Virus encore et encore
Résolu/Fermé
simonete88
-
1 oct. 2008 à 10:45
benurrr Messages postés 9638 Date d'inscription samedi 24 mai 2008 Statut Contributeur sécurité Dernière intervention 11 janvier 2012 - 1 oct. 2008 à 11:42
benurrr Messages postés 9638 Date d'inscription samedi 24 mai 2008 Statut Contributeur sécurité Dernière intervention 11 janvier 2012 - 1 oct. 2008 à 11:42
A voir également:
- Virus encore et encore
- Tinyurl virus - Forum Virus / Sécurité
- Svchost.exe virus - Guide
- Tlauncher virus ✓ - Forum Jeux vidéo
- Softonic virus - Forum Virus / Sécurité
- 6 proccesus svchost.exe Virus? ✓ - Forum Virus / Sécurité
6 réponses
voila merci.
Search Navipromo version 3.6.6 commencé le 01/10/2008 à 10:49:49,00
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Christophe Duval"
Mise à jour le 29.09.2008 à 17h30 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 01/10/2008 à 10:57:34,31 ***
Search Navipromo version 3.6.6 commencé le 01/10/2008 à 10:49:49,00
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Christophe Duval"
Mise à jour le 29.09.2008 à 17h30 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Christophe Duval\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Christophe Duval\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 01/10/2008 à 10:57:34,31 ***
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.73GHz )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Christophe Duval ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 49 Go Free : 16 Go
D:\ (Local Disk) - NTFS - Total : 30 Go Free : 12 Go
E:\ (Local Disk) - FAT32 - Total : 12 Go Free : 12 Go
F:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 01/10/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/12/2006|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/02/2008|21:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[26/09/2006|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[08/06/2008|23:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[14/04/2008|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[06/09/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\file joy proc deaf
[11/12/2006|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[07/09/2008|13:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[26/07/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2008|13:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[03/10/2005|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[18/08/2006|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[03/10/2005|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/05/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[05/10/2005|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[03/10/2005|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[06/09/2008|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[14/09/2005|03:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[21/02/2008|22:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[06/09/2008|19:16] C:\DOCUME~1\CHRIST~1\APPLIC~1\64 Poll Poke
[19/05/2008|16:37] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
[27/12/2005|14:54] C:\DOCUME~1\CHRIST~1\APPLIC~1\AdobeUM
[24/06/2007|22:34] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
[07/02/2008|21:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\ATI
[26/09/2006|19:18] C:\DOCUME~1\CHRIST~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\CHRIST~1\APPLIC~1\CyberLink
[14/04/2008|19:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
[07/01/2007|10:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
[19/08/2005|20:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
[24/09/2008|13:46] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
[13/11/2006|21:38] C:\DOCUME~1\CHRIST~1\APPLIC~1\La Bataille pour la Terre du Milieu
[16/06/2007|12:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Logitech
[03/10/2005|20:02] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
[26/07/2008|20:07] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
[01/07/2008|12:09] C:\DOCUME~1\CHRIST~1\APPLIC~1\MSNInstaller
[28/12/2007|13:56] C:\DOCUME~1\CHRIST~1\APPLIC~1\Nero
[03/10/2005|20:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
[25/05/2008|17:47] C:\DOCUME~1\CHRIST~1\APPLIC~1\TuneUp Software
[28/10/2006|17:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
[28/01/2006|14:28] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
[05/10/2005|08:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\You've Got Pictures Screensaver
[14/09/2005|01:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[07/02/2008|21:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[03/10/2005|20:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\CyberLink
[19/08/2005|20:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[03/10/2005|20:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[05/10/2005|08:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/10/2005|20:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[05/10/2005|08:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[19/08/2005|20:30] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[14/09/2005|03:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[05/02/2006|14:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/11/2005|16:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2008 11:00][--ah-----] C:\WINDOWS\tasks\AD80CE6191A34639.job
[01/10/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[01/10/2008 10:08][--ah-----] C:\WINDOWS\tasks\SA.DAT
( AD80CE6191A34639.job )=( c:\docume~1\christ~1\applic~1\64poll~1\viewbasebody.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[06/09/2008|19:15] C:\Program Files\64 Poll Poke
[19/05/2008|16:35] C:\Program Files\Adobe
[24/06/2007|22:11] C:\Program Files\Ahead
[26/09/2006|19:12] C:\Program Files\AnswerWorks 4.0
[26/09/2008|23:17] C:\Program Files\Applications
[13/09/2005|16:59] C:\Program Files\ATI Technologies
[11/11/2005|14:09] C:\Program Files\AuthenTec
[26/09/2006|19:15] C:\Program Files\AutoCAD 2004
[26/09/2006|19:13] C:\Program Files\Autodesk
[13/09/2005|19:57] C:\Program Files\CA
[21/02/2008|22:25] C:\Program Files\CCleaner
[06/09/2008|19:15] C:\Program Files\Circle Developement
[14/09/2005|01:24] C:\Program Files\Common Files
[19/08/2005|20:28] C:\Program Files\ComPlus Applications
[05/10/2005|02:47] C:\Program Files\CyberLink
[14/09/2005|00:59] C:\Program Files\DivX
[11/01/2006|20:49] C:\Program Files\DVD Shrink
[06/05/2006|06:40] C:\Program Files\DVDFab Gold
