RogueKiller V8.8.15 [Mar 27 2014] par Adlice Software mail : http://www.adlice.com/contact/ Remontees : http://forum.adlice.com Site Web : http://www.surlatoile.org/RogueKiller/ Blog : http://www.adlice.com Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Demarrage : Mode normal Utilisateur : Sunny [Droits d'admin] Mode : Suppression -- Date : 05/23/2014 16:35:56 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 0 ¤¤¤ ¤¤¤ Entrees de registre : 6 ¤¤¤ [HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> REMPLACÉ (2) [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> REMPLACÉ (2) [HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REMPLACÉ (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REMPLACÉ (0) ¤¤¤ Tâches planifiées : 0 ¤¤¤ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Addons navigateur : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [NON CHARGE 0x0] ¤¤¤ [Address] EAT @firefox.exe (BeginBufferedAnimation) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9DF38) [Address] EAT @firefox.exe (BeginBufferedPaint) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9B741) [Address] EAT @firefox.exe (BeginPanningFeedback) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FB76AF) [Address] EAT @firefox.exe (BufferedPaintClear) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9BBDB) [Address] EAT @firefox.exe (BufferedPaintInit) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9B8D4) [Address] EAT @firefox.exe (BufferedPaintRenderAnimation) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9DE83) [Address] EAT @firefox.exe (BufferedPaintSetAlpha) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCE19) [Address] EAT @firefox.exe (BufferedPaintStopAllAnimations) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9E428) [Address] EAT @firefox.exe (BufferedPaintUnInit) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA7525) [Address] EAT @firefox.exe (CloseThemeData) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F91FA1) [Address] EAT @firefox.exe (DrawThemeBackground) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9D464) [Address] EAT @firefox.exe (DrawThemeBackgroundEx) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA436D) [Address] EAT @firefox.exe (DrawThemeEdge) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC01C) [Address] EAT @firefox.exe (DrawThemeIcon) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBD123) [Address] EAT @firefox.exe (DrawThemeParentBackground) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9E776) [Address] EAT @firefox.exe (DrawThemeParentBackgroundEx) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9E5C5) [Address] EAT @firefox.exe (DrawThemeText) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9DB21) [Address] EAT @firefox.exe (DrawThemeTextEx) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9A70C) [Address] EAT @firefox.exe (EnableThemeDialogTexture) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA786D) [Address] EAT @firefox.exe (EnableTheming) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC9FF) [Address] EAT @firefox.exe (EndBufferedAnimation) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9ACE8) [Address] EAT @firefox.exe (EndBufferedPaint) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9ACE8) [Address] EAT @firefox.exe (EndPanningFeedback) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FB762C) [Address] EAT @firefox.exe (GetBufferedPaintBits) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9CF26) [Address] EAT @firefox.exe (GetBufferedPaintDC) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCDCF) [Address] EAT @firefox.exe (GetBufferedPaintTargetDC) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCD86) [Address] EAT @firefox.exe (GetBufferedPaintTargetRect) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC893) [Address] EAT @firefox.exe (GetCurrentThemeName) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA63AE) [Address] EAT @firefox.exe (GetThemeAppProperties) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9EBD6) [Address] EAT @firefox.exe (GetThemeBackgroundContentRect) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9DA9E) [Address] EAT @firefox.exe (GetThemeBackgroundExtent) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA7155) [Address] EAT @firefox.exe (GetThemeBackgroundRegion) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA0190) [Address] EAT @firefox.exe (GetThemeBitmap) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F94B9C) [Address] EAT @firefox.exe (GetThemeBool) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F96651) [Address] EAT @firefox.exe (GetThemeColor) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F927C0) [Address] EAT @firefox.exe (GetThemeDocumentationProperty) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC346) [Address] EAT @firefox.exe (GetThemeEnumValue) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F927C0) [Address] EAT @firefox.exe (GetThemeFilename) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB997) [Address] EAT @firefox.exe (GetThemeFont) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA76A2) [Address] EAT @firefox.exe (GetThemeInt) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F927C0) [Address] EAT @firefox.exe (GetThemeIntList) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB86E) [Address] EAT @firefox.exe (GetThemeMargins) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F92F97) [Address] EAT @firefox.exe (GetThemeMetric) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA55B4) [Address] EAT @firefox.exe (GetThemePartSize) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9289F) [Address] EAT @firefox.exe (GetThemePosition) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB80D) [Address] EAT @firefox.exe (GetThemePropertyOrigin) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA0923) [Address] EAT @firefox.exe (GetThemeRect) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB936) [Address] EAT @firefox.exe (GetThemeStream) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB8CF) [Address] EAT @firefox.exe (GetThemeString) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBB7A1) [Address] EAT @firefox.exe (GetThemeSysBool) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCB86) [Address] EAT @firefox.exe (GetThemeSysColor) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA5530) [Address] EAT @firefox.exe (GetThemeSysColorBrush) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCA32) [Address] EAT @firefox.exe (GetThemeSysFont) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC3D8) [Address] EAT @firefox.exe (GetThemeSysInt) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC5E7) [Address] EAT @firefox.exe (GetThemeSysSize) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCC61) [Address] EAT @firefox.exe (GetThemeSysString) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBC553) [Address] EAT @firefox.exe (GetThemeTextExtent) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F989FE) [Address] EAT @firefox.exe (GetThemeTextMetrics) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA778C) [Address] EAT @firefox.exe (GetThemeTransitionDuration) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9E1A1) [Address] EAT @firefox.exe (GetWindowTheme) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA535B) [Address] EAT @firefox.exe (HitTestThemeBackground) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA2DC1) [Address] EAT @firefox.exe (IsAppThemed) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA7009) [Address] EAT @firefox.exe (IsCompositionActive) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F965DF) [Address] EAT @firefox.exe (IsThemeActive) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA6F36) [Address] EAT @firefox.exe (IsThemeBackgroundPartiallyTransparent) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F9281C) [Address] EAT @firefox.exe (IsThemeDialogTextureEnabled) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCB3F) [Address] EAT @firefox.exe (IsThemePartDefined) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F930CF) [Address] EAT @firefox.exe (OpenThemeData) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F95F29) [Address] EAT @firefox.exe (OpenThemeDataEx) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA06FE) [Address] EAT @firefox.exe (SetThemeAppProperties) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FBCCEC) [Address] EAT @firefox.exe (SetWindowTheme) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FA7AFC) [Address] EAT @firefox.exe (SetWindowThemeAttribute) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F99E39) [Address] EAT @firefox.exe (ThemeInitApiHook) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71F94571) [Address] EAT @firefox.exe (UpdatePanningFeedback) : apphelp.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x71FB75ED) [Address] EAT @firefox.exe (FREEBL_GetVector) : tiptsf.dll -> HOOKED (C:\Program Files (x86)\Mozilla Firefox\freebl3.dll @ 0x6C721000) [Address] EAT @firefox.exe (DllMain) : api-ms-win-downlevel-shell32-l1-1-0.dll -> HOOKED (C:\Windows\system32\napinsp.dll @ 0x6E6416E4) [Address] EAT @firefox.exe (NSPStartup) : api-ms-win-downlevel-shell32-l1-1-0.dll -> HOOKED (C:\Windows\system32\napinsp.dll @ 0x6E641D20) ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BEVT-75A0RT0 ATA Device +++++ --- User --- [MBR] 2949a29f07b8138a80d462a63556340c [BSP] de6f2e567694ea331bbea8395b95d017 : Windows 7/8 MBR Code Partition table: 0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB 1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 15000 MB 2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 30926848 | Size: 461838 MB User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[0]_D_05232014_163556.txt >> RKreport[0]_S_05232014_162631.txt