cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'examen: 05/03/2015
Heure de l'examen: 22:43:54
Fichier journal: txxxt.txt
Administrateur: Oui

Version: 2.00.4.1028
Base de donn�es Malveillants: v2015.03.05.03
Base de donn�es Rootkits: v2015.02.25.01
Licence: Essai
Protection contre les malveillants: Activ�(e)
Protection contre les sites Web malveillants: Activ�(e)
Auto-protection: D�sactiv�(e)

Syst�me d'exploitation: Windows XP Service Pack 3
Processeur: x86
Syst�me de fichiers: NTFS
Utilisateur: user

Type d'examen: Examen "Menaces"
R�sultat: Termin�
Objets analys�s: 317442
Temps �coul�: 9 min, 32 sec

M�moire: Activ�(e)
D�marrage: Activ�(e)
Syst�me de fichiers: Activ�(e)
Archives: Activ�(e)
Rootkits: Activ�(e)
Heuristique: Activ�(e)
PUP: Activ�(e)
PUM: Activ�(e)

Processus: 0
(Aucun �l�ment malicieux detect�)

Modules: 0
(Aucun �l�ment malicieux detect�)

Cl�s du Registre: 11
PUP.Optional.RollAround.A, HKLM\SOFTWARE\CLASSES\CLSID\{83c0e288-8fa0-43d3-acc7-c1e839d85abc}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.RollAround.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{506ddb16-455a-4746-ad77-d23228955fd3}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.RollAround.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{22E9CC7A-04B2-4558-A993-763395274E42}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.RollAround.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{83C0E288-8FA0-43D3-ACC7-C1E839D85ABC}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.RollAround.A, HKU\S-1-5-21-606747145-1284227242-839522115-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{83C0E288-8FA0-43D3-ACC7-C1E839D85ABC}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.RollAround.A, HKU\S-1-5-21-606747145-1284227242-839522115-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{83C0E288-8FA0-43D3-ACC7-C1E839D85ABC}, Mis en quarantaine, [aefb5fc37119aa8c440f35de857e7a86],
PUP.Optional.Babylon.A, HKU\S-1-5-21-606747145-1284227242-839522115-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Mis en quarantaine, [fbae4fd38cfe8bab328de8305ea59b65],
PUP.Optional.Conduit.A, HKLM\SOFTWARE\FreeOnlineRadioPlayerRecorder, Mis en quarantaine, [a405e83a5e2c81b53dd03fe8aa5b7d83],
Adware.SmartBar, HKLM\SOFTWARE\SmartBar, Mis en quarantaine, [2782121099f1a690f86885fe8a7aa35d],
PUP.Optional.Conduit.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pmcmflmkceipgecmhoddphflfndnfbbe, Mis en quarantaine, [0f9aec361e6ce74f6f9c5bcc09fc9769],
PUP.Optional.Conduit.A, HKU\S-1-5-21-606747145-1284227242-839522115-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\FreeOnlineRadioPlayerRecorder, Mis en quarantaine, [595065bde5a565d145c932f548bd4cb4],

Valeurs du Registre: 0
(Aucun �l�ment malicieux detect�)

Donn�es du Registre: 3
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|AntiVirusDisableNotify, 1, Bon: (0), Mauvais: (1),Remplac�,[5a4fb270c6c4989e0b2129ae2dd808f8]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|FirewallDisableNotify, 1, Bon: (0), Mauvais: (1),Remplac�,[5554a37f404a76c0d6575780798c2bd5]
PUM.Disabled.SecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|UpdatesDisableNotify, 1, Bon: (0), Mauvais: (1),Remplac�,[aaff12103951280e51dd5a7d887d1be5]

Dossiers: 7
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT2737658, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT3128284, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.Datamngr.A, C:\Documents and Settings\user\AppData\LocalLow\DataMngr, Mis en quarantaine, [efbaa57d1c6e77bf9de49ececc3755ab],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome\content, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],

Fichiers: 36
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt5.tmp, Mis en quarantaine, [9e0bc161e2a88babf4e9925c38cdaa56],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt12.tmp, Mis en quarantaine, [f6b381a1deacf145cc1126c88f76c937],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt13.tmp, Mis en quarantaine, [9019b46e0e7cf541a03dec0225e017e9],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt1A.tmp, Mis en quarantaine, [b1f87ca6d4b6290d55881bd305001fe1],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt1D.tmp, Mis en quarantaine, [6c3d37eb7911e94d667713db9d688d73],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt55.tmp, Mis en quarantaine, [d6d3a57d8307a294a934bf2f28dd817f],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt6.tmp, Mis en quarantaine, [c3e6e73bd4b6f6400ad30ee0f312c13f],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt7.tmp, Mis en quarantaine, [575256cc3a5072c4e7f6da14ff060af6],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt8.tmp, Mis en quarantaine, [f5b43de5e4a633034c91ca24897c8779],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wtE.tmp, Mis en quarantaine, [bdec09197c0eb482726b8767867fc43c],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wtF.tmp, Mis en quarantaine, [fdac3de577139d99419c7975f1147d83],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wtF6.tmp, Mis en quarantaine, [39700b17fa90f145bb228f5f2bda40c0],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt2C.tmp, Mis en quarantaine, [f3b6c85a5238c96dd40925c9739252ae],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt32.tmp, Mis en quarantaine, [0a9fbe646525d5617667c52942c3f60a],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt36.tmp, Mis en quarantaine, [cfdaaa78a1e9c86e4d904da10ff6ce32],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt43.tmp, Mis en quarantaine, [cadf70b2c5c5a6900ad35e90f90c0000],
PUP.Optional.DealioTB.A, C:\WINDOWS\system32\config\systemprofile\Application Data\Application Updater\temp\~wt4D.tmp, Mis en quarantaine, [931671b1e1a95dd906d7608e51b454ac],
PUP.Hacktool.Patcher, C:\Program Files\Power Mp3 Cutter(Mp3 Sound Cutter)\Power Mp3 Cutter Joiner 1.12 Patch -rex922.exe, Mis en quarantaine, [c6e3e9395535e25444cfb4527987f50b],
PUP.Optional.Spigot.A, C:\WINDOWS\Installer\20d8b.msi, Mis en quarantaine, [5d4c22001377ef471cf0a333c9387090],
PUP.Optional.Conduit.A, C:\Documents and Settings\user\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_facebook.conduitapps.com_0.localstorage-journal, Mis en quarantaine, [dbce938f5a30ef47208ec70f0af9768a],
PUP.Optional.Searchqu.A, C:\Documents and Settings\user\Application Data\Mozilla\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}, Mis en quarantaine, [d1d899898a00db5b45b2df27e71eee12],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT2737658\mam_gk_appsConfig.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT2737658\mam_gk_localization.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT2737658\mam_gk_settings1.14.1.2.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT2737658\url_history0001.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT3128284\mam_gk_appsConfig.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT3128284\mam_gk_localization.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT3128284\mam_gk_settings1.13.0.17.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.ValueApps.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\valueApps\CT3128284\url_history0001.txt, Mis en quarantaine, [a009c1610d7dd660b948b1bb6e953ec2],
PUP.Optional.Datamngr.A, C:\Documents and Settings\user\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}, Mis en quarantaine, [efbaa57d1c6e77bf9de49ececc3755ab],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome.manifest, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\icon.png, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\install.rdf, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome\content\keyword.js, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome\content\main.js, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],
PUP.Optional.Spigot.A, C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\2of2t6np.default\extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}\chrome\content\main.xul, Mis en quarantaine, [aefbf9294c3ed4626929a8e220e3a55b],

Secteurs physiques: 0
(Aucun �l�ment malicieux detect�)


(end)

Publicité


Signaler le contenu de ce document

Publicité