Re: Avast mi našel rootkit, prosím o radu
Napsal: 04 lis 2013 23:50
Děkuji za další rady, bohužel mi dnes nezbyl čas na jejich provedení. Zkusím to snad zítra nebo pozítří.
Pomáháme v boji s počítačovou havěti!
https://forum.viry.cz:443/
Kód: Vybrat vše
MBRScan v1.1.1
OS : Windows 7 Service Pack 1 (64 bit)
PROCESSOR : Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
BOOT : Normal Boot
DATE : 2013/11/06 (ISO 8601) at 19:29:18
________________________________________________________________________________
DISK : Device\Harddisk0\DR0 __SAMSUNG HN-M750MBB (2AR1)
BUS_TYPE : (0x03) P-ATA
USE_PIO : NO
MAX_TRANSFER : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________
Device\Harddisk0\DR0 698.6 Go [Fixed] ==> Unknown MBR Code ==> PARTITION TABLE FAKED !!
MBR_MD5 : C5F0EAFEC406C7F0C82ACAB31114FAEF
MBR_SHA1 : C0D9C3E991C1ABD43FBE0F2F5BEA119904177E9A
Device\Harddisk0\Partition1 100.0 Mo 0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk0\Partition2 51.00 Go 0x07 NTFS / HPFS
Device\Harddisk0\Partition3 22.14 Go 0x27 RE Hidden partition
Device\Harddisk0\Partition4 625.4 Go 0x07 NTFS / HPFS
________________________________________________________________________________
############################### Additional scan ################################
DRIVER : C:\windows\system32\hal.dll => Invisible on the disk
ADDRESS : 0x02BF3000
SIZE : 292.0 Ko
DRIVER : C:\windows\system32\kdcom.dll => Invisible on the disk
ADDRESS : 0x0241B000
SIZE : 40.0 Ko
DRIVER : C:\windows\system32\mcupdate_GenuineIntel.dll => Invisible on the disk
ADDRESS : 0x00C3C000
SIZE : 316.0 Ko
DRIVER : C:\windows\system32\CLFS.SYS => Invisible on the disk
ADDRESS : 0x00C9F000
SIZE : 376.0 Ko
DRIVER : C:\windows\system32\CI.dll => Invisible on the disk
ADDRESS : 0x00CFD000
SIZE : 768.0 Ko
DRIVER : C:\windows\system32\drivers\Wdf01000.sys => Invisible on the disk
ADDRESS : 0x00EA2000
SIZE : 656.0 Ko
DRIVER : C:\windows\system32\drivers\WDFLDR.SYS => Invisible on the disk
ADDRESS : 0x00F46000
SIZE : 60.0 Ko
DRIVER : C:\windows\system32\drivers\ACPI.sys => Invisible on the disk
ADDRESS : 0x00F55000
SIZE : 348.0 Ko
DRIVER : C:\windows\system32\drivers\WMILIB.SYS => Invisible on the disk
ADDRESS : 0x00FAC000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\drivers\msisadrv.sys => Invisible on the disk
ADDRESS : 0x00FB5000
SIZE : 40.0 Ko
DRIVER : C:\windows\system32\drivers\pci.sys => Invisible on the disk
ADDRESS : 0x00FBF000
SIZE : 204.0 Ko
DRIVER : C:\windows\system32\drivers\vdrvroot.sys => Invisible on the disk
ADDRESS : 0x00FF2000
SIZE : 52.0 Ko
DRIVER : C:\windows\System32\drivers\partmgr.sys => Invisible on the disk
ADDRESS : 0x00E00000
SIZE : 84.0 Ko
DRIVER : C:\windows\system32\DRIVERS\compbatt.sys => Invisible on the disk
ADDRESS : 0x00E15000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\DRIVERS\BATTC.SYS => Invisible on the disk
ADDRESS : 0x00E1E000
SIZE : 48.0 Ko
DRIVER : C:\windows\system32\drivers\volmgr.sys => Invisible on the disk
ADDRESS : 0x00E2A000
SIZE : 84.0 Ko
DRIVER : C:\windows\System32\drivers\volmgrx.sys => Invisible on the disk
ADDRESS : 0x00E3F000
SIZE : 368.0 Ko
DRIVER : C:\windows\System32\drivers\mountmgr.sys => Invisible on the disk
ADDRESS : 0x00DBD000
SIZE : 104.0 Ko
DRIVER : C:\windows\system32\DRIVERS\iaStor.sys => Invisible on the disk
ADDRESS : 0x0107C000
SIZE : 1.33 Mo
DRIVER : C:\windows\system32\drivers\atapi.sys => Invisible on the disk
ADDRESS : 0x011D0000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\drivers\ataport.SYS => Invisible on the disk
ADDRESS : 0x01000000
SIZE : 168.0 Ko
DRIVER : C:\windows\system32\drivers\msahci.sys => Invisible on the disk
ADDRESS : 0x0102A000
SIZE : 44.0 Ko
DRIVER : C:\windows\system32\drivers\PCIIDEX.SYS => Invisible on the disk
ADDRESS : 0x01035000
SIZE : 64.0 Ko
DRIVER : C:\windows\system32\drivers\amdxata.sys => Invisible on the disk
ADDRESS : 0x01045000
SIZE : 44.0 Ko
DRIVER : C:\windows\system32\drivers\fltmgr.sys => Invisible on the disk
ADDRESS : 0x01259000
SIZE : 304.0 Ko
DRIVER : C:\windows\system32\drivers\fileinfo.sys => Invisible on the disk
ADDRESS : 0x012A5000
SIZE : 80.0 Ko
DRIVER : C:\windows\System32\Drivers\PxHlpa64.sys => Invisible on the disk
ADDRESS : 0x012B9000
SIZE : 48.0 Ko
DRIVER : C:\windows\System32\Drivers\Ntfs.sys => Invisible on the disk
ADDRESS : 0x01419000
SIZE : 1.64 Mo
DRIVER : C:\windows\System32\Drivers\msrpc.sys => Invisible on the disk
ADDRESS : 0x012C5000
SIZE : 376.0 Ko
DRIVER : C:\windows\System32\Drivers\ksecdd.sys => Invisible on the disk
ADDRESS : 0x015BC000
SIZE : 108.0 Ko
DRIVER : C:\windows\System32\Drivers\cng.sys => Invisible on the disk
ADDRESS : 0x01323000
SIZE : 456.0 Ko
DRIVER : C:\windows\System32\drivers\pcw.sys => Invisible on the disk
ADDRESS : 0x015D7000
SIZE : 68.0 Ko
DRIVER : C:\windows\System32\Drivers\Fs_Rec.sys => Invisible on the disk
ADDRESS : 0x015E8000
SIZE : 40.0 Ko
DRIVER : C:\windows\system32\drivers\ndis.sys => Invisible on the disk
ADDRESS : 0x01611000
SIZE : 972.0 Ko
DRIVER : C:\windows\system32\drivers\NETIO.SYS => Invisible on the disk
ADDRESS : 0x01704000
SIZE : 384.0 Ko
DRIVER : C:\windows\System32\Drivers\ksecpkg.sys => Invisible on the disk
ADDRESS : 0x01764000
SIZE : 172.0 Ko
DRIVER : C:\windows\System32\drivers\tcpip.sys => Invisible on the disk
ADDRESS : 0x01818000
SIZE : 2.01 Mo
DRIVER : C:\windows\System32\drivers\fwpkclnt.sys => Invisible on the disk
ADDRESS : 0x01A1B000
SIZE : 296.0 Ko
DRIVER : C:\windows\system32\drivers\volsnap.sys => Invisible on the disk
ADDRESS : 0x01A65000
SIZE : 304.0 Ko
DRIVER : C:\windows\System32\Drivers\spldr.sys => Invisible on the disk
ADDRESS : 0x01AB1000
SIZE : 32.0 Ko
DRIVER : C:\windows\System32\drivers\rdyboost.sys => Invisible on the disk
ADDRESS : 0x01AB9000
SIZE : 232.0 Ko
DRIVER : C:\windows\system32\DRIVERS\nvpciflt.sys => Invisible on the disk
ADDRESS : 0x01AF3000
SIZE : 44.0 Ko
DRIVER : C:\windows\System32\Drivers\mup.sys => Invisible on the disk
ADDRESS : 0x01AFE000
SIZE : 72.0 Ko
DRIVER : C:\windows\System32\drivers\hwpolicy.sys => Invisible on the disk
ADDRESS : 0x01B10000
SIZE : 36.0 Ko
DRIVER : C:\windows\System32\DRIVERS\fvevol.sys => Invisible on the disk
ADDRESS : 0x01B19000
SIZE : 232.0 Ko
DRIVER : C:\windows\system32\drivers\disk.sys => Invisible on the disk
ADDRESS : 0x01B53000
SIZE : 88.0 Ko
DRIVER : C:\windows\system32\drivers\CLASSPNP.SYS => Invisible on the disk
ADDRESS : 0x01B69000
SIZE : 192.0 Ko
DRIVER : C:\windows\System32\Drivers\aswVmm.sys => Invisible on the disk
ADDRESS : 0x01B99000
SIZE : 208.0 Ko
DRIVER : C:\windows\System32\Drivers\aswRvrt.sys => Invisible on the disk
ADDRESS : 0x01BCD000
SIZE : 76.0 Ko
DRIVER : C:\windows\system32\DRIVERS\cdrom.sys => Invisible on the disk
ADDRESS : 0x02D89000
SIZE : 168.0 Ko
DRIVER : C:\windows\system32\drivers\aswSnx.sys => Invisible on the disk
ADDRESS : 0x0304A000
SIZE : 1024.0 Ko
DRIVER : C:\windows\System32\Drivers\Null.SYS => Invisible on the disk
ADDRESS : 0x0314A000
SIZE : 36.0 Ko
DRIVER : C:\windows\System32\Drivers\Beep.SYS => Invisible on the disk
ADDRESS : 0x03153000
SIZE : 28.0 Ko
DRIVER : C:\windows\System32\Drivers\aswKbd.SYS => Invisible on the disk
ADDRESS : 0x0315A000
SIZE : 40.0 Ko
DRIVER : C:\windows\System32\drivers\vga.sys => Invisible on the disk
ADDRESS : 0x03164000
SIZE : 56.0 Ko
DRIVER : C:\windows\System32\drivers\VIDEOPRT.SYS => Invisible on the disk
ADDRESS : 0x03172000
SIZE : 148.0 Ko
DRIVER : C:\windows\System32\drivers\watchdog.sys => Invisible on the disk
ADDRESS : 0x03197000
SIZE : 64.0 Ko
DRIVER : C:\windows\System32\DRIVERS\RDPCDD.sys => Invisible on the disk
ADDRESS : 0x031A7000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\drivers\rdpencdd.sys => Invisible on the disk
ADDRESS : 0x031B0000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\drivers\rdprefmp.sys => Invisible on the disk
ADDRESS : 0x031B9000
SIZE : 36.0 Ko
DRIVER : C:\windows\System32\Drivers\Msfs.SYS => Invisible on the disk
ADDRESS : 0x031C2000
SIZE : 44.0 Ko
DRIVER : C:\windows\System32\Drivers\Npfs.SYS => Invisible on the disk
ADDRESS : 0x031CD000
SIZE : 68.0 Ko
DRIVER : C:\windows\system32\DRIVERS\tdx.sys => Invisible on the disk
ADDRESS : 0x031DE000
SIZE : 136.0 Ko
DRIVER : C:\windows\system32\DRIVERS\TDI.SYS => Invisible on the disk
ADDRESS : 0x03000000
SIZE : 52.0 Ko
DRIVER : C:\windows\system32\drivers\aswTdi.sys => Invisible on the disk
ADDRESS : 0x0300D000
SIZE : 76.0 Ko
DRIVER : C:\windows\system32\drivers\afd.sys => Invisible on the disk
ADDRESS : 0x034EC000
SIZE : 548.0 Ko
DRIVER : C:\windows\system32\drivers\aswRdr2.sys => Invisible on the disk
ADDRESS : 0x03575000
SIZE : 104.0 Ko
DRIVER : C:\windows\System32\DRIVERS\netbt.sys => Invisible on the disk
ADDRESS : 0x0358F000
SIZE : 276.0 Ko
DRIVER : C:\windows\system32\drivers\ws2ifsl.sys => Invisible on the disk
ADDRESS : 0x035D4000
SIZE : 44.0 Ko
DRIVER : C:\windows\system32\DRIVERS\wfplwf.sys => Invisible on the disk
ADDRESS : 0x035DF000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\DRIVERS\pacer.sys => Invisible on the disk
ADDRESS : 0x03400000
SIZE : 152.0 Ko
DRIVER : C:\windows\system32\DRIVERS\vwififlt.sys => Invisible on the disk
ADDRESS : 0x03426000
SIZE : 88.0 Ko
DRIVER : C:\windows\system32\DRIVERS\netbios.sys => Invisible on the disk
ADDRESS : 0x0343C000
SIZE : 60.0 Ko
DRIVER : C:\windows\system32\DRIVERS\wanarp.sys => Invisible on the disk
ADDRESS : 0x0344B000
SIZE : 108.0 Ko
DRIVER : C:\windows\system32\DRIVERS\termdd.sys => Invisible on the disk
ADDRESS : 0x03466000
SIZE : 80.0 Ko
DRIVER : C:\windows\system32\Drivers\SABI.sys => Invisible on the disk
ADDRESS : 0x0347A000
SIZE : 40.0 Ko
DRIVER : C:\windows\system32\DRIVERS\rdbss.sys => Invisible on the disk
ADDRESS : 0x03484000
SIZE : 324.0 Ko
DRIVER : C:\windows\system32\drivers\nsiproxy.sys => Invisible on the disk
ADDRESS : 0x034D5000
SIZE : 48.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mssmbios.sys => Invisible on the disk
ADDRESS : 0x034E1000
SIZE : 44.0 Ko
DRIVER : C:\windows\System32\drivers\discache.sys => Invisible on the disk
ADDRESS : 0x035E8000
SIZE : 60.0 Ko
DRIVER : C:\windows\System32\Drivers\dfsc.sys => Invisible on the disk
ADDRESS : 0x03020000
SIZE : 120.0 Ko
DRIVER : C:\windows\system32\DRIVERS\blbdrive.sys => Invisible on the disk
ADDRESS : 0x02DB3000
SIZE : 68.0 Ko
DRIVER : C:\windows\system32\drivers\aswSP.sys => Invisible on the disk
ADDRESS : 0x0178F000
SIZE : 420.0 Ko
DRIVER : C:\windows\system32\DRIVERS\tunnel.sys => Invisible on the disk
ADDRESS : 0x02DC4000
SIZE : 152.0 Ko
DRIVER : C:\windows\system32\DRIVERS\nvlddmkm.sys => Invisible on the disk
ADDRESS : 0x03EB6000
SIZE : 10.96 Mo
DRIVER : C:\windows\System32\drivers\dxgkrnl.sys => Invisible on the disk
ADDRESS : 0x03667000
SIZE : 976.0 Ko
DRIVER : C:\windows\System32\drivers\dxgmms1.sys => Invisible on the disk
ADDRESS : 0x0375B000
SIZE : 280.0 Ko
DRIVER : C:\windows\system32\DRIVERS\igdkmd64.sys => Invisible on the disk
ADDRESS : 0x04A2F000
SIZE : 11.74 Mo
DRIVER : C:\windows\system32\DRIVERS\HECIx64.sys => Invisible on the disk
ADDRESS : 0x055ED000
SIZE : 68.0 Ko
DRIVER : C:\windows\system32\DRIVERS\HDAudBus.sys => Invisible on the disk
ADDRESS : 0x04A00000
SIZE : 144.0 Ko
DRIVER : C:\windows\system32\DRIVERS\CmBatt.sys => Invisible on the disk
ADDRESS : 0x04A24000
SIZE : 20.0 Ko
DRIVER : C:\windows\system32\DRIVERS\i8042prt.sys => Invisible on the disk
ADDRESS : 0x037A1000
SIZE : 120.0 Ko
DRIVER : C:\windows\system32\DRIVERS\kbdclass.sys => Invisible on the disk
ADDRESS : 0x037BF000
SIZE : 60.0 Ko
DRIVER : C:\windows\system32\DRIVERS\ETD.sys => Invisible on the disk
ADDRESS : 0x037CE000
SIZE : 192.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mouclass.sys => Invisible on the disk
ADDRESS : 0x03600000
SIZE : 60.0 Ko
DRIVER : C:\windows\system32\DRIVERS\intelppm.sys => Invisible on the disk
ADDRESS : 0x0360F000
SIZE : 88.0 Ko
DRIVER : C:\windows\system32\DRIVERS\CompositeBus.sys => Invisible on the disk
ADDRESS : 0x03625000
SIZE : 64.0 Ko
DRIVER : C:\windows\system32\DRIVERS\clwvd.sys => Invisible on the disk
ADDRESS : 0x04A29000
SIZE : 24.0 Ko
DRIVER : C:\windows\system32\DRIVERS\ks.sys => Invisible on the disk
ADDRESS : 0x049AD000
SIZE : 268.0 Ko
DRIVER : C:\windows\system32\drivers\ksthunk.sys => Invisible on the disk
ADDRESS : 0x03635000
SIZE : 24.0 Ko
DRIVER : C:\windows\system32\DRIVERS\AgileVpn.sys => Invisible on the disk
ADDRESS : 0x0363B000
SIZE : 88.0 Ko
DRIVER : C:\windows\system32\DRIVERS\rasl2tp.sys => Invisible on the disk
ADDRESS : 0x03E00000
SIZE : 144.0 Ko
DRIVER : C:\windows\system32\DRIVERS\ndistapi.sys => Invisible on the disk
ADDRESS : 0x03651000
SIZE : 48.0 Ko
DRIVER : C:\windows\system32\DRIVERS\ndiswan.sys => Invisible on the disk
ADDRESS : 0x03E24000
SIZE : 188.0 Ko
DRIVER : C:\windows\system32\DRIVERS\raspppoe.sys => Invisible on the disk
ADDRESS : 0x03E53000
SIZE : 108.0 Ko
DRIVER : C:\windows\system32\DRIVERS\raspptp.sys => Invisible on the disk
ADDRESS : 0x03E6E000
SIZE : 132.0 Ko
DRIVER : C:\windows\system32\DRIVERS\rassstp.sys => Invisible on the disk
ADDRESS : 0x03E8F000
SIZE : 104.0 Ko
DRIVER : C:\windows\system32\DRIVERS\swenum.sys => Invisible on the disk
ADDRESS : 0x055FE000
SIZE : 8.0 Ko
DRIVER : C:\windows\system32\DRIVERS\SGdrv64.sys => Invisible on the disk
ADDRESS : 0x0365D000
SIZE : 32.0 Ko
DRIVER : C:\windows\system32\DRIVERS\umbus.sys => Invisible on the disk
ADDRESS : 0x02DEA000
SIZE : 72.0 Ko
DRIVER : C:\windows\System32\Drivers\NDProxy.SYS => Invisible on the disk
ADDRESS : 0x02C00000
SIZE : 84.0 Ko
DRIVER : C:\windows\system32\drivers\RTKVHD64.sys => Invisible on the disk
ADDRESS : 0x0381E000
SIZE : 2.78 Mo
DRIVER : C:\windows\system32\drivers\portcls.sys => Invisible on the disk
ADDRESS : 0x03AE5000
SIZE : 244.0 Ko
DRIVER : C:\windows\system32\drivers\drmk.sys => Invisible on the disk
ADDRESS : 0x03B22000
SIZE : 136.0 Ko
DRIVER : C:\windows\system32\DRIVERS\IntcDAud.sys => Invisible on the disk
ADDRESS : 0x03B44000
SIZE : 332.0 Ko
DRIVER : C:\windows\System32\Drivers\crashdmp.sys => Invisible on the disk
ADDRESS : 0x03B97000
SIZE : 56.0 Ko
DRIVER : C:\windows\System32\win32k.sys => Invisible on the disk
ADDRESS : 0x00030000
SIZE : 3.08 Mo
DRIVER : C:\windows\System32\drivers\Dxapi.sys => Invisible on the disk
ADDRESS : 0x03BB8000
SIZE : 48.0 Ko
DRIVER : C:\windows\system32\DRIVERS\monitor.sys => Invisible on the disk
ADDRESS : 0x03BC4000
SIZE : 56.0 Ko
DRIVER : C:\windows\System32\TSDDD.dll => Invisible on the disk
ADDRESS : 0x00550000
SIZE : 40.0 Ko
DRIVER : C:\windows\System32\cdd.dll => Invisible on the disk
ADDRESS : 0x00700000
SIZE : 156.0 Ko
DRIVER : C:\windows\system32\drivers\luafv.sys => Invisible on the disk
ADDRESS : 0x03BD2000
SIZE : 140.0 Ko
DRIVER : C:\windows\system32\drivers\aswMonFlt.sys => Invisible on the disk
ADDRESS : 0x01395000
SIZE : 180.0 Ko
DRIVER : C:\windows\system32\drivers\aswFsBlk.sys => Invisible on the disk
ADDRESS : 0x03800000
SIZE : 48.0 Ko
DRIVER : C:\windows\system32\drivers\WudfPf.sys => Invisible on the disk
ADDRESS : 0x013C2000
SIZE : 132.0 Ko
DRIVER : C:\windows\system32\DRIVERS\lltdio.sys => Invisible on the disk
ADDRESS : 0x02D69000
SIZE : 84.0 Ko
DRIVER : C:\windows\system32\DRIVERS\nwifi.sys => Invisible on the disk
ADDRESS : 0x01200000
SIZE : 332.0 Ko
DRIVER : C:\windows\system32\DRIVERS\ndisuio.sys => Invisible on the disk
ADDRESS : 0x01800000
SIZE : 76.0 Ko
DRIVER : C:\windows\system32\DRIVERS\rspndr.sys => Invisible on the disk
ADDRESS : 0x01BE0000
SIZE : 96.0 Ko
DRIVER : C:\windows\system32\drivers\HTTP.sys => Invisible on the disk
ADDRESS : 0x174EE000
SIZE : 804.0 Ko
DRIVER : C:\windows\system32\DRIVERS\bowser.sys => Invisible on the disk
ADDRESS : 0x175B7000
SIZE : 120.0 Ko
DRIVER : C:\windows\System32\drivers\mpsdrv.sys => Invisible on the disk
ADDRESS : 0x175D5000
SIZE : 96.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mrxsmb.sys => Invisible on the disk
ADDRESS : 0x17400000
SIZE : 180.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mrxsmb10.sys => Invisible on the disk
ADDRESS : 0x1742D000
SIZE : 312.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mrxsmb20.sys => Invisible on the disk
ADDRESS : 0x1747B000
SIZE : 144.0 Ko
DRIVER : C:\windows\system32\drivers\aksdf.sys => Invisible on the disk
ADDRESS : 0x1749F000
SIZE : 80.0 Ko
DRIVER : C:\windows\System32\Drivers\fastfat.SYS => Invisible on the disk
ADDRESS : 0x174B3000
SIZE : 216.0 Ko
DRIVER : C:\windows\system32\drivers\aksfridge.sys => Invisible on the disk
ADDRESS : 0x01050000
SIZE : 132.0 Ko
DRIVER : C:\windows\system32\drivers\hardlock.sys => Invisible on the disk
ADDRESS : 0x17A82000
SIZE : 316.0 Ko
DRIVER : C:\windows\system32\drivers\peauth.sys => Invisible on the disk
ADDRESS : 0x17AD1000
SIZE : 664.0 Ko
DRIVER : C:\windows\System32\Drivers\secdrv.SYS => Invisible on the disk
ADDRESS : 0x17B77000
SIZE : 44.0 Ko
DRIVER : C:\windows\System32\DRIVERS\srvnet.sys => Invisible on the disk
ADDRESS : 0x17B82000
SIZE : 196.0 Ko
DRIVER : C:\windows\System32\drivers\tcpipreg.sys => Invisible on the disk
ADDRESS : 0x17BB3000
SIZE : 72.0 Ko
DRIVER : C:\windows\system32\DRIVERS\Rt64win7.sys => Invisible on the disk
ADDRESS : 0x17A00000
SIZE : 468.0 Ko
DRIVER : C:\windows\system32\drivers\usbehci.sys => Invisible on the disk
ADDRESS : 0x17BC5000
SIZE : 68.0 Ko
DRIVER : C:\windows\system32\drivers\USBPORT.SYS => Invisible on the disk
ADDRESS : 0x1921D000
SIZE : 344.0 Ko
DRIVER : C:\windows\system32\DRIVERS\usbhub.sys => Invisible on the disk
ADDRESS : 0x19273000
SIZE : 360.0 Ko
DRIVER : C:\windows\system32\DRIVERS\hidusb.sys => Invisible on the disk
ADDRESS : 0x192CD000
SIZE : 56.0 Ko
DRIVER : C:\windows\system32\DRIVERS\HIDCLASS.SYS => Invisible on the disk
ADDRESS : 0x192DB000
SIZE : 100.0 Ko
DRIVER : C:\windows\system32\DRIVERS\HIDPARSE.SYS => Invisible on the disk
ADDRESS : 0x192F4000
SIZE : 36.0 Ko
DRIVER : C:\windows\system32\DRIVERS\USBD.SYS => Invisible on the disk
ADDRESS : 0x192FD000
SIZE : 8.0 Ko
DRIVER : C:\windows\system32\DRIVERS\mouhid.sys => Invisible on the disk
ADDRESS : 0x192FF000
SIZE : 52.0 Ko
DRIVER : C:\windows\System32\DRIVERS\srv2.sys => Invisible on the disk
ADDRESS : 0x19376000
SIZE : 420.0 Ko
DRIVER : C:\windows\System32\DRIVERS\srv.sys => Invisible on the disk
ADDRESS : 0x1995F000
SIZE : 608.0 Ko
DRIVER : C:\windows\system32\DRIVERS\usbccgp.sys => Invisible on the disk
ADDRESS : 0x19800000
SIZE : 116.0 Ko
DRIVER : C:\windows\System32\Drivers\usbvideo.sys => Invisible on the disk
ADDRESS : 0x19879000
SIZE : 184.0 Ko
DRIVER : C:\windows\system32\DRIVERS\NETwNs64.sys => Invisible on the disk
ADDRESS : 0x1B8AE000
SIZE : 11.21 Mo
DRIVER : C:\windows\system32\DRIVERS\vwifibus.sys => Invisible on the disk
ADDRESS : 0x1C3E4000
SIZE : 52.0 Ko
DRIVER : C:\windows\system32\DRIVERS\vwifimp.sys => Invisible on the disk
ADDRESS : 0x1C3F1000
SIZE : 40.0 Ko
DRIVER : C:\windows\System32\smss.exe => Invisible on the disk
ADDRESS : 0x479F0000
SIZE : 128.0 Ko
SystemStartOptions : NOEXECUTE=OPTIN
________________________________________________________________________________
_____FAKED \Device\Harddisk0\DR0
0x00000000 50 41 53 53 00 00 00 00 00 00 00 00 00 00 00 00 PASS............
0x00000010 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000020 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000030 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000040 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000050 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000060 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000070 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000080 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000090 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000B0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000C0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000100 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000110 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000120 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000130 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000140 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000150 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000160 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000170 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001C0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
__ORIGINAL \Device\Harddisk0\DR0
0x00000000 33 C0 8E D8 8E C0 8E D0 BC 00 7C 8B F4 BF 00 06 3À.Ø.À.м.|.ô¿..
0x00000010 B9 00 01 FC F3 A5 EA 1B 00 60 00 0E 1F 06 E8 95 ¹..üó¥ê..`....è.
0x00000020 00 07 80 3E 97 01 01 74 75 80 3E 97 01 02 74 00 ...>...tu.>...t.
0x00000030 C6 06 94 01 00 E8 04 01 BE BE 01 B3 04 F6 04 80 Æ....è..¾¾.³.ö..
0x00000040 75 0F 83 C6 10 FE CB 75 F4 CD 18 BE 5D 01 E8 FC u..Æ.þËuôÍ.¾].èü
0x00000050 00 BB 00 7C 06 53 50 55 8B EC C7 46 02 00 00 5D .».|.SPU.ìÇF...]
0x00000060 50 55 8B EC C7 46 02 00 00 5D FF 74 0A FF 74 08 PU.ìÇF...].t..t.
0x00000070 06 53 50 55 8B EC C7 46 02 01 00 5D 50 55 8B EC .SPU.ìÇF...]PU.ì
0x00000080 C7 46 02 10 00 5D 16 1F 8B F4 B4 42 CD 13 83 C4 ÇF...]...ô´BÍ..Ä
0x00000090 10 EB 00 CB C6 06 95 01 00 E8 A0 00 EB 00 BB 00 .ë.ËÆ....è..ë.».
0x000000A0 7C 06 53 B8 01 02 B5 00 B1 05 B6 00 B2 80 CD 13 |.S¸..µ.±.¶.².Í.
0x000000B0 C6 06 94 01 01 CB B8 00 F0 8E C0 33 C0 8B F0 BB Æ....˸.ð.À3À.ð»
0x000000C0 FF FF 26 81 3C 53 77 74 08 83 C6 01 4B 75 F3 EB ..&.<Swt..Æ.Kuóë
0x000000D0 1A 26 81 7C 02 53 6D 74 02 EB EE 26 81 7C 04 69 .&.|.Smt.ëî&.|.i
0x000000E0 40 74 02 EB E4 83 C6 06 E8 01 00 C3 1E 57 26 8B @t.ëä.Æ.è..Ã.W&.
0x000000F0 14 26 8A 44 03 EE 26 8B 44 07 8E D8 26 8B 44 05 .&.D.î&.D..Ø&.D.
0x00000100 8B F8 C7 05 43 58 C7 45 02 5C 00 26 8A 44 02 EE .øÇ.CXÇE.\.&.D.î
0x00000110 B1 02 8A 65 05 80 FC FF 74 13 80 FC 80 76 0E C7 ±..e..ü.t..ü.v.Ç
0x00000120 45 02 5D 00 80 EC 80 88 65 05 EE B1 01 26 8B 14 E.]..ì..e.î±.&..
0x00000130 26 8A 44 04 EE 5F 1F 88 0E 97 01 C3 BB 00 06 B8 &.D.î_.....û..¸
0x00000140 01 03 B5 00 B1 01 B6 00 B2 80 CD 13 C3 AC 3C 00 ..µ.±.¶.².Í.ì<.
0x00000150 74 0A B4 0E B7 00 B3 07 CD 10 EB F1 C3 4D 69 73 t.´.·.³.Í.ëñÃMis
0x00000160 73 69 6E 67 20 6F 70 65 72 61 74 69 6E 67 20 73 sing operating s
0x00000170 79 73 74 65 6D 00 00 00 00 00 00 00 00 00 00 00 ystem...........
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 46 44 53 54 00 00 3E 02 00 27 00 00 BC 0A 8D 7E FDST..>..'..¼..~
0x000001A0 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 g operating syst
0x000001B0 65 6D 00 00 00 63 7B 9A 00 B0 42 C7 00 00 80 20 em...c{..°BÇ...
0x000001C0 21 00 07 DF 13 0C 00 08 00 00 00 20 03 00 00 03 !..ß....... ....
0x000001D0 14 CD 07 0F FF FF 00 28 03 00 00 00 60 06 00 0F .Í.....(....`...
0x000001E0 FF FF 0F 0F FF FF 00 28 63 06 00 D0 2C 4E 00 0F .......(c..Ð,N..
0x000001F0 FF FF 27 0F FF FF 00 F8 8F 54 00 68 C4 02 55 AA ..'....ø.T.hÄ.Uª
__________________________16_BIT_ASM_CODE
0x0000 50 PUSH AX
0x0001 41 INC CX
0x0002 53 PUSH BX
0x0003 53 PUSH BX
0x0004 0000 ADD [BX+SI], AL
0x0006 0000 ADD [BX+SI], AL
0x0008 0000 ADD [BX+SI], AL
0x000A 0000 ADD [BX+SI], AL
0x000C 0000 ADD [BX+SI], AL
0x000E 0000 ADD [BX+SI], AL
0x0010 0000 ADD [BX+SI], AL
0x0012 0000 ADD [BX+SI], AL
0x0014 0000 ADD [BX+SI], AL
0x0016 0000 ADD [BX+SI], AL
0x0018 0000 ADD [BX+SI], AL
0x001A 0000 ADD [BX+SI], AL
0x001C 0000 ADD [BX+SI], AL
0x001E 0000 ADD [BX+SI], AL
0x0020 0000 ADD [BX+SI], AL
0x0022 0000 ADD [BX+SI], AL
0x0024 0000 ADD [BX+SI], AL
0x0026 0000 ADD [BX+SI], AL
0x0028 0000 ADD [BX+SI], AL
0x002A 0000 ADD [BX+SI], AL
0x002C 0000 ADD [BX+SI], AL
0x002E 0000 ADD [BX+SI], AL
0x0030 0000 ADD [BX+SI], AL
0x0032 0000 ADD [BX+SI], AL
0x0034 0000 ADD [BX+SI], AL
0x0036 0000 ADD [BX+SI], AL
0x0038 0000 ADD [BX+SI], AL
0x003A 0000 ADD [BX+SI], AL
0x003C 0000 ADD [BX+SI], AL
0x003E 0000 ADD [BX+SI], AL
0x0040 0000 ADD [BX+SI], AL
0x0042 0000 ADD [BX+SI], AL
0x0044 0000 ADD [BX+SI], AL
0x0046 0000 ADD [BX+SI], AL
0x0048 0000 ADD [BX+SI], AL
0x004A 0000 ADD [BX+SI], AL
0x004C 0000 ADD [BX+SI], AL
0x004E 0000 ADD [BX+SI], AL
0x0050 0000 ADD [BX+SI], AL
0x0052 0000 ADD [BX+SI], AL
0x0054 0000 ADD [BX+SI], AL
0x0056 0000 ADD [BX+SI], AL
0x0058 0000 ADD [BX+SI], AL
0x005A 0000 ADD [BX+SI], AL
0x005C 0000 ADD [BX+SI], AL
0x005E 0000 ADD [BX+SI], AL
0x0060 0000 ADD [BX+SI], AL
0x0062 0000 ADD [BX+SI], AL
0x0064 0000 ADD [BX+SI], AL
0x0066 0000 ADD [BX+SI], AL
0x0068 0000 ADD [BX+SI], AL
0x006A 0000 ADD [BX+SI], AL
0x006C 0000 ADD [BX+SI], AL
0x006E 0000 ADD [BX+SI], AL
0x0070 0000 ADD [BX+SI], AL
0x0072 0000 ADD [BX+SI], AL
0x0074 0000 ADD [BX+SI], AL
0x0076 0000 ADD [BX+SI], AL
0x0078 0000 ADD [BX+SI], AL
0x007A 0000 ADD [BX+SI], AL
0x007C 0000 ADD [BX+SI], AL
0x007E 0000 ADD [BX+SI], AL
0x0080 0000 ADD [BX+SI], AL
0x0082 0000 ADD [BX+SI], AL
0x0084 0000 ADD [BX+SI], AL
0x0086 0000 ADD [BX+SI], AL
0x0088 0000 ADD [BX+SI], AL
0x008A 0000 ADD [BX+SI], AL
0x008C 0000 ADD [BX+SI], AL
0x008E 0000 ADD [BX+SI], AL
0x0090 0000 ADD [BX+SI], AL
0x0092 0000 ADD [BX+SI], AL
0x0094 0000 ADD [BX+SI], AL
0x0096 0000 ADD [BX+SI], AL
0x0098 0000 ADD [BX+SI], AL
0x009A 0000 ADD [BX+SI], AL
0x009C 0000 ADD [BX+SI], AL
0x009E 0000 ADD [BX+SI], AL
0x00A0 0000 ADD [BX+SI], AL
0x00A2 0000 ADD [BX+SI], AL
0x00A4 0000 ADD [BX+SI], AL
0x00A6 0000 ADD [BX+SI], AL
0x00A8 0000 ADD [BX+SI], AL
0x00AA 0000 ADD [BX+SI], AL
0x00AC 0000 ADD [BX+SI], AL
0x00AE 0000 ADD [BX+SI], AL
0x00B0 0000 ADD [BX+SI], AL
0x00B2 0000 ADD [BX+SI], AL
0x00B4 0000 ADD [BX+SI], AL
0x00B6 0000 ADD [BX+SI], AL
0x00B8 0000 ADD [BX+SI], AL
0x00BA 0000 ADD [BX+SI], AL
0x00BC 0000 ADD [BX+SI], AL
0x00BE 0000 ADD [BX+SI], AL
0x00C0 0000 ADD [BX+SI], AL
0x00C2 0000 ADD [BX+SI], AL
0x00C4 0000 ADD [BX+SI], AL
0x00C6 0000 ADD [BX+SI], AL
0x00C8 0000 ADD [BX+SI], AL
0x00CA 0000 ADD [BX+SI], AL
0x00CC 0000 ADD [BX+SI], AL
0x00CE 0000 ADD [BX+SI], AL
0x00D0 0000 ADD [BX+SI], AL
0x00D2 0000 ADD [BX+SI], AL
0x00D4 0000 ADD [BX+SI], AL
0x00D6 0000 ADD [BX+SI], AL
0x00D8 0000 ADD [BX+SI], AL
0x00DA 0000 ADD [BX+SI], AL
0x00DC 0000 ADD [BX+SI], AL
0x00DE 0000 ADD [BX+SI], AL
0x00E0 0000 ADD [BX+SI], AL
0x00E2 0000 ADD [BX+SI], AL
0x00E4 0000 ADD [BX+SI], AL
0x00E6 0000 ADD [BX+SI], AL
0x00E8 0000 ADD [BX+SI], AL
0x00EA 0000 ADD [BX+SI], AL
0x00EC 0000 ADD [BX+SI], AL
0x00EE 0000 ADD [BX+SI], AL
0x00F0 0000 ADD [BX+SI], AL
0x00F2 0000 ADD [BX+SI], AL
0x00F4 0000 ADD [BX+SI], AL
0x00F6 0000 ADD [BX+SI], AL
0x00F8 0000 ADD [BX+SI], AL
0x00FA 0000 ADD [BX+SI], AL
0x00FC 0000 ADD [BX+SI], AL
0x00FE 0000 ADD [BX+SI], AL
0x0100 0000 ADD [BX+SI], AL
0x0102 0000 ADD [BX+SI], AL
0x0104 0000 ADD [BX+SI], AL
0x0106 0000 ADD [BX+SI], AL
0x0108 0000 ADD [BX+SI], AL
0x010A 0000 ADD [BX+SI], AL
0x010C 0000 ADD [BX+SI], AL
0x010E 0000 ADD [BX+SI], AL
0x0110 0000 ADD [BX+SI], AL
0x0112 0000 ADD [BX+SI], AL
0x0114 0000 ADD [BX+SI], AL
0x0116 0000 ADD [BX+SI], AL
0x0118 0000 ADD [BX+SI], AL
0x011A 0000 ADD [BX+SI], AL
0x011C 0000 ADD [BX+SI], AL
0x011E 0000 ADD [BX+SI], AL
0x0120 0000 ADD [BX+SI], AL
0x0122 0000 ADD [BX+SI], AL
0x0124 0000 ADD [BX+SI], AL
0x0126 0000 ADD [BX+SI], AL
0x0128 0000 ADD [BX+SI], AL
0x012A 0000 ADD [BX+SI], AL
0x012C 0000 ADD [BX+SI], AL
0x012E 0000 ADD [BX+SI], AL
0x0130 0000 ADD [BX+SI], AL
0x0132 0000 ADD [BX+SI], AL
0x0134 0000 ADD [BX+SI], AL
0x0136 0000 ADD [BX+SI], AL
0x0138 0000 ADD [BX+SI], AL
0x013A 0000 ADD [BX+SI], AL
0x013C 0000 ADD [BX+SI], AL
0x013E 0000 ADD [BX+SI], AL
0x0140 0000 ADD [BX+SI], AL
0x0142 0000 ADD [BX+SI], AL
0x0144 0000 ADD [BX+SI], AL
0x0146 0000 ADD [BX+SI], AL
0x0148 0000 ADD [BX+SI], AL
0x014A 0000 ADD [BX+SI], AL
0x014C 0000 ADD [BX+SI], AL
0x014E 0000 ADD [BX+SI], AL
0x0150 0000 ADD [BX+SI], AL
0x0152 0000 ADD [BX+SI], AL
0x0154 0000 ADD [BX+SI], AL
0x0156 0000 ADD [BX+SI], AL
0x0158 0000 ADD [BX+SI], AL
0x015A 0000 ADD [BX+SI], AL
0x015C 0000 ADD [BX+SI], AL
0x015E 0000 ADD [BX+SI], AL
0x0160 0000 ADD [BX+SI], AL
0x0162 0000 ADD [BX+SI], AL
0x0164 0000 ADD [BX+SI], AL
0x0166 0000 ADD [BX+SI], AL
0x0168 0000 ADD [BX+SI], AL
0x016A 0000 ADD [BX+SI], AL
0x016C 0000 ADD [BX+SI], AL
0x016E 0000 ADD [BX+SI], AL
0x0170 0000 ADD [BX+SI], AL
0x0172 0000 ADD [BX+SI], AL
0x0174 0000 ADD [BX+SI], AL
0x0176 0000 ADD [BX+SI], AL
0x0178 0000 ADD [BX+SI], AL
0x017A 0000 ADD [BX+SI], AL
0x017C 0000 ADD [BX+SI], AL
0x017E 0000 ADD [BX+SI], AL
0x0180 0000 ADD [BX+SI], AL
0x0182 0000 ADD [BX+SI], AL
0x0184 0000 ADD [BX+SI], AL
0x0186 0000 ADD [BX+SI], AL
0x0188 0000 ADD [BX+SI], AL
0x018A 0000 ADD [BX+SI], AL
0x018C 0000 ADD [BX+SI], AL
0x018E 0000 ADD [BX+SI], AL
0x0190 0000 ADD [BX+SI], AL
0x0192 0000 ADD [BX+SI], AL
0x0194 0000 ADD [BX+SI], AL
0x0196 0000 ADD [BX+SI], AL
0x0198 0000 ADD [BX+SI], AL
0x019A 0000 ADD [BX+SI], AL
0x019C 0000 ADD [BX+SI], AL
0x019E 0000 ADD [BX+SI], AL
0x01A0 0000 ADD [BX+SI], AL
0x01A2 0000 ADD [BX+SI], AL
0x01A4 0000 ADD [BX+SI], AL
0x01A6 0000 ADD [BX+SI], AL
0x01A8 0000 ADD [BX+SI], AL
0x01AA 0000 ADD [BX+SI], AL
0x01AC 0000 ADD [BX+SI], AL
0x01AE 0000 ADD [BX+SI], AL
0x01B0 0000 ADD [BX+SI], AL
0x01B2 0000 ADD [BX+SI], AL
0x01B4 0000 ADD [BX+SI], AL
0x01B6 0000 ADD [BX+SI], AL
0x01B8 0000 ADD [BX+SI], AL
0x01BA 0000 ADD [BX+SI], AL
0x01BC 0000 ADD [BX+SI], AL
0x01BE 0000 ADD [BX+SI], AL
0x01C0 0000 ADD [BX+SI], AL
0x01C2 0000 ADD [BX+SI], AL
0x01C4 0000 ADD [BX+SI], AL
0x01C6 0000 ADD [BX+SI], AL
0x01C8 0000 ADD [BX+SI], AL
0x01CA 0000 ADD [BX+SI], AL
0x01CC 0000 ADD [BX+SI], AL
0x01CE 0000 ADD [BX+SI], AL
0x01D0 0000 ADD [BX+SI], AL
0x01D2 0000 ADD [BX+SI], AL
0x01D4 0000 ADD [BX+SI], AL
0x01D6 0000 ADD [BX+SI], AL
0x01D8 0000 ADD [BX+SI], AL
0x01DA 0000 ADD [BX+SI], AL
0x01DC 0000 ADD [BX+SI], AL
0x01DE 0000 ADD [BX+SI], AL
0x01E0 0000 ADD [BX+SI], AL
0x01E2 0000 ADD [BX+SI], AL
0x01E4 0000 ADD [BX+SI], AL
0x01E6 0000 ADD [BX+SI], AL
0x01E8 0000 ADD [BX+SI], AL
0x01EA 0000 ADD [BX+SI], AL
0x01EC 0000 ADD [BX+SI], AL
0x01EE 0000 ADD [BX+SI], AL
0x01F0 0000 ADD [BX+SI], AL
0x01F2 0000 ADD [BX+SI], AL
0x01F4 0000 ADD [BX+SI], AL
0x01F6 0000 ADD [BX+SI], AL
0x01F8 0000 ADD [BX+SI], AL
0x01FA 0000 ADD [BX+SI], AL
0x01FC 0000 ADD [BX+SI], AL
0x01FE 0000 ADD [BX+SI], AL