Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 23.07.2012, 13:59   #1
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen - Standard

Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen



Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 23.07.2012, 19:16   #2
bleibdoof
 
Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen - Standard

Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen



Hier das Ergebnis:

Code:
ATTFilter
20:10:41.0006 1944	TDSS rootkit removing tool 2.7.47.0 Jul 20 2012 20:36:30
20:10:41.0240 1944	============================================================
20:10:41.0240 1944	Current date / time: 2012/07/23 20:10:41.0240
20:10:41.0240 1944	SystemInfo:
20:10:41.0240 1944	
20:10:41.0240 1944	OS Version: 6.1.7601 ServicePack: 1.0
20:10:41.0240 1944	Product type: Workstation
20:10:41.0240 1944	ComputerName: BLEIBDOOF-PC
20:10:41.0240 1944	UserName: Bleibdoof
20:10:41.0240 1944	Windows directory: C:\Windows
20:10:41.0240 1944	System windows directory: C:\Windows
20:10:41.0240 1944	Running under WOW64
20:10:41.0240 1944	Processor architecture: Intel x64
20:10:41.0240 1944	Number of processors: 2
20:10:41.0240 1944	Page size: 0x1000
20:10:41.0240 1944	Boot type: Normal boot
20:10:41.0240 1944	============================================================
20:10:42.0303 1944	Drive \Device\Harddisk0\DR0 - Size: 0x5D27216000 (372.61 Gb), SectorSize: 0x200, Cylinders: 0xBE01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:10:42.0318 1944	============================================================
20:10:42.0318 1944	\Device\Harddisk0\DR0:
20:10:42.0334 1944	MBR partitions:
20:10:42.0334 1944	\Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x61A7927
20:10:42.0334 1944	\Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x61A79A5, BlocksNum 0x2878C45B
20:10:42.0334 1944	============================================================
20:10:42.0365 1944	C: <-> \Device\Harddisk0\DR0\Partition0
20:10:42.0381 1944	D: <-> \Device\Harddisk0\DR0\Partition1
20:10:42.0381 1944	============================================================
20:10:42.0381 1944	Initialize success
20:10:42.0381 1944	============================================================
20:11:08.0428 3008	============================================================
20:11:08.0428 3008	Scan started
20:11:08.0428 3008	Mode: Manual; SigCheck; TDLFS; 
20:11:08.0428 3008	============================================================
20:11:09.0287 3008	1394ohci        (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
20:11:09.0365 3008	1394ohci - ok
20:11:09.0412 3008	ACPI            (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
20:11:09.0428 3008	ACPI - ok
20:11:09.0443 3008	AcpiPmi         (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
20:11:09.0506 3008	AcpiPmi - ok
20:11:09.0599 3008	AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:11:09.0615 3008	AdobeARMservice - ok
20:11:09.0709 3008	AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:11:09.0709 3008	AdobeFlashPlayerUpdateSvc - ok
20:11:09.0771 3008	adp94xx         (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
20:11:09.0787 3008	adp94xx - ok
20:11:09.0849 3008	adpahci         (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
20:11:09.0865 3008	adpahci - ok
20:11:09.0896 3008	adpu320         (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
20:11:09.0912 3008	adpu320 - ok
20:11:09.0943 3008	AeLookupSvc     (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
20:11:10.0053 3008	AeLookupSvc - ok
20:11:10.0115 3008	AFD             (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
20:11:10.0162 3008	AFD - ok
20:11:10.0193 3008	agp440          (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
20:11:10.0209 3008	agp440 - ok
20:11:10.0240 3008	ALG             (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
20:11:10.0287 3008	ALG - ok
20:11:10.0303 3008	aliide          (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
20:11:10.0318 3008	aliide - ok
20:11:10.0365 3008	AMD External Events Utility (20c8a3e435a47f0408a1ea674afa6194) C:\Windows\system32\atiesrxx.exe
20:11:10.0428 3008	AMD External Events Utility - ok
20:11:10.0443 3008	amdide          (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
20:11:10.0443 3008	amdide - ok
20:11:10.0474 3008	AmdK8           (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
20:11:10.0506 3008	AmdK8 - ok
20:11:11.0021 3008	amdkmdag        (0b45c18b0f3ee996d25baa4e74884b83) C:\Windows\system32\DRIVERS\atikmdag.sys
20:11:11.0334 3008	amdkmdag - ok
20:11:11.0474 3008	amdkmdap        (0e57258e5cc4cc7a9a9a877afdf0cec6) C:\Windows\system32\DRIVERS\atikmpag.sys
20:11:11.0506 3008	amdkmdap - ok
20:11:11.0537 3008	AmdPPM          (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys
20:11:11.0568 3008	AmdPPM - ok
20:11:11.0584 3008	amdsata         (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
20:11:11.0599 3008	amdsata - ok
20:11:11.0631 3008	amdsbs          (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
20:11:11.0646 3008	amdsbs - ok
20:11:11.0662 3008	amdxata         (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
20:11:11.0662 3008	amdxata - ok
20:11:11.0693 3008	AppID           (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
20:11:11.0834 3008	AppID - ok
20:11:11.0849 3008	AppIDSvc        (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
20:11:11.0896 3008	AppIDSvc - ok
20:11:11.0912 3008	Appinfo         (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
20:11:11.0974 3008	Appinfo - ok
20:11:12.0006 3008	arc             (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
20:11:12.0021 3008	arc - ok
20:11:12.0037 3008	arcsas          (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
20:11:12.0053 3008	arcsas - ok
20:11:12.0131 3008	aspnet_state    (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:11:12.0146 3008	aspnet_state - ok
20:11:12.0178 3008	AsyncMac        (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
20:11:12.0224 3008	AsyncMac - ok
20:11:12.0240 3008	atapi           (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
20:11:12.0240 3008	atapi - ok
20:11:12.0303 3008	AtiHDAudioService (24464b908e143d2561e9e452fee97309) C:\Windows\system32\drivers\AtihdW76.sys
20:11:12.0318 3008	AtiHDAudioService - ok
20:11:12.0396 3008	AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:11:12.0459 3008	AudioEndpointBuilder - ok
20:11:12.0459 3008	AudioSrv        (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:11:12.0490 3008	AudioSrv - ok
20:11:12.0521 3008	AxInstSV        (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
20:11:12.0599 3008	AxInstSV - ok
20:11:12.0662 3008	b06bdrv         (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
20:11:12.0693 3008	b06bdrv - ok
20:11:12.0740 3008	b57nd60a        (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
20:11:12.0771 3008	b57nd60a - ok
20:11:12.0818 3008	BDESVC          (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
20:11:12.0849 3008	BDESVC - ok
20:11:12.0865 3008	Beep            (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
20:11:12.0928 3008	Beep - ok
20:11:13.0021 3008	BFE             (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
20:11:13.0084 3008	BFE - ok
20:11:13.0146 3008	BITS            (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
20:11:13.0224 3008	BITS - ok
20:11:13.0271 3008	blbdrive        (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
20:11:13.0303 3008	blbdrive - ok
20:11:13.0334 3008	bowser          (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
20:11:13.0381 3008	bowser - ok
20:11:13.0396 3008	BrFiltLo        (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
20:11:13.0428 3008	BrFiltLo - ok
20:11:13.0443 3008	BrFiltUp        (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
20:11:13.0459 3008	BrFiltUp - ok
20:11:13.0490 3008	Browser         (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
20:11:13.0537 3008	Browser - ok
20:11:13.0568 3008	Brserid         (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
20:11:13.0615 3008	Brserid - ok
20:11:13.0615 3008	BrSerWdm        (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
20:11:13.0646 3008	BrSerWdm - ok
20:11:13.0662 3008	BrUsbMdm        (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
20:11:13.0693 3008	BrUsbMdm - ok
20:11:13.0709 3008	BrUsbSer        (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
20:11:13.0724 3008	BrUsbSer - ok
20:11:13.0740 3008	BTHMODEM        (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys
20:11:13.0771 3008	BTHMODEM - ok
20:11:13.0803 3008	bthserv         (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
20:11:13.0834 3008	bthserv - ok
20:11:13.0849 3008	cdfs            (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
20:11:13.0881 3008	cdfs - ok
20:11:13.0928 3008	cdrom           (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
20:11:13.0959 3008	cdrom - ok
20:11:13.0974 3008	CertPropSvc     (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:11:14.0037 3008	CertPropSvc - ok
20:11:14.0068 3008	circlass        (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
20:11:14.0084 3008	circlass - ok
20:11:14.0115 3008	CLFS            (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
20:11:14.0131 3008	CLFS - ok
20:11:14.0193 3008	clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:11:14.0209 3008	clr_optimization_v2.0.50727_32 - ok
20:11:14.0256 3008	clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:11:14.0256 3008	clr_optimization_v2.0.50727_64 - ok
20:11:14.0334 3008	clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:11:14.0349 3008	clr_optimization_v4.0.30319_32 - ok
20:11:14.0553 3008	clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:11:14.0553 3008	clr_optimization_v4.0.30319_64 - ok
20:11:14.0584 3008	CmBatt          (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys
20:11:14.0599 3008	CmBatt - ok
20:11:14.0615 3008	cmdide          (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
20:11:14.0631 3008	cmdide - ok
20:11:14.0678 3008	CNG             (9ac4f97c2d3e93367e2148ea940cd2cd) C:\Windows\system32\Drivers\cng.sys
20:11:14.0724 3008	CNG - ok
20:11:14.0740 3008	Compbatt        (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys
20:11:14.0740 3008	Compbatt - ok
20:11:14.0787 3008	CompositeBus    (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
20:11:14.0803 3008	CompositeBus - ok
20:11:14.0818 3008	COMSysApp - ok
20:11:14.0818 3008	crcdisk         (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
20:11:14.0834 3008	crcdisk - ok
20:11:14.0865 3008	CryptSvc        (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll
20:11:14.0896 3008	CryptSvc - ok
20:11:14.0943 3008	DcomLaunch      (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:11:14.0990 3008	DcomLaunch - ok
20:11:15.0021 3008	defragsvc       (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
20:11:15.0084 3008	defragsvc - ok
20:11:15.0115 3008	DfsC            (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
20:11:15.0162 3008	DfsC - ok
20:11:15.0193 3008	Dhcp            (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
20:11:15.0240 3008	Dhcp - ok
20:11:15.0240 3008	discache        (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
20:11:15.0287 3008	discache - ok
20:11:15.0318 3008	Disk            (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
20:11:15.0318 3008	Disk - ok
20:11:15.0349 3008	Dnscache        (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
20:11:15.0396 3008	Dnscache - ok
20:11:15.0412 3008	dot3svc         (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
20:11:15.0459 3008	dot3svc - ok
20:11:15.0474 3008	DPS             (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
20:11:15.0521 3008	DPS - ok
20:11:15.0553 3008	drmkaud         (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
20:11:15.0584 3008	drmkaud - ok
20:11:15.0631 3008	dtsoftbus01     (46571ed73ae84469dca53081d33cf3c8) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
20:11:15.0631 3008	dtsoftbus01 - ok
20:11:15.0709 3008	DXGKrnl         (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
20:11:15.0724 3008	DXGKrnl - ok
20:11:15.0756 3008	EapHost         (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
20:11:15.0803 3008	EapHost - ok
20:11:15.0974 3008	ebdrv           (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
20:11:16.0037 3008	ebdrv - ok
20:11:16.0131 3008	EFS             (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
20:11:16.0178 3008	EFS - ok
20:11:16.0256 3008	ehRecvr         (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
20:11:16.0303 3008	ehRecvr - ok
20:11:16.0334 3008	ehSched         (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
20:11:16.0349 3008	ehSched - ok
20:11:16.0428 3008	elxstor         (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
20:11:16.0459 3008	elxstor - ok
20:11:16.0474 3008	ErrDev          (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
20:11:16.0490 3008	ErrDev - ok
20:11:16.0537 3008	EventSystem     (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
20:11:16.0584 3008	EventSystem - ok
20:11:16.0615 3008	exfat           (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
20:11:16.0646 3008	exfat - ok
20:11:16.0662 3008	fastfat         (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
20:11:16.0709 3008	fastfat - ok
20:11:16.0771 3008	Fax             (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
20:11:16.0803 3008	Fax - ok
20:11:16.0834 3008	fdc             (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
20:11:16.0849 3008	fdc - ok
20:11:16.0896 3008	fdPHost         (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
20:11:16.0943 3008	fdPHost - ok
20:11:16.0959 3008	FDResPub        (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
20:11:17.0006 3008	FDResPub - ok
20:11:17.0037 3008	FileInfo        (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
20:11:17.0037 3008	FileInfo - ok
20:11:17.0053 3008	Filetrace       (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
20:11:17.0084 3008	Filetrace - ok
20:11:17.0115 3008	flpydisk        (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
20:11:17.0131 3008	flpydisk - ok
20:11:17.0146 3008	FltMgr          (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
20:11:17.0162 3008	FltMgr - ok
20:11:17.0240 3008	FontCache       (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
20:11:17.0287 3008	FontCache - ok
20:11:17.0334 3008	FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:11:17.0349 3008	FontCache3.0.0.0 - ok
20:11:17.0412 3008	FsDepends       (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
20:11:17.0412 3008	FsDepends - ok
20:11:17.0459 3008	Fs_Rec          (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
20:11:17.0459 3008	Fs_Rec - ok
20:11:17.0506 3008	fvevol          (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
20:11:17.0521 3008	fvevol - ok
20:11:17.0537 3008	gagp30kx        (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
20:11:17.0553 3008	gagp30kx - ok
20:11:17.0615 3008	gpsvc           (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
20:11:17.0662 3008	gpsvc - ok
20:11:17.0756 3008	gupdate         (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:11:17.0771 3008	gupdate - ok
20:11:17.0771 3008	gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:11:17.0771 3008	gupdatem - ok
20:11:17.0818 3008	gusvc           (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
20:11:17.0834 3008	gusvc - ok
20:11:17.0865 3008	hcw85cir        (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
20:11:17.0896 3008	hcw85cir - ok
20:11:17.0974 3008	HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
20:11:18.0006 3008	HdAudAddService - ok
20:11:18.0037 3008	HDAudBus        (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys
20:11:18.0068 3008	HDAudBus - ok
20:11:18.0068 3008	HidBatt         (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
20:11:18.0084 3008	HidBatt - ok
20:11:18.0115 3008	HidBth          (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
20:11:18.0131 3008	HidBth - ok
20:11:18.0146 3008	HidIr           (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
20:11:18.0162 3008	HidIr - ok
20:11:18.0193 3008	hidserv         (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
20:11:18.0240 3008	hidserv - ok
20:11:18.0271 3008	HidUsb          (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
20:11:18.0287 3008	HidUsb - ok
20:11:18.0318 3008	hkmsvc          (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
20:11:18.0381 3008	hkmsvc - ok
20:11:18.0412 3008	HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
20:11:18.0459 3008	HomeGroupListener - ok
20:11:18.0490 3008	HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
20:11:18.0506 3008	HomeGroupProvider - ok
20:11:18.0537 3008	HpSAMD          (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
20:11:18.0553 3008	HpSAMD - ok
20:11:18.0599 3008	HTTP            (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
20:11:18.0678 3008	HTTP - ok
20:11:18.0693 3008	hwpolicy        (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
20:11:18.0693 3008	hwpolicy - ok
20:11:18.0740 3008	i8042prt        (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
20:11:18.0740 3008	i8042prt - ok
20:11:18.0803 3008	iaStorV         (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
20:11:18.0818 3008	iaStorV - ok
20:11:18.0928 3008	idsvc           (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:11:18.0959 3008	idsvc - ok
20:11:18.0974 3008	iirsp           (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
20:11:18.0990 3008	iirsp - ok
20:11:19.0053 3008	IKEEXT          (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
20:11:19.0115 3008	IKEEXT - ok
20:11:19.0334 3008	IntcAzAudAddService (5f6a3ea5bd7ca861863a3a06cecc115c) C:\Windows\system32\drivers\RTKVHD64.sys
20:11:19.0396 3008	IntcAzAudAddService - ok
20:11:19.0646 3008	intelide        (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
20:11:19.0662 3008	intelide - ok
20:11:19.0693 3008	intelppm        (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
20:11:19.0709 3008	intelppm - ok
20:11:19.0740 3008	IPBusEnum       (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
20:11:19.0787 3008	IPBusEnum - ok
20:11:19.0803 3008	IpFilterDriver  (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:11:19.0834 3008	IpFilterDriver - ok
20:11:19.0881 3008	iphlpsvc        (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
20:11:19.0928 3008	iphlpsvc - ok
20:11:19.0928 3008	IPMIDRV         (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
20:11:19.0943 3008	IPMIDRV - ok
20:11:19.0959 3008	IPNAT           (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
20:11:19.0990 3008	IPNAT - ok
20:11:20.0021 3008	IRENUM          (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
20:11:20.0053 3008	IRENUM - ok
20:11:20.0053 3008	isapnp          (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
20:11:20.0068 3008	isapnp - ok
20:11:20.0099 3008	iScsiPrt        (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
20:11:20.0115 3008	iScsiPrt - ok
20:11:20.0178 3008	JRAID           (c0d9ba660a41ee8a269ef804e6cd0d7b) C:\Windows\system32\DRIVERS\jraid.sys
20:11:20.0193 3008	JRAID - ok
20:11:20.0224 3008	kbdclass        (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
20:11:20.0240 3008	kbdclass - ok
20:11:20.0271 3008	kbdhid          (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
20:11:20.0303 3008	kbdhid - ok
20:11:20.0318 3008	KeyIso          (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:20.0334 3008	KeyIso - ok
20:11:20.0365 3008	KSecDD          (97a7070aea4c058b6418519e869a63b4) C:\Windows\system32\Drivers\ksecdd.sys
20:11:20.0365 3008	KSecDD - ok
20:11:20.0396 3008	KSecPkg         (26c43a7c2862447ec59deda188d1da07) C:\Windows\system32\Drivers\ksecpkg.sys
20:11:20.0412 3008	KSecPkg - ok
20:11:20.0443 3008	ksthunk         (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
20:11:20.0490 3008	ksthunk - ok
20:11:20.0537 3008	KtmRm           (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
20:11:20.0584 3008	KtmRm - ok
20:11:20.0631 3008	LanmanServer    (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
20:11:20.0678 3008	LanmanServer - ok
20:11:20.0709 3008	LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
20:11:20.0740 3008	LanmanWorkstation - ok
20:11:20.0771 3008	lltdio          (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
20:11:20.0818 3008	lltdio - ok
20:11:20.0849 3008	lltdsvc         (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
20:11:20.0896 3008	lltdsvc - ok
20:11:20.0912 3008	lmhosts         (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
20:11:20.0943 3008	lmhosts - ok
20:11:20.0990 3008	LSI_FC          (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
20:11:21.0006 3008	LSI_FC - ok
20:11:21.0021 3008	LSI_SAS         (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
20:11:21.0037 3008	LSI_SAS - ok
20:11:21.0053 3008	LSI_SAS2        (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
20:11:21.0068 3008	LSI_SAS2 - ok
20:11:21.0084 3008	LSI_SCSI        (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
20:11:21.0099 3008	LSI_SCSI - ok
20:11:21.0131 3008	luafv           (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
20:11:21.0178 3008	luafv - ok
20:11:21.0193 3008	Mcx2Svc         (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
20:11:21.0224 3008	Mcx2Svc - ok
20:11:21.0240 3008	megasas         (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
20:11:21.0256 3008	megasas - ok
20:11:21.0287 3008	MegaSR          (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
20:11:21.0303 3008	MegaSR - ok
20:11:21.0334 3008	MMCSS           (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:11:21.0365 3008	MMCSS - ok
20:11:21.0381 3008	Modem           (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
20:11:21.0428 3008	Modem - ok
20:11:21.0459 3008	monitor         (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
20:11:21.0490 3008	monitor - ok
20:11:21.0506 3008	mouclass        (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
20:11:21.0521 3008	mouclass - ok
20:11:21.0553 3008	mouhid          (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
20:11:21.0568 3008	mouhid - ok
20:11:21.0584 3008	mountmgr        (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
20:11:21.0599 3008	mountmgr - ok
20:11:21.0646 3008	MpFilter        (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
20:11:21.0662 3008	MpFilter - ok
20:11:21.0693 3008	mpio            (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
20:11:21.0709 3008	mpio - ok
20:11:21.0724 3008	mpsdrv          (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
20:11:21.0756 3008	mpsdrv - ok
20:11:21.0818 3008	MpsSvc          (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
20:11:21.0865 3008	MpsSvc - ok
20:11:21.0881 3008	MRxDAV          (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
20:11:21.0912 3008	MRxDAV - ok
20:11:21.0943 3008	mrxsmb          (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
20:11:21.0974 3008	mrxsmb - ok
20:11:22.0006 3008	mrxsmb10        (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:11:22.0037 3008	mrxsmb10 - ok
20:11:22.0053 3008	mrxsmb20        (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:11:22.0053 3008	mrxsmb20 - ok
20:11:22.0084 3008	msahci          (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
20:11:22.0099 3008	msahci - ok
20:11:22.0115 3008	msdsm           (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
20:11:22.0131 3008	msdsm - ok
20:11:22.0162 3008	MSDTC           (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
20:11:22.0193 3008	MSDTC - ok
20:11:22.0209 3008	Msfs            (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
20:11:22.0256 3008	Msfs - ok
20:11:22.0271 3008	mshidkmdf       (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
20:11:22.0318 3008	mshidkmdf - ok
20:11:22.0318 3008	msisadrv        (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
20:11:22.0334 3008	msisadrv - ok
20:11:22.0381 3008	MSiSCSI         (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
20:11:22.0428 3008	MSiSCSI - ok
20:11:22.0428 3008	msiserver - ok
20:11:22.0459 3008	MSKSSRV         (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
20:11:22.0506 3008	MSKSSRV - ok
20:11:22.0584 3008	MsMpSvc         (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
20:11:22.0599 3008	MsMpSvc - ok
20:11:22.0615 3008	MSPCLOCK        (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
20:11:22.0662 3008	MSPCLOCK - ok
20:11:22.0678 3008	MSPQM           (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
20:11:22.0724 3008	MSPQM - ok
20:11:22.0756 3008	MsRPC           (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
20:11:22.0771 3008	MsRPC - ok
20:11:22.0787 3008	mssmbios        (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
20:11:22.0803 3008	mssmbios - ok
20:11:22.0803 3008	MSTEE           (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
20:11:22.0834 3008	MSTEE - ok
20:11:22.0849 3008	MTConfig        (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
20:11:22.0865 3008	MTConfig - ok
20:11:22.0881 3008	Mup             (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
20:11:22.0896 3008	Mup - ok
20:11:22.0928 3008	napagent        (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
20:11:22.0974 3008	napagent - ok
20:11:23.0021 3008	NativeWifiP     (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
20:11:23.0053 3008	NativeWifiP - ok
20:11:23.0115 3008	NDIS            (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
20:11:23.0146 3008	NDIS - ok
20:11:23.0162 3008	NdisCap         (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
20:11:23.0209 3008	NdisCap - ok
20:11:23.0240 3008	NdisTapi        (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
20:11:23.0271 3008	NdisTapi - ok
20:11:23.0287 3008	Ndisuio         (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
20:11:23.0334 3008	Ndisuio - ok
20:11:23.0349 3008	NdisWan         (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
20:11:23.0396 3008	NdisWan - ok
20:11:23.0412 3008	NDProxy         (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
20:11:23.0459 3008	NDProxy - ok
20:11:23.0474 3008	NetBIOS         (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
20:11:23.0521 3008	NetBIOS - ok
20:11:23.0553 3008	NetBT           (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
20:11:23.0584 3008	NetBT - ok
20:11:23.0615 3008	Netlogon        (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:23.0631 3008	Netlogon - ok
20:11:23.0678 3008	Netman          (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
20:11:23.0724 3008	Netman - ok
20:11:23.0803 3008	NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0818 3008	NetMsmqActivator - ok
20:11:23.0834 3008	NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0834 3008	NetPipeActivator - ok
20:11:23.0865 3008	netprofm        (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
20:11:23.0912 3008	netprofm - ok
20:11:23.0928 3008	NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0943 3008	NetTcpActivator - ok
20:11:23.0943 3008	NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0943 3008	NetTcpPortSharing - ok
20:11:24.0006 3008	nfrd960         (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
20:11:24.0021 3008	nfrd960 - ok
20:11:24.0084 3008	NisDrv          (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
20:11:24.0099 3008	NisDrv - ok
20:11:24.0178 3008	NisSrv          (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
20:11:24.0193 3008	NisSrv - ok
20:11:24.0240 3008	NlaSvc          (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
20:11:24.0287 3008	NlaSvc - ok
20:11:24.0303 3008	Npfs            (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
20:11:24.0334 3008	Npfs - ok
20:11:24.0349 3008	nsi             (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
20:11:24.0396 3008	nsi - ok
20:11:24.0428 3008	nsiproxy        (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
20:11:24.0459 3008	nsiproxy - ok
20:11:24.0568 3008	Ntfs            (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
20:11:24.0599 3008	Ntfs - ok
20:11:24.0787 3008	Null            (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
20:11:24.0834 3008	Null - ok
20:11:24.0865 3008	nvraid          (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
20:11:24.0881 3008	nvraid - ok
20:11:24.0896 3008	nvstor          (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
20:11:24.0912 3008	nvstor - ok
20:11:24.0928 3008	nv_agp          (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
20:11:24.0943 3008	nv_agp - ok
20:11:24.0959 3008	ohci1394        (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
20:11:24.0974 3008	ohci1394 - ok
20:11:25.0037 3008	ose             (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:11:25.0053 3008	ose - ok
20:11:25.0084 3008	p2pimsvc        (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:11:25.0131 3008	p2pimsvc - ok
20:11:25.0178 3008	p2psvc          (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
20:11:25.0193 3008	p2psvc - ok
20:11:25.0224 3008	Parport         (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
20:11:25.0256 3008	Parport - ok
20:11:25.0271 3008	partmgr         (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
20:11:25.0287 3008	partmgr - ok
20:11:25.0303 3008	PcaSvc          (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
20:11:25.0334 3008	PcaSvc - ok
20:11:25.0365 3008	pci             (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
20:11:25.0381 3008	pci - ok
20:11:25.0381 3008	pciide          (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
20:11:25.0396 3008	pciide - ok
20:11:25.0428 3008	pcmcia          (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
20:11:25.0443 3008	pcmcia - ok
20:11:25.0459 3008	pcw             (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
20:11:25.0459 3008	pcw - ok
20:11:25.0506 3008	PEAUTH          (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
20:11:25.0553 3008	PEAUTH - ok
20:11:25.0631 3008	PerfHost        (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
20:11:25.0646 3008	PerfHost - ok
20:11:25.0740 3008	pla             (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
20:11:25.0803 3008	pla - ok
20:11:25.0865 3008	PlugPlay        (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
20:11:25.0896 3008	PlugPlay - ok
20:11:25.0912 3008	PnkBstrA - ok
20:11:25.0928 3008	PNRPAutoReg     (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
20:11:25.0959 3008	PNRPAutoReg - ok
20:11:25.0990 3008	PNRPsvc         (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:11:26.0006 3008	PNRPsvc - ok
20:11:26.0053 3008	PolicyAgent     (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
20:11:26.0099 3008	PolicyAgent - ok
20:11:26.0146 3008	Power           (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
20:11:26.0178 3008	Power - ok
20:11:26.0256 3008	PptpMiniport    (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
20:11:26.0287 3008	PptpMiniport - ok
20:11:26.0303 3008	Processor       (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
20:11:26.0334 3008	Processor - ok
20:11:26.0365 3008	ProfSvc         (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll
20:11:26.0396 3008	ProfSvc - ok
20:11:26.0412 3008	ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:26.0428 3008	ProtectedStorage - ok
20:11:26.0459 3008	Psched          (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
20:11:26.0490 3008	Psched - ok
20:11:26.0584 3008	ql2300          (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
20:11:26.0631 3008	ql2300 - ok
20:11:26.0756 3008	ql40xx          (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
20:11:26.0771 3008	ql40xx - ok
20:11:26.0803 3008	QWAVE           (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
20:11:26.0818 3008	QWAVE - ok
20:11:26.0834 3008	QWAVEdrv        (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
20:11:26.0865 3008	QWAVEdrv - ok
20:11:26.0881 3008	RasAcd          (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
20:11:26.0912 3008	RasAcd - ok
20:11:26.0943 3008	RasAgileVpn     (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
20:11:26.0974 3008	RasAgileVpn - ok
20:11:26.0990 3008	RasAuto         (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
20:11:27.0037 3008	RasAuto - ok
20:11:27.0053 3008	Rasl2tp         (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
20:11:27.0099 3008	Rasl2tp - ok
20:11:27.0131 3008	RasMan          (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
20:11:27.0162 3008	RasMan - ok
20:11:27.0193 3008	RasPppoe        (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
20:11:27.0240 3008	RasPppoe - ok
20:11:27.0256 3008	RasSstp         (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
20:11:27.0303 3008	RasSstp - ok
20:11:27.0318 3008	rdbss           (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
20:11:27.0365 3008	rdbss - ok
20:11:27.0381 3008	rdpbus          (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys
20:11:27.0396 3008	rdpbus - ok
20:11:27.0412 3008	RDPCDD          (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
20:11:27.0459 3008	RDPCDD - ok
20:11:27.0474 3008	RDPENCDD        (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
20:11:27.0506 3008	RDPENCDD - ok
20:11:27.0521 3008	RDPREFMP        (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
20:11:27.0553 3008	RDPREFMP - ok
20:11:27.0584 3008	RDPWD           (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys
20:11:27.0615 3008	RDPWD - ok
20:11:27.0662 3008	rdyboost        (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
20:11:27.0678 3008	rdyboost - ok
20:11:27.0709 3008	RemoteAccess    (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
20:11:27.0756 3008	RemoteAccess - ok
20:11:27.0787 3008	RemoteRegistry  (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
20:11:27.0834 3008	RemoteRegistry - ok
20:11:27.0849 3008	RpcEptMapper    (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
20:11:27.0881 3008	RpcEptMapper - ok
20:11:27.0896 3008	RpcLocator      (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
20:11:27.0928 3008	RpcLocator - ok
20:11:27.0959 3008	RpcSs           (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:11:28.0006 3008	RpcSs - ok
20:11:28.0037 3008	rspndr          (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
20:11:28.0068 3008	rspndr - ok
20:11:28.0115 3008	RTL8167         (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
20:11:28.0146 3008	RTL8167 - ok
20:11:28.0193 3008	SaiK0CC3        (3c24436f091369ec4b91eb8294f53304) C:\Windows\system32\DRIVERS\SaiK0CC3.sys
20:11:28.0193 3008	SaiK0CC3 - ok
20:11:28.0209 3008	SaiMini         (64bc6cc8fd3408df37ea488d88d54a4a) C:\Windows\system32\DRIVERS\SaiMini.sys
20:11:28.0224 3008	SaiMini - ok
20:11:28.0240 3008	SaiNtBus        (6a78c024625926cc4b67b3e6ad14910a) C:\Windows\system32\drivers\SaiBus.sys
20:11:28.0240 3008	SaiNtBus - ok
20:11:28.0271 3008	SaiU0CC3        (e99885666b9daf934c353e0681bce7da) C:\Windows\system32\DRIVERS\SaiU0CC3.sys
20:11:28.0287 3008	SaiU0CC3 - ok
20:11:28.0303 3008	SamSs           (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:28.0318 3008	SamSs - ok
20:11:28.0349 3008	sbp2port        (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
20:11:28.0365 3008	sbp2port - ok
20:11:28.0490 3008	SBSDWSCService  (794d4b48dfb6e999537c7c3947863463) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
20:11:28.0521 3008	SBSDWSCService - ok
20:11:28.0553 3008	SCardSvr        (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
20:11:28.0584 3008	SCardSvr - ok
20:11:28.0646 3008	scfilter        (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
20:11:28.0709 3008	scfilter - ok
20:11:28.0771 3008	Schedule        (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
20:11:28.0849 3008	Schedule - ok
20:11:28.0865 3008	SCPolicySvc     (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:11:28.0896 3008	SCPolicySvc - ok
20:11:28.0928 3008	SDRSVC          (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
20:11:28.0943 3008	SDRSVC - ok
20:11:29.0006 3008	secdrv          (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
20:11:29.0068 3008	secdrv - ok
20:11:29.0084 3008	seclogon        (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
20:11:29.0115 3008	seclogon - ok
20:11:29.0146 3008	SENS            (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
20:11:29.0178 3008	SENS - ok
20:11:29.0193 3008	SensrSvc        (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
20:11:29.0224 3008	SensrSvc - ok
20:11:29.0256 3008	Serenum         (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
20:11:29.0271 3008	Serenum - ok
20:11:29.0303 3008	Serial          (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
20:11:29.0318 3008	Serial - ok
20:11:29.0334 3008	sermouse        (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
20:11:29.0349 3008	sermouse - ok
20:11:29.0381 3008	SessionEnv      (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
20:11:29.0428 3008	SessionEnv - ok
20:11:29.0428 3008	sffdisk         (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
20:11:29.0443 3008	sffdisk - ok
20:11:29.0443 3008	sffp_mmc        (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
20:11:29.0474 3008	sffp_mmc - ok
20:11:29.0474 3008	sffp_sd         (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
20:11:29.0490 3008	sffp_sd - ok
20:11:29.0490 3008	sfloppy         (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
20:11:29.0521 3008	sfloppy - ok
20:11:29.0568 3008	SharedAccess    (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
20:11:29.0631 3008	SharedAccess - ok
20:11:29.0662 3008	ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
20:11:29.0693 3008	ShellHWDetection - ok
20:11:29.0709 3008	SiSRaid2        (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
20:11:29.0724 3008	SiSRaid2 - ok
20:11:29.0740 3008	SiSRaid4        (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
20:11:29.0756 3008	SiSRaid4 - ok
20:11:29.0818 3008	SkypeUpdate     (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files (x86)\Skype\Updater\Updater.exe
20:11:29.0834 3008	SkypeUpdate - ok
20:11:29.0865 3008	Smb             (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
20:11:29.0928 3008	Smb - ok
20:11:29.0959 3008	SNMPTRAP        (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
20:11:29.0974 3008	SNMPTRAP - ok
20:11:30.0006 3008	spldr           (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
20:11:30.0021 3008	spldr - ok
20:11:30.0053 3008	Spooler         (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
20:11:30.0099 3008	Spooler - ok
20:11:30.0271 3008	sppsvc          (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
20:11:30.0365 3008	sppsvc - ok
20:11:30.0474 3008	sppuinotify     (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
20:11:30.0506 3008	sppuinotify - ok
20:11:30.0584 3008	srv             (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
20:11:30.0615 3008	srv - ok
20:11:30.0646 3008	srv2            (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
20:11:30.0678 3008	srv2 - ok
20:11:30.0693 3008	srvnet          (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
20:11:30.0709 3008	srvnet - ok
20:11:30.0756 3008	SSDPSRV         (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
20:11:30.0787 3008	SSDPSRV - ok
20:11:30.0803 3008	SstpSvc         (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
20:11:30.0849 3008	SstpSvc - ok
20:11:30.0881 3008	Steam Client Service - ok
20:11:30.0896 3008	stexstor        (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
20:11:30.0912 3008	stexstor - ok
20:11:30.0974 3008	stisvc          (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
20:11:31.0006 3008	stisvc - ok
20:11:31.0021 3008	swenum          (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
20:11:31.0021 3008	swenum - ok
20:11:31.0068 3008	swprv           (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
20:11:31.0115 3008	swprv - ok
20:11:31.0209 3008	SysMain         (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
20:11:31.0256 3008	SysMain - ok
20:11:31.0349 3008	TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
20:11:31.0396 3008	TabletInputService - ok
20:11:31.0412 3008	TapiSrv         (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
20:11:31.0474 3008	TapiSrv - ok
20:11:31.0506 3008	TBS             (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
20:11:31.0537 3008	TBS - ok
20:11:31.0678 3008	Tcpip           (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
20:11:31.0724 3008	Tcpip - ok
20:11:31.0928 3008	TCPIP6          (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
20:11:31.0974 3008	TCPIP6 - ok
20:11:32.0021 3008	tcpipreg        (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
20:11:32.0068 3008	tcpipreg - ok
20:11:32.0084 3008	TDPIPE          (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
20:11:32.0115 3008	TDPIPE - ok
20:11:32.0146 3008	TDTCP           (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
20:11:32.0162 3008	TDTCP - ok
20:11:32.0178 3008	tdx             (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
20:11:32.0224 3008	tdx - ok
20:11:32.0240 3008	TermDD          (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
20:11:32.0256 3008	TermDD - ok
20:11:32.0303 3008	TermService     (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
20:11:32.0349 3008	TermService - ok
20:11:32.0365 3008	Themes          (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
20:11:32.0381 3008	Themes - ok
20:11:32.0412 3008	THREADORDER     (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:11:32.0459 3008	THREADORDER - ok
20:11:32.0474 3008	TrkWks          (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
20:11:32.0506 3008	TrkWks - ok
20:11:32.0568 3008	TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
20:11:32.0615 3008	TrustedInstaller - ok
20:11:32.0631 3008	tssecsrv        (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
20:11:32.0678 3008	tssecsrv - ok
20:11:32.0709 3008	TsUsbFlt        (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
20:11:32.0724 3008	TsUsbFlt - ok
20:11:32.0740 3008	TsUsbGD         (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
20:11:32.0771 3008	TsUsbGD - ok
20:11:32.0787 3008	tunnel          (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
20:11:32.0818 3008	tunnel - ok
20:11:32.0818 3008	uagp35          (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
20:11:32.0834 3008	uagp35 - ok
20:11:32.0865 3008	udfs            (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
20:11:32.0928 3008	udfs - ok
20:11:32.0959 3008	UI0Detect       (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
20:11:32.0974 3008	UI0Detect - ok
20:11:33.0006 3008	uliagpkx        (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
20:11:33.0006 3008	uliagpkx - ok
20:11:33.0037 3008	umbus           (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
20:11:33.0053 3008	umbus - ok
20:11:33.0099 3008	UmPass          (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
20:11:33.0115 3008	UmPass - ok
20:11:33.0146 3008	upnphost        (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
20:11:33.0193 3008	upnphost - ok
20:11:33.0240 3008	usbccgp         (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
20:11:33.0271 3008	usbccgp - ok
20:11:33.0287 3008	usbcir          (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
20:11:33.0303 3008	usbcir - ok
20:11:33.0334 3008	usbehci         (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
20:11:33.0349 3008	usbehci - ok
20:11:33.0396 3008	usbhub          (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
20:11:33.0412 3008	usbhub - ok
20:11:33.0428 3008	usbohci         (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
20:11:33.0459 3008	usbohci - ok
20:11:33.0474 3008	usbprint        (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
20:11:33.0490 3008	usbprint - ok
20:11:33.0521 3008	USBSTOR         (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:11:33.0568 3008	USBSTOR - ok
20:11:33.0584 3008	usbuhci         (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
20:11:33.0599 3008	usbuhci - ok
20:11:33.0615 3008	UxSms           (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
20:11:33.0662 3008	UxSms - ok
20:11:33.0678 3008	VaultSvc        (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:33.0693 3008	VaultSvc - ok
20:11:33.0724 3008	VBoxNetAdp      (01f5ff577ca9d3555941c5c266af4385) C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
20:11:33.0740 3008	VBoxNetAdp - ok
20:11:33.0756 3008	VBoxNetFlt - ok
20:11:33.0787 3008	vdrvroot        (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
20:11:33.0803 3008	vdrvroot - ok
20:11:33.0849 3008	vds             (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
20:11:33.0896 3008	vds - ok
20:11:33.0912 3008	vga             (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
20:11:33.0928 3008	vga - ok
20:11:33.0943 3008	VgaSave         (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
20:11:33.0974 3008	VgaSave - ok
20:11:33.0990 3008	vhdmp           (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
20:11:34.0006 3008	vhdmp - ok
20:11:34.0021 3008	viaide          (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
20:11:34.0021 3008	viaide - ok
20:11:34.0053 3008	volmgr          (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
20:11:34.0053 3008	volmgr - ok
20:11:34.0099 3008	volmgrx         (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
20:11:34.0115 3008	volmgrx - ok
20:11:34.0131 3008	volsnap         (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
20:11:34.0146 3008	volsnap - ok
20:11:34.0178 3008	vsmraid         (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
20:11:34.0193 3008	vsmraid - ok
20:11:34.0287 3008	VSS             (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
20:11:34.0349 3008	VSS - ok
20:11:34.0474 3008	vwifibus        (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
20:11:34.0490 3008	vwifibus - ok
20:11:34.0537 3008	W32Time         (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
20:11:34.0568 3008	W32Time - ok
20:11:34.0584 3008	WacomPen        (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
20:11:34.0615 3008	WacomPen - ok
20:11:34.0631 3008	WANARP          (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:11:34.0678 3008	WANARP - ok
20:11:34.0678 3008	Wanarpv6        (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:11:34.0709 3008	Wanarpv6 - ok
20:11:34.0818 3008	WatAdminSvc     (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
20:11:34.0865 3008	WatAdminSvc - ok
20:11:34.0959 3008	wbengine        (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
20:11:35.0021 3008	wbengine - ok
20:11:35.0099 3008	WbioSrvc        (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
20:11:35.0131 3008	WbioSrvc - ok
20:11:35.0162 3008	wcncsvc         (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
20:11:35.0209 3008	wcncsvc - ok
20:11:35.0224 3008	WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
20:11:35.0256 3008	WcsPlugInService - ok
20:11:35.0303 3008	Wd              (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
20:11:35.0318 3008	Wd - ok
20:11:35.0365 3008	Wdf01000        (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
20:11:35.0381 3008	Wdf01000 - ok
20:11:35.0412 3008	WdiServiceHost  (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:11:35.0474 3008	WdiServiceHost - ok
20:11:35.0474 3008	WdiSystemHost   (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:11:35.0490 3008	WdiSystemHost - ok
20:11:35.0521 3008	WebClient       (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
20:11:35.0553 3008	WebClient - ok
20:11:35.0568 3008	Wecsvc          (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
20:11:35.0615 3008	Wecsvc - ok
20:11:35.0631 3008	wercplsupport   (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
20:11:35.0678 3008	wercplsupport - ok
20:11:35.0693 3008	WerSvc          (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
20:11:35.0724 3008	WerSvc - ok
20:11:35.0787 3008	WfpLwf          (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
20:11:35.0818 3008	WfpLwf - ok
20:11:35.0834 3008	WIMMount        (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
20:11:35.0849 3008	WIMMount - ok
20:11:35.0896 3008	WinDefend - ok
20:11:35.0896 3008	WinHttpAutoProxySvc - ok
20:11:35.0974 3008	Winmgmt         (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
20:11:36.0006 3008	Winmgmt - ok
20:11:36.0115 3008	WinRM           (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
20:11:36.0178 3008	WinRM - ok
20:11:36.0318 3008	Wlansvc         (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
20:11:36.0365 3008	Wlansvc - ok
20:11:36.0412 3008	WmiAcpi         (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
20:11:36.0443 3008	WmiAcpi - ok
20:11:36.0506 3008	wmiApSrv        (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
20:11:36.0537 3008	wmiApSrv - ok
20:11:36.0584 3008	WMPNetworkSvc - ok
20:11:36.0615 3008	WPCSvc          (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
20:11:36.0646 3008	WPCSvc - ok
20:11:36.0678 3008	WPDBusEnum      (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
20:11:36.0693 3008	WPDBusEnum - ok
20:11:36.0724 3008	ws2ifsl         (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
20:11:36.0771 3008	ws2ifsl - ok
20:11:36.0787 3008	wscsvc          (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
20:11:36.0803 3008	wscsvc - ok
20:11:36.0803 3008	WSearch - ok
20:11:36.0959 3008	wuauserv        (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
20:11:37.0021 3008	wuauserv - ok
20:11:37.0146 3008	WudfPf          (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
20:11:37.0193 3008	WudfPf - ok
20:11:37.0240 3008	WUDFRd          (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
20:11:37.0271 3008	WUDFRd - ok
20:11:37.0303 3008	wudfsvc         (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
20:11:37.0334 3008	wudfsvc - ok
20:11:37.0381 3008	WwanSvc         (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
20:11:37.0412 3008	WwanSvc - ok
20:11:37.0443 3008	MBR (0x1B8)     (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
20:11:37.0646 3008	\Device\Harddisk0\DR0 ( TDSS File System ) - warning
20:11:37.0646 3008	\Device\Harddisk0\DR0 - detected TDSS File System (1)
20:11:37.0678 3008	Boot (0x1200)   (17819b15850eb98b560652f58b135142) \Device\Harddisk0\DR0\Partition0
20:11:37.0678 3008	\Device\Harddisk0\DR0\Partition0 - ok
20:11:37.0693 3008	Boot (0x1200)   (f4d788bba0afe6d7b986332a4cb9830b) \Device\Harddisk0\DR0\Partition1
20:11:37.0709 3008	\Device\Harddisk0\DR0\Partition1 - ok
20:11:37.0709 3008	============================================================
20:11:37.0709 3008	Scan finished
20:11:37.0709 3008	============================================================
20:11:37.0756 0980	Detected object count: 1
20:11:37.0756 0980	Actual detected object count: 1
20:12:17.0724 0980	\Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
20:12:17.0724 0980	\Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
         
__________________


Antwort

Themen zu Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen
autorun, battle.net, call of duty, ebanking, einstellung, excel, fehler, flash player, format, google, home, html/iframe.b.gen, install.exe, langs, ms security essentials, neu aufgesetzt, object, plug-in, realtek, registry, richtlinie, safer networking, scan, searchscopes, security, software, svchost.exe, system, win32/injector.cb, win32/injector.txa, win64/sirefef.ab, win64/sirefef.m, win64/sirefef.w, windows, ändern




Ähnliche Themen: Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen


  1. Windows 7: Befall von mehreren Trojanern/Viren -Win64/Conedex.B + C + I, Win64/Sirefef.AZ+BJ
    Log-Analyse und Auswertung - 15.02.2014 (86)
  2. Trojan:Win32/Sirefef.AB und Trojan:Win64/Sirefef.P entfernen!
    Log-Analyse und Auswertung - 10.12.2013 (22)
  3. Trojan:Win32/Sirefef.AB und Trojan:Win64/Sirefef.P entfernen!
    Log-Analyse und Auswertung - 02.08.2013 (14)
  4. Trojaner TR/Sirefef.BC.57, TR/Sirefef.AG.9, TR/ATRAPS.Gen2, TR/Necurs.A.71 und SpyHunter 4 auf Rechner
    Log-Analyse und Auswertung - 07.05.2013 (7)
  5. Win64/Sirefef.M eingefangen vermutlich System bereits befallen
    Log-Analyse und Auswertung - 04.09.2012 (3)
  6. Trojaner eingefangen - Sirefef-A/Sirefef-AHF/BitCoinMiner-U/Malware-gen
    Log-Analyse und Auswertung - 31.08.2012 (27)
  7. Virus/Trojaner: Win64/sirefef.A ; Win64/sirefef.AB ; Win64/sirefef.W ; Auto-Neustart nach 1 Minute
    Plagegeister aller Art und deren Bekämpfung - 13.08.2012 (18)
  8. win 32:Sirefef-AO und Malware.gen, win64:Sirefef-A gefunden von avast!
    Log-Analyse und Auswertung - 11.08.2012 (1)
  9. sirefef.ah und sirefef.r auf Win7 (32bit) gefunden. Rechner fährt automatisch runter.
    Plagegeister aller Art und deren Bekämpfung - 06.08.2012 (37)
  10. Win64/Sirefef.AE Trojaner Win64/Agent.BA TrojanerC:\Windows\Installer\{f041020c-58e9-a705-4143-4ddcc
    Plagegeister aller Art und deren Bekämpfung - 25.07.2012 (7)
  11. Virusbefall (Trojan.Generic, Trojan.Sirefef, Win64.Sirefef, Win32.Atraps) bei windows installer & Co
    Plagegeister aller Art und deren Bekämpfung - 23.07.2012 (19)
  12. Trojana:Win32/Sirefef.R und Sirefef.AH kann nicht entfernt werden
    Plagegeister aller Art und deren Bekämpfung - 17.07.2012 (13)
  13. Win64:Sirefef-A (Trj) und Win32:Sirefef-AO (Rtk) eingefangen
    Log-Analyse und Auswertung - 10.06.2012 (14)
  14. Trojan:Win32/Win64/Sirefef; Trojan:Win32/Conedex und Trojandropper:Win32/Sirefef
    Plagegeister aller Art und deren Bekämpfung - 14.03.2012 (11)
  15. Trojan:Win64/Sirefef.K + .../Sirefef.D + .../Sirefef.E
    Log-Analyse und Auswertung - 13.01.2012 (15)
  16. Trojan:Win64/Sirefef.K, Sirefef.E und Sirefef.D kommen immer wieder
    Plagegeister aller Art und deren Bekämpfung - 04.01.2012 (1)
  17. Trojan:Win64/Sirefef.K & Sirefef.D & Sirefef.E
    Log-Analyse und Auswertung - 02.01.2012 (6)

Zum Thema Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen - Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html Hinweis : Bitte den Virenscanner abstellen bevor du den - Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen...
Archiv
Du betrachtest: Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.