Rapport antivirus 2009

Fermé
Quetzal - 26 déc. 2008 à 16:39
 jet - 26 déc. 2008 à 16:44
Bonjour,

Merci aux contributeurs pour l'explication concernant la suppression de l'antivirus 2009 avec malwarebytes.

Voici le rapport :

Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1550
Windows 5.1.2600 Service Pack 3

26/12/2008 16:29:41
mbam-log-2008-12-26 (16-29-35).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 101729
Temps écoulé: 31 minute(s), 0 second(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 9
Clé(s) du Registre infectée(s): 10
Valeur(s) du Registre infectée(s): 7
Elément(s) de données du Registre infecté(s): 12
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 62

Processus mémoire infecté(s):
C:\Program Files\Antivirus 2009\av2009.exe (Rogue.Antivirus 2009) -> No action taken.

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\pikiriro.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\surosubo.dll (Trojan.Vundo.H) -> No action taken.
c:\WINDOWS\system32\tobuvuzi.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\kakenere.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\wiwejive.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\munokesu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\jogevoma.dll (Trojan.Vundo.H) -> No action taken.
c:\WINDOWS\system32\nizukipu.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\joretido.dll (Trojan.Vundo) -> No action taken.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4de7ba0f-7343-4eac-adb0-45d6188cb397} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4de7ba0f-7343-4eac-adb0-45d6188cb397} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4de7ba0f-7343-4eac-adb0-45d6188cb397} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037c7b8a-151a-49e6-baed-cc05fcb50328} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\e86723c6 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dubulomazu (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpmeb54105a (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\60933693942813527560005333423349 (Rogue.Antivirus 2009) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_CLASSES_ROOT\regfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\surosubo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\surosubo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\surosubo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: c:\windows\system32\tobuvuzi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: system32\tobuvuzi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: c:\windows\system32\kakenere.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: system32\kakenere.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\wiwejive.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\wiwejive.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: c:\windows\system32\nizukipu.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo) -> Data: system32\nizukipu.dll -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\Antivirus 2009 (Rogue.Antivirus 2009) -> No action taken.

Fichier(s) infecté(s):
C:\WINDOWS\system32\bepaleju.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ujelapeb.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\bimujofo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ofojumib.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\funotaku.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ukatonuf.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\hapowoko.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\okowopah.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\hohijuko.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\okujihoh.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kuzefawi.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\iwafezuk.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\pikiriro.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\oririkip.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\roliwiza.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\aziwilor.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\vinabino.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\onibaniv.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\wizisepu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\upesiziw.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\jogevoma.dll (Trojan.Vundo.H) -> No action taken.
c:\WINDOWS\system32\wiwejive.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\munokesu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\surosubo.dll (Trojan.Vundo.H) -> No action taken.
c:\WINDOWS\system32\tobuvuzi.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\kakenere.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\nizukipu.dll (Trojan.Vundo) -> No action taken.
c:\WINDOWS\system32\joretido.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\winsrc.dll (Trojan.BHO) -> No action taken.
C:\Documents and Settings\Arcane\Local Settings\Temp\Temporary Internet Files\Content.IE5\SXYZCLU7\style[1] (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP205\A0093595.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP206\A0094722.exe (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP206\A0094754.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP206\A0094752.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP206\A0094753.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP207\A0094789.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP211\A0097252.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP211\A0098302.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{3DBFEF71-A520-4E10-B596-65FD190CF8A0}\RP211\A0098303.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\lesuzeka.dll.tmp (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mosoveva.dll.tmp (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\nasijuye.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fuvokevu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pudimege.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\puvezisu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rohitelu.dll.tmp (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\sivuvaje.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tevupiru.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tibarozo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kegezadu.dll.tmp (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kivebeki.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hefihiru.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\juzusiwe.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vovugesi.dll.tmp (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yeruwuma.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yikiduta.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yinazeku.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\zayapilo.dll (Trojan.Vundo) -> No action taken.
C:\Program Files\Antivirus 2009\av2009.exe (Rogue.Antivirus 2009) -> No action taken.
C:\WINDOWS\system32\explorer32.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\ieupdates.exe (Trojan.Agent) -> No action taken.
A voir également:

1 réponse

salut va suprimer la selection des malwaire en les cochant
0