Clé Usb fichiers raccourcis
ptitboutchou59
Messages postés
2
Statut
Membre
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour a tous voilà je ne m'y connais pas trop donc je ne sais pas si c'étais judicieux de recréer un sujet mais je ne trouvais pas la réponse adéquat à mon problème, je suis débutante en informatique ^^"
J'ai donc mes fichiers qui n'arrêtent pas de se changer en raccourcis sur ma clé usb, j'ai téléchargé USb fix et j'ai obtenu ceci :
############################## | UsbFix V 7.144 | [Suppression]
Utilisateur: Manon (Administrateur) # MANON-PC
Mis à jour le 08/10/2013 par El Desaparecido - Team SosVirus
Lancé à 20:46:45 | 16/10/2013
Site Web: https://www.usbfix.net/
Forum : https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload_malware.php
Contact: https://www.usb-antivirus.com/fr/contact/
PC: ASUSTeK Computer Inc. (K53SD)
CPU: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
RAM -> [Total : 7968 | Free : 2450]
Bios: American Megatrends Inc.
Boot: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 10.0.9200.16635
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 674 Go (167 Go libre(s) - 25%) [OS] # NTFS
D:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disque amovible # 15 Go (14 Go libre(s) - 98%) [MANONBERTIN] # FAT32
################## | Regedit Run |
HKLM\SOFTWARE | Run : [Nuance PDF Reader-reminder] - "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM\SOFTWARE | Run : [ASUSPRP] - "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
HKLM\SOFTWARE | Run : [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
HKLM\SOFTWARE | Run : [SonicMasterTray] - C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKLM\SOFTWARE | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
HKLM\SOFTWARE | Run : [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
HKLM\SOFTWARE | Run : [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
HKLM\SOFTWARE | Run : [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
HKLM\SOFTWARE | Run : [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKLM\SOFTWARE | Run : [CommonToolkitTray] - C:\Program Files (x86)\Fighters\Tray\FightersTray.exe
HKLM\SOFTWARE | Run : [sfagent] - C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe
HKLM\SOFTWARE | Run : [facemoods] - "C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe" /md I
HKLM\SOFTWARE | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Nuance PDF Reader-reminder] - "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM\SOFTWARE\wow6432Node | Run : [ASUSPRP] - "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
HKLM\SOFTWARE\wow6432Node | Run : [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
HKLM\SOFTWARE\wow6432Node | Run : [SonicMasterTray] - C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKLM\SOFTWARE\wow6432Node | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
HKLM\SOFTWARE\wow6432Node | Run : [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
HKLM\SOFTWARE\wow6432Node | Run : [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
HKLM\SOFTWARE\wow6432Node | Run : [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
HKLM\SOFTWARE\wow6432Node | Run : [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKLM\SOFTWARE\wow6432Node | Run : [CommonToolkitTray] - C:\Program Files (x86)\Fighters\Tray\FightersTray.exe
HKLM\SOFTWARE\wow6432Node | Run : [sfagent] - C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe
HKLM\SOFTWARE\wow6432Node | Run : [facemoods] - "C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe" /md I
HKLM\SOFTWARE\wow6432Node | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [uTorrent] - "C:\Users\Manon\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Spotify] - "C:\Users\Manon\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [DAEMON Tools Lite] - "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Spotify Web Helper] - "C:\Users\Manon\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Skype] - "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Akamai NetSession Interface] - "C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [AdobeBridge] -
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [iTunesHelper] - wscript.exe //B "C:\Users\Manon\AppData\Local\Temp\iTunesHelper.vbe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX130"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Intel(R)TCP] - C:\Users\Public\Intel(R)TCP.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1004\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1004\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
################## | Processus Stoppés |
Stoppé! C:\Windows\system32\nvvsvc.exe (ID 892 |ParentID 672)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ID 932 |ParentID 672)
Stoppé! C:\Windows\system32\WLANExt.exe (ID 1304 |ParentID 548)
Stoppé! C:\Windows\system32\FBAgent.exe (ID 1316 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ID 1428 |ParentID 672)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (ID 1452 |ParentID 892)
Stoppé! C:\Windows\system32\nvvsvc.exe (ID 1460 |ParentID 892)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ID 1508 |ParentID 672)
Stoppé! C:\Windows\System32\spoolsv.exe (ID 1824 |ParentID 672)
Stoppé! C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (ID 1872 |ParentID 672)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ID 2056 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe (ID 2164 |ParentID 672)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (ID 2228 |ParentID 672)
Stoppé! C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (ID 2252 |ParentID 672)
Stoppé! C:\Program Files\Intel\WiFi\bin\EvtEng.exe (ID 2304 |ParentID 672)
Stoppé! C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe (ID 2376 |ParentID 672)
Stoppé! C:\Windows\system32\taskhost.exe (ID 2532 |ParentID 672)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (ID 2784 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (ID 2852 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ID 2960 |ParentID 1428)
Stoppé! C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe (ID 2972 |ParentID 2164)
Stoppé! C:\Windows\system32\taskeng.exe (ID 2992 |ParentID 1020)
Stoppé! C:\Program Files\ASUS\P4G\BatteryLife.exe (ID 3048 |ParentID 2992)
Stoppé! C:\Windows\system32\taskeng.exe (ID 3060 |ParentID 1020)
Stoppé! C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ID 1980 |ParentID 2992)
Stoppé! C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe (ID 1368 |ParentID 2992)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ID 456 |ParentID 3060)
Stoppé! c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (ID 2440 |ParentID 3060)
Stoppé! c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (ID 2460 |ParentID 3060)
Stoppé! C:\Windows\System32\igfxtray.exe (ID 2832 |ParentID 2648)
Stoppé! C:\Windows\System32\hkcmd.exe (ID 3076 |ParentID 2648)
Stoppé! C:\Program Files\Elantech\ETDCtrl.exe (ID 3168 |ParentID 2648)
Stoppé! C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (ID 3176 |ParentID 2648)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ID 3184 |ParentID 2648)
Stoppé! C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (ID 3192 |ParentID 2648)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (ID 3216 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\uTorrent\uTorrent.exe (ID 3340 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\Spotify\spotify.exe (ID 3380 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (ID 3412 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Skype\Phone\Skype.exe (ID 3432 |ParentID 2648)
Stoppé! C:\Windows\System32\StikyNot.exe (ID 3440 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe (ID 3448 |ParentID 2648)
Stoppé! C:\Windows\System32\spool\drivers\x64\3\E_IATIHJE.EXE (ID 3548 |ParentID 2648)
Stoppé! C:\Windows\system32\DllHost.exe (ID 3812 |ParentID 800)
Stoppé! C:\Users\Manon\AppData\Roaming\Dropbox\bin\Dropbox.exe (ID 3852 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe (ID 3936 |ParentID 3448)
Stoppé! C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe (ID 3952 |ParentID 3664)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (ID 3968 |ParentID 3664)
Stoppé! C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ID 4092 |ParentID 1316)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ID 4144 |ParentID 3664)
Stoppé! C:\Windows\AsScrPro.exe (ID 4152 |ParentID 1316)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ID 4160 |ParentID 3664)
Stoppé! C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ID 4176 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Fighters\Tray\FightersTray.exe (ID 4184 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe (ID 4200 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ID 4244 |ParentID 3664)
Stoppé! C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (ID 4384 |ParentID 1316)
Stoppé! C:\Windows\SysWOW64\ACEngSvr.exe (ID 4396 |ParentID 800)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ID 4664 |ParentID 1316)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ID 4832 |ParentID 1452)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ID 3980 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\x64\LiveKitLoader64.exe (ID 4876 |ParentID 4200)
Stoppé! C:\Windows\System32\wscript.exe (ID 5840 |ParentID 4224)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (ID 6004 |ParentID 3980)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (ID 6064 |ParentID 6004)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (ID 4640 |ParentID 6064)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ID 2200 |ParentID 672)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\sfus.exe (ID 6032 |ParentID 672)
Stoppé! C:\Program Files (x86)\Fighters\FighterSuiteService.exe (ID 1940 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID 3332 |ParentID 672)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (ID 2496 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID 4780 |ParentID 3332)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (ID 6516 |ParentID 672)
Stoppé! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (ID 6780 |ParentID 672)
Stoppé! C:\Program Files\Trend Micro\Titanium\TiMiniService.exe (ID 7116 |ParentID 672)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (ID 900 |ParentID 672)
Stoppé! C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe (ID 4584 |ParentID 7116)
Stoppé! C:\Program Files\Intel\TurboBoost\TurboBoost.exe (ID 6512 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (ID 6548 |ParentID 672)
Stoppé! C:\Windows\system32\SearchIndexer.exe (ID 4268 |ParentID 672)
Stoppé! C:\Program Files\Elantech\ETDCtrlHelper.exe (ID 7684 |ParentID 3168)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (ID 8764 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ID 5136 |ParentID 2960)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ID 4604 |ParentID 2960)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (ID 9076 |ParentID 2960)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ID 7852 |ParentID 672)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (ID 1640 |ParentID 672)
Stoppé! C:\Windows\system32\wuauclt.exe (ID 6360 |ParentID 1020)
Stoppé! C:\Program Files\Autodesk\Softimage 2014\Application\bin\XSI.exe (ID 9000 |ParentID 9032)
Stoppé! C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe (ID 6436 |ParentID 672)
Stoppé! C:\Windows\system32\prevhost.exe (ID 6236 |ParentID 800)
Stoppé! C:\Program Files\Windows Media Player\wmprph.exe (ID 3108 |ParentID 800)
Stoppé! C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (ID 5472 |ParentID 1904)
Stoppé! C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe (ID 5572 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (ID 8148 |ParentID 5572)
Stoppé! C:\Program Files\Adobe\Adobe Photoshop CS5 (64 Bit)\Photoshop.exe (ID 7028 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (ID 6796 |ParentID 8336)
Stoppé! C:\Windows\SysWOW64\mshta.exe (ID 5452 |ParentID 3456)
Stoppé! C:\Windows\SysWOW64\WScript.exe (ID 7532 |ParentID 5452)
Stoppé! C:\Windows\SysWOW64\explorer.exe (ID 7072 |ParentID 7036)
Stoppé! C:\Users\Public\Intel(TM)SD.exe (ID 6884 |ParentID 7036)
Stoppé! C:\Windows\SYSTEM32\WISPTIS.EXE (ID 1104 |ParentID 548)
Stoppé! C:\Windows\SYSTEM32\WISPTIS.EXE (ID 8312 |ParentID 548)
Stoppé! C:\Windows\System32\WUDFHost.exe (ID 9416 |ParentID 548)
################## | Éléments infectieux |
Supprimé! G:\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Local\Temp\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R)TCP.exe
Supprimé! C:\Users\Manon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Roaming\70DCF656\ak.tmp
Supprimé! C:\Users\Manon\AppData\Roaming\70DCF656
Supprimé! G:\Modelsheet_corbeau.lnk
Supprimé! G:\REF_Graphic_Miniprod.lnk
Supprimé! G:\idée_rendu.lnk
Supprimé! G:\idée_rendu2.lnk
Supprimé! G:\Tenue_MA.lnk
Supprimé! G:\img002.lnk
Supprimé! G:\Modelsheet_corbeau_couleur.lnk
Supprimé! G:\REF_Graphic_Miniprod2.lnk
Supprimé! G:\Tenue_MA2.lnk
Supprimé! G:\Mini_Prod.lnk
Supprimé! G:\Scénario.lnk
Supprimé! G:\Setup_XSI.lnk
Supprimé! G:\3dsmax.lnk
Supprimé! G:\Film.lnk
Supprimé! C:\Users\Public\4zz.VBE
Supprimé! C:\Users\Public\7zz.VBE
Supprimé! C:\Users\Public\Intel(R)TCP.exe
Supprimé! C:\Users\Public\Intel(TM)SD.exe
Supprimé! C:\Users\Manon\AppData\Roaming\Manon-wchelper.dll
Supprimé! C:\Users\Manon\AppData\Local\Temp\Manon7
Supprimé! C:\Users\Manon\AppData\Local\Temp\Manon8
Supprimé! C:\Users\Manon\AppData\Local\Temp\Musiques.pif
Supprimé! C:\Users\Manon\AppData\Local\Temp\Skype.pif
Supprimé! C:\Users\Manon\AppData\Local\Temp\jSugLyCC.vbs
Supprimé! C:\Users\Manon\AppData\Local\Temp\2fdgh.hta
Non supprimé ! F:\Setup.exe
Non supprimé ! F:\autorun.inf
(!) Fichiers temporaires supprimés.
################## | Registre |
Supprimé! HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\Software\Microsoft\Windows\CurrentVersion\Run|iTunesHelper
Supprimé! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|iTunesHelper
Supprimé! HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\Software\Microsoft\Windows\CurrentVersion\Run|Intel(R)TCP
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{d9ad351e-1335-11e3-a053-c86000196d30}
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{fa667e8e-d330-11e2-a66d-c86000196d30}
################## | Listing |
[12/06/2013 - 09:57:43 | SHD ] C:\$Recycle.Bin
[23/07/2013 - 10:01:40 | N | 9861] C:\AdwCleaner[R1].txt
[23/07/2013 - 10:03:07 | N | 9872] C:\AdwCleaner[S1].txt
[11/10/2011 - 13:18:45 | N | 44] C:\ASUS.md5
[19/10/2011 - 06:34:37 | D ] C:\AsusVibeData
[20/09/2013 - 19:20:04 | D ] C:\Autodesk
[29/07/2009 - 08:03:34 | SHD ] C:\Boot
[14/07/2009 - 03:38:58 | RASH | 383562] C:\bootmgr
[29/07/2009 - 08:03:37 | RASH | 8192] C:\BOOTSECT.BAK
[17/06/2013 - 05:35:05 | N | 15042] C:\devlist.txt
[14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
[17/06/2013 - 05:24:02 | D ] C:\eSupport
[17/06/2013 - 05:35:05 | N | 9] C:\Finish.log
[15/10/2013 - 21:09:24 | ASH | 6266335232] C:\hiberfil.sys
[17/06/2013 - 05:14:03 | D ] C:\Intel
[01/11/2011 - 13:22:02 | N | 2621440] C:\K43SD.BIN
[06/12/2011 - 13:27:53 | N | 19] C:\K43SD_K53SD_WIN7.50
[02/11/2011 - 02:52:34 | N | 2621440] C:\K53SD.BIN
[22/07/2013 - 16:12:14 | RHD ] C:\MSOCache
[17/06/2013 - 10:29:12 | D ] C:\NVIDIA
[15/10/2013 - 21:09:29 | ASH | 8355115008] C:\pagefile.sys
[14/07/2009 - 05:20:08 | D ] C:\PerfLogs
[15/10/2013 - 23:23:47 | D ] C:\Program Files
[15/10/2013 - 23:23:47 | D ] C:\Program Files (x86)
[15/10/2013 - 20:33:52 | HD ] C:\ProgramData
[11/06/2013 - 20:39:40 | SHD ] C:\Recovery
[06/12/2011 - 13:27:54 | N | 14] C:\RECOVERY.DAT
[17/06/2013 - 05:17:50 | N | 2555] C:\RHDSetup.log
[11/06/2013 - 21:05:32 | D ] C:\Riot Games
[15/10/2013 - 20:35:01 | SHD ] C:\System Volume Information
[16/10/2013 - 21:01:40 | D ] C:\UsbFix
[16/10/2013 - 21:02:45 | A | 19921] C:\UsbFix [Clean 1] MANON-PC.txt
[17/06/2013 - 10:34:02 | RD ] C:\Users
[18/09/2013 - 17:03:39 | D ] C:\Windows
[28/04/2012 - 19:07:44 | R | 3875964641] D:\ASUSRDVD.002
[28/04/2012 - 18:12:05 | R | 9] D:\BURNENGINE.TXT
[03/06/2011 - 13:36:00 | D ] F:\3rdParty
[03/06/2011 - 13:40:29 | D ] F:\CER
[16/06/2011 - 15:56:11 | D ] F:\Crack
[03/06/2011 - 13:40:34 | D ] F:\Eula
[03/06/2011 - 13:41:04 | D ] F:\MSI
[03/06/2011 - 13:41:07 | D ] F:\NETVerifier
[03/06/2011 - 13:41:08 | D ] F:\NLSDL
[03/06/2011 - 13:41:24 | D ] F:\Setup
[18/01/2011 - 21:50:04 | R | 626600] F:\Setup.exe
[03/06/2011 - 13:41:11 | D ] F:\SetupRes
[22/02/2002 - 21:35:36 | R | 43] F:\autorun.inf
[03/06/2011 - 13:41:35 | D ] F:\en-US
[03/06/2011 - 13:41:48 | D ] F:\ja-JP
[03/06/2011 - 13:51:36 | R | 17143] F:\setup.ini
[03/06/2011 - 13:36:07 | D ] F:\x86
[14/10/2013 - 12:35:12 | D ] G:\Mini_Prod
[14/10/2013 - 12:35:12 | D ] G:\Scénario
[14/10/2013 - 12:33:14 | D ] G:\Setup_XSI
[14/10/2013 - 13:35:50 | N | 711371] G:\Modelsheet_corbeau.ai
[13/10/2013 - 19:43:32 | N | 1413257] G:\REF_Graphic_Miniprod.psd
[14/10/2013 - 12:34:46 | D ] G:\3dsmax
[14/10/2013 - 12:35:46 | D ] G:\Film
[13/10/2013 - 19:50:34 | N | 82912] G:\idée_rendu.jpg
[13/10/2013 - 19:53:40 | N | 132119] G:\idée_rendu2.jpg
[13/10/2013 - 19:49:20 | N | 254544] G:\Modelsheet_corbeau.jpg
[15/10/2013 - 16:34:50 | N | 886405] G:\Tenue_MA.jpg
[15/10/2013 - 16:35:04 | N | 4012716] G:\Tenue_MA.psd
[16/10/2013 - 16:49:46 | N | 761811] G:\img002.jpg
[16/10/2013 - 17:23:54 | N | 1156231] G:\Modelsheet_corbeau_couleur.psd
[16/10/2013 - 17:24:12 | N | 9684736] G:\REF_Graphic_Miniprod2.psd
[16/10/2013 - 17:24:28 | N | 6433968] G:\Tenue_MA2.psd
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | E.O.F | https://www.usbfix.net/ - https://www.sosvirus.net/ |
Merci d'avance pour votre aide c est important car ma clé est un outil de travail
J'ai donc mes fichiers qui n'arrêtent pas de se changer en raccourcis sur ma clé usb, j'ai téléchargé USb fix et j'ai obtenu ceci :
############################## | UsbFix V 7.144 | [Suppression]
Utilisateur: Manon (Administrateur) # MANON-PC
Mis à jour le 08/10/2013 par El Desaparecido - Team SosVirus
Lancé à 20:46:45 | 16/10/2013
Site Web: https://www.usbfix.net/
Forum : https://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload_malware.php
Contact: https://www.usb-antivirus.com/fr/contact/
PC: ASUSTeK Computer Inc. (K53SD)
CPU: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
RAM -> [Total : 7968 | Free : 2450]
Bios: American Megatrends Inc.
Boot: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 10.0.9200.16635
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 674 Go (167 Go libre(s) - 25%) [OS] # NTFS
D:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disque amovible # 15 Go (14 Go libre(s) - 98%) [MANONBERTIN] # FAT32
################## | Regedit Run |
HKLM\SOFTWARE | Run : [Nuance PDF Reader-reminder] - "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM\SOFTWARE | Run : [ASUSPRP] - "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
HKLM\SOFTWARE | Run : [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
HKLM\SOFTWARE | Run : [SonicMasterTray] - C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
HKLM\SOFTWARE | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKLM\SOFTWARE | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
HKLM\SOFTWARE | Run : [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
HKLM\SOFTWARE | Run : [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
HKLM\SOFTWARE | Run : [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
HKLM\SOFTWARE | Run : [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKLM\SOFTWARE | Run : [CommonToolkitTray] - C:\Program Files (x86)\Fighters\Tray\FightersTray.exe
HKLM\SOFTWARE | Run : [sfagent] - C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe
HKLM\SOFTWARE | Run : [facemoods] - "C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe" /md I
HKLM\SOFTWARE | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE\wow6432Node | Run : [Nuance PDF Reader-reminder] - "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM\SOFTWARE\wow6432Node | Run : [ASUSPRP] - "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
HKLM\SOFTWARE\wow6432Node | Run : [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe /S
HKLM\SOFTWARE\wow6432Node | Run : [SonicMasterTray] - C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
HKLM\SOFTWARE\wow6432Node | Run : [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKLM\SOFTWARE\wow6432Node | Run : [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKLM\SOFTWARE\wow6432Node | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
HKLM\SOFTWARE\wow6432Node | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
HKLM\SOFTWARE\wow6432Node | Run : [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
HKLM\SOFTWARE\wow6432Node | Run : [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
HKLM\SOFTWARE\wow6432Node | Run : [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
HKLM\SOFTWARE\wow6432Node | Run : [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKLM\SOFTWARE\wow6432Node | Run : [CommonToolkitTray] - C:\Program Files (x86)\Fighters\Tray\FightersTray.exe
HKLM\SOFTWARE\wow6432Node | Run : [sfagent] - C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe
HKLM\SOFTWARE\wow6432Node | Run : [facemoods] - "C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe" /md I
HKLM\SOFTWARE\wow6432Node | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [uTorrent] - "C:\Users\Manon\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Spotify] - "C:\Users\Manon\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [DAEMON Tools Lite] - "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Spotify Web Helper] - "C:\Users\Manon\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Skype] - "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Akamai NetSession Interface] - "C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [AdobeBridge] -
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [iTunesHelper] - wscript.exe //B "C:\Users\Manon\AppData\Local\Temp\iTunesHelper.vbe"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX130"
HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\SOFTWARE | Run : [Intel(R)TCP] - C:\Users\Public\Intel(R)TCP.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1004\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-21-2191389247-1163193663-3244366440-1004\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
################## | Processus Stoppés |
Stoppé! C:\Windows\system32\nvvsvc.exe (ID 892 |ParentID 672)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ID 932 |ParentID 672)
Stoppé! C:\Windows\system32\WLANExt.exe (ID 1304 |ParentID 548)
Stoppé! C:\Windows\system32\FBAgent.exe (ID 1316 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ID 1428 |ParentID 672)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (ID 1452 |ParentID 892)
Stoppé! C:\Windows\system32\nvvsvc.exe (ID 1460 |ParentID 892)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (ID 1508 |ParentID 672)
Stoppé! C:\Windows\System32\spoolsv.exe (ID 1824 |ParentID 672)
Stoppé! C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (ID 1872 |ParentID 672)
Stoppé! C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ID 2056 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe (ID 2164 |ParentID 672)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (ID 2228 |ParentID 672)
Stoppé! C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (ID 2252 |ParentID 672)
Stoppé! C:\Program Files\Intel\WiFi\bin\EvtEng.exe (ID 2304 |ParentID 672)
Stoppé! C:\Program Files\Autodesk\3ds Max 2014\NVIDIA\Satellite\raysat_3dsmax2014_64server.exe (ID 2376 |ParentID 672)
Stoppé! C:\Windows\system32\taskhost.exe (ID 2532 |ParentID 672)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (ID 2784 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (ID 2852 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ID 2960 |ParentID 1428)
Stoppé! C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe (ID 2972 |ParentID 2164)
Stoppé! C:\Windows\system32\taskeng.exe (ID 2992 |ParentID 1020)
Stoppé! C:\Program Files\ASUS\P4G\BatteryLife.exe (ID 3048 |ParentID 2992)
Stoppé! C:\Windows\system32\taskeng.exe (ID 3060 |ParentID 1020)
Stoppé! C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ID 1980 |ParentID 2992)
Stoppé! C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe (ID 1368 |ParentID 2992)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ID 456 |ParentID 3060)
Stoppé! c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (ID 2440 |ParentID 3060)
Stoppé! c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (ID 2460 |ParentID 3060)
Stoppé! C:\Windows\System32\igfxtray.exe (ID 2832 |ParentID 2648)
Stoppé! C:\Windows\System32\hkcmd.exe (ID 3076 |ParentID 2648)
Stoppé! C:\Program Files\Elantech\ETDCtrl.exe (ID 3168 |ParentID 2648)
Stoppé! C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (ID 3176 |ParentID 2648)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ID 3184 |ParentID 2648)
Stoppé! C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (ID 3192 |ParentID 2648)
Stoppé! C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (ID 3216 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\uTorrent\uTorrent.exe (ID 3340 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\Spotify\spotify.exe (ID 3380 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (ID 3412 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Skype\Phone\Skype.exe (ID 3432 |ParentID 2648)
Stoppé! C:\Windows\System32\StikyNot.exe (ID 3440 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe (ID 3448 |ParentID 2648)
Stoppé! C:\Windows\System32\spool\drivers\x64\3\E_IATIHJE.EXE (ID 3548 |ParentID 2648)
Stoppé! C:\Windows\system32\DllHost.exe (ID 3812 |ParentID 800)
Stoppé! C:\Users\Manon\AppData\Roaming\Dropbox\bin\Dropbox.exe (ID 3852 |ParentID 2648)
Stoppé! C:\Users\Manon\AppData\Local\Akamai\netsession_win.exe (ID 3936 |ParentID 3448)
Stoppé! C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe (ID 3952 |ParentID 3664)
Stoppé! C:\Program Files (x86)\iTunes\iTunesHelper.exe (ID 3968 |ParentID 3664)
Stoppé! C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ID 4092 |ParentID 1316)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ID 4144 |ParentID 3664)
Stoppé! C:\Windows\AsScrPro.exe (ID 4152 |ParentID 1316)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ID 4160 |ParentID 3664)
Stoppé! C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ID 4176 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Fighters\Tray\FightersTray.exe (ID 4184 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe (ID 4200 |ParentID 3664)
Stoppé! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ID 4244 |ParentID 3664)
Stoppé! C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (ID 4384 |ParentID 1316)
Stoppé! C:\Windows\SysWOW64\ACEngSvr.exe (ID 4396 |ParentID 800)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ID 4664 |ParentID 1316)
Stoppé! C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ID 4832 |ParentID 1452)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ID 3980 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\x64\LiveKitLoader64.exe (ID 4876 |ParentID 4200)
Stoppé! C:\Windows\System32\wscript.exe (ID 5840 |ParentID 4224)
Stoppé! C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (ID 6004 |ParentID 3980)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (ID 6064 |ParentID 6004)
Stoppé! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe (ID 4640 |ParentID 6064)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ID 2200 |ParentID 672)
Stoppé! C:\Program Files (x86)\Fighters\SPAMfighter\sfus.exe (ID 6032 |ParentID 672)
Stoppé! C:\Program Files (x86)\Fighters\FighterSuiteService.exe (ID 1940 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID 3332 |ParentID 672)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (ID 2496 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID 4780 |ParentID 3332)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (ID 6516 |ParentID 672)
Stoppé! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (ID 6780 |ParentID 672)
Stoppé! C:\Program Files\Trend Micro\Titanium\TiMiniService.exe (ID 7116 |ParentID 672)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (ID 900 |ParentID 672)
Stoppé! C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe (ID 4584 |ParentID 7116)
Stoppé! C:\Program Files\Intel\TurboBoost\TurboBoost.exe (ID 6512 |ParentID 672)
Stoppé! C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (ID 6548 |ParentID 672)
Stoppé! C:\Windows\system32\SearchIndexer.exe (ID 4268 |ParentID 672)
Stoppé! C:\Program Files\Elantech\ETDCtrlHelper.exe (ID 7684 |ParentID 3168)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (ID 8764 |ParentID 672)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ID 5136 |ParentID 2960)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ID 4604 |ParentID 2960)
Stoppé! C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (ID 9076 |ParentID 2960)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ID 7852 |ParentID 672)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (ID 1640 |ParentID 672)
Stoppé! C:\Windows\system32\wuauclt.exe (ID 6360 |ParentID 1020)
Stoppé! C:\Program Files\Autodesk\Softimage 2014\Application\bin\XSI.exe (ID 9000 |ParentID 9032)
Stoppé! C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe (ID 6436 |ParentID 672)
Stoppé! C:\Windows\system32\prevhost.exe (ID 6236 |ParentID 800)
Stoppé! C:\Program Files\Windows Media Player\wmprph.exe (ID 3108 |ParentID 800)
Stoppé! C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (ID 5472 |ParentID 1904)
Stoppé! C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe (ID 5572 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (ID 8148 |ParentID 5572)
Stoppé! C:\Program Files\Adobe\Adobe Photoshop CS5 (64 Bit)\Photoshop.exe (ID 7028 |ParentID 2648)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (ID 6796 |ParentID 8336)
Stoppé! C:\Windows\SysWOW64\mshta.exe (ID 5452 |ParentID 3456)
Stoppé! C:\Windows\SysWOW64\WScript.exe (ID 7532 |ParentID 5452)
Stoppé! C:\Windows\SysWOW64\explorer.exe (ID 7072 |ParentID 7036)
Stoppé! C:\Users\Public\Intel(TM)SD.exe (ID 6884 |ParentID 7036)
Stoppé! C:\Windows\SYSTEM32\WISPTIS.EXE (ID 1104 |ParentID 548)
Stoppé! C:\Windows\SYSTEM32\WISPTIS.EXE (ID 8312 |ParentID 548)
Stoppé! C:\Windows\System32\WUDFHost.exe (ID 9416 |ParentID 548)
################## | Éléments infectieux |
Supprimé! G:\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Local\Temp\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R)TCP.exe
Supprimé! C:\Users\Manon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iTunesHelper.vbe
Supprimé! C:\Users\Manon\AppData\Roaming\70DCF656\ak.tmp
Supprimé! C:\Users\Manon\AppData\Roaming\70DCF656
Supprimé! G:\Modelsheet_corbeau.lnk
Supprimé! G:\REF_Graphic_Miniprod.lnk
Supprimé! G:\idée_rendu.lnk
Supprimé! G:\idée_rendu2.lnk
Supprimé! G:\Tenue_MA.lnk
Supprimé! G:\img002.lnk
Supprimé! G:\Modelsheet_corbeau_couleur.lnk
Supprimé! G:\REF_Graphic_Miniprod2.lnk
Supprimé! G:\Tenue_MA2.lnk
Supprimé! G:\Mini_Prod.lnk
Supprimé! G:\Scénario.lnk
Supprimé! G:\Setup_XSI.lnk
Supprimé! G:\3dsmax.lnk
Supprimé! G:\Film.lnk
Supprimé! C:\Users\Public\4zz.VBE
Supprimé! C:\Users\Public\7zz.VBE
Supprimé! C:\Users\Public\Intel(R)TCP.exe
Supprimé! C:\Users\Public\Intel(TM)SD.exe
Supprimé! C:\Users\Manon\AppData\Roaming\Manon-wchelper.dll
Supprimé! C:\Users\Manon\AppData\Local\Temp\Manon7
Supprimé! C:\Users\Manon\AppData\Local\Temp\Manon8
Supprimé! C:\Users\Manon\AppData\Local\Temp\Musiques.pif
Supprimé! C:\Users\Manon\AppData\Local\Temp\Skype.pif
Supprimé! C:\Users\Manon\AppData\Local\Temp\jSugLyCC.vbs
Supprimé! C:\Users\Manon\AppData\Local\Temp\2fdgh.hta
Non supprimé ! F:\Setup.exe
Non supprimé ! F:\autorun.inf
(!) Fichiers temporaires supprimés.
################## | Registre |
Supprimé! HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\Software\Microsoft\Windows\CurrentVersion\Run|iTunesHelper
Supprimé! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|iTunesHelper
Supprimé! HKU\S-1-5-21-2191389247-1163193663-3244366440-1001\Software\Microsoft\Windows\CurrentVersion\Run|Intel(R)TCP
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{d9ad351e-1335-11e3-a053-c86000196d30}
Supprimé! HKCU\.\.\.\.\Explorer\MountPoints2\{fa667e8e-d330-11e2-a66d-c86000196d30}
################## | Listing |
[12/06/2013 - 09:57:43 | SHD ] C:\$Recycle.Bin
[23/07/2013 - 10:01:40 | N | 9861] C:\AdwCleaner[R1].txt
[23/07/2013 - 10:03:07 | N | 9872] C:\AdwCleaner[S1].txt
[11/10/2011 - 13:18:45 | N | 44] C:\ASUS.md5
[19/10/2011 - 06:34:37 | D ] C:\AsusVibeData
[20/09/2013 - 19:20:04 | D ] C:\Autodesk
[29/07/2009 - 08:03:34 | SHD ] C:\Boot
[14/07/2009 - 03:38:58 | RASH | 383562] C:\bootmgr
[29/07/2009 - 08:03:37 | RASH | 8192] C:\BOOTSECT.BAK
[17/06/2013 - 05:35:05 | N | 15042] C:\devlist.txt
[14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
[17/06/2013 - 05:24:02 | D ] C:\eSupport
[17/06/2013 - 05:35:05 | N | 9] C:\Finish.log
[15/10/2013 - 21:09:24 | ASH | 6266335232] C:\hiberfil.sys
[17/06/2013 - 05:14:03 | D ] C:\Intel
[01/11/2011 - 13:22:02 | N | 2621440] C:\K43SD.BIN
[06/12/2011 - 13:27:53 | N | 19] C:\K43SD_K53SD_WIN7.50
[02/11/2011 - 02:52:34 | N | 2621440] C:\K53SD.BIN
[22/07/2013 - 16:12:14 | RHD ] C:\MSOCache
[17/06/2013 - 10:29:12 | D ] C:\NVIDIA
[15/10/2013 - 21:09:29 | ASH | 8355115008] C:\pagefile.sys
[14/07/2009 - 05:20:08 | D ] C:\PerfLogs
[15/10/2013 - 23:23:47 | D ] C:\Program Files
[15/10/2013 - 23:23:47 | D ] C:\Program Files (x86)
[15/10/2013 - 20:33:52 | HD ] C:\ProgramData
[11/06/2013 - 20:39:40 | SHD ] C:\Recovery
[06/12/2011 - 13:27:54 | N | 14] C:\RECOVERY.DAT
[17/06/2013 - 05:17:50 | N | 2555] C:\RHDSetup.log
[11/06/2013 - 21:05:32 | D ] C:\Riot Games
[15/10/2013 - 20:35:01 | SHD ] C:\System Volume Information
[16/10/2013 - 21:01:40 | D ] C:\UsbFix
[16/10/2013 - 21:02:45 | A | 19921] C:\UsbFix [Clean 1] MANON-PC.txt
[17/06/2013 - 10:34:02 | RD ] C:\Users
[18/09/2013 - 17:03:39 | D ] C:\Windows
[28/04/2012 - 19:07:44 | R | 3875964641] D:\ASUSRDVD.002
[28/04/2012 - 18:12:05 | R | 9] D:\BURNENGINE.TXT
[03/06/2011 - 13:36:00 | D ] F:\3rdParty
[03/06/2011 - 13:40:29 | D ] F:\CER
[16/06/2011 - 15:56:11 | D ] F:\Crack
[03/06/2011 - 13:40:34 | D ] F:\Eula
[03/06/2011 - 13:41:04 | D ] F:\MSI
[03/06/2011 - 13:41:07 | D ] F:\NETVerifier
[03/06/2011 - 13:41:08 | D ] F:\NLSDL
[03/06/2011 - 13:41:24 | D ] F:\Setup
[18/01/2011 - 21:50:04 | R | 626600] F:\Setup.exe
[03/06/2011 - 13:41:11 | D ] F:\SetupRes
[22/02/2002 - 21:35:36 | R | 43] F:\autorun.inf
[03/06/2011 - 13:41:35 | D ] F:\en-US
[03/06/2011 - 13:41:48 | D ] F:\ja-JP
[03/06/2011 - 13:51:36 | R | 17143] F:\setup.ini
[03/06/2011 - 13:36:07 | D ] F:\x86
[14/10/2013 - 12:35:12 | D ] G:\Mini_Prod
[14/10/2013 - 12:35:12 | D ] G:\Scénario
[14/10/2013 - 12:33:14 | D ] G:\Setup_XSI
[14/10/2013 - 13:35:50 | N | 711371] G:\Modelsheet_corbeau.ai
[13/10/2013 - 19:43:32 | N | 1413257] G:\REF_Graphic_Miniprod.psd
[14/10/2013 - 12:34:46 | D ] G:\3dsmax
[14/10/2013 - 12:35:46 | D ] G:\Film
[13/10/2013 - 19:50:34 | N | 82912] G:\idée_rendu.jpg
[13/10/2013 - 19:53:40 | N | 132119] G:\idée_rendu2.jpg
[13/10/2013 - 19:49:20 | N | 254544] G:\Modelsheet_corbeau.jpg
[15/10/2013 - 16:34:50 | N | 886405] G:\Tenue_MA.jpg
[15/10/2013 - 16:35:04 | N | 4012716] G:\Tenue_MA.psd
[16/10/2013 - 16:49:46 | N | 761811] G:\img002.jpg
[16/10/2013 - 17:23:54 | N | 1156231] G:\Modelsheet_corbeau_couleur.psd
[16/10/2013 - 17:24:12 | N | 9684736] G:\REF_Graphic_Miniprod2.psd
[16/10/2013 - 17:24:28 | N | 6433968] G:\Tenue_MA2.psd
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | E.O.F | https://www.usbfix.net/ - https://www.sosvirus.net/ |
Merci d'avance pour votre aide c est important car ma clé est un outil de travail
A voir également:
- Clé Usb fichiers raccourcis
- Clé usb non détectée - Guide
- Clé usb - Accueil - Stockage
- Formater clé usb - Guide
- Clé windows 8 - Guide
- Creer cle usb windows 10 - Guide