![]() |
Aus Sicherheitsgründen wurde ihre Windows systemherstellung blockiert Trojaner Guten Abend, wie anscheinend schon mehrere habe ich auch das problem mit dem Trojaner. Nach ca.10 min internetverbindung erscheint: Achtung Aus Sicherheitsgründen wurde ihre Windows systemherstellung blockiert, dann geht garnichts mehr, außerdem werden noch 50€ gefordert. Ich habe nun überhaupt keine Ahnung was ich nun machen muss und hoffe sehr das mir jemand hilft. MfG |
Hallo und Herzlich Willkommen! :) Bevor wir unsere Zusammenarbeit beginnen, [Bitte Vollständig lesen]: Zitat:
Für Vista und Win7: Wichtig: Alle Befehle bitte als Administrator ausführen! rechte Maustaste auf die Eingabeaufforderung und "als Administrator ausführen" auswählen Auf der angewählten Anwendung einen Rechtsklick (rechte Maustaste) und "Als Administrator ausführen" wählen! 1. Lade Dir Malwarebytes Anti-Malware von→ malwarebytes.org
2. Systemscan mit OTL Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
3. Ich würde gerne noch all deine installierten Programme sehen: Lade dir das Tool CCleaner herunter → Download installieren (Software-Lizenzvereinbarung lesen, falls angeboten wird "Füge CCleaner Yahoo! Toolbar hinzu" abwählen)→ starten→ Sprache → Deutsch auswählen dann klick auf "Extra (um die installierten Programme auch anzuzeigen)→ weiter auf "Als Textdatei speichern..." wird eine Textdatei (*.txt) erstellt, kopiere dazu den Inhalt und füge ihn da ein Zitat:
kira |
Malwarebytes Anti-Malware 1.60.0.1800 Malwarebytes : Free anti-malware, anti-virus and spyware removal download Datenbank Version: v2012.01.08.03 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 x :: x [Administrator] Schutz: Aktiviert 09.01.2012 16:19:11 mbam-log-2012-01-09 (16-19-11).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 291534 Laufzeit: 45 Minute(n), 15 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
OTL Logfile: Code: OTL logfile created on: 09.01.2012 16:12:28 - Run 1 |
OTL EXTRAS Logfile: Code: OTL Extras logfile created on: 09.01.2012 16:12:28 - Run 1 |
Hoffe das ist auch richtig so? mfg |
7-Zip 9.20 21.11.2011 Acrobat.com Adobe Systems Incorporated 06.12.2010 1,61MB 1.6.65 Adobe Flash Player 11 ActiveX 64-bit Adobe Systems Incorporated 19.11.2011 6,00MB 11.1.102.55 Adobe Flash Player 11 Plugin 64-bit Adobe Systems Incorporated 19.11.2011 6,00MB 11.1.102.55 Adobe Reader X (10.1.1) - Deutsch Adobe Systems Incorporated 14.09.2011 165,9MB 10.1.1 Apple Application Support Apple Inc. 01.12.2011 61,1MB 2.1.6 Apple Mobile Device Support Apple Inc. 17.11.2011 24,4MB 4.0.0.97 Apple Software Update Apple Inc. 10.07.2011 2,38MB 2.1.3.127 Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 06.12.2010 1.0.0.36 ATI Catalyst Install Manager ATI Technologies, Inc. 25.02.2011 22,4MB 3.0.795.0 Avira AntiVir Personal - Free Antivirus Avira GmbH 13.10.2011 69,3MB 10.2.0.704 Bonjour Apple Inc. 14.10.2011 2,00MB 3.0.0.10 Canon Easy-PhotoPrint EX 26.04.2011 Canon Easy-WebPrint EX 13.10.2011 Canon MP Navigator EX 4.0 26.04.2011 Canon MP280 series Benutzerregistrierung 26.04.2011 Canon MP280 series MP Drivers 26.04.2011 Canon My Printer 26.04.2011 Canon Solution Menu EX 26.04.2011 CCleaner Piriform 08.01.2012 3.14 CyberLink MediaEspresso CyberLink Corp. 06.12.2010 217MB 6.0.1027_32100 DivX-Setup DivX, LLC 03.11.2011 2.6.0.34 Facebook Video Calling 1.0.0.8953 Skype Limited 13.11.2011 3,93MB 1.0.8953 HomeMedia CyberLink Corporation 25.02.2011 2.0.8423 iCloud Apple Inc. 01.12.2011 31,2MB 1.0.2.17 Identity Card Packard Bell 25.02.2011 1.00.3003 Intel(R) Management Engine Components Intel Corporation 07.12.2010 7.0.0.1144 Intel(R) Rapid Storage Technology Intel Corporation 07.12.2010 10.0.0.1046 iTunes Apple Inc. 15.12.2011 170,5MB 10.5.2.11 Java(TM) 6 Update 26 Oracle 28.05.2011 97,1MB 6.0.260 K-Lite Codec Pack 7.9.0 (Full) 26.12.2011 52,8MB 7.9.0 Launch Manager Packard Bell 25.02.2011 5.0.3 Malwarebytes Anti-Malware Version 1.60.0.1800 Malwarebytes Corporation 07.01.2012 18,6MB 1.60.0.1800 MediaBar iMesh Inc. 24.06.2011 3.0.0.107547 Microsoft .NET Framework 4 Client Profile Microsoft Corporation 24.04.2011 38,8MB 4.0.30319 Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft Corporation 24.04.2011 2,94MB 4.0.30319 Microsoft Office 2010 Microsoft Corporation 25.02.2011 6,31MB 14.0.4763.1000 Microsoft Office Enterprise 2007 Microsoft Corporation 11.06.2011 12.0.6425.1000 Microsoft Office File Validation Add-In Microsoft Corporation 15.09.2011 7,95MB 14.0.5130.5003 Microsoft Office Klick-und-Los 2010 Microsoft Corporation 16.05.2011 14.0.4763.1000 Microsoft Office Starter 2010 - Deutsch Microsoft Corporation 16.05.2011 14.0.4763.1000 Microsoft Silverlight Microsoft Corporation 13.10.2011 80,3MB 4.0.60831.0 Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 25.02.2011 1,70MB 3.1.0000 Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 15.06.2011 0,29MB 8.0.61001 Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 Microsoft Corporation 09.06.2011 0,77MB 9.0.30729.5570 Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 09.06.2011 0,58MB 9.0.30729.5570 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 06.12.2010 0,77MB 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 16.06.2011 0,77MB 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 06.12.2010 0,58MB 9.0.30729 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 06.12.2010 0,58MB 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 16.06.2011 0,59MB 9.0.30729.6161 MobileMe Control Panel Apple Inc. 27.10.2011 12,9MB 3.1.8.0 Mozilla Firefox 9.0.1 (x86 de) Mozilla 07.01.2012 36,4MB 9.0.1 MSXML 4.0 SP2 (KB954430) Microsoft Corporation 21.04.2011 1,28MB 4.20.9870.0 MSXML 4.0 SP2 (KB973688) Microsoft Corporation 21.04.2011 1,33MB 4.20.9876.0 Nero 9 Essentials Nero AG 06.12.2010 OpenOffice.org 3.3 OpenOffice.org 28.05.2011 415MB 3.3.9567 Packard Bell MyBackup NTI Corporation 06.12.2010 348MB 3.0.0.69 Packard Bell Power Management Packard Bell 06.12.2010 6.00.3000 Packard Bell Recovery Management Packard Bell 25.02.2011 5.00.3002 Packard Bell Registration Packard Bell 25.02.2011 1.03.3003 Packard Bell ScreenSaver Packard Bell 25.02.2011 1.1.1025.2010 Packard Bell Social Networks CyberLink Corp. 06.12.2010 26,1MB 2.0.2211 Packard Bell Updater Packard Bell 06.12.2010 1.02.3001 QuickTime Apple Inc. 27.10.2011 73,3MB 7.71.80.42 Realtek High Definition Audio Driver Realtek Semiconductor Corp. 06.12.2010 6.0.1.6254 Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 06.12.2010 6.1.7600.30123 Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 25.02.2011 1,00MB 2.0.26.0 Synaptics Pointing Device Driver Synaptics Incorporated 25.02.2011 46,4MB 15.1.6.0 toolplugin 03.11.2011 Video Web Camera CyberLink Corp. 25.02.2011 33,1MB 1.0.1216 Vocabulary Benni Pfauth 03.01.2012 2,57MB 1.0.0.0 Windows Live Essentials Microsoft Corporation 26.02.2011 15.4.3502.0922 Windows Live Mesh ActiveX control for remote connections Microsoft Corporation 25.02.2011 5,58MB 15.4.5722.2 Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 Intel 25.02.2011 27,5MB 2.0.82.0 |
1. deinstalliere in der Systemsteuerung unter Programme: Code: MediaBar iMesh 2. Deine Javaversion ist nicht aktuell! → Downloade nun die Offline-Version von Java Version 6 Update 30 von Oracle herunter Achte darauf, eventuell angebotene Toolbars abwählen (den Haken bei der Toolbar entfernen)! 3. reinige dein System mit CCleaner:
4. Zitat:
Code: :OTL
5.
6. Auch auf USB-Sticks, selbstgebrannten Datenträgern, externen Festplatten und anderen Datenträgern können Viren transportiert werden. Man muss daher durch regelmäßige Prüfungen auf Schäden, die durch Malware ("Worm.Win32.Autorun") verursacht worden sein können, überwacht werden. Hierfür sind ser gut geegnet und empfohlen, die auf dem Speichermedium gesicherten Daten, mit Hilfe des kostenlosen Online Scanners zu prüfen. Schließe jetzt alle externe Datenträgeran (USB Sticks etc) Deinen Rechner an, dabei die Hochstell-Taste [Shift-Taste] gedrückt halten, damit die Autorun-Funktion nicht ausgeführt wird. (So verhindest Du die Ausführung der AUTORUN-Funktion) - Man kann die AUTORUN-Funktion aber auch generell abschalten.►Anleitung 7. -> Führe dann einen Komplett-Systemcheck mit Eset Online Scanner (NOD32)Kostenlose Online Scanner durch Achtung!: >>Du sollst nicht die Antivirus-Sicherheitssoftware installieren, sondern dein System nur online scannen<< ► berichte erneut über den Zustand des Computers. Ob noch Probleme auftreten, wenn ja, welche? |
All processes killed ========== OTL ========== HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully! Prefs.js: "Search the web" removed from browser.search.defaultenginename Prefs.js: "Search the web" removed from browser.search.order.1 Prefs.js: "Search the web" removed from browser.search.selectedEngine Prefs.js: "hxxp://search.imesh.com/" removed from browser.startup.homepage Prefs.js: "hxxp://www.browsersafesearch.com?client=mozilla-firefox&cd=UTF-8&search=1&q=" removed from keyword.URL Prefs.js: "*.local" removed from network.proxy.no_proxies_on Prefs.js: 0 removed from network.proxy.type C:\Users\Daniel\AppData\Roaming\Mozilla\FireFox\Profiles\szfr3tp7.default\user.js moved successfully. Folder C:\Users\Daniel\AppData\Roaming\mozilla\Firefox\Profiles\szfr3tp7.default\extensions\{28387537-e3f9-4ed7-860c-11e69af4a8a0}\ not found. C:\Users\Daniel\AppData\Roaming\mozilla\Firefox\Profiles\szfr3tp7.default\extensions\welcome@toolmin.com\chrome\content folder moved successfully. C:\Users\Daniel\AppData\Roaming\mozilla\Firefox\Profiles\szfr3tp7.default\extensions\welcome@toolmin.com\chrome folder moved successfully. C:\Users\Daniel\AppData\Roaming\mozilla\Firefox\Profiles\szfr3tp7.default\extensions\welcome@toolmin.com folder moved successfully. C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\szfr3tp7.default\searchplugins\SearchResults.xml moved successfully. C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml moved successfully. C:\Program Files (x86)\Mozilla Firefox\searchplugins\Search the web.src moved successfully. C:\Program Files (x86)\Mozilla Firefox\searchplugins\SearchResults.xml moved successfully. C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-de.xml moved successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\x64\IEBHO.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{28387537-e3f9-4ed7-860c-11e69af4a8a0}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28387537-e3f9-4ed7-860c-11e69af4a8a0}\ not found. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\ToolBar\imeshdtxmltbpi.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\IEBHO.dll not found. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{28387537-e3f9-4ed7-860c-11e69af4a8a0} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{28387537-e3f9-4ed7-860c-11e69af4a8a0}\ not found. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\ToolBar\imeshdtxmltbpi.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{DFEFCDEE-CF1A-4FC8-89AF-189327213627} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. 64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\x64\datamngr.dll deleted successfully. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\x64\datamngr.dll not found. 64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\x64\IEBHO.dll deleted successfully. File C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\x64\IEBHO.dll not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\datamngr.dll deleted successfully. File pInit_DLLs: (C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\datamngr.dll) -C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\datamngr.dll not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls:C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\IEBHO.dll deleted successfully. File pInit_DLLs: (C:\PROGRA~2\IMESHA~1\MediaBar\Datamngr\IEBHO.dll) -C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\IEBHO.dll not found. C:\ProgramData\Spybot - Search & Destroy\Recovery folder moved successfully. C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully. C:\ProgramData\Spybot - Search & Destroy folder moved successfully. C:\Program Files (x86)\Spybot - Search & Destroy folder moved successfully. C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1462826721-1297699023-1566032460-1000UA.job moved successfully. C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1462826721-1297699023-1566032460-1000Core.job moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Daniel ->Temp folder emptied: 1861329 bytes ->Temporary Internet Files folder emptied: 1638802 bytes ->Java cache emptied: 15559941 bytes ->FireFox cache emptied: 57175857 bytes ->Flash cache emptied: 565 bytes User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 2425418 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50434 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 75,00 mb OTL by OldTimer - Version 3.2.31.0 log created on 01102012_220416 Files\Folders moved on Reboot... C:\Users\Daniel\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot. Registry entries deleted on Reboot... |
SUPERAntiSpyware Scan Log SUPERAntiSpyware.com | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware! Generated 01/10/2012 at 10:49 PM Application Version : 5.0.1142 Core Rules Database Version : 8119 Trace Rules Database Version: 5931 Scan type : Complete Scan Total Scan Time : 00:36:44 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 701 Memory threats detected : 0 Registry items scanned : 72321 Registry threats detected : 0 File items scanned : 66917 File threats detected : 3 Adware.Tracking Cookie .doubleclick.net [ C:\USERS\DANIEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SZFR3TP7.DEFAULT\COOKIES.SQLITE ] Trojan.Agent/Gen-SoftonicDownloader C:\USERS\DANIEL\DOWNLOADS\SOFTONICDOWNLOADER_FUER_MALWAREBYTES-ANTI-MALWARE.EXE C:\USERS\DANIEL\DOWNLOADS\SOFTONICDOWNLOADER_FUER_WINDOWS-LIVE-MOVIE-MAKER.EXE |
Guten Abend, Habe nun alles gemacht und während des online scans trat der Virus wieder auf und blockierte das System, dann ging wieder nichts so wie zuvor. Was soll ich nun machen? Mfg |
1. Lösche: Zitat:
-> Add-ons deinstallieren -> Firefox mit Add-ons anpassen -> Löschen: Firefox Add-Ons endgültig löschen | PcBeirat.de im Internet Explorer Add-ons bzw. Erweiterungen deaktivieren/löschen :: Verwalten von Add-Ons in Internet Explorer 9 Internet Explorer 9 Addons – installieren, deaktivieren, löschen und optimieren 2. TDSSKiller von Kaspersky
3. erneut einen Scan mit OTL:
|
hi, tddskiller hat nichts gefunden |
2012/01/11 23:13:33.0753 4624 TDSS rootkit removing tool 2.5.5.0 Jun 16 2011 15:25:15 2012/01/11 23:13:33.0766 4624 ================================================================================ 2012/01/11 23:13:33.0766 4624 SystemInfo: 2012/01/11 23:13:33.0766 4624 2012/01/11 23:13:33.0766 4624 OS Version: 6.1.7601 ServicePack: 1.0 2012/01/11 23:13:33.0766 4624 Product type: Workstation 2012/01/11 23:13:33.0766 4624 ComputerName: x 2012/01/11 23:13:33.0766 4624 UserName: Daniel 2012/01/11 23:13:33.0766 4624 Windows directory: C:\Windows 2012/01/11 23:13:33.0766 4624 System windows directory: C:\Windows 2012/01/11 23:13:33.0766 4624 Running under WOW64 2012/01/11 23:13:33.0766 4624 Processor architecture: Intel x64 2012/01/11 23:13:33.0766 4624 Number of processors: 8 2012/01/11 23:13:33.0766 4624 Page size: 0x1000 2012/01/11 23:13:33.0766 4624 Boot type: Normal boot 2012/01/11 23:13:33.0766 4624 ================================================================================ 2012/01/11 23:13:34.0065 4624 Initialize success 2012/01/11 23:13:35.0970 1328 ================================================================================ 2012/01/11 23:13:35.0970 1328 Scan started 2012/01/11 23:13:35.0970 1328 Mode: Manual; 2012/01/11 23:13:35.0970 1328 ================================================================================ 2012/01/11 23:13:36.0412 1328 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 2012/01/11 23:13:36.0459 1328 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 2012/01/11 23:13:36.0499 1328 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 2012/01/11 23:13:36.0578 1328 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 2012/01/11 23:13:36.0620 1328 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 2012/01/11 23:13:36.0659 1328 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 2012/01/11 23:13:36.0749 1328 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys 2012/01/11 23:13:36.0811 1328 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 2012/01/11 23:13:36.0842 1328 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 2012/01/11 23:13:36.0874 1328 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 2012/01/11 23:13:36.0897 1328 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 2012/01/11 23:13:37.0105 1328 amdkmdag (b8660fb5431f136635fb6446ac67faae) C:\Windows\system32\DRIVERS\atikmdag.sys 2012/01/11 23:13:37.0178 1328 amdkmdap (5fc9d833f726383d9d60205f5a3cf16b) C:\Windows\system32\DRIVERS\atikmpag.sys 2012/01/11 23:13:37.0200 1328 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 2012/01/11 23:13:37.0244 1328 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 2012/01/11 23:13:37.0285 1328 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 2012/01/11 23:13:37.0307 1328 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys 2012/01/11 23:13:37.0384 1328 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 2012/01/11 23:13:37.0428 1328 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 2012/01/11 23:13:37.0445 1328 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 2012/01/11 23:13:37.0488 1328 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 2012/01/11 23:13:37.0544 1328 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 2012/01/11 23:13:37.0651 1328 athr (e642491f64e58cd5bc8fb8b347dcf65f) C:\Windows\system32\DRIVERS\athrx.sys 2012/01/11 23:13:37.0739 1328 AtiHdmiService (2d648572ba9a610952fcafba1e119c2d) C:\Windows\system32\drivers\AtiHdmi.sys 2012/01/11 23:13:37.0806 1328 avgntflt (b1224e6b086cd6548315b04ab575a23e) C:\Windows\system32\DRIVERS\avgntflt.sys 2012/01/11 23:13:37.0829 1328 avipbb (ed45f12cfa62b83765c9c1496758cc87) C:\Windows\system32\DRIVERS\avipbb.sys 2012/01/11 23:13:37.0863 1328 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 2012/01/11 23:13:37.0929 1328 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 2012/01/11 23:13:37.0980 1328 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 2012/01/11 23:13:38.0106 1328 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 2012/01/11 23:13:38.0188 1328 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 2012/01/11 23:13:38.0205 1328 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 2012/01/11 23:13:38.0238 1328 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 2012/01/11 23:13:38.0266 1328 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 2012/01/11 23:13:38.0298 1328 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 2012/01/11 23:13:38.0320 1328 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 2012/01/11 23:13:38.0339 1328 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 2012/01/11 23:13:38.0366 1328 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 2012/01/11 23:13:38.0412 1328 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 2012/01/11 23:13:38.0463 1328 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys 2012/01/11 23:13:38.0511 1328 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 2012/01/11 23:13:38.0552 1328 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 2012/01/11 23:13:38.0608 1328 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 2012/01/11 23:13:38.0624 1328 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 2012/01/11 23:13:38.0678 1328 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys 2012/01/11 23:13:38.0745 1328 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 2012/01/11 23:13:38.0786 1328 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys 2012/01/11 23:13:38.0822 1328 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 2012/01/11 23:13:38.0891 1328 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 2012/01/11 23:13:38.0917 1328 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 2012/01/11 23:13:38.0962 1328 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 2012/01/11 23:13:39.0001 1328 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 2012/01/11 23:13:39.0067 1328 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 2012/01/11 23:13:39.0185 1328 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 2012/01/11 23:13:39.0235 1328 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 2012/01/11 23:13:39.0273 1328 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 2012/01/11 23:13:39.0319 1328 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 2012/01/11 23:13:39.0346 1328 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 2012/01/11 23:13:39.0378 1328 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 2012/01/11 23:13:39.0409 1328 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 2012/01/11 23:13:39.0431 1328 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 2012/01/11 23:13:39.0445 1328 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 2012/01/11 23:13:39.0492 1328 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 2012/01/11 23:13:39.0513 1328 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 2012/01/11 23:13:39.0544 1328 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 2012/01/11 23:13:39.0593 1328 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 2012/01/11 23:13:39.0612 1328 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 2012/01/11 23:13:39.0672 1328 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 2012/01/11 23:13:39.0750 1328 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 2012/01/11 23:13:39.0825 1328 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 2012/01/11 23:13:39.0874 1328 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 2012/01/11 23:13:39.0899 1328 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 2012/01/11 23:13:39.0916 1328 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 2012/01/11 23:13:39.0937 1328 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 2012/01/11 23:13:39.0990 1328 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys 2012/01/11 23:13:40.0045 1328 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 2012/01/11 23:13:40.0109 1328 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 2012/01/11 23:13:40.0170 1328 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 2012/01/11 23:13:40.0230 1328 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys 2012/01/11 23:13:40.0276 1328 iaStor (f7ce9be72edac499b713eca6dae5d26f) C:\Windows\system32\DRIVERS\iaStor.sys 2012/01/11 23:13:40.0387 1328 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 2012/01/11 23:13:40.0433 1328 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 2012/01/11 23:13:40.0534 1328 IntcAzAudAddService (f4c031439501f6c1d336a36d7cb58f4f) C:\Windows\system32\drivers\RTKVHD64.sys 2012/01/11 23:13:40.0596 1328 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 2012/01/11 23:13:40.0639 1328 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 2012/01/11 23:13:40.0688 1328 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2012/01/11 23:13:40.0735 1328 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 2012/01/11 23:13:40.0765 1328 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 2012/01/11 23:13:40.0810 1328 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 2012/01/11 23:13:40.0831 1328 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 2012/01/11 23:13:40.0867 1328 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 2012/01/11 23:13:40.0893 1328 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys 2012/01/11 23:13:40.0942 1328 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 2012/01/11 23:13:40.0970 1328 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys 2012/01/11 23:13:41.0006 1328 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys 2012/01/11 23:13:41.0024 1328 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 2012/01/11 23:13:41.0070 1328 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys 2012/01/11 23:13:41.0143 1328 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 2012/01/11 23:13:41.0201 1328 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 2012/01/11 23:13:41.0226 1328 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 2012/01/11 23:13:41.0244 1328 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 2012/01/11 23:13:41.0264 1328 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 2012/01/11 23:13:41.0286 1328 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 2012/01/11 23:13:41.0381 1328 MBAMProtector (79da94b35371b9e7104460c7693dcb2c) C:\Windows\system32\drivers\mbam.sys 2012/01/11 23:13:41.0433 1328 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 2012/01/11 23:13:41.0459 1328 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 2012/01/11 23:13:41.0494 1328 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys 2012/01/11 23:13:41.0519 1328 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 2012/01/11 23:13:41.0555 1328 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 2012/01/11 23:13:41.0585 1328 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys 2012/01/11 23:13:41.0618 1328 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 2012/01/11 23:13:41.0643 1328 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 2012/01/11 23:13:41.0677 1328 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 2012/01/11 23:13:41.0707 1328 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 2012/01/11 23:13:41.0733 1328 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 2012/01/11 23:13:41.0767 1328 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 2012/01/11 23:13:41.0807 1328 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2012/01/11 23:13:41.0829 1328 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2012/01/11 23:13:41.0857 1328 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 2012/01/11 23:13:41.0887 1328 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 2012/01/11 23:13:41.0919 1328 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 2012/01/11 23:13:41.0933 1328 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 2012/01/11 23:13:41.0950 1328 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 2012/01/11 23:13:42.0003 1328 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 2012/01/11 23:13:42.0029 1328 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 2012/01/11 23:13:42.0053 1328 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 2012/01/11 23:13:42.0102 1328 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 2012/01/11 23:13:42.0125 1328 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys 2012/01/11 23:13:42.0143 1328 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 2012/01/11 23:13:42.0160 1328 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 2012/01/11 23:13:42.0188 1328 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 2012/01/11 23:13:42.0265 1328 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 2012/01/11 23:13:42.0352 1328 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 2012/01/11 23:13:42.0393 1328 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 2012/01/11 23:13:42.0426 1328 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 2012/01/11 23:13:42.0469 1328 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 2012/01/11 23:13:42.0516 1328 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 2012/01/11 23:13:42.0573 1328 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 2012/01/11 23:13:42.0647 1328 Netaapl (6f4607e2333fe21e9e3ff8133a88b35b) C:\Windows\system32\DRIVERS\netaapl64.sys 2012/01/11 23:13:42.0674 1328 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 2012/01/11 23:13:42.0723 1328 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 2012/01/11 23:13:42.0799 1328 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 2012/01/11 23:13:42.0836 1328 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 2012/01/11 23:13:42.0863 1328 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 2012/01/11 23:13:42.0924 1328 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 2012/01/11 23:13:42.0981 1328 NTIDrvr (64ddd0dee976302f4bd93e5efcc2f013) C:\Windows\system32\drivers\NTIDrvr.sys 2012/01/11 23:13:43.0000 1328 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 2012/01/11 23:13:43.0038 1328 nusb3hub (786db821bfd57c0551dbbe4f75384a7d) C:\Windows\system32\DRIVERS\nusb3hub.sys 2012/01/11 23:13:43.0080 1328 nusb3xhc (daa8005caf745042bb427a1ed7433354) C:\Windows\system32\DRIVERS\nusb3xhc.sys 2012/01/11 23:13:43.0142 1328 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 2012/01/11 23:13:43.0182 1328 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 2012/01/11 23:13:43.0223 1328 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 2012/01/11 23:13:43.0265 1328 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 2012/01/11 23:13:43.0346 1328 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 2012/01/11 23:13:43.0386 1328 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 2012/01/11 23:13:43.0415 1328 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 2012/01/11 23:13:43.0434 1328 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 2012/01/11 23:13:43.0464 1328 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 2012/01/11 23:13:43.0487 1328 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 2012/01/11 23:13:43.0516 1328 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 2012/01/11 23:13:43.0612 1328 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 2012/01/11 23:13:43.0636 1328 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 2012/01/11 23:13:43.0685 1328 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 2012/01/11 23:13:43.0742 1328 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 2012/01/11 23:13:43.0765 1328 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 2012/01/11 23:13:43.0787 1328 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 2012/01/11 23:13:43.0805 1328 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 2012/01/11 23:13:43.0817 1328 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 2012/01/11 23:13:43.0861 1328 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 2012/01/11 23:13:43.0915 1328 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 2012/01/11 23:13:43.0936 1328 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 2012/01/11 23:13:43.0993 1328 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 2012/01/11 23:13:44.0030 1328 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 2012/01/11 23:13:44.0055 1328 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 2012/01/11 23:13:44.0086 1328 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 2012/01/11 23:13:44.0108 1328 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 2012/01/11 23:13:44.0148 1328 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys 2012/01/11 23:13:44.0192 1328 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 2012/01/11 23:13:44.0305 1328 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 2012/01/11 23:13:44.0368 1328 RSUSBSTOR (9beb5f18a418ff70659ce2e356829568) C:\Windows\system32\Drivers\RtsUStor.sys 2012/01/11 23:13:44.0514 1328 SASDIFSV (3289766038db2cb14d07dc84392138d5) C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS 2012/01/11 23:13:44.0549 1328 SASKUTIL (58a38e75f3316a83c23df6173d41f2b5) C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS 2012/01/11 23:13:44.0610 1328 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 2012/01/11 23:13:44.0659 1328 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 2012/01/11 23:13:44.0693 1328 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 2012/01/11 23:13:44.0739 1328 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 2012/01/11 23:13:44.0767 1328 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 2012/01/11 23:13:44.0787 1328 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 2012/01/11 23:13:44.0843 1328 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 2012/01/11 23:13:44.0863 1328 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 2012/01/11 23:13:44.0884 1328 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 2012/01/11 23:13:44.0904 1328 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 2012/01/11 23:13:44.0969 1328 Sftfs (a40abfdcb75f835fdf3ce0cc64e4250d) C:\Windows\system32\DRIVERS\Sftfslh.sys 2012/01/11 23:13:45.0029 1328 Sftplay (411769ed1cb12d2b44217734347bdb7a) C:\Windows\system32\DRIVERS\Sftplaylh.sys 2012/01/11 23:13:45.0074 1328 Sftredir (a14d0df34bbb00ea94da16193d0c7957) C:\Windows\system32\DRIVERS\Sftredirlh.sys 2012/01/11 23:13:45.0102 1328 Sftvol (393b22addd89979eb1c60898f51c3648) C:\Windows\system32\DRIVERS\Sftvollh.sys 2012/01/11 23:13:45.0153 1328 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 2012/01/11 23:13:45.0173 1328 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 2012/01/11 23:13:45.0212 1328 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 2012/01/11 23:13:45.0238 1328 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 2012/01/11 23:13:45.0356 1328 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 2012/01/11 23:13:45.0390 1328 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 2012/01/11 23:13:45.0418 1328 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 2012/01/11 23:13:45.0448 1328 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 2012/01/11 23:13:45.0513 1328 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys 2012/01/11 23:13:45.0620 1328 SynTP (ef51b22706db03f0857fade127c804ec) C:\Windows\system32\DRIVERS\SynTP.sys 2012/01/11 23:13:45.0723 1328 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 2012/01/11 23:13:45.0806 1328 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 2012/01/11 23:13:45.0867 1328 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 2012/01/11 23:13:45.0900 1328 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 2012/01/11 23:13:45.0916 1328 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 2012/01/11 23:13:45.0957 1328 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 2012/01/11 23:13:45.0976 1328 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys 2012/01/11 23:13:46.0036 1328 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 2012/01/11 23:13:46.0096 1328 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 2012/01/11 23:13:46.0185 1328 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 2012/01/11 23:13:46.0248 1328 TurboB (48743b69ea47c020a792d8649f753f44) C:\Windows\system32\DRIVERS\TurboB.sys 2012/01/11 23:13:46.0298 1328 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 2012/01/11 23:13:46.0323 1328 UBHelper (2e22c1fd397a5a9ffef55e9d1fc96c00) C:\Windows\system32\drivers\UBHelper.sys 2012/01/11 23:13:46.0359 1328 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 2012/01/11 23:13:46.0406 1328 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 2012/01/11 23:13:46.0444 1328 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys 2012/01/11 23:13:46.0473 1328 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 2012/01/11 23:13:46.0525 1328 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys 2012/01/11 23:13:46.0547 1328 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 2012/01/11 23:13:46.0592 1328 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 2012/01/11 23:13:46.0641 1328 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys 2012/01/11 23:13:46.0677 1328 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 2012/01/11 23:13:46.0698 1328 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys 2012/01/11 23:13:46.0711 1328 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 2012/01/11 23:13:46.0741 1328 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys 2012/01/11 23:13:46.0762 1328 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 2012/01/11 23:13:46.0785 1328 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 2012/01/11 23:13:46.0811 1328 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys 2012/01/11 23:13:46.0847 1328 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 2012/01/11 23:13:46.0867 1328 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 2012/01/11 23:13:46.0886 1328 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 2012/01/11 23:13:46.0909 1328 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 2012/01/11 23:13:46.0935 1328 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 2012/01/11 23:13:46.0965 1328 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 2012/01/11 23:13:47.0008 1328 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 2012/01/11 23:13:47.0063 1328 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 2012/01/11 23:13:47.0136 1328 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 2012/01/11 23:13:47.0167 1328 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys 2012/01/11 23:13:47.0214 1328 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 2012/01/11 23:13:47.0256 1328 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 2012/01/11 23:13:47.0296 1328 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 2012/01/11 23:13:47.0304 1328 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 2012/01/11 23:13:47.0335 1328 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 2012/01/11 23:13:47.0365 1328 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 2012/01/11 23:13:47.0401 1328 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 2012/01/11 23:13:47.0421 1328 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 2012/01/11 23:13:47.0487 1328 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 2012/01/11 23:13:47.0515 1328 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 2012/01/11 23:13:47.0551 1328 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 2012/01/11 23:13:47.0593 1328 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 2012/01/11 23:13:47.0618 1328 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 2012/01/11 23:13:47.0681 1328 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 2012/01/11 23:13:47.0700 1328 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR2 2012/01/11 23:13:47.0713 1328 ================================================================================ 2012/01/11 23:13:47.0713 1328 Scan finished 2012/01/11 23:13:47.0713 1328 ================================================================================ 2012/01/11 23:13:47.0730 3448 Detected object count: 0 2012/01/11 23:13:47.0730 3448 Actual detected object count: 0 |
OTL Logfile: Code: OTL logfile created on: 11.01.2012 23:16:57 - Run 2 |
Alle Zeitangaben in WEZ +1. Es ist jetzt 03:59 Uhr. |
Copyright ©2000-2025, Trojaner-Board