ÿþ<?xml version="1.0" encoding="UTF-16" ?> <mbam-log> <header> <date>2014/04/16 23:22:22 +0200</date> <log>mbam-log-2014-04-16 (22-42-07).xml</log> <isadmin>yes</isadmin> </header> <engine> <version>2.00.1.1004</version> <rules-database>v2014.04.10.07</rules-database> <swissarmy-database>v2014.03.27.01</swissarmy-database> <license>trial</license> <file-protection>enabled</file-protection> <web-protection>enabled</web-protection> <self-protection>disabled</self-protection> </engine> <system> <osversion>Windows 7 Service Pack 1</osversion> <arch>x64</arch> <username>Stéphanie</username> <filesys>NTFS</filesys> </system> <summary> <type>threat</type> <result>completed</result> <objects>297645</objects> <time>2394</time> <processes>0</processes> <modules>0</modules> <keys>2</keys> <values>0</values> <datas>1</datas> <folders>1</folders> <files>9</files> <sectors>0</sectors> </summary> <options> <memory>enabled</memory> <startup>enabled</startup> <filesystem>enabled</filesystem> <archives>enabled</archives> <rootkits>enabled</rootkits> <deeprootkit>disabled</deeprootkit> <shuriken>enabled</shuriken> <pup>enabled</pup> <pum>enabled</pum> </options> <items> <key><path>HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Pricora 1.1</path><vendor>PUP.Optional.Pricora.A</vendor><action>success</action><hash>a957887807f910f0e4b795daae54a35d</hash></key> <key><path>HKU\S-1-5-21-2231389107-3513917675-1870800241-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\NOSIBAY\Bubble Dock</path><vendor>PUP.Optional.BubbleDock.A</vendor><action>success</action><hash>2bd5916fec1458a8ff68ee8841c13dc3</hash></key> <data><path>HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES</path><valuename>DefaultScope</valuename><vendor>PUP.Optional.Qone8</vendor><action>replaced</action><valuedata>{33BB0A4E-99AF-4226-BDF6-49120163DE86}</valuedata><baddata>{33BB0A4E-99AF-4226-BDF6-49120163DE86}</baddata><gooddata>{0633EE93-D776-472f-A0FF-E1416B8B2E3A}</gooddata><hash>ff01f60a6f91fd03139d3edea26216ea</hash></data> <folder><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></folder> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bnlcafindgcpjenlgoekciffahknjebo_0.localstorage</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>fd038d73659b99670691254034ce26da</hash></file> <file><path>C:\Users\Stéphanie\AppData\Roaming\Bubble Dock.boostrap.log</path><vendor>PUP.Optional.Bubbledock.A</vendor><action>success</action><hash>c937bf41f10f966a33e7f480d62c5ea2</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\000005.ldb</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\000009.log</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\CURRENT</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\LOCK</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\LOG</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\LOG.old</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> <file><path>C:\Users\Stéphanie\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bnlcafindgcpjenlgoekciffahknjebo\MANIFEST-000007</path><vendor>PUP.Optional.CrossRider.A</vendor><action>success</action><hash>38c851af10f09c64ffcdf868f01248b8</hash></file> </items> </mbam-log>