rapport Lop S&D:
--------------------\\ Lop S&D 4.2.2-3 XP/Vista
[ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
[ USER : Famille ] [ "D:\Lop SD" ] [ Selection : 2 ]
[ 24/07/2008 | 0:30:31,73 ] [ PC : Bertout ]
[ MAJ : 22-07-2008 | 17:35 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////
Supprime! - D:\DOCUME~1\Famille\Cookies\famille@advertstream[1].txt
Supprime! - D:\DOCUME~1\Famille\Cookies\famille@d2.advertserve[1].txt
Supprime! - D:\DOCUME~1\Famille\Cookies\famille@adopt.euroclick[2].txt
RestaurÚ! - Fichier Hosts
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprime! - D:\DOCUME~1\Famille\APPLIC~1\Viewpoint
Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[17/08/2004|02:55] D:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
[08/11/2007|19:57] D:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[08/11/2007|19:57] D:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[08/11/2007|19:57] D:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[08/11/2007|19:57] D:\DOCUME~1\ADMINI~1\APPLIC~1\Real
[30/09/2005|11:03] D:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
[08/11/2007|19:57] D:\DOCUME~1\ADMINI~1\APPLIC~1\You've Got Pictures Screensaver
[30/09/2005|10:59] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[06/08/2007|21:32] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[30/09/2005|11:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[29/06/2007|13:17] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[11/01/2008|10:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[19/09/2007|12:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[16/05/2006|15:34] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Avg7
[13/11/2007|18:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[04/10/2006|15:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[30/09/2005|11:11] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[01/04/2008|13:14] D:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[23/07/2008|17:21] D:\DOCUME~1\ALLUSE~1\APPLIC~1\dsjutalw
[19/09/2007|12:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[15/02/2008|21:46] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[11/12/2007|14:32] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[16/12/2007|12:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[11/05/2008|02:41] D:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[02/06/2008|21:14] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[23/02/2008|01:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[17/10/2006|17:24] D:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[30/09/2005|11:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[18/07/2008|03:14] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QTSBandwidthCache
[30/09/2005|11:01] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[13/10/2006|08:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games
[30/09/2005|19:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[01/04/2008|12:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[07/01/2007|20:20] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[23/07/2008|18:09] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[19/03/2008|18:36] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spyware Terminator
[08/11/2007|11:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[06/07/2007|02:47] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[04/02/2008|11:22] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[31/08/2006|09:53] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[11/04/2008|17:41] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[29/06/2006|17:45] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[19/11/2007|12:32] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[15/11/2005|16:31] D:\DOCUME~1\Bertout\APPLIC~1\CyberLink
[17/08/2004|02:55] D:\DOCUME~1\Bertout\APPLIC~1\desktop.ini
