1. ========================= SEAF 1.0.1.0 - C_XX 2. 3. Commencé à: 14:45:21 le 05/07/2017 4. 5. Valeur(s) recherchée(s): 6. cacaoweb 7. 8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès 9. 10. (!) --- Recherche registre 11. 12. ====== Fichier(s) ====== 13. 14. 15. "C:\AdwCleaner\quarantine\files\hcaiplxjiphtqjomqualibtszowowteu\cacaoweb.exe" [ ARCHIVE | 569 Ko ] 16. TC: 03/07/2017,15:07:12 | TM: 19/06/2017,22:26:52 | DA: 03/07/2017,15:07:12 17. 18. 19. ========================= 20. 21. 22. "C:\AdwCleaner\quarantine\files\ifcgfiqezpztubyjfoxpdqoscqitknlv\cacaoweb.exe" [ ARCHIVE | 569 Ko ] 23. TC: 03/07/2017,15:37:17 | TM: 19/06/2017,22:26:52 | DA: 03/07/2017,15:37:17 24. 25. 26. ========================= 27. 28. 29. "C:\AdwCleaner\quarantine\files\pswyhvqhoijjsaddwvhmuzlfzxsapnvw\cacaoweb.exe" [ ARCHIVE | 569 Ko ] 30. TC: 03/07/2017,15:48:58 | TM: 19/06/2017,22:26:52 | DA: 03/07/2017,15:48:58 31. 32. 33. ========================= 34. 35. 36. "C:\AdwCleaner\quarantine\files\vvdnaovshbtuehqeijpmylzhxvpniely\cacaoweb.exe" [ ARCHIVE | 569 Ko ] 37. TC: 03/07/2017,15:23:37 | TM: 19/06/2017,22:26:52 | DA: 03/07/2017,15:23:37 38. 39. 40. ========================= 41. 42. 43. "C:\Users\Benjamin\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0NGS95GB\cacaoweb-superflu-zhpcleaner-150x150[1].jpg" [ NOT_CONTENT_INDEXED|ARCHIVE | 4 Ko ] 44. TC: 03/07/2017,22:14:31 | TM: 03/07/2017,22:14:31 | DA: 03/07/2017,22:14:31 45. 46. 47. ========================= 48. 49. 50. 51. ====== Entrée(s) du registre ====== 52. 53. 54. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{6C0B3DF4-945A-472B-87C4-8604BC28640D}] 55. "AppId"="C:\Users\Benjamin\Desktop\cacaoweb.exe" (REG_SZ) 56. 57. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{A3086E33-01B4-42BB-8BFC-7B3D8AB40EEC}\RecentItems\{1E05FFAE-EA74-43D9-8E20-D5C5DFB9EBAA}] 58. "Path"="microsoft-edge:https://www.bing.com/search?q=cacaoweb&form=WNSGPH&qs=AS&cvid=4551081c69234f1da9f4ad3a2eccc89f&pq=caca&cc=FR&setlang=fr-FR&nclid=D8EA8A011D972CA831CC99B1ACC8EECB&ts=1497902277010&nclidts=1497902277&tsms=010" (REG_SZ) 59. 60. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{A3086E33-01B4-42BB-8BFC-7B3D8AB40EEC}\RecentItems\{1E05FFAE-EA74-43D9-8E20-D5C5DFB9EBAA}] 61. "DisplayName"="microsoft-edge:https://www.bing.com/search?q=cacaoweb&form=WNSGPH&qs=AS&cvid=4551081c69234f1da9f4ad3a2eccc89f&pq=caca&cc=FR&setlang=fr-FR&nclid=D8EA8A011D972CA831CC99B1ACC8EECB&ts=1497902277010&nclidts=1497902277&tsms=010" (REG_SZ) 62. 63. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{BDB63B52-5409-45D5-B4FB-27C9E5A559C5}] 64. "AppId"="C:\Users\Benjamin\Downloads\cacaoweb.exe" (REG_SZ) 65. 66. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] 67. "SIGN.IE=07DF30 cacaoweb.exe"="SACP" (REG_BINARY) 68. 69. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] 70. "C:\Users\Benjamin\Desktop\cacaoweb.exe"="SACP" (REG_BINARY) 71. 72. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] 73. "C:\Users\Benjamin\Downloads\cacaoweb.exe"="SACP" (REG_BINARY) 74. 75. [HKU\S-1-5-21-1495331833-1704331096-3052625062-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] 76. "C:\Users\Benjamin\Downloads\cacaoweb(1).exe"="SACP" (REG_BINARY) 77. 78. ========================= 79. 80. Fin à: 14:56:06 le 05/07/2017 81. 782587 Éléments analysés 82. 83. ========================= 84. E.O.F