LOP results
--------------------\\ Lop S&D 4.2.4-5 XP/Vista
Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel Pentium II processor )
BIOS : Ver 1.00PARTTBL0
USER : Student ( Administrator )
BOOT : Normal boot
Antivirus : Sophos Anti-Virus (Activated)
C:\ (Local Disk) - NTFS - Total : 74 Go Free : 60 Go
D:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 02-10-2008|23:42 )
Option : [1] ( 15/10/2008|15:48 )
--------------------\\ Listing folders in APPLIC~1
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\InstallShield
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[30/07/2006|04:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\toshiba
[22/03/2008|11:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[03/01/2008|13:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[03/01/2008|13:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[02/01/2008|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Atheros
[11/03/2008|17:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[18/09/2008|21:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logishrd
[16/05/2008|21:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech
[17/08/2008|20:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[15/10/2008|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/09/2008|20:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[02/01/2008|16:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[04/01/2008|14:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NetIntelligence Home
[30/07/2006|04:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[02/01/2008|17:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sophos
[06/10/2008|21:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[02/01/2008|17:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/09/2008|23:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Tons balm hope 2
[30/07/2006|04:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Vista64
[02/01/2008|18:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/05/2008|22:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[23/07/2007|11:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\XP
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InstallShield
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun
[30/07/2006|04:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\toshiba
[18/09/2008|20:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[30/07/2006|04:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[18/05/2008|12:55] C:\DOCUME~1\Student\APPLIC~1\Adobe
[28/05/2008|22:06] C:\DOCUME~1\Student\APPLIC~1\Apple Computer
[25/09/2008|23:14] C:\DOCUME~1\Student\APPLIC~1\ArmyFunkWarn
[12/03/2008|12:04] C:\DOCUME~1\Student\APPLIC~1\Google
[30/07/2006|04:06] C:\DOCUME~1\Student\APPLIC~1\Identities
[12/10/2008|01:18] C:\DOCUME~1\Student\APPLIC~1\IMVU
[30/07/2006|04:06] C:\DOCUME~1\Student\APPLIC~1\InstallShield
[18/09/2008|21:31] C:\DOCUME~1\Student\APPLIC~1\Leadertech
[06/10/2008|23:00] C:\DOCUME~1\Student\APPLIC~1\LimeWire
[07/01/2008|16:26] C:\DOCUME~1\Student\APPLIC~1\Macromedia
[17/08/2008|21:00] C:\DOCUME~1\Student\APPLIC~1\Malwarebytes
[18/04/2008|23:30] C:\DOCUME~1\Student\APPLIC~1\Microsoft
[01/10/2008|19:48] C:\DOCUME~1\Student\APPLIC~1\Mozilla
[13/03/2008|17:55] C:\DOCUME~1\Student\APPLIC~1\MSNInstaller
[27/03/2008|19:01] C:\DOCUME~1\Student\APPLIC~1\Real
[30/07/2006|04:06] C:\DOCUME~1\Student\APPLIC~1\Sun
[15/09/2008|17:33] C:\DOCUME~1\Student\APPLIC~1\toshiba
--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[15/10/2008 15:00][--ah-----] C:\WINDOWS\tasks\AA03C404913C7B4C.job
[15/10/2008 15:10][--a------] C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job
[14/10/2008 18:00][--a------] C:\WINDOWS\tasks\Scheduled.job
[29/08/2008 12:34][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[02/01/2008 16:08][--a------] C:\WINDOWS\tasks\Registration reminder 3.job
[02/01/2008 16:08][--a------] C:\WINDOWS\tasks\Registration reminder 2.job
[02/01/2008 16:08][--a------] C:\WINDOWS\tasks\Registration reminder 1.job
[15/10/2008 11:31][--ah-----] C:\WINDOWS\tasks\SA.DAT
[04/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
( AA03C404913C7B4C.job )=( c:\docume~1\student\applic~1\armyfu~1\drawexitbows.exe )
--------------------\\ Listing Folders in C:\Program Files
[12/10/2008|13:51] C:\Program Files\Adobe
[02/01/2008|16:08] C:\Program Files\Apoint2K
[03/01/2008|13:50] C:\Program Files\Apple Software Update
[25/09/2008|23:14] C:\Program Files\ArmyFunkWarn
[08/10/2008|20:56] C:\Program Files\AskBarDis
[02/01/2008|16:10] C:\Program Files\Atheros
[03/01/2008|13:54] C:\Program Files\Audacity
[06/07/2008|20:21] C:\Program Files\Common Files
[23/07/2007|07:54] C:\Program Files\ComPlus Applications
[06/07/2008|20:20] C:\Program Files\Dragonball Z Desktop Friends
[16/03/2008|12:23] C:\Program Files\Fusion
[11/03/2008|17:36] C:\Program Files\Google
[15/03/2008|00:38] C:\Program Files\Hooligans
[09/06/2008|17:12] C:\Program Files\IMVU
[15/03/2008|00:36] C:\Program Files\InstallShield Installation Information
[30/07/2006|04:21] C:\Program Files\Intel
[01/08/2008|02:20] C:\Program Files\InterActual
[19/08/2008|00:35] C:\Program Files\Internet Explorer
[30/07/2006|04:21] C:\Program Files\InterVideo
[19/02/2008|18:56] C:\Program Files\IrfanView
[07/01/2008|16:33] C:\Program Files\IZArc
[30/07/2006|04:21] C:\Program Files\Java
[16/05/2008|21:14] C:\Program Files\Logitech
[30/07/2006|04:21] C:\Program Files\ltmoh
[13/10/2008|19:11] C:\Program Files\Malwarebytes' Anti-Malware
[28/09/2008|19:19] C:\Program Files\Messenger
[15/10/2008|15:26] C:\Program Files\Messenger Plus! Live
[09/05/2008|22:34] C:\Program Files\MessengerPlus! 3
[02/01/2008|17:06] C:\Program Files\Microsoft ActiveSync
[02/01/2008|18:46] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[30/07/2006|04:21] C:\Program Files\microsoft frontpage
[03/01/2008|13:48] C:\Program Files\Microsoft Office
[30/07/2006|04:25] C:\Program Files\Microsoft SQL Server
[02/01/2008|17:06] C:\Program Files\Microsoft Visual Studio
[02/01/2008|17:12] C:\Program Files\Microsoft Works
[02/01/2008|17:03] C:\Program Files\Microsoft.NET
[28/09/2008|14:28] C:\Program Files\Movie Maker
[01/10/2008|19:48] C:\Program Files\Mozilla Firefox
[03/01/2008|13:48] C:\Program Files\MSECache
[20/02/2008|14:49] C:\Program Files\MSN
[30/07/2006|04:26] C:\Program Files\MSN Gaming Zone
[23/07/2007|08:26] C:\Program Files\MSXML 4.0
[02/01/2008|18:48] C:\Program Files\MSXML 6.0
[15/07/2008|23:49] C:\Program Files\Netintelligence Business
[28/09/2008|13:45] C:\Program Files\NetMeeting
[30/07/2006|04:26] C:\Program Files\Online Services
[28/09/2008|13:45] C:\Program Files\Outlook Express
[03/01/2008|15:08] C:\Program Files\Paint.NET
[03/01/2008|13:49] C:\Program Files\Photo Story 3 for Windows
[03/01/2008|13:51] C:\Program Files\QuickTime
[07/01/2008|16:20] C:\Program Files\Real
[30/07/2006|04:26] C:\Program Files\Realtek
[19/02/2008|17:21] C:\Program Files\ReflexiveArcade
[28/05/2008|23:38] C:\Program Files\Sewer Run
[07/01/2008|16:45] C:\Program Files\Sophos
[06/10/2008|21:43] C:\Program Files\Spybot - Search & Destroy
[04/01/2008|13:12] C:\Program Files\T-Mobile
[30/07/2006|04:27] C:\Program Files\Toshiba
[15/10/2008|11:59] C:\Program Files\Trend Micro
[23/07/2007|08:35] C:\Program Files\Uninstall Information
[09/05/2008|22:48] C:\Program Files\Windows Live
[09/05/2008|22:57] C:\Program Files\Windows Live Favorites
[09/05/2008|22:58] C:\Program Files\Windows Live Toolbar
[28/05/2008|22:08] C:\Program Files\Windows Media Connect 2
[28/09/2008|13:45] C:\Program Files\Windows Media Player
[28/09/2008|13:45] C:\Program Files\Windows NT
[23/07/2007|07:55] C:\Program Files\WindowsUpdate
[30/07/2006|04:27] C:\Program Files\xerox
--------------------\\ Listing Folders in C:\Program Files\Common Files
[22/03/2008|11:45] C:\Program Files\Common Files\Adobe
[02/01/2008|17:48] C:\Program Files\Common Files\Cisco Systems
[02/01/2008|17:06] C:\Program Files\Common Files\DESIGNER
[30/07/2006|04:17] C:\Program Files\Common Files\InstallShield
[30/07/2006|04:17] C:\Program Files\Common Files\Java
[02/01/2008|17:06] C:\Program Files\Common Files\L&H
[18/09/2008|21:31] C:\Program Files\Common Files\logishrd
[09/05/2008|22:54] C:\Program Files\Common Files\Microsoft Shared
[30/07/2006|04:19] C:\Program Files\Common Files\MSSoap
[30/07/2006|04:19] C:\Program Files\Common Files\ODBC
[07/01/2008|16:20] C:\Program Files\Common Files\Real
[30/07/2006|04:19] C:\Program Files\Common Files\Services
[30/07/2006|04:19] C:\Program Files\Common Files\SpeechEngines
[06/07/2008|20:21] C:\Program Files\Common Files\SWF Studio
[02/01/2008|17:00] C:\Program Files\Common Files\Symantec Shared
[28/09/2008|13:44] C:\Program Files\Common Files\System
[16/02/2008|20:49] C:\Program Files\Common Files\WindowsLiveInstaller
[07/01/2008|16:20] C:\Program Files\Common Files\xing shared
--------------------\\ Process
( 61 Processes )
IEXPLORE.EXE ~ [PID:208]
IEXPLORE.EXE ~ [PID:2544]
IEXPLORE.EXE ~ [PID:4484]
IEXPLORE.EXE ~ [PID:5316]
--------------------\\ Searching with S_Lop
No Lop folder found !
--------------------\\ Searching for Lop Files - Folders
C:\DOCUME~1\Student\APPLIC~1\armyfu~1
C:\DOCUME~1\Student\APPLIC~1\armyfu~1\1ACTIVELITEIDOL.exe
C:\DOCUME~1\Student\APPLIC~1\armyfu~1\ckslohsv.exe
C:\DOCUME~1\Student\APPLIC~1\armyfu~1\SURF LOCKS GPL.exe
C:\Program Files\armyfu~1
C:\DOCUME~1\Student\LOCALS~1\Temp\msgpl_3ec4.tmp
C:\DOCUME~1\Student\LOCALS~1\Temp\msgpl_be6d.tmp
C:\DOCUME~1\Student\Cookies\student@advertising[2].txt
C:\DOCUME~1\Student\Cookies\student@adopt.euroclick[2].txt
C:\WINDOWS\Tasks\AA03C404913C7B4C.job
--------------------\\ Searching within the Registry
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"platform axis"="C:\\DOCUME~1\\Student\\APPLIC~1\\ARMYFU~1\\SURF LOCKS GPL.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
--------------------\\ Checking the Hosts file
Hosts file CLEAN
--------------------\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-10-15 15:49:41
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 4
--------------------\\ Searching for other infections
No other infections found !
[F:8][D:134]-> C:\DOCUME~1\Student\LOCALS~1\Temp
[F:89][D:0]-> C:\DOCUME~1\Student\Cookies
[F:2109][D:10]-> C:\DOCUME~1\Student\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 15/10/2008|15:53 - Option : [1]
--------------------\\ Scan completed at 15:53:04