![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
| |
| | #1 |
| /// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm! Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs.Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!
__________________ Logfiles bitte immer in CODE-Tags posten |
| | #2 |
![]() | Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen Hier das Ergebnis:
__________________Code:
ATTFilter 20:10:41.0006 1944 TDSS rootkit removing tool 2.7.47.0 Jul 20 2012 20:36:30
20:10:41.0240 1944 ============================================================
20:10:41.0240 1944 Current date / time: 2012/07/23 20:10:41.0240
20:10:41.0240 1944 SystemInfo:
20:10:41.0240 1944
20:10:41.0240 1944 OS Version: 6.1.7601 ServicePack: 1.0
20:10:41.0240 1944 Product type: Workstation
20:10:41.0240 1944 ComputerName: BLEIBDOOF-PC
20:10:41.0240 1944 UserName: Bleibdoof
20:10:41.0240 1944 Windows directory: C:\Windows
20:10:41.0240 1944 System windows directory: C:\Windows
20:10:41.0240 1944 Running under WOW64
20:10:41.0240 1944 Processor architecture: Intel x64
20:10:41.0240 1944 Number of processors: 2
20:10:41.0240 1944 Page size: 0x1000
20:10:41.0240 1944 Boot type: Normal boot
20:10:41.0240 1944 ============================================================
20:10:42.0303 1944 Drive \Device\Harddisk0\DR0 - Size: 0x5D27216000 (372.61 Gb), SectorSize: 0x200, Cylinders: 0xBE01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:10:42.0318 1944 ============================================================
20:10:42.0318 1944 \Device\Harddisk0\DR0:
20:10:42.0334 1944 MBR partitions:
20:10:42.0334 1944 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x61A7927
20:10:42.0334 1944 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x61A79A5, BlocksNum 0x2878C45B
20:10:42.0334 1944 ============================================================
20:10:42.0365 1944 C: <-> \Device\Harddisk0\DR0\Partition0
20:10:42.0381 1944 D: <-> \Device\Harddisk0\DR0\Partition1
20:10:42.0381 1944 ============================================================
20:10:42.0381 1944 Initialize success
20:10:42.0381 1944 ============================================================
20:11:08.0428 3008 ============================================================
20:11:08.0428 3008 Scan started
20:11:08.0428 3008 Mode: Manual; SigCheck; TDLFS;
20:11:08.0428 3008 ============================================================
20:11:09.0287 3008 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
20:11:09.0365 3008 1394ohci - ok
20:11:09.0412 3008 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
20:11:09.0428 3008 ACPI - ok
20:11:09.0443 3008 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
20:11:09.0506 3008 AcpiPmi - ok
20:11:09.0599 3008 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:11:09.0615 3008 AdobeARMservice - ok
20:11:09.0709 3008 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:11:09.0709 3008 AdobeFlashPlayerUpdateSvc - ok
20:11:09.0771 3008 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
20:11:09.0787 3008 adp94xx - ok
20:11:09.0849 3008 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
20:11:09.0865 3008 adpahci - ok
20:11:09.0896 3008 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
20:11:09.0912 3008 adpu320 - ok
20:11:09.0943 3008 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
20:11:10.0053 3008 AeLookupSvc - ok
20:11:10.0115 3008 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
20:11:10.0162 3008 AFD - ok
20:11:10.0193 3008 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
20:11:10.0209 3008 agp440 - ok
20:11:10.0240 3008 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
20:11:10.0287 3008 ALG - ok
20:11:10.0303 3008 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
20:11:10.0318 3008 aliide - ok
20:11:10.0365 3008 AMD External Events Utility (20c8a3e435a47f0408a1ea674afa6194) C:\Windows\system32\atiesrxx.exe
20:11:10.0428 3008 AMD External Events Utility - ok
20:11:10.0443 3008 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
20:11:10.0443 3008 amdide - ok
20:11:10.0474 3008 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
20:11:10.0506 3008 AmdK8 - ok
20:11:11.0021 3008 amdkmdag (0b45c18b0f3ee996d25baa4e74884b83) C:\Windows\system32\DRIVERS\atikmdag.sys
20:11:11.0334 3008 amdkmdag - ok
20:11:11.0474 3008 amdkmdap (0e57258e5cc4cc7a9a9a877afdf0cec6) C:\Windows\system32\DRIVERS\atikmpag.sys
20:11:11.0506 3008 amdkmdap - ok
20:11:11.0537 3008 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys
20:11:11.0568 3008 AmdPPM - ok
20:11:11.0584 3008 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
20:11:11.0599 3008 amdsata - ok
20:11:11.0631 3008 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
20:11:11.0646 3008 amdsbs - ok
20:11:11.0662 3008 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
20:11:11.0662 3008 amdxata - ok
20:11:11.0693 3008 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
20:11:11.0834 3008 AppID - ok
20:11:11.0849 3008 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
20:11:11.0896 3008 AppIDSvc - ok
20:11:11.0912 3008 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
20:11:11.0974 3008 Appinfo - ok
20:11:12.0006 3008 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
20:11:12.0021 3008 arc - ok
20:11:12.0037 3008 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
20:11:12.0053 3008 arcsas - ok
20:11:12.0131 3008 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:11:12.0146 3008 aspnet_state - ok
20:11:12.0178 3008 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
20:11:12.0224 3008 AsyncMac - ok
20:11:12.0240 3008 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
20:11:12.0240 3008 atapi - ok
20:11:12.0303 3008 AtiHDAudioService (24464b908e143d2561e9e452fee97309) C:\Windows\system32\drivers\AtihdW76.sys
20:11:12.0318 3008 AtiHDAudioService - ok
20:11:12.0396 3008 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:11:12.0459 3008 AudioEndpointBuilder - ok
20:11:12.0459 3008 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:11:12.0490 3008 AudioSrv - ok
20:11:12.0521 3008 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
20:11:12.0599 3008 AxInstSV - ok
20:11:12.0662 3008 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
20:11:12.0693 3008 b06bdrv - ok
20:11:12.0740 3008 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
20:11:12.0771 3008 b57nd60a - ok
20:11:12.0818 3008 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
20:11:12.0849 3008 BDESVC - ok
20:11:12.0865 3008 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
20:11:12.0928 3008 Beep - ok
20:11:13.0021 3008 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
20:11:13.0084 3008 BFE - ok
20:11:13.0146 3008 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
20:11:13.0224 3008 BITS - ok
20:11:13.0271 3008 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
20:11:13.0303 3008 blbdrive - ok
20:11:13.0334 3008 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
20:11:13.0381 3008 bowser - ok
20:11:13.0396 3008 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
20:11:13.0428 3008 BrFiltLo - ok
20:11:13.0443 3008 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
20:11:13.0459 3008 BrFiltUp - ok
20:11:13.0490 3008 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
20:11:13.0537 3008 Browser - ok
20:11:13.0568 3008 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
20:11:13.0615 3008 Brserid - ok
20:11:13.0615 3008 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
20:11:13.0646 3008 BrSerWdm - ok
20:11:13.0662 3008 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
20:11:13.0693 3008 BrUsbMdm - ok
20:11:13.0709 3008 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
20:11:13.0724 3008 BrUsbSer - ok
20:11:13.0740 3008 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys
20:11:13.0771 3008 BTHMODEM - ok
20:11:13.0803 3008 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
20:11:13.0834 3008 bthserv - ok
20:11:13.0849 3008 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
20:11:13.0881 3008 cdfs - ok
20:11:13.0928 3008 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
20:11:13.0959 3008 cdrom - ok
20:11:13.0974 3008 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:11:14.0037 3008 CertPropSvc - ok
20:11:14.0068 3008 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
20:11:14.0084 3008 circlass - ok
20:11:14.0115 3008 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
20:11:14.0131 3008 CLFS - ok
20:11:14.0193 3008 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:11:14.0209 3008 clr_optimization_v2.0.50727_32 - ok
20:11:14.0256 3008 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:11:14.0256 3008 clr_optimization_v2.0.50727_64 - ok
20:11:14.0334 3008 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:11:14.0349 3008 clr_optimization_v4.0.30319_32 - ok
20:11:14.0553 3008 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:11:14.0553 3008 clr_optimization_v4.0.30319_64 - ok
20:11:14.0584 3008 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys
20:11:14.0599 3008 CmBatt - ok
20:11:14.0615 3008 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
20:11:14.0631 3008 cmdide - ok
20:11:14.0678 3008 CNG (9ac4f97c2d3e93367e2148ea940cd2cd) C:\Windows\system32\Drivers\cng.sys
20:11:14.0724 3008 CNG - ok
20:11:14.0740 3008 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys
20:11:14.0740 3008 Compbatt - ok
20:11:14.0787 3008 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
20:11:14.0803 3008 CompositeBus - ok
20:11:14.0818 3008 COMSysApp - ok
20:11:14.0818 3008 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
20:11:14.0834 3008 crcdisk - ok
20:11:14.0865 3008 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll
20:11:14.0896 3008 CryptSvc - ok
20:11:14.0943 3008 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:11:14.0990 3008 DcomLaunch - ok
20:11:15.0021 3008 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
20:11:15.0084 3008 defragsvc - ok
20:11:15.0115 3008 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
20:11:15.0162 3008 DfsC - ok
20:11:15.0193 3008 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
20:11:15.0240 3008 Dhcp - ok
20:11:15.0240 3008 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
20:11:15.0287 3008 discache - ok
20:11:15.0318 3008 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
20:11:15.0318 3008 Disk - ok
20:11:15.0349 3008 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
20:11:15.0396 3008 Dnscache - ok
20:11:15.0412 3008 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
20:11:15.0459 3008 dot3svc - ok
20:11:15.0474 3008 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
20:11:15.0521 3008 DPS - ok
20:11:15.0553 3008 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
20:11:15.0584 3008 drmkaud - ok
20:11:15.0631 3008 dtsoftbus01 (46571ed73ae84469dca53081d33cf3c8) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
20:11:15.0631 3008 dtsoftbus01 - ok
20:11:15.0709 3008 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
20:11:15.0724 3008 DXGKrnl - ok
20:11:15.0756 3008 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
20:11:15.0803 3008 EapHost - ok
20:11:15.0974 3008 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
20:11:16.0037 3008 ebdrv - ok
20:11:16.0131 3008 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
20:11:16.0178 3008 EFS - ok
20:11:16.0256 3008 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
20:11:16.0303 3008 ehRecvr - ok
20:11:16.0334 3008 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
20:11:16.0349 3008 ehSched - ok
20:11:16.0428 3008 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
20:11:16.0459 3008 elxstor - ok
20:11:16.0474 3008 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
20:11:16.0490 3008 ErrDev - ok
20:11:16.0537 3008 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
20:11:16.0584 3008 EventSystem - ok
20:11:16.0615 3008 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
20:11:16.0646 3008 exfat - ok
20:11:16.0662 3008 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
20:11:16.0709 3008 fastfat - ok
20:11:16.0771 3008 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
20:11:16.0803 3008 Fax - ok
20:11:16.0834 3008 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
20:11:16.0849 3008 fdc - ok
20:11:16.0896 3008 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
20:11:16.0943 3008 fdPHost - ok
20:11:16.0959 3008 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
20:11:17.0006 3008 FDResPub - ok
20:11:17.0037 3008 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
20:11:17.0037 3008 FileInfo - ok
20:11:17.0053 3008 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
20:11:17.0084 3008 Filetrace - ok
20:11:17.0115 3008 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
20:11:17.0131 3008 flpydisk - ok
20:11:17.0146 3008 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
20:11:17.0162 3008 FltMgr - ok
20:11:17.0240 3008 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
20:11:17.0287 3008 FontCache - ok
20:11:17.0334 3008 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:11:17.0349 3008 FontCache3.0.0.0 - ok
20:11:17.0412 3008 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
20:11:17.0412 3008 FsDepends - ok
20:11:17.0459 3008 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
20:11:17.0459 3008 Fs_Rec - ok
20:11:17.0506 3008 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
20:11:17.0521 3008 fvevol - ok
20:11:17.0537 3008 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
20:11:17.0553 3008 gagp30kx - ok
20:11:17.0615 3008 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
20:11:17.0662 3008 gpsvc - ok
20:11:17.0756 3008 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:11:17.0771 3008 gupdate - ok
20:11:17.0771 3008 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:11:17.0771 3008 gupdatem - ok
20:11:17.0818 3008 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
20:11:17.0834 3008 gusvc - ok
20:11:17.0865 3008 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
20:11:17.0896 3008 hcw85cir - ok
20:11:17.0974 3008 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
20:11:18.0006 3008 HdAudAddService - ok
20:11:18.0037 3008 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys
20:11:18.0068 3008 HDAudBus - ok
20:11:18.0068 3008 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
20:11:18.0084 3008 HidBatt - ok
20:11:18.0115 3008 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
20:11:18.0131 3008 HidBth - ok
20:11:18.0146 3008 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
20:11:18.0162 3008 HidIr - ok
20:11:18.0193 3008 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
20:11:18.0240 3008 hidserv - ok
20:11:18.0271 3008 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
20:11:18.0287 3008 HidUsb - ok
20:11:18.0318 3008 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
20:11:18.0381 3008 hkmsvc - ok
20:11:18.0412 3008 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
20:11:18.0459 3008 HomeGroupListener - ok
20:11:18.0490 3008 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
20:11:18.0506 3008 HomeGroupProvider - ok
20:11:18.0537 3008 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
20:11:18.0553 3008 HpSAMD - ok
20:11:18.0599 3008 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
20:11:18.0678 3008 HTTP - ok
20:11:18.0693 3008 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
20:11:18.0693 3008 hwpolicy - ok
20:11:18.0740 3008 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
20:11:18.0740 3008 i8042prt - ok
20:11:18.0803 3008 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
20:11:18.0818 3008 iaStorV - ok
20:11:18.0928 3008 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:11:18.0959 3008 idsvc - ok
20:11:18.0974 3008 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
20:11:18.0990 3008 iirsp - ok
20:11:19.0053 3008 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
20:11:19.0115 3008 IKEEXT - ok
20:11:19.0334 3008 IntcAzAudAddService (5f6a3ea5bd7ca861863a3a06cecc115c) C:\Windows\system32\drivers\RTKVHD64.sys
20:11:19.0396 3008 IntcAzAudAddService - ok
20:11:19.0646 3008 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
20:11:19.0662 3008 intelide - ok
20:11:19.0693 3008 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
20:11:19.0709 3008 intelppm - ok
20:11:19.0740 3008 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
20:11:19.0787 3008 IPBusEnum - ok
20:11:19.0803 3008 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:11:19.0834 3008 IpFilterDriver - ok
20:11:19.0881 3008 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
20:11:19.0928 3008 iphlpsvc - ok
20:11:19.0928 3008 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
20:11:19.0943 3008 IPMIDRV - ok
20:11:19.0959 3008 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
20:11:19.0990 3008 IPNAT - ok
20:11:20.0021 3008 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
20:11:20.0053 3008 IRENUM - ok
20:11:20.0053 3008 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
20:11:20.0068 3008 isapnp - ok
20:11:20.0099 3008 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
20:11:20.0115 3008 iScsiPrt - ok
20:11:20.0178 3008 JRAID (c0d9ba660a41ee8a269ef804e6cd0d7b) C:\Windows\system32\DRIVERS\jraid.sys
20:11:20.0193 3008 JRAID - ok
20:11:20.0224 3008 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
20:11:20.0240 3008 kbdclass - ok
20:11:20.0271 3008 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
20:11:20.0303 3008 kbdhid - ok
20:11:20.0318 3008 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:20.0334 3008 KeyIso - ok
20:11:20.0365 3008 KSecDD (97a7070aea4c058b6418519e869a63b4) C:\Windows\system32\Drivers\ksecdd.sys
20:11:20.0365 3008 KSecDD - ok
20:11:20.0396 3008 KSecPkg (26c43a7c2862447ec59deda188d1da07) C:\Windows\system32\Drivers\ksecpkg.sys
20:11:20.0412 3008 KSecPkg - ok
20:11:20.0443 3008 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
20:11:20.0490 3008 ksthunk - ok
20:11:20.0537 3008 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
20:11:20.0584 3008 KtmRm - ok
20:11:20.0631 3008 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
20:11:20.0678 3008 LanmanServer - ok
20:11:20.0709 3008 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
20:11:20.0740 3008 LanmanWorkstation - ok
20:11:20.0771 3008 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
20:11:20.0818 3008 lltdio - ok
20:11:20.0849 3008 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
20:11:20.0896 3008 lltdsvc - ok
20:11:20.0912 3008 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
20:11:20.0943 3008 lmhosts - ok
20:11:20.0990 3008 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
20:11:21.0006 3008 LSI_FC - ok
20:11:21.0021 3008 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
20:11:21.0037 3008 LSI_SAS - ok
20:11:21.0053 3008 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
20:11:21.0068 3008 LSI_SAS2 - ok
20:11:21.0084 3008 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
20:11:21.0099 3008 LSI_SCSI - ok
20:11:21.0131 3008 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
20:11:21.0178 3008 luafv - ok
20:11:21.0193 3008 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
20:11:21.0224 3008 Mcx2Svc - ok
20:11:21.0240 3008 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
20:11:21.0256 3008 megasas - ok
20:11:21.0287 3008 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
20:11:21.0303 3008 MegaSR - ok
20:11:21.0334 3008 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:11:21.0365 3008 MMCSS - ok
20:11:21.0381 3008 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
20:11:21.0428 3008 Modem - ok
20:11:21.0459 3008 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
20:11:21.0490 3008 monitor - ok
20:11:21.0506 3008 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
20:11:21.0521 3008 mouclass - ok
20:11:21.0553 3008 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
20:11:21.0568 3008 mouhid - ok
20:11:21.0584 3008 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
20:11:21.0599 3008 mountmgr - ok
20:11:21.0646 3008 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
20:11:21.0662 3008 MpFilter - ok
20:11:21.0693 3008 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
20:11:21.0709 3008 mpio - ok
20:11:21.0724 3008 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
20:11:21.0756 3008 mpsdrv - ok
20:11:21.0818 3008 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
20:11:21.0865 3008 MpsSvc - ok
20:11:21.0881 3008 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
20:11:21.0912 3008 MRxDAV - ok
20:11:21.0943 3008 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
20:11:21.0974 3008 mrxsmb - ok
20:11:22.0006 3008 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:11:22.0037 3008 mrxsmb10 - ok
20:11:22.0053 3008 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:11:22.0053 3008 mrxsmb20 - ok
20:11:22.0084 3008 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
20:11:22.0099 3008 msahci - ok
20:11:22.0115 3008 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
20:11:22.0131 3008 msdsm - ok
20:11:22.0162 3008 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
20:11:22.0193 3008 MSDTC - ok
20:11:22.0209 3008 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
20:11:22.0256 3008 Msfs - ok
20:11:22.0271 3008 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
20:11:22.0318 3008 mshidkmdf - ok
20:11:22.0318 3008 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
20:11:22.0334 3008 msisadrv - ok
20:11:22.0381 3008 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
20:11:22.0428 3008 MSiSCSI - ok
20:11:22.0428 3008 msiserver - ok
20:11:22.0459 3008 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
20:11:22.0506 3008 MSKSSRV - ok
20:11:22.0584 3008 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
20:11:22.0599 3008 MsMpSvc - ok
20:11:22.0615 3008 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
20:11:22.0662 3008 MSPCLOCK - ok
20:11:22.0678 3008 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
20:11:22.0724 3008 MSPQM - ok
20:11:22.0756 3008 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
20:11:22.0771 3008 MsRPC - ok
20:11:22.0787 3008 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
20:11:22.0803 3008 mssmbios - ok
20:11:22.0803 3008 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
20:11:22.0834 3008 MSTEE - ok
20:11:22.0849 3008 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
20:11:22.0865 3008 MTConfig - ok
20:11:22.0881 3008 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
20:11:22.0896 3008 Mup - ok
20:11:22.0928 3008 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
20:11:22.0974 3008 napagent - ok
20:11:23.0021 3008 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
20:11:23.0053 3008 NativeWifiP - ok
20:11:23.0115 3008 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
20:11:23.0146 3008 NDIS - ok
20:11:23.0162 3008 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
20:11:23.0209 3008 NdisCap - ok
20:11:23.0240 3008 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
20:11:23.0271 3008 NdisTapi - ok
20:11:23.0287 3008 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
20:11:23.0334 3008 Ndisuio - ok
20:11:23.0349 3008 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
20:11:23.0396 3008 NdisWan - ok
20:11:23.0412 3008 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
20:11:23.0459 3008 NDProxy - ok
20:11:23.0474 3008 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
20:11:23.0521 3008 NetBIOS - ok
20:11:23.0553 3008 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
20:11:23.0584 3008 NetBT - ok
20:11:23.0615 3008 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:23.0631 3008 Netlogon - ok
20:11:23.0678 3008 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
20:11:23.0724 3008 Netman - ok
20:11:23.0803 3008 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0818 3008 NetMsmqActivator - ok
20:11:23.0834 3008 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0834 3008 NetPipeActivator - ok
20:11:23.0865 3008 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
20:11:23.0912 3008 netprofm - ok
20:11:23.0928 3008 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0943 3008 NetTcpActivator - ok
20:11:23.0943 3008 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:11:23.0943 3008 NetTcpPortSharing - ok
20:11:24.0006 3008 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
20:11:24.0021 3008 nfrd960 - ok
20:11:24.0084 3008 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
20:11:24.0099 3008 NisDrv - ok
20:11:24.0178 3008 NisSrv (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
20:11:24.0193 3008 NisSrv - ok
20:11:24.0240 3008 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
20:11:24.0287 3008 NlaSvc - ok
20:11:24.0303 3008 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
20:11:24.0334 3008 Npfs - ok
20:11:24.0349 3008 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
20:11:24.0396 3008 nsi - ok
20:11:24.0428 3008 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
20:11:24.0459 3008 nsiproxy - ok
20:11:24.0568 3008 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
20:11:24.0599 3008 Ntfs - ok
20:11:24.0787 3008 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
20:11:24.0834 3008 Null - ok
20:11:24.0865 3008 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
20:11:24.0881 3008 nvraid - ok
20:11:24.0896 3008 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
20:11:24.0912 3008 nvstor - ok
20:11:24.0928 3008 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
20:11:24.0943 3008 nv_agp - ok
20:11:24.0959 3008 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
20:11:24.0974 3008 ohci1394 - ok
20:11:25.0037 3008 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:11:25.0053 3008 ose - ok
20:11:25.0084 3008 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:11:25.0131 3008 p2pimsvc - ok
20:11:25.0178 3008 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
20:11:25.0193 3008 p2psvc - ok
20:11:25.0224 3008 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
20:11:25.0256 3008 Parport - ok
20:11:25.0271 3008 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
20:11:25.0287 3008 partmgr - ok
20:11:25.0303 3008 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
20:11:25.0334 3008 PcaSvc - ok
20:11:25.0365 3008 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
20:11:25.0381 3008 pci - ok
20:11:25.0381 3008 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
20:11:25.0396 3008 pciide - ok
20:11:25.0428 3008 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
20:11:25.0443 3008 pcmcia - ok
20:11:25.0459 3008 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
20:11:25.0459 3008 pcw - ok
20:11:25.0506 3008 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
20:11:25.0553 3008 PEAUTH - ok
20:11:25.0631 3008 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
20:11:25.0646 3008 PerfHost - ok
20:11:25.0740 3008 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
20:11:25.0803 3008 pla - ok
20:11:25.0865 3008 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
20:11:25.0896 3008 PlugPlay - ok
20:11:25.0912 3008 PnkBstrA - ok
20:11:25.0928 3008 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
20:11:25.0959 3008 PNRPAutoReg - ok
20:11:25.0990 3008 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:11:26.0006 3008 PNRPsvc - ok
20:11:26.0053 3008 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
20:11:26.0099 3008 PolicyAgent - ok
20:11:26.0146 3008 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
20:11:26.0178 3008 Power - ok
20:11:26.0256 3008 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
20:11:26.0287 3008 PptpMiniport - ok
20:11:26.0303 3008 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
20:11:26.0334 3008 Processor - ok
20:11:26.0365 3008 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll
20:11:26.0396 3008 ProfSvc - ok
20:11:26.0412 3008 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:26.0428 3008 ProtectedStorage - ok
20:11:26.0459 3008 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
20:11:26.0490 3008 Psched - ok
20:11:26.0584 3008 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
20:11:26.0631 3008 ql2300 - ok
20:11:26.0756 3008 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
20:11:26.0771 3008 ql40xx - ok
20:11:26.0803 3008 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
20:11:26.0818 3008 QWAVE - ok
20:11:26.0834 3008 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
20:11:26.0865 3008 QWAVEdrv - ok
20:11:26.0881 3008 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
20:11:26.0912 3008 RasAcd - ok
20:11:26.0943 3008 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
20:11:26.0974 3008 RasAgileVpn - ok
20:11:26.0990 3008 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
20:11:27.0037 3008 RasAuto - ok
20:11:27.0053 3008 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
20:11:27.0099 3008 Rasl2tp - ok
20:11:27.0131 3008 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
20:11:27.0162 3008 RasMan - ok
20:11:27.0193 3008 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
20:11:27.0240 3008 RasPppoe - ok
20:11:27.0256 3008 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
20:11:27.0303 3008 RasSstp - ok
20:11:27.0318 3008 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
20:11:27.0365 3008 rdbss - ok
20:11:27.0381 3008 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys
20:11:27.0396 3008 rdpbus - ok
20:11:27.0412 3008 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
20:11:27.0459 3008 RDPCDD - ok
20:11:27.0474 3008 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
20:11:27.0506 3008 RDPENCDD - ok
20:11:27.0521 3008 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
20:11:27.0553 3008 RDPREFMP - ok
20:11:27.0584 3008 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys
20:11:27.0615 3008 RDPWD - ok
20:11:27.0662 3008 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
20:11:27.0678 3008 rdyboost - ok
20:11:27.0709 3008 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
20:11:27.0756 3008 RemoteAccess - ok
20:11:27.0787 3008 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
20:11:27.0834 3008 RemoteRegistry - ok
20:11:27.0849 3008 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
20:11:27.0881 3008 RpcEptMapper - ok
20:11:27.0896 3008 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
20:11:27.0928 3008 RpcLocator - ok
20:11:27.0959 3008 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:11:28.0006 3008 RpcSs - ok
20:11:28.0037 3008 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
20:11:28.0068 3008 rspndr - ok
20:11:28.0115 3008 RTL8167 (baefee35d27a5440d35092ce10267bec) C:\Windows\system32\DRIVERS\Rt64win7.sys
20:11:28.0146 3008 RTL8167 - ok
20:11:28.0193 3008 SaiK0CC3 (3c24436f091369ec4b91eb8294f53304) C:\Windows\system32\DRIVERS\SaiK0CC3.sys
20:11:28.0193 3008 SaiK0CC3 - ok
20:11:28.0209 3008 SaiMini (64bc6cc8fd3408df37ea488d88d54a4a) C:\Windows\system32\DRIVERS\SaiMini.sys
20:11:28.0224 3008 SaiMini - ok
20:11:28.0240 3008 SaiNtBus (6a78c024625926cc4b67b3e6ad14910a) C:\Windows\system32\drivers\SaiBus.sys
20:11:28.0240 3008 SaiNtBus - ok
20:11:28.0271 3008 SaiU0CC3 (e99885666b9daf934c353e0681bce7da) C:\Windows\system32\DRIVERS\SaiU0CC3.sys
20:11:28.0287 3008 SaiU0CC3 - ok
20:11:28.0303 3008 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:28.0318 3008 SamSs - ok
20:11:28.0349 3008 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
20:11:28.0365 3008 sbp2port - ok
20:11:28.0490 3008 SBSDWSCService (794d4b48dfb6e999537c7c3947863463) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
20:11:28.0521 3008 SBSDWSCService - ok
20:11:28.0553 3008 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
20:11:28.0584 3008 SCardSvr - ok
20:11:28.0646 3008 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
20:11:28.0709 3008 scfilter - ok
20:11:28.0771 3008 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
20:11:28.0849 3008 Schedule - ok
20:11:28.0865 3008 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:11:28.0896 3008 SCPolicySvc - ok
20:11:28.0928 3008 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
20:11:28.0943 3008 SDRSVC - ok
20:11:29.0006 3008 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
20:11:29.0068 3008 secdrv - ok
20:11:29.0084 3008 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
20:11:29.0115 3008 seclogon - ok
20:11:29.0146 3008 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
20:11:29.0178 3008 SENS - ok
20:11:29.0193 3008 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
20:11:29.0224 3008 SensrSvc - ok
20:11:29.0256 3008 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
20:11:29.0271 3008 Serenum - ok
20:11:29.0303 3008 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
20:11:29.0318 3008 Serial - ok
20:11:29.0334 3008 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
20:11:29.0349 3008 sermouse - ok
20:11:29.0381 3008 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
20:11:29.0428 3008 SessionEnv - ok
20:11:29.0428 3008 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
20:11:29.0443 3008 sffdisk - ok
20:11:29.0443 3008 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
20:11:29.0474 3008 sffp_mmc - ok
20:11:29.0474 3008 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
20:11:29.0490 3008 sffp_sd - ok
20:11:29.0490 3008 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
20:11:29.0521 3008 sfloppy - ok
20:11:29.0568 3008 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
20:11:29.0631 3008 SharedAccess - ok
20:11:29.0662 3008 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
20:11:29.0693 3008 ShellHWDetection - ok
20:11:29.0709 3008 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
20:11:29.0724 3008 SiSRaid2 - ok
20:11:29.0740 3008 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
20:11:29.0756 3008 SiSRaid4 - ok
20:11:29.0818 3008 SkypeUpdate (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files (x86)\Skype\Updater\Updater.exe
20:11:29.0834 3008 SkypeUpdate - ok
20:11:29.0865 3008 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
20:11:29.0928 3008 Smb - ok
20:11:29.0959 3008 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
20:11:29.0974 3008 SNMPTRAP - ok
20:11:30.0006 3008 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
20:11:30.0021 3008 spldr - ok
20:11:30.0053 3008 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
20:11:30.0099 3008 Spooler - ok
20:11:30.0271 3008 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
20:11:30.0365 3008 sppsvc - ok
20:11:30.0474 3008 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
20:11:30.0506 3008 sppuinotify - ok
20:11:30.0584 3008 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
20:11:30.0615 3008 srv - ok
20:11:30.0646 3008 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
20:11:30.0678 3008 srv2 - ok
20:11:30.0693 3008 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
20:11:30.0709 3008 srvnet - ok
20:11:30.0756 3008 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
20:11:30.0787 3008 SSDPSRV - ok
20:11:30.0803 3008 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
20:11:30.0849 3008 SstpSvc - ok
20:11:30.0881 3008 Steam Client Service - ok
20:11:30.0896 3008 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
20:11:30.0912 3008 stexstor - ok
20:11:30.0974 3008 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
20:11:31.0006 3008 stisvc - ok
20:11:31.0021 3008 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
20:11:31.0021 3008 swenum - ok
20:11:31.0068 3008 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
20:11:31.0115 3008 swprv - ok
20:11:31.0209 3008 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
20:11:31.0256 3008 SysMain - ok
20:11:31.0349 3008 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
20:11:31.0396 3008 TabletInputService - ok
20:11:31.0412 3008 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
20:11:31.0474 3008 TapiSrv - ok
20:11:31.0506 3008 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
20:11:31.0537 3008 TBS - ok
20:11:31.0678 3008 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
20:11:31.0724 3008 Tcpip - ok
20:11:31.0928 3008 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
20:11:31.0974 3008 TCPIP6 - ok
20:11:32.0021 3008 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
20:11:32.0068 3008 tcpipreg - ok
20:11:32.0084 3008 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
20:11:32.0115 3008 TDPIPE - ok
20:11:32.0146 3008 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
20:11:32.0162 3008 TDTCP - ok
20:11:32.0178 3008 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
20:11:32.0224 3008 tdx - ok
20:11:32.0240 3008 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
20:11:32.0256 3008 TermDD - ok
20:11:32.0303 3008 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
20:11:32.0349 3008 TermService - ok
20:11:32.0365 3008 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
20:11:32.0381 3008 Themes - ok
20:11:32.0412 3008 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:11:32.0459 3008 THREADORDER - ok
20:11:32.0474 3008 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
20:11:32.0506 3008 TrkWks - ok
20:11:32.0568 3008 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
20:11:32.0615 3008 TrustedInstaller - ok
20:11:32.0631 3008 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
20:11:32.0678 3008 tssecsrv - ok
20:11:32.0709 3008 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
20:11:32.0724 3008 TsUsbFlt - ok
20:11:32.0740 3008 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
20:11:32.0771 3008 TsUsbGD - ok
20:11:32.0787 3008 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
20:11:32.0818 3008 tunnel - ok
20:11:32.0818 3008 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
20:11:32.0834 3008 uagp35 - ok
20:11:32.0865 3008 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
20:11:32.0928 3008 udfs - ok
20:11:32.0959 3008 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
20:11:32.0974 3008 UI0Detect - ok
20:11:33.0006 3008 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
20:11:33.0006 3008 uliagpkx - ok
20:11:33.0037 3008 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
20:11:33.0053 3008 umbus - ok
20:11:33.0099 3008 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
20:11:33.0115 3008 UmPass - ok
20:11:33.0146 3008 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
20:11:33.0193 3008 upnphost - ok
20:11:33.0240 3008 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
20:11:33.0271 3008 usbccgp - ok
20:11:33.0287 3008 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
20:11:33.0303 3008 usbcir - ok
20:11:33.0334 3008 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
20:11:33.0349 3008 usbehci - ok
20:11:33.0396 3008 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
20:11:33.0412 3008 usbhub - ok
20:11:33.0428 3008 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
20:11:33.0459 3008 usbohci - ok
20:11:33.0474 3008 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
20:11:33.0490 3008 usbprint - ok
20:11:33.0521 3008 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:11:33.0568 3008 USBSTOR - ok
20:11:33.0584 3008 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
20:11:33.0599 3008 usbuhci - ok
20:11:33.0615 3008 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
20:11:33.0662 3008 UxSms - ok
20:11:33.0678 3008 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:11:33.0693 3008 VaultSvc - ok
20:11:33.0724 3008 VBoxNetAdp (01f5ff577ca9d3555941c5c266af4385) C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
20:11:33.0740 3008 VBoxNetAdp - ok
20:11:33.0756 3008 VBoxNetFlt - ok
20:11:33.0787 3008 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
20:11:33.0803 3008 vdrvroot - ok
20:11:33.0849 3008 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
20:11:33.0896 3008 vds - ok
20:11:33.0912 3008 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
20:11:33.0928 3008 vga - ok
20:11:33.0943 3008 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
20:11:33.0974 3008 VgaSave - ok
20:11:33.0990 3008 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
20:11:34.0006 3008 vhdmp - ok
20:11:34.0021 3008 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
20:11:34.0021 3008 viaide - ok
20:11:34.0053 3008 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
20:11:34.0053 3008 volmgr - ok
20:11:34.0099 3008 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
20:11:34.0115 3008 volmgrx - ok
20:11:34.0131 3008 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
20:11:34.0146 3008 volsnap - ok
20:11:34.0178 3008 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
20:11:34.0193 3008 vsmraid - ok
20:11:34.0287 3008 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
20:11:34.0349 3008 VSS - ok
20:11:34.0474 3008 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
20:11:34.0490 3008 vwifibus - ok
20:11:34.0537 3008 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
20:11:34.0568 3008 W32Time - ok
20:11:34.0584 3008 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
20:11:34.0615 3008 WacomPen - ok
20:11:34.0631 3008 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:11:34.0678 3008 WANARP - ok
20:11:34.0678 3008 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:11:34.0709 3008 Wanarpv6 - ok
20:11:34.0818 3008 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
20:11:34.0865 3008 WatAdminSvc - ok
20:11:34.0959 3008 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
20:11:35.0021 3008 wbengine - ok
20:11:35.0099 3008 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
20:11:35.0131 3008 WbioSrvc - ok
20:11:35.0162 3008 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
20:11:35.0209 3008 wcncsvc - ok
20:11:35.0224 3008 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
20:11:35.0256 3008 WcsPlugInService - ok
20:11:35.0303 3008 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
20:11:35.0318 3008 Wd - ok
20:11:35.0365 3008 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
20:11:35.0381 3008 Wdf01000 - ok
20:11:35.0412 3008 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:11:35.0474 3008 WdiServiceHost - ok
20:11:35.0474 3008 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:11:35.0490 3008 WdiSystemHost - ok
20:11:35.0521 3008 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
20:11:35.0553 3008 WebClient - ok
20:11:35.0568 3008 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
20:11:35.0615 3008 Wecsvc - ok
20:11:35.0631 3008 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
20:11:35.0678 3008 wercplsupport - ok
20:11:35.0693 3008 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
20:11:35.0724 3008 WerSvc - ok
20:11:35.0787 3008 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
20:11:35.0818 3008 WfpLwf - ok
20:11:35.0834 3008 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
20:11:35.0849 3008 WIMMount - ok
20:11:35.0896 3008 WinDefend - ok
20:11:35.0896 3008 WinHttpAutoProxySvc - ok
20:11:35.0974 3008 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
20:11:36.0006 3008 Winmgmt - ok
20:11:36.0115 3008 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
20:11:36.0178 3008 WinRM - ok
20:11:36.0318 3008 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
20:11:36.0365 3008 Wlansvc - ok
20:11:36.0412 3008 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
20:11:36.0443 3008 WmiAcpi - ok
20:11:36.0506 3008 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
20:11:36.0537 3008 wmiApSrv - ok
20:11:36.0584 3008 WMPNetworkSvc - ok
20:11:36.0615 3008 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
20:11:36.0646 3008 WPCSvc - ok
20:11:36.0678 3008 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
20:11:36.0693 3008 WPDBusEnum - ok
20:11:36.0724 3008 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
20:11:36.0771 3008 ws2ifsl - ok
20:11:36.0787 3008 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
20:11:36.0803 3008 wscsvc - ok
20:11:36.0803 3008 WSearch - ok
20:11:36.0959 3008 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
20:11:37.0021 3008 wuauserv - ok
20:11:37.0146 3008 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
20:11:37.0193 3008 WudfPf - ok
20:11:37.0240 3008 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
20:11:37.0271 3008 WUDFRd - ok
20:11:37.0303 3008 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
20:11:37.0334 3008 wudfsvc - ok
20:11:37.0381 3008 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
20:11:37.0412 3008 WwanSvc - ok
20:11:37.0443 3008 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
20:11:37.0646 3008 \Device\Harddisk0\DR0 ( TDSS File System ) - warning
20:11:37.0646 3008 \Device\Harddisk0\DR0 - detected TDSS File System (1)
20:11:37.0678 3008 Boot (0x1200) (17819b15850eb98b560652f58b135142) \Device\Harddisk0\DR0\Partition0
20:11:37.0678 3008 \Device\Harddisk0\DR0\Partition0 - ok
20:11:37.0693 3008 Boot (0x1200) (f4d788bba0afe6d7b986332a4cb9830b) \Device\Harddisk0\DR0\Partition1
20:11:37.0709 3008 \Device\Harddisk0\DR0\Partition1 - ok
20:11:37.0709 3008 ============================================================
20:11:37.0709 3008 Scan finished
20:11:37.0709 3008 ============================================================
20:11:37.0756 0980 Detected object count: 1
20:11:37.0756 0980 Actual detected object count: 1
20:12:17.0724 0980 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
20:12:17.0724 0980 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
|
![]() |
| Themen zu Win64/Sirefef.w - Sirefef.ab und Sirefef.M eingefangen |
| autorun, battle.net, call of duty, ebanking, einstellung, excel, fehler, flash player, format, google, home, html/iframe.b.gen, install.exe, langs, ms security essentials, neu aufgesetzt, object, plug-in, realtek, registry, richtlinie, safer networking, scan, searchscopes, security, software, svchost.exe, system, win32/injector.cb, win32/injector.txa, win64/sirefef.ab, win64/sirefef.m, win64/sirefef.w, windows, ändern |