Répondre à : virus clé usb et taskemg au démarrage 2016-09-08T13:23:14+00:00
Photo du profil de g3n-h@ckm@ng3n-h@ckm@n
Admin bbPress
Post count: 8314

re :)

j’ai du mal à comprendre pourquoi tu n’as pas laissé les programmes s’installer dans le dossier “Programmes” par défaut au lieu de les installer dans plein de dossiers dans tous les sens….c’est dommage ca déstabilise le systeme.

désinstalle Spybot – Search & Destroy ca sert à rien il detecte pas un elephant dans un couloir
desinstalle ca , ca sert à rien : Autorun Virus Remover 3.3

les infections par support usb n’utilisent pratiquement plus un autorun mais un service pour se lancer.

il y des cracks dans ton pc , à lire :

http://forum.malekal.com/danger-des-cracks-t893.html” onclick=”window.open(this.href);return false;

ta version de windows n’est pas originale :

informations sur les peines et risques encourus :

http://www.commentcamarche.net/faq/2981-j-utilise-une-version-piratee-de-windows” onclick=”window.open(this.href);return false;

==

je te fais quand meme le script pour ne pas que l’infection soit transmise à autrui :

sélectionne ce texte , puis CTRL + C :


Kill::
All

Key::
[HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun]|[Planificateur]
[HKUS-1-5-21-3452680746-145448129-3087113149-1000SOFTWAREMicrosoftWindowsCurrentVersionRun]|[PDT]
[HKLMSOFTWAREMicrosoftShared ToolsMSConfigstartupregPDT]
[HKLMSOFTWAREMicrosoftShared ToolsMSConfigStartUpFolderD:^Users^doums^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^taskeng.exe]
[HKUS-1-5-21-3452680746-145448129-3087113149-1000SOFTWAREMicrosoftInternet ExplorerToolbar]|[Locked]
[HKUS-1-5-21-3452680746-145448129-3087113149-1000SOFTWAREMicrosoftWindowsCurrentVersionExtStats{00000000-12C9-4305-82F9-43058F20E8D2}]
[HKLMSOFTWAREMicrosoftActive SetupInstalled Components{0UOA46XN-M68R-4R75-OMOB-VECKW3TO5BY3}]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components90B0474CB502846DABF6D9B6BD86327]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsBDCA13743A0DE7690AB5849115A0244]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC0EAADEC0B0BEC47056488271833ED1]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components290A1BAC3852561E434EDCF37ADDC650]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components2F51676373E2C8FAFD1C3CB5D0FC6F78]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components32947F291B037BB37F4C94D15C71AFCC]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components364651BA342348B03E7E38A50F61D602]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components3749FA404D1387FD0883E182C92F5AB1]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components4482C36BEE44B81F7D56DABE40984FCE]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components5390087D56653F56BFE40693A70A5A2A]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components5E4ECA347F953199A8B4E5004291F75F]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components61F50ED3728E668469DD5A9B7663EEFF]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6E7CD238FB8934F44AD6D5DDA73F4EB8]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components6F5AD8238986F445D49AC9AE6A9CDD06]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components72798142C6A7CA8AEAFB493E6CA75C3D]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components90F0105370096E802C973171912E5EC9]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Components93098AC90CB9B9D9E0B7DAF98117ABD6]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB0BA626160FBB7AF5AF852DC3D4E8C5C]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsB245A3B6DB9BDEE94D368EAD00DF75C1]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsC0153905C28C684AD92906E7C31D656A]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsDAB70100ACFDAE9CF043224B28091403]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsE71E9BD78DFE557AE8AD19C38A450BD8]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsEF765801CEFE877C538A6FB5CFB97515]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsFB0AD455040F4F919919F27A26A877CA]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18ComponentsFDA9F652221F00D6C071019FF16552A4]
[HKLMSoftwareMicrosoftWindowsCurrentVersionInstallerUserDataS-1-5-18Products4EA42A62D9304AC4784BF238120752FF]
[HKCRApplicationsWinRAR.exe]
[HKLMSoftwareSURVIVAL]
[HKLMSoftwareMicrosoftInternet Explorer]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{38440990-B829-4ACA-B1F5-88110BEA1489}]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{33DA301F-93D5-4121-8981-15EA0741CA57}]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{5BAEE63F-8D43-48F5-A9C0-B5A9647B417F}]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{AFEE1598-13FF-4179-9B73-9EA06BE8CDD7}]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{248B30C6-AB4E-4B7E-B310-75FCD261AB29}]
[HKLMSYSTEMCurrentControlSetServicessharedaccessParametersFirewallPolicyFirewallRules]|[{FBE0C7B4-17A3-4683-A915-AF7936CD04CA}]

File|Fold::
D:Res*
D:33245707047608daac640909
D:UsersdoumsAppDataRoamingMicrosoftWindowsStart MenuProgramsStartuptaskeng.exe
D:UsersdoumsAppDataRoamingE0F404FE
D:UsersdoumsAppDataRoamingPublic
D:ProgramDataSpybot - Search & Destroy
D:Program Filesjavaaa
D:Program Filessearchtxt
D:WindowsSystem32Tasksautooo sd

Clean::
yes

reboot::
yes

Relance Pre_scan puis choisis l’option « Script« L’outil va travailler instantanément
des fenetres noires risquent de clignoter , c’est normal , c’est le programme qui travaille
poste Pre_Script_date_heure.txt qui apparaitra à la racine du disque systeme (généralement c:) en fin de travail