Vous pensez être infecté, des pubs s'affichent quand vous naviguez sur internet ?
Perte de données, ralentissement système, virus USB ?
Désinfectez votre ordinateur gratuitement !
  • Avatar du membre
  • Avatar du membre
Avatar du membre
par vincentgruas
#14756
Alors j'ai u petit soucis.

USBFIX en mode administrateur bloc à  22%.
En mode sans echec bloc à  97% (après 3 tentatives c'est toujours pareil)

Hier j'ai fait tourner malwarebytes. Faut il que je le désinstalle

Vincent
Avatar du membre
par vincentgruas
#14762
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Disque fixe # 138 Go (99 Go libre(s) - 71%) [Acer] # NTFS
D:\ -> Disque fixe # 139 Go (138 Go libre(s) - 100%) [DATA] # NTFS
E:\ -> CD-ROM

################## | Processus Stoppés |

Stoppé! C:\Windows\system32\atiesrxx.exe (ID: 920 |ParentID: 596)
Stoppé! C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ID: 1168 |ParentID: 596)
Stoppé! C:\Windows\system32\atieclxx.exe (ID: 1196 |ParentID: 920)
Stoppé! C:\Windows\System32\spoolsv.exe (ID: 1368 |ParentID: 596)
Stoppé! C:\Program Files (x86)\Bonjour\mDNSResponder.exe (ID: 1504 |ParentID: 596)
Stoppé! C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (ID: 1552 |ParentID: 596)
Stoppé! C:\Program Files\Acer\Acer Updater\UpdaterService.exe (ID: 1596 |ParentID: 596)
Stoppé! C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (ID: 1680 |ParentID: 596)
Stoppé! C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (ID: 1720 |ParentID: 596)
Stoppé! C:\Windows\System32\WUDFHost.exe (ID: 2596 |ParentID: 268)
Stoppé! C:\Program Files (x86)\Nero\Update\NASvc.exe (ID: 1384 |ParentID: 596)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 3012 |ParentID: 596)
Stoppé! C:\Windows\system32\taskhost.exe (ID: 2444 |ParentID: 596)
Stoppé! C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ID: 2892 |ParentID: 1720)
Stoppé! C:\Windows\Explorer.EXE (ID: 2228 |ParentID: 1476)
Stoppé! C:\Windows\system32\SearchIndexer.exe (ID: 588 |ParentID: 596)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ID: 2780 |ParentID: 2228)
Stoppé! C:\Windows\system32\NOTEPAD.EXE (ID: 864 |ParentID: 2228)
Stoppé! C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (ID: 980 |ParentID: 2592)
Stoppé! C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (ID: 2488 |ParentID: 2592)
Stoppé! C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe (ID: 2032 |ParentID: 2592)
Stoppé! C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (ID: 2636 |ParentID: 2592)
Stoppé! C:\Program Files\AVAST Software\Avast\avastui.exe (ID: 3116 |ParentID: 2592)
Stoppé! C:\Windows\system32\taskeng.exe (ID: 3996 |ParentID: 456)
Stoppé! C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (ID: 3904 |ParentID: 2876)
Stoppé! C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe (ID: 1692 |ParentID: 3996)
Stoppé! C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe (ID: 3940 |ParentID: 3996)
Stoppé! C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLMSService.exe (ID: 3128 |ParentID: 1692)
Stoppé! C:\Windows\system32\taskeng.exe (ID: 3356 |ParentID: 456)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (ID: 3148 |ParentID: 3356)
Stoppé! C:\Program Files\Internet Explorer\iexplore.exe (ID: 4052 |ParentID: 2228)
Stoppé! C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE (ID: 3644 |ParentID: 4052)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 2648 |ParentID: 596)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID: 1140 |ParentID: 2648)
Stoppé! C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_117_ActiveX.exe (ID: 3408 |ParentID: 768)
Stoppé! C:\Windows\System32\MsSpellCheckingFacility.exe (ID: 3544 |ParentID: 768)

################## | Regedit Run |

04 - HKLM\SOFTWARE | Run : [SuiteTray] - "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
04 - HKLM\SOFTWARE | Run : [EgisTecPMMUpdate] - "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
04 - HKLM\SOFTWARE | Run : [EgisUpdate] - "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
04 - HKLM\SOFTWARE | Run : [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
04 - HKLM\SOFTWARE | Run : [ArcadeMovieService] - "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
04 - HKLM\SOFTWARE | Run : [Hotkey Utility] - C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
04 - HKLM\SOFTWARE | Run : [AvastUI.exe] - "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
04 - HKLM\SOFTWARE\wow6432Node | Run : [SuiteTray] - "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [EgisTecPMMUpdate] - "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [EgisUpdate] - "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
04 - HKLM\SOFTWARE\wow6432Node | Run : [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
04 - HKLM\SOFTWARE\wow6432Node | Run : [ArcadeMovieService] - "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
04 - HKLM\SOFTWARE\wow6432Node | Run : [Hotkey Utility] - C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
04 - HKLM\SOFTWARE\wow6432Node | Run : [AvastUI.exe] - "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
04 - HKLM\SOFTWARE | RunOnce : [] -
04 - HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
04 - HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-19\SOFTWARE | RunOnce : [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
04 - HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\SOFTWARE | RunOnce : [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
04 - HKU\S-1-5-18\SOFTWARE | RunOnce : [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}

################## | Recherche générique |

bonsoir oki pour la fermeture je m'en charge car[…]

how to clean junk files

Hello don't use this program , it's a bullshit :)

Bonjour https://www.aht.li/3213847/AdsFix.exe b[…]

De rien Bon WE :)