############################## | UsbFix V 7.102 | [Recherche]
Utilisateur: Administrateur (Administrateur) # NEC-A
Mis à jour le 20/12/2012 par El Desaparecido
Lancé à 14:51:02 | 01/02/2013
Site Web:
http://sosvirus.orgContact:
contact@eldesaparecido.comPC: NEC COMPUTERS SAS (POWERMATE_VL370) (X86-based PC
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4400+ (2300)
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4400+ (2300)
RAM -> [Total : 1919 | Free : 1152]
BIOS: )Phoenix - Award WorkstationBIOS v6.00PG
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 2
WB: Windows Internet Explorer 6.0.2900.2180
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 75 Go (27 Go libre(s) - 37%) [] # NTFS
D:\ -> CD-ROM
E:\ -> Disque amovible # 2 Go (89 Mo libre(s) - 4%) [] # FAT
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (708)
C:\WINDOWS\system32\winlogon.exe (984)
C:\WINDOWS\system32\services.exe (1028)
C:\WINDOWS\system32\lsass.exe (1040)
C:\WINDOWS\system32\Ati2evxx.exe (1196)
C:\WINDOWS\system32\svchost.exe (1228)
C:\WINDOWS\System32\svchost.exe (1324)
C:\WINDOWS\system32\svchost.exe (1364)
C:\WINDOWS\system32\Ati2evxx.exe (1552)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1876)
C:\WINDOWS\Explorer.EXE (740)
C:\WINDOWS\system32\spoolsv.exe (828)
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (900)
C:\Program Files\Bonjour\mDNSResponder.exe (928)
C:\WINDOWS\system32\svchost.exe (160)
C:\Program Files\Java\jre6\bin\jqs.exe (272)
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe (624)
C:\WINDOWS\System32\svchost.exe (128)
C:\WINDOWS\System32\svchost.exe (1492)
C:\Program Files\AVAST Software\Avast\avastUI.exe (1720)
C:\Program Files\Real\RealPlayer\update\realsched.exe (2140)
C:\WINDOWS\system32\ctfmon.exe (2180)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2616)
C:\WINDOWS\system32\svchost.exe (2716)
C:\WINDOWS\system32\wuauclt.exe (3224)
C:\WINDOWS\system32\wbem\wmiapsrv.exe (3700)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3148)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1100)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (308)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3340)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2228)
C:\WINDOWS\System32\svchost.exe (3544)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (2972)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (1648)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (696)
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe (3040)
C:\UsbFix\Go.exe (2864)
################## | Éléments infectieux |
################## | Registre |
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\{1bee1b8c-be4f-11df-9b6f-00218534ddd8}
Shell\AutoRun\Command = driver\usb\usb_microsoft_driver.exe
Shell\open\Command = driver\usb\usb_microsoft_driver.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{1fa09c2c-4594-11df-9add-00218534ddd8}
Shell\AutoRun\Command = driver\usb\usb_microsoft_driver.exe
Shell\open\Command = driver\usb\usb_microsoft_driver.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{269ff032-4d97-11e0-9bc5-000a78a0881e}
Shell\AutoRun\Command = driver\usb\usb_microsoft_driver.exe
Shell\open\Command = driver\usb\usb_microsoft_driver.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{279a4ee8-18a9-11e2-9ced-000a78a0881e}
Shell\AutoRun\Command = start.exe
Shell\iledefrance\Command = start.exe
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |