Voici le rapport après la 2e étape.
PAr contre c'est normal qu'Avast ne se lance pas au démarrage désormais ?
############################## | UsbFix V6.014 |
User : Apop}{yS (Administrateurs) # APOPHYS
Update on 04/08/09 by Chiquitine29 & C_XX
Start at: 19:43:57 | 08/08/2009
Website :
http://pagesperso-orange.fr/NosTools/index.html
AMD Athlon(tm) 64 Processor 3000+
Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 2
Internet Explorer 6.0.2900.2180
Windows Firewall Status : Enabled
AV : avast! antivirus 4.8.1335 [VPS 090807-0] 4.8.1335 [ Enabled | Updated ]
C:\ -> Disque fixe local # 24,41 Go (10,42 Go free) # NTFS
D:\ -> Disque fixe local # 37,27 Go (19,46 Go free) [disque 40 giga] # NTFS
E:\ -> Disque amovible # 1,95 Go (1,67 Go free) # FAT32
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque fixe local # 151,62 Go (45,21 Go free) [Disque 150Go] # NTFS
J:\ -> Disque CD-ROM # 2,43 Go (0 Mo free) [HOMMV] # UDF
K:\ -> Disque CD-ROM
L:\ -> Disque CD-ROM
M:\ -> Disque amovible
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\Utilitaires\Ad-Ware\aawservice.exe
C:\Utilitaires\Avast\aswUpdSv.exe
C:\Utilitaires\Avast\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Utilitaires\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Utilitaires\Avast\ashMaiSv.exe
C:\Utilitaires\Avast\ashWebSv.exe
C:\WINDOWS\System32\alg.exe
################## | Fichiers # Dossiers infectieux |
Supprimé ! C:\DOCUME~1\Apop}{yS\LOCALS~1\Temp\herss.exe
C:\autorun.inf # -> fichier appelé : "C:\mqhnawe.bat" ( Absent ! )
D:\autorun.inf # -> fichier appelé : "D:\mqhnawe.bat" ( Absent ! )
I:\autorun.inf # -> fichier appelé : "I:\mqhnawe.bat" ( Absent ! )
Supprimé ! C:\rx.exe
Supprimé ! C:\autorun.inf
Supprimé ! D:\rx.exe
Supprimé ! D:\autorun.inf
Supprimé ! I:\rx.exe
Supprimé ! I:\autorun.inf
(!) Non supprimé ! J:\Setup.exe
(!) Non supprimé ! J:\autorun.inf
################## | Other |
################## | Suspect ... |
http://www.virustotal.com |
Suspect ! I:\BitComet\BitComet.exe
Suspect ! I:\eMule\emule.exe
Suspect ! I:\LimeWire\LimeWire.exe
################## | Registre # Clés Run infectieuses |
Supprimé ! HKLM\software\microsoft\shared tools\msconfig\startupreg\cdoosoft
Supprimé ! HKLM\SYSTEM\CurrentControlSet\Services\AVPsys
Supprimé ! HKLM\SYSTEM\ControlSet003\Services\AVPsys
################## | Registre # Mountpoints2 |
Supprimé ! HKCU\...\Explorer\MountPoints2\{61a6a75c-7e95-11de-b178-4d6564696130}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9389d646-49ed-11dd-8a04-806d6172696f}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9389d64d-49ed-11dd-8a04-806d6172696f}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9389d64e-49ed-11dd-8a04-806d6172696f}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9389d650-49ed-11dd-8a04-806d6172696f}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{b663a3ce-6c36-11dd-b0ac-4d6564696130}\Shell\AutoRun\Command
################## | Listing des fichiers présent |
[04/07/2008 17:46|--a------|0] -> C:\AUTOEXEC.BAT
[04/07/2008 17:46|--a------|0] -> C:\CONFIG.SYS
[04/07/2008 17:46|-rahs----|0] -> C:\IO.SYS
[04/07/2008 17:46|-rahs----|0] -> C:\MSDOS.SYS
[?|?|?] -> C:\pagefile.sys
[22/01/2009 20:21|--ah-----|268] -> C:\sqmdata00.sqm
[22/01/2009 20:21|--ah-----|244] -> C:\sqmnoopt00.sqm
[08/08/2009 19:47|--a------|4302] -> C:\UsbFix.txt
[04/06/2009 20:41|---hs----|2007] -> D:\AlbumArtSmall.jpg
[04/06/2009 20:41|---hs----|9224] -> D:\AlbumArt_{7C0C7B93-C9ED-43A4-893F-B0B571B5EF53}_Large.jpg
[04/06/2009 20:41|---hs----|2007] -> D:\AlbumArt_{7C0C7B93-C9ED-43A4-893F-B0B571B5EF53}_Small.jpg
[28/05/2007 14:30|---hs----|5726] -> D:\AlbumArt_{95991F17-559F-4ED4-AD19-D478ED486E5B}_Large.jpg
[28/05/2007 14:28|---hs----|1667] -> D:\AlbumArt_{95991F17-559F-4ED4-AD19-D478ED486E5B}_Small.jpg
[09/08/2007 10:08|---hs----|11788] -> D:\AlbumArt_{DB308054-1B95-4C7F-831B-8B44EFFD2C74}_Large.jpg
[09/08/2007 10:08|---hs----|2739] -> D:\AlbumArt_{DB308054-1B95-4C7F-831B-8B44EFFD2C74}_Small.jpg
[04/03/2007 23:10|---hs----|15859] -> D:\AlbumArt_{F68AE1BA-B609-45BE-91EB-C9373C6D8E9E}_Large.jpg
[04/03/2007 23:10|---hs----|3389] -> D:\AlbumArt_{F68AE1BA-B609-45BE-91EB-C9373C6D8E9E}_Small.jpg
[28/05/2007 14:29|---hs----|8117] -> D:\AlbumArt_{FD5331DC-C38A-44C6-AB98-B0989CFD17CF}_Large.jpg
[28/05/2007 14:28|---hs----|2156] -> D:\AlbumArt_{FD5331DC-C38A-44C6-AB98-B0989CFD17CF}_Small.jpg
[09/08/2007 10:08|---hs----|348] -> D:\desktop.ini
[04/06/2009 20:41|---hs----|9224] -> D:\Folder.jpg
[03/06/2009 15:21|--a------|5576581] -> D:\Reead - Nobody's Innocent (Stephan Evans Edit Remix).mp3
[06/06/2009 14:53|--a------|5323273] -> D:\Wax Tailor - Positively inclined.mp3
[03/02/2009 21:45|--a------|4402032] -> E:\2_Girls_-_Fallen_Angel.mp3
[23/04/2008 16:28|--a------|5089280] -> E:\A1 - DJ Konik feat. Michelle Collins - Russians (Vocal Version).mp3
[16/01/2009 18:34|--a------|6821364] -> E:\Bass Drums.mp3
[21/01/2009 13:23|--a------|4344282] -> E:\Celebrate The Summer (Verano Remix).mp3
[23/01/2009 13:45|--a------|4887024] -> E:\Coca Cola.mp3
[25/01/2009 21:53|--a------|4060704] -> E:\Colour The World (Sample Rippers Remix).mp3
[10/02/2009 15:51|--a------|5613810] -> E:\Dancefloor_Driverz_-_Sleeping_in_my_car_(_clubbumpz_remix_).mp3
[16/01/2009 18:31|--a------|4894536] -> E:\Freestajlo (Jumpstylerz Remix).mp3
[11/02/2009 11:05|--a------|5409108] -> E:\Groove_Coverage_-_The_Summer_Rain_(_Rob_Mayth_Remix_).mp3
[16/01/2009 18:28|--a------|6739358] -> E:\Here Without You (Verano Remix).mp3
[16/01/2009 18:32|--a------|5287038] -> E:\I Am Alive.mp3
[07/02/2009 15:26|--a------|13634286] -> E:\MegaMix (Mixed by Dj Torpius).mp3
[11/02/2009 20:29|--a------|4548984] -> E:\Mental_Madness_-_Zombie.mp3
[03/02/2009 22:06|--a------|7855674] -> E:\Return To Moscow (Indurro Vs Chris Da House Remix) 2.mp3
[16/01/2009 18:29|--a------|8522206] -> E:\Shooting Star (Empyre One Remix).mp3
[24/01/2008 16:50|--a------|8708014] -> E:\TB - Dj Marta TEMAZO!! - Yo Lo Que Quiero Es Irme De Fiesta.mp3
[03/02/2009 21:57|--a------|6987412] -> E:\The Anthem (RainDropz Remix) 2.mp3
[16/01/2009 18:36|--a------|11143894] -> E:\Welcome (Axel Konrad Remix).mp3
[04/07/2008 23:38|-rahs----|215] -> I:\boot.ini
[30/08/2002 14:00|-rahs----|4952] -> I:\Bootfont.bin
[04/07/2008 23:34|-rahs----|47564] -> I:\NTDETECT.COM
[04/07/2008 23:34|-rahs----|251712] -> I:\ntldr
[10/04/2006 22:11|-r-------|921656] -> J:\Setup.bmp
[05/09/2001 05:03|-r-------|168448] -> J:\Setup.exe
[19/04/2006 22:16|-r-------|218] -> J:\Setup.ini
[19/04/2006 22:16|-r-------|173616] -> J:\setup.inx
[01/09/2004 02:11|-r-------|245408] -> J:\unicows.dll
[11/04/2006 16:15|-r-------|323584] -> J:\AutoRun.exe
[05/04/2006 17:38|-r-------|50534] -> J:\AutoRun.ico
[14/03/2003 13:03|-r-------|47] -> J:\autorun.inf
[19/04/2006 22:16|-r-------|7990480] -> J:\data1.cab
[19/04/2006 22:16|-r-------|54238] -> J:\data1.hdr
[19/04/2006 22:19|-r-------|2463903882] -> J:\data2.cab
[25/07/2002 12:07|-r-------|346602] -> J:\ikernel.ex_
[19/04/2006 22:19|-r-------|435] -> J:\layout.bin
################## | Vaccination |
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# D:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# E:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# I:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## | Cracks / Keygens / Serials |
################## | ! Fin du rapport # UsbFix V6.014 ! |