|
Plagegeister aller Art und deren Bekämpfung: Browser laufen extrem langsam!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
09.06.2013, 20:34 | #1 |
| Browser laufen extrem langsam! Hallo Leute! Seit einigen Taggen laufen meine Browser extrem langsam. Chrome sowohl auch der IE. Alles andere wie z.B. Outlook oder auch meine XBOX laufen normal. Ich habe mal mit OTL gescannt. Ich hoff ihr könnt mir helfen. Danke und bis dahin! Lg Marco Hier Das Ergibnis der OTL.txt: OTL logfile created on: 09.06.2013 21:03:27 - Run 2 OTL by OldTimer - Version 3.2.57.0 Folder = C:\Users\MAJU2903\Desktop Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16576) Locale: 00000c07 | Country: Österreich | Language: DEA | Date Format: dd.MM.yyyy 3,00 Gb Total Physical Memory | 1,97 Gb Available Physical Memory | 65,85% Memory free 6,00 Gb Paging File | 4,79 Gb Available in Paging File | 79,90% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 149,05 Gb Total Space | 24,49 Gb Free Space | 16,43% Space Free | Partition Type: NTFS Computer Name: MAJU2903-PC | User Name: MAJU2903 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) PRC - C:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) PRC - C:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) PRC - C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Programme\AVAST Software\Avast\AvastUI.exe (AVAST Software) PRC - C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software) PRC - C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation) PRC - C:\Programme\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) PRC - C:\Programme\Sony\VAIO Update\VUAgent.exe (Sony Corporation) PRC - C:\Users\MAJU2903\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Programme\Canon\IJPLM\ijplmsvc.exe () PRC - C:\Windows\explorer.exe (Microsoft Corporation) PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) PRC - C:\Programme\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ========== Modules (No Company Name) ========== ========== Win32 Services (SafeList) ========== SRV - (SDWSCService) -- C:\Program Files\Spybot File not found SRV - (SDUpdateService) -- C:\Program Files\Spybot File not found SRV - (SDScannerService) -- C:\Program Files\Spybot File not found SRV - (AdobeARMservice) -- C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (avast! Antivirus) -- C:\Programme\AVAST Software\Avast\AvastSvc.exe (AVAST Software) SRV - (MBAMService) -- C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) SRV - (MBAMScheduler) -- C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) SRV - (VUAgent) -- C:\Programme\Sony\VAIO Update\VUAgent.exe (Sony Corporation) SRV - (IJPLMSVC) -- C:\Programme\Canon\IJPLM\ijplmsvc.exe () SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation) SRV - (odserv) -- C:\Programme\Common Files\microsoft shared\OFFICE12\ODSERV.EXE (Microsoft Corporation) SRV - (WMPNetworkSvc) -- C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation) SRV - (SwitchBoard) -- C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation) SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation) SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV - (Microsoft Office Groove Audit Service) -- C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation) SRV - (ose) -- C:\Programme\Common Files\microsoft shared\Source Engine\OSE.EXE (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV - (aswSnx) -- C:\Windows\System32\drivers\aswSnx.sys (AVAST Software) DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (AVAST Software) DRV - (aswVmm) -- C:\Windows\System32\drivers\aswVmm.sys () DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr2.sys (AVAST Software) DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (AVAST Software) DRV - (aswRvrt) -- C:\Windows\System32\drivers\aswRvrt.sys () DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (AVAST Software) DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (AVAST Software) DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation) DRV - (ssudmdm) -- C:\Windows\System32\drivers\ssudmdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV - (dg_ssudbus) -- C:\Windows\System32\drivers\ssudbus.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV - (RdpVideoMiniport) -- C:\Windows\System32\drivers\rdpvideominiport.sys (Microsoft Corporation) DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV - (vmbus) -- C:\Windows\System32\drivers\vmbus.sys (Microsoft Corporation) DRV - (storflt) -- C:\Windows\System32\drivers\vmstorfl.sys (Microsoft Corporation) DRV - (storvsc) -- C:\Windows\System32\drivers\storvsc.sys (Microsoft Corporation) DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation) DRV - (VMBusHID) -- C:\Windows\System32\drivers\VMBusHID.sys (Microsoft Corporation) DRV - (s3cap) -- C:\Windows\System32\drivers\vms3cap.sys (Microsoft Corporation) DRV - (huawei_enumerator) -- C:\Windows\System32\drivers\ew_jubusenum.sys (Huawei Technologies Co., Ltd.) DRV - (USB28xxOEM) -- C:\Windows\System32\drivers\emOEM.sys (eMPIA Technology, Inc.) DRV - (USB28xxBGA) -- C:\Windows\System32\drivers\emBDA.sys (eMPIA Technology, Inc.) DRV - (hwdatacard) -- C:\Windows\System32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.) DRV - (massfilter) -- C:\Windows\System32\drivers\massfilter.sys (MBB Incorporated) DRV - (BthAvrcp) -- C:\Windows\System32\drivers\BthAvrcp.sys (CSR, plc) DRV - (yukonw7) -- C:\Windows\System32\drivers\yk62x86.sys (Marvell) DRV - (netw5v32) -- C:\Windows\System32\drivers\netw5v32.sys (Intel Corporation) DRV - (FiltUSBET) -- C:\Windows\System32\drivers\etFilter.sys (eMPIA Technology Inc.) DRV - (DCamUSBET) -- C:\Windows\System32\drivers\etDevice.sys (eMPIA Technology, Inc.) DRV - (ScanUSBET) -- C:\Windows\System32\drivers\etScan.sys (eMPIA Technology, Inc.) DRV - (SFEP) -- C:\Windows\System32\drivers\SFEP.sys (Sony Corporation) DRV - (NETw4v32) -- C:\Windows\System32\drivers\NETw4v32.sys (Intel Corporation) DRV - (ApfiltrService) -- C:\Windows\System32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\..\SearchScopes,DefaultScope = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-at IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 05 11 E0 35 14 01 CD 01 [binary data] IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = localhost:21320 ========== FireFox ========== FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) [2013.03.01 08:51:12 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions ========== Chrome ========== CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{googleriginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{go ogle:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParam eter} CHR - homepage: hxxp://www.delta-search.com/?affID=119828&babsrc=HP_ss&mntrId=28de45ed0000000000000013a9c336f6 CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\27.0.1453.110\PepperFlash\pepflashplayer.dll CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\27.0.1453.110\pdf.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll O1 HOSTS File: ([2012.08.17 07:32:00 | 000,002,248 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com O1 - Hosts: 127.0.0.1 adobeereg.com O1 - Hosts: 127.0.0.1 activate.adobe.com O1 - Hosts: 127.0.0.1 practivate.adobe.com O1 - Hosts: 127.0.0.1 ereg.adobe.com O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com O1 - Hosts: 127.0.0.1 wip3.adobe.com O1 - Hosts: 127.0.0.1 activate-sea.adobe.com O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com O1 - Hosts: 127.0.0.1 3dns.adobe.com O1 - Hosts: 127.0.0.1 3dns-1.adobe.com O1 - Hosts: 127.0.0.1 3dns-2.adobe.com O1 - Hosts: 127.0.0.1 3dns-3.adobe.com O1 - Hosts: 127.0.0.1 3dns-4.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-1.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-4.adobe.com O1 - Hosts: 127.0.0.1 adobe-dns-5.adobe.com O1 - Hosts: 127.0.0.1 hh-software.com O1 - Hosts: 26 more lines... O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Programme\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Programme\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found. O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [CanonQuickMenu] C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE (CANON INC.) O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) O4 - HKCU..\Run: [AdobeBridge] File not found O4 - HKCU..\Run: [Session-Logger] C:\Programme\IntelligentShutdown\IntelligentShutdown.exe () O4 - HKCU..\Run: [Spybot-S&D Cleaning] C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe (Safer-Networking Ltd.) O4 - Startup: C:\Users\MAJU2903\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk = C:\Programme\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\MAJU2903\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7C285CFC-15B8-4300-B69C-D85134539EAA}: DhcpNameServer = 10.0.0.138 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9BDE9971-5247-4D59-9983-AA3F8D4DA393}: DhcpNameServer = 10.0.0.138 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2013.06.09 17:51:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2013.06.09 17:51:12 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2013.06.07 06:23:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2013.06.07 06:22:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 [2013.06.07 06:22:11 | 000,015,224 | ---- | C] (Safer Networking Limited) -- C:\Windows\System32\sdnclean.exe [2013.06.07 06:21:28 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2 [2013.06.04 13:39:54 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\Anja [2013.06.04 13:34:41 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\2010 [2013.06.03 10:12:26 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\Fotobuch-Dateien [2013.06.03 09:32:52 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\AppData\Local\HappyFoto-Designer [2013.05.31 19:17:16 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\MARCO REINDL HANDY [2013.05.31 15:19:58 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonIJMIG [2013.05.27 18:50:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free MP4 to AVI Converter [2013.05.27 18:50:01 | 000,000,000 | ---D | C] -- C:\Program Files\pazera-software [2013.05.24 09:33:53 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\video [2013.05.23 04:07:26 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\(39) Facebook_files [2013.05.21 14:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode [2013.05.21 14:21:27 | 000,000,000 | ---D | C] -- C:\ProgramData\StaxRip [2013.05.21 05:38:37 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\Desktop\2013 [2013.05.19 08:57:54 | 000,000,000 | ---D | C] -- C:\Users\MAJU2903\AppData\Roaming\Canon [2013.05.19 08:57:50 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonIJQuickMenu [2013.05.19 08:57:38 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonIJEGV [2013.05.19 08:55:23 | 000,000,000 | ---D | C] -- C:\ProgramData\CanonIJPLM [2013.05.19 08:24:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series Benutzerregistrierung [2013.05.19 08:23:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON [2013.05.19 08:23:36 | 000,000,000 | ---D | C] -- C:\ProgramData\CanonIJWSpt [2013.05.19 08:16:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities [2013.05.19 08:15:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series Manual [2013.05.19 08:14:21 | 000,000,000 | -H-D | C] -- C:\Windows\System32\CanonIJ Uninstaller Information [2013.05.19 08:14:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series [2013.05.19 08:13:23 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2013.05.19 08:12:34 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2013.05.13 07:20:25 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll [2013.05.13 07:20:25 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2013.05.13 07:19:47 | 000,000,000 | ---D | C] -- C:\Intel ========== Files - Modified Within 30 Days ========== [2013.06.09 21:00:53 | 000,017,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013.06.09 21:00:53 | 000,017,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013.06.09 20:53:26 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2013.06.09 20:53:26 | 000,000,434 | ---- | M] () -- C:\Windows\tasks\Wise Auto Shutdown Task.job [2013.06.09 20:53:05 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013.06.09 20:53:00 | 2414,682,112 | -HS- | M] () -- C:\hiberfil.sys [2013.06.09 20:31:04 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2013.06.09 18:05:18 | 000,696,870 | ---- | M] () -- C:\Windows\System32\perfh007.dat [2013.06.09 18:05:18 | 000,652,148 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2013.06.09 18:05:18 | 000,148,134 | ---- | M] () -- C:\Windows\System32\perfc007.dat [2013.06.09 18:05:18 | 000,121,080 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2013.06.09 17:51:39 | 000,001,071 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2013.06.09 17:51:18 | 000,000,969 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2013.06.07 06:22:35 | 000,002,123 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2013.06.05 10:47:51 | 001,661,714 | ---- | M] () -- C:\Users\MAJU2903\Documents\20130605_091238.jpg [2013.06.05 07:31:22 | 000,027,785 | ---- | M] () -- C:\Users\MAJU2903\Desktop\Fotobuch.pbf [2013.06.04 21:39:49 | 000,002,129 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2013.06.01 15:51:22 | 000,380,163 | ---- | M] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370095016640.jpg [2013.05.31 18:39:36 | 000,390,484 | ---- | M] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370018712305.jpg [2013.05.31 18:34:34 | 000,397,555 | ---- | M] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370017743933.jpg [2013.05.31 15:42:45 | 000,026,726 | ---- | M] () -- C:\Users\MAJU2903\Desktop\anzeige.jpg [2013.05.31 15:22:00 | 000,287,883 | ---- | M] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370003952977.jpg [2013.05.30 13:07:04 | 001,975,600 | ---- | M] () -- C:\Users\MAJU2903\Documents\20130527_140025.jpg [2013.05.28 19:54:16 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt [2013.05.27 18:50:05 | 000,001,233 | ---- | M] () -- C:\Users\Public\Desktop\Pazera Free MP4 to AVI Converter.lnk [2013.05.23 04:07:26 | 000,954,945 | ---- | M] () -- C:\Users\MAJU2903\Desktop\(39) Facebook.htm [2013.05.22 19:20:03 | 006,744,772 | ---- | M] () -- C:\Users\MAJU2903\Desktop\when love.psd [2013.05.19 08:23:43 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Canon Quick Menu.lnk [2013.05.19 08:15:43 | 000,002,302 | ---- | M] () -- C:\Users\Public\Desktop\Canon MP230 series Online-Handbuch.lnk [2013.05.16 03:31:16 | 003,933,968 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2013.05.13 00:27:52 | 000,777,334 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 23.09.06.jpg [2013.05.13 00:27:47 | 000,718,840 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 23.09.11.jpg [2013.05.13 00:27:06 | 000,939,996 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.03.09.jpg [2013.05.13 00:27:02 | 000,818,027 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.01.01.jpg [2013.05.13 00:26:11 | 000,745,472 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.34.40.jpg [2013.05.13 00:25:55 | 000,774,144 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.34.20.jpg [2013.05.13 00:25:49 | 000,720,896 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.13.53.jpg [2013.05.13 00:25:45 | 000,827,392 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.03.29.jpg [2013.05.13 00:25:39 | 000,716,800 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.35.23.jpg [2013.05.13 00:25:24 | 000,688,128 | ---- | M] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.35.19.jpg [2013.05.11 19:04:18 | 081,806,230 | ---- | M] () -- C:\Users\MAJU2903\Documents\20130511_185651.mp4 ========== Files Created - No Company Name ========== [2013.06.09 17:51:18 | 000,000,969 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2013.06.07 06:22:35 | 000,002,135 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk [2013.06.07 06:22:35 | 000,002,123 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2013.06.05 10:47:40 | 001,661,714 | ---- | C] () -- C:\Users\MAJU2903\Documents\20130605_091238.jpg [2013.06.03 10:12:53 | 000,027,785 | ---- | C] () -- C:\Users\MAJU2903\Desktop\Fotobuch.pbf [2013.06.01 15:51:20 | 000,380,163 | ---- | C] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370095016640.jpg [2013.05.31 18:39:33 | 000,390,484 | ---- | C] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370018712305.jpg [2013.05.31 18:34:32 | 000,397,555 | ---- | C] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370017743933.jpg [2013.05.31 15:43:15 | 000,026,726 | ---- | C] () -- C:\Users\MAJU2903\Desktop\anzeige.jpg [2013.05.31 15:18:50 | 000,287,883 | ---- | C] () -- C:\Users\MAJU2903\Documents\PhotoGrid_1370003952977.jpg [2013.05.30 13:06:52 | 001,975,600 | ---- | C] () -- C:\Users\MAJU2903\Documents\20130527_140025.jpg [2013.05.28 19:54:17 | 000,174,664 | ---- | C] () -- C:\Windows\System32\drivers\aswVmm.sys [2013.05.28 19:54:16 | 000,049,376 | ---- | C] () -- C:\Windows\System32\drivers\aswRvrt.sys [2013.05.27 18:50:05 | 000,001,233 | ---- | C] () -- C:\Users\Public\Desktop\Pazera Free MP4 to AVI Converter.lnk [2013.05.23 04:07:25 | 000,954,945 | ---- | C] () -- C:\Users\MAJU2903\Desktop\(39) Facebook.htm [2013.05.22 19:20:00 | 006,744,772 | ---- | C] () -- C:\Users\MAJU2903\Desktop\when love.psd [2013.05.19 08:23:43 | 000,001,971 | ---- | C] () -- C:\Users\Public\Desktop\Canon Quick Menu.lnk [2013.05.19 08:15:43 | 000,002,302 | ---- | C] () -- C:\Users\Public\Desktop\Canon MP230 series Online-Handbuch.lnk [2013.05.19 08:14:14 | 000,073,984 | ---- | C] () -- C:\Windows\System32\CNC175FD.TBL [2013.05.13 00:26:07 | 000,745,472 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.34.40.jpg [2013.05.13 00:26:01 | 000,939,996 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.03.09.jpg [2013.05.13 00:25:55 | 000,818,027 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.01.01.jpg [2013.05.13 00:25:50 | 000,774,144 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.34.20.jpg [2013.05.13 00:25:45 | 000,720,896 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.13.53.jpg [2013.05.13 00:25:39 | 000,827,392 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.03.29.jpg [2013.05.13 00:25:35 | 000,716,800 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.35.23.jpg [2013.05.13 00:25:29 | 000,777,334 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 23.09.06.jpg [2013.05.13 00:25:25 | 000,718,840 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 23.09.11.jpg [2013.05.13 00:25:20 | 000,688,128 | ---- | C] () -- C:\Users\MAJU2903\Documents\2013-05-12 22.35.19.jpg [2013.05.11 18:55:43 | 081,806,230 | ---- | C] () -- C:\Users\MAJU2903\Documents\20130511_185651.mp4 [2013.02.11 07:57:49 | 000,016,070 | ---- | C] () -- C:\Windows\German2.ini [2012.12.06 19:59:58 | 000,000,926 | ---- | C] () -- C:\Windows\posteriza.INI [2012.10.29 20:18:46 | 000,000,132 | ---- | C] () -- C:\Users\MAJU2903\AppData\Roaming\Adobe AIFF Format CS5 Prefs [2012.07.18 19:53:59 | 000,001,456 | ---- | C] () -- C:\Users\MAJU2903\AppData\Local\Adobe Für Web speichern 13.0 Prefs [2012.04.13 18:55:20 | 000,000,000 | ---- | C] () -- C:\Windows\iPlayer.INI [2012.04.06 17:26:15 | 000,000,410 | RHS- | C] () -- C:\ProgramData\ntuser.pol [2012.03.27 21:32:24 | 000,001,456 | ---- | C] () -- C:\Users\MAJU2903\AppData\Local\Adobe Für Web speichern 12.0 Prefs [2012.03.16 08:19:31 | 000,080,896 | ---- | C] () -- C:\Windows\System32\RDVGHelper.exe [2012.03.16 08:18:05 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe ========== LOP Check ========== [2012.07.26 17:12:09 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Amazon [2013.01.04 09:35:23 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Apowersoft [2013.03.01 08:58:13 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\ASCON Installer [2013.04.02 20:34:01 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Audacity [2013.05.04 13:18:26 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Avery [2012.10.04 17:11:23 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\AVG [2013.05.31 15:15:55 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Canon [2012.07.15 18:33:03 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant [2013.03.01 13:09:56 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\DesktopIconForAmazon [2013.03.01 08:50:48 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\DSite [2012.11.06 22:08:50 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\DVDVideoSoft [2012.04.29 17:34:38 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\DVDVideoSoftIEHelpers [2013.02.11 08:29:12 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\IN-MEDIAKG [2012.08.18 08:42:58 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\IrfanView [2012.03.13 21:36:42 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\MAGIX [2013.02.11 08:29:12 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\mresreg [2013.03.01 08:56:44 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\OCS [2012.11.06 22:08:32 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\OpenCandy [2013.03.01 08:56:58 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\Opera [2012.07.18 18:47:31 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\PDAppFlex [2012.03.24 08:04:13 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\RBotPlus [2012.10.21 18:57:52 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2012.11.06 22:10:57 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\TuneUp Software [2013.06.09 17:55:02 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\uTorrent [2013.01.04 17:57:51 | 000,000,000 | ---D | M] -- C:\Users\MAJU2903\AppData\Roaming\XMedia Recode [2013.03.14 05:36:15 | 000,032,630 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2013.06.09 20:53:26 | 000,000,434 | ---- | M] () -- C:\Windows\Tasks\Wise Auto Shutdown Task.job ========== Purity Check ========== ========== Alternate Data Streams ========== @Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:0C6951A3 < End of report > |
09.06.2013, 20:40 | #2 |
/// Malware-holic | Browser laufen extrem langsam! Hi,
__________________Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ |
09.06.2013, 21:04 | #3 |
| Browser laufen extrem langsam! Hallo Markus
__________________Danke für deine schnelle Hilfe! Lg Marco Hier die Log Datei: 21:53:49.0468 4636 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 21:53:49.0687 4636 ============================================================ 21:53:49.0687 4636 Current date / time: 2013/06/09 21:53:49.0687 21:53:49.0687 4636 SystemInfo: 21:53:49.0687 4636 21:53:49.0687 4636 OS Version: 6.1.7601 ServicePack: 1.0 21:53:49.0687 4636 Product type: Workstation 21:53:49.0687 4636 ComputerName: MAJU2903-PC 21:53:49.0687 4636 UserName: MAJU2903 21:53:49.0687 4636 Windows directory: C:\Windows 21:53:49.0687 4636 System windows directory: C:\Windows 21:53:49.0687 4636 Processor architecture: Intel x86 21:53:49.0687 4636 Number of processors: 2 21:53:49.0687 4636 Page size: 0x1000 21:53:49.0687 4636 Boot type: Normal boot 21:53:49.0687 4636 ============================================================ 21:53:50.0857 4636 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 21:53:50.0857 4636 ============================================================ 21:53:50.0857 4636 \Device\Harddisk0\DR0: 21:53:50.0857 4636 MBR partitions: 21:53:50.0857 4636 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12A18800 21:53:50.0857 4636 ============================================================ 21:53:50.0888 4636 C: <-> \Device\Harddisk0\DR0\Partition1 21:53:50.0888 4636 ============================================================ 21:53:50.0888 4636 Initialize success 21:53:50.0888 4636 ============================================================ 21:54:43.0147 0604 ============================================================ 21:54:43.0147 0604 Scan started 21:54:43.0147 0604 Mode: Manual; SigCheck; TDLFS; 21:54:43.0147 0604 ============================================================ 21:54:43.0662 0604 ================ Scan system memory ======================== 21:54:43.0662 0604 System memory - ok 21:54:43.0662 0604 ================ Scan services ============================= 21:54:43.0942 0604 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 21:54:44.0223 0604 1394ohci - ok 21:54:44.0317 0604 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys 21:54:44.0348 0604 ACPI - ok 21:54:44.0395 0604 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 21:54:44.0457 0604 AcpiPmi - ok 21:54:44.0644 0604 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe 21:54:44.0676 0604 AdobeARMservice - ok 21:54:44.0722 0604 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 21:54:44.0754 0604 adp94xx - ok 21:54:44.0769 0604 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 21:54:44.0816 0604 adpahci - ok 21:54:44.0832 0604 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 21:54:44.0863 0604 adpu320 - ok 21:54:44.0894 0604 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 21:54:44.0925 0604 AeLookupSvc - ok 21:54:44.0988 0604 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys 21:54:45.0050 0604 AFD - ok 21:54:45.0097 0604 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys 21:54:45.0128 0604 agp440 - ok 21:54:45.0159 0604 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys 21:54:45.0190 0604 aic78xx - ok 21:54:45.0222 0604 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe 21:54:45.0268 0604 ALG - ok 21:54:45.0315 0604 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys 21:54:45.0331 0604 aliide - ok 21:54:45.0378 0604 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys 21:54:45.0409 0604 amdagp - ok 21:54:45.0471 0604 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys 21:54:45.0502 0604 amdide - ok 21:54:45.0643 0604 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 21:54:45.0721 0604 AmdK8 - ok 21:54:45.0768 0604 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 21:54:45.0877 0604 AmdPPM - ok 21:54:45.0908 0604 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys 21:54:45.0939 0604 amdsata - ok 21:54:45.0955 0604 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 21:54:45.0986 0604 amdsbs - ok 21:54:46.0017 0604 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys 21:54:46.0048 0604 amdxata - ok 21:54:46.0142 0604 [ 7C2F57BCE81FA74933F0E1C84A97C9DB ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys 21:54:46.0158 0604 ApfiltrService - ok 21:54:46.0204 0604 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys 21:54:46.0282 0604 AppID - ok 21:54:46.0314 0604 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll 21:54:46.0407 0604 AppIDSvc - ok 21:54:46.0438 0604 [ EACFDF31921F51C097629F1F3C9129B4 ] Appinfo C:\Windows\System32\appinfo.dll 21:54:46.0501 0604 Appinfo - ok 21:54:46.0532 0604 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll 21:54:46.0579 0604 AppMgmt - ok 21:54:46.0610 0604 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys 21:54:46.0641 0604 arc - ok 21:54:46.0657 0604 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 21:54:46.0688 0604 arcsas - ok 21:54:46.0844 0604 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 21:54:46.0875 0604 aspnet_state - ok 21:54:46.0922 0604 [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys 21:54:46.0969 0604 aswFsBlk - ok 21:54:47.0016 0604 [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys 21:54:47.0047 0604 aswMonFlt - ok 21:54:47.0094 0604 [ FFE9A993B3EC2908FECB1DF2C39148BB ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys 21:54:47.0125 0604 aswRdr - ok 21:54:47.0203 0604 [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys 21:54:47.0234 0604 aswRvrt - ok 21:54:47.0328 0604 [ 6CAB0A5991C5C0FC63F5E66593E71D7E ] aswSnx C:\Windows\system32\drivers\aswSnx.sys 21:54:47.0374 0604 aswSnx - ok 21:54:47.0390 0604 [ 99102F60F344BEBAF4F6114514FD28D3 ] aswSP C:\Windows\system32\drivers\aswSP.sys 21:54:47.0421 0604 aswSP - ok 21:54:47.0484 0604 [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi C:\Windows\system32\drivers\aswTdi.sys 21:54:47.0515 0604 aswTdi - ok 21:54:47.0593 0604 [ 16B8E3CD50A460EC32CA680C8210A0A9 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys 21:54:47.0608 0604 aswVmm - ok 21:54:47.0640 0604 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 21:54:47.0718 0604 AsyncMac - ok 21:54:47.0749 0604 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys 21:54:47.0780 0604 atapi - ok 21:54:47.0858 0604 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 21:54:47.0936 0604 AudioEndpointBuilder - ok 21:54:47.0967 0604 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll 21:54:48.0030 0604 Audiosrv - ok 21:54:48.0092 0604 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe 21:54:48.0123 0604 avast! Antivirus - ok 21:54:48.0170 0604 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll 21:54:48.0248 0604 AxInstSV - ok 21:54:48.0295 0604 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys 21:54:48.0357 0604 b06bdrv - ok 21:54:48.0404 0604 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 21:54:48.0451 0604 b57nd60x - ok 21:54:48.0482 0604 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll 21:54:48.0560 0604 BDESVC - ok 21:54:48.0576 0604 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys 21:54:48.0669 0604 Beep - ok 21:54:48.0716 0604 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll 21:54:48.0810 0604 BFE - ok 21:54:48.0888 0604 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll 21:54:48.0997 0604 BITS - ok 21:54:49.0028 0604 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 21:54:49.0075 0604 blbdrive - ok 21:54:49.0153 0604 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 21:54:49.0215 0604 bowser - ok 21:54:49.0231 0604 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 21:54:49.0278 0604 BrFiltLo - ok 21:54:49.0309 0604 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 21:54:49.0371 0604 BrFiltUp - ok 21:54:49.0402 0604 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll 21:54:49.0449 0604 Browser - ok 21:54:49.0480 0604 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys 21:54:49.0527 0604 Brserid - ok 21:54:49.0558 0604 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 21:54:49.0605 0604 BrSerWdm - ok 21:54:49.0621 0604 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 21:54:49.0683 0604 BrUsbMdm - ok 21:54:49.0699 0604 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 21:54:49.0746 0604 BrUsbSer - ok 21:54:49.0808 0604 [ DB99076533FFB38CBEC8AC88E4535850 ] BthAvrcp C:\Windows\system32\DRIVERS\BthAvrcp.sys 21:54:49.0870 0604 BthAvrcp - ok 21:54:49.0980 0604 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys 21:54:50.0058 0604 BthEnum - ok 21:54:50.0089 0604 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 21:54:50.0136 0604 BTHMODEM - ok 21:54:50.0214 0604 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys 21:54:50.0260 0604 BthPan - ok 21:54:50.0307 0604 [ 1153DE2E4F5941E10C399CB5592F78A1 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys 21:54:50.0354 0604 BTHPORT - ok 21:54:50.0385 0604 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll 21:54:50.0448 0604 bthserv - ok 21:54:50.0479 0604 [ C81E9413A25A439F436B1D4B6A0CF9E9 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys 21:54:50.0526 0604 BTHUSB - ok 21:54:50.0557 0604 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 21:54:50.0635 0604 cdfs - ok 21:54:50.0682 0604 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys 21:54:50.0760 0604 cdrom - ok 21:54:50.0806 0604 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll 21:54:50.0869 0604 CertPropSvc - ok 21:54:50.0916 0604 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 21:54:50.0947 0604 circlass - ok 21:54:50.0978 0604 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys 21:54:51.0025 0604 CLFS - ok 21:54:51.0103 0604 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 21:54:51.0134 0604 clr_optimization_v2.0.50727_32 - ok 21:54:51.0165 0604 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 21:54:51.0181 0604 clr_optimization_v4.0.30319_32 - ok 21:54:51.0212 0604 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 21:54:51.0243 0604 CmBatt - ok 21:54:51.0274 0604 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys 21:54:51.0306 0604 cmdide - ok 21:54:51.0352 0604 [ 42F158036BD4C2FF3122BF142E60E6FD ] CNG C:\Windows\system32\Drivers\cng.sys 21:54:51.0399 0604 CNG - ok 21:54:51.0415 0604 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 21:54:51.0446 0604 Compbatt - ok 21:54:51.0493 0604 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 21:54:51.0540 0604 CompositeBus - ok 21:54:51.0540 0604 COMSysApp - ok 21:54:51.0555 0604 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 21:54:51.0586 0604 crcdisk - ok 21:54:51.0649 0604 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll 21:54:51.0711 0604 CryptSvc - ok 21:54:51.0774 0604 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys 21:54:51.0836 0604 CSC - ok 21:54:51.0914 0604 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll 21:54:51.0961 0604 CscService - ok 21:54:52.0008 0604 [ 89C5816B518C62EC4EF9AA717EBA4CC2 ] DCamUSBET C:\Windows\system32\DRIVERS\etDevice.sys 21:54:52.0054 0604 DCamUSBET - ok 21:54:52.0117 0604 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll 21:54:52.0195 0604 DcomLaunch - ok 21:54:52.0242 0604 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll 21:54:52.0304 0604 defragsvc - ok 21:54:52.0366 0604 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 21:54:52.0444 0604 DfsC - ok 21:54:52.0491 0604 [ 6CC6C4B9D7B906A151AA094CA087B9F0 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 21:54:52.0522 0604 dg_ssudbus - ok 21:54:52.0569 0604 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll 21:54:52.0616 0604 Dhcp - ok 21:54:52.0647 0604 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys 21:54:52.0725 0604 discache - ok 21:54:52.0741 0604 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys 21:54:52.0772 0604 Disk - ok 21:54:52.0834 0604 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll 21:54:52.0881 0604 Dnscache - ok 21:54:52.0928 0604 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll 21:54:52.0990 0604 dot3svc - ok 21:54:53.0037 0604 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll 21:54:53.0100 0604 DPS - ok 21:54:53.0146 0604 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 21:54:53.0193 0604 drmkaud - ok 21:54:53.0256 0604 [ 16498EBC04AE9DD07049A8884B205C05 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 21:54:53.0302 0604 DXGKrnl - ok 21:54:53.0334 0604 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll 21:54:53.0396 0604 EapHost - ok 21:54:53.0552 0604 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys 21:54:53.0646 0604 ebdrv - ok 21:54:53.0677 0604 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe 21:54:53.0739 0604 EFS - ok 21:54:53.0833 0604 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 21:54:53.0911 0604 ehRecvr - ok 21:54:53.0942 0604 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe 21:54:53.0973 0604 ehSched - ok 21:54:54.0020 0604 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 21:54:54.0051 0604 elxstor - ok 21:54:54.0098 0604 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys 21:54:54.0145 0604 ErrDev - ok 21:54:54.0223 0604 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll 21:54:54.0301 0604 EventSystem - ok 21:54:54.0348 0604 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys 21:54:54.0426 0604 exfat - ok 21:54:54.0457 0604 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys 21:54:54.0535 0604 fastfat - ok 21:54:54.0597 0604 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe 21:54:54.0660 0604 Fax - ok 21:54:54.0691 0604 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys 21:54:54.0706 0604 fdc - ok 21:54:54.0738 0604 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll 21:54:54.0816 0604 fdPHost - ok 21:54:54.0831 0604 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll 21:54:54.0909 0604 FDResPub - ok 21:54:54.0940 0604 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 21:54:54.0956 0604 FileInfo - ok 21:54:54.0972 0604 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 21:54:55.0050 0604 Filetrace - ok 21:54:55.0096 0604 [ 030B53BFE027CFC35812F92DB0B0E5B0 ] FiltUSBET C:\Windows\system32\DRIVERS\etFilter.sys 21:54:55.0112 0604 FiltUSBET - ok 21:54:55.0143 0604 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 21:54:55.0190 0604 flpydisk - ok 21:54:55.0221 0604 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 21:54:55.0252 0604 FltMgr - ok 21:54:55.0330 0604 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll 21:54:55.0408 0604 FontCache - ok 21:54:55.0486 0604 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 21:54:55.0502 0604 FontCache3.0.0.0 - ok 21:54:55.0518 0604 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 21:54:55.0549 0604 FsDepends - ok 21:54:55.0596 0604 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 21:54:55.0627 0604 Fs_Rec - ok 21:54:55.0674 0604 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 21:54:55.0720 0604 fvevol - ok 21:54:55.0752 0604 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 21:54:55.0783 0604 gagp30kx - ok 21:54:55.0892 0604 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll 21:54:56.0079 0604 gpsvc - ok 21:54:56.0220 0604 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 21:54:56.0251 0604 gupdate - ok 21:54:56.0298 0604 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 21:54:56.0313 0604 gupdatem - ok 21:54:56.0329 0604 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 21:54:56.0376 0604 hcw85cir - ok 21:54:56.0438 0604 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 21:54:56.0500 0604 HdAudAddService - ok 21:54:56.0532 0604 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 21:54:56.0594 0604 HDAudBus - ok 21:54:56.0610 0604 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 21:54:56.0656 0604 HidBatt - ok 21:54:56.0672 0604 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 21:54:56.0719 0604 HidBth - ok 21:54:56.0750 0604 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 21:54:56.0781 0604 HidIr - ok 21:54:56.0812 0604 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll 21:54:56.0859 0604 hidserv - ok 21:54:56.0906 0604 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 21:54:56.0968 0604 HidUsb - ok 21:54:57.0015 0604 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll 21:54:57.0078 0604 hkmsvc - ok 21:54:57.0140 0604 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 21:54:57.0202 0604 HomeGroupListener - ok 21:54:57.0234 0604 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 21:54:57.0296 0604 HomeGroupProvider - ok 21:54:57.0343 0604 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 21:54:57.0358 0604 HpSAMD - ok 21:54:57.0421 0604 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys 21:54:57.0483 0604 HTTP - ok 21:54:57.0546 0604 [ BED3A9F86A637CC6C2C5296CD82423D8 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys 21:54:57.0592 0604 huawei_enumerator - ok 21:54:57.0655 0604 [ A89423D0132C8AB69BA621B6CE191714 ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys 21:54:57.0717 0604 hwdatacard - ok 21:54:57.0764 0604 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 21:54:57.0780 0604 hwpolicy - ok 21:54:57.0826 0604 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 21:54:57.0873 0604 i8042prt - ok 21:54:57.0920 0604 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 21:54:57.0951 0604 iaStorV - ok 21:54:58.0029 0604 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 21:54:58.0092 0604 idsvc - ok 21:54:58.0123 0604 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 21:54:58.0138 0604 iirsp - ok 21:54:58.0232 0604 [ EDCCC8C13B1EB882F77BA0ABB84566E7 ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE 21:54:58.0263 0604 IJPLMSVC - ok 21:54:58.0326 0604 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll 21:54:58.0419 0604 IKEEXT - ok 21:54:58.0435 0604 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys 21:54:58.0466 0604 intelide - ok 21:54:58.0482 0604 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 21:54:58.0513 0604 intelppm - ok 21:54:58.0544 0604 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 21:54:58.0622 0604 IPBusEnum - ok 21:54:58.0638 0604 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 21:54:58.0716 0604 IpFilterDriver - ok 21:54:58.0762 0604 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 21:54:58.0825 0604 iphlpsvc - ok 21:54:58.0856 0604 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 21:54:58.0887 0604 IPMIDRV - ok 21:54:58.0918 0604 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys 21:54:58.0996 0604 IPNAT - ok 21:54:59.0028 0604 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys 21:54:59.0059 0604 IRENUM - ok 21:54:59.0090 0604 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys 21:54:59.0121 0604 isapnp - ok 21:54:59.0168 0604 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 21:54:59.0215 0604 iScsiPrt - ok 21:54:59.0230 0604 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 21:54:59.0262 0604 kbdclass - ok 21:54:59.0340 0604 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 21:54:59.0402 0604 kbdhid - ok 21:54:59.0418 0604 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe 21:54:59.0449 0604 KeyIso - ok 21:54:59.0511 0604 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 21:54:59.0542 0604 KSecDD - ok 21:54:59.0589 0604 [ 5FE1ABF1AF591A3458C9CF24ED9A4D35 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 21:54:59.0620 0604 KSecPkg - ok 21:54:59.0652 0604 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll 21:54:59.0745 0604 KtmRm - ok 21:54:59.0776 0604 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll 21:54:59.0854 0604 LanmanServer - ok 21:54:59.0870 0604 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 21:54:59.0948 0604 LanmanWorkstation - ok 21:54:59.0995 0604 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 21:55:00.0073 0604 lltdio - ok 21:55:00.0120 0604 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll 21:55:00.0198 0604 lltdsvc - ok 21:55:00.0213 0604 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll 21:55:00.0260 0604 lmhosts - ok 21:55:00.0291 0604 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 21:55:00.0307 0604 LSI_FC - ok 21:55:00.0338 0604 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 21:55:00.0369 0604 LSI_SAS - ok 21:55:00.0385 0604 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 21:55:00.0416 0604 LSI_SAS2 - ok 21:55:00.0432 0604 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 21:55:00.0463 0604 LSI_SCSI - ok 21:55:00.0478 0604 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys 21:55:00.0541 0604 luafv - ok 21:55:00.0588 0604 [ 0B058116D3D4ECCA7DED38F16E0581B2 ] massfilter C:\Windows\system32\drivers\massfilter.sys 21:55:00.0634 0604 massfilter - ok 21:55:00.0697 0604 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 21:55:00.0728 0604 MBAMProtector - ok 21:55:00.0837 0604 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe 21:55:00.0868 0604 MBAMScheduler - ok 21:55:00.0931 0604 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 21:55:00.0962 0604 MBAMService - ok 21:55:01.0009 0604 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 21:55:01.0056 0604 Mcx2Svc - ok 21:55:01.0087 0604 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 21:55:01.0118 0604 megasas - ok 21:55:01.0134 0604 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 21:55:01.0165 0604 MegaSR - ok 21:55:01.0258 0604 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 21:55:01.0290 0604 Microsoft Office Groove Audit Service - ok 21:55:01.0321 0604 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll 21:55:01.0414 0604 MMCSS - ok 21:55:01.0430 0604 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys 21:55:01.0508 0604 Modem - ok 21:55:01.0539 0604 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 21:55:01.0586 0604 monitor - ok 21:55:01.0617 0604 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 21:55:01.0648 0604 mouclass - ok 21:55:01.0664 0604 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 21:55:01.0711 0604 mouhid - ok 21:55:01.0742 0604 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 21:55:01.0773 0604 mountmgr - ok 21:55:01.0804 0604 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys 21:55:01.0851 0604 mpio - ok 21:55:01.0867 0604 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 21:55:01.0929 0604 mpsdrv - ok 21:55:01.0992 0604 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll 21:55:02.0070 0604 MpsSvc - ok 21:55:02.0101 0604 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 21:55:02.0148 0604 MRxDAV - ok 21:55:02.0194 0604 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 21:55:02.0257 0604 mrxsmb - ok 21:55:02.0288 0604 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 21:55:02.0335 0604 mrxsmb10 - ok 21:55:02.0366 0604 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 21:55:02.0413 0604 mrxsmb20 - ok 21:55:02.0460 0604 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys 21:55:02.0491 0604 msahci - ok 21:55:02.0538 0604 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys 21:55:02.0553 0604 msdsm - ok 21:55:02.0584 0604 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe 21:55:02.0631 0604 MSDTC - ok 21:55:02.0694 0604 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys 21:55:02.0740 0604 Msfs - ok 21:55:02.0756 0604 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 21:55:02.0803 0604 mshidkmdf - ok 21:55:02.0850 0604 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 21:55:02.0881 0604 msisadrv - ok 21:55:02.0912 0604 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 21:55:02.0990 0604 MSiSCSI - ok 21:55:02.0990 0604 msiserver - ok 21:55:03.0021 0604 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 21:55:03.0068 0604 MSKSSRV - ok 21:55:03.0084 0604 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 21:55:03.0146 0604 MSPCLOCK - ok 21:55:03.0177 0604 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 21:55:03.0224 0604 MSPQM - ok 21:55:03.0240 0604 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 21:55:03.0271 0604 MsRPC - ok 21:55:03.0286 0604 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 21:55:03.0318 0604 mssmbios - ok 21:55:03.0333 0604 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 21:55:03.0396 0604 MSTEE - ok 21:55:03.0427 0604 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 21:55:03.0458 0604 MTConfig - ok 21:55:03.0474 0604 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys 21:55:03.0505 0604 Mup - ok 21:55:03.0552 0604 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll 21:55:03.0630 0604 napagent - ok 21:55:03.0645 0604 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 21:55:03.0692 0604 NativeWifiP - ok 21:55:03.0754 0604 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys 21:55:03.0817 0604 NDIS - ok 21:55:03.0832 0604 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 21:55:03.0910 0604 NdisCap - ok 21:55:03.0926 0604 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 21:55:04.0004 0604 NdisTapi - ok 21:55:04.0035 0604 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 21:55:04.0082 0604 Ndisuio - ok 21:55:04.0129 0604 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 21:55:04.0222 0604 NdisWan - ok 21:55:04.0269 0604 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 21:55:04.0316 0604 NDProxy - ok 21:55:04.0332 0604 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 21:55:04.0410 0604 NetBIOS - ok 21:55:04.0441 0604 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 21:55:04.0503 0604 NetBT - ok 21:55:04.0534 0604 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe 21:55:04.0566 0604 Netlogon - ok 21:55:04.0597 0604 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll 21:55:04.0675 0604 Netman - ok 21:55:04.0753 0604 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 21:55:04.0800 0604 NetMsmqActivator - ok 21:55:04.0800 0604 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 21:55:04.0815 0604 NetPipeActivator - ok 21:55:04.0862 0604 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll 21:55:04.0924 0604 netprofm - ok 21:55:04.0924 0604 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 21:55:04.0956 0604 NetTcpActivator - ok 21:55:04.0956 0604 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 21:55:04.0987 0604 NetTcpPortSharing - ok 21:55:05.0143 0604 [ 1D73499A6664B4DA05D750FF83FDB274 ] NETw4v32 C:\Windows\system32\DRIVERS\NETw4v32.sys 21:55:05.0236 0604 NETw4v32 - ok 21:55:05.0424 0604 [ 58218EC6B61B1169CF54AAB0D00F5FE2 ] netw5v32 C:\Windows\system32\DRIVERS\netw5v32.sys 21:55:05.0626 0604 netw5v32 - ok 21:55:05.0658 0604 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 21:55:05.0689 0604 nfrd960 - ok 21:55:05.0736 0604 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll 21:55:05.0767 0604 NlaSvc - ok 21:55:05.0798 0604 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys 21:55:05.0845 0604 Npfs - ok 21:55:05.0876 0604 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll 21:55:05.0923 0604 nsi - ok 21:55:05.0938 0604 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 21:55:06.0001 0604 nsiproxy - ok 21:55:06.0079 0604 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 21:55:06.0157 0604 Ntfs - ok 21:55:06.0172 0604 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys 21:55:06.0235 0604 Null - ok 21:55:06.0266 0604 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys 21:55:06.0297 0604 nvraid - ok 21:55:06.0344 0604 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys 21:55:06.0360 0604 nvstor - ok 21:55:06.0391 0604 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 21:55:06.0406 0604 nv_agp - ok 21:55:06.0531 0604 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 21:55:06.0578 0604 odserv - ok 21:55:06.0609 0604 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 21:55:06.0656 0604 ohci1394 - ok 21:55:06.0703 0604 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 21:55:06.0718 0604 ose - ok 21:55:06.0765 0604 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 21:55:06.0796 0604 p2pimsvc - ok 21:55:06.0843 0604 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll 21:55:06.0874 0604 p2psvc - ok 21:55:06.0906 0604 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys 21:55:06.0937 0604 Parport - ok 21:55:06.0999 0604 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys 21:55:07.0015 0604 partmgr - ok 21:55:07.0046 0604 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 21:55:07.0077 0604 Parvdm - ok 21:55:07.0108 0604 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll 21:55:07.0155 0604 PcaSvc - ok 21:55:07.0202 0604 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys 21:55:07.0233 0604 pci - ok 21:55:07.0280 0604 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys 21:55:07.0311 0604 pciide - ok 21:55:07.0342 0604 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 21:55:07.0374 0604 pcmcia - ok 21:55:07.0374 0604 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys 21:55:07.0405 0604 pcw - ok 21:55:07.0436 0604 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys 21:55:07.0514 0604 PEAUTH - ok 21:55:07.0576 0604 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 21:55:07.0654 0604 PeerDistSvc - ok 21:55:07.0764 0604 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll 21:55:07.0857 0604 pla - ok 21:55:07.0920 0604 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll 21:55:07.0998 0604 PlugPlay - ok 21:55:08.0013 0604 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 21:55:08.0091 0604 PNRPAutoReg - ok 21:55:08.0122 0604 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 21:55:08.0154 0604 PNRPsvc - ok 21:55:08.0185 0604 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 21:55:08.0263 0604 PolicyAgent - ok 21:55:08.0310 0604 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll 21:55:08.0372 0604 Power - ok 21:55:08.0403 0604 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 21:55:08.0481 0604 PptpMiniport - ok 21:55:08.0497 0604 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys 21:55:08.0544 0604 Processor - ok 21:55:08.0622 0604 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll 21:55:08.0700 0604 ProfSvc - ok 21:55:08.0731 0604 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe 21:55:08.0746 0604 ProtectedStorage - ok 21:55:08.0762 0604 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys 21:55:08.0824 0604 Psched - ok 21:55:08.0887 0604 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 21:55:08.0949 0604 ql2300 - ok 21:55:08.0980 0604 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 21:55:08.0996 0604 ql40xx - ok 21:55:09.0043 0604 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll 21:55:09.0105 0604 QWAVE - ok 21:55:09.0136 0604 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 21:55:09.0168 0604 QWAVEdrv - ok 21:55:09.0183 0604 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 21:55:09.0261 0604 RasAcd - ok 21:55:09.0292 0604 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 21:55:09.0370 0604 RasAgileVpn - ok 21:55:09.0402 0604 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll 21:55:09.0464 0604 RasAuto - ok 21:55:09.0480 0604 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 21:55:09.0558 0604 Rasl2tp - ok 21:55:09.0636 0604 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll 21:55:09.0714 0604 RasMan - ok 21:55:09.0745 0604 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 21:55:09.0792 0604 RasPppoe - ok 21:55:09.0823 0604 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 21:55:09.0901 0604 RasSstp - ok 21:55:09.0932 0604 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 21:55:10.0026 0604 rdbss - ok 21:55:10.0041 0604 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 21:55:10.0088 0604 rdpbus - ok 21:55:10.0119 0604 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 21:55:10.0197 0604 RDPCDD - ok 21:55:10.0260 0604 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 21:55:10.0291 0604 RDPDR - ok 21:55:10.0322 0604 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 21:55:10.0384 0604 RDPENCDD - ok 21:55:10.0416 0604 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 21:55:10.0478 0604 RDPREFMP - ok 21:55:10.0525 0604 [ 65375DF758CA1872AB7EBBBA457FD5E6 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 21:55:10.0572 0604 RdpVideoMiniport - ok 21:55:10.0618 0604 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 21:55:10.0665 0604 RDPWD - ok 21:55:10.0696 0604 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 21:55:10.0743 0604 rdyboost - ok 21:55:10.0774 0604 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll 21:55:10.0899 0604 RemoteAccess - ok 21:55:10.0930 0604 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll 21:55:11.0024 0604 RemoteRegistry - ok 21:55:11.0055 0604 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys 21:55:11.0086 0604 RFCOMM - ok 21:55:11.0102 0604 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 21:55:11.0180 0604 RpcEptMapper - ok 21:55:11.0242 0604 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe 21:55:11.0305 0604 RpcLocator - ok 21:55:11.0352 0604 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll 21:55:11.0414 0604 RpcSs - ok 21:55:11.0430 0604 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 21:55:11.0508 0604 rspndr - ok 21:55:11.0554 0604 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys 21:55:11.0586 0604 s3cap - ok 21:55:11.0617 0604 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe 21:55:11.0648 0604 SamSs - ok 21:55:11.0695 0604 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 21:55:11.0726 0604 sbp2port - ok 21:55:11.0757 0604 [ 7A5207C89386C204F41A8F087CD98DF0 ] ScanUSBET C:\Windows\system32\DRIVERS\etScan.sys 21:55:11.0804 0604 ScanUSBET - ok 21:55:11.0835 0604 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll 21:55:11.0913 0604 SCardSvr - ok 21:55:11.0960 0604 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 21:55:12.0038 0604 scfilter - ok 21:55:12.0100 0604 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll 21:55:12.0194 0604 Schedule - ok 21:55:12.0225 0604 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll 21:55:12.0272 0604 SCPolicySvc - ok 21:55:12.0303 0604 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll 21:55:12.0366 0604 SDRSVC - ok 21:55:12.0553 0604 [ 95AA9E165C7DE1B64A11E8B18E91E499 ] SDScannerService C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe 21:55:12.0615 0604 SDScannerService - ok 21:55:12.0724 0604 [ D31398D4BB4907B517B6E784C2100C4A ] SDUpdateService C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe 21:55:12.0771 0604 SDUpdateService - ok 21:55:12.0818 0604 [ 6AE8E702D1027A9627DDE2B77BB9992B ] SDWSCService C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe 21:55:12.0834 0604 SDWSCService - ok 21:55:12.0865 0604 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 21:55:12.0927 0604 secdrv - ok 21:55:12.0974 0604 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll 21:55:13.0036 0604 seclogon - ok 21:55:13.0068 0604 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll 21:55:13.0146 0604 SENS - ok 21:55:13.0177 0604 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll 21:55:13.0224 0604 SensrSvc - ok 21:55:13.0255 0604 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 21:55:13.0302 0604 Serenum - ok 21:55:13.0333 0604 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys 21:55:13.0380 0604 Serial - ok 21:55:13.0411 0604 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 21:55:13.0426 0604 sermouse - ok 21:55:13.0489 0604 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll 21:55:13.0567 0604 SessionEnv - ok 21:55:13.0598 0604 [ 8B7C1768D2CDE2E02E09A66563DDFD16 ] SFEP C:\Windows\system32\DRIVERS\SFEP.sys 21:55:13.0645 0604 SFEP - ok 21:55:13.0738 0604 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 21:55:13.0801 0604 sffdisk - ok 21:55:13.0832 0604 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 21:55:13.0894 0604 sffp_mmc - ok 21:55:13.0910 0604 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 21:55:13.0941 0604 sffp_sd - ok 21:55:13.0957 0604 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 21:55:13.0988 0604 sfloppy - ok 21:55:14.0035 0604 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll 21:55:14.0113 0604 SharedAccess - ok 21:55:14.0175 0604 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 21:55:14.0238 0604 ShellHWDetection - ok 21:55:14.0284 0604 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys 21:55:14.0316 0604 sisagp - ok 21:55:14.0331 0604 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 21:55:14.0362 0604 SiSRaid2 - ok 21:55:14.0378 0604 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 21:55:14.0409 0604 SiSRaid4 - ok 21:55:14.0425 0604 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys 21:55:14.0487 0604 Smb - ok 21:55:14.0534 0604 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 21:55:14.0565 0604 SNMPTRAP - ok 21:55:14.0581 0604 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys 21:55:14.0596 0604 spldr - ok 21:55:14.0659 0604 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe 21:55:14.0721 0604 Spooler - ok 21:55:14.0877 0604 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe 21:55:14.0986 0604 sppsvc - ok 21:55:15.0096 0604 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll 21:55:15.0189 0604 sppuinotify - ok 21:55:15.0236 0604 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys 21:55:15.0298 0604 srv - ok 21:55:15.0330 0604 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 21:55:15.0376 0604 srv2 - ok 21:55:15.0423 0604 [ E00FDFAFF025E94F9821153750C35A6D ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL3.SYS 21:55:15.0470 0604 SrvHsfHDA - ok 21:55:15.0532 0604 [ CEB4E3B6890E1E42DCA6694D9E59E1A0 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV3.SYS 21:55:15.0579 0604 SrvHsfV92 - ok 21:55:15.0688 0604 [ BC0C7EA89194C299F051C24119000E17 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT3.SYS 21:55:15.0735 0604 SrvHsfWinac - ok 21:55:15.0782 0604 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 21:55:15.0813 0604 srvnet - ok 21:55:15.0844 0604 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 21:55:15.0907 0604 SSDPSRV - ok 21:55:15.0938 0604 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll 21:55:15.0985 0604 SstpSvc - ok 21:55:16.0047 0604 [ 359FEE084F1173FFFFD7F9CCBD43D47F ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 21:55:16.0078 0604 ssudmdm - ok 21:55:16.0110 0604 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 21:55:16.0125 0604 stexstor - ok 21:55:16.0188 0604 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll 21:55:16.0250 0604 StiSvc - ok 21:55:16.0297 0604 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys 21:55:16.0312 0604 storflt - ok 21:55:16.0375 0604 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys 21:55:16.0406 0604 storvsc - ok 21:55:16.0453 0604 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys 21:55:16.0468 0604 swenum - ok 21:55:16.0640 0604 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 21:55:16.0671 0604 SwitchBoard ( UnsignedFile.Multi.Generic ) - warning 21:55:16.0671 0604 SwitchBoard - detected UnsignedFile.Multi.Generic (1) 21:55:16.0718 0604 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll 21:55:16.0780 0604 swprv - ok 21:55:16.0858 0604 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll 21:55:16.0936 0604 SysMain - ok 21:55:16.0983 0604 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll 21:55:17.0030 0604 TabletInputService - ok 21:55:17.0092 0604 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll 21:55:17.0155 0604 TapiSrv - ok 21:55:17.0170 0604 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll 21:55:17.0264 0604 TBS - ok 21:55:17.0358 0604 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 21:55:17.0436 0604 Tcpip - ok 21:55:17.0482 0604 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 21:55:17.0545 0604 TCPIP6 - ok 21:55:17.0592 0604 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 21:55:17.0638 0604 tcpipreg - ok 21:55:17.0670 0604 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 21:55:17.0732 0604 TDPIPE - ok 21:55:17.0748 0604 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 21:55:17.0779 0604 TDTCP - ok 21:55:17.0826 0604 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 21:55:17.0904 0604 tdx - ok 21:55:17.0935 0604 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys 21:55:17.0966 0604 TermDD - ok 21:55:18.0028 0604 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll 21:55:18.0091 0604 TermService - ok 21:55:18.0138 0604 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll 21:55:18.0200 0604 Themes - ok 21:55:18.0231 0604 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll 21:55:18.0278 0604 THREADORDER - ok 21:55:18.0309 0604 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll 21:55:18.0387 0604 TrkWks - ok 21:55:18.0465 0604 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 21:55:18.0559 0604 TrustedInstaller - ok 21:55:18.0606 0604 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 21:55:18.0668 0604 tssecsrv - ok 21:55:18.0762 0604 [ 9CE253214ACAA5A7D323327D2055EFAA ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 21:55:18.0808 0604 TsUsbFlt - ok 21:55:18.0840 0604 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 21:55:18.0918 0604 tunnel - ok 21:55:18.0964 0604 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 21:55:18.0980 0604 uagp35 - ok 21:55:19.0027 0604 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys 21:55:19.0120 0604 udfs - ok 21:55:19.0167 0604 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 21:55:19.0214 0604 UI0Detect - ok 21:55:19.0261 0604 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 21:55:19.0292 0604 uliagpkx - ok 21:55:19.0323 0604 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys 21:55:19.0354 0604 umbus - ok 21:55:19.0370 0604 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 21:55:19.0417 0604 UmPass - ok 21:55:19.0448 0604 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll 21:55:19.0526 0604 UmRdpService - ok 21:55:19.0557 0604 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll 21:55:19.0635 0604 upnphost - ok 21:55:19.0682 0604 [ D339B7E74D908EEBEB4B4413B756150B ] USB28xxBGA C:\Windows\system32\DRIVERS\emBDA.sys 21:55:19.0729 0604 USB28xxBGA - ok 21:55:19.0791 0604 [ 65C288D96EB8DBB6FE6787011E99665C ] USB28xxOEM C:\Windows\system32\DRIVERS\emOEM.sys 21:55:19.0854 0604 USB28xxOEM - ok 21:55:19.0901 0604 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 21:55:19.0947 0604 usbccgp - ok 21:55:19.0979 0604 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys 21:55:20.0025 0604 usbcir - ok 21:55:20.0072 0604 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 21:55:20.0088 0604 usbehci - ok 21:55:20.0119 0604 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 21:55:20.0150 0604 usbhub - ok 21:55:20.0166 0604 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys 21:55:20.0213 0604 usbohci - ok 21:55:20.0244 0604 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 21:55:20.0275 0604 usbprint - ok 21:55:20.0322 0604 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 21:55:20.0369 0604 usbscan - ok 21:55:20.0384 0604 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 21:55:20.0415 0604 USBSTOR - ok 21:55:20.0431 0604 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 21:55:20.0462 0604 usbuhci - ok 21:55:20.0493 0604 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 21:55:20.0556 0604 usbvideo - ok 21:55:20.0587 0604 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll 21:55:20.0665 0604 UxSms - ok 21:55:20.0681 0604 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe 21:55:20.0712 0604 VaultSvc - ok 21:55:20.0727 0604 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 21:55:20.0759 0604 vdrvroot - ok 21:55:20.0821 0604 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe 21:55:20.0899 0604 vds - ok 21:55:20.0930 0604 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 21:55:20.0977 0604 vga - ok 21:55:21.0008 0604 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys 21:55:21.0055 0604 VgaSave - ok 21:55:21.0102 0604 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 21:55:21.0149 0604 vhdmp - ok 21:55:21.0180 0604 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys 21:55:21.0211 0604 viaagp - ok 21:55:21.0227 0604 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys 21:55:21.0273 0604 ViaC7 - ok 21:55:21.0320 0604 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys 21:55:21.0351 0604 viaide - ok 21:55:21.0398 0604 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys 21:55:21.0445 0604 vmbus - ok 21:55:21.0461 0604 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 21:55:21.0492 0604 VMBusHID - ok 21:55:21.0523 0604 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys 21:55:21.0539 0604 volmgr - ok 21:55:21.0570 0604 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 21:55:21.0601 0604 volmgrx - ok 21:55:21.0663 0604 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys 21:55:21.0695 0604 volsnap - ok 21:55:21.0710 0604 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 21:55:21.0726 0604 vsmraid - ok 21:55:21.0804 0604 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe 21:55:21.0897 0604 VSS - ok 21:55:22.0069 0604 [ 416F115DC1003BB624D03E019C3D563D ] VUAgent C:\Program Files\Sony\VAIO Update\VUAgent.exe 21:55:22.0116 0604 VUAgent - ok 21:55:22.0147 0604 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 21:55:22.0194 0604 vwifibus - ok 21:55:22.0241 0604 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll 21:55:22.0350 0604 W32Time - ok 21:55:22.0365 0604 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 21:55:22.0412 0604 WacomPen - ok 21:55:22.0459 0604 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 21:55:22.0537 0604 WANARP - ok 21:55:22.0537 0604 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 21:55:22.0584 0604 Wanarpv6 - ok 21:55:22.0693 0604 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 21:55:22.0755 0604 WatAdminSvc - ok 21:55:22.0833 0604 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe 21:55:22.0943 0604 wbengine - ok 21:55:22.0989 0604 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 21:55:23.0052 0604 WbioSrvc - ok 21:55:23.0099 0604 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll 21:55:23.0161 0604 wcncsvc - ok 21:55:23.0192 0604 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 21:55:23.0255 0604 WcsPlugInService - ok 21:55:23.0301 0604 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys 21:55:23.0333 0604 Wd - ok 21:55:23.0379 0604 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 21:55:23.0426 0604 Wdf01000 - ok 21:55:23.0442 0604 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll 21:55:23.0504 0604 WdiServiceHost - ok 21:55:23.0504 0604 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll 21:55:23.0551 0604 WdiSystemHost - ok 21:55:23.0598 0604 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll 21:55:23.0660 0604 WebClient - ok 21:55:23.0707 0604 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll 21:55:23.0769 0604 Wecsvc - ok 21:55:23.0769 0604 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll 21:55:23.0847 0604 wercplsupport - ok 21:55:23.0863 0604 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll 21:55:23.0988 0604 WerSvc - ok 21:55:24.0019 0604 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 21:55:24.0081 0604 WfpLwf - ok 21:55:24.0097 0604 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys 21:55:24.0128 0604 WIMMount - ok 21:55:24.0191 0604 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll 21:55:24.0269 0604 WinDefend - ok 21:55:24.0300 0604 WinHttpAutoProxySvc - ok 21:55:24.0362 0604 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 21:55:24.0456 0604 Winmgmt - ok 21:55:24.0534 0604 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll 21:55:24.0643 0604 WinRM - ok 21:55:24.0690 0604 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 21:55:24.0752 0604 WinUsb - ok 21:55:24.0815 0604 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll 21:55:24.0893 0604 Wlansvc - ok 21:55:24.0924 0604 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 21:55:24.0971 0604 WmiAcpi - ok 21:55:25.0017 0604 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 21:55:25.0064 0604 wmiApSrv - ok 21:55:25.0189 0604 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 21:55:25.0267 0604 WMPNetworkSvc - ok 21:55:25.0283 0604 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll 21:55:25.0329 0604 WPCSvc - ok 21:55:25.0361 0604 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 21:55:25.0423 0604 WPDBusEnum - ok 21:55:25.0470 0604 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 21:55:25.0532 0604 ws2ifsl - ok 21:55:25.0563 0604 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll 21:55:25.0595 0604 wscsvc - ok 21:55:25.0610 0604 WSearch - ok 21:55:25.0719 0604 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll 21:55:25.0797 0604 wuauserv - ok 21:55:25.0860 0604 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 21:55:25.0891 0604 WudfPf - ok 21:55:25.0938 0604 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 21:55:25.0969 0604 WUDFRd - ok 21:55:26.0016 0604 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 21:55:26.0063 0604 wudfsvc - ok 21:55:26.0109 0604 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\Windows\System32\wwansvc.dll 21:55:26.0156 0604 WwanSvc - ok 21:55:26.0203 0604 [ B07C5B7EFDF936FF93D4F540938725BE ] yukonw7 C:\Windows\system32\DRIVERS\yk62x86.sys 21:55:26.0234 0604 yukonw7 - ok 21:55:26.0297 0604 ================ Scan global =============================== 21:55:26.0343 0604 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll 21:55:26.0390 0604 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll 21:55:26.0421 0604 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll 21:55:26.0468 0604 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll 21:55:26.0484 0604 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe 21:55:26.0499 0604 [Global] - ok 21:55:26.0499 0604 ================ Scan MBR ================================== 21:55:26.0499 0604 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 21:55:27.0248 0604 \Device\Harddisk0\DR0 - ok 21:55:27.0248 0604 ================ Scan VBR ================================== 21:55:27.0264 0604 [ 63CDE106F1022FFA7A7DB3DDFBA8D2EC ] \Device\Harddisk0\DR0\Partition1 21:55:27.0264 0604 \Device\Harddisk0\DR0\Partition1 - ok 21:55:27.0264 0604 ============================================================ 21:55:27.0264 0604 Scan finished 21:55:27.0264 0604 ============================================================ 21:55:27.0279 4700 Detected object count: 1 21:55:27.0279 4700 Actual detected object count: 1 21:57:52.0027 4700 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user 21:57:52.0027 4700 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip |
09.06.2013, 21:24 | #4 |
/// Malware-holic | Browser laufen extrem langsam! Hi, Scan mit Combofix
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
09.06.2013, 22:22 | #5 |
| Browser laufen extrem langsam! Hi DankE!!! Combofix Logfile: Code:
ATTFilter ComboFix 13-06-08.02 - MAJU2903 09.06.2013 22:33:49.1.2 - x86 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.43.1031.18.3070.1956 [GMT 2:00] ausgeführt von:: c:\users\MAJU2903\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\MAJU2903\Desktop\Internet Explorer.lnk . . ((((((((((((((((((((((( Dateien erstellt von 2013-05-09 bis 2013-06-09 )))))))))))))))))))))))))))))) . . 2013-06-09 20:48 . 2013-06-09 20:48 -------- d-----w- c:\users\MAJU2903\AppData\Local\temp 2013-06-09 20:48 . 2013-06-09 20:48 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-06-09 15:51 . 2013-06-09 15:51 -------- d-----w- c:\program files\CCleaner 2013-06-08 00:10 . 2013-06-09 20:36 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5BA99FD1-792D-4BFD-B30B-731FDF346620}\offreg.dll 2013-06-07 09:15 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5BA99FD1-792D-4BFD-B30B-731FDF346620}\mpengine.dll 2013-06-07 04:23 . 2013-06-07 06:08 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2013-06-03 07:32 . 2013-06-03 07:32 -------- d-----w- c:\users\MAJU2903\AppData\Local\HappyFoto-Designer 2013-06-03 07:31 . 2007-03-12 14:42 3495784 ----a-w- c:\windows\system32\d3dx9_33.dll 2013-05-31 13:19 . 2013-05-31 13:20 -------- d--h--w- c:\programdata\CanonIJMIG 2013-05-28 17:54 . 2013-05-09 08:59 174664 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-05-28 17:54 . 2013-05-09 08:59 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-05-27 16:50 . 2013-05-27 16:50 -------- d-----w- c:\program files\pazera-software 2013-05-21 12:21 . 2013-05-21 12:21 -------- d-----w- c:\programdata\StaxRip 2013-05-19 06:57 . 2013-05-31 13:15 -------- d-----w- c:\users\MAJU2903\AppData\Roaming\Canon 2013-05-19 06:57 . 2013-05-19 06:57 -------- d--h--w- c:\programdata\CanonIJQuickMenu 2013-05-19 06:57 . 2013-05-19 06:57 -------- d--h--w- c:\programdata\CanonIJEGV 2013-05-19 06:55 . 2013-06-02 16:17 -------- d-----w- c:\programdata\CanonIJPLM 2013-05-19 06:52 . 2012-01-16 12:21 103424 ----a-w- c:\windows\system32\CNC_B5U.dll 2013-05-19 06:23 . 2013-05-19 06:23 -------- d-----w- c:\program files\Common Files\CANON 2013-05-19 06:23 . 2013-05-19 06:23 -------- d-----w- c:\programdata\CanonIJWSpt 2013-05-19 06:14 . 2012-03-26 03:00 85504 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPPB5.DLL 2013-05-19 06:14 . 2012-03-26 03:00 29184 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPDB5.DLL 2013-05-19 06:14 . 2013-05-19 06:14 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information 2013-05-19 06:14 . 2012-02-08 14:34 320000 ----a-w- c:\windows\system32\CNC_B5L.dll 2013-05-19 06:14 . 2012-01-16 12:20 266752 ----a-w- c:\windows\system32\CNC_B5C.dll 2013-05-19 06:14 . 2012-01-16 12:19 96768 ----a-w- c:\windows\system32\CNC_B5I.dll 2013-05-19 06:14 . 2008-08-25 16:02 15872 ----a-w- c:\windows\system32\CNHMCA.dll 2013-05-19 06:13 . 2012-03-26 03:00 314880 ----a-w- c:\windows\system32\CNMLMB5.DLL 2013-05-19 06:12 . 2013-05-19 06:52 -------- d-----w- c:\program files\Canon 2013-05-15 06:02 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll 2013-05-15 06:02 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll 2013-05-15 06:02 . 2013-04-10 03:14 2347520 ----a-w- c:\windows\system32\win32k.sys 2013-05-15 06:02 . 2013-04-10 05:18 728424 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2013-05-15 06:02 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys 2013-05-15 06:02 . 2013-02-27 05:05 101720 ----a-w- c:\windows\system32\consent.exe 2013-05-15 06:02 . 2013-02-27 04:49 1796096 ----a-w- c:\windows\system32\authui.dll 2013-05-15 06:02 . 2013-02-27 04:49 47104 ----a-w- c:\windows\system32\appinfo.dll 2013-05-13 05:20 . 2013-05-13 05:20 -------- d-----w- c:\program files\Intel 2013-05-13 05:20 . 2013-02-27 13:37 53248 ----a-w- c:\windows\system32\CSVer.dll 2013-05-13 05:19 . 2013-05-13 05:19 -------- d-----w- C:\Intel . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-05-09 08:59 . 2012-11-19 15:10 368944 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-05-09 08:59 . 2012-11-19 15:10 61680 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-05-09 08:59 . 2012-11-19 15:10 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-05-09 08:59 . 2012-11-19 15:10 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-05-09 08:59 . 2012-11-19 15:10 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-05-09 08:59 . 2012-11-19 15:10 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-05-09 08:58 . 2012-11-19 15:09 41664 ----a-w- c:\windows\avastSS.scr 2013-05-09 08:58 . 2012-11-19 15:09 229648 ----a-w- c:\windows\system32\aswBoot.exe 2013-05-04 11:18 . 2013-05-04 11:18 53248 ----a-r- c:\users\MAJU2903\AppData\Roaming\Microsoft\Installer\{F5D84887-8A6F-4993-8560-B3AA44CB620D}\ARPPRODUCTICON.exe 2013-05-02 00:06 . 2012-03-13 12:40 238872 ------w- c:\windows\system32\MpSigStub.exe 2013-05-01 01:03 . 2013-05-01 01:03 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-05-01 01:03 . 2013-05-01 01:03 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-05-01 01:03 . 2013-05-01 01:03 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-05-01 01:03 . 2013-05-01 01:03 61952 ----a-w- c:\windows\system32\tdc.ocx 2013-05-01 01:03 . 2013-05-01 01:03 523264 ----a-w- c:\windows\system32\vbscript.dll 2013-05-01 01:03 . 2013-05-01 01:03 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-05-01 01:03 . 2013-05-01 01:03 38400 ----a-w- c:\windows\system32\imgutil.dll 2013-05-01 01:03 . 2013-05-01 01:03 361984 ----a-w- c:\windows\system32\html.iec 2013-05-01 01:03 . 2013-05-01 01:03 23040 ----a-w- c:\windows\system32\licmgr10.dll 2013-05-01 01:03 . 2013-05-01 01:03 185344 ----a-w- c:\windows\system32\elshyph.dll 2013-05-01 01:03 . 2013-05-01 01:03 158720 ----a-w- c:\windows\system32\msls31.dll 2013-05-01 01:03 . 2013-05-01 01:03 150528 ----a-w- c:\windows\system32\iexpress.exe 2013-05-01 01:03 . 2013-05-01 01:03 1441280 ----a-w- c:\windows\system32\inetcpl.cpl 2013-05-01 01:03 . 2013-05-01 01:03 138752 ----a-w- c:\windows\system32\wextract.exe 2013-05-01 01:03 . 2013-05-01 01:03 137216 ----a-w- c:\windows\system32\ieUnatt.exe 2013-05-01 01:03 . 2013-05-01 01:03 12800 ----a-w- c:\windows\system32\mshta.exe 2013-05-01 01:03 . 2013-05-01 01:03 110592 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-04-13 04:45 . 2013-05-15 06:02 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll 2013-04-13 04:45 . 2013-05-15 06:02 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll 2013-04-12 13:45 . 2013-04-24 02:00 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys 2013-03-19 05:04 . 2013-04-09 22:05 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-03-19 05:04 . 2013-04-09 22:05 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-03-19 04:48 . 2013-04-09 22:05 38912 ----a-w- c:\windows\system32\csrsrv.dll 2013-03-19 02:49 . 2013-04-09 22:05 69632 ----a-w- c:\windows\system32\smss.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-05-09 08:58 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Session-Logger"="c:\program files\IntelligentShutdown\IntelligentShutdown.exe" [2010-07-28 2005624] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "ISBMgr.exe"="c:\program files\Sony\ISB Utility\ISBMgr.exe" [2007-01-22 321656] "CanonQuickMenu"="c:\program files\Canon\Quick Menu\CNQMMAIN.EXE" [2012-04-03 1273448] . c:\users\MAJU2903\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe . R3 BthAvrcp;Bluetooth-AVRCP-Profil;c:\windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 22528] R3 DCamUSBET;ET USB 2750 Camera;c:\windows\system32\DRIVERS\etDevice.sys [2008-03-01 131712] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-09-19 83168] R3 FiltUSBET;ET USB Device Lower Filter;c:\windows\system32\DRIVERS\etFilter.sys [2008-06-12 183168] R3 massfilter;Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [2010-02-22 9216] R3 netw5v32;Intel(R) Wireless WiFi Link 5000-Serie - Adaptertreiber für Windows Vista 32 Bit;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848] R3 ScanUSBET;ET USB Still Image Capture Device;c:\windows\system32\DRIVERS\etScan.sys [2007-09-07 6656] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-09-19 181344] R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [2012-03-16 1343400] S0 aswRvrt;aswRvrt; [x] S0 aswVmm;aswVmm; [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 66336] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2010-10-09 72576] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys [2007-08-03 9344] S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360] S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992] S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504] S3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update\VUAgent.exe [2012-10-26 957056] S3 yukonw7;NDIS6.2-Miniporttreiber für Marvell Yukon-Ethernet-Controller;c:\windows\system32\DRIVERS\yk62x86.sys [2009-07-13 311296] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-06-04 19:31 1165776 ----a-w- c:\program files\Google\Chrome\Application\27.0.1453.110\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-06-09 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2012-11-19 15:10] . 2013-06-09 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2012-11-19 15:10] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = about:blank IE: Free YouTube to MP3 Converter - c:\users\MAJU2903\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 10.0.0.138 TCP: Interfaces\{7C285CFC-15B8-4300-B69C-D85134539EAA}: DhcpNameServer = 10.0.0.138 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKCU-Run-AdobeBridge - (no file) AddRemove-A1 Dashboard - c:\programdata\{682BBE20-A9D0-4FC5-B965-BCFB5E5B4CF4}\A1_Dashboard.exe AddRemove-{86790597-5E41-47AF-A6E4-6295D0C21B8B} - c:\programdata\{682BBE20-A9D0-4FC5-B965-BCFB5E5B4CF4}\A1_Dashboard.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-06-09 22:51:48 ComboFix-quarantined-files.txt 2013-06-09 20:51 . Vor Suchlauf: 9 Verzeichnis(se), 26.172.198.912 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 26.096.984.064 Bytes frei . - - End Of File - - C367058AF6BF45D4AFF1D6714F4097DC A36C5E4F47E84449FF07ED3517B43A31 |
09.06.2013, 22:33 | #6 |
/// Malware-holic | Browser laufen extrem langsam! poste bitte alle bisherigen Malwarebytes Logs mit Funden http://www.trojaner-board.de/125889-...en-posten.html
__________________ --> Browser laufen extrem langsam! |
10.06.2013, 07:53 | #7 |
| Browser laufen extrem langsam! Guten morgen. Malware hat nichts gefunden! Lg |
10.06.2013, 15:35 | #8 |
/// Malware-holic | Browser laufen extrem langsam! wo ist das Log?
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
10.06.2013, 16:05 | #9 |
| Browser laufen extrem langsam! Hallo Hier das Log allerdings ohne Funde! Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.06.10.02 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 10.0.9200.16576 MAJU2903 :: MAJU2903-PC [Administrator] 10.06.2013 16:48:27 mbam-log-2013-06-10 (16-48-27).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 203247 Laufzeit: 11 Minute(n), 10 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
10.06.2013, 19:13 | #10 |
/// Malware-holic | Browser laufen extrem langsam! Hi, lade den CCleaner standard: CCleaner - Download - Filepony falls der CCleaner bereits instaliert, überspringen. öffnen, Tools (extras),uninstall Llist, als txt speichern. öffnen. hinter, jedes von dir benötigte programm, schreibe notwendig. hinter, jedes, von dir nicht benötigte, unnötig. hinter, dir unbekannte, unbekannt. liste posten.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
Themen zu Browser laufen extrem langsam! |
adobe, antivirus, aswrvrt.sys, autorun, avast, bho, browser, canon, converter, defender, down, explorer, firefox, format, helper, homepage, langsam, logfile, mp3, object, plug-in, programme, registry, safer networking, senden, software, taskhost.exe, windows, windows xp, wmp |