cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

############################## | UsbFix V 7.166 | [Recherche]

Utilisateur: Laetitia (Administrateur) # LAETITIA-HP
Mis � jour le 26/02/2014 par El Desaparecido - Team SosVirus
Lanc� � 15:42:31 | 12/03/2014

Site Web : http://www.usbfix.net/
Changelog : http://www.usbfix.net/maj/
Support : http://www.sosvirus.net/
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contact : http://www.usbfix.net/contact/

PC: Hewlett-Packard (143C)
CPU: AMD Athlon(tm) II P340 Dual-Core Processor
RAM -> [Total : 3835 Mo| Free : 2057 Mo]
Bios: Hewlett-Packard
Boot: Normal boot

OS: Microsoft Windows�7 �dition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16518
WB: Google Chrome : 33.0.1750.146
WB: Mozilla Firefox : 27.0.1

SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: avast! Antivirus [(!) Disabled | Updated]
AS: avast! Antivirus [(!) Disabled | Updated]
AS: Windows Defender [Enabled | Updated]
FW: Windows FireWall [(!) Disabled]

C:\ (%systemdrive%) -> Disque fixe # 282 Go (70 Go libre(s) - 25%) [] # NTFS
D:\ -> Disque fixe # 16 Go (2 Go libre(s) - 15%) [RECOVERY] # NTFS
E:\ -> CD-ROM
F:\ -> Disque amovible # 7 Go (7 Go libre(s) - 92%) [] # FAT32
G:\ -> Disque amovible # 995 Mo (654 Mo libre(s) - 66%) [LAETITIACLE] # FAT
H:\ -> Disque amovible # 15 Go (15 Go libre(s) - 99%) [] # FAT32

################## | Processus Actif |

C:\Windows\system32\csrss.exe (ID: 432 |ParentID: 424)
C:\Windows\system32\wininit.exe (ID: 508 |ParentID: 424)
C:\Windows\system32\csrss.exe (ID: 536 |ParentID: 520)
C:\Windows\system32\services.exe (ID: 576 |ParentID: 508)
C:\Windows\system32\lsass.exe (ID: 592 |ParentID: 508)
C:\Windows\system32\lsm.exe (ID: 600 |ParentID: 508)
C:\Windows\system32\svchost.exe (ID: 708 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 792 |ParentID: 576)
C:\Windows\system32\atiesrxx.exe (ID: 844 |ParentID: 576)
C:\Windows\system32\winlogon.exe (ID: 896 |ParentID: 520)
C:\Windows\System32\svchost.exe (ID: 956 |ParentID: 576)
C:\Windows\System32\svchost.exe (ID: 988 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 320 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 316 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 1064 |ParentID: 576)
C:\Windows\system32\atieclxx.exe (ID: 1168 |ParentID: 844)
C:\Windows\system32\svchost.exe (ID: 1192 |ParentID: 576)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ID: 1388 |ParentID: 576)
C:\Windows\system32\WLANExt.exe (ID: 1396 |ParentID: 988)
C:\Windows\system32\conhost.exe (ID: 1404 |ParentID: 432)
C:\Windows\System32\spoolsv.exe (ID: 1520 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 1552 |ParentID: 576)
C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe (ID: 1644 |ParentID: 576)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ID: 1672 |ParentID: 576)
C:\Program Files\Bonjour\mDNSResponder.exe (ID: 1720 |ParentID: 576)
C:\Windows\SysWOW64\ezSharedSvcHost.exe (ID: 1764 |ParentID: 576)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (ID: 1836 |ParentID: 576)
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (ID: 1864 |ParentID: 576)
C:\Program Files (x86)\rnamfler\naofsvc.exe (ID: 1916 |ParentID: 576)
C:\Windows\system32\svchost.exe (ID: 2000 |ParentID: 576)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 2040 |ParentID: 576)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID: 2096 |ParentID: 2040)
C:\Windows\system32\svchost.exe (ID: 2540 |ParentID: 576)
C:\Windows\system32\taskhost.exe (ID: 2620 |ParentID: 576)
C:\Windows\system32\Dwm.exe (ID: 2748 |ParentID: 988)
C:\Windows\Explorer.EXE (ID: 2800 |ParentID: 2688)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (ID: 3016 |ParentID: 2800)
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (ID: 2268 |ParentID: 2800)
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (ID: 1208 |ParentID: 1340)
C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (ID: 3284 |ParentID: 2800)
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (ID: 3296 |ParentID: 2800)
C:\Windows\system32\SearchIndexer.exe (ID: 3628 |ParentID: 576)
C:\Program Files\AVAST Software\Avast\AvastUI.exe (ID: 3868 |ParentID: 2348)
C:\Program Files (x86)\Common Files\aol\1303326216\ee\aolsoftware.exe (ID: 3888 |ParentID: 2348)
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (ID: 3956 |ParentID: 2348)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ID: 3964 |ParentID: 2348)
C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (ID: 3988 |ParentID: 2348)
C:\Windows\SysWOW64\wscript.exe (ID: 4052 |ParentID: 2348)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 1048 |ParentID: 708)
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (ID: 3276 |ParentID: 576)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 4372 |ParentID: 708)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ID: 4388 |ParentID: 2884)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ID: 2340 |ParentID: 4388)
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe (ID: 5012 |ParentID: 3044)
C:\Windows\system32\svchost.exe (ID: 3088 |ParentID: 576)
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (ID: 2140 |ParentID: 576)
C:\Windows\System32\svchost.exe (ID: 3516 |ParentID: 576)
C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 4944 |ParentID: 576)
C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe (ID: 1576 |ParentID: 5012)
C:\Windows\system32\svchost.exe (ID: 2928 |ParentID: 576)
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (ID: 4596 |ParentID: 3964)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ID: 4504 |ParentID: 2032)
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (ID: 5228 |ParentID: 4504)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 2992 |ParentID: 5228)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 5844 |ParentID: 2992)
C:\Windows\system32\msiexec.exe (ID: 4540 |ParentID: 576)
C:\Windows\System32\WUDFHost.exe (ID: 5692 |ParentID: 988)
C:\Users\Laetitia\Downloads\RogueKiller.exe (ID: 4360 |ParentID: 2800)
C:\Windows\system32\SearchProtocolHost.exe (ID: 1336 |ParentID: 3628)
C:\Windows\system32\SearchFilterHost.exe (ID: 3680 |ParentID: 3628)

################## | Regedit Run |

04 - HKCU\..\Run : [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
04 - HKCU\..\Run : [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
04 - HKCU\..\Run : [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKCU\..\Run : [Facebook Update] "C:\Users\Laetitia\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKCU\..\Run : [SergeLeLama] wscript.exe //B "C:\Users\Laetitia\AppData\Local\Temp\SergeLeLama.vbs"
04 - HKCU\..\Run : [S64Kernel_sys] C:\Msy\Msy.exe atr
04 - HKCU\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
04 - HKCU\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64"
04 - HKCU\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217"
04 - HKCU\..\RunOnce : [Del658230] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKCU\..\RunOnce : [Del720724] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKCU\..\RunOnce : [DelTr889049] cmd.exe /c rd /s /q "C:\Users\Laetitia\AppData\Roaming\mysearchdial"
04 - HKLM\..\Run : [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
04 - HKLM\..\Run : [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
04 - HKLM\..\Run : [HostManager] C:\Program Files (x86)\Common Files\AOL\1303326216\ee\AOLSoftware.exe
04 - HKLM\..\Run : [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
04 - HKLM\..\Run : [CanalPlayerHelper] C:\Program Files (x86)\Lecteur CANALPLAY\CanalPlayerHelper.exe
04 - HKLM\..\Run : [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
04 - HKLM\..\Run : [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
04 - HKLM\..\Run : [svcnet2] C:\Windows\svcnet2\svcnet2.exe
04 - HKLM\..\Run : [SergeLeLama] wscript.exe //B "C:\Users\Laetitia\AppData\Local\Temp\SergeLeLama.vbs"
04 - HKLM\..\RunOnce : [Del658246] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKLM\..\RunOnce : [Del720740] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKLM\..\RunOnce : [DelTr889080] cmd.exe /c rd /s /q "C:\Users\Laetitia\AppData\Roaming\mysearchdial"
04 - HKLM\..\RunOnce : []
04 - HKLM64\..\Run : [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
04 - HKLM64\..\Run : [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
04 - HKLM64\..\Run : [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden
04 - HKLM64\..\Run : [SergeLeLama] wscript.exe //B "C:\Users\Laetitia\AppData\Local\Temp\SergeLeLama.vbs"
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [Facebook Update] "C:\Users\Laetitia\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [SergeLeLama] wscript.exe //B "C:\Users\Laetitia\AppData\Local\Temp\SergeLeLama.vbs"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\Run : [S64Kernel_sys] C:\Msy\Msy.exe atr
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217\amd64"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [Uninstall C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Laetitia\AppData\Local\Microsoft\SkyDrive\17.0.4029.0217"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [Del658230] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [Del720724] cmd.exe /Q /D /c del "C:\Users\Laetitia\AppData\Local\Temp\0.del"
04 - HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\..\RunOnce : [DelTr889049] cmd.exe /c rd /s /q "C:\Users\Laetitia\AppData\Roaming\mysearchdial"

