RogueKiller V12.11.9.0 (x64) [Aug 3 2017] (Premium) par Adlice Software email : http://www.adlice.com/fr/contact/ Remontées : https://forum.adlice.com Site web : http://www.adlice.com/fr/download/roguekiller/ Blog : http://www.adlice.com/fr/ Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Démarré en : Mode normal Utilisateur : ACER [Administrateur] Démarré depuis : C:\Program Files\RogueKiller\RogueKiller64.exe Mode : Scan -- Date : 08/12/2017 15:38:34 (Durée : 00:53:10) Commutateurs : -refid ¤¤¤ Processus : 0 ¤¤¤ ¤¤¤ Registre : 106 ¤¤¤ [PUP.Gen0] (X64) HKEY_CLASSES_ROOT\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486} (C:\Program Files\Common Files\System\SysMenu64.dll) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_CLASSES_ROOT\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1} (C:\PROGRA~2\SETTIN~1\systemk\x64\SYSTEM~1.DLL) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_CLASSES_ROOT\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6} -> Trouvé(e) [PUP.Gen0] (X64) HKEY_CLASSES_ROOT\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C} (C:\PROGRA~2\SETTIN~1\systemk\x64\SYSTEM~1.DLL) -> Trouvé(e) [PUP.Gen2] (X64) HKEY_CLASSES_ROOT\.qmgc -> Trouvé(e) [PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\ArenaHD -> Trouvé(e) [PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\HighDefAction -> Trouvé(e) [PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\InstalledBrowserExtensions -> Trouvé(e) [PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\ShopperPro -> Trouvé(e) [PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\YorkNewCin -> Trouvé(e) [Adw.Shopperz|PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\Software\YTDownloader -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\ArenaHD -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Ge-Force -> Trouvé(e) [PUP.ModGoog|PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\GlobalUpdate -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\HighDefAction -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\IHProtect -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\InstallCore -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\InstalledBrowserExtensions -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\mystartsearchSoftware -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\SavePass 1.1 -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\SavePass 1.1-nv-ie -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Sense -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\ShopperPro -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\simplitec -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\SiteSee -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\SupDp -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\supTab -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\SystemK -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Vittalia -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\webget -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\YorkNewCin -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\ArenaHD -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Crossbrowse -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\CrossBrowser -> Trouvé(e) [PUP.DriverPack] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\drpsu -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Ge-Force -> Trouvé(e) [PUP.ModGoog|PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\globalUpdate -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\HighDefAction -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\InstallCore -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\InstalledBrowserExtensions -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Linkey -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\OB -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\PowerPack -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SavePass 1.1 -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SavePass 1.1-nv-ie -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\softonicToolbar -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SystemK -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\TeleCharger -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\WebApp -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\webget -> Trouvé(e) [Adw.Vosteran|PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\wse_vosteran -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\YorkNewCin -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\ArenaHD -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Crossbrowse -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\CrossBrowser -> Trouvé(e) [PUP.DriverPack] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\drpsu -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Ge-Force -> Trouvé(e) [PUP.ModGoog|PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\globalUpdate -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\HighDefAction -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\InstallCore -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\InstalledBrowserExtensions -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Linkey -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\OB -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\PowerPack -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SavePass 1.1 -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SavePass 1.1-nv-ie -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\softonicToolbar -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\SystemK -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\TeleCharger -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\WebApp -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\webget -> Trouvé(e) [Adw.Vosteran|PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\wse_vosteran -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\YorkNewCin -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-18\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-18\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Settings Manager -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\simplitec POWER SUITE_is1 -> Trouvé(e) [Adw.Vosteran|PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WSE_Vosteran -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9563BC59-9556-4805-8CD4-886781779D8D} -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9563BC59-9556-4805-8CD4-886781779D8D} -> Trouvé(e) [PUP.Gen0] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904} -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QMUdisk (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUdisk64.sys) -> Trouvé(e) [PUP.Gen0|PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QQPCRTP ("C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRtp.exe" -r) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TS888x64 (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TsDefenseBt (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TsDefenseBT64.sys) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\QMUdisk (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUdisk64.sys) -> Trouvé(e) [PUP.Gen0|PUP.Gen1] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\QQPCRTP ("C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRtp.exe" -r) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\TS888x64 (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys) -> Trouvé(e) [PUP.Gen0] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\TSDefenseBt (\??\C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TsDefenseBT64.sys) -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : http://www.mystartsearch.com/web/?type=dspp&ts=1421617144&from=sfpsnew3&uid=TOSHIBAXMK5059GSXP_623EP6VOTXX623EP6VOT&q={searchTerms} -> Trouvé(e) [PUP.Gen1] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : http://www.mystartsearch.com/web/?type=dspp&ts=1421617144&from=sfpsnew3&uid=TOSHIBAXMK5059GSXP_623EP6VOTXX623EP6VOT&q={searchTerms} -> Trouvé(e) [PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : http://www.mystartsearch.com/web/?type=dspp&ts=1421617144&from=sfpsnew3&uid=TOSHIBAXMK5059GSXP_623EP6VOTXX623EP6VOT&q={searchTerms} -> Trouvé(e) [PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : http://www.mystartsearch.com/web/?type=dspp&ts=1421617144&from=sfpsnew3&uid=TOSHIBAXMK5059GSXP_623EP6VOTXX623EP6VOT&q={searchTerms} -> Trouvé(e) [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 192.168.1.1 0.0.0.0 ([-][]) -> Trouvé(e) [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters | DhcpNameServer : 192.168.1.1 0.0.0.0 ([-][]) -> Trouvé(e) [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{32AE4CC3-33C7-4CA2-9386-10AE8D52A095} | DhcpNameServer : 192.168.1.1 0.0.0.0 ([-][]) -> Trouvé(e) [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{32AE4CC3-33C7-4CA2-9386-10AE8D52A095} | DhcpNameServer : 192.168.1.1 0.0.0.0 ([-][]) -> Trouvé(e) [PUM.SecurityCenter] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Security Center | AntiVirusDisableNotify : 1 -> Trouvé(e) [PUM.SecurityCenter] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Security Center | FirewallDisableNotify : 1 -> Trouvé(e) [PUM.SecurityCenter] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Security Center | UpdatesDisableNotify : 1 -> Trouvé(e) [PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0 -> Trouvé(e) [PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_TrackProgs : 0 -> Trouvé(e) [PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0 -> Trouvé(e) [PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-3036393805-3533514804-2446332830-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_TrackProgs : 0 -> Trouvé(e) ¤¤¤ Tâches : 7 ¤¤¤ [PUP.Gen0] %WINDIR%\Tasks\Power Suite (Tray).job -- C:\Program Files (x86)\simplitec\simplisafe\ServiceProvider.exe -> Trouvé(e) [PUP.Gen0] %WINDIR%\Tasks\Power Suite.job -- C:\Program Files (x86)\simplitec\simpliclean\PowerSuite.exe (-task) -> Trouvé(e) [PUP.MyPCBackup|PUP.Gen1] \LaunchSignup -- C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe (frompopup) -> Trouvé(e) [PUP.Gen1] \RsDelayLauncher_{8A34248E-7D35-4832-8378-7659E0B0A380} -- C:\Program Files (x86)\Rising\RAV\rsdelaylauncher.exe -> Trouvé(e) [PUP.Gen1] \SPDriver -- C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2000\jsdrv.exe -> Trouvé(e) [Hj.Shortcut] \{26E94E27-5D6C-4090-BC6A-B83E0EC7880C} -- "c:\program files (x86)\mozilla firefox\firefox.exe" (http://ui.skype.com/ui/0/6.3.0.105/fr/abandoninstall?source=lightinstaller&page=tsProgressBar) -> Trouvé(e) [Hj.Shortcut] \{8AE17BD7-D48B-4F59-8934-03A8A01EFD16} -- "c:\program files (x86)\google\chrome\application\chrome.exe" (http://ui.skype.com/ui/0/7.2.0.103/fr/abandoninstall?page=tsMain) -> Trouvé(e) ¤¤¤ Fichiers : 61 ¤¤¤ [PUP.Gen1][Fichier] C:\ProgramData\a68d9eea-b970-45e3-ba05-b4a5e2e396bc\updater.lnk [LNK@] C:\PROGRA~3\Tencent\QQPCMgr\QUARAN~1\QMQUAR~1.EXE "/OpenQuarantine?C:\ProgramData\a68d9eea-b970-45e3-ba05-b4a5e2e396bc\updater?8d390739aa3908a47b59e1410146f5c6" -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\IHProtectUpDate -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\Rising -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\simplitec -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\systemk -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\Tencent -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\TXQMPC -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Roaming\cpuminer -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Roaming\FirefoxToolbar -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Roaming\SimilarAddon -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Roaming\Tencent -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.5_41372\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.5_41712\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.5_41865\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.6_42094\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.7_42330\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.8_42449\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_42606\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_42923\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_42973\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_43295\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.4.9_43388\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.5.0_43580\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.5.0_43804\utorrentie.exe -> Trouvé(e) [Tr.Gen0][Fichier] C:\Users\ACER\AppData\Roaming\uTorrent\updates\3.5.0_43916\utorrentie.exe -> Trouvé(e) [Adw.Vosteran|PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Roaming\WSE_Vosteran -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Local\BrowserHelper -> Trouvé(e) [PUP.ModGoog|PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Local\globalUpdate -> Trouvé(e) [PUP.Gen0|PUP.Gen1][Répertoire] C:\Users\ACER\AppData\Local\Pay-By-Ads -> Trouvé(e) [PUP.Gen1][Fichier] C:\ProgramData\a68d9eea-b970-45e3-ba05-b4a5e2e396bc\updater.lnk [LNK@] C:\PROGRA~3\Tencent\QQPCMgr\QUARAN~1\QMQUAR~1.EXE "/OpenQuarantine?C:\ProgramData\a68d9eea-b970-45e3-ba05-b4a5e2e396bc\updater?8d390739aa3908a47b59e1410146f5c6" -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\IHProtectUpDate -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\Rising -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\simplitec -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\systemk -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\Tencent -> Trouvé(e) [PUP.Gen1][Répertoire] C:\ProgramData\TXQMPC -> Trouvé(e) [PUP.Gen0][Répertoire] C:\Program Files (x86)\CinemaPlus-4.5vV14.06 -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\Ge-Force -> Trouvé(e) [PUP.ModGoog|PUP.Gen1][Répertoire] C:\Program Files (x86)\globalUpdate -> Trouvé(e) [PUP.Gen3][Fichier] C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\default-search.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystartsearch.xml -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\Rising -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\SavePass 1.1 -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\Sense -> Trouvé(e) [PUP.Gen0|PUP.Gen1][Répertoire] C:\Program Files (x86)\Settings Manager -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\simplitec -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\SiteLookup -> Trouvé(e) [PUP.Gen1][Répertoire] C:\Program Files (x86)\Tencent -> Trouvé(e) [PUP.Gen0|PUP.Gen1][Répertoire] C:\Program Files (x86)\webget -> Trouvé(e) [Adw.Vosteran|PUP.Gen1][Répertoire] C:\Program Files (x86)\WSE_Vosteran -> Trouvé(e) [PUP.Firefox][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\Invalidprefs.js -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\ask-web-search.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\default-search.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\dsrlte.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\search-simple.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\softonic.xml -> Trouvé(e) [PUP.Gen3][Fichier] C:\Users\ACER\AppData\Roaming\Mozilla\Firefox\Profiles\ra9cqo6d.default\searchplugins\Vosteran.xml -> Trouvé(e) ¤¤¤ WMI : 0 ¤¤¤ ¤¤¤ Fichier Hosts : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: Chargé) ¤¤¤ ¤¤¤ Navigateurs web : 4 ¤¤¤ [PUP.Gen2][Firefox:Addon] ra9cqo6d.default : softonic.com [ffxtlbra@softonic.com] -> Trouvé(e) [PUP.Gen2][Firefox:Addon] ra9cqo6d.default : Shopper-Pro [{746505DC-0E21-4667-97F8-72EA6BCF5EEF}] -> Trouvé(e) [PUP.Gen1|PUM.NewTab][Firefox:Config] ra9cqo6d.default : user_pref("browser.newtab.url", "http://search.yahoo.com/?fr=hp-ddc-bd-tab&type=pr__alt__ddc_dsssyctab_bd_com"); -> Trouvé(e) [PUM.SearchEngine][Firefox:Config] ra9cqo6d.default : user_pref("browser.search.selectedEngine", "mystartsearch"); -> Trouvé(e) ¤¤¤ Vérification MBR : ¤¤¤ +++++ PhysicalDrive0: +++++ --- User --- [MBR] d201866dfbb985f0d88a481cc101eefe [BSP] 641d60324801bad96ccaba16a194536c : Windows Vista/7/8|VT.Unknown MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 150838 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 309123072 | Size: 326000 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] User = LL1 ... OK User != LL2 ... KO! --- LL2 --- [MBR] d201866dfbb985f0d88a481cc101eefe [BSP] 641d60324801bad96ccaba16a194536c : Windows Vista/7/8|VT.Unknown MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 150838 MB [Error reading VBR! ([1] Fonction incorrecte. )] 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 309123072 | Size: 326000 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]