PAGES : 1

ChangeLog WareOutFix (Depuis le 09/11/2008)

NOTE : Ce changelog liste seulement les lignes malwares qui sont détectées par Zeb Help Process lors de l'analyse de rapports de sécurité. Ces informations proviennent en partie des feedbacks de helpers francophones.

FixWareout est un outil qui permet de supprimer les infections Trojans.DNS & Trojan.DNSChanger. Ces infections s'attrapent généralement sur des sites X ou via l'installation de codecs nécessaire à la visualisation de vidéos X. Elles se traduisent par des redirections lors de recherches Google.

MalwareByte's AntiMalware est un antivirus qui permet de supprimer ce type d'infection

 

February,2010

O17 - HKLM\System\CCS\Services\Tcpip\..\{2AF9857F-09E5-4A91-A624-343A60D8AC1D}: NameServer = 85.255.112.80,85.255.112.168

August,2009

O17 - HKLM\System\CCS\Services\Tcpip\..\{6D9FE265-D7C4-498E-8320-C90FC1AF66B1}: NameServer = 85.255.112.186,85.255.112.124
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.186,85.255.112.124

O17 - HKLM\System\CCS\Services\Tcpip\..\{484C7838-0EF6-4E08-B584-C9259D47F2A8}: NameServer = 85.255.112.111,85.255.112.200
O17 - HKLM\System\CCS\Services\Tcpip\..\{DCC6ADDA-21CF-4DAE-9115-AE2C8C1E8D78}: NameServer = 85.255.112.111,85.255.112.200
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.111,85.255.112.200

June,2009

O17 - HKLM\System\CCS\Services\Tcpip\..\{BEC40676-27A0-40A2-996A-0DB0CE91A3A6}: NameServer = 85.255.112.236,85.255.112.97
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.236,85.255.112.97

O17 - HKLM\System\CCS\Services\Tcpip\..\{6D9FE265-D7C4-498E-8320-C90FC1AF66B1}: NameServer = 85.255.112.186,85.255.112.124
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.186,85.255.112.124

May,2009

O17 - HKLM\System\CCS\Services\Tcpip\..\{3310C98B-1B1A-42C0-B360-99AC1A0A8775}: NameServer = 85.255.112.170
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B15C812-4431-45AE-8537-75085003F10B}: NameServer = 85.255.112.170
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.170,85.255.112.235

O17 - HKLM\System\CCS\Services\Tcpip\..\{97DAC562-1402-4EDB-918D-64691DDD67E5}: NameServer = 85.255.112.129,85.255.112.84
O17 - HKLM\System\CCS\Services\Tcpip\..\{C6320EDE-7918-4B58-B56C-48F50AA31434}: NameServer = 85.255.112.129,85.255.112.84
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.129,85.255.112.84

 

April,2009

O17 - HKLM\System\CCS\Services\Tcpip\..\{0F733BF9-AA4C-4BC4-96F2-CECE3ACD7E1F}: NameServer = 85.255.112.234,85.255.112.185
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.234,85.255.112.185
O17 - HKLM\System\CS1\Services\Tcpip\..\{0F733BF9-AA4C-4BC4-96F2-CECE3ACD7E1F}: NameServer = 85.255.112.234,85.255.112.185

O17 - HKLM\System\CCS\Services\Tcpip\..\{674DACBB-7C26-4E83-AB52-8B8ED6EF0FAB}: NameServer = 85.255.112.148;85.255.112.215
O17 - HKLM\System\CCS\Services\Tcpip\..\{980E1786-943D-4236-9CAE-08EAC8666526}: NameServer = 85.255.112.148;85.255.112.215

O17 - HKLM\System\CCS\Services\Tcpip\..\{55913E9B-1A8C-4EDC-B72E-1099E61612BF}: NameServer = 85.255.112.203,85.255.112.77
O17 - HKLM\System\CCS\Services\Tcpip\..\{FFC67CAF-DAA2-4C60-86EE-AC2F6D27A4C9}: NameServer = 85.255.112.203,85.255.112.77
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.203,85.255.112.77

O17 - HKLM\System\CCS\Services\Tcpip\..\{79ED39A8-776C-4908-AED3-D61C4BBF0FDD}: NameServer = 85.255.112.208,85.255.112.79
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.208,85.255.112.79

O17 - HKLM\System\CCS\Services\Tcpip\..\{3D24E7EB-8736-494D-90D3-E18DD7ED4DEC}: NameServer = 85.255.112.74,85.255.112.102

 

March,2009

O17 - HKLM\System\CCS\Services\Tcpip\..\{15E754AB-1B27-4D0E-88F4-B4C4E8A70C59}: NameServer = 85.255.112.78,85.255.112.12
O17 - HKLM\System\CSx\Services\Tcpip\..\{15E754AB-1B27-4D0E-88F4-B4C4E8A70C59}: NameServer = 85.255.112.78,85.255.112.12
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3C183CC-F412-4A4C-A057-77BB61C58482}: NameServer = 85.255.112.5,85.255.112.107
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.5,85.255.112.107

O17 - HKLM\System\CCS\Services\Tcpip\..\{5F0C80A2-24A5-4887-8238-EA346F27DA01}: NameServer = 85.255.112.227,85.255.112.166
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.227,85.255.112.166

O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.89,85.255.112.201
O17 - HKLM\System\CCS\Services\Tcpip\..\{4C8A5F67-225F-42B8-8B23-71E1AA48A345}: NameServer = 85.255.112.122,85.255.112.154
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.122,85.255.112.154

O17 - HKLM\System\CCS\Services\Tcpip\..\{2A9804AE-5A0A-4DAB-A4B8-4D0E1387D5F1}: NameServer = 85.255.116.100;85.255.112.143
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.100;85.255.112.143

 

February,2009

Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{4C4BB16D-61F6-4BA1-AF8F-BC5DB5240AB9}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCS\Services\Tcpip\..\{CC309356-E6AC-4BB5-A66D-9C8738814254}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8968A37-4743-4CAA-A5D8-4AB3830D1EC4}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40

O17 - HKLM\System\CCS\Services\Tcpip\..\{7035A8AB-80A4-4D80-ABD9-1BEEC91CE55E}: NameServer = 85.255.116.28 85.255.112.124

O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40

Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{8C0432D5-0901-404B-AC72-6BE5204FE604}: NameServer = 85.255.114.28,85.255.112.99
O17 - HKLM\System\CCS\Services\Tcpip\..\{B60FE29F-CF66-4D51-9E43-BD99A41F89B1}: NameServer = 85.255.114.28,85.255.112.99
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.28,85.255.112.99

O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.116.162,85.255.112.111

 

 

January,2009

O17 - HKLM\System\CS5\Services\Tcpip\Parameters: NameServer = 85.255.113.198,85.255.112.138

O17 - HKLM\System\CCS\Services\Tcpip\..\{00E877E3-46DF-4091-8FA5-2A6137EA0F77}: NameServer = 85.255.112.39,85.255.112.40
O17 - HKLM\System\CCx\Services\Tcpip\Parameters: NameServer = 85.255.112.39,85.255.112.40

Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{6D499434-A724-4138-99BD-2341CC85ED5D}: NameServer = 85.255.116.130,85.255.112.191
O17 - HKLM\System\CCS\Services\Tcpip\..\{FF128D53-A601-481B-B6FF-848643837B45}: NameServer = 85.255.116.130,85.255.112.191
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.130 85.255.112.191

Trojan.DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2965B9F5-2622-4055-9F21-07442B0AC6AC}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{D3689720-D9AC-4DFE-A06F-3E0940A9C92E}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CCS\Services\Tcpip\..\{E5470383-0D07-430C-9F3C-0614C594C576}: NameServer = 85.255.116.166,85.255.112.11
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.166 85.255.112.11

O17 - HKLM\System\CCS\Services\Tcpip\..\{3F99E219-A8DB-4458-AFD8-A878106AE158}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{607E6616-7D0D-495D-93B7-BEFE24FE60A6}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{66385DFC-6D08-41A9-9531-E437968B91A5}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{DF8FAC4D-8420-48C8-B929-92CFB6CEAC05}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{E10F0838-7071-4B2E-BC93-9F8A45AD9D60}: NameServer = 85.255.116.119;85.255.112.220 => Infection WareOut (Possible)
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.119;85.255.112.220

O17 - HKLM\System\CCS\Services\Tcpip\..\{409770DB-B654-49A5-8B8D-3F753C7966DB}: NameServer = 85.255.114.67,85.255.112.140
O17 - HKLM\System\CCS\Services\Tcpip\..\{880207CF-2FB0-4E10-ADFE-EC7E9871B991}: NameServer = 85.255.114.67,85.255.112.140
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.67,85.255.112.140

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{A3FE7FB2-398E-4408-B39C-8B90F2FBA8CB}: NameServer = 85.255.114.14,85.255.112.88
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.14,85.255.112.88

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{B0F2AB3A-D1E7-478C-88C0-07ADF9334145}: NameServer = 85.255.116.69,85.255.112.110
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.69,85.255.112.110
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.69,85.255.112.110

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{03E8B505-E04E-42C3-AB7E-0F5170574C9A}: NameServer = 85.255.115.106,85.255.112.111
O17 - HKLM\System\CCS\Services\Tcpip\..\{81CDD118-60B3-4379-A34F-951A5CA7C333}: NameServer = 85.255.115.106,85.255.112.111
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.115.106,85.255.112.111

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{0AA9CB1F-B0F1-4397-9465-F6185010B76B}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{3AD54C3F-71CC-4450-945D-D13C1FA3667E}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{5211CBC6-993F-4699-AA67-AD6109495B15}: NameServer = 85.255.115.59,85.255.112.210
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.115.59 85.255.112.210

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{E936569D-B362-47A3-A369-84A495DE55A5}: NameServer = 85.255.116.139,85.255.112.7
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.139,85.255.112.7

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{36ABEDAD-47D5-42BE-A889-6FD9457E357A}: NameServer = 85.255.114.43,85.255.112.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{B7EC4823-040D-4747-BB27-2B246ECD97CA}: NameServer = 85.255.114.43,85.255.112.165
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.43,85.255.112.165

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{81745373-7C42-4AD3-8AEC-DBE32919F930}: NameServer = 85.255.114.68,85.255.112.150
O17 - HKLM\System\CCS\Services\Tcpip\..\{F51B00EA-55E8-4693-B6C9-A5DA57D81264}: NameServer = 85.255.114.68,85.255.112.150
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.68,85.255.112.150

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{716B2CB6-4340-4777-BD0A-ACE124A86749}: NameServer = 85.255.112.26;85.255.112.117
O17 - HKLM\System\CCS\Services\Tcpip\..\{E20224DB-42B5-4FF5-A9E4-48689113CF57}: NameServer = 85.255.112.37,85.255.112.38
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.37,85.255.112.38
O17 - HKLM\System\CS1-3\Services\Tcpip\Parameters: NameServer = 85.255.112.37,85.255.112.38

Trojan DNSChanger
O23 - Service: Windows Tribute Service - Unknown owner - %SYSTEM32%\kdphg.exe (file missing)

O17 - HKLM\System\CCS\Services\Tcpip\..\{FB939052-F813-4A63-8E60-A2F6524A648B}: NameServer = 85.255.112.61;85.255.112.99

 

December,2008

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{D9780F7E-D018-4963-BF68-EA02C15AD279}: NameServer = 85.255.114.46;85.255.112.210
O17 - HKLM\System\CCS\Services\Tcpip\..\{E4AC9978-3120-41B5-A69F-E8CB80258089}: NameServer = 85.255.114.46;85.255.112.210
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.46;85.255.112.210

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B77FCB7-AECA-41BC-889B-60BED961D534}: NameServer = 85.255.112.169;85.255.112.84
O17 - HKLM\System\CCS\Services\Tcpip\..\{AB88B339-6F2C-44AC-AB54-5430656CBEF9}: NameServer = 85.255.112.169;85.255.112.84

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{BEC10C12-87D2-453A-9EB0-E18DEA10D8CA}: NameServer = 85.255.113.148;85.255.112.86 => Infection WareOut (Possible)
O17 - HKLM\System\CCS\Services\Tcpip\..\{F331200C-86F9-40D0-AADD-9BF79FA83FA4}: NameServer = 85.255.113.148;85.255.112.86 => Infection WareOut (Possible)
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.148;85.255.112.86

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{946B16E2-C957-4CC9-A9F4-8860234F88AB}: NameServer = 85.255.116.76,85.255.112.197
O17 - HKLM\System\CCS\Services\Tcpip\..\{FEE4981C-ADEB-4A90-9547-E5DF2F7118D1}: NameServer = 85.255.116.76,85.255.112.197
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.76 85.255.112.197

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{59F80A77-1BAF-4552-AC3D-FBE4D1F2091B}: NameServer = 85.255.116.62;85.255.112.233
O17 - HKLM\System\CCS\Services\Tcpip\..\{932AB00B-4B5E-49FF-80AF-8F87F0B18F03}: NameServer = 85.255.116.62;85.255.112.233
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.62;85.255.112.233

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2167ED7C-41D7-4D4E-9F85-EF6E39F9C8FA}: NameServer = 85.255.113.142;85.255.112.231
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.113.142;85.255.112.231

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{2CB0422D-84DC-490A-8A98-55BE92E57D2D}: NameServer = 85.255.116.157;85.255.112.166
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.157;85.255.112.166

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{04A3FD4E-BB55-4574-8562-BD29F3903216}: NameServer = 85.255.114.109;85.255.112.153
O17 - HKLM\System\CCS\Services\Tcpip\..\{D08CE38F-6FC5-4B34-A966-9B33312A90A0}: NameServer = 85.255.114.109;85.255.112.153
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.114.109;85.255.112.153

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{67E1517D-2ECF-4260-A206-050C9CD13CAD}: NameServer = 85.255.116.118;85.255.112.205
O17 - HKLM\System\CCS\Services\Tcpip\..\{845C7C2A-701D-41DE-A68B-829E7996F3EC}: NameServer = 85.255.116.118;85.255.112.205
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.118;85.255.112.205

Trojan DNSChanger
O17 - HKLM\System\CCS\Services\Tcpip\..\{FB6894CE-2ABC-4EA2-9CB7-94DC32BFD995}: NameServer = 85.255.116.141;85.255.112.15
O17 - HKLM\System\CSx\Services\Tcpip\Parameters: NameServer = 85.255.116.141;85.255.112.15
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.141;85.255.112.15

 

PAGES : 1

 

 

© Copyright's 2008-2009 Nicolas Coolman e-mail - Tous droits réservés -