Format du document : text/plain
Prévisualisation
Malwarebytes Anti-Malware
www.malwarebytes.org
Date de l'analyse: 18/11/2016
Heure de l'analyse: 22:20
Fichier journal: MBAM.txt
Administrateur: Oui
Version: 2.2.1.1043
Base de données de programmes malveillants: v2016.11.18.06
Base de données de rootkits: v2016.10.31.01
Licence: Essai
Protection contre les programmes malveillants: Activé
Protection contre les sites Web malveillants: Activé
Autoprotection: Désactivé
Système d'exploitation: Windows 10
Processeur: x64
Système de fichiers: NTFS
Utilisateur: Aleister Dardé
Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 334749
Temps écoulé: 7 min, 38 s
Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé
Processus: 0
(Aucun élément malveillant détecté)
Modules: 0
(Aucun élément malveillant détecté)
Clés du Registre: 12
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}, , [2f8fb011b4e63df97d6c379f8e73936d],
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F5F9D68A-B615-4A34-AEBC-70FB377643E5}, , [5e60a51c62383204de6fd5fb659d21df],
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LaunchPreSignup, , [2f8f5e63bedc063076fd0093a55d8878],
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}, , [dae415ac8c0ea49235b4914510f1fb05],
PUP.Optional.DNSUnlocker.ACMB2, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{C86403D7}, , [7a44487947530d297cd7ca0d3cc66f91],
PUP.Optional.OneSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\POWER\USER\POWERSCHEMES\04262113-2A31-48E1-B4BB-3B42174BEA0F, , [d9e5754ca7f386b0de25f0cb22e1ce32],
PUP.Optional.OneSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\POWER\USER\POWERSCHEMES\E24B7131-D039-43CB-9E6F-AD4BE601EC1F, , [17a75869d1c939fdb54eccefc241ec14],
PUP.Optional.InstallCore, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\csastats, , [a91503be0c8e1f17d6b614c5d62c649c],
PUP.Optional.InstallCore, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\ICSW1.22, , [7f3f61604d4d092d27b0eaa3bf434bb5],
PUP.Optional.WinYahoo, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}, , [dbe33e834654c175ffe9a2344eb3de22],
PUP.Optional.ProductSetup, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\PRODUCTSETUP, , [3b8303be5446ca6cf033b3e4b151d12f],
PUP.Optional.SystemHealer, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\SYSTEM HEALER, , [4a7490312278a78f86a7f1cd20e249b7],
Valeurs du Registre: 14
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f[f6c8952cf0aace68a95899c4659ea45c]D1%26b[f6c8952cf0aace68a95899c4659ea45c]DIE%26cc[f6c8952cf0aace68a95899c4659ea45c]Dfr%26pa[f6c8952cf0aace68a95899c4659ea45c]DWincy%26cd[f6c8952cf0aace68a95899c4659ea45c]D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr[f6c8952cf0aace68a95899c4659ea45c]D1628008856%26a[f6c8952cf0aace68a95899c4659ea45c]Dwbf_togoo_16_21%26os_ver[f6c8952cf0aace68a95899c4659ea45c]D10.0%26os[f6c8952cf0aace68a95899c4659ea45c]DWindowsB10BHome, %4, %5
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}|URL, https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f[2f8fb011b4e63df97d6c379f8e73936d]D4%26b[2f8fb011b4e63df97d6c379f8e73936d]DIE%26cc[2f8fb011b4e63df97d6c379f8e73936d]Dfr%26pa[2f8fb011b4e63df97d6c379f8e73936d]DWincy%26cd[2f8fb011b4e63df97d6c379f8e73936d]D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr[2f8fb011b4e63df97d6c379f8e73936d]D1628008856%26a[2f8fb011b4e63df97d6c379f8e73936d]Dwbf_togoo_16_21%26os_ver[2f8fb011b4e63df97d6c379f8e73936d]D10.0%26os[2f8fb011b4e63df97d6c379f8e73936d]DWindowsB10BHome&p={searchTerms}, %4, %5
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F5F9D68A-B615-4A34-AEBC-70FB377643E5}|Path, \LaunchPreSignup, , [5e60a51c62383204de6fd5fb659d21df]
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}|URL, https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f[dae415ac8c0ea49235b4914510f1fb05]D4%26b[dae415ac8c0ea49235b4914510f1fb05]DIE%26cc[dae415ac8c0ea49235b4914510f1fb05]Dfr%26pa[dae415ac8c0ea49235b4914510f1fb05]DWincy%26cd[dae415ac8c0ea49235b4914510f1fb05]D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr[dae415ac8c0ea49235b4914510f1fb05]D1628008856%26a[dae415ac8c0ea49235b4914510f1fb05]Dwbf_togoo_16_21%26os_ver[dae415ac8c0ea49235b4914510f1fb05]D10.0%26os[dae415ac8c0ea49235b4914510f1fb05]DWindowsB10BHome&p={searchTerms}, %4, %5
PUP.Optional.DNSUnlocker.ACMB2, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{c86403d7}|1, 1466766424, , [7a44487947530d297cd7ca0d3cc66f91]
PUP.Optional.OneSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\POWER\USER\POWERSCHEMES\04262113-2a31-48e1-b4bb-3b42174bea0f|Description, One System Care battery save scheme., , [d9e5754ca7f386b0de25f0cb22e1ce32]
PUP.Optional.OneSystemCare, HKLM\SYSTEM\CURRENTCONTROLSET\CONTROL\POWER\USER\POWERSCHEMES\e24b7131-d039-43cb-9e6f-ad4be601ec1f|Description, One System Care game scheme., , [17a75869d1c939fdb54eccefc241ec14]
Trojan.DNSChanger.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\INTERFACES\{758b7dd5-8b67-42e7-9495-1d97df76758f}|NameServer, 82.163.143.171 82.163.142.173, , [3985774ad0ca39fdf64e2bac679b08f8]
Trojan.DNSChanger.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\INTERFACES\{a86583a2-3d8e-47db-9203-d6712c5a3452}|NameServer, 82.163.143.171 82.163.142.173, , [17a73a87fd9d3ff7bd87e6f1867c2dd3]
