Re,
rapport USBFix
c'est bien mon antivirus
############################## | UsbFix V 7.115 | [Recherche]
Utilisateur: planachraf (Administrateur) # PC-DE-PLANACHRA
Mis à jour le 08/03/2013 par El Desaparecido
Lancé à 14:39:22 | 15/03/2013
Site Web:
http://sosvirus.org/index.phpContact: contact@sosvirus.org
PC: Hewlett-Packard (HP Pavilion dv5 Notebook PC) (X86-based PC)
CPU: AMD Athlon(tm) X2 Dual-Core QL-64 (2100)
RAM -> [Total : 3069 | Free : 1481]
BIOS: Default System BIOS
BOOT: Normal boot
OS: Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-Bit) # Service Pack 2
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Microsoft Security Essentials [Enabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 288 Go (31 Go libre(s) - 11%) [] # NTFS
D:\ -> Disque fixe # 11 Go (2 Go libre(s) - 17%) [RECOVERY] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
################## | Processus Actif |
C:\Windows\system32\csrss.exe (576)
C:\Windows\system32\wininit.exe (636)
C:\Windows\system32\csrss.exe (648)
C:\Windows\system32\services.exe (684)
C:\Windows\system32\lsass.exe (696)
C:\Windows\system32\lsm.exe (704)
C:\Windows\system32\winlogon.exe (776)
C:\Windows\system32\svchost.exe (924)
C:\Windows\system32\svchost.exe (996)
c:\Program Files\Microsoft Security Client\MsMpEng.exe (1040)
C:\Windows\System32\svchost.exe (1232)
C:\Windows\System32\svchost.exe (1276)
C:\Windows\system32\svchost.exe (1296)
C:\Windows\system32\svchost.exe (1396)
C:\Windows\system32\SLsvc.exe (1416)
C:\Windows\system32\svchost.exe (1444)
C:\Windows\system32\Hpservice.exe (1528)
C:\Windows\system32\svchost.exe (1648)
C:\Windows\system32\WLANExt.exe (1788)
C:\Windows\System32\spoolsv.exe (1876)
C:\Windows\system32\svchost.exe (1924)
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (388)
C:\Program Files\Giraffic\Veoh_GirafficWatchdog.exe (544)
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (752)
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (2060)
C:\Windows\system32\svchost.exe (2084)
C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (2096)
C:\Windows\system32\svchost.exe (2156)
C:\Windows\System32\svchost.exe (2192)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2232)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2440)
c:\Program Files\Microsoft Security Client\NisSrv.exe (2748)
C:\Windows\system32\taskeng.exe (2796)
C:\Program Files\Giraffic\Veoh_Giraffic.exe (2944)
C:\Windows\system32\svchost.exe (3492)
C:\Program Files\Google\Update\GoogleUpdate.exe (3072)
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (3700)
C:\Windows\system32\Dwm.exe (2332)
C:\Windows\Explorer.EXE (4088)
C:\Windows\system32\taskeng.exe (3376)
C:\Program Files\Microsoft Security Client\msseces.exe (2596)
C:\Program Files\DivX\DivX Update\DivXUpdate.exe (1740)
C:\Program Files\Common Files\Java\Java Update\jusched.exe (3232)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (3448)
C:\Program Files\Real\RealPlayer\Update\realsched.exe (2996)
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (2116)
C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe (3360)
C:\Program Files\Free Download Manager\fdm.exe (2432)
C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe (2876)
C:\Users\planachraf\AppData\Local\Google\Update\GoogleUpdate.exe (2584)
C:\Windows\system32\wuauclt.exe (2572)
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (3152)
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (3188)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (4224)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (2836)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (5064)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (5736)
C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe (6096)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (4104)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (4144)
C:\Program Files\Microsoft\BingBar\7.1.391.0\SeaPort.exe (5680)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (4464)
C:\Users\planachraf\AppData\Local\Google\Chrome\Application\chrome.exe (5508)
C:\Windows\system32\SearchIndexer.exe (2352)
C:\Windows\system32\conime.exe (4788)
C:\UsbFix\Go.exe (2580)
C:\Windows\system32\wbem\wmiprvse.exe (5988)
C:\Windows\system32\SearchProtocolHost.exe (1392)
C:\Windows\system32\SearchFilterHost.exe (3056)
################## | Éléments infectieux |
Présent! C:\Users\PLANAC~1\AppData\Local\Temp\VP6Install.exe
Présent! C:\Users\PLANAC~1\AppData\Local\Temp\69367uninstall.exe
################## | Registre |
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\{2841cedf-67b0-11de-815a-00238b68f467}
Shell\AutoRun\Command = F:\Temp002\key.exe
Shell\OpEn\Command = F:\Temp002\key.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{3dd54d11-f83f-11dd-bd99-00238b68f467}
Shell\AutoRun\Command = F:\setup.exe AUTORUN=1
HKCU\.\.\.\.\Explorer\MountPoints2\{4cc28d08-baa0-11df-ab7e-ffd59c49b476}
Shell\AutoRun\Command = F:\LaunchU3.exe -a
HKCU\.\.\.\.\Explorer\MountPoints2\{525838e6-f956-11dd-8e88-00238b68f467}
Shell\AutoRun\Command = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\RiOUs.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{62ea00b6-0d9f-11e2-bbea-927ad55f5977}
Shell\AutoRun\Command = F:\AutoRun.exe TMM50PRO TMM50
HKCU\.\.\.\.\Explorer\MountPoints2\{969208bf-9706-11de-ab65-00238b68f467}
Shell\AutoRun\Command = RECYCLER\usbassist.exe
Shell\opEN\Command = RECYCLER\usbassist.exe
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |
http://sosvirus.org |