Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Ransomware - PCEU virus
Message
<blockquote data-quote="Fryern" data-source="post: 103458" data-attributes="member: 5502"><p>ListParts by Farbar Version: 16-01-2013</p><p></p><p>Ran by SYSTEM (administrator) on 10-02-2013 at 20:44:16</p><p></p><p>Windows Vista (X86)</p><p></p><p>Running From: F:\</p><p></p><p>Language: 0409</p><p></p><p>************************************************************</p><p></p><p></p><p></p><p>========================= Memory info ====================== </p><p></p><p></p><p></p><p>Percentage of memory in use: 10%</p><p></p><p>Total physical RAM: 2924.45 MB</p><p></p><p>Available physical RAM: 2604.85 MB</p><p></p><p>Total Pagefile: 2717 MB</p><p></p><p>Available Pagefile: 2593.22 MB</p><p></p><p>Total Virtual: 2047.88 MB</p><p></p><p>Available Virtual: 1987.18 MB</p><p></p><p></p><p></p><p>======================= Partitions =========================</p><p></p><p></p><p></p><p>1 Drive c: () (Fixed) (Total:455.27 GB) (Free:401.78 GB) NTFS ==>[Drive with boot components (obtained from BCD)]</p><p></p><p>2 Drive d: (BTHomeHub) (CDROM) (Total:0.1 GB) (Free:0 GB) CDFS</p><p></p><p>3 Drive e: (Recovery) (Fixed) (Total:10.49 GB) (Free:0.83 GB) NTFS ==>[System with boot components (obtained from reading drive)]</p><p></p><p>4 Drive f: (HITMANPRO) (Removable) (Total:3.71 GB) (Free:3.47 GB) FAT32</p><p></p><p>5 Drive x: (Boot) (Fixed) (Total:0.06 GB) (Free:0.06 GB) NTFS</p><p></p><p></p><p></p><p> Disk ### Status Size Free Dyn Gpt</p><p></p><p> -------- ---------- ------- ------- --- ---</p><p></p><p> Disk 0 Online 466 GB 0 B </p><p></p><p> Disk 1 Online 3819 MB 0 B </p><p></p><p></p><p></p><p>Partitions of Disk 0:</p><p></p><p>===============</p><p></p><p></p><p></p><p>Disk ID: 3B14E91E</p><p></p><p></p><p></p><p> Partition ### Type Size Offset</p><p></p><p> ------------- ---------------- ------- -------</p><p></p><p> Partition 1 OEM 10 GB 1024 KB</p><p></p><p> Partition 2 Primary 455 GB 10 GB</p><p></p><p></p><p></p><p>======================================================================================================</p><p></p><p></p><p></p><p>Disk: 0</p><p></p><p>Partition 1</p><p></p><p>Type : 27</p><p></p><p>Hidden: Yes</p><p></p><p>Active: No</p><p></p><p></p><p></p><p> Volume ### Ltr Label Fs Type Size Status Info</p><p></p><p> ---------- --- ----------- ----- ---------- ------- --------- --------</p><p></p><p>* Volume 3 E Recovery NTFS Partition 10 GB Healthy Hidden </p><p></p><p></p><p></p><p>======================================================================================================</p><p></p><p></p><p></p><p>Disk: 0</p><p></p><p>Partition 2</p><p></p><p>Type : 07</p><p></p><p>Hidden: No</p><p></p><p>Active: Yes</p><p></p><p></p><p></p><p> Volume ### Ltr Label Fs Type Size Status Info</p><p></p><p> ---------- --- ----------- ----- ---------- ------- --------- --------</p><p></p><p>* Volume 1 C NTFS Partition 455 GB Healthy </p><p></p><p></p><p></p><p>======================================================================================================</p><p></p><p></p><p></p><p>Partitions of Disk 1:</p><p></p><p>===============</p><p></p><p></p><p></p><p>Disk ID: F2D1C359</p><p></p><p></p><p></p><p> Partition ### Type Size Offset</p><p></p><p> ------------- ---------------- ------- -------</p><p></p><p> Partition 1 Primary 3812 MB 32 KB</p><p></p><p></p><p></p><p>======================================================================================================</p><p></p><p></p><p></p><p>Disk: 1</p><p></p><p>Partition 1</p><p></p><p>Type : 0B</p><p></p><p>Hidden: No</p><p></p><p>Active: Yes</p><p></p><p></p><p></p><p> Volume ### Ltr Label Fs Type Size Status Info</p><p></p><p> ---------- --- ----------- ----- ---------- ------- --------- --------</p><p></p><p>* Volume 2 F HITMANPRO FAT32 Removable 3812 MB Healthy </p><p></p><p></p><p></p><p>======================================================================================================</p><p></p><p></p><p></p><p>Windows Boot Manager</p><p></p><p>--------------------</p><p></p><p>identifier {bootmgr}</p><p></p><p>device partition=C:</p><p></p><p>description Windows Boot Manager</p><p></p><p>locale en-US</p><p></p><p>inherit {globalsettings}</p><p></p><p>default {default}</p><p></p><p>resumeobject {b4eeeb97-59d7-11dd-8aaa-888888888788}</p><p></p><p>displayorder {default}</p><p></p><p>toolsdisplayorder {memdiag}</p><p></p><p>timeout 30</p><p></p><p>resume No</p><p></p><p></p><p></p><p>Windows Boot Loader</p><p></p><p>-------------------</p><p></p><p>identifier {current}</p><p></p><p>device ramdisk=[E:]\sources\boot.wim,{ramdiskoptions}</p><p></p><p>path \windows\system32\boot\winload.exe</p><p></p><p>description Windows Recovery Environment</p><p></p><p>osdevice ramdisk=[E:]\sources\boot.wim,{ramdiskoptions}</p><p></p><p>systemroot \windows</p><p></p><p>nx OptIn</p><p></p><p>detecthal Yes</p><p></p><p>winpe Yes</p><p></p><p></p><p></p><p>Windows Boot Loader</p><p></p><p>-------------------</p><p></p><p>identifier {default}</p><p></p><p>device partition=C:</p><p></p><p>path \Windows\system32\winload.exe</p><p></p><p>description Microsoft Windows Vista</p><p></p><p>locale en-US</p><p></p><p>inherit {bootloadersettings}</p><p></p><p>recoverysequence {current}</p><p></p><p>recoveryenabled Yes</p><p></p><p>osdevice partition=C:</p><p></p><p>systemroot \Windows</p><p></p><p>resumeobject {b4eeeb97-59d7-11dd-8aaa-888888888788}</p><p></p><p>nx OptIn</p><p></p><p>bootlog Yes</p><p></p><p></p><p></p><p>Resume from Hibernate</p><p></p><p>---------------------</p><p></p><p>identifier {b4eeeb97-59d7-11dd-8aaa-888888888788}</p><p></p><p>device partition=C:</p><p></p><p>path \Windows\system32\winresume.exe</p><p></p><p>description Windows Resume Application</p><p></p><p>locale en-US</p><p></p><p>inherit {resumeloadersettings}</p><p></p><p>filedevice partition=C:</p><p></p><p>filepath \hiberfil.sys</p><p></p><p>pae Yes</p><p></p><p>debugoptionenabled No</p><p></p><p></p><p></p><p>Windows Memory Tester</p><p></p><p>---------------------</p><p></p><p>identifier {memdiag}</p><p></p><p>device partition=C:</p><p></p><p>path \boot\memtest.exe</p><p></p><p>description Windows Memory Diagnostic</p><p></p><p>locale en-US</p><p></p><p>inherit {globalsettings}</p><p></p><p>badmemoryaccess Yes</p><p></p><p></p><p></p><p>Windows Legacy OS Loader</p><p></p><p>------------------------</p><p></p><p>identifier {ntldr}</p><p></p><p>device unknown</p><p></p><p>path \ntldr</p><p></p><p>description Earlier Version of Windows</p><p></p><p></p><p></p><p>EMS Settings</p><p></p><p>------------</p><p></p><p>identifier {emssettings}</p><p></p><p>bootems Yes</p><p></p><p></p><p></p><p>Debugger Settings</p><p></p><p>-----------------</p><p></p><p>identifier {dbgsettings}</p><p></p><p>debugtype Serial</p><p></p><p>debugport 1</p><p></p><p>baudrate 115200</p><p></p><p></p><p></p><p>RAM Defects</p><p></p><p>-----------</p><p></p><p>identifier {badmemory}</p><p></p><p></p><p></p><p>Global Settings</p><p></p><p>---------------</p><p></p><p>identifier {globalsettings}</p><p></p><p>inherit {dbgsettings}</p><p></p><p> {emssettings}</p><p></p><p> {badmemory}</p><p></p><p></p><p></p><p>Boot Loader Settings</p><p></p><p>--------------------</p><p></p><p>identifier {bootloadersettings}</p><p></p><p>inherit {globalsettings}</p><p></p><p></p><p></p><p>Resume Loader Settings</p><p></p><p>----------------------</p><p></p><p>identifier {resumeloadersettings}</p><p></p><p>inherit {globalsettings}</p><p></p><p></p><p></p><p>Setup Ramdisk Options</p><p></p><p>---------------------</p><p></p><p>identifier {ramdiskoptions}</p><p></p><p>description Ramdisk options</p><p></p><p>ramdisksdidevice partition=E:</p><p></p><p>ramdisksdipath \boot\boot.sdi</p><p></p><p></p><p></p><p></p><p></p><p>****** End Of Log ******</p></blockquote><p></p>
[QUOTE="Fryern, post: 103458, member: 5502"] ListParts by Farbar Version: 16-01-2013 Ran by SYSTEM (administrator) on 10-02-2013 at 20:44:16 Windows Vista (X86) Running From: F:\ Language: 0409 ************************************************************ ========================= Memory info ====================== Percentage of memory in use: 10% Total physical RAM: 2924.45 MB Available physical RAM: 2604.85 MB Total Pagefile: 2717 MB Available Pagefile: 2593.22 MB Total Virtual: 2047.88 MB Available Virtual: 1987.18 MB ======================= Partitions ========================= 1 Drive c: () (Fixed) (Total:455.27 GB) (Free:401.78 GB) NTFS ==>[Drive with boot components (obtained from BCD)] 2 Drive d: (BTHomeHub) (CDROM) (Total:0.1 GB) (Free:0 GB) CDFS 3 Drive e: (Recovery) (Fixed) (Total:10.49 GB) (Free:0.83 GB) NTFS ==>[System with boot components (obtained from reading drive)] 4 Drive f: (HITMANPRO) (Removable) (Total:3.71 GB) (Free:3.47 GB) FAT32 5 Drive x: (Boot) (Fixed) (Total:0.06 GB) (Free:0.06 GB) NTFS Disk ### Status Size Free Dyn Gpt -------- ---------- ------- ------- --- --- Disk 0 Online 466 GB 0 B Disk 1 Online 3819 MB 0 B Partitions of Disk 0: =============== Disk ID: 3B14E91E Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 OEM 10 GB 1024 KB Partition 2 Primary 455 GB 10 GB ====================================================================================================== Disk: 0 Partition 1 Type : 27 Hidden: Yes Active: No Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 3 E Recovery NTFS Partition 10 GB Healthy Hidden ====================================================================================================== Disk: 0 Partition 2 Type : 07 Hidden: No Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 1 C NTFS Partition 455 GB Healthy ====================================================================================================== Partitions of Disk 1: =============== Disk ID: F2D1C359 Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 Primary 3812 MB 32 KB ====================================================================================================== Disk: 1 Partition 1 Type : 0B Hidden: No Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 2 F HITMANPRO FAT32 Removable 3812 MB Healthy ====================================================================================================== Windows Boot Manager -------------------- identifier {bootmgr} device partition=C: description Windows Boot Manager locale en-US inherit {globalsettings} default {default} resumeobject {b4eeeb97-59d7-11dd-8aaa-888888888788} displayorder {default} toolsdisplayorder {memdiag} timeout 30 resume No Windows Boot Loader ------------------- identifier {current} device ramdisk=[E:]\sources\boot.wim,{ramdiskoptions} path \windows\system32\boot\winload.exe description Windows Recovery Environment osdevice ramdisk=[E:]\sources\boot.wim,{ramdiskoptions} systemroot \windows nx OptIn detecthal Yes winpe Yes Windows Boot Loader ------------------- identifier {default} device partition=C: path \Windows\system32\winload.exe description Microsoft Windows Vista locale en-US inherit {bootloadersettings} recoverysequence {current} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {b4eeeb97-59d7-11dd-8aaa-888888888788} nx OptIn bootlog Yes Resume from Hibernate --------------------- identifier {b4eeeb97-59d7-11dd-8aaa-888888888788} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale en-US inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys pae Yes debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=C: path \boot\memtest.exe description Windows Memory Diagnostic locale en-US inherit {globalsettings} badmemoryaccess Yes Windows Legacy OS Loader ------------------------ identifier {ntldr} device unknown path \ntldr description Earlier Version of Windows EMS Settings ------------ identifier {emssettings} bootems Yes Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Setup Ramdisk Options --------------------- identifier {ramdiskoptions} description Ramdisk options ramdisksdidevice partition=E: ramdisksdipath \boot\boot.sdi ****** End Of Log ****** [/QUOTE]
Insert quotes…
Verification
Post reply
Top