############################## | FindyKill V6.001 |
# User : hugo (Administrateurs) # CLAN-FA2DD159DD
# Update on 30/06/09 by Chiquitine29 & C_XX
# Start at: 2:12:43 PM | 01/07/2009
# Website :
http://pagesperso-orange.fr/NosTools/index.html
# AMD Athlon(tm) 64 Processor 4000+
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Enabled
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 34.46 Go (6.91 Go free) # NTFS
# D:\ # Disque fixe local # 117.19 Go (99.33 Go free) [installation] # NTFS
# E:\ # Disque fixe local # 115.69 Go (37.03 Go free) [Section donwload] # NTFS
# F:\ # Disque CD-ROM # 3.28 Go (0 Mo free) [BF2142 DVD] # UDF
# G:\ # Disque CD-ROM # 588.62 Mo (0 Mo free) [NVIDIA nForce4] # CDFS
# H:\ # Disque CD-ROM
# I:\ # Disque CD-ROM
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## | Fichiers # Dossiers infectieux |
################## | C:\Documents and Settings\hugo\Temporary Internet Files |
################## | All Drives ... |
(!) Non supprimé ! F:\Setup.exe
(!) Non supprimé ! F:\autorun.inf
(!) Non supprimé ! G:\autorun.inf
################## | Autres ... |
################## | Registre # Clés Run infectieuses |
################## | Registre # Mountpoints2 |
################## | Listing des fichiers présent |
[01/07/2009 02:12 PM|--a------|16075] - C:\aaw7boot.log
[07/06/2009 03:03 PM|--a------|0] - C:\AdobeDebug.txt
[19/04/2009 05:37 PM|--a------|0] - C:\AUTOEXEC.BAT
[30/06/2009 06:23 PM|---hs----|216] - C:\boot.ini
[05/08/2004 08:00 AM|-rahs----|4952] - C:\Bootfont.bin
[19/04/2009 05:37 PM|--a------|0] - C:\CONFIG.SYS
[01/07/2009 02:17 PM|--a------|2865] - C:\FindyKill.txt
[19/04/2009 05:37 PM|-rahs----|0] - C:\IO.SYS
[19/04/2009 05:37 PM|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 08:00 AM|-rahs----|47564] - C:\NTDETECT.COM
[24/04/2009 07:29 AM|-rahs----|252240] - C:\ntldr
[||] - C:\pagefile.sys
[25/04/2009 06:40 PM|--a------|34740253] - E:\Manual_Patch.rar
[25/09/2006 12:01 PM|-r-------|20482048] - F:\00000001.TMP
[25/09/2006 12:01 PM|-r-------|317440] - F:\00000002.TMP
[25/09/2006 12:01 PM|-r-------|4386816] - F:\Autorun.exe
[25/09/2006 12:01 PM|-r-------|46] - F:\Autorun.inf
[25/09/2006 12:01 PM|-r-------|15086] - F:\BF2142.ico
[25/09/2006 11:51 AM|-r-------|10369701] - F:\data1.cab
[25/09/2006 11:51 AM|-r-------|243222] - F:\data1.hdr
[25/09/2006 12:01 PM|-r-------|3381250027] - F:\data2.cab
[25/09/2006 12:01 PM|-r-------|2407536] - F:\dist.vlu
[21/10/2004 11:16 PM|-r-------|470174] - F:\engine32.cab
[25/09/2006 12:01 PM|-r-------|9936] - F:\layout.bin
[30/08/2006 01:58 PM|-r-------|1279256] - F:\Setup.bmp
[21/10/2004 11:16 PM|-r-------|118736] - F:\setup.exe
[25/09/2006 11:50 AM|-r-------|464834] - F:\setup.ibt
[25/09/2006 11:50 AM|-r-------|666] - F:\setup.ini
[25/09/2006 11:49 AM|-r-------|250222] - F:\setup.inx
[20/01/2005 11:37 PM|-r-------|524288] - G:\A8N-E.BIN
[17/01/2005 07:08 AM|-r-------|524288] - G:\A8N-SLI.BIN
[19/01/2005 06:29 AM|-r-------|524288] - G:\A8NSLI-B.BIN
[23/09/2004 06:03 AM|-r-------|24576] - G:\ASUSACPI.exe
[06/05/2004 11:06 AM|-r-------|49] - G:\AUTORUN.INF
[20/12/2004 05:49 AM|-r-------|43819] - G:\AWDFLASH.EXE
[24/01/2005 10:53 PM|-r-------|4697] - G:\FILELIST.TXT
[02/04/2004 06:45 AM|-r-------|1807] - G:\TECHSUPP.TXT
[11/09/2002 07:42 AM|-r-------|3638] - G:\asus.ico
[24/01/2005 10:56 PM|-r-------|6] - G:\ver.tag
################## | Vaccination |
# C:\autorun.inf ( # Not infected ) -> Folder created by FindyKill.
# D:\autorun.inf ( # Not infected ) -> Folder created by FindyKill.
# E:\autorun.inf ( # Not infected ) -> Folder created by FindyKill.
################## | Etat / Services / Informations |
# Mode sans echec : OK
# Affichage des fichiers cachés : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 2 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | PEH ... |
################## | Cracks / Keygens / Serials |
"C:\Documents and Settings\hugo\.housecall6.6\patch.exe"
04/05/2009 07:09 AM |Size 218736 |Crc32 12c79c8b |Md5 b9a80ba0083fb8196f8ca0bef053ea4e
"C:\Documents and Settings\hugo\Local Settings\Application Data\Adobe\Updater6\Install\pselements7-en_US\Patcher.exe"
15/06/2009 06:20 PM |Size 3454304 |Crc32 6909fbea |Md5 5ef0c3d94b2d801bef1ca6968d1e4d59
################## | ! Fin du rapport # FindyKill V6.001 ! |