Malwarebytes' Anti-Malware 1.46 
www.malwarebytes.org 
  
Version de la base de données: 4052 
  
Windows 6.0.6001 Service Pack 1 
Internet Explorer 7.0.6001.18000 
  
16/06/2010 05:51:33 
mbam-log-2010-06-16 (05-51-33).txt 
  
Type d'examen: Examen rapide 
Elément(s) analysé(s): 121285 
Temps écoulé: 16 minute(s), 0 seconde(s) 
  
Processus mémoire infecté(s): 0 
Module(s) mémoire infecté(s): 1 
Clé(s) du Registre infectée(s): 5 
Valeur(s) du Registre infectée(s): 5 
Elément(s) de données du Registre infecté(s): 0 
Dossier(s) infecté(s): 0 
Fichier(s) infecté(s): 3 
  
Processus mémoire infecté(s): 
(Aucun élément nuisible détecté) 
  
Module(s) mémoire infecté(s): 
C:\Users\cyril\AppData\Local\Temp\sshnas21.dll (Trojan.Downloader) -> Delete on reboot. 
  
Clé(s) du Registre infectée(s): 
HKEY_CURRENT_USER\SOFTWARE\32 Vegas Casino (Adware.21Nova) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antimalware Doctor (Rogue.AntimalwareDoctor) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\Software\Antimalware Doctor Inc (Rogue.AntimalwareDoctor) -> Quarantined and deleted successfully. 
  
Valeur(s) du Registre infectée(s): 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\halo2 (Trojan.Downloader) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.safetyincludes.com (Trojan.Zlob) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securemanaging.com (Trojan.Zlob) -> Quarantined and deleted successfully. 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securewebinfo.com (Trojan.Zlob) -> Quarantined and deleted successfully. 
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\irvlfisqimaaj (Trojan.Agent) -> Quarantined and deleted successfully. 
  
Elément(s) de données du Registre infecté(s): 
(Aucun élément nuisible détecté) 
  
Dossier(s) infecté(s): 
(Aucun élément nuisible détecté) 
  
Fichier(s) infecté(s): 
C:\Users\cyril\AppData\Local\Temp\sshnas21.dll (Trojan.Downloader) -> Delete on reboot. 
C:\Users\cyril\Favorites\Antivirus Scan.url (Rogue.Link) -> Quarantined and deleted successfully. 
C:\Users\cyril\Localdir\winlogo.exe (Worm.Archive) -> Quarantined and deleted successfully.