RogueKiller V8.3.1 [Dec 2 2012] by Tigzy mail : tigzyRKgmailcom Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/ Website : http://tigzy.geekstogo.com/roguekiller.php Blog : http://tigzyrk.blogspot.com/ Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : Sylwia [Admin rights] Mode : Scan -- Date : 12/05/2012 13:24:16 ¤¤¤ Bad processes : 1 ¤¤¤ [SUSP PATH] notepad.exe -- C:\Windows\notepad.exe -> KILLED [TermProc] ¤¤¤ Registry Entries : 6 ¤¤¤ [HJPOL] HKCU\[...]\System : DisableTaskMgr (0) -> FOUND [HJPOL] HKCU\[...]\System : DisableRegistryTools (0) -> FOUND [HJPOL] HKLM\[...]\System : DisableTaskMgr (0) -> FOUND [HJPOL] HKLM\[...]\Wow6432Node\System : DisableTaskMgr (0) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED] ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:\Windows\system32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: TOSHIBA MK3265GSX +++++ --- User --- [MBR] b27ce80fd56c222464c251f3a3328dc3 [BSP] 82e66be53cd09379d2d7814bba3f193e : KIWI Image system MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 115712 Mo 2 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 237185024 | Size: 171331 Mo 3 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 588070912 | Size: 18099 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[1]_S_12052012_02d1324.txt >> RKreport[1]_S_12052012_02d1324.txt