Répondre à : Disque Dur Externe inaccessible car fichiers transformés en raccourcis 2016-09-08T13:19:03+00:00
DaleCooper
Post count: 0

Merci pour le suivi :-)
Alors voici le rapport OTC: http://cjoint.com/?3KtnRSHIFkh” onclick=”window.open(this.href);return false;
Et le rapport d’USBFix :

############################## | UsbFix V 7.150 | [Deletion]

User: berber (Administrator) # BERBER1
Updated 08/11/2013 by El Desaparecido – Team SosVirus
Started at 13:37:44 | 19/11/2013

Website : http://www.en.usbfix.net” onclick=”window.open(this.href);return false;
Forum : https://www.sosvirus.net/” onclick=”window.open(this.href);return false;
Upload Malware : upload_malware.php
Contact : http://www.en.usbfix.net/contact/” onclick=”window.open(this.href);return false;

PC: Hewlett-Packard (161D)
CPU: Intel(R) Core(TM) i5-2520M CPU @ 2.50GHz
RAM -> [Total : 4030 | Free : 2320]
Bios: Hewlett-Packard
Boot: Normal boot

OS: Microsoft Windows 7 Enterprise (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 10.0.9200.16721
WB: Google Chrome : 31.0.1650.57

SC: Security Center Service [(!) Disabled]
WU: Windows Update Service [(!) Disabled]
AV: McAfee VirusScan Enterprise [Enabled | Updated]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
FW: Windows FireWall Service [(!) Disabled]

C: (%systemdrive%) -> Fixed drive # 466 Gb (374 Mb free – 80%) [PC COE] # NTFS
D: -> CD-ROM
F: -> Fixed drive # 465 Gb (398 Mb free – 86%) [Local Disk] # NTFS

################## | Stopped processes |

Stopped! C:Program FilesIDTWDMSTacSV64.exe (ID: 424 |ParentID: 696)
Stopped! C:Windowssystem32Hpservice.exe (ID: 1244 |ParentID: 696)
Stopped! C:Windowssystem32vcsFPService.exe (ID: 1424 |ParentID: 696)
Stopped! C:WindowsSystem32spoolsv.exe (ID: 1600 |ParentID: 696)
Stopped! C:Program FilesCommon FilesActivIdentityac.sharedstore.exe (ID: 1628 |ParentID: 696)
Stopped! C:Program FilesActivIdentityActivClientacevents.exe (ID: 1756 |ParentID: 1628)
Stopped! C:Program Files (x86)McAfeeEndpoint Encryption for PCSbClientManager.exe (ID: 1912 |ParentID: 696)
Stopped! C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACService.exe (ID: 1944 |ParentID: 696)
Stopped! C:Program FilesIDTWDMAESTSr64.exe (ID: 1968 |ParentID: 696)
Stopped! C:Program FilesLSI SoftModemagr64svc.exe (ID: 1996 |ParentID: 696)
Stopped! C:Program FilesWIDCOMMBluetooth Softwarebtwdins.exe (ID: 2016 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeHost Intrusion PreventionFireSvc.exe (ID: 1120 |ParentID: 696)
Stopped! C:Program FilesMicrosoft Forefront Identity Manager2010Password Reset Client ServicePwdMgmtProxy.exe (ID: 1340 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeHost Intrusion PreventionHIPSCorex64HIPSvc.exe (ID: 1908 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardSharedHPDrvMntSvc.exe (ID: 400 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardHP Hotkey SupportHpHotkeyMonitor.exe (ID: 1660 |ParentID: 696)
Stopped! C:ProgramDataIBUpdaterServiceibsvc.exe (ID: 1676 |ParentID: 696)
Stopped! c:Program Files (x86)Common FilesLightScribeLSSrvc.exe (ID: 2296 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeSiteAdvisor EnterpriseMcSACore.exe (ID: 2336 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeVirusScan Enterprisex64EngineServer.exe (ID: 2360 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeCommon FrameworkFrameworkService.exe (ID: 2392 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeVirusScan EnterpriseVsTskMgr.exe (ID: 2768 |ParentID: 696)
Stopped! C:Windowssystem32mfevtps.exe (ID: 2944 |ParentID: 696)
Stopped! C:Program Files (x86)Common FilesPortrait DisplaysDriverspdisrvc.exe (ID: 2728 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardPC COE 3OV CMSradexecd.exe (ID: 2916 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardPC COE 3OV CMSradsched.exe (ID: 2540 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardPC COE 3OV CMSRadstgms.exe (ID: 3056 |ParentID: 696)
Stopped! C:PROGRA~2HEWLET~1PCCOE3~1OVCMS~1radalert.exe (ID: 2548 |ParentID: 2916)
Stopped! C:Program Files (x86)ProductsTime Servicesvctimehpc.exe (ID: 2672 |ParentID: 696)
Stopped! C:WindowsExplorer.EXE (ID: 3180 |ParentID: 3100)
Stopped! C:Program Files (x86)TeamViewerVersion8TeamViewer_Service.exe (ID: 3296 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeCommon FrameworknaPrdMgr.exe (ID: 3616 |ParentID: 820)
Stopped! C:Program Files (x86)ArcSoftHP Webcam Software SuiteMagic-i Visual Effects 2uCamMonitor.exe (ID: 3692 |ParentID: 696)
Stopped! C:Program Files (x86)Yahoo!SoftwareUpdateYahooAUService.exe (ID: 3740 |ParentID: 696)
Stopped! C:Program Files (x86)YontooY2Desktop.Updater.exe (ID: 1396 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeVirusScan Enterprisex64McShield.exe (ID: 1672 |ParentID: 696)
Stopped! C:Program Files (x86)McAfeeVirusScan Enterprisex64mfeann.exe (ID: 3376 |ParentID: 1672)
Stopped! C:Program Files (x86)McAfeeCommon FrameworkUdaterUI.exe (ID: 4300 |ParentID: 2392)
Stopped! C:Program Files (x86)McAfeeCommon FrameworkMcTray.exe (ID: 4344 |ParentID: 4300)
Stopped! C:Windowsnotepad.exe (ID: 4544 |ParentID: 4396)
Stopped! C:Program FilesActivIdentityActivClientacevents.exe (ID: 4684 |ParentID: 3180)
Stopped! C:Program FilesActivIdentityActivClientaccrdsub.exe (ID: 4692 |ParentID: 3180)
Stopped! C:Program FilesRA2HPHPRAService.exe (ID: 4932 |ParentID: 3180)
Stopped! C:Program FilesSynapticsSynTPSynTPEnh.exe (ID: 5000 |ParentID: 3180)
Stopped! C:WindowsSystem32igfxtray.exe (ID: 5008 |ParentID: 3180)
Stopped! C:WindowsSystem32hkcmd.exe (ID: 5032 |ParentID: 3180)
Stopped! C:WindowsSystem32igfxpers.exe (ID: 4108 |ParentID: 3180)
Stopped! C:Program FilesIDTWDMsttray64.exe (ID: 4232 |ParentID: 3180)
Stopped! C:Program Files (x86)Common FilesLightScribeLightScribeControlPanel.exe (ID: 4444 |ParentID: 3180)
Stopped! C:Program FilesActivIdentityActivClientacsagent.exe (ID: 3936 |ParentID: 3180)
Stopped! C:Program Files (x86)Hewlett-PackardPC COECOEMsgDisplay.exe (ID: 4284 |ParentID: 4460)
Stopped! C:Program FilesWIDCOMMBluetooth SoftwareBTTray.exe (ID: 4248 |ParentID: 3180)
Stopped! C:Program FilesSynapticsSynTPSynTPHelper.exe (ID: 4400 |ParentID: 5000)
Stopped! C:Program Files (x86)HP Button ManagerBM.exe (ID: 4812 |ParentID: 3180)
Stopped! C:ProgramDataU3U3LauncherLaunchU3.exe (ID: 4876 |ParentID: 3180)
Stopped! C:Program Files (x86)Microsoft OfficeOffice12ONENOTEM.EXE (ID: 4888 |ParentID: 3180)
Stopped! C:Program Files (x86)McAfeeHost Intrusion PreventionFireTray.exe (ID: 3836 |ParentID: 4460)
Stopped! C:Program Files (x86)Hewlett-PackardPC COEida.exe (ID: 3960 |ParentID: 4460)
Stopped! C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe (ID: 5124 |ParentID: 4460)
Stopped! C:Program Files (x86)Hewlett-PackardHP HotKey SupportQLBController.exe (ID: 5156 |ParentID: 4460)
Stopped! C:Program Files (x86)SmartClientSmart.exe (ID: 5184 |ParentID: 4460)
Stopped! C:Program Files (x86)SafeBoot Tray ManagerSbTrayManager.exe (ID: 5192 |ParentID: 4460)
Stopped! C:Program Files (x86)McAfeeEndpoint Encryption for PCSbTokWatch.exe (ID: 5320 |ParentID: 4460)
Stopped! C:Program Files (x86)Hewlett-PackardGetITIconGetITShell.exe (ID: 5332 |ParentID: 4460)
Stopped! C:Program Files (x86)GoogleGoogle Desktop SearchGoogleDesktop.exe (ID: 5408 |ParentID: 4460)
Stopped! C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACDaemon.exe (ID: 5416 |ParentID: 4460)
Stopped! C:Program Files (x86)Common FilesArcSoftConnection ServiceBinArcCon.ac (ID: 5476 |ParentID: 5416)
Stopped! C:Program Files (x86)AdobeAcrobat 9.0Acrobatacrotray.exe (ID: 5520 |ParentID: 4460)
Stopped! C:Windowssystem32SearchIndexer.exe (ID: 1020 |ParentID: 696)
Stopped! C:Program Files (x86)Hewlett-PackardSharedhpqWmiEx.exe (ID: 280 |ParentID: 696)
Stopped! C:Windowssystem32DllHost.exe (ID: 3336 |ParentID: 820)
Stopped! C:WindowsSysWOW64RunDll32.exe (ID: 3252 |ParentID: 4248)
Stopped! C:Program FilesWIDCOMMBluetooth SoftwareBtStackServer.exe (ID: 5500 |ParentID: 820)
Stopped! C:Program FilesWIDCOMMBluetooth SoftwareBluetoothHeadsetProxy.exe (ID: 7008 |ParentID: 5500)
Stopped! C:Program FilesHewlett-PackardHP Wireless AssistantHPWA_Main.exe (ID: 972 |ParentID: 4352)
Stopped! C:Program FilesHewlett-PackardHP Power AssistantHPPA_Main.exe (ID: 6760 |ParentID: 4292)
Stopped! C:Program FilesHewlett-PackardHP Power AssistantHPPA_Service.exe (ID: 6152 |ParentID: 696)
Stopped! C:Program Files (x86)Common FilesPortrait DisplaysDriversSDKCOMServer.exe (ID: 3436 |ParentID: 820)
Stopped! C:Program FilesHewlett-PackardHP Wireless AssistantHPWA_Service.exe (ID: 1800 |ParentID: 696)
Stopped! C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorDataMgrSvc.exe (ID: 924 |ParentID: 696)
Stopped! C:Program Files (x86)Common FilesPortrait DisplaysDriverspdiSdkHelperx64.exe (ID: 7160 |ParentID: 3436)
Stopped! C:WindowsMicrosoft.NetFramework64v3.0WPFPresentationFontCache.exe (ID: 5840 |ParentID: 696)
Stopped! C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe (ID: 3136 |ParentID: 696)
Stopped! C:Windowssystem32sppsvc.exe (ID: 6404 |ParentID: 696)
Stopped! C:Program Files (x86)IntelIntel(R) Management Engine ComponentsUNSUNS.exe (ID: 4240 |ParentID: 696)
Stopped! C:Windowssystem32igfxext.exe (ID: 2320 |ParentID: 820)
Stopped! C:Windowssystem32igfxsrvc.exe (ID: 2648 |ParentID: 820)
Stopped! C:Program Files (x86)Hewlett-PackardSharedhpCaslNotification.exe (ID: 4256 |ParentID: 972)
Stopped! \?C:Windowssystem32wbemWMIADAP.EXE (ID: 7700 |ParentID: 508)

################## | Regedit Run |

04 – HKLMSOFTWARE | Run : [COEMsgDisplay] – c:Program Files (x86)Hewlett-PackardPC COECOEMsgDisplay.exe
04 – HKLMSOFTWARE | Run : [ShStatEXE] – “C:Program Files (x86)McAfeeVirusScan EnterpriseSHSTAT.EXE” /STANDALONE
04 – HKLMSOFTWARE | Run : [McAfee Host Intrusion Prevention Tray] – “C:Program Files (x86)McAfeeHost Intrusion PreventionFireTray.exe”
04 – HKLMSOFTWARE | Run : [Adobe Reader Speed Launcher] – “C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe”
04 – HKLMSOFTWARE | Run : [Adobe ARM] – “C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe”
04 – HKLMSOFTWARE | Run : [IDA] – C:Program Files (x86)Hewlett-PackardPC COEIDA.EXE
04 – HKLMSOFTWARE | Run : [IAStorIcon] – C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
04 – HKLMSOFTWARE | Run : [QLBController] – C:Program Files (x86)Hewlett-PackardHP HotKey SupportQLBController.exe /start
04 – HKLMSOFTWARE | Run : [eepc_SmartClient] – C:Program Files (x86)SmartClientSmart.exe
04 – HKLMSOFTWARE | Run : [SafeBootTrayManager] – “C:Program Files (x86)SafeBoot Tray ManagerSbTrayManager.exe”
04 – HKLMSOFTWARE | Run : [SafeBootTokenWatcher] – “C:Program Files (x86)McAfeeEndpoint Encryption for PCSbTokWatch.exe”
04 – HKLMSOFTWARE | Run : [GetITIcon] – C:Program Files (x86)Hewlett-PackardGetITIconGetITShell.exe
04 – HKLMSOFTWARE | Run : [Communicator] – “C:Program Files (x86)Microsoft Lynccommunicator.exe” /fromrunkey
04 – HKLMSOFTWARE | Run : [Google Desktop Search] – “C:Program Files (x86)GoogleGoogle Desktop SearchGoogleDesktop.exe” /startup
04 – HKLMSOFTWARE | Run : [ArcSoft Connection Service] – C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACDaemon.exe
04 – HKLMSOFTWARE | Run : [McAfeeUpdaterUI] – “C:Program Files (x86)McAfeeCommon Frameworkudaterui.exe” /StartedFromRunKey
04 – HKLMSOFTWARE | Run : [Adobe Acrobat Speed Launcher] – “C:Program Files (x86)AdobeAcrobat 9.0AcrobatAcrobat_sl.exe”
04 – HKLMSOFTWARE | Run : [] –
04 – HKLMSOFTWARE | Run : [Acrobat Assistant 8.0] – “C:Program Files (x86)AdobeAcrobat 9.0AcrobatAcrotray.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [COEMsgDisplay] – c:Program Files (x86)Hewlett-PackardPC COECOEMsgDisplay.exe
04 – HKLMSOFTWAREwow6432Node | Run : [ShStatEXE] – “C:Program Files (x86)McAfeeVirusScan EnterpriseSHSTAT.EXE” /STANDALONE
04 – HKLMSOFTWAREwow6432Node | Run : [McAfee Host Intrusion Prevention Tray] – “C:Program Files (x86)McAfeeHost Intrusion PreventionFireTray.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [Adobe Reader Speed Launcher] – “C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [Adobe ARM] – “C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [IDA] – C:Program Files (x86)Hewlett-PackardPC COEIDA.EXE
04 – HKLMSOFTWAREwow6432Node | Run : [IAStorIcon] – C:Program Files (x86)IntelIntel(R) Rapid Storage TechnologyIAStorIcon.exe
04 – HKLMSOFTWAREwow6432Node | Run : [QLBController] – C:Program Files (x86)Hewlett-PackardHP HotKey SupportQLBController.exe /start
04 – HKLMSOFTWAREwow6432Node | Run : [eepc_SmartClient] – C:Program Files (x86)SmartClientSmart.exe
04 – HKLMSOFTWAREwow6432Node | Run : [SafeBootTrayManager] – “C:Program Files (x86)SafeBoot Tray ManagerSbTrayManager.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [SafeBootTokenWatcher] – “C:Program Files (x86)McAfeeEndpoint Encryption for PCSbTokWatch.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [GetITIcon] – C:Program Files (x86)Hewlett-PackardGetITIconGetITShell.exe
04 – HKLMSOFTWAREwow6432Node | Run : [Communicator] – “C:Program Files (x86)Microsoft Lynccommunicator.exe” /fromrunkey
04 – HKLMSOFTWAREwow6432Node | Run : [Google Desktop Search] – “C:Program Files (x86)GoogleGoogle Desktop SearchGoogleDesktop.exe” /startup
04 – HKLMSOFTWAREwow6432Node | Run : [ArcSoft Connection Service] – C:Program Files (x86)Common FilesArcSoftConnection ServiceBinACDaemon.exe
04 – HKLMSOFTWAREwow6432Node | Run : [McAfeeUpdaterUI] – “C:Program Files (x86)McAfeeCommon Frameworkudaterui.exe” /StartedFromRunKey
04 – HKLMSOFTWAREwow6432Node | Run : [Adobe Acrobat Speed Launcher] – “C:Program Files (x86)AdobeAcrobat 9.0AcrobatAcrobat_sl.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [] –
04 – HKLMSOFTWAREwow6432Node | Run : [Acrobat Assistant 8.0] – “C:Program Files (x86)AdobeAcrobat 9.0AcrobatAcrotray.exe”
04 – HKUS-1-5-19SOFTWARE | Run : [Sidebar] – %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-20SOFTWARE | Run : [Sidebar] – %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-21-1957994488-842925246-40105171-559050SOFTWARE | Run : [LightScribe Control Panel] – C:Program Files (x86)Common FilesLightScribeLightScribeControlPanel.exe -hidden
04 – HKUS-1-5-19SOFTWARE | RunOnce : [mctadmin] – C:WindowsSystem32mctadmin.exe
04 – HKUS-1-5-20SOFTWARE | RunOnce : [mctadmin] – C:WindowsSystem32mctadmin.exe

################## | Generic Research |

Deleted ! F:$RECYCLE.BIN.lnk
Deleted ! F:92b598d5c25eaab268d0b4.lnk
Deleted ! F:System Volume Information.lnk
Deleted ! F:TBE.lnk

(!) Temporary files deleted.

################## | Registry |

Repaired ! HKLMSoftwareMicrosoftWindowsCurrentVersionPoliciesSystem|EnableLUA -> 1
Repaired ! HKCUSoftwareMicrosoftWindowsCurrentVersionExplorerAdvanced|Start_ShowMyGames -> 1
Deleted ! HKUS-1-5-21-1957994488-842925246-40105171-559050Software….Mountpoints2{d709baaa-ae5f-11e0-bdf4-806e6f6e6963}

################## | Listing |

[03/09/2012 – 11:03:06 | SHD ] C:$Recycle.Bin
[20/11/2012 – 09:20:36 | N | 268] C:ab_1.gif
[07/11/2012 – 13:52:40 | N | 177] C:BMSetup.log
[14/07/2011 – 23:25:06 | RSHD ] C:Boot
[21/11/2010 – 04:23:51 | RASH | 383786] C:bootmgr
[14/07/2011 – 23:25:07 | RASH | 8192] C:BOOTSECT.BAK
[18/11/2013 – 14:13:06 | N | 3288] C:bootsqm.dat
[20/11/2012 – 09:20:33 | N | 1406] C:cayas2.ico
[20/11/2012 – 09:20:28 | D ] C:Data
[20/11/2012 – 09:20:37 | N | 113] C:del_1.gif
[20/11/2012 – 09:20:36 | N | 304] C:dir.bmp
[14/07/2009 – 06:08:56 | SHD ] C:Documents and Settings
[13/09/2012 – 15:32:29 | D ] C:DriveKey
[20/11/2012 – 09:20:38 | D ] C:e
[20/11/2012 – 09:20:37 | N | 380] C:edu.bmp
[20/11/2012 – 09:20:37 | N | 138] C:flk2.gif
[19/08/2013 – 09:21:01 | D ] C:found.000
[19/11/2013 – 13:33:02 | ASH | 3169579008] C:hiberfil.sys
[20/11/2012 – 09:20:36 | N | 279] C:hj_1.gif
[20/06/2011 – 16:41:59 | D ] C:HP
[03/09/2012 – 11:09:56 | D ] C:HPExperience
[03/09/2012 – 10:46:27 | D ] C:Intel
[03/09/2012 – 11:43:47 | N | 23] C:invalid.txt
[14/11/2013 – 16:03:02 | D ] C:Logs
[20/11/2012 – 09:20:38 | N | 277] C:mov_1.gif
[14/07/2011 – 18:32:04 | RHD ] C:MSOCache
[03/09/2012 – 13:29:59 | D ] C:OCSETUPDIR
[19/11/2013 – 13:33:07 | ASH | 4226105344] C:pagefile.sys
[14/07/2009 – 04:20:08 | D ] C:PerfLogs
[18/11/2013 – 23:38:17 | N | 512] C:PhysicalMBR.bin
[22/05/2013 – 07:52:40 | D ] C:Program Files
[18/11/2013 – 16:08:32 | D ] C:Program Files (x86)
[19/11/2013 – 13:23:13 | HD ] C:ProgramData
[18/11/2013 – 09:15:55 | D ] C:Quarantine
[03/09/2012 – 08:50:36 | SHD ] C:Recovery
[19/11/2013 – 13:23:13 | D ] C:RECYCLER
[03/09/2012 – 11:47:42 | A | 21102592] C:SafeBoot.fs
[03/09/2012 – 11:52:15 | RSH | 589824] C:SafeBoot.rsv
[20/11/2012 – 09:20:35 | N | 235] C:srch_1.gif
[20/11/2012 – 09:20:36 | N | 265] C:srch_ans_1.gif
[20/11/2012 – 09:20:36 | N | 113] C:srch_aud_1.gif
[20/11/2012 – 09:20:35 | N | 112] C:srch_img_1.gif
[20/11/2012 – 09:20:35 | N | 131] C:srch_loc_1.gif
[20/11/2012 – 09:20:37 | N | 284] C:srch_map_1.gif
[20/11/2012 – 09:20:36 | N | 121] C:srch_nws_1.gif
[20/11/2012 – 09:20:35 | N | 123] C:srch_sh_1.gif
[20/11/2012 – 09:20:38 | N | 240] C:srch_site_1.gif
[20/11/2012 – 09:20:37 | N | 273] C:srch_stk_1.gif
[20/11/2012 – 09:20:35 | N | 112] C:srch_vid_1.gif
[20/08/2013 – 08:47:47 | D ] C:ssm
[18/11/2013 – 23:38:00 | SHD ] C:System Volume Information
[03/09/2012 – 08:54:16 | D ] C:system.sav
[29/10/2012 – 17:39:19 | D ] C:TBE Documents
[03/09/2012 – 13:14:19 | D ] C:Temp
[20/11/2012 – 09:20:38 | N | 274] C:trav_1.gif
[19/11/2013 – 13:38:19 | D ] C:UsbFix
[19/11/2013 – 13:39:08 | A | 18138] C:UsbFix [Clean 1] BERBER1.txt
[18/11/2013 – 17:07:27 | N | 18771] C:UsbFix [Scan 1] BERBER1.txt
[03/09/2012 – 11:02:19 | RD ] C:Users
[19/11/2013 – 13:24:51 | D ] C:Windows
[08/10/2012 – 08:27:26 | N | 5136] C:ZLOCAL.EDM
[19/11/2013 – 13:23:12 | D ] C:_OTL
[13/09/2012 – 16:11:31 | SHD ] F:$RECYCLE.BIN
[26/01/2013 – 09:05:03 | D ] F:92b598d5c25eaab268d0b4
[18/11/2013 – 16:18:18 | SHD ] F:System Volume Information
[26/01/2013 – 07:45:44 | D ] F:TBE
[18/11/2013 – 15:27:08 | D ] F:test

################## | Vaccin |

(!) This computer is not vaccinated!

################## | E.O.F | http://www.usbfix.net” onclick=”window.open(this.href);return false; – https://www.sosvirus.net” onclick=”window.open(this.href);return false; |