[Résolu] interpréter la log de zhpdiag
Posté : jeu. 1 mai 2014 18:10
Bonjour,
j'ai été infecté récemment par des malwares et j'ai fait tourné sur mon ordi malwarebytes et aussi ZHPDiag mais je ne sais pas interpréter les résultats de la log de ZHPDiag. Voici un extrait de la log :
---\\ Scan Additionnel (O88)
Database Version : 13045 - (28/04/2014)
Clés trouvées (Keys found) : 4
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 4
Fichiers trouvés (Files found) : 8
[HKLM\Software\Google\Chrome\Extensions\lledemoahlfpbcpakehdkponbiajbegi] =PUP.ReMarkIt^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =Toolbar.Google^
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =Toolbar.Google^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:stv_fr_4 =PUP.Eorezo^
C:\Users\sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lledemoahlfpbcpakehdkponbiajbegi =PUP.ReMarkIt^
C:\ProgramData\WPM =PUP.WpManager^
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Agence-Exclusive =Spyware.AgenceExclusive
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =Rogue.RegistryPowerCleaner
[HKCU\Software\AppDataLow\Software\Re-markit] =PUP.ReMarkIt^
[HKLM\Software\Wow6432Node\NewPlayer] =Adware.PUP.NewPlayer^
[HKLM\Software\Wow6432Node\free_soft_today] =Adware.FreeSoftToday^
C:\Windows\Installer\285dc1.msi =Toolbar.Google^
[HKCR\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] (Google Toolbar) =Toolbar.Google^
[HKCR\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}] (Google Toolbar Helper) =Toolbar.Google^
C:\Users\sophie\AppData\Local\Temp\GoogleToolbarInstaller1.log =PUP.Babylon
C:\Users\sophie\AppData\Local\Temp\GoogleToolbarInstaller2.log =PUP.Babylon
~ Additionnel Scan: 205770 Items scanned in 00mn 33s
---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.webs.com/apps/blo ... p-remarkit =PUP.ReMarkIt
http://nicolascoolman.webs.com/apps/blo ... mypcbackup =PUP.MyPCBackup
http://nicolascoolman.webs.com/apps/blo ... pup-eorezo =PUP.Eorezo
http://nicolascoolman.webs.com/apps/blo ... esofttoday =Adware.FreeSoftToday
http://nicolascoolman.webs.com/apps/blo ... -wpmanager =PUP.WpManager
http://nicolascoolman.webs.com/apps/blo ... timizerpro =PUP.OptimizerPro
http://nicolascoolman.webs.com/apps/blo ... -startertv =Adware.StarterTV
http://nicolascoolman.webs.com/apps/blo ... anyprotect =PUP.AnyProtect
http://nicolascoolman.webs.com/apps/blo ... e-downware =Adware.Downware
http://nicolascoolman.webs.com/apps/blo ... crossrider =PUP.CrossRider
http://nicolascoolman.webs.com/apps/blo ... wercleaner =Rogue.RegistryPowerCleaner
http://nicolascoolman.webs.com/apps/blo ... ar-babylon =PUP.Babylon
~ MSI: 12 link(s) detected in 00mn 00s
Pourriez vous m'indiquer si je suis encore infecté et comment me débarasser de ces malwares ?
Merci beaucoup !
j'ai été infecté récemment par des malwares et j'ai fait tourné sur mon ordi malwarebytes et aussi ZHPDiag mais je ne sais pas interpréter les résultats de la log de ZHPDiag. Voici un extrait de la log :
---\\ Scan Additionnel (O88)
Database Version : 13045 - (28/04/2014)
Clés trouvées (Keys found) : 4
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 4
Fichiers trouvés (Files found) : 8
[HKLM\Software\Google\Chrome\Extensions\lledemoahlfpbcpakehdkponbiajbegi] =PUP.ReMarkIt^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =Toolbar.Google^
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =Toolbar.Google^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:stv_fr_4 =PUP.Eorezo^
C:\Users\sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lledemoahlfpbcpakehdkponbiajbegi =PUP.ReMarkIt^
C:\ProgramData\WPM =PUP.WpManager^
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Agence-Exclusive =Spyware.AgenceExclusive
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =Rogue.RegistryPowerCleaner
[HKCU\Software\AppDataLow\Software\Re-markit] =PUP.ReMarkIt^
[HKLM\Software\Wow6432Node\NewPlayer] =Adware.PUP.NewPlayer^
[HKLM\Software\Wow6432Node\free_soft_today] =Adware.FreeSoftToday^
C:\Windows\Installer\285dc1.msi =Toolbar.Google^
[HKCR\CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] (Google Toolbar) =Toolbar.Google^
[HKCR\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}] (Google Toolbar Helper) =Toolbar.Google^
C:\Users\sophie\AppData\Local\Temp\GoogleToolbarInstaller1.log =PUP.Babylon
C:\Users\sophie\AppData\Local\Temp\GoogleToolbarInstaller2.log =PUP.Babylon
~ Additionnel Scan: 205770 Items scanned in 00mn 33s
---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.webs.com/apps/blo ... p-remarkit =PUP.ReMarkIt
http://nicolascoolman.webs.com/apps/blo ... mypcbackup =PUP.MyPCBackup
http://nicolascoolman.webs.com/apps/blo ... pup-eorezo =PUP.Eorezo
http://nicolascoolman.webs.com/apps/blo ... esofttoday =Adware.FreeSoftToday
http://nicolascoolman.webs.com/apps/blo ... -wpmanager =PUP.WpManager
http://nicolascoolman.webs.com/apps/blo ... timizerpro =PUP.OptimizerPro
http://nicolascoolman.webs.com/apps/blo ... -startertv =Adware.StarterTV
http://nicolascoolman.webs.com/apps/blo ... anyprotect =PUP.AnyProtect
http://nicolascoolman.webs.com/apps/blo ... e-downware =Adware.Downware
http://nicolascoolman.webs.com/apps/blo ... crossrider =PUP.CrossRider
http://nicolascoolman.webs.com/apps/blo ... wercleaner =Rogue.RegistryPowerCleaner
http://nicolascoolman.webs.com/apps/blo ... ar-babylon =PUP.Babylon
~ MSI: 12 link(s) detected in 00mn 00s
Pourriez vous m'indiquer si je suis encore infecté et comment me débarasser de ces malwares ?
Merci beaucoup !