|
Plagegeister aller Art und deren Bekämpfung: Firefox sowie Internet Explorer starten nicht mehrWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
03.03.2013, 15:24 | #1 |
| Firefox sowie Internet Explorer starten nicht mehr Hallo Trojaner Board Team. Also ich habe seit paar Tagen das Problem das ich in Firefox nur noch im Abgesicherten Modus reinkomme. (Neuinstallationen oder Zurücksetzungen haben nicht geholfen) Außerdem wirkt der PC deutlich langsamer (ich kann mich aber auch irren) System: Windows 7 Antivirus: Bitdefender 2013 (hat nichts gefunden) Malwarebytes hat auch nichts gefunden Ich hab mal mit deffoger, OLT und GMER außgeführt und die files als Anhang eingefügt. Gmer konnte nicht auf "C:\Windows\system32\config\system" und auf "C:\Users\Johannes\ntuser.dat" zugreifen Ich hoffe ihr könnt mir weiterhelfen |
03.03.2013, 18:14 | #2 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr Hi,
__________________Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ |
03.03.2013, 18:52 | #3 |
| Firefox sowie Internet Explorer starten nicht mehr 18:45:36.0034 7144 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
__________________18:45:36.0034 7144 UEFI system 18:45:38.0035 7144 ============================================================ 18:45:38.0035 7144 Current date / time: 2013/03/03 18:45:38.0035 18:45:38.0035 7144 SystemInfo: 18:45:38.0035 7144 18:45:38.0035 7144 OS Version: 6.1.7601 ServicePack: 1.0 18:45:38.0035 7144 Product type: Workstation 18:45:38.0035 7144 ComputerName: JOHANNES-PC 18:45:38.0035 7144 UserName: Johannes 18:45:38.0035 7144 Windows directory: C:\Windows 18:45:38.0035 7144 System windows directory: C:\Windows 18:45:38.0035 7144 Running under WOW64 18:45:38.0035 7144 Processor architecture: Intel x64 18:45:38.0035 7144 Number of processors: 4 18:45:38.0035 7144 Page size: 0x1000 18:45:38.0035 7144 Boot type: Normal boot 18:45:38.0035 7144 ============================================================ 18:45:38.0282 7144 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:45:38.0285 7144 ============================================================ 18:45:38.0285 7144 \Device\Harddisk0\DR0: 18:45:38.0285 7144 GPT partitions: 18:45:38.0285 7144 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {3FBA2C08-410E-4370-8B43-D2E09BE3F769}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000 18:45:38.0285 7144 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {8511E420-EEBD-4E1E-8CE7-D578AFE37852}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x40000 18:45:38.0285 7144 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {8A06FA66-45E7-4A9D-B49C-C27F16BFB737}, Name: Basic data partition, StartLBA 0x72800, BlocksNum 0x129A7000 18:45:38.0285 7144 MBR partitions: 18:45:38.0285 7144 ============================================================ 18:45:38.0307 7144 C: <-> \Device\Harddisk0\DR0\Partition3 18:45:38.0307 7144 ============================================================ 18:45:38.0307 7144 Initialize success 18:45:38.0307 7144 ============================================================ 18:46:18.0901 7036 ============================================================ 18:46:18.0901 7036 Scan started 18:46:18.0901 7036 Mode: Manual; SigCheck; TDLFS; 18:46:18.0901 7036 ============================================================ 18:46:19.0650 7036 ================ Scan system memory ======================== 18:46:19.0650 7036 System memory - ok 18:46:19.0650 7036 ================ Scan services ============================= 18:46:19.0790 7036 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:46:19.0884 7036 1394ohci - ok 18:46:19.0899 7036 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:46:19.0915 7036 ACPI - ok 18:46:19.0931 7036 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:46:20.0024 7036 AcpiPmi - ok 18:46:20.0211 7036 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:46:20.0227 7036 AdobeARMservice - ok 18:46:20.0321 7036 [ 9942DC4CC265CDA00486504444EF521D ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 18:46:20.0336 7036 AdobeFlashPlayerUpdateSvc - ok 18:46:20.0383 7036 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 18:46:20.0414 7036 adp94xx - ok 18:46:20.0445 7036 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 18:46:20.0445 7036 adpahci - ok 18:46:20.0461 7036 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 18:46:20.0477 7036 adpu320 - ok 18:46:20.0492 7036 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:46:20.0617 7036 AeLookupSvc - ok 18:46:20.0664 7036 [ 0517E1670A58213E3F206066CD209273 ] AF15BDA C:\Windows\system32\DRIVERS\AF15BDA.sys 18:46:20.0726 7036 AF15BDA - ok 18:46:20.0773 7036 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys 18:46:20.0851 7036 AFD - ok 18:46:20.0882 7036 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 18:46:20.0882 7036 agp440 - ok 18:46:20.0913 7036 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 18:46:20.0976 7036 ALG - ok 18:46:21.0023 7036 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 18:46:21.0023 7036 aliide - ok 18:46:21.0054 7036 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 18:46:21.0054 7036 amdide - ok 18:46:21.0085 7036 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 18:46:21.0147 7036 AmdK8 - ok 18:46:21.0179 7036 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 18:46:21.0210 7036 AmdPPM - ok 18:46:21.0257 7036 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:46:21.0257 7036 amdsata - ok 18:46:21.0272 7036 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 18:46:21.0288 7036 amdsbs - ok 18:46:21.0319 7036 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:46:21.0335 7036 amdxata - ok 18:46:21.0366 7036 AntiLog32 - ok 18:46:21.0413 7036 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 18:46:21.0444 7036 AppID - ok 18:46:21.0475 7036 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:46:21.0506 7036 AppIDSvc - ok 18:46:21.0553 7036 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll 18:46:21.0584 7036 Appinfo - ok 18:46:21.0678 7036 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 18:46:21.0678 7036 Apple Mobile Device - ok 18:46:21.0709 7036 [ BA957E7ACD2B44FA3B01FAA64F6A9060 ] AppleCharger C:\Windows\system32\DRIVERS\AppleCharger.sys 18:46:21.0709 7036 AppleCharger - ok 18:46:21.0740 7036 [ 95EF7247C50C7241FDAE39A9B3AFF4AE ] AppleChargerSrv C:\Windows\system32\AppleChargerSrv.exe 18:46:21.0756 7036 AppleChargerSrv - ok 18:46:21.0787 7036 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 18:46:21.0787 7036 arc - ok 18:46:21.0803 7036 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 18:46:21.0818 7036 arcsas - ok 18:46:21.0834 7036 [ 4B720CC508B4FB999A7BF0E6D84F73E1 ] ASDR C:\Windows\SysWOW64\ASDR.exe 18:46:21.0865 7036 ASDR ( UnsignedFile.Multi.Generic ) - warning 18:46:21.0865 7036 ASDR - detected UnsignedFile.Multi.Generic (1) 18:46:21.0990 7036 [ 108FB6DDB69E537A2EA53F425363FAE5 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 18:46:21.0990 7036 aspnet_state - ok 18:46:22.0005 7036 [ A4398A8914C32F18EC2AB562CBA3CAAF ] asusgsb C:\Windows\system32\drivers\asusgsb.sys 18:46:22.0052 7036 asusgsb - ok 18:46:22.0083 7036 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:46:22.0115 7036 AsyncMac - ok 18:46:22.0177 7036 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 18:46:22.0177 7036 atapi - ok 18:46:22.0193 7036 [ FB4187C282CB467E5E606913A1FA79A3 ] atkdisplf C:\Windows\system32\drivers\ATKDispLowFilter.sys 18:46:22.0239 7036 atkdisplf - ok 18:46:22.0255 7036 [ 86D873FD396FA6708A99A1BDF104D120 ] ATKFUSService C:\Windows\system32\ATKFUSService.exe 18:46:22.0271 7036 ATKFUSService ( UnsignedFile.Multi.Generic ) - warning 18:46:22.0271 7036 ATKFUSService - detected UnsignedFile.Multi.Generic (1) 18:46:22.0317 7036 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:46:22.0364 7036 AudioEndpointBuilder - ok 18:46:22.0380 7036 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:46:22.0395 7036 AudioSrv - ok 18:46:22.0427 7036 [ 84E8D636FAD30B14F279523DDFCD83BE ] avc3 C:\Windows\system32\DRIVERS\avc3.sys 18:46:22.0427 7036 avc3 - ok 18:46:22.0458 7036 [ 3B9549FEF98AB1768A1D6A919F355B70 ] avchv C:\Windows\system32\DRIVERS\avchv.sys 18:46:22.0473 7036 avchv - ok 18:46:22.0520 7036 [ B725A236D9206A308BCA0943F6506B8E ] avckf C:\Windows\system32\DRIVERS\avckf.sys 18:46:22.0520 7036 avckf - ok 18:46:22.0551 7036 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:46:22.0645 7036 AxInstSV - ok 18:46:22.0676 7036 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 18:46:22.0739 7036 b06bdrv - ok 18:46:22.0770 7036 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:46:22.0801 7036 b57nd60a - ok 18:46:22.0957 7036 [ 6FBC1C64CEF637AB12F253FB087C8D4B ] BdDesktopParental C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe 18:46:22.0973 7036 BdDesktopParental - ok 18:46:22.0988 7036 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 18:46:23.0035 7036 BDESVC - ok 18:46:23.0113 7036 [ 9920B815BC3B3F2D69071842DD18D422 ] BdfNdisf c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys 18:46:23.0113 7036 BdfNdisf - ok 18:46:23.0144 7036 [ 4CE4B0098FC315C237FA8867F07886C4 ] bdfwfpf C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys 18:46:23.0160 7036 bdfwfpf - ok 18:46:23.0175 7036 [ E311541A584A29C0D91DD73730B1DCBE ] BDSandBox C:\Windows\system32\drivers\bdsandbox.sys 18:46:23.0191 7036 BDSandBox - ok 18:46:23.0222 7036 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 18:46:23.0269 7036 Beep - ok 18:46:23.0331 7036 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll 18:46:23.0363 7036 BFE - ok 18:46:23.0394 7036 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll 18:46:23.0456 7036 BITS - ok 18:46:23.0487 7036 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:46:23.0519 7036 blbdrive - ok 18:46:23.0565 7036 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 18:46:23.0565 7036 Bonjour Service - ok 18:46:23.0597 7036 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:46:23.0643 7036 bowser - ok 18:46:23.0659 7036 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 18:46:23.0753 7036 BrFiltLo - ok 18:46:23.0768 7036 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 18:46:23.0784 7036 BrFiltUp - ok 18:46:23.0815 7036 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 18:46:23.0893 7036 Browser - ok 18:46:23.0909 7036 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 18:46:23.0971 7036 Brserid - ok 18:46:23.0987 7036 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:46:24.0018 7036 BrSerWdm - ok 18:46:24.0033 7036 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:46:24.0065 7036 BrUsbMdm - ok 18:46:24.0096 7036 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 18:46:24.0111 7036 BrUsbSer - ok 18:46:24.0127 7036 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 18:46:24.0158 7036 BTHMODEM - ok 18:46:24.0205 7036 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 18:46:24.0252 7036 bthserv - ok 18:46:24.0283 7036 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:46:24.0314 7036 cdfs - ok 18:46:24.0361 7036 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys 18:46:24.0392 7036 cdrom - ok 18:46:24.0439 7036 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 18:46:24.0470 7036 CertPropSvc - ok 18:46:24.0517 7036 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 18:46:24.0548 7036 circlass - ok 18:46:24.0579 7036 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 18:46:24.0595 7036 CLFS - ok 18:46:24.0642 7036 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:46:24.0642 7036 clr_optimization_v2.0.50727_32 - ok 18:46:24.0689 7036 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:46:24.0689 7036 clr_optimization_v2.0.50727_64 - ok 18:46:24.0751 7036 [ 6D7C8A951AF6AD6835C029B3CB88D333 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:46:24.0751 7036 clr_optimization_v4.0.30319_32 - ok 18:46:24.0767 7036 [ 86329C35FF23CFEF0FB6C0023BA06BCE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 18:46:24.0767 7036 clr_optimization_v4.0.30319_64 - ok 18:46:24.0798 7036 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 18:46:24.0829 7036 CmBatt - ok 18:46:24.0860 7036 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:46:24.0860 7036 cmdide - ok 18:46:24.0891 7036 [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG C:\Windows\system32\Drivers\cng.sys 18:46:24.0907 7036 CNG - ok 18:46:24.0923 7036 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 18:46:24.0938 7036 Compbatt - ok 18:46:24.0969 7036 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 18:46:25.0001 7036 CompositeBus - ok 18:46:25.0001 7036 COMSysApp - ok 18:46:25.0016 7036 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 18:46:25.0032 7036 crcdisk - ok 18:46:25.0063 7036 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:46:25.0110 7036 CryptSvc - ok 18:46:25.0141 7036 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:46:25.0172 7036 DcomLaunch - ok 18:46:25.0203 7036 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 18:46:25.0250 7036 defragsvc - ok 18:46:25.0297 7036 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:46:25.0328 7036 DfsC - ok 18:46:25.0391 7036 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 18:46:25.0437 7036 Dhcp - ok 18:46:25.0469 7036 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 18:46:25.0484 7036 discache - ok 18:46:25.0500 7036 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 18:46:25.0515 7036 Disk - ok 18:46:25.0531 7036 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:46:25.0578 7036 Dnscache - ok 18:46:25.0593 7036 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 18:46:25.0640 7036 dot3svc - ok 18:46:25.0671 7036 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 18:46:25.0703 7036 DPS - ok 18:46:25.0765 7036 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:46:25.0781 7036 drmkaud - ok 18:46:25.0843 7036 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys 18:46:25.0843 7036 dtsoftbus01 - ok 18:46:25.0874 7036 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:46:25.0890 7036 DXGKrnl - ok 18:46:25.0921 7036 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 18:46:25.0952 7036 EapHost - ok 18:46:26.0030 7036 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 18:46:26.0124 7036 ebdrv - ok 18:46:26.0155 7036 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe 18:46:26.0202 7036 EFS - ok 18:46:26.0264 7036 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 18:46:26.0342 7036 ehRecvr - ok 18:46:26.0389 7036 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 18:46:26.0436 7036 ehSched - ok 18:46:26.0451 7036 [ 343ADA10D948DB29251F2D9C809AF204 ] EIO64 C:\Windows\system32\DRIVERS\EIO64.sys 18:46:26.0514 7036 EIO64 - ok 18:46:26.0545 7036 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 18:46:26.0561 7036 elxstor - ok 18:46:26.0592 7036 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:46:26.0607 7036 ErrDev - ok 18:46:26.0654 7036 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 18:46:26.0701 7036 EventSystem - ok 18:46:26.0732 7036 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 18:46:26.0763 7036 exfat - ok 18:46:26.0795 7036 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:46:26.0826 7036 fastfat - ok 18:46:26.0873 7036 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 18:46:26.0919 7036 Fax - ok 18:46:26.0935 7036 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 18:46:26.0966 7036 fdc - ok 18:46:26.0997 7036 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 18:46:27.0044 7036 fdPHost - ok 18:46:27.0060 7036 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 18:46:27.0091 7036 FDResPub - ok 18:46:27.0138 7036 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:46:27.0153 7036 FileInfo - ok 18:46:27.0169 7036 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:46:27.0216 7036 Filetrace - ok 18:46:27.0294 7036 [ 227846995AFEEFA70D328BF5334A86A5 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 18:46:27.0356 7036 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - warning 18:46:27.0356 7036 FLEXnet Licensing Service - detected UnsignedFile.Multi.Generic (1) 18:46:27.0372 7036 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 18:46:27.0387 7036 flpydisk - ok 18:46:27.0403 7036 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:46:27.0419 7036 FltMgr - ok 18:46:27.0465 7036 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll 18:46:27.0512 7036 FontCache - ok 18:46:27.0575 7036 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:46:27.0575 7036 FontCache3.0.0.0 - ok 18:46:27.0590 7036 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:46:27.0606 7036 FsDepends - ok 18:46:27.0621 7036 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:46:27.0637 7036 Fs_Rec - ok 18:46:27.0653 7036 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:46:27.0653 7036 fvevol - ok 18:46:27.0668 7036 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 18:46:27.0684 7036 gagp30kx - ok 18:46:27.0715 7036 [ 7907E14F9BCF3A4689C9A74A1A873CB6 ] gdrv C:\Windows\gdrv.sys 18:46:27.0715 7036 gdrv - ok 18:46:27.0762 7036 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 18:46:27.0762 7036 GEARAspiWDM - ok 18:46:27.0793 7036 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 18:46:27.0855 7036 gpsvc - ok 18:46:27.0933 7036 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:46:27.0933 7036 gupdate - ok 18:46:27.0949 7036 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:46:27.0965 7036 gupdatem - ok 18:46:27.0996 7036 [ BF2763FEA9704B1D9AA2C7719423251A ] gzflt C:\Windows\system32\DRIVERS\gzflt.sys 18:46:28.0011 7036 gzflt - ok 18:46:28.0027 7036 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:46:28.0074 7036 hcw85cir - ok 18:46:28.0105 7036 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:46:28.0121 7036 HdAudAddService - ok 18:46:28.0136 7036 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 18:46:28.0167 7036 HDAudBus - ok 18:46:28.0199 7036 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 18:46:28.0230 7036 HidBatt - ok 18:46:28.0245 7036 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 18:46:28.0277 7036 HidBth - ok 18:46:28.0308 7036 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 18:46:28.0339 7036 HidIr - ok 18:46:28.0370 7036 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 18:46:28.0401 7036 hidserv - ok 18:46:28.0448 7036 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 18:46:28.0448 7036 HidUsb - ok 18:46:28.0464 7036 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:46:28.0495 7036 hkmsvc - ok 18:46:28.0526 7036 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:46:28.0589 7036 HomeGroupListener - ok 18:46:28.0604 7036 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:46:28.0635 7036 HomeGroupProvider - ok 18:46:28.0682 7036 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:46:28.0682 7036 HpSAMD - ok 18:46:28.0729 7036 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:46:28.0776 7036 HTTP - ok 18:46:28.0807 7036 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:46:28.0807 7036 hwpolicy - ok 18:46:28.0838 7036 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 18:46:28.0838 7036 i8042prt - ok 18:46:28.0869 7036 [ C224331A54571C8C9162F7714400BBBD ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 18:46:28.0885 7036 iaStor - ok 18:46:28.0932 7036 [ 7D4B9A48430ED57ACA6373B71D5904CA ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 18:46:28.0947 7036 IAStorDataMgrSvc - ok 18:46:28.0979 7036 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:46:28.0994 7036 iaStorV - ok 18:46:29.0025 7036 [ 33D4D4A24791587E83F7EE05A446FB7E ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe 18:46:29.0041 7036 ICCS ( UnsignedFile.Multi.Generic ) - warning 18:46:29.0041 7036 ICCS - detected UnsignedFile.Multi.Generic (1) 18:46:29.0088 7036 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 18:46:29.0119 7036 IDriverT ( UnsignedFile.Multi.Generic ) - warning 18:46:29.0119 7036 IDriverT - detected UnsignedFile.Multi.Generic (1) 18:46:29.0181 7036 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:46:29.0213 7036 idsvc - ok 18:46:29.0228 7036 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 18:46:29.0244 7036 iirsp - ok 18:46:29.0259 7036 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll 18:46:29.0322 7036 IKEEXT - ok 18:46:29.0384 7036 [ 2D66067C7A8A0112156BCD1C0BAA7042 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 18:46:29.0400 7036 Intel(R) Capability Licensing Service Interface - ok 18:46:29.0415 7036 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 18:46:29.0431 7036 intelide - ok 18:46:29.0462 7036 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 18:46:29.0493 7036 intelppm - ok 18:46:29.0540 7036 [ A01C412699B6F21645B2885C2BAE4454 ] IOMap C:\Windows\system32\drivers\IOMap64.sys 18:46:29.0540 7036 IOMap - ok 18:46:29.0556 7036 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:46:29.0587 7036 IPBusEnum - ok 18:46:29.0618 7036 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:46:29.0665 7036 IpFilterDriver - ok 18:46:29.0712 7036 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:46:29.0727 7036 iphlpsvc - ok 18:46:29.0759 7036 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:46:29.0774 7036 IPMIDRV - ok 18:46:29.0805 7036 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:46:29.0852 7036 IPNAT - ok 18:46:29.0883 7036 [ 0F261EC4F514926177C70C1832374231 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 18:46:29.0915 7036 iPod Service - ok 18:46:29.0930 7036 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:46:29.0993 7036 IRENUM - ok 18:46:30.0024 7036 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:46:30.0024 7036 isapnp - ok 18:46:30.0055 7036 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:46:30.0055 7036 iScsiPrt - ok 18:46:30.0102 7036 [ 6BCEF45131C8B8E1C558BE540B190B3C ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys 18:46:30.0102 7036 iusb3hcs - ok 18:46:30.0133 7036 [ F080EADA8715F811B58BD35BB774F2F9 ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys 18:46:30.0149 7036 iusb3hub - ok 18:46:30.0180 7036 [ 0F1756D9396740F053221FA6260FCE66 ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys 18:46:30.0195 7036 iusb3xhc - ok 18:46:30.0242 7036 [ 166FC0B36842135BC2D3C32DF70ED0D6 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 18:46:30.0242 7036 jhi_service - ok 18:46:30.0273 7036 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 18:46:30.0289 7036 kbdclass - ok 18:46:30.0305 7036 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 18:46:30.0336 7036 kbdhid - ok 18:46:30.0367 7036 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe 18:46:30.0367 7036 KeyIso - ok 18:46:30.0398 7036 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:46:30.0398 7036 KSecDD - ok 18:46:30.0429 7036 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:46:30.0429 7036 KSecPkg - ok 18:46:30.0461 7036 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:46:30.0492 7036 ksthunk - ok 18:46:30.0539 7036 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 18:46:30.0585 7036 KtmRm - ok 18:46:30.0617 7036 [ B8040D3B97B16B89701E31A17353856C ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys 18:46:30.0632 7036 L1C - ok 18:46:30.0663 7036 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 18:46:30.0710 7036 LanmanServer - ok 18:46:30.0741 7036 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:46:30.0788 7036 LanmanWorkstation - ok 18:46:30.0819 7036 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:46:30.0851 7036 lltdio - ok 18:46:30.0897 7036 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:46:30.0929 7036 lltdsvc - ok 18:46:30.0944 7036 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:46:30.0960 7036 lmhosts - ok 18:46:30.0991 7036 [ C56E64BA70DC822B84D100A6F8D690D3 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 18:46:31.0007 7036 LMS - ok 18:46:31.0038 7036 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 18:46:31.0053 7036 LSI_FC - ok 18:46:31.0069 7036 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 18:46:31.0069 7036 LSI_SAS - ok 18:46:31.0069 7036 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 18:46:31.0085 7036 LSI_SAS2 - ok 18:46:31.0100 7036 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 18:46:31.0100 7036 LSI_SCSI - ok 18:46:31.0131 7036 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 18:46:31.0163 7036 luafv - ok 18:46:31.0209 7036 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 18:46:31.0225 7036 Mcx2Svc - ok 18:46:31.0256 7036 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 18:46:31.0256 7036 megasas - ok 18:46:31.0272 7036 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 18:46:31.0272 7036 MegaSR - ok 18:46:31.0303 7036 [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 18:46:31.0303 7036 MEIx64 - ok 18:46:31.0334 7036 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 18:46:31.0350 7036 MMCSS - ok 18:46:31.0365 7036 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 18:46:31.0381 7036 Modem - ok 18:46:31.0397 7036 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:46:31.0428 7036 monitor - ok 18:46:31.0475 7036 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 18:46:31.0475 7036 mouclass - ok 18:46:31.0506 7036 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:46:31.0506 7036 mouhid - ok 18:46:31.0537 7036 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:46:31.0537 7036 mountmgr - ok 18:46:31.0599 7036 [ 5C5E45DDABEFBC9F564F1D5C83258B8F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:46:31.0615 7036 MozillaMaintenance - ok 18:46:31.0646 7036 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 18:46:31.0646 7036 mpio - ok 18:46:31.0677 7036 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:46:31.0709 7036 mpsdrv - ok 18:46:31.0755 7036 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:46:31.0802 7036 MpsSvc - ok 18:46:31.0833 7036 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:46:31.0865 7036 MRxDAV - ok 18:46:31.0911 7036 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:46:31.0958 7036 mrxsmb - ok 18:46:31.0958 7036 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:46:31.0989 7036 mrxsmb10 - ok 18:46:32.0021 7036 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:46:32.0021 7036 mrxsmb20 - ok 18:46:32.0036 7036 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 18:46:32.0052 7036 msahci - ok 18:46:32.0052 7036 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:46:32.0067 7036 msdsm - ok 18:46:32.0083 7036 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 18:46:32.0114 7036 MSDTC - ok 18:46:32.0145 7036 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:46:32.0161 7036 Msfs - ok 18:46:32.0177 7036 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:46:32.0208 7036 mshidkmdf - ok 18:46:32.0239 7036 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:46:32.0239 7036 msisadrv - ok 18:46:32.0270 7036 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:46:32.0301 7036 MSiSCSI - ok 18:46:32.0301 7036 msiserver - ok 18:46:32.0333 7036 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:46:32.0364 7036 MSKSSRV - ok 18:46:32.0395 7036 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:46:32.0426 7036 MSPCLOCK - ok 18:46:32.0457 7036 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:46:32.0489 7036 MSPQM - ok 18:46:32.0520 7036 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:46:32.0535 7036 MsRPC - ok 18:46:32.0567 7036 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 18:46:32.0567 7036 mssmbios - ok 18:46:32.0582 7036 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:46:32.0629 7036 MSTEE - ok 18:46:32.0645 7036 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 18:46:32.0660 7036 MTConfig - ok 18:46:32.0691 7036 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 18:46:32.0691 7036 Mup - ok 18:46:32.0723 7036 [ 97CCA67FCDABB8441149F04B34ABF510 ] mvs91xx C:\Windows\system32\DRIVERS\mvs91xx.sys 18:46:32.0723 7036 mvs91xx - ok 18:46:32.0754 7036 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 18:46:32.0801 7036 napagent - ok 18:46:32.0847 7036 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:46:32.0879 7036 NativeWifiP - ok 18:46:32.0910 7036 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 18:46:32.0925 7036 NDIS - ok 18:46:32.0941 7036 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:46:32.0957 7036 NdisCap - ok 18:46:32.0988 7036 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:46:33.0035 7036 NdisTapi - ok 18:46:33.0066 7036 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:46:33.0081 7036 Ndisuio - ok 18:46:33.0113 7036 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:46:33.0144 7036 NdisWan - ok 18:46:33.0175 7036 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:46:33.0206 7036 NDProxy - ok 18:46:33.0237 7036 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:46:33.0284 7036 NetBIOS - ok 18:46:33.0300 7036 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:46:33.0331 7036 NetBT - ok 18:46:33.0347 7036 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe 18:46:33.0347 7036 Netlogon - ok 18:46:33.0378 7036 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 18:46:33.0409 7036 Netman - ok 18:46:33.0440 7036 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:46:33.0456 7036 NetMsmqActivator - ok 18:46:33.0487 7036 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:46:33.0503 7036 NetPipeActivator - ok 18:46:33.0518 7036 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 18:46:33.0565 7036 netprofm - ok 18:46:33.0612 7036 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:46:33.0612 7036 NetTcpActivator - ok 18:46:33.0612 7036 [ 5243CFC2E7161C91C2B355240035B9E4 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:46:33.0627 7036 NetTcpPortSharing - ok 18:46:33.0643 7036 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 18:46:33.0659 7036 nfrd960 - ok 18:46:33.0674 7036 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll 18:46:33.0705 7036 NlaSvc - ok 18:46:33.0752 7036 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:46:33.0768 7036 Npfs - ok 18:46:33.0783 7036 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 18:46:33.0815 7036 nsi - ok 18:46:33.0846 7036 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:46:33.0877 7036 nsiproxy - ok 18:46:33.0939 7036 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:46:33.0986 7036 Ntfs - ok 18:46:34.0002 7036 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 18:46:34.0017 7036 Null - ok 18:46:34.0095 7036 [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 18:46:34.0095 7036 NVHDA - ok 18:46:34.0361 7036 [ 0A2F27B5BCC45B64E152DD6AE0815198 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 18:46:34.0439 7036 nvlddmkm - ok 18:46:34.0485 7036 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:46:34.0485 7036 nvraid - ok 18:46:34.0532 7036 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:46:34.0532 7036 nvstor - ok 18:46:34.0563 7036 [ 574087EA9105F23FB522A4FDDD5292D9 ] nvsvc C:\Windows\system32\nvvsvc.exe 18:46:34.0579 7036 nvsvc - ok 18:46:34.0626 7036 [ ABA5A88740635D37A2B6CEB27DBC738A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 18:46:34.0657 7036 nvUpdatusService - ok 18:46:34.0688 7036 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:46:34.0688 7036 nv_agp - ok 18:46:34.0719 7036 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:46:34.0751 7036 ohci1394 - ok 18:46:34.0782 7036 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:46:34.0829 7036 p2pimsvc - ok 18:46:34.0844 7036 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 18:46:34.0860 7036 p2psvc - ok 18:46:34.0875 7036 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 18:46:34.0891 7036 Parport - ok 18:46:34.0907 7036 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:46:34.0907 7036 partmgr - ok 18:46:34.0922 7036 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 18:46:34.0953 7036 PcaSvc - ok 18:46:34.0985 7036 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 18:46:34.0985 7036 pci - ok 18:46:35.0016 7036 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 18:46:35.0016 7036 pciide - ok 18:46:35.0031 7036 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 18:46:35.0047 7036 pcmcia - ok 18:46:35.0063 7036 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 18:46:35.0063 7036 pcw - ok 18:46:35.0078 7036 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:46:35.0141 7036 PEAUTH - ok 18:46:35.0219 7036 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:46:35.0250 7036 PerfHost - ok 18:46:35.0312 7036 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 18:46:35.0375 7036 pla - ok 18:46:35.0421 7036 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:46:35.0437 7036 PlugPlay - ok 18:46:35.0453 7036 PnkBstrA - ok 18:46:35.0468 7036 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:46:35.0499 7036 PNRPAutoReg - ok 18:46:35.0515 7036 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:46:35.0531 7036 PNRPsvc - ok 18:46:35.0562 7036 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:46:35.0609 7036 PolicyAgent - ok 18:46:35.0655 7036 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 18:46:35.0687 7036 Power - ok 18:46:35.0733 7036 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:46:35.0765 7036 PptpMiniport - ok 18:46:35.0780 7036 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 18:46:35.0811 7036 Processor - ok 18:46:35.0843 7036 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 18:46:35.0905 7036 ProfSvc - ok 18:46:35.0905 7036 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:46:35.0905 7036 ProtectedStorage - ok 18:46:35.0936 7036 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:46:35.0983 7036 Psched - ok 18:46:36.0030 7036 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 18:46:36.0077 7036 ql2300 - ok 18:46:36.0077 7036 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 18:46:36.0092 7036 ql40xx - ok 18:46:36.0108 7036 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 18:46:36.0139 7036 QWAVE - ok 18:46:36.0170 7036 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:46:36.0201 7036 QWAVEdrv - ok 18:46:36.0217 7036 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:46:36.0264 7036 RasAcd - ok 18:46:36.0295 7036 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:46:36.0311 7036 RasAgileVpn - ok 18:46:36.0326 7036 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 18:46:36.0357 7036 RasAuto - ok 18:46:36.0373 7036 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:46:36.0420 7036 Rasl2tp - ok 18:46:36.0451 7036 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 18:46:36.0498 7036 RasMan - ok 18:46:36.0529 7036 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:46:36.0545 7036 RasPppoe - ok 18:46:36.0560 7036 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:46:36.0591 7036 RasSstp - ok 18:46:36.0623 7036 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:46:36.0669 7036 rdbss - ok 18:46:36.0685 7036 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 18:46:36.0716 7036 rdpbus - ok 18:46:36.0747 7036 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:46:36.0779 7036 RDPCDD - ok 18:46:36.0810 7036 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:46:36.0841 7036 RDPENCDD - ok 18:46:36.0857 7036 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:46:36.0872 7036 RDPREFMP - ok 18:46:36.0919 7036 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 18:46:36.0966 7036 RdpVideoMiniport - ok 18:46:36.0981 7036 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:46:37.0028 7036 RDPWD - ok 18:46:37.0059 7036 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:46:37.0059 7036 rdyboost - ok 18:46:37.0075 7036 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:46:37.0122 7036 RemoteAccess - ok 18:46:37.0153 7036 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:46:37.0200 7036 RemoteRegistry - ok 18:46:37.0231 7036 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:46:37.0247 7036 RpcEptMapper - ok 18:46:37.0262 7036 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 18:46:37.0262 7036 RpcLocator - ok 18:46:37.0293 7036 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 18:46:37.0309 7036 RpcSs - ok 18:46:37.0325 7036 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:46:37.0340 7036 rspndr - ok 18:46:37.0356 7036 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe 18:46:37.0356 7036 SamSs - ok 18:46:37.0371 7036 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:46:37.0387 7036 sbp2port - ok 18:46:37.0403 7036 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:46:37.0449 7036 SCardSvr - ok 18:46:37.0481 7036 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:46:37.0527 7036 scfilter - ok 18:46:37.0574 7036 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 18:46:37.0621 7036 Schedule - ok 18:46:37.0637 7036 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 18:46:37.0652 7036 SCPolicySvc - ok 18:46:37.0683 7036 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:46:37.0699 7036 SDRSVC - ok 18:46:37.0715 7036 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:46:37.0761 7036 secdrv - ok 18:46:37.0793 7036 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 18:46:37.0824 7036 seclogon - ok 18:46:37.0871 7036 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 18:46:37.0902 7036 SENS - ok 18:46:37.0933 7036 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:46:37.0964 7036 SensrSvc - ok 18:46:38.0011 7036 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 18:46:38.0027 7036 Serenum - ok 18:46:38.0058 7036 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 18:46:38.0058 7036 Serial - ok 18:46:38.0089 7036 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 18:46:38.0089 7036 sermouse - ok 18:46:38.0120 7036 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 18:46:38.0151 7036 SessionEnv - ok 18:46:38.0183 7036 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:46:38.0214 7036 sffdisk - ok 18:46:38.0229 7036 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:46:38.0261 7036 sffp_mmc - ok 18:46:38.0276 7036 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:46:38.0307 7036 sffp_sd - ok 18:46:38.0339 7036 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 18:46:38.0354 7036 sfloppy - ok 18:46:38.0370 7036 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:46:38.0417 7036 SharedAccess - ok 18:46:38.0448 7036 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:46:38.0495 7036 ShellHWDetection - ok 18:46:38.0526 7036 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 18:46:38.0526 7036 SiSRaid2 - ok 18:46:38.0541 7036 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 18:46:38.0557 7036 SiSRaid4 - ok 18:46:38.0588 7036 [ 8C4F0DCC6A5100D48F9B2F950CDD220F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 18:46:38.0619 7036 SkypeUpdate - ok 18:46:38.0635 7036 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:46:38.0666 7036 Smb - ok 18:46:38.0713 7036 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:46:38.0729 7036 SNMPTRAP - ok 18:46:38.0760 7036 [ 12583AF6CBE0050651EAF2723B3AD7B3 ] speedfan C:\Windows\syswow64\speedfan.sys 18:46:38.0775 7036 speedfan - ok 18:46:38.0791 7036 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 18:46:38.0791 7036 spldr - ok 18:46:38.0822 7036 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 18:46:38.0885 7036 Spooler - ok 18:46:38.0947 7036 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 18:46:39.0056 7036 sppsvc - ok 18:46:39.0087 7036 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:46:44.0345 7036 sppuinotify - ok 18:46:44.0391 7036 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 18:46:44.0438 7036 srv - ok 18:46:44.0454 7036 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:46:44.0485 7036 srv2 - ok 18:46:44.0516 7036 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:46:44.0547 7036 srvnet - ok 18:46:44.0579 7036 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:46:44.0625 7036 SSDPSRV - ok 18:46:44.0625 7036 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:46:44.0657 7036 SstpSvc - ok 18:46:44.0688 7036 Steam Client Service - ok 18:46:44.0781 7036 [ 78216A10BF8B200890A88D8820F33F14 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 18:46:44.0797 7036 Stereo Service - ok 18:46:44.0828 7036 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 18:46:44.0844 7036 stexstor - ok 18:46:44.0875 7036 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 18:46:44.0906 7036 stisvc - ok 18:46:44.0937 7036 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 18:46:44.0937 7036 swenum - ok 18:46:44.0969 7036 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 18:46:45.0031 7036 swprv - ok 18:46:45.0078 7036 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 18:46:45.0140 7036 SysMain - ok 18:46:45.0171 7036 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:46:45.0203 7036 TabletInputService - ok 18:46:45.0234 7036 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 18:46:45.0265 7036 TapiSrv - ok 18:46:45.0296 7036 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 18:46:45.0312 7036 TBS - ok 18:46:45.0390 7036 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:46:45.0437 7036 Tcpip - ok 18:46:45.0483 7036 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:46:45.0499 7036 TCPIP6 - ok 18:46:45.0515 7036 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:46:45.0530 7036 tcpipreg - ok 18:46:45.0546 7036 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:46:45.0593 7036 TDPIPE - ok 18:46:45.0608 7036 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:46:45.0624 7036 TDTCP - ok 18:46:45.0655 7036 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:46:45.0671 7036 tdx - ok 18:46:45.0764 7036 [ C9B9373A0A430C11F0213E359D0772B2 ] TeamViewer7 C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe 18:46:45.0811 7036 TeamViewer7 - ok 18:46:45.0842 7036 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 18:46:45.0842 7036 TermDD - ok 18:46:45.0873 7036 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 18:46:45.0905 7036 TermService - ok 18:46:45.0920 7036 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 18:46:45.0951 7036 Themes - ok 18:46:45.0983 7036 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 18:46:45.0998 7036 THREADORDER - ok 18:46:46.0014 7036 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 18:46:46.0061 7036 TrkWks - ok 18:46:46.0107 7036 [ B66EE1D68197DFB9AA24F961E68ACDCC ] trufos C:\Windows\system32\DRIVERS\trufos.sys 18:46:46.0123 7036 trufos - ok 18:46:46.0154 7036 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:46:46.0185 7036 TrustedInstaller - ok 18:46:46.0217 7036 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:46:46.0232 7036 tssecsrv - ok 18:46:46.0263 7036 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:46:46.0310 7036 TsUsbFlt - ok 18:46:46.0341 7036 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:46:46.0373 7036 tunnel - ok 18:46:46.0419 7036 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 18:46:46.0419 7036 uagp35 - ok 18:46:46.0451 7036 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:46:46.0482 7036 udfs - ok 18:46:46.0513 7036 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:46:46.0544 7036 UI0Detect - ok 18:46:46.0591 7036 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:46:46.0607 7036 uliagpkx - ok 18:46:46.0622 7036 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 18:46:46.0653 7036 umbus - ok 18:46:46.0700 7036 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 18:46:46.0700 7036 UmPass - ok 18:46:46.0794 7036 [ 0F9E1BC7E2BEA1A4108EC9736CF0C2D9 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 18:46:46.0794 7036 UNS - ok 18:46:46.0903 7036 [ 75A488DA3EA48BE97695A727185515CF ] UPDATESRV C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe 18:46:46.0919 7036 UPDATESRV - ok 18:46:46.0934 7036 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 18:46:46.0950 7036 upnphost - ok 18:46:46.0997 7036 [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 18:46:47.0043 7036 USBAAPL64 - ok 18:46:47.0059 7036 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 18:46:47.0106 7036 usbccgp - ok 18:46:47.0153 7036 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:46:47.0153 7036 usbcir - ok 18:46:47.0168 7036 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys 18:46:47.0199 7036 usbehci - ok 18:46:47.0231 7036 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 18:46:47.0262 7036 usbhub - ok 18:46:47.0293 7036 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys 18:46:47.0324 7036 usbohci - ok 18:46:47.0355 7036 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 18:46:47.0387 7036 usbprint - ok 18:46:47.0418 7036 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 18:46:47.0418 7036 usbscan - ok 18:46:47.0433 7036 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:46:47.0480 7036 USBSTOR - ok 18:46:47.0496 7036 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:46:47.0527 7036 usbuhci - ok 18:46:47.0558 7036 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 18:46:47.0574 7036 UxSms - ok 18:46:47.0574 7036 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe 18:46:47.0574 7036 VaultSvc - ok 18:46:47.0605 7036 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:46:47.0605 7036 vdrvroot - ok 18:46:47.0636 7036 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 18:46:47.0652 7036 vds - ok 18:46:47.0683 7036 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:46:47.0699 7036 vga - ok 18:46:47.0714 7036 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 18:46:47.0745 7036 VgaSave - ok 18:46:47.0777 7036 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:46:47.0792 7036 vhdmp - ok 18:46:47.0855 7036 [ E8AF45C4FE2457D003E1842806F38748 ] VIAHdAudAddService C:\Windows\system32\drivers\viahduaa.sys 18:46:47.0886 7036 VIAHdAudAddService - ok 18:46:47.0901 7036 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 18:46:47.0917 7036 viaide - ok 18:46:47.0933 7036 [ 05D6657A9CCFD269D05D41BFFDCE9498 ] VIAKaraokeService C:\Windows\system32\viakaraokesrv.exe 18:46:47.0933 7036 VIAKaraokeService - ok 18:46:47.0964 7036 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:46:47.0964 7036 volmgr - ok 18:46:47.0979 7036 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:46:47.0995 7036 volmgrx - ok 18:46:48.0011 7036 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:46:48.0011 7036 volsnap - ok 18:46:48.0042 7036 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 18:46:48.0057 7036 vsmraid - ok 18:46:48.0089 7036 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 18:46:48.0167 7036 VSS - ok 18:46:48.0541 7036 [ 1575FF62CB0C3F4823B265C1A3827101 ] VSSERV C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe 18:46:48.0557 7036 VSSERV - ok 18:46:48.0588 7036 [ 316A1762BD41C3DB06EB484527838E2D ] VUSB3HUB C:\Windows\system32\DRIVERS\ViaHub3.sys 18:46:48.0603 7036 VUSB3HUB - ok 18:46:48.0603 7036 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 18:46:48.0635 7036 vwifibus - ok 18:46:48.0681 7036 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 18:46:48.0713 7036 W32Time - ok 18:46:48.0744 7036 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 18:46:48.0775 7036 WacomPen - ok 18:46:48.0806 7036 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:46:48.0822 7036 WANARP - ok 18:46:48.0837 7036 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:46:48.0853 7036 Wanarpv6 - ok 18:46:48.0931 7036 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 18:46:48.0978 7036 WatAdminSvc - ok 18:46:49.0009 7036 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 18:46:49.0056 7036 wbengine - ok 18:46:49.0087 7036 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:46:49.0103 7036 WbioSrvc - ok 18:46:49.0134 7036 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:46:49.0149 7036 wcncsvc - ok 18:46:49.0149 7036 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:46:49.0165 7036 WcsPlugInService - ok 18:46:49.0181 7036 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 18:46:49.0196 7036 Wd - ok 18:46:49.0212 7036 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:46:49.0243 7036 Wdf01000 - ok 18:46:49.0243 7036 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:46:49.0305 7036 WdiServiceHost - ok 18:46:49.0305 7036 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:46:49.0305 7036 WdiSystemHost - ok 18:46:49.0337 7036 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll 18:46:49.0368 7036 WebClient - ok 18:46:49.0399 7036 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:46:49.0446 7036 Wecsvc - ok 18:46:49.0461 7036 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:46:49.0493 7036 wercplsupport - ok 18:46:49.0524 7036 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 18:46:49.0539 7036 WerSvc - ok 18:46:49.0571 7036 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:46:49.0586 7036 WfpLwf - ok 18:46:49.0586 7036 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:46:49.0602 7036 WIMMount - ok 18:46:49.0617 7036 WinDefend - ok 18:46:49.0617 7036 WinHttpAutoProxySvc - ok 18:46:49.0664 7036 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:46:49.0711 7036 Winmgmt - ok 18:46:49.0836 7036 [ 0C0195C48B6B8582FA6F6373032118DA ] WinRing0_1_2_0 C:\Users\Johannes\Desktop\Programme\Real Temp\WinRing0x64.sys 18:46:49.0836 7036 WinRing0_1_2_0 - ok 18:46:49.0898 7036 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 18:46:49.0961 7036 WinRM - ok 18:46:50.0007 7036 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 18:46:50.0039 7036 WinUsb - ok 18:46:50.0070 7036 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 18:46:50.0117 7036 Wlansvc - ok 18:46:50.0148 7036 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 18:46:50.0163 7036 WmiAcpi - ok 18:46:50.0195 7036 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:46:50.0210 7036 wmiApSrv - ok 18:46:50.0257 7036 WMPNetworkSvc - ok 18:46:50.0273 7036 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:46:50.0288 7036 WPCSvc - ok 18:46:50.0304 7036 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:46:50.0335 7036 WPDBusEnum - ok 18:46:50.0351 7036 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:46:50.0382 7036 ws2ifsl - ok 18:46:50.0413 7036 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll 18:46:50.0444 7036 wscsvc - ok 18:46:50.0444 7036 WSearch - ok 18:46:50.0507 7036 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll 18:46:50.0569 7036 wuauserv - ok 18:46:50.0585 7036 