Répondre à : ItunesHelper 2016-09-08T13:27:57+00:00
lilas
Nombre d'articles : 0

Voilà :)

Spoiler for 3st2peoc

############################## | UsbFix V 7.158 | [Suppression]

Utilisateur: SYLVIE (Administrateur) # SYLVIE-TOSH
Mis à jour le 02/01/2014 par El Desaparecido – Team SosVirus
Lancé à 18:31:03 | 03/01/2014

Site Web : http://www.usbfix.net” onclick=”window.open(this.href);return false;
Changelog : http://www.usbfix.net/maj/” onclick=”window.open(this.href);return false;
Support : https://www.sosvirus.net/” onclick=”window.open(this.href);return false;
Upload Malware : upload_malware.php
Contact : http://www.usbfix.net/contact/” onclick=”window.open(this.href);return false;

PC: TOSHIBA (KTWAA)
CPU: Intel(R) Core(TM)2 Duo CPU P7450 @ 2.13GHz
RAM -> [Total : 3037 Mo| Free : 2211 Mo]
Bios: TOSHIBA
Boot: Fail-safe boot

OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 32-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16476
WB: Google Chrome : 31.0.1650.63
WB: Mozilla Firefox : 26.0
WB: Safari : 534.57.2

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: avast! Antivirus [Enabled | Updated]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
AS: Malwarebytes' Anti-Malware : 1.75.0001
FW: Windows FireWall Service [(!) Disabled]

C: (%systemdrive%) -> Disque fixe # 232 Go (83 Go libre(s) – 36%) [WINDOWS] # NTFS
D: -> Disque fixe # 233 Go (213 Go libre(s) – 91%) [Data] # NTFS
E: -> CD-ROM
G: -> Disque fixe # 931 Go (387 Go libre(s) – 42%) [VERBATIM HD] # FAT32

################## | Processus Stoppés |

Stoppé! C:WindowsExplorer.EXE (ID: 1164 |ParentID: 1156)
Stoppé! C:Windowssystem32ctfmon.exe (ID: 1208 |ParentID: 1164)
Stoppé! C:Windowshelppane.exe (ID: 1388 |ParentID: 608)
Stoppé! C:Windowssystem32DllHost.exe (ID: 1508 |ParentID: 608)

################## | Regedit Run |

04 – HKLM..Run : [SVPWUTIL] C:Program FilesTOSHIBAUtilitiesSVPWUTIL.exe SVPwUTIL
04 – HKLM..Run : [HWSetup] “C:Program FilesTOSHIBAUtilitiesHWSetup.exe” hwSetUP
04 – HKLM..Run : [KeNotify] C:Program FilesTOSHIBAUtilitiesKeNotify.exe
04 – HKLM..Run : [TosSENotify] C:Program FilesTOSHIBATOSHIBA HDD SSD AlertTosWaitSrv.exe
04 – HKLM..Run : [Adobe Reader Speed Launcher] “C:Program FilesAdobeReader 9.0ReaderReader_sl.exe”
04 – HKLM..Run : [TosNC] %ProgramFiles%ToshibaBulletinBoardTosNcCore.exe
04 – HKLM..Run : [TosReelTimeMonitor] %ProgramFiles%TOSHIBAReelTimeTosReelTimeMonitor.exe
04 – HKLM..Run : [StartCCC] “C:Program FilesATI TechnologiesATI.ACECore-StaticCLIStart.exe” MSRun
04 – HKLM..Run : [TPwrMain] %ProgramFiles%TOSHIBAPower SaverTPwrMain.EXE
04 – HKLM..Run : [HSON] %ProgramFiles%TOSHIBATBSHSON.exe
04 – HKLM..Run : [SmoothView] %ProgramFiles%ToshibaSmoothViewSmoothView.exe
04 – HKLM..Run : [00TCrdMain] %ProgramFiles%TOSHIBAFlashCardsTCrdMain.exe
04 – HKLM..Run : [RtHDVCpl] C:Program FilesRealtekAudioHDARtHDVCpl.exe
04 – HKLM..Run : [SynTPEnh] %ProgramFiles%SynapticsSynTPSynTPEnh.exe
04 – HKLM..Run : [SmartFaceVWatcher] %ProgramFiles%ToshibaSmartFaceVSmartFaceVWatcher.exe
04 – HKLM..Run : [Teco] “%ProgramFiles%TOSHIBATECOTeco.exe” /r
04 – HKLM..Run : [ToshibaServiceStation] C:Program FilesTOSHIBATOSHIBA Service StationToshibaServiceStation.exe /hide:60
04 – HKLM..Run : [TosWaitSrv] %ProgramFiles%TOSHIBATPHMTosWaitSrv.exe
04 – HKLM..Run : [TWebCamera] “%ProgramFiles%TOSHIBATOSHIBA Web Camera ApplicationTWebCamera.exe” autorun
04 – HKLM..Run : [IMBooster] C:Program FilesIminentIMBoosterimbooster.exe /warmup
04 – HKLM..Run : [NBAgent] “C:Program FilesNeroNero BackItUp & BurnNero BackItUpNBAgent.exe” /WinStart
04 – HKLM..Run : [Monitor] “C:Program FilesLeapFrogLeapFrog ConnectMonitor.exe”
04 – HKLM..Run : [AvastUI.exe] “C:Program FilesAlwil SoftwareAvast5AvastUI.exe” /nogui
04 – HKUS-1-5-19..Run : [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-20..Run : [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe /autoRun
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [cacaoweb] “C:UsersSYLVIEAppDataRoamingcacaowebcacaoweb.exe” -noplayer
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [KiesHelper] C:Program FilesSamsungKiesKiesHelper.exe /s
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [KiesTrayAgent] C:Program FilesSamsungKiesKiesTrayAgent.exe
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [KiesPDLR] C:Program FilesSamsungKiesExternalFirmwareUpdateKiesPDLR.exe
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [ares] “C:Program FilesAresAres.exe” -h
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [Software Informer] “C:Program FilesSoftware Informersoftinfo.exe” -autorun
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [fsm]
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [Copernic Desktop Search – Home] “C:Program FilesCopernic Desktop Search – HomeDesktopSearchService.exe” /tray
04 – HKUS-1-5-21-632140462-1408369099-3186153662-1001..Run : [iTunesHelper] wscript.exe //B “C:UsersSYLVIEAppDataLocalTempiTunesHelper.vbe”
04 – HKUS-1-5-18..Run : [TOSHIBA Online Product Information] C:Program FilesTOSHIBAToshiba Online Product Informationtopi.exe
04 – HKUS-1-5-19..RunOnce : [mctadmin] C:WindowsSystem32mctadmin.exe
04 – HKUS-1-5-20..RunOnce : [mctadmin] C:WindowsSystem32mctadmin.exe

################## | Recherche générique |

(!) Fichiers temporaires supprimés.

################## | Registre |

Supprimé! HKUS-1-5-21-632140462-1408369099-3186153662-1001Software….Mountpoints2{f3b56e6e-1bf2-11e0-bcd6-0026223a141a}
Supprimé! HKUS-1-5-21-632140462-1408369099-3186153662-1001Software….Mountpoints2{fb9fe30c-a705-11e1-b710-0026223a141a}

################## | Listing |

[06/08/2010 – 09:50:22 | SHD] – C:$RECYCLE.BIN
[01/12/2013 – 14:57:13 | D] – C:AdwCleaner
[06/08/2011 – 15:18:52 | N | 2 Ko] – C:aqua_bitmap.cpp
[10/06/2009 – 22:42:20 | A | 0 Ko] – C:autoexec.bat
[23/01/2011 – 19:23:52 | D] – C:BigFishGamesCache
[28/12/2013 – 15:02:13 | D] – C:Config.Msi
[10/06/2009 – 22:42:20 | N | 0 Ko] – C:config.sys
[14/07/2009 – 05:53:55 | SHD] – C:Documents and Settings
[19/05/2012 – 19:36:33 | D] – C:Downloads
[03/01/2014 – 18:28:55 | ASH | 2332320 Ko] – C:hiberfil.sys
[04/09/2009 – 09:57:32 | RHD] – C:MSOCache
[03/01/2014 – 18:28:57 | ASH | 3109760 Ko] – C:pagefile.sys
[14/07/2009 – 03:37:05 | D] – C:PerfLogs
[03/01/2014 – 16:57:14 | D] – C:Program Files
[03/01/2014 – 16:57:15 | HD] – C:ProgramData
[26/02/2010 – 20:12:13 | N | 3 Ko] – C:RHDSetup.log
[04/09/2009 – 10:10:58 | N | 0 Ko | 8C50BDE228BA16FF3D65EAF429EBDF40] – C:SWSTAMP.TXT
[03/01/2014 – 16:17:32 | SHD] – C:System Volume Information
[03/12/2011 – 13:55:52 | D] – C:temp
[26/02/2010 – 20:29:30 | D] – C:Toshiba
[03/01/2014 – 18:31:05 | D] – C:UsbFix
[03/01/2014 – 17:34:03 | N | 7 Ko | 8791F419A7E19A8826DDA2B21A882310] – C:UsbFix [Clean 1] SYLVIE-TOSH.txt
[03/01/2014 – 18:05:00 | N | 10 Ko | E8CF7B15D0E5757076106592BE089EFC] – C:UsbFix [Clean 2] SYLVIE-TOSH.txt
[03/01/2014 – 18:34:07 | A | 7 Ko | F247FB51653C4F9431F94ED28BDF9E88] – C:UsbFix [Clean 3] SYLVIE-TOSH.txt
[03/01/2014 – 16:46:03 | N | 11 Ko | 1ECC29A58180B937B82A8EDBCFC04258] – C:UsbFix [Scan 2] SYLVIE-TOSH.txt
[26/02/2010 – 20:26:27 | D] – C:Users
[03/01/2014 – 18:28:55 | D] – C:Windows
[04/09/2009 – 10:00:18 | D] – C:Works
[24/04/2010 – 21:19:50 | SHD] – D:$RECYCLE.BIN
[20/01/2013 – 20:14:19 | D] – D:1UTILITAIRES
[13/04/2013 – 17:11:21 | D] – D:2DOSSIERS ET DOCUMENTS
[27/12/2010 – 11:02:48 | D] – D:520e935809cb5b2629f5f2
[03/01/2014 – 16:46:02 | RASHD] – D:Autorun.inf
[27/07/2011 – 18:53:45 | N | 201 Ko] – D:Chaines tele.docx
[01/11/2011 – 21:50:30 | N | 23 Ko] – D:Circuits 3.xlsm
[01/11/2011 – 21:49:24 | N | 100 Ko] – D:Circuits 97.xls
[01/11/2011 – 21:47:25 | N | 23 Ko] – D:Circuits.xlsx
[31/10/2011 – 17:36:12 | D] – D:Halloween 2011
[27/02/2010 – 05:25:05 | D] – D:HDDRecovery
[21/04/2010 – 11:22:40 | D] – D:IDE
[01/11/2013 – 21:29:47 | N | 82 Ko] – D:Laura KENT.docx
[05/09/2010 – 15:13:13 | D] – D:msdownld.tmp
[26/02/2010 – 20:03:18 | SHD] – D:System Volume Information
[24/11/2010 – 15:51:08 | AH | 8 Ko] – G:.DS_Store
[24/11/2010 – 14:50:54 | N | 0 Ko] – G:._icon.ico
[21/10/2010 – 11:21:58 | N | 33 Ko] – G:icon.ico
[04/05/2012 – 21:35:56 | D] – G:FOUND.000
[26/04/2011 – 09:31:58 | D] – G:PC
[14/10/2010 – 12:59:02 | N | 136 Ko | EBB52CF5765E245B59BF6B14DEBF6558] – G:Start PC.exe
[19/12/2011 – 20:26:06 | SHD] – G:$RECYCLE.BIN
[20/12/2011 – 09:04:50 | SHD] – G:System Volume Information
[27/01/2012 – 12:17:24 | D] – G:Recycled
[23/02/2012 – 12:16:08 | D] – G:718db8e53259f9ad8ce9
[15/03/2012 – 23:12:36 | D] – G:Musique
[06/05/2012 – 15:50:08 | D] – G:Photos
[09/07/2012 – 14:11:48 | D] – G:pot du 03_07
[09/07/2012 – 14:11:56 | D] – G:pot du 21_06
[09/07/2012 – 14:12:04 | D] – G:pot promus SAENES
[02/12/2012 – 19:12:28 | D] – G:SPASEEN
[26/01/2013 – 23:13:30 | D] – G:Dramas
[29/01/2013 – 12:30:12 | D] – G:Mes documents
[30/01/2013 – 16:47:50 | D] – G:Mes messages
[12/02/2013 – 08:52:34 | D] – G:MASS EFFECT 3
[10/04/2013 – 08:50:52 | ASH | 6 Ko] – G:Thumbs.db
[14/04/2013 – 22:36:06 | N | 0 Ko] – G:~$FORME CHILE 2.docx
[10/01/2013 – 21:52:08 | D] – G:Videos
[11/06/2013 – 14:26:20 | D] – G:Seignosse
[05/06/2013 – 21:20:10 | D] – G:ABBYY
[29/06/2013 – 18:17:06 | D] – G:Nouveau dossier
[27/08/2013 – 12:31:20 | D] – G:Playlist
[03/01/2014 – 16:46:04 | RASHD] – G:Autorun.inf

################## | Vaccin |

D:Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
G:Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

################## | E.O.F | http://www.usbfix.net” onclick=”window.open(this.href);return false; – https://www.sosvirus.net” onclick=”window.open(this.href);return false; |[/spoiler:3st2peoc]