Fenetre cid
Résolu/Fermé
ashura88
Messages postés
20
Date d'inscription
mercredi 5 août 2009
Statut
Membre
Dernière intervention
3 octobre 2010
-
5 août 2009 à 15:30
Utilisateur anonyme - 5 août 2009 à 16:27
Utilisateur anonyme - 5 août 2009 à 16:27
5 réponses
Utilisateur anonyme
5 août 2009 à 15:31
5 août 2009 à 15:31
ok salut ne poste pas hijackthis :
▶ télécharge LOP S&D sur ton Bureau.
▶ Double-clique dessus pour lancer l'installation
▶ Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
▶ Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré (C:\lopR.txt)
▶ télécharge LOP S&D sur ton Bureau.
▶ Double-clique dessus pour lancer l'installation
▶ Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
▶ Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré (C:\lopR.txt)
ashura88
Messages postés
20
Date d'inscription
mercredi 5 août 2009
Statut
Membre
Dernière intervention
3 octobre 2010
5 août 2009 à 15:58
5 août 2009 à 15:58
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Processeur Intel Pentium III Xeon )
BIOS : BIOS Date: 08/28/08 17:15:28 Ver: 08.00.12
USER : somavilla ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:74 Go (Free:44 Go)
D:\ (CD or DVD)
E:\ (USB)
F:\ (Local Disk) - NTFS - Total:232 Go (Free:185 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/08/2009|15:54 )
--------------------\\ Listing des dossiers dans APPLIC~1
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[05/08/2009|08:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[03/08/2009|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\dumb tray 16 test
[27/12/2008|23:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[03/06/2009|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[24/07/2009|00:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[24/07/2009|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[27/05/2009|15:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[27/07/2009|02:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[26/12/2008|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[23/01/2009|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[24/01/2009|21:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/12/2008|18:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[23/01/2009|20:43] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Adobe
[18/07/2009|02:02] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Apple Computer
[03/08/2009|19:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Babylon
[02/06/2009|00:50] C:\DOCUME~1\SOMAVI~1\APPLIC~1\DivX
[02/08/2009|16:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\dvdcss
[03/08/2009|19:22] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EoRezo
[18/04/2009|13:45] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EPSON
[28/07/2009|17:55] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Google
[22/12/2008|18:21] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Identities
[26/12/2008|22:36] C:\DOCUME~1\SOMAVI~1\APPLIC~1\InstallShield
[23/01/2009|21:09] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Macromedia
[26/07/2009|23:03] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Microsoft
[12/04/2009|20:11] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Mozilla
[27/07/2009|02:29] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Nero
[03/08/2009|16:40] C:\DOCUME~1\SOMAVI~1\APPLIC~1\shim less
[02/08/2009|16:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\uTorrent
[05/08/2009|12:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\vlc
[31/12/2008|18:56] C:\DOCUME~1\SOMAVI~1\APPLIC~1\WinRAR
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/08/2009 15:00][--ah-----] C:\WINDOWS\tasks\A7304B04913BFC70.job
[05/08/2009 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[04/08/2009 18:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[31/07/2009 16:16][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[04/08/2009 14:12][--ah-----] C:\WINDOWS\tasks\SA.DAT
[14/04/2008 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
( A7304B04913BFC70.job )=( c:\docume~1\somavi~1\applic~1\shimle~1\vcchicsave.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[24/07/2009|00:16] C:\Program Files\Activision
[15/02/2009|17:40] C:\Program Files\AntiSpywareExpert
[12/07/2009|00:02] C:\Program Files\Apple Software Update
[23/12/2008|19:38] C:\Program Files\ASUS
[03/08/2009|16:38] C:\Program Files\Babylon
[30/07/2009|16:31] C:\Program Files\Common Files
[22/12/2008|18:14] C:\Program Files\ComPlus Applications
[28/07/2009|12:46] C:\Program Files\Cracklock
[28/07/2009|01:33] C:\Program Files\DivX
[26/12/2008|22:38] C:\Program Files\epson
[26/12/2008|22:38] C:\Program Files\Epson Software
[27/07/2009|01:58] C:\Program Files\Fichiers communs
[03/08/2009|13:17] C:\Program Files\Google
[28/07/2009|18:24] C:\Program Files\gPotato.eu
[07/06/2009|22:04] C:\Program Files\Hercules
[23/07/2009|23:24] C:\Program Files\IMMonitor
[24/07/2009|00:50] C:\Program Files\InstallShield Installation Information
[27/12/2008|22:52] C:\Program Files\Intel
[05/08/2009|12:35] C:\Program Files\Intel Desktop Board
[30/07/2009|03:00] C:\Program Files\Internet Explorer
[27/12/2008|23:56] C:\Program Files\Logitech
[23/01/2009|21:03] C:\Program Files\Messenger
[23/07/2009|23:31] C:\Program Files\Messenger Plus! Live
[22/12/2008|18:16] C:\Program Files\microsoft frontpage
[27/05/2009|15:19] C:\Program Files\Microsoft Office
[27/05/2009|15:19] C:\Program Files\Microsoft Works
[22/12/2008|18:15] C:\Program Files\Movie Maker
[04/08/2009|22:29] C:\Program Files\Mozilla Firefox
[06/02/2009|22:16] C:\Program Files\MSN
[22/12/2008|18:13] C:\Program Files\MSN Gaming Zone
[28/07/2009|03:00] C:\Program Files\MSXML 4.0
[23/12/2008|19:39] C:\Program Files\My Company Name
[27/07/2009|02:09] C:\Program Files\Nero
[22/12/2008|18:15] C:\Program Files\NetMeeting
[22/12/2008|18:13] C:\Program Files\Online Services
[22/12/2008|18:15] C:\Program Files\Outlook Express
[12/07/2009|00:03] C:\Program Files\QuickTime
[27/12/2008|22:58] C:\Program Files\Realtek
[22/12/2008|18:15] C:\Program Files\Services en ligne
[23/01/2009|20:47] C:\Program Files\SFR
[03/08/2009|16:39] C:\Program Files\shim less
[05/08/2009|14:01] C:\Program Files\Steam
[05/08/2009|15:22] C:\Program Files\Trend Micro
[22/12/2008|18:21] C:\Program Files\Uninstall Information
[17/06/2009|18:07] C:\Program Files\VIA
[26/07/2009|21:08] C:\Program Files\VideoLAN
[24/01/2009|22:17] C:\Program Files\Webcam 1200
[24/01/2009|21:50] C:\Program Files\Windows Live
[22/12/2008|18:16] C:\Program Files\Windows Media Player
[22/12/2008|18:13] C:\Program Files\Windows NT
[27/07/2009|02:10] C:\Program Files\Windows Sidebar
[22/12/2008|18:15] C:\Program Files\WindowsUpdate
[23/07/2009|23:24] C:\Program Files\WinPcap
[31/12/2008|18:56] C:\Program Files\WinRAR
[03/08/2009|16:39] C:\Program Files\WinZix
[22/12/2008|18:16] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/01/2009|22:13] C:\Program Files\Fichiers communs\ArcSoft
[27/05/2009|15:19] C:\Program Files\Fichiers communs\DESIGNER
[01/06/2009|23:51] C:\Program Files\Fichiers communs\DivX Shared
[26/12/2008|22:38] C:\Program Files\Fichiers communs\InstallShield
[27/07/2009|01:57] C:\Program Files\Fichiers communs\Microsoft Shared
[22/12/2008|18:15] C:\Program Files\Fichiers communs\MSSoap
[27/07/2009|02:04] C:\Program Files\Fichiers communs\Nero
[23/12/2008|02:07] C:\Program Files\Fichiers communs\ODBC
[22/12/2008|18:15] C:\Program Files\Fichiers communs\Services
[28/12/2008|00:00] C:\Program Files\Fichiers communs\SNP2UVC
[23/12/2008|02:07] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2008|18:14] C:\Program Files\Fichiers communs\System
[24/01/2009|21:50] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 54 Processes )
IEXPLORE.EXE ~ [PID:1344]
IEXPLORE.EXE ~ [PID:532]
iexplore.exe ~ [PID:2600]
iexplore.exe ~ [PID:600]
iexplore.exe ~ [PID:2124]
iexplore.exe ~ [PID:5244]
IEXPLORE.EXE ~ [PID:5284]
IEXPLORE.EXE ~ [PID:5960]
--------------------\\ Recherche avec S_Lop
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\bisF8.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\vc chic save.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\vc chic save.exe
C:\Program Files\shimle~1
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\WinZix.zip
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\minime.exe
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\HtmlControl.dll
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsd159.tmp
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsg292.tmp
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\HomePage.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\Uninstall.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\WinZix.lnk
C:\Program Files\WinZix
C:\Program Files\WinZix\Flexi.skf
C:\Program Files\WinZix\search_error.htm
C:\Program Files\WinZix\SkinCrafterDll.dll
C:\Program Files\WinZix\support_error.htm
C:\Program Files\WinZix\t_bg.jpg
C:\Program Files\WinZix\winzix.exe
C:\Program Files\WinZix\WinZix.url
C:\Program Files\WinZix\WinZixManager.dll
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertstream[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.adserver5[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adultfriendfinder[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@ero-advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@serve.cotedazurpalace[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adopt.euroclick[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@pacificpoker[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@partypoker[2].txt
C:\WINDOWS\Tasks\A7304B04913BFC70.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\skip balm stop]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-08-05 15:55:07
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 3
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\PROGRA~1\AntiSpywareExpert
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\SOMAVI~1\Local Settings\Application Data\Cracklock.settings
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9 KeyGen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen\nero9_keygen_navdeep.exe
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock Manager.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock website.url
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Documentation.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Uninstall Cracklock.lnk
[F:2190][D:164]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp
[F:992][D:0]-> C:\DOCUME~1\SOMAVI~1\Cookies
[F:8214][D:12]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/08/2009|15:57 - Option : [1]
--------------------\\ Fin du rapport a 15:57:29
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Processeur Intel Pentium III Xeon )
BIOS : BIOS Date: 08/28/08 17:15:28 Ver: 08.00.12
USER : somavilla ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:74 Go (Free:44 Go)
D:\ (CD or DVD)
E:\ (USB)
F:\ (Local Disk) - NTFS - Total:232 Go (Free:185 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/08/2009|15:54 )
--------------------\\ Listing des dossiers dans APPLIC~1
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[05/08/2009|08:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[03/08/2009|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\dumb tray 16 test
[27/12/2008|23:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[03/06/2009|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[24/07/2009|00:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[24/07/2009|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[27/05/2009|15:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[27/07/2009|02:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[26/12/2008|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[23/01/2009|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[24/01/2009|21:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/12/2008|18:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[23/01/2009|20:43] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Adobe
[18/07/2009|02:02] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Apple Computer
[03/08/2009|19:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Babylon
[02/06/2009|00:50] C:\DOCUME~1\SOMAVI~1\APPLIC~1\DivX
[02/08/2009|16:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\dvdcss
[03/08/2009|19:22] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EoRezo
[18/04/2009|13:45] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EPSON
[28/07/2009|17:55] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Google
[22/12/2008|18:21] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Identities
[26/12/2008|22:36] C:\DOCUME~1\SOMAVI~1\APPLIC~1\InstallShield
[23/01/2009|21:09] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Macromedia
[26/07/2009|23:03] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Microsoft
[12/04/2009|20:11] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Mozilla
[27/07/2009|02:29] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Nero
[03/08/2009|16:40] C:\DOCUME~1\SOMAVI~1\APPLIC~1\shim less
[02/08/2009|16:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\uTorrent
[05/08/2009|12:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\vlc
[31/12/2008|18:56] C:\DOCUME~1\SOMAVI~1\APPLIC~1\WinRAR
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/08/2009 15:00][--ah-----] C:\WINDOWS\tasks\A7304B04913BFC70.job
[05/08/2009 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[04/08/2009 18:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[31/07/2009 16:16][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[04/08/2009 14:12][--ah-----] C:\WINDOWS\tasks\SA.DAT
[14/04/2008 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
( A7304B04913BFC70.job )=( c:\docume~1\somavi~1\applic~1\shimle~1\vcchicsave.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[24/07/2009|00:16] C:\Program Files\Activision
[15/02/2009|17:40] C:\Program Files\AntiSpywareExpert
[12/07/2009|00:02] C:\Program Files\Apple Software Update
[23/12/2008|19:38] C:\Program Files\ASUS
[03/08/2009|16:38] C:\Program Files\Babylon
[30/07/2009|16:31] C:\Program Files\Common Files
[22/12/2008|18:14] C:\Program Files\ComPlus Applications
[28/07/2009|12:46] C:\Program Files\Cracklock
[28/07/2009|01:33] C:\Program Files\DivX
[26/12/2008|22:38] C:\Program Files\epson
[26/12/2008|22:38] C:\Program Files\Epson Software
[27/07/2009|01:58] C:\Program Files\Fichiers communs
[03/08/2009|13:17] C:\Program Files\Google
[28/07/2009|18:24] C:\Program Files\gPotato.eu
[07/06/2009|22:04] C:\Program Files\Hercules
[23/07/2009|23:24] C:\Program Files\IMMonitor
[24/07/2009|00:50] C:\Program Files\InstallShield Installation Information
[27/12/2008|22:52] C:\Program Files\Intel
[05/08/2009|12:35] C:\Program Files\Intel Desktop Board
[30/07/2009|03:00] C:\Program Files\Internet Explorer
[27/12/2008|23:56] C:\Program Files\Logitech
[23/01/2009|21:03] C:\Program Files\Messenger
[23/07/2009|23:31] C:\Program Files\Messenger Plus! Live
[22/12/2008|18:16] C:\Program Files\microsoft frontpage
[27/05/2009|15:19] C:\Program Files\Microsoft Office
[27/05/2009|15:19] C:\Program Files\Microsoft Works
[22/12/2008|18:15] C:\Program Files\Movie Maker
[04/08/2009|22:29] C:\Program Files\Mozilla Firefox
[06/02/2009|22:16] C:\Program Files\MSN
[22/12/2008|18:13] C:\Program Files\MSN Gaming Zone
[28/07/2009|03:00] C:\Program Files\MSXML 4.0
[23/12/2008|19:39] C:\Program Files\My Company Name
[27/07/2009|02:09] C:\Program Files\Nero
[22/12/2008|18:15] C:\Program Files\NetMeeting
[22/12/2008|18:13] C:\Program Files\Online Services
[22/12/2008|18:15] C:\Program Files\Outlook Express
[12/07/2009|00:03] C:\Program Files\QuickTime
[27/12/2008|22:58] C:\Program Files\Realtek
[22/12/2008|18:15] C:\Program Files\Services en ligne
[23/01/2009|20:47] C:\Program Files\SFR
[03/08/2009|16:39] C:\Program Files\shim less
[05/08/2009|14:01] C:\Program Files\Steam
[05/08/2009|15:22] C:\Program Files\Trend Micro
[22/12/2008|18:21] C:\Program Files\Uninstall Information
[17/06/2009|18:07] C:\Program Files\VIA
[26/07/2009|21:08] C:\Program Files\VideoLAN
[24/01/2009|22:17] C:\Program Files\Webcam 1200
[24/01/2009|21:50] C:\Program Files\Windows Live
[22/12/2008|18:16] C:\Program Files\Windows Media Player
[22/12/2008|18:13] C:\Program Files\Windows NT
[27/07/2009|02:10] C:\Program Files\Windows Sidebar
[22/12/2008|18:15] C:\Program Files\WindowsUpdate
[23/07/2009|23:24] C:\Program Files\WinPcap
[31/12/2008|18:56] C:\Program Files\WinRAR
[03/08/2009|16:39] C:\Program Files\WinZix
[22/12/2008|18:16] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/01/2009|22:13] C:\Program Files\Fichiers communs\ArcSoft
[27/05/2009|15:19] C:\Program Files\Fichiers communs\DESIGNER
[01/06/2009|23:51] C:\Program Files\Fichiers communs\DivX Shared
[26/12/2008|22:38] C:\Program Files\Fichiers communs\InstallShield
[27/07/2009|01:57] C:\Program Files\Fichiers communs\Microsoft Shared
[22/12/2008|18:15] C:\Program Files\Fichiers communs\MSSoap
[27/07/2009|02:04] C:\Program Files\Fichiers communs\Nero
[23/12/2008|02:07] C:\Program Files\Fichiers communs\ODBC
[22/12/2008|18:15] C:\Program Files\Fichiers communs\Services
[28/12/2008|00:00] C:\Program Files\Fichiers communs\SNP2UVC
[23/12/2008|02:07] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2008|18:14] C:\Program Files\Fichiers communs\System
[24/01/2009|21:50] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 54 Processes )
IEXPLORE.EXE ~ [PID:1344]
IEXPLORE.EXE ~ [PID:532]
iexplore.exe ~ [PID:2600]
iexplore.exe ~ [PID:600]
iexplore.exe ~ [PID:2124]
iexplore.exe ~ [PID:5244]
IEXPLORE.EXE ~ [PID:5284]
IEXPLORE.EXE ~ [PID:5960]
--------------------\\ Recherche avec S_Lop
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\bisF8.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\vc chic save.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\vc chic save.exe
C:\Program Files\shimle~1
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\WinZix.zip
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\minime.exe
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\HtmlControl.dll
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsd159.tmp
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsg292.tmp
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\HomePage.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\Uninstall.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\WinZix.lnk
C:\Program Files\WinZix
C:\Program Files\WinZix\Flexi.skf
C:\Program Files\WinZix\search_error.htm
C:\Program Files\WinZix\SkinCrafterDll.dll
C:\Program Files\WinZix\support_error.htm
C:\Program Files\WinZix\t_bg.jpg
C:\Program Files\WinZix\winzix.exe
C:\Program Files\WinZix\WinZix.url
C:\Program Files\WinZix\WinZixManager.dll
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertstream[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.adserver5[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adultfriendfinder[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@ero-advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@serve.cotedazurpalace[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adopt.euroclick[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@pacificpoker[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@partypoker[2].txt
C:\WINDOWS\Tasks\A7304B04913BFC70.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\skip balm stop]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-08-05 15:55:07
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 3
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\PROGRA~1\AntiSpywareExpert
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\SOMAVI~1\Local Settings\Application Data\Cracklock.settings
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9 KeyGen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen\nero9_keygen_navdeep.exe
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock Manager.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock website.url
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Documentation.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Uninstall Cracklock.lnk
[F:2190][D:164]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp
[F:992][D:0]-> C:\DOCUME~1\SOMAVI~1\Cookies
[F:8214][D:12]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/08/2009|15:57 - Option : [1]
--------------------\\ Fin du rapport a 15:57:29
Utilisateur anonyme
5 août 2009 à 16:01
5 août 2009 à 16:01
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9 KeyGen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen.rar
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen
C:\DOCUME~1\SOMAVI~1\Local Settings\Temp\Nero 9.2.5.0 Keygen\Keygen\Nero 9.2.5.0 Keygen\nero9_keygen_navdeep.exe
supprime ceci source d'infection
ensuite :
▶ double-clique sur le raccourci Lop S&D présent sur ton Bureau
▶ Séléctionne la langue souhaitée , puis choisis l'option "Suppression + Hosts"
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré (C:\lopR.txt)
ashura88
Messages postés
20
Date d'inscription
mercredi 5 août 2009
Statut
Membre
Dernière intervention
3 octobre 2010
5 août 2009 à 16:10
5 août 2009 à 16:10
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Processeur Intel Pentium III Xeon )
BIOS : BIOS Date: 08/28/08 17:15:28 Ver: 08.00.12
USER : somavilla ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:74 Go (Free:44 Go)
D:\ (CD or DVD)
E:\ (USB)
F:\ (Local Disk) - NTFS - Total:232 Go (Free:185 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/08/2009|16:06 )
--------------------\\ Listing des dossiers dans APPLIC~1
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[05/08/2009|08:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[03/08/2009|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\dumb tray 16 test
[27/12/2008|23:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[03/06/2009|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[24/07/2009|00:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[24/07/2009|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[27/05/2009|15:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[27/07/2009|02:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[26/12/2008|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[23/01/2009|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[24/01/2009|21:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/12/2008|18:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[23/01/2009|20:43] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Adobe
[18/07/2009|02:02] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Apple Computer
[03/08/2009|19:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Babylon
[02/06/2009|00:50] C:\DOCUME~1\SOMAVI~1\APPLIC~1\DivX
[02/08/2009|16:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\dvdcss
[03/08/2009|19:22] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EoRezo
[18/04/2009|13:45] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EPSON
[28/07/2009|17:55] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Google
[22/12/2008|18:21] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Identities
[26/12/2008|22:36] C:\DOCUME~1\SOMAVI~1\APPLIC~1\InstallShield
[23/01/2009|21:09] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Macromedia
[26/07/2009|23:03] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Microsoft
[12/04/2009|20:11] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Mozilla
[27/07/2009|02:29] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Nero
[03/08/2009|16:40] C:\DOCUME~1\SOMAVI~1\APPLIC~1\shim less
[02/08/2009|16:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\uTorrent
[05/08/2009|12:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\vlc
[31/12/2008|18:56] C:\DOCUME~1\SOMAVI~1\APPLIC~1\WinRAR
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/08/2009 16:00][--ah-----] C:\WINDOWS\tasks\A7304B04913BFC70.job
[05/08/2009 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[04/08/2009 18:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[31/07/2009 16:16][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[04/08/2009 14:12][--ah-----] C:\WINDOWS\tasks\SA.DAT
[14/04/2008 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
( A7304B04913BFC70.job )=( c:\docume~1\somavi~1\applic~1\shimle~1\vcchicsave.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[24/07/2009|00:16] C:\Program Files\Activision
[15/02/2009|17:40] C:\Program Files\AntiSpywareExpert
[12/07/2009|00:02] C:\Program Files\Apple Software Update
[23/12/2008|19:38] C:\Program Files\ASUS
[03/08/2009|16:38] C:\Program Files\Babylon
[30/07/2009|16:31] C:\Program Files\Common Files
[22/12/2008|18:14] C:\Program Files\ComPlus Applications
[28/07/2009|12:46] C:\Program Files\Cracklock
[28/07/2009|01:33] C:\Program Files\DivX
[26/12/2008|22:38] C:\Program Files\epson
[26/12/2008|22:38] C:\Program Files\Epson Software
[27/07/2009|01:58] C:\Program Files\Fichiers communs
[03/08/2009|13:17] C:\Program Files\Google
[28/07/2009|18:24] C:\Program Files\gPotato.eu
[07/06/2009|22:04] C:\Program Files\Hercules
[23/07/2009|23:24] C:\Program Files\IMMonitor
[24/07/2009|00:50] C:\Program Files\InstallShield Installation Information
[27/12/2008|22:52] C:\Program Files\Intel
[05/08/2009|12:35] C:\Program Files\Intel Desktop Board
[30/07/2009|03:00] C:\Program Files\Internet Explorer
[27/12/2008|23:56] C:\Program Files\Logitech
[23/01/2009|21:03] C:\Program Files\Messenger
[23/07/2009|23:31] C:\Program Files\Messenger Plus! Live
[22/12/2008|18:16] C:\Program Files\microsoft frontpage
[27/05/2009|15:19] C:\Program Files\Microsoft Office
[27/05/2009|15:19] C:\Program Files\Microsoft Works
[22/12/2008|18:15] C:\Program Files\Movie Maker
[04/08/2009|22:29] C:\Program Files\Mozilla Firefox
[06/02/2009|22:16] C:\Program Files\MSN
[22/12/2008|18:13] C:\Program Files\MSN Gaming Zone
[28/07/2009|03:00] C:\Program Files\MSXML 4.0
[23/12/2008|19:39] C:\Program Files\My Company Name
[27/07/2009|02:09] C:\Program Files\Nero
[22/12/2008|18:15] C:\Program Files\NetMeeting
[22/12/2008|18:13] C:\Program Files\Online Services
[22/12/2008|18:15] C:\Program Files\Outlook Express
[12/07/2009|00:03] C:\Program Files\QuickTime
[27/12/2008|22:58] C:\Program Files\Realtek
[22/12/2008|18:15] C:\Program Files\Services en ligne
[23/01/2009|20:47] C:\Program Files\SFR
[03/08/2009|16:39] C:\Program Files\shim less
[05/08/2009|14:01] C:\Program Files\Steam
[05/08/2009|15:22] C:\Program Files\Trend Micro
[22/12/2008|18:21] C:\Program Files\Uninstall Information
[17/06/2009|18:07] C:\Program Files\VIA
[26/07/2009|21:08] C:\Program Files\VideoLAN
[24/01/2009|22:17] C:\Program Files\Webcam 1200
[24/01/2009|21:50] C:\Program Files\Windows Live
[22/12/2008|18:16] C:\Program Files\Windows Media Player
[22/12/2008|18:13] C:\Program Files\Windows NT
[27/07/2009|02:10] C:\Program Files\Windows Sidebar
[22/12/2008|18:15] C:\Program Files\WindowsUpdate
[23/07/2009|23:24] C:\Program Files\WinPcap
[31/12/2008|18:56] C:\Program Files\WinRAR
[03/08/2009|16:39] C:\Program Files\WinZix
[22/12/2008|18:16] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/01/2009|22:13] C:\Program Files\Fichiers communs\ArcSoft
[27/05/2009|15:19] C:\Program Files\Fichiers communs\DESIGNER
[01/06/2009|23:51] C:\Program Files\Fichiers communs\DivX Shared
[26/12/2008|22:38] C:\Program Files\Fichiers communs\InstallShield
[27/07/2009|01:57] C:\Program Files\Fichiers communs\Microsoft Shared
[22/12/2008|18:15] C:\Program Files\Fichiers communs\MSSoap
[27/07/2009|02:04] C:\Program Files\Fichiers communs\Nero
[23/12/2008|02:07] C:\Program Files\Fichiers communs\ODBC
[22/12/2008|18:15] C:\Program Files\Fichiers communs\Services
[28/12/2008|00:00] C:\Program Files\Fichiers communs\SNP2UVC
[23/12/2008|02:07] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2008|18:14] C:\Program Files\Fichiers communs\System
[24/01/2009|21:50] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 52 Processes )
IEXPLORE.EXE ~ [PID:1344]
IEXPLORE.EXE ~ [PID:532]
iexplore.exe ~ [PID:2600]
iexplore.exe ~ [PID:600]
iexplore.exe ~ [PID:2124]
iexplore.exe ~ [PID:5244]
IEXPLORE.EXE ~ [PID:5284]
IEXPLORE.EXE ~ [PID:5960]
--------------------\\ Recherche avec S_Lop
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\bisF8.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\vc chic save.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\vc chic save.exe
C:\Program Files\shimle~1
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\WinZix.zip
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\minime.exe
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\HtmlControl.dll
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsd159.tmp
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsg292.tmp
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\HomePage.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\Uninstall.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\WinZix.lnk
C:\Program Files\WinZix
C:\Program Files\WinZix\Flexi.skf
C:\Program Files\WinZix\search_error.htm
C:\Program Files\WinZix\SkinCrafterDll.dll
C:\Program Files\WinZix\support_error.htm
C:\Program Files\WinZix\t_bg.jpg
C:\Program Files\WinZix\winzix.exe
C:\Program Files\WinZix\WinZix.url
C:\Program Files\WinZix\WinZixManager.dll
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertstream[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.adserver5[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adultfriendfinder[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@ero-advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@serve.cotedazurpalace[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adopt.euroclick[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@pacificpoker[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@partypoker[2].txt
C:\WINDOWS\Tasks\A7304B04913BFC70.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\skip balm stop]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-08-05 16:07:01
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 3
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\PROGRA~1\AntiSpywareExpert
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock Manager.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock website.url
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Documentation.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Uninstall Cracklock.lnk
[F:2178][D:161]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp
[F:992][D:0]-> C:\DOCUME~1\SOMAVI~1\Cookies
[F:8214][D:12]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/08/2009|15:57 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 05/08/2009|16:08 - Option : [1]
--------------------\\ Fin du rapport a 16:08:52
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Processeur Intel Pentium III Xeon )
BIOS : BIOS Date: 08/28/08 17:15:28 Ver: 08.00.12
USER : somavilla ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:74 Go (Free:44 Go)
D:\ (CD or DVD)
E:\ (USB)
F:\ (Local Disk) - NTFS - Total:232 Go (Free:185 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/08/2009|16:06 )
--------------------\\ Listing des dossiers dans APPLIC~1
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[12/07/2009|00:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[05/08/2009|08:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[03/08/2009|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\dumb tray 16 test
[27/12/2008|23:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[03/06/2009|18:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[24/07/2009|00:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[24/07/2009|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[27/05/2009|15:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[27/07/2009|02:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[26/12/2008|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[23/01/2009|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[24/01/2009|21:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/12/2008|18:16] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2008|18:16] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[23/01/2009|20:43] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Adobe
[18/07/2009|02:02] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Apple Computer
[03/08/2009|19:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Babylon
[02/06/2009|00:50] C:\DOCUME~1\SOMAVI~1\APPLIC~1\DivX
[02/08/2009|16:24] C:\DOCUME~1\SOMAVI~1\APPLIC~1\dvdcss
[03/08/2009|19:22] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EoRezo
[18/04/2009|13:45] C:\DOCUME~1\SOMAVI~1\APPLIC~1\EPSON
[28/07/2009|17:55] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Google
[22/12/2008|18:21] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Identities
[26/12/2008|22:36] C:\DOCUME~1\SOMAVI~1\APPLIC~1\InstallShield
[23/01/2009|21:09] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Macromedia
[26/07/2009|23:03] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Microsoft
[12/04/2009|20:11] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Mozilla
[27/07/2009|02:29] C:\DOCUME~1\SOMAVI~1\APPLIC~1\Nero
[03/08/2009|16:40] C:\DOCUME~1\SOMAVI~1\APPLIC~1\shim less
[02/08/2009|16:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\uTorrent
[05/08/2009|12:05] C:\DOCUME~1\SOMAVI~1\APPLIC~1\vlc
[31/12/2008|18:56] C:\DOCUME~1\SOMAVI~1\APPLIC~1\WinRAR
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/08/2009 16:00][--ah-----] C:\WINDOWS\tasks\A7304B04913BFC70.job
[05/08/2009 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[04/08/2009 18:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[31/07/2009 16:16][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[04/08/2009 14:12][--ah-----] C:\WINDOWS\tasks\SA.DAT
[14/04/2008 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
( A7304B04913BFC70.job )=( c:\docume~1\somavi~1\applic~1\shimle~1\vcchicsave.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[24/07/2009|00:16] C:\Program Files\Activision
[15/02/2009|17:40] C:\Program Files\AntiSpywareExpert
[12/07/2009|00:02] C:\Program Files\Apple Software Update
[23/12/2008|19:38] C:\Program Files\ASUS
[03/08/2009|16:38] C:\Program Files\Babylon
[30/07/2009|16:31] C:\Program Files\Common Files
[22/12/2008|18:14] C:\Program Files\ComPlus Applications
[28/07/2009|12:46] C:\Program Files\Cracklock
[28/07/2009|01:33] C:\Program Files\DivX
[26/12/2008|22:38] C:\Program Files\epson
[26/12/2008|22:38] C:\Program Files\Epson Software
[27/07/2009|01:58] C:\Program Files\Fichiers communs
[03/08/2009|13:17] C:\Program Files\Google
[28/07/2009|18:24] C:\Program Files\gPotato.eu
[07/06/2009|22:04] C:\Program Files\Hercules
[23/07/2009|23:24] C:\Program Files\IMMonitor
[24/07/2009|00:50] C:\Program Files\InstallShield Installation Information
[27/12/2008|22:52] C:\Program Files\Intel
[05/08/2009|12:35] C:\Program Files\Intel Desktop Board
[30/07/2009|03:00] C:\Program Files\Internet Explorer
[27/12/2008|23:56] C:\Program Files\Logitech
[23/01/2009|21:03] C:\Program Files\Messenger
[23/07/2009|23:31] C:\Program Files\Messenger Plus! Live
[22/12/2008|18:16] C:\Program Files\microsoft frontpage
[27/05/2009|15:19] C:\Program Files\Microsoft Office
[27/05/2009|15:19] C:\Program Files\Microsoft Works
[22/12/2008|18:15] C:\Program Files\Movie Maker
[04/08/2009|22:29] C:\Program Files\Mozilla Firefox
[06/02/2009|22:16] C:\Program Files\MSN
[22/12/2008|18:13] C:\Program Files\MSN Gaming Zone
[28/07/2009|03:00] C:\Program Files\MSXML 4.0
[23/12/2008|19:39] C:\Program Files\My Company Name
[27/07/2009|02:09] C:\Program Files\Nero
[22/12/2008|18:15] C:\Program Files\NetMeeting
[22/12/2008|18:13] C:\Program Files\Online Services
[22/12/2008|18:15] C:\Program Files\Outlook Express
[12/07/2009|00:03] C:\Program Files\QuickTime
[27/12/2008|22:58] C:\Program Files\Realtek
[22/12/2008|18:15] C:\Program Files\Services en ligne
[23/01/2009|20:47] C:\Program Files\SFR
[03/08/2009|16:39] C:\Program Files\shim less
[05/08/2009|14:01] C:\Program Files\Steam
[05/08/2009|15:22] C:\Program Files\Trend Micro
[22/12/2008|18:21] C:\Program Files\Uninstall Information
[17/06/2009|18:07] C:\Program Files\VIA
[26/07/2009|21:08] C:\Program Files\VideoLAN
[24/01/2009|22:17] C:\Program Files\Webcam 1200
[24/01/2009|21:50] C:\Program Files\Windows Live
[22/12/2008|18:16] C:\Program Files\Windows Media Player
[22/12/2008|18:13] C:\Program Files\Windows NT
[27/07/2009|02:10] C:\Program Files\Windows Sidebar
[22/12/2008|18:15] C:\Program Files\WindowsUpdate
[23/07/2009|23:24] C:\Program Files\WinPcap
[31/12/2008|18:56] C:\Program Files\WinRAR
[03/08/2009|16:39] C:\Program Files\WinZix
[22/12/2008|18:16] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/01/2009|22:13] C:\Program Files\Fichiers communs\ArcSoft
[27/05/2009|15:19] C:\Program Files\Fichiers communs\DESIGNER
[01/06/2009|23:51] C:\Program Files\Fichiers communs\DivX Shared
[26/12/2008|22:38] C:\Program Files\Fichiers communs\InstallShield
[27/07/2009|01:57] C:\Program Files\Fichiers communs\Microsoft Shared
[22/12/2008|18:15] C:\Program Files\Fichiers communs\MSSoap
[27/07/2009|02:04] C:\Program Files\Fichiers communs\Nero
[23/12/2008|02:07] C:\Program Files\Fichiers communs\ODBC
[22/12/2008|18:15] C:\Program Files\Fichiers communs\Services
[28/12/2008|00:00] C:\Program Files\Fichiers communs\SNP2UVC
[23/12/2008|02:07] C:\Program Files\Fichiers communs\SpeechEngines
[22/12/2008|18:14] C:\Program Files\Fichiers communs\System
[24/01/2009|21:50] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 52 Processes )
IEXPLORE.EXE ~ [PID:1344]
IEXPLORE.EXE ~ [PID:532]
iexplore.exe ~ [PID:2600]
iexplore.exe ~ [PID:600]
iexplore.exe ~ [PID:2124]
iexplore.exe ~ [PID:5244]
IEXPLORE.EXE ~ [PID:5284]
IEXPLORE.EXE ~ [PID:5960]
--------------------\\ Recherche avec S_Lop
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\bisF8.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\SHIMLE~1\vc chic save.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\love pure win.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\staydzee.exe
C:\DOCUME~1\SOMAVI~1\APPLIC~1\shimle~1\vc chic save.exe
C:\Program Files\shimle~1
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\WinZix.zip
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\minime.exe
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\HtmlControl.dll
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsd159.tmp
C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp\nsg292.tmp
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\HomePage.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\Uninstall.lnk
C:\DOCUME~1\SOMAVI~1\MENUDM~1\PROGRA~1\WinZix\WinZix.lnk
C:\Program Files\WinZix
C:\Program Files\WinZix\Flexi.skf
C:\Program Files\WinZix\search_error.htm
C:\Program Files\WinZix\SkinCrafterDll.dll
C:\Program Files\WinZix\support_error.htm
C:\Program Files\WinZix\t_bg.jpg
C:\Program Files\WinZix\winzix.exe
C:\Program Files\WinZix\WinZix.url
C:\Program Files\WinZix\WinZixManager.dll
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertstream[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.adserver5[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adultfriendfinder[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@ero-advertising[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@serve.cotedazurpalace[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@www.cotedazurpalace[2].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@adopt.euroclick[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@pacificpoker[1].txt
C:\DOCUME~1\SOMAVI~1\Cookies\somavilla@partypoker[2].txt
C:\WINDOWS\Tasks\A7304B04913BFC70.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\skip balm stop]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
"way bash"="C:\\DOCUME~1\\SOMAVI~1\\APPLIC~1\\SHIMLE~1\\love pure win.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-08-05 16:07:01
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 3
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\PROGRA~1\AntiSpywareExpert
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock Manager.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Cracklock website.url
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Documentation.lnk
C:\DOCUME~1\ALLUSE~1\Menu D‚marrer\Programmes\Cracklock\Uninstall Cracklock.lnk
[F:2178][D:161]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\Temp
[F:992][D:0]-> C:\DOCUME~1\SOMAVI~1\Cookies
[F:8214][D:12]-> C:\DOCUME~1\SOMAVI~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/08/2009|15:57 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 05/08/2009|16:08 - Option : [1]
--------------------\\ Fin du rapport a 16:08:52
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question