RogueKiller V8.7.3 [Oct 15 2013] par Tigzy mail : tigzyRKgmailcom Remontees : http://www.adlice.com/forum/ Site Web : http://www.sur-la-toile.com/RogueKiller/ Blog : http://tigzyrk.blogspot.com/ Systeme d'exploitation : Windows 8 (6.2.9200 ) 64 bits version Demarrage : Mode normal Utilisateur : Maya [Droits d'admin] Mode : Recherche -- Date : 10/15/2013 17:15:22 | ARK || FAK || MBR | ¤¤¤ Processus malicieux : 1 ¤¤¤ [SUSP PATH] WebCakeDesktop.exe -- C:\Users\cecil_000\AppData\Roaming\Betcat\WebCakeDesktop.exe [7] -> TUÉ [TermProc] ¤¤¤ Entrees de registre : 7 ¤¤¤ [RUN][SUSP PATH] HKCU\[...]\Run : WebCake Desktop (C:\Users\cecil_000\AppData\Roaming\Betcat\WebCakeDesktop.exe [7]) -> TROUVÉ [RUN][SUSP PATH] HKUS\S-1-5-21-2133079182-640728085-2092965475-1008\[...]\Run : WebCake Desktop (C:\Users\cecil_000\AppData\Roaming\Betcat\WebCakeDesktop.exe [7]) -> TROUVÉ [HJ SMENU][PUM] HKCU\[...]\Advanced : Start_TrackProgs (0) -> TROUVÉ [HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ [HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> TROUVÉ [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ ¤¤¤ Tâches planifiées : 3 ¤¤¤ [V1][SUSP PATH] EPUpdater.job : C:\Users\CECIL_~1\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [x] -> TROUVÉ [V1][ROGUE ST] Plus-HD-2.6-chromeinstaller.job : C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-chromeinstaller.exe - /installcrx /agentregpath='Plus-HD-2.6' /extensionfilepath='C:\Program Files (x86)\Plus-HD-2.6\33440.crx' /appid=33440 /srcid='000058' /subid='0' /zdata='0' /bic=C6324A94CF70413C8379F083A19E32F8IE /verifier=b21d666ed51a4c310553e2e3ed29a559 /installerversion=1_27_153 /installerfullversion=1.27.153.5 /installationtime=1370278703 /statsdomain=hxxp://stats.myserverstat.com /errorsdomain=hxxp://errors.myserverstat.com /waitforbrowser=300 /extensionid=mpfeggemggokijeahnacacopejaabljl /extensionversion=1.23.7 /extensionpublickey=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHPT5QD37DnL7GJHG77iGzvpLejxGdXHZvBKOu5hJqGvfi5WaFIsSf/uvNgjX+8psTKWdn8dMrva7GaCccB7ACl0GBsRWxp8A9mQ22mTxGvKch6geQQE/0UlevUa0CnlpcnD6D2Rq8WMXhSW2W4h762cbn0slwvjJ+KV1i9SaKuwIDAQAB /allusers /allprofiles /externallog='' [7][x][x][x][x][x][x] -> TROUVÉ [V1][ROGUE ST] Plus-HD-2.6-firefoxinstaller.job : C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-firefoxinstaller.exe - /installxpi /agentregpath='Plus-HD-2.6' /extensionfilepath='C:\Program Files (x86)\Plus-HD-2.6\33440.xpi' /appid=33440 /srcid='000058' /subid='0' /zdata='0' /bic=C6324A94CF70413C8379F083A19E32F8IE /verifier=b21d666ed51a4c310553e2e3ed29a559 /installerversion=1_27_153 /installerfullversion=1.27.153.5 /installationtime=1370278703 /statsdomain=hxxp://stats.myserverstat.com /errorsdomain=hxxp://errors.myserverstat.com /waitforbrowser=300 /extensionid=7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com /extensionversion=0.91 /prefsbranch=a7f404cccb0a94fafb3c089ceea949aeaa6724a0593804ebebe02e67e35a3402ccom33440 /updateurl=hxxps://w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/33440.rdf /allusers /allprofiles /externallog='' [7][x][x][x][x][x][x][x][x] -> TROUVÉ ¤¤¤ Entrées Startup : 0 ¤¤¤ ¤¤¤ Navigateurs web : 0 ¤¤¤ ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver : [NON CHARGE 0x0] ¤¤¤ ¤¤¤ Ruches Externes: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) (Lecteurs de disque standard) - ST500LT012-9WS142 +++++ --- User --- [MBR] cd56c8c2915bc89c20ac54e9e7e90023 [BSP] 774fae426087ac07022a54826525fcd4 : Empty MBR Code Partition table: 0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097151 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) (Lecteurs de disque standard) - SATA SSD +++++ --- User --- [MBR] 92483832e77caf52ebc3da96c70e0451 [BSP] adb97187704eb749b58e3867f40364dd : Empty MBR Code Partition table: 0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097151 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ ) (Lecteurs de disque standard) - SDHC Card +++++ --- User --- [MBR] d6c81a7a79be04b3276b82dd112ea7f4 [BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8192 | Size: 3819 Mo User = LL1 ... OK! Error reading LL2 MBR! +++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ USB) (Lecteurs de disque standard) - SanDisk Cruzer USB Device +++++ --- User --- [MBR] 33a0f33fb7e7f518f64aedcb9dad35b0 [BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 32 | Size: 7633 Mo User = LL1 ... OK! Error reading LL2 MBR! +++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ USB) (Lecteurs de disque standard) - USB DISK 2.0 USB Device +++++ --- User --- [MBR] fedc8d5f242288ae3de2ab8aa2935660 [BSP] 52edfbd0ed756b333e6b7415c8ea4994 : MBR Code unknown Partition table: 0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8064 | Size: 3821 Mo User = LL1 ... OK! Error reading LL2 MBR! Termine : << RKreport[0]_S_10152013_171522.txt >>