Returnil Virtual System Pro 2011

Returnil Virtual System Pro 2011

http://www.returnilvirtualsystem.com/returnil-virtual-system

Returnil Virtual System Pro is built with the end-user in mind. It shouldn’t be stressful to surf the internet or to download a program you really would like to try out. Returnil’s virtualization technology will give you peace of mind by protection your computer from all types of viruses and other malicious threats.

The Windows boot time has become slow than usually. Difference= 4 sec (-12%).

RVSGUI.EXE
Description: Returnil Virtual System User Interface CJSC Returnil Software Returnil Virtual System 2011 3.2.11742.5691-REL12
MD5= 6C4A9E5F3D95AF354A5544FFA3F4C288
File is signed and the signature was verified.
File size= 8164016
Related registry changes:
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INSTALLER\USERDATA\S-1-5-18\COMPONENTS\9616CF6AF69057045899AD59B0A87F75\EAADDC2DD9F28EF4E8B8E36FEA309D7D: “C:\PROGRAM FILES\RETURNIL\RVS3\RVSGUI.EXE
HKLM\SOFTWARE\RETURNIL\RESTORE\GUI.UNLOCK: “”C:\PROGRAM FILES\RETURNIL\RVS3\RVSGUI.EXE” /UNLOCK”
RVSMON.SYS
Description: Returnil Monitoring Core CJSC Returnil Software Returnil Monitoring Engine 3.0.1678.5519
MD5= 7766BACAC9E578964169970588EA5DC8
File is signed and the signature was verified.
File size= 271720
Related registry changes:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RVSMON\IMAGEPATH: “SYSTEM32\DRIVERS\RVSMON.SYS
RVSMONF.SYS
Description: Returnil File Monitoring CJSC Returnil Software Returnil Monitoring Engine 3.0.1678.5519
MD5= D6F9838EDB39C7833956DDA7AC3FA9A3
File is signed and the signature was verified.
File size= 1117088
Related registry changes:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RVSMONF\IMAGEPATH: “SYSTEM32\DRIVERS\RVSMONF.SYS
RVSMONN1.SYS
Description: Returnil Network Monitoring CJSC Returnil Software Returnil Monitoring Engine 3.0.1678.5519
MD5= 2492D5FFC90CC597A135E11113CF7AAC
File is signed and the signature was verified.
File size= 29272
Related registry changes:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RVSMONN\IMAGEPATH: “SYSTEM32\DRIVERS\RVSMONN1.SYS
RVSYSTEM.SYS
Description: Returnil Virtualization Engine CJSC Returnil Software Returnil Virtualization Engine 3.2.11514.5675
MD5= 50B00266DF51C2F221F44BBFDE013239
File is signed and the signature was verified.
File size= 54656
Related registry changes:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RVSYSTEM\IMAGEPATH: “SYSTEM32\DRIVERS\RVSYSTEM.SYS
RVSMON.EXE
Description: Service Returnil Virtual System Core Service Start Type: loaded automatically by Server Manager Returnil Virtual System Core Service CJSC Returnil Software Returnil Virtual System 2011 3.2.11742.5691-REL12
MD5= 954FE5AC3357E1B873303C581F88037B
File is signed and the signature was verified.
File size= 1764656
Related registry changes:
HKLM\SOFTWARE\CLASSES\APPID\RVSMON.EXE
HKLM\SOFTWARE\CLASSES\APPID\RVSMON.EXE\: “”
HKLM\SOFTWARE\CLASSES\APPID\RVSMON.EXE\APPID: “{6245B0F3-41FA-478E-8DEA-86177F139478}”
HKLM\SOFTWARE\CLASSES\CLSID\{739F8F3D-F91E-4E49-B032-BD21AB39D15A}\LOCALSERVER32\: “C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.EXE
HKLM\SOFTWARE\CLASSES\TYPELIB\{C3011EE0-B997-11CF-A6BB-0080C7B2D682}\1.0\0\WIN32\: “C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.EXE
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INSTALLER\USERDATA\S-1-5-18\COMPONENTS\A8A5097A06558404AAF557B0A8719AB8\EAADDC2DD9F28EF4E8B8E36FEA309D7D: “C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.EXE
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RVSMONBL\IMAGEPATH: “”C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.EXE” -LOG “C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\LOG\RVS3.LOG””

FILES ADDED:38

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\RETURNIL\RVSGUI.INI
C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\RVS-PRO-2011.MSI
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\FC1E3851F429EA606D6FF1E01A5229F1_E17EF422-72D0-4843-9F36-93D1C74DF894
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\3F21809F214A13B5ACAD250697EABCA1-V.RDB
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\DATA\RVSMON.UPD
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\LOG\RVS3-INST.LOG
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\LOG\RVS3.LOG
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\REMOTE\RVSLIB.JS
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\RVSMON.SALT
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\RVSYSTEM-V.RDB
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\RVS 2011.LNK
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\RETURNIL\HELP FOR RVS 2011.LNK
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\RETURNIL\RETURNIL VIRTUAL SYSTEM 2011.LNK
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\RETURNIL\RETURNIL WEBSITE.URL
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_BG_BG.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_DE_DE.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_ES_BO.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_FI_FI.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_FR_FR.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_JA_JP.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_KO_KR.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_NL_NL.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_PL_PL.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_PT_BR.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_RU_RU.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE\RVSGUI_ZH_CN.QM
C:\PROGRAM FILES\RETURNIL\RVS3\LICENSES\BSDIFF.TXT
C:\PROGRAM FILES\RETURNIL\RVS3\RVS3.CHM
C:\PROGRAM FILES\RETURNIL\RVS3\RVSGUI.EXE
C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.EXE
C:\PROGRAM FILES\RETURNIL\RVS3\RVSMON.PSF
C:\WINDOWS\INSTALLER\1BCF36.MSI
C:\WINDOWS\INSTALLER\{D2CDDAAE-2F9D-4FE8-8E8B-3EF6AE03D9D7}\ARPICON.ICO
C:\WINDOWS\INSTALLER\{D2CDDAAE-2F9D-4FE8-8E8B-3EF6AE03D9D7}\HELP.ICO
C:\WINDOWS\SYSTEM32\DRIVERS\RVSMON.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\RVSMONF.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\RVSMONN1.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\RVSYSTEM.SYS

FILES[ATTR]MODIFIED:3

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\CE4CF87733651BF1F44DD1E02FC1A8E8
C:\WINDOWS\SECURITY\LOGS\SCECOMP.OLD
C:\WINDOWS\SYSTEM32\CATROOT\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\TIMESTAMP

FOLDERS ADDED:13

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\RETURNIL
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\DATA
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\LOG
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\Q1
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\RETURNIL\RVS3\REMOTE
C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\RETURNIL
C:\PROGRAM FILES\RETURNIL
C:\PROGRAM FILES\RETURNIL\RVS3
C:\PROGRAM FILES\RETURNIL\RVS3\LANGUAGE
C:\PROGRAM FILES\RETURNIL\RVS3\LICENSES
C:\WINDOWS\INSTALLER\{D2CDDAAE-2F9D-4FE8-8E8B-3EF6AE03D9D7}

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit is required. Reviews. EULA. Privacy Policy.

Leave a Reply