Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Self-Activator Trojaner?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 22.11.2012, 16:23   #1
Tens142
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Guten Tag,

ich habe mir MW2 als Key kauft, aber da das Spiel in russisch ist musste ich einen Self-Activator benutzen um es zu aktivieren. Jetzt habe ich mit Kaspersky gescannt und Kasperssky sagt mir, dass es 4 Trojaner gefunden hat. Auf der Seite steht zwar, dass es kein Trojaner wäre aber stimmt das? Kaspersky hat die Trojaner bereits gelöscht, aber muss ich jetzt meine Passwörter neu machen und könnte noch eine andre Schadsoftware auf meine PC sein? Hier ist der Link: hxxp://gamekeys.biz/forum/showthread.php?534-Selfactivator-by-Gamekeys-biz

MfG,

Tens142

Alt 27.11.2012, 08:30   #2
M-K-D-B
/// TB-Ausbilder
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?






Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.


Bitte beachte folgende Hinweise:
  • Eine Bereinigung ist mitunter mit viel Arbeit für dich verbunden. Es können mehrere Analyse- und Bereinigungsschritte erforderlich sein.
    Abschließend entfernen wir wieder alle verwendeten Programme und ich gebe dir ein paar Tipps für die Zukunft mit auf den Weg.
  • Bei Anzeichen von illegaler Software wird der Support ohne Diskussion eingestellt.
  • Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Führe nur Scans durch, zu denen du von mir oder einem anderen Helfer aufgefordert wirst.
  • Bitte kein Crossposting (posten in mehreren Foren).
  • Installiere oder deinstalliere während der Bereinigung keine Software außer du wirst dazu aufgefordert.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo.
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort zu starten!
    Ich kann Dir niemals eine Garantie geben, dass auch ich alles finde. Eine Formatierung ist meist der schnellere und immer der sicherste Weg.
    Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis dir jemand vom Team sagt, dass Du clean bist.





Hab mir die zip Datei angesehen. Also für mich ist das schädlich, egal was auf der Downloadseite steht.
Wir schauen uns deinen Rechner etwas genauer an.





Schritt 1
Downloade dir bitte DDS ( von sUBs ) von einem der folgenden Downloadspiegel und speichere die Datei auf deinem Desktop.

dds.com
dds.exe
  • Starte bitte dds mit einem Doppelklick.
  • Der Desktop wird verschwinden, das ist normal.
  • Setze bitte einen Haken bei
    • dds.txt ( Sollte angehakt sein )
    • attach.txt
    Ändere keine Einstellungen ohne Anweisung
  • Wenn der Scan beendet ist, wird DDS 2 Logfiles auf deinem Desktop erstellen:
    • dds.txt
    • attach.txt
Bitte poste beide Logfiles in deiner nächsten Antwort.





Schritt 2
Downloade Dir bitte defogger von jpshortstuff auf Deinem Desktop.
  • Starte das Tool mit Doppelklick.
  • Klicke nun auf den Disable Button, um die Treiber gewisser Emulatoren zu deaktivieren.
  • Defogger wird dich fragen "Defogger will forcefully terminate and disable all CD Emulator related drivers and processes... Continue?" bestätige diese Sicherheitsabfrage mit Ja.
  • Wenn der Scan beendet wurde (Finished), klicke auf OK.
  • Defogger fordert gegebenfalls zum Neustart auf. Bestätige dies mit OK.
  • Defogger erstellt auf dem Desktop eine Logdatei mit dem Namen defogger_disable.txt. Poste deren Inhalt mit deiner nächsten Antwort.
Klicke den Re-enable Button nicht ohne Anweisung!





Schritt 3
Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Vista und Win7 User mit Rechtsklick "als Admininstartor starten"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. ( Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.





Schritt 4
Lese bitte folgende Anweisungen genau. Wir wollen hier noch nichts "fixen" sondern nur einen Scan Report sehen.

Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und speichere das Logfile.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern ( Meistens C:\ )
    Als Beispiel: C:\TDSSKiller.<version_date_time>log.txt
Poste den Inhalt bitte hier in deinen Thread.





Bitte poste mit deiner nächsten Antwort
  • die beiden Logdateien von DDS,
  • die Logdatei von DeFogger,
  • die Logdatei von aswMBR,
  • die Logdatei von TDSSKiller.
__________________

__________________

Alt 27.11.2012, 18:20   #3
Tens142
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Guten Abend,

hier sind die Logfiles:

Code:
ATTFilter
aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2012-11-27 16:52:37
-----------------------------
16:52:37.330    OS Version: Windows x64 6.1.7601 Service Pack 1
16:52:37.330    Number of processors: 4 586 0x2A07
16:52:37.331    ComputerName: TENS-PC  UserName: Tens
16:52:39.097    Initialize success
16:53:25.939    AVAST engine defs: 12112700
16:53:32.326    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:53:32.328    Disk 0 Vendor: ST3750525AS JC45 Size: 715404MB BusType: 11
16:53:32.345    Disk 0 MBR read successfully
16:53:32.347    Disk 0 MBR scan
16:53:32.352    Disk 0 Windows 7 default MBR code
16:53:32.355    Disk 0 Partition - 00     0F Extended LBA             45502 MB offset 2048
16:53:32.365    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS        82332 MB offset 93394944
16:53:32.385    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       307612 MB offset 262215680
16:53:32.407    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       256512 MB offset 892205056
16:53:32.457    Disk 0 scanning C:\Windows\system32\drivers
16:53:42.025    Service scanning
16:53:57.641    Modules scanning
16:53:57.650    Disk 0 trace - called modules:
16:53:58.001    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys 
16:53:58.006    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007de2060]
16:53:58.011    3 CLASSPNP.SYS[fffff88001e1743f] -> nt!IofCallDriver -> [0xfffffa8007b59520]
16:53:58.016    5 ACPI.sys[fffff88000f417a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8007b091f0]
16:54:04.165    AVAST engine scan C:\Windows
16:54:05.578    AVAST engine scan C:\Windows\system32
16:56:29.671    AVAST engine scan C:\Windows\system32\drivers
16:56:40.411    AVAST engine scan C:\Users\Tens
16:59:32.477    AVAST engine scan C:\ProgramData
17:00:30.857    Scan finished successfully
17:01:02.830    Disk 0 MBR has been saved successfully to "E:\Users\Tens\Desktop\MBR.dat"
17:01:02.834    The log file has been saved successfully to "E:\Users\Tens\Desktop\aswMBR.txt"
         
Code:
ATTFilter
16:58:51.0739 2224  TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:58:52.0041 2224  ============================================================
16:58:52.0041 2224  Current date / time: 2012/11/27 16:58:52.0041
16:58:52.0041 2224  SystemInfo:
16:58:52.0041 2224  
16:58:52.0043 2224  OS Version: 6.1.7601 ServicePack: 1.0
16:58:52.0043 2224  Product type: Workstation
16:58:52.0043 2224  ComputerName: TENS-PC
16:58:52.0043 2224  UserName: Tens
16:58:52.0043 2224  Windows directory: C:\Windows
16:58:52.0043 2224  System windows directory: C:\Windows
16:58:52.0043 2224  Running under WOW64
16:58:52.0043 2224  Processor architecture: Intel x64
16:58:52.0043 2224  Number of processors: 4
16:58:52.0043 2224  Page size: 0x1000
16:58:52.0043 2224  Boot type: Normal boot
16:58:52.0043 2224  ============================================================
16:58:54.0184 2224  Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:58:54.0190 2224  Drive \Device\Harddisk1\DR1 - Size: 0x3BA800000 (14.91 Gb), SectorSize: 0x200, Cylinders: 0x79A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
16:58:54.0191 2224  ============================================================
16:58:54.0191 2224  \Device\Harddisk0\DR0:
16:58:54.0191 2224  MBR partitions:
16:58:54.0206 2224  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x5911800, BlocksNum 0xA0CE000
16:58:54.0206 2224  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA11800, BlocksNum 0x258CE000
16:58:54.0206 2224  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x352DF800, BlocksNum 0x1F500000
16:58:54.0206 2224  \Device\Harddisk1\DR1:
16:58:54.0208 2224  MBR partitions:
16:58:54.0208 2224  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x1F80, BlocksNum 0x1DD2080
16:58:54.0208 2224  ============================================================
16:58:54.0289 2224  C: <-> \Device\Harddisk0\DR0\Partition1
16:58:54.0369 2224  D: <-> \Device\Harddisk0\DR0\Partition2
16:58:54.0513 2224  E: <-> \Device\Harddisk0\DR0\Partition3
16:58:54.0513 2224  ============================================================
16:58:54.0513 2224  Initialize success
16:58:54.0513 2224  ============================================================
16:58:56.0275 3868  ============================================================
16:58:56.0454 3868  Scan started
16:58:56.0454 3868  Mode: Manual; 
16:58:56.0454 3868  ============================================================
16:59:00.0128 3868  ================ Scan system memory ========================
16:59:00.0128 3868  System memory - ok
16:59:00.0129 3868  ================ Scan services =============================
16:59:00.0308 3868  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
16:59:00.0311 3868  1394ohci - ok
16:59:00.0335 3868  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
16:59:00.0340 3868  ACPI - ok
16:59:00.0363 3868  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
16:59:00.0364 3868  AcpiPmi - ok
16:59:00.0441 3868  [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:59:00.0444 3868  AdobeARMservice - ok
16:59:00.0501 3868  [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:59:00.0505 3868  AdobeFlashPlayerUpdateSvc - ok
16:59:00.0544 3868  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
16:59:00.0558 3868  adp94xx - ok
16:59:00.0588 3868  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
16:59:00.0591 3868  adpahci - ok
16:59:00.0623 3868  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
16:59:00.0624 3868  adpu320 - ok
16:59:00.0656 3868  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
16:59:00.0659 3868  AeLookupSvc - ok
16:59:00.0733 3868  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
16:59:00.0765 3868  AFD - ok
16:59:00.0780 3868  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
16:59:00.0783 3868  agp440 - ok
16:59:00.0798 3868  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
16:59:00.0799 3868  ALG - ok
16:59:00.0815 3868  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
16:59:00.0816 3868  aliide - ok
16:59:00.0830 3868  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
16:59:00.0831 3868  amdide - ok
16:59:00.0853 3868  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
16:59:00.0854 3868  AmdK8 - ok
16:59:00.0859 3868  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
16:59:00.0860 3868  AmdPPM - ok
16:59:00.0885 3868  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
16:59:00.0886 3868  amdsata - ok
16:59:00.0920 3868  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
16:59:00.0923 3868  amdsbs - ok
16:59:00.0943 3868  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
16:59:00.0944 3868  amdxata - ok
16:59:00.0961 3868  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
16:59:00.0963 3868  AppID - ok
16:59:00.0986 3868  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
16:59:00.0988 3868  AppIDSvc - ok
16:59:01.0023 3868  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
16:59:01.0024 3868  Appinfo - ok
16:59:01.0073 3868  [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt         C:\Windows\System32\appmgmts.dll
16:59:01.0076 3868  AppMgmt - ok
16:59:01.0089 3868  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
16:59:01.0091 3868  arc - ok
16:59:01.0106 3868  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
16:59:01.0108 3868  arcsas - ok
16:59:01.0315 3868  [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
16:59:01.0318 3868  aspnet_state - ok
16:59:01.0336 3868  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
16:59:01.0338 3868  AsyncMac - ok
16:59:01.0351 3868  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
16:59:01.0351 3868  atapi - ok
16:59:01.0416 3868  [ FC0E8778C000291CAF60EB88C011E931 ] atksgt          C:\Windows\system32\DRIVERS\atksgt.sys
16:59:01.0431 3868  atksgt - ok
16:59:01.0456 3868  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:59:01.0463 3868  AudioEndpointBuilder - ok
16:59:01.0474 3868  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
16:59:01.0479 3868  AudioSrv - ok
16:59:01.0568 3868  [ 587EFD6A3A30A35A27904D21AE1FB882 ] AVP             C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
16:59:01.0571 3868  AVP - ok
16:59:01.0618 3868  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
16:59:01.0620 3868  AxInstSV - ok
16:59:01.0674 3868  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
16:59:01.0681 3868  b06bdrv - ok
16:59:01.0721 3868  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
16:59:01.0738 3868  b57nd60a - ok
16:59:01.0778 3868  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
16:59:01.0780 3868  BDESVC - ok
16:59:01.0796 3868  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
16:59:01.0798 3868  Beep - ok
16:59:01.0846 3868  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
16:59:01.0853 3868  BFE - ok
16:59:01.0879 3868  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
16:59:01.0891 3868  BITS - ok
16:59:01.0923 3868  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
16:59:01.0925 3868  blbdrive - ok
16:59:01.0944 3868  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
16:59:01.0946 3868  bowser - ok
16:59:01.0950 3868  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:59:01.0951 3868  BrFiltLo - ok
16:59:01.0970 3868  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:59:01.0971 3868  BrFiltUp - ok
16:59:01.0998 3868  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
16:59:02.0000 3868  Browser - ok
16:59:02.0021 3868  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
16:59:02.0026 3868  Brserid - ok
16:59:02.0033 3868  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
16:59:02.0034 3868  BrSerWdm - ok
16:59:02.0048 3868  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
16:59:02.0049 3868  BrUsbMdm - ok
16:59:02.0053 3868  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
16:59:02.0054 3868  BrUsbSer - ok
16:59:02.0065 3868  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
16:59:02.0066 3868  BTHMODEM - ok
16:59:02.0080 3868  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
16:59:02.0081 3868  bthserv - ok
16:59:02.0100 3868  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
16:59:02.0101 3868  cdfs - ok
16:59:02.0146 3868  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
16:59:02.0149 3868  cdrom - ok
16:59:02.0179 3868  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
16:59:02.0188 3868  CertPropSvc - ok
16:59:02.0193 3868  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
16:59:02.0195 3868  circlass - ok
16:59:02.0236 3868  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
16:59:02.0241 3868  CLFS - ok
16:59:02.0296 3868  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:59:02.0299 3868  clr_optimization_v2.0.50727_32 - ok
16:59:02.0376 3868  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:59:02.0379 3868  clr_optimization_v2.0.50727_64 - ok
16:59:02.0466 3868  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:59:02.0469 3868  clr_optimization_v4.0.30319_32 - ok
16:59:02.0498 3868  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:59:02.0500 3868  clr_optimization_v4.0.30319_64 - ok
16:59:02.0544 3868  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
16:59:02.0545 3868  CmBatt - ok
16:59:02.0568 3868  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
16:59:02.0569 3868  cmdide - ok
16:59:02.0678 3868  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
16:59:02.0710 3868  CNG - ok
16:59:02.0728 3868  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
16:59:02.0729 3868  Compbatt - ok
16:59:02.0774 3868  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
16:59:02.0775 3868  CompositeBus - ok
16:59:02.0781 3868  COMSysApp - ok
16:59:02.0793 3868  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
16:59:02.0794 3868  crcdisk - ok
16:59:02.0825 3868  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
16:59:02.0829 3868  CryptSvc - ok
16:59:02.0874 3868  [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC             C:\Windows\system32\drivers\csc.sys
16:59:02.0889 3868  CSC - ok
16:59:02.0953 3868  [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService      C:\Windows\System32\cscsvc.dll
16:59:02.0969 3868  CscService - ok
16:59:02.0990 3868  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
16:59:02.0998 3868  DcomLaunch - ok
16:59:03.0029 3868  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
16:59:03.0034 3868  defragsvc - ok
16:59:03.0070 3868  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
16:59:03.0071 3868  DfsC - ok
16:59:03.0133 3868  [ B9430166FEB246F6070A62B3554932C9 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
16:59:03.0135 3868  dg_ssudbus - ok
16:59:03.0189 3868  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
16:59:03.0193 3868  Dhcp - ok
16:59:03.0206 3868  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
16:59:03.0208 3868  discache - ok
16:59:03.0220 3868  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
16:59:03.0223 3868  Disk - ok
16:59:03.0258 3868  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
16:59:03.0260 3868  Dnscache - ok
16:59:03.0318 3868  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
16:59:03.0324 3868  dot3svc - ok
16:59:03.0361 3868  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
16:59:03.0366 3868  DPS - ok
16:59:03.0386 3868  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
16:59:03.0388 3868  drmkaud - ok
16:59:03.0499 3868  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
16:59:03.0508 3868  DXGKrnl - ok
16:59:03.0521 3868  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
16:59:03.0524 3868  EapHost - ok
16:59:03.0689 3868  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
16:59:03.0759 3868  ebdrv - ok
16:59:03.0791 3868  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
16:59:03.0794 3868  EFS - ok
16:59:03.0884 3868  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
16:59:03.0901 3868  ehRecvr - ok
16:59:03.0928 3868  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
16:59:03.0934 3868  ehSched - ok
16:59:03.0973 3868  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
16:59:03.0979 3868  elxstor - ok
16:59:04.0000 3868  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
16:59:04.0001 3868  ErrDev - ok
16:59:04.0046 3868  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
16:59:04.0053 3868  EventSystem - ok
16:59:04.0073 3868  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
16:59:04.0076 3868  exfat - ok
16:59:04.0094 3868  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
16:59:04.0096 3868  fastfat - ok
16:59:04.0185 3868  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
16:59:04.0214 3868  Fax - ok
16:59:04.0218 3868  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
16:59:04.0219 3868  fdc - ok
16:59:04.0234 3868  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
16:59:04.0236 3868  fdPHost - ok
16:59:04.0254 3868  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
16:59:04.0258 3868  FDResPub - ok
16:59:04.0275 3868  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
16:59:04.0278 3868  FileInfo - ok
16:59:04.0286 3868  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
16:59:04.0288 3868  Filetrace - ok
16:59:04.0291 3868  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
16:59:04.0293 3868  flpydisk - ok
16:59:04.0323 3868  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
16:59:04.0348 3868  FltMgr - ok
16:59:04.0419 3868  [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache       C:\Windows\system32\FntCache.dll
16:59:04.0455 3868  FontCache - ok
16:59:04.0509 3868  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:59:04.0515 3868  FontCache3.0.0.0 - ok
16:59:04.0538 3868  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
16:59:04.0539 3868  FsDepends - ok
16:59:04.0593 3868  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
16:59:04.0594 3868  Fs_Rec - ok
16:59:04.0619 3868  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
16:59:04.0621 3868  fvevol - ok
16:59:04.0655 3868  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
16:59:04.0656 3868  gagp30kx - ok
16:59:04.0723 3868  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
16:59:04.0765 3868  gpsvc - ok
16:59:04.0801 3868  [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi         C:\Windows\system32\DRIVERS\hamachi.sys
16:59:04.0803 3868  hamachi - ok
16:59:04.0816 3868  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
16:59:04.0818 3868  hcw85cir - ok
16:59:04.0859 3868  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:59:04.0864 3868  HdAudAddService - ok
16:59:04.0883 3868  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
16:59:04.0885 3868  HDAudBus - ok
16:59:04.0889 3868  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
16:59:04.0891 3868  HidBatt - ok
16:59:04.0909 3868  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
16:59:04.0910 3868  HidBth - ok
16:59:04.0931 3868  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
16:59:04.0933 3868  HidIr - ok
16:59:04.0970 3868  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
16:59:04.0971 3868  hidserv - ok
16:59:05.0003 3868  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
16:59:05.0004 3868  HidUsb - ok
16:59:05.0038 3868  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
16:59:05.0040 3868  hkmsvc - ok
16:59:05.0059 3868  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:59:05.0064 3868  HomeGroupListener - ok
16:59:05.0084 3868  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:59:05.0088 3868  HomeGroupProvider - ok
16:59:05.0106 3868  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
16:59:05.0109 3868  HpSAMD - ok
16:59:05.0199 3868  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
16:59:05.0216 3868  HTTP - ok
16:59:05.0238 3868  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
16:59:05.0240 3868  hwpolicy - ok
16:59:05.0294 3868  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
16:59:05.0300 3868  i8042prt - ok
16:59:05.0323 3868  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
16:59:05.0345 3868  iaStorV - ok
16:59:05.0473 3868  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:59:05.0498 3868  idsvc - ok
16:59:05.0519 3868  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
16:59:05.0520 3868  iirsp - ok
16:59:05.0684 3868  [ A06EFD4965F8A3F97A8C9A291D032678 ] IJPLMSVC        C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
16:59:05.0686 3868  IJPLMSVC - ok
16:59:05.0765 3868  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
16:59:05.0776 3868  IKEEXT - ok
16:59:05.0999 3868  [ 9297BC7FB61F58670EE176DD18F4DD92 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
16:59:06.0018 3868  IntcAzAudAddService - ok
16:59:06.0030 3868  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
16:59:06.0031 3868  intelide - ok
16:59:06.0058 3868  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
16:59:06.0059 3868  intelppm - ok
16:59:06.0091 3868  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
16:59:06.0094 3868  IPBusEnum - ok
16:59:06.0130 3868  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:59:06.0131 3868  IpFilterDriver - ok
16:59:06.0206 3868  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
16:59:06.0221 3868  iphlpsvc - ok
16:59:06.0253 3868  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
16:59:06.0255 3868  IPMIDRV - ok
16:59:06.0276 3868  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
16:59:06.0279 3868  IPNAT - ok
16:59:06.0293 3868  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
16:59:06.0294 3868  IRENUM - ok
16:59:06.0318 3868  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
16:59:06.0319 3868  isapnp - ok
16:59:06.0338 3868  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
16:59:06.0341 3868  iScsiPrt - ok
16:59:06.0376 3868  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
16:59:06.0378 3868  kbdclass - ok
16:59:06.0423 3868  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
16:59:06.0424 3868  kbdhid - ok
16:59:06.0439 3868  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
16:59:06.0440 3868  KeyIso - ok
16:59:06.0535 3868  [ 8B5219318DF5895ABD230C373F2DF18A ] KL1             C:\Windows\system32\DRIVERS\kl1.sys
16:59:06.0546 3868  KL1 - ok
16:59:06.0613 3868  [ 65F3B81FA285EAB641F5E6EF7AEB984D ] KLIF            C:\Windows\system32\DRIVERS\klif.sys
16:59:06.0634 3868  KLIF - ok
16:59:06.0684 3868  [ 9BD99E1AB3F664120AB95C35F9EC1EB0 ] KLIM6           C:\Windows\system32\DRIVERS\klim6.sys
16:59:06.0685 3868  KLIM6 - ok
16:59:06.0702 3868  [ 2C43FD500522EF3B8C283A5846B7FC41 ] klkbdflt        C:\Windows\system32\DRIVERS\klkbdflt.sys
16:59:06.0709 3868  klkbdflt - ok
16:59:06.0728 3868  [ 70A6D2E292017EC47949696F51ABE18D ] klmouflt        C:\Windows\system32\DRIVERS\klmouflt.sys
16:59:06.0730 3868  klmouflt - ok
16:59:06.0754 3868  [ A8081ED8D48FA611D11DB97F49A5343D ] kltdi           C:\Windows\system32\DRIVERS\kltdi.sys
16:59:06.0757 3868  kltdi - ok
16:59:06.0774 3868  [ 185D21CB8F10CFB351FF65DA88C18BC9 ] kneps           C:\Windows\system32\DRIVERS\kneps.sys
16:59:06.0778 3868  kneps - ok
16:59:06.0810 3868  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
16:59:06.0812 3868  KSecDD - ok
16:59:06.0827 3868  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
16:59:06.0839 3868  KSecPkg - ok
16:59:06.0863 3868  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
16:59:06.0864 3868  ksthunk - ok
16:59:06.0908 3868  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
16:59:06.0937 3868  KtmRm - ok
16:59:06.0973 3868  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
16:59:06.0978 3868  LanmanServer - ok
16:59:07.0022 3868  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:59:07.0025 3868  LanmanWorkstation - ok
16:59:07.0180 3868  [ 156AB2E56DC3CA0B582E3362E07CDED7 ] lirsgt          C:\Windows\system32\DRIVERS\lirsgt.sys
16:59:07.0182 3868  lirsgt - ok
16:59:07.0233 3868  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
16:59:07.0235 3868  lltdio - ok
16:59:07.0275 3868  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
16:59:07.0280 3868  lltdsvc - ok
16:59:07.0335 3868  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
16:59:07.0338 3868  lmhosts - ok
16:59:07.0427 3868  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
16:59:07.0429 3868  LSI_FC - ok
16:59:07.0442 3868  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
16:59:07.0442 3868  LSI_SAS - ok
16:59:07.0457 3868  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:59:07.0458 3868  LSI_SAS2 - ok
16:59:07.0478 3868  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:59:07.0478 3868  LSI_SCSI - ok
16:59:07.0490 3868  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
16:59:07.0492 3868  luafv - ok
16:59:07.0560 3868  [ 8FF2D95CBA49B405C5DE27039FF0BF35 ] MBfilt          C:\Windows\system32\drivers\MBfilt64.sys
16:59:07.0568 3868  MBfilt - ok
16:59:07.0594 3868  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
16:59:07.0597 3868  Mcx2Svc - ok
16:59:07.0623 3868  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
16:59:07.0625 3868  megasas - ok
16:59:07.0649 3868  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
16:59:07.0652 3868  MegaSR - ok
16:59:07.0680 3868  [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
16:59:07.0682 3868  MEIx64 - ok
16:59:07.0700 3868  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
16:59:07.0703 3868  MMCSS - ok
16:59:07.0725 3868  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
16:59:07.0725 3868  Modem - ok
16:59:07.0754 3868  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
16:59:07.0757 3868  monitor - ok
16:59:07.0869 3868  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
16:59:07.0872 3868  mouclass - ok
16:59:07.0905 3868  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
16:59:07.0907 3868  mouhid - ok
16:59:07.0955 3868  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
16:59:07.0958 3868  mountmgr - ok
16:59:08.0150 3868  [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:59:08.0154 3868  MozillaMaintenance - ok
16:59:08.0215 3868  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
16:59:08.0218 3868  mpio - ok
16:59:08.0267 3868  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
16:59:08.0268 3868  mpsdrv - ok
16:59:08.0387 3868  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
16:59:08.0409 3868  MpsSvc - ok
16:59:08.0452 3868  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
16:59:08.0454 3868  MRxDAV - ok
16:59:08.0524 3868  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
16:59:08.0527 3868  mrxsmb - ok
16:59:08.0558 3868  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:59:08.0562 3868  mrxsmb10 - ok
16:59:08.0588 3868  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:59:08.0590 3868  mrxsmb20 - ok
16:59:08.0629 3868  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
16:59:08.0630 3868  msahci - ok
16:59:08.0724 3868  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
16:59:08.0727 3868  msdsm - ok
16:59:08.0757 3868  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
16:59:08.0760 3868  MSDTC - ok
16:59:08.0809 3868  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
16:59:08.0810 3868  Msfs - ok
16:59:08.0835 3868  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
16:59:08.0837 3868  mshidkmdf - ok
16:59:08.0850 3868  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
16:59:08.0852 3868  msisadrv - ok
16:59:08.0898 3868  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
16:59:08.0900 3868  MSiSCSI - ok
16:59:08.0904 3868  msiserver - ok
16:59:08.0924 3868  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
16:59:08.0925 3868  MSKSSRV - ok
16:59:08.0938 3868  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
16:59:08.0938 3868  MSPCLOCK - ok
16:59:08.0940 3868  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
16:59:08.0942 3868  MSPQM - ok
16:59:08.0988 3868  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
16:59:08.0995 3868  MsRPC - ok
16:59:09.0009 3868  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
16:59:09.0010 3868  mssmbios - ok
16:59:09.0018 3868  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
16:59:09.0019 3868  MSTEE - ok
16:59:09.0027 3868  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
16:59:09.0028 3868  MTConfig - ok
16:59:09.0043 3868  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
16:59:09.0045 3868  Mup - ok
16:59:09.0109 3868  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
16:59:09.0150 3868  napagent - ok
16:59:09.0197 3868  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
16:59:09.0205 3868  NativeWifiP - ok
16:59:09.0333 3868  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
16:59:09.0367 3868  NDIS - ok
16:59:09.0402 3868  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
16:59:09.0403 3868  NdisCap - ok
16:59:09.0455 3868  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
16:59:09.0457 3868  NdisTapi - ok
16:59:09.0513 3868  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
16:59:09.0515 3868  Ndisuio - ok
16:59:09.0575 3868  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
16:59:09.0589 3868  NdisWan - ok
16:59:09.0660 3868  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
16:59:09.0663 3868  NDProxy - ok
16:59:09.0698 3868  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
16:59:09.0699 3868  NetBIOS - ok
16:59:09.0755 3868  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
16:59:09.0789 3868  NetBT - ok
16:59:09.0810 3868  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
16:59:09.0812 3868  Netlogon - ok
16:59:09.0918 3868  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
16:59:09.0923 3868  Netman - ok
16:59:09.0970 3868  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:09.0974 3868  NetMsmqActivator - ok
16:59:09.0978 3868  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:09.0979 3868  NetPipeActivator - ok
16:59:09.0999 3868  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
16:59:10.0007 3868  netprofm - ok
16:59:10.0010 3868  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:10.0013 3868  NetTcpActivator - ok
16:59:10.0017 3868  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
16:59:10.0018 3868  NetTcpPortSharing - ok
16:59:10.0070 3868  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
16:59:10.0073 3868  nfrd960 - ok
16:59:10.0108 3868  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
16:59:10.0110 3868  NlaSvc - ok
16:59:10.0144 3868  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
16:59:10.0145 3868  Npfs - ok
16:59:10.0182 3868  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
16:59:10.0184 3868  nsi - ok
16:59:10.0210 3868  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
16:59:10.0212 3868  nsiproxy - ok
16:59:10.0300 3868  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
16:59:10.0333 3868  Ntfs - ok
16:59:10.0399 3868  NTIOLib_1_0_3 - ok
16:59:10.0419 3868  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
16:59:10.0420 3868  Null - ok
16:59:10.0473 3868  [ 0EBC9D13CD96C15B1B18D8678A609E4B ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
16:59:10.0477 3868  nusb3hub - ok
16:59:10.0512 3868  [ 7BDEC000D56D485021D9C1E63C2F81CA ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
16:59:10.0514 3868  nusb3xhc - ok
16:59:10.0592 3868  [ 1F07B814C0BB5AABA703ABFF1F31F2E8 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
16:59:10.0594 3868  NVHDA - ok
16:59:11.0483 3868  [ 5104BAC2DA2A5BDD86AC6B0708B00F06 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:59:11.0535 3868  nvlddmkm - ok
16:59:11.0585 3868  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
16:59:11.0589 3868  nvraid - ok
16:59:11.0640 3868  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
16:59:11.0648 3868  nvstor - ok
16:59:11.0723 3868  [ DDFAFCE89A5C93D04712B86F94E9FCBA ] nvsvc           C:\Windows\system32\nvvsvc.exe
16:59:11.0733 3868  nvsvc - ok
16:59:11.0848 3868  [ 84E035225474E48CD3A6A3CE52332095 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
16:59:11.0859 3868  nvUpdatusService - ok
16:59:11.0892 3868  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
16:59:11.0893 3868  nv_agp - ok
16:59:11.0912 3868  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
16:59:11.0913 3868  ohci1394 - ok
16:59:11.0963 3868  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
16:59:11.0988 3868  p2pimsvc - ok
16:59:12.0039 3868  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
16:59:12.0055 3868  p2psvc - ok
16:59:12.0073 3868  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
16:59:12.0075 3868  Parport - ok
16:59:12.0093 3868  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
16:59:12.0097 3868  partmgr - ok
16:59:12.0110 3868  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
16:59:12.0114 3868  PcaSvc - ok
16:59:12.0139 3868  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
16:59:12.0143 3868  pci - ok
16:59:12.0158 3868  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
16:59:12.0159 3868  pciide - ok
16:59:12.0192 3868  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
16:59:12.0194 3868  pcmcia - ok
16:59:12.0213 3868  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
16:59:12.0214 3868  pcw - ok
16:59:12.0264 3868  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
16:59:12.0288 3868  PEAUTH - ok
16:59:12.0393 3868  [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
16:59:12.0430 3868  PeerDistSvc - ok
16:59:12.0929 3868  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
16:59:12.0935 3868  PerfHost - ok
16:59:13.0045 3868  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
16:59:13.0079 3868  pla - ok
16:59:13.0132 3868  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
16:59:13.0140 3868  PlugPlay - ok
16:59:13.0173 3868  PnkBstrA - ok
16:59:13.0194 3868  PnkBstrB - ok
16:59:13.0215 3868  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
16:59:13.0218 3868  PNRPAutoReg - ok
16:59:13.0239 3868  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
16:59:13.0243 3868  PNRPsvc - ok
16:59:13.0289 3868  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
16:59:13.0307 3868  PolicyAgent - ok
16:59:13.0357 3868  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
16:59:13.0362 3868  Power - ok
16:59:13.0388 3868  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
16:59:13.0389 3868  PptpMiniport - ok
16:59:13.0403 3868  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
16:59:13.0404 3868  Processor - ok
16:59:13.0450 3868  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
16:59:13.0455 3868  ProfSvc - ok
16:59:13.0473 3868  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:59:13.0475 3868  ProtectedStorage - ok
16:59:13.0512 3868  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
16:59:13.0514 3868  Psched - ok
16:59:13.0702 3868  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
16:59:13.0737 3868  ql2300 - ok
16:59:13.0759 3868  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
16:59:13.0762 3868  ql40xx - ok
16:59:13.0782 3868  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
16:59:13.0788 3868  QWAVE - ok
16:59:13.0800 3868  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
16:59:13.0802 3868  QWAVEdrv - ok
16:59:13.0813 3868  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
16:59:13.0814 3868  RasAcd - ok
16:59:13.0867 3868  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
16:59:13.0868 3868  RasAgileVpn - ok
16:59:13.0888 3868  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
16:59:13.0892 3868  RasAuto - ok
16:59:13.0932 3868  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
16:59:13.0935 3868  Rasl2tp - ok
16:59:13.0969 3868  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
16:59:13.0990 3868  RasMan - ok
16:59:14.0020 3868  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
16:59:14.0023 3868  RasPppoe - ok
16:59:14.0043 3868  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
16:59:14.0045 3868  RasSstp - ok
16:59:14.0080 3868  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
16:59:14.0104 3868  rdbss - ok
16:59:14.0145 3868  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
16:59:14.0147 3868  rdpbus - ok
16:59:14.0184 3868  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
16:59:14.0185 3868  RDPCDD - ok
16:59:14.0227 3868  [ 1B6163C503398B23FF8B939C67747683 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
16:59:14.0230 3868  RDPDR - ok
16:59:14.0263 3868  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
16:59:14.0264 3868  RDPENCDD - ok
16:59:14.0284 3868  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
16:59:14.0285 3868  RDPREFMP - ok
16:59:14.0317 3868  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
16:59:14.0320 3868  RDPWD - ok
16:59:14.0365 3868  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
16:59:14.0368 3868  rdyboost - ok
16:59:14.0388 3868  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
16:59:14.0390 3868  RemoteAccess - ok
16:59:14.0422 3868  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
16:59:14.0428 3868  RemoteRegistry - ok
16:59:14.0457 3868  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
16:59:14.0460 3868  RpcEptMapper - ok
16:59:14.0464 3868  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
16:59:14.0467 3868  RpcLocator - ok
16:59:14.0503 3868  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
16:59:14.0509 3868  RpcSs - ok
16:59:14.0524 3868  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
16:59:14.0527 3868  rspndr - ok
16:59:14.0595 3868  [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
16:59:14.0600 3868  RTL8167 - ok
16:59:14.0627 3868  [ E60C0A09F997826C7627B244195AB581 ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
16:59:14.0628 3868  s3cap - ok
16:59:14.0647 3868  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
16:59:14.0649 3868  SamSs - ok
16:59:14.0663 3868  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
16:59:14.0665 3868  sbp2port - ok
16:59:14.0684 3868  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
16:59:14.0689 3868  SCardSvr - ok
16:59:14.0695 3868  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
16:59:14.0698 3868  scfilter - ok
16:59:14.0810 3868  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
16:59:14.0843 3868  Schedule - ok
16:59:14.0867 3868  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
16:59:14.0868 3868  SCPolicySvc - ok
16:59:14.0894 3868  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
16:59:14.0899 3868  SDRSVC - ok
16:59:15.0534 3868  [ 206387AB881E93A1A6EB89966C8651F1 ] SDScannerService E:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
16:59:15.0543 3868  SDScannerService - ok
16:59:15.0919 3868  [ A529CFE32565C0B145578FFB2B32C9A5 ] SDUpdateService E:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
16:59:15.0930 3868  SDUpdateService - ok
16:59:15.0963 3868  [ CB63BDB77BB86549FC3303C2F11EDC18 ] SDWSCService    E:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
16:59:15.0965 3868  SDWSCService - ok
16:59:16.0015 3868  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
16:59:16.0017 3868  secdrv - ok
16:59:16.0053 3868  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
16:59:16.0055 3868  seclogon - ok
16:59:16.0093 3868  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
16:59:16.0098 3868  SENS - ok
16:59:16.0109 3868  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
16:59:16.0112 3868  SensrSvc - ok
16:59:16.0130 3868  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
16:59:16.0132 3868  Serenum - ok
16:59:16.0162 3868  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
16:59:16.0164 3868  Serial - ok
16:59:16.0202 3868  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
16:59:16.0203 3868  sermouse - ok
16:59:16.0249 3868  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
16:59:16.0253 3868  SessionEnv - ok
16:59:16.0289 3868  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
16:59:16.0290 3868  sffdisk - ok
16:59:16.0329 3868  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
16:59:16.0330 3868  sffp_mmc - ok
16:59:16.0355 3868  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
16:59:16.0357 3868  sffp_sd - ok
16:59:16.0370 3868  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
16:59:16.0373 3868  sfloppy - ok
16:59:16.0397 3868  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
16:59:16.0403 3868  SharedAccess - ok
16:59:16.0424 3868  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:59:16.0429 3868  ShellHWDetection - ok
16:59:16.0440 3868  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
16:59:16.0442 3868  SiSRaid2 - ok
16:59:16.0457 3868  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
16:59:16.0459 3868  SiSRaid4 - ok
16:59:16.0537 3868  [ DDAA5F4A6B958FC313EBD02DD925752F ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
16:59:16.0632 3868  SkypeUpdate - ok
16:59:16.0657 3868  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
16:59:16.0658 3868  Smb - ok
16:59:16.0718 3868  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
16:59:16.0722 3868  SNMPTRAP - ok
16:59:16.0744 3868  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
16:59:16.0747 3868  spldr - ok
16:59:16.0822 3868  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
16:59:16.0839 3868  Spooler - ok
16:59:17.0117 3868  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
16:59:17.0144 3868  sppsvc - ok
16:59:17.0169 3868  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
16:59:17.0172 3868  sppuinotify - ok
16:59:17.0202 3868  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
16:59:17.0218 3868  srv - ok
16:59:17.0290 3868  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
16:59:17.0333 3868  srv2 - ok
16:59:17.0350 3868  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
16:59:17.0354 3868  srvnet - ok
16:59:17.0393 3868  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
16:59:17.0398 3868  SSDPSRV - ok
16:59:17.0417 3868  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
16:59:17.0419 3868  SstpSvc - ok
16:59:17.0480 3868  [ C692C94FE55CAD0633440236022C27B3 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
16:59:17.0489 3868  ssudmdm - ok
16:59:17.0514 3868  Steam Client Service - ok
16:59:17.0603 3868  [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service  C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
16:59:17.0607 3868  Stereo Service - ok
16:59:17.0633 3868  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
16:59:17.0634 3868  stexstor - ok
16:59:17.0688 3868  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
16:59:17.0713 3868  stisvc - ok
16:59:17.0755 3868  [ 7785DC213270D2FC066538DAF94087E7 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
16:59:17.0758 3868  storflt - ok
16:59:17.0790 3868  [ C40841817EF57D491F22EB103DA587CC ] StorSvc         C:\Windows\system32\storsvc.dll
16:59:17.0794 3868  StorSvc - ok
16:59:17.0823 3868  [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
16:59:17.0825 3868  storvsc - ok
16:59:17.0860 3868  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
16:59:17.0863 3868  swenum - ok
16:59:17.0908 3868  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
16:59:17.0932 3868  swprv - ok
16:59:18.0057 3868  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
16:59:18.0087 3868  SysMain - ok
16:59:18.0155 3868  [ D7E795032847A6E6E9FBC5E296AE0838 ] SystemStore     C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.WindowsService.exe
16:59:18.0174 3868  SystemStore - ok
16:59:18.0203 3868  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:59:18.0210 3868  TabletInputService - ok
16:59:18.0267 3868  [ B08740047145B9BCE15BF75CA0F9718A ] tap0901t        C:\Windows\system32\DRIVERS\tap0901t.sys
16:59:18.0268 3868  tap0901t - ok
16:59:18.0292 3868  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
16:59:18.0298 3868  TapiSrv - ok
16:59:18.0320 3868  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
16:59:18.0324 3868  TBS - ok
16:59:18.0439 3868  [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
16:59:18.0474 3868  Tcpip - ok
16:59:18.0570 3868  [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
16:59:18.0585 3868  TCPIP6 - ok
16:59:18.0599 3868  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
16:59:18.0600 3868  tcpipreg - ok
16:59:18.0622 3868  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
16:59:18.0623 3868  TDPIPE - ok
16:59:18.0653 3868  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
16:59:18.0654 3868  TDTCP - ok
16:59:18.0689 3868  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
16:59:18.0692 3868  tdx - ok
16:59:18.0707 3868  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
16:59:18.0708 3868  TermDD - ok
16:59:18.0767 3868  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
16:59:18.0793 3868  TermService - ok
16:59:18.0805 3868  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
16:59:18.0808 3868  Themes - ok
16:59:18.0823 3868  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
16:59:18.0824 3868  THREADORDER - ok
16:59:18.0848 3868  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
16:59:18.0852 3868  TrkWks - ok
16:59:18.0929 3868  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:59:18.0947 3868  TrustedInstaller - ok
16:59:18.0984 3868  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
16:59:18.0985 3868  tssecsrv - ok
16:59:19.0060 3868  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
16:59:19.0062 3868  TsUsbFlt - ok
16:59:19.0252 3868  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
16:59:19.0254 3868  tunnel - ok
16:59:19.0488 3868  [ 2FD0FE0A0C721C8E47C5A3AE16E519B1 ] TunngleService  E:\Program Files (x86)\Tunngle\TnglCtrl.exe
16:59:19.0795 3868  TunngleService - ok
16:59:19.0812 3868  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
16:59:19.0812 3868  uagp35 - ok
16:59:19.0855 3868  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
16:59:19.0860 3868  udfs - ok
16:59:19.0899 3868  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
16:59:19.0902 3868  UI0Detect - ok
16:59:19.0943 3868  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
16:59:19.0944 3868  uliagpkx - ok
16:59:19.0993 3868  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
16:59:19.0994 3868  umbus - ok
16:59:20.0017 3868  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
16:59:20.0018 3868  UmPass - ok
16:59:20.0030 3868  [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService    C:\Windows\System32\umrdp.dll
16:59:20.0035 3868  UmRdpService - ok
16:59:20.0059 3868  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
16:59:20.0065 3868  upnphost - ok
16:59:20.0208 3868  [ 842B334B1F1FDF631F43AD70C3DB9401 ] USBADVAU        C:\Windows\system32\drivers\cm11264.sys
16:59:20.0367 3868  USBADVAU - ok
16:59:20.0392 3868  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
16:59:20.0393 3868  usbaudio - ok
16:59:20.0415 3868  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
16:59:20.0417 3868  usbccgp - ok
16:59:20.0447 3868  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
16:59:20.0449 3868  usbcir - ok
16:59:20.0463 3868  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
16:59:20.0464 3868  usbehci - ok
16:59:20.0488 3868  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
16:59:20.0493 3868  usbhub - ok
16:59:20.0507 3868  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
16:59:20.0508 3868  usbohci - ok
16:59:20.0542 3868  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
16:59:20.0543 3868  usbprint - ok
16:59:20.0568 3868  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
16:59:20.0569 3868  usbscan - ok
16:59:20.0592 3868  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:59:20.0593 3868  USBSTOR - ok
16:59:20.0618 3868  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
16:59:20.0620 3868  usbuhci - ok
16:59:20.0637 3868  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
16:59:20.0639 3868  UxSms - ok
16:59:20.0658 3868  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
16:59:20.0659 3868  VaultSvc - ok
16:59:20.0682 3868  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
16:59:20.0683 3868  vdrvroot - ok
16:59:20.0755 3868  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
16:59:20.0788 3868  vds - ok
16:59:20.0810 3868  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
16:59:20.0813 3868  vga - ok
16:59:20.0827 3868  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
16:59:20.0829 3868  VgaSave - ok
16:59:20.0849 3868  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
16:59:20.0853 3868  vhdmp - ok
16:59:20.0877 3868  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
16:59:20.0878 3868  viaide - ok
16:59:20.0895 3868  [ 86EA3E79AE350FEA5331A1303054005F ] vmbus           C:\Windows\system32\drivers\vmbus.sys
16:59:20.0899 3868  vmbus - ok
16:59:20.0915 3868  [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
16:59:20.0917 3868  VMBusHID - ok
16:59:20.0939 3868  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
16:59:20.0947 3868  volmgr - ok
16:59:20.0983 3868  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
16:59:20.0989 3868  volmgrx - ok
16:59:21.0030 3868  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
16:59:21.0034 3868  volsnap - ok
16:59:21.0089 3868  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
16:59:21.0092 3868  vsmraid - ok
16:59:21.0169 3868  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
16:59:21.0200 3868  VSS - ok
16:59:21.0203 3868  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
16:59:21.0204 3868  vwifibus - ok
16:59:21.0228 3868  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
16:59:21.0250 3868  W32Time - ok
16:59:21.0273 3868  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
16:59:21.0274 3868  WacomPen - ok
16:59:21.0310 3868  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
16:59:21.0312 3868  WANARP - ok
16:59:21.0328 3868  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
16:59:21.0329 3868  Wanarpv6 - ok
16:59:21.0403 3868  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
16:59:21.0433 3868  wbengine - ok
16:59:21.0462 3868  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
16:59:21.0467 3868  WbioSrvc - ok
16:59:21.0508 3868  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
16:59:21.0514 3868  wcncsvc - ok
16:59:21.0549 3868  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:59:21.0552 3868  WcsPlugInService - ok
16:59:21.0574 3868  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
16:59:21.0575 3868  Wd - ok
16:59:21.0638 3868  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
16:59:21.0663 3868  Wdf01000 - ok
16:59:21.0678 3868  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
16:59:21.0682 3868  WdiServiceHost - ok
16:59:21.0685 3868  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
16:59:21.0689 3868  WdiSystemHost - ok
16:59:21.0712 3868  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
16:59:21.0732 3868  WebClient - ok
16:59:21.0757 3868  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
16:59:21.0762 3868  Wecsvc - ok
16:59:21.0777 3868  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
16:59:21.0779 3868  wercplsupport - ok
16:59:21.0803 3868  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
16:59:21.0807 3868  WerSvc - ok
16:59:21.0817 3868  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
16:59:21.0818 3868  WfpLwf - ok
16:59:21.0857 3868  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
16:59:21.0858 3868  WIMMount - ok
16:59:21.0892 3868  WinDefend - ok
16:59:21.0898 3868  WinHttpAutoProxySvc - ok
16:59:21.0953 3868  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
16:59:21.0957 3868  Winmgmt - ok
16:59:22.0132 3868  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
16:59:22.0182 3868  WinRM - ok
16:59:22.0214 3868  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
16:59:22.0217 3868  WinUsb - ok
16:59:22.0302 3868  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
16:59:22.0337 3868  Wlansvc - ok
16:59:22.0586 3868  [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:59:22.0645 3868  wlidsvc - ok
16:59:22.0671 3868  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
16:59:22.0672 3868  WmiAcpi - ok
16:59:22.0696 3868  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
16:59:22.0700 3868  wmiApSrv - ok
16:59:22.0717 3868  WMPNetworkSvc - ok
16:59:22.0743 3868  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
16:59:22.0747 3868  WPCSvc - ok
16:59:22.0782 3868  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
16:59:22.0787 3868  WPDBusEnum - ok
16:59:22.0805 3868  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
16:59:22.0808 3868  ws2ifsl - ok
16:59:22.0818 3868  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
16:59:22.0822 3868  wscsvc - ok
16:59:22.0826 3868  WSearch - ok
16:59:23.0007 3868  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
16:59:23.0058 3868  wuauserv - ok
16:59:23.0096 3868  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
16:59:23.0102 3868  WudfPf - ok
16:59:23.0135 3868  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
16:59:23.0147 3868  WUDFRd - ok
16:59:23.0160 3868  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
16:59:23.0163 3868  wudfsvc - ok
16:59:23.0186 3868  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
16:59:23.0191 3868  WwanSvc - ok
16:59:23.0197 3868  ================ Scan global ===============================
16:59:23.0215 3868  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:59:23.0257 3868  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
16:59:23.0266 3868  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
16:59:23.0296 3868  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:59:23.0336 3868  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:59:23.0342 3868  [Global] - ok
16:59:23.0343 3868  ================ Scan MBR ==================================
16:59:23.0362 3868  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:59:24.0222 3868  \Device\Harddisk0\DR0 - ok
16:59:24.0226 3868  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
16:59:24.0232 3868  \Device\Harddisk1\DR1 - ok
16:59:24.0232 3868  ================ Scan VBR ==================================
16:59:24.0258 3868  [ CBC51346D64F56317D6D6AC20E829188 ] \Device\Harddisk0\DR0\Partition1
16:59:24.0476 3868  \Device\Harddisk0\DR0\Partition1 - ok
16:59:24.0520 3868  [ 53E9D7CECECE07578024FDFF3359589F ] \Device\Harddisk0\DR0\Partition2
16:59:24.0522 3868  \Device\Harddisk0\DR0\Partition2 - ok
16:59:24.0608 3868  [ 6A6120BE20E536CF8DC3E4C6633BD23F ] \Device\Harddisk0\DR0\Partition3
16:59:24.0712 3868  \Device\Harddisk0\DR0\Partition3 - ok
16:59:24.0717 3868  [ A8729201EF10B7422A607B3E3DB39F3A ] \Device\Harddisk1\DR1\Partition1
16:59:24.0721 3868  \Device\Harddisk1\DR1\Partition1 - ok
16:59:24.0722 3868  ============================================================
16:59:24.0722 3868  Scan finished
16:59:24.0722 3868  ============================================================
16:59:24.0733 5152  Detected object count: 0
16:59:24.0733 5152  Actual detected object count: 0
16:59:34.0346 4468  Deinitialize success
         
DDS Logfile:
DDS Logfile:
Code:
ATTFilter
DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 9.0.8112.16455
Run by Tens at 16:47:30 on 2012-11-27
Microsoft Windows 7 Professional   6.1.7601.1.1252.49.1031.18.8175.6014 [GMT 1:00]
.
AV: Kaspersky Internet Security *Enabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
SP: Kaspersky Internet Security *Enabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
FW: Kaspersky Internet Security *Enabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
E:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.WindowsService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
E:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
E:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\System32\WUDFHost.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Windows\system\3DG4me.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
E:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
E:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
E:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
E:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
E:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
\\?\C:\Windows\system32\wbem\WMIADAP.EXE
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\taskhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
mStart Page = about:blank
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
BHO: Microsoft-Konto-Anmelde-Hilfsprogramm: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [Spybot-S&D Cleaning] "E:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean
mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
mRun: [SDTray] "E:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
dRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Hinzufügen zu Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{A4879630-3F40-4A44-B473-95CE2A20427F} : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{B5456E0D-3E07-410C-8ACD-97C2DA5D9315} : DHCPNameServer = 7.254.254.254
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: SDWinLogon - SDWinLogon.dll
AppInit_DLLs=  
SSODL: WebCheck - <orphaned>
x64-mStart Page = about:blank
x64-BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
x64-BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files (x86)\Java\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files (x86)\Java\bin\jp2ssv.dll
x64-BHO: URL Advisor Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll
x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
x64-Run: [3DG4me] C:\Windows\System\3DG4me.exe
x64-IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Tens\AppData\Roaming\Mozilla\Firefox\Profiles\q5oxq37x.default\
FF - prefs.js: browser.startup.homepage - google.de
FF - prefs.js: network.proxy.ftp - 94.23.193.165
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - 94.23.193.165
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - 94.23.193.165
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - 94.23.193.165
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll
FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Tens\AppData\Roaming\Mozilla\Firefox\Profiles\q5oxq37x.default\extensions\battlefieldplay4free@ea.com\plugins\npBP4FUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - plugin: E:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll
FF - plugin: E:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - ExtSQL: 2012-10-08 20:51; anti_banner@kaspersky.com; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF - ExtSQL: 2012-10-08 20:51; content_blocker@kaspersky.com; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF - ExtSQL: 2012-10-08 20:51; online_banking@kaspersky.com; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF - ExtSQL: 2012-10-08 20:51; url_advisor@kaspersky.com; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF - ExtSQL: 2012-10-08 20:51; virtual_keyboard@kaspersky.com; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF - ExtSQL: 2012-11-08 16:48; battlefieldplay4free@ea.com; C:\Users\Tens\AppData\Roaming\Mozilla\Firefox\Profiles\q5oxq37x.default\extensions\battlefieldplay4free@ea.com
.
============= SERVICES / DRIVERS ===============
.
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\drivers\klim6.sys [2012-8-2 28504]
R1 kltdi;kltdi;C:\Windows\System32\drivers\kltdi.sys [2012-6-8 54104]
R1 kneps;kneps;C:\Windows\System32\drivers\kneps.sys [2012-8-13 178008]
R2 AVP;Kaspersky Anti-Virus Service;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [2012-8-17 356376]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;E:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2012-11-22 1103392]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;E:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2012-11-22 1369624]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;E:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2012-11-22 168384]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-2 382824]
R2 SystemStore;System Store;C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.WindowsService.exe [2012-5-21 50176]
R3 klkbdflt;Kaspersky Lab KLKBDFLT;C:\Windows\System32\drivers\klkbdflt.sys [2012-5-25 29016]
R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\drivers\klmouflt.sys [2012-7-25 29528]
R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2012-7-2 32344]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2011-2-10 82432]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2011-2-10 181760]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-6-10 539240]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);C:\Windows\System32\drivers\tap0901t.sys [2012-9-30 31232]
R3 USBADVAU;Sennheiser 3D G4ME1 Interface;C:\Windows\System32\drivers\cm11264.sys [2012-7-2 1308160]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-6-7 160944]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-9-19 102368]
S3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-9-19 203104]
S3 StorSvc;Speicherdienst;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 27136]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-7-4 59392]
S3 TunngleService;TunngleService;E:\Program Files (x86)\Tunngle\TnglCtrl.exe [2012-11-25 745368]
.
=============== Created Last 30 ================
.
2012-11-27 15:46:15	9125352	----a-w-	C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B7FD7DC-41D3-4A3F-ADAB-5AC0520AD658}\mpengine.dll
2012-11-25 13:11:32	--------	d-----w-	C:\Users\Tens\AppData\Local\Canon Easy-PhotoPrint EX
2012-11-25 13:11:27	--------	d--h--w-	C:\ProgramData\CanonIJEPPEX
2012-11-25 11:18:27	77824	----a-w-	C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2012-11-25 11:18:27	32768	------w-	C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2012-11-25 11:18:27	225280	------w-	C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll
2012-11-25 11:18:27	176128	------w-	C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2012-11-25 11:18:26	610436	----a-w-	C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe
2012-11-25 10:22:45	--------	d-----w-	C:\Users\Tens\AppData\Roaming\Tunngle
2012-11-25 10:22:45	--------	d-----w-	C:\ProgramData\Tunngle
2012-11-22 22:30:47	--------	d-----w-	C:\ProgramData\Spybot - Search & Destroy
2012-11-22 22:30:39	17272	----a-w-	C:\Windows\System32\sdnclean64.exe
2012-11-22 22:29:44	--------	d-----w-	C:\Users\Tens\AppData\Local\Programs
2012-11-15 13:52:23	2560	----a-w-	C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui
2012-11-15 13:52:22	9728	----a-w-	C:\Windows\System32\Wdfres.dll
2012-11-15 13:52:22	785512	----a-w-	C:\Windows\System32\drivers\Wdf01000.sys
2012-11-15 13:52:22	54376	----a-w-	C:\Windows\System32\drivers\WdfLdr.sys
2012-11-15 13:47:11	87040	----a-w-	C:\Windows\System32\drivers\WUDFPf.sys
2012-11-15 13:47:11	198656	----a-w-	C:\Windows\System32\drivers\WUDFRd.sys
2012-11-15 13:47:10	84992	----a-w-	C:\Windows\System32\WUDFSvc.dll
2012-11-15 13:47:10	744448	----a-w-	C:\Windows\System32\WUDFx.dll
2012-11-15 13:47:10	45056	----a-w-	C:\Windows\System32\WUDFCoinstaller.dll
2012-11-15 13:47:10	229888	----a-w-	C:\Windows\System32\WUDFHost.exe
2012-11-15 13:47:10	194048	----a-w-	C:\Windows\System32\WUDFPlatform.dll
2012-11-15 13:29:48	95744	----a-w-	C:\Windows\System32\synceng.dll
2012-11-15 13:29:48	78336	----a-w-	C:\Windows\SysWow64\synceng.dll
2012-11-09 17:37:10	--------	d-----w-	C:\Users\Tens\AppData\Local\PAYDAY
2012-11-09 17:20:15	189248	----a-w-	C:\Windows\SysWow64\PnkBstrB.exe
2012-11-09 17:20:14	76888	----a-w-	C:\Windows\SysWow64\PnkBstrA.exe
2012-11-02 14:18:59	529424	----a-w-	C:\Windows\System32\d3dx10_37.dll
2012-11-01 13:09:41	--------	d-----w-	C:\Users\Tens\AppData\Local\Trapped Dead
2012-11-01 13:09:40	--------	d-----w-	C:\Users\Tens\AppData\Local\CrashRpt
.
==================== Find3M  ====================
.
2012-11-17 12:05:17	73656	----a-w-	C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-11-17 12:05:17	697272	----a-w-	C:\Windows\SysWow64\FlashPlayerApp.exe
2012-11-15 18:49:55	54104	----a-w-	C:\Windows\System32\drivers\kltdi.sys
2012-11-09 17:22:06	281520	----a-w-	C:\Windows\SysWow64\PnkBstrB.xtr
2012-11-09 17:22:06	281520	----a-w-	C:\Windows\SysWow64\PnkBstrB.ex0
2012-10-18 18:25:58	3149824	----a-w-	C:\Windows\System32\win32k.sys
2012-10-09 18:17:13	55296	----a-w-	C:\Windows\System32\dhcpcsvc6.dll
2012-10-09 18:17:13	226816	----a-w-	C:\Windows\System32\dhcpcore6.dll
2012-10-09 17:40:31	44032	----a-w-	C:\Windows\SysWow64\dhcpcsvc6.dll
2012-10-09 17:40:31	193536	----a-w-	C:\Windows\SysWow64\dhcpcore6.dll
2012-10-08 19:20:15	29528	----a-w-	C:\Windows\System32\drivers\klmouflt.sys
2012-10-08 19:20:15	29016	----a-w-	C:\Windows\System32\drivers\klkbdflt.sys
2012-10-08 11:31:03	2312704	----a-w-	C:\Windows\System32\jscript9.dll
2012-10-08 11:23:52	1392128	----a-w-	C:\Windows\System32\wininet.dll
2012-10-08 11:22:55	1494528	----a-w-	C:\Windows\System32\inetcpl.cpl
2012-10-08 11:18:22	173056	----a-w-	C:\Windows\System32\ieUnatt.exe
2012-10-08 11:17:35	599040	----a-w-	C:\Windows\System32\vbscript.dll
2012-10-08 11:13:33	2382848	----a-w-	C:\Windows\System32\mshtml.tlb
2012-10-08 07:56:24	1800704	----a-w-	C:\Windows\SysWow64\jscript9.dll
2012-10-08 07:48:03	1129472	----a-w-	C:\Windows\SysWow64\wininet.dll
2012-10-08 07:47:44	1427968	----a-w-	C:\Windows\SysWow64\inetcpl.cpl
2012-10-08 07:44:05	142848	----a-w-	C:\Windows\SysWow64\ieUnatt.exe
2012-10-08 07:43:21	420864	----a-w-	C:\Windows\SysWow64\vbscript.dll
2012-10-08 07:40:56	2382848	----a-w-	C:\Windows\SysWow64\mshtml.tlb
2012-10-03 17:56:54	1914248	----a-w-	C:\Windows\System32\drivers\tcpip.sys
2012-10-03 17:44:21	70656	----a-w-	C:\Windows\System32\nlaapi.dll
2012-10-03 17:44:21	303104	----a-w-	C:\Windows\System32\nlasvc.dll
2012-10-03 17:44:17	246272	----a-w-	C:\Windows\System32\netcorehc.dll
2012-10-03 17:44:17	18944	----a-w-	C:\Windows\System32\netevent.dll
2012-10-03 17:44:16	216576	----a-w-	C:\Windows\System32\ncsi.dll
2012-10-03 17:42:16	569344	----a-w-	C:\Windows\System32\iphlpsvc.dll
2012-10-03 16:42:24	18944	----a-w-	C:\Windows\SysWow64\netevent.dll
2012-10-03 16:42:24	175104	----a-w-	C:\Windows\SysWow64\netcorehc.dll
2012-10-03 16:42:23	156672	----a-w-	C:\Windows\SysWow64\ncsi.dll
2012-10-03 16:07:26	45568	----a-w-	C:\Windows\System32\drivers\tcpipreg.sys
2012-10-02 19:51:15	3536817	----a-w-	C:\Windows\System32\nvcoproc.bin
2012-10-02 19:51:11	3293544	----a-w-	C:\Windows\System32\nvsvc64.dll
2012-10-02 19:51:04	6200680	----a-w-	C:\Windows\System32\nvcpl.dll
2012-10-02 19:50:57	891240	----a-w-	C:\Windows\System32\nvvsvc.exe
2012-10-02 19:50:57	63336	----a-w-	C:\Windows\System32\nvshext.dll
2012-10-02 19:50:57	2557800	----a-w-	C:\Windows\System32\nvsvcr.dll
2012-10-02 19:50:57	118120	----a-w-	C:\Windows\System32\nvmctray.dll
2012-10-02 11:15:52	430952	----a-w-	C:\Windows\SysWow64\nvStreaming.exe
2012-09-28 20:32:08	2177688	----a-w-	C:\Windows\System32\coin92.dll
2012-09-21 14:22:24	314016	----a-w-	C:\Windows\System32\drivers\atksgt.sys
2012-09-21 14:22:23	43680	----a-w-	C:\Windows\System32\drivers\lirsgt.sys
2012-09-19 08:02:08	102368	----a-w-	C:\Windows\System32\drivers\ssudbus.sys
2012-09-19 08:02:06	203104	----a-w-	C:\Windows\System32\drivers\ssudmdm.sys
2012-09-14 19:19:29	2048	----a-w-	C:\Windows\System32\tzres.dll
2012-09-14 18:28:53	2048	----a-w-	C:\Windows\SysWow64\tzres.dll
2012-09-04 17:22:58	178800	----a-w-	C:\Windows\SysWow64\CmdLineExt_x64.dll
2012-08-31 18:19:35	1659760	----a-w-	C:\Windows\System32\drivers\ntfs.sys
2012-08-30 18:03:45	5559664	----a-w-	C:\Windows\System32\ntoskrnl.exe
2012-08-30 17:12:02	3968880	----a-w-	C:\Windows\SysWow64\ntkrnlpa.exe
2012-08-30 17:12:02	3914096	----a-w-	C:\Windows\SysWow64\ntoskrnl.exe
.
============= FINISH: 16:48:09,11 ===============
         
[/CODE]
--- --- ---

--- --- ---

Code:
ATTFilter
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional 
Boot Device: \Device\HarddiskVolume1
Install Date: 02.07.2012 18:47:14
System Uptime: 27.11.2012 16:41:26 (0 hours ago)
.
Motherboard: MSI |  | P67A-GD55 (MS-7681)
Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz | CPU 1 | 1584/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 80 GiB total, 39,427 GiB free.
D: is FIXED (NTFS) - 300 GiB total, 66,072 GiB free.
E: is FIXED (NTFS) - 250 GiB total, 154,222 GiB free.
F: is CDROM ()
G: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e96b-e325-11ce-bfc1-08002be10318}
Description: Standardtastatur (PS/2)
Device ID: ACPI\PNP0303\4&1CDD7D08&0
Manufacturer: (Standardtastaturen)
Name: Standardtastatur (PS/2)
PNP Device ID: ACPI\PNP0303\4&1CDD7D08&0
Service: i8042prt
.
Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
Description: Microsoft PS/2-Maus
Device ID: ACPI\PNP0F03\4&1CDD7D08&0
Manufacturer: Microsoft
Name: Microsoft PS/2-Maus
PNP Device ID: ACPI\PNP0F03\4&1CDD7D08&0
Service: i8042prt
.
==== System Restore Points ===================
.
RP132: 23.11.2012 19:41:22 - Windows Update
RP133: 24.11.2012 12:34:57 - Windows Update
RP134: 25.11.2012 12:18:33 - Installiert EMPIRE EARTH - PATCH 1.0.4.0
RP135: 27.11.2012 16:45:52 - Windows Update
.
==== Installed Programs ======================
.
Adobe Flash Player 11 Plugin
Adobe Reader X (10.1.4) - Deutsch
Amazon MP3-Downloader 1.0.17
Anno 1404
Ant Renamer
ARMA 2
ARMA 2: Operation Arrowhead
Ashampoo Burning Studio 6 FREE v.6.80
Auslogics Disk Defrag
Battlefield 3™
Battlefield: Bad Company 2
BattlEye for OA Uninstall
Blitzkrieg Mod
Borderlands
Borderlands 2
Call of Duty: Black Ops
Call of Duty: Black Ops - Multiplayer
Call of Duty: Modern Warfare 2 - Multiplayer
Call of Duty: Modern Warfare 3
Call of Duty: Modern Warfare 3 - Multiplayer
Canon Easy-WebPrint EX
Canon Inkjet Printer/Scanner/Fax Extended Survey Program
Canon iP4700 series Benutzerregistrierung
Canon iP4700 series Printer Driver
Canon MP Navigator EX 2.0
Canon Utilities Easy-PhotoPrint EX
Canon Utilities My Printer
Canon Utilities Solution Menu
CanoScan 5600F Scanner Driver
CCleaner
CD-LabelPrint
Command and Conquer 3: Tiberium Wars
Company of Heroes
Company of Heroes - FAKEMSI
ControlCenter
Counter-Strike
Counter-Strike: Condition Zero
Counter-Strike: Condition Zero Deleted Scenes
Counter-Strike: Source
Crysis
Crysis 2 Maximum Edition
Crysis Warhead
Crysis Wars
D3DX10
DayZ Commander
Diablo III
DX-Ball 1.09
Empire Earth Ultimate Edition
ESN Sonar
Fallout 3 - Game of the Year Edition
Fotogalerie
Glary Utilities 2.49.0.1600
Grand Theft Auto IV
Grand Theft Auto: Episodes from Liberty City
Intel(R) Management Engine Components
Java(TM) 7 Update 5 (64-bit)
Kaspersky Internet Security 2013
Killing Floor
Left 4 Dead 2
Mein CEWE FOTOBUCH
Microsoft .NET Framework 1.1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile DEU Language Pack
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Movie Maker
Mozilla Firefox 16.0.2 (x86 de)
Mozilla Maintenance Service
Mozilla Thunderbird 13.0.1 (x86 de)
Mozilla Thunderbird 16.0.2 (x86 de)
MSVCRT
MSVCRT110
MSVCRT110_amd64
Napoleon: Total War
NVIDIA 3D Vision Controller-Treiber 306.97
NVIDIA 3D Vision Treiber 306.97
NVIDIA Grafiktreiber 306.97
NVIDIA HD-Audiotreiber 1.3.18.0
NVIDIA Install Application
NVIDIA PhysX
NVIDIA Stereoscopic 3D Driver
NVIDIA Systemsteuerung 306.97
NVIDIA Update 1.10.8
NVIDIA Update Components
OpenOffice.org 3.4
Origin
PAYDAY: The Heist
Photo Common
Photo Gallery
PlanetSide 2
PunkBuster Services
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Renesas Electronics USB 3.0 Host Controller Driver
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Sennheiser 3D G4ME1
Skype™ 5.10
Speccy
Spybot - Search & Destroy
Steam
Sweepi 5.4.00
TeamSpeak 3 Client
Trapped Dead
Trine 2
TubeBox
Tunngle beta
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
VLC media player 2.0.2
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
WinRAR 4.20 (32-Bit)
.
==== End Of File ===========================
         
Code:
ATTFilter
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 16:50 on 27/11/2012 (Tens)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


-=E.O.F=-
         
Das sollte alles sein! Noch eine Frage. Muss ich jetzt wieder beim Defogger Re-anable drücken? Also ich habe es noch nicht gemacht.

Danke für die schnelle Antwort!

Tens142
__________________

Alt 27.11.2012, 18:58   #4
M-K-D-B
/// TB-Ausbilder
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Servus,



Zitat:
Zitat von Tens142 Beitrag anzeigen
Muss ich jetzt wieder beim Defogger Re-anable drücken? Also ich habe es noch nicht gemacht.
machen wir zum Schluss.





Ich sehe, dass du sog. Registry Cleaner auf dem System hast.
In deinem Fall CCleaner.

Wir empfehlen auf keinen Fall jegliche Art von Registry Cleaner.

Der Grund ist ganz einfach:

Die Registry ist das Hirn des Systems. Funktioniert das Hirn nicht, funktioniert der Rest nicht mehr wirklich.
Wir lesen oft genug von Hilfesuchenden, dass deren System nach der Nutzung von Registry Cleanern nicht mehr booted.
  • Wie soll der Cleaner zu 100% wissen ob der Eintrag benötigt wird oder nicht ?
  • Es ist vollkommen egal ob ein paar verwaiste Registry Einträge am System sind oder nicht.
  • Auch die dauernd angepriesene Beschleunigung des Systems ist nur bedingt wahr. Du würdest es nicht merken.
Ein sogenanntes False Positive von einem Cleaner kann auch dein System unbootbar machen.
Zerstörst Du die Registry, zerstörst Du Windows.

Ich empfehle dir hiermit die oben genannte Software zu deinstallieren und in Zukunft auf solche Art von Software zu verzichten.
Am Ende empfehle ich dir ein anderes Tool, mit dem du deine temporären Dateien entfernen kannst.





Hast du diesen Proxy-Server eingerichtet?
Zitat:
FF - prefs.js: network.proxy.ftp - 94.23.193.165
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - 94.23.193.165
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - 94.23.193.165
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - 94.23.193.165
FF - prefs.js: network.proxy.ssl_port - 8080

Alt 27.11.2012, 19:15   #5
Tens142
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Hi,

den Proxy-Server habe ich nicht eingerichtet! Ich denke das war der Self-Activator oder kann es sein das Tunngle den eingerichtet hat?

MfG,

Tens142


Geändert von Tens142 (27.11.2012 um 19:33 Uhr)

Alt 27.11.2012, 19:36   #6
M-K-D-B
/// TB-Ausbilder
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Servus,



Zitat:
Zitat von Tens142 Beitrag anzeigen
oder kann es sein das Tunngle den eingerichtet hat?
Ja, auch gut möglich.







Schritt 1
  • Starte Malwarebytes' Anti-Malware, klicke auf Aktualisierung --> Suche nach Aktualisierung
  • Wenn das Update beendet wurde, aktiviere Quick-Scan durchführen und drücke auf Scannen.
  • Wenn der Scan beendet ist, klicke auf Ergebnisse anzeigen.
  • Versichere Dich, dass alle Funde markiert sind und drücke Entferne Auswahl.
  • Poste das Logfile, welches sich in Notepad öffnet, hier in den Thread.
  • Nachträglich kannst du den Bericht unter "Log Dateien" finden.





Schritt 2

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset







Schritt 3
Downloade Dir bitte SecurityCheck
  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS- Box.
    Vista und Win7 User mit Rechtsklick "als Administrator starten"
  • Wenn der Scan beendet wurde sollte sich ein Textdokument ( checkup.txt ) öffnen.
Poste den Inhalt bitte hier.





Bitte poste mit deiner nächsten Antwort
  • die Logdatei von MBAM,
  • die Logdatei von ESET,
  • die Logdatei von SecurityCheck.
__________________
--> Self-Activator Trojaner?

Alt 30.11.2012, 16:31   #7
M-K-D-B
/// TB-Ausbilder
 
Self-Activator Trojaner? - Standard

Self-Activator Trojaner?



Fehlende Rückmeldung
Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten.
PM an mich falls Du denoch weiter machen willst.

Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist.

Jeder andere bitte hier klicken und einen eigenen Thread erstellen!

Antwort

Themen zu Self-Activator Trojaner?
aktiviere, bereits, gefunde, gelöscht, gescannt, guten, kaspersky, kauft, link, neu, passwörter, russisch, schadsoftware, seite, spiel, troja, trojaner, trojaner gefunden, trojaner;self-activator, trojaner?




Zum Thema Self-Activator Trojaner? - Guten Tag, ich habe mir MW2 als Key kauft, aber da das Spiel in russisch ist musste ich einen Self-Activator benutzen um es zu aktivieren. Jetzt habe ich mit Kaspersky - Self-Activator Trojaner?...
Archiv
Du betrachtest: Self-Activator Trojaner? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.