system
3
I ran roguekiller here’s the report:
RogueKiller V6.1.10 [11/18/2011] by Tigzy
mail: tigzyRKgmailcom
Feedback: http://www.geekstogo.com/forum/files/file/413-roguekiller/
Blog: http://tigzyrk.blogspot.com
Operating System: Windows 7 (6.1.7600 ) 64 bits version
Started in : Normal mode
User: Christine [Admin rights]
Mode: Remove – Date : 11/23/2011 17:57:20
¤¤¤ Bad processes: 0 ¤¤¤
¤¤¤ Registry Entries: 8 ¤¤¤
[SUSP PATH] HKCU[…]\Run : uwjjjUVelIBtzNc8234A (C:\Users\Christine\AppData\Roaming\ovvDD2onF4pm5sJ\Cloud AV 2012v121.exe) → DELETED
[SUSP PATH] HKCU[…]\Run : W444ppmH5sQ7dK8 (C:\Users\Christine\AppData\Roaming\dwme.exe) → DELETED
[HJ] HKLM[…]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) → REPLACED (0)
[HJ] HKLM[…]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) → REPLACED (0)
[HJ] HKCU[…]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) → REPLACED (0)
[HJ] HKCU[…]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) → REPLACED (0)
[HJ] HKCU[…]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) → REPLACED (0)
[HJ] HKCU[…]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) → REPLACED (0)
¤¤¤ Particular Files / Folders: ¤¤¤
¤¤¤ Driver: [NOT LOADED] ¤¤¤
¤¤¤ Infection : ¤¤¤
¤¤¤ HOSTS File: ¤¤¤
Finished : << RKreport[1].txt >>
RKreport[1].txt
here’s the report: