Infecte par autorun.inf
nicodetoulouse
Messages postés
127
Statut
Membre
-
nicodetoulouse -
nicodetoulouse -
Bonjour,
depuis quelques jours je suis infecté par un trojan coriace j'ai beau essayer les tutoriels mis en résolu mais rien n'y fait !!
j'aurais besoin d'aide
merci d'avance si un crack pouvais me sortir de ce bourbier
merci
depuis quelques jours je suis infecté par un trojan coriace j'ai beau essayer les tutoriels mis en résolu mais rien n'y fait !!
j'aurais besoin d'aide
merci d'avance si un crack pouvais me sortir de ce bourbier
merci
A voir également:
- Infecte par autorun.inf
- Alerte windows ordinateur infecté - Accueil - Arnaque
- L'ordinateur d'arthur a été infecté par un virus répertorié récemment. ✓ - Forum Antivirus
- L'ordinateur de mustapha a été infecté par un virus répertorié récemment ✓ - Forum Virus
- L'ordinateur de samantha a ete infecte par un virus - Forum Virus
- Infection par : ONLYPC Flow.co.in ✓ - Forum Virus
25 réponses
je n'avais pas encore ta réponse j'ai suivi dans l'ordre de ce qui apparaissait sur le forum !?
vraiment j'ai pas bu juré ^^
vraiment j'ai pas bu juré ^^
ComboFix 11-05-18.04 - nico 19/05/2011 20:50:13.1.2 - x86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.3326.2473 [GMT 2:00]
Lancé depuis: d:\documents and settings\nico\Bureau\nico.exe
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-04-19 au 2011-05-19 ))))))))))))))))))))))))))))))))))))
.
.
2011-05-19 09:38 . 2011-05-19 09:38 -------- d-----w- D:\Kill'em
2011-05-19 06:20 . 2011-05-19 06:20 -------- d-----w- d:\program files\Ad-Remover
2011-05-18 13:59 . 2011-05-18 14:20 -------- d-----w- D:\UsbFix
2011-05-07 07:46 . 2011-05-07 07:46 89048 ----a-w- d:\program files\Mozilla Firefox\libEGL.dll
2011-05-07 07:46 . 2011-05-07 07:46 781272 ----a-w- d:\program files\Mozilla Firefox\mozsqlite3.dll
2011-05-07 07:46 . 2011-05-07 07:46 465880 ----a-w- d:\program files\Mozilla Firefox\libGLESv2.dll
2011-05-07 07:46 . 2011-05-07 07:46 1874904 ----a-w- d:\program files\Mozilla Firefox\mozjs.dll
2011-05-07 07:46 . 2011-05-07 07:46 15832 ----a-w- d:\program files\Mozilla Firefox\mozalloc.dll
2011-05-07 07:46 . 2011-05-07 07:46 1974616 ----a-w- d:\program files\Mozilla Firefox\D3DCompiler_42.dll
2011-05-07 07:46 . 2011-05-07 07:46 1892184 ----a-w- d:\program files\Mozilla Firefox\d3dx9_42.dll
2011-05-07 07:46 . 2011-05-07 07:46 142296 ----a-w- d:\program files\Mozilla Firefox\components\browsercomps.dll
2011-05-03 07:53 . 2011-05-03 07:53 413696 ----a-w- d:\windows\system32\wrap_oal.dll
2011-05-03 07:53 . 2011-05-03 07:53 110592 ----a-w- d:\windows\system32\OpenAL32.dll
2011-04-29 12:59 . 2011-04-29 12:59 -------- d-----w- d:\documents and settings\nico\Local Settings\Application Data\AliensVsPredator
2011-04-29 12:14 . 2011-05-15 12:40 -------- d-----w- d:\program files\Aliens Vs Predator
2011-04-29 10:59 . 2008-07-11 00:28 50200 ----a-w- d:\windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
2011-04-29 10:59 . 2008-07-11 00:28 79896 ----a-w- d:\windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
2011-04-29 10:58 . 2011-04-29 10:58 -------- d-----w- d:\windows\system32\RsFx
2011-04-29 10:29 . 2011-04-29 10:58 -------- d-----w- d:\program files\Microsoft SQL Server
2011-04-29 10:29 . 2011-04-29 10:29 113280 ----a-w- d:\documents and settings\All Users\Application Data\Microsoft\VCExpress\9.0\1036\ResourceCache.dll
2011-04-29 10:28 . 2011-04-29 10:28 416 ----a-w- d:\documents and settings\All Users\Application Data\Microsoft\MSDN\9.0\1036\ResourceCache.dll
2011-04-29 10:26 . 2011-04-29 10:28 -------- d-----w- d:\program files\Microsoft Visual Studio 9.0
2011-04-29 10:26 . 2011-04-29 10:27 -------- d-----w- d:\program files\Fichiers communs\Merge Modules
2011-04-29 10:25 . 2011-04-29 10:25 -------- d-----w- d:\program files\Microsoft SDKs
2011-04-28 10:15 . 2010-06-02 02:55 74072 ----a-w- d:\windows\system32\XAPOFX1_5.dll
2011-04-28 10:15 . 2010-06-02 02:55 527192 ----a-w- d:\windows\system32\XAudio2_7.dll
2011-04-28 10:15 . 2010-06-02 02:55 239960 ----a-w- d:\windows\system32\xactengine3_7.dll
2011-04-28 10:15 . 2010-05-26 09:41 2106216 ----a-w- d:\windows\system32\D3DCompiler_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 1868128 ----a-w- d:\windows\system32\d3dcsx_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 470880 ----a-w- d:\windows\system32\d3dx10_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 248672 ----a-w- d:\windows\system32\d3dx11_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 1998168 ----a-w- d:\windows\system32\D3DX9_43.dll
2011-04-28 10:15 . 2010-02-04 08:01 74072 ----a-w- d:\windows\system32\XAPOFX1_4.dll
2011-04-28 10:15 . 2010-02-04 08:01 528216 ----a-w- d:\windows\system32\XAudio2_6.dll
2011-04-28 10:15 . 2010-02-04 08:01 238936 ----a-w- d:\windows\system32\xactengine3_6.dll
2011-04-28 10:15 . 2010-02-04 08:01 22360 ----a-w- d:\windows\system32\X3DAudio1_7.dll
2011-04-27 21:24 . 2011-04-27 21:24 -------- d-----w- d:\windows\95FC26FB19FD4A96BBB1B1062E8648F5.TMP
2011-04-21 11:04 . 2011-04-21 11:04 -------- d-----w- d:\program files\Codemasters
2011-04-20 13:55 . 2011-04-20 13:55 218688 ----a-w- d:\windows\system32\drivers\dtsoftbus01.sys
2011-04-20 13:54 . 2011-04-20 13:55 -------- d-----w- d:\documents and settings\nico\Application Data\DAEMON Tools Lite
2011-04-20 13:54 . 2011-04-20 13:54 -------- d-----w- d:\documents and settings\All Users\Application Data\DAEMON Tools Lite
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-19 16:58 . 2008-11-10 08:45 16608 ----a-w- d:\windows\gdrv.sys
2011-04-01 18:57 . 2010-07-19 18:47 137656 ----a-w- d:\windows\system32\drivers\avipbb.sys
2008-11-10 19:20 . 2008-11-10 19:20 278528 ----a-w- d:\program files\Fichiers communs\FDEUnInstaller.exe
2011-05-07 07:46 . 2011-05-07 07:46 142296 ----a-w- d:\program files\mozilla firefox\components\browsercomps.dll
2006-05-03 09:06 163328 --sha-r- d:\windows\system32\flvDX.dll
2007-02-21 10:47 31232 --sha-r- d:\windows\system32\msfDX.dll
2008-03-16 12:30 216064 --sha-r- d:\windows\system32\nbDX.dll
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}]
2010-07-19 16:32 165184 ----a-w- d:\program files\SFR\Kit\SFRNavErrorHelper.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\NBHShellExt]
@="{8D2223A2-B3C6-4e32-B096-CDD11F628C60}"
[HKEY_CLASSES_ROOT\CLSID\{8D2223A2-B3C6-4e32-B096-CDD11F628C60}]
2008-06-10 11:29 97064 ----a-w- d:\program files\Nero\Nero8\InCD\NBHShx.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Connexion SFR 9props.exe"="d:\program files\SFR\Kit\9props.exe" [2010-07-19 976192]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="d:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-08-17 281768]
"NvCplDaemon"="d:\windows\system32\NvCpl.dll" [2011-01-07 13880424]
"NvMediaCenter"="d:\windows\system32\NvMcTray.dll" [2011-01-07 111208]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="d:\windows\system32\tscupgrd.exe" [2004-08-05 44544]
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoRecentDocsNetHood"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sprestrt
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
m'|\ü [X]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-02-27 15:10 35696 ----a-w- d:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 10:43 69632 ----a-r- d:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner]
2008-10-23 18:34 1336560 ----a-w- d:\program files\CCleaner\CCleaner.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EasyTuneVI]
2007-07-26 13:05 20480 ----a-w- d:\program files\GIGABYTE\ET6\ETcall.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- d:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Recordpad]
2010-03-27 09:36 913412 ----a-w- d:\program files\NCH Swift Sound\Recordpad\recordpad.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2008-05-07 07:39 16862208 ----a-r- d:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-01-09 20:22 149280 ----a-w- d:\program files\Java\jre6\bin\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinSys2]
2008-07-17 02:10 208896 ----a-r- d:\windows\system32\WinSys2.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"d:\\WINDOWS\\system32\\PnkBstrA.exe"=
"d:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"d:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"d:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"d:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\GIGABYTE\\EnergySaver\\run.exe"=
"d:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"d:\\WINDOWS\\system32\\sessmgr.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\batman arkham asylum - demo\\Binaries\\ShippingPC-BmGame.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\left 4 dead 2 demo\\left4dead2.exe"=
"d:\\Program Files\\eMule\\emule.exe"=
"d:\\Program Files\\Fox\\Aliens vs. Predator 2\\lithtech.exe"=
"d:\\Program Files\\CAPCOM\\RESIDENT EVIL 5\\RE5DX9.EXE"=
"d:\\Program Files\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\nation red demo\\NationRed.exe"=
"d:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\Codemasters\\Damnation\\Binaries\\DamnGame.exe"=
"d:\\Program Files\\Steam\\SteamApps\\mamadi31\\counter-strike source\\hl2.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"6112:TCP"= 6112:TCP:WARCRAFTTCP
"6112:UDP"= 6112:UDP:WARCRAFTUDP
.
R0 xmasscsi;xmasscsi;d:\windows\system32\drivers\xmasscsi.sys [06/12/2008 16:46 5248]
R1 is-P3PFUdrv;is-P3PFUdrv;d:\windows\system32\drivers\90001970.sys [14/10/2009 12:49 148496]
R1 prodrv04;Star Force copy protection driver v4;d:\windows\system32\drivers\prodrv04.sys [03/01/2010 19:10 114496]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur;d:\program files\Avira\AntiVir Desktop\sched.exe [19/07/2010 20:47 136360]
R2 GEST Service;GEST Service for program management.;d:\program files\GIGABYTE\EnergySaver\GSvr.exe [10/11/2008 10:45 80392]
R2 NeroRegInCDSrv;Nero Registry InCD Service;d:\program files\Nero\Nero8\InCD\NBHRegInCDSrv.exe [10/06/2008 13:29 53032]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;d:\windows\system32\drivers\dtsoftbus01.sys [20/04/2011 15:55 218688]
R3 nvoclock;NVIDIA Enthusiasts Platform KDM;d:\windows\system32\drivers\nvoclock.sys [09/03/2009 12:25 38304]
S0 sptd;sptd;d:\windows\system32\drivers\sptd.sys [24/11/2008 10:59 717296]
S1 anf0100.sys;anf0100.sys;\??\d:\windows\system32\drivers\anf0100.sys --> d:\windows\system32\drivers\anf0100.sys [?]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;d:\windows\system32\Drivers\avgldx86.sys --> d:\windows\system32\Drivers\avgldx86.sys [?]
S1 AvgTdiX;AVG Free Network Redirector;d:\windows\system32\Drivers\avgtdix.sys --> d:\windows\system32\Drivers\avgtdix.sys [?]
S2 gupdate1ca046a6f826e06;Service Google Update (gupdate1ca046a6f826e06);d:\program files\Google\Update\GoogleUpdate.exe [14/07/2009 12:04 133104]
S3 gupdatem;Service Google Update (gupdatem);d:\program files\Google\Update\GoogleUpdate.exe [14/07/2009 12:04 133104]
S3 ProtoWall;ProtoWall Network Service;d:\windows\system32\DRIVERS\ProtoWall.sys --> d:\windows\system32\DRIVERS\ProtoWall.sys [?]
S3 ute0ndaw;AVZ Kernel Driver;d:\windows\system32\drivers\ute0ndaw.sys [14/10/2009 16:42 7168]
S4 MSSQLServerADHelper100;Service SQL Active Directory Helper;d:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [11/07/2008 02:28 47128]
S4 RsFx0102;RsFx0102 Driver;d:\windows\system32\drivers\RsFx0102.sys [10/07/2008 02:49 242712]
S4 SQLAgent$SQLEXPRESS;Agent SQL Server (SQLEXPRESS);d:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [11/07/2008 02:28 369688]
S4 xmasbus;xmasbus;d:\windows\system32\drivers\xmasbus.sys [06/12/2008 16:46 140800]
.
Contenu du dossier 'Tâches planifiées'
.
2011-05-19 d:\windows\Tasks\GoogleUpdateTaskMachineCore1cb6d4799c7eab4.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-07-14 10:04]
.
2011-05-19 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-07-14 10:04]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = 0 (0x0)
IE: E&xporter vers Microsoft Excel - d:\progra~1\Microsoft Office\Office12\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\nico\Application Data\Mozilla\Firefox\Profiles\9y6o6g76.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - about:home
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?babsrc=SP_ss&mntrId=08f8b730000000000000001fd026b688&tlver=1.4.19.19&instlRef=sst&ss=1&affID=18026&q=
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-05-19 20:54
Windows 5.1.2600 Service Pack 2 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600 Disk: HDT722516DLA380 rev.V43OA96A -> Harddisk2\DR2 -> \Device\Ide\IdeDeviceP3T1L0-19
.
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user != kernel MBR !!!
sectors 321670845 (+255): user != kernel
.
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_USERS\S-1-5-21-1801674531-329068152-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:57,a1,36,87,7a,18,af,b3,5b,7e,6e,8d,ce,b4,b5,9a,1f,38,0e,e2,17,40,4f,
60,b1,9b,d2,05,56,a8,c5,c3,cc,0b,dd,f0,ab,87,cd,9e,2a,61,a4,5c,e3,7d,f7,f7,\
"??"=hex:4a,59,7a,da,60,12,a0,b9,16,36,9b,cb,13,e3,e9,29
.
[HKEY_USERS\S-1-5-21-1801674531-329068152-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:a3,85,b0,2b,04,66,fb,4c,47,27,4e,b8,a3,a4,20,7a,5f,c7,b5,4b,d7,
82,ca,3f,6a,d5,1e,63,36,8c,4c,29,c3,79,9d,22,ec,58,4f,88,c6,95,76,00,77,ae,\
"rkeysecu"=hex:0e,70,b8,86,5b,91,7e,00,cd,de,f2,cf,1c,fb,bc,4d
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="d:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'explorer.exe'(30416)
d:\program files\Nero\Nero8\InCD\NBHShx.dll
d:\program files\Nero\Nero8\InCD\NBHStr.dll
d:\program files\Fichiers communs\Nero\Shared\NL3\AdvrCntr3.dll
d:\windows\system32\msi.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
Heure de fin: 2011-05-19 20:56:40
ComboFix-quarantined-files.txt 2011-05-19 18:56
.
Avant-CF: 42 257 022 976 octets libres
Après-CF: 42 237 108 224 octets libres
.
Current=9 Default=9 Failed=0 LastKnownGood=11 Sets=1,2,3,4,5,6,7,8,9,10,11
- - End Of File - - D8D512B4C844C14936DC1578D9979F55
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.3326.2473 [GMT 2:00]
Lancé depuis: d:\documents and settings\nico\Bureau\nico.exe
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-04-19 au 2011-05-19 ))))))))))))))))))))))))))))))))))))
.
.
2011-05-19 09:38 . 2011-05-19 09:38 -------- d-----w- D:\Kill'em
2011-05-19 06:20 . 2011-05-19 06:20 -------- d-----w- d:\program files\Ad-Remover
2011-05-18 13:59 . 2011-05-18 14:20 -------- d-----w- D:\UsbFix
2011-05-07 07:46 . 2011-05-07 07:46 89048 ----a-w- d:\program files\Mozilla Firefox\libEGL.dll
2011-05-07 07:46 . 2011-05-07 07:46 781272 ----a-w- d:\program files\Mozilla Firefox\mozsqlite3.dll
2011-05-07 07:46 . 2011-05-07 07:46 465880 ----a-w- d:\program files\Mozilla Firefox\libGLESv2.dll
2011-05-07 07:46 . 2011-05-07 07:46 1874904 ----a-w- d:\program files\Mozilla Firefox\mozjs.dll
2011-05-07 07:46 . 2011-05-07 07:46 15832 ----a-w- d:\program files\Mozilla Firefox\mozalloc.dll
2011-05-07 07:46 . 2011-05-07 07:46 1974616 ----a-w- d:\program files\Mozilla Firefox\D3DCompiler_42.dll
2011-05-07 07:46 . 2011-05-07 07:46 1892184 ----a-w- d:\program files\Mozilla Firefox\d3dx9_42.dll
2011-05-07 07:46 . 2011-05-07 07:46 142296 ----a-w- d:\program files\Mozilla Firefox\components\browsercomps.dll
2011-05-03 07:53 . 2011-05-03 07:53 413696 ----a-w- d:\windows\system32\wrap_oal.dll
2011-05-03 07:53 . 2011-05-03 07:53 110592 ----a-w- d:\windows\system32\OpenAL32.dll
2011-04-29 12:59 . 2011-04-29 12:59 -------- d-----w- d:\documents and settings\nico\Local Settings\Application Data\AliensVsPredator
2011-04-29 12:14 . 2011-05-15 12:40 -------- d-----w- d:\program files\Aliens Vs Predator
2011-04-29 10:59 . 2008-07-11 00:28 50200 ----a-w- d:\windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
2011-04-29 10:59 . 2008-07-11 00:28 79896 ----a-w- d:\windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
2011-04-29 10:58 . 2011-04-29 10:58 -------- d-----w- d:\windows\system32\RsFx
2011-04-29 10:29 . 2011-04-29 10:58 -------- d-----w- d:\program files\Microsoft SQL Server
2011-04-29 10:29 . 2011-04-29 10:29 113280 ----a-w- d:\documents and settings\All Users\Application Data\Microsoft\VCExpress\9.0\1036\ResourceCache.dll
2011-04-29 10:28 . 2011-04-29 10:28 416 ----a-w- d:\documents and settings\All Users\Application Data\Microsoft\MSDN\9.0\1036\ResourceCache.dll
2011-04-29 10:26 . 2011-04-29 10:28 -------- d-----w- d:\program files\Microsoft Visual Studio 9.0
2011-04-29 10:26 . 2011-04-29 10:27 -------- d-----w- d:\program files\Fichiers communs\Merge Modules
2011-04-29 10:25 . 2011-04-29 10:25 -------- d-----w- d:\program files\Microsoft SDKs
2011-04-28 10:15 . 2010-06-02 02:55 74072 ----a-w- d:\windows\system32\XAPOFX1_5.dll
2011-04-28 10:15 . 2010-06-02 02:55 527192 ----a-w- d:\windows\system32\XAudio2_7.dll
2011-04-28 10:15 . 2010-06-02 02:55 239960 ----a-w- d:\windows\system32\xactengine3_7.dll
2011-04-28 10:15 . 2010-05-26 09:41 2106216 ----a-w- d:\windows\system32\D3DCompiler_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 1868128 ----a-w- d:\windows\system32\d3dcsx_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 470880 ----a-w- d:\windows\system32\d3dx10_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 248672 ----a-w- d:\windows\system32\d3dx11_43.dll
2011-04-28 10:15 . 2010-05-26 09:41 1998168 ----a-w- d:\windows\system32\D3DX9_43.dll
2011-04-28 10:15 . 2010-02-04 08:01 74072 ----a-w- d:\windows\system32\XAPOFX1_4.dll
2011-04-28 10:15 . 2010-02-04 08:01 528216 ----a-w- d:\windows\system32\XAudio2_6.dll
2011-04-28 10:15 . 2010-02-04 08:01 238936 ----a-w- d:\windows\system32\xactengine3_6.dll
2011-04-28 10:15 . 2010-02-04 08:01 22360 ----a-w- d:\windows\system32\X3DAudio1_7.dll
2011-04-27 21:24 . 2011-04-27 21:24 -------- d-----w- d:\windows\95FC26FB19FD4A96BBB1B1062E8648F5.TMP
2011-04-21 11:04 . 2011-04-21 11:04 -------- d-----w- d:\program files\Codemasters
2011-04-20 13:55 . 2011-04-20 13:55 218688 ----a-w- d:\windows\system32\drivers\dtsoftbus01.sys
2011-04-20 13:54 . 2011-04-20 13:55 -------- d-----w- d:\documents and settings\nico\Application Data\DAEMON Tools Lite
2011-04-20 13:54 . 2011-04-20 13:54 -------- d-----w- d:\documents and settings\All Users\Application Data\DAEMON Tools Lite
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-19 16:58 . 2008-11-10 08:45 16608 ----a-w- d:\windows\gdrv.sys
2011-04-01 18:57 . 2010-07-19 18:47 137656 ----a-w- d:\windows\system32\drivers\avipbb.sys
2008-11-10 19:20 . 2008-11-10 19:20 278528 ----a-w- d:\program files\Fichiers communs\FDEUnInstaller.exe
2011-05-07 07:46 . 2011-05-07 07:46 142296 ----a-w- d:\program files\mozilla firefox\components\browsercomps.dll
2006-05-03 09:06 163328 --sha-r- d:\windows\system32\flvDX.dll
2007-02-21 10:47 31232 --sha-r- d:\windows\system32\msfDX.dll
2008-03-16 12:30 216064 --sha-r- d:\windows\system32\nbDX.dll
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}]
2010-07-19 16:32 165184 ----a-w- d:\program files\SFR\Kit\SFRNavErrorHelper.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\NBHShellExt]
@="{8D2223A2-B3C6-4e32-B096-CDD11F628C60}"
[HKEY_CLASSES_ROOT\CLSID\{8D2223A2-B3C6-4e32-B096-CDD11F628C60}]
2008-06-10 11:29 97064 ----a-w- d:\program files\Nero\Nero8\InCD\NBHShx.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Connexion SFR 9props.exe"="d:\program files\SFR\Kit\9props.exe" [2010-07-19 976192]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="d:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-08-17 281768]
"NvCplDaemon"="d:\windows\system32\NvCpl.dll" [2011-01-07 13880424]
"NvMediaCenter"="d:\windows\system32\NvMcTray.dll" [2011-01-07 111208]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="d:\windows\system32\tscupgrd.exe" [2004-08-05 44544]
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoRecentDocsNetHood"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sprestrt
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST]
m'|\ü [X]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-02-27 15:10 35696 ----a-w- d:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
2005-05-03 10:43 69632 ----a-r- d:\windows\Alcmtr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner]
2008-10-23 18:34 1336560 ----a-w- d:\program files\CCleaner\CCleaner.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EasyTuneVI]
2007-07-26 13:05 20480 ----a-w- d:\program files\GIGABYTE\ET6\ETcall.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- d:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Recordpad]
2010-03-27 09:36 913412 ----a-w- d:\program files\NCH Swift Sound\Recordpad\recordpad.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2008-05-07 07:39 16862208 ----a-r- d:\windows\RTHDCPL.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-01-09 20:22 149280 ----a-w- d:\program files\Java\jre6\bin\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinSys2]
2008-07-17 02:10 208896 ----a-r- d:\windows\system32\WinSys2.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"d:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"d:\\WINDOWS\\system32\\PnkBstrA.exe"=
"d:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"d:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"d:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"d:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\Program Files\\Electronic Arts\\EADM\\Core.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\GIGABYTE\\EnergySaver\\run.exe"=
"d:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"d:\\WINDOWS\\system32\\sessmgr.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\batman arkham asylum - demo\\Binaries\\ShippingPC-BmGame.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\left 4 dead 2 demo\\left4dead2.exe"=
"d:\\Program Files\\eMule\\emule.exe"=
"d:\\Program Files\\Fox\\Aliens vs. Predator 2\\lithtech.exe"=
"d:\\Program Files\\CAPCOM\\RESIDENT EVIL 5\\RE5DX9.EXE"=
"d:\\Program Files\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"d:\\Program Files\\Steam\\SteamApps\\common\\nation red demo\\NationRed.exe"=
"d:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\Codemasters\\Damnation\\Binaries\\DamnGame.exe"=
"d:\\Program Files\\Steam\\SteamApps\\mamadi31\\counter-strike source\\hl2.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"6112:TCP"= 6112:TCP:WARCRAFTTCP
"6112:UDP"= 6112:UDP:WARCRAFTUDP
.
