RogueKiller V8.0.4 [09/19/2012] by Tigzy mail: tigzyRKgmailcom Feedback: http://www.geekstogo.com/forum/files/file/413-roguekiller/ Blog: http://tigzyrk.blogspot.com Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version Started in : Normal mode User : [Admin rights] Mode : Scan -- Date : 09/20/2012 21:10:01 ¤¤¤ Bad processes : 3 ¤¤¤ [SUSP PATH][DLL] explorer.exe -- C:\Windows\explorer.exe : C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll -> UNLOADED [SUSP PATH][DLL] explorer.exe -- C:\Windows\explorer.exe : C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll -> UNLOADED [SUSP PATH][DLL] explorer.exe -- C:\Windows\explorer.exe : C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll -> UNLOADED ¤¤¤ Registry Entries : 4 ¤¤¤ [RUN][SUSP PATH] HKUS\S-1-5-21-3829815512-2678597626-704828700-131852[...]\RunOnce : JavaInstallRetry ("C:\Users\MyUser\AppData\LocalLow\Sun\Java\JRERunOnce.exe" RUNONCE=1 SPONSORS=0) -> FOUND [HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [LOADED] ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:\windows\system32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BEVT-00A0RT0 +++++ --- User --- [MBR] 608eb5c386d1fdfd23e05cdea530c278 [BSP] 4ce6777d9528949301d49899b5d6dd02 : Windows 7 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 500 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 1026048 | Size: 476438 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[1].txt >> RKreport[1].txt