Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: bprotector for Windows gefunden...Wie richtig entfernen?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 16.03.2013, 23:38   #16
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Nein das kann nicht sein. Welchen Browser verwendest du?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 19.03.2013, 07:54   #17
MysteriusGen
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Ich verwende Chrome. Aber habe meinen Fehler gefunden. Danke für den Hinweis
__________________


Alt 19.03.2013, 12:26   #18
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Welchen Fehler genau meinst du?
__________________
__________________

Alt 19.03.2013, 15:20   #19
MysteriusGen
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Den Fehler mit dem Code. Jetzt weiß ich wie es geht.

Alt 19.03.2013, 15:32   #20
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



aswMBR

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).




TDSS-Killer

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 25.03.2013, 10:22   #21
MysteriusGen
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Hier die Log der aswMBR:

Code:
ATTFilter
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-03-25 10:13:44
-----------------------------
10:13:44.047    OS Version: Windows 6.1.7601 Service Pack 1
10:13:44.047    Number of processors: 2 586 0x2A07
10:13:44.049    ComputerName: STINA-PC  UserName: Stina
10:13:45.763    Initialize success
10:13:59.789    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
10:13:59.791    Disk 0 Vendor: WDC_WD3200BPVT-24JJ5T0 01.01A01 Size: 305245MB BusType: 11
10:13:59.895    Disk 0 MBR read successfully
10:13:59.899    Disk 0 MBR scan
10:13:59.903    Disk 0 Windows 7 default MBR code
10:13:59.907    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
10:13:59.915    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS        55142 MB offset 206848
10:13:59.929    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       244000 MB offset 113137664
10:13:59.932    Disk 0 Partition - 00     0F Extended LBA              6001 MB offset 612849664
10:13:59.973    Disk 0 Partition 4 00     07    HPFS/NTFS NTFS         6000 MB offset 612851712
10:13:59.980    Disk 0 scanning sectors +625139712
10:14:00.030    Disk 0 scanning C:\Windows\system32\drivers
10:14:11.329    Service scanning
10:14:27.340    Modules scanning
10:14:35.709    Disk 0 trace - called modules:
10:14:35.726    ntkrnlpa.exe CLASSPNP.SYS disk.sys ataport.SYS halmacpi.dll PCIIDEX.SYS msahci.sys 
10:14:35.731    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8614f780]
10:14:35.736    3 CLASSPNP.SYS[8afaa59e] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85ccf338]
10:14:35.740    Scan finished successfully
10:14:55.180    Disk 0 MBR has been saved successfully to "C:\Users\Stina\Desktop\MBR.dat"
10:14:55.186    The log file has been saved successfully to "C:\Users\Stina\Desktop\aswMBR.txt"
         
Hier die Log des tdsskiller:

Code:
ATTFilter
10:16:03.0627 7556  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:16:03.0680 7556  ============================================================
10:16:03.0680 7556  Current date / time: 2013/03/25 10:16:03.0680
10:16:03.0680 7556  SystemInfo:
10:16:03.0680 7556  
10:16:03.0680 7556  OS Version: 6.1.7601 ServicePack: 1.0
10:16:03.0680 7556  Product type: Workstation
10:16:03.0680 7556  ComputerName: STINA-PC
10:16:03.0680 7556  UserName: Stina
10:16:03.0680 7556  Windows directory: C:\Windows
10:16:03.0680 7556  System windows directory: C:\Windows
10:16:03.0680 7556  Processor architecture: Intel x86
10:16:03.0680 7556  Number of processors: 2
10:16:03.0680 7556  Page size: 0x1000
10:16:03.0680 7556  Boot type: Normal boot
10:16:03.0680 7556  ============================================================
10:16:05.0046 7556  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:16:05.0047 7556  ============================================================
10:16:05.0047 7556  \Device\Harddisk0\DR0:
10:16:05.0048 7556  MBR partitions:
10:16:05.0048 7556  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
10:16:05.0048 7556  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6BB3000
10:16:05.0048 7556  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x6BE5800, BlocksNum 0x1DC90000
10:16:05.0082 7556  \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x24876000, BlocksNum 0xBB8000
10:16:05.0082 7556  ============================================================
10:16:05.0126 7556  C: <-> \Device\Harddisk0\DR0\Partition2
10:16:05.0166 7556  G: <-> \Device\Harddisk0\DR0\Partition3
10:16:05.0219 7556  Z: <-> \Device\Harddisk0\DR0\Partition4
10:16:05.0219 7556  ============================================================
10:16:05.0219 7556  Initialize success
10:16:05.0220 7556  ============================================================
10:16:56.0368 1768  ============================================================
10:16:56.0368 1768  Scan started
10:16:56.0368 1768  Mode: Manual; SigCheck; TDLFS; 
10:16:56.0368 1768  ============================================================
10:16:57.0307 1768  ================ Scan system memory ========================
10:16:57.0307 1768  System memory - ok
10:16:57.0309 1768  ================ Scan services =============================
10:16:57.0518 1768  [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
10:16:57.0592 1768  1394ohci - ok
10:16:57.0626 1768  [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
10:16:57.0641 1768  ACPI - ok
10:16:57.0671 1768  [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
10:16:57.0732 1768  AcpiPmi - ok
10:16:57.0771 1768  [ 7E9AEC303D9AEEAE9CF523FBE23F2C89 ] ACPIVPC         C:\Windows\system32\DRIVERS\AcpiVpc.sys
10:16:57.0784 1768  ACPIVPC - ok
10:16:57.0849 1768  [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
10:16:57.0880 1768  AdobeARMservice - ok
10:16:57.0959 1768  [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
10:16:57.0972 1768  AdobeFlashPlayerUpdateSvc - ok
10:16:58.0030 1768  [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
10:16:58.0047 1768  adp94xx - ok
10:16:58.0069 1768  [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci         C:\Windows\system32\drivers\adpahci.sys
10:16:58.0084 1768  adpahci - ok
10:16:58.0105 1768  [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
10:16:58.0116 1768  adpu320 - ok
10:16:58.0148 1768  [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
10:16:58.0182 1768  AeLookupSvc - ok
10:16:58.0239 1768  [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD             C:\Windows\system32\drivers\afd.sys
10:16:58.0295 1768  AFD - ok
10:16:58.0314 1768  [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440          C:\Windows\system32\drivers\agp440.sys
10:16:58.0324 1768  agp440 - ok
10:16:58.0361 1768  [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
10:16:58.0371 1768  aic78xx - ok
10:16:58.0402 1768  [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG             C:\Windows\System32\alg.exe
10:16:58.0457 1768  ALG - ok
10:16:58.0473 1768  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide          C:\Windows\system32\drivers\aliide.sys
10:16:58.0482 1768  aliide - ok
10:16:58.0496 1768  [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
10:16:58.0506 1768  amdagp - ok
10:16:58.0509 1768  [ CD5914170297126B6266860198D1D4F0 ] amdide          C:\Windows\system32\drivers\amdide.sys
10:16:58.0519 1768  amdide - ok
10:16:58.0535 1768  [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
10:16:58.0560 1768  AmdK8 - ok
10:16:58.0572 1768  [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
10:16:58.0589 1768  AmdPPM - ok
10:16:58.0613 1768  [ E7F4D42D8076EC60E21715CD11743A0D ] amdsata         C:\Windows\system32\drivers\amdsata.sys
10:16:58.0623 1768  amdsata - ok
10:16:58.0642 1768  [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
10:16:58.0653 1768  amdsbs - ok
10:16:58.0665 1768  [ 146459D2B08BFDCBFA856D9947043C81 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
10:16:58.0674 1768  amdxata - ok
10:16:58.0948 1768  [ 459465DA28E49B358ECFE0D788F328F4 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
10:16:58.0959 1768  AntiVirSchedulerService - ok
10:16:59.0020 1768  [ BCDD17E8469D647A71B347C4B6F86685 ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
10:16:59.0030 1768  AntiVirService - ok
10:16:59.0059 1768  [ D05B3EB1F1C8C7199D84C9D68D35FD78 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
10:16:59.0078 1768  AntiVirWebService - ok
10:16:59.0108 1768  [ AEA177F783E20150ACE5383EE368DA19 ] AppID           C:\Windows\system32\drivers\appid.sys
10:16:59.0144 1768  AppID - ok
10:16:59.0187 1768  [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
10:16:59.0217 1768  AppIDSvc - ok
10:16:59.0226 1768  [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo         C:\Windows\System32\appinfo.dll
10:16:59.0264 1768  Appinfo - ok
10:16:59.0300 1768  [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt         C:\Windows\System32\appmgmts.dll
10:16:59.0342 1768  AppMgmt - ok
10:16:59.0383 1768  [ 2932004F49677BD84DBC72EDB754FFB3 ] arc             C:\Windows\system32\drivers\arc.sys
10:16:59.0394 1768  arc - ok
10:16:59.0402 1768  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
10:16:59.0412 1768  arcsas - ok
10:16:59.0525 1768  [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
10:16:59.0573 1768  aspnet_state - ok
10:16:59.0605 1768  [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
10:16:59.0656 1768  AsyncMac - ok
10:16:59.0694 1768  [ 338C86357871C167A96AB976519BF59E ] atapi           C:\Windows\system32\drivers\atapi.sys
10:16:59.0705 1768  atapi - ok
10:16:59.0786 1768  [ FD08D220342C0F5556EE1D1A618817DD ] athr            C:\Windows\system32\DRIVERS\athr.sys
10:16:59.0984 1768  athr - ok
10:17:00.0018 1768  [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:17:00.0070 1768  AudioEndpointBuilder - ok
10:17:00.0077 1768  [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
10:17:00.0106 1768  Audiosrv - ok
10:17:00.0144 1768  [ A5C175039B1D6D85D0E79F5855828E4D ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
10:17:00.0155 1768  avgntflt - ok
10:17:00.0212 1768  [ 37B854C7D1F477E66C5B49C7700C47CC ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
10:17:00.0226 1768  avipbb - ok
10:17:00.0254 1768  [ CC4EBA25D80DE42BBC2BF3E553219388 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
10:17:00.0266 1768  avkmgr - ok
10:17:00.0285 1768  [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
10:17:00.0371 1768  AxInstSV - ok
10:17:00.0422 1768  [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv         C:\Windows\system32\drivers\bxvbdx.sys
10:17:00.0556 1768  b06bdrv - ok
10:17:00.0589 1768  [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
10:17:00.0603 1768  b57nd60x - ok
10:17:00.0671 1768  [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC          C:\Windows\System32\bdesvc.dll
10:17:00.0971 1768  BDESVC - ok
10:17:00.0980 1768  [ 505506526A9D467307B3C393DEDAF858 ] Beep            C:\Windows\system32\drivers\Beep.sys
10:17:01.0005 1768  Beep - ok
10:17:01.0033 1768  [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE             C:\Windows\System32\bfe.dll
10:17:01.0195 1768  BFE - ok
10:17:01.0219 1768  [ E585445D5021971FAE10393F0F1C3961 ] BITS            C:\Windows\System32\qmgr.dll
10:17:01.0357 1768  BITS - ok
10:17:01.0397 1768  [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
10:17:01.0426 1768  blbdrive - ok
10:17:01.0457 1768  [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
10:17:01.0510 1768  bowser - ok
10:17:01.0528 1768  [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
10:17:01.0548 1768  BrFiltLo - ok
10:17:01.0552 1768  [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
10:17:01.0576 1768  BrFiltUp - ok
10:17:01.0605 1768  [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser         C:\Windows\System32\browser.dll
10:17:01.0653 1768  Browser - ok
10:17:01.0680 1768  [ 845B8CE732E67F3B4133164868C666EA ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
10:17:01.0723 1768  Brserid - ok
10:17:01.0740 1768  [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
10:17:01.0766 1768  BrSerWdm - ok
10:17:01.0781 1768  [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
10:17:01.0798 1768  BrUsbMdm - ok
10:17:01.0802 1768  [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
10:17:01.0824 1768  BrUsbSer - ok
10:17:01.0835 1768  [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
10:17:01.0862 1768  BTHMODEM - ok
10:17:01.0890 1768  [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv         C:\Windows\system32\bthserv.dll
10:17:01.0963 1768  bthserv - ok
10:17:01.0986 1768  [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
10:17:02.0025 1768  cdfs - ok
10:17:02.0068 1768  [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
10:17:02.0083 1768  cdrom - ok
10:17:02.0112 1768  [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc     C:\Windows\System32\certprop.dll
10:17:02.0183 1768  CertPropSvc - ok
10:17:02.0202 1768  [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass        C:\Windows\system32\drivers\circlass.sys
10:17:02.0217 1768  circlass - ok
10:17:02.0257 1768  [ B0DFC4ADB1FF150AC466F3DAD323196A ] cjusb           C:\Windows\system32\DRIVERS\cjusb.sys
10:17:02.0266 1768  cjusb - ok
10:17:02.0284 1768  [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS            C:\Windows\system32\CLFS.sys
10:17:02.0299 1768  CLFS - ok
10:17:02.0356 1768  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:17:02.0383 1768  clr_optimization_v2.0.50727_32 - ok
10:17:02.0430 1768  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:17:02.0496 1768  clr_optimization_v4.0.30319_32 - ok
10:17:02.0538 1768  [ 125C828BF3673406DFD642D7BEE8434F ] clwvd           C:\Windows\system32\DRIVERS\clwvd.sys
10:17:02.0548 1768  clwvd - ok
10:17:02.0569 1768  [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
10:17:02.0593 1768  CmBatt - ok
10:17:02.0600 1768  [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
10:17:02.0609 1768  cmdide - ok
10:17:02.0647 1768  [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG             C:\Windows\system32\Drivers\cng.sys
10:17:02.0682 1768  CNG - ok
10:17:02.0698 1768  [ A6023D3823C37043986713F118A89BEE ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
10:17:02.0708 1768  Compbatt - ok
10:17:02.0737 1768  [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
10:17:02.0767 1768  CompositeBus - ok
10:17:02.0780 1768  COMSysApp - ok
10:17:02.0799 1768  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
10:17:02.0809 1768  crcdisk - ok
10:17:02.0865 1768  [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc        C:\Windows\system32\cryptsvc.dll
10:17:02.0914 1768  CryptSvc - ok
10:17:02.0947 1768  [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC             C:\Windows\system32\drivers\csc.sys
10:17:02.0994 1768  CSC - ok
10:17:03.0021 1768  [ 15F93B37F6801943360D9EB42485D5D3 ] CscService      C:\Windows\System32\cscsvc.dll
10:17:03.0049 1768  CscService - ok
10:17:03.0079 1768  [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch      C:\Windows\system32\rpcss.dll
10:17:03.0124 1768  DcomLaunch - ok
10:17:03.0159 1768  [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc       C:\Windows\System32\defragsvc.dll
10:17:03.0215 1768  defragsvc - ok
10:17:03.0237 1768  [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
10:17:03.0274 1768  DfsC - ok
10:17:03.0321 1768  [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp            C:\Windows\system32\dhcpcore.dll
10:17:03.0349 1768  Dhcp - ok
10:17:03.0366 1768  [ 1A050B0274BFB3890703D490F330C0DA ] discache        C:\Windows\system32\drivers\discache.sys
10:17:03.0407 1768  discache - ok
10:17:03.0452 1768  [ 565003F326F99802E68CA78F2A68E9FF ] Disk            C:\Windows\system32\drivers\disk.sys
10:17:03.0463 1768  Disk - ok
10:17:03.0494 1768  [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc           C:\Windows\system32\drivers\dmvsc.sys
10:17:03.0539 1768  dmvsc - ok
10:17:03.0577 1768  [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
10:17:03.0626 1768  Dnscache - ok
10:17:03.0659 1768  [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc         C:\Windows\System32\dot3svc.dll
10:17:03.0707 1768  dot3svc - ok
10:17:03.0722 1768  [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS             C:\Windows\system32\dps.dll
10:17:03.0757 1768  DPS - ok
10:17:03.0791 1768  [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
10:17:03.0813 1768  drmkaud - ok
10:17:03.0843 1768  [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01     C:\Windows\system32\DRIVERS\dtsoftbus01.sys
10:17:03.0857 1768  dtsoftbus01 - ok
10:17:03.0972 1768  [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
10:17:04.0029 1768  DXGKrnl - ok
10:17:04.0146 1768  [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost         C:\Windows\System32\eapsvc.dll
10:17:04.0203 1768  EapHost - ok
10:17:04.0288 1768  [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv           C:\Windows\system32\drivers\evbdx.sys
10:17:04.0380 1768  ebdrv - ok
10:17:04.0412 1768  [ 81951F51E318AECC2D68559E47485CC4 ] EFS             C:\Windows\System32\lsass.exe
10:17:04.0453 1768  EFS - ok
10:17:04.0506 1768  [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
10:17:04.0590 1768  ehRecvr - ok
10:17:04.0605 1768  [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched         C:\Windows\ehome\ehsched.exe
10:17:04.0650 1768  ehSched - ok
10:17:04.0698 1768  [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor         C:\Windows\system32\drivers\elxstor.sys
10:17:04.0716 1768  elxstor - ok
10:17:04.0738 1768  [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
10:17:04.0761 1768  ErrDev - ok
10:17:04.0803 1768  [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem     C:\Windows\system32\es.dll
10:17:04.0841 1768  EventSystem - ok
10:17:04.0852 1768  [ 2DC9108D74081149CC8B651D3A26207F ] exfat           C:\Windows\system32\drivers\exfat.sys
10:17:04.0878 1768  exfat - ok
10:17:04.0900 1768  [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
10:17:04.0927 1768  fastfat - ok
10:17:04.0960 1768  [ 967EA5B213E9984CBE270205DF37755B ] Fax             C:\Windows\system32\fxssvc.exe
10:17:05.0027 1768  Fax - ok
10:17:05.0061 1768  [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc             C:\Windows\system32\drivers\fdc.sys
10:17:05.0074 1768  fdc - ok
10:17:05.0090 1768  [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost         C:\Windows\system32\fdPHost.dll
10:17:05.0134 1768  fdPHost - ok
10:17:05.0154 1768  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub        C:\Windows\system32\fdrespub.dll
10:17:05.0180 1768  FDResPub - ok
10:17:05.0193 1768  [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
10:17:05.0203 1768  FileInfo - ok
10:17:05.0219 1768  [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
10:17:05.0259 1768  Filetrace - ok
10:17:05.0269 1768  [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
10:17:05.0286 1768  flpydisk - ok
10:17:05.0314 1768  [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
10:17:05.0341 1768  FltMgr - ok
10:17:05.0370 1768  [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache       C:\Windows\system32\FntCache.dll
10:17:05.0421 1768  FontCache - ok
10:17:05.0474 1768  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
10:17:05.0504 1768  FontCache3.0.0.0 - ok
10:17:05.0550 1768  [ EFBE9DCBCE946D96D6A7E25E439A768B ] FPSensor        C:\Windows\system32\Drivers\FPSensor.sys
10:17:05.0561 1768  FPSensor - ok
10:17:05.0596 1768  [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
10:17:05.0607 1768  FsDepends - ok
10:17:05.0645 1768  [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
10:17:05.0655 1768  Fs_Rec - ok
10:17:05.0675 1768  [ 8A73E79089B282100B9393B644CB853B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
10:17:05.0690 1768  fvevol - ok
10:17:05.0710 1768  [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
10:17:05.0720 1768  gagp30kx - ok
10:17:05.0751 1768  [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc           C:\Windows\System32\gpsvc.dll
10:17:05.0803 1768  gpsvc - ok
10:17:05.0870 1768  [ F02A533F517EB38333CB12A9E8963773 ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
10:17:05.0881 1768  gupdate - ok
10:17:05.0893 1768  [ F02A533F517EB38333CB12A9E8963773 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
10:17:05.0902 1768  gupdatem - ok
10:17:05.0952 1768  [ 88A6F2571405B3A4ABC4ED2F52136317 ] hcmon           C:\Windows\system32\drivers\hcmon.sys
10:17:05.0963 1768  hcmon - ok
10:17:05.0981 1768  [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
10:17:06.0028 1768  hcw85cir - ok
10:17:06.0081 1768  [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
10:17:06.0099 1768  HdAudAddService - ok
10:17:06.0133 1768  [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
10:17:06.0149 1768  HDAudBus - ok
10:17:06.0171 1768  [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
10:17:06.0192 1768  HidBatt - ok
10:17:06.0207 1768  [ 89448F40E6DF260C206A193A4683BA78 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
10:17:06.0239 1768  HidBth - ok
10:17:06.0257 1768  [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr           C:\Windows\system32\drivers\hidir.sys
10:17:06.0281 1768  HidIr - ok
10:17:06.0300 1768  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv         C:\Windows\system32\hidserv.dll
10:17:06.0361 1768  hidserv - ok
10:17:06.0388 1768  [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
10:17:06.0414 1768  HidUsb - ok
10:17:06.0434 1768  [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc          C:\Windows\system32\kmsvc.dll
10:17:06.0466 1768  hkmsvc - ok
10:17:06.0486 1768  [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:17:06.0530 1768  HomeGroupListener - ok
10:17:06.0564 1768  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:17:06.0595 1768  HomeGroupProvider - ok
10:17:06.0635 1768  [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
10:17:06.0646 1768  HpSAMD - ok
10:17:06.0672 1768  [ 871917B07A141BFF43D76D8844D48106 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
10:17:06.0702 1768  HTTP - ok
10:17:06.0710 1768  [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
10:17:06.0719 1768  hwpolicy - ok
10:17:06.0747 1768  [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
10:17:06.0769 1768  i8042prt - ok
10:17:06.0811 1768  [ A3CAE5D281DB4CFF7CFF8233507EE5AD ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
10:17:06.0827 1768  iaStorV - ok
10:17:06.0878 1768  [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:17:06.0957 1768  idsvc - ok
10:17:07.0179 1768  [ 60CC34AD19AF2716FF18EC756D55B9AB ] igfx            C:\Windows\system32\DRIVERS\igdkmd32.sys
10:17:07.0482 1768  igfx - ok
10:17:07.0517 1768  [ 4173FF5708F3236CF25195FECD742915 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
10:17:07.0527 1768  iirsp - ok
10:17:07.0569 1768  [ F95622F161474511B8D80D6B093AA610 ] IKEEXT          C:\Windows\System32\ikeext.dll
10:17:07.0647 1768  IKEEXT - ok
10:17:07.0673 1768  [ 5576AD2F0039D2BCCCA3567FC0BF981C ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
10:17:07.0709 1768  IntcDAud - ok
10:17:07.0736 1768  [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide        C:\Windows\system32\drivers\intelide.sys
10:17:07.0746 1768  intelide - ok
10:17:07.0783 1768  [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
10:17:07.0798 1768  intelppm - ok
10:17:07.0821 1768  [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
10:17:07.0869 1768  IPBusEnum - ok
10:17:07.0895 1768  [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:17:07.0921 1768  IpFilterDriver - ok
10:17:07.0961 1768  [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
10:17:08.0006 1768  iphlpsvc - ok
10:17:08.0028 1768  [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
10:17:08.0039 1768  IPMIDRV - ok
10:17:08.0043 1768  [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
10:17:08.0085 1768  IPNAT - ok
10:17:08.0109 1768  [ 42996CFF20A3084A56017B7902307E9F ] IRENUM          C:\Windows\system32\drivers\irenum.sys
10:17:08.0135 1768  IRENUM - ok
10:17:08.0156 1768  [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
10:17:08.0166 1768  isapnp - ok
10:17:08.0183 1768  [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
10:17:08.0196 1768  iScsiPrt - ok
10:17:08.0227 1768  [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
10:17:08.0237 1768  kbdclass - ok
10:17:08.0266 1768  [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
10:17:08.0286 1768  kbdhid - ok
10:17:08.0300 1768  [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso          C:\Windows\system32\lsass.exe
10:17:08.0311 1768  KeyIso - ok
10:17:08.0343 1768  [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
10:17:08.0355 1768  KSecDD - ok
10:17:08.0371 1768  [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
10:17:08.0382 1768  KSecPkg - ok
10:17:08.0413 1768  [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm           C:\Windows\system32\msdtckrm.dll
10:17:08.0469 1768  KtmRm - ok
10:17:08.0505 1768  [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer    C:\Windows\system32\srvsvc.dll
10:17:08.0548 1768  LanmanServer - ok
10:17:08.0562 1768  [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:17:08.0636 1768  LanmanWorkstation - ok
10:17:08.0670 1768  [ 8FF8B5F04AC4D57F9A965BB4DF07813E ] LHDmgr          C:\Windows\system32\DRIVERS\LhdX86.sys
10:17:08.0680 1768  LHDmgr - ok
10:17:08.0730 1768  [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
10:17:08.0763 1768  lltdio - ok
10:17:08.0814 1768  [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
10:17:08.0851 1768  lltdsvc - ok
10:17:08.0866 1768  [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts         C:\Windows\System32\lmhsvc.dll
10:17:08.0906 1768  lmhosts - ok
10:17:08.0984 1768  [ 926EBA26A8B49D1597751CED06B50862 ] LMS             C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
10:17:09.0002 1768  LMS - ok
10:17:09.0042 1768  [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
10:17:09.0053 1768  LSI_FC - ok
10:17:09.0070 1768  [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
10:17:09.0081 1768  LSI_SAS - ok
10:17:09.0102 1768  [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
10:17:09.0112 1768  LSI_SAS2 - ok
10:17:09.0132 1768  [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
10:17:09.0143 1768  LSI_SCSI - ok
10:17:09.0193 1768  [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv           C:\Windows\system32\drivers\luafv.sys
10:17:09.0222 1768  luafv - ok
10:17:09.0264 1768  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
10:17:09.0292 1768  Mcx2Svc - ok
10:17:09.0309 1768  [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas         C:\Windows\system32\drivers\megasas.sys
10:17:09.0319 1768  megasas - ok
10:17:09.0336 1768  [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
10:17:09.0349 1768  MegaSR - ok
10:17:09.0396 1768  [ CFCB18986426A2D8E66F1992636221D0 ] MEI             C:\Windows\system32\DRIVERS\HECI.sys
10:17:09.0431 1768  MEI - ok
10:17:09.0503 1768  [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