################## | Recherche g�n�rique |

Pr�sent! C:\Users\Laetitia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SergeLeLama.vbs
Pr�sent! F:\SergeLeLama.vbs
Pr�sent! G:\SergeLeLama.vbs
Pr�sent! H:\SergeLeLama.vbs
Pr�sent! C:\Users\Laetitia\AppData\Local\Temp\SergeLeLama.vbs
Pr�sent! F:\DCIM.lnk
Pr�sent! F:\Autorun.inf.lnk
Pr�sent! F:\FOUND.000.lnk
Pr�sent! G:\Dont leave me Blink.lnk
Pr�sent! G:\American idiot Green day.lnk
Pr�sent! G:\Blink 182 Adam s Song.lnk
Pr�sent! G:\Baby You Ain't Looking Righ Powersolo It's Raceday.lnk
Pr�sent! G:\Blink 182 I Miss You Blink 182 no title.lnk
Pr�sent! G:\Blue Jeans Lana Del Rey.lnk
Pr�sent! G:\Bring Me To Life Evanescence.lnk
Pr�sent! G:\Born To Die Lana Del Rey Born To Die.lnk
Pr�sent! G:\Boulevard Of Broken Dreams Green Day American Idiot.lnk
Pr�sent! G:\Formidable Stromae.lnk
Pr�sent! G:\Dance dance Fall out boy.lnk
Pr�sent! G:\Darla Dirladada Les Bronzes.lnk
Pr�sent! G:\Desol� pour hier soir Tryo.lnk
Pr�sent! G:\Donna Lewis I Love You Always Forever.lnk
Pr�sent! G:\Duality Slipknot Iowa.lnk
Pr�sent! G:\Gloria The Doors.lnk
Pr�sent! G:\Falling Away From Me Live AOL KoRn Aufnahmen.lnk
Pr�sent! G:\Far Behind Eddie Vedder Into The Wild.lnk
Pr�sent! G:\How You Remind Me.lnk
Pr�sent! G:\Feeling This Blink 182 Feeling This.lnk
Pr�sent! G:\Gorillaz Clint Eastwood.lnk
Pr�sent! G:\Freak on a leash KoRn Follow The Leader.lnk
Pr�sent! G:\Happy Pharell Williams 1392015784.lnk
Pr�sent! G:\Happy Pharell Williams 1392015784-1.lnk
Pr�sent! G:\First Date Blink 182 Take Off Your Pants Jacket.lnk
Pr�sent! G:\Ho Hey The Lumineers Ho Hey.lnk
Pr�sent! G:\Going Up The Country Canned Heat Freedom Rock Disc 1.lnk
Pr�sent! G:\Happy Pharell Williams 1392015784-2.lnk
Pr�sent! G:\Going Up the Country Canned Heat The Very Best of Canned Heat.lnk
Pr�sent! G:\Hate to say i told you so The Hives veni vidi vicious.lnk
Pr�sent! G:\I Looked at You.lnk
Pr�sent! G:\I Follow Rivers Lykke Li.lnk
Pr�sent! G:\I Got Mine The Black Keys Attack And Release.lnk
Pr�sent! G:\John Newman Love Me Again.lnk
Pr�sent! G:\Julien Dor� ParisSeychelles .lnk
Pr�sent! G:\I Need a Dollar Aloe Blacc Good Things.lnk
Pr�sent! G:\In Too Deep Sum 41 All Killer No Filler.lnk
Pr�sent! G:\I Write Sins Not Tragedies Panic At the Disco A Fever You Cant Sweat Out.lnk
Pr�sent! G:\jack white love is blindness u2 cover.lnk
Pr�sent! G:\Jtemmene au vent Louise Attaque Louise Attaque.lnk
Pr�sent! G:\LaLa LaLa Song.lnk
Pr�sent! G:\Lana Del Rey Kinda Outta Luck.lnk
Pr�sent! G:\Le Lac Indochine.lnk
Pr�sent! G:\Let's Bang.lnk
Pr�sent! H:\People Are Strange The Doors Greatest Hits.lnk
Pr�sent! H:\Tous Les Memes Stromae.lnk
Pr�sent! H:\twentieth century fox the doors.lnk
Pr�sent! H:\Video Games Lana Del Rey.lnk
Pr�sent! H:\Wake me up when september ends Green day.lnk
Pr�sent! H:\Whats my age again Blink.lnk
Pr�sent! H:\Word Up Korn Greatest Hits Vol.lnk
Pr�sent! H:\09 Jennifer Paige Crush.lnk
Pr�sent! H:\99 Problems Hugo-1.lnk
Pr�sent! H:\A Place in Time The 4400 Theme Song Amanda Abizaid Showbiz Songs.lnk
Pr�sent! H:\Dance dance Fall out boy.lnk
Pr�sent! H:\American idiot Green day.lnk
Pr�sent! H:\A.lnk
Pr�sent! H:\All the small things Blink 182 Enema of the State.lnk
Pr�sent! H:\Autorun.inf.lnk

################## | Registre |

Pr�sent! HKLM\Software\SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\SergeLeLama
Pr�sent! HKLM\Software\SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\SergeLeLama
Pr�sent! HKLM\Software\SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\SergeLeLama
Pr�sent! HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKU\S-1-5-21-3447368618-1903890353-2125637639-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Pr�sent! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama

################## | E.O.F | http://www.usbfix.net/ - http://www.sosvirus.net |

Publicité


Signaler le contenu de ce document

Publicité