RogueKiller V10.1.0.0 (x64) [Dec 11 2014] par Adlice Software email : http://www.adlice.com/contact/ Remontées : http://forum.adlice.com Site web : http://www.adlice.com/fr/logiciels/roguekiller/ Blog : http://www.adlice.com Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Démarré en : Mode normal Utilisateur : Davy [Administrateur] Mode : Scan -- Date : 12/12/2014 19:42:33 ¤¤¤ Processus : 0 ¤¤¤ ¤¤¤ Registre : 8 ¤¤¤ [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ESEADriver2 (\??\C:\Users\Davy\AppData\Local\Temp\ESEADriver2.sys) -> Trouvé(e) [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ESEADriver2 (\??\C:\Users\Davy\AppData\Local\Temp\ESEADriver2.sys) -> Trouvé(e) [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\ESEADriver2 (\??\C:\Users\Davy\AppData\Local\Temp\ESEADriver2.sys) -> Trouvé(e) [PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : http://google.fr -> Trouvé(e) [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Trouvé(e) [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Trouvé(e) [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Trouvé(e) [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Trouvé(e) ¤¤¤ Tâches : 0 ¤¤¤ ¤¤¤ Fichiers : 0 ¤¤¤ ¤¤¤ Fichier Hosts : 8 ¤¤¤ [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 easyanticheat.se # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 www.easyanticheat.se # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 easyanticheat.com # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 www.easyanticheat.com # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 easyanticheat.info # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 www.easyanticheat.info # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 easyanticheat.org # misleading site [C:\Windows\System32\drivers\etc\hosts] 255.255.255.255 www.easyanticheat.org # misleading site ¤¤¤ Antirootkit : 1 (Driver: Chargé) ¤¤¤ [Filter(Kernel.Filter)] \Driver\atapi @ \Device\Ide\IdeDeviceP1T0L0-1 : \Driver\Disk @ \Device\Harddisk0\DR0 (\SystemRoot\system32\drivers\ESLWireACD.sys) ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Vérification MBR : ¤¤¤ +++++ PhysicalDrive0: WDC WD5002AALX-00J37A0 ATA Device +++++ --- User --- [MBR] 7681d2f2163af908b24d98a92becfbb7 [BSP] 990f4788361bf5f3b5d5127a45c44795 : Windows Vista/7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 476838 MB User = LL1 ... OK User = LL2 ... OK +++++ PhysicalDrive1: WD Elements 10B8 USB Device +++++ --- User --- [MBR] e1cf39f49dd33c23a9e37b88b0eac472 [BSP] bc80905cc8773812de5d0cad3a30a083 : Windows XP MBR Code Partition table: 0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953836 MB User = LL1 ... OK Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )