cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

[b]############################## | UsbFix V 7.172 | [Recherche][/b]

Utilisateur: Famille LAFITTE (Administrateur) # PC-MAISON
Mis � jour le 23/06/2014 par El Desaparecido - SosVirus
Lanc� � 17:18:39 | 24/06/2014

Site Web : [url=http://www.usbfix.net/]http://www.usbfix.net/[/url]
Changelog : [url=http://www.usbfix.net/maj/]http://www.usbfix.net/maj/[/url]
Assistance : [url=http://www.sosvirus.net/forum-virus-securite.html]http://www.sosvirus.net/forum-virus-securite.html[/url]
Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_malware.php[/url]
Contact : [url=http://www.usbfix.net/contact/]http://www.usbfix.net/contact/[/url]

[b]################## | System information |[/b]

MB: ASUSTeK Computer INC. (Benicia)
CPU: Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz
RAM -> [Total : 3062 Mo | Free : 1439 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft� Windows Vista (TM) Home Premium (6.0.6002 32-Bit) Service Pack 2
WB: Internet Explorer : 9.00.8112.16421
WB: Google Chrome : 35.0.1916.153

[b]################## | Security Information |[/b]

AV: avast! Antivirus [Actif |A jour]
AS: Windows Defender [Actif |A jour]
AS: avast! Antivirus [Actif |A jour]
FW: Windows Firewall [[b](!) D�sactiv�[/b]]
SC: Security Center [Actif]
WU: Windows Update [Actif]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Disque fixe # 456 Go (346 Go libre(s) - 76%) [] # NTFS
D:\ -> Disque fixe # 10 Go (1 Go libre(s) - 14%) [FACTORY_IMAGE] # NTFS
J:\ -> Disque amovible # 4 Go (2 Go libre(s) - 40%) [] # FAT32
K:\ -> Disque amovible # 4 Go (365 Mo libre(s) - 10%) [Transcend] # FAT32
L:\ -> Disque amovible # 2 Go (2 Go libre(s) - 97%) [] # FAT

[b]################## | Processus Actif |[/b]

C:\WINDOWS\System32\smss.exe (ID: 500|ParentID: 4|SYSTEM)
C:\WINDOWS\System32\wininit.exe (ID: 668|ParentID: 616)
C:\WINDOWS\System32\services.exe (ID: 712|ParentID: 668)
C:\WINDOWS\System32\winlogon.exe (ID: 740|ParentID: 660)
C:\WINDOWS\System32\lsass.exe (ID: 768|ParentID: 668)
C:\WINDOWS\System32\lsm.exe (ID: 776|ParentID: 668)
C:\WINDOWS\System32\svchost.exe (ID: 920|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 992|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1032|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1120|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1184|ParentID: 712)
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (ID: 1200|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1232|ParentID: 712)
C:\WINDOWS\System32\audiodg.exe (ID: 1296|ParentID: 1120)
C:\WINDOWS\System32\svchost.exe (ID: 1320|ParentID: 712)
C:\WINDOWS\System32\SLsvc.exe (ID: 1344|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1368|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1652|ParentID: 712)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ID: 1792|ParentID: 712)
C:\WINDOWS\System32\spoolsv.exe (ID: 1920|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 1944|ParentID: 712)
C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (ID: 340|ParentID: 712)
C:\Users\Famille LAFITTE\AppData\LocalLow\alotservice\alotservice.exe (ID: 596|ParentID: 712)
C:\WINDOWS\System32\escsvc.exe (ID: 772|ParentID: 712)
C:\WINDOWS\System32\dwm.exe (ID: 1040|ParentID: 1184|Famille LAFITTE)
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (ID: 800|ParentID: 712)
C:\Program Files\Common Files\LightScribe\LSSrvc.exe (ID: 1980|ParentID: 712)
C:\WINDOWS\explorer.exe (ID: 1500|ParentID: 684|Famille LAFITTE)
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (ID: 2088|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 2200|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 2244|ParentID: 712)
C:\WINDOWS\System32\svchost.exe (ID: 2324|ParentID: 712)
C:\WINDOWS\System32\SearchIndexer.exe (ID: 2360|ParentID: 712)
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe (ID: 2416|ParentID: 2088|Famille LAFITTE)
C:\Program Files\Windows Defender\MSASCui.exe (ID: 2872|ParentID: 1500|Famille LAFITTE)
C:\hp\support\hpsysdrv.exe (ID: 2880|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (ID: 2900|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\System32\hkcmd.exe (ID: 2988|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\System32\igfxpers.exe (ID: 3004|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\RtHDVCpl.exe (ID: 4040|ParentID: 1500|Famille LAFITTE)
C:\Program Files\HP\HP Software Update\hpwuschd2.exe (ID: 2300|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\System32\schtasks.exe (ID: 1280|ParentID: 1644|Famille LAFITTE)
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe (ID: 2500|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Logitech\QuickCam\Quickcam.exe (ID: 2208|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Ask.com\Updater\Updater.exe (ID: 3564|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Epson Software\Event Manager\EEventManager.exe (ID: 3664|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Common Files\Java\Java Update\jusched.exe (ID: 3776|ParentID: 1500|Famille LAFITTE)
C:\Program Files\AVAST Software\Avast\avastui.exe (ID: 3820|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 3060|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\ehome\ehtray.exe (ID: 3272|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\ehome\ehmsas.exe (ID: 916|ParentID: 920|Famille LAFITTE)
C:\Program Files\Orange\MailNotifier\MailNotifier.exe (ID: 3640|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\System32\spool\drivers\w32x86\3\E_FATIIKE.EXE (ID: 3452|ParentID: 1500|Famille LAFITTE)
C:\WINDOWS\System32\spool\drivers\w32x86\3\E_FATIIKE.EXE (ID: 3708|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Skype\Phone\Skype.exe (ID: 2108|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Hercules\WiFi Station pour Livebox\WiFiLB.exe (ID: 4212|ParentID: 1500|Famille LAFITTE)
C:\Users\Famille LAFITTE\AppData\Roaming\Dropbox\bin\Dropbox.exe (ID: 4396|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 4900|ParentID: 3060|Famille LAFITTE)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 4960|ParentID: 3060|Famille LAFITTE)
C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe (ID: 1136|ParentID: 920|Famille LAFITTE)
C:\WINDOWS\System32\svchost.exe (ID: 4412|ParentID: 712)
C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe (ID: 4616|ParentID: 712)
C:\WINDOWS\System32\taskeng.exe (ID: 4196|ParentID: 1232|Famille LAFITTE)
C:\WINDOWS\System32\wuauclt.exe (ID: 5680|ParentID: 1232|Famille LAFITTE)
C:\WINDOWS\System32\igfxsrvc.exe (ID: 5656|ParentID: 920|Famille LAFITTE)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 5084|ParentID: 1500|Famille LAFITTE)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 3408|ParentID: 5084|Famille LAFITTE)
C:\Program Files\Google\Chrome\Application\chrome.exe (ID: 6624|ParentID: 5084|Famille LAFITTE)
C:\WINDOWS\System32\taskeng.exe (ID: 7004|ParentID: 1232)
C:\UsbFix\UsbFix.exe (ID: 6248|ParentID: 1500|Famille LAFITTE)

[b]################## | Autorun |[/b]

J:\La mise en sc�ne.lnk -> J:\iTunesHelper.vbe - (SHA1: D59C8B0AE7DD7799A48FC9EEAAC0833F009A5DD7)
L:\ECJS.lnk -> L:\iTunesHelper.vbe - (SHA1: D59C8B0AE7DD7799A48FC9EEAAC0833F009A5DD7)

[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKCU\..\Run : [ehTray.exe] C:\Windows\ehome\ehTray.exe
04 - HKCU\..\Run : [orangeinside] C:\Users\Famille LAFITTE\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe
04 - HKCU\..\Run : [Orange Installer] "C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe"
04 - HKCU\..\Run : [MailNotifier] C:\Program Files\Orange\MailNotifier\MailNotifier.exe
04 - HKCU\..\Run : [EPLTarget\P0000000000000001] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIKE.EXE /EPT "EPLTarget\P0000000000000001" /M "XP-302 303 305 306 Series"
04 - HKCU\..\Run : [EPLTarget\P0000000000000002] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIKE.EXE /EPT "EPLTarget\P0000000000000002" /M "XP-302 303 305 306 Series"
04 - HKCU\..\Run : [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKLM\..\Run : [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
04 - HKLM\..\Run : [hpsysdrv] c:\hp\support\hpsysdrv.exe
04 - HKLM\..\Run : [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
04 - HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKLM\..\Run : [RtHDVCpl] RtHDVCpl.exe
04 - HKLM\..\Run : [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
04 - HKLM\..\Run : [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
04 - HKLM\..\Run : [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
04 - HKLM\..\Run : [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
04 - HKLM\..\Run : [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
04 - HKLM\..\Run : [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
04 - HKU\S-1-5-19\..\Run : [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
04 - HKU\S-1-5-20\..\Run : [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [ehTray.exe] C:\Windows\ehome\ehTray.exe
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [orangeinside] C:\Users\Famille LAFITTE\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [Orange Installer] "C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe"
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [MailNotifier] C:\Program Files\Orange\MailNotifier\MailNotifier.exe
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [EPLTarget\P0000000000000001] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIKE.EXE /EPT "EPLTarget\P0000000000000001" /M "XP-302 303 305 306 Series"
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [EPLTarget\P0000000000000002] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIKE.EXE /EPT "EPLTarget\P0000000000000002" /M "XP-302 303 305 306 Series"
04 - HKU\S-1-5-21-2666249647-421029830-985437381-1000\..\Run : [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun

[b]################## | Recherche g�n�rique |[/b]

Pr�sent! J:\iTunesHelper.vbe
Pr�sent! L:\iTunesHelper.vbe
Pr�sent! J:\La mise en sc�ne.lnk
Pr�sent! L:\ECJS.lnk

[b]################## | Registre |[/b]


[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=http://www.usbfix.net/]http://www.usbfix.net/[/url] |[/b]

Publicité


Signaler le contenu de ce document

Publicité