52 potentiels problèmes sur Malwarebytes

Fermé
Popovski - 26 nov. 2018 à 15:57
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 26 nov. 2018 à 21:13
Bonjour,

je viens de relancer un ordinateur auquel je n'avais pas touché depuis 2 ans. J'ai lancé une scan avec Avira, quelques potentiels dangers que je vire sans vraiment réfléchir. Puis j'ai lancé Malwarebytes et là il me trouve 52 potentiels dangers, le problème est que je ne sais pas vraiment interpréter ce qu'il me sort et que certains des fichiers appartiennent au dossier de mon antivirus. Je ne sais pas ce qu'il va se passer si je les mets en quarantaies, est-ce que je devrais reistaller mon antivirus par la suite ?
Merci d'avance pour votre aide, voici les logs :

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 11/26/18
Scan Time: 3:27 PM
Log File: 627fbfd2-f187-11e8-908a-90e6bab95447.json

-Software Information-
Version: 3.5.1.2522
Components Version: 1.0.441
Update Package Version: 1.0.8025
License: Trial

-System Information-
OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: Popovski-PC\Popovski

-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 172144
Threats Detected: 52
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 11 min, 27 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Warn
PUM: Detect

-Scan Details-
Process: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registry Key: 7
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\TRACING\CltMngSvc_RASAPI32, No Action By User, [1440], [253642],1.0.8025
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\TRACING\CltMngSvc_RASMANCS, No Action By User, [1440], [253642],1.0.8025
PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\TRACING\cltmng_RASAPI32, No Action By User, [2024], [184777],1.0.8025
PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\TRACING\cltmng_RASMANCS, No Action By User, [2024], [184777],1.0.8025
PUP.Optional.ParetoLogic, HKU\S-1-5-21-3527870352-1474119746-78010209-1000\SOFTWARE\PARETOLOGIC\PC Health Advisor, No Action By User, [1298], [366347],1.0.8025
PUP.Optional.ParetoLogic, HKLM\SOFTWARE\PARETOLOGIC\PC Health Advisor, No Action By User, [1298], [366346],1.0.8025
PUP.Optional.ParetoLogic, HKU\S-1-5-21-3527870352-1474119746-78010209-1000\SOFTWARE\PARETOLOGIC\PARETOLOGIC UNS\PC Health Advisor, No Action By User, [1298], [457733],1.0.8025

Registry Value: 1
PUP.Optional.SearchProtect.AppFlsh, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|APPINIT_DLLS, No Action By User, [1440], [-1],0.0.0

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 15
PUP.Optional.ASK.Gen, C:\USERS\POPOVSKI\APPDATA\LOCAL\TEMP\APN-STUB, No Action By User, [3599], [181296],1.0.8025
PUP.Optional.ParetoLogic, C:\PROGRAMDATA\PARETOLOGIC\PC HEALTH ADVISOR, No Action By User, [1298], [366052],1.0.8025
PUP.Optional.ParetoLogic, C:\USERS\POPOVSKI\APPDATA\ROAMING\PARETOLOGIC\PC HEALTH ADVISOR, No Action By User, [1298], [366052],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2011, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2018, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2022, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2011\DownloaderTemp, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2018\DownloaderTemp, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2022\DownloaderTemp, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2011, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2018, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2022, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp, No Action By User, [1405], [327187],1.0.8025

File: 29
PUP.Optional.ParetoLogic, C:\Users\Popovski\AppData\Roaming\ParetoLogic\PC Health Advisor\Client.txt, No Action By User, [1298], [366052],1.0.8025
PUP.Optional.ParetoLogic, C:\Users\Popovski\AppData\Roaming\ParetoLogic\PC Health Advisor\Server.txt, No Action By User, [1298], [366052],1.0.8025
PUP.Optional.Reimage, C:\REI\AV\HBEDV.KEY, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\avupdate.conf, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\avupdate.exe, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\avupdate_msg.avr, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\savapi3_restart.exe, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\savapi3_start.exe, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\AV\savapi3_stop.exe, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2011\Compress.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2011\Info_EnvironmentVars.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2011\Info_Installed.rec, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2018\Compress.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2018\Info_EnvironmentVars.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2018\Info_Installed.rec, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2022\Compress.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2022\Info_EnvironmentVars.res, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Results\EXE1.6.2.0\RUN20120602_2022\Info_Installed.rec, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2011\ApplicationList.ini, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2018\ApplicationList.ini, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\Temp\20120602_2022\ApplicationList.ini, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\cfl.rei, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\cpuidsdk.dll, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\rei1620.ini, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\reimage.qsr, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Reimage, C:\rei\SupportInfoTool.ini, No Action By User, [1405], [327187],1.0.8025
PUP.Optional.Trovi, C:\USERS\POPOVSKI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\SyncData.sqlite3, No Action By User, [398], [454808],1.0.8025
PUP.Optional.Trovi, C:\USERS\POPOVSKI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Secure Preferences, No Action By User, [398], [454808],1.0.8025

Physical Sector: 0
(No malicious items detected)

WMI: 0
(No malicious items detected)


(end)

Configuration: Windows / Firefox 63.0
A voir également:

3 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
26 nov. 2018 à 16:21
Salut,

Supprime tout et :

Pour vérifier ton ordinateur, pour d'éventuels infections et avoir un état général du système :

Suis tutoriel FRST en cliquant sur ce lien bleu. ( prends le temps de lire attentivement - tout y est bien expliqué ).

Télécharge et lance le scan FRST,
Attendre la fin du scan, un message indique que l'analyse est terminée.

Trois rapports FRST seront générés :
  • FRST.txt
  • Shortcut.
  • Additionnal.txt


Envoie ces 3 rapports sur le site https://pjjoint.malekal.com/ et en retour donne les 3 liens pjjoint qui mènent aux rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.


0
Bonjour,

merci pour la réponse, voici les 3 rapports :
FRST : https://pjjoint.malekal.com/files.php?id=FRST_20181126_e6v7v11t55

Addition : https://pjjoint.malekal.com/files.php?id=20181126_x13z13f5m12c7

Shortcut : https://pjjoint.malekal.com/files.php?id=20181126_8l6o11e15f15
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
26 nov. 2018 à 21:13
Ca semble correct,
Peut-être désinstaller Glary Utilities

A supprimer :
C:\Users\Popovski\AppData\Roaming\ParetoLogic
C:\ProgramData\ParetoLogic
C:\rei
0