[07/10/2005|20:24] D:\DOCUME~1\Bertout\APPLIC~1\Identities
[07/10/2005|20:24] D:\DOCUME~1\Bertout\APPLIC~1\Macromedia
[08/11/2005|20:49] D:\DOCUME~1\Bertout\APPLIC~1\Microsoft
[07/10/2005|20:24] D:\DOCUME~1\Bertout\APPLIC~1\Real
[26/10/2005|13:43] D:\DOCUME~1\Bertout\APPLIC~1\Sun
[30/09/2005|11:03] D:\DOCUME~1\Bertout\APPLIC~1\Symantec
[27/10/2005|19:42] D:\DOCUME~1\Bertout\APPLIC~1\Ulead Systems
[07/10/2005|20:24] D:\DOCUME~1\Bertout\APPLIC~1\You've Got Pictures Screensaver
[01/04/2008|13:14] D:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[08/11/2007|19:57] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[08/11/2007|19:57] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[08/11/2007|19:57] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[08/11/2007|19:57] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Real
[30/09/2005|11:03] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[08/11/2007|19:57] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[01/07/2008|20:24] D:\DOCUME~1\Famille\APPLIC~1\Adobe
[08/11/2007|14:53] D:\DOCUME~1\Famille\APPLIC~1\AdobeUM
[11/01/2008|10:42] D:\DOCUME~1\Famille\APPLIC~1\Apple Computer
[13/11/2007|18:54] D:\DOCUME~1\Famille\APPLIC~1\AVS4YOU
[28/11/2007|14:35] D:\DOCUME~1\Famille\APPLIC~1\CyberLink
[17/08/2004|02:55] D:\DOCUME~1\Famille\APPLIC~1\desktop.ini
[05/06/2008|03:14] D:\DOCUME~1\Famille\APPLIC~1\DivX
[05/12/2007|19:02] D:\DOCUME~1\Famille\APPLIC~1\gtk-2.0
[11/11/2007|16:27] D:\DOCUME~1\Famille\APPLIC~1\Help
[11/12/2007|14:43] D:\DOCUME~1\Famille\APPLIC~1\HP
[19/11/2007|12:32] D:\DOCUME~1\Famille\APPLIC~1\Identities
[17/07/2008|18:43] D:\DOCUME~1\Famille\APPLIC~1\IMVU
[18/04/2008|18:48] D:\DOCUME~1\Famille\APPLIC~1\InstallShield
[15/11/2007|21:08] D:\DOCUME~1\Famille\APPLIC~1\Interactive Agents
[11/05/2008|02:46] D:\DOCUME~1\Famille\APPLIC~1\InterVideo
[28/03/2008|17:44] D:\DOCUME~1\Famille\APPLIC~1\Lavasoft
[28/01/2008|08:17] D:\DOCUME~1\Famille\APPLIC~1\Leadertech
[08/11/2007|13:34] D:\DOCUME~1\Famille\APPLIC~1\Macromedia
[09/01/2008|02:55] D:\DOCUME~1\Famille\APPLIC~1\Media Player Classic
[26/04/2008|14:48] D:\DOCUME~1\Famille\APPLIC~1\Microsoft
[17/11/2007|17:51] D:\DOCUME~1\Famille\APPLIC~1\Microsoft Web Folders
[08/11/2007|13:32] D:\DOCUME~1\Famille\APPLIC~1\Mozilla
[15/02/2008|21:14] D:\DOCUME~1\Famille\APPLIC~1\MSNInstaller
[10/11/2007|01:49] D:\DOCUME~1\Famille\APPLIC~1\OD2
[08/11/2007|19:57] D:\DOCUME~1\Famille\APPLIC~1\Real
[23/07/2008|17:24] D:\DOCUME~1\Famille\APPLIC~1\rhc10jj0ee21
[30/04/2008|18:44] D:\DOCUME~1\Famille\APPLIC~1\ScummVM
[15/03/2008|17:53] D:\DOCUME~1\Famille\APPLIC~1\Skype
[28/01/2008|08:17] D:\DOCUME~1\Famille\APPLIC~1\Sonic
[01/04/2008|11:49] D:\DOCUME~1\Famille\APPLIC~1\Spyware Terminator
[22/06/2008|16:59] D:\DOCUME~1\Famille\APPLIC~1\Studio-Scrap
[08/11/2007|13:19] D:\DOCUME~1\Famille\APPLIC~1\Sun
[08/11/2007|11:17] D:\DOCUME~1\Famille\APPLIC~1\Symantec
[04/02/2008|11:27] D:\DOCUME~1\Famille\APPLIC~1\Ulead Systems
[08/01/2008|01:43] D:\DOCUME~1\Famille\APPLIC~1\vlc
[08/11/2007|16:45] D:\DOCUME~1\Famille\APPLIC~1\WinRAR
[01/01/2008|19:17] D:\DOCUME~1\Famille\APPLIC~1\XnView
[08/11/2007|19:57] D:\DOCUME~1\Famille\APPLIC~1\You've Got Pictures Screensaver
[19/11/2007|12:32] D:\DOCUME~1\Famille\APPLIC~1\Zylom
[30/09/2005|19:40] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[11/05/2008|13:27] D:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Help
[20/04/2008|15:03] D:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft
[30/09/2005|19:40] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[24/02/2006|13:01] D:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec
[08/11/2007|19:57] D:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[07/01/2007|13:48] D:\DOCUME~1\nicole\APPLIC~1\7Wonders
[11/09/2007|01:06] D:\DOCUME~1\nicole\APPLIC~1\Adobe
[27/03/2007|08:44] D:\DOCUME~1\nicole\APPLIC~1\AdobeUM
[09/09/2007|22:09] D:\DOCUME~1\nicole\APPLIC~1\Apple Computer
[03/12/2005|16:00] D:\DOCUME~1\nicole\APPLIC~1\CyberLink
[17/08/2004|02:55] D:\DOCUME~1\nicole\APPLIC~1\desktop.ini
[15/08/2007|16:57] D:\DOCUME~1\nicole\APPLIC~1\DialMessenger
[05/05/2007|12:47] D:\DOCUME~1\nicole\APPLIC~1\Google
[20/01/2006|17:06] D:\DOCUME~1\nicole\APPLIC~1\Help
[07/01/2007|20:27] D:\DOCUME~1\nicole\APPLIC~1\HP
[13/10/2006|08:15] D:\DOCUME~1\nicole\APPLIC~1\Identities
[25/09/2007|18:53] D:\DOCUME~1\nicole\APPLIC~1\Lavasoft
[27/09/2006|16:30] D:\DOCUME~1\nicole\APPLIC~1\Leadertech
[07/10/2006|17:09] D:\DOCUME~1\nicole\APPLIC~1\Logitech
[26/11/2005|12:24] D:\DOCUME~1\nicole\APPLIC~1\Macromedia
[09/01/2007|15:41] D:\DOCUME~1\nicole\APPLIC~1\Magic Match
[22/10/2007|20:47] D:\DOCUME~1\nicole\APPLIC~1\Microsoft
[20/02/2007|18:29] D:\DOCUME~1\nicole\APPLIC~1\Microsoft Web Folders
[20/06/2007|19:12] D:\DOCUME~1\nicole\APPLIC~1\Mozilla
[22/08/2006|22:02] D:\DOCUME~1\nicole\APPLIC~1\MSNInstaller
[02/12/2005|19:43] D:\DOCUME~1\nicole\APPLIC~1\OD2
[06/08/2007|22:08] D:\DOCUME~1\nicole\APPLIC~1\Opera
[11/05/2007|13:40] D:\DOCUME~1\nicole\APPLIC~1\PatchUpdate_InstantShareJPG.log
[11/05/2007|13:39] D:\DOCUME~1\nicole\APPLIC~1\PatchUpdate_IZClosingDiscError.log
[24/04/2007|08:11] D:\DOCUME~1\nicole\APPLIC~1\PC Tools
[14/12/2005|19:17] D:\DOCUME~1\nicole\APPLIC~1\Real
[04/08/2007|17:07] D:\DOCUME~1\nicole\APPLIC~1\ScummVM
[29/11/2005|17:41] D:\DOCUME~1\nicole\APPLIC~1\Skype
[27/09/2006|16:31] D:\DOCUME~1\nicole\APPLIC~1\Sonic
[27/11/2005|17:03] D:\DOCUME~1\nicole\APPLIC~1\Sun
[26/11/2005|12:25] D:\DOCUME~1\nicole\APPLIC~1\Symantec
[24/04/2007|08:30] D:\DOCUME~1\nicole\APPLIC~1\Talkback
[11/04/2007|12:28] D:\DOCUME~1\nicole\APPLIC~1\Ulead Systems
[10/04/2007|20:46] D:\DOCUME~1\nicole\APPLIC~1\Update_HP_RedboxHprblog_HPSU.log
[10/08/2007|16:50] D:\DOCUME~1\nicole\APPLIC~1\vlc
[02/08/2007|03:25] D:\DOCUME~1\nicole\APPLIC~1\Wildfire
[26/11/2005|21:06] D:\DOCUME~1\nicole\APPLIC~1\You've Got Pictures Screensaver
[13/10/2006|08:15] D:\DOCUME~1\nicole\APPLIC~1\Zylom
[19/03/2008|19:10] D:\DOCUME~1\PROPRI~1\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[23/07/2008 18:38][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[24/12/2007|02:19] C:\Program Files\1964
[03/04/2008|16:08] C:\Program Files\Adaware
[19/11/2007|01:43] C:\Program Files\Adobe
[08/11/2007|11:33] C:\Program Files\Alwil Software
[08/11/2007|19:52] C:\Program Files\AMD
[08/11/2007|11:13] C:\Program Files\CCleaner
[15/03/2008|15:48] C:\Program Files\COL11004
[08/11/2007|19:52] C:\Program Files\ComPlus Applications
[12/02/2008|04:58] C:\Program Files\Crawler
[08/11/2007|19:52] C:\Program Files\CyberLink
[04/06/2008|23:14] C:\Program Files\DivX
[23/02/2008|12:38] C:\Program Files\DNA
[23/07/2008|19:36] C:\Program Files\eMule
[02/03/2008|14:48] C:\Program Files\EZ-DUB
[11/05/2008|02:43] C:\Program Files\Fichiers communs
[10/05/2008|03:57] C:\Program Files\FileSubmit
[08/11/2007|19:52] C:\Program Files\GMixon
[15/04/2008|13:25] C:\Program Files\Google
[29/02/2008|21:32] C:\Program Files\Heredis 8
[11/12/2007|14:32] C:\Program Files\Hewlett-Packard
[11/12/2007|14:32] C:\Program Files\HP
[13/07/2008|16:41] C:\Program Files\IMVU
[11/05/2008|02:43] C:\Program Files\InstallShield Installation Information
[13/06/2008|09:43] C:\Program Files\Internet Explorer
[11/05/2008|02:41] C:\Program Files\InterVideo
[11/05/2008|02:43] C:\Program Files\InterVideo Information Service
[12/11/2007|16:53] C:\Program Files\IrfanView
[16/11/2007|23:28] C:\Program Files\Java
[08/11/2007|11:32] C:\Program Files\Kit ADSL
[08/11/2007|19:52] C:\Program Files\Learn2.com
[19/11/2007|03:07] C:\Program Files\Lecteur Windows Media.lnk
[09/11/2007|17:57] C:\Program Files\Lexmark
[08/11/2007|16:06] C:\Program Files\Lexmark Z700-P700 Series
[15/03/2008|15:48] C:\Program Files\Media Player Classic
