Ga naar inhoud

windows xp problemen, traag en vastlopend zie ook mijn Hijack log..


Aanbevolen berichten

  • Reacties 20
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Die "koppige" 018 lijnen mag je nogmaals verwijderen en verwijder ook deze

O18 - Protocol: offline-8876480 - {E04FFD55-E67C-48EF-9BAA-64CABC37C6D9} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

Dat is waarschijnlijk de boosdoener waardoor die andere 018 lijnen steeds terugkeren.

Link naar reactie
Delen op andere sites

ze zijn nu weg, zie hieronder;

ogfile of Trend Micro HijackThis v2.0.4

Scan saved at 7:06:57 PM, on 5/23/2012

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\AVAST Software\Avast\AvastSvc.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Hijackthis\HijackThis.exe

C:\WINDOWS\system32\ctfmon.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - Default URLSearchHook is missing

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: LastPass Browser Helper Object - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files\LastPass\LPBar.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O3 - Toolbar: LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files\LastPass\LPBar.dll

O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\RunOnce: [iE8] rundll32 advpack.dll,LaunchINFSection IE8.INF,FirstUserStart

O4 - HKCU\..\RunOnce: [showDeskFix] regsvr32 /s /n /i:u shell32

O4 - HKUS\S-1-5-19\..\RunOnce: [iE8] rundll32 advpack.dll,LaunchINFSection IE8.INF,FirstUserStart (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [showDeskFix] regsvr32 /s /n /i:u shell32 (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-21-1343024091-706699826-1177238915-1003\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Hank')

O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')

O4 - S-1-5-21-1343024091-706699826-1177238915-1003 Startup: Dropbox.lnk = C:\Documents and Settings\Hank\Application Data\Dropbox\bin\Dropbox.exe (User 'Hank')

O4 - S-1-5-21-1343024091-706699826-1177238915-1003 User Startup: Dropbox.lnk = C:\Documents and Settings\Hank\Application Data\Dropbox\bin\Dropbox.exe (User 'Hank')

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files\LastPass\LPBar.dll

O9 - Extra 'Tools' menuitem: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - C:\Program Files\LastPass\LPBar.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL

O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files\Evernote\Evernote\EvernoteIE.dll/204 (file missing)

O9 - Extra 'Tools' menuitem: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files\Evernote\Evernote\EvernoteIE.dll/204 (file missing)

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

--

End of file - 6342 bytes

M vr gr Henk

Link naar reactie
Delen op andere sites

prgrammas lopen nog steeds vast :-( na het opstsarten doen ze het even, maar na een tijdje houden ze ermee op. Zowle wrod, als outlook express, als de webbrouwsers..... Hoewel ik niet graag opgeeft, denk ik dat ik toch maar een wondows aanschaf en installeer, xp of 7.... M vr gr Henk

Link naar reactie
Delen op andere sites

''Via scan Avast komt ook nog telkens een detected threat naar voren, die laat ik dan deleten, de volgende keer is ie er echter telkens weer.

BBR://,/PHYSICALDRIVE0 High severity Threat: Win32:MBRoot-J [Trj]''

Ik ben wel blij met jullie hulp, die is fantastisch. maar ik denk dat de PC ''vanalles heeft opgelopen'', vandaar het idee voor een nieuwe windowsinstallatie. gr Henk

Link naar reactie
Delen op andere sites

tdss nu kunnen uitvoeren, :-) hierbij rapport, na deze verzending ga ik reboot uitvoeren. Gr Henk

13:19:46.0468 2920 TDSS rootkit removing tool 2.7.37.0 May 23 2012 08:15:30

13:19:47.0562 2920 ============================================================

13:19:47.0562 2920 Current date / time: 2012/05/24 13:19:47.0562

13:19:47.0562 2920 SystemInfo:

13:19:47.0562 2920

13:19:47.0562 2920 OS Version: 5.1.2600 ServicePack: 3.0

13:19:47.0562 2920 Product type: Workstation

13:19:47.0562 2920 ComputerName: HENK-DESKTOP

13:19:47.0562 2920 UserName: Administrator

13:19:47.0562 2920 Windows directory: C:\WINDOWS

13:19:47.0562 2920 System windows directory: C:\WINDOWS

13:19:47.0562 2920 Processor architecture: Intel x86

13:19:47.0562 2920 Number of processors: 1

13:19:47.0562 2920 Page size: 0x1000

13:19:47.0562 2920 Boot type: Normal boot

13:19:47.0562 2920 ============================================================

13:19:49.0265 2920 Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054

13:19:49.0265 2920 ============================================================

13:19:49.0265 2920 \Device\Harddisk0\DR0:

13:19:49.0265 2920 MBR partitions:

13:19:49.0265 2920 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4E1EDEC

13:19:49.0281 2920 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4E1EE6A, BlocksNum 0x46EF657

13:19:49.0281 2920 ============================================================

13:19:49.0312 2920 D: <-> \Device\Harddisk0\DR0\Partition1

13:19:49.0328 2920 C: <-> \Device\Harddisk0\DR0\Partition0

13:19:49.0328 2920 ============================================================

13:19:49.0328 2920 Initialize success

13:19:49.0328 2920 ============================================================

13:20:11.0281 3768 ============================================================

13:20:11.0281 3768 Scan started

13:20:11.0281 3768 Mode: Manual;

13:20:11.0281 3768 ============================================================

13:20:11.0640 3768 10327249 (58169ffb207940d4d84b4e85db02cc1e) C:\WINDOWS\system32\drivers\70705716.sys

13:20:11.0640 3768 10327249 - ok

13:20:11.0687 3768 70950612 (58169ffb207940d4d84b4e85db02cc1e) C:\WINDOWS\system32\drivers\97552897.sys

13:20:11.0703 3768 70950612 - ok

13:20:11.0781 3768 Aavmker4 (473f97edc5a5312f3665ab2921196c0c) C:\WINDOWS\system32\drivers\Aavmker4.sys

13:20:11.0781 3768 Aavmker4 - ok

13:20:11.0796 3768 Abiosdsk - ok

13:20:11.0812 3768 abp480n5 - ok

13:20:11.0859 3768 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys

13:20:11.0875 3768 ACPI - ok

13:20:11.0921 3768 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys

13:20:11.0921 3768 ACPIEC - ok

13:20:11.0921 3768 adpu160m - ok

13:20:11.0968 3768 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys

13:20:11.0968 3768 aec - ok

13:20:12.0031 3768 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys

13:20:12.0031 3768 AFD - ok

13:20:12.0046 3768 Aha154x - ok

13:20:12.0062 3768 aic78u2 - ok

13:20:12.0078 3768 aic78xx - ok

13:20:12.0296 3768 ALCXWDM (273f014e623d34a730608179ce2a2d94) C:\WINDOWS\system32\drivers\ALCXWDM.SYS

13:20:12.0406 3768 ALCXWDM - ok

13:20:12.0546 3768 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll

13:20:12.0546 3768 Alerter - ok

13:20:12.0562 3768 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe

13:20:12.0562 3768 ALG - ok

13:20:12.0593 3768 AliIde - ok

13:20:12.0609 3768 amsint - ok

13:20:12.0781 3768 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

13:20:12.0781 3768 Apple Mobile Device - ok

13:20:12.0843 3768 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll

13:20:12.0843 3768 AppMgmt - ok

13:20:12.0859 3768 asc - ok

13:20:12.0875 3768 asc3350p - ok

13:20:12.0890 3768 asc3550 - ok

13:20:13.0000 3768 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe

13:20:13.0000 3768 aspnet_state - ok

13:20:13.0062 3768 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\WINDOWS\system32\drivers\aswFsBlk.sys

13:20:13.0062 3768 aswFsBlk - ok

13:20:13.0109 3768 aswKbd (81e695913fefd4e23360a69c0f151797) C:\WINDOWS\system32\drivers\aswKbd.sys

13:20:13.0109 3768 aswKbd - ok

13:20:13.0156 3768 aswMon2 (8c30b7ddd2f1d8d138ebe40345af2b11) C:\WINDOWS\system32\drivers\aswMon2.sys

13:20:13.0156 3768 aswMon2 - ok

13:20:13.0218 3768 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\WINDOWS\system32\drivers\aswRdr.sys

13:20:13.0218 3768 aswRdr - ok

13:20:13.0250 3768 aswSnx (dcb199b967375753b5019ec15f008f53) C:\WINDOWS\system32\drivers\aswSnx.sys

13:20:13.0265 3768 aswSnx - ok

13:20:13.0296 3768 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\WINDOWS\system32\drivers\aswSP.sys

13:20:13.0296 3768 aswSP - ok

13:20:13.0328 3768 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\WINDOWS\system32\drivers\aswTdi.sys

13:20:13.0328 3768 aswTdi - ok

13:20:13.0375 3768 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys

13:20:13.0390 3768 AsyncMac - ok

13:20:13.0437 3768 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys

13:20:13.0437 3768 atapi - ok

13:20:13.0453 3768 Atdisk - ok

13:20:13.0484 3768 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys

13:20:13.0484 3768 Atmarpc - ok

13:20:13.0515 3768 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll

13:20:13.0515 3768 AudioSrv - ok

13:20:13.0531 3768 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys

13:20:13.0546 3768 audstub - ok

13:20:13.0687 3768 avast! Antivirus (4041d31508a2a084dfb42c595854090f) C:\Program Files\AVAST Software\Avast\AvastSvc.exe

13:20:13.0687 3768 avast! Antivirus - ok

13:20:13.0750 3768 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys

13:20:13.0750 3768 Beep - ok

13:20:13.0812 3768 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll

13:20:13.0859 3768 BITS - ok

13:20:13.0968 3768 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe

13:20:13.0968 3768 Bonjour Service - ok

13:20:14.0015 3768 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll

13:20:14.0015 3768 Browser - ok

13:20:14.0046 3768 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys

13:20:14.0046 3768 cbidf2k - ok

13:20:14.0093 3768 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys

13:20:14.0109 3768 CCDECODE - ok

13:20:14.0125 3768 cd20xrnt - ok

13:20:14.0140 3768 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys

13:20:14.0156 3768 Cdaudio - ok

13:20:14.0203 3768 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys

13:20:14.0203 3768 Cdfs - ok

13:20:14.0218 3768 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys

13:20:14.0218 3768 Cdrom - ok

13:20:14.0234 3768 Changer - ok

13:20:14.0265 3768 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe

13:20:14.0265 3768 CiSvc - ok

13:20:14.0281 3768 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe

13:20:14.0296 3768 ClipSrv - ok

13:20:14.0390 3768 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

13:20:14.0406 3768 clr_optimization_v2.0.50727_32 - ok

13:20:14.0500 3768 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

13:20:14.0500 3768 clr_optimization_v4.0.30319_32 - ok

13:20:14.0515 3768 CmdIde - ok

13:20:14.0531 3768 COMSysApp - ok

13:20:14.0562 3768 Cpqarray - ok

13:20:14.0609 3768 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll

13:20:14.0625 3768 CryptSvc - ok

13:20:14.0640 3768 dac2w2k - ok

13:20:14.0656 3768 dac960nt - ok

13:20:14.0718 3768 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll

13:20:14.0734 3768 DcomLaunch - ok

13:20:14.0796 3768 DgiVecp (a5034f77b278f07e224fe07cf98a8b76) C:\WINDOWS\system32\Drivers\DgiVecp.sys

13:20:14.0796 3768 DgiVecp - ok

13:20:14.0843 3768 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll

13:20:14.0859 3768 Dhcp - ok

13:20:14.0875 3768 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys

13:20:14.0875 3768 Disk - ok

13:20:14.0890 3768 dmadmin - ok

13:20:14.0937 3768 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys

13:20:14.0953 3768 dmboot - ok

13:20:15.0015 3768 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys

13:20:15.0015 3768 dmio - ok

13:20:15.0062 3768 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys

13:20:15.0062 3768 dmload - ok

13:20:15.0078 3768 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll

13:20:15.0078 3768 dmserver - ok

13:20:15.0140 3768 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys

13:20:15.0140 3768 DMusic - ok

13:20:15.0203 3768 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll

13:20:15.0203 3768 Dnscache - ok

13:20:15.0265 3768 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll

13:20:15.0265 3768 Dot3svc - ok

13:20:15.0281 3768 dpti2o - ok

13:20:15.0328 3768 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys

13:20:15.0328 3768 drmkaud - ok

13:20:15.0343 3768 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll

13:20:15.0359 3768 EapHost - ok

13:20:15.0390 3768 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll

13:20:15.0390 3768 ERSvc - ok

13:20:15.0453 3768 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe

13:20:15.0468 3768 Eventlog - ok

13:20:15.0484 3768 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll

13:20:15.0500 3768 EventSystem - ok

13:20:15.0515 3768 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys

13:20:15.0515 3768 Fastfat - ok

13:20:15.0578 3768 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll

13:20:15.0578 3768 FastUserSwitchingCompatibility - ok

13:20:15.0609 3768 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys

13:20:15.0609 3768 Fdc - ok

13:20:15.0671 3768 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys

13:20:15.0687 3768 Fips - ok

13:20:15.0703 3768 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys

13:20:15.0703 3768 Flpydisk - ok

13:20:15.0750 3768 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys

13:20:15.0750 3768 FltMgr - ok

13:20:15.0890 3768 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe

13:20:15.0906 3768 FontCache3.0.0.0 - ok

13:20:15.0953 3768 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys

13:20:15.0953 3768 Fs_Rec - ok

13:20:15.0984 3768 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys

13:20:15.0984 3768 Ftdisk - ok

13:20:16.0031 3768 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys

13:20:16.0031 3768 GEARAspiWDM - ok

13:20:16.0078 3768 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys

13:20:16.0078 3768 Gpc - ok

13:20:16.0234 3768 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe

13:20:16.0234 3768 gupdate - ok

13:20:16.0250 3768 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe

13:20:16.0250 3768 gupdatem - ok

13:20:16.0296 3768 gusvc (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

13:20:16.0312 3768 gusvc - ok

13:20:16.0406 3768 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll

13:20:16.0406 3768 helpsvc - ok

13:20:16.0453 3768 HidServ (deb04da35cc871b6d309b77e1443c796) C:\WINDOWS\System32\hidserv.dll

13:20:16.0453 3768 HidServ - ok

13:20:16.0468 3768 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys

13:20:16.0468 3768 HidUsb - ok

13:20:16.0531 3768 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll

13:20:16.0531 3768 hkmsvc - ok

13:20:16.0546 3768 hpn - ok

13:20:16.0593 3768 HSFHWBS2 (5df616addb75c1ad36c1f9e4de0f7654) C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys

13:20:16.0593 3768 HSFHWBS2 - ok

13:20:16.0703 3768 HSF_DP (dfa8f86c0dbca7db948043aa3be6793b) C:\WINDOWS\system32\DRIVERS\HSF_DP.sys

13:20:16.0718 3768 HSF_DP - ok

13:20:16.0781 3768 HTTP (937031c085718c1c04a9c0864625ec6b) C:\WINDOWS\system32\Drivers\HTTP.sys

13:20:16.0781 3768 HTTP - ok

13:20:16.0843 3768 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll

13:20:16.0843 3768 HTTPFilter - ok

13:20:16.0859 3768 i2omgmt - ok

13:20:16.0875 3768 i2omp - ok

13:20:16.0921 3768 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys

13:20:16.0921 3768 i8042prt - ok

13:20:17.0031 3768 ialm (9a883c3c4d91292c0d09de7c728e781c) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys

13:20:17.0046 3768 ialm - ok

13:20:17.0203 3768 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

13:20:17.0218 3768 idsvc - ok

13:20:17.0343 3768 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys

13:20:17.0343 3768 Imapi - ok

13:20:17.0359 3768 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe

13:20:17.0375 3768 ImapiService - ok

13:20:17.0390 3768 ini910u - ok

13:20:17.0406 3768 IntelIde - ok

13:20:17.0453 3768 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys

13:20:17.0453 3768 intelppm - ok

13:20:17.0468 3768 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys

13:20:17.0468 3768 Ip6Fw - ok

13:20:17.0531 3768 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys

13:20:17.0531 3768 IpFilterDriver - ok

13:20:17.0578 3768 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys

13:20:17.0578 3768 IpInIp - ok

13:20:17.0609 3768 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys

13:20:17.0609 3768 IpNat - ok

13:20:17.0750 3768 iPod Service (57edb35ea2feca88f8b17c0c095c9a56) C:\Program Files\iPod\bin\iPodService.exe

13:20:17.0765 3768 iPod Service - ok

13:20:17.0812 3768 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys

13:20:17.0812 3768 IPSec - ok

13:20:17.0859 3768 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys

13:20:17.0859 3768 IRENUM - ok

13:20:17.0921 3768 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys

13:20:17.0921 3768 isapnp - ok

13:20:18.0015 3768 JavaQuickStarterService (9ae07549a0d691a103faf8946554bdb7) C:\Program Files\Java\jre6\bin\jqs.exe

13:20:18.0031 3768 JavaQuickStarterService - ok

13:20:18.0078 3768 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys

13:20:18.0078 3768 Kbdclass - ok

13:20:18.0140 3768 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys

13:20:18.0140 3768 kbdhid - ok

13:20:18.0218 3768 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys

13:20:18.0218 3768 kmixer - ok

13:20:18.0265 3768 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys

13:20:18.0281 3768 KSecDD - ok

13:20:18.0328 3768 L8042Kbd (d1968dea7baff4a917858c384339cec8) C:\WINDOWS\system32\Drivers\L8042Kbd.sys

13:20:18.0328 3768 L8042Kbd - ok

13:20:18.0390 3768 L8042mou (f0f944e4da9a75dee6a37d4afc7e1bbc) C:\WINDOWS\system32\Drivers\L8042mou.sys

13:20:18.0390 3768 L8042mou - ok

13:20:18.0453 3768 LanmanServer (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll

13:20:18.0468 3768 LanmanServer - ok

13:20:18.0515 3768 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll

13:20:18.0531 3768 lanmanworkstation - ok

13:20:18.0578 3768 LBeepKE (b28c741ae2912a079cf90041a9e5c0a4) C:\WINDOWS\system32\Drivers\LBeepKE.sys

13:20:18.0578 3768 LBeepKE - ok

13:20:18.0593 3768 lbrtfdc - ok

13:20:18.0671 3768 LHidFilt (24e0ddb99aeccf86bb37702611761459) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys

13:20:18.0687 3768 LHidFilt - ok

13:20:18.0703 3768 LHidKe (dd40c03d85649205ec086722474c8a63) C:\WINDOWS\system32\DRIVERS\LHidKE.Sys

13:20:18.0703 3768 LHidKe - ok

13:20:18.0765 3768 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll

13:20:18.0765 3768 LmHosts - ok

13:20:18.0781 3768 LMouFilt (d58b330d318361a66a9fe60d7c9b4951) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys

13:20:18.0796 3768 LMouFilt - ok

13:20:18.0843 3768 LMouKE (2ebd4c02d259944869630a912ec86bce) C:\WINDOWS\system32\Drivers\LMouKE.sys

13:20:18.0859 3768 LMouKE - ok

13:20:18.0906 3768 LUsbFilt (144011d14bd35f4e36136ae057b1aadd) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys

13:20:18.0906 3768 LUsbFilt - ok

13:20:18.0953 3768 mdmxsdk (3c318b9cd391371bed62126581ee9961) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys

13:20:18.0953 3768 mdmxsdk - ok

13:20:19.0000 3768 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll

13:20:19.0015 3768 Messenger - ok

13:20:19.0109 3768 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe

13:20:19.0125 3768 Microsoft Office Groove Audit Service - ok

13:20:19.0187 3768 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys

13:20:19.0187 3768 mnmdd - ok

13:20:19.0234 3768 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe

13:20:19.0250 3768 mnmsrvc - ok

13:20:19.0296 3768 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys

13:20:19.0296 3768 Modem - ok

13:20:19.0312 3768 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys

13:20:19.0312 3768 Mouclass - ok

13:20:19.0375 3768 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys

13:20:19.0375 3768 mouhid - ok

13:20:19.0390 3768 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys

13:20:19.0406 3768 MountMgr - ok

13:20:19.0421 3768 mraid35x - ok

13:20:19.0437 3768 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys

13:20:19.0453 3768 MRxDAV - ok

13:20:19.0515 3768 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys

13:20:19.0531 3768 MRxSmb - ok

13:20:19.0578 3768 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe

13:20:19.0578 3768 MSDTC - ok

13:20:19.0656 3768 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys

13:20:19.0656 3768 Msfs - ok

13:20:19.0671 3768 MSIServer - ok

13:20:19.0734 3768 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys

13:20:19.0734 3768 MSKSSRV - ok

13:20:19.0781 3768 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys

13:20:19.0781 3768 MSPCLOCK - ok

13:20:19.0796 3768 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys

13:20:19.0796 3768 MSPQM - ok

13:20:19.0859 3768 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys

13:20:19.0859 3768 mssmbios - ok

13:20:19.0906 3768 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys

13:20:19.0906 3768 MSTEE - ok

13:20:19.0968 3768 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys

13:20:19.0984 3768 Mup - ok

13:20:20.0000 3768 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys

13:20:20.0000 3768 NABTSFEC - ok

13:20:20.0062 3768 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll

13:20:20.0078 3768 napagent - ok

13:20:20.0109 3768 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys

13:20:20.0109 3768 NDIS - ok

13:20:20.0171 3768 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys

13:20:20.0171 3768 NdisIP - ok

13:20:20.0218 3768 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys

13:20:20.0218 3768 NdisTapi - ok

13:20:20.0265 3768 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys

13:20:20.0281 3768 Ndisuio - ok

13:20:20.0296 3768 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys

13:20:20.0296 3768 NdisWan - ok

13:20:20.0359 3768 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys

13:20:20.0359 3768 NDProxy - ok

13:20:20.0375 3768 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys

13:20:20.0375 3768 NetBIOS - ok

13:20:20.0437 3768 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys

13:20:20.0437 3768 NetBT - ok

13:20:20.0468 3768 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe

13:20:20.0468 3768 NetDDE - ok

13:20:20.0484 3768 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe

13:20:20.0500 3768 NetDDEdsdm - ok

13:20:20.0546 3768 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe

13:20:20.0546 3768 Netlogon - ok

13:20:20.0578 3768 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll

13:20:20.0593 3768 Netman - ok

13:20:20.0750 3768 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

13:20:20.0765 3768 NetTcpPortSharing - ok

13:20:20.0812 3768 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll

13:20:20.0828 3768 Nla - ok

13:20:20.0843 3768 nom96t.sys - ok

13:20:20.0890 3768 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys

13:20:20.0890 3768 Npfs - ok

13:20:20.0937 3768 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys

13:20:20.0937 3768 Ntfs - ok

13:20:20.0953 3768 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe

13:20:20.0968 3768 NtLmSsp - ok

13:20:21.0000 3768 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll

13:20:21.0031 3768 NtmsSvc - ok

13:20:21.0062 3768 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys

13:20:21.0078 3768 Null - ok

13:20:21.0093 3768 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys

13:20:21.0093 3768 NwlnkFlt - ok

13:20:21.0109 3768 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys

13:20:21.0125 3768 NwlnkFwd - ok

13:20:21.0281 3768 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

13:20:21.0296 3768 odserv - ok

13:20:21.0359 3768 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

13:20:21.0359 3768 ose - ok

13:20:21.0421 3768 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys

13:20:21.0421 3768 Parport - ok

13:20:21.0453 3768 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys

13:20:21.0453 3768 PartMgr - ok

13:20:21.0500 3768 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys

13:20:21.0500 3768 ParVdm - ok

13:20:21.0562 3768 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys

13:20:21.0562 3768 PCI - ok

13:20:21.0578 3768 PCIDump - ok

13:20:21.0593 3768 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys

13:20:21.0593 3768 PCIIde - ok

13:20:21.0656 3768 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys

13:20:21.0671 3768 Pcmcia - ok

13:20:21.0687 3768 PDCOMP - ok

13:20:21.0703 3768 PDFRAME - ok

13:20:21.0718 3768 PDRELI - ok

13:20:21.0734 3768 PDRFRAME - ok

13:20:21.0734 3768 perc2 - ok

13:20:21.0750 3768 perc2hib - ok

13:20:21.0812 3768 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe

13:20:21.0828 3768 PlugPlay - ok

13:20:21.0875 3768 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe

13:20:21.0890 3768 PolicyAgent - ok

13:20:21.0906 3768 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys

13:20:21.0906 3768 PptpMiniport - ok

13:20:21.0921 3768 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe

13:20:21.0937 3768 ProtectedStorage - ok

13:20:21.0984 3768 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys

13:20:21.0984 3768 PSched - ok

13:20:22.0031 3768 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys

13:20:22.0046 3768 Ptilink - ok

13:20:22.0062 3768 ql1080 - ok

13:20:22.0078 3768 Ql10wnt - ok

13:20:22.0078 3768 ql12160 - ok

13:20:22.0093 3768 ql1240 - ok

13:20:22.0109 3768 ql1280 - ok

13:20:22.0156 3768 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys

13:20:22.0156 3768 RasAcd - ok

13:20:22.0203 3768 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll

13:20:22.0218 3768 RasAuto - ok

13:20:22.0234 3768 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys

13:20:22.0234 3768 Rasl2tp - ok

13:20:22.0265 3768 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll

13:20:22.0281 3768 RasMan - ok

13:20:22.0296 3768 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys

13:20:22.0296 3768 RasPppoe - ok

13:20:22.0343 3768 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys

13:20:22.0343 3768 Raspti - ok

13:20:22.0390 3768 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys

13:20:22.0406 3768 Rdbss - ok

13:20:22.0421 3768 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys

13:20:22.0421 3768 RDPCDD - ok

13:20:22.0484 3768 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys

13:20:22.0500 3768 rdpdr - ok

13:20:22.0562 3768 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys

13:20:22.0562 3768 RDPWD - ok

13:20:22.0593 3768 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe

13:20:22.0625 3768 RDSessMgr - ok

13:20:22.0656 3768 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys

13:20:22.0671 3768 redbook - ok

13:20:22.0718 3768 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll

13:20:22.0718 3768 RemoteAccess - ok

13:20:22.0781 3768 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll

13:20:22.0796 3768 RemoteRegistry - ok

13:20:22.0843 3768 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe

13:20:22.0859 3768 RpcLocator - ok

13:20:22.0890 3768 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll

13:20:22.0906 3768 RpcSs - ok

13:20:22.0953 3768 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe

13:20:22.0968 3768 RSVP - ok

13:20:22.0984 3768 RTL8023xp (62287f3ec4b4948e815a74eddd323843) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys

13:20:22.0984 3768 RTL8023xp - ok

13:20:23.0031 3768 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe

13:20:23.0046 3768 SamSs - ok

13:20:23.0109 3768 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe

13:20:23.0109 3768 SCardSvr - ok

13:20:23.0187 3768 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll

13:20:23.0203 3768 Schedule - ok

13:20:23.0250 3768 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys

13:20:23.0250 3768 Secdrv - ok

13:20:23.0281 3768 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll

13:20:23.0281 3768 seclogon - ok

13:20:23.0296 3768 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll

13:20:23.0312 3768 SENS - ok

13:20:23.0343 3768 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys

13:20:23.0343 3768 serenum - ok

13:20:23.0390 3768 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys

13:20:23.0390 3768 Serial - ok

13:20:23.0437 3768 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys

13:20:23.0437 3768 Sfloppy - ok

13:20:23.0500 3768 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll

13:20:23.0515 3768 SharedAccess - ok

13:20:23.0578 3768 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll

13:20:23.0593 3768 ShellHWDetection - ok

13:20:23.0609 3768 Simbad - ok

13:20:23.0671 3768 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys

13:20:23.0671 3768 SLIP - ok

13:20:23.0906 3768 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS

13:20:23.0906 3768 SONYPVU1 - ok

13:20:23.0921 3768 Sparrow - ok

13:20:23.0984 3768 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys

13:20:23.0984 3768 splitter - ok

13:20:24.0031 3768 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe

13:20:24.0031 3768 Spooler - ok

13:20:24.0078 3768 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys

13:20:24.0078 3768 sr - ok

13:20:24.0109 3768 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll

13:20:24.0125 3768 srservice - ok

13:20:24.0203 3768 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys

13:20:24.0203 3768 Srv - ok

13:20:24.0250 3768 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll

13:20:24.0265 3768 SSDPSRV - ok

13:20:24.0328 3768 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll

13:20:24.0343 3768 stisvc - ok

13:20:24.0375 3768 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys

13:20:24.0375 3768 streamip - ok

13:20:24.0390 3768 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys

13:20:24.0390 3768 swenum - ok

13:20:24.0453 3768 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys

13:20:24.0453 3768 swmidi - ok

13:20:24.0468 3768 SwPrv - ok

13:20:24.0484 3768 symc810 - ok

13:20:24.0500 3768 symc8xx - ok

13:20:24.0515 3768 sym_hi - ok

13:20:24.0531 3768 sym_u3 - ok

13:20:24.0562 3768 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys

13:20:24.0562 3768 sysaudio - ok

13:20:24.0609 3768 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe

13:20:24.0625 3768 SysmonLog - ok

13:20:24.0687 3768 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll

13:20:24.0703 3768 TapiSrv - ok

13:20:24.0765 3768 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys

13:20:24.0781 3768 Tcpip - ok

13:20:24.0828 3768 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys

13:20:24.0828 3768 TDPIPE - ok

13:20:24.0843 3768 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys

13:20:24.0859 3768 TDTCP - ok

13:20:24.0875 3768 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys

13:20:24.0875 3768 TermDD - ok

13:20:24.0906 3768 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll

13:20:24.0921 3768 TermService - ok

13:20:24.0984 3768 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll

13:20:24.0984 3768 Themes - ok

13:20:25.0046 3768 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe

13:20:25.0062 3768 TlntSvr - ok

13:20:25.0062 3768 TosIde - ok

13:20:25.0093 3768 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll

13:20:25.0109 3768 TrkWks - ok

13:20:25.0156 3768 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys

13:20:25.0156 3768 Udfs - ok

13:20:25.0171 3768 ultra - ok

13:20:25.0234 3768 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys

13:20:25.0250 3768 Update - ok

13:20:25.0312 3768 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll

13:20:25.0312 3768 upnphost - ok

13:20:25.0343 3768 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe

13:20:25.0359 3768 UPS - ok

13:20:25.0421 3768 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys

13:20:25.0421 3768 usbaudio - ok

13:20:25.0468 3768 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys

13:20:25.0484 3768 usbccgp - ok

13:20:25.0531 3768 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys

13:20:25.0531 3768 usbehci - ok

13:20:25.0578 3768 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys

13:20:25.0593 3768 usbhub - ok

13:20:25.0656 3768 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys

13:20:25.0656 3768 usbprint - ok

13:20:25.0703 3768 usbser (c0488cc01a1c686b08a3d360c7f50324) C:\WINDOWS\system32\DRIVERS\usbmdm.sys

13:20:25.0703 3768 usbser - ok

13:20:25.0734 3768 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS

13:20:25.0734 3768 USBSTOR - ok

13:20:25.0781 3768 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys

13:20:25.0781 3768 usbuhci - ok

13:20:25.0843 3768 usbvideo (63bbfca7f390f4c49ed4b96bfb1633e0) C:\WINDOWS\system32\Drivers\usbvideo.sys

13:20:25.0859 3768 usbvideo - ok

13:20:25.0906 3768 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys

13:20:25.0906 3768 VgaSave - ok

13:20:25.0921 3768 ViaIde - ok

13:20:25.0953 3768 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys

13:20:25.0953 3768 VolSnap - ok

13:20:25.0984 3768 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe

13:20:26.0000 3768 VSS - ok

13:20:26.0031 3768 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll

13:20:26.0046 3768 W32Time - ok

13:20:26.0078 3768 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys

13:20:26.0078 3768 Wanarp - ok

13:20:26.0171 3768 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys

13:20:26.0187 3768 Wdf01000 - ok

13:20:26.0203 3768 WDICA - ok

13:20:26.0250 3768 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys

13:20:26.0265 3768 wdmaud - ok

13:20:26.0312 3768 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll

13:20:26.0328 3768 WebClient - ok

13:20:26.0390 3768 winachsf (473ee64c368ce2eed110376c11960259) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys

13:20:26.0406 3768 winachsf - ok

13:20:26.0515 3768 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll

13:20:26.0515 3768 winmgmt - ok

13:20:26.0578 3768 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\mspmsnsv.dll

13:20:26.0578 3768 WmdmPmSN - ok

13:20:26.0687 3768 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll

13:20:26.0703 3768 Wmi - ok

13:20:26.0765 3768 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe

13:20:26.0765 3768 WmiApSrv - ok

13:20:26.0921 3768 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe

13:20:26.0937 3768 WMPNetworkSvc - ok

13:20:27.0000 3768 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys

13:20:27.0015 3768 WpdUsb - ok

13:20:27.0218 3768 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe

13:20:27.0234 3768 WPFFontCache_v0400 - ok

13:20:27.0281 3768 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll

13:20:27.0296 3768 wscsvc - ok

13:20:27.0343 3768 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS

13:20:27.0343 3768 WSTCODEC - ok

13:20:27.0390 3768 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll

13:20:27.0421 3768 wuauserv - ok

13:20:27.0468 3768 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys

13:20:27.0468 3768 WudfPf - ok

13:20:27.0484 3768 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys

13:20:27.0484 3768 WudfRd - ok

13:20:27.0515 3768 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll

13:20:27.0531 3768 WudfSvc - ok

13:20:27.0562 3768 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll

13:20:27.0578 3768 WZCSVC - ok

13:20:27.0593 3768 xcpip - ok

13:20:27.0656 3768 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll

13:20:27.0671 3768 xmlprov - ok

13:20:27.0687 3768 xpsec - ok

13:20:27.0718 3768 MBR (0x1B8) (f381baacfc1778337c007982b0c32d82) \Device\Harddisk0\DR0

13:20:27.0718 3768 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - infected

13:20:27.0718 3768 \Device\Harddisk0\DR0 - detected Rootkit.Boot.Sinowal.b (0)

13:20:27.0734 3768 Boot (0x1200) (a5cdc9ac19f7f45d5dc22b7106a54dd6) \Device\Harddisk0\DR0\Partition0

13:20:27.0734 3768 \Device\Harddisk0\DR0\Partition0 - ok

13:20:27.0765 3768 Boot (0x1200) (59327cf1d180b4265be1095b0d5f10d1) \Device\Harddisk0\DR0\Partition1

13:20:27.0781 3768 \Device\Harddisk0\DR0\Partition1 - ok

13:20:27.0781 3768 ============================================================

13:20:27.0781 3768 Scan finished

13:20:27.0781 3768 ============================================================

13:20:27.0812 2612 Detected object count: 1

13:20:27.0812 2612 Actual detected object count: 1

13:22:40.0750 2612 \Device\Harddisk0\DR0\# - copied to quarantine

13:22:40.0750 2612 \Device\Harddisk0\DR0 - copied to quarantine

13:22:40.0750 2612 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - will be cured on reboot

13:22:40.0843 2612 \Device\Harddisk0\DR0 - ok

13:22:40.0843 2612 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - User select action: Cure

Link naar reactie
Delen op andere sites

Ik heb de discussie even heropend want we zijn er nog niet helemaal.

Download CCleaner. (Als je het nog niet hebt)

Let op bij de installatie.

Haal beide vinkjes weg bij de vraag over de Chrome browser.

Installeer het en start CCleaner op.

Klik in de linkse kolom op “Cleaner”. Klik achtereenvolgens op ‘Analyseren’ en 'Schoonmaken'. Bevestigen met JA of OK

Klik vervolgens in de linkse kolom op “Register” en klik op ‘Scan naar problemen”. Als er fouten gevonden worden klik je op ”Herstel geselecteerde problemen” en ”OK”. Dan krijg je de vraag om een back-up te maken. Klik op “JA”. Kies dan “Herstel alle geselecteerde fouten”.

Soms is 1 analyse niet voldoende. Deze procedure mag je herhalen tot de analyse geen fouten meer aangeeft.

Sluit hierna CCleaner terug af.

Wil je dit uitgebreid in beeld bekijken, lees dan deze handleiding.

Het is aangewezen om de bestaande herstelpunten te verwijderen (daar kunnen besmette herstelpunten tussen zitten die je zou kunnen terugzetten) door systeemherstel tijdelijk uit te schakelen.

Doe dit via Configuratiescherm -> Prestaties en onderhoud -> Systeem -> tab Systeemherstel

Vink het vakje aan bij systeemherstel en klik OK.

Herstart de pc.

Ga opnieuw naar Configuratiescherm -> Prestaties en onderhoud -> Systeem -> tab Systeemherstel

Vink het vakje uit bij systeemherstel en klik OK.

Dan maak je een nieuw herstelpunt.

Ga naar Start - help en ondersteuning, bij kies een taak klik je op Wijzigingen ongedaan maken met systeemherstel.

Selecteer herstelpunt aanmaken en klik op volgende.

Geef een beschrijving voor het herstelpunt en klik op aanmaken.

Je krijgt dan de melding dat het herstelpunt is aangemaakt en dan kan je alle vensters sluiten.

Als dit is uitgevoerd, mag je opnieuw als opgelost markeren.

Nog veel computerplezier :ciao:

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.