rapport Ad_remover:
======= RAPPORT D'AD-REMOVER 2.0.0.1,F | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par C_XX le 16/09/10 à 13:30
Contact: AdRemover.contact[AT]gmail.com
Site web:
http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 22:09:59 le 12/10/2010, Mode sans echec
Microsoft® Windows Vista™ Édition Familiale Premium (X86)
Paulo@PC-DE-PAULO (Hewlett-Packard HP Pavilion dv6500 Notebook PC)
============== RECHERCHE ==============
0,Dossier trouvé: C:\Program Files\Mozilla FireFox\extensions\{B922D405-6D13-4A2B-AE89-08A030DA4402}
0,Dossier trouvé: C:\Program Files\Mozilla FireFox\extensions\search@searchsettings.com
0,Fichier trouvé: C:\Users\Paulo\AppData\Roaming\Mozilla\FireFox\Profiles\4oq7jfb0.default\searchplugins\ask.xml
0,Dossier trouvé: C:\Users\Paulo\AppData\LocalLow\Conduit
0,Dossier trouvé: C:\Program Files\Conduit
0,Dossier trouvé: C:\Users\Paulo\AppData\LocalLow\pdfforge
0,Dossier trouvé: C:\Program Files\pdfforge Toolbar
0,Dossier trouvé: C:\Users\Paulo\AppData\LocalLow\Search Settings
0,Dossier trouvé: C:\Users\Paulo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TorrentSpeeder
0,Dossier trouvé: C:\Program Files\TorrentSpeeder
3,Fichier trouvé: C:\Windows\Installer\250de6e.msi
3,Fichier trouvé: C:\Users\Paulo\AppData\Local\acyuk.bat
1,Clé trouvée: HKLM\Software\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}
1,Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B922D405-6D13-4A2B-AE89-08A030DA4402}
1,Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}
1,Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
1,Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
1,Clé trouvée: HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
1,Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
1,Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
1,Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
0,Clé trouvée: HKLM\Software\Conduit
0,Clé trouvée: HKLM\Software\pdfforge
0,Clé trouvée: HKLM\Software\Search Settings
0,Clé trouvée: HKCU\Software\Lanconfig
0,Clé trouvée: HKCU\Software\Search Settings
0,Clé trouvée: HKCU\Software\AppDataLow\Software\Conduit
0,Clé trouvée: HKCU\Software\AppDataLow\Software\pdfforge
3,Clé trouvée: HKLM\Software\Classes\Installer\Products\B8CF0B8BB96E5124FAA1B4FD2FD097B4
3,Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Products\B8CF0B8BB96E5124FAA1B4FD2FD097B4
0,Clé trouvée: HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
3,Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
3,Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
3,Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B922D405-6D13-4A2B-AE89-08A030DA4402}
0,Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Search Settings
0,Clé trouvée: HKCU\Software\Microsoft\SystemCertificates\TrustedPublisher\Certificates\62119EF862C6B3A0D853419B87EB3E2F6C78640A
0,Clé trouvée: HKCU\Software\Microsoft\SystemCertificates\TrustedPublisher\Certificates\E6A6A4A475FCE37F8B5AC2F1244DEB2BFCA5615A
0,Clé trouvée: HKCU\Software\Microsoft\SystemCertificates\TrustedPublisher\Certificates\7EE743314C844C7F445B8B1D7617612DF1FDD50F
0,Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo jimddp
0,Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo hpfanicgkffmccehnpkikogcffaepkfp
0,Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo dgnckdmmolaijpbbakmplfhlfpdhglgc
0,Valeur trouvée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{B922D405-6D13-4A2B-AE89-08A030DA4402}
============== SCAN ADDITIONNEL ==============
** Mozilla Firefox Version [2.0.0.20 (fr)] **
-- C:\Users\Paulo\AppData\Roaming\Mozilla\FireFox\Profiles\4oq7jfb0.default\Prefs.js --
browser.search.defaultenginename, Google
browser.startup.homepage, hxxp://www2.firesearch.com/
browser.startup.homepage_override.mstone, rv:1.8.1.20
keyword.URL, hxxp://www.google.com/search?sourceid=navclient&hl=fr&q=
========================================
** Internet Explorer Version [8.0.6001.18904] **
[HKCU\Software\Microsoft\Internet Explorer\Main]
AutoHide: yes
Default_Page_URL: hxxp://fr.yahoo.com/?fr=fp-yie8
Do404Search: 0x01000000
Enable Browser Extensions: yes
Local Page: C:\Windows\system32\blank.htm
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Show_ToolBar: yes
Start Page: hxxp://fr.yahoo.com/
Start Page Restore: hxxp://fr.yahoo.com/?fr=fp-yie8
Use Search Asst: no
[HKLM\Software\Microsoft\Internet Explorer\Main]
AutoHide: yes
Default_Page_URL: hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=73&bd=Pavilion&pf=laptop
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Enable Browser Extensions: yes
Local Page: C:\Windows\System32\blank.htm
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Start Page: hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=73&bd=Pavilion&pf=laptop
Use Search Asst: no
[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
Tabs: res://ieframe.dll/tabswelcome.htm
Blank: res://mshtml.dll/blank.htm
========================================
C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 1 Fichier(s)
C:\Ad-Report-SCAN[1].txt - 12/10/2010 (0 Octet(s))
Fin à: 22:15:21, 12/10/2010
============== E.O.F ==============
rapport Lop:
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6000 )
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual-Core Processor TK-53 )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Paulo ( Administrator )
BOOT : Fail-safe with network boot
C:\ (Local Disk) - NTFS - Total:104 Go (Free:1 Go)
D:\ (Local Disk) - NTFS - Total:7 Go (Free:2 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 12/10/2010|22:16 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[10/10/2009|18:27] C:\Users\Paulo\AppData\Local\acyuk.bat
[15/06/2008|10:01] C:\Users\Paulo\AppData\Local\Adobe
[24/05/2008|15:04] C:\Users\Paulo\AppData\Local\Ahead
[24/05/2008|01:22] C:\Users\Paulo\AppData\Local\Application Data
[04/08/2010|16:41] C:\Users\Paulo\AppData\Local\asnaseq.bat
[12/10/2010|14:45] C:\Users\Paulo\AppData\Local\atfbtf.bat
[24/05/2008|01:29] C:\Users\Paulo\AppData\Local\AtStart.txt
[19/06/2009|09:58] C:\Users\Paulo\AppData\Local\caeocis.bat
[05/07/2009|12:17] C:\Users\Paulo\AppData\Local\cqkwq.bat
[10/10/2010|19:18] C:\Users\Paulo\AppData\Local\d3d9caps.dat
[15/06/2008|12:39] C:\Users\Paulo\AppData\Local\DassaultSystemes
[12/10/2010|15:30] C:\Users\Paulo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[24/05/2008|01:29] C:\Users\Paulo\AppData\Local\DSwitch.txt
[29/07/2010|23:50] C:\Users\Paulo\AppData\Local\echgdchf.bat
[20/10/2008|00:24] C:\Users\Paulo\AppData\Local\ejaeva.bat
[24/05/2008|11:23] C:\Users\Paulo\AppData\Local\eMule
[26/02/2010|13:21] C:\Users\Paulo\AppData\Local\GDIPFONTCACHEV1.DAT
[12/10/2010|14:36] C:\Users\Paulo\AppData\Local\Google
[24/05/2008|01:22] C:\Users\Paulo\AppData\Local\Historique
[14/09/2010|18:00] C:\Users\Paulo\AppData\Local\kvsvaf.bat
[02/08/2010|16:02] C:\Users\Paulo\AppData\Local\kvsvaf.exe
[10/10/2009|13:36] C:\Users\Paulo\AppData\Local\mdchon.exe
[07/11/2008|19:11] C:\Users\Paulo\AppData\Local\Microsoft
[04/12/2009|22:39] C:\Users\Paulo\AppData\Local\Microsoft Games
[02/05/2009|13:50] C:\Users\Paulo\AppData\Local\Microsoft Help
[18/01/2009|01:05] C:\Users\Paulo\AppData\Local\Mozilla
[22/08/2009|13:55] C:\Users\Paulo\AppData\Local\ougaaou.bat
[27/06/2009|21:08] C:\Users\Paulo\AppData\Local\ougaaou.exe
[24/05/2008|01:29] C:\Users\Paulo\AppData\Local\QSwitch.txt
[15/01/2009|21:06] C:\Users\Paulo\AppData\Local\QuickPlay
[16/09/2010|19:17] C:\Users\Paulo\AppData\Local\rnjgjnqn.bat
[12/10/2010|22:15] C:\Users\Paulo\AppData\Local\Temp
[24/05/2008|01:22] C:\Users\Paulo\AppData\Local\Temporary Internet Files
[13/06/2008|19:09] C:\Users\Paulo\AppData\Local\VirtualStore
[11/05/2009|00:15] C:\Users\Paulo\AppData\Local\wayesym.bat
[14/07/2010|15:05] C:\Users\Paulo\AppData\Local\ykvase.bat
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[12/10/2010 14:02][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[12/10/2010 14:44][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[12/10/2010 14:44][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{FB4D60FF-9B4E-4F91-B059-20B731B5E6DA}.job
[12/10/2010 14:46][--a------] C:\Windows\tasks\Google Software Updater.job
[04/10/2010 23:22][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - Paulo.job
[12/10/2010 14:55][--ah-----] C:\Windows\tasks\SA.DAT
[12/10/2010 14:55][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[11/06/2007|18:39] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[25/10/2008|16:01] C:\ProgramData\Adobe
[24/05/2008|01:18] C:\ProgramData\Application Data
[24/05/2008|01:18] C:\ProgramData\Bureau
[04/07/2009|14:52] C:\ProgramData\CyberLink
[15/06/2008|12:39] C:\ProgramData\DassaultSystemes
[24/05/2008|01:18] C:\ProgramData\Documents
[09/08/2008|14:49] C:\ProgramData\Downloaded Installations
[24/05/2008|13:04] C:\ProgramData\eMule
[24/05/2008|01:18] C:\ProgramData\Favoris
[17/04/2009|20:21] C:\ProgramData\Google
[12/10/2010|13:58] C:\ProgramData\Google Updater
[05/07/2010|14:28] C:\ProgramData\Hewlett-Packard
[25/05/2008|03:08] C:\ProgramData\HP
[11/06/2007|18:54] C:\ProgramData\hpzinstall.log
[21/07/2009|13:55] C:\ProgramData\Intra 4 4.6qztgm
[21/07/2009|14:32] C:\ProgramData\Intra 4 4.b53kuy
[21/07/2009|14:32] C:\ProgramData\Intra 4 4.ip0k27
[11/08/2009|14:18] C:\ProgramData\Intra 4 4.jel3zvz
[08/06/2009|01:52] C:\ProgramData\Jlcm
[24/05/2008|14:49] C:\ProgramData\LightScribe
[11/08/2009|14:06] C:\ProgramData\Long Bone Mess
[12/10/2010|16:56] C:\ProgramData\Malwarebytes
[21/07/2009|14:32] C:\ProgramData\Memo Drive Vc Log
[24/05/2008|01:18] C:\ProgramData\Menu D‚marrer
[14/07/2008|20:00] C:\ProgramData\Microsoft
[10/10/2009|13:55] C:\ProgramData\Microsoft Help
[24/05/2008|01:18] C:\ProgramData\ModŠles
[24/05/2008|02:49] C:\ProgramData\Nero
[12/10/2010|14:27] C:\ProgramData\Norton
[18/02/2009|12:06] C:\ProgramData\NVIDIA
[12/10/2010|14:45] C:\ProgramData\nvModes.001
[28/07/2010|15:50] C:\ProgramData\nvModes.dat
[08/06/2009|01:55] C:\ProgramData\PPLive
[23/11/2008|15:41] C:\ProgramData\Roxio
[25/10/2008|16:50] C:\ProgramData\Sonic
[12/10/2010|14:27] C:\ProgramData\Symantec
[12/10/2010|14:06] C:\ProgramData\TEMP
[22/02/2009|18:36] C:\ProgramData\wmp
--------------------\\ Listing des dossiers dans C:\Program Files
[11/06/2007|18:39] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[25/10/2008|16:00] C:\Program Files\Adobe
[12/10/2010|22:15] C:\Program Files\Ad-Remover
[24/05/2008|01:43] C:\Program Files\CCleaner
[30/12/2009|16:27] C:\Program Files\Common Files
[24/12/2008|19:46] C:\Program Files\Conduit
[11/06/2007|17:47] C:\Program Files\CONEXANT
[20/02/2009|21:52] C:\Program Files\DivX
[11/06/2007|18:56] C:\Program Files\EasyBits
[12/10/2010|14:33] C:\Program Files\eMule
[12/10/2010|14:33] C:\Program Files\eMule Acceleration Patch
[24/05/2008|01:18] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[07/02/2010|18:40] C:\Program Files\Google
[07/07/2009|08:26] C:\Program Files\Hewlett-Packard
[07/07/2009|08:27] C:\Program Files\HP
[11/06/2007|19:06] C:\Program Files\HPQ
[07/07/2009|08:31] C:\Program Files\InstallShield Installation Information
[01/04/2010|03:12] C:\Program Files\Internet Explorer
[02/07/2009|11:14] C:\Program Files\Java
[12/10/2010|16:56] C:\Program Files\Malwarebytes' Anti-Malware
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[11/06/2007|18:37] C:\Program Files\Microsoft Office
[11/06/2007|18:38] C:\Program Files\Microsoft Works
[11/06/2007|18:37] C:\Program Files\Microsoft.NET
[11/03/2010|05:23] C:\Program Files\Movie Maker
[18/01/2009|01:05] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[02/11/2006|14:37] C:\Program Files\MSN
[11/06/2007|18:32] C:\Program Files\MSN Messenger
[25/05/2008|03:06] C:\Program Files\MSXML 4.0
[11/06/2007|19:01] C:\Program Files\muvee Technologies
[25/10/2008|16:37] C:\Program Files\Nero
[10/10/2009|15:56] C:\Program Files\OpenOffice.org 3
[30/12/2009|16:54] C:\Program Files\OrangeHSS
[24/12/2008|19:46] C:\Program Files\P2P_Torrent
[20/06/2009|23:37] C:\Program Files\PDFCreator
[20/06/2009|23:35] C:\Program Files\pdfforge Toolbar
[08/06/2009|01:53] C:\Program Files\PPLive
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[11/06/2007|18:18] C:\Program Files\Roxio
[30/12/2009|16:30] C:\Program Files\Securitoo
[11/06/2007|18:57] C:\Program Files\Services en ligne
[11/06/2007|17:45] C:\Program Files\Synaptics
[21/07/2009|13:55] C:\Program Files\TorrentSpeeder
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[24/05/2008|16:08] C:\Program Files\VideoLAN
[12/10/2010|18:12] C:\Program Files\videosoft
[25/05/2008|03:55] C:\Program Files\Windows Calendar
[02/11/2006|14:42] C:\Program Files\Windows Collaboration
[25/05/2008|03:55] C:\Program Files\Windows Defender
[02/11/2006|14:42] C:\Program Files\Windows Journal
[15/04/2010|03:30] C:\Program Files\Windows Mail
[22/11/2009|23:14] C:\Program Files\Windows Media Player
[24/05/2008|01:18] C:\Program Files\Windows NT
[02/11/2006|14:42] C:\Program Files\Windows Photo Gallery
[25/05/2008|03:55] C:\Program Files\Windows Sidebar
[24/05/2008|13:58] C:\Program Files\WinRAR
[24/05/2008|14:11] C:\Program Files\Wormux
[12/10/2010|14:35] C:\Program Files\Yahoo!
[12/10/2010|18:25] C:\Program Files\ZHPDiag
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[25/10/2008|16:01] C:\Program Files\Common Files\Adobe
[11/06/2007|18:37] C:\Program Files\Common Files\DESIGNER
[30/12/2009|16:27] C:\Program Files\Common Files\France Telecom
[11/06/2007|18:53] C:\Program Files\Common Files\HP
[11/06/2007|19:04] C:\Program Files\Common Files\InstallShield
[11/06/2007|19:25] C:\Program Files\Common Files\Java
[11/06/2007|19:06] C:\Program Files\Common Files\LightScribe
[24/05/2008|02:19] C:\Program Files\Common Files\microsoft shared
[11/06/2007|19:01] C:\Program Files\Common Files\muvee Technologies
[25/10/2008|16:43] C:\Program Files\Common Files\Nero
[20/02/2009|21:51] C:\Program Files\Common Files\PX Storage Engine
[11/06/2007|18:17] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[11/06/2007|18:17] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[11/06/2007|18:18] C:\Program Files\Common Files\SureThing Shared
[12/10/2010|14:30] C:\Program Files\Common Files\Symantec Shared
[25/05/2008|03:55] C:\Program Files\Common Files\System
--------------------\\ Process
( 26 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\ProgramData\Memo Drive Vc Log
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\TorrentSpeeder
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\TorrentSpeeder\HomePage.lnk
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\TorrentSpeeder\TorrentSpeeder.lnk
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\TorrentSpeeder\Uninstall.lnk
C:\Program Files\TorrentSpeeder
C:\Program Files\TorrentSpeeder\config
C:\Program Files\TorrentSpeeder\data
C:\Program Files\TorrentSpeeder\torrentspeeder.exe
C:\Program Files\TorrentSpeeder\TorrentSpeeder.url
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@advertstream[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@d2.advertserve[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@d2.advertserve[2].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@d2.advertserve[3].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@d2.advertserve[4].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@d2.advertserve[5].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@adultfriendfinder[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@advertising[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@advertising[2].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@ero-advertising[2].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@partypoker[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@partypoker[2].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@2xmoinscher[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@cc.2xmoinscher[1].txt
C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies\paulo@888[1].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-10-12 22:16:27
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\Paulo\AppData\Roaming\Microsoft\Windows\Recent\catia crack.lnk
C:\Users\Paulo\AppData\Roaming\Microsoft\Windows\Recent\Nero_8_Keygen_(05-01-2008)-EXE-[www.search-torrent.com].lnk
C:\Users\Paulo\AppData\Roaming\uTorrent\Nero 8 Keygen (05.01.2008).EXE.torrent
C:\Users\Paulo\Downloads\Nero_8_Keygen_(05-01-2008)-EXE-[www.search-torrent.com].torrent
C:\Users\Paulo\Downloads\Nero Activator\Nero8Crack.exe
C:\Users\Paulo\Music\2005 - Tougher Than Leather (Remastered)\Run-DMC - 14 - Crack (previously unreleased).mp3
C:\Users\Paulo\Music\Notorious_B.I.G.-Greatest_Hits-2007-CMS\09-ten_crack_commandments.mp3
[F:890][D:26]-> C:\Users\Paulo\AppData\Local\Temp
[F:4283][D:1]-> C:\Users\Paulo\AppData\Roaming\MICROS~1\Windows\Cookies
[F:8630][D:16]-> C:\Users\Paulo\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:4][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 12/10/2010|22:20 - Option : [1]
--------------------\\ Fin du rapport a 22:20:52
[ UAC => 1 ]