po zapnutí OS WIN 7 mi vyskočila program "System Check" ktorý som nestahoval a ani neinštaloval. Odsránit mi sa ho nepodarilo, skušal som ESS5, SpyBot, Ccleaner. (ikony, štart menu nedostupný, čierna pracovná plocha)
Našiel som podobnu tému tam vyžadovaly log z RogueKiller a MBRScan, prikladám:
Vopred ďakujem za pomoc.
RogueKiller V7.3.1 [03/10/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.geekstogo.com/forum/files/fi ... guekiller/
Blog: http://tigzyrk.blogspot.com
Operačný systém: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spustené v : Núdzový režim s prácou v sieti
Užívateľ: Szalai Jan [Práva Správcu]
Mode: Kontrola -- Date: 03/19/2012 17:29:51
¤¤¤ Škodlivé procesy: 0 ¤¤¤
¤¤¤ Záznamy Registrov: 16 ¤¤¤
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> FOUND
[HJ] HKLM\[...]\System : EnableLUA (0) -> FOUND
[WallPP] HKCU\[...]\Desktop : Wallpaper () -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowUser (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowMyPics (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowMyMusic (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowHelp (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowPrinters (0) -> FOUND
[HJ] HKCU\[...]\Advanced : Start_ShowSetProgramAccessAndDefaults (0) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
[HJ] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> FOUND
¤¤¤ Zvláštne súbory / Adresáre: ¤¤¤
¤¤¤ Ovládač: [NENAHRATÉ] ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Súbor HOSTS: ¤¤¤
127.0.0.1 genuine.microsoft.com
127.0.0.1 mpa.one.microsoft.com
127.0.0.1 sls.microsoft.com
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: ST3250620A ATA Device +++++
--- User ---
[MBR] b3eaa03dfc9a7cf269491e7d7b89b2a6
[BSP] a7c5c8dfee893117247a1a7abd9c9822 : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 24999 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 51199155 | Size: 209998 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive1: SAMSUNG HD252HJ ATA Device +++++
--- User ---
[MBR] c0334b98e95770e68761d967cb6d8337
[BSP] 585cbb9532759894310f1f823646c35a : Windows 7 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 8 | Size: 26500 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 54272064 | Size: 56499 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 169984056 | Size: 151473 Mo
User = LL1 ... OK!
User = LL2 ... OK!
+++++ PhysicalDrive2: WDC WD10EARS-00Y5B1 ATA Device +++++
--- User ---
[MBR] 1694c864dc0590af1838a2fd9a6d96c5
[BSP] f02cb92d04e38166f9a326afea6869a3 : MBR Code unknown
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 953867 Mo
User = LL1 ... OK!
User = LL2 ... OK!
Dokončené : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt
_____________________________________________________________________________
Kód: Vybrat vše
MBRScan v1.1.1
OS : Windows 7 Service Pack 1 (64 bit)
PROCESSOR : Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
BOOT : Safe Boot with network
DATE : 2012/03/19 (ISO 8601) at 17:29:36
________________________________________________________________________________
Device\Harddisk0\DR0 232.9 Go [Fixed] ==> XP MBR Code ==> PARTITION TABLE FAKED !!
MBR_MD5 : B3EAA03DFC9A7CF269491E7D7B89B2A6
MBR_SHA1 : ADA6CDFD92980915E3A1CE0FEEB7FC28A9189A45
Device\Harddisk0\Partition1 24.41 Go 0x07 NTFS / HPFS
Device\Harddisk0\Partition2 205.1 Go 0x07 NTFS / HPFS
________________________________________________________________________________
Device\Harddisk1\DR1 232.9 Go [Fixed] ==> 7 MBR Code ==> PARTITION TABLE FAKED !!
MBR_MD5 : C0334B98E95770E68761D967CB6D8337
MBR_SHA1 : FEDECF2140E29C043545E28D8E137420B0F90693
Device\Harddisk1\Partition1 25.88 Go 0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk1\Partition2 55.18 Go 0x07 NTFS / HPFS
Device\Harddisk1\Partition3 147.9 Go 0x07 NTFS / HPFS
________________________________________________________________________________
Device\Harddisk2\DR2 931.5 Go [Fixed] ==> Unknown MBR Code ==> PARTITION TABLE FAKED !!
MBR_MD5 : 1694C864DC0590AF1838A2FD9A6D96C5
MBR_SHA1 : 9ABFBCCAC740858AE6D58BACA6F517A9ABF3E2B3
Device\Harddisk2\Partition1 931.5 Go 0x07 NTFS / HPFS __ BOOTABLE __
________________________________________________________________________________
############################### Additional scan ################################
DRIVER : C:\Windows\system32\hal.dll => Invisible on the disk
ADDRESS : 0x03C0C000
SIZE : 292.0 Ko
DRIVER : C:\Windows\system32\kdcom.dll => Invisible on the disk
ADDRESS : 0x00BB5000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\mcupdate_GenuineIntel.dll => Invisible on the disk
ADDRESS : 0x00CE2000
SIZE : 316.0 Ko
DRIVER : C:\Windows\system32\CLFS.SYS => Invisible on the disk
ADDRESS : 0x00D45000
SIZE : 376.0 Ko
DRIVER : C:\Windows\system32\CI.dll => Invisible on the disk
ADDRESS : 0x00C00000
SIZE : 768.0 Ko
DRIVER : C:\Windows\system32\drivers\Wdf01000.sys => Invisible on the disk
ADDRESS : 0x00E88000
SIZE : 656.0 Ko
DRIVER : C:\Windows\system32\drivers\WDFLDR.SYS => Invisible on the disk
ADDRESS : 0x00F2C000
SIZE : 60.0 Ko
DRIVER : C:\Windows\System32\Drivers\WMILIB.SYS => Invisible on the disk
ADDRESS : 0x011B5000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\SCSIPORT.SYS => Invisible on the disk
ADDRESS : 0x011BE000
SIZE : 188.0 Ko
DRIVER : C:\Windows\system32\drivers\ACPI.sys => Invisible on the disk
ADDRESS : 0x01000000
SIZE : 348.0 Ko
DRIVER : C:\Windows\system32\drivers\msisadrv.sys => Invisible on the disk
ADDRESS : 0x01057000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\drivers\vdrvroot.sys => Invisible on the disk
ADDRESS : 0x01061000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\drivers\pci.sys => Invisible on the disk
ADDRESS : 0x00F3B000
SIZE : 204.0 Ko
DRIVER : C:\Windows\System32\drivers\partmgr.sys => Invisible on the disk
ADDRESS : 0x0106E000
SIZE : 84.0 Ko
DRIVER : C:\Windows\system32\drivers\volmgr.sys => Invisible on the disk
ADDRESS : 0x00F6E000
SIZE : 84.0 Ko
DRIVER : C:\Windows\System32\drivers\volmgrx.sys => Invisible on the disk
ADDRESS : 0x00F83000
SIZE : 368.0 Ko
DRIVER : C:\Windows\system32\drivers\pciide.sys => Invisible on the disk
ADDRESS : 0x01083000
SIZE : 28.0 Ko
DRIVER : C:\Windows\system32\drivers\PCIIDEX.SYS => Invisible on the disk
ADDRESS : 0x011ED000
SIZE : 64.0 Ko
DRIVER : C:\Windows\System32\drivers\mountmgr.sys => Invisible on the disk
ADDRESS : 0x00FDF000
SIZE : 104.0 Ko
DRIVER : C:\Windows\system32\drivers\vmbus.sys => Invisible on the disk
ADDRESS : 0x00E00000
SIZE : 240.0 Ko
DRIVER : C:\Windows\system32\drivers\winhv.sys => Invisible on the disk
ADDRESS : 0x00E3C000
SIZE : 80.0 Ko
DRIVER : C:\Windows\system32\drivers\atapi.sys => Invisible on the disk
ADDRESS : 0x00E50000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\drivers\ataport.SYS => Invisible on the disk
ADDRESS : 0x00E59000
SIZE : 168.0 Ko
DRIVER : C:\Windows\system32\drivers\amdxata.sys => Invisible on the disk
ADDRESS : 0x00CC0000
SIZE : 44.0 Ko
DRIVER : C:\Windows\system32\drivers\fltmgr.sys => Invisible on the disk
ADDRESS : 0x00DA3000
SIZE : 304.0 Ko
DRIVER : C:\Windows\system32\drivers\fileinfo.sys => Invisible on the disk
ADDRESS : 0x00CCB000
SIZE : 80.0 Ko
DRIVER : C:\Windows\System32\Drivers\PxHlpa64.sys => Invisible on the disk
ADDRESS : 0x00DEF000
SIZE : 52.0 Ko
DRIVER : C:\Windows\System32\Drivers\Ntfs.sys => Invisible on the disk
ADDRESS : 0x01255000
SIZE : 1.64 Mo
DRIVER : C:\Windows\System32\Drivers\msrpc.sys => Invisible on the disk
ADDRESS : 0x01472000
SIZE : 376.0 Ko
DRIVER : C:\Windows\System32\Drivers\ksecdd.sys => Invisible on the disk
ADDRESS : 0x014D0000
SIZE : 108.0 Ko
DRIVER : C:\Windows\System32\Drivers\cng.sys => Invisible on the disk
ADDRESS : 0x014EB000
SIZE : 456.0 Ko
DRIVER : C:\Windows\System32\drivers\pcw.sys => Invisible on the disk
ADDRESS : 0x0155D000
SIZE : 68.0 Ko
DRIVER : C:\Windows\System32\Drivers\Fs_Rec.sys => Invisible on the disk
ADDRESS : 0x0156E000
SIZE : 40.0 Ko
DRIVER : C:\Windows\system32\drivers\ndis.sys => Invisible on the disk
ADDRESS : 0x01617000
SIZE : 972.0 Ko
DRIVER : C:\Windows\system32\drivers\NETIO.SYS => Invisible on the disk
ADDRESS : 0x0170A000
SIZE : 384.0 Ko
DRIVER : C:\Windows\System32\Drivers\ksecpkg.sys => Invisible on the disk
ADDRESS : 0x0176A000
SIZE : 172.0 Ko
DRIVER : C:\Windows\System32\drivers\tcpip.sys => Invisible on the disk
ADDRESS : 0x0184F000
SIZE : 2.02 Mo
DRIVER : C:\Windows\System32\drivers\fwpkclnt.sys => Invisible on the disk
ADDRESS : 0x01A53000
SIZE : 296.0 Ko
DRIVER : C:\Windows\system32\drivers\vmstorfl.sys => Invisible on the disk
ADDRESS : 0x01AB2000
SIZE : 64.0 Ko
DRIVER : C:\Windows\system32\drivers\volsnap.sys => Invisible on the disk
ADDRESS : 0x01AC2000
SIZE : 304.0 Ko
DRIVER : C:\Windows\System32\drivers\rdyboost.sys => Invisible on the disk
ADDRESS : 0x01B16000
SIZE : 232.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\NBVol.sys => Invisible on the disk
ADDRESS : 0x01B50000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\NBVolUp.sys => Invisible on the disk
ADDRESS : 0x01B66000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\mup.sys => Invisible on the disk
ADDRESS : 0x01B6F000
SIZE : 72.0 Ko
DRIVER : C:\Windows\System32\drivers\hwpolicy.sys => Invisible on the disk
ADDRESS : 0x01B81000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\fvevol.sys => Invisible on the disk
ADDRESS : 0x01B8A000
SIZE : 232.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\disk.sys => Invisible on the disk
ADDRESS : 0x01BC4000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\CLASSPNP.SYS => Invisible on the disk
ADDRESS : 0x01800000
SIZE : 192.0 Ko
DRIVER : C:\Windows\System32\Drivers\Null.SYS => Invisible on the disk
ADDRESS : 0x01BED000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\Beep.SYS => Invisible on the disk
ADDRESS : 0x01BF6000
SIZE : 28.0 Ko
DRIVER : C:\Windows\System32\drivers\vga.sys => Invisible on the disk
ADDRESS : 0x017BC000
SIZE : 56.0 Ko
DRIVER : C:\Windows\System32\drivers\VIDEOPRT.SYS => Invisible on the disk
ADDRESS : 0x017CA000
SIZE : 148.0 Ko
DRIVER : C:\Windows\System32\drivers\watchdog.sys => Invisible on the disk
ADDRESS : 0x017EF000
SIZE : 64.0 Ko
DRIVER : C:\Windows\system32\drivers\rdpencdd.sys => Invisible on the disk
ADDRESS : 0x01AA6000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\Msfs.SYS => Invisible on the disk
ADDRESS : 0x01600000
SIZE : 44.0 Ko
DRIVER : C:\Windows\System32\Drivers\Npfs.SYS => Invisible on the disk
ADDRESS : 0x01795000
SIZE : 68.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\tdx.sys => Invisible on the disk
ADDRESS : 0x01578000
SIZE : 136.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\TDI.SYS => Invisible on the disk
ADDRESS : 0x017A6000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\drivers\afd.sys => Invisible on the disk
ADDRESS : 0x0108A000
SIZE : 548.0 Ko
DRIVER : C:\Windows\System32\DRIVERS\netbt.sys => Invisible on the disk
ADDRESS : 0x0159A000
SIZE : 276.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\wfplwf.sys => Invisible on the disk
ADDRESS : 0x017B3000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\pacer.sys => Invisible on the disk
ADDRESS : 0x01400000
SIZE : 152.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\vwififlt.sys => Invisible on the disk
ADDRESS : 0x01426000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\EpfwLWF.sys => Invisible on the disk
ADDRESS : 0x0143C000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\netbios.sys => Invisible on the disk
ADDRESS : 0x01449000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rdbss.sys => Invisible on the disk
ADDRESS : 0x01200000
SIZE : 324.0 Ko
DRIVER : C:\Windows\system32\drivers\nsiproxy.sys => Invisible on the disk
ADDRESS : 0x0160B000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\drivers\csc.sys => Invisible on the disk
ADDRESS : 0x01113000
SIZE : 524.0 Ko
DRIVER : C:\Windows\System32\Drivers\dfsc.sys => Invisible on the disk
ADDRESS : 0x015DF000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\tunnel.sys => Invisible on the disk
ADDRESS : 0x0268B000
SIZE : 152.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbuhci.sys => Invisible on the disk
ADDRESS : 0x026B1000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\USBPORT.SYS => Invisible on the disk
ADDRESS : 0x026BE000
SIZE : 344.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbehci.sys => Invisible on the disk
ADDRESS : 0x02714000
SIZE : 68.0 Ko
DRIVER : C:\Windows\system32\drivers\HDAudBus.sys => Invisible on the disk
ADDRESS : 0x02725000
SIZE : 144.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\l160x64.sys => Invisible on the disk
ADDRESS : 0x02749000
SIZE : 80.0 Ko
DRIVER : C:\Windows\system32\drivers\1394ohci.sys => Invisible on the disk
ADDRESS : 0x0275D000
SIZE : 248.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\fdc.sys => Invisible on the disk
ADDRESS : 0x0279B000
SIZE : 52.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ASACPI.sys => Invisible on the disk
ADDRESS : 0x027A8000
SIZE : 32.0 Ko
DRIVER : C:\Windows\system32\drivers\i8042prt.sys => Invisible on the disk
ADDRESS : 0x027B0000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\kbdclass.sys => Invisible on the disk
ADDRESS : 0x027CE000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\drivers\cdrom.sys => Invisible on the disk
ADDRESS : 0x02600000
SIZE : 168.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\blbdrive.sys => Invisible on the disk
ADDRESS : 0x0262A000
SIZE : 68.0 Ko
DRIVER : C:\Windows\system32\drivers\CompositeBus.sys => Invisible on the disk
ADDRESS : 0x0263B000
SIZE : 64.0 Ko
DRIVER : C:\Windows\system32\drivers\mssmbios.sys => Invisible on the disk
ADDRESS : 0x0264B000
SIZE : 44.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\AgileVpn.sys => Invisible on the disk
ADDRESS : 0x02656000
SIZE : 88.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rasl2tp.sys => Invisible on the disk
ADDRESS : 0x030DC000
SIZE : 144.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndistapi.sys => Invisible on the disk
ADDRESS : 0x03100000
SIZE : 48.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndiswan.sys => Invisible on the disk
ADDRESS : 0x0310C000
SIZE : 188.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\raspppoe.sys => Invisible on the disk
ADDRESS : 0x0313B000
SIZE : 108.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\raspptp.sys => Invisible on the disk
ADDRESS : 0x03156000
SIZE : 132.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rassstp.sys => Invisible on the disk
ADDRESS : 0x03177000
SIZE : 104.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\rdpbus.sys => Invisible on the disk
ADDRESS : 0x03191000
SIZE : 44.0 Ko
DRIVER : C:\Windows\system32\drivers\termdd.sys => Invisible on the disk
ADDRESS : 0x0319C000
SIZE : 80.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mouclass.sys => Invisible on the disk
ADDRESS : 0x031B0000
SIZE : 60.0 Ko
DRIVER : C:\Windows\system32\drivers\swenum.sys => Invisible on the disk
ADDRESS : 0x031BF000
SIZE : 8.0 Ko
DRIVER : C:\Windows\system32\drivers\ks.sys => Invisible on the disk
ADDRESS : 0x03000000
SIZE : 268.0 Ko
DRIVER : C:\Windows\system32\drivers\umbus.sys => Invisible on the disk
ADDRESS : 0x03043000
SIZE : 72.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbhub.sys => Invisible on the disk
ADDRESS : 0x03055000
SIZE : 360.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\flpydisk.sys => Invisible on the disk
ADDRESS : 0x030AF000
SIZE : 44.0 Ko
DRIVER : C:\Windows\System32\Drivers\NDProxy.SYS => Invisible on the disk
ADDRESS : 0x030BA000
SIZE : 84.0 Ko
DRIVER : C:\Windows\System32\win32k.sys => Invisible on the disk
ADDRESS : 0x00080000
SIZE : 3.08 Mo
DRIVER : C:\Windows\System32\drivers\Dxapi.sys => Invisible on the disk
ADDRESS : 0x030CF000
SIZE : 48.0 Ko
DRIVER : C:\Windows\System32\Drivers\crashdmp.sys => Invisible on the disk
ADDRESS : 0x031C1000
SIZE : 56.0 Ko
DRIVER : C:\Windows\System32\Drivers\dump_dumpata.sys => Invisible on the disk
ADDRESS : 0x031CF000
SIZE : 48.0 Ko
DRIVER : C:\Windows\System32\Drivers\dump_atapi.sys => Invisible on the disk
ADDRESS : 0x031DB000
SIZE : 36.0 Ko
DRIVER : C:\Windows\System32\Drivers\dump_dumpfve.sys => Invisible on the disk
ADDRESS : 0x031E4000
SIZE : 76.0 Ko
DRIVER : C:\Windows\System32\drivers\dxg.sys => Invisible on the disk
ADDRESS : 0x00440000
SIZE : 120.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\usbccgp.sys => Invisible on the disk
ADDRESS : 0x0266C000
SIZE : 116.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\USBD.SYS => Invisible on the disk
ADDRESS : 0x031F7000
SIZE : 8.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\hidusb.sys => Invisible on the disk
ADDRESS : 0x027DD000
SIZE : 56.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\HIDCLASS.SYS => Invisible on the disk
ADDRESS : 0x01830000
SIZE : 100.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\HIDPARSE.SYS => Invisible on the disk
ADDRESS : 0x027EB000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\kbdhid.sys => Invisible on the disk
ADDRESS : 0x01BDA000
SIZE : 56.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mouhid.sys => Invisible on the disk
ADDRESS : 0x01458000
SIZE : 52.0 Ko
DRIVER : C:\Windows\System32\TSDDD.dll => Invisible on the disk
ADDRESS : 0x00750000
SIZE : 40.0 Ko
DRIVER : C:\Windows\System32\framebuf.dll => Invisible on the disk
ADDRESS : 0x009E0000
SIZE : 36.0 Ko
DRIVER : C:\Windows\system32\drivers\WudfPf.sys => Invisible on the disk
ADDRESS : 0x03ABD000
SIZE : 132.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\nwifi.sys => Invisible on the disk
ADDRESS : 0x03ADE000
SIZE : 332.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\ndisuio.sys => Invisible on the disk
ADDRESS : 0x03B31000
SIZE : 76.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\bowser.sys => Invisible on the disk
ADDRESS : 0x03B44000
SIZE : 120.0 Ko
DRIVER : C:\Windows\System32\drivers\mpsdrv.sys => Invisible on the disk
ADDRESS : 0x03B62000
SIZE : 96.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb.sys => Invisible on the disk
ADDRESS : 0x03B7A000
SIZE : 180.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb10.sys => Invisible on the disk
ADDRESS : 0x03BA7000
SIZE : 312.0 Ko
DRIVER : C:\Windows\system32\DRIVERS\mrxsmb20.sys => Invisible on the disk
ADDRESS : 0x03A00000
SIZE : 144.0 Ko
DRIVER : C:\Windows\System32\Drivers\fastfat.SYS => Invisible on the disk
ADDRESS : 0x03A24000
SIZE : 216.0 Ko
DRIVER : C:\Windows\System32\smss.exe => Invisible on the disk
ADDRESS : 0x48080000
SIZE : 128.0 Ko
BCD EmsSettings {0CE4991B-E6B3-4B16-B23C-5E0D9250E5D9} => BcdLibraryBoolean_EmsEnabled (16000020)
SystemStartOptions : NOEXECUTE=OPTIN SAFEBOOT:NETWORK SOS BOOTLOG NOGUIBOOT BOOTLOGO
________________________________________________________________________________
_______MBR \Device\Harddisk0\DR0
0x00000000 33 C0 8E D0 BC 00 7C FB 50 07 50 1F FC BE 1B 7C 3À.м.|ûP.P.ü¾.|
0x00000010 BF 1B 06 50 57 B9 E5 01 F3 A4 CB BD BE 07 B1 04 ¿..PW¹å.ó¤Ë½¾.±.
0x00000020 38 6E 00 7C 09 75 13 83 C5 10 E2 F4 CD 18 8B F5 8n.|.u..Å.âôÍ..õ
0x00000030 83 C6 10 49 74 19 38 2C 74 F6 A0 B5 07 B4 07 8B .Æ.It.8,tö.µ.´..
0x00000040 F0 AC 3C 00 74 FC BB 07 00 B4 0E CD 10 EB F2 88 ð¬<.tü»..´.Í.ëò.
0x00000050 4E 10 E8 46 00 73 2A FE 46 10 80 7E 04 0B 74 0B N.èF.s*þF..~..t.
0x00000060 80 7E 04 0C 74 05 A0 B6 07 75 D2 80 46 02 06 83 .~..t..¶.uÒ.F...
0x00000070 46 08 06 83 56 0A 00 E8 21 00 73 05 A0 B6 07 EB F...V..è!.s..¶.ë
0x00000080 BC 81 3E FE 7D 55 AA 74 0B 80 7E 10 00 74 C8 A0 ¼.>þ}Uªt..~..tÈ.
0x00000090 B7 07 EB A9 8B FC 1E 57 8B F5 CB BF 05 00 8A 56 ·.ë©.ü.W.õË¿...V
0x000000A0 00 B4 08 CD 13 72 23 8A C1 24 3F 98 8A DE 8A FC .´.Í.r#.Á$?..Þ.ü
0x000000B0 43 F7 E3 8B D1 86 D6 B1 06 D2 EE 42 F7 E2 39 56 C÷ã.Ñ.Ö±.ÒîB÷â9V
0x000000C0 0A 77 23 72 05 39 46 08 73 1C B8 01 02 BB 00 7C .w#r.9F.s.¸..».|
0x000000D0 8B 4E 02 8B 56 00 CD 13 73 51 4F 74 4E 32 E4 8A .N..V.Í.sQOtN2ä.
0x000000E0 56 00 CD 13 EB E4 8A 56 00 60 BB AA 55 B4 41 CD V.Í.ëä.V.`»ªU´AÍ
0x000000F0 13 72 36 81 FB 55 AA 75 30 F6 C1 01 74 2B 61 60 .r6.ûUªu0öÁ.t+a`
0x00000100 6A 00 6A 00 FF 76 0A FF 76 08 6A 00 68 00 7C 6A j.j..v..v.j.h.|j
0x00000110 01 6A 10 B4 42 8B F4 CD 13 61 61 73 0E 4F 74 0B .j.´B.ôÍ.aas.Ot.
0x00000120 32 E4 8A 56 00 CD 13 EB D6 61 F9 C3 49 6E 76 61 2ä.V.Í.ëÖaùÃInva
0x00000130 6C 69 64 20 70 61 72 74 69 74 69 6F 6E 20 74 61 lid partition ta
0x00000140 62 6C 65 00 45 72 72 6F 72 20 6C 6F 61 64 69 6E ble.Error loadin
0x00000150 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 g operating syst
0x00000160 65 6D 00 4D 69 73 73 69 6E 67 20 6F 70 65 72 61 em.Missing opera
0x00000170 74 69 6E 67 20 73 79 73 74 65 6D 00 00 00 00 00 ting system.....
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 2C 44 63 01 00 00 00 00 00 00 01 .....,Dc........
0x000001C0 01 00 07 FE FF FF 3F 00 00 00 74 3C 0D 03 00 00 ...þ..?...t<....
0x000001D0 C1 FF 07 FE FF FF B3 3C 0D 03 D3 70 A2 19 00 00 Á..þ..³<..Óp¢...
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª
_______MBR \Device\Harddisk1\DR1
0x00000000 33 C0 8E D0 BC 00 7C 8E C0 8E D8 BE 00 7C BF 00 3À.м.|.À.ؾ.|¿.
0x00000010 06 B9 00 02 FC F3 A4 50 68 1C 06 CB FB B9 04 00 .¹..üó¤Ph..Ëû¹..
0x00000020 BD BE 07 80 7E 00 00 7C 0B 0F 85 0E 01 83 C5 10 ½¾..~..|......Å.
0x00000030 E2 F1 CD 18 88 56 00 55 C6 46 11 05 C6 46 10 00 âñÍ..V.UÆF..ÆF..
0x00000040 B4 41 BB AA 55 CD 13 5D 72 0F 81 FB 55 AA 75 09 ´A»ªUÍ.]r..ûUªu.
0x00000050 F7 C1 01 00 74 03 FE 46 10 66 60 80 7E 10 00 74 ÷Á..t.þF.f`.~..t
0x00000060 26 66 68 00 00 00 00 66 FF 76 08 68 00 00 68 00 &fh....f.v.h..h.
0x00000070 7C 68 01 00 68 10 00 B4 42 8A 56 00 8B F4 CD 13 |h..h..´B.V..ôÍ.
0x00000080 9F 83 C4 10 9E EB 14 B8 01 02 BB 00 7C 8A 56 00 ..Ä..ë.¸..».|.V.
0x00000090 8A 76 01 8A 4E 02 8A 6E 03 CD 13 66 61 73 1C FE .v..N..n.Í.fas.þ
0x000000A0 4E 11 75 0C 80 7E 00 80 0F 84 8A 00 B2 80 EB 84 N.u..~......².ë.
0x000000B0 55 32 E4 8A 56 00 CD 13 5D EB 9E 81 3E FE 7D 55 U2ä.V.Í.]ë..>þ}U
0x000000C0 AA 75 6E FF 76 00 E8 8D 00 75 17 FA B0 D1 E6 64 ªun.v.è..u.ú°Ñæd
0x000000D0 E8 83 00 B0 DF E6 60 E8 7C 00 B0 FF E6 64 E8 75 è..°ßæ`è|.°.ædèu
0x000000E0 00 FB B8 00 BB CD 1A 66 23 C0 75 3B 66 81 FB 54 .û¸.»Í.f#Àu;f.ûT
0x000000F0 43 50 41 75 32 81 F9 02 01 72 2C 66 68 07 BB 00 CPAu2.ù..r,fh.».
0x00000100 00 66 68 00 02 00 00 66 68 08 00 00 00 66 53 66 .fh....fh....fSf
0x00000110 53 66 55 66 68 00 00 00 00 66 68 00 7C 00 00 66 SfUfh....fh.|..f
0x00000120 61 68 00 00 07 CD 1A 5A 32 F6 EA 00 7C 00 00 CD ah...Í.Z2öê.|..Í
0x00000130 18 A0 B7 07 EB 08 A0 B6 07 EB 03 A0 B5 07 32 E4 ..·.ë..¶.ë..µ.2ä
0x00000140 05 00 07 8B F0 AC 3C 00 74 09 BB 07 00 B4 0E CD ....ð¬<.t.»..´.Í
0x00000150 10 EB F2 F4 EB FD 2B C9 E4 64 EB 00 24 02 E0 F8 .ëòôëý+Éädë.$.àø
0x00000160 24 02 C3 49 6E 76 61 6C 69 64 20 70 61 72 74 69 $.ÃInvalid parti
0x00000170 74 69 6F 6E 20 74 61 62 6C 65 00 45 72 72 6F 72 tion table.Error
0x00000180 20 6C 6F 61 64 69 6E 67 20 6F 70 65 72 61 74 69 loading operati
0x00000190 6E 67 20 73 79 73 74 65 6D 00 4D 69 73 73 69 6E ng system.Missin
0x000001A0 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 g operating syst
0x000001B0 65 6D 00 00 00 63 7B 9A E3 C8 B1 BD 00 00 80 01 em...c{.ãȱ½....
0x000001C0 01 00 07 20 C8 FF 08 00 00 00 38 20 3C 03 00 00 ... È.....8 <...
0x000001D0 C1 FF 07 20 C8 FF 40 20 3C 03 F8 9F E5 06 00 00 Á.. È.@ <.ø.å...
0x000001E0 C1 FF 07 20 C8 FF 38 C0 21 0A F8 8F 7D 12 00 00 Á.. È.8À!.ø.}...
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª
_______MBR \Device\Harddisk2\DR2
0x00000000 E8 12 01 B9 F0 01 BE 10 7C BF 10 06 57 F3 A4 C3 è..¹ð.¾.|¿..Wó¤Ã
0x00000010 8B 4E 14 83 F9 0E 75 08 8D 5E 07 43 02 07 E2 FB .N..ù.u..^.C..âû
0x00000020 8C 56 0C 8C 56 0E 75 69 8A 56 10 84 D2 79 62 E8 .V..V.ui.V..Òybè
0x00000030 F6 00 BB AA 55 CD 13 72 6F 3B 5E 5C 75 6A D1 E9 ö.»ªUÍ.ro;^\ujÑé
0x00000040 73 66 B4 42 C6 46 02 01 EB 66 89 B6 F6 FE 8A 44 sf´BÆF..ëf.¶öþ.D
0x00000050 04 84 C0 74 0F 3C 05 74 0B 3C 0F 74 07 8A 14 80 ..Àt.<.t.<.t....
0x00000060 E2 80 75 CB 83 C6 10 06 C4 5C 08 89 5E 08 8C 46 â.uË.Æ..Ä\..^..F
0x00000070 0A 07 FE 8E F9 FE 75 D2 B0 31 C6 46 D7 50 88 46 ..þ.ùþuÒ°1ÆF×P.F
0x00000080 D4 BE 6A 07 AC 84 C0 74 08 B4 0E B3 07 CD 10 EB Ô¾j.¬.Àt.´.³.Í.ë
0x00000090 F3 E8 81 00 88 46 11 BE AE 07 3C 05 75 C6 CD 16 óè...F.¾®.<.uÆÍ.
0x000000A0 33 D2 89 56 08 89 56 0A E8 7D 00 72 1B B8 01 02 3Ò.V..V.è}.r.¸..
0x000000B0 BF 05 00 8B DC 56 50 50 32 E4 CD 13 58 8B F5 CD ¿...ÜVPP2äÍ.X.õÍ
0x000000C0 13 58 5E 73 03 4F 75 EB B0 32 72 B2 40 8A 66 11 .X^s.Ouë°2r²@.f.
0x000000D0 9E 7B 04 C6 47 02 0E 72 35 75 0C 88 57 40 C4 4E .{.ÆG..r5u..W@ÄN
0x000000E0 08 89 4F 1C 8C 47 1E 79 06 8A 4E 12 88 4F 25 80 ..O..G.y..N..O%.
0x000000F0 C7 02 81 7F FE 55 AA 75 85 81 7F FA CD 19 75 09 Ç...þUªu...úÍ.u.
0x00000100 C6 47 FA E9 C7 47 FB 94 88 E8 1C 00 FF E4 74 CE ÆGúéÇGû..è...ätÎ
0x00000110 88 57 24 EB C9 5D 33 C0 8E D8 8E C0 8E D0 BC 00 .W$ëÉ]3À.Ø.À.м.
0x00000120 7C 55 BD A2 07 FC FB C3 B4 08 52 06 CD 13 07 72 |U½¢.üûô.R.Í..r
0x00000130 33 33 DB 8A DE 8B 46 0A 33 D2 83 E1 3F F7 F1 91 33Û.Þ.F.3Ò.á?÷ñ.
0x00000140 97 8B 46 08 F7 F7 42 87 CA 3B DA 72 17 43 F7 F3 ..F.÷÷B.Ê;Úr.C÷ó
0x00000150 8A F2 86 C5 D1 E8 D1 E8 0A C8 D0 CC D0 CC 0A F4 .ò.ÅÑèÑè.ÈÐÌÐÌ.ô
0x00000160 84 E4 74 02 B4 41 5B 8A D3 C3 0D 0A 4D 42 52 20 .ät.´A[.ÓÃ..MBR
0x00000170 45 72 72 6F 72 20 00 0D 0A 00 72 65 73 73 20 61 Error ....ress a
0x00000180 6E 79 20 6B 65 79 20 74 6F 20 62 6F 6F 74 20 66 ny key to boot f
0x00000190 72 6F 6D 20 66 6C 6F 70 70 79 2E 2E 2E 00 00 00 rom floppy......
0x000001A0 00 00 10 00 01 00 00 7C 00 00 00 00 00 00 00 00 .......|........
0x000001B0 00 00 00 00 00 00 00 00 A6 99 A2 CE 00 00 80 01 ........¦.¢Î....
0x000001C0 01 00 07 FE FF FF 3F 00 00 00 82 59 70 74 00 00 ...þ..?....Ypt..
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª