Voila bernard j'ai su le faire voila le rapport
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz )
BIOS : BIOS Date: 05/23/08 16:37:53 Ver: 08.00.15
USER : lylou ( Not Administrator ! )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:144 Go (Free:99 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:136 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( mer. 28/10/2009|15:46 )
[ UAC => 1 ]
--------------------\\ Listing des dossiers dans Local
[27/10/2009|18:26] C:\Users\lylou\AppData\Local\Adobe
[26/10/2009|15:28] C:\Users\lylou\AppData\Local\Application Data
[26/10/2009|15:29] C:\Users\lylou\AppData\Local\ATI
[26/10/2009|22:39] C:\Users\lylou\AppData\Local\eMule
[28/10/2009|14:30] C:\Users\lylou\AppData\Local\GDIPFONTCACHEV1.DAT
[26/10/2009|15:28] C:\Users\lylou\AppData\Local\Historique
[28/10/2009|14:59] C:\Users\lylou\AppData\Local\IconCache.db
[26/10/2009|20:49] C:\Users\lylou\AppData\Local\Microsoft
[26/10/2009|16:49] C:\Users\lylou\AppData\Local\Mozilla
[26/10/2009|15:28] C:\Users\lylou\AppData\Local\PowerCinema
[28/10/2009|15:45] C:\Users\lylou\AppData\Local\Temp
[28/10/2009|08:01] C:\Users\lylou\AppData\Local\Temp1.html
[27/10/2009|20:05] C:\Users\lylou\AppData\Local\Temp155.html
[27/10/2009|19:55] C:\Users\lylou\AppData\Local\Temp259.html
[28/10/2009|08:05] C:\Users\lylou\AppData\Local\Temp33.html
[27/10/2009|20:06] C:\Users\lylou\AppData\Local\Temp59.html
[26/10/2009|15:28] C:\Users\lylou\AppData\Local\Temporary Internet Files
[28/10/2009|14:08] C:\Users\lylou\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[28/10/2009 15:04][--ah-----] C:\Windows\tasks\SA.DAT
[28/10/2009 14:59][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[21/03/2008|12:18] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[21/03/2008|12:35] C:\ProgramData\Acer GameZone Console
[26/10/2009|18:59] C:\ProgramData\Adobe
[02/11/2006|14:02] C:\ProgramData\Application Data
[26/10/2009|15:29] C:\ProgramData\ATI
[26/10/2009|15:23] C:\ProgramData\Bureau
[26/10/2009|16:47] C:\ProgramData\chingramgram.rrlml7
[26/10/2009|16:47] C:\ProgramData\chingramgram.ymg2rle
[21/03/2008|12:34] C:\ProgramData\CyberLink
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[26/10/2009|22:39] C:\ProgramData\eMule
[21/03/2008|12:47] C:\ProgramData\eSobi
[26/10/2009|15:23] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[21/03/2008|12:36] C:\ProgramData\FloodLightGames
[26/10/2009|16:47] C:\ProgramData\itch ante wave.k13akoe
[26/10/2009|16:38] C:\ProgramData\McAfee
[26/10/2009|15:23] C:\ProgramData\Menu D‚marrer
[26/10/2009|16:52] C:\ProgramData\Messenger Plus!
[26/10/2009|16:40] C:\ProgramData\Microsoft
[26/10/2009|19:41] C:\ProgramData\Microsoft Help
[26/10/2009|15:23] C:\ProgramData\ModŠles
[26/10/2009|15:15] C:\ProgramData\NVIDIA
[26/10/2009|16:47] C:\ProgramData\Okay meta anti lite
[26/10/2009|15:38] C:\ProgramData\SiteAdvisor
[28/10/2009|11:47] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/11/2006|14:02] C:\ProgramData\Templates
[26/10/2009|16:47] C:\ProgramData\traydead
[28/10/2009|14:01] C:\ProgramData\Ulead Systems
[26/10/2009|17:19] C:\ProgramData\Yahoo! Companion
--------------------\\ Listing des dossiers dans C:\Program Files
[21/03/2008|12:47] C:\Program Files\Acer Arcade Live
[21/03/2008|12:46] C:\Program Files\Acer GameZone
[26/10/2009|15:36] C:\Program Files\Acer Incorporated
[21/03/2008|12:18] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[26/10/2009|16:59] C:\Program Files\Adobe
[26/10/2009|15:17] C:\Program Files\ATI
[26/10/2009|15:18] C:\Program Files\ATI Technologies
[28/10/2009|13:54] C:\Program Files\CIF USB CAMERA
[26/10/2009|16:47] C:\Program Files\Circle Developeent
[28/10/2009|13:57] C:\Program Files\Common Files
[21/03/2008|12:33] C:\Program Files\CyberLink
[28/10/2009|13:54] C:\Program Files\directx
[26/10/2009|22:37] C:\Program Files\eMule
[21/03/2008|12:47] C:\Program Files\eSobi
[26/10/2009|15:23] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[28/10/2009|14:26] C:\Program Files\InstallShield Installation Information
