cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

############################## | UsbFix V 7.169 | [Recherche]

Utilisateur: francois (Administrateur) # FRANCOIS-PC
Mis � jour le 31/03/2014 par El Desaparecido - Team SosVirus
Lanc� � 22:45:58 | 03/05/2014

Site Web : http://www.usbfix.net/
Changelog : http://www.usbfix.net/maj/
Support : http://www.sosvirus.net/forum-virus-securite.html
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contact : http://www.usbfix.net/contact/

PC: PEGATRON CORPORATION (Eureka3)
CPU: Intel(R) Core(TM)2 Quad CPU Q8300 @ 2.50GHz
RAM -> [Total : 6143 Mo| Free : 4183 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft Windows�7 �dition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.17105
WB: Google Chrome : 34.0.1847.131
WB: Mozilla Firefox : 28.0
WB: Safari : 534.55.3

SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: avast! Antivirus [Enabled | Updated]
AS: Windows Defender [Enabled | Updated]
AS: avast! Antivirus [Enabled | Updated]
FW: Windows FireWall [Enabled]

C:\ (%systemdrive%) -> Disque fixe # 820 Go (514 Go libre(s) - 63%) [HP] # NTFS
D:\ -> Disque fixe # 14 Go (2 Go libre(s) - 18%) [FACTORY_IMAGE] # NTFS
E:\ -> CD-ROM
J:\ -> CD-ROM
K:\ -> Disque fixe # 98 Go (5 Go libre(s) - 5%) [SAVE] # NTFS

################## | Processus Actif |

C:\WINDOWS\SYSTEM32\CSRSS.EXE (ID: 484 |ParentID: 476)
C:\Windows\system32\wininit.exe (ID: 544 |ParentID: 476)
C:\Windows\system32\csrss.exe (ID: 568 |ParentID: 556)
C:\WINDOWS\SYSTEM32\SERVICES.EXE (ID: 612 |ParentID: 544)
C:\Windows\system32\winlogon.exe (ID: 640 |ParentID: 556)
C:\WINDOWS\SYSTEM32\LSASS.EXE (ID: 668 |ParentID: 544)
C:\Windows\system32\lsm.exe (ID: 680 |ParentID: 544)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 780 |ParentID: 612)
C:\Windows\system32\nvvsvc.exe (ID: 864 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 908 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 996 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 352 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 164 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 560 |ParentID: 612)
C:\Windows\system32\nvvsvc.exe (ID: 1168 |ParentID: 864)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 1204 |ParentID: 612)
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTSVC.EXE (ID: 1300 |ParentID: 612)
C:\WINDOWS\SYSTEM32\DWM.EXE (ID: 1492 |ParentID: 352)
C:\WINDOWS\EXPLORER.EXE (ID: 1516 |ParentID: 1484)
C:\WINDOWS\SYSTEM32\TASKHOST.EXE (ID: 1728 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 1780 |ParentID: 612)
C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\MOBILE DEVICE SUPPORT\APPLEMOBILEDEVICESERVICE.EXE (ID: 1652 |ParentID: 612)
C:\Program Files\Bonjour\mDNSResponder.exe (ID: 1588 |ParentID: 612)
C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (ID: 1408 |ParentID: 1516)
C:\PROGRAM FILES\WIDCOMM\BLUETOOTH SOFTWARE\BTWDINS.EXE (ID: 2052 |ParentID: 612)
C:\Windows\SysWOW64\svchost.exe (ID: 2080 |ParentID: 612)
C:\PROGRAM FILES\COMMON FILES\LOGISHRD\LVMVFM\LVPRCSRV.EXE (ID: 2144 |ParentID: 612)
C:\PROGRAM FILES (X86)\SPYWARE TERMINATOR\SPYWARETERMINATORSHIELD.EXE (ID: 2172 |ParentID: 1516)
C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe (ID: 2196 |ParentID: 780)
C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (ID: 2356 |ParentID: 612)
C:\PROGRAM FILES\LOGITECH\SETPOINTP\SETPOINT.EXE (ID: 2452 |ParentID: 1516)
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (ID: 2608 |ParentID: 2452)
C:\Windows\SysWOW64\PnkBstrA.exe (ID: 2796 |ParentID: 612)
C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe (ID: 2836 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 2864 |ParentID: 612)
C:\PROGRAM FILES (X86)\TEAMVIEWER\VERSION5\TEAMVIEWER_SERVICE.EXE (ID: 2952 |ParentID: 612)
C:\WINDOWS\SYSTEM32\TASKENG.EXE (ID: 1876 |ParentID: 560)
C:\PROGRAM FILES\WIDCOMM\BLUETOOTH SOFTWARE\BTTRAY.EXE (ID: 2260 |ParentID: 1516)
C:\PROGRAM FILES (X86)\HEWLETT-PACKARD\MEDIA\DVD\DVDAGENT.EXE (ID: 2316 |ParentID: 1876)
C:\PROGRAM FILES (X86)\HEWLETT-PACKARD\TOUCHSMART\MEDIA\KERNEL\CLML\CLMLSVC.EXE (ID: 2740 |ParentID: 1876)
C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (ID: 2752 |ParentID: 1516)
C:\PROGRAM FILES (X86)\D-LINK\DWA-131\WIRELESSCM.EXE (ID: 2576 |ParentID: 1516)
C:\WINDOWS\SYSTEM32\RUNDLL32.EXE (ID: 2564 |ParentID: 1516)
C:\WINDOWS\SYSTEM32\RUNDLL32.EXE (ID: 2448 |ParentID: 1516)
C:\PROGRAM FILES (X86)\LA CHA�NE M�T�O\LA CHA�NE M�T�O.EXE (ID: 3008 |ParentID: 1516)
C:\PROGRAM FILES\HP\HP DESKJET 3050A J611 SERIES\BIN\HPNETWORKCOMMUNICATORCOM.EXE (ID: 3480 |ParentID: 780)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 3708 |ParentID: 612)
C:\PROGRAM FILES (X86)\D-LINK\DWA-131\WLANWPSSVC.EXE (ID: 3792 |ParentID: 612)
C:\PROGRAM FILES (X86)\ACD SYSTEMS\ACDSEE\17.0\ACDIDINTOUCH2.EXE (ID: 3376 |ParentID: 3048)
C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE (ID: 3488 |ParentID: 3048)
C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTUI.EXE (ID: 3328 |ParentID: 3048)
C:\WINDOWS\SYSWOW64\RUNDLL32.EXE (ID: 2468 |ParentID: 2260)
C:\PROGRAM FILES (X86)\TEAMVIEWER\VERSION5\TEAMVIEWER.EXE (ID: 3988 |ParentID: 2952)
C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE (ID: 3276 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 4160 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 4428 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SVCHOST.EXE (ID: 4748 |ParentID: 612)
C:\WINDOWS\SYSTEM32\WUDFHOST.EXE (ID: 4840 |ParentID: 352)
C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE (ID: 4464 |ParentID: 612)
C:\PROGRAM FILES (X86)\SPYWARE TERMINATOR\SPYWARETERMINATORUPDATE.EXE (ID: 2440 |ParentID: 2172)
C:\PROGRAM FILES (X86)\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK\HPSA_SERVICE.EXE (ID: 776 |ParentID: 612)
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE (ID: 5372 |ParentID: 612)
C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE (ID: 4636 |ParentID: 612)
C:\WINDOWS\SYSWOW64\DLLHOST.EXE (ID: 1064 |ParentID: 780)
C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE (ID: 5680 |ParentID: 2220)
C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGIN-CONTAINER.EXE (ID: 2436 |ParentID: 5680)
C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERPLUGIN_13_0_0_206.EXE (ID: 4676 |ParentID: 2436)
C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERPLUGIN_13_0_0_206.EXE (ID: 3592 |ParentID: 4676)
C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE (ID: 4448 |ParentID: 3276)
C:\WINDOWS\SYSTEM32\SEARCHFILTERHOST.EXE (ID: 4948 |ParentID: 3276)
C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE (ID: 4880 |ParentID: 780)

################## | Regedit Run |

F2 - HKLM\..\Winlogon : [Shell] Explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] Explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
04 - HKLM\..\Run : [ACSW17EN] "C:\Program Files (x86)\ACD Systems\ACDSee\17.0\acdIDInTouch2.exe"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
04 - HKLM\..\RunOnce : []
04 - [x64] HKLM\..\Run : [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background
04 - [x64] HKLM\..\Run : [SpywareTerminatorShield] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
04 - [x64] HKLM\..\Run : [SpywareTerminatorUpdater] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
04 - [x64] HKLM\..\Run : [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
04 - [x64] HKLM\..\RunOnce : [NCPluginUpdater] "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
04 - HKU\S-1-5-21-965097798-4093898242-3069599211-1000\..\Run : [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

################## | Recherche g�n�rique |


################## | Registre |

Pr�sent! HKCU\Software\OrangeInside
Pr�sent! HKU\S-1-5-21-965097798-4093898242-3069599211-1000\Software\OrangeInside

################## | E.O.F | http://www.usbfix.net/ - http://www.sosvirus.net |

Publicité


Signaler le contenu de ce document

Publicité