Ordi infecté pub/virus

beberdu09 Messages postés 24 Statut Membre -  
Xplode Messages postés 9212 Statut Contributeur sécurité -
Bonjour,
donc voila depuis 3jours je n'arrete aps de recevoir des pubs CID et cela fait bug mon ordi. En effet en fermant une de celle-ci hier mon ordi a redémarrer tout seul. Donc j'ai suivi la méthode proposée par Kristopher https://www.commentcamarche.net/faq/2490-supprimer-les-adwares-publicites-intempestives-pop-up-etc
voici les rapports de la première étape: C:\rsit\info.txt et C:\rsit\log.txt aidez mois pliz
A voir également:

7 réponses

Xplode Messages postés 9212 Statut Contributeur sécurité 726
 
Salut,

-+-+-+-> Lop S&D <-+-+-+-

[x] Télécharge Lop S&D ( de Eric_71 & Angeldark )

/!\ Désactive tes protections résidentes : Antivirus, antispywares, Pare-Feu /!\

[x] Double clique sur " LopSD.exe " ( Vista : Clique droit -> Executer en tant qu'administrateur )

[x] Choisis l'option F pour français

[x] Ensuite, Choisis l'option n°1 ( Recherche )

[x] Laisse l'outil travailler.

[x] Copie/Colle le contenu du rapport qui s'ouvrira et poste le dans ton prochain message.
0
beberdu09 Messages postés 24 Statut Membre
 
voila:

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Basique ( v6.0.6000 )
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : BeBer ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Not Activated)
C:\ (Local Disk) - NTFS - Total:138 Go (Free:84 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:6 Go)
E:\ (CD or DVD)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/11/2009|12:08 )

[ UAC => 1 ]

--------------------\\ Listing des dossiers dans Local

[27/10/2009|12:00] C:\Users\BeBer\AppData\Local\Adobe
[28/12/2008|10:27] C:\Users\BeBer\AppData\Local\Apple
[31/10/2009|19:03] C:\Users\BeBer\AppData\Local\Apple Computer
[19/09/2009|14:51] C:\Users\BeBer\AppData\Local\Apple_Inc
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Application Data
[12/02/2009|12:54] C:\Users\BeBer\AppData\Local\Autodesk
[23/04/2009|11:53] C:\Users\BeBer\AppData\Local\d3d9caps.dat
[07/10/2009|13:46] C:\Users\BeBer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[11/09/2009|15:19] C:\Users\BeBer\AppData\Local\GDIPFONTCACHEV1.DAT
[17/12/2007|12:13] C:\Users\BeBer\AppData\Local\Google
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Historique
[03/11/2009|22:50] C:\Users\BeBer\AppData\Local\IconCache.db
[10/01/2009|20:45] C:\Users\BeBer\AppData\Local\Macromedia
[22/09/2009|17:02] C:\Users\BeBer\AppData\Local\Microsoft
[02/10/2008|12:08] C:\Users\BeBer\AppData\Local\Microsoft Games
[17/12/2008|15:31] C:\Users\BeBer\AppData\Local\PowerDVD DX
[27/01/2008|18:42] C:\Users\BeBer\AppData\Local\SupportSoft
[04/11/2009|12:02] C:\Users\BeBer\AppData\Local\Temp
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Temporary Internet Files
[11/03/2008|13:08] C:\Users\BeBer\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[05/12/2007 21:30][--a------] C:\Windows\tasks\McDefragTask.job
[01/04/2009 00:00][--a------] C:\Windows\tasks\McQcTask.job
[04/11/2009 08:31][--ah-----] C:\Windows\tasks\SA.DAT
[03/11/2009 22:51][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[16/03/2009|13:31] C:\ProgramData\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[15/09/2009|17:02] C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[19/07/2009|12:48] C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[27/10/2009|12:00] C:\ProgramData\Adobe
[26/07/2009|11:35] C:\ProgramData\Apple
[28/12/2008|11:36] C:\ProgramData\Apple Computer
[17/12/2007|11:54] C:\ProgramData\Application Data
[09/04/2009|13:55] C:\ProgramData\Autodesk
[10/01/2009|22:30] C:\ProgramData\Blender Foundation
[17/12/2007|11:54] C:\ProgramData\Bureau
[17/12/2008|15:30] C:\ProgramData\CyberLink
[05/12/2007|21:21] C:\ProgramData\Dell
[17/12/2007|11:54] C:\ProgramData\Documents
[03/11/2009|12:01] C:\ProgramData\Dvd Plan
[28/06/2008|18:42] C:\ProgramData\eMule
[17/12/2007|11:54] C:\ProgramData\Favoris
[19/01/2009|16:26] C:\ProgramData\FLEXnet
[03/11/2009|12:01] C:\ProgramData\Ford Eggs Seek.ekmapll
[17/12/2007|12:10] C:\ProgramData\Google
[12/02/2009|21:10] C:\ProgramData\Grid Seek One.lccrv3
[05/12/2007|21:17] C:\ProgramData\InstallShield
[26/12/2008|13:51] C:\ProgramData\Log ball title.u2jyot0
[13/08/2009|19:27] C:\ProgramData\ma-config.com
[12/02/2009|09:31] C:\ProgramData\Macromedia
[16/04/2009|12:02] C:\ProgramData\McAfee
[10/01/2009|22:56] C:\ProgramData\McNeel
[17/12/2007|11:54] C:\ProgramData\Menu D‚marrer
[09/02/2009|12:28] C:\ProgramData\Messenger Plus!
[22/09/2009|17:02] C:\ProgramData\Microsoft
[03/11/2009|12:01] C:\ProgramData\Mix Logo Logo.050du
[12/02/2009|21:09] C:\ProgramData\Mix Logo Logo.3u04nju
[02/11/2009|12:35] C:\ProgramData\Mix Logo Logo.4gdnqk
[30/04/2008|19:20] C:\ProgramData\Mix Logo Logo.8g3pbk
[26/12/2008|13:51] C:\ProgramData\Mix Logo Logo.athua9
[18/02/2008|14:39] C:\ProgramData\Mix Logo Logo.euupox
[02/07/2008|23:20] C:\ProgramData\Mix Logo Logo.ieykr
[31/03/2008|16:15] C:\ProgramData\Mix Logo Logo.jw0b4
[03/11/2009|12:01] C:\ProgramData\Mix Logo Logo.nxe6q5
[12/02/2009|21:09] C:\ProgramData\Mix Logo Logo.q1q58
[28/05/2008|16:56] C:\ProgramData\Mix Logo Logo.u57vk
[17/12/2007|11:54] C:\ProgramData\ModŠles
[20/09/2009|08:54] C:\ProgramData\NOS
[03/11/2009|12:01] C:\ProgramData\Part Hide Grey Pop
[22/04/2009|15:51] C:\ProgramData\Roxio
[05/12/2007|21:20] C:\ProgramData\Sonic
[05/12/2007|21:27] C:\ProgramData\SupportSoft
[04/02/2009|21:10] C:\ProgramData\TEMP
[03/01/2008|15:09] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[27/10/2009|09:49] C:\Program Files\Adobe
[26/12/2008|12:58] C:\Program Files\Apple Software Update
[16/03/2009|13:25] C:\Program Files\Bonjour
[28/01/2009|12:41] C:\Program Files\Cabos
[02/11/2009|12:34] C:\Program Files\Circle Developement
[28/10/2009|16:03] C:\Program Files\Common Files
[05/12/2007|21:21] C:\Program Files\CyberLink
[05/12/2007|21:29] C:\Program Files\Dell
[05/12/2007|21:27] C:\Program Files\Dell Support Center
[29/09/2009|17:04] C:\Program Files\Dofus
[28/02/2008|13:44] C:\Program Files\epson
[17/12/2007|11:54] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[29/12/2007|17:24] C:\Program Files\Google
[13/08/2009|20:37] C:\Program Files\InstallShield Installation Information
[13/08/2009|21:21] C:\Program Files\Intel
[17/10/2009|07:28] C:\Program Files\Internet Explorer
[31/10/2009|18:17] C:\Program Files\iPod
[24/03/2008|18:47] C:\Program Files\ItsLabel
[31/10/2009|18:19] C:\Program Files\iTunes
[09/09/2009|21:08] C:\Program Files\Java
[12/02/2009|09:37] C:\Program Files\Macromedia
[22/04/2009|11:32] C:\Program Files\McAfee
[05/12/2007|21:21] C:\Program Files\McAfee.com
[02/11/2009|12:34] C:\Program Files\Messenger Plus! Live
[22/07/2009|21:11] C:\Program Files\Micro Application
[31/01/2009|13:12] C:\Program Files\Microsoft Games
[05/12/2007|21:16] C:\Program Files\Microsoft Office
[16/10/2009|22:07] C:\Program Files\Microsoft Works
[02/11/2006|13:40] C:\Program Files\Movie Maker
[02/11/2006|13:35] C:\Program Files\MSBuild
[02/11/2006|13:35] C:\Program Files\MSN
[10/09/2009|16:26] C:\Program Files\OpenOffice.org 3
[10/07/2009|19:26] C:\Program Files\OrangeHSS
[15/09/2009|16:58] C:\Program Files\QuickTime
[30/12/2008|23:54] C:\Program Files\Red Kawa
[02/11/2006|13:35] C:\Program Files\Reference Assemblies
[05/12/2007|21:20] C:\Program Files\Roxio
[19/09/2009|16:25] C:\Program Files\Safari
[10/07/2009|19:20] C:\Program Files\Securitoo
[28/02/2008|13:44] C:\Program Files\Smart Panel
[13/09/2009|14:38] C:\Program Files\StuffPlug3
[04/11/2009|11:44] C:\Program Files\trend micro
[02/11/2006|13:58] C:\Program Files\Uninstall Information
[15/09/2009|17:04] C:\Program Files\Utilitaire de configuration iPhone
[06/12/2007|04:52] C:\Program Files\Windows Calendar
[02/11/2006|13:40] C:\Program Files\Windows Collaboration
[06/12/2007|04:49] C:\Program Files\Windows Defender
[03/01/2008|15:19] C:\Program Files\Windows Live
[17/10/2009|07:28] C:\Program Files\Windows Mail
[28/10/2009|16:37] C:\Program Files\Windows Media Player
[11/10/2009|08:37] C:\Program Files\Windows Mobile Device Handbook
[17/12/2007|11:54] C:\Program Files\Windows NT
[02/11/2006|13:40] C:\Program Files\Windows Photo Gallery
[10/01/2008|19:58] C:\Program Files\Windows Sidebar

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[27/10/2009|09:47] C:\Program Files\Common Files\Adobe
[28/10/2009|16:03] C:\Program Files\Common Files\Adobe AIR
[31/10/2009|18:17] C:\Program Files\Common Files\Apple
[10/07/2009|19:16] C:\Program Files\Common Files\France Telecom
[05/12/2007|21:21] C:\Program Files\Common Files\InstallShield
[05/12/2007|21:14] C:\Program Files\Common Files\Java
[12/02/2009|09:31] C:\Program Files\Common Files\Macromedia
[27/10/2009|09:36] C:\Program Files\Common Files\Macrovision Shared
[10/04/2009|09:25] C:\Program Files\Common Files\McAfee
[05/03/2009|21:53] C:\Program Files\Common Files\microsoft shared
[05/12/2007|21:17] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[05/12/2007|21:20] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[05/12/2007|21:27] C:\Program Files\Common Files\supportsoft
[05/12/2007|21:17] C:\Program Files\Common Files\SureThing Shared
[06/12/2007|04:56] C:\Program Files\Common Files\System
[02/01/2009|21:33] C:\Program Files\Common Files\Updates
[03/01/2008|15:18] C:\Program Files\Common Files\WindowsLiveInstaller
[13/08/2009|20:42] C:\Program Files\Common Files\Wise Installation Wizard

--------------------\\ Process

( 68 Processes )

iexplore.exe ~ [PID:4060]
iexplore.exe ~ [PID:4068]
iexplore.exe ~ [PID:4392]

--------------------\\ Recherche avec S_Lop

C:\ProgramData\Mix Logo Logo.050du
C:\ProgramData\Mix Logo Logo.ieykr
C:\ProgramData\Mix Logo Logo.jw0b4
C:\ProgramData\Mix Logo Logo.q1q58
C:\ProgramData\Mix Logo Logo.u57vk
C:\ProgramData\Grid Seek One.lccrv3
C:\ProgramData\Mix Logo Logo.4gdnqk
C:\ProgramData\Mix Logo Logo.8g3pbk
C:\ProgramData\Mix Logo Logo.athua9
C:\ProgramData\Mix Logo Logo.euupox
C:\ProgramData\Mix Logo Logo.nxe6q5
C:\ProgramData\Ford Eggs Seek.ekmapll
C:\ProgramData\Log ball title.u2jyot0
C:\ProgramData\Mix Logo Logo.3u04nju
C:\Users\BeBer\AppData\Local\Temp\bisE6BA.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\ProgramData\Part Hide Grey Pop
C:\ProgramData\Part Hide Grey Pop\Bags Bend.dat
C:\ProgramData\Part Hide Grey Pop\Bags Bend.exe
C:\ProgramData\Part Hide Grey Pop\DASH FUNK.dat
C:\Users\BeBer\AppData\Local\Temp\msgpl_1452.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_b34e.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_d03c.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_fbf8.tmp
C:\Users\BeBer\AppData\Local\Temp\nsi4168.tmp
C:\Users\BeBer\AppData\Local\Temp\nsi49F1.tmp
C:\Users\BeBer\AppData\Local\Temp\nsk8A80.tmp
C:\Users\BeBer\AppData\Local\Temp\nsl817.tmp
C:\Users\BeBer\AppData\Local\Temp\nslE582.tmp
C:\Users\BeBer\AppData\Local\Temp\nsm685A.tmp
C:\Users\BeBer\AppData\Local\Temp\nsy4F4A.tmp
C:\Users\BeBer\AppData\Local\Temp\sta9FA8.exe
C:\Users\BeBer\AppData\Local\Temp\staF24C.exe
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"inside joy"="\"C:\\ProgramData\\Mix Logo Logo.nxe6q5\""
"Grey pop cake audio"="\"C:\\ProgramData\\Ford Eggs Seek.ekmapll\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-04 12:08:51
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 89

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

[F:2493][D:131]-> C:\Users\BeBer\AppData\Local\Temp
[F:177][D:1]-> C:\Users\BeBer\AppData\Roaming\MICROS~1\Windows\Cookies
[F:156][D:7]-> C:\Users\BeBer\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:40][D:167]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 04/11/2009|12:11 - Option : [1]

--------------------\\ Fin du rapport a 12:11:30
[ UAC => 1 ]
0
Xplode Messages postés 9212 Statut Contributeur sécurité 726
 
-+-+-+-> Lop S&D ( Suppression ) <-+-+-+-

[x] Relance Lop S&D mais choisis cette fois l'option n°2

[x] Laisse le scan s'opérer, puis copie/colle le rapport qui s'ouvrira dans ton prochain message.

-+-+-+-> ZHPDiag <-+-+-+-

[x] Télécharge ZHPDiag ( de Nicolas coolman ).

[x] Double clique sur le fichier d'installation, puis installe le avec les paramètres par défaut ( N'oublie pas de cocher " Créer une icône sur le bureau " )

[x] Lance ZHPDiag en double cliquant sur l'icône présente sur ton bureau

[x] Clique sur la loupe en haut à gauche, puis laisse l'outil scanner.

[x] Une fois le scan terminé, clique sur l'icône en forme de disquette et enregistre le fichier sur ton bureau.

[x] Rend toi sur Cjoint

[x] Clique sur " Parcourir " dans la partie " Joindre un fichier[...] "

[x] Séléctionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

[x] Clique ensuite sur " Créer le lien cjoint " et copie/colle le dans ton prochain message
0
beberdu09 Messages postés 24 Statut Membre
 
--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Basique ( v6.0.6000 )
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : BeBer ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Not Activated)
C:\ (Local Disk) - NTFS - Total:138 Go (Free:84 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:6 Go)
E:\ (CD or DVD)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/11/2009|12:08 )

[ UAC => 1 ]

--------------------\\ Listing des dossiers dans Local

[27/10/2009|12:00] C:\Users\BeBer\AppData\Local\Adobe
[28/12/2008|10:27] C:\Users\BeBer\AppData\Local\Apple
[31/10/2009|19:03] C:\Users\BeBer\AppData\Local\Apple Computer
[19/09/2009|14:51] C:\Users\BeBer\AppData\Local\Apple_Inc
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Application Data
[12/02/2009|12:54] C:\Users\BeBer\AppData\Local\Autodesk
[23/04/2009|11:53] C:\Users\BeBer\AppData\Local\d3d9caps.dat
[07/10/2009|13:46] C:\Users\BeBer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[11/09/2009|15:19] C:\Users\BeBer\AppData\Local\GDIPFONTCACHEV1.DAT
[17/12/2007|12:13] C:\Users\BeBer\AppData\Local\Google
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Historique
[03/11/2009|22:50] C:\Users\BeBer\AppData\Local\IconCache.db
[10/01/2009|20:45] C:\Users\BeBer\AppData\Local\Macromedia
[22/09/2009|17:02] C:\Users\BeBer\AppData\Local\Microsoft
[02/10/2008|12:08] C:\Users\BeBer\AppData\Local\Microsoft Games
[17/12/2008|15:31] C:\Users\BeBer\AppData\Local\PowerDVD DX
[27/01/2008|18:42] C:\Users\BeBer\AppData\Local\SupportSoft
[04/11/2009|12:02] C:\Users\BeBer\AppData\Local\Temp
[17/12/2007|12:12] C:\Users\BeBer\AppData\Local\Temporary Internet Files
[11/03/2008|13:08] C:\Users\BeBer\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[05/12/2007 21:30][--a------] C:\Windows\tasks\McDefragTask.job
[01/04/2009 00:00][--a------] C:\Windows\tasks\McQcTask.job
[04/11/2009 08:31][--ah-----] C:\Windows\tasks\SA.DAT
[03/11/2009 22:51][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[16/03/2009|13:31] C:\ProgramData\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
[15/09/2009|17:02] C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[19/07/2009|12:48] C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[27/10/2009|12:00] C:\ProgramData\Adobe
[26/07/2009|11:35] C:\ProgramData\Apple
[28/12/2008|11:36] C:\ProgramData\Apple Computer
[17/12/2007|11:54] C:\ProgramData\Application Data
[09/04/2009|13:55] C:\ProgramData\Autodesk
[10/01/2009|22:30] C:\ProgramData\Blender Foundation
[17/12/2007|11:54] C:\ProgramData\Bureau
[17/12/2008|15:30] C:\ProgramData\CyberLink
[05/12/2007|21:21] C:\ProgramData\Dell
[17/12/2007|11:54] C:\ProgramData\Documents
[03/11/2009|12:01] C:\ProgramData\Dvd Plan
[28/06/2008|18:42] C:\ProgramData\eMule
[17/12/2007|11:54] C:\ProgramData\Favoris
[19/01/2009|16:26] C:\ProgramData\FLEXnet
[03/11/2009|12:01] C:\ProgramData\Ford Eggs Seek.ekmapll
[17/12/2007|12:10] C:\ProgramData\Google
[12/02/2009|21:10] C:\ProgramData\Grid Seek One.lccrv3
[05/12/2007|21:17] C:\ProgramData\InstallShield
[26/12/2008|13:51] C:\ProgramData\Log ball title.u2jyot0
[13/08/2009|19:27] C:\ProgramData\ma-config.com
[12/02/2009|09:31] C:\ProgramData\Macromedia
[16/04/2009|12:02] C:\ProgramData\McAfee
[10/01/2009|22:56] C:\ProgramData\McNeel
[17/12/2007|11:54] C:\ProgramData\Menu D‚marrer
[09/02/2009|12:28] C:\ProgramData\Messenger Plus!
[22/09/2009|17:02] C:\ProgramData\Microsoft
[03/11/2009|12:01] C:\ProgramData\Mix Logo Logo.050du
[12/02/2009|21:09] C:\ProgramData\Mix Logo Logo.3u04nju
[02/11/2009|12:35] C:\ProgramData\Mix Logo Logo.4gdnqk
[30/04/2008|19:20] C:\ProgramData\Mix Logo Logo.8g3pbk
[26/12/2008|13:51] C:\ProgramData\Mix Logo Logo.athua9
[18/02/2008|14:39] C:\ProgramData\Mix Logo Logo.euupox
[02/07/2008|23:20] C:\ProgramData\Mix Logo Logo.ieykr
[31/03/2008|16:15] C:\ProgramData\Mix Logo Logo.jw0b4
[03/11/2009|12:01] C:\ProgramData\Mix Logo Logo.nxe6q5
[12/02/2009|21:09] C:\ProgramData\Mix Logo Logo.q1q58
[28/05/2008|16:56] C:\ProgramData\Mix Logo Logo.u57vk
[17/12/2007|11:54] C:\ProgramData\ModŠles
[20/09/2009|08:54] C:\ProgramData\NOS
[03/11/2009|12:01] C:\ProgramData\Part Hide Grey Pop
[22/04/2009|15:51] C:\ProgramData\Roxio
[05/12/2007|21:20] C:\ProgramData\Sonic
[05/12/2007|21:27] C:\ProgramData\SupportSoft
[04/02/2009|21:10] C:\ProgramData\TEMP
[03/01/2008|15:09] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[27/10/2009|09:49] C:\Program Files\Adobe
[26/12/2008|12:58] C:\Program Files\Apple Software Update
[16/03/2009|13:25] C:\Program Files\Bonjour
[28/01/2009|12:41] C:\Program Files\Cabos
[02/11/2009|12:34] C:\Program Files\Circle Developement
[28/10/2009|16:03] C:\Program Files\Common Files
[05/12/2007|21:21] C:\Program Files\CyberLink
[05/12/2007|21:29] C:\Program Files\Dell
[05/12/2007|21:27] C:\Program Files\Dell Support Center
[29/09/2009|17:04] C:\Program Files\Dofus
[28/02/2008|13:44] C:\Program Files\epson
[17/12/2007|11:54] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[29/12/2007|17:24] C:\Program Files\Google
[13/08/2009|20:37] C:\Program Files\InstallShield Installation Information
[13/08/2009|21:21] C:\Program Files\Intel
[17/10/2009|07:28] C:\Program Files\Internet Explorer
[31/10/2009|18:17] C:\Program Files\iPod
[24/03/2008|18:47] C:\Program Files\ItsLabel
[31/10/2009|18:19] C:\Program Files\iTunes
[09/09/2009|21:08] C:\Program Files\Java
[12/02/2009|09:37] C:\Program Files\Macromedia
[22/04/2009|11:32] C:\Program Files\McAfee
[05/12/2007|21:21] C:\Program Files\McAfee.com
[02/11/2009|12:34] C:\Program Files\Messenger Plus! Live
[22/07/2009|21:11] C:\Program Files\Micro Application
[31/01/2009|13:12] C:\Program Files\Microsoft Games
[05/12/2007|21:16] C:\Program Files\Microsoft Office
[16/10/2009|22:07] C:\Program Files\Microsoft Works
[02/11/2006|13:40] C:\Program Files\Movie Maker
[02/11/2006|13:35] C:\Program Files\MSBuild
[02/11/2006|13:35] C:\Program Files\MSN
[10/09/2009|16:26] C:\Program Files\OpenOffice.org 3
[10/07/2009|19:26] C:\Program Files\OrangeHSS
[15/09/2009|16:58] C:\Program Files\QuickTime
[30/12/2008|23:54] C:\Program Files\Red Kawa
[02/11/2006|13:35] C:\Program Files\Reference Assemblies
[05/12/2007|21:20] C:\Program Files\Roxio
[19/09/2009|16:25] C:\Program Files\Safari
[10/07/2009|19:20] C:\Program Files\Securitoo
[28/02/2008|13:44] C:\Program Files\Smart Panel
[13/09/2009|14:38] C:\Program Files\StuffPlug3
[04/11/2009|11:44] C:\Program Files\trend micro
[02/11/2006|13:58] C:\Program Files\Uninstall Information
[15/09/2009|17:04] C:\Program Files\Utilitaire de configuration iPhone
[06/12/2007|04:52] C:\Program Files\Windows Calendar
[02/11/2006|13:40] C:\Program Files\Windows Collaboration
[06/12/2007|04:49] C:\Program Files\Windows Defender
[03/01/2008|15:19] C:\Program Files\Windows Live
[17/10/2009|07:28] C:\Program Files\Windows Mail
[28/10/2009|16:37] C:\Program Files\Windows Media Player
[11/10/2009|08:37] C:\Program Files\Windows Mobile Device Handbook
[17/12/2007|11:54] C:\Program Files\Windows NT
[02/11/2006|13:40] C:\Program Files\Windows Photo Gallery
[10/01/2008|19:58] C:\Program Files\Windows Sidebar

