Ayé c'est fait donc voila le rapport :
############################## | UsbFix V 7.062 | [Recherche]
Utilisateur: HP_Administrateur (Administrateur) # LENOTRE
Mis à jour le 11/10/2011 par El Desaparecido
Lancé à 19:32:03 | 16/10/2011
Site Web:
http://eldesaparecido.comFichier suspect ? :
http://eldesaparecido.com/support.phpContact:
contact@eldesaparecido.comPC: HP Pavilion 061 (RQ512AA-ABF m7685.fr) (X86-based PC) # Desktop Computer
CPU: Intel(R) Core(TM)2 CPU 6300 @ 1.86GHz (1866)
RAM -> [ Total : 2046 | Free : 1433 ]
BIOS: Phoenix - AwardBIOS v6.00PG
BOOT: Normal boot
OS: Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 3
WB: Windows Internet Explorer 8.0.6001.18702
SC: Security Center Service [ Enabled ]
WU: Windows Update Service [ Enabled ]
FW: Windows FireWall Service [ Enabled ]
C:\ (%systemdrive%) -> Disque fixe # 291 Go (79 Go libre(s) - 27%) [] # NTFS
E:\ -> CD-ROM
J:\ -> Disque fixe # 466 Go (97 Go libre(s) - 21%) [My Book] # FAT32
L:\ -> Disque fixe # 931 Go (276 Go libre(s) - 30%) [My Book] # FAT32
################## | Processus Actif |
C:\WINDOWS\System32\smss.exe (768)
C:\WINDOWS\system32\winlogon.exe (840)
C:\WINDOWS\system32\services.exe (888)
C:\WINDOWS\system32\lsass.exe (900)
C:\WINDOWS\system32\svchost.exe (1060)
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (1188)
C:\WINDOWS\System32\svchost.exe (1224)
C:\WINDOWS\system32\spoolsv.exe (1776)
C:\WINDOWS\Explorer.EXE (2000)
C:\WINDOWS\ehome\ehtray.exe (564)
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (576)
C:\windows\system\hpsysdrv.exe (596)
C:\WINDOWS\system32\RunDLL32.exe (616)
C:\WINDOWS\RTHDCPL.EXE (632)
C:\Program Files\Microsoft Security Client\msseces.exe (648)
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (668)
C:\Program Files\IpsosLSPService\Ipsos-WatchDog.exe (688)
C:\Program Files\iTunes\iTunesHelper.exe (1548)
C:\WINDOWS\system32\ctfmon.exe (1556)
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (712)
C:\Program Files\Bonjour\mDNSResponder.exe (1652)
C:\WINDOWS\eHome\ehRecvr.exe (1896)
C:\WINDOWS\eHome\ehSched.exe (1912)
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe (2068)
C:\Program Files\Digital Connections\Ipsos-Reporting.exe (2096)
C:\Program Files\Digital Connections\Ipsos-Updater.exe (2156)
C:\Program Files\IpsosLSPService\IpsosLSPService.exe (2176)
C:\Program Files\Java\jre6\bin\jqs.exe (2192)
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe (2212)
C:\WINDOWS\system32\nvsvc32.exe (3348)
C:\WINDOWS\system32\svchost.exe (4040)
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe (2372)
C:\WINDOWS\system32\dllhost.exe (3064)
C:\Program Files\iPod\bin\iPodService.exe (3532)
C:\WINDOWS\eHome\ehmsas.exe (3796)
C:\WINDOWS\system32\wbem\wmiapsrv.exe (3820)
C:\UsbFix\Go.exe (3260)
C:\WINDOWS\system32\wscntfy.exe (4216)
################## | Processus Stoppés |
Stoppé! c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (1188)
Stoppé! C:\WINDOWS\system32\spoolsv.exe (1776)
Stoppé! C:\WINDOWS\Explorer.EXE (2000)
Stoppé! C:\WINDOWS\ehome\ehtray.exe (564)
Stoppé! C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (576)
Stoppé! C:\windows\system\hpsysdrv.exe (596)
Stoppé! C:\WINDOWS\system32\RunDLL32.exe (616)
Stoppé! C:\WINDOWS\RTHDCPL.EXE (632)
Stoppé! C:\Program Files\Microsoft Security Client\msseces.exe (648)
Stoppé! C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (668)
Stoppé! C:\Program Files\IpsosLSPService\Ipsos-WatchDog.exe (688)
Stoppé! C:\Program Files\iTunes\iTunesHelper.exe (1548)
Stoppé! C:\WINDOWS\system32\ctfmon.exe (1556)
Stoppé! C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (712)
Stoppé! C:\Program Files\Bonjour\mDNSResponder.exe (1652)
Stoppé! C:\WINDOWS\eHome\ehRecvr.exe (1896)
Stoppé! C:\WINDOWS\eHome\ehSched.exe (1912)
Stoppé! C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe (2068)
Stoppé! C:\Program Files\Digital Connections\Ipsos-Reporting.exe (2096)
Stoppé! C:\Program Files\Digital Connections\Ipsos-Updater.exe (2156)
Stoppé! C:\Program Files\IpsosLSPService\IpsosLSPService.exe (2176)
Stoppé! C:\Program Files\Java\jre6\bin\jqs.exe (2192)
Stoppé! C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe (2212)
Stoppé! C:\WINDOWS\system32\nvsvc32.exe (3348)
Stoppé! C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe (2372)
Stoppé! C:\WINDOWS\system32\dllhost.exe (3064)
Stoppé! C:\Program Files\iPod\bin\iPodService.exe (3532)
Stoppé! C:\WINDOWS\eHome\ehmsas.exe (3796)
Stoppé! C:\WINDOWS\system32\wbem\wmiapsrv.exe (3820)
Stoppé! C:\WINDOWS\system32\wscntfy.exe (4216)
################## | Éléments infectieux |
################## | Registre |
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\{24d976c1-8e0f-11e0-a13a-806d6172696f}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
HKCU\.\.\.\.\Explorer\MountPoints2\{7b77ffef-8e17-11e0-9b16-806d6172696f}
Shell\AutoRun\Command = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
HKCU\.\.\.\.\Explorer\MountPoints2\{d6ae60fc-df62-11e0-a14f-0018f39c2d5c}
Shell\AutoRun\Command = J:\LaunchU3.exe -a
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |