Sunteți pe pagina 1din 3

[b]############################## | UsbFix Premium V 10.

003 | [Recherche][/b]

Utilisateur: Abbassi (Administrateur) # ABBASSI-PC


Mis à jour le 13/12/2017 par SOSVirus
Lancé à 13:01:20 | 18/12/2017

Site Web : [url=https://www.usb-antivirus.com/fr/]https://www.usb-antivirus.com/fr/


[/url]
Contact : [url=https://www.usb-antivirus.com/fr/contact/]https://www.usb-
antivirus.com/fr/contact/[/url]

[b]################## | System information |[/b]

MB: Hewlett-Packard (308A)


CPU: Intel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
GC: Mobile Intel(R) 965 Express Chipset Family
RAM -> [Total : 3063 Mo | Free : 919 Mo]
Bios: Hewlett-Packard
Boot: Normal boot

OS: Microsoft™ Windows 7 Ultimate (6.1.7601 64-Bit) Service Pack 1


WB: Internet Explorer : 11.00.9600.16428
WB: Google Chrome : 63.0.3239.108

[b]################## | Security Information |[/b]

AV: Baidu Antivirus [Actif |A jour]


AS: Windows Defender [Actif |A jour]
AS: Baidu Antivirus [Actif |A jour]
FW: Windows Firewall [Actif]
SC: Security Center [Actif]
WU: Windows Update [Actif]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Disque fixe # 118 Go (65 Go libre(s) - 55%) [] # NTFS
D:\ -> Disque fixe # 115 Go (47 Go libre(s) - 41%) [] # NTFS
F:\ -> Disque amovible # 29 Go (20 Go libre(s) - 68%) [KALI LIVE] # NTFS

[b]################## | Autorun |[/b]

[b]################## | Recherche générique |[/b]

[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe


F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [SuperCopier2.exe] C:\Program Files
(x86)\SuperCopier2\SuperCopier2.exe
04 - HKCU\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKCU\..\Run : [CyberGhost] "C:\Program Files\CyberGhost 6\CyberGhost.exe"
/autostart /min
04 - HKCU\..\Run : [GoogleChromeAutoLaunch_1D57EE4BD2731CE4028740219A975AE6]
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-
window /prefetch:5
04 - HKCU\..\Run : [SysinfY2X] C:\WINDOWS\system32\cmd.exe /c start wscript
/e:VBScript.Encode %temp%\SysinfY2X.db
04 - HKCU\..\Run : [IDMan] C:\Program Files (x86)\Internet Download
Manager\IDMan.exe /onboot
04 - HKLM\..\Run : [Baidu Antivirus] "C:\Program Files (x86)\Baidu Security\Baidu
Antivirus\5.4.3.147185.0\BavTray.exe" -auto
04 - HKLM\..\Run : [SMΔRT-Protection] C:\Program Files (x86)\Smadav\SMΔRTP.exe rts
04 - [x64] HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
04 - [x64] HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - [x64] HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - [x64] HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - [x64] HKLM\..\RunOnce : [!MOF64] cmd.exe /c "cd %windir
%\microsoft.net\framework64\v4.0.30319 & mofcomp.exe -autorecover
mof\servicemodel.mof & mofcomp.exe -autorecover mof\servicemodel35.mof &
mofcomp.exe -autorecover aspnet.mof & cd %windir
%\microsoft.net\framework\v4.0.30319 & mofcomp.exe -autorecover
mof\servicemodel.mof & mofcomp.exe -autorecover mof\servicemodel35.mof &
mofcomp.exe -autorecover aspnet.mof"
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
/autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
/autoRun
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run : [SuperCopier2.exe]
C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run : [Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run : [CyberGhost]
"C:\Program Files\CyberGhost 6\CyberGhost.exe" /autostart /min
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run :
[GoogleChromeAutoLaunch_1D57EE4BD2731CE4028740219A975AE6] "C:\Program Files
(x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run : [SysinfY2X]
C:\WINDOWS\system32\cmd.exe /c start wscript /e:VBScript.Encode %temp
%\SysinfY2X.db
04 - HKU\S-1-5-21-1992352895-755229028-1901164781-1000\..\Run : [IDMan] C:\Program
Files (x86)\Internet Download Manager\IDMan.exe /onboot
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-18\..\RunOnce : [{90120000-006E-040C-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04 - HKU\S-1-5-18\..\RunOnce : [{90120000-0016-040C-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04 - HKU\S-1-5-18\..\RunOnce : [{90120000-00A1-040C-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04 - HKU\S-1-5-18\..\RunOnce : [{90120000-0018-040C-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04 - HKU\S-1-5-18\..\RunOnce : [{90120000-001B-040C-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04 - HKU\S-1-5-18\..\RunOnce : [{91120000-002F-0000-0000-0000000FF1CE}]
C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck"
/Q /A:H
04GS - OneNote 2007 - Capture d'écran et lancement.lnk : C:\Program Files
(x86)\Microsoft Office\Office12\ONENOTEM.EXE
[b]################## | F:\ - Disque USB (NTFS) |[/b]

[18/12/2017 - 09:56:20 | RSHD] - F:\autorun.inf


[01/12/2017 - 16:35:42 | D] - F:\mao
[01/12/2017 - 17:17:37 | D] - F:\Matlab 2014b Win x64
[11/12/2017 - 20:14:53 | D] - F:\methode num
[11/12/2017 - 20:21:40 | D] - F:\mdc alloui
[13/12/2017 - 20:22:23 | D] - F:\avast! sandbox
[14/12/2017 - 02:12:04 | D] - F:\eyyeey
[14/12/2017 - 13:30:40 | D] - F:\geotechnique

[b]################## | E.O.F | [/b]

S-ar putea să vă placă și