Program : RogueKiller Anti-Malware Version : 15.12.1.0 x64 : Yes Program Date : Sep 18 2023 Location : C:\Program Files\RogueKiller\RogueKiller64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : https://adlice.com/contact/ Website : https://adlice.com/download/roguekiller/ Operating System : Windows 10 (10.0.19045) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : dominique User is Admin : Yes Date : 2023/10/08 22:26:18 Type : Scan Aborted : No Scan Mode : Standard Duration : 1917 Found items : 9 Total scanned : 89414 Signatures Version : 20230928_070539 Truesight Driver : Yes Updates Count : 11 ************************* Warnings ************************* ************************* Updates ************************* 7-Zip 15.12 (x64) (64-bit), version 15.12 [+] Available Version : 23.01 [+] Size : 4,71 Mo [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\7-Zip\ AVG AntiVirus Gratuit (64-bit), version 23.9.3302 [+] Available Version : 23.9.8494 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files (x86)\AVG\Antivirus Driver Easy 5.7.3 (64-bit), version 5.7.3 [+] Available Version : 5.8.1 [+] Size : 15,0 Mo [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\Easeware\DriverEasy\ Mozilla Thunderbird (x64 fr) (64-bit), version 102.15.1 [+] Available Version : 115.3.1 [+] Size : 230 Mo [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files (x86)\Mozilla Thunderbird Recuva (64-bit), version 1.53.0.1087 [+] Available Version : 1.53.0.2096 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\Recuva 7-Zip 23.00 (x64 edition) (64-bit), version 23.00.00.0 [+] Available Version : 23.01 [+] Size : 5,70 Mo [+] Wow6432 : No [+] Portable : No LibreOffice 7.4.3.2 (64-bit), version 7.4.3.2 [+] Available Version : 7.6.2 [+] Size : 740 Mo [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Program Files\LibreOffice\ XnView 2.49.1 (32-bit), version 2.49.1 [+] Available Version : 2.51.5 [+] Size : 20,0 Mo [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\XnView\ OpenOffice 4.1.8 (32-bit), version 4.18.9803 [+] Available Version : 4.114 [+] Size : 338 Mo [+] Wow6432 : Yes [+] Portable : No [+] update_location : C:\Program Files (x86)\OpenOffice 4\ Spotify (64-bit), version 1.0.91.183.g259b84fa [+] Available Version : 1.2.18.999.g9b38fc27 [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Users\dominique\AppData\Roaming\Spotify Telegram Desktop (64-bit), version 4.5.3 [+] Available Version : 4.10.2 [+] Size : 133 Mo [+] Wow6432 : No [+] Portable : No [+] update_location : C:\Users\dominique\AppData\Roaming\Telegram Desktop\ ************************* Processes ************************* ************************* Modules ************************* ************************* Services ************************* ************************* Scheduled Tasks ************************* ************************* Registry ************************* >>>>>> XX - Software %%% [PUP.Gen1 (Potentiellement Malicieux)] (X86) HKEY_LOCAL_MACHINE\Software\simplitec -- N/A -> Trouvé(e) >>>>>> XX - Uninstall %%% [PUP.Filefinder (Potentiellement Malicieux)] (X64) HKEY_USERS\S-1-5-21-2547024802-2072548677-671110583-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pluto TV_is1 -- N/A -> Trouvé(e) ************************* WMI ************************* ************************* Hosts File ************************* is_too_big : No hosts_file_path : C:\Windows\System32\drivers\etc\hosts ************************* Filesystem ************************* [PUP.AutoIt.Gen (Potentiellement Malicieux)] (file) X-DivFix++.exe -- C:\ReplayTV_Pack_13\DivFix\X-DivFix++.exe -> Trouvé(e) [PUP.Filefinder (Potentiellement Malicieux)] (shortcut) PlutoTV.lnk -- C:\Users\dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PlutoTV.lnk => C:\Users\DOMINI~1\AppData\Roaming\PLUTOT~1\PlutoTV.exe -> Trouvé(e) [PUP.Filefinder (Potentiellement Malicieux)] (shortcut) PlutoTV.lnk -- C:\Users\dominique\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\PlutoTV.lnk => C:\Users\DOMINI~1\AppData\Roaming\PLUTOT~1\PlutoTV.exe -> Trouvé(e) [PUP.Filefinder (Potentiellement Malicieux)] (shortcut) PlutoTV.lnk -- C:\Users\dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pluto TV\PlutoTV.lnk => C:\Users\DOMINI~1\AppData\Roaming\PLUTOT~1\PlutoTV.exe -> Trouvé(e) [PUP.Filefinder (Potentiellement Malicieux)] (folder) Pluto TV -- C:\Users\dominique\AppData\Roaming\Pluto TV -> Trouvé(e) [PUP.Rostpay (Potentiellement Malicieux)] (folder) ROSTPAY LTD -- C:\Users\dominique\AppData\Roaming\ROSTPAY LTD -> Trouvé(e) [PUP.Rostpay (Potentiellement Malicieux)] (folder) ROSTPAY LTD -- C:\Users\dominique\AppData\Local\ROSTPAY LTD -> Trouvé(e) ************************* Web Browsers ************************* ************************* Antirootkit *************************