Aller au contenu

neosapri

Membres
  • Compteur de contenus

    76
  • Inscription

  • Dernière visite

Tout ce qui a été posté par neosapri

  1. Procdédure terminée. Je te remercie pour ton aide Apollo !!! A+
  2. Salut Apollo ! Le PC est déjà beaucoup plus rapide... J'ai en parallèle désactivé certains programme en ouverture de session (genre Steam). Le scan ZHP semble être bon, sans infection identifiée. Le rapport est disponible ci-dessous. http://www.cjoint.com/c/FBeudq7gZfd Au niveau des maj, seul Java semblait obsolète. Encore une affaire résolue par le commissaire Apollo ?
  3. Voici le rapport SFTGC : http://www.cjoint.com/c/FBdvCOjymqd Et le rapport MBAM : http://www.cjoint.com/c/FBdwYniGhCd Bonne fin de soirée...
  4. Comme demandé, les rapports sont ci-dessous : JRT : http://www.cjoint.com/c/FBduPuwTybd AdwCleaner : # AdwCleaner v5.032 - Rapport créé le 03/02/2016 à 21:23:37 # Mis à jour le 31/01/2016 par Xplode # Base de données : 2016-02-02.1 [serveur] # Système d'exploitation : Windows 7 Ultimate Service Pack 1 (x64) # Nom d'utilisateur : Catherine - CATHERINE-PC # Exécuté depuis : C:\Users\Catherine\Desktop\adwcleaner_5.032.exe # Option : Nettoyer # Support : http://toolslib.net/forum ***** [ Services ] ***** ***** [ Dossiers ] ***** ***** [ Fichiers ] ***** ***** [ DLLs ] ***** ***** [ Raccourcis ] ***** ***** [ Tâches planifiées ] ***** ***** [ Registre ] ***** [-] Clé Supprimée : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E} [-] Clé Supprimée : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24} [-] Clé Supprimée : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6} [-] Clé Supprimée : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9} [-] Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} [-] Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} [-] Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{FCA0E497-33D1-4DBE-8FDB-7F9A597C8BC2}] [-] Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} [-] Clé Supprimée : HKCU\Software\powerpack [-] Clé Supprimée : HKCU\Software\AppDataLow\Software\videosaver [!] Clé Non Supprimée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1000\Software\powerpack [!] Clé Non Supprimée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1000\Software\AppDataLow\Software\videosaver [-] Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3065692007-4017222344-2541878085-1000\Software\SweetIM [!] Clé Non Supprimée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\powerpack [-] Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964 [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\Main [search Bar] [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\Main [search Page] [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\Main [First Home Page] [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\Search [searchAssistant] [!] Donnée Non Restaurée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\SearchUrl [Default] [!] Clé Non Supprimée : HKU\S-1-5-21-3065692007-4017222344-2541878085-1001\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} ***** [ Navigateurs ] ***** [-] [C:\Users\Catherine\AppData\Roaming\Mozilla\Firefox\Profiles\qjdfkq44.default\prefs.js] [Preference] Supprimée : user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save-page-button\",\"print-but[...] ************************* :: Clés "Tracing" supprimées :: Paramètres Winsock réinitialisés ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3615 octets] ########## A+ pour la suite !
  5. Bonsoir Apollo ! Merci encore une fois pour ton aide ! Le rapport est disponible à l'adresse ci-dessous : http://www.cjoint.com/c/FBdtWIPqKBd J'attends donc la suite de tes instructions. Bonne soirée à toi ! a+
  6. Bonjour le forum ! L'ordinateur de mon épouse commence à être très lent, et je suis sur qu'une petite décontamination lui fera du bien voici donc ci-dessous le lien vers le rapport ZHP. http://www.cjoint.com/c/FBcvSVOHFud Merci d'avance pour votre aide. Neosapri
  7. Salut Apollo ! Spyware Terminator & Mc Afee désinstallés sans problème. Apparemment, l'installation du Service Pack de MS ne s'effectue pas comme il faut. J'ai toujours les 3 mêmes mises à jour qui reviennent sans arrêt (2 importantes - MAJ pour Win 7 et Win 7 SP1 - et 1 facultative). Je trouve ça bizarre. Finalement, tu trouveras le rapport ZHPFix ci-dessous : Rapport de ZHPFix 2015.7.7.6 par Nicolas Coolman, Update du 07/07/2015 Fichier d'export Registre : Run by carinebroos at 9/08/2015 13:47:01 High Elevated Privileges : OK Windows 7 Home Premium Edition, 32-bit (Build 7600) Corbeille vidée (02mn 43s) Dossier Prefetcher vidé Réparation des raccourcis navigateur ========== Logiciels ========== SUPPRIMÉ: Akamai NetSession Interface ========== Clés du Registre ========== Branche de Base de Registres IFEO non infectée ! ========== Valeurs du Registre ========== SUPPRIMÉ RunValue: Akamai NetSession Interface SUPPRIMÉ: URLSearchHook: {338c5d66-6b92-40a7-a216-9830d2e54103} ProxyFix : Configuration proxy supprimée avec succès SUPPRIMÉ ProxyServer Value SUPPRIMÉ ProxyEnable Value SUPPRIMÉ EnableHttp1_1 Value SUPPRIMÉ ProxyHttp1.1 Value SUPPRIMÉ ProxyOverride Value Aucune Valeur Standard Profile: FirewallRaz : Aucune Valeur Domain Profile: FirewallRaz : SUPPRIMÉ: FirewallRaz (Domain) : NetPres-In-TCP-NoScope SUPPRIMÉ: FirewallRaz (Domain) : NetPres-Out-TCP-NoScope SUPPRIMÉ: FirewallRaz (None) : NetPres-WSD-In-UDP SUPPRIMÉ: FirewallRaz (None) : NetPres-WSD-Out-UDP SUPPRIMÉ: FirewallRaz (Public) : NetPres-In-TCP SUPPRIMÉ: FirewallRaz (Public) : NetPres-Out-TCP SUPPRIMÉ: FirewallRaz (None) : {B9B8774A-9557-4A52-AFFA-03C1130ECED6} SUPPRIMÉ: FirewallRaz (None) : {B70BB552-4190-416D-B0A3-4BB55C8B03B8} SUPPRIMÉ: FirewallRaz (Private) : {9D02092E-359E-428D-99CF-FA514490BBFF} SUPPRIMÉ: FirewallRaz (Private) : {E6C22598-2AAA-4905-A516-9833E8791BE6} SUPPRIMÉ: FirewallRaz (None) : {F85B920A-83E8-4080-ABBE-45313A4DA9FA} SUPPRIMÉ: FirewallRaz (Private) : {D5E631E1-E6F0-4272-9F6F-811F92AA0EF3} SUPPRIMÉ: FirewallRaz (Private) : {2AFDF9B4-FC10-4D55-8327-3D17E04333AB} SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{68BBA12F-F7E2-479B-A0A6-04077DD9FC68}C:\users\carinebroos\appdata\local\akamai\netsession_win.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{E649A602-E620-41E6-913A-3E01B7A0A7AB}C:\users\carinebroos\appdata\local\akamai\netsession_win.exe SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{A39DD0D8-746F-433C-B2E7-55C0E9F80B36}C:\program files\freetorrentviewer\freetorrentviewer.exe SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{53D150CA-F1D2-4E29-A90E-60DC7819C444}C:\program files\freetorrentviewer\freetorrentviewer.exe SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{EF13B1DD-7F62-4EC3-A977-81153D02080B}C:\Program Files\freetorrentviewer\freetorrentviewer.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{3B3C98B4-F7B6-41D1-B0C0-E5FE7642F85A}C:\Program Files\freetorrentviewer\freetorrentviewer.exe SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{0AEAD01F-98AE-4B8B-BA77-63F0C4BE7287}C:\users\carinebroos\appdata\roaming\dropbox\bin\dropbox.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{E1EAE41B-B42F-4AC3-9491-46AAF87328B1}C:\users\carinebroos\appdata\roaming\dropbox\bin\dropbox.exe SUPPRIMÉ: FirewallRaz (Private) : {7053313D-72FF-471E-A308-7B7249A01F23} SUPPRIMÉ: FirewallRaz (Private) : {BCC5E503-C7A4-4AA7-BF7A-527CA63DE4EE} SUPPRIMÉ: FirewallRaz (Private) : {75C434DB-080C-4292-A868-7F132A889977} SUPPRIMÉ: FirewallRaz (Private) : {B822350E-4BB9-49D4-91D6-3861F0EA92D3} ========== Dossiers ========== Aucun dossiers CLSID Local utilisateur vide SUPPRIMÉS Temporaires Windows (51) SUPPRIMÉS Flash Cookies (0) ========== Fichiers ========== SUPPRIMÉS Temporaires Windows (108) (65.629.337 octets) SUPPRIMÉS Flash Cookies (0) (0 octets) ========== Autre ========== NON TRAITÉ McAfee Security Scan Plus v3.11.149.2 ========== Récapitulatif ========== 1 : Clés du Registre 35 : Valeurs du Registre 3 : Dossiers 2 : Fichiers 1 : Logiciels 1 : Autre End of clean in 03mn 06s ========== Chemin de fichier rapport ========== C:\Users\carinebroos\AppData\Roaming\ZHP\ZHPFix[R1].txt - 9/08/2015 13:49:45 [3803] A+
  8. Bonjour Apollo ! La machine se comporte beaucoup mieux, encore un peu lente au démarrage (surement dû aux nombreux programmes qui s'activent au démarrage). Aucun souci pour moi. Tu trouveras en suivant le lien ci-dessous le rapport ZHP : http://www.cjoint.com/c/EHiuvmPp4Td Bonne soirée
  9. Salut Apollo ! Tu trouveras ci-dessous le rapport SFTGC : http://www.cjoint.com/c/EHhbNauc7Wd Ensuite tu trouveras le rapport d'analyse MBAM ci-dessous : Malwarebytes Anti-Malware www.malwarebytes.org Date de l'analyse: 7/08/2015 Heure de l'analyse: 00:00 Fichier journal: MBAM analyse.txt Administrateur: Oui Version: 2.1.8.1057 Base de données de programmes malveillants: v2015.08.06.06 Base de données de rootkits: v2015.08.04.01 Licence: Gratuit Protection contre les programmes malveillants: Désactivé Protection contre les sites Web malveillants: Désactivé Autoprotection: Désactivé Système d'exploitation: Windows 7 Processeur: x86 Système de fichiers: NTFS Utilisateur: carinebroos Type d'analyse: Analyse des menaces Résultat: Terminé Objets analysés: 426723 Temps écoulé: 1 h, 2 min, 12 s Mémoire: Activé Démarrage: Activé Système de fichiers: Activé Archives: Activé Rootkits: Activé Heuristique: Activé PUP: Activé PUM: Activé Processus: 0 (Aucun élément malveillant détecté) Modules: 0 (Aucun élément malveillant détecté) Clés du registre: 12 Trojan.Vundo, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{56256A51-B582-467e-B8D4-7786EDA79AE0}, En quarantaine, [940a4eb78efd52e40b6b9f24dd25966a], PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32LDR , En quarantaine, [fba3bc495d2ee74feb69bee56b996e92], PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE, En quarantaine, [673753b21d6ee94db447c1e16e9646ba], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, En quarantaine, [3866a0654b407fb79648f6aee61eae52], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-19\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, En quarantaine, [1d8183824b40ad89b02e6c38a55f6e92], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-20\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, En quarantaine, [dac4c045f59652e4e6f8e2c218ec827e], PUP.Optional.ConduitTB.Gen, HKU\S-1-5-21-2310242990-1783498382-483004648-1001\SOFTWARE\GOOGLE\CHROME\NATIVEMESSAGINGHOSTS\nmhostct2851639, En quarantaine, [009e867fd3b8b482052aef27659eda26], PUP.Optional.FunWebProducts.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\APPDATALOW\SOFTWARE\Fun Web Products, En quarantaine, [f1adc73ecfbc2412b632f85325de59a7], PUP.Optional.FunWebProducts.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\APPDATALOW\SOFTWARE\FunWebProducts, En quarantaine, [acf23bcacac1e25409e073d8f013619f], PUP.Optional.PriceGong.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, En quarantaine, [613d12f39af12f07bd4cf53b11f25aa6], PUP.Optional.uTorrentBar.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\APPDATALOW\SOFTWARE\uTorrentBar_FR, En quarantaine, [247af411d4b7d561b126bb7b2ad96c94], PUP.Optional.MyWebSearch.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{56256A51-B582-467E-B8D4-7786EDA79AE0}, En quarantaine, [415d3acbc8c32511a89cbae7e2229e62], Valeurs du registre: 9 PUP.Optional.uTorrentBar.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}, En quarantaine, [e4babc495734b58119b21282f9092ad6], PUP.Optional.uTorrentBar.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}, ¹î ÷®ŠO—ûƒç°?Ž, En quarantaine, [e4babc495734b58119b21282f9092ad6] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130606339623310073, En quarantaine, [5d418a7b6c1fec4a2231e2c17f8555ab] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130606339623310073, En quarantaine, [edb124e1dcafa2944013960d699bec14] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130606339623310073, En quarantaine, [cbd3b154f09b55e13023b8eb15efd828] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130606339623310073, En quarantaine, [425cd53093f8a195e46f8a19867e0ef2] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr |{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130606339623310073, En quarantaine, [fba3bc495d2ee74feb69bee56b996e92] PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, En quarantaine, [673753b21d6ee94db447c1e16e9646ba] PUP.Optional.MyWebSearch.A, HKU\S-1-5-21-2310242990-1783498382-483004648-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{56256A51-B582-467e-B8D4-7786EDA79AE0}|URL, http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=GRxdm057YYBE&ptnrS=GRxdm057YYBE&si=98570&ptb=_veh25NGpZ37HjqsZZYSdg&ind=2011110307&n=77df1ba3&psa=&st=sb&searchfor={searchTerms}, En quarantaine, [415d3acbc8c32511a89cbae7e2229e62] Données du registre: 0 (Aucun élément malveillant détecté) Dossiers: 85 PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\adapter, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\abstractbutton, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\abstractbutton\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\alert, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\alert\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\icons, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\generic, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\generic\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\link, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\link\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\images, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\rss, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\rss\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\thirdparty, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\thirdparty\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\uninstall, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\uninstall\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\weather, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\weather\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\foreground, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\radioWrapper, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\background, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\libs, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\_metadata, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], Fichiers: 263 FraudTool.YAC, C:\Users\carinebroos\AppData\Roaming\ZHP\Quarantine\yet_another_cleaner.exe, En quarantaine, [0a940ef7d2b97db98516b1cc0afb5ba5], PUP.Optional.AnyProtect.A, C:\Users\carinebroos\AppData\Roaming\ZHP\Quarantine\AnyProtectEx\Uninstall.exe, En quarantaine, [d6c811f47d0eb2844de6354706ff34cc], PUP.Optiona.ConduitTB.Gen, C:\Users\carinebroos\AppData\Roaming\ZHP\Quarantine\uTorrentBar_FR\ldrtbuTor.dll, En quarantaine, [d5c95ca9e9a2f14577a34736996cd030], PUP.Optiona.ConduitTB.Gen, C:\Users\carinebroos\AppData\Roaming\ZHP\Quarantine\uTorrentBar_FR\tbuTor.dll, En quarantaine, [abf38f76b9d29a9c8b8f6c119570d32d], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RRXDWMO.exe, En quarantaine, [415dea1bdfacb97dad4269c034cd9c64], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RSZLI25.exe, En quarantaine, [108e0df8bccfc274519e6cbd1be6dc24], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RT2R5CM.exe, En quarantaine, [7b234bba0c7f90a65e7938c5d72905fb], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$REWURSD.dll, En quarantaine, [d3cbaf56810a49ed70aa502dbd484ab6], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RWAZJBX.exe, En quarantaine, [48562adb8efd2412707fc06948b95ba5], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RMWJWXE.exe, En quarantaine, [e5b9df26f19a2f073bb481a8b849e020], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RE611XF.dll, En quarantaine, [a5f9c243cbc0b1859c7e017cb84ddb25], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RY3KOQB.exe, En quarantaine, [1b8352b30e7d91a56d82d257738e5da3], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RUG5PO7.dll, En quarantaine, [e5b9b94c553694a2a9718eef1ce9e719], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$R4WN6EC.exe, En quarantaine, [8d119f66b8d372c48d6294956b96bf41], PUP.Optional.AnyProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$R20SBQ2.tmp, En quarantaine, [a2fc32d34942e74fa98ab2ca828340c0], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RTGJ0QA.exe, En quarantaine, [f0aec144503bcf679443d429f50bbf41], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RIXN5KO.exe, En quarantaine, [039bcb3afd8e85b145aaba6f61a0fd03], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RVI1PVC.exe, En quarantaine, [009efc09f59651e5a82ff20b02fe7987], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RN577X1.exe, En quarantaine, [f3aba461e7a40f278a4d22db9d6341bf], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RN8JUXR.exe, En quarantaine, [4a541bea018a142230bf0a1f956c08f8], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RKKI9CX.exe, En quarantaine, [3e6072937f0c6fc712c5d6279c64e719], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RBUIIXY.exe, En quarantaine, [bbe3e71e1675fa3c7f7048e135ccd32d], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RCX1B7H.dll, En quarantaine, [1b837293fd8e241259c1b0cd9f6657a9], PUP.Optional.SearchProtect.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RI6IOO3.exe, En quarantaine, [67374db8e7a4ba7c7562a35a9769c23e], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$R00MQ7N.exe, En quarantaine, [7d21d72e22692214af40e54422df7888], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$R71FCOL.exe, En quarantaine, [643a44c1d6b5c0764aa5b77202ff1ce4], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RL1NK2I.exe, En quarantaine, [425c9273d6b569cdb13e0e1bef12639d], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RH3YOYK\ldrtbSear.dll, En quarantaine, [c8d61de8a1eaed498a9091ec15f0639d], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RH3YOYK\tbSea1.dll, En quarantaine, [1f7f3fc68efda6905cbe423b6b9a10f0], PUP.Optiona.ConduitTB.Gen, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RH3YOYK\tbSear.dll, En quarantaine, [742aed18cac1a09642d895e8f41114ec], PUP.Optional.Conduit.A, C:\$RECYCLE.BIN\S-1-5-21-2310242990-1783498382-483004648-1001\$RH6HTO2\SpSetup.exe, En quarantaine, [316dc2434744b97def8c1ed8669adb25], PUP.Optional.InstallCore, C:\Users\carinebroos\Downloads\Pazera_Free_MP4_to_AVI_Converter.exe, En quarantaine, [8b136d981675a591a641f11dcd38e21e], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\manifest.json, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\bg.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\buildVars, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\buildVars.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\companionSW.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\config.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\contentScript.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\contentScript.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\debug.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\debug.jade, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\extension_toolbar_api.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\initWidgetWindow.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\newTabContentScript.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\options.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spent.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spent.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spent.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spent2.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spent2.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spentJ.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spentK.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\spentK.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\startup.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\stub.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\stubby.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\superFrame.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\toolbar.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\toolbar.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\toolbarUI.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\toolbarUI.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\toolbarUI.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\url.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\adapter\adapterUtil.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\adapter\widget-adapter.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\abstractbutton\background\abstractButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\alert\background\alertButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\background\embedHtmlWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\html\embedHtmlTemplate.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\html\innerEmbedHtmlTemplate.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedhtml\js\embedHtmlUI.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\background\embedScriptWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\html\embedScriptTemplate.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\html\innerEmbedScriptTemplate.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\embedscript\js\embedScriptUI.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\background\FlareWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\icons\Icon_Flare_blue.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\icons\Icon_Flare_pink.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\flare\icons\Thumbs.db, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\generic\background\GenericWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\link\background\linkButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\README.txt, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\background\menuButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\css\menuframe.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\html\menuframe.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\images\right_arrow.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\images\right_arrow_white.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\js\jquery-1.7.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\js\menuframe.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\js\query-string.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\menu\js\underscore-1.3.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\rss\background\RssWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\thirdparty\background\thirdPartyWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\uninstall\background\uninstallButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\components\weather\background\weatherButton.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\bs.30.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\common.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\dynamic.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\enableDetect.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\eventListening.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\global.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\jquery-1.7.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\list-interaction.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\messageEventListener.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\navRedirector.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\paramReplacer.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\PartnerId.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\set.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\underscore-1.3.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\underscore-1.5.2.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\js\unifiedLogging.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widget-context-1.0.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\common.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\eventListening.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\jquery-1.7.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\list-interaction.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\set.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\common\underscore-1.3.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\radio-widget.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\css\radio-widget.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\js\radio-custom.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\js\radio-parser.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\js\radio-widget-ui.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\radio\js\radio-widget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss\rssWidget.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss\js\rss-widget-custom.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss\js\rss-widget-parse.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\rss\js\rss-widget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\invalid.json, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\jquery.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\qunit.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\qunit.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\resource.json, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\resource.xml, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\testWidget.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\test\testWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\widget.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\css\widget.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\js\nanigans-topapps-feed.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\js\topapps-config.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\topapps\js\widget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather\weatherButton.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather\css\weatherButton.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\common\widget-api\widgets\weather\js\weather.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\background\ApiBasedWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\background\widget-api-impl.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window\hiddenWidgetWindow.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window\hiddenWidgetWindow.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window\hiddenWidgetWindowInit.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window\widgetWindow.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\api\window\widgetWindow.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\background\updateSearch.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\background\updateSearchPromptBg.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\07_buttons2.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\08_buttons2.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\defaultSearchModal.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\defaultSearchModalInjector.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\defaultSearchModalInjector.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\tvf_btn_ok.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\tvf_btn_ok2.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\tvf_restart_alert_icon.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\tvf_restart_icon.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\defaultSearch\foreground\updateSearchPromptFg.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\background\MovieReviewsWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\css\movieReviews.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\html\movieReviews.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\moviereviews\js\movieReviews.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\background\RadioWidget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\css\toolbar-item.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\foreground\button.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\radioWrapper\radioWrapper.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\radio\radioWrapper\radioWrapper.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\background\searchBox.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\html\searchSuggestions.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\html\searchSuggestions.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\html\searchSuggestions.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\search\html\searchSuggestionsInit.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\css\supertab.css, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\html\supertab.html, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\newtabfork.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\reporting.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\srchsugg.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\supertab.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\unifiedLogging.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\components\supertab\js\__utm.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\arrowSprite.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\icon128.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\icon16.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\icon19disabled.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\icon19on.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\icon48.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\icons\tb_icon_search_disappearing_ask.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765555.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765558.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765580.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765581.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765582.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765584.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\223765598.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\down_arrow.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\IDR_PRODUCT_LOGO_16.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\IDR_WEBSTORE_ICON.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\magnifying_glass.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\RadioPlayerSprite.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\search_button.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\tvf_icon_guide.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\tvf_logo.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\images\wrench.png, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\chromeUtils.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\exeManager.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\exeManagerNMD.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\exePackageManager.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\focusManager.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\globalBlacklistManager.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\messaging.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\mutation_summary-min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\mutation_summary.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\nativeMessagingDispatcher.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\newTabInfo.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\newTabInitialize.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\options.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\readLocalStorage.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\reservespacefortoolbar.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\reservespaceifenabled.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\scriptInjector.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\searchContext.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\settingsOverrides.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\toolbarCookieParser.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\toolbarPreinit.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\underscore-1.3.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\URILoaderContentScript.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\Widget.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\widgetContentScriptInjectee.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\widgetFactory.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\js\widgetWindowManager.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\cache.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\ce.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\debug.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\ss.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\libs\jquery-1.7.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\libs\jquery-1.9.1.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\native\libs\underscore-1.5.2.min.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\activePing.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\buttonLogger.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\competitorDnsList.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\console.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\FFPreferencesPersister.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\httpTransport.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\HttpURL.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\internationalSearch.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\LocalStoragePersister.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\MindsparkGlobal.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\MindsparkGlobal.unitTest.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\MindsparkGlobalNotes.txt, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\rsvp-latest.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\searchSuggestLocale.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\testHttpTransport.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\unifiedLogger.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\unifiedLogging.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\universalConsole.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\shared\utils.js, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], PUP.Optional.Mindspark.A, C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkbnhlhcdndaamafgbelomapajcnjpde\12.14.7.40609_0\_metadata\verified_contents.json, En quarantaine, [0b93d82d9eed74c2ac443b4527de9d63], Secteurs physiques: 0 (Aucun élément malveillant détecté) (end) Bonne analyse... J'attends la suite des opérations PS : Je n'aurai qu'un accès limité à l'ordinateur pendant 2 jours... Ne t'étonne pas si je ne suis pas très réactif
  10. Bonjour Apollo ! Beaucoup de signes positifs déjà Ordinateur beaucoup moins lent, récupération de la connexion Internet... Merci... Comme demandé, tu trouveras les deux rapports ci-dessous : JRT : ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.5.5 (08.05.2015:1) OS: Windows 7 Home Premium x86 Ran by carinebroos on jeu. 06/08/2015 at 9:29:40,05 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services Successfully deleted: [service] sp_rsdrv2 [Reboot required] ~~~ Tasks Successfully deleted: [Task] C:\Windows\System32\tasks\PBRegVista ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{338C5D66-6B92-40A7-A216-9830D2E54103} ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{16F89A65-B073-1269-3E51-BF9987817B17} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{82A76710-4F98-4957-92BE-99648A4E2475} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8D2CAAF8-19D2-83CA-7CC0-4BFD26325A4B} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16F89A65-B073-1269-3E51-BF9987817B17} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82A76710-4F98-4957-92BE-99648A4E2475} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D2CAAF8-19D2-83CA-7CC0-4BFD26325A4B} ~~~ Files Successfully deleted: [File] C:\Users\carinebroos\Appdata\Local\nsk16E5.tmp Successfully deleted: [File] C:\Users\carinebroos\Appdata\Local\google\chrome\user data\default\local storage\chrome-extension_paoponfhfdfnjgddpnpjkambkcgdaaib_0.localstorage Successfully deleted: [File] C:\Users\carinebroos\Appdata\Local\google\chrome\user data\default\local storage\chrome-extension_paoponfhfdfnjgddpnpjkambkcgdaaib_0.localstorage-journal Successfully deleted: [File] C:\Users\carinebroos\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static.audienceinsights.net_0.localstorage Successfully deleted: [File] C:\Users\carinebroos\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static.audienceinsights.net_0.localstorage-journal ~~~ Folders ~~~ FireFox Successfully deleted the following from C:\Users\carinebroos\AppData\Roaming\mozilla\firefox\profiles\2sroiukh.default\prefs.js user_pref(browser.search.selectedEngine, Trovi search); Emptied folder: C:\Users\carinebroos\AppData\Roaming\mozilla\firefox\profiles\2sroiukh.default\minidumps [5 files] ~~~ Chrome [C:\Users\carinebroos\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset [C:\Users\carinebroos\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted: [C:\Users\carinebroos\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset [C:\Users\carinebroos\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on jeu. 06/08/2015 at 9:34:08,73 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ADWARE CLEANER : # AdwCleaner v4.208 - Rapport créé le 06/08/2015 à 09:43:47 # Mis à jour le 09/07/2015 par Xplode # Base de données : 2015-06-14.1 [serveur] # Système d'exploitation : Windows 7 Home Premium (x86) # Nom d'utilisateur : carinebroos - PORTABLECARINEB # Exécuté depuis : C:\Users\carinebroos\Desktop\adwcleaner_4.208.exe # Option : Nettoyer ***** [ Services ] ***** [#] Service Supprimé : sp_rsdrv2 ***** [ Fichiers / Dossiers ] ***** Dossier Supprimé : C:\Users\Invité\AppData\LocalLow\Conduit Dossier Supprimé : C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb Dossier Supprimé : C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgafdgpifcjhnbndlaohchedomablmc Dossier Supprimé : C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgijmhhfjnoaghamchnempaejcnogopj Dossier Supprimé : C:\ProgramData\mjgkomcgfbdcnmgpjkmjijkebjicfnhj Fichier Supprimé : C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_paoponfhfdfnjgddpnpjkambkcgdaaib_0 Fichier Supprimé : C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\paoponfhfdfnjgddpnpjkambkcgdaaib Fichier Supprimé : C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb Fichier Supprimé : C:\Windows\system32\drivers\sp_rsdrv2.sys Fichier Supprimé : C:\Users\carinebroos\daemonprocess.txt Fichier Supprimé : C:\Users\carinebroos\AppData\Roaming\aps.scan.quick.results Fichier Supprimé : C:\Users\carinebroos\AppData\Roaming\aps.scan.results Fichier Supprimé : C:\Users\carinebroos\AppData\Roaming\aps.uninstall.scan.results Fichier Supprimé : C:\Program Files\Mozilla Firefox\defaults\pref\itms.js ***** [ Tâches planifiées ] ***** ***** [ Raccourcis ] ***** ***** [ Registre ] ***** Clé Supprimée : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\DriversHQ.DriverDetective.Client.exe Donnée Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - 95.142.161.84:80 Donnée Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local;<local> ***** [ Navigateurs ] ***** -\\ Internet Explorer v9.0.8112.16421 -\\ Mozilla Firefox v39.0 (x86 fr) -\\ Google Chrome v32.0.1700.76 [C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Preferences] - Supprimée [Extension] : dhkplhfnhceodhffomolpfigojocbpcb [C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Preferences] - Supprimée [Extension] : ecgafdgpifcjhnbndlaohchedomablmc [C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Preferences] - Supprimée [Extension] : jgijmhhfjnoaghamchnempaejcnogopj [C:\Users\Invité\AppData\Local\Google\Chrome\User Data\Default\Preferences] - Supprimée [Extension] : mjgkomcgfbdcnmgpjkmjijkebjicfnhj ************************* AdwCleaner[R0].txt - [4319 octets] - [06/08/2015 09:40:08] AdwCleaner[s0].txt - [4082 octets] - [06/08/2015 09:43:47] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [4142 octets] ##########
  11. Salut Apollo ! Merci pour ton aide Toutes les opérations se sont bien déroulées... Ci-dessous les rapports CTR et ZHP. J'attends de tes nouvelles pour la suite des instructions. Merci encore ! CTR : Rapport de Contrôle restrictions Pierre13 (CTR version 2.0.0.2 ) du 05\08\2015 à 23:41:58 PC de carinebroos Windows 7 Home Premium (32 bits) Réparation erreur 2203 effectuée. Contrôle présence restrictions [TROJ_POWELIKS.B] clé noprotectedmodebanner supprimée. [TROJ_POWELIKS.B] clé feature_browser_emulation supprimée. [bKDR_BLACKEN.A] clé Check_Associations supprimée. [bKDR_BLACKEN.A] clé PopupMgr corrigée. [bKDR_BLACKEN.A] clé PhishingFilter corrigée. [bKDR_BLACKEN.A] clé WarnOnClose corrigée. Autorisation installation sponsor Java supprimée. Restriction mise à jour Chrome supprimée. Restriction Affichage Documents récents supprimée. Restriction Affichage Documents supprimée. Restriction synchronisation en arrière-plan des flux d’informations et des Web Slices supprimée. Restriction découverte des flux RSS et des Web Slices supprimée. Restriction UpperFilters Bluetooth supprimée. Restriction LowerFilters Bluetooth supprimée. Pavé numérique activé. Restriction utilisateur pour Windows Installer supprimée. Recherche Windows Update rétablie. Service Pare feu Windows désactivé. 232 restrictions contrôlées. 17 restriction(s) réparée(s). Re démarrer le PC pour prendre en compte la ou les réparations. Le rapport est sur le bureau (C:\Users\carinebroos\Desktop\CTR.txt) ---------------------------- ZHP : ~ ZHPCleaner v2015.8.5.315 by Nicolas Coolman (2015/08/5) ~ Run by carinebroos (Administrator) (06/08/2015 00:14:00) ~ Site : http://www.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Pas de fichier réseau ~ Type : Nettoyer ~ Report : C:\Users\carinebroos\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\carinebroos\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) ~ Windows 7 Home Premium, 32-bit (Build 7600) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (3) SUPPRIMÉ: [2sroiukh.default] - user_pref("browser.newtab.url", "http://search.conduit.com/?gd=&ctid=CT3315513&octid=EB_ORIGINAL_CTI[...] =>PUP.Optional.Conduit DEPLACÉ fichier: C:\Users\carinebroos\AppData\Roaming\Mozilla\Firefox\Profiles\2sroiukh.default\searchplugins\trovi-search.xml =>PUP.Optional.TroviCom SUPPRIMÉ donnée: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride [bad : <local>] =>PUP.Optional.Proxy ---\\ Fichier hôte. (2) REMPLACÉ: 0.0.0.1 mssplus.mcafee.com ~ Nombre de redirections trouvées 1/23 ---\\ Tâche planifiée. (3) SUPPRIMÉ tâche: [APSnotifierPP1] [C:\Windows\Tasks\APSnotifierPP1.job (Not File) ] =>PUP.Optional.AnyProtect SUPPRIMÉ tâche: [APSnotifierPP2] [C:\Windows\Tasks\APSnotifierPP2.job (Not File) ] =>PUP.Optional.AnyProtect SUPPRIMÉ tâche: [APSnotifierPP3] [C:\Windows\Tasks\APSnotifierPP3.job (Not File) ] =>PUP.Optional.AnyProtect ---\\ Explorateur ( Dossiers, Fichiers ). (51) DEPLACÉ fichier: C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_poojneknoaeilfmfnkoplnohehegjjcd_0.localstorage =>PUP.Optional.Multiplug DEPLACÉ fichier: C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_poojneknoaeilfmfnkoplnohehegjjcd_0.localstorage-journal =>PUP.Optional.Multiplug DEPLACÉ fichier: C:\Users\carinebroos\Desktop\AnyProtect.lnk [bad : C:\Program Files\AnyProtectEx\AnyProtect.exe] =>PUP.Optional.AnyProtect DEPLACÉ fichier: C:\Users\carinebroos\AppData\Roaming\Mozilla\Firefox\Profiles\2sroiukh.default\searchplugins\trovi-search.xml =>PUP.Optional.TroviCom DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect DEPLACÉ fichier: C:\Windows\Installer\f036e.msi [PC Drivers HeadQuarters - ] =>PUP.Optional.Gen DEPLACÉ fichier: C:\Users\carinebroos\Downloads\yet_another_cleaner.exe =>PUP.Optional.YetAnotherCleaner DEPLACÉ fichier: C:\Windows\Installer\{5721A8EA-A30F-4F66-9046-3F40C43AE1DC}\ARPPRODUCTICON.exe [Acresso Software Inc. - InstallShield] =>PUP.Optional.DriverDetective DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\Google\Chrome\User Data\Default\Extensions\poojneknoaeilfmfnkoplnohehegjjcd =>PUP.Optional.Multiplug DEPLACÉ dossier: C:\ProgramData\poojneknoaeilfmfnkoplnohehegjjcd =>PUP.Optional.Multiplug DEPLACÉ dossier: C:\Program Files\AnyProtectEx =>PUP.Optional.AnyProtect DEPLACÉ dossier: C:\Program Files\PC Drivers HeadQuarters =>PUP.Optional.Gen DEPLACÉ dossier: C:\Program Files\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier: C:\ProgramData\39c338457d267dff =>PUP.Optional.CrossRider DEPLACÉ dossier: C:\ProgramData\Pngg2Image =>PUP.Optional.Multiplug DEPLACÉ dossier: C:\ProgramData\topbuyer =>PUP.Optional.Multiplug DEPLACÉ dossier: C:\ProgramData\PC Drivers HeadQuarters =>PUP.Optional.Gen DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Detective =>PUP.Optional.DriverDetective DEPLACÉ dossier: C:\Windows\System32\config\systemprofile\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier: C:\Users\Invité\AppData\LocalLow\BabylonToolbar =>PUP.Optional.Babylon DEPLACÉ dossier: C:\Users\Invité\AppData\LocalLow\FunWebProducts =>PUP.Optional.MyWebSearch DEPLACÉ dossier: C:\Users\Invité\AppData\LocalLow\MyWebSearch =>PUP.Optional.SimpleSearches DEPLACÉ dossier: C:\Users\Invité\AppData\LocalLow\PriceGong =>PUP.Optional.PriceGong DEPLACÉ dossier: C:\Users\Invité\AppData\LocalLow\uTorrentBar_FR =>PUP.Optional.uTorrentBar DEPLACÉ dossier: C:\Users\Invité\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{15FC9D4C-A3B9-4CB8-8316-E2AA643874EB} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{175D1ADA-4973-4D71-B716-3BD80A4ABB25} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{476362B7-A723-4915-8CED-CAC4683D26AB} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{6D8E0079-3FD4-4FE2-A561-4AB5D42CEBD0} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{9209543A-E9AF-4CBE-B729-FD91B0C51EED} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{B545964A-4837-408B-8522-62BC32DEE0FE} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{CA2C41ED-AC46-411B-B5FD-1941E71B16B8} =>Empty DEPLACÉ dossier: C:\Users\carinebroos\AppData\Local\{F999A3F1-B16E-4979-B27C-6F8E00DA5333} =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI6392.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI6FF4.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI7334.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI749C.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI7671.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI7807.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI87C1.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI8B89.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI8D8D.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI93DD.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI97D4.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9C86.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9FCD.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSID20D.tmp- =>Empty DEPLACÉ dossier: C:\Windows\Installer\MSID5B6.tmp- =>Empty ---\\ Base de Registres ( Clés, Valeurs, Données ). (29) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [http://search.conduit.com/Results.aspx?gd=&ctid=CT3315513&octid=EB_ORIGINAL_CTID&ISID=MB9D5A012-9884[...]] [Trovi search] (PUP.Optional.Conduit) SUPPRIMÉ clé*: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{16F89A65-B073-1269-3E51-BF9987817B17} [] =>PUP.Optional.Multiplug SUPPRIMÉ clé*: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8D2CAAF8-19D2-83CA-7CC0-4BFD26325A4B} [] =>PUP.Optional.Multiplug SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [http://search.conduit.com/Results.aspx?gd=&ctid=CT3315513&octid=EB_ORIGINAL_CTID&ISID=MB9D5A012-9884-492F-938C-2D5135587179&SearchSource=58&CUI=&UM=5&UP=SPA29ACCE1-9EF8-48E0-97D7-E61B409C4C1D&q={searchTerms}&SSPV=] =>PUP.Optional.Conduit SUPPRIMÉ clé*: HKLM\SOFTWARE\SearchProtect [] =>PUP.Optional.SearchProtect SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2310242990-1783498382-483004648-1001\Software\AnyProtect [] =>PUP.Optional.AnyProtect SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2310242990-1783498382-483004648-1001\Software\APN PIP [] =>PUP.Optional.Conduit SUPPRIMÉ clé: HKCU\Software\AnyProtect [] =>PUP.Optional.AnyProtect SUPPRIMÉ clé: HKCU\Software\APN PIP [] =>PUP.Optional.Conduit SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Driver Detective [] =>PUP.Optional.DriverDetective SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update BrowseSmart [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\SPPDCOM [] =>PUP.Optional.PCSpeedUp SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ASKInstaller_RASAPI32 [] =>Toolbar.Ask SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ASKInstaller_RASMANCS [] =>Toolbar.Ask SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\BrowseSmartSetup_RASAPI32 [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\BrowseSmartSetup_RASMANCS [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\BrowseSmart_Setup_RASAPI32 [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\BrowseSmart_Setup_RASMANCS [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_Setup_UN_RASAPI32 [] =>PUP.Optional.Mobogenie SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_Setup_UN_RASMANCS [] =>PUP.Optional.Mobogenie SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\updateBrowseSmart_RASAPI32 [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\updateBrowseSmart_RASMANCS [] =>PUP.Optional.BrowseSmart SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASAPI32 [] =>PUP.Optional.Conduit SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_FRAutoUpdateHelper_RASMANCS [] =>PUP.Optional.Conduit SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\VOPackage_RASAPI32 [] =>PUP.Optional.Downware SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\VOPackage_RASMANCS [] =>PUP.Optional.Downware SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00888B8A5D16B5A4D9F9DF44E3F268A9 [C:\Program Files\PC Drivers HeadQuarters\Driver Detective\fr\DriversHQ.DriverDetective.Client.ExceptionLogging.resources.dll (Not File)] =>PUP.Optional.Gen SUPPRIMÉ clé*: HKLM\Software\Classes\Installer\Products\AE8A1275F03A66F40964F3044CA31ECD [Driver Detective] =>PUP.Optional.DriverDetective SUPPRIMÉ clé*: HKLM\Software\Classes\Installer\Features\AE8A1275F03A66F40964F3044CA31ECD [Acresso Software Inc.] =>PUP.Optional.DriverDetective ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 2898 ~ Items trouvés : 1 ~ Items annulés : 0 ~ Items réparés : 88 ~ End of clean in 1 minutes =================== ZHPCleaner-[R]-06082015-00_15_08.txt ZHPCleaner--06082015-00_13_17.txt
  12. Bonjour le forum. Ma marraine (d'un certain âge que je tairais par respect ) m'a passé son ordinateur afin de pouvoir le "réparer" (surtout de pouvoir faire appel à votre expertise) Symptômes : Très lent au démarrage, plus de connexion Internet (que ce soit de chez elle ou de chez moi, en filaire comme en WiFi), de nombreux exécutables qui ne fonctionnent pas,... Elle n'est pas au faîte de la sécurité informatique et passe beaucoup de temps sur des jeux et télécharge beaucoup de softwares inutiles... J'ai tenté d'effectuer la procédure afin de vous poster le ZHP... Malheureusement, je n'arrive pas à : - utiliser Antivir - Installer la dernière version d'Internet Explorer - Effectuer une analyse ZHP (message erreur : c:\users\carinebroos\appdata\roaming\zhp\zhpdiag3.exe "Error: Variable must be of type "Object") Vu mon expérience sur le forum, j'ai effectué un scan avec Hijackthis... peut-être que cela sera une première piste. Il est disponible ci-dessous... Merci d'avance pour votre aide vis-à-vis de ma marraine pour qui l'ordi est un de ses rares loisirs. Neosapri --------------------------------- Logfile of Trend Micro HijackThis v2.0.5 Scan saved at 22:54:11, on 5/08/2015 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v9.00 (9.00.8112.16421) FIREFOX: 39.0 (x86 fr) Boot mode: Normal Running processes: C:\Windows\Explorer.EXE C:\Windows\system32\Dwm.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\ATK Hotkey\HControlUser.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe C:\Program Files\CyberLink\Shared files\brs.exe C:\Program Files\DivX\DivX Update\DivXUpdate.exe C:\Program Files\Browny02\Brother\BrStMonW.exe C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files\ControlCenter4\BrCtrlCntr.exe C:\Program Files\HP\HP Software Update\hpwuschd2.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Real\RealPlayer\Update\realsched.exe C:\Program Files\RealNetworks\RealDownloader\downloader2.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Users\carinebroos\AppData\Local\Akamai\netsession_win.exe C:\Users\carinebroos\AppData\Local\Akamai\netsession_win.exe C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\McAfee Security Scan\3.11.149\SSScheduler.exe C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe C:\Program Files\ControlCenter4\BrCcUxSys.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\taskmgr.exe C:\Program Files\Avira\Launcher\Avira.Systray.exe C:\Users\carinebroos\Desktop\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 95.142.161.84:80 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {338c5d66-6b92-40a7-a216-9830d2e54103} - (no file) O1 - Hosts: ::1 localhost O1 - Hosts: 0.0.0.1 mssplus.mcafee.com O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: ProShOpperi - {16F89A65-B073-1269-3E51-BF9987817B17} - (no file) O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll O2 - BHO: Spyware Terminator 2015 Internet Guard - {82A76710-4F98-4957-92BE-99648A4E2475} - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL O2 - BHO: surfkeuepit - {8D2CAAF8-19D2-83CA-7CC0-4BFD26325A4B} - (no file) O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [skytel] Skytel.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [HControlUser] "C:\Program Files\ATK Hotkey\HcontrolUser.exe" O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe O4 - HKLM\..\Run: [MobileConnect] C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe" O4 - HKLM\..\Run: [bDRegion] C:\Program Files\Cyberlink\Shared files\brs.exe O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files\ControlCenter4\BrCcBoot.exe /autorun O4 - HKLM\..\Run: [brStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe /AUTORUN O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [spywareTerminatorShield] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe O4 - HKLM\..\Run: [spywareTerminatorUpdater] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Avira Systray] C:\Program Files\Avira\Launcher\Avira.Systray.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\carinebroos\AppData\Local\Akamai\netsession_win.exe" O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" O4 - HKCU\..\Run: [HP Photosmart 5520 series (NET)] "C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN39G523650602:NW" -scfn "HP Photosmart 5520 series (NET)" -AutoStart 1 O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Système') O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user') O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.11.149\SSScheduler.exe O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O10 - Broken Internet access because of LSP chain gap (#8 in chain of 11 missing) O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.0.4.0/GarminAxControl_32.CAB O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://ips.poi.de/ips-opdata/layout/fnac/objects/jordan.cab O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files\Browny02\BrYNSvc.exe O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Service Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\WindowsMobile\rapimgr.dll,-104 (RapiMgr) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler Group - C:\Program Files\Spyware Terminator\st_rsser.exe O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (StiSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\WindowsMobile\wcescomm.dll,-40079 (WcesComm) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\Program Files\Common Files\X10\Common\X10nets.exe -- End of file - 29547 bytes
  13. Ben, je vais voir avec mon service IT pour cette histoire de IE. Au moins, je suis sur que ce n'est pas lié à une infection. Merci de ton aide... Je vais clôturer le sujet.
  14. Il n'y a pas de fichier ZHPFix report, mais bien : ZHPFix[R1) ZHPFixQuarantine Tu trouveras les deux rapports ci-dessous : Fix[R1] : Rapport de ZHPFix 2013.5.11.1 par Nicolas Coolman, Update du 11/05/2013 Fichier d'export Registre : Run by CTIInstallAD at 14.05.2013 12:36:39 High Elevated Privileges : OK Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601) Recycle Files Deleted ========== Registry Key ========== DELETED Key: HKCU\Software\AppDataLow\Software\Smartbar ========== Registry Value ========== DELETED RunValue: combofix DELETED RunValue: BrowserChoice DELETED RunValue: GrpConv NOT FOUND TCP Query User{EC946664-FF6F-4E36-AE33-C01AEF487A4F}C:/users/cfy/appdata/roaming/ywyz/laipx.exe NOT FOUND UDP Query User{77C83349-AB92-4162-9EA7-87AA9F0C7F2C}C:/users/cfy/appdata/roaming/ywyz/laipx.exe No Value in Standard Profile Register Key FirewallRaz : No Value in Domain Profile Register Key FirewallRaz : DELETED FirewallRaz (Domain) : TCP Query User{CB72BCE6-CFD7-4838-87BD-8550FB0E0E53}C:\program files (x86)\google\google earth\client\googleearth.exe DELETED FirewallRaz (Domain) : UDP Query User{92C4057F-C559-48E6-850C-C87426424436}C:\program files (x86)\google\google earth\client\googleearth.exe DELETED FirewallRaz (Private) : {BE8E5981-8894-4C82-9E83-D9257CC635FE} DELETED FirewallRaz (Private) : {D2E7FB6B-3D42-4495-A76D-C7C0BF881295} DELETED FirewallRaz (Domain) : TCP Query User{BF6CB952-B356-42CB-9956-0D14D0822608}C:\program files (x86)\connectify\connectify.exe DELETED FirewallRaz (Domain) : UDP Query User{C7A1DF88-6056-4687-AC26-861AF45C19A4}C:\program files (x86)\connectify\connectify.exe DELETED FirewallRaz (Domain) : TCP Query User{EC946664-FF6F-4E36-AE33-C01AEF487A4F}C:\users\cfy\appdata\roaming\ywyz\laipx.exe DELETED FirewallRaz (Domain) : UDP Query User{77C83349-AB92-4162-9EA7-87AA9F0C7F2C}C:\users\cfy\appdata\roaming\ywyz\laipx.exe ProxyFix : Proxy killed successfully DELETED ProxyServer Value DELETED ProxyEnable Value DELETED EnableHttp1_1 Value DELETED ProxyHttp1.1 Value DELETED ProxyOverride Value ========== Repertory ========== No Empty CLSID Directories ========== File ========== NOT FOUND File: c:\combofix\cf22055.3xe \c c:\combofixcombobatch.bat DELETE on Reboot c:\windows\system32\browserchoice.exe DELETED File: c:\windows\ie9_main.log DELETED File: c:\windows\ie10_main.log DELETED Flash Cookies DELETED Window Temporary ========== Restoration ========== Restore System Point created succefully ========== Summary ========== 1 : Registry Key 21 : Registry Value 1 : Repertory 6 : File 1 : Restoration End of clean in 00mn 28s ========== Report File ========== C:\ZHP\ZHPFix[R1].txt - 14.05.2013 12:36:40 [2572] ZHPFixQuarantine : C:\ZHP\Quarantine\browserchoice.exe.VIR,c:\windows\system32\browserchoice.exe C:\ZHP\Quarantine\ie9_main.log.VIR,c:\windows\ie9_main.log C:\ZHP\Quarantine\ie10_main.log.VIR,c:\windows\ie10_main.log
  15. salut Pear et merci de ton aide... J'ai réussi à installer Chrome. Aucun souci avec cet explorateur. Le rapport ZHP se trouve à l'adresse suivante : pjjoint.malekal.com - Submit a file Merci !
