RogueKiller V8.8.3 _x64_ [Jan 24 2014] by Tigzy mail : tigzyRKgmailcom Feedback : http://www.adlice.com/forum/ Website : http://www.adlice.com/softwares/roguekiller/ Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : User [Admin rights] Mode : Scan -- Date : 01/26/2014 13:11:13 | ARK || FAK || MBR | ¤¤¤ Bad processes : 0 ¤¤¤ ¤¤¤ Registry Entries : 5 ¤¤¤ [DNS][PUM] HKLM\[...]\CCSet\[...]\{EA5B757A-594D-4D0C-9708-D91149451778} : NameServer (80.87.78.4,63.216.0.5) -> FOUND [DNS][PUM] HKLM\[...]\CS001\[...]\{EA5B757A-594D-4D0C-9708-D91149451778} : NameServer (80.87.78.4,63.216.0.5) -> FOUND [DNS][PUM] HKLM\[...]\CS002\[...]\{EA5B757A-594D-4D0C-9708-D91149451778} : NameServer (80.87.78.4,63.216.0.5) -> FOUND [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Scheduled tasks : 0 ¤¤¤ ¤¤¤ Startup Entries : 0 ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ Browser Addons : 0 ¤¤¤ ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤ ¤¤¤ External Hives: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS547550A9E384 +++++ --- User --- [MBR] ff36fba42c1879e7bb04e96c6e4f626c [BSP] 1e6fb89cd003db4a9a4041352eacd725 : Windows 7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: (\\.\PHYSICALDRIVE3 @ USB) WD Elements 1042 USB Device +++++ --- User --- [MBR] 03e91bb83b3ec41cc997585f108f446d [BSP] 83160b16c6ca7aae7e7279589e593ded : Windows XP MBR Code Partition table: 0 - [ACTIVE] FAT32 (0x0b) [VISIBLE] Offset (sectors): 2048 | Size: 476928 Mo User = LL1 ... OK! Error reading LL2 MBR! ([0x32] The request is not supported. ) Finished : << RKreport[0]_S_01262014_131113.txt >>poiuf