Bonsoir,
j'ai réussi les mises à jour.
voici aussi le rapport usb fix
############################## | UsbFix V 7.148 | [Recherche]
Utilisateur: krystel (Administrateur) # KRYSTEL-PC
Mis à jour le 01/11/2013 par El Desaparecido - Team SosVirus
Lancé à 19:48:45 | 01/11/2013
Site Web:
http://www.usbfix.net/
Forum :
http://www.sosvirus.net/
Upload Malware:
http://www.sosvirus.net/upload_malware.php
Contact:
http://www.usbfix.net/contact/
PC: Packard Bell (SJV70_HR)
CPU: Intel(R) Core(TM) i3-2310M CPU @ 2.10GHz
RAM - [Total : 3948 | Free : 2132]
Bios: Packard Bell
Boot: Normal boot
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 10.0.9200.16721
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Norton Internet Security [Enabled | Updated]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
AS: Malwarebytes' Anti-Malware : 1.75.0001
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) - Disque fixe # 446 Go (289 Go libre(s) - 65%) [Packard Bell] # NTFS
D:\ - CD-ROM
I:\ - Disque fixe # 466 Go (218 Go libre(s) - 47%) [Elements] # NTFS
################## | Processus Actif |
C:\Windows\system32\csrss.exe (ID: 472 |ParentID: 464)
C:\Windows\system32\wininit.exe (ID: 628 |ParentID: 464)
C:\Windows\system32\csrss.exe (ID: 656 |ParentID: 640)
C:\Windows\system32\services.exe (ID: 688 |ParentID: 628)
C:\Windows\system32\lsass.exe (ID: 712 |ParentID: 628)
C:\Windows\system32\lsm.exe (ID: 728 |ParentID: 628)
C:\Windows\system32\winlogon.exe (ID: 780 |ParentID: 640)
C:\Windows\system32\svchost.exe (ID: 864 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 940 |ParentID: 688)
C:\Windows\system32\atiesrxx.exe (ID: 1004 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 456 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 524 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 568 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 468 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1128 |ParentID: 688)
C:\Windows\system32\atieclxx.exe (ID: 1260 |ParentID: 1004)
C:\Windows\System32\spoolsv.exe (ID: 1404 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1432 |ParentID: 688)
c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (ID: 1508 |ParentID: 688)
C:\Program Files (x86)\Launch Manager\dsiwmis.exe (ID: 1656 |ParentID: 688)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (ID: 1696 |ParentID: 688)
C:\Program Files (x86)\Launch Manager\LMutilps32.exe (ID: 1708 |ParentID: 1656)
C:\Windows\system32\svchost.exe (ID: 1732 |ParentID: 688)
C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe (ID: 1756 |ParentID: 688)
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (ID: 1784 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (ID: 1832 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (ID: 1852 |ParentID: 688)
C:\Program Files (x86)\Norton Internet Security\Engine\19.9.0.9\ccSvcHst.exe (ID: 1872 |ParentID: 688)
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (ID: 1924 |ParentID: 688)
C:\Program Files (x86)\NTI\Packard Bell MyBackup\IScheduleSvc.exe (ID: 1972 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 2028 |ParentID: 688)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 1492 |ParentID: 688)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID: 2188 |ParentID: 1492)
C:\Windows\system32\svchost.exe (ID: 2492 |ParentID: 688)
C:\Windows\system32\taskhost.exe (ID: 2748 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ID: 2788 |ParentID: 1852)
C:\Windows\system32\Dwm.exe (ID: 1236 |ParentID: 524)
C:\Windows\Explorer.EXE (ID: 2680 |ParentID: 3012)
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ID: 2520 |ParentID: 2680)
C:\Windows\System32\igfxtray.exe (ID: 2688 |ParentID: 2680)
C:\Windows\System32\hkcmd.exe (ID: 2792 |ParentID: 2680)
C:\Windows\System32\igfxpers.exe (ID: 2912 |ParentID: 2680)
C:\Windows\system32\igfxsrvc.exe (ID: 2624 |ParentID: 864)
C:\Program Files\Elantech\ETDCtrl.exe (ID: 2720 |ParentID: 2680)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe (ID: 2780 |ParentID: 2680)
C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe (ID: 2420 |ParentID: 2680)
C:\Windows\system32\igfxext.exe (ID: 3560 |ParentID: 864)
C:\Windows\system32\wbem\unsecapp.exe (ID: 3288 |ParentID: 864)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 3900 |ParentID: 864)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (ID: 4004 |ParentID: 3740)
C:\Program Files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe (ID: 3360 |ParentID: 3740)
C:\Program Files (x86)\Launch Manager\LManager.exe (ID: 3196 |ParentID: 3740)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (ID: 4040 |ParentID: 3740)
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (ID: 3220 |ParentID: 3196)
C:\Program Files (x86)\Launch Manager\LMworker.exe (ID: 3092 |ParentID: 1656)
C:\Program Files\Elantech\ETDCtrlHelper.exe (ID: 4024 |ParentID: 2720)
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe (ID: 3640 |ParentID: 1696)
C:\Program Files\HP\HP Officejet 6700\Bin\HPNetworkCommunicator.exe (ID: 1744 |ParentID: 2420)
C:\Windows\system32\taskeng.exe (ID: 4136 |ParentID: 468)
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (ID: 4464 |ParentID: 4136)
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (ID: 4596 |ParentID: 688)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ID: 2540 |ParentID: 552)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (ID: 4604 |ParentID: 688)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (ID: 4260 |ParentID: 688)
C:\Program Files (x86)\Nero\Update\NASvc.exe (ID: 4336 |ParentID: 688)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ID: 3676 |ParentID: 2540)
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (ID: 4484 |ParentID: 688)
C:\Windows\system32\wuauclt.exe (ID: 3032 |ParentID: 468)
C:\Windows\system32\taskhost.exe (ID: 1120 |ParentID: 688)
C:\Windows\system32\msiexec.exe (ID: 5020 |ParentID: 688)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ID: 3320 |ParentID: 688)
C:\Program Files (x86)\Skype\Phone\Skype.exe (ID: 5056 |ParentID: 5028)
C:\Windows\system32\SearchIndexer.exe (ID: 1140 |ParentID: 688)
C:\Program Files\Internet Explorer\IEXPLORE.EXE (ID: 3460 |ParentID: 4900)
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE (ID: 4200 |ParentID: 3460)
C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_117_ActiveX.exe (ID: 2864 |ParentID: 864)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 1680 |ParentID: 864)
C:\UsbFix\Go.exe (ID: 4308 |ParentID: 4696)
################## | Regedit Run |
HKLM\SOFTWARE | Run : [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
HKLM\SOFTWARE | Run : [BackupManagerTray] - "C:\Program Files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE | Run : [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
HKLM\SOFTWARE | Run : [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
HKLM\SOFTWARE | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE | Run : [BCSSync] - "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
HKLM\SOFTWARE | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKLM\SOFTWARE\wow6432Node | Run : [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
HKLM\SOFTWARE\wow6432Node | Run : [BackupManagerTray] - "C:\Program Files (x86)\NTI\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
HKLM\SOFTWARE\wow6432Node | Run : [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
HKLM\SOFTWARE\wow6432Node | Run : [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
HKLM\SOFTWARE\wow6432Node | Run : [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe
HKLM\SOFTWARE\wow6432Node | Run : [BCSSync] - "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
HKLM\SOFTWARE\wow6432Node | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-3335188078-1638530015-3451784657-1000\SOFTWARE | Run : [EA Core] - "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
HKU\S-1-5-21-3335188078-1638530015-3451784657-1000\SOFTWARE | Run : [HP Officejet 6700 (NET)] - "C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe" -deviceID "CN2342H02705RQ:NW" -scfn "HP Officejet 6700 (NET)" -AutoStart 1
HKU\S-1-5-21-3335188078-1638530015-3451784657-1000\SOFTWARE | Run : [Skype] - "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
################## | Recherche générique |
################## | Registre |
################## | Vaccin |
(!) Cet ordinateur n'est pas vacciné!
################## | E.O.F |
http://www.usbfix.net -
http://www.sosvirus.net |