Photo en .exe
Résolu
Frag
-
misspenny -
misspenny -
Bonjour,
Durant mon voyage, j'ai stocké mes photos sur clé USB mais en rentrant je découvre que toutes mes photos sont devenus des executables en .exe.
J'aimerai savoir si il s'agit d'un virus ou une infection similaire et si il y a un moyen de récupérer mes photos.
Cordialement,
Frag
Durant mon voyage, j'ai stocké mes photos sur clé USB mais en rentrant je découvre que toutes mes photos sont devenus des executables en .exe.
J'aimerai savoir si il s'agit d'un virus ou une infection similaire et si il y a un moyen de récupérer mes photos.
Cordialement,
Frag
A voir également:
- Photo 018.exe
- Google photo - Télécharger - Albums photo
- .Exe - Télécharger - Divers Utilitaires
- Photo filtre 7 gratuit - Télécharger - Retouche d'image
- Google maps photo maison - Guide
- Partage photo - Guide
8 réponses
Bonjour,
--> Télécharge et lance UsbFix, choisis l'option "Recherche" et poste le rapport :
http://eldesaparecido.com/usbfix.html
--> Télécharge et lance UsbFix, choisis l'option "Recherche" et poste le rapport :
http://eldesaparecido.com/usbfix.html
Bonjour,
Voici le rapport :
############################## | UsbFix V 7.088 | [Recherche]
Utilisateur: adrien (Administrateur) # PC-ADRIEN
Mis à jour le 16/05/2012 par El Desaparecido
Lancé à 11:06:49 | 01/06/2012
Site Web: https://www.sosvirus.net/
Forum: http://forum.eldesaparecido.com
Fichier suspect ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Compaq dc5750 Microtower) (X86-based PC) # Desktop Computer
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4800+ (2493)
RAM -> [ Total : 894 | Free : 136 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ Enabled ]
WU: Windows Update Service [ Enabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ (%systemdrive%) -> Disque fixe # 139 Go (108 Go libre(s) - 78%) [] # NTFS
D:\ -> Disque fixe # 10 Go (8 Go libre(s) - 83%) [HP_RECOVERY] # NTFS
E:\ -> CD-ROM
J:\ -> CD-ROM
K:\ -> Disque amovible # 8 Go (13 Mo libre(s) - 0%) [TRANSCEND] # FAT32
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (1448)
C:\WINDOWS\system32\winlogon.exe (1524)
C:\WINDOWS\system32\services.exe (1568)
C:\WINDOWS\system32\lsass.exe (1580)
C:\WINDOWS\system32\Ati2evxx.exe (1772)
C:\WINDOWS\system32\svchost.exe (1788)
C:\WINDOWS\System32\svchost.exe (228)
C:\WINDOWS\system32\brsvc01a.exe (656)
C:\WINDOWS\system32\brss01a.exe (680)
C:\WINDOWS\system32\spoolsv.exe (688)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
C:\WINDOWS\System32\svchost.exe (1228)
C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe (1280)
C:\Program Files\Java\jre6\bin\jqs.exe (1372)
C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (1664)
c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (1828)
C:\Program Files\Sescoi\WorkPLAN\Cleaning.exe (488)
C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (564)
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (1052)
C:\WINDOWS\system32\svchost.exe (1424)
C:\VISION\bin\uohostd.exe (1844)
C:\Program Files\RealVNC\VNC4\WinVNC4.exe (2084)
C:\WINDOWS\system32\SearchIndexer.exe (2792)
C:\WINDOWS\system32\Ati2evxx.exe (2840)
C:\VISION\bin\uorouter.exe (3148)
C:\WINDOWS\Explorer.EXE (3632)
C:\VISION\bin\uospd.exe (3768)
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (2924)
C:\WINDOWS\RTHDCPL.EXE (2984)
C:\WINDOWS\SMINST\Scheduler.exe (3128)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (3140)
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (3200)
C:\WINDOWS\system32\ctfmon.exe (3384)
C:\Program Files\WebEx\Productivity Tools\PTIM.exe (3420)
C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (3576)
C:\WINDOWS\system32\wbem\wmiapsrv.exe (4056)
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE (988)
C:\Program Files\TeamViewer\Version7\TeamViewer.exe (2768)
C:\Program Files\Mozilla Firefox\firefox.exe (5704)
C:\Program Files\TeamViewer\Version7\tv_w32.exe (3068)
C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (4360)
C:\Program Files\Mozilla Firefox\plugin-container.exe (1472)
C:\Program Files\Mozilla Firefox\plugin-container.exe (4228)
C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe (5776)
C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe (1032)
C:\UsbFix\Go.exe (1300)
################## | Éléments infectieux |
Présent! C:\DOCUME~1\adrien\LOCALS~1\Temp\xmlUpdater.exe
Présent! D:\Autorun.inf
################## | Registre |
Présent! HKLM\Software\8322898
################## | Mountpoints2 |
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |
Voici le rapport :
############################## | UsbFix V 7.088 | [Recherche]
Utilisateur: adrien (Administrateur) # PC-ADRIEN
Mis à jour le 16/05/2012 par El Desaparecido
Lancé à 11:06:49 | 01/06/2012
Site Web: https://www.sosvirus.net/
Forum: http://forum.eldesaparecido.com
Fichier suspect ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Compaq dc5750 Microtower) (X86-based PC) # Desktop Computer
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4800+ (2493)
RAM -> [ Total : 894 | Free : 136 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ Enabled ]
WU: Windows Update Service [ Enabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ (%systemdrive%) -> Disque fixe # 139 Go (108 Go libre(s) - 78%) [] # NTFS
D:\ -> Disque fixe # 10 Go (8 Go libre(s) - 83%) [HP_RECOVERY] # NTFS
E:\ -> CD-ROM
J:\ -> CD-ROM
K:\ -> Disque amovible # 8 Go (13 Mo libre(s) - 0%) [TRANSCEND] # FAT32
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (1448)
C:\WINDOWS\system32\winlogon.exe (1524)
C:\WINDOWS\system32\services.exe (1568)
C:\WINDOWS\system32\lsass.exe (1580)
C:\WINDOWS\system32\Ati2evxx.exe (1772)
C:\WINDOWS\system32\svchost.exe (1788)
C:\WINDOWS\System32\svchost.exe (228)
C:\WINDOWS\system32\brsvc01a.exe (656)
C:\WINDOWS\system32\brss01a.exe (680)
C:\WINDOWS\system32\spoolsv.exe (688)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
C:\WINDOWS\System32\svchost.exe (1228)
C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe (1280)
C:\Program Files\Java\jre6\bin\jqs.exe (1372)
C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (1664)
c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (1828)
C:\Program Files\Sescoi\WorkPLAN\Cleaning.exe (488)
C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (564)
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (1052)
C:\WINDOWS\system32\svchost.exe (1424)
C:\VISION\bin\uohostd.exe (1844)
C:\Program Files\RealVNC\VNC4\WinVNC4.exe (2084)
C:\WINDOWS\system32\SearchIndexer.exe (2792)
C:\WINDOWS\system32\Ati2evxx.exe (2840)
C:\VISION\bin\uorouter.exe (3148)
C:\WINDOWS\Explorer.EXE (3632)
C:\VISION\bin\uospd.exe (3768)
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (2924)
C:\WINDOWS\RTHDCPL.EXE (2984)
C:\WINDOWS\SMINST\Scheduler.exe (3128)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (3140)
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (3200)
C:\WINDOWS\system32\ctfmon.exe (3384)
C:\Program Files\WebEx\Productivity Tools\PTIM.exe (3420)
C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (3576)
C:\WINDOWS\system32\wbem\wmiapsrv.exe (4056)
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE (988)
C:\Program Files\TeamViewer\Version7\TeamViewer.exe (2768)
C:\Program Files\Mozilla Firefox\firefox.exe (5704)
C:\Program Files\TeamViewer\Version7\tv_w32.exe (3068)
C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (4360)
C:\Program Files\Mozilla Firefox\plugin-container.exe (1472)
C:\Program Files\Mozilla Firefox\plugin-container.exe (4228)
C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe (5776)
C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe (1032)
C:\UsbFix\Go.exe (1300)
################## | Éléments infectieux |
Présent! C:\DOCUME~1\adrien\LOCALS~1\Temp\xmlUpdater.exe
Présent! D:\Autorun.inf
################## | Registre |
Présent! HKLM\Software\8322898
################## | Mountpoints2 |
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |
Voici le rapport :
############################## | UsbFix V 7.088 | [Suppression]
Utilisateur: adrien (Administrateur) # PC-ADRIEN
Mis à jour le 16/05/2012 par El Desaparecido
Lancé à 12:29:06 | 01/06/2012
Site Web: https://www.sosvirus.net/
Forum: http://forum.eldesaparecido.com
Fichier suspect ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Compaq dc5750 Microtower) (X86-based PC) # Desktop Computer
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4800+ (2493)
RAM -> [ Total : 894 | Free : 280 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ Enabled ]
WU: Windows Update Service [ Enabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ (%systemdrive%) -> Disque fixe # 139 Go (105 Go libre(s) - 76%) [] # NTFS
D:\ -> Disque fixe # 10 Go (8 Go libre(s) - 83%) [HP_RECOVERY] # NTFS
E:\ -> CD-ROM
J:\ -> CD-ROM
K:\ -> Disque amovible # 8 Go (16 Mo libre(s) - 0%) [TRANSCEND] # FAT32
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (1448)
C:\WINDOWS\system32\winlogon.exe (1524)
C:\WINDOWS\system32\services.exe (1568)
C:\WINDOWS\system32\lsass.exe (1580)
C:\WINDOWS\system32\svchost.exe (1788)
C:\WINDOWS\System32\svchost.exe (228)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
C:\WINDOWS\System32\svchost.exe (1228)
C:\WINDOWS\system32\svchost.exe (1424)
C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (5720)
C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (4984)
C:\WINDOWS\system32\SearchIndexer.exe (5888)
C:\WINDOWS\system32\spoolsv.exe (1116)
C:\WINDOWS\Explorer.EXE (6076)
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (632)
C:\WINDOWS\RTHDCPL.EXE (2968)
C:\WINDOWS\SMINST\Scheduler.exe (2560)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (5804)
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (712)
C:\WINDOWS\system32\ctfmon.exe (2608)
C:\Program Files\WebEx\Productivity Tools\PTIM.exe (5148)
C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (4924)
C:\Program Files\Mozilla Firefox\firefox.exe (984)
C:\Documents and Settings\adrien\Application Data\Java\?shimgvw?.exe (5580)
C:\Documents and Settings\adrien\Application Data\Java\?Jview?.exe (3160)
C:\UsbFix\Go.exe (4212)
################## | Processus Stoppés |
Stoppé! C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
Stoppé! C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (5720)
Stoppé! C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (4984)
Stoppé! C:\WINDOWS\system32\SearchIndexer.exe (5888)
Stoppé! C:\WINDOWS\system32\spoolsv.exe (1116)
Stoppé! C:\WINDOWS\Explorer.EXE (6076)
Stoppé! C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (632)
Stoppé! C:\WINDOWS\RTHDCPL.EXE (2968)
Stoppé! C:\WINDOWS\SMINST\Scheduler.exe (2560)
Stoppé! C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (5804)
Stoppé! C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (712)
Stoppé! C:\WINDOWS\system32\ctfmon.exe (2608)
Stoppé! C:\Program Files\WebEx\Productivity Tools\PTIM.exe (5148)
Stoppé! C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (4924)
Stoppé! C:\Documents and Settings\adrien\Application Data\Java\?shimgvw?.exe (5580)
Stoppé! C:\Documents and Settings\adrien\Application Data\Java\?Jview?.exe (3160)
################## | Éléments infectieux |
Supprimé! C:\Documents and Settings\adrien\Application Data\java
Supprimé! C:\Recycler\S-1-5-21-610684845-833031759-911163043-2240
Supprimé! D:\Recycler\S-1-5-21-610684845-833031759-911163043-2240
(!) Fichiers temporaires supprimés.
################## | Registre |
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ansavgd
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\attrib.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autorunme.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\blastclnn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\blastclnnn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cscript.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\egui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EHttpSrv.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ise32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSASCui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Nbrowser.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\New Folder.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Njeeves.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32krn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32kui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npcsvc32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npc_login.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npc_tray.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npflgutl.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfports.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfrules.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfsvc32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfuser.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfwiz.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nprosec.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nuaa.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Nvcoa.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvcsched.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvoy.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\reg32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rtpsvc.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scsaver.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SSCVIHOST.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wscript.exe
################## | Mountpoints2 |
################## | Listing |
[17/01/2012 - 17:26:41 | N | 0] C:\13F.tmp
[30/11/2011 - 16:04:35 | N | 0] C:\196.tmp
[30/11/2011 - 17:44:31 | N | 0] C:\1A9.tmp
[30/11/2011 - 17:44:33 | N | 0] C:\1AA.tmp
[02/02/2011 - 15:25:31 | N | 0] C:\1B5.tmp
[28/03/2011 - 14:48:19 | N | 0] C:\251.tmp
[03/11/2011 - 13:01:55 | N | 0] C:\301.tmp
[10/01/2012 - 18:47:00 | N | 0] C:\3D.tmp
[21/08/2009 - 03:04:13 | D ] C:\4112d15d3ce6748f97b7
[02/11/2011 - 11:38:34 | N | 0] C:\46.tmp
[23/06/2011 - 14:07:47 | N | 0] C:\49D.tmp
[23/06/2011 - 14:10:02 | N | 0] C:\49E.tmp
[30/09/2011 - 14:40:04 | N | 0] C:\4A7.tmp
[30/09/2011 - 14:41:29 | N | 0] C:\4A9.tmp
[30/09/2011 - 14:41:50 | N | 0] C:\4AA.tmp
[02/11/2011 - 11:49:22 | N | 0] C:\4C.tmp
[30/03/2011 - 14:04:44 | N | 0] C:\4E.tmp
[11/04/2008 - 17:04:16 | D ] C:\ada76ec3f6be69ca0a8ded53c546
[08/03/2012 - 18:03:50 | D ] C:\Adobe Illustrator 10
[01/06/2012 - 12:06:26 | RASHD ] C:\Autorun.inf
[23/10/2007 - 10:06:47 | D ] C:\BIOS
[31/05/2012 - 12:25:56 | N | 224] C:\boot.ini
[02/03/2006 - 04:00:00 | N | 4952] C:\Bootfont.bin
[06/10/2010 - 09:24:20 | D ] C:\CHRONOSHIP
[23/10/2007 - 10:06:48 | D ] C:\compaq
[23/03/2012 - 16:10:05 | D ] C:\Documents and Settings
[02/11/2011 - 16:23:01 | N | 0] C:\E5.tmp
[03/02/2011 - 11:06:29 | N | 0] C:\FF.tmp
[16/01/2012 - 13:23:26 | D ] C:\FixKido
[31/05/2012 - 13:29:28 | ASH | 937771008] C:\hiberfil.sys
[28/11/2007 - 13:10:44 | D ] C:\hom1
[23/10/2007 - 10:06:51 | D ] C:\i386
[23/10/2007 - 15:45:52 | N | 0] C:\IO.SYS
[03/06/2010 - 13:41:00 | D ] C:\MAJ-MYWPE
[21/04/2011 - 15:37:24 | D ] C:\Mes Etats et Requetes
[23/10/2007 - 15:45:52 | N | 0] C:\MSDOS.SYS
[06/12/2010 - 17:37:29 | RHD ] C:\MSOCache
[23/10/2007 - 10:06:52 | D ] C:\Novadigm
[02/03/2006 - 04:00:00 | N | 47564] C:\ntdetect.com
[06/12/2010 - 16:40:06 | N | 252240] C:\ntldr
[31/05/2012 - 13:29:25 | ASH | 1409286144] C:\pagefile.sys
[27/01/2009 - 10:19:54 | D ] C:\Partage-Multimedia
[01/06/2012 - 10:01:48 | D ] C:\Program Files
[05/04/2012 - 15:34:27 | D ] C:\Python26
[01/06/2012 - 12:33:52 | SHD ] C:\RECYCLER
[26/05/2010 - 09:22:55 | D ] C:\spoolerlogs
[23/10/2007 - 15:59:13 | N | 268] C:\sqmdata00.sqm
[24/02/2009 - 16:39:11 | N | 268] C:\sqmdata01.sqm
[28/07/2009 - 14:05:10 | N | 268] C:\sqmdata02.sqm
[28/07/2009 - 15:24:26 | N | 268] C:\sqmdata03.sqm
[28/07/2009 - 15:35:36 | N | 268] C:\sqmdata04.sqm
[28/07/2009 - 15:42:23 | N | 268] C:\sqmdata05.sqm
[23/10/2007 - 15:59:13 | N | 244] C:\sqmnoopt00.sqm
[24/02/2009 - 16:39:11 | N | 244] C:\sqmnoopt01.sqm
[28/07/2009 - 14:05:09 | N | 244] C:\sqmnoopt02.sqm
[28/07/2009 - 15:24:26 | N | 244] C:\sqmnoopt03.sqm
[28/07/2009 - 15:35:36 | N | 244] C:\sqmnoopt04.sqm
[28/07/2009 - 15:42:23 | N | 244] C:\sqmnoopt05.sqm
[22/03/2010 - 11:47:29 | N | 438055] C:\ssapi.log
[23/10/2007 - 10:06:44 | D ] C:\SWSetup
[15/11/2010 - 11:09:23 | SHD ] C:\System Volume Information
[23/10/2007 - 01:11:51 | D ] C:\system.sav
[21/04/2011 - 14:26:57 | D ] C:\temp
[28/09/2011 - 14:57:27 | N | 0] C:\testDefBrow.html
[06/08/2010 - 16:00:32 | D ] C:\TMP
[16/04/2010 - 08:30:19 | N | 31] C:\tmuninst.ini
[01/06/2012 - 12:33:52 | D ] C:\UsbFix
[01/06/2012 - 12:35:31 | A | 7649] C:\UsbFix.txt
[01/06/2012 - 12:18:56 | D ] C:\UsbFix_Upload_Me
[23/10/2007 - 15:18:02 | D ] C:\VISION
[01/12/2011 - 13:09:16 | D ] C:\wamp
[31/05/2012 - 13:30:44 | D ] C:\WINDOWS
[01/06/2012 - 12:06:26 | RASHD ] D:\Autorun.inf
[01/07/2005 - 15:16:54 | ASH | 102] D:\Desktop.ini
[22/11/2004 - 19:28:00 | N | 8130] D:\Folder.htt
[03/11/2005 - 13:29:50 | N | 0] D:\HP_RECOVERY
[09/10/2007 - 20:12:04 | D ] D:\I386
[30/11/2004 - 15:01:00 | N | 73728] D:\Info.exe
[09/10/2007 - 20:06:10 | D ] D:\ISOS
[09/10/2007 - 20:12:12 | N | 1202] D:\MASTER.LOG
[09/10/2007 - 20:12:04 | D ] D:\minint
[29/08/2002 - 09:00:00 | N | 47580] D:\NTDETECT.COM
[12/05/2006 - 16:07:42 | N | 0] D:\NTFS
[29/08/2002 - 09:00:00 | N | 245920] D:\NTLDR
[09/10/2007 - 20:12:04 | RSHD ] D:\PRELOAD
[10/09/2002 - 13:58:12 | N | 181616] D:\protect.ed
[09/10/2007 - 20:12:04 | RD ] D:\RECOVERY
[01/06/2012 - 12:33:52 | SHD ] D:\RECYCLER
[29/08/2002 - 09:00:00 | N | 245920] D:\STLDR
[15/11/2010 - 11:09:22 | RSHD ] D:\System Volume Information
[08/02/2002 - 19:44:00 | N | 88038] D:\Warning.bmp
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51
[22/01/2001 - 21:00:00 | N | 11] D:\WIN51.B2
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51.RC1
[26/07/2001 - 02:47:00 | N | 11] D:\WIN51.RC2
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51IA
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51IA.SP1
[18/08/2001 - 21:00:00 | N | 10] D:\WIN51IC
[20/03/2001 - 21:00:00 | N | 11] D:\WIN51IC.B2
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51IC.RC1
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51IC.RC2
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP
[22/01/2001 - 21:00:00 | N | 11] D:\WIN51IP.B2
[26/07/2001 - 02:47:00 | N | 11] D:\WIN51IP.RC2
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP.SP1
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP2
[25/03/2005 - 16:00:00 | N | 167] D:\WINBOM.INI
[12/05/2006 - 16:07:42 | N | 0] D:\XGA
[09/01/2012 - 17:39:10 | D ] K:\cambodge 2
[09/01/2012 - 17:46:30 | D ] K:\494
[09/01/2012 - 17:52:36 | D ] K:\NEW YEAR
[09/01/2012 - 17:53:06 | D ] K:\vietnam
[09/01/2012 - 17:59:16 | D ] K:\762
[09/01/2012 - 18:06:56 | D ] K:\181
[02/02/2012 - 13:22:38 | D ] K:\RÈCYCLER
[01/06/2012 - 12:06:28 | RASHD ] K:\Autorun.inf
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
K:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | E.O.F |
############################## | UsbFix V 7.088 | [Suppression]
Utilisateur: adrien (Administrateur) # PC-ADRIEN
Mis à jour le 16/05/2012 par El Desaparecido
Lancé à 12:29:06 | 01/06/2012
Site Web: https://www.sosvirus.net/
Forum: http://forum.eldesaparecido.com
Fichier suspect ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Compaq dc5750 Microtower) (X86-based PC) # Desktop Computer
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4800+ (2493)
RAM -> [ Total : 894 | Free : 280 ]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 6.0.2900.5512
SC: Security Center Service [ Enabled ]
WU: Windows Update Service [ Enabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ (%systemdrive%) -> Disque fixe # 139 Go (105 Go libre(s) - 76%) [] # NTFS
D:\ -> Disque fixe # 10 Go (8 Go libre(s) - 83%) [HP_RECOVERY] # NTFS
E:\ -> CD-ROM
J:\ -> CD-ROM
K:\ -> Disque amovible # 8 Go (16 Mo libre(s) - 0%) [TRANSCEND] # FAT32
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (1448)
C:\WINDOWS\system32\winlogon.exe (1524)
C:\WINDOWS\system32\services.exe (1568)
C:\WINDOWS\system32\lsass.exe (1580)
C:\WINDOWS\system32\svchost.exe (1788)
C:\WINDOWS\System32\svchost.exe (228)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
C:\WINDOWS\System32\svchost.exe (1228)
C:\WINDOWS\system32\svchost.exe (1424)
C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (5720)
C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (4984)
C:\WINDOWS\system32\SearchIndexer.exe (5888)
C:\WINDOWS\system32\spoolsv.exe (1116)
C:\WINDOWS\Explorer.EXE (6076)
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (632)
C:\WINDOWS\RTHDCPL.EXE (2968)
C:\WINDOWS\SMINST\Scheduler.exe (2560)
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (5804)
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (712)
C:\WINDOWS\system32\ctfmon.exe (2608)
C:\Program Files\WebEx\Productivity Tools\PTIM.exe (5148)
C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (4924)
C:\Program Files\Mozilla Firefox\firefox.exe (984)
C:\Documents and Settings\adrien\Application Data\Java\?shimgvw?.exe (5580)
C:\Documents and Settings\adrien\Application Data\Java\?Jview?.exe (3160)
C:\UsbFix\Go.exe (4212)
################## | Processus Stoppés |
Stoppé! C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (1108)
Stoppé! C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe (5720)
Stoppé! C:\Program Files\NETASQ\NETASQ Updater\autoupdate.exe (4984)
Stoppé! C:\WINDOWS\system32\SearchIndexer.exe (5888)
Stoppé! C:\WINDOWS\system32\spoolsv.exe (1116)
Stoppé! C:\WINDOWS\Explorer.EXE (6076)
Stoppé! C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe (632)
Stoppé! C:\WINDOWS\RTHDCPL.EXE (2968)
Stoppé! C:\WINDOWS\SMINST\Scheduler.exe (2560)
Stoppé! C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe (5804)
Stoppé! C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (712)
Stoppé! C:\WINDOWS\system32\ctfmon.exe (2608)
Stoppé! C:\Program Files\WebEx\Productivity Tools\PTIM.exe (5148)
Stoppé! C:\Program Files\WebEx\Productivity Tools\ptSrv.exe (4924)
Stoppé! C:\Documents and Settings\adrien\Application Data\Java\?shimgvw?.exe (5580)
Stoppé! C:\Documents and Settings\adrien\Application Data\Java\?Jview?.exe (3160)
################## | Éléments infectieux |
Supprimé! C:\Documents and Settings\adrien\Application Data\java
Supprimé! C:\Recycler\S-1-5-21-610684845-833031759-911163043-2240
Supprimé! D:\Recycler\S-1-5-21-610684845-833031759-911163043-2240
(!) Fichiers temporaires supprimés.
################## | Registre |
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ansavgd
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\attrib.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autorunme.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\blastclnn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\blastclnnn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cscript.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\egui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EHttpSrv.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ise32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSASCui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Nbrowser.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\New Folder.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Njeeves.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32krn.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32kui.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npcsvc32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npc_login.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npc_tray.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npflgutl.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfports.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfrules.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfsvc32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfuser.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\npfwiz.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nprosec.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nuaa.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Nvcoa.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvcsched.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvoy.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\reg32.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rtpsvc.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scsaver.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SSCVIHOST.exe
Supprimé! HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wscript.exe
################## | Mountpoints2 |
################## | Listing |
[17/01/2012 - 17:26:41 | N | 0] C:\13F.tmp
[30/11/2011 - 16:04:35 | N | 0] C:\196.tmp
[30/11/2011 - 17:44:31 | N | 0] C:\1A9.tmp
[30/11/2011 - 17:44:33 | N | 0] C:\1AA.tmp
[02/02/2011 - 15:25:31 | N | 0] C:\1B5.tmp
[28/03/2011 - 14:48:19 | N | 0] C:\251.tmp
[03/11/2011 - 13:01:55 | N | 0] C:\301.tmp
[10/01/2012 - 18:47:00 | N | 0] C:\3D.tmp
[21/08/2009 - 03:04:13 | D ] C:\4112d15d3ce6748f97b7
[02/11/2011 - 11:38:34 | N | 0] C:\46.tmp
[23/06/2011 - 14:07:47 | N | 0] C:\49D.tmp
[23/06/2011 - 14:10:02 | N | 0] C:\49E.tmp
[30/09/2011 - 14:40:04 | N | 0] C:\4A7.tmp
[30/09/2011 - 14:41:29 | N | 0] C:\4A9.tmp
[30/09/2011 - 14:41:50 | N | 0] C:\4AA.tmp
[02/11/2011 - 11:49:22 | N | 0] C:\4C.tmp
[30/03/2011 - 14:04:44 | N | 0] C:\4E.tmp
[11/04/2008 - 17:04:16 | D ] C:\ada76ec3f6be69ca0a8ded53c546
[08/03/2012 - 18:03:50 | D ] C:\Adobe Illustrator 10
[01/06/2012 - 12:06:26 | RASHD ] C:\Autorun.inf
[23/10/2007 - 10:06:47 | D ] C:\BIOS
[31/05/2012 - 12:25:56 | N | 224] C:\boot.ini
[02/03/2006 - 04:00:00 | N | 4952] C:\Bootfont.bin
[06/10/2010 - 09:24:20 | D ] C:\CHRONOSHIP
[23/10/2007 - 10:06:48 | D ] C:\compaq
[23/03/2012 - 16:10:05 | D ] C:\Documents and Settings
[02/11/2011 - 16:23:01 | N | 0] C:\E5.tmp
[03/02/2011 - 11:06:29 | N | 0] C:\FF.tmp
[16/01/2012 - 13:23:26 | D ] C:\FixKido
[31/05/2012 - 13:29:28 | ASH | 937771008] C:\hiberfil.sys
[28/11/2007 - 13:10:44 | D ] C:\hom1
[23/10/2007 - 10:06:51 | D ] C:\i386
[23/10/2007 - 15:45:52 | N | 0] C:\IO.SYS
[03/06/2010 - 13:41:00 | D ] C:\MAJ-MYWPE
[21/04/2011 - 15:37:24 | D ] C:\Mes Etats et Requetes
[23/10/2007 - 15:45:52 | N | 0] C:\MSDOS.SYS
[06/12/2010 - 17:37:29 | RHD ] C:\MSOCache
[23/10/2007 - 10:06:52 | D ] C:\Novadigm
[02/03/2006 - 04:00:00 | N | 47564] C:\ntdetect.com
[06/12/2010 - 16:40:06 | N | 252240] C:\ntldr
[31/05/2012 - 13:29:25 | ASH | 1409286144] C:\pagefile.sys
[27/01/2009 - 10:19:54 | D ] C:\Partage-Multimedia
[01/06/2012 - 10:01:48 | D ] C:\Program Files
[05/04/2012 - 15:34:27 | D ] C:\Python26
[01/06/2012 - 12:33:52 | SHD ] C:\RECYCLER
[26/05/2010 - 09:22:55 | D ] C:\spoolerlogs
[23/10/2007 - 15:59:13 | N | 268] C:\sqmdata00.sqm
[24/02/2009 - 16:39:11 | N | 268] C:\sqmdata01.sqm
[28/07/2009 - 14:05:10 | N | 268] C:\sqmdata02.sqm
[28/07/2009 - 15:24:26 | N | 268] C:\sqmdata03.sqm
[28/07/2009 - 15:35:36 | N | 268] C:\sqmdata04.sqm
[28/07/2009 - 15:42:23 | N | 268] C:\sqmdata05.sqm
[23/10/2007 - 15:59:13 | N | 244] C:\sqmnoopt00.sqm
[24/02/2009 - 16:39:11 | N | 244] C:\sqmnoopt01.sqm
[28/07/2009 - 14:05:09 | N | 244] C:\sqmnoopt02.sqm
[28/07/2009 - 15:24:26 | N | 244] C:\sqmnoopt03.sqm
[28/07/2009 - 15:35:36 | N | 244] C:\sqmnoopt04.sqm
[28/07/2009 - 15:42:23 | N | 244] C:\sqmnoopt05.sqm
[22/03/2010 - 11:47:29 | N | 438055] C:\ssapi.log
[23/10/2007 - 10:06:44 | D ] C:\SWSetup
[15/11/2010 - 11:09:23 | SHD ] C:\System Volume Information
[23/10/2007 - 01:11:51 | D ] C:\system.sav
[21/04/2011 - 14:26:57 | D ] C:\temp
[28/09/2011 - 14:57:27 | N | 0] C:\testDefBrow.html
[06/08/2010 - 16:00:32 | D ] C:\TMP
[16/04/2010 - 08:30:19 | N | 31] C:\tmuninst.ini
[01/06/2012 - 12:33:52 | D ] C:\UsbFix
[01/06/2012 - 12:35:31 | A | 7649] C:\UsbFix.txt
[01/06/2012 - 12:18:56 | D ] C:\UsbFix_Upload_Me
[23/10/2007 - 15:18:02 | D ] C:\VISION
[01/12/2011 - 13:09:16 | D ] C:\wamp
[31/05/2012 - 13:30:44 | D ] C:\WINDOWS
[01/06/2012 - 12:06:26 | RASHD ] D:\Autorun.inf
[01/07/2005 - 15:16:54 | ASH | 102] D:\Desktop.ini
[22/11/2004 - 19:28:00 | N | 8130] D:\Folder.htt
[03/11/2005 - 13:29:50 | N | 0] D:\HP_RECOVERY
[09/10/2007 - 20:12:04 | D ] D:\I386
[30/11/2004 - 15:01:00 | N | 73728] D:\Info.exe
[09/10/2007 - 20:06:10 | D ] D:\ISOS
[09/10/2007 - 20:12:12 | N | 1202] D:\MASTER.LOG
[09/10/2007 - 20:12:04 | D ] D:\minint
[29/08/2002 - 09:00:00 | N | 47580] D:\NTDETECT.COM
[12/05/2006 - 16:07:42 | N | 0] D:\NTFS
[29/08/2002 - 09:00:00 | N | 245920] D:\NTLDR
[09/10/2007 - 20:12:04 | RSHD ] D:\PRELOAD
[10/09/2002 - 13:58:12 | N | 181616] D:\protect.ed
[09/10/2007 - 20:12:04 | RD ] D:\RECOVERY
[01/06/2012 - 12:33:52 | SHD ] D:\RECYCLER
[29/08/2002 - 09:00:00 | N | 245920] D:\STLDR
[15/11/2010 - 11:09:22 | RSHD ] D:\System Volume Information
[08/02/2002 - 19:44:00 | N | 88038] D:\Warning.bmp
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51
[22/01/2001 - 21:00:00 | N | 11] D:\WIN51.B2
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51.RC1
[26/07/2001 - 02:47:00 | N | 11] D:\WIN51.RC2
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51IA
[25/03/2005 - 16:00:00 | N | 10] D:\WIN51IA.SP1
[18/08/2001 - 21:00:00 | N | 10] D:\WIN51IC
[20/03/2001 - 21:00:00 | N | 11] D:\WIN51IC.B2
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51IC.RC1
[25/07/2001 - 21:00:00 | N | 11] D:\WIN51IC.RC2
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP
[22/01/2001 - 21:00:00 | N | 11] D:\WIN51IP.B2
[26/07/2001 - 02:47:00 | N | 11] D:\WIN51IP.RC2
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP.SP1
[17/08/2001 - 21:00:00 | N | 10] D:\WIN51IP2
[25/03/2005 - 16:00:00 | N | 167] D:\WINBOM.INI
[12/05/2006 - 16:07:42 | N | 0] D:\XGA
[09/01/2012 - 17:39:10 | D ] K:\cambodge 2
[09/01/2012 - 17:46:30 | D ] K:\494
[09/01/2012 - 17:52:36 | D ] K:\NEW YEAR
[09/01/2012 - 17:53:06 | D ] K:\vietnam
[09/01/2012 - 17:59:16 | D ] K:\762
[09/01/2012 - 18:06:56 | D ] K:\181
[02/02/2012 - 13:22:38 | D ] K:\RÈCYCLER
[01/06/2012 - 12:06:28 | RASHD ] K:\Autorun.inf
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
K:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | E.O.F |
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
En effet, les icônes sont devenus ceux de photos et je peux maintenant les ouvrir.
Merci beaucoup à toi, ce sont 7 mois de vacances qui sont sauvés.
Merci beaucoup à toi, ce sont 7 mois de vacances qui sont sauvés.
Ok.
Relance UsbFix et choisis "Désinstaller".
Tu peux faire un scan avec Malwarebytes' Anti-Malware :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Relance UsbFix et choisis "Désinstaller".
Tu peux faire un scan avec Malwarebytes' Anti-Malware :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/