RogueKiller V8.7.5 [Oct 22 2013] od Tigzy mail : tigzyRKgmailcom Dodaj opinię : http://www.adlice.com/forum/ Strona internetowa : http://www.adlice.com/softwares/roguekiller/ Blog : http://tigzyrk.blogspot.com/ System Operacyjny : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Uruchomiono z : Tryb normalny Użytkownik : Adrian [Uprawnienia Administratora] Tryb : Usuń -- Data : 10/26/2013 12:41:49 | ARK || FAK || MBR | ¤¤¤ Szkodliwe procesy : 1 ¤¤¤ [SUSP PATH] ouc.exe -- C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe [-] -> ZAKOŃCZONO [TermProc] ¤¤¤ Wpisy w Rejestrze : 0 ¤¤¤ ¤¤¤ Zaplanowane zadania : 0 ¤¤¤ ¤¤¤ Wpisy startowe : 0 ¤¤¤ ¤¤¤ przeglądarki internetowe : 0 ¤¤¤ ¤¤¤ Pliki / Foldery: ¤¤¤ [ZeroAccess][plik] Desktop.ini : C:\Windows\assembly\GAC_32\Desktop.ini [-] --> USUNIĘTO [ZeroAccess][plik] Desktop.ini : C:\Windows\assembly\GAC_64\Desktop.ini [-] --> USUNIĘTO ¤¤¤ Sterownik : [NIEZAŁADOWANY 0x0] ¤¤¤ ¤¤¤ Gałąź rejestru (offline): ¤¤¤ ¤¤¤ Infekcja : ZeroAccess ¤¤¤ ¤¤¤ Plik HOSTS: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ Sprawdzenie MBR: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS547550A9E384 SATA Disk Device +++++ --- User --- [MBR] 2a7018b991fca60e01e466133d2e4921 [BSP] bcfcfa1e5d330733555ba4778e82425e : Windows 7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 458349 Mo 2 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 976560128 | Size: 103 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Kingston DataTraveler 108 USB Device +++++ --- User --- [MBR] 97dc33cb52d338f5ce33eaa795aaa288 [BSP] 33a07a59d299ab4ea9f4ab0156f9d86f : Windows XP MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 8064 | Size: 14992 Mo User = LL1 ... OK! Error reading LL2 MBR! Zakończono : << RKreport[0]_D_10262013_124149.txt >> RKreport[0]_D_10262013_122550.txt;RKreport[0]_S_10262013_122202.txt;RKreport[0]_S_10262013_123908.txt