![]() |
GVU legt Rechner lahm..brauche dringend Redaktionsordner..windowsunlocker hat nicht funtioniert Hallo zusammen, der Bundestrojaner/GVU Ransomdings hat sich heute morgen beim Hochfahren des PCs desselbigen bemächtigt. Ich kann mit F8 in den abgesicherten Modus wechseln, aber selbst dort erscheint nach kurzer Zeit der typische weiße Bildschirm mit den Erpresserforderungen. Habe mir daraufhin den Windowsunlocker bei Chip.de runtergeladen. Der ließ sich von der gebrannten CD-Rom auch starten und alles lief zunächst wie beim Video in den einzelnen Schritten (www.chip.de/downloads/Kaspersky-WindowsUnlocker_54217363.html) beschrieben.. allerdings gab es den Menupunkt "Kaspersky WindowsUnlocker" (bei Minute 1:19 im Video) nicht...ich bin dann auf "Alle Objekte untersuchen" gegangen und der PC hat seine Stunde rumgerödelt und alle Dateien gescannt...als Laie würde ich auch sagen, dass er (zumindest) eine der D****dateien gefunden hat..die lautete in etwa MGRCVKH678HKLJG..ging ewig so weiter (auf die Frage was mit gefundenen Dateien passieren soll konnte ich wählen zwischen Quarantäne, delete oder skip und ich habe delete gewählt)...danach konnte ich ihn runterfahren..tja..und beim Hochfahren war nach wenigen Sekunden des Hoffen die Sanduhr wieder da..und dann der verhasste Bildschirm in weiß..ich habe mir die Otlpe auf CD gezogen und werd sie gleich nach dem zweiten Durchlauf mit Kaspersky auf den infizierten Rechner laufen lassen...das Betriebssystem ist Windows XP..ansonsten kann ich leider gar nichts nachsehen, da ich nicht auf Benutzeroberfläche komme..Wäre sehr dankbar, wenn mir jemand helfen könnte..sind Artikel für eine Zeitung drauf und das Ding muss zum Drucker... Wahnsinn einfach Zur Zeit läuft gerade der Kaspersky WindowsUnlocker ein zweites Mal drüber...ich komme dann auch auf die Eingabemaske wie sie im Video bei 1:39 beschrieben ist..macht es evt Sinn statt auf "Computer ausschalten" auf "Autostart-Objekte untersuchen " zu gehen und alles zu deaktivieren? (Falls das möglich ist?) Lg Marc |
hi kaspersky abbrechen. bitte. kommst du an nen pc mit brenner? download: http://filepony.de/download-otlpe/ und brenne es mit ISOBurner auf eine CD. ISO Burner - Download - Filepony isoburner anleitung: http://www.trojaner-board.de/83208-b...ei-cd-dvd.html • Wenn der Download fertig ist mache ein doppel Klick auf die OTLPENet.exe, was ISOBurner öffnet um es auf die CD zu brennen. Starte dein System neu und boote von der CD die du gerade erstellt hast. Wenn du nicht weist wie du deinen Computer dazu bringst von der CD zu booten, http://www.trojaner-board.de/81857-c...cd-booten.html • Dein System sollte jetzt einen REATOGO-X-PE Desktop anzeigen. • Mache einen doppel Klick auf das OTLPE Icon. • Wenn du gefragt wirst "Do you wish to load the remote registry", dann wähle Yes. • Wenn du gefragt wirst "Do you wish to load remote user profile(s) for scanning", dann wähle Yes. • entferne den haken bei "Automatically Load All Remaining Users" wenn er gesetzt ist. • OTL sollte nun starten. Kopiere nun den Inhalt in die http://larusso.trojaner-board.de/Images/otlfix.jpg Textbox. Code: activex • Wenn er fertig ist werden die Dateien in C:\otl.txt gesichert • Kopiere diesen Ordner auf deinen USB-Stick wenn du keine Internetverbindung auf diesem System hast. poste beide logs |
bin jetzt im otlpe..muss ich den text der gelben Box manuell eingeben? Nicht dass ich da was falsch mache? und dann run..richtig? Lg und vielen Dank |
na manuell nich, du kannst ihn zb , wenn du unter otl internet hast kopieren und einfügen, bzw via usb stick als txt speichern, öffnen unter der otl cd und einfügen, dann auf scan klicken |
OTL Logfile: Code: OTL logfile created on: 6/10/2013 4:24:43 PM - Run |
auf deinem zweiten pc gehe auf start, programme zubehör editor, kopiere dort rein: Code: :OTL dieses speicherst du auf nem usb stick als fix.txt nutze nun wieder OTLPENet.exe (starte also von der erstellten cd) und hake alles an, wie es bereits im post zu OTLPENet.exe beschrieben ist. • Klicke nun bitte auf den Fix Button. es sollte nun eine meldung ähnlich dieser: "load fix from file" erscheinen, lade also die fix.txt von deinem stick. wenn dies nicht funktioniert, bitte den fix manuell eintragen. dann klicke erneut den fix buton. pc startet evtl. neu. wenn ja, nimm die cd aus dem laufwerk, windows sollte nun normal starten und die otl.txt öffnen, log posten bitte. falls du keine symbole hast, dann rechtsklick, ansicht, desktop symbole einblenden Hinweis: Die Datei bitte wie in der Anleitung zum UpChannel angegeben auch da hochladen. Bitte NICHT die ZIP-Datei hier als Anhang in den Thread posten! Drücke bitte die http://larusso.trojaner-board.de/Images/windows.jpg + E Taste.
|
meinst du mit Fix Button den "Run Fix" Button? Lg ich kann den fix eintragen, allerdings hängt der PC sich nach dem einlesen auf und ich kann nichts mehr schalten...kann den text nicht manuell eingeben, hab ja keine kyrillischen Buchstaben.. Lg |
und deswegen staht da ja, evtl. fix manuell eintragen |
yepp..habs jetzt gefunden und hat mich auch gefragt ob er runterfahren soll..hab yes gedrückt..PC arbeitet etwas..unten steht Processing complete! und dann passiert nichts...soll ich evt sagen Nein nicht runterfahren? Lg ========== OTL ========== File move failed. C:\Dokumente und Einstellungen\MM\Startmenü\Programme\Autostart\msconfig.lnk scheduled to be moved on reboot. File move failed. X:\I386\SYSTEM32\RUNDLL32.EXE scheduled to be moved on reboot. File move failed. C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\Autostart\msconfig.lnk scheduled to be moved on reboot. File move failed. X:\I386\SYSTEM32\RUNDLL32.EXE scheduled to be moved on reboot. File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\oqelco.dat not found. File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\rundll32.exe not found. File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ocleqo.pad not found. File C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ocleqo.js not found. File C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\Autostart\msconfig.lnk not found. File C:\Dokumente und Einstellungen\MM\Startmenü\Programme\Autostart\msconfig.lnk not found. ========== FILES ========== ========== COMMANDS ========== [EMPTYFLASH] User: Administrator ->Temp folder emptied: 68430 bytes ->Temporary Internet Files folder emptied: 169648 bytes User: All Users User: Default User ->Temp folder emptied: 68307 bytes ->Temporary Internet Files folder emptied: 131206 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 4756267 bytes User: MM ->Temp folder emptied: 684133005 bytes ->Temporary Internet Files folder emptied: 81284286 bytes ->Java cache emptied: 19529727 bytes ->FireFox cache emptied: 87976623 bytes ->Google Chrome cache emptied: 21124683 bytes ->Flash cache emptied: 1925611 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes Total Flash Files Cleaned = 859.00 mb [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: MM ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes Total Files Cleaned = 0.00 mb OTLPE by OldTimer - Version 3.1.48.0 log created on 06102013_182834 Files\Folders moved on Reboot... File\Folder C:\Dokumente und Einstellungen\MM\Startmenü\Programme\Autostart\msconfig.lnk not found! File\Folder X:\I386\SYSTEM32\RUNDLL32.EXE not found! File\Folder C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\Autostart\msconfig.lnk not found! Registry entries deleted on Reboot... ist es das was du meintest? so..hab die zip bei Euch hochgeladen...muss ich noch etwas beachten?...ich danke dir 100000000000 mal..bin auf der Oberfläche und hoffe nun auch die Dateien rausziehen zu können... DANKE Marc sag mal markus..soll ich jetzt auch noch irgendwas drüberlaufen lassen, da ich wieder am PC arbeiten kann...da gibts doch von aharonov so eine Anleitung "Mein Name ist Leo und ich werde dich durch die Bereinigung deines Rechners leiten"..etc..? Lg Marc Zitat:
Ja..hat problemlos geklappt Lg Marc |
Hi, Downloade dir bitte ![]()
|
danke und hier geht's weiter.. 20:09:17.0626 1396 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 20:09:17.0985 1396 ============================================================ 20:09:17.0985 1396 Current date / time: 2013/06/10 20:09:17.0985 20:09:18.0001 1396 SystemInfo: 20:09:18.0001 1396 20:09:18.0001 1396 OS Version: 5.1.2600 ServicePack: 3.0 20:09:18.0001 1396 Product type: Workstation 20:09:18.0001 1396 ComputerName: BERGMANN-2 20:09:18.0001 1396 UserName: MM 20:09:18.0001 1396 Windows directory: C:\WINDOWS 20:09:18.0001 1396 System windows directory: C:\WINDOWS 20:09:18.0001 1396 Processor architecture: Intel x86 20:09:18.0001 1396 Number of processors: 1 20:09:18.0001 1396 Page size: 0x1000 20:09:18.0001 1396 Boot type: Normal boot 20:09:18.0001 1396 ============================================================ 20:09:18.0767 1396 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 20:09:18.0782 1396 ============================================================ 20:09:18.0782 1396 \Device\Harddisk0\DR0: 20:09:18.0782 1396 MBR partitions: 20:09:18.0782 1396 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x11F206B6 20:09:18.0782 1396 ============================================================ 20:09:18.0876 1396 C: <-> \Device\Harddisk0\DR0\Partition1 20:09:18.0892 1396 ============================================================ 20:09:18.0892 1396 Initialize success 20:09:18.0892 1396 ============================================================ 20:09:31.0876 2436 ============================================================ 20:09:31.0876 2436 Scan started 20:09:31.0876 2436 Mode: Manual; SigCheck; TDLFS; 20:09:31.0876 2436 ============================================================ 20:09:32.0267 2436 ================ Scan system memory ======================== 20:09:32.0267 2436 System memory - ok 20:09:32.0282 2436 ================ Scan services ============================= 20:09:32.0407 2436 Abiosdsk - ok 20:09:32.0439 2436 abp480n5 - ok 20:09:32.0501 2436 [ AC407F1A62C3A300B4F2B5A9F1D55B2C ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 20:09:35.0095 2436 ACPI - ok 20:09:35.0126 2436 [ 9E1CA3160DAFB159CA14F83B1E317F75 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 20:09:35.0314 2436 ACPIEC - ok 20:09:35.0360 2436 [ D392183CC5379E302E50CEBA635248EB ] ADIHdAudAddService C:\WINDOWS\system32\drivers\ADIHdAud.sys 20:09:35.0439 2436 ADIHdAudAddService - ok 20:09:35.0501 2436 [ 8B46D5A1D3EF08232C04D0EAFB871FB2 ] Adobe LM Service C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe 20:09:35.0517 2436 Adobe LM Service ( UnsignedFile.Multi.Generic ) - warning 20:09:35.0517 2436 Adobe LM Service - detected UnsignedFile.Multi.Generic (1) 20:09:35.0626 2436 [ 41D15EAD554396BF35B7C5246AD47A28 ] Adobe Version Cue CS2 C:\Programme\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe 20:09:35.0673 2436 Adobe Version Cue CS2 ( UnsignedFile.Multi.Generic ) - warning 20:09:35.0673 2436 Adobe Version Cue CS2 - detected UnsignedFile.Multi.Generic (1) 20:09:35.0798 2436 [ F040037B149FD0F5A5044AE563390FA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 20:09:35.0814 2436 AdobeFlashPlayerUpdateSvc - ok 20:09:35.0829 2436 adpu160m - ok 20:09:35.0860 2436 [ 9F59AE2DE835641FBB0C6AFD80D8FA9B ] AEAudioService C:\WINDOWS\system32\drivers\AEAudio.sys 20:09:35.0907 2436 AEAudioService - ok 20:09:35.0954 2436 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 20:09:36.0267 2436 aec - ok 20:09:36.0314 2436 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 20:09:36.0392 2436 AFD - ok 20:09:36.0407 2436 Aha154x - ok 20:09:36.0407 2436 aic78u2 - ok 20:09:36.0423 2436 aic78xx - ok 20:09:36.0470 2436 [ 738D80CC01D7BC7584BE917B7F544394 ] Alerter C:\WINDOWS\system32\alrsvc.dll 20:09:36.0657 2436 Alerter - ok 20:09:36.0673 2436 [ 190CD73D4984F94D823F9444980513E5 ] ALG C:\WINDOWS\System32\alg.exe 20:09:36.0845 2436 ALG - ok 20:09:36.0845 2436 AliIde - ok 20:09:36.0907 2436 [ 22AD3EC1F0486C863D70CDD50B97761B ] AmdK8 C:\WINDOWS\system32\DRIVERS\AmdK8.sys 20:09:36.0923 2436 AmdK8 ( UnsignedFile.Multi.Generic ) - warning 20:09:36.0923 2436 AmdK8 - detected UnsignedFile.Multi.Generic (1) 20:09:36.0923 2436 amsint - ok 20:09:36.0985 2436 [ D45960BE52C3C610D361977057F98C54 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 20:09:37.0142 2436 AppMgmt - ok 20:09:37.0173 2436 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys 20:09:37.0345 2436 Arp1394 - ok 20:09:37.0360 2436 asc - ok 20:09:37.0376 2436 asc3350p - ok 20:09:37.0376 2436 asc3550 - ok 20:09:37.0439 2436 [ D880831279ED91F9A4190A2DB9539EA9 ] ASCTRM C:\WINDOWS\system32\drivers\ASCTRM.sys 20:09:37.0454 2436 ASCTRM ( UnsignedFile.Multi.Generic ) - warning 20:09:37.0454 2436 ASCTRM - detected UnsignedFile.Multi.Generic (1) 20:09:37.0564 2436 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 20:09:37.0610 2436 aspnet_state - ok 20:09:37.0642 2436 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 20:09:37.0782 2436 AsyncMac - ok 20:09:37.0814 2436 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 20:09:37.0970 2436 atapi - ok 20:09:37.0985 2436 Atdisk - ok 20:09:38.0017 2436 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 20:09:38.0204 2436 Atmarpc - ok 20:09:38.0251 2436 [ 58ED0D5452DF7BE732193E7999C6B9A4 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 20:09:38.0423 2436 AudioSrv - ok 20:09:38.0454 2436 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 20:09:38.0626 2436 audstub - ok 20:09:38.0657 2436 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 20:09:38.0860 2436 Beep - ok 20:09:38.0907 2436 [ D6F603772A789BB3228F310D650B8BD1 ] BITS C:\WINDOWS\system32\qmgr.dll 20:09:39.0126 2436 BITS - ok 20:09:39.0142 2436 [ B71549F23736ADF83A571061C47777FD ] Browser C:\WINDOWS\System32\browser.dll 20:09:39.0204 2436 Browser - ok 20:09:39.0235 2436 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 20:09:39.0423 2436 cbidf2k - ok 20:09:39.0439 2436 cd20xrnt - ok 20:09:39.0485 2436 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 20:09:39.0673 2436 Cdaudio - ok 20:09:39.0689 2436 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 20:09:39.0860 2436 Cdfs - ok 20:09:39.0892 2436 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 20:09:40.0048 2436 Cdrom - ok 20:09:40.0064 2436 Changer - ok 20:09:40.0095 2436 [ 28E3040D1F1CA2008CD6B29DFEBC9A5E ] CiSvc C:\WINDOWS\system32\cisvc.exe 20:09:40.0251 2436 CiSvc - ok 20:09:40.0314 2436 [ 778A30ED3C134EB7E406AFC407E9997D ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 20:09:40.0485 2436 ClipSrv - ok 20:09:40.0532 2436 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 20:09:40.0642 2436 clr_optimization_v2.0.50727_32 - ok 20:09:40.0657 2436 CmdIde - ok 20:09:40.0751 2436 [ 091A2D76A1FFFA523CD453CBABC4078D ] ColorZillaStatsUpdater C:\Dokumente und Einstellungen\MM\Anwendungsdaten\ColorZillaStats\IE\ColorZillaStatsUpdater.exe 20:09:40.0782 2436 ColorZillaStatsUpdater ( UnsignedFile.Multi.Generic ) - warning 20:09:40.0782 2436 ColorZillaStatsUpdater - detected UnsignedFile.Multi.Generic (1) 20:09:40.0798 2436 COMSysApp - ok 20:09:40.0814 2436 Cpqarray - ok 20:09:40.0845 2436 [ 611F824E5C703A5A899F84C5F1699E4D ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 20:09:41.0017 2436 CryptSvc - ok 20:09:41.0017 2436 dac2w2k - ok 20:09:41.0032 2436 dac960nt - ok 20:09:41.0079 2436 [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 20:09:41.0157 2436 DcomLaunch - ok 20:09:41.0204 2436 [ C29A1C9B75BA38FA37F8C44405DEC360 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 20:09:41.0392 2436 Dhcp - ok 20:09:41.0439 2436 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 20:09:41.0579 2436 Disk - ok 20:09:41.0595 2436 dmadmin - ok 20:09:41.0642 2436 [ 0DCFC8395A99FECBB1EF771CEC7FE4EA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 20:09:41.0845 2436 dmboot - ok 20:09:41.0876 2436 [ 53720AB12B48719D00E327DA470A619A ] dmio C:\WINDOWS\system32\drivers\dmio.sys 20:09:42.0032 2436 dmio - ok 20:09:42.0064 2436 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 20:09:42.0235 2436 dmload - ok 20:09:42.0267 2436 [ 25C83FFBBA13B554EB6D59A9B2E2EE78 ] dmserver C:\WINDOWS\System32\dmserver.dll 20:09:42.0439 2436 dmserver - ok 20:09:42.0470 2436 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 20:09:42.0642 2436 DMusic - ok 20:09:42.0657 2436 [ 407F3227AC618FD1CA54B335B083DE07 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 20:09:42.0751 2436 Dnscache - ok 20:09:42.0782 2436 [ 676E36C4FF5BCEA1900F44182B9723E6 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 20:09:42.0939 2436 Dot3svc - ok 20:09:42.0954 2436 dpti2o - ok 20:09:42.0985 2436 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 20:09:43.0142 2436 drmkaud - ok 20:09:43.0189 2436 [ A6DE5342417FEC3C0AA8EFEBB899C431 ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys 20:09:43.0360 2436 E100B - ok 20:09:43.0407 2436 [ 4E4F2FDDAB0A0736D7671134DCCE91FB ] EapHost C:\WINDOWS\System32\eapsvc.dll 20:09:43.0564 2436 EapHost - ok 20:09:43.0626 2436 [ 5D1347AA5AE6E2F77D7F4F8372D95AC9 ] ehRecvr C:\WINDOWS\eHome\ehRecvr.exe 20:09:43.0782 2436 ehRecvr - ok 20:09:43.0829 2436 [ E774BF24A6CB798DCE67AD1C8E917152 ] ehSched C:\WINDOWS\eHome\ehSched.exe 20:09:43.0860 2436 ehSched - ok 20:09:43.0892 2436 [ 877C18558D70587AA7823A1A308AC96B ] ERSvc C:\WINDOWS\System32\ersvc.dll 20:09:44.0048 2436 ERSvc - ok 20:09:44.0079 2436 [ A3EDBE9053889FB24AB22492472B39DC ] Eventlog C:\WINDOWS\system32\services.exe 20:09:44.0110 2436 Eventlog - ok 20:09:44.0173 2436 [ AF4F6B5739D18CA7972AB53E091CBC74 ] EventSystem C:\WINDOWS\system32\es.dll 20:09:44.0204 2436 EventSystem - ok 20:09:44.0251 2436 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 20:09:44.0407 2436 Fastfat - ok 20:09:44.0439 2436 [ 2DB7D303C36DDD055215052F118E8E75 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 20:09:44.0532 2436 FastUserSwitchingCompatibility - ok 20:09:44.0564 2436 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 20:09:44.0704 2436 Fdc - ok 20:09:44.0735 2436 [ B0678A548587C5F1967B0D70BACAD6C1 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 20:09:44.0876 2436 Fips - ok 20:09:44.0954 2436 [ 1F63900E2EB00101B9ACA2B7A870704E ] FLEXnet Licensing Service C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 20:09:45.0017 2436 FLEXnet Licensing Service - ok 20:09:45.0048 2436 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 20:09:45.0189 2436 Flpydisk - ok 20:09:45.0235 2436 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 20:09:45.0392 2436 FltMgr - ok 20:09:45.0454 2436 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 20:09:45.0470 2436 FontCache3.0.0.0 - ok 20:09:45.0501 2436 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 20:09:45.0689 2436 Fs_Rec - ok 20:09:45.0704 2436 [ 8F1955CE42E1484714B542F341647778 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 20:09:45.0923 2436 Ftdisk - ok 20:09:45.0954 2436 [ 4AC51459805264AFFD5F6FDFB9D9235F ] GEARAspiWDM C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys 20:09:46.0017 2436 GEARAspiWDM - ok 20:09:46.0048 2436 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 20:09:46.0173 2436 Gpc - ok 20:09:46.0235 2436 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Programme\Google\Update\GoogleUpdate.exe 20:09:46.0267 2436 gupdate - ok 20:09:46.0282 2436 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Programme\Google\Update\GoogleUpdate.exe 20:09:46.0314 2436 gupdatem - ok 20:09:46.0376 2436 [ 1BF044E23206FDDC16891A32922D571B ] gusvc C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe 20:09:46.0407 2436 gusvc - ok 20:09:46.0439 2436 [ F58D2900C66A1E773E3375098E0E9337 ] HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys 20:09:46.0517 2436 HdAudAddService - ok 20:09:46.0548 2436 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 20:09:46.0704 2436 HDAudBus - ok 20:09:46.0751 2436 [ CB66BF85BF599BEFD6C6A57C2E20357F ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 20:09:46.0907 2436 helpsvc - ok 20:09:46.0939 2436 [ B35DA85E60C0103F2E4104532DA2F12B ] HidServ C:\WINDOWS\System32\hidserv.dll 20:09:47.0095 2436 HidServ - ok 20:09:47.0142 2436 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 20:09:47.0282 2436 HidUsb - ok 20:09:47.0329 2436 [ ED29F14101523A6E0E808107405D452C ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 20:09:47.0454 2436 hkmsvc - ok 20:09:47.0470 2436 hpn - ok 20:09:47.0501 2436 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 20:09:47.0579 2436 HTTP - ok 20:09:47.0626 2436 [ 9E4ADB854CEBCFB81A4B36718FEECD16 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 20:09:47.0767 2436 HTTPFilter - ok 20:09:47.0782 2436 i2omgmt - ok 20:09:47.0798 2436 i2omp - ok 20:09:47.0829 2436 [ E283B97CFBEB86C1D86BAED5F7846A92 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 20:09:47.0970 2436 i8042prt - ok 20:09:48.0079 2436 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 20:09:48.0126 2436 idsvc - ok 20:09:48.0157 2436 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 20:09:48.0314 2436 Imapi - ok 20:09:48.0345 2436 [ D4B413AA210C21E46AEDD2BA5B68D38E ] ImapiService C:\WINDOWS\system32\imapi.exe 20:09:48.0501 2436 ImapiService - ok 20:09:48.0517 2436 ini910u - ok 20:09:48.0532 2436 IntelIde - ok 20:09:48.0564 2436 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys 20:09:48.0720 2436 Ip6Fw - ok 20:09:48.0751 2436 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 20:09:48.0939 2436 IpFilterDriver - ok 20:09:48.0970 2436 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 20:09:49.0110 2436 IpInIp - ok 20:09:49.0157 2436 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 20:09:49.0314 2436 IpNat - ok 20:09:49.0360 2436 [ 1E9ED06A30FB0410CE94892F1BA6984B ] iPod Service C:\Programme\iPod\bin\iPodService.exe 20:09:49.0392 2436 iPod Service - ok 20:09:49.0439 2436 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 20:09:49.0595 2436 IPSec - ok 20:09:49.0610 2436 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 20:09:49.0767 2436 IRENUM - ok 20:09:49.0782 2436 [ 6DFB88F64135C525433E87648BDA30DE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 20:09:49.0939 2436 isapnp - ok 20:09:50.0017 2436 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe 20:09:50.0032 2436 JavaQuickStarterService - ok 20:09:50.0048 2436 [ 1704D8C4C8807B889E43C649B478A452 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 20:09:50.0204 2436 Kbdclass - ok 20:09:50.0235 2436 [ B6D6C117D771C98130497265F26D1882 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 20:09:50.0392 2436 kbdhid - ok 20:09:50.0407 2436 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 20:09:50.0564 2436 kmixer - ok 20:09:50.0595 2436 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 20:09:50.0720 2436 KSecDD - ok 20:09:50.0751 2436 [ 2BBDCB79900990F0716DFCB714E72DE7 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 20:09:50.0829 2436 lanmanserver - ok 20:09:50.0860 2436 [ 1869B14B06B44B44AF70548E1EA3303F ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 20:09:50.0939 2436 lanmanworkstation - ok 20:09:50.0954 2436 lbrtfdc - ok 20:09:51.0001 2436 [ 636714B7D43C8D0C80449123FD266920 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 20:09:51.0173 2436 LmHosts - ok 20:09:51.0189 2436 [ A2AE666CEE860BABE7FA6F1662B71737 ] MASPINT C:\WINDOWS\system32\drivers\MASPINT.sys 20:09:51.0220 2436 MASPINT ( UnsignedFile.Multi.Generic ) - warning 20:09:51.0220 2436 MASPINT - detected UnsignedFile.Multi.Generic (1) 20:09:51.0267 2436 [ 52404CC76E9D53843BDF97564BB16BED ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe 20:09:51.0298 2436 McrdSvc - ok 20:09:51.0360 2436 [ B7550A7107281D170CE85524B1488C98 ] Messenger C:\WINDOWS\System32\msgsvc.dll 20:09:51.0485 2436 Messenger - ok 20:09:51.0501 2436 [ DED60230E3019C508769EC3C15BCDA44 ] MHN C:\WINDOWS\System32\mhn.dll 20:09:51.0517 2436 MHN ( UnsignedFile.Multi.Generic ) - warning 20:09:51.0517 2436 MHN - detected UnsignedFile.Multi.Generic (1) 20:09:51.0517 2436 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys 20:09:51.0548 2436 MHNDRV ( UnsignedFile.Multi.Generic ) - warning 20:09:51.0548 2436 MHNDRV - detected UnsignedFile.Multi.Generic (1) 20:09:51.0595 2436 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 20:09:51.0798 2436 mnmdd - ok 20:09:51.0829 2436 [ C2F1D365FD96791B037EE504868065D3 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 20:09:51.0985 2436 mnmsrvc - ok 20:09:52.0001 2436 [ 6FB74EBD4EC57A6F1781DE3852CC3362 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 20:09:52.0142 2436 Modem - ok 20:09:52.0173 2436 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys 20:09:52.0376 2436 MODEMCSA - ok 20:09:52.0407 2436 [ B24CE8005DEAB254C0251E15CB71D802 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 20:09:52.0548 2436 Mouclass - ok 20:09:52.0564 2436 [ 66A6F73C74E1791464160A7065CE711A ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 20:09:52.0767 2436 mouhid - ok 20:09:52.0782 2436 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 20:09:52.0907 2436 MountMgr - ok 20:09:52.0923 2436 mraid35x - ok 20:09:52.0954 2436 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 20:09:53.0110 2436 MRxDAV - ok 20:09:53.0157 2436 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 20:09:53.0235 2436 MRxSmb - ok 20:09:53.0282 2436 [ 35A031AF38C55F92D28AA03EE9F12CC9 ] MSDTC C:\WINDOWS\system32\msdtc.exe 20:09:53.0423 2436 MSDTC - ok 20:09:53.0454 2436 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 20:09:53.0610 2436 Msfs - ok 20:09:53.0610 2436 MSIServer - ok 20:09:53.0642 2436 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 20:09:53.0767 2436 MSKSSRV - ok 20:09:53.0782 2436 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 20:09:53.0923 2436 MSPCLOCK - ok 20:09:53.0954 2436 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 20:09:54.0095 2436 MSPQM - ok 20:09:54.0110 2436 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 20:09:54.0235 2436 mssmbios - ok 20:09:54.0267 2436 [ D48659BB24C48345D926ECB45C1EBDF5 ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys 20:09:54.0329 2436 MTsensor - ok 20:09:54.0360 2436 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 20:09:54.0407 2436 Mup - ok 20:09:54.0454 2436 [ 46BB15AE2AC7D025D6D2567B876817BD ] napagent C:\WINDOWS\System32\qagentrt.dll 20:09:54.0626 2436 napagent - ok 20:09:54.0720 2436 [ 552FC8FD7EE6BC0F85DB78B52A15D9F2 ] NBService C:\Programme\Nero\Nero 7\Nero BackItUp\NBService.exe 20:09:54.0735 2436 NBService ( UnsignedFile.Multi.Generic ) - warning 20:09:54.0735 2436 NBService - detected UnsignedFile.Multi.Generic (1) 20:09:54.0767 2436 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 20:09:54.0923 2436 NDIS - ok 20:09:54.0954 2436 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 20:09:55.0001 2436 NdisTapi - ok 20:09:55.0032 2436 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 20:09:55.0189 2436 Ndisuio - ok 20:09:55.0220 2436 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 20:09:55.0376 2436 NdisWan - ok 20:09:55.0407 2436 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 20:09:55.0501 2436 NDProxy - ok 20:09:55.0501 2436 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 20:09:55.0657 2436 NetBIOS - ok 20:09:55.0673 2436 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 20:09:55.0814 2436 NetBT - ok 20:09:55.0860 2436 [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDE C:\WINDOWS\system32\netdde.exe 20:09:56.0001 2436 NetDDE - ok 20:09:56.0032 2436 [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 20:09:56.0157 2436 NetDDEdsdm - ok 20:09:56.0189 2436 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] Netlogon C:\WINDOWS\system32\lsass.exe 20:09:56.0329 2436 Netlogon - ok 20:09:56.0376 2436 [ E6D88F1F6745BF00B57E7855A2AB696C ] Netman C:\WINDOWS\System32\netman.dll 20:09:56.0517 2436 Netman - ok 20:09:56.0564 2436 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 20:09:56.0579 2436 NetTcpPortSharing - ok 20:09:56.0610 2436 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys 20:09:56.0767 2436 NIC1394 - ok 20:09:56.0798 2436 [ F1B67B6B0751AE0E6E964B02821206A3 ] Nla C:\WINDOWS\System32\mswsock.dll 20:09:56.0845 2436 Nla - ok 20:09:56.0860 2436 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 20:09:57.0001 2436 Npfs - ok 20:09:57.0048 2436 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 20:09:57.0235 2436 Ntfs - ok 20:09:57.0235 2436 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 20:09:57.0376 2436 NtLmSsp - ok 20:09:57.0423 2436 [ 56AF4064996FA5BAC9C449B1514B4770 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 20:09:57.0579 2436 NtmsSvc - ok 20:09:57.0595 2436 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 20:09:57.0782 2436 Null - ok 20:09:58.0157 2436 [ 7C56F3FD65B2BDB315CA3605A5392D7B ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 20:09:59.0017 2436 nv - ok 20:09:59.0032 2436 [ C03E15101F6D9E82CD9B0E7D715F5DE3 ] nvata C:\WINDOWS\system32\DRIVERS\nvata.sys 20:09:59.0126 2436 nvata - ok 20:09:59.0173 2436 [ 22EEDB34C4D7613A25B10C347C6C4C21 ] NVENETFD C:\WINDOWS\system32\DRIVERS\NVENETFD.sys 20:09:59.0220 2436 NVENETFD - ok 20:09:59.0267 2436 [ 5E3F6AD5CAD0F12D3CCCD06FD964087A ] nvnetbus C:\WINDOWS\system32\DRIVERS\nvnetbus.sys 20:09:59.0298 2436 nvnetbus - ok 20:09:59.0329 2436 [ 60D62603950220B51DF57E461A601659 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 20:09:59.0392 2436 NVSvc - ok 20:09:59.0407 2436 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 20:09:59.0610 2436 NwlnkFlt - ok 20:09:59.0626 2436 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 20:09:59.0829 2436 NwlnkFwd - ok 20:09:59.0845 2436 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys 20:10:00.0001 2436 ohci1394 - ok 20:10:00.0017 2436 [ F84785660305B9B903FB3BCA8BA29837 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 20:10:00.0157 2436 Parport - ok 20:10:00.0173 2436 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 20:10:00.0314 2436 PartMgr - ok 20:10:00.0345 2436 [ C2BF987829099A3EAA2CA6A0A90ECB4F ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 20:10:00.0548 2436 ParVdm - ok 20:10:00.0548 2436 [ 387E8DEDC343AA2D1EFBC30580273ACD ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 20:10:00.0704 2436 PCI - ok 20:10:00.0720 2436 PCIDump - ok 20:10:00.0735 2436 [ 59BA86D9A61CBCF4DF8E598C331F5B82 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 20:10:00.0907 2436 PCIIde - ok 20:10:00.0939 2436 [ A2A966B77D61847D61A3051DF87C8C97 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 20:10:01.0079 2436 Pcmcia - ok 20:10:01.0095 2436 PDCOMP - ok 20:10:01.0110 2436 PDFRAME - ok 20:10:01.0126 2436 PDRELI - ok 20:10:01.0126 2436 PDRFRAME - ok 20:10:01.0142 2436 perc2 - ok 20:10:01.0157 2436 perc2hib - ok 20:10:01.0204 2436 [ A3EDBE9053889FB24AB22492472B39DC ] PlugPlay C:\WINDOWS\system32\services.exe 20:10:01.0235 2436 PlugPlay - ok 20:10:01.0267 2436 [ 45E333C6B7197ED61C70736472F3703B ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe 20:10:01.0282 2436 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning 20:10:01.0282 2436 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1) 20:10:01.0298 2436 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 20:10:01.0423 2436 PolicyAgent - ok 20:10:01.0454 2436 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 20:10:01.0595 2436 PptpMiniport - ok 20:10:01.0626 2436 [ 2CB55427C58679F49AD600FCCBA76360 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys 20:10:01.0751 2436 Processor - ok 20:10:01.0767 2436 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 20:10:01.0892 2436 ProtectedStorage - ok 20:10:01.0907 2436 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 20:10:02.0048 2436 PSched - ok 20:10:02.0079 2436 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 20:10:02.0267 2436 Ptilink - ok 20:10:02.0282 2436 [ 86724469CD077901706854974CD13C3E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 20:10:02.0314 2436 PxHelp20 ( UnsignedFile.Multi.Generic ) - warning 20:10:02.0314 2436 PxHelp20 - detected UnsignedFile.Multi.Generic (1) 20:10:02.0329 2436 ql1080 - ok 20:10:02.0329 2436 Ql10wnt - ok 20:10:02.0345 2436 ql12160 - ok 20:10:02.0360 2436 ql1240 - ok 20:10:02.0376 2436 ql1280 - ok 20:10:02.0454 2436 [ D319343661F7FEBFB6F43C453C26E779 ] RalinkRegistryWriter C:\Programme\Hama\Common\RaRegistry.exe 20:10:02.0470 2436 RalinkRegistryWriter - ok 20:10:02.0501 2436 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 20:10:02.0720 2436 RasAcd - ok 20:10:02.0751 2436 [ F5BA6CACCDB66C8F048E867563203246 ] RasAuto C:\WINDOWS\System32\rasauto.dll 20:10:02.0923 2436 RasAuto - ok 20:10:02.0923 2436 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 20:10:03.0064 2436 Rasl2tp - ok 20:10:03.0095 2436 [ F9A7B66EA345726EDB5862A46B1ECCD5 ] RasMan C:\WINDOWS\System32\rasmans.dll 20:10:03.0251 2436 RasMan - ok 20:10:03.0282 2436 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 20:10:03.0407 2436 RasPppoe - ok 20:10:03.0439 2436 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 20:10:03.0626 2436 Raspti - ok 20:10:03.0657 2436 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 20:10:03.0782 2436 Rdbss - ok 20:10:03.0814 2436 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 20:10:04.0001 2436 RDPCDD - ok 20:10:04.0048 2436 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 20:10:04.0189 2436 rdpdr - ok 20:10:04.0251 2436 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 20:10:04.0345 2436 RDPWD - ok 20:10:04.0376 2436 [ 263AF18AF0F3DB99F574C95F284CCEC9 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 20:10:04.0517 2436 RDSessMgr - ok 20:10:04.0564 2436 [ ED761D453856F795A7FE056E42C36365 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 20:10:04.0689 2436 redbook - ok 20:10:04.0735 2436 [ 0E97EC96D6942CEEC2D188CC2EB69A01 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 20:10:04.0876 2436 RemoteAccess - ok 20:10:04.0907 2436 [ E4CD1F3D84E1C2CA0B8CF7501E201593 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 20:10:05.0064 2436 RemoteRegistry - ok 20:10:05.0142 2436 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Programme\CyberLink\Shared Files\RichVideo.exe 20:10:05.0142 2436 RichVideo ( UnsignedFile.Multi.Generic ) - warning 20:10:05.0142 2436 RichVideo - detected UnsignedFile.Multi.Generic (1) 20:10:05.0173 2436 [ 2A02E21867497DF20B8FC95631395169 ] RpcLocator C:\WINDOWS\system32\locator.exe 20:10:05.0329 2436 RpcLocator - ok 20:10:05.0360 2436 [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] RpcSs C:\WINDOWS\system32\rpcss.dll 20:10:05.0407 2436 RpcSs - ok 20:10:05.0470 2436 [ 4BDD71B4B521521499DFD14735C4F398 ] RSVP C:\WINDOWS\system32\rsvp.exe 20:10:05.0673 2436 RSVP - ok 20:10:05.0735 2436 [ 24A0D16D170194B5812EA08542EBDB62 ] rt2870 C:\WINDOWS\system32\DRIVERS\rt2870.sys 20:10:05.0798 2436 rt2870 - ok 20:10:05.0814 2436 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] SamSs C:\WINDOWS\system32\lsass.exe 20:10:05.0939 2436 SamSs - ok 20:10:05.0954 2436 [ DCEC079FAD95D36C8DD5CB6D779DFE32 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 20:10:06.0110 2436 SCardSvr - ok 20:10:06.0157 2436 [ A050194A44D7FA8D7186ED2F4E8367AE ] Schedule C:\WINDOWS\system32\schedsvc.dll 20:10:06.0314 2436 Schedule - ok 20:10:06.0345 2436 [ F34C06D1C706A6D9433570B087A18B02 ] Scutum50 C:\WINDOWS\system32\Drivers\Scutum50.sys 20:10:06.0360 2436 Scutum50 ( UnsignedFile.Multi.Generic ) - warning 20:10:06.0360 2436 Scutum50 - detected UnsignedFile.Multi.Generic (1) 20:10:06.0407 2436 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 20:10:06.0532 2436 Secdrv - ok 20:10:06.0548 2436 [ BEE4CFD1D48C23B44CF4B974B0B79B2B ] seclogon C:\WINDOWS\System32\seclogon.dll 20:10:06.0704 2436 seclogon - ok 20:10:06.0751 2436 [ ECA77BEEB2BE8D573CF1B265E44FBFBD ] SenFiltService C:\WINDOWS\system32\drivers\Senfilt.sys 20:10:06.0798 2436 SenFiltService - ok 20:10:06.0829 2436 [ 2AAC9B6ED9EDDFFB721D6452E34D67E3 ] SENS C:\WINDOWS\system32\sens.dll 20:10:06.0970 2436 SENS - ok 20:10:07.0017 2436 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 20:10:07.0157 2436 serenum - ok 20:10:07.0189 2436 [ CF24EB4F0412C82BCD1F4F35A025E31D ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 20:10:07.0345 2436 Serial - ok 20:10:07.0392 2436 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\DRIVERS\sfloppy.sys 20:10:07.0532 2436 Sfloppy - ok 20:10:07.0579 2436 [ CAD058D5F8B889A87CA3EB3CF624DCEF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 20:10:07.0767 2436 SharedAccess - ok 20:10:07.0798 2436 [ 2DB7D303C36DDD055215052F118E8E75 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 20:10:07.0814 2436 ShellHWDetection - ok 20:10:07.0829 2436 Simbad - ok 20:10:07.0876 2436 [ 7C15061CD0372487903B07B9BB03AFAD ] SkypeUpdate C:\Programme\Skype\Updater\Updater.exe 20:10:07.0907 2436 SkypeUpdate - ok 20:10:07.0939 2436 [ 00DA4D8AEB9B0CCACA4EB2F62351D75B ] smserial C:\WINDOWS\system32\DRIVERS\smserial.sys 20:10:08.0048 2436 smserial - ok 20:10:08.0064 2436 Sparrow - ok 20:10:08.0095 2436 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 20:10:08.0235 2436 splitter - ok 20:10:08.0267 2436 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 20:10:08.0329 2436 Spooler - ok 20:10:08.0360 2436 [ 50FA898F8C032796D3B1B9951BB5A90F ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 20:10:08.0517 2436 sr - ok 20:10:08.0548 2436 [ FE77A85495065F3AD59C5C65B6C54182 ] srservice C:\WINDOWS\system32\srsvc.dll 20:10:08.0704 2436 srservice - ok 20:10:08.0751 2436 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 20:10:08.0814 2436 Srv - ok 20:10:08.0876 2436 [ 4DF5B05DFAEC29E13E1ED6F6EE12C500 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 20:10:09.0017 2436 SSDPSRV - ok 20:10:09.0048 2436 [ BC2C5985611C5356B24AEB370953DED9 ] stisvc C:\WINDOWS\system32\wiaservc.dll 20:10:09.0220 2436 stisvc - ok 20:10:09.0251 2436 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 20:10:09.0407 2436 swenum - ok 20:10:09.0439 2436 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 20:10:09.0579 2436 swmidi - ok 20:10:09.0595 2436 SwPrv - ok 20:10:09.0610 2436 symc810 - ok 20:10:09.0626 2436 symc8xx - ok 20:10:09.0626 2436 sym_hi - ok 20:10:09.0642 2436 sym_u3 - ok 20:10:09.0673 2436 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 20:10:09.0814 2436 sysaudio - ok 20:10:09.0845 2436 [ 2903FFFA2523926D6219428040DCE6B9 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 20:10:10.0017 2436 SysmonLog - ok 20:10:10.0048 2436 [ 05903CAC4B98908D55EA5774775B382E ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 20:10:10.0204 2436 TapiSrv - ok 20:10:10.0251 2436 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 20:10:10.0298 2436 Tcpip - ok 20:10:10.0314 2436 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 20:10:10.0470 2436 TDPIPE - ok 20:10:10.0485 2436 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 20:10:10.0610 2436 TDTCP - ok 20:10:10.0642 2436 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 20:10:10.0767 2436 TermDD - ok 20:10:10.0814 2436 [ B7DE02C863D8F5A005A7BF375375A6A4 ] TermService C:\WINDOWS\System32\termsrv.dll 20:10:10.0970 2436 TermService - ok 20:10:10.0985 2436 [ 2DB7D303C36DDD055215052F118E8E75 ] Themes C:\WINDOWS\System32\shsvcs.dll 20:10:11.0017 2436 Themes - ok 20:10:11.0048 2436 [ 03681A1CE77F51586903869A5AB1DEAB ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 20:10:11.0204 2436 TlntSvr - ok 20:10:11.0204 2436 TosIde - ok 20:10:11.0251 2436 [ 626504572B175867F30F3215C04B3E2F ] TrkWks C:\WINDOWS\system32\trkwks.dll 20:10:11.0392 2436 TrkWks - ok 20:10:11.0423 2436 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 20:10:11.0548 2436 Udfs - ok 20:10:11.0564 2436 ultra - ok 20:10:11.0595 2436 [ 9651E5D850B6F6BD7C77C70AA06F02BF ] UMWdf C:\WINDOWS\system32\wdfmgr.exe 20:10:11.0767 2436 UMWdf - ok 20:10:11.0814 2436 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 20:10:11.0970 2436 Update - ok 20:10:12.0017 2436 [ 1DFD8975D8C89214B98D9387C1125B49 ] upnphost C:\WINDOWS\System32\upnphost.dll 20:10:12.0173 2436 upnphost - ok 20:10:12.0189 2436 [ 9B11E6118958E63E1FEF129466E2BDA7 ] UPS C:\WINDOWS\System32\ups.exe 20:10:12.0314 2436 UPS - ok 20:10:12.0360 2436 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 20:10:12.0501 2436 usbccgp - ok 20:10:12.0548 2436 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 20:10:12.0689 2436 usbehci - ok 20:10:12.0704 2436 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 20:10:12.0860 2436 usbhub - ok 20:10:12.0892 2436 [ 0DAECCE65366EA32B162F85F07C6753B ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys 20:10:13.0032 2436 usbohci - ok 20:10:13.0064 2436 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 20:10:13.0189 2436 usbprint - ok 20:10:13.0220 2436 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 20:10:13.0360 2436 usbscan - ok 20:10:13.0376 2436 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 20:10:13.0501 2436 USBSTOR - ok 20:10:13.0517 2436 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 20:10:13.0657 2436 VgaSave - ok 20:10:13.0673 2436 ViaIde - ok 20:10:13.0704 2436 [ A5A712F4E880874A477AF790B5186E1D ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 20:10:13.0829 2436 VolSnap - ok 20:10:13.0876 2436 [ 68F106273BE29E7B7EF8266977268E78 ] VSS C:\WINDOWS\System32\vssvc.exe 20:10:14.0017 2436 VSS - ok 20:10:14.0032 2436 [ 7B353059E665F8B7AD2BBEAEF597CF45 ] W32Time C:\WINDOWS\system32\w32time.dll 20:10:14.0204 2436 W32Time - ok 20:10:14.0235 2436 [ 5E8B60606FC4173B69CDECD964F22D28 ] w810bus C:\WINDOWS\system32\DRIVERS\w810bus.sys 20:10:14.0329 2436 w810bus - ok 20:10:14.0345 2436 [ C0CC4F5A3C58B4C07EC4A82A5AE24714 ] w810mdfl C:\WINDOWS\system32\DRIVERS\w810mdfl.sys 20:10:14.0548 2436 w810mdfl - ok 20:10:14.0579 2436 [ 2AAFEEDC3BFE14419CBCE7CEEA59DD05 ] w810mdm C:\WINDOWS\system32\DRIVERS\w810mdm.sys 20:10:14.0610 2436 w810mdm - ok 20:10:14.0642 2436 [ B0037DB3F890D0FFCF7E35F356A435EC ] w810mgmt C:\WINDOWS\system32\DRIVERS\w810mgmt.sys 20:10:14.0673 2436 w810mgmt - ok 20:10:14.0704 2436 [ BF609636068F17246F94B490C5812483 ] w810obex C:\WINDOWS\system32\DRIVERS\w810obex.sys 20:10:14.0735 2436 w810obex - ok 20:10:14.0767 2436 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 20:10:14.0907 2436 Wanarp - ok 20:10:14.0923 2436 wanatw - ok 20:10:14.0923 2436 WDICA - ok 20:10:14.0954 2436 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 20:10:15.0110 2436 wdmaud - ok 20:10:15.0126 2436 [ 81727C9873E3905A2FFC1EBD07265002 ] WebClient C:\WINDOWS\System32\webclnt.dll 20:10:15.0282 2436 WebClient - ok 20:10:15.0329 2436 winmgmt - ok 20:10:15.0407 2436 [ 20263DAFD033D30F151BB87568386769 ] WmcCds c:\programme\windows media connect\mswmccds.exe 20:10:15.0470 2436 WmcCds ( UnsignedFile.Multi.Generic ) - warning 20:10:15.0470 2436 WmcCds - detected UnsignedFile.Multi.Generic (1) 20:10:15.0485 2436 [ 1DD015A69235DCFAE18B5F98FB50BE23 ] WmcCdsLs C:\Programme\Windows Media Connect\mswmcls.exe 20:10:15.0485 2436 WmcCdsLs ( UnsignedFile.Multi.Generic ) - warning 20:10:15.0485 2436 WmcCdsLs - detected UnsignedFile.Multi.Generic (1) 20:10:15.0548 2436 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 20:10:15.0579 2436 WmdmPmSN - ok 20:10:15.0626 2436 [ FFA4D901D46D07A5BAB2D8307FBB51A6 ] Wmi C:\WINDOWS\System32\advapi32.dll 20:10:15.0704 2436 Wmi - ok 20:10:15.0767 2436 [ 93908111BA57A6E60EC2FA2DE202105C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 20:10:15.0892 2436 WmiApSrv - ok 20:10:15.0939 2436 [ 300B3E84FAF1A5C1F791C159BA28035D ] wscsvc C:\WINDOWS\system32\wscsvc.dll 20:10:16.0079 2436 wscsvc - ok 20:10:16.0110 2436 [ 7B4FE05202AA6BF9F4DFD0E6A0D8A085 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 20:10:16.0267 2436 wuauserv - ok 20:10:16.0314 2436 [ C4F109C005F6725162D2D12CA751E4A7 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 20:10:16.0501 2436 WZCSVC - ok 20:10:16.0532 2436 [ 0ADA34871A2E1CD2CAAFED1237A47750 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 20:10:16.0704 2436 xmlprov - ok 20:10:16.0751 2436 ================ Scan global =============================== 20:10:16.0782 2436 [ 2C60091CA5F67C3032EAB3B30390C27F ] C:\WINDOWS\system32\basesrv.dll 20:10:16.0814 2436 [ E62178BC21EAC63A3B9A2DBD46C1B505 ] C:\WINDOWS\system32\winsrv.dll 20:10:16.0829 2436 [ E62178BC21EAC63A3B9A2DBD46C1B505 ] C:\WINDOWS\system32\winsrv.dll 20:10:16.0860 2436 [ A3EDBE9053889FB24AB22492472B39DC ] C:\WINDOWS\system32\services.exe 20:10:16.0860 2436 [Global] - ok 20:10:16.0860 2436 ================ Scan MBR ================================== 20:10:16.0876 2436 [ 6AF1BF80D2579C5525E77E45872F026B ] \Device\Harddisk0\DR0 20:10:17.0017 2436 \Device\Harddisk0\DR0 - ok 20:10:17.0032 2436 ================ Scan VBR ================================== 20:10:17.0032 2436 [ BF8C15C7A2587AB75285B36DA0160BC0 ] \Device\Harddisk0\DR0\Partition1 20:10:17.0032 2436 \Device\Harddisk0\DR0\Partition1 - ok 20:10:17.0032 2436 ============================================================ 20:10:17.0032 2436 Scan finished 20:10:17.0032 2436 ============================================================ 20:10:17.0157 0840 Detected object count: 15 20:10:17.0157 0840 Actual detected object count: 15 20:10:55.0735 0840 Adobe LM Service ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0735 0840 Adobe LM Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0751 0840 Adobe Version Cue CS2 ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0751 0840 Adobe Version Cue CS2 ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0767 0840 AmdK8 ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0767 0840 AmdK8 ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0767 0840 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0767 0840 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0767 0840 ColorZillaStatsUpdater ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0782 0840 ColorZillaStatsUpdater ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0782 0840 MASPINT ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0782 0840 MASPINT ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0782 0840 MHN ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0782 0840 MHN ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0798 0840 MHNDRV ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0798 0840 MHNDRV ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0798 0840 NBService ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0798 0840 NBService ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0814 0840 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0814 0840 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0814 0840 PxHelp20 ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0814 0840 PxHelp20 ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0829 0840 RichVideo ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0829 0840 RichVideo ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0829 0840 Scutum50 ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0829 0840 Scutum50 ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0845 0840 WmcCds ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0845 0840 WmcCds ( UnsignedFile.Multi.Generic ) - User select action: Skip 20:10:55.0845 0840 WmcCdsLs ( UnsignedFile.Multi.Generic ) - skipped by user 20:10:55.0845 0840 WmcCdsLs ( UnsignedFile.Multi.Generic ) - User select action: Skip |
Hi, Scan mit Combofix
|
hab combofix gestartet..dann kam die Meldung dass ich die Microsoft-Wiederherstellungskonsole nicht installiert hätte und diese via Internet gesucht werden kann..hab ich bejaht..dann wurde ich gefragt ob ich eine Windows XP HOME EDITION habe (keine Ahnung..danach hätte ich Lizenzvereinbarung zustimmen müssen..(stand dauernd was von BS ist..war ich mir nicht sicher und hab abgebrochen)..kann ich da ruhig zustimmen? Lg Marc |
ja, den Anweisungen folgen |
hab ich mir schon gedacht und zugestimmt...versuche gerade zum 3. Mal Combofix zum Ende zu bringen..das blaue Eingabefeld mit der Erklärung "Dies dauert normalerweise nicht länger als 10 Minuten. Die Scanzeit für stark infizierte Rechner kann sich leicht verdoppeln" bleibt ...auch nachdem ich beim 2. Versuch 30 min gewartet hab..Cursor darunter blinkt zwar, aber weiss nicht ob da wirklich was passiert oder er hängen bleibt..hab nach dem 2. Mal einen Neustart gemacht und nun läuft Combofix seit ca.7 min wieder an der gleichen Stelle.. Lg Marc |
Alle Zeitangaben in WEZ +1. Es ist jetzt 08:32 Uhr. |
Copyright ©2000-2025, Trojaner-Board