Malwarebytes Anti-Malware www.malwarebytes.org Date de l'examen: 28/04/2014 Heure de l'examen: 23:07:51 Fichier journal: Administrateur: Oui Version: 2.00.1.1004 Base de données Malveillants: v2014.04.28.09 Base de données Rootkits: v2014.03.27.01 Licence: Gratuite Protection contre les malveillants: Désactivé(e) Protection contre les sites Web malveillants: Désactivé(e) Chameleon: Désactivé(e) Système d'exploitation: Windows 8.1 Processeur: x64 Système de fichiers: NTFS Utilisateur: Edouard Type d'examen: Examen "Menaces" Résultat: Terminé Objets analysés: 249567 Temps écoulé: 52 min, 42 sec Mémoire: Activé(e) Démarrage: Activé(e) Système de fichiers: Activé(e) Archives: Activé(e) Rootkits: Activé(e) Shuriken: Activé(e) PUP: Activé(e) PUM: Activé(e) Processus: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Clés du Registre: 11 PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{CCC7B14F-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3050F3EE-98B5-11CF-BB82-00AA00BDCE0B}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{CCC7B150-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3050F3EE-98B5-11CF-BB82-00AA00BDCE0B}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{CCC7B150-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{CCC7B14F-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKU\S-1-5-21-3565313024-524981671-3907482460-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKU\S-1-5-21-3565313024-524981671-3907482460-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\EXPLORER BARS\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\SiteFinder, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], Valeurs du Registre: 4 PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Site Finder Toolbar, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8] PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [ef1140c08f713bc55cc72cefa85a9b65], PUP.Optional.SiteFinder.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}, Mis en quarantaine, [ab55b64acb350ff129faf72445bd9d63], Données du Registre: 0 (No malicious items detected) Dossiers: 1 PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], Fichiers: 7 PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\SiteFinder.dll, Mis en quarantaine, [5aa6718f07f953ad83a09f7c709238c8], PUP.Optional.Softonic.A, C:\Users\Edouard\Downloads\SoftonicDownloader_pour_directx-end-user-runtime-web-installer.exe, Mis en quarantaine, [35cb837d2fd1ac5426480913ca376898], PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\ToolbarData.ini, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\btn.ico, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\hotbtn.ico, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\SiteFinder_new.dll, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], PUP.Optional.SiteFinder.A, C:\Program Files (x86)\SiteFinder\sitefinder_uninstaller.exe, Mis en quarantaine, [619f7987fb0530d07206780034ceaa56], Secteurs physiques: 0 (No malicious items detected) (end)