Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- mbam-check result log version: 2.3.2.0
- ========================================
- User Account type: Administrator
- DomainComputer: No
- OS: Windows 10 64 bit Operating System
- Current Version and Build: 10.0.10586 OS Product Info: Home Edition
- mbam-check result log version: 2.3.2.0
- Date Log Created: 01/02/17
- Time Log Created: 02:26:24
- User Information for Local System:
- ===========================================
- User Account: Administrateur
- Account Level: Admin
- User Account: DefaultAccount
- Account Level: Guest
- User Account: Invité
- Account Level: Guest
- User Account: Letendre Colette
- Account Level: Admin
- Total # of user entries: 4
- UAC Settings:
- ===================
- SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA
- DWORD 1 Status: ON
- SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin
- DWORD 5 Status: ON
- AntiVirus Information:
- ===================
- AntiVirus Software Installed: "Windows Defender"
- FireWall Information:
- ===================
- NO 3rd Party Firewall Software Installed
- AntiSpyware Information:
- ===================
- AntiSpyware Software Installed: "Windows Defender"
- Machine Information
- ===============================================
- Machine ID: e9226b11818e9ccfdd8355023d32d9ec67d226cd
- System has been up for: 3.30333 Hours
- Current Date: 2017-Jan-02 07:26:30.728274
- Date Booted: 2017-Jan-02 04:26:30.728274
- Compatibility Flag Settings:
- =================================
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
- C:\Program Files (x86)\PopCap Games\NingPo MahJong Deluxe\Ningpo.exeREG_SZ $ DWM8And16BitMitigation
- SIGN.MEDIA=FA711E Hammer Heads Deluxe\HammerHeads.exeREG_SZ $ DWM8And16BitMitigation
- SIGN.MEDIA=C8ABBB Water Bugs\WaterBugs.exeREG_SZ $ DWM8And16BitMitigation
- C:\Program Files (x86)\PopCap Games\Zuma Deluxe\popcapgame1.exeREG_SZ $ DWM8And16BitMitigation
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers
- C:\Program Files (x86)\PopCap Games\NingPo MahJong Deluxe\Ningpo.exeREG_SZ DWM8And16BitMitigation
- SIGN.MEDIA=FA711E Hammer Heads Deluxe\HammerHeads.exeREG_SZ DWM8And16BitMitigation
- SIGN.MEDIA=C8ABBB Water Bugs\WaterBugs.exeREG_SZ DWM8And16BitMitigation
- C:\Program Files (x86)\PopCap Games\Zuma Deluxe\popcapgame1.exeREG_SZ DWM8And16BitMitigation
- Malwarebytes Anti-Malware Shell Extension Block Check:
- ======================================================
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Blocked:
- MBAM Startup Entries:
- =====================
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
- Malwarebytes Anti-Malware Service and Driver Status:
- =======================================================
- --------------Driver File Info:--------------
- C:\WINDOWS\system32\drivers\mbam.sys
- File Size: 43968 BYTES FileVersion: 3.0.0.83 MD5: [88bd122c3a35de63d75d382df75554ce]
- C:\WINDOWS\system32\drivers\mwac.sys
- File Size: 91584 BYTES FileVersion: 3.0.0.126 MD5: [205c2d377e1ca85a4465491db8064da9]
- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
- File Size: 250816 BYTES FileVersion: 4.2.0.101 MD5: [abb371d9aef728b0489b0e6872b4a1c0]
- --------------MBAMProtector:--------------
- Type: N/A
- State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMProtector
- WIN32_EXIT_CODE: N/A
- SERVICE_EXIT_CODE: N/A
- CHECKPOINT: N/A
- WAIT_HINT: N/A
- --------------MBAMService:--------------
- Type: 16
- State: 4 (The service is running.)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- --------------MBAMScheduler:--------------
- Type: N/A
- State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMScheduler
- WIN32_EXIT_CODE: N/A
- SERVICE_EXIT_CODE: N/A
- CHECKPOINT: N/A
- WAIT_HINT: N/A
- --------------MBAMChameleon:--------------
- Type: N/A
- State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleon
- WIN32_EXIT_CODE: N/A
- SERVICE_EXIT_CODE: N/A
- CHECKPOINT: N/A
- WAIT_HINT: N/A
- --------------MBAMWebAccessControl:--------------
- Type: N/A
- State: 0 <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MbamWebAccessControl
- WIN32_EXIT_CODE: N/A
- SERVICE_EXIT_CODE: N/A
- CHECKPOINT: N/A
- WAIT_HINT: N/A
- Required Dependencies:
- ======================
- --------------BFE:--------------
- Type: 32
- State: 4 (The service is running.)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE
- DisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001
- ErrorControl REG_DWORD 1
- Group REG_SZ NetworkProvider
- ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
- Start REG_DWORD 2
- Type REG_DWORD 32
- Description REG_SZ @%SystemRoot%\system32\bfe.dll,-1002
- DependOnService REG_MULTI_SZ RpcSs
- ObjectName REG_SZ NT AUTHORITY\LocalService
- ServiceSidType REG_DWORD 3
- RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege
- FailureActions REG_BINARY Binary Data
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters
- ServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dll
- ServiceDllUnloadOnStop REG_DWORD 1
- ServiceMain REG_SZ BfeServiceMain
- --------------fltmgr:--------------
- Type: 2
- State: 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
- WIN32_EXIT_CODE: 0
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr
- AttachWhenLoaded REG_DWORD 1
- DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001
- ErrorControl REG_DWORD 3
- Group REG_SZ FSFilter Infrastructure
- ImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sys
- Start REG_DWORD 0
- Tag REG_DWORD 1
- Type REG_DWORD 2
- Description REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000
- C:\WINDOWS\system32\drivers\fltmgr.sys
- File Size: 377696 BYTES FileVersion: 6.2.10586.0 MD5: [25d7a58625e1453e40d36825de74e4f1]
- C:\WINDOWS\SysWOW64\mscomctl.ocx
- File Size: 1070232 BYTES FileVersion: 6.1.98.46 MD5: [273676426739b02a45a0fc9349500b65]
- C:\WINDOWS\SysWOW64\olepro32.dll
- File Size: 88576 BYTES FileVersion: 6.2.10586.589 MD5: [7a8a2f106151b09e96abcbde716f5a69]
- MBAM Registry Settings and License Info:
- ========================================
- HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
- Scheduler Queue:
- ================
- Pending File Rename Operations:
- ================================
- If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.
- MBAMProtector Registry Values:
- ==============================
- MBAMService Registry Values:
- ============================
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMService
- Type REG_DWORD 16
- Start REG_DWORD 2
- ErrorControl REG_DWORD 1
- ImagePath REG_EXPAND_SZ "C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
- DisplayName REG_SZ Malwarebytes Service
- DependOnService REG_MULTI_SZ RPCSS
- WINMGMT
- ObjectName REG_SZ LocalSystem
- Description REG_SZ Malwarebytes Service
- MBAMScheduler Registry Values:
- ==============================
- Terminal Services Status for (null) entries in PM logs and GetUserToken errors:
- ===============================================================================
- --------------TERMService:--------------
- Type: 32
- State: 1 (The service is not running.) (State is stopped)
- WIN32_EXIT_CODE: 1077
- SERVICE_EXIT_CODE: 0
- CHECKPOINT: 0
- WAIT_HINT: 0
- TermService Start is set to: 3 (Manual Startup)
- Proxy Status: No proxy is Set
- LAN Settings:
- =============
- only 'Automatically detect settings' is selected
- SystemPartition:
- ================
- HKEY_LOCAL_MACHINE\SYSTEM\Setup\
- SystemPartition REG_SZ \Device\HarddiskVolume1
- Balloon Tips Status:
- ====================
- Enabled
- Time Format Settings:
- =====================
- Should be:
- h:mm:ss tt
- AM
- PM
- :
- Currently:
- REG_SZ HH:mm:ss
- REG_SZ
- REG_SZ
- REG_SZ
- Language and Regional Settings:
- ===============================
- ACP: Language is English (United States)
- MACCP: Language is English (United States)
- OEMCP: 850 Please refer to this link for details:[url=http://technet.microsoft.com/en-us/library/cc775938(WS.10).aspx] Here [/url]
- Startup Folders for Error_Expanding_Variables Check:
- ====================================================
- All Users Startup Folder Exists.
- Current User's Startup Folder Exists.
- MBAM DLL's and Runtime Files:
- =============================
- MBAM Registry Settings and License Info (part 2):
- ==================================================
- Context Menu Entries:
- =====================
- HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\MBAMShlExt
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CLSID
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CurVer
- (Default): REG_SZ MBAMExt.MBAMShlExt.1
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1\CLSID
- (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}
- (Default): REG_SZ IMBAMShlExt
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\ProxyStubClsid32
- (Default): REG_SZ {00020424-0000-0000-C000-000000000046}
- HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\TypeLib
- (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- Version REG_SZ 1.0
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}
- (Default): REG_SZ MBAMShlExt Class
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\InprocServer32
- (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
- ThreadingModel REG_SZ Apartment
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\ProgID
- (Default): REG_SZ MBAMExt.MBAMShlExt.1
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\TypeLib
- (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\VersionIndependentProgID
- (Default): REG_SZ MBAMExt.MBAMShlExt
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
- (Default): REG_SZ MBAMExt 1.0 Type Library
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64
- (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
- (Default): REG_SZ 0
- HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
- (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0
- (Default): REG_SZ MBAMExt 1.0 Type Library
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64
- (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS
- (Default): REG_SZ 0
- HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR
- (Default): REG_SZ C:\Program Files\Malwarebytes\Anti-Malware
- List of MBAM Related Directories:
- =================================
- ===============================================================
- END OF FILE
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement