cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes Anti-Malware
www.malwarebytes.org

Date de l'analyse: 26/11/2016
Heure de l'analyse: 17:27
Fichier journal:
Administrateur: Oui

Version: 2.2.1.1043
Base de données de programmes malveillants: v2016.11.26.07
Base de données de rootkits: v2016.11.20.01
Licence: Essai
Protection contre les programmes malveillants: Activé
Protection contre les sites Web malveillants: Activé
Autoprotection: Désactivé

Système d'exploitation: Windows 10
Processeur: x64
Système de fichiers: NTFS
Utilisateur: Samy

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 356151
Temps écoulé: 3 min, 42 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du Registre: 5
PUP.Optional.InstallCore, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\csastats, En quarantaine, [845bd0f4aeec0531582fdcfd2bd7956b],
PUP.Optional.Wajam, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\WajIEnhance, En quarantaine, [e0ff378dd5c564d22da47f2120e2eb15],
PUP.Optional.SearchManager, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, En quarantaine, [805ff4d0c2d8e1555ead6d6c18e9df21],
PUP.Optional.ProxyGate, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1EC095EE-8CA3-43D6-B9F5-0C55B82ED3D7}}_is1, En quarantaine, [dd02ae16396145f1978f0ab30ff4cc34],
PUP.Optional.ProductSetup, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\PRODUCTSETUP, En quarantaine, [e9f6a71ddfbbb87e2cf3316609f929d7],

Valeurs du Registre: 2
PUP.Optional.GoldClick, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|ProxyGate, C:\Users\ouyah\AppData\Roaming\ProxyGate\MainService.exe, En quarantaine, [be2103c1c4d641f5563a0be7b84813ed]
PUP.Optional.ProductSetup, HKU\S-1-5-21-835534862-3634224099-1473089840-1002\SOFTWARE\PRODUCTSETUP|tb, 0P1S1S1F1D1B2W2O0M2W1D1F1F1G2O, En quarantaine, [e9f6a71ddfbbb87e2cf3316609f929d7]

Données du Registre: 0
(Aucun élément malveillant détecté)

Dossiers: 7
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\ocx, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\8bb56270fd5aa7cddf89a8ee701778ac, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],

Fichiers: 62
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\MainService.exe, En quarantaine, [be2103c1c4d641f5563a0be7b84813ed],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\Cloud.exe, En quarantaine, [489710b4c7d3bc7ab2ac37d0b54c16ea],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGChk.exe, En quarantaine, [4e91fcc875257fb7a8e8589a758bde22],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGCommon.dll, En quarantaine, [4699a51f4951ce681a7613dfbc44d12f],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGHelp.exe, En quarantaine, [d50a9c282c6e0d29c6ca09e91ce46b95],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGLog.exe, En quarantaine, [87588e36b5e54fe71a76589a20e0cd33],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGNet.exe, En quarantaine, [47989d2748520a2c840cc131718f9769],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\PGUpd.exe, En quarantaine, [8c532a9aedadcd69d6ba549e619f19e7],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\ProxyGate.exe, En quarantaine, [0ed12d971a80c373abe501f1956bbb45],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\Socket.exe, En quarantaine, [dd020db71585d2640d83a74b24dce21e],
PUP.Optional.GoldClick, C:\Users\ouyah\AppData\Roaming\ProxyGate\TrafficMonitor.exe, En quarantaine, [588706be613942f41c746092a060d729],
CheatTool.CETTrainer, C:\Users\ouyah\Desktop\Middle Earth Shadow of Mordor Trainer 64bit v1.0.EXE, En quarantaine, [c61954704d4d96a017b66fc039c8817f],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\TrafficMonitor.ini, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\conf.dat, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\Config.ini, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\dbghelp.dll, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\dns.dat, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\fl.dat, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\msvbvm60.dll, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\Skin.dll, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.ProxyGate.PrxySvrRST, C:\Users\ouyah\AppData\Roaming\ProxyGate\ocx\mscomctl.ocx, En quarantaine, [b32c9b29a2f85bdb04c66c709968da26],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\8bb56270fd5aa7cddf89a8ee701778ac\11c1509461f8d2e0462df6c6e07fc77b.ico, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\8bb56270fd5aa7cddf89a8ee701778ac\2a3c642f452991f2da76e986f04a2340.ico, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\8bb56270fd5aa7cddf89a8ee701778ac\34b894b1c7111de6c69404143ff63ad8.ico, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\11c1509461f8d2e0462df6c6e07fc77b.ico, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\97828008c4c328c35d75afcdcc74392e, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\a73f317c0cfe65362b00ca99289bf273.exe, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.Wajam.Gen, C:\Program Files\6f5648645d333ffb808f8ebf78232105\bd564736152c22cb2bd832bba6e89bb9.exe, En quarantaine, [934c9430c5d51422f7f3c80c7e8437c9],
PUP.Optional.SearchManager, C:\Users\ouyah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage, En quarantaine, [00df2f958416f541117aad2c7d85a35d],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\lose.txt, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\aowLC, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\celedat, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\cidore, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\DndTD, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\hdat1, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\hdat2, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{D6151376-5C57-99B0-DA91-07F240D38C3C}\tidi, En quarantaine, [e3fc32929a00db5b99a337964fb4946c],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\HowToRemove.html, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\chromium-min.jpg, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\control panel-min-min.JPG, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\down.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\ff menu.JPG, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\ff search engine-min.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\hp-min ff.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\hp-min ie.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\search engine.gif, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\setup pages.gif, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\sp-min.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\start-min.jpg, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\HowToRemove\up.png, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\adat1, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\bapi.dat, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\coda, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\info.dat, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\install.log, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\mare, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\sisa, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\Sqlite3.dll, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\STTL.DAT, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\TTL.DAT, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\uninst.dat, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],
PUP.Optional.WinYahoo, C:\Users\ouyah\AppData\Local\{BF57890B-9BFF-E5B3-F667-C05BD20F3CC3}\uninstall.exe, En quarantaine, [9c43eada65351d19eb1ba09e5aa9be42],

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité