.dat
Supprime! - C:\ProgramData\Poke admin tons bike\love 32.exe
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_09b1.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_1342.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_3f1a.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_529c.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_7227.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_8356.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_cbde.tmp
Supprime! - C:\Users\Patrick\AppData\Local\Temp\msgpl_e70f.tmp
Supprime! - C:\Program Files\Circle Developement\Uninstall.exe
Supprime! - C:\ProgramData\Download Move Bleh.z9czwn
Supprime! - C:\ProgramData\Pure More More.e4okvw
Supprime! - C:\ProgramData\Pure More More.meticn9
Supprime! - C:\ProgramData\Poke admin tons bike
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans Local

[2008-09-06|15:03] C:\Users\Patrick\AppData\Local\Acer Arcade Live
[2008-10-29|19:50] C:\Users\Patrick\AppData\Local\Adobe
[2008-09-06|16:02] C:\Users\Patrick\AppData\Local\Apple
[2008-09-17|13:04] C:\Users\Patrick\AppData\Local\Apple Computer
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Application Data
[2008-09-06|14:19] C:\Users\Patrick\AppData\Local\ATI
[2009-02-02|08:37] C:\Users\Patrick\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-09-06|14:34] C:\Users\Patrick\AppData\Local\Downloaded Installations
[2008-09-06|14:35] C:\Users\Patrick\AppData\Local\edsinstaller.txt-20080906.log
[2008-12-21|13:18] C:\Users\Patrick\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-01-24|13:55] C:\Users\Patrick\AppData\Local\Google
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Historique
[2009-02-08|13:38] C:\Users\Patrick\AppData\Local\IconCache.db
[2008-10-08|10:47] C:\Users\Patrick\AppData\Local\JollyBear
[2008-09-18|19:23] C:\Users\Patrick\AppData\Local\Linksys_LLC_-_A_Division_
[2009-02-08|13:20] C:\Users\Patrick\AppData\Local\Microsoft
[2009-01-25|18:36] C:\Users\Patrick\AppData\Local\Microsoft Games
[2008-09-08|12:28] C:\Users\Patrick\AppData\Local\Mozilla
[2008-12-19|01:17] C:\Users\Patrick\AppData\Local\PMB Files
[2008-09-27|23:13] C:\Users\Patrick\AppData\Local\PokerStars
[2008-09-06|14:19] C:\Users\Patrick\AppData\Local\PowerCinema
[2009-01-25|16:15] C:\Users\Patrick\AppData\Local\Stardock
[2009-02-08|14:18] C:\Users\Patrick\AppData\Local\Temp
[2008-09-06|14:17] C:\Users\Patrick\AppData\Local\Temporary Internet Files
[2008-09-19|19:16] C:\Users\Patrick\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[2009-02-07 23:31][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{51734A9F-FFF2-4FA1-B272-2F342BA173B2}.job
[2009-02-08 13:40][--ah-----] C:\Windows\tasks\SA.DAT
[2009-02-08 13:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[2008-03-15|18:12] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[2008-11-30|13:13] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[2008-03-15|17:57] C:\ProgramData\Acer GameZone Console
[2008-09-27|22:58] C:\ProgramData\Adobe
[2008-09-06|16:01] C:\ProgramData\Apple
[2008-09-30|19:56] C:\ProgramData\Apple Computer
[2006-11-02|08:02] C:\ProgramData\Application Data
[2008-12-26|14:55] C:\ProgramData\Arcade Lab
[2008-09-06|14:19] C:\ProgramData\ATI
[2009-01-28|15:22] C:\ProgramData\avg8
[2008-09-06|14:13] C:\ProgramData\Bureau
[2008-09-06|15:03] C:\ProgramData\CyberLink
[2006-11-02|08:02] C:\ProgramData\Desktop
[2006-11-02|08:02] C:\ProgramData\Documents
[2008-09-06|15:07] C:\ProgramData\eSobi
[2008-09-06|14:13] C:\ProgramData\Favoris
[2006-11-02|08:02] C:\ProgramData\Favorites
[2008-03-15|17:57] C:\ProgramData\FloodLightGames
[2008-10-20|18:18] C:\ProgramData\InterAction studios
[2008-10-08|10:47] C:\ProgramData\JollyBear
[2008-10-08|19:26] C:\ProgramData\LightScribe
[2008-09-18|19:22] C:\ProgramData\Linksys
[2009-02-08|01:35] C:\ProgramData\LongAmenSixth
[2008-09-08|23:56] C:\ProgramData\Malwarebytes
[2008-12-24|01:21] C:\ProgramData\McAfee
[2008-09-06|14:13] C:\ProgramData\Menu D‚marrer
[2008-09-07|12:15] C:\ProgramData\Messenger Plus!
[2009-02-08|00:53] C:\ProgramData\Microsoft
[2008-12-11|00:12] C:\ProgramData\Microsoft Help
[2008-09-06|14:13] C:\ProgramData\ModŠles
[2009-01-26|17:47] C:\ProgramData\NCH Software
[2009-01-28|20:16] C:\ProgramData\NCH Swift Sound
[2008-10-19|17:28] C:\ProgramData\Nero
[2008-12-18|23:46] C:\ProgramData\NexonUS
[2008-10-20|18:29] C:\ProgramData\Oberon Games
[2009-01-17|21:47] C:\ProgramData\Oberon Media
[2008-12-18|23:22] C:\ProgramData\PMB Files
[2008-09-18|19:19] C:\ProgramData\Pure Networks
[2008-10-26|11:53] C:\ProgramData\Sandlot Games
[2008-10-01|14:19] C:\ProgramData\SiteAdvisor
[2008-10-08|10:10] C:\ProgramData\SpinTop Games
[2008-09-07|22:59] C:\ProgramData\Spybot - Search & Destroy
[2006-11-02|08:02] C:\ProgramData\Start Menu
[2009-01-21|21:03] C:\ProgramData\TEMP
[2006-11-02|08:02] C:\ProgramData\Templates
[2008-09-19|13:47] C:\ProgramData\webex
[2008-09-06|15:14] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[2008-09-06|14:17] C:\Program Files\Acer
[2008-03-15|17:56] C:\Program Files\Acer Arcade Live
[2008-09-28|15:47] C:\Program Files\Acer Display
[2009-01-21|23:37] C:\Program Files\Acer GameZone
[2009-01-21|23:37] C:\Program Files\Acer GameZone Online
[2008-09-06|14:37] C:\Program Files\Acer Incorporated
[2008-03-15|18:12] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[2008-09-27|22:57] C:\Program Files\Adobe
[2008-09-16|23:59] C:\Program Files\Apple Software Update
[2008-09-06|14:06] C:\Program Files\ATI
[2008-09-06|14:07] C:\Program Files\ATI Technologies
[2008-12-24|01:14] C:\Program Files\AVG
[2008-12-29|17:45] C:\Program Files\BitComet
[2009-01-04|13:06] C:\Program Files\Bonjour
[2009-02-08|00:45] C:\Program Files\Common Files
[2008-03-15|17:52] C:\Program Files\CyberLink
[2008-09-06|14:25] C:\Program Files\DIFX
[2008-09-25|00:42] C:\Program Files\DivX
[2008-03-15|18:24] C:\Program Files\eSobi
[2009-01-20|22:19] C:\Program Files\ffdshow
[2008-09-06|14:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[2009-01-24|13:55] C:\Program Files\Google
[2008-09-28|15:48] C:\Program Files\InstallShield Installation Information
[2009-01-28|15:54] C:\Program Files\Internet Explorer
[2008-11-30|13:13] C:\Program Files\iPod
[2008-11-30|13:13] C:\Program Files\iTunes
[2008-12-10|14:19] C:\Program Files\Java
[2009-02-05|22:09] C:\Program Files\Lavalys
[2009-02-08|00:39] C:\Program Files\LimeWire
[2008-09-18|19:19] C:\Program Files\Linksys
[2009-02-08|01:34] C:\Program Files\Messenger Plus! Live
[2009-02-08|00:54] C:\Program Files\Microsoft
[2006-11-02|07:37] C:\Program Files\Microsoft Games
[2008-12-19|16:47] C:\Program Files\Microsoft IntelliPoint
[2008-12-19|16:44] C:\Program Files\Microsoft IntelliType Pro
[2008-03-15|18:12] C:\Program Files\Microsoft Office
[2008-10-21|12:08] C:\Program Files\Microsoft Silverlight
[2008-09-06|15:19] C:\Program Files\Microsoft SQL Server Compact Edition
[2009-02-08|00:54] C:\Program Files\Microsoft Sync Framework
[2008-09-09|18:59] C:\Program Files\Microsoft Works
[2008-03-15|18:10] C:\Program Files\Microsoft.NET
[2008-01-20|21:35] C:\Program Files\Movie Maker
[2009-02-05|22:12] C:\Program Files\Mozilla Firefox
[2006-11-02|07:37] C:\Program Files\MSBuild
[2009-02-08|13:21] C:\Program Files\Navilog1
[2009-01-26|17:47] C:\Program Files\NCH Software
[2009-01-28|20:16] C:\Program Files\NCH Swift Sound
[2008-03-15|18:23] C:\Program Files\NewTech Infosystems
[2009-02-05|19:58] C:\Program Files\Panda Security
[2008-12-18|23:20] C:\Program Files\Pando Networks
[2008-09-28|15:48] C:\Program Files\Portrait Displays
[2008-11-30|13:12] C:\Program Files\QuickTime
[2008-03-15|17:43] C:\Program Files\Realtek
[2009-01-20|22:36] C:\Program Files\Red Kawa
[2006-11-02|07:37] C:\Program Files\Reference Assemblies
[2008-11-30|13:04] C:\Program Files\Safari
[2008-12-01|17:22] C:\Program Files\Spybot - Search & Destroy
[2009-02-08|13:41] C:\Program Files\Steam
[2006-11-02|08:01] C:\Program Files\Uninstall Information
[2008-12-24|03:08] C:\Program Files\Ventrilo
[2008-01-20|21:35] C:\Program Files\Windows Calendar
[2008-01-20|21:35] C:\Program Files\Windows Collaboration
[2008-01-20|21:35] C:\Program Files\Windows Defender
[2008-01-20|21:35] C:\Program Files\Windows Journal
[2009-02-08|00:54] C:\Program Files\Windows Live
[2008-09-27|12:46] C:\Program Files\Windows Live Safety Center
[2009-02-08|00:49] C:\Program Files\Windows Live SkyDrive
[2009-01-13|23:43] C:\Program Files\Windows Mail
[2008-01-20|21:35] C:\Program Files\Windows Media Player
[2008-09-06|14:13] C:\Program Files\Windows NT
[2008-01-20|21:35] C:\Program Files\Windows Photo Gallery
[2008-01-20|21:35] C:\Program Files\Windows Sidebar
[2008-12-30|21:05] C:\Program Files\Wondershare
[2008-09-06|14:24] C:\Program Files\YUAN

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[2008-09-27|22:58] C:\Program Files\Common Files\Adobe
[2008-11-30|13:13] C:\Program Files\Common Files\Apple
[2008-03-15|18:10] C:\Program Files\Common Files\DESIGNER
[2009-01-26|19:38] C:\Program Files\Common Files\DVDVIDEOSOFT
[2008-03-15|17:45] C:\Program Files\Common Files\InstallShield
[2008-09-06|15:37] C:\Program Files\Common Files\Java
[2008-03-15|18:22] C:\Program Files\Common Files\LightScribe
[2009-02-08|00:49] C:\Program Files\Common Files\microsoft shared
[2008-03-15|18:22] C:\Program Files\Common Files\muvee Technologies
[2008-10-19|17:28] C:\Program Files\Common Files\Nero
[2009-01-21|23:36] C:\Program Files\Common Files\Oberon Media
[2008-09-28|15:48] C:\Program Files\Common Files\Portrait Displays
[2008-09-18|19:19] C:\Program Files\Common Files\Pure Networks Shared
[2008-09-25|00:42] C:\Program Files\Common Files\PX Storage Engine
[2006-11-02|06:18] C:\Program Files\Common Files\Services
[2006-11-02|06:18] C:\Program Files\Common Files\SpeechEngines
[2009-02-04|20:54] C:\Program Files\Common Files\Steam
[2008-01-20|21:35] C:\Program Files\Common Files\System
[2009-02-08|00:45] C:\Program Files\Common Files\Windows Live
[2008-09-06|15:17] C:\Program Files\Common Files\WindowsLiveInstaller
[2008-12-24|03:07] C:\Program Files\Common Files\Wise Installation Wizard

--------------------\\ Process

( 91 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-08 14:18:50
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 44

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Recent\Eminem Feat Dr. Dre & 50 Cent - Crack A Bottle.mp3.lnk


[F:113][D:18]-> C:\Users\Patrick\AppData\Local\Temp
[F:35][D:1]-> C:\Users\Patrick\AppData\Roaming\MICROS~1\Windows\Cookies
[F:388][D:4]-> C:\Users\Patrick\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:3][D:3]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 2009-02-08|13:52 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 2009-02-08|14:20 - Option : [2]

--------------------\\ Fin du rapport a 14:20:01
[ UAC => 1 ]
0
BP'S Messages postés 1607 Statut Membre 314
 
hello,

toujours des pubs ?
0