[b]############################## | UsbFix V 7.803 | [Recherche][/b] Utilisateur: Daniel (Administrateur) # PORTABLE-DANIEL Mis à jour le 17/11/2014 par El Desaparecido - SosVirus Lancé à 13:49:03 | 24/11/2014 Site Web : [url=http://www.usbfix.net/]http://www.usbfix.net/[/url] Changelog : [url=http://www.usbfix.net/maj/]http://www.usbfix.net/maj/[/url] Assistance : [url=http://www.sosvirus.net/forum-virus-securite.html]http://www.sosvirus.net/forum-virus-securite.html[/url] Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_malware.php[/url] Détection en Live : [url=http://comment-supprimer.fr/]http://comment-supprimer.fr/[/url] Contact : [url=http://www.usbfix.net/contact/]http://www.usbfix.net/contact/[/url] [b]################## | System information |[/b] MB: Acer, Inc. (EI Capitan) CPU: AMD Athlon(tm) X2 Dual-Core QL-60 RAM -> [Total : 2814 Mo | Free : 957 Mo] Bios: Acer Boot: Normal boot OS: Microsoft™ Windows Vista (TM) Home Premium (6.0.6002 32-Bit) Service Pack 2 WB: Internet Explorer : 9.00.8112.16421 [b]################## | Security Information |[/b] AV: avast! Antivirus [Actif |A jour] AS: Windows Defender [Actif |A jour] AS: avast! Antivirus [Actif |A jour] FW: avast! Internet Security [[b](!) Désactivé[/b]] AS: Malwarebytes Anti-Malware : 2.0.3.1025 FW: Windows Firewall [Actif] SC: Security Center [Actif] WU: Windows Update [Actif] [b]################## | Disk Information |[/b] C:\ (%SystemDrive%) -> Disque fixe # 111 Go (24 Go libre(s) - 22%) [ACER] # NTFS D:\ -> Disque fixe # 111 Go (92 Go libre(s) - 82%) [DATA] # NTFS [b]################## | Regedit Run |[/b] F2 - HKLM\..\Winlogon : [Shell] explorer.exe F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe, 04 - HKCU\..\Run : [Clavier+] C:\Users\Daniel\AppData\Local\Clavier+\Clavier.exe 04 - HKCU\..\Run : [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe 04 - HKCU\..\Run : [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash 04 - HKCU\..\Run : [Spotify Web Helper] "C:\Users\Daniel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" 04 - HKCU\..\Run : [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler 04 - HKCU\..\Run : [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" -s 04 - HKCU\..\Run : [MyTomTomSA.exe] C:\Program Files\MyTomTom 3\MyTomTomSA.exe 04 - HKCU\..\Run : [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload 04 - HKCU\..\Run : [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup 04 - HKCU\..\Run : [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] "C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window 04 - HKCU\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR 04 - HKCU\..\Run : [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe 04 - HKCU\..\Run : [Google Update] "C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe" /c 04 - HKLM\..\Run : [RtHDVCpl] RtHDVCpl.exe 04 - HKLM\..\Run : [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe 04 - HKLM\..\Run : [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" 04 - HKLM\..\Run : [PLFSetI] C:\Windows\PLFSetI.exe 04 - HKLM\..\Run : [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE Systemboot 04 - HKLM\..\Run : [Efface Historique 2.1] C:\PROGRA~1\EFFACE~1\EFFACE~1.EXE -s 04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui 04 - HKLM\..\Run : [Skytel] Skytel.exe 04 - HKLM\..\Run : [IndexSearch] "C:\Program Files\Nuance\PaperPort\IndexSearch.exe" 04 - HKLM\..\Run : [PaperPort PTD] "C:\Program Files\Nuance\PaperPort\pptd40nt.exe" 04 - HKLM\..\Run : [ControlCenter4] C:\Program Files\ControlCenter4\BrCcBoot.exe /autorun 04 - HKLM\..\Run : [BrStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe /AUTORUN 04 - HKLM\..\Run : [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide 04 - HKLM\..\Run : [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 04 - HKLM\..\Run : [StartupDelayer] "C:\Program Files\r2 Studios\Startup Delayer\Startup Launcher GUI.exe" 04 - HKLM\..\Run : [nmctxth] "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe" 04 - HKLM\..\Run : [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe 04 - HKLM\..\Run : [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe 04 - HKLM\..\Run : [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe" 04 - HKLM\..\Run : [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" 04 - HKLM\..\Run : [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" 04 - HKLM\..\Run : [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" 04 - HKLM\..\Run : [FAHConsole] C:\Program Files\File Association Helper\FAHConsole.exe 04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem 04 - HKU\S-1-5-19\..\Run : [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter 04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem 04 - HKU\S-1-5-20\..\Run : [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [Clavier+] C:\Users\Daniel\AppData\Local\Clavier+\Clavier.exe 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [Spotify Web Helper] "C:\Users\Daniel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" -s 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [MyTomTomSA.exe] C:\Program Files\MyTomTom 3\MyTomTomSA.exe 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [GoogleChromeAutoLaunch_9CB2B8404301F8169D10E27C4B481A41] "C:\Users\Daniel\AppData\Local\Google\Chrome\Application\chrome.exe" --no-startup-window 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe 04 - HKU\S-1-5-21-1790805139-2795518655-1572476697-1000\..\Run : [Google Update] "C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe" /c 04GS - Dropbox.lnk : /systemstartup 04GS - Brother PRAPB.lnk : 04GS - Secunia PSI Tray.lnk : 04GS - WinZip Quick Pick.lnk : [b]################## | Recherche générique |[/b] [b]################## | Registre |[/b] [b]################## | UsbFix - Information |[/b] Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]Comment supprimer l'infection des raccourcis sur USB ? (Video)[/url] Info : [url=http://www.usbfix.net/2014/10/supprimer-virus-raccourcis-usb/]L'infection des raccourcis USB, c'est quoi ?[/url] Détection en Live : [url=http://comment-supprimer.fr/]http://comment-supprimer.fr/[/url] [b]################## | Hijack |[/b] [b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=http://www.usbfix.net/]http://www.usbfix.net/[/url] |[/b]