cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'analyse: 23/02/2016
Heure de l'analyse: 12:48
Fichier journal: MBABMTXT.txt
Administrateur: Oui

Version: 2.2.0.1024
Base de données de programmes malveillants: v2016.02.23.02
Base de données de rootkits: v2016.02.17.01
Licence: Gratuit
Protection contre les programmes malveillants: Désactivé
Protection contre les sites Web malveillants: Désactivé
Autoprotection: Désactivé

Système d'exploitation: Windows 10
Processeur: x64
Système de fichiers: NTFS
Utilisateur: Toshiba

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 429562
Temps écoulé: 31 min, 38 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du Registre: 2
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, En quarantaine, [f826b6ae0e8bf2444b17b5a5af55a65a],
PUP.Optional.WinYahoo, HKU\S-1-5-21-3769472408-754669467-305674845-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, En quarantaine, [71ad43219dfc7eb80a571545ef15c937],

Valeurs du Registre: 4
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dnldastr_16_04¶m1=1¶m2=f[f826b6ae0e8bf2444b17b5a5af55a65a]D4%26b[f826b6ae0e8bf2444b17b5a5af55a65a]DIE%26cc[f826b6ae0e8bf2444b17b5a5af55a65a]Dtn%26pa[f826b6ae0e8bf2444b17b5a5af55a65a]DWincy%26cd[f826b6ae0e8bf2444b17b5a5af55a65a]D2XzuyEtN2Y1L1QzuyBtD0FtC0AtCyC0FyD0AyDyByB0A0AyCtN0D0Tzu0StCyEzzyBtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyE0C0DtDzztA0EtBtGyB0D0E0FtG0EzzzzyDtGyEyD0D0CtGtC0F0EtAtDtD0EtByBtCyByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByEtCtAtDtCyC0AtG0C0A0AtBtGyEzy0EtCtG0A0FtByEtG0C0C0EtC0EyByDyEyC0AyE0B2QtN0A0LzutB%26cr[f826b6ae0e8bf2444b17b5a5af55a65a]D2069482371%26a[f826b6ae0e8bf2444b17b5a5af55a65a]Dwbf_dnldastr_16_04%26os_ver[f826b6ae0e8bf2444b17b5a5af55a65a]D10.0%26os[f826b6ae0e8bf2444b17b5a5af55a65a]DWindowsEn quarantaineB10En quarantaineBPro&p={searchTerms}, %4, %5
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TopResultURLFallback, https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dnldastr_16_04¶m1=1¶m2=f[ac7295cff9a0bf77abb7de7c48bc6b95]D4%26b[ac7295cff9a0bf77abb7de7c48bc6b95]DIE%26cc[ac7295cff9a0bf77abb7de7c48bc6b95]Dtn%26pa[ac7295cff9a0bf77abb7de7c48bc6b95]DWincy%26cd[ac7295cff9a0bf77abb7de7c48bc6b95]D2XzuyEtN2Y1L1QzuyBtD0FtC0AtCyC0FyD0AyDyByB0A0AyCtN0D0Tzu0StCyEzzyBtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyE0C0DtDzztA0EtBtGyB0D0E0FtG0EzzzzyDtGyEyD0D0CtGtC0F0EtAtDtD0EtByBtCyByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByEtCtAtDtCyC0AtG0C0A0AtBtGyEzy0EtCtG0A0FtByEtG0C0C0EtC0EyByDyEyC0AyE0B2QtN0A0LzutB%26cr[ac7295cff9a0bf77abb7de7c48bc6b95]D2069482371%26a[ac7295cff9a0bf77abb7de7c48bc6b95]Dwbf_dnldastr_16_04%26os_ver[ac7295cff9a0bf77abb7de7c48bc6b95]D10.0%26os[ac7295cff9a0bf77abb7de7c48bc6b95]DWindowsEn quarantaineB10En quarantaineBPro&p={searchTerms}, %4, %5
PUP.Optional.WinYahoo, HKU\S-1-5-21-3769472408-754669467-305674845-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dnldastr_16_04¶m1=1¶m2=f[71ad43219dfc7eb80a571545ef15c937]D4%26b[71ad43219dfc7eb80a571545ef15c937]DIE%26cc[71ad43219dfc7eb80a571545ef15c937]Dtn%26pa[71ad43219dfc7eb80a571545ef15c937]DWincy%26cd[71ad43219dfc7eb80a571545ef15c937]D2XzuyEtN2Y1L1QzuyBtD0FtC0AtCyC0FyD0AyDyByB0A0AyCtN0D0Tzu0StCyEzzyBtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyE0C0DtDzztA0EtBtGyB0D0E0FtG0EzzzzyDtGyEyD0D0CtGtC0F0EtAtDtD0EtByBtCyByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByEtCtAtDtCyC0AtG0C0A0AtBtGyEzy0EtCtG0A0FtByEtG0C0C0EtC0EyByDyEyC0AyE0B2QtN0A0LzutB%26cr[71ad43219dfc7eb80a571545ef15c937]D2069482371%26a[71ad43219dfc7eb80a571545ef15c937]Dwbf_dnldastr_16_04%26os_ver[71ad43219dfc7eb80a571545ef15c937]D10.0%26os[71ad43219dfc7eb80a571545ef15c937]DWindowsEn quarantaineB10En quarantaineBPro&p={searchTerms}, %4, %5
PUP.Optional.WinYahoo, HKU\S-1-5-21-3769472408-754669467-305674845-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TopResultURLFallback, https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dnldastr_16_04¶m1=1¶m2=f[8e90c69e3d5c2c0aec755ffb16ee41bf]D4%26b[8e90c69e3d5c2c0aec755ffb16ee41bf]DIE%26cc[8e90c69e3d5c2c0aec755ffb16ee41bf]Dtn%26pa[8e90c69e3d5c2c0aec755ffb16ee41bf]DWincy%26cd[8e90c69e3d5c2c0aec755ffb16ee41bf]D2XzuyEtN2Y1L1QzuyBtD0FtC0AtCyC0FyD0AyDyByB0A0AyCtN0D0Tzu0StCyEzzyBtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyE0C0DtDzztA0EtBtGyB0D0E0FtG0EzzzzyDtGyEyD0D0CtGtC0F0EtAtDtD0EtByBtCyByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByEtCtAtDtCyC0AtG0C0A0AtBtGyEzy0EtCtG0A0FtByEtG0C0C0EtC0EyByDyEyC0AyE0B2QtN0A0LzutB%26cr[8e90c69e3d5c2c0aec755ffb16ee41bf]D2069482371%26a[8e90c69e3d5c2c0aec755ffb16ee41bf]Dwbf_dnldastr_16_04%26os_ver[8e90c69e3d5c2c0aec755ffb16ee41bf]D10.0%26os[8e90c69e3d5c2c0aec755ffb16ee41bf]DWindowsEn quarantaineB10En quarantaineBPro&p={searchTerms}, %4, %5

Données du Registre: 0
(Aucun élément malveillant détecté)

Dossiers: 0
(Aucun élément malveillant détecté)

Fichiers: 0
(Aucun élément malveillant détecté)

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité