Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 18.11.2011, 19:48   #16
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Das ging schnell :-)

Hier ist die Text-datei:

19:43:54.0031 3788 TDSS rootkit removing tool 2.6.19.0 Nov 16 2011 12:18:50
19:43:54.0187 3788 ============================================================
19:43:54.0187 3788 Current date / time: 2011/11/18 19:43:54.0187
19:43:54.0187 3788 SystemInfo:
19:43:54.0187 3788
19:43:54.0187 3788 OS Version: 6.1.7601 ServicePack: 1.0
19:43:54.0187 3788 Product type: Workstation
19:43:54.0187 3788 ComputerName: ACHIM
19:43:54.0187 3788 UserName: Anne-Sophie
19:43:54.0187 3788 Windows directory: C:\Windows
19:43:54.0187 3788 System windows directory: C:\Windows
19:43:54.0187 3788 Running under WOW64
19:43:54.0187 3788 Processor architecture: Intel x64
19:43:54.0187 3788 Number of processors: 4
19:43:54.0187 3788 Page size: 0x1000
19:43:54.0187 3788 Boot type: Normal boot
19:43:54.0187 3788 ============================================================
19:43:54.0655 3788 Initialize success
19:44:07.0697 3564 ============================================================
19:44:07.0697 3564 Scan started
19:44:07.0697 3564 Mode: Manual; SigCheck; TDLFS;
19:44:07.0697 3564 ============================================================
19:44:08.0134 3564 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:44:08.0290 3564 1394ohci - ok
19:44:08.0414 3564 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:44:08.0446 3564 ACPI - ok
19:44:08.0555 3564 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:44:08.0648 3564 AcpiPmi - ok
19:44:08.0773 3564 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:44:08.0804 3564 adp94xx - ok
19:44:08.0914 3564 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:44:08.0945 3564 adpahci - ok
19:44:09.0054 3564 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:44:09.0085 3564 adpu320 - ok
19:44:09.0132 3564 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys
19:44:09.0194 3564 AFD - ok
19:44:09.0304 3564 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:44:09.0319 3564 agp440 - ok
19:44:09.0460 3564 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:44:09.0475 3564 aliide - ok
19:44:09.0600 3564 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:44:09.0616 3564 amdide - ok
19:44:09.0725 3564 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:44:09.0787 3564 AmdK8 - ok
19:44:10.0021 3564 amdkmdag (3d07f9c090c7a1d76d624972a5384471) C:\Windows\system32\DRIVERS\atikmdag.sys
19:44:10.0271 3564 amdkmdag - ok
19:44:10.0364 3564 amdkmdap (99ab7e4b24c80155dc4296f657faf3c7) C:\Windows\system32\DRIVERS\atikmpag.sys
19:44:10.0427 3564 amdkmdap - ok
19:44:10.0520 3564 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:44:10.0567 3564 AmdPPM - ok
19:44:10.0692 3564 amdsata (6ec6d772eae38dc17c14aed9b178d24b) C:\Windows\system32\drivers\amdsata.sys
19:44:10.0708 3564 amdsata - ok
19:44:10.0817 3564 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:44:10.0832 3564 amdsbs - ok
19:44:10.0957 3564 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys
19:44:10.0973 3564 amdxata - ok
19:44:11.0098 3564 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:44:11.0269 3564 AppID - ok
19:44:11.0378 3564 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:44:11.0410 3564 arc - ok
19:44:11.0441 3564 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:44:11.0441 3564 arcsas - ok
19:44:11.0534 3564 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:44:11.0690 3564 AsyncMac - ok
19:44:11.0800 3564 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:44:11.0815 3564 atapi - ok
19:44:11.0940 3564 athr (2c0bb386e86670bb1b1a57caaef3e50d) C:\Windows\system32\DRIVERS\athrx.sys
19:44:12.0034 3564 athr - ok
19:44:12.0174 3564 AtiHdmiService (77c149e6d702737b2e372dee166faef8) C:\Windows\system32\drivers\AtiHdmi.sys
19:44:12.0205 3564 AtiHdmiService - ok
19:44:12.0346 3564 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:44:12.0392 3564 b06bdrv - ok
19:44:12.0502 3564 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:44:12.0548 3564 b57nd60a - ok
19:44:12.0673 3564 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:44:12.0767 3564 Beep - ok
19:44:12.0892 3564 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:44:12.0938 3564 blbdrive - ok
19:44:13.0063 3564 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:44:13.0110 3564 bowser - ok
19:44:13.0219 3564 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:44:13.0297 3564 BrFiltLo - ok
19:44:13.0391 3564 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:44:13.0422 3564 BrFiltUp - ok
19:44:13.0547 3564 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:44:13.0609 3564 Brserid - ok
19:44:13.0718 3564 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:44:13.0781 3564 BrSerWdm - ok
19:44:13.0874 3564 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:44:13.0921 3564 BrUsbMdm - ok
19:44:14.0030 3564 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:44:14.0062 3564 BrUsbSer - ok
19:44:14.0171 3564 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
19:44:14.0233 3564 BthEnum - ok
19:44:14.0327 3564 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:44:14.0374 3564 BTHMODEM - ok
19:44:14.0467 3564 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
19:44:14.0545 3564 BthPan - ok
19:44:14.0654 3564 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
19:44:14.0717 3564 BTHPORT - ok
19:44:14.0826 3564 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
19:44:14.0857 3564 BTHUSB - ok
19:44:14.0951 3564 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:44:15.0029 3564 cdfs - ok
19:44:15.0154 3564 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
19:44:15.0200 3564 cdrom - ok
19:44:15.0325 3564 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:44:15.0388 3564 circlass - ok
19:44:15.0481 3564 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:44:15.0497 3564 CLFS - ok
19:44:15.0653 3564 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:44:15.0684 3564 CmBatt - ok
19:44:15.0715 3564 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:44:15.0746 3564 cmdide - ok
19:44:15.0840 3564 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys
19:44:15.0887 3564 CNG - ok
19:44:15.0980 3564 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:44:16.0012 3564 Compbatt - ok
19:44:16.0043 3564 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:44:16.0090 3564 CompositeBus - ok
19:44:16.0199 3564 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:44:16.0214 3564 crcdisk - ok
19:44:16.0355 3564 CVirtA (44bddeb03c84a1c993c992ffb5700357) C:\Windows\system32\DRIVERS\CVirtA64.sys
19:44:16.0402 3564 CVirtA - ok
19:44:16.0526 3564 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:44:16.0604 3564 DfsC - ok
19:44:16.0729 3564 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:44:16.0807 3564 discache - ok
19:44:16.0916 3564 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:44:16.0948 3564 Disk - ok
19:44:17.0057 3564 DNE (05cb5910b3ca6019fc3cca815ee06ffb) C:\Windows\system32\DRIVERS\dne64x.sys
19:44:17.0072 3564 DNE - ok
19:44:17.0213 3564 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
19:44:17.0244 3564 Dot4 - ok
19:44:17.0353 3564 Dot4Print (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
19:44:17.0384 3564 Dot4Print - ok
19:44:17.0509 3564 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
19:44:17.0540 3564 dot4usb - ok
19:44:17.0665 3564 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:44:17.0696 3564 drmkaud - ok
19:44:17.0821 3564 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:44:17.0852 3564 DXGKrnl - ok
19:44:18.0024 3564 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:44:18.0164 3564 ebdrv - ok
19:44:18.0305 3564 ElbyCDIO (a05fc7eca0966ebb70e4d17b855a853b) C:\Windows\system32\Drivers\ElbyCDIO.sys
19:44:18.0320 3564 ElbyCDIO - ok
19:44:18.0430 3564 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:44:18.0461 3564 elxstor - ok
19:44:18.0570 3564 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:44:18.0601 3564 ErrDev - ok
19:44:18.0710 3564 ETD (438021c3f32f30e227d0f5dfd118b7b1) C:\Windows\system32\DRIVERS\ETD.sys
19:44:18.0757 3564 ETD - ok
19:44:18.0851 3564 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:44:18.0929 3564 exfat - ok
19:44:19.0022 3564 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:44:19.0085 3564 fastfat - ok
19:44:19.0194 3564 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:44:19.0225 3564 fdc - ok
19:44:19.0319 3564 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:44:19.0350 3564 FileInfo - ok
19:44:19.0366 3564 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:44:19.0444 3564 Filetrace - ok
19:44:19.0537 3564 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:44:19.0584 3564 flpydisk - ok
19:44:19.0678 3564 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:44:19.0709 3564 FltMgr - ok
19:44:19.0802 3564 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:44:19.0834 3564 FsDepends - ok
19:44:19.0865 3564 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:44:19.0896 3564 Fs_Rec - ok
19:44:19.0974 3564 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:44:20.0005 3564 fvevol - ok
19:44:20.0052 3564 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:44:20.0068 3564 gagp30kx - ok
19:44:20.0130 3564 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:44:20.0177 3564 hcw85cir - ok
19:44:20.0302 3564 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:44:20.0348 3564 HdAudAddService - ok
19:44:20.0473 3564 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:44:20.0520 3564 HDAudBus - ok
19:44:20.0598 3564 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:44:20.0645 3564 HidBatt - ok
19:44:20.0645 3564 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:44:20.0676 3564 HidBth - ok
19:44:20.0770 3564 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:44:20.0816 3564 HidIr - ok
19:44:20.0941 3564 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:44:20.0988 3564 HidUsb - ok
19:44:21.0128 3564 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:44:21.0144 3564 HpSAMD - ok
19:44:21.0269 3564 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:44:21.0347 3564 HTTP - ok
19:44:21.0456 3564 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:44:21.0472 3564 hwpolicy - ok
19:44:21.0534 3564 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
19:44:21.0565 3564 i8042prt - ok
19:44:21.0643 3564 iaStor (a5f72bb0d024e7e463344105be613ae4) C:\Windows\system32\DRIVERS\iaStor.sys
19:44:21.0674 3564 iaStor - ok
19:44:21.0799 3564 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys
19:44:21.0830 3564 iaStorV - ok
19:44:22.0049 3564 igfx (a87261ef1546325b559374f5689cf5bc) C:\Windows\system32\DRIVERS\igdkmd64.sys
19:44:22.0236 3564 igfx - ok
19:44:22.0345 3564 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:44:22.0361 3564 iirsp - ok
19:44:22.0423 3564 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys
19:44:22.0454 3564 Impcd - ok
19:44:22.0610 3564 IntcAzAudAddService (0adf714079ae174a39d69036143e4c50) C:\Windows\system32\drivers\RTKVHD64.sys
19:44:22.0657 3564 IntcAzAudAddService - ok
19:44:22.0782 3564 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:44:22.0798 3564 intelide - ok
19:44:22.0907 3564 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:44:22.0938 3564 intelppm - ok
19:44:23.0063 3564 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:44:23.0125 3564 IpFilterDriver - ok
19:44:23.0172 3564 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:44:23.0234 3564 IPMIDRV - ok
19:44:23.0328 3564 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:44:23.0390 3564 IPNAT - ok
19:44:23.0500 3564 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:44:23.0531 3564 IRENUM - ok
19:44:23.0656 3564 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:44:23.0671 3564 isapnp - ok
19:44:23.0765 3564 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:44:23.0796 3564 iScsiPrt - ok
19:44:23.0905 3564 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
19:44:23.0936 3564 kbdclass - ok
19:44:24.0046 3564 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
19:44:24.0077 3564 kbdhid - ok
19:44:24.0186 3564 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys
19:44:24.0202 3564 KSecDD - ok
19:44:24.0233 3564 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys
19:44:24.0248 3564 KSecPkg - ok
19:44:24.0342 3564 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:44:24.0420 3564 ksthunk - ok
19:44:24.0529 3564 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:44:24.0607 3564 lltdio - ok
19:44:24.0732 3564 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:44:24.0748 3564 LSI_FC - ok
19:44:24.0872 3564 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:44:24.0888 3564 LSI_SAS - ok
19:44:24.0997 3564 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:44:25.0028 3564 LSI_SAS2 - ok
19:44:25.0138 3564 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:44:25.0169 3564 LSI_SCSI - ok
19:44:25.0184 3564 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:44:25.0247 3564 luafv - ok
19:44:25.0372 3564 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:44:25.0387 3564 megasas - ok
19:44:25.0496 3564 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:44:25.0528 3564 MegaSR - ok
19:44:25.0559 3564 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:44:25.0637 3564 Modem - ok
19:44:25.0746 3564 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:44:25.0777 3564 monitor - ok
19:44:25.0886 3564 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:44:25.0918 3564 mouclass - ok
19:44:26.0011 3564 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:44:26.0058 3564 mouhid - ok
19:44:26.0152 3564 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:44:26.0167 3564 mountmgr - ok
19:44:26.0214 3564 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:44:26.0230 3564 mpio - ok
19:44:26.0323 3564 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:44:26.0401 3564 mpsdrv - ok
19:44:26.0495 3564 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:44:26.0604 3564 MRxDAV - ok
19:44:26.0698 3564 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:44:26.0744 3564 mrxsmb - ok
19:44:26.0838 3564 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:44:26.0885 3564 mrxsmb10 - ok
19:44:26.0978 3564 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:44:27.0025 3564 mrxsmb20 - ok
19:44:27.0134 3564 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:44:27.0150 3564 msahci - ok
19:44:27.0259 3564 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:44:27.0275 3564 msdsm - ok
19:44:27.0384 3564 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:44:27.0446 3564 Msfs - ok
19:44:27.0478 3564 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:44:27.0524 3564 mshidkmdf - ok
19:44:27.0602 3564 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:44:27.0618 3564 msisadrv - ok
19:44:27.0743 3564 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:44:27.0805 3564 MSKSSRV - ok
19:44:27.0899 3564 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:44:27.0961 3564 MSPCLOCK - ok
19:44:28.0055 3564 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:44:28.0133 3564 MSPQM - ok
19:44:28.0242 3564 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:44:28.0273 3564 MsRPC - ok
19:44:28.0382 3564 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:44:28.0398 3564 mssmbios - ok
19:44:28.0507 3564 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:44:28.0570 3564 MSTEE - ok
19:44:28.0648 3564 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:44:28.0694 3564 MTConfig - ok
19:44:28.0804 3564 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:44:28.0819 3564 Mup - ok
19:44:28.0944 3564 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:44:28.0991 3564 NativeWifiP - ok
19:44:29.0147 3564 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:44:29.0178 3564 NDIS - ok
19:44:29.0287 3564 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:44:29.0350 3564 NdisCap - ok
19:44:29.0459 3564 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:44:29.0537 3564 NdisTapi - ok
19:44:29.0646 3564 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:44:29.0724 3564 Ndisuio - ok
19:44:29.0818 3564 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:44:29.0896 3564 NdisWan - ok
19:44:30.0005 3564 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:44:30.0083 3564 NDProxy - ok
19:44:30.0208 3564 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:44:30.0286 3564 NetBIOS - ok
19:44:30.0379 3564 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:44:30.0442 3564 NetBT - ok
19:44:30.0566 3564 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:44:30.0598 3564 nfrd960 - ok
19:44:30.0707 3564 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:44:30.0769 3564 Npfs - ok
19:44:30.0878 3564 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:44:30.0941 3564 nsiproxy - ok
19:44:31.0081 3564 Ntfs (05d78aa5cb5f3f5c31160bdb955d0b7c) C:\Windows\system32\drivers\Ntfs.sys
19:44:31.0128 3564 Ntfs - ok
19:44:31.0222 3564 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:44:31.0300 3564 Null - ok
19:44:31.0424 3564 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys
19:44:31.0440 3564 nvraid - ok
19:44:31.0565 3564 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys
19:44:31.0580 3564 nvstor - ok
19:44:31.0690 3564 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:44:31.0721 3564 nv_agp - ok
19:44:31.0830 3564 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:44:31.0877 3564 ohci1394 - ok
19:44:32.0017 3564 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:44:32.0048 3564 Parport - ok
19:44:32.0095 3564 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:44:32.0095 3564 partmgr - ok
19:44:32.0204 3564 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:44:32.0220 3564 pci - ok
19:44:32.0251 3564 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:44:32.0267 3564 pciide - ok
19:44:32.0360 3564 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:44:32.0392 3564 pcmcia - ok
19:44:32.0407 3564 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:44:32.0423 3564 pcw - ok
19:44:32.0516 3564 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:44:32.0610 3564 PEAUTH - ok
19:44:32.0782 3564 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:44:32.0844 3564 PptpMiniport - ok
19:44:32.0938 3564 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:44:32.0984 3564 Processor - ok
19:44:33.0109 3564 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:44:33.0187 3564 Psched - ok
19:44:33.0328 3564 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:44:33.0374 3564 ql2300 - ok
19:44:33.0468 3564 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:44:33.0499 3564 ql40xx - ok
19:44:33.0530 3564 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:44:33.0577 3564 QWAVEdrv - ok
19:44:33.0671 3564 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:44:33.0733 3564 RasAcd - ok
19:44:33.0827 3564 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:44:33.0889 3564 RasAgileVpn - ok
19:44:33.0936 3564 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:44:34.0014 3564 Rasl2tp - ok
19:44:34.0123 3564 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:44:34.0170 3564 RasPppoe - ok
19:44:34.0279 3564 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:44:34.0357 3564 RasSstp - ok
19:44:34.0466 3564 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:44:34.0544 3564 rdbss - ok
19:44:34.0638 3564 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:44:34.0669 3564 rdpbus - ok
19:44:34.0763 3564 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:44:34.0856 3564 RDPCDD - ok
19:44:34.0966 3564 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:44:35.0028 3564 RDPENCDD - ok
19:44:35.0137 3564 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:44:35.0215 3564 RDPREFMP - ok
19:44:35.0309 3564 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
19:44:35.0387 3564 RDPWD - ok
19:44:35.0496 3564 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:44:35.0527 3564 rdyboost - ok
19:44:35.0683 3564 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
19:44:35.0730 3564 RFCOMM - ok
19:44:35.0839 3564 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:44:35.0902 3564 rspndr - ok
19:44:36.0011 3564 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:44:36.0042 3564 RTL8167 - ok
19:44:36.0136 3564 rtport (4ca0dba9e224473d664c25e411f5a3bd) C:\Windows\SysWOW64\drivers\rtport.sys
19:44:36.0151 3564 rtport - ok
19:44:36.0229 3564 SABI (62db6cc4b0818f1b5f3441241b098f12) C:\Windows\system32\Drivers\SABI.sys
19:44:36.0260 3564 SABI - ok
19:44:36.0370 3564 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:44:36.0385 3564 sbp2port - ok
19:44:36.0494 3564 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:44:36.0557 3564 scfilter - ok
19:44:36.0682 3564 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:44:36.0775 3564 secdrv - ok
19:44:36.0884 3564 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:44:36.0931 3564 Serenum - ok
19:44:37.0040 3564 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:44:37.0087 3564 Serial - ok
19:44:37.0181 3564 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:44:37.0228 3564 sermouse - ok
19:44:37.0337 3564 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:44:37.0384 3564 sffdisk - ok
19:44:37.0477 3564 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:44:37.0508 3564 sffp_mmc - ok
19:44:37.0618 3564 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:44:37.0649 3564 sffp_sd - ok
19:44:37.0742 3564 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:44:37.0774 3564 sfloppy - ok
19:44:37.0898 3564 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:44:37.0930 3564 SiSRaid2 - ok
19:44:38.0023 3564 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:44:38.0039 3564 SiSRaid4 - ok
19:44:38.0148 3564 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:44:38.0226 3564 Smb - ok
19:44:38.0335 3564 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:44:38.0351 3564 spldr - ok
19:44:38.0460 3564 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:44:38.0507 3564 srv - ok
19:44:38.0616 3564 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:44:38.0678 3564 srv2 - ok
19:44:38.0803 3564 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:44:38.0834 3564 srvnet - ok
19:44:38.0959 3564 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:44:38.0975 3564 stexstor - ok
19:44:39.0084 3564 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:44:39.0100 3564 swenum - ok
19:44:39.0271 3564 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:44:39.0318 3564 Tcpip - ok
19:44:39.0458 3564 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:44:39.0505 3564 TCPIP6 - ok
19:44:39.0599 3564 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:44:39.0692 3564 tcpipreg - ok
19:44:39.0770 3564 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:44:39.0864 3564 TDPIPE - ok
19:44:39.0958 3564 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
19:44:40.0020 3564 TDTCP - ok
19:44:40.0051 3564 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:44:40.0114 3564 tdx - ok
19:44:40.0223 3564 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:44:40.0238 3564 TermDD - ok
19:44:40.0363 3564 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:44:40.0441 3564 tssecsrv - ok
19:44:40.0550 3564 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:44:40.0597 3564 TsUsbFlt - ok
19:44:40.0722 3564 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:44:40.0800 3564 tunnel - ok
19:44:40.0909 3564 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:44:40.0925 3564 uagp35 - ok
19:44:41.0034 3564 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:44:41.0128 3564 udfs - ok
19:44:41.0237 3564 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:44:41.0252 3564 uliagpkx - ok
19:44:41.0362 3564 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:44:41.0393 3564 umbus - ok
19:44:41.0502 3564 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:44:41.0518 3564 UmPass - ok
19:44:41.0627 3564 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys
19:44:41.0658 3564 usbccgp - ok
19:44:41.0752 3564 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:44:41.0798 3564 usbcir - ok
19:44:41.0908 3564 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\drivers\usbehci.sys
19:44:41.0939 3564 usbehci - ok
19:44:42.0064 3564 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\drivers\usbhub.sys
19:44:42.0095 3564 usbhub - ok
19:44:42.0204 3564 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys
19:44:42.0235 3564 usbohci - ok
19:44:42.0329 3564 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:44:42.0360 3564 usbprint - ok
19:44:42.0469 3564 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:44:42.0500 3564 usbscan - ok
19:44:42.0625 3564 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:44:42.0656 3564 USBSTOR - ok
19:44:42.0766 3564 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\drivers\usbuhci.sys
19:44:42.0797 3564 usbuhci - ok
19:44:42.0922 3564 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
19:44:42.0968 3564 usbvideo - ok
19:44:43.0093 3564 VClone (fd911873c0bb6945fa38c16e9a2b58f9) C:\Windows\system32\DRIVERS\VClone.sys
19:44:43.0124 3564 VClone - ok
19:44:43.0249 3564 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:44:43.0265 3564 vdrvroot - ok
19:44:43.0358 3564 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:44:43.0390 3564 vga - ok
19:44:43.0499 3564 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:44:43.0561 3564 VgaSave - ok
19:44:43.0670 3564 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:44:43.0702 3564 vhdmp - ok
19:44:43.0795 3564 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:44:43.0811 3564 viaide - ok
19:44:43.0936 3564 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:44:43.0951 3564 volmgr - ok
19:44:44.0060 3564 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:44:44.0092 3564 volmgrx - ok
19:44:44.0138 3564 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:44:44.0154 3564 volsnap - ok
19:44:44.0263 3564 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:44:44.0279 3564 vsmraid - ok
19:44:44.0310 3564 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
19:44:44.0341 3564 vwifibus - ok
19:44:44.0450 3564 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
19:44:44.0482 3564 vwififlt - ok
19:44:44.0606 3564 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:44:44.0638 3564 WacomPen - ok
19:44:44.0747 3564 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:44:44.0809 3564 WANARP - ok
19:44:44.0825 3564 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:44:44.0856 3564 Wanarpv6 - ok
19:44:44.0965 3564 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:44:44.0981 3564 Wd - ok
19:44:45.0106 3564 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:44:45.0137 3564 Wdf01000 - ok
19:44:45.0277 3564 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:44:45.0324 3564 WfpLwf - ok
19:44:45.0433 3564 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:44:45.0449 3564 WIMMount - ok
19:44:45.0589 3564 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:44:45.0636 3564 WinUsb - ok
19:44:45.0761 3564 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:44:45.0792 3564 WmiAcpi - ok
19:44:45.0917 3564 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:44:45.0979 3564 ws2ifsl - ok
19:44:46.0088 3564 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:44:46.0151 3564 WudfPf - ok
19:44:46.0260 3564 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:44:46.0322 3564 WUDFRd - ok
19:44:46.0447 3564 yukonw7 (64f88af327aa74e03658ae32b48ccb8b) C:\Windows\system32\DRIVERS\yk62x64.sys
19:44:46.0510 3564 yukonw7 - ok
19:44:46.0556 3564 MBR (0x1B8) (2e5debb2116b3417023e0d6562d7ed07) \Device\Harddisk0\DR0
19:44:46.0884 3564 \Device\Harddisk0\DR0 - ok
19:44:46.0884 3564 Boot (0x1200) (98fa392a7f5f4a5eae8d5aa6861452c8) \Device\Harddisk0\DR0\Partition0
19:44:46.0884 3564 \Device\Harddisk0\DR0\Partition0 - ok
19:44:46.0915 3564 Boot (0x1200) (cc75d30f2f0698386f4ed95d4252d4b1) \Device\Harddisk0\DR0\Partition1
19:44:46.0915 3564 \Device\Harddisk0\DR0\Partition1 - ok
19:44:46.0931 3564 Boot (0x1200) (605c74d0e2f457ca77f95b0a7a191e53) \Device\Harddisk0\DR0\Partition2
19:44:46.0931 3564 \Device\Harddisk0\DR0\Partition2 - ok
19:44:46.0931 3564 ============================================================
19:44:46.0931 3564 Scan finished
19:44:46.0931 3564 ============================================================
19:44:46.0946 2940 Detected object count: 0
19:44:46.0946 2940 Actual detected object count: 0
19:45:17.0912 2272 ============================================================
19:45:17.0912 2272 Scan started
19:45:17.0912 2272 Mode: Manual; SigCheck; TDLFS;
19:45:17.0912 2272 ============================================================
19:45:18.0084 2272 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:45:18.0131 2272 1394ohci - ok
19:45:18.0240 2272 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:45:18.0271 2272 ACPI - ok
19:45:18.0365 2272 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:45:18.0396 2272 AcpiPmi - ok
19:45:18.0490 2272 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:45:18.0521 2272 adp94xx - ok
19:45:18.0630 2272 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:45:18.0661 2272 adpahci - ok
19:45:18.0677 2272 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:45:18.0692 2272 adpu320 - ok
19:45:18.0786 2272 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys
19:45:18.0817 2272 AFD - ok
19:45:18.0926 2272 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:45:18.0942 2272 agp440 - ok
19:45:18.0973 2272 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:45:18.0989 2272 aliide - ok
19:45:19.0082 2272 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:45:19.0098 2272 amdide - ok
19:45:19.0192 2272 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:45:19.0207 2272 AmdK8 - ok
19:45:19.0379 2272 amdkmdag (3d07f9c090c7a1d76d624972a5384471) C:\Windows\system32\DRIVERS\atikmdag.sys
19:45:19.0457 2272 amdkmdag - ok
19:45:19.0628 2272 amdkmdap (99ab7e4b24c80155dc4296f657faf3c7) C:\Windows\system32\DRIVERS\atikmpag.sys
19:45:19.0660 2272 amdkmdap - ok
19:45:19.0691 2272 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:45:19.0706 2272 AmdPPM - ok
19:45:19.0800 2272 amdsata (6ec6d772eae38dc17c14aed9b178d24b) C:\Windows\system32\drivers\amdsata.sys
19:45:19.0816 2272 amdsata - ok
19:45:19.0909 2272 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:45:19.0925 2272 amdsbs - ok
19:45:19.0972 2272 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys
19:45:19.0972 2272 amdxata - ok
19:45:20.0081 2272 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:45:20.0128 2272 AppID - ok
19:45:20.0174 2272 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:45:20.0190 2272 arc - ok
19:45:20.0268 2272 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:45:20.0284 2272 arcsas - ok
19:45:20.0315 2272 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:45:20.0362 2272 AsyncMac - ok
19:45:20.0455 2272 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:45:20.0471 2272 atapi - ok
19:45:20.0533 2272 athr (2c0bb386e86670bb1b1a57caaef3e50d) C:\Windows\system32\DRIVERS\athrx.sys
19:45:20.0564 2272 athr - ok
19:45:20.0658 2272 AtiHdmiService (77c149e6d702737b2e372dee166faef8) C:\Windows\system32\drivers\AtiHdmi.sys
19:45:20.0674 2272 AtiHdmiService - ok
19:45:20.0783 2272 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:45:20.0814 2272 b06bdrv - ok
19:45:20.0908 2272 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:45:20.0939 2272 b57nd60a - ok
19:45:20.0970 2272 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:45:21.0001 2272 Beep - ok
19:45:21.0032 2272 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:45:21.0048 2272 blbdrive - ok
19:45:21.0142 2272 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:45:21.0157 2272 bowser - ok
19:45:21.0251 2272 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:45:21.0282 2272 BrFiltLo - ok
19:45:21.0282 2272 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:45:21.0298 2272 BrFiltUp - ok
19:45:21.0329 2272 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:45:21.0344 2272 Brserid - ok
19:45:21.0438 2272 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:45:21.0469 2272 BrSerWdm - ok
19:45:21.0485 2272 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:45:21.0500 2272 BrUsbMdm - ok
19:45:21.0516 2272 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:45:21.0532 2272 BrUsbSer - ok
19:45:21.0610 2272 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
19:45:21.0625 2272 BthEnum - ok
19:45:21.0656 2272 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:45:21.0672 2272 BTHMODEM - ok
19:45:21.0766 2272 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
19:45:21.0797 2272 BthPan - ok
19:45:21.0828 2272 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
19:45:21.0859 2272 BTHPORT - ok
19:45:21.0937 2272 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
19:45:21.0953 2272 BTHUSB - ok
19:45:21.0984 2272 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:45:22.0031 2272 cdfs - ok
19:45:22.0124 2272 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
19:45:22.0156 2272 cdrom - ok
19:45:22.0249 2272 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:45:22.0280 2272 circlass - ok
19:45:22.0296 2272 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:45:22.0312 2272 CLFS - ok
19:45:22.0405 2272 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:45:22.0436 2272 CmBatt - ok
19:45:22.0468 2272 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:45:22.0483 2272 cmdide - ok
19:45:22.0577 2272 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys
19:45:22.0608 2272 CNG - ok
19:45:22.0702 2272 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:45:22.0717 2272 Compbatt - ok
19:45:22.0748 2272 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:45:22.0764 2272 CompositeBus - ok
19:45:22.0842 2272 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:45:22.0873 2272 crcdisk - ok
19:45:22.0904 2272 CVirtA (44bddeb03c84a1c993c992ffb5700357) C:\Windows\system32\DRIVERS\CVirtA64.sys
19:45:22.0904 2272 CVirtA - ok
19:45:23.0014 2272 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:45:23.0060 2272 DfsC - ok
19:45:23.0092 2272 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:45:23.0138 2272 discache - ok
19:45:23.0216 2272 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:45:23.0248 2272 Disk - ok
19:45:23.0279 2272 DNE (05cb5910b3ca6019fc3cca815ee06ffb) C:\Windows\system32\DRIVERS\dne64x.sys
19:45:23.0294 2272 DNE - ok
19:45:23.0404 2272 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
19:45:23.0435 2272 Dot4 - ok
19:45:23.0544 2272 Dot4Print (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
19:45:23.0575 2272 Dot4Print - ok
19:45:23.0669 2272 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
19:45:23.0700 2272 dot4usb - ok
19:45:23.0794 2272 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:45:23.0825 2272 drmkaud - ok
19:45:23.0887 2272 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:45:23.0918 2272 DXGKrnl - ok
19:45:24.0090 2272 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:45:24.0121 2272 ebdrv - ok
19:45:24.0230 2272 ElbyCDIO (a05fc7eca0966ebb70e4d17b855a853b) C:\Windows\system32\Drivers\ElbyCDIO.sys
19:45:24.0246 2272 ElbyCDIO - ok
19:45:24.0277 2272 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:45:24.0308 2272 elxstor - ok
19:45:24.0402 2272 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:45:24.0418 2272 ErrDev - ok
19:45:24.0511 2272 ETD (438021c3f32f30e227d0f5dfd118b7b1) C:\Windows\system32\DRIVERS\ETD.sys
19:45:24.0527 2272 ETD - ok
19:45:24.0558 2272 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:45:24.0605 2272 exfat - ok
19:45:24.0683 2272 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:45:24.0745 2272 fastfat - ok
19:45:24.0761 2272 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:45:24.0776 2272 fdc - ok
19:45:24.0870 2272 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:45:24.0886 2272 FileInfo - ok
19:45:24.0901 2272 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:45:24.0948 2272 Filetrace - ok
19:45:25.0026 2272 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:45:25.0057 2272 flpydisk - ok
19:45:25.0088 2272 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:45:25.0104 2272 FltMgr - ok
19:45:25.0198 2272 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:45:25.0213 2272 FsDepends - ok
19:45:25.0244 2272 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:45:25.0244 2272 Fs_Rec - ok
19:45:25.0338 2272 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:45:25.0369 2272 fvevol - ok
19:45:25.0385 2272 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:45:25.0400 2272 gagp30kx - ok
19:45:25.0494 2272 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:45:25.0510 2272 hcw85cir - ok
19:45:25.0556 2272 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:45:25.0588 2272 HdAudAddService - ok
19:45:25.0697 2272 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:45:25.0728 2272 HDAudBus - ok
19:45:25.0806 2272 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:45:25.0837 2272 HidBatt - ok
19:45:25.0853 2272 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:45:25.0868 2272 HidBth - ok
19:45:25.0868 2272 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:45:25.0884 2272 HidIr - ok
19:45:25.0931 2272 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:45:25.0931 2272 HidUsb - ok
19:45:26.0040 2272 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:45:26.0056 2272 HpSAMD - ok
19:45:26.0165 2272 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:45:26.0227 2272 HTTP - ok
19:45:26.0321 2272 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:45:26.0336 2272 hwpolicy - ok
19:45:26.0368 2272 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
19:45:26.0383 2272 i8042prt - ok
19:45:26.0492 2272 iaStor (a5f72bb0d024e7e463344105be613ae4) C:\Windows\system32\DRIVERS\iaStor.sys
19:45:26.0524 2272 iaStor - ok
19:45:26.0633 2272 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys
19:45:26.0664 2272 iaStorV - ok
19:45:26.0867 2272 igfx (a87261ef1546325b559374f5689cf5bc) C:\Windows\system32\DRIVERS\igdkmd64.sys
19:45:26.0945 2272 igfx - ok
19:45:27.0116 2272 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:45:27.0132 2272 iirsp - ok
19:45:27.0179 2272 Impcd (dd587a55390ed2295bce6d36ad567da9) C:\Windows\system32\DRIVERS\Impcd.sys
19:45:27.0194 2272 Impcd - ok
19:45:27.0350 2272 IntcAzAudAddService (0adf714079ae174a39d69036143e4c50) C:\Windows\system32\drivers\RTKVHD64.sys
19:45:27.0397 2272 IntcAzAudAddService - ok
19:45:27.0506 2272 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:45:27.0522 2272 intelide - ok
19:45:27.0616 2272 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:45:27.0631 2272 intelppm - ok
19:45:27.0678 2272 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:45:27.0709 2272 IpFilterDriver - ok
19:45:27.0818 2272 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:45:27.0834 2272 IPMIDRV - ok
19:45:27.0928 2272 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:45:27.0990 2272 IPNAT - ok
19:45:27.0990 2272 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:45:28.0006 2272 IRENUM - ok
19:45:28.0037 2272 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:45:28.0052 2272 isapnp - ok
19:45:28.0162 2272 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:45:28.0193 2272 iScsiPrt - ok
19:45:28.0286 2272 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
19:45:28.0302 2272 kbdclass - ok
19:45:28.0411 2272 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
19:45:28.0427 2272 kbdhid - ok
19:45:28.0474 2272 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys
19:45:28.0489 2272 KSecDD - ok
19:45:28.0583 2272 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys
19:45:28.0598 2272 KSecPkg - ok
19:45:28.0630 2272 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:45:28.0661 2272 ksthunk - ok
19:45:28.0754 2272 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:45:28.0817 2272 lltdio - ok
19:45:28.0832 2272 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:45:28.0848 2272 LSI_FC - ok
19:45:28.0942 2272 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:45:28.0957 2272 LSI_SAS - ok
19:45:28.0988 2272 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:45:28.0988 2272 LSI_SAS2 - ok
19:45:29.0082 2272 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:45:29.0113 2272 LSI_SCSI - ok
19:45:29.0129 2272 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:45:29.0176 2272 luafv - ok
19:45:29.0269 2272 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:45:29.0285 2272 megasas - ok
19:45:29.0316 2272 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:45:29.0332 2272 MegaSR - ok
19:45:29.0425 2272 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:45:29.0488 2272 Modem - ok
19:45:29.0503 2272 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:45:29.0519 2272 monitor - ok
19:45:29.0628 2272 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:45:29.0644 2272 mouclass - ok
19:45:29.0737 2272 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:45:29.0753 2272 mouhid - ok
19:45:29.0800 2272 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:45:29.0815 2272 mountmgr - ok
19:45:29.0909 2272 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:45:29.0940 2272 mpio - ok
19:45:29.0956 2272 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:45:30.0002 2272 mpsdrv - ok
19:45:30.0096 2272 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:45:30.0127 2272 MRxDAV - ok
19:45:30.0158 2272 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:45:30.0174 2272 mrxsmb - ok
19:45:30.0268 2272 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:45:30.0299 2272 mrxsmb10 - ok
19:45:30.0330 2272 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:45:30.0330 2272 mrxsmb20 - ok
19:45:30.0439 2272 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:45:30.0455 2272 msahci - ok
19:45:30.0548 2272 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:45:30.0580 2272 msdsm - ok
19:45:30.0611 2272 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:45:30.0658 2272 Msfs - ok
19:45:30.0751 2272 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:45:30.0798 2272 mshidkmdf - ok
19:45:30.0814 2272 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:45:30.0829 2272 msisadrv - ok
19:45:30.0923 2272 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:45:30.0985 2272 MSKSSRV - ok
19:45:31.0001 2272 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:45:31.0032 2272 MSPCLOCK - ok
19:45:31.0126 2272 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:45:31.0172 2272 MSPQM - ok
19:45:31.0219 2272 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:45:31.0250 2272 MsRPC - ok
19:45:31.0344 2272 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:45:31.0375 2272 mssmbios - ok
19:45:31.0453 2272 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:45:31.0516 2272 MSTEE - ok
19:45:31.0531 2272 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:45:31.0531 2272 MTConfig - ok
19:45:31.0547 2272 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:45:31.0562 2272 Mup - ok
19:45:31.0672 2272 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:45:31.0703 2272 NativeWifiP - ok
19:45:31.0750 2272 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:45:31.0781 2272 NDIS - ok
19:45:31.0890 2272 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:45:31.0937 2272 NdisCap - ok
19:45:31.0952 2272 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:45:31.0999 2272 NdisTapi - ok
19:45:32.0077 2272 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:45:32.0140 2272 Ndisuio - ok
19:45:32.0218 2272 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:45:32.0280 2272 NdisWan - ok
19:45:32.0311 2272 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:45:32.0358 2272 NDProxy - ok
19:45:32.0452 2272 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:45:32.0514 2272 NetBIOS - ok
19:45:32.0545 2272 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:45:32.0576 2272 NetBT - ok
19:45:32.0686 2272 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:45:32.0701 2272 nfrd960 - ok
19:45:32.0732 2272 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:45:32.0764 2272 Npfs - ok
19:45:32.0857 2272 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:45:32.0920 2272 nsiproxy - ok
19:45:32.0982 2272 Ntfs (05d78aa5cb5f3f5c31160bdb955d0b7c) C:\Windows\system32\drivers\Ntfs.sys
19:45:33.0029 2272 Ntfs - ok
19:45:33.0122 2272 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:45:33.0169 2272 Null - ok
19:45:33.0200 2272 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys
19:45:33.0216 2272 nvraid - ok
19:45:33.0310 2272 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys
19:45:33.0341 2272 nvstor - ok
19:45:33.0434 2272 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:45:33.0466 2272 nv_agp - ok
19:45:33.0575 2272 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:45:33.0590 2272 ohci1394 - ok
19:45:33.0700 2272 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:45:33.0715 2272 Parport - ok
19:45:33.0746 2272 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:45:33.0762 2272 partmgr - ok
19:45:33.0871 2272 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:45:33.0887 2272 pci - ok
19:45:33.0902 2272 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:45:33.0918 2272 pciide - ok
19:45:34.0012 2272 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:45:34.0027 2272 pcmcia - ok
19:45:34.0058 2272 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:45:34.0058 2272 pcw - ok
19:45:34.0168 2272 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:45:34.0214 2272 PEAUTH - ok
19:45:34.0355 2272 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:45:34.0402 2272 PptpMiniport - ok
19:45:34.0495 2272 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:45:34.0511 2272 Processor - ok
19:45:34.0558 2272 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:45:34.0604 2272 Psched - ok
19:45:34.0729 2272 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:45:34.0760 2272 ql2300 - ok
19:45:34.0870 2272 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:45:34.0885 2272 ql40xx - ok
19:45:34.0916 2272 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:45:34.0932 2272 QWAVEdrv - ok
19:45:35.0010 2272 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:45:35.0057 2272 RasAcd - ok
19:45:35.0088 2272 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:45:35.0119 2272 RasAgileVpn - ok
19:45:35.0213 2272 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:45:35.0260 2272 Rasl2tp - ok
19:45:35.0306 2272 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:45:35.0369 2272 RasPppoe - ok
19:45:35.0431 2272 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:45:35.0494 2272 RasSstp - ok
19:45:35.0540 2272 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:45:35.0603 2272 rdbss - ok
19:45:35.0665 2272 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:45:35.0696 2272 rdpbus - ok
19:45:35.0712 2272 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:45:35.0759 2272 RDPCDD - ok
19:45:35.0837 2272 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:45:35.0884 2272 RDPENCDD - ok
19:45:35.0915 2272 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:45:35.0962 2272 RDPREFMP - ok
19:45:36.0040 2272 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
19:45:36.0102 2272 RDPWD - ok
19:45:36.0196 2272 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:45:36.0227 2272 rdyboost - ok
19:45:36.0258 2272 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
19:45:36.0274 2272 RFCOMM - ok
19:45:36.0367 2272 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:45:36.0430 2272 rspndr - ok
19:45:36.0508 2272 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:45:36.0539 2272 RTL8167 - ok
19:45:36.0586 2272 rtport (4ca0dba9e224473d664c25e411f5a3bd) C:\Windows\SysWOW64\drivers\rtport.sys
19:45:36.0601 2272 rtport - ok
19:45:36.0695 2272 SABI (62db6cc4b0818f1b5f3441241b098f12) C:\Windows\system32\Drivers\SABI.sys
19:45:36.0710 2272 SABI - ok
19:45:36.0742 2272 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:45:36.0757 2272 sbp2port - ok
19:45:36.0866 2272 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:45:36.0929 2272 scfilter - ok
19:45:36.0976 2272 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:45:37.0007 2272 secdrv - ok
19:45:37.0085 2272 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:45:37.0116 2272 Serenum - ok
19:45:37.0147 2272 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:45:37.0163 2272 Serial - ok
19:45:37.0256 2272 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:45:37.0272 2272 sermouse - ok
19:45:37.0334 2272 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:45:37.0350 2272 sffdisk - ok
19:45:37.0428 2272 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:45:37.0459 2272 sffp_mmc - ok
19:45:37.0553 2272 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:45:37.0584 2272 sffp_sd - ok
19:45:37.0678 2272 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:45:37.0693 2272 sfloppy - ok
19:45:37.0724 2272 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:45:37.0724 2272 SiSRaid2 - ok
19:45:37.0818 2272 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:45:37.0834 2272 SiSRaid4 - ok
19:45:37.0943 2272 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:45:37.0990 2272 Smb - ok
19:45:38.0099 2272 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:45:38.0114 2272 spldr - ok
19:45:38.0224 2272 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:45:38.0255 2272 srv - ok
19:45:38.0364 2272 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:45:38.0395 2272 srv2 - ok
19:45:38.0489 2272 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:45:38.0520 2272 srvnet - ok
19:45:38.0551 2272 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:45:38.0567 2272 stexstor - ok
19:45:38.0660 2272 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:45:38.0676 2272 swenum - ok
19:45:38.0816 2272 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:45:38.0863 2272 Tcpip - ok
19:45:39.0004 2272 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:45:39.0050 2272 TCPIP6 - ok
19:45:39.0144 2272 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:45:39.0191 2272 tcpipreg - ok
19:45:39.0206 2272 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:45:39.0253 2272 TDPIPE - ok
19:45:39.0331 2272 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
19:45:39.0378 2272 TDTCP - ok
19:45:39.0409 2272 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:45:39.0456 2272 tdx - ok
19:45:39.0550 2272 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:45:39.0565 2272 TermDD - ok
19:45:39.0612 2272 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:45:39.0674 2272 tssecsrv - ok
19:45:39.0768 2272 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:45:39.0784 2272 TsUsbFlt - ok
19:45:39.0830 2272 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:45:39.0862 2272 tunnel - ok
19:45:39.0971 2272 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:45:39.0986 2272 uagp35 - ok
19:45:40.0080 2272 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:45:40.0142 2272 udfs - ok
19:45:40.0174 2272 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:45:40.0189 2272 uliagpkx - ok
19:45:40.0283 2272 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:45:40.0314 2272 umbus - ok
19:45:40.0345 2272 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:45:40.0361 2272 UmPass - ok
19:45:40.0454 2272 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys
19:45:40.0470 2272 usbccgp - ok
19:45:40.0501 2272 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:45:40.0517 2272 usbcir - ok
19:45:40.0626 2272 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\drivers\usbehci.sys
19:45:40.0642 2272 usbehci - ok
19:45:40.0751 2272 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\drivers\usbhub.sys
19:45:40.0782 2272 usbhub - ok
19:45:40.0876 2272 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys
19:45:40.0891 2272 usbohci - ok
19:45:40.0985 2272 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:45:41.0016 2272 usbprint - ok
19:45:41.0047 2272 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:45:41.0063 2272 usbscan - ok
19:45:41.0172 2272 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:45:41.0203 2272 USBSTOR - ok
19:45:41.0297 2272 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\drivers\usbuhci.sys
19:45:41.0328 2272 usbuhci - ok
19:45:41.0422 2272 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
19:45:41.0453 2272 usbvideo - ok
19:45:41.0562 2272 VClone (fd911873c0bb6945fa38c16e9a2b58f9) C:\Windows\system32\DRIVERS\VClone.sys
19:45:41.0578 2272 VClone - ok
19:45:41.0609 2272 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:45:41.0624 2272 vdrvroot - ok
19:45:41.0702 2272 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:45:41.0734 2272 vga - ok
19:45:41.0827 2272 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:45:41.0890 2272 VgaSave - ok
19:45:41.0983 2272 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:45:41.0999 2272 vhdmp - ok
19:45:42.0108 2272 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:45:42.0124 2272 viaide - ok
19:45:42.0233 2272 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:45:42.0264 2272 volmgr - ok
19:45:42.0358 2272 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:45:42.0389 2272 volmgrx - ok
19:45:42.0436 2272 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:45:42.0451 2272 volsnap - ok
19:45:42.0545 2272 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:45:42.0560 2272 vsmraid - ok
19:45:42.0576 2272 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
19:45:42.0592 2272 vwifibus - ok
19:45:42.0701 2272 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
19:45:42.0732 2272 vwififlt - ok
19:45:42.0826 2272 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:45:42.0857 2272 WacomPen - ok
19:45:42.0950 2272 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:45:43.0013 2272 WANARP - ok
19:45:43.0013 2272 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:45:43.0044 2272 Wanarpv6 - ok
19:45:43.0091 2272 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:45:43.0091 2272 Wd - ok
19:45:43.0200 2272 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:45:43.0231 2272 Wdf01000 - ok
19:45:43.0340 2272 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:45:43.0403 2272 WfpLwf - ok
19:45:43.0418 2272 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:45:43.0434 2272 WIMMount - ok
19:45:43.0528 2272 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:45:43.0559 2272 WinUsb - ok
19:45:43.0606 2272 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:45:43.0606 2272 WmiAcpi - ok
19:45:43.0699 2272 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:45:43.0746 2272 ws2ifsl - ok
19:45:43.0809 2272 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:45:43.0840 2272 WudfPf - ok
19:45:43.0933 2272 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:45:43.0980 2272 WUDFRd - ok
19:45:44.0089 2272 yukonw7 (64f88af327aa74e03658ae32b48ccb8b) C:\Windows\system32\DRIVERS\yk62x64.sys
19:45:44.0121 2272 yukonw7 - ok
19:45:44.0152 2272 MBR (0x1B8) (2e5debb2116b3417023e0d6562d7ed07) \Device\Harddisk0\DR0
19:45:44.0448 2272 \Device\Harddisk0\DR0 - ok
19:45:44.0464 2272 Boot (0x1200) (98fa392a7f5f4a5eae8d5aa6861452c8) \Device\Harddisk0\DR0\Partition0
19:45:44.0464 2272 \Device\Harddisk0\DR0\Partition0 - ok
19:45:44.0495 2272 Boot (0x1200) (cc75d30f2f0698386f4ed95d4252d4b1) \Device\Harddisk0\DR0\Partition1
19:45:44.0495 2272 \Device\Harddisk0\DR0\Partition1 - ok
19:45:44.0511 2272 Boot (0x1200) (605c74d0e2f457ca77f95b0a7a191e53) \Device\Harddisk0\DR0\Partition2
19:45:44.0511 2272 \Device\Harddisk0\DR0\Partition2 - ok
19:45:44.0511 2272 ============================================================
19:45:44.0511 2272 Scan finished
19:45:44.0511 2272 ============================================================
19:45:44.0526 2076 Detected object count: 0
19:45:44.0526 2076 Actual detected object count: 0
19:45:55.0290 3176 Deinitialize success

Alt 18.11.2011, 21:33   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte cofi.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________

__________________

Alt 18.11.2011, 22:54   #18
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Hier ist die Combfix-log:
Combofix Logfile:
Code:
ATTFilter
ComboFix 11-11-18.02 - Anne-Sophie 18.11.2011  22:46:42.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.3946.2819 [GMT 1:00]
ausgeführt von:: c:\users\Anne-Sophie\Desktop\ComboFix.exe
AV: McAfee  Anti-Virus und Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
FW: McAfee  Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
SP: McAfee  Anti-Virus und Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\FullRemove.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2011-10-18 bis 2011-11-18  ))))))))))))))))))))))))))))))
.
.
2011-11-18 21:49 . 2011-11-18 21:49	--------	d-----w-	c:\users\Default\AppData\Local\temp
2011-11-18 18:04 . 2011-11-18 18:04	69000	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{E45DDA36-A328-4172-89A4-93F888AEEF98}\offreg.dll
2011-11-18 18:00 . 2011-11-18 18:00	--------	d-----w-	C:\_OTL
2011-11-18 07:28 . 2011-10-18 00:27	8570192	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{E45DDA36-A328-4172-89A4-93F888AEEF98}\mpengine.dll
2011-11-17 12:18 . 2011-11-17 12:18	--------	d-----w-	c:\program files (x86)\ESET
2011-11-17 11:07 . 2011-05-24 17:14	270720	------w-	c:\windows\system32\MpSigStub.exe
2011-11-17 10:39 . 2011-11-17 10:39	--------	d-----w-	c:\users\Anne-Sophie\AppData\Roaming\Malwarebytes
2011-11-17 10:38 . 2011-11-17 10:38	--------	d-----w-	c:\programdata\Malwarebytes
2011-11-17 10:38 . 2011-08-31 16:00	25416	----a-w-	c:\windows\system32\drivers\mbam.sys
2011-11-17 10:38 . 2011-11-17 17:48	--------	d-----w-	c:\program files (x86)\Malwarebytes' Anti-Malware
2011-11-10 17:10 . 2011-11-10 17:10	--------	d-----w-	c:\users\Anne-Sophie\AppData\Local\Apple Computer
2011-11-10 17:10 . 2011-11-14 21:17	--------	dc----w-	c:\windows\system32\DRVSTORE
2011-11-10 17:09 . 2011-11-14 21:19	--------	d-----w-	c:\programdata\Apple Computer
2011-11-10 17:09 . 2011-11-10 17:10	--------	d-----w-	c:\programdata\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-11-10 17:07 . 2011-11-10 17:07	--------	d-----w-	c:\users\Anne-Sophie\AppData\Local\Apple
2011-11-10 17:06 . 2011-11-14 21:19	--------	d-----w-	c:\program files (x86)\Common Files\Apple
2011-11-10 17:06 . 2011-11-10 17:07	--------	d-----w-	c:\programdata\Apple
2011-11-10 13:53 . 2011-11-10 18:13	--------	d-----w-	c:\users\Anne-Sophie\AppData\Local\Audible
2011-11-10 13:51 . 2003-03-18 20:20	1060864	------w-	c:\windows\SysWow64\mfc71.dll
2011-11-10 13:51 . 2003-03-18 19:14	499712	------w-	c:\windows\SysWow64\msvcp71.dll
2011-11-10 13:51 . 2003-02-21 03:42	348160	------w-	c:\windows\SysWow64\msvcr71.dll
2011-11-10 13:51 . 2001-08-17 21:43	24576	------w-	c:\windows\SysWow64\msxml3a.dll
2011-11-09 14:12 . 2011-10-01 05:45	886784	----a-w-	c:\program files\Common Files\System\wab32.dll
2011-11-09 14:12 . 2011-10-01 04:37	708608	----a-w-	c:\program files (x86)\Common Files\System\wab32.dll
2011-11-09 14:12 . 2011-09-29 16:29	1923952	----a-w-	c:\windows\system32\drivers\tcpip.sys
2011-11-09 14:12 . 2011-09-29 04:03	3144704	----a-w-	c:\windows\system32\win32k.sys
2011-11-09 09:07 . 2011-11-09 09:07	--------	d-----w-	c:\program files (x86)\Cisco Systems
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-18 05:15 . 2011-06-05 22:09	414368	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-08-27 05:37 . 2011-10-12 13:29	861696	----a-w-	c:\windows\system32\oleaut32.dll
2011-08-27 05:37 . 2011-10-12 13:29	331776	----a-w-	c:\windows\system32\oleacc.dll
2011-08-27 04:26 . 2011-10-12 13:29	571904	----a-w-	c:\windows\SysWow64\oleaut32.dll
2011-08-27 04:26 . 2011-10-12 13:29	233472	----a-w-	c:\windows\SysWow64\oleacc.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	94208	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	94208	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	94208	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"VirtualCloneDrive"="c:\program files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-09-07 37296]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2011-9-22 113664]
HP Digital Imaging Monitor.lnk - d:\programme\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"HideSCAHealth"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages	REG_MULTI_SZ   	kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R4 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
R4 Rezip;Rezip;c:\windows\SysWOW64\Rezip.exe [2009-03-05 311296]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
S1 SABI;SAMSUNG Kernel Driver For Windows 7;c:\windows\system32\Drivers\SABI.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - 03372228
*Deregistered* - 03372228
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt	REG_MULTI_SZ   	hpqcxs08 hpqddsvc
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	97792	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	97792	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	97792	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36	97792	----a-w-	c:\users\Anne-Sophie\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://samsung.msn.com
mStart Page = hxxp://samsung.msn.com
IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 83.169.184.33 192.168.0.1
FF - ProfilePath - c:\users\Anne-Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\d51rcdsi.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/webhp?cplp=1308837846503
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2011-11-18  22:51:17
ComboFix-quarantined-files.txt  2011-11-18 21:51
.
Vor Suchlauf: 9 Verzeichnis(se), 144.762.597.376 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 144.269.283.328 Bytes frei
.
- - End Of File - - E8046B29DDF4BB48E52852AF97FC90DA
         
--- --- ---
__________________

Alt 20.11.2011, 12:14   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe Vista und Win7 User aswMBR per Rechtsklick "als Administrator ausführen"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen) Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort. Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 20.11.2011, 18:48   #20
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Hallo Arne,

entschuldige die späte Antwort. Das ist das log:

aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-20 18:07:11
-----------------------------
18:07:11.543 OS Version: Windows x64 6.1.7601 Service Pack 1
18:07:11.543 Number of processors: 4 586 0x2505
18:07:11.544 ComputerName: ACHIM UserName:
18:07:12.349 Initialize success
18:15:00.998 AVAST engine defs: 11112000
18:15:16.174 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
18:15:16.179 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
18:15:16.201 Disk 0 MBR read successfully
18:15:16.206 Disk 0 MBR scan
18:15:16.231 Disk 0 unknown MBR code
18:15:16.237 Service scanning
18:15:17.662 Modules scanning
18:15:17.668 Disk 0 trace - called modules:
18:15:17.701 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
18:15:17.707 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80045f1060]
18:15:17.715 3 CLASSPNP.SYS[fffff88001ba643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004317050]
18:15:18.392 AVAST engine scan C:\Windows
18:15:21.614 AVAST engine scan C:\Windows\system32
18:16:49.549 AVAST engine scan C:\Windows\system32\drivers
18:16:59.116 AVAST engine scan C:\Users\Anne-Sophie
18:21:14.096 AVAST engine scan C:\ProgramData
18:22:08.992 Scan finished successfully
18:45:45.334 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
18:45:45.334 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


Alt 21.11.2011, 10:05   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.

Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.
Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
--> Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG

Alt 21.11.2011, 11:49   #22
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Hallo Arne,

hat alles super geklappt, nix verloren gegangen!

aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-20 18:07:11
-----------------------------
18:07:11.543 OS Version: Windows x64 6.1.7601 Service Pack 1
18:07:11.543 Number of processors: 4 586 0x2505
18:07:11.544 ComputerName: ACHIM UserName:
18:07:12.349 Initialize success
18:15:00.998 AVAST engine defs: 11112000
18:15:16.174 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
18:15:16.179 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
18:15:16.201 Disk 0 MBR read successfully
18:15:16.206 Disk 0 MBR scan
18:15:16.231 Disk 0 unknown MBR code
18:15:16.237 Service scanning
18:15:17.662 Modules scanning
18:15:17.668 Disk 0 trace - called modules:
18:15:17.701 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
18:15:17.707 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80045f1060]
18:15:17.715 3 CLASSPNP.SYS[fffff88001ba643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004317050]
18:15:18.392 AVAST engine scan C:\Windows
18:15:21.614 AVAST engine scan C:\Windows\system32
18:16:49.549 AVAST engine scan C:\Windows\system32\drivers
18:16:59.116 AVAST engine scan C:\Users\Anne-Sophie
18:21:14.096 AVAST engine scan C:\ProgramData
18:22:08.992 Scan finished successfully
18:45:45.334 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
18:45:45.334 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 11:35:05
-----------------------------
11:35:05.437 OS Version: Windows x64 6.1.7601 Service Pack 1
11:35:05.437 Number of processors: 4 586 0x2505
11:35:05.437 ComputerName: ACHIM UserName:
11:35:06.498 Initialize success
11:35:13.378 AVAST engine defs: 11112000
11:35:35.807 Verifying
11:35:45.822 Disk 0 Windows 601 MBR fixed successfully
11:43:42.637 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:43:42.668 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 11:35:05
-----------------------------
11:35:05.437 OS Version: Windows x64 6.1.7601 Service Pack 1
11:35:05.437 Number of processors: 4 586 0x2505
11:35:05.437 ComputerName: ACHIM UserName:
11:35:06.498 Initialize success
11:35:13.378 AVAST engine defs: 11112000
11:35:35.807 Verifying
11:35:45.822 Disk 0 Windows 601 MBR fixed successfully
11:43:42.637 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:43:42.668 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"
11:44:53.681 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:44:53.681 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"

Alt 21.11.2011, 11:50   #23
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



oh, ich hab wohl zwei mal gespeichert.
Hatte nicht gemerkt, dass alles in einer txt.datei gespeichert wird.

Alt 21.11.2011, 12:09   #24
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Und was genau solltest du nach dem Fix machen? Ich vermisse da noch was
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.11.2011, 12:30   #25
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



huch
wer lesen kann ist klar im Vorteil!

Alt 21.11.2011, 12:34   #26
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Update:

aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-20 18:07:11
-----------------------------
18:07:11.543 OS Version: Windows x64 6.1.7601 Service Pack 1
18:07:11.543 Number of processors: 4 586 0x2505
18:07:11.544 ComputerName: ACHIM UserName:
18:07:12.349 Initialize success
18:15:00.998 AVAST engine defs: 11112000
18:15:16.174 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
18:15:16.179 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
18:15:16.201 Disk 0 MBR read successfully
18:15:16.206 Disk 0 MBR scan
18:15:16.231 Disk 0 unknown MBR code
18:15:16.237 Service scanning
18:15:17.662 Modules scanning
18:15:17.668 Disk 0 trace - called modules:
18:15:17.701 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
18:15:17.707 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80045f1060]
18:15:17.715 3 CLASSPNP.SYS[fffff88001ba643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004317050]
18:15:18.392 AVAST engine scan C:\Windows
18:15:21.614 AVAST engine scan C:\Windows\system32
18:16:49.549 AVAST engine scan C:\Windows\system32\drivers
18:16:59.116 AVAST engine scan C:\Users\Anne-Sophie
18:21:14.096 AVAST engine scan C:\ProgramData
18:22:08.992 Scan finished successfully
18:45:45.334 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
18:45:45.334 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 11:35:05
-----------------------------
11:35:05.437 OS Version: Windows x64 6.1.7601 Service Pack 1
11:35:05.437 Number of processors: 4 586 0x2505
11:35:05.437 ComputerName: ACHIM UserName:
11:35:06.498 Initialize success
11:35:13.378 AVAST engine defs: 11112000
11:35:35.807 Verifying
11:35:45.822 Disk 0 Windows 601 MBR fixed successfully
11:43:42.637 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:43:42.668 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 11:35:05
-----------------------------
11:35:05.437 OS Version: Windows x64 6.1.7601 Service Pack 1
11:35:05.437 Number of processors: 4 586 0x2505
11:35:05.437 ComputerName: ACHIM UserName:
11:35:06.498 Initialize success
11:35:13.378 AVAST engine defs: 11112000
11:35:35.807 Verifying
11:35:45.822 Disk 0 Windows 601 MBR fixed successfully
11:43:42.637 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:43:42.668 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"
11:44:53.681 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
11:44:53.681 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"


aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 12:31:30
-----------------------------
12:31:30.428 OS Version: Windows x64 6.1.7601 Service Pack 1
12:31:30.428 Number of processors: 4 586 0x2505
12:31:30.428 ComputerName: ACHIM UserName:
12:31:31.271 Initialize success
12:31:35.436 AVAST engine defs: 11112000
12:31:55.560 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"

Alt 21.11.2011, 13:04   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Mach doch bitte einfach ein neues Logfile und poste nicht das was du zuvor schon gepostet hast
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.11.2011, 13:10   #28
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Er macht die logs immer in ein und die selbe textdatei.

der letzte Absatz im obigen log ist nach dem Neustart dazu gekommen.
Hab ich schon wieder was falsch gemacht?

Alt 21.11.2011, 14:19   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



Zitat:
Er macht die logs immer in ein und die selbe textdatei.
Und? Ob das in die bestehende angehangen oder in eine neue Datei geschrieben wird ist doch irrelevant!
Du hast aswMBR fasch ausgeführt halt dich doch einfach mal an die Anleitung!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe Vista und Win7 User aswMBR per Rechtsklick "als Administrator ausführen"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen) Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort. Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.11.2011, 15:25   #30
Annemaus
 
Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Standard

Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG



aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 15:12:12
-----------------------------
15:12:12.554 OS Version: Windows x64 6.1.7601 Service Pack 1
15:12:12.554 Number of processors: 4 586 0x2505
15:12:12.554 ComputerName: ACHIM UserName:
15:12:13.022 Initialize success
15:12:15.923 AVAST engine defs: 11112000
15:12:30.322 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
15:12:30.322 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
15:12:30.338 Disk 0 MBR read successfully
15:12:30.338 Disk 0 MBR scan
15:12:30.338 Disk 0 Windows 7 default MBR code
15:12:30.353 Service scanning
15:12:31.461 Modules scanning
15:12:31.461 Disk 0 trace - called modules:
15:12:31.476 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
15:12:31.492 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80045f3060]
15:12:31.492 3 CLASSPNP.SYS[fffff88001b9643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004318050]
15:12:32.225 AVAST engine scan C:\Windows
15:12:35.423 AVAST engine scan C:\Windows\system32
15:14:02.581 AVAST engine scan C:\Windows\system32\drivers
15:14:12.143 AVAST engine scan C:\Users\Anne-Sophie
15:18:59.714 AVAST engine scan C:\ProgramData
15:19:53.644 Scan finished successfully
15:23:10.283 Disk 0 MBR has been saved successfully to "C:\Users\Anne-Sophie\Desktop\MBR.dat"
15:23:10.283 The log file has been saved successfully to "C:\Users\Anne-Sophie\Desktop\aswMBR.txt"

Antwort

Themen zu Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG
angezeigt, automatisch, dateien, desktop, entfernt, erneut, falsch, fehlermeldung, firefox, forum, freunde, interne, kopieren, mcafee, nicht mehr, nutzen, probleme, proxy-server, rechner, trojaner, verändert, warnt, warnung, woche, zusammen




Ähnliche Themen: Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG


  1. Facebook-Trojaner
    Plagegeister aller Art und deren Bekämpfung - 05.10.2012 (8)
  2. Facebook-Trojaner
    Plagegeister aller Art und deren Bekämpfung - 17.01.2012 (6)
  3. Facebook-Trojaner ?
    Log-Analyse und Auswertung - 16.01.2012 (9)
  4. Facebook Malware durch: http://www.offisense.co.il/lang/images.php?facebookimage=...6704
    Plagegeister aller Art und deren Bekämpfung - 29.11.2011 (3)
  5. Facebook Trojaner
    Log-Analyse und Auswertung - 22.11.2011 (3)
  6. Facebook Trojaner und Co. KG
    Plagegeister aller Art und deren Bekämpfung - 15.11.2011 (30)
  7. Facebook Virus Vinamost - Verzweiflung pur...
    Plagegeister aller Art und deren Bekämpfung - 14.11.2011 (3)
  8. Facebook Trojaner
    Log-Analyse und Auswertung - 10.11.2011 (2)
  9. Trojaner von Facebook
    Plagegeister aller Art und deren Bekämpfung - 31.10.2011 (1)
  10. Facebook Trojaner
    Log-Analyse und Auswertung - 26.10.2011 (3)
  11. Facebookwurm allzedax http://www.allezdax.com/images/img.php?image=IMG0085976479501.JPG
    Log-Analyse und Auswertung - 16.10.2011 (6)
  12. Facebook Trojaner .allezdax.com/images
    Plagegeister aller Art und deren Bekämpfung - 07.10.2011 (15)
  13. Facebook Trojaner
    Log-Analyse und Auswertung - 31.08.2011 (17)
  14. Facebook Trojaner
    Plagegeister aller Art und deren Bekämpfung - 28.08.2011 (5)
  15. Zuerst Facebook-Virus-Neu aufgesetzt,cpu Auslastung 100%,bei Facebook-Games extrem lahm!
    Log-Analyse und Auswertung - 03.02.2011 (11)
  16. Skype - Facebook Virus foto :P h**p://facebook.twitterbizzer.com/member_profile.php
    Plagegeister aller Art und deren Bekämpfung - 27.08.2010 (6)
  17. MSN Virus - http://facebook.spaceb-blogs.com/images/PHOTO-JPG-20100512.SCR -
    Plagegeister aller Art und deren Bekämpfung - 17.05.2010 (1)

Zum Thema Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG - Das ging schnell :-) Hier ist die Text-datei: 19:43:54.0031 3788 TDSS rootkit removing tool 2.6.19.0 Nov 16 2011 12:18:50 19:43:54.0187 3788 ============================================================ 19:43:54.0187 3788 Current date / time: 2011/11/18 19:43:54.0187 - Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG...
Archiv
Du betrachtest: Facebook-Trojaner: vinamost.net/images/facebook/get.php?image=IMG39348819.JPG auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.