Infection par ntsb, rapport findykill à analyser
Forum Sécurité - Virus : Infection par ntsb, rapport findykill à analyser
Bonjour,
mon ordi est infecté par le virus ntsb/Bagle.
J'ai téléchargé findykill, suite à la lecture de nombreux forums, et je voudrais que quelqu'un puisse analyser mon rapport de findykill.
Je vous le colle ci-après.
Merci
----------------- FindyKill V4.710 ------------------
* User : Administrateur - MARL
* Emplacement : C:\Program Files\FindyKill
* Outils Mis a jours le 21/12/08 par Chiquitine29
* Recherche effectuée à 18:14:45 le 31/12/2008
* Windows XP - Internet Explorer 7.0.5730.13
((((((((((((((((( *** Recherche *** ))))))))))))))))))
--------------- [ Processus actifs ] ----------------
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
--------------- [ Processus infectieux stoppés ] ----------------
"C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe" (112)
--------------- [ Fichiers/Dossiers infectieux ] ----------------
»»»» Presence des fichiers dans C:
Found ! [31/12/2008 18:06] - C:\InfoSat.txt
»»»» Presence des fichiers dans C:\WINDOWS
»»»» Presence des fichiers dans C:\WINDOWS\Prefetch
Found ! - C:\WINDOWS\prefetch\113352.EXE-1A9A8C07.pf
Found ! - C:\WINDOWS\prefetch\117178.EXE-09DFFE5D.pf
Found ! - C:\WINDOWS\prefetch\117188.EXE-25D1EDF4.pf
Found ! - C:\WINDOWS\prefetch\122906.EXE-14F1BF96.pf
Found ! - C:\WINDOWS\prefetch\220617.EXE-1A2696CD.pf
Found ! - C:\WINDOWS\prefetch\223491.EXE-229D2A82.pf
Found ! - C:\WINDOWS\prefetch\231322.EXE-092ACAE7.pf
Found ! - C:\WINDOWS\prefetch\257350.EXE-260086E0.pf
Found ! - C:\WINDOWS\prefetch\268626.EXE-1A0FD5D8.pf
Found ! - C:\WINDOWS\prefetch\289326.EXE-17A33BC9.pf
Found ! - C:\WINDOWS\prefetch\326890.EXE-0AA691AA.pf
Found ! - C:\WINDOWS\prefetch\388278.EXE-22714097.pf
Found ! - C:\WINDOWS\prefetch\422677.EXE-2DCED59E.pf
Found ! - C:\WINDOWS\prefetch\440693.EXE-28036FED.pf
Found ! - C:\WINDOWS\prefetch\517994.EXE-04D1B285.pf
Found ! - C:\WINDOWS\prefetch\88357.EXE-0A7F0FC7.pf
Found ! - C:\WINDOWS\prefetch\FLEC006.EXE-0695BA6E.pf
Found ! - C:\WINDOWS\prefetch\MDELK.EXE-1D176F91.pf
Found ! - C:\WINDOWS\prefetch\WINTEMS.EXE-2A563F9B.pf
Found ! - C:\WINDOWS\prefetch\WINUPGRO.EXE-287381C7.pf
Found ! - C:\WINDOWS\Prefetch\SAFEBOOTKEYREPAIR[1].EXE-1ACE8AE2.pf
»»»» Presence des fichiers dans C:\WINDOWS\system32
Found ! [31/12/2008 15:16] - C:\WINDOWS\system32\mdelk.exe
Found ! [31/12/2008 15:16] - C:\WINDOWS\system32\wintems.exe
Found ! [31/12/2008 18:06] - C:\WINDOWS\system32\ban_list.txt
»»»» Presence des fichiers dans C:\WINDOWS\system32\config\systemprofile\AppData\Roaming
»»»» Presence des fichiers dans C:\WINDOWS\system32\drivers
»»»» Presence des fichiers dans C:\Documents and Settings\Administrateur\Application Data
Found ! [31/12/2008 12:22] - "C:\Documents and Settings\Administrateur\Application Data\m\flec006.exe"
Found ! [31/12/2008 18:06] - "C:\Documents and Settings\Administrateur\Application Data\m\list.oct"
Found ! [31/12/2008 18:06] - "C:\Documents and Settings\Administrateur\Application Data\m\data.oct"
Found ! [31/12/2008 18:06] - "C:\Documents and Settings\Administrateur\Application Data\m\srvlist.oct"
Found ! [31/12/2008 18:08] - "C:\Documents and Settings\Administrateur\Application Data\m\shared"
Found ! [31/12/2008 18:06] - "C:\Documents and Settings\Administrateur\Application Data\m"
Found ! [30/12/2008 21:16] - "C:\Documents and Settings\Administrateur\Application Data\drivers"
Found ! [31/12/2008 15:13] - "C:\Documents and Settings\Administrateur\Application Data\drivers\srosa.sys"
Found ! [31/12/2008 15:13] - "C:\Documents and Settings\Administrateur\Application Data\drivers\srosa2.sys"
Found ! [10/04/2004 05:06] - "C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe"
Found ! [31/12/2008 15:21] - "C:\Documents and Settings\Administrateur\Application Data\drivers\downld"
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\101205.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\103128.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\104750.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\104770.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\107404.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\107784.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\108045.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\108425.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\109026.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\109146.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\110108.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\111860.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112191.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112311.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112762.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112862.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113142.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113162.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113352.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113953.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115145.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115185.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\116407.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117018.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117178.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117188.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117328.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117368.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117989.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118069.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118280.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122906.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124018.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124879.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\125260.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\134523.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\135805.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\136696.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\137047.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\137177.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\137868.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\138168.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\138479.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\139340.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\139460.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\139660.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\140131.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\140522.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\143095.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\143696.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\143876.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\144057.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\144177.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\144557.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\144838.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\144918.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\145268.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\154482.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157756.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157877.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\163274.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\184675.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\185476.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\185897.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\220617.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\223491.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\224913.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\225804.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\225974.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229159.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231322.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\233736.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\233966.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\254986.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\257350.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261335.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261886.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262066.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262126.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262367.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262867.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263108.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264740.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264981.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\265141.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\265211.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\268626.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\274985.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\276117.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\276527.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\276687.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\277388.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\278029.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\278280.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\278530.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\278800.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\279321.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\280122.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\280593.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\282486.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\286381.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\287243.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\287673.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\287743.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\288414.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\288805.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\289326.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\293752.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294473.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294683.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\298078.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\298889.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\298949.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\299260.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\299600.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\299941.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\305579.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\307041.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\307562.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\308303.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\308844.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309114.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309454.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309925.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309985.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\321452.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\322293.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\322353.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\323104.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\326900.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\326970.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\329583.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\334450.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\335882.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\336583.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\337455.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\338216.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\338727.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\338827.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\338967.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\339478.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\339648.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\340339.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\340940.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\341671.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\342582.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\343323.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\360788.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\361609.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\361950.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\362280.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\362891.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\363232.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\371824.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372445.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372876.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\375700.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376361.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376831.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\392724.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\400806.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\401517.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\401727.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\403119.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\403900.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\404101.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\422677.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\427244.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\428115.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\428275.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\437669.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\440693.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\442275.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\443017.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\443257.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\444128.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\445260.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\445450.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\448364.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\451919.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\452741.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\452911.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\454423.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\455695.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\455745.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\467842.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469284.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469755.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\470486.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\471217.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\471828.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\471838.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\475613.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\478377.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\479118.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\479399.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\487581.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\488822.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\489263.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\490014.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\490284.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\490895.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\491176.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\491516.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\491596.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\492017.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\493489.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\494170.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\494871.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\495362.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\496343.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\496984.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\497014.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\497074.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\500599.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\501210.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\501671.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\509662.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\509742.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\510423.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\510784.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\511114.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\511565.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\512296.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\512947.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\513518.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\517033.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\517944.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\518345.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\519707.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\520368.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\520959.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\525635.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529220.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529701.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529801.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\532876.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\538073.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\538634.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\543191.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\544192.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\544923.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\548108.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\548849.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\548919.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\576368.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\583559.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\584840.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\584881.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\602426.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\603688.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\604449.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\605460.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\606201.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\606612.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\610247.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\610848.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\611188.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\625018.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\626060.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\626691.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\630446.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\630546.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\636835.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\637566.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\638137.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\639048.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\639689.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\639749.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\663814.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\665066.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\665216.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\78963.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\83460.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\83470.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\88166.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\88357.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\88577.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\91952.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\92092.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\92643.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\92693.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\96328.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\96939.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\98481.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\99563.exe
Found ! [31/12/2008 15:21] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\99583.exe
»»»» Presence des fichiers dans C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
»»»» Presence des fichiers dans C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5
--------------- [ Registre / Startup ] ----------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
CTFMON.EXE=C:\WINDOWS\system32\ctfmon.exe
MsnMsgr="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
SpybotSD TeaTimer=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
NeroFilterCheck=C:\WINDOWS\system32\NeroCheck.exe
avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
SoundMan=SOUNDMAN.EXE
VTPreset=VTPreset.exe
SunJavaUpdateSched="C:\Program Files\Java\jre6\bin\jusched.exe"
DLA=C:\WINDOWS\System32\DLA\DLACTRLW.EXE
SearchSettings=C:\Program Files\Search Settings\SearchSettings.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
NoChange=1
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
Installed=1
<NO NAME>=
[HKEY_CURRENT_USER\software\local appwizard-generated applications\DestComp]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\install]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\MsnMsgr]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\winupgro]
--------------- [ Registre / Clés infectieuses ] ----------------
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\Local AppWizard-Generated Applications\MsnMsgr
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-725345543-436374069-1060284298-500\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\MsnMsgr
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sK9Ou0s
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sK9Ou0s
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sK9Ou0s
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sK9Ou0s
--------------- [ Etat / Services ] ----------------
+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]
/!\ Ndisuio - Type de démarrage = 4
EapHost - Type de démarrage = 3
/!\ Ip6Fw - Type de démarrage = 4
SharedAccess - Type de démarrage = 2
wuauserv - Type de démarrage = 2
/!\ wscsvc - Type de démarrage = 4
--------------- [ Recherche dans supports amovibles] ----------------
+- Informations :
C: - Lecteur fixe
D: - Lecteur fixe
+- presence des fichiers :
--------------- [ Registre / Mountpoint2 ] ----------------
Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9b77e040-c2b3-11dd-a482-0040d0587e97}\Shell\AutoRun\command
------------------- ! Fin du rapport ! --------------------
Il y a 837 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.
