Malwarebytes Anti-Malware www.malwarebytes.org Date de l'analyse: 03/08/2015 Heure de l'analyse: 15:26 Fichier journal: scanlog.txt Administrateur: Oui Version: 2.1.8.1057 Base de données de programmes malveillants: v2015.08.03.03 Base de données de rootkits: v2015.08.03.01 Licence: Gratuit Protection contre les programmes malveillants: Désactivé Protection contre les sites Web malveillants: Désactivé Autoprotection: Désactivé Système d'exploitation: Windows 8.1 Processeur: x64 Système de fichiers: NTFS Utilisateur: Sandrine Type d'analyse: Analyse des menaces Résultat: Terminé Objets analysés: 394192 Temps écoulé: 35 min, 32 s Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Désactivé Heuristique: Activé PUP: Activé PUM: Activé Processus: 0 (Aucun élément malveillant détecté) Modules: 0 (Aucun élément malveillant détecté) Clés du registre: 55 PUP.Optional.Dregol.C, HKLM\SOFTWARE\CLASSES\APPID\{da3128b1-de9e-4e11-81dc-e12090c8f3b9}, En quarantaine, [5916857f5932db5b4972dbc9956f9769], PUP.Optional.Dregol.C, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{da3128b1-de9e-4e11-81dc-e12090c8f3b9}, En quarantaine, [630cef155b30171f23980f95c3417987], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{288C6276-A143-4A80-8BF7-CCD23703329F}, En quarantaine, [7cf3fe069fec94a219470f8f17ed25db], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FFCE5A7-E924-420E-A98A-49E9623FAEC4}, En quarantaine, [27486f95701b8aac085ad9c525df39c7], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{59528532-D0BF-4314-8CB6-3F7B49BEAE6A}, En quarantaine, [353afb098dfef1454e12aaf4d430857b], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5E3C3238-67C4-4385-8D2D-FB750F2C6ABE}, En quarantaine, [4b2454b09fec979fb2aef2acaf553cc4], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6378A348-A8A8-46A2-9C99-6AC1F03EB9DB}, En quarantaine, [6e010ef61c6ff0467de3435b39cba25e], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6506CA89-21AF-4BB9-A4F1-BA529BFCDA56}, En quarantaine, [38374db75239c76f045d9707bc48837d], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6C6B983D-8CFF-4C93-B627-09A3F6003A49}, En quarantaine, [adc29b69becd2c0ade83bde16b999070], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BAA8E3E1-6213-4E66-B02B-B353B698C78A}, En quarantaine, [98d7aa5accbfc96d045dc0de1de745bb], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB160962-44C5-475C-AFFA-5A76AE145D50}, En quarantaine, [046b9371d5b60d29bba71f7fe321f808], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CBFE710D-EE97-4818-A0D1-51B209F6E327}, En quarantaine, [303f4fb52f5cd462da88e9b593717b85], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D18CD79B-30BA-4C2B-B7F3-0BDBA1634446}, En quarantaine, [2f405ba9612a90a63a2826789e6653ad], PUP.Optional.PlusHD.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\Tree\Plus-HD-4.7-chromeinstaller, Supprimer au redémarrage, [82ed3fc55635b680fe58e02f47bc2ed2], PUP.Optional.PlusHD.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\Tree\Plus-HD-4.7-codedownloader, Supprimer au redémarrage, [e48bf113bfcc5cda4d09ec238182ad53], PUP.Optional.PlusHD.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\Tree\Plus-HD-4.7-enabler, Supprimer au redémarrage, [9dd28c7863286cca084e2de234cf629e], PUP.Optional.PlusHD.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\Tree\Plus-HD-4.7-updater, Supprimer au redémarrage, [b8b7e420dcafd5611541848b44bf60a0], PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE, En quarantaine, [650a6e96f19a4bebc56ca8f9c93bed13], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQVideo_7.1dV09.03, En quarantaine, [80ef6c9893f8e452f07266bae61d9b65], PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, En quarantaine, [9fd053b1b1dafc3ad5254cc910f36a96], PUP.Optional.Dregol.