Problème avec Avast ? Rootkit bloqué
Résolu/Fermé
doudoupassi
Messages postés
3
Date d'inscription
vendredi 18 janvier 2013
Statut
Membre
Dernière intervention
18 janvier 2013
-
18 janv. 2013 à 13:13
juju666 Messages postés 35445 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 5 mai 2017 - 18 janv. 2013 à 14:44
juju666 Messages postés 35445 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 5 mai 2017 - 18 janv. 2013 à 14:44
A voir également:
- Problème avec Avast ? Rootkit bloqué
- Uptobox bloqué - Guide
- Code puk bloqué - Guide
- Comment savoir si on est bloqué sur messenger - Guide
- Pavé tactile bloqué - Guide
- Compte gmail bloqué - Guide
5 réponses
juju666
Messages postés
35445
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
5 mai 2017
4 795
Modifié par juju666 le 18/01/2013 à 13:19
Modifié par juju666 le 18/01/2013 à 13:19
Salut,
C'est du VobFus : https://www.malekal.com/worm-vobfus-mes-dossiers-sont-devenus-des-raccourcis/
Désactive la sandbox avast.
▶ Téléchargez UsbFix (créé par El Desaparecido) sur votre Bureau.
▶ Si votre antivirus affiche une alerte, ignorez-la et désactivez l'antivirus temporairement.
▶ Branchez toutes vos sources de données externes ? votre PC (clé USB, disque dur externe, etc...) sans les ouvrir.
▶ Double cliquez sur UsbFix.exe.
▶ Cliquez sur suppression
▶ Laissez travailler l'outil.
▶ à la fin du scan, un rapport va s'afficher, postez-le dans votre prochaine réponse sur le forum.
▶ Le rapport est aussi sauvegardé à la racine du disque ( C:\UsbFix.txt ).
@+
.::. Contributeur Sécurité - Admin FEC Forums .::.
C'est du VobFus : https://www.malekal.com/worm-vobfus-mes-dossiers-sont-devenus-des-raccourcis/
Désactive la sandbox avast.
▶ Téléchargez UsbFix (créé par El Desaparecido) sur votre Bureau.
▶ Si votre antivirus affiche une alerte, ignorez-la et désactivez l'antivirus temporairement.
▶ Branchez toutes vos sources de données externes ? votre PC (clé USB, disque dur externe, etc...) sans les ouvrir.
▶ Double cliquez sur UsbFix.exe.
▶ Cliquez sur suppression
▶ Laissez travailler l'outil.
▶ à la fin du scan, un rapport va s'afficher, postez-le dans votre prochaine réponse sur le forum.
▶ Le rapport est aussi sauvegardé à la racine du disque ( C:\UsbFix.txt ).
@+
.::. Contributeur Sécurité - Admin FEC Forums .::.
doudoupassi
Messages postés
3
Date d'inscription
vendredi 18 janvier 2013
Statut
Membre
Dernière intervention
18 janvier 2013
18 janv. 2013 à 13:38
18 janv. 2013 à 13:38
Merci !
Alors, je copie tout le rapport !
############################## | UsbFix V 7.102 | [Suppression]
Utilisateur: Paulette (Administrateur) # PAULETTE-HP
Mis à jour le 20/12/2012 par El Desaparecido
Lancé à 13:31:24 | 18/01/2013
Site Web: https://www.sosvirus.net/
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Pavilion dv7 Notebook PC) (x64-based PC
CPU: Intel(R) Core(TM) i7-3610QM CPU @ 2.30GHz (2301)
RAM -> [Total : 8091 | Free : 4158]
BIOS: InsydeH2O Version 03.71.51F.07
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: avast! Antivirus [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 909 Go (699 Go libre(s) - 77%) [] # NTFS
D:\ -> Disque fixe # 22 Go (2 Go libre(s) - 11%) [Recovery] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disque fixe # 466 Go (97 Go libre(s) - 21%) [SAMSUNG] # FAT32
################## | Processus Actif |
C:\Windows\system32\csrss.exe (680)
C:\Windows\system32\wininit.exe (832)
C:\Windows\system32\csrss.exe (852)
C:\Windows\system32\winlogon.exe (896)
C:\Windows\system32\services.exe (940)
C:\Windows\system32\lsass.exe (960)
C:\Windows\system32\lsm.exe (968)
C:\Windows\system32\svchost.exe (500)
C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (652)
C:\Windows\system32\nvvsvc.exe (1004)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\System32\svchost.exe (1124)
C:\Windows\System32\svchost.exe (1168)
C:\Windows\system32\svchost.exe (1228)
C:\Program Files\IDT\WDM\STacSV64.exe (1256)
C:\Windows\system32\svchost.exe (1468)
C:\Windows\system32\Hpservice.exe (1528)
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (1720)
C:\Windows\system32\nvvsvc.exe (1732)
C:\Windows\System32\WUDFHost.exe (1816)
C:\Windows\system32\svchost.exe (1988)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1344)
C:\Windows\system32\WLANExt.exe (1364)
C:\Windows\system32\conhost.exe (1380)
C:\Windows\System32\spoolsv.exe (1956)
C:\Windows\system32\svchost.exe (2076)
C:\Windows\system32\svchost.exe (2112)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (2248)
C:\Program Files\Bonjour\mDNSResponder.exe (2272)
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (2308)
C:\Windows\SysWOW64\ezSharedSvcHost.exe (2416)
C:\Windows\system32\svchost.exe (2480)
C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (2508)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (2536)
C:\Program Files\IB Updater\ExtensionUpdaterService.exe (2564)
C:\Program Files\Intel\iCLS Client\HeciServer.exe (2620)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (2652)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (2708)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2132)
C:\Windows\system32\svchost.exe (2744)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (3108)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (3172)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (3408)
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3564)
C:\Windows\system32\svchost.exe (3888)
C:\Windows\system32\svchost.exe (3992)
C:\Windows\system32\taskhost.exe (3520)
C:\Windows\system32\Dwm.exe (3816)
C:\Windows\Explorer.EXE (2396)
C:\Windows\System32\hkcmd.exe (4860)
C:\Windows\System32\igfxpers.exe (4868)
C:\Program Files\IDT\WDM\sttray64.exe (5004)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (5040)
C:\Windows\system32\wbem\wmiprvse.exe (4936)
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (4716)
C:\Windows\system32\taskeng.exe (1608)
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (5144)
C:\Windows\system32\wbem\unsecapp.exe (5456)
C:\Program Files\Windows Media Player\wmpnetwk.exe (5592)
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (5600)
C:\Users\Paulette\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (5964)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (5980)
C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe (6112)
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (1404)
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (5208)
C:\Program Files (x86)\CyberLink\Shared files\brs.exe (5216)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (5220)
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (5336)
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (2776)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (2972)
C:\Program Files (x86)\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe (5576)
C:\Program Files\AVAST Software\Avast\AvastUI.exe (4764)
C:\Program Files (x86)\Winamp\winampa.exe (4772)
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (4740)
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (5864)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (5936)
C:\Program Files\iPod\bin\iPodService.exe (5292)
C:\Windows\System32\svchost.exe (2992)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2600)
C:\Windows\SysWOW64\RunDll32.exe (6400)
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (6780)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7080)
C:\Windows\system32\DllHost.exe (7116)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7508)
C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (7256)
C:\Windows\SysWOW64\schtasks.exe (7200)
C:\Windows\system32\conhost.exe (7368)
C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (2052)
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (7952)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (7156)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (200)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (7816)
C:\Windows\System32\svchost.exe (6700)
C:\Windows\system32\SearchIndexer.exe (3156)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (7780)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (7004)
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (5572)
C:\Program Files (x86)\HP SimplePass\BioMonitor.exe (7856)
C:\Program Files (x86)\HP SimplePass\TouchControl.exe (2244)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5512)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5692)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5448)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6020)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (4788)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9032)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7652)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6096)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6056)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (4932)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5804)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7580)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9796)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (10016)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (10100)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9524)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6124)
C:\Windows\system32\sppsvc.exe (9528)
C:\UsbFix\Go.exe (5508)
C:\Windows\system32\wbem\wmiprvse.exe (3484)
################## | Processus Stoppés |
Stoppé! C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (652)
Stoppé! C:\Windows\system32\nvvsvc.exe (1004)
Stoppé! C:\Program Files\IDT\WDM\STacSV64.exe (1256)
Stoppé! C:\Windows\system32\Hpservice.exe (1528)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (1720)
Stoppé! C:\Windows\system32\nvvsvc.exe (1732)
Stoppé! C:\Windows\System32\WUDFHost.exe (1816)
Stoppé! C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1344)
Stoppé! C:\Windows\system32\WLANExt.exe (1364)
Stoppé! C:\Windows\System32\spoolsv.exe (1956)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (2248)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (2272)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (2308)
Stoppé! C:\Windows\SysWOW64\ezSharedSvcHost.exe (2416)
Stoppé! C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (2508)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (2536)
Stoppé! C:\Program Files\IB Updater\ExtensionUpdaterService.exe (2564)
Stoppé! C:\Program Files\Intel\iCLS Client\HeciServer.exe (2620)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (2652)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (2708)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2132)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (3108)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (3172)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3564)
Stoppé! C:\Windows\system32\taskhost.exe (3520)
Stoppé! C:\Windows\System32\hkcmd.exe (4860)
Stoppé! C:\Windows\System32\igfxpers.exe (4868)
Stoppé! C:\Program Files\IDT\WDM\sttray64.exe (5004)
Stoppé! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (5040)
Stoppé! C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (4716)
Stoppé! C:\Windows\system32\taskeng.exe (1608)
Stoppé! C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (5144)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (5592)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (5600)
Stoppé! C:\Users\Paulette\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (5964)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (5980)
Stoppé! C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe (6112)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (1404)
Stoppé! C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (5208)
Stoppé! C:\Program Files (x86)\CyberLink\Shared files\brs.exe (5216)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (5220)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (5336)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (2776)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (2972)
Stoppé! C:\Program Files (x86)\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe (5576)
Stoppé! C:\Program Files\AVAST Software\Avast\AvastUI.exe (4764)
Stoppé! C:\Program Files (x86)\Winamp\winampa.exe (4772)
Stoppé! C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (4740)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (5864)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (5936)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (5292)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2600)
Stoppé! C:\Windows\SysWOW64\RunDll32.exe (6400)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (6780)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7080)
Stoppé! C:\Windows\system32\DllHost.exe (7116)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7508)
Stoppé! C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (7256)
Stoppé! C:\Windows\SysWOW64\schtasks.exe (7200)
Stoppé! C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (2052)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (7952)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (7156)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (200)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (7816)
Stoppé! C:\Windows\system32\SearchIndexer.exe (3156)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (7780)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (7004)
Stoppé! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (5572)
Stoppé! C:\Program Files (x86)\HP SimplePass\BioMonitor.exe (7856)
Stoppé! C:\Program Files (x86)\HP SimplePass\TouchControl.exe (2244)
Stoppé! C:\Windows\system32\sppsvc.exe (9528)
################## | Éléments infectieux |
Supprimé! C:\Windows\Temp\contentDATs.exe
Supprimé! C:\Windows\Temp\SecurityScan_Release.exe
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-1615837614-4109541892-4229532587-500
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-501
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-501
Supprimé! G:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx
Supprimé! G:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
Supprimé! G:\Images.exe
Supprimé! G:\Recycled.exe
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Mountpoints2 |
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{5506a481-f1b3-11e1-9d5e-c01885fca1aa}
################## | Listing |
[18/01/2013 - 13:34:12 | SHD ] C:\$RECYCLE.BIN
[03/07/2012 - 19:27:42 | D ] C:\AuthLog
[25/02/2012 - 00:19:28 | SHD ] C:\boot
[21/11/2010 - 04:23:51 | RASH | 383786] C:\bootmgr
[14/07/2009 - 06:08:56 | SHD ] C:\Documents and Settings
[16/01/2013 - 23:18:30 | D ] C:\Downloads
[24/08/2007 - 13:24:08 | N | 16138240] C:\HALionOne.dll
[17/01/2013 - 19:13:18 | ASH | 6363262976] C:\hiberfil.sys
[24/02/2012 - 14:57:03 | D ] C:\HP
[15/04/2012 - 10:52:33 | D ] C:\Intel
[06/08/2012 - 22:36:35 | RHD ] C:\MSOCache
[04/07/2012 - 19:58:43 | D ] C:\NVIDIA
[17/01/2013 - 19:13:22 | ASH | 8484352000] C:\pagefile.sys
[14/07/2009 - 04:20:08 | D ] C:\PerfLogs
[26/12/2012 - 16:45:34 | D ] C:\Program Files
[17/01/2013 - 19:26:44 | D ] C:\Program Files (x86)
[26/12/2012 - 16:56:05 | HD ] C:\ProgramData
[03/07/2012 - 19:16:07 | SHD ] C:\Recovery
[06/01/2013 - 17:19:53 | D ] C:\Sons
[16/11/2012 - 13:53:03 | D ] C:\SWSetup
[18/01/2013 - 13:15:59 | SHD ] C:\System Volume Information
[03/07/2012 - 19:16:13 | D ] C:\SYSTEM.SAV
[16/09/2012 - 11:12:25 | D ] C:\temp
[18/01/2013 - 13:34:14 | D ] C:\UsbFix
[18/01/2013 - 13:31:31 | A | 15755] C:\UsbFix.txt
[19/10/2012 - 15:18:41 | N | 545] C:\user.js
[11/09/2012 - 15:36:52 | D ] C:\Users
[17/01/2013 - 19:25:07 | D ] C:\Windows
[18/01/2013 - 13:34:13 | SHD ] D:\$RECYCLE.BIN
[03/07/2012 - 19:19:27 | RASHD ] D:\boot
[14/07/2009 - 19:39:00 | RASH | 383562] D:\bootmgr
[23/05/2010 - 13:55:46 | RASH | 67] D:\Desktop.ini
[03/07/2012 - 19:19:28 | D ] D:\FactoryUpdate
[03/07/2012 - 19:19:27 | D ] D:\hp
[06/07/2012 - 12:16:48 | N | 19] D:\HPSF_Rep.txt
[03/07/2012 - 19:17:33 | N | 8] D:\HP_WSD.dat
[03/07/2012 - 19:19:27 | RSHD ] D:\preload
[03/07/2012 - 19:19:27 | RSD ] D:\recovery
[03/07/2012 - 19:19:28 | D ] D:\RM_Reserve
[09/09/2012 - 11:21:58 | SHD ] D:\System Volume Information
[02/09/2010 - 02:22:22 | D ] G:\SamsungSoftware
[03/07/2012 - 18:40:42 | D ] G:\DOCS DIVERS
[22/07/2011 - 16:50:42 | D ] G:\.Trash-1000
[21/12/2011 - 23:18:14 | N | 88735744] G:\.goutputstream-X6VU6V
[03/07/2012 - 18:24:16 | D ] G:\IMAGES
[25/12/2010 - 00:33:10 | SHD ] G:\$RECYCLE.BIN
[18/11/2012 - 18:16:42 | D ] G:\.fseventsd
[03/07/2012 - 18:26:54 | D ] G:\MUSIQUE
[26/02/2012 - 20:05:12 | N | 4096] G:\._.Trashes
[18/04/2012 - 10:34:42 | D ] G:\SERIES
[25/12/2010 - 00:57:20 | SHD ] G:\System Volume Information
[26/02/2012 - 20:05:12 | HD ] G:\.Trashes
[03/07/2012 - 18:29:30 | D ] G:\FILMS
[25/12/2010 - 01:45:24 | D ] G:\Recycled
[26/02/2012 - 20:05:14 | D ] G:\.Spotlight-V100
[18/11/2012 - 18:24:18 | N | 4096] G:\._Un Prophete.mp4
[17/04/2011 - 18:41:22 | D ] G:\DOCUMENTS
[18/11/2012 - 18:23:22 | D ] G:\THE KILLS
[24/07/2012 - 13:29:12 | D ] G:\Pictures
[02/11/2012 - 00:54:40 | N | 174] G:\.SBSettings.xml
[02/11/2012 - 17:12:18 | D ] G:\Films Lucile
[12/12/2012 - 21:17:34 | N | 746004480] G:\V-The.Empire.Strikes.Back[1980]DvDrip-aXXo.avi
[12/12/2012 - 21:28:00 | N | 722001920] G:\IV-A.New.Hope[1977]DvDrip-aXXo.avi
[12/12/2012 - 21:23:24 | N | 792565760] G:\VI-Return.Of.The.Jedi[1983]DvDrip-aXXo.avi
[03/09/2012 - 19:20:06 | N | 550988226] G:\turbines.avi
[31/12/2012 - 16:18:44 | N | 1586876] G:\SamsungSoftware.exe
[31/12/2012 - 16:18:44 | N | 1586876] G:\.Trash-1000.exe
[31/12/2012 - 16:18:46 | RSHD ] G:\RECYCLER
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | Upload |
Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_PAULETTE-HP.zip
http://eldesaparecido.com/upload.php
Merci de votre contribution.
################## | E.O.F |
Voilà !
Alors, je copie tout le rapport !
############################## | UsbFix V 7.102 | [Suppression]
Utilisateur: Paulette (Administrateur) # PAULETTE-HP
Mis à jour le 20/12/2012 par El Desaparecido
Lancé à 13:31:24 | 18/01/2013
Site Web: https://www.sosvirus.net/
Contact: contact@eldesaparecido.com
PC: Hewlett-Packard (HP Pavilion dv7 Notebook PC) (x64-based PC
CPU: Intel(R) Core(TM) i7-3610QM CPU @ 2.30GHz (2301)
RAM -> [Total : 8091 | Free : 4158]
BIOS: InsydeH2O Version 03.71.51F.07
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: avast! Antivirus [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 909 Go (699 Go libre(s) - 77%) [] # NTFS
D:\ -> Disque fixe # 22 Go (2 Go libre(s) - 11%) [Recovery] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disque fixe # 466 Go (97 Go libre(s) - 21%) [SAMSUNG] # FAT32
################## | Processus Actif |
C:\Windows\system32\csrss.exe (680)
C:\Windows\system32\wininit.exe (832)
C:\Windows\system32\csrss.exe (852)
C:\Windows\system32\winlogon.exe (896)
C:\Windows\system32\services.exe (940)
C:\Windows\system32\lsass.exe (960)
C:\Windows\system32\lsm.exe (968)
C:\Windows\system32\svchost.exe (500)
C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (652)
C:\Windows\system32\nvvsvc.exe (1004)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\System32\svchost.exe (1124)
C:\Windows\System32\svchost.exe (1168)
C:\Windows\system32\svchost.exe (1228)
C:\Program Files\IDT\WDM\STacSV64.exe (1256)
C:\Windows\system32\svchost.exe (1468)
C:\Windows\system32\Hpservice.exe (1528)
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (1720)
C:\Windows\system32\nvvsvc.exe (1732)
C:\Windows\System32\WUDFHost.exe (1816)
C:\Windows\system32\svchost.exe (1988)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1344)
C:\Windows\system32\WLANExt.exe (1364)
C:\Windows\system32\conhost.exe (1380)
C:\Windows\System32\spoolsv.exe (1956)
C:\Windows\system32\svchost.exe (2076)
C:\Windows\system32\svchost.exe (2112)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (2248)
C:\Program Files\Bonjour\mDNSResponder.exe (2272)
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (2308)
C:\Windows\SysWOW64\ezSharedSvcHost.exe (2416)
C:\Windows\system32\svchost.exe (2480)
C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (2508)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (2536)
C:\Program Files\IB Updater\ExtensionUpdaterService.exe (2564)
C:\Program Files\Intel\iCLS Client\HeciServer.exe (2620)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (2652)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (2708)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2132)
C:\Windows\system32\svchost.exe (2744)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (3108)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (3172)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (3408)
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3564)
C:\Windows\system32\svchost.exe (3888)
C:\Windows\system32\svchost.exe (3992)
C:\Windows\system32\taskhost.exe (3520)
C:\Windows\system32\Dwm.exe (3816)
C:\Windows\Explorer.EXE (2396)
C:\Windows\System32\hkcmd.exe (4860)
C:\Windows\System32\igfxpers.exe (4868)
C:\Program Files\IDT\WDM\sttray64.exe (5004)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (5040)
C:\Windows\system32\wbem\wmiprvse.exe (4936)
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (4716)
C:\Windows\system32\taskeng.exe (1608)
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (5144)
C:\Windows\system32\wbem\unsecapp.exe (5456)
C:\Program Files\Windows Media Player\wmpnetwk.exe (5592)
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (5600)
C:\Users\Paulette\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (5964)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (5980)
C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe (6112)
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (1404)
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (5208)
C:\Program Files (x86)\CyberLink\Shared files\brs.exe (5216)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (5220)
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (5336)
C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (2776)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (2972)
C:\Program Files (x86)\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe (5576)
C:\Program Files\AVAST Software\Avast\AvastUI.exe (4764)
C:\Program Files (x86)\Winamp\winampa.exe (4772)
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (4740)
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (5864)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (5936)
C:\Program Files\iPod\bin\iPodService.exe (5292)
C:\Windows\System32\svchost.exe (2992)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2600)
C:\Windows\SysWOW64\RunDll32.exe (6400)
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (6780)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7080)
C:\Windows\system32\DllHost.exe (7116)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7508)
C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (7256)
C:\Windows\SysWOW64\schtasks.exe (7200)
C:\Windows\system32\conhost.exe (7368)
C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (2052)
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (7952)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (7156)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (200)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (7816)
C:\Windows\System32\svchost.exe (6700)
C:\Windows\system32\SearchIndexer.exe (3156)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (7780)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (7004)
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (5572)
C:\Program Files (x86)\HP SimplePass\BioMonitor.exe (7856)
C:\Program Files (x86)\HP SimplePass\TouchControl.exe (2244)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5512)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5692)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5448)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6020)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (4788)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9032)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7652)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6096)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6056)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (4932)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (5804)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7580)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9796)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (10016)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (10100)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (9524)
C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (6124)
C:\Windows\system32\sppsvc.exe (9528)
C:\UsbFix\Go.exe (5508)
C:\Windows\system32\wbem\wmiprvse.exe (3484)
################## | Processus Stoppés |
Stoppé! C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe (652)
Stoppé! C:\Windows\system32\nvvsvc.exe (1004)
Stoppé! C:\Program Files\IDT\WDM\STacSV64.exe (1256)
Stoppé! C:\Windows\system32\Hpservice.exe (1528)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (1720)
Stoppé! C:\Windows\system32\nvvsvc.exe (1732)
Stoppé! C:\Windows\System32\WUDFHost.exe (1816)
Stoppé! C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1344)
Stoppé! C:\Windows\system32\WLANExt.exe (1364)
Stoppé! C:\Windows\System32\spoolsv.exe (1956)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (2248)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (2272)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (2308)
Stoppé! C:\Windows\SysWOW64\ezSharedSvcHost.exe (2416)
Stoppé! C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (2508)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (2536)
Stoppé! C:\Program Files\IB Updater\ExtensionUpdaterService.exe (2564)
Stoppé! C:\Program Files\Intel\iCLS Client\HeciServer.exe (2620)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (2652)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (2708)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2132)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (3108)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (3172)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3564)
Stoppé! C:\Windows\system32\taskhost.exe (3520)
Stoppé! C:\Windows\System32\hkcmd.exe (4860)
Stoppé! C:\Windows\System32\igfxpers.exe (4868)
Stoppé! C:\Program Files\IDT\WDM\sttray64.exe (5004)
Stoppé! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (5040)
Stoppé! C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (4716)
Stoppé! C:\Windows\system32\taskeng.exe (1608)
Stoppé! C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (5144)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (5592)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (5600)
Stoppé! C:\Users\Paulette\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (5964)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (5980)
Stoppé! C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe (6112)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (1404)
Stoppé! C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (5208)
Stoppé! C:\Program Files (x86)\CyberLink\Shared files\brs.exe (5216)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (5220)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (5336)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (2776)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (2972)
Stoppé! C:\Program Files (x86)\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe (5576)
Stoppé! C:\Program Files\AVAST Software\Avast\AvastUI.exe (4764)
Stoppé! C:\Program Files (x86)\Winamp\winampa.exe (4772)
Stoppé! C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (4740)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (5864)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (5936)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (5292)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2600)
Stoppé! C:\Windows\SysWOW64\RunDll32.exe (6400)
Stoppé! C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (6780)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7080)
Stoppé! C:\Windows\system32\DllHost.exe (7116)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (7508)
Stoppé! C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (7256)
Stoppé! C:\Windows\SysWOW64\schtasks.exe (7200)
Stoppé! C:\ProgramData\Browser Manager\2.2.587.187\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\brwmngr.exe (2052)
Stoppé! C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (7952)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (7156)
Stoppé! C:\Users\Paulette\AppData\Local\Google\Chrome\Application\chrome.exe (200)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (7816)
Stoppé! C:\Windows\system32\SearchIndexer.exe (3156)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (7780)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (7004)
Stoppé! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (5572)
Stoppé! C:\Program Files (x86)\HP SimplePass\BioMonitor.exe (7856)
Stoppé! C:\Program Files (x86)\HP SimplePass\TouchControl.exe (2244)
Stoppé! C:\Windows\system32\sppsvc.exe (9528)
################## | Éléments infectieux |
Supprimé! C:\Windows\Temp\contentDATs.exe
Supprimé! C:\Windows\Temp\SecurityScan_Release.exe
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-1615837614-4109541892-4229532587-500
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-501
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2784723681-1775436599-1146150659-501
Supprimé! G:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx
Supprimé! G:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
Supprimé! G:\Images.exe
Supprimé! G:\Recycled.exe
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Mountpoints2 |
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{5506a481-f1b3-11e1-9d5e-c01885fca1aa}
################## | Listing |
[18/01/2013 - 13:34:12 | SHD ] C:\$RECYCLE.BIN
[03/07/2012 - 19:27:42 | D ] C:\AuthLog
[25/02/2012 - 00:19:28 | SHD ] C:\boot
[21/11/2010 - 04:23:51 | RASH | 383786] C:\bootmgr
[14/07/2009 - 06:08:56 | SHD ] C:\Documents and Settings
[16/01/2013 - 23:18:30 | D ] C:\Downloads
[24/08/2007 - 13:24:08 | N | 16138240] C:\HALionOne.dll
[17/01/2013 - 19:13:18 | ASH | 6363262976] C:\hiberfil.sys
[24/02/2012 - 14:57:03 | D ] C:\HP
[15/04/2012 - 10:52:33 | D ] C:\Intel
[06/08/2012 - 22:36:35 | RHD ] C:\MSOCache
[04/07/2012 - 19:58:43 | D ] C:\NVIDIA
[17/01/2013 - 19:13:22 | ASH | 8484352000] C:\pagefile.sys
[14/07/2009 - 04:20:08 | D ] C:\PerfLogs
[26/12/2012 - 16:45:34 | D ] C:\Program Files
[17/01/2013 - 19:26:44 | D ] C:\Program Files (x86)
[26/12/2012 - 16:56:05 | HD ] C:\ProgramData
[03/07/2012 - 19:16:07 | SHD ] C:\Recovery
[06/01/2013 - 17:19:53 | D ] C:\Sons
[16/11/2012 - 13:53:03 | D ] C:\SWSetup
[18/01/2013 - 13:15:59 | SHD ] C:\System Volume Information
[03/07/2012 - 19:16:13 | D ] C:\SYSTEM.SAV
[16/09/2012 - 11:12:25 | D ] C:\temp
[18/01/2013 - 13:34:14 | D ] C:\UsbFix
[18/01/2013 - 13:31:31 | A | 15755] C:\UsbFix.txt
[19/10/2012 - 15:18:41 | N | 545] C:\user.js
[11/09/2012 - 15:36:52 | D ] C:\Users
[17/01/2013 - 19:25:07 | D ] C:\Windows
[18/01/2013 - 13:34:13 | SHD ] D:\$RECYCLE.BIN
[03/07/2012 - 19:19:27 | RASHD ] D:\boot
[14/07/2009 - 19:39:00 | RASH | 383562] D:\bootmgr
[23/05/2010 - 13:55:46 | RASH | 67] D:\Desktop.ini
[03/07/2012 - 19:19:28 | D ] D:\FactoryUpdate
[03/07/2012 - 19:19:27 | D ] D:\hp
[06/07/2012 - 12:16:48 | N | 19] D:\HPSF_Rep.txt
[03/07/2012 - 19:17:33 | N | 8] D:\HP_WSD.dat
[03/07/2012 - 19:19:27 | RSHD ] D:\preload
[03/07/2012 - 19:19:27 | RSD ] D:\recovery
[03/07/2012 - 19:19:28 | D ] D:\RM_Reserve
[09/09/2012 - 11:21:58 | SHD ] D:\System Volume Information
[02/09/2010 - 02:22:22 | D ] G:\SamsungSoftware
[03/07/2012 - 18:40:42 | D ] G:\DOCS DIVERS
[22/07/2011 - 16:50:42 | D ] G:\.Trash-1000
[21/12/2011 - 23:18:14 | N | 88735744] G:\.goutputstream-X6VU6V
[03/07/2012 - 18:24:16 | D ] G:\IMAGES
[25/12/2010 - 00:33:10 | SHD ] G:\$RECYCLE.BIN
[18/11/2012 - 18:16:42 | D ] G:\.fseventsd
[03/07/2012 - 18:26:54 | D ] G:\MUSIQUE
[26/02/2012 - 20:05:12 | N | 4096] G:\._.Trashes
[18/04/2012 - 10:34:42 | D ] G:\SERIES
[25/12/2010 - 00:57:20 | SHD ] G:\System Volume Information
[26/02/2012 - 20:05:12 | HD ] G:\.Trashes
[03/07/2012 - 18:29:30 | D ] G:\FILMS
[25/12/2010 - 01:45:24 | D ] G:\Recycled
[26/02/2012 - 20:05:14 | D ] G:\.Spotlight-V100
[18/11/2012 - 18:24:18 | N | 4096] G:\._Un Prophete.mp4
[17/04/2011 - 18:41:22 | D ] G:\DOCUMENTS
[18/11/2012 - 18:23:22 | D ] G:\THE KILLS
[24/07/2012 - 13:29:12 | D ] G:\Pictures
[02/11/2012 - 00:54:40 | N | 174] G:\.SBSettings.xml
[02/11/2012 - 17:12:18 | D ] G:\Films Lucile
[12/12/2012 - 21:17:34 | N | 746004480] G:\V-The.Empire.Strikes.Back[1980]DvDrip-aXXo.avi
[12/12/2012 - 21:28:00 | N | 722001920] G:\IV-A.New.Hope[1977]DvDrip-aXXo.avi
[12/12/2012 - 21:23:24 | N | 792565760] G:\VI-Return.Of.The.Jedi[1983]DvDrip-aXXo.avi
[03/09/2012 - 19:20:06 | N | 550988226] G:\turbines.avi
[31/12/2012 - 16:18:44 | N | 1586876] G:\SamsungSoftware.exe
[31/12/2012 - 16:18:44 | N | 1586876] G:\.Trash-1000.exe
[31/12/2012 - 16:18:46 | RSHD ] G:\RECYCLER
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | Upload |
Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_PAULETTE-HP.zip
http://eldesaparecido.com/upload.php
Merci de votre contribution.
################## | E.O.F |
Voilà !
juju666
Messages postés
35445
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
5 mai 2017
4 795
18 janv. 2013 à 14:27
18 janv. 2013 à 14:27
OK :-)
Tout est revenu à la normale ?
Tout est revenu à la normale ?
doudoupassi
Messages postés
3
Date d'inscription
vendredi 18 janvier 2013
Statut
Membre
Dernière intervention
18 janvier 2013
18 janv. 2013 à 14:42
18 janv. 2013 à 14:42
J'ai bien l'impression oui !
Merci beaucoup ! :)
Merci beaucoup ! :)
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
juju666
Messages postés
35445
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
5 mai 2017
4 795
18 janv. 2013 à 14:44
18 janv. 2013 à 14:44
Relance USBFix et clique sur désinstaller ;)
@ +
@ +