cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

[b]############################## | UsbFix V 7.171 | [Recherche][/b]

Utilisateur: Roro (Administrateur) # RORO-PC
Mis � jour le 18/05/2014 par El Desaparecido - SosVirus
Lanc� � 16:26:09 | 28/05/2014

Site Web : [url=http://www.usbfix.net/]http://www.usbfix.net/[/url]
Changelog : [url=http://www.usbfix.net/maj/]http://www.usbfix.net/maj/[/url]
Assistance : [url=http://www.sosvirus.net/forum-virus-securite.html]http://www.sosvirus.net/forum-virus-securite.html[/url]
Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_malware.php[/url]
Contact : [url=http://www.usbfix.net/contact/]http://www.usbfix.net/contact/[/url]

PC: ASUSTeK COMPUTER INC. (H81M-PLUS)
CPU: Intel(R) Core(TM) i5-4440 CPU @ 3.10GHz
RAM -> [Total : 8128 Mo| Free : 5877 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft Windows�7 �dition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.17107
WB: Mozilla Firefox : 29.0.1

SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: Bitdefender Antivirus [Enabled | Updated]
AS: Bitdefender Antispyware [Enabled | Updated]
AS: Windows Defender [(!) Disabled | Updated]
FW: Bitdefender Pare-feu [(!) Disabled]
FW: Windows FireWall [(!) Disabled]

C:\ (%SystemDrive%) -> Disque fixe # 195 Go (142 Go libre(s) - 73%) [] # NTFS
D:\ -> Disque fixe # 270 Go (129 Go libre(s) - 48%) [] # NTFS
E:\ -> CD-ROM
J:\ -> Disque fixe # 7 Go (716 Mo libre(s) - 10%) [HP_RECOVERY] # FAT32
K:\ -> Disque fixe # 180 Go (84 Go libre(s) - 47%) [HP_PAVILION] # NTFS
L:\ -> Disque fixe # 112 Go (112 Go libre(s) - 100%) [] # NTFS
M:\ -> Disque amovible # 29 Go (27 Go libre(s) - 93%) [] # FAT32

[b]################## | Processus Actif |[/b]

C:\Windows\System32\smss.exe (ID: 352|ParentID: 4|Syst�me)
C:\Windows\System32\wininit.exe (ID: 708|ParentID: 624)
C:\Windows\System32\services.exe (ID: 784|ParentID: 708)
C:\Windows\System32\winlogon.exe (ID: 792|ParentID: 700)
C:\Windows\System32\lsass.exe (ID: 812|ParentID: 708)
C:\Windows\System32\lsm.exe (ID: 832|ParentID: 708)
C:\Windows\System32\svchost.exe (ID: 924|ParentID: 784)
C:\Program Files\Bitdefender\Bitdefender\vsserv.exe (ID: 984|ParentID: 784)
C:\Windows\System32\nvvsvc.exe (ID: 1092|ParentID: 784)
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ID: 1116|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1160|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1284|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1336|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1396|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1420|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1512|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1628|ParentID: 784)
C:\Windows\System32\spoolsv.exe (ID: 1744|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 1784|ParentID: 784)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ID: 1888|ParentID: 784)
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe (ID: 1928|ParentID: 784)
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (ID: 1608|ParentID: 1092)
C:\Windows\System32\nvvsvc.exe (ID: 1548|ParentID: 1092)
C:\Program Files\Intel\iCLS Client\HeciServer.exe (ID: 2216|ParentID: 784)
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (ID: 2292|ParentID: 784)
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ID: 2324|ParentID: 784)
C:\Windows\System32\svchost.exe (ID: 2360|ParentID: 784)
C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe (ID: 2392|ParentID: 784)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 2536|ParentID: 784)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (ID: 2740|ParentID: 2536)
C:\Windows\System32\svchost.exe (ID: 2980|ParentID: 784)
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ID: 3112|ParentID: 2324)
C:\Windows\System32\taskhost.exe (ID: 3120|ParentID: 784|Roro)
C:\Windows\System32\conhost.exe (ID: 3128|ParentID: 716)
C:\Windows\System32\dwm.exe (ID: 3264|ParentID: 1336|Roro)
C:\Windows\explorer.exe (ID: 3340|ParentID: 3232|Roro)
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (ID: 3384|ParentID: 3244|Roro)
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (ID: 3656|ParentID: 3340|Roro)
C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (ID: 3696|ParentID: 3340|Roro)
C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (ID: 3720|ParentID: 3340|Roro)
C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe (ID: 3736|ParentID: 3340|Roro)
C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe (ID: 3848|ParentID: 3340|Roro)
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (ID: 4216|ParentID: 1608|Roro)
C:\Windows\System32\SearchIndexer.exe (ID: 4392|ParentID: 784)
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (ID: 4756|ParentID: 3668|Roro)
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (ID: 1520|ParentID: 784)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (ID: 4244|ParentID: 784)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ID: 3332|ParentID: 784)
C:\Program Files\Bitdefender\Bitdefender\antispam32\obkagent.exe (ID: 4524|ParentID: 5012|Roro)
C:\Windows\SysWOW64\ctfmon.exe (ID: 4380|ParentID: 5012|Roro)
C:\Windows\System32\svchost.exe (ID: 5048|ParentID: 784)
C:\Windows\System32\taskhost.exe (ID: 4848|ParentID: 784|Roro)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ID: 4200|ParentID: 3340|Roro)
C:\Windows\System32\audiodg.exe (ID: 732|ParentID: 1284)
C:\UsbFix\UsbFix.exe (ID: 4044|ParentID: 1100|Roro)
C:\Program Files\Bitdefender\Bitdefender\seccenter.exe (ID: 4656|ParentID: 3696|Roro)
C:\Windows\System32\wbem\WMIADAP.exe (ID: 4364|ParentID: 1420)

[b]################## | Autorun |[/b]


[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
04 - HKCU\..\Run : [Bitdefender Agent de l'application Wallet] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
04 - HKCU\..\Run : [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
04 - [x64] HKLM\..\Run : [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
04 - [x64] HKLM\..\Run : [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
04 - [x64] HKLM\..\Run : [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
04 - [x64] HKLM\..\Run : [Bdagent] "C:\Program Files\Bitdefender\Bitdefender\bdagent.exe"
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1241588492-2293574587-3310498585-1000\..\Run : [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
04 - HKU\S-1-5-21-1241588492-2293574587-3310498585-1000\..\Run : [Bitdefender Agent de l'application Wallet] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
04 - HKU\S-1-5-21-1241588492-2293574587-3310498585-1000\..\Run : [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
04 - HKU\S-1-5-18\..\Run : [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
04 - HKU\S-1-5-18\..\Run : [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
04 - HKU\S-1-5-18\..\Run : [Bitdefender Agent de l'application Wallet] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe

[b]################## | Recherche g�n�rique |[/b]


[b]################## | Registre |[/b]


[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=http://www.usbfix.net/]http://www.usbfix.net/[/url] |[/b]

Publicité


Signaler le contenu de ce document

Publicité