RogueKiller V8.6.3 [Jul 17 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback :
http://www.adlice.com/forum/
Website :
http://www.adlice.co...es/roguekiller/
Blog :
http://tigzyrk.blogspot.com/
Operating System : Windows Vista (6.0.6002 Service Pack 2) 64 bits version
Started in : Normal mode
User : Fry's Electronics [Admin rights]
Mode : Remove -- Date : 07/20/2013 13:52:03
| ARK || FAK || MBR |
¤¤¤ Bad processes : 1 ¤¤¤
[SUSP PATH] RTKAUDIOSERVICE.EXE -- C:\Windows\RTKAUDIOSERVICE.EXE [-] -> KILLED [TermProc]
¤¤¤ Registry Entries : 7 ¤¤¤
[HJ POL] HKCU\[...]\System : DisableTaskMgr (0) -> DELETED
[HJ POL] HKLM\[...]\System : EnableLUA (0) -> [0x5] Access is denied.
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> [0x5] Access is denied.
[HJ DESK] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> REPLACED (0)
[HJ DESK] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> REPLACED (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)
¤¤¤ Scheduled tasks : 0 ¤¤¤
¤¤¤ Startup Entries : 0 ¤¤¤
¤¤¤ Web browsers : 0 ¤¤¤
¤¤¤ Particular Files / Folders: ¤¤¤
¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤
¤¤¤ External Hives: ¤¤¤
¤¤¤ Infection : ¤¤¤
¤¤¤ HOSTS File: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
¤¤¤ MBR Check: ¤¤¤
+++++ PhysicalDrive0: WDC WD5000AAJS-55A8B0 ATA Device +++++
--- User ---
[MBR] 4b68bcbc820ed1a69a6468c10d62f613
[BSP] 8a6a6c5c83df0a4ecc3c1efbdd6e04bc : Windows Vista MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 10064 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20613120 | Size: 466874 Mo
User = LL1 ... OK!
User != LL2 ... KO!
--- LL2 ---
[MBR] 5c3bc0ec3251614229189dab321552f7
[BSP] 483fec193e3022e6e5f949f3355ba2f8 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 10064 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20613120 | Size: 466874 Mo
Finished : << RKreport[0]_D_07202013_135200.txt >>
RKreport[0]_S_07202013_135140.txt