--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU T2370 @ 1.73GHz )
BIOS : Ver 1.00PARTTBL
USER : Elodie ( Administrator )
BOOT : Normal boot
Antivirus : Norton Internet Security 2007 (Not Activated)
Firewall : Norton Internet Security 2007 (Not Activated)
C:\ (Local Disk) - NTFS - Total:69 Go (Free:37 Go)
D:\ (Local Disk) - NTFS - Total:69 Go (Free:59 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 13/04/2009|14:38 )
[ UAC => 1 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\ProgramData\Poke admin tons bike\coal dent.exe
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_481b.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_5f19.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_90f0.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_a260.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_a950.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_ab8b.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_b3d0.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_c9be.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_d6d7.tmp
Supprime! - C:\ProgramData\EncCopyCopy.0azof
Supprime! - C:\ProgramData\EncCopyCopy.0f6f3
Supprime! - C:\ProgramData\EncCopyCopy.31uel
Supprime! - C:\ProgramData\EncCopyCopy.3ocpj
Supprime! - C:\ProgramData\EncCopyCopy.4gqb4
Supprime! - C:\ProgramData\EncCopyCopy.4pv2g
Supprime! - C:\ProgramData\EncCopyCopy.53rvz
Supprime! - C:\ProgramData\EncCopyCopy.55mli
Supprime! - C:\ProgramData\EncCopyCopy.6hzlg
Supprime! - C:\ProgramData\EncCopyCopy.82xc7
Supprime! - C:\ProgramData\EncCopyCopy.85cze
Supprime! - C:\ProgramData\EncCopyCopy.atmy1
Supprime! - C:\ProgramData\EncCopyCopy.f67v4
Supprime! - C:\ProgramData\EncCopyCopy.fvao8
Supprime! - C:\ProgramData\EncCopyCopy.g29xe
Supprime! - C:\ProgramData\EncCopyCopy.ggvsb
Supprime! - C:\ProgramData\EncCopyCopy.i4ms4
Supprime! - C:\ProgramData\EncCopyCopy.iuizq
Supprime! - C:\ProgramData\EncCopyCopy.iwy1y
Supprime! - C:\ProgramData\EncCopyCopy.k115d
Supprime! - C:\ProgramData\EncCopyCopy.l8ier
Supprime! - C:\ProgramData\EncCopyCopy.mv99x
Supprime! - C:\ProgramData\EncCopyCopy.n75rp
Supprime! - C:\ProgramData\EncCopyCopy.o52ib
Supprime! - C:\ProgramData\EncCopyCopy.odpbq
Supprime! - C:\ProgramData\EncCopyCopy.psfhm
Supprime! - C:\ProgramData\EncCopyCopy.sr0ue
Supprime! - C:\ProgramData\EncCopyCopy.te8fd
Supprime! - C:\ProgramData\EncCopyCopy.uhbup
Supprime! - C:\ProgramData\EncCopyCopy.ui92y
Supprime! - C:\ProgramData\EncCopyCopy.v1m54
Supprime! - C:\ProgramData\EncCopyCopy.vco3i
Supprime! - C:\ProgramData\EncCopyCopy.veib4
Supprime! - C:\ProgramData\EncCopyCopy.vov8v
Supprime! - C:\ProgramData\EncCopyCopy.vuazw
Supprime! - C:\ProgramData\EncCopyCopy.wrd4c
Supprime! - C:\ProgramData\EncCopyCopy.xqpnf
Supprime! - C:\ProgramData\EncCopyCopy.xzm8l
Supprime! - C:\ProgramData\EncCopyCopy.yotmy
Supprime! - C:\ProgramData\EncCopyCopy.066kpi
Supprime! - C:\ProgramData\EncCopyCopy.0crrzg
Supprime! - C:\ProgramData\EncCopyCopy.17gjqs
Supprime! - C:\ProgramData\EncCopyCopy.183cnh
Supprime! - C:\ProgramData\EncCopyCopy.1g56qf
Supprime! - C:\ProgramData\EncCopyCopy.2r1uo0
Supprime! - C:\ProgramData\EncCopyCopy.5gzees
Supprime! - C:\ProgramData\EncCopyCopy.c8hefj
Supprime! - C:\ProgramData\EncCopyCopy.cnwmv6
Supprime! - C:\ProgramData\EncCopyCopy.ct75t1
Supprime! - C:\ProgramData\EncCopyCopy.fn25xl
Supprime! - C:\ProgramData\EncCopyCopy.g88gpr
Supprime! - C:\ProgramData\EncCopyCopy.gm5sse
Supprime! - C:\ProgramData\EncCopyCopy.hgoena
Supprime! - C:\ProgramData\EncCopyCopy.iz94po
Supprime! - C:\ProgramData\EncCopyCopy.j4hi16
Supprime! - C:\ProgramData\EncCopyCopy.jeqbfe
Supprime! - C:\ProgramData\EncCopyCopy.k4sj0z
Supprime! - C:\ProgramData\EncCopyCopy.moldi5
Supprime! - C:\ProgramData\EncCopyCopy.mv8di5
Supprime! - C:\ProgramData\EncCopyCopy.mzq8dk
Supprime! - C:\ProgramData\EncCopyCopy.nlhkoc
Supprime! - C:\ProgramData\EncCopyCopy.nx2xan
Supprime! - C:\ProgramData\EncCopyCopy.o6qo39
Supprime! - C:\ProgramData\EncCopyCopy.oihk8j
Supprime! - C:\ProgramData\EncCopyCopy.qublut
Supprime! - C:\ProgramData\EncCopyCopy.qv8r9v
Supprime! - C:\ProgramData\EncCopyCopy.r2hadd
Supprime! - C:\ProgramData\EncCopyCopy.rjaz0o
Supprime! - C:\ProgramData\EncCopyCopy.ttepez
Supprime! - C:\ProgramData\EncCopyCopy.w9bz57
Supprime! - C:\ProgramData\EncCopyCopy.zecn2a
Supprime! - C:\ProgramData\Surf Pure Bore.nm51iy
Supprime! - C:\ProgramData\EncCopyCopy.1j39x21
Supprime! - C:\ProgramData\EncCopyCopy.29tuqf0
Supprime! - C:\ProgramData\EncCopyCopy.3k0pblk
Supprime! - C:\ProgramData\EncCopyCopy.3s6ch6e
Supprime! - C:\ProgramData\EncCopyCopy.5oacb1m
Supprime! - C:\ProgramData\EncCopyCopy.62kws6z
Supprime! - C:\ProgramData\EncCopyCopy.8us8f6z
Supprime! - C:\ProgramData\EncCopyCopy.9ad70da
Supprime! - C:\ProgramData\EncCopyCopy.9qtasq5
Supprime! - C:\ProgramData\EncCopyCopy.dypbj1w
Supprime! - C:\ProgramData\EncCopyCopy.ebtsw9p
Supprime! - C:\ProgramData\EncCopyCopy.g8t720w
Supprime! - C:\ProgramData\EncCopyCopy.gehef15
Supprime! - C:\ProgramData\EncCopyCopy.gj9hwqw
Supprime! - C:\ProgramData\EncCopyCopy.him24fg
Supprime! - C:\ProgramData\EncCopyCopy.jgi5iqr
Supprime! - C:\ProgramData\EncCopyCopy.k6cgpf8
Supprime! - C:\ProgramData\EncCopyCopy.kg1rxbc
Supprime! - C:\ProgramData\EncCopyCopy.ks4d5wy
Supprime! - C:\ProgramData\EncCopyCopy.osovn85
Supprime! - C:\ProgramData\EncCopyCopy.rz8vpa9
Supprime! - C:\ProgramData\EncCopyCopy.sncsmpn
Supprime! - C:\ProgramData\EncCopyCopy.tm8zev7
Supprime! - C:\ProgramData\EncCopyCopy.vxqidyx
Supprime! - C:\ProgramData\EncCopyCopy.wa6k09u
Supprime! - C:\ProgramData\EncCopyCopy.wa84a50
Supprime! - C:\ProgramData\EncCopyCopy.xztme07
Supprime! - C:\ProgramData\Poke admin tons bike
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans Local
[29/11/2008|18:11] C:\Users\Elodie\AppData\Local\{7326CE9D-C0D2-433A-8A57-B7934EA13EC8}
[30/08/2008|19:52] C:\Users\Elodie\AppData\Local\Acer Arcade Deluxe
[30/08/2008|19:39] C:\Users\Elodie\AppData\Local\acer eNM
[06/10/2008|12:07] C:\Users\Elodie\AppData\Local\Adobe
[14/09/2008|14:01] C:\Users\Elodie\AppData\Local\Apple
[11/10/2008|17:12] C:\Users\Elodie\AppData\Local\Apple Computer
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Application Data
[30/08/2008|18:16] C:\Users\Elodie\AppData\Local\CyberLink
[29/03/2009|02:26] C:\Users\Elodie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[23/11/2008|14:34] C:\Users\Elodie\AppData\Local\DVDivine
[16/02/2009|11:52] C:\Users\Elodie\AppData\Local\ebaxvmr.bat
[18/02/2009|21:19] C:\Users\Elodie\AppData\Local\eMule
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\GDIPFONTCACHEV1.DAT
[30/08/2008|21:50] C:\Users\Elodie\AppData\Local\Google
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Historique
[30/08/2008|18:16] C:\Users\Elodie\AppData\Local\HomeMedia
[13/04/2009|14:21] C:\Users\Elodie\AppData\Local\IconCache.db
[06/01/2009|01:10] C:\Users\Elodie\AppData\Local\live-player
[09/03/2009|22:31] C:\Users\Elodie\AppData\Local\Microsoft
[21/12/2008|12:00] C:\Users\Elodie\AppData\Local\Microsoft Games
[01/02/2009|02:27] C:\Users\Elodie\AppData\Local\Mozilla
[05/01/2009|16:39] C:\Users\Elodie\AppData\Local\Pando
[03/09/2008|20:51] C:\Users\Elodie\AppData\Local\PlayMovie
[30/08/2008|19:52] C:\Users\Elodie\AppData\Local\PowerCinema
[13/04/2009|14:38] C:\Users\Elodie\AppData\Local\Temp
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Temporary Internet Files
[19/10/2008|16:27] C:\Users\Elodie\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[13/04/2009 14:22][--ah-----] C:\Windows\tasks\SA.DAT
[13/04/2009 14:21][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[16/10/2007|12:25] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[16/10/2007|12:01] C:\ProgramData\Adobe
[14/09/2008|13:59] C:\ProgramData\Apple
[09/03/2009|16:48] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[26/11/2008|00:02] C:\ProgramData\Avira
[30/08/2008|19:34] C:\ProgramData\Bureau
[26/11/2008|17:38] C:\ProgramData\CheckPoint
[31/08/2008|13:10] C:\ProgramData\CyberLink
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[18/02/2009|21:19] C:\ProgramData\eMule
[31/08/2008|00:17] C:\ProgramData\ezsidmv.dat
[30/08/2008|19:34] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[31/08/2008|00:12] C:\ProgramData\Forge of Games
[26/11/2008|00:21] C:\ProgramData\F-Secure
[30/08/2008|12:33] C:\ProgramData\fssg
[30/08/2008|15:01] C:\ProgramData\Google
[05/02/2009|00:52] C:\ProgramData\InstallShield
[27/03/2009|01:29] C:\ProgramData\LauncherAccess.dt
[27/11/2008|12:02] C:\ProgramData\Malwarebytes
[30/08/2008|19:34] C:\ProgramData\Menu D‚marrer
[17/03/2009|18:41] C:\ProgramData\Messenger Plus!
[17/03/2009|16:41] C:\ProgramData\Microsoft
[12/12/2008|18:53] C:\ProgramData\Microsoft Help
[30/08/2008|19:34] C:\ProgramData\ModŠles
[06/10/2008|12:00] C:\ProgramData\Office Genuine Advantage
[28/01/2009|19:44] C:\ProgramData\oncereal
[31/08/2008|00:16] C:\ProgramData\Skype
[02/11/2006|15:02] C:\ProgramData\Start Menu
[30/08/2008|21:15] C:\ProgramData\Symantec
[06/09/2008|14:38] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[16/12/2008|19:05] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[16/02/2008|22:59] C:\Program Files\Acer Arcade Deluxe
[06/09/2008|14:54] C:\Program Files\Acer GameZone
[16/02/2008|23:23] C:\Program Files\Acer Inc
[16/10/2007|12:25] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[16/10/2007|12:01] C:\Program Files\Adobe
[26/11/2008|00:02] C:\Program Files\Avira
[14/09/2008|14:03] C:\Program Files\Bonjour
[02/10/2007|06:06] C:\Program Files\Broadcom
[09/03/2009|16:50] C:\Program Files\Common Files
[09/03/2009|16:46] C:\Program Files\CyberLink
[04/01/2009|04:15] C:\Program Files\DivX
[18/02/2009|21:19] C:\Program Files\eMule
[30/08/2008|19:34] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[30/08/2008|16:49] C:\Program Files\Google
[09/03/2009|16:46] C:\Program Files\InstallShield Installation Information
[02/10/2007|05:46] C:\Program Files\Intel
[01/10/2008|22:26] C:\Program Files\Internet Explorer
[08/11/2008|01:54] C:\Program Files\Java
[16/02/2008|23:26] C:\Program Files\Launch Manager
[06/01/2009|16:08] C:\Program Files\Live-Player
[27/11/2008|12:02] C:\Program Files\Malwarebytes' Anti-Malware
[17/03/2009|17:39] C:\Program Files\Messenger Plus! Live
[16/12/2008|14:11] C:\Program Files\Microsoft
[30/08/2008|22:39] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[16/10/2007|12:24] C:\Program Files\Microsoft Office
[28/02/2009|20:53] C:\Program Files\Microsoft Silverlight
[17/03/2009|14:42] C:\Program Files\Microsoft Works
[16/10/2007|12:22] C:\Program Files\Microsoft.NET
[01/10/2008|22:26] C:\Program Files\Movie Maker
[13/04/2009|14:28] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[17/03/2009|17:47] C:\Program Files\MSNFix
[16/10/2007|11:51] C:\Program Files\MSXML 4.0
[09/03/2009|16:45] C:\Program Files\NewTech Infosystems
[30/08/2008|21:17] C:\Program Files\Orange
[06/09/2008|15:06] C:\Program Files\Orange HSS
[10/02/2009|20:08] C:\Program Files\PhotoFiltre
[22/01/2009|16:58] C:\Program Files\PhotoScape
[20/02/2009|23:49] C:\Program Files\Real
[02/10/2007|06:03] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[18/02/2009|16:45] C:\Program Files\Samsung
[31/08/2008|00:16] C:\Program Files\Skype
[02/10/2007|06:05] C:\Program Files\Synaptics
[05/03/2009|22:09] C:\Program Files\TeamViewer
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[05/11/2008|01:01] C:\Program Files\uTorrent
[01/02/2009|14:18] C:\Program Files\Veoh Networks
[06/09/2008|19:34] C:\Program Files\VideoLAN
[01/10/2008|22:26] C:\Program Files\Windows Calendar
[01/10/2008|22:26] C:\Program Files\Windows Collaboration
[01/10/2008|22:26] C:\Program Files\Windows Defender
[01/10/2008|22:26] C:\Program Files\Windows Journal
[17/03/2009|17:38] C:\Program Files\Windows Live
[10/02/2009|20:33] C:\Program Files\Windows Live SkyDrive
[11/03/2009|13:39] C:\Program Files\Windows Mail
[11/03/2009|13:39] C:\Program Files\Windows Media Player
[30/08/2008|19:34] C:\Program Files\Windows NT
[01/10/2008|22:26] C:\Program Files\Windows Photo Gallery
[01/10/2008|22:26] C:\Program Files\Windows Sidebar
[24/11/2008|17:55] C:\Program Files\WinRAR
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[16/10/2007|12:01] C:\Program Files\Common Files\Adobe
[16/10/2007|12:22] C:\Program Files\Common Files\DESIGNER
[05/02/2009|00:51] C:\Program Files\Common Files\InstallShield
[08/11/2008|01:52] C:\Program Files\Common Files\Java
[16/10/2007|12:07] C:\Program Files\Common Files\LightScribe
[21/02/2009|01:39] C:\Program Files\Common Files\microsoft shared
[16/10/2007|12:07] C:\Program Files\Common Files\NewTech Infosystems
[06/09/2008|20:07] C:\Program Files\Common Files\PX Storage Engine
[09/03/2009|16:39] C:\Program Files\Common Files\Real
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[31/08/2008|00:16] C:\Program Files\Common Files\Skype
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[30/08/2008|21:16] C:\Program Files\Common Files\Symantec Shared
[01/10/2008|22:26] C:\Program Files\Common Files\System
[16/12/2008|13:57] C:\Program Files\Common Files\Windows Live
[30/08/2008|22:12] C:\Program Files\Common Files\WindowsLiveInstaller
--------------------\\ Process
( 79 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-04-13 14:39:19
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 170
--------------------\\ Recherche d'autres infections
C:\Program Files\Live-Player
C:\Program Files\Live-Player\data
C:\Program Files\Live-Player\live-player.exe
C:\Program Files\Live-Player\SkinCrafterDll.dll
C:\Program Files\Live-Player\skins
C:\Program Files\Live-Player\sqlite3.dll
C:\Users\Elodie\AppData\Local\live-player
C:\Users\Elodie\AppData\Local\live-player\flv.swf
C:\Users\Elodie\AppData\Local\live-player\liveplayer.s3db
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\D‚sinstaller.lnk
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Live-Player.lnk
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Website.url
[b]==> EGDACCESS <==
/b
[F:1663][D:132]-> C:\Users\Elodie\AppData\Local\Temp
[F:155][D:1]-> C:\Users\Elodie\AppData\Roaming\MICROS~1\Windows\Cookies
[F:874][D:4]-> C:\Users\Elodie\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:4][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 13/04/2009|14:27 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 13/04/2009|14:41 - Option : [2]
--------------------\\ Fin du rapport a 14:41:11
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU T2370 @ 1.73GHz )
BIOS : Ver 1.00PARTTBL
USER : Elodie ( Administrator )
BOOT : Normal boot
Antivirus : Norton Internet Security 2007 (Not Activated)
Firewall : Norton Internet Security 2007 (Not Activated)
C:\ (Local Disk) - NTFS - Total:69 Go (Free:37 Go)
D:\ (Local Disk) - NTFS - Total:69 Go (Free:59 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 13/04/2009|14:38 )
[ UAC => 1 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\ProgramData\Poke admin tons bike\coal dent.exe
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_481b.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_5f19.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_90f0.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_a260.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_a950.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_ab8b.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_b3d0.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_c9be.tmp
Supprime! - C:\Users\Elodie\AppData\Local\Temp\msgpl_d6d7.tmp
Supprime! - C:\ProgramData\EncCopyCopy.0azof
Supprime! - C:\ProgramData\EncCopyCopy.0f6f3
Supprime! - C:\ProgramData\EncCopyCopy.31uel
Supprime! - C:\ProgramData\EncCopyCopy.3ocpj
Supprime! - C:\ProgramData\EncCopyCopy.4gqb4
Supprime! - C:\ProgramData\EncCopyCopy.4pv2g
Supprime! - C:\ProgramData\EncCopyCopy.53rvz
Supprime! - C:\ProgramData\EncCopyCopy.55mli
Supprime! - C:\ProgramData\EncCopyCopy.6hzlg
Supprime! - C:\ProgramData\EncCopyCopy.82xc7
Supprime! - C:\ProgramData\EncCopyCopy.85cze
Supprime! - C:\ProgramData\EncCopyCopy.atmy1
Supprime! - C:\ProgramData\EncCopyCopy.f67v4
Supprime! - C:\ProgramData\EncCopyCopy.fvao8
Supprime! - C:\ProgramData\EncCopyCopy.g29xe
Supprime! - C:\ProgramData\EncCopyCopy.ggvsb
Supprime! - C:\ProgramData\EncCopyCopy.i4ms4
Supprime! - C:\ProgramData\EncCopyCopy.iuizq
Supprime! - C:\ProgramData\EncCopyCopy.iwy1y
Supprime! - C:\ProgramData\EncCopyCopy.k115d
Supprime! - C:\ProgramData\EncCopyCopy.l8ier
Supprime! - C:\ProgramData\EncCopyCopy.mv99x
Supprime! - C:\ProgramData\EncCopyCopy.n75rp
Supprime! - C:\ProgramData\EncCopyCopy.o52ib
Supprime! - C:\ProgramData\EncCopyCopy.odpbq
Supprime! - C:\ProgramData\EncCopyCopy.psfhm
Supprime! - C:\ProgramData\EncCopyCopy.sr0ue
Supprime! - C:\ProgramData\EncCopyCopy.te8fd
Supprime! - C:\ProgramData\EncCopyCopy.uhbup
Supprime! - C:\ProgramData\EncCopyCopy.ui92y
Supprime! - C:\ProgramData\EncCopyCopy.v1m54
Supprime! - C:\ProgramData\EncCopyCopy.vco3i
Supprime! - C:\ProgramData\EncCopyCopy.veib4
Supprime! - C:\ProgramData\EncCopyCopy.vov8v
Supprime! - C:\ProgramData\EncCopyCopy.vuazw
Supprime! - C:\ProgramData\EncCopyCopy.wrd4c
Supprime! - C:\ProgramData\EncCopyCopy.xqpnf
Supprime! - C:\ProgramData\EncCopyCopy.xzm8l
Supprime! - C:\ProgramData\EncCopyCopy.yotmy
Supprime! - C:\ProgramData\EncCopyCopy.066kpi
Supprime! - C:\ProgramData\EncCopyCopy.0crrzg
Supprime! - C:\ProgramData\EncCopyCopy.17gjqs
Supprime! - C:\ProgramData\EncCopyCopy.183cnh
Supprime! - C:\ProgramData\EncCopyCopy.1g56qf
Supprime! - C:\ProgramData\EncCopyCopy.2r1uo0
Supprime! - C:\ProgramData\EncCopyCopy.5gzees
Supprime! - C:\ProgramData\EncCopyCopy.c8hefj
Supprime! - C:\ProgramData\EncCopyCopy.cnwmv6
Supprime! - C:\ProgramData\EncCopyCopy.ct75t1
Supprime! - C:\ProgramData\EncCopyCopy.fn25xl
Supprime! - C:\ProgramData\EncCopyCopy.g88gpr
Supprime! - C:\ProgramData\EncCopyCopy.gm5sse
Supprime! - C:\ProgramData\EncCopyCopy.hgoena
Supprime! - C:\ProgramData\EncCopyCopy.iz94po
Supprime! - C:\ProgramData\EncCopyCopy.j4hi16
Supprime! - C:\ProgramData\EncCopyCopy.jeqbfe
Supprime! - C:\ProgramData\EncCopyCopy.k4sj0z
Supprime! - C:\ProgramData\EncCopyCopy.moldi5
Supprime! - C:\ProgramData\EncCopyCopy.mv8di5
Supprime! - C:\ProgramData\EncCopyCopy.mzq8dk
Supprime! - C:\ProgramData\EncCopyCopy.nlhkoc
Supprime! - C:\ProgramData\EncCopyCopy.nx2xan
Supprime! - C:\ProgramData\EncCopyCopy.o6qo39
Supprime! - C:\ProgramData\EncCopyCopy.oihk8j
Supprime! - C:\ProgramData\EncCopyCopy.qublut
Supprime! - C:\ProgramData\EncCopyCopy.qv8r9v
Supprime! - C:\ProgramData\EncCopyCopy.r2hadd
Supprime! - C:\ProgramData\EncCopyCopy.rjaz0o
Supprime! - C:\ProgramData\EncCopyCopy.ttepez
Supprime! - C:\ProgramData\EncCopyCopy.w9bz57
Supprime! - C:\ProgramData\EncCopyCopy.zecn2a
Supprime! - C:\ProgramData\Surf Pure Bore.nm51iy
Supprime! - C:\ProgramData\EncCopyCopy.1j39x21
Supprime! - C:\ProgramData\EncCopyCopy.29tuqf0
Supprime! - C:\ProgramData\EncCopyCopy.3k0pblk
Supprime! - C:\ProgramData\EncCopyCopy.3s6ch6e
Supprime! - C:\ProgramData\EncCopyCopy.5oacb1m
Supprime! - C:\ProgramData\EncCopyCopy.62kws6z
Supprime! - C:\ProgramData\EncCopyCopy.8us8f6z
Supprime! - C:\ProgramData\EncCopyCopy.9ad70da
Supprime! - C:\ProgramData\EncCopyCopy.9qtasq5
Supprime! - C:\ProgramData\EncCopyCopy.dypbj1w
Supprime! - C:\ProgramData\EncCopyCopy.ebtsw9p
Supprime! - C:\ProgramData\EncCopyCopy.g8t720w
Supprime! - C:\ProgramData\EncCopyCopy.gehef15
Supprime! - C:\ProgramData\EncCopyCopy.gj9hwqw
Supprime! - C:\ProgramData\EncCopyCopy.him24fg
Supprime! - C:\ProgramData\EncCopyCopy.jgi5iqr
Supprime! - C:\ProgramData\EncCopyCopy.k6cgpf8
Supprime! - C:\ProgramData\EncCopyCopy.kg1rxbc
Supprime! - C:\ProgramData\EncCopyCopy.ks4d5wy
Supprime! - C:\ProgramData\EncCopyCopy.osovn85
Supprime! - C:\ProgramData\EncCopyCopy.rz8vpa9
Supprime! - C:\ProgramData\EncCopyCopy.sncsmpn
Supprime! - C:\ProgramData\EncCopyCopy.tm8zev7
Supprime! - C:\ProgramData\EncCopyCopy.vxqidyx
Supprime! - C:\ProgramData\EncCopyCopy.wa6k09u
Supprime! - C:\ProgramData\EncCopyCopy.wa84a50
Supprime! - C:\ProgramData\EncCopyCopy.xztme07
Supprime! - C:\ProgramData\Poke admin tons bike
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans Local
[29/11/2008|18:11] C:\Users\Elodie\AppData\Local\{7326CE9D-C0D2-433A-8A57-B7934EA13EC8}
[30/08/2008|19:52] C:\Users\Elodie\AppData\Local\Acer Arcade Deluxe
[30/08/2008|19:39] C:\Users\Elodie\AppData\Local\acer eNM
[06/10/2008|12:07] C:\Users\Elodie\AppData\Local\Adobe
[14/09/2008|14:01] C:\Users\Elodie\AppData\Local\Apple
[11/10/2008|17:12] C:\Users\Elodie\AppData\Local\Apple Computer
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Application Data
[30/08/2008|18:16] C:\Users\Elodie\AppData\Local\CyberLink
[29/03/2009|02:26] C:\Users\Elodie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[23/11/2008|14:34] C:\Users\Elodie\AppData\Local\DVDivine
[16/02/2009|11:52] C:\Users\Elodie\AppData\Local\ebaxvmr.bat
[18/02/2009|21:19] C:\Users\Elodie\AppData\Local\eMule
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\GDIPFONTCACHEV1.DAT
[30/08/2008|21:50] C:\Users\Elodie\AppData\Local\Google
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Historique
[30/08/2008|18:16] C:\Users\Elodie\AppData\Local\HomeMedia
[13/04/2009|14:21] C:\Users\Elodie\AppData\Local\IconCache.db
[06/01/2009|01:10] C:\Users\Elodie\AppData\Local\live-player
[09/03/2009|22:31] C:\Users\Elodie\AppData\Local\Microsoft
[21/12/2008|12:00] C:\Users\Elodie\AppData\Local\Microsoft Games
[01/02/2009|02:27] C:\Users\Elodie\AppData\Local\Mozilla
[05/01/2009|16:39] C:\Users\Elodie\AppData\Local\Pando
[03/09/2008|20:51] C:\Users\Elodie\AppData\Local\PlayMovie
[30/08/2008|19:52] C:\Users\Elodie\AppData\Local\PowerCinema
[13/04/2009|14:38] C:\Users\Elodie\AppData\Local\Temp
[30/08/2008|19:38] C:\Users\Elodie\AppData\Local\Temporary Internet Files
[19/10/2008|16:27] C:\Users\Elodie\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[13/04/2009 14:22][--ah-----] C:\Windows\tasks\SA.DAT
[13/04/2009 14:21][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[16/10/2007|12:25] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[16/10/2007|12:01] C:\ProgramData\Adobe
[14/09/2008|13:59] C:\ProgramData\Apple
[09/03/2009|16:48] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[26/11/2008|00:02] C:\ProgramData\Avira
[30/08/2008|19:34] C:\ProgramData\Bureau
[26/11/2008|17:38] C:\ProgramData\CheckPoint
[31/08/2008|13:10] C:\ProgramData\CyberLink
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[18/02/2009|21:19] C:\ProgramData\eMule
[31/08/2008|00:17] C:\ProgramData\ezsidmv.dat
[30/08/2008|19:34] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[31/08/2008|00:12] C:\ProgramData\Forge of Games
[26/11/2008|00:21] C:\ProgramData\F-Secure
[30/08/2008|12:33] C:\ProgramData\fssg
[30/08/2008|15:01] C:\ProgramData\Google
[05/02/2009|00:52] C:\ProgramData\InstallShield
[27/03/2009|01:29] C:\ProgramData\LauncherAccess.dt
[27/11/2008|12:02] C:\ProgramData\Malwarebytes
[30/08/2008|19:34] C:\ProgramData\Menu D‚marrer
[17/03/2009|18:41] C:\ProgramData\Messenger Plus!
[17/03/2009|16:41] C:\ProgramData\Microsoft
[12/12/2008|18:53] C:\ProgramData\Microsoft Help
[30/08/2008|19:34] C:\ProgramData\ModŠles
[06/10/2008|12:00] C:\ProgramData\Office Genuine Advantage
[28/01/2009|19:44] C:\ProgramData\oncereal
[31/08/2008|00:16] C:\ProgramData\Skype
[02/11/2006|15:02] C:\ProgramData\Start Menu
[30/08/2008|21:15] C:\ProgramData\Symantec
[06/09/2008|14:38] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[16/12/2008|19:05] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[16/02/2008|22:59] C:\Program Files\Acer Arcade Deluxe
[06/09/2008|14:54] C:\Program Files\Acer GameZone
[16/02/2008|23:23] C:\Program Files\Acer Inc
[16/10/2007|12:25] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[16/10/2007|12:01] C:\Program Files\Adobe
[26/11/2008|00:02] C:\Program Files\Avira
[14/09/2008|14:03] C:\Program Files\Bonjour
[02/10/2007|06:06] C:\Program Files\Broadcom
[09/03/2009|16:50] C:\Program Files\Common Files
[09/03/2009|16:46] C:\Program Files\CyberLink
[04/01/2009|04:15] C:\Program Files\DivX
[18/02/2009|21:19] C:\Program Files\eMule
[30/08/2008|19:34] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[30/08/2008|16:49] C:\Program Files\Google
[09/03/2009|16:46] C:\Program Files\InstallShield Installation Information
[02/10/2007|05:46] C:\Program Files\Intel
[01/10/2008|22:26] C:\Program Files\Internet Explorer
[08/11/2008|01:54] C:\Program Files\Java
[16/02/2008|23:26] C:\Program Files\Launch Manager
[06/01/2009|16:08] C:\Program Files\Live-Player
[27/11/2008|12:02] C:\Program Files\Malwarebytes' Anti-Malware
[17/03/2009|17:39] C:\Program Files\Messenger Plus! Live
[16/12/2008|14:11] C:\Program Files\Microsoft
[30/08/2008|22:39] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[16/10/2007|12:24] C:\Program Files\Microsoft Office
[28/02/2009|20:53] C:\Program Files\Microsoft Silverlight
[17/03/2009|14:42] C:\Program Files\Microsoft Works
[16/10/2007|12:22] C:\Program Files\Microsoft.NET
[01/10/2008|22:26] C:\Program Files\Movie Maker
[13/04/2009|14:28] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[17/03/2009|17:47] C:\Program Files\MSNFix
[16/10/2007|11:51] C:\Program Files\MSXML 4.0
[09/03/2009|16:45] C:\Program Files\NewTech Infosystems
[30/08/2008|21:17] C:\Program Files\Orange
[06/09/2008|15:06] C:\Program Files\Orange HSS
[10/02/2009|20:08] C:\Program Files\PhotoFiltre
[22/01/2009|16:58] C:\Program Files\PhotoScape
[20/02/2009|23:49] C:\Program Files\Real
[02/10/2007|06:03] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[18/02/2009|16:45] C:\Program Files\Samsung
[31/08/2008|00:16] C:\Program Files\Skype
[02/10/2007|06:05] C:\Program Files\Synaptics
[05/03/2009|22:09] C:\Program Files\TeamViewer
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[05/11/2008|01:01] C:\Program Files\uTorrent
[01/02/2009|14:18] C:\Program Files\Veoh Networks
[06/09/2008|19:34] C:\Program Files\VideoLAN
[01/10/2008|22:26] C:\Program Files\Windows Calendar
[01/10/2008|22:26] C:\Program Files\Windows Collaboration
[01/10/2008|22:26] C:\Program Files\Windows Defender
[01/10/2008|22:26] C:\Program Files\Windows Journal
[17/03/2009|17:38] C:\Program Files\Windows Live
[10/02/2009|20:33] C:\Program Files\Windows Live SkyDrive
[11/03/2009|13:39] C:\Program Files\Windows Mail
[11/03/2009|13:39] C:\Program Files\Windows Media Player
[30/08/2008|19:34] C:\Program Files\Windows NT
[01/10/2008|22:26] C:\Program Files\Windows Photo Gallery
[01/10/2008|22:26] C:\Program Files\Windows Sidebar
[24/11/2008|17:55] C:\Program Files\WinRAR
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[16/10/2007|12:01] C:\Program Files\Common Files\Adobe
[16/10/2007|12:22] C:\Program Files\Common Files\DESIGNER
[05/02/2009|00:51] C:\Program Files\Common Files\InstallShield
[08/11/2008|01:52] C:\Program Files\Common Files\Java
[16/10/2007|12:07] C:\Program Files\Common Files\LightScribe
[21/02/2009|01:39] C:\Program Files\Common Files\microsoft shared
[16/10/2007|12:07] C:\Program Files\Common Files\NewTech Infosystems
[06/09/2008|20:07] C:\Program Files\Common Files\PX Storage Engine
[09/03/2009|16:39] C:\Program Files\Common Files\Real
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[31/08/2008|00:16] C:\Program Files\Common Files\Skype
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[30/08/2008|21:16] C:\Program Files\Common Files\Symantec Shared
[01/10/2008|22:26] C:\Program Files\Common Files\System
[16/12/2008|13:57] C:\Program Files\Common Files\Windows Live
[30/08/2008|22:12] C:\Program Files\Common Files\WindowsLiveInstaller
--------------------\\ Process
( 79 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-04-13 14:39:19
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 170
--------------------\\ Recherche d'autres infections
C:\Program Files\Live-Player
C:\Program Files\Live-Player\data
C:\Program Files\Live-Player\live-player.exe
C:\Program Files\Live-Player\SkinCrafterDll.dll
C:\Program Files\Live-Player\skins
C:\Program Files\Live-Player\sqlite3.dll
C:\Users\Elodie\AppData\Local\live-player
C:\Users\Elodie\AppData\Local\live-player\flv.swf
C:\Users\Elodie\AppData\Local\live-player\liveplayer.s3db
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\D‚sinstaller.lnk
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Live-Player.lnk
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Live-Player\Website.url
[b]==> EGDACCESS <==
/b
[F:1663][D:132]-> C:\Users\Elodie\AppData\Local\Temp
[F:155][D:1]-> C:\Users\Elodie\AppData\Roaming\MICROS~1\Windows\Cookies
[F:874][D:4]-> C:\Users\Elodie\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:4][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 13/04/2009|14:27 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 13/04/2009|14:41 - Option : [2]
--------------------\\ Fin du rapport a 14:41:11
[ UAC => 1 ]
oila ce que tu m'as demandé :) j'attend la suite si il y en a une :p