ÿþEmsisoft Anti-Malware - Version 12.1.1.7014 Dernière mise à jour : 22/12/2016 19:14:18 Compte utilisateur : perzo-PC\perzo Computer name: PERZO-PC OS version: Windows 10x64 Paramètres d'analyse : Type d'analyse : Analyse anti-malware Éléments : Rootkits, Mémoire, Traces, Fichiers Détecter des PUP : Activé Archives d'analyse : Désactivé Analyse ADS : Activé Filtre d'extensions de fichier : Désactivé Accès direct au disque : Désactivé Début d'analyse : 22/12/2016 19:31:04 Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006\SOFTWARE\CONDUIT Application.InstallAd (A) [270274] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163531498\SOFTWARE\CONDUIT Application.InstallAd (A) [270274] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163610417\SOFTWARE\CONDUIT Application.InstallAd (A) [270274] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Application.BrowserExt (A) [281319] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Application.BrowserExt (A) [281319] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Application.BrowserExt (A) [281319] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Application.BrowserExt (A) [281323] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Application.BrowserExt (A) [281323] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Application.BrowserExt (A) [281323] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Application.BrowserExt (A) [281326] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Application.BrowserExt (A) [281326] Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Application.BrowserExt (A) [281326] C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOICONS.EXE Trojan.Generic.6831227 (B) [krnl.xmd] C:\Users\perzo\Downloads\itunes.exe Application.Bundler.SoftPulse.P (B) [krnl.xmd] Analysés 86991 Trouvés 14 Fin de l'analyse : 22/12/2016 19:56:06 Durée de l'analyse : 0:25:02 C:\Users\perzo\Downloads\itunes.exe Mis en quarantaine : Application.Bundler.SoftPulse.P (B) C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOICONS.EXE Mis en quarantaine : Trojan.Generic.6831227 (B) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{FE6F06FB-0FC0-4499-828F-EE48088F504F} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{65F159FB-5F5E-46F4-B45D-CCFA236D2073} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163609130\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163530851\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{0214754E-4E7D-4589-829D-E2523E6A3085} Mis en quarantaine : Application.BrowserExt (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163610417\SOFTWARE\CONDUIT Mis en quarantaine : Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12222016163531498\SOFTWARE\CONDUIT Mis en quarantaine : Application.InstallAd (A) Key: HKEY_USERS\S-1-5-21-3161388100-3524271346-532071286-1006\SOFTWARE\CONDUIT Mis en quarantaine : Application.InstallAd (A) Mis en quarantaine : 14