PC-ATI est une équipe de bénévoles qui vous apporte une assistance entièrement gratuite, inscrivez-vous pour participer au forum.

My PC Mechanic

Guide d'auto-assistance pour la suppression des logiciels malveillants
Verrouillé
Avatar du membre
Amesam
Administrateur du site
Messages : 364
Enregistré le : lun. 5 juin 2017 17:23

My PC Mechanic

Message par Amesam » sam. 23 juin 2018 20:36

Qu'est-ce que My PC Mechanic ?


L'équipe de recherche Malwarebytes a déterminé que DriverUpdatePlus est un faux programme d'optimisation.
Il utilise des faux positifs pour convaincre les utilisateurs que leurs systèmes est remplit d'erreurs à corriger. Ensuite, il essaie de vous vendre son logiciel, en prétendant que cela supprimera ces problèmes.

Malwarebytes peut détecter et supprimer ce programme potentiellement indésirable (PUP.Optional.MyPCMechanic.TskLnk).


Image


Détails techniques :

Lignes possibles dans les rapports FRST :

Code : Tout sélectionner

() C:\Program Files\My-PC-Mechanic on {computername}\spct.exe
C:\Windows\System32\Tasks\My-PC-Mechanic_Logon
C:\Users\{username}\AppData\Roaming\My-PC-Mechanic on {computername}
C:\Users\Public\Desktop\My-PC-Mechanic.lnk
C:\ProgramData\My-PC-Mechanic on {computername}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My-PC-Mechanic on {computername}
C:\Program Files\My-PC-Mechanic on {computername}
( ) C:\Users\{username}\Desktop\mpcmsetup.exe

My-PC-Mechanic (HKLM\...\{9A5335DA-0F54-495A-8FE9-9370C8A4136E}_is1) (Version: 1.0.0.1112 - )
Task: {0EA2034F-7B7E-44AF-8A41-E815D77147A1} - System32\Tasks\My-PC-Mechanic_Logon => C:\Program Files\My-PC-Mechanic on {computername}\spct.exe [2018-01-05] ()

Modifications apportées :

