Bonjour,
Jai un probleme de system fix sur mon ordi. J'ai fait un scan avec Roguekiller et j'aurais besoin d'aide pour la suite....
Je n'ai rien sur mon windows 7 a part la corbeille. Est-ce que j'ai tout perdu ou les trucs, donc mes photos, vont revenir ?
merci !
RogueKiller V6.2.0 [12/12/2011] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees: http://www.sur-la-toile.com/discussion-193725-1-BRogueKillerD-Remontees.html
Blog: http://tigzyrk.blogspot.com
Systeme d'exploitation: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Demarrage : Mode normal
Utilisateur: marc-andré [Droits d'admin]
Mode: Recherche -- Date : 14/12/2011 18:29:22
¤¤¤ Processus malicieux: 3 ¤¤¤
[WINDOW : System Fix] U8d6TzQV1guQKT.exe -- C:\ProgramData\U8d6TzQV1guQKT.exe -> KILLED [TermProc]
[SUSP PATH] PvrtVtYGxyGUr.exe -- C:\ProgramData\PvrtVtYGxyGUr.exe -> KILLED [TermProc]
[SUSP PATH] U8d6TzQV1guQKT.exe -- C:\ProgramData\U8d6TzQV1guQKT.exe -> KILLED [TermProc]
¤¤¤ Entrees de registre: 9 ¤¤¤
[SUSP PATH] HKCU\[...]\Run : PvrtVtYGxyGUr.exe (C:\ProgramData\PvrtVtYGxyGUr.exe) -> FOUND
[SUSP PATH] HKUS\S-1-5-21-3809224193-2583936015-1082959459-1001[...]\Run : PvrtVtYGxyGUr.exe (C:\ProgramData\PvrtVtYGxyGUr.exe) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowMyComputer (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowSearch (0) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> FOUND
¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤
¤¤¤ Driver: [NOT LOADED] ¤¤¤
¤¤¤ Infection : Rogue.FakeHDD|Root.MBR ¤¤¤
¤¤¤ Fichier HOSTS: ¤¤¤
¤¤¤ MBR Verif: ¤¤¤
--- User ---
[MBR] 9d24bda9416eb108e62e9953a5dc1d25
[BSP] fe528715f60826b88d3cfb4a8870e45c : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS [VISIBLE] Offset (sectors): 2048 | Size: 104 Mo
1 - [XXXXXX] NTFS [VISIBLE] Offset (sectors): 206848 | Size: 319965 Mo
User = LL1 ... OK!
User != LL2 ... KO!
--- LL2 ---
[MBR] 07fdbca44fc375fbc5b3874d34c0703c
[BSP] fe528715f60826b88d3cfb4a8870e45c : MBR Code unknown
Partition table:
0 - [XXXXXX] NTFS [VISIBLE] Offset (sectors): 2048 | Size: 104 Mo
1 - [XXXXXX] NTFS [VISIBLE] Offset (sectors): 206848 | Size: 319965 Mo
2 - [ACTIVE] NTFS [HIDDEN!] Offset (sectors): 625139712 | Size: 1 Mo
Termine : << RKreport[1].txt >>
RKreport[1].txt