1. ========================= SEAF 1.0.1.0 - C_XX
2.
3. Commencé à: 13:10:21 le 04/02/2011
4.
5. Valeur(s) recherchée(s):
6. phpnuke
7.
8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès
9.
10. (!) --- Calcul du Hash "MD5"
11. (!) --- Informations supplémentaires
12. (!) --- Affichage des dossiers
13. (!) --- Recherche registre
14.
15. ====== Fichier(s) ======
16.
17.
18. "C:\Program Files (x86)\ZHPDiag\Quarantine\PHPNukeFR.DIR" [ DIRECTORY ]
19. TC: 31/01/2011,11:32:20 | TM: 31/01/2011,11:33:26 | DA: 31/01/2011,11:33:26
20.
21. =========================
22.
23.
24. "C:\Program Files (x86)\ZHPDiag\Quarantine\PHPNukeFR.DIR\PHPNukeFR" [ DIRECTORY ]
25. TC: 31/01/2011,11:33:26 | TM: 31/01/2011,11:33:26 | DA: 31/01/2011,11:33:26
26.
27. =========================
28.
29.
30. "C:\Program Files (x86)\ZHPDiag\Quarantine\PHPNukeFR.DIR\PHPNukeFRToolbarHelper.exe" [ ARCHIVE | 38 Ko ]
31. TC: 31/01/2011,11:32:20 | TM: 25/03/2010,13:37:28 | DA: 31/01/2011,11:32:20
32.
33. Hash MD5: A320DF2B47CFCAF98D06EB59CD72084C
34.
35.
36. =========================
37.
38.
39. "C:\Users\Sonia\AppData\LocalLow\PHPNukeFR" [ NOT_CONTENT_INDEXED|DIRECTORY ]
40. TC: 29/01/2011,19:03:36 | TM: 29/01/2011,19:03:45 | DA: 29/01/2011,19:03:45
41.
42. =========================
43.
44.
45. "C:\Users\Sonia\AppData\LocalLow\PHPNukeFR\Rss\http___www_phpnuke-europe_org_backend_php .xml" [ NOT_CONTENT_INDEXED|ARCHIVE | 321 o ]
46. TC: 29/01/2011,19:03:56 | TM: 29/01/2011,23:32:53 | DA: 29/01/2011,23:32:53
47.
48. Hash MD5: 11A2F1DF09C10FC9CDDA700CD21C402B
49.
50.
51. =========================
52.
53.
54. "C:\Users\Sonia\AppData\LocalLow\PHPNukeFR\Rss\http___www_phpnuke_org_backend_php .xml" [ NOT_CONTENT_INDEXED|ARCHIVE | 339 o ]
55. TC: 29/01/2011,19:03:52 | TM: 29/01/2011,23:32:52 | DA: 29/01/2011,23:32:52
56.
57. Hash MD5: EF359854291F128631447306C88457E5
58.
59.
60. =========================
61.
62.
63. "C:\Users\Sonia\AppData\Roaming\Microsoft\Windows\Cookies\Low\sonia@www.phpnuke[1].txt" [ NOT_CONTENT_INDEXED|ARCHIVE | 76 o ]
64. TC: 29/01/2011,19:03:52 | TM: 29/01/2011,19:03:52 | DA: 29/01/2011,19:03:52
65.
66. Hash MD5: DFF051F917E3DBBBF65BE70643D6E4B5
67.
68.
69. =========================
70.
71.
72. "C:\Users\Utilisateur\AppData\LocalLow\PHPNukeFR" [ NOT_CONTENT_INDEXED|DIRECTORY ]
73. TC: 29/01/2011,08:43:09 | TM: 29/01/2011,08:51:16 | DA: 29/01/2011,08:51:16
74.
75. =========================
76.
77.
78. "C:\Users\Utilisateur\AppData\LocalLow\PHPNukeFR\Rss\http___www_phpnuke-europe_org_backend_php .xml" [ NOT_CONTENT_INDEXED|ARCHIVE | 321 o ]
79. TC: 29/01/2011,08:51:22 | TM: 31/01/2011,11:35:24 | DA: 31/01/2011,11:35:24
80.
81. Hash MD5: 11A2F1DF09C10FC9CDDA700CD21C402B
82.
83.
84. =========================
85.
86.
87. "C:\Users\Utilisateur\AppData\LocalLow\PHPNukeFR\Rss\http___www_phpnuke_org_backend_php .xml" [ NOT_CONTENT_INDEXED|ARCHIVE | 339 o ]
88. TC: 29/01/2011,08:51:20 | TM: 31/01/2011,11:35:23 | DA: 31/01/2011,11:35:22
89.
90. Hash MD5: EF359854291F128631447306C88457E5
91.
92.
93. =========================
94.
95.
96.
97. ====== Entrée(s) du registre ======
98.
99.
100. [HKLM\Software\Conduit\Platforms\{1c491116-c175-45e1-a570-6fb14fea8b7b}]
101. "Name"="PHPNukeFR" (REG_SZ)
102.
103. [HKLM\Software\Conduit\Toolbars]
104. "PHPNukeFR Toolbar"="{1C491116-C175-45E1-A570-6FB14FEA8B7B}" (REG_SZ)
105.
106. [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5E268D3-B8E7-410E-9C7A-AB79A5258C22}]
107. "AppPath"="C:\Program Files (x86)\PHPNukeFR" (REG_SZ)
108.
109. [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5E268D3-B8E7-410E-9C7A-AB79A5258C22}]
110. "AppName"="PHPNukeFRToolbarHelper.exe" (REG_SZ)
111.
112. [HKLM\Software\Microsoft\Internet Explorer\MAIN]
113. "Start Page"="
http://downloads.phpnuke.org/fr/index.php?rvs=google" (REG_SZ)
114.
115. [HKLM\Software\Microsoft\Internet Explorer\MAIN]
116. "Search Page"="
http://downloads.phpnuke.org/fr/index.php?rvs=google" (REG_SZ)
117.
118. [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{DF15720B-4E11-4A43-A300-62C34D0CC5DC}]
119. "DisplayName"="
http://downloads.phpnuke.org/fr/index.php?rvs=google" (REG_SZ)
120.
121. [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{DF15720B-4E11-4A43-A300-62C34D0CC5DC}]
122. "URL"="
http://downloads.phpnuke.org/fr/index.php?rvs=google" (REG_SZ)
123.
124. [HKLM\Software\Microsoft\Internet Explorer\Toolbar]
125. "{1c491116-c175-45e1-a570-6fb14fea8b7b}"="PHPNukeFR Toolbar" (REG_SZ)
126.
127. [HKLM\Software\PHPNukeFR]
128. DA: 04/02/2011 12:42:56
129.
130. [HKLM\Software\Classes\CLSID\{1C491116-C175-45E1-A570-6FB14FEA8B7B}]
131. ""="PHPNukeFR Toolbar" (REG_SZ)
132.
133. [HKLM\Software\Classes\CLSID\{1C491116-C175-45E1-A570-6FB14FEA8B7B}\InprocServer32]
134. ""="C:\Program Files (x86)\PHPNukeFR\tbPHPN.dll" (REG_SZ)
135.
136. [HKLM\Software\Classes\CLSID\{6B607EB9-5C0B-475B-8D8E-54B5F6368D26}\InprocServer32]
137. ""="C:\Program Files (x86)\PHPNukeFR\tbPHPN.dll" (REG_SZ)
138.
139. [HKLM\Software\Classes\Wow6432Node\CLSID\{1C491116-C175-45E1-A570-6FB14FEA8B7B}]
140. ""="PHPNukeFR Toolbar" (REG_SZ)
141.
142. [HKLM\Software\Classes\Wow6432Node\CLSID\{1C491116-C175-45E1-A570-6FB14FEA8B7B}\InprocServer32]
143. ""="C:\Program Files (x86)\PHPNukeFR\tbPHPN.dll" (REG_SZ)
144.
145. [HKLM\Software\Classes\Wow6432Node\CLSID\{6B607EB9-5C0B-475B-8D8E-54B5F6368D26}\InprocServer32]
146. ""="C:\Program Files (x86)\PHPNukeFR\tbPHPN.dll" (REG_SZ)
147.
148. [HKU\S-1-5-21-202818658-109540548-2438103131-1000\Software\AppDataLow\Software\PHPNukeFR]
149. DA: 31/01/2011 11:35:11
150.
151. =========================
152.
153. Fin à: 13:13:25 le 04/02/2011
154. 424559 Éléments analysés
155.
156. =========================
157. E.O.F