Rem-VBSworm v8.0 =========== - General info: Running under: jean- on profile: C:\Users\jean- Computer name: DESKTOP-37KC94K Operating System: Microsoft Windows 10 Famille Boot Mode: Fail-safe with network boot Antivirus software installed: Avast Antivirus Windows Defender Panda Dome Executed on: 12/03/2018 @ 13:03:58,92 =========== - Drive info: Listing currently attached drives: Caption Description VolumeName C: Disque mont‚ local OS D: Disque mont‚ local eassos s restore 40 F: Disque CD-ROM G: Disque amovible montre espi H: Disque amovible UBUNTU MATE J: Disque amovible FOLD-ISARDU K: Disque amovible FRAMA SALIX L: Disque amovible SFCE XFCE M: Disque amovible FLASHAIR SD O: Disque mont‚ local wd MY passport 3TO P: Disque amovible COMPANION wintobootic Q: Disque amovible windows to go 1 R: Disque amovible FRAMA SALIX S: Disque amovible samsung fit T: Disque CD-ROM DTVP30 U: Disque amovible V: Disque amovible MICRO SD PN X: Disque mont‚ local LFS Hyper part 2 Physical drives information: C: \Device\HarddiskVolume3 NTFS D: \Device\HarddiskVolume4 NTFS O: \Device\HarddiskVolume6 NTFS X: \Device\HarddiskVolume9 NTFS P: \Device\HarddiskVolume13 NTFS G: \Device\HarddiskVolume18 FAT R: \Device\HarddiskVolume16 FAT H: \Device\HarddiskVolume15 FAT S: \Device\HarddiskVolume19 NTFS K: \Device\HarddiskVolume14 FAT J: \Device\HarddiskVolume20 FAT L: \Device\HarddiskVolume12 FAT M: \Device\HarddiskVolume22 FAT T: \Device\CdRom1 CDFS V: \Device\HarddiskVolume21 FAT Q: \Device\HarddiskVolume23 NTFS =========== - Disinfection info: Op‚ration r‚ussieÿ: le processus "rundll32.exe" de PID 3904 a ‚t‚ arrˆt‚. Op‚ration r‚ussieÿ: le processus avec PID 788 a ‚t‚ termin‚. Informationÿ: aucune tƒche en service ne correspond aux critŠres sp‚cifi‚s. =========== - Shortcut info: Shortcut: "C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PortableApps.com Platform.lnk" ---------------------------------------------------------------- =========== - Scheduled tasks info: =========== - USB drive info: a: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of a: USB drive disinfected and files unhidden =========== - USB drive info: b: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of b: USB drive disinfected and files unhidden =========== - USB drive info: f: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of f: USB drive disinfected and files unhidden =========== - USB drive info: g: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Fichier supprim‚ - g:\lfs hyper part 5\topic anti-roboot en cadeau r‚compense lfsu_gpt_100%sf globale du 16_2_2k18\ZHPCleaner.lnk WARNING... Possible Andromeda/Gamarue infection... Listing root contents of g: Le volume dans le lecteur G s'appelle montre espi Le num‚ro de s‚rie du volume est 0403-0201 R‚pertoire de G:\ 23/08/2004 16:54 RECORD 23/08/2004 16:54 lfs hyper part 5 23/08/2004 16:54 PHOTO 20/02/2018 10:37 20 time.txt 20/02/2018 18:49 1ÿ676 BOOTEX.LOG 2 fichier(s) 1ÿ696 octets 4 R‚p(s) 1ÿ577ÿ877ÿ504 octets libres USB drive disinfected and files unhidden =========== - USB drive info: h: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of h: Le volume dans le lecteur H s'appelle UBUNTU MATE Le num‚ro de s‚rie du volume est 8CB8-5A2A R‚pertoire de H:\ 03/01/2016 00:08 21ÿ504 Erreur Kernel Fuseau Origan Macarons Domino.doc 03/01/2016 00:08 My Documents 03/01/2016 00:08 Image 03/01/2016 00:08 27ÿ137 Erreur Kernel Fuseau Origan Macarons Domino.pdf 03/01/2016 00:13 Ringtones 03/01/2016 00:13 Music 03/01/2016 00:13 80 kr-stock-conf 03/01/2016 00:13 kinguserdown 03/01/2016 00:17 Video 03/01/2016 00:21 1ÿ350 Erreur Kernel Fuseau Origan Macarons Domino.txt 03/01/2016 