cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

RogueKiller V10.9.4.0 (x64) [Jul 30 2015] par Adlice Software
email : http://www.adlice.com/contact/
Remontées : http://forum.adlice.com
Site web : http://www.adlice.com/fr/logiciels/roguekiller/
Blog : http://www.adlice.com

Système d'exploitation : Windows 8.1 (6.3.9200 ) 64 bits version
Démarré en : Mode normal
Utilisateur : Usman [Administrateur]
Démarré depuis : C:\Users\Usman\Desktop\RogueKillerX64.exe
Mode : Scan -- Date : 08/03/2015 01:42:41

¤¤¤ Processus : 0 ¤¤¤

¤¤¤ Registre : 2 ¤¤¤
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1643695585-1192115934-71300298-1002\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Trouvé(e)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1643695585-1192115934-71300298-1002\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Trouvé(e)

¤¤¤ Tâches : 0 ¤¤¤

¤¤¤ Fichiers : 5 ¤¤¤
[Suspicious.Path][Fichier] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\autoconv.lnk [LNK@] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\IEUpdate\autoconv.exe -> Trouvé(e)
[Suspicious.Path][Fichier] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Magnify.lnk [LNK@] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\IEUpdate\Magnify.exe -> Trouvé(e)
[Suspicious.Path][Fichier] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mfpmp.lnk [LNK@] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\IEUpdate\mfpmp.exe -> Trouvé(e)
[Suspicious.Path][Fichier] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\perfmon.lnk [LNK@] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\IEUpdate\perfmon.exe -> Trouvé(e)
[Suspicious.Path][Fichier] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PkgMgr.lnk [LNK@] C:\Users\Usman\AppData\Roaming\Microsoft\Windows\IEUpdate\PkgMgr.exe -> Trouvé(e)

¤¤¤ Fichier Hosts : 0 ¤¤¤

¤¤¤ Antirootkit : 1 (Driver: Chargé) ¤¤¤
[IAT:Inl(Hook.IEAT)] (explorer.exe @ explorerframe.dll) msvcrt.dll - expf : Unknown @ 0x63746d05 (jmp 0x61006d05)

¤¤¤ Navigateurs web : 0 ¤¤¤

¤¤¤ Vérification MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD5000BPKT-22PK4T0 +++++
--- User ---
[MBR] 51001413c13560463bfa9ffa03d66476
[BSP] 53df3c8a57ee042c4ab119fbbec48d9a : Empty|VT.Unknown MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 600 MB
1 - [MAN-MOUNT] EFI system partition | Offset (sectors): 1230848 | Size: 100 MB
2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 1435648 | Size: 128 MB
3 - Basic data partition | Offset (sectors): 1697792 | Size: 313599 MB
4 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 643948544 | Size: 450 MB
5 - Basic data partition | Offset (sectors): 644870144 | Size: 143758 MB
6 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 939286528 | Size: 18304 MB
User = LL1 ... OK
User = LL2 ... OK


Publicité


Signaler le contenu de ce document

Publicité