Malwarebytes Anti-Malware www.malwarebytes.org Date de l'analyse: 13/07/2015 Heure de l'analyse: 14:33:42 Fichier journal: resultat malware.txt Administrateur: Oui Version: 2.1.8.1057 Base de données de programmes malveillants: v2015.07.13.02 Base de données de rootkits: v2015.07.10.01 Licence: Premium Protection contre les programmes malveillants: Activé Protection contre les sites Web malveillants: Activé Autoprotection: Désactivé Système d'exploitation: Windows XP Service Pack 3 Processeur: x86 Système de fichiers: NTFS Utilisateur: Danilo Type d'analyse: Analyse des menaces Résultat: Terminé Objets analysés: 358020 Temps écoulé: 28 min, 14 s Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Désactivé Heuristique: Activé PUP: Activé PUM: Activé Processus: 0 (Aucun élément malveillant détecté) Modules: 0 (Aucun élément malveillant détecté) Clés du registre: 26 PUP.Optional.MyStartToolbar.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${IEUTILSLIGHTELEVATIONPOLICYID}, , [94b2d70a8efc84b29fc31c711aeadb25], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, , [b78f21c0d2b8dc5aefdc444cf014b44c], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15340689-109C-4054-8EE2-24DB99F686D8}, , [b690489947434ee8faf9cbc009fb34cc], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2386BB7B-8AFF-464C-8186-D7E6EECCB4E2}, , [e0660bd6e8a2dd59668eadde1fe5cd33], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{37FF91C2-0971-47A5-9B7E-BBF864DF9815}, , [7bcb6180a2e861d5d321751613f159a7], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4139B03A-FBA7-4C89-AE9D-943B44CF77F2}, , [1b2b03deddada2949a591f6c90748878], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{456F979B-DAA0-47D0-85FB-28CA8B15A91A}, , [0640a9386f1b84b27a793556b64ec33d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{55FBDAC1-AEEF-4338-9C1C-52E86C5C81FB}, , [e561eff217739b9ba84c1c6f0202b749], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{569927E0-7C4D-4FB2-8F36-572B483D7589}, , [113533aedab044f22bc93d4e38cc966a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6992BC04-2F70-4260-BF5D-45909625975A}, , [52f4af32a8e2e452eb085e2d9c681ce4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7976E27D-6673-4F2A-974B-5FBAD3E776DA}, , [f551b52cf2987fb7599ad3b8b74d8c74], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8F969043-2B3C-4751-A278-2F1184DA538E}, , [271f726f3f4b74c237bcfa913ec69e62], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{904EEC5C-C774-4991-B853-CD3C41242A1F}, , [91b5449d157546f017dc55361be92ad6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{995CB5C3-4D26-43AB-BD7B-A1AF5C42B75E}, , [0145a53c2c5ee4522fc5345706fe0df3], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B961E4B-7030-451A-8A7C-759CD7A9399A}, , [af97538ee6a42610995b325940c40af6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A176A5AB-39A3-46B6-A8EC-97768CB9E0FD}, , [1432fee33e4ca591935f800b0cf8e21e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A2AC3A94-9AB4-4DDA-BFE8-8444CBC3F7BA}, , [8db9b0319eec072fe014e0abe81c8977], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BCECB38C-A8F5-438E-8BC9-8CAB9CBBE9AD}, , [5aec5e8326649f97b2416b2015efbc44], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BD645CF9-755F-47D3-AE24-C0ADA9179321}, , [3016558c35557db9e112692229db7e82], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BE1DDBDE-CDC5-45B7-8FC3-67C53EBBF82F}, , [de68bd241f6bb581eb082b608c786d93], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C5CD6276-25D9-4E1B-8262-E6A09588C772}, , [4ff73ea393f7eb4bb0444546ac5815eb], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CA2C6929-1979-4336-B7A8-5E36F760DA20}, , [95b1eff20a800036d91a68238f751ce4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC782C22-D9B8-4C01-A73F-6F5E54746F43}, , [de689d443e4c3402cd2798f3f31159a7], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8623C9C-4C44-4581-AF48-42E5EB69F9A2}, , [51f5c81925650c2a1ed5cdbe0cf825db], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E61ED727-C926-424E-B996-C12B999EEE38}, , [192d0fd298f254e247ac0d7e07fdc53b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F2CB57BB-9CE9-4EB8-903C-456643D6AE96}, , [6fd7865bccbe40f69a5a216a7391b54b], Valeurs du registre: 25 PUP.Optional.MyStartToolbar.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\${IEUTILSLIGHTELEVATIONPOLICYID}|AppPath, C:\Program Files\mystarttb, , [94b2d70a8efc84b29fc31c711aeadb25] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15340689-109C-4054-8EE2-24DB99F686D8}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [b690489947434ee8faf9cbc009fb34cc] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2386BB7B-8AFF-464C-8186-D7E6EECCB4E2}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [e0660bd6e8a2dd59668eadde1fe5cd33] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{37ff91c2-0971-47a5-9b7e-bbf864df9815}|AppName, Plus-HD-3.5-codedownloader.exe, , [7bcb6180a2e861d5d321751613f159a7] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4139B03A-FBA7-4C89-AE9D-943B44CF77F2}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [1b2b03deddada2949a591f6c90748878] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{456F979B-DAA0-47D0-85FB-28CA8B15A91A}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [0640a9386f1b84b27a793556b64ec33d] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{55FBDAC1-AEEF-4338-9C1C-52E86C5C81FB}|AppName, 442af642-e3d0-445a-9090-4d9c9b1608dc-2.exe-codedownloader.exe, , [e561eff217739b9ba84c1c6f0202b749] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{569927E0-7C4D-4FB2-8F36-572B483D7589}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [113533aedab044f22bc93d4e38cc966a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6992BC04-2F70-4260-BF5D-45909625975A}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [52f4af32a8e2e452eb085e2d9c681ce4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7976E27D-6673-4F2A-974B-5FBAD3E776DA}|AppName, 442af642-e3d0-445a-9090-4d9c9b1608dc-2.exe-buttonutil.exe, , [f551b52cf2987fb7599ad3b8b74d8c74] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8F969043-2B3C-4751-A278-2F1184DA538E}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [271f726f3f4b74c237bcfa913ec69e62] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{904EEC5C-C774-4991-B853-CD3C41242A1F}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [91b5449d157546f017dc55361be92ad6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{995CB5C3-4D26-43AB-BD7B-A1AF5C42B75E}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [0145a53c2c5ee4522fc5345706fe0df3] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B961E4B-7030-451A-8A7C-759CD7A9399A}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [af97538ee6a42610995b325940c40af6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{a176a5ab-39a3-46b6-a8ec-97768cb9e0fd}|AppName, Plus-HD-3.5-bg.exe, , [1432fee33e4ca591935f800b0cf8e21e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A2AC3A94-9AB4-4DDA-BFE8-8444CBC3F7BA}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [8db9b0319eec072fe014e0abe81c8977] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BCECB38C-A8F5-438E-8BC9-8CAB9CBBE9AD}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [5aec5e8326649f97b2416b2015efbc44] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{bd645cf9-755f-47d3-ae24-c0ada9179321}|AppName, Plus-HD-3.5-buttonutil.exe, , [3016558c35557db9e112692229db7e82] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BE1DDBDE-CDC5-45B7-8FC3-67C53EBBF82F}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [de68bd241f6bb581eb082b608c786d93] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C5CD6276-25D9-4E1B-8262-E6A09588C772}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [4ff73ea393f7eb4bb0444546ac5815eb] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CA2C6929-1979-4336-B7A8-5E36F760DA20}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [95b1eff20a800036d91a68238f751ce4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC782C22-D9B8-4C01-A73F-6F5E54746F43}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [de689d443e4c3402cd2798f3f31159a7] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8623C9C-4C44-4581-AF48-42E5EB69F9A2}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [51f5c81925650c2a1ed5cdbe0cf825db] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E61ED727-C926-424E-B996-C12B999EEE38}|AppName, Plus-HD-3.5-enabler.exe-buttonutil.exe, , [192d0fd298f254e247ac0d7e07fdc53b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-460727423-1256387733-607549173-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F2CB57BB-9CE9-4EB8-903C-456643D6AE96}|AppName, Plus-HD-3.5-enabler.exe-codedownloader.exe, , [6fd7865bccbe40f69a5a216a7391b54b] Données du registre: 0 (Aucun élément malveillant détecté) Dossiers: 0 (Aucun élément malveillant détecté) Fichiers: 0 (Aucun élément malveillant détecté) Secteurs physiques: 0 (Aucun élément malveillant détecté) (end)