cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'analyse: 31/07/2016
Heure de l'analyse: 10:53
Fichier journal: rapport mbam.txt
Administrateur: Oui

Version: 2.2.1.1043
Base de données de programmes malveillants: v2016.07.31.03
Base de données de rootkits: v2016.05.27.01
Licence: Gratuit
Protection contre les programmes malveillants: Désactivé
Protection contre les sites Web malveillants: Désactivé
Autoprotection: Désactivé

Système d'exploitation: Windows 10
Processeur: x64
Système de fichiers: NTFS
Utilisateur: Dretek Ordi Music

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 479525
Temps écoulé: 29 min, 5 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du Registre: 16
PUP.Optional.GlobalUpdate, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}, En quarantaine, [b4db0b1f02980c2ab5d2fe985ca67e82],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{1231839B-064E-4788-B865-465A1B5266FD}, En quarantaine, [008f1b0fa9f181b5460bb6d730d236ca],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{2DAC2231-CC35-482B-97C5-CED1D4185080}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{57C91446-8D81-4156-A70E-624551442DE9}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{97DD820D-2E20-40AD-B01E-6730B2FCE630}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{B177446D-54A4-4869-BABC-8566110B4BE0}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.Delta.ShrtCln, HKLM\SOFTWARE\CLASSES\INTERFACE\{F05B12E1-ADE8-4485-B45B-898748B53C37}, En quarantaine, [7e113febd3c72115d37edbb24ab8c63a],
PUP.Optional.LyricsNotes, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dbjmkjlcdkfccfpgpbieancamjhaclga, En quarantaine, [335cbb6f0991f0462d1500c423e042be],

Valeurs du Registre: 2
PUP.Optional.BrowserProtect, HKU\S-1-5-21-691476670-3581383828-4067154096-1001\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{0F827075-B026-42F3-885D-98981EE7B1AE}, C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension, En quarantaine, [f19e2a001a807eb8ebb96d497c8837c9]
PUP.Optional.AdLyrics, HKU\S-1-5-21-691476670-3581383828-4067154096-1001\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|addlyrics@addlyrics.net, C:\Program Files (x86)\AddLyrics\FF\, En quarantaine, [2e61e3478c0ee155bbdf2670966d8a76]

Données du Registre: 2
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Bon : ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Mauvais : ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Remplacé,[9af573b7108ae84e191ce98eae56fe02]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Bon : ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Mauvais : ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Remplacé,[6728d4569406d264fb3a393e28dc33cd]

Dossiers: 0
(Aucun élément malveillant détecté)

