Malwarebytes Anti-Malware www.malwarebytes.org Date de l'examen: 23-07-14 Heure de l'examen: 12:34:17 Fichier journal: Rapport malwarebyte.txt Administrateur: Oui Version: 2.00.2.1012 Base de données Malveillants: v2014.07.23.03 Base de données Rootkits: v2014.07.17.01 Licence: Essai Protection contre les malveillants: Activé(e) Protection contre les sites Web malveillants: Activé(e) Self-protection: Désactivé(e) Système d'exploitation: Windows 8.1 Processeur: x64 Système de fichiers: NTFS Utilisateur: joachim Type d'examen: Examen "Menaces" Résultat: Terminé Objets analysés: 334046 Temps écoulé: 15 min, 30 sec Mémoire: Activé(e) Démarrage: Activé(e) Système de fichiers: Activé(e) Archives: Activé(e) Rootkits: Désactivé(e) Heuristics: Activé(e) PUP: Activé(e) PUM: Activé(e) Processus: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Clés du Registre: 40 PUP.Optional.Pricora.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110511811173}, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110511811173}, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0058173.BHO, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0058173.BHO, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{11111111-1111-1111-1111-110511811173}, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKLM\SOFTWARE\CLASSES\CLSID\{22222222-2222-2222-2222-220522812273}, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.Pricora.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110511811173}\INPROCSERVER32, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], PUP.Optional.SearchProtect.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, Mis en quarantaine, [19d6a8fa7ffc45f13d454712aa5855ab], PUP.Optional.Somoto, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FilesFrog Update Checker, Mis en quarantaine, [f8f7cad8ec8fdb5b0d01dc4be81851af], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\17638, Mis en quarantaine, [5f904a588eed3ff7513861813fc31ee2], PUP.Optional.Pricora.A, HKLM\SOFTWARE\WOW6432NODE\Pricora 12.0, Mis en quarantaine, [cc23178bdc9f072fc8d229a8a35f966a], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, Mis en quarantaine, [67882c76146763d361de20a7ee14d927], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\17638, Mis en quarantaine, [5699b3efe5963bfbb5d4eef4c33f02fe], PUP.Optional.Pricora.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Pricora 1.1, Mis en quarantaine, [41aeccd692e91b1b7d71fced8b77ce32], PUP.Optional.Pricora.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Pricora 12.0, Mis en quarantaine, [36b99a08ec8f1d19623acf0256ac956b], PUP.Optional.Pricora.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Pricora 2.0, Mis en quarantaine, [ba353e64a0db63d3747a8d5ccc3615eb], PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, Mis en quarantaine, [00ef633fe695072f7ef4e108b1519f61], PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, Mis en quarantaine, [925dd3cfd6a5989eac9f25e1b74d1de3], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Mis en quarantaine, [d817336fee8dbe781e338099778d8779], PUP.Optional.Pricora.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Pricora 12.0, Mis en quarantaine, [1cd3980a235890a67b2110c1ba4837c9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\17638, Mis en quarantaine, [68878220fc7f1422beccc02246bc5ea2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Corporate Inc, Mis en quarantaine, [68871a88c4b783b32cca20cb887a9868], PUP.Optional.BubbleDock.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\NOSIBAY\Bubble Dock Tag, Mis en quarantaine, [ec0350527b00f343267025cbb64c2dd3], PUP.Optional.Somoto.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOMOTO\SDP, Mis en quarantaine, [35ba4d55dba046f05054db2e27ddbb45], PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdate, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdatem, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickCtrl.10, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.Update3WebControl.4, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.Update3WebControl.4, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], Valeurs du Registre: 2 PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, Mis en quarantaine, [67882c76146763d361de20a7ee14d927] PUP.Optional.Somoto.A, HKU\S-1-5-21-3926515635-1914586615-1739481604-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOMOTO\SDP|affid, network_pubdirecte_1, Mis en quarantaine, [35ba4d55dba046f05054db2e27ddbb45] Données du Registre: 0 (No malicious items detected) Dossiers: 13 PUP.Optional.FilesFrog.A, C:\Users\joachim\AppData\Local\FilesFrog Update Checker, Mis en quarantaine, [638c8c1628539b9b80e185218280ea16], PUP.Optional.FilesFrog.A, C:\Users\joachim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker, Mis en quarantaine, [935c2b77cbb048eed191a1054eb4b64a], PUP.Optional.NextLive.A, C:\Users\joachim\AppData\Roaming\newnext.me, Mis en quarantaine, [28c7059d7407dd592a8d8324d42e9070], PUP.Optional.NextLive.A, C:\Users\joachim\AppData\Roaming\newnext.me\cache, Mis en quarantaine, [28c7059d7407dd592a8d8324d42e9070], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.SystemSpeedup, C:\Users\joachim\AppData\Roaming\systweak\ssd, Mis en quarantaine, [f8f7762ccbb0c5715d9ac5f9669c28d8], PUP.Optional.BetaDeeal.A, C:\Users\joachim\AppData\Roaming\betadeeal, Mis en quarantaine, [18d7d0d21d5e79bd58beffc0eb17a45c], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Install, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline\{210154CF-B4EB-4E0A-9575-80A9DCFA89F2}, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], Fichiers: 42 PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\Pricora 12.0-bho64.dll, Mis en quarantaine, [8f605a48b5c6c76f4a9f4248fe03c937], Trojan.Banker.Kreapixel, C:\Users\joachim\AppData\Roaming\~iybhhze.exe, Mis en quarantaine, [ea05faa86219a2944ccefa4b2cd59070], PUP.Optional.Somoto, C:\Users\joachim\AppData\Local\FilesFrog Update Checker\uninstall.exe, Mis en quarantaine, [f8f7cad8ec8fdb5b0d01dc4be81851af], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-1, Mis en quarantaine, [539cf2b0d1aa03337fbb7057679bc33d], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-3, Mis en quarantaine, [7b740c96097252e46bcf22a534ce7e82], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-5, Mis en quarantaine, [2fc0dac89edd93a388b25770778bdd23], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-7, Mis en quarantaine, [d8176c36bdbe71c5ab8f497e07fbf40c], PUP.Optional.Bubbledock.A, C:\Users\joachim\AppData\Roaming\Bubble Dock.boostrap.log, Mis en quarantaine, [fbf4c5ddf18a87afef61fef004fe629e], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-1.job, Mis en quarantaine, [8c638220e29958de8840d74e5da759a7], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-3.job, Mis en quarantaine, [ca25acf6423982b49137160f2fd54eb2], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-5.job, Mis en quarantaine, [49a61b87c2b9d462daeecf56f014d22e], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fec3efde-451b-433b-805b-d4e7bfd155d6-7.job, Mis en quarantaine, [48a7277b611af83e1fa985a09074768a], PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, Mis en quarantaine, [2dc2079be398f3438e50a77e15ef6898], PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, Mis en quarantaine, [bd321f83e893ad89706fbc69ec1836ca], PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, Mis en quarantaine, [14dbc6dc7506dc5a0ed2e63f72928878], PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, Mis en quarantaine, [d41bf1b180fbd561449d2bfa010320e0], PUP.Optional.FilesFrog.A, C:\Users\joachim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Check for Updates.lnk, Mis en quarantaine, [935c2b77cbb048eed191a1054eb4b64a], PUP.Optional.FilesFrog.A, C:\Users\joachim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker\Uninstall.lnk, Mis en quarantaine, [935c2b77cbb048eed191a1054eb4b64a], PUP.Optional.NextLive.A, C:\Users\joachim\AppData\Roaming\newnext.me\nengine.cookie, Mis en quarantaine, [28c7059d7407dd592a8d8324d42e9070], PUP.Optional.NextLive.A, C:\Users\joachim\AppData\Roaming\newnext.me\cache\spark.bin, Mis en quarantaine, [28c7059d7407dd592a8d8324d42e9070], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\1293297481.mxaddon, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\360-58173.crx, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\58173.crx, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\58173.xpi, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\background.html, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\bgNova.html, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\Pricora 12.0-nova.dll, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.Pricora.A, C:\Program Files (x86)\Pricora 12.0\Pricora 12.0.ico, Mis en quarantaine, [13dc9a08abd090a6bbe3d0e9966c0ff1], PUP.Optional.SystemSpeedup, C:\Users\joachim\AppData\Roaming\systweak\ssd\SSDPTstub.exe, Mis en quarantaine, [f8f7762ccbb0c5715d9ac5f9669c28d8], PUP.Optional.BetaDeeal.A, C:\Users\joachim\AppData\Roaming\betadeeal\current_conf.ini, Mis en quarantaine, [18d7d0d21d5e79bd58beffc0eb17a45c], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateHelper.msi, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdate.dll, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdateres_en.dll, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psmachine.dll, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psuser.dll, Mis en quarantaine, [836c554d047745f1ed43c1ff36cc9868], PUP.Optional.Conduit.A, C:\Users\joachim\AppData\Local\Google\Chrome\User Data\Default\Preferences, Bon: (), Mauvais: ( "homepage": "http://search.conduit.com/?ctid=CT3319738&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPEE8F6983-E522-4D6F-B06C-8843304ED555&SSPV=",), Remplacé,[ec03dcc6285354e2dc779a45c73dc23e] Secteurs physiques: 0 (No malicious items detected) (end)