Malwarebytes' Anti-Malware 1.27
Version de la base de données: 1131
Windows 5.1.2600 Service Pack 2
09/09/2008 13:22:59
mbam-log-2008-09-09 (13-22-54).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 99957
Temps écoulé: 21 minute(s), 10 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 5
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 24
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr
entVersion\Uninstall\rhcekpj0e5f3 (Rogue.Multiple) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\rhcekpj0e5f3 (Rogue.Multiple) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\Control Panel\Desktop\wallpaper (Hijack.Wallpaper) -> No action taken.
HKEY_CURRENT_USER\Control Panel\Desktop\originalwallpaper (Hijack.Wallpaper) -> No action taken.
HKEY_CURRENT_USER\Control Panel\Desktop\convertedwallpaper (Hijack.Wallpaper) -> No action taken.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> No action taken.
Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre
ntVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre
ntVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
Dossier(s) infecté(s):
C:\Program Files\rhcekpj0e5f3 (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3 (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Autorun (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Autorun\HKCU (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Autorun\HKLM (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application
Data\rhcekpj0e5f3\Quarantine\Autorun\StartMenuAllU
sers (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application
Data\rhcekpj0e5f3\Quarantine\Autorun\StartMenuCurr
entUser (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\BrowserObjects (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\Judd\Application Data\rhcekpj0e5f3\Quarantine\Packages (Rogue.Multiple) -> No action taken.
Fichier(s) infecté(s):
C:\Program Files\eChanblard\EvID4226Patch.exe (Adware.Agent) -> No action taken.
C:\WINDOWS\system32\blphcakpj0e5f3.scr (Trojan.FakeAlert) -> No action taken.
C:\Program Files\rhcekpj0e5f3\database.dat (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\license.txt (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\MFC71.dll (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\MFC71ENU.DLL (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\msvcp71.dll (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\msvcr71.dll (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\rhcekpj0e5f3.exe (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\rhcekpj0e5f3.exe.local (Rogue.Multiple) -> No action taken.
C:\Program Files\rhcekpj0e5f3\Uninstall.exe (Rogue.Multiple) -> No action taken.
C:\Documents and Settings\All Users\Bureau\Antivirus XP 2008.lnk (Rogue.Antivirus) -> No action taken.
C:\WINDOWS\system32\tdssadw.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\tdssl.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\tdssmain.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\tdssinit.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\tdsslog.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\tdssservers.dat (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\drivers\tdssserv.sys (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\lphcakpj0e5f3.exe (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\phcakpj0e5f3.bmp (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\pphcakpj0e5f3.exe (Trojan.FakeAlert) -> No action taken.
C:\WINDOWS\system32\E.tmp (Trojan.FakeAlert) -> No action taken.
C:\Documents and Settings\Judd\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus XP 2008.lnk (Rogue.Antivirus2008) -> No action taken.