Désinstaller Live Security Platinium

Résolu
Bonjour,



Je n'arrive pas désinstaller Live Sécurity Platinium.
Pouvez vous m'indiquer la procédure?

Merci de votre aide,

10 réponses

  1. Je ne peux pas désinstaller par ajout/suppression de programme. J'ai toujours l'affichage LSP qui bloque. Même chose en mode sans échec. Il m'empêche aussi d'aller sur internet ou d'exécuter rogkiller via une clef USB;
    Je suis complètement bloquée!
    1. une precision supplementaire : le lecteur cd de mon ordinateur est en panne, raison pour laquelle j'essaye avec une clef usb
      1. Modérateur
        Salut,

        [*] Télécharger sur le bureau https://www.luanagames.com/index.fr.html (by tigzy)
        [*] Quitter tous les programmes
        [*] Lancer RogueKiller.exe.
        [*] Attendre que le Prescan ait fini ...
        [*] Lance un scan afin de débloquer le bouton Suppression à droite.
        [*] Clic sur Suppression.
        Poste le rapport ici.

        !!! Je répète bien faire Suppression à droite et poster le rapport. !!!

        Si tjrs pas - affiche les extensions de fichiers : https://www.commentcamarche.net/informatique/windows/185-afficher-les-extensions-et-les-fichiers-caches-sous-windows/
        Renomme RogueKiller.exe en winlogon.exe
        1. RogueKiller V7.6.4 [17/07/2012] par Tigzy
          mail: tigzyRK<at>gmail<dot>com
          Remontees: https://www.luanagames.com/index.fr.html
          Blog: http://tigzyrk.blogspot.com

          Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version
          Demarrage : Mode sans echec avec prise en charge reseau
          Utilisateur: Gérard [Droits d'admin]
          Mode: Suppression -- Date: 31/07/2012 12:16:12

          ¤¤¤ Processus malicieux: 0 ¤¤¤

          ¤¤¤ Entrees de registre: 0 ¤¤¤

          ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

          ¤¤¤ Driver: [NON CHARGE] ¤¤¤

          ¤¤¤ Infection : ¤¤¤

          ¤¤¤ Fichier HOSTS: ¤¤¤
          127.0.0.1 localhost

          ¤¤¤ MBR Verif: ¤¤¤

          +++++ PhysicalDrive0: ST3320613AS +++++
          --- User ---
          [MBR] a83a1021a5b669f562d4895b37a17bf8
          [BSP] 941cc91457d699fbbefb797c72b2ee42 : Windows XP MBR Code
          Partition table:
          0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 62 Mo
          1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 129024 | Size: 10240 Mo
          2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 21109410 | Size: 294927 Mo
          User = LL1 ... OK!
          User = LL2 ... OK!

          +++++ PhysicalDrive1: ST3250823AS +++++
          --- User ---
          [MBR] 46f652f336448865c24e1df3df9d845a
          [BSP] 4761e4aa3dd90ffff5f64e2515dc8411 : Windows XP MBR Code
          Partition table:
          0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 238472 Mo
          User = LL1 ... OK!
          User = LL2 ... OK!

          +++++ PhysicalDrive2: ST3500830AS +++++
          --- User ---
          [MBR] 23764f04870530043c976ad180031cf2
          [BSP] d7199a1790e18169d59bf995619d2dc6 : Windows XP MBR Code
          Partition table:
          0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 63 | Size: 476937 Mo
          User = LL1 ... OK!
          User = LL2 ... OK!

          +++++ PhysicalDrive4: SanDisk U3 Cruzer Micro USB Device +++++
          --- User ---
          [MBR] e54939441f8af88a54d9fa4ab55f0dc1
          [BSP] df4f83c1f72e36823a12b0dfc7617313 : MBR Code unknown
          Partition table:
          0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 34 | Size: 3898 Mo
          User = LL1 ... OK!
          Error reading LL2 MBR!

          Termine : << RKreport[3].txt >>
          RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
          1. Modérateur
            Il a l'air d'avoir disparu :)

            Faire un scan OTL pour diagnostiquer les programmes qui tournent et déceler des infections :

            Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

            * Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
            (Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

            Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).

            * Lance OTL
            * En haut à droite de Analyse rapide, coche "tous les utilisateurs"
            * Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
            netsvcs
            msconfig
            safebootminimal
            safebootnetwork
            activex
            drivers32
            %ALLUSERSPROFILE%\Application Data\*.
            %ALLUSERSPROFILE%\Application Data\*.exe /s
            %APPDATA%\*.
            %APPDATA%\*.exe /s
            %temp%\.exe /s
            %SYSTEMDRIVE%\*.exe
            %systemroot%\*. /mp /s
            %systemroot%\system32\consrv.dll
            %systemroot%\system32\*.dll /lockedfiles
            %systemroot%\Tasks\*.job /lockedfiles
            %systemroot%\system32\drivers\*.sys /lockedfiles
            %systemroot%\System32\config\*.sav
            /md5start
            explorer.exe
            winlogon.exe
            wininit.exe
            /md5stop
            HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
            HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
            HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
            HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
            CREATERESTOREPOINT
            nslookup www.google.fr /c
            SAVEMBR:0
            hklm\software\clients\startmenuinternet|command /rs
            hklm\software\clients\startmenuinternet|command /64 /rs

            * Clique sur le bouton Analyse.
            * Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent), donne le ou les liens pjjoint qui pointent vers ces rapports ici dans un nouveau message.

            1. Modérateur
              Pas mal de programmes parasites.
              Conduit, searchqu etc.

              Relance OTL.
              o sous Personnalisation (Custom Scan), copie_colle le contenu du cadre ci dessous (bien prendre :OTL en début).
              Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:

              :OTL
              [2012/05/18 12:48:55 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Documents and Settings\Gérard\Application Data\Mozilla\Firefox\Profiles\ldx90h54.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
              [2011/03/22 11:36:44 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Gérard\Application Data\Mozilla\Firefox\Profiles\ldx90h54.default\extensions\engine@conduit.com
              [2011/08/20 19:30:47 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Gérard\Application Data\Mozilla\Firefox\Profiles\ldx90h54.default\extensions\toolbar@iadah.com
              [2012/06/08 20:07:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
              [2012/03/30 10:08:26 | 000,000,000 | ---D | M] (BasicScan) -- C:\Program Files\Mozilla Firefox\extensions\{6AA54174-C9E8-4B07-95A0-0FBC19CBE64C}
              [2010/11/18 12:32:25 | 000,000,000 | ---D | M] (Toolbar Iadah) -- C:\Program Files\Mozilla Firefox\extensions\toolbar@iadah.com
              CHR - default_search_provider: search_url = http://www1.search-results.com/web?l=dis&q=&o=APN10645&apn_dtid=%5EBND406%5EYY%5EFR&shad=s_0043&gct=ds&apn_ptnrs=%5EAG6&d=406-101&lang=en&atb=sysid%3D406%3Aappid%3D101%3Auid%3D89cfc1cb22830fda%3Asrc%3Dcrb%3Ao%3DAPN10645%3Atg%3D&p2=%5EAG6%5EBND406%5EYY%5EFR{searchTerms}
              CHR - homepage: http://www.searchnu.com/406
              O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
              O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
              2012/07/30 16:12:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Gérard\Menu Démarrer\Programmes\Live Security Platinum
              [2012/07/30 16:09:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\036DFF61031E55294810D6437B07D287
              [2012/07/30 16:12:48 | 000,002,260 | ---- | M] () -- C:\Documents and Settings\Gérard\Bureau\Live Security Platinum.lnk
              [2012/03/30 10:08:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\7dc322f27aeeb358950051bce27f55e5_c
              [2012/07/30 16:11:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\036DFF61031E55294810D6437B07D287
              [2012/03/30 10:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gérard\Application Data\searchquband


              * redemarre le pc sous windows et poste le rapport ici

              ~~

              Télécharge https://toolslib.net AdwCleaner ( d'Xplode ) sur ton bureau.
              Lance le, clique sur [Suppression] puis patiente le temps du scan.
              Une fois le scan fini, un rapport s'ouvrira. Poste moi son contenu dans ta prochaine réponse.

              Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

              Like the angel you are, you laugh creating a lightness in my chest,
              Your eyes they penetrate me,
              (Your answer's always 'maybe')
              That's when I got up and left
              1. Le problème est résolu. Je te remercie beaucoup de ton aide très efficace.
                1. Modérateur
                  et le rapport OTL ?
                  et AdwCleaner ?