![]() |
TR/ATRAPS.Gen2 - Fehlermeldung erscheint ständig und kann nicht behoben werden Hallo zusammen, leider erscheint seit gestern minütlich bei meinem Virenscanner Avira die Fehlermeldung: Der Zugriff auf die Datei ´C:\$Recycle.Bin\S-1-5-18\...\80000032.@´ , die ein Virus oder unerwünschtes Programm ´TR/ATRAPS.Gen2´enthält, wurde verweigert. Diese Datei kann ich leider nicht entfernen. Ich habe bereits tdsskiller heruntergeladen, bei dem er einen threat gefunden hat. Ich nutze meinen pc auch für onlinebanking usw. Könnt Ihr mir helfen? Gruß Andrea |
Hallo Andrea und :hallo: Mein Name ist Leo und ich werde dich durch die Bereinigung deines Rechners begleiten. Eine Bereinigung beinhaltet nebst dem Entfernen von Malware auch das Schliessen von Sicherheitslücken und sollte gründlich durchgeführt werden. Sie erfolgt deshalb in mehreren Schritten und bedeutet einigen Aufwand für dich. Beachte: Das Verschwinden der offensichtlichen Symptome bedeutet nicht, dass das System schon sauber ist. Arbeite daher in deinem eigenen Interesse solange mit, bis du das OK bekommst, dass alles erledigt ist. ![]()
Hoppla, ZeroAccess.. Zitat:
Weiter: Schritt 1 Downloade dir bitte defogger (von jpshortstuff) auf deinen Desktop.
Schritt 2 Lade dir Gmer herunter (auf den Button Download EXE drücken) und speichere das Programm auf den Desktop.
Schritt 3 Lade dir bitte OTL (von Oldtimer) herunter und speichere es auf deinen Desktop.
Bitte poste in deiner nächsten Antwort:
|
14:43:47.0226 1436 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 14:43:47.0304 1436 ============================================================ 14:43:47.0304 1436 Current date / time: 2013/03/23 14:43:47.0304 14:43:47.0304 1436 SystemInfo: 14:43:47.0304 1436 14:43:47.0304 1436 OS Version: 6.1.7601 ServicePack: 1.0 14:43:47.0304 1436 Product type: Workstation 14:43:47.0304 1436 ComputerName: SCHULZ-PC 14:43:47.0304 1436 UserName: SCHULZ 14:43:47.0304 1436 Windows directory: C:\Windows 14:43:47.0304 1436 System windows directory: C:\Windows 14:43:47.0304 1436 Running under WOW64 14:43:47.0304 1436 Processor architecture: Intel x64 14:43:47.0304 1436 Number of processors: 1 14:43:47.0304 1436 Page size: 0x1000 14:43:47.0304 1436 Boot type: Normal boot 14:43:47.0304 1436 ============================================================ 14:43:48.0240 1436 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:43:48.0240 1436 ============================================================ 14:43:48.0240 1436 \Device\Harddisk0\DR0: 14:43:48.0240 1436 MBR partitions: 14:43:48.0240 1436 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 14:43:48.0240 1436 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1D192800 14:43:48.0240 1436 ============================================================ 14:43:48.0271 1436 C: <-> \Device\Harddisk0\DR0\Partition2 14:43:48.0271 1436 ============================================================ 14:43:48.0271 1436 Initialize success 14:43:48.0271 1436 ============================================================ 14:43:54.0589 1172 ============================================================ 14:43:54.0589 1172 Scan started 14:43:54.0589 1172 Mode: Manual; SigCheck; TDLFS; 14:43:54.0589 1172 ============================================================ 14:43:55.0104 1172 ================ Scan system memory ======================== 14:43:55.0104 1172 System memory - ok 14:43:55.0104 1172 ================ Scan services ============================= 14:43:55.0260 1172 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:43:55.0354 1172 1394ohci - ok 14:43:55.0400 1172 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:43:55.0416 1172 ACPI - ok 14:43:55.0463 1172 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:43:55.0681 1172 AcpiPmi - ok 14:43:55.0806 1172 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:43:55.0822 1172 AdobeFlashPlayerUpdateSvc - ok 14:43:55.0884 1172 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 14:43:55.0900 1172 adp94xx - ok 14:43:55.0931 1172 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 14:43:55.0962 1172 adpahci - ok 14:43:55.0978 1172 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 14:43:55.0993 1172 adpu320 - ok 14:43:56.0024 1172 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:43:56.0149 1172 AeLookupSvc - ok 14:43:56.0212 1172 [ 0D0E5281784C2C526BA43C2ECD374288 ] Afc C:\Windows\syswow64\drivers\Afc.sys 14:43:56.0274 1172 Afc - ok 14:43:56.0352 1172 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys 14:43:56.0399 1172 AFD - ok 14:43:56.0446 1172 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 14:43:56.0461 1172 agp440 - ok 14:43:56.0508 1172 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 14:43:56.0539 1172 ALG - ok 14:43:56.0570 1172 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 14:43:56.0586 1172 aliide - ok 14:43:56.0602 1172 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 14:43:56.0617 1172 amdide - ok 14:43:56.0648 1172 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 14:43:56.0680 1172 AmdK8 - ok 14:43:56.0711 1172 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:43:56.0742 1172 AmdPPM - ok 14:43:56.0804 1172 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:43:56.0820 1172 amdsata - ok 14:43:56.0836 1172 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 14:43:56.0851 1172 amdsbs - ok 14:43:56.0882 1172 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:43:56.0898 1172 amdxata - ok 14:43:57.0007 1172 [ 459465DA28E49B358ECFE0D788F328F4 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 14:43:57.0023 1172 AntiVirSchedulerService - ok 14:43:57.0054 1172 [ BCDD17E8469D647A71B347C4B6F86685 ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 14:43:57.0070 1172 AntiVirService - ok 14:43:57.0132 1172 [ D05B3EB1F1C8C7199D84C9D68D35FD78 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE 14:43:57.0163 1172 AntiVirWebService - ok 14:43:57.0179 1172 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 14:43:57.0335 1172 AppID - ok 14:43:57.0366 1172 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:43:57.0413 