--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU T3200 @ 2.00GHz )
BIOS : ZY2 v0.3509 3E09
USER : Thomas ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:111 Go (Free:58 Go)
D:\ (Local Disk) - NTFS - Total:111 Go (Free:54 Go)
E:\ (CD or DVD)
G:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 10/11/2009|23:13 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[06/09/2009|19:37] C:\Users\Thomas\AppData\Local\Acer Arcade Deluxe
[02/09/2009|10:20] C:\Users\Thomas\AppData\Local\Adobe
[30/08/2009|15:59] C:\Users\Thomas\AppData\Local\Apple
[27/09/2009|17:46] C:\Users\Thomas\AppData\Local\Apple Computer
[29/08/2009|18:41] C:\Users\Thomas\AppData\Local\Application Data
[06/09/2009|19:38] C:\Users\Thomas\AppData\Local\CyberLink
[29/08/2009|19:32] C:\Users\Thomas\AppData\Local\d3d9caps.dat
[25/10/2009|11:41] C:\Users\Thomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[30/08/2009|15:59] C:\Users\Thomas\AppData\Local\eMule
[05/09/2009|21:58] C:\Users\Thomas\AppData\Local\GDIPFONTCACHEV1.DAT
[29/08/2009|20:05] C:\Users\Thomas\AppData\Local\Google
[29/08/2009|18:41] C:\Users\Thomas\AppData\Local\Historique
[10/11/2009|21:28] C:\Users\Thomas\AppData\Local\IconCache.db
[13/09/2009|16:47] C:\Users\Thomas\AppData\Local\Microsoft
[10/09/2009|22:42] C:\Users\Thomas\AppData\Local\Microsoft Games
[02/09/2009|10:48] C:\Users\Thomas\AppData\Local\Microsoft Help
[07/09/2009|17:03] C:\Users\Thomas\AppData\Local\PlayMovie
[07/09/2009|17:03] C:\Users\Thomas\AppData\Local\PowerCinema
[06/09/2009|19:38] C:\Users\Thomas\AppData\Local\SoftDMA
[10/11/2009|23:12] C:\Users\Thomas\AppData\Local\Temp
[29/08/2009|18:41] C:\Users\Thomas\AppData\Local\Temporary Internet Files
[20/09/2009|07:18] C:\Users\Thomas\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[15/09/2009 00:00][--a------] C:\Windows\tasks\McDefragTask.job
[18/04/2008 02:39][--a------] C:\Windows\tasks\McQcTask.job
[10/11/2009 21:29][--ah-----] C:\Windows\tasks\SA.DAT
[10/11/2009 21:28][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[18/04/2008|02:49] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[18/04/2008|02:34] C:\ProgramData\Acer GameZone Console
[09/09/2009|16:32] C:\ProgramData\Adobe
[30/08/2009|15:59] C:\ProgramData\Apple
[30/08/2009|16:00] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[29/08/2009|18:39] C:\ProgramData\Bureau
[06/09/2009|19:38] C:\ProgramData\CyberLink
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[02/09/2009|13:45] C:\ProgramData\eMule
[18/04/2008|03:07] C:\ProgramData\eSobi
[09/11/2009|22:04] C:\ProgramData\fast info info.a16vtsx
[09/11/2009|22:04] C:\ProgramData\fast info info.gcqjb89
[29/08/2009|18:39] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[18/04/2008|02:23] C:\ProgramData\FloodLightGames
[29/08/2009|18:42] C:\ProgramData\Google
[19/09/2009|22:18] C:\ProgramData\Hewlett-Packard
[20/09/2009|07:18] C:\ProgramData\HP
[19/09/2009|22:22] C:\ProgramData\HPSSUPPLY
[19/09/2009|22:23] C:\ProgramData\hpzinstall.log
[02/09/2009|12:26] C:\ProgramData\McAfee
[09/11/2009|22:04] C:\ProgramData\meal manager roam.5pvhr9
[29/08/2009|18:39] C:\ProgramData\Menu D‚marrer
[10/11/2009|21:29] C:\ProgramData\Messenger Plus!
[06/11/2009|23:22] C:\ProgramData\Microsoft
[16/10/2009|08:07] C:\ProgramData\Microsoft Help
[29/08/2009|18:39] C:\ProgramData\ModŠles
[29/08/2009|19:55] C:\ProgramData\NVIDIA
[10/11/2009|22:46] C:\ProgramData\nvModes.001
[26/09/2009|22:08] C:\ProgramData\nvModes.dat
[09/11/2009|22:04] C:\ProgramData\poke two wait
[19/09/2009|16:55] C:\ProgramData\Real
[03/09/2009|02:27] C:\ProgramData\SiteAdvisor
[02/11/2006|14:02] C:\ProgramData\Start Menu
[26/09/2009|22:08] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/11/2009|22:04] C:\ProgramData\Vc Nurb That Dent
[19/09/2009|22:23] C:\ProgramData\WEBREG
[02/09/2009|00:30] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[29/08/2009|18:42] C:\Program Files\Acer
[29/08/2009|19:33] C:\Program Files\Acer Arcade Deluxe
[18/04/2008|02:34] C:\Program Files\Acer GameZone
[29/08/2009|19:24] C:\Program Files\Acer Inc
[29/08/2009|19:34] C:\Program Files\Acer Incorporated
[18/04/2008|02:49] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[09/09/2009|16:31] C:\Program Files\Adobe
[21/10/2009|14:54] C:\Program Files\AnyBizSoft
[30/08/2009|15:59] C:\Program Files\Apple Software Update
[09/11/2009|22:03] C:\Program Files\Ask Search Assistant
[18/04/2008|02:13] C:\Program Files\AVerMedia
[18/04/2008|02:34] C:\Program Files\Big Kahuna Reef
[18/04/2008|02:10] C:\Program Files\Broadcom
[06/11/2009|23:23] C:\Program Files\Common Files
[18/04/2008|02:35] C:\Program Files\Convesoft
[18/04/2008|03:06] C:\Program Files\Cyberlink
[25/10/2009|10:12] C:\Program Files\DivX
[30/08/2009|15:59] C:\Program Files\eMule
[18/04/2008|03:06] C:\Program Files\eSobi
[29/08/2009|18:39] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[02/09/2009|09:27] C:\Program Files\Google
[19/09/2009|22:20] C:\Program Files\Hewlett-Packard
[19/09/2009|22:22] C:\Program Files\HP
[20/09/2009|17:00] C:\Program Files\InstallShield Installation Information
[29/08/2009|19:12] C:\Program Files\Intel
[16/10/2009|08:19] C:\Program Files\Internet Explorer
[29/08/2009|19:21] C:\Program Files\Launch Manager
[03/09/2009|02:26] C:\Program Files\McAfee
[18/04/2008|02:16] C:\Program Files\McAfee.com
[10/11/2009|20:00] C:\Program Files\Messenger Plus! Live
[07/11/2009|10:10] C:\Program Files\Microsoft
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[02/09/2009|10:52] C:\Program Files\Microsoft Office
[18/09/2009|18:20] C:\Program Files\Microsoft Silverlight
[02/09/2009|10:52] C:\Program Files\Microsoft Visual Studio
[02/09/2009|10:48] C:\Program Files\Microsoft Visual Studio 8
[16/10/2009|08:06] C:\Program Files\Microsoft Works
[02/09/2009|10:51] C:\Program Files\Microsoft.NET
[21/01/2008|03:35] C:\Program Files\Movie Maker
[02/09/2009|10:52] C:\Program Files\MSBuild
[02/09/2009|09:26] C:\Program Files\MSXML 4.0
[18/04/2008|03:13] C:\Program Files\NewTech Infosystems
[20/09/2009|17:00] C:\Program Files\Olympus
[30/08/2009|16:00] C:\Program Files\QuickTime
[19/09/2009|16:54] C:\Program Files\Real
[18/04/2008|02:05] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[18/09/2009|16:09] C:\Program Files\SFR
[18/04/2008|02:10] C:\Program Files\Synaptics
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[18/04/2008|02:14] C:\Program Files\Winbond Electronics Corporation
[21/01/2008|03:35] C:\Program Files\Windows Calendar
[21/01/2008|03:35] C:\Program Files\Windows Collaboration
[21/01/2008|03:35] C:\Program Files\Windows Defender
[21/01/2008|03:35] C:\Program Files\Windows Journal
[07/11/2009|10:10] C:\Program Files\Windows Live
[07/11/2009|10:10] C:\Program Files\Windows Live SkyDrive
[16/10/2009|08:19] C:\Program Files\Windows Mail
[29/10/2009|09:23] C:\Program Files\Windows Media Player
[29/08/2009|18:39] C:\Program Files\Windows NT
[21/01/2008|03:35] C:\Program Files\Windows Photo Gallery
[21/01/2008|03:35] C:\Program Files\Windows Sidebar
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[09/09/2009|16:32] C:\Program Files\Common Files\Adobe
[02/09/2009|10:52] C:\Program Files\Common Files\DESIGNER
[25/10/2009|10:12] C:\Program Files\Common Files\DivX Shared
[19/09/2009|22:20] C:\Program Files\Common Files\Hewlett-Packard
[19/09/2009|22:22] C:\Program Files\Common Files\HP
[18/04/2008|02:22] C:\Program Files\Common Files\InstallShield
[18/04/2008|03:12] C:\Program Files\Common Files\LightScribe
[18/04/2008|02:16] C:\Program Files\Common Files\McAfee
[07/11/2009|10:10] C:\Program Files\Common Files\microsoft shared
[18/04/2008|03:09] C:\Program Files\Common Files\muvee Technologies
[18/04/2008|02:23] C:\Program Files\Common Files\Oberon Media
[30/08/2009|15:58] C:\Program Files\Common Files\PX Storage Engine
[02/10/2009|15:51] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[05/09/2009|21:46] C:\Program Files\Common Files\System
[06/11/2009|23:23] C:\Program Files\Common Files\Windows Live
[02/09/2009|00:35] C:\Program Files\Common Files\WindowsLiveInstaller
--------------------\\ Process
( 95 Processes )
iexplore.exe ~ [PID:4308]
iexplore.exe ~ [PID:4448]
iexplore.exe ~ [PID:5348]
--------------------\\ Recherche avec S_Lop
C:\ProgramData\meal manager roam.5pvhr9
C:\ProgramData\fast info info.a16vtsx
C:\ProgramData\fast info info.gcqjb89
C:\Users\Thomas\AppData\Local\Temp\bisFDED.exe
C:\ProgramData\POKETW~1
C:\ProgramData\POKETW~1\Datebaitscr.exe
C:\ProgramData\POKETW~1\lbmuvtio.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\Users\Thomas\AppData\Roaming\MICROS~1\Windows\Cookies\thomas@advertstream[2].txt
C:\Users\Thomas\AppData\Roaming\MICROS~1\Windows\Cookies\thomas@install.divocodec[2].txt
C:\Users\Thomas\AppData\Roaming\MICROS~1\Windows\Cookies\thomas@advertising[1].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Moregpltons]
"DisplayName"="CiD Help"
"UninstallString"="C:\\PROGRA~2\\POKETW~1\\Datebaitscr.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"That dent five else"="\"C:\\ProgramData\\meal manager roam.5pvhr9\""
"COPY DEBUG"="\"C:\\ProgramData\\fast info info.gcqjb89\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-11-10 23:13:32
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 6
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:151][D:11]-> C:\Users\Thomas\AppData\Local\Temp
[F:354][D:1]-> C:\Users\Thomas\AppData\Roaming\MICROS~1\Windows\Cookies
[F:1939][D:5]-> C:\Users\Thomas\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:1][D:1]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 10/11/2009|23:14 - Option : [1]
--------------------\\ Fin du rapport a 23:14:52
[ UAC => 1 ]