Virus ieplorer.exe

Résolu/Fermé
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 - 23 sept. 2008 à 10:48
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 - 23 sept. 2008 à 11:23
Bonjour,
alors voila javais deja rencontrer ce virus et javais reussi a le suprimer grace a vous !!
Le probleme cest que aujourdhui une pub "cid" est apparus !! jai regarder dans le gestionnaire des tache est le procesus iexplorer.exe etait bien la a 89% dutilisation de ma memoire .....
donc voila jespere que vous pouvez maider

merci davance

p.s . le virus sapelle peut etre EVIVINC VIRUS on ma donner une page pour le suprimer sur simantec mais cest en anglais alors je comprend pas

voila ++
A voir également:

1 réponse

Utilisateur anonyme
23 sept. 2008 à 10:52
bonjour
fait ceci
Télécharge LopSD.exe sur ton Bureau
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2

Clique-droit sur le raccourci LopSD présent sur le Bureau et choisis "Exécuter en tant qu'administrateur" pour lancer LopSD.

Choisis la langue F pour Français puis valide par Entrée.

Choisis l'option Recherche en saisissant 1 puis valide par Entrée
.
* Patiente jusqu'à la fin du scan
* Poste le rapport généré qui se trouve ici => (C:\lopR.txt)

(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)

Si tu as un problème pour utiliser Lop S&D, regarde ce tutorial

a+
0
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 1
23 sept. 2008 à 10:53
merci voila la je scane !
-1
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 1 > pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011
23 sept. 2008 à 10:58
voila jai finis le scane voici le raport !

--------------------\\ Lop S&D 4.2.4-4 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Processeur Intel Pentium III )
BIOS : Default System BIOS
USER : pierre ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total : 13 Go Free : 1 Go
D:\ (CD or DVD) - CDFS - Total : 0 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total : 31 Go Free : 30 Go

"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 20/02/2009| 9:54 )

--------------------\\ Listing des dossiers dans APPLIC~1

[12/09/2009|16:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[17/01/2009|23:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GRETECH
[19/02/2009|16:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mags Mapi Joy Bike
[12/09/2009|17:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[07/10/2008|23:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[12/09/2009|17:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2009|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[19/02/2009|14:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[17/01/2009|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[17/02/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[29/01/2009|16:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[30/06/2008|17:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[30/06/2008|17:55] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[30/06/2008|17:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[13/02/2009|16:08] C:\DOCUME~1\pierre\APPLIC~1\AccurateRip
[12/09/2009|16:27] C:\DOCUME~1\pierre\APPLIC~1\Adobe
[19/02/2009|16:43] C:\DOCUME~1\pierre\APPLIC~1\chicregs
[12/09/2009|17:07] C:\DOCUME~1\pierre\APPLIC~1\Dev-Cpp
[13/02/2009|16:11] C:\DOCUME~1\pierre\APPLIC~1\foobar2000
[17/01/2009|23:41] C:\DOCUME~1\pierre\APPLIC~1\GRETECH
[30/06/2008|18:36] C:\DOCUME~1\pierre\APPLIC~1\Identities
[07/10/2008|23:01] C:\DOCUME~1\pierre\APPLIC~1\Macromedia
[18/02/2009|13:18] C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner
[17/02/2009|21:29] C:\DOCUME~1\pierre\APPLIC~1\Microsoft
[11/01/2009|13:16] C:\DOCUME~1\pierre\APPLIC~1\Mozilla
[07/10/2008|23:14] C:\DOCUME~1\pierre\APPLIC~1\MSNInstaller
[20/01/2009|13:05] C:\DOCUME~1\pierre\APPLIC~1\Shareaza
[29/01/2009|17:02] C:\DOCUME~1\pierre\APPLIC~1\Sun
[12/02/2009|17:49] C:\DOCUME~1\pierre\APPLIC~1\uTorrent
[09/12/2008|11:09] C:\DOCUME~1\pierre\APPLIC~1\WinRAR
[12/09/2009|16:28] C:\DOCUME~1\pierre\APPLIC~1\XdriveDesktopLite.D42DF930FC57DEEBEFA7CACA53E3816427CD6B50.1

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[19/02/2009 20:00][--ah-----] C:\WINDOWS\tasks\A97AE2C091F19AA4.job
[19/02/2009 14:27][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUser.job
[20/02/2009 09:35][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/08/2001 13:00][-r-h-c---] C:\WINDOWS\tasks\desktop.ini

( A97AE2C091F19AA4.job )=( c:\docume~1\pierre\applic~1\chicregs\viewdownloadhtm.exe )

--------------------\\ Listing des dossiers dans C:\Program Files

[09/12/2008|10:54] C:\Program Files\Alwil Software
[20/01/2009|13:17] C:\Program Files\CCleaner
[19/02/2009|16:42] C:\Program Files\chicregs
[19/02/2009|16:42] C:\Program Files\Circle Developement
[10/01/2009|18:40] C:\Program Files\Common Files
[30/06/2008|17:48] C:\Program Files\ComPlus Applications
[12/12/2008|13:25] C:\Program Files\directx
[19/02/2009|14:10] C:\Program Files\eMule
[31/01/2009|12:32] C:\Program Files\EPSON
[14/02/2009|11:52] C:\Program Files\Fichiers communs
[13/02/2009|16:11] C:\Program Files\foobar2000
[10/01/2009|18:21] C:\Program Files\Gpotato.eu
[17/01/2009|23:39] C:\Program Files\GRETECH
[13/02/2009|16:07] C:\Program Files\Illustrate
[29/01/2009|16:46] C:\Program Files\InstallShield Installation Information
[10/02/2009|09:39] C:\Program Files\Internet Explorer
[12/09/2009|17:23] C:\Program Files\Java
[09/12/2008|15:00] C:\Program Files\JL2005C
[13/02/2009|16:27] C:\Program Files\Konvertor
[19/02/2009|14:13] C:\Program Files\Local Keylogger Pro
[02/02/2009|13:08] C:\Program Files\Ma‹do Production
[10/02/2009|09:41] C:\Program Files\Messenger
[19/02/2009|17:07] C:\Program Files\Messenger Plus! Live
[18/02/2009|13:18] C:\Program Files\MessengerSkinner
[10/02/2009|09:56] C:\Program Files\microsoft frontpage
[29/01/2009|16:46] C:\Program Files\Microsoft Reader
[16/01/2009|18:17] C:\Program Files\Microsoft SDKs
[16/01/2009|18:31] C:\Program Files\Microsoft Silverlight
[29/01/2009|17:31] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|17:31] C:\Program Files\Microsoft Synchronization Services
[29/01/2009|17:32] C:\Program Files\Microsoft Visual Studio 9.0
[16/01/2009|18:22] C:\Program Files\Microsoft.NET
[12/12/2008|15:29] C:\Program Files\Mio Technology
[10/02/2009|09:39] C:\Program Files\Movie Maker
[20/02/2009|09:44] C:\Program Files\Mozilla Firefox
[16/01/2009|18:07] C:\Program Files\MSBuild
[17/02/2009|21:26] C:\Program Files\MSN
[30/06/2008|17:47] C:\Program Files\MSN Gaming Zone
[19/02/2009|17:07] C:\Program Files\MSN Messenger
[16/01/2009|17:55] C:\Program Files\MSXML 6.0
[10/02/2009|09:33] C:\Program Files\NetMeeting
[30/06/2008|17:48] C:\Program Files\Online Services
[10/02/2009|09:33] C:\Program Files\Outlook Express
[07/02/2009|13:09] C:\Program Files\PC Camera
[16/01/2009|18:07] C:\Program Files\Reference Assemblies
[19/02/2009|14:11] C:\Program Files\RKFree
[30/06/2008|17:51] C:\Program Files\Services en ligne
[12/02/2009|20:16] C:\Program Files\Spyware Doctor
[01/02/2009|18:47] C:\Program Files\SuperCopier2
[30/06/2008|18:36] C:\Program Files\Uninstall Information
[19/01/2009|18:19] C:\Program Files\uTorrent
[19/02/2009|17:02] C:\Program Files\Windows Live
[17/01/2009|13:05] C:\Program Files\Windows Media Connect 2
[10/02/2009|09:33] C:\Program Files\Windows Media Player
[10/02/2009|09:33] C:\Program Files\Windows NT
[30/06/2008|17:51] C:\Program Files\WindowsUpdate
[09/12/2008|21:31] C:\Program Files\WinRAR
[12/09/2009|16:28] C:\Program Files\Xdrive Desktop Lite
[10/02/2009|09:56] C:\Program Files\xerox
[20/01/2009|13:17] C:\Program Files\Yahoo!

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[12/09/2009|16:27] C:\Program Files\Fichiers communs\Adobe AIR
[14/02/2009|11:52] C:\Program Files\Fichiers communs\Blizzard Entertainment
[07/12/2008|17:37] C:\Program Files\Fichiers communs\InstallShield
[29/01/2009|16:59] C:\Program Files\Fichiers communs\Java
[29/01/2009|16:48] C:\Program Files\Fichiers communs\L&H
[16/01/2009|18:24] C:\Program Files\Fichiers communs\Merge Modules
[12/09/2009|17:52] C:\Program Files\Fichiers communs\Microsoft Shared
[30/06/2008|17:50] C:\Program Files\Fichiers communs\MSSoap
[30/06/2008|19:39] C:\Program Files\Fichiers communs\ODBC
[30/06/2008|17:50] C:\Program Files\Fichiers communs\Services
[30/06/2008|19:39] C:\Program Files\Fichiers communs\SpeechEngines
[10/02/2009|09:33] C:\Program Files\Fichiers communs\System
[17/02/2009|21:35] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 33 Processes )

iexplore.exe ~ [PID:1292]
iexplore.exe ~ [PID:1100]

--------------------\\ Recherche avec S_Lop

C:\DOCUME~1\pierre\LOCALS~1\Temp\bisF9.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mags Mapi Joy Bike
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mags Mapi Joy Bike\Bat Audio.exe
C:\DOCUME~1\pierre\APPLIC~1\chicregs
C:\DOCUME~1\pierre\APPLIC~1\chicregs\Browse Four.exe
C:\DOCUME~1\pierre\APPLIC~1\chicregs\itvsogfs.exe
C:\DOCUME~1\pierre\APPLIC~1\chicregs\ScrBitsUpDog.exe
C:\DOCUME~1\pierre\APPLIC~1\chicregs\viewdownloadhtm.exe
C:\Program Files\chicregs
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\WINDOWS\Tasks\A97AE2C091F19AA4.job

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"skipheart"="C:\\DOCUME~1\\pierre\\APPLIC~1\\chicregs\\Browse Four.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Joy Bike More City"="C:\\Documents and Settings\\All Users\\Application Data\\Mags Mapi Joy Bike\\Bat Audio.exe"

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-20 09:56:02
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

C:\Program Files\MessengerSkinner
C:\Program Files\MessengerSkinner\download
C:\Program Files\MessengerSkinner\MessengerSkinner.exe
C:\Program Files\MessengerSkinner\MessengerSkinnerDll.dll
C:\Program Files\MessengerSkinner\resources
C:\Program Files\MessengerSkinner\uninst.exe
C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner
C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner\Userdata
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Conditions g‚n‚rales.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Confidentialit‚.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\D‚sinstaller.lnk
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\MessengerSkinner.lnk
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Website.url
C:\WINDOWS\prefetch\MESSENGERSKINNER.EXE-0EE2A110.pf
C:\WINDOWS\prefetch\MESSENGERSKINNER_SETUP.EXE-1DF73E28.pf

C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv.dat
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv.exe
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv_nav.dat
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv_navps.dat
[b]==> EGDACCESS <==/b

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\pierre\Application Data\uTorrent\Warcraft 3 1.21 cracks and online play - torrent by 3LANCER.torrent


[F:80][D:6]-> C:\DOCUME~1\pierre\LOCALS~1\Temp
[F:19][D:0]-> C:\DOCUME~1\pierre\Cookies
[F:15][D:4]-> C:\DOCUME~1\pierre\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 20/02/2009| 9:58 - Option : [1]

--------------------\\ Fin du rapport a 9:58:28
0
Utilisateur anonyme > pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011
23 sept. 2008 à 11:03
ok
lance l ' etape 2
a+
-1
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 1 > Utilisateur anonyme
23 sept. 2008 à 11:05
ok je lance letape deux
-1
pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011 1 > pierrecitidu91 Messages postés 156 Date d'inscription mercredi 9 avril 2008 Statut Membre Dernière intervention 28 avril 2011
23 sept. 2008 à 11:09
voila jai finis voici le raport !

--------------------\\ Lop S&D 4.2.4-4 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Processeur Intel Pentium III )
BIOS : Default System BIOS
USER : pierre ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total : 13 Go Free : 1 Go
D:\ (CD or DVD) - CDFS - Total : 0 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total : 31 Go Free : 30 Go

"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [2] ( 20/02/2009|10:05 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mags Mapi Joy Bike\Bat Audio.exe
Supprime! - C:\DOCUME~1\pierre\APPLIC~1\chicregs\Browse Four.exe
Supprime! - C:\DOCUME~1\pierre\APPLIC~1\chicregs\itvsogfs.exe
Supprime! - C:\DOCUME~1\pierre\APPLIC~1\chicregs\ScrBitsUpDog.exe
Supprime! - C:\DOCUME~1\pierre\APPLIC~1\chicregs\viewdownloadhtm.exe
Supprime! - C:\Program Files\Circle Developement\Uninstall.exe
Supprime! - C:\WINDOWS\Tasks\A97AE2C091F19AA4.job
Supprime! - C:\DOCUME~1\pierre\LOCALS~1\Temp\bisF9.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mags Mapi Joy Bike
Supprime! - C:\DOCUME~1\pierre\APPLIC~1\chicregs
Supprime! - C:\Program Files\chicregs
Supprime! - C:\Program Files\Circle Developement

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1

[12/09/2009|16:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[17/01/2009|23:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GRETECH
[12/09/2009|17:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[07/10/2008|23:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[12/09/2009|17:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2009|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[19/02/2009|14:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[17/01/2009|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[17/02/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[29/01/2009|16:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion

[30/06/2008|17:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[30/06/2008|17:55] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[30/06/2008|17:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

[13/02/2009|16:08] C:\DOCUME~1\pierre\APPLIC~1\AccurateRip
[12/09/2009|16:27] C:\DOCUME~1\pierre\APPLIC~1\Adobe
[12/09/2009|17:07] C:\DOCUME~1\pierre\APPLIC~1\Dev-Cpp
[13/02/2009|16:11] C:\DOCUME~1\pierre\APPLIC~1\foobar2000
[17/01/2009|23:41] C:\DOCUME~1\pierre\APPLIC~1\GRETECH
[30/06/2008|18:36] C:\DOCUME~1\pierre\APPLIC~1\Identities
[07/10/2008|23:01] C:\DOCUME~1\pierre\APPLIC~1\Macromedia
[18/02/2009|13:18] C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner
[17/02/2009|21:29] C:\DOCUME~1\pierre\APPLIC~1\Microsoft
[11/01/2009|13:16] C:\DOCUME~1\pierre\APPLIC~1\Mozilla
[07/10/2008|23:14] C:\DOCUME~1\pierre\APPLIC~1\MSNInstaller
[20/01/2009|13:05] C:\DOCUME~1\pierre\APPLIC~1\Shareaza
[29/01/2009|17:02] C:\DOCUME~1\pierre\APPLIC~1\Sun
[12/02/2009|17:49] C:\DOCUME~1\pierre\APPLIC~1\uTorrent
[09/12/2008|11:09] C:\DOCUME~1\pierre\APPLIC~1\WinRAR
[12/09/2009|16:28] C:\DOCUME~1\pierre\APPLIC~1\XdriveDesktopLite.D42DF930FC57DEEBEFA7CACA53E3816427CD6B50.1

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[19/02/2009 14:27][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUser.job
[20/02/2009 09:35][--ah-----] C:\WINDOWS\tasks\SA.DAT
[28/08/2001 13:00][-r-h-c---] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[09/12/2008|10:54] C:\Program Files\Alwil Software
[20/01/2009|13:17] C:\Program Files\CCleaner
[10/01/2009|18:40] C:\Program Files\Common Files
[30/06/2008|17:48] C:\Program Files\ComPlus Applications
[12/12/2008|13:25] C:\Program Files\directx
[19/02/2009|14:10] C:\Program Files\eMule
[31/01/2009|12:32] C:\Program Files\EPSON
[14/02/2009|11:52] C:\Program Files\Fichiers communs
[13/02/2009|16:11] C:\Program Files\foobar2000
[10/01/2009|18:21] C:\Program Files\Gpotato.eu
[17/01/2009|23:39] C:\Program Files\GRETECH
[13/02/2009|16:07] C:\Program Files\Illustrate
[29/01/2009|16:46] C:\Program Files\InstallShield Installation Information
[10/02/2009|09:39] C:\Program Files\Internet Explorer
[12/09/2009|17:23] C:\Program Files\Java
[09/12/2008|15:00] C:\Program Files\JL2005C
[13/02/2009|16:27] C:\Program Files\Konvertor
[19/02/2009|14:13] C:\Program Files\Local Keylogger Pro
[02/02/2009|13:08] C:\Program Files\Ma‹do Production
[10/02/2009|09:41] C:\Program Files\Messenger
[19/02/2009|17:07] C:\Program Files\Messenger Plus! Live
[18/02/2009|13:18] C:\Program Files\MessengerSkinner
[10/02/2009|09:56] C:\Program Files\microsoft frontpage
[29/01/2009|16:46] C:\Program Files\Microsoft Reader
[16/01/2009|18:17] C:\Program Files\Microsoft SDKs
[16/01/2009|18:31] C:\Program Files\Microsoft Silverlight
[29/01/2009|17:31] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|17:31] C:\Program Files\Microsoft Synchronization Services
[29/01/2009|17:32] C:\Program Files\Microsoft Visual Studio 9.0
[16/01/2009|18:22] C:\Program Files\Microsoft.NET
[12/12/2008|15:29] C:\Program Files\Mio Technology
[10/02/2009|09:39] C:\Program Files\Movie Maker
[20/02/2009|09:44] C:\Program Files\Mozilla Firefox
[16/01/2009|18:07] C:\Program Files\MSBuild
[17/02/2009|21:26] C:\Program Files\MSN
[30/06/2008|17:47] C:\Program Files\MSN Gaming Zone
[19/02/2009|17:07] C:\Program Files\MSN Messenger
[16/01/2009|17:55] C:\Program Files\MSXML 6.0
[10/02/2009|09:33] C:\Program Files\NetMeeting
[30/06/2008|17:48] C:\Program Files\Online Services
[10/02/2009|09:33] C:\Program Files\Outlook Express
[07/02/2009|13:09] C:\Program Files\PC Camera
[16/01/2009|18:07] C:\Program Files\Reference Assemblies
[19/02/2009|14:11] C:\Program Files\RKFree
[30/06/2008|17:51] C:\Program Files\Services en ligne
[12/02/2009|20:16] C:\Program Files\Spyware Doctor
[01/02/2009|18:47] C:\Program Files\SuperCopier2
[30/06/2008|18:36] C:\Program Files\Uninstall Information
[19/01/2009|18:19] C:\Program Files\uTorrent
[19/02/2009|17:02] C:\Program Files\Windows Live
[17/01/2009|13:05] C:\Program Files\Windows Media Connect 2
[10/02/2009|09:33] C:\Program Files\Windows Media Player
[10/02/2009|09:33] C:\Program Files\Windows NT
[30/06/2008|17:51] C:\Program Files\WindowsUpdate
[09/12/2008|21:31] C:\Program Files\WinRAR
[12/09/2009|16:28] C:\Program Files\Xdrive Desktop Lite
[10/02/2009|09:56] C:\Program Files\xerox
[20/01/2009|13:17] C:\Program Files\Yahoo!

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[12/09/2009|16:27] C:\Program Files\Fichiers communs\Adobe AIR
[14/02/2009|11:52] C:\Program Files\Fichiers communs\Blizzard Entertainment
[07/12/2008|17:37] C:\Program Files\Fichiers communs\InstallShield
[29/01/2009|16:59] C:\Program Files\Fichiers communs\Java
[29/01/2009|16:48] C:\Program Files\Fichiers communs\L&H
[16/01/2009|18:24] C:\Program Files\Fichiers communs\Merge Modules
[12/09/2009|17:52] C:\Program Files\Fichiers communs\Microsoft Shared
[30/06/2008|17:50] C:\Program Files\Fichiers communs\MSSoap
[30/06/2008|19:39] C:\Program Files\Fichiers communs\ODBC
[30/06/2008|17:50] C:\Program Files\Fichiers communs\Services
[30/06/2008|19:39] C:\Program Files\Fichiers communs\SpeechEngines
[10/02/2009|09:33] C:\Program Files\Fichiers communs\System
[17/02/2009|21:35] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 32 Processes )

iexplore.exe ~ [PID:3404]

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-20 10:07:16
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

C:\Program Files\MessengerSkinner
C:\Program Files\MessengerSkinner\download
C:\Program Files\MessengerSkinner\MessengerSkinner.exe
C:\Program Files\MessengerSkinner\MessengerSkinnerDll.dll
C:\Program Files\MessengerSkinner\resources
C:\Program Files\MessengerSkinner\uninst.exe
C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner
C:\DOCUME~1\pierre\APPLIC~1\MessengerSkinner\Userdata
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Conditions g‚n‚rales.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Confidentialit‚.url
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\D‚sinstaller.lnk
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\MessengerSkinner.lnk
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\MessengerSkinner\Website.url
C:\WINDOWS\prefetch\MESSENGERSKINNER.EXE-0EE2A110.pf
C:\WINDOWS\prefetch\MESSENGERSKINNER_SETUP.EXE-1DF73E28.pf

C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv.dat
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv.exe
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv_nav.dat
C:\DOCUME~1\pierre\LOCALS~1\APPLIC~1\pqstv_navps.dat
[b]==> EGDACCESS <==/b

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\pierre\Application Data\uTorrent\Warcraft 3 1.21 cracks and online play - torrent by 3LANCER.torrent


[F:79][D:6]-> C:\DOCUME~1\pierre\LOCALS~1\Temp
[F:20][D:0]-> C:\DOCUME~1\pierre\Cookies
[F:49][D:4]-> C:\DOCUME~1\pierre\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 20/02/2009| 9:58 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 20/02/2009|10:09 - Option : [2]

--------------------\\ Fin du rapport a 10:09:25
-1