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[27/10/2009|09:47] C:\Program Files\Common Files\Adobe
[28/10/2009|16:03] C:\Program Files\Common Files\Adobe AIR
[31/10/2009|18:17] C:\Program Files\Common Files\Apple
[10/07/2009|19:16] C:\Program Files\Common Files\France Telecom
[05/12/2007|21:21] C:\Program Files\Common Files\InstallShield
[05/12/2007|21:14] C:\Program Files\Common Files\Java
[12/02/2009|09:31] C:\Program Files\Common Files\Macromedia
[27/10/2009|09:36] C:\Program Files\Common Files\Macrovision Shared
[10/04/2009|09:25] C:\Program Files\Common Files\McAfee
[05/03/2009|21:53] C:\Program Files\Common Files\microsoft shared
[05/12/2007|21:17] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[05/12/2007|21:20] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[05/12/2007|21:27] C:\Program Files\Common Files\supportsoft
[05/12/2007|21:17] C:\Program Files\Common Files\SureThing Shared
[06/12/2007|04:56] C:\Program Files\Common Files\System
[02/01/2009|21:33] C:\Program Files\Common Files\Updates
[03/01/2008|15:18] C:\Program Files\Common Files\WindowsLiveInstaller
[13/08/2009|20:42] C:\Program Files\Common Files\Wise Installation Wizard

--------------------\\ Process

( 68 Processes )

iexplore.exe ~ [PID:4060]
iexplore.exe ~ [PID:4068]
iexplore.exe ~ [PID:4392]

--------------------\\ Recherche avec S_Lop

C:\ProgramData\Mix Logo Logo.050du
C:\ProgramData\Mix Logo Logo.ieykr
C:\ProgramData\Mix Logo Logo.jw0b4
C:\ProgramData\Mix Logo Logo.q1q58
C:\ProgramData\Mix Logo Logo.u57vk
C:\ProgramData\Grid Seek One.lccrv3
C:\ProgramData\Mix Logo Logo.4gdnqk
C:\ProgramData\Mix Logo Logo.8g3pbk
C:\ProgramData\Mix Logo Logo.athua9
C:\ProgramData\Mix Logo Logo.euupox
C:\ProgramData\Mix Logo Logo.nxe6q5
C:\ProgramData\Ford Eggs Seek.ekmapll
C:\ProgramData\Log ball title.u2jyot0
C:\ProgramData\Mix Logo Logo.3u04nju
C:\Users\BeBer\AppData\Local\Temp\bisE6BA.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\ProgramData\Part Hide Grey Pop
C:\ProgramData\Part Hide Grey Pop\Bags Bend.dat
C:\ProgramData\Part Hide Grey Pop\Bags Bend.exe
C:\ProgramData\Part Hide Grey Pop\DASH FUNK.dat
C:\Users\BeBer\AppData\Local\Temp\msgpl_1452.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_b34e.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_d03c.tmp
C:\Users\BeBer\AppData\Local\Temp\msgpl_fbf8.tmp
C:\Users\BeBer\AppData\Local\Temp\nsi4168.tmp
C:\Users\BeBer\AppData\Local\Temp\nsi49F1.tmp
C:\Users\BeBer\AppData\Local\Temp\nsk8A80.tmp
C:\Users\BeBer\AppData\Local\Temp\nsl817.tmp
C:\Users\BeBer\AppData\Local\Temp\nslE582.tmp
C:\Users\BeBer\AppData\Local\Temp\nsm685A.tmp
C:\Users\BeBer\AppData\Local\Temp\nsy4F4A.tmp
C:\Users\BeBer\AppData\Local\Temp\sta9FA8.exe
C:\Users\BeBer\AppData\Local\Temp\staF24C.exe
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"inside joy"="\"C:\\ProgramData\\Mix Logo Logo.nxe6q5\""
"Grey pop cake audio"="\"C:\\ProgramData\\Ford Eggs Seek.ekmapll\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-04 12:08:51
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 89

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

[F:2493][D:131]-> C:\Users\BeBer\AppData\Local\Temp
[F:177][D:1]-> C:\Users\BeBer\AppData\Roaming\MICROS~1\Windows\Cookies
[F:156][D:7]-> C:\Users\BeBer\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:40][D:167]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 04/11/2009|12:11 - Option : [1]

--------------------\\ Fin du rapport a 12:11:30
[ UAC => 1 ]

voila pour la premiere étape
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
beberdu09 Messages postés 24 Statut Membre
 
Pour ZHP diag il bug juste avant la fin je fait comment?
0
beberdu09 Messages postés 24 Statut Membre
 
voila la 2eme partie
http://cjoint.com/data/lenxGtlqgt.htm
0
Xplode Messages postés 9212 Statut Contributeur sécurité 726
 
Il faut que tu lances Lop S&D avec l'option 2 ( suppression ) , là tu as relancé l'option 1
0