|
Plagegeister aller Art und deren Bekämpfung: Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
02.09.2012, 20:13 | #16 |
/// Helfer-Team | Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Sehr gut! Deinstalliere: Emsisoft Anti-Malware ESET Online Scanner Vorbereitung
|
02.09.2012, 22:08 | #17 |
| Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 ESETSmartInstaller@High as downloader log:
__________________all ok ESETSmartInstaller@High as downloader log: all ok # version=7 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6583 # api_version=3.0.2 # EOSSerial=4fe8465c2260a941bc820019e124e464 # end=finished # remove_checked=true # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2012-09-02 08:40:32 # local_time=2012-09-02 10:40:32 (+0100, W. Europe Daylight Time) # country="Germany" # lang=1033 # osver=5.1.2600 NT Service Pack 3 # compatibility_mode=1792 16777175 100 0 28076158 28076158 0 0 # compatibility_mode=8192 67108863 100 0 568 568 0 0 # scanned=129626 # found=1 # cleaned=0 # scan_time=4178 ${Memory} multiple threats 00000000000000000000000000000000 I |
03.09.2012, 19:41 | #18 |
/// Helfer-Team | Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Malware mit Combofix beseitigen
__________________Lade Combofix von einem der folgenden Download-Spiegel herunter: BleepingComputer.com - ForoSpyware.com und speichere das Programm auf den Desktop, nicht woanders hin, das ist wichtig! Beachte die ausführliche Original-Anleitung. Zurzeit ist Combofix auf folgenden Windows-Versionen lauffähig:
Vorbereitung und wichtige Hinweise
Combofix nicht auf eigene Faust einsetzen. Wenn keine entsprechende Infektion vorliegt, kann das den Rechner lahmlegen und/oder nachhaltig schädigen!
__________________ |
03.09.2012, 23:15 | #19 |
| Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Combofix Logfile: Code:
ATTFilter ComboFix 12-09-03.07 - Dell_D820 04.09.2012 0:04.1.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.49.1033.18.2046.1561 [GMT 2:00] ausgeführt von:: c:\documents and settings\Dell_D820\Desktop\ComboFix.exe AV: Avira Desktop *Enabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\documents and settings\All Users\Application Data\036DFF6A47FA7D360000DA717B07D287 c:\documents and settings\All Users\Application Data\036DFF6A47FA7D360000DA717B07D287\036DFF6A47FA7D360000DA717B07D287 c:\documents and settings\All Users\Application Data\036DFF6A47FA7D360000DA717B07D287\036DFF6A47FA7D360000DA717B07D287.exe c:\documents and settings\All Users\Application Data\036DFF6A47FA7D360000DA717B07D287\036DFF6A47FA7D360000DA717B07D287.ico c:\documents and settings\All Users\Application Data\TEMP c:\recycler\S-1-5-18\$a85190e049192b494400fcb5ab63576e\@ c:\recycler\S-1-5-18\$a85190e049192b494400fcb5ab63576e\n c:\recycler\S-1-5-21-606747145-1770027372-1417001333-1003\$a85190e049192b494400fcb5ab63576e\n c:\windows\IsUn0407.exe c:\windows\system32\DEBUG.log c:\windows\system32\MUI\0407\tourstart.exe . . ((((((((((((((((((((((( Dateien erstellt von 2012-08-03 bis 2012-09-03 )))))))))))))))))))))))))))))) . . 2012-09-02 21:56 . 2012-09-02 21:56 -------- d-----w- c:\documents and settings\Dell_D820\Local Settings\Application Data\Sun 2012-09-02 19:37 . 2012-09-02 19:37 -------- d-s---w- c:\documents and settings\NetworkService\UserData 2012-09-02 07:22 . 2012-09-02 19:20 -------- d-----w- c:\program files\Emsisoft Anti-Malware 2012-09-01 18:37 . 2012-09-01 18:37 -------- d-----w- c:\documents and settings\Dell_D820\Local Settings\Application Data\Opera 2012-09-01 18:36 . 2012-09-01 18:37 -------- d-----w- c:\program files\Opera 2012-09-01 18:20 . 2012-09-01 18:20 -------- d-----w- c:\program files\Common Files\Java 2012-09-01 18:20 . 2012-09-01 18:20 -------- d-----w- c:\program files\Oracle 2012-09-01 18:19 . 2012-09-01 18:19 -------- d-----w- c:\documents and settings\Dell_D820\Application Data\Oracle 2012-09-01 18:19 . 2012-07-05 20:06 772544 ----a-w- c:\windows\system32\npDeployJava1.dll 2012-08-30 16:47 . 2012-08-30 16:47 -------- d-----w- c:\documents and settings\Dell_D820\Local Settings\Application Data\Facebook 2012-08-29 22:01 . 2012-08-29 22:01 -------- d-----w- C:\_OTL 2012-08-29 07:40 . 2012-08-29 07:40 -------- d-----w- c:\documents and settings\Dell_D820\Application Data\Malwarebytes 2012-08-29 07:40 . 2012-08-29 07:40 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-08-29 07:40 . 2012-08-29 07:40 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes 2012-08-29 07:40 . 2012-07-03 11:46 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-08-28 13:59 . 2012-08-28 13:59 -------- d-----w- c:\documents and settings\Dell_D820\Local Settings\Application Data\Identities . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-08-28 09:17 . 2012-04-04 05:55 696520 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-08-28 09:17 . 2011-08-01 15:30 73416 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-07-05 20:07 . 2011-10-07 13:21 143872 ----a-w- c:\windows\system32\javacpl.cpl 2012-07-05 20:06 . 2011-10-07 13:21 687544 ----a-w- c:\windows\system32\deployJava1.dll 2012-07-14 00:15 . 2011-07-24 10:30 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ------- Sigcheck ------- Note: Unsigned files aren't necessarily malware. . [-] 2010-01-08 . 362BC5AF8EAF712832C58CC13AE05750 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-09 13537280] "nwiz"="nwiz.exe" [2008-06-09 1630208] "NVHotkey"="nvHotkey.dll" [2008-06-09 90112] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296] "Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "_nltide_3"="advpack.dll" [2008-04-14 99840] . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "ctfmon.exe"=c:\windows\system32\ctfmon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" "NBAgent"="c:\program files\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart "NeroFilterCheck"=c:\windows\system32\NeroCheck.exe "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" "NvMediaCenter"=RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit "RemoteControl"="c:\program files\ASUSTeK\ASUSDVD\PDVDServ.exe" "SigmatelSysTrayApp"=%ProgramFiles%\SigmaTel\C-Major Audio\WDM\stsystra.exe "VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s "ActivControl"=c:\program files\Activ Software\ActivDriver\ActivControl2.exe "HP Software Update"=c:\program files\Hp\HP Software Update\HPWuSchd2.exe "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime "APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" /min . R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [13.10.2011 22:35 36000] R2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [13.10.2011 22:35 86224] R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [29.08.2012 09:40 655944] R2 NAUpdate;@c:\program files\Nero\Update\NASvc.exe,-200;c:\program files\Nero\Update\NASvc.exe [18.02.2010 14:01 462632] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [29.08.2012 09:40 22344] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [25.02.2010 11:18 10064] S2 gupdate;Google Update-Dienst (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [25.09.2011 16:15 136176] S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [21.11.2011 16:11 1052480] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [04.04.2012 07:55 250568] S3 gupdatem;Google Update-Dienst (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [25.09.2011 16:15 136176] S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [02.05.2012 19:57 113120] . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - BITS *NewlyCreated* - WUAUSERV . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . Inhalt des "geplante Tasks" Ordners . 2012-08-28 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-04 09:17] . 2012-01-30 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 16:57] . 2012-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cd6161dcb39fb6.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-25 14:15] . 2011-11-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-09-25 14:15] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = uInternet Connection Wizard,ShellNext = hxxp://sopcast.ourtoolbar.com/ IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\documents and settings\Dell_D820\Application Data\Mozilla\Firefox\Profiles\e7hs8gik.default\ FF - prefs.js: browser.search.selectedEngine - FF - prefs.js: browser.startup.homepage - hxxp://www.stern.de/ . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2012-09-04 00:08 Windows 5.1.2600 Service Pack 3 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: 0 . ************************************************************************** . Zeit der Fertigstellung: 2012-09-04 00:09:49 ComboFix-quarantined-files.txt 2012-09-03 22:09 . Vor Suchlauf: 14.664.347.648 bytes free Nach Suchlauf: 12 Verzeichnis(se), 14.659.780.608 Bytes frei . WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons UnsupportedDebug="do not select this" /debug multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect . - - End Of File - - 147C4F7E314DC63A075EA071EC047093 |
04.09.2012, 18:12 | #20 |
/// Helfer-Team | Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 TDSSKiller von Kaspersky - Lade den TDSSKiller und entpacke das Archiv auf Deinen Desktop.Hier findest Du eine ausführlichere TDSSKiller Anleitung. danach: Bitte einen Vollscan mit Malwarebytes Anti-Malware machen und Log posten. |
04.09.2012, 20:15 | #21 |
| Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 21:10:47.0421 2352 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48 21:10:47.0546 2352 ============================================================ 21:10:47.0562 2352 Current date / time: 2012/09/04 21:10:47.0546 21:10:47.0562 2352 SystemInfo: 21:10:47.0562 2352 21:10:47.0562 2352 OS Version: 5.1.2600 ServicePack: 3.0 21:10:47.0562 2352 Product type: Workstation 21:10:47.0562 2352 ComputerName: DELL 21:10:47.0562 2352 UserName: Dell_D820 21:10:47.0562 2352 Windows directory: C:\WINDOWS 21:10:47.0562 2352 System windows directory: C:\WINDOWS 21:10:47.0562 2352 Processor architecture: Intel x86 21:10:47.0562 2352 Number of processors: 2 21:10:47.0562 2352 Page size: 0x1000 21:10:47.0562 2352 Boot type: Normal boot 21:10:47.0562 2352 ============================================================ 21:10:49.0234 2352 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 21:10:49.0234 2352 ============================================================ 21:10:49.0234 2352 \Device\Harddisk0\DR0: 21:10:49.0234 2352 MBR partitions: 21:10:49.0234 2352 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x442D6A3 21:10:49.0281 2352 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x442D721, BlocksNum 0x276B98E 21:10:49.0281 2352 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x6B990EE, BlocksNum 0x12529BC0 21:10:49.0296 2352 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x190C2CED, BlocksNum 0xC36A9D4 21:10:49.0296 2352 ============================================================ 21:10:49.0328 2352 C: <-> \Device\Harddisk0\DR0\Partition1 21:10:49.0359 2352 E: <-> \Device\Harddisk0\DR0\Partition2 21:10:49.0468 2352 F: <-> \Device\Harddisk0\DR0\Partition3 21:10:49.0515 2352 G: <-> \Device\Harddisk0\DR0\Partition4 21:10:49.0515 2352 ============================================================ 21:10:49.0515 2352 Initialize success 21:10:49.0515 2352 ============================================================ 21:11:42.0968 1556 ============================================================ 21:11:42.0968 1556 Scan started 21:11:42.0968 1556 Mode: Manual; 21:11:42.0968 1556 ============================================================ 21:11:44.0625 1556 ================ Scan system memory ======================== 21:11:44.0625 1556 System memory - ok 21:11:44.0625 1556 ================ Scan services ============================= 21:11:44.0765 1556 Abiosdsk - ok 21:11:44.0765 1556 abp480n5 - ok 21:11:44.0796 1556 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 21:11:44.0796 1556 ACPI - ok 21:11:44.0859 1556 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 21:11:44.0859 1556 ACPIEC - ok 21:11:44.0906 1556 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 21:11:44.0921 1556 AdobeFlashPlayerUpdateSvc - ok 21:11:44.0921 1556 adpu160m - ok 21:11:44.0953 1556 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 21:11:44.0953 1556 aec - ok 21:11:45.0031 1556 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 21:11:45.0031 1556 AFD - ok 21:11:45.0031 1556 Aha154x - ok 21:11:45.0031 1556 aic78u2 - ok 21:11:45.0046 1556 aic78xx - ok 21:11:45.0078 1556 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll 21:11:45.0078 1556 Alerter - ok 21:11:45.0093 1556 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe 21:11:45.0093 1556 ALG - ok 21:11:45.0109 1556 AliIde - ok 21:11:45.0109 1556 amsint - ok 21:11:45.0234 1556 [ 466A0D95960DAD3222C896D2CEA99993 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe 21:11:45.0234 1556 AntiVirSchedulerService - ok 21:11:45.0265 1556 [ A489BE6BB0AA1FF406B488B60542314B ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe 21:11:45.0281 1556 AntiVirService - ok 21:11:45.0296 1556 [ 676894FA57B671FEC5C3F05F8929E03B ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE 21:11:45.0312 1556 AntiVirWebService - ok 21:11:45.0328 1556 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 21:11:45.0343 1556 AppMgmt - ok 21:11:45.0375 1556 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys 21:11:45.0390 1556 Arp1394 - ok 21:11:45.0390 1556 asc - ok 21:11:45.0390 1556 asc3350p - ok 21:11:45.0390 1556 asc3550 - ok 21:11:45.0500 1556 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 21:11:45.0500 1556 aspnet_state - ok 21:11:45.0515 1556 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 21:11:45.0515 1556 AsyncMac - ok 21:11:45.0546 1556 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 21:11:45.0546 1556 atapi - ok 21:11:45.0562 1556 Atdisk - ok 21:11:45.0578 1556 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 21:11:45.0578 1556 Atmarpc - ok 21:11:45.0593 1556 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 21:11:45.0593 1556 AudioSrv - ok 21:11:45.0656 1556 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 21:11:45.0656 1556 audstub - ok 21:11:45.0656 1556 [ D5541F0AFB767E85FC412FC609D96A74 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 21:11:45.0671 1556 avgntflt - ok 21:11:45.0687 1556 [ 7D967A682D4694DF7FA57D63A2DB01FE ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 21:11:45.0687 1556 avipbb - ok 21:11:45.0703 1556 [ 271CFD1A989209B1964E24D969552BF7 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 21:11:45.0703 1556 avkmgr - ok 21:11:45.0734 1556 [ C0ACD392ECE55784884CC208AAFA06CE ] b57w2k C:\WINDOWS\system32\DRIVERS\b57xp32.sys 21:11:45.0734 1556 b57w2k - ok 21:11:45.0812 1556 [ 345D38F298368DD6B0DF5C4F37457A22 ] BCM43XX C:\WINDOWS\system32\DRIVERS\bcmwl5.sys 21:11:45.0859 1556 BCM43XX - ok 21:11:45.0906 1556 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 21:11:45.0906 1556 Beep - ok 21:11:45.0953 1556 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll 21:11:45.0953 1556 BITS - ok 21:11:45.0984 1556 [ A06CE3399D16DB864F55FAEB1F1927A9 ] Browser C:\WINDOWS\System32\browser.dll 21:11:45.0984 1556 Browser - ok 21:11:46.0156 1556 catchme - ok 21:11:46.0187 1556 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 21:11:46.0187 1556 cbidf2k - ok 21:11:46.0187 1556 cd20xrnt - ok 21:11:46.0203 1556 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 21:11:46.0203 1556 Cdaudio - ok 21:11:46.0218 1556 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 21:11:46.0218 1556 Cdfs - ok 21:11:46.0234 1556 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 21:11:46.0234 1556 Cdrom - ok 21:11:46.0250 1556 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe 21:11:46.0250 1556 CiSvc - ok 21:11:46.0281 1556 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 21:11:46.0281 1556 ClipSrv - ok 21:11:46.0312 1556 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 21:11:46.0312 1556 clr_optimization_v2.0.50727_32 - ok 21:11:46.0359 1556 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys 21:11:46.0359 1556 CmBatt - ok 21:11:46.0359 1556 CmdIde - ok 21:11:46.0359 1556 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys 21:11:46.0359 1556 Compbatt - ok 21:11:46.0359 1556 COMSysApp - ok 21:11:46.0375 1556 Cpqarray - ok 21:11:46.0390 1556 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 21:11:46.0390 1556 CryptSvc - ok 21:11:46.0406 1556 dac2w2k - ok 21:11:46.0406 1556 dac960nt - ok 21:11:46.0453 1556 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 21:11:46.0453 1556 DcomLaunch - ok 21:11:46.0468 1556 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 21:11:46.0468 1556 Dhcp - ok 21:11:46.0515 1556 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 21:11:46.0515 1556 Disk - ok 21:11:46.0515 1556 dmadmin - ok 21:11:46.0546 1556 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 21:11:46.0562 1556 dmboot - ok 21:11:46.0562 1556 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys 21:11:46.0562 1556 dmio - ok 21:11:46.0578 1556 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 21:11:46.0578 1556 dmload - ok 21:11:46.0593 1556 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll 21:11:46.0593 1556 dmserver - ok 21:11:46.0609 1556 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 21:11:46.0609 1556 DMusic - ok 21:11:46.0640 1556 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 21:11:46.0640 1556 Dnscache - ok 21:11:46.0671 1556 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 21:11:46.0671 1556 Dot3svc - ok 21:11:46.0671 1556 dpti2o - ok 21:11:46.0687 1556 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 21:11:46.0687 1556 drmkaud - ok 21:11:46.0750 1556 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll 21:11:46.0750 1556 EapHost - ok 21:11:46.0765 1556 [ D71233D7CCC2E64F8715A20428D5A33B ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys 21:11:46.0765 1556 ElbyCDIO - ok 21:11:46.0781 1556 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll 21:11:46.0781 1556 ERSvc - ok 21:11:46.0812 1556 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe 21:11:46.0812 1556 Eventlog - ok 21:11:46.0859 1556 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll 21:11:46.0875 1556 EventSystem - ok 21:11:46.0890 1556 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 21:11:46.0890 1556 Fastfat - ok 21:11:46.0921 1556 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 21:11:46.0921 1556 FastUserSwitchingCompatibility - ok 21:11:46.0937 1556 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 21:11:46.0937 1556 Fdc - ok 21:11:46.0968 1556 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 21:11:46.0968 1556 Fips - ok 21:11:46.0984 1556 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 21:11:46.0984 1556 Flpydisk - ok 21:11:47.0015 1556 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 21:11:47.0015 1556 FltMgr - ok 21:11:47.0109 1556 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 21:11:47.0109 1556 FontCache3.0.0.0 - ok 21:11:47.0125 1556 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 21:11:47.0125 1556 Fs_Rec - ok 21:11:47.0140 1556 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 21:11:47.0140 1556 Ftdisk - ok 21:11:47.0171 1556 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 21:11:47.0171 1556 Gpc - ok 21:11:47.0203 1556 [ 6003BC70F1A8307262BD3C941BDA0B7E ] grmnusb C:\WINDOWS\system32\drivers\grmnusb.sys 21:11:47.0218 1556 grmnusb - ok 21:11:47.0234 1556 [ C0BDAB85F3E8B2138C513255E2BCC4D8 ] guardian2 C:\WINDOWS\system32\Drivers\oz776.sys 21:11:47.0234 1556 guardian2 - ok 21:11:47.0296 1556 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 21:11:47.0296 1556 gupdate - ok 21:11:47.0312 1556 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 21:11:47.0312 1556 gupdatem - ok 21:11:47.0343 1556 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 21:11:47.0343 1556 HDAudBus - ok 21:11:47.0421 1556 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 21:11:47.0421 1556 helpsvc - ok 21:11:47.0421 1556 HidServ - ok 21:11:47.0468 1556 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 21:11:47.0468 1556 HidUsb - ok 21:11:47.0500 1556 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 21:11:47.0500 1556 hkmsvc - ok 21:11:47.0500 1556 hpn - ok 21:11:47.0578 1556 [ E8EC1767EA315A39A0DD8989952CA0E9 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSX_DPV.sys 21:11:47.0578 1556 HSF_DPV - ok 21:11:47.0593 1556 [ 61478FA42EE04562E7F11F4DCA87E9C8 ] HSXHWAZL C:\WINDOWS\system32\DRIVERS\HSXHWAZL.sys 21:11:47.0593 1556 HSXHWAZL - ok 21:11:47.0625 1556 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 21:11:47.0625 1556 HTTP - ok 21:11:47.0640 1556 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 21:11:47.0656 1556 HTTPFilter - ok 21:11:47.0656 1556 i2omp - ok 21:11:47.0703 1556 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 21:11:47.0703 1556 i8042prt - ok 21:11:47.0765 1556 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 21:11:47.0781 1556 idsvc - ok 21:11:47.0812 1556 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 21:11:47.0812 1556 Imapi - ok 21:11:47.0828 1556 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe 21:11:47.0828 1556 ImapiService - ok 21:11:47.0828 1556 ini910u - ok 21:11:47.0875 1556 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys 21:11:47.0875 1556 IntelIde - ok 21:11:47.0921 1556 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 21:11:47.0921 1556 intelppm - ok 21:11:47.0937 1556 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 21:11:47.0937 1556 Ip6Fw - ok 21:11:47.0968 1556 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 21:11:47.0968 1556 IpFilterDriver - ok 21:11:47.0984 1556 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 21:11:47.0984 1556 IpInIp - ok 21:11:48.0000 1556 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 21:11:48.0000 1556 IpNat - ok 21:11:48.0015 1556 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 21:11:48.0015 1556 IPSec - ok 21:11:48.0078 1556 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 21:11:48.0078 1556 IRENUM - ok 21:11:48.0078 1556 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 21:11:48.0078 1556 isapnp - ok 21:11:48.0156 1556 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe 21:11:48.0156 1556 JavaQuickStarterService - ok 21:11:48.0218 1556 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 21:11:48.0218 1556 Kbdclass - ok 21:11:48.0250 1556 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 21:11:48.0250 1556 kmixer - ok 21:11:48.0296 1556 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 21:11:48.0296 1556 KSecDD - ok 21:11:48.0359 1556 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll 21:11:48.0359 1556 LanmanServer - ok 21:11:48.0406 1556 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 21:11:48.0406 1556 lanmanworkstation - ok 21:11:48.0515 1556 [ 00944D59948596721D17510C94CD3E4F ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe 21:11:48.0515 1556 LightScribeService - ok 21:11:48.0546 1556 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 21:11:48.0546 1556 LmHosts - ok 21:11:48.0578 1556 [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 21:11:48.0578 1556 MBAMProtector - ok 21:11:48.0640 1556 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 21:11:48.0656 1556 MBAMService - ok 21:11:48.0671 1556 [ E246A32C445056996074A397DA56E815 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys 21:11:48.0671 1556 mdmxsdk - ok 21:11:48.0687 1556 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll 21:11:48.0703 1556 Messenger - ok 21:11:48.0796 1556 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 21:11:48.0812 1556 Microsoft Office Groove Audit Service - ok 21:11:48.0828 1556 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 21:11:48.0828 1556 mnmdd - ok 21:11:48.0875 1556 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 21:11:48.0890 1556 mnmsrvc - ok 21:11:48.0890 1556 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 21:11:48.0890 1556 Modem - ok 21:11:48.0906 1556 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 21:11:48.0906 1556 Mouclass - ok 21:11:48.0906 1556 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 21:11:48.0906 1556 mouhid - ok 21:11:48.0937 1556 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 21:11:48.0937 1556 MountMgr - ok 21:11:49.0000 1556 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 21:11:49.0015 1556 MozillaMaintenance - ok 21:11:49.0015 1556 mraid35x - ok 21:11:49.0031 1556 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 21:11:49.0031 1556 MRxDAV - ok 21:11:49.0078 1556 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 21:11:49.0078 1556 MRxSmb - ok 21:11:49.0140 1556 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe 21:11:49.0140 1556 MSDTC - ok 21:11:49.0140 1556 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 21:11:49.0140 1556 Msfs - ok 21:11:49.0156 1556 MSIServer - ok 21:11:49.0156 1556 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 21:11:49.0156 1556 MSKSSRV - ok 21:11:49.0171 1556 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 21:11:49.0171 1556 MSPCLOCK - ok 21:11:49.0187 1556 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 21:11:49.0187 1556 MSPQM - ok 21:11:49.0203 1556 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 21:11:49.0203 1556 mssmbios - ok 21:11:49.0234 1556 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 21:11:49.0234 1556 Mup - ok 21:11:49.0265 1556 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll 21:11:49.0265 1556 napagent - ok 21:11:49.0359 1556 [ 9AE6509862DE96416CA9AD54440A861B ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe 21:11:49.0359 1556 NAUpdate - ok 21:11:49.0468 1556 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 21:11:49.0468 1556 NDIS - ok 21:11:49.0500 1556 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 21:11:49.0500 1556 NdisTapi - ok 21:11:49.0515 1556 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 21:11:49.0515 1556 Ndisuio - ok 21:11:49.0515 1556 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 21:11:49.0515 1556 NdisWan - ok 21:11:49.0546 1556 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 21:11:49.0546 1556 NDProxy - ok 21:11:49.0593 1556 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 21:11:49.0593 1556 NetBIOS - ok 21:11:49.0609 1556 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 21:11:49.0609 1556 NetBT - ok 21:11:49.0625 1556 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe 21:11:49.0640 1556 NetDDE - ok 21:11:49.0640 1556 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 21:11:49.0640 1556 NetDDEdsdm - ok 21:11:49.0671 1556 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe 21:11:49.0671 1556 Netlogon - ok 21:11:49.0687 1556 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll 21:11:49.0687 1556 Netman - ok 21:11:49.0734 1556 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 21:11:49.0750 1556 NetTcpPortSharing - ok 21:11:49.0781 1556 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys 21:11:49.0781 1556 NIC1394 - ok 21:11:49.0796 1556 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll 21:11:49.0796 1556 Nla - ok 21:11:49.0812 1556 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 21:11:49.0812 1556 Npfs - ok 21:11:49.0828 1556 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 21:11:49.0843 1556 Ntfs - ok 21:11:49.0843 1556 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 21:11:49.0843 1556 NtLmSsp - ok 21:11:49.0859 1556 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 21:11:49.0875 1556 NtmsSvc - ok 21:11:49.0906 1556 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 21:11:49.0906 1556 Null - ok 21:11:50.0078 1556 [ C116D2B008A1640C4484A1DCD1ABE12C ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 21:11:50.0218 1556 nv - ok 21:11:50.0250 1556 [ BC6F6D569A0848BA9D38158AE4734A9C ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 21:11:50.0250 1556 NVSvc - ok 21:11:50.0312 1556 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 21:11:50.0312 1556 NwlnkFlt - ok 21:11:50.0328 1556 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 21:11:50.0328 1556 NwlnkFwd - ok 21:11:50.0437 1556 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 21:11:50.0437 1556 odserv - ok 21:11:50.0453 1556 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys 21:11:50.0453 1556 ohci1394 - ok 21:11:50.0484 1556 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 21:11:50.0500 1556 ose - ok 21:11:50.0531 1556 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\drivers\Parport.sys 21:11:50.0531 1556 Parport - ok 21:11:50.0531 1556 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 21:11:50.0531 1556 PartMgr - ok 21:11:50.0578 1556 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 21:11:50.0578 1556 ParVdm - ok 21:11:50.0593 1556 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 21:11:50.0593 1556 PCI - ok 21:11:50.0593 1556 PCIDump - ok 21:11:50.0609 1556 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\drivers\PCIIde.sys 21:11:50.0609 1556 PCIIde - ok 21:11:50.0609 1556 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys 21:11:50.0609 1556 Pcmcia - ok 21:11:50.0609 1556 perc2 - ok 21:11:50.0625 1556 perc2hib - ok 21:11:50.0656 1556 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe 21:11:50.0656 1556 PlugPlay - ok 21:11:50.0703 1556 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 21:11:50.0703 1556 PolicyAgent - ok 21:11:50.0750 1556 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 21:11:50.0750 1556 PptpMiniport - ok 21:11:50.0765 1556 [ 04F3971B70A7855F04D351AA4BEE7799 ] PQNTDrv C:\WINDOWS\system32\drivers\PQNTDrv.sys 21:11:50.0765 1556 PQNTDrv - ok 21:11:50.0781 1556 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 21:11:50.0781 1556 ProtectedStorage - ok 21:11:50.0781 1556 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 21:11:50.0781 1556 PSched - ok 21:11:50.0812 1556 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 21:11:50.0812 1556 Ptilink - ok 21:11:50.0875 1556 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 21:11:50.0875 1556 PxHelp20 - ok 21:11:50.0875 1556 ql1080 - ok 21:11:50.0875 1556 Ql10wnt - ok 21:11:50.0890 1556 ql12160 - ok 21:11:50.0890 1556 ql1240 - ok 21:11:50.0906 1556 ql1280 - ok 21:11:50.0921 1556 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 21:11:50.0921 1556 RasAcd - ok 21:11:50.0937 1556 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll 21:11:50.0937 1556 RasAuto - ok 21:11:50.0937 1556 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 21:11:50.0953 1556 Rasl2tp - ok 21:11:50.0968 1556 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll 21:11:50.0968 1556 RasMan - ok 21:11:50.0968 1556 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 21:11:50.0968 1556 RasPppoe - ok 21:11:50.0984 1556 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 21:11:50.0984 1556 Raspti - ok 21:11:51.0000 1556 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 21:11:51.0000 1556 Rdbss - ok 21:11:51.0015 1556 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 21:11:51.0015 1556 RDPCDD - ok 21:11:51.0031 1556 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 21:11:51.0046 1556 rdpdr - ok 21:11:51.0078 1556 [ FC105DD312ED64EB66BFF111E8EC6EAC ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 21:11:51.0078 1556 RDPWD - ok 21:11:51.0109 1556 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 21:11:51.0109 1556 RDSessMgr - ok 21:11:51.0125 1556 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 21:11:51.0125 1556 redbook - ok 21:11:51.0156 1556 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 21:11:51.0156 1556 RemoteAccess - ok 21:11:51.0187 1556 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 21:11:51.0187 1556 RemoteRegistry - ok 21:11:51.0203 1556 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe 21:11:51.0218 1556 RpcLocator - ok 21:11:51.0250 1556 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\System32\rpcss.dll 21:11:51.0250 1556 RpcSs - ok 21:11:51.0281 1556 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe 21:11:51.0281 1556 RSVP - ok 21:11:51.0312 1556 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe 21:11:51.0312 1556 SamSs - ok 21:11:51.0359 1556 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 21:11:51.0359 1556 SCardSvr - ok 21:11:51.0437 1556 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll 21:11:51.0437 1556 Schedule - ok 21:11:51.0468 1556 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 21:11:51.0468 1556 Secdrv - ok 21:11:51.0484 1556 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll 21:11:51.0484 1556 seclogon - ok 21:11:51.0500 1556 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll 21:11:51.0500 1556 SENS - ok 21:11:51.0546 1556 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 21:11:51.0546 1556 serenum - ok 21:11:51.0562 1556 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 21:11:51.0562 1556 Serial - ok 21:11:51.0578 1556 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 21:11:51.0578 1556 Sfloppy - ok 21:11:51.0593 1556 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 21:11:51.0609 1556 SharedAccess - ok 21:11:51.0609 1556 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 21:11:51.0625 1556 ShellHWDetection - ok 21:11:51.0625 1556 Simbad - ok 21:11:51.0625 1556 Sparrow - ok 21:11:51.0640 1556 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 21:11:51.0640 1556 splitter - ok 21:11:51.0703 1556 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 21:11:51.0703 1556 Spooler - ok 21:11:51.0734 1556 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 21:11:51.0734 1556 sr - ok 21:11:51.0750 1556 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll 21:11:51.0765 1556 srservice - ok 21:11:51.0781 1556 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 21:11:51.0781 1556 Srv - ok 21:11:51.0812 1556 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 21:11:51.0828 1556 SSDPSRV - ok 21:11:51.0843 1556 [ A36EE93698802CD899F98BFD553D8185 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys 21:11:51.0843 1556 ssmdrv - ok 21:11:51.0906 1556 [ 951801DFB54D86F611F0AF47825476F9 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys 21:11:51.0921 1556 STHDA - ok 21:11:51.0968 1556 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll 21:11:51.0984 1556 stisvc - ok 21:11:52.0015 1556 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 21:11:52.0015 1556 swenum - ok 21:11:52.0015 1556 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 21:11:52.0015 1556 swmidi - ok 21:11:52.0031 1556 SwPrv - ok 21:11:52.0031 1556 symc810 - ok 21:11:52.0031 1556 symc8xx - ok 21:11:52.0046 1556 sym_hi - ok 21:11:52.0046 1556 sym_u3 - ok 21:11:52.0062 1556 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 21:11:52.0062 1556 sysaudio - ok 21:11:52.0109 1556 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 21:11:52.0109 1556 SysmonLog - ok 21:11:52.0125 1556 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 21:11:52.0125 1556 TapiSrv - ok 21:11:52.0156 1556 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 21:11:52.0171 1556 Tcpip - ok 21:11:52.0203 1556 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 21:11:52.0203 1556 TDPIPE - ok 21:11:52.0234 1556 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 21:11:52.0234 1556 TDTCP - ok 21:11:52.0250 1556 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 21:11:52.0250 1556 TermDD - ok 21:11:52.0281 1556 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll 21:11:52.0296 1556 TermService - ok 21:11:52.0328 1556 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll 21:11:52.0328 1556 Themes - ok 21:11:52.0343 1556 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 21:11:52.0359 1556 TlntSvr - ok 21:11:52.0359 1556 TosIde - ok 21:11:52.0390 1556 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll 21:11:52.0390 1556 TrkWks - ok 21:11:52.0453 1556 [ C1A64414DB4E49D41D9DF9359ED9369B ] TuneUp.Defrag C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe 21:11:52.0468 1556 TuneUp.Defrag - ok 21:11:52.0500 1556 [ DC653CF2D70827C4EBC2B157DA25CF57 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe 21:11:52.0515 1556 TuneUp.UtilitiesSvc - ok 21:11:52.0546 1556 [ F2107C9D85EC0DF116939CCCE06AE697 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys 21:11:52.0546 1556 TuneUpUtilitiesDrv - ok 21:11:52.0578 1556 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 21:11:52.0578 1556 Udfs - ok 21:11:52.0593 1556 ultra - ok 21:11:52.0640 1556 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 21:11:52.0656 1556 Update - ok 21:11:52.0671 1556 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll 21:11:52.0671 1556 upnphost - ok 21:11:52.0687 1556 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe 21:11:52.0687 1556 UPS - ok 21:11:52.0718 1556 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 21:11:52.0718 1556 usbccgp - ok 21:11:52.0750 1556 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 21:11:52.0750 1556 usbehci - ok 21:11:52.0781 1556 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 21:11:52.0781 1556 usbhub - ok 21:11:52.0812 1556 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 21:11:52.0812 1556 usbprint - ok 21:11:52.0875 1556 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 21:11:52.0875 1556 usbscan - ok 21:11:52.0890 1556 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 21:11:52.0890 1556 USBSTOR - ok 21:11:52.0906 1556 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 21:11:52.0906 1556 usbuhci - ok 21:11:52.0937 1556 [ DC2172ACCB384C6A3D59342050422102 ] UxTuneUp C:\WINDOWS\System32\uxtuneup.dll 21:11:52.0937 1556 UxTuneUp - ok 21:11:52.0953 1556 [ FCE98C43B5C5DB8E0DA8EA0E2B45E044 ] VClone C:\WINDOWS\system32\DRIVERS\VClone.sys 21:11:52.0953 1556 VClone - ok 21:11:52.0984 1556 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 21:11:52.0984 1556 VgaSave - ok 21:11:52.0984 1556 ViaIde - ok 21:11:53.0000 1556 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 21:11:53.0000 1556 VolSnap - ok 21:11:53.0031 1556 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe 21:11:53.0031 1556 VSS - ok 21:11:53.0046 1556 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll 21:11:53.0062 1556 W32Time - ok 21:11:53.0078 1556 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 21:11:53.0078 1556 Wanarp - ok 21:11:53.0078 1556 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 21:11:53.0093 1556 wdmaud - ok 21:11:53.0109 1556 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll 21:11:53.0109 1556 WebClient - ok 21:11:53.0125 1556 [ BA6B6FB242A6BA4068C8B763063BEB63 ] winachsf C:\WINDOWS\system32\DRIVERS\HSX_CNXT.sys 21:11:53.0125 1556 winachsf - ok 21:11:53.0234 1556 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 21:11:53.0234 1556 winmgmt - ok 21:11:53.0281 1556 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 21:11:53.0281 1556 WmdmPmSN - ok 21:11:53.0328 1556 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll 21:11:53.0328 1556 Wmi - ok 21:11:53.0359 1556 [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys 21:11:53.0359 1556 WmiAcpi - ok 21:11:53.0390 1556 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 21:11:53.0390 1556 WmiApSrv - ok 21:11:53.0453 1556 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 21:11:53.0468 1556 WMPNetworkSvc - ok 21:11:53.0500 1556 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys 21:11:53.0500 1556 WS2IFSL - ok 21:11:53.0531 1556 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 21:11:53.0531 1556 wscsvc - ok 21:11:53.0593 1556 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll 21:11:53.0593 1556 wuauserv - ok 21:11:53.0625 1556 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 21:11:53.0625 1556 WudfPf - ok 21:11:53.0640 1556 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 21:11:53.0640 1556 WudfRd - ok 21:11:53.0656 1556 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 21:11:53.0656 1556 WudfSvc - ok 21:11:53.0687 1556 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 21:11:53.0687 1556 WZCSVC - ok 21:11:53.0734 1556 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 21:11:53.0734 1556 xmlprov - ok 21:11:53.0750 1556 ================ Scan global =============================== 21:11:53.0765 1556 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll 21:11:53.0796 1556 [ 95CF3446911A6E25EE4086DF8A45B2AA ] C:\WINDOWS\system32\winsrv.dll 21:11:53.0812 1556 [ 95CF3446911A6E25EE4086DF8A45B2AA ] C:\WINDOWS\system32\winsrv.dll 21:11:53.0828 1556 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe 21:11:53.0828 1556 [Global] - ok 21:11:53.0828 1556 ================ Scan MBR ================================== 21:11:53.0843 1556 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0 21:11:54.0015 1556 \Device\Harddisk0\DR0 - ok 21:11:54.0015 1556 ================ Scan VBR ================================== 21:11:54.0015 1556 [ F79AA7CC0037F5355749C0DA9359541F ] \Device\Harddisk0\DR0\Partition1 21:11:54.0015 1556 \Device\Harddisk0\DR0\Partition1 - ok 21:11:54.0031 1556 [ 492BD8730AD571B17C889B57ECC2E262 ] \Device\Harddisk0\DR0\Partition2 21:11:54.0031 1556 \Device\Harddisk0\DR0\Partition2 - ok 21:11:54.0046 1556 [ 6F686F31024259F7762B2E1301CCF83E ] \Device\Harddisk0\DR0\Partition3 21:11:54.0046 1556 \Device\Harddisk0\DR0\Partition3 - ok 21:11:54.0109 1556 [ 847752C5EAF35938046FB6B0A4F8C626 ] \Device\Harddisk0\DR0\Partition4 21:11:54.0109 1556 \Device\Harddisk0\DR0\Partition4 - ok 21:11:54.0109 1556 ============================================================ 21:11:54.0109 1556 Scan finished 21:11:54.0109 1556 ============================================================ 21:11:54.0125 2620 Detected object count: 0 21:11:54.0125 2620 Actual detected object count: 0 21:13:29.0765 2240 ============================================================ 21:13:29.0765 2240 Scan started 21:13:29.0765 2240 Mode: Manual; 21:13:29.0765 2240 ============================================================ 21:13:30.0390 2240 ================ Scan system memory ======================== 21:13:30.0390 2240 System memory - ok 21:13:30.0390 2240 ================ Scan services ============================= 21:13:30.0515 2240 Abiosdsk - ok 21:13:30.0531 2240 abp480n5 - ok 21:13:30.0562 2240 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 21:13:30.0562 2240 ACPI - ok 21:13:30.0625 2240 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 21:13:30.0625 2240 ACPIEC - ok 21:13:30.0687 2240 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 21:13:30.0687 2240 AdobeFlashPlayerUpdateSvc - ok 21:13:30.0687 2240 adpu160m - ok 21:13:30.0750 2240 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 21:13:30.0750 2240 aec - ok 21:13:30.0765 2240 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 21:13:30.0765 2240 AFD - ok 21:13:30.0765 2240 Aha154x - ok 21:13:30.0765 2240 aic78u2 - ok 21:13:30.0781 2240 aic78xx - ok 21:13:30.0812 2240 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll 21:13:30.0812 2240 Alerter - ok 21:13:30.0828 2240 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe 21:13:30.0828 2240 ALG - ok 21:13:30.0828 2240 AliIde - ok 21:13:30.0843 2240 amsint - ok 21:13:30.0953 2240 [ 466A0D95960DAD3222C896D2CEA99993 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe 21:13:30.0953 2240 AntiVirSchedulerService - ok 21:13:30.0984 2240 [ A489BE6BB0AA1FF406B488B60542314B ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe 21:13:30.0984 2240 AntiVirService - ok 21:13:31.0078 2240 [ 676894FA57B671FEC5C3F05F8929E03B ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE 21:13:31.0078 2240 AntiVirWebService - ok 21:13:31.0093 2240 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 21:13:31.0109 2240 AppMgmt - ok 21:13:31.0109 2240 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys 21:13:31.0125 2240 Arp1394 - ok 21:13:31.0125 2240 asc - ok 21:13:31.0125 2240 asc3350p - ok 21:13:31.0125 2240 asc3550 - ok 21:13:31.0250 2240 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 21:13:31.0250 2240 aspnet_state - ok 21:13:31.0265 2240 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 21:13:31.0265 2240 AsyncMac - ok 21:13:31.0312 2240 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 21:13:31.0312 2240 atapi - ok 21:13:31.0312 2240 Atdisk - ok 21:13:31.0343 2240 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 21:13:31.0343 2240 Atmarpc - ok 21:13:31.0359 2240 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 21:13:31.0359 2240 AudioSrv - ok 21:13:31.0406 2240 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 21:13:31.0406 2240 audstub - ok 21:13:31.0406 2240 [ D5541F0AFB767E85FC412FC609D96A74 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 21:13:31.0406 2240 avgntflt - ok 21:13:31.0437 2240 [ 7D967A682D4694DF7FA57D63A2DB01FE ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 21:13:31.0437 2240 avipbb - ok 21:13:31.0453 2240 [ 271CFD1A989209B1964E24D969552BF7 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 21:13:31.0453 2240 avkmgr - ok 21:13:31.0468 2240 [ C0ACD392ECE55784884CC208AAFA06CE ] b57w2k C:\WINDOWS\system32\DRIVERS\b57xp32.sys 21:13:31.0468 2240 b57w2k - ok 21:13:31.0546 2240 [ 345D38F298368DD6B0DF5C4F37457A22 ] BCM43XX C:\WINDOWS\system32\DRIVERS\bcmwl5.sys 21:13:31.0562 2240 BCM43XX - ok 21:13:31.0578 2240 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 21:13:31.0578 2240 Beep - ok 21:13:31.0625 2240 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll 21:13:31.0625 2240 BITS - ok 21:13:31.0656 2240 [ A06CE3399D16DB864F55FAEB1F1927A9 ] Browser C:\WINDOWS\System32\browser.dll 21:13:31.0656 2240 Browser - ok 21:13:31.0781 2240 catchme - ok 21:13:31.0812 2240 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 21:13:31.0812 2240 cbidf2k - ok 21:13:31.0812 2240 cd20xrnt - ok 21:13:31.0812 2240 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 21:13:31.0812 2240 Cdaudio - ok 21:13:31.0843 2240 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 21:13:31.0843 2240 Cdfs - ok 21:13:31.0859 2240 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 21:13:31.0859 2240 Cdrom - ok 21:13:31.0890 2240 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe 21:13:31.0890 2240 CiSvc - ok 21:13:31.0890 2240 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 21:13:31.0890 2240 ClipSrv - ok 21:13:31.0921 2240 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 21:13:31.0921 2240 clr_optimization_v2.0.50727_32 - ok 21:13:31.0953 2240 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys 21:13:31.0953 2240 CmBatt - ok 21:13:31.0953 2240 CmdIde - ok 21:13:31.0968 2240 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys 21:13:31.0968 2240 Compbatt - ok 21:13:31.0968 2240 COMSysApp - ok 21:13:31.0968 2240 Cpqarray - ok 21:13:32.0015 2240 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 21:13:32.0015 2240 CryptSvc - ok 21:13:32.0015 2240 dac2w2k - ok 21:13:32.0031 2240 dac960nt - ok 21:13:32.0078 2240 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 21:13:32.0078 2240 DcomLaunch - ok 21:13:32.0109 2240 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 21:13:32.0109 2240 Dhcp - ok 21:13:32.0109 2240 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 21:13:32.0125 2240 Disk - ok 21:13:32.0125 2240 dmadmin - ok 21:13:32.0171 2240 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 21:13:32.0171 2240 dmboot - ok 21:13:32.0187 2240 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys 21:13:32.0187 2240 dmio - ok 21:13:32.0218 2240 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 21:13:32.0218 2240 dmload - ok 21:13:32.0218 2240 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll 21:13:32.0218 2240 dmserver - ok 21:13:32.0250 2240 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 21:13:32.0250 2240 DMusic - ok 21:13:32.0281 2240 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 21:13:32.0281 2240 Dnscache - ok 21:13:32.0312 2240 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 21:13:32.0312 2240 Dot3svc - ok 21:13:32.0312 2240 dpti2o - ok 21:13:32.0343 2240 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 21:13:32.0343 2240 drmkaud - ok 21:13:32.0359 2240 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll 21:13:32.0375 2240 EapHost - ok 21:13:32.0390 2240 [ D71233D7CCC2E64F8715A20428D5A33B ] ElbyCDIO C:\WINDOWS\system32\Drivers\ElbyCDIO.sys 21:13:32.0390 2240 ElbyCDIO - ok 21:13:32.0406 2240 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll 21:13:32.0406 2240 ERSvc - ok 21:13:32.0437 2240 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe 21:13:32.0437 2240 Eventlog - ok 21:13:32.0484 2240 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll 21:13:32.0484 2240 EventSystem - ok 21:13:32.0500 2240 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 21:13:32.0500 2240 Fastfat - ok 21:13:32.0531 2240 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 21:13:32.0546 2240 FastUserSwitchingCompatibility - ok 21:13:32.0546 2240 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 21:13:32.0546 2240 Fdc - ok 21:13:32.0578 2240 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 21:13:32.0578 2240 Fips - ok 21:13:32.0593 2240 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 21:13:32.0593 2240 Flpydisk - ok 21:13:32.0625 2240 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 21:13:32.0625 2240 FltMgr - ok 21:13:32.0687 2240 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 21:13:32.0687 2240 FontCache3.0.0.0 - ok 21:13:32.0703 2240 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 21:13:32.0703 2240 Fs_Rec - ok 21:13:32.0718 2240 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 21:13:32.0718 2240 Ftdisk - ok 21:13:32.0750 2240 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 21:13:32.0750 2240 Gpc - ok 21:13:32.0781 2240 [ 6003BC70F1A8307262BD3C941BDA0B7E ] grmnusb C:\WINDOWS\system32\drivers\grmnusb.sys 21:13:32.0781 2240 grmnusb - ok 21:13:32.0812 2240 [ C0BDAB85F3E8B2138C513255E2BCC4D8 ] guardian2 C:\WINDOWS\system32\Drivers\oz776.sys 21:13:32.0812 2240 guardian2 - ok 21:13:32.0875 2240 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 21:13:32.0875 2240 gupdate - ok 21:13:32.0890 2240 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 21:13:32.0890 2240 gupdatem - ok 21:13:32.0906 2240 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 21:13:32.0906 2240 HDAudBus - ok 21:13:32.0984 2240 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 21:13:32.0984 2240 helpsvc - ok 21:13:32.0984 2240 HidServ - ok 21:13:33.0031 2240 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 21:13:33.0031 2240 HidUsb - ok 21:13:33.0046 2240 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 21:13:33.0062 2240 hkmsvc - ok 21:13:33.0062 2240 hpn - ok 21:13:33.0109 2240 [ E8EC1767EA315A39A0DD8989952CA0E9 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSX_DPV.sys 21:13:33.0109 2240 HSF_DPV - ok 21:13:33.0125 2240 [ 61478FA42EE04562E7F11F4DCA87E9C8 ] HSXHWAZL C:\WINDOWS\system32\DRIVERS\HSXHWAZL.sys 21:13:33.0125 2240 HSXHWAZL - ok 21:13:33.0171 2240 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 21:13:33.0171 2240 HTTP - ok 21:13:33.0187 2240 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 21:13:33.0187 2240 HTTPFilter - ok 21:13:33.0203 2240 i2omp - ok 21:13:33.0234 2240 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 21:13:33.0234 2240 i8042prt - ok 21:13:33.0281 2240 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 21:13:33.0296 2240 idsvc - ok 21:13:33.0328 2240 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 21:13:33.0328 2240 Imapi - ok 21:13:33.0343 2240 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe 21:13:33.0343 2240 ImapiService - ok 21:13:33.0343 2240 ini910u - ok 21:13:33.0390 2240 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys 21:13:33.0390 2240 IntelIde - ok 21:13:33.0390 2240 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 21:13:33.0390 2240 intelppm - ok 21:13:33.0437 2240 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 21:13:33.0437 2240 Ip6Fw - ok 21:13:33.0468 2240 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 21:13:33.0468 2240 IpFilterDriver - ok 21:13:33.0468 2240 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 21:13:33.0468 2240 IpInIp - ok 21:13:33.0484 2240 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 21:13:33.0484 2240 IpNat - ok 21:13:33.0515 2240 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 21:13:33.0515 2240 IPSec - ok 21:13:33.0546 2240 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 21:13:33.0546 2240 IRENUM - ok 21:13:33.0546 2240 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 21:13:33.0546 2240 isapnp - ok 21:13:33.0625 2240 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe 21:13:33.0625 2240 JavaQuickStarterService - ok 21:13:33.0656 2240 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 21:13:33.0656 2240 Kbdclass - ok 21:13:33.0687 2240 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 21:13:33.0687 2240 kmixer - ok 21:13:33.0734 2240 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 21:13:33.0734 2240 KSecDD - ok 21:13:33.0765 2240 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll 21:13:33.0765 2240 LanmanServer - ok 21:13:33.0796 2240 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 21:13:33.0796 2240 lanmanworkstation - ok 21:13:33.0859 2240 [ 00944D59948596721D17510C94CD3E4F ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe 21:13:33.0859 2240 LightScribeService - ok 21:13:33.0890 2240 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 21:13:33.0890 2240 LmHosts - ok 21:13:33.0921 2240 [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 21:13:33.0921 2240 MBAMProtector - ok 21:13:33.0968 2240 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 21:13:33.0968 2240 MBAMService - ok 21:13:33.0984 2240 [ E246A32C445056996074A397DA56E815 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys 21:13:34.0000 2240 mdmxsdk - ok 21:13:34.0015 2240 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll 21:13:34.0015 2240 Messenger - ok 21:13:34.0093 2240 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 21:13:34.0093 2240 Microsoft Office Groove Audit Service - ok 21:13:34.0125 2240 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 21:13:34.0125 2240 mnmdd - ok 21:13:34.0156 2240 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 21:13:34.0156 2240 mnmsrvc - ok 21:13:34.0156 2240 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 21:13:34.0156 2240 Modem - ok 21:13:34.0187 2240 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 21:13:34.0187 2240 Mouclass - ok 21:13:34.0187 2240 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 21:13:34.0187 2240 mouhid - ok 21:13:34.0203 2240 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 21:13:34.0203 2240 MountMgr - ok 21:13:34.0250 2240 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 21:13:34.0250 2240 MozillaMaintenance - ok 21:13:34.0265 2240 mraid35x - ok 21:13:34.0281 2240 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 21:13:34.0281 2240 MRxDAV - ok 21:13:34.0312 2240 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 21:13:34.0328 2240 MRxSmb - ok 21:13:34.0359 2240 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe 21:13:34.0359 2240 MSDTC - ok 21:13:34.0359 2240 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 21:13:34.0359 2240 Msfs - ok 21:13:34.0359 2240 MSIServer - ok 21:13:34.0375 2240 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 21:13:34.0375 2240 MSKSSRV - ok 21:13:34.0390 2240 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 21:13:34.0390 2240 MSPCLOCK - ok 21:13:34.0406 2240 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 21:13:34.0406 2240 MSPQM - ok 21:13:34.0421 2240 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 21:13:34.0421 2240 mssmbios - ok 21:13:34.0437 2240 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 21:13:34.0437 2240 Mup - ok 21:13:34.0468 2240 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll 21:13:34.0468 2240 napagent - ok 21:13:34.0546 2240 [ 9AE6509862DE96416CA9AD54440A861B ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe 21:13:34.0546 2240 NAUpdate - ok 21:13:34.0593 2240 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 21:13:34.0593 2240 NDIS - ok 21:13:34.0609 2240 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 21:13:34.0609 2240 NdisTapi - ok 21:13:34.0625 2240 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 21:13:34.0625 2240 Ndisuio - ok 21:13:34.0625 2240 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 21:13:34.0625 2240 NdisWan - ok 21:13:34.0671 2240 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 21:13:34.0671 2240 NDProxy - ok 21:13:34.0671 2240 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 21:13:34.0687 2240 NetBIOS - ok 21:13:34.0687 2240 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 21:13:34.0687 2240 NetBT - ok 21:13:34.0703 2240 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe 21:13:34.0718 2240 NetDDE - ok 21:13:34.0718 2240 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 21:13:34.0718 2240 NetDDEdsdm - ok 21:13:34.0750 2240 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe 21:13:34.0750 2240 Netlogon - ok 21:13:34.0765 2240 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll 21:13:34.0765 2240 Netman - ok 21:13:34.0796 2240 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 21:13:34.0796 2240 NetTcpPortSharing - ok 21:13:34.0828 2240 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys 21:13:34.0843 2240 NIC1394 - ok 21:13:34.0875 2240 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll 21:13:34.0875 2240 Nla - ok 21:13:34.0890 2240 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 21:13:34.0890 2240 Npfs - ok 21:13:34.0906 2240 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 21:13:34.0906 2240 Ntfs - ok 21:13:34.0921 2240 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 21:13:34.0921 2240 NtLmSsp - ok 21:13:34.0937 2240 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 21:13:34.0953 2240 NtmsSvc - ok 21:13:34.0968 2240 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 21:13:34.0968 2240 Null - ok 21:13:35.0125 2240 [ C116D2B008A1640C4484A1DCD1ABE12C ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 21:13:35.0156 2240 nv - ok 21:13:35.0187 2240 [ BC6F6D569A0848BA9D38158AE4734A9C ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 21:13:35.0187 2240 NVSvc - ok 21:13:35.0218 2240 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 21:13:35.0218 2240 NwlnkFlt - ok 21:13:35.0218 2240 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 21:13:35.0234 2240 NwlnkFwd - ok 21:13:35.0312 2240 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 21:13:35.0312 2240 odserv - ok 21:13:35.0343 2240 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys 21:13:35.0343 2240 ohci1394 - ok 21:13:35.0375 2240 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 21:13:35.0375 2240 ose - ok 21:13:35.0406 2240 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\drivers\Parport.sys 21:13:35.0406 2240 Parport - ok 21:13:35.0406 2240 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 21:13:35.0406 2240 PartMgr - ok 21:13:35.0421 2240 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 21:13:35.0421 2240 ParVdm - ok 21:13:35.0437 2240 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 21:13:35.0437 2240 PCI - ok 21:13:35.0437 2240 PCIDump - ok 21:13:35.0453 2240 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\drivers\PCIIde.sys 21:13:35.0453 2240 PCIIde - ok 21:13:35.0453 2240 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys 21:13:35.0453 2240 Pcmcia - ok 21:13:35.0453 2240 perc2 - ok 21:13:35.0468 2240 perc2hib - ok 21:13:35.0500 2240 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe 21:13:35.0500 2240 PlugPlay - ok 21:13:35.0515 2240 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 21:13:35.0515 2240 PolicyAgent - ok 21:13:35.0546 2240 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 21:13:35.0546 2240 PptpMiniport - ok 21:13:35.0578 2240 [ 04F3971B70A7855F04D351AA4BEE7799 ] PQNTDrv C:\WINDOWS\system32\drivers\PQNTDrv.sys 21:13:35.0578 2240 PQNTDrv - ok 21:13:35.0578 2240 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 21:13:35.0578 2240 ProtectedStorage - ok 21:13:35.0578 2240 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 21:13:35.0578 2240 PSched - ok 21:13:35.0609 2240 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 21:13:35.0609 2240 Ptilink - ok 21:13:35.0640 2240 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 21:13:35.0640 2240 PxHelp20 - ok 21:13:35.0640 2240 ql1080 - ok 21:13:35.0656 2240 Ql10wnt - ok 21:13:35.0656 2240 ql12160 - ok 21:13:35.0656 2240 ql1240 - ok 21:13:35.0671 2240 ql1280 - ok 21:13:35.0687 2240 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 21:13:35.0687 2240 RasAcd - ok 21:13:35.0703 2240 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll 21:13:35.0703 2240 RasAuto - ok 21:13:35.0718 2240 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 21:13:35.0718 2240 Rasl2tp - ok 21:13:35.0734 2240 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll 21:13:35.0734 2240 RasMan - ok 21:13:35.0734 2240 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 21:13:35.0734 2240 RasPppoe - ok 21:13:35.0750 2240 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 21:13:35.0750 2240 Raspti - ok 21:13:35.0765 2240 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 21:13:35.0765 2240 Rdbss - ok 21:13:35.0781 2240 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 21:13:35.0781 2240 RDPCDD - ok 21:13:35.0812 2240 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 21:13:35.0812 2240 rdpdr - ok 21:13:35.0843 2240 [ FC105DD312ED64EB66BFF111E8EC6EAC ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 21:13:35.0843 2240 RDPWD - ok 21:13:35.0875 2240 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 21:13:35.0875 2240 RDSessMgr - ok 21:13:35.0890 2240 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 21:13:35.0890 2240 redbook - ok 21:13:35.0921 2240 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 21:13:35.0921 2240 RemoteAccess - ok 21:13:35.0953 2240 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 21:13:35.0953 2240 RemoteRegistry - ok 21:13:35.0984 2240 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe 21:13:35.0984 2240 RpcLocator - ok 21:13:36.0015 2240 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\System32\rpcss.dll 21:13:36.0015 2240 RpcSs - ok 21:13:36.0046 2240 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe 21:13:36.0046 2240 RSVP - ok 21:13:36.0078 2240 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe 21:13:36.0078 2240 SamSs - ok 21:13:36.0125 2240 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 21:13:36.0125 2240 SCardSvr - ok 21:13:36.0171 2240 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll 21:13:36.0187 2240 Schedule - ok 21:13:36.0203 2240 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 21:13:36.0203 2240 Secdrv - ok 21:13:36.0234 2240 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll 21:13:36.0234 2240 seclogon - ok 21:13:36.0250 2240 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll 21:13:36.0250 2240 SENS - ok 21:13:36.0281 2240 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 21:13:36.0281 2240 serenum - ok 21:13:36.0281 2240 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 21:13:36.0281 2240 Serial - ok 21:13:36.0296 2240 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 21:13:36.0296 2240 Sfloppy - ok 21:13:36.0312 2240 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 21:13:36.0312 2240 SharedAccess - ok 21:13:36.0328 2240 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 21:13:36.0328 2240 ShellHWDetection - ok 21:13:36.0343 2240 Simbad - ok 21:13:36.0343 2240 Sparrow - ok 21:13:36.0359 2240 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 21:13:36.0359 2240 splitter - ok 21:13:36.0390 2240 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 21:13:36.0390 2240 Spooler - ok 21:13:36.0421 2240 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 21:13:36.0437 2240 sr - ok 21:13:36.0453 2240 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll 21:13:36.0453 2240 srservice - ok 21:13:36.0468 2240 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 21:13:36.0468 2240 Srv - ok 21:13:36.0500 2240 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 21:13:36.0500 2240 SSDPSRV - ok 21:13:36.0531 2240 [ A36EE93698802CD899F98BFD553D8185 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys 21:13:36.0531 2240 ssmdrv - ok 21:13:36.0593 2240 [ 951801DFB54D86F611F0AF47825476F9 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys 21:13:36.0593 2240 STHDA - ok 21:13:36.0640 2240 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll 21:13:36.0640 2240 stisvc - ok 21:13:36.0656 2240 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 21:13:36.0656 2240 swenum - ok 21:13:36.0671 2240 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 21:13:36.0671 2240 swmidi - ok 21:13:36.0671 2240 SwPrv - ok 21:13:36.0671 2240 symc810 - ok 21:13:36.0687 2240 symc8xx - ok 21:13:36.0687 2240 sym_hi - ok 21:13:36.0687 2240 sym_u3 - ok 21:13:36.0703 2240 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 21:13:36.0703 2240 sysaudio - ok 21:13:36.0734 2240 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 21:13:36.0734 2240 SysmonLog - ok 21:13:36.0765 2240 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 21:13:36.0765 2240 TapiSrv - ok 21:13:36.0812 2240 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 21:13:36.0812 2240 Tcpip - ok 21:13:36.0828 2240 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 21:13:36.0828 2240 TDPIPE - ok 21:13:36.0859 2240 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 21:13:36.0859 2240 TDTCP - ok 21:13:36.0875 2240 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 21:13:36.0875 2240 TermDD - ok 21:13:36.0890 2240 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll 21:13:36.0890 2240 TermService - ok 21:13:36.0906 2240 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll 21:13:36.0906 2240 Themes - ok 21:13:36.0937 2240 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 21:13:36.0937 2240 TlntSvr - ok 21:13:36.0937 2240 TosIde - ok 21:13:36.0968 2240 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll 21:13:36.0968 2240 TrkWks - ok 21:13:37.0031 2240 [ C1A64414DB4E49D41D9DF9359ED9369B ] TuneUp.Defrag C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe 21:13:37.0031 2240 TuneUp.Defrag - ok 21:13:37.0078 2240 [ DC653CF2D70827C4EBC2B157DA25CF57 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe 21:13:37.0078 2240 TuneUp.UtilitiesSvc - ok 21:13:37.0109 2240 [ F2107C9D85EC0DF116939CCCE06AE697 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys 21:13:37.0109 2240 TuneUpUtilitiesDrv - ok 21:13:37.0156 2240 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 21:13:37.0156 2240 Udfs - ok 21:13:37.0156 2240 ultra - ok 21:13:37.0203 2240 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 21:13:37.0203 2240 Update - ok 21:13:37.0234 2240 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll 21:13:37.0234 2240 upnphost - ok 21:13:37.0250 2240 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe 21:13:37.0250 2240 UPS - ok 21:13:37.0265 2240 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 21:13:37.0265 2240 usbccgp - ok 21:13:37.0296 2240 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 21:13:37.0296 2240 usbehci - ok 21:13:37.0328 2240 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 21:13:37.0328 2240 usbhub - ok 21:13:37.0343 2240 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 21:13:37.0343 2240 usbprint - ok 21:13:37.0390 2240 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 21:13:37.0390 2240 usbscan - ok 21:13:37.0390 2240 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 21:13:37.0390 2240 USBSTOR - ok 21:13:37.0406 2240 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 21:13:37.0406 2240 usbuhci - ok 21:13:37.0437 2240 [ DC2172ACCB384C6A3D59342050422102 ] UxTuneUp C:\WINDOWS\System32\uxtuneup.dll 21:13:37.0437 2240 UxTuneUp - ok 21:13:37.0468 2240 [ FCE98C43B5C5DB8E0DA8EA0E2B45E044 ] VClone C:\WINDOWS\system32\DRIVERS\VClone.sys 21:13:37.0468 2240 VClone - ok 21:13:37.0484 2240 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 21:13:37.0484 2240 VgaSave - ok 21:13:37.0500 2240 ViaIde - ok 21:13:37.0515 2240 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 21:13:37.0515 2240 VolSnap - ok 21:13:37.0531 2240 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe 21:13:37.0531 2240 VSS - ok 21:13:37.0562 2240 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll 21:13:37.0562 2240 W32Time - ok 21:13:37.0578 2240 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 21:13:37.0578 2240 Wanarp - ok 21:13:37.0593 2240 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 21:13:37.0593 2240 wdmaud - ok 21:13:37.0609 2240 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll 21:13:37.0609 2240 WebClient - ok 21:13:37.0625 2240 [ BA6B6FB242A6BA4068C8B763063BEB63 ] winachsf C:\WINDOWS\system32\DRIVERS\HSX_CNXT.sys 21:13:37.0640 2240 winachsf - ok 21:13:37.0718 2240 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 21:13:37.0718 2240 winmgmt - ok 21:13:37.0750 2240 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 21:13:37.0750 2240 WmdmPmSN - ok 21:13:37.0781 2240 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll 21:13:37.0781 2240 Wmi - ok 21:13:37.0796 2240 [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys 21:13:37.0796 2240 WmiAcpi - ok 21:13:37.0828 2240 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 21:13:37.0828 2240 WmiApSrv - ok 21:13:37.0890 2240 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 21:13:37.0890 2240 WMPNetworkSvc - ok 21:13:37.0921 2240 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys 21:13:37.0921 2240 WS2IFSL - ok 21:13:37.0953 2240 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 21:13:37.0953 2240 wscsvc - ok 21:13:38.0000 2240 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll 21:13:38.0000 2240 wuauserv - ok 21:13:38.0031 2240 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 21:13:38.0031 2240 WudfPf - ok 21:13:38.0046 2240 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 21:13:38.0046 2240 WudfRd - ok 21:13:38.0062 2240 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 21:13:38.0062 2240 WudfSvc - ok 21:13:38.0093 2240 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 21:13:38.0109 2240 WZCSVC - ok 21:13:38.0125 2240 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 21:13:38.0125 2240 xmlprov - ok 21:13:38.0140 2240 ================ Scan global =============================== 21:13:38.0171 2240 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll 21:13:38.0203 2240 [ 95CF3446911A6E25EE4086DF8A45B2AA ] C:\WINDOWS\system32\winsrv.dll 21:13:38.0203 2240 [ 95CF3446911A6E25EE4086DF8A45B2AA ] C:\WINDOWS\system32\winsrv.dll 21:13:38.0218 2240 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe 21:13:38.0234 2240 [Global] - ok 21:13:38.0234 2240 ================ Scan MBR ================================== 21:13:38.0234 2240 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0 21:13:38.0390 2240 \Device\Harddisk0\DR0 - ok 21:13:38.0390 2240 ================ Scan VBR ================================== 21:13:38.0390 2240 [ F79AA7CC0037F5355749C0DA9359541F ] \Device\Harddisk0\DR0\Partition1 21:13:38.0406 2240 \Device\Harddisk0\DR0\Partition1 - ok 21:13:38.0406 2240 [ 492BD8730AD571B17C889B57ECC2E262 ] \Device\Harddisk0\DR0\Partition2 21:13:38.0421 2240 \Device\Harddisk0\DR0\Partition2 - ok 21:13:38.0437 2240 [ 6F686F31024259F7762B2E1301CCF83E ] \Device\Harddisk0\DR0\Partition3 21:13:38.0437 2240 \Device\Harddisk0\DR0\Partition3 - ok 21:13:38.0453 2240 [ 847752C5EAF35938046FB6B0A4F8C626 ] \Device\Harddisk0\DR0\Partition4 21:13:38.0468 2240 \Device\Harddisk0\DR0\Partition4 - ok 21:13:38.0468 2240 ============================================================ 21:13:38.0468 2240 Scan finished 21:13:38.0468 2240 ============================================================ 21:13:38.0468 2452 Detected object count: 0 21:13:38.0468 2452 Actual detected object count: 0 21:14:12.0593 3392 Deinitialize success Malwarebytes Anti-Malware (Test) 1.62.0.1300 Malwarebytes : Free Anti-Malware download Datenbank Version: v2012.09.04.09 Windows XP Service Pack 3 x86 NTFS Internet Explorer 6.0.2900.5512 Dell_D820 :: DELL [Administrator] Schutz: Deaktiviert 04.09.2012 21:16:09 mbam-log-2012-09-04 (21-16-09).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|F:\|G:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 300600 Laufzeit: 1 Stunde(n), 32 Minute(n), Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 4 C:\Qoobox\Quarantine\C\Documents and Settings\All Users\Application Data\036DFF6A47FA7D360000DA717B07D287\036DFF6A47FA7D360000DA717B07D287.exe.vir (Trojan.LameShield) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Qoobox\Quarantine\C\RECYCLER\S-1-5-18\$a85190e049192b494400fcb5ab63576e\n.vir (RootKit.0Access) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Qoobox\Quarantine\C\RECYCLER\S-1-5-21-606747145-1770027372-1417001333-1003\$a85190e049192b494400fcb5ab63576e\n.vir (RootKit.0Access) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\System Volume Information\_restore{A31CC70C-5D21-4203-B5C1-42BB1FA82776}\RP185\A0035769.exe (Trojan.LameShield) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) |
05.09.2012, 13:35 | #22 |
/// Helfer-Team | Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Java aktualisieren Dein Java ist nicht mehr aktuell. Älter Versionen enthalten Sicherheitslücken, die von Malware missbraucht werden können.
Dann so einstellen: http://www.trojaner-board.de/105213-...tellungen.html Danach poste (kopieren und einfuegen) mir, was du hier angezeigt bekommst: PluginCheck Java deaktivieren Aufgrund derezeitigen Sicherheitsluecke: http://www.trojaner-board.de/122961-...ktivieren.html Danach poste mir (kopieren und einfuegen), was du hier angezeigt bekommst: PluginCheck |
05.09.2012, 21:40 | #23 |
| Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 PluginCheck Der PluginCheck hilft die größten Sicherheitslücken beim Surfen im Internet zu schliessen. Überprüft wird: Browser, Flash, Java und Adobe Reader Version. Firefox 14.0.1 ist aktuell Flash (11,4,402,265) ist aktuell. Java (1,7,0,7) ist aktuell. Adobe Reader 10,1,4,38 ist aktuell. PluginCheck Der PluginCheck hilft die größten Sicherheitslücken beim Surfen im Internet zu schliessen. Überprüft wird: Browser, Flash, Java und Adobe Reader Version. Firefox 14.0.1 ist aktuell Flash (11,4,402,265) ist aktuell. Java ist Installiert aber nicht aktiviert. Adobe Reader 10,1,4,38 ist aktuell. |
06.09.2012, 01:17 | #24 |
/// Helfer-Team | Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Sehr gut! damit bist Du entlassen! adwCleaner entfernen
Tool-Bereinigung mit OTL Wir werden nun die CleanUp!-Funktion von OTL nutzen, um die meisten Programme, die wir zur Bereinigung installiert haben, wieder von Deinem System zu löschen.
Zurücksetzen der Sicherheitszonen Lasse die Sicherheitszonen wieder zurücksetzen, da diese manipuliert wurden um den Browser für weitere Angriffe zu öffnen. Gehe dabei so vor: http://www.trojaner-board.de/111805-...ecksetzen.html Systemwiederherstellungen leeren Damit der Rechner nicht mit einer infizierten Systemwiederherstellung erneut infiziert werden kann, muessen wir diese leeren. Dazu schalten wir sie einmal aus und dann wieder ein: Systemwiederherstellung deaktivieren Tutorial fuer Windows XP, Windows Vista, Windows 7 Danach wieder aktivieren. Aufräumen mit CCleaner Lasse mit CCleaner (Download) (Anleitung) Fehler in der
Lektuere zum abarbeiten: http://www.trojaner-board.de/90880-d...tallation.html http://www.trojaner-board.de/105213-...tellungen.html PluginCheck http://www.trojaner-board.de/96344-a...-rechners.html Secunia Online Software Inspector http://www.trojaner-board.de/71715-k...iendungen.html http://www.trojaner-board.de/83238-a...sschalten.html PC wird immer langsamer - was tun? |
06.09.2012, 11:03 | #25 |
| Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 Vielen Dank, Mfg Carsten |
Themen zu Virusmeldung TR/ATRAPS.Gen und TR/ATRAPS.Gen2 |
dllhost.exe, dont.steal.our.software, explorer.exe, lanmanworkstation, lsass.exe, programm, prozesse, pup.bundleinstaller.oi, pup.offerbundler.st, pup.vshareredir, riskware.tool.hck, scan, services.exe, svchost.exe, system volume information, trojan.agent.vgenx, trojan.lameshield, trojan.siredef, windows, winlogon.exe, wmi |