A voir également:
- Page internet qui souvre indéfiniment,lenteur
- Lenteur pc - Guide
- Supprimer une page word - Guide
- Traduire une page internet - Guide
- Gps sans internet - Guide
- Word numéro de page 1/2 - Guide
1 réponse
Malwarebytes' Anti-Malware 1.41
Version de la base de données: 2927
Windows 6.0.6000
09/10/2009 01:03:46
mbam-log-2009-10-09 (01-03-46).txt
Type de recherche: Examen rapide
Eléments examinés: 86462
Temps écoulé: 7 minute(s), 19 second(s)
Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 14
Processus mémoire infecté(s):
C:\Users\Kris\AppData\Roaming\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kiurv (Trojan.Agent.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\softwarehelper (Rogue.Eorezo) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Users\Kris\Local Settings\Application Data\kiurv_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv.exe (Adware.Navipromo.H) -> Quarantined and deleted successfully.
c:\Users\Kris\AppData\Local\kiurv.exe (Trojan.Agent.H) -> Quarantined and deleted successfully.
C:\Users\Kris\AppData\Roaming\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Quarantined and deleted successfully.
C:\Windows\System32\bszip.dll (Worm.P2P) -> Quarantined and deleted successfully.
C:\Windows\System32\cmd.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\netstat.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\ping.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\regedit.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\taskkill.com (Worm.P2P) -> Quarantined and deleted successfully.
C:\Windows\System32\tasklist.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\tracert.com (Worm.Alcra) -> Quarantined and deleted successfully.
Version de la base de données: 2927
Windows 6.0.6000
09/10/2009 01:03:46
mbam-log-2009-10-09 (01-03-46).txt
Type de recherche: Examen rapide
Eléments examinés: 86462
Temps écoulé: 7 minute(s), 19 second(s)
Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 14
Processus mémoire infecté(s):
C:\Users\Kris\AppData\Roaming\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Unloaded process successfully.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kiurv (Trojan.Agent.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\softwarehelper (Rogue.Eorezo) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Users\Kris\Local Settings\Application Data\kiurv_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Kris\Local Settings\Application Data\kiurv.exe (Adware.Navipromo.H) -> Quarantined and deleted successfully.
c:\Users\Kris\AppData\Local\kiurv.exe (Trojan.Agent.H) -> Quarantined and deleted successfully.
C:\Users\Kris\AppData\Roaming\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (Rogue.Eorezo) -> Quarantined and deleted successfully.
C:\Windows\System32\bszip.dll (Worm.P2P) -> Quarantined and deleted successfully.
C:\Windows\System32\cmd.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\netstat.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\ping.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\regedit.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\taskkill.com (Worm.P2P) -> Quarantined and deleted successfully.
C:\Windows\System32\tasklist.com (Worm.Alcra) -> Quarantined and deleted successfully.
C:\Windows\System32\tracert.com (Worm.Alcra) -> Quarantined and deleted successfully.