Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3796
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18882
26/02/2010 22:54:27
mbam-log-2010-02-26 (22-54-27).txt
Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 279483
Temps écoulé: 1 hour(s), 0 minute(s), 39 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 7
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vmedsjk (Trojan.Agent.H) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\firewall administrating (Backdoor.IRCBot) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.Homepage) -> Bad: (
http://www.postarticles.net) Good: (
http://www.Google.com/) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Users\Pierrot\Local Settings\Application Data\vmedsjk_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Pierrot\Local Settings\Application Data\vmedsjk_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Pierrot\Local Settings\Application Data\vmedsjk.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Users\Pierrot\Local Settings\Application Data\vmedsjk.exe (Adware.Navipromo.H) -> Delete on reboot.
c:\Users\Pierrot\AppData\Local\vmedsjk.exe (Trojan.Agent.H) -> Delete on reboot.
C:\Users\Pierrot\AppData\Local\Temp\ptu4521_tmp.exe (Adware.Casino) -> Quarantined and deleted successfully.
C:\Users\Public\infocard.exe (Backdoor.IRCBot) -> Delete on reboot