![]() |
PC versendet SPAM mails im hintergrund Hallo, Mein PC versendet Spam mails im hintergrund. Habe dies festgestellt da im verzeignis: c:\inetpub\mailroot\queue immer wieder neue mails erscheinen und in c:\inetpub\mailroot\badmail tausende von nicht versendete mails sind. Ich verwende Norton Internet Security, aber der findet nichts :-( Unterstehend mein Hijackthis logfile, jeder hilfe werde ich dankend entgegen nehmen !!!!!!!!! HiJackthis Logfile: Code: Logfile of Trend Micro HijackThis v2.0.2 |
hi hjt logs wollen wir nicht mehr sehen :-) Falls noch nicht vorhanden, lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
Code: activex
|
Bin gerade drauf gekommen das wenn ich inetinfo.exe (in dienste) beende, kein weitere spam mails mehr verschickt werden. OTL Logfile: Code: OTL logfile created on: 06.07.2012 11:33:48 - Run 1 OTL EXTRAS Logfile: Code: OTL Extras logfile created on: 06.07.2012 11:33:48 - Run 1 Hier die erwünschte Log-files..... Hoffe es hilft :-) |
hör bitte auf, irgendwelche enderungen oder weiteren programme auszuführen öffne malwarebytes, berichte, poste alle logs |
Malwarebytes Anti-Malware 1.61.0.1400 www.malwarebytes.org Datenbank Version: v2012.07.06.05 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 thomas :: THOMASRECHNER [Administrator] 09.07.2012 08:22:07 mbam-log-2012-07-09 (08-22-07).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 566359 Laufzeit: 6 Stunde(n), 1 Minute(n), 55 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 1 HKCU\SOFTWARE\EGDHTML (Adware.EGDAccess) -> Keine Aktion durchgeführt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 1 HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bösartig: (1) Gut: (0) -> Keine Aktion durchgeführt. Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) (Ende) |
das log ist nicht vollständig, poste es erneut |
Leider bekomme ich wirklich nichts mehr im Logdatei, habe kein einstellungen in Malwarebytes geändert. Malwarebytes Anti-Malware 1.61.0.1400 www.malwarebytes.org Datenbank Version: v2012.07.11.03 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 thomas :: THOMASRECHNER [Administrator] 11.07.2012 13:08:00 mbam-log-2012-07-11 (14-04-49).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 570417 Laufzeit: 48 Minute(n), 36 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 1 HKCU\SOFTWARE\EGDHTML (Adware.EGDAccess) -> Keine Aktion durchgeführt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 1 HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bösartig: (1) Gut: (0) -> Keine Aktion durchgeführt. Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
Combofix darf ausschließlich ausgeführt werden, wenn dies von einem Team Mitglied angewiesen wurde!Downloade dir bitte Combofix von einem dieser Downloadspiegel Link 1 Link 2 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
|
Combofix Logfile: Code: ComboFix 12-07-11.03 - thomas 12.07.2012 8:29.1.1 - x86 |
bisher alles unauffällig, sind neue spams hinzugekommen? |
Am moment werden kein Spam mails mehr verschickt. Ich werde es im Auge behalten und falls es wieder anfangt mich melden, aber diesmal ohne selber was zu unternehmen ;-) Vielen Dank !!!!!! |
download tdss killer: http://www.trojaner-board.de/82358-t...entfernen.html Klicke auf Change parameters • Setze die Haken bei Verify driver digital signatures und Detect TDLFS file system • Klick auf OK und anschließend auf Start scan - bei funden erst mal immer skip wählen, log posten |
14:36:40.0533 5980 TDSS rootkit removing tool 2.7.45.0 Jul 9 2012 12:46:35 14:36:41.0314 5980 ============================================================ 14:36:41.0314 5980 Current date / time: 2012/07/13 14:36:41.0314 14:36:41.0314 5980 SystemInfo: 14:36:41.0314 5980 14:36:41.0314 5980 OS Version: 5.1.2600 ServicePack: 3.0 14:36:41.0314 5980 Product type: Workstation 14:36:41.0314 5980 ComputerName: THOMASRECHNER 14:36:41.0314 5980 UserName: thomas 14:36:41.0314 5980 Windows directory: C:\WINDOWS 14:36:41.0314 5980 System windows directory: C:\WINDOWS 14:36:41.0314 5980 Processor architecture: Intel x86 14:36:41.0314 5980 Number of processors: 1 14:36:41.0314 5980 Page size: 0x1000 14:36:41.0314 5980 Boot type: Normal boot 14:36:41.0314 5980 ============================================================ 14:36:43.0087 5980 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 14:36:43.0097 5980 Drive \Device\Harddisk1\DR5 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 14:36:43.0117 5980 ============================================================ 14:36:43.0117 5980 \Device\Harddisk0\DR0: 14:36:43.0117 5980 MBR partitions: 14:36:43.0117 5980 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x129BE72B 14:36:43.0117 5980 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x129BE76A, BlocksNum 0x5A357 14:36:43.0117 5980 \Device\Harddisk1\DR5: 14:36:43.0117 5980 MBR partitions: 14:36:43.0117 5980 \Device\Harddisk1\DR5\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x747059C1 14:36:43.0117 5980 ============================================================ 14:36:43.0237 5980 C: <-> \Device\Harddisk0\DR0\Partition0 14:36:43.0267 5980 H: <-> \Device\Harddisk1\DR5\Partition0 14:36:43.0297 5980 D: <-> \Device\Harddisk0\DR0\Partition1 14:36:43.0297 5980 ============================================================ 14:36:43.0297 5980 Initialize success 14:36:43.0297 5980 ============================================================ 14:37:17.0756 5384 ============================================================ 14:37:17.0756 5384 Scan started 14:37:17.0756 5384 Mode: Manual; SigCheck; TDLFS; 14:37:17.0756 5384 ============================================================ 14:37:17.0977 5384 Abiosdsk - ok 14:37:17.0987 5384 abp480n5 - ok 14:37:18.0017 5384 ac97intc (0f2d66d5f08ebe2f77bb904288dcf6f0) C:\WINDOWS\system32\drivers\ac97intc.sys 14:37:20.0000 5384 ac97intc - ok 14:37:20.0070 5384 ACPI (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys 14:37:20.0260 5384 ACPI - ok 14:37:20.0310 5384 ACPIEC (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys 14:37:20.0430 5384 ACPIEC - ok 14:37:20.0520 5384 Adobe LM Service (c1eb9968ec89fba5f3a264e2e57923ab) C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe 14:37:20.0550 5384 Adobe LM Service ( UnsignedFile.Multi.Generic ) - warning 14:37:20.0550 5384 Adobe LM Service - detected UnsignedFile.Multi.Generic (1) 14:37:20.0630 5384 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 14:37:20.0661 5384 AdobeFlashPlayerUpdateSvc - ok 14:37:20.0661 5384 adpu160m - ok 14:37:20.0711 5384 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 14:37:20.0911 5384 aec - ok 14:37:20.0971 5384 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys 14:37:21.0091 5384 AFD - ok 14:37:21.0141 5384 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys 14:37:21.0281 5384 agp440 - ok 14:37:21.0291 5384 Aha154x - ok 14:37:21.0301 5384 aic78u2 - ok 14:37:21.0311 5384 aic78xx - ok 14:37:21.0352 5384 Alerter (738d80cc01d7bc7584be917b7f544394) C:\WINDOWS\system32\alrsvc.dll 14:37:21.0502 5384 Alerter - ok 14:37:21.0572 5384 ALG (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe 14:37:21.0662 5384 ALG - ok 14:37:21.0672 5384 AliIde - ok 14:37:21.0682 5384 amsint - ok 14:37:21.0732 5384 AppMgmt (d45960be52c3c610d361977057f98c54) C:\WINDOWS\System32\appmgmts.dll 14:37:21.0822 5384 AppMgmt - ok 14:37:21.0832 5384 asc - ok 14:37:21.0842 5384 asc3350p - ok 14:37:21.0842 5384 asc3550 - ok 14:37:21.0952 5384 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 14:37:21.0992 5384 aspnet_state - ok 14:37:22.0012 5384 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 14:37:22.0163 5384 AsyncMac - ok 14:37:22.0193 5384 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 14:37:22.0333 5384 atapi - ok 14:37:22.0343 5384 Atdisk - ok 14:37:22.0393 5384 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 14:37:22.0533 5384 Atmarpc - ok 14:37:22.0583 5384 AudioSrv (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll 14:37:22.0744 5384 AudioSrv - ok 14:37:22.0804 5384 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 14:37:22.0964 5384 audstub - ok 14:37:23.0004 5384 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 14:37:23.0164 5384 Beep - ok 14:37:23.0384 5384 BHDrvx86 (a9e111a358ac5f7eba7ac61e43fc6725) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\BASHDefs\20120711.002\BHDrvx86.sys 14:37:23.0455 5384 BHDrvx86 - ok 14:37:23.0535 5384 BITS (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll 14:37:23.0885 5384 BITS - ok 14:37:23.0945 5384 Browser (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll 14:37:24.0095 5384 Browser - ok 14:37:24.0206 5384 catchme - ok 14:37:24.0256 5384 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 14:37:24.0406 5384 cbidf2k - ok 14:37:24.0526 5384 CCALib8 (5753532c476b83119d85aa43b1b10ab3) C:\Programme\Canon\CAL\CALMAIN.exe 14:37:24.0556 5384 CCALib8 ( UnsignedFile.Multi.Generic ) - warning 14:37:24.0556 5384 CCALib8 - detected UnsignedFile.Multi.Generic (1) 14:37:24.0666 5384 ccSet_NIS (599e7f6259a127c174c49938d2aa6a60) C:\WINDOWS\system32\drivers\NIS\1307010.005\ccSetx86.sys 14:37:24.0686 5384 ccSet_NIS - ok 14:37:24.0696 5384 cd20xrnt - ok 14:37:24.0756 5384 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 14:37:24.0907 5384 Cdaudio - ok 14:37:24.0967 5384 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 14:37:25.0127 5384 Cdfs - ok 14:37:25.0197 5384 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 14:37:25.0347 5384 Cdrom - ok 14:37:25.0357 5384 Changer - ok 14:37:25.0407 5384 cisvc (28e3040d1f1ca2008cd6b29dfebc9a5e) C:\WINDOWS\system32\cisvc.exe 14:37:25.0528 5384 cisvc - ok 14:37:25.0578 5384 ClipSrv (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe 14:37:25.0738 5384 ClipSrv - ok 14:37:25.0818 5384 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:37:25.0898 5384 clr_optimization_v2.0.50727_32 - ok 14:37:25.0908 5384 CmdIde - ok 14:37:25.0918 5384 COMSysApp - ok 14:37:25.0928 5384 Cpqarray - ok 14:37:26.0028 5384 cpudrv (d01f685f8b4598d144b0cce9ff95d8d5) C:\Programme\SystemRequirementsLab\cpudrv.sys 14:37:26.0038 5384 cpudrv - ok 14:37:26.0118 5384 CryptSvc (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll 14:37:26.0279 5384 CryptSvc - ok 14:37:26.0329 5384 CyUsbNT (90a71fc40eade3d1789b0ed2ca80b1cf) C:\WINDOWS\system32\Drivers\CyUsbNT.sys 14:37:26.0349 5384 CyUsbNT ( UnsignedFile.Multi.Generic ) - warning 14:37:26.0349 5384 CyUsbNT - detected UnsignedFile.Multi.Generic (1) 14:37:26.0359 5384 dac2w2k - ok 14:37:26.0369 5384 dac960nt - ok 14:37:26.0419 5384 DcomLaunch (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll 14:37:26.0539 5384 DcomLaunch - ok 14:37:26.0599 5384 Dhcp (c29a1c9b75ba38fa37f8c44405dec360) C:\WINDOWS\System32\dhcpcsvc.dll 14:37:26.0749 5384 Dhcp - ok 14:37:26.0910 5384 DialComService (3ccf97a963fa6ea21c215744480bf349) C:\Programme\DIAL GmbH\DIAL Communication Framework\DialComService.exe 14:37:27.0020 5384 DialComService - ok 14:37:27.0140 5384 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 14:37:27.0290 5384 Disk - ok 14:37:27.0300 5384 dmadmin - ok 14:37:27.0360 5384 dmboot (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys 14:37:27.0550 5384 dmboot - ok 14:37:27.0580 5384 dmio (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\DRIVERS\dmio.sys 14:37:27.0751 5384 dmio - ok 14:37:27.0791 5384 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 14:37:27.0921 5384 dmload - ok 14:37:27.0981 5384 dmserver (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll 14:37:28.0141 5384 dmserver - ok 14:37:28.0181 5384 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 14:37:28.0312 5384 DMusic - ok 14:37:28.0382 5384 Dnscache (407f3227ac618fd1ca54b335b083de07) C:\WINDOWS\System32\dnsrslvr.dll 14:37:28.0532 5384 Dnscache - ok 14:37:28.0582 5384 Dot3svc (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll 14:37:28.0722 5384 Dot3svc - ok 14:37:28.0732 5384 dpti2o - ok 14:37:28.0772 5384 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 14:37:28.0912 5384 drmkaud - ok 14:37:28.0983 5384 E100B (5c940a174dfb2c42b9f6ba6edc2baa0b) C:\WINDOWS\system32\DRIVERS\e100b325.sys 14:37:29.0013 5384 E100B - ok 14:37:29.0063 5384 EapHost (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll 14:37:29.0213 5384 EapHost - ok 14:37:29.0283 5384 eeCtrl (fce87ba643d5e9a8b6e0378508d1b22d) C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys 14:37:29.0313 5384 eeCtrl - ok 14:37:29.0373 5384 EL90XBC (6e883bf518296a40959131c2304af714) C:\WINDOWS\system32\DRIVERS\el90xbc5.sys 14:37:29.0513 5384 EL90XBC - ok 14:37:29.0573 5384 ElbyCDIO (d71233d7ccc2e64f8715a20428d5a33b) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys 14:37:29.0583 5384 ElbyCDIO - ok 14:37:29.0633 5384 EraserUtilRebootDrv (115dc729465a8c386615207f28875255) C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 14:37:29.0653 5384 EraserUtilRebootDrv - ok 14:37:29.0694 5384 ERSvc (877c18558d70587aa7823a1a308ac96b) C:\WINDOWS\System32\ersvc.dll 14:37:29.0854 5384 ERSvc - ok 14:37:29.0894 5384 ess (ab570fb40832bee65f4d90a7f02792bf) C:\WINDOWS\system32\drivers\ess.sys 14:37:30.0034 5384 ess - ok 14:37:30.0074 5384 Eventlog (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe 14:37:30.0094 5384 Eventlog - ok 14:37:30.0174 5384 EventSystem (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll 14:37:30.0304 5384 EventSystem - ok 14:37:30.0344 5384 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 14:37:30.0495 5384 Fastfat - ok 14:37:30.0555 5384 FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 14:37:30.0635 5384 FastUserSwitchingCompatibility - ok 14:37:30.0685 5384 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 14:37:30.0835 5384 Fdc - ok 14:37:30.0945 5384 FileZilla Server (7e76eed28b8b8696b7f7ed5f757aa304) C:\Programme\FileZilla Server\FileZilla Server.exe 14:37:31.0005 5384 FileZilla Server ( UnsignedFile.Multi.Generic ) - warning 14:37:31.0005 5384 FileZilla Server - detected UnsignedFile.Multi.Generic (1) 14:37:31.0065 5384 Fips (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys 14:37:31.0216 5384 Fips - ok 14:37:31.0316 5384 FLEXnet Licensing Service (f76d04f7413b07daa029f6520b64b4e8) C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 14:37:31.0366 5384 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - warning 14:37:31.0366 5384 FLEXnet Licensing Service - detected UnsignedFile.Multi.Generic (1) 14:37:31.0416 5384 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 14:37:31.0556 5384 Flpydisk - ok 14:37:31.0616 5384 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 14:37:31.0746 5384 FltMgr - ok 14:37:31.0847 5384 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 14:37:31.0867 5384 FontCache3.0.0.0 - ok 14:37:31.0917 5384 FS20 IRP (739b948c5c6ea11414e8bbb899c6c768) C:\WINDOWS\system32\drivers\FS20 IRP.sys 14:37:31.0947 5384 FS20 IRP ( UnsignedFile.Multi.Generic ) - warning 14:37:31.0947 5384 FS20 IRP - detected UnsignedFile.Multi.Generic (1) 14:37:32.0007 5384 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 14:37:32.0157 5384 Fs_Rec - ok 14:37:32.0187 5384 FTD2XX (ab40574f179b60be08fe87df70ecf9eb) C:\WINDOWS\system32\Drivers\FTD2XX.sys 14:37:32.0207 5384 FTD2XX ( UnsignedFile.Multi.Generic ) - warning 14:37:32.0207 5384 FTD2XX - detected UnsignedFile.Multi.Generic (1) 14:37:32.0247 5384 Ftdisk (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 14:37:32.0397 5384 Ftdisk - ok 14:37:32.0457 5384 G200 (11ef4d6d08a926b037b72ca35f746607) C:\WINDOWS\system32\DRIVERS\g200mini.sys 14:37:32.0528 5384 G200 - ok 14:37:32.0568 5384 GEARAspiWDM (f2f431d1573ee632975c524418655b84) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys 14:37:32.0578 5384 GEARAspiWDM - ok 14:37:32.0608 5384 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 14:37:32.0758 5384 Gpc - ok 14:37:32.0858 5384 gupdate1c9dd17746cffd0 (626a24ed1228580b9518c01930936df9) C:\Programme\Google\Update\GoogleUpdate.exe 14:37:32.0888 5384 gupdate1c9dd17746cffd0 - ok 14:37:32.0898 5384 gupdatem (626a24ed1228580b9518c01930936df9) C:\Programme\Google\Update\GoogleUpdate.exe 14:37:32.0918 5384 gupdatem - ok 14:37:32.0958 5384 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 14:37:33.0128 5384 HDAudBus - ok 14:37:33.0209 5384 helpsvc (cb66bf85bf599befd6c6a57c2e20357f) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 14:37:33.0359 5384 helpsvc - ok 14:37:33.0369 5384 HidServ - ok 14:37:33.0409 5384 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys 14:37:33.0529 5384 hidusb - ok 14:37:33.0569 5384 hkmsvc (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll 14:37:33.0709 5384 hkmsvc - ok 14:37:33.0789 5384 HP Port Resolver (c5f00d15aa15cb7f55a027ff75e44bb7) C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE 14:37:33.0870 5384 HP Port Resolver - ok 14:37:33.0910 5384 HP Status Server (c5a288e4ceef5a26d105117baa3763ab) C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE 14:37:33.0980 5384 HP Status Server - ok 14:37:34.0030 5384 HPKBCCID (1ffda46b645473d56c72aae6e1002825) C:\WINDOWS\system32\DRIVERS\HPKBCCID.sys 14:37:34.0080 5384 HPKBCCID - ok 14:37:34.0090 5384 hpn - ok 14:37:34.0190 5384 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Programme\HP\Digital Imaging\bin\hpqcxs08.dll 14:37:34.0280 5384 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning 14:37:34.0280 5384 hpqcxs08 - detected UnsignedFile.Multi.Generic (1) 14:37:34.0320 5384 hpqddsvc (f3f72a2a86c22610bca5439fa789dd52) C:\Programme\HP\Digital Imaging\bin\hpqddsvc.dll 14:37:34.0340 5384 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning 14:37:34.0340 5384 hpqddsvc - detected UnsignedFile.Multi.Generic (1) 14:37:34.0410 5384 HPSLPSVC (79737e0f7d25de8405cb34d4c9882253) C:\Programme\HP\Digital Imaging\bin\HPSLPSVC32.DLL 14:37:34.0470 5384 HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning 14:37:34.0470 5384 HPSLPSVC - detected UnsignedFile.Multi.Generic (1) 14:37:34.0611 5384 hpt3xx - ok 14:37:34.0641 5384 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys 14:37:34.0951 5384 HPZid412 - ok 14:37:35.0001 5384 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys 14:37:35.0041 5384 HPZipr12 - ok 14:37:35.0091 5384 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys 14:37:35.0131 5384 HPZius12 - ok 14:37:35.0191 5384 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys 14:37:35.0282 5384 HTTP - ok 14:37:35.0322 5384 HTTPFilter (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll 14:37:35.0452 5384 HTTPFilter - ok 14:37:35.0462 5384 i2omgmt - ok 14:37:35.0472 5384 i2omp - ok 14:37:35.0512 5384 i8042prt (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 14:37:35.0662 5384 i8042prt - ok 14:37:35.0692 5384 i81x (06b7ef73ba5f302eecc294cdf7e19702) C:\WINDOWS\system32\DRIVERS\i81xnt5.sys 14:37:35.0872 5384 i81x - ok 14:37:35.0922 5384 iAimFP0 (7b5b44efe5eb9dadfb8ee29700885d23) C:\WINDOWS\system32\DRIVERS\wADV01nt.sys 14:37:36.0043 5384 iAimFP0 - ok 14:37:36.0063 5384 iAimFP1 (eb1f6bab6c22ede0ba551b527475f7e9) C:\WINDOWS\system32\DRIVERS\wADV02NT.sys 14:37:36.0203 5384 iAimFP1 - ok 14:37:36.0223 5384 iAimFP2 (03ce989d846c1aa81145cb22fcb86d06) C:\WINDOWS\system32\DRIVERS\wADV05NT.sys 14:37:36.0363 5384 iAimFP2 - ok 14:37:36.0393 5384 iAimFP3 (525849b4469de021d5d61b4db9be3a9d) C:\WINDOWS\system32\DRIVERS\wSiINTxx.sys 14:37:36.0533 5384 iAimFP3 - ok 14:37:36.0573 5384 iAimFP4 (589c2bcdb5bd602bf7b63d210407ef8c) C:\WINDOWS\system32\DRIVERS\wVchNTxx.sys 14:37:36.0714 5384 iAimFP4 - ok 14:37:36.0774 5384 iAimFP5 (0308aef61941e4af478fa1a0f83812f5) C:\WINDOWS\system32\DRIVERS\wADV07nt.sys 14:37:36.0914 5384 iAimFP5 - ok 14:37:36.0944 5384 iAimFP6 (714038a8aa5de08e12062202cd7eaeb5) C:\WINDOWS\system32\DRIVERS\wADV08nt.sys 14:37:37.0094 5384 iAimFP6 - ok 14:37:37.0134 5384 iAimFP7 (7bb3aa595e4507a788de1cdc63f4c8c4) C:\WINDOWS\system32\DRIVERS\wADV09nt.sys 14:37:37.0264 5384 iAimFP7 - ok 14:37:37.0294 5384 iAimTV0 (d83bdd5c059667a2f647a6be5703a4d2) C:\WINDOWS\system32\DRIVERS\wATV01nt.sys 14:37:37.0425 5384 iAimTV0 - ok 14:37:37.0485 5384 iAimTV1 (ed968d23354daa0d7c621580c012a1f6) C:\WINDOWS\system32\DRIVERS\wATV02NT.sys 14:37:37.0635 5384 iAimTV1 - ok 14:37:37.0645 5384 iAimTV2 - ok 14:37:37.0665 5384 iAimTV3 (d738273f218a224c1ddac04203f27a84) C:\WINDOWS\system32\DRIVERS\wATV04nt.sys 14:37:37.0795 5384 iAimTV3 - ok 14:37:37.0845 5384 iAimTV4 (0052d118995cbab152daabe6106d1442) C:\WINDOWS\system32\DRIVERS\wCh7xxNT.sys 14:37:37.0965 5384 iAimTV4 - ok 14:37:38.0026 5384 iAimTV5 (791cc45de6e50445be72e8ad6401ff45) C:\WINDOWS\system32\DRIVERS\wATV10nt.sys 14:37:38.0176 5384 iAimTV5 - ok 14:37:38.0186 5384 iAimTV6 (352fa0e98bc461ce1ce5d41f64db558d) C:\WINDOWS\system32\DRIVERS\wATV06nt.sys 14:37:38.0356 5384 iAimTV6 - ok 14:37:38.0446 5384 ialm (85d42b7f0dd406adf5e3ec7659a279ec) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys 14:37:38.0566 5384 ialm - ok 14:37:38.0706 5384 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 14:37:38.0787 5384 idsvc - ok 14:37:38.0977 5384 IDSxpx86 (eeebf3616db90124c1c57019d39aa9a2) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\IPSDefs\20120712.001\IDSxpx86.sys 14:37:39.0007 5384 IDSxpx86 - ok 14:37:39.0187 5384 IISADMIN (f8d14349fb28a8d8db21fd69bc0e102d) C:\WINDOWS\system32\inetsrv\inetinfo.exe 14:37:39.0267 5384 IISADMIN - ok 14:37:39.0337 5384 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 14:37:39.0478 5384 Imapi - ok 14:37:39.0508 5384 ImapiService (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe 14:37:39.0648 5384 ImapiService - ok 14:37:39.0668 5384 ini910u - ok 14:37:39.0868 5384 IntcAzAudAddService (b29781b9a90cd55fc5d859c0b1c243bc) C:\WINDOWS\system32\drivers\RtkHDAud.sys 14:37:40.0229 5384 IntcAzAudAddService - ok 14:37:40.0379 5384 IntelIde (69c4e3c9e67a1f103b94e14fdd5f3213) C:\WINDOWS\system32\DRIVERS\intelide.sys 14:37:40.0529 5384 IntelIde - ok 14:37:40.0559 5384 intelppm (4c7d2750158ed6e7ad642d97bffae351) C:\WINDOWS\system32\DRIVERS\intelppm.sys 14:37:40.0699 5384 intelppm - ok 14:37:40.0739 5384 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 14:37:40.0870 5384 Ip6Fw - ok 14:37:40.0910 5384 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 14:37:41.0040 5384 IpFilterDriver - ok 14:37:41.0090 5384 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 14:37:41.0220 5384 IpInIp - ok 14:37:41.0260 5384 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 14:37:41.0400 5384 IpNat - ok 14:37:41.0440 5384 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 14:37:41.0581 5384 IPSec - ok 14:37:41.0631 5384 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 14:37:41.0701 5384 IRENUM - ok 14:37:41.0761 5384 isapnp (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys 14:37:41.0881 5384 isapnp - ok 14:37:41.0981 5384 JavaQuickStarterService (c2c1660ddcc9bd67eb98d6d5f91c107f) C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe 14:37:42.0001 5384 JavaQuickStarterService - ok 14:37:42.0041 5384 Kbdclass (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 14:37:42.0171 5384 Kbdclass - ok 14:37:42.0202 5384 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 14:37:42.0342 5384 kmixer - ok 14:37:42.0382 5384 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys 14:37:42.0502 5384 KSecDD - ok 14:37:42.0542 5384 lanmanserver (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll 14:37:42.0632 5384 lanmanserver - ok 14:37:42.0672 5384 lanmanworkstation (1869b14b06b44b44af70548e1ea3303f) C:\WINDOWS\System32\wkssvc.dll 14:37:42.0752 5384 lanmanworkstation - ok 14:37:42.0762 5384 lbrtfdc - ok 14:37:42.0822 5384 LightScribeService (559c9b7800fac92fc515cd0003d7c631) C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe 14:37:42.0842 5384 LightScribeService ( UnsignedFile.Multi.Generic ) - warning 14:37:42.0842 5384 LightScribeService - detected UnsignedFile.Multi.Generic (1) 14:37:42.0882 5384 LmHosts (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll 14:37:43.0033 5384 LmHosts - ok 14:37:43.0123 5384 LMIGuardianSvc (850cc3ee0507654c40e1971982f4b698) C:\Programme\LogMeIn\x86\LMIGuardianSvc.exe 14:37:43.0153 5384 LMIGuardianSvc - ok 14:37:43.0183 5384 LMIInfo (4f69faaabb7db0d43e327c0b6aab40fc) C:\Programme\LogMeIn\x86\RaInfo.sys 14:37:43.0203 5384 LMIInfo - ok 14:37:43.0263 5384 LMIMaint (47dc389d96a34debdf9c2c2555da2f01) C:\Programme\LogMeIn\x86\RaMaint.exe 14:37:43.0283 5384 LMIMaint - ok 14:37:43.0323 5384 lmimirr (4477689e2d8ae6b78ba34c9af4cc1ed1) C:\WINDOWS\system32\DRIVERS\lmimirr.sys 14:37:43.0333 5384 lmimirr - ok 14:37:43.0343 5384 LMIRfsClientNP - ok 14:37:43.0383 5384 LMIRfsDriver (3faa563ddf853320f90259d455a01d79) C:\WINDOWS\system32\drivers\LMIRfsDriver.sys 14:37:43.0393 5384 LMIRfsDriver - ok 14:37:43.0443 5384 LogMeIn (432618fa75b61059d2c57d6a7e55147a) C:\Programme\LogMeIn\x86\LogMeIn.exe 14:37:43.0493 5384 LogMeIn - ok 14:37:43.0533 5384 Messenger (b7550a7107281d170ce85524b1488c98) C:\WINDOWS\System32\msgsvc.dll 14:37:43.0674 5384 Messenger - ok 14:37:43.0714 5384 MGABGEXE (99950c81909d240d41308008e3b1d073) C:\WINDOWS\system32\mgabg.exe 14:37:43.0734 5384 MGABGEXE - ok 14:37:43.0774 5384 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 14:37:43.0924 5384 mnmdd - ok 14:37:43.0964 5384 mnmsrvc (c2f1d365fd96791b037ee504868065d3) C:\WINDOWS\System32\mnmsrvc.exe 14:37:44.0104 5384 mnmsrvc - ok 14:37:44.0154 5384 Modem (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys 14:37:44.0274 5384 Modem - ok 14:37:44.0295 5384 Mouclass (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys 14:37:44.0435 5384 Mouclass - ok 14:37:44.0475 5384 mouhid (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys 14:37:44.0605 5384 mouhid - ok 14:37:44.0645 5384 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 14:37:44.0805 5384 MountMgr - ok 14:37:44.0905 5384 MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe 14:37:44.0965 5384 MozillaMaintenance - ok 14:37:44.0975 5384 mraid35x - ok 14:37:45.0136 5384 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 14:37:45.0276 5384 MRxDAV - ok 14:37:45.0336 5384 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 14:37:45.0446 5384 MRxSmb - ok 14:37:45.0476 5384 MSDTC (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\System32\msdtc.exe 14:37:45.0606 5384 MSDTC - ok 14:37:45.0656 5384 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 14:37:45.0787 5384 Msfs - ok 14:37:45.0797 5384 MSIServer - ok 14:37:45.0827 5384 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 14:37:45.0967 5384 MSKSSRV - ok 14:37:46.0017 5384 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 14:37:46.0147 5384 MSPCLOCK - ok 14:37:46.0197 5384 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 14:37:46.0337 5384 MSPQM - ok 14:37:46.0378 5384 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 14:37:46.0498 5384 mssmbios - ok 14:37:46.0528 5384 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys 14:37:46.0608 5384 Mup - ok 14:37:46.0648 5384 napagent (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll 14:37:46.0798 5384 napagent - ok 14:37:47.0008 5384 NAVENG (f11033730b38260b6892e837c457fb4b) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120712.034\NAVENG.SYS 14:37:47.0028 5384 NAVENG - ok 14:37:47.0109 5384 NAVEX15 (4e4e7c0259d3bb97de24a636c0e06aba) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120712.034\NAVEX15.SYS 14:37:47.0199 5384 NAVEX15 - ok 14:37:47.0339 5384 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 14:37:47.0489 5384 NDIS - ok 14:37:47.0529 5384 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 14:37:47.0589 5384 NdisTapi - ok 14:37:47.0619 5384 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 14:37:47.0760 5384 Ndisuio - ok 14:37:47.0790 5384 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 14:37:47.0930 5384 NdisWan - ok 14:37:47.0980 5384 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys 14:37:48.0060 5384 NDProxy - ok 14:37:48.0120 5384 Net Driver HPZ12 (510c138564486ff926a3f773205c63d1) C:\WINDOWS\system32\HPZinw12.dll 14:37:48.0140 5384 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning 14:37:48.0140 5384 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1) 14:37:48.0180 5384 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 14:37:48.0320 5384 NetBIOS - ok 14:37:48.0350 5384 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 14:37:48.0501 5384 NetBT - ok 14:37:48.0541 5384 NetDDE (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe 14:37:48.0701 5384 NetDDE - ok 14:37:48.0711 5384 NetDDEdsdm (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe 14:37:48.0831 5384 NetDDEdsdm - ok 14:37:48.0871 5384 Netlogon (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 14:37:49.0021 5384 Netlogon - ok 14:37:49.0061 5384 Netman (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll 14:37:49.0202 5384 Netman - ok 14:37:49.0322 5384 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 14:37:49.0372 5384 NetTcpPortSharing - ok 14:37:49.0462 5384 NIS (c6948f034d7edabcfa2234d399fc78bc) C:\Programme\Norton Internet Security\Norton Internet Security\Engine\19.7.1.5\ccSvcHst.exe 14:37:49.0482 5384 NIS - ok 14:37:49.0522 5384 Nla (f1b67b6b0751ae0e6e964b02821206a3) C:\WINDOWS\System32\mswsock.dll 14:37:49.0562 5384 Nla - ok 14:37:49.0672 5384 NMIndexingService (c4ebbbd7165be535f0bfd06b80601d91) C:\Programme\Gemeinsame Dateien\Ahead\Lib\NMIndexingService.exe 14:37:49.0712 5384 NMIndexingService ( UnsignedFile.Multi.Generic ) - warning 14:37:49.0712 5384 NMIndexingService - detected UnsignedFile.Multi.Generic (1) 14:37:49.0742 5384 nmwcd - ok 14:37:49.0752 5384 nmwcdc - ok 14:37:49.0762 5384 nmwcdnsu - ok 14:37:49.0772 5384 nmwcdnsuc - ok 14:37:49.0802 5384 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 14:37:49.0923 5384 Npfs - ok 14:37:49.0963 5384 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 14:37:50.0143 5384 Ntfs - ok 14:37:50.0183 5384 NtLmSsp (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 14:37:50.0303 5384 NtLmSsp - ok 14:37:50.0353 5384 NtmsSvc (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll 14:37:50.0523 5384 NtmsSvc - ok 14:37:50.0564 5384 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 14:37:50.0674 5384 Null - ok 14:37:50.0714 5384 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 14:37:50.0844 5384 NwlnkFlt - ok 14:37:50.0874 5384 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 14:37:51.0004 5384 NwlnkFwd - ok 14:37:51.0034 5384 P3 (a7af0c0860f1c43fc6581ba8a99eabef) C:\WINDOWS\system32\DRIVERS\p3.sys 14:37:51.0174 5384 P3 - ok 14:37:51.0204 5384 Parport (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys 14:37:51.0355 5384 Parport - ok 14:37:51.0385 5384 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 14:37:51.0505 5384 PartMgr - ok 14:37:51.0545 5384 ParVdm (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys 14:37:51.0675 5384 ParVdm - ok 14:37:51.0725 5384 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys 14:37:51.0795 5384 pccsmcfd - ok 14:37:51.0835 5384 PCI (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys 14:37:51.0986 5384 PCI - ok 14:37:51.0996 5384 PCIDump - ok 14:37:52.0026 5384 PCIIde (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys 14:37:52.0156 5384 PCIIde - ok 14:37:52.0186 5384 Pcmcia (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys 14:37:52.0326 5384 Pcmcia - ok 14:37:52.0326 5384 PDCOMP - ok 14:37:52.0336 5384 PDFRAME - ok 14:37:52.0346 5384 PDRELI - ok 14:37:52.0356 5384 PDRFRAME - ok 14:37:52.0366 5384 perc2 - ok 14:37:52.0376 5384 perc2hib - ok 14:37:52.0426 5384 PlugPlay (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe 14:37:52.0436 5384 PlugPlay - ok 14:37:52.0476 5384 Pml Driver HPZ12 (37e5e8ffbad35605daeec3224ea0e465) C:\WINDOWS\system32\HPZipm12.dll 14:37:52.0506 5384 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning 14:37:52.0506 5384 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1) 14:37:52.0516 5384 PolicyAgent (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 14:37:52.0637 5384 PolicyAgent - ok 14:37:52.0677 5384 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 14:37:52.0817 5384 PptpMiniport - ok 14:37:52.0867 5384 PQNTDrv (b26019a686d36e22f954e67c8fec4297) C:\WINDOWS\system32\drivers\PQNTDrv.sys 14:37:52.0897 5384 PQNTDrv ( UnsignedFile.Multi.Generic ) - warning 14:37:52.0897 5384 PQNTDrv - detected UnsignedFile.Multi.Generic (1) 14:37:52.0937 5384 Processor (2cb55427c58679f49ad600fccba76360) C:\WINDOWS\system32\DRIVERS\processr.sys 14:37:53.0067 5384 Processor - ok 14:37:53.0077 5384 ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 14:37:53.0207 5384 ProtectedStorage - ok 14:37:53.0237 5384 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 14:37:53.0378 5384 PSched - ok 14:37:53.0418 5384 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 14:37:53.0558 5384 Ptilink - ok 14:37:53.0598 5384 PxHelp20 (0457e25bb122b854e267cf552dcdc370) C:\WINDOWS\system32\Drivers\PxHelp20.sys 14:37:53.0628 5384 PxHelp20 ( UnsignedFile.Multi.Generic ) - warning 14:37:53.0628 5384 PxHelp20 - detected UnsignedFile.Multi.Generic (1) 14:37:53.0628 5384 ql1080 - ok 14:37:53.0638 5384 Ql10wnt - ok 14:37:53.0648 5384 ql12160 - ok 14:37:53.0658 5384 ql1240 - ok 14:37:53.0668 5384 ql1280 - ok 14:37:53.0708 5384 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 14:37:53.0848 5384 RasAcd - ok 14:37:53.0888 5384 RasAuto (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll 14:37:54.0019 5384 RasAuto - ok 14:37:54.0069 5384 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 14:37:54.0189 5384 Rasl2tp - ok 14:37:54.0229 5384 RasMan (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll 14:37:54.0369 5384 RasMan - ok 14:37:54.0379 5384 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 14:37:54.0509 5384 RasPppoe - ok 14:37:54.0539 5384 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 14:37:54.0649 5384 Raspti - ok 14:37:54.0750 5384 rcp_service (b694467b0325267c8eabf04a71d53d99) C:\Programme\ReaConverter 5.5 Pro\rcp_scheduler.exe 14:37:54.0790 5384 rcp_service ( UnsignedFile.Multi.Generic ) - warning 14:37:54.0790 5384 rcp_service - detected UnsignedFile.Multi.Generic (1) 14:37:54.0840 5384 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 14:37:54.0970 5384 Rdbss - ok 14:37:55.0010 5384 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 14:37:55.0140 5384 RDPCDD - ok 14:37:55.0180 5384 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 14:37:55.0320 5384 rdpdr - ok 14:37:55.0370 5384 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys 14:37:55.0421 5384 RDPWD - ok 14:37:55.0461 5384 RDSessMgr (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe 14:37:55.0611 5384 RDSessMgr - ok 14:37:55.0651 5384 redbook (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys 14:37:55.0781 5384 redbook - ok 14:37:55.0831 5384 RemoteAccess (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll 14:37:55.0951 5384 RemoteAccess - ok 14:37:55.0991 5384 RemoteRegistry (e4cd1f3d84e1c2ca0b8cf7501e201593) C:\WINDOWS\system32\regsvc.dll 14:37:56.0132 5384 RemoteRegistry - ok 14:37:56.0172 5384 RpcLocator (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe 14:37:56.0292 5384 RpcLocator - ok 14:37:56.0332 5384 RpcSs (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\System32\rpcss.dll 14:37:56.0382 5384 RpcSs - ok 14:37:56.0442 5384 RSVP (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe 14:37:56.0572 5384 RSVP - ok 14:37:56.0582 5384 rtl8139 - ok 14:37:56.0622 5384 SamSs (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 14:37:56.0732 5384 SamSs - ok 14:37:56.0772 5384 SCardSvr (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe 14:37:56.0923 5384 SCardSvr - ok 14:37:56.0963 5384 Schedule (a050194a44d7fa8d7186ed2f4e8367ae) C:\WINDOWS\system32\schedsvc.dll 14:37:57.0113 5384 Schedule - ok 14:37:57.0173 5384 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 14:37:57.0243 5384 Secdrv - ok 14:37:57.0273 5384 seclogon (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll 14:37:57.0413 5384 seclogon - ok 14:37:57.0453 5384 SENS (2aac9b6ed9eddffb721d6452e34d67e3) C:\WINDOWS\system32\sens.dll 14:37:57.0584 5384 SENS - ok 14:37:57.0624 5384 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 14:37:57.0764 5384 serenum - ok 14:37:57.0774 5384 Serial (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys 14:37:57.0924 5384 Serial - ok 14:37:58.0024 5384 ServiceLayer (2d841b7b7f6dec32162edfcc69d61f42) C:\Programme\PC Connectivity Solution\ServiceLayer.exe 14:37:58.0054 5384 ServiceLayer ( UnsignedFile.Multi.Generic ) - warning 14:37:58.0054 5384 ServiceLayer - detected UnsignedFile.Multi.Generic (1) 14:37:58.0104 5384 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 14:37:58.0235 5384 Sfloppy - ok 14:37:58.0285 5384 SharedAccess (cad058d5f8b889a87ca3eb3cf624dcef) C:\WINDOWS\System32\ipnathlp.dll 14:37:58.0455 5384 SharedAccess - ok 14:37:58.0495 5384 ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 14:37:58.0505 5384 ShellHWDetection - ok 14:37:58.0515 5384 Simbad - ok 14:37:58.0735 5384 Skype C2C Service (2a99850c2a6edd6c6602e822c716edaf) C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype\Toolbars\Skype C2C Service\c2c_service.exe 14:37:58.0875 5384 Skype C2C Service - ok 14:37:58.0936 5384 SkypeUpdate (db0405d9aad62f0762e0876ac142b7e1) C:\Programme\Skype\Updater\Updater.exe 14:37:58.0956 5384 SkypeUpdate - ok 14:37:59.0076 5384 SMR300 (964c7e906079a61320bad4f992e7d777) C:\WINDOWS\system32\drivers\SMR300.SYS 14:37:59.0096 5384 SMR300 - ok 14:37:59.0166 5384 SMTPSVC (f8d14349fb28a8d8db21fd69bc0e102d) C:\WINDOWS\System32\inetsrv\inetinfo.exe 14:37:59.0256 5384 SMTPSVC - ok 14:37:59.0306 5384 smwdm (4931615ef9543728e0204973be27b350) C:\WINDOWS\system32\drivers\smwdm.sys 14:37:59.0426 5384 smwdm - ok 14:37:59.0466 5384 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS 14:37:59.0607 5384 SONYPVU1 - ok 14:37:59.0617 5384 Sparrow - ok 14:37:59.0657 5384 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 14:37:59.0787 5384 splitter - ok 14:37:59.0837 5384 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe 14:37:59.0887 5384 Spooler - ok 14:37:59.0907 5384 sr (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys 14:37:59.0987 5384 sr - ok 14:38:00.0037 5384 srservice (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll 14:38:00.0127 5384 srservice - ok 14:38:00.0237 5384 SRTSP (9dd258ee034afd36259cb7357e19d0b1) C:\WINDOWS\System32\Drivers\NIS\1307010.005\SRTSP.SYS 14:38:00.0288 5384 SRTSP - ok 14:38:00.0338 5384 SRTSPX (0cc3a10f363436c7b478419eb73f8d91) C:\WINDOWS\system32\drivers\NIS\1307010.005\SRTSPX.SYS 14:38:00.0348 5384 SRTSPX - ok 14:38:00.0408 5384 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys 14:38:00.0488 5384 Srv - ok 14:38:00.0538 5384 SSDPSRV (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll 14:38:00.0648 5384 SSDPSRV - ok 14:38:00.0688 5384 STC2DFU (594898b175b8b7d2897a71227d4bbda1) C:\WINDOWS\system32\DRIVERS\Stc2Dfu.SYS 14:38:00.0728 5384 STC2DFU - ok 14:38:00.0778 5384 stisvc (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll 14:38:00.0918 5384 stisvc - ok 14:38:00.0958 5384 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 14:38:01.0099 5384 swenum - ok 14:38:01.0129 5384 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 14:38:01.0249 5384 swmidi - ok 14:38:01.0259 5384 SwPrv - ok 14:38:01.0269 5384 symc810 - ok 14:38:01.0279 5384 symc8xx - ok 14:38:01.0289 5384 SYMDNS - ok 14:38:01.0329 5384 SymDS (690fa0e61b90084c4d9a721bd4f3d779) C:\WINDOWS\system32\drivers\NIS\1307010.005\SYMDS.SYS 14:38:01.0359 5384 SymDS - ok 14:38:01.0439 5384 SymEFA (4e55148a2e044d02245cbcdbb266b98c) C:\WINDOWS\system32\drivers\NIS\1307010.005\SYMEFA.SYS 14:38:01.0489 5384 SymEFA - ok 14:38:01.0529 5384 SymEvent (74e2521e96176a4449570e50be91954d) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS 14:38:01.0549 5384 SymEvent - ok 14:38:01.0559 5384 SYMFW - ok 14:38:01.0569 5384 SYMIDS - ok 14:38:01.0609 5384 SymIRON (2c356cca706505cf63cbe39d532b9236) C:\WINDOWS\system32\drivers\NIS\1307010.005\Ironx86.SYS 14:38:01.0629 5384 SymIRON - ok 14:38:01.0639 5384 SYMNDIS - ok 14:38:01.0649 5384 SYMREDRV - ok 14:38:01.0690 5384 SYMTDI (508bd882040f9cb12319e3a4fc78edb9) C:\WINDOWS\System32\Drivers\NIS\1307010.005\SYMTDI.SYS 14:38:01.0720 5384 SYMTDI - ok 14:38:01.0730 5384 sym_hi - ok 14:38:01.0740 5384 sym_u3 - ok 14:38:01.0780 5384 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 14:38:01.0920 5384 sysaudio - ok 14:38:01.0960 5384 SysmonLog (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe 14:38:02.0100 5384 SysmonLog - ok 14:38:02.0160 5384 TapiSrv (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll 14:38:02.0290 5384 TapiSrv - ok 14:38:02.0330 5384 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys 14:38:02.0381 5384 Tcpip - ok 14:38:02.0431 5384 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 14:38:02.0551 5384 TDPIPE - ok 14:38:02.0591 5384 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 14:38:02.0721 5384 TDTCP - ok 14:38:02.0761 5384 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 14:38:02.0901 5384 TermDD - ok 14:38:02.0951 5384 TermService (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll 14:38:03.0082 5384 TermService - ok 14:38:03.0132 5384 Themes (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 14:38:03.0152 5384 Themes - ok 14:38:03.0212 5384 TlntSvr (03681a1ce77f51586903869a5ab1deab) C:\WINDOWS\System32\tlntsvr.exe 14:38:03.0302 5384 TlntSvr - ok 14:38:03.0312 5384 TosIde - ok 14:38:03.0342 5384 TrkWks (626504572b175867f30f3215c04b3e2f) C:\WINDOWS\system32\trkwks.dll 14:38:03.0482 5384 TrkWks - ok 14:38:03.0542 5384 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 14:38:03.0662 5384 Udfs - ok 14:38:03.0672 5384 ultra - ok 14:38:03.0722 5384 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 14:38:03.0863 5384 Update - ok 14:38:03.0913 5384 upnphost (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll 14:38:04.0023 5384 upnphost - ok 14:38:04.0033 5384 upperdev - ok 14:38:04.0063 5384 UPS (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe 14:38:04.0193 5384 UPS - ok 14:38:04.0203 5384 USBAAPL - ok 14:38:04.0253 5384 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys 14:38:04.0373 5384 usbaudio - ok 14:38:04.0393 5384 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 14:38:04.0534 5384 usbccgp - ok 14:38:04.0574 5384 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys 14:38:04.0714 5384 usbehci - ok 14:38:04.0764 5384 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 14:38:04.0904 5384 usbhub - ok 14:38:04.0944 5384 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 14:38:05.0094 5384 usbprint - ok 14:38:05.0124 5384 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 14:38:05.0285 5384 usbscan - ok 14:38:05.0315 5384 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys 14:38:05.0445 5384 usbser - ok 14:38:05.0455 5384 UsbserFilt - ok 14:38:05.0485 5384 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 14:38:05.0625 5384 USBSTOR - ok 14:38:05.0665 5384 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 14:38:05.0805 5384 usbuhci - ok 14:38:05.0846 5384 VClone (fce98c43b5c5db8e0da8ea0e2b45e044) C:\WINDOWS\system32\DRIVERS\VClone.sys 14:38:05.0866 5384 VClone ( UnsignedFile.Multi.Generic ) - warning 14:38:05.0866 5384 VClone - detected UnsignedFile.Multi.Generic (1) 14:38:05.0896 5384 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 14:38:06.0036 5384 VgaSave - ok 14:38:06.0046 5384 ViaIde - ok 14:38:06.0076 5384 VIAPFD (662626bccf060f2f4b6d5af7ac121ff5) C:\WINDOWS\System32\Drivers\VIAPFD.SYS 14:38:06.0076 5384 VIAPFD ( UnsignedFile.Multi.Generic ) - warning 14:38:06.0076 5384 VIAPFD - detected UnsignedFile.Multi.Generic (1) 14:38:06.0106 5384 VolSnap (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys 14:38:06.0236 5384 VolSnap - ok 14:38:06.0266 5384 VSS (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe 14:38:06.0356 5384 VSS - ok 14:38:06.0396 5384 W32Time (7b353059e665f8b7ad2bbeaef597cf45) C:\WINDOWS\system32\w32time.dll 14:38:06.0526 5384 W32Time - ok 14:38:06.0587 5384 W3SVC (f8d14349fb28a8d8db21fd69bc0e102d) C:\WINDOWS\system32\inetsrv\inetinfo.exe 14:38:06.0677 5384 W3SVC - ok 14:38:06.0727 5384 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 14:38:06.0867 5384 Wanarp - ok 14:38:06.0917 5384 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys 14:38:06.0957 5384 Wdf01000 - ok 14:38:06.0967 5384 WDICA - ok 14:38:07.0007 5384 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 14:38:07.0137 5384 wdmaud - ok 14:38:07.0177 5384 WebClient (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll 14:38:07.0308 5384 WebClient - ok 14:38:07.0378 5384 winmgmt (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll 14:38:07.0508 5384 winmgmt - ok 14:38:07.0588 5384 WinRM (f10075c2ec96d2eb118012e78ece2fc2) C:\WINDOWS\system32\WsmSvc.dll 14:38:07.0748 5384 WinRM - ok 14:38:07.0808 5384 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll 14:38:07.0949 5384 WmdmPmSN - ok 14:38:08.0059 5384 Wmi (ffa4d901d46d07a5bab2d8307fbb51a6) C:\WINDOWS\System32\advapi32.dll 14:38:08.0129 5384 Wmi - ok 14:38:08.0179 5384 WmiApSrv (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe 14:38:08.0299 5384 WmiApSrv - ok 14:38:08.0399 5384 WMPNetworkSvc (bf05650bb7df5e9ebdd25974e22403bb) C:\Programme\Windows Media Player\WMPNetwk.exe 14:38:08.0489 5384 WMPNetworkSvc - ok 14:38:08.0549 5384 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys 14:38:08.0579 5384 WpdUsb - ok 14:38:08.0609 5384 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys 14:38:08.0740 5384 WS2IFSL - ok 14:38:08.0790 5384 wscsvc (300b3e84faf1a5c1f791c159ba28035d) C:\WINDOWS\system32\wscsvc.dll 14:38:08.0940 5384 wscsvc - ok 14:38:08.0960 5384 wuauserv (7b4fe05202aa6bf9f4dfd0e6a0d8a085) C:\WINDOWS\system32\wuauserv.dll 14:38:09.0080 5384 wuauserv - ok 14:38:09.0120 5384 WudfPf (eaa6324f51214d2f6718977ec9ce0def) C:\WINDOWS\system32\DRIVERS\WudfPf.sys 14:38:09.0200 5384 WudfPf - ok 14:38:09.0250 5384 WudfRd (f91ff1e51fca30b3c3981db7d5924252) C:\WINDOWS\system32\DRIVERS\wudfrd.sys 14:38:09.0270 5384 WudfRd - ok 14:38:09.0300 5384 WudfSvc (ddee3682fe97037c45f4d7ab467cb8b6) C:\WINDOWS\System32\WUDFSvc.dll 14:38:09.0321 5384 WudfSvc - ok 14:38:09.0361 5384 WZCSVC (c4f109c005f6725162d2d12ca751e4a7) C:\WINDOWS\System32\wzcsvc.dll 14:38:09.0521 5384 WZCSVC - ok 14:38:09.0561 5384 xmlprov (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll 14:38:09.0701 5384 xmlprov - ok 14:38:09.0721 5384 MBR (0x1B8) (72b8ce41af0de751c946802b3ed844b4) \Device\Harddisk0\DR0 14:38:10.0152 5384 \Device\Harddisk0\DR0 - ok 14:38:10.0162 5384 MBR (0x1B8) (739b36f7a373fc81121d831231b6d311) \Device\Harddisk1\DR5 14:38:10.0532 5384 \Device\Harddisk1\DR5 - ok 14:38:10.0542 5384 Boot (0x1200) (7aa8a8dc4eb530c5989cbbdbfc3eba72) \Device\Harddisk0\DR0\Partition0 14:38:10.0542 5384 \Device\Harddisk0\DR0\Partition0 - ok 14:38:10.0582 5384 Boot (0x1200) (dd11549d43e261653d88147850445739) \Device\Harddisk0\DR0\Partition1 14:38:10.0582 5384 \Device\Harddisk0\DR0\Partition1 - ok 14:38:10.0592 5384 Boot (0x1200) (aacb6b58daa0c5de4719b9d30bec1fd3) \Device\Harddisk1\DR5\Partition0 14:38:10.0592 5384 \Device\Harddisk1\DR5\Partition0 - ok 14:38:10.0602 5384 ============================================================ 14:38:10.0602 5384 Scan finished 14:38:10.0602 5384 ============================================================ 14:38:10.0723 4368 Detected object count: 20 14:38:10.0723 4368 Actual detected object count: 20 14:38:50.0570 4368 Adobe LM Service ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 Adobe LM Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0570 4368 CCALib8 ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 CCALib8 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0570 4368 CyUsbNT ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 CyUsbNT ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0570 4368 FileZilla Server ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 FileZilla Server ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0570 4368 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0570 4368 FS20 IRP ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0570 4368 FS20 IRP ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0580 4368 FTD2XX ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0580 4368 FTD2XX ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0580 4368 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0580 4368 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0580 4368 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0580 4368 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0580 4368 HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0580 4368 HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 LightScribeService ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 LightScribeService ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 NMIndexingService ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 NMIndexingService ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 PQNTDrv ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 PQNTDrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0590 4368 PxHelp20 ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0590 4368 PxHelp20 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0600 4368 rcp_service ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0600 4368 rcp_service ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0600 4368 ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0600 4368 ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0600 4368 VClone ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0600 4368 VClone ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:38:50.0600 4368 VIAPFD ( UnsignedFile.Multi.Generic ) - skipped by user 14:38:50.0600 4368 VIAPFD ( UnsignedFile.Multi.Generic ) - User select action: Skip |
das sieht alles soweit io aus machst du irgendwas wichtiges mit dem pc? banking, einkäufe etc? |
Also, ins wochenende ist es wieder los gegangen. Ich mache jetzt nichts und lasse die spam mails weiterlaufen, bitte um anweisungen....... Unterstehend mal ein mail: From: postmaster@Thomasrechner To: sloboz@muie.com Date: Mon, 16 Jul 2012 05:49:24 +0200 MIME-Version: 1.0 Content-Type: multipart/report; report-type=delivery-status; boundary="9B095B5ADSN=_01CD5FF8CC8072C000000005Thomasrechner" Message-ID: <FRaqbC8wS00000003@Thomasrechner> Subject: Benachrichtung zum =?unicode-1-1-utf-7?Q?+ANw-bermittlungsstatus (Fehlgeschlagen)?= This is a MIME-formatted message. Portions of this message may be unreadable without a MIME-capable mail program. --9B095B5ADSN=_01CD5FF8CC8072C000000005Thomasrechner Content-Type: text/plain; charset=unicode-1-1-utf-7 Dies ist eine automatisch erstellte Benachrichtigung +APw-ber den Zustellstatus. Den folgenden Empf+AOQ-ngern konnte die Nachricht nicht zugestellt werden, weil keine Verbindung mit dem Zielserver hergestellt werden konnte. daumuie4@libero.it --9B095B5ADSN=_01CD5FF8CC8072C000000005Thomasrechner Content-Type: message/delivery-status Reporting-MTA: dns;Thomasrechner Received-From-MTA: dns;cartasi Arrival-Date: Sat, 14 Jul 2012 03:31:24 +0200 Final-Recipient: rfc822;daumuie4@libero.it Action: failed Status: 4.4.7 --9B095B5ADSN=_01CD5FF8CC8072C000000005Thomasrechner Content-Type: message/rfc822 Received: from cartasi ([109.99.149.198]) by Thomasrechner with Microsoft SMTPSVC(6.0.2600.5949); Sat, 14 Jul 2012 03:31:24 +0200 MIME-Version: 1.0 From: sloboz@muie.com To: daumuie4@libero.it Date: 14 Jul 2012 04:31:09 +0300 Subject: 194.112.246.13,spam@Vienna-RemoteB013.profinet.at,spam Return-Path: sloboz@muie.com Message-ID: <THOMASRECHNERKp3QGq00000001@Thomasrechner> X-OriginalArrivalTime: 14 Jul 2012 01:31:24.0323 (UTC) FILETIME=[61720730:01CD6160] --9B095B5ADSN=_01CD5FF8CC8072C000000005Thomasrechner-- |
Alle Zeitangaben in WEZ +1. Es ist jetzt 04:52 Uhr. |
Copyright ©2000-2025, Trojaner-Board