![]() |
BKA-Trojaner LOG-AUswertung Hallo! Ich habe seit Mittwoch den BKA-Virus. Nach zahlreichen Versuchen habe ich mit Hilfe einer Rescue-CD alle infizierten Dateien löschen lassen. Da der BKA-Bildschirm aber immer noch nicht weg war und ich nichts am PC machen konnte, habe ich mit Hilfe einer anderen Anleitung (http://www.trojaner-board.de/100309-...geht-mehr.html) eine OTLPE-CD erstellt. Jetzt bin ich aber an dem Punkt angelangt, wo der Fragende aufgefordert wird, den LOG zu posten und komme daher an dieser Stelle nicht mehr weiter. Bitte, kann mir irgendwer weiterhelfen??? Hier die Datei: |
Mach einen OTL-Fix über OTLPE, starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code: :OTL Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet. Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt. Danach sollte Windows wieder normal starten - stell uns bitte den Quarantäneordner von OTL zur Verfügung. Dabei bitte so vorgehen: 1.) GANZ WICHTIG!! Virenscanner deaktivieren, der darf das Packen nicht beeinträchtigen! 2.) Ordner movedfiles in C:\_OTL in eine Datei zippen 3.) Die erstellte ZIP-Datei hier hochladen => http://www.trojaner-board.de/54791-a...ner-board.html 4.) Wenns erfolgreich war Bescheid sagen 5.) Erst dann wieder den Virenscanner einschalten |
:dankeschoen: Er funktioniert wieder :applaus: Ich freu mich! Vielen vielen Dank! Im Anhang ist dann die Zip-Datei und die Log-File. Ich hoff, des passt alles so, wie ichs gemacht habe... Die andern beiden Ordner C_Program Files und C_SystemData waren zu groß zum hinzufügen... |
Sorry, mein Fehler! Habs jetz beim Upload-Channel hochgeladen und es hat funktioniert ^^ Bin ich jetz dann fertig? |
Bitte nun routinemäßig einen Vollscan mit malwarebytes machen und Log posten. Denk daran, dass Malwarebytes vor jedem Scan manuell aktualisiert werden muss! Falls Logs aus älteren Scans mit Malwarebytes vorhanden sind, bitte auch davon alle posten! Danach OTL-Custom: CustomScan mit OTL Falls noch nicht vorhanden, lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
Code: netsvcs
|
Malwarebytes' Anti-Malware 1.51.1.1800 www.malwarebytes.org Datenbank Version: 7417 Windows 6.0.6001 Service Pack 1 Internet Explorer 7.0.6001.18000 09.08.2011 18:44:39 mbam-log-2011-08-09 (18-44-39).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|) Durchsuchte Objekte: 332746 Laufzeit: 52 Minute(n), 35 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 5 Infizierte Registrierungswerte: 1 Infizierte Dateiobjekte der Registrierung: 1 Infizierte Verzeichnisse: 0 Infizierte Dateien: 2 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CURRENT_USER\SOFTWARE\20W6RLKX65 (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\ASH24SXZ9S (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\OTGV1DNWQQ (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\bak_Application (Hijacker.Application) -> Value: bak_Application -> Quarantined and deleted successfully. Infizierte Dateiobjekte der Registrierung: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\Application (Hijacker.Application) -> Bad: (hxxp://www.helpmeopen.com/?n=app&ext=%s) Good: (hxxp://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s) -> Quarantined and deleted successfully. Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: c:\users\ramona kalb\appdata\local\temp\0.010720248489460071.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully. c:\_otl\movedfiles\08092011_181545\c_program files\mozilla firefox\0.24800707654549337.exe (Spyware.Passwords.XGen) -> Quarantined and deleted successfully. |
OTL Logfile: Code: OTL logfile created on: 09.08.2011 18:58:17 - Run 1 |
Mach einen OTL-Fix, beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code: :OTL Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet. Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt. |
========== OTL ========== Service Norton Internet Security stopped successfully! Service Norton Internet Security deleted successfully! C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\META-INF folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults\preferences folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\chrome folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\sites folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin\favicon folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}\chrome folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\components folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847} folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\preferences folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\defaults folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\imgs folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\content folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\components folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\tmp\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\tmp\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\tmp\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\tmp folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\text-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\props folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn\prop-base folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com\.svn folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\mozilla\Firefox\Profiles\j9pwctgf.default\extensions\ffxtlbr@babylon.com folder moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\conduit.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\gmx-suche.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-1.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-10.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-11.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-12.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-13.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-2.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-3.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-4.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-5.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-6.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-7.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-8.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin-9.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin.gif moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin.src moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\icqplugin.xml moved successfully. C:\Users\Ramona Kalb\AppData\Roaming\Mozilla\Firefox\Profiles\j9pwctgf.default\searchplugins\sweetim.xml moved successfully. C:\PROGRAM FILES\PRICEGONG\2.1.0\FF\content folder moved successfully. C:\PROGRAM FILES\PRICEGONG\2.1.0\FF\components folder moved successfully. C:\PROGRAM FILES\PRICEGONG\2.1.0\FF folder moved successfully. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:c:\program files\mozilla firefox\0.24800707654549337.exe deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2e154265-1f07-11e0-ac33-0022fa566bfa}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2e154265-1f07-11e0-ac33-0022fa566bfa}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2e154265-1f07-11e0-ac33-0022fa566bfa}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2e154265-1f07-11e0-ac33-0022fa566bfa}\ not found. File G:\LaunchU3.exe -a not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\\msacm.divxa32 deleted successfully. C:\Windows\System32\DivXa32.acm moved successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\\vidc.DIV3 deleted successfully. C:\Windows\System32\DivXc32.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\\vidc.DIV4 deleted successfully. C:\Windows\System32\DivXc32f.dll moved successfully. ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.26.1 log created on 08092011_224631 |
Bin ich jetzt fertig??? :rolleyes: |
Bitte nun dieses Tool von Kaspersky ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html Das Tool so einstellen wie unten im Bild angegeben - also beide Haken setzen, auf Start scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. http://www.trojaner-board.de/attachm...rnen-start.png Falls du durch die Infektion auf deine Dokumente/Eigenen Dateien nicht zugreifen kannst, Verknüpfungen auf dem Desktop oder im Startmenü unter "alle Programme" fehlen, bitte unhide ausführen: Downloade dir bitte unhide.exe und speichere diese Datei auf deinem Desktop. Starte das Tool und es sollten alle Dateien und Ordner wieder sichtbar sein. ( Könnte eine Weile dauern ) http://www.trojaner-board.de/images/icons/icon4.gif Windows-Vista und Windows-7-User müssen das Tool per Rechtsklick als Administrator ausführen! http://www.trojaner-board.de/images/icons/icon4.gif |
2011/08/11 10:19:05.0699 4176 TDSS rootkit removing tool 2.5.14.0 Aug 5 2011 16:09:29 2011/08/11 10:19:05.0934 4176 ================================================================================ 2011/08/11 10:19:05.0934 4176 SystemInfo: 2011/08/11 10:19:05.0934 4176 2011/08/11 10:19:05.0934 4176 OS Version: 6.0.6001 ServicePack: 1.0 2011/08/11 10:19:05.0934 4176 Product type: Workstation 2011/08/11 10:19:05.0934 4176 ComputerName: RAMONA 2011/08/11 10:19:05.0934 4176 UserName: Ramona Kalb 2011/08/11 10:19:05.0934 4176 Windows directory: C:\Windows 2011/08/11 10:19:05.0934 4176 System windows directory: C:\Windows 2011/08/11 10:19:05.0934 4176 Processor architecture: Intel x86 2011/08/11 10:19:05.0934 4176 Number of processors: 2 2011/08/11 10:19:05.0934 4176 Page size: 0x1000 2011/08/11 10:19:05.0934 4176 Boot type: Normal boot 2011/08/11 10:19:05.0934 4176 ================================================================================ 2011/08/11 10:19:06.0349 4176 Initialize success 2011/08/11 10:19:08.0511 4944 ================================================================================ 2011/08/11 10:19:08.0512 4944 Scan started 2011/08/11 10:19:08.0512 4944 Mode: Manual; 2011/08/11 10:19:08.0512 4944 ================================================================================ 2011/08/11 10:19:09.0643 4944 ACPI (fcb8c7210f0135e24c6580f7f649c73c) C:\Windows\system32\drivers\acpi.sys 2011/08/11 10:19:09.0706 4944 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys 2011/08/11 10:19:09.0751 4944 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys 2011/08/11 10:19:09.0864 4944 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys 2011/08/11 10:19:09.0905 4944 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys 2011/08/11 10:19:10.0048 4944 AF15BDA (6e1cc5aa9817cd13fbceb35dac0a77f7) C:\Windows\system32\DRIVERS\AF15BDA.sys 2011/08/11 10:19:10.0170 4944 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\Windows\system32\drivers\Afc.sys 2011/08/11 10:19:10.0242 4944 AFD (763e172a55177e478cb419f88fd0ba03) C:\Windows\system32\drivers\afd.sys 2011/08/11 10:19:10.0357 4944 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys 2011/08/11 10:19:10.0444 4944 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys 2011/08/11 10:19:10.0535 4944 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys 2011/08/11 10:19:10.0591 4944 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys 2011/08/11 10:19:10.0613 4944 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys 2011/08/11 10:19:10.0634 4944 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys 2011/08/11 10:19:10.0676 4944 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys 2011/08/11 10:19:10.0716 4944 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys 2011/08/11 10:19:10.0738 4944 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys 2011/08/11 10:19:10.0863 4944 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys 2011/08/11 10:19:10.0898 4944 atapi (0d83c87a801a3dfcd1bf73893fe7518c) C:\Windows\system32\drivers\atapi.sys 2011/08/11 10:19:11.0009 4944 avgio (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys 2011/08/11 10:19:11.0100 4944 avgntflt (14fe36d8f2c6a2435275338d061a0b66) C:\Windows\system32\DRIVERS\avgntflt.sys 2011/08/11 10:19:11.0166 4944 avipbb (6d52060b59e7d79cd2a044b6add1f1ef) C:\Windows\system32\DRIVERS\avipbb.sys 2011/08/11 10:19:11.0254 4944 b57nd60x (502f1c30bd50b32d00ce4dcaecc3d3c7) C:\Windows\system32\DRIVERS\b57nd60x.sys 2011/08/11 10:19:11.0339 4944 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys 2011/08/11 10:19:11.0389 4944 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys 2011/08/11 10:19:11.0478 4944 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys 2011/08/11 10:19:11.0515 4944 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys 2011/08/11 10:19:11.0641 4944 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys 2011/08/11 10:19:11.0674 4944 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys 2011/08/11 10:19:11.0711 4944 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys 2011/08/11 10:19:11.0743 4944 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys 2011/08/11 10:19:11.0779 4944 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys 2011/08/11 10:19:11.0886 4944 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys 2011/08/11 10:19:11.0935 4944 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys 2011/08/11 10:19:11.0980 4944 cdrom (1ec25cea0de6ac4718bf89f9e1778b57) C:\Windows\system32\DRIVERS\cdrom.sys 2011/08/11 10:19:12.0085 4944 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys 2011/08/11 10:19:12.0159 4944 CLFS (465745561c832b29f7c48b488aab3842) C:\Windows\system32\CLFS.sys 2011/08/11 10:19:12.0311 4944 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys 2011/08/11 10:19:12.0342 4944 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys 2011/08/11 10:19:12.0408 4944 CnxtHdAudService (01b80273c019f0f25f27fa2e80a85578) C:\Windows\system32\drivers\CHDRT32.sys 2011/08/11 10:19:12.0534 4944 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys 2011/08/11 10:19:12.0585 4944 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys 2011/08/11 10:19:12.0627 4944 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys 2011/08/11 10:19:12.0723 4944 DfsC (9e635ae5e8ad93e2b5989e2e23679f97) C:\Windows\system32\Drivers\dfsc.sys 2011/08/11 10:19:12.0838 4944 disk (64109e623abd6955c8fb110b592e68b7) C:\Windows\system32\drivers\disk.sys 2011/08/11 10:19:12.0920 4944 DKbFltr (73baf270d24fe726b9cd7f80bb17a23d) C:\Windows\system32\DRIVERS\DKbFltr.sys 2011/08/11 10:19:13.0039 4944 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys 2011/08/11 10:19:13.0177 4944 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys 2011/08/11 10:19:13.0204 4944 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys 2011/08/11 10:19:13.0250 4944 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys 2011/08/11 10:19:13.0391 4944 DXGKrnl (85f33880b8cfb554bd3d9ccdb486845a) C:\Windows\System32\drivers\dxgkrnl.sys 2011/08/11 10:19:13.0507 4944 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys 2011/08/11 10:19:13.0591 4944 Ecache (dd2cd259d83d8b72c02c5f2331ff9d68) C:\Windows\system32\drivers\ecache.sys 2011/08/11 10:19:13.0733 4944 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys 2011/08/11 10:19:13.0966 4944 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys 2011/08/11 10:19:14.0110 4944 exfat (0d858eb20589a34efb25695acaa6aa2d) C:\Windows\system32\drivers\exfat.sys 2011/08/11 10:19:14.0191 4944 fastfat (3c489390c2e2064563727752af8eab9e) C:\Windows\system32\drivers\fastfat.sys 2011/08/11 10:19:14.0360 4944 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys 2011/08/11 10:19:14.0561 4944 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys 2011/08/11 10:19:14.0740 4944 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys 2011/08/11 10:19:14.0854 4944 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys 2011/08/11 10:19:14.0905 4944 FltMgr (05ea53afe985443011e36dab07343b46) C:\Windows\system32\drivers\fltmgr.sys 2011/08/11 10:19:15.0102 4944 FsUsbExDisk (790a4ca68f44be35967b3df61f3e4675) C:\Windows\system32\FsUsbExDisk.SYS 2011/08/11 10:19:15.0224 4944 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys 2011/08/11 10:19:15.0342 4944 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys 2011/08/11 10:19:15.0627 4944 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys 2011/08/11 10:19:15.0762 4944 HDAudBus (c87b1ee051c0464491c1a7b03fa0bc99) C:\Windows\system32\DRIVERS\HDAudBus.sys 2011/08/11 10:19:15.0777 4944 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys 2011/08/11 10:19:15.0793 4944 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys 2011/08/11 10:19:15.0962 4944 HidUsb (e2b5bd48afcc0f0974fb44641b223250) C:\Windows\system32\DRIVERS\hidusb.sys 2011/08/11 10:19:16.0121 4944 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys 2011/08/11 10:19:16.0322 4944 HPZid412 (30ca91e657cede2f95359d6ef186f650) C:\Windows\system32\DRIVERS\HPZid412.sys 2011/08/11 10:19:16.0418 4944 HPZipr12 (efd31afa752aa7c7bbb57bcbe2b01c78) C:\Windows\system32\DRIVERS\HPZipr12.sys 2011/08/11 10:19:16.0578 4944 HPZius12 (7ac43c38ca8fd7ed0b0a4466f753e06e) C:\Windows\system32\DRIVERS\HPZius12.sys 2011/08/11 10:19:16.0669 4944 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS 2011/08/11 10:19:16.0835 4944 HSF_DPV (ec36f1d542ed4252390d446bf6d4dfd0) C:\Windows\system32\DRIVERS\VSTDPV3.SYS 2011/08/11 10:19:17.0007 4944 HTTP (96e241624c71211a79c84f50a8e71cab) C:\Windows\system32\drivers\HTTP.sys 2011/08/11 10:19:17.0094 4944 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys 2011/08/11 10:19:17.0212 4944 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys 2011/08/11 10:19:17.0276 4944 iaStor (71ecc07bc7c5e24c3dd01d8a29a24054) C:\Windows\system32\DRIVERS\iaStor.sys 2011/08/11 10:19:17.0319 4944 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys 2011/08/11 10:19:17.0496 4944 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys 2011/08/11 10:19:17.0530 4944 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys 2011/08/11 10:19:17.0570 4944 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys 2011/08/11 10:19:17.0723 4944 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2011/08/11 10:19:17.0915 4944 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys 2011/08/11 10:19:17.0965 4944 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys 2011/08/11 10:19:18.0004 4944 irda (e50a95179211b12946f7e035d60af560) C:\Windows\system32\DRIVERS\irda.sys 2011/08/11 10:19:18.0117 4944 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys 2011/08/11 10:19:18.0239 4944 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys 2011/08/11 10:19:18.0331 4944 iScsiPrt (f247eec28317f6c739c16de420097301) C:\Windows\system32\DRIVERS\msiscsi.sys 2011/08/11 10:19:18.0420 4944 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys 2011/08/11 10:19:18.0436 4944 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys 2011/08/11 10:19:18.0542 4944 k57nd60x (eac21e8014c7e6ee341afffb7e2bbd54) C:\Windows\system32\DRIVERS\k57nd60x.sys 2011/08/11 10:19:18.0706 4944 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys 2011/08/11 10:19:18.0755 4944 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\DRIVERS\kbdhid.sys 2011/08/11 10:19:18.0835 4944 KSecDD (5367dc846cae9639b899bfd13b97a8c9) C:\Windows\system32\Drivers\ksecdd.sys 2011/08/11 10:19:19.0007 4944 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys 2011/08/11 10:19:19.0065 4944 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys 2011/08/11 10:19:19.0079 4944 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys 2011/08/11 10:19:19.0195 4944 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys 2011/08/11 10:19:19.0237 4944 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys 2011/08/11 10:19:19.0369 4944 MBAMProtector (eca00eed9ab95489007b0ef84c7149de) C:\Windows\system32\drivers\mbam.sys 2011/08/11 10:19:19.0573 4944 MBAMSwissArmy (b18225739ed9caa83ba2df966e9f43e8) C:\Windows\system32\drivers\mbamswissarmy.sys 2011/08/11 10:19:19.0776 4944 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys 2011/08/11 10:19:19.0859 4944 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys 2011/08/11 10:19:19.0947 4944 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys 2011/08/11 10:19:20.0022 4944 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys 2011/08/11 10:19:20.0044 4944 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys 2011/08/11 10:19:20.0072 4944 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys 2011/08/11 10:19:20.0193 4944 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys 2011/08/11 10:19:20.0302 4944 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys 2011/08/11 10:19:20.0489 4944 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys 2011/08/11 10:19:20.0559 4944 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys 2011/08/11 10:19:20.0691 4944 MRxDAV (ae3de84536b6799d2267443cec8edbb9) C:\Windows\system32\drivers\mrxdav.sys 2011/08/11 10:19:20.0848 4944 mrxsmb (66592e91051728c3571b0d77175686ab) C:\Windows\system32\DRIVERS\mrxsmb.sys 2011/08/11 10:19:20.0885 4944 mrxsmb10 (aa9496b3b8f1d3cb2d2a731ba05464e0) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2011/08/11 10:19:20.0932 4944 mrxsmb20 (3268b8c3fa92bfc086355c39b45e9cc9) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2011/08/11 10:19:21.0375 4944 msahci (f70590424eefbf5c27a40c67afdb8383) C:\Windows\system32\drivers\msahci.sys 2011/08/11 10:19:21.0417 4944 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys 2011/08/11 10:19:21.0443 4944 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys 2011/08/11 10:19:21.0534 4944 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys 2011/08/11 10:19:21.0592 4944 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys 2011/08/11 10:19:21.0625 4944 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys 2011/08/11 10:19:21.0662 4944 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys 2011/08/11 10:19:21.0766 4944 MsRPC (b5614aecb05a9340aa0fb55bf561cc63) C:\Windows\system32\drivers\MsRPC.sys 2011/08/11 10:19:21.0857 4944 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys 2011/08/11 10:19:21.0998 4944 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys 2011/08/11 10:19:22.0151 4944 Mup (6dfd1d322de55b0b7db7d21b90bec49c) C:\Windows\system32\Drivers\mup.sys 2011/08/11 10:19:22.0286 4944 NativeWifiP (3c21ce48ff529bb73dadb98770b54025) C:\Windows\system32\DRIVERS\nwifi.sys 2011/08/11 10:19:22.0527 4944 NDIS (9bdc71790fa08f0a0b5f10462b1bd0b1) C:\Windows\system32\drivers\ndis.sys 2011/08/11 10:19:22.0564 4944 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys 2011/08/11 10:19:22.0649 4944 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys 2011/08/11 10:19:22.0684 4944 NdisWan (3d14c3b3496f88890d431e8aa022a411) C:\Windows\system32\DRIVERS\ndiswan.sys 2011/08/11 10:19:22.0726 4944 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys 2011/08/11 10:19:22.0840 4944 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys 2011/08/11 10:19:22.0857 4944 netbt (7c5fee5b1c5728507cd96fb4a13e7a02) C:\Windows\system32\DRIVERS\netbt.sys 2011/08/11 10:19:23.0059 4944 NETw5v32 (ae642d069681a826d5f16e4f6ad158f3) C:\Windows\system32\DRIVERS\NETw5v32.sys 2011/08/11 10:19:23.0265 4944 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys 2011/08/11 10:19:23.0320 4944 Npfs (ecb5003f484f9ed6c608d6d6c7886cbb) C:\Windows\system32\drivers\Npfs.sys 2011/08/11 10:19:23.0336 4944 NSCIRDA (6d8d2e5652fc2442c810c5d8be784148) C:\Windows\system32\DRIVERS\nscirda.sys 2011/08/11 10:19:23.0371 4944 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys 2011/08/11 10:19:23.0482 4944 Ntfs (b4effe29eb4f15538fd8a9681108492d) C:\Windows\system32\drivers\Ntfs.sys 2011/08/11 10:19:23.0610 4944 NTIDrvr (2757d2ba59aee155209e24942ab127c9) C:\Windows\system32\Drivers\NTIDrvr.sys 2011/08/11 10:19:23.0696 4944 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys 2011/08/11 10:19:23.0778 4944 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys 2011/08/11 10:19:23.0871 4944 NVHDA (5942c96a3ac3029490961949f9009344) C:\Windows\system32\drivers\nvhda32v.sys 2011/08/11 10:19:24.0170 4944 nvlddmkm (7faa756fefdd371745c88f8ae3141f0f) C:\Windows\system32\DRIVERS\nvlddmkm.sys 2011/08/11 10:19:24.0902 4944 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys 2011/08/11 10:19:24.0920 4944 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys 2011/08/11 10:19:27.0918 4944 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys 2011/08/11 10:19:28.0134 4944 ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys 2011/08/11 10:19:28.0186 4944 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys 2011/08/11 10:19:28.0219 4944 partmgr (3b38467e7c3daed009dfe359e17f139f) C:\Windows\system32\drivers\partmgr.sys 2011/08/11 10:19:28.0295 4944 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys 2011/08/11 10:19:28.0354 4944 pccsmcfd (175cc28dcf819f78caa3fbd44ad9e52a) C:\Windows\system32\DRIVERS\pccsmcfd.sys 2011/08/11 10:19:28.0400 4944 pci (01b94418deb235dff777cc80076354b4) C:\Windows\system32\drivers\pci.sys 2011/08/11 10:19:28.0491 4944 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys 2011/08/11 10:19:28.0534 4944 pcmcia (b7c5a8769541900f6dfa6fe0c5e4d513) C:\Windows\system32\DRIVERS\pcmcia.sys 2011/08/11 10:19:28.0613 4944 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys 2011/08/11 10:19:28.0759 4944 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys 2011/08/11 10:19:28.0809 4944 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys 2011/08/11 10:19:28.0908 4944 PSched (bfef604508a0ed1eae2a73e872555ffb) C:\Windows\system32\DRIVERS\pacer.sys 2011/08/11 10:19:28.0965 4944 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\Windows\system32\Drivers\PxHelp20.sys 2011/08/11 10:19:29.0034 4944 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys 2011/08/11 10:19:29.0154 4944 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys 2011/08/11 10:19:29.0222 4944 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys 2011/08/11 10:19:29.0242 4944 