Rkill 2.8.4 by Lawrence Abrams (Grinler) http://www.bleepingcomputer.com/ Copyright 2008-2017 BleepingComputer.com More Information about Rkill can be found at this link: http://www.bleepingcomputer.com/forums/topic308364.html Program started at: 01/14/2017 07:34:37 PM in x64 mode. Windows Version: Windows 8.1 Enterprise Checking for Windows services to stop: * No malware services found to stop. Checking for processes to terminate: * C:\Users\aissaahelme\AppData\Roaming\Nox\bin\nox_adb.exe (PID: 3144) [UP-HEUR] 1 proccess terminated! Checking Registry for malware related settings: * No issues found in the Registry. Resetting .EXE, .COM, & .BAT associations in the Windows Registry. Performing miscellaneous checks: * Windows Defender Disabled [HKLM\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware" = dword:00000001 Checking Windows Service Integrity: * No issues found. Searching for Missing Digital Signatures: * C:\Windows\System32\d3d8.dll : 1 179 648 : 08/04/2004 01:56 AM : 42803ec60803c1a0754671e9183458f1 [NoSig] +-> C:\Windows\SysWOW64\d3d8.dll : 1 065 984 : 10/29/2014 02:53 AM : 8b9329059eb7db571f269b67e0dadbec [Pos Repl] +-> C:\Windows\WinSxS\x86_microsoft-windows-directx-direct3d8_31bf3856ad364e35_6.3.9600.16384_none_56ec30e27c60b1e0\d3d8.dll : 146 747 : 04/24/2016 01:09 AM : 1a9e181d40dfe4bd960e3f43491d0363 [Pos Repl] +-> C:\Windows\WinSxS\x86_microsoft-windows-directx-direct3d8_31bf3856ad364e35_6.3.9600.17415_none_5738cbbe7c271e68\d3d8.dll : 1 065 984 : 10/29/2014 02:53 AM : 8b9329059eb7db571f269b67e0dadbec [Pos Repl] Checking HOSTS File: * HOSTS file entries found: 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 127.0.0.1 www.internetdownloadmanager.com Program finished at: 01/14/2017 07:38:45 PM Execution time: 0 hours(s), 4 minute(s), and 8 seconds(s)