
Davidvan
Lid-
Items
7 -
Registratiedatum
-
Laatst bezocht
Davidvan's prestaties
-
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
Hallo, Ik heb het bestand eens laten scannen en het wordt inderdaad door verschillende scanners herkend als trojan of andere: [TABLE=class: scannertable] [TR] [TD] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-08 W32/Patched.A!Generic [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.FakeSmoke.Patched.A [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.FakeSmoke.Patched.A [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 W32/PatchLoad.Gen [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.FakeSmoke [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.FakeSmoke.Patched.A [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-08 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 W32/Patched.R [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Trojan.Patched.EH [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.Patched.7 [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Troj/FakeFile-A [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Win32.FakeSmoke.Patched.A [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-08 PE_PATCHED.RCS [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Niets gevonden [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-08 Niets gevonden [/TD] [/TR] [TR] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 W32/PatchLoad.D!tr [/TD] [TD=width: 85] [/TD] [TD=class: vcentre] 2013-05-09 Trojan.Patchload.Gen [/TD] [/TR] [/TABLE] -
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
Hallo, eureka raar maar waar... van zodra ik de avg remover heb uitgevoerd ging alles terug. opgelost dus. maar of dit dan een virus is of een bug in AVG, I don't know. Alvast héél erg bedankt kape!! -
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
helaas helpt het ook niet. Ik heb de internetopties terug gebracht naar hun basisinstellingen zoals je hebt beschreven. Ik heb in IE opnieuw eens geprobeerd om een zipfile van jouw te downloaden, maar hij beschouwd het nog steeds als een virus en verwijdert het er onmiddellijk erna. hmm... -
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
hallo, De TDSS scan is net uitgevoerd, maar daar heeft hij geen objecten gedetecteerd. Dit is de logfile na de scan: 08:42:48.0891 3640 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 08:42:49.0188 3640 ============================================================ 08:42:49.0188 3640 Current date / time: 2013/05/09 08:42:49.0188 08:42:49.0188 3640 SystemInfo: 08:42:49.0188 3640 08:42:49.0188 3640 OS Version: 6.1.7601 ServicePack: 1.0 08:42:49.0188 3640 Product type: Workstation 08:42:49.0188 3640 ComputerName: PC_VAN_DANY 08:42:49.0188 3640 UserName: dany 08:42:49.0188 3640 Windows directory: C:\Windows 08:42:49.0188 3640 System windows directory: C:\Windows 08:42:49.0188 3640 Processor architecture: Intel x86 08:42:49.0188 3640 Number of processors: 2 08:42:49.0188 3640 Page size: 0x1000 08:42:49.0188 3640 Boot type: Normal boot 08:42:49.0188 3640 ============================================================ 08:42:50.0046 3640 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 08:42:50.0046 3640 Drive \Device\Harddisk1\DR2 - Size: 0xEF000000 (3.73 Gb), SectorSize: 0x200, Cylinders: 0x1E7, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 08:42:50.0046 3640 ============================================================ 08:42:50.0046 3640 \Device\Harddisk0\DR0: 08:42:50.0046 3640 MBR partitions: 08:42:50.0046 3640 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3460FD2E 08:42:50.0046 3640 \Device\Harddisk0\DR0\Partition2: MBR, Type 0xC, StartLBA 0x3460FD6D, BlocksNum 0x5D74ED4 08:42:50.0046 3640 \Device\Harddisk1\DR2: 08:42:50.0046 3640 MBR partitions: 08:42:50.0046 3640 \Device\Harddisk1\DR2\Partition1: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0x777FE0 08:42:50.0046 3640 ============================================================ 08:42:50.0077 3640 C: <-> \Device\Harddisk0\DR0\Partition1 08:42:50.0108 3640 D: <-> \Device\Harddisk0\DR0\Partition2 08:42:50.0108 3640 ============================================================ 08:42:50.0108 3640 Initialize success 08:42:50.0108 3640 ============================================================ 08:42:59.0062 5012 ============================================================ 08:42:59.0062 5012 Scan started 08:42:59.0062 5012 Mode: Manual; 08:42:59.0062 5012 ============================================================ 08:42:59.0421 5012 ================ Scan system memory ======================== 08:42:59.0421 5012 System memory - ok 08:42:59.0421 5012 ================ Scan services ============================= 08:42:59.0624 5012 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 08:42:59.0624 5012 1394ohci - ok 08:42:59.0655 5012 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys 08:42:59.0655 5012 ACPI - ok 08:42:59.0702 5012 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 08:42:59.0702 5012 AcpiPmi - ok 08:42:59.0796 5012 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe 08:42:59.0796 5012 AdobeFlashPlayerUpdateSvc - ok 08:42:59.0874 5012 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 08:42:59.0874 5012 adp94xx - ok 08:42:59.0889 5012 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 08:42:59.0889 5012 adpahci - ok 08:42:59.0920 5012 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 08:42:59.0920 5012 adpu320 - ok 08:42:59.0967 5012 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 08:42:59.0967 5012 AeLookupSvc - ok 08:43:00.0014 5012 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys 08:43:00.0030 5012 AFD - ok 08:43:00.0045 5012 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys 08:43:00.0045 5012 agp440 - ok 08:43:00.0108 5012 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys 08:43:00.0108 5012 aic78xx - ok 08:43:00.0139 5012 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe 08:43:00.0139 5012 ALG - ok 08:43:00.0186 5012 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys 08:43:00.0201 5012 aliide - ok 08:43:00.0217 5012 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys 08:43:00.0217 5012 amdagp - ok 08:43:00.0232 5012 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys 08:43:00.0232 5012 amdide - ok 08:43:00.0264 5012 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 08:43:00.0264 5012 AmdK8 - ok 08:43:00.0279 5012 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 08:43:00.0279 5012 AmdPPM - ok 08:43:00.0326 5012 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys 08:43:00.0326 5012 amdsata - ok 08:43:00.0342 5012 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 08:43:00.0357 5012 amdsbs - ok 08:43:00.0373 5012 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys 08:43:00.0373 5012 amdxata - ok 08:43:00.0388 5012 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys 08:43:00.0388 5012 AppID - ok 08:43:00.0420 5012 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll 08:43:00.0420 5012 AppIDSvc - ok 08:43:00.0466 5012 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll 08:43:00.0466 5012 Appinfo - ok 08:43:00.0607 5012 [ 4B5AE15E5C73EB4DC8DBEC2788230D41 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 08:43:00.0607 5012 Apple Mobile Device - ok 08:43:00.0654 5012 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys 08:43:00.0654 5012 arc - ok 08:43:00.0669 5012 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 08:43:00.0669 5012 arcsas - ok 08:43:00.0685 5012 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 08:43:00.0685 5012 AsyncMac - ok 08:43:00.0732 5012 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys 08:43:00.0732 5012 atapi - ok 08:43:00.0778 5012 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 08:43:00.0778 5012 AudioEndpointBuilder - ok 08:43:00.0810 5012 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll 08:43:00.0810 5012 Audiosrv - ok 08:43:01.0044 5012 [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe 08:43:01.0200 5012 AVGIDSAgent - ok 08:43:01.0262 5012 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdriverx.sys 08:43:01.0262 5012 AVGIDSDriver - ok 08:43:01.0278 5012 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\Windows\system32\DRIVERS\avgidshx.sys 08:43:01.0278 5012 AVGIDSHX - ok 08:43:01.0309 5012 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\Windows\system32\DRIVERS\avgidsshimx.sys 08:43:01.0309 5012 AVGIDSShim - ok 08:43:01.0324 5012 [ D53D35031365A0ECCB1DC1BC1B15B18E ] AvgLdx86 C:\Windows\system32\DRIVERS\avgldx86.sys 08:43:01.0324 5012 AvgLdx86 - ok 08:43:01.0387 5012 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\Windows\system32\DRIVERS\avglogx.sys 08:43:01.0387 5012 Avglogx - ok 08:43:01.0418 5012 [ AF7AA9BA434CD28833A66E90993E8DFD ] AvgMfx86 C:\Windows\system32\DRIVERS\avgmfx86.sys 08:43:01.0418 5012 AvgMfx86 - ok 08:43:01.0449 5012 [ BA73B38E9033FC6018DB736B635706AE ] AvgTdiX C:\Windows\system32\DRIVERS\avgtdix.sys 08:43:01.0449 5012 AvgTdiX - ok 08:43:01.0480 5012 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe 08:43:01.0496 5012 avgwd - ok 08:43:01.0527 5012 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll 08:43:01.0543 5012 AxInstSV - ok 08:43:01.0590 5012 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys 08:43:01.0590 5012 b06bdrv - ok 08:43:01.0636 5012 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 08:43:01.0636 5012 b57nd60x - ok 08:43:01.0699 5012 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll 08:43:01.0699 5012 BDESVC - ok 08:43:01.0714 5012 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys 08:43:01.0714 5012 Beep - ok 08:43:01.0761 5012 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll 08:43:01.0761 5012 BFE - ok 08:43:01.0792 5012 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll 08:43:01.0808 5012 BITS - ok 08:43:01.0824 5012 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 08:43:01.0824 5012 blbdrive - ok 08:43:01.0886 5012 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 08:43:01.0886 5012 Bonjour Service - ok 08:43:01.0917 5012 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 08:43:01.0917 5012 bowser - ok 08:43:01.0948 5012 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 08:43:01.0948 5012 BrFiltLo - ok 08:43:01.0964 5012 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 08:43:01.0964 5012 BrFiltUp - ok 08:43:02.0011 5012 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll 08:43:02.0011 5012 Browser - ok 08:43:02.0026 5012 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys 08:43:02.0026 5012 Brserid - ok 08:43:02.0058 5012 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 08:43:02.0058 5012 BrSerWdm - ok 08:43:02.0073 5012 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 08:43:02.0073 5012 BrUsbMdm - ok 08:43:02.0089 5012 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 08:43:02.0089 5012 BrUsbSer - ok 08:43:02.0120 5012 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 08:43:02.0120 5012 BTHMODEM - ok 08:43:02.0167 5012 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll 08:43:02.0167 5012 bthserv - ok 08:43:02.0182 5012 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 08:43:02.0182 5012 cdfs - ok 08:43:02.0245 5012 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys 08:43:02.0245 5012 cdrom - ok 08:43:02.0276 5012 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll 08:43:02.0292 5012 CertPropSvc - ok 08:43:02.0323 5012 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 08:43:02.0323 5012 circlass - ok 08:43:02.0354 5012 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys 08:43:02.0354 5012 CLFS - ok 08:43:02.0479 5012 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 08:43:02.0479 5012 clr_optimization_v2.0.50727_32 - ok 08:43:02.0557 5012 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 08:43:02.0557 5012 clr_optimization_v4.0.30319_32 - ok 08:43:02.0557 5012 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 08:43:02.0572 5012 CmBatt - ok 08:43:02.0604 5012 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys 08:43:02.0604 5012 cmdide - ok 08:43:02.0650 5012 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys 08:43:02.0650 5012 CNG - ok 08:43:02.0713 5012 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 08:43:02.0713 5012 Compbatt - ok 08:43:02.0775 5012 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 08:43:02.0775 5012 CompositeBus - ok 08:43:02.0791 5012 COMSysApp - ok 08:43:02.0806 5012 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 08:43:02.0806 5012 crcdisk - ok 08:43:02.0853 5012 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll 08:43:02.0869 5012 CryptSvc - ok 08:43:02.0900 5012 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll 08:43:02.0900 5012 DcomLaunch - ok 08:43:02.0962 5012 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll 08:43:02.0962 5012 defragsvc - ok 08:43:02.0994 5012 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 08:43:02.0994 5012 DfsC - ok 08:43:03.0025 5012 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll 08:43:03.0040 5012 Dhcp - ok 08:43:03.0072 5012 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys 08:43:03.0072 5012 discache - ok 08:43:03.0118 5012 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys 08:43:03.0118 5012 Disk - ok 08:43:03.0150 5012 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll 08:43:03.0150 5012 Dnscache - ok 08:43:03.0181 5012 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll 08:43:03.0196 5012 dot3svc - ok 08:43:03.0212 5012 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll 08:43:03.0228 5012 DPS - ok 08:43:03.0259 5012 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 08:43:03.0259 5012 drmkaud - ok 08:43:03.0290 5012 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 08:43:03.0306 5012 DXGKrnl - ok 08:43:03.0352 5012 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll 08:43:03.0352 5012 EapHost - ok 08:43:03.0462 5012 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys 08:43:03.0493 5012 ebdrv - ok 08:43:03.0524 5012 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe 08:43:03.0524 5012 EFS - ok 08:43:03.0571 5012 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 08:43:03.0586 5012 ehRecvr - ok 08:43:03.0633 5012 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe 08:43:03.0633 5012 ehSched - ok 08:43:03.0696 5012 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 08:43:03.0696 5012 elxstor - ok 08:43:03.0727 5012 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys 08:43:03.0727 5012 ErrDev - ok 08:43:03.0789 5012 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll 08:43:03.0789 5012 EventSystem - ok 08:43:03.0820 5012 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys 08:43:03.0820 5012 exfat - ok 08:43:03.0867 5012 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys 08:43:03.0867 5012 fastfat - ok 08:43:03.0898 5012 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe 08:43:03.0914 5012 Fax - ok 08:43:03.0930 5012 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys 08:43:03.0930 5012 fdc - ok 08:43:03.0961 5012 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll 08:43:03.0976 5012 fdPHost - ok 08:43:03.0976 5012 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll 08:43:03.0976 5012 FDResPub - ok 08:43:04.0008 5012 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 08:43:04.0008 5012 FileInfo - ok 08:43:04.0023 5012 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 08:43:04.0023 5012 Filetrace - ok 08:43:04.0023 5012 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 08:43:04.0023 5012 flpydisk - ok 08:43:04.0054 5012 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 08:43:04.0054 5012 FltMgr - ok 08:43:04.0117 5012 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll 08:43:04.0132 5012 FontCache - ok 08:43:04.0195 5012 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 08:43:04.0195 5012 FontCache3.0.0.0 - ok 08:43:04.0226 5012 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 08:43:04.0226 5012 FsDepends - ok 08:43:04.0273 5012 [ B0082808A6856A252F7CDD939892CE50 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys 08:43:04.0273 5012 fssfltr - ok 08:43:04.0382 5012 [ 28DDEEEC44E988657B732CF404D504CB ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe 08:43:04.0398 5012 fsssvc - ok 08:43:04.0429 5012 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 08:43:04.0429 5012 Fs_Rec - ok 08:43:04.0476 5012 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 08:43:04.0476 5012 fvevol - ok 08:43:04.0507 5012 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 08:43:04.0507 5012 gagp30kx - ok 08:43:04.0554 5012 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll 08:43:04.0554 5012 gpsvc - ok 08:43:04.0647 5012 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 08:43:04.0647 5012 gupdate - ok 08:43:04.0663 5012 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 08:43:04.0663 5012 gupdatem - ok 08:43:04.0741 5012 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe 08:43:04.0741 5012 gusvc - ok 08:43:04.0772 5012 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 08:43:04.0772 5012 hcw85cir - ok 08:43:04.0803 5012 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 08:43:04.0819 5012 HDAudBus - ok 08:43:04.0819 5012 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 08:43:04.0819 5012 HidBatt - ok 08:43:04.0850 5012 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 08:43:04.0850 5012 HidBth - ok 08:43:04.0881 5012 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 08:43:04.0881 5012 HidIr - ok 08:43:04.0912 5012 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll 08:43:04.0912 5012 hidserv - ok 08:43:04.0959 5012 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys 08:43:04.0959 5012 HidUsb - ok 08:43:04.0990 5012 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll 08:43:04.0990 5012 hkmsvc - ok 08:43:05.0022 5012 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 08:43:05.0022 5012 HomeGroupListener - ok 08:43:05.0037 5012 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 08:43:05.0053 5012 HomeGroupProvider - ok 08:43:05.0084 5012 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 08:43:05.0100 5012 HpSAMD - ok 08:43:05.0131 5012 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys 08:43:05.0146 5012 HTTP - ok 08:43:05.0162 5012 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 08:43:05.0162 5012 hwpolicy - ok 08:43:05.0193 5012 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 08:43:05.0193 5012 i8042prt - ok 08:43:05.0271 5012 [ 52E8A3CC8269ADB27D25182284C5E650 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe 08:43:05.0287 5012 IAANTMON - ok 08:43:05.0334 5012 [ 71ECC07BC7C5E24C3DD01D8A29A24054 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 08:43:05.0334 5012 iaStor - ok 08:43:05.0365 5012 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 08:43:05.0380 5012 iaStorV - ok 08:43:05.0458 5012 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 08:43:05.0490 5012 idsvc - ok 08:43:05.0536 5012 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 08:43:05.0536 5012 iirsp - ok 08:43:05.0583 5012 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll 08:43:05.0599 5012 IKEEXT - ok 08:43:05.0630 5012 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys 08:43:05.0630 5012 intelide - ok 08:43:05.0661 5012 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 08:43:05.0661 5012 intelppm - ok 08:43:05.0692 5012 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 08:43:05.0692 5012 IPBusEnum - ok 08:43:05.0708 5012 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 08:43:05.0708 5012 IpFilterDriver - ok 08:43:05.0755 5012 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 08:43:05.0770 5012 iphlpsvc - ok 08:43:05.0802 5012 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 08:43:05.0802 5012 IPMIDRV - ok 08:43:05.0848 5012 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys 08:43:05.0848 5012 IPNAT - ok 08:43:05.0880 5012 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys 08:43:05.0880 5012 IRENUM - ok 08:43:05.0911 5012 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys 08:43:05.0911 5012 isapnp - ok 08:43:05.0926 5012 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 08:43:05.0942 5012 iScsiPrt - ok 08:43:05.0973 5012 [ 9EFE54794B3A94E93DA50703692E011E ] JMCR C:\Windows\system32\DRIVERS\jmcr.sys 08:43:05.0973 5012 JMCR - ok 08:43:06.0004 5012 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 08:43:06.0020 5012 kbdclass - ok 08:43:06.0036 5012 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 08:43:06.0036 5012 kbdhid - ok 08:43:06.0051 5012 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe 08:43:06.0067 5012 KeyIso - ok 08:43:06.0098 5012 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 08:43:06.0098 5012 KSecDD - ok 08:43:06.0129 5012 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 08:43:06.0129 5012 KSecPkg - ok 08:43:06.0192 5012 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll 08:43:06.0192 5012 KtmRm - ok 08:43:06.0238 5012 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll 08:43:06.0238 5012 LanmanServer - ok 08:43:06.0285 5012 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 08:43:06.0285 5012 LanmanWorkstation - ok 08:43:06.0348 5012 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 08:43:06.0348 5012 lltdio - ok 08:43:06.0379 5012 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll 08:43:06.0394 5012 lltdsvc - ok 08:43:06.0426 5012 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll 08:43:06.0426 5012 lmhosts - ok 08:43:06.0457 5012 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 08:43:06.0457 5012 LSI_FC - ok 08:43:06.0488 5012 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 08:43:06.0504 5012 LSI_SAS - ok 08:43:06.0519 5012 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 08:43:06.0519 5012 LSI_SAS2 - ok 08:43:06.0535 5012 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 08:43:06.0535 5012 LSI_SCSI - ok 08:43:06.0566 5012 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys 08:43:06.0566 5012 luafv - ok 08:43:06.0597 5012 lxbk_device - ok 08:43:06.0628 5012 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 08:43:06.0628 5012 MBAMProtector - ok 08:43:06.0691 5012 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe 08:43:06.0691 5012 MBAMScheduler - ok 08:43:06.0722 5012 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 08:43:06.0738 5012 MBAMService - ok 08:43:06.0784 5012 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 08:43:06.0784 5012 Mcx2Svc - ok 08:43:06.0816 5012 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 08:43:06.0816 5012 megasas - ok 08:43:06.0847 5012 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 08:43:06.0862 5012 MegaSR - ok 08:43:06.0894 5012 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll 08:43:06.0894 5012 MMCSS - ok 08:43:06.0909 5012 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys 08:43:06.0925 5012 Modem - ok 08:43:06.0940 5012 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 08:43:06.0940 5012 monitor - ok 08:43:06.0972 5012 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys 08:43:06.0972 5012 mouclass - ok 08:43:06.0987 5012 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 08:43:06.0987 5012 mouhid - ok 08:43:07.0003 5012 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 08:43:07.0003 5012 mountmgr - ok 08:43:07.0050 5012 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 08:43:07.0065 5012 MozillaMaintenance - ok 08:43:07.0096 5012 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys 08:43:07.0096 5012 mpio - ok 08:43:07.0112 5012 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 08:43:07.0112 5012 mpsdrv - ok 08:43:07.0159 5012 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll 08:43:07.0174 5012 MpsSvc - ok 08:43:07.0206 5012 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 08:43:07.0206 5012 MRxDAV - ok 08:43:07.0252 5012 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 08:43:07.0252 5012 mrxsmb - ok 08:43:07.0284 5012 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 08:43:07.0299 5012 mrxsmb10 - ok 08:43:07.0315 5012 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 08:43:07.0315 5012 mrxsmb20 - ok 08:43:07.0346 5012 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys 08:43:07.0346 5012 msahci - ok 08:43:07.0377 5012 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys 08:43:07.0377 5012 msdsm - ok 08:43:07.0408 5012 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe 08:43:07.0408 5012 MSDTC - ok 08:43:07.0471 5012 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys 08:43:07.0471 5012 Msfs - ok 08:43:07.0486 5012 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 08:43:07.0502 5012 mshidkmdf - ok 08:43:07.0533 5012 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 08:43:07.0533 5012 msisadrv - ok 08:43:07.0549 5012 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 08:43:07.0564 5012 MSiSCSI - ok 08:43:07.0564 5012 msiserver - ok 08:43:07.0596 5012 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 08:43:07.0596 5012 MSKSSRV - ok 08:43:07.0627 5012 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 08:43:07.0627 5012 MSPCLOCK - ok 08:43:07.0642 5012 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 08:43:07.0642 5012 MSPQM - ok 08:43:07.0674 5012 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 08:43:07.0674 5012 MsRPC - ok 08:43:07.0705 5012 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 08:43:07.0705 5012 mssmbios - ok 08:43:07.0736 5012 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 08:43:07.0736 5012 MSTEE - ok 08:43:07.0752 5012 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 08:43:07.0752 5012 MTConfig - ok 08:43:07.0767 5012 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys 08:43:07.0767 5012 Mup - ok 08:43:07.0814 5012 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll 08:43:07.0814 5012 napagent - ok 08:43:07.0845 5012 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 08:43:07.0845 5012 NativeWifiP - ok 08:43:07.0892 5012 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys 08:43:07.0892 5012 NDIS - ok 08:43:07.0908 5012 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 08:43:07.0923 5012 NdisCap - ok 08:43:07.0939 5012 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 08:43:07.0939 5012 NdisTapi - ok 08:43:07.0986 5012 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 08:43:07.0986 5012 Ndisuio - ok 08:43:08.0017 5012 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 08:43:08.0017 5012 NdisWan - ok 08:43:08.0032 5012 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 08:43:08.0048 5012 NDProxy - ok 08:43:08.0126 5012 [ 40D7D0A208EE863BCA8D89E299216F15 ] Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 08:43:08.0142 5012 Nero BackItUp Scheduler 3 - ok 08:43:08.0188 5012 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 08:43:08.0188 5012 NetBIOS - ok 08:43:08.0220 5012 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 08:43:08.0220 5012 NetBT - ok 08:43:08.0235 5012 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe 08:43:08.0235 5012 Netlogon - ok 08:43:08.0298 5012 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll 08:43:08.0298 5012 Netman - ok 08:43:08.0329 5012 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll 08:43:08.0329 5012 netprofm - ok 08:43:08.0360 5012 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 08:43:08.0360 5012 NetTcpPortSharing - ok 08:43:08.0407 5012 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 08:43:08.0407 5012 nfrd960 - ok 08:43:08.0438 5012 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll 08:43:08.0438 5012 NlaSvc - ok 08:43:08.0532 5012 [ EBA1B4BF2E2375ABDADEDB649F283541 ] NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe 08:43:08.0532 5012 NMIndexingService - ok 08:43:08.0547 5012 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys 08:43:08.0547 5012 Npfs - ok 08:43:08.0578 5012 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll 08:43:08.0641 5012 nsi - ok 08:43:08.0641 5012 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 08:43:08.0656 5012 nsiproxy - ok 08:43:08.0703 5012 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 08:43:08.0734 5012 Ntfs - ok 08:43:08.0750 5012 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys 08:43:08.0766 5012 Null - ok 08:43:08.0828 5012 [ D2F4C4B22969236382CA853B8DAA2D4E ] NVHDA C:\Windows\system32\drivers\nvhda32v.sys 08:43:08.0828 5012 NVHDA - ok 08:43:09.0093 5012 [ 5CE5B23855262ACABAECCE156F48DD88 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 08:43:09.0327 5012 nvlddmkm - ok 08:43:09.0390 5012 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys 08:43:09.0405 5012 nvraid - ok 08:43:09.0436 5012 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys 08:43:09.0436 5012 nvstor - ok 08:43:09.0468 5012 [ 6DF4CC671CD9704840C5522627F3ED43 ] nvsvc C:\Windows\system32\nvvsvc.exe 08:43:09.0468 5012 nvsvc - ok 08:43:09.0499 5012 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 08:43:09.0499 5012 nv_agp - ok 08:43:09.0577 5012 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 08:43:09.0577 5012 odserv - ok 08:43:09.0608 5012 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 08:43:09.0608 5012 ohci1394 - ok 08:43:09.0639 5012 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 08:43:09.0639 5012 ose - ok 08:43:09.0670 5012 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 08:43:09.0686 5012 p2pimsvc - ok 08:43:09.0733 5012 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll 08:43:09.0748 5012 p2psvc - ok 08:43:09.0780 5012 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys 08:43:09.0780 5012 Parport - ok 08:43:09.0795 5012 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys 08:43:09.0811 5012 partmgr - ok 08:43:09.0811 5012 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 08:43:09.0826 5012 Parvdm - ok 08:43:09.0842 5012 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll 08:43:09.0842 5012 PcaSvc - ok 08:43:09.0873 5012 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys 08:43:09.0873 5012 pci - ok 08:43:09.0889 5012 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys 08:43:09.0889 5012 pciide - ok 08:43:09.0920 5012 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 08:43:09.0920 5012 pcmcia - ok 08:43:09.0936 5012 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys 08:43:09.0936 5012 pcw - ok 08:43:09.0967 5012 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys 08:43:09.0982 5012 PEAUTH - ok 08:43:10.0060 5012 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll 08:43:10.0138 5012 pla - ok 08:43:10.0170 5012 [ 875E4E0661F3A5994DF9E5E3A0A4F96B ] PLFlash DeviceIoControl Service C:\Windows\system32\IoctlSvc.exe 08:43:10.0170 5012 PLFlash DeviceIoControl Service - ok 08:43:10.0201 5012 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll 08:43:10.0216 5012 PlugPlay - ok 08:43:10.0232 5012 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 08:43:10.0232 5012 PNRPAutoReg - ok 08:43:10.0263 5012 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 08:43:10.0263 5012 PNRPsvc - ok 08:43:10.0310 5012 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 08:43:10.0310 5012 PolicyAgent - ok 08:43:10.0357 5012 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll 08:43:10.0357 5012 Power - ok 08:43:10.0419 5012 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 08:43:10.0419 5012 PptpMiniport - ok 08:43:10.0435 5012 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys 08:43:10.0435 5012 Processor - ok 08:43:10.0466 5012 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll 08:43:10.0482 5012 ProfSvc - ok 08:43:10.0497 5012 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe 08:43:10.0497 5012 ProtectedStorage - ok 08:43:10.0544 5012 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys 08:43:10.0560 5012 Psched - ok 08:43:10.0606 5012 [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe 08:43:10.0606 5012 PSI_SVC_2 - ok 08:43:10.0669 5012 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 08:43:10.0684 5012 ql2300 - ok 08:43:10.0731 5012 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 08:43:10.0731 5012 ql40xx - ok 08:43:10.0809 5012 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll 08:43:10.0809 5012 QWAVE - ok 08:43:10.0825 5012 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 08:43:10.0825 5012 QWAVEdrv - ok 08:43:10.0918 5012 [ 8F97D374AD1857E1EED85A79F29A1D3D ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll 08:43:10.0918 5012 RapiMgr - ok 08:43:10.0950 5012 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 08:43:10.0965 5012 RasAcd - ok 08:43:10.0996 5012 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 08:43:10.0996 5012 RasAgileVpn - ok 08:43:11.0028 5012 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll 08:43:11.0028 5012 RasAuto - ok 08:43:11.0043 5012 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 08:43:11.0043 5012 Rasl2tp - ok 08:43:11.0090 5012 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll 08:43:11.0090 5012 RasMan - ok 08:43:11.0106 5012 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 08:43:11.0121 5012 RasPppoe - ok 08:43:11.0152 5012 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 08:43:11.0152 5012 RasSstp - ok 08:43:11.0168 5012 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 08:43:11.0184 5012 rdbss - ok 08:43:11.0215 5012 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 08:43:11.0215 5012 rdpbus - ok 08:43:11.0262 5012 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 08:43:11.0262 5012 RDPCDD - ok 08:43:11.0308 5012 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 08:43:11.0308 5012 RDPENCDD - ok 08:43:11.0324 5012 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 08:43:11.0324 5012 RDPREFMP - ok 08:43:11.0355 5012 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 08:43:11.0355 5012 RDPWD - ok 08:43:11.0402 5012 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 08:43:11.0402 5012 rdyboost - ok 08:43:11.0433 5012 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll 08:43:11.0449 5012 RemoteAccess - ok 08:43:11.0480 5012 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll 08:43:11.0480 5012 RemoteRegistry - ok 08:43:11.0511 5012 [ F85AE59A52885F4B09AADAFB23001A3B ] Rezip C:\Windows\SYSTEM32\Rezip.exe 08:43:11.0527 5012 Rezip - ok 08:43:11.0589 5012 [ 7CCAEBCAB6FC1ED0206C07E083E79207 ] RichVideo C:\Program Files\Cyberlink\Shared files\RichVideo.exe 08:43:11.0589 5012 RichVideo - ok 08:43:11.0636 5012 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 08:43:11.0636 5012 RpcEptMapper - ok 08:43:11.0667 5012 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe 08:43:11.0667 5012 RpcLocator - ok 08:43:11.0698 5012 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll 08:43:11.0714 5012 RpcSs - ok 08:43:11.0776 5012 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 08:43:11.0776 5012 rspndr - ok 08:43:11.0839 5012 [ 9FF72982F8C3945FB1BC10A6246B9B97 ] rtl8192se C:\Windows\system32\DRIVERS\rtl8192se.sys 08:43:11.0839 5012 rtl8192se - ok 08:43:11.0854 5012 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe 08:43:11.0854 5012 SamSs - ok 08:43:11.0886 5012 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 08:43:11.0886 5012 sbp2port - ok 08:43:11.0917 5012 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll 08:43:11.0917 5012 SCardSvr - ok 08:43:11.0948 5012 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 08:43:11.0948 5012 scfilter - ok 08:43:11.0995 5012 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll 08:43:12.0010 5012 Schedule - ok 08:43:12.0042 5012 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll 08:43:12.0042 5012 SCPolicySvc - ok 08:43:12.0073 5012 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll 08:43:12.0073 5012 SDRSVC - ok 08:43:12.0151 5012 [ 16A252022535B680046F6E34E136D378 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 08:43:12.0151 5012 SeaPort - ok 08:43:12.0198 5012 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 08:43:12.0198 5012 secdrv - ok 08:43:12.0229 5012 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll 08:43:12.0229 5012 seclogon - ok 08:43:12.0260 5012 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll 08:43:12.0276 5012 SENS - ok 08:43:12.0276 5012 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll 08:43:12.0276 5012 SensrSvc - ok 08:43:12.0291 5012 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 08:43:12.0291 5012 Serenum - ok 08:43:12.0307 5012 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys 08:43:12.0322 5012 Serial - ok 08:43:12.0354 5012 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 08:43:12.0354 5012 sermouse - ok 08:43:12.0400 5012 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll 08:43:12.0400 5012 SessionEnv - ok 08:43:12.0447 5012 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 08:43:12.0447 5012 sffdisk - ok 08:43:12.0478 5012 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 08:43:12.0478 5012 sffp_mmc - ok 08:43:12.0494 5012 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 08:43:12.0494 5012 sffp_sd - ok 08:43:12.0525 5012 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 08:43:12.0525 5012 sfloppy - ok 08:43:12.0572 5012 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll 08:43:12.0588 5012 SharedAccess - ok 08:43:12.0619 5012 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 08:43:12.0619 5012 ShellHWDetection - ok 08:43:12.0650 5012 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys 08:43:12.0650 5012 sisagp - ok 08:43:12.0712 5012 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 08:43:12.0712 5012 SiSRaid2 - ok 08:43:12.0728 5012 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 08:43:12.0728 5012 SiSRaid4 - ok 08:43:12.0775 5012 [ 875B04A71869D34A415CC8B4D4673EC4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe 08:43:12.0790 5012 SkypeUpdate - ok 08:43:12.0806 5012 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys 08:43:12.0806 5012 Smb - ok 08:43:12.0868 5012 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 08:43:12.0868 5012 SNMPTRAP - ok 08:43:12.0962 5012 [ 82E3315B1B3E76B9A9643F987ED3AE5C ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys 08:43:13.0040 5012 SNP2UVC - ok 08:43:13.0056 5012 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys 08:43:13.0071 5012 spldr - ok 08:43:13.0102 5012 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe 08:43:13.0118 5012 Spooler - ok 08:43:13.0212 5012 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe 08:43:13.0243 5012 sppsvc - ok 08:43:13.0258 5012 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll 08:43:13.0274 5012 sppuinotify - ok 08:43:13.0305 5012 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys 08:43:13.0321 5012 srv - ok 08:43:13.0336 5012 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 08:43:13.0336 5012 srv2 - ok 08:43:13.0352 5012 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 08:43:13.0352 5012 srvnet - ok 08:43:13.0399 5012 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 08:43:13.0414 5012 SSDPSRV - ok 08:43:13.0446 5012 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll 08:43:13.0446 5012 SstpSvc - ok 08:43:13.0524 5012 [ 2EF99F5129D4A89480DFDF24332A0CA9 ] STacSV C:\Program Files\IDT\WDM\STacSV.exe 08:43:13.0524 5012 STacSV - ok 08:43:13.0570 5012 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 08:43:13.0570 5012 stexstor - ok 08:43:13.0617 5012 [ 1475633F01CB13102B55C059287CBAC8 ] STHDA C:\Windows\system32\DRIVERS\stwrt.sys 08:43:13.0633 5012 STHDA - ok 08:43:13.0680 5012 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll 08:43:13.0695 5012 StiSvc - ok 08:43:13.0726 5012 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys 08:43:13.0726 5012 swenum - ok 08:43:13.0758 5012 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll 08:43:13.0773 5012 swprv - ok 08:43:13.0820 5012 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll 08:43:13.0836 5012 SysMain - ok 08:43:13.0882 5012 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll 08:43:13.0882 5012 TabletInputService - ok 08:43:13.0929 5012 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll 08:43:13.0945 5012 TapiSrv - ok 08:43:13.0960 5012 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll 08:43:13.0960 5012 TBS - ok 08:43:14.0023 5012 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 08:43:14.0023 5012 Tcpip - ok 08:43:14.0085 5012 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 08:43:14.0101 5012 TCPIP6 - ok 08:43:14.0132 5012 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 08:43:14.0132 5012 tcpipreg - ok 08:43:14.0163 5012 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 08:43:14.0163 5012 TDPIPE - ok 08:43:14.0179 5012 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 08:43:14.0179 5012 TDTCP - ok 08:43:14.0226 5012 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 08:43:14.0226 5012 tdx - ok 08:43:14.0257 5012 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys 08:43:14.0257 5012 TermDD - ok 08:43:14.0304 5012 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll 08:43:14.0304 5012 TermService - ok 08:43:14.0350 5012 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll 08:43:14.0350 5012 Themes - ok 08:43:14.0366 5012 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll 08:43:14.0366 5012 THREADORDER - ok 08:43:14.0397 5012 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll 08:43:14.0397 5012 TrkWks - ok 08:43:14.0475 5012 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 08:43:14.0475 5012 TrustedInstaller - ok 08:43:14.0506 5012 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 08:43:14.0506 5012 tssecsrv - ok 08:43:14.0600 5012 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 08:43:14.0600 5012 TsUsbFlt - ok 08:43:14.0631 5012 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 08:43:14.0631 5012 tunnel - ok 08:43:14.0662 5012 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 08:43:14.0678 5012 uagp35 - ok 08:43:14.0694 5012 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys 08:43:14.0694 5012 udfs - ok 08:43:14.0740 5012 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 08:43:14.0740 5012 UI0Detect - ok 08:43:14.0772 5012 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 08:43:14.0772 5012 uliagpkx - ok 08:43:14.0834 5012 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys 08:43:14.0834 5012 umbus - ok 08:43:14.0881 5012 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 08:43:14.0881 5012 UmPass - ok 08:43:14.0896 5012 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll 08:43:14.0912 5012 upnphost - ok 08:43:14.0943 5012 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 08:43:14.0943 5012 usbccgp - ok 08:43:14.0974 5012 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys 08:43:14.0974 5012 usbcir - ok 08:43:15.0006 5012 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 08:43:15.0006 5012 usbehci - ok 08:43:15.0037 5012 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 08:43:15.0037 5012 usbhub - ok 08:43:15.0068 5012 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys 08:43:15.0068 5012 usbohci - ok 08:43:15.0099 5012 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 08:43:15.0115 5012 usbprint - ok 08:43:15.0130 5012 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 08:43:15.0130 5012 usbscan - ok 08:43:15.0162 5012 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 08:43:15.0162 5012 USBSTOR - ok 08:43:15.0193 5012 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 08:43:15.0193 5012 usbuhci - ok 08:43:15.0224 5012 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll 08:43:15.0240 5012 UxSms - ok 08:43:15.0240 5012 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe 08:43:15.0255 5012 VaultSvc - ok 08:43:15.0286 5012 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 08:43:15.0286 5012 vdrvroot - ok 08:43:15.0333 5012 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe 08:43:15.0333 5012 vds - ok 08:43:15.0396 5012 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 08:43:15.0396 5012 vga - ok 08:43:15.0411 5012 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys 08:43:15.0411 5012 VgaSave - ok 08:43:15.0442 5012 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 08:43:15.0442 5012 vhdmp - ok 08:43:15.0489 5012 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys 08:43:15.0489 5012 viaagp - ok 08:43:15.0505 5012 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys 08:43:15.0505 5012 ViaC7 - ok 08:43:15.0536 5012 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys 08:43:15.0536 5012 viaide - ok 08:43:15.0552 5012 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys 08:43:15.0552 5012 volmgr - ok 08:43:15.0583 5012 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 08:43:15.0583 5012 volmgrx - ok 08:43:15.0630 5012 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys 08:43:15.0630 5012 volsnap - ok 08:43:15.0661 5012 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 08:43:15.0661 5012 vsmraid - ok 08:43:15.0739 5012 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe 08:43:15.0754 5012 VSS - ok 08:43:15.0770 5012 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 08:43:15.0770 5012 vwifibus - ok 08:43:15.0832 5012 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll 08:43:15.0832 5012 W32Time - ok 08:43:15.0879 5012 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 08:43:15.0879 5012 WacomPen - ok 08:43:15.0926 5012 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 08:43:15.0926 5012 WANARP - ok 08:43:15.0926 5012 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 08:43:15.0926 5012 Wanarpv6 - ok 08:43:16.0020 5012 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 08:43:16.0066 5012 WatAdminSvc - ok 08:43:16.0113 5012 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe 08:43:16.0129 5012 wbengine - ok 08:43:16.0176 5012 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 08:43:16.0191 5012 WbioSrvc - ok 08:43:16.0254 5012 [ 59E19BD13C3BDB857646B9E436BA27F7 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll 08:43:16.0254 5012 WcesComm - ok 08:43:16.0300 5012 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll 08:43:16.0316 5012 wcncsvc - ok 08:43:16.0332 5012 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 08:43:16.0332 5012 WcsPlugInService - ok 08:43:16.0378 5012 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys 08:43:16.0378 5012 Wd - ok 08:43:16.0410 5012 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 08:43:16.0425 5012 Wdf01000 - ok 08:43:16.0441 5012 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll 08:43:16.0456 5012 WdiServiceHost - ok 08:43:16.0456 5012 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll 08:43:16.0456 5012 WdiSystemHost - ok 08:43:16.0503 5012 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll 08:43:16.0503 5012 WebClient - ok 08:43:16.0534 5012 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll 08:43:16.0534 5012 Wecsvc - ok 08:43:16.0566 5012 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll 08:43:16.0566 5012 wercplsupport - ok 08:43:16.0597 5012 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll 08:43:16.0597 5012 WerSvc - ok 08:43:16.0612 5012 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 08:43:16.0612 5012 WfpLwf - ok 08:43:16.0628 5012 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys 08:43:16.0628 5012 WIMMount - ok 08:43:16.0706 5012 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll 08:43:16.0722 5012 WinDefend - ok 08:43:16.0753 5012 WinHttpAutoProxySvc - ok 08:43:16.0831 5012 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 08:43:16.0831 5012 Winmgmt - ok 08:43:16.0893 5012 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll 08:43:16.0909 5012 WinRM - ok 08:43:16.0956 5012 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WINUSB C:\Windows\system32\DRIVERS\WinUSB.SYS 08:43:16.0956 5012 WINUSB - ok 08:43:17.0018 5012 [ 20A97B632A76CC977FCFB98F28CAAAB3 ] WisLMSvc C:\Program Files\Launch Manager\WisLMSvc.exe 08:43:17.0018 5012 WisLMSvc - ok 08:43:17.0065 5012 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll 08:43:17.0096 5012 Wlansvc - ok 08:43:17.0174 5012 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe 08:43:17.0174 5012 wlcrasvc - ok 08:43:17.0252 5012 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 08:43:17.0268 5012 wlidsvc - ok 08:43:17.0314 5012 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 08:43:17.0314 5012 WmiAcpi - ok 08:43:17.0361 5012 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 08:43:17.0361 5012 wmiApSrv - ok 08:43:17.0455 5012 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 08:43:17.0486 5012 WMPNetworkSvc - ok 08:43:17.0517 5012 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll 08:43:17.0517 5012 WPCSvc - ok 08:43:17.0533 5012 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 08:43:17.0533 5012 WPDBusEnum - ok 08:43:17.0564 5012 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 08:43:17.0564 5012 ws2ifsl - ok 08:43:17.0595 5012 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll 08:43:17.0611 5012 wscsvc - ok 08:43:17.0611 5012 WSearch - ok 08:43:17.0689 5012 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll 08:43:17.0704 5012 wuauserv - ok 08:43:17.0736 5012 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 08:43:17.0736 5012 WudfPf - ok 08:43:17.0767 5012 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 08:43:17.0767 5012 WUDFRd - ok 08:43:17.0798 5012 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 08:43:17.0814 5012 wudfsvc - ok 08:43:17.0829 5012 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll 08:43:17.0845 5012 WwanSvc - ok 08:43:17.0876 5012 [ 6BBF7A3BAB8FFDCCF82057FA2AAE2B7B ] XUIF C:\Windows\system32\Drivers\x10ufx2.sys 08:43:17.0876 5012 XUIF - ok 08:43:17.0923 5012 [ C6CA0CC2F7FCDCFE5B551335BFE6D696 ] yukonwlh C:\Windows\system32\DRIVERS\yk60x86.sys 08:43:17.0923 5012 yukonwlh - ok 08:43:17.0954 5012 ================ Scan global =============================== 08:43:17.0970 5012 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll 08:43:18.0001 5012 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll 08:43:18.0032 5012 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll 08:43:18.0063 5012 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll 08:43:18.0110 5012 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe 08:43:18.0110 5012 [Global] - ok 08:43:18.0110 5012 ================ Scan MBR ================================== 08:43:18.0126 5012 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 08:43:18.0422 5012 \Device\Harddisk0\DR0 - ok 08:43:18.0422 5012 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR2 08:43:18.0484 5012 \Device\Harddisk1\DR2 - ok 08:43:18.0484 5012 ================ Scan VBR ================================== 08:43:18.0500 5012 [ 36E96078A8170600C34D380A2280D766 ] \Device\Harddisk0\DR0\Partition1 08:43:18.0516 5012 \Device\Harddisk0\DR0\Partition1 - ok 08:43:18.0547 5012 [ 09B8AC992E246BBF027310C79206CEA8 ] \Device\Harddisk0\DR0\Partition2 08:43:18.0547 5012 \Device\Harddisk0\DR0\Partition2 - ok 08:43:18.0547 5012 [ 1B130C163214BE006B39BA943370668C ] \Device\Harddisk1\DR2\Partition1 08:43:18.0547 5012 \Device\Harddisk1\DR2\Partition1 - ok 08:43:18.0547 5012 ============================================================ 08:43:18.0547 5012 Scan finished 08:43:18.0547 5012 ============================================================ 08:43:18.0656 2912 Detected object count: 0 08:43:18.0656 2912 Actual detected object count: 0 -
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
Goeie avond, na de scan te laten lopen en 39 gevonden objecten heb ik alles willen verwijderen, maar hij kon er slechts twee van verwijderen. De andere (allemaal dezelfde trojan, maar in verschillende bestanden) konden niet worden verwijderd omdat dit blijkbaar Rootkits zijn en niet automatisch worden verwijdert. Meer heb ik er momenteel niet mee gedaan. Ik heb nog eens getest om iets te downloaden, maar helaas zonder resultaat. Heeft iemand nog een idee? Alvast bedankt. Hieronder vindt u de logfile en de message ivm de rootkit bestanden: Emsisoft Emergency Kit - Versie 3.0 Laatste Update: 8/05/2013 10:53:41 Scaninstellingen: Scantype: Diepe scan Objecten: Rootkits, Geheugen, Sporen, C:\, D:\ Detecteer riskware: Uit Scan archieven: Aan ADS Scan: Aan Bestandsextensiefilter: Uit Geavanceerde cache: Aan Directe schijftoegang: Uit Scan gestart: 8/05/2013 19:16:57 C:\Windows\System32\Drivers\BfriFPEY.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\eIrFvqK.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\ErfHluiDe.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\FDXhuQ.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\FgSOQYR.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\JGdnpnh.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\KebEv.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\KXrujeJeq.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\QqBqWCRm.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\QqREa.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\saIHYgS.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\SFgPF.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\TKaYelq.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\YBgvMq.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Drivers\YeIgyj.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Mailvue.class Ontdekt: Java.Trojan.Exploit.Bytverify.J ( C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Skypeqd.class Ontdekt: Java.Trojan.Exploit.Bytverify.M ( C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Twitters.class Ontdekt: Java.Trojan.Exploit.Bytverify.I ( C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\3c1841b5-6d4d1e71 Ontdekt: Java.Exploit.CVE-2012-0507.L ( C:\Windows\qjrCvwRrF.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\qkDqf.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\BWGvL.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\dCXDeOskH.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\geuAveqTw.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\gNBFOd.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\goucjrsRK.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\JjDxmwFIq.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\kVlff.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\Lnaya.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\mlHRlJNC.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\ORThWEc.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\ptKKOi.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\RgpHpSwJg.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\RhxtWfje.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\rsRsJus.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\System32\SOKUqVpN.dll Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\vKBPLh.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\wCDiO.exe Ontdekt: Win32.FakeSmoke.Patched.A ( C:\Windows\YhthceHvD.exe Ontdekt: Win32.FakeSmoke.Patched.A ( Gescand 475815 Gevonden 39 Scan geëindigd: 8/05/2013 20:37:07 Scantijd: 1:20:10 C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\3c1841b5-6d4d1e71 Verwijderd Java.Exploit.CVE-2012-0507.L ( C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Twitters.class Verwijderd Java.Trojan.Exploit.Bytverify.I ( Verwijderd 2 rootkit message: \Windows\System32\Drivers\BfriFPEY.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\eIrFvqK.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\ErfHluiDe.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\FDXhuQ.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\FgSOQYR.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\JGdnpnh.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\KebEv.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\KXrujeJeq.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\QqBqWCRm.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\QqREa.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\saIHYgS.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\SFgPF.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\TKaYelq.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\YBgvMq.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums \Windows\System32\Drivers\YeIgyj.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums -
Downloaden niet meer mogelijk via browser
Davidvan reageerde op Davidvan's topic in Archief Bestrijding malware & virussen
Hallo, alvast bedankt voor je reactie. Ik heb de system scan gedaan met adwcleaner en een nieuwe Hijack This logfile, nadat ik de zaken die je had aangeduid heb verwijdert. Ondertussen heb ik nog eens geprobeerd of het probleem is opgelost, maar helaas. Dit is de logfile van hijack this: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 9:51:10, on 8/05/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16537) Boot mode: Normal Running processes: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskhost.exe C:\Windows\Explorer.EXE C:\Program Files\Launch Manager\HotkeyApp.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files\Launch Manager\OSD.exe C:\Windows\tsnp2uvc.exe C:\Program Files\Launch Manager\WButton.exe C:\Program Files\IDT\WDM\sttray.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Windows\WindowsMobile\wmdc.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\uTorrent\uTorrent.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE C:\Windows\system32\NOTEPAD.EXE C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe" O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [LMgrVolOSD] "C:\Program Files\Launch Manager\OSD.exe" O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\HomeCinema\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\HomeCinema\PowerDVD8\Language\Language.exe" O4 - HKLM\..\Run: [tsnp2uvc] C:\Windows\tsnp2uvc.exe O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files\HomeCinema\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0" O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe" O4 - HKLM\..\Run: [sysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" O4 - HKCU\..\Run: [Miro] C:\Program Files\Participatory Culture Foundation\Miro\Miro.exe O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files\PC Speed Up\PCSpeedUp.lnk O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Rezip - Unknown owner - C:\Windows\SYSTEM32\Rezip.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe -- End of file - 10834 bytes en dit is de nieuwe logfile van Adwcleaner: # AdwCleaner v2.300 - Verslag gemaakt op 08/05/2013 om 09:43:53 # Geactualiseerd op 28/04/2013 door Xplode # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (32 bits) # Gebruiker : dany - PC_VAN_DANY # Opstarten Modus : Normale modus # Gelanceerd vanaf : C:\Users\dany\Desktop\adwcleaner.exe # Optie [Verwijderen] ***** [Diensten] ***** ***** [Files / Mappen] ***** ***** [Register] ***** ***** [browsers] ***** -\\ Internet Explorer v10.0.9200.16537 [OK] Het register bevat geen enkele ongeoorloofde invoer. -\\ Mozilla Firefox v20.0.1 (nl) File : C:\Users\dany\AppData\Roaming\Mozilla\Firefox\Profiles\ob9dla5a.default\prefs.js [OK] De file bevat geen enkele ongeoorloofde invoer. File : C:\Users\Sabine\AppData\Roaming\Mozilla\Firefox\Profiles\otr8ela1.default\prefs.js [OK] De file bevat geen enkele ongeoorloofde invoer. -\\ Google Chrome v26.0.1410.64 File : C:\Users\dany\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] De file bevat geen enkele ongeoorloofde invoer. ************************* AdwCleaner[R1].txt - [49910 octets] - [05/05/2013 16:32:51] AdwCleaner[s1].txt - [50874 octets] - [05/05/2013 16:33:10] AdwCleaner[s2].txt - [1210 octets] - [08/05/2013 09:43:53] ########## EOF - C:\AdwCleaner[s2].txt - [1270 octets] ########## Alvast bedankt voor de hulp! -
Downloaden niet meer mogelijk via browser
Davidvan plaatste een topic in Archief Bestrijding malware & virussen
Beste, Ik ondervind sinds vorige week een probleem bij het downloaden van om het even welk bestand in om het even welke browser. In IE wordt het bestand gedownload, daarna gelezen door de veiligheidsscanner en wordt het beschouwd als een virus en verwijdert. In Mozilla wordt het gedownload, maar als je dan het bestand wil openen, is het nergens terug te vinden. Op dit forum heb ik reeds een aantal threads gelezen, met een gelijkaardig probleem, maar deze hebben me helaas geen oplossing geboden. Ik heb Hijack This en Malwarebytes reeds geïnstalleerd. Hiervan vind je de logfile hieronder terug. Iemand suggesties wat ik nog kan doen? Alvast bedankt! - - - Updated - - - Logfile Hijack File: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:51:33, on 7/05/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16537) Boot mode: Normal Running processes: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskhost.exe C:\Windows\Explorer.EXE C:\Program Files\Launch Manager\HotkeyApp.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files\Launch Manager\OSD.exe C:\Windows\tsnp2uvc.exe C:\Program Files\Launch Manager\WButton.exe C:\Program Files\IDT\WDM\sttray.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Windows\WindowsMobile\wmdc.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\uTorrent\uTorrent.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe C:\Windows\system32\NOTEPAD.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer! R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe" O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [LMgrVolOSD] "C:\Program Files\Launch Manager\OSD.exe" O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\HomeCinema\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\HomeCinema\PowerDVD8\Language\Language.exe" O4 - HKLM\..\Run: [tsnp2uvc] C:\Windows\tsnp2uvc.exe O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files\HomeCinema\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0" O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe" O4 - HKLM\..\Run: [sysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" O4 - HKCU\..\Run: [Miro] C:\Program Files\Participatory Culture Foundation\Miro\Miro.exe O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files\PC Speed Up\PCSpeedUp.lnk O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\dany\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU) O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU) O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O20 - AppInit_DLLs: aMOmpWaBT.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Rezip - Unknown owner - C:\Windows\SYSTEM32\Rezip.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe -- End of file - 11869 bytes - - - Updated - - - Logfile Malwarebytes: Malwarebytes Anti-Malware (PRO) 1.75.0.1300 Malwarebytes : Free anti-malware download Databaseversie: v2013.05.05.04 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 10.0.9200.16540 dany :: PC_VAN_DANY [administrator] Bescherming: Ingeschakeld 5/05/2013 14:22:52 mbam-log-2013-05-05 (14-22-52).txt Scan type: Volledige scan (C:\|D:\|E:\|F:\|) Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scan opties: P2P Objecten gescand: 392930 Verstreken tijd: 1 uur/uren, 33 minuut/minuten, 43 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 1 C:\Program Files\BcoolApp (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd. Bestanden gedetecteerd: 5 C:\Users\dany\AppData\Local\Temp\hpmfood (Trojan.Agent.irstb) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\dany\Downloads\installer_mixvibes_pro_7_218_Nederlands_Dutch.exe (PUP.SmsPay.PGen) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Program Files\BcoolApp\BcoolAppInstaller.log (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\dany\Local Settings\Application Data\BcoolApp\Chrome\BcoolApp.crx (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\dany\AppData\Local\BcoolApp\Chrome\BcoolApp.crx (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd. (einde)

OVER ONS
PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!