RogueKiller V12.2.1.0 [May 16 2016] (Premium) by Adlice Software mail : http://www.adlice.com/contact/ Feedback : http://forum.adlice.com Website : http://www.adlice.com/software/roguekiller/ Blog : http://www.adlice.com Operating System : Windows 10 (10.0.10586) 64 bits version Started in : Normal mode User : Mhanna90 [Administrator] Started from : C:\Users\Mhanna90\Downloads\RogueKiller.exe Mode : Scan -- Date : 05/17/2016 20:19:39 ¤¤¤ Processes : 1 ¤¤¤ [VT.Unknown] ZHPDiag3.exe(95416) -- C:\Users\Mhanna90\Downloads\ZHPDiag3.exe[x] -> Found ¤¤¤ Registry : 12 ¤¤¤ [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1004\Software\Microsoft\Internet Explorer\Main | Start Page : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1004\Software\Microsoft\Internet Explorer\Main | Start Page : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1004\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://acer13.msn.com/?pc=ACJB -> Found [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-94239195-442348988-1187761284-1004\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : http://acer13.msn.com/?pc=ACJB -> Found [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3aa07413-f340-4809-a006-dabe4686bc2e} | DhcpNameServer : 40.30.1.55 ([United States]) -> Found [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{f4f6a77d-fdea-4813-9671-c9a7e845ba78} | DhcpNameServer : 40.30.1.66 ([United States]) -> Found [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{3aa07413-f340-4809-a006-dabe4686bc2e} | DhcpNameServer : 40.30.1.55 ([United States]) -> Found [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{f4f6a77d-fdea-4813-9671-c9a7e845ba78} | DhcpNameServer : 40.30.1.66 ([United States]) -> Found ¤¤¤ Tasks : 0 ¤¤¤ ¤¤¤ Files : 2 ¤¤¤ [PUP][File] C:\ProgramData\Pokki\PC App Store.lnk [LNK@] C:\Users\Mhanna90\AppData\Local\Pokki\Engine\HostAppService.exe /OPEN"f22abfeae27a67446927d078890381efc546d3e1" -> Found [PUP][File] C:\ProgramData\Pokki\Pokki Start Menu.lnk [LNK@] C:\Users\Mhanna90\AppData\Local\Pokki\Engine\HostAppService.exe /OPEN"menu" -> Found ¤¤¤ Hosts File : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ MBR Check : ¤¤¤ +++++ PhysicalDrive0: KINGSTON RBU-SNS8100S3256GD +++++ --- User --- [MBR] 9faeeaffd9b86517df68716ee66f3c70 [BSP] 8466464cf0de0221aedf38b0c80ec431 : Empty|VT.Unknown MBR Code Partition table: 0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 600 MB 1 - [MAN-MOUNT] EFI system partition | Offset (sectors): 1230848 | Size: 300 MB 2 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 1845248 | Size: 128 MB 3 - Basic data partition | Offset (sectors): 2107392 | Size: 226493 MB 4 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 465965056 | Size: 16676 MB User = LL1 ... OK User = LL2 ... OK