cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix

O23 - Service: iSafeService (iSafeService) . (...) - C:\Program Files\iSafe\iSafeSvc.exe (.not file.) =>Trojan.Staser
O23 - Service: MgAssist Service (MgAssistService) . (...) - C:\Program Files\Mobogenie\MgAssist.exe (.not file.) =>PUP.Mobogenie
SS - | Auto 10/07/1658 0 | (iSafeService) . (...) - C:\Program Files\iSafe\iSafeSvc.exe =>Trojan.Staser
SS - | Auto 10/07/1658 0 | (MgAssistService) . (...) - C:\Program Files\Mobogenie\MgAssist.exe =>PUP.Mobogenie
[HKLM\SYSTEM\CurrentControlSet\Services\iSafeService] =>Trojan.Staser^
[HKLM\SYSTEM\CurrentControlSet\Services\MgAssistService] =>PUP.Mobogenie^
Malware (6)

[HKCU\Software\IncrediMail]
O43 - CFD: 27/04/2013 - 12:16:28 - [0] ----D C:\Documents and Settings\All Users\Application Data\IM
O43 - CFD: 27/04/2013 - 14:26:52 - [24,597] ----D C:\Documents and Settings\user\Local Settings\Application Data\IM
O44 - LFC:[MD5.0DA4B5D3516F4FEB2A7D1D0131ED9E37] - 29/01/2014 - 11:50:48 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [2019]
O44 - LFC:[MD5.3EC5B507D8D5FBA8A6FC5684593E9A1B] - 29/01/2014 - 13:40:09 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [2355]
O45 - LFCP:[MD5.4FAAE9D2C84B375FE741B1C945EAB69A] - 26/01/2014 - 21:06:40 ---A- - C:\WINDOWS\Prefetch\WINVER.EXE-33E0A108.pf
O45 - LFCP:[MD5.3A6630AD4DD12566646A8FD7996B46A7] - 27/01/2014 - 19:56:04 ---A- - C:\WINDOWS\Prefetch\RVSEZM.EXE-2777799C.pf
O45 - LFCP:[MD5.962900D3A9E7857734DE9F06AA6B1699] - 28/01/2014 - 18:11:47 ---A- - C:\WINDOWS\Prefetch\25CDA0C7-2DCB-46F6-B310-6EF6E-3270BEC3.pf
O45 - LFCP:[MD5.2C2547292022F33AC8CA691E7D57D9B0] - 29/01/2014 - 09:27:35 ---A- - C:\WINDOWS\Prefetch\32.0.1700.102_32.0.1700.76_CH-37B01A02.pf
O45 - LFCP:[MD5.49F946B99DA9E02C66540A931F3AF716] - 29/01/2014 - 11:23:09 ---A- - C:\WINDOWS\Prefetch\INSTUP.EXE-2B8BA16F.pf
O45 - LFCP:[MD5.38D7EBE7172102494EA4CA2DE6107089] - 29/01/2014 - 11:31:00 ---A- - C:\WINDOWS\Prefetch\C2EED92A-481E-4367-973B-7D6F0-21F81467.pf
O45 - LFCP:[MD5.6D1D143A2A5F1692C382693FA94D40F6] - 29/01/2014 - 12:09:58 ---A- - C:\WINDOWS\Prefetch\CLIPBRD.EXE-1B911FB5.pf
O45 - LFCP:[MD5.07005963BEA68D32426FC0ECF06C87A1] - 29/01/2014 - 14:36:17 ---A- - C:\WINDOWS\Prefetch\BCKGZM.EXE-009D9AC4.pf
O45 - LFCP:[MD5.808D1F39F7E15DC302734D899E4F555F] - 29/01/2014 - 16:49:03 ---A- - C:\WINDOWS\Prefetch\ECBL-SG.EXE-35F6B325.pf
O45 - LFCP:[MD5.17B0453295E38110F0E4064FD5835039] - 29/01/2014 - 16:50:00 ---A- - C:\WINDOWS\Prefetch\NVMIXERTRAY.EXE-0EA28BAE.pf
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\Bin\IncMail.exe" [Enabled] .(...) -- C:\Program Files\IncrediMail\Bin\IncMail.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\Bin\ImApp.exe" [Enabled] .(...) -- C:\Program Files\IncrediMail\Bin\ImApp.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\Bin\ImpCnt.exe" [Enabled] .(...) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\48799011.sys . (...) -- C:\WINDOWS\system32\Drivers\48799011.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\48799011.sys . (...) -- C:\WINDOWS\system32\Drivers\48799011.sys (.not file.)
Superflu (20)

G2 - GCE: Preference [User Data\Default] [oleglodmkonbpfmlffapjfednjopbeeh] HD Streamer v.1.1.1.0 (Activ�)
O2 - BHO: HD Streamer - {E6062A33-016E-4BDA-A6F1-890D989F8656} . (.HD Streamer - ScriptHost.) -- C:\Program Files\HD Streamer\ScriptHost.dll
O42 - Logiciel: HD Streamer - (.HD Streamer.) [HKLM] -- HD Streamer
[HKCU\Software\HD Streamer]
O43 - CFD: 23/01/2014 - 13:33:35 - [2,326] ----D C:\Program Files\HD Streamer
O43 - CFD: 25/01/2014 - 18:25:37 - [0] ----D C:\Program Files\Universal Updater
O43 - CFD: 25/01/2014 - 18:41:49 - [0] ----D C:\Documents and Settings\user\Local Settings\Application Data\HD Streamer
O44 - LFC:[MD5.3FF8F2CED96FDDB346C3C9ED8CF010AA] - 20/01/2014 - 14:32:16 ---A- . (...) -- C:\WINDOWS\ExplorerXP.INI [26]
Non-Trait� par ZHP, mais tr�s suspect

O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Cl� orpheline
[HKCU\Software\ForumerIT] =>Toolbar.Forumer
O45 - LFCP:[MD5.4385A9A16D1E1EAD2D253B61BCFFAD38] - 29/01/2014 - 16:49:03 ---A- - C:\WINDOWS\Prefetch\WINDOWSSEARCH.EXE-20C0F767.pf
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
[HKCU\Software\ForumerIT] =>Toolbar.Forumer^
Toolbar (6)

ShortcutFix
EmptyTemp
EmptyFlash
EmptyCLSID
FirewallRaz

Publicité


Signaler le contenu de ce document

Publicité