Re tout le monde
voici le rapport Chifleur
Rapport lopxpMH2 version 2.0 fait à 13:31:01,06 le 2007-07-06
C:\Documents and Settings\Mexico
******************************************
## Répertoires Application Data
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\All Users\Application Data
2006-02-24 07:25 <DIR> .
2006-02-24 07:25 <DIR> ..
2006-08-05 21:17 <DIR> Adobe
2006-12-15 20:42 <DIR> avg7
2006-09-12 08:33 <DIR> Google
2007-02-03 23:57 <DIR> grid soap 01 jugs
2006-12-15 20:42 <DIR> Grisoft
2007-02-06 22:37 <DIR> Messenger Plus!
2006-02-24 07:25 <DIR> Microsoft
2006-02-27 16:34 <DIR> MSN6
2007-05-17 18:56 <DIR> MumboJumbo
2006-11-21 20:14 <DIR> PopCap
2006-02-26 18:53 <DIR> QuickTime
2006-02-24 12:53 <DIR> Symantec
2007-06-28 13:35 <DIR> TuneUp Software
2006-12-26 22:53 <DIR> VideoEgg
2007-01-01 14:25 <DIR> Windows Genuine Advantage
2006-10-16 21:44 <DIR> Windows Live Toolbar
2006-05-26 16:44 <DIR> Yahoo! Companion
2006-02-24 07:25 62 desktop.ini
1 File(s) 62 bytes
19 Dir(s) 63 794 569 216 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Default User\Application Data
2006-02-24 07:25 <DIR> .
2006-02-24 07:25 <DIR> ..
2006-02-24 07:25 <DIR> Microsoft
2006-02-24 07:25 62 desktop.ini
1 File(s) 62 bytes
3 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Default User\Local Settings\Application Data
2006-02-24 07:25 <DIR> .
2006-02-24 07:25 <DIR> ..
0 File(s) 0 bytes
2 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Guest\Application Data
2007-01-02 19:38 <DIR> .
2007-01-02 19:38 <DIR> ..
2007-01-02 19:38 <DIR> AVG7
2007-01-02 19:38 <DIR> Identities
2007-01-02 19:38 <DIR> Microsoft
2007-01-02 19:38 <DIR> Real
2007-01-02 19:38 62 desktop.ini
1 File(s) 62 bytes
6 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Guest\Local Settings\Application Data
2007-01-02 19:38 <DIR> .
2007-01-02 19:38 <DIR> ..
2007-01-02 19:38 <DIR> Microsoft
2007-01-03 00:02 3 232 668 IconCache.db
1 File(s) 3 232 668 bytes
3 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\LocalService\Application Data
2006-02-24 12:46 <DIR> .
2006-02-24 12:46 <DIR> ..
2006-12-15 20:42 <DIR> AVG7
2006-02-24 12:46 <DIR> Microsoft
0 File(s) 0 bytes
4 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\LocalService\Local Settings\Application Data
2006-02-24 12:46 <DIR> .
2006-02-24 12:46 <DIR> ..
2006-05-24 11:26 <DIR> Google
2006-02-24 12:46 <DIR> Microsoft
0 File(s) 0 bytes
4 Dir(s) 63 794 556 928 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Mexico\Application Data
2006-02-24 12:50 <DIR> .
2006-02-24 12:50 <DIR> ..
2006-08-05 21:18 <DIR> Adobe
2006-08-05 21:18 <DIR> AdobeUM
2006-02-24 13:27 <DIR> Ahead
2006-12-15 20:43 <DIR> AVG7
2007-03-22 15:54 <DIR> bang
2007-02-03 23:56 <DIR> gluedeafmedia
2006-02-24 18:50 <DIR> Google
2006-02-27 18:22 <DIR> Help
2006-02-24 12:51 <DIR> Identities
2006-12-15 20:15 <DIR> Lavasoft
2007-06-21 09:53 <DIR> LimeWire
2006-05-24 18:54 <DIR> Macromedia
2006-02-24 12:50 <DIR> Microsoft
2006-02-27 16:34 <DIR> MSN6
2006-08-21 08:49 <DIR> Raptisoft
2006-02-24 18:40 <DIR> Real
2007-03-01 21:12 <DIR> Screenshot Sender
2007-01-02 16:21 <DIR> Sun
2006-02-24 12:53 <DIR> Symantec
2007-06-28 13:36 <DIR> TuneUp Software
2007-06-28 13:15 <DIR> uTorrent
2006-12-26 22:53 <DIR> VideoEgg
2007-06-21 15:25 <DIR> vlc
2006-02-24 12:50 62 desktop.ini
1 File(s) 62 bytes
25 Dir(s) 63 794 552 832 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\Mexico\Local Settings\Application Data
2006-02-24 12:50 <DIR> .
2006-02-24 12:50 <DIR> ..
2006-08-05 21:18 <DIR> Adobe
2006-02-24 18:50 <DIR> Google
2006-02-27 18:22 <DIR> Help
2006-05-24 18:40 <DIR> Identities
2006-02-24 12:50 <DIR> Microsoft
2006-05-12 12:41 16 384 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2006-02-24 22:42 43 720 GDIPFONTCACHEV1.DAT
2006-02-24 18:59 2 804 130 IconCache.db
3 File(s) 2 864 234 bytes
7 Dir(s) 63 794 552 832 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\NetworkService\Application Data
2006-02-24 12:46 <DIR> .
2006-02-24 12:46 <DIR> ..
2006-02-24 12:46 <DIR> Microsoft
0 File(s) 0 bytes
3 Dir(s) 63 794 552 832 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Documents and Settings\NetworkService\Local Settings\Application Data
2006-02-24 12:46 <DIR> .
2006-02-24 12:46 <DIR> ..
2006-02-24 12:46 <DIR> Microsoft
0 File(s) 0 bytes
3 Dir(s) 63 794 552 832 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\WINDOWS\system32\config\systemprofile\Application Data
2006-02-24 12:45 <DIR> .
2006-02-24 12:45 <DIR> ..
2006-02-24 12:45 <DIR> Microsoft
2006-02-24 12:45 62 desktop.ini
1 File(s) 62 bytes
3 Dir(s) 63 794 552 832 bytes free
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
2006-02-24 12:45 <DIR> .
2006-02-24 12:45 <DIR> ..
0 File(s) 0 bytes
2 Dir(s) 63 794 552 832 bytes free
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\1-Click
1-Click inexploitable
C:\WINDOWS\Tasks\Check
Check inexploitable
C:\WINDOWS\Tasks\Symantec
Symantec inexploitable
******************************************
## Répertoires de C:\Program Files
Volume in drive C has no label.
Volume Serial Number is 4C0F-04D2
Directory of C:\Program Files
2007-06-28 13:36 <DIR> .
2007-06-28 13:36 <DIR> ..
2006-08-18 07:53 <DIR> 3DGroove
2006-07-22 12:13 <DIR> Adobe
2007-03-03 12:00 <DIR> Adverts
2006-02-24 13:25 <DIR> Ahead
2007-02-24 22:50 <DIR> CCleaner
2007-06-28 13:35 <DIR> Common Files
2006-02-24 12:37 <DIR> ComPlus Applications
2006-05-05 17:59 <DIR> directx
2007-06-19 14:13 <DIR> Disney Interactive
2006-08-18 22:03 <DIR> GameHouse
2007-02-26 18:52 <DIR> gluedeafmedia
2007-07-06 09:38 <DIR> Google
2006-12-15 20:42 <DIR> Grisoft
2006-09-12 19:25 <DIR> Hasbro Interactive
2006-04-13 14:30 <DIR> Infogrames
2006-04-13 14:06 <DIR> Infogrames Interactive
2007-06-19 14:17 <DIR> Internet Explorer
2007-01-26 10:20 <DIR> Java
2007-06-28 13:07 <DIR> Lavalys
2006-12-15 20:15 <DIR> Lavasoft
2007-06-25 17:30 <DIR> LimeWire
2007-01-28 13:07 <DIR> Macrogaming
2006-12-19 21:14 <DIR> Messenger
2007-03-01 21:10 <DIR> Messenger Plus! Live
2007-03-13 19:36 <DIR> MessengerPlus! 3
2006-02-24 13:37 <DIR> Microsoft ActiveSync
2006-02-24 12:42 <DIR> microsoft frontpage
2006-02-24 13:36 <DIR> Microsoft Office
2006-02-24 13:37 <DIR> Microsoft.NET
2006-11-16 19:06 <DIR> Morpheus Toolbar
2006-02-24 20:28 <DIR> Movie Maker
2006-08-20 11:08 <DIR> MSN
2006-02-24 12:36 <DIR> MSN Gaming Zone
2007-06-23 12:56 <DIR> MSN Messenger
2006-02-24 20:24 <DIR> NetMeeting
2006-08-05 21:37 <DIR> Norton AntiVirus
2006-02-24 12:40 <DIR> Online Services
2007-06-12 21:28 <DIR> Outlook Express
2006-02-24 18:47 <DIR> Real
2006-08-05 21:41 <DIR> Symantec
2007-04-22 11:12 <DIR> Three Rings Design
2007-06-28 13:37 <DIR> TuneUp Utilities 2007
2007-06-28 13:15 <DIR> uTorrent
2006-12-26 22:53 <DIR> VideoEgg
2007-06-27 17:23 <DIR> VideoLAN
2007-06-02 13:05 <DIR> Windows Live
2006-10-16 21:44 <DIR> Windows Live Toolbar
2007-06-25 18:12 <DIR> Windows Media Connect 2
2007-06-25 18:13 <DIR> Windows Media Player
2006-02-24 20:23 <DIR> Windows NT
2006-02-24 18:18 <DIR> WinRAR
2006-02-24 12:42 <DIR> xerox
2006-12-15 20:36 <DIR> XoftSpy
2006-05-26 16:44 <DIR> Yahoo!
0 File(s) 0 bytes
56 Dir(s) 63 794 532 352 bytes free
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
music.yahoo.com REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
dns-look-up.com REG_SZ
www.dns-look-up.com REG_SZ
mysearchnow.com REG_SZ
www.mysearchnow.com REG_SZ
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
searchweb2.com REG_SZ
www.searchweb2.com REG_SZ
* Mozilla Firefox (1 autorisé 2 interdit)
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://www.google.com/ie
* [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
tick date REG_SZ C:\DOCUME~1\Mexico\APPLIC~1\GLUEDE~1\moveisoerror.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\01 Jugs Glue Grey]
command REG_SZ C:\Documents and Settings\All Users\Application Data\grid soap 01 jugs\Fastbind.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\tick date]
command REG_SZ C:\DOCUME~1\Mexico\APPLIC~1\GLUEDE~1\moveisoerror.exe
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
salut