Rapport adwcleaner et supprimer TOPIC TORCH et autres "virus"

Résolu
dédé -  
 sachou170700 -
Bonjours j'ai un soucis avec une fenetre TOPIC TORCH qui s'ouvre en permanence.
Je suis sur seven et après avoir fait recherche et suppression avec ADWCLEANER je ne sais ou poster mon rapport.
Qui saurait lire le rapport et m'aider a supprimer topic torch et d'autre "virus"
Merci à celui qui pourra m'aider.

33 réponses

  • 1
  • 2
Résumé de la discussion

Une fenêtre TOPIC TORCH s'ouvre en permanence sur Windows 7, malgré l'utilisation d'AdwCleaner et divers scans; le problème persiste et nécessite une procédure de nettoyage plus approfondie. Plusieurs solutions recommandent DelFix de Xplode, avec des choix comme réactiver l'UAC, supprimer les outils de désinfection, effectuer une sauvegarde du registre et purger la restauration système. Le rapport AdwCleaner, tel que démontré, liste les éléments détectés dans les navigateurs et le registre sans entrées illégitimes, et indique l'emplacement des rapports sur le système. D'autres éléments comme les extensions de navigateur (Firefox/Chrome) et les clés de registre associées peuvent contenir des résidus, nécessitant une révision ciblée après le nettoyage.

Bobot (l'IA à votre service)
  1. Utilisateur anonyme
     
    Bonjour
    il me reste plus qu'a vivre avec cette merde de page je crois???????
    Mais non?
    AdwCleaner n'était pas a jour, un nouveau scan serait bien non?
    # AdwCleaner v1.801 - Rapport créé le 06/04/2013 à 01:25:36
    # Mis à jour le 14/08/2012 par Xplode


    adwcleaner

    Fait une capture des programme que tu a d installer sur ton PC si tu veux?
    Personne ne laisse tomber ici(enfin je crois pas?), mais sans avoir le pc entre les mains, c'est plus difficile :-(

    Windows8 / Windows7
    Firefox20,chrome,IE10
    Wot Adblock noscript
    1
  2. Utilisateur anonyme
     
    Bonsoir

    Tu postes ici ce rapport Adwcleaner dans ta prochaine réponse

    @+
    0
  3. dédé
     
    # AdwCleaner v1.801 - Rapport créé le 06/04/2013 à 01:25:36
    # Mis à jour le 14/08/2012 par Xplode
    # Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Nom d'utilisateur : David - DAVID-PC
    # Mode de démarrage : Normal
    # Exécuté depuis : C:\Users\David\LOG\adwcleaner.exe
    # Option [Suppression]

    ***** [Services] *****

    ***** [Fichiers / Dossiers] *****

    ***** [Registre] *****

    ***** [Registre - GUID] *****

    ***** [Navigateurs] *****

    -\\ Internet Explorer v9.0.8112.16421

    [OK] Le registre ne contient aucune entrée illégitime.

    -\\ Mozilla Firefox v20.0 (fr)

    Nom du profil : default
    Fichier : C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\dvmbycdl.default\prefs.js

    [OK] Le fichier ne contient aucune entrée illégitime.

    -\\ Google Chrome v25.0.1364.172

    Fichier : C:\Users\David\AppData\Local\Google\Chrome\User Data\Default\Preferences

    [OK] Le fichier ne contient aucune entrée illégitime.
    0
  4. dédé
     
    voila, Guillaume5188

    et merci de m'aider ;)
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Utilisateur anonyme
     
    Re

    Et cette fenêtre est toujours apparente?

    @+
    0
  7. dédé
     
    oui elle est encore la sur tout le coté droit de mon ecran
    0
  8. Utilisateur anonyme
     
    Re

    Inscris toi avant tout

    Pour de plus amples informations, fait ceci stp

    Ouvre ce lien et télécharge ZHPDiag de Nicolas Coolman :

    https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

    Ou

    https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/

    Serveur N°2

    Ou

    http://www.premiumorange.com/zeb-help-process/zhpdiag.html
    en bas de la page ZHP avec un numéro de version.

    Une fois le téléchargement achevé,

    Double-clique sur l'icône pour lancer le programme. Sous Vista ; Seven ou Windows 8 clic droit « exécuter en tant que administrateur »

    Clique sur la loupe avec le signe + pour lancer l'analyse.

    Laisse l'outil travailler, il peut être assez long.

    Ferme ZHPDiag en fin d'analyse.

    Pour transmettre le rapport clique sur ce lien:
    http://pjjoint.malekal.com/

    Si problème utilise un des suivants

    https://forums-fec.be/upload
    https://www.cjoint.com/

    Regarde sur le bureau

    Sélectionne le fichier ZHPDiag.txt.

    Clique sur "Cliquez ici pour déposer le fichier".

    Un lien de cette forme :

    http://www.cijoint.com/cjlink.php?file=cj200905/cijSKAP5fU.txt

    est ajouté dans la page.

    Copie ce lien dans ta réponse.

    Merci

    @+

    0
  9. dédé
     
    voila je pense avoir reussi :

    http://pjjoint.malekal.com/files.php?id=ZHPDiag_20130406_v15m7t7p8t11
    0
  10. Utilisateur anonyme
     
    Re

    Désinstalle Spybot

    @+
    0
  11. dédé
     
    ca y est j'ai desinstallé spybot, apres j'le remplace par un autre log?? ou pas
    0
  12. Utilisateur anonyme
     
    Re

    Je ne vois rien de particulier sur ton rapport

    Aurais tu une capture d'écran voir un lien de ce site

    Merci

    @+
    0
  13. dédé
     
    quand je clic surla page qui me gene a droite de mon ecran j 'ai ceci :

    http://www.topictorch.com/support.aspx
    0
  14. Utilisateur anonyme
     
    Re

    Utilisation de l'outil ZHPFix :

    * Copie tout le texte présent dans l'encadré ci-dessous (tu le sélectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C )
    -------------------------------------------------------------------------------------------------


    [HKCU\Software\InstallCore]
    O43 - CFD: 28/12/2011 - 21:46:59 - [0] --H-D C:\ProgramData\{BD8912D9-3040-46C4-B96A-4C3AC7E43486}
    [HKLM\Software\Classes\Prod.cap]
    [HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\Old_Current]
    [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3192AA38321C641458DBDAF83979D193]
    [MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.2428]
    [MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.2660]
    O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-21-2136292594-864267918-4066627774-1001\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - GS\QuickLaunch: Spybot - Search & Destroy.lnk . (.Safer Networking Limited - Spybot - Search & Destroy.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
    O43 - CFD: 19/02/2013 - 17:16:32 - [11,498] ----D C:\Program Files (x86)\McAfee Security Scan
    O43 - CFD: 11/03/2013 - 17:27:08 - [66,796] ----D C:\Program Files (x86)\Spybot - Search & Destroy
    O43 - CFD: 07/03/2013 - 15:21:39 - [1,294] ----D C:\Program Files (x86)\Spybot - Search & Destroy 2
    O43 - CFD: 16/08/2012 - 03:01:10 - [0,001] ----D C:\ProgramData\McAfee Security Scan
    O43 - CFD: 02/04/2013 - 10:49:28 - [7,797] ----D C:\ProgramData\Spybot - Search & Destroy
    [HKCU\Software\AppDataLow\Software\blekkotb_031]
    O43 - CFD: 16/08/2012 - 03:10:35 - [22,742] ----D C:\Users\David\AppData\Local\blekkotb_031
    O69 - SBI: SearchScopes [HKCU] {664AD0BA-4EBB-4D36-8766-F171259B0EBC} - (Ask Search) - http://www.search.ask.com/?o=10148&l=dis
    [HKCU\Software\AppDataLow\Software\blekkotb_031]
    [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASAPI32]
    [HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASMANCS]
    C:\Users\David\AppData\Local\blekkotb_031
    O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-21-2136292594-864267918-4066627774-1001\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - GS\QuickLaunch: Spybot - Search & Destroy.lnk . (.Safer Networking Limited - Spybot - Search & Destroy.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

    FirewallRAZ
    Emptytemp
    EmptyCLSID


    --------------------------------------------------------------------------------------------
    * Lance ZHPFix à partir du raccourci sur ton Bureau (si tu es sous Windows Vista ou Windows 7, fais le par un clic-droit --> Exécuter en tant qu'administrateur)

    * Clique sur l'icone représentant le presse-papier ("coller le presse-papier")
    le script doit automatiquement apparaitre dans ZHPFix, sinon, colle-le (Ctrl+v)
    * Clique sur le bouton GO pour lancer le nettoyage
    * Copie/colle la totalité du rapport dans ta prochaine réponse.

    -> laisse travailler l'outil et ne touche à rien ...

    -> Si il t'est demandé de redémarrer le PC pour finir le nettoyage, fais le !

    Une fois terminé, un nouveau rapport s'affiche : poste le contenu de ce dernier dans ta prochaine réponse ...

    ( ce rapport est en outre sauvegardé dans ce dossier > C:\Program files\ZHPDiag\ ZHPFixReport.txt )

    @+
    0
  15. dédé
     
    Guillaume5188 la je suis super super KO et je vais aller me jeter dans mon lit, je te remerci de m'aider et essaye de faire une petite enquete sur ce foutu TOPIC TORCH et tu verras que c'est une merde que je traine et qu'il faut que je m'en debarasse, j'avais deja vu ca avec BABYLON SEARCH c'est un autre "virus"
    Encore merci et a demain j'espere, bye
    0
    1. Utilisateur anonyme
       
      Bonne nuit et @+
      0
  16. dédé
     
    [HKCU\Software\InstallCore]
    O43 - CFD: 28/12/2011 - 21:46:59 - [0] --H-D C:\ProgramData\{BD8912D9-3040-46C4-B96A-4C3AC7E43486}
    [HKLM\Software\Classes\Prod.cap]
    [HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\Old_Current]
    [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3192AA38321C641458DBDAF83979D193]
    [MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.2428]
    [MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.2660]
    O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-21-2136292594-864267918-4066627774-1001\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - GS\QuickLaunch: Spybot - Search & Destroy.lnk . (.Safer Networking Limited - Spybot - Search & Destroy.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
    O43 - CFD: 19/02/2013 - 17:16:32 - [11,498] ----D C:\Program Files (x86)\McAfee Security Scan
    O43 - CFD: 11/03/2013 - 17:27:08 - [66,796] ----D C:\Program Files (x86)\Spybot - Search & Destroy
    O43 - CFD: 07/03/2013 - 15:21:39 - [1,294] ----D C:\Program Files (x86)\Spybot - Search & Destroy 2
    O43 - CFD: 16/08/2012 - 03:01:10 - [0,001] ----D C:\ProgramData\McAfee Security Scan
    O43 - CFD: 02/04/2013 - 10:49:28 - [7,797] ----D C:\ProgramData\Spybot - Search & Destroy
    [HKCU\Software\AppDataLow\Software\blekkotb_031]
    O43 - CFD: 16/08/2012 - 03:10:35 - [22,742] ----D C:\Users\David\AppData\Local\blekkotb_031
    O69 - SBI: SearchScopes [HKCU] {664AD0BA-4EBB-4D36-8766-F171259B0EBC} - (Ask Search) - http://websearch.ask.com
    [HKCU\Software\AppDataLow\Software\blekkotb_031]
    [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
    [HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASAPI32]
    [HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASMANCS]
    C:\Users\David\AppData\Local\blekkotb_031
    O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-21-2136292594-864267918-4066627774-1001\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
    O4 - GS\QuickLaunch: Spybot - Search & Destroy.lnk . (.Safer Networking Limited - Spybot - Search & Destroy.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

    FirewallRAZ
    Emptytemp
    EmptyCLSID
    0
  17. dédé
     
    ESCUSE MOI j'avais oublié de lancer le nettoyage, la je te remet le bon rapport
    0
  18. dédé
     
    Rapport de ZHPFix 2013.3.9.1 par Nicolas Coolman, Update du 9/03/2013
    Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-06-04-2013-03-05-07.txt
    Run by David at 06/04/2013 03:05:07
    High Elevated Privileges : OK
    Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

    Corbeille vidée

    ========== Logiciel(s) ==========
    ABSENT Software Key: {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

    ========== Clé(s) du Registre ==========
    ABSENT Key: HKCU\Software\InstallCore
    ABSENT Key: HKLM\Software\Classes\Prod.cap
    ABSENT Key: HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\Old_Current
    ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3192AA38321C641458DBDAF83979D193
    ABSENT Key: CLSID BHO: {53707962-6F74-2D53-2644-206D7942484F}
    ABSENT Key: Service: SBSDWSCService
    ABSENT Key: HKCU\Software\AppDataLow\Software\blekkotb_031
    ABSENT SearchScopes :{664AD0BA-4EBB-4D36-8766-F171259B0EBC}
    ABSENT Key: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    ABSENT Key: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASAPI32
    ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Tracing\Setup_RASMANCS

    ========== Valeur(s) du Registre ==========
    ABSENT RunValue: SpybotSD TeaTimer
    ABSENT Valeur Standard Profile: FirewallRaz :
    ABSENT Valeur Domain Profile: FirewallRaz :

    ========== Dossier(s) ==========
    Aucun dossiers CLSID Local utilisateur vide

    ========== Fichier(s) ==========
    ABSENT Folder/File: c:\program files (x86)\spybot - search & destroy\teatimer.exe
    ABSENT File: c:\program files (x86)\spybot - search & destroy\sdhelper.dll
    ABSENT File: c:\users\david\appdata\roaming\microsoft\internet explorer\quick launch\spybot - search & destroy.lnk
    ABSENT Folder/File: c:\users\david\appdata\local\blekkotb_031
    SUPPRIME Temporaires Windows

    ========== Récapitulatif ==========
    13 : Clé(s) du Registre
    3 : Valeur(s) du Registre
    1 : Dossier(s)
    5 : Fichier(s)
    1 : Logiciel(s)

    End of clean in 00mn 00s

    ========== Chemin de fichier rapport ==========
    C:\ZHP\ZHPFix[R1].txt - 06/04/2013 02:00:33 [2590]
    C:\ZHP\ZHPFix[R2].txt - 06/04/2013 03:05:07 [2323]
    0
  19. Utilisateur anonyme
     
    Re

    As tu noté une amélioration?

    Si ce n'est pas le cas

    Reparamètres tes navigateurs WEB (page de démarrage, moteur de recherche, etc...) mais aussi supprimer/désactiver les extensions inutiles/parasites :
    * Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=

    * Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=

    * Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=

    Merci Malekal

    @+
    0
  20. dédé
     
    haaaaaaaaaaaa ca me saoul,lol

    non la page est tjrs presente et dans mon panneau de configuration et ajout suppression de programme, je ne sais pas si il y a des choses que je dois desinstallé et pour mes module complementaires je suis aussi perdu et meme avec les topic que tu m'as envoyé,

    il me reste plus qu'a vivre avec cette merde de page je crois???????
    0
  • 1
  • 2