cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Malwarebytes
www.malwarebytes.com

-Détails du journal-
Date de l'analyse: 26/02/2017
Heure de l'analyse: 17:14
Fichier journal: mbm_log.txt
Administrateur: Oui

-Informations du logiciel-
Version: 3.0.6.1469
Version de composants: 1.0.50
Version de pack de mise à jour: 1.0.1064
Licence: Essai

-Informations système-
Système d'exploitation: Windows 10
Processeur: x86
Système de fichiers: NTFS
Utilisateur: SAMSUNG-PC\SAMSUNG

-Résumé de l'analyse-
Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 439047
Temps écoulé: 18 min, 19 s

-Options d'analyse-
Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

-Détails de l'analyse-
Processus: 0
(Aucun élément malveillant détecté)

Module: 0
(Aucun élément malveillant détecté)

Clé du registre: 26
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3042DF7A-E900-4389-9B94-923DF0DAA57E}, En quarantaine, [342], [168259],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3042DF7A-E900-4389-9B94-923DF0DAA57E}, En quarantaine, [342], [168259],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{82E1477C-B154-48D3-9891-33D83C26BCD3}, En quarantaine, [12176], [167248],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{82E1477C-B154-48D3-9891-33D83C26BCD3}, En quarantaine, [12176], [167248],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{58376892-60E7-4F63-ACA0-0F686AF554D6}, En quarantaine, [342], [168313],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{58376892-60E7-4F63-ACA0-0F686AF554D6}, En quarantaine, [342], [168313],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}, En quarantaine, [12176], [167247],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}, En quarantaine, [12176], [167247],1.0.1064
PUP.Optional.ASK, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D4027C7F-154A-4066-A1AD-4243D8127440}, En quarantaine, [647], [306571],1.0.1064
PUP.Optional.ASK, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D4027C7F-154A-4066-A1AD-4243D8127440}, En quarantaine, [647], [306571],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501_Classes\CLSID\{E7472076-FF9D-4325-8EAF-613572008758}, En quarantaine, [342], [168494],1.0.1064
PUP.Optional.Babylon, HKU\S-1-5-18\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}, En quarantaine, [2110], [167673],1.0.1064
PUP.Optional.Babylon, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, En quarantaine, [2110], [167673],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{6EB534FB-2001-45C4-B860-BC904865A379}, En quarantaine, [342], [168344],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{6EB534FB-2001-45C4-B860-BC904865A379}, En quarantaine, [342], [168344],1.0.1064
PUP.Optional.EazelBar, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}, En quarantaine, [249], [167935],1.0.1064
Trojan.Downloader, HKLM\SOFTWARE\CLASSES\APPID\{90A52F08-64AC-4DC6-9D7D-4516670275D3}, En quarantaine, [24], [165673],1.0.1064
PUP.Optional.OKitSpace, HKLM\SOFTWARE\CLASSES\APPID\OKitSpace.DLL, En quarantaine, [14566], [241317],1.0.1064
PUP.Optional.Software.Updater, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\SrvBrowserProtect, En quarantaine, [464], [245440],1.0.1064
Adware.AdTools, HKU\S-1-5-21-3071512940-3844358355-3586163810-1000\SOFTWARE\AdTools, Inc., En quarantaine, [16107], [208682],1.0.1064
PUP.Optional.EazelBar, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD6BCBC8-F95B-40D8-93E0-87E0F8588194}, En quarantaine, [248], [238036],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\APPDATALOW\SOFTWARE\DictionaryBoss, En quarantaine, [341], [240448],1.0.1064
PUP.Optional.BProtector, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\BPROTECTSETTINGS, En quarantaine, [6466], [235981],1.0.1064
PUP.Optional.FreeCauseTB, HKU\S-1-5-21-3071512940-3844358355-3586163810-1000\SOFTWARE\APPDATALOW\SOFTWARE\FREECAUSE\Toolbars, En quarantaine, [14314], [238482],1.0.1064
PUP.Optional.ASK, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}, En quarantaine, [647], [258187],1.0.1064
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\DictionaryBoss, En quarantaine, [341], [240563],1.0.1064

Valeur du registre: 9
PUP.Optional.MindSpark, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{e7472076-ff9d-4325-8eaf-613572008758}, En quarantaine, [342], [168494],1.0.1064
PUP.Optional.ASK, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{00000000-6E41-4FD3-8538-502F5495E5FC}, En quarantaine, [647], [327345],1.0.1064
PUP.Optional.BProtector, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|BPROTECTORDEFAULTSCOPE, En quarantaine, [6466], [251613],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|URL, En quarantaine, [12506], [233310],1.0.1064
PUP.Optional.Babylon, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|FAVICONURL, En quarantaine, [2117], [235650],1.0.1064
PUP.Optional.EazelBar, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD6BCBC8-F95B-40D8-93E0-87E0F8588194}|DISPLAYNAME, En quarantaine, [248], [238036],1.0.1064
PUP.Optional.Delta.ShrtCln, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}|URL, En quarantaine, [12506], [233310],1.0.1064
PUP.Optional.Babylon, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{EBD839AE-B08C-4fb7-859B-F54AF16C159F}|FAVICONURL, En quarantaine, [2117], [235650],1.0.1064
PUP.Optional.ASK, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}|URL, En quarantaine, [647], [258187],1.0.1064

Données du registre: 1
PUP.Optional.StartPage, HKU\S-1-5-21-3071512940-3844358355-3586163810-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|BPROTECTOR START PAGE, Remplacé, [79], [292762],1.0.1064

Flux de données: 0
(Aucun élément malveillant détecté)

Dossier: 3
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\USERS\GUEST\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\EOONCJEJNPPFJJKLAPAAMHCDMJBILMDE, En quarantaine, [12506], [174451],1.0.1064

Fichier: 27
PUP.Optional.ConduitTB, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\SOFTONIC_FRANCE_FFTOOLBARHELPER.EXE, En quarantaine, [4623], [108009],1.0.1064
PUP.Optional.ConduitTB.Gen, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\PRXTBSOFT.DLL, En quarantaine, [13937], [299293],1.0.1064
PUP.Optional.ConduitTB.Gen, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\SOFTONIC_FRANCE_FF\TBSOFT.DLL, En quarantaine, [13937], [299293],1.0.1064
PUP.Optional.ConduitTB.Gen, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\LDRTBSOFT.DLL, En quarantaine, [13937], [299293],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\BabMaint.x, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\bg.html, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\bg.js, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\BUSolution.dll, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\Delta128.png, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\Deltal48.png, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\manifest.json, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\NPObject.dll, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\redirect.html, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.3_0\redirect.js, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\background.js, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\delta128.png, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\delta48.png, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\manifest.json, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\redirect.html, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Delta.ShrtCln, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.5.1_0\redirect.js, En quarantaine, [12506], [174451],1.0.1064
PUP.Optional.Conduit, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\UNINSTALL.EXE, En quarantaine, [716], [121659],1.0.1064
PUP.Optional.Reimage, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\REIMAGEREPAIR (2).EXE, En quarantaine, [1322], [331559],1.0.1064
PUP.Optional.ConduitTB.Gen, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\TBSOFT.DLL, En quarantaine, [13937], [299293],1.0.1064
PUP.Optional.Reimage, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\REIMAGEREPAIR (1).EXE, En quarantaine, [1322], [331559],1.0.1064
PUP.Optional.ConduitTB.Gen, C:\USERS\SAMSUNG\APPDATA\ROAMING\ZHP\QUARANTINE\SOFTONIC_FRANCE_FF\SOFTONIC_FRANCE_FF\LDRTBSOFT.DLL, En quarantaine, [13937], [299293],1.0.1064
PUP.Optional.Montiera, C:\USERS\SAMSUNG\APPDATA\LOCAL\SHDUPDATE\SHPLUS.DLL, En quarantaine, [153], [321812],1.0.1064
PUP.Optional.Montiera, C:\USERS\SAMSUNG\APPDATA\LOCAL\SHDUPDATE\SHUPD.EXE, En quarantaine, [153], [321812],1.0.1064

Secteur physique: 0
(Aucun élément malveillant détecté)


(end)

Publicité


Signaler le contenu de ce document

Publicité