Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- RogueKiller V10.10.1.0 [Aug 17 2015] par Adlice Software
- email : http://www.adlice.com/contact/
- Remontées : http://forum.adlice.com
- Site web : http://www.adlice.com/fr/logiciels/roguekiller/
- Blog : http://www.adlice.com
- Système d'exploitation : Windows 10 (10.0.10240) 32 bits version
- Démarré en : Mode normal
- Utilisateur : sofiane [Administrateur]
- Démarré depuis : I:\RogueKiller.exe
- Mode : Suppression -- Date : 10/22/2015 13:45:39
- ¤¤¤ Processus : 0 ¤¤¤
- ¤¤¤ Registre : 5 ¤¤¤
- [PUP] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} (C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL) -> ERROR [2]
- [Suspicious.Path] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | TosVolRegulator : C:\Windows\TosVolRegulator.exe [7] -> ERROR [0]
- [PUM.HomePage] HKEY_USERS\S-1-5-21-2064816246-1144685700-3444163818-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://go.microsoft.com/fwlink/p/?LinkId=255141 -> Remplacé(e) (http://go.microsoft.com/fwlink/p/?LinkId=255141)
- [PUM.SearchPage] HKEY_USERS\S-1-5-21-2064816246-1144685700-3444163818-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : http://search.msn.com/spbasic.htm -> Remplacé(e) (http://search.msn.com/spbasic.htm)
- [PUM.StartMenu] HKEY_USERS\S-1-5-21-2064816246-1144685700-3444163818-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 1 -> Remplacé(e) (1)
- ¤¤¤ Tâches : 3 ¤¤¤
- [Suspicious.Path] %WINDIR%\Tasks\ToolMaker.job -- c:\programdata\{76a66823-8392-7e66-76a6-66823839a08e}\5959190735731141875b.exe (--startup=1 --single) -> ERROR [0]
- [Suspicious.Path] \ToolMaker -- c:\programdata\{76a66823-8392-7e66-76a6-66823839a08e}\5959190735731141875b.exe (--startup=1 --single) -> Supprimé(e)
- [Suspicious.Path] \Microsoft\Windows\orangeinside -- C:\Users\Admin\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe -> Supprimé(e)
- ¤¤¤ Fichiers : 0 ¤¤¤
- ¤¤¤ Fichier Hosts : 0 ¤¤¤
- ¤¤¤ Antirootkit : 4 (Driver: Chargé) ¤¤¤
- [IAT:Inl(Hook.IEAT)] (explorer.exe) SHELL32.dll - SHAddToRecentDocs : C:\WINDOWS\system32\windows.storage.dll @ 0x74c494b0 (jmp dword [0x75884fb8])
- [IAT:Inl(Hook.IEAT)] (explorer.exe) SHELL32.dll - SHGetKnownFolderItem : C:\WINDOWS\system32\windows.storage.dll @ 0x74d20f40 (jmp dword [0x75885030])
- [IAT:Inl(Hook.IEAT)] (explorer.exe) SHELL32.dll - SHGetKnownFolderIDList : C:\WINDOWS\system32\windows.storage.dll @ 0x74d1d920 (jmp dword [0x7588502c])
- [IAT:Inl(Hook.IEAT)] (explorer.exe) SHELL32.dll - SHGetFolderPathEx : C:\WINDOWS\system32\windows.storage.dll @ 0x74cde7a0 (jmp dword [0x75885024])
- ¤¤¤ Navigateurs web : 0 ¤¤¤
- ¤¤¤ Vérification MBR : ¤¤¤
- +++++ PhysicalDrive0: +++++
- --- User ---
- [MBR] 8f9f33397a7759163447eafc9a57bbe6
- [BSP] 04de73fb5b0611c68c281a5194b83770 : Windows Vista/7/8 MBR Code
- Partition table:
- 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
- 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 49450 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
- 2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 101480448 | Size: 450 MB
- 3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 102402048 | Size: 140780 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
- User = LL1 ... OK
- User = LL2 ... OK
- +++++ PhysicalDrive1: +++++
- --- User ---
- [MBR] 170c4bf6f50b3c2a2000f3200f8bfb1f
- [BSP] df5b3ca87cb7abf3ed1be0b82d76f43d : HP MBR Code
- Partition table:
- 0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 476938 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
- User = LL1 ... OK
- Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )
- +++++ PhysicalDrive2: USB DISK 2.0 USB Device +++++
- --- User ---
- [MBR] ee28ad222bb5eeee20138e04dded8f0b
- [BSP] ef3177ea6997481f5647d45aa222b26f : Unknown MBR Code
- Partition table:
- 0 - [XXXXXX] FAT32-LBA (0xc) [VISIBLE] Offset (sectors): 8064 | Size: 7450 MB
- User = LL1 ... OK
- Error reading LL2 MBR! ([32] Cette demande n?est pas prise en charge. )
Advertisement
Add Comment
Please, Sign In to add comment