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:46:50.0631 7036 WudfPf - ok 18:46:50.0663 7036 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 18:46:50.0694 7036 WUDFRd - ok 18:46:50.0709 7036 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:46:50.0725 7036 wudfsvc - ok 18:46:50.0756 7036 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll 18:46:50.0787 7036 WwanSvc - ok 18:46:50.0834 7036 [ FFDB0ED9D1D453F7F19DE55FE0706195 ] xhcdrv C:\Windows\system32\DRIVERS\xhcdrv.sys 18:46:50.0881 7036 xhcdrv - ok 18:46:50.0881 7036 ================ Scan global =============================== 18:46:50.0897 7036 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 18:46:50.0928 7036 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 18:46:50.0928 7036 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 18:46:50.0959 7036 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 18:46:50.0990 7036 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 18:46:50.0990 7036 [Global] - ok 18:46:50.0990 7036 ================ Scan MBR ================================== 18:46:50.0990 7036 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 18:46:51.0115 7036 \Device\Harddisk0\DR0 - ok 18:46:51.0115 7036 ================ Scan VBR ================================== 18:46:51.0146 7036 [ BAE294564FE584AC7DE8134C5735D38A ] \Device\Harddisk0\DR0\Partition1 18:46:51.0146 7036 \Device\Harddisk0\DR0\Partition1 - ok 18:46:51.0146 7036 [ 1FBCF67990A2739C34862823BA3AA6FD ] \Device\Harddisk0\DR0\Partition2 18:46:51.0146 7036 \Device\Harddisk0\DR0\Partition2 - ok 18:46:51.0162 7036 [ 5132012E0A69FB5AEFEA745B50C25329 ] \Device\Harddisk0\DR0\Partition3 18:46:51.0162 7036 \Device\Harddisk0\DR0\Partition3 - ok 18:46:51.0162 7036 ============================================================ 18:46:51.0162 7036 Scan finished 18:46:51.0162 7036 ============================================================ 18:46:51.0177 6148 Detected object count: 5 18:46:51.0177 6148 Actual detected object count: 5 18:47:31.0890 6148 ASDR ( UnsignedFile.Multi.Generic ) - skipped by user 18:47:31.0890 6148 ASDR ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:47:31.0890 6148 ATKFUSService ( UnsignedFile.Multi.Generic ) - skipped by user 18:47:31.0890 6148 ATKFUSService ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:47:31.0890 6148 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:47:31.0890 6148 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:47:31.0890 6148 ICCS ( UnsignedFile.Multi.Generic ) - skipped by user 18:47:31.0890 6148 ICCS ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:47:31.0890 6148 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user 18:47:31.0890 6148 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip |
03.03.2013, 19:40 | #4 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr Hi, Scan mit Combofix
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
03.03.2013, 20:40 | #5 |
| Firefox sowie Internet Explorer starten nicht mehrCode:
ATTFilter ComboFix 13-03-02.01 - Johannes 03.03.2013 20:30:17.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16346.14040 [GMT 1:00] ausgeführt von:: c:\users\Johannes\Desktop\ComboFix.exe AV: Bitdefender Virenschutz *Disabled/Updated* {9B5F5313-CAF9-DD97-C460-E778420237B4} FW: Bitdefender Firewall *Enabled* {A364D236-8096-DCCF-EF3F-4E4DBCD170CF} SP: Bitdefender Spyware-Schutz *Disabled/Updated* {203EB2F7-ECC3-D219-FED0-DC0A39857D09} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\1359994910.bdinstall.bin c:\programdata\ntuser.dat . . ((((((((((((((((((((((( Dateien erstellt von 2013-02-03 bis 2013-03-03 )))))))))))))))))))))))))))))) . . 2013-03-03 19:33 . 2013-03-03 19:33 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-03-03 19:33 . 2013-03-03 19:33 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-03-03 17:02 . 2013-03-03 17:02 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service 2013-03-03 16:51 . 2013-03-03 16:52 -------- d-----w- c:\program files (x86)\Google 2013-03-03 16:51 . 2013-03-03 16:52 -------- d-----w- c:\users\Johannes\AppData\Local\Google 2013-02-28 00:24 . 2013-01-13 19:53 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll 2013-02-25 12:48 . 2013-02-26 13:25 -------- d-----w- c:\program files (x86)\SpeedFan 2013-02-13 22:39 . 2013-01-09 01:10 996352 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 22:39 . 2013-01-08 22:01 768000 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 22:26 . 2013-01-05 05:53 5553512 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-02-13 22:26 . 2013-01-05 05:00 3967848 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-02-13 22:26 . 2013-01-05 05:00 3913064 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-02-13 22:26 . 2013-01-04 03:26 3153408 ----a-w- c:\windows\system32\win32k.sys 2013-02-13 22:26 . 2013-01-04 05:46 215040 ----a-w- c:\windows\system32\winsrv.dll 2013-02-13 22:26 . 2013-01-04 04:51 5120 ----a-w- c:\windows\SysWow64\wow32.dll 2013-02-13 22:26 . 2013-01-04 02:47 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2013-02-13 22:26 . 2013-01-04 02:47 7680 ----a-w- c:\windows\SysWow64\instnm.exe 2013-02-13 22:26 . 2013-01-04 02:47 2048 ----a-w- c:\windows\SysWow64\user.exe 2013-02-13 22:26 . 2013-01-04 02:47 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2013-02-13 22:26 . 2013-01-03 06:00 1913192 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-02-13 22:26 . 2013-01-03 06:00 288088 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS 2013-02-09 22:36 . 2013-02-09 22:36 -------- d-----w- c:\users\Johannes\AppData\Roaming\Ubisoft 2013-02-09 17:43 . 2013-02-09 17:43 555808 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-02-09 17:39 . 2013-02-27 17:39 16473456 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe 2013-02-07 22:29 . 2013-02-07 23:29 -------- d-----w- c:\users\Johannes\AppData\Roaming\iFunbox_UserCache 2013-02-07 15:01 . 2013-02-07 15:01 -------- d-----w- c:\users\Johannes\AppData\Local\libimobiledevice 2013-02-05 21:44 . 2013-02-05 23:51 -------- d-----w- c:\users\Johannes\AppData\Roaming\Apple Computer 2013-02-05 21:44 . 2013-02-05 21:44 -------- d-----w- c:\users\Johannes\AppData\Local\Apple Computer 2013-02-05 21:43 . 2013-02-05 21:43 -------- dc----w- c:\windows\system32\DRVSTORE 2013-02-05 21:43 . 2012-08-21 12:01 33240 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys 2013-02-05 21:42 . 2013-02-05 21:43 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-02-05 21:42 . 2013-02-05 21:43 -------- d-----w- c:\program files\iTunes 2013-02-05 21:42 . 2013-02-05 21:43 -------- d-----w- c:\program files (x86)\iTunes 2013-02-05 21:42 . 2013-02-05 21:42 -------- d-----w- c:\programdata\Apple Computer 2013-02-05 21:42 . 2013-02-05 21:42 -------- d-----w- c:\program files\iPod 2013-02-05 21:39 . 2013-02-05 21:39 -------- d-----w- c:\users\Johannes\AppData\Local\Apple 2013-02-05 21:39 . 2013-02-05 22:35 -------- d-----w- c:\program files (x86)\Apple Software Update 2013-02-05 21:39 . 2013-02-05 21:39 -------- d-----w- c:\program files\Common Files\Apple 2013-02-05 21:39 . 2013-02-05 21:39 -------- d-----w- c:\program files\Bonjour 2013-02-05 21:38 . 2013-02-05 21:42 -------- d-----w- c:\program files (x86)\Common Files\Apple 2013-02-05 21:38 . 2013-02-05 21:39 -------- d-----w- c:\programdata\Apple 2013-02-05 17:37 . 2013-02-05 17:37 -------- d-----w- c:\program files (x86)\Common Files\Skype 2013-02-05 17:02 . 2013-02-13 17:40 -------- d-----w- c:\program files (x86)\Diablo III 2013-02-05 17:02 . 2013-02-05 17:18 -------- d-----w- c:\programdata\Blizzard Entertainment 2013-02-05 17:02 . 2013-02-05 17:18 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment 2013-02-05 17:01 . 2013-02-05 17:01 -------- d-----w- c:\programdata\Battle.net 2013-02-04 16:23 . 2013-02-04 16:23 -------- d-----w- c:\program files\Bitdefender 2013-02-04 16:09 . 2013-02-04 16:23 -------- d-----w- c:\program files\Common Files\Bitdefender 2013-02-04 16:08 . 2013-02-04 16:08 -------- d-----w- c:\users\Johannes\AppData\Roaming\Keseling 2013-02-02 16:18 . 2013-02-02 16:18 -------- d-----w- c:\users\Default\AppData\Roaming\TuneUp Software . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-02-28 21:07 . 2012-11-06 19:06 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2013-02-28 21:07 . 2012-11-04 21:58 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2013-02-27 17:39 . 2012-11-04 19:35 71024 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-02-27 17:39 . 2012-11-04 19:35 691568 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-02-26 13:12 . 2012-11-04 18:23 25640 ----a-w- c:\windows\gdrv.sys 2013-02-24 19:59 . 2012-11-04 21:58 291088 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2013-02-13 22:39 . 2012-11-04 19:58 70004024 ----a-w- c:\windows\system32\MRT.exe 2013-02-10 03:25 . 2012-10-10 20:23 2854344 ----a-w- c:\windows\system32\nvapi64.dll 2013-02-10 03:25 . 2012-10-10 20:23 1114144 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-02-10 03:25 . 2012-10-10 20:23 15275744 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-02-10 03:25 . 2012-10-10 20:22 2528840 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-02-10 03:25 . 2012-10-10 20:22 15038296 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-02-10 01:04 . 2012-11-04 18:19 6393120 ----a-w- c:\windows\system32\nvcpl.dll 2013-02-10 01:04 . 2012-11-04 18:19 3472672 ----a-w- c:\windows\system32\nvsvc64.dll 2013-02-10 01:04 . 2012-11-04 18:19 877856 ----a-w- c:\windows\system32\nvvsvc.exe 2013-02-10 01:04 . 2012-11-04 18:19 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-02-10 01:04 . 2012-11-04 18:19 2555680 ----a-w- c:\windows\system32\nvsvcr.dll 2013-02-10 01:04 . 2012-11-04 18:19 237856 ----a-w- c:\windows\system32\nvmctray.dll 2013-02-09 13:25 . 2012-11-04 18:19 3035306 ----a-w- c:\windows\system32\nvcoproc.bin 2013-01-29 19:08 . 2012-12-09 22:30 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2013-01-17 18:51 . 2012-12-17 17:29 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll 2013-01-13 21:35 . 2013-01-13 21:35 28672 ----a-w- c:\windows\system32\AF15BDAEX.dll 2013-01-13 21:35 . 2013-01-13 21:35 126 ----a-w- c:\windows\system32\AF15IRTBL.bin 2013-01-13 21:35 . 2013-01-13 21:35 507392 ----a-w- c:\windows\system32\drivers\AF15BDA.sys 2013-01-04 04:43 . 2013-02-13 22:26 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2012-12-18 08:31 . 2012-12-09 16:00 1510328 ----a-w- c:\windows\system32\nvhdagenco6420103.dll 2012-12-16 17:11 . 2012-12-22 17:43 46080 ----a-w- c:\windows\system32\atmlib.dll 2012-12-16 14:45 . 2012-12-22 17:43 367616 ----a-w- c:\windows\system32\atmfd.dll 2012-12-16 14:13 . 2012-12-22 17:43 295424 ----a-w- c:\windows\SysWow64\atmfd.dll 2012-12-16 14:13 . 2012-12-22 17:43 34304 ----a-w- c:\windows\SysWow64\atmlib.dll 2012-12-14 15:49 . 2013-01-27 22:22 24176 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-12-07 17:16 . 2012-11-04 21:58 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2012-12-07 13:20 . 2013-01-10 21:18 441856 ----a-w- c:\windows\system32\Wpc.dll 2012-12-07 13:15 . 2013-01-10 21:18 2746368 ----a-w- c:\windows\system32\gameux.dll 2012-12-07 12:26 . 2013-01-10 21:18 308736 ----a-w- c:\windows\SysWow64\Wpc.dll 2012-12-07 12:20 . 2013-01-10 21:18 2576384 ----a-w- c:\windows\SysWow64\gameux.dll 2012-12-07 11:20 . 2013-01-10 21:18 30720 ----a-w- c:\windows\system32\usk.rs 2012-12-07 11:20 . 2013-01-10 21:18 43520 ----a-w- c:\windows\system32\csrr.rs 2012-12-07 11:20 . 2013-01-10 21:18 23552 ----a-w- c:\windows\system32\oflc.rs 2012-12-07 11:20 . 2013-01-10 21:18 45568 ----a-w- c:\windows\system32\oflc-nz.rs 2012-12-07 11:20 . 2013-01-10 21:18 44544 ----a-w- c:\windows\system32\pegibbfc.rs 2012-12-07 11:20 . 2013-01-10 21:18 20480 ----a-w- c:\windows\system32\pegi-fi.rs 2012-12-07 11:20 . 2013-01-10 21:18 20480 ----a-w- c:\windows\system32\pegi-pt.rs 2012-12-07 11:19 . 2013-01-10 21:18 20480 ----a-w- c:\windows\system32\pegi.rs 2012-12-07 11:19 . 2013-01-10 21:18 46592 ----a-w- c:\windows\system32\fpb.rs 2012-12-07 11:19 . 2013-01-10 21:18 40960 ----a-w- c:\windows\system32\cob-au.rs 2012-12-07 11:19 . 2013-01-10 21:18 21504 ----a-w- c:\windows\system32\grb.rs 2012-12-07 11:19 . 2013-01-10 21:18 15360 ----a-w- c:\windows\system32\djctq.rs 2012-12-07 11:19 . 2013-01-10 21:18 55296 ----a-w- c:\windows\system32\cero.rs 2012-12-07 11:19 . 2013-01-10 21:18 51712 ----a-w- c:\windows\system32\esrb.rs 2012-12-07 10:46 . 2013-01-10 21:18 43520 ----a-w- c:\windows\SysWow64\csrr.rs 2012-12-07 10:46 . 2013-01-10 21:18 30720 ----a-w- c:\windows\SysWow64\usk.rs 2012-12-07 10:46 . 2013-01-10 21:18 45568 ----a-w- c:\windows\SysWow64\oflc-nz.rs 2012-12-07 10:46 . 2013-01-10 21:18 44544 ----a-w- c:\windows\SysWow64\pegibbfc.rs 2012-12-07 10:46 . 2013-01-10 21:18 20480 ----a-w- c:\windows\SysWow64\pegi-pt.rs 2012-12-07 10:46 . 2013-01-10 21:18 23552 ----a-w- c:\windows\SysWow64\oflc.rs 2012-12-07 10:46 . 2013-01-10 21:18 20480 ----a-w- c:\windows\SysWow64\pegi-fi.rs 2012-12-07 10:46 . 2013-01-10 21:18 46592 ----a-w- c:\windows\SysWow64\fpb.rs 2012-12-07 10:46 . 2013-01-10 21:18 20480 ----a-w- c:\windows\SysWow64\pegi.rs 2012-12-07 10:46 . 2013-01-10 21:18 21504 ----a-w- c:\windows\SysWow64\grb.rs 2012-12-07 10:46 . 2013-01-10 21:18 40960 ----a-w- c:\windows\SysWow64\cob-au.rs 2012-12-07 10:46 . 2013-01-10 21:18 15360 ----a-w- c:\windows\SysWow64\djctq.rs 2012-12-07 10:46 . 2013-01-10 21:18 55296 ----a-w- c:\windows\SysWow64\cero.rs 2012-12-07 10:46 . 2013-01-10 21:18 51712 ----a-w- c:\windows\SysWow64\esrb.rs . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2012-01-12 5028464] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440] "ASUSGamerOSD"="c:\program files (x86)\ASUS\GamerOSD\GamerOSD.exe" [2009-07-30 380928] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-12-12 152544] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . R1 AntiLog32;AntiLog32;c:\windows\system32\drivers\AntiLog64.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536] R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [2010-04-06 31272] R3 avckf;avckf;c:\windows\system32\DRIVERS\avckf.sys [2013-01-11 589000] R3 BDSandBox;BDSandBox;c:\windows\system32\drivers\bdsandbox.sys [2012-11-12 82384] R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2011-08-30 160256] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-09-28 53760] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [2012-11-04 1255736] R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Johannes\Desktop\Programme\Real Temp\WinRing0x64.sys [2008-07-26 14544] R4 BdDesktopParental;Bitdefender Desktop Parental Control;c:\program files\Bitdefender\Bitdefender 2013\bdparentalservice.exe [2013-03-03 69392] S0 avc3;avc3;c:\windows\system32\DRIVERS\avc3.sys [2013-01-11 707528] S0 gzflt;gzflt;c:\windows\system32\DRIVERS\gzflt.sys [2013-02-04 145696] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys [2012-01-27 16152] S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2011-11-02 21616] S1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2012-07-06 93160] S1 bdfwfpf;bdfwfpf;c:\program files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2011-11-14 103504] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-11-04 283200] S1 EIO64;EIO Driver;c:\windows\system32\DRIVERS\EIO64.sys [2012-11-04 16384] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-29 13592] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe [2011-12-08 607456] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-02-09 383264] S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-10-23 2848168] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800] S2 UPDATESRV;Bitdefender Desktop Update Service;c:\program files\Bitdefender\Bitdefender 2013\updatesrv.exe [2012-11-13 68416] S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe [2012-01-10 27760] S3 avchv;avchv Function Driver;c:\windows\system32\DRIVERS\avchv.sys [2012-11-02 261056] S3 IOMap;IOMap;c:\windows\system32\drivers\IOMap64.sys [2010-02-22 23680] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys [2012-01-27 356120] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys [2012-01-27 787736] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2011-08-11 104560] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2012-01-10 2184816] S3 VUSB3HUB;VIA USB 3 Root Hub Service;c:\windows\system32\DRIVERS\ViaHub3.sys [2012-01-20 205312] S3 xhcdrv;VIA USB eXtensible Host Controller Service;c:\windows\system32\DRIVERS\xhcdrv.sys [2012-01-20 254464] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - 93202767 *Deregistered* - 93202767 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-03-03 16:52 1629648 ----a-w- c:\program files (x86)\Google\Chrome\Application\25.0.1364.97\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-03-03 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-11-04 17:39] . 2013-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-03-03 16:51] . 2013-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-03-03 16:51] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "VIAxHCUtl"="c:\via_xhci\usb3Monitor.exe" [2011-07-12 331776] "Bdagent"="c:\program files\Bitdefender\Bitdefender 2013\bdagent.exe" [2013-03-03 1573632] . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalService FontCache . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = about:blank mStart Page = about:blank mLocal Page = c:\windows\SysWOW64\blank.htm LSP: c:\program files\Bitdefender\Bitdefender 2013\BdProvider32\BdProvider.dll TCP: DhcpNameServer = 10.0.0.1 FF - ProfilePath - c:\users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\vpxo1osk.default\ FF - prefs.js: browser.search.selectedEngine - FF - prefs.js: browser.startup.homepage - www.google.at FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=8e0b6ac7000000000000902b34382990&q= FF - user.js: extensions.BabylonToolbar.id - 8e0b6ac7000000000000902b34382990 FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB} FF - user.js: extensions.BabylonToolbar.instlDay - 15664 FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.3.8 FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.3.8 FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.3.817:07 FF - user.js: extensions.BabylonToolbar.prtnrId - babylon FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar.aflt - babsst FF - user.js: extensions.BabylonToolbar_i.smplGrp - none FF - user.js: extensions.BabylonToolbar.tlbrId - tb9 FF - user.js: extensions.BabylonToolbar.instlRef - sst FF - user.js: extensions.BabylonToolbar.dfltLng - en FF - user.js: extensions.BabylonToolbar.excTlbr - false FF - user.js: extensions.BabylonToolbar.admin - false . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Program Files (x86)\\GIGABYTE\\ET6\\Flash11e.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Program Files (x86)\\GIGABYTE\\ET6\\Flash11e.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Program Files (x86)\\GIGABYTE\\ET6\\Flash11e.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Program Files (x86)\\GIGABYTE\\ET6\\Flash11e.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-03-03 20:34:50 ComboFix-quarantined-files.txt 2013-03-03 19:34 . Vor Suchlauf: 11 Verzeichnis(se), 30.802.157.568 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 30.745.088.000 Bytes frei . - - End Of File - - 126310C553B85694E41D3B6A9C3A07F7 |
03.03.2013, 20:43 | #6 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr Hi malwarebytes: Downloade Dir bitte Malwarebytes
__________________ --> Firefox sowie Internet Explorer starten nicht mehr |
03.03.2013, 21:28 | #7 |
| Firefox sowie Internet Explorer starten nicht mehr nichts gefunden, ist der pc jetzt virenfrei? Code:
ATTFilter Malwarebytes Anti-Malware 1.70.0.1100 www.malwarebytes.org Datenbank Version: v2013.03.03.09 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Johannes :: JOHANNES-PC [Administrator] 03.03.2013 20:45:50 mbam-log-2013-03-03 (20-45-50).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 447825 Laufzeit: 40 Minute(n), 52 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
04.03.2013, 20:24 | #8 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr Hi lade den CCleaner standard: CCleaner - Download - Filepony falls der CCleaner bereits instaliert, überspringen. öffnen, Tools (extras),uninstall Llist, als txt speichern. öffnen. hinter, jedes von dir benötigte programm, schreibe notwendig. hinter, jedes, von dir nicht benötigte, unnötig. hinter, dir unbekannte, unbekannt. liste posten.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
04.03.2013, 20:38 | #9 |
| Firefox sowie Internet Explorer starten nicht mehr Hi, ich hoffe das stimmt so Code:
ATTFilter 3DPower B12.0215.1 GIGABYTE 04.11.2012 1.00.0000 (notwendig) @BIOS GIGABYTE 04.11.2012 2.24 (notwendig) Adobe Flash Player 11 Plugin Adobe Systems Incorporated 27.02.2013 6,00MB 11.6.602.171 (notwendig) Adobe Photoshop CS3 Adobe Systems Incorporated 15.11.2012 1,06GB 10.0 (notwendig) Adobe Reader XI (11.0.02) - Deutsch Adobe Systems Incorporated 21.02.2013 133MB 11.0.02 (notwendig) Apple Application Support Apple Inc. 05.02.2013 65,0MB 2.3.2 (unnötig) Apple Mobile Device Support Apple Inc. 05.02.2013 25,1MB 6.0.1.3 (unnötig) Apple Software Update Apple Inc. 05.02.2013 2,38MB 2.1.3.127 (unnötig) ASUS Gamer OSD ASUSTeK COMPUTER INC. 04.11.2012 3.07.0419 (notwendig) ASUS Smart Doctor ASUSTek COMPUTER INC. 04.11.2012 26,4MB 5.80 (notwendig) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 04.11.2012 2.0.4.4 (notwendig) AutoGreen B12.0206.1 GIGABYTE 04.11.2012 4,77MB 1.00.0000 (unbekannt) Battlefield 3™ Electronic Arts 05.11.2012 1.4.0.0 (notwendig) Bitdefender Internet Security 2013 Bitdefender 04.02.2013 16.16.0.1348 (notwendig) BitTorrent BitTorrent Inc. 13.11.2012 7.7.2.28499 (notwendig) Bonjour Apple Inc. 05.02.2013 2,00MB 3.0.0.10 (unbekannt) CCleaner Piriform 25.02.2013 3.28 (notwendig) CPUID CPU-Z 1.62.0 03.01.2013 3,20MB (notwendig) DAEMON Tools Lite DT Soft Ltd 04.11.2012 4.45.4.0316 (notwendig) Diablo III Blizzard Entertainment 13.02.2013 1.0.7.14633 (notwendig) Easy Tune 6 B12.0402.1 GIGABYTE 04.11.2012 73,8MB 1.00.0000 (unnötig) ESN Sonar ESN Social Software AB 04.01.2013 0.70.4 (notwendig) Far Cry 3 Ubisoft 07.12.2012 1.04 (notwendig) Fraps (remove only) 04.11.2012 (notwendig) Google Chrome Google Inc. 03.03.2013 25.0.1364.97 Intel(R) Control Center Intel Corporation 04.11.2012 1.2.1.1007 (unbekannt) Intel(R) Management Engine Components Intel Corporation 01.03.2013 8.0.0.1351 (unbekannt) Intel(R) Rapid Storage Technology Intel Corporation 04.11.2012 11.0.0.1032 (unbekannt) Intel® Trusted Connect Service Client Intel Corporation 04.11.2012 10,6MB 1.23.216.0 (unbekannt) iTunes Apple Inc. 05.02.2013 189MB 11.0.1.12 (notwendig) Left 4 Dead 2 Valve 15.11.2012 (notwendig) Malwarebytes Anti-Malware Version 1.70.0.1100 Malwarebytes Corporation 27.01.2013 18,4MB 1.70.0.1100 (notwendig) marvell 91xx driver Marvell 04.11.2012 1.2.0.1010 (unbekannt) Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft Corporation 05.11.2012 2,93MB 4.0.30319 (notwendig) Microsoft .NET Framework 4.5 Microsoft Corporation 04.01.2013 38,8MB 4.5.50709 (notwendig) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 04.11.2012 596KB 9.0.30729 (unbekannt) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 04.02.2013 1,41MB 10.0.40219 (unbekannt) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 04.11.2012 11,1MB 10.0.40219 (unbekannt) Mozilla Firefox 19.0 (x86 de) Mozilla 03.03.2013 43,6MB 19.0 (notwendig) Mozilla Maintenance Service Mozilla 03.03.2013 217KB 19.0 (notwendig) NVIDIA 3D Vision Controller-Treiber 314.07 NVIDIA Corporation 01.03.2013 314.07 (notwendig) NVIDIA 3D Vision Treiber 314.07 NVIDIA Corporation 01.03.2013 314.07 (notwendig) NVIDIA Grafiktreiber 314.07 NVIDIA Corporation 01.03.2013 314.07 (notwendig) NVIDIA HD-Audiotreiber 1.3.23.1 NVIDIA Corporation 01.03.2013 1.3.23.1 (notwendig) NVIDIA PhysX-Systemsoftware 9.12.1031 NVIDIA Corporation 09.12.2012 9.12.1031 (notwendig) NVIDIA Update 1.12.12 NVIDIA Corporation 01.03.2013 1.12.12 (notwendig) ON_OFF Charge B11.1102.1 GIGABYTE 04.11.2012 1.00.0001 (notwendig) Origin Electronic Arts, Inc. 04.11.2012 9.0.15.65 (notwendig) PunkBuster Services Even Balance, Inc. 07.12.2012 0.993 Skype™ 6.1 Skype Technologies S.A. 05.02.2013 21,1MB 6.1.129 (notwendig) SpeedFan (remove only) 25.02.2013 (unnötig) Steam Valve Corporation 04.11.2012 1,59MB 1.0.0.0 (notwendig) TeamViewer 7 TeamViewer 13.11.2012 7.0.15723 (unnötig) Uplay Ubisoft 07.12.2012 2.0 (notwendig) VIA Plattform-Geräte-Manager VIA Technologies, Inc. 04.11.2012 2,62MB 1.39 (unbekannt) Visual Studio 2010 x64 Redistributables AVG Technologies 29.01.2013 12,4MB 13.0.0.1 (unbekannt) Wiggles 17.01.2013 (unnötig) WinRAR 4.20 (64-Bit) win.rar GmbH 04.11.2012 4.20.0 (notwendig) XviD MPEG-4 Video Codec XviD Development Team 04.11.2012 (unnötig) |
04.03.2013, 20:55 | #10 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr deinstaliere: Adobe Flash Player alle Adobe - Adobe Flash Player installieren neueste version laden, instalieren. bitte auch mal den adobe reader wie folgt konfigurieren: adobe reader öffnen, bearbeiten, voreinstellungen. allgemein: nur zertifizierte zusatz module verwenden, anhaken. Sicherheit (erweitert) Erweiterte Sicherheit anhaken und alle Dateien auswählen. internet: hier sollte alles deaktiviert werden, es ist sehr unsicher pdfs automatisch zu öffnen, zu downloaden etc. es ist immer besser diese direkt abzuspeichern da man nur so die kontrolle hat was auf dem pc vor geht. bei javascript den haken bei java script verwenden raus nehmen bei updater, automatisch instalieren wählen. übernehmen /ok deinstaliere: Easy SpeedFan TeamViewer Wiggles XviD Öffne CCleaner, analysieren, starten, PC neustarten Downloade Dir bitte AdwCleaner auf deinen Desktop.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
04.03.2013, 21:20 | #11 |
| Firefox sowie Internet Explorer starten nicht mehr soo, alle Schritte befolgt. Code:
ATTFilter # AdwCleaner v2.113 - Datei am 04/03/2013 um 21:12:55 erstellt # Aktualisiert am 23/02/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Johannes - JOHANNES-PC # Bootmodus : Normal # Ausgeführt unter : C:\Users\Johannes\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml Datei Gelöscht : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\vpxo1osk.default\searchplugins\mngr.xml Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\Users\Johannes\AppData\Roaming\Babylon ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKCU\Software\5353de8bb26dbf46 Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKLM\Software\Babylon Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Schlüssel Gelöscht : HKLM\Software\PIP Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5353de8bb26dbf46 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph ***** [Internet Browser] ***** -\\ Internet Explorer v9.0.8112.16464 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v19.0 (de) Datei : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\jpm4d2q4.default-1362086217186\prefs.js [OK] Die Datei ist sauber. Datei : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\kqbthfwj.default-1362085148168\prefs.js [OK] Die Datei ist sauber. Datei : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\p48am80z.default-1362088556205\prefs.js [OK] Die Datei ist sauber. Datei : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\vpxo1osk.default\prefs.js C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\vpxo1osk.default\user.js ... Gelöscht ! Gelöscht : user_pref("extensions.BabylonToolbar.admin", false); Gelöscht : user_pref("extensions.BabylonToolbar.aflt", "babsst"); Gelöscht : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}"); Gelöscht : user_pref("extensions.BabylonToolbar.dfltLng", "en"); Gelöscht : user_pref("extensions.BabylonToolbar.excTlbr", false); Gelöscht : user_pref("extensions.BabylonToolbar.id", "8e0b6ac7000000000000902b34382990"); Gelöscht : user_pref("extensions.BabylonToolbar.instlDay", "15664"); Gelöscht : user_pref("extensions.BabylonToolbar.instlRef", "sst"); Gelöscht : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); Gelöscht : user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); Gelöscht : user_pref("extensions.BabylonToolbar.tlbrId", "tb9"); Gelöscht : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...] Gelöscht : user_pref("extensions.BabylonToolbar.vrsn", "1.8.3.8"); Gelöscht : user_pref("extensions.BabylonToolbar.vrsni", "1.8.3.8"); Gelöscht : user_pref("extensions.BabylonToolbar_i.newTab", true); Gelöscht : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=110824&tt=4712_[...] Gelöscht : user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); Gelöscht : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.3.817:07:47"); Datei : C:\Users\Johannes\AppData\Roaming\Mozilla\Firefox\Profiles\vv82dnml.default-1362086429859\prefs.js [OK] Die Datei ist sauber. -\\ Google Chrome v25.0.1364.97 Datei : C:\Users\Johannes\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[R1].txt - [4815 octets] - [04/03/2013 21:12:15] AdwCleaner[S1].txt - [4693 octets] - [04/03/2013 21:12:55] ########## EOF - C:\AdwCleaner[S1].txt - [4753 octets] ########## |
04.03.2013, 21:25 | #12 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr Hi neustarten. Hitmanpro laden, HitmanPro - Download - Filepony doppelklicken, Lizenz, Testlizenz Scan, nichts löschen. Auf weiter, Log als XML exportieren und posten, bzw packen und anhängen
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
04.03.2013, 21:52 | #13 |
| Firefox sowie Internet Explorer starten nicht mehr HitmanPro |
04.03.2013, 22:04 | #14 |
/// Malware-holic | Firefox sowie Internet Explorer starten nicht mehr alles löschen außer diejenigen, die zu PunkBuster gehören. neustarten, neues OTL log bitte
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
04.03.2013, 22:13 | #15 |
| Firefox sowie Internet Explorer starten nicht mehr sorry für die dumme frage aber die sachen die der tdsskiller gefunden hat auch schon löschen? |
Themen zu Firefox sowie Internet Explorer starten nicht mehr |
abgesicherten, anhang, bitdefender, board, defender, explorer, files, firefox, gmer, hoffe, interne, internet, internet explorer, langsamer, modus, nicht mehr, nichts, problem, starte, starten, starten nicht, trojaner, trojaner board, weiterhelfen, windows, zunge |