Code : Tout sélectionner

File system details [View: All details] (Selection)
---------------------------------------------------
    Adds the folder C:\Program Files\My-PC-Mechanic on {computername}
       Adds the file AppRes.dll"="1/5/2018 4:16 PM, 657256 bytes, A
       Adds the file HtmlRenderer.dll"="1/5/2018 4:16 PM, 228200 bytes, A
       Adds the file HtmlRenderer.WinForms.dll"="1/5/2018 4:16 PM, 66920 bytes, A
       Adds the file Interop.IWshRuntimeLibrary.dll"="1/5/2018 4:16 PM, 55656 bytes, A
       Adds the file Microsoft.Win32.TaskScheduler.dll"="1/5/2018 4:16 PM, 177512 bytes, A
       Adds the file NAudio.dll"="1/5/2018 4:16 PM, 477544 bytes, A
       Adds the file spct.exe"="1/5/2018 4:16 PM, 2964840 bytes, A
       Adds the file spct.exe.config"="1/5/2018 4:16 PM, 4472 bytes, A
       Adds the file System.Data.SQLite.DLL"="1/5/2018 4:16 PM, 297320 bytes, A
       Adds the file TAFactory.IconPack.dll"="1/5/2018 4:16 PM, 43368 bytes, A
       Adds the file TaskScheduler.dll"="1/5/2018 4:16 PM, 47464 bytes, A
       Adds the file unins000.dat"="5/22/2018 8:46 AM, 77413 bytes, A
       Adds the file unins000.exe"="5/22/2018 8:46 AM, 1235304 bytes, A
       Adds the file unins000.msg"="5/22/2018 8:46 AM, 22701 bytes, A
    Adds the folder C:\Program Files\My-PC-Mechanic on {computername}\langs
       Adds the file danish_apc_da.ini"="11/10/2017 5:20 PM, 45856 bytes, A
       Adds the file Dutch_apc_nl.ini"="11/10/2017 5:21 PM, 46468 bytes, A
       Adds the file english_apc_en.ini"="12/20/2017 4:07 PM, 49468 bytes, A
       Adds the file finish_apc_fi.ini"="11/10/2017 5:22 PM, 46090 bytes, A
       Adds the file French_apc_fr.ini"="11/10/2017 5:23 PM, 50222 bytes, A
       Adds the file german_apc_de.ini"="11/10/2017 5:23 PM, 47854 bytes, A
       Adds the file italian_apc_it.ini"="11/10/2017 5:23 PM, 48368 bytes, A
       Adds the file japanese_apc_ja.ini"="12/20/2017 4:46 PM, 35540 bytes, A
       Adds the file norwegian_apc_no.ini"="11/10/2017 5:23 PM, 45262 bytes, A
       Adds the file portuguese_apc_ptbr.ini"="11/10/2017 5:23 PM, 47806 bytes, A
       Adds the file russian_apc_ru.ini"="11/10/2017 5:24 PM, 49706 bytes, A
       Adds the file spanish_apc_es.ini"="11/10/2017 5:24 PM, 50684 bytes, A
       Adds the file swedish_apc_sv.ini"="11/10/2017 5:24 PM, 44882 bytes, A
    Adds the folder C:\Program Files\My-PC-Mechanic on {computername}\x64
       Adds the file SQLite.Interop.dll"="1/5/2018 4:16 PM, 1182056 bytes, A
    Adds the folder C:\Program Files\My-PC-Mechanic on {computername}\x86
       Adds the file SQLite.Interop.dll"="1/5/2018 4:16 PM, 861032 bytes, A
    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My-PC-Mechanic on {computername}
       Adds the file Buy My-PC-Mechanic.lnk"="5/22/2018 8:46 AM, 972 bytes, A
       Adds the file My-PC-Mechanic.lnk"="5/22/2018 8:46 AM, 960 bytes, A
       Adds the file Uninstall My-PC-Mechanic.lnk"="5/22/2018 8:46 AM, 984 bytes, A
    Adds the folder C:\ProgramData\My-PC-Mechanic on {computername}
       Adds the file mpc.db"="10/3/2017 4:30 PM, 835584 bytes, A
       Adds the file mpcstartrepair_en.mp3"="9/25/2017 5:48 PM, 183442 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\My-PC-Mechanic on {computername}
       Adds the file Errorlog.txt"="5/22/2018 8:48 AM, 13384 bytes, A
       Adds the file exlist.bin"="5/22/2018 8:47 AM, 258253 bytes, A
       Adds the file param.ini"="5/22/2018 8:46 AM, 376 bytes, A
       Adds the file res.xml"="5/22/2018 8:49 AM, 12293 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\My-PC-Mechanic on {computername}\smico
    In the existing folder C:\Users\Public\Desktop
       Adds the file My-PC-Mechanic.lnk"="5/22/2018 8:46 AM, 942 bytes, A
    In the existing folder C:\Windows\System32\Tasks
       Adds the file My-PC-Mechanic_Logon"="5/22/2018 8:47 AM, 3074 bytes, A

Registry details [View: All details] (Selection)
------------------------------------------------
    [HKEY_LOCAL_MACHINE\SOFTWARE\aHR0cDovL3d3dy5hZHZhbmNlZHBjc3BlZWR1cC5jb20v\TXktUEMtTWVjaGFuaWM=\ACT]
       "data"="REG_BINARY, ....................................................................................................................................................................................................................................................................................................................................................
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9A5335DA-0F54-495A-8FE9-9370C8A4136E}_is1]
       "DisplayIcon"="REG_SZ", "C:\Program Files\My-PC-Mechanic on {computername}\spct.exe"
       "DisplayName"="REG_SZ", "My-PC-Mechanic"
       "DisplayVersion"="REG_SZ", "1.0.0.1112"
       "EstimatedSize"="REG_DWORD", 9741
       "Inno Setup: App Path"="REG_SZ", "C:\Program Files\My-PC-Mechanic on {computername}"
       "Inno Setup: Icon Group"="REG_SZ", "My-PC-Mechanic on {computername}"
       "Inno Setup: Language"="REG_SZ", "en"
       "Inno Setup: Setup Version"="REG_SZ", "5.5.8 (u)"
       "Inno Setup: User"="REG_SZ", "{username}"
       "InstallDate"="REG_SZ", "20180522"
       "InstallLocation"="REG_SZ", "C:\Program Files\My-PC-Mechanic on {computername}\"
       "MajorVersion"="REG_DWORD", 1
       "MinorVersion"="REG_DWORD", 0
       "NoModify"="REG_DWORD", 1
       "NoRepair"="REG_DWORD", 1
       "QuietUninstallString"="REG_SZ", ""C:\Program Files\My-PC-Mechanic on {computername}\unins000.exe" /SILENT"
       "UninstallString"="REG_SZ", ""C:\Program Files\My-PC-Mechanic on {computername}\unins000.exe""
    [HKEY_LOCAL_MACHINE\SOFTWARE\My-PC-Mechanic on {computername}]
       "affired"="REG_DWORD", 1
       "afterInstallUrl"="REG_SZ", "http://ins.entireactiv.com/install/mpm/?"
       "btnid"="REG_SZ", ""
       "cbkpoff"="REG_DWORD", 1
       "country"="REG_SZ", ""
       "cta"="REG_DWORD", 0
       "delay"="REG_DWORD", 0
       "dlllist"="REG_SZ", "PSMACHINE_64.DLL,MSSPELLCHECKINGFACILITY.DLL"
       "efosetting"="REG_DWORD", 1
       "EmailURL"="REG_SZ", ""
       "expired"="REG_DWORD", 0
       "fpxl"="REG_DWORD", 1
       "hdata"="REG_BINARY, ...........................................................................................................................................................................................................................................................................................
       "Installstring"="REG_SZ", "C:\Program Files\My-PC-Mechanic on {computername}"
       "isiunidu"="REG_DWORD", 0
       "islswc"="REG_DWORD", 0
       "isphone"="REG_DWORD", 0
       "issilent"="REG_DWORD", 0
       "LangCode"="REG_SZ", "en"
       "lpid"="REG_SZ", ""
       "lstregscancount"="REG_DWORD", 27
       "lstscandate"="REG_SZ", "5/22/2018 8:49:00 AM"
       "lstscanstat"="REG_DWORD", 2
       "lstsecscancount"="REG_DWORD", 0
       "lsttotalscancount"="REG_DWORD", 27
       "msl"="REG_DWORD", 1
       "ovoffdis"="REG_DWORD", 0
       "paramurl"="REG_SZ", "http://trkr.entireactiv.com/ipfiles/"
       "phone"="REG_SZ", ""
       "Phone_at"="REG_SZ", "+43 (0)720 902 309"
       "Phone_au"="REG_SZ", "(61)280-733403"
       "Phone_ch"="REG_SZ", "+41 (0)44 508 70 37"
       "Phone_de"="REG_SZ", "0800 1822 974"
       "Phone_fr"="REG_SZ", "05 82 84 04 06"
       "Phone_gb"="REG_SZ", "0800-031-5066"
       "Phone_ja"="REG_SZ", "0120-993-506"
       "Phone_jp"="REG_SZ", "0120-993-506"
       "Phone_lu"="REG_SZ", "0800 1822 974"
       "Phone_uk"="REG_SZ", "0800-031-5066"
       "Phone_us"="REG_SZ", "(855)-332-0124"
       "playsound"="REG_DWORD", 0
       "prereg"="REG_DWORD", 0
       "PurchaseURL"="REG_SZ", "http://store.advancedpcspeedup.com/mpm/price?"
       "pxl"="REG_SZ", "WAD2233_WAD2187_RUNT"
       "referurl"="REG_SZ", ""
       "reg"="REG_DWORD", 0
       "RenewURL"="REG_SZ", "http://store.advancedpcspeedup.com/mpm/renewal?"
       "runcam"="REG_DWORD", 1
       "runpixel"="REG_DWORD", 1
       "runsrc"="REG_DWORD", 1
       "showefo"="REG_DWORD", 0
       "showtn"="REG_DWORD", 0
       "showudurec"="REG_DWORD", 1
       "showunins"="REG_DWORD", 0
       "supporturl"="REG_SZ", "http://www.advancedpcspeedup.com/help/"
       "utm_campaign"="REG_SZ", "wadsphere"
       "utm_medium"="REG_SZ", ""
       "utm_pubid"="REG_SZ", "1d92a736-cecd-4fbd-9f74-ef26d8616e82"
       "utm_source"="REG_SZ", "wadsphere"
       "WebURL"="REG_SZ", "http://www.advancedpcspeedup.com/"
       "x-at"="REG_SZ", "64787"
       "x-ccode"="REG_SZ", "nl"
       "x-context"="REG_SZ", "d5SF3SLMVVAIMPI8104KQ4C8"
       "x-datetime"="REG_SZ", "05-22-2018 06:46:58 AM"
       "x-fetch"="REG_SZ", "1"
       "x-ip"="REG_SZ", "90_145_230_242"
       "x-plt"="REG_SZ", ""
       "x-var1"="REG_SZ", ""
       "x-var2"="REG_SZ", ""
       "x-var3"="REG_SZ", ""
    [HKEY_LOCAL_MACHINE\SOFTWARE\spct-pr]
       "affiliateid"="REG_SZ", ""
       "btnid"="REG_SZ", ""
       "country"="REG_SZ", ""
       "LangCode"="REG_SZ", "en"
       "lpid"="REG_SZ", ""
       "phone"="REG_SZ", ""
       "pxl"="REG_SZ", "WAD2233_WAD2187_RUNT"
       "referurl"="REG_SZ", ""
       "utm_campaign"="REG_SZ", "wadsphere"
       "utm_medium"="REG_SZ", ""
       "utm_pubid"="REG_SZ", "1d92a736-cecd-4fbd-9f74-ef26d8616e82"
       "utm_source"="REG_SZ", "wadsphere"
       "x-at"="REG_SZ", "64787"
       "x-context"="REG_SZ", "d5SF3SLMVVAIMPI8104KQ4C8"
       "x-var2"="REG_SZ", ""
       "x-var3"="REG_SZ", ""
    [HKEY_CURRENT_USER\Software\My-PC-Mechanic on {computername}]
       "btnid"="REG_SZ", ""
       "Installstring"="REG_SZ", "C:\Program Files\My-PC-Mechanic on {computername}"
       "LangCode"="REG_SZ", "en"
       "lpid"="REG_SZ", ""
       "pxl"="REG_SZ", "WAD2233_WAD2187_RUNT"
       "referurl"="REG_SZ", ""
       "utm_campaign"="REG_SZ", "wadsphere"
       "utm_medium"="REG_SZ", ""
       "utm_pubid"="REG_SZ", "1d92a736-cecd-4fbd-9f74-ef26d8616e82"
       "utm_source"="REG_SZ", "wadsphere"
       "x-at"="REG_SZ", "64787"
       "x-context"="REG_SZ", "d5SF3SLMVVAIMPI8104KQ4C8"
       "x-plt"="REG_SZ", ""
       "x-var1"="REG_SZ", ""
       "x-var2"="REG_SZ", ""
       "x-var3"="REG_SZ", ""
    [HKEY_CURRENT_USER\Software\My-PC-Mechanic on {computername}\1.0.0.1112]

Malwarebytes log :

Code : Tout sélectionner

-Log Details-
Scan Date: 5/22/18
Scan Time: 9:21 AM
Log File: c00790b7-5d90-11e8-8b3a-080027235d76.json
Administrator: Yes

-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.262
Update Package Version: 1.0.5198
License: Premium

-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: {computername}\{username}

-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 240060
Threats Detected: 57
Threats Quarantined: 57
Time Elapsed: 2 min, 50 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect

-Scan Details-
Process: 1
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\spct.exe, Quarantined, [5400], [488953],1.0.5198

Module: 7
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\x64\SQLite.Interop.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\Interop.IWshRuntimeLibrary.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\Microsoft.Win32.TaskScheduler.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\NAudio.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\spct.exe, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\System.Data.SQLite.DLL, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\TAFactory.IconPack.dll, Quarantined, [5400], [488953],1.0.5198

Registry Key: 10
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\My-PC-Mechanic_Logon, Quarantined, [6137], [490889],1.0.5198
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0EA2034F-7B7E-44AF-8A41-E815D77147A1}, Quarantined, [6137], [490889],1.0.5198
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{0EA2034F-7B7E-44AF-8A41-E815D77147A1}, Quarantined, [6137], [490889],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9A5335DA-0F54-495A-8FE9-9370C8A4136E}_is1, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\My-PC-Mechanic_Logon, Quarantined, [5400], [-1],0.0.0
PUP.Optional.MyPCMechanic.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0EA2034F-7B7E-44AF-8A41-E815D77147A1}, Quarantined, [5400], [-1],0.0.0
PUP.Optional.MyPCMechanic.TskLnk, HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0EA2034F-7B7E-44AF-8A41-E815D77147A1}, Quarantined, [5400], [-1],0.0.0
PUP.Optional.MasterPCCleaner, HKLM\SOFTWARE\aHR0cDovL3d3dy5hZHZhbmNlZHBjc3BlZWR1cC5jb20v, Quarantined, [1105], [440348],1.0.5198
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\My-PC-Mechanic on {computername}, Quarantined, [6137], [488952],1.0.5198
PUP.Optional.MasterPCCleaner, HKLM\SOFTWARE\SPCT-PR, Quarantined, [1105], [484509],1.0.5198

Registry Value: 3
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{9A5335DA-0F54-495A-8FE9-9370C8A4136E}_is1|INSTALLLOCATION, Quarantined, [6137], [488000],1.0.5198
PUP.Optional.MasterPCCleaner, HKLM\SOFTWARE\SPCT-PR|PXL, Quarantined, [1105], [484509],1.0.5198
PUP.Optional.MyPCMechanic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0EA2034F-7B7E-44AF-8A41-E815D77147A1}|PATH, Quarantined, [6137], [490886],1.0.5198

Registry Data: 0
(No malicious items detected)

Data Stream: 0
(No malicious items detected)

Folder: 4
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\x64, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\x86, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\PROGRAM FILES\My-PC-Mechanic on {computername}, Quarantined, [5400], [488953],1.0.5198

File: 32
PUP.Optional.MyPCMechanic, C:\WINDOWS\SYSTEM32\TASKS\My-PC-Mechanic_Logon, Quarantined, [6137], [490889],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\PROGRAM FILES\My-PC-Mechanic on {computername}\unins000.dat, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\danish_apc_da.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\Dutch_apc_nl.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\english_apc_en.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\finish_apc_fi.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\French_apc_fr.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\german_apc_de.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\italian_apc_it.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\japanese_apc_ja.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\norwegian_apc_no.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\portuguese_apc_ptbr.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\russian_apc_ru.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\spanish_apc_es.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\langs\swedish_apc_sv.ini, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\x64\SQLite.Interop.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\x86\SQLite.Interop.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\AppRes.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\HtmlRenderer.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\HtmlRenderer.WinForms.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\Interop.IWshRuntimeLibrary.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\Microsoft.Win32.TaskScheduler.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\NAudio.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\spct.exe, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\spct.exe.config, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\System.Data.SQLite.DLL, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\TAFactory.IconPack.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\TaskScheduler.dll, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\unins000.exe, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\Program Files\My-PC-Mechanic on {computername}\unins000.msg, Quarantined, [5400], [488953],1.0.5198
PUP.Optional.MyPCMechanic.TskLnk, C:\WINDOWS\SYSTEM32\TASKS\My-PC-Mechanic_Logon, Quarantined, [5400], [-1],0.0.0
PUP.Optional.MyPCMechanic, C:\USERS\{username}\DESKTOP\MPCMSETUP.EXE, Quarantined, [6137], [487993],1.0.5198

Physical Sector: 0
(No malicious items detected)


(end)

Publication autorisée par le Staff de Malwarebytes
Source

Image

Verrouillé