Ga naar inhoud

Downloaden niet meer mogelijk via browser


Aanbevolen berichten

Beste,

Ik ondervind sinds vorige week een probleem bij het downloaden van om het even welk bestand in om het even welke browser. In IE wordt het bestand gedownload, daarna gelezen door de veiligheidsscanner en wordt het beschouwd als een virus en verwijdert. In Mozilla wordt het gedownload, maar als je dan het bestand wil openen, is het nergens terug te vinden.

Op dit forum heb ik reeds een aantal threads gelezen, met een gelijkaardig probleem, maar deze hebben me helaas geen oplossing geboden.

Ik heb Hijack This en Malwarebytes reeds geïnstalleerd.

Hiervan vind je de logfile hieronder terug.

Iemand suggesties wat ik nog kan doen?

Alvast bedankt!

- - - Updated - - -

Logfile Hijack File:

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:51:33, on 7/05/2013

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v10.0 (10.00.9200.16537)

Boot mode: Normal

Running processes:

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\Launch Manager\HotkeyApp.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Program Files\Launch Manager\OSD.exe

C:\Windows\tsnp2uvc.exe

C:\Program Files\Launch Manager\WButton.exe

C:\Program Files\IDT\WDM\sttray.exe

C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Windows\WindowsMobile\wmdc.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Mozilla Firefox\plugin-container.exe

C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe

C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

C:\Windows\system32\NOTEPAD.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"

O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe

O4 - HKLM\..\Run: [LMgrVolOSD] "C:\Program Files\Launch Manager\OSD.exe"

O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\HomeCinema\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\HomeCinema\PowerDVD8\Language\Language.exe"

O4 - HKLM\..\Run: [tsnp2uvc] C:\Windows\tsnp2uvc.exe

O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files\HomeCinema\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0"

O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe"

O4 - HKLM\..\Run: [sysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe

O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

O4 - HKCU\..\Run: [Miro] C:\Program Files\Participatory Culture Foundation\Miro\Miro.exe

O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files\PC Speed Up\PCSpeedUp.lnk

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\dany\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing)

O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing)

O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU)

O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU)

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O20 - AppInit_DLLs: aMOmpWaBT.dll

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe

O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe

O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Rezip - Unknown owner - C:\Windows\SYSTEM32\Rezip.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe

O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe

--

End of file - 11869 bytes

- - - Updated - - -

Logfile Malwarebytes:

Malwarebytes Anti-Malware (PRO) 1.75.0.1300

Malwarebytes : Free anti-malware download

Databaseversie: v2013.05.05.04

Windows 7 Service Pack 1 x86 NTFS

Internet Explorer 10.0.9200.16540

dany :: PC_VAN_DANY [administrator]

Bescherming: Ingeschakeld

5/05/2013 14:22:52

mbam-log-2013-05-05 (14-22-52).txt

Scan type: Volledige scan (C:\|D:\|E:\|F:\|)

Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

Uitgeschakelde scan opties: P2P

Objecten gescand: 392930

Verstreken tijd: 1 uur/uren, 33 minuut/minuten, 43 seconde(n)

Geheugenprocessen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registersleutels gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registerwaarden gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registerdata gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Mappen gedetecteerd: 1

C:\Program Files\BcoolApp (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd.

Bestanden gedetecteerd: 5

C:\Users\dany\AppData\Local\Temp\hpmfood (Trojan.Agent.irstb) -> Succesvol in quarantaine geplaatst en verwijderd.

C:\Users\dany\Downloads\installer_mixvibes_pro_7_218_Nederlands_Dutch.exe (PUP.SmsPay.PGen) -> Succesvol in quarantaine geplaatst en verwijderd.

C:\Program Files\BcoolApp\BcoolAppInstaller.log (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd.

C:\Users\dany\Local Settings\Application Data\BcoolApp\Chrome\BcoolApp.crx (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd.

C:\Users\dany\AppData\Local\BcoolApp\Chrome\BcoolApp.crx (PUP.CrossRider.BCA) -> Succesvol in quarantaine geplaatst en verwijderd.

(einde)

aangepast door Davidvan
Link naar reactie
Delen op andere sites

Start Hijackthis op. Selecteer “Scan”. Selecteer alleen de items die hieronder zijn genoemd:

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\dany\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.ht m

O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing)

O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing)

O9 - Extra button: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU)

O9 - Extra 'Tools' menuitem: eBay.be - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay België ? Koop en verkoop. Nieuw en tweedehands. Wat je ook wil kopen, altijd eerst even eBay checken! (file missing) (HKCU)

O20 - AppInit_DLLs: aMOmpWaBT.dll

Klik op 'Fix checked' om de items te verwijderen.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\\Program Files\\Trend Micro\\HiJackThis of C:\\Program Files (x86)\\Trend Micro\\HiJackThis.

Download AdwCleaner by Xplode naar je bureaublad.

Sluit alle openstaande vensters.

  • Vista en Windows 7 gebruikers: Rechtsklik op AdwCleaner en selecteer als Administrator uitvoeren...
  • Voor XP: Gewoon dubbelklikken op AdwCleaner.
  • Klik vervolgens op Verwijderen.
  • Klik bij AdwCleaner – Informatie op OK
  • Klik bij AdwCleaner – Herstarten Noodzakelijk op OK

Dat tijdens de actie de snelkoppelingen verdwijnen, is normaal. Nadat de PC opnieuw is opgestart, opent een logfile. Post de inhoud van dit log in je volgende bericht, samen met een nieuw logje van HijackThis.

aangepast door kape
Link naar reactie
Delen op andere sites

Hallo,

alvast bedankt voor je reactie. Ik heb de system scan gedaan met adwcleaner en een nieuwe Hijack This logfile, nadat ik de zaken die je had aangeduid heb verwijdert. Ondertussen heb ik nog eens geprobeerd of het probleem is opgelost, maar helaas.

Dit is de logfile van hijack this:

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 9:51:10, on 8/05/2013

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v10.0 (10.00.9200.16537)

Boot mode: Normal

Running processes:

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\Launch Manager\HotkeyApp.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Program Files\Launch Manager\OSD.exe

C:\Windows\tsnp2uvc.exe

C:\Program Files\Launch Manager\WButton.exe

C:\Program Files\IDT\WDM\sttray.exe

C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Windows\WindowsMobile\wmdc.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

C:\Windows\system32\NOTEPAD.EXE

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O1 - Hosts: ::1 localhost

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"

O4 - HKLM\..\Run: [iAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe

O4 - HKLM\..\Run: [LMgrVolOSD] "C:\Program Files\Launch Manager\OSD.exe"

O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files\HomeCinema\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [PDVD8LanguageShortcut] "C:\Program Files\HomeCinema\PowerDVD8\Language\Language.exe"

O4 - HKLM\..\Run: [tsnp2uvc] C:\Windows\tsnp2uvc.exe

O4 - HKLM\..\Run: [uCam_Menu] "C:\Program Files\HomeCinema\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\HomeCinema\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0"

O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe"

O4 - HKLM\..\Run: [sysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe

O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

O4 - HKCU\..\Run: [Miro] C:\Program Files\Participatory Culture Foundation\Miro\Miro.exe

O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files\PC Speed Up\PCSpeedUp.lnk

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - Startup: OneNote 2007 Schermopname en Snel starten.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe

O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe

O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

O23 - Service: Rezip - Unknown owner - C:\Windows\SYSTEM32\Rezip.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe

O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe

--

End of file - 10834 bytes

en dit is de nieuwe logfile van Adwcleaner:

# AdwCleaner v2.300 - Verslag gemaakt op 08/05/2013 om 09:43:53

# Geactualiseerd op 28/04/2013 door Xplode

# Besturingssysteem : Windows 7 Home Premium Service Pack 1 (32 bits)

# Gebruiker : dany - PC_VAN_DANY

# Opstarten Modus : Normale modus

# Gelanceerd vanaf : C:\Users\dany\Desktop\adwcleaner.exe

# Optie [Verwijderen]

***** [Diensten] *****

***** [Files / Mappen] *****

***** [Register] *****

***** [browsers] *****

-\\ Internet Explorer v10.0.9200.16537

[OK] Het register bevat geen enkele ongeoorloofde invoer.

-\\ Mozilla Firefox v20.0.1 (nl)

File : C:\Users\dany\AppData\Roaming\Mozilla\Firefox\Profiles\ob9dla5a.default\prefs.js

[OK] De file bevat geen enkele ongeoorloofde invoer.

File : C:\Users\Sabine\AppData\Roaming\Mozilla\Firefox\Profiles\otr8ela1.default\prefs.js

[OK] De file bevat geen enkele ongeoorloofde invoer.

-\\ Google Chrome v26.0.1410.64

File : C:\Users\dany\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] De file bevat geen enkele ongeoorloofde invoer.

*************************

AdwCleaner[R1].txt - [49910 octets] - [05/05/2013 16:32:51]

AdwCleaner[s1].txt - [50874 octets] - [05/05/2013 16:33:10]

AdwCleaner[s2].txt - [1210 octets] - [08/05/2013 09:43:53]

########## EOF - C:\AdwCleaner[s2].txt - [1270 octets] ##########

Alvast bedankt voor de hulp!

Link naar reactie
Delen op andere sites

Download de Emsisoft Emergency Kit naar het bureaublad en pak het ZIP bestand uit.

  • Open de map "EmsisoftEmergencyKit" en dubbelklik op "Start.exe"
  • Klik nu op "Emergency Kit Scanner" u krijg nu een melding dat het is aanbevolen om eerst te updaten sta dit toe door te klikken op "Ja"
    4f8d1a3bd3fbd-EmsisoftEK11.jpg
  • Als de update gereed is en de melding "Update process is succesvol afgerond" verschijnt klikt u op "menu" en dan op "Scan PC"
  • Selecteer de optie "Diep" als deze niet standaard al zo is ingesteld.
  • Klik Nu op de knop "Scan" en doe verder niets op de computer tijdens het scannen, deze scan kan een geruime tijd in beslag nemen dus wacht dit geduldig af.
  • Het venster met de waarschuwing over een verhoogd risico kunt u sluiten als de scan gereed is.
  • Zorg ervoor dat alle gevonden items zijn aangevinkt en druk dan op de knop "verwijder geselecteerde" u zal nu de volgende melding krijgen maar klik hier op "Ja"
    4f8d1a4d61ffa-EmsisoftEK2.jpg
  • Als het verwijderen gereed is klikt u op de knop "View report" en selecteert u het tekstbestand van deze scan met de naam zoals: a2scan_110730-111615.txt
  • Plaats de inhoud van dit LOG bestand straks in uw volgende bericht.
  • Herstart nu de computer.

Link naar reactie
Delen op andere sites

Goeie avond,

na de scan te laten lopen en 39 gevonden objecten heb ik alles willen verwijderen, maar hij kon er slechts twee van verwijderen. De andere (allemaal dezelfde trojan, maar in verschillende bestanden) konden niet worden verwijderd omdat dit blijkbaar Rootkits zijn en niet automatisch worden verwijdert. Meer heb ik er momenteel niet mee gedaan.

Ik heb nog eens getest om iets te downloaden, maar helaas zonder resultaat.

Heeft iemand nog een idee? Alvast bedankt.

Hieronder vindt u de logfile en de message ivm de rootkit bestanden:

Emsisoft Emergency Kit - Versie 3.0

Laatste Update: 8/05/2013 10:53:41

Scaninstellingen:

Scantype: Diepe scan

Objecten: Rootkits, Geheugen, Sporen, C:\, D:\

Detecteer riskware: Uit

Scan archieven: Aan

ADS Scan: Aan

Bestandsextensiefilter: Uit

Geavanceerde cache: Aan

Directe schijftoegang: Uit

Scan gestart: 8/05/2013 19:16:57

C:\Windows\System32\Drivers\BfriFPEY.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\eIrFvqK.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\ErfHluiDe.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\FDXhuQ.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\FgSOQYR.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\JGdnpnh.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\KebEv.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\KXrujeJeq.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\QqBqWCRm.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\QqREa.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\saIHYgS.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\SFgPF.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\TKaYelq.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\YBgvMq.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Drivers\YeIgyj.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Mailvue.class Ontdekt: Java.Trojan.Exploit.Bytverify.J (B)

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Skypeqd.class Ontdekt: Java.Trojan.Exploit.Bytverify.M (B)

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Twitters.class Ontdekt: Java.Trojan.Exploit.Bytverify.I (B)

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\3c1841b5-6d4d1e71 Ontdekt: Java.Exploit.CVE-2012-0507.L (B)

C:\Windows\qjrCvwRrF.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\qkDqf.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\BWGvL.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\dCXDeOskH.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\geuAveqTw.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\gNBFOd.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\goucjrsRK.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\JjDxmwFIq.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\kVlff.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\Lnaya.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\mlHRlJNC.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\ORThWEc.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\ptKKOi.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\RgpHpSwJg.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\RhxtWfje.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\rsRsJus.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\System32\SOKUqVpN.dll Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\vKBPLh.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\wCDiO.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

C:\Windows\YhthceHvD.exe Ontdekt: Win32.FakeSmoke.Patched.A (B)

Gescand 475815

Gevonden 39

Scan geëindigd: 8/05/2013 20:37:07

Scantijd: 1:20:10

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\3c1841b5-6d4d1e71 Verwijderd Java.Exploit.CVE-2012-0507.L (B)

C:\Users\dany\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\57832b40-575529a8 -> quote/Twitters.class Verwijderd Java.Trojan.Exploit.Bytverify.I (B)

Verwijderd 2

rootkit message:

\Windows\System32\Drivers\BfriFPEY.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\eIrFvqK.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\ErfHluiDe.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\FDXhuQ.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\FgSOQYR.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\JGdnpnh.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\KebEv.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\KXrujeJeq.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\QqBqWCRm.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\QqREa.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\saIHYgS.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\SFgPF.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\TKaYelq.dll - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\YBgvMq.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

\Windows\System32\Drivers\YeIgyj.exe - Rootkits worden niet automatisch verwijderd. Raadpleeg aub de experts op het Emsisoft forum voor hulp bij het handmatig verwijderen van deze malware: Emsisoft Support Forums

Link naar reactie
Delen op andere sites

Download TDSSKiller en plaats het op je bureaublad.

Pak de bestanden in tdsskiller.zip uit.

Open de map tdsskiller en dubbelklik op TDSSKiller.exe om de tool te starten.

Windows 7 en Windows Vista gebruikers:

Rechtsklik op TDSSKiller.exe -> Uitvoeren als Administrator om de tool te starten.

Als TDSSKiller bericht geeft van een beschikbare update, dan voer je deze eerst uit.

Klik op de knop "Start Scan" en volg de instructies.

Wanneer de scan klaar is klik je op de knop "Report".

Er opent een kladblokbestand. Post de inhoud van dit bestand.

Herstart de pc als TDSSKiller die optie geeft. (Reboot now)

Wanneer er een herstart nodig was, vind je de logfile in C:\\TDSSKiller.[Version]_[Date]_[Time]_log.txt

Link naar reactie
Delen op andere sites

hallo,

De TDSS scan is net uitgevoerd, maar daar heeft hij geen objecten gedetecteerd.

Dit is de logfile na de scan:

08:42:48.0891 3640 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

08:42:49.0188 3640 ============================================================

08:42:49.0188 3640 Current date / time: 2013/05/09 08:42:49.0188

08:42:49.0188 3640 SystemInfo:

08:42:49.0188 3640

08:42:49.0188 3640 OS Version: 6.1.7601 ServicePack: 1.0

08:42:49.0188 3640 Product type: Workstation

08:42:49.0188 3640 ComputerName: PC_VAN_DANY

08:42:49.0188 3640 UserName: dany

08:42:49.0188 3640 Windows directory: C:\Windows

08:42:49.0188 3640 System windows directory: C:\Windows

08:42:49.0188 3640 Processor architecture: Intel x86

08:42:49.0188 3640 Number of processors: 2

08:42:49.0188 3640 Page size: 0x1000

08:42:49.0188 3640 Boot type: Normal boot

08:42:49.0188 3640 ============================================================

08:42:50.0046 3640 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050

08:42:50.0046 3640 Drive \Device\Harddisk1\DR2 - Size: 0xEF000000 (3.73 Gb), SectorSize: 0x200, Cylinders: 0x1E7, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'

08:42:50.0046 3640 ============================================================

08:42:50.0046 3640 \Device\Harddisk0\DR0:

08:42:50.0046 3640 MBR partitions:

08:42:50.0046 3640 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3460FD2E

08:42:50.0046 3640 \Device\Harddisk0\DR0\Partition2: MBR, Type 0xC, StartLBA 0x3460FD6D, BlocksNum 0x5D74ED4

08:42:50.0046 3640 \Device\Harddisk1\DR2:

08:42:50.0046 3640 MBR partitions:

08:42:50.0046 3640 \Device\Harddisk1\DR2\Partition1: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0x777FE0

08:42:50.0046 3640 ============================================================

08:42:50.0077 3640 C: <-> \Device\Harddisk0\DR0\Partition1

08:42:50.0108 3640 D: <-> \Device\Harddisk0\DR0\Partition2

08:42:50.0108 3640 ============================================================

08:42:50.0108 3640 Initialize success

08:42:50.0108 3640 ============================================================

08:42:59.0062 5012 ============================================================

08:42:59.0062 5012 Scan started

08:42:59.0062 5012 Mode: Manual;

08:42:59.0062 5012 ============================================================

08:42:59.0421 5012 ================ Scan system memory ========================

08:42:59.0421 5012 System memory - ok

08:42:59.0421 5012 ================ Scan services =============================

08:42:59.0624 5012 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys

08:42:59.0624 5012 1394ohci - ok

08:42:59.0655 5012 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys

08:42:59.0655 5012 ACPI - ok

08:42:59.0702 5012 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

08:42:59.0702 5012 AcpiPmi - ok

08:42:59.0796 5012 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

08:42:59.0796 5012 AdobeFlashPlayerUpdateSvc - ok

08:42:59.0874 5012 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

08:42:59.0874 5012 adp94xx - ok

08:42:59.0889 5012 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys

08:42:59.0889 5012 adpahci - ok

08:42:59.0920 5012 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

08:42:59.0920 5012 adpu320 - ok

08:42:59.0967 5012 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

08:42:59.0967 5012 AeLookupSvc - ok

08:43:00.0014 5012 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys

08:43:00.0030 5012 AFD - ok

08:43:00.0045 5012 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys

08:43:00.0045 5012 agp440 - ok

08:43:00.0108 5012 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys

08:43:00.0108 5012 aic78xx - ok

08:43:00.0139 5012 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe

08:43:00.0139 5012 ALG - ok

08:43:00.0186 5012 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys

08:43:00.0201 5012 aliide - ok

08:43:00.0217 5012 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys

08:43:00.0217 5012 amdagp - ok

08:43:00.0232 5012 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys

08:43:00.0232 5012 amdide - ok

08:43:00.0264 5012 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

08:43:00.0264 5012 AmdK8 - ok

08:43:00.0279 5012 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

08:43:00.0279 5012 AmdPPM - ok

08:43:00.0326 5012 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys

08:43:00.0326 5012 amdsata - ok

08:43:00.0342 5012 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

08:43:00.0357 5012 amdsbs - ok

08:43:00.0373 5012 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys

08:43:00.0373 5012 amdxata - ok

08:43:00.0388 5012 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys

08:43:00.0388 5012 AppID - ok

08:43:00.0420 5012 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll

08:43:00.0420 5012 AppIDSvc - ok

08:43:00.0466 5012 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll

08:43:00.0466 5012 Appinfo - ok

08:43:00.0607 5012 [ 4B5AE15E5C73EB4DC8DBEC2788230D41 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

08:43:00.0607 5012 Apple Mobile Device - ok

08:43:00.0654 5012 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys

08:43:00.0654 5012 arc - ok

08:43:00.0669 5012 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys

08:43:00.0669 5012 arcsas - ok

08:43:00.0685 5012 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

08:43:00.0685 5012 AsyncMac - ok

08:43:00.0732 5012 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys

08:43:00.0732 5012 atapi - ok

08:43:00.0778 5012 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

08:43:00.0778 5012 AudioEndpointBuilder - ok

08:43:00.0810 5012 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll

08:43:00.0810 5012 Audiosrv - ok

08:43:01.0044 5012 [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe

08:43:01.0200 5012 AVGIDSAgent - ok

08:43:01.0262 5012 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdriverx.sys

08:43:01.0262 5012 AVGIDSDriver - ok

08:43:01.0278 5012 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\Windows\system32\DRIVERS\avgidshx.sys

08:43:01.0278 5012 AVGIDSHX - ok

08:43:01.0309 5012 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\Windows\system32\DRIVERS\avgidsshimx.sys

08:43:01.0309 5012 AVGIDSShim - ok

08:43:01.0324 5012 [ D53D35031365A0ECCB1DC1BC1B15B18E ] AvgLdx86 C:\Windows\system32\DRIVERS\avgldx86.sys

08:43:01.0324 5012 AvgLdx86 - ok

08:43:01.0387 5012 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\Windows\system32\DRIVERS\avglogx.sys

08:43:01.0387 5012 Avglogx - ok

08:43:01.0418 5012 [ AF7AA9BA434CD28833A66E90993E8DFD ] AvgMfx86 C:\Windows\system32\DRIVERS\avgmfx86.sys

08:43:01.0418 5012 AvgMfx86 - ok

08:43:01.0449 5012 [ BA73B38E9033FC6018DB736B635706AE ] AvgTdiX C:\Windows\system32\DRIVERS\avgtdix.sys

08:43:01.0449 5012 AvgTdiX - ok

08:43:01.0480 5012 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe

08:43:01.0496 5012 avgwd - ok

08:43:01.0527 5012 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll

08:43:01.0543 5012 AxInstSV - ok

08:43:01.0590 5012 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys

08:43:01.0590 5012 b06bdrv - ok

08:43:01.0636 5012 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys

08:43:01.0636 5012 b57nd60x - ok

08:43:01.0699 5012 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll

08:43:01.0699 5012 BDESVC - ok

08:43:01.0714 5012 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys

08:43:01.0714 5012 Beep - ok

08:43:01.0761 5012 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll

08:43:01.0761 5012 BFE - ok

08:43:01.0792 5012 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll

08:43:01.0808 5012 BITS - ok

08:43:01.0824 5012 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

08:43:01.0824 5012 blbdrive - ok

08:43:01.0886 5012 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

08:43:01.0886 5012 Bonjour Service - ok

08:43:01.0917 5012 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys

08:43:01.0917 5012 bowser - ok

08:43:01.0948 5012 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

08:43:01.0948 5012 BrFiltLo - ok

08:43:01.0964 5012 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

08:43:01.0964 5012 BrFiltUp - ok

08:43:02.0011 5012 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll

08:43:02.0011 5012 Browser - ok

08:43:02.0026 5012 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys

08:43:02.0026 5012 Brserid - ok

08:43:02.0058 5012 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

08:43:02.0058 5012 BrSerWdm - ok

08:43:02.0073 5012 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

08:43:02.0073 5012 BrUsbMdm - ok

08:43:02.0089 5012 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

08:43:02.0089 5012 BrUsbSer - ok

08:43:02.0120 5012 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

08:43:02.0120 5012 BTHMODEM - ok

08:43:02.0167 5012 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll

08:43:02.0167 5012 bthserv - ok

08:43:02.0182 5012 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

08:43:02.0182 5012 cdfs - ok

08:43:02.0245 5012 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\drivers\cdrom.sys

08:43:02.0245 5012 cdrom - ok

08:43:02.0276 5012 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll

08:43:02.0292 5012 CertPropSvc - ok

08:43:02.0323 5012 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys

08:43:02.0323 5012 circlass - ok

08:43:02.0354 5012 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys

08:43:02.0354 5012 CLFS - ok

08:43:02.0479 5012 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

08:43:02.0479 5012 clr_optimization_v2.0.50727_32 - ok

08:43:02.0557 5012 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

08:43:02.0557 5012 clr_optimization_v4.0.30319_32 - ok

08:43:02.0557 5012 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

08:43:02.0572 5012 CmBatt - ok

08:43:02.0604 5012 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys

08:43:02.0604 5012 cmdide - ok

08:43:02.0650 5012 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys

08:43:02.0650 5012 CNG - ok

08:43:02.0713 5012 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

08:43:02.0713 5012 Compbatt - ok

08:43:02.0775 5012 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys

08:43:02.0775 5012 CompositeBus - ok

08:43:02.0791 5012 COMSysApp - ok

08:43:02.0806 5012 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

08:43:02.0806 5012 crcdisk - ok

08:43:02.0853 5012 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll

08:43:02.0869 5012 CryptSvc - ok

08:43:02.0900 5012 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll

08:43:02.0900 5012 DcomLaunch - ok

08:43:02.0962 5012 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll

08:43:02.0962 5012 defragsvc - ok

08:43:02.0994 5012 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys

08:43:02.0994 5012 DfsC - ok

08:43:03.0025 5012 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll

08:43:03.0040 5012 Dhcp - ok

08:43:03.0072 5012 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys

08:43:03.0072 5012 discache - ok

08:43:03.0118 5012 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys

08:43:03.0118 5012 Disk - ok

08:43:03.0150 5012 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll

08:43:03.0150 5012 Dnscache - ok

08:43:03.0181 5012 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll

08:43:03.0196 5012 dot3svc - ok

08:43:03.0212 5012 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll

08:43:03.0228 5012 DPS - ok

08:43:03.0259 5012 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

08:43:03.0259 5012 drmkaud - ok

08:43:03.0290 5012 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

08:43:03.0306 5012 DXGKrnl - ok

08:43:03.0352 5012 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll

08:43:03.0352 5012 EapHost - ok

08:43:03.0462 5012 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys

08:43:03.0493 5012 ebdrv - ok

08:43:03.0524 5012 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe

08:43:03.0524 5012 EFS - ok

08:43:03.0571 5012 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe

08:43:03.0586 5012 ehRecvr - ok

08:43:03.0633 5012 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe

08:43:03.0633 5012 ehSched - ok

08:43:03.0696 5012 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys

08:43:03.0696 5012 elxstor - ok

08:43:03.0727 5012 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys

08:43:03.0727 5012 ErrDev - ok

08:43:03.0789 5012 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll

08:43:03.0789 5012 EventSystem - ok

08:43:03.0820 5012 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys

08:43:03.0820 5012 exfat - ok

08:43:03.0867 5012 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys

08:43:03.0867 5012 fastfat - ok

08:43:03.0898 5012 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe

08:43:03.0914 5012 Fax - ok

08:43:03.0930 5012 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys

08:43:03.0930 5012 fdc - ok

08:43:03.0961 5012 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll

08:43:03.0976 5012 fdPHost - ok

08:43:03.0976 5012 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll

08:43:03.0976 5012 FDResPub - ok

08:43:04.0008 5012 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

08:43:04.0008 5012 FileInfo - ok

08:43:04.0023 5012 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys

08:43:04.0023 5012 Filetrace - ok

08:43:04.0023 5012 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

08:43:04.0023 5012 flpydisk - ok

08:43:04.0054 5012 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

08:43:04.0054 5012 FltMgr - ok

08:43:04.0117 5012 [ E12C4928B32ACE04610259647F072635 ] FontCache C:\Windows\system32\FntCache.dll

08:43:04.0132 5012 FontCache - ok

08:43:04.0195 5012 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

08:43:04.0195 5012 FontCache3.0.0.0 - ok

08:43:04.0226 5012 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys

08:43:04.0226 5012 FsDepends - ok

08:43:04.0273 5012 [ B0082808A6856A252F7CDD939892CE50 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys

08:43:04.0273 5012 fssfltr - ok

08:43:04.0382 5012 [ 28DDEEEC44E988657B732CF404D504CB ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

08:43:04.0398 5012 fsssvc - ok

08:43:04.0429 5012 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

08:43:04.0429 5012 Fs_Rec - ok

08:43:04.0476 5012 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys

08:43:04.0476 5012 fvevol - ok

08:43:04.0507 5012 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

08:43:04.0507 5012 gagp30kx - ok

08:43:04.0554 5012 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll

08:43:04.0554 5012 gpsvc - ok

08:43:04.0647 5012 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe

08:43:04.0647 5012 gupdate - ok

08:43:04.0663 5012 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe

08:43:04.0663 5012 gupdatem - ok

08:43:04.0741 5012 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

08:43:04.0741 5012 gusvc - ok

08:43:04.0772 5012 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

08:43:04.0772 5012 hcw85cir - ok

08:43:04.0803 5012 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys

08:43:04.0819 5012 HDAudBus - ok

08:43:04.0819 5012 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

08:43:04.0819 5012 HidBatt - ok

08:43:04.0850 5012 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys

08:43:04.0850 5012 HidBth - ok

08:43:04.0881 5012 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys

08:43:04.0881 5012 HidIr - ok

08:43:04.0912 5012 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll

08:43:04.0912 5012 hidserv - ok

08:43:04.0959 5012 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\drivers\hidusb.sys

08:43:04.0959 5012 HidUsb - ok

08:43:04.0990 5012 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll

08:43:04.0990 5012 hkmsvc - ok

08:43:05.0022 5012 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll

08:43:05.0022 5012 HomeGroupListener - ok

08:43:05.0037 5012 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll

08:43:05.0053 5012 HomeGroupProvider - ok

08:43:05.0084 5012 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

08:43:05.0100 5012 HpSAMD - ok

08:43:05.0131 5012 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys

08:43:05.0146 5012 HTTP - ok

08:43:05.0162 5012 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

08:43:05.0162 5012 hwpolicy - ok

08:43:05.0193 5012 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys

08:43:05.0193 5012 i8042prt - ok

08:43:05.0271 5012 [ 52E8A3CC8269ADB27D25182284C5E650 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe

08:43:05.0287 5012 IAANTMON - ok

08:43:05.0334 5012 [ 71ECC07BC7C5E24C3DD01D8A29A24054 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys

08:43:05.0334 5012 iaStor - ok

08:43:05.0365 5012 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys

08:43:05.0380 5012 iaStorV - ok

08:43:05.0458 5012 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

08:43:05.0490 5012 idsvc - ok

08:43:05.0536 5012 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys

08:43:05.0536 5012 iirsp - ok

08:43:05.0583 5012 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll

08:43:05.0599 5012 IKEEXT - ok

08:43:05.0630 5012 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys

08:43:05.0630 5012 intelide - ok

08:43:05.0661 5012 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys

08:43:05.0661 5012 intelppm - ok

08:43:05.0692 5012 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll

08:43:05.0692 5012 IPBusEnum - ok

08:43:05.0708 5012 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

08:43:05.0708 5012 IpFilterDriver - ok

08:43:05.0755 5012 [ 58F67245D041FBE7AF88F4EAF79DF0FA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

08:43:05.0770 5012 iphlpsvc - ok

08:43:05.0802 5012 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

08:43:05.0802 5012 IPMIDRV - ok

08:43:05.0848 5012 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys

08:43:05.0848 5012 IPNAT - ok

08:43:05.0880 5012 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys

08:43:05.0880 5012 IRENUM - ok

08:43:05.0911 5012 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys

08:43:05.0911 5012 isapnp - ok

08:43:05.0926 5012 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

08:43:05.0942 5012 iScsiPrt - ok

08:43:05.0973 5012 [ 9EFE54794B3A94E93DA50703692E011E ] JMCR C:\Windows\system32\DRIVERS\jmcr.sys

08:43:05.0973 5012 JMCR - ok

08:43:06.0004 5012 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys

08:43:06.0020 5012 kbdclass - ok

08:43:06.0036 5012 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys

08:43:06.0036 5012 kbdhid - ok

08:43:06.0051 5012 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe

08:43:06.0067 5012 KeyIso - ok

08:43:06.0098 5012 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

08:43:06.0098 5012 KSecDD - ok

08:43:06.0129 5012 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

08:43:06.0129 5012 KSecPkg - ok

08:43:06.0192 5012 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll

08:43:06.0192 5012 KtmRm - ok

08:43:06.0238 5012 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll

08:43:06.0238 5012 LanmanServer - ok

08:43:06.0285 5012 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

08:43:06.0285 5012 LanmanWorkstation - ok

08:43:06.0348 5012 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

08:43:06.0348 5012 lltdio - ok

08:43:06.0379 5012 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll

08:43:06.0394 5012 lltdsvc - ok

08:43:06.0426 5012 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll

08:43:06.0426 5012 lmhosts - ok

08:43:06.0457 5012 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

08:43:06.0457 5012 LSI_FC - ok

08:43:06.0488 5012 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

08:43:06.0504 5012 LSI_SAS - ok

08:43:06.0519 5012 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

08:43:06.0519 5012 LSI_SAS2 - ok

08:43:06.0535 5012 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

08:43:06.0535 5012 LSI_SCSI - ok

08:43:06.0566 5012 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys

08:43:06.0566 5012 luafv - ok

08:43:06.0597 5012 lxbk_device - ok

08:43:06.0628 5012 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys

08:43:06.0628 5012 MBAMProtector - ok

08:43:06.0691 5012 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

08:43:06.0691 5012 MBAMScheduler - ok

08:43:06.0722 5012 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

08:43:06.0738 5012 MBAMService - ok

08:43:06.0784 5012 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

08:43:06.0784 5012 Mcx2Svc - ok

08:43:06.0816 5012 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys

08:43:06.0816 5012 megasas - ok

08:43:06.0847 5012 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

08:43:06.0862 5012 MegaSR - ok

08:43:06.0894 5012 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll

08:43:06.0894 5012 MMCSS - ok

08:43:06.0909 5012 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys

08:43:06.0925 5012 Modem - ok

08:43:06.0940 5012 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys

08:43:06.0940 5012 monitor - ok

08:43:06.0972 5012 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys

08:43:06.0972 5012 mouclass - ok

08:43:06.0987 5012 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys

08:43:06.0987 5012 mouhid - ok

08:43:07.0003 5012 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys

08:43:07.0003 5012 mountmgr - ok

08:43:07.0050 5012 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

08:43:07.0065 5012 MozillaMaintenance - ok

08:43:07.0096 5012 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys

08:43:07.0096 5012 mpio - ok

08:43:07.0112 5012 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

08:43:07.0112 5012 mpsdrv - ok

08:43:07.0159 5012 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll

08:43:07.0174 5012 MpsSvc - ok

08:43:07.0206 5012 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

08:43:07.0206 5012 MRxDAV - ok

08:43:07.0252 5012 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

08:43:07.0252 5012 mrxsmb - ok

08:43:07.0284 5012 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

08:43:07.0299 5012 mrxsmb10 - ok

08:43:07.0315 5012 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

08:43:07.0315 5012 mrxsmb20 - ok

08:43:07.0346 5012 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys

08:43:07.0346 5012 msahci - ok

08:43:07.0377 5012 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys

08:43:07.0377 5012 msdsm - ok

08:43:07.0408 5012 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe

08:43:07.0408 5012 MSDTC - ok

08:43:07.0471 5012 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys

08:43:07.0471 5012 Msfs - ok

08:43:07.0486 5012 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

08:43:07.0502 5012 mshidkmdf - ok

08:43:07.0533 5012 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys

08:43:07.0533 5012 msisadrv - ok

08:43:07.0549 5012 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll

08:43:07.0564 5012 MSiSCSI - ok

08:43:07.0564 5012 msiserver - ok

08:43:07.0596 5012 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

08:43:07.0596 5012 MSKSSRV - ok

08:43:07.0627 5012 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

08:43:07.0627 5012 MSPCLOCK - ok

08:43:07.0642 5012 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

08:43:07.0642 5012 MSPQM - ok

08:43:07.0674 5012 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

08:43:07.0674 5012 MsRPC - ok

08:43:07.0705 5012 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys

08:43:07.0705 5012 mssmbios - ok

08:43:07.0736 5012 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

08:43:07.0736 5012 MSTEE - ok

08:43:07.0752 5012 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

08:43:07.0752 5012 MTConfig - ok

08:43:07.0767 5012 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys

08:43:07.0767 5012 Mup - ok

08:43:07.0814 5012 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll

08:43:07.0814 5012 napagent - ok

08:43:07.0845 5012 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

08:43:07.0845 5012 NativeWifiP - ok

08:43:07.0892 5012 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys

08:43:07.0892 5012 NDIS - ok

08:43:07.0908 5012 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

08:43:07.0923 5012 NdisCap - ok

08:43:07.0939 5012 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

08:43:07.0939 5012 NdisTapi - ok

08:43:07.0986 5012 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

08:43:07.0986 5012 Ndisuio - ok

08:43:08.0017 5012 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

08:43:08.0017 5012 NdisWan - ok

08:43:08.0032 5012 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

08:43:08.0048 5012 NDProxy - ok

08:43:08.0126 5012 [ 40D7D0A208EE863BCA8D89E299216F15 ] Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

08:43:08.0142 5012 Nero BackItUp Scheduler 3 - ok

08:43:08.0188 5012 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

08:43:08.0188 5012 NetBIOS - ok

08:43:08.0220 5012 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys

08:43:08.0220 5012 NetBT - ok

08:43:08.0235 5012 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe

08:43:08.0235 5012 Netlogon - ok

08:43:08.0298 5012 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll

08:43:08.0298 5012 Netman - ok

08:43:08.0329 5012 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll

08:43:08.0329 5012 netprofm - ok

08:43:08.0360 5012 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

08:43:08.0360 5012 NetTcpPortSharing - ok

08:43:08.0407 5012 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

08:43:08.0407 5012 nfrd960 - ok

08:43:08.0438 5012 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll

08:43:08.0438 5012 NlaSvc - ok

08:43:08.0532 5012 [ EBA1B4BF2E2375ABDADEDB649F283541 ] NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

08:43:08.0532 5012 NMIndexingService - ok

08:43:08.0547 5012 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys

08:43:08.0547 5012 Npfs - ok

08:43:08.0578 5012 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll

08:43:08.0641 5012 nsi - ok

08:43:08.0641 5012 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

08:43:08.0656 5012 nsiproxy - ok

08:43:08.0703 5012 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

08:43:08.0734 5012 Ntfs - ok

08:43:08.0750 5012 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys

08:43:08.0766 5012 Null - ok

08:43:08.0828 5012 [ D2F4C4B22969236382CA853B8DAA2D4E ] NVHDA C:\Windows\system32\drivers\nvhda32v.sys

08:43:08.0828 5012 NVHDA - ok

08:43:09.0093 5012 [ 5CE5B23855262ACABAECCE156F48DD88 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

08:43:09.0327 5012 nvlddmkm - ok

08:43:09.0390 5012 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys

08:43:09.0405 5012 nvraid - ok

08:43:09.0436 5012 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys

08:43:09.0436 5012 nvstor - ok

08:43:09.0468 5012 [ 6DF4CC671CD9704840C5522627F3ED43 ] nvsvc C:\Windows\system32\nvvsvc.exe

08:43:09.0468 5012 nvsvc - ok

08:43:09.0499 5012 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys

08:43:09.0499 5012 nv_agp - ok

08:43:09.0577 5012 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

08:43:09.0577 5012 odserv - ok

08:43:09.0608 5012 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys

08:43:09.0608 5012 ohci1394 - ok

08:43:09.0639 5012 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

08:43:09.0639 5012 ose - ok

08:43:09.0670 5012 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll

08:43:09.0686 5012 p2pimsvc - ok

08:43:09.0733 5012 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll

08:43:09.0748 5012 p2psvc - ok

08:43:09.0780 5012 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys

08:43:09.0780 5012 Parport - ok

08:43:09.0795 5012 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys

08:43:09.0811 5012 partmgr - ok

08:43:09.0811 5012 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys

08:43:09.0826 5012 Parvdm - ok

08:43:09.0842 5012 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll

08:43:09.0842 5012 PcaSvc - ok

08:43:09.0873 5012 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys

08:43:09.0873 5012 pci - ok

08:43:09.0889 5012 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys

08:43:09.0889 5012 pciide - ok

08:43:09.0920 5012 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

08:43:09.0920 5012 pcmcia - ok

08:43:09.0936 5012 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys

08:43:09.0936 5012 pcw - ok

08:43:09.0967 5012 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys

08:43:09.0982 5012 PEAUTH - ok

08:43:10.0060 5012 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll

08:43:10.0138 5012 pla - ok

08:43:10.0170 5012 [ 875E4E0661F3A5994DF9E5E3A0A4F96B ] PLFlash DeviceIoControl Service C:\Windows\system32\IoctlSvc.exe

08:43:10.0170 5012 PLFlash DeviceIoControl Service - ok

08:43:10.0201 5012 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll

08:43:10.0216 5012 PlugPlay - ok

08:43:10.0232 5012 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll

08:43:10.0232 5012 PNRPAutoReg - ok

08:43:10.0263 5012 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll

08:43:10.0263 5012 PNRPsvc - ok

08:43:10.0310 5012 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

08:43:10.0310 5012 PolicyAgent - ok

08:43:10.0357 5012 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll

08:43:10.0357 5012 Power - ok

08:43:10.0419 5012 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

08:43:10.0419 5012 PptpMiniport - ok

08:43:10.0435 5012 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys

08:43:10.0435 5012 Processor - ok

08:43:10.0466 5012 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll

08:43:10.0482 5012 ProfSvc - ok

08:43:10.0497 5012 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe

08:43:10.0497 5012 ProtectedStorage - ok

08:43:10.0544 5012 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys

08:43:10.0560 5012 Psched - ok

08:43:10.0606 5012 [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe

08:43:10.0606 5012 PSI_SVC_2 - ok

08:43:10.0669 5012 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

08:43:10.0684 5012 ql2300 - ok

08:43:10.0731 5012 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

08:43:10.0731 5012 ql40xx - ok

08:43:10.0809 5012 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll

08:43:10.0809 5012 QWAVE - ok

08:43:10.0825 5012 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

08:43:10.0825 5012 QWAVEdrv - ok

08:43:10.0918 5012 [ 8F97D374AD1857E1EED85A79F29A1D3D ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll

08:43:10.0918 5012 RapiMgr - ok

08:43:10.0950 5012 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

08:43:10.0965 5012 RasAcd - ok

08:43:10.0996 5012 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

08:43:10.0996 5012 RasAgileVpn - ok

08:43:11.0028 5012 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll

08:43:11.0028 5012 RasAuto - ok

08:43:11.0043 5012 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

08:43:11.0043 5012 Rasl2tp - ok

08:43:11.0090 5012 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll

08:43:11.0090 5012 RasMan - ok

08:43:11.0106 5012 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

08:43:11.0121 5012 RasPppoe - ok

08:43:11.0152 5012 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

08:43:11.0152 5012 RasSstp - ok

08:43:11.0168 5012 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

08:43:11.0184 5012 rdbss - ok

08:43:11.0215 5012 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

08:43:11.0215 5012 rdpbus - ok

08:43:11.0262 5012 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

08:43:11.0262 5012 RDPCDD - ok

08:43:11.0308 5012 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

08:43:11.0308 5012 RDPENCDD - ok

08:43:11.0324 5012 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

08:43:11.0324 5012 RDPREFMP - ok

08:43:11.0355 5012 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

08:43:11.0355 5012 RDPWD - ok

08:43:11.0402 5012 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys

08:43:11.0402 5012 rdyboost - ok

08:43:11.0433 5012 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll

08:43:11.0449 5012 RemoteAccess - ok

08:43:11.0480 5012 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll

08:43:11.0480 5012 RemoteRegistry - ok

08:43:11.0511 5012 [ F85AE59A52885F4B09AADAFB23001A3B ] Rezip C:\Windows\SYSTEM32\Rezip.exe

08:43:11.0527 5012 Rezip - ok

08:43:11.0589 5012 [ 7CCAEBCAB6FC1ED0206C07E083E79207 ] RichVideo C:\Program Files\Cyberlink\Shared files\RichVideo.exe

08:43:11.0589 5012 RichVideo - ok

08:43:11.0636 5012 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll

08:43:11.0636 5012 RpcEptMapper - ok

08:43:11.0667 5012 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe

08:43:11.0667 5012 RpcLocator - ok

08:43:11.0698 5012 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll

08:43:11.0714 5012 RpcSs - ok

08:43:11.0776 5012 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

08:43:11.0776 5012 rspndr - ok

08:43:11.0839 5012 [ 9FF72982F8C3945FB1BC10A6246B9B97 ] rtl8192se C:\Windows\system32\DRIVERS\rtl8192se.sys

08:43:11.0839 5012 rtl8192se - ok

08:43:11.0854 5012 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe

08:43:11.0854 5012 SamSs - ok

08:43:11.0886 5012 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys

08:43:11.0886 5012 sbp2port - ok

08:43:11.0917 5012 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll

08:43:11.0917 5012 SCardSvr - ok

08:43:11.0948 5012 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys

08:43:11.0948 5012 scfilter - ok

08:43:11.0995 5012 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll

08:43:12.0010 5012 Schedule - ok

08:43:12.0042 5012 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll

08:43:12.0042 5012 SCPolicySvc - ok

08:43:12.0073 5012 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll

08:43:12.0073 5012 SDRSVC - ok

08:43:12.0151 5012 [ 16A252022535B680046F6E34E136D378 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

08:43:12.0151 5012 SeaPort - ok

08:43:12.0198 5012 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys

08:43:12.0198 5012 secdrv - ok

08:43:12.0229 5012 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll

08:43:12.0229 5012 seclogon - ok

08:43:12.0260 5012 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll

08:43:12.0276 5012 SENS - ok

08:43:12.0276 5012 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll

08:43:12.0276 5012 SensrSvc - ok

08:43:12.0291 5012 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys

08:43:12.0291 5012 Serenum - ok

08:43:12.0307 5012 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys

08:43:12.0322 5012 Serial - ok

08:43:12.0354 5012 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys

08:43:12.0354 5012 sermouse - ok

08:43:12.0400 5012 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll

08:43:12.0400 5012 SessionEnv - ok

08:43:12.0447 5012 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys

08:43:12.0447 5012 sffdisk - ok

08:43:12.0478 5012 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

08:43:12.0478 5012 sffp_mmc - ok

08:43:12.0494 5012 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

08:43:12.0494 5012 sffp_sd - ok

08:43:12.0525 5012 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

08:43:12.0525 5012 sfloppy - ok

08:43:12.0572 5012 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll

08:43:12.0588 5012 SharedAccess - ok

08:43:12.0619 5012 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll

08:43:12.0619 5012 ShellHWDetection - ok

08:43:12.0650 5012 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys

08:43:12.0650 5012 sisagp - ok

08:43:12.0712 5012 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

08:43:12.0712 5012 SiSRaid2 - ok

08:43:12.0728 5012 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

08:43:12.0728 5012 SiSRaid4 - ok

08:43:12.0775 5012 [ 875B04A71869D34A415CC8B4D4673EC4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe

08:43:12.0790 5012 SkypeUpdate - ok

08:43:12.0806 5012 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys

08:43:12.0806 5012 Smb - ok

08:43:12.0868 5012 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe

08:43:12.0868 5012 SNMPTRAP - ok

08:43:12.0962 5012 [ 82E3315B1B3E76B9A9643F987ED3AE5C ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys

08:43:13.0040 5012 SNP2UVC - ok

08:43:13.0056 5012 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys

08:43:13.0071 5012 spldr - ok

08:43:13.0102 5012 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe

08:43:13.0118 5012 Spooler - ok

08:43:13.0212 5012 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe

08:43:13.0243 5012 sppsvc - ok

08:43:13.0258 5012 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll

08:43:13.0274 5012 sppuinotify - ok

08:43:13.0305 5012 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys

08:43:13.0321 5012 srv - ok

08:43:13.0336 5012 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

08:43:13.0336 5012 srv2 - ok

08:43:13.0352 5012 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

08:43:13.0352 5012 srvnet - ok

08:43:13.0399 5012 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

08:43:13.0414 5012 SSDPSRV - ok

08:43:13.0446 5012 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll

08:43:13.0446 5012 SstpSvc - ok

08:43:13.0524 5012 [ 2EF99F5129D4A89480DFDF24332A0CA9 ] STacSV C:\Program Files\IDT\WDM\STacSV.exe

08:43:13.0524 5012 STacSV - ok

08:43:13.0570 5012 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys

08:43:13.0570 5012 stexstor - ok

08:43:13.0617 5012 [ 1475633F01CB13102B55C059287CBAC8 ] STHDA C:\Windows\system32\DRIVERS\stwrt.sys

08:43:13.0633 5012 STHDA - ok

08:43:13.0680 5012 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll

08:43:13.0695 5012 StiSvc - ok

08:43:13.0726 5012 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys

08:43:13.0726 5012 swenum - ok

08:43:13.0758 5012 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll

08:43:13.0773 5012 swprv - ok

08:43:13.0820 5012 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll

08:43:13.0836 5012 SysMain - ok

08:43:13.0882 5012 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll

08:43:13.0882 5012 TabletInputService - ok

08:43:13.0929 5012 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll

08:43:13.0945 5012 TapiSrv - ok

08:43:13.0960 5012 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll

08:43:13.0960 5012 TBS - ok

08:43:14.0023 5012 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys

08:43:14.0023 5012 Tcpip - ok

08:43:14.0085 5012 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

08:43:14.0101 5012 TCPIP6 - ok

08:43:14.0132 5012 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

08:43:14.0132 5012 tcpipreg - ok

08:43:14.0163 5012 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys

08:43:14.0163 5012 TDPIPE - ok

08:43:14.0179 5012 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys

08:43:14.0179 5012 TDTCP - ok

08:43:14.0226 5012 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys

08:43:14.0226 5012 tdx - ok

08:43:14.0257 5012 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys

08:43:14.0257 5012 TermDD - ok

08:43:14.0304 5012 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll

08:43:14.0304 5012 TermService - ok

08:43:14.0350 5012 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll

08:43:14.0350 5012 Themes - ok

08:43:14.0366 5012 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll

08:43:14.0366 5012 THREADORDER - ok

08:43:14.0397 5012 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll

08:43:14.0397 5012 TrkWks - ok

08:43:14.0475 5012 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

08:43:14.0475 5012 TrustedInstaller - ok

08:43:14.0506 5012 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

08:43:14.0506 5012 tssecsrv - ok

08:43:14.0600 5012 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

08:43:14.0600 5012 TsUsbFlt - ok

08:43:14.0631 5012 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

08:43:14.0631 5012 tunnel - ok

08:43:14.0662 5012 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

08:43:14.0678 5012 uagp35 - ok

08:43:14.0694 5012 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys

08:43:14.0694 5012 udfs - ok

08:43:14.0740 5012 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe

08:43:14.0740 5012 UI0Detect - ok

08:43:14.0772 5012 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

08:43:14.0772 5012 uliagpkx - ok

08:43:14.0834 5012 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys

08:43:14.0834 5012 umbus - ok

08:43:14.0881 5012 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys

08:43:14.0881 5012 UmPass - ok

08:43:14.0896 5012 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll

08:43:14.0912 5012 upnphost - ok

08:43:14.0943 5012 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

08:43:14.0943 5012 usbccgp - ok

08:43:14.0974 5012 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys

08:43:14.0974 5012 usbcir - ok

08:43:15.0006 5012 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys

08:43:15.0006 5012 usbehci - ok

08:43:15.0037 5012 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys

08:43:15.0037 5012 usbhub - ok

08:43:15.0068 5012 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys

08:43:15.0068 5012 usbohci - ok

08:43:15.0099 5012 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys

08:43:15.0115 5012 usbprint - ok

08:43:15.0130 5012 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys

08:43:15.0130 5012 usbscan - ok

08:43:15.0162 5012 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

08:43:15.0162 5012 USBSTOR - ok

08:43:15.0193 5012 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys

08:43:15.0193 5012 usbuhci - ok

08:43:15.0224 5012 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll

08:43:15.0240 5012 UxSms - ok

08:43:15.0240 5012 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe

08:43:15.0255 5012 VaultSvc - ok

08:43:15.0286 5012 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

08:43:15.0286 5012 vdrvroot - ok

08:43:15.0333 5012 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe

08:43:15.0333 5012 vds - ok

08:43:15.0396 5012 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys

08:43:15.0396 5012 vga - ok

08:43:15.0411 5012 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys

08:43:15.0411 5012 VgaSave - ok

08:43:15.0442 5012 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys

08:43:15.0442 5012 vhdmp - ok

08:43:15.0489 5012 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys

08:43:15.0489 5012 viaagp - ok

08:43:15.0505 5012 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys

08:43:15.0505 5012 ViaC7 - ok

08:43:15.0536 5012 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys

08:43:15.0536 5012 viaide - ok

08:43:15.0552 5012 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys

08:43:15.0552 5012 volmgr - ok

08:43:15.0583 5012 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

08:43:15.0583 5012 volmgrx - ok

08:43:15.0630 5012 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys

08:43:15.0630 5012 volsnap - ok

08:43:15.0661 5012 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

08:43:15.0661 5012 vsmraid - ok

08:43:15.0739 5012 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe

08:43:15.0754 5012 VSS - ok

08:43:15.0770 5012 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys

08:43:15.0770 5012 vwifibus - ok

08:43:15.0832 5012 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll

08:43:15.0832 5012 W32Time - ok

08:43:15.0879 5012 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

08:43:15.0879 5012 WacomPen - ok

08:43:15.0926 5012 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys

08:43:15.0926 5012 WANARP - ok

08:43:15.0926 5012 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

08:43:15.0926 5012 Wanarpv6 - ok

08:43:16.0020 5012 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

08:43:16.0066 5012 WatAdminSvc - ok

08:43:16.0113 5012 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe

08:43:16.0129 5012 wbengine - ok

08:43:16.0176 5012 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll

08:43:16.0191 5012 WbioSrvc - ok

08:43:16.0254 5012 [ 59E19BD13C3BDB857646B9E436BA27F7 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll

08:43:16.0254 5012 WcesComm - ok

08:43:16.0300 5012 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll

08:43:16.0316 5012 wcncsvc - ok

08:43:16.0332 5012 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

08:43:16.0332 5012 WcsPlugInService - ok

08:43:16.0378 5012 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys

08:43:16.0378 5012 Wd - ok

08:43:16.0410 5012 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

08:43:16.0425 5012 Wdf01000 - ok

08:43:16.0441 5012 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll

08:43:16.0456 5012 WdiServiceHost - ok

08:43:16.0456 5012 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll

08:43:16.0456 5012 WdiSystemHost - ok

08:43:16.0503 5012 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll

08:43:16.0503 5012 WebClient - ok

08:43:16.0534 5012 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll

08:43:16.0534 5012 Wecsvc - ok

08:43:16.0566 5012 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll

08:43:16.0566 5012 wercplsupport - ok

08:43:16.0597 5012 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll

08:43:16.0597 5012 WerSvc - ok

08:43:16.0612 5012 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

08:43:16.0612 5012 WfpLwf - ok

08:43:16.0628 5012 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys

08:43:16.0628 5012 WIMMount - ok

08:43:16.0706 5012 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll

08:43:16.0722 5012 WinDefend - ok

08:43:16.0753 5012 WinHttpAutoProxySvc - ok

08:43:16.0831 5012 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

08:43:16.0831 5012 Winmgmt - ok

08:43:16.0893 5012 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll

08:43:16.0909 5012 WinRM - ok

08:43:16.0956 5012 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WINUSB C:\Windows\system32\DRIVERS\WinUSB.SYS

08:43:16.0956 5012 WINUSB - ok

08:43:17.0018 5012 [ 20A97B632A76CC977FCFB98F28CAAAB3 ] WisLMSvc C:\Program Files\Launch Manager\WisLMSvc.exe

08:43:17.0018 5012 WisLMSvc - ok

08:43:17.0065 5012 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll

08:43:17.0096 5012 Wlansvc - ok

08:43:17.0174 5012 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

08:43:17.0174 5012 wlcrasvc - ok

08:43:17.0252 5012 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

08:43:17.0268 5012 wlidsvc - ok

08:43:17.0314 5012 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

08:43:17.0314 5012 WmiAcpi - ok

08:43:17.0361 5012 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

08:43:17.0361 5012 wmiApSrv - ok

08:43:17.0455 5012 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe

08:43:17.0486 5012 WMPNetworkSvc - ok

08:43:17.0517 5012 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll

08:43:17.0517 5012 WPCSvc - ok

08:43:17.0533 5012 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

08:43:17.0533 5012 WPDBusEnum - ok

08:43:17.0564 5012 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

08:43:17.0564 5012 ws2ifsl - ok

08:43:17.0595 5012 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll

08:43:17.0611 5012 wscsvc - ok

08:43:17.0611 5012 WSearch - ok

08:43:17.0689 5012 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll

08:43:17.0704 5012 wuauserv - ok

08:43:17.0736 5012 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

08:43:17.0736 5012 WudfPf - ok

08:43:17.0767 5012 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

08:43:17.0767 5012 WUDFRd - ok

08:43:17.0798 5012 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

08:43:17.0814 5012 wudfsvc - ok

08:43:17.0829 5012 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll

08:43:17.0845 5012 WwanSvc - ok

08:43:17.0876 5012 [ 6BBF7A3BAB8FFDCCF82057FA2AAE2B7B ] XUIF C:\Windows\system32\Drivers\x10ufx2.sys

08:43:17.0876 5012 XUIF - ok

08:43:17.0923 5012 [ C6CA0CC2F7FCDCFE5B551335BFE6D696 ] yukonwlh C:\Windows\system32\DRIVERS\yk60x86.sys

08:43:17.0923 5012 yukonwlh - ok

08:43:17.0954 5012 ================ Scan global ===============================

08:43:17.0970 5012 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll

08:43:18.0001 5012 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll

08:43:18.0032 5012 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll

08:43:18.0063 5012 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll

08:43:18.0110 5012 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe

08:43:18.0110 5012 [Global] - ok

08:43:18.0110 5012 ================ Scan MBR ==================================

08:43:18.0126 5012 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0

08:43:18.0422 5012 \Device\Harddisk0\DR0 - ok

08:43:18.0422 5012 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR2

08:43:18.0484 5012 \Device\Harddisk1\DR2 - ok

08:43:18.0484 5012 ================ Scan VBR ==================================

08:43:18.0500 5012 [ 36E96078A8170600C34D380A2280D766 ] \Device\Harddisk0\DR0\Partition1

08:43:18.0516 5012 \Device\Harddisk0\DR0\Partition1 - ok

08:43:18.0547 5012 [ 09B8AC992E246BBF027310C79206CEA8 ] \Device\Harddisk0\DR0\Partition2

08:43:18.0547 5012 \Device\Harddisk0\DR0\Partition2 - ok

08:43:18.0547 5012 [ 1B130C163214BE006B39BA943370668C ] \Device\Harddisk1\DR2\Partition1

08:43:18.0547 5012 \Device\Harddisk1\DR2\Partition1 - ok

08:43:18.0547 5012 ============================================================

08:43:18.0547 5012 Scan finished

08:43:18.0547 5012 ============================================================

08:43:18.0656 2912 Detected object count: 0

08:43:18.0656 2912 Actual detected object count: 0

Link naar reactie
Delen op andere sites

Zet IE eens terug naar standaardinstellingen, hoe je dat doet lees je hieronder:

- Open Internet explorer.

- Druk op de Alt toets op je toetsenbord. Er verschijnt een menu.

- Ga naar het menu Extra en kies Internetopties.

- Op de tab Geavanceerd klik je onderaan op de knop Opnieuw instellen...

- Klik nogmaals op Opnieuw instellen.

- Klik op Sluiten en herstart internet explorer.

Opmerking:

Bovenstaande procedure kan ook volautomatisch gebeuren, door dit programma te downloaden en uit te voeren: reset IE naar standaardinstellingen (klik erop).

Meer info over het opnieuw instellen van IE, vindt u hier.

Link naar reactie
Delen op andere sites

helaas helpt het ook niet. Ik heb de internetopties terug gebracht naar hun basisinstellingen zoals je hebt beschreven. Ik heb in IE opnieuw eens geprobeerd om een zipfile van jouw te downloaden, maar hij beschouwd het nog steeds als een virus en verwijdert het er onmiddellijk erna.

hmm...

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.