Voilà :
Utilisateur : Steph & Rod [Droits d'admin]
Mode : Recherche -- Date : 19/12/2013 22:28:06
| ARK || FAK || MBR |
¤¤¤ Processus malicieux : 0 ¤¤¤
¤¤¤ Entrees de registre : 0 ¤¤¤
¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤
¤¤¤ Driver : [CHARGE] ¤¤¤
SSDT[75] : NtCreateSection @ 0x82A91689 -> HOOKED (Unknown @ 0x8DBDD4AE)
SSDT[276] : NtRequestWaitReplyPort @ 0x82A75415 -> HOOKED (Unknown @ 0x8DBDD4B8)
SSDT[289] : NtSetContextThread @ 0x82ADD233 -> HOOKED (Unknown @ 0x8DBDD4B3)
SSDT[314] : NtSetSecurityObject @ 0x82A21773 -> HOOKED (Unknown @ 0x8DBDD4BD)
SSDT[332] : NtSystemDebugControl @ 0x82A45E60 -> HOOKED (Unknown @ 0x8DBDD4C2)
SSDT[334] : NtTerminateProcess @ 0x82A2B2F0 -> HOOKED (Unknown @ 0x8DBDD44F)
S_SSDT[573] : NtUserSetWindowsHookEx -> HOOKED (Unknown @ 0x8DBDD4D6)
S_SSDT[576] : NtUserSetWinEventHook -> HOOKED (Unknown @ 0x8DBDD4DB)
IRP[IRP_MJ_CREATE] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_CLOSE] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_DEVICE_CONTROL] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_INTERNAL_DEVICE_CONTROL] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_POWER] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_SYSTEM_CONTROL] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
IRP[IRP_MJ_PNP] : \SystemRoot\system32\DRIVERS\iaStor.sys -> HOOKED ([MAJOR] Unknown @ 0x84C4E1F8)
¤¤¤ Fichier HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts
127.0.0.1
www.mofa.go.jp/region/asia-paci/takeshima/index.html/127.0.0.1
www.mofa.go.jp/policy/maritime/japan/index.html/127.0.0.1
www.occidentalism.org127.0.0.1 ndfsk.dyndns.org
127.0.0.1
www.uriminzokkiri.com127.0.0.1
www.kcckp.net/external_k127.0.0.1
www.tongpo.com127.0.0.1
www.travel-northkorea.com127.0.0.1 wing.zero.ad.jp/~zbf10400
127.0.0.1
www.dprknta.com127.0.0.1
www.korea-np.co.jp127.0.0.1
www.kcna.co.jp/index-k.htm/index-k.htm127.0.0.1
www.chongryon.com/index-j.htm127.0.0.1
www.krbook.net/index-j.htm127.0.0.1
www.kcna.co.jp/index-k.htm/index-k.htm127.0.0.1
www.chongryon.com/index-j.htm127.0.0.1 linkflash.hp.infoseek.co.jp
127.0.0.1 fetia.blog34.fc2.com
127.0.0.1
www.koreananimals.org/dogs.htm127.0.0.1
www.dogaid.freeservers.com/background.htm[...]
¤¤¤ MBR Verif: ¤¤¤
+++++ PhysicalDrive0: TOSHIBA MK1246GSX +++++
--- User ---
[MBR] 1be7a0c02f74ac9a4d832b01199f5faf
[BSP] 38932936f110ab39303856f875729d06 : Acer MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 63 | Size: 10244 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20981760 | Size: 104227 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Termine : << RKreport[1]_S_19122013_222806.txt >>
RKreport[1]_S_19122013_222806.txt