Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 16/09/2014 Scan Time: 11:42:55 Logfile: Journal d'examen.txt Administrator: Yes Version: 2.00.2.1012 Malware Database: v2014.09.16.03 Rootkit Database: v2014.09.15.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows Vista Service Pack 2 CPU: x86 File System: NTFS User: Margot Scan Type: Custom Scan Result: Completed Objects Scanned: 545455 Time Elapsed: 4 hr, 25 min, 28 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 2 PUP.Optional.Astromenda, HKU\S-1-5-21-3976511936-4006054981-989674969-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}, Quarantined, [0be708e5eb903cfa83f73450788a0cf4], PUP.Optional.Astromenda, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}, Quarantined, [0be708e5eb903cfa83f73450788a0cf4], Registry Values: 1 PUP.Optional.QuickStart.A, HKU\S-1-5-21-3976511936-4006054981-989674969-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, quick_start@gmail.com, Quarantined, [1bd7c7269dde52e4e8e446cbf70c7090] Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 4 PUP.Optional.InstallCore, C:\Users\Margot\Downloads\winamp5.66_full_all.exe, Quarantined, [c230618cbac1ec4a44d43eb5d0344ab6], PUP.Optional.Superfish.A, C:\Users\Margot\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Quarantined, [5d958d607308a096204c43d87291f907], PUP.Optional.Superfish.A, C:\Users\Margot\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [ac46529b5229c76fd7958a918b7839c7], PUP.Optional.Astromenda.A, C:\Users\Margot\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "http://astromenda.com/?f=7&a=ast_tele_14_37_ff&cd=2XzuyEtN2Y1L1QzutDtDtC0EyCzztB0A0B0ByD0A0CtAzy0DtN0D0Tzu0SzyzzyCtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StBtB0B0EtB0EtCzztG0EyEyB0EtGtAtB0EzytGzy0CtByEtGyDzz0CzytC0EtC0D0Azz0DtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0B0DtAtBtBtBtDzytGtBtCtA0FtGyEyCtA0DtG0BtCtA0DtG0BtAyDtB0F0A0EyC0E0Fzz0F2Q&cr=27293937&ir=" ],), Replaced,[b83a2bc22f4c4de9f56546eb90757789] Physical Sectors: 0 (No malicious items detected) (end)