Virus sur Mp3
Résolu
Mizuka
Messages postés
101
Statut
Membre
-
Utilisateur anonyme -
Utilisateur anonyme -
B'soir a tous,
J'ai un mp3 Transcend, du genre qu'on peut lire les Vidéo, lire des textes et écouter de la Muzz..Bref...J'ai mit une toune sur mon mp3 et la toune en question passe son temps a se multiplié et prendre la place des autres tounes... Elle a remplacé mes Vidéos par elle même, et remplacé plusieurs chansons.. En plus ... J'ai beau la supprimé, elle reviens, j'ai fait un scans avec Trojan remover, Symantec antivirus et nada ... rien trouvé de méchant... Quand je défile dessus sa dit quelque chose a propse de getpopupinfo et prend beaucoup de CPU ... Quand je ferme l'application sur Processus, elle reviens en prenant plus de cpu qu'avant ..pour ensuite s'en allé ....
J'ai cherché un peu sur Google mais personne n'a eu sa avec son mp3.. Sa rapport avec dBpowerAMP mais je m'en suis jamais servit...
Bref... Si vous connaissé une solution, merci d'avance ! :)
J'ai un mp3 Transcend, du genre qu'on peut lire les Vidéo, lire des textes et écouter de la Muzz..Bref...J'ai mit une toune sur mon mp3 et la toune en question passe son temps a se multiplié et prendre la place des autres tounes... Elle a remplacé mes Vidéos par elle même, et remplacé plusieurs chansons.. En plus ... J'ai beau la supprimé, elle reviens, j'ai fait un scans avec Trojan remover, Symantec antivirus et nada ... rien trouvé de méchant... Quand je défile dessus sa dit quelque chose a propse de getpopupinfo et prend beaucoup de CPU ... Quand je ferme l'application sur Processus, elle reviens en prenant plus de cpu qu'avant ..pour ensuite s'en allé ....
J'ai cherché un peu sur Google mais personne n'a eu sa avec son mp3.. Sa rapport avec dBpowerAMP mais je m'en suis jamais servit...
Bref... Si vous connaissé une solution, merci d'avance ! :)
A voir également:
- Mp3 virus
- Télécharger musique mp3 gratuitement sur pc - Télécharger - Conversion & Extraction
- Mp3 gain - Télécharger - Édition & Montage
- Virus mcafee - Accueil - Piratage
- Telecharger podcast en mp3 - Guide
- Youtube mp3 - Guide
26 réponses
Bon voila, j'ai tout fermé, laissé mon ordi faire squi fallait, sa redémarré tout seul et sa donne sa...
Et voila les tounes laite sont plus la 0_0 .... J'ouvre mon mp3 et puis piouhh plus une toune de virus ... J'comprend pas vraiment pourquoi en faite ... Le rapport parle pas du tout du lecteur P:/ et tout est arrangé ... Mais vraiment jte dit merci d'avoir tout pris ce temps pour moi :) ! Sans toi/vous, sa aurait tout bouffé mon mp3 .. ( sa l'avait même mangé mes south park :( ..)
(la next time que je vais rebooté l'ordi... mon firefox va t'il remarché? ... il est en mode sans échec sans raison .... )
ComboFix 08-10-04.01 - Owner 2008-10-04 12:38:46.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.412 [GMT -4:00]
Running from: C:\Documents and Settings\Owner\Desktop\Téléchargement\ComboFix.exe
* Created a new restore point
[COLOR=RED][B]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/B][/COLOR]
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
C:\Documents and Settings\All Users\Application Data\SeekmoSA
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSA.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSA_kyf_update.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAAbout.mht
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAau.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAEULA.mht
C:\Documents and Settings\Owner\Application Data\inst.exe
C:\Documents and Settings\Owner\Application Data\Seekmo
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf.dat
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf_nav.dat
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf_navps.dat
C:\WINDOWS\config.ini
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_MCHINJDRV
((((((((((((((((((((((((( Files Created from 2008-09-04 to 2008-10-04 )))))))))))))))))))))))))))))))
.
2008-09-19 22:12 . 2008-09-19 22:12 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Media Player Classic
2008-09-17 16:56 . 2007-09-04 12:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\AviSynth 2.5
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\AML Products
2008-09-17 16:55 . 2008-07-30 15:09 38 --a------ C:\WINDOWS\avisplitter.ini
2008-09-17 16:46 . 2008-09-17 16:46 <DIR> d-------- C:\videooutput
2008-09-15 19:06 . 2008-09-21 20:15 <DIR> d-------- C:\.mtvconvertertmp
2008-09-15 19:03 . 2008-09-15 19:03 <DIR> d-------- C:\Program Files\QT Lite
2008-09-15 19:03 . 2008-09-06 15:09 90,112 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx
2008-09-15 19:03 . 2008-09-06 15:09 57,344 --a------ C:\WINDOWS\system32\QuickTime.qts
2008-09-13 14:01 . 2008-09-13 14:02 <DIR> d-------- C:\Program Files\DivX
2008-09-13 13:58 . 2008-09-13 13:58 <DIR> d-------- C:\Program Files\WinAVI MP4 Converter
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\SlideShow
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\Program Files\Transcend
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\MTVConverter
2008-09-11 22:01 . 2008-09-11 22:04 <DIR> d-------- C:\Program Files\Winamp
2008-09-11 22:01 . 2008-09-11 22:04 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Winamp
2008-09-07 22:30 . 2008-09-07 22:30 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\.Tribler
2008-09-07 22:30 . 2008-09-07 22:30 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\.SwarmPlayer
2008-09-07 22:24 . 2008-09-07 22:30 <DIR> d-------- C:\Program Files\SwarmPlayer
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-04 16:57 --------- d-----w C:\Documents and Settings\Owner\Application Data\uTorrent
2008-10-04 16:56 --------- d-----w C:\Program Files\Symantec AntiVirus
2008-10-03 22:57 --------- d-----w C:\Documents and Settings\Owner\Application Data\mIRC
2008-10-03 22:51 --------- d-----w C:\Program Files\mIRC
2008-10-03 00:41 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-02 22:07 --------- d-----w C:\Program Files\Common Files\DVDVideoSoft
2008-10-02 03:20 --------- d-----w C:\Program Files\Google
2008-09-15 23:03 --------- d-----w C:\Documents and Settings\Owner\Application Data\Apple Computer
2008-09-15 23:03 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-09-11 23:23 --------- d-----w C:\Program Files\LimeWire
2008-09-10 07:05 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-05 22:58 234,778 ----a-w C:\WINDOWS\system32\drivers\fwdrv.err
2008-08-31 04:13 --------- d-----w C:\Documents and Settings\Owner\Application Data\gtk-2.0
2008-08-26 17:45 606,848 ----a-w C:\WINDOWS\flashax.exe
2008-08-26 17:45 503,808 ----a-w C:\WINDOWS\The Cow Cult.scr
2008-08-26 17:45 12,288 ----a-w C:\WINDOWS\impborl.dll
2008-08-26 17:43 587,725 ----a-w C:\WINDOWS\bad_kitty.exe
2008-08-26 17:43 40,960 ----a-w C:\WINDOWS\bad_kitty.dll
2008-08-26 17:43 231,328 ----a-w C:\WINDOWS\bad_kitty.scr
2008-08-25 16:04 --------- d-----w C:\Program Files\StepMania
2008-08-18 04:03 --------- d-----w C:\Documents and Settings\Owner\Application Data\dvdcss
2008-08-11 20:18 --------- d-----w C:\Program Files\UBISOFT
2008-08-06 16:16 --------- d-----w C:\Program Files\Free Audio Pack
2008-08-06 15:47 --------- d-----w C:\Program Files\LitexMedia
2008-08-06 05:15 --------- d-----w C:\Program Files\Trojan Remover
2008-08-06 05:07 --------- d-----w C:\Documents and Settings\Owner\Application Data\Simply Super Software
2008-08-06 05:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-08-06 03:46 --------- d-----w C:\Program Files\GoPets Ltd
2008-08-06 03:33 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Micro Application
2008-08-05 16:29 --------- d-----w C:\Documents and Settings\Owner\Application Data\Micro Application
2008-08-05 16:25 --------- d-----w C:\Program Files\Micro Application
2008-08-05 16:18 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-05 16:18 --------- d-----w C:\Program Files\sixteen tons entertainment
2008-04-27 05:37 204 ----a-w C:\Program Files\2UV0HQ86.bat
2007-05-25 20:09 47,360 ----a-w C:\Documents and Settings\Owner\Application Data\pcouffin.sys
2007-01-16 23:23 0 -c--a-w C:\Documents and Settings\Owner\Application Data\wklnhst.dat
2004-08-04 19:00 94,784 -csh--w C:\WINDOWS\twain.dll
2004-08-04 19:00 50,688 -csh--w C:\WINDOWS\twain_32.dll
2004-08-04 19:00 1,028,096 --sha-w C:\WINDOWS\system32\mfc42.dll
2004-08-04 19:00 54,784 --sh--w C:\WINDOWS\system32\msvcirt.dll
2007-12-04 18:38 550,912 --sha-w C:\WINDOWS\system32\oleaut32.dll
2004-08-04 19:00 83,456 --sh--w C:\WINDOWS\system32\olepro32.dll
2004-08-04 19:00 11,776 --sh--w C:\WINDOWS\system32\regsvr32.exe
.
------- Sigcheck -------
2007-06-13 06:23 975360 9784e0719124e4a23989aef9e7ca02d6 C:\WINDOWS\explorer.exe
2007-06-13 07:26 1033216 7712df0cdde3a5ac89843e61cd5b3658 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2008-04-13 20:12 1033728 12896823fb95bfb3dc9b46bcaedc9923 C:\WINDOWS\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\explorer.exe
2007-06-13 06:23 975360 9784e0719124e4a23989aef9e7ca02d6 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 15360]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2006-11-12 157592]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"RocketDock"="C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe" [2007-03-18 630784]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"uTorrent"="C:\Program Files\uTorrent\uTorrent.exe" [2008-01-29 219952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunKistEM"="C:\Program Files\Digital Media Reader\shwiconem.exe" [2004-11-15 135168]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2002-09-14 212992]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-07-19 52896]
"vptray"="C:\PROGRA~1\SYMANT~1\VPTray.exe" [2006-11-14 125536]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-09-18 7204864]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-09-09 185632]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-07-10 289064]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-07-15 878672]
"nwiz"="nwiz.exe" [2005-09-18 C:\WINDOWS\system32\nwiz.exe]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2005-01-07 C:\WINDOWS\system32\HdAShCut.exe]
"RTHDCPL"="RTHDCPL.EXE" [2005-09-14 C:\WINDOWS\RTHDCPL.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MSACM.msrt24"= msrt24.acm
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
--a------ 2008-07-10 09:47 116040 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2008-07-10 10:51 289064 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
-ra------ 2008-07-30 17:17 21738792 C:\Program Files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Documents and Settings\\Owner\\Desktop\\Bureau\\msnmsgr.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\EA GAMES\\Need for Speed Most Wanted\\speed.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
R1 fwdrv;Firewall Driver;C:\WINDOWS\system32\drivers\fwdrv.sys [2007-04-26 302000]
R1 khips;Kerio HIPS Driver;C:\WINDOWS\system32\drivers\khips.sys [2007-04-26 72624]
R2 SPF4;Sunbelt Personal Firewall 4;C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe [2007-04-26 1234480]
S2 gupdate1c8ebbb13ee7db0;Google Update Service (gupdate1c8ebbb13ee7db0);C:\Program Files\Google\Update\GoogleUpdate.exe [2008-08-28 133104]
S3 SynasUSB;SynasUSB;C:\WINDOWS\system32\drivers\SynasUSB.sys [ ]
.
Contents of the 'Scheduled Tasks' folder
2008-10-04 C:\WINDOWS\Tasks\GoogleUpdateTaskMachine.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2008-08-28 19:45]
.
- - - - ORPHANS REMOVED - - - -
WebBrowser-{8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - (no file)
MSConfigStartUp-QuickTime Task - C:\Program Files\QuickTime\QTTask.exe
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7lexd6zl.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.torrent411.com/
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-04 12:54:26
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
PROCESS: C:\WINDOWS\explorer.exe
-> C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll
-> C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon.dll
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Larousse\Petit Larousse 2008\bin\Hyperappel.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\imapi.exe
.
**************************************************************************
.
Completion time: 2008-10-04 13:12:32 - machine was rebooted
ComboFix-quarantined-files.txt 2008-10-04 17:12:20
ComboFix2.txt 2007-08-07 21:06:56
Pre-Run: 944,648,192 bytes free
Post-Run: 1,140,293,632 bytes free
210 --- E O F --- 2008-09-10 07:05:56
Et voila les tounes laite sont plus la 0_0 .... J'ouvre mon mp3 et puis piouhh plus une toune de virus ... J'comprend pas vraiment pourquoi en faite ... Le rapport parle pas du tout du lecteur P:/ et tout est arrangé ... Mais vraiment jte dit merci d'avoir tout pris ce temps pour moi :) ! Sans toi/vous, sa aurait tout bouffé mon mp3 .. ( sa l'avait même mangé mes south park :( ..)
(la next time que je vais rebooté l'ordi... mon firefox va t'il remarché? ... il est en mode sans échec sans raison .... )
ComboFix 08-10-04.01 - Owner 2008-10-04 12:38:46.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.412 [GMT -4:00]
Running from: C:\Documents and Settings\Owner\Desktop\Téléchargement\ComboFix.exe
* Created a new restore point
[COLOR=RED][B]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/B][/COLOR]
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65
C:\Documents and Settings\All Users\Application Data\SeekmoSA
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSA.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSA_kyf_update.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAAbout.mht
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAau.dat
C:\Documents and Settings\All Users\Application Data\SeekmoSA\SeekmoSAEULA.mht
C:\Documents and Settings\Owner\Application Data\inst.exe
C:\Documents and Settings\Owner\Application Data\Seekmo
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf.dat
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf_nav.dat
C:\Documents and Settings\Owner\Local Settings\Application Data\ydvkdvlxdf_navps.dat
C:\WINDOWS\config.ini
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_MCHINJDRV
((((((((((((((((((((((((( Files Created from 2008-09-04 to 2008-10-04 )))))))))))))))))))))))))))))))
.
2008-09-19 22:12 . 2008-09-19 22:12 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Media Player Classic
2008-09-17 16:56 . 2007-09-04 12:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\AviSynth 2.5
2008-09-17 16:55 . 2008-09-17 16:55 <DIR> d-------- C:\Program Files\AML Products
2008-09-17 16:55 . 2008-07-30 15:09 38 --a------ C:\WINDOWS\avisplitter.ini
2008-09-17 16:46 . 2008-09-17 16:46 <DIR> d-------- C:\videooutput
2008-09-15 19:06 . 2008-09-21 20:15 <DIR> d-------- C:\.mtvconvertertmp
2008-09-15 19:03 . 2008-09-15 19:03 <DIR> d-------- C:\Program Files\QT Lite
2008-09-15 19:03 . 2008-09-06 15:09 90,112 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx
2008-09-15 19:03 . 2008-09-06 15:09 57,344 --a------ C:\WINDOWS\system32\QuickTime.qts
2008-09-13 14:01 . 2008-09-13 14:02 <DIR> d-------- C:\Program Files\DivX
2008-09-13 13:58 . 2008-09-13 13:58 <DIR> d-------- C:\Program Files\WinAVI MP4 Converter
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\SlideShow
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\Program Files\Transcend
2008-09-13 13:51 . 2008-09-13 13:51 <DIR> d-------- C:\MTVConverter
2008-09-11 22:01 . 2008-09-11 22:04 <DIR> d-------- C:\Program Files\Winamp
2008-09-11 22:01 . 2008-09-11 22:04 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Winamp
2008-09-07 22:30 . 2008-09-07 22:30 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\.Tribler
2008-09-07 22:30 . 2008-09-07 22:30 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\.SwarmPlayer
2008-09-07 22:24 . 2008-09-07 22:30 <DIR> d-------- C:\Program Files\SwarmPlayer
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-04 16:57 --------- d-----w C:\Documents and Settings\Owner\Application Data\uTorrent
2008-10-04 16:56 --------- d-----w C:\Program Files\Symantec AntiVirus
2008-10-03 22:57 --------- d-----w C:\Documents and Settings\Owner\Application Data\mIRC
2008-10-03 22:51 --------- d-----w C:\Program Files\mIRC
2008-10-03 00:41 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-02 22:07 --------- d-----w C:\Program Files\Common Files\DVDVideoSoft
2008-10-02 03:20 --------- d-----w C:\Program Files\Google
2008-09-15 23:03 --------- d-----w C:\Documents and Settings\Owner\Application Data\Apple Computer
2008-09-15 23:03 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-09-11 23:23 --------- d-----w C:\Program Files\LimeWire
2008-09-10 07:05 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-05 22:58 234,778 ----a-w C:\WINDOWS\system32\drivers\fwdrv.err
2008-08-31 04:13 --------- d-----w C:\Documents and Settings\Owner\Application Data\gtk-2.0
2008-08-26 17:45 606,848 ----a-w C:\WINDOWS\flashax.exe
2008-08-26 17:45 503,808 ----a-w C:\WINDOWS\The Cow Cult.scr
2008-08-26 17:45 12,288 ----a-w C:\WINDOWS\impborl.dll
2008-08-26 17:43 587,725 ----a-w C:\WINDOWS\bad_kitty.exe
2008-08-26 17:43 40,960 ----a-w C:\WINDOWS\bad_kitty.dll
2008-08-26 17:43 231,328 ----a-w C:\WINDOWS\bad_kitty.scr
2008-08-25 16:04 --------- d-----w C:\Program Files\StepMania
2008-08-18 04:03 --------- d-----w C:\Documents and Settings\Owner\Application Data\dvdcss
2008-08-11 20:18 --------- d-----w C:\Program Files\UBISOFT
2008-08-06 16:16 --------- d-----w C:\Program Files\Free Audio Pack
2008-08-06 15:47 --------- d-----w C:\Program Files\LitexMedia
2008-08-06 05:15 --------- d-----w C:\Program Files\Trojan Remover
2008-08-06 05:07 --------- d-----w C:\Documents and Settings\Owner\Application Data\Simply Super Software
2008-08-06 05:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-08-06 03:46 --------- d-----w C:\Program Files\GoPets Ltd
2008-08-06 03:33 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Micro Application
2008-08-05 16:29 --------- d-----w C:\Documents and Settings\Owner\Application Data\Micro Application
2008-08-05 16:25 --------- d-----w C:\Program Files\Micro Application
2008-08-05 16:18 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-05 16:18 --------- d-----w C:\Program Files\sixteen tons entertainment
2008-04-27 05:37 204 ----a-w C:\Program Files\2UV0HQ86.bat
2007-05-25 20:09 47,360 ----a-w C:\Documents and Settings\Owner\Application Data\pcouffin.sys
2007-01-16 23:23 0 -c--a-w C:\Documents and Settings\Owner\Application Data\wklnhst.dat
2004-08-04 19:00 94,784 -csh--w C:\WINDOWS\twain.dll
2004-08-04 19:00 50,688 -csh--w C:\WINDOWS\twain_32.dll
2004-08-04 19:00 1,028,096 --sha-w C:\WINDOWS\system32\mfc42.dll
2004-08-04 19:00 54,784 --sh--w C:\WINDOWS\system32\msvcirt.dll
2007-12-04 18:38 550,912 --sha-w C:\WINDOWS\system32\oleaut32.dll
2004-08-04 19:00 83,456 --sh--w C:\WINDOWS\system32\olepro32.dll
2004-08-04 19:00 11,776 --sh--w C:\WINDOWS\system32\regsvr32.exe
.