[15/03/2008|15:48] C:\Program Files\Messenger
[04/04/2008|17:14] C:\Program Files\Messenger Plus! Live
[12/11/2007|05:28] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[17/11/2007|17:51] C:\Program Files\microsoft frontpage
[17/11/2007|17:51] C:\Program Files\Microsoft Office
[10/11/2007|22:05] C:\Program Files\Microsoft SQL Server Compact Edition
[17/11/2007|17:54] C:\Program Files\Microsoft Visual Studio
[01/04/2008|13:23] C:\Program Files\Movie Maker
[24/07/2008|00:27] C:\Program Files\Mozilla Firefox
[15/02/2008|21:14] C:\Program Files\MSN
[08/11/2007|19:52] C:\Program Files\MSN Gaming Zone
[12/11/2007|05:23] C:\Program Files\MSXML 4.0
[08/11/2007|19:54] C:\Program Files\NetMeeting
[14/04/2008|15:26] C:\Program Files\No‰l Danjou
[01/04/2008|14:37] C:\Program Files\Outlook Express
[12/04/2008|00:36] C:\Program Files\PC Inspector File Recovery
[15/04/2008|13:35] C:\Program Files\Picasa2
[15/03/2008|15:48] C:\Program Files\Pochette Express 2
[03/04/2008|17:19] C:\Program Files\QuickTime
[08/11/2007|19:52] C:\Program Files\Real
[29/02/2008|21:44] C:\Program Files\RegSupreme
[23/07/2008|17:24] C:\Program Files\rhc10jj0ee21
[07/01/2008|02:48] C:\Program Files\roms
[18/04/2008|18:48] C:\Program Files\Samsung
[13/07/2008|22:40] C:\Program Files\ScummVM
[08/11/2007|19:55] C:\Program Files\Services en ligne
[24/04/2008|10:32] C:\Program Files\Sierra On-Line
[08/11/2007|19:52] C:\Program Files\Sonic
[23/07/2008|18:09] C:\Program Files\Spybot - Search & Destroy
[20/03/2008|17:57] C:\Program Files\Spyware Terminator
[22/06/2008|16:57] C:\Program Files\Studio-Scrap
[17/12/2007|16:18] C:\Program Files\Tracker Software
[23/07/2008|17:22] C:\Program Files\trcjgaf
[08/11/2007|19:52] C:\Program Files\Ulead Systems
[08/11/2007|19:52] C:\Program Files\Uninstall Information
[08/11/2007|16:42] C:\Program Files\VideoLAN
[29/02/2008|21:31] C:\Program Files\Windows Live
[08/11/2007|19:52] C:\Program Files\Windows Media Components
[15/03/2008|15:48] C:\Program Files\Windows Media Connect 2
[14/04/2008|18:29] C:\Program Files\Windows Media Player
[08/11/2007|19:55] C:\Program Files\Windows NT
[08/11/2007|19:52] C:\Program Files\WindowsUpdate
[08/11/2007|16:42] C:\Program Files\WinRAR
[08/11/2007|19:52] C:\Program Files\xerox
[03/04/2008|17:26] C:\Program Files\XoftSpySE
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[08/11/2007|19:52] C:\Program Files\Fichiers communs\Adobe
[08/11/2007|19:53] C:\Program Files\Fichiers communs\AOL
[08/11/2007|19:53] C:\Program Files\Fichiers communs\aolshare
[02/02/2008|13:12] C:\Program Files\Fichiers communs\Apple
[13/11/2007|18:57] C:\Program Files\Fichiers communs\AVSMedia
[17/11/2007|17:54] C:\Program Files\Fichiers communs\Designer
[11/12/2007|14:31] C:\Program Files\Fichiers communs\Hewlett-Packard
[11/12/2007|14:37] C:\Program Files\Fichiers communs\HP
[09/11/2007|17:57] C:\Program Files\Fichiers communs\InstallShield
[08/11/2007|19:52] C:\Program Files\Fichiers communs\Java
[17/11/2007|17:54] C:\Program Files\Fichiers communs\Microsoft Shared
[08/11/2007|19:52] C:\Program Files\Fichiers communs\MSSoap
[08/11/2007|19:52] C:\Program Files\Fichiers communs\Nullsoft
[08/11/2007|19:52] C:\Program Files\Fichiers communs\ODBC
[08/11/2007|19:52] C:\Program Files\Fichiers communs\Real
[08/11/2007|19:53] C:\Program Files\Fichiers communs\Services
[11/12/2007|14:37] C:\Program Files\Fichiers communs\Sonic Shared
[08/11/2007|19:52] C:\Program Files\Fichiers communs\SpeechEngines
[08/11/2007|19:53] C:\Program Files\Fichiers communs\SureThing Shared
[08/11/2007|11:25] C:\Program Files\Fichiers communs\Symantec Shared
[01/04/2008|14:37] C:\Program Files\Fichiers communs\System
[11/05/2008|02:43] C:\Program Files\Fichiers communs\Ulead
[08/11/2007|19:52] C:\Program Files\Fichiers communs\Ulead Systems
[10/11/2007|22:00] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[08/11/2007|19:52] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 52 Processus )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2008-07-24 00:32:36
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
folder error: D:\DOCUME~1\Famille\LOCALS~1\APPLIC~1
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
=> D:\DOCUME~1\Famille\Application Data\Studio-Scrap\Serial
=> D:\DOCUME~1\Famille\Application Data\Ulead Systems\Ulead PhotoImpact\10.0 SE\Ulead.DAT\GradientSerialize.ugl
=> D:\DOCUME~1\Famille\Application Data\Ulead Systems\Ulead PhotoImpact\10.0 SE\Ulead.DAT\SwatchSerialize.usl
[F:65][D:107]-> D:\DOCUME~1\Famille\LOCALS~1\Temp
[F:569][D:0]-> D:\DOCUME~1\Famille\Cookies
[F:7428][D:19]-> D:\DOCUME~1\Famille\LOCALS~1\TEMPOR~1\content.IE5
--------------------\\ Fin du rapport a 0:34:53,78
rapport Toolbar-S&D:
-----------\\ ToolBar S&D 1.0.6 XP/Vista
[ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
[ USER : Famille ] [ "C:\Toolbar SD" ] [ Selection : 2 ]
[ 24/07/2008 | 0:36:12,65 ] [ PC : Bertout ]
[ MAJ : 18-07-2008 | 20:45 ]
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\Crawler\Download
Supprime! - C:\Program Files\Crawler\Shared
Supprime! - C:\Program Files\Crawler\Toolbar
Supprime! - D:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Crawler Toolbar
Supprime! - D:\DOCUME~1\Famille\Cookies\famille@crawler[1].txt
Supprime! - C:\Program Files\Crawler
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Program Files) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.lycos.fr/"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"SearchMigratedDefaultURL"="http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Search Bar"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
-----------\\ Fin du rapport a 0:37:53,34
rapport HijackThis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:41:36, on 24/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
D:\Documents and Settings\All Users\Application Data\dsjutalw\zajwbqte.exe
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Apps\Powercinema\PCMService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
C:\WINDOWS\system32\lphc50jj0ee21.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\jotabedw.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\EZ-DUB\EZ-DUB.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\DOCUME~1\Famille\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.lycos.fr/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - (no file)
O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Program Files\Fichiers communs\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKLM\..\Run: [lphc50jj0ee21] C:\WINDOWS\system32\lphc50jj0ee21.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [procdben] C:\WINDOWS\system32\jotabedw.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [setsrvapl] C:\WINDOWS\system32\qdopunyx.exe
O4 - HKLM\..\Policies\Explorer\Run: [JdoNy0rCIy] D:\Documents and Settings\All Users\Application Data\dsjutalw\zajwbqte.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: EZ-DUB Finder.lnk = C:\Program Files\EZ-DUB\EZ-DUB.exe
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - D:\Documents and Settings\Famille\Menu Démarrer\Programmes\IMVU\Run IMVU.lnk
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cabO16 - DPF: {C36112BF-2FA3-4694-8603-3B510EA3B465} (Lycos File Upload Component) -
http://f002.mail.caramail.lycos.fr/app/ ... loader.cabO16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) -
http://eu.download.games.yahoo.com/zylo ... loader.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{8BFB12B2-584D-488E-BCC7-B5CC4EB68011}: NameServer = 86.64.145.144 84.103.237.144
O21 - SSODL: cfgui - {483759E7-0716-4186-98D2-04F3A56BA479} - C:\Program Files\trcjgaf\cfgui.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 9195 bytes