Malwarebytes Anti-Malware www.malwarebytes.org Date de l'analyse: 20/07/2016 Heure de l'analyse: 18:17 Fichier journal: 160720 - 2234 - Malware - Journal d'analyse.txt Administrateur: Oui Version: 2.2.1.1043 Base de données de programmes malveillants: v2016.07.20.09 Base de données de rootkits: v2016.05.27.01 Licence: Gratuit Protection contre les programmes malveillants: Désactivé Protection contre les sites Web malveillants: Désactivé Autoprotection: Désactivé Système d'exploitation: Windows 10 Processeur: x64 Système de fichiers: NTFS Utilisateur: Admin Type d'analyse: Analyse personnalisée Résultat: Terminé Objets analysés: 894709 Temps écoulé: 3 h, 57 min, 50 s Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Activé Heuristique: Activé PUP: Activé PUM: Activé Processus: 0 (Aucun élément malveillant détecté) Modules: 0 (Aucun élément malveillant détecté) Clés du Registre: 3 PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{944CF389-69C0-4CD1-A037-99EECF982D08}, Supprimer au redémarrage, [62e7d74f6733d3632ca4af40887ba55b], PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LaunchPreSignup, Supprimer au redémarrage, [0f3aff27d9c122147eb494195ba8da26], PUP.Optional.SuperOptimizer, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, En quarantaine, [2b1ead791e7c191d3b33ac0b6d961ee2], Valeurs du Registre: 1 PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{944CF389-69C0-4CD1-A037-99EECF982D08}|Path, \LaunchPreSignup, Supprimer au redémarrage, [62e7d74f6733d3632ca4af40887ba55b] Données du Registre: 0 (Aucun élément malveillant détecté) Dossiers: 0 (Aucun élément malveillant détecté) Fichiers: 58 PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Documents and Settings\All Users\Application Data\SweetIM\Messenger\update\sweetimsetup.exe, En quarantaine, [61e8fa2c0694082ebf5e602a74909769], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgICQMessengerAdapter.dll, En quarantaine, [54f57da92e6cf54162bb57338b796c94], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\ContentPackagesActivationHandler.exe, En quarantaine, [430661c585153afcc459cfbb24e024dc], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll, En quarantaine, [aa9f46e0d3c7b581cc51c4c6d82caf51], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgArchive.dll, En quarantaine, [4cfd54d207931c1a4fcef99153b1a759], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgcommon.dll, En quarantaine, [400968be5c3e1224d24b2664fc08e31d], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgcommunication.dll, En quarantaine, [3e0bc264ecae62d49885c6c4bc48a15f], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgconfig.dll, En quarantaine, [0f3a1e083169e0565dc02d5dbe466d93], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgFlashPlayer.dll, En quarantaine, [21288c9a9505a78f7e9fa0ea3ec6619f], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mghooking.dll, En quarantaine, [f059e442ff9bf343c25be5a5e321a55b], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgICQAuto.dll, En quarantaine, [53f6170f9703fd396eafe3a7986c1de3], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mglogger.dll, En quarantaine, [7fcab472bfdb7cba100dcbbf57adbe42], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMediaPlayer.dll, En quarantaine, [0c3d52d41b7f46f01b026f1b62a2a45c], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMsnAuto.dll, En quarantaine, [4900a0860991a5912eef0189b252d42c], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMsnMessengerAdapter.dll, En quarantaine, [a0a941e50f8b46f05dc07e0c4eb630d0], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgsimcommon.dll, En quarantaine, [b59432f4415960d66bb2404aeb19df21], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgSweetIM.dll, En quarantaine, [0841dc4a32689e9873aa76146e96e719], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgUpdateSupport.dll, En quarantaine, [50f99f87c9d1c5719a836c1e9c684db3], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgxml_wrapper.dll, En quarantaine, [e86160c6c2d894a29885f397778d50b0], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgYahooAuto.dll, En quarantaine, [2c1d76b0dac077bf3de0276317ed12ee], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\mgYahooMessengerAdapter.dll, En quarantaine, [6ddcc16585154de90914a0eaf311ec14], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\SweetIM.exe, En quarantaine, [e56427ffccce3204c15c9eec887cf907], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\SweetIM\Messenger\resources\sqlite\mgSqlite3.dll, En quarantaine, [b891c5618c0e87af7ca1f199b450fd03], PUP.Optional.Babylon, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\Webplayer setup\MyBabylonTB.exe, En quarantaine, [78d16fb72e6c92a40c6f3fe12cd425db], PUP.Optional.BabylonToolBar, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarApp.dll, En quarantaine, [93b6d94d504afc3a01e46ebbc53c3bc5], PUP.Optional.BabylonToolBar, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarEng.dll, En quarantaine, [f059ed391d7d25119d4865c4f40d9a66], PUP.Optional.BabylonToolBar, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarsrv.exe, En quarantaine, [98b1f432d7c35ed8588df9309b66c13f], PUP.Optional.BabylonToolBar, C:\Users\Admin\Documents\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarTlbr.dll, En quarantaine, [c38658cee5b5c670a63f6fba966b7d83], PUP.Optional.SweetIM, C:\Users\Admin\Documents\Récup SSINT\D\WINDOWS\Installer\5bea6a.msi, En quarantaine, [a9a026005743f046dc412664b84c32ce], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Documents and Settings\All Users\Application Data\SweetIM\Messenger\update\sweetimsetup.exe, En quarantaine, [3217f1359901e15575a85d2d4bb9d030], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgICQMessengerAdapter.dll, En quarantaine, [2d1c53d39cfefe3846d7a4e68a7a768a], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\ContentPackagesActivationHandler.exe, En quarantaine, [87c2b2741387290da5782763798b25db], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll, En quarantaine, [1633de484e4cda5c75a8b1d9dd27b34d], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgArchive.dll, En quarantaine, [301946e0e7b379bd05185d2dfa0a07f9], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgcommon.dll, En quarantaine, [55f430f6ecae7fb74bd2c4c62dd7629e], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgcommunication.dll, En quarantaine, [a3a66eb839613204f22b69212cd8f50b], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgconfig.dll, En quarantaine, [0049ff278515de5830edaae008fcbd43], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgFlashPlayer.dll, En quarantaine, [5aefcd59405a58de8994c7c343c19d63], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mghooking.dll, En quarantaine, [e663f3334e4c00364cd188023bc9817f], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgICQAuto.dll, En quarantaine, [4207b4720f8b4cea74a9f49615ef6799], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mglogger.dll, En quarantaine, [ec5d9492297102342cf1880281831ee2], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMediaPlayer.dll, En quarantaine, [d475d452cad069cd66b724660103a15f], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMsnAuto.dll, En quarantaine, [fc4dcd594654ff37c4594644bf45dd23], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgMsnMessengerAdapter.dll, En quarantaine, [f554c4623961a88e0e0f96f4a65eae52], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgsimcommon.dll, En quarantaine, [fa4f29fd7e1ce551c459523801036b95], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgSweetIM.dll, En quarantaine, [1534e442c6d451e5ed300d7da85cc33d], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgUpdateSupport.dll, En quarantaine, [ed5c4cdac8d26bcb47d6ee9c1aeab749], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgxml_wrapper.dll, En quarantaine, [1039cf57970367cfec31becce61e1ae6], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgYahooAuto.dll, En quarantaine, [c78212145f3be74f9e7fbcce51b3ff01], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\mgYahooMessengerAdapter.dll, En quarantaine, [e564a87e821856e05cc1eaa005ff54ac], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\SweetIM.exe, En quarantaine, [eb5e49dda7f34aec9b82404a2dd729d7], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\SweetIM\Messenger\resources\sqlite\mgSqlite3.dll, En quarantaine, [b8911115f9a17cba52cb7317e024db25], PUP.Optional.Babylon, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\Webplayer setup\MyBabylonTB.exe, En quarantaine, [440544e29901a195d9a2d14fe51bf808], PUP.Optional.BabylonToolBar, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarApp.dll, En quarantaine, [3316cc5ac9d139fd42a31c0dd32e2dd3], PUP.Optional.BabylonToolBar, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarEng.dll, En quarantaine, [1930df47dcbeff37895c2603e120b749], PUP.Optional.BabylonToolBar, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarsrv.exe, En quarantaine, [93b67aacc7d3ea4c05e0fd2c6f9219e7], PUP.Optional.BabylonToolBar, C:\Users\Admin\OneDrive\Récup SSINT\D\Program Files\~BabylonToolbar\~BabylonToolbar\~1.8.3.8\~BabylonToolbarTlbr.dll, En quarantaine, [4afff72fd3c783b39253ed3c68995ba5], PUP.Optional.SweetIM, C:\Users\Admin\OneDrive\Récup SSINT\D\WINDOWS\Installer\5bea6a.msi, En quarantaine, [ee5b3ceacad071c5e13cdbafab597b85], Secteurs physiques: 0 (Aucun élément malveillant détecté) (end)