MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows Information: (build 9200), 64-bit Base Board Manufacturer: Foxconn BIOS Manufacturer: AMI System Manufacturer: Hewlett-Packard System Product Name: p6-2350ed Logical Drives Mask: 0x0000003c Kernel Drivers (total 164): 0x90A02000 \SystemRoot\system32\ntoskrnl.exe 0x9118B000 \SystemRoot\system32\hal.dll 0x8FFAD000 \SystemRoot\system32\kd.dll 0x2A88D000 \SystemRoot\system32\mcupdate_GenuineIntel.dll 0x2A8F3000 \SystemRoot\System32\drivers\werkernel.sys 0x2A901000 \SystemRoot\System32\drivers\CLFS.SYS 0x2A962000 \SystemRoot\System32\drivers\tm.sys 0x2A984000 \SystemRoot\system32\PSHED.dll 0x2A999000 \SystemRoot\system32\BOOTVID.dll 0x2A800000 \SystemRoot\system32\CI.dll 0x2A9A3000 \SystemRoot\System32\drivers\msrpc.sys 0x2AA59000 \SystemRoot\system32\drivers\Wdf01000.sys 0x2AB28000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x2AB39000 \SystemRoot\System32\Drivers\acpiex.sys 0x2AB51000 \SystemRoot\System32\Drivers\WppRecorder.sys 0x2AB5C000 \SystemRoot\System32\drivers\ACPI.sys 0x2ABE6000 \SystemRoot\System32\drivers\WMILIB.SYS 0x2ACFF000 \SystemRoot\System32\Drivers\cng.sys 0x2AD94000 \SystemRoot\System32\drivers\msisadrv.sys 0x2AD9E000 \SystemRoot\System32\drivers\pci.sys 0x2ADE6000 \SystemRoot\System32\drivers\vdrvroot.sys 0x2AC00000 \SystemRoot\system32\drivers\pdc.sys 0x2AC1C000 \SystemRoot\System32\drivers\partmgr.sys 0x2AC34000 \SystemRoot\System32\drivers\spaceport.sys 0x2AC9D000 \SystemRoot\System32\drivers\volmgr.sys 0x2AE83000 \SystemRoot\System32\drivers\volmgrx.sys 0x2AEE2000 \SystemRoot\System32\drivers\mountmgr.sys 0x2AEFD000 \SystemRoot\System32\drivers\storahci.sys 0x2AF1A000 \SystemRoot\System32\drivers\storport.sys 0x2AF93000 \SystemRoot\system32\drivers\fltmgr.sys 0x2AE00000 \SystemRoot\system32\drivers\NISx64\1506000.020\SYMDS64.SYS 0x2ACB2000 \SystemRoot\System32\drivers\fileinfo.sys 0x2ACC8000 \SystemRoot\System32\Drivers\Wof.sys 0x2AA00000 \SystemRoot\system32\drivers\WdFilter.sys 0x2B028000 \SystemRoot\system32\drivers\NISx64\1506000.020\SYMEFA64.SYS 0x2B271000 \SystemRoot\System32\Drivers\Ntfs.sys 0x2B467000 \SystemRoot\System32\Drivers\ksecdd.sys 0x2B483000 \SystemRoot\System32\drivers\pcw.sys 0x2B493000 \SystemRoot\System32\Drivers\Fs_Rec.sys 0x2B49E000 \SystemRoot\system32\drivers\ndis.sys 0x2B147000 \SystemRoot\system32\drivers\NETIO.SYS 0x2B5B6000 \SystemRoot\System32\Drivers\ksecpkg.sys 0x2B6C8000 \SystemRoot\System32\drivers\tcpip.sys 0x2B93A000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x2B9A6000 \SystemRoot\system32\DRIVERS\wfplwfs.sys 0x2B600000 \SystemRoot\System32\DRIVERS\fvevol.sys 0x2B200000 \SystemRoot\System32\drivers\volsnap.sys 0x2BAD1000 \SystemRoot\System32\drivers\rdyboost.sys 0x2BB17000 \SystemRoot\System32\Drivers\mup.sys 0x2BB2E000 \SystemRoot\System32\drivers\intelpep.sys 0x2BB49000 \SystemRoot\System32\drivers\disk.sys 0x2BB65000 \SystemRoot\System32\drivers\CLASSPNP.SYS 0x2BBBA000 \SystemRoot\System32\Drivers\crashdmp.sys 0x2BA16000 \SystemRoot\System32\drivers\cdrom.sys 0x2BA44000 \SystemRoot\system32\drivers\NISx64\1506000.020\ccSetx64.sys 0x2BA70000 \SystemRoot\system32\drivers\NISx64\1506000.020\Ironx64.SYS 0x2BAB3000 \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix64.sys 0x2BAC2000 \SystemRoot\System32\Drivers\Null.SYS 0x2BB3D000 \SystemRoot\System32\Drivers\Beep.SYS 0x2B695000 \SystemRoot\System32\drivers\BasicRender.sys 0x2BE30000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x2BFB1000 \SystemRoot\System32\drivers\watchdog.sys 0x2C05A000 \SystemRoot\System32\drivers\dxgmms1.sys 0x2C0BB000 \SystemRoot\System32\drivers\BasicDisplay.sys 0x2C0CD000 \SystemRoot\System32\Drivers\Npfs.SYS 0x2C0E1000 \SystemRoot\System32\Drivers\Msfs.SYS 0x2C0ED000 \SystemRoot\system32\DRIVERS\tdx.sys 0x2C10D000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x2C11B000 \SystemRoot\System32\DRIVERS\netbt.sys 0x2C167000 \SystemRoot\system32\drivers\afd.sys 0x2C000000 \SystemRoot\system32\DRIVERS\pacer.sys 0x2C02A000 \SystemRoot\system32\DRIVERS\vwififlt.sys 0x2C042000 \SystemRoot\system32\DRIVERS\netbios.sys 0x2C20D000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x2C27D000 \SystemRoot\System32\Drivers\NISx64\1506000.020\SYMNETS.SYS 0x2C313000 \??\C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS 0x2C34B000 \SystemRoot\system32\drivers\NISx64\1506000.020\SRTSPX64.SYS 0x2C360000 \SystemRoot\system32\drivers\nsiproxy.sys 0x2C36E000 \SystemRoot\System32\drivers\npsvctrig.sys 0x2C37A000 \SystemRoot\System32\drivers\mssmbios.sys 0x2C4E8000 \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys 0x2C562000 \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 0x2C588000 \SystemRoot\System32\Drivers\dfsc.sys 0x2C612000 \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20141016.001\BHDrvx64.sys 0x2C799000 \SystemRoot\system32\DRIVERS\ahcache.sys 0x2C7B0000 \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2util64.sys 0x2C7BA000 \??\C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys 0x2C7C4000 \SystemRoot\System32\drivers\CompositeBus.sys 0x2C7D3000 \SystemRoot\system32\DRIVERS\kdnic.sys 0x2C7DE000 \SystemRoot\System32\drivers\umbus.sys 0x2C894000 \SystemRoot\system32\DRIVERS\atikmpag.sys 0x2CA21000 \SystemRoot\system32\DRIVERS\atikmdag.sys 0x2D667000 \SystemRoot\System32\drivers\HDAudBus.sys 0x2D680000 \SystemRoot\System32\drivers\HECIx64.sys 0x2D691000 \SystemRoot\System32\Drivers\fastfat.SYS 0x2D6CA000 \SystemRoot\System32\drivers\usbehci.sys 0x2D6E2000 \SystemRoot\System32\drivers\USBPORT.SYS 0x2D751000 \SystemRoot\System32\drivers\USBXHCI.SYS 0x2D7A6000 \SystemRoot\System32\drivers\ucx01000.sys 0x2D824000 \SystemRoot\system32\DRIVERS\netr28x.sys 0x2DA88000 \SystemRoot\System32\drivers\vwifibus.sys 0x2DA95000 \SystemRoot\system32\DRIVERS\Rt630x64.sys 0x2DB29000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys 0x2DB30000 \SystemRoot\System32\drivers\intelppm.sys 0x2DB4E000 \SystemRoot\System32\drivers\NdisVirtualBus.sys 0x2DB59000 \SystemRoot\System32\drivers\swenum.sys 0x2DB5B000 \SystemRoot\System32\drivers\ks.sys 0x2DBA9000 \SystemRoot\System32\drivers\rdpbus.sys 0x2C932000 \SystemRoot\System32\drivers\usbhub.sys 0x2DBB4000 \SystemRoot\System32\drivers\USBD.SYS 0x2C800000 \SystemRoot\System32\drivers\UsbHub3.sys 0x2C386000 \SystemRoot\system32\drivers\HdAudio.sys 0x2C99C000 \SystemRoot\system32\drivers\portcls.sys 0x2DBC0000 \SystemRoot\system32\drivers\drmk.sys 0x2DBDC000 \SystemRoot\system32\drivers\ksthunk.sys 0x2D7D8000 \SystemRoot\System32\drivers\usbccgp.sys 0x2DBE2000 \SystemRoot\System32\drivers\hidusb.sys 0x2D800000 \SystemRoot\System32\drivers\HIDCLASS.SYS 0x2DBF0000 \SystemRoot\System32\drivers\HIDPARSE.SYS 0x2CA00000 \SystemRoot\System32\drivers\kbdhid.sys 0x2CA0E000 \SystemRoot\System32\drivers\kbdclass.sys 0x2C9E3000 \SystemRoot\System32\drivers\mouhid.sys 0x2C9F0000 \SystemRoot\System32\drivers\mouclass.sys 0x0002C000 \SystemRoot\System32\win32k.sys 0x2C5AE000 \SystemRoot\system32\DRIVERS\udfs.sys 0x2C400000 \SystemRoot\System32\drivers\USBSTOR.SYS 0x2C878000 \SystemRoot\System32\Drivers\dump_diskdump.sys 0x2C426000 \SystemRoot\System32\Drivers\dump_storahci.sys 0x2BFC3000 \SystemRoot\System32\Drivers\dump_dumpfve.sys 0x2C884000 \SystemRoot\System32\drivers\monitor.sys 0x0070A000 \SystemRoot\System32\TSDDD.dll 0x00A82000 \SystemRoot\System32\ATMFD.DLL 0x2BFD9000 \SystemRoot\system32\drivers\luafv.sys 0x2C7EF000 \SystemRoot\system32\DRIVERS\mfmonitor_x64.sys 0x2C3EC000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x2E0FD000 \SystemRoot\system32\DRIVERS\nwifi.sys 0x2E171000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0x2E185000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x2E19D000 \SystemRoot\system32\DRIVERS\vwifimp.sys 0x2E000000 \SystemRoot\system32\drivers\HTTP.sys 0x2E1AC000 \SystemRoot\system32\DRIVERS\bowser.sys 0x2E1CC000 \SystemRoot\System32\drivers\mpsdrv.sys 0x2E25D000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0x2E2C9000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0x2E302000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0x2E34D000 \SystemRoot\system32\drivers\Ndu.sys 0x2E62E000 \SystemRoot\system32\drivers\peauth.sys 0x2E6D7000 \SystemRoot\System32\Drivers\secdrv.SYS 0x2E6E2000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x2E725000 \SystemRoot\System32\drivers\tcpipreg.sys 0x2E737000 \SystemRoot\System32\DRIVERS\srv2.sys 0x2E36A000 \SystemRoot\System32\DRIVERS\srv.sys 0x2E600000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x2E7E3000 \??\C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys 0x2E200000 \??\C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys 0x2E215000 \SystemRoot\System32\drivers\condrv.sys 0x2E225000 \??\C:\Users\Robin\AppData\Local\Temp\aswMBR.sys 0x2B1BF000 \??\C:\Users\Robin\AppData\Local\Temp\aswVmm.sys 0x2E7F4000 \SystemRoot\System32\drivers\rdpvideominiport.sys 0x00805000 \SystemRoot\System32\cdd.dll 0x2E4D6000 \SystemRoot\System32\Drivers\NISx64\1506000.020\SRTSP64.SYS 0x2E8E4000 \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20141024.018\EX64.SYS 0x2EAF2000 \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20141024.018\ENG64.SYS 0x2EB15000 \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20141024.001\IDSvia64.sys Processes (total 71): 0 System Idle Process 4 System 400 C:\Windows\System32\smss.exe 508 csrss.exe 596 C:\Windows\System32\wininit.exe 668 C:\Windows\System32\services.exe 704 C:\Windows\System32\lsass.exe 808 C:\Windows\System32\svchost.exe 856 C:\Windows\System32\svchost.exe 932 C:\Windows\System32\atiesrxx.exe 1004 C:\Windows\System32\svchost.exe 412 C:\Windows\System32\svchost.exe 