--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Turion(tm) 64 X2 Mobile Technology TL-50 )
BIOS : Ver 1.00PARTTBL
USER : plamen kekov ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.26 (Activated)
C:\ (Local Disk) - FAT32 - Total:53 Go (Free:3 Go)
D:\ (Local Disk) - FAT32 - Total:53 Go (Free:20 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( dim. 03/01/2010|18:58 )
--------------------\\ Listing des dossiers dans APPLIC~1
[21/06/2006|12:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\ATI
[21/06/2006|11:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[21/06/2006|11:35] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[17/11/2009|12:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[05/09/2009|16:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[21/06/2006|12:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[01/11/2007|14:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[11/02/2007|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/01/2010|17:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[04/03/2007|20:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bone Download Vga Dumb
[21/04/2007|20:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[20/01/2007|14:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[23/01/2007|17:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Droppix
[20/01/2007|18:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[06/01/2008|14:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[03/01/2010|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[21/06/2006|11:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[26/04/2007|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NtiDvdCopy
[23/01/2007|17:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[09/04/2009|19:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony
[05/07/2009|17:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[06/06/2008|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[20/01/2007|14:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[21/03/2007|15:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[23/01/2008|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TVU networks
[29/01/2007|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[29/01/2007|02:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[23/01/2007|18:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[05/03/2008|19:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[21/06/2006|11:35] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[17/04/2009|19:35] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[21/06/2006|11:35] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[21/06/2006|12:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[21/06/2006|11:51] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[21/06/2006|11:35] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[20/01/2007|15:01] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Adobe
[08/02/2007|09:08] C:\DOCUME~1\PLAMEN~1\APPLIC~1\AdobeUM
[20/07/2008|18:02] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Ahead
[11/02/2007|11:38] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Apple Computer
[21/06/2006|12:01] C:\DOCUME~1\PLAMEN~1\APPLIC~1\ATI
[04/03/2007|20:09] C:\DOCUME~1\PLAMEN~1\APPLIC~1\BitDownload
[27/05/2007|12:07] C:\DOCUME~1\PLAMEN~1\APPLIC~1\ConvertTemp
[20/01/2007|14:15] C:\DOCUME~1\PLAMEN~1\APPLIC~1\CyberLink
[21/01/2007|14:31] C:\DOCUME~1\PLAMEN~1\APPLIC~1\DivX
[23/01/2007|17:44] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Droppix
[13/04/2009|19:56] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Free Download Manager
[20/01/2007|18:21] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Google
[24/01/2007|15:42] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Help
[05/01/2008|22:04] C:\DOCUME~1\PLAMEN~1\APPLIC~1\ICAClient
[21/06/2006|11:51] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Identities
[06/01/2008|15:01] C:\DOCUME~1\PLAMEN~1\APPLIC~1\InstallShield
[05/02/2007|16:16] C:\DOCUME~1\PLAMEN~1\APPLIC~1\InterTrust
[23/01/2007|18:07] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Lavasoft
[20/01/2007|05:10] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Macromedia
[03/01/2010|15:25] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Malwarebytes
[21/06/2006|11:35] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Microsoft
[21/01/2007|13:55] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Mozilla
[04/03/2007|20:13] C:\DOCUME~1\PLAMEN~1\APPLIC~1\mpegspamroam
