cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþRogueKiller V11.0.4.0 [Dec 20 2015] (Gratuit) par Adlice Software
email : http://www.adlice.com/contact/
Remontées : http://forum.adlice.com
Site web : http://www.adlice.com/fr/logiciels/roguekiller/
Blog : http://www.adlice.com

Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Démarré en : Mode normal
Utilisateur : admin [Administrateur]
Démarré depuis : C:\Users\admin\Downloads\Programs\RogueKiller.exe
Mode : Scan -- Date : 12/22/2015 17:21:04

¤¤¤ Processus : 1 ¤¤¤
[Suspicious.Path|VT.Trojan.Win32.Generic!BT] FixCamera.exe(2876) -- C:\Windows\FixCamera.exe[-] -> Tué(e) [TermProc]

¤¤¤ Registre : 10 ¤¤¤
[PUP] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0} (C:\Users\admin\AppData\Roaming\Complitly\Complitly.dll) -> Trouvé(e)
[PUP] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} (C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL) -> Trouvé(e)
[Suspicious.Path|VT.Trojan.Win32.Generic!BT] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | FixCamera : C:\Windows\FixCamera.exe [-] -> Trouvé(e)
[PUM.HomePage] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : http://start.myplaycity.com/ -> Trouvé(e)
[PUM.HomePage] HKEY_USERS\S-1-5-21-3794011643-643480475-4264226377-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://start.myplaycity.com/ -> Trouvé(e)
[PUM.HomePage] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://www.yoursites123.com/?type=hp&ts=1449651433&z=f56d4a483da56c2203b42f8gczfzet5qcw6gbz4c5c&from=ient07021&uid=HitachiXHDT721032SLA360_STH207MT23YLHS23YLHSX -> Trouvé(e)
[PUM.HomePage] HKEY_USERS\S-1-5-21-3794011643-643480475-4264226377-1000\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://www.yoursites123.com/?type=hp&ts=1449651433&z=f56d4a483da56c2203b42f8gczfzet5qcw6gbz4c5c&from=ient07021&uid=HitachiXHDT721032SLA360_STH207MT23YLHS23YLHSX -> Trouvé(e)
[PUM.SearchPage] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : http://www.yoursites123.com/web/?type=ds&ts=1449651433&z=f56d4a483da56c2203b42f8gczfzet5qcw6gbz4c5c&from=ient07021&uid=HitachiXHDT721032SLA360_STH207MT23YLHS23YLHSX&q={searchTerms} -> Trouvé(e)
[PUM.SearchPage] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : http://www.yoursites123.com/web/?type=ds&ts=1449651433&z=f56d4a483da56c2203b42f8gczfzet5qcw6gbz4c5c&from=ient07021&uid=HitachiXHDT721032SLA360_STH207MT23YLHS23YLHSX&q={searchTerms} -> Trouvé(e)
[PUM.Policies] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0 -> Trouvé(e)

¤¤¤ Tâches : 3 ¤¤¤
[Suspicious.Path] %WINDIR%\Tasks\GoogleUpdateTaskUserS-1-5-21-3794011643-643480475-4264226377-1000UA.job -- C:\Users\admin\AppData\Local\Google\Update\GoogleUpdate.exe (/ua /installsource scheduler) -> Trouvé(e)
[Suspicious.Path] \GoogleUpdateTaskUserS-1-5-21-3794011643-643480475-4264226377-1000UA -- C:\Users\admin\AppData\Local\Google\Update\GoogleUpdate.exe (/ua /installsource scheduler) -> Trouvé(e)
[Suspicious.Path|VT.not-a-virus:Downloader.Win32.Somato.h] \SomotoUpdateCheckerAutoStart -- C:\Users\admin\AppData\Local\FilesFrog Update Checker\update_checker.exe (/auto) -> Trouvé(e)

¤¤¤ Fichiers : 3 ¤¤¤
[PUP][Répertoire] C:\Users\admin\AppData\Roaming\OpenCandy -> Trouvé(e)
[PUP][Répertoire] C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} -> Trouvé(e)
[PUP][Répertoire] C:\Program Files\Complitly -> Trouvé(e)

¤¤¤ Fichier Hosts : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Chargé) ¤¤¤

¤¤¤ Navigateurs web : 0 ¤¤¤

¤¤¤ Vérification MBR : ¤¤¤
+++++ PhysicalDrive0: +++++
--- User ---
[MBR] a63879c4ee8b189c139b6706d0b988df
[BSP] 2dcc4ae3933d2d7ee5a9ef2c0c34bd44 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 179900 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 368642048 | Size: 125243 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK


Publicité


Signaler le contenu de ce document

Publicité