cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'examen: 29/05/2015
Heure de l'examen: 16:43:13
Fichier journal: mbam.txt
Administrateur: Oui

Version: 2.01.6.1022
Base de donn�es Malveillants: v2015.04.05.02
Base de donn�es Rootkits: v2015.05.24.01
Licence: Essai
Protection contre les malveillants: Activ�(e)
Protection contre les sites Web malveillants: Activ�(e)
Auto-protection: D�sactiv�(e)

Syst�me d'exploitation: Windows 8.1
Processeur: x64
Syst�me de fichiers: NTFS
Utilisateur: User

Type d'examen: Examen "Menaces"
R�sultat: Termin�
Objets analys�s: 398609
Temps �coul�: 22 min, 39 sec

M�moire: Activ�(e)
D�marrage: Activ�(e)
Syst�me de fichiers: Activ�(e)
Archives: Activ�(e)
Rootkits: Activ�(e)
Heuristique: Activ�(e)
PUP: Activ�(e)
PUM: Activ�(e)

Processus: 0
(Aucun �l�ment malicieux d�tect�)

Modules: 0
(Aucun �l�ment malicieux d�tect�)

Cl�s du Registre: 14
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{c723a437-2eaf-466d-a95b-3fa0966bf88c}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{e806ac01-e7a5-4949-af7c-7e6e5775035b}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{BA6EB888-8424-4C93-8E71-6050C714CFBE}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{BA6EB888-8424-4C93-8E71-6050C714CFBE}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{BA6EB888-8424-4C93-8E71-6050C714CFBE}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{e806ac01-e7a5-4949-af7c-7e6e5775035b}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{e806ac01-e7a5-4949-af7c-7e6e5775035b}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{C723A437-2EAF-466D-A95B-3FA0966BF88C}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{C723A437-2EAF-466D-A95B-3FA0966BF88C}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C723A437-2EAF-466D-A95B-3FA0966BF88C}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.StrongSignal.A, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C723A437-2EAF-466D-A95B-3FA0966BF88C}, Mis en quarantaine, [be38d0981674d561f2a7c06e5ba87090],
PUP.Optional.Multiplug, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Mis en quarantaine, [51a51b4dd3b7b77f4359b08231d2f907],
PUP.Optional.Multiplug, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, Mis en quarantaine, [51a51b4dd3b7b77f4359b08231d2f907],
PUP.Optional.Jamenize.A, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001\SOFTWARE\Jamenize Browser, Mis en quarantaine, [589e17515f2bec4acb0bfdc02ed59b65],

Valeurs du Registre: 1
PUP.Optional.Vosteran.A, HKU\S-1-5-21-2725445123-2824092282-2277988523-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, Vosteran, Mis en quarantaine, [aa4c94d4c7c3b383e2bfcc7f2adbea16]

Donn�es du Registre: 0
(Aucun �l�ment malicieux d�tect�)

Dossiers: 6
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
Rogue.Multiple, C:\ProgramData\3872871776, Mis en quarantaine, [26d0da8e1e6c82b42eb44e2362a19d63],
Rogue.Multiple, C:\ProgramData\374311380, Mis en quarantaine, [01f52e3a7c0efc3a974dcea314efe11f],

Fichiers: 13
PUP.Optional.InstallCore.SID.A, C:\Users\User\AppData\Local\Temp\BNKStubSetup.exe, Mis en quarantaine, [73832741ccbe7bbb3c236fc39b6be41c],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\lsdb.js, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\background.html, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\content.js, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\Fcc.js, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\manifest.json, Mis en quarantaine, [ba3c61073e4c46f06cbe07ae768d47b9],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\lsdb.js, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\background.html, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\content.js, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\Fcc.js, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.MultiPlug.A, C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddhkdnebnphibbmghkoanknajhdfkcpb\1.3\manifest.json, Mis en quarantaine, [2bcb50189cee00367baf674e8c771ee2],
PUP.Optional.Jamenize.A, C:\Windows\System32\Tasks\Jamenize losa, Mis en quarantaine, [738374f46327989ea42f714cfe05ef11],
PUP.Optional.Jamenize.A, C:\Windows\Tasks\Jamenize losa.job, Mis en quarantaine, [e4121157b0daf44244906e4ffd06e51b],

Secteurs physiques: 0
(Aucun �l�ment malicieux d�tect�)


(end)

Publicité


Signaler le contenu de ce document

Publicité