cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes
www.malwarebytes.com

-Détails du journal-
Date de l'analyse: 11/12/2017
Heure de l'analyse: 01:33
Fichier journal: 18468854-ddb7-11e7-ae3b-6cc217759c8a.json
Administrateur: Oui

-Informations du logiciel-
Version: 3.3.1.2183
Version de composants: 1.0.262
Version de pack de mise à jour: 1.0.3457
Licence: Essai

-Informations système-
Système d'exploitation: Windows 10 (Build 14393.1914)
Processeur: x64
Système de fichiers: NTFS
Utilisateur: DESKTOP-UHECBA0\Tommy

-Résumé de l'analyse-
Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 305122
Menaces détectées: 81
Menaces mises en quarantaine: 81
Temps écoulé: 5 min, 26 s

-Options d'analyse-
Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Détection
PUM: Détection

-Détails de l'analyse-
Processus: 1
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SDMTray.exe, En quarantaine, [2243], [383722],1.0.3457

Module: 1
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SDMTray.exe, En quarantaine, [2243], [383722],1.0.3457

Clé du registre: 12
PUP.Optional.Avanquest, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\OneSafe Driver Manager Schedule, En quarantaine, [2243], [383726],1.0.3457
PUP.Optional.Avanquest, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C645944C-1D3E-44CF-A929-42230C113E1A}, En quarantaine, [2243], [383726],1.0.3457
PUP.Optional.Avanquest, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{C645944C-1D3E-44CF-A929-42230C113E1A}, En quarantaine, [2243], [383726],1.0.3457
Adware.Elex, HKU\S-1-5-18\SOFTWARE\xvb`lj, En quarantaine, [1], [389651],1.0.3457
PUP.Optional.Avanquest, HKU\S-1-5-21-3743351136-2030051214-778605851-1001\SOFTWARE\OneSafe Driver Manager, En quarantaine, [2243], [389271],1.0.3457
PUP.Optional.UCBrowser, HKU\S-1-5-21-3743351136-2030051214-778605851-1001\SOFTWARE\UCBrowserPID, En quarantaine, [1274], [403634],1.0.3457
PUP.Optional.UCBrowser, HKLM\SOFTWARE\WOW6432NODE\UCBrowserPID, En quarantaine, [1274], [407412],1.0.3457
Adware.Elex, HKLM\SOFTWARE\WOW6432NODE\xvb`lj, En quarantaine, [1], [389650],1.0.3457
Adware.Elex, HKLM\SOFTWARE\xvb`lj, En quarantaine, [1], [389650],1.0.3457
PUP.Optional.Avanquest, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\OneSafe Driver Manager_is1, En quarantaine, [2243], [383722],1.0.3457
Adware.Elex, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{19539992-061C-4E8B-9053-07B175303AF4}, En quarantaine, [1], [402766],1.0.3457
PUP.Optional.ChromeHelper, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\GoogleChromeUpService, En quarantaine, [7539], [383226],1.0.3457

Valeur du registre: 2
PUP.Optional.Avanquest, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C645944C-1D3E-44CF-A929-42230C113E1A}|PATH, En quarantaine, [2243], [383720],1.0.3457
Adware.Ghokswa, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{411A3229-FF80-4DAF-9D9B-DA973DBDE506}, En quarantaine, [169], [391309],1.0.3457

Données du registre: 0
(Aucun élément malveillant détecté)

Flux de données: 0
(Aucun élément malveillant détecté)

Dossier: 14
PUP.Optional.UCBrowser, C:\USERS\TOMMY\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\UC浏览器, En quarantaine, [1274], [396223],1.0.3457
PUP.Optional.FakeFFProfile, C:\Users\Tommy\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\t2dvdgv1.default, En quarantaine, [2116], [363173],1.0.3457
PUP.Optional.FakeFFProfile, C:\Users\Tommy\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles, En quarantaine, [2116], [363173],1.0.3457
PUP.Optional.FakeFFProfile, C:\USERS\TOMMY\APPDATA\ROAMING\MOZILLA\FIREFOX\NAWERIWEENTCOFISE, En quarantaine, [2116], [363173],1.0.3457
Adware.Elex, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\AMULEC, En quarantaine, [1], [378430],1.0.3457
PUP.Optional.WeatherChicken, C:\PROGRAM FILES (X86)\WEATHERCHICKN, En quarantaine, [490], [383209],1.0.3457
PUP.Optional.Avanquest, C:\PROGRAM FILES (X86)\ONESAFE DRIVER MANAGER, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\ONESAFE DRIVER MANAGER, En quarantaine, [2243], [383723],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Backup, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Undo, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Log, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\USERS\TOMMY\APPDATA\ROAMING\ONESAFE DRIVER MANAGER, En quarantaine, [2243], [383724],1.0.3457
Adware.Elex.SHHKRST, C:\USERS\TOMMY\APPDATA\ROAMING\ZERPIWILOPH, En quarantaine, [9], [440572],1.0.3457
Adware.Elex, C:\USERS\TOMMY\APPDATA\LOCAL\CKERGIYKAHATY, En quarantaine, [1], [443678],1.0.3457

Fichier: 51
PUP.Optional.Avanquest, C:\WINDOWS\SYSTEM32\TASKS\OneSafe Driver Manager Schedule, En quarantaine, [2243], [383726],1.0.3457
PUP.Optional.UCBrowser, C:\USERS\TOMMY\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\UC浏览器\卸载UC浏览器.lnk, En quarantaine, [1274], [396223],1.0.3457
PUP.Optional.FakeFFProfile, C:\Users\Tommy\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\t2dvdgv1.default\prefs.js, En quarantaine, [2116], [363173],1.0.3457
PUP.Optional.FakeFFProfile, C:\Users\Tommy\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\t2dvdgv1.default\profiles.ini, En quarantaine, [2116], [363173],1.0.3457
PUP.Optional.FakeFFProfile, C:\Users\Tommy\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\t2dvdgv1.default\search.json.mozlz4, En quarantaine, [2116], [363173],1.0.3457
Adware.Elex, C:\Windows\syswow64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\amuleC\aMuleC.lnk, En quarantaine, [1], [378430],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\7z.bak, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\7z.dll, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\file_id.diz, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\French.ini, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\HomePage.url, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\OneSafeDriverManager.chm, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\OneSafeDriverManager.exe, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\scan.gif, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SDMSchedule.exe, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SDMTray.exe, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SList.db, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\SList.txt, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\sqlite3.dll, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\stub64.exe, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\unins000.dat, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\Program Files (x86)\OneSafe Driver Manager\unins000.exe, En quarantaine, [2243], [383722],1.0.3457
PUP.Optional.Avanquest, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe Driver Manager\Aide.lnk, En quarantaine, [2243], [383723],1.0.3457
PUP.Optional.Avanquest, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe Driver Manager\Désinstaller OneSafe Driver Manager.lnk, En quarantaine, [2243], [383723],1.0.3457
PUP.Optional.Avanquest, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe Driver Manager\OneSafe Driver Manager.lnk, En quarantaine, [2243], [383723],1.0.3457
PUP.Optional.Avanquest, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe Driver Manager\Page d'accueil de OneSafe Driver Manager.lnk, En quarantaine, [2243], [383723],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n31e1c68bb647.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\BannerMain.png, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\BannerReg.png, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Devices.ini, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\DevicesPlus.ini, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Drivers64.db, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n16e2e3212038.exe.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n16e2e3212038.exe.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n2caeb3342643.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n2caeb3342643.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n31e1c68bb647.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n35b1e3b5468f.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n35b1e3b5468f.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n4c0d7b318d32.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n4c0d7b318d32.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n6baaa25efa30.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\n6baaa25efa30.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\nb17a34f8afbb.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\nb17a34f8afbb.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\ne88b879f60b3.zip.pre, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\ne88b879f60b3.zip.status, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\program.log, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\Scan.ini, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.Avanquest, C:\Users\Tommy\AppData\Roaming\OneSafe Driver Manager\settings.ini, En quarantaine, [2243], [383724],1.0.3457
PUP.Optional.ContentPush, C:\WINDOWS\RUN.VBS, En quarantaine, [27], [368898],1.0.3457

Secteur physique: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité