Bonsoir
Voici le rapport.
Merci de votre aide.
Moriarti
RogueKiller V8.0.4 [19/09/2012] par Tigzy
mail: tigzyRK<at>gmail<dot>com
Remontees:
http://www.sur-la-toile.com/discussion- ... ntees.htmlBlog:
http://tigzyrk.blogspot.comSysteme d'exploitation: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur : yves [Droits d'admin]
Mode : Recherche -- Date : 19/09/2012 19:08:01
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 0 ¤¤¤
¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤
¤¤¤ Driver : [CHARGE] ¤¤¤
SSDT[75] : NtCreateSection @ 0x82A49DE5 -> HOOKED (Unknown @ 0x8AABB94E)
SSDT[276] : NtRequestWaitReplyPort @ 0x82A5BF90 -> HOOKED (Unknown @ 0x8AABB958)
SSDT[289] : NtSetContextThread @ 0x82AAB06F -> HOOKED (Unknown @ 0x8AABB953)
SSDT[314] : NtSetSecurityObject @ 0x829D8038 -> HOOKED (Unknown @ 0x8AABB95D)
SSDT[332] : NtSystemDebugControl @ 0x82A10EC1 -> HOOKED (Unknown @ 0x8AABB962)
SSDT[334] : NtTerminateProcess @ 0x82A09143 -> HOOKED (Unknown @ 0x8AABB8EF)
S_SSDT[573] : Unknown -> HOOKED (Unknown @ 0x8AABB976)
S_SSDT[576] : Unknown -> HOOKED (Unknown @ 0x8AABB97B)
¤¤¤ Infection : ¤¤¤
¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ MBR Verif: ¤¤¤
+++++ PhysicalDrive0: FUJITSU MHY2160BH +++++
--- User ---
[MBR] d24af5eee5fe38fae3c5e7450d0b3be1
[BSP] 5e7fee3ff2bcecf4c3ed89679e39de02 : Windows Vista MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 7174 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 14694400 | Size: 145451 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Termine : << RKreport[1].txt >>
RKreport[1].txt