00:28 6ÿ701 Erreur Kernel Fuseau Origan Macarons Domino.docx 03/01/2016 00:28 876 clueful_log.txt 03/01/2016 00:28 Mail Orange 03/01/2016 00:28 18ÿ023ÿ288 android_root-1.exe 03/01/2016 00:28 3ÿ793ÿ168 PortableApps.com_Platform_Setup_12.2.paf.exe 03/01/2016 00:30 1ÿ031ÿ608 CyberLink_Media_Suite_Downloader.exe 03/01/2016 00:30 1ÿ031ÿ608 CyberLink_PowerDVD_Downloader.exe 03/01/2016 00:30 1ÿ031ÿ608 CyberLink_PowerDirector_Downloader.exe 03/01/2016 00:30 1ÿ299ÿ304 CyberLink_Power2Go_Downloader.exe 03/01/2016 00:30 1ÿ745ÿ920 adwcleaner_5.027.exe 03/01/2016 00:30 967ÿ200 CyberLink_PowerProducer_Downloader.exe 03/01/2016 00:30 18ÿ023ÿ288 android_root.exe 03/01/2016 00:30 5ÿ890 Akvzn3HKZzU&autoplay=0(3) 03/01/2016 00:30 5ÿ900 Akvzn3HKZzU&autoplay=0(2) 03/01/2016 00:30 5ÿ898 Akvzn3HKZzU&autoplay=0 03/01/2016 00:31 60ÿ733ÿ178 aimer-mac-video-studio-express_full700.dmg 03/01/2016 00:31 1ÿ239ÿ552 aimer-video-converter_setup_full68.exe 03/01/2016 00:31 45ÿ682ÿ060 aimer-video-ultimate_full129.exe 03/01/2016 00:31 21ÿ681ÿ496 aimer-video-pro_full432.exe 03/01/2016 00:31 44ÿ314ÿ993 aimer-video-converter-intel_full265.dmg 03/01/2016 00:31 62ÿ168ÿ080 aimer-dvd-creator-intel_full335.dmg 03/01/2016 00:31 Playlists 03/01/2016 09:25 LOST.DIR 03/01/2016 09:47 8ÿ192 pp.key 03/01/2016 09:47 LOST.DIR (1) 03/01/2016 09:47 1ÿ317 Macache Bonneau Clipboard.txt 03/01/2016 10:19 830 240? de plus … payer avec le 1Šre logiciel Cewb‚ d.txt 03/01/2016 10:19 IMAGE (1) 03/01/2016 16:56 8ÿ192 pp (1).key 03/01/2016 16:56 20 time (1).txt 03/01/2016 16:56 1ÿ317 Macache Bonneau Clipboard (1).txt 03/01/2016 16:56 LOST.DIR (2) 03/01/2016 17:18 30ÿ932ÿ992 2015-12-31 (1).AVI 03/01/2016 17:29 884ÿ736 2016-01-01 (5).AVI 03/01/2016 17:29 IMAGE (2) 03/01/2016 17:29 65ÿ536 2016-01-01 (1).AVI 03/01/2016 17:29 830 240? de plus … payer avec le 1Šre logiciel Cewb‚ d (1).txt 10/06/2016 15:58 1ÿ279ÿ955 creee-en-1959-la-poupee-barbie-a-toujours-autant-de-succes-photo-rl-1439655987.jpg 20/07/2016 00:03 237 README.diskdefines 20/07/2016 00:03 pics 20/07/2016 00:03 dists 20/07/2016 00:03 pool 20/07/2016 00:03 preseed 20/07/2016 00:04 .disk 20/07/2016 00:04 syslinux 20/07/2016 00:04 install 20/07/2016 00:04 EFI 20/07/2016 00:04 boot 20/07/2016 00:05 23ÿ431 md5sum.txt 28/08/2016 20:45 Wondershare Filmora 03/09/2016 12:39 2ÿ879 starburn.txt 07/09/2016 13:27 iSkysoft iMedia Converter Deluxe 07/09/2016 14:11 YouCam 07/09/2016 14:12 Avatar 07/09/2016 14:47 AoaoPhoto Digital Studio 08/09/2016 11:03 l'art du moine du wa miss dessert de widen, du ou quel tritoir nadia winiccyx, & du ou cewb‚link power2ccyx 08/09/2016 15:00 jean-marie.carribon@wanadoo.fr's Online Sync 09/09/2016 12:25 pilpa 2 - pitmann playthrough - souvenir chez stine & lix le quadrige 09/09/2016 12:26 lin 09/09/2016 12:28 Nouveau dossier 09/09/2016 12:28 Nouveau dossier (2) 09/09/2016 12:36 pilpa 1 - apps quand ou droopy fin li'lis pire framo 2009 parodi‚ en tri'toir de brugnon-ultra-hush 09/09/2016 12:47 for de la rever'nifk - cyberlink freewares installers 09/09/2016 16:05 CyberLink Power2Go 11 Essentials setup 09/09/2016 16:44 1ÿ717ÿ254 r‚parer windows 7 sans perdre des donn‚es avec iso et dvd.pdf 27/06/2017 11:25 122ÿ308 ldlinux.c32 27/06/2017 11:25 69ÿ632 ldlinux.sys 27/06/2017 11:25 448 SmartClean.ini 23/07/2017 17:01 Documents 31/07/2017 06:25 casper 11/08/2017 15:19 AI_RecycleBin 10/10/2017 12:28 FOUND.000 13/10/2017 10:14 Download (1) 13/10/2017 10:14 Download (2) 13/10/2017 10:14 fr.lcl.android.customerarea 13/10/2017 10:14 image_cache 13/10/2017 10:14 Kingroot 13/10/2017 10:14 stroma‚ - promiscuous 13/10/2017 10:14 Pictures 13/10/2017 10:15 wondershare 13/10/2017 