R0 xmasscsi;xmasscsi;d:\windows\system32\drivers\xmasscsi.sys [06/12/2008 16:46 5248]
R1 is-P3PFUdrv;is-P3PFUdrv;d:\windows\system32\drivers\90001970.sys [14/10/2009 12:49 148496]
R1 prodrv04;Star Force copy protection driver v4;d:\windows\system32\drivers\prodrv04.sys [03/01/2010 19:10 114496]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur;d:\program files\Avira\AntiVir Desktop\sched.exe [19/07/2010 20:47 136360]
R2 GEST Service;GEST Service for program management.;d:\program files\GIGABYTE\EnergySaver\GSvr.exe [10/11/2008 10:45 80392]
R2 NeroRegInCDSrv;Nero Registry InCD Service;d:\program files\Nero\Nero8\InCD\NBHRegInCDSrv.exe [10/06/2008 13:29 53032]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;d:\windows\system32\drivers\dtsoftbus01.sys [20/04/2011 15:55 218688]
R3 nvoclock;NVIDIA Enthusiasts Platform KDM;d:\windows\system32\drivers\nvoclock.sys [09/03/2009 12:25 38304]
S0 sptd;sptd;d:\windows\system32\drivers\sptd.sys [24/11/2008 10:59 717296]
S1 anf0100.sys;anf0100.sys;\??\d:\windows\system32\drivers\anf0100.sys --> d:\windows\system32\drivers\anf0100.sys [?]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;d:\windows\system32\Drivers\avgldx86.sys --> d:\windows\system32\Drivers\avgldx86.sys [?]
S1 AvgTdiX;AVG Free Network Redirector;d:\windows\system32\Drivers\avgtdix.sys --> d:\windows\system32\Drivers\avgtdix.sys [?]
S2 gupdate1ca046a6f826e06;Service Google Update (gupdate1ca046a6f826e06);d:\program files\Google\Update\GoogleUpdate.exe [14/07/2009 12:04 133104]
S3 gupdatem;Service Google Update (gupdatem);d:\program files\Google\Update\GoogleUpdate.exe [14/07/2009 12:04 133104]
S3 ProtoWall;ProtoWall Network Service;d:\windows\system32\DRIVERS\ProtoWall.sys --> d:\windows\system32\DRIVERS\ProtoWall.sys [?]
S3 ute0ndaw;AVZ Kernel Driver;d:\windows\system32\drivers\ute0ndaw.sys [14/10/2009 16:42 7168]
S4 MSSQLServerADHelper100;Service SQL Active Directory Helper;d:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [11/07/2008 02:28 47128]
S4 RsFx0102;RsFx0102 Driver;d:\windows\system32\drivers\RsFx0102.sys [10/07/2008 02:49 242712]
S4 SQLAgent$SQLEXPRESS;Agent SQL Server (SQLEXPRESS);d:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [11/07/2008 02:28 369688]
S4 xmasbus;xmasbus;d:\windows\system32\drivers\xmasbus.sys [06/12/2008 16:46 140800]
.
Contenu du dossier 'Tâches planifiées'
.
2011-05-19 d:\windows\Tasks\GoogleUpdateTaskMachineCore1cb6d4799c7eab4.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-07-14 10:04]
.
2011-05-19 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-07-14 10:04]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = 0 (0x0)
IE: E&xporter vers Microsoft Excel - d:\progra~1\Microsoft Office\Office12\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\nico\Application Data\Mozilla\Firefox\Profiles\9y6o6g76.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - about:home
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?babsrc=SP_ss&mntrId=08f8b730000000000000001fd026b688&tlver=1.4.19.19&instlRef=sst&ss=1&affID=18026&q=
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-05-19 20:54
Windows 5.1.2600 Service Pack 2 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600 Disk: HDT722516DLA380 rev.V43OA96A -> Harddisk2\DR2 -> \Device\Ide\IdeDeviceP3T1L0-19
.
device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user != kernel MBR !!!
sectors 321670845 (+255): user != kernel
.
**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_USERS\S-1-5-21-1801674531-329068152-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:57,a1,36,87,7a,18,af,b3,5b,7e,6e,8d,ce,b4,b5,9a,1f,38,0e,e2,17,40,4f,
60,b1,9b,d2,05,56,a8,c5,c3,cc,0b,dd,f0,ab,87,cd,9e,2a,61,a4,5c,e3,7d,f7,f7,\
"??"=hex:4a,59,7a,da,60,12,a0,b9,16,36,9b,cb,13,e3,e9,29
.
[HKEY_USERS\S-1-5-21-1801674531-329068152-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:a3,85,b0,2b,04,66,fb,4c,47,27,4e,b8,a3,a4,20,7a,5f,c7,b5,4b,d7,
82,ca,3f,6a,d5,1e,63,36,8c,4c,29,c3,79,9d,22,ec,58,4f,88,c6,95,76,00,77,ae,\
"rkeysecu"=hex:0e,70,b8,86,5b,91,7e,00,cd,de,f2,cf,1c,fb,bc,4d
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="d:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'explorer.exe'(30416)
d:\program files\Nero\Nero8\InCD\NBHShx.dll
d:\program files\Nero\Nero8\InCD\NBHStr.dll
d:\program files\Fichiers communs\Nero\Shared\NL3\AdvrCntr3.dll
d:\windows\system32\msi.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
Heure de fin: 2011-05-19 20:56:40
ComboFix-quarantined-files.txt 2011-05-19 18:56
.
Avant-CF: 42 257 022 976 octets libres
Après-CF: 42 237 108 224 octets libres
.
Current=9 Default=9 Failed=0 LastKnownGood=11 Sets=1,2,3,4,5,6,7,8,9,10,11
- - End Of File - - D8D512B4C844C14936DC1578D9979F55
je tiens plus debout je vais me coucher a demain
merci encore pour ton aide précieuse
toute ma vie informatique risque de sombrer à cause de mon insouciance et d'un hacker motivé pour tester sa nouvelle trouvaille sur....mon ordi snif
je lui offrirait bien une bierre pour qu'il me foute la paix lol
j'suis un mec sympa je crois ^^
à demain
nicodetoulouse
merci encore pour ton aide précieuse
toute ma vie informatique risque de sombrer à cause de mon insouciance et d'un hacker motivé pour tester sa nouvelle trouvaille sur....mon ordi snif
je lui offrirait bien une bierre pour qu'il me foute la paix lol
j'suis un mec sympa je crois ^^
à demain
nicodetoulouse
Bonjour,
hier soir il démarrait correctement, il me reste à virer le win pouri
tu ne m'a pas dit si le virus était dégagé et si il fallait que je désinfecte les disques durs externes qui ont tous un dossier autorun.inf donc vérolés si j'ai bien compris
merci pour ton aide
si je peu t'être utile, que tu a besoin de dormir sur toulouse par ex sans aucune arrière pensée pour te remercier
Nicodetoulouse
hier soir il démarrait correctement, il me reste à virer le win pouri
tu ne m'a pas dit si le virus était dégagé et si il fallait que je désinfecte les disques durs externes qui ont tous un dossier autorun.inf donc vérolés si j'ai bien compris
merci pour ton aide
si je peu t'être utile, que tu a besoin de dormir sur toulouse par ex sans aucune arrière pensée pour te remercier
Nicodetoulouse
regarde plus haut :) :
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
D:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
H:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
D:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
H:\Autorun.inf -> Vaccin créé par UsbFix (TeamXscript)
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question