Malwarebytes www.malwarebytes.com -Détails du journal- Date de l'analyse: 11/06/2018 Heure de l'analyse: 13:07 Fichier journal: 9242ca56-6d67-11e8-ab2e-10bf4896e0e1.json Administrateur: Oui -Informations du logiciel- Version: 3.5.1.2522 Version de composants: 1.0.374 Version de pack de mise à jour: 1.0.5434 Licence: Gratuit -Informations système- Système d'exploitation: Windows 10 (Build 17134.48) Processeur: x64 Système de fichiers: NTFS Utilisateur: PLOUPLOU-PC\Th\u00c3\u00a9o -Résumé de l'analyse- Type d'analyse: Analyse des menaces Analyse lancée par: Manuel Résultat: Terminé Objets analysés: 507646 Menaces détectées: 76 Menaces mises en quarantaine: 73 Temps écoulé: 19 min, 55 s -Options d'analyse- Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Désactivé Heuristique: Activé PUP: Détection PUM: Détection -Détails de l'analyse- Processus: 0 (Aucun élément malveillant détecté) Module: 0 (Aucun élément malveillant détecté) Clé du registre: 10 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}, En quarantaine, [101], [239414],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\Iminent, En quarantaine, [101], [239410],1.0.5434 PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr, En quarantaine, [382], [244209],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{58124A0B-DC32-4180-9BFF-E0E21AE34026}, En quarantaine, [101], [168091],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{58124A0B-DC32-4180-9BFF-E0E21AE34026}, En quarantaine, [101], [168091],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}, En quarantaine, [101], [168094],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}, En quarantaine, [101], [168094],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, En quarantaine, [101], [168095],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, En quarantaine, [101], [168095],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, En quarantaine, [101], [168093],1.0.5434 Valeur du registre: 5 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}|URL, En quarantaine, [101], [239414],1.0.5434 PUP.Optional.FreeMakeConverter, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|FMCONVERTER@GMAIL.COM, En quarantaine, [7379], [238519],1.0.5434 PUP.Optional.Trovi, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr|{8A4D5A43-C64A-45AB-BDF4-804FE18CEAFD}.SDB, En quarantaine, [382], [244209],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{977AE9CC-AF83-45E8-9E03-E2798216E2D5}, En quarantaine, [101], [168094],1.0.5434 PUP.Optional.Iminent, HKU\S-1-5-21-763279494-2346669024-1137395879-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{977AE9CC-AF83-45E8-9E03-E2798216E2D5}, En quarantaine, [101], [168094],1.0.5434 Données du registre: 0 (Aucun élément malveillant détecté) Flux de données: 0 (Aucun élément malveillant détecté) Dossier: 9 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\dat, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\PROGRAMDATA\QVDYWDQEF, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\_metadata, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\config, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\PROFILE 1\EXTENSIONS\ICFMADKHINNIPGOFPJGFOHEDCCJDLPOI, En quarantaine, [1683], [467555],1.0.5434 Fichier: 52 PUP.Optional.PullUpdate, C:\PROGRAMDATA\QVDYWDQEF\DAT\HXELLU.EXE.CONFIG, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\dat\otftsls.exe.config, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\dat\ugjfxFKUtB.dll, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\info.dat, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\WbIkQJHZOIF.dat, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.PullUpdate, C:\ProgramData\QvDyWDQef\WbIkQJHZOIF.exe.config, En quarantaine, [407], [301963],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi\000003.log, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi\CURRENT, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi\LOCK, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi\LOG, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\icfmadkhinnipgofpjgfohedccjdlpoi\MANIFEST-000001, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Profile 1\Secure Preferences, Échec de la suppression, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Profile 1\Preferences, Échec de la suppression, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Profile 1\Sync Data\SyncData.sqlite3, Échec de la suppression, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\USERS\THéO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\PROFILE 1\EXTENSIONS\ICFMADKHINNIPGOFPJGFOHEDCCJDLPOI\13.651.13.9305_0\MANIFEST.JSON, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\config\config.json, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons\icon128.png, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons\icon16.png, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons\icon19disabled.png, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons\icon19on.png, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\icons\icon48.png, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\ajax.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\background.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\chrome.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\content_script.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\dlp.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\dlpHelper.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\extension_detect.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\genericLoadRemoteSettings.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\index.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\initOfferCEF.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\logger.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\offerService.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\pageUtils.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\PartnerId.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\product.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\storage.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\TabManager.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\TemplateParser.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\ul.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\urlFragmentActions.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\urlUtils.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\util.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\js\webtooltabAPI.js, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\_metadata\verified_contents.json, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\newtabproduct.html, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.MindSpark.Generic, C:\Users\Théo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icfmadkhinnipgofpjgfohedccjdlpoi\13.651.13.9305_0\stubby.html, En quarantaine, [1683], [467555],1.0.5434 PUP.Optional.SweetIM, C:\WINDOWS\INSTALLER\3F8868.MSI, En quarantaine, [353], [297640],1.0.5434 PUP.Optional.SweetIM, C:\WINDOWS\INSTALLER\3F88D3.MSI, En quarantaine, [353], [297640],1.0.5434 PUP.Optional.VeriStaff, C:\WINDOWS\INSTALLER\2D7D9DA.MSI, En quarantaine, [13253], [5240],1.0.5434 PUP.Optional.SweetIM, C:\WINDOWS\INSTALLER\3F88DC.MSI, En quarantaine, [353], [297640],1.0.5434 PUP.Optional.SnapDo, C:\WINDOWS\INSTALLER\2D7D9D1.MSI, En quarantaine, [176], [77242],1.0.5434 Secteur physique: 0 (Aucun élément malveillant détecté) WMI: 0 (Aucun élément malveillant détecté) (end)