Malwarebytes Anti-Malware www.malwarebytes.org Date de l'analyse: 25/01/2016 Heure de l'analyse: 18:49 Fichier journal: contenu du journal.txt Administrateur: Oui Version: 2.2.0.1024 Base de données de programmes malveillants: v2016.01.25.03 Base de données de rootkits: v2016.01.20.01 Licence: Essai Protection contre les programmes malveillants: Activé Protection contre les sites Web malveillants: Activé Autoprotection: Désactivé Système d'exploitation: Windows 10 Processeur: x64 Système de fichiers: NTFS Utilisateur: Marie France Type d'analyse: Analyse des menaces Résultat: Terminé Objets analysés: 329024 Temps écoulé: 11 min, 22 s Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Désactivé Heuristique: Activé PUP: Activé PUM: Activé Processus: 2 PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\CleanupConsole.exe, 5516, , [e6f165d86138d95d77c20ad13cc79967] PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\wb.exe, 6176, , [9542a8957326a98d6e095f920003ac54] Modules: 0 (Aucun élément malveillant détecté) Clés du Registre: 11 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\OneSystemCare, , [2aadc27b366337ff49e402cb11f02ed2], PUP.Optional.WebBar, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{0BCE8B0A-1E76-44E5-9909-3CF804D92E4D}_is1, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\wbsvc, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\One System Care Monitor, , [f8df5edf89107eb8e55b8b5015ee27d9], PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\One System Care Task, , [cb0cd766b1e86accf44c32a9a85bcc34], PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\One System CarePeriod, , [479091ac574248eeee523e9d8281956b], PUP.Optional.WebBar, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WebBarLaunchTask, , [00d750eddabf63d3304d955c3ac9b34d], PUP.Optional.WebBar, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WebBarUpdateTask, , [24b39e9f31683402b408a25ab94af010], PUP.Optional.WebBar, HKLM\SOFTWARE\WEBBAR, , [10c73c018f0aae881f5fe20f47bc21df], PUP.Optional.Conduit, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, , [8f48330aa6f3ef47cfe93984e61dcf31], PUP.Optional.OneSystemCare, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\ONE SYSTEM CARE, , [fcdb25182c6d8caa2a159e3d1de6d927], Valeurs du Registre: 8 PUP.Optional.WebBar, HKLM\SOFTWARE\WEBBAR|Wb, C:\Program Files\WebBar\2.0.5749.22382\wb.exe, , [10c73c018f0aae881f5fe20f47bc21df] PUP.Optional.WebBar, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WBSVC|ImagePath, "C:\Program Files\WebBar\wbsvc.exe", , [5c7b69d40f8a999d631ccb2612f147b9] PUP.Optional.WebBar, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION|wb.exe, 11000, , [993eb08df0a95bdb93ee78be23e18779] PUP.Optional.Conduit, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, http://www.bing.com/search?pc=COSP&ptag=D012416-A880FF2AB0987464788F&form=CONBDF&conlogo=CT3332041&q={searchTerms}, , [8f48330aa6f3ef47cfe93984e61dcf31] PUP.Optional.Conduit, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TopResultURL, http://www.bing.com/search?pc=COSP&ptag=D012416-A880FF2AB0987464788F&form=CONBDF&conlogo=CT3332041&q={searchTerms}, , [36a1221b27723ef802b60faea45f2dd3] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\ONE SYSTEM CARE|OSID, 6.2, , [fcdb25182c6d8caa2a159e3d1de6d927] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\ONE SYSTEM CARE|AdvertsLink1, http://dl.softservers.net/121002133/DriverPro.exe, , [8057bc8154454ee84bf327b429dab848] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\ONE SYSTEM CARE|AdvertsLink2, http://dl.softservers.net/171002133/LiveSupport.exe, , [9344b885f0a962d480beb526bc4736ca] Données du Registre: 1 PUP.Optional.HomePageHelper, HKU\S-1-5-21-3901459785-1592600118-2175706207-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://homepage-web.com/?s=acer&m=start, Bon : (www.google.com), Mauvais : (http://homepage-web.com/?s=acer&m=start),,[3f986cd10891ba7cd2438a398381b64a] Dossiers: 11 PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care, , [dafd9aa343561d1995a56774bd46d030], PUP.Optional.WebBar, C:\Users\cresp\AppData\Local\WebBar, , [2bac2b128c0dcb6b6213668bf21124dc], PUP.Optional.WebBar, C:\Windows\System32\config\systemprofile\AppData\Local\WebBar, , [399ee459efaafd39651116dbd231a060], PUP.Optional.WebBar, C:\Program Files\WebBar, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.AmazonTB, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\jetpack\abb@amazon.com, , [b027db620396c86ed1bd9216b15118e8], PUP.Optional.AmazonTB, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\jetpack\abb@amazon.com\simple-storage, , [b027db620396c86ed1bd9216b15118e8], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\WL, , [3a9de558dcbdb58156b84d769c6607f9], Fichiers: 61 PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\Uninstaller.exe, , [2aadc27b366337ff49e402cb11f02ed2], PUP.Optional.DownloadAssist, C:\Users\cresp\Downloads\GoogleChrome_Setup.exe, , [5b7c56e78019ae880e0132b4f212c838], PUP.Optional.AmazonTB, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\extensions\abb@amazon.com.xpi, , [9e39c07d4d4cd462c3cacce8897a27d9], PUP.Optional.OneSystemCare, C:\Users\Public\Desktop\Launch One System Care.lnk, , [e7f0d16c0f8a221414244596bf44f60a], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\OneSystemCare.ini, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\cancel.bmp, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\CleanupConsole.exe, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\icon.ico, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\OneSystemCare.exe, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\OSCShellExtension.dll, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\SystemCash.exe, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\SystemConsole.exe, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\Program Files (x86)\OneSystemCare\uninstall.bmp, , [e6f165d86138d95d77c20ad13cc79967], PUP.Optional.OneSystemCare, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care\Launch One System Care.lnk, , [dafd9aa343561d1995a56774bd46d030], PUP.Optional.OneSystemCare, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care\One System Care on the Web.url, , [dafd9aa343561d1995a56774bd46d030], PUP.Optional.OneSystemCare, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care\Uninstall.lnk, , [dafd9aa343561d1995a56774bd46d030], PUP.Optional.OneSystemCare, C:\Windows\System32\Tasks\One System Care Monitor, , [2daa97a6623740f696a6e2f9a75cf50b], PUP.Optional.OneSystemCare, C:\Windows\System32\Tasks\One System Care Task, , [508781bc3c5d7eb870cc15c601026e92], PUP.Optional.OneSystemCare, C:\Windows\System32\Tasks\One System CarePeriod, , [81565ce18316c0760339e1fa8083fc04], PUP.Optional.OneSystemCare, C:\Windows\Tasks\One System CarePeriod.job, , [ffd86ad31b7e2b0be85514c73cc7c33d], PUP.Optional.WebBar, C:\Users\cresp\AppData\Local\WebBar\wb.app.settings, , [2bac2b128c0dcb6b6213668bf21124dc], PUP.Optional.WebBar, C:\Users\cresp\AppData\Local\WebBar\wb.log, , [2bac2b128c0dcb6b6213668bf21124dc], PUP.Optional.WebBar, C:\Users\cresp\AppData\Local\WebBar\wb.user.history, , [2bac2b128c0dcb6b6213668bf21124dc], PUP.Optional.WebBar, C:\Users\cresp\AppData\Local\WebBar\wb.user.settings, , [2bac2b128c0dcb6b6213668bf21124dc], PUP.Optional.WebBar, C:\Windows\System32\config\systemprofile\AppData\Local\WebBar\wb.log, , [399ee459efaafd39651116dbd231a060], PUP.Optional.WebBar, C:\Program Files\WebBar\unins000.dat, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\InstallUtil.InstallLog, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\isa.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\Microsoft.Win32.TaskScheduler.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\unins000.exe, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\wbsvc.exe, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\wbsvc.exe.config, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\wbsvc.InstallLog, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\wbsvc.InstallState, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\Interop.SHDocVw.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\isa.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\isa_x64.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\log4net.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\Newtonsoft.Json.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\System.Threading.dll, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\wb.exe, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Program Files\WebBar\2.0.5749.22382\wb.exe.config, , [9542a8957326a98d6e095f920003ac54], PUP.Optional.WebBar, C:\Windows\System32\Tasks\WebBarLaunchTask, , [f8df8eafb7e257dfeb8da54c798af709], PUP.Optional.WebBar, C:\Windows\System32\Tasks\WebBarUpdateTask, , [f7e0f14c62378ea89cdd15dc3fc4768a], PUP.Optional.WebSearch, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\searchplugins\Web Search.xml, , [fed9b885d1c862d462cf25cd06fda957], Trojan.Agent.Trace, C:\Windows\regedit.log, , [4691b8853564d363bad9f31792727f81], PUP.Optional.AmazonTB, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\jetpack\abb@amazon.com\simple-storage\store.json, , [b027db620396c86ed1bd9216b15118e8], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Danish.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Dutch.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\English.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\French.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\German.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Italian.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Norwegian.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Parameters.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Portuguese.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Spanish.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.OneSystemCare, C:\Users\cresp\AppData\Roaming\One System Care\Languages\Swedish.xml, , [3a9de558dcbdb58156b84d769c6607f9], PUP.Optional.Conduit, C:\Prefs.js, , [c215ca73b2e7eb4bfa3036b9976d718f], PUP.Optional.Conduit, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\prefs.js, Bon : (), Mauvais : (user_pref("browser.newtab.url", "http://www.bing.com/?pc=COSP&ptag=D012416-A880FF2AB0987464788F&form=CONMHP&conlogo=CT3332041");), ,[bf188cb1d6c30b2baa798e5baa5aee12] PUP.Optional.HomePageHelper, C:\Users\cresp\AppData\Roaming\Mozilla\Firefox\Profiles\5napf5bp.default\prefs.js, Bon : (user_pref("browser.startup.homepage", "https://www.malwarebytes.org/restorebrowser/), Mauvais : (user_pref("browser.startup.homepage", "http://homepage-web.com), ,[5c7b64d9fe9b57df40d8658c50b4d729] Secteurs physiques: 0 (Aucun élément malveillant détecté) (end)