Format du document : text/plain
Prévisualisation
############################## | UsbFix V 7.166 | [Recherche]
Utilisateur: DAVISIAN (Administrateur) # DAVISIAN-PC
Mis � jour le 26/02/2014 par El Desaparecido - Team SosVirus
Lanc� � 10:06:50 | 27/02/2014
Site Web : http://www.usbfix.net/
Changelog : http://www.usbfix.net/maj/
Support : http://www.sosvirus.net/
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contact : http://www.usbfix.net/contact/
PC: TOSHIBA (Portable PC)
CPU: Pentium(R) Dual-Core CPU T4500 @ 2.30GHz
RAM -> [Total : 3964 Mo| Free : 1451 Mo]
Bios: INSYDE
Boot: Normal boot
OS: Microsoft Windows�7 �dition Int�grale (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16428
WB: Google Chrome : 33.0.1750.117
SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: avast! Antivirus [Enabled | Updated]
AS: Windows Defender [Enabled | Updated]
AS: avast! Antivirus [Enabled | Updated]
FW: Windows FireWall [(!) Disabled]
C:\ (%systemdrive%) -> Disque fixe # 144 Go (15 Go libre(s) - 11%) [] # NTFS
D:\ -> Disque fixe # 142 Go (16 Go libre(s) - 12%) [DAVID] # NTFS
E:\ -> Disque fixe # 11 Go (4 Go libre(s) - 32%) [NEW DISQUE] # NTFS
F:\ -> CD-ROM
H:\ -> Disque amovible # 1 Go (197 Mo libre(s) - 14%) [MID] # FAT32
J:\ -> Disque amovible # 15 Go (461 Mo libre(s) - 3%) [TABDEV] # FAT32
################## | Processus Actif |
C:\Windows\system32\csrss.exe (ID: 392 |ParentID: 384)
C:\Windows\system32\wininit.exe (ID: 448 |ParentID: 384)
C:\Windows\system32\csrss.exe (ID: 464 |ParentID: 440)
C:\Windows\system32\services.exe (ID: 500 |ParentID: 448)
C:\Windows\system32\winlogon.exe (ID: 540 |ParentID: 440)
C:\Windows\system32\lsass.exe (ID: 552 |ParentID: 448)
C:\Windows\system32\lsm.exe (ID: 560 |ParentID: 448)
C:\Windows\system32\svchost.exe (ID: 672 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 776 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 836 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 896 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 924 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 948 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 360 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 1036 |ParentID: 500)
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ID: 1164 |ParentID: 500)
C:\Windows\system32\Dwm.exe (ID: 1292 |ParentID: 896)
C:\Windows\System32\spoolsv.exe (ID: 1540 |ParentID: 500)
C:\Windows\system32\taskhost.exe (ID: 1560 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 1612 |ParentID: 500)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ID: 1764 |ParentID: 500)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ID: 1928 |ParentID: 500)
C:\Windows\System32\igfxtray.exe (ID: 1216 |ParentID: 1316)
C:\Windows\System32\hkcmd.exe (ID: 2120 |ParentID: 1316)
C:\Windows\System32\igfxpers.exe (ID: 2236 |ParentID: 1316)
C:\Program Files (x86)\Le Robert\Le Petit Robert 2014\PetitRobertHA.exe (ID: 2368 |ParentID: 1316)
C:\Program Files (x86)\Internet Download Manager\IDMan.exe (ID: 2528 |ParentID: 1316)
C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe (ID: 2596 |ParentID: 1316)
C:\Users\DAVISIAN\AppData\Roaming\uTorrent\uTorrent.exe (ID: 2604 |ParentID: 1316)
C:\Windows\System32\StikyNot.exe (ID: 2612 |ParentID: 1316)
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (ID: 2824 |ParentID: 2528)
C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Launcher.exe (ID: 2992 |ParentID: 1316)
C:\Program Files (x86)\USB Disk Security\USBGuard.exe (ID: 3000 |ParentID: 2880)
C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ID: 3036 |ParentID: 2880)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (ID: 2900 |ParentID: 2880)
C:\Program Files\Bonjour\mDNSResponder.exe (ID: 2908 |ParentID: 500)
C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Service.exe (ID: 2832 |ParentID: 500)
C:\Program Files\ma-config.com\MaConfigAgent.exe (ID: 1244 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 2876 |ParentID: 500)
C:\Program Files\iPod\bin\iPodService.exe (ID: 3320 |ParentID: 500)
C:\Windows\system32\SearchIndexer.exe (ID: 3344 |ParentID: 500)
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (ID: 3420 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 3532 |ParentID: 500)
C:\Windows\System32\WUDFHost.exe (ID: 3816 |ParentID: 896)
C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 3472 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 3784 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 3732 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 1900 |ParentID: 500)
C:\Windows\explorer.exe (ID: 2164 |ParentID: 540)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 3192 |ParentID: 2164)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 4440 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 4336 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 2964 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 4492 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 5080 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 1816 |ParentID: 3192)
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (ID: 4620 |ParentID: 3164)
C:\PROGRA~2\MICROS~1\Office14\OIS.EXE (ID: 5020 |ParentID: 2164)
C:\Windows\system32\NOTEPAD.EXE (ID: 656 |ParentID: 2164)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 6708 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 7144 |ParentID: 3192)
C:\Program Files (x86)\iTunes\iTunes.exe (ID: 3104 |ParentID: 2164)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (ID: 6560 |ParentID: 3104)
C:\Windows\system32\conhost.exe (ID: 6576 |ParentID: 464)
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (ID: 4256 |ParentID: 6560)
C:\Windows\system32\conhost.exe (ID: 4716 |ParentID: 464)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 3864 |ParentID: 672)
C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe (ID: 5684 |ParentID: 672)
C:\Windows\SysWOW64\DllHost.exe (ID: 6660 |ParentID: 672)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 5192 |ParentID: 3192)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ID: 5320 |ParentID: 3192)
c:\program files\windows defender\MpCmdRun.exe (ID: 7136 |ParentID: 5776)
################## | Regedit Run |
04 - HKCU\..\Run : [Le Petit Robert V4 Hyperappel] C:\Program Files (x86)\Le Robert\Le Petit Robert 2014\PetitRobertHA.exe
04 - HKCU\..\Run : [Facebook Update] "C:\Users\DAVISIAN\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKCU\..\Run : [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
04 - HKCU\..\Run : [SuperCopier2.exe] C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe
04 - HKCU\..\Run : [uTorrent] "C:\Users\DAVISIAN\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKCU\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKCU\..\Run : [AdobeBridge]
04 - HKCU\..\Run : [Google Update] "C:\Users\DAVISIAN\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKCU\..\Run : [UpdateStar Drivers] C:\Program Files (x86)\UpdateStar Drivers\drivers.exe
04 - HKLM\..\Run : [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
04 - HKLM\..\Run : [USB Security] C:\Program Files (x86)\USB Disk Security\USBGuard.exe
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
04 - HKLM\..\Run : [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
04 - HKLM\..\Run : [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
04 - HKLM\..\Run : [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
04 - HKLM\..\Run : [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
04 - HKLM\..\Run : [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
04 - HKLM\..\Run : [NPSStartup]
04 - HKLM\..\RunOnce : []
04 - HKLM64\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - HKLM64\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - HKLM64\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKLM64\..\Run : [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [Le Petit Robert V4 Hyperappel] C:\Program Files (x86)\Le Robert\Le Petit Robert 2014\PetitRobertHA.exe
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [Facebook Update] "C:\Users\DAVISIAN\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [SuperCopier2.exe] C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [uTorrent] "C:\Users\DAVISIAN\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [AdobeBridge]
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [Google Update] "C:\Users\DAVISIAN\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKU\S-1-5-21-3678508564-3580475882-19216754-1000\..\Run : [UpdateStar Drivers] C:\Program Files (x86)\UpdateStar Drivers\drivers.exe
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
################## | Recherche g�n�rique |
Pr�sent! H:\media.lnk
Pr�sent! H:\DOC.lnk
Pr�sent! H:\APK.lnk
Pr�sent! H:\viber.lnk
Pr�sent! H:\Pictures.lnk
Pr�sent! H:\Movies.lnk
Pr�sent! H:\Download.lnk
Pr�sent! H:\bluetooth.lnk
Pr�sent! H:\Recordings.lnk
Pr�sent! H:\eBooks.lnk
Pr�sent! H:\Digital Editions.lnk
Pr�sent! H:\.adobe-digital-editions.lnk
Pr�sent! H:\.dataviz.lnk
Pr�sent! H:\.helix.thumbnails.lnk
Pr�sent! H:\documents.lnk
Pr�sent! H:\Books.lnk
Pr�sent! H:\CV.lnk
Pr�sent! H:\.lnk
Pr�sent! H:\OfficeSuiteV7.lnk
Pr�sent! H:\driveinfo.lnk
Pr�sent! H:\metadata.lnk
Pr�sent! H:\00001.lnk
Pr�sent! H:\101 Small Business Ideas for Under $5000.lnk
Pr�sent! H:\The Complete Photo Guide to Gre - The Editors of Quiver Books.lnk
Pr�sent! H:\Koffi Olomide - Toukou Toukou.lnk
Pr�sent! H:\Analyse financi�re.lnk
Pr�sent! H:\Davido - Skelewu (Official Video).lnk
Pr�sent! H:\205-la_fouine-elle_venait_du_ciel_feat_zaho.lnk
Pr�sent! H:\Demande d'utilisation de la Biblioth�que je.lnk
Pr�sent! H:\biblio.lnk
Pr�sent! H:\ETUDE DE CAS MOP FINALISEE.lnk
Pr�sent! H:\Organisations publiques et associations.lnk
Pr�sent! H:\LOST.DIR.lnk
Pr�sent! H:\.android_secure.lnk
Pr�sent! H:\Android.lnk
Pr�sent! H:\Music.lnk
Pr�sent! H:\Podcasts.lnk
Pr�sent! H:\Ringtones.lnk
Pr�sent! H:\Alarms.lnk
Pr�sent! H:\Notifications.lnk
Pr�sent! H:\DCIM.lnk
Pr�sent! H:\.eCtcQjbu1dgnvtFnvnr6yepTp1M=.lnk
Pr�sent! H:\Intsig.lnk
Pr�sent! H:\DORISIAN.lnk
Pr�sent! H:\insthwrite.lnk
Pr�sent! H:\CamScanner.lnk
Pr�sent! H:\.estrongs.lnk
Pr�sent! H:\System Volume Information.lnk
Pr�sent! H:\WhatsApp.lnk
Pr�sent! H:\backups.lnk
Pr�sent! H:\DictionariesNGHS.lnk
Pr�sent! H:\burstlyImageCache.lnk
Pr�sent! H:\burstlyVideoCache.lnk
Pr�sent! H:\mobogenie.lnk
Pr�sent! J:\L3MO 1213 2eme session.lnk
Pr�sent! J:\Avicii-Hey_Brother.lnk
Pr�sent! J:\du sang de ton agneau.lnk
Pr�sent! J:\1069155_10201030778564768_835852172_n.lnk
Pr�sent! J:\1276007_10200625427734158_1378287346_o.lnk
Pr�sent! J:\driveinfo.lnk
Pr�sent! J:\metadata.lnk
Pr�sent! J:\Guide_de_la_redaction_administrative.lnk
Pr�sent! J:\KMSAutoEasy EN.lnk
Pr�sent! J:\1426443_732485676779031_252245466_n.lnk
Pr�sent! J:\1545047_700713453281077_585398855_n.lnk
Pr�sent! J:\2012081315342320120813153423POLICE_ADMINISTRATIVE.lnk
Pr�sent! J:\Guide_redac_2006_2.lnk
Pr�sent! J:\PAGE DE GARDE et mop.lnk
Pr�sent! J:\1425441_510389009068507_860977991_o.lnk
Pr�sent! J:\20140217_110733.lnk
Pr�sent! J:\http-__www_s149926057_onlinehome_fr_essaiweb_-formule-emile-coue_htm.lnk
Pr�sent! J:\Dora L'exploratrice - Suivez La Carte.lnk
Pr�sent! J:\Barbie A Perfect Christmas 2011 French DVDRiP XViD AC3-FwD.lnk
Pr�sent! J:\sian.lnk
Pr�sent! J:\20140217_110739.lnk
Pr�sent! J:\Nouveau document 4.lnk
Pr�sent! J:\Nouveau document.lnk
Pr�sent! J:\Nouveau document 2.lnk
Pr�sent! J:\Nouveau document 3.lnk
Pr�sent! J:\LES ETATS DE RAPPROCHEMENT.lnk
Pr�sent! J:\JB-Aya.lnk
Pr�sent! J:\1235147_663483670330432_1547316905_n.lnk
Pr�sent! J:\1236157_660728583939274_751751014_n.lnk
Pr�sent! J:\581603_660729027272563_1225399480_n.lnk
Pr�sent! J:\Langageducorps2.lnk
Pr�sent! J:\.eCtcQjbu1dgnvtFnvnr6yepTp1M=.lnk
Pr�sent! J:\data.lnk
Pr�sent! J:\Audio.lnk
Pr�sent! J:\Documents.lnk
Pr�sent! J:\Games & Applications.lnk
Pr�sent! J:\Images.lnk
Pr�sent! J:\LOST.DIR.lnk
Pr�sent! J:\Music.lnk
Pr�sent! J:\MUSIQUE.lnk
Pr�sent! J:\Others.lnk
Pr�sent! J:\Photo.lnk
Pr�sent! J:\Receveid.lnk
Pr�sent! J:\Sounds.lnk
Pr�sent! J:\Videos.lnk
Pr�sent! J:\budget de tresorerie.lnk
Pr�sent! J:\Nouveau dossier (2).lnk
Pr�sent! J:\Zahara - Loliwe (2011).lnk
Pr�sent! J:\Other files.lnk
Pr�sent! J:\English for Accounting CD ROM.lnk
Pr�sent! J:\System Volume Information.lnk
Pr�sent! J:\31 Decembre 2014.lnk
Pr�sent! J:\Iron.Man.3.2013.FRENCH.DVDRIP.XviD-TOPHER.lnk
Pr�sent! J:\RO.lnk
Pr�sent! J:\bref.lnk
Pr�sent! J:\teeo 2014.lnk
Pr�sent! J:\mop.lnk
Pr�sent! J:\ROSINE.lnk
################## | Registre |
################## | E.O.F | http://www.usbfix.net/ - http://www.sosvirus.net |