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{da3128b1-de9e-4e11-81dc-e12090c8f3b9}, En quarantaine, [57188a7a99f2e155289341635ea617e9], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BAA8E3E1-6213-4E66-B02B-B353B698C78A}, En quarantaine, [a9c6ca3af7942d09a4bde8b65da70ef2], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB160962-44C5-475C-AFFA-5A76AE145D50}, En quarantaine, [2e4183814546ca6c3032b5e9b54f8f71], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CBFE710D-EE97-4818-A0D1-51B209F6E327}, En quarantaine, [d39c699b64275bdb2e342f6f8381d030], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D18CD79B-30BA-4C2B-B7F3-0BDBA1634446}, En quarantaine, [94dbd1330d7ee05693cfd3cb7c8853ad], PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE, En quarantaine, [8ce317ed3754b08641f0673a22e27789], PUP.Optional.PCSpeedUp.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, En quarantaine, [f27d778d5932f145e77ee4be61a318e8], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, En quarantaine, [bab50004107bba7cb56d3f640ef6946c], PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, En quarantaine, [d79864a0bdce152151ad6c2fb74de41c], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{217695BB-9742-4C99-A217-F29F6C329F96}, En quarantaine, [b1beec183c4f3501f669e0be8084f60a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{288C6276-A143-4A80-8BF7-CCD23703329F}, En quarantaine, [303fb252b1da41f586d7a3fbf90b43bd], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FFCE5A7-E924-420E-A98A-49E9623FAEC4}, En quarantaine, [5e11b94b1f6c65d165faf8a6d034ce32], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{59528532-D0BF-4314-8CB6-3F7B49BEAE6A}, En quarantaine, [c8a73cc8e6a516201f3e079746bebd43], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5E3C3238-67C4-4385-8D2D-FB750F2C6ABE}, En quarantaine, [8be4986ce1aa95a1500dbbe309fb7987], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{60405AC1-B990-4667-A66E-648621BA136D}, En quarantaine, [5718c53fe9a21d1974ea4757c63e6e92], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6378A348-A8A8-46A2-9C99-6AC1F03EB9DB}, En quarantaine, [561951b31b70b482e27b7c2263a1df21], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6506CA89-21AF-4BB9-A4F1-BA529BFCDA56}, En quarantaine, [7bf4679d9cefaa8c1f3f7f1f37cd6d93], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66E4EFAC-5FF0-49AF-91A6-8388979E9C3E}, En quarantaine, [76f910f41a71cb6bc6984856c2426898], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66ECED66-1217-4911-84F7-EE1F32B525DD}, En quarantaine, [85eae91b0b801e18e37bdcc2857f4cb4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{676072B3-B3FA-4A74-BEF4-87783DF479BF}, En quarantaine, [3837fd0706853105d48b722c21e34bb5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6C6B983D-8CFF-4C93-B627-09A3F6003A49}, En quarantaine, [5718f50fcebddd59015d2a74fc0809f7], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{87F1731E-7D2D-4E0C-97CD-7A66B9F9B0AF}, En quarantaine, [2f404db73e4d64d2a9b6ccd242c21ae6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{981FAAFD-FE11-4B4F-83B2-499BB683617F}, En quarantaine, [47280103fb907fb7cc92316d48bcd828], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A38ABFD4-EA11-4A04-B8DC-ED73F564DBE3}, En quarantaine, [a7c86b993e4d1a1c540aefaf49bb57a9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A9DC382F-93DA-404E-A5AE-3A3FC7F2DEC1}, En