Sie sind auf Seite 1von 2

RogueKiller V8.7.

5 _x64_ [Oct 22 2013] by Tigzy


mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/
Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Safe mode with network support
User : Johnathon [Admin rights]
Mode : Scan -- Date : 10/24/2013 23:41:19
| ARK || FAK || MBR |
Bad processes : 0
Registry Entries : 10
[RUN][SUSP PATH] HKLM\[...]\Wow6432Node\[...]\Run : SMessaging (C:\Users\Johnath
on\AppData\Local\Strongvault Online Backup\SMessaging.exe [x][x][x]) -> FOUND
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> FOUND
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> FOUND
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (
0) -> FOUND
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> FOUND
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_TrackProgs (0) -> FOUND
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F95
4E} (1) -> FOUND
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E}
(1) -> FOUND
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee}
(1) -> FOUND
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D}
(1) -> FOUND
Scheduled tasks : 0
Startup Entries : 0
Web browsers : 0
Particular Files / Folders:
Driver : [NOT LOADED 0x0]
External Hives:
Infection :
HOSTS File:
--> %SystemRoot%\System32\drivers\etc\hosts

MBR Check:
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500413AS +++++
--- User --[MBR] 78fe27b91a659d78a2729687d4d22d86
[BSP] cd4b8b368e6bd3ba059bb31f1e60938a : Windows Vista MBR Code
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 63 | Size: 39 Mo

1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 81920 | Size: 13566 Mo


2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 27865088 | Size: 463333 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Finished : << RKreport[0]_S_10242013_234119.txt >>