Advertisement
Asparte

Untitled

Oct 27th, 2013
42
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 31.49 KB | None | 0 0
  1. DDS:
  2. DDS (Ver_2012-11-20.01) - NTFS_AMD64
  3. Internet Explorer: 10.0.9200.16384 BrowserJavaVersion: 10.21.2
  4. Run by Asparte at 10:43:36 on 2013-10-27
  5. Microsoft Windows 8 Pro 6.2.9200.0.1250.48.1033.18.4094.2184 [GMT 1:00]
  6. .
  7. AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
  8. AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  9. SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
  10. SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  11. FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
  12. .
  13. ============== Running Processes ===============
  14. .
  15. C:\Windows\system32\svchost.exe -k DcomLaunch
  16. C:\Windows\system32\nvvsvc.exe
  17. C:\Windows\system32\svchost.exe -k RPCSS
  18. C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
  19. C:\Windows\system32\dwm.exe
  20. C:\Windows\system32\svchost.exe -k netsvcs
  21. C:\Windows\system32\svchost.exe -k LocalService
  22. C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
  23. C:\Windows\system32\nvvsvc.exe
  24. C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
  25. C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
  26. C:\Windows\system32\svchost.exe -k NetworkService
  27. C:\Windows\System32\spoolsv.exe
  28. C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
  29. C:\Windows\system32\taskhostex.exe
  30. C:\Windows\Explorer.EXE
  31. C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  32. C:\Windows\system32\dashost.exe
  33. C:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\sqlservr.exe
  34. C:\Program Files\OO Software\Defrag\oodag.exe
  35. C:\Windows\SysWOW64\PnkBstrA.exe
  36. C:\Windows\SysWOW64\PnkBstrB.exe
  37. C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
  38. C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
  39. C:\Windows\system32\svchost.exe -k imgsvc
  40. C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
  41. C:\Windows\SysWOW64\vmnat.exe
  42. C:\Windows\SysWOW64\vmnetdhcp.exe
  43. C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
  44. C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
  45. C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
  46. C:\Windows\system32\wbem\wmiprvse.exe
  47. C:\Windows\system32\SearchIndexer.exe
  48. C:\Windows\system32\wbem\WmiApSrv.exe
  49. C:\Program Files\Wireshark\Wireshark.exe
  50. C:\Program Files\OO Software\Defrag\oodtray.exe
  51. C:\Program Files (x86)\Mal Updater 2\MalUpdater.exe
  52. C:\Users\Asparte\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
  53. C:\Program Files\WapSter\WapSter AQQ\AQQ.exe
  54. C:\Windows\SysWOW64\rundll32.exe
  55. C:\Program Files\Rainmeter\Rainmeter.exe
  56. C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe
  57. C:\Program Files\ShareX\ShareX.exe
  58. C:\PROGRA~2\Raptr\raptr.exe
  59. C:\Windows\system32\taskmgr.exe
  60. C:\Windows\system32\taskeng.exe
  61. C:\Program Files\Microsoft Office\Office15\MsoSync.exe
  62. C:\PROGRA~2\Raptr\raptr_im.exe
  63. C:\Program Files (x86)\Raptr\raptr_ep64.exe
  64. C:\Windows\System32\schtasks.exe
  65. C:\Program Files (x86)\WhatPulse2\whatpulse.exe
  66. C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
  67. C:\Program Files\Windows Media Player\wmpnetwk.exe
  68. "C:\Windows\Temp\svchost.exe" -o http://p.0839f88ae61efaa3e91fdf5b732b242f.com -O r13:r13 -l 1
  69. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  70. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  71. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  72. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  73. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  74. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  75. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  76. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  77. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  78. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  79. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  80. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  81. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  82. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  83. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  84. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  85. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  86. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  87. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  88. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  89. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  90. C:\Windows\system32\wbem\wmiprvse.exe
  91. C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  92. C:\Windows\System32\cscript.exe
  93. .
  94. ============== Pseudo HJT Report ===============
  95. .
  96. uStart Page = hxxp://google.com/
  97. uProxyServer = socks=127.0.0.1:31337
  98. mWinlogon: Userinit = userinit.exe,
  99. BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
  100. BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
  101. BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
  102. BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
  103. BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
  104. BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL
  105. BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL
  106. BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
  107. BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
  108. uRun: [BitTorrent] "C:\Program Files (x86)\BitTorrent\BitTorrent.exe" /MINIMIZED
  109. uRun: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
  110. uRun: [WhatPulse] "C:\Program Files (x86)\WhatPulse2\whatpulse.exe"
  111. uRun: [Mal Updater 2] C:\Program Files (x86)\Mal Updater 2\MalUpdater.exe
  112. uRun: [puush] C:\Program Files (x86)\puush\puush.exe
  113. uRun: [Spotify Web Helper] "C:\Users\Asparte\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
  114. uRun: [AQQ] C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe
  115. mRun: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
  116. mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe"
  117. mRun: [VolPanel] "C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe" /r
  118. mRun: [KeePass 2 PreLoad] "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
  119. mRun: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun
  120. mRun: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
  121. mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
  122. mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
  123. mRun: [EaseUS EPM tray] C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe
  124. mRun: [MP4 Video Splitter Software.exe] <no file>
  125. StartupFolder: C:\Users\Asparte\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\FACEBO~1.LNK - C:\Users\Asparte\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
  126. StartupFolder: C:\Users\Asparte\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
  127. StartupFolder: C:\Users\Asparte\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ShareX.lnk - C:\Program Files\ShareX\ShareX.exe
  128. StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\O&ODEF~1.LNK - C:\Windows\Installer\{A2EA88AA-8749-457F-B82D-BD236713AE29}\DefragIcon.exe
  129. IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
  130. IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
  131. IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
  132. IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
  133. IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
  134. IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
  135. IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
  136. DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
  137. DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} - hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab
  138. DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
  139. TCP: NameServer = 8.8.8.8 8.8.4.4
  140. TCP: Interfaces\{ECADDEAA-5396-4237-AC83-213716E1716B} : NameServer = 8.8.8.8,8.8.4.4
  141. TCP: Interfaces\{ECADDEAA-5396-4237-AC83-213716E1716B} : DHCPNameServer = 8.8.8.8 8.8.4.4
  142. Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
  143. Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
  144. Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
  145. SSODL: WebCheck - <orphaned>
  146. mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
  147. mASetup: {A6EADE66-0000-0000-484E-7E8A45000000} - "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Adobe\Reader 11.0\Esl\AiodLite.dll",CreateReaderUserSettings
  148. x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
  149. x64-BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
  150. x64-BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
  151. x64-BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll
  152. x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL
  153. x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL
  154. x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
  155. x64-BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll
  156. x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
  157. x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
  158. x64-Run: [OODefragTray] C:\Program Files\OO Software\Defrag\oodtray.exe
  159. x64-IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
  160. x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
  161. x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
  162. x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
  163. x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll
  164. x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
  165. x64-DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
  166. x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
  167. x64-Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
  168. x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
  169. x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
  170. x64-SSODL: WebCheck - <orphaned>
  171. .
  172. ================= FIREFOX ===================
  173. .
  174. FF - ProfilePath - C:\Users\Asparte\AppData\Roaming\Mozilla\Firefox\Profiles\jgpbchhz.default\
  175. FF - plugin: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
  176. FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
  177. FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
  178. FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
  179. FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
  180. FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll
  181. FF - plugin: C:\Users\Asparte\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll
  182. FF - plugin: C:\Users\Asparte\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
  183. FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
  184. FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
  185. FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
  186. .
  187. ============= SERVICES / DRIVERS ===============
  188. .
  189. R0 PxHlpa64;PxHlpa64;C:\Windows\System32\Drivers\PxHlpa64.sys [2013-6-6 56208]
  190. R0 vsock;vSockets Driver;C:\Windows\System32\Drivers\vsock.sys [2013-6-10 70296]
  191. R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\Drivers\klim6.sys [2012-8-2 28504]
  192. R1 klwfp;klwfp;C:\Windows\System32\Drivers\klwfp.sys [2013-2-28 50448]
  193. R1 kneps;kneps;C:\Windows\System32\Drivers\kneps.sys [2012-8-13 178448]
  194. R2 MSSQL$INSERTGT;SQL Server (INSERTGT);C:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\sqlservr.exe [2011-6-17 62111072]
  195. R2 OODefragAgent;O&O Defrag;C:\Program Files\OO Software\Defrag\oodag.exe [2013-1-29 2560816]
  196. R2 TeamViewer8;TeamViewer 8;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-7-18 4153184]
  197. R2 VMUSBArbService;VMware USB Arbitration Service;C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [2012-10-11 918680]
  198. R3 klkbdflt;Kaspersky Lab KLKBDFLT;C:\Windows\System32\Drivers\klkbdflt.sys [2013-2-28 29280]
  199. R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\Drivers\klmouflt.sys [2013-2-28 29280]
  200. R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);C:\Windows\System32\Drivers\L1C62x64.sys [2013-6-5 58880]
  201. S0 klelam;klelam;C:\Windows\System32\Drivers\klelam.sys [2012-7-27 29616]
  202. S2 AVP;Usługa Kaspersky Anti-Virus;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [2013-2-28 356128]
  203. S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]
  204. S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:\Windows\System32\Drivers\ssadadb.sys [2011-5-13 36328]
  205. S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2013-5-21 79360]
  206. S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2013-5-21 79360]
  207. S3 epmntdrv;epmntdrv;C:\Windows\System32\epmntdrv.sys [2013-8-30 17480]
  208. S3 EuGdiDrv;EuGdiDrv;C:\Windows\System32\EuGdiDrv.sys [2013-8-30 9800]
  209. S3 rspLLL;rspLLL;C:\Windows\System32\Drivers\rspLLL64.sys [2013-5-23 23968]
  210. S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:\Windows\System32\Drivers\ssadbus.sys [2011-5-13 157672]
  211. S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:\Windows\System32\Drivers\ssadmdfl.sys [2011-5-13 16872]
  212. S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:\Windows\System32\Drivers\ssadmdm.sys [2011-5-13 177640]
  213. S3 vmbusr;Virtual Machine Bus Provider;C:\Windows\System32\Drivers\vmbusr.sys [2012-7-26 117248]
  214. S3 WUDFWpdMtp;WUDFWpdMtp;C:\Windows\System32\Drivers\WUDFRd.sys [2012-7-26 198656]
  215. S4 BrYNSvc;BrYNSvc;C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-5-26 245760]
  216. S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;C:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe [2010-4-3 59744]
  217. S4 ose64;Office 64 Source Engine;C:\Program Files\Common Files\microsoft shared\Source Engine\OSE.EXE [2012-10-1 178824]
  218. S4 RsFx0151;RsFx0151 Driver;C:\Windows\System32\Drivers\RsFx0151.sys [2011-6-17 313696]
  219. S4 SQLAgent$INSERTGT;SQL Server Agent (INSERTGT);C:\Program Files\Microsoft SQL Server\MSSQL10_50.INSERTGT\MSSQL\Binn\SQLAGENT.EXE [2011-6-17 431456]
  220. .
  221. =============== File Associations ===============
  222. .
  223. FileExt: .txt: txtfile=C:\Windows\System32\NOTEPAD.EXE %1 [UserChoice]
  224. .
  225. =============== Created Last 30 ================
  226. .
  227. 2013-10-27 08:35:22 -------- d-----w- C:\Users\Asparte\AppData\Roaming\Malwarebytes
  228. 2013-10-27 08:35:16 -------- d-----w- C:\ProgramData\Malwarebytes
  229. 2013-10-27 08:35:15 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
  230. 2013-10-27 08:35:15 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
  231. 2013-10-26 10:35:07 -------- d-----w- C:\ProgramData\Steam
  232. 2013-10-22 20:12:07 -------- d-----w- C:\Users\Asparte\WapSter
  233. 2013-10-22 20:11:37 -------- d-----w- C:\Program Files\WapSter
  234. 2013-10-20 08:49:19 -------- d-----w- C:\Program Files (x86)\ali213
  235. 2013-10-20 07:52:10 -------- d-----w- C:\Program Files (x86)\ZOC6
  236. 2013-10-19 21:56:49 -------- d-----w- C:\Users\Asparte\.thumbnails
  237. 2013-10-19 21:51:20 -------- d-----w- C:\Users\Asparte\.gimp-2.8
  238. 2013-10-19 21:51:19 -------- d-----w- C:\Users\Asparte\AppData\Local\gegl-0.2
  239. 2013-10-19 21:49:54 -------- d-----w- C:\Program Files\GIMP 2
  240. 2013-10-15 14:27:47 -------- d-----w- C:\Program Files (x86)\VideoLAN
  241. 2013-10-08 15:52:55 -------- d-----w- C:\Program Files\CPUID
  242. 2013-10-08 13:45:34 -------- d-----w- C:\Program Files (x86)\XeMu360
  243. 2013-10-05 13:32:28 -------- d-----w- C:\Users\Asparte\AppData\Roaming\Rainmeter
  244. 2013-10-05 13:32:26 -------- d-----w- C:\Program Files\Rainmeter
  245. 2013-10-03 19:19:33 -------- d-----w- C:\Program Files\ShareX
  246. 2013-10-01 18:48:28 144984 ----a-w- C:\Users\Asparte\whois.exe
  247. 2013-09-30 19:29:01 -------- d-----w- C:\Users\Asparte\AppData\Roaming\Sublime Text 2
  248. 2013-09-30 19:28:25 -------- d-----w- C:\Program Files\Sublime Text 2
  249. 2013-09-28 09:51:26 -------- d-----w- C:\Program Files (x86)\ffdshow
  250. 2013-09-27 19:05:06 -------- d-----w- C:\Windows\System32\oodag
  251. 2013-09-27 19:03:44 -------- d-----w- C:\Program Files\OO Software
  252. 2013-09-27 19:03:11 -------- d-----w- C:\ProgramData\OO Software
  253. 2013-09-27 18:57:32 -------- d-----w- C:\Users\Asparte\AppData\Local\O&O
  254. 2013-09-27 17:06:21 -------- d-----w- C:\Users\Asparte\AppData\Local\Downloaded Installations
  255. .
  256. ==================== Find3M ====================
  257. .
  258. 2013-10-10 15:12:35 29280 ----a-w- C:\Windows\System32\drivers\klmouflt.sys
  259. 2013-10-10 15:12:35 29280 ----a-w- C:\Windows\System32\drivers\klkbdflt.sys
  260. 2013-10-10 15:12:32 7717984 ----a-w- C:\Windows\System32\drivers\kl1.sys
  261. 2013-09-12 17:39:36 468480 ----a-w- C:\Windows\System32\deployJava1.dll
  262. 2013-08-22 12:10:14 189248 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
  263. 2013-08-22 12:10:10 189248 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
  264. 2013-08-22 12:10:08 75136 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
  265. .
  266. ============= FINISH: 10:44:10.31 ===============
  267.  
  268.  
  269. Attach.txt
  270. .
  271. UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
  272. IF REQUESTED, ZIP IT UP & ATTACH IT
  273. .
  274. DDS (Ver_2012-11-20.01)
  275. .
  276. Microsoft Windows 8 Pro
  277. Boot Device: \Device\HarddiskVolume1
  278. Install Date: 5/21/2013 6:03:40 PM
  279. System Uptime: 10/27/2013 10:34:29 AM (0 hours ago)
  280. .
  281. Motherboard: Gigabyte Technology Co., Ltd. | | G31M-ES2L
  282. Processor: Intel(R) Core(TM)2 Quad CPU Q8300 @ 2.50GHz | Socket 775 | 2500/333mhz
  283. .
  284. ==== Disk Partitions =========================
  285. .
  286. A: is Removable
  287. C: is FIXED (NTFS) - 70 GiB total, 4.973 GiB free.
  288. D: is FIXED (NTFS) - 29 GiB total, 2.882 GiB free.
  289. F: is FIXED (NTFS) - 196 GiB total, 2.684 GiB free.
  290. G: is FIXED (NTFS) - 59 GiB total, 0.431 GiB free.
  291. H: is FIXED (NTFS) - 61 GiB total, 4.087 GiB free.
  292. I: is FIXED (NTFS) - 200 GiB total, 3.685 GiB free.
  293. J: is CDROM ()
  294. .
  295. ==== Disabled Device Manager Items =============
  296. .
  297. ==== System Restore Points ===================
  298. .
  299. RP43: 10/26/2013 12:27:36 PM - Installed DirectX
  300. .
  301. ==== Installed Programs ======================
  302. .
  303. ????-????? ?? 0.6.19374
  304. 18 Wheels of Steel: Haulin'
  305. 7-Zip 9.20 (x64 edition)
  306. AAC to MP3 Converter
  307. Action!
  308. Adobe AIR
  309. Adobe Audition CS6
  310. Adobe Flash Player 11 Plugin
  311. Adobe Help Manager
  312. Adobe Reader XI (11.0.03)
  313. Aegisub 3.0.4
  314. ƒOƒŠƒUƒCƒA‚̉ʎŔ
  315. Apple Application Support
  316. Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
  317. Audacity 2.0.3
  318. AviSynth 2.5
  319. Battlefield 3™
  320. BeamNG-Techdemo-0.3 (remove only)
  321. BeamNG DRIVE 0.3.06
  322. BitTorrent
  323. bl
  324. Brother MFL-Pro Suite DCP-J515W
  325. BurnAware Free 6.4
  326. Burnout Paradise: The Ultimate Box
  327. Camtasia Studio 7
  328. CodeBlocks
  329. Counter-Strike
  330. CPUID CPU-Z 1.66.1
  331. Creative ALchemy
  332. Creative Audio Control Panel
  333. Creative Entertainment Console
  334. Creative Software AutoUpdate
  335. Creative Sound Blaster Properties x64 Edition
  336. CrystalDiskInfo 5.6.2 Shizuku Edition
  337. EaseUS Partition Master 9.2.2
  338. Euro Truck Simulator 2 wersja 1.5.2.1s
  339. Extension Changer
  340. Facebook Messenger 2.1.4814.0
  341. FeedDemon
  342. FIFA 14 Demo
  343. foobar2000 v1.2.8
  344. FormatFactory 2.96
  345. Freemake Video Downloader
  346. GetFLV 9.1.2.6
  347. GIF Viewer 3.3
  348. GIMP 2.8.6
  349. Google Chrome
  350. Google Update Helper
  351. GPU Caps Viewer 1.18.1
  352. Grand Theft Auto IV
  353. Guifications Plugin (remove only)
  354. Haali Media Splitter
  355. Handbrake 5596 Nightly
  356. HashTab 5.1.0.23
  357. HeidiSQL 8.0.0.4396
  358. HxD Hex Editor version 1.7.7.0
  359. ˇ¶300Ó˘Đۡ· °ć±ľ 0.2.0
  360. InsERT GT 1.32 HF2
  361. Intel Processor Diagnostic Tool 64Bit
  362. IrfanView (remove only)
  363. Java 7 Update 21
  364. Java Auto Updater
  365. Java(TM) 6 Update 21 (64-bit)
  366. JDownloader 0.9
  367. Kaspersky Internet Security 2013
  368. KeePass Password Safe 2.23
  369. KMP Media Toolbar
  370. KVIrc
  371. LAME v3.99.3 (for Windows)
  372. Last.fm Scrobbler 2.1.36
  373. LatencyMon 5.00
  374. LAV Filters 0.58.1
  375. Mal Updater 2.95
  376. Malwarebytes Anti-Malware version 1.75.0.1300
  377. Medal of Honor(TM) Single Player
  378. Media Preview
  379. MediaCoder 0.8.22.5506
  380. Metin2
  381. Microsoft Access MUI (English) 2013
  382. Microsoft Access Setup Metadata MUI (English) 2013
  383. Microsoft Application Error Reporting
  384. Microsoft DCF MUI (English) 2013
  385. Microsoft Excel MUI (English) 2013
  386. Microsoft Games for Windows - LIVE Redistributable
  387. Microsoft Games for Windows Marketplace
  388. Microsoft Groove MUI (English) 2013
  389. Microsoft InfoPath MUI (English) 2013
  390. Microsoft Lync MUI (English) 2013
  391. Microsoft Office 32-bit Components 2013
  392. Microsoft Office OSM MUI (English) 2013
  393. Microsoft Office OSM UX MUI (English) 2013
  394. Microsoft Office Professional Plus 2013
  395. Microsoft Office Proofing (English) 2013
  396. Microsoft Office Proofing Tools 2013 - English
  397. Microsoft Office Proofing Tools 2013 - Espanol
  398. Microsoft Office Shared 32-bit MUI (English) 2013
  399. Microsoft Office Shared MUI (English) 2013
  400. Microsoft Office Shared Setup Metadata MUI (English) 2013
  401. Microsoft OneNote MUI (English) 2013
  402. Microsoft Outlook MUI (English) 2013
  403. Microsoft PowerPoint MUI (English) 2013
  404. Microsoft Publisher MUI (English) 2013
  405. Microsoft Silverlight
  406. Microsoft SQL Server 2005 Backward compatibility
  407. Microsoft SQL Server 2008 R2 (64-bit)
  408. Microsoft SQL Server 2008 R2 Native Client
  409. Microsoft SQL Server 2008 R2 RsFx Driver
  410. Microsoft SQL Server 2008 R2 Setup (English)
  411. Microsoft SQL Server 2008 Setup Support Files
  412. Microsoft SQL Server Browser
  413. Microsoft SQL Server VSS Writer
  414. Microsoft Visual C++ 2005 Redistributable
  415. Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
  416. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
  417. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
  418. Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
  419. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
  420. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
  421. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
  422. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
  423. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
  424. Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106
  425. Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106
  426. Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106
  427. Microsoft Word MUI (English) 2013
  428. Microsoft XNA Framework Redistributable 4.0
  429. MKV Font Extractor 1.0.0
  430. MKVToolNix 6.2.0
  431. Mozilla Firefox 24.0 (x86 en-US)
  432. Mozilla Maintenance Service
  433. MP4 Video Splitter Software
  434. MPC-HC 1.6.8
  435. MSVCRT Redists
  436. NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst
  437. Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski
  438. Need for Speed™ Most Wanted
  439. Neverwinter
  440. Nmap 6.40
  441. Notepad++
  442. NVIDIA Control Panel 314.22
  443. NVIDIA Graphics Driver 314.22
  444. NVIDIA Install Application
  445. NVIDIA PhysX
  446. NVIDIA PhysX System Software 9.12.1031
  447. NyuFX
  448. O&O Defrag Professional
  449. OCCT 4.4.0
  450. Open Broadcaster Software
  451. Origin
  452. osu!
  453. Outils de vérification linguistique 2013 de Microsoft Office - Français
  454. ph
  455. Pidgin
  456. PITy 2012 dla Windows kompilacja:1.4.5.12
  457. Portal 2
  458. PremiumSoft Navicat Premium 9.1
  459. PunkBuster Services
  460. Rainmeter
  461. Raptr
  462. Realtek High Definition Audio Driver
  463. Resource Hacker Version 3.6.0
  464. Rigs of Rods 0.38.67
  465. Scribus 1.4.3 (64bit)
  466. Service Pack 1 for SQL Server 2008 R2 (KB2528583) (64-bit)
  467. Setup - FIFA 14 Ultimate Edition ...
  468. ShareX 8.2.0.655
  469. Skype™ 6.9
  470. Spotify
  471. SQL Server 2008 R2 SP1 Common Files
  472. SQL Server 2008 R2 SP1 Database Engine Services
  473. SQL Server 2008 R2 SP1 Database Engine Shared
  474. Sql Server Customer Experience Improvement Program
  475. Steam
  476. Sterowniki firmy InsERT 5.08
  477. Sublime Text 2.0.2
  478. TeamSpeak 3 Client
  479. TeamViewer 8
  480. The KMPlayer (remove only)
  481. tools-windows
  482. Tunatic
  483. Unity Web Player
  484. Update for Japanese Microsoft IME Postal Code Dictionary
  485. Update for Japanese Microsoft IME Standard Dictionary
  486. Update for Japanese Microsoft IME Standard Extended Dictionary
  487. Vegas Pro 12.0 (64-bit)
  488. VLC media player 2.1.0
  489. VMware Player
  490. Volume Panel
  491. WapSter AQQ
  492. WhatPulse version 2.1.1
  493. Windows Media Encoder 9 Series
  494. WinHTTrack Website Copier 3.47-20 (x64)
  495. WinMerge 2.14.0
  496. WinPcap 4.1.3
  497. Wireshark 1.10.1 (64-bit)
  498. XAMPP
  499. xy-VSFilter 3.0.0.211
  500. ZOC Terminal 6.4
  501. .
  502. ==== Event Viewer Messages From Past Week ========
  503. .
  504. 10/23/2013 4:15:02 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
  505. .
  506. ==== End Of File ===========================
  507.  
  508.  
  509. RogueKiller
  510. RogueKiller V8.7.5 _x64_ [Oct 22 2013] by Tigzy
  511. mail : tigzyRK<at>gmail<dot>com
  512. Feedback : http://www.adlice.com/forum/
  513. Website : http://www.adlice.com/softwares/roguekiller/
  514. Blog : http://tigzyrk.blogspot.com/
  515.  
  516. Operating System : Windows 8 (6.2.9200 ) 64 bits version
  517. Started in : Normal mode
  518. User : Asparte [Admin rights]
  519. Mode : Scan -- Date : 10/27/2013 14:41:41
  520. | ARK || FAK || MBR |
  521.  
  522. ¤¤¤ Bad processes : 0 ¤¤¤
  523.  
  524. ¤¤¤ Registry Entries : 3 ¤¤¤
  525. [PROXY IE][PUM] HKCU\[...]\Internet Settings : ProxyServer (socks=127.0.0.1:31337 [Country: (Private Address) (XX), City: (Private Address)]) -> FOUND
  526. [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
  527. [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
  528.  
  529. ¤¤¤ Scheduled tasks : 1 ¤¤¤
  530. [V2][SUSP PATH] Origin : C:\Users\Asparte\AppData\Roaming\Origin\update.vbe [-] -> FOUND
  531.  
  532. ¤¤¤ Startup Entries : 0 ¤¤¤
  533.  
  534. ¤¤¤ Web browsers : 0 ¤¤¤
  535.  
  536. ¤¤¤ Particular Files / Folders: ¤¤¤
  537.  
  538. ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤
  539.  
  540. ¤¤¤ External Hives: ¤¤¤
  541. -> H:\Documents and Settings\Asparte\NTUSER.DAT | DRVINFO [Drv - H:] | SYSTEMINFO [Sys - NO_SYS] [Sys32 - NOT_FOUND] | USERINFO [Startup - NOT_FOUND]
  542. -> H:\Documents and Settings\Default\NTUSER.DAT | DRVINFO [Drv - H:] | SYSTEMINFO [Sys - NO_SYS] [Sys32 - NOT_FOUND] | USERINFO [Startup - NOT_FOUND]
  543. -> H:\Documents and Settings\Default User\NTUSER.DAT | DRVINFO [Drv - H:] | SYSTEMINFO [Sys - NO_SYS] [Sys32 - NOT_FOUND] | USERINFO [Startup - NOT_FOUND]
  544.  
  545. ¤¤¤ Infection : ¤¤¤
  546.  
  547. ¤¤¤ HOSTS File: ¤¤¤
  548. --> %SystemRoot%\System32\drivers\etc\hosts
  549.  
  550.  
  551. 127.0.0.1 www.amoninst.com # hosts anti-adware / pups
  552. 127.0.0.1 www.smarterpcsolutions.net # hosts anti-adware / pups
  553. 127.0.0.1 www.newhtsoft.com # hosts anti-adware / pups
  554. 127.0.0.1 www.simplyinstaller.com # hosts anti-adware / pups
  555. 127.0.0.1 www.tsxnrey.com # hosts anti-adware / pups
  556. 127.0.0.1 www.dynamicmonetizer.com # hosts anti-adware / pups
  557. 127.0.0.1 trf33pro.euroclicaelimite.netdna-cdn.com # hosts anti-adware / pups
  558. 127.0.0.1 cdn3.otherdownload.com # hosts anti-adware / pups
  559. 127.0.0.1 cdn.goateastcach.us # hosts anti-adware / pups
  560. 127.0.0.1 cdn2.otherdownload.com # hosts anti-adware / pups
  561. 127.0.0.1 d11ftuwdwpx4fl.cloudfront.net # hosts anti-adware / pups
  562. 127.0.0.1 cdn.cdndp.com # hosts anti-adware / pups
  563. 127.0.0.1 www.goplayer.cc # hosts anti-adware / pups
  564. 127.0.0.1 download.lollipop-network.com # hosts anti-adware / pups
  565. 127.0.0.1 downloadinfo.co # hosts anti-adware / pups
  566. 127.0.0.1 s.xingcloud.com # hosts anti-adware / pups
  567. 127.0.0.1 dl.elex.soft365.com # hosts anti-adware / pups
  568. 127.0.0.1 lproot.soft365.com # hosts anti-adware / pups
  569. 127.0.0.1 www.twonext.com # hosts anti-adware / pups
  570. 127.0.0.1 service.getwebcake.com # hosts anti-adware / pups
  571. [...]
  572.  
  573.  
  574. ¤¤¤ MBR Check: ¤¤¤
  575.  
  576. +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST3500418AS ATA Device +++++
  577. --- User ---
  578. [MBR] 557834e5c39f13f6e91038dd94a57703
  579. [BSP] 240d2d26cc4237b8f7e9fddec0b00625 : Windows 7/8 MBR Code
  580. Partition table:
  581. 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
  582. 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 71579 Mo
  583. 2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 146800640 | Size: 204798 Mo
  584. 3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 566233025 | Size: 200456 Mo
  585. User = LL1 ... OK!
  586. User = LL2 ... OK!
  587.  
  588. +++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) SAMSUNG HD160JJ ATA Device +++++
  589. --- User ---
  590. [MBR] 91b0f5e790051a4f856fe07006e38b45
  591. [BSP] 50c206d79625bae06f5f5e82fae42921 : Windows XP MBR Code
  592. Partition table:
  593. 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 29996 Mo
  594. 1 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 61432560 | Size: 122621 Mo
  595. User = LL1 ... OK!
  596. User = LL2 ... OK!
  597.  
  598. Finished : << RKreport[0]_S_10272013_144141.txt >>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement