Malwarebytes Anti-Rootkit BETA 1.07.0.1012
www.malwarebytes.orgDatabase version: v2014.07.05.01
Windows 8 x64 NTFS
Internet Explorer 10.0.9200.16921
Saajuk :: BRANDON [administrator]
7/4/2014 8:10:11 PM
mbar-log-2014-07-04 (20-10-11).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 302565
Time elapsed: 5 minute(s), 53 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end)
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1012
(c) Malwarebytes Corporation 2011-2012
OS version: 6.2.9200 Windows 8 x64
Account is Administrative
Internet Explorer version: 10.0.9200.16921
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.395000 GHz
Memory total: 17124581376, free: 12550864896
Downloaded database version: v2014.07.05.01
Downloaded database version: v2014.07.03.01
Initializing...
======================
Done!
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
This drive is a GPT Drive.
MBR Signature: 55AA
Disk Signature: 71EF1326
GPT Protective MBR Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 4294967295
Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
GPT Partition information:
GPT Header Signature 4546492050415254
GPT Header Revision 65536 Size 92 CRC 3229271709
GPT Header CurrentLba = 1 BackupLba 31277231
GPT Header FirstUsableLba 34 LastUsableLba 31277198
GPT Header Guid e0eeb463-fd43-4001-853e-4b8d6a66bc
GPT Header Contains 128 partition entries starting at LBA 2
GPT Header Partition entry size = 128
Backup GPT header Signature 4546492050415254
Backup GPT header Revision 65536 Size 92 CRC 3229271709
Backup GPT header CurrentLba = 31277231 BackupLba 1
Backup GPT header FirstUsableLba 34 LastUsableLba 31277198
Backup GPT header Guid e0eeb463-fd43-4001-853e-4b8d6a66bc
Backup GPT header Contains 128 partition entries starting at LBA 31277199
Backup GPT header Partition entry size = 128
Partition 0 Type b8cb5058-c187-4719-baf0-379ca2d4c97e
Partition ID 4613ee39-4727-4347-8134-173f59f716f
FirstLBA 2048 Last LBA 31277055
Attributes 0
Partition Name HFS
Disk Size: 16013942784 bytes
Sector size: 512 bytes
Done!
Drive 1
This is a System drive
Scanning MBR on drive 1...
Inspecting partition table:
This drive is a GPT Drive.
MBR Signature: 55AA
Disk Signature: 71EF1321
GPT Protective MBR Partition information:
Partition 0 type is EFI-GPT (0xee)
Partition is NOT ACTIVE.
Partition starts at LBA: 1 Numsec = 4294967295
Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0
GPT Partition information:
GPT Header Signature 4546492050415254
GPT Header Revision 65536 Size 92 CRC 3898779921
GPT Header CurrentLba = 1 BackupLba 1953525167
GPT Header FirstUsableLba 34 LastUsableLba 1953525134
GPT Header Guid 184c91d7-d3a3-45db-b786-a0fac0e21f24
GPT Header Contains 128 partition entries starting at LBA 2
GPT Header Partition entry size = 128
Backup GPT header Signature 4546492050415254
Backup GPT header Revision 65536 Size 92 CRC 3898779921
Backup GPT header CurrentLba = 1953525167 BackupLba 1
Backup GPT header FirstUsableLba 34 LastUsableLba 1953525134
Backup GPT header Guid 184c91d7-d3a3-45db-b786-a0fac0e21f24
Backup GPT header Contains 128 partition entries starting at LBA 1953525135
Backup GPT header Partition entry size = 128
Partition 0 Type de94bba4-6d1-4d40-a16a-bfd5179d6ac
Partition ID cbe3da1f-b208-48c1-96b3-c9f9ab6fd9
FirstLBA 2048 Last LBA 2050047
Attributes 1
Partition Name Basic data partition
Partition 1 Type c12a7328-f81f-11d2-ba4b-0a0c93ec93b
Partition ID 82f163a2-19a4-4e84-96de-11b585a3827
FirstLBA 2050048 Last LBA 2582527
Attributes 1
Partition Name EFI system partition
GPT Partition 1 is bootable
Partition 2 Type bfbfafe7-a34f-448a-9a5b-6213eb736c22
Partition ID c1fdc808-1453-4f83-8538-8cd3756f07e
FirstLBA 2582528 Last LBA 4630527
Attributes 1
Partition Name Basic data partition
Partition 3 Type e3c9e316-b5c-4db8-817d-f92df0215ae
Partition ID 7ebc3f13-1bdf-452e-b2f9-588badc52c90
FirstLBA 4630528 Last LBA 4892671
Attributes 0
Partition Name Microsoft reserved partition
Partition 4 Type ebd0a0a2-b9e5-4433-87c0-68b6b72699c7
Partition ID 94e59173-8fe-42dd-ada-216313c8b3f
FirstLBA 4892672 Last LBA 1858435071
Attributes 0
Partition Name Basic data partition
Partition 5 Type de94bba4-6d1-4d40-a16a-bfd5179d6ac
Partition ID 324f21a9-f404-4ba4-a71e-84ce91dc7ce8
FirstLBA 1858435072 Last LBA 1859151871
Attributes 1
Partition Name
Partition 6 Type ebd0a0a2-b9e5-4433-87c0-68b6b72699c7
Partition ID 9d47d1a9-9e3c-41b3-80c7-6e0ec87ca27
FirstLBA 1859151872 Last LBA 1911580671
Attributes 0
Partition Name Basic data partition
Partition 7 Type de94bba4-6d1-4d40-a16a-bfd5179d6ac
Partition ID 44d418e8-ac48-4638-8765-e71736232abf
FirstLBA 1911580672 Last LBA 1953523711
Attributes 1
Partition Name Basic data partition
Disk Size: 1000204886016 bytes
Sector size: 512 bytes
Done!
Scan finished
=======================================
Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-1-r.mbam...
Removal finished