[20/01/2007|18:32] C:\DOCUME~1\PLAMEN~1\APPLIC~1\MSNInstaller
[23/01/2007|17:23] C:\DOCUME~1\PLAMEN~1\APPLIC~1\OpenOffice.org2
[27/05/2007|12:05] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Samsung
[22/02/2007|16:13] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Shareaza
[15/10/2009|20:19] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Skype
[05/01/2008|21:16] C:\DOCUME~1\PLAMEN~1\APPLIC~1\skypePM
[09/04/2009|19:13] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Sony
[05/07/2009|18:07] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Sony Corporation
[31/03/2007|22:20] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Sun
[27/05/2007|12:07] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Temporary
[27/05/2007|12:07] C:\DOCUME~1\PLAMEN~1\APPLIC~1\TransRender
[15/03/2009|01:17] C:\DOCUME~1\PLAMEN~1\APPLIC~1\TrojanHunter
[23/01/2008|21:31] C:\DOCUME~1\PLAMEN~1\APPLIC~1\TVU networks
[05/02/2007|16:33] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Ulead Systems
[11/11/2007|13:38] C:\DOCUME~1\PLAMEN~1\APPLIC~1\uTorrent
[17/04/2009|19:38] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Winamp
[19/05/2009|19:45] C:\DOCUME~1\PLAMEN~1\APPLIC~1\Windows Live Writer
[06/01/2008|16:06] C:\DOCUME~1\PLAMEN~1\APPLIC~1\WinPatrol
[26/03/2007|13:24] C:\DOCUME~1\ADMINI~2\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[03/01/2010 18:33][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[03/01/2010 18:33][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[03/01/2010 16:51][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{A9DAB248-0F81-4633-B410-216F1B4D79B9}.job
[06/01/2008 14:45][--a------] C:\WINDOWS\tasks\XoftSpy.job
[28/11/2009 14:41][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[03/01/2010 17:49][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 20:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[21/06/2006|12:08] C:\Program Files\Acer Inc
[06/01/2008|15:06] C:\Program Files\Acer OrbiCam Utility Bar
[21/06/2006|12:08] C:\Program Files\Adobe
[21/01/2007|13:28] C:\Program Files\Alwil Software
[04/01/2009|20:00] C:\Program Files\Apple Software Update
[21/06/2006|11:52] C:\Program Files\ATI Technologies
[20/07/2008|17:23] C:\Program Files\AVG
[03/01/2010|17:24] C:\Program Files\Avira
[06/01/2008|18:49] C:\Program Files\BillP Studios
[05/09/2009|16:30] C:\Program Files\Bonjour
[07/12/2008|14:54] C:\Program Files\bwin
[14/03/2009|19:26] C:\Program Files\CCleaner
[05/01/2008|22:03] C:\Program Files\Citrix
[21/06/2006|11:41] C:\Program Files\ComPlus Applications
[02/05/2009|22:49] C:\Program Files\Conduit
[21/06/2006|12:05] C:\Program Files\CONEXANT
[21/06/2006|12:10] C:\Program Files\CyberLink
[05/05/2007|13:28] C:\Program Files\Dictionnaire
[21/06/2006|12:51] C:\Program Files\DIFX
[21/01/2007|13:54] C:\Program Files\DivX
[29/01/2009|19:59] C:\Program Files\Eden Flirt
[21/01/2007|13:25] C:\Program Files\eMule
[21/06/2006|11:36] C:\Program Files\Fichiers communs
[13/04/2009|19:56] C:\Program Files\Free Download Manager
[21/06/2006|13:01] C:\Program Files\FrenchOtto
[07/12/2008|14:47] C:\Program Files\Full Tilt Poker
[25/03/2007|00:42] C:\Program Files\Funcom
[21/06/2006|13:01] C:\Program Files\GemMasterFrench
[20/01/2007|18:21] C:\Program Files\Google
[23/01/2007|23:12] C:\Program Files\ICQLite
[21/06/2006|11:52] C:\Program Files\InstallShield Installation Information
[21/06/2006|11:43] C:\Program Files\Internet Explorer
[17/11/2009|12:33] C:\Program Files\iPod
[17/11/2009|12:33] C:\Program Files\iTunes
[31/03/2007|22:19] C:\Program Files\Java
[20/01/2007|05:17] C:\Program Files\Launch Manager
[23/01/2007|17:58] C:\Program Files\Lavasoft
[23/01/2007|18:21] C:\Program Files\Macromedia
[03/01/2010|15:25] C:\Program Files\Malwarebytes' Anti-Malware
[21/06/2006|11:40] C:\Program Files\Messenger
[04/04/2009|10:01] C:\Program Files\Microsoft
[07/06/2008|10:16] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[21/06/2006|11:45] C:\Program Files\microsoft frontpage
[23/01/2007|18:22] C:\Program Files\Microsoft Office
[04/04/2009|10:06] C:\Program Files\Microsoft Silverlight
[04/04/2009|10:03] C:\Program Files\Microsoft SQL Server Compact Edition
[04/04/2009|10:05] C:\Program Files\Microsoft Sync Framework
[21/06/2006|11:41] C:\Program Files\Movie Maker
[21/01/2007|13:55] C:\Program Files\Mozilla Firefox
[04/03/2007|21:24] C:\Program Files\mpegspamroam
[10/05/2009|13:10] C:\Program Files\MSBuild
[23/01/2007|18:22] C:\Program Files\MSECache
[21/06/2006|11:40] C:\Program Files\MSN
[21/06/2006|11:40] C:\Program Files\MSN Gaming Zone
[28/05/2007|17:10] C:\Program Files\MSXML 4.0
[20/07/2008|17:58] C:\Program Files\Nero
[21/06/2006|11:43] C:\Program Files\NetMeeting
[21/06/2006|12:16] C:\Program Files\NewTech Infosystems
[21/06/2006|11:41] C:\Program Files\Online Services
[23/01/2007|17:22] C:\Program Files\OpenOffice.org 2.1
[21/06/2006|11:43] C:\Program Files\Outlook Express
[02/05/2009|22:49] C:\Program Files\P2P_Energy
[20/01/2007|00:22] C:\Program Files\PartyGaming
[08/12/2007|18:37] C:\Program Files\PokerStars
[17/11/2009|12:29] C:\Program Files\QuickTime
[21/06/2006|12:01] C:\Program Files\Realtek
[10/05/2009|13:10] C:\Program Files\Reference Assemblies
[17/11/2009|12:38] C:\Program Files\Safari
[15/05/2009|19:16] C:\Program Files\Samsung
[21/06/2006|11:43] C:\Program Files\Services en ligne
[02/05/2009|22:45] C:\Program Files\Shareaza Pro
[23/01/2007|17:58] C:\Program Files\Skype
[26/03/2007|13:24] C:\Program Files\Sonic
[05/07/2009|17:47] C:\Program Files\Sony
[20/01/2007|14:09] C:\Program Files\Symantec
[20/01/2007|05:15] C:\Program Files\Synaptics
[03/01/2010|17:27] C:\Program Files\trend micro
[14/03/2009|22:55] C:\Program Files\TrojanHunter 5.0
[16/02/2007|20:02] C:\Program Files\Turbo Torrent
[23/01/2008|21:31] C:\Program Files\TVUPlayer
[29/01/2007|21:32] C:\Program Files\Ulead Systems
[21/06/2006|11:51] C:\Program Files\Uninstall Information
[11/11/2007|13:38] C:\Program Files\uTorrent
[29/01/2007|21:25] C:\Program Files\V6320 Digital Camera
[29/01/2007|21:24] C:\Program Files\V6320 Camera Manual
[09/02/2007|13:13] C:\Program Files\WIDCOMM
[17/10/2008|21:48] C:\Program Files\WinamaxPoker
[17/04/2009|19:38] C:\Program Files\Winamp
[05/03/2008|19:57] C:\Program Files\Windows Live
[04/04/2009|10:01] C:\Program Files\Windows Live SkyDrive
[27/01/2007|18:55] C:\Program Files\Windows Media Connect 2
[21/06/2006|11:41] C:\Program Files\Windows Media Player
[21/06/2006|11:40] C:\Program Files\Windows NT
[21/06/2006|11:41] C:\Program Files\Windows Plus
[21/06/2006|11:43] C:\Program Files\WindowsUpdate
[23/01/2007|17:23] C:\Program Files\WinRAR
[21/06/2006|11:45] C:\Program Files\xerox
[06/01/2008|14:37] C:\Program Files\XoftSpy
[20/01/2007|05:36] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[21/06/2006|12:08] C:\Program Files\Fichiers communs\Adobe
[11/06/2009|19:11] C:\Program Files\Fichiers communs\Adobe AIR
[20/07/2008|17:58] C:\Program Files\Fichiers communs\Ahead
[01/11/2007|14:12] C:\Program Files\Fichiers communs\Apple
[21/06/2006|11:56] C:\Program Files\Fichiers communs\ATI Technologies
[10/08/2009|20:13] C:\Program Files\Fichiers communs\DivX Shared
[21/06/2006|11:52] C:\Program Files\Fichiers communs\InstallShield
[31/03/2007|22:17] C:\Program Files\Fichiers communs\Java
[21/06/2006|12:16] C:\Program Files\Fichiers communs\LightScribe
[21/06/2006|11:36] C:\Program Files\Fichiers communs\Microsoft Shared
[21/06/2006|11:43] C:\Program Files\Fichiers communs\MSSoap
[21/06/2006|12:16] C:\Program Files\Fichiers communs\muvee Technologies
[21/06/2006|12:16] C:\Program Files\Fichiers communs\NewTech Infosystems
[21/06/2006|11:36] C:\Program Files\Fichiers communs\ODBC
[21/06/2006|11:43] C:\Program Files\Fichiers communs\Services
[15/10/2009|20:17] C:\Program Files\Fichiers communs\Skype
[21/06/2006|11:36] C:\Program Files\Fichiers communs\SpeechEngines
[20/01/2007|14:09] C:\Program Files\Fichiers communs\Symantec Shared
[21/06/2006|11:43] C:\Program Files\Fichiers communs\System
[29/01/2007|21:32] C:\Program Files\Fichiers communs\Ulead Systems
[04/04/2009|09:54] C:\Program Files\Fichiers communs\Windows Live
[05/03/2008|19:57] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 62 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
C:\DOCUME~1\PLAMEN~1\APPLIC~1\MPEGSP~1
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\PLAMEN~1\APPLIC~1\Bitdownload
C:\DOCUME~1\PLAMEN~1\APPLIC~1\BitDownload
C:\DOCUME~1\PLAMEN~1\APPLIC~1\BitDownload\Data
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Name Shim Mix]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~1\\PLAMEN~1\\APPLIC~1\\MPEGSP~1\\PHONE BASH.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-01-03 19:00:04
Windows 5.1.2600 Service Pack 3 FAT NTAPI
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
C:\WINDOWS\system32\BKmUuBeg.ini
C:\WINDOWS\system32\BKmUuBeg.ini2
[b]==> VUNDO <==
/b
[F:209][D:13]-> d:\Temp
[F:13][D:0]-> C:\DOCUME~1\PLAMEN~1\Cookies
[F:21][D:5]-> C:\DOCUME~1\PLAMEN~1\LOCALS~1\TEMPOR~1\content.IE5
[F:2][D:0]-> C:\Recycled
1 - "C:\Lop SD\LopR_1.txt" - dim. 03/01/2010|19:00 - Option : [1]
--------------------\\ Fin du rapport a 19:00:31