--------------------\\ Lop S&D 4.2.4-6 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU T2310 @ 1.46GHz )
BIOS : Default System BIOS
USER : Amaury ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 55 Go Free : 17 Go
D:\ (Local Disk) - NTFS - Total : 49 Go Free : 47 Go
E:\ (USB)
"C:\Lop SD" ( MAJ : 20-10-2008|20:35 )
Option : [1] ( lun. 06/04/2009| 8:52 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[28/12/2007|23:02] C:\Users\Amaury\AppData\Local\Adobe
[18/01/2009|01:45] C:\Users\Amaury\AppData\Local\Apple
[24/01/2009|23:09] C:\Users\Amaury\AppData\Local\Apple Computer
[31/10/2007|12:52] C:\Users\Amaury\AppData\Local\Application Data
[31/10/2007|12:55] C:\Users\Amaury\AppData\Local\ATI
[03/04/2009|11:36] C:\Users\Amaury\AppData\Local\d3d9caps.dat
[24/11/2008|19:47] C:\Users\Amaury\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[25/03/2009|17:24] C:\Users\Amaury\AppData\Local\GDIPFONTCACHEV1.DAT
[25/03/2009|14:51] C:\Users\Amaury\AppData\Local\Google
[31/10/2007|12:52] C:\Users\Amaury\AppData\Local\Historique
[06/04/2009|08:38] C:\Users\Amaury\AppData\Local\IconCache.db
[20/09/2008|23:59] C:\Users\Amaury\AppData\Local\Microsoft
[01/11/2007|00:24] C:\Users\Amaury\AppData\Local\Microsoft Games
[06/12/2007|22:18] C:\Users\Amaury\AppData\Local\Microsoft Help
[29/12/2007|23:30] C:\Users\Amaury\AppData\Local\Mozilla
[27/10/2008|20:29] C:\Users\Amaury\AppData\Local\SupportSoft
[06/04/2009|08:48] C:\Users\Amaury\AppData\Local\Temp
[31/10/2007|12:52] C:\Users\Amaury\AppData\Local\Temporary Internet Files
[23/01/2008|20:41] C:\Users\Amaury\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[06/04/2009 08:40][--ah-----] C:\Windows\tasks\SA.DAT
[06/04/2009 08:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[24/01/2009|23:06] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[25/09/2007|01:34] C:\ProgramData\{623D32E9-0C62-4453-AD44-98B31F52A5E1}
[06/02/2009|22:00] C:\ProgramData\2 long book.n95ffb
[25/03/2009|15:37] C:\ProgramData\Adobe
[18/01/2009|01:41] C:\ProgramData\Apple
[24/01/2009|23:05] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[05/12/2007|21:37] C:\ProgramData\ASUS
[25/09/2007|02:21] C:\ProgramData\Atheros
[28/03/2009|21:15] C:\ProgramData\AtomRuleLicense
[06/02/2009|22:00] C:\ProgramData\beep axis mode free
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[02/11/2006|15:02] C:\ProgramData\Favorites
[25/03/2009|14:51] C:\ProgramData\Google
[10/03/2008|20:30] C:\ProgramData\hpzinstall.log
[23/01/2008|09:32] C:\ProgramData\LUUnInstall.LiveUpdate
[03/04/2009|13:10] C:\ProgramData\ma-config.com
[20/03/2009|00:22] C:\ProgramData\Microsoft
[25/03/2009|16:40] C:\ProgramData\Microsoft Help
[25/09/2007|01:35] C:\ProgramData\Nero
[19/01/2009|20:01] C:\ProgramData\Norton
[19/01/2009|19:59] C:\ProgramData\NortonInstaller
[30/01/2009|21:49] C:\ProgramData\Office Genuine Advantage
[25/09/2007|02:33] C:\ProgramData\P4G
[19/01/2009|20:01] C:\ProgramData\PCSettings
[04/03/2009|19:34] C:\ProgramData\Skype
[03/04/2009|11:45] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|15:02] C:\ProgramData\Start Menu
[19/01/2009|20:11] C:\ProgramData\Symantec
[02/11/2006|15:02] C:\ProgramData\Templates
[06/02/2009|21:59] C:\ProgramData\Trust jugs jugs.t8rglh6
[06/02/2009|21:59] C:\ProgramData\Trust jugs jugs.u4bxa59
[13/08/2008|17:27] C:\ProgramData\WindowsSearch
[31/10/2007|18:01] C:\ProgramData\WLInstaller
[11/12/2007|18:12] C:\ProgramData\Yahoo! Companion
[24/12/2008|01:10] C:\ProgramData\Zylom
--------------------\\ Listing des dossiers dans C:\Program Files
[13/12/2008|00:23] C:\Program Files\7art
[25/09/2007|01:34] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[25/03/2009|15:36] C:\Program Files\Adobe
[18/01/2009|01:45] C:\Program Files\Apple Software Update
[25/09/2007|02:34] C:\Program Files\ASUS
[25/09/2007|02:21] C:\Program Files\Atheros
[25/09/2007|02:12] C:\Program Files\ATI
[25/09/2007|02:14] C:\Program Files\ATI Technologies
[25/09/2007|02:18] C:\Program Files\ATK Hotkey
[25/09/2007|02:19] C:\Program Files\ATKOSD2
[06/02/2008|20:03] C:\Program Files\Audacity
[18/01/2009|01:49] C:\Program Files\Bonjour
[05/01/2009|20:06] C:\Program Files\CCleaner
[25/03/2009|16:51] C:\Program Files\Common Files
[24/12/2008|01:54] C:\Program Files\Dofus
[25/03/2009|17:20] C:\Program Files\Google
[10/03/2008|20:30] C:\Program Files\Hewlett-Packard
[25/03/2009|15:03] C:\Program Files\InstallShield Installation Information
[01/07/2008|15:40] C:\Program Files\Internet Explorer
[24/01/2009|23:05] C:\Program Files\iPod
[24/01/2009|23:06] C:\Program Files\iTunes
[25/03/2009|18:15] C:\Program Files\Java
[08/03/2009|00:41] C:\Program Files\Jingle Palette
[25/03/2009|16:13] C:\Program Files\JRE
[25/03/2009|14:53] C:\Program Files\Kellogg's
[03/04/2009|13:10] C:\Program Files\ma-config.com
[25/03/2009|17:01] C:\Program Files\Microsoft
[31/10/2007|20:09] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[20/03/2009|00:24] C:\Program Files\Microsoft Office Outlook Connector
[26/02/2009|18:18] C:\Program Files\Microsoft Silverlight
[20/03/2009|00:17] C:\Program Files\Microsoft SQL Server Compact Edition
[20/03/2009|00:22] C:\Program Files\Microsoft Sync Framework
[30/12/2007|22:14] C:\Program Files\Mindscape
[01/07/2008|15:40] C:\Program Files\Movie Maker
[03/04/2009|11:40] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[18/04/2007|10:43] C:\Program Files\MSXML 4.0
[04/01/2009|00:29] C:\Program Files\My Radiomatisme
[25/09/2007|01:35] C:\Program Files\Nero
[19/01/2009|20:16] C:\Program Files\Norton Internet Security
[20/01/2009|18:26] C:\Program Files\NortonInstaller
[03/01/2008|18:11] C:\Program Files\Notepad++
[25/03/2009|16:13] C:\Program Files\OpenOffice.org 3
[25/09/2007|02:33] C:\Program Files\P4G
[25/09/2007|02:33] C:\Program Files\Power4Gear eXtreme
[25/03/2009|15:03] C:\Program Files\PowerForPhone
[24/01/2009|23:02] C:\Program Files\QuickTime
[01/11/2007|19:25] C:\Program Files\Real
[25/09/2007|02:19] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[04/03/2009|19:34] C:\Program Files\Skype
[03/04/2009|11:49] C:\Program Files\Spybot - Search & Destroy
[26/03/2009|18:18] C:\Program Files\Symantec
[25/09/2007|02:30] C:\Program Files\Synaptics
[03/01/2008|16:19] C:\Program Files\TribalWeb
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[01/07/2008|15:40] C:\Program Files\Windows Calendar
[01/07/2008|15:40] C:\Program Files\Windows Collaboration
[01/07/2008|15:40] C:\Program Files\Windows Defender
[01/07/2008|15:40] C:\Program Files\Windows Journal
[20/03/2009|00:23] C:\Program Files\Windows Live
[20/03/2009|00:11] C:\Program Files\Windows Live SkyDrive
[11/03/2009|23:26] C:\Program Files\Windows Mail
[02/11/2008|00:40] C:\Program Files\Windows Media Components
[11/03/2009|23:26] C:\Program Files\Windows Media Player
[02/11/2006|14:37] C:\Program Files\Windows NT
[01/07/2008|15:40] C:\Program Files\Windows Photo Gallery
[01/07/2008|15:40] C:\Program Files\Windows Sidebar
[25/09/2007|02:24] C:\Program Files\Wireless Console 2
[09/12/2007|21:13] C:\Program Files\Yahoo!
[25/03/2009|15:06] C:\Program Files\Zylom Games
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[25/03/2009|15:37] C:\Program Files\Common Files\Adobe
[25/03/2009|15:01] C:\Program Files\Common Files\Ahead
[24/01/2009|23:05] C:\Program Files\Common Files\Apple
[10/03/2008|20:20] C:\Program Files\Common Files\Hewlett-Packard
[11/11/2007|16:39] C:\Program Files\Common Files\InstallShield
[25/03/2009|16:05] C:\Program Files\Common Files\Java
[25/09/2007|01:38] C:\Program Files\Common Files\LightScribe
[25/03/2009|16:51] C:\Program Files\Common Files\microsoft shared
[10/03/2008|20:15] C:\Program Files\Common Files\MSSoap
[10/11/2007|23:05] C:\Program Files\Common Files\NSV
[01/11/2007|19:26] C:\Program Files\Common Files\Real
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[04/03/2009|19:34] C:\Program Files\Common Files\Skype
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[27/10/2008|20:28] C:\Program Files\Common Files\SupportSoft
[19/01/2009|20:22] C:\Program Files\Common Files\Symantec Shared
[20/03/2009|00:24] C:\Program Files\Common Files\System
[19/03/2009|21:45] C:\Program Files\Common Files\Windows Live
[01/11/2007|19:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
( 75 Processes )
iexplore.exe ~ [PID:2140]
iexplore.exe ~ [PID:1768]
--------------------\\ Recherche avec S_Lop
C:\ProgramData\2 long book.n95ffb
C:\ProgramData\Trust jugs jugs.t8rglh6
C:\ProgramData\Trust jugs jugs.u4bxa59
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\ProgramData\beep axis mode free
C:\ProgramData\beep axis mode free\Jump Bone.dat
C:\ProgramData\beep axis mode free\Jump Bone.exe
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MODE FREE BIRD SURF"="\"C:\\ProgramData\\2 long book.n95ffb\""
"Exit Ref"="\"C:\\ProgramData\\Trust jugs jugs.t8rglh6\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2009-04-06 08:52:45
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 270
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:70][D:10]-> C:\Users\Amaury\AppData\Local\Temp
[F:38][D:1]-> C:\Users\Amaury\AppData\Roaming\MICROS~1\Windows\Cookies
[F:162][D:6]-> C:\Users\Amaury\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:1][D:1]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - jeu. 23/10/2008|17:30 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - jeu. 23/10/2008|20:40 - Option : [2]
3 - "C:\Lop SD\LopR_3.txt" - lun. 06/04/2009| 8:55 - Option : [1]
--------------------\\ Fin du rapport a 8:55:33
[ UAC => 1 ]