cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþRkill 2.8.2 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2015 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 10/27/2015 07:14:17 AM in x64 mode.
Windows Version: Windows 8.1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

Checking Windows Service Integrity:

* Centre de sécurité (wscsvc) is not Running.
Startup Type set to: Disabled

Searching for Missing Digital Signatures:

* C:\WINDOWS\System32\drivers\beep.sys : 7 680 : 08/22/2013 12:40 AM : ec19013e4cf87609534165df897274d6 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.3.9600.16384_none_b4df015ddb944ecf\beep.sys : 7 680 : 08/22/2013 12:40 AM : ec19013e4cf87609534165df897274d6 [Pos Repl]

* C:\WINDOWS\System32\drivers\mcd.sys : 22 016 : 08/22/2013 12:39 AM : c895e3fae8628eaa4ade0f52862ca575 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft.windows.h..changer-driverclass_31bf3856ad364e35_6.3.9600.16384_none_b963cb259ab1420d\mcd.sys : 22 016 : 08/22/2013 12:39 AM : c895e3fae8628eaa4ade0f52862ca575 [Pos Repl]

* C:\WINDOWS\System32\drivers\MSKSSRV.sys : 10 624 : 08/22/2013 12:39 AM : a9bbbd2bae6142253b9195e949ac2e8d [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-kernelstreamingsupport_31bf3856ad364e35_6.3.9600.16384_none_52b31b2caeb2b6a8\mskssrv.sys : 10 624 : 08/22/2013 12:39 AM : a9bbbd2bae6142253b9195e949ac2e8d [Pos Repl]

* C:\WINDOWS\System32\drivers\MSPCLOCK.sys : 7 040 : 08/22/2013 12:39 AM : 7b2128eb875dcbc006e6a913211006d6 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-kernelstreamingsupport_31bf3856ad364e35_6.3.9600.16384_none_52b31b2caeb2b6a8\mspclock.sys : 7 040 : 08/22/2013 12:39 AM : 7b2128eb875dcbc006e6a913211006d6 [Pos Repl]

* C:\WINDOWS\System32\drivers\MSPQM.sys : 6 784 : 08/22/2013 12:39 AM : 1e88171579b218115c7a772f8de04bd8 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-kernelstreamingsupport_31bf3856ad364e35_6.3.9600.16384_none_52b31b2caeb2b6a8\mspqm.sys : 6 784 : 08/22/2013 12:39 AM : 1e88171579b218115c7a772f8de04bd8 [Pos Repl]

* C:\WINDOWS\System32\drivers\smclib.sys : 19 968 : 08/22/2013 12:40 AM : 8c0773703184485d57975b6c1ed48730 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft.windows.s...smart_card_library_31bf3856ad364e35_6.3.9600.16384_none_eac20d02bbae8d8d\smclib.sys : 19 968 : 08/22/2013 12:40 AM : 8c0773703184485d57975b6c1ed48730 [Pos Repl]

* C:\WINDOWS\System32\drivers\stream.sys : 67 584 : 08/22/2013 12:39 AM : ff184501f8f556147bbbde571315c137 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-streamclass_31bf3856ad364e35_6.3.9600.16384_none_4f22f5bc0b99b5f0\stream.sys : 67 584 : 08/22/2013 12:39 AM : ff184501f8f556147bbbde571315c137 [Pos Repl]

* C:\WINDOWS\System32\drivers\tape.sys : 29 696 : 08/22/2013 12:39 AM : b13a57ce2f17b8c789e895e15f115db0 [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft.windows.h..pedrive-driverclass_31bf3856ad364e35_6.3.9600.16384_none_82e83082914580d4\tape.sys : 29 696 : 08/22/2013 12:39 AM : b13a57ce2f17b8c789e895e15f115db0 [Pos Repl]

* C:\WINDOWS\System32\drivers\usbcamd2.sys : 32 512 : 08/22/2013 12:39 AM : 5d45329a96b1a417dc7f59fdeabc0dde [NoSig]
+-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-usbcamd_31bf3856ad364e35_6.3.9600.16384_none_9046c19b4c3214d1\USBCAMD2.sys : 32 512 : 08/22/2013 12:39 AM : 5d45329a96b1a417dc7f59fdeabc0dde [Pos Repl]

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 d3oxij66pru1i3.cloudfront.net

Program finished at: 10/27/2015 07:21:55 AM
Execution time: 0 hours(s), 7 minute(s), and 37 seconds(s)

Publicité


Signaler le contenu de ce document

Publicité