cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'analyse: 20/11/2015
Heure de l'analyse: 14:40
Fichier journal: MBAM.txt
Administrateur: Oui

Version: 2.2.0.1024
Base de données de programmes malveillants: v2015.11.20.03
Base de données de rootkits: v2015.11.14.01
Licence: Gratuit
Protection contre les programmes malveillants: Désactivé
Protection contre les sites Web malveillants: Désactivé
Autoprotection: Désactivé

Système d'exploitation: Windows 10
Processeur: x64
Système de fichiers: NTFS
Utilisateur: elian

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 322335
Temps écoulé: 14 min, 43 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Activé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du Registre: 4
PUP.Optional.WinManger, HKLM\SOFTWARE\CLASSES\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, En quarantaine, [7ac9f8884e3db97de4385ee39f637f81],
PUP.Optional.WinManger, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, En quarantaine, [7ac9f8884e3db97de4385ee39f637f81],
PUP.Optional.WinManger, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{85198F55-85AC-498A-BFE4-BBC33840F4AB}, En quarantaine, [7ac9f8884e3db97de4385ee39f637f81],
PUP.Optional.SoundPlus, HKLM\SOFTWARE\WOW6432NODE\SOUNDPLUS, En quarantaine, [49fa1a66e1aa52e4975b5a89030017e9],

Valeurs du Registre: 3
PUP.Optional.SoundPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Sound+, "C:\Program Files\Sound+\Sound+.exe", En quarantaine, [0d3698e8bbd0191daee7687b0af9bd43]
PUP.Optional.SoundPlus, HKLM\SOFTWARE\WOW6432NODE\SOUNDPLUS|Path, C:\Program Files (x86)\spaceeplus, En quarantaine, [49fa1a66e1aa52e4975b5a89030017e9]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-2341551614-521417563-3587076404-1001_Classes\LOCAL SETTINGS\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APPCONTAINER\STORAGE\microsoft.microsoftedge_8wekyb3d8bbwe\MICROSOFTEDGE\MAIN|HomeButtonPage, http://www.istartsurf.com/?type=hp&ts=1447951668&z=d90a80c630a7d84833012e6g0zdz9mft0wegaqeq5b&from=tugss&uid=wdcxwd10jpvx-22jc3t0_wd-wx71a75fr2axfr2ax, En quarantaine, [6bd892eef3987db98cfefdb147bc6e92]

Données du Registre: 2
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Bon : ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Mauvais : ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Remplacé,[a49f324ebfcc2610455560fb3cc86f91]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Bon : ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Mauvais : ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Remplacé,[3a09fe8295f611250c8e4615fa0a33cd]

Dossiers: 15
PUP.Optional.AmazonTB, C:\Users\elian\AppData\Roaming\Mozilla\Firefox\Profiles\ngn4x5up.default\jetpack\abb@amazon.com, En quarantaine, [162d5729b2d9cc6a5344a1bedf23f30d],
PUP.Optional.AmazonTB, C:\Users\elian\AppData\Roaming\Mozilla\Firefox\Profiles\ngn4x5up.default\jetpack\abb@amazon.com\simple-storage, En quarantaine, [162d5729b2d9cc6a5344a1bedf23f30d],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu\Common, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu\Common\I18N, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache\pariente_desktoptool_soft_partner, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\InstallHelper, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\nsg4B52.tmp, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\ScreenSnapshot, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\uninstall_temp_10364265, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],

Fichiers: 38
PUP.Optional.OneSystemCare, C:\Users\elian\AppData\Roaming\ZHP\Quarantine\onesystemcare.exe, En quarantaine, [78cbc3bd692254e214797907f90bed13],
PUP.Optional.OneSystemCare, C:\Users\elian\AppData\Roaming\ZHP\Quarantine\OneSystemCare[1].exe, En quarantaine, [241fe69aeaa1b086bdd0ef916e966799],
PUP.Optional.IStartSurf.ShrtCln, C:\Users\elian\AppData\Roaming\ZHP\Quarantine\llys_istartsurf.exe, En quarantaine, [b98aeb95107b49edcbfee295a65e33cd],
PUP.Optional.IStartSurf.ShrtCln, C:\Users\elian\AppData\Roaming\ZHP\Quarantine\llys_istartsurf[1].exe, En quarantaine, [31124c347e0dad89eedb294e8e7660a0],
PUP.Optional.ChinAd, C:\Users\elian\AppData\Local\Temp\InstallHelper.exe, En quarantaine, [54efcdb3ed9eba7c7cec712c9968e020],
PUP.Optional.MaxDriverUpdater, C:\Users\elian\AppData\Local\Temp\02I770LFI4\newversion.exe, En quarantaine, [a1a2e29e5932cd69b90d68dc8b76c23e],
PUP.Optional.MaxDriverUpdater, C:\Users\elian\AppData\Local\Temp\acba11fa-1849-46e0-a62e-6da133ddd8a6\spaceeplus.exe, En quarantaine, [182b740c6f1c61d599efa5f0b1504eb2],
PUP.Optional.WebBar, C:\Users\elian\AppData\Local\Temp\b62f6b5b-b441-4c11-9ef6-57286fa1e28e\web_bar_setup_is2.exe, En quarantaine, [96ad067aed9e7db972f59c9031d0aa56],
PUP.Optional.Wajam, C:\Users\elian\AppData\Local\Temp\e1fe6db6-770f-4a48-8bae-5b1b1d959852\wwe_1.54.1.13.exe, En quarantaine, [380ba7d91675fb3bb073ab9f40c18878],
PUP.Optional.MaxDriverUpdater, C:\Users\elian\AppData\Local\Temp\U3PJDDA2LL\newversion.exe, En quarantaine, [2f144c340784ff37c9fd4df7f8090000],
PUP.Optional.Tuto4PC, C:\Users\elian\AppData\Local\Temp\U3PJDDA2LL\SVH.exe, En quarantaine, [1231c0c01f6c9e98008f88b1778922de],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_bubbledock_installer_multilang.exe, En quarantaine, [97ac4d3358330b2ba6ad52d540c1e31d],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\465.exe, En quarantaine, [70d38cf47d0eed49a7ac988f23dedc24],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\473.exe, En quarantaine, [c182136d117a62d481d29f88db26dc24],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\583.exe, En quarantaine, [311278089cefc472035058cfe02135cb],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\607.exe, En quarantaine, [1c278df3dbb050e65af950d7bc45d32d],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\623.exe, En quarantaine, [a79c7e02791222147fd4c85f3fc2bc44],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\643.exe, En quarantaine, [8eb5c4bc1972e452282bc95ed22f24dc],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\648.exe, En quarantaine, [86bd146cb4d7e74f73e04bdcd72ac739],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\663.exe, En quarantaine, [4300720ea8e369cd4e05fe2911f0be42],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\692.exe, En quarantaine, [fe453c447813bb7b035057d0e21fc937],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_AnySend_installer_multilang.exe, En quarantaine, [ac97423e64270234371c43e4b34ef60a],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_bobrowser_installer_multilang.exe, En quarantaine, [f1523a46464542f44d0684a3827f966a],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_bubblefoot_installer_multilang.exe, En quarantaine, [91b26f110982340212415fc810f18c74],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_pzombie_installer_multilang.exe, En quarantaine, [94af8ef27d0e5bdb4b086fb814ed629e],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-EG89M.tmp\package_speedup_installer_multilang.exe, En quarantaine, [a0a32a56acdf6fc7213256d17e83d32d],
PUP.Optional.Tuto4PC, C:\Users\elian\AppData\Local\Temp\is-IP074.tmp\Z2VudGxlbWptcF9pZXU=.exe, En quarantaine, [3e05c4bc028987afe7a48219837e35cb],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-AJ5JA.tmp\493.exe, En quarantaine, [083be0a0fe8d6ec8292a39ee0af734cc],
PUP.Optional.EoRezo, C:\Users\elian\AppData\Local\Temp\is-4N4T9.tmp\465.exe, En quarantaine, [053ea9d7a1ea0c2a470c39ee32cf5ea2],
PUP.Optional.Tuto4PC, C:\Users\elian\AppData\Local\Temp\is-6KHFJ.tmp\Z2VudGxlbWptcF9pZXU=.exe, En quarantaine, [72d17e026a212c0a8a01841732cff808],
PUP.Optional.BundleInstaller, C:\Users\elian\Downloads\ChromeSetup.exe, En quarantaine, [f152f0906427cf67aef6d26a9869d927],
Trojan.Agent.Trace, C:\Windows\regedit.log, En quarantaine, [f44fd8a8a9e267cf0181308cde250df3],
PUP.Optional.Wajam, C:\Users\elian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.technologiestuart.com_0.localstorage, En quarantaine, [360d1070a6e5e452c2149c36d42f54ac],
PUP.Optional.Wajam, C:\Users\elian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.technologiestuart.com_0.localstorage-journal, En quarantaine, [073c413f325949edc2148b477f8413ed],
PUP.Optional.AmazonTB, C:\Users\elian\AppData\Roaming\Mozilla\Firefox\Profiles\ngn4x5up.default\jetpack\abb@amazon.com\simple-storage\store.json, En quarantaine, [162d5729b2d9cc6a5344a1bedf23f30d],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Baidu\Common\I18N\conf.db, En quarantaine, [a79c82fe6c1fab8b081f315a8b779e62],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\conf.db, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],
PUP.Optional.ChinAd, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\uninstall_temp_10364265\31522128564f0d55, En quarantaine, [97acc1bfb0dbe94de246e8a3c53d6898],

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité