cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

���������� | Shortcut_Module | g3n-h@ckm@n | 22.07.2014.4

����� Vista | 7 | 8 | 8.1 - 32/64 bits ����� - Start 10:56:59 - 22/07/2014

Mis � jour le : 22/07/2014 | 09.35 par g3n-h@ckm@n

Contact : http://www.sosvirus.net
Assistance : http://www.sosvirus.net/forum-virus-securite.html
Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html

Boot: Normal boot

[Pascal (Administrator)] - [PASCAL-PC] - (france [040C])
SID = S-1-5-21-1262485225-3732471474-1580303401-1000

Syst�me : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1

M�moire RAM = Total (MB) : 3079 | Libre (MB) : 1915
Pagefile = Total (MB) : 6157 | Libre (MB) : 4966
Virtuelle = Total (MB) : 4194 | Libre (MB) : 4015


Registre sauvegard� , pour restaurer : C:\Shortcut_Module\Save\Clean\ERDNT.exe

���������� | Mises � jour Windows

Aucune mise � jour d�tect�e !!!

���������� | Navigateurs

IE : 11.0.9600.17207 (� Microsoft Corporation. Tous droits r�serv�s.)
FF : 30.0.0.5269 (�Firefox and Mozilla Developers; available under the MPL 2 license.)

���������� | Security

AM : Malwarebytes' Anti-Malware (1.0.0.532) []
FW :
WMI : OK
WU: Windows Update Service [Auto(2)] = Arr�t�
AS: Windows Defender [Auto(2)] = Arr�t�
FW: Windows FireWall Service [Auto(2)] = Arr�t�

Mise en veille supprim�e !


���������� | FlashPlayer

ActiveX : 14.0.0.145
Plugin : 14.0.0.145

���������� | Processus tu�s

1348 | [Owner : Pascal |Parent : 1312] - (.Microsoft Corporation - Explorateur Windows.) - (6.1.7601.17567) = C:\Windows\explorer.exe
1384 | [Owner : Pascal |Parent : 544] - (.Microsoft Corporation - Processus h�te pour T�ches Windows.) - (6.1.7601.18010) = C:\Windows\System32\taskhost.exe
1428 | [Owner : Syst�me |Parent : 544] - (.Microsoft Corporation - Application sous-syst�me spouleur.) - (6.1.7601.17777) = C:\Windows\System32\spoolsv.exe
1668 | [Owner : Syst�me |Parent : 544] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - (1.701.3.3014) = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
1916 | [Owner : Pascal |Parent : 1348] - (.Octoshape ApS - Main program for Octoshape client.) - (20000.11.324.0) = C:\Users\Pascal\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
2184 | [Owner : Syst�me |Parent : 544] - (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - (7.0.7601.17610) = C:\Windows\System32\SearchIndexer.exe
2756 | [Owner : Pascal |Parent : 720] - (.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) - (6.1.7600.16385) = C:\Windows\System32\wbem\unsecapp.exe
2700 | [Owner : Pascal |Parent : 1348] - (.Mozilla Corporation - Firefox.) - (30.0.0.5269) = C:\Program Files (x86)\Mozilla Firefox\firefox.exe
728 | [Owner : Pascal |Parent : 2700] - (.Mozilla Corporation - Plugin Container for Firefox.) - (30.0.0.5269) = C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
408 | [Owner : Pascal |Parent : 728] - (.Adobe Systems, Inc. - Adobe Flash Player 14.0 r0.) - (14.0.0.145) = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe

���������� | RUN

04 - HKLM\..\Run : [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-21-1262485225-3732471474-1580303401-1000\..\Run : [Octoshape Streaming Services] "C:\Users\Pascal\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun

���������� | Services


Service en fonctionnement : WINDEFEND
Service stopp� : WINDEFEND
Service en fonctionnement : MMCSS
Service en fonctionnement : Dhcp
Service stopp� : Dhcp
Service en fonctionnement : TcpIp
Service en fonctionnement : SSDPSRV
Service stopp� : SSDPSRV
Service en fonctionnement : MPSSvc
Service stopp� : MPSSvc
Service en fonctionnement : LanmanServer
Service stopp� : LanmanServer
Service en fonctionnement : DNScache
Service stopp� : DNScache

���������� | Hosts

C:\Windows\System32\Drivers\etc\hosts : Remis a z�ro avec succ�s

���������� | Registre

Supprim� avec succ�s : HKLM\Software\Classes\Interface\{3856F531-CD1E-4B00-91C7-ED75EC8E7C18} : IOneTab
Supprim� avec succ�s : HKLM\Software\Classes\Interface\{DAF611F6-C2A6-41E8-B9A9-AFC0EFFDA9ED} : ISafeshop
Supprim� avec succ�s : HKLM64\Software\Classes\Interface\{3856F531-CD1E-4B00-91C7-ED75EC8E7C18} : IOneTab
Supprim� avec succ�s : HKLM64\Software\Classes\Interface\{DAF611F6-C2A6-41E8-B9A9-AFC0EFFDA9ED} : ISafeshop

���������� | Offsets


���������� | reparsepoint



���������� | Dossiers | Fichiers

Supprim� avec succ�s : C:\Users\Pascal\AppData\Local\Resmon.ResmonCfg (.-.)
Supprim� avec succ�s : C:\Users\Pascal\AppData\Roaming\Microsoft\Windows\Recent\2014-04-25.lnk = Notation

���������� | .LNK


���������� | Ouverture extension inconnue


���������� | Proxy


���������� | Internet Explorer


���������� | Google Chrome

[Pascal] Remis a z�ro avec succ�s : SearchURL


���������� | Firefox

[Pascal] Supprim� avec succ�s : C:\Users\Pascal\AppData\Roaming\Mozilla\Firefox\Profiles\k371jowk.default\sessionstore.js


���������� | SeaMonkey



���������� | Pale moon



���������� | Opera


���������� | StartMenuInternet


���������� | AppCertDlls | AppInit_DLLs


���������� | Javascript


���������� | Firewall


���������� | ADS

���������� | Fichiers temporaires

[All Users] Fichiers temporaires Supprim�s : 0 Ko
[Default] Fichiers temporaires Supprim�s : 0 Ko
[Default User] Fichiers temporaires Supprim�s : 0 Ko
[Pascal] Fichiers temporaires Supprim�s : 10 Ko
[Public] Fichiers temporaires Supprim�s : 0 Ko
[C:\Windows\Temp] Fichiers temporaires Supprim�s : 0 Ko
[C:\Temp] Fichiers temporaires Supprim�s : 0 Ko

Service Red�marr� : LanmanServer
Service Red�marr� : MPSsvc

Autre rapport


Mise en veille restaur�e

���������� | Listing


���������� | C:\Program Files (x86)

[18/05/2014 14:20:49] - |D| - C:\Program Files (x86)\Adobe
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files
[18/06/2014 19:33:35] - |D| - C:\Program Files (x86)\Creative
[14/07/2009 06:54:24] - |ASH| - C:\Program Files (x86)\desktop.ini
[23/05/2014 01:16:38] - |D| - C:\Program Files (x86)\Driver Whiz
[18/05/2014 11:41:46] - |D| - C:\Program Files (x86)\FastStone Capture
[17/06/2014 00:14:26] - |D| - C:\Program Files (x86)\Google
[08/06/2014 00:45:27] - |HD| - C:\Program Files (x86)\InstallShield Installation Information
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Internet Explorer
[08/06/2014 00:45:27] - |D| - C:\Program Files (x86)\Logitech
[18/05/2014 18:06:42] - |D| - C:\Program Files (x86)\Malwarebytes Anti-Malware
[13/05/2014 09:29:06] - |D| - C:\Program Files (x86)\Microsoft Analysis Services
[13/05/2014 09:28:08] - |D| - C:\Program Files (x86)\Microsoft Office
[13/05/2014 09:32:07] - |D| - C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[13/05/2014 09:32:07] - |D| - C:\Program Files (x86)\Microsoft Sync Framework
[13/05/2014 09:32:33] - |D| - C:\Program Files (x86)\Microsoft Synchronization Services
[13/05/2014 09:30:08] - |D| - C:\Program Files (x86)\Microsoft Visual Studio 8
[13/05/2014 09:32:07] - |D| - C:\Program Files (x86)\Microsoft.NET
[10/06/2014 21:03:20] - |D| - C:\Program Files (x86)\Mozilla Firefox
[13/06/2014 20:18:06] - |D| - C:\Program Files (x86)\Mozilla Maintenance Service
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\MSBuild
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Reference Assemblies
[14/07/2009 06:57:06] - |HD| - C:\Program Files (x86)\Uninstall Information
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Defender
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Windows Mail
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Media Player
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Windows NT
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Photo Viewer
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Portable Devices
[14/07/2009 07:32:38] - |D| - C:\Program Files (x86)\Windows Sidebar

���������� | C:\Program Files

[13/05/2014 11:24:34] - |D| - C:\Program Files\AVAST Software
[19/05/2014 12:39:01] - |D| - C:\Program Files\CCleaner
[14/07/2009 05:20:08] - |D| - C:\Program Files\Common Files
[14/07/2009 06:54:24] - |ASH| - C:\Program Files\desktop.ini
[14/07/2009 07:32:38] - |D| - C:\Program Files\DVD Maker
[12/05/2014 15:53:37] - |SHD| - C:\Program Files\Fichiers communs
[14/07/2009 05:20:08] - |D| - C:\Program Files\Internet Explorer
[14/07/2009 07:32:38] - |D| - C:\Program Files\Microsoft Games
[13/05/2014 09:29:32] - |D| - C:\Program Files\Microsoft Office
[14/07/2009 07:32:38] - |D| - C:\Program Files\MSBuild
[14/07/2009 07:32:38] - |D| - C:\Program Files\Reference Assemblies
[04/06/2014 19:55:21] - |D| - C:\Program Files\Speccy
[14/07/2009 07:09:26] - |HD| - C:\Program Files\Uninstall Information
[14/07/2009 07:32:38] - |D| - C:\Program Files\Windows Defender
[12/04/2011 11:28:12] - |D| - C:\Program Files\Windows Journal
[14/07/2009 05:20:08] - |D| - C:\Program Files\Windows Mail
[14/07/2009 07:32:38] - |D| - C:\Program Files\Windows Media Player
[14/07/2009 05:20:08] - |D| - C:\Program Files\Windows NT
[14/07/2009 07:32:38] - |D| - C:\Program Files\Windows Photo Viewer
[14/07/2009 07:32:38] - |D| - C:\Program Files\Windows Portable Devices
[14/07/2009 07:32:38] - |D| - C:\Program Files\Windows Sidebar

���������� | C:\Program Files (x86)\Common Files

[18/05/2014 14:20:49] - |D| - C:\Program Files (x86)\Common Files\Adobe
[13/05/2014 09:32:32] - |D| - C:\Program Files (x86)\Common Files\DESIGNER
[08/06/2014 00:44:00] - |D| - C:\Program Files (x86)\Common Files\InstallShield
[08/06/2014 00:45:29] - |D| - C:\Program Files (x86)\Common Files\Logitech
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\microsoft shared
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\Services
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\SpeechEngines
[14/07/2009 05:20:08] - |D| - C:\Program Files (x86)\Common Files\System

���������� | C:\Program Files\Common Files

[14/07/2009 05:20:08] - |D| - C:\Program Files\Common Files\Microsoft Shared
[14/07/2009 05:20:08] - |D| - C:\Program Files\Common Files\Services
[14/07/2009 05:20:08] - |D| - C:\Program Files\Common Files\SpeechEngines
[14/07/2009 05:20:08] - |D| - C:\Program Files\Common Files\System

���������� | C:\Users\Pascal\AppData\Roaming

[13/05/2014 09:15:14] - |D| - C:\Users\Pascal\AppData\Roaming\Adobe
[13/05/2014 11:35:35] - |D| - C:\Users\Pascal\AppData\Roaming\AVAST Software
[18/05/2014 11:41:50] - |D| - C:\Users\Pascal\AppData\Roaming\FastStone
[12/05/2014 15:54:01] - |D| - C:\Users\Pascal\AppData\Roaming\Identities
[13/05/2014 20:29:10] - |D| - C:\Users\Pascal\AppData\Roaming\Macromedia
[12/05/2014 15:53:44] - |D| - C:\Users\Pascal\AppData\Roaming\Media Center Programs
[12/05/2014 15:53:44] - |SD| - C:\Users\Pascal\AppData\Roaming\Microsoft
[13/05/2014 11:24:52] - |D| - C:\Users\Pascal\AppData\Roaming\Mozilla
[11/07/2014 22:47:23] - |D| - C:\Users\Pascal\AppData\Roaming\Octoshape
[18/05/2014 16:42:51] - |D| - C:\Users\Pascal\AppData\Roaming\TeamViewer

���������� | C:\Users\Pascal\AppData\Local

[17/06/2014 19:28:18] - |D| - C:\Users\Pascal\AppData\Local\Adobe
[12/05/2014 16:07:45] - |D| - C:\Users\Pascal\AppData\Local\Ahead
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\Apple
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\Apple Computer
[12/05/2014 15:53:45] - |SHD| - C:\Users\Pascal\AppData\Local\Application Data
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\Apps
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\cache
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\Citrix
[12/05/2014 16:07:46] - |D| - C:\Users\Pascal\AppData\Local\CrashDumps
[12/05/2014 16:07:43] - |A| - C:\Users\Pascal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[12/05/2014 16:07:47] - |D| - C:\Users\Pascal\AppData\Local\Diagnostics
[12/05/2014 16:07:47] - |D| - C:\Users\Pascal\AppData\Local\DigitalVolcano
[12/05/2014 16:07:47] - |D| - C:\Users\Pascal\AppData\Local\Downloaded Installations
[21/05/2014 23:48:27] - |D| - C:\Users\Pascal\AppData\Local\ElevatedDiagnostics
[13/05/2014 09:38:48] - |SHD| - C:\Users\Pascal\AppData\Local\EmieSiteList
[13/05/2014 09:38:48] - |SHD| - C:\Users\Pascal\AppData\Local\EmieUserList
[12/05/2014 16:07:48] - |D| - C:\Users\Pascal\AppData\Local\ESET
[12/05/2014 16:07:43] - |A| - C:\Users\Pascal\AppData\Local\GDIPFONTCACHEV1.DAT
[12/05/2014 16:08:00] - |D| - C:\Users\Pascal\AppData\Local\Google
[12/05/2014 15:53:45] - |SHD| - C:\Users\Pascal\AppData\Local\Historique
[12/05/2014 16:07:43] - |AH| - C:\Users\Pascal\AppData\Local\IconCache.db
[12/05/2014 16:08:34] - |D| - C:\Users\Pascal\AppData\Local\Macromedia
[12/05/2014 15:53:44] - |D| - C:\Users\Pascal\AppData\Local\Microsoft
[13/05/2014 09:28:15] - |D| - C:\Users\Pascal\AppData\Local\Microsoft Help
[13/05/2014 11:24:55] - |D| - C:\Users\Pascal\AppData\Local\Mozilla
[11/07/2014 22:47:24] - |D| - C:\Users\Pascal\AppData\Local\Octoshape
[18/05/2014 18:00:50] - |D| - C:\Users\Pascal\AppData\Local\Programs
[12/05/2014 15:53:44] - |D| - C:\Users\Pascal\AppData\Local\Temp
[12/05/2014 15:53:45] - |SHD| - C:\Users\Pascal\AppData\Local\Temporary Internet Files
[12/05/2014 15:53:53] - |D| - C:\Users\Pascal\AppData\Local\VirtualStore

���������� | C:\ProgramData

[18/05/2014 14:20:28] - |D| - C:\ProgramData\Adobe
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Application Data
[13/05/2014 11:20:20] - |D| - C:\ProgramData\AVAST Software
[12/05/2014 15:53:37] - |SHD| - C:\ProgramData\Bureau
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Desktop
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Documents
[12/05/2014 15:53:37] - |SHD| - C:\ProgramData\Favoris
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Favorites
[18/05/2014 18:01:09] - |D| - C:\ProgramData\Malwarebytes
[12/05/2014 15:53:37] - |SHD| - C:\ProgramData\Menu D�marrer
[14/07/2009 05:20:08] - |SD| - C:\ProgramData\Microsoft
[13/05/2014 09:28:07] - |D| - C:\ProgramData\Microsoft Help
[12/05/2014 15:53:37] - |SHD| - C:\ProgramData\Mod�les
[13/05/2014 09:44:35] - |D| - C:\ProgramData\Mozilla
[24/05/2014 12:26:45] - |D| - C:\ProgramData\PC1Data
[14/06/2014 14:05:41] - |D| - C:\ProgramData\Skype
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Start Menu
[14/07/2009 07:08:56] - |SHD| - C:\ProgramData\Templates

El�ments analys�s : 193878 | Modifi�s : 0 | Infect�s : 10

���������� |EOF| ���������� | 11:55:12 | [15 Ko]

Publicité


Signaler le contenu de ce document

Publicité