[28/10/2009|11:59] C:\Program Files\Internet Explorer
[26/10/2009|17:05] C:\Program Files\Java
[26/10/2009|16:47] C:\Program Files\Messenger Plus! Live
[26/10/2009|16:11] C:\Program Files\Microsoft
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/10/2009|19:41] C:\Program Files\Microsoft Office
[26/10/2009|16:40] C:\Program Files\Microsoft Security Essentials
[28/10/2009|12:05] C:\Program Files\Microsoft Silverlight
[26/10/2009|16:12] C:\Program Files\Microsoft SQL Server Compact Edition
[26/10/2009|19:41] C:\Program Files\Microsoft Works
[26/10/2009|21:02] C:\Program Files\Movie Maker
[28/10/2009|12:46] C:\Program Files\Mozilla Firefox
[02/11/2006|13:37] C:\Program Files\MSBuild
[26/10/2009|19:19] C:\Program Files\MSECache
[26/10/2009|17:34] C:\Program Files\MSXML 4.0
[21/03/2008|12:22] C:\Program Files\NewTech Infosystems
[21/03/2008|12:11] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[28/10/2009|11:27] C:\Program Files\Spybot - Search & Destroy
[26/10/2009|21:26] C:\Program Files\Trend Micro
[28/10/2009|14:26] C:\Program Files\Ulead Systems
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[28/10/2009|08:03] C:\Program Files\WhoCrashed
[26/10/2009|21:02] C:\Program Files\Windows Calendar
[26/10/2009|21:02] C:\Program Files\Windows Collaboration
[26/10/2009|21:02] C:\Program Files\Windows Defender
[26/10/2009|21:02] C:\Program Files\Windows Journal
[26/10/2009|16:13] C:\Program Files\Windows Live
[26/10/2009|16:11] C:\Program Files\Windows Live SkyDrive
[26/10/2009|21:02] C:\Program Files\Windows Mail
[28/10/2009|11:59] C:\Program Files\Windows Media Player
[26/10/2009|15:23] C:\Program Files\Windows NT
[26/10/2009|21:02] C:\Program Files\Windows Photo Gallery
[28/10/2009|11:59] C:\Program Files\Windows Portable Devices
[26/10/2009|21:02] C:\Program Files\Windows Sidebar
[21/03/2008|12:48] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[26/10/2009|16:59] C:\Program Files\Common Files\Adobe
[21/03/2008|12:32] C:\Program Files\Common Files\InstallShield
[21/03/2008|12:21] C:\Program Files\Common Files\LightScribe
[26/10/2009|21:15] C:\Program Files\Common Files\microsoft shared
[21/03/2008|12:21] C:\Program Files\Common Files\muvee Technologies
[21/03/2008|12:22] C:\Program Files\Common Files\NewTech Infosystems
[21/03/2008|12:36] C:\Program Files\Common Files\Oberon Media
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[26/10/2009|21:02] C:\Program Files\Common Files\System
[28/10/2009|14:25] C:\Program Files\Common Files\Ulead Systems
[26/10/2009|16:06] C:\Program Files\Common Files\Windows Live
--------------------\\ Process
( 70 Processes )
iexplore.exe ~ [PID:712]
iexplore.exe ~ [PID:3536]
iexplore.exe ~ [PID:184]
iexplore.exe ~ [PID:6132]
--------------------\\ Recherche avec S_Lop
C:\ProgramData\chingramgram.rrlml7
C:\ProgramData\chingramgram.ymg2rle
C:\ProgramData\itch ante wave.k13akoe
C:\Users\lylou\AppData\Local\Temp\bisEFE9.exe
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\ProgramData\Okay meta anti lite
C:\ProgramData\Okay meta anti lite\great flaw.dat
C:\ProgramData\Okay meta anti lite\great flaw.exe
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GreatLog"="\"C:\\ProgramData\\chingramgram.rrlml7\""
"ANTI LITE TITLE DEBUG"="\"C:\\ProgramData\\itch ante wave.k13akoe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-10-28 15:47:09
Windows 5.1.2600 Service Pack 2 NTFS
detected NTDLL code modification:
ZwEnumerateKey, ZwQueryKey, ZwOpenKey, ZwClose, ZwEnumerateValueKey, ZwQueryValueKey, ZwOpenFile, ZwQueryDirectoryFile, ZwQuerySystemInformation
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:339][D:32]-> C:\Users\lylou\AppData\Local\Temp
[F:169][D:1]-> C:\Users\lylou\AppData\Roaming\MICROS~1\Windows\Cookies
[F:744][D:4]-> C:\Users\lylou\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:24][D:2]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - mer. 28/10/2009|15:48 - Option : [1]
--------------------\\ Fin du rapport a 15:48:01
[ UAC => 1 ]