Répondre à : Clés usb infectées 2016-09-08T13:23:48+00:00
Photo du profil de nabou75nabou75
Participant
Post count: 14

Merci de votre réponse rapide!
voici le rapport demandé

############################## | UsbFix V 7.152 | [Suppression]

Utilisateur: Nabou (Administrateur) # NABOU-PC
Mis à jour le 20/11/2013 par El Desaparecido – Team SosVirus
Lancé à 12:35:53 | 07/12/2013

Site Web : http://www.usbfix.net” onclick=”window.open(this.href);return false;
Forum : https://www.sosvirus.net/” onclick=”window.open(this.href);return false;
Upload Malware : upload_malware.php
Contact : http://www.usbfix.net/contact/” onclick=”window.open(this.href);return false;

PC: ASUSTeK Computer Inc. (K50IJ )
CPU: Celeron(R) Dual-Core CPU T3500 @ 2.10GHz
RAM -> [Total : 4061 | Free : 1688]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16428
WB: Google Chrome : 31.0.1650.63
WB: Mozilla Firefox : 25.0.1

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: avast! Antivirus [Enabled | Updated]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
FW: Windows FireWall Service [Enabled]

C: (%systemdrive%) -> Disque fixe # 116 Go (7 Go libre(s) – 6%) [OS] # NTFS
D: -> Disque fixe # 330 Go (33 Go libre(s) – 10%) [Data] # NTFS
E: -> CD-ROM
F: -> Disque amovible # 15 Go (15 Go libre(s) – 99%) [] # FAT32
G: -> Disque amovible # 15 Go (15 Go libre(s) – 98%) [KINGSTON] # FAT32

################## | Processus Stoppés |

Stoppé! C:Program FilesAVAST SoftwareAvastAvastSvc.exe (ID: 1304 |ParentID: 560)
Stoppé! C:Program FilesAVAST SoftwareAvastAvastUI.exe (ID: 2120 |ParentID: 1940)
Stoppé! C:Windowsexplorer.exe (ID: 4528 |ParentID: 520)
Stoppé! C:WindowsSystem32WUDFHost.exe (ID: 2924 |ParentID: 888)
Stoppé! C:WindowsSystem32rundll32.exe (ID: 6108 |ParentID: 668)
Stoppé! C:Program Files (x86)BizzyboltupdateBizzybolt.exe (ID: 3556 |ParentID: 560)
Stoppé! C:Windowssystem32SearchIndexer.exe (ID: 3996 |ParentID: 560)
Stoppé! C:WindowsSystem32spoolsv.exe (ID: 6012 |ParentID: 560)
Stoppé! C:Program Files (x86)Common FilesAppleMobile Device SupportAppleMobileDeviceService.exe (ID: 5568 |ParentID: 560)
Stoppé! C:Windowssystem32DllHost.exe (ID: 3972 |ParentID: 668)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 5760 |ParentID: 4528)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 6724 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 2424 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 1296 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 5924 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 5384 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 6828 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 1892 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 1784 |ParentID: 5760)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 344 |ParentID: 5760)
Stoppé! C:Windowssystem32taskeng.exe (ID: 3632 |ParentID: 940)
Stoppé! C:Program Files (x86)GoogleChromeApplicationchrome.exe (ID: 3752 |ParentID: 5760)
Stoppé! C:Windowssystem32SearchProtocolHost.exe (ID: 2100 |ParentID: 3996)

################## | Regedit Run |

04 – HKLMSOFTWARE | Run : [UpdateLBPShortCut] – “C:Program Files (x86)CyberLinkLabelPrintMUITransferMUIStartMenu.exe” “C:Program Files (x86)CyberLinkLabelPrint” UpdateWithCreateOnce “SoftwareCyberLinkLabelPrint2.5”
04 – HKLMSOFTWARE | Run : [UpdateP2GoShortCut] – “C:Program Files (x86)CyberLinkPower2GoMUITransferMUIStartMenu.exe” “C:Program Files (x86)CyberLinkPower2Go” UpdateWithCreateOnce “SOFTWARECyberLinkPower2Go6.0”
04 – HKLMSOFTWARE | Run : [HDAudDeck] – C:Program Files (x86)VIAVIAudioiVDeckVDeck.exe -r
04 – HKLMSOFTWARE | Run : [HControlUser] – C:Program Files (x86)ASUSATK HotkeyHControlUser.exe
04 – HKLMSOFTWARE | Run : [ATKOSD2] – C:Program Files (x86)ASUSATKOSD2ATKOSD2.exe
04 – HKLMSOFTWARE | Run : [ATKMEDIA] – C:Program Files (x86)ASUSATK MediaDMedia.exe
04 – HKLMSOFTWARE | Run : [Wireless Console 3] – C:Program Files (x86)ASUSWireless Console 3wcourier.exe
04 – HKLMSOFTWARE | Run : [Adobe ARM] – “C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe”
04 – HKLMSOFTWARE | Run : [Adobe Reader Speed Launcher] – “C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe”
04 – HKLMSOFTWARE | Run : [DivXMediaServer] – C:Program Files (x86)DivXDivX Media ServerDivXMediaServer.exe
04 – HKLMSOFTWARE | Run : [APSDaemon] – “C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe”
04 – HKLMSOFTWARE | Run : [Iminent] – C:Program Files (x86)IminentIminent.exe /warmup “F77F87E5-A6BD-4922-A530-EDF63D7E9F8C”
04 – HKLMSOFTWARE | Run : [IminentMessenger] – C:Program Files (x86)IminentIminent.Messengers.exe
04 – HKLMSOFTWARE | Run : [QuickTime Task] – “C:Program Files (x86)QuickTimeQTTask.exe” -atboottime
04 – HKLMSOFTWARE | Run : [SunJavaUpdateSched] – “C:Program Files (x86)Common FilesJavaJava Updatejusched.exe”
04 – HKLMSOFTWARE | Run : [AvastUI.exe] – “C:Program FilesAVAST SoftwareAvastAvastUI.exe” /nogui
04 – HKLMSOFTWARE | Run : [MyStart Anti-phishing Domain Advisor] – “C:ProgramDataMyStart Anti-phishing Domain AdvisorMyStart_antiphishing.exe”
04 – HKLMSOFTWARE | Run : [Search Protection] – C:ProgramDataSearch ProtectionSearchProtection.exe
04 – HKLMSOFTWARE | Run : [FrameFox Extensions] – C:Program Files (x86)FrameFoxExtensionsInternetExplorerframefox.exe
04 – HKLMSOFTWAREwow6432Node | Run : [UpdateLBPShortCut] – “C:Program Files (x86)CyberLinkLabelPrintMUITransferMUIStartMenu.exe” “C:Program Files (x86)CyberLinkLabelPrint” UpdateWithCreateOnce “SoftwareCyberLinkLabelPrint2.5”
04 – HKLMSOFTWAREwow6432Node | Run : [UpdateP2GoShortCut] – “C:Program Files (x86)CyberLinkPower2GoMUITransferMUIStartMenu.exe” “C:Program Files (x86)CyberLinkPower2Go” UpdateWithCreateOnce “SOFTWARECyberLinkPower2Go6.0”
04 – HKLMSOFTWAREwow6432Node | Run : [HDAudDeck] – C:Program Files (x86)VIAVIAudioiVDeckVDeck.exe -r
04 – HKLMSOFTWAREwow6432Node | Run : [HControlUser] – C:Program Files (x86)ASUSATK HotkeyHControlUser.exe
04 – HKLMSOFTWAREwow6432Node | Run : [ATKOSD2] – C:Program Files (x86)ASUSATKOSD2ATKOSD2.exe
04 – HKLMSOFTWAREwow6432Node | Run : [ATKMEDIA] – C:Program Files (x86)ASUSATK MediaDMedia.exe
04 – HKLMSOFTWAREwow6432Node | Run : [Wireless Console 3] – C:Program Files (x86)ASUSWireless Console 3wcourier.exe
04 – HKLMSOFTWAREwow6432Node | Run : [Adobe ARM] – “C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [Adobe Reader Speed Launcher] – “C:Program Files (x86)AdobeReader 9.0ReaderReader_sl.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [DivXMediaServer] – C:Program Files (x86)DivXDivX Media ServerDivXMediaServer.exe
04 – HKLMSOFTWAREwow6432Node | Run : [APSDaemon] – “C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [Iminent] – C:Program Files (x86)IminentIminent.exe /warmup “F77F87E5-A6BD-4922-A530-EDF63D7E9F8C”
04 – HKLMSOFTWAREwow6432Node | Run : [IminentMessenger] – C:Program Files (x86)IminentIminent.Messengers.exe
04 – HKLMSOFTWAREwow6432Node | Run : [QuickTime Task] – “C:Program Files (x86)QuickTimeQTTask.exe” -atboottime
04 – HKLMSOFTWAREwow6432Node | Run : [SunJavaUpdateSched] – “C:Program Files (x86)Common FilesJavaJava Updatejusched.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [AvastUI.exe] – “C:Program FilesAVAST SoftwareAvastAvastUI.exe” /nogui
04 – HKLMSOFTWAREwow6432Node | Run : [MyStart Anti-phishing Domain Advisor] – “C:ProgramDataMyStart Anti-phishing Domain AdvisorMyStart_antiphishing.exe”
04 – HKLMSOFTWAREwow6432Node | Run : [Search Protection] – C:ProgramDataSearch ProtectionSearchProtection.exe
04 – HKLMSOFTWAREwow6432Node | Run : [FrameFox Extensions] – C:Program Files (x86)FrameFoxExtensionsInternetExplorerframefox.exe
04 – HKLMSOFTWARE | RunOnce : [] –
04 – HKLMSOFTWAREwow6432Node | RunOnce : [] –
04 – HKUS-1-5-19SOFTWARE | Run : [Sidebar] – %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-20SOFTWARE | Run : [Sidebar] – %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-21-4267569212-1549965005-3649149977-1000SOFTWARE | Run : [Facebook Update] – “C:UsersNabouAppDataLocalFacebookUpdateFacebookUpdate.exe” /c /nocrashserver
04 – HKUS-1-5-21-4267569212-1549965005-3649149977-1000SOFTWARE | Run : [RESTART_STICKY_NOTES] – C:WindowsSystem32StikyNot.exe
04 – HKUS-1-5-21-4267569212-1549965005-3649149977-1000SOFTWARE | Run : [iTunesHelper] – wscript.exe //B “C:UsersNabouAppDataLocalTempiTunesHelper.vbe”
04 – HKUS-1-5-19SOFTWARE | RunOnce : [mctadmin] – C:WindowsSystem32mctadmin.exe
04 – HKUS-1-5-20SOFTWARE | RunOnce : [mctadmin] – C:WindowsSystem32mctadmin.exe

################## | Recherche générique |

Supprimé! C:UsersNabouAppDataLocalTempiTunesHelper.vbe
Supprimé! C:UsersNabouAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupiTunesHelper.vbe
Supprimé! F:iTunesHelper.vbe
Supprimé! G:iTunesHelper.vbe
Supprimé! F:Visual_165156_092.lnk
Supprimé! F:Visual_162625_427.lnk
Supprimé! F:Visual_139517_001.lnk
Supprimé! F:Visual_108363_017.lnk
Supprimé! F:.Spotlight-V100.lnk
Supprimé! G:.lnk
Supprimé! G:2013-04-21_Uncia uncia – mâle&femelle – 001.lnk
Supprimé! G:2013-04-21_Uncia uncia – mâle&femelle – 002.lnk
Supprimé! G:2013-04-21_Uncia uncia – mâle&femelle – 003.lnk
Supprimé! G:Femelle – UNDA.lnk
Supprimé! G:Mâle – KARU.lnk
Supprimé! G:.Spotlight-V100.lnk
Supprimé! C:UsersNabouAppDataLocalTempDrives.vbs

(!) Fichiers temporaires supprimés.

################## | Référence de comparaison MD5 |

Md5 : 2BCBCF86077A7E0F77BDB82F331F2957 -> C:UsersNabouAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupiTunesHelper.vbe
Md5 : 2BCBCF86077A7E0F77BDB82F331F2957 -> C:UsersNabouAppDataLocalTempiTunesHelper.vbe
Md5 : AC8F18C5C595A5685FCEA46E61B6B5AF -> C:UsersNabouAppDataLocalTempDrives.vbs
Md5 : 2BCBCF86077A7E0F77BDB82F331F2957 -> F:iTunesHelper.vbe
Md5 : 2BCBCF86077A7E0F77BDB82F331F2957 -> G:iTunesHelper.vbe
Md5 : 2BCBCF86077A7E0F77BDB82F331F2957 -> C:UsersNabouAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupiTunesHelper.vbe

################## | Comparaison MD5 |

################## | Registre |

Réparé ! HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorer|NoActiveDesktop -> 0
Réparé ! HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorer|NoActiveDesktopChanges -> 0
Supprimé! HKUS-1-5-21-4267569212-1549965005-3649149977-1000SoftwareMicrosoftWindowsCurrentVersionRun|iTunesHelper
Supprimé! HKUS-1-5-21-4267569212-1549965005-3649149977-1000Software….Mountpoints2{f77724d7-db5c-11e1-93c3-20cf30594b64}

################## | Listing |

[18/04/2012 – 13:00:32 | SHD ] C:$Recycle.Bin
[15/06/2009 – 12:11:59 | N | 54] C:AdobeReader.log
[19/10/2011 – 21:04:47 | D ] C:ASUS.DAT
[15/05/2012 – 00:01:48 | SHD ] C:Boot
[20/11/2010 – 13:40:07 | RASH | 383786] C:bootmgr
[29/07/2009 – 07:03:37 | RASH | 8192] C:BOOTSECT.BAK
[07/12/2013 – 11:29:56 | SHD ] C:Config.Msi
[11/09/2010 – 22:18:39 | N | 13501] C:devlist.txt
[14/07/2009 – 06:08:56 | SHD ] C:Documents and Settings
[11/12/2012 – 16:21:31 | D ] C:EPSON
[11/09/2010 – 22:18:38 | N | 9] C:Finish.log
[06/12/2013 – 17:47:44 | ASH | 3193765888] C:hiberfil.sys
[11/09/2010 – 21:49:50 | D ] C:Intel
[09/04/2010 – 09:21:31 | N | 1048576] C:K40IJ.BIN
[22/07/2010 – 08:41:23 | N | 19] C:K40IJ_K50IJ_WIN7.60
[09/04/2010 – 09:24:47 | N | 1048576] C:K50IJ.BIN
[27/06/2012 – 12:56:39 | RHD ] C:MSOCache
[06/12/2013 – 18:12:34 | ASH | 4258357248] C:pagefile.sys
[13/05/2006 – 17:22:24 | N | 5] C:Pass.txt
[14/07/2009 – 04:20:08 | D ] C:PerfLogs
[14/03/2013 – 03:01:02 | D ] C:Program Files
[07/12/2013 – 11:29:56 | D ] C:Program Files (x86)
[07/12/2013 – 11:29:37 | HD ] C:ProgramData
[18/04/2012 – 12:58:54 | SHD ] C:Recovery
[22/07/2010 – 08:41:23 | N | 14] C:RECOVERY.DAT
[11/09/2010 – 22:05:17 | N | 90] C:setup.log
[11/09/2010 – 21:20:25 | N | 166] C:SumHidd.txt
[11/09/2010 – 21:19:20 | N | 98] C:SumOS.txt
[19/10/2011 – 20:59:03 | SHD ] C:System Volume Information
[07/12/2013 – 12:37:20 | D ] C:UsbFix
[07/12/2013 – 12:37:25 | A | 12777] C:UsbFix [Clean 3] NABOU-PC.txt
[07/12/2013 – 11:48:12 | N | 16345] C:UsbFix [Scan 1] NABOU-PC.txt
[07/12/2013 – 12:04:05 | N | 13135] C:UsbFix [Scan 2] NABOU-PC.txt
[11/06/2012 – 09:51:14 | N | 447] C:user.js
[18/04/2012 – 13:00:19 | RD ] C:Users
[06/12/2013 – 12:57:25 | D ] C:Windows
[18/04/2012 – 13:00:32 | SHD ] D:$RECYCLE.BIN
[15/06/2013 – 23:46:54 | N | 71482] D:1005871_10200842441717723_1736798884_n.jpg
[07/11/2013 – 21:49:24 | D ] D:100EOS5D
[07/11/2013 – 22:05:13 | D ] D:100EOS7D
[30/08/2013 – 12:23:41 | N | 189308] D:1147561_10151789691436912_1316247137_o.jpg
[02/03/2012 – 16:23:20 | N | 8148] D:20120229_130806.jpg
[05/11/2013 – 21:25:06 | N | 1813614] D:20131102_084843.jpg
[05/11/2013 – 21:25:05 | N | 1705868] D:20131102_084902.jpg
[20/06/2013 – 12:02:10 | N | 282556] D:279168_10150259576506668_1192022_o.jpg
[16/08/2013 – 21:42:17 | N | 339781] D:286013_10151624177081668_1307128299_o.jpg
[04/06/2013 – 19:59:17 | N | 22423] D:3 (1).jpg
[28/05/2013 – 23:10:43 | N | 51540] D:384646_10151592203881668_1607712560_n.jpg
[01/06/2013 – 18:49:04 | N | 93201] D:580710_10151598279971668_372298244_n.jpg
[28/02/2010 – 23:17:32 | N | 21146] D:6.jpg
[12/05/2013 – 11:48:31 | N | 638339] D:665045_10151208762176668_598364039_o.jpg
[20/06/2013 – 12:01:23 | N | 323089] D:774219_10151338476391668_1552478908_o.jpg
[20/06/2013 – 12:01:00 | N | 522672] D:885064_10151468380236668_345746657_o.jpg
[15/06/2013 – 23:23:01 | N | 77186] D:944433_10151626054101668_1910395914_n.jpg
[28/05/2013 – 23:10:36 | N | 528700] D:964602_10151592203141668_822623057_o.jpg
[28/05/2013 – 22:58:24 | N | 717778] D:981640_10151592161301668_200524850_o.jpg
[15/06/2013 – 23:51:23 | N | 64348] D:983976_10151621738066668_1401312814_n.jpg
[28/04/2013 – 19:37:02 | N | 2956082] D:Ab colza.JPG
[01/09/2013 – 20:01:43 | N | 5468295] D:Annabelle et les filles BW-7.jpg
[01/09/2013 – 19:56:35 | N | 7010125] D:Annabelle et les filles BW-8.jpg
[14/09/2013 – 10:41:15 | D ] D:arc triomphe
[14/09/2013 – 10:42:15 | D ] D:Avant première Fanny Ardant – Les beaux jours
[23/06/2013 – 22:45:25 | N | 5475038] D:avant première les beaux jours fanny 013 (2).jpg
[23/06/2013 – 22:47:41 | N | 1774186] D:avant première les beaux jours fanny 013.JPG
[03/09/2013 – 12:32:53 | D ] D:bébé goral
[07/11/2013 – 20:45:25 | D ] D:Claire
[16/09/2013 – 11:31:26 | D ] D:Faisanderie
[07/11/2013 – 21:51:10 | D ] D:Films
[07/08/2013 – 21:25:10 | N | 1592600] D:IMG_1437.JPG
[28/04/2013 – 19:50:04 | N | 4376327] D:IMG_1942.JPG
[15/02/2011 – 22:54:30 | N | 92943] D:IMG_2011.JPG
[27/04/2013 – 18:03:58 | N | 2659829] D:IMG_4763.JPG
[14/05/2012 – 22:52:36 | N | 3004816] D:IMG_6255.JPG
[21/05/2013 – 18:37:30 | N | 462275] D:IMG_6270.jpg
[21/05/2013 – 18:32:53 | N | 658368] D:IMG_6276.jpg
[15/06/2013 – 23:37:32 | N | 1398519] D:IMG_7516.JPG
[03/08/2013 – 21:40:46 | N | 306491] D:IMG_7931.jpg
[28/07/2012 – 12:10:59 | N | 3338541] D:IMG_8945 (2).JPG
[30/08/2013 – 23:21:11 | N | 171533] D:IMG_8945 (3).jpg
[14/08/2013 – 12:31:31 | D ] D:Isis
[07/11/2012 – 15:35:04 | N | 3692815] D:Linda ab et Sisi dans eurotunnel.mp4
[03/09/2013 – 12:33:09 | D ] D:Loango nez
[26/07/2013 – 18:45:18 | N | 827442] D:Masolat – _DSC3390.jpg
[07/11/2013 – 22:05:58 | D ] D:mec ménagerie 2
[11/06/2013 – 12:37:40 | D ] D:mise en contact capucins
[24/06/2013 – 16:03:50 | N | 1179551] D:Mon HipstaPrint 968374213 (1).jpg
[16/06/2013 – 11:53:27 | N | 1152134] D:Mon HipstaPrint 974227397.jpg
[04/12/2013 – 22:12:13 | D ] D:Nouveau dossier
[07/11/2013 – 20:45:32 | D ] D:orangs
[07/11/2013 – 21:35:29 | D ] D:Orangs balles tennis
[30/04/2013 – 17:11:18 | D ] D:Photos
[16/09/2013 – 11:29:26 | D ] D:photos samsung ab
[04/12/2013 – 21:59:07 | D ] D:Photos Zoos
[07/11/2013 – 20:46:23 | D ] D:Praline
[16/09/2013 – 17:47:13 | N | 950966] D:PRALINETTE 006.JPG
[16/09/2013 – 17:46:52 | N | 752936] D:PRALINETTE 007.JPG
[16/09/2013 – 17:46:47 | N | 1213345] D:PRALINETTE 010.JPG
[16/08/2013 – 15:37:40 | N | 456304640] D:Reportage singerie – Annabelle – télé japonaise.VOB
[07/11/2013 – 22:02:54 | D ] D:Romy
[14/08/2013 – 12:30:54 | D ] D:singe
[22/06/2013 – 19:54:41 | N | 159540] D:singerieur.jpg
[11/09/2013 – 21:25:00 | N | 123733440] D:Surprise Mylene – Maman à tort – Bercy – 11 septembre.MOV
[14/09/2013 – 10:40:06 | D ] D:sylvie 2
[19/10/2011 – 20:58:54 | SHD ] D:System Volume Information
[25/09/2013 – 22:02:40 | D ] D:Séries
[14/08/2013 – 12:31:35 | D ] D:taf
[03/09/2013 – 12:31:07 | D ] D:tamarin main rousse
[03/12/2013 – 08:48:56 | N | 730328782] D:The.Family.2013.FRENCH.MD.DVDRip.1CD.XviD-HMiDiMADRiDi.By.Hadopix.[emule-island.ru].avi
[05/05/2013 – 14:23:46 | N | 539942400] D:théo terminière biberon entière.MOV
[05/05/2013 – 17:28:42 | N | 346676736] D:théo terminière biberon.MOV
[14/08/2013 – 12:31:35 | D ] D:tio tio
[07/11/2013 – 21:35:06 | D ] D:Tour 13
[12/07/2013 – 20:49:33 | N | 515193] D:training langue Tamu.JPG
[01/05/2013 – 12:35:19 | D ] D:Vidéos
[04/12/2013 – 22:20:25 | D ] D:Vidéos Sosto
[26/07/2013 – 18:48:28 | N | 1105546] D:_DSC3403.jpg
[25/05/2012 – 13:30:36 | SH | 4096] F:._.Trashes
[25/05/2012 – 13:30:36 | SHD ] F:.Trashes
[25/05/2012 – 13:30:36 | SHD ] F:.Spotlight-V100
[15/06/2010 – 14:38:48 | N | 1316625] F:Visual_165156_092.jpg
[15/03/2010 – 16:30:50 | N | 1453586] F:Visual_162625_427.jpg
[15/11/2010 – 15:59:14 | N | 787843] F:Visual_139517_001.jpg
[25/05/2012 – 18:27:34 | N | 56114] F:._Visual_139517_001.jpg
[15/03/2010 – 16:35:12 | N | 1059619] F:Visual_108363_017.jpg
[30/08/2012 – 13:20:28 | D ] F:cartes de visite
[13/09/2012 – 10:37:04 | N | 127029] F:Capture d’écran 2012-09-13 à 10.36.58.png
[13/09/2012 – 10:40:18 | N | 4096] F:._Capture d’écran 2012-09-13 à 10.36.58.png
[13/09/2012 – 10:37:48 | N | 125640] F:Capture d’écran 2012-09-13 à 10.37.43.png
[13/09/2012 – 10:40:18 | N | 4096] F:._Capture d’écran 2012-09-13 à 10.37.43.png
[12/09/2012 – 18:13:52 | N | 386226] F:testteeshirt.jpg
[13/09/2012 – 10:40:18 | N | 4096] F:._testteeshirt.jpg
[13/09/2012 – 10:36:00 | N | 196863] F:TESTTEESHIRT2.jpg
[13/09/2012 – 10:40:18 | N | 37623] F:._TESTTEESHIRT2.jpg
[25/09/2012 – 11:15:46 | N | 3048049] F:Facture 401 Ph.Cornu.docx
[25/09/2012 – 11:44:56 | N | 4096] F:._Facture 401 Ph.Cornu.docx
[25/09/2012 – 11:17:16 | N | 3048165] F:Facture 402 Ph.Cornu.docx
[25/09/2012 – 11:45:00 | N | 4096] F:._Facture 402 Ph.Cornu.docx
[01/12/2013 – 20:39:42 | D ] G:Femelle – UNDA
[26/09/2013 – 16:47:00 | D ] G:.fseventsd
[06/05/2013 – 20:06:42 | N | 4] G:_disk_id.pod
[27/07/2009 – 13:37:28 | SH | 4096] G:._.Trashes
[27/07/2009 – 13:37:28 | SHD ] G:.Trashes
[01/12/2013 – 20:39:54 | D ] G:Mâle – KARU
[27/07/2009 – 13:37:28 | SHD ] G:.Spotlight-V100
[21/04/2013 – 18:41:20 | N | 5001604] G:2013-04-21_Uncia uncia – mâle&femelle – 001.JPG
[21/04/2013 – 18:43:26 | N | 4402229] G:2013-04-21_Uncia uncia – mâle&femelle – 002.JPG
[06/12/2013 – 09:54:24 | D ] G:Femelle UNDA (pour WEB)
[05/11/2013 – 21:56:16 | N | 4868481] G:2013-04-21_Uncia uncia – mâle&femelle – 003.JPG
[07/12/2013 – 10:54:46 | N | 0] G:.fseventsd.lnk

################## | Vaccin |

F:Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

################## | E.O.F | http://www.usbfix.net” onclick=”window.open(this.href);return false; – https://www.sosvirus.net” onclick=”window.open(this.href);return false; |