C'est fini l'analyse malwarebytes
rapport:
Malwarebytes' Anti-Malware 1.36
Version de la base de données: 1945
Windows 6.0.6001 Service Pack 1
10/05/2009 17:04:36
mbam-log-2009-05-10 (17-04-36).txt
Type de recherche: Examen complet (C:\|H:\|)
Eléments examinés: 252756
Temps écoulé: 2 hour(s), 22 minute(s), 29 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 12
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 1
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1e5b2693-d348-4ca7-8364-4f5e51bf9c6d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\zango 10.0.370.0 (Adware.Zango) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1dcf4499-04f7-4b72-a782-db77fa010c94}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{521a35d9-d5ff-4197-9c45-3ec7128385dd}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{b9f6d60f-dc18-47c1-abfb-7b23751ffd37}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{1dcf4499-04f7-4b72-a782-db77fa010c94}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{521a35d9-d5ff-4197-9c45-3ec7128385dd}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{b9f6d60f-dc18-47c1-abfb-7b23751ffd37}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{1dcf4499-04f7-4b72-a782-db77fa010c94}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{521a35d9-d5ff-4197-9c45-3ec7128385dd}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{b9f6d60f-dc18-47c1-abfb-7b23751ffd37}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.165,85.255.112.216 -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
H:\XP SP3\Vista.exe (Trojan.VB) -> Quarantined and deleted successfully.
avant l'analyse j'avais branché un disque dur dont je ne suis pas le seul utilisateur.