Virus Winxp... encore un
Résolu/Fermé
JakinBoaz09
-
2 mars 2012 à 00:40
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 - 2 mars 2012 à 03:33
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 - 2 mars 2012 à 03:33
A voir également:
- Virus Winxp... encore un
- Virus mcafee - Accueil - Piratage
- Youtu.be virus - Accueil - Guide virus
- Virus facebook demande d'amis - Accueil - Facebook
- Faux message virus ordinateur - Accueil - Arnaque
- Altruistic virus ✓ - Forum Antivirus
33 réponses
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 00:51
2 mars 2012 à 00:51
Bonjour,
--> https://forums.commentcamarche.net/forum/affich-37636394-desinfecter-une-cle-usb-ou-un-disque-amovible#usbfix
Poste le rapport d'UsbFix.
--> https://forums.commentcamarche.net/forum/affich-37636394-desinfecter-une-cle-usb-ou-un-disque-amovible#usbfix
Poste le rapport d'UsbFix.
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 01:01
2 mars 2012 à 01:01
Oui je sais mais tu as utilisé HijackThis et j'ai demandé UsbFix.
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 01:19
2 mars 2012 à 01:19
De quoi tu parles ?
oulah desolé, il est tard GSM n a rien avoir la dedans
Par contre le PC dit que je n ai pas le usbFix.exe, recu ni evaluer.
Cedric
Par contre le PC dit que je n ai pas le usbFix.exe, recu ni evaluer.
Cedric
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 01:20
2 mars 2012 à 01:20
Tu n'arrives pas à le télécharger ?
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 01:26
2 mars 2012 à 01:26
HijackThis, tu as réussi à le télécharger pourtant, qu'est-ce qui se passe ?
et
C:\WINDOWS\System32\smss.exe (1492)
C:\WINDOWS\system32\winlogon.exe (1632)
C:\WINDOWS\system32\services.exe (1676)
C:\WINDOWS\system32\lsass.exe (1688)
C:\WINDOWS\system32\svchost.exe (1876)
C:\WINDOWS\system32\svchost.exe (484)
C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
C:\WINDOWS\System32\bcmwltry.exe (1464)
C:\WINDOWS\system32\spoolsv.exe (1536)
c:\windows\drivers\audio0\stacsv.exe (1580)
C:\Program Files\Altiris\AClient\AClient.exe (960)
C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
C:\WINDOWS\system32\ccsrvc.exe (1308)
C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
C:\WINDOWS\System32\svchost.exe (1392)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
c:\Program Files\Java\jre6\bin\jqs.exe (1048)
C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
C:\WINDOWS\system32\svchost.exe (2372)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
C:\WINDOWS\system32\SearchIndexer.exe (3780)
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
C:\WINDOWS\Explorer.EXE (3836)
C:\WINDOWS\system32\hkcmd.exe (3588)
C:\WINDOWS\system32\igfxpers.exe (1956)
C:\WINDOWS\system32\wscript.exe (2272)
C:\Program Files\DellTPad\Apoint.exe (2432)
C:\Program Files\IDT\WDM\sttray.exe (3580)
C:\WINDOWS\system32\AESTFltr.exe (3652)
C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
C:\Program Files\DellTPad\HidFind.exe (2540)
C:\Program Files\DellTPad\Apntex.exe (2668)
C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
C:\WINDOWS\system32\WLTRAY.exe (2772)
C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
C:\WINDOWS\bginfo.exe (3356)
C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
C:\WINDOWS\system32\wscript.exe (3320)
C:\WINDOWS\system32\ctfmon.exe (3484)
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
C:\Program Files\McAfee\Common Framework\McTray.exe (840)
C:\Program Files\Messenger\msmsgs.exe (2584)
C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
C:\Program Files\Skype\Phone\Skype.exe (4292)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
C:\WINDOWS\system32\msiexec.exe (4756)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2476)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (6100)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2420)
C:\Program Files\Internet Explorer\iexplore.exe (2952)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2360)
C:\WINDOWS\system32\wscript.exe (4732)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4880)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2296)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2768)
C:\WINDOWS\system32\wscript.exe (1840)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1448)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5368)
C:\UsbFix\Go.exe (5932)
################## | Files # Infected Folders |
Found ! C:\WINDOWS\system32\winjpg.jpg
Found ! C:\autorun.inf
Found ! D:\autorun.inf
C:\WINDOWS\System32\smss.exe (1492)
C:\WINDOWS\system32\winlogon.exe (1632)
C:\WINDOWS\system32\services.exe (1676)
C:\WINDOWS\system32\lsass.exe (1688)
C:\WINDOWS\system32\svchost.exe (1876)
C:\WINDOWS\system32\svchost.exe (484)
C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
C:\WINDOWS\System32\bcmwltry.exe (1464)
C:\WINDOWS\system32\spoolsv.exe (1536)
c:\windows\drivers\audio0\stacsv.exe (1580)
C:\Program Files\Altiris\AClient\AClient.exe (960)
C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
C:\WINDOWS\system32\ccsrvc.exe (1308)
C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
C:\WINDOWS\System32\svchost.exe (1392)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
c:\Program Files\Java\jre6\bin\jqs.exe (1048)
C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
C:\WINDOWS\system32\svchost.exe (2372)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
C:\WINDOWS\system32\SearchIndexer.exe (3780)
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
C:\WINDOWS\Explorer.EXE (3836)
C:\WINDOWS\system32\hkcmd.exe (3588)
C:\WINDOWS\system32\igfxpers.exe (1956)
C:\WINDOWS\system32\wscript.exe (2272)
C:\Program Files\DellTPad\Apoint.exe (2432)
C:\Program Files\IDT\WDM\sttray.exe (3580)
C:\WINDOWS\system32\AESTFltr.exe (3652)
C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
C:\Program Files\DellTPad\HidFind.exe (2540)
C:\Program Files\DellTPad\Apntex.exe (2668)
C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
C:\WINDOWS\system32\WLTRAY.exe (2772)
C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
C:\WINDOWS\bginfo.exe (3356)
C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
C:\WINDOWS\system32\wscript.exe (3320)
C:\WINDOWS\system32\ctfmon.exe (3484)
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
C:\Program Files\McAfee\Common Framework\McTray.exe (840)
C:\Program Files\Messenger\msmsgs.exe (2584)
C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
C:\Program Files\Skype\Phone\Skype.exe (4292)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
C:\WINDOWS\system32\msiexec.exe (4756)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2476)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (6100)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2420)
C:\Program Files\Internet Explorer\iexplore.exe (2952)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2360)
C:\WINDOWS\system32\wscript.exe (4732)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4880)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2296)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2768)
C:\WINDOWS\system32\wscript.exe (1840)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1448)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5368)
C:\UsbFix\Go.exe (5932)
################## | Files # Infected Folders |
Found ! C:\WINDOWS\system32\winjpg.jpg
Found ! C:\autorun.inf
Found ! D:\autorun.inf
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 02:14
2 mars 2012 à 02:14
Il est incomplet.
la suite
################## | Registry |
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drwtsn32.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dwwinxp.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSConfig.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\procexp.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Found ! HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore|DisableSR
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|forceclassiccontrolpanel
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRecentDocsMenu
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoResolveSearch
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRun
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoSMHelp
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|CTFMON
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|regdiit
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\{44ded6d0-6092-11e1-b8bd-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Wscript.exe /e:vbs photo-v2.jpg
HKCU\.\.\.\.\Explorer\MountPoints2\{a13ad858-6358-11e0-b6af-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{ad54e924-6228-11e1-b8c5-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL
HKCU\.\.\.\.\Explorer\MountPoints2\{c5e24315-62a9-11e1-b8c7-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Wscript.exe /e:vbs photo-v2.jpg
HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5b-4896-11e0-b65c-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5f-4896-11e0-b65c-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{fd796f20-0c4b-11e1-b815-5c260a3cc333}
Shell\AutoRun\Command = G:\Samsung_Drive_Manager.exe
################## | Vaccin |
(!) This computer is not vaccinated!
################## | E.O.F |
################## | Registry |
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drwtsn32.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dwwinxp.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSConfig.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\procexp.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe
Found ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Found ! HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore|DisableSR
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|forceclassiccontrolpanel
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRecentDocsMenu
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoResolveSearch
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRun
Found ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoSMHelp
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|CTFMON
Found ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|regdiit
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\{44ded6d0-6092-11e1-b8bd-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Wscript.exe /e:vbs photo-v2.jpg
HKCU\.\.\.\.\Explorer\MountPoints2\{a13ad858-6358-11e0-b6af-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{ad54e924-6228-11e1-b8c5-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL
HKCU\.\.\.\.\Explorer\MountPoints2\{c5e24315-62a9-11e1-b8c7-5c260a3cc333}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Wscript.exe /e:vbs photo-v2.jpg
HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5b-4896-11e0-b65c-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5f-4896-11e0-b65c-5c260a3cc333}
Shell\AutoRun\Command = F:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{fd796f20-0c4b-11e1-b815-5c260a3cc333}
Shell\AutoRun\Command = G:\Samsung_Drive_Manager.exe
################## | Vaccin |
(!) This computer is not vaccinated!
################## | E.O.F |
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 02:23
2 mars 2012 à 02:23
--> Relance UsbFix, choisis l'option "Suppression" et poste le rapport.
et hop partie 1
PC: Dell Inc. (Latitude E4310) (X86-based PC) # Notebook
CPU: Intel Pentium II processor (2659)
RAM -> [ Total : 3510 | Free : 2309 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ (!) Disabled ]
WU: Windows Update Service [ (!) Disabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ -> Fixed drive # 40 Gb (19 Mb free - 49%) [SYSTEM] # NTFS
D:\ (%systemdrive%) -> Fixed drive # 193 Gb (131 Mb free - 68%) [DATA] # NTFS
E:\ -> CD-ROM
################## | Active Processes |
C:\WINDOWS\System32\smss.exe (1492)
C:\WINDOWS\system32\winlogon.exe (1632)
C:\WINDOWS\system32\services.exe (1676)
C:\WINDOWS\system32\lsass.exe (1688)
C:\WINDOWS\system32\svchost.exe (1876)
C:\WINDOWS\system32\svchost.exe (484)
C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
C:\WINDOWS\System32\bcmwltry.exe (1464)
C:\WINDOWS\system32\spoolsv.exe (1536)
c:\windows\drivers\audio0\stacsv.exe (1580)
C:\Program Files\Altiris\AClient\AClient.exe (960)
C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
C:\WINDOWS\system32\ccsrvc.exe (1308)
C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
C:\WINDOWS\System32\svchost.exe (1392)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
c:\Program Files\Java\jre6\bin\jqs.exe (1048)
C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
C:\WINDOWS\system32\svchost.exe (2372)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
C:\WINDOWS\system32\SearchIndexer.exe (3780)
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
C:\WINDOWS\Explorer.EXE (3836)
C:\WINDOWS\system32\hkcmd.exe (3588)
C:\WINDOWS\system32\igfxpers.exe (1956)
C:\WINDOWS\system32\wscript.exe (2272)
C:\Program Files\DellTPad\Apoint.exe (2432)
C:\Program Files\IDT\WDM\sttray.exe (3580)
C:\WINDOWS\system32\AESTFltr.exe (3652)
C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
C:\Program Files\DellTPad\HidFind.exe (2540)
C:\Program Files\DellTPad\Apntex.exe (2668)
C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
C:\WINDOWS\system32\WLTRAY.exe (2772)
C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
C:\WINDOWS\bginfo.exe (3356)
C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
C:\WINDOWS\system32\wscript.exe (3320)
C:\WINDOWS\system32\ctfmon.exe (3484)
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
C:\Program Files\McAfee\Common Framework\McTray.exe (840)
C:\Program Files\Messenger\msmsgs.exe (2584)
C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
C:\Program Files\Skype\Phone\Skype.exe (4292)
PC: Dell Inc. (Latitude E4310) (X86-based PC) # Notebook
CPU: Intel Pentium II processor (2659)
RAM -> [ Total : 3510 | Free : 2309 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ (!) Disabled ]
WU: Windows Update Service [ (!) Disabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ -> Fixed drive # 40 Gb (19 Mb free - 49%) [SYSTEM] # NTFS
D:\ (%systemdrive%) -> Fixed drive # 193 Gb (131 Mb free - 68%) [DATA] # NTFS
E:\ -> CD-ROM
################## | Active Processes |
C:\WINDOWS\System32\smss.exe (1492)
C:\WINDOWS\system32\winlogon.exe (1632)
C:\WINDOWS\system32\services.exe (1676)
C:\WINDOWS\system32\lsass.exe (1688)
C:\WINDOWS\system32\svchost.exe (1876)
C:\WINDOWS\system32\svchost.exe (484)
C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
C:\WINDOWS\System32\bcmwltry.exe (1464)
C:\WINDOWS\system32\spoolsv.exe (1536)
c:\windows\drivers\audio0\stacsv.exe (1580)
C:\Program Files\Altiris\AClient\AClient.exe (960)
C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
C:\WINDOWS\system32\ccsrvc.exe (1308)
C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
C:\WINDOWS\System32\svchost.exe (1392)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
c:\Program Files\Java\jre6\bin\jqs.exe (1048)
C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
C:\WINDOWS\system32\svchost.exe (2372)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
C:\WINDOWS\system32\SearchIndexer.exe (3780)
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
C:\WINDOWS\Explorer.EXE (3836)
C:\WINDOWS\system32\hkcmd.exe (3588)
C:\WINDOWS\system32\igfxpers.exe (1956)
C:\WINDOWS\system32\wscript.exe (2272)
C:\Program Files\DellTPad\Apoint.exe (2432)
C:\Program Files\IDT\WDM\sttray.exe (3580)
C:\WINDOWS\system32\AESTFltr.exe (3652)
C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
C:\Program Files\DellTPad\HidFind.exe (2540)
C:\Program Files\DellTPad\Apntex.exe (2668)
C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
C:\WINDOWS\system32\WLTRAY.exe (2772)
C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
C:\WINDOWS\bginfo.exe (3356)
C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
C:\WINDOWS\system32\wscript.exe (3320)
C:\WINDOWS\system32\ctfmon.exe (3484)
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
C:\Program Files\McAfee\Common Framework\McTray.exe (840)
C:\Program Files\Messenger\msmsgs.exe (2584)
C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
C:\Program Files\Skype\Phone\Skype.exe (4292)
partie 2
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
C:\Program Files\Internet Explorer\iexplore.exe (2952)
C:\WINDOWS\system32\wscript.exe (4732)
C:\WINDOWS\system32\wscript.exe (1840)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2380)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2032)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4480)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2240)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4368)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1920)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4080)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5348)
C:\UsbFix\Go.exe (4512)
################## | Stopped processes |
Stopped! C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
Stopped! C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
Stopped! C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
Stopped! C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
Stopped! C:\WINDOWS\System32\bcmwltry.exe (1464)
Stopped! C:\WINDOWS\system32\spoolsv.exe (1536)
Stopped! c:\windows\drivers\audio0\stacsv.exe (1580)
Stopped! C:\Program Files\Altiris\AClient\AClient.exe (960)
Stopped! C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
Stopped! C:\WINDOWS\system32\ccsrvc.exe (1308)
Stopped! C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
Stopped! C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
Stopped! c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
Stopped! c:\Program Files\Java\jre6\bin\jqs.exe (1048)
Stopped! C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
Stopped! C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
Stopped! C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
Stopped! C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
Stopped! C:\WINDOWS\system32\SearchIndexer.exe (3780)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
Stopped! C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
Stopped! C:\WINDOWS\system32\hkcmd.exe (3588)
Stopped! C:\WINDOWS\system32\igfxpers.exe (1956)
Stopped! C:\WINDOWS\system32\wscript.exe (2272)
Stopped! C:\Program Files\DellTPad\Apoint.exe (2432)
Stopped! C:\Program Files\IDT\WDM\sttray.exe (3580)
Stopped! C:\WINDOWS\system32\AESTFltr.exe (3652)
Stopped! C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
Stopped! C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
Stopped! C:\Program Files\DellTPad\HidFind.exe (2540)
Stopped! C:\Program Files\DellTPad\Apntex.exe (2668)
Stopped! C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
Stopped! C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
Stopped! C:\WINDOWS\system32\WLTRAY.exe (2772)
Stopped! C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
Stopped! C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
Stopped! C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
Stopped! C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
Stopped! C:\WINDOWS\bginfo.exe (3356)
Stopped! C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
Stopped! C:\WINDOWS\system32\wscript.exe (3320)
Stopped! C:\WINDOWS\system32\ctfmon.exe (3484)
Stopped! C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
Stopped! C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
Stopped! C:\Program Files\McAfee\Common Framework\McTray.exe (840)
Stopped! C:\Program Files\Messenger\msmsgs.exe (2584)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
Stopped! C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
Stopped! C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
Stopped! C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
Stopped! C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
Stopped! C:\Program Files\Skype\Phone\Skype.exe (4292)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
Stopped! C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
Stopped! D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
Stopped! D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
Stopped! C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
Stopped! c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
Stopped! C:\Program Files\Internet Explorer\iexplore.exe (2952)
Stopped! C:\WINDOWS\system32\wscript.exe (4732)
Stopped! C:\WINDOWS\system32\wscript.exe (1840)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2380)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2032)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4480)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2240)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4368)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1920)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4080)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5348)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
C:\Program Files\Internet Explorer\iexplore.exe (2952)
C:\WINDOWS\system32\wscript.exe (4732)
C:\WINDOWS\system32\wscript.exe (1840)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2380)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2032)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4480)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2240)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4368)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1920)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4080)
D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5348)
C:\UsbFix\Go.exe (4512)
################## | Stopped processes |
Stopped! C:\Program Files\Common Files\Juniper Networks\JUNS\dsAccessService.exe (724)
Stopped! C:\Program Files\Common Files\Juniper Networks\TNC Client\jTnccService.exe (788)
Stopped! C:\Program Files\Juniper Networks\Odyssey Access Client\odClientService.exe (1032)
Stopped! C:\WINDOWS\System32\WLTRYSVC.EXE (1452)
Stopped! C:\WINDOWS\System32\bcmwltry.exe (1464)
Stopped! C:\WINDOWS\system32\spoolsv.exe (1536)
Stopped! c:\windows\drivers\audio0\stacsv.exe (1580)
Stopped! C:\Program Files\Altiris\AClient\AClient.exe (960)
Stopped! C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe (1108)
Stopped! C:\WINDOWS\system32\ccsrvc.exe (1308)
Stopped! C:\Program Files\Altiris\Carbon Copy\shellker.exe (1332)
Stopped! C:\Program Files\Juniper Networks\Common Files\dsNcService.exe (1348)
Stopped! c:\program files\iPass\iPassConnect\iPassPeriodicUpdateService.exe (872)
Stopped! c:\Program Files\Java\jre6\bin\jqs.exe (1048)
Stopped! C:\Program Files\McAfee\Common Framework\FrameworkService.exe (1952)
Stopped! C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe (632)
Stopped! C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe (1408)
Stopped! C:\Program Files\Refresh IT Solutions\Refresh Distributor\RefreshDistributorAgent.exe (2276)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe (3432)
Stopped! C:\WINDOWS\system32\SearchIndexer.exe (3780)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (2084)
Stopped! C:\PROGRA~1\Altiris\CARBON~1\client.exe (2680)
Stopped! C:\WINDOWS\system32\hkcmd.exe (3588)
Stopped! C:\WINDOWS\system32\igfxpers.exe (1956)
Stopped! C:\WINDOWS\system32\wscript.exe (2272)
Stopped! C:\Program Files\DellTPad\Apoint.exe (2432)
Stopped! C:\Program Files\IDT\WDM\sttray.exe (3580)
Stopped! C:\WINDOWS\system32\AESTFltr.exe (3652)
Stopped! C:\Program Files\Altiris\AClient\AClntUsr.EXE (1208)
Stopped! C:\Program Files\DellTPad\ApMsgFwd.exe (2072)
Stopped! C:\Program Files\DellTPad\HidFind.exe (2540)
Stopped! C:\Program Files\DellTPad\Apntex.exe (2668)
Stopped! C:\Program Files\Common Files\Aladdin Shared\eToken\PKIClient\x32\PKIMonitor.exe (2960)
Stopped! C:\Program Files\Juniper Networks\Odyssey Access Client\OdTray.exe (2972)
Stopped! C:\WINDOWS\system32\WLTRAY.exe (2772)
Stopped! C:\Program Files\Altiris\Altiris Agent\AeXAgentUIHost.exe (2840)
Stopped! C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (3760)
Stopped! C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (260)
Stopped! C:\Program Files\Iminent\IMBooster\imbooster.exe (2760)
Stopped! C:\WINDOWS\bginfo.exe (3356)
Stopped! C:\Program Files\McAfee\Common Framework\udaterui.exe (3312)
Stopped! C:\WINDOWS\system32\wscript.exe (3320)
Stopped! C:\WINDOWS\system32\ctfmon.exe (3484)
Stopped! C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (3520)
Stopped! C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe (2252)
Stopped! C:\Program Files\McAfee\Common Framework\McTray.exe (840)
Stopped! C:\Program Files\Messenger\msmsgs.exe (2584)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\Drive Manager.exe (3020)
Stopped! C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (1160)
Stopped! C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (524)
Stopped! C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (1984)
Stopped! C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe (1668)
Stopped! C:\Program Files\Skype\Phone\Skype.exe (4292)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (4304)
Stopped! C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe (4316)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\SZDrvMon.exe (4396)
Stopped! D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwjd.exe (4448)
Stopped! D:\Documents and Settings\All Users\Application Data\HP Mouse Suite Config\hpwmsd.exe (4536)
Stopped! C:\Program Files\Clarus\Samsung Drive Manager\ABRTMon.exe (4608)
Stopped! C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE (5076)
Stopped! c:\program files\iPass\iPassConnect\iPassPeriodicUpdateApp.exe (2208)
Stopped! C:\Program Files\Internet Explorer\iexplore.exe (2952)
Stopped! C:\WINDOWS\system32\wscript.exe (4732)
Stopped! C:\WINDOWS\system32\wscript.exe (1840)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2380)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2032)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4480)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2240)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4368)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1920)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (4080)
Stopped! D:\Documents and Settings\ccollet\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (5348)
partie 3
################## | Files # Infected Folders |
Deleted ! C:\WINDOWS\system32\winjpg.jpg
Deleted ! C:\Recycler\S-1-5-18
Deleted ! C:\Recycler\S-1-5-21-329068152-630328440-1801674531-500
Deleted ! C:\Recycler\S-1-5-21-583907252-2052111302-839522115-156361
Deleted ! D:\Recycler\S-1-5-18
Deleted ! D:\Recycler\S-1-5-21-329068152-630328440-1801674531-500
Deleted ! D:\Recycler\S-1-5-21-583907252-2052111302-839522115-156361
Deleted ! C:\autorun.inf
Deleted ! D:\autorun.inf
(!) Temporary files deleted.
################## | Registry |
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drwtsn32.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dwwinxp.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSConfig.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\procexp.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
Not deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Not deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Deleted ! HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore|DisableSR
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|forceclassiccontrolpanel
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRecentDocsMenu
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoResolveSearch
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRun
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoSMHelp
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|CTFMON
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|regdiit
################## | Mountpoints2 |
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{44ded6d0-6092-11e1-b8bd-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{a13ad858-6358-11e0-b6af-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{ad54e924-6228-11e1-b8c5-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{c5e24315-62a9-11e1-b8c7-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5b-4896-11e0-b65c-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5f-4896-11e0-b65c-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{fd796f20-0c4b-11e1-b815-5c260a3cc333}
################## | Listing |
[02/03/2012 - 01:34:44 | N | 1458] C:\AClient.cfg
[06/08/2011 - 15:11:10 | N | 41] C:\AClient.dat
[06/02/2012 - 08:41:00 | D ] C:\ASDCache
[02/03/2011 - 10:43:36 | N | 0] C:\AUTOEXEC.BAT
[02/03/2011 - 10:40:50 | N | 211] C:\boot.ini
[02/03/2011 - 10:43:36 | N | 0] C:\CONFIG.SYS
[07/03/2011 - 09:47:13 | D ] C:\Dell
[01/03/2012 - 23:38:34 | D ] C:\FyK
[02/03/2012 - 01:34:22 | ASH | 3680387072] C:\hiberfil.sys
[02/03/2011 - 11:36:01 | D ] C:\i386
[02/03/2011 - 11:39:18 | D ] C:\Intel
[02/03/2011 - 10:43:36 | N | 0] C:\IO.SYS
[02/03/2011 - 10:43:36 | N | 0] C:\MSDOS.SYS
[18/10/2011 - 09:06:04 | RHD ] C:\MSOCache
[14/04/2008 - 13:00:00 | N | 47564] C:\NTDETECT.COM
[14/04/2008 - 13:00:00 | N | 250048] C:\ntldr
[02/03/2012 - 02:26:14 | N | 103302] C:\photo-v2.jpg
[02/03/2012 - 01:46:04 | D ] C:\Program Files
[02/03/2012 - 01:46:10 | D ] C:\Quarantine
[02/03/2012 - 02:31:33 | SHD ] C:\RECYCLER
[16/05/2011 - 08:17:21 | D ] C:\RefreshDistributor
[03/03/2011 - 02:34:08 | D ] C:\Support
[02/03/2011 - 10:51:08 | SHD ] C:\System Volume Information
[02/03/2012 - 02:31:35 | D ] C:\UsbFix
[14/04/2008 - 13:00:00 | N | 10] C:\WIN51
[14/04/2008 - 13:00:00 | N | 10] C:\WIN51IP
[02/03/2012 - 01:44:54 | D ] C:\WINDOWS
[07/03/2011 - 09:57:48 | D ] D:\32 BIT_W2K_XP_2003
[02/03/2011 - 11:01:13 | D ] D:\ae1bd3b0f8c190979daac32fbca795
[07/03/2011 - 09:58:03 | D ] D:\Breitling World Timer
[02/03/2012 - 01:34:45 | D ] D:\csc
[02/03/2011 - 18:58:10 | D ] D:\Data
[29/05/2011 - 18:07:49 | D ] D:\Documents and Settings
[26/04/2011 - 16:10:33 | D ] D:\Dossiers de travail
[01/03/2012 - 23:36:31 | N | 830] D:\FindyKill_Upload_Me_DOM2.zip
[01/03/2012 - 23:38:34 | N | 1826] D:\FyK.txt
[02/03/2012 - 01:34:21 | ASH | 4278190080] D:\pagefile.sys
[03/01/2012 - 18:30:35 | D ] D:\Perso
[02/03/2012 - 02:26:14 | N | 103302] D:\photo-v2.jpg
[02/03/2012 - 02:31:33 | SHD ] D:\RECYCLER
[02/03/2011 - 11:15:38 | D ] D:\SP
[18/10/2011 - 09:03:08 | D ] D:\System
[02/03/2011 - 10:51:08 | SHD ] D:\System Volume Information
[02/03/2012 - 02:26:15 | D ] D:\Temp
[02/03/2012 - 02:32:24 | A | 13401] D:\UsbFix.txt
################## | Vaccin |
C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
################## | Upload |
Please send the file: D:\UsbFix_Upload_Me_CNITC162XL.zip
http://eldesaparecido.com/upload.html
Thank you for your contribution.
################## | Files # Infected Folders |
Deleted ! C:\WINDOWS\system32\winjpg.jpg
Deleted ! C:\Recycler\S-1-5-18
Deleted ! C:\Recycler\S-1-5-21-329068152-630328440-1801674531-500
Deleted ! C:\Recycler\S-1-5-21-583907252-2052111302-839522115-156361
Deleted ! D:\Recycler\S-1-5-18
Deleted ! D:\Recycler\S-1-5-21-329068152-630328440-1801674531-500
Deleted ! D:\Recycler\S-1-5-21-583907252-2052111302-839522115-156361
Deleted ! C:\autorun.inf
Deleted ! D:\autorun.inf
(!) Temporary files deleted.
################## | Registry |
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drwtsn32.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dwwinxp.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSConfig.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\procexp.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe
Deleted ! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
Not deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Not deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Deleted ! HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore|DisableSR
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|forceclassiccontrolpanel
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRecentDocsMenu
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoResolveSearch
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoRun
Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoSMHelp
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|CTFMON
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|regdiit
################## | Mountpoints2 |
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{44ded6d0-6092-11e1-b8bd-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{a13ad858-6358-11e0-b6af-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{ad54e924-6228-11e1-b8c5-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{c5e24315-62a9-11e1-b8c7-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5b-4896-11e0-b65c-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{d3ab4e5f-4896-11e0-b65c-5c260a3cc333}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{fd796f20-0c4b-11e1-b815-5c260a3cc333}
################## | Listing |
[02/03/2012 - 01:34:44 | N | 1458] C:\AClient.cfg
[06/08/2011 - 15:11:10 | N | 41] C:\AClient.dat
[06/02/2012 - 08:41:00 | D ] C:\ASDCache
[02/03/2011 - 10:43:36 | N | 0] C:\AUTOEXEC.BAT
[02/03/2011 - 10:40:50 | N | 211] C:\boot.ini
[02/03/2011 - 10:43:36 | N | 0] C:\CONFIG.SYS
[07/03/2011 - 09:47:13 | D ] C:\Dell
[01/03/2012 - 23:38:34 | D ] C:\FyK
[02/03/2012 - 01:34:22 | ASH | 3680387072] C:\hiberfil.sys
[02/03/2011 - 11:36:01 | D ] C:\i386
[02/03/2011 - 11:39:18 | D ] C:\Intel
[02/03/2011 - 10:43:36 | N | 0] C:\IO.SYS
[02/03/2011 - 10:43:36 | N | 0] C:\MSDOS.SYS
[18/10/2011 - 09:06:04 | RHD ] C:\MSOCache
[14/04/2008 - 13:00:00 | N | 47564] C:\NTDETECT.COM
[14/04/2008 - 13:00:00 | N | 250048] C:\ntldr
[02/03/2012 - 02:26:14 | N | 103302] C:\photo-v2.jpg
[02/03/2012 - 01:46:04 | D ] C:\Program Files
[02/03/2012 - 01:46:10 | D ] C:\Quarantine
[02/03/2012 - 02:31:33 | SHD ] C:\RECYCLER
[16/05/2011 - 08:17:21 | D ] C:\RefreshDistributor
[03/03/2011 - 02:34:08 | D ] C:\Support
[02/03/2011 - 10:51:08 | SHD ] C:\System Volume Information
[02/03/2012 - 02:31:35 | D ] C:\UsbFix
[14/04/2008 - 13:00:00 | N | 10] C:\WIN51
[14/04/2008 - 13:00:00 | N | 10] C:\WIN51IP
[02/03/2012 - 01:44:54 | D ] C:\WINDOWS
[07/03/2011 - 09:57:48 | D ] D:\32 BIT_W2K_XP_2003
[02/03/2011 - 11:01:13 | D ] D:\ae1bd3b0f8c190979daac32fbca795
[07/03/2011 - 09:58:03 | D ] D:\Breitling World Timer
[02/03/2012 - 01:34:45 | D ] D:\csc
[02/03/2011 - 18:58:10 | D ] D:\Data
[29/05/2011 - 18:07:49 | D ] D:\Documents and Settings
[26/04/2011 - 16:10:33 | D ] D:\Dossiers de travail
[01/03/2012 - 23:36:31 | N | 830] D:\FindyKill_Upload_Me_DOM2.zip
[01/03/2012 - 23:38:34 | N | 1826] D:\FyK.txt
[02/03/2012 - 01:34:21 | ASH | 4278190080] D:\pagefile.sys
[03/01/2012 - 18:30:35 | D ] D:\Perso
[02/03/2012 - 02:26:14 | N | 103302] D:\photo-v2.jpg
[02/03/2012 - 02:31:33 | SHD ] D:\RECYCLER
[02/03/2011 - 11:15:38 | D ] D:\SP
[18/10/2011 - 09:03:08 | D ] D:\System
[02/03/2011 - 10:51:08 | SHD ] D:\System Volume Information
[02/03/2012 - 02:26:15 | D ] D:\Temp
[02/03/2012 - 02:32:24 | A | 13401] D:\UsbFix.txt
################## | Vaccin |
C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
################## | Upload |
Please send the file: D:\UsbFix_Upload_Me_CNITC162XL.zip
http://eldesaparecido.com/upload.html
Thank you for your contribution.
Destrio5
Messages postés
85985
Date d'inscription
dimanche 11 juillet 2010
Statut
Modérateur
Dernière intervention
17 février 2023
10 300
2 mars 2012 à 02:42
2 mars 2012 à 02:42
Tu n'as pas branché la clé USB pour la désinfecter avec UsbFix ?