[18/10/2006|19:27] C:\Program Files\EA GAMES
[13/09/2005|20:40] C:\Program Files\Encarta
[07/09/2008|17:41] C:\Program Files\Fichiers communs
[03/10/2005|17:48] C:\Program Files\Google
[03/10/2005|18:51] C:\Program Files\HighMAT CD Writing Wizard
[03/10/2005|20:16] C:\Program Files\Home Cinema
[24/09/2008|13:46] C:\Program Files\InstallShield Installation Information
[19/08/2005|22:15] C:\Program Files\Intel
[06/09/2008|23:38] C:\Program Files\Internet Explorer
[09/05/2008|11:43] C:\Program Files\Inventel
[13/09/2005|21:02] C:\Program Files\Java
[05/01/2008|17:08] C:\Program Files\Kings Mahjongg
[13/09/2005|19:53] C:\Program Files\Launch Manager
[05/10/2005|08:27] C:\Program Files\Learn2.com
[16/06/2007|12:39] C:\Program Files\Logitech
[03/10/2005|20:51] C:\Program Files\Medion
[09/09/2008|15:57] C:\Program Files\Messenger
[06/09/2008|19:15] C:\Program Files\Messenger Plus! Live
[21/12/2006|18:42] C:\Program Files\Micro Application
[13/09/2005|20:43] C:\Program Files\Microsoft AutoRoute
[21/02/2008|23:47] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[19/08/2005|20:30] C:\Program Files\microsoft frontpage
[05/10/2005|07:30] C:\Program Files\Microsoft Games
[13/09/2005|20:35] C:\Program Files\Microsoft Money 2005
[29/01/2008|13:38] C:\Program Files\Microsoft Office
[06/09/2008|23:34] C:\Program Files\Microsoft Silverlight
[29/01/2008|13:38] C:\Program Files\Microsoft Visual Studio
[24/06/2007|21:44] C:\Program Files\Microsoft Works
[13/09/2005|20:27] C:\Program Files\Microsoft Works Suite 2005
[29/01/2008|13:36] C:\Program Files\Microsoft.NET
[17/11/2007|12:21] C:\Program Files\Mindscape
[07/09/2008|18:06] C:\Program Files\Movie Maker
[21/02/2008|23:43] C:\Program Files\MSBuild
[12/08/2008|12:20] C:\Program Files\MSN
[19/08/2005|20:27] C:\Program Files\MSN Gaming Zone
[21/02/2008|23:49] C:\Program Files\MSXML 4.0
[21/02/2008|23:47] C:\Program Files\MSXML 6.0
[16/06/2007|12:40] C:\Program Files\MUSICMATCH
[03/10/2005|21:06] C:\Program Files\muvee Technologies
[01/10/2008|10:57] C:\Program Files\Navilog1
[24/06/2007|22:17] C:\Program Files\Nero
[07/09/2008|17:56] C:\Program Files\NetMeeting
[25/05/2008|17:22] C:\Program Files\Nobilis
[03/10/2005|20:00] C:\Program Files\OfficeUpdate11
[19/08/2005|20:27] C:\Program Files\Online Services
[07/09/2008|17:42] C:\Program Files\Orange
[07/09/2008|17:56] C:\Program Files\Outlook Express
[13/09/2005|20:39] C:\Program Files\Picture It! Premium 10
[05/10/2005|08:27] C:\Program Files\QuickTime
[05/10/2005|08:27] C:\Program Files\Real
[13/09/2005|17:24] C:\Program Files\Realtek
[21/02/2008|23:39] C:\Program Files\Reference Assemblies
[21/02/2008|22:23] C:\Program Files\RegCleaner
[24/09/2008|13:46] C:\Program Files\SAGEM
[24/09/2008|13:46] C:\Program Files\Securitoo
[19/08/2005|20:29] C:\Program Files\Services en ligne
[28/10/2006|17:15] C:\Program Files\Smart Projects
[28/09/2006|21:50] C:\Program Files\Snooker
[11/11/2005|14:02] C:\Program Files\Softex
[13/09/2005|19:50] C:\Program Files\Synaptics
[28/09/2006|21:49] C:\Program Files\Ultimate Pool
[19/08/2005|20:33] C:\Program Files\Uninstall Information
[28/01/2006|14:28] C:\Program Files\VideoLAN
[05/10/2005|08:27] C:\Program Files\Viewpoint
[11/04/2006|18:36] C:\Program Files\vso
[13/09/2005|19:31] C:\Program Files\WIDCOMM
[31/07/2008|19:15] C:\Program Files\Windows Live
[22/02/2008|12:20] C:\Program Files\Windows Media Connect
[22/02/2008|12:22] C:\Program Files\Windows Media Connect 2
[07/09/2008|17:56] C:\Program Files\Windows Media Player
[07/09/2008|17:56] C:\Program Files\Windows NT
[19/08/2005|20:29] C:\Program Files\WindowsUpdate
[29/10/2006|08:52] C:\Program Files\WinRAR
[14/09/2005|01:24] C:\Program Files\X10 Hardware
[19/08/2005|20:30] C:\Program Files\xerox
[21/02/2008|22:25] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/05/2008|16:35] C:\Program Files\Fichiers communs\Adobe
[24/06/2007|22:17] C:\Program Files\Fichiers communs\Ahead
[07/02/2008|21:05] C:\Program Files\Fichiers communs\AOL
[26/09/2006|19:12] C:\Program Files\Fichiers communs\Autodesk Shared
[29/01/2008|13:38] C:\Program Files\Fichiers communs\Designer
[13/09/2005|17:24] C:\Program Files\Fichiers communs\InstallShield
[13/09/2005|21:01] C:\Program Files\Fichiers communs\Java
[16/06/2007|12:38] C:\Program Files\Fichiers communs\Logitech
[26/09/2006|19:13] C:\Program Files\Fichiers communs\Macrovision Shared
[26/07/2008|18:48] C:\Program Files\Fichiers communs\Microsoft Shared
[19/08/2005|20:29] C:\Program Files\Fichiers communs\MSSoap
[03/10/2005|21:06] C:\Program Files\Fichiers communs\muvee Technologies
[13/09/2005|20:51] C:\Program Files\Fichiers communs\Nero
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Nullsoft
[19/08/2005|22:23] C:\Program Files\Fichiers communs\ODBC
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Real
[19/08/2005|20:29] C:\Program Files\Fichiers communs\Services
[19/08/2005|22:23] C:\Program Files\Fichiers communs\SpeechEngines
[07/09/2008|17:55] C:\Program Files\Fichiers communs\System
[07/02/2008|21:08] C:\Program Files\Fichiers communs\Teleca Shared
[26/07/2008|18:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/05/2008|17:45] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 58 Processes )
IEXPLORE.EXE ~ [PID:3564]
IEXPLORE.EXE ~ [PID:3932]
iexplore.exe ~ [PID:2128]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf\fork the.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\Dart Cake Style Bin.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\kleirxac.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\medialinkgrim.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\viewbasebody.exe
C:\Program Files\64poll~1
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.adserver5[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adultfriendfinder[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@advertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.blowadvertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.cotedazurpalace[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@cotedazurpalace[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adopt.euroclick[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@pacificpoker[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@32vegas[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.32vegas[1].txt
C:\WINDOWS\Tasks\AD80CE6191A34639.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"phone bows"="C:\\DOCUME~1\\CHRIST~1\\APPLIC~1\\64POLL~1\\medialinkgrim.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Proc Deaf Delete Peak"="C:\\Documents and Settings\\All Users\\Application Data\\file joy proc deaf\\fork the.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-01 11:15:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:3][D:7]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
[F:559][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
[F:16946][D:26]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 01/10/2008|11:17 - Option : [1]
--------------------\\ Fin du rapport a 11:17:13
ila
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.73GHz )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Christophe Duval ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 49 Go Free : 16 Go
D:\ (Local Disk) - NTFS - Total : 30 Go Free : 12 Go
E:\ (Local Disk) - FAT32 - Total : 12 Go Free : 12 Go
F:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 01/10/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/12/2006|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/02/2008|21:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[26/09/2006|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[08/06/2008|23:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[14/04/2008|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[06/09/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\file joy proc deaf
[11/12/2006|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[07/09/2008|13:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[26/07/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2008|13:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[03/10/2005|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[18/08/2006|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[03/10/2005|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/05/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[05/10/2005|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[03/10/2005|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[06/09/2008|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[14/09/2005|03:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[21/02/2008|22:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[06/09/2008|19:16] C:\DOCUME~1\CHRIST~1\APPLIC~1\64 Poll Poke
[19/05/2008|16:37] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
[27/12/2005|14:54] C:\DOCUME~1\CHRIST~1\APPLIC~1\AdobeUM
[24/06/2007|22:34] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
[07/02/2008|21:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\ATI
[26/09/2006|19:18] C:\DOCUME~1\CHRIST~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\CHRIST~1\APPLIC~1\CyberLink
[14/04/2008|19:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
[07/01/2007|10:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
[19/08/2005|20:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
[24/09/2008|13:46] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
[13/11/2006|21:38] C:\DOCUME~1\CHRIST~1\APPLIC~1\La Bataille pour la Terre du Milieu
[16/06/2007|12:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Logitech
[03/10/2005|20:02] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
[26/07/2008|20:07] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
[01/07/2008|12:09] C:\DOCUME~1\CHRIST~1\APPLIC~1\MSNInstaller
[28/12/2007|13:56] C:\DOCUME~1\CHRIST~1\APPLIC~1\Nero
[03/10/2005|20:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
[25/05/2008|17:47] C:\DOCUME~1\CHRIST~1\APPLIC~1\TuneUp Software
[28/10/2006|17:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
[28/01/2006|14:28] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
[05/10/2005|08:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\You've Got Pictures Screensaver
[14/09/2005|01:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[07/02/2008|21:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[03/10/2005|20:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\CyberLink
[19/08/2005|20:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[03/10/2005|20:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[05/10/2005|08:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/10/2005|20:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[05/10/2005|08:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[19/08/2005|20:30] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[14/09/2005|03:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[05/02/2006|14:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/11/2005|16:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2008 11:00][--ah-----] C:\WINDOWS\tasks\AD80CE6191A34639.job
[01/10/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[01/10/2008 10:08][--ah-----] C:\WINDOWS\tasks\SA.DAT
( AD80CE6191A34639.job )=( c:\docume~1\christ~1\applic~1\64poll~1\viewbasebody.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[06/09/2008|19:15] C:\Program Files\64 Poll Poke
[19/05/2008|16:35] C:\Program Files\Adobe
[24/06/2007|22:11] C:\Program Files\Ahead
[26/09/2006|19:12] C:\Program Files\AnswerWorks 4.0
[26/09/2008|23:17] C:\Program Files\Applications
[13/09/2005|16:59] C:\Program Files\ATI Technologies
[11/11/2005|14:09] C:\Program Files\AuthenTec
[26/09/2006|19:15] C:\Program Files\AutoCAD 2004
[26/09/2006|19:13] C:\Program Files\Autodesk
[13/09/2005|19:57] C:\Program Files\CA
[21/02/2008|22:25] C:\Program Files\CCleaner
[06/09/2008|19:15] C:\Program Files\Circle Developement
[14/09/2005|01:24] C:\Program Files\Common Files
[19/08/2005|20:28] C:\Program Files\ComPlus Applications
[05/10/2005|02:47] C:\Program Files\CyberLink
[14/09/2005|00:59] C:\Program Files\DivX
[11/01/2006|20:49] C:\Program Files\DVD Shrink
[06/05/2006|06:40] C:\Program Files\DVDFab Gold
[18/10/2006|19:27] C:\Program Files\EA GAMES
[13/09/2005|20:40] C:\Program Files\Encarta
[07/09/2008|17:41] C:\Program Files\Fichiers communs
[03/10/2005|17:48] C:\Program Files\Google
[03/10/2005|18:51] C:\Program Files\HighMAT CD Writing Wizard
[03/10/2005|20:16] C:\Program Files\Home Cinema
[24/09/2008|13:46] C:\Program Files\InstallShield Installation Information
[19/08/2005|22:15] C:\Program Files\Intel
[06/09/2008|23:38] C:\Program Files\Internet Explorer
[09/05/2008|11:43] C:\Program Files\Inventel
[13/09/2005|21:02] C:\Program Files\Java
[05/01/2008|17:08] C:\Program Files\Kings Mahjongg
[13/09/2005|19:53] C:\Program Files\Launch Manager
[05/10/2005|08:27] C:\Program Files\Learn2.com
[16/06/2007|12:39] C:\Program Files\Logitech
[03/10/2005|20:51] C:\Program Files\Medion
[09/09/2008|15:57] C:\Program Files\Messenger
[06/09/2008|19:15] C:\Program Files\Messenger Plus! Live
[21/12/2006|18:42] C:\Program Files\Micro Application
[13/09/2005|20:43] C:\Program Files\Microsoft AutoRoute
[21/02/2008|23:47] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[19/08/2005|20:30] C:\Program Files\microsoft frontpage
[05/10/2005|07:30] C:\Program Files\Microsoft Games
[13/09/2005|20:35] C:\Program Files\Microsoft Money 2005
[29/01/2008|13:38] C:\Program Files\Microsoft Office
[06/09/2008|23:34] C:\Program Files\Microsoft Silverlight
[29/01/2008|13:38] C:\Program Files\Microsoft Visual Studio
[24/06/2007|21:44] C:\Program Files\Microsoft Works
[13/09/2005|20:27] C:\Program Files\Microsoft Works Suite 2005
[29/01/2008|13:36] C:\Program Files\Microsoft.NET
[17/11/2007|12:21] C:\Program Files\Mindscape
[07/09/2008|18:06] C:\Program Files\Movie Maker
[21/02/2008|23:43] C:\Program Files\MSBuild
[12/08/2008|12:20] C:\Program Files\MSN
[19/08/2005|20:27] C:\Program Files\MSN Gaming Zone
[21/02/2008|23:49] C:\Program Files\MSXML 4.0
[21/02/2008|23:47] C:\Program Files\MSXML 6.0
[16/06/2007|12:40] C:\Program Files\MUSICMATCH
[03/10/2005|21:06] C:\Program Files\muvee Technologies
[01/10/2008|10:57] C:\Program Files\Navilog1
[24/06/2007|22:17] C:\Program Files\Nero
[07/09/2008|17:56] C:\Program Files\NetMeeting
[25/05/2008|17:22] C:\Program Files\Nobilis
[03/10/2005|20:00] C:\Program Files\OfficeUpdate11
[19/08/2005|20:27] C:\Program Files\Online Services
[07/09/2008|17:42] C:\Program Files\Orange
[07/09/2008|17:56] C:\Program Files\Outlook Express
[13/09/2005|20:39] C:\Program Files\Picture It! Premium 10
[05/10/2005|08:27] C:\Program Files\QuickTime
[05/10/2005|08:27] C:\Program Files\Real
[13/09/2005|17:24] C:\Program Files\Realtek
[21/02/2008|23:39] C:\Program Files\Reference Assemblies
[21/02/2008|22:23] C:\Program Files\RegCleaner
[24/09/2008|13:46] C:\Program Files\SAGEM
[24/09/2008|13:46] C:\Program Files\Securitoo
[19/08/2005|20:29] C:\Program Files\Services en ligne
[28/10/2006|17:15] C:\Program Files\Smart Projects
[28/09/2006|21:50] C:\Program Files\Snooker
[11/11/2005|14:02] C:\Program Files\Softex
[13/09/2005|19:50] C:\Program Files\Synaptics
[28/09/2006|21:49] C:\Program Files\Ultimate Pool
[19/08/2005|20:33] C:\Program Files\Uninstall Information
[28/01/2006|14:28] C:\Program Files\VideoLAN
[05/10/2005|08:27] C:\Program Files\Viewpoint
[11/04/2006|18:36] C:\Program Files\vso
[13/09/2005|19:31] C:\Program Files\WIDCOMM
[31/07/2008|19:15] C:\Program Files\Windows Live
[22/02/2008|12:20] C:\Program Files\Windows Media Connect
[22/02/2008|12:22] C:\Program Files\Windows Media Connect 2
[07/09/2008|17:56] C:\Program Files\Windows Media Player
[07/09/2008|17:56] C:\Program Files\Windows NT
[19/08/2005|20:29] C:\Program Files\WindowsUpdate
[29/10/2006|08:52] C:\Program Files\WinRAR
[14/09/2005|01:24] C:\Program Files\X10 Hardware
[19/08/2005|20:30] C:\Program Files\xerox
[21/02/2008|22:25] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/05/2008|16:35] C:\Program Files\Fichiers communs\Adobe
[24/06/2007|22:17] C:\Program Files\Fichiers communs\Ahead
[07/02/2008|21:05] C:\Program Files\Fichiers communs\AOL
[26/09/2006|19:12] C:\Program Files\Fichiers communs\Autodesk Shared
[29/01/2008|13:38] C:\Program Files\Fichiers communs\Designer
[13/09/2005|17:24] C:\Program Files\Fichiers communs\InstallShield
[13/09/2005|21:01] C:\Program Files\Fichiers communs\Java
[16/06/2007|12:38] C:\Program Files\Fichiers communs\Logitech
[26/09/2006|19:13] C:\Program Files\Fichiers communs\Macrovision Shared
[26/07/2008|18:48] C:\Program Files\Fichiers communs\Microsoft Shared
[19/08/2005|20:29] C:\Program Files\Fichiers communs\MSSoap
[03/10/2005|21:06] C:\Program Files\Fichiers communs\muvee Technologies
[13/09/2005|20:51] C:\Program Files\Fichiers communs\Nero
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Nullsoft
[19/08/2005|22:23] C:\Program Files\Fichiers communs\ODBC
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Real
[19/08/2005|20:29] C:\Program Files\Fichiers communs\Services
[19/08/2005|22:23] C:\Program Files\Fichiers communs\SpeechEngines
[07/09/2008|17:55] C:\Program Files\Fichiers communs\System
[07/02/2008|21:08] C:\Program Files\Fichiers communs\Teleca Shared
[26/07/2008|18:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/05/2008|17:45] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 58 Processes )
IEXPLORE.EXE ~ [PID:3564]
IEXPLORE.EXE ~ [PID:3932]
iexplore.exe ~ [PID:2128]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf\fork the.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\Dart Cake Style Bin.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\kleirxac.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\medialinkgrim.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\viewbasebody.exe
C:\Program Files\64poll~1
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.adserver5[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adultfriendfinder[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@advertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.blowadvertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.cotedazurpalace[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@cotedazurpalace[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adopt.euroclick[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@pacificpoker[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@32vegas[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.32vegas[1].txt
C:\WINDOWS\Tasks\AD80CE6191A34639.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"phone bows"="C:\\DOCUME~1\\CHRIST~1\\APPLIC~1\\64POLL~1\\medialinkgrim.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Proc Deaf Delete Peak"="C:\\Documents and Settings\\All Users\\Application Data\\file joy proc deaf\\fork the.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-01 11:15:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:3][D:7]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
[F:559][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
[F:16946][D:26]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 01/10/2008|11:17 - Option : [1]
--------------------\\ Fin du rapport a 11:17:13
ila
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.73GHz )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Christophe Duval ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 49 Go Free : 16 Go
D:\ (Local Disk) - NTFS - Total : 30 Go Free : 12 Go
E:\ (Local Disk) - FAT32 - Total : 12 Go Free : 12 Go
F:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 01/10/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/12/2006|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/02/2008|21:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[26/09/2006|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[08/06/2008|23:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[14/04/2008|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[06/09/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\file joy proc deaf
[11/12/2006|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[07/09/2008|13:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[26/07/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2008|13:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[03/10/2005|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[18/08/2006|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[03/10/2005|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/05/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[05/10/2005|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[03/10/2005|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[06/09/2008|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[14/09/2005|03:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[21/02/2008|22:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[06/09/2008|19:16] C:\DOCUME~1\CHRIST~1\APPLIC~1\64 Poll Poke
[19/05/2008|16:37] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
[27/12/2005|14:54] C:\DOCUME~1\CHRIST~1\APPLIC~1\AdobeUM
[24/06/2007|22:34] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
[07/02/2008|21:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\ATI
[26/09/2006|19:18] C:\DOCUME~1\CHRIST~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\CHRIST~1\APPLIC~1\CyberLink
[14/04/2008|19:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
[07/01/2007|10:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
[19/08/2005|20:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
[24/09/2008|13:46] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
[13/11/2006|21:38] C:\DOCUME~1\CHRIST~1\APPLIC~1\La Bataille pour la Terre du Milieu
[16/06/2007|12:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Logitech
[03/10/2005|20:02] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
[26/07/2008|20:07] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
[01/07/2008|12:09] C:\DOCUME~1\CHRIST~1\APPLIC~1\MSNInstaller
[28/12/2007|13:56] C:\DOCUME~1\CHRIST~1\APPLIC~1\Nero
[03/10/2005|20:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
[25/05/2008|17:47] C:\DOCUME~1\CHRIST~1\APPLIC~1\TuneUp Software
[28/10/2006|17:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
[28/01/2006|14:28] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
[05/10/2005|08:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\You've Got Pictures Screensaver
[14/09/2005|01:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[07/02/2008|21:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[03/10/2005|20:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\CyberLink
[19/08/2005|20:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[03/10/2005|20:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[05/10/2005|08:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/10/2005|20:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[05/10/2005|08:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[19/08/2005|20:30] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[14/09/2005|03:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[05/02/2006|14:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/11/2005|16:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2008 11:00][--ah-----] C:\WINDOWS\tasks\AD80CE6191A34639.job
[01/10/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[01/10/2008 10:08][--ah-----] C:\WINDOWS\tasks\SA.DAT
( AD80CE6191A34639.job )=( c:\docume~1\christ~1\applic~1\64poll~1\viewbasebody.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[06/09/2008|19:15] C:\Program Files\64 Poll Poke
[19/05/2008|16:35] C:\Program Files\Adobe
[24/06/2007|22:11] C:\Program Files\Ahead
[26/09/2006|19:12] C:\Program Files\AnswerWorks 4.0
[26/09/2008|23:17] C:\Program Files\Applications
[13/09/2005|16:59] C:\Program Files\ATI Technologies
[11/11/2005|14:09] C:\Program Files\AuthenTec
[26/09/2006|19:15] C:\Program Files\AutoCAD 2004
[26/09/2006|19:13] C:\Program Files\Autodesk
[13/09/2005|19:57] C:\Program Files\CA
[21/02/2008|22:25] C:\Program Files\CCleaner
[06/09/2008|19:15] C:\Program Files\Circle Developement
[14/09/2005|01:24] C:\Program Files\Common Files
[19/08/2005|20:28] C:\Program Files\ComPlus Applications
[05/10/2005|02:47] C:\Program Files\CyberLink
[14/09/2005|00:59] C:\Program Files\DivX
[11/01/2006|20:49] C:\Program Files\DVD Shrink
[06/05/2006|06:40] C:\Program Files\DVDFab Gold
[18/10/2006|19:27] C:\Program Files\EA GAMES
[13/09/2005|20:40] C:\Program Files\Encarta
[07/09/2008|17:41] C:\Program Files\Fichiers communs
[03/10/2005|17:48] C:\Program Files\Google
[03/10/2005|18:51] C:\Program Files\HighMAT CD Writing Wizard
[03/10/2005|20:16] C:\Program Files\Home Cinema
[24/09/2008|13:46] C:\Program Files\InstallShield Installation Information
[19/08/2005|22:15] C:\Program Files\Intel
[06/09/2008|23:38] C:\Program Files\Internet Explorer
[09/05/2008|11:43] C:\Program Files\Inventel
[13/09/2005|21:02] C:\Program Files\Java
[05/01/2008|17:08] C:\Program Files\Kings Mahjongg
[13/09/2005|19:53] C:\Program Files\Launch Manager
[05/10/2005|08:27] C:\Program Files\Learn2.com
[16/06/2007|12:39] C:\Program Files\Logitech
[03/10/2005|20:51] C:\Program Files\Medion
[09/09/2008|15:57] C:\Program Files\Messenger
[06/09/2008|19:15] C:\Program Files\Messenger Plus! Live
[21/12/2006|18:42] C:\Program Files\Micro Application
[13/09/2005|20:43] C:\Program Files\Microsoft AutoRoute
[21/02/2008|23:47] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[19/08/2005|20:30] C:\Program Files\microsoft frontpage
[05/10/2005|07:30] C:\Program Files\Microsoft Games
[13/09/2005|20:35] C:\Program Files\Microsoft Money 2005
[29/01/2008|13:38] C:\Program Files\Microsoft Office
[06/09/2008|23:34] C:\Program Files\Microsoft Silverlight
[29/01/2008|13:38] C:\Program Files\Microsoft Visual Studio
[24/06/2007|21:44] C:\Program Files\Microsoft Works
[13/09/2005|20:27] C:\Program Files\Microsoft Works Suite 2005
[29/01/2008|13:36] C:\Program Files\Microsoft.NET
[17/11/2007|12:21] C:\Program Files\Mindscape
[07/09/2008|18:06] C:\Program Files\Movie Maker
[21/02/2008|23:43] C:\Program Files\MSBuild
[12/08/2008|12:20] C:\Program Files\MSN
[19/08/2005|20:27] C:\Program Files\MSN Gaming Zone
[21/02/2008|23:49] C:\Program Files\MSXML 4.0
[21/02/2008|23:47] C:\Program Files\MSXML 6.0
[16/06/2007|12:40] C:\Program Files\MUSICMATCH
[03/10/2005|21:06] C:\Program Files\muvee Technologies
[01/10/2008|10:57] C:\Program Files\Navilog1
[24/06/2007|22:17] C:\Program Files\Nero
[07/09/2008|17:56] C:\Program Files\NetMeeting
[25/05/2008|17:22] C:\Program Files\Nobilis
[03/10/2005|20:00] C:\Program Files\OfficeUpdate11
[19/08/2005|20:27] C:\Program Files\Online Services
[07/09/2008|17:42] C:\Program Files\Orange
[07/09/2008|17:56] C:\Program Files\Outlook Express
[13/09/2005|20:39] C:\Program Files\Picture It! Premium 10
[05/10/2005|08:27] C:\Program Files\QuickTime
[05/10/2005|08:27] C:\Program Files\Real
[13/09/2005|17:24] C:\Program Files\Realtek
[21/02/2008|23:39] C:\Program Files\Reference Assemblies
[21/02/2008|22:23] C:\Program Files\RegCleaner
[24/09/2008|13:46] C:\Program Files\SAGEM
[24/09/2008|13:46] C:\Program Files\Securitoo
[19/08/2005|20:29] C:\Program Files\Services en ligne
[28/10/2006|17:15] C:\Program Files\Smart Projects
[28/09/2006|21:50] C:\Program Files\Snooker
[11/11/2005|14:02] C:\Program Files\Softex
[13/09/2005|19:50] C:\Program Files\Synaptics
[28/09/2006|21:49] C:\Program Files\Ultimate Pool
[19/08/2005|20:33] C:\Program Files\Uninstall Information
[28/01/2006|14:28] C:\Program Files\VideoLAN
[05/10/2005|08:27] C:\Program Files\Viewpoint
[11/04/2006|18:36] C:\Program Files\vso
[13/09/2005|19:31] C:\Program Files\WIDCOMM
[31/07/2008|19:15] C:\Program Files\Windows Live
[22/02/2008|12:20] C:\Program Files\Windows Media Connect
[22/02/2008|12:22] C:\Program Files\Windows Media Connect 2
[07/09/2008|17:56] C:\Program Files\Windows Media Player
[07/09/2008|17:56] C:\Program Files\Windows NT
[19/08/2005|20:29] C:\Program Files\WindowsUpdate
[29/10/2006|08:52] C:\Program Files\WinRAR
[14/09/2005|01:24] C:\Program Files\X10 Hardware
[19/08/2005|20:30] C:\Program Files\xerox
[21/02/2008|22:25] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/05/2008|16:35] C:\Program Files\Fichiers communs\Adobe
[24/06/2007|22:17] C:\Program Files\Fichiers communs\Ahead
[07/02/2008|21:05] C:\Program Files\Fichiers communs\AOL
[26/09/2006|19:12] C:\Program Files\Fichiers communs\Autodesk Shared
[29/01/2008|13:38] C:\Program Files\Fichiers communs\Designer
[13/09/2005|17:24] C:\Program Files\Fichiers communs\InstallShield
[13/09/2005|21:01] C:\Program Files\Fichiers communs\Java
[16/06/2007|12:38] C:\Program Files\Fichiers communs\Logitech
[26/09/2006|19:13] C:\Program Files\Fichiers communs\Macrovision Shared
[26/07/2008|18:48] C:\Program Files\Fichiers communs\Microsoft Shared
[19/08/2005|20:29] C:\Program Files\Fichiers communs\MSSoap
[03/10/2005|21:06] C:\Program Files\Fichiers communs\muvee Technologies
[13/09/2005|20:51] C:\Program Files\Fichiers communs\Nero
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Nullsoft
[19/08/2005|22:23] C:\Program Files\Fichiers communs\ODBC
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Real
[19/08/2005|20:29] C:\Program Files\Fichiers communs\Services
[19/08/2005|22:23] C:\Program Files\Fichiers communs\SpeechEngines
[07/09/2008|17:55] C:\Program Files\Fichiers communs\System
[07/02/2008|21:08] C:\Program Files\Fichiers communs\Teleca Shared
[26/07/2008|18:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/05/2008|17:45] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 58 Processes )
IEXPLORE.EXE ~ [PID:3564]
IEXPLORE.EXE ~ [PID:3932]
iexplore.exe ~ [PID:2128]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf\fork the.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\Dart Cake Style Bin.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\kleirxac.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\medialinkgrim.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\viewbasebody.exe
C:\Program Files\64poll~1
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.adserver5[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adultfriendfinder[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@advertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.blowadvertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.cotedazurpalace[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@cotedazurpalace[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adopt.euroclick[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@pacificpoker[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@32vegas[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.32vegas[1].txt
C:\WINDOWS\Tasks\AD80CE6191A34639.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"phone bows"="C:\\DOCUME~1\\CHRIST~1\\APPLIC~1\\64POLL~1\\medialinkgrim.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Proc Deaf Delete Peak"="C:\\Documents and Settings\\All Users\\Application Data\\file joy proc deaf\\fork the.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-01 11:15:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:3][D:7]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
[F:559][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
[F:16946][D:26]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 01/10/2008|11:17 - Option : [1]
--------------------\\ Fin du rapport a 11:17:13
ila
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.73GHz )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Christophe Duval ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 49 Go Free : 16 Go
D:\ (Local Disk) - NTFS - Total : 30 Go Free : 12 Go
E:\ (Local Disk) - FAT32 - Total : 12 Go Free : 12 Go
F:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 01/10/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/12/2006|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/02/2008|21:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[26/09/2006|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[08/06/2008|23:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[14/04/2008|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[06/09/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\file joy proc deaf
[11/12/2006|18:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[07/09/2008|13:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[26/07/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/01/2008|13:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[03/10/2005|21:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[18/08/2006|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[03/10/2005|17:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[25/05/2008|17:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[05/10/2005|08:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[03/10/2005|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[06/09/2008|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[14/09/2005|03:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\X10 Settings
[21/02/2008|22:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[06/09/2008|19:16] C:\DOCUME~1\CHRIST~1\APPLIC~1\64 Poll Poke
[19/05/2008|16:37] C:\DOCUME~1\CHRIST~1\APPLIC~1\Adobe
[27/12/2005|14:54] C:\DOCUME~1\CHRIST~1\APPLIC~1\AdobeUM
[24/06/2007|22:34] C:\DOCUME~1\CHRIST~1\APPLIC~1\Ahead
[07/02/2008|21:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\CHRIST~1\APPLIC~1\ATI
[26/09/2006|19:18] C:\DOCUME~1\CHRIST~1\APPLIC~1\Autodesk
[28/01/2006|17:49] C:\DOCUME~1\CHRIST~1\APPLIC~1\CyberLink
[14/04/2008|19:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\dvdcss
[07/01/2007|10:59] C:\DOCUME~1\CHRIST~1\APPLIC~1\Help
[19/08/2005|20:30] C:\DOCUME~1\CHRIST~1\APPLIC~1\Identities
[24/09/2008|13:46] C:\DOCUME~1\CHRIST~1\APPLIC~1\InstallShield
[13/11/2006|21:38] C:\DOCUME~1\CHRIST~1\APPLIC~1\La Bataille pour la Terre du Milieu
[16/06/2007|12:43] C:\DOCUME~1\CHRIST~1\APPLIC~1\Logitech
[03/10/2005|20:02] C:\DOCUME~1\CHRIST~1\APPLIC~1\Macromedia
[26/07/2008|20:07] C:\DOCUME~1\CHRIST~1\APPLIC~1\Microsoft
[01/07/2008|12:09] C:\DOCUME~1\CHRIST~1\APPLIC~1\MSNInstaller
[28/12/2007|13:56] C:\DOCUME~1\CHRIST~1\APPLIC~1\Nero
[03/10/2005|20:10] C:\DOCUME~1\CHRIST~1\APPLIC~1\Sun
[25/05/2008|17:47] C:\DOCUME~1\CHRIST~1\APPLIC~1\TuneUp Software
[28/10/2006|17:03] C:\DOCUME~1\CHRIST~1\APPLIC~1\U3
[28/01/2006|14:28] C:\DOCUME~1\CHRIST~1\APPLIC~1\vlc
[05/10/2005|08:27] C:\DOCUME~1\CHRIST~1\APPLIC~1\You've Got Pictures Screensaver
[14/09/2005|01:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[07/02/2008|21:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\AOL
[13/09/2005|17:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[03/10/2005|20:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\CyberLink
[19/08/2005|20:30] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[03/10/2005|20:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[05/10/2005|08:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/10/2005|20:10] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[05/10/2005|08:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[19/08/2005|20:30] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[14/09/2005|03:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\X10 Commander
[05/02/2006|14:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/11/2005|16:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[01/10/2008 11:00][--ah-----] C:\WINDOWS\tasks\AD80CE6191A34639.job
[01/10/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[01/10/2008 10:08][--ah-----] C:\WINDOWS\tasks\SA.DAT
( AD80CE6191A34639.job )=( c:\docume~1\christ~1\applic~1\64poll~1\viewbasebody.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[06/09/2008|19:15] C:\Program Files\64 Poll Poke
[19/05/2008|16:35] C:\Program Files\Adobe
[24/06/2007|22:11] C:\Program Files\Ahead
[26/09/2006|19:12] C:\Program Files\AnswerWorks 4.0
[26/09/2008|23:17] C:\Program Files\Applications
[13/09/2005|16:59] C:\Program Files\ATI Technologies
[11/11/2005|14:09] C:\Program Files\AuthenTec
[26/09/2006|19:15] C:\Program Files\AutoCAD 2004
[26/09/2006|19:13] C:\Program Files\Autodesk
[13/09/2005|19:57] C:\Program Files\CA
[21/02/2008|22:25] C:\Program Files\CCleaner
[06/09/2008|19:15] C:\Program Files\Circle Developement
[14/09/2005|01:24] C:\Program Files\Common Files
[19/08/2005|20:28] C:\Program Files\ComPlus Applications
[05/10/2005|02:47] C:\Program Files\CyberLink
[14/09/2005|00:59] C:\Program Files\DivX
[11/01/2006|20:49] C:\Program Files\DVD Shrink
[06/05/2006|06:40] C:\Program Files\DVDFab Gold
[18/10/2006|19:27] C:\Program Files\EA GAMES
[13/09/2005|20:40] C:\Program Files\Encarta
[07/09/2008|17:41] C:\Program Files\Fichiers communs
[03/10/2005|17:48] C:\Program Files\Google
[03/10/2005|18:51] C:\Program Files\HighMAT CD Writing Wizard
[03/10/2005|20:16] C:\Program Files\Home Cinema
[24/09/2008|13:46] C:\Program Files\InstallShield Installation Information
[19/08/2005|22:15] C:\Program Files\Intel
[06/09/2008|23:38] C:\Program Files\Internet Explorer
[09/05/2008|11:43] C:\Program Files\Inventel
[13/09/2005|21:02] C:\Program Files\Java
[05/01/2008|17:08] C:\Program Files\Kings Mahjongg
[13/09/2005|19:53] C:\Program Files\Launch Manager
[05/10/2005|08:27] C:\Program Files\Learn2.com
[16/06/2007|12:39] C:\Program Files\Logitech
[03/10/2005|20:51] C:\Program Files\Medion
[09/09/2008|15:57] C:\Program Files\Messenger
[06/09/2008|19:15] C:\Program Files\Messenger Plus! Live
[21/12/2006|18:42] C:\Program Files\Micro Application
[13/09/2005|20:43] C:\Program Files\Microsoft AutoRoute
[21/02/2008|23:47] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[19/08/2005|20:30] C:\Program Files\microsoft frontpage
[05/10/2005|07:30] C:\Program Files\Microsoft Games
[13/09/2005|20:35] C:\Program Files\Microsoft Money 2005
[29/01/2008|13:38] C:\Program Files\Microsoft Office
[06/09/2008|23:34] C:\Program Files\Microsoft Silverlight
[29/01/2008|13:38] C:\Program Files\Microsoft Visual Studio
[24/06/2007|21:44] C:\Program Files\Microsoft Works
[13/09/2005|20:27] C:\Program Files\Microsoft Works Suite 2005
[29/01/2008|13:36] C:\Program Files\Microsoft.NET
[17/11/2007|12:21] C:\Program Files\Mindscape
[07/09/2008|18:06] C:\Program Files\Movie Maker
[21/02/2008|23:43] C:\Program Files\MSBuild
[12/08/2008|12:20] C:\Program Files\MSN
[19/08/2005|20:27] C:\Program Files\MSN Gaming Zone
[21/02/2008|23:49] C:\Program Files\MSXML 4.0
[21/02/2008|23:47] C:\Program Files\MSXML 6.0
[16/06/2007|12:40] C:\Program Files\MUSICMATCH
[03/10/2005|21:06] C:\Program Files\muvee Technologies
[01/10/2008|10:57] C:\Program Files\Navilog1
[24/06/2007|22:17] C:\Program Files\Nero
[07/09/2008|17:56] C:\Program Files\NetMeeting
[25/05/2008|17:22] C:\Program Files\Nobilis
[03/10/2005|20:00] C:\Program Files\OfficeUpdate11
[19/08/2005|20:27] C:\Program Files\Online Services
[07/09/2008|17:42] C:\Program Files\Orange
[07/09/2008|17:56] C:\Program Files\Outlook Express
[13/09/2005|20:39] C:\Program Files\Picture It! Premium 10
[05/10/2005|08:27] C:\Program Files\QuickTime
[05/10/2005|08:27] C:\Program Files\Real
[13/09/2005|17:24] C:\Program Files\Realtek
[21/02/2008|23:39] C:\Program Files\Reference Assemblies
[21/02/2008|22:23] C:\Program Files\RegCleaner
[24/09/2008|13:46] C:\Program Files\SAGEM
[24/09/2008|13:46] C:\Program Files\Securitoo
[19/08/2005|20:29] C:\Program Files\Services en ligne
[28/10/2006|17:15] C:\Program Files\Smart Projects
[28/09/2006|21:50] C:\Program Files\Snooker
[11/11/2005|14:02] C:\Program Files\Softex
[13/09/2005|19:50] C:\Program Files\Synaptics
[28/09/2006|21:49] C:\Program Files\Ultimate Pool
[19/08/2005|20:33] C:\Program Files\Uninstall Information
[28/01/2006|14:28] C:\Program Files\VideoLAN
[05/10/2005|08:27] C:\Program Files\Viewpoint
[11/04/2006|18:36] C:\Program Files\vso
[13/09/2005|19:31] C:\Program Files\WIDCOMM
[31/07/2008|19:15] C:\Program Files\Windows Live
[22/02/2008|12:20] C:\Program Files\Windows Media Connect
[22/02/2008|12:22] C:\Program Files\Windows Media Connect 2
[07/09/2008|17:56] C:\Program Files\Windows Media Player
[07/09/2008|17:56] C:\Program Files\Windows NT
[19/08/2005|20:29] C:\Program Files\WindowsUpdate
[29/10/2006|08:52] C:\Program Files\WinRAR
[14/09/2005|01:24] C:\Program Files\X10 Hardware
[19/08/2005|20:30] C:\Program Files\xerox
[21/02/2008|22:25] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/05/2008|16:35] C:\Program Files\Fichiers communs\Adobe
[24/06/2007|22:17] C:\Program Files\Fichiers communs\Ahead
[07/02/2008|21:05] C:\Program Files\Fichiers communs\AOL
[26/09/2006|19:12] C:\Program Files\Fichiers communs\Autodesk Shared
[29/01/2008|13:38] C:\Program Files\Fichiers communs\Designer
[13/09/2005|17:24] C:\Program Files\Fichiers communs\InstallShield
[13/09/2005|21:01] C:\Program Files\Fichiers communs\Java
[16/06/2007|12:38] C:\Program Files\Fichiers communs\Logitech
[26/09/2006|19:13] C:\Program Files\Fichiers communs\Macrovision Shared
[26/07/2008|18:48] C:\Program Files\Fichiers communs\Microsoft Shared
[19/08/2005|20:29] C:\Program Files\Fichiers communs\MSSoap
[03/10/2005|21:06] C:\Program Files\Fichiers communs\muvee Technologies
[13/09/2005|20:51] C:\Program Files\Fichiers communs\Nero
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Nullsoft
[19/08/2005|22:23] C:\Program Files\Fichiers communs\ODBC
[05/10/2005|08:27] C:\Program Files\Fichiers communs\Real
[19/08/2005|20:29] C:\Program Files\Fichiers communs\Services
[19/08/2005|22:23] C:\Program Files\Fichiers communs\SpeechEngines
[07/09/2008|17:55] C:\Program Files\Fichiers communs\System
[07/02/2008|21:08] C:\Program Files\Fichiers communs\Teleca Shared
[26/07/2008|18:47] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/05/2008|17:45] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 58 Processes )
IEXPLORE.EXE ~ [PID:3564]
IEXPLORE.EXE ~ [PID:3932]
iexplore.exe ~ [PID:2128]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf
C:\DOCUME~1\ALLUSE~1\APPLIC~1\File Joy Proc Deaf\fork the.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\Dart Cake Style Bin.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\kleirxac.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\medialinkgrim.exe
C:\DOCUME~1\CHRIST~1\APPLIC~1\64poll~1\viewbasebody.exe
C:\Program Files\64poll~1
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.adserver5[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adultfriendfinder[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@advertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@www.blowadvertising[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.cotedazurpalace[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@cotedazurpalace[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@adopt.euroclick[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@pacificpoker[2].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@32vegas[1].txt
C:\DOCUME~1\CHRIST~1\Cookies\christophe_duval@banner.32vegas[1].txt
C:\WINDOWS\Tasks\AD80CE6191A34639.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"phone bows"="C:\\DOCUME~1\\CHRIST~1\\APPLIC~1\\64POLL~1\\medialinkgrim.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Proc Deaf Delete Peak"="C:\\Documents and Settings\\All Users\\Application Data\\file joy proc deaf\\fork the.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-01 11:15:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:3][D:7]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\Temp
[F:559][D:0]-> C:\DOCUME~1\CHRIST~1\Cookies
[F:16946][D:26]-> C:\DOCUME~1\CHRIST~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 01/10/2008|11:17 - Option : [1]
--------------------\\ Fin du rapport a 11:17:13
ila
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
benurrr
Messages postés
9638
Date d'inscription
samedi 24 mai 2008
Statut
Contributeur sécurité
Dernière intervention
11 janvier 2012
107
1 oct. 2008 à 10:50
1 oct. 2008 à 10:50
salut
Fais un clic droit sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).
Laisse-toi guider. Au menu principal, choisis 1 et valides.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)
Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse.
Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
TUTO :: http://www.malekal.com/Adware.Magic_Control.php
Fais un clic droit sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).
Laisse-toi guider. Au menu principal, choisis 1 et valides.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)
Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse.
Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
TUTO :: http://www.malekal.com/Adware.Magic_Control.php
benurrr
Messages postés
9638
Date d'inscription
samedi 24 mai 2008
Statut
Contributeur sécurité
Dernière intervention
11 janvier 2012
107
1 oct. 2008 à 11:42
1 oct. 2008 à 11:42
y'a un bug sur ccm on reprend plus-tard
1 oct. 2008 à 11:22
Télécharge LOP S&D d'Eric71 ici https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
Double-clique dessus pour lancer l'installation.
Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau.
Sélectionne la langue souhaitée , puis choisis l'option 1 ( Recherche )
Patiente jusqu'à la fin du scan.
Poste le rapport généré (situé aussi ici C:\lopR.txt )
( Si le Bureau ne réapparaît pas, lance le gestionnaire des tâches en cliquant sur Ctrl + Alt + Suppr , puis Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )