Rkill 2.9.1 by Lawrence Abrams (Grinler) http://www.bleepingcomputer.com/ Copyright 2008-2020 BleepingComputer.com More Information about Rkill can be found at this link: http://www.bleepingcomputer.com/forums/topic308364.html Program started at: 08/19/2020 01:13:45 AM in x64 mode. Windows Version: Windows 10 Home Checking for Windows services to stop: * No malware services found to stop. Checking for processes to terminate: * C:\Windows\System32\hpservice.exe (PID: 3060) [WD-HEUR] * C:\Windows\System32\mqsvc.exe (PID: 4276) [WD-HEUR] 2 proccesses terminated! Checking Registry for malware related settings: * No issues found in the Registry. Resetting .EXE, .COM, & .BAT associations in the Windows Registry. Performing miscellaneous checks: * Windows Defender Disabled [HKLM\SOFTWARE\Policies\Microsoft\Windows Defender] "DisableAntiSpyware" = dword:00000001 * Reparse Point/Junctions Found (Most likely legitimate)! * C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 => C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache\IE [Dir] Searching for Missing Digital Signatures: * C:\WINDOWS\System32\drivers\mqac.sys : 185.344 : 03/19/2019 02:46 PM : a0da67ec91399531e79b774383278d09 [NoSig] +-> C:\WINDOWS\WinSxS\amd64_microsoft-windows-m..cess-control-driver_31bf3856ad364e35_10.0.18362.1_none_995d06c6a8498ef6\mqac.sys : 185.344 : 03/19/2019 02:46 PM : a0da67ec91399531e79b774383278d09 [Pos Repl] Checking HOSTS File: * HOSTS file entries found: 127.0.0.1 validation.sls.microsoft.com Program finished at: 08/19/2020 01:26:41 AM Execution time: 0 hours(s), 12 minute(s), and 56 seconds(s)