Impossible de désinstaller Ad-Aware ! - Page 2

  1. Contributeur
    j'attend , je suis pas encore couché , il y a dexter à la télé !!!
    0
    1. je suis au Quebec ! l'heure qui est sur le rapport c'est l'heure que le rapport s'est terminé . 6 heures de décalage avec le forum a ce que je peut voire.
      0
      1. Contributeur
        ok dsl je regarde !
        0
      2. Contributeur
        ok passe Mbam:
        - 1 Télécharge MalwareByte's ICI
        - 2 Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.
        - 3 Une fois l'installation et la mise à jour effectuées :

        Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen complet".
        - 4 Afin de lancer la recherche, clic sur"Rechercher".
        - 5 Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK.
        - a Si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
        - b Si des infections sont présentes, clic sur "Afficher les résultats" puis sur "Supprimer la sélection".
        - 6 Enregistre le rapport sur ton Bureau.(pour me l'envoyer après ton redémarrage)
        (CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller)

        Redémarres ton ordinateur normalement et poste le rapport dans ta prochaine réponse.

        REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.
        Après tu me refais un ZHPDiag et je te ferais un script pour désinstaller les restes !
        0
      3. .... heu !! okay !

        Malwarebytes Anti-Malware (Essai) 1.65.1.1000
        www.malwarebytes.org

        Version de la base de données: v2012.12.26.13

        Windows 7 Service Pack 1 x64 NTFS
        Internet Explorer 9.0.8112.16421
        ElPaquets d'marde 2 :: ELPAQUETSDMARDE [administrateur]

        Protection: Activé

        2012-12-26 19:05:43
        mbam-log-2012-12-26 (19-05-43).txt

        Type d'examen: Examen complet (C:\|D:\|F:\|Q:\|)
        Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
        Options d'examen désactivées: P2P
        Elément(s) analysé(s): 340879
        Temps écoulé: 47 minute(s), 31 seconde(s)

        Processus mémoire détecté(s): 0
        (Aucun élément nuisible détecté)

        Module(s) mémoire détecté(s): 0
        (Aucun élément nuisible détecté)

        Clé(s) du Registre détectée(s): 0
        (Aucun élément nuisible détecté)

        Valeur(s) du Registre détectée(s): 0
        (Aucun élément nuisible détecté)

        Elément(s) de données du Registre détecté(s): 0
        (Aucun élément nuisible détecté)

        Dossier(s) détecté(s): 0
        (Aucun élément nuisible détecté)

        Fichier(s) détecté(s): 0
        (Aucun élément nuisible détecté)

        (fin)
        0
    2. Contributeur
      bon je t'ai fait un script ZHPFix , suis bien les indications !
      Car tu n'aspas fait ce que je t'avais dit: à savoir désinstaller Spybot et les logiciels P2P ainsi que les cracks !! enfin !
      voilà donc :
      Script
      Ce script va cibler certains éléments à supprimer :

      * Copie les lignes suivantes :

      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
      [MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe   [2260480] [PID.5736]
      [MD5.09E61047B0CEF21559CFCEDF4F14D216] - (.Lavasoft Limited - Ad-Aware Antivirus Service.) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe   [1226096] [PID.]
      [MD5.EF51747440486C23BD466311048BD924] - (.Pas de propriétaire - ToolbarU Application.) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.0\ToolbarUpdater.exe   [927840] [PID.]
      [MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe   [1153368] [PID.]
      R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com
      R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com
      R3 - URLSearchHook: (no name) [64Bits] - {ebd898f8-fcf6-4694-bc3b-eabc7271eeb1} . (. Microsoft Corporation - 5.1.10411.0.) (No version) -- (.not file.)
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
      O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe 
      OPT:O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe 
      OPT:O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe 
      O4 - HKUS\S-1-5-21-566966473-2854869881-1405811281-1000\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe 
      O4 - Global Startup: C:\Users\ElPaquets d'marde 2\Desktop\Princess Snapshots.lnk . (...)  -- C:\Program Files (x86)\Princess Snapshots\Princess.exe (.not file.)
      O4 - Global Startup: C:\Users\ElPaquets d'marde 2\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.)  -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
      O4 - Global Startup: C:\Users\ElPaquets d'marde 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.)  -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
      O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
      O23 - Service: Ad-Aware Service (Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Antivirus Service.) - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
      O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
      O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
      O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
      [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Antivirus Scheduled Scan] (...) -- C:\Program Files (x86)\AD-AWA~1\AdAwareLauncher.exe (.not file.)
      O41 - Driver: (SBRE) . (. - .) - C:\Windows\system32\drivers\SBREdrv.sys (.not file.)
      O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WTA-f3e11783-1e64-4905-8d9c-5bd70a455efd
      O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-866a395e-6b62-41b8-864f-fcddd209ea00
      O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-50069643-c7a4-4332-85cd-00bbc13a443a
      O42 - Logiciel: Polar Golfer - (.WildTangent.) [HKLM][64Bits] -- WTA-f4732452-9b8a-4d86-b011-9c5572f17cd3
      O42 - Logiciel: Princess Snapshots - (.Pas de propriétaire.) [HKLM][64Bits] -- Princess Snapshots
      O42 - Logiciel: Slingo Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-d7be8af5-b2ab-412e-a26d-21c85f8c82fc
      O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
      O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKLM][64Bits] -- uTorrent
      [HKCU\Software\AppDataLow\Software\Vid-Saver]
      [HKCU\Software\AppDataLow\Software\uTorrentBar_FR]
      O43 - CFD: 2012-12-25 - 16:13:50 - [1,379] ----D C:\Program Files (x86)\Ad-Aware Antivirus
      O43 - CFD: 2012-12-14 - 14:14:05 - [0,195] ----D C:\Program Files (x86)\adawaretb
      O43 - CFD: 2012-11-03 - 08:59:08 - [67,821] ----D C:\Program Files (x86)\Spybot - Search & Destroy
      O43 - CFD: 2012-06-27 - 18:40:32 - [0,017] ----D C:\Program Files (x86)\Vid-Saver
      O43 - CFD: 2012-07-07 - 07:46:16 - [9,552] ----D C:\Program Files (x86)\WildTangent Games
      O43 - CFD: 2012-12-16 - 15:05:11 - [4,481] ----D C:\ProgramData\Spybot - Search & Destroy
      O43 - CFD: 2012-06-02 - 07:27:13 - [0,005] ----D C:\Users\ElPaquets d'marde 2\AppData\Local\Vid-Saver
      O44 - LFC:[MD5.A103FDF7348130EF3F3FEF56B1700A27] - 2012-12-16 - 11:45:24 ---A- . (...) -- C:\END   [9]
      O69 - SBI: SearchScopes [HKCU] {AFF62D6A-9B3A-4BAF-90B3-888422CF1463} - (WiseConvert Customized Web Search) - http://search.conduit.com
      [MD5.73406FA9287B36CA4163797C73A2CD04] [SPRF][2012-07-16] (.Conduit Ltd. - Conduit Toolbar.) -- C:\Users\ElPaquets d'marde 2\AppData\Local\Temp\tbedrs.dll   [4451144]
      [MD5.73406FA9287B36CA4163797C73A2CD04] [SPRF][2012-07-16] (.Conduit Ltd. - Conduit Toolbar.) -- C:\Users\ElPaquets d'marde 2\AppData\Local\Temp\tbWise.dll   [4451144]
      [HKLM\Software\Classes\TypeLib\{44444444-4444-4444-4444-440044344491}]   =>Adware.VidSaver
      [HKLM\Software\Classes\Interface\{55555555-5555-5555-5555-550055345591}]   =>Adware.VidSaver
      [HKLM\Software\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550055345591}]   =>Adware.VidSaver
      [HKLM\Software\Wow6432Node\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib]   =>Toolbar.Conduit
      [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater]   =>Toolbar.Wajam
      [HKCU\Software\AppDataLow\Software\uTorrentBar_FR]   =>Toolbar.Conduit
      [HKCU\Software\AppDataLow\Software\Vid-Saver]   =>Adware.VidSaver
      C:\Program Files (x86)\Common Files\AVG Secure Search   =>Toolbar.Agent
      C:\Users\ElPaquets d'marde 2\AppData\LocalLow\adawaretb   =>Toolbar.Agent
      SR - | Auto 2012-05-03 1226096 |  (Ad-Aware Service) . (.Lavasoft Limited.) - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
      SS - | Demand 2010-10-12 206072 |  (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
      SR - | Auto 2009-01-26 1153368 |  (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
      


      * Lance ZHPFix à partir du raccourci sur ton Bureau (si tu es sous Windows Vista ou Windows 7, fais le par un clic-droit --> Exécuter en temps qu'administrateur)
      * Clique sur l'icone représentant la lettre H (« coller les lignes Helper »)
      * Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes.
      * Clique sur le bouton « GO » pour lancer le nettoyage.
      * Copie/colle la totalité du rapport dans ta prochaine réponse.

      Il faut que les lignes soit copiées avant de lancer ZHPFix
      Bon et après tu m'envoie le rapport de suppression et un nouveau ZHPDiag s'il te plait !
      0
      1. pas fini dexter ? ^^
        0
      2. Contributeur
        lol ça à fini tard !! 5h chez moi !!
        0
    3. dsl... temps des fêtes ! je suis três rarement devant mon ordie ! j'execute ton script a mon retour. merci.
      0
      1. Contributeur
        pas de problèmes , c'est les fêtes pour tout le monde !!
        refaismoi un ZHPDiag après stp !
        0
        1. Contributeur
          ok ça marche mais j'avais demandé un autre ZHPDiag pour voir si Ad-Aware était encore là , si c'est le cas je te ferais un script !
          -1
          Précédent
          • 1
          • 2