cjoint

Publicité


Publicité

Format du document : text/x-log

Prévisualisation

RogueKiller V10.6.3.0 [May 11 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : TOSHIBA [Administrator]
Started from : C:\Users\TOSHIBA\desktop\RogueKiller.exe
Mode : Delete -- Date : 05/11/2015 16:07:37

¤¤¤ Processes : 0 ¤¤¤

¤¤¤ Registry : 16 ¤¤¤
[Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad | WebCheck : {E6FB5E20-DE35-11CF-9C87-00AA005127ED} -> Deleted
[Orphan] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast | (default) : {472083B0-C522-11CF-8763-00608CC02F24} -> Deleted
[Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> Deleted
[Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} -> Deleted
[Orphan] (X64) HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {CFBFAE00-17A6-11D0-99CB-00C04FD64497} : -> Deleted
[Orphan] (X86) HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {CFBFAE00-17A6-11D0-99CB-00C04FD64497} : -> ERROR [2]
[Orphan] (X64) HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {CFBFAE00-17A6-11D0-99CB-00C04FD64497} : -> Deleted
[Orphan] (X86) HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {CFBFAE00-17A6-11D0-99CB-00C04FD64497} : -> ERROR [2]
[Orphan] (X64) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5547CE1F-74E9-41E5-9CBF-5211ECC37341} | CLSID : ->
[Orphan] (X86) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5547CE1F-74E9-41E5-9CBF-5211ECC37341} | CLSID : -> ERROR [2]
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1870027983-4264097883-3264919129-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (http://search.msn.com/spbasic.htm)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1870027983-4264097883-3264919129-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Replaced (http://search.msn.com/spbasic.htm)
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Replaced (0)
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Replaced (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Replaced (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Replaced (0)

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 2 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost -> Deleted
[C:\Windows\System32\drivers\etc\hosts] ::1 localhost -> Deleted

¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤

¤¤¤ Web browsers : 6 ¤¤¤
[FIREFX:Addon] rleqoewb.default : [online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com] -> Deleted
[FIREFX:Addon] rleqoewb.default : [content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com] -> Deleted
[FIREFX:Addon] rleqoewb.default : [virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com] -> Deleted
[FIREFX:Addon] rleqoewb.default : Bing Search Engine [bingsearch.full@microsoft.com] -> Deleted
[FIREFX:Addon] rleqoewb.default : Skype Click to Call [{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}] -> Deleted
[FIREFX:Addon] rleqoewb.default : Avira Browser Safety [abs@avira.com] -> Deleted

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: Hitachi HTS547564A9E384 SCSI Disk Device +++++
--- User ---
[MBR] e766b050dca17e1c1080ca1094307d8d
[BSP] a74f7997cff9fe9404ca9a67957e5144 : HP MBR Code
Partition table:
0 - [ACTIVE] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 1500 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 3074048 | Size: 297963 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] EXTEN-LBA (0xf) [VISIBLE] Offset (sectors): 613302272 | Size: 294790 MB
3 - [XXXXXX] NTFS (0x17) [HIDDEN!] Offset (sectors): 1217032192 | Size: 16226 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK


============================================
RKreport_SCN_05112015_155105.log - RKreport_DEL_05112015_155219.log - RKreport_SCN_05112015_155756.log - RKreport_DEL_05112015_155925.log
RKreport_SCN_05112015_160539.log

Publicité


Signaler le contenu de ce document

Publicité