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys 2011/08/11 10:19:29.0286 4944 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys 2011/08/11 10:19:29.0377 4944 RasPppoe (3e9d9b048107b40d87b97df2e48e0744) C:\Windows\system32\DRIVERS\raspppoe.sys 2011/08/11 10:19:29.0428 4944 RasSstp (a7d141684e9500ac928a772ed8e6b671) C:\Windows\system32\DRIVERS\rassstp.sys 2011/08/11 10:19:29.0480 4944 rdbss (6e1c5d0457622f9ee35f683110e93d14) C:\Windows\system32\DRIVERS\rdbss.sys 2011/08/11 10:19:29.0522 4944 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys 2011/08/11 10:19:29.0644 4944 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys 2011/08/11 10:19:29.0674 4944 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys 2011/08/11 10:19:29.0697 4944 RDPWD (e1c18f4097a5abcec941dc4b2f99db7e) C:\Windows\system32\drivers\RDPWD.sys 2011/08/11 10:19:29.0770 4944 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys 2011/08/11 10:19:29.0850 4944 RTSTOR (d97d8259293b7a82cb891f37f997df3f) C:\Windows\system32\drivers\RTSTOR.SYS 2011/08/11 10:19:29.0920 4944 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys 2011/08/11 10:19:30.0037 4944 sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys 2011/08/11 10:19:30.0107 4944 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys 2011/08/11 10:19:30.0134 4944 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys 2011/08/11 10:19:30.0165 4944 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys 2011/08/11 10:19:30.0235 4944 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys 2011/08/11 10:19:30.0309 4944 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys 2011/08/11 10:19:30.0337 4944 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys 2011/08/11 10:19:30.0354 4944 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys 2011/08/11 10:19:30.0370 4944 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys 2011/08/11 10:19:30.0397 4944 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys 2011/08/11 10:19:30.0426 4944 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys 2011/08/11 10:19:30.0441 4944 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys 2011/08/11 10:19:30.0534 4944 Smb (031e6bcd53c9b2b9ace111eafec347b6) C:\Windows\system32\DRIVERS\smb.sys 2011/08/11 10:19:30.0582 4944 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys 2011/08/11 10:19:30.0693 4944 srv (73dddbeec61e78568082916a27aadaee) C:\Windows\system32\DRIVERS\srv.sys 2011/08/11 10:19:30.0782 4944 srv2 (4ceeb95e0b79e48b81f2da0a6c24c64b) C:\Windows\system32\DRIVERS\srv2.sys 2011/08/11 10:19:30.0837 4944 srvnet (f63a0a58aafe34d7a1a0a74abccdd9c0) C:\Windows\system32\DRIVERS\srvnet.sys 2011/08/11 10:19:30.0970 4944 ssmdrv (5ec550b8952882ee856b862cf648522d) C:\Windows\system32\DRIVERS\ssmdrv.sys 2011/08/11 10:19:31.0058 4944 ss_bbus (eaa66218cd39f5bb1b4853a78c67c787) C:\Windows\system32\DRIVERS\ss_bbus.sys 2011/08/11 10:19:31.0196 4944 ss_bmdfl (91765f99914ed8693d8bc76524f21581) C:\Windows\system32\DRIVERS\ss_bmdfl.sys 2011/08/11 10:19:31.0282 4944 ss_bmdm (840e7b738b03c10ee91d9b7d3d6eff15) C:\Windows\system32\DRIVERS\ss_bmdm.sys 2011/08/11 10:19:31.0374 4944 StillCam (ef70b3d22b4bffda6ea851ecb063efaa) C:\Windows\system32\DRIVERS\serscan.sys 2011/08/11 10:19:31.0448 4944 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys 2011/08/11 10:19:31.0583 4944 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys 2011/08/11 10:19:31.0635 4944 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys 2011/08/11 10:19:31.0751 4944 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys 2011/08/11 10:19:31.0819 4944 SynTP (5c3e900f41426a372de60675afc8aa07) C:\Windows\system32\DRIVERS\SynTP.sys 2011/08/11 10:19:31.0976 4944 Tcpip (1acbb7a47e78f4cc82d2effb72901528) C:\Windows\system32\drivers\tcpip.sys 2011/08/11 10:19:32.0143 4944 Tcpip6 (1acbb7a47e78f4cc82d2effb72901528) C:\Windows\system32\DRIVERS\tcpip.sys 2011/08/11 10:19:32.0257 4944 tcpipreg (d4a2e4a4b011f3a883af77315a5ae76b) C:\Windows\system32\drivers\tcpipreg.sys 2011/08/11 10:19:32.0342 4944 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys 2011/08/11 10:19:32.0361 4944 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys 2011/08/11 10:19:32.0394 4944 tdx (d09276b1fab033ce1d40dcbdf303d10f) C:\Windows\system32\DRIVERS\tdx.sys 2011/08/11 10:19:32.0522 4944 TermDD (a048056f5e1a96a9bf3071b91741a5aa) C:\Windows\system32\DRIVERS\termdd.sys 2011/08/11 10:19:32.0580 4944 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys 2011/08/11 10:19:32.0609 4944 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys 2011/08/11 10:19:32.0641 4944 tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys 2011/08/11 10:19:32.0674 4944 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys 2011/08/11 10:19:32.0791 4944 UBHelper (f763e070843ee2803de1395002b42938) C:\Windows\system32\drivers\UBHelper.sys 2011/08/11 10:19:32.0855 4944 udfs (8b5088058fa1d1cd897a2113ccff6c58) C:\Windows\system32\DRIVERS\udfs.sys 2011/08/11 10:19:32.0925 4944 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys 2011/08/11 10:19:33.0025 4944 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys 2011/08/11 10:19:33.0064 4944 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys 2011/08/11 10:19:33.0111 4944 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys 2011/08/11 10:19:33.0226 4944 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys 2011/08/11 10:19:33.0291 4944 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys 2011/08/11 10:19:33.0328 4944 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys 2011/08/11 10:19:33.0444 4944 usbehci (cebe90821810e76320155beba722fcf9) C:\Windows\system32\DRIVERS\usbehci.sys 2011/08/11 10:19:33.0509 4944 usbhub (cc6b28e4ce39951357963119ce47b143) C:\Windows\system32\DRIVERS\usbhub.sys 2011/08/11 10:19:33.0599 4944 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys 2011/08/11 10:19:33.0677 4944 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys 2011/08/11 10:19:33.0730 4944 USBSTOR (87ba6b83c5d19b69160968d07d6e2982) C:\Windows\system32\DRIVERS\USBSTOR.SYS 2011/08/11 10:19:33.0816 4944 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys 2011/08/11 10:19:33.0883 4944 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys 2011/08/11 10:19:33.0950 4944 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys 2011/08/11 10:19:34.0035 4944 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys 2011/08/11 10:19:34.0143 4944 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys 2011/08/11 10:19:34.0160 4944 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys 2011/08/11 10:19:34.0221 4944 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys 2011/08/11 10:19:34.0304 4944 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys 2011/08/11 10:19:34.0367 4944 volmgrx (98f5ffe6316bd74e9e2c97206c190196) C:\Windows\system32\drivers\volmgrx.sys 2011/08/11 10:19:34.0395 4944 volsnap (d8b4a53dd2769f226b3eb374374987c9) C:\Windows\system32\drivers\volsnap.sys 2011/08/11 10:19:34.0437 4944 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys 2011/08/11 10:19:34.0570 4944 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys 2011/08/11 10:19:34.0624 4944 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 2011/08/11 10:19:34.0638 4944 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 2011/08/11 10:19:34.0784 4944 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys 2011/08/11 10:19:34.0867 4944 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys 2011/08/11 10:19:35.0033 4944 winachsf (5c7bdcf5864db00323fe2d90fa26a8a2) C:\Windows\system32\DRIVERS\VSTCNXT3.SYS 2011/08/11 10:19:35.0193 4944 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys 2011/08/11 10:19:35.0259 4944 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys 2011/08/11 10:19:35.0349 4944 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys 2011/08/11 10:19:35.0399 4944 MBR (0x1B8) (beedf9b7f43a72a91456f7131afc11b2) \Device\Harddisk0\DR0 2011/08/11 10:19:35.0561 4944 Boot (0x1200) (a5de3ddf6a56476fa046ceca8531c91b) \Device\Harddisk0\DR0\Partition0 2011/08/11 10:19:35.0592 4944 Boot (0x1200) (aaada394b7f084f3489f08d7d3f26e9e) \Device\Harddisk0\DR0\Partition1 2011/08/11 10:19:35.0597 4944 ================================================================================ 2011/08/11 10:19:35.0597 4944 Scan finished 2011/08/11 10:19:35.0597 4944 ================================================================================ 2011/08/11 10:19:35.0610 4336 Detected object count: 0 2011/08/11 10:19:35.0610 4336 Actual detected object count: 0 |
Alle Zeitangaben in WEZ +1. Es ist jetzt 19:29 Uhr. |
Copyright ©2000-2025, Trojaner-Board