PC OptiClean est un
faux nettoyeur/optimiseur, affiche intentionnellement des faux-positifs pour convaincre l'utilisateur que son système a des problèmes et lui faire acheter le logiciel.
Plus d'infos :
Registry Cleaners: Digital Snake Oil | Malwarebytes Labs- S'installe en tant que programme, soit à l'insu de l'utilisateur ou parce qu'il n'a pas décoché les sponsors proposés lors de l'installation d'un logiciel gratuit légitime, soit depuis le site de l'éditeur
- Affiche ces alertes pendant l'installation
- Affiche ces écrans pendant les opérations
- Crée cette icône dans la Barre des tâches, sur le Bureau et dans le Menu Démarrer
- Crée ces tâches planifiées
**********Détection de
PC OptiClean dans des rapports
FRST :
PC OptiClean v4.1 (HKLM-x32\...\PC OptiClean_is1) (Version: 4.1 - Seguro Software LLC)
Task: {F2205754-5038-4F3A-BEF6-CF56D96C31E6} - System32\Tasks\PC OptiClean Schedule => C:\Program Files (x86)\PC OptiClean\PCOCSchedule.exe [2016-12-14] (Seguro Software LLC)
(Seguro Software LLC) C:\Program Files (x86)\PC OptiClean\PCOCSchedule.exe
(Seguro Software LLC) C:\Program Files (x86)\PC OptiClean\PCOptiClean.exe
C:\Users\{Nom_Utilisateur}\Documents\PC OptiClean
C:\Windows\System32\Tasks\PC OptiClean Schedule
C:\Users\{Nom_Utilisateur}\AppData\Roaming\PC OptiClean
C:\Users\{Nom_Utilisateur}\Desktop\PC OptiClean.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean
C:\Program Files (x86)\PC OptiClean
**********Détecté et traité par
Malwarebytes en tant que PUP/LPI (Programme potentiellement Indésirable)
Sous la version Premium,
Malwarebytes bloque l'accès au domaine pcopticlean.com et l'IP 184.106.55.85
-Scan Details-
Process: 2
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOCSchedule.exe, Quarantined, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOptiClean.exe, Quarantined, [4109], [445649],1.0.3020
Module: 3
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOCSchedule.exe, Quarantined, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOptiClean.exe, Quarantined, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\sqlite3.dll, Quarantined, [4109], [445649],1.0.3020
Registry Key: 2
PUP.Optional.PCOptiClean, HKCU\SOFTWARE\PC OptiClean, Delete-on-Reboot, [4109], [445662],1.0.3020
PUP.Optional.PCOptiClean, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PC OptiClean_is1, Delete-on-Reboot, [4109], [445660],1.0.3020
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 6
PUP.Optional.PCOptiClean, C:\PROGRAM FILES (X86)\PC OPTICLEAN, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\PC OPTICLEAN, Delete-on-Reboot, [4109], [445651],1.0.3020
PUP.Optional.PCOptiClean, C:\Users\{username}\AppData\Roaming\PC OptiClean\Backup, Delete-on-Reboot, [4109], [445654],1.0.3020
PUP.Optional.PCOptiClean, C:\Users\{username}\AppData\Roaming\PC OptiClean\Undo, Delete-on-Reboot, [4109], [445654],1.0.3020
PUP.Optional.PCOptiClean, C:\Users\{username}\AppData\Roaming\PC OptiClean\Log, Delete-on-Reboot, [4109], [445654],1.0.3020
PUP.Optional.PCOptiClean, C:\USERS\{username}\APPDATA\ROAMING\PC OPTICLEAN, Delete-on-Reboot, [4109], [445654],1.0.3020
File: 20
PUP.Optional.PCOptiClean, C:\WINDOWS\SYSTEM32\TASKS\PC OptiClean Schedule, Delete-on-Reboot, [4109], [445658],1.0.3020
PUP.Optional.PCOptiClean, C:\USERS\{username}\DESKTOP\PC OPTICLEAN.LNK, Delete-on-Reboot, [4109], [445657],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\Animation.gif, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\CookieExclusions.txt, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\English.ini, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\file_id.diz, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\HomePage.url, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOCSchedule.exe, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOptiClean.chm, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\PCOptiClean.exe, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\Scanning.gif, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\SDesc.txt, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\sqlite3.dll, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\unins000.dat, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\Program Files (x86)\PC OptiClean\unins000.exe, Delete-on-Reboot, [4109], [445649],1.0.3020
PUP.Optional.PCOptiClean, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean\Check updates.lnk, Delete-on-Reboot, [4109], [445651],1.0.3020
PUP.Optional.PCOptiClean, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean\Help.lnk, Delete-on-Reboot, [4109], [445651],1.0.3020
PUP.Optional.PCOptiClean, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean\PC OptiClean on the Web.lnk, Delete-on-Reboot, [4109], [445651],1.0.3020
PUP.Optional.PCOptiClean, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean\PC OptiClean.lnk, Delete-on-Reboot, [4109], [445651],1.0.3020
PUP.Optional.PCOptiClean, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC OptiClean\Uninstall PC OptiClean.lnk, Delete-on-Reboot, [4109], [445651],1.0.3020
Physical Sector: 0
(No malicious items detected)
Tutoriel d'utilisation Malwarebytes en imagesSource : Removal instructions for PC OptiClean de Metallica - Malwarebytes Forums
Toujours infecté ? Une question avant de faire des manipulations ?
Venez poster un
nouveau sujet dans ce forum :
http://forum.security-x.fr/desinfections/ en prenant soin de suivre la procédure
http://forum.security-x.fr/desinfections/procedure-preliminaire/