Bagle Winupgro, FindyKill inoperant

Fermé
crazy_phil_fr - 18 déc. 2008 à 11:12
 boubou87 - 8 janv. 2009 à 17:26
Bonjour,

j'ai eu le malheur de lancer un crack il y a 3 jours et bingo, je me le suis pris (winupgro)

ayant parcouru pas mal de topics sur FindyKill, je l'ai installé et utilisé.

là, ou j'ai un problème, c'est que la partie nettoyage ne se poursuit pas après le premier reboot

peut être est ce du à ma version de windows (XP 64)
merci d'avance de votre aide
Philippe

4 réponses

crazy_phil_fr
18 déc. 2008 à 11:14
Voici le rapport de FindyKill



----------------- FindyKill V4.709 ------------------

* User : Administrator - THE-BEAST
* Emplacement : C:\Program Files\FindyKill
* Outils Mis a jours le 10/12/08 par Chiquitine29
* Recherche effectuée à 11:13:44 le 18/12/2008
* Windows_NT - Internet Explorer 7.0.5730.11

((((((((((((((((( *** Recherche *** ))))))))))))))))))


--------------- [ Processus actifs ] ----------------


C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Java\jre6\bin\jqs.exe
C:\Program Files (x86)\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files (x86)\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\WINDOWS\syswow64\wbem\wmiprvse.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Curse\CurseClient.exe
C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
C:\Program Files (x86)\FarStone\VirtualDrive\VDTask.exe
C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
C:\Program Files (x86)\FarStone\VirtualDrive\VHD\RDTask.exe
C:\Program Files (x86)\Belkin\Nostromo\nost_LM.exe
C:\Program Files (x86)\Omega Research\Program\orschd.exe
C:\Program Files (x86)\TechSmith\SnagIt 8\SnagIt32.exe
C:\Program Files (x86)\iPod\bin\iPodService.exe
C:\Documents and Settings\Administrator\Application Data\drivers\winupgro.exe
C:\Program Files (x86)\1st Clock\1stClock.exe
C:\Program Files (x86)\TechSmith\SnagIt 8\TSCHelp.exe
C:\Program Files (x86)\TechSmith\SnagIt 8\SnagPriv.exe
C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\wintems.exe
C:\Program Files (x86)\Mozilla Firefox 3.1 Beta 1\firefox.exe
C:\Documents and Settings\Administrator\Application Data\drivers\downld\1064875.exe

--------------- [ Processus infectieux stoppés ] ----------------


"C:\WINDOWS\system32\wintems.exe" (1964)
"C:\Documents and Settings\Administrator\Application Data\drivers\downld\1064875.exe" (3648)
"C:\Documents and Settings\Administrator\Application Data\drivers\winupgro.exe" (2084)
"C:\Documents and Settings\Administrator\Application Data\drivers\winupgro.exe" (2084)


--------------- [ Fichiers/Dossiers infectieux ] ----------------


»»»» Presence des fichiers dans C:


»»»» Presence des fichiers dans C:\WINDOWS


»»»» Presence des fichiers dans C:\WINDOWS\Prefetch

Found ! - C:\WINDOWS\prefetch\1031250.EXE-07C6D085.pf
Found ! - C:\WINDOWS\prefetch\1045625.EXE-18D4AD9A.pf
Found ! - C:\WINDOWS\prefetch\1064875.EXE-348D84BB.pf
Found ! - C:\WINDOWS\prefetch\81234.EXE-37D01A3F.pf
Found ! - C:\WINDOWS\prefetch\876718.EXE-24A79AA4.pf
Found ! - C:\WINDOWS\prefetch\894093.EXE-00FA77CA.pf
Found ! - C:\WINDOWS\prefetch\MDELK.EXE-04249117.pf
Found ! - C:\WINDOWS\prefetch\WINTEMS.EXE-238845E8.pf
Found ! - C:\WINDOWS\prefetch\WINUPGRO.EXE-204A6617.pf

»»»» Presence des fichiers dans C:\WINDOWS\system32


»»»» Presence des fichiers dans C:\WINDOWS\system32\config\systemprofile\AppData\Roaming


»»»» Presence des fichiers dans C:\WINDOWS\system32\drivers

Found ! [18/12/2008 10:47] - C:\WINDOWS\system32\drivers\srosa.sys
Found ! [18/12/2008 10:47] - C:\WINDOWS\system32\drivers\srosa2.sys

»»»» Presence des fichiers dans C:\Documents and Settings\Administrator\Application Data

Found ! [11/12/2008 09:31] - "C:\Documents and Settings\Administrator\Application Data\drivers"
Found ! [18/12/2008 11:03] - "C:\Documents and Settings\Administrator\Application Data\drivers\srosa.sys"
Found ! [18/12/2008 11:03] - "C:\Documents and Settings\Administrator\Application Data\drivers\srosa2.sys"
Found ! [16/10/2005 09:06] - "C:\Documents and Settings\Administrator\Application Data\drivers\winupgro.exe"
Found ! [18/12/2008 11:06] - "C:\Documents and Settings\Administrator\Application Data\drivers\downld"
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1003015.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1004406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1004890.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1005656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1006421.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1006828.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1014515.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1015250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1015656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1024093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1024718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1025015.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1031250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1044437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1045625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1046093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1046421.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1049281.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1049968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1061062.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1062765.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1063140.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1063671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1064875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1064968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1065390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1066093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1066906.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1067312.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1074609.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1075937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1076296.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1082031.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1083250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1083453.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1084984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1085437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1085718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1086406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1093531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1102781.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1103437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1103578.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1148453.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1149734.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1150046.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1390515.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1392203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1392531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1398781.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1404875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1405390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1406406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1408062.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1430203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1480093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1480968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1494828.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1496140.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1496546.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1497343.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1498109.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1498531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1515375.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1516593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1516953.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1523109.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15560781.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15570484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15572984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15573390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15574281.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15581265.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15581390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15582000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15582625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15582937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15609250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15661640.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15663000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15664843.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15666390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15666421.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15686640.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15687765.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15688296.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15689375.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15690343.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15690812.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15709734.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15710593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15710906.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15717906.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15789437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15789828.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15789875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1579906.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1582218.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\1582625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\15992359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16003937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16005250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16005578.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16006218.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16006859.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16006937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16007359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16007859.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16008140.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16093703.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16137437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16151625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16152625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16153031.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16153750.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16154468.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16154875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16169171.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16169687.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16170000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16175265.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16223875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16224546.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\16224921.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30198828.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30216250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30218265.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30218593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30219218.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30239062.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30239203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30239812.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30240328.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30240609.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30265625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30334484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30334500.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30393968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30395234.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30395656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30396718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30397718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30398125.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30416250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30417171.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30417531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30426546.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30431156.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30491437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30492359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30492468.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30635703.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30644343.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30645968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30646296.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30646953.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30678187.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30678375.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30678859.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30679437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30679718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30700656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30743625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30743781.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30743796.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30759359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30760437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30760828.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30761625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30762375.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30762796.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30776656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30777125.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30777484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30785984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30827984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30828593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\30828875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44906843.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44913812.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44922484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44925250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44925671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44926671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44928203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44928312.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44928984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44930187.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44930671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\44954203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45026796.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45028000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45028296.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45052203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45054343.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45055406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45057234.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45058171.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45058687.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45078390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45079187.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45079531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45141671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45143156.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45143500.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45237000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45245562.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45247734.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45248125.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45248875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45269593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45269671.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45270171.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45271093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45271390.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45303046.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45356531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45357468.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45374890.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45376312.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45376734.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45377625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45378406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45378812.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45394546.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45395265.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45395656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45401546.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45449281.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45450890.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\45451593.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59863765.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59878046.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59879859.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59880203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59881000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59900343.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59900437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59900890.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59901406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59901718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59931078.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59997937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\59997968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60018625.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60019750.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60020203.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60021000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60021796.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60022218.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60036984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60037609.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60037937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60045234.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60094640.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60095734.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\60096031.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\71875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\73968.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\74000.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\79484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\81234.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\869218.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\871265.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\871281.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\876718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\87906.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\886328.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\886781.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\888312.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\888421.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\888984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\894093.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\89656.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\897359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\898250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\898531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\89984.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\902031.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\903890.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\904250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\910484.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\912031.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\912359.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\912953.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\913062.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\913640.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\913921.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\914109.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\914187.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\914703.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\915531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\915812.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\935609.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\953250.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\954406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\961328.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\964406.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\974437.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\975156.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\98234.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\983875.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\984750.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\990140.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\991515.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\991937.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\992718.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\99312.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\993531.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\993921.exe
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Application Data\drivers\downld\99578.exe

»»»» Presence des fichiers dans C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp


»»»» Presence des fichiers dans C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5

Found ! [10/10/2007 06:56] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\0DX2HWCM\21B6D957DDA3D3DB64486CB528338[1].jpg
Found ! [11/12/2008 09:35] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\1RX3QKT2\b64_1[1].jpg
Found ! [11/12/2008 17:40] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\1RX3QKT2\b64_3[1].jpg
Found ! [11/12/2008 13:38] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\2YSJCLWC\b64_1[1].jpg
Found ! [11/12/2008 17:44] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\4R3SXXBN\b64_2[1].jpg
Found ! [11/12/2008 21:45] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\4R3SXXBN\b64_3[1].jpg
Found ! [12/12/2008 03:14] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6WXOYMHN\b64[1].jpg
Found ! [12/12/2008 07:18] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6WXOYMHN\b64[2].jpg
Found ! [11/12/2008 17:43] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6WXOYMHN\b64_1[1].jpg
Found ! [11/12/2008 23:12] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6WXOYMHN\b64_2[1].jpg
Found ! [18/12/2008 11:03] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6WXOYMHN\b64_3[1].jpg
Found ! [11/12/2008 13:36] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\HPX4SLCK\b64[1].jpg
Found ! [12/12/2008 07:19] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\HPX4SLCK\b64_2[1].jpg
Found ! [18/12/2008 11:06] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\HPX4SLCK\b64_2[2].jpg
Found ! [12/12/2008 15:25] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\J4KAKLPK\b64[1].jpg
Found ! [11/12/2008 23:11] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\J4KAKLPK\b64_1[1].jpg
Found ! [12/12/2008 03:16] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\J4KAKLPK\b64_1[2].jpg
Found ! [18/12/2008 00:48] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\J4KAKLPK\b64_3[1].jpg
Found ! [11/12/2008 13:39] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\JSWW3CL4\b64_2[1].jpg
Found ! [18/12/2008 00:38] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\JSWW3CL4\b64_3[1].jpg
Found ! [11/12/2008 21:46] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\MSXOZQNR\b64[1].jpg
Found ! [12/12/2008 11:23] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\MSXOZQNR\b64_1[1].jpg
Found ! [12/12/2008 15:27] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\MSXOZQNR\b64_2[1].jpg
Found ! [12/12/2008 03:13] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\MSXOZQNR\b64_3[1].jpg
Found ! [08/11/2008 23:30] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\PXBDYNKC\eb648cf75733f64c6055624c6712f399a4642dda[1].jpg
Found ! [11/12/2008 09:32] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\b64[1].jpg
Found ! [11/12/2008 23:10] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\b64[2].jpg
Found ! [12/12/2008 03:16] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\b64_2[1].jpg
Found ! [12/12/2008 11:20] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\b64_3[1].jpg
Found ! [12/12/2008 15:24] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\b64_3[2].jpg
Found ! [08/11/2008 23:30] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QTF1UUX4\eb648cf75733f64c6055624c6712f399a4642dda_medium[1].jpg
Found ! [18/12/2008 00:41] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\WMNYOVPM\b64_1[1].jpg
Found ! [11/12/2008 13:36] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\XJ6WQ2LK\b64_3[1].jpg
Found ! [11/12/2008 17:41] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\ZHZRX7V3\b64[1].jpg
Found ! [12/12/2008 11:21] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\ZHZRX7V3\b64[2].jpg
Found ! [12/12/2008 15:27] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\ZHZRX7V3\b64_1[1].jpg
Found ! [18/12/2008 11:05] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\ZHZRX7V3\b64_1[2].jpg
Found ! [11/12/2008 09:35] - C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\ZHZRX7V3\b64_2[1].jpg
Found ! [31/08/2007 16:44] - C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Local Cache\7B5560BB781B40259A06350E9B643B6E_more.jpg
Found ! [10/09/2007 07:07] - C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Local Cache\D3987B641C134048B815DB578D607F42_more.jpg

--------------- [ Registre / Startup ] ----------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
SpybotSD TeaTimer=C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}="C:\Program Files (x86)\Common Files\Ahead\lib\NMBgMonitor.exe"
CurseClient=C:\Program Files (x86)\Curse\CurseClient.exe -silent
drvsyskit=C:\Documents and Settings\Administrator\Application Data\drivers\winupgro.exe
mule_st_key=C:\Documents and Settings\Administrator\Application Data\m\flec006.exe
german.exe=C:\WINDOWS\system32\wintems.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
{0228e555-4f9c-4e35-a3ec-b109a192b4c2}="C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe"
VirtualDrive="C:\Program Files (x86)\FarStone\VirtualDrive\VDTask.exe" /AutoRestore
SunJavaUpdateSched="C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
SoundMAXPnP=C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
RAMDrive="C:\Program Files (x86)\FarStone\VirtualDrive\VHD\RDTask.exe"
nod32kui="C:\Program Files (x86)\Eset\nod32kui.exe" /WAITSERVICE
NeroFilterCheck=C:\WINDOWS\SysWOW64\NeroCheck.exe
AsusStartupHelp="C:\Program Files (x86)\ASUS\AASP\1.00.14\AsRunHelp.exe"
Adobe Reader Speed Launcher="C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"
QuickTime Task="C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
iTunesHelper="C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
<NO NAME>=
Installed=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
<NO NAME>=
NoChange=1
Installed=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
<NO NAME>=
Installed=1

[HKEY_CURRENT_USER\software\local appwizard-generated applications\MCActiveX]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\MultiCharts]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\NMBgMonitor]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\serial]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\winupgro]

--------------- [ Registre / Clés infectieuses ] ----------------


Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\Local AppWizard-Generated Applications\serial
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-9554814-489915656-3676989438-500\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\serial
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
Found ! - HKEY_CURRENT_USER\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\FFC
Found ! - [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] | drvsyskit
Found ! - [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] | german.exe
Found ! - [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] | mule_st_key

--------------- [ Etat / Services ] ----------------

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot

- sans echec non fonctionnel !!

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal

- sans echec non fonctionnel !!

Clé manquante : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network

- sans echec non fonctionnel !!



+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]

/!\ Ndisuio - Type de démarrage = 4

/!\ Ip6Fw - Type de démarrage = 4

/!\ SharedAccess - Type de démarrage = 4

/!\ wuauserv - Type de démarrage = 4

/!\ wscsvc - Type de démarrage = 4

/!\ WinDefend - Type de démarrage = 4



--------------- [ Recherche dans supports amovibles] ----------------


+- Informations :

C: - Fixed Drive
D: - Fixed Drive
F: - Fixed Drive
H: - CD-ROM Drive
I: - CD-ROM Drive
J: - Fixed Drive
K: - Fixed Drive
X: - CD-ROM Drive

+- Contenu de l'autorun : H:\autorun.inf

[autorun]
OPEN=WalmasterTrader.exe
ICON=WalmasterTrader.ICO,0



+- Contenu de l'autorun : I:\autorun.inf

[AutoRun]
ICON=joystick.ico
open=Joystick.exe


+- Contenu de l'autorun : X:\autorun.inf

[autorun]
open=autoplay.exe
icon=war3.ico



+- presence des fichiers :

Found ! [15/11/2006 09:09][-r-------] - H:\autorun.inf
Found ! [25/04/2008 12:47][-r-------] - I:\autorun.inf
Found ! [23/07/2001 20:25][-r-------] - X:\autorun.inf


--------------- [ Registre / Mountpoint2 ] ----------------


-> Not found !


------------------- ! Fin du rapport ! --------------------
0
daboon Messages postés 6 Date d'inscription jeudi 18 décembre 2008 Statut Membre Dernière intervention 18 décembre 2008
18 déc. 2008 à 12:12
Même problème que toi!
FindyKill ne termine pas sa suppression ...
0
Bjr,
Combofix renommé en Killbagle (très important) éradique winupgro. plus de soucis.
Merci
0
daboon Messages postés 6 Date d'inscription jeudi 18 décembre 2008 Statut Membre Dernière intervention 18 décembre 2008
18 déc. 2008 à 19:58
salut,

combofix a été mon sauveur, il a bien supprimé winupgro.
le process est long mais impeccable!


bon courage!
0
crazy_phll_fr
19 déc. 2008 à 07:48
merci daboon,

je m'etais decidé à faire bcp de taf à la main, suppression des clefs, etc... et çà marche, mais je vais assurer le coup avec le soft que tu me conseilles
0
Utilisateur anonyme
19 déc. 2008 à 07:52
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir


--> Fais clic droit sur le raccourci FindyKill sur ton bureau

--> Choisi executer en tant qu administrateur

--> Au menu principal,choisi l option 2 (Suppression)


/!\ il y aura 2 redémarrage, laisse travailler l outils jusqu a l apparition du message "nettoyage effectué"

/!\ Ne te sert pas du pc durant la suppression , ton bureau ne sera pas accessible c est normal !

-------> ensuite post le rapport FindyKill.txt

Note : le rapport FindyKill.txt est sauvegardé a la racine du disque
0