Fichiers: 30
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\aaa976a6-f497-4f01-bcbe-b2dbf42051e9-1-6.exe, En quarantaine, [008fef3b3367f244ccf1414e41c328d8],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\aaa976a6-f497-4f01-bcbe-b2dbf42051e9-1-7.exe, En quarantaine, [a1ee7fab82184de9922b6b24788c56aa],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\aaa976a6-f497-4f01-bcbe-b2dbf42051e9-5.exe, En quarantaine, [92fd42e8831751e5209d830c1aea2ed2],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\aaa976a6-f497-4f01-bcbe-b2dbf42051e9-7.exe, En quarantaine, [eea1bc6e376393a3fcc198f7c143b14f],
Trojan.Downloader, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SFKEX.exe, En quarantaine, [dfb09991dcbe4de912116fc0629f6997],
Trojan.Downloader, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SFKEX64.exe, En quarantaine, [1f7094968515a98def24230c2bd6b947],
PUP.Optional.SofTonic, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SoftonicDownloader_pour_photofiltre.exe, En quarantaine, [1a75a8822b6f45f1407acc61e61b37c9],
PUP.Optional.SofTonic, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SoftonicDownloader_pour_rar-password-cracker.exe, En quarantaine, [0b8480aa3c5edf577626b178de23916f],
PUP.Optional.GoForFiles, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\file_ZGhpSyv_JungleTimerSetup.exe_downloader_be_99078.exe, En quarantaine, [f39c68c2cbcfa59154d61b102fd2b947],
PUP.Optional.XTab, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\ProtectService.exe, En quarantaine, [632c4bdf9bff84b28cd436f88180f010],
PUP.Optional.GoForFiles, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\file_ZGhpSyv_JungleTimerSetup.exe_downloader_be_99078 (1).exe, En quarantaine, [068935f59109cb6beb3ff5364eb3e11f],
PUP.Optional.SofTonic, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SoftonicDownloader_pour_windows-media-player.exe, En quarantaine, [800f85a5bae0cd696d4d131afa07946c],
PUP.Optional.ChinAd, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\SSFK.exe, En quarantaine, [5e3115158c0eab8b961e046aa45d38c8],
Trojan.Downloader, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\Yrrehs.zip, En quarantaine, [27686bbf297187af0c0782ad57aa7e82],
PUP.Optional.BrowseFox, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\{9f6bd61c-56e9-4ec0-8890-acc97fb10685}Gw64.sys, En quarantaine, [3956d357d6c4fb3b6c0ab3de3aca847c],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\482400ac-ab13-40c6-b8ff-5eb267f7e8da\4c13d408-fb15-4a38-8e9c-6b5cd4cfa9be.dll, En quarantaine, [e2ad1c0ed3c751e5887b642e1be6b947],
PUP.Optional.Nova, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\482400ac-ab13-40c6-b8ff-5eb267f7e8da\c367dc48-813e-4eaf-a31d-155634076e6f.dll, En quarantaine, [77185eccc4d63204a21c002c48b924dc],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\CinemaP-1.9cV11.02\afc69822-0352-491c-babf-866a3d557573.dll, En quarantaine, [a1ee909a9604191d2cd76e24956c55ab],
PUP.Optional.Nova, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\CinemaP-1.9cV11.02\e4deb08c-0040-47d4-bc1a-fe03dd8008bd.dll, En quarantaine, [177868c22d6d0135308ed359f30e06fa],
PUP.Optional.CrossRider, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\CinemaP-1.9cV11.02\Uninstall.exe, En quarantaine, [dcb35fcbfd9d73c3ff045b3720e11fe1],
PUP.Optional.SkyTech, C:\Users\Dretek Ordi Music\AppData\Roaming\ZHP\Quarantine\MiuiTab\BrowserAction.dll, En quarantaine, [57382604504a60d6c454e4f712ef32ce],
PUP.Optional.Downloader, C:\Users\Dretek Ordi Music\Desktop\magix.video.deluxe.premium.2015.exe, En quarantaine, [a9e6b773fb9fb185d0d4b5fa34cdf30d],
PUP.Optional.CrossRider, C:\Program Files (x86)\Adobe\482400ac-ab13-40c6-b8ff-5eb267f7e8da.dll, En quarantaine, [7f1087a3b8e25adc2cd77022639e659b],
PUP.Optional.Nova, C:\Program Files (x86)\Adobe\eb9ed7a6-423d-4bf8-8eb5-b5e2d6b5cd51.dll, En quarantaine, [c8c7c9617d1dac8a1da1101c3ac78f71],
RiskWare.Tool.CK, C:\Users\Dretek Ordi Music\Documents\EA.Games.Multi.Keygen.exe, En quarantaine, [b2ddd654207aec4a399033490cf846ba],
PUP.Optional.RepackedToolbar, C:\Users\Dretek Ordi Music\Downloads\K-LiteCodecPackFull_telechargement_01net.exe, En quarantaine, [e2ad9c8e702a053143051b355ca59d63],
PUP.Optional.InstallCore, C:\Users\Dretek Ordi Music\Downloads\C146.tmp, En quarantaine, [642b5cce0d8dcc6a3605c4663bc9a759],
CrackTool.Agent, C:\Users\Dretek Ordi Music\Downloads\Camel.Audio.CamelPhat.VST.v3.42.incl.Keygen-AiR.rar, En quarantaine, [602fbf6bf0aa231378fad672be437789],
PUP.Optional.OpenCandy, C:\Users\Dretek Ordi Music\Downloads\CheatEngine63.exe, En quarantaine, [127d57d3702af54111f4eda08e73e917],
RiskWare.Crack, C:\Users\Dretek Ordi Music\Downloads\License 2050 + Fichier txt.zip, En quarantaine, [177880aa1783989e6c0ac19713ef6c94],

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité