Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: TR/ATRAPS.Gen2 gefunden

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 14.09.2012, 16:28   #16
Granade
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Moin, hier das LOG:

Code:
ATTFilter
 17:24:26.0380 3612  TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
17:24:26.0410 3612  ============================================================
17:24:26.0410 3612  Current date / time: 2012/09/14 17:24:26.0410
17:24:26.0410 3612  SystemInfo:
17:24:26.0410 3612  
17:24:26.0410 3612  OS Version: 6.0.6002 ServicePack: 2.0
17:24:26.0410 3612  Product type: Workstation
17:24:26.0410 3612  ComputerName: ******
17:24:26.0410 3612  UserName: Besitzer
17:24:26.0410 3612  Windows directory: C:\Windows
17:24:26.0410 3612  System windows directory: C:\Windows
17:24:26.0410 3612  Running under WOW64
17:24:26.0410 3612  Processor architecture: Intel x64
17:24:26.0410 3612  Number of processors: 4
17:24:26.0410 3612  Page size: 0x1000
17:24:26.0410 3612  Boot type: Normal boot
17:24:26.0410 3612  ============================================================
17:24:27.0140 3612  Drive \Device\Harddisk0\DR0 - Size: 0x7470AFDE00 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:24:27.0140 3612  ============================================================
17:24:27.0140 3612  \Device\Harddisk0\DR0:
17:24:27.0140 3612  MBR partitions:
17:24:27.0140 3612  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x7530000
17:24:27.0160 3612  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x7531000, BlocksNum 0x2CCAB800
17:24:27.0170 3612  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x341DD000, BlocksNum 0x61A7800
17:24:27.0170 3612  ============================================================
17:24:27.0210 3612  C: <-> \Device\Harddisk0\DR0\Partition1
17:24:27.0250 3612  D: <-> \Device\Harddisk0\DR0\Partition2
17:24:27.0280 3612  E: <-> \Device\Harddisk0\DR0\Partition3
17:24:27.0280 3612  ============================================================
17:24:27.0280 3612  Initialize success
17:24:27.0280 3612  ============================================================
17:25:21.0808 1908  ============================================================
17:25:21.0808 1908  Scan started
17:25:21.0808 1908  Mode: Manual; SigCheck; TDLFS; 
17:25:21.0808 1908  ============================================================
17:25:22.0338 1908  ================ Scan system memory ========================
17:25:22.0338 1908  System memory - ok
17:25:22.0338 1908  ================ Scan services =============================
17:25:22.0447 1908  [ 1965AAFFAB07E3FB03C77F81BEBA3547 ] ACPI            C:\Windows\system32\drivers\acpi.sys
17:25:22.0541 1908  ACPI - ok
17:25:22.0650 1908  [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:25:22.0666 1908  AdobeFlashPlayerUpdateSvc - ok
17:25:22.0728 1908  [ F14215E37CF124104575073F782111D2 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
17:25:22.0744 1908  adp94xx - ok
17:25:22.0775 1908  [ 7D05A75E3066861A6610F7EE04FF085C ] adpahci         C:\Windows\system32\drivers\adpahci.sys
17:25:22.0791 1908  adpahci - ok
17:25:22.0806 1908  [ 820A201FE08A0C345B3BEDBC30E1A77C ] adpu160m        C:\Windows\system32\drivers\adpu160m.sys
17:25:22.0822 1908  adpu160m - ok
17:25:22.0822 1908  [ 9B4AB6854559DC168FBB4C24FC52E794 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
17:25:22.0837 1908  adpu320 - ok
17:25:22.0869 1908  [ 0F421175574BFE0BF2F4D8E910A253BB ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
17:25:22.0900 1908  AeLookupSvc - ok
17:25:22.0931 1908  [ 0CC146C4ADDEA45791B18B1E2659F4A9 ] AFD             C:\Windows\system32\drivers\afd.sys
17:25:22.0962 1908  AFD - ok
17:25:22.0978 1908  [ F6F6793B7F17B550ECFDBD3B229173F7 ] agp440          C:\Windows\system32\drivers\agp440.sys
17:25:22.0993 1908  agp440 - ok
17:25:23.0009 1908  [ 222CB641B4B8A1D1126F8033F9FD6A00 ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
17:25:23.0025 1908  aic78xx - ok
17:25:23.0056 1908  [ 5922F4F59B7868F3D74BBBBEB7B825A3 ] ALG             C:\Windows\System32\alg.exe
17:25:23.0181 1908  ALG - ok
17:25:23.0196 1908  [ 157D0898D4B73F075CE9FA26B482DF98 ] aliide          C:\Windows\system32\drivers\aliide.sys
17:25:23.0212 1908  aliide - ok
17:25:23.0212 1908  [ 970FA5059E61E30D25307B99903E991E ] amdide          C:\Windows\system32\drivers\amdide.sys
17:25:23.0227 1908  amdide - ok
17:25:23.0243 1908  [ CDC3632A3A5EA4DBB83E46076A3165A1 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
17:25:23.0274 1908  AmdK8 - ok
17:25:23.0368 1908  [ 466A0D95960DAD3222C896D2CEA99993 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
17:25:23.0383 1908  AntiVirSchedulerService - ok
17:25:23.0415 1908  [ A489BE6BB0AA1FF406B488B60542314B ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
17:25:23.0415 1908  AntiVirService - ok
17:25:23.0430 1908  [ 9C37B3FD5615477CB9A0CD116CF43F5C ] Appinfo         C:\Windows\System32\appinfo.dll
17:25:23.0461 1908  Appinfo - ok
17:25:23.0477 1908  [ BA8417D4765F3988FF921F30F630E303 ] arc             C:\Windows\system32\drivers\arc.sys
17:25:23.0493 1908  arc - ok
17:25:23.0493 1908  [ 9D41C435619733B34CC16A511E644B11 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
17:25:23.0508 1908  arcsas - ok
17:25:23.0524 1908  [ 22D13FF3DAFEC2A80634752B1EAA2DE6 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
17:25:23.0571 1908  AsyncMac - ok
17:25:23.0586 1908  [ E68D9B3A3905619732F7FE039466A623 ] atapi           C:\Windows\system32\drivers\atapi.sys
17:25:23.0602 1908  atapi - ok
17:25:23.0617 1908  [ FC0E8778C000291CAF60EB88C011E931 ] atksgt          C:\Windows\system32\DRIVERS\atksgt.sys
17:25:23.0664 1908  atksgt - ok
17:25:23.0695 1908  [ 79318C744693EC983D20E9337A2F8196 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:25:23.0727 1908  AudioEndpointBuilder - ok
17:25:23.0727 1908  [ 79318C744693EC983D20E9337A2F8196 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
17:25:23.0758 1908  AudioSrv - ok
17:25:23.0773 1908  [ 26E38B5A58C6C55FAFBC563EEDDB0867 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
17:25:23.0789 1908  avgntflt - ok
17:25:23.0805 1908  [ 9D1F00BEFF84CBBF46D7F052BC7E0565 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
17:25:23.0805 1908  avipbb - ok
17:25:23.0836 1908  [ 248DB59FC86DE44D2779F4C7FB1A567D ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
17:25:23.0836 1908  avkmgr - ok
17:25:23.0867 1908  [ B5AB073A8EAA0024DFE4D6E2F7AC2924 ] AVM WLAN Connection Service C:\Program Files (x86)\avmwlanstick\WlanNetService.exe
17:25:23.0898 1908  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - warning
17:25:23.0898 1908  AVM WLAN Connection Service - detected UnsignedFile.Multi.Generic (1)
17:25:23.0914 1908  [ 1DC2F715792CF33428AD7993ACBD224D ] avmeject        C:\Windows\system32\drivers\avmeject.sys
17:25:23.0929 1908  avmeject - ok
17:25:23.0945 1908  [ 79FEEB40056683F8F61398D81DDA65D2 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
17:25:23.0976 1908  blbdrive - ok
17:25:23.0976 1908  [ 2348447A80920B2493A9B582A23E81E1 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
17:25:24.0007 1908  bowser - ok
17:25:24.0023 1908  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\brfiltlo.sys
17:25:24.0039 1908  BrFiltLo - ok
17:25:24.0070 1908  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\brfiltup.sys
17:25:24.0085 1908  BrFiltUp - ok
17:25:24.0101 1908  [ A1B39DE453433B115B4EA69EE0343816 ] Browser         C:\Windows\System32\browser.dll
17:25:24.0148 1908  Browser - ok
17:25:24.0163 1908  [ F0F0BA4D815BE446AA6A4583CA3BCA9B ] Brserid         C:\Windows\system32\drivers\brserid.sys
17:25:24.0288 1908  Brserid - ok
17:25:24.0304 1908  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\system32\drivers\brserwdm.sys
17:25:24.0366 1908  BrSerWdm - ok
17:25:24.0382 1908  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\system32\drivers\brusbmdm.sys
17:25:24.0444 1908  BrUsbMdm - ok
17:25:24.0475 1908  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\system32\drivers\brusbser.sys
17:25:24.0538 1908  BrUsbSer - ok
17:25:24.0538 1908  [ E0777B34E05F8A82A21856EFC900C29F ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
17:25:24.0600 1908  BTHMODEM - ok
17:25:24.0616 1908  [ B4D787DB8D30793A4D4DF9FEED18F136 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
17:25:24.0647 1908  cdfs - ok
17:25:24.0663 1908  [ C025AA69BE3D0D25C7A2E746EF6F94FC ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
17:25:24.0694 1908  cdrom - ok
17:25:24.0709 1908  [ 5A268127633C7EE2A7FB87F39D748D56 ] CertPropSvc     C:\Windows\System32\certprop.dll
17:25:24.0756 1908  CertPropSvc - ok
17:25:24.0756 1908  [ 02EA568D498BBDD4BA55BF3FCE34D456 ] circlass        C:\Windows\system32\drivers\circlass.sys
17:25:24.0803 1908  circlass - ok
17:25:24.0819 1908  [ 3DCA9A18B204939CFB24BEA53E31EB48 ] CLFS            C:\Windows\system32\CLFS.sys
17:25:24.0834 1908  CLFS - ok
17:25:24.0897 1908  [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:25:24.0897 1908  clr_optimization_v2.0.50727_32 - ok
17:25:24.0928 1908  [ CE07A466201096F021CD09D631B21540 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
17:25:24.0943 1908  clr_optimization_v2.0.50727_64 - ok
17:25:24.0943 1908  [ E5D5499A1C50A54B5161296B6AFE6192 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
17:25:24.0959 1908  cmdide - ok
17:25:24.0975 1908  [ 7FB8AD01DB0EABE60C8A861531A8F431 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
17:25:24.0975 1908  Compbatt - ok
17:25:24.0975 1908  COMSysApp - ok
17:25:24.0990 1908  [ A8585B6412253803CE8EFCBD6D6DC15C ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
17:25:24.0990 1908  crcdisk - ok
17:25:25.0006 1908  [ 18918613E63F387CDE4D95CA7D49DCF7 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
17:25:25.0053 1908  CryptSvc - ok
17:25:25.0084 1908  [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] DcomLaunch      C:\Windows\system32\rpcss.dll
17:25:25.0131 1908  DcomLaunch - ok
17:25:25.0146 1908  [ 8B722BA35205C71E7951CDC4CDBADE19 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
17:25:25.0162 1908  DfsC - ok
17:25:25.0240 1908  [ C647F468F7DE343DF8C143655C5557D4 ] DFSR            C:\Windows\system32\DFSR.exe
17:25:25.0380 1908  DFSR - ok
17:25:25.0411 1908  [ 3ED0321127CE70ACDAABBF77E157C2A7 ] Dhcp            C:\Windows\System32\dhcpcsvc.dll
17:25:25.0443 1908  Dhcp - ok
17:25:25.0458 1908  [ B0107E40ECDB5FA692EBF832F295D905 ] disk            C:\Windows\system32\drivers\disk.sys
17:25:25.0474 1908  disk - ok
17:25:25.0489 1908  [ 06230F1B721494A6DF8D47FD395BB1B0 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
17:25:25.0505 1908  Dnscache - ok
17:25:25.0536 1908  [ 3AF44F260A3B04203E9F3F593E979F77 ] Dokan           C:\Windows\system32\drivers\dokan.sys
17:25:25.0552 1908  Dokan - ok
17:25:25.0583 1908  [ 7F5C325B16A5A237F2DF6932BF853621 ] DokanMounter    C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
17:25:25.0599 1908  DokanMounter ( UnsignedFile.Multi.Generic ) - warning
17:25:25.0599 1908  DokanMounter - detected UnsignedFile.Multi.Generic (1)
17:25:25.0614 1908  [ 1A7156DD1E850E9914E5E991E3225B94 ] dot3svc         C:\Windows\System32\dot3svc.dll
17:25:25.0630 1908  dot3svc - ok
17:25:25.0677 1908  [ 74C02B1717740C3B8039539E23E4B53F ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
17:25:25.0708 1908  Dot4 - ok
17:25:25.0723 1908  [ 08321D1860235BF42CF2854234337AEA ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
17:25:25.0755 1908  Dot4Print - ok
17:25:25.0770 1908  [ 4ADCCF0124F2B6911D3786A5D0E779E5 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
17:25:25.0801 1908  dot4usb - ok
17:25:25.0817 1908  [ 1583B39790DB3EAEC7EDB0CB0140C708 ] DPS             C:\Windows\system32\dps.dll
17:25:25.0848 1908  DPS - ok
17:25:25.0864 1908  [ F1A78A98CFC2EE02144C6BEC945447E6 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
17:25:25.0895 1908  drmkaud - ok
17:25:25.0942 1908  [ E828CDCA431D1F98D33501DFC390079A ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
17:25:25.0989 1908  DXGKrnl - ok
17:25:26.0004 1908  [ 264CEE7B031A9D6C827F3D0CB031F2FE ] E1G60           C:\Windows\system32\DRIVERS\E1G6032E.sys
17:25:26.0051 1908  E1G60 - ok
17:25:26.0051 1908  EagleX64 - ok
17:25:26.0067 1908  [ C2303883FD9BE49DC36A6400643002EA ] EapHost         C:\Windows\System32\eapsvc.dll
17:25:26.0098 1908  EapHost - ok
17:25:26.0113 1908  [ 5F94962BE5A62DB6E447FF6470C4F48A ] Ecache          C:\Windows\system32\drivers\ecache.sys
17:25:26.0129 1908  Ecache - ok
17:25:26.0160 1908  [ 14CE384D2E27B64C256BDA4DC39C312D ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
17:25:26.0207 1908  ehRecvr - ok
17:25:26.0223 1908  [ B93159C1313D66FDFBBE876F5189CD52 ] ehSched         C:\Windows\ehome\ehsched.exe
17:25:26.0238 1908  ehSched - ok
17:25:26.0254 1908  [ F5EE2527D74449868E3C3227A59BCD28 ] ehstart         C:\Windows\ehome\ehstart.dll
17:25:26.0285 1908  ehstart - ok
17:25:26.0316 1908  [ C4636D6E10469404AB5308D9FD45ED07 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
17:25:26.0332 1908  elxstor - ok
17:25:26.0347 1908  [ A9B18B63A4FD6BAAB83326706D857FAB ] EMDMgmt         C:\Windows\system32\emdmgmt.dll
17:25:26.0394 1908  EMDMgmt - ok
17:25:26.0410 1908  [ BC3A58E938BB277E46BF4B3003B01ABD ] ErrDev          C:\Windows\system32\drivers\errdev.sys
17:25:26.0441 1908  ErrDev - ok
17:25:26.0457 1908  [ E12F22B73F153DECE721CD45EC05B4AF ] EventSystem     C:\Windows\system32\es.dll
17:25:26.0503 1908  EventSystem - ok
17:25:26.0519 1908  [ 486844F47B6636044A42454614ED4523 ] exfat           C:\Windows\system32\drivers\exfat.sys
17:25:26.0550 1908  exfat - ok
17:25:26.0566 1908  [ 1A4BEE34277784619DDAF0422C0C6E23 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
17:25:26.0597 1908  fastfat - ok
17:25:26.0613 1908  [ 81B79B6DF71FA1D2C6D688D830616E39 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
17:25:26.0644 1908  fdc - ok
17:25:26.0675 1908  [ BB9267ACACD8B7533DD936C34A0CBA5E ] fdPHost         C:\Windows\system32\fdPHost.dll
17:25:26.0706 1908  fdPHost - ok
17:25:26.0706 1908  [ 300C80931EABBE1DB7591C516EFE8D0F ] FDResPub        C:\Windows\system32\fdrespub.dll
17:25:26.0769 1908  FDResPub - ok
17:25:26.0784 1908  [ 457B7D1D533E4BD62A99AED9C7BB4C59 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
17:25:26.0800 1908  FileInfo - ok
17:25:26.0815 1908  [ D421327FD6EFCCAF884A54C58E1B0D7F ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
17:25:26.0847 1908  Filetrace - ok
17:25:26.0862 1908  [ 230923EA2B80F79B0F88D90F87B87EBD ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
17:25:26.0909 1908  flpydisk - ok
17:25:26.0925 1908  [ E3041BC26D6930D61F42AEDB79C91720 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
17:25:26.0940 1908  FltMgr - ok
17:25:26.0971 1908  [ BC5B0BE5AF3510B0FD8C140EE42C6D3E ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:25:26.0987 1908  FontCache3.0.0.0 - ok
17:25:27.0003 1908  [ 29D99E860A1CA0A03C6A733FDD0DA703 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
17:25:27.0034 1908  Fs_Rec - ok
17:25:27.0049 1908  [ 444534CBA693DD23C1CC589681E01656 ] FWLANUSB        C:\Windows\system32\DRIVERS\fwlanusb.sys
17:25:27.0096 1908  FWLANUSB - ok
17:25:27.0112 1908  [ C8E416668D3DC2BE3D4FE4C79224997F ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
17:25:27.0127 1908  gagp30kx - ok
17:25:27.0143 1908  [ F51FB25E1328FA14F446A8B24AC52709 ] gdrv            C:\Windows\gdrv.sys
17:25:27.0143 1908  gdrv - ok
17:25:27.0174 1908  [ A0E1B575BA8F504968CD40C0FAEB2384 ] gpsvc           C:\Windows\System32\gpsvc.dll
17:25:27.0237 1908  gpsvc - ok
17:25:27.0315 1908  [ FD2A394CFDE457EA844EA9954C7A1974 ] gtstusbser_64   C:\Windows\system32\DRIVERS\gtstusbser_64.sys
17:25:27.0330 1908  gtstusbser_64 - ok
17:25:27.0377 1908  [ F02A533F517EB38333CB12A9E8963773 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:25:27.0393 1908  gupdate - ok
17:25:27.0408 1908  [ F02A533F517EB38333CB12A9E8963773 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:25:27.0424 1908  gupdatem - ok
17:25:27.0439 1908  [ DF45F8142DC6DF9D18C39B3EFFBD0409 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:25:27.0517 1908  HdAudAddService - ok
17:25:27.0533 1908  [ F942C5820205F2FB453243EDFEC82A3D ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
17:25:27.0595 1908  HDAudBus - ok
17:25:27.0611 1908  [ B4881C84A180E75B8C25DC1D726C375F ] HidBth          C:\Windows\system32\drivers\hidbth.sys
17:25:27.0673 1908  HidBth - ok
17:25:27.0705 1908  [ 4E77A77E2C986E8F88F996BB3E1AD829 ] HidIr           C:\Windows\system32\drivers\hidir.sys
17:25:27.0767 1908  HidIr - ok
17:25:27.0814 1908  [ 59361D38A297755D46A540E450202B2A ] hidserv         C:\Windows\system32\hidserv.dll
17:25:27.0861 1908  hidserv - ok
17:25:27.0876 1908  [ 443BDD2D30BB4F00795C797E2CF99EDF ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
17:25:27.0892 1908  HidUsb - ok
17:25:27.0907 1908  [ B12F367EA39C0795FD57E31242CE1A5A ] hkmsvc          C:\Windows\system32\kmsvc.dll
17:25:27.0954 1908  hkmsvc - ok
17:25:27.0954 1908  [ D7109A1E6BD2DFDBCBA72A6BC626A13B ] HpCISSs         C:\Windows\system32\drivers\hpcisss.sys
17:25:27.0970 1908  HpCISSs - ok
17:25:28.0017 1908  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
17:25:28.0032 1908  hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
17:25:28.0032 1908  hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
17:25:28.0048 1908  [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
17:25:28.0063 1908  hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
17:25:28.0063 1908  hpqddsvc - detected UnsignedFile.Multi.Generic (1)
17:25:28.0079 1908  [ 098F1E4E5C9CB5B0063A959063631610 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
17:25:28.0141 1908  HTTP - ok
17:25:28.0157 1908  [ DA94C854CEA5FAC549D4E1F6E88349E8 ] i2omp           C:\Windows\system32\drivers\i2omp.sys
17:25:28.0173 1908  i2omp - ok
17:25:28.0188 1908  [ CBB597659A2713CE0C9CC20C88C7591F ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
17:25:28.0204 1908  i8042prt - ok
17:25:28.0219 1908  [ 3E3BF3627D886736D0B4E90054F929F6 ] iaStorV         C:\Windows\system32\drivers\iastorv.sys
17:25:28.0235 1908  iaStorV - ok
17:25:28.0313 1908  [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT        C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
17:25:28.0329 1908  IDriverT ( UnsignedFile.Multi.Generic ) - warning
17:25:28.0329 1908  IDriverT - detected UnsignedFile.Multi.Generic (1)
17:25:28.0375 1908  [ 749F5F8CEDCA70F2A512945325FC489D ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
17:25:28.0407 1908  idsvc - ok
17:25:28.0422 1908  [ 8C3951AD2FE886EF76C7B5027C3125D3 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
17:25:28.0438 1908  iirsp - ok
17:25:28.0453 1908  [ 0C9EA6E654E7B0471741E343A6C671AF ] IKEEXT          C:\Windows\System32\ikeext.dll
17:25:28.0500 1908  IKEEXT - ok
17:25:28.0625 1908  [ D7DC70EB652BD2FBA1E3CB6290A63452 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
17:25:28.0719 1908  IntcAzAudAddService - ok
17:25:28.0719 1908  [ DF797A12176F11B2D301C5B234BB200E ] intelide        C:\Windows\system32\drivers\intelide.sys
17:25:28.0734 1908  intelide - ok
17:25:28.0750 1908  [ BFD84AF32FA1BAD6231C4585CB469630 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
17:25:28.0797 1908  intelppm - ok
17:25:28.0812 1908  [ 5624BC1BC5EEB49C0AB76A8114F05EA3 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
17:25:28.0843 1908  IPBusEnum - ok
17:25:28.0859 1908  [ D8AABC341311E4780D6FCE8C73C0AD81 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:25:28.0906 1908  IpFilterDriver - ok
17:25:28.0906 1908  IpInIp - ok
17:25:28.0906 1908  [ 9C2EE2E6E5A7203BFAE15C299475EC67 ] IPMIDRV         C:\Windows\system32\drivers\ipmidrv.sys
17:25:28.0953 1908  IPMIDRV - ok
17:25:28.0968 1908  [ B7E6212F581EA5F6AB0C3A6CEEEB89BE ] IPNAT           C:\Windows\system32\DRIVERS\ipnat.sys
17:25:28.0999 1908  IPNAT - ok
17:25:29.0015 1908  [ 8C42CA155343A2F11D29FECA67FAA88D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
17:25:29.0062 1908  IRENUM - ok
17:25:29.0062 1908  [ 0672BFCEDC6FC468A2B0500D81437F4F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
17:25:29.0077 1908  isapnp - ok
17:25:29.0109 1908  [ E4FDF99599F27EC25D2CF6D754243520 ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
17:25:29.0109 1908  iScsiPrt - ok
17:25:29.0124 1908  [ 63C766CDC609FF8206CB447A65ABBA4A ] iteatapi        C:\Windows\system32\drivers\iteatapi.sys
17:25:29.0140 1908  iteatapi - ok
17:25:29.0140 1908  [ 1281FE73B17664631D12F643CBEA3F59 ] iteraid         C:\Windows\system32\drivers\iteraid.sys
17:25:29.0155 1908  iteraid - ok
17:25:29.0155 1908  [ 423696F3BA6472DD17699209B933BC26 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
17:25:29.0171 1908  kbdclass - ok
17:25:29.0171 1908  [ DBDF75D51464FBC47D0104EC3D572C05 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
17:25:29.0202 1908  kbdhid - ok
17:25:29.0233 1908  [ 40348DCEC0712ED42231C5F90A69A690 ] KeyIso          C:\Windows\system32\lsass.exe
17:25:29.0265 1908  KeyIso - ok
17:25:29.0280 1908  [ 476E2C1DCEA45895994BEF11C2A98715 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
17:25:29.0311 1908  KSecDD - ok
17:25:29.0311 1908  [ 1D419CF43DB29396ECD7113D129D94EB ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
17:25:29.0343 1908  ksthunk - ok
17:25:29.0358 1908  [ 1FAF6926F3416D3DA05C5B265491BDAE ] KtmRm           C:\Windows\system32\msdtckrm.dll
17:25:29.0421 1908  KtmRm - ok
17:25:29.0467 1908  [ 50C7A3CB427E9BB5ED0708A669956AB5 ] LanmanServer    C:\Windows\system32\srvsvc.dll
17:25:29.0483 1908  LanmanServer - ok
17:25:29.0499 1908  [ CAF86FC1388BE1E470F1A7B43E348ADB ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:25:29.0530 1908  LanmanWorkstation - ok
17:25:29.0577 1908  [ 156AB2E56DC3CA0B582E3362E07CDED7 ] lirsgt          C:\Windows\system32\DRIVERS\lirsgt.sys
17:25:29.0577 1908  lirsgt - ok
17:25:29.0592 1908  [ 96ECE2659B6654C10A0C310AE3A6D02C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
17:25:29.0639 1908  lltdio - ok
17:25:29.0639 1908  [ 961CCBD0B1CCB5675D64976FAE37D092 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
17:25:29.0686 1908  lltdsvc - ok
17:25:29.0701 1908  [ A47F8080CACC23C91FE823AD19AA5612 ] lmhosts         C:\Windows\System32\lmhsvc.dll
17:25:29.0748 1908  lmhosts - ok
17:25:29.0748 1908  [ ACBE1AF32D3123E330A07BFBC5EC4A9B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
17:25:29.0764 1908  LSI_FC - ok
17:25:29.0779 1908  [ 799FFB2FC4729FA46D2157C0065B3525 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
17:25:29.0795 1908  LSI_SAS - ok
17:25:29.0811 1908  [ F445FF1DAAD8A226366BFAF42551226B ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
17:25:29.0811 1908  LSI_SCSI - ok
17:25:29.0826 1908  [ 52F87B9CC8932C2A7375C3B2A9BE5E3E ] luafv           C:\Windows\system32\drivers\luafv.sys
17:25:29.0873 1908  luafv - ok
17:25:29.0889 1908  [ 76A58DF02BD4EA29F189B82D0BEF17F8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
17:25:29.0889 1908  Mcx2Svc - ok
17:25:29.0935 1908  [ 11F714F85530A2BD134074DC30E99FCA ] MDM             C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
17:25:29.0951 1908  MDM - ok
17:25:29.0951 1908  [ 5C5CD6AACED32FB26C3FB34B3DCF972F ] megasas         C:\Windows\system32\drivers\megasas.sys
17:25:29.0967 1908  megasas - ok
17:25:29.0982 1908  [ 859BC2436B076C77C159ED694ACFE8F8 ] MegaSR          C:\Windows\system32\drivers\megasr.sys
17:25:30.0013 1908  MegaSR - ok
17:25:30.0013 1908  [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] MMCSS           C:\Windows\system32\mmcss.dll
17:25:30.0045 1908  MMCSS - ok
17:25:30.0060 1908  [ 59848D5CC74606F0EE7557983BB73C2E ] Modem           C:\Windows\system32\drivers\modem.sys
17:25:30.0091 1908  Modem - ok
17:25:30.0107 1908  [ C247CC2A57E0A0C8C6DCCF7807B3E9E5 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
17:25:30.0138 1908  monitor - ok
17:25:30.0154 1908  [ 9367304E5E412B120CF5F4EA14E4E4F1 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
17:25:30.0169 1908  mouclass - ok
17:25:30.0185 1908  [ C2C2BD5C5CE5AAF786DDD74B75D2AC69 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
17:25:30.0216 1908  mouhid - ok
17:25:30.0216 1908  [ 11BC9B1E8801B01F7F6ADB9EAD30019B ] MountMgr        C:\Windows\system32\drivers\mountmgr.sys
17:25:30.0232 1908  MountMgr - ok
17:25:30.0263 1908  [ E8D79312373F254DC13F3965BDB3D521 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
17:25:30.0263 1908  MozillaMaintenance - ok
17:25:30.0279 1908  [ F8276EB8698142884498A528DFEA8478 ] mpio            C:\Windows\system32\drivers\mpio.sys
17:25:30.0294 1908  mpio - ok
17:25:30.0294 1908  [ C92B9ABDB65A5991E00C28F13491DBA2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
17:25:30.0325 1908  mpsdrv - ok
17:25:30.0357 1908  [ 3C200630A89EF2C0864D515B7A75802E ] Mraid35x        C:\Windows\system32\drivers\mraid35x.sys
17:25:30.0357 1908  Mraid35x - ok
17:25:30.0388 1908  [ 7C1DE4AA96DC0C071611F9E7DE02A68D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
17:25:30.0403 1908  MRxDAV - ok
17:25:30.0419 1908  [ 1485811B320FF8C7EDAD1CAEBB1C6C2B ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
17:25:30.0450 1908  mrxsmb - ok
17:25:30.0466 1908  [ 3B929A60C833FC615FD97FBA82BC7632 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:25:30.0481 1908  mrxsmb10 - ok
17:25:30.0481 1908  [ C64AB3E1F53B4F5B5BB6D796B2D7BEC3 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:25:30.0497 1908  mrxsmb20 - ok
17:25:30.0497 1908  [ 1AC860612B85D8E85EE257D372E39F4D ] msahci          C:\Windows\system32\drivers\msahci.sys
17:25:30.0513 1908  msahci - ok
17:25:30.0528 1908  [ 264BBB4AAF312A485F0E44B65A6B7202 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
17:25:30.0544 1908  msdsm - ok
17:25:30.0544 1908  [ 7EC02CE772F068ED0BEAFA3DA341A9BC ] MSDTC           C:\Windows\System32\msdtc.exe
17:25:30.0591 1908  MSDTC - ok
17:25:30.0591 1908  [ 704F59BFC4512D2BB0146AEC31B10A7C ] Msfs            C:\Windows\system32\drivers\Msfs.sys
17:25:30.0637 1908  Msfs - ok
17:25:30.0637 1908  [ 00EBC952961664780D43DCA157E79B27 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
17:25:30.0653 1908  msisadrv - ok
17:25:30.0669 1908  [ 366B0C1F4478B519C181E37D43DCDA32 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
17:25:30.0715 1908  MSiSCSI - ok
17:25:30.0715 1908  msiserver - ok
17:25:30.0731 1908  [ 0EA73E498F53B96D83DBFCA074AD4CF8 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
17:25:30.0762 1908  MSKSSRV - ok
17:25:30.0793 1908  [ 52E59B7E992A58E740AA63F57EDBAE8B ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
17:25:30.0825 1908  MSPCLOCK - ok
17:25:30.0840 1908  [ 49084A75BAE043AE02D5B44D02991BB2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
17:25:30.0871 1908  MSPQM - ok
17:25:30.0903 1908  [ DC6CCF440CDEDE4293DB41C37A5060A5 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
17:25:30.0918 1908  MsRPC - ok
17:25:30.0934 1908  [ 855796E59DF77EA93AF46F20155BF55B ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
17:25:30.0949 1908  mssmbios - ok
17:25:30.0949 1908  [ 86D632D75D05D5B7C7C043FA3564AE86 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
17:25:30.0996 1908  MSTEE - ok
17:25:31.0012 1908  [ 0CC49F78D8ACA0877D885F149084E543 ] Mup             C:\Windows\system32\Drivers\mup.sys
17:25:31.0027 1908  Mup - ok
17:25:31.0043 1908  [ A5B10C845E7538C60C0F5D87A57CB3F5 ] napagent        C:\Windows\system32\qagentRT.dll
17:25:31.0074 1908  napagent - ok
17:25:31.0090 1908  [ 2007B826C4ACD94AE32232B41F0842B9 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
17:25:31.0105 1908  NativeWifiP - ok
17:25:31.0199 1908  [ 5836B9E91863A00EC1B8E785EFD86ECB ] NBService       C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
17:25:31.0230 1908  NBService - ok
17:25:31.0261 1908  [ 65950E07329FCEE8E6516B17C8D0ABB6 ] NDIS            C:\Windows\system32\drivers\ndis.sys
17:25:31.0277 1908  NDIS - ok
17:25:31.0324 1908  [ 64DF698A425478E321981431AC171334 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
17:25:31.0339 1908  NdisTapi - ok
17:25:31.0355 1908  [ 8BAA43196D7B5BB972C9A6B2BBF61A19 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
17:25:31.0402 1908  Ndisuio - ok
17:25:31.0417 1908  [ F8158771905260982CE724076419EF19 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
17:25:31.0433 1908  NdisWan - ok
17:25:31.0449 1908  [ 9CB77ED7CB72850253E973A2D6AFDF49 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
17:25:31.0464 1908  NDProxy - ok
17:25:31.0511 1908  [ 2334DC48997BA203B794DF3EE70521DB ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
17:25:31.0527 1908  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
17:25:31.0527 1908  Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
17:25:31.0527 1908  [ A499294F5029A7862ADC115BDA7371CE ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
17:25:31.0573 1908  NetBIOS - ok
17:25:31.0589 1908  [ FC2C792EBDDC8E28DF939D6A92C83D61 ] netbt           C:\Windows\system32\DRIVERS\netbt.sys
17:25:31.0605 1908  netbt - ok
17:25:31.0620 1908  [ 40348DCEC0712ED42231C5F90A69A690 ] Netlogon        C:\Windows\system32\lsass.exe
17:25:31.0636 1908  Netlogon - ok
17:25:31.0651 1908  [ 9B63B29DEFC0F3115A559D2597BF5D75 ] Netman          C:\Windows\System32\netman.dll
17:25:31.0698 1908  Netman - ok
17:25:31.0714 1908  [ 7846D0136CC2B264926A73047BA7688A ] netprofm        C:\Windows\System32\netprofm.dll
17:25:31.0745 1908  netprofm - ok
17:25:31.0761 1908  [ 74751DDA198165947FD7454D83F49825 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:25:31.0776 1908  NetTcpPortSharing - ok
17:25:31.0792 1908  [ 4AC08BD6AF2DF42E0C3196D826C8AEA7 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
17:25:31.0792 1908  nfrd960 - ok
17:25:31.0807 1908  [ F145BF4C4668E7E312069F81EF847CFC ] NlaSvc          C:\Windows\System32\nlasvc.dll
17:25:31.0839 1908  NlaSvc - ok
17:25:31.0885 1908  [ A328A46D87BB92CE4D8A4528E9D84787 ] NMIndexingService C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
17:25:31.0885 1908  NMIndexingService - ok
17:25:31.0901 1908  [ B298874F8E0EA93F06EC40AA8D146478 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
17:25:31.0932 1908  Npfs - ok
17:25:31.0948 1908  [ ACB62BAA1C319B17752553DF3026EEEB ] nsi             C:\Windows\system32\nsisvc.dll
17:25:31.0995 1908  nsi - ok
17:25:31.0995 1908  [ 1523AF19EE8B030BA682F7A53537EAEB ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
17:25:32.0026 1908  nsiproxy - ok
17:25:32.0057 1908  [ BAC869DFB98E499BA4D9BB1FB43270E1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
17:25:32.0135 1908  Ntfs - ok
17:25:32.0166 1908  [ DD5D684975352B85B52E3FD5347C20CB ] Null            C:\Windows\system32\drivers\Null.sys
17:25:32.0197 1908  Null - ok
17:25:33.0024 1908  [ 0EB204639119370F5F8F2871FBF4E14B ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
17:25:33.0477 1908  nvlddmkm - ok
17:25:33.0508 1908  [ 2C040B7ADA5B06F6FACADAC8514AA034 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
17:25:33.0523 1908  nvraid - ok
17:25:33.0523 1908  [ F7EA0FE82842D05EDA3EFDD376DBFDBA ] nvstor          C:\Windows\system32\drivers\nvstor.sys
17:25:33.0539 1908  nvstor - ok
17:25:33.0570 1908  [ 32FF8EE6DCEE5C0CB91FF892FB1CA364 ] nvsvc           C:\Windows\system32\nvvsvc.exe
17:25:33.0586 1908  nvsvc - ok
17:25:33.0648 1908  [ BD012DC22C78BE1071BC21EB125D782F ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
17:25:33.0726 1908  nvUpdatusService - ok
17:25:33.0757 1908  [ 19067CA93075EF4823E3938A686F532F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
17:25:33.0773 1908  nv_agp - ok
17:25:33.0789 1908  NwlnkFlt - ok
17:25:33.0789 1908  NwlnkFwd - ok
17:25:33.0804 1908  [ B5B1CE65AC15BBD11C0619E3EF7CFC28 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
17:25:33.0835 1908  ohci1394 - ok
17:25:33.0851 1908  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:25:33.0867 1908  ose - ok
17:25:33.0898 1908  [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2pimsvc        C:\Windows\system32\p2psvc.dll
17:25:33.0960 1908  p2pimsvc - ok
17:25:33.0991 1908  [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2psvc          C:\Windows\system32\p2psvc.dll
17:25:34.0023 1908  p2psvc - ok
17:25:34.0023 1908  [ 4C6A7FD04DDF4DB88791048382E3EDB1 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
17:25:34.0054 1908  Parport - ok
17:25:34.0085 1908  [ F9B5EDA4C17A2BE7663F064DBF0FE254 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
17:25:34.0101 1908  partmgr - ok
17:25:34.0116 1908  [ 9AB157B374192FF276C1628FBDBA2B0E ] PcaSvc          C:\Windows\System32\pcasvc.dll
17:25:34.0147 1908  PcaSvc - ok
17:25:34.0163 1908  [ 47AB1E0FC9D0E12BB53BA246E3A0906D ] pci             C:\Windows\system32\drivers\pci.sys
17:25:34.0194 1908  pci - ok
17:25:34.0194 1908  [ 2657F6C0B78C36D95034BE109336E382 ] pciide          C:\Windows\system32\drivers\pciide.sys
17:25:34.0210 1908  pciide - ok
17:25:34.0225 1908  [ 037661F3D7C507C9993B7010CEEE6288 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
17:25:34.0241 1908  pcmcia - ok
17:25:34.0257 1908  [ 58865916F53592A61549B04941BFD80D ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
17:25:34.0350 1908  PEAUTH - ok
17:25:34.0740 1908  [ 0ED8727EA0172860F47258456C06CAEA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
17:25:34.0803 1908  PerfHost - ok
17:25:34.0943 1908  [ E9E68C1A0F25CF4A7AC966EEA74EE89E ] pla             C:\Windows\system32\pla.dll
17:25:35.0021 1908  pla - ok
17:25:35.0052 1908  [ FE6B0F59215C9FD9F9D26539C58C8B82 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
17:25:35.0083 1908  PlugPlay - ok
17:25:35.0115 1908  [ AC78DF349F0E4CFB8B667C0CFFF83CCE ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
17:25:35.0115 1908  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
17:25:35.0115 1908  Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
17:25:35.0115 1908  PnkBstrA - ok
17:25:35.0146 1908  [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPAutoReg     C:\Windows\system32\p2psvc.dll
17:25:35.0177 1908  PNRPAutoReg - ok
17:25:35.0208 1908  [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPsvc         C:\Windows\system32\p2psvc.dll
17:25:35.0224 1908  PNRPsvc - ok
17:25:35.0302 1908  [ 89A5560671C2D8B4A4B51F3E1AA069D8 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
17:25:35.0395 1908  PolicyAgent - ok
17:25:35.0427 1908  [ 23386E9952025F5F21C368971E2E7301 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
17:25:35.0458 1908  PptpMiniport - ok
17:25:35.0473 1908  [ 5080E59ECEE0BC923F14018803AA7A01 ] Processor       C:\Windows\system32\drivers\processr.sys
17:25:35.0505 1908  Processor - ok
17:25:35.0536 1908  [ E058CE4FC2449D8BFA14739C83B7FF2A ] ProfSvc         C:\Windows\system32\profsvc.dll
17:25:35.0583 1908  ProfSvc - ok
17:25:35.0598 1908  [ 40348DCEC0712ED42231C5F90A69A690 ] ProtectedStorage C:\Windows\system32\lsass.exe
17:25:35.0614 1908  ProtectedStorage - ok
17:25:35.0645 1908  [ C5AB7F0809392D0DA027F4A2A81BFA31 ] PSched          C:\Windows\system32\DRIVERS\pacer.sys
17:25:35.0661 1908  PSched - ok
17:25:35.0692 1908  [ 0B83F4E681062F3839BE2EC1D98FD94A ] ql2300          C:\Windows\system32\drivers\ql2300.sys
17:25:35.0754 1908  ql2300 - ok
17:25:35.0770 1908  [ E1C80F8D4D1E39EF9595809C1369BF2A ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
17:25:35.0785 1908  ql40xx - ok
17:25:35.0817 1908  [ 90574842C3DA781E279061A3EFF91F07 ] QWAVE           C:\Windows\system32\qwave.dll
17:25:35.0832 1908  QWAVE - ok
17:25:35.0848 1908  [ E8D76EDAB77EC9C634C27B8EAC33ADC5 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
17:25:35.0863 1908  QWAVEdrv - ok
17:25:35.0879 1908  [ 1013B3B663A56D3DDD784F581C1BD005 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
17:25:35.0910 1908  RasAcd - ok
17:25:35.0926 1908  [ B2AE18F847D07F0044404DDF7CB04497 ] RasAuto         C:\Windows\System32\rasauto.dll
17:25:35.0973 1908  RasAuto - ok
17:25:35.0988 1908  [ AC7BC4D42A7E558718DFDEC599BBFC2C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
17:25:36.0019 1908  Rasl2tp - ok
17:25:36.0035 1908  [ 3AD83E4046C43BE510DE681588ACB8AF ] RasMan          C:\Windows\System32\rasmans.dll
17:25:36.0082 1908  RasMan - ok
17:25:36.0082 1908  [ 4517FBF8B42524AFE4EDE1DE102AAE3E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
17:25:36.0097 1908  RasPppoe - ok
17:25:36.0113 1908  [ C6A593B51F34C33E5474539544072527 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
17:25:36.0113 1908  RasSstp - ok
17:25:36.0144 1908  [ 322DB5C6B55E8D8EE8D6F358B2AAABB1 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
17:25:36.0175 1908  rdbss - ok
17:25:36.0175 1908  [ 603900CC05F6BE65CCBF373800AF3716 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
17:25:36.0207 1908  RDPCDD - ok
17:25:36.0222 1908  [ C045D1FB111C28DF0D1BE8D4BDA22C06 ] rdpdr           C:\Windows\system32\drivers\rdpdr.sys
17:25:36.0269 1908  rdpdr - ok
17:25:36.0269 1908  [ CAB9421DAF3D97B33D0D055858E2C3AB ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
17:25:36.0300 1908  RDPENCDD - ok
17:25:36.0331 1908  [ B1D741C87CEA8D7282146366CC9C3F81 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
17:25:36.0347 1908  RDPWD - ok
17:25:36.0363 1908  [ C612B9557DA73F70D41F8A6FBC8E5344 ] RemoteAccess    C:\Windows\System32\mprdim.dll
17:25:36.0394 1908  RemoteAccess - ok
17:25:36.0409 1908  [ 44B9D8EC2F3EF3A0EFB00857AF70D861 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
17:25:36.0425 1908  RemoteRegistry - ok
17:25:36.0472 1908  [ 06A49B7BDC36CFBF97DD90804F833369 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared Files\RichVideo.exe
17:25:36.0472 1908  RichVideo - ok
17:25:36.0487 1908  [ F46C457840D4B7A4DAAFEE739CE04102 ] RpcLocator      C:\Windows\system32\locator.exe
17:25:36.0519 1908  RpcLocator - ok
17:25:36.0534 1908  [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] RpcSs           C:\Windows\system32\rpcss.dll
17:25:36.0565 1908  RpcSs - ok
17:25:36.0597 1908  [ 22A9CB08B1A6707C1550C6BF099AAE73 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
17:25:36.0643 1908  rspndr - ok
17:25:36.0643 1908  [ F389399FD2204C94C4DA16A00AAB68F2 ] RTL8023x64      C:\Windows\system32\DRIVERS\Rtnic64.sys
17:25:36.0706 1908  RTL8023x64 - ok
17:25:36.0737 1908  [ 82B66ABF055611024E5DBB9FA556C11D ] RTL8169         C:\Windows\system32\DRIVERS\Rtlh64.sys
17:25:36.0768 1908  RTL8169 - ok
17:25:36.0768 1908  RTL8192su - ok
17:25:36.0799 1908  [ D1664991A07ACF2703D4A4E5BE4B6C80 ] RtlProt         C:\Windows\system32\DRIVERS\rtlprot.sys
17:25:36.0799 1908  RtlProt - ok
17:25:36.0815 1908  [ 40348DCEC0712ED42231C5F90A69A690 ] SamSs           C:\Windows\system32\lsass.exe
17:25:36.0815 1908  SamSs - ok
17:25:36.0831 1908  [ CD9C693589C60AD59BBBCFB0E524E01B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
17:25:36.0831 1908  sbp2port - ok
17:25:36.0955 1908  [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService  E:\Programme\Spybot - Search & Destroy\SDWinSec.exe
17:25:37.0018 1908  SBSDWSCService - ok
17:25:37.0065 1908  [ FD1CDCF108D5EF3366F00D18B70FB89B ] SCardSvr        C:\Windows\System32\SCardSvr.dll
17:25:37.0127 1908  SCardSvr - ok
17:25:37.0174 1908  [ 0F838C811AD295D2A4489B9993096C63 ] Schedule        C:\Windows\system32\schedsvc.dll
17:25:37.0221 1908  Schedule - ok
17:25:37.0252 1908  [ 5A268127633C7EE2A7FB87F39D748D56 ] SCPolicySvc     C:\Windows\System32\certprop.dll
17:25:37.0267 1908  SCPolicySvc - ok
17:25:37.0314 1908  [ 4FF71B076A7760FE75EA5AE2D0EE0018 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
17:25:37.0330 1908  SDRSVC - ok
17:25:37.0345 1908  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
17:25:37.0408 1908  secdrv - ok
17:25:37.0423 1908  [ 5ACDCBC67FCF894A1815B9F96D704490 ] seclogon        C:\Windows\system32\seclogon.dll
17:25:37.0455 1908  seclogon - ok
17:25:37.0455 1908  [ 90973A64B96CD647FF81C79443618EED ] SENS            C:\Windows\System32\sens.dll
17:25:37.0501 1908  SENS - ok
17:25:37.0517 1908  [ 2449316316411D65BD2C761A6FFB2CE2 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
17:25:37.0564 1908  Serenum - ok
17:25:37.0564 1908  [ 4B438170BE2FC8E0BD35EE87A960F84F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
17:25:37.0611 1908  Serial - ok
17:25:37.0626 1908  [ A842F04833684BCEEA7336211BE478DF ] sermouse        C:\Windows\system32\drivers\sermouse.sys
17:25:37.0657 1908  sermouse - ok
17:25:37.0657 1908  [ A8E4A4407A09F35DCCC3771AF590B0C4 ] SessionEnv      C:\Windows\system32\sessenv.dll
17:25:37.0689 1908  SessionEnv - ok
17:25:37.0720 1908  [ 4FCACE92BB0345D58BB96ADBD69F5237 ] sfdrv01         C:\Windows\system32\drivers\sfdrv01.sys
17:25:37.0735 1908  sfdrv01 - ok
17:25:37.0735 1908  [ 14D4B4465193A87C127933978E8C4106 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
17:25:37.0767 1908  sffdisk - ok
17:25:37.0782 1908  [ 7073AEE3F82F3D598E3825962AA98AB2 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
17:25:37.0813 1908  sffp_mmc - ok
17:25:37.0829 1908  [ 35E59EBE4A01A0532ED67975161C7B82 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
17:25:37.0860 1908  sffp_sd - ok
17:25:37.0876 1908  [ 17F6BD95BF04B924F4C05CE78BEF8AE6 ] sfhlp02         C:\Windows\system32\drivers\sfhlp02.sys
17:25:37.0891 1908  sfhlp02 - ok
17:25:37.0907 1908  [ 6B7838C94135768BD455CBDC23E39E5F ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
17:25:37.0954 1908  sfloppy - ok
17:25:37.0954 1908  [ DC8059641CFCDD222175542439C6B601 ] sfsync03        C:\Windows\system32\drivers\sfsync03.sys
17:25:37.0969 1908  sfsync03 - ok
17:25:37.0985 1908  [ F3B72568A6FA36E5D63D30B8186D1C48 ] sfvfs02         C:\Windows\system32\drivers\sfvfs02.sys
17:25:38.0001 1908  sfvfs02 - ok
17:25:38.0032 1908  [ 56793271ECDEDD350C5ADD305603E963 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:25:38.0063 1908  ShellHWDetection - ok
17:25:38.0079 1908  [ 7A5DE502AEB719D4594C6471060A78B3 ] SiSRaid2        C:\Windows\system32\drivers\sisraid2.sys
17:25:38.0094 1908  SiSRaid2 - ok
17:25:38.0110 1908  [ 3A2F769FAB9582BC720E11EA1DFB184D ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
17:25:38.0110 1908  SiSRaid4 - ok
17:25:38.0157 1908  [ C70AEBD3608ED9FCEA2A1BAE83567FFC ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
17:25:38.0172 1908  SkypeUpdate - ok
17:25:38.0219 1908  [ A9A27A8E257B45A604FDAD4F26FE7241 ] slsvc           C:\Windows\system32\SLsvc.exe
17:25:38.0359 1908  slsvc - ok
17:25:38.0359 1908  [ FD74B4B7C2088E390A30C85A896FC3AF ] SLUINotify      C:\Windows\system32\SLUINotify.dll
17:25:38.0391 1908  SLUINotify - ok
17:25:38.0406 1908  [ 290B6F6A0EC4FCDFC90F5CB6D7020473 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
17:25:38.0437 1908  Smb - ok
17:25:38.0437 1908  [ F8F47F38909823B1AF28D60B96340CFF ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
17:25:38.0469 1908  SNMPTRAP - ok
17:25:38.0469 1908  [ 386C3C63F00A7040C7EC5E384217E89D ] spldr           C:\Windows\system32\drivers\spldr.sys
17:25:38.0484 1908  spldr - ok
17:25:38.0515 1908  [ F66FF751E7EFC816D266977939EF5DC3 ] Spooler         C:\Windows\System32\spoolsv.exe
17:25:38.0531 1908  Spooler - ok
17:25:38.0562 1908  [ 602884696850C86434530790B110E8EB ] sptd            C:\Windows\system32\Drivers\sptd.sys
17:25:38.0562 1908  Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850C86434530790B110E8EB
17:25:38.0562 1908  sptd ( LockedFile.Multi.Generic ) - warning
17:25:38.0562 1908  sptd - detected LockedFile.Multi.Generic (1)
17:25:38.0578 1908  [ 880A57FCCB571EBD063D4DD50E93E46D ] srv             C:\Windows\system32\DRIVERS\srv.sys
17:25:38.0609 1908  srv - ok
17:25:38.0625 1908  [ A1AD14A6D7A37891FFFECA35EBBB0730 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
17:25:38.0640 1908  srv2 - ok
17:25:38.0656 1908  [ 4BED62F4FA4D8300973F1151F4C4D8A7 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
17:25:38.0671 1908  srvnet - ok
17:25:38.0687 1908  [ 192C74646EC5725AEF3F80D19FF75F6A ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
17:25:38.0734 1908  SSDPSRV - ok
17:25:38.0749 1908  [ 2EE3FA0308E6185BA64A9A7F2E74332B ] SstpSvc         C:\Windows\system32\sstpsvc.dll
17:25:38.0749 1908  SstpSvc - ok
17:25:38.0765 1908  Steam Client Service - ok
17:25:38.0827 1908  [ FC0A58529A02B1EED55DDC58696B7908 ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
17:25:38.0874 1908  Stereo Service - ok
17:25:38.0905 1908  [ 15825C1FBFB8779992CB65087F316AF5 ] stisvc          C:\Windows\System32\wiaservc.dll
17:25:38.0937 1908  stisvc - ok
17:25:38.0952 1908  [ 8A851CA908B8B974F89C50D2E18D4F0C ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
17:25:38.0968 1908  swenum - ok
17:25:38.0983 1908  [ 6DE37F4DE19D4EFD9C48C43ADDBC949A ] swprv           C:\Windows\System32\swprv.dll
17:25:39.0030 1908  swprv - ok
17:25:39.0046 1908  [ 2F26A2C6FC96B29BEFF5D8ED74E6625B ] Symc8xx         C:\Windows\system32\drivers\symc8xx.sys
17:25:39.0061 1908  Symc8xx - ok
17:25:39.0061 1908  [ A909667976D3BCCD1DF813FED517D837 ] Sym_hi          C:\Windows\system32\drivers\sym_hi.sys
17:25:39.0077 1908  Sym_hi - ok
17:25:39.0093 1908  [ 36887B56EC2D98B9C362F6AE4DE5B7B0 ] Sym_u3          C:\Windows\system32\drivers\sym_u3.sys
17:25:39.0108 1908  Sym_u3 - ok
17:25:39.0124 1908  [ 92D7A8B0F87B036F17D25885937897A6 ] SysMain         C:\Windows\system32\sysmain.dll
17:25:39.0202 1908  SysMain - ok
17:25:39.0217 1908  [ 005CE42567F9113A3BCCB3B20073B029 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:25:39.0249 1908  TabletInputService - ok
17:25:39.0280 1908  [ CC2562B4D55E0B6A4758C65407F63B79 ] TapiSrv         C:\Windows\System32\tapisrv.dll
17:25:39.0311 1908  TapiSrv - ok
17:25:39.0311 1908  [ CDBE8D7C1E201B911CDC346D06617FB5 ] TBS             C:\Windows\System32\tbssvc.dll
17:25:39.0358 1908  TBS - ok
17:25:39.0389 1908  [ E52F99B1160A1A1DE83223379D2C1828 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
17:25:39.0467 1908  Tcpip - ok
17:25:39.0514 1908  [ E52F99B1160A1A1DE83223379D2C1828 ] Tcpip6          C:\Windows\system32\DRIVERS\tcpip.sys
17:25:39.0561 1908  Tcpip6 - ok
17:25:39.0576 1908  [ C7E72A4071EE0200E3C075DACFB2B334 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
17:25:39.0607 1908  tcpipreg - ok
17:25:39.0623 1908  [ 1D8BF4AAA5FB7A2761475781DC1195BC ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
17:25:39.0654 1908  TDPIPE - ok
17:25:39.0670 1908  [ 7F7E00CDF609DF657F4CDA02DD1C9BB1 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
17:25:39.0732 1908  TDTCP - ok
17:25:39.0732 1908  [ 458919C8C42E398DC4802178D5FFEE27 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
17:25:39.0763 1908  tdx - ok
17:25:39.0779 1908  [ 8C19678D22649EC002EF2282EAE92F98 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
17:25:39.0795 1908  TermDD - ok
17:25:39.0826 1908  [ 5CDD30BC217082DAC71A9878D9BFD566 ] TermService     C:\Windows\System32\termsrv.dll
17:25:39.0857 1908  TermService - ok
17:25:39.0888 1908  [ 56793271ECDEDD350C5ADD305603E963 ] Themes          C:\Windows\system32\shsvcs.dll
17:25:39.0904 1908  Themes - ok
17:25:39.0904 1908  [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] THREADORDER     C:\Windows\system32\mmcss.dll
17:25:39.0935 1908  THREADORDER - ok
17:25:39.0966 1908  [ F4689F05AF472A651A7B1B7B02D200E7 ] TrkWks          C:\Windows\System32\trkwks.dll
17:25:40.0029 1908  TrkWks - ok
17:25:40.0060 1908  [ 66328B08EF5A9305D8EDE36B93930369 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:25:40.0091 1908  TrustedInstaller - ok
17:25:40.0107 1908  [ 9E5409CD17C8BEF193AAD498F3BC2CB8 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
17:25:40.0153 1908  tssecsrv - ok
17:25:40.0231 1908  [ 811A229718C85356BC81EB20F35EB7F6 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
17:25:40.0325 1908  TuneUp.UtilitiesSvc - ok
17:25:40.0356 1908  [ DCC94C51D27C7EC0DADECA8F64C94FCF ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
17:25:40.0356 1908  TuneUpUtilitiesDrv - ok
17:25:40.0372 1908  [ 89EC74A9E602D16A75A4170511029B3C ] tunmp           C:\Windows\system32\DRIVERS\tunmp.sys
17:25:40.0403 1908  tunmp - ok
17:25:40.0419 1908  [ F6A4FBA7C03AC2EFD00F3301C0C1E067 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
17:25:40.0434 1908  tunnel - ok
17:25:40.0450 1908  [ FEC266EF401966311744BD0F359F7F56 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
17:25:40.0465 1908  uagp35 - ok
17:25:40.0465 1908  [ FAF2640A2A76ED03D449E443194C4C34 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
17:25:40.0512 1908  udfs - ok
17:25:40.0528 1908  [ 060507C4113391394478F6953A79EEDC ] UI0Detect       C:\Windows\system32\UI0Detect.exe
17:25:40.0559 1908  UI0Detect - ok
17:25:40.0575 1908  [ 4EC9447AC3AB462647F60E547208CA00 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
17:25:40.0575 1908  uliagpkx - ok
17:25:40.0606 1908  [ 697F0446134CDC8F99E69306184FBBB4 ] uliahci         C:\Windows\system32\drivers\uliahci.sys
17:25:40.0621 1908  uliahci - ok
17:25:40.0637 1908  [ 31707F09846056651EA2C37858F5DDB0 ] UlSata          C:\Windows\system32\drivers\ulsata.sys
17:25:40.0653 1908  UlSata - ok
17:25:40.0668 1908  [ 85E5E43ED5B48C8376281BAB519271B7 ] ulsata2         C:\Windows\system32\drivers\ulsata2.sys
17:25:40.0684 1908  ulsata2 - ok
17:25:40.0699 1908  [ 46E9A994C4FED537DD951F60B86AD3F4 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
17:25:40.0746 1908  umbus - ok
17:25:40.0762 1908  [ 7093799FF80E9DECA0680D2E3535BE60 ] upnphost        C:\Windows\System32\upnphost.dll
17:25:40.0809 1908  upnphost - ok
17:25:40.0824 1908  [ 07E3498FC60834219D2356293DA0FECC ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
17:25:40.0855 1908  usbccgp - ok
17:25:40.0871 1908  [ 9247F7E0B65852C1F6631480984D6ED2 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
17:25:40.0933 1908  usbcir - ok
17:25:40.0965 1908  [ 827E44DE934A736EA31E91D353EB126F ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
17:25:40.0996 1908  usbehci - ok
17:25:41.0027 1908  [ BB35CD80A2ECECFADC73569B3D70C7D1 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
17:25:41.0058 1908  usbhub - ok
17:25:41.0074 1908  [ EBA14EF0C07CEC233F1529C698D0D154 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
17:25:41.0136 1908  usbohci - ok
17:25:41.0152 1908  [ 28B693B6D31E7B9332C1BDCEFEF228C1 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
17:25:41.0183 1908  usbprint - ok
17:25:41.0199 1908  [ B854C1558FCA0C269A38663E8B59B581 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:25:41.0230 1908  USBSTOR - ok
17:25:41.0245 1908  [ B2872CBF9F47316ABD0E0C74A1ABA507 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
17:25:41.0277 1908  usbuhci - ok
17:25:41.0292 1908  [ D76E231E4850BB3F88A3D9A78DF191E3 ] UxSms           C:\Windows\System32\uxsms.dll
17:25:41.0323 1908  UxSms - ok
17:25:41.0355 1908  [ 5BF180F7F7C2F68ED6D5777840270BCE ] UxTuneUp        C:\Windows\System32\uxtuneup.dll
17:25:41.0355 1908  UxTuneUp - ok
17:25:41.0386 1908  [ 294945381DFA7CE58CECF0A9896AF327 ] vds             C:\Windows\System32\vds.exe
17:25:41.0417 1908  vds - ok
17:25:41.0433 1908  [ 916B94BCF1E09873FFF2D5FB11767BBC ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
17:25:41.0479 1908  vga - ok
17:25:41.0479 1908  [ B83AB16B51FEDA65DD81B8C59D114D63 ] VgaSave         C:\Windows\System32\drivers\vga.sys
17:25:41.0511 1908  VgaSave - ok
17:25:41.0526 1908  [ 8294B6C3FDB6C33F24E150DE647ECDAA ] viaide          C:\Windows\system32\drivers\viaide.sys
17:25:41.0542 1908  viaide - ok
17:25:41.0542 1908  [ 2B7E885ED951519A12C450D24535DFCA ] volmgr          C:\Windows\system32\drivers\volmgr.sys
17:25:41.0557 1908  volmgr - ok
17:25:41.0589 1908  [ CEC5AC15277D75D9E5DEC2E1C6EAF877 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
17:25:41.0604 1908  volmgrx - ok
17:25:41.0620 1908  [ 5280AADA24AB36B01A84A6424C475C8D ] volsnap         C:\Windows\system32\drivers\volsnap.sys
17:25:41.0651 1908  volsnap - ok
17:25:41.0667 1908  [ A68F455ED2673835209318DD61BFBB0E ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
17:25:41.0682 1908  vsmraid - ok
17:25:41.0713 1908  [ B75232DAD33BFD95BF6F0A3E6BFF51E1 ] VSS             C:\Windows\system32\vssvc.exe
17:25:41.0807 1908  VSS - ok
17:25:41.0838 1908  [ F14A7DE2EA41883E250892E1E5230A9A ] W32Time         C:\Windows\system32\w32time.dll
17:25:41.0869 1908  W32Time - ok
17:25:41.0885 1908  [ FEF8FE5923FEAD2CEE4DFABFCE3393A7 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
17:25:41.0932 1908  WacomPen - ok
17:25:41.0947 1908  [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
17:25:41.0979 1908  Wanarp - ok
17:25:41.0979 1908  [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
17:25:42.0010 1908  Wanarpv6 - ok
17:25:42.0025 1908  [ B4E4C37D0AA6100090A53213EE2BF1C1 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
17:25:42.0057 1908  wcncsvc - ok
17:25:42.0088 1908  [ EA4B369560E986F19D93F45A881484AC ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:25:42.0103 1908  WcsPlugInService - ok
17:25:42.0150 1908  [ 0C17A0816F65B89E362E682AD5E7266E ] Wd              C:\Windows\system32\drivers\wd.sys
17:25:42.0166 1908  Wd - ok
17:25:42.0181 1908  [ D02E7E4567DA1E7582FBF6A91144B0DF ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
17:25:42.0228 1908  Wdf01000 - ok
17:25:42.0244 1908  [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiServiceHost  C:\Windows\system32\wdi.dll
17:25:42.0291 1908  WdiServiceHost - ok
17:25:42.0291 1908  [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiSystemHost   C:\Windows\system32\wdi.dll
17:25:42.0337 1908  WdiSystemHost - ok
17:25:42.0369 1908  [ 3E6D05381CF35F75EBB055544A8ED9AC ] WebClient       C:\Windows\System32\webclnt.dll
17:25:42.0369 1908  WebClient - ok
17:25:42.0400 1908  [ 8D40BC587993F876658BF9FB0F7D3462 ] Wecsvc          C:\Windows\system32\wecsvc.dll
17:25:42.0415 1908  Wecsvc - ok
17:25:42.0431 1908  [ 9C980351D7E96288EA0C23AE232BD065 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
17:25:42.0462 1908  wercplsupport - ok
17:25:42.0478 1908  [ 66B9ECEBC46683F47EDC06333C075FEF ] WerSvc          C:\Windows\System32\WerSvc.dll
17:25:42.0509 1908  WerSvc - ok
17:25:42.0509 1908  WinHttpAutoProxySvc - ok
17:25:42.0540 1908  [ D2E7296ED1BD26D8DB2799770C077A02 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
17:25:42.0556 1908  Winmgmt - ok
17:25:42.0618 1908  [ 6CBB0C68F13B9C2EC1B16F5FA5E7C869 ] WinRM           C:\Windows\system32\WsmSvc.dll
17:25:42.0696 1908  WinRM - ok
17:25:42.0727 1908  [ EC339C8115E91BAED835957E9A677F16 ] Wlansvc         C:\Windows\System32\wlansvc.dll
17:25:42.0759 1908  Wlansvc - ok
17:25:42.0961 1908  [ 98F138897EF4246381D197CB81846D62 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:25:43.0055 1908  wlidsvc - ok
17:25:43.0086 1908  [ E18AEBAAA5A773FE11AA2C70F65320F5 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
17:25:43.0117 1908  WmiAcpi - ok
17:25:43.0133 1908  [ 21FA389E65A852698B6A1341F36EE02D ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
17:25:43.0195 1908  wmiApSrv - ok
17:25:43.0211 1908  WMPNetworkSvc - ok
17:25:43.0227 1908  [ CBC156C913F099E6680D1DF9307DB7A8 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
17:25:43.0258 1908  WPCSvc - ok
17:25:43.0273 1908  [ A27C8F92D84E2DDC151978E4692C978E ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
17:25:43.0305 1908  WPDBusEnum - ok
17:25:43.0320 1908  [ 6329D1990DB931073B86AB5946D8E317 ] WpdUsb          C:\Windows\system32\DRIVERS\wpdusb.sys
17:25:43.0351 1908  WpdUsb - ok
17:25:43.0367 1908  [ 8A900348370E359B6BFF6A550E4649E1 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
17:25:43.0398 1908  ws2ifsl - ok
17:25:43.0398 1908  WSearch - ok
17:25:43.0429 1908  [ 501A65252617B495C0F1832F908D54D8 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
17:25:43.0461 1908  WUDFRd - ok
17:25:43.0507 1908  [ 6CBD51FF913C851D56ED9DC7F2A27DDE ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
17:25:43.0554 1908  wudfsvc - ok
17:25:43.0570 1908  ================ Scan global ===============================
17:25:43.0601 1908  [ 060DC3A7A9A2626031EB23D90151428D ] C:\Windows\system32\basesrv.dll
17:25:43.0632 1908  [ E5E5E593D4850B0AA24CF58B552147F3 ] C:\Windows\system32\winsrv.dll
17:25:43.0648 1908  [ E5E5E593D4850B0AA24CF58B552147F3 ] C:\Windows\system32\winsrv.dll
17:25:43.0663 1908  [ B8844F93D2C5F1DCDB179AAA9AF134B7 ] C:\Windows\system32\services.exe
17:25:43.0663 1908  [Global] - ok
17:25:43.0663 1908  ================ Scan MBR ==================================
17:25:43.0679 1908  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
17:25:45.0738 1908  \Device\Harddisk0\DR0 - ok
17:25:45.0738 1908  ================ Scan VBR ==================================
17:25:45.0769 1908  [ 3004AA185B84445C0475D4541F5DE4E5 ] \Device\Harddisk0\DR0\Partition1
17:25:45.0785 1908  \Device\Harddisk0\DR0\Partition1 - ok
17:25:45.0816 1908  [ A7822D5BBD75C5BB925724C583874B1B ] \Device\Harddisk0\DR0\Partition2
17:25:45.0832 1908  \Device\Harddisk0\DR0\Partition2 - ok
17:25:45.0847 1908  [ 40E5D39202C540B4065DCB15132AB7D0 ] \Device\Harddisk0\DR0\Partition3
17:25:45.0863 1908  \Device\Harddisk0\DR0\Partition3 - ok
17:25:45.0863 1908  ============================================================
17:25:45.0863 1908  Scan finished
17:25:45.0863 1908  ============================================================
17:25:45.0863 3360  Detected object count: 8
17:25:45.0863 3360  Actual detected object count: 8
17:26:03.0132 3360  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  DokanMounter ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  DokanMounter ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
17:26:03.0148 3360  sptd ( LockedFile.Multi.Generic ) - skipped by user
17:26:03.0148 3360  sptd ( LockedFile.Multi.Generic ) - User select action: Skip
         

Alt 14.09.2012, 22:05   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________

__________________

Alt 15.09.2012, 16:48   #18
Granade
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Moin Cosinus,

eine Frage hätte ich noch. Bin bisher immer davon ausgeganen, dass wenn ich bei Antivir den Echtzeit Scanner ausgschalte, Antivir für die Suchläufe deaktiviert ist.
Combofix meldet aber, dass Antivir auch danach noch läuft und erkannt wird.

Wie deaktiviere ich es denn "richtig" für den Scan? Habe in den Optionen dafür nichts gefunden!

Gruß
__________________

Alt 16.09.2012, 15:47   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Wenn der Regenschirm geschlossen ist reicht das aus.
AntiVir meldet eine Deaktivierung des Scanners nicht immer sauber ans Sicherheitscenter von Windows weiter. Und an den Status orientiert CF sich.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 03.10.2012, 15:18   #20
Granade
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Sorry Cosinus, bin im Urlaub gewesen und daher erst jetzt die Rückmeldung.

Genau da liegt das Problem, ich bekomme den "Regenschirm" nicht geschlossen, ich finde einfach die Option "Deaktivieren" nicht. Vermutlich bin ich aber auch einfach blind....

Es kommt leider noch ein weiteres Problem hinzu, tuneup meldet mir das meine Firewall ausgeschaltet ist. Gehe ich nun über Systemsteuerung --> Sicherheit--> Windows Firewall ein/auschalten meldet mir der Rechner "Aufgrund eines unbekannten Fehlers können die Einstellungen der Windows Firewall nicht angezeigt werden.

Woran könnte das liegen?

Gruß und einen schönen Feiertag!


Alt 03.10.2012, 19:35   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
TR/ATRAPS.Gen2 gefunden - Standard

TR/ATRAPS.Gen2 gefunden



Dann deinstallier Avira einfach
Wenn wir fertig sind gibt es einen Ersatz dafür
__________________
--> TR/ATRAPS.Gen2 gefunden

Antwort

Themen zu TR/ATRAPS.Gen2 gefunden
antivir, avira, besitzer, bho, black, conduit, converter, desktop, downloader, entfernen, error, excel, firefox, flash player, helper, home, install.exe, jdownloader, log-datei, logfile, mp3, nvidia update, plug-in, problem, realtek, registry, scan, security, server, software, storm, super, svchost.exe, teamspeak, vista, winload toolbar




Ähnliche Themen: TR/ATRAPS.Gen2 gefunden


  1. TR/ATRAPS.Gen/Gen2 von Avira gefunden
    Plagegeister aller Art und deren Bekämpfung - 06.10.2013 (21)
  2. TR/ATRAPS.Gen2 gefunden in Windows\installer
    Plagegeister aller Art und deren Bekämpfung - 15.06.2013 (53)
  3. TR/ATRAPS.Gen2 und W32/Patched.UC gefunden
    Plagegeister aller Art und deren Bekämpfung - 31.05.2013 (10)
  4. TR/Sirefef.AG.9, TR/ATRAPS.Gen2 von Avira auf dem PC gefunden
    Log-Analyse und Auswertung - 14.05.2013 (15)
  5. TR/ATRAPS.Gen2 und W32/Patched.UC gefunden
    Plagegeister aller Art und deren Bekämpfung - 13.05.2013 (19)
  6. Trojaner: tr/atraps.gen2, tr/atraps.gen, tr/atraps.gen3, tr/atraps.gen4, tr/atraps.gen5, tr/atraps.gen7 und services.exe virus
    Plagegeister aller Art und deren Bekämpfung - 11.01.2013 (29)
  7. TR/ATRAPS.Gen & TR/ATRAPS.Gen2 durch Avira gefunden
    Plagegeister aller Art und deren Bekämpfung - 10.11.2012 (3)
  8. TR/ATRAPS.Gen2 gefunden
    Log-Analyse und Auswertung - 24.10.2012 (10)
  9. TR/ATRAPS.Gen2 von Avira gefunden
    Log-Analyse und Auswertung - 13.07.2012 (3)
  10. TR/ATRAPS.Gen , TR/ATRAPS.Gen2 und Live Security Platinum gefunden
    Plagegeister aller Art und deren Bekämpfung - 12.07.2012 (3)
  11. Virus gefunden: TR/ATRAPS.Gen, TR/ATRAPS.Gen2
    Plagegeister aller Art und deren Bekämpfung - 12.07.2012 (1)
  12. TR/ATRAPS.Gen/Gen2 gefunden
    Log-Analyse und Auswertung - 03.07.2012 (25)
  13. TR/Small.FI, TR/ATRAPS.Gen und TR/ATRAPS.Gen2 gefunden, aber nach Systemwiederherstellung weg?
    Plagegeister aller Art und deren Bekämpfung - 25.06.2012 (4)
  14. Tr/ATRAPS.Gen2 / TR/TRAPS.Gen / TR/Small.FI gefunden
    Plagegeister aller Art und deren Bekämpfung - 21.06.2012 (6)
  15. tr/atraps.gen2 gefunden und Registryänderungen festgestellt
    Plagegeister aller Art und deren Bekämpfung - 18.06.2012 (7)
  16. antivir hat tr/atraps.gen2 gefunden - was tun?
    Plagegeister aller Art und deren Bekämpfung - 07.03.2012 (17)
  17. TR/ATRAPS.Gen2 gefunden.
    Plagegeister aller Art und deren Bekämpfung - 22.01.2012 (18)

Zum Thema TR/ATRAPS.Gen2 gefunden - Moin, hier das LOG: Code: Alles auswählen Aufklappen ATTFilter 17:24:26.0380 3612 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48 17:24:26.0410 3612 ============================================================ 17:24:26.0410 3612 Current date / time: 2012/09/14 - TR/ATRAPS.Gen2 gefunden...
Archiv
Du betrachtest: TR/ATRAPS.Gen2 gefunden auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.