Advertisement
Guest User

Rkill log

a guest
Feb 21st, 2013
91
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.25 KB | None | 0 0
  1. Rkill 2.4.7 by Lawrence Abrams (Grinler)
  2. http://www.bleepingcomputer.com/
  3. Copyright 2008-2013 BleepingComputer.com
  4. More Information about Rkill can be found at this link:
  5. http://www.bleepingcomputer.com/forums/topic308364.html
  6.  
  7. Program started at: 02/21/2013 10:00:16 AM in x64 mode.
  8. Windows Version: Windows 7 Enterprise
  9.  
  10. Checking for Windows services to stop:
  11.  
  12. * No malware services found to stop.
  13.  
  14. Checking for processes to terminate:
  15.  
  16. * No malware processes found to kill.
  17.  
  18. Possibly Patched Files.
  19.  
  20. * C:\Windows\system32\winlogon.exe
  21. * C:\Windows\system32\winlogon.exe
  22.  
  23. Checking Registry for malware related settings:
  24.  
  25. * No issues found in the Registry.
  26.  
  27. Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
  28.  
  29. Performing miscellaneous checks:
  30.  
  31. * No issues found.
  32.  
  33. Checking Windows Service Integrity:
  34.  
  35. * No issues found.
  36.  
  37. Searching for Missing Digital Signatures:
  38.  
  39. * C:\Windows\System32\user32.dll [NoSig]
  40. +-> C:\Windows\SysWOW64\user32.dll : 833 024 : 11/20/2012 11:46 PM : 167001177321d292ede6941f4cb8c140 [Pos Repl]
  41. +-> C:\Windows\winsxs\amd64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_292d5de8870d85d9\user32.dll : 1 008 640 : 07/14/2009 00:41 AM : 72d7b3ea16946e8f0cf7458150031cc6 [Pos Repl]
  42. +-> C:\Windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_3382083abb6e47d4\user32.dll : 833 024 : 07/14/2009 00:11 AM : e8b0ffc209e504cb7e79fc24e6c085f0 [Pos Repl]
  43.  
  44. * C:\Windows\System32\winlogon.exe [NoSig]
  45. +-> C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe : 389 120 : 07/14/2009 00:39 AM : 132328df455b0028f13bf0abee51a63a [Pos Repl]
  46. +-> C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe : 389 632 : 10/28/2009 00:24 AM : da3e2a6fa9660cc75b471530ce88453a [Pos Repl]
  47. +-> C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe : 389 632 : 10/28/2009 00:01 AM : a93d41a4d4b0d91c072d11dd8af266de [Pos Repl]
  48.  
  49. Checking HOSTS File:
  50.  
  51. * No issues found.
  52.  
  53. Program finished at: 02/21/2013 10:01:23 AM
  54. Execution time: 0 hours(s), 1 minute(s), and 6 seconds(s)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement