Recuperations de données sur cle usb
pompom2012
Messages postés
64
Statut
Membre
-
pompom2012 Messages postés 64 Statut Membre -
pompom2012 Messages postés 64 Statut Membre -
Bonjour,
a tous et à toutes j'ai besoin d'aide d'urgence j'ai besoin de l'avis d'un expert,
je possede 2 clés usb ou se trouver fichiers documents photos et surtout mes c.v quand j'ai insérer mes 2 clés usb dans le lecteur de mon pc tout a disparu ( écrans noir paraissant) certainement un virus j'aimerais savoir si il y a un moyen de les recuperer cest tres important un grand merci d'avance à vous tous!
a tous et à toutes j'ai besoin d'aide d'urgence j'ai besoin de l'avis d'un expert,
je possede 2 clés usb ou se trouver fichiers documents photos et surtout mes c.v quand j'ai insérer mes 2 clés usb dans le lecteur de mon pc tout a disparu ( écrans noir paraissant) certainement un virus j'aimerais savoir si il y a un moyen de les recuperer cest tres important un grand merci d'avance à vous tous!
A voir également:
- Recuperations de données sur cle usb
- Clé usb non détectée - Guide
- Fuite données maif - Guide
- Clé usb - Accueil - Stockage
- Formater clé usb - Guide
- Clé windows 8 - Guide
38 réponses
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
############################## | UsbFix V 7.129 | [Suppression]
Utilisateur: moi (Administrateur) # MOI-PC
Mis à jour le 24/06/2013 par El Desaparecido
Lancé à 21:46:16 | 15/08/2013
Site Web: https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload-malware-pour-analyse-t489.html
Contact: contact@sosvirus.net
PC: Packard Bell (EasyNote TJ66 ) (x64-based PC)
CPU: Pentium(R) Dual-Core CPU T4400 @ 2.20GHz (2200)
RAM -> [Total : 4025 | Free : 1544]
BIOS: Ver 1.00PARTTBL
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-Bit) #
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Kaspersky Internet Security [Enabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 454 Go (297 Go libre(s) - 65%) [Packard Bell] # NTFS
D:\ -> CD-ROM
E:\ -> Disque amovible # 2 Go (2 Go libre(s) - 99%) [] # FAT
F:\ -> Disque amovible # 2 Go (96 Mo libre(s) - 5%) [] # FAT
G:\ -> Disque amovible # 2 Go (2 Go libre(s) - 99%) [] # FAT
################## | El Desaparecido Section |
HKLM\SOFTWARE | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE\wow6432Node | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE\wow6432Node | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE\wow6432Node | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE\wow6432Node | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE\wow6432Node | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE\wow6432Node | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE\wow6432Node | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE\wow6432Node | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE\wow6432Node | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Facebook Update] - "C:\Users\moi\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPDLR] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Clavier+] - C:\Users\moi\Downloads\Clavier+\Clavier.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [NokiaPCInternetAccess] - "C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe" /b
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Desk 365] - "C:\Program Files (x86)\Desk 365\desk365.exe" /autorun
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Optimizer Pro] - C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [lollipop] - "c:\users\moi\appdata\local\lollipop\lollipop.exe" lollipop
HKU\S-1-5-18\SOFTWARE | RunOnce : [] -
HKU\S-1-5-18\SOFTWARE | RunOnce : [SPReview] - "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Processus Stoppés |
Stoppé! C:\Program Files (x86)\Desk 365\deskSvc.exe (1216)
Stoppé! C:\Windows\Explorer.EXE (1356)
Stoppé! C:\Windows\System32\spoolsv.exe (1480)
Stoppé! C:\Windows\system32\taskhost.exe (1488)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (1652)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (1680)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (1896)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (1932)
Stoppé! C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (1060)
Stoppé! C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (1348)
Stoppé! C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (1628)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (1292)
Stoppé! C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (2032)
Stoppé! C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (2116)
Stoppé! C:\Program Files\Apoint2K\Apoint.exe (2124)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (2132)
Stoppé! C:\Windows\System32\igfxtray.exe (2140)
Stoppé! C:\Windows\System32\hkcmd.exe (2148)
Stoppé! C:\Windows\System32\igfxpers.exe (2156)
Stoppé! C:\Windows\WindowsMobile\wmdcBase.exe (2176)
Stoppé! C:\Users\moi\Downloads\Clavier+\Clavier.exe (2680)
Stoppé! C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe (2832)
Stoppé! C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (2968)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (3012)
Stoppé! C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe (2112)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (1828)
Stoppé! C:\Program Files (x86)\Samsung\Kies\Kies.exe (2020)
Stoppé! C:\Program Files (x86)\Desk 365\desk365.exe (1872)
Stoppé! C:\Users\moi\AppData\Local\Lollipop\Lollipop.exe (1368)
Stoppé! C:\Users\moi\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe (2308)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (2452)
Stoppé! C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe (1056)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (3228)
Stoppé! C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (3252)
Stoppé! C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (3292)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (3384)
Stoppé! C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (3624)
Stoppé! C:\Windows\system32\SearchIndexer.exe (3936)
Stoppé! C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (3732)
Stoppé! C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (3712)
Stoppé! C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (3704)
Stoppé! C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (3688)
Stoppé! C:\Program Files (x86)\Iminent\Iminent.exe (1668)
Stoppé! C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (444)
Stoppé! C:\Program Files\Apoint2K\HidFind.exe (3612)
Stoppé! C:\Program Files\Apoint2K\Apntex.exe (712)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (3860)
Stoppé! C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe (2660)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (2272)
Stoppé! C:\Windows\system32\conhost.exe (2724)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (4220)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (4728)
Stoppé! C:\Windows\system32\igfxext.exe (4864)
Stoppé! C:\Windows\system32\igfxsrvc.exe (4592)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (5288)
Stoppé! C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe (2228)
Stoppé! C:\Program Files (x86)\Internet Explorer\iexplore.exe (860)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe (2620)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3868)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4444)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3340)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2500)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2628)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4668)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6588)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6024)
Stoppé! C:\Program Files (x86)\Internet Explorer\iexplore.exe (3336)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4528)
Stoppé! C:\Windows\System32\WUDFHost.exe (6516)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (5036)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2584)
################## | Éléments infectieux |
Utilisateur: moi (Administrateur) # MOI-PC
Mis à jour le 24/06/2013 par El Desaparecido
Lancé à 21:46:16 | 15/08/2013
Site Web: https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload-malware-pour-analyse-t489.html
Contact: contact@sosvirus.net
PC: Packard Bell (EasyNote TJ66 ) (x64-based PC)
CPU: Pentium(R) Dual-Core CPU T4400 @ 2.20GHz (2200)
RAM -> [Total : 4025 | Free : 1544]
BIOS: Ver 1.00PARTTBL
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-Bit) #
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Kaspersky Internet Security [Enabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 454 Go (297 Go libre(s) - 65%) [Packard Bell] # NTFS
D:\ -> CD-ROM
E:\ -> Disque amovible # 2 Go (2 Go libre(s) - 99%) [] # FAT
F:\ -> Disque amovible # 2 Go (96 Mo libre(s) - 5%) [] # FAT
G:\ -> Disque amovible # 2 Go (2 Go libre(s) - 99%) [] # FAT
################## | El Desaparecido Section |
HKLM\SOFTWARE | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE\wow6432Node | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE\wow6432Node | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE\wow6432Node | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE\wow6432Node | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE\wow6432Node | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE\wow6432Node | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE\wow6432Node | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE\wow6432Node | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE\wow6432Node | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Facebook Update] - "C:\Users\moi\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPDLR] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Clavier+] - C:\Users\moi\Downloads\Clavier+\Clavier.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [NokiaPCInternetAccess] - "C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe" /b
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Desk 365] - "C:\Program Files (x86)\Desk 365\desk365.exe" /autorun
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Optimizer Pro] - C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [lollipop] - "c:\users\moi\appdata\local\lollipop\lollipop.exe" lollipop
HKU\S-1-5-18\SOFTWARE | RunOnce : [] -
HKU\S-1-5-18\SOFTWARE | RunOnce : [SPReview] - "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Processus Stoppés |
Stoppé! C:\Program Files (x86)\Desk 365\deskSvc.exe (1216)
Stoppé! C:\Windows\Explorer.EXE (1356)
Stoppé! C:\Windows\System32\spoolsv.exe (1480)
Stoppé! C:\Windows\system32\taskhost.exe (1488)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (1652)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (1680)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (1896)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (1932)
Stoppé! C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (1060)
Stoppé! C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (1348)
Stoppé! C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (1628)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (1292)
Stoppé! C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (2032)
Stoppé! C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (2116)
Stoppé! C:\Program Files\Apoint2K\Apoint.exe (2124)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (2132)
Stoppé! C:\Windows\System32\igfxtray.exe (2140)
Stoppé! C:\Windows\System32\hkcmd.exe (2148)
Stoppé! C:\Windows\System32\igfxpers.exe (2156)
Stoppé! C:\Windows\WindowsMobile\wmdcBase.exe (2176)
Stoppé! C:\Users\moi\Downloads\Clavier+\Clavier.exe (2680)
Stoppé! C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe (2832)
Stoppé! C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (2968)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (3012)
Stoppé! C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe (2112)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (1828)
Stoppé! C:\Program Files (x86)\Samsung\Kies\Kies.exe (2020)
Stoppé! C:\Program Files (x86)\Desk 365\desk365.exe (1872)
Stoppé! C:\Users\moi\AppData\Local\Lollipop\Lollipop.exe (1368)
Stoppé! C:\Users\moi\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe (2308)
Stoppé! C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (2452)
Stoppé! C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe (1056)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (3228)
Stoppé! C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (3252)
Stoppé! C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (3292)
Stoppé! C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (3384)
Stoppé! C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (3624)
Stoppé! C:\Windows\system32\SearchIndexer.exe (3936)
Stoppé! C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (3732)
Stoppé! C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (3712)
Stoppé! C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (3704)
Stoppé! C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (3688)
Stoppé! C:\Program Files (x86)\Iminent\Iminent.exe (1668)
Stoppé! C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (444)
Stoppé! C:\Program Files\Apoint2K\HidFind.exe (3612)
Stoppé! C:\Program Files\Apoint2K\Apntex.exe (712)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (3860)
Stoppé! C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe (2660)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (2272)
Stoppé! C:\Windows\system32\conhost.exe (2724)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (4220)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (4728)
Stoppé! C:\Windows\system32\igfxext.exe (4864)
Stoppé! C:\Windows\system32\igfxsrvc.exe (4592)
Stoppé! C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (5288)
Stoppé! C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe (2228)
Stoppé! C:\Program Files (x86)\Internet Explorer\iexplore.exe (860)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe (2620)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3868)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4444)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3340)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2500)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2628)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4668)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6588)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6024)
Stoppé! C:\Program Files (x86)\Internet Explorer\iexplore.exe (3336)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4528)
Stoppé! C:\Windows\System32\WUDFHost.exe (6516)
Stoppé! C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (5036)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2584)
################## | Éléments infectieux |
############################## | UsbFix V 7.129 | [Recherche]
Utilisateur: moi (Administrateur) # MOI-PC
Mis à jour le 24/06/2013 par El Desaparecido
Lancé à 17:12:33 | 14/08/2013
Site Web: https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload-malware-pour-analyse-t489.html
Contact: contact@sosvirus.net
PC: Packard Bell (EasyNote TJ66 ) (x64-based PC)
CPU: Pentium(R) Dual-Core CPU T4400 @ 2.20GHz (2200)
RAM -> [Total : 4025 | Free : 1374]
BIOS: Ver 1.00PARTTBL
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-Bit) #
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Kaspersky Internet Security [Enabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 454 Go (297 Go libre(s) - 65%) [Packard Bell] # NTFS
D:\ -> CD-ROM
E:\ -> Disque amovible # 2 Go (2 Go libre(s) - 100%) [PrivacyZone] # FAT
F:\ -> Disque amovible # 2 Go (96 Mo libre(s) - 5%) [] # FAT
################## | Processus Actif |
C:\Windows\system32\csrss.exe (520)
C:\Windows\system32\wininit.exe (572)
C:\Windows\system32\csrss.exe (608)
C:\Windows\system32\services.exe (648)
C:\Windows\system32\lsass.exe (664)
C:\Windows\system32\lsm.exe (672)
C:\Windows\system32\svchost.exe (784)
C:\Windows\system32\winlogon.exe (864)
C:\Windows\system32\svchost.exe (904)
C:\Windows\System32\svchost.exe (1012)
C:\Windows\System32\svchost.exe (444)
C:\Windows\system32\svchost.exe (452)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\system32\svchost.exe (1112)
C:\Program Files (x86)\Desk 365\deskSvc.exe (1220)
C:\Windows\system32\Dwm.exe (1416)
C:\Windows\System32\spoolsv.exe (1448)
C:\Windows\system32\svchost.exe (1476)
C:\Windows\system32\taskhost.exe (1520)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (1628)
C:\Windows\Explorer.EXE (1720)
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (1964)
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (1984)
C:\Program Files\Apoint2K\Apoint.exe (1992)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (2000)
C:\Windows\System32\igfxtray.exe (2008)
C:\Windows\System32\hkcmd.exe (2040)
C:\Program Files\Bonjour\mDNSResponder.exe (1836)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (2076)
C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (2112)
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (2148)
C:\Windows\System32\igfxpers.exe (2164)
C:\Windows\WindowsMobile\wmdcBase.exe (2172)
C:\Users\moi\Downloads\Clavier+\Clavier.exe (2272)
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe (2320)
C:\Program Files (x86)\Samsung\Kies\Kies.exe (2440)
C:\Program Files (x86)\Desk 365\desk365.exe (2456)
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (2512)
C:\Users\moi\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe (2828)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (2844)
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (2876)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2900)
C:\Windows\system32\svchost.exe (2808)
C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (3028)
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (2992)
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (2780)
C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe (1940)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2540)
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (3080)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (3140)
C:\Windows\system32\SearchIndexer.exe (3360)
C:\Windows\system32\svchost.exe (3536)
C:\Windows\system32\svchost.exe (3608)
C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (3648)
C:\Program Files (x86)\Launch Manager\LManager.exe (3708)
C:\Windows\system32\svchost.exe (3764)
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (4008)
C:\Program Files\Apoint2K\ApMsgFwd.exe (4024)
C:\Program Files\Apoint2K\HidFind.exe (4044)
C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (2576)
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (3172)
C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (3516)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (3776)
C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe (3744)
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (3988)
C:\Program Files\iPod\bin\iPodService.exe (2760)
C:\Windows\System32\svchost.exe (5008)
C:\Program Files (x86)\Internet Explorer\iexplore.exe (4256)
C:\Windows\system32\igfxext.exe (4452)
C:\Windows\system32\igfxsrvc.exe (3908)
C:\Windows\system32\wbem\unsecapp.exe (4576)
C:\Windows\system32\wbem\wmiprvse.exe (2940)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (2436)
C:\Windows\System32\svchost.exe (640)
C:\Program Files\Windows Media Player\wmpnetwk.exe (5340)
C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe (7148)
C:\Windows\system32\taskhost.exe (3356)
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe (3780)
C:\Program Files (x86)\Internet Explorer\iexplore.exe (4632)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (7804)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6428)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6220)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (7308)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (5448)
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (996)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2432)
C:\Program Files\WinRAR\WinRAR.exe (2868)
C:\Windows\System32\WUDFHost.exe (7920)
C:\Users\moi\AppData\Local\V-Safe 100\V-Safe100.exe (7196)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6340)
C:\UsbFix\Go.exe (4552)
C:\Windows\system32\wbem\wmiprvse.exe (6576)
################## | El Desaparecido Section |
HKLM\SOFTWARE | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE\wow6432Node | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE\wow6432Node | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE\wow6432Node | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE\wow6432Node | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE\wow6432Node | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE\wow6432Node | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE\wow6432Node | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE\wow6432Node | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE\wow6432Node | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Facebook Update] - "C:\Users\moi\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPDLR] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Clavier+] - C:\Users\moi\Downloads\Clavier+\Clavier.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [NokiaPCInternetAccess] - "C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe" /b
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Desk 365] - "C:\Program Files (x86)\Desk 365\desk365.exe" /autorun
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Optimizer Pro] - C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [lollipop] - "c:\users\moi\appdata\local\lollipop\lollipop.exe" lollipop
HKU\S-1-5-18\SOFTWARE | RunOnce : [] -
HKU\S-1-5-18\SOFTWARE | RunOnce : [SPReview] - "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Éléments infectieux |
Utilisateur: moi (Administrateur) # MOI-PC
Mis à jour le 24/06/2013 par El Desaparecido
Lancé à 17:12:33 | 14/08/2013
Site Web: https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload-malware-pour-analyse-t489.html
Contact: contact@sosvirus.net
PC: Packard Bell (EasyNote TJ66 ) (x64-based PC)
CPU: Pentium(R) Dual-Core CPU T4400 @ 2.20GHz (2200)
RAM -> [Total : 4025 | Free : 1374]
BIOS: Ver 1.00PARTTBL
BOOT: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-Bit) #
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Kaspersky Internet Security [Enabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 454 Go (297 Go libre(s) - 65%) [Packard Bell] # NTFS
D:\ -> CD-ROM
E:\ -> Disque amovible # 2 Go (2 Go libre(s) - 100%) [PrivacyZone] # FAT
F:\ -> Disque amovible # 2 Go (96 Mo libre(s) - 5%) [] # FAT
################## | Processus Actif |
C:\Windows\system32\csrss.exe (520)
C:\Windows\system32\wininit.exe (572)
C:\Windows\system32\csrss.exe (608)
C:\Windows\system32\services.exe (648)
C:\Windows\system32\lsass.exe (664)
C:\Windows\system32\lsm.exe (672)
C:\Windows\system32\svchost.exe (784)
C:\Windows\system32\winlogon.exe (864)
C:\Windows\system32\svchost.exe (904)
C:\Windows\System32\svchost.exe (1012)
C:\Windows\System32\svchost.exe (444)
C:\Windows\system32\svchost.exe (452)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\system32\svchost.exe (1112)
C:\Program Files (x86)\Desk 365\deskSvc.exe (1220)
C:\Windows\system32\Dwm.exe (1416)
C:\Windows\System32\spoolsv.exe (1448)
C:\Windows\system32\svchost.exe (1476)
C:\Windows\system32\taskhost.exe (1520)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (1628)
C:\Windows\Explorer.EXE (1720)
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (1964)
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (1984)
C:\Program Files\Apoint2K\Apoint.exe (1992)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (2000)
C:\Windows\System32\igfxtray.exe (2008)
C:\Windows\System32\hkcmd.exe (2040)
C:\Program Files\Bonjour\mDNSResponder.exe (1836)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (2076)
C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (2112)
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (2148)
C:\Windows\System32\igfxpers.exe (2164)
C:\Windows\WindowsMobile\wmdcBase.exe (2172)
C:\Users\moi\Downloads\Clavier+\Clavier.exe (2272)
C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe (2320)
C:\Program Files (x86)\Samsung\Kies\Kies.exe (2440)
C:\Program Files (x86)\Desk 365\desk365.exe (2456)
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (2512)
C:\Users\moi\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe (2828)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (2844)
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe (2876)
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (2900)
C:\Windows\system32\svchost.exe (2808)
C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (3028)
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (2992)
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (2780)
C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe (1940)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2540)
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (3080)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (3140)
C:\Windows\system32\SearchIndexer.exe (3360)
C:\Windows\system32\svchost.exe (3536)
C:\Windows\system32\svchost.exe (3608)
C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (3648)
C:\Program Files (x86)\Launch Manager\LManager.exe (3708)
C:\Windows\system32\svchost.exe (3764)
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (4008)
C:\Program Files\Apoint2K\ApMsgFwd.exe (4024)
C:\Program Files\Apoint2K\HidFind.exe (4044)
C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (2576)
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (3172)
C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (3516)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (3776)
C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe (3744)
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (3988)
C:\Program Files\iPod\bin\iPodService.exe (2760)
C:\Windows\System32\svchost.exe (5008)
C:\Program Files (x86)\Internet Explorer\iexplore.exe (4256)
C:\Windows\system32\igfxext.exe (4452)
C:\Windows\system32\igfxsrvc.exe (3908)
C:\Windows\system32\wbem\unsecapp.exe (4576)
C:\Windows\system32\wbem\wmiprvse.exe (2940)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (2436)
C:\Windows\System32\svchost.exe (640)
C:\Program Files\Windows Media Player\wmpnetwk.exe (5340)
C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe (7148)
C:\Windows\system32\taskhost.exe (3356)
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe (3780)
C:\Program Files (x86)\Internet Explorer\iexplore.exe (4632)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (7804)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6428)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6220)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (7308)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (5448)
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (996)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2432)
C:\Program Files\WinRAR\WinRAR.exe (2868)
C:\Windows\System32\WUDFHost.exe (7920)
C:\Users\moi\AppData\Local\V-Safe 100\V-Safe100.exe (7196)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (6340)
C:\UsbFix\Go.exe (4552)
C:\Windows\system32\wbem\wmiprvse.exe (6576)
################## | El Desaparecido Section |
HKLM\SOFTWARE | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE\wow6432Node | Run : [BackupManagerTray] - "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE\wow6432Node | Run : [VideoWebCamera] - "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
HKLM\SOFTWARE\wow6432Node | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [SweetIM] - C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
HKLM\SOFTWARE\wow6432Node | Run : [Sweetpacks Communicator] - C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [Browser companion helper] - C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
HKLM\SOFTWARE\wow6432Node | Run : [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
HKLM\SOFTWARE\wow6432Node | Run : [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\SOFTWARE\wow6432Node | Run : [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Babylon Client] - C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe -AutoStart
HKLM\SOFTWARE\wow6432Node | Run : [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
HKLM\SOFTWARE\wow6432Node | Run : [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Facebook Update] - "C:\Users\moi\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPDLR] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Clavier+] - C:\Users\moi\Downloads\Clavier+\Clavier.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [NokiaPCInternetAccess] - "C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe" /b
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Desk 365] - "C:\Program Files (x86)\Desk 365\desk365.exe" /autorun
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [Optimizer Pro] - C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
HKU\S-1-5-21-4245024854-4222617961-1114164327-1000\SOFTWARE | Run : [lollipop] - "c:\users\moi\appdata\local\lollipop\lollipop.exe" lollipop
HKU\S-1-5-18\SOFTWARE | RunOnce : [] -
HKU\S-1-5-18\SOFTWARE | RunOnce : [SPReview] - "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Éléments infectieux |
Ce ne sont pas les bons rapports, du moins ceux-ci ont été produits en normal, pas en sans échec ...
bah faut le passer en mode sans échec !!!
2 pages déjà pour passer 1 outil, je sens que ça va être long !
2 pages déjà pour passer 1 outil, je sens que ça va être long !
ok jaurai un question a vous poser javais quelques photos que jaiperdu puis recuperer mais quand je lesouvre on me dit cette visionneuse de windows ne peut souvrir ou ne peu safficher un message qui ressemble que fautilfaire merci encore pour tout
Bonjour à tous et à ttes j'ai besoin d'un avis d'un spécialiste voila je vous explique:
j'ai une clé USB sur laquelle j'avais des fichiers c.v...etc visiblement un virus m'a tout enlever le contenu mais quand je met ma clé USB sur un autre ordinateur tout mes fichiers réapparaissent donc je comprends plus rien donc on m'a dit qu'il fallait télécharger un pilote mais le quel et voir si cette information est correcte ou pas donc je vous demande votre avis en vous remerciant tous.
Répondre
j'ai une clé USB sur laquelle j'avais des fichiers c.v...etc visiblement un virus m'a tout enlever le contenu mais quand je met ma clé USB sur un autre ordinateur tout mes fichiers réapparaissent donc je comprends plus rien donc on m'a dit qu'il fallait télécharger un pilote mais le quel et voir si cette information est correcte ou pas donc je vous demande votre avis en vous remerciant tous.
Répondre