Suite au Passage de Roguekiller

Résolu/Fermé
Dan77 - 18 janv. 2016 à 16:56
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 18 janv. 2016 à 16:58
Bonjour,

Ci joint éléments trouvés après passage du logiciel (Windows 10)

¤¤¤ Registry : 1 ¤¤¤
[PUP] (X64) HKEY_LOCAL_MACHINE\Software\Partner -> Found

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 1 ¤¤¤
[PUP][Folder] C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F} -> Found

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 47 (Driver: Loaded) ¤¤¤
[IAT:Addr(Hook.IEAT)] (chrome.exe) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (chrome.exe) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GdiDllInitialize : Unknown @ 0x7ff9ff440030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (chrome.exe) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GdiDllInitialize : Unknown @ 0x7ff9ff440030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (chrome.exe) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GdiDllInitialize : Unknown @ 0x7ff9ff440030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (***@***) gdi32!GetStockObject : Unknown @ 0x7ff9ff440070
[IAT:Addr(Hook.IEAT)] (***@***) user32!RegisterClassW : Unknown @ 0x7ff9ff280030
[IAT:Addr(Hook.IEAT)] (chrome.exe) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
[IAT:Addr(Hook.IEAT)] (***@***) kernel32!CreateNamedPipeW : Unknown @ 0x7ff9fe790030
Merci pour votre avis.

1 réponse

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 651
18 janv. 2016 à 16:58
Salut,

Probablement pas, possible que ce soit un logiciel de protection qui génère cela.

Si tu veux vérifier l'ordinateur :

Suis le tutoriel FRST.
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à  ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.

0