PUP.Optional.DriverTonic

短生物

PUP.OPTIONAL.DRIVERTONIC是Mal必威平台APPwareBytes的检测名称,用于潜在的不需要的程序,所谓的“驱动程序更新者和系统优化器”称为驱动程序补品。司机补液由PC调色剂发布并针对Windows系统。

GUI司机补品

症状

受影响系统的用户在安装过程中可能会看到以下警告:

安装驱动程序补药

打包机

当驾驶员补品活跃时,可能会看到这些警告:

司机补品使用预定的任务来获得持久性:

预定任务驱动器补品

你可能会在已安装的程序和功能列表中看到这个条目:

司机补品安装了

感染的类型和来源

pup.optional.drivertonic是一个驱动程序更新程序和系统优化程序。这些所谓的“系统优化器”使用有意的误报来说服用户其系统存在问题。然后他们试图销售他们的软件,声称它将删除这些问题。
drivertonic通常是由用户自己安装的。司机补药可以作为一个打包机或者可以从他们的网站上下载。

PC Tonics网站

保护

必威平台APPMalwarebytes保护用户免受putp . optional . drivertonic通过使用实时保护。

块驱动补药

必威平台APPMalwarebytes阻止了驱动器补品

修复

必威平台APPMalwarebytes可以检测和删除PACP.Optional.Drivertonic而无需进一步的用户交互。

  1. 下载malware必威平台APPbytes.到你的桌面。
  2. 双击mbsetup.exe.然后按照提示安装程序。
  3. 当你的必威平台APPWindows的Malwarebytes.安装完成后,该程序打开了欢迎来到Malwarebytes屏幕。必威平台APP
  4. 点击一下开始按钮。
  5. 点击扫描开始A.威胁扫描
  6. 点击隔离移除发现的威胁。
  7. 如果出现提示完成删除过程,重新启动系统。

必威平台APPMalwarebytes删除日志

Ma必威平台APPlwarebytes的删除日志如下所示:

必威平台APP的Malwarebytes www.malwarebytes.com -Log详细信息 - 扫描日期:19年4月8日扫描时间:9:13日志文件:bf02b4ea-59cd-11e9-9ecf-00ffdcc6fdfc.json  - 软件信息 - 版本:3.7.1.2839版本的组件:1.0.563更新包版本:1.0.10044许可:高级 - 系统信息 - 操作系统:Windows 7 Service Pack 1的CPU:64位文件系统:NTFS用户:{}计算机名\ {用户名} -Scan总结 - 扫描类型:威胁扫描扫描启动通过:手动结果:已完成对象扫描:236266个威胁检测到:81个威胁隔离:81已用时间:7分钟,7秒 - 扫描选项 - 记忆:启用启动:启用文件系统:启用档案:启用的Rootkits:启用启发式:启用PUP:检测PUM:检测-Scan详细信息 - 过程:1 PUP.Optional.DriverTonic,C:\ Program Files文件\驱动补药\ dtn.exe,隔离,[2936],[505858],1.0.10044模块:9 PUP。Optional.DriverTonic,C:\ Program Files文件\驱动进补\ 64 \ SQLite.Interop.dll,隔离,[2936],[505858],1.0.10044 PUP.Optional.DriverTonic,C:\ Program Files文件\博士艾弗进补\ dtn.exe,隔离,[2936],[505858],1.0.10044 PUP.Optional.DriverTonic,C:\ Program Files文件\驱动补药\ HtmlRenderer.dll,隔离,[2936],[505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\HtmlRenderer.WPF.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Interop.IWshRuntimeLibrary.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Microsoft.Win32.TaskScheduler.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\PaddleCheckoutSDK.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\System.Data.SQLite.DLL, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\WPFToolkit.dll, Quarantined, [2936], [505858],1.0.10044 Registry Key: 8 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Driver Tonic_Logon, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A25E30FE-1291-4529-82C2-AA4D55A8CADF}, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{A25E30FE-1291-4529-82C2-AA4D55A8CADF}, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4C7CA6F1-4691-449D-B574-559726CDA825}_is1, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, HKCU\SOFTWARE\PCTONICS.COM\Driver Tonic, Quarantined, [2936], [505865],1.0.10044 PUP.Optional.Jawego, HKLM\SOFTWARE\DTC-PR, Quarantined, [600], [543113],1.0.10044 PUP.Optional.WinTonic, HKLM\SOFTWARE\cGN0b25pY3MuY29t, Quarantined, [1394], [491485],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\PCTONICS.COM\Driver Tonic, Quarantined, [2936], [505863],1.0.10044 Registry Value: 3 PUP.Optional.Jawego, HKLM\SOFTWARE\DTC-PR|AFFILIATEID, Quarantined, [600], [543113],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A25E30FE-1291-4529-82C2-AA4D55A8CADF}|PATH, Quarantined, [2936], [582488],1.0.10044 PUP.Optional.DriverTonic, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4C7CA6F1-4691-449D-B574-559726CDA825}_IS1|DISPLAYNAME, Quarantined, [2936], [505864],1.0.10044 Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 8 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\x64, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\x86, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\x64, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\x86, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\PROGRAM FILES\DRIVER TONIC, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\DRIVER TONIC, Quarantined, [2936], [505860],1.0.10044 File: 52 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\7z.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\7z.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\difxapi.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\difxapi64.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\DPInst32.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\DPInst64.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\DrvReposPath.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dp\DrvSignerVerifier.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\x64\SQLite.Interop.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\x86\SQLite.Interop.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\ICSharpCode.SharpZipLib.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\langs.db, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\Microsoft.Win32.TaskScheduler.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\Newtonsoft.Json.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\System.Data.SQLite.DLL, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\System.Data.SQLite.Linq.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\System.Threading.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\TAFactory.IconPack.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\WebExtNotifier.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\websec\WebExtNotifier.exe.config, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\x64\SQLite.Interop.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\x86\SQLite.Interop.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Application_icon.png, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Delimon.Win32.IO.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dtn.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dtn.exe.config, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\dtonic.ttf, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\HtmlRenderer.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\HtmlRenderer.WPF.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Interop.IWshRuntimeLibrary.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Interop.SHDocVw.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\langs.db, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Microsoft.Win32.TaskScheduler.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Microsoft.WindowsAPICodePack.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Microsoft.WindowsAPICodePack.Shell.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\Newtonsoft.Json.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\PaddleCheckoutSDK.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\PresentationCore.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\System.Data.SQLite.DLL, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\System.Threading.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\TAFactory.IconPack.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\unins000.dat, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\unins000.exe, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\unins000.msg, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\Program Files\Driver Tonic\WPFToolkit.dll, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\WINDOWS\SYSTEM32\TASKS\Driver Tonic_Logon, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\DOCUMENTS AND SETTINGS\PUBLIC\Desktop\Driver Tonic.lnk, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\USERS\PUBLIC\Desktop\Driver Tonic.lnk, Quarantined, [2936], [505858],1.0.10044 PUP.Optional.DriverTonic, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Tonic\Buy Driver Tonic.lnk, Quarantined, [2936], [505860],1.0.10044 PUP.Optional.DriverTonic, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Tonic\Driver Tonic.lnk, Quarantined, [2936], [505860],1.0.10044 PUP.Optional.DriverTonic, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Tonic\Uninstall Driver Tonic.lnk, Quarantined, [2936], [505860],1.0.10044 PUP.Optional.DriverTonic, C:\USERS\{username}\DESKTOP\DRIVERTONIC.EXE, Quarantined, [2936], [509861],1.0.10044 Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end)

添加排除

如果用户希望保留此程序并将其排除在将来的扫描中被检测到,它们可以将程序添加到排除列表中。这是怎么做的。

  • 打开Win必威平台APPdows的Malwarebytes。
  • 点击检测历史
  • 点击允许列表
  • 将项添加到允许列表, 点击添加
  • 选择排除类型允许一个文件或文件夹并使用选择一个文件夹按钮选择要保留的软件的主文件夹。
  • 对属于软件的任何辅助文件或文件夹重复此操作。

如果要允许程序连接到Internet(例如要获取更新),也添加了排除类型允许应用程序连接到互联网并使用浏览按钮以选择您希望授予访问权限的文件。

跟踪/国际石油公司

您可以在FRST日志中看到这些条目:

(PC Tonics Inc  - > Pctonics.com)C:\ Program Files \ Driver Tonic \ Dtn.exe C:\ Users \ Public \ Desktop \ Driver Tonic.lnk C:\ Windows \ System32 \ Tasks \ Driver Tonic_Logon C:\用户\ {username} \ appdata \ roaming \ pctonics.com c:\ programdata \ pctonics.com C:\ ProgramData \ Microsoft \ Windows \ START MENU \ Programs \ Driver Tonic C:\ Program Files \ Driver Tonic Driver Tonic(HKLM \。.. \ {4C7CA6F1-4691-449D-B574-559726CDA825} _IS1)(版本:1.0.1.6  -  PCTONICS.COM)任务:{A25E30FE-1291-4529-82C2-AA4D55A8CADF}  -  System32 \ Tasks \ Driver Tonic_Logon => C:\ Program Files \ Driver Tonic \ DTN.exe(PC Tonics Inc  - > Pctonics.com))

相关的威胁

选择你的语言