10:17 cleanmaster 13/10/2017 10:29 CyberShot 13/10/2017 10:31 DCIM 13/10/2017 10:38 Download 14/10/2017 08:03 My Stationery 14/10/2017 08:07 Notes 02/11/2017 16:19 1ÿ782ÿ579ÿ200 casper-rw 13/11/2017 18:22 19 time.txt 25/11/2017 18:01 PHOTO FAMILY 30/11/2017 08:49 Optimizer Pro 3.07 30/11/2017 08:57 OneSafe Driver Manager 08/12/2017 10:13 8ÿ268ÿ704 adbusetup.exe 08/12/2017 10:33 Anvi Browser Repair Tool 08/12/2017 10:36 Anvi Smart Defender 11/12/2017 17:50 PC Optimizer Pro 25/12/2017 15:30 PCHA 25/12/2017 15:47 WinSweeper 26/12/2017 11:16 MaxiDisk 30/12/2017 15:56 SpeedUpMyPC 30/12/2017 16:48 11ÿ739ÿ102 Avanquest.PC.Speed.Maximizer.4.3.3.rar 31/12/2017 18:45 PC-Mechanic 12/01/2018 14:08 20ÿ246 BOOTEX.LOG 13/01/2018 07:38 Jobs 13 janvier 2018 lfs hyper~lfsu100%sf~b5umtw 15/02/2018 21:03 AUTORUN_.INF 28/02/2018 14:29 installateur standalones lfs hyper apps lfs hyper suites upgrades fin f‚vrier 2018 01/03/2018 14:54 76 nmdsdcid 48 fichier(s) 2ÿ120ÿ569ÿ140 octets 69 R‚p(s) 7ÿ651ÿ065ÿ856 octets libres USB drive disinfected and files unhidden =========== - USB drive info: i: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of i: USB drive disinfected and files unhidden =========== - USB drive info: j: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of j: Le volume dans le lecteur J s'appelle FOLD-ISARDU Le num‚ro de s‚rie du volume est C07E-0544 R‚pertoire de J:\ 22/07/2014 12:56 354ÿ862 cdrom.ico 07/09/2014 14:08 5 info 06/10/2014 17:29 186ÿ500 libcom32.c32 06/10/2014 17:29 66ÿ524 libgpl.c32 06/10/2014 17:29 4ÿ660 linux.c32 06/10/2014 17:29 24ÿ148 libutil.c32 06/10/2014 17:29 10ÿ772 mboot.c32 06/10/2014 17:29 1ÿ376 reboot.c32 06/10/2014 17:29 1ÿ912 ifplop.c32 06/10/2014 17:29 1ÿ736 ifcpu64.c32 06/10/2014 17:29 4ÿ112 ifcpu.c32 06/10/2014 17:29 1ÿ652 cat.c32 06/10/2014 17:29 2ÿ460 whichsys.c32 06/10/2014 17:29 1ÿ664 poweroff.c32 06/10/2014 17:29 26ÿ596 menu.c32 06/10/2014 17:29 27ÿ104 vesamenu.c32 06/10/2014 17:29 1ÿ252 localboot.c32 06/10/2014 17:29 24ÿ132 libmenu.c32 06/10/2014 17:29 10ÿ408 gfxboot.c32 06/10/2014 17:29 3ÿ688 cmenu.c32 06/10/2014 17:29 7ÿ588 syslinux.c32 06/10/2014 17:29 24ÿ560 chain.c32 06/10/2014 17:29 26ÿ140 memdisk 09/12/2014 04:52 683ÿ904 shell.efi 23/03/2015 00:37 boot 23/03/2015 00:37 .disk 19/09/2015 10:35 683ÿ936 shellia32.efi 19/09/2015 10:35 771ÿ136 shellx64.efi 19/02/2017 21:22 121 SARDU - Multiboot Builder.url 27/02/2017 02:41 efi 14/05/2017 14:44 0 syslinux-6.03.txt 08/11/2017 04:00 49ÿ664 7-zip.dll 08/11/2017 04:00 24ÿ770ÿ815 SARDU_1 08/11/2017 04:05 log 08/11/2017 04:05 18ÿ121 license-pro.txt 08/11/2017 04:05 languages 08/11/2017 06:43 ISO 08/11/2017 07:03 CFG 08/11/2017 07:04 Temp 08/11/2017 07:04 SARDU 08/11/2017 07:05 Extra 08/11/2017 07:05 1ÿ066 syslinux.cfg 08/11/2017 07:06 tools 09/11/2017 00:34 587ÿ888 OEMData.pkt 13/11/2017 18:22 19 time.txt 25/11/2017 18:01 PHOTO FAMILY 25/11/2017 18:02 NMSDCID 30/11/2017 08:54 Documents 30/11/2017 08:54 339 CommonToolkitSuite.cts 08/12/2017 10:31 Anvi AD Blocker 08/12/2017 10:35 Cloud System Booster 09/12/2017 06:41 Slim Toolbar 10/12/2017 08:12 WinSweeper 22/12/2017 21:51 SupersonicPC 25/12/2017 15:32 Smart Driver Updater 26/12/2017 11:17 SpeedUpMyPC 31/12/2017 18:46 DriverScanner 08/01/2018 12:08 lfs hyper annexe, u mortar de widen & barrow 5 13/01/2018 06:36 LOST.DIR 13/01/2018 06:37 Download 13/01/2018 07:01 Android 13/01/2018 07:40 Jobs 13 janvier 2018 lfs hyper~lfsu100%sf~b5umtw 06/02/2018 21:14 FOUND.000 10/02/2018 13:41 DCIM 20/02/2018 18:49 8ÿ338 BOOTEX.LOG 01/03/2018 14:54 76 nmdsdcid 37 fichier(s) 28ÿ389ÿ274 octets 30 R‚p(s) 12ÿ740ÿ427ÿ776 octets libres USB drive disinfected and files unhidden =========== - USB drive info: k: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of k: Le volume dans le lecteur K s'appelle FRAMA SALIX Le num‚ro de s‚rie du volume est 5CD9-668E R‚pertoire de K:\ 0 fichier(s) 0 octets 1 R‚p(s) 15ÿ605ÿ923ÿ840 octets libres USB drive disinfected and files unhidden =========== - USB drive info: l: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Fichier supprim‚ - l:\utils\win32\makeboot.bat Fichier supprim‚ - l:\utils\win64\makeboot64.bat WARNING... Possible Andromeda/Gamarue infection... Listing root contents of l: Le volume dans le lecteur L s'appelle SFCE XFCE Le num‚ro de s‚rie du volume est 17F7-1314 R‚pertoire de L:\ 10/04/2017 14:29 5ÿ276ÿ054 The Black Eyed Peas - #WHERESTHELOVE ft. The World.mp3 13/11/2017 18:41 3ÿ744ÿ573 Sam Smith - Too Good At Goodbyes (Official Video).mp3 18/11/2017 10:13 2ÿ628ÿ549 Ed Sheeran - Bibia Be Ye Ye.mp3 21/11/2017 05:17 2ÿ727ÿ161 Booba - Mon son CLIP OFFICIEL HD.mp3 21/11/2017 05:17 3ÿ373ÿ773 Kaaris - Tchoin(2).mp3 21/11/2017 05:17 3ÿ373ÿ773 Kaaris - Tchoin.mp3 21/11/2017 05:17 4ÿ359ÿ045 Foster The People - Best Friend.mp3 21/11/2017 05:17 2ÿ972ÿ781 Portugal. The Man - _Feel It Still_ (Official Video).mp3 21/11/2017 05:17 2ÿ972ÿ781 Portugal. The Man - _Feel It Still_ (Official Video)(2).mp3 21/11/2017 05:17 3ÿ320ÿ613 Charlie Puth - _How Long_ [Official Video].mp3 21/11/2017 05:18 3ÿ320ÿ613 Charlie Puth - _How Long_ [Official Video](2).mp3 25/11/2017 18:02 NMSDCID 26/11/2017 09:22 6ÿ110ÿ719 Beyonc‚ - All Night.mp3 30/11/2017 08:49 Optimizer Pro 3.07 30/11/2017 18:04 OneSafe Driver Manager 08/12/2017 10:33 Anvi Browser Repair Tool 08/12/2017 10:35 Anvisoft 08/12/2017 10:36 Anvi Smart Defender 09/12/2017 13:44 Slim Toolbar 10/12/2017 03:46 4ÿ742ÿ349 Eminem - Walk On Water (Audio) ft. Beyonc‚.mp3 10/12/2017 08:07 PHOTO FAMILY 11/12/2017 17:50 PC Optimizer Pro 14/12/2017 16:22 69ÿ623 ldlinux.sys 14/12/2017 16:22 EFI 14/12/2017 16:22 .disk 14/12/2017 16:22 1ÿ526 DRBL-Live-Version 14/12/2017 16:22 live 14/12/2017 16:22 boot 14/12/2017 16:22 18ÿ092 GPL 14/12/2017 16:23 syslinux 14/12/2017 16:23 utils 14/12/2017 16:23 94 syslinux.cfg 14/12/2017 19:45 4ÿ906ÿ494 Kash vs. INXs - Dream on black girl.mp3 14/12/2017 19:47 5ÿ011ÿ765 Petit Biscuit - Waterfall Ft. Panama (Official Audio).mp3 19/12/2017 12:14 LFSI Finalis -cadeaux et 100% s‚curis‚- 22/12/2017 09:53 Avanquest.PC.Speed.Maximizer.4.3.3 22/12/2017 21:52 WinSweeper 27/12/2017 13:52 SupersonicPC 31/12/2017 18:51 RegistryCleanerKit 13/01/2018 06:36 LOST.DIR 13/01/2018 06:37 com.apowersoft 16/01/2018 13:20 PCTransImage 19/01/2018 10:52 FixMeStick Quarantine 19/01/2018 10:57 OneSafe PC Cleaner 02/02/2018 19:00 2ÿ147ÿ483ÿ648 pcsu.cache0 06/02/2018 21:14 FOUND.000 10/02/2018 13:41 DCIM 21/02/2018 18:29 6ÿ456 BOOTEX.LOG 01/03/2018 14:54 76 nmdsdcid 22 fichier(s) 2ÿ206ÿ420ÿ558 octets 28 R‚p(s) 120ÿ937ÿ742ÿ336 octets libres USB drive disinfected and files unhidden =========== - USB drive info: m: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Fichier supprim‚ - m:\ad-aware installer - sauvetage toshiba flashair\CyberLink.Power2Go.Platinum.11.0.1013.0\CyberLink.Power2Go.Platinum.11.0.1013.0\Power2Go 11.0.1013.0 Platinum\LPrint\AUTORUN.INF Fichier supprim‚ - m:\Nuance.Dragon.Pro.Indi.15.00.000.158\Nuance.Dragon.Pro.Indi.15.00.000.158.KaranPC\Retail Setup\Autorun.inf WARNING... Possible Andromeda/Gamarue infection... Listing root contents of m: Le volume dans le lecteur M s'appelle FLASHAIR SD Le num‚ro de s‚rie du volume est 1766-5B7B R‚pertoire de M:\ 16/10/2014 09:47 7ÿ786ÿ813 BABY G. & M.D. LOVE - Boom boom.mp3 22/02/2016 09:44 11ÿ414ÿ320 07.) Aaliyah - Try Again.mp3 22/02/2016 09:50 9ÿ746ÿ035 15.) Aaliyah - We Need A Resolution Feat. Timbaland.mp3 10/04/2016 15:34 11ÿ243ÿ239 Beyonc‚ - Formation - Lyrics.mp3 17/06/2016 15:12 3ÿ378ÿ102 Alicia Keys - In Common.mp3 30/06/2016 07:11 3ÿ334ÿ130 Anything(To Find You) Monica Feat. Rick Ross_Dj Kenken.mp3 02/07/2016 12:31 3ÿ521ÿ901 Alicia Keys - Girlfriend.mp3 10/08/2016 12:18 DriverDoc.2.25.1086 21/08/2016 20:15 4ÿ427ÿ454 3rd Wish Feat Baby Bash - Obsesion (official Music Video, Hq)(1).mp3 21/08/2016 20:15 4ÿ427ÿ454 3rd Wish Feat Baby Bash - Obsesion (official Music Video, Hq).mp3 04/09/2016 18:04 11ÿ259ÿ855 Beyonc‚ - Formation - Lyrics(1).mp3 10/04/2017 14:29 5ÿ276ÿ054 The Black Eyed Peas - #WHERESTHELOVE ft. The World.mp3 09/06/2017 18:16 3ÿ558ÿ966 Aaliyah - Try Again[128K]__[MP3-128K] (2).mp3 20/06/2017 10:36 5ÿ107ÿ808 Benassi Bros Feat. Dhany - Every Single Day [Official Video HD].mp3 03/09/2017 17:15 3ÿ558ÿ966 Aaliyah - Try Again[128K]__[MP3-128K].mp3 10/10/2017 09:42 3ÿ676ÿ365 3rd Wish feat. Baby Bash - Obsesion (Official Music Video, HQ).mp3 12/11/2017 19:19 3ÿ005ÿ801 geek.zip 13/11/2017 11:38 Nuance.Dragon.Pro.Indi.15.00.000.158 13/11/2017 11:43 ReviverSoft.PC.Reviver.2.16.1.2.Portable 13/11/2017 18:22 19 time.txt 13/11/2017 18:41 3ÿ744ÿ573 Sam Smith - Too Good At Goodbyes (Official Video).mp3 16/11/2017 09:14 8ÿ261ÿ584 adwcleaner_7.0.4.0.exe 16/11/2017 09:17 2ÿ971ÿ008 ZHPCleaner.exe 16/11/2017 09:21 3ÿ061ÿ760 ZHPFix.exe 16/11/2017 09:25 462ÿ976 clearlnk_2.9.0.11.exe 16/11/2017 09:35 17ÿ487 zhpfix script compaq w10 16 nov.txt 16/11/2017 10:09 1ÿ179 JRT win10 compaq 16 nov.txt 16/11/2017 12:14 226 adware removal tool by tsa win10 compaq 16nov.txt 16/11/2017 13:15 4ÿ683 zhpcleaner compaq w10 16 nov.txt 16/11/2017 13:20 Quarantine 16/11/2017 13:22 5ÿ297 zhpfix results compaq w10 16 nov.txt 16/11/2017 13:29 123ÿ300 ClearLNK-16.11.2017_13-29.log 18/11/2017 10:13 2ÿ628ÿ549 Ed Sheeran - Bibia Be Ye Ye.mp3 21/11/2017 05:17 2ÿ727ÿ161 Booba - Mon son CLIP OFFICIEL HD.mp3 21/11/2017 05:17 3ÿ373ÿ773 Kaaris - Tchoin.mp3 21/11/2017 05:17 3ÿ373ÿ773 Kaaris - Tchoin(2).mp3 21/11/2017 05:17 2ÿ972ÿ781 Portugal. The Man - _Feel It Still_ (Official Video)(2).mp3 21/11/2017 05:17 2ÿ972ÿ781 Portugal. The Man - _Feel It Still_ (Official Video).mp3 21/11/2017 05:17 3ÿ320ÿ613 Charlie Puth - _How Long_ [Official Video].mp3 21/11/2017 05:18 3ÿ320ÿ613 Charlie Puth - _How Long_ [Official Video](2).mp3 23/11/2017 18:06 332ÿ887 erreur_windows_store_1.png 23/11/2017 18:07 335ÿ916 erreur_windows_store_2.png 26/11/2017 09:22 6ÿ110ÿ719 Beyonc‚ - All Night.mp3 01/12/2017 13:23 38ÿ630 SystemLook win10 usb rapport soir 30 novembre 2017.txt 04/12/2017 09:30 1ÿ819ÿ535 usbfix premium erreur activation step 2.PNG 09/12/2017 11:07 1ÿ261ÿ861 erreur power media player mr.png 10/12/2017 03:46 4ÿ742ÿ349 Eminem - Walk On Water (Audio) ft. Beyonc‚.mp3 11/12/2017 12:14 1ÿ772ÿ466 erreur tnb micro sd 32.PNG 13/12/2017 11:11 GUPIXINF 13/12/2017 11:11 DCIM 13/12/2017 11:11 SD_WLAN 13/12/2017 12:38 2ÿ082 mbam ---- acer w7 13 d‚cembre.txt 13/12/2017 12:43 267ÿ464 Capture erreur micro sd tnb.PNG 14/12/2017 07:21 227ÿ782 ZHPDiag acer w7 14 12 2017.txt 14/12/2017 07:34 3ÿ503 JRT w7 acer 14 12 2017.txt 14/12/2017 09:41 2ÿ042 log eset 14 d‚cembre compaq.txt 14/12/2017 13:05 1ÿ597ÿ152 20171214_130519.jpg 14/12/2017 13:43 3ÿ833 ZHPCleaner.txt 14/12/2017 13:50 2ÿ199 AdwCleaner[S0].txt 14/12/2017 13:52 2ÿ454 AdwCleaner[C0].txt 14/12/2017 14:03 75ÿ825 ZHPDiag.txt 14/12/2017 16:01 271ÿ334 ZHPDiag standard tour compaq edition.txt 14/12/2017 17:52 1ÿ575ÿ227 20171214_085001.jpg 14/12/2017 19:45 4ÿ906ÿ494 Kash vs. INXs - Dream on black girl.mp3 14/12/2017 19:47 5ÿ011ÿ765 Petit Biscuit - Waterfall Ft. Panama (Official Audio).mp3 17/12/2017 10:48 2ÿ273 ZHPFix tour compaqtxt.txt 17/12/2017 10:59 3ÿ588 adwcleaner tour compaqtxt.txt 17/12/2017 11:37 1ÿ534 ZHPFix tstore 'n' goxt.txt 17/12/2017 11:44 2ÿ470 ZHPFixReport acer.txt 17/12/2017 11:45 7ÿ076 AdwCleaner[C4] acer w7.txt 17/12/2017 12:04 1ÿ541 AdwCleaner[C1] store 'n' go.txt 17/12/2017 13:13 5ÿ881 ZHPCleaner acer w7.txt 17/12/2017 14:13 1ÿ606 ZHPCleaner store 'n' go.txt 17/12/2017 14:20 24ÿ272 mbam acer w7.txt 17/12/2017 14:37 5ÿ872 mbam store 'n' go.txt 17/12/2017 19:08 28ÿ926ÿ998 UsbFix_Report.txt 17/12/2017 19:09 2ÿ877ÿ271 UsbFix_Report.zip 20/12/2017 16:47 PHOTO FAMILY 20/12/2017 16:47 3ÿ571ÿ712 Nouveau dossier 20/12/2017 16:47 AI_RECYCLEBIN 20/12/2017 16:53 OneSafe Driver Manager 20/12/2017 17:02 WinSweeper 22/12/2017 20:48 4ÿ359ÿ045 Foster The People - Best Friend.mp3 22/12/2017 20:49 4ÿ359ÿ045 Foster The People - Best Friend (1).mp3 22/12/2017 20:50 2ÿ751ÿ429 Booba Mon Son.mp3 25/12/2017 16:35 5ÿ808ÿ659 Phats & Small - Turn Around Official Video.mp3 25/12/2017 16:39 7ÿ710ÿ165 Eminem - Walk On Water (Official Video) ft. Beyonc‚.mp3 25/12/2017 16:51 5ÿ307ÿ113 Flo Rida - Who Dat Girl ft. Akon [Official Video].mp3 25/12/2017 16:52 6ÿ715ÿ495 Machine Gun Kelly, Camila Cabello - Bad Things.mp3 26/12/2017 11:49 5ÿ637ÿ505 Mariah Carey - Shake It Off.mp3 26/12/2017 11:51 5ÿ690ÿ795 Brandy - What About Us_.mp3 26/12/2017 11:55 6ÿ093ÿ645 Rihanna - Only Girl (In The World).mp3 26/12/2017 11:56 4ÿ956ÿ573 Ray J & Chris Brown - Famous (Audio).mp3 26/12/2017 11:56 6ÿ203ÿ572 Chris Brown _Dat Night_ Feat. Young Thug & Trey Songz (WSHH Exclusive - Official Audio).mp3 27/12/2017 13:49 4ÿ151ÿ469 Flo Rida - Good Feeling [Official Video].mp3 31/12/2017 18:48 MaxiDisk 12/01/2018 14:10 FOUND.000 13/01/2018 06:41 LOST.DIR 13/01/2018 07:59 Android 14/01/2018 16:28 PCTransImage 19/01/2018 10:49 FixMeStick Quarantine 19/01/2018 11:07 ad-aware installer - sauvetage toshiba flashair 06/02/2018 21:14 FOUND.001 21/02/2018 18:29 10ÿ638 BOOTEX.LOG 01/03/2018 14:54 76 nmdsdcid 86 fichier(s) 273ÿ618ÿ236 octets 20 R‚p(s) 14ÿ330ÿ757ÿ120 octets libres USB drive disinfected and files unhidden =========== - USB drive info: n: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of n: USB drive disinfected and files unhidden =========== - USB drive info: p: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of p: Le volume dans le lecteur P s'appelle COMPANION wintobootic Le num‚ro de s‚rie du volume est 925D-2983 R‚pertoire de P:\ 02/11/2017 08:20 efi 02/11/2017 08:20 support 02/11/2017 08:22 boot 02/11/2017 08:22 386ÿ976 bootmgr 02/11/2017 08:22 1ÿ168ÿ736 bootmgr.efi 02/11/2017 09:27 sources 02/11/2017 11:38 Documents 02/11/2017 13:11 LFS Ultra & 100% S‚curis‚ Finalis with Power2Go 11 04/11/2017 09:16 LFS Hyper-100% S‚curis‚-Cewb‚-Widen Finalis Suite 18 06/11/2017 16:26 17ÿ020ÿ635 UsbFix [Clean 5] DESKTOP-37KC94K.txt 07/11/2017 09:20 PCTransImage 07/11/2017 16:25 668ÿ744 UsbFix_Report w7 acer 7-11-2K17.txt 07/11/2017 18:09 1ÿ583ÿ248 capture winver 7 nov 2k17.PNG 07/11/2017 18:12 wintobootic 07/11/2017 18:21 1ÿ105ÿ706 capture derniŠre version w10 upgrade assistant.PNG 07/11/2017 19:24 14ÿ387ÿ308 UsbFix_Report w10 tour compaq 7-11-2K17.txt 13/11/2017 18:22 19 time.txt 27/11/2017 16:04 fall creators update setup 28/11/2017 18:19 11ÿ264 bootex.log 09/12/2017 07:45 193ÿ863 ZHPDiag helper formation 9 decembre 2017 win 7 acer.txt 12/01/2018 15:20 PortableApps 01/03/2018 14:54 76 nmdsdcid 11 fichier(s) 36ÿ526ÿ575 octets 12 R‚p(s) 3ÿ386ÿ900ÿ480 octets libres USB drive disinfected and files unhidden =========== - USB drive info: q: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of q: Le volume dans le lecteur Q s'appelle windows to go 1 Le num‚ro de s‚rie du volume est 28AD-7773 R‚pertoire de Q:\ USB drive disinfected and files unhidden =========== - USB drive info: r: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 WARNING... Possible Andromeda/Gamarue infection... Listing root contents of r: Le volume dans le lecteur R s'appelle FRAMA SALIX Le num‚ro de s‚rie du volume est D8B7-39EC R‚pertoire de R:\ 0 fichier(s) 0 octets 1 R‚p(s) 1ÿ997ÿ520ÿ896 octets libres USB drive disinfected and files unhidden =========== - USB drive info: s: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Fichier supprim‚ - s:\ad-aware installer - sauvetage toshiba flashair\CyberLink.Power2Go.Platinum.11.0.1013.0\CyberLink.Power2Go.Platinum.11.0.1013.0\Power2Go 11.0.1013.0 Platinum\LPrint\AUTORUN.INF Fichier supprim‚ - s:\Nuance.Dragon.Pro.Indi.15.00.000.158\Nuance.Dragon.Pro.Indi.15.00.000.158.KaranPC\Retail Setup\Autorun.inf WARNING... Possible Andromeda/Gamarue infection... Listing root contents of s: Le volume dans le lecteur S s'appelle samsung fit Le num‚ro de s‚rie du volume est 5818-7234 R‚pertoire de S:\ 12/11/2017 19:19 3ÿ005ÿ801 geek.zip 13/11/2017 11:37 geek 13/11/2017 11:38 Nuance.Dragon.Pro.Indi.15.00.000.158 13/11/2017 11:43 ReviverSoft.PC.Reviver.2.16.1.2.Portable 13/11/2017 18:22 19 time.txt 16/11/2017 09:14 8ÿ261ÿ584 adwcleaner_7.0.4.0.exe 16/11/2017 09:17 2ÿ971ÿ008 ZHPCleaner.exe 16/11/2017 09:21 3ÿ061ÿ760 ZHPFix.exe 16/11/2017 09:25 462ÿ976 clearlnk_2.9.0.11.exe 16/11/2017 09:35 17ÿ487 zhpfix script compaq w10 16 nov.txt 16/11/2017 09:43 4ÿ481 AdwCleaner[C0].txt 16/11/2017 10:09 1ÿ179 JRT win10 compaq 16 nov.txt 16/11/2017 12:14 226 adware removal tool by tsa win10 compaq 16nov.txt 16/11/2017 13:15 4ÿ683 zhpcleaner compaq w10 16 nov.txt 16/11/2017 13:20 Quarantine 16/11/2017 13:22 5ÿ297 zhpfix results compaq w10 16 nov.txt 16/11/2017 13:29 123ÿ300 ClearLNK-16.11.2017_13-29.log 25/11/2017 18:02 NMSDCID 29/11/2017 01:28 11ÿ264 bootex.log 08/12/2017 10:19 scoped_dir3048_3770 08/12/2017 10:35 Anvisoft 08/12/2017 10:38 scoped_dir3048_3660 15/12/2017 17:25 PHOTO FAMILY 18/12/2017 20:52 OneSafe PC Cleaner 19/12/2017 16:25 542 info urgente cyberlink 2.txt 27/12/2017 13:44 OneSafe Driver Manager 31/12/2017 08:59 SpeedUpMyPC 13/01/2018 01:07 Powersuite 19/01/2018 11:41 FixMeStick Quarantine 02/02/2018 06:32 ad-aware installer - sauvetage toshiba flashair 02/02/2018 06:33 tuto test power2go 11 photodirector 9 win 7 ultimate acer 10/02/2018 14:13 DCIM 01/03/2018 14:54 76 nmdsdcid 16 fichier(s) 17ÿ931ÿ683 octets 17 R‚p(s) 127ÿ108ÿ091ÿ904 octets libres USB drive disinfected and files unhidden =========== - USB drive info: t: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of t: Le volume dans le lecteur T s'appelle DTVP30 Le num‚ro de s‚rie du volume est 9762-0C47 R‚pertoire de T:\ 18/03/2013 23:59 Support 19/10/2013 00:18 71 autorun.inf 25/09/2014 22:56 1ÿ173ÿ840 DTVP30_Launcher.exe 02/04/2015 22:44 2ÿ144ÿ162 DTVault Privacy User's Manual.pdf 3 fichier(s) 3ÿ318ÿ073 octets 1 R‚p(s) 0 octets libres USB drive disinfected and files unhidden =========== - USB drive info: u: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of u: USB drive disinfected and files unhidden =========== - USB drive info: v: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Fichier supprim‚ - v:\Lfs hyper part 4\topic anti-roboot en cadeau r‚compense lfsu_gpt_100%sf globale du 16_2_2k18\ZHPCleaner.lnk Fichier supprim‚ - v:\Lfs hyper part 4\Download\mbam-chameleon-3.1.33.0\mbam-chameleon-3.1.33.0\Chameleon\Windows\firefox.pif Fichier supprim‚ - v:\Lfs hyper part 4\Download\mbam-chameleon-3.1.33.0\mbam-chameleon-3.1.33.0\Chameleon\Windows\mbam-chameleon.pif Fichier supprim‚ - v:\Lfs hyper part 4\Download\mbam-chameleon-3.1.33.0\mbam-chameleon-3.1.33.0\Chameleon\Windows\firefox.scr Fichier supprim‚ - v:\Lfs hyper part 4\Download\mbam-chameleon-3.1.33.0\mbam-chameleon-3.1.33.0\Chameleon\Windows\mbam-chameleon.scr Fichier supprim‚ - v:\Lfs hyper part 4\Download\Program Files (x86)\Coolutils total audio converter portable lfs hyper\CoolUtilsTotalAudioConverterPortable.5.2.148\App\AudioConverter\is-MP10I.tmp Fichier supprim‚ - v:\Lfs hyper part 4\Download\Program Files (x86)\AIO Boot Portable\AIO\Tools\grub4dos\shifthd.bat Fichier supprim‚ - v:\Lfs hyper part 4\Download\Program Files (x86)\AIO Boot Portable\AIO\Tools\toporesize\toporesize.bat WARNING... Possible Andromeda/Gamarue infection... Listing root contents of v: Le volume dans le lecteur V s'appelle MICRO SD PN Le num‚ro de s‚rie du volume est 7C56-A85E R‚pertoire de V:\ 24/08/2008 20:35 20 time.txt 30/08/2008 07:49 PHOTO 05/02/2018 17:53 2ÿ423 JRT.txt 05/02/2018 19:22 436ÿ076 ZHPDiag.txt 12/02/2018 12:59 30 Vrai Numero Cb Avec Crypto 816 Et Date Expiration.txt 12/02/2018 13:16 971 feuille de route s‚jour paris avril 2018.txt 17/02/2018 21:16 .android_secure 17/02/2018 21:16 LOST.DIR 21/02/2018 13:12 455ÿ714 Capture.PNG 21/02/2018 13:55 172ÿ698 Shortcut.txt 21/02/2018 13:55 99ÿ770 Addition.txt 21/02/2018 13:55 112ÿ405 FRST.txt 23/02/2018 11:53 96ÿ020 AdsFix_23_02_2018_11_28_36.txt 12/03/2018 06:35 Lfs hyper part 4 12/03/2018 06:40 Android 10 fichier(s) 1ÿ376ÿ127 octets 6 R‚p(s) 4ÿ534ÿ009ÿ856 octets libres USB drive disinfected and files unhidden =========== - USB drive info: w: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of w: USB drive disinfected and files unhidden =========== - USB drive info: y: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of y: USB drive disinfected and files unhidden =========== - USB drive info: z: selected USB Device ID: USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_1100\1313260000000030&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1.00\05077900000000F6&0 USBSTOR\DISK&VEN_GENERIC&PROD_STORAGE_DEVICE&REV_FT01\000000000001&GL&23 USBSTOR\DISK&VEN_WD&PROD_MY_PASSPORT_0827&REV_1012\575831314438354450483744&0 USBSTOR\DISK&VEN_SAMSUNG&PROD_FLASH_DRIVE_FIT&REV_1100\0363316010027335&0 SCSI\DISK&VEN_WDC&PROD_WD10EZEX-60ZF5A0\4&32E8E4A0&0&000000 USBSTOR\DISK&VEN_SANDISK&PROD_ULTRA_FIT&REV_1.00\4C530001050902110312&0 USBSTOR\DISK&VEN_KINGSTON&PROD_DATATRAVELER_3.0&REV_PMAP\001A4D5E84E6B05079526B2F&0 USBSTOR\DISK&VEN_&PROD_FIXMESTICK&REV_8.07\4869B7004BE43CLL02797&0 USBSTOR\DISK&VEN_REALSIL&PROD_RTSUERLUN0&REV_1.00\0000 USBSTOR\DISK&VEN_KINGSTON&PROD_DTVAULTPRIVACY30&REV_CLVX\000FFEC697CDB0A0B000DF8F&0 USBSTOR\DISK&VEN_GENPLUS&PROD_USB-MSDC_DISK_A&REV_1.00\7&368B17D4&0 USBSTOR\DISK&VEN_VERBATIM&PROD_STORE_N_GO&REV_5.00\07014791E2C22032&0 USBSTOR\DISK&VEN_GENERAL&PROD_USB_FLASH_DISK&REV_1100\0116000000008682&0 USBSTOR\DISK&VEN_WD&PROD_ELEMENTS_10A8&REV_1042\57584A314541334C48454537&0 Listing root contents of z: USB drive disinfected and files unhidden Panda USB Vaccine was downloaded Windows Script Host was (re-)enabled by the user ===================================================== Scan finished at: 13:14:51,96 Send this log only if requested by a helper. ===================================================== Made by @bartblaze Tool to delete VBS autorun worm and unhide files Quarantine folder on: C:\Rem-VBSqt Info: https://bartblaze.blogspot.com/2014/02/remediate-vbs-malware.html