Bonjour à tous,
j'ai effectué la recherche avec usb fix et voici le rapport :
merci de votre aide
############################## | UsbFix V6.073 |
Update on 09/01/2010 by El Desaparecido , C_XX & Chimay8
Start at: 21:13:46 | 11/01/2010
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 6.0.2900.5512
Windows Firewall Status : Disabled
AV : Norton AntiVirus 15.5.0.23 [ Enabled | Updated ]
FW : Norton AntiVirus[ Enabled ]15.5.0.23
C:\ -> Disque fixe local # 111,78 Go (48,2 Go free) # NTFS
D:\ -> Disque CD-ROM
E:\ -> Disque CD-ROM # 3,08 Go (0 Mo free) [DV_L900EN10] # CDFS
F:\ -> Disque amovible # 7,52 Go (1,75 Go free) [PHILIPS UFD] # FAT32
G:\ -> Disque amovible # 3,85 Go (350,54 Mo free) [KINGSTON] # FAT32
H:\ -> Disque fixe local # 465,7 Go (28,97 Go free) [MIMILDISQUE] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe 1228
C:\WINDOWS\system32\csrss.exe 1288
C:\WINDOWS\system32\winlogon.exe 1316
C:\WINDOWS\system32\services.exe 1372
C:\WINDOWS\system32\lsass.exe 1384
C:\WINDOWS\system32\svchost.exe 1560
C:\WINDOWS\system32\svchost.exe 1660
C:\WINDOWS\System32\svchost.exe 1700
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe 1792
C:\WINDOWS\system32\svchost.exe 1956
C:\WINDOWS\system32\svchost.exe 2020
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe 320
C:\WINDOWS\system32\spoolsv.exe 948
C:\WINDOWS\system32\svchost.exe 1116
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 1788
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe 1804
C:\Program Files\Bonjour\mDNSResponder.exe 1648
C:\WINDOWS\eHome\ehRecvr.exe 1944
C:\WINDOWS\eHome\ehSched.exe 192
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe 184
C:\Program Files\Java\jre6\bin\jqs.exe 712
C:\WINDOWS\system32\nvsvc32.exe 912
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe 996
C:\Program Files\SolidWorks\COSMOSFloWorks\FloWorks\binCFW\StandAloneSlv.exe 1064
C:\Program Files\Dell Support Center\bin\sprtsvc.exe 2244
C:\WINDOWS\system32\svchost.exe 2304
C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe 2344
C:\WINDOWS\system32\svchost.exe 2436
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe 2472
C:\WINDOWS\ehome\mcrdsvc.exe 2604
C:\WINDOWS\system32\dllhost.exe 2988
C:\WINDOWS\system32\wbem\wmiapsrv.exe 3080
C:\WINDOWS\System32\alg.exe 3136
C:\WINDOWS\system32\wbem\wmiprvse.exe 3172
C:\WINDOWS\ehome\ehtray.exe 3364
C:\WINDOWS\system32\rundll32.exe 3436
C:\WINDOWS\system32\RUNDLL32.EXE 3452
C:\WINDOWS\eHome\ehmsas.exe 3480
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe 3516
C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe 3592
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe 3652
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe 3740
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 3776
C:\Program Files\Fichiers communs\Gestionnaire d'installation SolidWorks\Scheduler\sldIMScheduler.exe 3864
C:\Program Files\Java\jre6\bin\jusched.exe 3904
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe 3948
C:\Program Files\iTunes\iTunesHelper.exe 628
C:\WINDOWS\system32\ctfmon.exe 1016
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe 1548
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe 3300
C:\Program Files\SolidWorks\SolidWorks\swScheduler\swBOEngine.exe 3512
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe 2408
C:\WINDOWS\System32\svchost.exe 3484
C:\Program Files\iPod\bin\iPodService.exe 1332
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe 1056
C:\DOCUME~1\Emile\LOCALS~1\Temp\SolidWorksLicTemp.0001 3700
C:\Program Files\Fichiers communs\SolidWorks Shared\Service\SolidWorksLicensing.exe 2088
C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe 2608
C:\Program Files\Mozilla Firefox\firefox.exe 2520
C:\WINDOWS\explorer.exe 3388
C:\WINDOWS\system32\wbem\wmiprvse.exe 464
################## | Elements infectieux |
E:\autorun.inf
F:\e9naq.exe
################## | Registre |
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "cdoosoft"
################## | Mountpoints2 |
HKCU\..\..\Explorer\MountPoints2\{53a9922c-dea8-11de-bb15-00188bac6378}
Shell\AutoRun\command =F:\AurLaunch\LaunchScreen.exe
HKCU\..\..\Explorer\MountPoints2\{577ff9bd-e336-11de-bb19-00188bac6378}
Shell\AutoRun\command =F:\2id9.exe
Shell\open\Command =F:\2id9.exe
HKCU\..\..\Explorer\MountPoints2\{577ff9c0-e336-11de-bb19-00188bac6378}
Shell\AutoRun\command =F:\2id9.exe
Shell\open\Command =F:\2id9.exe
HKCU\..\..\Explorer\MountPoints2\{5c93f4a8-ddb1-11de-bb11-00188bac6378}
Shell\AutoRun\command =F:\Memorybar.exe
HKCU\..\..\Explorer\MountPoints2\{5c93f4a9-ddb1-11de-bb11-00188bac6378}
Shell\AutoRun\command =G:\q3kku.exe
Shell\open\Command =G:\q3kku.exe
################## | Cracks > Keygens > Serials |
"H:\Sauvegarde\Norton antivirus 2008 15.5.0.23 license 3 years EDGE\keygen_noUPX.exe"
01/09/2009 21:46 |Size 172032 |Crc32 7d560217 |Md5 d32d0321660d1db330311d2e75e56c76
"H:\Sauvegarde\AVS Video Converter v6.3.1.367 + Crack [RH]\AVS Video Converter v6.3.1.367\AVSVideoConverter.6.3.1.367.exe"
04/07/2009 06:04 |Size 47799280 |Crc32 5ffc4c32 |Md5 c2c932071581d85cfd2ee8d067073018
"H:\Sauvegarde\AVS Video Converter v6.3.1.367 + Crack [RH]\AVS Video Converter v6.3.1.367\Crack\AVSVideoConverter.exe"
05/07/2009 03:10 |Size 10938440 |Crc32 f20db4a0 |Md5 ff1dfdd0e18887d2bea92c2d48ee82f6
"H:\LOGICIEL\Ahead.Nero.v7.7.5.1.Multilingual.Incl.Keymaker-EMBRACE\keygen.exe"
12/03/2007 14:03 |Size 118784 |Crc32 52ce3b97 |Md5 a2fcfa38b381163e372a3f195541a848
"H:\Sauvegarde\Ulead.PhotoImpact.12 fr+ Crack+Patch+Addons.zip"
-> Contain : Patch.exe 10240 DFLT-F 46% 5576 02-10-2006 20:13:48 f7636727
"H:\Sauvegarde\Ulead.PhotoImpact.12 fr+ Crack+Patch+Addons.zip"
-> Contain : upi12_tbyb_(f).exe
"H:\Sauvegarde\Ulead.PhotoImpact.12 fr+ Crack+Patch+Addons.zip"
-> Contain : crack\Iedit.exe
"H:\Sauvegarde\Ulead.PhotoImpact.12 fr+ Crack+Patch+Addons.zip"
-> Contain : crack\Iedit_.exe
"H:\Sauvegarde\AVS Video Converter v6.3.1.367 + Crack [RH]\AVS.VC.6.3.1.367_[RH].rar"
-> contain : AVS Video Converter v6.3.1.367\AVSVideoConverter.6.3.1.367.exe
"H:\Sauvegarde\AVS Video Converter v6.3.1.367 + Crack [RH]\AVS.VC.6.3.1.367_[RH].rar"
-> contain : AVS Video Converter v6.3.1.367\Crack\AVSVideoConverter.exe
################## | ! Fin du rapport # UsbFix V6.073 ! |