------- Sigcheck -------
2007-06-13 06:23 975360 9784e0719124e4a23989aef9e7ca02d6 C:\WINDOWS\explorer.exe
2007-06-13 07:26 1033216 7712df0cdde3a5ac89843e61cd5b3658 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2008-04-13 20:12 1033728 12896823fb95bfb3dc9b46bcaedc9923 C:\WINDOWS\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\explorer.exe
2007-06-13 06:23 975360 9784e0719124e4a23989aef9e7ca02d6 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 15360]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2006-11-12 157592]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"RocketDock"="C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe" [2007-03-18 630784]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"uTorrent"="C:\Program Files\uTorrent\uTorrent.exe" [2008-01-29 219952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunKistEM"="C:\Program Files\Digital Media Reader\shwiconem.exe" [2004-11-15 135168]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2002-09-14 212992]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-07-19 52896]
"vptray"="C:\PROGRA~1\SYMANT~1\VPTray.exe" [2006-11-14 125536]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-09-18 7204864]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-09-09 185632]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-07-10 289064]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-07-15 878672]
"nwiz"="nwiz.exe" [2005-09-18 C:\WINDOWS\system32\nwiz.exe]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2005-01-07 C:\WINDOWS\system32\HdAShCut.exe]
"RTHDCPL"="RTHDCPL.EXE" [2005-09-14 C:\WINDOWS\RTHDCPL.EXE]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MSACM.msrt24"= msrt24.acm
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
--a------ 2008-07-10 09:47 116040 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2008-07-10 10:51 289064 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
-ra------ 2008-07-30 17:17 21738792 C:\Program Files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Documents and Settings\\Owner\\Desktop\\Bureau\\msnmsgr.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\EA GAMES\\Need for Speed Most Wanted\\speed.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
R1 fwdrv;Firewall Driver;C:\WINDOWS\system32\drivers\fwdrv.sys [2007-04-26 302000]
R1 khips;Kerio HIPS Driver;C:\WINDOWS\system32\drivers\khips.sys [2007-04-26 72624]
R2 SPF4;Sunbelt Personal Firewall 4;C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe [2007-04-26 1234480]
S2 gupdate1c8ebbb13ee7db0;Google Update Service (gupdate1c8ebbb13ee7db0);C:\Program Files\Google\Update\GoogleUpdate.exe [2008-08-28 133104]
S3 SynasUSB;SynasUSB;C:\WINDOWS\system32\drivers\SynasUSB.sys [ ]
.
Contents of the 'Scheduled Tasks' folder
2008-10-04 C:\WINDOWS\Tasks\GoogleUpdateTaskMachine.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2008-08-28 19:45]
.
- - - - ORPHANS REMOVED - - - -
WebBrowser-{8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - (no file)
MSConfigStartUp-QuickTime Task - C:\Program Files\QuickTime\QTTask.exe
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\7lexd6zl.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.torrent411.com/
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-04 12:54:26
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
PROCESS: C:\WINDOWS\explorer.exe
-> C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll
-> C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon.dll
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Larousse\Petit Larousse 2008\bin\Hyperappel.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\imapi.exe
.
**************************************************************************
.
Completion time: 2008-10-04 13:12:32 - machine was rebooted
ComboFix-quarantined-files.txt 2008-10-04 17:12:20
ComboFix2.txt 2007-08-07 21:06:56
Pre-Run: 944,648,192 bytes free
Post-Run: 1,140,293,632 bytes free
210 --- E O F --- 2008-09-10 07:05:56
Et puis j'ai trouvé ca sur mon mp3 :) Sa veut dire que c'est vraiment réglé non ? :D
Checking file system on P:
The type of the file system is FAT32.
One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.
Volume Serial Number is FCA6-B1F7
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
Removing nonvalid long folder entry from \Lisa...
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
Convert lost chains to files (Y/N)? Yes
1648520 KB in 46 recovered files.
Windows has made corrections to the file system.
8166288 KB total disk space.
1804 KB in 187 hidden files.
360 KB in 80 folders.
7239500 KB in 886 files.
924620 KB are available.
4096 bytes in each allocation unit.
2041572 total allocation units on disk.
231155 allocation units available on disk.
Checking file system on P:
The type of the file system is FAT32.
One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.
Volume Serial Number is FCA6-B1F7
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
Removing nonvalid long folder entry from \Lisa...
\Lisa\Aerosmith - Kings And Queens.mp3 first allocation unit is not valid. The entry will be truncated.
Convert lost chains to files (Y/N)? Yes
1648520 KB in 46 recovered files.
Windows has made corrections to the file system.
8166288 KB total disk space.
1804 KB in 187 hidden files.
360 KB in 80 folders.
7239500 KB in 886 files.
924620 KB are available.
4096 bytes in each allocation unit.
2041572 total allocation units on disk.
231155 allocation units available on disk.
Ok il y a du menage de fait !
-Telecharge otmoveit2--> http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
-Sauvegarde le sur ton Bureau.
-Double-Clique sur OTMoveIt.exe pour le lancer.
-Copie le chemin des fichiers suivants en selectionnant TOUT et en appuyant sur CTRL+C (ou, après avoir sélectionner, clique-droit et choisis Copier) :
Legacy_MCHINJDRV
-Retourne dans OTMoveit, fais un clique-droit dans la fenêtre "Paste List of Files/Folders to be moved" et choisis Coller.
-Clique sur le bouton rouge Moveit!.
-Ferme OTMoveIt.
Note : Si un fichier ou un dossier ne peut être déplacer immédiatement il te sera demander de redémarrer ta machine pour finir le processus. Si c'est le cas, choisis Yes.
Poste nous le rapport de OTMoveIT dispo ici : C:\_OTMoveIt\MovedFiles
-Telecharge otmoveit2--> http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
-Sauvegarde le sur ton Bureau.
-Double-Clique sur OTMoveIt.exe pour le lancer.
-Copie le chemin des fichiers suivants en selectionnant TOUT et en appuyant sur CTRL+C (ou, après avoir sélectionner, clique-droit et choisis Copier) :
Legacy_MCHINJDRV
-Retourne dans OTMoveit, fais un clique-droit dans la fenêtre "Paste List of Files/Folders to be moved" et choisis Coller.
-Clique sur le bouton rouge Moveit!.
-Ferme OTMoveIt.
Note : Si un fichier ou un dossier ne peut être déplacer immédiatement il te sera demander de redémarrer ta machine pour finir le processus. Si c'est le cas, choisis Yes.
Poste nous le rapport de OTMoveIT dispo ici : C:\_OTMoveIt\MovedFiles
Demarrer--executer-->regedit-->navigue jusqu'a cette clé:
[-HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV
[-HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\Root\LEGACY_MCHINJDRV
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question