Advertisement
Guest User

mbam checker

a guest
Jan 2nd, 2017
246
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.92 KB | None | 0 0
  1. mbam-check result log version: 2.3.2.0
  2. ========================================
  3.  
  4. User Account type: Administrator
  5. DomainComputer: No
  6. OS: Windows 10 64 bit Operating System
  7. Current Version and Build: 10.0.10586 OS Product Info: Home Edition
  8.  
  9.  
  10. mbam-check result log version: 2.3.2.0
  11.  
  12. Date Log Created: 01/02/17
  13. Time Log Created: 02:26:24
  14.  
  15.  
  16. User Information for Local System:
  17. ===========================================
  18. User Account: Administrateur
  19. Account Level: Admin
  20. User Account: DefaultAccount
  21. Account Level: Guest
  22. User Account: Invité
  23. Account Level: Guest
  24. User Account: Letendre Colette
  25. Account Level: Admin
  26. Total # of user entries: 4
  27.  
  28. UAC Settings:
  29. ===================
  30. SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
  31. DWORD 1 Status: ON
  32. SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
  33. DWORD 5 Status: ON
  34.  
  35. AntiVirus Information:
  36. ===================
  37. AntiVirus Software Installed: "Windows Defender"
  38.  
  39. FireWall Information:
  40. ===================
  41. NO 3rd Party Firewall Software Installed
  42.  
  43. AntiSpyware Information:
  44. ===================
  45. AntiSpyware Software Installed: "Windows Defender"
  46.  
  47. Machine Information
  48. ===============================================
  49. Machine ID: e9226b11818e9ccfdd8355023d32d9ec67d226cd
  50. System has been up for: 3.30333 Hours
  51. Current Date: 2017-Jan-02 07:26:30.728274
  52. Date Booted: 2017-Jan-02 04:26:30.728274
  53.  
  54. Compatibility Flag Settings:
  55. =================================
  56.  
  57. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
  58. C:\Program Files (x86)\PopCap Games\NingPo MahJong Deluxe\Ningpo.exeREG_SZ $ DWM8And16BitMitigation
  59. SIGN.MEDIA=FA711E Hammer Heads Deluxe\HammerHeads.exeREG_SZ $ DWM8And16BitMitigation
  60. SIGN.MEDIA=C8ABBB Water Bugs\WaterBugs.exeREG_SZ $ DWM8And16BitMitigation
  61. C:\Program Files (x86)\PopCap Games\Zuma Deluxe\popcapgame1.exeREG_SZ $ DWM8And16BitMitigation
  62. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
  63. C:\Program Files (x86)\PopCap Games\NingPo MahJong Deluxe\Ningpo.exeREG_SZ DWM8And16BitMitigation
  64. SIGN.MEDIA=FA711E Hammer Heads Deluxe\HammerHeads.exeREG_SZ DWM8And16BitMitigation
  65. SIGN.MEDIA=C8ABBB Water Bugs\WaterBugs.exeREG_SZ DWM8And16BitMitigation
  66. C:\Program Files (x86)\PopCap Games\Zuma Deluxe\popcapgame1.exeREG_SZ DWM8And16BitMitigation
  67.  
  68.  
  69. Malwarebytes Anti-Malware Shell Extension Block Check:
  70. ======================================================
  71.  
  72. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:
  73.  
  74. MBAM Startup Entries:
  75. =====================
  76. HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
  77. HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
  78. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
  79. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
  80.  
  81. Malwarebytes Anti-Malware Service and Driver Status:
  82. =======================================================
  83.  
  84. --------------Driver File Info:--------------
  85. C:\WINDOWS\system32\drivers\mbam.sys
  86. File Size: 43968 BYTES FileVersion: 3.0.0.83 MD5: [88bd122c3a35de63d75d382df75554ce]
  87. C:\WINDOWS\system32\drivers\mwac.sys
  88. File Size: 91584 BYTES FileVersion: 3.0.0.126 MD5: [205c2d377e1ca85a4465491db8064da9]
  89. C:\WINDOWS\system32\drivers\mbamswissarmy.sys
  90. File Size: 250816 BYTES FileVersion: 4.2.0.101 MD5: [abb371d9aef728b0489b0e6872b4a1c0]
  91.  
  92. --------------MBAMProtector:--------------
  93. Type: N/A
  94. State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMProtector
  95. WIN32_EXIT_CODE: N/A
  96. SERVICE_EXIT_CODE: N/A
  97. CHECKPOINT: N/A
  98. WAIT_HINT: N/A
  99.  
  100.  
  101. --------------MBAMService:--------------
  102. Type: 16
  103. State: 4 (The service is running.)
  104. WIN32_EXIT_CODE: 0
  105. SERVICE_EXIT_CODE: 0
  106. CHECKPOINT: 0
  107. WAIT_HINT: 0
  108.  
  109.  
  110. --------------MBAMScheduler:--------------
  111. Type: N/A
  112. State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMScheduler
  113. WIN32_EXIT_CODE: N/A
  114. SERVICE_EXIT_CODE: N/A
  115. CHECKPOINT: N/A
  116. WAIT_HINT: N/A
  117.  
  118.  
  119. --------------MBAMChameleon:--------------
  120. Type: N/A
  121. State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
  122. WIN32_EXIT_CODE: N/A
  123. SERVICE_EXIT_CODE: N/A
  124. CHECKPOINT: N/A
  125. WAIT_HINT: N/A
  126.  
  127.  
  128. --------------MBAMWebAccessControl:--------------
  129. Type: N/A
  130. State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MbamWebAccessControl
  131. WIN32_EXIT_CODE: N/A
  132. SERVICE_EXIT_CODE: N/A
  133. CHECKPOINT: N/A
  134. WAIT_HINT: N/A
  135.  
  136.  
  137. Required Dependencies:
  138. ======================
  139.  
  140. --------------BFE:--------------
  141. Type: 32
  142. State: 4 (The service is running.)
  143. WIN32_EXIT_CODE: 0
  144. SERVICE_EXIT_CODE: 0
  145. CHECKPOINT: 0
  146. WAIT_HINT: 0
  147.  
  148.  
  149. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
  150. DisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001
  151. ErrorControl REG_DWORD 1
  152. Group REG_SZ NetworkProvider
  153. ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
  154. Start REG_DWORD 2
  155. Type REG_DWORD 32
  156. Description REG_SZ @%SystemRoot%\system32\bfe.dll,-1002
  157. DependOnService REG_MULTI_SZ RpcSs
  158.  
  159. ObjectName REG_SZ NT AUTHORITY\LocalService
  160. ServiceSidType REG_DWORD 3
  161. RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege
  162.  
  163. FailureActions REG_BINARY Binary Data
  164.  
  165. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
  166. ServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dll
  167. ServiceDllUnloadOnStop REG_DWORD 1
  168. ServiceMain REG_SZ BfeServiceMain
  169.  
  170. --------------fltmgr:--------------
  171. Type: 2
  172. State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
  173. WIN32_EXIT_CODE: 0
  174. SERVICE_EXIT_CODE: 0
  175. CHECKPOINT: 0
  176. WAIT_HINT: 0
  177.  
  178.  
  179. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
  180. AttachWhenLoaded REG_DWORD 1
  181. DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001
  182. ErrorControl REG_DWORD 3
  183. Group REG_SZ FSFilter Infrastructure
  184. ImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sys
  185. Start REG_DWORD 0
  186. Tag REG_DWORD 1
  187. Type REG_DWORD 2
  188. Description REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000
  189.  
  190.  
  191. C:\WINDOWS\system32\drivers\fltmgr.sys
  192. File Size: 377696 BYTES FileVersion: 6.2.10586.0 MD5: [25d7a58625e1453e40d36825de74e4f1]
  193. C:\WINDOWS\SysWOW64\mscomctl.ocx
  194. File Size: 1070232 BYTES FileVersion: 6.1.98.46 MD5: [273676426739b02a45a0fc9349500b65]
  195. C:\WINDOWS\SysWOW64\olepro32.dll
  196. File Size: 88576 BYTES FileVersion: 6.2.10586.589 MD5: [7a8a2f106151b09e96abcbde716f5a69]
  197.  
  198.  
  199. MBAM Registry Settings and License Info:
  200. ========================================
  201.  
  202. HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
  203.  
  204.  
  205.  
  206. Scheduler Queue:
  207. ================
  208.  
  209.  
  210. Pending File Rename Operations:
  211. ================================
  212. If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.
  213.  
  214. MBAMProtector Registry Values:
  215. ==============================
  216.  
  217.  
  218.  
  219. MBAMService Registry Values:
  220. ============================
  221.  
  222. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
  223. Type REG_DWORD 16
  224. Start REG_DWORD 2
  225. ErrorControl REG_DWORD 1
  226. ImagePath REG_EXPAND_SZ "C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
  227. DisplayName REG_SZ Malwarebytes Service
  228. DependOnService REG_MULTI_SZ RPCSS
  229. WINMGMT
  230.  
  231. ObjectName REG_SZ LocalSystem
  232. Description REG_SZ Malwarebytes Service
  233.  
  234. MBAMScheduler Registry Values:
  235. ==============================
  236.  
  237.  
  238.  
  239. Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
  240. ===============================================================================
  241.  
  242. --------------TERMService:--------------
  243. Type: 32
  244. State: 1 (The service is not running.) (State is stopped)
  245. WIN32_EXIT_CODE: 1077
  246. SERVICE_EXIT_CODE: 0
  247. CHECKPOINT: 0
  248. WAIT_HINT: 0
  249.  
  250.  
  251. TermService Start is set to: 3 (Manual Startup)
  252.  
  253. Proxy Status: No proxy is Set
  254.  
  255. LAN Settings:
  256. =============
  257.  
  258. only 'Automatically detect settings' is selected
  259.  
  260. SystemPartition:
  261. ================
  262.  
  263. HKEY_LOCAL_MACHINE\SYSTEM\Setup\
  264. SystemPartition REG_SZ \Device\HarddiskVolume1
  265.  
  266. Balloon Tips Status:
  267. ====================
  268.  
  269. Enabled
  270.  
  271. Time Format Settings:
  272. =====================
  273.  
  274. Should be:
  275. h:mm:ss tt
  276. AM
  277. PM
  278. :
  279.  
  280. Currently:
  281. REG_SZ HH:mm:ss
  282. REG_SZ
  283. REG_SZ
  284. REG_SZ
  285.  
  286. Language and Regional Settings:
  287. ===============================
  288.  
  289. ACP: Language is English (United States)
  290. MACCP: Language is English (United States)
  291. OEMCP: 850 Please refer to this link for details:[url=http://technet.microsoft.com/en-us/library/cc775938(WS.10).aspx] Here [/url]
  292.  
  293. Startup Folders for Error_Expanding_Variables Check:
  294. ====================================================
  295.  
  296. All Users Startup Folder Exists.
  297. Current User's Startup Folder Exists.
  298.  
  299.  
  300.  
  301. MBAM DLL's and Runtime Files:
  302. =============================
  303.  
  304.  
  305.  
  306.  
  307.  
  308.  
  309.  
  310.  
  311.  
  312.  
  313.  
  314.  
  315.  
  316.  
  317.  
  318.  
  319.  
  320.  
  321.  
  322.  
  323.  
  324.  
  325.  
  326.  
  327.  
  328.  
  329.  
  330.  
  331.  
  332.  
  333. MBAM Registry Settings and License Info (part 2):
  334. ==================================================
  335.  
  336.  
  337.  
  338.  
  339.  
  340.  
  341.  
  342. Context Menu Entries:
  343. =====================
  344.  
  345. HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt
  346. (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
  347.  
  348. HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\MBAMShlExt
  349. (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
  350.  
  351. HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt
  352. (Default): REG_SZ MBAMShlExt Class
  353. HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CLSID
  354. (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
  355. HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CurVer
  356. (Default): REG_SZ MBAMExt.MBAMShlExt.1
  357. HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1
  358. (Default): REG_SZ MBAMShlExt Class
  359. HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1\CLSID
  360. (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
  361.  
  362.  
  363. HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}
  364. (Default): REG_SZ IMBAMShlExt
  365. HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\ProxyStubClsid32
  366. (Default): REG_SZ {00020424-0000-0000-C000-000000000046}
  367. HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\TypeLib
  368. (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
  369. Version REG_SZ 1.0
  370. HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}
  371. (Default): REG_SZ MBAMShlExt Class
  372. HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\InprocServer32
  373. (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
  374. ThreadingModel REG_SZ Apartment
  375. HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\ProgID
  376. (Default): REG_SZ MBAMExt.MBAMShlExt.1
  377. HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\TypeLib
  378. (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
  379. HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\VersionIndependentProgID
  380. (Default): REG_SZ MBAMExt.MBAMShlExt
  381.  
  382. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
  383. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
  384. (Default): REG_SZ MBAMExt 1.0 Type Library
  385. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
  386. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64
  387. (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
  388. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
  389. (Default): REG_SZ 0
  390. HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
  391. (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware
  392. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
  393. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
  394. (Default): REG_SZ MBAMExt 1.0 Type Library
  395. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
  396. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64
  397. (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
  398. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
  399. (Default): REG_SZ 0
  400. HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
  401. (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware
  402.  
  403.  
  404. List of MBAM Related Directories:
  405. =================================
  406.  
  407. ===============================================================
  408. END OF FILE
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement