![]() |
|
Plagegeister aller Art und deren Bekämpfung: TR/Small.FI, TR/ATRAPS.Gen, TR/ATRAPS.GEN2 und W32/Patched.UA in "C:\Windows\System32\services.exe"Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #3 |
| ![]() TR/Small.FI, TR/ATRAPS.Gen, TR/ATRAPS.GEN2 und W32/Patched.UA in "C:\Windows\System32\services.exe" Hallo Marius,
__________________danke, dass Du dich meines Problems annimmst. Habe beide genannten Programme ihre Scans machen lassen - beide liefen problemlos beim ersten Mal durch. Hier die Logs: TDSSKiller: Code:
ATTFilter 16:24:58.0151 4112 TDSS rootkit removing tool 2.7.42.0 Jun 25 2012 21:18:44 16:24:58.0353 4112 ============================================================ 16:24:58.0353 4112 Current date / time: 2012/06/27 16:24:58.0353 16:24:58.0353 4112 SystemInfo: 16:24:58.0353 4112 16:24:58.0353 4112 OS Version: 6.1.7601 ServicePack: 1.0 16:24:58.0353 4112 Product type: Workstation 16:24:58.0353 4112 ComputerName: LAPTOP 16:24:58.0353 4112 UserName: Birgit 16:24:58.0353 4112 Windows directory: C:\Windows 16:24:58.0353 4112 System windows directory: C:\Windows 16:24:58.0353 4112 Running under WOW64 16:24:58.0353 4112 Processor architecture: Intel x64 16:24:58.0353 4112 Number of processors: 2 16:24:58.0353 4112 Page size: 0x1000 16:24:58.0353 4112 Boot type: Normal boot 16:24:58.0353 4112 ============================================================ 16:25:01.0458 4112 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 16:25:01.0473 4112 Drive \Device\Harddisk1\DR1 - Size: 0xEC580000 (3.69 Gb), SectorSize: 0x200, Cylinders: 0x1E2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 16:25:01.0473 4112 ============================================================ 16:25:01.0473 4112 \Device\Harddisk0\DR0: 16:25:01.0473 4112 MBR partitions: 16:25:01.0473 4112 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1D4B178, BlocksNum 0x950A600 16:25:01.0489 4112 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xB2557B7, BlocksNum 0x1A1D7F0A 16:25:01.0489 4112 \Device\Harddisk1\DR1: 16:25:01.0489 4112 MBR partitions: 16:25:01.0489 4112 \Device\Harddisk1\DR1\Partition0: MBR, Type 0xB, StartLBA 0x7E, BlocksNum 0x7626E4 16:25:01.0489 4112 ============================================================ 16:25:01.0536 4112 C: <-> \Device\Harddisk0\DR0\Partition0 16:25:01.0598 4112 D: <-> \Device\Harddisk0\DR0\Partition1 16:25:01.0598 4112 ============================================================ 16:25:01.0598 4112 Initialize success 16:25:01.0598 4112 ============================================================ 16:25:35.0060 3080 ============================================================ 16:25:35.0060 3080 Scan started 16:25:35.0060 3080 Mode: Manual; TDLFS; 16:25:35.0060 3080 ============================================================ 16:25:36.0527 3080 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 16:25:36.0558 3080 1394ohci - ok 16:25:36.0605 3080 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 16:25:36.0620 3080 ACPI - ok 16:25:36.0652 3080 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 16:25:36.0652 3080 AcpiPmi - ok 16:25:36.0745 3080 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 16:25:36.0745 3080 AdobeARMservice - ok 16:25:36.0886 3080 AdobeFlashPlayerUpdateSvc (f3cd7b20b27d1772c946df993ff3635c) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 16:25:36.0901 3080 AdobeFlashPlayerUpdateSvc - ok 16:25:36.0979 3080 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 16:25:36.0995 3080 adp94xx - ok 16:25:37.0057 3080 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 16:25:37.0073 3080 adpahci - ok 16:25:37.0104 3080 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 16:25:37.0120 3080 adpu320 - ok 16:25:37.0198 3080 ADSMService (c0bf554d2277f7a4c735d475ade2e3b2) C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe 16:25:37.0213 3080 ADSMService - ok 16:25:37.0229 3080 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll 16:25:37.0229 3080 AeLookupSvc - ok 16:25:37.0291 3080 AFBAgent (fb2be0bae9b3f248080cdbf91ef16c7f) C:\Windows\system32\FBAgent.exe 16:25:37.0307 3080 AFBAgent - ok 16:25:37.0385 3080 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 16:25:37.0400 3080 AFD - ok 16:25:37.0447 3080 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 16:25:37.0447 3080 agp440 - ok 16:25:37.0478 3080 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe 16:25:37.0478 3080 ALG - ok 16:25:37.0510 3080 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 16:25:37.0525 3080 aliide - ok 16:25:37.0588 3080 AMD External Events Utility (87e226c0e11182943d28e8bec61618cd) C:\Windows\system32\atiesrxx.exe 16:25:37.0603 3080 AMD External Events Utility - ok 16:25:37.0697 3080 AMD FUEL Service - ok 16:25:37.0728 3080 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 16:25:37.0744 3080 amdide - ok 16:25:37.0775 3080 amdiox64 (6a2eeb0c4133b20773bb3dd0b7b377b4) C:\Windows\system32\DRIVERS\amdiox64.sys 16:25:37.0775 3080 amdiox64 - ok 16:25:37.0822 3080 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 16:25:37.0822 3080 AmdK8 - ok 16:25:38.0602 3080 amdkmdag (446a1aad34191665a8df6092bd8eb5a8) C:\Windows\system32\DRIVERS\atikmdag.sys 16:25:38.0898 3080 amdkmdag - ok 16:25:39.0085 3080 amdkmdap (f8f8a908fdb005a65ddf7238c814eea5) C:\Windows\system32\DRIVERS\atikmpag.sys 16:25:39.0085 3080 amdkmdap - ok 16:25:39.0132 3080 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 16:25:39.0132 3080 AmdPPM - ok 16:25:39.0148 3080 amdsata (8818a2ab90189b7ff60a24c0847f9a6b) C:\Windows\system32\DRIVERS\amdsata.sys 16:25:39.0148 3080 amdsata - ok 16:25:39.0179 3080 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 16:25:39.0194 3080 amdsbs - ok 16:25:39.0226 3080 amdxata (3c430969f097dee18d13010d678069cd) C:\Windows\system32\DRIVERS\amdxata.sys 16:25:39.0226 3080 amdxata - ok 16:25:39.0272 3080 AmUStor (9c7f164b49cadc658d1b3c575782f346) C:\Windows\system32\drivers\AmUStor.SYS 16:25:39.0272 3080 AmUStor - ok 16:25:39.0366 3080 AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 16:25:39.0366 3080 AntiVirSchedulerService - ok 16:25:39.0413 3080 AntiVirService (a489be6bb0aa1ff406b488b60542314b) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 16:25:39.0413 3080 AntiVirService - ok 16:25:39.0522 3080 AODDriver4.01 (f312fad7dbd49ed21a194ac71b497832) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys 16:25:39.0522 3080 AODDriver4.01 - ok 16:25:39.0569 3080 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 16:25:39.0569 3080 AppID - ok 16:25:39.0600 3080 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll 16:25:39.0600 3080 AppIDSvc - ok 16:25:39.0631 3080 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll 16:25:39.0631 3080 Appinfo - ok 16:25:39.0662 3080 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 16:25:39.0678 3080 arc - ok 16:25:39.0694 3080 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 16:25:39.0694 3080 arcsas - ok 16:25:39.0740 3080 AsDsm (88fbc8bebfd38566235eaa5e4dbc4e05) C:\Windows\system32\drivers\AsDsm.sys 16:25:39.0740 3080 AsDsm - ok 16:25:39.0818 3080 ASLDRService (18e5c2f937f9deb8c282df66a3761925) C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe 16:25:39.0834 3080 ASLDRService - ok 16:25:39.0865 3080 ASMMAP64 (2db34edd17d3a8da7105a19c95a3dd68) C:\Program Files\ATKGFNEX\ASMMAP64.sys 16:25:39.0865 3080 ASMMAP64 - ok 16:25:39.0912 3080 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 16:25:39.0912 3080 AsyncMac - ok 16:25:39.0943 3080 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 16:25:39.0943 3080 atapi - ok 16:25:40.0177 3080 athr (a5e770426d18f8ef332a593f3289da91) C:\Windows\system32\DRIVERS\athrx.sys 16:25:40.0271 3080 athr - ok 16:25:41.0191 3080 atikmdag (446a1aad34191665a8df6092bd8eb5a8) C:\Windows\system32\DRIVERS\atikmdag.sys 16:25:41.0332 3080 atikmdag - ok 16:25:41.0441 3080 AtiPcie (7c5d273e29dcc5505469b299c6f29163) C:\Windows\system32\DRIVERS\AtiPcie.sys 16:25:41.0441 3080 AtiPcie - ok 16:25:41.0503 3080 ATKGFNEXSrv (7c157574a181b19b9dcf5f339e25337e) C:\Program Files\ATKGFNEX\GFNEXSrv.exe 16:25:41.0503 3080 ATKGFNEXSrv - ok 16:25:41.0597 3080 atksgt (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys 16:25:41.0597 3080 atksgt - ok 16:25:41.0690 3080 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 16:25:41.0722 3080 AudioEndpointBuilder - ok 16:25:41.0737 3080 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 16:25:41.0753 3080 AudioSrv - ok 16:25:41.0815 3080 avgntflt (26e38b5a58c6c55fafbc563eeddb0867) C:\Windows\system32\DRIVERS\avgntflt.sys 16:25:41.0815 3080 avgntflt - ok 16:25:41.0846 3080 avipbb (9d1f00beff84cbbf46d7f052bc7e0565) C:\Windows\system32\DRIVERS\avipbb.sys 16:25:41.0862 3080 avipbb - ok 16:25:41.0878 3080 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys 16:25:41.0878 3080 avkmgr - ok 16:25:41.0940 3080 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll 16:25:41.0956 3080 AxInstSV - ok 16:25:42.0018 3080 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 16:25:42.0034 3080 b06bdrv - ok 16:25:42.0096 3080 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 16:25:42.0112 3080 b57nd60a - ok 16:25:42.0158 3080 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll 16:25:42.0174 3080 BDESVC - ok 16:25:42.0190 3080 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 16:25:42.0190 3080 Beep - ok 16:25:42.0221 3080 bfturboh - ok 16:25:42.0314 3080 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll 16:25:42.0361 3080 BITS - ok 16:25:42.0377 3080 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 16:25:42.0392 3080 blbdrive - ok 16:25:42.0424 3080 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 16:25:42.0439 3080 bowser - ok 16:25:42.0470 3080 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 16:25:42.0470 3080 BrFiltLo - ok 16:25:42.0486 3080 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 16:25:42.0486 3080 BrFiltUp - ok 16:25:42.0533 3080 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll 16:25:42.0548 3080 Browser - ok 16:25:42.0580 3080 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 16:25:42.0611 3080 Brserid - ok 16:25:42.0626 3080 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 16:25:42.0626 3080 BrSerWdm - ok 16:25:42.0658 3080 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 16:25:42.0673 3080 BrUsbMdm - ok 16:25:42.0704 3080 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 16:25:42.0704 3080 BrUsbSer - ok 16:25:42.0720 3080 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 16:25:42.0720 3080 BTHMODEM - ok 16:25:42.0767 3080 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll 16:25:42.0767 3080 bthserv - ok 16:25:42.0798 3080 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 16:25:42.0798 3080 cdfs - ok 16:25:42.0845 3080 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys 16:25:42.0860 3080 cdrom - ok 16:25:42.0907 3080 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 16:25:42.0907 3080 CertPropSvc - ok 16:25:42.0954 3080 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 16:25:42.0954 3080 circlass - ok 16:25:43.0001 3080 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 16:25:43.0016 3080 CLFS - ok 16:25:43.0079 3080 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 16:25:43.0126 3080 clr_optimization_v2.0.50727_32 - ok 16:25:43.0188 3080 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 16:25:43.0250 3080 clr_optimization_v2.0.50727_64 - ok 16:25:43.0266 3080 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 16:25:43.0266 3080 CmBatt - ok 16:25:43.0297 3080 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 16:25:43.0297 3080 cmdide - ok 16:25:43.0375 3080 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys 16:25:43.0406 3080 CNG - ok 16:25:43.0453 3080 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 16:25:43.0453 3080 Compbatt - ok 16:25:43.0500 3080 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys 16:25:43.0516 3080 CompositeBus - ok 16:25:43.0531 3080 COMSysApp - ok 16:25:43.0547 3080 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 16:25:43.0547 3080 crcdisk - ok 16:25:43.0609 3080 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll 16:25:43.0609 3080 CryptSvc - ok 16:25:43.0672 3080 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 16:25:43.0718 3080 DcomLaunch - ok 16:25:43.0781 3080 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll 16:25:43.0796 3080 defragsvc - ok 16:25:43.0843 3080 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 16:25:43.0843 3080 DfsC - ok 16:25:43.0890 3080 dgderdrv (867fa8b9e9e3078f68c4089904bbf4b0) C:\Windows\system32\drivers\dgderdrv.sys 16:25:43.0890 3080 dgderdrv - ok 16:25:43.0906 3080 dg_ssudbus - ok 16:25:43.0984 3080 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll 16:25:43.0999 3080 Dhcp - ok 16:25:44.0046 3080 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 16:25:44.0046 3080 discache - ok 16:25:44.0093 3080 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 16:25:44.0093 3080 Disk - ok 16:25:44.0124 3080 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll 16:25:44.0140 3080 Dnscache - ok 16:25:44.0186 3080 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll 16:25:44.0218 3080 dot3svc - ok 16:25:44.0249 3080 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll 16:25:44.0249 3080 DPS - ok 16:25:44.0280 3080 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 16:25:44.0280 3080 drmkaud - ok 16:25:44.0374 3080 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 16:25:44.0389 3080 DXGKrnl - ok 16:25:44.0436 3080 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll 16:25:44.0436 3080 EapHost - ok 16:25:44.0701 3080 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 16:25:44.0826 3080 ebdrv - ok 16:25:44.0982 3080 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe 16:25:44.0982 3080 EFS - ok 16:25:45.0091 3080 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe 16:25:45.0122 3080 ehRecvr - ok 16:25:45.0154 3080 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe 16:25:45.0154 3080 ehSched - ok 16:25:45.0278 3080 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 16:25:45.0294 3080 elxstor - ok 16:25:45.0341 3080 ENTECH64 (12c061d9f9621be916d58191872ec281) C:\Windows\system32\DRIVERS\ENTECH64.sys 16:25:45.0341 3080 ENTECH64 - ok 16:25:45.0372 3080 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 16:25:45.0372 3080 ErrDev - ok 16:25:45.0419 3080 ETD (5cd1005b9bc241c3ab8501d5fbf09fd4) C:\Windows\system32\DRIVERS\ETD.sys 16:25:45.0419 3080 ETD - ok 16:25:45.0481 3080 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll 16:25:45.0497 3080 EventSystem - ok 16:25:45.0559 3080 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 16:25:45.0575 3080 exfat - ok 16:25:45.0606 3080 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 16:25:45.0622 3080 fastfat - ok 16:25:45.0715 3080 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe 16:25:45.0762 3080 Fax - ok 16:25:45.0793 3080 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 16:25:45.0793 3080 fdc - ok 16:25:45.0824 3080 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll 16:25:45.0840 3080 fdPHost - ok 16:25:45.0856 3080 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll 16:25:45.0856 3080 FDResPub - ok 16:25:45.0887 3080 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 16:25:45.0887 3080 FileInfo - ok 16:25:45.0902 3080 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 16:25:45.0902 3080 Filetrace - ok 16:25:45.0949 3080 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 16:25:45.0949 3080 flpydisk - ok 16:25:46.0012 3080 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 16:25:46.0027 3080 FltMgr - ok 16:25:46.0136 3080 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll 16:25:46.0199 3080 FontCache - ok 16:25:46.0246 3080 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 16:25:46.0246 3080 FontCache3.0.0.0 - ok 16:25:46.0308 3080 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 16:25:46.0308 3080 FsDepends - ok 16:25:46.0339 3080 fssfltr (5814011b2f6e088e29d689b5fcd49b8f) C:\Windows\system32\DRIVERS\fssfltr.sys 16:25:46.0339 3080 fssfltr - ok 16:25:46.0464 3080 fsssvc (f6717211c1ec2cddaa81b97b0727c2e9) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe 16:25:46.0495 3080 fsssvc - ok 16:25:46.0542 3080 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys 16:25:46.0542 3080 Fs_Rec - ok 16:25:46.0604 3080 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 16:25:46.0620 3080 fvevol - ok 16:25:46.0651 3080 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 16:25:46.0651 3080 gagp30kx - ok 16:25:46.0745 3080 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll 16:25:46.0823 3080 gpsvc - ok 16:25:46.0838 3080 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 16:25:46.0854 3080 hcw85cir - ok 16:25:46.0916 3080 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 16:25:46.0932 3080 HdAudAddService - ok 16:25:46.0963 3080 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 16:25:46.0979 3080 HDAudBus - ok 16:25:46.0994 3080 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 16:25:46.0994 3080 HidBatt - ok 16:25:47.0010 3080 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 16:25:47.0026 3080 HidBth - ok 16:25:47.0041 3080 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 16:25:47.0041 3080 HidIr - ok 16:25:47.0072 3080 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll 16:25:47.0088 3080 hidserv - ok 16:25:47.0119 3080 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys 16:25:47.0119 3080 HidUsb - ok 16:25:47.0166 3080 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll 16:25:47.0166 3080 hkmsvc - ok 16:25:47.0228 3080 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll 16:25:47.0244 3080 HomeGroupListener - ok 16:25:47.0275 3080 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll 16:25:47.0291 3080 HomeGroupProvider - ok 16:25:47.0306 3080 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 16:25:47.0322 3080 HpSAMD - ok 16:25:47.0384 3080 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 16:25:47.0416 3080 HTTP - ok 16:25:47.0478 3080 hwdatacard (c8f3119ad72a507d12ef389df4c266ef) C:\Windows\system32\DRIVERS\ewusbmdm.sys 16:25:47.0494 3080 hwdatacard - ok 16:25:47.0540 3080 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 16:25:47.0540 3080 hwpolicy - ok 16:25:47.0587 3080 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys 16:25:47.0587 3080 i8042prt - ok 16:25:47.0650 3080 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 16:25:47.0681 3080 iaStorV - ok 16:25:47.0806 3080 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 16:25:47.0868 3080 idsvc - ok 16:25:47.0915 3080 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 16:25:47.0915 3080 iirsp - ok 16:25:48.0024 3080 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll 16:25:48.0055 3080 IKEEXT - ok 16:25:48.0086 3080 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 16:25:48.0086 3080 intelide - ok 16:25:48.0149 3080 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 16:25:48.0149 3080 intelppm - ok 16:25:48.0196 3080 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll 16:25:48.0196 3080 IPBusEnum - ok 16:25:48.0242 3080 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 16:25:48.0258 3080 IpFilterDriver - ok 16:25:48.0289 3080 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 16:25:48.0289 3080 IPMIDRV - ok 16:25:48.0336 3080 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 16:25:48.0336 3080 IPNAT - ok 16:25:48.0367 3080 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 16:25:48.0367 3080 IRENUM - ok 16:25:48.0383 3080 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 16:25:48.0383 3080 isapnp - ok 16:25:48.0430 3080 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 16:25:48.0445 3080 iScsiPrt - ok 16:25:48.0492 3080 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys 16:25:48.0492 3080 kbdclass - ok 16:25:48.0523 3080 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 16:25:48.0539 3080 kbdhid - ok 16:25:48.0570 3080 kbfiltr (e63ef8c3271d014f14e2469ce75fecb4) C:\Windows\system32\DRIVERS\kbfiltr.sys 16:25:48.0570 3080 kbfiltr - ok 16:25:48.0617 3080 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 16:25:48.0632 3080 KeyIso - ok 16:25:48.0664 3080 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys 16:25:48.0664 3080 KSecDD - ok 16:25:48.0695 3080 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys 16:25:48.0695 3080 KSecPkg - ok 16:25:48.0726 3080 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 16:25:48.0726 3080 ksthunk - ok 16:25:48.0788 3080 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll 16:25:48.0804 3080 KtmRm - ok 16:25:48.0866 3080 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll 16:25:48.0882 3080 LanmanServer - ok 16:25:48.0929 3080 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll 16:25:48.0944 3080 LanmanWorkstation - ok 16:25:49.0007 3080 lirsgt (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys 16:25:49.0007 3080 lirsgt - ok 16:25:49.0054 3080 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 16:25:49.0054 3080 lltdio - ok 16:25:49.0116 3080 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll 16:25:49.0147 3080 lltdsvc - ok 16:25:49.0163 3080 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll 16:25:49.0178 3080 lmhosts - ok 16:25:49.0225 3080 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 16:25:49.0225 3080 LSI_FC - ok 16:25:49.0256 3080 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 16:25:49.0256 3080 LSI_SAS - ok 16:25:49.0288 3080 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 16:25:49.0288 3080 LSI_SAS2 - ok 16:25:49.0319 3080 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 16:25:49.0319 3080 LSI_SCSI - ok 16:25:49.0366 3080 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 16:25:49.0366 3080 luafv - ok 16:25:49.0397 3080 lullaby (085435ae1a124361304044029b5cc644) C:\Windows\system32\DRIVERS\lullaby.sys 16:25:49.0397 3080 lullaby - ok 16:25:49.0459 3080 MBAMProtector (dbc08862a71459e74f7538b432c114cc) C:\Windows\system32\drivers\mbam.sys 16:25:49.0459 3080 MBAMProtector - ok 16:25:49.0615 3080 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe 16:25:49.0646 3080 MBAMService - ok 16:25:49.0693 3080 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll 16:25:49.0693 3080 Mcx2Svc - ok 16:25:49.0724 3080 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 16:25:49.0724 3080 megasas - ok 16:25:49.0771 3080 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 16:25:49.0787 3080 MegaSR - ok 16:25:49.0834 3080 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 16:25:49.0834 3080 MMCSS - ok 16:25:49.0865 3080 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 16:25:49.0865 3080 Modem - ok 16:25:49.0896 3080 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 16:25:49.0912 3080 monitor - ok 16:25:49.0958 3080 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys 16:25:49.0958 3080 mouclass - ok 16:25:49.0990 3080 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 16:25:49.0990 3080 mouhid - ok 16:25:50.0036 3080 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 16:25:50.0036 3080 mountmgr - ok 16:25:50.0130 3080 MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 16:25:50.0130 3080 MozillaMaintenance - ok 16:25:50.0177 3080 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 16:25:50.0192 3080 mpio - ok 16:25:50.0224 3080 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 16:25:50.0224 3080 mpsdrv - ok 16:25:50.0270 3080 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 16:25:50.0286 3080 MRxDAV - ok 16:25:50.0333 3080 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 16:25:50.0333 3080 mrxsmb - ok 16:25:50.0395 3080 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 16:25:50.0411 3080 mrxsmb10 - ok 16:25:50.0442 3080 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 16:25:50.0442 3080 mrxsmb20 - ok 16:25:50.0489 3080 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 16:25:50.0489 3080 msahci - ok 16:25:50.0520 3080 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 16:25:50.0520 3080 msdsm - ok 16:25:50.0567 3080 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe 16:25:50.0582 3080 MSDTC - ok 16:25:50.0614 3080 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 16:25:50.0614 3080 Msfs - ok 16:25:50.0645 3080 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 16:25:50.0645 3080 mshidkmdf - ok 16:25:50.0676 3080 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 16:25:50.0676 3080 msisadrv - ok 16:25:50.0723 3080 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll 16:25:50.0738 3080 MSiSCSI - ok 16:25:50.0738 3080 msiserver - ok 16:25:50.0785 3080 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 16:25:50.0785 3080 MSKSSRV - ok 16:25:50.0816 3080 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 16:25:50.0816 3080 MSPCLOCK - ok 16:25:50.0832 3080 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 16:25:50.0832 3080 MSPQM - ok 16:25:50.0894 3080 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 16:25:50.0910 3080 MsRPC - ok 16:25:50.0941 3080 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys 16:25:50.0941 3080 mssmbios - ok 16:25:50.0957 3080 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 16:25:50.0972 3080 MSTEE - ok 16:25:50.0988 3080 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 16:25:50.0988 3080 MTConfig - ok 16:25:51.0035 3080 MTsensor (032d35c996f21d19a205a7c8f0b76f3c) C:\Windows\system32\DRIVERS\ATK64AMD.sys 16:25:51.0035 3080 MTsensor - ok 16:25:51.0050 3080 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 16:25:51.0066 3080 Mup - ok 16:25:51.0113 3080 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll 16:25:51.0160 3080 napagent - ok 16:25:51.0222 3080 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 16:25:51.0238 3080 NativeWifiP - ok 16:25:51.0331 3080 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 16:25:51.0362 3080 NDIS - ok 16:25:51.0394 3080 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 16:25:51.0409 3080 NdisCap - ok 16:25:51.0425 3080 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 16:25:51.0440 3080 NdisTapi - ok 16:25:51.0472 3080 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 16:25:51.0472 3080 Ndisuio - ok 16:25:51.0503 3080 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 16:25:51.0518 3080 NdisWan - ok 16:25:51.0550 3080 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 16:25:51.0550 3080 NDProxy - ok 16:25:51.0596 3080 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 16:25:51.0596 3080 NetBIOS - ok 16:25:51.0628 3080 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 16:25:51.0643 3080 NetBT - ok 16:25:51.0690 3080 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 16:25:51.0690 3080 Netlogon - ok 16:25:51.0752 3080 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll 16:25:51.0784 3080 Netman - ok 16:25:51.0830 3080 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll 16:25:51.0862 3080 netprofm - ok 16:25:51.0924 3080 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 16:25:51.0924 3080 NetTcpPortSharing - ok 16:25:51.0971 3080 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 16:25:51.0971 3080 nfrd960 - ok 16:25:52.0033 3080 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll 16:25:52.0049 3080 NlaSvc - ok 16:25:52.0080 3080 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 16:25:52.0080 3080 Npfs - ok 16:25:52.0111 3080 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll 16:25:52.0127 3080 nsi - ok 16:25:52.0142 3080 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 16:25:52.0142 3080 nsiproxy - ok 16:25:52.0314 3080 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 16:25:52.0376 3080 Ntfs - ok 16:25:52.0501 3080 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 16:25:52.0501 3080 Null - ok 16:25:52.0532 3080 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 16:25:52.0532 3080 nvraid - ok 16:25:52.0564 3080 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 16:25:52.0579 3080 nvstor - ok 16:25:52.0673 3080 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 16:25:52.0673 3080 nv_agp - ok 16:25:52.0751 3080 OberonGameConsoleService (649791f5b905e6a8ecced15ad8efd436) C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe 16:25:52.0782 3080 OberonGameConsoleService - ok 16:25:52.0813 3080 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 16:25:52.0813 3080 ohci1394 - ok 16:25:52.0860 3080 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 16:25:52.0891 3080 p2pimsvc - ok 16:25:52.0938 3080 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll 16:25:52.0969 3080 p2psvc - ok 16:25:53.0000 3080 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 16:25:53.0016 3080 Parport - ok 16:25:53.0047 3080 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys 16:25:53.0047 3080 partmgr - ok 16:25:53.0094 3080 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll 16:25:53.0110 3080 PcaSvc - ok 16:25:53.0141 3080 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys 16:25:53.0141 3080 pccsmcfd - ok 16:25:53.0172 3080 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 16:25:53.0188 3080 pci - ok 16:25:53.0203 3080 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 16:25:53.0203 3080 pciide - ok 16:25:53.0250 3080 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 16:25:53.0266 3080 pcmcia - ok 16:25:53.0281 3080 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 16:25:53.0297 3080 pcw - ok 16:25:53.0359 3080 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 16:25:53.0390 3080 PEAUTH - ok 16:25:53.0500 3080 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe 16:25:53.0515 3080 PerfHost - ok 16:25:53.0718 3080 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll 16:25:53.0780 3080 pla - ok 16:25:53.0874 3080 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll 16:25:53.0890 3080 PlugPlay - ok 16:25:53.0936 3080 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll 16:25:53.0936 3080 PNRPAutoReg - ok 16:25:53.0983 3080 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 16:25:53.0983 3080 PNRPsvc - ok 16:25:54.0061 3080 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll 16:25:54.0077 3080 PolicyAgent - ok 16:25:54.0139 3080 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll 16:25:54.0170 3080 Power - ok 16:25:54.0233 3080 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 16:25:54.0233 3080 PptpMiniport - ok 16:25:54.0264 3080 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 16:25:54.0264 3080 Processor - ok 16:25:54.0311 3080 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll 16:25:54.0342 3080 ProfSvc - ok 16:25:54.0373 3080 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 16:25:54.0373 3080 ProtectedStorage - ok 16:25:54.0420 3080 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 16:25:54.0420 3080 Psched - ok 16:25:54.0560 3080 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 16:25:54.0623 3080 ql2300 - ok 16:25:54.0779 3080 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 16:25:54.0779 3080 ql40xx - ok 16:25:54.0826 3080 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll 16:25:54.0841 3080 QWAVE - ok 16:25:54.0872 3080 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 16:25:54.0872 3080 QWAVEdrv - ok 16:25:54.0888 3080 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 16:25:54.0888 3080 RasAcd - ok 16:25:54.0935 3080 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 16:25:54.0935 3080 RasAgileVpn - ok 16:25:54.0982 3080 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll 16:25:54.0997 3080 RasAuto - ok 16:25:55.0028 3080 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 16:25:55.0028 3080 Rasl2tp - ok 16:25:55.0091 3080 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll 16:25:55.0122 3080 RasMan - ok 16:25:55.0169 3080 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 16:25:55.0169 3080 RasPppoe - ok 16:25:55.0200 3080 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 16:25:55.0200 3080 RasSstp - ok 16:25:55.0262 3080 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 16:25:55.0278 3080 rdbss - ok 16:25:55.0294 3080 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 16:25:55.0294 3080 rdpbus - ok 16:25:55.0325 3080 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 16:25:55.0325 3080 RDPCDD - ok 16:25:55.0356 3080 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 16:25:55.0356 3080 RDPENCDD - ok 16:25:55.0372 3080 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 16:25:55.0372 3080 RDPREFMP - ok 16:25:55.0418 3080 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys 16:25:55.0434 3080 RDPWD - ok 16:25:55.0481 3080 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 16:25:55.0496 3080 rdyboost - ok 16:25:55.0543 3080 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll 16:25:55.0559 3080 RemoteAccess - ok 16:25:55.0606 3080 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll 16:25:55.0621 3080 RemoteRegistry - ok 16:25:55.0652 3080 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll 16:25:55.0668 3080 RpcEptMapper - ok 16:25:55.0699 3080 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe 16:25:55.0699 3080 RpcLocator - ok 16:25:55.0777 3080 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 16:25:55.0793 3080 RpcSs - ok 16:25:55.0855 3080 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 16:25:55.0855 3080 rspndr - ok 16:25:55.0933 3080 RTL8167 (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys 16:25:55.0933 3080 RTL8167 - ok 16:25:55.0980 3080 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 16:25:55.0980 3080 SamSs - ok 16:25:56.0011 3080 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 16:25:56.0027 3080 sbp2port - ok 16:25:56.0058 3080 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll 16:25:56.0089 3080 SCardSvr - ok 16:25:56.0120 3080 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 16:25:56.0120 3080 scfilter - ok 16:25:56.0214 3080 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll 16:25:56.0261 3080 Schedule - ok 16:25:56.0308 3080 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 16:25:56.0308 3080 SCPolicySvc - ok 16:25:56.0354 3080 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll 16:25:56.0370 3080 SDRSVC - ok 16:25:56.0432 3080 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 16:25:56.0432 3080 secdrv - ok 16:25:56.0464 3080 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll 16:25:56.0479 3080 seclogon - ok 16:25:56.0510 3080 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll 16:25:56.0510 3080 SENS - ok 16:25:56.0542 3080 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll 16:25:56.0542 3080 SensrSvc - ok 16:25:56.0588 3080 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 16:25:56.0588 3080 Serenum - ok 16:25:56.0620 3080 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 16:25:56.0635 3080 Serial - ok 16:25:56.0682 3080 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 16:25:56.0682 3080 sermouse - ok 16:25:56.0807 3080 ServiceLayer (3ec8de67b1c78c31e54c0f030e6bd7d5) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe 16:25:56.0854 3080 ServiceLayer - ok 16:25:56.0900 3080 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll 16:25:56.0916 3080 SessionEnv - ok 16:25:56.0947 3080 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 16:25:56.0947 3080 sffdisk - ok 16:25:56.0963 3080 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 16:25:56.0963 3080 sffp_mmc - ok 16:25:56.0978 3080 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 16:25:56.0978 3080 sffp_sd - ok 16:25:57.0010 3080 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 16:25:57.0010 3080 sfloppy - ok 16:25:57.0056 3080 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll 16:25:57.0088 3080 ShellHWDetection - ok 16:25:57.0119 3080 SiSGbeLH (1bc348cf6baa90ec8e533ef6e6a69933) C:\Windows\system32\DRIVERS\SiSG664.sys 16:25:57.0119 3080 SiSGbeLH - ok 16:25:57.0166 3080 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 16:25:57.0166 3080 SiSRaid2 - ok 16:25:57.0181 3080 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 16:25:57.0197 3080 SiSRaid4 - ok 16:25:57.0212 3080 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 16:25:57.0212 3080 Smb - ok 16:25:57.0259 3080 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe 16:25:57.0275 3080 SNMPTRAP - ok 16:25:57.0431 3080 SNP2UVC (2d280b5799f9c143fa7d49e032fbce46) C:\Windows\system32\DRIVERS\snp2uvc.sys 16:25:57.0493 3080 SNP2UVC - ok 16:25:57.0649 3080 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 16:25:57.0649 3080 spldr - ok 16:25:57.0743 3080 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe 16:25:57.0758 3080 Spooler - ok 16:25:58.0086 3080 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe 16:25:58.0195 3080 sppsvc - ok 16:25:58.0336 3080 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll 16:25:58.0351 3080 sppuinotify - ok 16:25:58.0445 3080 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 16:25:58.0460 3080 srv - ok 16:25:58.0679 3080 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 16:25:58.0694 3080 srv2 - ok 16:25:58.0726 3080 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 16:25:58.0741 3080 srvnet - ok 16:25:58.0804 3080 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll 16:25:58.0819 3080 SSDPSRV - ok 16:25:58.0850 3080 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll 16:25:58.0866 3080 SstpSvc - ok 16:25:58.0882 3080 ssudmdm - ok 16:25:58.0897 3080 ssudserd - ok 16:25:58.0944 3080 StarOpen - ok 16:25:58.0960 3080 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 16:25:58.0975 3080 stexstor - ok 16:25:59.0038 3080 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll 16:25:59.0069 3080 stisvc - ok 16:25:59.0100 3080 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys 16:25:59.0100 3080 swenum - ok 16:25:59.0162 3080 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll 16:25:59.0194 3080 swprv - ok 16:25:59.0365 3080 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll 16:25:59.0428 3080 SysMain - ok 16:25:59.0568 3080 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll 16:25:59.0584 3080 TabletInputService - ok 16:25:59.0630 3080 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll 16:25:59.0662 3080 TapiSrv - ok 16:25:59.0693 3080 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll 16:25:59.0708 3080 TBS - ok 16:25:59.0927 3080 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys 16:26:00.0005 3080 Tcpip - ok 16:26:00.0317 3080 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys 16:26:00.0348 3080 TCPIP6 - ok 16:26:00.0457 3080 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 16:26:00.0457 3080 tcpipreg - ok 16:26:00.0504 3080 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 16:26:00.0504 3080 TDPIPE - ok 16:26:00.0535 3080 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys 16:26:00.0551 3080 TDTCP - ok 16:26:00.0582 3080 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 16:26:00.0582 3080 tdx - ok 16:26:00.0613 3080 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys 16:26:00.0613 3080 TermDD - ok 16:26:00.0691 3080 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll 16:26:00.0754 3080 TermService - ok 16:26:00.0800 3080 TFsExDisk (ce4b6956e4e12492715a53076e58761f) C:\Windows\System32\Drivers\TFsExDisk.sys 16:26:00.0800 3080 TFsExDisk - ok 16:26:00.0832 3080 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll 16:26:00.0847 3080 Themes - ok 16:26:00.0878 3080 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 16:26:00.0894 3080 THREADORDER - ok 16:26:00.0941 3080 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll 16:26:00.0941 3080 TrkWks - ok 16:26:01.0003 3080 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe 16:26:01.0050 3080 TrustedInstaller - ok 16:26:01.0081 3080 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 16:26:01.0097 3080 tssecsrv - ok 16:26:01.0159 3080 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 16:26:01.0159 3080 TsUsbFlt - ok 16:26:01.0222 3080 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 16:26:01.0222 3080 tunnel - ok 16:26:01.0253 3080 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 16:26:01.0253 3080 uagp35 - ok 16:26:01.0315 3080 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 16:26:01.0331 3080 udfs - ok 16:26:01.0378 3080 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe 16:26:01.0393 3080 UI0Detect - ok 16:26:01.0440 3080 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 16:26:01.0440 3080 uliagpkx - ok 16:26:01.0471 3080 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 16:26:01.0487 3080 umbus - ok 16:26:01.0534 3080 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 16:26:01.0549 3080 UmPass - ok 16:26:01.0596 3080 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll 16:26:01.0643 3080 upnphost - ok 16:26:01.0674 3080 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 16:26:01.0674 3080 usbccgp - ok 16:26:01.0721 3080 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 16:26:01.0721 3080 usbcir - ok 16:26:01.0736 3080 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys 16:26:01.0736 3080 usbehci - ok 16:26:01.0768 3080 usbfilter (d524f3716d85b744762ff5eaaef8f3a2) C:\Windows\system32\DRIVERS\usbfilter.sys 16:26:01.0768 3080 usbfilter - ok 16:26:01.0830 3080 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 16:26:01.0846 3080 usbhub - ok 16:26:01.0861 3080 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\DRIVERS\usbohci.sys 16:26:01.0861 3080 usbohci - ok 16:26:01.0892 3080 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 16:26:01.0892 3080 usbprint - ok 16:26:01.0924 3080 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 16:26:01.0924 3080 USBSTOR - ok 16:26:01.0955 3080 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 16:26:01.0955 3080 usbuhci - ok 16:26:02.0002 3080 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys 16:26:02.0017 3080 usbvideo - ok 16:26:02.0048 3080 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll 16:26:02.0064 3080 UxSms - ok 16:26:02.0095 3080 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 16:26:02.0095 3080 VaultSvc - ok 16:26:02.0126 3080 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 16:26:02.0142 3080 vdrvroot - ok 16:26:02.0204 3080 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe 16:26:02.0220 3080 vds - ok 16:26:02.0267 3080 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 16:26:02.0267 3080 vga - ok 16:26:02.0282 3080 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 16:26:02.0298 3080 VgaSave - ok 16:26:02.0329 3080 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 16:26:02.0345 3080 vhdmp - ok 16:26:02.0501 3080 VIAHdAudAddService (fe595d1a1b781190bb483444b62cc607) C:\Windows\system32\drivers\viahduaa.sys 16:26:02.0532 3080 VIAHdAudAddService - ok 16:26:02.0563 3080 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 16:26:02.0563 3080 viaide - ok 16:26:02.0594 3080 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 16:26:02.0594 3080 volmgr - ok 16:26:02.0657 3080 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 16:26:02.0672 3080 volmgrx - ok 16:26:02.0719 3080 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 16:26:02.0750 3080 volsnap - ok 16:26:02.0813 3080 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 16:26:02.0828 3080 vsmraid - ok 16:26:03.0016 3080 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe 16:26:03.0078 3080 VSS - ok 16:26:03.0218 3080 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys 16:26:03.0218 3080 vwifibus - ok 16:26:03.0250 3080 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 16:26:03.0250 3080 vwififlt - ok 16:26:03.0296 3080 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys 16:26:03.0296 3080 vwifimp - ok 16:26:03.0374 3080 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll 16:26:03.0390 3080 W32Time - ok 16:26:03.0421 3080 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 16:26:03.0421 3080 WacomPen - ok 16:26:03.0468 3080 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 16:26:03.0468 3080 WANARP - ok 16:26:03.0484 3080 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 16:26:03.0484 3080 Wanarpv6 - ok 16:26:03.0640 3080 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe 16:26:03.0686 3080 WatAdminSvc - ok 16:26:03.0842 3080 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe 16:26:03.0889 3080 wbengine - ok 16:26:04.0030 3080 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll 16:26:04.0061 3080 WbioSrvc - ok 16:26:04.0123 3080 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll 16:26:04.0139 3080 wcncsvc - ok 16:26:04.0170 3080 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll 16:26:04.0170 3080 WcsPlugInService - ok 16:26:04.0232 3080 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 16:26:04.0232 3080 Wd - ok 16:26:04.0310 3080 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 16:26:04.0326 3080 Wdf01000 - ok 16:26:04.0357 3080 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 16:26:04.0373 3080 WdiServiceHost - ok 16:26:04.0373 3080 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 16:26:04.0388 3080 WdiSystemHost - ok 16:26:04.0451 3080 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll 16:26:04.0482 3080 WebClient - ok 16:26:04.0513 3080 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll 16:26:04.0544 3080 Wecsvc - ok 16:26:04.0576 3080 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll 16:26:04.0591 3080 wercplsupport - ok 16:26:04.0622 3080 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll 16:26:04.0638 3080 WerSvc - ok 16:26:04.0685 3080 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 16:26:04.0685 3080 WfpLwf - ok 16:26:04.0732 3080 WimFltr (52ded146e4797e6ccf94799e8e22bb2a) C:\Windows\system32\DRIVERS\wimfltr.sys 16:26:04.0747 3080 WimFltr - ok 16:26:04.0778 3080 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 16:26:04.0778 3080 WIMMount - ok 16:26:04.0794 3080 WinHttpAutoProxySvc - ok 16:26:04.0872 3080 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll 16:26:04.0903 3080 Winmgmt - ok 16:26:05.0090 3080 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll 16:26:05.0168 3080 WinRM - ok 16:26:05.0324 3080 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 16:26:05.0340 3080 WinUsb - ok 16:26:05.0434 3080 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll 16:26:05.0465 3080 Wlansvc - ok 16:26:05.0480 3080 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 16:26:05.0496 3080 WmiAcpi - ok 16:26:05.0590 3080 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe 16:26:05.0590 3080 wmiApSrv - ok 16:26:05.0652 3080 WMPNetworkSvc - ok 16:26:05.0683 3080 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll 16:26:05.0699 3080 WPCSvc - ok 16:26:05.0746 3080 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll 16:26:05.0746 3080 WPDBusEnum - ok 16:26:05.0777 3080 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 16:26:05.0777 3080 ws2ifsl - ok 16:26:05.0792 3080 WSearch - ok 16:26:06.0011 3080 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll 16:26:06.0120 3080 wuauserv - ok 16:26:06.0307 3080 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 16:26:06.0307 3080 WudfPf - ok 16:26:06.0370 3080 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 16:26:06.0385 3080 WUDFRd - ok 16:26:06.0416 3080 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll 16:26:06.0432 3080 wudfsvc - ok 16:26:06.0479 3080 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll 16:26:06.0510 3080 WwanSvc - ok 16:26:06.0588 3080 X6va002 - ok 16:26:06.0650 3080 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0 16:26:08.0288 3080 \Device\Harddisk0\DR0 - ok 16:26:08.0288 3080 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk1\DR1 16:26:08.0507 3080 \Device\Harddisk1\DR1 - ok 16:26:08.0507 3080 Boot (0x1200) (4727baf58eed3e8d8daaf57edf2d34d9) \Device\Harddisk0\DR0\Partition0 16:26:08.0522 3080 \Device\Harddisk0\DR0\Partition0 - ok 16:26:08.0522 3080 Boot (0x1200) (50c6f9d6eef5b369cc74a4616c1496a9) \Device\Harddisk0\DR0\Partition1 16:26:08.0538 3080 \Device\Harddisk0\DR0\Partition1 - ok 16:26:08.0538 3080 Boot (0x1200) (be1113017884422023892b8317ef722c) \Device\Harddisk1\DR1\Partition0 16:26:08.0538 3080 \Device\Harddisk1\DR1\Partition0 - ok 16:26:08.0538 3080 ============================================================ 16:26:08.0538 3080 Scan finished 16:26:08.0538 3080 ============================================================ 16:26:08.0569 3444 Detected object count: 0 16:26:08.0569 3444 Actual detected object count: 0 16:27:27.0946 3932 Deinitialize success aswMBR: Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-06-27 16:28:43 ----------------------------- 16:28:43.652 OS Version: Windows x64 6.1.7601 Service Pack 1 16:28:43.652 Number of processors: 2 586 0x602 16:28:43.652 ComputerName: LAPTOP UserName: Birgit 16:28:44.526 Initialize success 16:41:56.488 AVAST engine defs: 12062700 16:54:48.923 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000005f 16:54:48.923 Disk 0 Vendor: ST932032 0002 Size: 305245MB BusType: 11 16:54:48.969 Disk 0 MBR read successfully 16:54:48.969 Disk 0 MBR scan 16:54:48.985 Disk 0 Windows VISTA default MBR code 16:54:49.047 Disk 0 Partition 1 00 1C Hidd FAT32 LBA MSDOS5.0 14997 MB offset 2048 16:54:49.079 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 76308 MB offset 30716280 16:54:49.094 Disk 0 Partition - 00 0F Extended LBA 213935 MB offset 186996600 16:54:49.110 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 213935 MB offset 186996663 16:54:49.157 Disk 0 scanning C:\Windows\system32\drivers 16:55:05.973 Service scanning 16:55:39.264 Modules scanning 16:55:39.279 Disk 0 trace - called modules: 16:55:39.357 ntoskrnl.exe CLASSPNP.SYS disk.sys amdxata.sys storport.sys hal.dll amdsata.sys 16:55:39.357 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004066060] 16:55:39.373 3 CLASSPNP.SYS[fffff880019ba43f] -> nt!IofCallDriver -> [0xfffffa8004056b60] 16:55:39.389 5 amdxata.sys[fffff8800108e917] -> nt!IofCallDriver -> \Device\0000005f[0xfffffa80040527b0] 16:55:40.621 AVAST engine scan C:\Windows 16:55:45.317 AVAST engine scan C:\Windows\system32 17:00:31.530 AVAST engine scan C:\Windows\system32\drivers 17:00:51.171 AVAST engine scan C:\Users\Birgit 17:02:07.938 File: C:\Users\Birgit\AppData\Local\Temp\4657160.exe **INFECTED** Win32:LockScreen-GY [Trj] 17:06:32.639 File: C:\Users\Birgit\AppData\Local\{b53ec942-7642-b27c-3883-d397782c0e05}\n **INFECTED** Win64:Sirefef-F [Rtk] 17:08:37.143 File: C:\Users\Birgit\AppData\Roaming\WMPRWISE.EXE **INFECTED** Win32:LockScreen-GY [Trj] 17:10:29.276 AVAST engine scan C:\ProgramData 17:11:35.670 Scan finished successfully 17:12:40.628 Disk 0 MBR has been saved successfully to "C:\Users\Birgit\Desktop\MBR.dat" 17:12:40.644 The log file has been saved successfully to "C:\Users\Birgit\Desktop\aswMBR.txt" Mark |
Themen zu TR/Small.FI, TR/ATRAPS.Gen, TR/ATRAPS.GEN2 und W32/Patched.UA in "C:\Windows\System32\services.exe" |
.dll, adobe, alternate, autorun, avg, bho, conduit, dateisystem, desktop, error, explorer, firefox 13.0.1, flash player, gfnexsrv.exe, helper, heuristiks/extra, heuristiks/shuriken, home, install.exe, logfile, mozilla, nt.dll, plug-in, popup, programm, prozesse, realtek, registry, richtlinie, rundll, searchscopes, security, seiten, services.exe, system, vdeck.exe, version=1.0, verweise, vista, windows, winload toolbar |