mira2008 a écrit :
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6226
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000
31/03/2011 18:05:09
mbam-log-2011-03-31 (18-05-09).txt
Type d'examen: Examen complet (C:\|D:\|)
Elément(s) analysé(s): 274432
Temps écoulé: 55 minute(s), 24 seconde(s)
Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 44
Processus mémoire infecté(s):
c:\Users\Hp\AppData\Roaming\063b60272379ee7d0fee8fc6cf01088d\satdll70snn.exe (Trojan.FakeAlert.Gen) -> 3956 -> Unloaded process successfully.
Module(s) mémoire infecté(s):
c:\Users\Hp\AppData\Local\PBDNld.dll (Trojan.Hiloti.Gen) -> Delete on reboot.
c:\Users\Hp\AppData\Local\ozosixejigulu.dll (Trojan.Agent.U) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Antimalware Doctor (Trojan.FakeAlert.Gen) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Antimalware Doctor Inc (Rogue.AntimalwareDoctor) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Ujefezi (Trojan.Hiloti.Gen) -> Value: Ujefezi -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\satdll70snn.exe (Trojan.FakeAlert.Gen) -> Value: satdll70snn.exe -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Dhefuzoza (Trojan.Agent.U) -> Value: Dhefuzoza -> Delete on reboot.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
c:\Users\Hp\AppData\Roaming\microsoft\Windows\start menu\Programs\antimalware doctor (Rogue.AntiMalwareDoctor) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
c:\Users\Hp\AppData\Local\PBDNld.dll (Trojan.Hiloti.Gen) -> Delete on reboot.
c:\Users\Hp\AppData\Roaming\063b60272379ee7d0fee8fc6cf01088d\satdll70snn.exe (Trojan.FakeAlert.Gen) -> Delete on reboot.
c:\Users\Hp\AppData\Local\Temp\7B2B.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2173397760.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\err.log54715135 (Trojan.FakeAlert.Gen) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\cmxsaronew.exe (Trojan.Hiloti.Gen) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\crsaxowmen.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1716997760.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1817369152.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1826166144.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1980757376.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\mrwancsxeo.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup32058880.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup3215182464.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup3311801088.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup3362195328.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup3524509248.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup3640064576.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup405129472.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup4121360384.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup64219904.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup653701184.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup96602880.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2203303168.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2349898240.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2468483840.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2659448128.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2712937856.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup2780219200.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup299568064.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1124551808.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup116760704.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1221612544.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1391982464.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1624505600.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1659859776.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1679126592.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\Temp\setup1681263744.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Roaming\microsoft\internet explorer\quick launch\antimalware doctor.lnk (Rogue.AntimalwareDoctor) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Roaming\microsoft\Windows\start menu\antimalware doctor.lnk (Rogue.AntimalwareDoctor) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Roaming\microsoft\Windows\start menu\Programs\Startup\antimalware doctor.lnk (Rogue.AntiMalwareDoctor) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Local\ozosixejigulu.dll (Trojan.Agent.U) -> Delete on reboot.
c:\Users\Hp\AppData\Roaming\microsoft\Windows\start menu\Programs\antimalware doctor\antimalware doctor.lnk (Rogue.AntiMalwareDoctor) -> Quarantined and deleted successfully.
c:\Users\Hp\AppData\Roaming\microsoft\Windows\start menu\Programs\antimalware doctor\uninstall.lnk (Rogue.AntiMalwareDoctor) -> Quarantined and deleted successfully.