RogueKiller V12.3.6.0 [Jun 27 2016] (Premium) by Adlice Software Mail : http://www.adlice.com/contact/ Feedback : http://forum.adlice.com Website : http://www.adlice.com/software/roguekiller/ Blog : http://www.adlice.com Betriebssystem : Windows 7 (6.1.7601 Service Pack 1) 64 bits version gestarted in : normaler Modus User : hp-netbook [Administrator] Started from : C:\Users\hp-netbook\Desktop\RogueKiller.exe Modus : Scannen -- Datum : 07/03/2016 16:52:31 ¤¤¤ Prozesse : 1 ¤¤¤ [Suspicious.Path|VT.Unknown] ZHPDiag3.exe(5784) -- C:\Users\hp-netbook\AppData\Roaming\ZHP\ZHPDiag3.exe[x] -> Gefunden ¤¤¤ Registry : 7 ¤¤¤ [Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-457469959-3694489001-2918448936-1000\Software\Microsoft\Windows\CurrentVersion\Run | EPSON SX440 Series : C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHBE.EXE /FU "C:\Users\HP-NET~1\AppData\Local\Temp\E_S6325.tmp" /EF "HKCU" [7][x][x][x][x] -> Gefunden [Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-457469959-3694489001-2918448936-1000\Software\Microsoft\Windows\CurrentVersion\Run | EPSON SX440 Series : C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHBE.EXE /FU "C:\Users\HP-NET~1\AppData\Local\Temp\E_S6325.tmp" /EF "HKCU" [7][x][x][x][x] -> Gefunden [PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-457469959-3694489001-2918448936-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://reader.uni-mainz.de/ -> Gefunden [PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-457469959-3694489001-2918448936-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://reader.uni-mainz.de/ -> Gefunden [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{079626C4-B211-42A3-B192-AD810C7A2082} | DhcpNameServer : 83.169.185.97 83.169.185.33 ([Germany][Germany]) -> Gefunden [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{079626C4-B211-42A3-B192-AD810C7A2082} | DhcpNameServer : 83.169.185.97 83.169.185.33 ([Germany][Germany]) -> Gefunden [PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{079626C4-B211-42A3-B192-AD810C7A2082} | DhcpNameServer : 83.169.185.97 83.169.185.33 ([Germany][Germany]) -> Gefunden ¤¤¤ Aufgaben : 0 ¤¤¤ ¤¤¤ Dateien : 0 ¤¤¤ ¤¤¤ Host Dateien : 0 ¤¤¤ ¤¤¤ Antirootkit : 0 (Driver: nicht geladen [0xc000036b]) ¤¤¤ ¤¤¤ Web Browser : 0 ¤¤¤ ¤¤¤ MBR Überprüfung : ¤¤¤ +++++ PhysicalDrive0: SAMSUNG HM321HI ATA Device +++++ --- User --- [MBR] 5d5d65c5b5459df3bf8a1006b8f03a7e [BSP] edd42d651a2a6f92b7a59ebc1ab7398d : Windows Vista/7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 100178 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 205374960 | Size: 82105 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader] 3 - [XXXXXX] EXTEN-LBA (0xf) [VISIBLE] Offset (sectors): 373528576 | Size: 122857 MB User = LL1 ... OK User = LL2 ... OK +++++ PhysicalDrive1: Multiple Card Reader USB Device +++++ --- User --- [MBR] 3aa9ddfca72963c0ef19b1a361227bb7 [BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code Partition table: 0 - [XXXXXX] FAT16 (0x6) [VISIBLE] Offset (sectors): 253 | Size: 1927 MB User = LL1 ... OK Error reading LL2 MBR! ([32] Die Anforderung wird nicht unterstützt. )