Voila mon rapport:
--------------------\\ Lop S&D 4.2.4-3 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E7200 @ 2.53GHz )
BIOS : Default System BIOS
USER : pc-du-bas ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total : 153 Go Free : 97 Go
D:\ (Local Disk) - NTFS - Total : 303 Go Free : 303 Go
E:\ (CD or DVD) - CDFS - Total : 0 Go Free : 0 Go
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
"C:\Lop SD" ( MAJ : 14-09-2008|22:40 )
Option : [1] ( 15/09/2008|16:53 )
[ UAC => 1 ]
--------------------\\ Listing des dossiers dans Local
[12/09/2008|17:40] C:\Users\PC-DU-~1\AppData\Local\Ahead
[14/09/2008|13:28] C:\Users\PC-DU-~1\AppData\Local\Apple
[12/09/2008|16:55] C:\Users\PC-DU-~1\AppData\Local\Application Data
[12/09/2008|16:56] C:\Users\PC-DU-~1\AppData\Local\ATI
[13/09/2008|08:53] C:\Users\PC-DU-~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[14/09/2008|11:21] C:\Users\PC-DU-~1\AppData\Local\GDIPFONTCACHEV1.DAT
[12/09/2008|18:15] C:\Users\PC-DU-~1\AppData\Local\Google
[12/09/2008|16:55] C:\Users\PC-DU-~1\AppData\Local\Historique
[15/09/2008|15:04] C:\Users\PC-DU-~1\AppData\Local\IconCache.db
[13/09/2008|10:17] C:\Users\PC-DU-~1\AppData\Local\Microsoft
[14/09/2008|08:06] C:\Users\PC-DU-~1\AppData\Local\Microsoft Games
[12/09/2008|17:42] C:\Users\PC-DU-~1\AppData\Local\Mozilla
[12/09/2008|16:55] C:\Users\PC-DU-~1\AppData\Local\Seven Zip
[15/09/2008|16:51] C:\Users\PC-DU-~1\AppData\Local\Temp
[12/09/2008|16:55] C:\Users\PC-DU-~1\AppData\Local\Temporary Internet Files
[12/09/2008|19:52] C:\Users\PC-DU-~1\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[15/09/2008 15:05][--ah-----] C:\Windows\tasks\SA.DAT
[15/09/2008 15:04][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[12/09/2008|16:55] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[12/09/2008|17:52] C:\ProgramData\about bone bone.sfd96d4
[12/09/2008|17:52] C:\ProgramData\about bone bone.u488v3l
[12/09/2008|17:52] C:\ProgramData\Admin Cool Hole.rjx6yqi
[08/08/2008|09:05] C:\ProgramData\Adobe
[14/09/2008|13:28] C:\ProgramData\Apple
[02/11/2006|15:02] C:\ProgramData\Application Data
[08/08/2008|09:17] C:\ProgramData\ATI
[12/09/2008|17:10] C:\ProgramData\Avira
[12/09/2008|16:48] C:\ProgramData\Bureau
[12/09/2008|17:52] C:\ProgramData\byte loud style cool
[12/09/2008|17:21] C:\ProgramData\CanonBJ
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[12/09/2008|17:52] C:\ProgramData\drv help
[12/09/2008|16:48] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[12/09/2008|16:54] C:\ProgramData\fsc-reg
[14/09/2008|22:30] C:\ProgramData\Google
[14/09/2008|22:44] C:\ProgramData\Lavasoft
[12/09/2008|17:21] C:\ProgramData\LogiShrd
[12/09/2008|17:19] C:\ProgramData\Logitech
[12/09/2008|17:15] C:\ProgramData\ma-config.com
[12/09/2008|16:48] C:\ProgramData\Menu D‚marrer
[08/08/2008|09:13] C:\ProgramData\Microsoft
[12/09/2008|18:20] C:\ProgramData\Microsoft Help
[12/09/2008|16:48] C:\ProgramData\ModŠles
[08/08/2008|09:07] C:\ProgramData\Nero
[14/09/2008|14:19] C:\ProgramData\RapidSolution
[02/11/2006|15:02] C:\ProgramData\Start Menu
[02/11/2006|15:02] C:\ProgramData\Templates
[12/09/2008|17:49] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[12/09/2008|16:55] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[12/09/2008|19:35] C:\Program Files\Adobe
[14/09/2008|13:28] C:\Program Files\Apple Software Update
[08/08/2008|09:02] C:\Program Files\ATI
[08/08/2008|09:03] C:\Program Files\ATI Technologies
[12/09/2008|17:10] C:\Program Files\Avira
[12/09/2008|17:46] C:\Program Files\CCleaner
[15/09/2008|10:57] C:\Program Files\Common Files
[12/09/2008|17:44] C:\Program Files\Crazy Browser
[14/09/2008|22:23] C:\Program Files\Dealio
[12/09/2008|18:04] C:\Program Files\Dofus
[12/09/2008|17:52] C:\Program Files\drv help
[13/09/2008|10:53] C:\Program Files\Electronic Arts
[13/09/2008|09:57] C:\Program Files\FBM Software
[12/09/2008|16:48] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[12/09/2008|16:54] C:\Program Files\Fujitsu Siemens Computers
[15/09/2008|10:58] C:\Program Files\Google
[12/09/2008|19:34] C:\Program Files\Hewlett-Packard
[12/09/2008|20:36] C:\Program Files\HP
[15/09/2008|10:55] C:\Program Files\InstallShield Installation Information
[14/09/2008|13:29] C:\Program Files\Internet Explorer
[14/09/2008|22:14] C:\Program Files\Java
[12/09/2008|22:15] C:\Program Files\Lavalys
[14/09/2008|22:43] C:\Program Files\Lavasoft
[12/09/2008|17:18] C:\Program Files\Logitech
[15/09/2008|10:55] C:\Program Files\LucasArts
[12/09/2008|17:15] C:\Program Files\ma-config.com
[14/09/2008|22:27] C:\Program Files\Messenger Plus! Live
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[08/08/2008|09:11] C:\Program Files\Microsoft Office
[08/08/2008|09:13] C:\Program Files\Microsoft Works
[08/08/2008|09:11] C:\Program Files\Microsoft.NET
[21/01/2008|04:35] C:\Program Files\Movie Maker
[14/09/2008|22:29] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[12/09/2008|17:05] C:\Program Files\MSXML 4.0
[08/08/2008|09:07] C:\Program Files\Nero
[12/09/2008|18:29] C:\Program Files\Norman
[14/09/2008|11:01] C:\Program Files\OpenOffice.org 2.4
[13/09/2008|21:33] C:\Program Files\Panicware
[12/09/2008|16:52] C:\Program Files\Picasa2
[14/09/2008|14:02] C:\Program Files\PixiePack Codec Pack
[14/09/2008|21:39] C:\Program Files\POPUPKILLER
[14/09/2008|14:01] C:\Program Files\RapidSolution
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[12/09/2008|17:01] C:\Program Files\SAGEM
[14/09/2008|13:44] C:\Program Files\Search Settings
[12/09/2008|17:01] C:\Program Files\Securitoo
[13/09/2008|09:15] C:\Program Files\Teamspeak2_RC2
[14/09/2008|22:13] C:\Program Files\Trend Micro
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[14/09/2008|10:53] C:\Program Files\VideoLAN
[12/09/2008|17:03] C:\Program Files\Wanadoo
[21/01/2008|04:35] C:\Program Files\Windows Calendar
[21/01/2008|04:35] C:\Program Files\Windows Collaboration
[21/01/2008|04:35] C:\Program Files\Windows Defender
[21/01/2008|04:35] C:\Program Files\Windows Journal
[12/09/2008|17:50] C:\Program Files\Windows Live
[12/09/2008|18:05] C:\Program Files\Windows Mail
[21/01/2008|04:35] C:\Program Files\Windows Media Player
[12/09/2008|16:48] C:\Program Files\Windows NT
[21/01/2008|04:35] C:\Program Files\Windows Photo Gallery
[21/01/2008|04:35] C:\Program Files\Windows Sidebar
[12/09/2008|20:29] C:\Program Files\WinRAR
[13/09/2008|09:58] C:\Program Files\xoftspy
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[12/09/2008|19:35] C:\Program Files\Common Files\Adobe
[14/09/2008|13:33] C:\Program Files\Common Files\Apple
[08/08/2008|09:11] C:\Program Files\Common Files\DESIGNER
[12/09/2008|16:54] C:\Program Files\Common Files\Fujitsu Siemens Computers
[13/09/2008|09:57] C:\Program Files\Common Files\InstallShield
[14/09/2008|11:01] C:\Program Files\Common Files\Java
[12/09/2008|17:19] C:\Program Files\Common Files\Logishrd
[14/09/2008|14:01] C:\Program Files\Common Files\microsoft shared
[08/08/2008|09:08] C:\Program Files\Common Files\Nero
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[15/09/2008|10:57] C:\Program Files\Common Files\SWF Studio
[21/01/2008|04:35] C:\Program Files\Common Files\System
[12/09/2008|17:50] C:\Program Files\Common Files\WindowsLiveInstaller
[14/09/2008|22:42] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 64 Processes )
iexplore.exe ~ [PID:456]
iexplore.exe ~ [PID:1440]
iexplore.exe ~ [PID:5052]
--------------------\\ Recherche avec S_Lop
C:\ProgramData\about bone bone.sfd96d4
C:\ProgramData\about bone bone.u488v3l
C:\ProgramData\Admin Cool Hole.rjx6yqi
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\ProgramData\byte loud style cool
C:\ProgramData\byte loud style cool\Name tool.exe
C:\Users\PC-DU-~1\AppData\Roaming\MICROS~1\Windows\Cookies\pc-du-bas@advertising[2].txt
C:\Users\PC-DU-~1\AppData\Roaming\MICROS~1\Windows\Cookies\pc-du-bas@adopt.euroclick[2].txt
C:\Users\PC-DU-~1\AppData\Roaming\MICROS~1\Windows\Cookies\pc-du-bas@partypoker[2].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"anti send"="\"C:\\ProgramData\\about bone bone.u488v3l\""
"style cool 2 city"="\"C:\\ProgramData\\Admin Cool Hole.rjx6yqi\""
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-09-15 16:53:51
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 9
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:89][D:12]-> C:\Users\PC-DU-~1\AppData\Local\Temp
[F:135][D:1]-> C:\Users\PC-DU-~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:2194][D:4]-> C:\Users\PC-DU-~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:14][D:6]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 15/09/2008|16:54 - Option : [1]
--------------------\\ Fin du rapport a 16:54:32
[ UAC => 1 ]