cjoint

Publicité


Publicité

Format du document : application/octet-stream

Prévisualisation

ÿþRogueKiller V12.11.21.0 (x64) [Oct 23 2017] (Premium) par Adlice Software
email : http://www.adlice.com/fr/contact/
Remontées : https://forum.adlice.com
Site web : http://www.adlice.com/fr/download/roguekiller/
Blog : http://www.adlice.com/fr/

Système d'exploitation : Windows 10 (10.0.15063) 64 bits version
Démarré en : Mode sans échec prise en charge réseau
Utilisateur : jean- [Administrateur]
Démarré depuis : C:\Program Files\RogueKiller\RogueKiller64.exe
Mode : Suppression -- Date : 10/29/2017 17:31:07 (Durée : 02:30:41)

¤¤¤ Processus : 0 ¤¤¤

¤¤¤ Registre : 15 ¤¤¤
[PUP.ByteFence|PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\ByteFence -> Supprimé(e)
[PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\WebDiscoverBrowser -> Supprimé(e)
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> Supprimé(e)
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> ERROR [2]
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180338023\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> ERROR [2]
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180338023\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> ERROR [2]
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180703961\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> ERROR [2]
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180703961\Software\Microsoft\Windows\CurrentVersion\Run | WallpaperAnime : "C:\Users\jean-\AppData\Local\WallpaperAnime\WallpaperAnime.exe" /regrun [-] -> ERROR [2]
[Suspicious.Path] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce | !CD : C:\WINDOWS\temp\dragon_setup.exe --silent [7] -> Supprimé(e)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180338023\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> ERROR [2]
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180338023\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> ERROR [2]
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180703961\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> ERROR [2]
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-4265624635-2019933758-61733912-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10292017180703961\Software\Microsoft\Internet Explorer\Main | Start Page : about:Tabs -> ERROR [2]

¤¤¤ Tâches : 1 ¤¤¤
[PUP.AdvancedPCCare|PUP.Gen0] %WINDIR%\Tasks\Advanced-PC-Care_Logon.job -- C:\Program Files\Advanced-PC-Care\apc.exe (startuplaunch) -> Supprimé(e)

¤¤¤ Fichiers : 2 ¤¤¤
[PUP.Gen1][Répertoire] C:\ProgramData\simplitec -> Supprimé(e) au redémarrage [91]
[PUP.Gen1][Répertoire] C:\ProgramData\simplitec\Nero TuneItUp -> ERROR [5]
[PUP.Gen1][Répertoire] C:\ProgramData\simplitec -> Supprimé(e)
[PUP.Gen1][Fichier] C:\ProgramData\simplitec\Nero TuneItUp\gahelper.xml -> Supprimé(e)
[PUP.Gen1][Répertoire] C:\ProgramData\simplitec\Nero TuneItUp -> Supprimé(e)

¤¤¤ WMI : 0 ¤¤¤

¤¤¤ Fichier Hosts : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Non chargé [0xc000035f]) ¤¤¤

¤¤¤ Navigateurs web : 1 ¤¤¤
[PUM.HomePage][Firefox:Config] 5mwzbw67.default : user_pref("browser.startup.homepage", "moz-extension://5402d56b-8de1-45a9-8a3c-dacbf6979584/index.html#page_hp"); -> Remplacé(e) (about:home)

¤¤¤ Vérification MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-60ZF5A0 +++++
--- User ---
[MBR] f19f9714e47ab4128b6f3011b27424cc
[BSP] 26012d740c831a02c0e1020ed9492ac0 : Empty|VT.Unknown MBR Code
Partition table:
0 - [MAN-MOUNT] EFI system partition | Offset (sectors): 2048 | Size: 360 MB
1 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 739328 | Size: 128 MB
2 - Basic data partition | Offset (sectors): 1001472 | Size: 951722 MB
3 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 1950130176 | Size: 864 MB
4 - [MAN-MOUNT] Basic data partition | Offset (sectors): 1951901696 | Size: 792 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: ZALMAN ZM-VE350 USB Device +++++
--- User ---
[MBR] 21ff01e873e9609ceb2f808d9e294241
[BSP] a922347b0f23e4151bae6ba1ba624309 : HP|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953827 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive2: WD My Passport 0827 USB Device +++++
Error reading User MBR! ([57] Paramètre incorrect. )
Error reading LL1 MBR! ([79] Le délai de temporisation de sémaphore a expiré. )
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive3: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Le périphérique n?est pas prêt. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive4: Generic STORAGE DEVICE USB Device +++++
--- User ---
[MBR] 1d85ed8d4a980c74df074e0864dfd083
[BSP] 0ed7054157441c76a4e04b614ebdb693 : Empty|VT.Unknown MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 8192 | Size: 29660 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive5: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Le périphérique n?est pas prêt. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive6: General USB Flash Disk USB Device +++++
--- User ---
[MBR] d71f98927daae4dbba08c3f021ad508b
[BSP] 73c31112e0f6b7a950819d1aa9295307 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 2048 | Size: 15282 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive7: Kingston DataTraveler 3.0 USB Device +++++
--- User ---
[MBR] c7170d64870fc5ad685e68222700b436
[BSP] e2b7794943637a5de79dec59706023a8 : Legit.Unknown|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 63 | Size: 14778 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive8: WD Elements 10A8 USB Device +++++
--- User ---
[MBR] 3ca72d93bbd8cbacc3c34ecdce6cba4f
[BSP] 7c1dc59b57c4df2f610b9763fedc4f0e : Empty|VT.Unknown MBR Code
Partition table:
0 - Microsoft reserved partition | Offset (sectors): 34 | Size: 128 MB
1 - Basic data partition | Offset (sectors): 264192 | Size: 953707 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )

+++++ PhysicalDrive9: SDXC Card +++++
--- User ---
[MBR] fb6b71cb3f31bac724802c154a40a17f
[BSP] 0a4c4b25b76f429fbb8b7c4b759b2d69 : Unknown|VT.Unknown MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0xff) [VISIBLE] Offset (sectors): 4294967295 | Size: 2097152 MB
1 - [XXXXXX] UNKNOWN (0xff) [VISIBLE] Offset (sectors): 4294967295 | Size: 2097152 MB
2 - [XXXXXX] UNKNOWN (0xff) [VISIBLE] Offset (sectors): 4294967295 | Size: 2097152 MB
3 - [XXXXXX] UNKNOWN (0xff) [VISIBLE] Offset (sectors): 4294967295 | Size: 1167373 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )


Publicité


Signaler le contenu de ce document

Publicité