Vous pensez être infecté, des pubs s'affichent quand vous naviguez sur internet ?
Perte de données, ralentissement système, virus USB ?
Désinfectez votre ordinateur gratuitement !
  • Avatar du membre
  • Avatar du membre
Avatar du membre
par marine
#14959
############################## | UsbFix V 7.149 | [Recherche]

Utilisateur: Ludo Marine (Administrateur) # LUDOMARINE-HP
Mis à  jour le 03/11/2013 par El Desaparecido - Team SosVirus
Lancé à  21:17:02 | 06/11/2013

Site Web: http://www.usbfix.net/" onclick="window.open(this.href);return false;
Forum : http://www.sosvirus.net/" onclick="window.open(this.href);return false;
Upload Malware: http://www.sosvirus.net/upload_malware.php" onclick="window.open(this.href);return false;
Contact: http://www.usbfix.net/contact/" onclick="window.open(this.href);return false;

PC: FOXCONN (2AAF)
CPU: AMD Athlon(tm) II X2 220 Processor
RAM -> [Total : 1791 | Free : 746]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft Windows 7 à‰dition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 10.0.9200.16721
WB: Google Chrome : 30.0.1599.101
WB: Mozilla Firefox : 23.0.1

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Avira Desktop [(!) Disabled | Updated]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Disque fixe # 288 Go (159 Go libre(s) - 55%) [COMPAQ] # NTFS
D:\ -> Disque fixe # 10 Go (1 Go libre(s) - 10%) [FACTORY_IMAGE] # NTFS
E:\ -> CD-ROM
I:\ -> CD-ROM
J:\ -> Disque fixe # 932 Go (335 Go libre(s) - 36%) [MEMUP] # NTFS

################## | Processus Actif |

C:\Windows\system32\csrss.exe (ID: 400 |ParentID: 340)
C:\Windows\system32\csrss.exe (ID: 476 |ParentID: 468)
C:\Windows\system32\wininit.exe (ID: 484 |ParentID: 340)
C:\Windows\system32\winlogon.exe (ID: 536 |ParentID: 468)
C:\Windows\system32\services.exe (ID: 584 |ParentID: 484)
C:\Windows\system32\lsass.exe (ID: 592 |ParentID: 484)
C:\Windows\system32\lsm.exe (ID: 600 |ParentID: 484)
C:\Windows\system32\svchost.exe (ID: 700 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 788 |ParentID: 584)
C:\Windows\System32\svchost.exe (ID: 916 |ParentID: 584)
C:\Windows\System32\svchost.exe (ID: 952 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 976 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 1000 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 304 |ParentID: 584)
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (ID: 1444 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 1552 |ParentID: 584)
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (ID: 1688 |ParentID: 584)
C:\Windows\system32\Dwm.exe (ID: 1956 |ParentID: 952)
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (ID: 2236 |ParentID: 1140)
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (ID: 3056 |ParentID: 1688)
C:\Windows\system32\svchost.exe (ID: 968 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 3532 |ParentID: 584)
C:\Windows\system32\svchost.exe (ID: 1292 |ParentID: 584)
C:\Windows\System32\svchost.exe (ID: 3988 |ParentID: 584)
C:\Windows\explorer.exe (ID: 5268 |ParentID: 536)
C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe (ID: 1016 |ParentID: 584)
C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe (ID: 3120 |ParentID: 584)
C:\Windows\system32\SearchIndexer.exe (ID: 4788 |ParentID: 584)
C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 2024 |ParentID: 584)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 5500 |ParentID: 584)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID: 1876 |ParentID: 5500)
C:\Windows\system32\SearchProtocolHost.exe (ID: 1352 |ParentID: 4788)
C:\Windows\system32\DllHost.exe (ID: 5484 |ParentID: 700)
C:\Windows\System32\spoolsv.exe (ID: 5520 |ParentID: 584)
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (ID: 4420 |ParentID: 584)
C:\Windows\system32\SearchFilterHost.exe (ID: 3520 |ParentID: 4788)
C:\UsbFix\Go.exe (ID: 2056 |ParentID: 1544)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 1776 |ParentID: 700)

################## | Regedit Run |

04 - HKLM\SOFTWARE | Run : [StartCCC] - "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
04 - HKLM\SOFTWARE | Run : [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe
04 - HKLM\SOFTWARE | Run : [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
04 - HKLM\SOFTWARE | Run : [Microsoft Default Manager] - "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
04 - HKLM\SOFTWARE | Run : [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
04 - HKLM\SOFTWARE | Run : [RoxWatchTray] - "C:\Program Files (x86)\Common Files\Roxio Shared\12.0\SharedCOM\RoxWatchTray12.exe"
04 - HKLM\SOFTWARE | Run : [CPMonitor] - "C:\Program Files (x86)\Roxio 2010\5.0\CPMonitor.exe"
04 - HKLM\SOFTWARE | Run : [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\SOFTWARE | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\SOFTWARE | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
04 - HKLM\SOFTWARE | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
04 - HKLM\SOFTWARE | Run : [Garmin Lifetime Updater] - C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized
04 - HKLM\SOFTWARE | Run : [WD Quick View] - C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
04 - HKLM\SOFTWARE | Run : [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\SOFTWARE | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [StartCCC] - "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
04 - HKLM\SOFTWARE\wow6432Node | Run : [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [Microsoft Default Manager] - "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
04 - HKLM\SOFTWARE\wow6432Node | Run : [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [RoxWatchTray] - "C:\Program Files (x86)\Common Files\Roxio Shared\12.0\SharedCOM\RoxWatchTray12.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [CPMonitor] - "C:\Program Files (x86)\Roxio 2010\5.0\CPMonitor.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [Adobe Reader Speed Launcher] - "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [AdobeCS5ServiceManager] - "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
04 - HKLM\SOFTWARE\wow6432Node | Run : [Garmin Lifetime Updater] - C:\Program Files (x86)\Garmin\Lifetime Updater\GarminLifetime.exe /StartMinimized
04 - HKLM\SOFTWARE\wow6432Node | Run : [WD Quick View] - C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\SOFTWARE\wow6432Node | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\SOFTWARE | RunOnce : [] -
04 - HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
04 - HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1805913512-2725267287-684195808-1000\SOFTWARE | Run : [DAEMON Tools Lite] - "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
04 - HKU\S-1-5-21-1805913512-2725267287-684195808-1000\SOFTWARE | Run : [Facebook Update] - "C:\Users\Ludo Marine\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe

################## | Recherche générique |


################## | Registre |


################## | Vaccin |

(!) Cet ordinateur n'est pas vacciné!

################## | E.O.F | http://www.usbfix.net" onclick="window.open(this.href);return false; - http://www.sosvirus.net" onclick="window.open(this.href);return false; |
Avatar du membre
par El Desaparecido
#14961
Hello Marine :hello: ,

Le "virus" t'as mangé la langue aussi ?

Bonjour , s'il vous plait ... des explications sur le problème rencontré ne serait pas de trop ...

@ Te lire.

bonsoir oki pour la fermeture je m'en charge car[…]

how to clean junk files

Hello don't use this program , it's a bullshit :)

Bonjour https://www.aht.li/3213847/AdsFix.exe b[…]

De rien Bon WE :)