10:17:09.0525 1768  Microsoft Office Groove Audit Service - ok
10:17:09.0557 1768  [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS           C:\Windows\system32\mmcss.dll
10:17:09.0596 1768  MMCSS - ok
10:17:09.0617 1768  [ F001861E5700EE84E2D4E52C712F4964 ] Modem           C:\Windows\system32\drivers\modem.sys
10:17:09.0649 1768  Modem - ok
10:17:09.0679 1768  [ 79D10964DE86B292320E9DFE02282A23 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
10:17:09.0706 1768  monitor - ok
10:17:09.0730 1768  [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
10:17:09.0740 1768  mouclass - ok
10:17:09.0767 1768  [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid          C:\Windows\system32\drivers\mouhid.sys
10:17:09.0794 1768  mouhid - ok
10:17:09.0808 1768  [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
10:17:09.0819 1768  mountmgr - ok
10:17:09.0898 1768  [ 8A7C8F4C713E70D73946833D76B77035 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:17:09.0924 1768  MozillaMaintenance - ok
10:17:09.0941 1768  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio            C:\Windows\system32\drivers\mpio.sys
10:17:09.0953 1768  mpio - ok
10:17:09.0966 1768  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
10:17:09.0990 1768  mpsdrv - ok
10:17:10.0032 1768  [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc          C:\Windows\system32\mpssvc.dll
10:17:10.0103 1768  MpsSvc - ok
10:17:10.0119 1768  [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
10:17:10.0152 1768  MRxDAV - ok
10:17:10.0188 1768  [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
10:17:10.0230 1768  mrxsmb - ok
10:17:10.0247 1768  [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:17:10.0269 1768  mrxsmb10 - ok
10:17:10.0280 1768  [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:17:10.0301 1768  mrxsmb20 - ok
10:17:10.0316 1768  [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci          C:\Windows\system32\drivers\msahci.sys
10:17:10.0326 1768  msahci - ok
10:17:10.0340 1768  [ 55055F8AD8BE27A64C831322A780A228 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
10:17:10.0351 1768  msdsm - ok
10:17:10.0382 1768  [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC           C:\Windows\System32\msdtc.exe
10:17:10.0432 1768  MSDTC - ok
10:17:10.0447 1768  [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs            C:\Windows\system32\drivers\Msfs.sys
10:17:10.0473 1768  Msfs - ok
10:17:10.0489 1768  [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
10:17:10.0521 1768  mshidkmdf - ok
10:17:10.0535 1768  [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
10:17:10.0545 1768  msisadrv - ok
10:17:10.0588 1768  [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
10:17:10.0654 1768  MSiSCSI - ok
10:17:10.0658 1768  msiserver - ok
10:17:10.0680 1768  [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
10:17:10.0705 1768  MSKSSRV - ok
10:17:10.0723 1768  [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
10:17:10.0762 1768  MSPCLOCK - ok
10:17:10.0773 1768  [ F456E973590D663B1073E9C463B40932 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
10:17:10.0812 1768  MSPQM - ok
10:17:10.0828 1768  [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
10:17:10.0840 1768  MsRPC - ok
10:17:10.0857 1768  [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
10:17:10.0866 1768  mssmbios - ok
10:17:10.0930 1768  MSSQL$SQLEXPRESS - ok
10:17:11.0003 1768  [ F1761C8FB2B25A32C6D63E36BB88C3AE ] MSSQLServerADHelper100 C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
10:17:11.0031 1768  MSSQLServerADHelper100 - ok
10:17:11.0046 1768  [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
10:17:11.0071 1768  MSTEE - ok
10:17:11.0107 1768  [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
10:17:11.0130 1768  MTConfig - ok
10:17:11.0146 1768  [ 159FAD02F64E6381758C990F753BCC80 ] Mup             C:\Windows\system32\Drivers\mup.sys
10:17:11.0157 1768  Mup - ok
10:17:11.0189 1768  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent        C:\Windows\system32\qagentRT.dll
10:17:11.0238 1768  napagent - ok
10:17:11.0287 1768  [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
10:17:11.0304 1768  NativeWifiP - ok
10:17:11.0333 1768  [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS            C:\Windows\system32\drivers\ndis.sys
10:17:11.0357 1768  NDIS - ok
10:17:11.0369 1768  [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
10:17:11.0405 1768  NdisCap - ok
10:17:11.0439 1768  [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
10:17:11.0470 1768  NdisTapi - ok
10:17:11.0481 1768  [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
10:17:11.0505 1768  Ndisuio - ok
10:17:11.0517 1768  [ 38FBE267E7E6983311179230FACB1017 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
10:17:11.0555 1768  NdisWan - ok
10:17:11.0583 1768  [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
10:17:11.0607 1768  NDProxy - ok
10:17:11.0630 1768  [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
10:17:11.0669 1768  NetBIOS - ok
10:17:11.0687 1768  [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
10:17:11.0725 1768  NetBT - ok
10:17:11.0745 1768  [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon        C:\Windows\system32\lsass.exe
10:17:11.0757 1768  Netlogon - ok
10:17:11.0797 1768  [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman          C:\Windows\System32\netman.dll
10:17:11.0827 1768  Netman - ok
10:17:11.0866 1768  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:17:11.0896 1768  NetMsmqActivator - ok
10:17:11.0900 1768  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:17:11.0911 1768  NetPipeActivator - ok
10:17:11.0932 1768  [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm        C:\Windows\System32\netprofm.dll
10:17:11.0981 1768  netprofm - ok
10:17:11.0985 1768  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:17:11.0995 1768  NetTcpActivator - ok
10:17:11.0999 1768  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
10:17:12.0009 1768  NetTcpPortSharing - ok
10:17:12.0052 1768  [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
10:17:12.0062 1768  nfrd960 - ok
10:17:12.0078 1768  [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc          C:\Windows\System32\nlasvc.dll
10:17:12.0115 1768  NlaSvc - ok
10:17:12.0136 1768  [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
10:17:12.0162 1768  Npfs - ok
10:17:12.0171 1768  [ BA387E955E890C8A88306D9B8D06BF17 ] nsi             C:\Windows\system32\nsisvc.dll
10:17:12.0198 1768  nsi - ok
10:17:12.0215 1768  [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
10:17:12.0240 1768  nsiproxy - ok
10:17:12.0274 1768  [ 33C3093D09017CFE2E219F2472BFF6EB ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
10:17:12.0326 1768  Ntfs - ok
10:17:12.0335 1768  [ F9756A98D69098DCA8945D62858A812C ] Null            C:\Windows\system32\drivers\Null.sys
10:17:12.0360 1768  Null - ok
10:17:12.0387 1768  [ AF2EEC9580C1D32FB7EAF105D9784061 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
10:17:12.0398 1768  nvraid - ok
10:17:12.0413 1768  [ 9283C58EBAA2618F93482EB5DABCEC82 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
10:17:12.0425 1768  nvstor - ok
10:17:12.0437 1768  [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
10:17:12.0448 1768  nv_agp - ok
10:17:12.0531 1768  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
10:17:12.0581 1768  odserv - ok
10:17:12.0593 1768  [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
10:17:12.0618 1768  ohci1394 - ok
10:17:12.0672 1768  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:17:12.0704 1768  ose - ok
10:17:12.0745 1768  [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
10:17:12.0795 1768  p2pimsvc - ok
10:17:12.0824 1768  [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc          C:\Windows\system32\p2psvc.dll
10:17:12.0851 1768  p2psvc - ok
10:17:12.0877 1768  [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport         C:\Windows\system32\drivers\parport.sys
10:17:12.0889 1768  Parport - ok
10:17:12.0914 1768  [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
10:17:12.0924 1768  partmgr - ok
10:17:12.0939 1768  [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm          C:\Windows\system32\drivers\parvdm.sys
10:17:12.0950 1768  Parvdm - ok
10:17:12.0970 1768  [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc          C:\Windows\System32\pcasvc.dll
10:17:12.0988 1768  PcaSvc - ok
10:17:12.0999 1768  [ 673E55C3498EB970088E812EA820AA8F ] pci             C:\Windows\system32\drivers\pci.sys
10:17:13.0012 1768  pci - ok
10:17:13.0036 1768  [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide          C:\Windows\system32\drivers\pciide.sys
10:17:13.0046 1768  pciide - ok
10:17:13.0061 1768  [ F396431B31693E71E8A80687EF523506 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
10:17:13.0073 1768  pcmcia - ok
10:17:13.0095 1768  [ 250F6B43D2B613172035C6747AEEB19F ] pcw             C:\Windows\system32\drivers\pcw.sys
10:17:13.0107 1768  pcw - ok
10:17:13.0133 1768  [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
10:17:13.0182 1768  PEAUTH - ok
10:17:13.0222 1768  [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
10:17:13.0291 1768  PeerDistSvc - ok
10:17:13.0347 1768  [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla             C:\Windows\system32\pla.dll
10:17:13.0476 1768  pla - ok
10:17:13.0521 1768  [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
10:17:13.0558 1768  PlugPlay - ok
10:17:13.0575 1768  [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
10:17:13.0609 1768  PNRPAutoReg - ok
10:17:13.0634 1768  [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
10:17:13.0650 1768  PNRPsvc - ok
10:17:13.0687 1768  [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
10:17:13.0745 1768  PolicyAgent - ok
10:17:13.0798 1768  [ F87D30E72E03D579A5199CCB3831D6EA ] Power           C:\Windows\system32\umpo.dll
10:17:13.0844 1768  Power - ok
10:17:13.0891 1768  [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
10:17:13.0927 1768  PptpMiniport - ok
10:17:13.0943 1768  [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor       C:\Windows\system32\drivers\processr.sys
10:17:13.0963 1768  Processor - ok
10:17:13.0990 1768  [ 43CA4CCC22D52FB58E8988F0198851D0 ] ProfSvc         C:\Windows\system32\profsvc.dll
10:17:14.0018 1768  ProfSvc - ok
10:17:14.0034 1768  [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:17:14.0046 1768  ProtectedStorage - ok
10:17:14.0073 1768  [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
10:17:14.0106 1768  Psched - ok
10:17:14.0151 1768  [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
10:17:14.0204 1768  ql2300 - ok
10:17:14.0232 1768  [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
10:17:14.0245 1768  ql40xx - ok
10:17:14.0298 1768  [ 31AC809E7707EB580B2BDB760390765A ] QWAVE           C:\Windows\system32\qwave.dll
10:17:14.0435 1768  QWAVE - ok
10:17:14.0452 1768  [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
10:17:14.0466 1768  QWAVEdrv - ok
10:17:14.0477 1768  [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
10:17:14.0511 1768  RasAcd - ok
10:17:14.0553 1768  [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
10:17:14.0578 1768  RasAgileVpn - ok
10:17:14.0592 1768  [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto         C:\Windows\System32\rasauto.dll
10:17:14.0652 1768  RasAuto - ok
10:17:14.0668 1768  [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
10:17:14.0710 1768  Rasl2tp - ok
10:17:14.0727 1768  [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan          C:\Windows\System32\rasmans.dll
10:17:14.0780 1768  RasMan - ok
10:17:14.0799 1768  [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
10:17:14.0825 1768  RasPppoe - ok
10:17:14.0836 1768  [ 44101F495A83EA6401D886E7FD70096B ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
10:17:14.0877 1768  RasSstp - ok
10:17:14.0901 1768  [ D528BC58A489409BA40334EBF96A311B ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
10:17:14.0939 1768  rdbss - ok
10:17:14.0958 1768  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
10:17:14.0970 1768  rdpbus - ok
10:17:14.0983 1768  [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
10:17:15.0017 1768  RDPCDD - ok
10:17:15.0052 1768  [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
10:17:15.0096 1768  RDPDR - ok
10:17:15.0123 1768  [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
10:17:15.0159 1768  RDPENCDD - ok
10:17:15.0176 1768  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
10:17:15.0214 1768  RDPREFMP - ok
10:17:15.0242 1768  [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
10:17:15.0276 1768  RDPWD - ok
10:17:15.0303 1768  [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
10:17:15.0315 1768  rdyboost - ok
10:17:15.0338 1768  [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess    C:\Windows\System32\mprdim.dll
10:17:15.0364 1768  RemoteAccess - ok
10:17:15.0396 1768  [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
10:17:15.0442 1768  RemoteRegistry - ok
10:17:15.0470 1768  [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
10:17:15.0506 1768  RpcEptMapper - ok
10:17:15.0533 1768  [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator      C:\Windows\system32\locator.exe
10:17:15.0574 1768  RpcLocator - ok
10:17:15.0590 1768  [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs           C:\Windows\system32\rpcss.dll
10:17:15.0619 1768  RpcSs - ok
10:17:15.0657 1768  [ FD692C6FFADE58F7C4C3C3C9A0EC35BD ] RsFx0103        C:\Windows\system32\DRIVERS\RsFx0103.sys
10:17:15.0670 1768  RsFx0103 - ok
10:17:15.0713 1768  [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
10:17:15.0747 1768  rspndr - ok
10:17:15.0791 1768  [ BE466AFA453D1AC73DB0F02FDDB519B5 ] RSUSBVSTOR      C:\Windows\system32\Drivers\RtsUVStor.sys
10:17:15.0804 1768  RSUSBVSTOR - ok
10:17:15.0837 1768  [ 0516998076AD894AE7E362C3110AA071 ] RTL8167         C:\Windows\system32\DRIVERS\Rt86win7.sys
10:17:15.0850 1768  RTL8167 - ok
10:17:15.0878 1768  [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
10:17:15.0895 1768  s3cap - ok
10:17:15.0912 1768  [ 81951F51E318AECC2D68559E47485CC4 ] SamSs           C:\Windows\system32\lsass.exe
10:17:15.0923 1768  SamSs - ok
10:17:15.0953 1768  [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
10:17:15.0964 1768  sbp2port - ok
10:17:15.0994 1768  [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
10:17:16.0038 1768  SCardSvr - ok
10:17:16.0067 1768  [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
10:17:16.0104 1768  scfilter - ok
10:17:16.0135 1768  [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule        C:\Windows\system32\schedsvc.dll
10:17:16.0172 1768  Schedule - ok
10:17:16.0190 1768  [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc     C:\Windows\System32\certprop.dll
10:17:16.0214 1768  SCPolicySvc - ok
10:17:16.0237 1768  [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
10:17:16.0294 1768  SDRSVC - ok
10:17:16.0316 1768  [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
10:17:16.0351 1768  secdrv - ok
10:17:16.0365 1768  [ A59B3A4442C52060CC7A85293AA3546F ] seclogon        C:\Windows\system32\seclogon.dll
10:17:16.0407 1768  seclogon - ok
10:17:16.0428 1768  [ DCB7FCDCC97F87360F75D77425B81737 ] SENS            C:\Windows\System32\sens.dll
10:17:16.0465 1768  SENS - ok
10:17:16.0486 1768  [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc        C:\Windows\system32\sensrsvc.dll
10:17:16.0553 1768  SensrSvc - ok
10:17:16.0572 1768  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum         C:\Windows\system32\drivers\serenum.sys
10:17:16.0585 1768  Serenum - ok
10:17:16.0632 1768  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial          C:\Windows\system32\drivers\serial.sys
10:17:16.0653 1768  Serial - ok
10:17:16.0656 1768  [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
10:17:16.0667 1768  sermouse - ok
10:17:16.0698 1768  [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv      C:\Windows\system32\sessenv.dll
10:17:16.0754 1768  SessionEnv - ok
10:17:16.0757 1768  [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
10:17:16.0781 1768  sffdisk - ok
10:17:16.0785 1768  [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
10:17:16.0797 1768  sffp_mmc - ok
10:17:16.0801 1768  [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
10:17:16.0823 1768  sffp_sd - ok
10:17:16.0826 1768  [ DB96666CC8312EBC45032F30B007A547 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
10:17:16.0841 1768  sfloppy - ok
10:17:16.0863 1768  [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
10:17:16.0930 1768  SharedAccess - ok
10:17:16.0956 1768  [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:17:16.0997 1768  ShellHWDetection - ok
10:17:17.0018 1768  [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp          C:\Windows\system32\drivers\sisagp.sys
10:17:17.0028 1768  sisagp - ok
10:17:17.0057 1768  [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
10:17:17.0068 1768  SiSRaid2 - ok
10:17:17.0082 1768  [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
10:17:17.0092 1768  SiSRaid4 - ok
10:17:17.0255 1768  [ 388AE59FE75F1B959DFA0900923C61BB ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
10:17:17.0360 1768  Skype C2C Service - ok
10:17:17.0420 1768  [ 8C4F0DCC6A5100D48F9B2F950CDD220F ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
10:17:17.0499 1768  SkypeUpdate - ok
10:17:17.0527 1768  [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb             C:\Windows\system32\DRIVERS\smb.sys
10:17:17.0571 1768  Smb - ok
10:17:17.0605 1768  [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
10:17:17.0641 1768  SNMPTRAP - ok
10:17:17.0668 1768  [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr           C:\Windows\system32\drivers\spldr.sys
10:17:17.0679 1768  spldr - ok
10:17:17.0699 1768  [ 866A43013535DC8587C258E43579C764 ] Spooler         C:\Windows\System32\spoolsv.exe
10:17:17.0729 1768  Spooler - ok
10:17:17.0795 1768  [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc          C:\Windows\system32\sppsvc.exe
10:17:17.0967 1768  sppsvc - ok
10:17:17.0981 1768  [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
10:17:18.0038 1768  sppuinotify - ok
10:17:18.0076 1768  [ A687B5B326AFCFCF182C4931D1FF9771 ] SQLAgent$SQLEXPRESS C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
10:17:18.0138 1768  SQLAgent$SQLEXPRESS - ok
10:17:18.0190 1768  [ B54B48F6D92423440C264E91225C5FF1 ] SQLBrowser      C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
10:17:18.0241 1768  SQLBrowser - ok
10:17:18.0261 1768  [ 637A0F23F9012358E92E6F99835494D1 ] SQLWriter       C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
10:17:18.0272 1768  SQLWriter - ok
10:17:18.0301 1768  [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv             C:\Windows\system32\DRIVERS\srv.sys
10:17:18.0354 1768  srv - ok
10:17:18.0382 1768  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
10:17:18.0397 1768  srv2 - ok
10:17:18.0432 1768  [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
10:17:18.0458 1768  srvnet - ok
10:17:18.0487 1768  [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
10:17:18.0517 1768  SSDPSRV - ok
10:17:18.0557 1768  [ A36EE93698802CD899F98BFD553D8185 ] ssmdrv          C:\Windows\system32\DRIVERS\ssmdrv.sys
10:17:18.0581 1768  ssmdrv - ok
10:17:18.0592 1768  [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
10:17:18.0635 1768  SstpSvc - ok
10:17:18.0668 1768  [ DB32D325C192B801DF274BFD12A7E72B ] stexstor        C:\Windows\system32\drivers\stexstor.sys
10:17:18.0678 1768  stexstor - ok
10:17:18.0730 1768  [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc          C:\Windows\System32\wiaservc.dll
10:17:18.0762 1768  StiSvc - ok
10:17:18.0785 1768  [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
10:17:18.0794 1768  storflt - ok
10:17:18.0825 1768  [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc         C:\Windows\system32\storsvc.dll
10:17:18.0880 1768  StorSvc - ok
10:17:18.0893 1768  [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
10:17:18.0903 1768  storvsc - ok
10:17:18.0933 1768  [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
10:17:18.0944 1768  swenum - ok
10:17:18.0973 1768  [ A28BD92DF340E57B024BA433165D34D7 ] swprv           C:\Windows\System32\swprv.dll
10:17:19.0034 1768  swprv - ok
10:17:19.0100 1768  [ B769710846D690ADB6D25ED9329D5DB7 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
10:17:19.0153 1768  SynTP - ok
10:17:19.0180 1768  [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain         C:\Windows\system32\sysmain.dll
10:17:19.0233 1768  SysMain - ok
10:17:19.0249 1768  [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
10:17:19.0302 1768  TabletInputService - ok
10:17:19.0319 1768  [ 613BF4820361543956909043A265C6AC ] TapiSrv         C:\Windows\System32\tapisrv.dll
10:17:19.0373 1768  TapiSrv - ok
10:17:19.0389 1768  [ B799D9FDB26111737F58288D8DC172D9 ] TBS             C:\Windows\System32\tbssvc.dll
10:17:19.0449 1768  TBS - ok
10:17:19.0512 1768  [ A5EBB8F648000E88B7D9390B514976BF ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
10:17:19.0563 1768  Tcpip - ok
10:17:19.0606 1768  [ A5EBB8F648000E88B7D9390B514976BF ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
10:17:19.0635 1768  TCPIP6 - ok
10:17:19.0665 1768  [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
10:17:19.0704 1768  tcpipreg - ok
10:17:19.0718 1768  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
10:17:19.0743 1768  TDPIPE - ok
10:17:19.0776 1768  [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
10:17:19.0787 1768  TDTCP - ok
10:17:19.0800 1768  [ B459575348C20E8121D6039DA063C704 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
10:17:19.0824 1768  tdx - ok
10:17:19.0841 1768  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
10:17:19.0852 1768  TermDD - ok
10:17:19.0881 1768  [ 382C804C92811BE57829D8E550A900E2 ] TermService     C:\Windows\System32\termsrv.dll
10:17:19.0937 1768  TermService - ok
10:17:19.0947 1768  [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes          C:\Windows\system32\themeservice.dll
10:17:19.0976 1768  Themes - ok
10:17:19.0990 1768  [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER     C:\Windows\system32\mmcss.dll
10:17:20.0016 1768  THREADORDER - ok
10:17:20.0038 1768  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks          C:\Windows\System32\trkwks.dll
10:17:20.0097 1768  TrkWks - ok
10:17:20.0151 1768  [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
10:17:20.0196 1768  TrustedInstaller - ok
10:17:20.0209 1768  [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
10:17:20.0232 1768  tssecsrv - ok
10:17:20.0265 1768  [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
10:17:20.0298 1768  TsUsbFlt - ok
10:17:20.0319 1768  [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
10:17:20.0330 1768  TsUsbGD - ok
10:17:20.0361 1768  [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
10:17:20.0385 1768  tunnel - ok
10:17:20.0407 1768  [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35          C:\Windows\system32\drivers\uagp35.sys
10:17:20.0417 1768  uagp35 - ok
10:17:20.0441 1768  [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
10:17:20.0485 1768  udfs - ok
10:17:20.0505 1768  [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
10:17:20.0547 1768  UI0Detect - ok
10:17:20.0559 1768  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
10:17:20.0569 1768  uliagpkx - ok
10:17:20.0600 1768  [ D295BED4B898F0FD999FCFA9B32B071B ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
10:17:20.0612 1768  umbus - ok
10:17:20.0622 1768  [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass          C:\Windows\system32\drivers\umpass.sys
10:17:20.0647 1768  UmPass - ok
10:17:20.0672 1768  [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService    C:\Windows\System32\umrdp.dll
10:17:20.0711 1768  UmRdpService - ok
10:17:20.0799 1768  [ FDF92EC84FECEE834FB10A2A0A19BCDA ] UNS             C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
10:17:20.0901 1768  UNS - ok
10:17:20.0940 1768  [ 833FBB672460EFCE8011D262175FAD33 ] upnphost        C:\Windows\System32\upnphost.dll
10:17:20.0980 1768  upnphost - ok
10:17:21.0033 1768  [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
10:17:21.0049 1768  usbaudio - ok
10:17:21.0079 1768  [ 7E72E7D7E0757D59481D530FD2B0BFAE ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
10:17:21.0107 1768  usbccgp - ok
10:17:21.0126 1768  [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
10:17:21.0140 1768  usbcir - ok
10:17:21.0165 1768  [ CFBCE999C057D78979A181C9C60F208E ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
10:17:21.0177 1768  usbehci - ok
10:17:21.0210 1768  [ 9D22AAD9AC6A07C691A1113E5F860868 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
10:17:21.0225 1768  usbhub - ok
10:17:21.0249 1768  [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
10:17:21.0272 1768  usbohci - ok
10:17:21.0275 1768  [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint        C:\Windows\system32\drivers\usbprint.sys
10:17:21.0288 1768  usbprint - ok
10:17:21.0306 1768  [ BF63EBFC6979FEFB2BC03DF7989A0C1A ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
10:17:21.0317 1768  USBSTOR - ok
10:17:21.0335 1768  [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
10:17:21.0357 1768  usbuhci - ok
10:17:21.0408 1768  [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
10:17:21.0423 1768  usbvideo - ok
10:17:21.0454 1768  [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms           C:\Windows\System32\uxsms.dll
10:17:21.0488 1768  UxSms - ok
10:17:21.0522 1768  [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc        C:\Windows\system32\lsass.exe
10:17:21.0538 1768  VaultSvc - ok
10:17:21.0576 1768  [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
10:17:21.0586 1768  vdrvroot - ok
10:17:21.0611 1768  [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds             C:\Windows\System32\vds.exe
10:17:21.0685 1768  vds - ok
10:17:21.0695 1768  [ 17C408214EA61696CEC9C66E388B14F3 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
10:17:21.0716 1768  vga - ok
10:17:21.0735 1768  [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave         C:\Windows\System32\drivers\vga.sys
10:17:21.0760 1768  VgaSave - ok
10:17:21.0772 1768  [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
10:17:21.0784 1768  vhdmp - ok
10:17:21.0801 1768  [ C829317A37B4BEA8F39735D4B076E923 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
10:17:21.0812 1768  viaagp - ok
10:17:21.0822 1768  [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7           C:\Windows\system32\drivers\viac7.sys
10:17:21.0840 1768  ViaC7 - ok
10:17:21.0854 1768  [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide          C:\Windows\system32\drivers\viaide.sys
10:17:21.0864 1768  viaide - ok
10:17:21.0931 1768  [ 3ACCF0C817A2BB34EFBFB72B57B00252 ] VMAuthdService  C:\Program Files\VMware\VMware Player\vmware-authd.exe
10:17:21.0939 1768  VMAuthdService ( UnsignedFile.Multi.Generic ) - warning
10:17:21.0939 1768  VMAuthdService - detected UnsignedFile.Multi.Generic (1)
10:17:21.0965 1768  [ C2F2911156FDC7817C52829C86DA494E ] vmbus           C:\Windows\system32\drivers\vmbus.sys
10:17:21.0978 1768  vmbus - ok
10:17:21.0992 1768  [ D4D77455211E204F370D08F4963063CE ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
10:17:22.0010 1768  VMBusHID - ok
10:17:22.0050 1768  [ 15759158F7531853616B2B43AF962FCB ] vmci            C:\Windows\system32\DRIVERS\vmci.sys
10:17:22.0061 1768  vmci - ok
10:17:22.0091 1768  [ E5FA574436B840D071DBFE74300741CE ] vmkbd           C:\Windows\system32\drivers\VMkbd.sys
10:17:22.0100 1768  vmkbd - ok
10:17:22.0109 1768  [ 1AFA4AF55CBEA579A4BBE4F90967F720 ] VMnetAdapter    C:\Windows\system32\DRIVERS\vmnetadapter.sys
10:17:22.0117 1768  VMnetAdapter - ok
10:17:22.0139 1768  [ 392964A7BF46986FBD44B24A3BEC2088 ] VMnetBridge     C:\Windows\system32\DRIVERS\vmnetbridge.sys
10:17:22.0148 1768  VMnetBridge - ok
10:17:22.0164 1768  [ 6F5FE74A4713290E6309B45904403798 ] VMnetDHCP       C:\Windows\system32\vmnetdhcp.exe
10:17:22.0182 1768  VMnetDHCP - ok
10:17:22.0186 1768  [ C88E5F414C567FF10343DF18F8C3E3F0 ] VMnetuserif     C:\Windows\system32\drivers\vmnetuserif.sys
10:17:22.0196 1768  VMnetuserif - ok
10:17:22.0244 1768  [ AFB10AD9AA91D2F70C9F0E6BDA0D119B ] vmusb           C:\Windows\system32\Drivers\vmusb.sys
10:17:22.0255 1768  vmusb - ok
10:17:22.0347 1768  [ AF76C6D3F5053459E18E4C519FB496C8 ] VMUSBArbService C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
10:17:22.0369 1768  VMUSBArbService - ok
10:17:22.0392 1768  [ 5CC206036B6648CD3990D77E5117E1D9 ] VMware NAT Service C:\Windows\system32\vmnat.exe
10:17:22.0412 1768  VMware NAT Service - ok
10:17:22.0439 1768  [ 847909A1FC0C8EB46FF975747D673A7F ] vmx86           C:\Windows\system32\Drivers\vmx86.sys
10:17:22.0450 1768  vmx86 - ok
10:17:22.0480 1768  [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
10:17:22.0490 1768  volmgr - ok
10:17:22.0508 1768  [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
10:17:22.0523 1768  volmgrx - ok
10:17:22.0538 1768  [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
10:17:22.0551 1768  volsnap - ok
10:17:22.0587 1768  [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
10:17:22.0601 1768  vsmraid - ok
10:17:22.0693 1768  [ 5A2DDC5411A092BEDB1A07755E087784 ] VSPerfDrv100    G:\Programme\Team Tools\Performance Tools\VSPerfDrv100.sys
10:17:22.0703 1768  VSPerfDrv100 ( UnsignedFile.Multi.Generic ) - warning
10:17:22.0703 1768  VSPerfDrv100 - detected UnsignedFile.Multi.Generic (1)
10:17:22.0749 1768  [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS             C:\Windows\system32\vssvc.exe
10:17:22.0854 1768  VSS - ok
10:17:22.0879 1768  [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
10:17:22.0906 1768  vwifibus - ok
10:17:22.0925 1768  [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
10:17:22.0957 1768  vwififlt - ok
10:17:22.0977 1768  [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time         C:\Windows\system32\w32time.dll
10:17:23.0010 1768  W32Time - ok
10:17:23.0031 1768  [ DE3721E89C653AA281428C8A69745D90 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
10:17:23.0047 1768  WacomPen - ok
10:17:23.0070 1768  [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
10:17:23.0108 1768  WANARP - ok
10:17:23.0111 1768  [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
10:17:23.0135 1768  Wanarpv6 - ok
10:17:23.0171 1768  [ 691E3285E53DCA558E1A84667F13E15A ] wbengine        C:\Windows\system32\wbengine.exe
10:17:23.0246 1768  wbengine - ok
10:17:23.0267 1768  [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
10:17:23.0314 1768  WbioSrvc - ok
10:17:23.0338 1768  [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc         C:\Windows\System32\wcncsvc.dll
10:17:23.0374 1768  wcncsvc - ok
10:17:23.0385 1768  [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
10:17:23.0445 1768  WcsPlugInService - ok
10:17:23.0474 1768  [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd              C:\Windows\system32\drivers\wd.sys
10:17:23.0485 1768  Wd - ok
10:17:23.0510 1768  [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
10:17:23.0528 1768  Wdf01000 - ok
10:17:23.0536 1768  [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
10:17:23.0610 1768  WdiServiceHost - ok
10:17:23.0613 1768  [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
10:17:23.0628 1768  WdiSystemHost - ok
10:17:23.0646 1768  [ A9D880F97530D5B8FEE278923349929D ] WebClient       C:\Windows\System32\webclnt.dll
10:17:23.0705 1768  WebClient - ok
10:17:23.0718 1768  [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc          C:\Windows\system32\wecsvc.dll
10:17:23.0763 1768  Wecsvc - ok
10:17:23.0776 1768  [ AC804569BB2364FB6017370258A4091B ] wercplsupport   C:\Windows\System32\wercplsupport.dll
10:17:23.0802 1768  wercplsupport - ok
10:17:23.0829 1768  [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc          C:\Windows\System32\WerSvc.dll
10:17:23.0867 1768  WerSvc - ok
10:17:23.0907 1768  [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
10:17:23.0934 1768  WfpLwf - ok
10:17:23.0949 1768  [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
10:17:23.0959 1768  WIMMount - ok
10:17:24.0020 1768  [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
10:17:24.0058 1768  WinDefend - ok
10:17:24.0064 1768  WinHttpAutoProxySvc - ok
10:17:24.0124 1768  [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
10:17:24.0152 1768  Winmgmt - ok
10:17:24.0199 1768  [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM           C:\Windows\system32\WsmSvc.dll
10:17:24.0265 1768  WinRM - ok
10:17:24.0349 1768  [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
10:17:24.0371 1768  WinUsb - ok
10:17:24.0418 1768  [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc         C:\Windows\System32\wlansvc.dll
10:17:24.0534 1768  Wlansvc - ok
10:17:24.0645 1768  [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
10:17:24.0703 1768  WmiAcpi - ok
10:17:24.0737 1768  [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
10:17:24.0783 1768  wmiApSrv - ok
10:17:24.0873 1768  [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
10:17:24.0958 1768  WMPNetworkSvc - ok
10:17:24.0986 1768  [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc          C:\Windows\System32\wpcsvc.dll
10:17:25.0052 1768  WPCSvc - ok
10:17:25.0069 1768  [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
10:17:25.0089 1768  WPDBusEnum - ok
10:17:25.0102 1768  [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
10:17:25.0146 1768  ws2ifsl - ok
10:17:25.0166 1768  [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc          C:\Windows\System32\wscsvc.dll
10:17:25.0185 1768  wscsvc - ok
10:17:25.0188 1768  WSearch - ok
10:17:25.0259 1768  [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv        C:\Windows\system32\wuaueng.dll
10:17:25.0331 1768  wuauserv - ok
10:17:25.0360 1768  [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
10:17:25.0398 1768  WudfPf - ok
10:17:25.0430 1768  [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
10:17:25.0472 1768  WUDFRd - ok
10:17:25.0489 1768  [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
10:17:25.0516 1768  wudfsvc - ok
10:17:25.0531 1768  [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc         C:\Windows\System32\wwansvc.dll
10:17:25.0564 1768  WwanSvc - ok
10:17:25.0585 1768  ================ Scan global ===============================
10:17:25.0618 1768  [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
10:17:25.0652 1768  [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
10:17:25.0661 1768  [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
10:17:25.0686 1768  [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
10:17:25.0724 1768  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
10:17:25.0730 1768  [Global] - ok
10:17:25.0730 1768  ================ Scan MBR ==================================
10:17:25.0743 1768  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
10:17:26.0325 1768  \Device\Harddisk0\DR0 - ok
10:17:26.0326 1768  ================ Scan VBR ==================================
10:17:26.0330 1768  [ ADE339E06DBDFA25D2346739294744DD ] \Device\Harddisk0\DR0\Partition1
10:17:26.0332 1768  \Device\Harddisk0\DR0\Partition1 - ok
10:17:26.0365 1768  [ C0084F66E84DA04FA606018ED544C96B ] \Device\Harddisk0\DR0\Partition2
10:17:26.0368 1768  \Device\Harddisk0\DR0\Partition2 - ok
10:17:26.0390 1768  [ A7C7DE074E5D77D914DBC63935C5A3B9 ] \Device\Harddisk0\DR0\Partition3
10:17:26.0393 1768  \Device\Harddisk0\DR0\Partition3 - ok
10:17:26.0424 1768  [ EA4197EBC3B845F7871DD91632527CA1 ] \Device\Harddisk0\DR0\Partition4
10:17:26.0426 1768  \Device\Harddisk0\DR0\Partition4 - ok
10:17:26.0427 1768  ============================================================
10:17:26.0427 1768  Scan finished
10:17:26.0427 1768  ============================================================
10:17:26.0437 10024  Detected object count: 2
10:17:26.0437 10024  Actual detected object count: 2
10:17:41.0181 10024  VMAuthdService ( UnsignedFile.Multi.Generic ) - skipped by user
10:17:41.0181 10024  VMAuthdService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
10:17:41.0182 10024  VSPerfDrv100 ( UnsignedFile.Multi.Generic ) - skipped by user
10:17:41.0183 10024  VSPerfDrv100 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
10:18:03.0342 4784  Deinitialize success
         

Alt 25.03.2013, 15:31   #22
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Dann bitte jetzt Combofix ausführen:

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 26.03.2013, 10:34   #23
MysteriusGen
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



Hier die Combofix Logfile:

Code:
ATTFilter
ComboFix 13-03-25.01 - Stina 26.03.2013  10:15:00.1.2 - x86
Microsoft Windows 7 Professional   6.1.7601.1.1252.49.1031.18.2988.2204 [GMT 1:00]
ausgeführt von:: c:\users\Stina\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Neuer Wiederherstellungspunkt wurde erstellt
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Stina\AppData\Local\assembly\tmp
c:\windows\system32\roboot.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2013-02-26 bis 2013-03-26  ))))))))))))))))))))))))))))))
.
.
2013-03-26 09:19 . 2013-03-26 09:19	--------	d-----w-	c:\users\Stina\AppData\Local\temp
2013-03-26 09:19 . 2013-03-26 09:19	--------	d-----w-	c:\users\Default\AppData\Local\temp
2013-03-21 16:04 . 2013-03-21 16:04	--------	d-----w-	c:\users\Stina\AppData\Local\Macromedia
2013-03-13 07:53 . 2013-03-13 07:53	--------	d-----w-	c:\programdata\Malwarebytes
2013-03-11 10:37 . 2013-03-11 10:37	--------	d-----w-	c:\programdata\Sophos
2013-03-11 10:37 . 2013-03-11 10:37	73728	----a-r-	c:\users\Stina\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe1_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2013-03-11 10:37 . 2013-03-11 10:37	73728	----a-r-	c:\users\Stina\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2013-03-11 10:37 . 2013-03-11 10:37	73728	----a-r-	c:\users\Stina\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\ARPPRODUCTICON.exe
2013-03-11 10:37 . 2013-03-11 10:37	--------	d-----w-	c:\program files\Sophos
2013-03-11 07:59 . 2013-03-18 10:36	73432	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-11 07:59 . 2013-03-18 10:36	693976	----a-w-	c:\windows\system32\FlashPlayerApp.exe
2013-03-03 09:48 . 2013-03-03 09:48	--------	d-----w-	c:\programdata\Terzio
2013-03-03 09:45 . 2013-03-03 09:45	65536	----a-r-	c:\users\Stina\AppData\Roaming\Microsoft\Installer\{3D339202-76E6-4815-89D0-B59A8654B812}\AppName_3D33920276E6481589D0B59A8654B812.exe
2013-03-02 16:44 . 2000-01-04 22:20	86016	----a-w-	c:\windows\unvise32qt.exe
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin7.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin6.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin5.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin4.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin3.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin2.dll
2013-03-02 16:44 . 2013-03-02 16:44	106496	----a-w-	c:\program files\Internet Explorer\Plugins\npqtplugin.dll
2013-03-02 16:43 . 2013-03-02 16:45	1409	----a-w-	c:\windows\QTFont.for
2013-03-02 16:42 . 2013-03-02 16:45	--------	d-----w-	c:\program files\QuickTime
2013-03-02 16:42 . 2013-03-02 16:44	--------	d-----w-	c:\windows\system32\QuickTime
2013-03-02 16:41 . 2013-03-02 16:45	--------	d-----w-	c:\programdata\QuickTime
2013-03-02 16:40 . 2013-03-03 09:45	--------	d-----w-	C:\Terzio
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-12 16:46 . 2013-02-12 16:48	36552	----a-w-	c:\windows\system32\drivers\avkmgr.sys
2013-02-12 16:46 . 2013-02-12 16:48	134336	----a-w-	c:\windows\system32\drivers\avipbb.sys
2013-02-12 16:46 . 2013-02-12 16:48	83944	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2013-03-21 16:19 . 2013-03-21 16:19	263064	----a-w-	c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2013-03-10 1521800]
"{213c8ed6-1d78-4d8f-8729-25006aa86a76}"= "c:\program files\WiseConvert_1.3\prxtbWise.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
.
[HKEY_CLASSES_ROOT\clsid\{213c8ed6-1d78-4d8f-8729-25006aa86a76}]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{213c8ed6-1d78-4d8f-8729-25006aa86a76}]
2011-05-09 09:49	176936	----a-w-	c:\program files\WiseConvert_1.3\prxtbWise.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{213c8ed6-1d78-4d8f-8729-25006aa86a76}"= "c:\program files\WiseConvert_1.3\prxtbWise.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{213c8ed6-1d78-4d8f-8729-25006aa86a76}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{213C8ED6-1D78-4D8F-8729-25006AA86A76}"= "c:\program files\WiseConvert_1.3\prxtbWise.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{213c8ed6-1d78-4d8f-8729-25006aa86a76}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-01-08 18705664]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-03-29 143384]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-03-29 176664]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-03-29 178200]
"YouCam Mirage"="c:\program files\Lenovo\YouCam\YCMMirage.exe" [2010-12-05 136488]
"YouCam Tray"="c:\program files\Lenovo\YouCam\YouCam.exe" [2010-12-05 224352]
"Energy Management"="c:\program files\Lenovo\Energy Management\Energy Management.exe" [2010-11-12 8644512]
"EnergyUtility"="c:\program files\Lenovo\Energy Management\Utility.exe" [2010-11-12 5052320]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2010-12-22 2049320]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2013-03-10 1644680]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2013-02-12 385248]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2013-03-02 98304]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 cjusb;REINER SCT cyberJack USB Driver;c:\windows\system32\DRIVERS\cjusb.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 VSPerfDrv100;Performance Tools Driver 10.0;g:\programme\Team Tools\Performance Tools\VSPerfDrv100.sys [x]
R4 MSSQLServerADHelper100;SQL Server Hilfsdienst für Active Directory;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [x]
R4 RsFx0103;RsFx0103 Driver;c:\windows\system32\DRIVERS\RsFx0103.sys [x]
R4 SQLAgent$SQLEXPRESS;SQL Server-Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [x]
S0 LHDmgr;LHDmgr;c:\windows\System32\DRIVERS\LhdX86.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [x]
S2 AntiVirWebService;Avira Browser-Schutz;c:\program files\Avira\AntiVir Desktop\AVWEBGRD.EXE [x]
S2 FPSensor;EgisTec-Corp Fingerprint Reader Driver (FPSensor.sys);c:\windows\system32\Drivers\FPSensor.sys [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files\Common Files\VMware\USB\vmware-usbarbitrator.exe [x]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [x]
S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys [x]
S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MEI;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECI.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - 26915084
*NewlyCreated* - 35530276
*NewlyCreated* - ASWMBR
*Deregistered* - 26915084
*Deregistered* - 35530276
*Deregistered* - aswMBR
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-03-15 09:08	1629648	----a-w-	c:\program files\Google\Chrome\Application\25.0.1364.172\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-03-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-11 10:37]
.
2013-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-14 12:35]
.
2013-03-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-11-14 12:35]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://search.avira.com/?l=dis&o=APN10261&gct=hp&dc=EU&locale=de_DE
mStart Page = hxxp://www.google.com
IE: Nach Microsoft E&xel exportieren - c:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll
LSP: %SystemRoot%\system32\vsocklib.dll
FF - ProfilePath - c:\users\Stina\AppData\Roaming\Mozilla\Firefox\Profiles\jqm8jeti.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://search.avira.com/?l=dis&o=APN10261&gct=hp&dc=EU&locale=de_DE
FF - ExtSQL: 2013-02-12 17:48; toolbar@ask.com; c:\users\Stina\AppData\Roaming\Mozilla\Firefox\Profiles\jqm8jeti.default\extensions\toolbar@ask.com
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-03-26  10:21:10
ComboFix-quarantined-files.txt  2013-03-26 09:21
.
Vor Suchlauf: 9 Verzeichnis(se), 23.433.224.192 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 24.646.176.768 Bytes frei
.
- - End Of File - - C2FB9C70AEB02E6389E9EDCC72B244C1
         

Alt 26.03.2013, 12:24   #24
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
bprotector for Windows gefunden...Wie richtig entfernen? - Standard

bprotector for Windows gefunden...Wie richtig entfernen?



JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




Im Anschluss:

adwCleaner - Toolbars und ungewollte Start-/Suchseiten entfernen

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).


Danach eine Kontrolle mit OTL bitte:
  • Doppelklick auf die OTL.exe
  • Vista User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen
  • Setze oben mittig den Haken bei Scanne alle Benutzer
  • Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output
  • Unter Extra Registry, wähle bitte Use SafeList
  • Klicke nun auf Run Scan links oben
  • Wenn der Scan beendet wurde werden 2 Logfiles erstellt
  • Poste die Logfiles in CODE-Tags hier in den Thread.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu bprotector for Windows gefunden...Wie richtig entfernen?
antwort, arbeit, ausgeführt, bekannte, bprotector, brauch, entferne, entfernen, gefunde, googel, googeln, heute, hoffe, installier, installiert, langsam, laptop, namens, programm, richtig, schadsoftware, sehr langsam, suche, troja, trojaner-board, wenig, windows




Ähnliche Themen: bprotector for Windows gefunden...Wie richtig entfernen?


  1. Windows7: TR/BProtector.Gen2 & EXP/CVE-2012-1723.A1 gefunden!
    Log-Analyse und Auswertung - 25.11.2014 (7)
  2. AVSCAN TR/Dldr.Brantall.A.16 und BHO.BProtector.1.2 gefunden
    Log-Analyse und Auswertung - 18.11.2014 (19)
  3. Ich hab auch TR/BProtector.Gen2 gefunden.
    Log-Analyse und Auswertung - 24.10.2014 (21)
  4. TR/BProtector.gen von Avira gefunden
    Plagegeister aller Art und deren Bekämpfung - 08.07.2014 (7)
  5. Avast hat bei Startzeit-Überprüfung BProtector gefunden
    Plagegeister aller Art und deren Bekämpfung - 04.06.2014 (7)
  6. TR/BProtector.Gen von AVIRA gefunden
    Log-Analyse und Auswertung - 18.05.2014 (5)
  7. TR/BProtector.Gen2 von Avira gefunden.
    Plagegeister aller Art und deren Bekämpfung - 15.04.2014 (4)
  8. TR\BProtector.Gen auf Netbook (Win7) gefunden
    Plagegeister aller Art und deren Bekämpfung - 13.04.2014 (12)
  9. Windows 7: TR/BProtector.Gen gefunden
    Log-Analyse und Auswertung - 02.04.2014 (10)
  10. Win7 x64 | Bitguard-Trojaner? - BProtector.F , BProtector.E , BHO.Bprotector.1.4
    Log-Analyse und Auswertung - 15.12.2013 (11)
  11. Adware/BProtector.E gefunden
    Log-Analyse und Auswertung - 05.12.2013 (5)
  12. ADWARE/BProtector.E gefunden!
    Log-Analyse und Auswertung - 03.12.2013 (1)
  13. BHO.Bprotector.1.2 und Adware.Gen gefunden
    Plagegeister aller Art und deren Bekämpfung - 30.10.2013 (5)
  14. Adware.BProtector gefunden
    Plagegeister aller Art und deren Bekämpfung - 01.10.2013 (13)
  15. Bprotector von sophos gefunden als Adware und in Quarantäne geschickt
    Log-Analyse und Auswertung - 03.09.2013 (5)
  16. bprotector adware gefunden
    Plagegeister aller Art und deren Bekämpfung - 09.06.2013 (19)
  17. Habe " bprotector for windows " als Programm auf meinem Rechner gefunden - ist das ein Virus?
    Plagegeister aller Art und deren Bekämpfung - 05.02.2013 (19)

Zum Thema bprotector for Windows gefunden...Wie richtig entfernen? - Nein das kann nicht sein. Welchen Browser verwendest du? - bprotector for Windows gefunden...Wie richtig entfernen?...
Archiv
Du betrachtest: bprotector for Windows gefunden...Wie richtig entfernen? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.