1172 AppIDSvc - ok 14:43:57.0460 1172 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll 14:43:57.0491 1172 Appinfo - ok 14:43:57.0538 1172 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll 14:43:57.0584 1172 AppMgmt - ok 14:43:57.0600 1172 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 14:43:57.0616 1172 arc - ok 14:43:57.0631 1172 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 14:43:57.0647 1172 arcsas - ok 14:43:57.0678 1172 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:43:57.0740 1172 AsyncMac - ok 14:43:57.0772 1172 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 14:43:57.0787 1172 atapi - ok 14:43:57.0865 1172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:43:57.0928 1172 AudioEndpointBuilder - ok 14:43:57.0943 1172 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:43:57.0974 1172 AudioSrv - ok 14:43:58.0037 1172 [ BFE9598EBC3934CF8D876A303849C896 ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys 14:43:58.0052 1172 avgntflt - ok 14:43:58.0084 1172 [ F74D86A9FB35FA5F24627B8DBBF3A9A4 ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys 14:43:58.0099 1172 avipbb - ok 14:43:58.0146 1172 [ CD0E732347BF09717E0BDDC0C66699AB ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys 14:43:58.0162 1172 avkmgr - ok 14:43:58.0193 1172 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:43:58.0255 1172 AxInstSV - ok 14:43:58.0302 1172 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 14:43:58.0349 1172 b06bdrv - ok 14:43:58.0380 1172 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:43:58.0427 1172 b57nd60a - ok 14:43:58.0474 1172 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 14:43:58.0505 1172 BDESVC - ok 14:43:58.0520 1172 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 14:43:58.0567 1172 Beep - ok 14:43:58.0583 1172 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:43:58.0614 1172 blbdrive - ok 14:43:58.0645 1172 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:43:58.0692 1172 bowser - ok 14:43:58.0708 1172 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:43:58.0770 1172 BrFiltLo - ok 14:43:58.0786 1172 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:43:58.0817 1172 BrFiltUp - ok 14:43:58.0848 1172 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 14:43:58.0879 1172 Browser - ok 14:43:58.0895 1172 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:43:58.0942 1172 Brserid - ok 14:43:58.0973 1172 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:43:58.0988 1172 BrSerWdm - ok 14:43:59.0004 1172 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:43:59.0035 1172 BrUsbMdm - ok 14:43:59.0051 1172 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:43:59.0082 1172 BrUsbSer - ok 14:43:59.0098 1172 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 14:43:59.0129 1172 BTHMODEM - ok 14:43:59.0160 1172 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 14:43:59.0207 1172 bthserv - ok 14:43:59.0238 1172 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:43:59.0285 1172 cdfs - ok 14:43:59.0332 1172 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 14:43:59.0378 1172 cdrom - ok 14:43:59.0425 1172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 14:43:59.0456 1172 CertPropSvc - ok 14:43:59.0488 1172 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 14:43:59.0519 1172 circlass - ok 14:43:59.0550 1172 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 14:43:59.0581 1172 CLFS - ok 14:43:59.0628 1172 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:43:59.0644 1172 clr_optimization_v2.0.50727_32 - ok 14:43:59.0690 1172 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:43:59.0706 1172 clr_optimization_v2.0.50727_64 - ok 14:43:59.0924 1172 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:43:59.0940 1172 clr_optimization_v4.0.30319_32 - ok 14:43:59.0971 1172 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:43:59.0987 1172 clr_optimization_v4.0.30319_64 - ok 14:44:00.0018 1172 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 14:44:00.0034 1172 CmBatt - ok 14:44:00.0065 1172 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:44:00.0080 1172 cmdide - ok 14:44:00.0158 1172 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys 14:44:00.0205 1172 CNG - ok 14:44:00.0236 1172 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 14:44:00.0236 1172 Compbatt - ok 14:44:00.0283 1172 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 14:44:00.0330 1172 CompositeBus - ok 14:44:00.0346 1172 COMSysApp - ok 14:44:00.0361 1172 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 14:44:00.0502 1172 crcdisk - ok 14:44:00.0548 1172 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:44:00.0595 1172 CryptSvc - ok 14:44:00.0626 1172 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys 14:44:00.0704 1172 CSC - ok 14:44:00.0736 1172 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll 14:44:00.0782 1172 CscService - ok 14:44:00.0829 1172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:44:00.0892 1172 DcomLaunch - ok 14:44:00.0938 1172 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 14:44:01.0001 1172 defragsvc - ok 14:44:01.0063 1172 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:44:01.0110 1172 DfsC - ok 14:44:01.0157 1172 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 14:44:01.0204 1172 Dhcp - ok 14:44:01.0235 1172 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 14:44:01.0360 1172 discache - ok 14:44:01.0438 1172 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 14:44:01.0453 1172 Disk - ok 14:44:01.0484 1172 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:44:01.0531 1172 Dnscache - ok 14:44:01.0562 1172 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 14:44:01.0609 1172 dot3svc - ok 14:44:01.0640 1172 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 14:44:01.0703 1172 DPS - ok 14:44:01.0734 1172 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:44:01.0765 1172 drmkaud - ok 14:44:01.0812 1172 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:44:01.0859 1172 DXGKrnl - ok 14:44:01.0890 1172 [ 416A2007878ED1D6FC5DDDB9E1F6DB3E ] e1express C:\Windows\system32\DRIVERS\e1e6032e.sys 14:44:01.0937 1172 e1express - ok 14:44:01.0968 1172 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 14:44:02.0030 1172 EapHost - ok 14:44:02.0124 1172 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 14:44:02.0233 1172 ebdrv - ok 14:44:02.0280 1172 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe 14:44:02.0358 1172 EFS - ok 14:44:02.0420 1172 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:44:02.0498 1172 ehRecvr - ok 14:44:02.0530 1172 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 14:44:02.0561 1172 ehSched - ok 14:44:02.0608 1172 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 14:44:02.0639 1172 elxstor - ok 14:44:02.0654 1172 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:44:02.0686 1172 ErrDev - ok 14:44:02.0732 1172 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 14:44:02.0779 1172 EventSystem - ok 14:44:02.0810 1172 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 14:44:02.0857 1172 exfat - ok 14:44:02.0873 1172 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:44:02.0935 1172 fastfat - ok 14:44:02.0998 1172 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 14:44:03.0091 1172 Fax - ok 14:44:03.0107 1172 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 14:44:03.0154 1172 fdc - ok 14:44:03.0200 1172 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 14:44:03.0247 1172 fdPHost - ok 14:44:03.0263 1172 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 14:44:03.0310 1172 FDResPub - ok 14:44:03.0356 1172 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:44:03.0372 1172 FileInfo - ok 14:44:03.0388 1172 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:44:03.0450 1172 Filetrace - ok 14:44:03.0481 1172 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 14:44:03.0497 1172 flpydisk - ok 14:44:03.0528 1172 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:44:03.0559 1172 FltMgr - ok 14:44:03.0606 1172 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll 14:44:03.0684 1172 FontCache - ok 14:44:03.0715 1172 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:44:03.0731 1172 FsDepends - ok 14:44:03.0762 1172 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:44:03.0762 1172 Fs_Rec - ok 14:44:03.0809 1172 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:44:03.0824 1172 fvevol - ok 14:44:03.0840 1172 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 14:44:03.0856 1172 gagp30kx - ok 14:44:03.0918 1172 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 14:44:04.0027 1172 gpsvc - ok 14:44:04.0105 1172 [ B9893A68032A6D9ADDB5B98287C630F7 ] grmnusb C:\Windows\system32\drivers\grmnusb.sys 14:44:04.0105 1172 grmnusb - ok 14:44:04.0121 1172 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:44:04.0246 1172 hcw85cir - ok 14:44:04.0308 1172 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:44:04.0339 1172 HdAudAddService - ok 14:44:04.0480 1172 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 14:44:04.0604 1172 HDAudBus - ok 14:44:04.0636 1172 [ 3CE9668E4AD154424B39EFAC30C49DEB ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 14:44:04.0651 1172 HECIx64 - ok 14:44:04.0682 1172 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 14:44:04.0714 1172 HidBatt - ok 14:44:04.0729 1172 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 14:44:04.0760 1172 HidBth - ok 14:44:04.0776 1172 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 14:44:04.0823 1172 HidIr - ok 14:44:04.0838 1172 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 14:44:04.0901 1172 hidserv - ok 14:44:04.0948 1172 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys 14:44:04.0979 1172 HidUsb - ok 14:44:04.0994 1172 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:44:05.0072 1172 hkmsvc - ok 14:44:05.0104 1172 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:44:05.0150 1172 HomeGroupListener - ok 14:44:05.0182 1172 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:44:05.0213 1172 HomeGroupProvider - ok 14:44:05.0228 1172 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:44:05.0244 1172 HpSAMD - ok 14:44:05.0291 1172 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:44:05.0353 1172 HTTP - ok 14:44:05.0369 1172 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:44:05.0384 1172 hwpolicy - ok 14:44:05.0416 1172 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 14:44:05.0431 1172 i8042prt - ok 14:44:05.0478 1172 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:44:05.0509 1172 iaStorV - ok 14:44:05.0665 1172 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe 14:44:05.0681 1172 IDriverT ( UnsignedFile.Multi.Generic ) - warning 14:44:05.0681 1172 IDriverT - detected UnsignedFile.Multi.Generic (1) 14:44:06.0055 1172 [ 24CC43ECDEEFD4C19FBBEE4951B647F1 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 14:44:06.0227 1172 igfx - ok 14:44:06.0258 1172 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 14:44:06.0274 1172 iirsp - ok 14:44:06.0320 1172 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll 14:44:06.0383 1172 IKEEXT - ok 14:44:06.0430 1172 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 14:44:06.0430 1172 intelide - ok 14:44:06.0461 1172 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 14:44:06.0476 1172 intelppm - ok 14:44:06.0523 1172 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:44:06.0570 1172 IPBusEnum - ok 14:44:06.0601 1172 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:44:06.0648 1172 IpFilterDriver - ok 14:44:06.0679 1172 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:44:06.0710 1172 IPMIDRV - ok 14:44:06.0757 1172 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:44:06.0804 1172 IPNAT - ok 14:44:06.0820 1172 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:44:06.0898 1172 IRENUM - ok 14:44:06.0913 1172 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:44:06.0929 1172 isapnp - ok 14:44:06.0960 1172 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:44:06.0991 1172 iScsiPrt - ok 14:44:07.0022 1172 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 14:44:07.0022 1172 kbdclass - ok 14:44:07.0069 1172 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 14:44:07.0100 1172 kbdhid - ok 14:44:07.0132 1172 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe 14:44:07.0147 1172 KeyIso - ok 14:44:07.0178 1172 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:44:07.0194 1172 KSecDD - ok 14:44:07.0225 1172 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:44:07.0241 1172 KSecPkg - ok 14:44:07.0272 1172 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:44:07.0319 1172 ksthunk - ok 14:44:07.0366 1172 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 14:44:07.0412 1172 KtmRm - ok 14:44:07.0444 1172 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 14:44:07.0506 1172 LanmanServer - ok 14:44:07.0537 1172 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:44:07.0584 1172 LanmanWorkstation - ok 14:44:07.0615 1172 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:44:07.0662 1172 lltdio - ok 14:44:07.0724 1172 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:44:07.0771 1172 lltdsvc - ok 14:44:07.0787 1172 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:44:07.0834 1172 lmhosts - ok 14:44:07.0880 1172 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 14:44:07.0896 1172 LSI_FC - ok 14:44:07.0912 1172 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 14:44:07.0927 1172 LSI_SAS - ok 14:44:07.0958 1172 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:44:07.0974 1172 LSI_SAS2 - ok 14:44:07.0990 1172 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:44:08.0005 1172 LSI_SCSI - ok 14:44:08.0021 1172 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 14:44:08.0083 1172 luafv - ok 14:44:08.0114 1172 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:44:08.0146 1172 Mcx2Svc - ok 14:44:08.0161 1172 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 14:44:08.0177 1172 megasas - ok 14:44:08.0208 1172 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 14:44:08.0224 1172 MegaSR - ok 14:44:08.0255 1172 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 14:44:08.0317 1172 MMCSS - ok 14:44:08.0333 1172 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 14:44:08.0380 1172 Modem - ok 14:44:08.0426 1172 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:44:08.0442 1172 monitor - ok 14:44:08.0473 1172 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\drivers\mouclass.sys 14:44:08.0473 1172 mouclass - ok 14:44:08.0504 1172 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:44:08.0520 1172 mouhid - ok 14:44:08.0551 1172 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:44:08.0567 1172 mountmgr - ok 14:44:08.0629 1172 [ 8A7C8F4C713E70D73946833D76B77035 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:44:08.0645 1172 MozillaMaintenance - ok 14:44:08.0676 1172 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 14:44:08.0692 1172 mpio - ok 14:44:08.0707 1172 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:44:08.0754 1172 mpsdrv - ok 14:44:08.0785 1172 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:44:08.0816 1172 MRxDAV - ok 14:44:08.0848 1172 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:44:08.0910 1172 mrxsmb - ok 14:44:08.0941 1172 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:44:08.0972 1172 mrxsmb10 - ok 14:44:08.0988 1172 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:44:09.0004 1172 mrxsmb20 - ok 14:44:09.0019 1172 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 14:44:09.0035 1172 msahci - ok 14:44:09.0066 1172 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:44:09.0082 1172 msdsm - ok 14:44:09.0113 1172 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 14:44:09.0128 1172 MSDTC - ok 14:44:09.0160 1172 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:44:09.0206 1172 Msfs - ok 14:44:09.0238 1172 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:44:09.0284 1172 mshidkmdf - ok 14:44:09.0316 1172 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:44:09.0331 1172 msisadrv - ok 14:44:09.0362 1172 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:44:09.0409 1172 MSiSCSI - ok 14:44:09.0425 1172 msiserver - ok 14:44:09.0456 1172 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:44:09.0518 1172 MSKSSRV - ok 14:44:09.0534 1172 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:44:09.0581 1172 MSPCLOCK - ok 14:44:09.0596 1172 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:44:09.0643 1172 MSPQM - ok 14:44:09.0690 1172 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:44:09.0706 1172 MsRPC - ok 14:44:09.0752 1172 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 14:44:09.0768 1172 mssmbios - ok 14:44:09.0768 1172 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:44:09.0815 1172 MSTEE - ok 14:44:09.0846 1172 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 14:44:09.0862 1172 MTConfig - ok 14:44:09.0877 1172 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 14:44:09.0893 1172 Mup - ok 14:44:09.0924 1172 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 14:44:09.0986 1172 napagent - ok 14:44:10.0033 1172 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:44:10.0064 1172 NativeWifiP - ok 14:44:10.0127 1172 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 14:44:10.0174 1172 NDIS - ok 14:44:10.0205 1172 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:44:10.0236 1172 NdisCap - ok 14:44:10.0267 1172 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:44:10.0330 1172 NdisTapi - ok 14:44:10.0361 1172 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:44:10.0423 1172 Ndisuio - ok 14:44:10.0454 1172 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:44:10.0501 1172 NdisWan - ok 14:44:10.0532 1172 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:44:10.0595 1172 NDProxy - ok 14:44:10.0626 1172 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:44:10.0673 1172 NetBIOS - ok 14:44:10.0720 1172 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:44:10.0766 1172 NetBT - ok 14:44:10.0782 1172 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe 14:44:10.0813 1172 Netlogon - ok 14:44:10.0844 1172 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 14:44:10.0954 1172 Netman - ok 14:44:11.0016 1172 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 14:44:11.0110 1172 netprofm - ok 14:44:11.0125 1172 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 14:44:11.0141 1172 nfrd960 - ok 14:44:11.0172 1172 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll 14:44:11.0219 1172 NlaSvc - ok 14:44:11.0297 1172 [ 6EF0506CE1F553E9BD085645933C8686 ] NMIndexingService C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe 14:44:11.0312 1172 NMIndexingService - ok 14:44:11.0328 1172 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:44:11.0375 1172 Npfs - ok 14:44:11.0406 1172 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 14:44:11.0453 1172 nsi - ok 14:44:11.0468 1172 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:44:11.0515 1172 nsiproxy - ok 14:44:11.0593 1172 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:44:11.0656 1172 Ntfs - ok 14:44:11.0671 1172 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 14:44:11.0718 1172 Null - ok 14:44:11.0765 1172 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:44:11.0780 1172 nvraid - ok 14:44:11.0796 1172 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:44:11.0812 1172 nvstor - ok 14:44:11.0858 1172 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:44:11.0874 1172 nv_agp - ok 14:44:11.0905 1172 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:44:11.0936 1172 ohci1394 - ok 14:44:11.0983 1172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:44:12.0030 1172 p2pimsvc - ok 14:44:12.0061 1172 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 14:44:12.0092 1172 p2psvc - ok 14:44:12.0139 1172 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 14:44:12.0155 1172 Parport - ok 14:44:12.0186 1172 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:44:12.0202 1172 partmgr - ok 14:44:12.0217 1172 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 14:44:12.0248 1172 PcaSvc - ok 14:44:12.0280 1172 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 14:44:12.0295 1172 pci - ok 14:44:12.0326 1172 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 14:44:12.0342 1172 pciide - ok 14:44:12.0358 1172 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 14:44:12.0373 1172 pcmcia - ok 14:44:12.0404 1172 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 14:44:12.0420 1172 pcw - ok 14:44:12.0451 1172 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:44:12.0545 1172 PEAUTH - ok 14:44:12.0592 1172 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 14:44:12.0670 1172 PeerDistSvc - ok 14:44:12.0732 1172 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:44:12.0763 1172 PerfHost - ok 14:44:12.0826 1172 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 14:44:12.0919 1172 pla - ok 14:44:12.0966 1172 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:44:12.0997 1172 PlugPlay - ok 14:44:13.0028 1172 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:44:13.0060 1172 PNRPAutoReg - ok 14:44:13.0091 1172 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:44:13.0122 1172 PNRPsvc - ok 14:44:13.0153 1172 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:44:13.0216 1172 PolicyAgent - ok 14:44:13.0262 1172 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 14:44:13.0309 1172 Power - ok 14:44:13.0325 1172 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:44:13.0387 1172 PptpMiniport - ok 14:44:13.0403 1172 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 14:44:13.0434 1172 Processor - ok 14:44:13.0465 1172 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 14:44:13.0528 1172 ProfSvc - ok 14:44:13.0543 1172 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe 14:44:13.0574 1172 ProtectedStorage - ok 14:44:13.0637 1172 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:44:13.0668 1172 Psched - ok 14:44:13.0730 1172 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 14:44:13.0793 1172 ql2300 - ok 14:44:13.0840 1172 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 14:44:13.0855 1172 ql40xx - ok 14:44:13.0886 1172 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 14:44:13.0918 1172 QWAVE - ok 14:44:13.0949 1172 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:44:13.0980 1172 QWAVEdrv - ok 14:44:14.0011 1172 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:44:14.0074 1172 RasAcd - ok 14:44:14.0105 1172 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:44:14.0152 1172 RasAgileVpn - ok 14:44:14.0183 1172 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 14:44:14.0230 1172 RasAuto - ok 14:44:14.0276 1172 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:44:14.0339 1172 Rasl2tp - ok 14:44:14.0370 1172 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 14:44:14.0417 1172 RasMan - ok 14:44:14.0464 1172 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:44:14.0510 1172 RasPppoe - ok 14:44:14.0542 1172 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:44:14.0588 1172 RasSstp - ok 14:44:14.0620 1172 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:44:14.0698 1172 rdbss - ok 14:44:14.0713 1172 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 14:44:14.0744 1172 rdpbus - ok 14:44:14.0760 1172 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 14:44:14.0807 1172 RDPCDD - ok 14:44:14.0854 1172 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 14:44:14.0885 1172 RDPDR - ok 14:44:14.0916 1172 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 14:44:14.0963 1172 RDPENCDD - ok 14:44:14.0978 1172 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 14:44:15.0025 1172 RDPREFMP - ok 14:44:15.0088 1172 [ 70CBA1A0C98600A2AA1863479B35CB90 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 14:44:15.0103 1172 RdpVideoMiniport - ok 14:44:15.0134 1172 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 14:44:15.0166 1172 RDPWD - ok 14:44:15.0212 1172 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 14:44:15.0228 1172 rdyboost - ok 14:44:15.0275 1172 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 14:44:15.0337 1172 RemoteAccess - ok 14:44:15.0368 1172 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 14:44:15.0415 1172 RemoteRegistry - ok 14:44:15.0431 1172 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 14:44:15.0509 1172 RpcEptMapper - ok 14:44:15.0540 1172 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 14:44:15.0556 1172 RpcLocator - ok 14:44:15.0587 1172 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 14:44:15.0634 1172 RpcSs - ok 14:44:15.0665 1172 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 14:44:15.0712 1172 rspndr - ok 14:44:15.0743 1172 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys 14:44:15.0774 1172 s3cap - ok 14:44:15.0790 1172 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe 14:44:15.0805 1172 SamSs - ok 14:44:15.0899 1172 [ F444EBA4C58AD1D6D1DA9850C2B5D829 ] SbieDrv C:\Program Files\Sandboxie\SbieDrv.sys 14:44:15.0930 1172 SbieDrv - ok 14:44:15.0961 1172 [ 9E92ABAE6F6A63C4307FE7CC4AC95831 ] SbieSvc C:\Program Files\Sandboxie\SbieSvc.exe 14:44:15.0977 1172 SbieSvc - ok 14:44:16.0008 1172 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 14:44:16.0024 1172 sbp2port - ok 14:44:16.0055 1172 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 14:44:16.0117 1172 SCardSvr - ok 14:44:16.0148 1172 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 14:44:16.0180 1172 scfilter - ok 14:44:16.0242 1172 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 14:44:16.0320 1172 Schedule - ok 14:44:16.0367 1172 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 14:44:16.0414 1172 SCPolicySvc - ok 14:44:16.0445 1172 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 14:44:16.0460 1172 SDRSVC - ok 14:44:16.0507 1172 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 14:44:16.0554 1172 secdrv - ok 14:44:16.0585 1172 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 14:44:16.0632 1172 seclogon - ok 14:44:16.0679 1172 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 14:44:16.0726 1172 SENS - ok 14:44:16.0741 1172 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 14:44:16.0788 1172 SensrSvc - ok 14:44:16.0804 1172 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 14:44:16.0819 1172 Serenum - ok 14:44:16.0850 1172 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 14:44:16.0866 1172 Serial - ok 14:44:16.0913 1172 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 14:44:16.0944 1172 sermouse - ok 14:44:16.0991 1172 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 14:44:17.0038 1172 SessionEnv - ok 14:44:17.0053 1172 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 14:44:17.0100 1172 sffdisk - ok 14:44:17.0116 1172 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 14:44:17.0147 1172 sffp_mmc - ok 14:44:17.0147 1172 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 14:44:17.0178 1172 sffp_sd - ok 14:44:17.0209 1172 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 14:44:17.0240 1172 sfloppy - ok 14:44:17.0287 1172 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 14:44:17.0350 1172 ShellHWDetection - ok 14:44:17.0365 1172 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:44:17.0381 1172 SiSRaid2 - ok 14:44:17.0396 1172 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 14:44:17.0412 1172 SiSRaid4 - ok 14:44:17.0443 1172 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 14:44:17.0490 1172 Smb - ok 14:44:17.0537 1172 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 14:44:17.0568 1172 SNMPTRAP - ok 14:44:17.0584 1172 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 14:44:17.0599 1172 spldr - ok 14:44:17.0630 1172 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 14:44:17.0755 1172 Spooler - ok 14:44:17.0989 1172 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 14:44:18.0145 1172 sppsvc - ok 14:44:18.0192 1172 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 14:44:18.0239 1172 sppuinotify - ok 14:44:18.0270 1172 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 14:44:18.0317 1172 srv - ok 14:44:18.0332 1172 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 14:44:18.0364 1172 srv2 - ok 14:44:18.0395 1172 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 14:44:18.0442 1172 srvnet - ok 14:44:18.0520 1172 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 14:44:18.0566 1172 SSDPSRV - ok 14:44:18.0629 1172 [ 0211AB46B73A2623B86C1CFCB30579AB ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys 14:44:18.0629 1172 SSPORT - ok 14:44:18.0660 1172 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 14:44:18.0691 1172 SstpSvc - ok 14:44:18.0722 1172 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 14:44:18.0738 1172 stexstor - ok 14:44:18.0785 1172 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 14:44:18.0847 1172 stisvc - ok 14:44:18.0878 1172 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys 14:44:18.0894 1172 storflt - ok 14:44:18.0925 1172 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys 14:44:18.0941 1172 storvsc - ok 14:44:18.0972 1172 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 14:44:18.0972 1172 swenum - ok 14:44:19.0019 1172 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 14:44:19.0081 1172 swprv - ok 14:44:19.0128 1172 Synth3dVsc - ok 14:44:19.0190 1172 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 14:44:19.0268 1172 SysMain - ok 14:44:19.0300 1172 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 14:44:19.0331 1172 TabletInputService - ok 14:44:19.0362 1172 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 14:44:19.0424 1172 TapiSrv - ok 14:44:19.0456 1172 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 14:44:19.0518 1172 TBS - ok 14:44:19.0596 1172 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 14:44:19.0658 1172 Tcpip - ok 14:44:19.0721 1172 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 14:44:19.0752 1172 TCPIP6 - ok 14:44:19.0783 1172 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 14:44:19.0814 1172 tcpipreg - ok 14:44:19.0846 1172 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 14:44:19.0892 1172 TDPIPE - ok 14:44:19.0924 1172 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 14:44:19.0939 1172 TDTCP - ok 14:44:19.0970 1172 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 14:44:20.0033 1172 tdx - ok 14:44:20.0080 1172 [ 213723E1A736910C644B457DE6D095E2 ] TeamViewer5 C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe 14:44:20.0095 1172 TeamViewer5 - ok 14:44:20.0111 1172 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 14:44:20.0126 1172 TermDD - ok 14:44:20.0158 1172 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 14:44:20.0220 1172 TermService - ok 14:44:20.0282 1172 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 14:44:20.0314 1172 Themes - ok 14:44:20.0329 1172 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 14:44:20.0376 1172 THREADORDER - ok 14:44:20.0407 1172 [ DBCC20C02E8A3E43B03C304A4E40A84F ] TPM C:\Windows\system32\drivers\tpm.sys 14:44:20.0438 1172 TPM - ok 14:44:20.0470 1172 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 14:44:20.0516 1172 TrkWks - ok 14:44:20.0579 1172 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 14:44:20.0641 1172 TrustedInstaller - ok 14:44:20.0688 1172 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 14:44:20.0719 1172 tssecsrv - ok 14:44:20.0766 1172 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 14:44:20.0797 1172 TsUsbFlt - ok 14:44:20.0813 1172 tsusbhub - ok 14:44:20.0844 1172 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 14:44:20.0906 1172 tunnel - ok 14:44:20.0938 1172 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 14:44:20.0953 1172 uagp35 - ok 14:44:21.0000 1172 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 14:44:21.0047 1172 udfs - ok 14:44:21.0094 1172 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 14:44:21.0125 1172 UI0Detect - ok 14:44:21.0218 1172 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 14:44:21.0234 1172 uliagpkx - ok 14:44:21.0374 1172 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys 14:44:21.0437 1172 umbus - ok 14:44:21.0468 1172 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 14:44:21.0499 1172 UmPass - ok 14:44:21.0530 1172 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll 14:44:21.0562 1172 UmRdpService - ok 14:44:21.0608 1172 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 14:44:21.0655 1172 upnphost - ok 14:44:21.0671 1172 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 14:44:21.0702 1172 usbccgp - ok 14:44:21.0749 1172 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys 14:44:21.0764 1172 usbcir - ok 14:44:21.0811 1172 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys 14:44:21.0827 1172 usbehci - ok 14:44:21.0858 1172 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 14:44:21.0889 1172 usbhub - ok 14:44:21.0920 1172 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys 14:44:21.0936 1172 usbohci - ok 14:44:21.0967 1172 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 14:44:22.0014 1172 usbprint - ok 14:44:22.0030 1172 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 14:44:22.0045 1172 usbscan - ok 14:44:22.0076 1172 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 14:44:22.0108 1172 USBSTOR - ok 14:44:22.0154 1172 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 14:44:22.0186 1172 usbuhci - ok 14:44:22.0217 1172 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 14:44:22.0279 1172 UxSms - ok 14:44:22.0295 1172 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe 14:44:22.0310 1172 VaultSvc - ok 14:44:22.0342 1172 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 14:44:22.0357 1172 vdrvroot - ok 14:44:22.0388 1172 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 14:44:22.0466 1172 vds - ok 14:44:22.0498 1172 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 14:44:22.0513 1172 vga - ok 14:44:22.0529 1172 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 14:44:22.0591 1172 VgaSave - ok 14:44:22.0607 1172 VGPU - ok 14:44:22.0638 1172 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 14:44:22.0654 1172 vhdmp - ok 14:44:22.0685 1172 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 14:44:22.0700 1172 viaide - ok 14:44:22.0747 1172 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys 14:44:22.0763 1172 vmbus - ok 14:44:22.0778 1172 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 14:44:22.0794 1172 VMBusHID - ok 14:44:22.0825 1172 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 14:44:22.0841 1172 volmgr - ok 14:44:22.0872 1172 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 14:44:22.0903 1172 volmgrx - ok 14:44:22.0934 1172 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 14:44:22.0950 1172 volsnap - ok 14:44:22.0981 1172 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 14:44:22.0997 1172 vsmraid - ok 14:44:23.0059 1172 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 14:44:23.0153 1172 VSS - ok 14:44:23.0184 1172 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 14:44:23.0215 1172 vwifibus - ok 14:44:23.0246 1172 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 14:44:23.0309 1172 W32Time - ok 14:44:23.0340 1172 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 14:44:23.0356 1172 WacomPen - ok 14:44:23.0402 1172 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 14:44:23.0449 1172 WANARP - ok 14:44:23.0465 1172 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 14:44:23.0512 1172 Wanarpv6 - ok 14:44:23.0558 1172 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 14:44:23.0621 1172 wbengine - ok 14:44:23.0652 1172 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 14:44:23.0683 1172 WbioSrvc - ok 14:44:23.0730 1172 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 14:44:23.0746 1172 wcncsvc - ok 14:44:23.0777 1172 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 14:44:23.0808 1172 WcsPlugInService - ok 14:44:23.0839 1172 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 14:44:23.0839 1172 Wd - ok 14:44:23.0886 1172 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 14:44:23.0933 1172 Wdf01000 - ok 14:44:23.0964 1172 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 14:44:24.0042 1172 WdiServiceHost - ok 14:44:24.0042 1172 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 14:44:24.0073 1172 WdiSystemHost - ok 14:44:24.0104 1172 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll 14:44:24.0136 1172 WebClient - ok 14:44:24.0167 1172 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 14:44:24.0229 1172 Wecsvc - ok 14:44:24.0260 1172 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 14:44:24.0292 1172 wercplsupport - ok 14:44:24.0338 1172 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 14:44:24.0385 1172 WerSvc - ok 14:44:24.0432 1172 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 14:44:24.0479 1172 WfpLwf - ok 14:44:24.0494 1172 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 14:44:24.0510 1172 WIMMount - ok 14:44:24.0526 1172 WinHttpAutoProxySvc - ok 14:44:24.0572 1172 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 14:44:24.0650 1172 Winmgmt - ok 14:44:24.0713 1172 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 14:44:24.0806 1172 WinRM - ok 14:44:24.0869 1172 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 14:44:24.0900 1172 WinUsb - ok 14:44:24.0947 1172 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 14:44:25.0009 1172 Wlansvc - ok 14:44:25.0118 1172 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 14:44:25.0212 1172 wlidsvc - ok 14:44:25.0228 1172 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 14:44:25.0259 1172 WmiAcpi - ok 14:44:25.0290 1172 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 14:44:25.0321 1172 wmiApSrv - ok 14:44:25.0352 1172 WMPNetworkSvc - ok 14:44:25.0399 1172 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 14:44:25.0415 1172 WPCSvc - ok 14:44:25.0446 1172 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 14:44:25.0477 1172 WPDBusEnum - ok 14:44:25.0508 1172 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 14:44:25.0555 1172 ws2ifsl - ok 14:44:25.0555 1172 WSearch - ok 14:44:25.0586 1172 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 14:44:25.0618 1172 WudfPf - ok 14:44:25.0664 1172 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 14:44:25.0680 1172 WUDFRd - ok 14:44:25.0711 1172 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 14:44:25.0742 1172 wudfsvc - ok 14:44:25.0774 1172 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll 14:44:25.0820 1172 WwanSvc - ok 14:44:25.0836 1172 ================ Scan global =============================== 14:44:25.0867 1172 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 14:44:25.0914 1172 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 14:44:25.0930 1172 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 14:44:25.0961 1172 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 14:44:25.0992 1172 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 14:44:26.0008 1172 [Global] - ok 14:44:26.0008 1172 ================ Scan MBR ================================== 14:44:26.0023 1172 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 14:44:26.0678 1172 \Device\Harddisk0\DR0 - ok 14:44:26.0678 1172 ================ Scan VBR ================================== 14:44:26.0678 1172 [ 10761BCFA0D6335CA27C476BB3F98CD5 ] \Device\Harddisk0\DR0\Partition1 14:44:26.0678 1172 \Device\Harddisk0\DR0\Partition1 - ok 14:44:26.0725 1172 [ 0C75D0BB5583E52890DE26EF723CF3BD ] \Device\Harddisk0\DR0\Partition2 14:44:26.0725 1172 \Device\Harddisk0\DR0\Partition2 - ok 14:44:26.0741 1172 ============================================================ 14:44:26.0741 1172 Scan finished 14:44:26.0741 1172 ============================================================ 14:44:26.0756 2732 Detected object count: 1 14:44:26.0756 2732 Actual detected object count: 1 14:44:34.0002 2732 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user 14:44:34.0002 2732 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:44:44.0142 2532 Deinitialize success |
Hallo, dieser "Fund" von TDSSKiller ist keine Malware. Arbeite bitte die angegebenen Schritte ab und poste dann die Logs, sobald alle Scans durch sind. |
GMER Logfile: Code: GMER 2.1.19155 - GMER - Rootkit Detector and Remover |
Fehlen nur noch die Logs von OTL |
OTL Logfile: Code: OTL logfile created on: 23.03.2013 17:42:52 - Run 1 |
Hallo Andrea, dann so weiter: Schritt 1 Downloade dir bitte AdwCleaner und speichere es auf deinen Desktop.
Schritt 2 Warnung für Mitleser: Combofix sollte nur dann ausgeführt werden, wenn dies explizit von einem Teammitglied angewiesen wurde! Downloade dir bitte Combofix.
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
Schritt 3 Starte bitte die OTL.exe.
Bitte poste in deiner nächsten Antwort:
|
Was bedeutet ZA im LSP? |
Es ist die Infektion zu sehen, welche du dir eingefangen hast (ZeroAccess-Rootkit). Mach einfach mit obigen Schritten weiter, danach schauen wir, ob es entfernt werden konnte. |
AdwCleaner Logfile: Code: # AdwCleaner v2.115 - Datei am 23/03/2013 um 18:15:04 erstellt |
Ok, noch Combofix und OTL. (Poste bitte jeweils alle Logs auf ein Mal, sonst bekomm ich keine Benachrichtigung mehr, wenn sie einzeln postest.) |
Combofix Logfile: Code: ComboFix 13-03-21.02 - SCHULZ 23.03.2013 18:27:02.1.1 - x64 OTL Logfile: Code: OTL logfile created on: 23.03.2013 18:51:39 - Run 2 Sorry, hab es erst jetzt gelesen mit dem posten :-( Die Fehlermeldung erscheint nun nicht mehr. Bedeutet das, dass der Trojaner weg ist? LG Andrea |
Gut, dann noch eine Kontrolle mit MBAR. Schritt 1 Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinen Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers. Bitte poste in deiner nächsten Antwort:
|
Sorry, hab es erst jetzt gelesen mit dem posten :-( Die Fehlermeldung erscheint nun nicht mehr. Bedeutet das, dass der Trojaner weg ist? LG Andrea Ich kann die Installation nicht ausführen da mir die Datei QtGui4.dll auf dem Computer fehlt Problem gelöst. Ich musste den Ordner extrahieren. Bin leider kein PC Fachmann :-) Vielen Dank für Deine Hilfe Leo!!! Ich werde Euch weiter empfehlen ;-) |
Alle Zeitangaben in WEZ +1. Es ist jetzt 13:07 Uhr. |
Copyright ©2000-2025, Trojaner-Board