RogueKiller V12.11.10.0 (x64) [Aug 14 2017] (Gratuit) par Adlice Software email : http://www.adlice.com/fr/contact/ Remontées : https://forum.adlice.com Site web : http://www.adlice.com/fr/download/roguekiller/ Blog : http://www.adlice.com/fr/ Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Démarré en : Mode normal Utilisateur : roland [Administrateur] Démarré depuis : C:\Users\roland\Downloads\RogueKiller_portable64.exe Mode : Scan -- Date : 08/17/2017 21:57:58 (Durée : 01:00:42) ¤¤¤ Processus : 0 ¤¤¤ ¤¤¤ Registre : 6 ¤¤¤ [Suspicious.Path|VT.Corrupted] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mgod (c:\windows\mgod.exe) -> Trouvé(e) [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PORTIO64 (\??\C:\Users\roland\AppData\Local\Temp\PIO1022.tmp) -> Trouvé(e) [Suspicious.Path|VT.Corrupted] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\mgod (c:\windows\mgod.exe) -> Trouvé(e) [Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\PORTIO64 (\??\C:\Users\roland\AppData\Local\Temp\PIO1022.tmp) -> Trouvé(e) [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-2977659287-1481995803-4227248665-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://orange.fr/ -> Trouvé(e) [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-2977659287-1481995803-4227248665-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://orange.fr/ -> Trouvé(e) ¤¤¤ Tâches : 0 ¤¤¤ ¤¤¤ Fichiers : 2 ¤¤¤ [Hidden.ADS][Flux] C:\Windows:34142139BBB94F97 -> Trouvé(e) [Hidden.ADS][Flux] C:\ProgramData:$SS_DESCRIPTOR_XBV5V2PFGV1GVVP1VTV6VFSVF7 -> Trouvé(e) ¤¤¤ WMI : 0 ¤¤¤ ¤¤¤ Fichier Hosts : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: Chargé) ¤¤¤ ¤¤¤ Navigateurs web : 1 ¤¤¤ [PUP.Gen2][Firefox:Addon] q96sne8u.default : Search and New Tab by Yahoo [jid1-16aeif9OQIRKxA@jetpack] -> Trouvé(e) ¤¤¤ Vérification MBR : ¤¤¤ +++++ PhysicalDrive0: ST1000LM 024 HN-M101MBB SATA Disk Device +++++ --- User --- [MBR] e4abc7233a4a6a6d3de4c7b8a3d7db2b [BSP] 2c39c115a007ec5ef12d2fe7b9c69a2a : Windows Vista/7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 199 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 409600 | Size: 932760 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 1910702080 | Size: 20806 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 3 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 1953312768 | Size: 102 MB User = LL1 ... OK User = LL2 ... OK