cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

RogueKiller V10.10.5.0 [Sep 14 2015] par Adlice Software
email : http://www.adlice.com/contact/
Remontées : http://forum.adlice.com
Site web : http://www.adlice.com/fr/logiciels/roguekiller/
Blog : http://www.adlice.com

Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Démarré en : Mode normal
Utilisateur : BadriNjr [Administrateur]
Démarré depuis : C:\Users\BadriNjr\Desktop\RogueKiller.exe
Mode : Suppression -- Date : 09/21/2015 17:50:17

¤¤¤ Processus : 0 ¤¤¤

¤¤¤ Registre : 3 ¤¤¤
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.hao123.com/?tn=97951667_hao_pg -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1843846963-1703806600-1381932909-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.hao123.com/?tn=97951667_hao_pg -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1843846963-1703806600-1381932909-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.hao123.com/?tn=97951667_hao_pg -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)

¤¤¤ Tâches : 4 ¤¤¤
[Suspicious.Path] %WINDIR%\Tasks\eG28hDORPBEFzbEdWg7EdKso9.job -- C:\Users\BadriNjr\AppData\Roaming\eG28hDORPBEFzbEdWg7EdKso9.exe (--c=WGG8mqAckRkkyyhl2OUR0ZieaPkclg2T9TsonUBwU7hg5FpBs8qUFcOsW43vUqZRq33xw2lPCaRonzUcG6ufxkQeYuqb9nFbFUqNyg3dRVRwpstpSMvKC0dcjWAzTcqKfJvxsk7nPUy0HT0U+XV7DeN1o7gFJ/4l3k3kUirervat60L//Ipw4x2d/gIuaWdsqqx3083CYc0EW5dWV8TiCqF5wjjR92L+1krb4+Z7nG9PKDeifsPpmqZMggAPNwUPyMjcIdBOaY9Zdl+e8OWFuqKEuDbTy7RoBGRyRYF8c4swzsNJ15MyogP3XnOZuouczWkk1/hs9809qypAjGa1wg==) -> Non sélectionné
[Suspicious.Path] %WINDIR%\Tasks\zXXeYt1.job -- C:\Users\BadriNjr\AppData\Roaming\zXXeYt1.exe (--c=cJRGohSSoUZ5D5vGfEl8EPX/BzHGAbNQeF3/KlKEi448nyBMsjptCIat2/DVhLzKbfZruGwoX//uK0mnTSnCG/AMhsQreAcqvEpCHeFxrZq81KdplgM08ix/M6T4oTwvt60hdmI+wXR6GBnyRo/QIl9bmkgbjXoqEzIWowuqR4iXADbeRfyzynGqJfieg9pa18HukQ986HVZS5N946/+8AXxKGI2+2wKk8XNkVoS7mVa8R2svrqkBNQenCvfQQ1vidCCuzrMxYjDXWGGUi7lioIDcIZEGNMNGCqxK3Xpoom3phrToXv5NwwjPeJG2gyCgn+BWWWrO5p2CoU0NSJokA==) -> Non sélectionné
[Suspicious.Path] \eG28hDORPBEFzbEdWg7EdKso9 -- C:\Users\BadriNjr\AppData\Roaming\eG28hDORPBEFzbEdWg7EdKso9.exe (--c=WGG8mqAckRkkyyhl2OUR0ZieaPkclg2T9TsonUBwU7hg5FpBs8qUFcOsW43vUqZRq33xw2lPCaRonzUcG6ufxkQeYuqb9nFbFUqNyg3dRVRwpstpSMvKC0dcjWAzTcqKfJvxsk7nPUy0HT0U+XV7DeN1o7gFJ/4l3k3kUirervat60L//Ipw4x2d/gIuaWdsqqx3083CYc0EW5dWV8TiCqF5wjjR92L+1krb4+Z7nG9PKDeifsPpmqZMggAPNwUPyMjcIdBOaY9Zdl+e8OWFuqKEuDbTy7RoBGRyRYF8c4swzsNJ15MyogP3XnOZuouczWkk1/hs9809qypAjGa1wg==) -> Non sélectionné
[Suspicious.Path] \zXXeYt1 -- C:\Users\BadriNjr\AppData\Roaming\zXXeYt1.exe (--c=cJRGohSSoUZ5D5vGfEl8EPX/BzHGAbNQeF3/KlKEi448nyBMsjptCIat2/DVhLzKbfZruGwoX//uK0mnTSnCG/AMhsQreAcqvEpCHeFxrZq81KdplgM08ix/M6T4oTwvt60hdmI+wXR6GBnyRo/QIl9bmkgbjXoqEzIWowuqR4iXADbeRfyzynGqJfieg9pa18HukQ986HVZS5N946/+8AXxKGI2+2wKk8XNkVoS7mVa8R2svrqkBNQenCvfQQ1vidCCuzrMxYjDXWGGUi7lioIDcIZEGNMNGCqxK3Xpoom3phrToXv5NwwjPeJG2gyCgn+BWWWrO5p2CoU0NSJokA==) -> Non sélectionné

¤¤¤ Fichiers : 0 ¤¤¤

¤¤¤ Fichier Hosts : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Non chargé [0xc000036b]) ¤¤¤

¤¤¤ Navigateurs web : 0 ¤¤¤

¤¤¤ Vérification MBR : ¤¤¤
+++++ PhysicalDrive0: Hitachi HTS547564A9E384 ATA Device +++++
--- User ---
[MBR] b169cba2eadf5e66dc118fc547249be5
[BSP] 766c8c6a04bd23d3b1f356ab10b08a47 : Empty|VT.Unknown MBR Code
Partition table:
0 - [MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 228 MB
1 - Basic data partition | Offset (sectors): 468992 | Size: 610250 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: ST3500418AS ATA Device +++++
--- User ---
[MBR] 7824e083f5ae831e6169c02ad9d4aad7
[BSP] 7652b3174363eafc435ecb78fa953312 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 120000 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 245966848 | Size: 356838 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK


Publicité


Signaler le contenu de ce document

Publicité