cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþRkill 2.7.0 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2015 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 08/14/2015 08:14:28 PM in x64 mode.
Windows Version: Windows 8.1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\ProgramData\CersIuo\ciiuwte.exe (PID: 2084) [AU-HEUR]
* C:\Users\sameh\AppData\Local\NVIDIANetwork\nvidia.exe (PID: 2860) [UP-HEUR]
* C:\Windows\SysWOW64\IoctlSvc.exe (PID: 2676) [WD-HEUR]
* C:\Windows\system32\valWBFPolicyService.exe (PID: 4040) [WD-HEUR]
* C:\ProgramData\CersIuo\ciiuate.exe (PID: 4912) [AU-HEUR]
* C:\ProgramData\CersIuo\ciiu6te.exe (PID: 6076) [AU-HEUR]
* C:\ProgramData\CersIuo\ciiudte.exe (PID: 5668) [AU-HEUR]
* C:\ProgramData\CersIuo\ciiu3te.exe (PID: 5692) [AU-HEUR]

8 proccesses terminated!

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Policies\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

* Reparse Point/Junctions Found (Most likely legitimate)!

* C:\Windows\apppatch\spbin => C:\PROGRA~2\SearchProtect\SearchProtect\bin [Dir]

Checking Windows Service Integrity:

* No issues found.

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 08/14/2015 08:18:26 PM
Execution time: 0 hours(s), 3 minute(s), and 57 seconds(s)

Publicité


Signaler le contenu de ce document

Publicité