Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Säuberung von Hijacker gelingt nicht

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

 
Alt 27.07.2018, 05:59   #10
Wekra 1
 
Säuberung von Hijacker gelingt nicht - Standard

Säuberung von Hijacker gelingt nicht



Hallo Cosinus,
habe den TDSS-Killer, wie beschrieben, laufen lassen.
Jedoch kein Fund !
Seit gestern versuche ich die Adware loszuwerden.
Jedesmal wenn ich Firefox starte gehen nach kurzer Zeit ( 1 Min.) schon wieder 2 Fenster auf.

Habe dann regelmäßig folgende Programme laufen lassen

MalwareBytes Anti Malware - kein Fund
AdwCleaner - 42 Bedrohungen (wie immer) die gelöscht werden konnten
SpywareBlaster - ennabel all Prtection
TFC

TDSS-Killer, - kein Fund obwohl Adware vorhande und mit AwCleaner gesichtet

Hier der Log von TDSS-Killer

Code:
ATTFilter
C:\WINDOWS\system32\DRIVERS\tdx.sys
06:30:54.0289 0x2cbc  tdx - ok
06:30:54.0289 0x2cbc  [ B2C4D7CB291293CAC636748E695D111E, 5E0AA8147EFDA5D21CEE8AE254F74A974B0ADAF298F569CAA73AC4E3B758438A ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
06:30:54.0305 0x2cbc  terminpt - ok
06:30:54.0321 0x2cbc  [ 10ADC3589E50B1ED8452C86E0CBE8248, BE82341A12EA83D9EFADC9AC35CF16D327F8499C99107DCDE88DD0F5DF84523C ] TermService     C:\WINDOWS\System32\termsrv.dll
06:30:54.0352 0x2cbc  TermService - ok
06:30:54.0368 0x2cbc  [ 1A0A0F6A139148AFDC4622046D4B3CBD, 8FC2FB99B70A3A5B2F1D757A2F0E3085B1D242B792A35070E1DB3871A275329E ] Themes          C:\WINDOWS\system32\themeservice.dll
06:30:54.0383 0x2cbc  Themes - ok
06:30:54.0383 0x2cbc  [ 811910E891A6DB4A864AE119EB71218C, 2CBB6159E2ACAE4BA73892A4F7F8A3981C159083C29F1A1D548C59FB713B9D74 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
06:30:54.0399 0x2cbc  TieringEngineService - ok
06:30:54.0414 0x2cbc  [ 8BF5E2FD72E939CF68D617E273034793, EE27D070E1C4EFE902BE173C5561F5601499F835762278CC1E5987886BD8A4D1 ] TimeBrokerSvc   C:\WINDOWS\System32\TimeBrokerServer.dll
06:30:54.0430 0x2cbc  TimeBrokerSvc - ok
06:30:54.0446 0x2cbc  [ 1FD998EEF7CBDBC71C0FCA164B01864F, 2E5F85A81E2182FE39E9536D34A6B20C9F48CC896730982DA50AD37D1A4DAD99 ] TokenBroker     C:\WINDOWS\System32\TokenBroker.dll
06:30:54.0493 0x2cbc  TokenBroker - ok
06:30:54.0508 0x2cbc  [ BF705C64C1522646BF00E72393DC5D6F, 9D60CB5DFBD400C59C33C5221040FBBFE1A18870E75E176A6BC7D352783B56A7 ] TPM             C:\WINDOWS\System32\drivers\tpm.sys
06:30:54.0524 0x2cbc  TPM - ok
06:30:54.0524 0x2cbc  [ A5C0F857C38278A90E953A24E1701196, 1A646E47013946CCE41C798A494C6D266AEFC8A8D6EB65CD8848E72106687E38 ] TrkWks          C:\WINDOWS\System32\trkwks.dll
06:30:54.0540 0x2cbc  TrkWks - ok
06:30:54.0540 0x2cbc  [ 4578046C54A954C917BB393B70BA0AEB, 2DFE9DE656B415CF7D81F583F33A20A74CD54C07DB8C3196AA2102431F42F74F ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
06:30:54.0555 0x2cbc  TrustedInstaller - ok
06:30:54.0571 0x2cbc  [ 0D721F40C179EC5737C15E551F22C69B, BBA04E11C3D9150C60F74D8B1A3F444BDE0C19857BB7C45D58448F641082DE1A ] TsUsbFlt        C:\WINDOWS\system32\drivers\tsusbflt.sys
06:30:54.0571 0x2cbc  TsUsbFlt - ok
06:30:54.0586 0x2cbc  [ DE1296871208D1F13B7AC57C4B1FA46C, D18709F65E372A47AE114ECFD6A45E6736089B4A8E719E2FB5D831D9415E995D ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
06:30:54.0586 0x2cbc  TsUsbGD - ok
06:30:54.0586 0x2cbc  [ 3A84A09CBC42148A0C7D00B3E82517F1, 75E609AC991C96E31F55E723925EAF9A363DC5B3324FFD4CFCB701189369D701 ] tsusbhub        C:\WINDOWS\system32\drivers\tsusbhub.sys
06:30:54.0602 0x2cbc  tsusbhub - ok
06:30:54.0618 0x2cbc  [ BC938ABBF586272BD4063CA51F09149F, 06EB662948D212ACDF930C3CD01C6381A6FB152AC0F1628C86764F0973ABA1CB ] tunnel          C:\WINDOWS\system32\drivers\tunnel.sys
06:30:54.0633 0x2cbc  tunnel - ok
06:30:54.0633 0x2cbc  [ E94996BB8F323AF02860196C1400AD30, DE605439FC5B59C1064DF05F63C94D7C275482C1C66BEC74FA4A83F61C2051FC ] tzautoupdate    C:\WINDOWS\system32\tzautoupdate.dll
06:30:54.0649 0x2cbc  tzautoupdate - ok
06:30:54.0649 0x2cbc  [ BDFACE024EFF2398214797143AD76C87, EF9B6CB1F6EAE4786BBDE1E0946BECC5BD2AA493FC32A8F779A757BA57238EC9 ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
06:30:54.0664 0x2cbc  UASPStor - ok
06:30:54.0664 0x2cbc  [ 00C4396DE1CD3502884BB2E2B6D6861C, 39F6BF25096ACE29CAF964DCA15078F47986F645DF49FB502A2CDF2C05C89AAB ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
06:30:54.0680 0x2cbc  UcmCx0101 - ok
06:30:54.0680 0x2cbc  [ ED9CBD1541C8AFDAA9B8255A384E2B53, D970F5E976CEBE0BCDF07B9E155EDB5B3C225812991779748CD04A9C4852DF3D ] UcmTcpciCx0101  C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys
06:30:54.0696 0x2cbc  UcmTcpciCx0101 - ok
06:30:54.0696 0x2cbc  [ F58F1BC6A6972437CE18516F8ACCEB9F, 2C619D1E2E80662FA463EE48E3D41C8437A81B0F68EE67A0839A93DEDCD2E0B2 ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
06:30:54.0711 0x2cbc  UcmUcsi - ok
06:30:54.0727 0x2cbc  [ EE62D07172014C8BBE7C80A3AAF56E8F, C93DFEB0179129AE95968BA1E1E68D71504D1288FE1A1106EB9A2EAA04AEE8E1 ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
06:30:54.0727 0x2cbc  Ucx01000 - ok
06:30:54.0743 0x2cbc  [ 12E2B6B642360E66396502B62B048694, C9AC86BF767ED4ACE0F58BA3720369A2758BA154AFFE10CAAD5A2C4C259BA50A ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
06:30:54.0743 0x2cbc  UdeCx - ok
06:30:54.0758 0x2cbc  [ 6A442723D4D05D9F15D24C9942CDA00D, 4A60D6CF7214A3891877AC6E5A49AE49D056567162D6355C0D893510F0241DA7 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
06:30:54.0774 0x2cbc  udfs - ok
06:30:54.0774 0x2cbc  [ D30AF38971B6670C222250AC2CBB6227, 52C1C7AC29D06C701DA0E2772294CED0C1790EC7FCBD5074238B54BEB951E9D0 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
06:30:54.0789 0x2cbc  UEFI - ok
06:30:54.0789 0x2cbc  [ AD58EA78772B8163CFDE9BF671B6F8F1, E8304179B6B52B143846AEF80C7B2D577125742EA2DFF09F8AC5F37F4E28793E ] UevAgentDriver  C:\WINDOWS\system32\drivers\UevAgentDriver.sys
06:30:54.0805 0x2cbc  UevAgentDriver - ok
06:30:54.0821 0x2cbc  [ F7E36C20DB953DFF4FDDB817904C0E48, 2C5EDE0807D8A5EC4B6E0FE0C308B37DBBDE12714FD9ADC4CE3EF4E0A5692207 ] UevAgentService C:\WINDOWS\system32\AgentService.exe
06:30:54.0852 0x2cbc  UevAgentService - ok
06:30:54.0868 0x2cbc  [ 588B9212DEE84F5192C09A147AA5C316, 80C70FD489D72015FCF8AFBE649F6C77F40B613882A1F031A2DAE088B9B4F67B ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
06:30:54.0883 0x2cbc  Ufx01000 - ok
06:30:54.0883 0x2cbc  [ 78B5C069C9AA1463ACC833FD7E2A3BD5, A44BAB6AB5E071537BD37A26DAF6D0D69BBFFFF686C183BFAAB04286DD3B81BB ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
06:30:54.0899 0x2cbc  UfxChipidea - ok
06:30:54.0899 0x2cbc  [ 533BF4F456A1C6E7581E8C0A4EC59300, E5AE7EB4A8E6CE410F465C48F102797806172B5881C2CF570A9851CCDFE656FD ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
06:30:54.0914 0x2cbc  ufxsynopsys - ok
06:30:54.0914 0x2cbc  [ 360FEE6F687D98EFFE46A5433FE6182E, 1A35569DC29F45F78D705BCEDE850CAF86FD27D6253977497EB3B000CAAE0B27 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
06:30:54.0930 0x2cbc  umbus - ok
06:30:54.0930 0x2cbc  [ F6F1A9D91F684AA02951B96EE8127DAE, 351139331041BC123C9FEE3A5CE4965AFC4CDCA488080338D98C5EB85D5843D4 ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
06:30:54.0946 0x2cbc  UmPass - ok
06:30:54.0953 0x2cbc  [ 0D806415E1F86E7C1C192261C247EF0D, 640CB73D9ACC3B6E0F2A2A5A4587375F05A7519081BEC510B926A8A4A496C3B9 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
06:30:54.0968 0x2cbc  UmRdpService - ok
06:30:54.0984 0x2cbc  [ EAEC69961D9D8B39FEA44D56F7FB259D, 43FEB15A32B353B6F3C8E5F1072FF9507F2FA7799A414F30FEA0B8C47999D969 ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
06:30:55.0031 0x2cbc  UnistoreSvc - ok
06:30:55.0047 0x2cbc  [ 2362D5C18120FAB9CE5BD1F73EE33758, D9AB5D5BEAF95F62A204CE8A3B8B3B6C9C1E85FB5425CA2AADCBB4770EDCDF30 ] upnphost        C:\WINDOWS\System32\upnphost.dll
06:30:55.0078 0x2cbc  upnphost - ok
06:30:55.0078 0x2cbc  [ 49A5E1B43C59DC0E363AD9C2D7D10BE4, B903C1C24DAF316AF9D8C1770687DE0A24ACDA4EFE47845E13BE99985609B7CE ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
06:30:55.0078 0x2cbc  UrsChipidea - ok
06:30:55.0093 0x2cbc  [ 53F1DA2D92D1D8CE4BB9D33E58D7DF01, CD3F4B92EDA042FE696C59D67BEB711C7AF0EB5979AD5F4110297C47454EBBFA ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
06:30:55.0093 0x2cbc  UrsCx01000 - ok
06:30:55.0093 0x2cbc  [ 09518A324B95BBC0B472BD5A472CB916, B3C6BF8C84268C02CC43E5C6B37648F9691B6038D275F4BEBA7B5E9ECA046181 ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
06:30:55.0109 0x2cbc  UrsSynopsys - ok
06:30:55.0109 0x2cbc  [ B7211393225AB05324C52BA47B31FEB4, 3FFB7F1C1CA5001B95026D30ECD1991747DDAFFBE3B4929CAEDFA90E169A28AE ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
06:30:55.0125 0x2cbc  usbccgp - ok
06:30:55.0125 0x2cbc  [ 250D21958EE5F45CD13FE6BE3788EE70, C0EF097EE2ED91950BD3A6881AB08698E85C4ABABC4F7520F7E92E70CA454D4E ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
06:30:55.0140 0x2cbc  usbcir - ok
06:30:55.0140 0x2cbc  [ 4269DE1EB8029D55B3BB3A8A330FCF90, 5D9081A07F91AF704D27EEE60516D6E1E0A106D1656CEF0C5C50E51C23E17F61 ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
06:30:55.0156 0x2cbc  usbehci - ok
06:30:55.0156 0x2cbc  [ D67AABAE0C9EBAC9BBA2E20E0AF52EF1, FE51895BB81E5320F66C433378469092D39F325D310543AFE28A5603FA9B4F08 ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
06:30:55.0187 0x2cbc  usbhub - ok
06:30:55.0187 0x2cbc  [ D1F6348F41DFCE25AA918E38F02E80FD, 1ED0F3358D0C245C7160F3E9B5A5C5927488BE69468C51E5F329801EE844A476 ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
06:30:55.0218 0x2cbc  USBHUB3 - ok
06:30:55.0218 0x2cbc  [ A547E7B1B3FB2228259AA85AC7E82698, AB18BBE30A2D149A0E10621DC8497A72DFB841B09F4E4B47FED21843C0F88D92 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
06:30:55.0234 0x2cbc  usbohci - ok
06:30:55.0234 0x2cbc  [ 692C0BA4109C8F78392A299369F51129, A675E11CD4794693D0B65A06E85F264199506A4C6EDBB68503163EED389B8D1F ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
06:30:55.0234 0x2cbc  usbprint - ok
06:30:55.0250 0x2cbc  [ 45A9E57185B79420EFEA5A4AED655809, 91D4BDBBAF1D06C404AC926357C3F20D780CF5C858B223930D69CFB17D81F3D3 ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
06:30:55.0250 0x2cbc  usbser - ok
06:30:55.0265 0x2cbc  [ CEF7527514EC49EBE0C760D784643EF0, 2A4E49C5C906339C31F0A646E53773297F4B4CEAFD94CE653C37556AE243E104 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
06:30:55.0265 0x2cbc  USBSTOR - ok
06:30:55.0281 0x2cbc  [ A4124036C4FD2B94C6157C4588EEB4E3, 595C8BFB5E63AEA2F7DF2745F7C7CE45938B091470C921E3064E766A0E12851F ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
06:30:55.0281 0x2cbc  usbuhci - ok
06:30:55.0296 0x2cbc  [ 9F4CCFCD4B4C6008C940510E43D54AEC, CD6082E95EBA618490A2A97E258875440B3440E721B21E81608804B90DEF0D20 ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
06:30:55.0312 0x2cbc  USBXHCI - ok
06:30:55.0343 0x2cbc  [ CE0E3BA8FC974BEE5BE20E4F43A1C583, E19DE81559FD92D1F7B0ADB4297926E6971F7FCB642E11758D361FC2A22C33BB ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
06:30:55.0390 0x2cbc  UserDataSvc - ok
06:30:55.0406 0x2cbc  [ B8D1D74FEF1F190BA4DA7E7A72D5D9CE, F467F39EE09DDC7750BF42C3FF317E0DC324897589268B4C7B63F8E176445820 ] UserManager     C:\WINDOWS\System32\usermgr.dll
06:30:55.0453 0x2cbc  UserManager - ok
06:30:55.0468 0x2cbc  [ C6C17BECA29DB0D6F6FF6D45EB65FF80, EAF77B7A92E1C86E046C1570521F2389B804AADDB52C860DC2124340378FF26B ] UsoSvc          C:\WINDOWS\system32\usocore.dll
06:30:55.0531 0x2cbc  UsoSvc - ok
06:30:55.0531 0x2cbc  [ 3E283D06357616CD4117CC15BDB7C4C3, ACE50702EE61C9F93855720037898F19E509D45982F9173643EDA455F54FB9E7 ] VacSvc          C:\WINDOWS\System32\vac.dll
06:30:55.0546 0x2cbc  VacSvc - ok
06:30:55.0562 0x2cbc  [ 317340CD278A374BCEF6A30194557227, 593DA57CDD02F4CC3A5125CE5707C222DD922F2936D16492BA21AC6C345EC6B0 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
06:30:55.0562 0x2cbc  VaultSvc - ok
06:30:55.0562 0x2cbc  [ 8DCB7E5A9497C030484E5AD9E541B85C, 1170E5C190E2B6F2966076EFF11B8476CC03D924F43144C2936E11314A89ACA6 ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
06:30:55.0578 0x2cbc  vdrvroot - ok
06:30:55.0593 0x2cbc  [ 4940B49502323905B66039D0D1AB4613, 963BFD563B5A79F0AE81EB9708E85901A545545D4F25FCF37A17295EE9EDA514 ] vds             C:\WINDOWS\System32\vds.exe
06:30:55.0625 0x2cbc  vds - ok
06:30:55.0625 0x2cbc  [ 5C25C1A89650C95D15F7988D71487B08, EC42E586309B46CF51EC5DC00362ABA82A503545292CACE7B3D23BB0F5E687B9 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
06:30:55.0640 0x2cbc  VerifierExt - ok
06:30:55.0656 0x2cbc  [ E8E5F722A699EF037891D735CB588F8D, 66D0C76C668DBD5BCE2B30B1936486EC21455BE293203C41B8E3B031ED012A22 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
06:30:55.0671 0x2cbc  vhdmp - ok
06:30:55.0671 0x2cbc  [ 209A34F4BE17B0A56328C86F8CCC5577, 58F8A57233FC7DD220A6EF64FD48C2A5756B21AB30644FF6919847D13FF44F16 ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
06:30:55.0687 0x2cbc  vhf - ok
06:30:55.0687 0x2cbc  [ 44F4ED5D8FC0CFA7C3755D44C575D994, CB52418888916D185C74992BDD7A26E13A1C60F83E5FF664A3DE00424C1C4BC6 ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
06:30:55.0703 0x2cbc  vmbus - ok
06:30:55.0703 0x2cbc  [ E2D57FB1A62F0BB7F70570806A09CE2B, DCF1699488D913C9E94E2C74CD8606BDAFF69B995B2E3B7DE7F2E9C4D2E6ECF2 ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
06:30:55.0715 0x2cbc  VMBusHID - ok
06:30:55.0715 0x2cbc  [ C9F69EBA06A703CE726CC6FC0AEFB5E9, 53E441D9D6017CC4BB75F41C6CB9DA79DE500CACBDDE58104D1857A2B749C373 ] vmgid           C:\WINDOWS\System32\drivers\vmgid.sys
06:30:55.0731 0x2cbc  vmgid - ok
06:30:55.0731 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll
06:30:55.0762 0x2cbc  vmicguestinterface - ok
06:30:55.0762 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicheartbeat   C:\WINDOWS\System32\icsvc.dll
06:30:55.0778 0x2cbc  vmicheartbeat - ok
06:30:55.0778 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll
06:30:55.0793 0x2cbc  vmickvpexchange - ok
06:30:55.0809 0x2cbc  [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicrdv         C:\WINDOWS\System32\icsvcext.dll
06:30:55.0824 0x2cbc  vmicrdv - ok
06:30:55.0840 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicshutdown    C:\WINDOWS\System32\icsvc.dll
06:30:55.0856 0x2cbc  vmicshutdown - ok
06:30:55.0856 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmictimesync    C:\WINDOWS\System32\icsvc.dll
06:30:55.0871 0x2cbc  vmictimesync - ok
06:30:55.0871 0x2cbc  [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicvmsession   C:\WINDOWS\System32\icsvc.dll
06:30:55.0887 0x2cbc  vmicvmsession - ok
06:30:55.0903 0x2cbc  [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicvss         C:\WINDOWS\System32\icsvcext.dll
06:30:55.0918 0x2cbc  vmicvss - ok
06:30:55.0918 0x2cbc  [ 708410755721F94FC8939673893C2E2B, C8516DDE667614545DA076A9D034A7941D3E03953CB41576A979199363AB7A99 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
06:30:55.0934 0x2cbc  volmgr - ok
06:30:55.0934 0x2cbc  [ 1514506CA7462A64DC38C48108DDBB45, DEE5D7B79962D9EB6D92FCF870CA1B06FE68CE6AE25F82A5B449445C99E76D2A ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
06:30:55.0949 0x2cbc  volmgrx - ok
06:30:55.0965 0x2cbc  [ F0EE4E6028CCA58BEA9A04E7BEAB7DB4, 628D0E3D60256B914E46C26BCE8F512DFE0409C34EA603EB0A20C80EB469A4D2 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
06:30:55.0981 0x2cbc  volsnap - ok
06:30:55.0981 0x2cbc  [ 77FD1607F2C371ABD241EC7699C58884, A6FE00D76C615DC641A667EB9B6824C992ED752A31A89AE3FE43BAE5462F3EB7 ] volume          C:\WINDOWS\system32\drivers\volume.sys
06:30:55.0996 0x2cbc  volume - ok
06:30:55.0996 0x2cbc  [ CB90DACF9194DD9D60A2C1DBFBC1E0D1, BE454495C79857FD8DF4ABAF5BDB7D076467BBC27B31E87FA9D920F2001B670D ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
06:30:55.0996 0x2cbc  vpci - ok
06:30:56.0012 0x2cbc  [ ED0B3436E1DE601C6C8EB86789AC8BAB, 0CD186B09903A1D3748A3258D8B84557F3674DA04FEB8EFA24AE81FFE376265C ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
06:30:56.0028 0x2cbc  vsmraid - ok
06:30:56.0043 0x2cbc  [ C7053D974A35EAB81F153FF33C883613, 9D89DC644971F93931D0E59D42ADE0A4AB49A5490709B46FCBBC309041C5432D ] VSS             C:\WINDOWS\system32\vssvc.exe
06:30:56.0106 0x2cbc  VSS - ok
06:30:56.0106 0x2cbc  [ 3D706FBED35DF3B17809C6714F31F9B0, BBC337479DEB628721E651FC165EA01D986E31950189F1A81534922667101487 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
06:30:56.0121 0x2cbc  VSTXRAID - ok
06:30:56.0121 0x2cbc  [ 0B11DBB8173AD374D67893D54EBEE9F3, AB8B6FC81244729157E59D062FCC234FD7E818804D94AA6B7BF81E01B7922395 ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
06:30:56.0137 0x2cbc  vwifibus - ok
06:30:56.0137 0x2cbc  [ 95540F74893235C189409C98643D7A77, 4F041301C95F55C8448C3CC5825ED9E631E770BA35BEC8498A0ABB3563584AAE ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
06:30:56.0153 0x2cbc  vwififlt - ok
06:30:56.0153 0x2cbc  [ 60A14582772A4DF0D0BE27B3F873BE6B, 93DB43D2F4B985A3FF1A152ADEDBB52567CCC29B899F96F8BA0FA9558EF2DF6D ] vwifimp         C:\WINDOWS\System32\drivers\vwifimp.sys
06:30:56.0168 0x2cbc  vwifimp - ok
06:30:56.0184 0x2cbc  [ 4F904ADE8BECDFB48CBA3F44FC0676A1, 2C3D619E9AD0D0DAEC0D170795FD6E5B7FE3FC667C947660320A9BC671B55736 ] W32Time         C:\WINDOWS\system32\w32time.dll
06:30:56.0199 0x2cbc  W32Time - ok
06:30:56.0215 0x2cbc  [ 1C8447EFBC2B36B1CFE889E519F46A6E, 2601185B01909682FB921400C26BE6391AC93F72E84E70E2F49B4059987E191E ] WaaSMedicSvc    C:\WINDOWS\System32\WaaSMedicSvc.dll
06:30:56.0231 0x2cbc  WaaSMedicSvc - ok
06:30:56.0246 0x2cbc  [ 87A01F65BD16C9FCCDD1B65F56CB93B0, E84B46DB67F2FCB22DB7130570FE7211FC96A806AC9D1D69D187899C93785CB2 ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
06:30:56.0246 0x2cbc  WacomPen - ok
06:30:56.0262 0x2cbc  [ 25FAB8A2CFFA21FDB472AB3AE6C17A57, C97E651111643F32FD5B94BEDA31D62E6FF83CA0644FFE8BA98463EC9EA6EF9B ] WalletService   C:\WINDOWS\system32\WalletService.dll
06:30:56.0285 0x2cbc  WalletService - ok
06:30:56.0285 0x2cbc  [ 85E187443F68F285DB78BD2279AE3701, FAC03A162CF07FCC6BDB4E45F5EDF16D48BE10D95F73A74E9BADA62EC7F24B53 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
06:30:56.0300 0x2cbc  wanarp - ok
06:30:56.0300 0x2cbc  [ 85E187443F68F285DB78BD2279AE3701, FAC03A162CF07FCC6BDB4E45F5EDF16D48BE10D95F73A74E9BADA62EC7F24B53 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
06:30:56.0316 0x2cbc  wanarpv6 - ok
06:30:56.0316 0x2cbc  [ 395447583F42FD840520EE87AE439D74, 984AE1EE8BA3B8926C6FC94BC22DE9061C90C15135EA56D0F16C1D3C4EF8DAF8 ] WarpJITSvc      C:\WINDOWS\System32\Windows.WARP.JITService.dll
06:30:56.0332 0x2cbc  WarpJITSvc - ok
06:30:56.0363 0x2cbc  [ 6E235F75DF84C387388D23D697D6540B, 7113DD02243E9368EF3265CF5A7F991F9B4D69CAB70B1A446062F8DD714AFC8E ] wbengine        C:\WINDOWS\system32\wbengine.exe
06:30:56.0441 0x2cbc  wbengine - ok
06:30:56.0472 0x2cbc  [ 4A9F35F16FDC5FEED34E10F02697CA1F, 71FF0EE5CB33A2B65BC56DC4381D4C6834685C8DB2B9FEB741B149DD5029F0F3 ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
06:30:56.0504 0x2cbc  WbioSrvc - ok
06:30:56.0504 0x2cbc  [ 8A304D6CDC067922448CBA1EBB9FFCA8, DE40DD3A32DFF22C477F38B5E2224D55B8CCF2499EFFE0A8E9923728295BAEC1 ] wcifs           C:\WINDOWS\system32\drivers\wcifs.sys
06:30:56.0519 0x2cbc  wcifs - ok
06:30:56.0535 0x2cbc  [ 24E96C02CBCCFFDE8D5CB9E7509DE374, E889050EF966ACF7BEACAC8782D28F7BB484E70025A6A40162EFAECF3D396FD4 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
06:30:56.0566 0x2cbc  Wcmsvc - ok
06:30:56.0582 0x2cbc  [ B797B163EDCA46B5244F4E083BE7A7E7, 18D977A8015380A87EC9962273B90806145186A69F3455B3445A0FE1FE431219 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
06:30:56.0597 0x2cbc  wcncsvc - ok
06:30:56.0613 0x2cbc  [ FCA1B5465213EF4DE373A1F7E76D260E, 2548A9D11027871AD0290FDADF1E42E828E6120ECE925B12BAB3F09E25172489 ] wcnfs           C:\WINDOWS\system32\drivers\wcnfs.sys
06:30:56.0629 0x2cbc  wcnfs - ok
06:30:56.0629 0x2cbc  [ 9BD1C97BAED4B916C95D4E107B3D9812, 722456319EBA63AC6EB21B6A99F4FC928F58AA972DF227EDF0982BC51F4DE86D ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
06:30:56.0629 0x2cbc  WdBoot - ok
06:30:56.0644 0x2cbc  [ 152926023B401D1F5F8852929572F5C3, 61D0FDB0E3A4D16FFA6852174B3824F6294502E331BB0831BCF99F049B09C328 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
06:30:56.0675 0x2cbc  Wdf01000 - ok
06:30:56.0675 0x2cbc  [ D25D9930BFD78A09B8FD4A7504C6F57A, 9D94BC1368A73B06312ED9016482534EA64F7005C85AAB240ED619FDD19E7F4C ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
06:30:56.0691 0x2cbc  WdFilter - ok
06:30:56.0707 0x2cbc  [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
06:30:56.0722 0x2cbc  WdiServiceHost - ok
06:30:56.0722 0x2cbc  [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
06:30:56.0738 0x2cbc  WdiSystemHost - ok
06:30:56.0754 0x2cbc  [ 5DDA2C4B9AAED51E73DD6D580406F07A, 5C103E442ED4A9CC3C4E81D6C4E6BEE2FD14E4DBE57EC46DA0EF4C539D42756B ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
06:30:56.0785 0x2cbc  wdiwifi - ok
06:30:56.0785 0x2cbc  [ EAF4FB729E94561EE31BDE5BEF869C65, 73290250B565E0A3F453BC45E69FF16A1D964E372A15401A2D3E2CDEB4670B38 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys
06:30:56.0785 0x2cbc  WdmCompanionFilter - ok
06:30:56.0800 0x2cbc  [ 54E97FEADEEFF973797EB878DC0D2850, A7ABD9E8B94DA19328BB9BF498D64603C6147BE998C40A6F0F8C2E0716CBFC95 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
06:30:56.0800 0x2cbc  WdNisDrv - ok
06:30:56.0816 0x2cbc  WdNisSvc - ok
06:30:56.0816 0x2cbc  [ BDCC510E85F7AF152E2DFF030A526EA2, 67830B42DE20EBB30DD33093F30FBA166B27D3C1F25B52DABE1BC436671A1882 ] WebClient       C:\WINDOWS\System32\webclnt.dll
06:30:56.0832 0x2cbc  WebClient - ok
06:30:56.0847 0x2cbc  [ 506F0A1CCABF4428733CF854BCBB6832, 859A7E21ABB93A0AD538AAF93D32E31B961EA6012C24567B4C76A9ED8FD4AD46 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
06:30:56.0863 0x2cbc  Wecsvc - ok
06:30:56.0863 0x2cbc  [ D8D727E8311C86B2A993A9006A453BAC, AD6C93F5ED51C621841DF68A25D5932578FADB83689FB668D056F316A8AA749D ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
06:30:56.0879 0x2cbc  WEPHOSTSVC - ok
06:30:56.0879 0x2cbc  [ 30B4568D058E17500E7BF88AECEDF3F1, 612597DFAF63E55ACB80789483CBCF0E5AC5FF7607C478C61E5A86D77B169E9E ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
06:30:56.0894 0x2cbc  wercplsupport - ok
06:30:56.0894 0x2cbc  [ 5DDB06B07A60E7AEA69837931373C159, 4E0A3260058B19F414B5053701C4723C27735818212AB3D297F896BF4C39E536 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
06:30:56.0925 0x2cbc  WerSvc - ok
06:30:56.0925 0x2cbc  [ 0427A785512BB39BEA530DC5367A9A03, 8ED29AE0FDB65D4E1D8CD3FA1783D74EF7B01AB30DD1090C917A74AC88FD4C3E ] WFDSConMgrSvc   C:\WINDOWS\System32\wfdsconmgrsvc.dll
06:30:56.0957 0x2cbc  WFDSConMgrSvc - ok
06:30:56.0972 0x2cbc  [ EB0B154F12F78DE232F38EF61BCDEEA2, D4BC28969C94F9A3906339B42FC3638E8BFF575C28C709461D48A84821A89A21 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
06:30:56.0972 0x2cbc  WFPLWFS - ok
06:30:56.0988 0x2cbc  [ 752F5931696914DF2EC0B27275C38458, 83415E7BE50D9548785FBF6550FA679E425B5990F303E2D74513275A5E1DC828 ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
06:30:57.0004 0x2cbc  WiaRpc - ok
06:30:57.0004 0x2cbc  [ 3AE28A996C9EB8A6F2AC12BC55035126, E54227B97F42800D445241EA638EFE86A7FEC664E96A0FA38BC48DDF7DA182AD ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
06:30:57.0004 0x2cbc  WIMMount - ok
06:30:57.0004 0x2cbc  WinDefend - ok
06:30:57.0019 0x2cbc  [ 2BB82BABE32D41F430D290239ABC0E87, 2D519F0B86F7B87B7028E404821EDE8B7BDA18288EF32CF81C25B9C1E629FFB1 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
06:30:57.0035 0x2cbc  WindowsTrustedRT - ok
06:30:57.0035 0x2cbc  [ 5F0EDDA201630E132C2251BC9DA85023, 842B5CBA8C33616345EDC2F91B560416AAEAAB15A8CE1F36978B251CE4CBDA16 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
06:30:57.0035 0x2cbc  WindowsTrustedRTProxy - ok
06:30:57.0050 0x2cbc  [ 939AA47A32AFE2BC17EB39FB2ED1DDC2, 7BBE6FE475FF7971EBB59682872003059AC9B27D51898BA4C094C70534E057B6 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
06:30:57.0082 0x2cbc  WinHttpAutoProxySvc - ok
06:30:57.0082 0x2cbc  [ 762D8D839C44C5A0BE0449AA84034522, E6602D0FDB501081DF165CE904DA0FEC75F3FE29C3B07B44DED6268612742F9C ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
06:30:57.0097 0x2cbc  WinMad - ok
06:30:57.0097 0x2cbc  [ 72D83880FEF0C788C5F305F330744208, 3126C2907170BBA47421D61CD6ED04DA3A3FCC66B4DBFCB4E3B56001B3BF6045 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
06:30:57.0113 0x2cbc  Winmgmt - ok
06:30:57.0129 0x2cbc  [ 48194110C410B335AC985D9194275A1C, 1CE64B9DD2DB4CCB3916AA4F4C5F8C71C647ABF7845D284019725761138B8A8B ] WinNat          C:\WINDOWS\system32\drivers\winnat.sys
06:30:57.0144 0x2cbc  WinNat - ok
06:30:57.0175 0x2cbc  [ C57185CC62AA13E4F5A989D904CC9A16, 993F27F710148335C4244AB74D4B1D232DEDB0E3D82E39093A1E422C72283D31 ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
06:30:57.0269 0x2cbc  WinRM - ok
06:30:57.0269 0x2cbc  [ 6FA3D810FE082001B16ADE19829F1E8E, 64B420FC14AB3194D4D2907EA5BE741456928E7E3CB9CBA50FEB8677A43B1971 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
06:30:57.0285 0x2cbc  WINUSB - ok
06:30:57.0285 0x2cbc  [ D2D6DB37E06608A5AF5B68D8E677B219, C7AAFEE7AAF76A4DCFF4FD2EE7232501832A57E3EE92CE20FA4A5D22F03FBE45 ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
06:30:57.0300 0x2cbc  WinVerbs - ok
06:30:57.0316 0x2cbc  [ 08BEB7851B4B8AA07325C23A657233F1, 6D7A4D194D342A5BC3EE9738765B2F5D6B75165954CA6B0D9CD4B40B262C300E ] wisvc           C:\WINDOWS\system32\flightsettings.dll
06:30:57.0347 0x2cbc  wisvc - ok
06:30:57.0394 0x2cbc  [ 2490E373EC18869BA4FE435CFDE3ADEE, 5A3A9D11B426E5F13040758A1BE2284851C3E653E49340C1C75CF9EC3CE418B7 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
06:30:57.0472 0x2cbc  WlanSvc - ok
06:30:57.0503 0x2cbc  [ 28A32E1F7A46A833DE104EF43E389F5F, 5A88C409DD9CC74ED6CEBEB5DFC8DDADFAB9D1CBDFD4EB78D7CBB6D55749C235 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
06:30:57.0582 0x2cbc  wlidsvc - ok
06:30:57.0597 0x2cbc  [ 59F6A50CD336D0ADD22E3F1FC0D73957, A62469B30325965735FE76AE7D83E5D829AE09D7F0996CC0B42604E68426B088 ] wlpasvc         C:\WINDOWS\System32\lpasvc.dll
06:30:57.0644 0x2cbc  wlpasvc - ok
06:30:57.0644 0x2cbc  [ EAEF2A087812BB7110C744446AB731D5, F5571D3C47564DFB6182DC43CC28124892323B60C3F389599DFEC94D227B4A86 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
06:30:57.0660 0x2cbc  WmiAcpi - ok
06:30:57.0660 0x2cbc  [ ABAC310F5E01CBA9B33AE694F99D0977, 700CDC85479CDBF765FB1A6A389DC991FC4D2A77851A81FF80BEED921250DBF6 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
06:30:57.0675 0x2cbc  wmiApSrv - ok
06:30:57.0691 0x2cbc  WMPNetworkSvc - ok
06:30:57.0691 0x2cbc  [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
06:30:57.0707 0x2cbc  Wof - ok
06:30:57.0738 0x2cbc  [ 0D3303BDBC591ECF113601D7853A1AA7, 437CF89541696E0B1A8056F4A5189642FC76D762113ED4F71458AF4D72FC3E9A ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
06:30:57.0800 0x2cbc  workfolderssvc - ok
06:30:57.0816 0x2cbc  [ 58DA02D34C964C00AF9140C07CCFF8F0, 6A02F326251A790F76E59737E20CB6C38190F671766E56CE6C7FB33D1A4588B9 ] WpcMonSvc       C:\WINDOWS\System32\WpcDesktopMonSvc.dll
06:30:57.0863 0x2cbc  WpcMonSvc - ok
06:30:57.0878 0x2cbc  [ 7412ECE8BD5590881FA9780B68BD70C5, 52329B5BF78E2F5792369FE5A72CF4E3E216D4F0670507D10F3DB8383FA5E0BC ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
06:30:57.0896 0x2cbc  WPDBusEnum - ok
06:30:57.0896 0x2cbc  [ 15C1131EA0216F799C86B03EDAE0BE45, 39F50C084407BC3B498714B74DDA5D63E0539681F324A18ABBED3CD0DE5D52AA ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
06:30:57.0896 0x2cbc  WpdUpFltr - ok
06:30:57.0911 0x2cbc  [ 096969606BB5C4822AB020081EA07FC5, 522F372834B0497215F45ACBC417DA10DCE45C6D3C7099E47BBA18700C294B22 ] WpnService      C:\WINDOWS\system32\WpnService.dll
06:30:57.0927 0x2cbc  WpnService - ok
06:30:57.0927 0x2cbc  [ 8B694BC50D2D2B98311283CFE5B40EE6, 734F8985CAD99E8635ACF09309D958D2B7FB05C6FF54DBE3623DC071BECE3413 ] WpnUserService  C:\WINDOWS\System32\WpnUserService.dll
06:30:57.0943 0x2cbc  WpnUserService - ok
06:30:57.0958 0x2cbc  [ C1C2E769FCD3B00A59FF876FB2AD4336, B4D9065268A8B3C509E9160E6F30C20F80D14876C9F6C1057245F09CEB6B0F36 ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
06:30:57.0958 0x2cbc  ws2ifsl - ok
06:30:57.0974 0x2cbc  [ DCB549367EB94CD8AFAA28E3F77F6493, 9FD2C6E03F398E76403502CFC94EB8EBD2F90ED5E95ABA5E86C1B7F63601C43C ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
06:30:57.0990 0x2cbc  wscsvc - ok
06:30:57.0990 0x2cbc  WSearch - ok
06:30:58.0031 0x2cbc  [ 63C79AD0202728F4608757340B7D602B, 68CEF28372BD23149AE7E33BE83AB8FD49FB615F60E238C15B3E46D46D5CEB3E ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
06:30:58.0125 0x2cbc  wuauserv - ok
06:30:58.0140 0x2cbc  [ 813DC18CC654CFB1875074139B0FEFD3, 87901841AFD9224BFEC06A712BE3C2371E16D3571210D4792F91034A2B926A06 ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
06:30:58.0140 0x2cbc  WudfPf - ok
06:30:58.0156 0x2cbc  [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
06:30:58.0172 0x2cbc  WUDFRd - ok
06:30:58.0172 0x2cbc  [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
06:30:58.0187 0x2cbc  WUDFWpdFs - ok
06:30:58.0203 0x2cbc  [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
06:30:58.0218 0x2cbc  WUDFWpdMtp - ok
06:30:58.0250 0x2cbc  [ FAFE3B08208AA28C82BC42731B4EEBE8, 333D9CBE6B3492BC30A7B64C1F83494B38AD2CE7C832C1D68FEBD2EB8029230D ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
06:30:58.0297 0x2cbc  WwanSvc - ok
06:30:58.0297 0x2cbc  [ 51D3A1E2285E2E931A553281BBA10E81, 8B371AF5E7717C53780A5C2F68400412C4DB0F01AC6551476FF062B83A7D0AC8 ] xbgm            C:\WINDOWS\system32\xbgmsvc.exe
06:30:58.0312 0x2cbc  xbgm - ok
06:30:58.0328 0x2cbc  [ DB952AD196A9548CF5235A71E5197F3F, 6C51EB14B2808665FCB999F376A97018F6B0A91EE6E63A25C044EA59A5713EE1 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
06:30:58.0375 0x2cbc  XblAuthManager - ok
06:30:58.0390 0x2cbc  [ 8C0DD7BFFF5A81AEC26AD720057F5451, 4503D4DD540DB9977BBFF3BF7E92BE9778578B769972CF8A54AF0F1FF5C79BF5 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
06:30:58.0468 0x2cbc  XblGameSave - ok
06:30:58.0484 0x2cbc  [ 93352403D9E6B71C275996690672488F, A012D907679B29988D18C71928BDF528506DC05A2DEF01F472B7F0CC043A0340 ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
06:30:58.0500 0x2cbc  xboxgip - ok
06:30:58.0500 0x2cbc  [ C7FEC5C0377E5598BA919B29731CA45F, C153C62742B6F981905AEF7C464761E5894260F26EE164968B21D93979376378 ] XboxGipSvc      C:\WINDOWS\System32\XboxGipSvc.dll
06:30:58.0515 0x2cbc  XboxGipSvc - ok
06:30:58.0531 0x2cbc  [ 3A94BD93CD2D9C34725D924230B502A5, 87AF2061D348FFFA190D0E50E6860903BED46968CF64B7765D8D80127C702E6A ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
06:30:58.0578 0x2cbc  XboxNetApiSvc - ok
06:30:58.0578 0x2cbc  [ CE1F78B5C1F14F74242008B2B3153FA2, 682D1F32DD1BBEB031D5129CE40D9C77D3C6CF4FB5979F1918B2482AF617B5BE ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
06:30:58.0593 0x2cbc  xinputhid - ok
06:30:58.0656 0x2cbc  [ EB62D8843FB1669B30D28046E63932F8, 0317419FC6F719670D6095109EA461DE39DA4284082F533A398E05F64E5CCDC9 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
06:30:58.0718 0x2cbc  ZeroConfigService - ok
         
