RogueKiller V8.7.0 _x64_ [Sep 30 2013] par Tigzy mail : tigzyRKgmailcom Remontees : http://www.adlice.com/forum/ Site Web : http://www.sur-la-toile.com/RogueKiller/ Blog : http://tigzyrk.blogspot.com/ Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Demarrage : Mode normal Utilisateur : Mian [Droits d'admin] Mode : Recherche -- Date : 10/01/2013 22:13:37 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 6 ¤¤¤ [RUN][SUSP PATH] HKCU\[...]\Run : AVG-Secure-Search-Update_0913b (C:\Users\Mian\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid a14b6227502547d1af7cf18676b9070c-7cc5fdae1d66b3e44ecd46081277aacea3fcae8e --CMPID 0913b [x][x][x]) -> TROUVÉ [RUN][SUSP PATH] HKCU\[...]\Run : 1L8prJDN (wscript.exe //B "C:\Users\Mian\AppData\Local\Temp\1L8prJDN.vbs" [x][-]) -> TROUVÉ [RUN][SUSP PATH] HKUS\S-1-5-21-874336220-1330978730-1593934170-1002\[...]\Run : AVG-Secure-Search-Update_0913b (C:\Users\Mian\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid a14b6227502547d1af7cf18676b9070c-7cc5fdae1d66b3e44ecd46081277aacea3fcae8e --CMPID 0913b [x][x][x]) -> TROUVÉ [RUN][SUSP PATH] HKUS\S-1-5-21-874336220-1330978730-1593934170-1002\[...]\Run : 1L8prJDN (wscript.exe //B "C:\Users\Mian\AppData\Local\Temp\1L8prJDN.vbs" [x][-]) -> TROUVÉ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> TROUVÉ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ ¤¤¤ Tâches planifiées : 1 ¤¤¤ [V1][ROGUE ST] schedule!3036567561.job : C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe - /schedule /profile "c:\programdata\bettersoft\optimizerpro\3036567561.ini" [x][-] -> TROUVÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [NON CHARGE 0x0] ¤¤¤ ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Lecteurs de disque standard) - ST9500325AS +++++ --- User --- [MBR] adb0aa9ec6250927eb9163cc393d5494 [BSP] b8e681ec20f3f51e484d81d4ade624cc : Windows 7/8 MBR Code Partition table: 0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 20002 Mo 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 40965750 | Size: 119232 Mo 2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 285153280 | Size: 337704 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) (Lecteurs de disque standard) - Intenso Rainbow Line USB Device +++++ --- User --- [MBR] 99bc341b4d88132c70b4403655ec1230 [BSP] 41246efdc2b69f80910d556b3268f1da : MBR Code unknown Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2408 | Size: 15298 Mo User = LL1 ... OK! Error reading LL2 MBR! Termine : << RKreport[0]_S_10012013_221337.txt >>