quarantaine, [49264db70f7c9e982737841a20e46997], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AF862143-F3AD-4A1A-B911-44081EF5F184}, En quarantaine, [056a5ea6dcafa195d08deeb09e66e818], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BAA8E3E1-6213-4E66-B02B-B353B698C78A}, En quarantaine, [e788e51f701bb185124cd5c941c3eb15], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB160962-44C5-475C-AFFA-5A76AE145D50}, En quarantaine, [dd92fb09d7b4ed49e57a4d51749011ef], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CBFE710D-EE97-4818-A0D1-51B209F6E327}, En quarantaine, [6f00ba4af5965cda89d6940adc28857b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC05BD06-EEF8-4119-A4D8-BECFA9C1586B}, En quarantaine, [c6a9ba4accbfef47b0ae78267b897789], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D0624571-99EA-478C-BAF2-2B2DF9C28FD2}, En quarantaine, [c9a6af55256659dd520c7a2440c44eb2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D18CD79B-30BA-4C2B-B7F3-0BDBA1634446}, En quarantaine, [a5ca7094b3d8e353b2adfba3729207f9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E7BE6E9E-4BAF-4E9C-B0C2-A94A9F8C8016}, En quarantaine, [83ecb153b5d6af870e50227c33d1c23e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F9137676-BA54-4D7F-8CCF-45BAA922DCA1}, En quarantaine, [e18ea75d672480b6ec73831b5aaa8f71], PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FA428AE6-4474-4C39-ABD9-255BF1BBB0DB}, En quarantaine, [eb84966e6724999d4618d6c83dc75da3], Valeurs du registre: 44 PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{288c6276-a143-4a80-8bf7-ccd23703329f}|AppName, ClickMovie1-Downloaderv10-bg.exe, En quarantaine, [7cf3fe069fec94a219470f8f17ed25db] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4ffce5a7-e924-420e-a98a-49e9623faec4}|AppName, Ge-Force-codedownloader.exe, En quarantaine, [27486f95701b8aac085ad9c525df39c7] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{59528532-d0bf-4314-8cb6-3f7b49beae6a}|AppName, Ge-Force-bg.exe, En quarantaine, [353afb098dfef1454e12aaf4d430857b] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5e3c3238-67c4-4385-8d2d-fb750f2c6abe}|AppName, I - Cinema-bg.exe, En quarantaine, [4b2454b09fec979fb2aef2acaf553cc4] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6378a348-a8a8-46a2-9c99-6ac1f03eb9db}|AppName, Sense-bg.exe, En quarantaine, [6e010ef61c6ff0467de3435b39cba25e] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6506ca89-21af-4bb9-a4f1-ba529bfcda56}|AppName, ClickMovie1-Downloaderv10-buttonutil.exe, En quarantaine, [38374db75239c76f045d9707bc48837d] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6c6b983d-8cff-4c93-b627-09a3f6003a49}|AppName, Ge-Force-buttonutil.exe, En quarantaine, [adc29b69becd2c0ade83bde16b999070] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{baa8e3e1-6213-4e66-b02b-b353b698c78a}|AppName, Sense-buttonutil.exe, En quarantaine, [98d7aa5accbfc96d045dc0de1de745bb] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{bb160962-44c5-475c-affa-5a76ae145d50}|AppName, I - Cinema-codedownloader.exe, En quarantaine, [046b9371d5b60d29bba71f7fe321f808] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{cbfe710d-ee97-4818-a0d1-51b209f6e327}|AppName, Sense-codedownloader.exe, En quarantaine, [303f4fb52f5cd462da88e9b593717b85] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{d18cd79b-30ba-4c2b-b7f3-0bdba1634446}|AppName, ClickMovie1-Downloaderv10-codedownloader.exe, En quarantaine, [2f405ba9612a90a63a2826789e6653ad] PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, En quarantaine, [650a6e96f19a4bebc56ca8f9c93bed13] PUP.Optional.Dregol.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY|AppPath, C:\Program Files (x86)\Run_Dregol\\, En quarantaine, [fa758d770982e94d29c4dc39e91a3fc1] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{baa8e3e1-6213-4e66-b02b-b353b698c78a}|AppName, Sense-buttonutil.exe, En quarantaine, [a9c6ca3af7942d09a4bde8b65da70ef2] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{bb160962-44c5-475c-affa-5a76ae145d50}|AppName, I - Cinema-codedownloader.exe, En quarantaine, [2e4183814546ca6c3032b5e9b54f8f71] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{cbfe710d-ee97-4818-a0d1-51b209f6e327}|AppName, Sense-codedownloader.exe, En quarantaine, [d39c699b64275bdb2e342f6f8381d030] PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{d18cd79b-30ba-4c2b-b7f3-0bdba1634446}|AppName, ClickMovie1-Downloaderv10-codedownloader.exe, En quarantaine, [94dbd1330d7ee05693cfd3cb7c8853ad] PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, En quarantaine, [8ce317ed3754b08641f0673a22e27789] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{217695BB-9742-4C99-A217-F29F6C329F96}|AppName, Plus-HD-4.7-enabler.exe-codedownloader.exe, En quarantaine, [b1beec183c4f3501f669e0be8084f60a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{288c6276-a143-4a80-8bf7-ccd23703329f}|AppName, ClickMovie1-Downloaderv10-bg.exe, En quarantaine, [303fb252b1da41f586d7a3fbf90b43bd] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4ffce5a7-e924-420e-a98a-49e9623faec4}|AppName, Ge-Force-codedownloader.exe, En quarantaine, [5e11b94b1f6c65d165faf8a6d034ce32] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{59528532-d0bf-4314-8cb6-3f7b49beae6a}|AppName, Ge-Force-bg.exe, En quarantaine, [c8a73cc8e6a516201f3e079746bebd43] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5e3c3238-67c4-4385-8d2d-fb750f2c6abe}|AppName, I - Cinema-bg.exe, En quarantaine, [8be4986ce1aa95a1500dbbe309fb7987] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{60405AC1-B990-4667-A66E-648621BA136D}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [5718c53fe9a21d1974ea4757c63e6e92] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6378a348-a8a8-46a2-9c99-6ac1f03eb9db}|AppName, Sense-bg.exe, En quarantaine, [561951b31b70b482e27b7c2263a1df21] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6506ca89-21af-4bb9-a4f1-ba529bfcda56}|AppName, ClickMovie1-Downloaderv10-buttonutil.exe, En quarantaine, [7bf4679d9cefaa8c1f3f7f1f37cd6d93] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66E4EFAC-5FF0-49AF-91A6-8388979E9C3E}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [76f910f41a71cb6bc6984856c2426898] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66ECED66-1217-4911-84F7-EE1F32B525DD}|AppName, 13878bfa-75bb-49c5-9c78-114b2dd46184-2.exe-buttonutil.exe, En quarantaine, [85eae91b0b801e18e37bdcc2857f4cb4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{676072b3-b3fa-4a74-bef4-87783df479bf}|AppName, Plus-HD-4.7-codedownloader.exe, En quarantaine, [3837fd0706853105d48b722c21e34bb5] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6c6b983d-8cff-4c93-b627-09a3f6003a49}|AppName, Ge-Force-buttonutil.exe, En quarantaine, [5718f50fcebddd59015d2a74fc0809f7] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{87F1731E-7D2D-4E0C-97CD-7A66B9F9B0AF}|AppName, 22c33a2e-96c6-4078-b026-ce6cd88acd0f-2.exe-codedownloader.exe, En quarantaine, [2f404db73e4d64d2a9b6ccd242c21ae6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{981FAAFD-FE11-4B4F-83B2-499BB683617F}|AppName, abe04cdc-0acd-46dd-bce2-6b442ae049e9-2.exe-buttonutil.exe, En quarantaine, [47280103fb907fb7cc92316d48bcd828] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{a38abfd4-ea11-4a04-b8dc-ed73f564dbe3}|AppName, Plus-HD-4.7-buttonutil.exe, En quarantaine, [a7c86b993e4d1a1c540aefaf49bb57a9] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A9DC382F-93DA-404E-A5AE-3A3FC7F2DEC1}|AppName, e5e95832-6ee1-4441-a6c9-26a49307eb30-2.exe-buttonutil.exe, En quarantaine, [49264db70f7c9e982737841a20e46997] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{af862143-f3ad-4a1a-b911-44081ef5f184}|AppName, Plus-HD-4.7-bg.exe, En quarantaine, [056a5ea6dcafa195d08deeb09e66e818] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{baa8e3e1-6213-4e66-b02b-b353b698c78a}|AppName, Sense-buttonutil.exe, En quarantaine, [e788e51f701bb185124cd5c941c3eb15] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{bb160962-44c5-475c-affa-5a76ae145d50}|AppName, I - Cinema-codedownloader.exe, En quarantaine, [dd92fb09d7b4ed49e57a4d51749011ef] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{cbfe710d-ee97-4818-a0d1-51b209f6e327}|AppName, Sense-codedownloader.exe, En quarantaine, [6f00ba4af5965cda89d6940adc28857b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC05BD06-EEF8-4119-A4D8-BECFA9C1586B}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [c6a9ba4accbfef47b0ae78267b897789] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D0624571-99EA-478C-BAF2-2B2DF9C28FD2}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [c9a6af55256659dd520c7a2440c44eb2] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{d18cd79b-30ba-4c2b-b7f3-0bdba1634446}|AppName, ClickMovie1-Downloaderv10-codedownloader.exe, En quarantaine, [a5ca7094b3d8e353b2adfba3729207f9] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E7BE6E9E-4BAF-4E9C-B0C2-A94A9F8C8016}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [83ecb153b5d6af870e50227c33d1c23e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F9137676-BA54-4D7F-8CCF-45BAA922DCA1}|AppName, Plus-HD-4.7-enabler.exe-codedownloader.exe, En quarantaine, [e18ea75d672480b6ec73831b5aaa8f71] PUP.Optional.CrossRider.A, HKU\S-1-5-21-868259843-2298988868-1614328940-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FA428AE6-4474-4C39-ABD9-255BF1BBB0DB}|AppName, Plus-HD-4.7-enabler.exe-buttonutil.exe, En quarantaine, [eb84966e6724999d4618d6c83dc75da3] Données du registre: 0 (Aucun élément malveillant détecté) Dossiers: 1 PUP.Optional.MultiPlug.Gen, C:\Users\Sandrine\AppData\Roaming\68677F00-1425892046-11E2-82D4-30F9EDC814C7, En quarantaine, [66097c88dfacf93d963b3266ee16ae52], Fichiers: 6 PUP.Optional.AnyProtect, C:\Users\Sandrine\AppData\Local\nslF348.tmp, En quarantaine, [bdb2f212eba077bf849f86fc28da3cc4], PUP.Optional.Binkiland.C, C:\Users\Sandrine\AppData\LocalLow\Microsoft\Internet Explorer\Services\FavIcon.icoWSE_Binkiland, En quarantaine, [79f6778d553679bd6d779a7b38cbc43c], PUP.Optional.MultiPlug.Gen, C:\Users\Sandrine\AppData\Roaming\68677F00-1425892046-11E2-82D4-30F9EDC814C7\vnsnBE66.tmp, En quarantaine, [66097c88dfacf93d963b3266ee16ae52], PUP.Optional.MultiPlug.Gen, C:\Users\Sandrine\AppData\Roaming\68677F00-1425892046-11E2-82D4-30F9EDC814C7\rnso18B5.exe, En quarantaine, [66097c88dfacf93d963b3266ee16ae52], PUP.Optional.MultiPlug.Gen, C:\Users\Sandrine\AppData\Roaming\68677F00-1425892046-11E2-82D4-30F9EDC814C7\Uninstall.exe, En quarantaine, [66097c88dfacf93d963b3266ee16ae52], PUP.Optional.StartWeb.A, C:\Users\Sandrine\AppData\Roaming\Mozilla\Firefox\Profiles\8uafpxvi.default\prefs.js, Bon : (), Mauvais : (user_pref("browser.search.selectedEngine", "StartWeb");), Remplacé,[71feaf5504879c9a9dcf255c14f1a957] Secteurs physiques: 0 (Aucun élément malveillant détecté) (end)