Advertisement
Guest User

Untitled

a guest
May 29th, 2015
330
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.00 KB | None | 0 0
  1. RogueKiller V10.7.0.0 (x64) [May 25 2015] by Adlice Software
  2. mail : http://www.adlice.com/contact/
  3. Feedback : http://forum.adlice.com
  4. Website : http://www.adlice.com/softwares/roguekiller/
  5. Blog : http://www.adlice.com
  6.  
  7. Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
  8. Started in : Normal mode
  9. User : Lachlan [Administrator]
  10. Started from : C:\Users\Lachlan\Downloads\RogueKillerX64.exe
  11. Mode : Scan -- Date : 05/29/2015 22:03:16
  12.  
  13. ¤¤¤ Processes : 3 ¤¤¤
  14. [Suspicious.Path] SpotifyCrashService.exe(6796) -- C:\Users\Lachlan\AppData\Roaming\Spotify\SpotifyCrashService.exe[7] -> Killed [TermProc]
  15. [PUP] (SVC) hshld -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe[-] -> Stopped
  16. [PUP] (SVC) HssWd -- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe[7] -> Stopped
  17.  
  18. ¤¤¤ Registry : 22 ¤¤¤
  19. [PUM.Orphan] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad | WebCheck : {E6FB5E20-DE35-11CF-9C87-00AA005127ED} -> Found
  20. [PUM.Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad | WebCheck : {E6FB5E20-DE35-11CF-9C87-00AA005127ED} -> Found
  21. [PUM.Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> Found
  22. [PUM.Orphan] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9} -> Found
  23. [PUP] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | Lightshot : C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [7] -> Found
  24. [PUP] (X64) HKEY_USERS\S-1-5-21-199859529-4250487845-1239438349-1000\Software\Microsoft\Windows\CurrentVersion\Run | LightShot : C:\Users\Lachlan\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [x][x][x] -> Found
  25. [PUP] (X86) HKEY_USERS\S-1-5-21-199859529-4250487845-1239438349-1000\Software\Microsoft\Windows\CurrentVersion\Run | LightShot : C:\Users\Lachlan\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue [x][x][x] -> Found
  26. [PUP] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\hshld (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe) -> Found
  27. [PUP] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\HssTrayService (C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE) -> Found
  28. [PUP] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\HssWd (C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe) -> Found
  29. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\hshld (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe) -> Found
  30. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HssTrayService (C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE) -> Found
  31. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HssWd (C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe) -> Found
  32. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\hshld (C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe) -> Found
  33. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\HssTrayService (C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE) -> Found
  34. [PUP] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\HssWd (C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe) -> Found
  35. [PUM.Policies] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0 -> Found
  36. [PUM.Policies] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0 -> Found
  37. [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Found
  38. [PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Found
  39. [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Found
  40. [PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Found
  41.  
  42. ¤¤¤ Tasks : 0 ¤¤¤
  43.  
  44. ¤¤¤ Files : 0 ¤¤¤
  45.  
  46. ¤¤¤ Hosts File : 0 ¤¤¤
  47.  
  48. ¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤
  49.  
  50. ¤¤¤ Web browsers : 0 ¤¤¤
  51.  
  52. ¤¤¤ MBR Check : ¤¤¤
  53. +++++ PhysicalDrive0: WDC WD10EZEX-00RKKA0 ATA Device +++++
  54. --- User ---
  55. [MBR] 68eeccf47185dc9824813c12c427bd4d
  56. [BSP] 58d6e118850a436605c3cdc9aee3bfdc : Windows Vista/7/8 MBR Code
  57. Partition table:
  58. 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
  59. 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 953767 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
  60. User = LL1 ... OK
  61. User = LL2 ... OK
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement