prosimim o kontr. logu Roguekiller
Napsal: 10 srp 2014 08:16
RogueKiller V9.2.6.0 [Jul 11 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Vladimir [Práva správce]
Mód : Kontrola -- Datum : 08/08/2014 11:13:06
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\gdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\gdrv -> NALEZENO
[PUM.Policies] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
¤¤¤ Antirootkit : 7 (Driver: NAHRÁNO) ¤¤¤
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_CREATE[0] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_CLOSE[2] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_DEVICE_CONTROL[14] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_INTERNAL_DEVICE_CONTROL[15] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_POWER[22] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_SYSTEM_CONTROL[23] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_PNP[27] : Unknown @ 0xc28ee1f8
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3250410AS ATA Device +++++
--- User ---
[MBR] 6a857623c42b2924f3b43502daa51140
[BSP] f2560aef768ee02d8c2c4046f790a321 : Legit.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2055 | Size: 238471 MB
User = LL1 ... OK
User = LL2 ... OK
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Vladimir [Práva správce]
Mód : Kontrola -- Datum : 08/08/2014 11:13:06
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 10 ¤¤¤
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\gdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\catchme -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\etdrv -> NALEZENO
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\gdrv -> NALEZENO
[PUM.Policies] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
¤¤¤ Antirootkit : 7 (Driver: NAHRÁNO) ¤¤¤
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_CREATE[0] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_CLOSE[2] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_DEVICE_CONTROL[14] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_INTERNAL_DEVICE_CONTROL[15] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_POWER[22] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_SYSTEM_CONTROL[23] : Unknown @ 0xc28ee1f8
[IRP:Addr(Hook.IRP)] \SystemRoot\system32\drivers\atapi.sys - IRP_MJ_PNP[27] : Unknown @ 0xc28ee1f8
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST3250410AS ATA Device +++++
--- User ---
[MBR] 6a857623c42b2924f3b43502daa51140
[BSP] f2560aef768ee02d8c2c4046f790a321 : Legit.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2055 | Size: 238471 MB
User = LL1 ... OK
User = LL2 ... OK