PAGES : 1
ChangeLog WareOutFix (Depuis le 09/11/2008) |
NOTE : Ce changelog liste seulement les lignes malwares qui sont détectées par Zeb Help Process lors de l'analyse de rapports de sécurité. Ces informations proviennent en partie des feedbacks de helpers francophones.
FixWareout est un outil qui permet de supprimer les infections Trojans.DNS & Trojan.DNSChanger. Ces infections s'attrapent généralement sur des sites X ou via l'installation de codecs nécessaire à la visualisation de vidéos X. Elles se traduisent par des redirections lors de recherches Google.
MalwareByte's AntiMalware est un antivirus qui permet de supprimer ce type d'infection 
February,2010
O17 - HKLM\System\CCS\Services\Tcpip\..\{2AF9857F-09E5-4A91-A624-343A60D8AC1D}: NameServer = 85.255.112.80,85.255.112.168
August,2009
O17 - HKLM\System\CCS\Services\Tcpip\..\{6D9FE265-D7C4-498E-8320-C90FC1AF66B1}: NameServer = 85.255.112.186,85.255.112.124
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.186,85.255.112.124
O17 - HKLM\System\CCS\Services\Tcpip\..\{484C7838-0EF6-4E08-B584-C9259D47F2A8}: NameServer = 85.255.112.111,85.255.112.200
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCC6ADDA-21CF-4DAE-9115-AE2C8C1E8D78}: NameServer = 85.255.112.111,85.255.112.200
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.111,85.255.112.200
June,2009
O17 - HKLM\System\CCS\Services\Tcpip\..\{BEC40676-27A0-40A2-996A-0DB0CE91A3A6}: NameServer = 85.255.112.236,85.255.112.97
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.236,85.255.112.97
O17 - HKLM\System\CCS\Services\Tcpip\..\{6D9FE265-D7C4-498E-8320-C90FC1AF66B1}: NameServer = 85.255.112.186,85.255.112.124
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.186,85.255.112.124
May,2009
O17 - HKLM\System\CCS\Services\Tcpip\..\{3310C98B-1B1A-42C0-B360-99AC1A0A8775}: NameServer = 85.255.112.170
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B15C812-4431-45AE-8537-75085003F10B}: NameServer = 85.255.112.170
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.170,85.255.112.235
O17 - HKLM\System\CCS\Services\Tcpip\..\{97DAC562-1402-4EDB-918D-64691DDD67E5}: NameServer = 85.255.112.129,85.255.112.84
O17 - HKLM\System\CCS\Services\Tcpip\..\{C6320EDE-7918-4B58-B56C-48F50AA31434}: NameServer = 85.255.112.129,85.255.112.84
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.129,85.255.112.84
April,2009
O17 - HKLM\System\CCS\Services\Tcpip\..\{0F733BF9-AA4C-4BC4-96F2-CECE3ACD7E1F}: NameServer = 85.255.112.234,85.255.112.185
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.234,85.255.112.185
O17 - HKLM\System\CS1\Services\Tcpip\..\{0F733BF9-AA4C-4BC4-96F2-CECE3ACD7E1F}: NameServer = 85.255.112.234,85.255.112.185
O17 - HKLM\System\CCS\Services\Tcpip\..\{674DACBB-7C26-4E83-AB52-8B8ED6EF0FAB}: NameServer = 85.255.112.148;85.255.112.215
O17 - HKLM\System\CCS\Services\Tcpip\..\{980E1786-943D-4236-9CAE-08EAC8666526}: NameServer = 85.255.112.148;85.255.112.215
O17 - HKLM\System\CCS\Services\Tcpip\..\{55913E9B-1A8C-4EDC-B72E-1099E61612BF}: NameServer = 85.255.112.203,85.255.112.77
O17 - HKLM\System\CCS\Services\Tcpip\..\{FFC67CAF-DAA2-4C60-86EE-AC2F6D27A4C9}: NameServer = 85.255.112.203,85.255.112.77
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.203,85.255.112.77
O17 - HKLM\System\CCS\Services\Tcpip\..\{79ED39A8-776C-4908-AED3-D61C4BBF0FDD}: NameServer = 85.255.112.208,85.255.112.79
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.208,85.255.112.79
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D24E7EB-8736-494D-90D3-E18DD7ED4DEC}: NameServer = 85.255.112.74,85.255.112.102
March,2009
O17 - HKLM\System\CCS\Services\Tcpip\..\{15E754AB-1B27-4D0E-88F4-B4C4E8A70C59}: NameServer = 85.255.112.78,85.255.112.12
O17 - HKLM\System\CSx\Services\Tcpip\..\{15E754AB-1B27-4D0E-88F4-B4C4E8A70C59}: NameServer = 85.255.112.78,85.255.112.12
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3C183CC-F412-4A4C-A057-77BB61C58482}: NameServer = 85.255.112.5,85.255.112.107
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.5,85.255.112.107
O17 - HKLM\System\CCS\Services\Tcpip\..\{5F0C80A2-24A5-4887-8238-EA346F27DA01}: NameServer = 85.255.112.227,85.255.112.166
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.227,85.255.112.166
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.89,85.255.112.201
O17 - HKLM\System\CCS\Services\Tcpip\..\{4C8A5F67-225F-42B8-8B23-71E1AA48A345}: NameServer = 85.255.112.122,85.255.112.154
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.122,85.255.112.154
O17 - HKLM\System\CCS\Services\Tcpip\..\{2A9804AE-5A0A-4DAB-A4B8-4D0E1387D5F1}: NameServer = 85.255.116.100;85.255.112.143
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.100;85.255.112.143
February,2009
Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{4C4BB16D-61F6-4BA1-AF8F-BC5DB5240AB9}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCS\Services\Tcpip\..\{CC309356-E6AC-4BB5-A66D-9C8738814254}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8968A37-4743-4CAA-A5D8-4AB3830D1EC4}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCS\Services\Tcpip\..\{7035A8AB-80A4-4D80-ABD9-1BEEC91CE55E}: NameServer = 85.255.116.28 85.255.112.124
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40
Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{8C0432D5-0901-404B-AC72-6BE5204FE604}: NameServer = 85.255.114.28,85.255.112.99
O17 - HKLM\System\CCS\Services\Tcpip\..\{B60FE29F-CF66-4D51-9E43-BD99A41F89B1}: NameServer = 85.255.114.28,85.255.112.99
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.28,85.255.112.99
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.116.162,85.255.112.111
January,2009
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: NameServer = 85.255.113.198,85.255.112.138
O17 - HKLM\System\CCS\Services\Tcpip\..\{00E877E3-46DF-4091-8FA5-2A6137EA0F77}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCx\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40
Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{6D499434-A724-4138-99BD-2341CC85ED5D}: NameServer = 85.255.116.130,85.255.112.191
O17 - HKLM\System\CCS\Services\Tcpip\..\{FF128D53-A601-481B-B6FF-848643837B45}: NameServer = 85.255.116.130,85.255.112.191
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.130 85.255.112.191
Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2965B9F5-2622-4055-9F21-07442B0AC6AC}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{D3689720-D9AC-4DFE-A06F-3E0940A9C92E}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{E5470383-0D07-430C-9F3C-0614C594C576}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.166 85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{3F99E219-A8DB-4458-AFD8-A878106AE158}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{607E6616-7D0D-495D-93B7-BEFE24FE60A6}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{66385DFC-6D08-41A9-9531-E437968B91A5}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DF8FAC4D-8420-48C8-B929-92CFB6CEAC05}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{E10F0838-7071-4B2E-BC93-9F8A45AD9D60}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.119;85.255.112.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{409770DB-B654-49A5-8B8D-3F753C7966DB}: NameServer = 85.255.114.67,85.255.112.140
O17 - HKLM\System\CCS\Services\Tcpip\..\{880207CF-2FB0-4E10-ADFE-EC7E9871B991}: NameServer = 85.255.114.67,85.255.112.140
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.67,85.255.112.140
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{A3FE7FB2-398E-4408-B39C-8B90F2FBA8CB}: NameServer = 85.255.114.14,85.255.112.88
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.14,85.255.112.88
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{B0F2AB3A-D1E7-478C-88C0-07ADF9334145}: NameServer = 85.255.116.69,85.255.112.110
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.69,85.255.112.110
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.69,85.255.112.110
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{03E8B505-E04E-42C3-AB7E-0F5170574C9A}: NameServer = 85.255.115.106,85.255.112.111
O17 - HKLM\System\CCS\Services\Tcpip\..\{81CDD118-60B3-4379-A34F-951A5CA7C333}: NameServer = 85.255.115.106,85.255.112.111
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.115.106,85.255.112.111
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{0AA9CB1F-B0F1-4397-9465-F6185010B76B}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{3AD54C3F-71CC-4450-945D-D13C1FA3667E}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{5211CBC6-993F-4699-AA67-AD6109495B15}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.115.59 85.255.112.210
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{E936569D-B362-47A3-A369-84A495DE55A5}: NameServer = 85.255.116.139,85.255.112.7
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.139,85.255.112.7
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{36ABEDAD-47D5-42BE-A889-6FD9457E357A}: NameServer = 85.255.114.43,85.255.112.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{B7EC4823-040D-4747-BB27-2B246ECD97CA}: NameServer = 85.255.114.43,85.255.112.165
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.43,85.255.112.165
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{81745373-7C42-4AD3-8AEC-DBE32919F930}: NameServer = 85.255.114.68,85.255.112.150
O17 - HKLM\System\CCS\Services\Tcpip\..\{F51B00EA-55E8-4693-B6C9-A5DA57D81264}: NameServer = 85.255.114.68,85.255.112.150
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.68,85.255.112.150
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{716B2CB6-4340-4777-BD0A-ACE124A86749}: NameServer = 85.255.112.26;85.255.112.117
O17 - HKLM\System\CCS\Services\Tcpip\..\{E20224DB-42B5-4FF5-A9E4-48689113CF57}: NameServer = 85.255.112.37,85.255.112.38
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.37,85.255.112.38
O17 - HKLM\System\CS1-3\Services\Tcpip\Parameters: NameServer = 85.255.112.37,85.255.112.38
Trojan DNSChanger
O23 - Service: Windows Tribute Service - Unknown owner - %SYSTEM32%\kdphg.exe (file missing)
O17 - HKLM\System\CCS\Services\Tcpip\..\{FB939052-F813-4A63-8E60-A2F6524A648B}: NameServer = 85.255.112.61;85.255.112.99
December,2008
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{D9780F7E-D018-4963-BF68-EA02C15AD279}: NameServer = 85.255.114.46;85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{E4AC9978-3120-41B5-A69F-E8CB80258089}: NameServer = 85.255.114.46;85.255.112.210
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.46;85.255.112.210
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B77FCB7-AECA-41BC-889B-60BED961D534}: NameServer = 85.255.112.169;85.255.112.84
O17 - HKLM\System\CCS\Services\Tcpip\..\{AB88B339-6F2C-44AC-AB54-5430656CBEF9}: NameServer = 85.255.112.169;85.255.112.84
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{BEC10C12-87D2-453A-9EB0-E18DEA10D8CA}: NameServer = 85.255.113.148;85.255.112.86 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{F331200C-86F9-40D0-AADD-9BF79FA83FA4}: NameServer = 85.255.113.148;85.255.112.86 => Infection WareOut (Possible)
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.148;85.255.112.86
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{946B16E2-C957-4CC9-A9F4-8860234F88AB}: NameServer = 85.255.116.76,85.255.112.197
O17 - HKLM\System\CCS\Services\Tcpip\..\{FEE4981C-ADEB-4A90-9547-E5DF2F7118D1}: NameServer = 85.255.116.76,85.255.112.197
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.76 85.255.112.197
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{59F80A77-1BAF-4552-AC3D-FBE4D1F2091B}: NameServer = 85.255.116.62;85.255.112.233
O17 - HKLM\System\CCS\Services\Tcpip\..\{932AB00B-4B5E-49FF-80AF-8F87F0B18F03}: NameServer = 85.255.116.62;85.255.112.233
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.62;85.255.112.233
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2167ED7C-41D7-4D4E-9F85-EF6E39F9C8FA}: NameServer = 85.255.113.142;85.255.112.231
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.113.142;85.255.112.231
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2CB0422D-84DC-490A-8A98-55BE92E57D2D}: NameServer = 85.255.116.157;85.255.112.166
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.157;85.255.112.166
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{04A3FD4E-BB55-4574-8562-BD29F3903216}: NameServer = 85.255.114.109;85.255.112.153
O17 - HKLM\System\CCS\Services\Tcpip\..\{D08CE38F-6FC5-4B34-A966-9B33312A90A0}: NameServer = 85.255.114.109;85.255.112.153
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.109;85.255.112.153
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{67E1517D-2ECF-4260-A206-050C9CD13CAD}: NameServer = 85.255.116.118;85.255.112.205
O17 - HKLM\System\CCS\Services\Tcpip\..\{845C7C2A-701D-41DE-A68B-829E7996F3EC}: NameServer = 85.255.116.118;85.255.112.205
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.118;85.255.112.205
Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{FB6894CE-2ABC-4EA2-9CB7-94DC32BFD995}: NameServer = 85.255.116.141;85.255.112.15
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.141;85.255.112.15
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.141;85.255.112.15
PAGES : 1
|