Voilà le rapport LopSD :
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft® Windows Vista™ Professionnel ( v6.0.6000 )
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T7500 @ 2.20GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A02
USER : Mordan ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:220 Go (Free:144 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:6 Go)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:596 Go (Free:416 Go)
G:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( 14/12/2008|17:08 )
--------------------\\ Listing des dossiers dans Local
[13/12/2008|19:13] C:\Users\Mordan\AppData\Local\Activision
[21/12/2007|14:28] C:\Users\Mordan\AppData\Local\Adobe
[10/12/2007|20:40] C:\Users\Mordan\AppData\Local\Application Data
[31/10/2008|18:54] C:\Users\Mordan\AppData\Local\CurseClient
[29/10/2008|01:07] C:\Users\Mordan\AppData\Local\d3d9caps.dat
[13/12/2008|18:15] C:\Users\Mordan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[24/11/2008|20:35] C:\Users\Mordan\AppData\Local\Downloaded Installations
[13/10/2008|14:45] C:\Users\Mordan\AppData\Local\Eraser
[01/12/2008|21:49] C:\Users\Mordan\AppData\Local\Fallout3
[24/10/2008|00:15] C:\Users\Mordan\AppData\Local\GDIPFONTCACHEV1.DAT
[10/12/2007|23:14] C:\Users\Mordan\AppData\Local\Google
[10/12/2007|20:40] C:\Users\Mordan\AppData\Local\Historique
[14/12/2008|15:14] C:\Users\Mordan\AppData\Local\IconCache.db
[02/02/2008|11:48] C:\Users\Mordan\AppData\Local\MediaDirect
[01/12/2008|21:50] C:\Users\Mordan\AppData\Local\Microsoft
[18/12/2007|12:34] C:\Users\Mordan\AppData\Local\Microsoft Help
[10/12/2007|23:20] C:\Users\Mordan\AppData\Local\Mozilla
[13/12/2008|20:55] C:\Users\Mordan\AppData\Local\My Games
[21/12/2007|14:47] C:\Users\Mordan\AppData\Local\NVIDIA Corporation
[28/11/2008|00:26] C:\Users\Mordan\AppData\Local\PunkBuster
[23/09/2008|21:38] C:\Users\Mordan\AppData\Local\QuickPar
[18/12/2007|15:09] C:\Users\Mordan\AppData\Local\Steam
[10/12/2007|23:45] C:\Users\Mordan\AppData\Local\SupportSoft
[10/08/2008|09:39] C:\Users\Mordan\AppData\Local\TechSmith
[14/12/2008|17:07] C:\Users\Mordan\AppData\Local\Temp
[10/12/2007|20:40] C:\Users\Mordan\AppData\Local\Temporary Internet Files
[18/12/2007|14:11] C:\Users\Mordan\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[13/12/2008 17:50][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{2ED18881-2399-40AB-80B1-10808240128C}.job
[14/12/2008 16:47][--ah-----] C:\Windows\tasks\SA.DAT
[14/12/2008 16:46][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[14/12/2008|14:55] C:\ProgramData\{74D61F17-FFC2-41AF-96E5-1DCB0631B6D1}
[10/12/2008|17:01] C:\ProgramData\2DBoy
[10/12/2007|23:59] C:\ProgramData\addr_file.html
[08/08/2008|10:11] C:\ProgramData\Adobe
[08/08/2008|12:51] C:\ProgramData\ALM
[10/12/2007|20:37] C:\ProgramData\Application Data
[10/12/2007|23:57] C:\ProgramData\Avira
[15/10/2008|21:21] C:\ProgramData\Blizzard
[21/12/2007|15:19] C:\ProgramData\BOONTY
[10/12/2007|20:37] C:\ProgramData\Bureau
[10/12/2007|23:38] C:\ProgramData\CheckPoint
[01/02/2008|19:30] C:\ProgramData\CyberLink
[17/05/2008|09:15] C:\ProgramData\Dell
[10/12/2007|20:37] C:\ProgramData\Documents
[23/09/2008|22:12] C:\ProgramData\Electronic Arts
[10/12/2007|20:37] C:\ProgramData\Favoris
[13/11/2008|15:14] C:\ProgramData\FLEXnet
[06/12/2007|01:02] C:\ProgramData\Google
[06/12/2007|00:56] C:\ProgramData\InstallShield
[18/08/2008|12:57] C:\ProgramData\Lavasoft
[29/10/2008|10:57] C:\ProgramData\ma-config.com
[14/12/2008|15:44] C:\ProgramData\Malwarebytes
[10/12/2007|21:41] C:\ProgramData\McAfee
[10/12/2007|20:37] C:\ProgramData\Menu D‚marrer
[18/12/2007|20:04] C:\ProgramData\Messenger Plus!
[13/10/2008|13:29] C:\ProgramData\Microsoft
[13/12/2008|18:01] C:\ProgramData\Microsoft Help
[10/12/2007|20:37] C:\ProgramData\ModŠles
[29/10/2008|01:29] C:\ProgramData\NVIDIA
[14/12/2008|17:01] C:\ProgramData\nvModes.001
[14/12/2008|15:21] C:\ProgramData\nvModes.dat
[18/08/2008|11:54] C:\ProgramData\Roxio
[06/12/2007|00:56] C:\ProgramData\Sonic
[13/12/2008|23:37] C:\ProgramData\Spybot - Search & Destroy
[06/12/2007|01:05] C:\ProgramData\SupportSoft
[19/02/2008|14:05] C:\ProgramData\TEMP
[24/11/2008|20:02] C:\ProgramData\Ubisoft
[11/12/2007|01:35] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[08/08/2008|12:53] C:\Program Files\Adobe
[15/03/2008|19:12] C:\Program Files\AGEIA Technologies
[10/12/2007|23:57] C:\Program Files\Avira
[01/08/2008|14:43] C:\Program Files\BitComet
[08/08/2008|12:38] C:\Program Files\Bonjour
[06/12/2007|00:54] C:\Program Files\Broadcom
[13/12/2007|00:54] C:\Program Files\CCleaner
[28/10/2008|14:50] C:\Program Files\Common Files
[06/12/2007|00:37] C:\Program Files\CONEXANT
[06/12/2007|00:50] C:\Program Files\Creative
[06/12/2007|00:49] C:\Program Files\Creative Live! Cam
[31/10/2008|18:54] C:\Program Files\Curse
[06/12/2007|01:02] C:\Program Files\CyberLink
[19/02/2008|13:59] C:\Program Files\Dactylo
[27/12/2007|03:32] C:\Program Files\DAEMON Tools
[06/12/2007|01:07] C:\Program Files\Dell
[06/12/2007|01:05] C:\Program Files\Dell Support Center
[06/12/2007|08:31] C:\Program Files\DellTPad
[06/12/2007|00:52] C:\Program Files\Digital Line Detect
[19/05/2008|20:38] C:\Program Files\directx
[25/01/2008|13:45] C:\Program Files\DivX
[27/11/2008|21:53] C:\Program Files\Electronic Arts
[14/12/2008|14:55] C:\Program Files\Eraser
[10/12/2007|20:37] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[04/08/2008|17:36] C:\Program Files\FileZilla FTP Client
[14/12/2008|16:57] C:\Program Files\FindyKill
[26/09/2008|19:59] C:\Program Files\Garena
[13/11/2008|14:57] C:\Program Files\GCFScape
[26/05/2008|13:00] C:\Program Files\Google
[23/09/2008|14:31] C:\Program Files\GrabIt
[01/12/2008|19:22] C:\Program Files\HyCam2
[13/12/2008|21:08] C:\Program Files\InstallShield Installation Information
[13/12/2008|18:02] C:\Program Files\Internet Explorer
[06/12/2007|00:48] C:\Program Files\Java
[18/08/2008|13:00] C:\Program Files\Lavasoft
[27/05/2008|18:31] C:\Program Files\LG Electronics
[27/05/2008|18:26] C:\Program Files\LG PC Suite 2
[01/08/2008|14:36] C:\Program Files\LimeWire
[29/10/2008|10:57] C:\Program Files\ma-config.com
[06/12/2007|01:07] C:\Program Files\MAKEMSI Package Documentation
[14/12/2008|15:44] C:\Program Files\Malwarebytes' Anti-Malware
[16/09/2008|17:45] C:\Program Files\Messenger Plus! Live
[18/12/2007|12:38] C:\Program Files\Microsoft Office
[18/12/2007|12:37] C:\Program Files\Microsoft Visual Studio
[18/12/2007|12:34] C:\Program Files\Microsoft Visual Studio 8
[10/09/2008|10:57] C:\Program Files\Microsoft Works
[18/12/2007|12:37] C:\Program Files\Microsoft.NET
[29/09/2008|15:34] C:\Program Files\MixMeister BPM Analyzer
[06/12/2007|00:51] C:\Program Files\Modem Diagnostic Tool
[02/11/2006|13:42] C:\Program Files\Movie Maker
[13/11/2008|14:25] C:\Program Files\Mozilla Firefox
[18/12/2007|12:38] C:\Program Files\MSBuild
[02/11/2006|13:37] C:\Program Files\MSN
[10/12/2007|23:21] C:\Program Files\MSXML 4.0
[05/11/2008|15:55] C:\Program Files\Mumble
[06/12/2007|00:52] C:\Program Files\NetWaiting
[21/12/2007|14:46] C:\Program Files\NVIDIA Corporation
[06/12/2007|01:06] C:\Program Files\Orange
[20/11/2008|14:25] C:\Program Files\Project64 1.6
[23/09/2008|21:31] C:\Program Files\QuickPar
[21/05/2008|12:07] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[06/12/2007|00:58] C:\Program Files\Roxio
[06/12/2007|00:36] C:\Program Files\Sigmatel
[29/10/2008|10:29] C:\Program Files\Spybot - Search & Destroy
[12/12/2007|18:16] C:\Program Files\Teamspeak2_RC2
[13/10/2008|14:48] C:\Program Files\TweakVI
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[10/08/2008|18:51] C:\Program Files\VideoLAN
[09/08/2008|20:46] C:\Program Files\WC3Banlist
[11/12/2007|00:43] C:\Program Files\Winamp
[06/12/2007|08:27] C:\Program Files\Windows Calendar
[02/11/2006|13:42] C:\Program Files\Windows Collaboration
[06/12/2007|08:25] C:\Program Files\Windows Defender
[11/12/2007|01:37] C:\Program Files\Windows Live
[11/12/2008|21:35] C:\Program Files\Windows Live Safety Center
[13/12/2008|18:02] C:\Program Files\Windows Mail
[10/12/2007|23:41] C:\Program Files\Windows Media Player
[10/12/2007|20:37] C:\Program Files\Windows NT
[02/11/2006|13:42] C:\Program Files\Windows Photo Gallery
[10/01/2008|01:40] C:\Program Files\Windows Sidebar
[11/12/2007|16:20] C:\Program Files\WinRAR
[07/10/2008|11:47] C:\Program Files\World of Warcraft
[02/12/2008|21:30] C:\Program Files\WowCartographe
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[08/08/2008|12:54] C:\Program Files\Common Files\Adobe
[02/12/2008|21:30] C:\Program Files\Common Files\Blizzard Entertainment
[18/12/2007|14:16] C:\Program Files\Common Files\BOONTY Shared
[06/12/2007|00:50] C:\Program Files\Common Files\Creative
[18/12/2007|12:37] C:\Program Files\Common Files\DESIGNER
[06/12/2007|00:57] C:\Program Files\Common Files\InstallShield
[06/12/2007|00:48] C:\Program Files\Common Files\Java
[08/08/2008|10:01] C:\Program Files\Common Files\Macrovision Shared
[26/08/2008|12:10] C:\Program Files\Common Files\microsoft shared
[25/01/2008|13:45] C:\Program Files\Common Files\PX Storage Engine
[10/08/2008|09:41] C:\Program Files\Common Files\Real
[06/12/2007|00:50] C:\Program Files\Common Files\Reallusion
[06/12/2007|00:56] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[06/12/2007|00:58] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[19/11/2008|23:20] C:\Program Files\Common Files\Steam
[06/12/2007|01:05] C:\Program Files\Common Files\supportsoft
[06/12/2007|00:56] C:\Program Files\Common Files\SureThing Shared
[28/10/2008|14:50] C:\Program Files\Common Files\SWF Studio
[18/12/2007|12:34] C:\Program Files\Common Files\System
[11/12/2007|01:37] C:\Program Files\Common Files\WindowsLiveInstaller
[18/08/2008|12:59] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 50 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-12-14 17:09:04
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
disk error: C:\Windows\System32\
please note that you need administrator rights to perform deep scan
--------------------\\ Recherche d'autres infections
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
DhcpNameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\..\{B318EC89-9F51-47E7-A606-D856C5B2282B}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
DhcpNameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\..\{B318EC89-9F51-47E7-A606-D856C5B2282B}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\..\{6D41FFF2-1C88-4D3F-8C3C-388612ACDD77}]
DhcpNameServer REG_SZ 85.255.116.24;85.255.112.84
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\..\{B318EC89-9F51-47E7-A606-D856C5B2282B}]
NameServer REG_SZ 85.255.116.24;85.255.112.84
[b]==> WAREOUT <==
/b
[F:3][D:1]-> C:\Users\Mordan\AppData\Local\Temp
[F:1][D:1]-> C:\Users\Mordan\AppData\Roaming\MICROS~1\Windows\Cookies
[F:9][D:4]-> C:\Users\Mordan\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:6][D:4]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 14/12/2008|17:09 - Option : [1]
--------------------\\ Fin du rapport a 17:09:14