496 C:\Windows\System32\svchost.exe 448 C:\Windows\System32\svchost.exe 616 C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe 1200 C:\Windows\System32\svchost.exe 1388 C:\Windows\System32\spoolsv.exe 1420 C:\Windows\System32\svchost.exe 1572 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 1592 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 1640 C:\Program Files\Bonjour\mDNSResponder.exe 1676 C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe 1736 C:\Users\Robin\AppData\Local\MEDIAF~1\MFUSNM~1.EXE 1752 dasHost.exe 1816 C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe 1904 C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe 2416 C:\Windows\System32\SearchIndexer.exe 2592 C:\Windows\System32\svchost.exe 2844 C:\Windows\System32\svchost.exe 2908 taskhost.exe 4728 C:\Program Files\iPod\bin\iPodService.exe 2172 csrss.exe 4172 C:\Windows\System32\winlogon.exe 2780 dwm.exe 1880 C:\Windows\System32\atieclxx.exe 3112 C:\Windows\System32\taskhostex.exe 5076 C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe 2008 C:\Windows\explorer.exe 3472 C:\Windows\System32\SkyDrive.exe 696 C:\Windows\System32\SearchProtocolHost.exe 3144 C:\Windows\System32\RuntimeBroker.exe 1868 C:\Windows\System32\SettingSyncHost.exe 1212 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_watch.exe 3564 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_hub.exe 3392 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_interface.exe 4928 C:\Users\Robin\AppData\Local\MediaFire Desktop\MediaFire Desktop.exe 1124 C:\Windows\System32\conhost.exe 4676 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_filetransfer.exe 5012 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_browser.exe 92 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_central_control.exe 3724 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_monitor.exe 4132 C:\Windows\System32\conhost.exe 4472 C:\Windows\System32\conhost.exe 1664 C:\Windows\System32\conhost.exe 3912 C:\Windows\System32\conhost.exe 3136 C:\Windows\System32\conhost.exe 3620 C:\Program Files (x86)\iTunes\iTunesHelper.exe 3572 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 4764 C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe 2392 C:\Users\Robin\AppData\Local\MediaFire Desktop\mf_dialogs.exe 2436 C:\Windows\System32\taskeng.exe 2988 C:\Windows\System32\audiodg.exe 5528 WmiPrvSE.exe 2024 C:\Program Files (x86)\Mozilla Firefox\firefox.exe 5592 C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe 5616 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe 1184 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe 4160 C:\Windows\System32\SearchFilterHost.exe 848 C:\Users\Robin\Desktop\MBRCheck.exe 5468 C:\Windows\System32\conhost.exe 3260 C:\Windows\System32\dllhost.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`5e800000 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x000000e6`2a700000 (NTFS) PhysicalDrive0 Model Number: WDCWD10EZEX-60ZF5A0, Rev: 80.00A80 Size Device Name MBR Status -------------------------------------------- 931 GB \\.\PhysicalDrive0 Unknown MBR code SHA1: 639AC5CDF8A5CF3245975932C6A4215450A7B98F Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Done!