cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'examen: 16/03/2015
Heure de l'examen: 20:06:47
Fichier journal: MWB.txt
Administrateur: Oui

Version: 2.00.4.1028
Base de donn�es Malveillants: v2015.03.16.03
Base de donn�es Rootkits: v2015.02.25.01
Licence: Essai
Protection contre les malveillants: Activ�(e)
Protection contre les sites Web malveillants: Activ�(e)
Auto-protection: D�sactiv�(e)

Syst�me d'exploitation: Windows 7 Service Pack 1
Processeur: x64
Syst�me de fichiers: NTFS
Utilisateur: Niolas

Type d'examen: Examen "Menaces"
R�sultat: Termin�
Objets analys�s: 345634
Temps �coul�: 21 min, 37 sec

M�moire: Activ�(e)
D�marrage: Activ�(e)
Syst�me de fichiers: Activ�(e)
Archives: Activ�(e)
Rootkits: Activ�(e)
Heuristique: Activ�(e)
PUP: Activ�(e)
PUM: Activ�(e)

Processus: 0
(Aucun �l�ment malicieux detect�)

Modules: 0
(Aucun �l�ment malicieux detect�)

Cl�s du Registre: 20
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{48eba54e-c43e-448d-acf4-d9ec8b4c6bce}, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{48EBA54E-C43E-448D-ACF4-D9EC8B4C6BCE}, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.9, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.P48eba54e_c43e_448d_acf4_d9ec8b4c6bce_.9, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{48EBA54E-C43E-448D-ACF4-D9EC8B4C6BCE}, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{48EBA54E-C43E-448D-ACF4-D9EC8B4C6BCE}\INPROCSERVER32, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{7d95c9b4-5538-4206-97db-e90f07ef7fdb}, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7D95C9B4-5538-4206-97DB-E90F07EF7FDB}, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.P7d95c9b4_5538_4206_97db_e90f07ef7fdb_, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.9, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.P7d95c9b4_5538_4206_97db_e90f07ef7fdb_, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.P7d95c9b4_5538_4206_97db_e90f07ef7fdb_.9, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{7D95C9B4-5538-4206-97DB-E90F07EF7FDB}, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{7D95C9B4-5538-4206-97DB-E90F07EF7FDB}\INPROCSERVER32, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
PUP.Optional.Vosteran, HKLM\SOFTWARE\CLASSES\APPID\{4CB3598A-82E8-4D1F-983F-061238AE696E}, Mis en quarantaine, [3d6c43df1d6d86b00bb99587ed161be5],
PUP.Optional.Vosteran, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{4CB3598A-82E8-4D1F-983F-061238AE696E}, Mis en quarantaine, [3d6c43df1d6d86b00bb99587ed161be5],
PUP.Optional.Babylon.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Mis en quarantaine, [dbce63bff397aa8cf119a87940c3b34d],
PUP.Optional.Vosteran.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\vosteran.exe, Mis en quarantaine, [a80170b2e2a847ef0111e8c915ee0ff1],

Valeurs du Registre: 1
PUP.Optional.Vosteran, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY|AppPath, C:\Program Files (x86)\WSE_Vosteran\\, Mis en quarantaine, [6049f23043470531de8177c59a6be51b]

Donn�es du Registre: 0
(Aucun �l�ment malicieux detect�)

Dossiers: 1
Rogue.Multiple, C:\ProgramData\2355320829, Mis en quarantaine, [2683c95926646ec866aaa4bbf60d669a],

Fichiers: 3
PUP.Optional.Multiplug, C:\Program Files (x86)\buyaandbrowse\Uttvc4b8Uvi0bj.x64.dll, Mis en quarantaine, [feabd84ae9a101357bcd929f887a4cb4],
PUP.Optional.Multiplug, C:\Program Files (x86)\roocckettdeaoLo\t5SuomWVt0KUeA.x64.dll, Mis en quarantaine, [3970cb57701a71c5d375b27f62a0c23e],
Rogue.Multiple, C:\ProgramData\2355320829\BIT433E.tmp, Mis en quarantaine, [2683c95926646ec866aaa4bbf60d669a],

Secteurs physiques: 0
(Aucun �l�ment malicieux detect�)


(end)

Publicité


Signaler le contenu de ce document

Publicité