Format du document : text/plain
Prévisualisation
Malwarebytes Anti-Malware
www.malwarebytes.org
Date de l'analyse: 29/09/2016
Heure de l'analyse: 20:06:56
Fichier journal: Malwarebytes Anti-Malware.txt
Administrateur: Oui
Version: 2.2.1.1043
Base de données de programmes malveillants: v2016.09.29.10
Base de données de rootkits: v2016.09.26.02
Licence: Gratuit
Protection contre les programmes malveillants: Désactivé
Protection contre les sites Web malveillants: Désactivé
Autoprotection: Désactivé
Système d'exploitation: Windows Vista Service Pack 2
Processeur: x86
Système de fichiers: NTFS
Utilisateur: Steed
Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 273065
Temps écoulé: 51 min, 41 s
Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Activé
Heuristique: Activé
PUP: Activé
PUM: Activé
Processus: 0
(Aucun élément malveillant détecté)
Modules: 0
(Aucun élément malveillant détecté)
Clés du Registre: 22
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\APPID\{A19F8F88-F91E-4E49-2222-BD21AB39D1BB}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\CLSID\{A19F8F88-F91E-4E49-2222-BD21AB39D1BB}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\TYPELIB\{A1011E88-B997-11CF-2222-0080C7B2D6BB}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\INTERFACE\{0142D788-C4FC-4ED8-2222-D654E27AF7F8}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\INTERFACE\{A1843388-EFC2-49C9-2222-FC0C403B0EBB}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\INTERFACE\{A1D87888-DEAA-4971-2222-5D5046F2B3BB}, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\spdfrmon.Gate.1, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.SpeedItUp, HKLM\SOFTWARE\CLASSES\spdfrmon.Gate, , [ed015c1be4b6aa8c596ffd0125dfee12],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{1ABC7F0B-5FBD-461B-A202-519EA6B3E18B}, , [aa44c3b402984beb337a9c5340c38e72],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{326643BA-CA91-4077-8805-F445B52841DF}, , [905e81f6acee76c05a531ed101029967],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E8B46A0-D661-4165-A061-72EB8CC7F56A}, , [0ce2ccabf9a18ea80e9f11dee71c926e],
PUP.Optional.RegCleanerPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{8DC76C1E-1659-4FA0-BE87-422854A36F42}, , [e90502759efc69cdcae40ec028daa15f],
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B44CBF2C-60BD-4E3A-8C3F-091178B38819}, , [767856214a502d09a22ba425f113d22e],
PUP.Optional.PriceMeter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BB65A045-DD53-4A7A-B19B-76C4163C98AA}, , [ab43b6c1702a0f2739e6daf2db27c838],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\APSnotifierPP1, , [b43ad2a51b7fd660c83ff3a4be45ad53],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\APSnotifierPP2, , [ba342b4c32687bbb9077fc9be91a17e9],
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\APSnotifierPP3, , [608ebabd059533038681edaa2bd8b44c],
PUP.Optional.RegCleanerPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ASP, , [7876f58254469c9a0dcc4a8ee91926da],
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LaunchSignup, , [5e90dc9b2d6dcd69b21c26a337cd31cf],
PUP.Optional.PriceMeter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\pricemeterdownloader, , [a04e7205e2b8c37326fafecea06257a9],
PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Update snipsmart, , [e707e09791094fe74a33c11eda29ea16],
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB, , [6589b6c1c1d964d22554505e40c3f10f],
Valeurs du Registre: 11
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{1ABC7F0B-5FBD-461B-A202-519EA6B3E18B}|Path, \APSnotifierPP1, , [aa44c3b402984beb337a9c5340c38e72]
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{326643BA-CA91-4077-8805-F445B52841DF}|Path, \APSnotifierPP2, , [905e81f6acee76c05a531ed101029967]
PUP.Optional.AnyProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E8B46A0-D661-4165-A061-72EB8CC7F56A}|Path, \APSnotifierPP3, , [0ce2ccabf9a18ea80e9f11dee71c926e]
PUP.Optional.RegCleanerPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{8DC76C1E-1659-4FA0-BE87-422854A36F42}|Path, \ASP, , [e90502759efc69cdcae40ec028daa15f]
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B44CBF2C-60BD-4E3A-8C3F-091178B38819}|Path, \LaunchSignup, , [767856214a502d09a22ba425f113d22e]
PUP.Optional.PriceMeter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BB65A045-DD53-4A7A-B19B-76C4163C98AA}|Path, \pricemeterdownloader, , [ab43b6c1702a0f2739e6daf2db27c838]
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB|monitype2, 10/15/14 21:50:23, , [6589b6c1c1d964d22554505e40c3f10f]
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB|monitype3, 10/15/14 21:50:23, , [c529e88f1486c0765e1b3f6f3bc8cd33]
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB|monitype17, 10/15/14 21:57:44, , [f5f9d99e7a2063d34237eec0d72c9d63]
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB|monitype19, 10/15/14 21:57:44, , [df0f92e59802181ec4b5634b689b12ee]
PUP.Optional.OutBrowse, HKU\S-1-5-21-1253477391-2551192254-3145576978-1000\SOFTWARE\OB|monitype6, 10/15/14 22:0:17, , [cc222552c3d77db9aecb3876ee150ff1]
Données du Registre: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Bon : ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Mauvais : ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[33bbe592c7d37bbbc3fc0571d2329d63]
Dossiers: 2
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer, , [ad41f87f3f5bb1856955926c36cedd23],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer1, , [6d81e3949109be783c83c33b3dc77d83],
Fichiers: 13
PUP.Optional.OpenCandy, C:\Users\Steed\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-5.0.8.windows.exe, , [c02e73046a30072fd7d65c2d5da7d32d],
PUP.Optional.OpenCandy, C:\Users\Steed\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-5.1.3.windows.exe, , [24ca1661a2f824122e7f0d7c64a05ca4],
PUP.Optional.Conduit, C:\Users\Steed\AppData\Roaming\ZHP\Quarantine\bittorrent.exe.VIR, , [c8263542cbcf360036f8c09e0cf8eb15],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer1\PCOptimizerProSetup.exe, , [25c91166821844f296cf338f8a7754ac],
PUP.Optional.PriceMeter, C:\Windows\System32\Tasks\pricemeterdownloader, , [45a94b2c5c3e73c3b469ca02a0622dd3],
PUP.Optional.WebInstr, C:\Windows\System32\drivers\Msft_Kernel_webinstr_01009.Wdf, , ,
PUP.Optional.MyPCBackup, C:\Windows\System32\Tasks\LaunchSignup, , [01edadca67330b2bb21efecb13f1946c],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer\ThankYou, , [ad41f87f3f5bb1856955926c36cedd23],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer\delayexec.exe, , [ad41f87f3f5bb1856955926c36cedd23],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer\wait.exe, , [ad41f87f3f5bb1856955926c36cedd23],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer1\ThankYou, , [6d81e3949109be783c83c33b3dc77d83],
PUP.Optional.PCOptimizerPro, C:\Program Files\Display Offer1\newdelayexec.exe, , [6d81e3949109be783c83c33b3dc77d83],
PUM.Optional.FireFoxSearchOverride, C:\Users\Steed\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\user.js, , [e40a4a2d4753fe38118ef0abd331cc34],
Secteurs physiques: 0
(Aucun élément malveillant détecté)
(end)