![]() |
TROJANER? Firefox stürzt ständig ab, Pop-ups trotz Adblock Plus Hallo, bin völliger Anfänger, was die Bekämpfung von Viren, Trojs etc angeht. Jetzt spinnt firefox, glaub, ich hab Besuch. Könnte mir da jemand hier vielleicht weiterhelfen? Wie gesagt, ich hab null Ahnung. Hab jetzt hijackthis drüberlaufen lassen, hier der logfile. Spybot läuft auch nochmal, hat beim ersten Mal aber nix gefunden... Ich bin sehr dankbar für Unterstützung! Grüße an die Profis, Salenn Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:36:14, on 20.09.2012 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programme\Intel\Wireless\Bin\EvtEng.exe C:\Programme\Intel\Wireless\Bin\S24EvMon.exe C:\Programme\Sygate\SPF\smc.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\Avira\AntiVir Desktop\sched.exe C:\Programme\Avira\AntiVir Desktop\avguard.exe C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe C:\WINDOWS\system32\nvsvc32.exe C:\Programme\Intel\Wireless\Bin\RegSrvc.exe C:\Programme\Avira\AntiVir Desktop\avshadow.exe C:\WINDOWS\system32\svchost.exe C:\Programme\Sony\VAIO Event Service\VESMgr.exe C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\Explorer.EXE C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe C:\Programme\Apoint\Apoint.exe C:\Programme\Avira\AntiVir Desktop\avgnt.exe C:\WINDOWS\system32\wuauclt.exe C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Programme\Apoint\Apntex.exe C:\Programme\Spybot - Search & Destroy\TeaTimer.exe C:\Programme\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Programme\McAfee Security Scan\3.0.207\SSScheduler.exe C:\Dokumente und Einstellungen\sabina\Anwendungsdaten\Dropbox\bin\Dropbox.exe C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe C:\PROGRA~1\MICROS~2\OFFICE11\OUTLOOK.EXE C:\Programme\Microsoft Office\OFFICE11\WINWORD.EXE C:\Programme\Gemeinsame Dateien\Java\Java Update\jucheck.exe C:\Programme\Spybot - Search & Destroy\SpybotSD.exe C:\Programme\Mozilla Firefox\firefox.exe C:\Programme\Mozilla Firefox\plugin-container.exe C:\Programme\Mozilla Firefox\plugin-container.exe C:\Dokumente und Einstellungen\sabina\Desktop\HiJackThis204.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.club-vaio.com/de/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll O2 - BHO: GoogleAFE - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\PROGRA~1\GOOGLE~1\GoogleAFE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [IntelWireless] "C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui O4 - HKLM\..\Run: [Apoint] C:\Programme\Apoint\Apoint.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avgnt] "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [APSDaemon] "C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\QTTask.exe" -atboottime O4 - HKCU\..\Run: [swg] "C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TrayBackup] "C:\Programme\TrayBackup\traybackup.exe" /AUTO O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Dropbox.lnk = C:\Dokumente und Einstellungen\sabina\Anwendungsdaten\Dropbox\bin\Dropbox.exe O4 - Global Startup: Acrobat Assistant.lnk = C:\Programme\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Programme\McAfee Security Scan\3.0.207\SSScheduler.exe O8 - Extra context menu item: &Suche im Duden - res://C:\Programme\Duden-Suche Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe (file missing) O14 - IERESET.INF: START_PAGE_URL=hxxp://www.club-vaio.com/de/ O15 - Trusted Zone: *.sony-europe.com O15 - Trusted Zone: *.sonystyle-europe.com O15 - Trusted Zone: *.vaio-link.com O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - hxxp://www3.snapfish.de/SnapfishActivia.cab O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1188477133421 O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Avira AntiVir Planer (AntiVirSchedulerService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Programme\Avira\AntiVir Desktop\avguard.exe O23 - Service: AVM FRITZ!web Routing Service (de_serv) - Unknown owner - C:\Programme\Gemeinsame Dateien\AVM\de_serv.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\EvtEng.exe O23 - Service: Google Update Service (gupdate1cae781c34ce778) (gupdate1cae781c34ce778) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe O23 - Service: Image Converter video recording monitor for VAIO Entertainment - Sony Corporation - C:\Programme\Sony\Image Converter 2\IcVzMon.exe O23 - Service: iPod Service - Apple Inc. - C:\Programme\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Programme\McAfee Security Scan\3.0.207\McCHSvc.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: MSCSPTISRV - Unknown owner - C:\Programme\Gemeinsame Dateien\Sony Shared\Avlib\MSCSPTISRV.exe (file missing) O23 - Service: Microsoft .NET Framework v1.1.4322 Update (NetFxUpdate_v1.1.4322) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe (file missing) O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PACSPTISVR - Unknown owner - C:\Programme\Gemeinsame Dateien\Sony Shared\Avlib\PACSPTISVR.exe (file missing) O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\RegSrvc.exe O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Programme\Intel\Wireless\Bin\S24EvMon.exe O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Programme\Sygate\SPF\smc.exe O23 - Service: Sony SPTI Service (SPTISRV) - Unknown owner - C:\Programme\Gemeinsame Dateien\Sony Shared\Avlib\SPTISRV.exe (file missing) O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\Avlib\SSScsiSV.exe O23 - Service: TuneUp Drive Defrag-Dienst (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe O23 - Service: VAIO Event Service - Sony Corporation - C:\Programme\Sony\VAIO Event Service\VESMgr.exe O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Programme\Sony\VAIO Media Integrated Server\VMISrv.exe O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Programme\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Programme\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Programme\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Programme\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe -- End of file - 11990 bytes |
hi nächstes mal, bitte einfach mal die foren regeln lesen, hjt logs wollen wir schon eine lange zeit nicht mehr sehen Falls noch nicht vorhanden, lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
Code: activex
|
OTL Logfile: Code: OTL logfile created on: 20.09.2012 13:19:41 - Run 1 EXTRA TEXT OTL EXTRAS Logfile: Code: OTL Extras logfile created on: 20.09.2012 13:19:41 - Run 1 |
hi warum hat dein pc noch nie updates bekommen? servicepack 2, internet explorer 6 etc. aktuell ist seit jahren das servicepack 3. download tdss killer: http://www.trojaner-board.de/82358-t...entfernen.html Klicke auf Change parameters • Setze die Haken bei Verify driver digital signatures und Detect TDLFS file system • Klick auf OK und anschließend auf Start scan - bei funden erst mal immer skip wählen, log posten |
Gute Fragen! Keine Ahnung, wie gesagt... Werde ich einleiten. Scan läuft. 1000 Dank. Hier der REPORT: 10:53:40.0765 3320 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24 10:53:42.0781 3320 ============================================================ 10:53:42.0781 3320 Current date / time: 2012/09/25 10:53:42.0781 10:53:42.0781 3320 SystemInfo: 10:53:42.0781 3320 10:53:42.0781 3320 OS Version: 5.1.2600 ServicePack: 2.0 10:53:42.0781 3320 Product type: Workstation 10:53:42.0781 3320 ComputerName: PILATUS 10:53:42.0781 3320 UserName: sabina 10:53:42.0781 3320 Windows directory: C:\WINDOWS 10:53:42.0781 3320 System windows directory: C:\WINDOWS 10:53:42.0781 3320 Processor architecture: Intel x86 10:53:42.0781 3320 Number of processors: 2 10:53:42.0781 3320 Page size: 0x1000 10:53:42.0781 3320 Boot type: Normal boot 10:53:42.0781 3320 ============================================================ 10:53:46.0187 3320 Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 10:53:46.0203 3320 Drive \Device\Harddisk3\DR12 - Size: 0x3BC000000 (14.94 Gb), SectorSize: 0x200, Cylinders: 0x79D, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:53:46.0203 3320 Drive \Device\Harddisk4\DR13 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:53:46.0531 3320 ============================================================ 10:53:46.0531 3320 \Device\Harddisk0\DR0: 10:53:46.0562 3320 MBR partitions: 10:53:46.0562 3320 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xDF8F90, BlocksNum 0x4A85300 10:53:46.0578 3320 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x587E2CF, BlocksNum 0x3C901F2 10:53:46.0578 3320 \Device\Harddisk3\DR12: 10:53:46.0578 3320 MBR partitions: 10:53:46.0578 3320 \Device\Harddisk3\DR12\Partition1: MBR, Type 0x7, StartLBA 0x8A0, BlocksNum 0x1DDF760 10:53:46.0578 3320 \Device\Harddisk4\DR13: 10:53:46.0578 3320 MBR partitions: 10:53:46.0578 3320 \Device\Harddisk4\DR13\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2542D6C1 10:53:46.0578 3320 ============================================================ 10:53:46.0625 3320 C: <-> \Device\Harddisk0\DR0\Partition1 10:53:46.0671 3320 D: <-> \Device\Harddisk0\DR0\Partition2 10:53:46.0671 3320 I: <-> \Device\Harddisk4\DR13\Partition1 10:53:46.0671 3320 ============================================================ 10:53:46.0671 3320 Initialize success 10:53:46.0671 3320 ============================================================ 10:54:23.0281 0620 ============================================================ 10:54:23.0281 0620 Scan started 10:54:23.0281 0620 Mode: Manual; SigCheck; TDLFS; 10:54:23.0281 0620 ============================================================ 10:54:25.0406 0620 ================ Scan system memory ======================== 10:54:26.0500 0620 System memory - ok 10:54:26.0500 0620 ================ Scan services ============================= 10:54:26.0578 0620 Abiosdsk - ok 10:54:26.0578 0620 abp480n5 - ok 10:54:26.0609 0620 [ 94B4741D2CF9ED38140B831293D1601A ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 10:54:28.0531 0620 ACPI - ok 10:54:28.0671 0620 [ 9E1CA3160DAFB159CA14F83B1E317F75 ] ACPIEC C:\WINDOWS\system32\DRIVERS\ACPIEC.sys 10:54:28.0937 0620 ACPIEC - ok 10:54:29.0000 0620 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 10:54:29.0093 0620 AdobeFlashPlayerUpdateSvc - ok 10:54:29.0093 0620 adpu160m - ok 10:54:29.0125 0620 [ 1EE7B434BA961EF845DE136224C30FEC ] aec C:\WINDOWS\system32\drivers\aec.sys 10:54:29.0625 0620 aec - ok 10:54:29.0656 0620 [ 91F3DF93F40A74D222CD166FE95DB633 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys 10:54:29.0718 0620 AegisP ( UnsignedFile.Multi.Generic ) - warning 10:54:29.0718 0620 AegisP - detected UnsignedFile.Multi.Generic (1) 10:54:29.0734 0620 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys 10:54:29.0953 0620 AFD - ok 10:54:29.0953 0620 Aha154x - ok 10:54:29.0953 0620 aic78u2 - ok 10:54:29.0953 0620 aic78xx - ok 10:54:29.0984 0620 [ 1AAB6C5F8376357CB9B16C38C42C4076 ] Alerter C:\WINDOWS\system32\alrsvc.dll 10:54:30.0156 0620 Alerter - ok 10:54:30.0171 0620 [ 6596DD260FFDE1BDC994C1DF236307BB ] ALG C:\WINDOWS\System32\alg.exe 10:54:30.0265 0620 ALG - ok 10:54:30.0265 0620 AliIde - ok 10:54:30.0265 0620 amsint - ok 10:54:30.0375 0620 [ C27D46B06D340293670450FCE9DFB166 ] AntiVirSchedulerService C:\Programme\Avira\AntiVir Desktop\sched.exe 10:54:30.0437 0620 AntiVirSchedulerService - ok 10:54:30.0468 0620 [ 72D90E56563165984224493069C69ED4 ] AntiVirService C:\Programme\Avira\AntiVir Desktop\avguard.exe 10:54:30.0484 0620 AntiVirService - ok 10:54:30.0500 0620 [ B21FCBC58CB13BAC70F74B5AC5DA7409 ] ApfiltrService C:\WINDOWS\system32\DRIVERS\Apfiltr.sys 10:54:30.0609 0620 ApfiltrService - ok 10:54:30.0671 0620 [ 20F6F19FE9E753F2780DC2FA083AD597 ] Apple Mobile Device C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe 10:54:30.0718 0620 Apple Mobile Device - ok 10:54:30.0718 0620 AppMgmt - ok 10:54:30.0765 0620 [ F0D692B0BFFB46E30EB3CEA168BBC49F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys 10:54:31.0015 0620 Arp1394 - ok 10:54:31.0015 0620 asc - ok 10:54:31.0015 0620 asc3350p - ok 10:54:31.0015 0620 asc3550 - ok 10:54:31.0046 0620 [ 54AB078660E536DA72B21A27F56B035B ] ASPI C:\WINDOWS\System32\DRIVERS\ASPI32.sys 10:54:31.0125 0620 ASPI ( UnsignedFile.Multi.Generic ) - warning 10:54:31.0125 0620 ASPI - detected UnsignedFile.Multi.Generic (1) 10:54:31.0218 0620 [ E1633440859F9A1B3CEAF73BA85225CA ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 10:54:31.0390 0620 aspnet_state - ok 10:54:31.0406 0620 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 10:54:31.0593 0620 AsyncMac - ok 10:54:31.0625 0620 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 10:54:31.0781 0620 atapi - ok 10:54:31.0796 0620 Atdisk - ok 10:54:31.0796 0620 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 10:54:32.0000 0620 Atmarpc - ok 10:54:32.0031 0620 [ E98B8250398F6637B335A76BA8DFB602 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 10:54:32.0218 0620 AudioSrv - ok 10:54:32.0250 0620 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 10:54:32.0421 0620 audstub - ok 10:54:32.0453 0620 [ 0B497C79824F8E1BF22FA6AACD3DE3A0 ] avgio C:\Programme\Avira\AntiVir Desktop\avgio.sys 10:54:32.0515 0620 avgio - ok 10:54:32.0546 0620 [ 1E4114685DE1FFA9675E09C6A1FB3F4B ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 10:54:32.0656 0620 avgntflt - ok 10:54:32.0671 0620 [ 0F78D3DAE6DEDD99AE54C9491C62ADF2 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 10:54:32.0734 0620 avipbb - ok 10:54:32.0765 0620 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 10:54:32.0984 0620 Beep - ok 10:54:33.0125 0620 [ 3A5E54A9AB96EF2D273B58136FB58EFE ] BITS C:\WINDOWS\system32\qmgr.dll 10:54:33.0671 0620 BITS - ok 10:54:33.0875 0620 [ F832F1505AD8B83474BD9A5B1B985E01 ] Bonjour Service C:\Programme\Bonjour\mDNSResponder.exe 10:54:34.0718 0620 Bonjour Service - ok 10:54:34.0812 0620 [ D8653DCD80CF2EBB333FC4FCC43A7DEF ] Browser C:\WINDOWS\System32\browser.dll 10:54:35.0265 0620 Browser - ok 10:54:35.0312 0620 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 