ÿþRogueKiller V12.12.21.0 (x64) [Jun 11 2018] (Gratuit) par Adlice Software email : http://www.adlice.com/fr/contact/ Remontées : https://forum.adlice.com Site web : http://www.adlice.com/fr/download/roguekiller/ Blog : http://www.adlice.com/fr/ Système d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Démarré en : Mode normal Utilisateur : denis [Administrateur] Démarré depuis : C:\Program Files\RogueKiller\RogueKiller64.exe Mode : Scan -- Date : 06/17/2018 22:21:24 (Durée : 00:44:14) ¤¤¤ Processus : 0 ¤¤¤ ¤¤¤ Registre : 6 ¤¤¤ [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.qwant.com/web -> Trouvé(e) [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.qwant.com/web -> Trouvé(e) [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1000\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://packardbell.msn.com -> Trouvé(e) [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1000\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://packardbell.msn.com -> Trouvé(e) [PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1001\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Trouvé(e) [PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-2199191806-245671021-3521825341-1001\Software\Microsoft\Internet Explorer\Main | Search Bar : Preserve -> Trouvé(e) ¤¤¤ Tâches : 0 ¤¤¤ ¤¤¤ Fichiers : 2 ¤¤¤ [PUP.Tific][Répertoire] C:\Users\denis\AppData\Roaming\Tific -> Trouvé(e) [Hj.Shortcut][Fichier] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support\Contact.lnk [LNK@] C:\PROGRA~1\INTERN~1\iexplore.exe http://go.packardbell.com/?id=9660 -> Trouvé(e) ¤¤¤ WMI : 0 ¤¤¤ ¤¤¤ Fichier Hosts : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: Chargé) ¤¤¤ ¤¤¤ Navigateurs web : 3 ¤¤¤ [PUM.SearchPage][Chrome:Config] Default [SecurePrefs] : default_search_provider_data.template_url_data.keyword [qwant.com] -> Trouvé(e) [PUM.SearchPage][Chrome:Config] Default [SecurePrefs] : default_search_provider_data.template_url_data.url [https://www.qwant.com/?q={searchTerms}&client=opensearch] -> Trouvé(e) [PUM.SearchPage][Chrome:Config] Default [SecurePrefs] : default_search_provider_data.template_url_data.suggestions_url [https://api.qwant.com/api/suggest/?q={searchTerms}&client=opensearch] -> Trouvé(e) ¤¤¤ Vérification MBR : ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BPVT-22HXZT1 +++++ --- User --- [MBR] fad337b0b0677353481b0297f97e5a97 [BSP] 89d4617e66cd00896914c226232f2be2 : Legit.Unknown|VT.Unknown MBR Code Partition table: 0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 20480 MB 1 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 41945088 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 42149888 | Size: 456356 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] User = LL1 ... OK User = LL2 ... OK