Advertisement
Aconcagua

mbar

Sep 27th, 2015
124
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.75 KB | None | 0 0
  1. ---------------------------------------
  2. Malwarebytes Anti-Rootkit BETA 1.09.3.1001
  3.  
  4. (c) Malwarebytes Corporation 2011-2012
  5.  
  6. OS version: 6.1.7601 Windows 7 Service Pack 1 x64
  7.  
  8. Account is Administrative
  9.  
  10. Internet Explorer version: 11.0.9600.17959
  11.  
  12. File system is: NTFS
  13. Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
  14. CPU speed: 2.261000 GHz
  15. Memory total: 3133714432, free: 1247191040
  16.  
  17. =======================================
  18.  
  19.  
  20. ---------------------------------------
  21. Malwarebytes Anti-Rootkit BETA 1.09.3.1001
  22.  
  23. (c) Malwarebytes Corporation 2011-2012
  24.  
  25. OS version: 6.1.7601 Windows 7 Service Pack 1 x64
  26.  
  27. Account is Administrative
  28.  
  29. Internet Explorer version: 11.0.9600.17959
  30.  
  31. File system is: NTFS
  32. Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
  33. CPU speed: 2.261000 GHz
  34. Memory total: 3133714432, free: 1628078080
  35.  
  36. Downloaded database version: v2015.09.27.04
  37. Downloaded database version: v2015.09.22.01
  38. Downloaded database version: v2015.09.16.01
  39. =======================================
  40. Initializing...
  41. Driver version: 0.3.0.4
  42. ------------ Kernel report ------------
  43. 09/27/2015 20:32:50
  44. ------------ Loaded modules -----------
  45. \SystemRoot\system32\ntoskrnl.exe
  46. \SystemRoot\system32\hal.dll
  47. \SystemRoot\system32\kdcom.dll
  48. \SystemRoot\system32\mcupdate_GenuineIntel.dll
  49. \SystemRoot\system32\PSHED.dll
  50. \SystemRoot\system32\CLFS.SYS
  51. \SystemRoot\system32\CI.dll
  52. \SystemRoot\system32\drivers\Wdf01000.sys
  53. \SystemRoot\system32\drivers\WDFLDR.SYS
  54. \SystemRoot\system32\drivers\ACPI.sys
  55. \SystemRoot\system32\drivers\WMILIB.SYS
  56. \SystemRoot\system32\drivers\msisadrv.sys
  57. \SystemRoot\system32\drivers\pci.sys
  58. \SystemRoot\system32\drivers\vdrvroot.sys
  59. \SystemRoot\System32\drivers\partmgr.sys
  60. \SystemRoot\system32\DRIVERS\compbatt.sys
  61. \SystemRoot\system32\DRIVERS\BATTC.SYS
  62. \SystemRoot\system32\drivers\volmgr.sys
  63. \SystemRoot\System32\drivers\volmgrx.sys
  64. \SystemRoot\system32\drivers\pciide.sys
  65. \SystemRoot\system32\drivers\PCIIDEX.SYS
  66. \SystemRoot\System32\drivers\mountmgr.sys
  67. \SystemRoot\system32\DRIVERS\iaStor.sys
  68. \SystemRoot\system32\drivers\atapi.sys
  69. \SystemRoot\system32\drivers\ataport.SYS
  70. \SystemRoot\system32\drivers\msahci.sys
  71. \SystemRoot\system32\drivers\amdxata.sys
  72. \SystemRoot\system32\drivers\fltmgr.sys
  73. \SystemRoot\system32\drivers\fileinfo.sys
  74. \SystemRoot\System32\Drivers\AsDsm.sys
  75. \SystemRoot\System32\Drivers\Ntfs.sys
  76. \SystemRoot\System32\Drivers\msrpc.sys
  77. \SystemRoot\System32\Drivers\ksecdd.sys
  78. \SystemRoot\System32\Drivers\cng.sys
  79. \SystemRoot\System32\drivers\pcw.sys
  80. \SystemRoot\System32\Drivers\Fs_Rec.sys
  81. \SystemRoot\system32\drivers\ndis.sys
  82. \SystemRoot\system32\drivers\NETIO.SYS
  83. \SystemRoot\System32\Drivers\ksecpkg.sys
  84. \SystemRoot\System32\drivers\tcpip.sys
  85. \SystemRoot\System32\drivers\fwpkclnt.sys
  86. \SystemRoot\system32\drivers\volsnap.sys
  87. \SystemRoot\System32\Drivers\spldr.sys
  88. \SystemRoot\System32\drivers\rdyboost.sys
  89. \SystemRoot\System32\Drivers\mup.sys
  90. \SystemRoot\System32\drivers\hwpolicy.sys
  91. \SystemRoot\System32\DRIVERS\fvevol.sys
  92. \SystemRoot\system32\DRIVERS\disk.sys
  93. \SystemRoot\system32\DRIVERS\CLASSPNP.SYS
  94. \SystemRoot\System32\Drivers\aswVmm.sys
  95. \SystemRoot\System32\Drivers\aswRvrt.sys
  96. \SystemRoot\system32\drivers\cdrom.sys
  97. \SystemRoot\system32\drivers\aswSnx.sys
  98. \SystemRoot\system32\drivers\aswSP.sys
  99. \SystemRoot\System32\Drivers\Null.SYS
  100. \SystemRoot\System32\Drivers\Beep.SYS
  101. \SystemRoot\System32\drivers\vga.sys
  102. \SystemRoot\System32\drivers\VIDEOPRT.SYS
  103. \SystemRoot\System32\drivers\watchdog.sys
  104. \SystemRoot\System32\DRIVERS\RDPCDD.sys
  105. \SystemRoot\system32\drivers\rdpencdd.sys
  106. \SystemRoot\system32\drivers\rdprefmp.sys
  107. \SystemRoot\System32\Drivers\Msfs.SYS
  108. \SystemRoot\System32\Drivers\Npfs.SYS
  109. \SystemRoot\system32\DRIVERS\tdx.sys
  110. \SystemRoot\system32\DRIVERS\TDI.SYS
  111. \SystemRoot\system32\drivers\afd.sys
  112. \SystemRoot\system32\drivers\aswRdr2.sys
  113. \SystemRoot\System32\DRIVERS\netbt.sys
  114. \SystemRoot\system32\DRIVERS\wfplwf.sys
  115. \SystemRoot\system32\DRIVERS\pacer.sys
  116. \SystemRoot\system32\DRIVERS\vwififlt.sys
  117. \SystemRoot\system32\DRIVERS\netbios.sys
  118. \SystemRoot\system32\DRIVERS\wanarp.sys
  119. \SystemRoot\system32\drivers\termdd.sys
  120. \SystemRoot\system32\DRIVERS\rdbss.sys
  121. \SystemRoot\system32\drivers\nsiproxy.sys
  122. \SystemRoot\system32\drivers\mssmbios.sys
  123. \SystemRoot\System32\drivers\discache.sys
  124. \SystemRoot\System32\Drivers\dfsc.sys
  125. \SystemRoot\system32\DRIVERS\blbdrive.sys
  126. \SystemRoot\system32\DRIVERS\tunnel.sys
  127. \SystemRoot\system32\DRIVERS\atikmpag.sys
  128. \SystemRoot\system32\DRIVERS\atikmdag.sys
  129. \SystemRoot\System32\drivers\dxgkrnl.sys
  130. \SystemRoot\System32\drivers\dxgmms1.sys
  131. \SystemRoot\system32\drivers\HDAudBus.sys
  132. \SystemRoot\system32\DRIVERS\HECIx64.sys
  133. \SystemRoot\system32\drivers\usbehci.sys
  134. \SystemRoot\system32\drivers\USBPORT.SYS
  135. \SystemRoot\system32\DRIVERS\athrx.sys
  136. \SystemRoot\system32\DRIVERS\vwifibus.sys
  137. \SystemRoot\system32\DRIVERS\jmcr.sys
  138. \SystemRoot\system32\DRIVERS\SCSIPORT.SYS
  139. \SystemRoot\system32\DRIVERS\JME.sys
  140. \SystemRoot\system32\DRIVERS\i8042prt.sys
  141. \SystemRoot\system32\DRIVERS\ETD.sys
  142. \SystemRoot\system32\DRIVERS\mouclass.sys
  143. \SystemRoot\system32\DRIVERS\kbfiltr.sys
  144. \SystemRoot\system32\DRIVERS\kbdclass.sys
  145. \SystemRoot\system32\DRIVERS\CmBatt.sys
  146. \SystemRoot\system32\DRIVERS\intelppm.sys
  147. \SystemRoot\system32\DRIVERS\ATK64AMD.sys
  148. \SystemRoot\system32\drivers\CompositeBus.sys
  149. \SystemRoot\system32\DRIVERS\AgileVpn.sys
  150. \SystemRoot\system32\DRIVERS\rasl2tp.sys
  151. \SystemRoot\system32\DRIVERS\ndistapi.sys
  152. \SystemRoot\system32\DRIVERS\ndiswan.sys
  153. \SystemRoot\system32\DRIVERS\raspppoe.sys
  154. \SystemRoot\system32\DRIVERS\raspptp.sys
  155. \SystemRoot\system32\DRIVERS\rassstp.sys
  156. \SystemRoot\system32\drivers\swenum.sys
  157. \SystemRoot\system32\drivers\ks.sys
  158. \SystemRoot\system32\drivers\umbus.sys
  159. \SystemRoot\system32\DRIVERS\usbhub.sys
  160. \SystemRoot\System32\Drivers\NDProxy.SYS
  161. \SystemRoot\system32\drivers\AtihdW76.sys
  162. \SystemRoot\system32\drivers\portcls.sys
  163. \SystemRoot\system32\drivers\drmk.sys
  164. \SystemRoot\system32\drivers\ksthunk.sys
  165. \SystemRoot\system32\drivers\CHDRT64.sys
  166. \SystemRoot\system32\DRIVERS\usbccgp.sys
  167. \SystemRoot\system32\DRIVERS\USBD.SYS
  168. \SystemRoot\system32\DRIVERS\snp2uvc.sys
  169. \SystemRoot\system32\DRIVERS\STREAM.SYS
  170. \SystemRoot\system32\DRIVERS\sncduvc.SYS
  171. \SystemRoot\system32\DRIVERS\hidusb.sys
  172. \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
  173. \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
  174. \SystemRoot\system32\DRIVERS\mouhid.sys
  175. \SystemRoot\System32\Drivers\crashdmp.sys
  176. \SystemRoot\System32\Drivers\dump_iaStor.sys
  177. \SystemRoot\System32\Drivers\dump_dumpfve.sys
  178. \SystemRoot\System32\win32k.sys
  179. \SystemRoot\System32\drivers\Dxapi.sys
  180. \SystemRoot\system32\DRIVERS\monitor.sys
  181. \SystemRoot\System32\TSDDD.dll
  182. \SystemRoot\System32\cdd.dll
  183. \SystemRoot\system32\drivers\luafv.sys
  184. \SystemRoot\system32\drivers\aswMonFlt.sys
  185. \??\C:\Windows\system32\drivers\mbam.sys
  186. \SystemRoot\system32\drivers\aswStm.sys
  187. \SystemRoot\system32\DRIVERS\lltdio.sys
  188. \SystemRoot\system32\DRIVERS\nwifi.sys
  189. \SystemRoot\system32\DRIVERS\ndisuio.sys
  190. \SystemRoot\system32\DRIVERS\rspndr.sys
  191. \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
  192. \SystemRoot\system32\drivers\HTTP.sys
  193. \SystemRoot\system32\DRIVERS\bowser.sys
  194. \SystemRoot\System32\drivers\mpsdrv.sys
  195. \SystemRoot\system32\DRIVERS\mrxsmb.sys
  196. \SystemRoot\system32\DRIVERS\mrxsmb10.sys
  197. \SystemRoot\system32\DRIVERS\mrxsmb20.sys
  198. \SystemRoot\system32\drivers\aswHwid.sys
  199. \SystemRoot\system32\drivers\peauth.sys
  200. \SystemRoot\System32\Drivers\secdrv.SYS
  201. \SystemRoot\System32\DRIVERS\srvnet.sys
  202. \SystemRoot\System32\drivers\tcpipreg.sys
  203. \SystemRoot\System32\DRIVERS\srv2.sys
  204. \SystemRoot\System32\DRIVERS\srv.sys
  205. \SystemRoot\System32\Drivers\fastfat.SYS
  206. \??\C:\Program Files (x86)\BatteryCare\WinRing0x64.sys
  207. \SystemRoot\system32\drivers\spsys.sys
  208. \??\C:\Windows\system32\drivers\mbamchameleon.sys
  209. \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
  210. \Windows\System32\ntdll.dll
  211. \Windows\System32\smss.exe
  212. \Windows\System32\apisetschema.dll
  213. \Windows\System32\autochk.exe
  214. ----------- End -----------
  215. Done!
  216.  
  217. Scan started
  218. Database versions:
  219. main: v2015.09.27.04
  220. rootkit: v2015.09.22.01
  221.  
  222. <<<2>>>
  223. Physical Sector Size: 512
  224. Drive: 0, DevicePointer: 0xfffffa800354b060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
  225. --------- Disk Stack ------
  226. DevicePointer: 0xfffffa800354bb20, DeviceName: Unknown, DriverName: \Driver\partmgr\
  227. DevicePointer: 0xfffffa800354b060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
  228. DevicePointer: 0xfffffa8003297b20, DeviceName: Unknown, DriverName: \Driver\ACPI\
  229. DevicePointer: 0xfffffa800329d050, DeviceName: \Device\Ide\IAAStorageDevice-1\, DriverName: \Driver\iaStor\
  230. ------------ End ----------
  231. Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
  232. Upper DeviceData: 0x0, 0x0, 0x0
  233. Lower DeviceData: 0x0, 0x0, 0x0
  234. <<<3>>>
  235. Volume: C:
  236. File system type: NTFS
  237. SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
  238. <<<2>>>
  239. <<<3>>>
  240. Volume: C:
  241. File system type: NTFS
  242. SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
  243. Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
  244. Done!
  245. Drive 0
  246. This is a System drive
  247. Scanning MBR on drive 0...
  248. Inspecting partition table:
  249. MBR Signature: 55AA
  250. Disk Signature: 27CD9A7B
  251.  
  252. Partition information:
  253.  
  254. Partition 0 type is Other (0x1c)
  255. Partition is NOT ACTIVE.
  256. Partition starts at LBA: 64 Numsec = 45056000
  257. Partition is not bootable
  258. Partition file system is FAT32
  259.  
  260. Partition 1 type is Primary (0x7)
  261. Partition is ACTIVE.
  262. Partition starts at LBA: 45056064 Numsec = 150443659
  263. Partition is bootable
  264. Partition file system is NTFS
  265.  
  266. Partition 2 type is Extended with LBA (0xf)
  267. Partition is NOT ACTIVE.
  268. Partition starts at LBA: 195499723 Numsec = 429642725
  269. Partition is not bootable
  270.  
  271. Partition 3 type is Empty (0x0)
  272. Partition is NOT ACTIVE.
  273. Partition starts at LBA: 0 Numsec = 0
  274. Partition is not bootable
  275.  
  276. Disk Size: 320072933376 bytes
  277. Sector size: 512 bytes
  278.  
  279. Done!
  280. File "C:\ProgramData\AVAST Software\Avast\log\AvastSvc.log" is compressed (flags = 1)
  281. File "C:\ProgramData\AVAST Software\Avast\log\AvastUI.log" is compressed (flags = 1)
  282. File "C:\ProgramData\AVAST Software\Avast\log\GrimeFighter2.log" is compressed (flags = 1)
  283. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VF" is compressed (flags = 1)
  284. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  285. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  286. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  287. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  288. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  289. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  290. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  291. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  292. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  293. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE0" is compressed (flags = 1)
  294. File "C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1CB7397E69C70C51001D1B4B10FF3FB700887C47.bin.VE1" is compressed (flags = 1)
  295. Scan finished
  296. =======================================
  297.  
  298.  
  299. Removal queue found; removal started
  300. Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
  301. Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-0-64-i.mbam...
  302. Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-1-45056064-i.mbam...
  303. Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-0-2-195499723-i.mbam...
  304. Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
  305. Removal finished
  306. ---------------------------------------
  307. Malwarebytes Anti-Rootkit BETA 1.09.3.1001
  308.  
  309. (c) Malwarebytes Corporation 2011-2012
  310.  
  311. OS version: 6.1.7601 Windows 7 Service Pack 1 x64
  312.  
  313. Account is Administrative
  314.  
  315. Internet Explorer version: 11.0.9600.17959
  316.  
  317. File system is: NTFS
  318. Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
  319. CPU speed: 2.261000 GHz
  320. Memory total: 3133714432, free: 1280425984
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement