en réponse à Nardino avec lop S&D, je poste le rapport.
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz )
BIOS : Ver 1.00PARTTBL
USER : Line ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081119-0] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total:223 Go (Free:138 Go)
D:\ (USB)
E:\ (USB)
F:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( 19/11/2008|19:06 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[21/11/2007|03:30] C:\Users\Line\AppData\Local\{300ED5A9-6225-4D09-9CE6-35CFF0DFE09F}
[07/12/2007|18:51] C:\Users\Line\AppData\Local\Adobe
[24/12/2007|18:38] C:\Users\Line\AppData\Local\Ahead
[20/11/2007|19:51] C:\Users\Line\AppData\Local\Application Data
[15/10/2008|23:26] C:\Users\Line\AppData\Local\Apps
[28/05/2008|23:17] C:\Users\Line\AppData\Local\CANON_INC
[08/08/2008|08:31] C:\Users\Line\AppData\Local\CutePDF Writer
[17/10/2008|15:12] C:\Users\Line\AppData\Local\d3d9caps.dat
[17/11/2008|18:01] C:\Users\Line\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[19/11/2008|10:34] C:\Users\Line\AppData\Local\dmfncmct.bat
[19/11/2008|19:06] C:\Users\Line\AppData\Local\dmfncmct.dat
[14/11/2008|19:45] C:\Users\Line\AppData\Local\dmfncmct.exe
[14/11/2008|19:45] C:\Users\Line\AppData\Local\dmfncmct_nav.dat
[19/11/2008|19:06] C:\Users\Line\AppData\Local\dmfncmct_navps.dat
[21/11/2007|03:11] C:\Users\Line\AppData\Local\eMule
[20/11/2007|20:38] C:\Users\Line\AppData\Local\GDIPFONTCACHEV1.DAT
[20/11/2007|19:53] C:\Users\Line\AppData\Local\Google
[20/11/2007|19:51] C:\Users\Line\AppData\Local\Historique
[19/11/2008|03:10] C:\Users\Line\AppData\Local\IconCache.db
[16/10/2008|11:04] C:\Users\Line\AppData\Local\Microsoft
[08/06/2008|22:41] C:\Users\Line\AppData\Local\Microsoft Games
[17/08/2007|14:33] C:\Users\Line\AppData\Local\Microsoft Help
[24/06/2008|12:59] C:\Users\Line\AppData\Local\Netscape
[21/11/2007|03:34] C:\Users\Line\AppData\Local\Pando
[20/11/2007|21:33] C:\Users\Line\AppData\Local\Scansoft
[17/08/2007|14:37] C:\Users\Line\AppData\Local\Seven Zip
[05/12/2007|01:54] C:\Users\Line\AppData\Local\Sony Corporation
[19/11/2008|18:35] C:\Users\Line\AppData\Local\Temp
[20/11/2007|19:51] C:\Users\Line\AppData\Local\Temporary Internet Files
[20/11/2007|20:50] C:\Users\Line\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[19/11/2008 10:33][--ah-----] C:\Windows\tasks\SA.DAT
[19/11/2008 03:10][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[17/08/2007|14:37] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[17/08/2007|14:39] C:\ProgramData\Adobe
[20/11/2007|21:55] C:\ProgramData\Ahead
[02/11/2006|14:02] C:\ProgramData\Application Data
[17/08/2007|11:10] C:\ProgramData\Bureau
[16/03/2008|12:30] C:\ProgramData\Corel
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[21/11/2007|03:12] C:\ProgramData\eMule
[29/08/2008|12:50] C:\ProgramData\EPSON
[17/08/2007|11:10] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[17/08/2007|14:43] C:\ProgramData\Google
[20/11/2007|21:23] C:\ProgramData\InstallShield
[05/06/2008|11:54] C:\ProgramData\Lavasoft
[17/08/2007|11:10] C:\ProgramData\Menu D‚marrer
[18/11/2008|19:20] C:\ProgramData\Microsoft
[20/11/2007|20:34] C:\ProgramData\Microsoft Help
[17/08/2007|11:10] C:\ProgramData\ModŠles
[20/11/2007|21:52] C:\ProgramData\Nero
[12/01/2008|18:44] C:\ProgramData\ntuser.pol
[08/01/2008|02:25] C:\ProgramData\QuickTime
[20/11/2007|21:23] C:\ProgramData\ScanSoft
[20/11/2007|20:09] C:\ProgramData\Skype
[05/09/2007|18:20] C:\ProgramData\Sonic
[17/08/2007|14:40] C:\ProgramData\Sony
[03/01/2008|00:22] C:\ProgramData\Sony Corporation
[02/11/2006|14:02] C:\ProgramData\Start Menu
[20/11/2007|20:06] C:\ProgramData\Symantec
[02/11/2006|14:02] C:\ProgramData\Templates
[05/09/2007|18:31] C:\ProgramData\VAIO Media Platform
[17/10/2008|16:33] C:\ProgramData\WindowsSearch
[27/10/2008|13:14] C:\ProgramData\WLInstaller
[12/05/2008|22:53] C:\ProgramData\ZoomBrowser
--------------------\\ Listing des dossiers dans C:\Program Files
[20/11/2007|21:59] C:\Program Files\Acro Software
[17/08/2007|14:37] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[17/08/2007|14:38] C:\Program Files\Adobe
[20/11/2007|20:18] C:\Program Files\Alwil Software
[20/11/2007|21:21] C:\Program Files\ArcSoft
[04/12/2007|20:25] C:\Program Files\AskTBar
[17/08/2007|14:40] C:\Program Files\BFG
[03/10/2008|15:11] C:\Program Files\Brother
[03/10/2008|15:12] C:\Program Files\Brownie
[12/05/2008|22:55] C:\Program Files\Canon
[20/11/2007|21:18] C:\Program Files\CanonBJ
[17/10/2008|17:56] C:\Program Files\CCleaner
[24/12/2007|21:59] C:\Program Files\CDex_170b2
[16/10/2008|17:05] C:\Program Files\ChangeWallpaper
[17/11/2008|21:00] C:\Program Files\Common Files
[20/11/2007|18:43] C:\Program Files\CONEXANT
[10/06/2008|02:21] C:\Program Files\Corel
[17/08/2007|14:40] C:\Program Files\DivX
[16/11/2008|18:24] C:\Program Files\eMule
[29/08/2008|12:48] C:\Program Files\EPSON
[17/08/2007|11:10] C:\Program Files\Fichiers communs [Y:\Program Files\Common Files]
[20/11/2007|20:02] C:\Program Files\Google
[17/08/2007|14:42] C:\Program Files\Google BAE
[20/11/2007|22:01] C:\Program Files\GPLGS
[17/08/2007|13:29] C:\Program Files\IDT
[24/12/2007|21:19] C:\Program Files\Illustrate
[17/10/2008|18:20] C:\Program Files\InstallShield Installation Information
[17/08/2007|14:43] C:\Program Files\Intel
[26/09/2008|17:32] C:\Program Files\Internet Explorer
[05/09/2007|18:45] C:\Program Files\InterVideo
[17/08/2007|14:45] C:\Program Files\Java
[18/11/2008|19:20] C:\Program Files\Lavasoft
[05/09/2007|18:08] C:\Program Files\Lecteur CANALPLAY
[10/01/2008|15:28] C:\Program Files\Logitech
[26/09/2008|02:44] C:\Program Files\Microsoft
[20/11/2007|21:21] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[07/05/2008|16:55] C:\Program Files\Microsoft Office
[26/09/2008|02:51] C:\Program Files\Microsoft Office Outlook Connector
[26/10/2008|10:19] C:\Program Files\Microsoft Silverlight
[31/03/2008|00:24] C:\Program Files\Microsoft SQL Server Compact Edition
[19/09/2008|02:01] C:\Program Files\Microsoft Works
[17/08/2007|14:35] C:\Program Files\Microsoft.NET
[26/09/2008|17:32] C:\Program Files\Movie Maker
[02/11/2006|13:37] C:\Program Files\MSBuild
[07/05/2008|16:54] C:\Program Files\MSECache
[17/08/2007|12:55] C:\Program Files\MSXML 4.0
[23/11/2007|14:56] C:\Program Files\Navilog1
[20/11/2007|21:52] C:\Program Files\Nero
[24/06/2008|12:59] C:\Program Files\Netscape
[09/11/2008|00:52] C:\Program Files\OrangeHSS
[28/10/2008|16:00] C:\Program Files\PhotoFiltre
[17/08/2007|14:42] C:\Program Files\Picasa2
[08/01/2008|02:27] C:\Program Files\QuickTime
[17/08/2007|13:21] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[01/05/2008|01:37] C:\Program Files\RegCleaner
[05/09/2007|18:20] C:\Program Files\Roxio
[10/01/2008|15:25] C:\Program Files\SafeNet Sentinel
[20/11/2007|21:23] C:\Program Files\ScanSoft
[09/10/2008|10:20] C:\Program Files\Securitoo
[20/11/2007|20:09] C:\Program Files\Skype
[05/09/2007|18:58] C:\Program Files\Sony
[23/11/2007|13:57] C:\Program Files\Spyware-Secure
[16/10/2008|17:14] C:\Program Files\SudokuPro
[17/08/2007|13:41] C:\Program Files\Synaptics
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[17/08/2007|13:34] C:\Program Files\WIDCOMM
[26/09/2008|17:32] C:\Program Files\Windows Calendar
[26/09/2008|17:32] C:\Program Files\Windows Collaboration
[26/09/2008|17:32] C:\Program Files\Windows Defender
[26/09/2008|17:32] C:\Program Files\Windows Journal
[27/10/2008|13:15] C:\Program Files\Windows Live
[26/10/2008|10:18] C:\Program Files\Windows Mail
[26/09/2008|17:32] C:\Program Files\Windows Media Player
[17/08/2007|11:10] C:\Program Files\Windows NT
[26/09/2008|17:32] C:\Program Files\Windows Photo Gallery
[26/09/2008|17:32] C:\Program Files\Windows Sidebar
[19/11/2008|10:33] C:\Program Files\WinRAR
[17/10/2008|18:17] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[17/08/2007|14:39] C:\Program Files\Common Files\Adobe
[20/11/2007|21:54] C:\Program Files\Common Files\Ahead
[04/03/2008|11:29] C:\Program Files\Common Files\CANON
[10/06/2008|02:23] C:\Program Files\Common Files\Corel
[17/08/2007|14:35] C:\Program Files\Common Files\DESIGNER
[09/10/2008|10:19] C:\Program Files\Common Files\France Telecom
[03/10/2008|15:10] C:\Program Files\Common Files\InstallShield
[05/09/2007|18:45] C:\Program Files\Common Files\InterVideo
[17/08/2007|14:45] C:\Program Files\Common Files\Java
[10/01/2008|15:28] C:\Program Files\Common Files\Logitech
[17/10/2008|18:13] C:\Program Files\Common Files\microsoft shared
[20/11/2007|21:25] C:\Program Files\Common Files\PDFView
[17/08/2007|14:40] C:\Program Files\Common Files\PX Storage Engine
[05/09/2007|18:20] C:\Program Files\Common Files\Roxio Shared
[10/01/2008|15:25] C:\Program Files\Common Files\SafeNet Sentinel
[20/11/2007|21:23] C:\Program Files\Common Files\ScanSoft Shared
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[05/09/2007|18:20] C:\Program Files\Common Files\Sonic Shared
[05/09/2007|18:31] C:\Program Files\Common Files\Sony Shared
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[20/11/2007|20:06] C:\Program Files\Common Files\Symantec Shared
[26/09/2008|17:32] C:\Program Files\Common Files\System
[26/09/2008|02:41] C:\Program Files\Common Files\Windows Live
[20/11/2007|20:47] C:\Program Files\Common Files\WindowsLiveInstaller
--------------------\\ Process
( 81 Processes )
iexplore.exe ~ [PID:4820]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\Users\Line\AppData\Roaming\MICROS~1\Windows\Cookies\line@advertising[2].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-11-19 19:07:07
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 4
--------------------\\ Recherche d'autres infections
C:\Users\Line\AppData\Local\dmfncmct.bat
C:\Users\Line\AppData\Local\dmfncmct.dat
C:\Users\Line\AppData\Local\dmfncmct.exe
C:\Users\Line\AppData\Local\dmfncmct_nav.dat
C:\Users\Line\AppData\Local\dmfncmct_navps.dat
==> EGDACCESS <==
--------------------\\ ROGUES ..
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Spyware-Secure
C:\Users\Line\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Spyware-Secure
C:\PROGRA~1\Spyware-Secure
[F:137][D:5]-> C:\Users\Line\AppData\Local\Temp
[F:123][D:1]-> C:\Users\Line\AppData\Roaming\MICROS~1\Windows\Cookies
[F:6375][D:11]-> C:\Users\Line\AppData\Local\MICROS~2\Windows\TEMPOR~1\content.IE5
[F:5][D:5]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 19/11/2008|19:10 - Option : [1]
--------------------\\ Fin du rapport a 19:10:13
[ UAC => 1 ]