Dans ce forum, vous trouverez tout ce qui concerne le logiciel d'analyse des rapports ZHPDiag, NCDiag.
  • Avatar du membre
Avatar du membre
par Destrio5
#16914
Code : Tout sélectionner
[MD5.ECAC1D81CBDE8DAECECAFF960A68AC7E] - (...) -- C:\Program Files\Hatchiho\bin\utilHatchiho.exe [465640] [PID.368]      [MD5.D51F70A303B18A9069CBEB5CC64D0FC4] - (...) -- C:\Program Files\Hatchiho\bin\Hatchiho.expext.exe [115432] [PID.4052]      [MD5.7D409B72C5F893C0AC45FCD3D14EA8CF] - (...) -- C:\Program Files\Hatchiho\bin\Hatchiho.BrowserAdapter.exe [108264] [PID.2120]      [MD5.F283A6AB2417A256A9674676DC69D67E] - (...) -- C:\Program Files\Hatchiho\bin\Hatchiho.PurBrowse.exe [296680] [PID.812]      [MD5.ECAC1D81CBDE8DAECECAFF960A68AC7E] - (...) -- C:\Program Files\Hatchiho\updateHatchiho.exe [465640] [PID.3924]      O2 - BHO: Hatchiho 1.0.0.7 - {0569f0df-cce6-43e9-aecb-5c5cf431e3b4} . (.Hatchiho - Hatchiho.) -- C:\Program Files\Hatchiho\Hatchihobho.dll      O23 - Service: Update Hatchiho (Update Hatchiho) . (...) - C:\Program Files\Hatchiho\updateHatchiho.exe   =>PUP.Optional.Hatchiho O23 - Service: Util Hatchiho (Util Hatchiho) . (...) - C:\Program Files\Hatchiho\bin\utilHatchiho.exe   =>PUP.Optional.Hatchiho O42 - Logiciel: Hatchiho - (.Hatchiho.) [HKLM] -- Hatchiho      HKLM\SOFTWARE\Hatchiho      HKCU\SOFTWARE\Hatchiho      O43 - CFD: 2015/08/15 19:41:18 - [] D -- C:\Program Files\Hatchiho      SR - Auto   [2015/08/15 19:41:16] [  465640]  Update Hatchiho (Update Hatchiho) . (...) - C:\Program Files\Hatchiho\updateHatchiho.exe   =>PUP.Optional.Hatchiho SR - Auto   [2015/08/15 18:07:47] [  465640]  Util Hatchiho (Util Hatchiho) . (...) - C:\Program Files\Hatchiho\bin\utilHatchiho.exe   =>PUP.Optional.Hatchiho 
Avatar du membre
par Destrio5
#16933
Code : Tout sélectionner
[MD5.4E04D7ACE2823CEE7E378CB578683C43] - (...) -- C:\Program Files\Chart Choosing\bin\utilChartChoosing.exe [475384] [PID.2248]      [MD5.4E04D7ACE2823CEE7E378CB578683C43] - (...) -- C:\Program Files\Chart Choosing\updateChartChoosing.exe [475384] [PID.5644]      [MD5.FB951B087BDD3784851281BFC4AA5683] - (...) -- C:\Program Files\Chart Choosing\bin\ChartChoosing.expext.exe [115448] [PID.4612]      [MD5.9FEF283061D730E057D078CA39EA5DB3] - (...) -- C:\Program Files\Chart Choosing\bin\ChartChoosing.PurBrowse.exe [296696] [PID.4708]      [MD5.F40A4203E0EB31B5FE9E0E69FA425331] - (...) -- C:\Program Files\Chart Choosing\bin\ChartChoosing.BrowserAdapter.exe [108280] [PID.3900]      O2 - BHO: Chart Choosing 1.0.0.7 - {fb33d09a-88f6-4a6b-aa2b-716d422629ce} . (.Chart Choosing - Chart Choosing.) -- C:\Program Files\Chart Choosing\ChartChoosingbho.dll      O23 - Service: Update Chart Choosing (Update Chart Choosing) . (...) - C:\Program Files\Chart Choosing\updateChartChoosing.exe   =>PUP.Optional.ChartChoosing O23 - Service: Util Chart Choosing (Util Chart Choosing) . (...) - C:\Program Files\Chart Choosing\bin\utilChartChoosing.exe   =>PUP.Optional.ChartChoosing O42 - Logiciel: Chart Choosing - (.Chart Choosing.) [HKLM] -- Chart Choosing      HKLM\SOFTWARE\Chart Choosing      HKCU\SOFTWARE\Chart Choosing      O43 - CFD: 2015/08/16 04:33:17 - [] D -- C:\Program Files\Chart Choosing      SR - Auto   [2015/08/16 04:33:16] [  475384]  Update Chart Choosing (Update Chart Choosing) . (...) - C:\Program Files\Chart Choosing\updateChartChoosing.exe   =>PUP.Optional.ChartChoosing SR - Auto   [2015/08/16 04:12:56] [  475384]  Util Chart Choosing (Util Chart Choosing) . (...) - C:\Program Files\Chart Choosing\bin\utilChartChoosing.exe   =>PUP.Optional.ChartChoosing 
Code : Tout sélectionner
[MD5.46EFBA3474801D260925671B42170AF2] - (.Copyright ©  2015 - .) -- C:\Program Files\fchk32\fchk32.exe [379904] [PID.5860]O23 - Service: Check Service (fchk32) . (.Copyright ©  2015 - .) - C:\Program Files\fchk32\fchk32.exeO43 - CFD: 2015/08/16 04:40:26 - [] D -- C:\Program Files\fchk32SR - Auto   [2015/08/10 10:20:48] [  379904]  Check Service (fchk32) . (.Copyright ©  2015.) - C:\Program Files\fchk32\fchk32.exe
--> Détectés par MBAM :
PUP.Optional.Linkury.A, C:\Program Files\fchk32PUP.Optional.Amonetize, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\fchk32
Avatar du membre
par Destrio5
#16934
Code : Tout sélectionner
P2 - EXT FILE: (...) -- C:\Users\SevenTest\AppData\Roaming\Mozilla\Firefox\Profiles\8hqqg38x.default\searchplugins\palikan.xml      
--> PUP.Optional.GoPalikan
Code : Tout sélectionner
O42 - Logiciel: Health Alert - (.Rational Thought Solutions.) [HKLM] -- HealthAlert      
--> PUP.Optional.HealthAlert
Code : Tout sélectionner
O42 - Logiciel: FrameFox Shop 2.0.0.0 - (.The Team.) [HKLM] -- {010BE806-614F-48F2-B83A-29DF45E6AC7D}      
--> PUP.Optional.FrameFox
Avatar du membre
par Destrio5
#17174
Code : Tout sélectionner
[MD5.30A6B7428906454B2B2E607E05F6E5BC] - (...) -- C:\Program Files (x86)\MSI\ECO Center\ECO_Service.exe [2126448] [PID.2344]      O23 - Service: ECOSERVICE (ECOSERVICE) . (...) - C:\Program Files (x86)\MSI\ECO Center\ECO_Service.exe      O42 - Logiciel: ECO Center - (.MSI.) [HKLM][64Bits] -- {1E55202F-4D31-498A-8F72-97DCBA9F2866}_is1     SR - Auto   [2014/04/10 13:57:00] [ 2126448]  ECOSERVICE (ECOSERVICE) . (...) - C:\Program Files (x86)\MSI\ECO Center\ECO_Service.exe      O58 - SDL:2015/05/28 07:00:44 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys   [102912]      O58 - SDL:2013/04/09 10:42:06 A . (...) -- C:\WINDOWS\System32\drivers\t_mouse.sys   [6144]       
--> Légitimes
Avatar du membre
par Destrio5
#17256
Code : Tout sélectionner
O2 - BHO: High Stairs - {45e60e41-85ee-4c01-9dac-1ecb9bf64179} . (...) -- C:\Program Files\High Stairs\Extensions\45e60e41-85ee-4c01-9dac-1ecb9bf64179.dll      O23 - Service: Service Mgr HighStairs (Service Mgr HighStairs) . (...) - C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe   =>PUP.Optional.HighStairs* O23 - Service: Update Mgr HighStairs (Update Mgr HighStairs) . (...) - C:\Program Files\Common Files\b4bc9939-75e9-422b-af5c-653de35c4f4b\Updater.exe   =>PUP.Optional.HighStairs* HKLM\SOFTWARE\HighStairs    O42 - Logiciel: High Stairs - (.High Stairs.) [HKLM] -- High Stairs      O43 - CFD: 2015/08/20 22:43:32 - [] D -- C:\Program Files\High Stairs      SR - Auto   [2015/08/20 18:40:19] [ 1198816]  Service Mgr HighStairs (Service Mgr HighStairs) . (...) - C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugincontainer.exe   =>PUP.Optional.HighStairs SR - Auto   [2015/08/20 20:42:40] [  704736]  Update Mgr HighStairs (Update Mgr HighStairs) . (...) - C:\Program Files\Common Files\b4bc9939-75e9-422b-af5c-653de35c4f4b\Updater.exe   =>PUP.Optional.HighStairs 
Code : Tout sélectionner
[MD5.07B9D732CAB0E1BEDDAC178FC55651A4] - (...) -- C:\Program Files\WajaInterEnhancer\WajaInterEnhancer Internet Enhancer\InternetEnhancerService.exe [1199616] [PID.3580]      [MD5.1030F90657B6B36976E65DD32744AC8D] - (. - U2YST7.) -- C:\Program Files\WajaInterEnhancer\WajaInterEnhancer Internet Enhancer\InternetEnhancer.exe [269824] [PID.5024]      O23 - Service: WajaInterEnhancer Service (WajaInterEnhancer Service) . (...) - C:\Program Files\WajaInterEnhancer\WajaInterEnhancer Internet Enhancer\InternetEnhancerService.exe        HKLM\SOFTWARE\WajaInterEnhancer      HKCU\SOFTWARE\WajaInterEnhancer      O43 - CFD: 2015/08/20 21:38:28 - [] D -- C:\Program Files\WajaInterEnhancer      O43 - CFD: 2015/08/20 21:38:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajaInterEnhancer      SR - Auto   [2015/08/20 15:17:22] [ 1199616]  WajaInterEnhancer Service (WajaInterEnhancer Service) . (...) - C:\Program Files\WajaInterEnhancer\WajaInterEnhancer Internet Enhancer\InternetEnhancerService.exe      
--> PUP.Optional.Wajam
Code : Tout sélectionner
[MD5.3002779349E34F1BB1E8F58645AEA07C] [APT] [bvxvyxvgy] (...) -- C:\Users\SevenTest\AppData\Local\bvxvyxvgy\bvxvyxvgy.exe   [2173952]  =>Heuristic.GraftorO39 - APT: bvxvyxvgy - (...) -- C:\Windows\System32\Tasks\bvxvyxvgy   [3502]  =>Heuristic.GraftorO43 - CFD: 2015/08/20 21:37:34 - [] D -- C:\Users\SevenTest\AppData\Local\bvxvyxvgy      
--> PUP.Optional.SearchProtect
Code : Tout sélectionner
M0 - MFSP: prefs.js [SevenTest - v338dvol.default] http://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_popjar_15_34&param1=1&param2=f%3D1%26b%3DFirefox%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtCzz0FtAyB0ByE0DtDyD0EtCtCyCtN0D0Tzu0StCtAtByBtN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyB0CyEtDyEtDyByDtGtD0FtCyBtGyEyEtByCtGtD0EtA0BtGyE0E0CzytC0EtCyEyC0F0E0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StBzy0FyEzz0CyCtAtGtA0B0ByCtGyEyDyCyBtG0AyEzz0AtGtBtD0EzytB0ByE0D0A0Czz0E2QtN0A0LzuyE%26cr%3D1450082021%26a%3Dwncy_popjar_15_34%26os%3DWindows%2B7%2BHome%2BPremium      
--> Browser hijacker
Avatar du membre
par Destrio5
#17274
Code : Tout sélectionner
O42 - Logiciel: elroar - (.toralsup.) [HKLM] -- {576c2c91-0d04-4c34-5587-1ae85d92099a}      HKCU\SOFTWARE\toralsup      O43 - CFD: 2015/08/21 07:21:21 - [] D -- C:\Users\SevenTest\AppData\Roaming\elroar      O61 - LFC: 2015/08/21 07:21:31 A . (..) -- C:\Users\SevenTest\AppData\Roaming\elroaringness.dll   [135168]      
--> PUP
Avatar du membre
par Destrio5
#17289
Code : Tout sélectionner
O42 - Logiciel: DriversCloud.com - (.Cybelsoft.) [HKLM] -- {1DF6A7A5-B5E8-4D06-A349-9192AC2CE5E3}      O43 - CFD: 2015/08/21 17:02:08 - [] D -- C:\Program Files\DriversCloud.com      O43 - CFD: 2015/08/21 17:02:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com      O43 - CFD: 2015/08/21 17:02:06 - [] D -- C:\ProgramData\DriversCloud.com      
--> Légitime, nouveau nom de Ma-Config.com
Avatar du membre
par Destrio5
#17320
Code : Tout sélectionner
O43 - CFD: 2015/08/21 21:54:37 - [] D -- C:\Program Files\MiniLite      
--> O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR
Code : Tout sélectionner
O42 - Logiciel: YouTube Accelerator - (.Goobzo Ltd..) [HKLM] -- YouTube Accelerator  
--> PUP.Optional.Goobzo
Code : Tout sélectionner
P2 - EXT: (.MyBrowser 1.0.2V21.08 - MyBrowser 1.0.2V21.08.) -- C:\Users\SevenTest\AppData\Roaming\Mozilla\Firefox\Profiles\9i8i6qng.default\extensions\6a1a03975fde4c8690f6b883c36bc1@7d88519bfe704d8cae3851239.com      O42 - Logiciel: MyBrowser 1.0.2V21.08 - (.MyBrowser 1.0.2V21.08.) [HKLM] -- MyBrowser 1.0.2V21.08 HKLM\SOFTWARE\MyBrowser 1.0.2V21.08      O43 - CFD: 2015/08/21 22:08:31 - [] D -- C:\Program Files\MyBrowser 1.0.2V21.08      
--> PUP.Optional.CrossRider
Code : Tout sélectionner
[MD5.FF2B5BD81696966524816D4AEC6D93B9] - (.Copyright ©  2015 - .) -- C:\Program Files\igfx32\igfx32.exe [379904] [PID.5064]O23 - Service: igfx UI Service (igfx32) . (.Copyright ©  2015 - .) - C:\Program Files\igfx32\igfx32.exe      O43 - CFD: 2015/08/21 21:36:02 - [] D -- C:\Program Files\igfx32SR - Auto   [2015/08/19 16:25:48] [  379904]  igfx UI Service (igfx32) . (.Copyright ©  2015.) - C:\Program Files\igfx32\igfx32.exe
--> PUP
Avatar du membre
par Destrio5
#17371
Code : Tout sélectionner
O4 - HKLM\..\Run: [Cmaudio8788] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\SysWOW64\rundll32.exe      O4 - HKLM\..\Run: [Cmaudio8788GX] . (.Copyright (C) 2007 - HsMgr Application.) -- C:\Windows\SysWOW64\HsMgr.exe      O42 - Logiciel: PAC-MAN Championship Edition DX+ - (.Mine Loader Software Co., Ltd..) [HKLM][64Bits] -- Steam App 236450      O42 - Logiciel: DeadCore - (.5 Bits Games.) [HKLM][64Bits] -- Steam App 284460      HKCU\SOFTWARE\5 Bits GamesO43 - CFD: 2015/07/30 04:02:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blue Ripple Sound      O58 - SDL:2015/06/11 01:33:42 A . (.Logitech Inc. - Logitech Gaming Software Joystick Translati.) -- C:\WINDOWS\System32\drivers\LGJoyXlCore.sys   [68384]      
--> Légitimes
  • 1
  • 11
  • 12
  • 13
  • 14
  • 15
[did80]PC infecté

ok ceci stp http://static.telecharger.01net.co[…]

[did80]virus Chromium

salut flo des traces de chromium Tél&eacu[…]

SUP.Orphan.Compatibility

Hello je rentre de voyage, j'ouvre mon pc et je f[…]

logiciel: BlueLife KeyFreeze Éditeur/D&eac[…]