Jump to content

got malware with win8.1


Recommended Posts

MiniToolBox by Farbar  Version: 17-06-2016
Ran by user (administrator) on 25-12-2017 at 10:22:58
Running from "D:\"
Microsoft Windows 8.1 Pro  (X64)
Model: Inspiron 3551 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/25/2017 10:18:44 AM) (Source: Application Error) (User: )
Description: Faulting application name: WerFault.exe, version: 6.3.9600.17415, time stamp: 0x54503815
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54504b0d
Exception code: 0xc0000142
Fault offset: 0x000a36e5
Faulting process id: 0xdb8
Faulting application start time: 0xWerFault.exe0
Faulting application path: WerFault.exe1
Faulting module path: WerFault.exe2
Report Id: WerFault.exe3
Faulting package full name: WerFault.exe4
Faulting package-relative application ID: WerFault.exe5

Error: (12/25/2017 10:18:44 AM) (Source: Application Error) (User: )
Description: Faulting application name: mbamtray.exe, version: 3.0.0.1284, time stamp: 0x5a15a98e
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54504b0d
Exception code: 0xc0000142
Fault offset: 0x000a36e5
Faulting process id: 0xf38
Faulting application start time: 0xmbamtray.exe0
Faulting application path: mbamtray.exe1
Faulting module path: mbamtray.exe2
Report Id: mbamtray.exe3
Faulting package full name: mbamtray.exe4
Faulting package-relative application ID: mbamtray.exe5

Error: (12/25/2017 10:18:38 AM) (Source: Software Protection Platform Service) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007007B
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (12/25/2017 10:18:32 AM) (Source: Software Protection Platform Service) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007007B
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (12/25/2017 09:48:41 AM) (Source: Software Protection Platform Service) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007007B
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=TimerEvent

Error: (12/25/2017 09:47:55 AM) (Source: Software Protection Platform Service) (User: )
Description: Installation of the Proof of Purchase failed. 0xC004F069
Partial Pkey=MKKG7
ACID=?
Detailed Error[?]

Error: (12/25/2017 09:47:17 AM) (Source: Software Protection Platform Service) (User: )
Description: Acquisition of End User License failed. hr=0xC004C003
Sku Id=9e473b6d-b591-4c46-9c44-90a865f22e76

Error: (12/25/2017 09:47:17 AM) (Source: Software Protection Platform Service) (User: )
Description: License acquisition failure details. 
hr=0xC004C003

Error: (12/25/2017 09:46:48 AM) (Source: Software Protection Platform Service) (User: )
Description: Acquisition of End User License failed. hr=0xC004C003
Sku Id=9e473b6d-b591-4c46-9c44-90a865f22e76

Error: (12/25/2017 09:46:48 AM) (Source: Software Protection Platform Service) (User: )
Description: License acquisition failure details. 
hr=0xC004C003


System errors:
=============
Error: (12/25/2017 10:12:59 AM) (Source: Service Control Manager) (User: )
Description: The Windows Update service did not shut down properly after receiving a preshutdown control.

Error: (12/24/2017 02:19:40 PM) (Source: Service Control Manager) (User: )
Description: The HomeGroup Listener service terminated with the following service-specific error: 
%%2148007941 = Server execution failed


Error: (12/24/2017 02:18:55 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 2:04:22 PM on ‎12/‎24/‎2017 was unexpected.

Error: (12/24/2017 01:59:58 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{9E175B68-F52A-11D8-B9A5-505054503030}

Error: (12/24/2017 01:16:45 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (12/24/2017 01:16:45 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (12/24/2017 01:10:39 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (12/24/2017 01:10:39 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (12/24/2017 01:10:39 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (12/24/2017 01:10:39 PM) (Source: DCOM) (User: User-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}


Microsoft Office Sessions:
=========================
Error: (12/25/2017 10:18:44 AM) (Source: Application Error)(User: )
Description: WerFault.exe6.3.9600.1741554503815KERNELBASE.dll6.3.9600.1741554504b0dc0000142000a36e5db801d37dacca64318fC:\Windows\SysWOW64\WerFault.exeKERNELBASE.dll0a615176-e9a0-11e7-8256-606dc780feb8

Error: (12/25/2017 10:18:44 AM) (Source: Application Error)(User: )
Description: mbamtray.exe3.0.0.12845a15a98eKERNELBASE.dll6.3.9600.1741554504b0dc0000142000a36e5f3801d37dacc685e501C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exeKERNELBASE.dll0a31a1d5-e9a0-11e7-8256-606dc780feb8

Error: (12/25/2017 10:18:38 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0x8007007BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (12/25/2017 10:18:32 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0x8007007BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (12/25/2017 09:48:41 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0x8007007BRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=TimerEvent

Error: (12/25/2017 09:47:55 AM) (Source: Software Protection Platform Service)(User: )
Description: 0xC004F069MKKG7??

Error: (12/25/2017 09:47:17 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C0039e473b6d-b591-4c46-9c44-90a865f22e76

Error: (12/25/2017 09:47:17 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C00300010001(0x00000000, 09:47:15:323 - https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail)
00020001(0x00000000, 09:47:15:327)
00030001(0x00000000, 09:47:15:331 - https://activation-v2.sls.microsoft.com)
00030002(0x00000000, 09:47:15:331 - 0)
00040001(0x00000000, 09:47:15:331 - https://activation-v2.sls.microsoft.com)
00040002(0x00000000, 09:47:15:335 - 1, <NULL>, <NULL>, <NULL>)
00050002(0x80072F94, 09:47:15:339 - 0, 1)
00040006(0x00000001, 09:47:15:339 - 0, https://activation-v2.sls.microsoft.com, <N/A>, <N/A>)
00020005(0x00000000, 09:47:15:339 - 0)
0002000C(0x00000000, 09:47:17:787 - 500)
00010002(0x8004FC01, 09:47:17:787 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---&gt; Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 09:47:17:795)

Error: (12/25/2017 09:46:48 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C0039e473b6d-b591-4c46-9c44-90a865f22e76

Error: (12/25/2017 09:46:48 AM) (Source: Software Protection Platform Service)(User: )
Description: hr=0xC004C00300010001(0x00000000, 09:46:43:627 - https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail)
00020001(0x00000000, 09:46:43:651)
00030001(0x00000000, 09:46:43:651 - https://activation-v2.sls.microsoft.com)
00030002(0x00000000, 09:46:43:651 - 0)
00040001(0x00000000, 09:46:43:651 - https://activation-v2.sls.microsoft.com)
00040002(0x00000000, 09:46:43:659 - 1, <NULL>, <NULL>, <NULL>)
00050002(0x80072F94, 09:46:43:659 - 0, 1)
00040006(0x00000001, 09:46:43:659 - 0, https://activation-v2.sls.microsoft.com, <N/A>, <N/A>)
00020005(0x00000000, 09:46:43:659 - 0)
0002000C(0x00000000, 09:46:48:707 - 500)
00010002(0x8004FC01, 09:46:48:707 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---&gt; Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 09:46:48:750)


=========================== Installed Programs ============================

7-Zip 17.01 beta (HKLM-x32\...\7-Zip) (Version: 17.01 beta - Igor Pavlov)
Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1064 - Intel Corporation)
Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Opera Stable 49.0.2725.64 (HKLM-x32\...\Opera 49.0.2725.64) (Version: 49.0.2725.64 - Opera Software)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 10.0.1.13 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39060 - Realtek Semiconductor Corp.)
Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 4.0.11 - Tweaking.com)
Windows Driver Package - Dell Inc (DellRbtn) HIDClass  (06/26/2013 1.4.1) (HKLM\...\F83757BC3DFF5684ED21F4FD63A2BBB0B9F79953) (Version: 06/26/2013 1.4.1 - Dell Inc)

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 49%
Total physical RAM: 3978.71 MB
Available physical RAM: 2001.48 MB
Total Virtual: 5386.71 MB
Available Virtual: 3082.18 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:97.56 GB) (Free:49.38 GB) NTFS
2 Drive d: () (Fixed) (Total:195.31 GB) (Free:182.27 GB) NTFS
3 Drive e: () (Fixed) (Total:172.79 GB) (Free:169.52 GB) NTFS

========================= Users: ========================================

User accounts for \\USER-PC

Administrator            Guest                    user                     


**** End of log ****
 

Link to post
Share on other sites

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread.

Thanks

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.