Lent

kirosene Messages postés 145 Date d'inscription   Statut Membre Dernière intervention   -  
 Utilisateur anonyme -
Bonjour,
mon ordi rame regardez les rapport random...
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2010-01-24 15:33:40
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 3 GB (5%) free of 60 GB
Total RAM: 1014 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:33:46, on 24/01/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\My Lockbox\flockbox.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\VM_STI.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\PowerArchiver\PASTARTER.EXE
C:\Program Files\Microsoft Encarta\Microsoft Encarta 2009 - Collection DVD\EDICT.EXE
C:\Documents and Settings\Administrateur.STANDARD\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Program Files\Rapidown\rapidown.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Documents and Settings\Administrateur.STANDARD\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hotspot Shield\bin\openvpnas.exe
C:\Program Files\Hotspot Shield\bin\openvpntray.exe
C:\Program Files\Hotspot Shield\bin\hsswd.exe
C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur.STANDARD\Mes documents\Downloads\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\HijackThis\Administrateur.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60001
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60001
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
R3 - URLSearchHook: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe1.dll
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
R3 - URLSearchHook: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyP1.dll
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: Mirar - {059E0B69-8722-40C5-987C-ABCAB34194D0} - C:\WINDOWS\system32\winhg75.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {140BD8E3-C167-11D4-B4A3-080000180323} - (no file)
O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
O2 - BHO: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe1.dll
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: mysidesearch search enhancer - {3FE2007D-DB15-DD27-3562-436037EEEBC0} - C:\WINDOWS\system32\nprmhbwpemc.dll
O2 - BHO: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyP1.dll
O2 - BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {A6984C00-C6EB-11D4-B4A4-080000180323} - C:\PROGRA~1\Rapidown\rapi310.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O2 - BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files\Hotspot Shield\hssie\HssIE.dll
O3 - Toolbar: TextAloud - {F053C368-5458-45B2-9B4D-D8914BDDDBFF} - C:\PROGRA~1\TEXTAL~1\TAForIE.dll
O3 - Toolbar: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe1.dll
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: Mirar - {059E0B68-8722-40C5-987C-ABCAB34194D0} - C:\WINDOWS\system32\winhg75.dll
O3 - Toolbar: MyPlayCity Toolbar - {4724c5d8-dfa7-417a-a2f5-1eabfee9b4ac} - C:\Program Files\MyPlayCity\tbMyP1.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [flockbox] C:\Program Files\My Lockbox\flockbox.exe /a
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [User Enc Proc Curb] C:\Documents and Settings\All Users.WINDOWS\Application Data\bias grim user enc\dumb free.exe
O4 - HKLM\..\Run: [repogobiw] Rundll32.exe "c:\windows\system32\jakejoki.dll",a
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [L08FXLRD_9902343] "C:\Program Files\Microsoft Etudes\Microsoft Encarta 2008 - Études DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [PowerArchiver Tray] C:\Program Files\PowerArchiver\PASTARTER.EXE
O4 - HKCU\..\Run: [E09FXLRD_13140890] "C:\Program Files\Microsoft Encarta\Microsoft Encarta 2009 - Collection DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [svchost] C:\Documents and Settings\Administrateur.STANDARD\Bureau\KEYLOGGER\svchost.exe
O4 - HKCU\..\Run: [Skype] "C:\Documents and Settings\Administrateur.STANDARD\Bureau\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Administrateur.STANDARD\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKLM\..\Policies\Explorer\Run: [STANDARD] .vbe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O4 - Startup: Outil de notification Live Search.lnk = C:\Documents and Settings\Administrateur.STANDARD\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O4 - Startup: Rapidown.lnk = C:\Program Files\Rapidown\rapidown.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZRxdm427YYTN
O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users.WINDOWS\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Baixar com o Rapidown... - C:\Program Files\Rapidown\rapidownGet.htm
O8 - Extra context menu item: Baixar tudo com o Rapidown... - C:\Program Files\Rapidown\rapidownGetAll.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?2a3d0d20f3cf4384bb457d80057d73d7
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?2a3d0d20f3cf4384bb457d80057d73d7
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Rapidown - {57E91B47-F40A-11D1-B792-444553540011} - C:\Program Files\Rapidown\rapidown.exe
O9 - Extra 'Tools' menuitem: Rapidown - {57E91B47-F40A-11D1-B792-444553540011} - C:\Program Files\Rapidown\rapidown.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\WINDOWS\system32\shdocvw.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Monopoly%20Here%20and%20Now/Images/armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{62D06F79-EC9B-41CA-A863-0E21D6F792CA}: NameServer = 10.28.64.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: jitodujo.dll c:\windows\system32\jakejoki.dll
O21 - SSODL: molitegej - {76f1f185-30ea-42ac-b523-42aafde320e9} - c:\windows\system32\jakejoki.dll
O22 - SharedTaskScheduler: jugezatag - {76f1f185-30ea-42ac-b523-42aafde320e9} - c:\windows\system32\jakejoki.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - Unknown owner - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (file missing)
O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Hotspot Shield Routing Service (HssSrv) - AnchorFree Inc. - C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
O23 - Service: Hotspot Shield Tray Service (HssTrayService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE
O23 - Service: Hotspot Shield Monitoring Service (HssWd) - Unknown owner - C:\Program Files\Hotspot Shield\bin\hsswd.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: wampapache - Unknown owner - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe (file missing)
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe (file missing)

3 réponses

Utilisateur anonyme
 
Bonjour
Plusieurs infections

Tu as une infection LOP, ce qui fait apparaitre des pop-up CID
Elles s'installent par ces programmes qu'il éviter à tout prix:
* Le sponsor de Messenger Plus!
* Bittorent
* BitDownload
* BitGrabber
* NetPumper
* BitRoll
* TorrentQ
* Torrent101

Télécharge Lop S&D(de Eric_71 et Angeldark) sur ton Bureau.https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
http://eric71.geekstogo.com/tools/LopSD.exe

* Double-clique dessus pour lancer l'installation
* Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
* Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
* Patiente jusqu'à la fin du scan
* Poste le rapport généré (C:\lopR.txt)
0
kirosene Messages postés 145 Date d'inscription   Statut Membre Dernière intervention   14
 
le voici le rapport:

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) 4 CPU 3.20GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:58 Go (Free:3 Go)
D:\ (Local Disk) - NTFS - Total:83 Go (Free:27 Go)
E:\ (Local Disk) - NTFS - Total:91 Go (Free:45 Go)
F:\ (CD or DVD)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 24/01/2010|16:18 )

--------------------\\ Listing des dossiers dans APPLIC~1

[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[14/04/2008|18:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\AdobeUM
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Creative
[08/04/2008|20:05] C:\DOCUME~1\ADMINI~1\APPLIC~1\Google
[06/04/2008|20:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\Help
[28/12/2006|10:04] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Nero
[09/12/2009|12:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\Skype

[20/12/2006|04:12] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\.wyzo
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Ace
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Adobe
[09/12/2009|12:20] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Ahead
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Apple Computer
[21/12/2006|09:04] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\AVGTOOLBAR
[17/01/2010|18:54] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Azureus
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Babylon
[22/01/2010|11:28] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Bandoo
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command & Conquer 3 Les guerres du Tiberium
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command & Conquer 3 Tiberium Wars
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command and Conquer 3 Tiberium Wars
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Creative
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\CyberLink
[26/12/2006|04:29] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FlashFXP
[20/01/2010|20:05] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FreeVideoConverter
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FrostWire
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\funkitron
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Google
[20/12/2006|00:02] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Help
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Identities
[27/03/2009|18:45] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\InstallShield
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\La Bataille pour la Terre du Milieu
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Leadertech
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\LimeWire
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Macromedia
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Media Player Classic
[08/12/2009|21:07] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Meridian93
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Microsoft
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Mozilla
[10/12/2009|14:14] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\My Games
[16/12/2009|19:25] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\online up eggs
[29/12/2009|15:53] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\OpenCandy
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Opera
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\PC Tools
[28/12/2009|21:36] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\QUAD Utilities
[22/12/2006|11:50] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Real
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SecuROM
[24/01/2010|13:59] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Skype
[21/01/2010|16:36] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\skypePM
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SolidWorks
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SpinTop
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Sun
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\TeamViewer
[08/12/2009|21:09] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Uniblue
[29/12/2009|04:14] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\WinRAR
[10/04/2009|14:34] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Zylom

[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ConeXware
[26/07/2007|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[28/12/2006|15:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[28/12/2006|15:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[28/12/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[03/03/2008|16:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Real
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[22/12/2006|14:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[20/12/2006|03:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[20/12/2006|01:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[26/04/2008|09:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Adobe
[09/01/2007|04:58] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Age of Empires 3
[23/01/2010|10:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\AlawarGameBox
[23/01/2010|10:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\AlawarWrapper
[20/12/2006|02:42] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple
[20/12/2006|01:03] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple Computer
[28/07/2009|08:56] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Avg8
[07/01/2007|11:39] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Azureus
[26/12/2006|03:35] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Babylon
[22/01/2010|11:27] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Bandoo
[30/10/2009|13:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\bias grim user enc
[03/04/2009|16:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\BigFishGamesCache
[25/12/2006|03:44] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\BOONTY
[06/05/2009|20:05] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\ConeXware
[26/12/2006|09:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Creative
[26/04/2008|09:17] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\CyberLink
[05/01/2007|08:08] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\DVD X Studios
[04/04/2009|14:41] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\FarmFrenzy-PizzaParty
[29/12/2006|10:31] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Google
[26/12/2006|04:24] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Grisoft
[24/08/2009|19:28] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\KONAMI
[28/12/2009|00:29] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\ma-config.com
[02/11/2009|12:50] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Messenger Plus!
[16/12/2009|16:05] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Meta Knob Soft Soap
[20/12/2006|02:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\MGS
[20/12/2006|02:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microgaming
[29/07/2009|09:45] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microsoft
[22/12/2006|03:54] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\MSScanAppDataDir
[21/12/2006|23:54] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\phenomedia
[03/02/2007|08:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Real
[21/01/2010|14:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Skype
[24/01/2010|16:16] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Spybot - Search & Destroy
[04/04/2009|14:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\TEMP
[05/01/2007|10:22] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Trymedia
[22/12/2006|11:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Winamp Toolbar
[20/12/2006|19:03] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Genuine Advantage
[26/04/2008|09:17] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Live Toolbar
[06/05/2009|19:36] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WinZip
[20/12/2006|19:50] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WLInstaller
[10/04/2009|14:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom

[12/05/2007|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\Microsoft

[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Adobe
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\ATI
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Babylon
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\CyberLink
[01/03/2008|13:29] C:\DOCUME~1\famille\APPLIC~1\Google
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Identities
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Macromedia
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Microsoft
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\PC Suite
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Yahoo!

[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Creative
[02/02/2008|10:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\PC Suite
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\ScanSoft

[12/05/2007|10:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft

[09/12/2009|12:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[24/01/2010 16:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-706699826-682003330-500UA.job
[24/01/2010 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-706699826-682003330-500Core.job
[24/01/2010 15:05][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/09/2001 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[11/04/2007|07:45] C:\Program Files\3DO
[26/04/2008|09:19] C:\Program Files\Adobe
[23/01/2010|10:06] C:\Program Files\Alawar
[22/12/2006|08:43] C:\Program Files\aMSN
[20/12/2006|00:57] C:\Program Files\Apple Software Update
[22/12/2006|23:41] C:\Program Files\Audacity
[14/04/2008|20:25] C:\Program Files\Audible
[21/12/2006|09:04] C:\Program Files\AVG
[22/01/2010|11:37] C:\Program Files\Bandoo
[23/12/2006|19:46] C:\Program Files\BitDefender
[20/12/2006|01:03] C:\Program Files\Bonjour
[22/12/2006|12:26] C:\Program Files\Boonty
[25/12/2006|03:44] C:\Program Files\BoontyGames
[23/12/2006|19:33] C:\Program Files\Caffe
[09/04/2008|20:53] C:\Program Files\Canon
[14/11/2009|14:41] C:\Program Files\Cirle Developement
[20/12/2006|01:14] C:\Program Files\Common Files
[28/12/2006|09:59] C:\Program Files\ComPlus Applications
[25/04/2009|14:16] C:\Program Files\Conduit
[14/04/2008|20:25] C:\Program Files\Creative
[14/04/2008|20:20] C:\Program Files\Creative Installation Information
[28/12/2006|15:03] C:\Program Files\CyberLink
[21/12/2006|03:58] C:\Program Files\Data
[21/12/2006|02:47] C:\Program Files\Design Science
[22/01/2007|05:59] C:\Program Files\directx
[26/12/2006|00:18] C:\Program Files\DiskTrix
[28/12/2006|15:01] C:\Program Files\DivX
[20/12/2006|00:05] C:\Program Files\DoYouKnow
[05/04/2009|15:02] C:\Program Files\EA GAMES
[20/12/2006|01:59] C:\Program Files\EA SPORTS
[23/12/2006|00:19] C:\Program Files\Electronic Arts
[27/12/2006|14:43] C:\Program Files\eMule
[31/12/2006|13:37] C:\Program Files\ETAJV GAMEBOY
[07/05/2009|20:35] C:\Program Files\Farm Frenzy Pizza Party
[25/12/2006|03:32] C:\Program Files\Feneris
[27/07/2009|15:44] C:\Program Files\Fichiers communs
[11/07/2009|12:58] C:\Program Files\Firaxis Games
[20/12/2006|00:07] C:\Program Files\FlashGet
[09/08/2009|16:52] C:\Program Files\FrostWire
[07/05/2009|20:35] C:\Program Files\Galaxy Online
[20/12/2006|00:45] C:\Program Files\GameShadow
[20/12/2006|00:46] C:\Program Files\GameSpy Arcade
[26/12/2006|10:33] C:\Program Files\GigaTribe
[28/12/2006|15:07] C:\Program Files\Golden Al-Wafi Translator
[20/12/2006|00:29] C:\Program Files\Google
[11/06/2009|17:11] C:\Program Files\GTA VC - NFS Undeground
[20/12/2006|08:25] C:\Program Files\GVOX
[24/01/2010|14:23] C:\Program Files\Hotspot Shield
[10/12/2009|14:17] C:\Program Files\InstallShield Installation Information
[23/01/2010|10:04] C:\Program Files\Internet Explorer
[20/12/2006|01:03] C:\Program Files\iPod
[20/12/2006|01:04] C:\Program Files\iTunes
[30/08/2009|17:54] C:\Program Files\Java
[20/12/2006|13:01] C:\Program Files\JoshMadison
[18/12/2009|13:44] C:\Program Files\Kaspersky Lab
[03/02/2007|08:47] C:\Program Files\K-Lite Codec Pack
[24/08/2009|19:12] C:\Program Files\KONAMI
[28/12/2006|15:25] C:\Program Files\Learning Essentials
[08/12/2009|21:13] C:\Program Files\LimeWire
[28/12/2009|00:29] C:\Program Files\ma-config.com
[28/12/2009|16:55] C:\Program Files\MegaDev
[28/12/2009|16:39] C:\Program Files\Messenger Plus! Live
[03/10/2009|21:25] C:\Program Files\Microsoft
[07/05/2009|12:44] C:\Program Files\Microsoft Encarta
[28/12/2006|15:28] C:\Program Files\Microsoft Etudes
[27/07/2009|15:48] C:\Program Files\microsoft frontpage
[07/01/2007|08:52] C:\Program Files\Microsoft Games
[26/12/2006|03:42] C:\Program Files\Microsoft Office
[03/10/2009|21:25] C:\Program Files\Microsoft Office Outlook Connector
[22/01/2010|08:45] C:\Program Files\Microsoft Silverlight
[20/12/2006|00:37] C:\Program Files\Microsoft SQL Server Compact Edition
[03/10/2009|21:19] C:\Program Files\Microsoft Sync Framework
[28/12/2006|15:03] C:\Program Files\Microsoft Visual Studio
[26/04/2008|09:27] C:\Program Files\Microsoft Works
[26/04/2008|09:28] C:\Program Files\Microsoft.NET
[11/04/2009|12:47] C:\Program Files\Monopoly
[28/12/2006|10:56] C:\Program Files\Motorola
[26/04/2008|08:14] C:\Program Files\Movie Maker
[24/01/2010|15:07] C:\Program Files\Mozilla Firefox
[21/12/2006|00:05] C:\Program Files\MSBuild
[22/01/2007|06:00] C:\Program Files\MSN Gaming Zone
[28/12/2006|10:41] C:\Program Files\MSN Messenger
[07/10/2008|20:29] C:\Program Files\MSXML 4.0
[21/12/2006|00:01] C:\Program Files\MSXML 6.0
[20/12/2006|00:26] C:\Program Files\My Lockbox
[18/11/2009|19:34] C:\Program Files\MyPlayCity
[15/12/2009|23:52] C:\Program Files\MyPlayCity.com
[26/04/2008|09:07] C:\Program Files\Nero
[27/07/2009|15:48] C:\Program Files\netmeeting
[21/12/2006|03:50] C:\Program Files\o
[14/11/2009|14:41] C:\Program Files\online up eggs
[03/07/2009|12:23] C:\Program Files\Opera
[18/08/2009|12:26] C:\Program Files\Outlook Express
[24/12/2006|22:12] C:\Program Files\PopCap Games
[22/01/2010|11:23] C:\Program Files\PowerArchiver
[28/08/2009|22:06] C:\Program Files\Project64 1.6
[31/05/2009|21:53] C:\Program Files\Pyro Studios
[20/12/2006|00:58] C:\Program Files\QuickTime
[29/12/2009|15:25] C:\Program Files\Rapidown
[27/03/2009|18:45] C:\Program Files\Realtek
[21/12/2006|00:05] C:\Program Files\Reference Assemblies
[04/04/2009|13:42] C:\Program Files\ReflexiveArcade
[11/04/2009|13:44] C:\Program Files\RomStation
[27/12/2006|02:50] C:\Program Files\Rorschach Software
[20/12/2006|01:26] C:\Program Files\Samsung
[04/07/2009|10:02] C:\Program Files\Sega
[28/12/2006|10:01] C:\Program Files\Services en ligne
[21/01/2010|14:47] C:\Program Files\Skype
[07/01/2007|08:06] C:\Program Files\Sony
[07/01/2007|07:33] C:\Program Files\speed-bit
[24/01/2010|15:41] C:\Program Files\Spybot - Search & Destroy
[21/12/2006|03:03] C:\Program Files\Sun
[28/07/2009|08:53] C:\Program Files\SuperCopier2
[26/06/2009|16:06] C:\Program Files\TeamViewer
[06/05/2009|18:04] C:\Program Files\TextAloud
[01/02/2007|00:58] C:\Program Files\THQ
[05/01/2007|09:46] C:\Program Files\TLKGAMES
[20/12/2006|00:46] C:\Program Files\TopThemesXP
[27/07/2009|15:29] C:\Program Files\trend micro
[20/12/2006|00:38] C:\Program Files\TvInternet
[21/12/2006|00:44] C:\Program Files\Uniblue
[28/12/2006|10:04] C:\Program Files\Uninstall Information
[20/12/2006|04:42] C:\Program Files\Vimicro
[19/09/2009|21:25] C:\Program Files\Vuze
[29/12/2009|22:21] C:\Program Files\WeFi
[22/12/2006|12:00] C:\Program Files\Winamp
[29/12/2006|10:35] C:\Program Files\Winamp Remote
[22/12/2006|11:59] C:\Program Files\Winamp Toolbar
[03/10/2009|21:21] C:\Program Files\Windows Live
[26/04/2008|09:21] C:\Program Files\Windows Live Favorites
[03/10/2009|21:14] C:\Program Files\Windows Live SkyDrive
[22/12/2006|09:37] C:\Program Files\Windows Media Player
[27/07/2009|15:48] C:\Program Files\windows nt
[29/12/2009|04:14] C:\Program Files\WinRAR
[24/01/2010|16:15] C:\Program Files\WinZix
[27/07/2009|15:48] C:\Program Files\xerox
[15/12/2009|23:47] C:\Program Files\Zylom Games

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[20/12/2006|01:34] C:\Program Files\Fichiers communs\Adobe
[26/04/2008|09:09] C:\Program Files\Fichiers communs\Ahead
[20/12/2006|00:57] C:\Program Files\Fichiers communs\Apple
[23/12/2006|19:46] C:\Program Files\Fichiers communs\BitDefender
[25/12/2006|03:44] C:\Program Files\Fichiers communs\BOONTY Shared
[14/04/2008|20:20] C:\Program Files\Fichiers communs\Creative
[28/12/2006|15:03] C:\Program Files\Fichiers communs\DESIGNER
[04/04/2008|16:40] C:\Program Files\Fichiers communs\InstallShield
[21/12/2006|02:55] C:\Program Files\Fichiers communs\Java
[29/07/2009|09:45] C:\Program Files\Fichiers communs\Microsoft Shared
[28/12/2006|10:00] C:\Program Files\Fichiers communs\MSSoap
[28/12/2006|15:14] C:\Program Files\Fichiers communs\Nero
[22/12/2006|11:50] C:\Program Files\Fichiers communs\Nullsoft
[28/12/2006|10:55] C:\Program Files\Fichiers communs\ODBC
[26/04/2008|08:14] C:\Program Files\Fichiers communs\Services
[21/01/2010|14:47] C:\Program Files\Fichiers communs\Skype
[28/12/2006|10:55] C:\Program Files\Fichiers communs\SpeechEngines
[14/04/2008|18:09] C:\Program Files\Fichiers communs\SWF Studio
[20/12/2006|00:39] C:\Program Files\Fichiers communs\System
[20/12/2006|00:21] C:\Program Files\Fichiers communs\Windows Live
[20/12/2006|00:15] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 58 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1
C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\Comp bait rule list.exe
C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\Grey Cake.exe
C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\rwdgfixi.exe
C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\uefzipwx.exe
C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\zxjrisni.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\bias grim user enc
C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\Temp\nsx13B.tmp
C:\Program Files\WinZix
C:\Program Files\WinZix\WinZixManager.dll_old
C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@install.winzix[2].txt
C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@www.adserver5[1].txt
C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@www.adserver5[2].txt
C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@advertising[2].txt

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\the base find]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\ADMINI~1.STA\\APPLIC~1\\ONLINE~1\\Grey Cake.exe -uninstall"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"User Enc Proc Curb"="C:\\Documents and Settings\\All Users.WINDOWS\\Application Data\\bias grim user enc\\dumb free.exe"

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-24 16:23:30
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\ADMINI~1.STA\Application Data\Azureus\torrents\hotmail.password.crack.hack.2009.torrent
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack
C:\DOCUME~1\ADMINI~1.STA\Bureau\business\hotmail.password.crack.hack.2009.torrent
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack\Civ4BeyondSword.exe
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack\Civ4Warlords.exe
C:\DOCUME~1\ADMINI~1.STA\Recent\Keygen-1.4.lnk
C:\DOCUME~1\ADMINI~1.STA\Shared\beyond the sword crack 3.19 crack from ECLiPSE 100% working.zip
C:\DOCUME~1\ADMINI~1.STA\Shared\beyond the sword crack 3.19.zip

[F:8][D:121]-> C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\Temp
[F:140][D:0]-> C:\DOCUME~1\ADMINI~1.STA\Cookies
[F:880][D:6]-> C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 24/01/2010|16:26 - Option : [1]

--------------------\\ Fin du rapport a 16:26:06
0
Utilisateur anonyme
 
Clic droit sur le raccourci Lop S&D présent sur ton Bureau, et sur exécuter en tant qu'administrateur
* Séléctionne la langue souhaitée , puis choisis l'option "Suppression + Hosts"
* Patiente jusqu'à la fin du scan
* Poste le rapport généré (C:\lopR.txt)
0
kirosene Messages postés 145 Date d'inscription   Statut Membre Dernière intervention   14
 
le voici ce rapport :

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) 4 CPU 3.20GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:58 Go (Free:3 Go)
D:\ (Local Disk) - NTFS - Total:83 Go (Free:27 Go)
E:\ (Local Disk) - NTFS - Total:91 Go (Free:45 Go)
F:\ (CD or DVD)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 24/01/2010|18:28 )

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\Temp\nsx13B.tmp
Supprime! - C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@install.winzix[2].txt
Supprime! - C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@www.adserver5[1].txt
Supprime! - C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@www.adserver5[2].txt
Supprime! - C:\DOCUME~1\ADMINI~1.STA\Cookies\administrateur@advertising[2].txt
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\Comp bait rule list.exe
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\Grey Cake.exe
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\rwdgfixi.exe
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\uefzipwx.exe
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1\zxjrisni.exe
Supprime! - C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\bias grim user enc
Supprime! - C:\Program Files\WinZix
Supprime! - C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\ONLINE~1
Supprime! - C:\Program Files\ONLINE~1

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

--------------------\\ Listing des dossiers dans APPLIC~1

[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[14/04/2008|18:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\AdobeUM
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Creative
[08/04/2008|20:05] C:\DOCUME~1\ADMINI~1\APPLIC~1\Google
[06/04/2008|20:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\Help
[28/12/2006|10:04] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[08/12/2009|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Nero
[09/12/2009|12:20] C:\DOCUME~1\ADMINI~1\APPLIC~1\Skype

[20/12/2006|04:12] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\.wyzo
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Ace
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Adobe
[09/12/2009|12:20] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Ahead
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Apple Computer
[21/12/2006|09:04] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\AVGTOOLBAR
[17/01/2010|18:54] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Azureus
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Babylon
[22/01/2010|11:28] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Bandoo
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command & Conquer 3 Les guerres du Tiberium
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command & Conquer 3 Tiberium Wars
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Command and Conquer 3 Tiberium Wars
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Creative
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\CyberLink
[26/12/2006|04:29] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FlashFXP
[20/01/2010|20:05] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FreeVideoConverter
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\FrostWire
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\funkitron
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Google
[20/12/2006|00:02] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Help
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Identities
[27/03/2009|18:45] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\InstallShield
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\La Bataille pour la Terre du Milieu
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Leadertech
[09/12/2009|12:21] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\LimeWire
[08/12/2009|21:06] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Macromedia
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Media Player Classic
[08/12/2009|21:07] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Meridian93
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Microsoft
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Mozilla
[10/12/2009|14:14] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\My Games
[29/12/2009|15:53] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\OpenCandy
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Opera
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\PC Tools
[28/12/2009|21:36] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\QUAD Utilities
[22/12/2006|11:50] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Real
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SecuROM
[24/01/2010|13:59] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Skype
[21/01/2010|16:36] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\skypePM
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SolidWorks
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\SpinTop
[08/12/2009|21:08] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Sun
[09/12/2009|12:22] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\TeamViewer
[08/12/2009|21:09] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Uniblue
[29/12/2009|04:14] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\WinRAR
[10/04/2009|14:34] C:\DOCUME~1\ADMINI~1.STA\APPLIC~1\Zylom

[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ConeXware
[26/07/2007|08:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Creative
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[09/12/2009|12:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[28/12/2006|15:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[28/12/2006|15:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSScanAppDataDir
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[28/12/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[03/03/2008|16:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Real
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[22/12/2006|14:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[20/12/2006|03:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[09/12/2009|12:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[09/12/2009|12:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[20/12/2006|01:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[26/04/2008|09:20] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Adobe
[09/01/2007|04:58] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Age of Empires 3
[23/01/2010|10:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\AlawarGameBox
[23/01/2010|10:06] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\AlawarWrapper
[20/12/2006|02:42] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple
[20/12/2006|01:03] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Apple Computer
[28/07/2009|08:56] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Avg8
[07/01/2007|11:39] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Azureus
[26/12/2006|03:35] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Babylon
[22/01/2010|11:27] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Bandoo
[03/04/2009|16:04] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\BigFishGamesCache
[25/12/2006|03:44] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\BOONTY
[06/05/2009|20:05] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\ConeXware
[26/12/2006|09:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Creative
[26/04/2008|09:17] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\CyberLink
[05/01/2007|08:08] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\DVD X Studios
[04/04/2009|14:41] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\FarmFrenzy-PizzaParty
[29/12/2006|10:31] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Google
[26/12/2006|04:24] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Grisoft
[24/08/2009|19:28] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\KONAMI
[28/12/2009|00:29] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\ma-config.com
[02/11/2009|12:50] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Messenger Plus!
[16/12/2009|16:05] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Meta Knob Soft Soap
[20/12/2006|02:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\MGS
[20/12/2006|02:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microgaming
[29/07/2009|09:45] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Microsoft
[22/12/2006|03:54] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\MSScanAppDataDir
[21/12/2006|23:54] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\phenomedia
[03/02/2007|08:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Real
[21/01/2010|14:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Skype
[24/01/2010|18:24] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Spybot - Search & Destroy
[04/04/2009|14:47] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\TEMP
[05/01/2007|10:22] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Trymedia
[22/12/2006|11:59] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Winamp Toolbar
[20/12/2006|19:03] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Genuine Advantage
[26/04/2008|09:17] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Windows Live Toolbar
[06/05/2009|19:36] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WinZip
[20/12/2006|19:50] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\WLInstaller
[10/04/2009|14:34] C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom

[12/05/2007|10:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\DEFAUL~1.WIN\APPLIC~1\Microsoft

[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Adobe
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\ATI
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Babylon
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\CyberLink
[01/03/2008|13:29] C:\DOCUME~1\famille\APPLIC~1\Google
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Identities
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\Macromedia
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Microsoft
[09/12/2009|12:43] C:\DOCUME~1\famille\APPLIC~1\PC Suite
[09/12/2009|12:45] C:\DOCUME~1\famille\APPLIC~1\Yahoo!

[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Creative
[02/02/2008|10:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\PC Suite
[09/12/2009|12:45] C:\DOCUME~1\INVIT~1\APPLIC~1\ScanSoft

[12/05/2007|10:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft

[09/12/2009|12:45] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[28/07/2009|08:56] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[24/01/2010 18:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-706699826-682003330-500UA.job
[24/01/2010 15:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-706699826-682003330-500Core.job
[24/01/2010 16:38][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/09/2001 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[11/04/2007|07:45] C:\Program Files\3DO
[26/04/2008|09:19] C:\Program Files\Adobe
[23/01/2010|10:06] C:\Program Files\Alawar
[22/12/2006|08:43] C:\Program Files\aMSN
[20/12/2006|00:57] C:\Program Files\Apple Software Update
[22/12/2006|23:41] C:\Program Files\Audacity
[14/04/2008|20:25] C:\Program Files\Audible
[21/12/2006|09:04] C:\Program Files\AVG
[22/01/2010|11:37] C:\Program Files\Bandoo
[23/12/2006|19:46] C:\Program Files\BitDefender
[20/12/2006|01:03] C:\Program Files\Bonjour
[22/12/2006|12:26] C:\Program Files\Boonty
[25/12/2006|03:44] C:\Program Files\BoontyGames
[23/12/2006|19:33] C:\Program Files\Caffe
[09/04/2008|20:53] C:\Program Files\Canon
[14/11/2009|14:41] C:\Program Files\Cirle Developement
[20/12/2006|01:14] C:\Program Files\Common Files
[28/12/2006|09:59] C:\Program Files\ComPlus Applications
[25/04/2009|14:16] C:\Program Files\Conduit
[14/04/2008|20:25] C:\Program Files\Creative
[14/04/2008|20:20] C:\Program Files\Creative Installation Information
[28/12/2006|15:03] C:\Program Files\CyberLink
[21/12/2006|03:58] C:\Program Files\Data
[21/12/2006|02:47] C:\Program Files\Design Science
[22/01/2007|05:59] C:\Program Files\directx
[26/12/2006|00:18] C:\Program Files\DiskTrix
[28/12/2006|15:01] C:\Program Files\DivX
[20/12/2006|00:05] C:\Program Files\DoYouKnow
[05/04/2009|15:02] C:\Program Files\EA GAMES
[20/12/2006|01:59] C:\Program Files\EA SPORTS
[23/12/2006|00:19] C:\Program Files\Electronic Arts
[27/12/2006|14:43] C:\Program Files\eMule
[31/12/2006|13:37] C:\Program Files\ETAJV GAMEBOY
[07/05/2009|20:35] C:\Program Files\Farm Frenzy Pizza Party
[25/12/2006|03:32] C:\Program Files\Feneris
[27/07/2009|15:44] C:\Program Files\Fichiers communs
[11/07/2009|12:58] C:\Program Files\Firaxis Games
[20/12/2006|00:07] C:\Program Files\FlashGet
[09/08/2009|16:52] C:\Program Files\FrostWire
[07/05/2009|20:35] C:\Program Files\Galaxy Online
[20/12/2006|00:45] C:\Program Files\GameShadow
[20/12/2006|00:46] C:\Program Files\GameSpy Arcade
[26/12/2006|10:33] C:\Program Files\GigaTribe
[28/12/2006|15:07] C:\Program Files\Golden Al-Wafi Translator
[20/12/2006|00:29] C:\Program Files\Google
[11/06/2009|17:11] C:\Program Files\GTA VC - NFS Undeground
[20/12/2006|08:25] C:\Program Files\GVOX
[24/01/2010|14:23] C:\Program Files\Hotspot Shield
[10/12/2009|14:17] C:\Program Files\InstallShield Installation Information
[23/01/2010|10:04] C:\Program Files\Internet Explorer
[20/12/2006|01:03] C:\Program Files\iPod
[20/12/2006|01:04] C:\Program Files\iTunes
[30/08/2009|17:54] C:\Program Files\Java
[20/12/2006|13:01] C:\Program Files\JoshMadison
[18/12/2009|13:44] C:\Program Files\Kaspersky Lab
[03/02/2007|08:47] C:\Program Files\K-Lite Codec Pack
[24/08/2009|19:12] C:\Program Files\KONAMI
[28/12/2006|15:25] C:\Program Files\Learning Essentials
[08/12/2009|21:13] C:\Program Files\LimeWire
[28/12/2009|00:29] C:\Program Files\ma-config.com
[28/12/2009|16:55] C:\Program Files\MegaDev
[28/12/2009|16:39] C:\Program Files\Messenger Plus! Live
[03/10/2009|21:25] C:\Program Files\Microsoft
[07/05/2009|12:44] C:\Program Files\Microsoft Encarta
[28/12/2006|15:28] C:\Program Files\Microsoft Etudes
[27/07/2009|15:48] C:\Program Files\microsoft frontpage
[07/01/2007|08:52] C:\Program Files\Microsoft Games
[26/12/2006|03:42] C:\Program Files\Microsoft Office
[03/10/2009|21:25] C:\Program Files\Microsoft Office Outlook Connector
[22/01/2010|08:45] C:\Program Files\Microsoft Silverlight
[20/12/2006|00:37] C:\Program Files\Microsoft SQL Server Compact Edition
[03/10/2009|21:19] C:\Program Files\Microsoft Sync Framework
[28/12/2006|15:03] C:\Program Files\Microsoft Visual Studio
[26/04/2008|09:27] C:\Program Files\Microsoft Works
[26/04/2008|09:28] C:\Program Files\Microsoft.NET
[11/04/2009|12:47] C:\Program Files\Monopoly
[28/12/2006|10:56] C:\Program Files\Motorola
[26/04/2008|08:14] C:\Program Files\Movie Maker
[24/01/2010|18:24] C:\Program Files\Mozilla Firefox
[21/12/2006|00:05] C:\Program Files\MSBuild
[22/01/2007|06:00] C:\Program Files\MSN Gaming Zone
[28/12/2006|10:41] C:\Program Files\MSN Messenger
[07/10/2008|20:29] C:\Program Files\MSXML 4.0
[21/12/2006|00:01] C:\Program Files\MSXML 6.0
[20/12/2006|00:26] C:\Program Files\My Lockbox
[18/11/2009|19:34] C:\Program Files\MyPlayCity
[15/12/2009|23:52] C:\Program Files\MyPlayCity.com
[26/04/2008|09:07] C:\Program Files\Nero
[27/07/2009|15:48] C:\Program Files\netmeeting
[21/12/2006|03:50] C:\Program Files\o
[03/07/2009|12:23] C:\Program Files\Opera
[18/08/2009|12:26] C:\Program Files\Outlook Express
[24/12/2006|22:12] C:\Program Files\PopCap Games
[22/01/2010|11:23] C:\Program Files\PowerArchiver
[28/08/2009|22:06] C:\Program Files\Project64 1.6
[31/05/2009|21:53] C:\Program Files\Pyro Studios
[20/12/2006|00:58] C:\Program Files\QuickTime
[29/12/2009|15:25] C:\Program Files\Rapidown
[27/03/2009|18:45] C:\Program Files\Realtek
[21/12/2006|00:05] C:\Program Files\Reference Assemblies
[04/04/2009|13:42] C:\Program Files\ReflexiveArcade
[11/04/2009|13:44] C:\Program Files\RomStation
[27/12/2006|02:50] C:\Program Files\Rorschach Software
[20/12/2006|01:26] C:\Program Files\Samsung
[04/07/2009|10:02] C:\Program Files\Sega
[28/12/2006|10:01] C:\Program Files\Services en ligne
[21/01/2010|14:47] C:\Program Files\Skype
[07/01/2007|08:06] C:\Program Files\Sony
[07/01/2007|07:33] C:\Program Files\speed-bit
[24/01/2010|18:24] C:\Program Files\Spybot - Search & Destroy
[21/12/2006|03:03] C:\Program Files\Sun
[28/07/2009|08:53] C:\Program Files\SuperCopier2
[26/06/2009|16:06] C:\Program Files\TeamViewer
[06/05/2009|18:04] C:\Program Files\TextAloud
[01/02/2007|00:58] C:\Program Files\THQ
[05/01/2007|09:46] C:\Program Files\TLKGAMES
[20/12/2006|00:46] C:\Program Files\TopThemesXP
[27/07/2009|15:29] C:\Program Files\trend micro
[20/12/2006|00:38] C:\Program Files\TvInternet
[21/12/2006|00:44] C:\Program Files\Uniblue
[28/12/2006|10:04] C:\Program Files\Uninstall Information
[20/12/2006|04:42] C:\Program Files\Vimicro
[19/09/2009|21:25] C:\Program Files\Vuze
[29/12/2009|22:21] C:\Program Files\WeFi
[22/12/2006|12:00] C:\Program Files\Winamp
[29/12/2006|10:35] C:\Program Files\Winamp Remote
[22/12/2006|11:59] C:\Program Files\Winamp Toolbar
[03/10/2009|21:21] C:\Program Files\Windows Live
[26/04/2008|09:21] C:\Program Files\Windows Live Favorites
[03/10/2009|21:14] C:\Program Files\Windows Live SkyDrive
[22/12/2006|09:37] C:\Program Files\Windows Media Player
[27/07/2009|15:48] C:\Program Files\windows nt
[29/12/2009|04:14] C:\Program Files\WinRAR
[27/07/2009|15:48] C:\Program Files\xerox
[15/12/2009|23:47] C:\Program Files\Zylom Games

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[20/12/2006|01:34] C:\Program Files\Fichiers communs\Adobe
[26/04/2008|09:09] C:\Program Files\Fichiers communs\Ahead
[20/12/2006|00:57] C:\Program Files\Fichiers communs\Apple
[23/12/2006|19:46] C:\Program Files\Fichiers communs\BitDefender
[25/12/2006|03:44] C:\Program Files\Fichiers communs\BOONTY Shared
[14/04/2008|20:20] C:\Program Files\Fichiers communs\Creative
[28/12/2006|15:03] C:\Program Files\Fichiers communs\DESIGNER
[04/04/2008|16:40] C:\Program Files\Fichiers communs\InstallShield
[21/12/2006|02:55] C:\Program Files\Fichiers communs\Java
[29/07/2009|09:45] C:\Program Files\Fichiers communs\Microsoft Shared
[28/12/2006|10:00] C:\Program Files\Fichiers communs\MSSoap
[28/12/2006|15:14] C:\Program Files\Fichiers communs\Nero
[22/12/2006|11:50] C:\Program Files\Fichiers communs\Nullsoft
[28/12/2006|10:55] C:\Program Files\Fichiers communs\ODBC
[26/04/2008|08:14] C:\Program Files\Fichiers communs\Services
[21/01/2010|14:47] C:\Program Files\Fichiers communs\Skype
[28/12/2006|10:55] C:\Program Files\Fichiers communs\SpeechEngines
[14/04/2008|18:09] C:\Program Files\Fichiers communs\SWF Studio
[20/12/2006|00:39] C:\Program Files\Fichiers communs\System
[20/12/2006|00:21] C:\Program Files\Fichiers communs\Windows Live
[20/12/2006|00:15] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 56 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-24 18:31:28
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\ADMINI~1.STA\Application Data\Azureus\torrents\hotmail.password.crack.hack.2009.torrent
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack
C:\DOCUME~1\ADMINI~1.STA\Bureau\business\hotmail.password.crack.hack.2009.torrent
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack\Civ4BeyondSword.exe
C:\DOCUME~1\ADMINI~1.STA\Bureau\Crack\Civ4Warlords.exe
C:\DOCUME~1\ADMINI~1.STA\Recent\Keygen-1.4.lnk
C:\DOCUME~1\ADMINI~1.STA\Shared\beyond the sword crack 3.19 crack from ECLiPSE 100% working.zip
C:\DOCUME~1\ADMINI~1.STA\Shared\beyond the sword crack 3.19.zip

[F:43][D:121]-> C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\Temp
[F:136][D:0]-> C:\DOCUME~1\ADMINI~1.STA\Cookies
[F:889][D:6]-> C:\DOCUME~1\ADMINI~1.STA\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 24/01/2010|16:26 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 24/01/2010|18:33 - Option : [2]

--------------------\\ Fin du rapport a 18:33:23
0
Utilisateur anonyme
 
on va traiter une infection supports amovibles

Télécharge USBFix (de El Desaparecido, C_XX et Chimay8) sur ton bureau
http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.exe­
ou
https://www.ionos.fr/?affiliate_id=77097

Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir

# Double clic sur le raccourci UsbFix présent sur ton bureau .

# Sélectionne l'option 1 ( Recherche )

# Laisse travailler l'outil.

# Ensuite poste le rapport UsbFix.txt qui apparaitra.

# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

# Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
0