Bonjour,
J'ai fait faire à une amie un scan adw cleaner parce qu'elle trouvait son pc lent et son navigateur aussi... 109 PUP qui sont partis en quarantaine... (Merci InstallCore )
Faut il les supprimer ?
Il y a de tout :
du optional.legacy
optional.searchmanager
optional.winrepairpro
optional.InstallCore
ECT...ECT...ETC
Je vous met le rapport :
# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-04-23.2 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 04-28-2019
# Duration: 00:00:18
# OS: Windows 10 Home
# Scanned: 27222
# Detected: 109
** [ Services ] **
PUP.Optional.ByteFence ByteFenceService
PUP.Optional.ByteFence rtop
PUP.Optional.Legacy MustangService_2015_10_10
PUP.Optional.WinZipRegistryOpt imizer WinZip Smart Monitor Service
** [ Folders ] **
PUP.Optional.ByteFence C:\Program Files\ByteFence
PUP.Optional.ByteFence C:\ProgramData\ByteFence
PUP.Optional.ByteFence C:\ProgramData\Microsoft\Windo ws\Start Menu\Programs\ByteFence Anti-Malware
PUP.Optional.Legacy C:\Program Files\WinZip Smart Monitor
PUP.Optional.Legacy C:\ProgramData\Microsoft\Windo ws\Start Menu\Programs\WinZip\WinZip Driver Updater
PUP.Optional.Legacy C:\ProgramData\WinZip\WinZip Driver Updater
PUP.Optional.Legacy C:\ProgramData\WinZip\WinZip Smart Monitor
PUP.Optional.Legacy C:\Users\Public\Documents\Guid
PUP.Optional.Legacy C:\Users\cathe_000\AppData\Roa ming\cacaoweb
PUP.Optional.TempMoudleSet C:\ProgramData\TempMoudleSet
PUP.Optional.WinZipDriverUpdat er C:\Program Files\WinZip Driver Updater
** [ Files ] **
Malwarebytes
Customer Support & Help Center
Visit the Malwarebytes Customer Support Center to get help with installation, configuration, troubleshooting, and more.
PUP.Optional.Legacy C:\ProgramData\Microsoft\Windo ws\Start Menu\ScreenShot.lnk
PUP.Optional.Legacy C:\Users\cathe_000\AppData\Roa ming\Microsoft\Inter net Explorer\Quick Launch\ScreenShot.lnk
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYDOCMERGE.DL.M YWAY.COM_0.LOCALSTOR AGE
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYDOCMERGE.DL.M YWAY.COM_0.LOCALSTOR AGE-JOURNAL
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYDOCMERGE.DL.T B.ASK.COM_0.LOCALSTO RAGE
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYDOCMERGE.DL.T B.ASK.COM_0.LOCALSTO RAGE-JOURNAL
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYPDFCOMBINE.DL .MYWAY.COM_0.LOCALST ORAGE
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYPDFCOMBINE.DL .MYWAY.COM_0.LOCALST ORAGE-JOURNAL
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYPDFCOMBINE.DL .TB.ASK.COM_0.LOCALS TORAGE
PUP.Optional.MindSpark C:\Users\cathe_000\AppData\Loc al\Google\Chrome\Use r Data\Default\LOCAL STORAGE\HTTP_EASYPDFCOMBINE.DL .TB.ASK.COM_0.LOCALS TORAGE-JOURNAL
** [ DLL ] **
No malicious DLLs found.
** [ WMI ] **
No malicious WMI found.
** [ Shortcuts ] **
No malicious shortcuts found.
** [ Tasks ] **
PUP.Adware.Heuristic C:\Windows\System32\Tasks\Star t WinZip Driver Updater Update
PUP.Adware.Heuristic C:\Windows\System32\Tasks\Star t WinZip Driver Updater for PCCATHY@Lucas(logon)
PUP.Adware.Heuristic C:\Windows\System32\Tasks\Star t WinZip Driver Updater for PCCATHY@cathe_000(logon)
PUP.Adware.Heuristic C:\Windows\Tasks\Start WinZip Driver Updater for PCCATHY@Lucas(logon).job
PUP.Adware.Heuristic C:\Windows\Tasks\Start WinZip Driver Updater for PCCATHY@cathe_000(logon).job
PUP.Optional.ByteFence C:\Windows\System32\Tasks\BYTE FENCE
PUP.Optional.SysTweak C:\Windows\System32\Tasks\STAR T WINZIP DRIVER UPDATER SCHEDULE
** [ Registry ] **
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Plain{DFD6CBF D-0FAC-44D1-86BD-ACAEDCBD05E0}
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tasks{1762023 9-B27D-493D-8E57-58579053FE21}
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tasks{39312E0 C-549E-4286-AD00-CC92D267797F}
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tasks{DFD6CBF D-0FAC-44D1-86BD-ACAEDCBD05E0}
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tree\Start WinZip Driver Updater Update
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tree\Start WinZip Driver Updater for PCCATHY@Lucas(logon)
PUP.Adware.Heuristic HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tree\Start WinZip Driver Updater for PCCATHY@cathe_000(logon)
PUP.Optional.AdvancedPCCare HKLM\Software\AppApcVerifier
PUP.Optional.ByteFence HKCU\Software\ByteFence
PUP.Optional.ByteFence HKLM\SOFTWARE\Microsoft\RADAR\ HeapLeakDetection\Di agnosedApplications\ByteFence. exe
PUP.Optional.ByteFence HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tasks{EFB2D62 2-D236-4BCA-86F8-1CA0FB461408}
PUP.Optional.ByteFence HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tree\ByteFenc e
PUP.Optional.ByteFence HKLM\SYSTEM\CurrentControlSet\ Services\EventLog\Re ason\ReasonByteFence
PUP.Optional.ByteFence HKLM\Software\ByteFence
PUP.Optional.ByteFence HKLM\Software\Wow6432Node\Byte Fence
PUP.Optional.ByteFence HKLM\Software\Wow6432Node\Micr osoft\Internet Explorer\Main\FeatureControl\F EATURE_BROWSER_EMULA TION|ByteFence.exe
PUP.Optional.ByteFence HKLM\Software\Wow6432Node\Micr osoft\Windows\Curren tVersion\Uninstall\ByteFence
PUP.Optional.ByteFence HKLM\System\CurrentControlSet\ Services\EventLog\Ap plication\ByteFenceService
PUP.Optional.ByteFence HKU.DEFAULT\Software\ByteFence
PUP.Optional.ByteFence HKU\S-1-5-18\Software\ByteFence
PUP.Optional.Elex HKLM\Software\Classes\TypeLib{ 8DD92279-9B04-4C6F-A862-EF3C24603804}
PUP.Optional.Elex HKLM\Software\Wow6432Node\RayD ld
PUP.Optional.Elex HKLM\Software\Wow6432Node\Clas ses\TypeLib{8DD92279-9B04-4C6F-A862-EF3C24603804}
PUP.Optional.Elex HKLM\Software\Wow6432Node\ihpm server
PUP.Optional.InstallCore HKCU\Software\csastats
PUP.Optional.Legacy HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\DOMStorage\mystartsea rch.com
PUP.Optional.Legacy HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\DOMStorage\www.mystartsearch.com
PUP.Optional.Legacy HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\EdpDomStorage\mystart search.com
PUP.Optional.Legacy HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\EdpDomStorage\www.mystartsearch.com
PUP.Optional.Legacy HKCU\Software\Ecommfactory
PUP.Optional.Legacy HKCU\Software\Microsoft\Intern et Explorer\SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
PUP.Optional.Legacy HKCU\Software\Microsoft\Intern et Explorer\SearchScopes{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
PUP.Optional.Legacy HKCU\Software\Microsoft\Window s\CurrentVersion\Exp lorer\StartupApproved\Run|caca oweb
PUP.Optional.Legacy HKCU\Software\Microsoft\Window s\CurrentVersion\Ext \Settings{BA32987D-DB80-4CCB-A8BB-F812B5421C0F}
PUP.Optional.Legacy HKCU\Software\Microsoft\Window s\CurrentVersion\Ext \Stats{BA32987D-DB80-4CCB-A8BB-F812B5421C0F}
PUP.Optional.Legacy HKCU\Software\Microsoft\Window s\CurrentVersion\Run |cacaoweb
PUP.Optional.Legacy HKCU\Software\cacaoweb
PUP.Optional.Legacy HKLM\SOFTWARE\Classes*\shell\B yteFence File Scan
PUP.Optional.Legacy HKLM\SOFTWARE\Classes\Director y\shell\ByteFence Folder Scan
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|TCP Query User{6CA7696B-09AF-4550-A406-7F1AD6CCA574}C:\users\cathe_00 0\appdata\roaming\ca caoweb\cacaoweb.exe
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|TCP Query User{C640702E-DE1C-4FC5-A816-978364D69574}C:\users\temp\app data\roaming\cacaowe b\cacaoweb.exe
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|TCP Query User{F22C9AAA-4341-4720-866C-723EFCBEA83A}C:\users\cathe_00 0\appdata\roaming\ca caoweb\cacaoweb.exe
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|UDP Query User{2C83EACD-E620-4F6B-B6CF-94D746D406AF}C:\users\cathe_00 0\appdata\roaming\ca caoweb\cacaoweb.exe
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|UDP Query User{3296982B-EC1A-479B-8F73-FB26481FB3C3}C:\users\temp\app data\roaming\cacaowe b\cacaoweb.exe
PUP.Optional.Legacy HKLM\SYSTEM\CurrentControlSet\ Services\SharedAcces s\Parameters\FirewallPolicy\Fi rewallRules|UDP Query User{4211E126-3077-4D92-B742-A6191B1DA280}C:\users\cathe_00 0\appdata\roaming\ca caoweb\cacaoweb.exe
PUP.Optional.Legacy HKLM\Software\Microsoft\Intern et Explorer\Main|Default_Search_U RL
PUP.Optional.Legacy HKLM\Software\Microsoft\Intern et Explorer\Main|Search Page
PUP.Optional.Legacy HKLM\Software\Microsoft\Intern et Explorer\SearchScopes{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
PUP.Optional.Legacy HKLM\Software\Microsoft\Intern et Explorer\SearchScopes{26080cad-4adc-49ac-8c63-eda16e595cbd}
PUP.Optional.Legacy HKLM\Software\WebBar
PUP.Optional.Legacy HKLM\Software\Wow6432Node\Clas ses\CLSID{BA32987D-DB80-4CCB-A8BB-F812B5421C0F}
PUP.Optional.Legacy HKLM\Software\Wow6432Node\Clas ses\CLSID{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
PUP.Optional.Legacy HKLM\Software\Wow6432Node\Micr osoft\Internet Explorer\SearchScopes{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
PUP.Optional.Legacy HKLM\Software\Wow6432Node\Micr osoft\Internet Explorer\SearchScopes{26080cad-4adc-49ac-8c63-eda16e595cbd}
PUP.Optional.Legacy HKLM\Software\Wow6432Node\Micr osoft\Windows\Curren tVersion\Explorer\Browser Helper Objects{BA32987D-DB80-4CCB-A8BB-F812B5421C0F}
PUP.Optional.Legacy HKLM\Software\pcv-var
PUP.Optional.MyStartSearch.Shr tCln HKLM\Software\Wow6432Node\myst artsearchSoftware
PUP.Optional.ProductSetup.A HKCU\Software\PRODUCTSETUP
PUP.Optional.ScreenShot HKLM\Software\Wow6432Node\Scre enShot
PUP.Optional.ScreenShot HKLM\Software\Wow6432Node\Micr osoft\Windows\Curren tVersion\Uninstall\ScreenShot
PUP.Optional.SearchManager HKCU\Software\ProductSetup\Uni nstall\0B2U2Z1P0F1P1 G1R1P1V0A1Q1Q0O1G
PUP.Optional.SearchManager HKCU\Software\ProductSetup\Uni nstall\0S1P1T1C1R1Mt T0P1C1F2X1L1Q1P1QtT1S2UtT0Y1T1 M1F1F
PUP.Optional.SlimCleanerPlus HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\DOMStorage\castplatfo rm.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\DOMStorage\cdn.castpl atform.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\EdpDomStorage\castpla tform.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Classes\Local Settings\Software\Microsoft\Wi ndows\CurrentVersion \AppContainer\Storage\microsof t.microsoftedge_8wek yb3d8bbwe\Children\001\Interne t Explorer\EdpDomStorage\cdn.cas tplatform.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Microsoft\Intern et Explorer\DOMStorage\castplatfo rm.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Microsoft\Intern et Explorer\DOMStorage\cdn.castpl atform.com
PUP.Optional.SysTweak HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Plain{B8DFFF4 B-74F9-48C0-9DA6-467362E315D5}
PUP.Optional.SysTweak HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tasks{B8DFFF4 B-74F9-48C0-9DA6-467362E315D5}
PUP.Optional.SysTweak HKLM\SOFTWARE\Microsoft\Window s NT\CurrentVersion\Schedule\Tas kCache\Tree\Start WinZip Driver Updater Schedule
PUP.Optional.Vittalia HKCU\Software\Vittalia
PUP.Optional.WinZipDriverUpdat er HKLM\Software\Microsoft\Window s\CurrentVersion\Uni nstall\WinZip Driver Updater
PUP.Optional.WinZipMalwareProt ector HKLM\System\CurrentControlSet\ Services\EventLog\Ap plication\WinZip Malware Protector
** [ Chromium (and derivatives) ] **
PUP.Optional.Legacy MSN Homepage & Bing Search Engine
PUP.Optional.SearchManager Search Manager
PUP.Optional.SearchManager Search Manager
** [ Chromium URLs ] **
No malicious Chromium URLs found.
** [ Firefox (and derivatives) ] **
No malicious Firefox entries found.
** [ Firefox URLs ] **
No malicious Firefox URLs found.
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
-----