Bonjour,
Merci pour ces réponses. Voici le rapport d'USBfix
############################## | UsbFix V 7.171 | [Nettoyage]
Utilisateur: PF (Administrateur) # PF-VAIO
Mis à jour le 18/05/2014 par El Desaparecido - SosVirus
Lancé à 22:19:03 | 21/05/2014
Site Web :
http://www.usbfix.net/
Changelog :
http://www.usbfix.net/maj/
Assistance :
http://www.sosvirus.net/forum-virus-securite.html
Upload Malware :
http://www.sosvirus.net/upload_malware.php
Contact :
http://www.usbfix.net/contact/
PC: Sony Corporation (VAIO)
CPU: Intel(R) Core(TM) i5 CPU M 460 @ 2.53GHz
RAM - [Total : 3766 Mo| Free : 1984 Mo]
Bios: INSYDE
Boot: Normal boot
OS: Microsoft Windows 7 Professionnel (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.17107
WB: Mozilla Firefox : 29.0.1
SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: avast! Antivirus [Enabled | Updated]
AS: Windows Defender [Enabled | Updated]
AS: avast! Antivirus [Enabled | Updated]
FW: Windows FireWall [Enabled]
AS: Malwarebytes' Anti-Malware : 1.75.0001
C:\ (%SystemDrive%) - Disque fixe # 290 Go (48 Go libre(s) - 17%) [] # NTFS
D:\ - CD-ROM
G:\ - Disque amovible # 2 Go (93 Mo libre(s) - 5%) [] # FAT
################## | Processus Stoppés |
C:\Windows\System32\nvvsvc.exe (ID: 956|ParentID: 700)
C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (ID: 1244|ParentID: 700)
C:\Windows\System32\wlanext.exe (ID: 1388|ParentID: 420)
C:\Windows\System32\nvvsvc.exe (ID: 1540|ParentID: 956)
C:\Windows\System32\spoolsv.exe (ID: 1896|ParentID: 700|Système)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ID: 2016|ParentID: 700|Système)
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (ID: 1112|ParentID: 700|Système)
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE (ID: 840|ParentID: 700|Système)
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE (ID: 576|ParentID: 700|Système)
C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe (ID: 2096|ParentID: 700|Système)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ID: 2140|ParentID: 700|Système)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (ID: 2168|ParentID: 700|Système)
C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kSony.exe (ID: 2228|ParentID: 700|Système)
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (ID: 2248|ParentID: 700|Système)
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (ID: 2376|ParentID: 700|Système)
C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (ID: 2424|ParentID: 700|Système)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 2492|ParentID: 700|Système)
C:\Program Files (x86)\OneClickInternet\WTGService.exe (ID: 2544|ParentID: 700|Système)
C:\Program Files\Intel\WiFi\bin\EvtEng.exe (ID: 2584|ParentID: 700|Système)
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe (ID: 2724|ParentID: 2376|Système)
C:\Windows\System32\wbem\unsecapp.exe (ID: 3408|ParentID: 876|Système)
C:\Windows\System32\taskhost.exe (ID: 3752|ParentID: 700|PF)
C:\Windows\explorer.exe (ID: 3848|ParentID: 3816|PF)
C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (ID: 4088|ParentID: 1244|PF)
C:\Program Files\Tablet\Wacom\WacomHost.exe (ID: 3104|ParentID: 1244|Système)
C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (ID: 3184|ParentID: 3104|Système)
C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (ID: 3464|ParentID: 1244|PF)
C:\Windows\System32\taskeng.exe (ID: 4004|ParentID: 1060|PF)
C:\Windows\System32\hkcmd.exe (ID: 3820|ParentID: 3848|PF)
C:\Windows\System32\igfxpers.exe (ID: 3456|ParentID: 3848|PF)
C:\Windows\System32\igfxsrvc.exe (ID: 3924|ParentID: 876|PF)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (ID: 2240|ParentID: 3848|PF)
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe (ID: 2296|ParentID: 3848|PF)
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (ID: 836|ParentID: 4004|PF)
C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (ID: 1208|ParentID: 2424|PF)
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (ID: 992|ParentID: 2240|PF)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (ID: 4276|ParentID: 3848|PF)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (ID: 4320|ParentID: 700|Système)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (ID: 4764|ParentID: 3648|PF)
C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (ID: 4788|ParentID: 3648|PF)
C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe (ID: 4800|ParentID: 3648|PF)
C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (ID: 5064|ParentID: 876|PF)
C:\Windows\SysWOW64\rundll32.exe (ID: 2656|ParentID: 4276|PF)
C:\Windows\System32\SearchIndexer.exe (ID: 2360|ParentID: 700|Système)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ID: 1804|ParentID: 3648|PF)
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (ID: 4348|ParentID: 3648|PF)
C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe (ID: 1432|ParentID: 3648|PF)
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (ID: 4460|ParentID: 5064|PF)
C:\Program Files\Sony\VAIO Care\VCPerfService.exe (ID: 3632|ParentID: 700|Système)
C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (ID: 3428|ParentID: 700|PF)
C:\Program Files\Sony\VAIO Care\listener.exe (ID: 5480|ParentID: 3632|PF)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (ID: 5588|ParentID: 700|Système)
C:\Program Files\Sony\VAIO Power Management\SPMService.exe (ID: 5664|ParentID: 700|Système)
C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 5732|ParentID: 700|SERVICE RÉSEAU)
C:\Program Files\Sony\VAIO Care\VCsystray.exe (ID: 3568|ParentID: 4004|PF)
C:\Program Files\Sony\VAIO Care\VCService.exe (ID: 3940|ParentID: 700|Système)
C:\Program Files\Sony\VAIO Care\VCAgent.exe (ID: 4196|ParentID: 3940|Système)
C:\Windows\System32\vds.exe (ID: 5908|ParentID: 700|Système)
C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (ID: 4408|ParentID: 5932|PF)
C:\Program Files\Sony\VAIO Update\VUAgent.exe (ID: 6084|ParentID: 700|Système)
C:\Windows\System32\wuauclt.exe (ID: 5848|ParentID: 1060|PF)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ID: 5776|ParentID: 3848|PF)
C:\Program Files\Windows Defender\MpCmdRun.exe (ID: 2184|ParentID: 1484|SERVICE RÉSEAU)
C:\Windows\System32\WUDFHost.exe (ID: 1884|ParentID: 420|SERVICE LOCAL)
################## | Autorun |
################## | Recherche générique |
Supprimé! G:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Regedit Run |
F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [EPSON SX210 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFDE.EXE /FU "C:\Windows\TEMP\E_SD346.tmp" /EF "HKCU"
04 - HKCU\..\Run : [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
04 - HKLM\..\Run : [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
04 - HKLM\..\Run : [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
04 - HKLM\..\Run : [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe
04 - HKLM\..\Run : [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
04 - HKLM\..\Run : [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
04 - HKLM\..\Run : [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
04 - HKLM\..\Run : [Monitor] "C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - [x64] HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - [x64] HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - [x64] HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - [x64] HKLM\..\Run : [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
04 - [x64] HKLM\..\Run : [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
04 - [x64] HKLM\..\Run : [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
04 - [x64] HKLM\..\Run : [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
04 - [x64] HKLM\..\Run : [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1985372007-3986032315-3202565966-1001\..\Run : [EPSON SX210 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFDE.EXE /FU "C:\Windows\TEMP\E_SD346.tmp" /EF "HKCU"
04 - HKU\S-1-5-21-1985372007-3986032315-3202565966-1001\..\Run : [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
################## | C:\ %SystemDrive% - Disque Fixe (NTFS) |
[12/05/2014 - 09:57:09 | N | 51 Ko] - C:\test.xml
[21/05/2014 - 21:52:32 | ASH | 2892156 Ko] - C:\hiberfil.sys
[21/05/2014 - 21:52:40 | ASH | 3856208 Ko] - C:\pagefile.sys
[23/09/2010 - 06:25:04 | N | 2 Ko] - C:\RHDSetup.log
[27/03/2014 - 09:51:17 | N | 0 Ko] - C:\conversation.log
[21/01/2011 - 01:26:09 | SHD] - C:\$Recycle.Bin
[21/05/2014 - 14:31:47 | N | 1 Ko] - C:\PhysicalDisk0_MBR.bin
[14/07/2009 - 05:20:08 | D] - C:\PerfLogs
[14/07/2009 - 07:08:56 | SHD] - C:\Documents and Settings
[19/07/2010 - 22:44:26 | D] - C:\Intel
[23/09/2010 - 06:37:56 | D] - C:\Documentation
[23/09/2010 - 06:37:57 | D] - C:\_FS_SWRINFO
[23/09/2010 - 06:52:03 | D] - C:\Infineon
[23/09/2010 - 06:56:17 | D] - C:\Temp
[21/01/2011 - 01:24:18 | D] - C:\Users
[23/02/2012 - 00:20:50 | RHD] - C:\MSOCache
[01/12/2013 - 10:28:20 | D] - C:\ed143078dc40941557b89f6e7256
[02/12/2013 - 04:10:24 | D] - C:\1514aaf25dc647b96005a57eafb3
[30/04/2014 - 22:27:16 | D] - C:\Program Files
[09/05/2014 - 09:54:17 | D] - C:\Windows
[21/05/2014 - 14:57:30 | D] - C:\Program Files (x86)
[21/05/2014 - 18:16:24 | HD] - C:\ProgramData
[21/05/2014 - 21:58:39 | D] - C:\Update
[21/05/2014 - 22:02:14 | SHD] - C:\System Volume Information
[21/05/2014 - 22:17:23 | D] - C:\UsbFix
################## | G:\ - Disque USB (FAT) |
[19/08/2011 - 16:43:46 | RSHD] - G:\RECYCLER
[18/04/2014 - 14:15:06 | D] - G:\Kara chez tata Val
################## | Vaccin |
G:\Autorun.inf - Vaccin créé par UsbFix (El Desaparecido)
################## | E.O.F | http://www.sosvirus.net/ | http://www.usbfix.net/ |