Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Trojan.Generic.6760809 im Receycler und System Volume Information

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 12.11.2012, 23:35   #1
EDDK
 
Trojan.Generic.6760809 im Receycler und System Volume Information - Standard

Trojan.Generic.6760809 im Receycler und System Volume Information



Code:
ATTFilter
aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2012-11-12 23:21:05
-----------------------------
23:21:05.265    OS Version: Windows 5.1.2600 Service Pack 3
23:21:05.265    Number of processors: 1 586 0x304
23:21:05.265    ComputerName: AIRBORNE1  UserName: Admin
23:21:05.937    Initialize success
23:21:06.578    AVAST engine defs: 12111201
23:21:29.671    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-7
23:21:29.671    Disk 0 Vendor: WDC_WD2502ABYS-02B7A0 02.03B03 Size: 239429MB BusType: 3
23:21:29.687    Disk 0 MBR read successfully
23:21:29.687    Disk 0 MBR scan
23:21:29.687    Disk 0 Windows XP default MBR code
23:21:29.687    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS       239417 MB offset 63
23:21:29.703    Disk 0 scanning sectors +490326480
23:21:29.750    Disk 0 scanning C:\WINDOWS\system32\drivers
23:21:35.750    Service scanning
23:21:44.515    Modules scanning
23:21:47.515    Disk 0 trace - called modules:
23:21:47.531    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 
23:21:47.531    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x89eb2ab8]
23:21:47.531    3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\0000005d[0x89ee2900]
23:21:47.546    5 ACPI.sys[f75ad620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP3T0L0-7[0x89e81d98]
23:21:48.046    AVAST engine scan C:\WINDOWS
23:21:50.421    AVAST engine scan C:\WINDOWS\system32
23:24:06.703    AVAST engine scan C:\WINDOWS\system32\drivers
23:24:23.296    AVAST engine scan C:\Dokumente und Einstellungen\Admin
23:27:12.906    AVAST engine scan C:\Dokumente und Einstellungen\All Users
23:28:16.281    Scan finished successfully
23:28:34.812    Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\Admin\Desktop\MBR.dat"
23:28:34.812    The log file has been saved successfully to "C:\Dokumente und Einstellungen\Admin\Desktop\aswMBR.txt"
         


Code:
ATTFilter
23:29:51.0875 1136  TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
23:29:51.0890 1136  ============================================================
23:29:51.0890 1136  Current date / time: 2012/11/12 23:29:51.0890
23:29:51.0890 1136  SystemInfo:
23:29:51.0890 1136  
23:29:51.0890 1136  OS Version: 5.1.2600 ServicePack: 3.0
23:29:51.0890 1136  Product type: Workstation
23:29:51.0890 1136  ComputerName: AIRBORNE1
23:29:51.0890 1136  UserName: Admin
23:29:51.0890 1136  Windows directory: C:\WINDOWS
23:29:51.0890 1136  System windows directory: C:\WINDOWS
23:29:51.0890 1136  Processor architecture: Intel x86
23:29:51.0890 1136  Number of processors: 1
23:29:51.0890 1136  Page size: 0x1000
23:29:51.0890 1136  Boot type: Normal boot
23:29:51.0890 1136  ============================================================
23:29:52.0984 1136  Drive \Device\Harddisk0\DR0 - Size: 0x3A7450A000 (233.82 Gb), SectorSize: 0x200, Cylinders: 0x7EAE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000054
23:29:52.0984 1136  Drive \Device\Harddisk1\DR2 - Size: 0x15D50D00000 (1397.26 Gb), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
23:29:59.0796 1136  ============================================================
23:29:59.0796 1136  \Device\Harddisk0\DR0:
23:29:59.0796 1136  MBR partitions:
23:29:59.0796 1136  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D39C991
23:29:59.0796 1136  \Device\Harddisk1\DR2:
23:29:59.0796 1136  MBR partitions:
23:29:59.0796 1136  \Device\Harddisk1\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAEA86000
23:29:59.0796 1136  ============================================================
23:29:59.0828 1136  C: <-> \Device\Harddisk0\DR0\Partition1
23:29:59.0875 1136  G: <-> \Device\Harddisk1\DR2\Partition1
23:29:59.0875 1136  ============================================================
23:29:59.0875 1136  Initialize success
23:29:59.0875 1136  ============================================================
23:30:30.0656 0400  ============================================================
23:30:30.0656 0400  Scan started
23:30:30.0656 0400  Mode: Manual; SigCheck; TDLFS; 
23:30:30.0656 0400  ============================================================
23:30:30.0984 0400  ================ Scan system memory ========================
23:30:30.0984 0400  System memory - ok
23:30:30.0984 0400  ================ Scan services =============================
23:30:31.0109 0400  [ 149A8F7ADF9742554DC323E290551E3E ] Aavmker4        C:\WINDOWS\system32\drivers\Aavmker4.sys
23:30:31.0234 0400  Aavmker4 - ok
23:30:31.0250 0400  Abiosdsk - ok
23:30:31.0250 0400  abp480n5 - ok
23:30:31.0281 0400  [ AC407F1A62C3A300B4F2B5A9F1D55B2C ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
23:30:31.0484 0400  ACPI - ok
23:30:31.0500 0400  [ 9E1CA3160DAFB159CA14F83B1E317F75 ] ACPIEC          C:\WINDOWS\system32\drivers\ACPIEC.sys
23:30:31.0640 0400  ACPIEC - ok
23:30:31.0718 0400  [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
23:30:31.0750 0400  AdobeFlashPlayerUpdateSvc - ok
23:30:31.0750 0400  adpu160m - ok
23:30:31.0796 0400  [ 8BED39E3C35D6A489438B8141717A557 ] aec             C:\WINDOWS\system32\drivers\aec.sys
23:30:31.0937 0400  aec - ok
23:30:31.0968 0400  [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
23:30:32.0000 0400  AFD - ok
23:30:32.0015 0400  [ 08FD04AA961BDC77FB983F328334E3D7 ] agp440          C:\WINDOWS\system32\DRIVERS\agp440.sys
23:30:32.0156 0400  agp440 - ok
23:30:32.0171 0400  Aha154x - ok
23:30:32.0171 0400  aic78u2 - ok
23:30:32.0187 0400  aic78xx - ok
23:30:32.0203 0400  [ 738D80CC01D7BC7584BE917B7F544394 ] Alerter         C:\WINDOWS\system32\alrsvc.dll
23:30:32.0343 0400  Alerter - ok
23:30:32.0359 0400  [ 190CD73D4984F94D823F9444980513E5 ] ALG             C:\WINDOWS\System32\alg.exe
23:30:32.0500 0400  ALG - ok
23:30:32.0515 0400  AliIde - ok
23:30:32.0515 0400  amsint - ok
23:30:32.0546 0400  [ DD8D9C597AF7CD2F6B70A3D6A4A1ACEA ] androidusb      C:\WINDOWS\system32\Drivers\ssadadb.sys
23:30:32.0609 0400  androidusb - ok
23:30:32.0640 0400  [ D45960BE52C3C610D361977057F98C54 ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
23:30:32.0765 0400  AppMgmt - ok
23:30:32.0765 0400  asc - ok
23:30:32.0781 0400  asc3350p - ok
23:30:32.0796 0400  asc3550 - ok
23:30:32.0906 0400  [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
23:30:32.0937 0400  aspnet_state - ok
23:30:32.0953 0400  [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk        C:\WINDOWS\system32\drivers\aswFsBlk.sys
23:30:32.0968 0400  aswFsBlk - ok
23:30:33.0015 0400  [ 84F0BE324EE111338589F448C3E8BAB2 ] aswMon2         C:\WINDOWS\system32\drivers\aswMon2.sys
23:30:33.0031 0400  aswMon2 - ok
23:30:33.0062 0400  [ 7C9F0A2AB17D52261A9252A2EB320884 ] AswRdr          C:\WINDOWS\system32\drivers\AswRdr.sys
23:30:33.0078 0400  AswRdr - ok
23:30:33.0109 0400  [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx          C:\WINDOWS\system32\drivers\aswSnx.sys
23:30:33.0156 0400  aswSnx - ok
23:30:33.0203 0400  [ 67B558895695545FB0568B7541F3BCA7 ] aswSP           C:\WINDOWS\system32\drivers\aswSP.sys
23:30:33.0234 0400  aswSP - ok
23:30:33.0250 0400  [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi          C:\WINDOWS\system32\drivers\aswTdi.sys
23:30:33.0265 0400  aswTdi - ok
23:30:33.0281 0400  [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
23:30:33.0421 0400  AsyncMac - ok
23:30:33.0437 0400  [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
23:30:33.0578 0400  atapi - ok
23:30:33.0593 0400  Atdisk - ok
23:30:33.0640 0400  [ D80A3FD3DB6F999F6D1C6D23A293851B ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
23:30:33.0687 0400  Ati HotKey Poller - ok
23:30:33.0875 0400  [ C832BF76F003999D2E91E5115583C69E ] ati2mtag        C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
23:30:34.0171 0400  ati2mtag - ok
23:30:34.0203 0400  [ 9916C1225104BA14794209CFA8012159 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
23:30:34.0328 0400  Atmarpc - ok
23:30:34.0359 0400  [ 58ED0D5452DF7BE732193E7999C6B9A4 ] AudioSrv        C:\WINDOWS\System32\audiosrv.dll
23:30:34.0484 0400  AudioSrv - ok
23:30:34.0531 0400  [ D9F724AA26C010A217C97606B160ED68 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
23:30:34.0656 0400  audstub - ok
23:30:34.0734 0400  [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Programme\AVAST Software\Avast\AvastSvc.exe
23:30:34.0750 0400  avast! Antivirus - ok
23:30:34.0781 0400  [ 4D50B7A5AE8E67E68B7C9571769D5DDE ] b57w2k          C:\WINDOWS\system32\DRIVERS\b57xp32.sys
23:30:34.0812 0400  b57w2k - ok
23:30:34.0843 0400  [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
23:30:34.0984 0400  Beep - ok
23:30:35.0031 0400  [ ACC9C8C560C567FAD6F79C977AB2EA09 ] bgsvcgen        C:\WINDOWS\system32\bgsvcgen.exe
23:30:35.0046 0400  bgsvcgen - ok
23:30:35.0078 0400  [ D6F603772A789BB3228F310D650B8BD1 ] BITS            C:\WINDOWS\System32\qmgr.dll
23:30:35.0218 0400  BITS - ok
23:30:35.0250 0400  [ B71549F23736ADF83A571061C47777FD ] Browser         C:\WINDOWS\System32\browser.dll
23:30:35.0296 0400  Browser - ok
23:30:35.0328 0400  [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
23:30:35.0453 0400  cbidf2k - ok
23:30:35.0484 0400  [ FDC06E2ADA8C468EBB161624E03976CF ] CCDECODE        C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
23:30:35.0515 0400  CCDECODE - ok
23:30:35.0531 0400  cd20xrnt - ok
23:30:35.0562 0400  [ C1B486A7658353D33A10CC15211A873B ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
23:30:35.0703 0400  Cdaudio - ok
23:30:35.0718 0400  [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
23:30:35.0859 0400  Cdfs - ok
23:30:35.0875 0400  [ E0042BD5BEF17A6A3EF1DF576BDE24D1 ] cdrbsdrv        C:\WINDOWS\system32\drivers\cdrbsdrv.sys
23:30:35.0890 0400  cdrbsdrv ( UnsignedFile.Multi.Generic ) - warning
23:30:35.0890 0400  cdrbsdrv - detected UnsignedFile.Multi.Generic (1)
23:30:35.0890 0400  [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
23:30:36.0031 0400  Cdrom - ok
23:30:36.0046 0400  Changer - ok
23:30:36.0093 0400  [ 28E3040D1F1CA2008CD6B29DFEBC9A5E ] CiSvc           C:\WINDOWS\system32\cisvc.exe
23:30:36.0218 0400  CiSvc - ok
23:30:36.0234 0400  [ 778A30ED3C134EB7E406AFC407E9997D ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
23:30:36.0375 0400  ClipSrv - ok
23:30:36.0437 0400  [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:30:36.0484 0400  clr_optimization_v2.0.50727_32 - ok
23:30:36.0515 0400  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:30:36.0593 0400  clr_optimization_v4.0.30319_32 - ok
23:30:36.0593 0400  CmdIde - ok
23:30:36.0625 0400  [ FD40439BB258B9AA9AD314BF5948EF46 ] cmpci           C:\WINDOWS\system32\drivers\cmaudio.sys
23:30:36.0703 0400  cmpci - ok
23:30:36.0718 0400  COMSysApp - ok
23:30:36.0734 0400  Cpqarray - ok
23:30:36.0781 0400  [ 611F824E5C703A5A899F84C5F1699E4D ] CryptSvc        C:\WINDOWS\System32\cryptsvc.dll
23:30:36.0921 0400  CryptSvc - ok
23:30:36.0921 0400  dac2w2k - ok
23:30:36.0921 0400  dac960nt - ok
23:30:36.0968 0400  [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
23:30:37.0062 0400  DcomLaunch - ok
23:30:37.0109 0400  [ C29A1C9B75BA38FA37F8C44405DEC360 ] Dhcp            C:\WINDOWS\System32\dhcpcsvc.dll
23:30:37.0234 0400  Dhcp - ok
23:30:37.0265 0400  [ 044452051F3E02E7963599FC8F4F3E25 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
23:30:37.0390 0400  Disk - ok
23:30:37.0406 0400  dmadmin - ok
23:30:37.0437 0400  [ 0DCFC8395A99FECBB1EF771CEC7FE4EA ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys
23:30:37.0609 0400  dmboot - ok
23:30:37.0625 0400  [ 53720AB12B48719D00E327DA470A619A ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
23:30:37.0765 0400  dmio - ok
23:30:37.0796 0400  [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
23:30:37.0937 0400  dmload - ok
23:30:37.0968 0400  [ 25C83FFBBA13B554EB6D59A9B2E2EE78 ] dmserver        C:\WINDOWS\System32\dmserver.dll
23:30:38.0109 0400  dmserver - ok
23:30:38.0156 0400  [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
23:30:38.0281 0400  DMusic - ok
23:30:38.0296 0400  [ 407F3227AC618FD1CA54B335B083DE07 ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
23:30:38.0343 0400  Dnscache - ok
23:30:38.0375 0400  [ 676E36C4FF5BCEA1900F44182B9723E6 ] Dot3svc         C:\WINDOWS\System32\dot3svc.dll
23:30:38.0500 0400  Dot3svc - ok
23:30:38.0515 0400  dpti2o - ok
23:30:38.0546 0400  [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
23:30:38.0671 0400  drmkaud - ok
23:30:38.0671 0400  EagleXNt - ok
23:30:38.0703 0400  [ 4E4F2FDDAB0A0736D7671134DCCE91FB ] EapHost         C:\WINDOWS\System32\eapsvc.dll
23:30:38.0843 0400  EapHost - ok
23:30:38.0875 0400  [ 877C18558D70587AA7823A1A308AC96B ] ERSvc           C:\WINDOWS\System32\ersvc.dll
23:30:39.0015 0400  ERSvc - ok
23:30:39.0062 0400  [ A3EDBE9053889FB24AB22492472B39DC ] Eventlog        C:\WINDOWS\system32\services.exe
23:30:39.0109 0400  Eventlog - ok
23:30:39.0156 0400  [ AF4F6B5739D18CA7972AB53E091CBC74 ] EventSystem     C:\WINDOWS\System32\es.dll
23:30:39.0203 0400  EventSystem - ok
23:30:39.0203 0400  [ 38D332A6D56AF32635675F132548343E ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
23:30:39.0328 0400  Fastfat - ok
23:30:39.0359 0400  [ 2DB7D303C36DDD055215052F118E8E75 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
23:30:39.0406 0400  FastUserSwitchingCompatibility - ok
23:30:39.0437 0400  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc             C:\WINDOWS\system32\DRIVERS\fdc.sys
23:30:39.0562 0400  Fdc - ok
23:30:39.0578 0400  [ B0678A548587C5F1967B0D70BACAD6C1 ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
23:30:39.0703 0400  Fips - ok
23:30:39.0703 0400  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk        C:\WINDOWS\system32\DRIVERS\flpydisk.sys
23:30:39.0828 0400  Flpydisk - ok
23:30:39.0875 0400  [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
23:30:40.0000 0400  FltMgr - ok
23:30:40.0062 0400  [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
23:30:40.0078 0400  FontCache3.0.0.0 - ok
23:30:40.0078 0400  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
23:30:40.0218 0400  Fs_Rec - ok
23:30:40.0218 0400  [ 8F1955CE42E1484714B542F341647778 ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
23:30:40.0343 0400  Ftdisk - ok
23:30:40.0359 0400  [ 065639773D8B03F33577F6CDAEA21063 ] gameenum        C:\WINDOWS\system32\DRIVERS\gameenum.sys
23:30:40.0484 0400  gameenum - ok
23:30:40.0500 0400  [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
23:30:40.0640 0400  Gpc - ok
23:30:40.0687 0400  [ C1B577B2169900F4CF7190C39F085794 ] gusvc           C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
23:30:40.0703 0400  gusvc - ok
23:30:40.0750 0400  [ FC7DCDEF8F17D3C5DECC880673EA5BD5 ] hcwPVRP2        C:\WINDOWS\system32\DRIVERS\hcwPVRP2.sys
23:30:40.0812 0400  hcwPVRP2 - ok
23:30:40.0906 0400  [ CB66BF85BF599BEFD6C6A57C2E20357F ] helpsvc         C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
23:30:41.0046 0400  helpsvc - ok
23:30:41.0078 0400  [ B35DA85E60C0103F2E4104532DA2F12B ] HidServ         C:\WINDOWS\System32\hidserv.dll
23:30:41.0218 0400  HidServ - ok
23:30:41.0250 0400  [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb          C:\WINDOWS\system32\DRIVERS\hidusb.sys
23:30:41.0375 0400  hidusb - ok
23:30:41.0406 0400  [ ED29F14101523A6E0E808107405D452C ] hkmsvc          C:\WINDOWS\System32\kmsvc.dll
23:30:41.0531 0400  hkmsvc - ok
23:30:41.0546 0400  hpn - ok
23:30:41.0593 0400  [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
23:30:41.0640 0400  HTTP - ok
23:30:41.0687 0400  [ 9E4ADB854CEBCFB81A4B36718FEECD16 ] HTTPFilter      C:\WINDOWS\System32\w3ssl.dll
23:30:41.0921 0400  HTTPFilter - ok
23:30:41.0937 0400  i2omgmt - ok
23:30:41.0937 0400  i2omp - ok
23:30:41.0953 0400  [ E283B97CFBEB86C1D86BAED5F7846A92 ] i8042prt        C:\WINDOWS\system32\DRIVERS\i8042prt.sys
23:30:42.0093 0400  i8042prt - ok
23:30:42.0156 0400  [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT        C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
23:30:42.0171 0400  IDriverT ( UnsignedFile.Multi.Generic ) - warning
23:30:42.0171 0400  IDriverT - detected UnsignedFile.Multi.Generic (1)
23:30:42.0265 0400  [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc           C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
23:30:42.0312 0400  idsvc - ok
23:30:42.0343 0400  [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
23:30:42.0468 0400  Imapi - ok
23:30:42.0500 0400  [ D4B413AA210C21E46AEDD2BA5B68D38E ] ImapiService    C:\WINDOWS\System32\imapi.exe
23:30:42.0640 0400  ImapiService - ok
23:30:42.0656 0400  ini910u - ok
23:30:42.0671 0400  IntelIde - ok
23:30:42.0687 0400  [ 4C7D2750158ED6E7AD642D97BFFAE351 ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
23:30:42.0828 0400  intelppm - ok
23:30:42.0859 0400  [ F7C534DEF663B4E847E44F20927F5ED2 ] IOPort          C:\WINDOWS\system32\DRIVERS\IOPORT.SYS
23:30:42.0875 0400  IOPort ( UnsignedFile.Multi.Generic ) - warning
23:30:42.0875 0400  IOPort - detected UnsignedFile.Multi.Generic (1)
23:30:42.0890 0400  [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw           C:\WINDOWS\system32\drivers\ip6fw.sys
23:30:43.0031 0400  ip6fw - ok
23:30:43.0062 0400  [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
23:30:43.0187 0400  IpFilterDriver - ok
23:30:43.0203 0400  [ B87AB476DCF76E72010632B5550955F5 ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
23:30:43.0328 0400  IpInIp - ok
23:30:43.0343 0400  [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
23:30:43.0500 0400  IpNat - ok
23:30:43.0515 0400  [ 23C74D75E36E7158768DD63D92789A91 ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
23:30:43.0640 0400  IPSec - ok
23:30:43.0671 0400  [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
23:30:43.0781 0400  IRENUM - ok
23:30:43.0812 0400  [ 6DFB88F64135C525433E87648BDA30DE ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
23:30:43.0937 0400  isapnp - ok
23:30:43.0953 0400  [ 1704D8C4C8807B889E43C649B478A452 ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
23:30:44.0078 0400  Kbdclass - ok
23:30:44.0093 0400  [ B6D6C117D771C98130497265F26D1882 ] kbdhid          C:\WINDOWS\system32\DRIVERS\kbdhid.sys
23:30:44.0234 0400  kbdhid - ok
23:30:44.0265 0400  [ 692BCF44383D056AED41B045A323D378 ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
23:30:44.0406 0400  kmixer - ok
23:30:44.0437 0400  [ B467646C54CC746128904E1654C750C1 ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
23:30:44.0484 0400  KSecDD - ok
23:30:44.0515 0400  [ 2BBDCB79900990F0716DFCB714E72DE7 ] lanmanserver    C:\WINDOWS\System32\srvsvc.dll
23:30:44.0562 0400  lanmanserver - ok
23:30:44.0609 0400  [ 1869B14B06B44B44AF70548E1EA3303F ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
23:30:44.0640 0400  lanmanworkstation - ok
23:30:44.0671 0400  [ B7C19EC8B0DD7EFA58AD41FFEB8B8CDA ] Lbd             C:\WINDOWS\system32\DRIVERS\Lbd.sys
23:30:44.0687 0400  Lbd - ok
23:30:44.0703 0400  lbrtfdc - ok
23:30:44.0734 0400  [ 636714B7D43C8D0C80449123FD266920 ] LmHosts         C:\WINDOWS\System32\lmhsvc.dll
23:30:44.0875 0400  LmHosts - ok
23:30:44.0906 0400  [ 500D089CE760D83DA2B6CBA681AA9949 ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
23:30:44.0937 0400  MBAMProtector - ok
23:30:45.0015 0400  [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler   C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:30:45.0031 0400  MBAMScheduler - ok
23:30:45.0078 0400  [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService     C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe
23:30:45.0109 0400  MBAMService - ok
23:30:45.0140 0400  [ B7550A7107281D170CE85524B1488C98 ] Messenger       C:\WINDOWS\System32\msgsvc.dll
23:30:45.0281 0400  Messenger - ok
23:30:45.0281 0400  [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
23:30:45.0406 0400  mnmdd - ok
23:30:45.0437 0400  [ C2F1D365FD96791B037EE504868065D3 ] mnmsrvc         C:\WINDOWS\System32\mnmsrvc.exe
23:30:45.0562 0400  mnmsrvc - ok
23:30:45.0593 0400  [ 6FB74EBD4EC57A6F1781DE3852CC3362 ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
23:30:45.0734 0400  Modem - ok
23:30:45.0781 0400  [ B24CE8005DEAB254C0251E15CB71D802 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
23:30:45.0906 0400  Mouclass - ok
23:30:45.0937 0400  [ 66A6F73C74E1791464160A7065CE711A ] mouhid          C:\WINDOWS\system32\DRIVERS\mouhid.sys
23:30:46.0062 0400  mouhid - ok
23:30:46.0062 0400  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
23:30:46.0187 0400  MountMgr - ok
23:30:46.0218 0400  [ DAE3C509F33059BC4D48A8925F476FB4 ] MozillaMaintenance C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe
23:30:46.0250 0400  MozillaMaintenance - ok
23:30:46.0250 0400  mraid35x - ok
23:30:46.0265 0400  [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
23:30:46.0390 0400  MRxDAV - ok
23:30:46.0437 0400  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
23:30:46.0500 0400  MRxSmb - ok
23:30:46.0531 0400  [ 35A031AF38C55F92D28AA03EE9F12CC9 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
23:30:46.0671 0400  MSDTC - ok
23:30:46.0687 0400  [ C941EA2454BA8350021D774DAF0F1027 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
23:30:46.0812 0400  Msfs - ok
23:30:46.0812 0400  MSIServer - ok
23:30:46.0843 0400  [ 85736F804191CB420A31ACA2A7F0674F ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
23:30:46.0875 0400  MSKSSRV - ok
23:30:46.0906 0400  [ E943ADB93D83C5CBC0CA3F53F53B48CC ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
23:30:46.0953 0400  MSPCLOCK - ok
23:30:47.0000 0400  [ F6A726B8832DB1F88326B8BE98B11981 ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
23:30:47.0062 0400  MSPQM - ok
23:30:47.0093 0400  [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
23:30:47.0218 0400  mssmbios - ok
23:30:47.0234 0400  [ D5059366B361F0E1124753447AF08AA2 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
23:30:47.0281 0400  MSTEE - ok
23:30:47.0296 0400  [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
23:30:47.0328 0400  Mup - ok
23:30:47.0359 0400  [ AC31B352CE5E92704056D409834BEB74 ] NABTSFEC        C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
23:30:47.0375 0400  NABTSFEC - ok
23:30:47.0406 0400  [ 46BB15AE2AC7D025D6D2567B876817BD ] napagent        C:\WINDOWS\System32\qagentrt.dll
23:30:47.0562 0400  napagent - ok
23:30:47.0562 0400  [ 1DF7F42665C94B825322FAE71721130D ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
23:30:47.0703 0400  NDIS - ok
23:30:47.0734 0400  [ ABD7629CF2796250F315C1DD0B6CF7A0 ] NdisIP          C:\WINDOWS\system32\DRIVERS\NdisIP.sys
23:30:47.0765 0400  NdisIP - ok
23:30:47.0812 0400  [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
23:30:47.0828 0400  NdisTapi - ok
23:30:47.0859 0400  [ F927A4434C5028758A842943EF1A3849 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
23:30:47.0984 0400  Ndisuio - ok
23:30:48.0000 0400  [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
23:30:48.0109 0400  NdisWan - ok
23:30:48.0140 0400  [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
23:30:48.0171 0400  NDProxy - ok
23:30:48.0203 0400  [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
23:30:48.0328 0400  NetBIOS - ok
23:30:48.0359 0400  [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
23:30:48.0484 0400  NetBT - ok
23:30:48.0531 0400  [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDE          C:\WINDOWS\system32\netdde.exe
23:30:48.0656 0400  NetDDE - ok
23:30:48.0656 0400  [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
23:30:48.0796 0400  NetDDEdsdm - ok
23:30:48.0828 0400  [ AFB8261B56CBA0D86AEB6DF682AF9785 ] Netlogon        C:\WINDOWS\System32\lsass.exe
23:30:48.0953 0400  Netlogon - ok
23:30:48.0984 0400  [ E6D88F1F6745BF00B57E7855A2AB696C ] Netman          C:\WINDOWS\System32\netman.dll
23:30:49.0125 0400  Netman - ok
23:30:49.0171 0400  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:30:49.0203 0400  NetTcpPortSharing - ok
23:30:49.0234 0400  [ F1B67B6B0751AE0E6E964B02821206A3 ] Nla             C:\WINDOWS\System32\mswsock.dll
23:30:49.0281 0400  Nla - ok
23:30:49.0328 0400  [ 7AEA4DF1CA68FD45DD4BBE1F0243CE7F ] NMSAccess       C:\Programme\CDBurnerXP\NMSAccessU.exe
23:30:49.0343 0400  NMSAccess - ok
23:30:49.0390 0400  [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] NPF             C:\WINDOWS\system32\drivers\npf.sys
23:30:49.0406 0400  NPF - ok
23:30:49.0421 0400  [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
23:30:49.0546 0400  Npfs - ok
23:30:49.0578 0400  [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
23:30:49.0750 0400  Ntfs - ok
23:30:49.0750 0400  [ AFB8261B56CBA0D86AEB6DF682AF9785 ] NtLmSsp         C:\WINDOWS\System32\lsass.exe
23:30:49.0875 0400  NtLmSsp - ok
23:30:49.0906 0400  [ 56AF4064996FA5BAC9C449B1514B4770 ] NtmsSvc         C:\WINDOWS\system32\ntmssvc.dll
23:30:50.0093 0400  NtmsSvc - ok
23:30:50.0109 0400  [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null            C:\WINDOWS\system32\drivers\Null.sys
23:30:50.0218 0400  Null - ok
23:30:50.0234 0400  [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
23:30:50.0390 0400  NwlnkFlt - ok
23:30:50.0421 0400  [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
23:30:50.0546 0400  NwlnkFwd - ok
23:30:50.0578 0400  [ F84785660305B9B903FB3BCA8BA29837 ] Parport         C:\WINDOWS\system32\DRIVERS\parport.sys
23:30:50.0718 0400  Parport - ok
23:30:50.0718 0400  [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
23:30:50.0843 0400  PartMgr - ok
23:30:50.0859 0400  [ C2BF987829099A3EAA2CA6A0A90ECB4F ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
23:30:51.0000 0400  ParVdm - ok
23:30:51.0015 0400  [ 387E8DEDC343AA2D1EFBC30580273ACD ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
23:30:51.0125 0400  PCI - ok
23:30:51.0140 0400  PCIDump - ok
23:30:51.0156 0400  [ 59BA86D9A61CBCF4DF8E598C331F5B82 ] PCIIde          C:\WINDOWS\system32\DRIVERS\pciide.sys
23:30:51.0296 0400  PCIIde - ok
23:30:51.0328 0400  [ A2A966B77D61847D61A3051DF87C8C97 ] Pcmcia          C:\WINDOWS\system32\drivers\Pcmcia.sys
23:30:51.0453 0400  Pcmcia - ok
23:30:51.0468 0400  PDCOMP - ok
23:30:51.0468 0400  PDFRAME - ok
23:30:51.0484 0400  PDRELI - ok
23:30:51.0484 0400  PDRFRAME - ok
23:30:51.0500 0400  perc2 - ok
23:30:51.0515 0400  perc2hib - ok
23:30:51.0546 0400  [ A3EDBE9053889FB24AB22492472B39DC ] PlugPlay        C:\WINDOWS\system32\services.exe
23:30:51.0578 0400  PlugPlay - ok
23:30:51.0578 0400  [ AFB8261B56CBA0D86AEB6DF682AF9785 ] PolicyAgent     C:\WINDOWS\System32\lsass.exe
23:30:51.0703 0400  PolicyAgent - ok
23:30:51.0718 0400  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
23:30:51.0859 0400  PptpMiniport - ok
23:30:51.0875 0400  [ 2CB55427C58679F49AD600FCCBA76360 ] Processor       C:\WINDOWS\system32\DRIVERS\processr.sys
23:30:52.0000 0400  Processor - ok
23:30:52.0015 0400  [ AFB8261B56CBA0D86AEB6DF682AF9785 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
23:30:52.0140 0400  ProtectedStorage - ok
23:30:52.0156 0400  [ 09298EC810B07E5D582CB3A3F9255424 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
23:30:52.0281 0400  PSched - ok
23:30:52.0281 0400  [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
23:30:52.0421 0400  Ptilink - ok
23:30:52.0468 0400  [ 153D02480A0A2F45785522E814C634B6 ] PxHelp20        C:\WINDOWS\system32\Drivers\PxHelp20.sys
23:30:52.0484 0400  PxHelp20 - ok
23:30:52.0484 0400  ql1080 - ok
23:30:52.0500 0400  Ql10wnt - ok
23:30:52.0500 0400  ql12160 - ok
23:30:52.0515 0400  ql1240 - ok
23:30:52.0515 0400  ql1280 - ok
23:30:52.0531 0400  [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
23:30:52.0656 0400  RasAcd - ok
23:30:52.0703 0400  [ F5BA6CACCDB66C8F048E867563203246 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
23:30:52.0828 0400  RasAuto - ok
23:30:52.0828 0400  [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
23:30:52.0953 0400  Rasl2tp - ok
23:30:53.0000 0400  [ F9A7B66EA345726EDB5862A46B1ECCD5 ] RasMan          C:\WINDOWS\System32\rasmans.dll
23:30:53.0156 0400  RasMan - ok
23:30:53.0156 0400  [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
23:30:53.0281 0400  RasPppoe - ok
23:30:53.0296 0400  [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
23:30:53.0437 0400  Raspti - ok
23:30:53.0437 0400  [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
23:30:53.0562 0400  Rdbss - ok
23:30:53.0578 0400  [ 4912D5B403614CE99C28420F75353332 ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
23:30:53.0703 0400  RDPCDD - ok
23:30:53.0718 0400  [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
23:30:53.0843 0400  rdpdr - ok
23:30:53.0890 0400  [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
23:30:53.0937 0400  RDPWD - ok
23:30:53.0984 0400  [ 263AF18AF0F3DB99F574C95F284CCEC9 ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
23:30:54.0109 0400  RDSessMgr - ok
23:30:54.0125 0400  [ ED761D453856F795A7FE056E42C36365 ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
23:30:54.0250 0400  redbook - ok
23:30:54.0281 0400  [ 0E97EC96D6942CEEC2D188CC2EB69A01 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
23:30:54.0406 0400  RemoteAccess - ok
23:30:54.0453 0400  [ E4CD1F3D84E1C2CA0B8CF7501E201593 ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
23:30:54.0578 0400  RemoteRegistry - ok
23:30:54.0625 0400  [ B60F58F175DE20A6739194E85B035178 ] rpcapd          C:\Programme\WinPcap\rpcapd.exe
23:30:54.0640 0400  rpcapd - ok
23:30:54.0656 0400  [ 2A02E21867497DF20B8FC95631395169 ] RpcLocator      C:\WINDOWS\System32\locator.exe
23:30:54.0796 0400  RpcLocator - ok
23:30:54.0812 0400  [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] RpcSs           C:\WINDOWS\system32\rpcss.dll
23:30:54.0843 0400  RpcSs - ok
23:30:54.0890 0400  [ 4BDD71B4B521521499DFD14735C4F398 ] RSVP            C:\WINDOWS\System32\rsvp.exe
23:30:55.0031 0400  RSVP - ok
23:30:55.0062 0400  [ AFB8261B56CBA0D86AEB6DF682AF9785 ] SamSs           C:\WINDOWS\system32\lsass.exe
23:30:55.0171 0400  SamSs - ok
23:30:55.0203 0400  [ DCEC079FAD95D36C8DD5CB6D779DFE32 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
23:30:55.0343 0400  SCardSvr - ok
23:30:55.0390 0400  [ A050194A44D7FA8D7186ED2F4E8367AE ] Schedule        C:\WINDOWS\system32\schedsvc.dll
23:30:55.0531 0400  Schedule - ok
23:30:55.0531 0400  [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
23:30:55.0656 0400  Secdrv - ok
23:30:55.0687 0400  [ BEE4CFD1D48C23B44CF4B974B0B79B2B ] seclogon        C:\WINDOWS\System32\seclogon.dll
23:30:55.0812 0400  seclogon - ok
23:30:55.0843 0400  [ 2AAC9B6ED9EDDFFB721D6452E34D67E3 ] SENS            C:\WINDOWS\system32\sens.dll
23:30:55.0968 0400  SENS - ok
23:30:55.0984 0400  [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum         C:\WINDOWS\system32\DRIVERS\serenum.sys
23:30:56.0125 0400  serenum - ok
23:30:56.0125 0400  [ CF24EB4F0412C82BCD1F4F35A025E31D ] Serial          C:\WINDOWS\system32\DRIVERS\serial.sys
23:30:56.0250 0400  Serial - ok
23:30:56.0312 0400  [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
23:30:56.0421 0400  Sfloppy - ok
23:30:56.0468 0400  [ CAD058D5F8B889A87CA3EB3CF624DCEF ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
23:30:56.0640 0400  SharedAccess - ok
23:30:56.0656 0400  [ 2DB7D303C36DDD055215052F118E8E75 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
23:30:56.0671 0400  ShellHWDetection - ok
23:30:56.0718 0400  [ 4AABD176758CDBCFB834A72BD01CD02F ] silabenm        C:\WINDOWS\system32\DRIVERS\silabenm.sys
23:30:56.0734 0400  silabenm ( UnsignedFile.Multi.Generic ) - warning
23:30:56.0734 0400  silabenm - detected UnsignedFile.Multi.Generic (1)
23:30:56.0765 0400  [ F5460535EDE7ADEB0721BC56587554EA ] silabser        C:\WINDOWS\system32\DRIVERS\silabser.sys
23:30:56.0796 0400  silabser ( UnsignedFile.Multi.Generic ) - warning
23:30:56.0796 0400  silabser - detected UnsignedFile.Multi.Generic (1)
23:30:56.0796 0400  Simbad - ok
23:30:56.0828 0400  [ 1FFC44D6787EC1EA9A2B1440A90FA5C1 ] SLIP            C:\WINDOWS\system32\DRIVERS\SLIP.sys
23:30:56.0859 0400  SLIP - ok
23:30:56.0875 0400  Sparrow - ok
23:30:56.0921 0400  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
23:30:57.0046 0400  splitter - ok
23:30:57.0078 0400  [ 60784F891563FB1B767F70117FC2428F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
23:30:57.0109 0400  Spooler - ok
23:30:57.0140 0400  [ 50FA898F8C032796D3B1B9951BB5A90F ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
23:30:57.0265 0400  sr - ok
23:30:57.0296 0400  [ FE77A85495065F3AD59C5C65B6C54182 ] srservice       C:\WINDOWS\System32\srsvc.dll
23:30:57.0421 0400  srservice - ok
23:30:57.0468 0400  [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
23:30:57.0500 0400  Srv - ok
23:30:57.0546 0400  [ 64E44ACD8C238FCBBB78F0BA4BDC4B05 ] ssadbus         C:\WINDOWS\system32\DRIVERS\ssadbus.sys
23:30:57.0578 0400  ssadbus - ok
23:30:57.0609 0400  [ BB2C84A15C765DA89FD832B0E73F26CE ] ssadmdfl        C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys
23:30:57.0625 0400  ssadmdfl - ok
23:30:57.0640 0400  [ 6D0D132DDC6F43EDA00DCED6D8B1CA31 ] ssadmdm         C:\WINDOWS\system32\DRIVERS\ssadmdm.sys
23:30:57.0671 0400  ssadmdm - ok
23:30:57.0703 0400  [ 1A5A397BC459F346AB56492B61EF79F6 ] ssadserd        C:\WINDOWS\system32\DRIVERS\ssadserd.sys
23:30:57.0750 0400  ssadserd - ok
23:30:57.0765 0400  [ 4DF5B05DFAEC29E13E1ED6F6EE12C500 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
23:30:57.0906 0400  SSDPSRV - ok
23:30:57.0953 0400  [ E57B778208C783D8DEBAB320C16A1B82 ] StarOpen        C:\WINDOWS\system32\drivers\StarOpen.sys
23:30:57.0953 0400  StarOpen ( UnsignedFile.Multi.Generic ) - warning
23:30:57.0953 0400  StarOpen - detected UnsignedFile.Multi.Generic (1)
23:30:58.0000 0400  [ BC2C5985611C5356B24AEB370953DED9 ] stisvc          C:\WINDOWS\system32\wiaservc.dll
23:30:58.0156 0400  stisvc - ok
23:30:58.0187 0400  [ A9F9FD0212E572B84EDB9EB661F6BC04 ] streamip        C:\WINDOWS\system32\DRIVERS\StreamIP.sys
23:30:58.0203 0400  streamip - ok
23:30:58.0250 0400  [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
23:30:58.0359 0400  swenum - ok
23:30:58.0375 0400  [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
23:30:58.0500 0400  swmidi - ok
23:30:58.0515 0400  SwPrv - ok
23:30:58.0531 0400  symc810 - ok
23:30:58.0546 0400  symc8xx - ok
23:30:58.0546 0400  sym_hi - ok
23:30:58.0562 0400  sym_u3 - ok
23:30:58.0625 0400  [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
23:30:58.0750 0400  sysaudio - ok
23:30:58.0781 0400  [ 2903FFFA2523926D6219428040DCE6B9 ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
23:30:58.0906 0400  SysmonLog - ok
23:30:58.0937 0400  [ 05903CAC4B98908D55EA5774775B382E ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
23:30:59.0078 0400  TapiSrv - ok
23:30:59.0125 0400  [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
23:30:59.0187 0400  Tcpip - ok
23:30:59.0234 0400  [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
23:30:59.0343 0400  TDPIPE - ok
23:30:59.0375 0400  [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
23:30:59.0500 0400  TDTCP - ok
23:30:59.0515 0400  [ 88155247177638048422893737429D9E ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
23:30:59.0625 0400  TermDD - ok
23:30:59.0656 0400  [ B7DE02C863D8F5A005A7BF375375A6A4 ] TermService     C:\WINDOWS\System32\termsrv.dll
23:30:59.0812 0400  TermService - ok
23:30:59.0828 0400  [ 2DB7D303C36DDD055215052F118E8E75 ] Themes          C:\WINDOWS\System32\shsvcs.dll
23:30:59.0859 0400  Themes - ok
23:30:59.0906 0400  [ 03681A1CE77F51586903869A5AB1DEAB ] TlntSvr         C:\WINDOWS\System32\tlntsvr.exe
23:31:00.0046 0400  TlntSvr - ok
23:31:00.0046 0400  TosIde - ok
23:31:00.0078 0400  [ 626504572B175867F30F3215C04B3E2F ] TrkWks          C:\WINDOWS\system32\trkwks.dll
23:31:00.0203 0400  TrkWks - ok
23:31:00.0250 0400  [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
23:31:00.0359 0400  Udfs - ok
23:31:00.0359 0400  ultra - ok
23:31:00.0406 0400  [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
23:31:00.0562 0400  Update - ok
23:31:00.0578 0400  [ 1DFD8975D8C89214B98D9387C1125B49 ] upnphost        C:\WINDOWS\System32\upnphost.dll
23:31:00.0718 0400  upnphost - ok
23:31:00.0734 0400  [ 9B11E6118958E63E1FEF129466E2BDA7 ] UPS             C:\WINDOWS\System32\ups.exe
23:31:00.0859 0400  UPS - ok
23:31:00.0890 0400  [ E919708DB44ED8543A7C017953148330 ] usbaudio        C:\WINDOWS\system32\drivers\usbaudio.sys
23:31:01.0031 0400  usbaudio - ok
23:31:01.0046 0400  [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
23:31:01.0156 0400  usbccgp - ok
23:31:01.0187 0400  [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
23:31:01.0296 0400  usbehci - ok
23:31:01.0312 0400  [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
23:31:01.0437 0400  usbhub - ok
23:31:01.0453 0400  [ A717C8721046828520C9EDF31288FC00 ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
23:31:01.0593 0400  usbprint - ok
23:31:01.0640 0400  [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
23:31:01.0765 0400  usbscan - ok
23:31:01.0781 0400  [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
23:31:01.0906 0400  USBSTOR - ok
23:31:01.0953 0400  [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci         C:\WINDOWS\system32\DRIVERS\usbuhci.sys
23:31:02.0062 0400  usbuhci - ok
23:31:02.0109 0400  [ 63BBFCA7F390F4C49ED4B96BFB1633E0 ] usbvideo        C:\WINDOWS\system32\Drivers\usbvideo.sys
23:31:02.0234 0400  usbvideo - ok
23:31:02.0265 0400  [ 8AFFFDA081CFF3057391FEDBBB483601 ] UTSCSI          C:\WINDOWS\system32\UTSCSI.EXE
23:31:02.0296 0400  UTSCSI ( UnsignedFile.Multi.Generic ) - warning
23:31:02.0296 0400  UTSCSI - detected UnsignedFile.Multi.Generic (1)
23:31:02.0343 0400  [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
23:31:02.0453 0400  VgaSave - ok
23:31:02.0468 0400  ViaIde - ok
23:31:02.0500 0400  [ A5A712F4E880874A477AF790B5186E1D ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
23:31:02.0609 0400  VolSnap - ok
23:31:02.0640 0400  [ 68F106273BE29E7B7EF8266977268E78 ] VSS             C:\WINDOWS\System32\vssvc.exe
23:31:02.0781 0400  VSS - ok
23:31:02.0812 0400  [ 7B353059E665F8B7AD2BBEAEF597CF45 ] W32Time         C:\WINDOWS\System32\w32time.dll
23:31:02.0937 0400  W32Time - ok
23:31:02.0984 0400  [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
23:31:03.0109 0400  Wanarp - ok
23:31:03.0156 0400  [ BBCFEAB7E871CDDAC2D397EE7FA91FDC ] Wdf01000        C:\WINDOWS\system32\Drivers\wdf01000.sys
23:31:03.0187 0400  Wdf01000 - ok
23:31:03.0203 0400  WDICA - ok
23:31:03.0234 0400  [ 6768ACF64B18196494413695F0C3A00F ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
23:31:03.0359 0400  wdmaud - ok
23:31:03.0390 0400  [ 81727C9873E3905A2FFC1EBD07265002 ] WebClient       C:\WINDOWS\System32\webclnt.dll
23:31:03.0515 0400  WebClient - ok
23:31:03.0609 0400  [ 6F3F3973D97714CC5F906A19FE883729 ] winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
23:31:03.0718 0400  winmgmt - ok
23:31:03.0781 0400  [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN        C:\WINDOWS\system32\MsPMSNSv.dll
23:31:03.0812 0400  WmdmPmSN - ok
23:31:03.0843 0400  [ FFA4D901D46D07A5BAB2D8307FBB51A6 ] Wmi             C:\WINDOWS\System32\advapi32.dll
23:31:03.0906 0400  Wmi - ok
23:31:03.0937 0400  [ 93908111BA57A6E60EC2FA2DE202105C ] WmiApSrv        C:\WINDOWS\System32\wbem\wmiapsrv.exe
23:31:04.0062 0400  WmiApSrv - ok
23:31:04.0078 0400  [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb          C:\WINDOWS\system32\DRIVERS\wpdusb.sys
23:31:04.0093 0400  WpdUsb - ok
23:31:04.0187 0400  [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
23:31:04.0218 0400  WPFFontCache_v0400 - ok
23:31:04.0250 0400  [ 300B3E84FAF1A5C1F791C159BA28035D ] wscsvc          C:\WINDOWS\system32\wscsvc.dll
23:31:04.0406 0400  wscsvc - ok
23:31:04.0421 0400  [ 233CDD1C06942115802EB7CE6669E099 ] WSTCODEC        C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
23:31:04.0437 0400  WSTCODEC - ok
23:31:04.0453 0400  [ 7B4FE05202AA6BF9F4DFD0E6A0D8A085 ] wuauserv        C:\WINDOWS\system32\wuauserv.dll
23:31:04.0578 0400  wuauserv - ok
23:31:04.0625 0400  [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf          C:\WINDOWS\system32\DRIVERS\WudfPf.sys
23:31:04.0640 0400  WudfPf - ok
23:31:04.0656 0400  [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd          C:\WINDOWS\system32\DRIVERS\wudfrd.sys
23:31:04.0671 0400  WudfRd - ok
23:31:04.0703 0400  [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc         C:\WINDOWS\System32\WUDFSvc.dll
23:31:04.0750 0400  WudfSvc - ok
23:31:04.0796 0400  [ C4F109C005F6725162D2D12CA751E4A7 ] WZCSVC          C:\WINDOWS\System32\wzcsvc.dll
23:31:04.0968 0400  WZCSVC - ok
23:31:05.0000 0400  [ 0ADA34871A2E1CD2CAAFED1237A47750 ] xmlprov         C:\WINDOWS\System32\xmlprov.dll
23:31:05.0156 0400  xmlprov - ok
23:31:05.0156 0400  ================ Scan global ===============================
23:31:05.0187 0400  [ 2C60091CA5F67C3032EAB3B30390C27F ] C:\WINDOWS\system32\basesrv.dll
23:31:05.0250 0400  [ A28CE25B59C90E12743001A1F2AE3613 ] C:\WINDOWS\system32\winsrv.dll
23:31:05.0265 0400  [ A28CE25B59C90E12743001A1F2AE3613 ] C:\WINDOWS\system32\winsrv.dll
23:31:05.0296 0400  [ A3EDBE9053889FB24AB22492472B39DC ] C:\WINDOWS\system32\services.exe
23:31:05.0312 0400  [Global] - ok
23:31:05.0312 0400  ================ Scan MBR ==================================
23:31:05.0328 0400  [ 72B8CE41AF0DE751C946802B3ED844B4 ] \Device\Harddisk0\DR0
23:31:05.0531 0400  \Device\Harddisk0\DR0 ( TDSS File System ) - warning
23:31:05.0531 0400  \Device\Harddisk0\DR0 - detected TDSS File System (1)
23:31:05.0546 0400  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR2
23:31:06.0093 0400  \Device\Harddisk1\DR2 - ok
23:31:06.0093 0400  ================ Scan VBR ==================================
23:31:06.0093 0400  [ D964B52BD354518261E5B697C98E79D1 ] \Device\Harddisk0\DR0\Partition1
23:31:06.0109 0400  \Device\Harddisk0\DR0\Partition1 - ok
23:31:06.0125 0400  [ F17264F44C7DBECAC0FD14C51ED6F082 ] \Device\Harddisk1\DR2\Partition1
23:31:06.0125 0400  \Device\Harddisk1\DR2\Partition1 - ok
23:31:06.0125 0400  ============================================================
23:31:06.0125 0400  Scan finished
23:31:06.0125 0400  ============================================================
23:31:06.0234 1652  Detected object count: 8
23:31:06.0234 1652  Actual detected object count: 8
23:32:16.0843 1652  cdrbsdrv ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0843 1652  cdrbsdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  IOPort ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  IOPort ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  silabenm ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  silabenm ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  silabser ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  silabser ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  StarOpen ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  StarOpen ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  UTSCSI ( UnsignedFile.Multi.Generic ) - skipped by user
23:32:16.0859 1652  UTSCSI ( UnsignedFile.Multi.Generic ) - User select action: Skip 
23:32:16.0859 1652  \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
23:32:16.0859 1652  \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
         

Antwort

Themen zu Trojan.Generic.6760809 im Receycler und System Volume Information
7-zip, ad-aware, adobe, antivirus, application/pdf:, avast, bho, einstellungen, error, explorer, firefox, firewall, flash player, ftp, google, helper, icreinstall, index, intranet, logfile, mozilla, panda usb vaccine, pdfforge toolbar, plug-in, prozess, registry, rundll, security, software, system, temp, tracker, trojan.generic., udp, virus, virus total, win32/installcore.d, windows internet




Ähnliche Themen: Trojan.Generic.6760809 im Receycler und System Volume Information


  1. Trojan.Generic.6760809 im Receycler und System Volume Information
    Mülltonne - 10.11.2012 (1)
  2. Trojan.Agent/Gen-Kazy[Ico] in C:\SYSTEM VOLUME INFORMATION\_RESTORE{6037B4AE-60D5-4ABD-B660-DFA1EAAD6D52}\RP441\A0130476.EXE gefunden
    Log-Analyse und Auswertung - 14.10.2012 (28)
  3. Trojan.Generic.KD.150772 (Engine-A) in D:\System Volume Information...
    Plagegeister aller Art und deren Bekämpfung - 10.03.2011 (3)
  4. system volume information
    Plagegeister aller Art und deren Bekämpfung - 13.06.2009 (6)
  5. BackDoor.Generic6.FUB//Generic.HAA in System Volume Information
    Plagegeister aller Art und deren Bekämpfung - 11.03.2009 (1)
  6. "Trojan.CDur" im System Volume Information
    Plagegeister aller Art und deren Bekämpfung - 03.03.2009 (4)
  7. Trojan.Win32.Gerneric in System Volume Information?
    Log-Analyse und Auswertung - 25.12.2008 (2)
  8. System Volume Information / Win32:Trojan-gen
    Plagegeister aller Art und deren Bekämpfung - 05.11.2008 (3)
  9. Hilfe!WORM/generic in D://System Volume Information (Mit HJT LOG-FILE!)
    Log-Analyse und Auswertung - 16.08.2008 (8)
  10. Win32:Trojan gen (other) System Volume Information
    Mülltonne - 21.02.2008 (0)
  11. System Volume Information
    Alles rund um Windows - 14.02.2008 (32)
  12. System Volume Information
    Log-Analyse und Auswertung - 25.07.2007 (1)
  13. System Volume Information
    Alles rund um Windows - 14.07.2007 (1)
  14. System Volume Information
    Alles rund um Windows - 03.06.2006 (1)
  15. System Volume Information
    Alles rund um Windows - 09.01.2006 (11)
  16. System volume information
    Alles rund um Windows - 13.02.2005 (1)
  17. System Volume Information
    Plagegeister aller Art und deren Bekämpfung - 02.01.2005 (4)

Zum Thema Trojan.Generic.6760809 im Receycler und System Volume Information - Code: Alles auswählen Aufklappen ATTFilter aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software Run date: 2012-11-12 23:21:05 ----------------------------- 23:21:05.265 OS Version: Windows 5.1.2600 Service Pack 3 23:21:05.265 Number of processors: 1 - Trojan.Generic.6760809 im Receycler und System Volume Information...
Archiv
Du betrachtest: Trojan.Generic.6760809 im Receycler und System Volume Information auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.