Code:
ATTFilter
06:30:58.0718 0x2cbc  ================ Scan global ===============================
06:30:58.0734 0x2cbc  [ 44D259E3B8F950D123CBE21893CEF1AB, 94FEA350B54D1581FF07D078D25A27FE3C9F815E24D299A0504FB1153E68A903 ] C:\WINDOWS\system32\basesrv.dll
06:30:58.0734 0x2cbc  [ 1C346B5D7E5336246604A9FCFCB092BC, BD0C56C943A8F23CA9CD1CE1FE4F9D2183F752B469A72D14B713301A867AE776 ] C:\WINDOWS\system32\winsrv.dll
06:30:58.0734 0x2cbc  [ FE8D1AB6D6711BE791A01C17EDEBD0D6, EECE3A16DFA0BE1BB1E7B882D33FB926C90A1DCA89805DD3514FABF7C9F05253 ] C:\WINDOWS\system32\sxssrv.dll
06:30:58.0750 0x2cbc  [ E2F4C75AFA20E742DE1B70372F15DCD7, 6AF120D627E26274D001A01E5CB9B165318B14B9FA8F1C8C59BF069DA1114618 ] C:\WINDOWS\system32\services.exe
06:30:58.0765 0x2cbc  [ Global ] - ok
06:30:58.0765 0x2cbc  ================ Scan MBR ==================================
06:30:58.0765 0x2cbc  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
06:30:59.0217 0x2cbc  \Device\Harddisk0\DR0 - ok
06:30:59.0233 0x2cbc  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
06:30:59.0280 0x2cbc  \Device\Harddisk1\DR1 - ok
06:30:59.0280 0x2cbc  ================ Scan VBR ==================================
06:30:59.0280 0x2cbc  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition1
06:30:59.0280 0x2cbc  \Device\Harddisk0\DR0\Partition1 - ok
06:30:59.0295 0x2cbc  [ 53CCDB06042CBAA2142AAE8D0C0C16AC ] \Device\Harddisk0\DR0\Partition2
06:30:59.0295 0x2cbc  \Device\Harddisk0\DR0\Partition2 - ok
06:30:59.0295 0x2cbc  [ 11C8A378F4C7607E4C6C5ED9DB54A5F4 ] \Device\Harddisk1\DR1\Partition1
06:30:59.0311 0x2cbc  \Device\Harddisk1\DR1\Partition1 - ok
06:30:59.0311 0x2cbc  [ ED8D0CCC18ED83C425406D620AF9396B ] \Device\Harddisk1\DR1\Partition2
06:30:59.0311 0x2cbc  \Device\Harddisk1\DR1\Partition2 - ok
06:30:59.0311 0x2cbc  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition3
06:30:59.0311 0x2cbc  \Device\Harddisk1\DR1\Partition3 - ok
06:30:59.0311 0x2cbc  [ 4850872AF078029EAF0F5B0190C608E2 ] \Device\Harddisk1\DR1\Partition4
06:30:59.0311 0x2cbc  \Device\Harddisk1\DR1\Partition4 - ok
06:30:59.0311 0x2cbc  [ D41E87C34DCB0A24630BD8BC26376908 ] \Device\Harddisk1\DR1\Partition5
06:30:59.0327 0x2cbc  \Device\Harddisk1\DR1\Partition5 - ok
06:30:59.0327 0x2cbc  ================ Scan generic autorun ======================
06:30:59.0327 0x2cbc  SecurityHealth - ok
06:30:59.0327 0x2cbc  ETDCtrl - ok
06:30:59.0577 0x2cbc  [ 2B2ADA384F736AE16B1595631720E260, B52750F9B3C54E6AE44F0EF86503BB191D3232029A94FD9F402B13521B23AB22 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
06:30:59.0936 0x2cbc  RTHDVCPL - ok
06:30:59.0967 0x2cbc  [ B9674146FA8401301655CDCD660A663E, 60C862891E95A6BBB1B8D02C0EA46DEDC69D4E41AAE0BFD51E9B21F58A425193 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
06:30:59.0998 0x2cbc  RtHDVBg_DTS - ok
06:31:00.0030 0x2cbc  [ B9674146FA8401301655CDCD660A663E, 60C862891E95A6BBB1B8D02C0EA46DEDC69D4E41AAE0BFD51E9B21F58A425193 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
06:31:00.0045 0x2cbc  RtHDVBg_DTS_SWVOL - ok
06:31:00.0076 0x2cbc  [ 686DDC70BC186DD0B4A009355E2BFD90, 2B578A10294540FF45F61705E5AC8640ADA1AF3C17012BB7537394A01B13D172 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
06:31:00.0122 0x2cbc  NvBackend - ok
06:31:00.0122 0x2cbc  [ D2B4AC8E086C411524CDE1C54F0432BA, 094C9943E9DDEC778B1A3F69E26ABFB5425CF07867F50174923C8B4E5C077B4C ] C:\Program Files\Greenshot\Greenshot.exe
06:31:00.0137 0x2cbc  Greenshot - ok
06:31:00.0153 0x2cbc  [ FEDB6110D3E0A7EFE6996F93CD8C48E7, 719F6B648AE9841B03C8FB9FC9D0CB1233FDD3030FBD3C420C3E8CEB59A12214 ] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe
06:31:00.0169 0x2cbc  CanonSolutionMenu - ok
06:31:00.0216 0x2cbc  [ 948EB9C552C05DF39F79587E6979D9F5, 402B155395C32005A8D78C8B0F00F2391542CB41188AF944FF17ADE6BE97A62D ] C:\Program Files\Logitech\SetPointP\SetPoint.exe
06:31:00.0278 0x2cbc  EvtMgr6 - ok
06:31:00.0294 0x2cbc  [ 554AAF17B6EAD193CD5901185FECA8BE, 7D7648B58A05D18CAA3FD6EA71E282A6811905B3DE846222B99BA2783C417BF6 ] C:\Program Files\ESET\ESET Security\ecmds.exe
06:31:00.0294 0x2cbc  egui - ok
06:31:00.0294 0x2cbc  [ 73C519F050C20580F8A62C849D49215A, 38847DC4C82C0775E7DAFCBC7FEA50749CDAC7B50AB8602E8FDFAD4401954C87 ] C:\Windows\system32\rundll32.exe
06:31:00.0309 0x2cbc  Logitech Download Assistant - ok
06:31:00.0325 0x2cbc  [ 452F6F498AE81B2FE9E53CACF16EFBBD, E4BA7400AD3CE48087D09A41BBBC51972C5005528FEEC1A265D5B050294995AC ] C:\Program Files (x86)\Fujitsu\FUJ02B1\CheckBatteryPack.exe
06:31:00.0325 0x2cbc  FUJ02B1_Apps - ok
06:31:00.0341 0x2cbc  [ 8DC1530ACA2323D408F2571CF237E845, BF1CF299EE8145F9A92082F29E159CBBE5321AA6D8E5CC588E87A6BF810223E5 ] C:\Program Files (x86)\Fujitsu\DeskUpdate\DeskUpdateNotifier.exe
06:31:00.0341 0x2cbc  DeskUpdateNotifier - ok
06:31:00.0341 0x2cbc  [ 45843807D6CD26A1665641EC80E6D91B, 6C18A2A98A1424FD1865C0FA9FBA0EA4E977BA8F61888E7ACB29A1CF900D518A ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
06:31:00.0356 0x2cbc  IMSS - ok
06:31:00.0372 0x2cbc  [ 9CE467BFF974344FB989F83D600B0A80, 40AEBDFEB9380ED5F3A6995F108C9D8D3D1433778C835B75FAE3B1A3534794DF ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
06:31:00.0387 0x2cbc  SunJavaUpdateSched - ok
06:31:00.0387 0x2cbc  [ FAB1215FDFF04559F1B5165A899E338C, B8AF38A8BCB7CDDD78E64694F862C6E6CCE4CEFD2ED1979DBE217F7E43D8F6DC ] C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
06:31:00.0387 0x2cbc  CLMLServer_For_P2G8 - ok
06:31:00.0403 0x2cbc  [ FFAFA5FE77F2BAA9116FCE09C7881384, 4D915B956C27EC86E7CC18539A49C900172627421C9AF1C4B1C6341A01F66683 ] C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
06:31:00.0419 0x2cbc  CLVirtualDrive - ok
06:31:00.0419 0x2cbc  [ E06043CD0F9924994469A495FFAE7B3C, 19404741F5463375160845E498B57B9D689092E71EF6F683499909F2EFC8DF6C ] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
06:31:00.0419 0x2cbc  IJNetworkScanUtility - ok
06:31:00.0762 0x2cbc  [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
06:31:01.0184 0x2cbc  OneDriveSetup - ok
06:31:01.0200 0x2cbc  [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
06:31:01.0231 0x2cbc  WAB Migrate - ok
06:31:01.0559 0x2cbc  [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
06:31:01.0887 0x2cbc  OneDriveSetup - ok
06:31:01.0919 0x2cbc  [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
06:31:01.0934 0x2cbc  WAB Migrate - ok
06:31:01.0965 0x2cbc  [ 0E5FABACD6FC0C7D1766FF6A86F90F9A, 0E524FE27A4307ED8499A1C0D4DF1F7354BE6862085D368433F8DF7028D13803 ] C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe
06:31:01.0997 0x2cbc  OneDrive - ok
06:31:01.0997 0x2cbc  Waiting for KSN requests completion. In queue: 11
06:31:03.0059 0x2cbc  AV detected via SS2: Windows Defender, windowsdefender:// (  ), 0x60100 ( disabled : updated )
06:31:03.0059 0x2cbc  AV detected via SS2: ESET Internet Security, C:\Program Files\ESET\ESET Security\ecmds.exe ( 11.1.54.0 ), 0x41000 ( enabled : updated )
06:31:03.0059 0x2cbc  FW detected via SS2: ESET Firewall, C:\Program Files\ESET\ESET Security\ecmds.exe ( 11.1.54.0 ), 0x41000 ( enabled )
06:31:13.0230 0x2cbc  ============================================================
06:31:13.0230 0x2cbc  Scan finished
06:31:13.0230 0x2cbc  ============================================================
06:31:13.0246 0x3058  Detected object count: 0
06:31:13.0246 0x3058  Actual detected object count: 0
         

Geändert von Wekra 1 (27.07.2018 um 05:58 Uhr)

 

Themen zu Säuberung von Hijacker gelingt nicht
anti, browser, computer, einzelne, fenster, firefox, guter, hijacker, installiert, malware, malwarebytes, markt, media, neu, nichts, problem, reparieren, schnell, seite, spiel, spywareblaster, system, tab, update, wiederholt




Ähnliche Themen: Säuberung von Hijacker gelingt nicht


  1. adware.elex verschwindet auch nach mehrmaliger Säuberung nicht vom PC.
    Plagegeister aller Art und deren Bekämpfung - 04.01.2017 (22)
  2. Säuberung durchführen
    Plagegeister aller Art und deren Bekämpfung - 02.12.2016 (8)
  3. Windows 10 - Abgesicherter Modus gelingt nicht - PC fährt direkt wieder runter
    Log-Analyse und Auswertung - 20.12.2015 (12)
  4. Windows 10 - Abgesicherter Modus gelingt nicht - PC fährt direkt wieder runter
    Alles rund um Windows - 19.12.2015 (0)
  5. Windoes 10 - Abgesicherter Modus gelingt nicht - PC fährt direkt wieder runter
    Mülltonne - 19.12.2015 (0)
  6. Ermittlern gelingt Schlag gegen weltweit agierende Phisher-Bande
    Nachrichten - 24.11.2015 (0)
  7. Forschern gelingt Datenklau bei Offline-Computer
    Nachrichten - 29.07.2015 (0)
  8. Verschlüsselungstrojaner, Zugang zum Rechner gelingt nicht
    Log-Analyse und Auswertung - 29.05.2012 (4)
  9. grosse säuberung
    Plagegeister aller Art und deren Bekämpfung - 16.09.2011 (21)
  10. Hijacker deaktivier Taskmanager und Registry-Editor - Hijacker nicht entfernbar
    Plagegeister aller Art und deren Bekämpfung - 17.08.2010 (2)
  11. Werde Hijacker nicht los
    Log-Analyse und Auswertung - 27.02.2009 (9)
  12. Werde Hijacker nicht los
    Log-Analyse und Auswertung - 21.08.2006 (6)
  13. Booten gelingt nicht...
    Alles rund um Mac OSX & Linux - 11.07.2006 (4)
  14. Säuberung oder Format C ?
    Log-Analyse und Auswertung - 16.07.2005 (1)
  15. Hijacker der nicht wegzukriegen ist.
    Log-Analyse und Auswertung - 04.12.2004 (21)
  16. Werde IE.hijacker nicht los
    Log-Analyse und Auswertung - 28.06.2004 (1)
  17. Krieg den Hijacker nicht weg ;-(
    Plagegeister aller Art und deren Bekämpfung - 08.06.2004 (8)

Zum Thema Säuberung von Hijacker gelingt nicht - Hallo Cosinus, habe den TDSS-Killer, wie beschrieben, laufen lassen. Jedoch kein Fund ! Seit gestern versuche ich die Adware loszuwerden. Jedesmal wenn ich Firefox starte gehen nach kurzer Zeit ( - Säuberung von Hijacker gelingt nicht...
Archiv
Du betrachtest: Säuberung von Hijacker gelingt nicht auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.