Backed up disk ready to go.
.
DDS (Ver_2011-06-23.01) - FAT32x86
Internet Explorer: 6.0.2800.1106
Run by Administrator at 10:35:59 on 2011-07-31
Microsoft Windows 2000 Professional 5.0.2195.4.1252.1.1033.18.2047.1145 [GMT -5:00]
.
.
============== Running Processes ===============
.
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Adaptec\Adaptec Storage Manager\StorServ.exe
C:\WINNT\system32\bgsvcgen.exe
C:\WINNT\system32\hidserv.exe
C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\IoctlSvc.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINNT\system32\stisvc.exe
C:\Program Files\UPHClean\uphclean.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\Program Files\MegaRAID Storage Manager\Framework\VivaldiFramework.exe
C:\Program Files\MegaRAID Storage Manager\JRE\bin\javaw.exe
C:\Program Files\MegaRAID Storage Manager\MegaMonitor\mrmonitor.exe
C:\WINNT\Explorer.EXE
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Joystick 2 Mouse 3\Joystick 2 Mouse.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINNT\system32\UMonit2k.exe
C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
C:\Program Files\ASUS\AI Suite\AiGear3\CpuPowerMonitor.exe
C:\WINNT\system32\rundll32.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\WINNT\system32\RUNDLL32.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINNT\system32\VNICMon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\MegaRAID Storage Manager\MegaPopup\Popup.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Ralink\Common\RaUI.exe
C:\Palm\HOTSYNC.EXE
C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Mozilla Firefox\firefox.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: {089fd14d-132b-48fc-8861-0048ae113215} - c:\program files\siteadvisor\6261\SiteAdv.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: McAfee Phishing Filter: {27b4851a-3207-45a2-b947-be8afe6163ab} - c:\progra~1\mcafee\msk\mskapbho.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: McAfee SiteAdvisor: {0bf43445-2f28-4351-9252-17fe6e806aa0} - c:\program files\siteadvisor\6261\SiteAdv.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
EB: Media Band: {32683183-48a0-441b-a342-7c2a440a9478} - %SystemRoot%\system32\browseui.dll
uRun: [SpybotSD TeaTimer] "c:\program files\spybot - search & destroy\TeaTimer.exe"
uRun: [SUPERAntiSpyware] "c:\program files\superantispyware\SUPERAntiSpyware.exe"
uRun: [Steam] "c:\program files\steam\Steam.exe" -silent
mRun: [Synchronization Manager] "mobsync.exe" /logon
mRun: [nwiz] "nwiz.exe" /install
mRun: [OpwareSE2] "c:\program files\scansoft\omnipagese2.0\OpwareSE2.exe"
mRun: [Joystick 2 Mouse] "c:\program files\joystick 2 mouse 3\Joystick 2 Mouse.exe" /NoConfigure
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [Gene USB Monitor] c:\winnt\system32\UMonit2k.exe
mRun: [SiteAdvisor] "c:\program files\siteadvisor\6261\SiteAdv.exe"
mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [Ai Nap] "c:\program files\asus\ai suite\ainap\AiNap.exe"
mRun: [CPU Power Monitor] "c:\program files\asus\ai suite\aigear3\CpuPowerMonitor.exe"
mRun: [Cpu Level Up help] "c:\program files\asus\ai suite\CpuLevelUpHelp.exe"
mRun: [McENUI] "c:\progra~1\mcafee\mhn\McENUI.exe" /hide
mRun: [NBKeyScan] "c:\program files\nero\nero8\nero backitup\NBKeyScan.exe"
mRun: [NvCplDaemon] "RUNDLL32.EXE" c:\winnt\system32\NvCpl.dll,NvStartup
mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe"
mRun: [LogitechCommunicationsManager] "c:\program files\common files\logishrd\lcommgr\Communications_Helper.exe"
mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam10\QuickCam10.exe" /hide
mRun: [NvMediaCenter] "RUNDLL32.EXE" c:\winnt\system32\NvMcTray.dll,NvTaskbarInit
mRun: [SoundMAXPnP] "c:\program files\analog devices\core\smax4pnp.exe"
mRun: [NIC Monitor] VNICMon.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Popup] "c:\program files\megaraid storage manager\megapopup\Popup.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SpySweeper] c:\program files\webroot\spy sweeper\SpySweeperUI.exe /startintray
dRunOnce: [^SetupICWDesktop] c:\program files\internet explorer\connection wizard\icwconn1.exe /desktop
StartupFolder: c:\docume~1\admini~1\startm~1\programs\startup\hotsyn~1.lnk - c:\palm\HOTSYNC.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\office~1.lnk - c:\program files\microsoft office\office\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\FINDFAST.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\pictur~1.lnk - c:\program files\sony corporation\picture package\picture package applications\Residence.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\pictur~2.lnk - c:\program files\sony corporation\picture package\picture package menu\SonyTray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\deskto~1.lnk - c:\program files\research in motion\blackberry\DesktopMgr.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
IE: {c95fe080-8f5d-11d2-a20b-00aa003c157a} - %SystemRoot%\web\related.htm
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
Trusted Zone: turbotax.com
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.0/srl_bin/sysreqlab3.cab
DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - hxxp://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - hxxp://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,23/mcgdmgr.cab
DPF: {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_03-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
TCP: DhcpNameServer = 192.168.0.1 68.94.156.1
TCP: Interfaces\{3BC38F2A-AE7E-44B6-9B9F-4E4C11CE54DF} : DhcpNameServer = 192.168.0.1
TCP: Interfaces\{5BE9F13F-2890-4AFD-8B1F-634972A3B468} : DhcpNameServer = 192.168.0.1 68.94.156.1
TCP: Interfaces\{7369500E-9F18-4D0D-A201-4E8A827D8D61} : DhcpNameServer = 192.168.0.1 68.94.156.1
TCP: Interfaces\{B3F953B8-7302-4D0A-97D8-D742FD7AC7AD} : DhcpNameServer = 192.168.0.1
Handler: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - c:\program files\siteadvisor\6261\SiteAdv.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
Notify: WRNotifier - WRLogonNTF.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\tozlwhf0.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aacsas;Adaptec SAS/SATA-II RAID Miniport Driver;c:\winnt\system32\drivers\aacsas.sys [2008-4-3 83839]
R0 hotcore2;hotcore2;c:\winnt\system32\drivers\hotcore2.sys [2008-8-5 30808]
R0 Lbd;Lbd;c:\winnt\system32\drivers\Lbd.sys [2009-9-4 64160]
R0 megasas;megasas;c:\winnt\system32\drivers\megasas.sys [2010-2-23 19968]
R0 Pnp680;SiI 680 ATA Controller;c:\winnt\system32\drivers\pnp680.sys [2009-4-20 37031]
R1 mfehidk;McAfee Inc. mfehidk;c:\winnt\system32\drivers\mfehidk.sys [2006-12-21 214664]
R1 NmPar;MosChip PCI Parallel Port;c:\winnt\system32\drivers\NmPar.sys [2006-10-11 76416]
R1 nmserial;MosChip PCI Serial Port;c:\winnt\system32\drivers\NmSerial.sys [2006-10-12 60032]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\SASDIFSV.SYS [2009-9-15 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-9-15 67656]
R2 DriverX;DriverX;c:\winnt\system32\drivers\Driverx.sys [2001-6-11 52512]
R2 io.sys;IO.DLL Driver;c:\winnt\system32\drivers\io.sys [2008-7-30 5152]
R2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2010-2-5 712048]
R2 ioloSystemService;iolo System Service;c:\program files\iolo\common\lib\ioloServiceManager.exe [2010-2-5 712048]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-7-3 1029456]
R2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2009-10-20 359952]
R2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2009-10-22 144704]
R2 Scutum50;Scutum50 NDIS Protocol Driver;c:\winnt\system32\drivers\Scutum50.sys [2011-4-18 19072]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2009-1-7 24652]
R2 WebrootSpySweeperService;Webroot Spy Sweeper Engine;c:\program files\webroot\spy sweeper\SpySweeper.exe [2008-4-15 3572592]
R3 AmbFilt;AmbFilt;c:\winnt\system32\drivers\Ambfilt.sys [2009-4-21 1683712]
R3 DLKRTS;D-Link DFE-530TX+ PCI Adapter;c:\winnt\system32\drivers\DLKRTS.SYS [2009-4-21 25434]
R3 FIXUSTOR;FIXUSTOR;c:\winnt\system32\drivers\fixustor.sys [2007-11-30 12672]
R3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2009-10-22 606736]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\winnt\system32\drivers\mfeavfk.sys [2006-12-21 79816]
R3 mfebopk;McAfee Inc. mfebopk;c:\winnt\system32\drivers\mfebopk.sys [2006-12-21 35272]
R3 mfesmfk;McAfee Inc. mfesmfk;c:\winnt\system32\drivers\mfesmfk.sys [2006-12-21 40552]
R3 usbhub20;USB 2.0 Root Hub Support;c:\winnt\system32\drivers\usbhub20.sys [2009-4-20 49776]
R3 yukonw2k;NDIS5 Miniport Driver for Marvell Yukon Ethernet Controller;c:\winnt\system32\drivers\yk50x86.sys [2008-12-9 296320]
S1 CypressUsbDev;Cypress USB Devices;c:\winnt\system32\drivers\CyUsbGen.sys [2006-2-16 14356]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2009-11-23 135664]
S2 RalinkRegistryWriter;Ralink Registry Writer;c:\program files\ralink\common\RaRegistry.exe [2011-4-18 185632]
S3 Asushwio;Asushwio;\??\d:\bin\asushwio.sys --> d:\bin\Asushwio.sys [?]
S3 mferkdk;McAfee Inc. mferkdk;c:\winnt\system32\drivers\mferkdk.sys [2006-12-21 34248]
S3 PhilCam8116_2K;Logitech QuickCam Pro 3000(PID_08B1);c:\winnt\system32\drivers\CamDrL20.sys [2005-3-21 236121]
S3 rt2870;Ralink 802.11n USB Wireless LAN Card Driver;c:\winnt\system32\drivers\rt2870.sys [2011-4-18 917760]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-9-15 12872]
S3 USA19H;USA19H;c:\winnt\system32\drivers\USA19H2k.sys [2008-9-18 704000]
S3 USA19H2KP;Keyspan USB Serial Port Driver;c:\winnt\system32\drivers\USA19H2kp.sys [2008-9-18 24192]
S3 UStor;Lexar RW018;c:\winnt\system32\drivers\UStor.sys [2006-11-26 25246]
S3 USTOR2K;Genesys USB Mass Storage Windows Driver;c:\winnt\system32\drivers\ustor2k.sys [2006-12-24 21248]
S3 VNICPKT5;VNICPKT5 Protocol Driver;c:\winnt\system32\VNICPKT5.sys [2009-4-28 16066]
S3 XilinxFirmwareLoader;XilinxFirmwareLoader;c:\winnt\system32\drivers\xusbdfwu.sys [2009-4-21 17280]
S3 XilinxFirmwarePusb2Loader;XilinxFirmwarePusb2Loader;c:\winnt\system32\drivers\xusb_xp2.sys [2009-4-21 17920]
S4 viafilter;VIA USB Filter;c:\winnt\system32\drivers\viausb.sys [2005-3-23 9038]
S4 viasraid;viasraid;c:\winnt\system32\drivers\viasraid.sys [2004-11-5 78988]
.
=============== Created Last 30 ================
.
2011-07-30 16:40:54 -------- d-----w- C:\FOUND.015
2011-07-29 20:24:49 98816 ----a-w- c:\winnt\sed.exe
2011-07-29 20:24:49 518144 ----a-w- c:\winnt\SWREG.exe
2011-07-29 20:24:49 256000 ----a-w- c:\winnt\PEV.exe
2011-07-29 20:24:49 208896 ----a-w- c:\winnt\MBR.exe
2011-07-29 17:23:10 1407280 ----a-w- C:\TADA.com
2011-07-29 00:15:42 -------- d-----w- C:\FOUND.014
2011-07-01 20:33:41 21872 ----a-w- c:\winnt\system32\drivers\usbprint.sys
2011-07-01 20:33:41 21872 ----a-w- c:\winnt\system32\dllcache\usbprint.sys
2011-07-01 19:59:10 -------- d-----w- c:\winnt\system32\appmgmt
.
==================== Find3M ====================
.
2011-07-31 15:28:40 256 ----a-w- c:\winnt\system32\pool.bin
2011-05-29 14:11:30 39984 ----a-w- c:\winnt\system32\drivers\mbamswissarmy.sys
2011-05-29 14:11:18 21048 ----a-w- c:\winnt\system32\drivers\mbam.sys
2003-05-08 21:22:06 36963 ----a-w- c:\program files\common files\CYDrvIns.dll
2006-05-03 10:06:54 163328 --sh--r- c:\winnt\system32\flvDX.dll
2007-02-21 11:47:16 31232 --sh--r- c:\winnt\system32\msfDX.dll
2008-03-16 13:30:52 216064 --sh--r- c:\winnt\system32\nbDX.dll
.
=================== ROOTKIT ====================
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.0.2195
.
CreateFile("\\.\PHYSICALDRIVE0"): The process cannot access the file because it is being used by another process.
device: opened successfully
user: error reading MBR
.
Disk trace:
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
1 nt!IofCallDriver[0x8041EECC] -> \Device\Harddisk0\DR0[0x88F93730]
3 CLASSPNP[0xF6470C60] -> nt!IofCallDriver[0x8041EECC] -> \Device\0000002e[0x88FE47D0]
5 ACPI[0xBFFDE46B] -> nt!IofCallDriver[0x8041EECC] -> \Device\Ide\IdeDeviceP3T0L0-10[0x88FE3030]
kernel: MBR read successfully
_asm { XOR AX, AX; MOV SS, AX; MOV SP, 0x7c00; STI ; PUSH AX; POP ES; PUSH AX; POP DS; CLD ; MOV SI, 0x7c1b; MOV DI, 0x61b; PUSH AX; PUSH DI; MOV CX, 0x1e5; REP MOVSB ; RETF ; MOV SI, 0x7be; MOV CL, 0x4; CMP [SI], CH; JL 0x2d; JNZ 0x3b; }
user != kernel MBR !!!
.
============= FINISH: 10:36:40.79 ===============
Attached File(s)
-
ark.txt (108.01K)
Number of downloads: 2 -
attach.txt (12.35K)
Number of downloads: 0

Help
This topic is locked


Back to top











