--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Home Edition ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) III Mobile CPU 866MHz )
BIOS : PhoenixBIOS 4.0 Release 6.0.
USER : Windows ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:18 Go (Free:5 Go)
D:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 22/01/2010|13.07 )
--------------------\\ Listing folders in DATIAP~1
[17/12/2009|17.43] C:\DOCUME~2\ALLUSE~1\DATIAP~1\4 Curb Loud Idol
[09/07/2008|18.37] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Adobe
[21/01/2010|22.07] C:\DOCUME~2\ALLUSE~1\DATIAP~1\AntiVir PersonalEdition Classic
[09/01/2007|11.00] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Autodesk
[09/11/2007|11.00] C:\DOCUME~2\ALLUSE~1\DATIAP~1\BVRP Software
[21/11/2009|01.20] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Google
[14/01/2010|23.05] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Malwarebytes
[27/09/2009|00.23] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Microsoft
[05/09/2008|20.23] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Motive
[10/07/2008|07.19] C:\DOCUME~2\ALLUSE~1\DATIAP~1\NOS
[15/10/2001|05.33] C:\DOCUME~2\ALLUSE~1\DATIAP~1\SBSI
[12/06/2007|14.27] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Spybot - Search & Destroy
[10/12/2009|23.40] C:\DOCUME~2\ALLUSE~1\DATIAP~1\TEMP
[13/10/2006|14.58] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Windows Genuine Advantage
[20/10/2008|15.15] C:\DOCUME~2\ALLUSE~1\DATIAP~1\WLInstaller
[15/01/2010|13.41] C:\DOCUME~2\ALLUSE~1\DATIAP~1\Yahoo! Companion
[0|File] C:\DOCUME~2\ALLUSE~1\DATIAP~1\byte
[18|Directory] C:\DOCUME~2\ALLUSE~1\DATIAP~1\byte disponibili
[15/10/2001|05.29] C:\DOCUME~2\DEFAUL~1\DATIAP~1\Adobe
[15/10/2001|05.23] C:\DOCUME~2\DEFAUL~1\DATIAP~1\Identities
[15/10/2001|05.29] C:\DOCUME~2\DEFAUL~1\DATIAP~1\InterTrust
[15/10/2001|05.08] C:\DOCUME~2\DEFAUL~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~2\DEFAUL~1\DATIAP~1\byte
[6|Directory] C:\DOCUME~2\DEFAUL~1\DATIAP~1\byte disponibili
[10/12/2009|21.40] C:\DOCUME~2\LOCALS~1\DATIAP~1\Adobe
[15/10/2001|05.08] C:\DOCUME~2\LOCALS~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~2\LOCALS~1\DATIAP~1\byte
[4|Directory] C:\DOCUME~2\LOCALS~1\DATIAP~1\byte disponibili
[15/10/2001|05.08] C:\DOCUME~2\NETWOR~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~2\NETWOR~1\DATIAP~1\byte
[3|Directory] C:\DOCUME~2\NETWOR~1\DATIAP~1\byte disponibili
[15/10/2001|05.23] C:\DOCUME~2\PROPRI~1\DATIAP~1\Identities
[15/10/2001|05.08] C:\DOCUME~2\PROPRI~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~2\PROPRI~1\DATIAP~1\byte
[4|Directory] C:\DOCUME~2\PROPRI~1\DATIAP~1\byte disponibili
[09/07/2008|21.18] C:\DOCUME~2\Windows\DATIAP~1\Adobe
[21/06/2007|14.33] C:\DOCUME~2\Windows\DATIAP~1\AdobeUM
[23/10/2006|08.51] C:\DOCUME~2\Windows\DATIAP~1\Autodesk
[10/10/2009|22.58] C:\DOCUME~2\Windows\DATIAP~1\Convivea
[02/10/2009|12.08] C:\DOCUME~2\Windows\DATIAP~1\DeepBurner
[21/11/2009|01.18] C:\DOCUME~2\Windows\DATIAP~1\Google
[14/07/2007|15.56] C:\DOCUME~2\Windows\DATIAP~1\Help
[15/10/2001|05.23] C:\DOCUME~2\Windows\DATIAP~1\Identities
[09/11/2007|10.52] C:\DOCUME~2\Windows\DATIAP~1\InstallShield
[15/10/2001|05.29] C:\DOCUME~2\Windows\DATIAP~1\InterTrust
[21/09/2006|13.24] C:\DOCUME~2\Windows\DATIAP~1\Macromedia
[14/01/2010|23.05] C:\DOCUME~2\Windows\DATIAP~1\Malwarebytes
[20/10/2006|14.42] C:\DOCUME~2\Windows\DATIAP~1\MechSoft
[28/10/2007|11.12] C:\DOCUME~2\Windows\DATIAP~1\Media Player Classic
[15/11/2009|13.14] C:\DOCUME~2\Windows\DATIAP~1\Microsoft
[05/09/2008|22.15] C:\DOCUME~2\Windows\DATIAP~1\Motive
[10/04/2009|15.51] C:\DOCUME~2\Windows\DATIAP~1\OpenOffice.org
[12/06/2007|08.32] C:\DOCUME~2\Windows\DATIAP~1\Samsung
[14/01/2010|23.30] C:\DOCUME~2\Windows\DATIAP~1\SIZE WEB LOUD
[25/02/2009|18.37] C:\DOCUME~2\Windows\DATIAP~1\Sun
[22/01/2010|13.07] C:\DOCUME~2\Windows\DATIAP~1\uTorrent
[15/01/2010|13.09] C:\DOCUME~2\Windows\DATIAP~1\Yahoo!
[0|File] C:\DOCUME~2\Windows\DATIAP~1\byte
[24|Directory] C:\DOCUME~2\Windows\DATIAP~1\byte disponibili
--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[22/01/2010 13.00][--ah-----] C:\WINDOWS\tasks\A820FF33918F7567.job
[22/01/2010 13.01][--a------] C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[22/01/2010 10.14][--ah-----] C:\WINDOWS\tasks\SA.DAT
[31/08/2001 13.00][-r-h-c---] C:\WINDOWS\tasks\desktop.ini
( A820FF33918F7567.job )=( c:\docume~2\windows\datiap~1\sizewe~1\Barbsetuptime.exe )
--------------------\\ Listing Folders in C:\Programmi
[05/09/2008|20.28] C:\Programmi\Adobe
[05/09/2008|20.23] C:\Programmi\Alice ti aiuta
[18/01/2009|23.20] C:\Programmi\ANI
[22/01/2010|08.43] C:\Programmi\AntiVir PersonalEdition Classic
[27/09/2009|00.54] C:\Programmi\Ask.com
[02/10/2009|12.27] C:\Programmi\Astonsoft
[15/01/2007|12.16] C:\Programmi\Autodesk
[09/11/2007|10.52] C:\Programmi\Avanquest update
[10/10/2009|22.59] C:\Programmi\Bit Che
[15/01/2010|13.08] C:\Programmi\CCleaner
[05/09/2008|20.22] C:\Programmi\Common Files
[15/10/2001|05.15] C:\Programmi\ComPlus Applications
[05/12/2009|01.49] C:\Programmi\eMule
[22/01/2010|09.53] C:\Programmi\File comuni
[21/11/2009|09.17] C:\Programmi\Google
[15/10/2001|05.25] C:\Programmi\Hewlett-Packard
[15/10/2001|05.27] C:\Programmi\HP
[15/10/2001|05.27] C:\Programmi\HP One-Touch
[18/01/2009|23.20] C:\Programmi\InstallShield Installation Information
[12/06/2007|09.48] C:\Programmi\Internet Explorer
[02/08/2006|03.12] C:\Programmi\InterVideo
[10/04/2009|14.29] C:\Programmi\Java
[10/04/2009|14.31] C:\Programmi\JRE
[12/06/2007|14.39] C:\Programmi\K-Lite Codec Pack
[14/01/2010|23.05] C:\Programmi\Malwarebytes' Anti-Malware
[12/06/2007|09.53] C:\Programmi\Messenger
[12/06/2007|08.31] C:\Programmi\Microsoft ActiveSync
[15/10/2001|05.18] C:\Programmi\microsoft frontpage
[04/12/2006|18.01] C:\Programmi\Microsoft Office
[08/06/2008|13.53] C:\Programmi\Microsoft SQL Server
[04/12/2006|18.00] C:\Programmi\Microsoft Visual Studio
[04/12/2006|18.00] C:\Programmi\Microsoft Works
[15/06/2008|14.40] C:\Programmi\Microsoft WSE
[04/12/2006|17.58] C:\Programmi\Microsoft.NET
[05/09/2008|20.22] C:\Programmi\Motive
[09/11/2007|10.55] C:\Programmi\Motorola Phone Tools
[13/10/2006|16.09] C:\Programmi\Movie Maker
[15/10/2001|05.14] C:\Programmi\MSN
[15/10/2001|05.14] C:\Programmi\MSN Gaming Zone
[12/06/2007|09.43] C:\Programmi\MSXML 4.0
[13/10/2006|16.05] C:\Programmi\NetMeeting
[10/07/2008|07.19] C:\Programmi\NOS
[10/04/2009|14.31] C:\Programmi\OpenOffice.org 3
[12/06/2007|07.58] C:\Programmi\OptOS
[12/06/2007|09.39] C:\Programmi\Outlook Express
[02/03/2008|22.44] C:\Programmi\PokerStars
[27/09/2009|00.28] C:\Programmi\PokerStars.NET
[15/10/2001|05.28] C:\Programmi\SBApps
[15/10/2001|05.14] C:\Programmi\Servizi in linea
[17/12/2009|17.42] C:\Programmi\SIZE WEB LOUD
[12/06/2007|13.52] C:\Programmi\Spybot - Search & Destroy
[15/10/2001|05.26] C:\Programmi\Synaptics
[17/11/2008|11.40] C:\Programmi\Telecom Italia
[15/01/2010|13.04] C:\Programmi\Trend Micro
[19/10/2006|08.34] C:\Programmi\Uninstall Information
[27/09/2009|20.59] C:\Programmi\uTorrent
[13/10/2006|11.44] C:\Programmi\WIDCOMM
[27/09/2009|00.23] C:\Programmi\Windows Live
[12/06/2007|14.30] C:\Programmi\Windows Media Player
[13/10/2006|16.05] C:\Programmi\Windows NT
[13/10/2006|14.51] C:\Programmi\WindowsUpdate
[02/06/2008|10.19] C:\Programmi\WinRAR
[18/01/2009|23.19] C:\Programmi\Wireless USB adapter Alice G-132
[15/10/2001|05.18] C:\Programmi\xerox
[15/01/2010|13.09] C:\Programmi\Yahoo!
[0|File] C:\Programmi\byte
[67|Directory] C:\Programmi\byte disponibili
--------------------\\ Listing Folders in C:\Programmi\File comuni
[09/07/2008|18.34] C:\Programmi\File comuni\Adobe
[09/01/2007|11.00] C:\Programmi\File comuni\Autodesk Shared
[09/01/2007|11.00] C:\Programmi\File comuni\Designer
[17/11/2008|11.43] C:\Programmi\File comuni\InstallShield
[10/04/2009|14.25] C:\Programmi\File comuni\Java
[04/12/2006|18.05] C:\Programmi\File comuni\Microsoft Shared
[05/09/2008|20.23] C:\Programmi\File comuni\Motive
[15/10/2001|05.16] C:\Programmi\File comuni\MSSoap
[15/10/2001|05.08] C:\Programmi\File comuni\ODBC
[15/10/2001|05.16] C:\Programmi\File comuni\Services
[15/10/2001|05.08] C:\Programmi\File comuni\SpeechEngines
[12/06/2007|09.39] C:\Programmi\File comuni\System
[20/10/2008|15.20] C:\Programmi\File comuni\WindowsLiveInstaller
[0|File] C:\Programmi\File comuni\byte
[15|Directory] C:\Programmi\File comuni\byte disponibili
--------------------\\ Process
( 40 Processes )
iexplore.exe ~ [PID:4084]
iexplore.exe ~ [PID:2576]
iexplore.exe ~ [PID:2616]
--------------------\\ Searching with S_Lop
No Lop folder found !
--------------------\\ Searching for Lop Files - Folders
C:\DOCUME~2\ALLUSE~1\DATIAP~1\4 Curb Loud Idol
C:\DOCUME~2\ALLUSE~1\DATIAP~1\4 Curb Loud Idol\Drv Army.dat
C:\DOCUME~2\ALLUSE~1\DATIAP~1\4 Curb Loud Idol\Drv Army.exe
C:\DOCUME~2\Windows\DATIAP~1\sizewe~1
C:\DOCUME~2\Windows\DATIAP~1\sizewe~1\Barbsetuptime.exe
C:\DOCUME~2\Windows\DATIAP~1\sizewe~1\bgbpwbrh.exe
C:\DOCUME~2\Windows\DATIAP~1\sizewe~1\dibklmah.exe
C:\DOCUME~2\Windows\DATIAP~1\sizewe~1\drvway.exe
C:\Programmi\sizewe~1
C:\DOCUME~2\Windows\Cookies\windows@www.adserver5[1].txt
C:\DOCUME~2\Windows\Cookies\windows@adultfriendfinder[1].txt
C:\DOCUME~2\Windows\Cookies\windows@ads.adultadvertising[1].txt
C:\DOCUME~2\Windows\Cookies\windows@advertising[2].txt
C:\DOCUME~2\Windows\Cookies\windows@bigpoint[2].txt
C:\DOCUME~2\Windows\Cookies\windows@deepolis.bigpoint[1].txt
C:\DOCUME~2\Windows\Cookies\windows@adopt.euroclick[2].txt
C:\DOCUME~2\Windows\Cookies\windows@partypoker[2].txt
C:\WINDOWS\Tasks\A820FF33918F7567.job
--------------------\\ Searching within the Registry
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sendsoftwarestore]
"DisplayName"="CiD Help"
"UninstallString"="C:\\DOCUME~2\\Windows\\DATIAP~1\\SIZEWE~1\\drvway.exe -uninstall"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LIVE EQ"="C:\\DOCUME~2\\Windows\\DATIAP~1\\SIZEWE~1\\drvway.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Checking the Hosts file
Hosts file CLEAN
--------------------\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2010-01-22 13:11:34
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Searching for other infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~2\Windows\Desktop\MAME 32\roms\cracksht.zip
[F:1][D:0]-> C:\DOCUME~2\Windows\IMPOST~1\Temp
[F:1127][D:0]-> C:\DOCUME~2\Windows\Cookies
[F:1594][D:20]-> C:\DOCUME~2\Windows\IMPOST~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 22/01/2010|13.14 - Option : [1]
--------------------\\ Scan completed at 13.14.45