  16. Bonjour le forum ! J'ai un problem avec mon ordinateur depuis ce matin (qui correspond à la dernière mise à jour Windows effectuée hier soir avant de quitter le bureau). Internet Explorer ne fonctionne plus correctement. Les dysfonctionnements sont les suivants : - Les sites web ne sont accessibles que par des interactions dans la fenêtre de l'explorateur (ca veut dire que lorsque je tape l'adresse forum.zebulon.fr dans la barre d'adresse, rien ne se passe. Je dois taper l'adresse dans la recherche google et avancer par clic. - Auto correcteur très intrusive (ce qui explique les fautes d'ortho dans ce message) - Impossibilité d'utiliser une autre tab dans Internet Explorer - ... Je ne sais pas s'il y a contamination, c'est peut-être un problem de la MàJ d'IE (qui vient de passer en V10). Si pas de contamination, désolé du derangement. Voici le rapport hijackthis : Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:17:47, on 14/05/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16537) Boot mode: Normal Running processes: C:\Users\CFY\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe C:\Program Files (x86)\CommunicationsClients\osoupd.exe C:\Program Files (x86)\McAfee\Common Framework\McTray.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Users\CFY\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ACPXNNFB\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.fr - Actualités, magazines people & féminin, Outlook et Hotmail R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.fr - Actualités, magazines people & féminin, Outlook et Hotmail R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120924084100.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [iMSS] "C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PIconStartup.exe" O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe" O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" O4 - HKLM\..\Run: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe" /StartedFromRunKey O4 - HKLM\..\Run: [shStatEXE] "C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE O4 - HKLM\..\Run: [CommunicationsClients Auto Update Service] C:\Program Files (x86)\CommunicationsClients\osoupd.exe O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript O4 - HKLM\..\RunOnce: [GrpConv] grpconv -o O4 - Startup: Dropbox.lnk = C:\Users\CFY\AppData\Roaming\Dropbox\bin\Dropbox.exe O4 - Global Startup: Dell System Manager.lnk = C:\Program Files\Dell\Dell System Manager\DCPSysMgr.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000 O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105 O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://akamaicdn.webex.com/client/WBXclient-T27L10NSP32EP5-14362/webex/ieatgpc1.cab O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = CTI.local O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = CTI.local O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = CTI.local O18 - Protocol: amsdoc - {F04C7A4A-90E9-11D2-8A40-00A0C91D1F13} - C:\Program Files (x86)\Common Files\ams.hinrichs+müller GmbH\AMSDOCUI.dll O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systèmes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe O23 - Service: Credential Vault Host Control Service - Broadcom Corporation - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe O23 - Service: Credential Vault Host Storage - Broadcom Corporation - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe O23 - Service: Dell System Manager Service (dcpsysmgrsvc) - Dell Inc. - c:\Program Files\Dell\Dell System Manager\DCPSysMgrSvc.exe O23 - Service: DCService.exe - Unknown owner - C:\ProgramData\DatacardService\DCService.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: FF Install Filter Service (InstallFilterService) - Unknown owner - C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\InstallFilterService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\Program Files (x86)\Astaro\Astaro SSL VPN Client\bin\openvpnserv.exe O23 - Service: OSO Update Service - eTellicom - C:\Program Files (x86)\CommunicationsClients\osoausvc.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel® Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe O23 - Service: Remote Solver for Flow Simulation 2011 - Mentor Graphics Corporation - C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe O23 - Service: RoxMediaDB12OEM - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe O23 - Service: Roxio Hard Drive Watcher 12 (RoxWatch12) - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: SecureStorageService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Secure Storage Manager\SecureStorageService.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe O23 - Service: NTRU TSS v1.2.1.34 TCS (tcsd_win32.exe) - Unknown owner - C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe O23 - Service: TdmService - Wave Systems Corp. - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Intel® Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 13552 bytes Merci pour votre aide !
  17. Salut Apollo ! Content de te revoir parmi nous Histoire de clôturer ce sujet (et vu qu'il s'agit de mon ordi pro ), tu peux me dire s'il reste encore quelque chose à faire ? Plus de problème d'alerte ou quoi que ce soit... Le scan Kaspersky n'a rien donné, juste encore quelques fichiers protégés... Bonne journée et bon weekend de Pâques !
  18. Merci Apollo ! Voici le rapport Delfix au cas où ! # DelFix v10.1 - Logfile created 20/03/2013 at 12:32:16 # Updated 23/02/2013 by Xplode # Username : CTIInstallAD - PROJ-CFY ~ Removing disinfection tools ... Deleted : \Qoobox Deleted : \32788R22FWJFW Deleted : \Combofix Deleted : C:\Users\CTIinstallAD\Desktop\RK_Quarantine Deleted : C:\Users\CTIinstallAD\Desktop\RKreport[1]_S_03192013_02d0917.txt Deleted : C:\Users\CTIinstallAD\Desktop\RKreport[2]_D_03192013_02d0919.txt Deleted : C:\Windows\grep.exe Deleted : C:\Windows\PEV.exe Deleted : C:\Windows\NIRCMD.exe Deleted : C:\Windows\MBR.exe Deleted : C:\Windows\SED.exe Deleted : C:\Windows\SWREG.exe Deleted : C:\Windows\SWSC.exe Deleted : C:\Windows\SWXCACLS.exe Deleted : C:\Windows\Zip.exe Deleted : HKLM\SOFTWARE\Swearware Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys ~ Cleaning system restore ... Deleted : RP #208 [scheduled Checkpoint | 03/01/2013 12:08:18] Deleted : RP #209 [scheduled Checkpoint | 03/11/2013 10:03:24] Deleted : RP #210 [Windows Update | 03/13/2013 14:32:08] New restore point created ! ########## - EOF - ########## Merci pour ton aide en tout cas. Je vais relancer un scan Kaspersky pour voir les différentiels. J'espère que tes problèmes persos se résoudront vite et bien. Courage. J'attends de tes nouvelles.
  19. HELP !!! Le redémarrage de l'ordi ne se passe pas bien. La procédure a été nickel, il a effacé quelques fichiers et dossiers et a lancé le redémarrage... Mais une fois l'ordi relancé, des pop-ups en cascade apparaissent et disparaissent... Ils sont tous liés à Combofix, j'ai réussi à identifier 2 processus : - Pev.3XE - CF (pas le temps de voir la suite) Je n'ai plus la main sur grand chose... Que faire ? Merci pour ton aide... EDIT : J'ai récupéré la main en mode sans échec... mais pas de rapport disponible. Les fichiers supprimés ne contenaient aucune info qui permettait de lier à "4737453rar.exe". Il a supprimé 2 polices (de dafont) et de fichiers et dossiers dans "roaming". Je peux pas te dire plus. Que dois-je faire ?
  20. J'ai uploadé à nouveau le rapport de Kaspersky, en espérant que ca marche © CJoint.com, 2012 J'attaque Combofix en mode sans-échec.
  21. Appollo, Il semblerait que je n'aie pas les droits pour désactiver Mc Afee (comme je te l'ai dit, il s'agit de mon ordinateur professionel). La procédure metionnée dans ton lien n'est pas applicable (je n'arrive pas à la console en double-cliquant sur l'icône). Je peux quand même avancer avec ComboFix ? EDIT : J'ai la console, mais pas le "Menu avancé".
  22. Salut Apollo ! Aucune menace détectée par Kaspersky. Cependant plusieurs centaines de fichiers n'ont pas été analysés. Tu trouveras le rapport concernant ces fichiers via le lien ci-dessous : © CJoint.com, 2012 Je t'invite à te focaliser sur certaines lignes, contenant la référence dont je t'ai parlé dans mon dernier message : 347-348 693-694 705-706 708-709 712-715 716 ? (je ne sais pas à quoi c'est lié) 718-719 (celle-là est étrangement liée à l'exécutable Kaspersky) 721-722 731-732 733-734 Par contre, Mc Afee est beaucoup plus calme. La source du problème est peut-être réglée, mais il resterait des traces. Ou alors je me trompe totalement. J'attends tes instructions.
  23. Le processus est lancé. Après 5h30 de scan, il lui reste encore 3 heures. A l'heure actuelle, aucune menace n'a été identifiée. Cependant, un pop-up apparaît de temps en temps. Il fait état que le fichier analysé est protégé par un mot de passe. Ledit fichier est la plupart du temps, lié à l'exécutable "4737453rar.exe". Après l'avoir googlé, il apparaît que cet exécutable est lié au Troyen qui m'a infecté (Trojan Generic). Je te posterai le rapport final demain, une fois le scan complété. Je te postais la petite info comme ça, juste au cas où. Bonne soirée et à demain !
  24. Salut Apollo ! Le rapport SFT : © CJoint.com, 2012 Le rapport MBAM : Malwarebytes Anti-Malware 1.70.0.1100 www.malwarebytes.org Version de la base de données: v2013.03.19.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 CTIInstallAD :: PROJ-CFY [administrateur] 19.03.2013 10:31:40 mbam-log-2013-03-19 (10-31-40).txt Type d'examen: Examen complet (C:\|D:\|E:\|S:\|) Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM Options d'examen désactivées: P2P Elément(s) analysé(s): 453781 Temps écoulé: 1 heure(s), 19 minute(s), 11 seconde(s) Processus mémoire détecté(s): 0 (Aucun élément nuisible détecté) Module(s) mémoire détecté(s): 0 (Aucun élément nuisible détecté) Clé(s) du Registre détectée(s): 0 (Aucun élément nuisible détecté) Valeur(s) du Registre détectée(s): 0 (Aucun élément nuisible détecté) Elément(s) de données du Registre détecté(s): 0 (Aucun élément nuisible détecté) Dossier(s) détecté(s): 0 (Aucun élément nuisible détecté) Fichier(s) détecté(s): 5 C:\Users\CFY\AppData\Local\Temp\ebfyzrtxcy.pre (Trojan.Ransom.ED) -> Mis en quarantaine et supprimé avec succès. C:\Users\CFY\AppData\Local\Temp\Sifpqftdgv\zhyejppwee.exe (Trojan.Ransom.ED) -> Mis en quarantaine et supprimé avec succès. C:\Users\CFY\AppData\Local\Temp\Yvkpqdpuln\zvfnjmyuu.exe (Trojan.Ransom.ED) -> Mis en quarantaine et supprimé avec succès. C:\Users\CFY\AppData\Roaming\Ority\qybog.exe (Trojan.Ransom.ED) -> Mis en quarantaine et supprimé avec succès. C:\Users\CFY\AppData\Roaming\kb00956991.exe (Trojan.Agent.Gen) -> Mis en quarantaine et supprimé avec succès. (fin) Mais à la fin, Mc Afee s'est réveillé annonçant d'autres fichiers contaminés. Ce serait donc pas encore fini Mais je laisse le pro analyser et me donner la suite des opérations.
  25. Salut Apollo. Encore une fois, merci pour ton aide. Voici le rapport "Scan" de RK : RogueKiller V8.5.4 [Mar 18 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : RogueKiller - Geeks to Go Forums Website : Download RogueKiller (Official website) Blog : tigzy-RK Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : CTIInstallAD [Admin rights] Mode : Scan -- Date : 03/19/2013 09:17:27 | ARK || FAK || MBR | ¤¤¤ Bad processes : 3 ¤¤¤ [sVCHOST] svchost.exe -- C:\Windows\SysWOW64\svchost.exe [x] -> KILLED [TermProc] [sUSP PATH] kb00956991.exe -- C:\Users\CFY\AppData\Roaming\kb00956991.exe [-] -> KILLED [TermProc] [sVCHOST] svchost.exe -- C:\Windows\SysWOW64\svchost.exe [x] -> KILLED [TermProc] ¤¤¤ Registry Entries : 10 ¤¤¤ [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : ynbxmyuu (C:\Users\CFY\AppData\Local\Temp\Yvkpqdpuln\zvfnjmyuu.exe) [-] -> FOUND [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : wloupwee (C:\Users\CFY\AppData\Local\Temp\Sifpqftdgv\zhyejppwee.exe) [-] -> FOUND [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : KB00956991.exe ("C:\Users\CFY\AppData\Roaming\KB00956991.exe") [-] -> FOUND [HJPOL] HKLM\[...]\System : DisableTaskMgr (0) -> FOUND [HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> FOUND [HJPOL] HKLM\[...]\Wow6432Node\System : DisableTaskMgr (0) -> FOUND [HJPOL] HKLM\[...]\Wow6432Node\System : DisableRegistryTools (0) -> FOUND [HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED] ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:\Windows\system32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD3200BEKT-75PVMT0 +++++ --- User --- [MBR] 8429958ab84a0fc7aec054717ac6dd64 [bSP] c5393ef7ea843aab955e667723ef096e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 39 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 81920 | Size: 15001 Mo 2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 30803968 | Size: 81920 Mo 3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 198576128 | Size: 208284 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: SanDisk U3 Cruzer Micro USB Device +++++ --- User --- [MBR] f9fea5fa2c02941e7b8826eb1f747bd8 [bSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 38 | Size: 3827 Mo User = LL1 ... OK! Error reading LL2 MBR! Finished : << RKreport[1]_S_03192013_02d0917.txt >> RKreport[1]_S_03192013_02d0917.txt Voici le rapport "suppression" de RK : RogueKiller V8.5.4 [Mar 18 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : RogueKiller - Geeks to Go Forums Website : Download RogueKiller (Official website) Blog : tigzy-RK Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : CTIInstallAD [Admin rights] Mode : Remove -- Date : 03/19/2013 09:19:57 | ARK || FAK || MBR | ¤¤¤ Bad processes : 3 ¤¤¤ [sVCHOST] svchost.exe -- C:\Windows\SysWOW64\svchost.exe [x] -> KILLED [TermProc] [sUSP PATH] kb00956991.exe -- C:\Users\CFY\AppData\Roaming\kb00956991.exe [-] -> KILLED [TermProc] [sVCHOST] svchost.exe -- C:\Windows\SysWOW64\svchost.exe [x] -> KILLED [TermProc] ¤¤¤ Registry Entries : 8 ¤¤¤ [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : ynbxmyuu (C:\Users\CFY\AppData\Local\Temp\Yvkpqdpuln\zvfnjmyuu.exe) [-] -> DELETED [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : wloupwee (C:\Users\CFY\AppData\Local\Temp\Sifpqftdgv\zhyejppwee.exe) [-] -> DELETED [RUN][sUSP PATH] HKUS\S-1-5-21-12604286-108024426-1567891811-9757[...]\Run : KB00956991.exe ("C:\Users\CFY\AppData\Roaming\KB00956991.exe") [-] -> DELETED [HJPOL] HKLM\[...]\System : DisableTaskMgr (0) -> DELETED [HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> DELETED [HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> REPLACED (1) [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0) [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0) ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED] ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:\Windows\system32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD3200BEKT-75PVMT0 +++++ --- User --- [MBR] 8429958ab84a0fc7aec054717ac6dd64 [bSP] c5393ef7ea843aab955e667723ef096e : Windows Vista MBR Code Partition table: 0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 39 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 81920 | Size: 15001 Mo 2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 30803968 | Size: 81920 Mo 3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 198576128 | Size: 208284 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: SanDisk U3 Cruzer Micro USB Device +++++ --- User --- [MBR] f9fea5fa2c02941e7b8826eb1f747bd8 [bSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 38 | Size: 3827 Mo User = LL1 ... OK! Error reading LL2 MBR! Finished : << RKreport[2]_D_03192013_02d0919.txt >> RKreport[1]_S_03192013_02d0917.txt ; RKreport[2]_D_03192013_02d0919.txt Voilà ! Je suis dans l'attente de tes prochaines instructions. A+
×
×
  • Créer...