PUP.Optional.WinYahoo, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{BD4871B2-3B65-4360-8CF5-30555D0F43E7}|URL, https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f[dbe33e834654c175ffe9a2344eb3de22]D4%26b[dbe33e834654c175ffe9a2344eb3de22]DIE%26cc[dbe33e834654c175ffe9a2344eb3de22]Dfr%26pa[dbe33e834654c175ffe9a2344eb3de22]DWincy%26cd[dbe33e834654c175ffe9a2344eb3de22]D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr[dbe33e834654c175ffe9a2344eb3de22]D1628008856%26a[dbe33e834654c175ffe9a2344eb3de22]Dwbf_togoo_16_21%26os_ver[dbe33e834654c175ffe9a2344eb3de22]D10.0%26os[dbe33e834654c175ffe9a2344eb3de22]DWindowsB10BHome&p={searchTerms}, %4, %5
PUP.Optional.ProductSetup, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\PRODUCTSETUP|tb, 0Q2P2X1C1N1K0M1R1R1J, , [3b8303be5446ca6cf033b3e4b151d12f]
PUP.Optional.SystemHealer, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\SYSTEM HEALER|HomePage, http://systemhealer.com/, , [4a7490312278a78f86a7f1cd20e249b7]
PUP.Optional.SystemHealer, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\SYSTEM HEALER|CartURL, http://gen.securedshopgate.com/?t=01&b=35&tid=351002282-IL-318_276246E4-D35F-4FB6-A26D-083A7ADF194D&clb=1, , [08b6566becae3ef8b69607d4669cfc04]
PUP.Optional.SystemHealer, HKU\S-1-5-21-210949152-4154492894-2679096414-1001\SOFTWARE\SYSTEM HEALER|SupportPage, http://systemhealer.com/support/#contact, , [2b938c3577230d29bf6ead1108fa51af]
Données du Registre: 1
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=fMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]D1%26bMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]DIE%26ccMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]Dfr%26paMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]DWincy%26cdMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26crMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]D1628008856%26aMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]Dwbf_togoo_16_21%26os_verMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]D10.0%26osMauvais : (https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_21¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEzzyDtC0ByBtDyEzzyCtBzytBtAyDtBtN0D0Tzu0StCyCtDyCtN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0B0FtA0C0EtGyDtCyB0EtGzy0E0F0EtGtA0B0DtBtG0D0F0D0ByEtCyCyBzz0DyEzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyE0FyD0D0B0A0EtGzy0CyByCtGyE0A0C0DtGzy0E0AzytGyByE0EtCyCzztBzyzztBtDyE2QtN0A0LzuyE%26cr%3D1628008856%26a%3Dwbf_togoo_16_21%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome),,[88365b66cccef83e354f70b643c0e31d]DWindowsBon : (www.google.com)B10Bon : (www.google.com)BHome, %4, %5
Dossiers: 7
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\1ef61da1-4f67-0, , [1da16d543b5f251197ca379eb74a1de3],
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\1ef61da1-55c1-1, , [fac4952c0d8dd85ec59ce5f042bf7d83],
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\{009ed95c-512c-1}, , [4579efd28e0c8caa0062d6ff877a916f],
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\{010d7beb-412c-0}, , [c5f9c001cad09f9776ec8f46af528080],
PUP.Optional.DNSUnlocker.ACMB2, C:\ProgramData\{02b156a9-712c-0}, , [e8d6e3dec9d163d37ce67362be43bb45],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}, , [bb037b46cbcfc571a667102e0cf7b947],
Fichiers: 24
PUP.Optional.MyPCBackup, C:\Windows\System32\Tasks\LaunchPreSignup, , [447a7e43a7f37fb7264be3b0d2307d83],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\HowToRemove.html, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\chromium-min.jpg, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\control panel-min-min.JPG, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\down.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\ff menu.JPG, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\ff search engine-min.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\hp-min ff.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\hp-min ie.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\search engine.gif, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\setup pages.gif, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\sp-min.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\start-min.jpg, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\HowToRemove\up.png, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\bapi.dat, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\config.dat, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\info.dat, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\install.log, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\rada, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\Sqlite3.dll, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\STTL.DAT, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\teca, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\TTL.DAT, , [bb037b46cbcfc571a667102e0cf7b947],
PUP.Optional.WinYahoo, C:\Users\Aleister Dardé\AppData\Local\{9786A1DA-B32E-CD62-DEB6-E88AFADE1412}\uninst.dat, , [bb037b46cbcfc571a667102e0cf7b947],
Secteurs physiques: 0
(Aucun élément malveillant détecté)
(end)