10:54:35.0593 0620 cbidf2k - ok 10:54:35.0656 0620 [ 6163ED60B684BAB19D3352AB22FC48B2 ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 10:54:37.0312 0620 CCDECODE - ok 10:54:37.0312 0620 cd20xrnt - ok 10:54:37.0343 0620 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 10:54:37.0515 0620 Cdaudio - ok 10:54:37.0546 0620 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 10:54:37.0718 0620 Cdfs - ok 10:54:37.0750 0620 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 10:54:37.0937 0620 Cdrom - ok 10:54:37.0953 0620 Changer - ok 10:54:37.0968 0620 [ 234D52C63C67A8CF4AF9BECCE43BFB4A ] CiSvc C:\WINDOWS\system32\cisvc.exe 10:54:38.0171 0620 CiSvc - ok 10:54:38.0203 0620 [ 0461868578D29DC18FB1C79933C5158A ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 10:54:38.0406 0620 ClipSrv - ok 10:54:38.0437 0620 [ 3D560AF01BDC50B4A1E1BFB5CDC06D63 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 10:54:38.0578 0620 clr_optimization_v2.0.50727_32 - ok 10:54:38.0609 0620 [ 4266BE808F85826AEDF3C64C1E240203 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys 10:54:38.0781 0620 CmBatt - ok 10:54:38.0781 0620 CmdIde - ok 10:54:38.0796 0620 [ DF1B1A24BF52D0EBC01ED4ECE8979F50 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys 10:54:38.0984 0620 Compbatt - ok 10:54:39.0000 0620 COMSysApp - ok 10:54:39.0000 0620 Cpqarray - ok 10:54:39.0031 0620 [ 1A5F9DB98DF7955B4C7CBDBF2C638238 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 10:54:39.0250 0620 CryptSvc - ok 10:54:39.0250 0620 dac2w2k - ok 10:54:39.0250 0620 dac960nt - ok 10:54:39.0296 0620 [ 891E3E4537C6DFCAE475073FC49CE9CB ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 10:54:39.0703 0620 DcomLaunch - ok 10:54:39.0703 0620 de_serv - ok 10:54:39.0734 0620 [ 7C4D218F9017725589ADACAB82BEB0F8 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 10:54:40.0125 0620 Dhcp - ok 10:54:40.0171 0620 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 10:54:40.0328 0620 Disk - ok 10:54:40.0328 0620 dmadmin - ok 10:54:40.0375 0620 [ 5789B83BA87FC84C3568CF86CACEF8CE ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 10:54:40.0578 0620 dmboot - ok 10:54:40.0609 0620 [ 526192BF7696F72E29777BF4A180513A ] DMICall C:\WINDOWS\system32\DRIVERS\DMICall.sys 10:54:40.0781 0620 DMICall - ok 10:54:40.0796 0620 [ 084EB0A50A4F7B4705C8A57F234E5291 ] dmio C:\WINDOWS\system32\drivers\dmio.sys 10:54:40.0984 0620 dmio - ok 10:54:41.0015 0620 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 10:54:41.0187 0620 dmload - ok 10:54:41.0187 0620 [ FA2D9D1A9F6B5A88D01E1685CE2378BA ] dmserver C:\WINDOWS\System32\dmserver.dll 10:54:41.0359 0620 dmserver - ok 10:54:41.0390 0620 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 10:54:41.0578 0620 DMusic - ok 10:54:41.0609 0620 [ D20C5B5F0D8AC53FFEC17FF9B1658A6E ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 10:54:42.0046 0620 Dnscache - ok 10:54:42.0046 0620 dpti2o - ok 10:54:42.0078 0620 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 10:54:42.0234 0620 drmkaud - ok 10:54:42.0265 0620 [ 877A4512CC9074D6954776AF47021766 ] ERSvc C:\WINDOWS\System32\ersvc.dll 10:54:42.0437 0620 ERSvc - ok 10:54:42.0453 0620 [ EDB6B81761BD60F32F740BBC40AFB676 ] Eventlog C:\WINDOWS\system32\services.exe 10:54:42.0640 0620 Eventlog - ok 10:54:42.0671 0620 [ BEBC63622BDC30053A3145EBD90AF450 ] EventSystem C:\WINDOWS\system32\es.dll 10:54:43.0093 0620 EventSystem - ok 10:54:43.0171 0620 [ A346E25E3ACB4AEF81BFD49BF82112C9 ] EvtEng C:\Programme\Intel\Wireless\Bin\EvtEng.exe 10:54:43.0218 0620 EvtEng ( UnsignedFile.Multi.Generic ) - warning 10:54:43.0218 0620 EvtEng - detected UnsignedFile.Multi.Generic (1) 10:54:43.0265 0620 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 10:54:43.0437 0620 Fastfat - ok 10:54:43.0453 0620 [ 521A4CB71CC419FDF60DB83E7308AE2B ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 10:54:43.0937 0620 FastUserSwitchingCompatibility - ok 10:54:43.0968 0620 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 10:54:44.0140 0620 Fdc - ok 10:54:44.0171 0620 [ 9E9AF89F9B14AA6249065C309CE73BD8 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 10:54:44.0343 0620 Fips - ok 10:54:44.0359 0620 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 10:54:44.0546 0620 Flpydisk - ok 10:54:44.0578 0620 [ 3D234FB6D6EE875EB009864A299BEA29 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 10:54:45.0031 0620 FltMgr - ok 10:54:45.0062 0620 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 10:54:45.0234 0620 Fs_Rec - ok 10:54:45.0250 0620 [ 8F1955CE42E1484714B542F341647778 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 10:54:45.0437 0620 Ftdisk - ok 10:54:45.0468 0620 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GearAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys 10:54:45.0500 0620 GearAspiWDM - ok 10:54:45.0546 0620 [ 9599A713E1776B8F69300FC9008F33C1 ] getPlusHelper C:\Programme\NOS\bin\getPlus_Helper.dll 10:54:45.0656 0620 getPlusHelper - ok 10:54:45.0703 0620 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 10:54:45.0906 0620 Gpc - ok 10:54:45.0968 0620 [ 626A24ED1228580B9518C01930936DF9 ] gupdate1cae781c34ce778 C:\Programme\Google\Update\GoogleUpdate.exe 10:54:46.0015 0620 gupdate1cae781c34ce778 - ok 10:54:46.0015 0620 [ 626A24ED1228580B9518C01930936DF9 ] gupdatem C:\Programme\Google\Update\GoogleUpdate.exe 10:54:46.0031 0620 gupdatem - ok 10:54:46.0093 0620 [ 5467F1FF0AF264566740F67E8B810735 ] gusvc C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe 10:54:46.0156 0620 gusvc - ok 10:54:46.0187 0620 [ E31363D186B3E1D7C4E9117884A6AEE5 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 10:54:46.0265 0620 HDAudBus - ok 10:54:46.0328 0620 [ BA85BCF1A2BCF927C3600574173403E0 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 10:54:46.0531 0620 helpsvc - ok 10:54:46.0531 0620 HidServ - ok 10:54:46.0562 0620 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 10:54:46.0765 0620 HidUsb - ok 10:54:46.0765 0620 hpn - ok 10:54:46.0796 0620 [ ACC46DDA7FECE95A253AE88CEA172E12 ] HSFHWAZL C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys 10:54:46.0875 0620 HSFHWAZL - ok 10:54:46.0937 0620 [ C9F4E7DA78A02623ABF78A4A34CE79B1 ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys 10:54:47.0125 0620 HSF_DPV - ok 10:54:47.0171 0620 [ CB77BB47E67E84DEB17BA29632501730 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 10:54:47.0640 0620 HTTP - ok 10:54:47.0671 0620 [ 9EC7E866BBDBF3ECC0E67F4E0A838EB2 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 10:54:47.0859 0620 HTTPFilter - ok 10:54:47.0859 0620 i2omgmt - ok 10:54:47.0859 0620 i2omp - ok 10:54:47.0890 0620 [ 7C575018D0413440D75432A78B88C899 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 10:54:48.0078 0620 i8042prt - ok 10:54:48.0156 0620 [ BC1F1FF8D5800398937966CDB0A97FDC ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys 10:54:48.0359 0620 ialm - ok 10:54:48.0468 0620 [ A16DEDF58C40D8236578F0FBB520EA6D ] Image Converter video recording monitor for VAIO Entertainment C:\Programme\Sony\Image Converter 2\IcVzMon.exe 10:54:48.0531 0620 Image Converter video recording monitor for VAIO Entertainment ( UnsignedFile.Multi.Generic ) - warning 10:54:48.0531 0620 Image Converter video recording monitor for VAIO Entertainment - detected UnsignedFile.Multi.Generic (1) 10:54:48.0546 0620 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 10:54:48.0718 0620 Imapi - ok 10:54:48.0750 0620 [ 57D7267A9ED91ECAF4336B08C9628FCA ] ImapiService C:\WINDOWS\system32\imapi.exe 10:54:48.0937 0620 ImapiService - ok 10:54:48.0937 0620 ini910u - ok 10:54:48.0937 0620 IntelIde - ok 10:54:48.0968 0620 [ AE7511ADA0D951D50CEF95D7ECBACE99 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 10:54:49.0390 0620 intelppm - ok 10:54:49.0421 0620 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 10:54:49.0593 0620 Ip6Fw - ok 10:54:49.0625 0620 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 10:54:49.0812 0620 IpFilterDriver - ok 10:54:49.0812 0620 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 10:54:50.0031 0620 IpInIp - ok 10:54:50.0125 0620 [ E2168CBC7098FFE963C6F23F472A3593 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 10:54:50.0578 0620 IpNat - ok 10:54:50.0625 0620 [ 9033D67B7112D23EDED6789BACDED128 ] iPod Service C:\Programme\iPod\bin\iPodService.exe 10:54:50.0687 0620 iPod Service - ok 10:54:50.0734 0620 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 10:54:50.0890 0620 IPSec - ok 10:54:50.0906 0620 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 10:54:51.0015 0620 IRENUM - ok 10:54:51.0062 0620 [ CE9B7AFDF0A3D7DD8D1487262316B959 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 10:54:51.0265 0620 isapnp - ok 10:54:51.0343 0620 [ 5472D771C0197355C1D347F20392B982 ] JavaQuickStarterService C:\Programme\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe 10:54:51.0375 0620 JavaQuickStarterService - ok 10:54:51.0390 0620 [ B128FC0A5CD83F669D5DE4B58F77C7D6 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 10:54:51.0562 0620 Kbdclass - ok 10:54:51.0593 0620 [ BA5DEDA4D934E6288C2F66CAF58D2562 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 10:54:52.0031 0620 kmixer - ok 10:54:52.0062 0620 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 10:54:52.0218 0620 KSecDD - ok 10:54:52.0265 0620 [ 2865FA4ED4471929881C053A6E5A85F6 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 10:54:52.0703 0620 lanmanserver - ok 10:54:52.0734 0620 [ 65C7AC9213A805C389F09B5BAAA9A30C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 10:54:53.0156 0620 lanmanworkstation - ok 10:54:53.0156 0620 lbrtfdc - ok 10:54:53.0187 0620 [ 4C25FADD7FE1D5BD779B20D3D0EB8D7C ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 10:54:53.0359 0620 LmHosts - ok 10:54:53.0421 0620 [ 22A7776C5D8EB5930EDF9C8DD0884259 ] McComponentHostService C:\Programme\McAfee Security Scan\3.0.207\McCHSvc.exe 10:54:53.0484 0620 McComponentHostService - ok 10:54:53.0500 0620 [ E246A32C445056996074A397DA56E815 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys 10:54:53.0546 0620 mdmxsdk - ok 10:54:53.0578 0620 [ E5215AB942C5AC5F7EB0E54871D7A27C ] Messenger C:\WINDOWS\System32\msgsvc.dll 10:54:53.0765 0620 Messenger - ok 10:54:53.0796 0620 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 10:54:53.0937 0620 mnmdd - ok 10:54:53.0968 0620 [ BB2470D20405B272EA47CA5E18F1C58E ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 10:54:54.0125 0620 mnmsrvc - ok 10:54:54.0140 0620 [ 91A3DA4B12F6F1D760463A7F7857F748 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 10:54:54.0312 0620 Modem - ok 10:54:54.0328 0620 [ 71E15CA47FD947552054AFB28536268F ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 10:54:54.0500 0620 Mouclass - ok 10:54:54.0515 0620 [ 66A6F73C74E1791464160A7065CE711A ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 10:54:54.0687 0620 mouhid - ok 10:54:54.0703 0620 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 10:54:54.0890 0620 MountMgr - ok 10:54:54.0937 0620 [ CB8AF049AC9BE419A77ADAE288673359 ] MozillaMaintenance C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe 10:54:55.0000 0620 MozillaMaintenance - ok 10:54:55.0000 0620 mraid35x - ok 10:54:55.0062 0620 [ 29414447EB5BDE2F8397DC965DBB3156 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 10:54:55.0484 0620 MRxDAV - ok 10:54:55.0546 0620 [ 025AF03CE51645C62F3B6907A7E2BE5E ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 10:54:56.0000 0620 MRxSmb - ok 10:54:56.0046 0620 MSCSPTISRV - ok 10:54:56.0078 0620 [ D059F9C7752EF461476E83180DAA5C62 ] MSDTC C:\WINDOWS\system32\msdtc.exe 10:54:56.0234 0620 MSDTC - ok 10:54:56.0281 0620 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 10:54:56.0453 0620 Msfs - ok 10:54:56.0453 0620 MSIServer - ok 10:54:56.0484 0620 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 10:54:56.0625 0620 MSKSSRV - ok 10:54:56.0640 0620 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 10:54:56.0812 0620 MSPCLOCK - ok 10:54:56.0843 0620 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 10:54:57.0000 0620 MSPQM - ok 10:54:57.0031 0620 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 10:54:57.0203 0620 mssmbios - ok 10:54:57.0234 0620 [ BF13612142995096AB084F2DB7F40F77 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 10:54:57.0390 0620 MSTEE - ok 10:54:57.0437 0620 [ F66B6B1CDDEE6CA87CEFC016EB7A0D8E ] Mup C:\WINDOWS\system32\drivers\Mup.sys 10:54:57.0859 0620 Mup - ok 10:54:57.0890 0620 [ 5C8DC6429C43DC6177C1FA5B76290D1A ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 10:54:58.0046 0620 NABTSFEC - ok 10:54:58.0093 0620 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 10:54:58.0265 0620 NDIS - ok 10:54:58.0281 0620 [ 520CE427A8B298F54112857BCF6BDE15 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys 10:54:58.0453 0620 NdisIP - ok 10:54:58.0468 0620 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 10:54:58.0625 0620 NdisTapi - ok 10:54:58.0656 0620 [ 8D3CE6B579CDE8D37ACC690B67DC2106 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 10:54:59.0046 0620 Ndisuio - ok 10:54:59.0093 0620 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 10:54:59.0265 0620 NdisWan - ok 10:54:59.0281 0620 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 10:54:59.0453 0620 NDProxy - ok 10:54:59.0484 0620 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 10:54:59.0656 0620 NetBIOS - ok 10:54:59.0703 0620 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 10:54:59.0875 0620 NetBT - ok 10:54:59.0937 0620 [ F4EFF57254F565F39B6029150414A0D5 ] NetDDE C:\WINDOWS\system32\netdde.exe 10:55:00.0109 0620 NetDDE - ok 10:55:00.0109 0620 [ F4EFF57254F565F39B6029150414A0D5 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 10:55:00.0234 0620 NetDDEdsdm - ok 10:55:00.0265 0620 NetFxUpdate_v1.1.4322 - ok 10:55:00.0296 0620 [ 183805EB05BCA5A1E4AAAED4D2BE3690 ] Netlogon C:\WINDOWS\system32\lsass.exe 10:55:00.0421 0620 Netlogon - ok 10:55:00.0468 0620 [ 1E5218FBE323C375B488318950E10FB4 ] Netman C:\WINDOWS\System32\netman.dll 10:55:00.0875 0620 Netman - ok 10:55:00.0906 0620 [ 5C5C53DB4FEF16CF87B9911C7E8C6FBC ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys 10:55:01.0062 0620 NIC1394 - ok 10:55:01.0109 0620 [ B36E08F680BAE4DFC5C24D00A2DFC9E7 ] Nla C:\WINDOWS\System32\mswsock.dll 10:55:01.0250 0620 Nla - ok 10:55:01.0265 0620 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 10:55:01.0437 0620 Npfs - ok 10:55:01.0484 0620 [ 19A811EF5F1ED5C926A028CE107FF1AF ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 10:55:01.0968 0620 Ntfs - ok 10:55:02.0000 0620 [ 183805EB05BCA5A1E4AAAED4D2BE3690 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 10:55:02.0109 0620 NtLmSsp - ok 10:55:02.0156 0620 [ 428AA946A8D9F32DBB4260C8E6E13377 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 10:55:02.0359 0620 NtmsSvc - ok 10:55:02.0390 0620 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 10:55:02.0562 0620 Null - ok 10:55:02.0687 0620 [ E5851A969D6B63866BD2B8B2A16087AC ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 10:55:02.0953 0620 nv - ok 10:55:02.0984 0620 [ 2F1DB86B3B9158910EB7C7647EA80259 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 10:55:03.0015 0620 NVSvc - ok 10:55:03.0062 0620 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 10:55:03.0234 0620 NwlnkFlt - ok 10:55:03.0234 0620 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 10:55:03.0390 0620 NwlnkFwd - ok 10:55:03.0406 0620 [ 0951DB8E5823EA366B0E408D71E1BA2A ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys 10:55:03.0578 0620 ohci1394 - ok 10:55:03.0625 0620 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE 10:55:03.0671 0620 ose - ok 10:55:03.0671 0620 PACSPTISVR - ok 10:55:03.0687 0620 [ B2F17A2EDB5450E61973A037F63A595B ] Parport C:\WINDOWS\system32\drivers\Parport.sys 10:55:03.0875 0620 Parport - ok 10:55:03.0890 0620 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 10:55:04.0062 0620 PartMgr - ok 10:55:04.0078 0620 [ C2BF987829099A3EAA2CA6A0A90ECB4F ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 10:55:04.0250 0620 ParVdm - ok 10:55:04.0281 0620 [ 6FB463E5B243FBD6F3D3C83F914D94FB ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 10:55:04.0453 0620 PCI - ok 10:55:04.0453 0620 PCIDump - ok 10:55:04.0468 0620 [ 59BA86D9A61CBCF4DF8E598C331F5B82 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 10:55:04.0640 0620 PCIIde - ok 10:55:04.0687 0620 [ E2363F4C1DAFF89ABEE5F593E13D8A05 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys 10:55:04.0859 0620 Pcmcia - ok 10:55:04.0859 0620 PDCOMP - ok 10:55:04.0859 0620 PDFRAME - ok 10:55:04.0890 0620 [ 1BF91F352D746AD7469FA71783B5FAE8 ] PDNMp50 C:\WINDOWS\system32\drivers\PDNMp50.sys 10:55:04.0937 0620 PDNMp50 - ok 10:55:04.0937 0620 [ 1961590AA191B6B7DCF18A6A693AF7B8 ] PDNSp50 C:\WINDOWS\system32\drivers\PDNSp50.sys 10:55:04.0984 0620 PDNSp50 - ok 10:55:04.0984 0620 PDRELI - ok 10:55:04.0984 0620 PDRFRAME - ok 10:55:04.0984 0620 perc2 - ok 10:55:04.0984 0620 perc2hib - ok 10:55:05.0078 0620 [ 3BD216DE6A56190C19C951ED2E19087A ] phil2vid C:\WINDOWS\system32\DRIVERS\philcam2.sys 10:55:05.0265 0620 phil2vid - ok 10:55:05.0281 0620 [ EDB6B81761BD60F32F740BBC40AFB676 ] PlugPlay C:\WINDOWS\system32\services.exe 10:55:05.0421 0620 PlugPlay - ok 10:55:05.0437 0620 [ 183805EB05BCA5A1E4AAAED4D2BE3690 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 10:55:05.0562 0620 PolicyAgent - ok 10:55:05.0578 0620 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 10:55:05.0734 0620 PptpMiniport - ok 10:55:05.0734 0620 [ 183805EB05BCA5A1E4AAAED4D2BE3690 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 10:55:05.0859 0620 ProtectedStorage - ok 10:55:05.0890 0620 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 10:55:06.0046 0620 PSched - ok 10:55:06.0093 0620 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 10:55:06.0250 0620 Ptilink - ok 10:55:06.0281 0620 [ F91D5CBFC43E61D80C347B2EA1ECC9E7 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 10:55:06.0328 0620 PxHelp20 ( UnsignedFile.Multi.Generic ) - warning 10:55:06.0328 0620 PxHelp20 - detected UnsignedFile.Multi.Generic (1) 10:55:06.0328 0620 ql1080 - ok 10:55:06.0328 0620 Ql10wnt - ok 10:55:06.0328 0620 ql12160 - ok 10:55:06.0343 0620 ql1240 - ok 10:55:06.0343 0620 ql1280 - ok 10:55:06.0375 0620 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 10:55:06.0531 0620 RasAcd - ok 10:55:06.0562 0620 [ E3C6E87C1F84584A773D7C3DD205DBFF ] RasAuto C:\WINDOWS\System32\rasauto.dll 10:55:06.0718 0620 RasAuto - ok 10:55:06.0734 0620 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 10:55:06.0906 0620 Rasl2tp - ok 10:55:06.0937 0620 [ FFC8343B35FB2DF01A5767748EFA5B58 ] RasMan C:\WINDOWS\System32\rasmans.dll 10:55:07.0421 0620 RasMan - ok 10:55:07.0453 0620 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 10:55:07.0609 0620 RasPppoe - ok 10:55:07.0625 0620 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 10:55:07.0796 0620 Raspti - ok 10:55:07.0812 0620 [ 03B965B1CA47F6EF60EB5E51CB50E0AF ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 10:55:08.0265 0620 Rdbss - ok 10:55:08.0296 0620 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 10:55:08.0484 0620 RDPCDD - ok 10:55:08.0500 0620 [ B54CD38A9EBFBF2B3561426E3FE26F62 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 10:55:08.0953 0620 RDPWD - ok 10:55:08.0984 0620 [ AEC159942DF64A9890072D7BB1797762 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 10:55:09.0156 0620 RDSessMgr - ok 10:55:09.0171 0620 [ AA56702E230860565CB8D43680F57F33 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 10:55:09.0359 0620 redbook - ok 10:55:09.0375 0620 [ D9B85D3E8F7347166A64915AEBCF6AC5 ] RegSrvc C:\Programme\Intel\Wireless\Bin\RegSrvc.exe 10:55:09.0421 0620 RegSrvc ( UnsignedFile.Multi.Generic ) - warning 10:55:09.0421 0620 RegSrvc - detected UnsignedFile.Multi.Generic (1) 10:55:09.0453 0620 [ EBA80CDF25E02084857957E820004934 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 10:55:09.0640 0620 RemoteAccess - ok 10:55:09.0671 0620 [ DA23F9F3F1B1871120F980A6879581AC ] RpcLocator C:\WINDOWS\system32\locator.exe 10:55:09.0875 0620 RpcLocator - ok 10:55:09.0921 0620 [ 891E3E4537C6DFCAE475073FC49CE9CB ] RpcSs C:\WINDOWS\system32\rpcss.dll 10:55:10.0359 0620 RpcSs - ok 10:55:10.0390 0620 [ 4BDD71B4B521521499DFD14735C4F398 ] RSVP C:\WINDOWS\system32\rsvp.exe 10:55:10.0562 0620 RSVP - ok 10:55:10.0609 0620 [ A30C30D53671468BA727326B4FABCC46 ] S24EventMonitor C:\Programme\Intel\Wireless\Bin\S24EvMon.exe 10:55:10.0703 0620 S24EventMonitor ( UnsignedFile.Multi.Generic ) - warning 10:55:10.0703 0620 S24EventMonitor - detected UnsignedFile.Multi.Generic (1) 10:55:10.0718 0620 [ 078EBA5670FDAA041552CD86B984F2DE ] s24trans C:\WINDOWS\system32\DRIVERS\s24trans.sys 10:55:10.0750 0620 s24trans ( UnsignedFile.Multi.Generic ) - warning 10:55:10.0750 0620 s24trans - detected UnsignedFile.Multi.Generic (1) 10:55:10.0750 0620 [ 183805EB05BCA5A1E4AAAED4D2BE3690 ] SamSs C:\WINDOWS\system32\lsass.exe 10:55:10.0875 0620 SamSs - ok 10:55:10.0921 0620 [ B4CF7B42DE6CFA6FDE7D6AF4DAA55F57 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 10:55:11.0093 0620 SCardSvr - ok 10:55:11.0140 0620 [ D5E73842F38E24457C63FEF8CEFFBE19 ] Schedule C:\WINDOWS\system32\schedsvc.dll 10:55:11.0312 0620 Schedule - ok 10:55:11.0343 0620 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 10:55:11.0812 0620 Secdrv - ok 10:55:11.0859 0620 [ FED544B43903FB801B106F062110358A ] seclogon C:\WINDOWS\System32\seclogon.dll 10:55:12.0015 0620 seclogon - ok 10:55:12.0031 0620 [ AB74D986C1DD0D0C95B6AD37EC1E9F4F ] SENS C:\WINDOWS\system32\sens.dll 10:55:12.0203 0620 SENS - ok 10:55:12.0218 0620 [ CD5B9995AFCDB466C9EFC048D167E3BE ] Serial C:\WINDOWS\system32\drivers\Serial.sys 10:55:12.0421 0620 Serial - ok 10:55:12.0453 0620 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 10:55:12.0578 0620 Sfloppy - ok 10:55:12.0625 0620 [ 9245420422E409A25C1410ACB4244060 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 10:55:12.0843 0620 SharedAccess - ok 10:55:12.0859 0620 [ 521A4CB71CC419FDF60DB83E7308AE2B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 10:55:13.0250 0620 ShellHWDetection - ok 10:55:13.0281 0620 [ B8E1AC2CDAD522572BFC73781D0E37E2 ] shpf C:\WINDOWS\system32\DRIVERS\shpf.sys 10:55:13.0343 0620 shpf ( UnsignedFile.Multi.Generic ) - warning 10:55:13.0343 0620 shpf - detected UnsignedFile.Multi.Generic (1) 10:55:13.0343 0620 Simbad - ok 10:55:13.0390 0620 [ 5CAEED86821FA2C6139E32E9E05CCDC9 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys 10:55:13.0531 0620 SLIP - ok 10:55:13.0671 0620 [ F3CC67EBBD33EC8D87BE51169B5ADD6D ] SmcService C:\Programme\Sygate\SPF\smc.exe 10:55:13.0843 0620 SmcService - ok 10:55:13.0859 0620 [ BE6038E0A7D2E2FE69107E41A0265831 ] SNC C:\WINDOWS\system32\Drivers\SonyNC.sys 10:55:13.0937 0620 SNC - ok 10:55:13.0968 0620 [ FB77021110EAA16EA6E0961C844EF0D2 ] SonyImgF C:\WINDOWS\system32\DRIVERS\SonyImgF.sys 10:55:14.0031 0620 SonyImgF ( UnsignedFile.Multi.Generic ) - warning 10:55:14.0031 0620 SonyImgF - detected UnsignedFile.Multi.Generic (1) 10:55:14.0062 0620 [ A1ECEEAA5C5E74B2499EB51D38185B84 ] SONYPVU1 C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS 10:55:14.0250 0620 SONYPVU1 - ok 10:55:14.0250 0620 Sparrow - ok 10:55:14.0296 0620 [ AD9436C46C10222B8F03405628A8CD86 ] SPI C:\WINDOWS\system32\DRIVERS\SonyPI.sys 10:55:14.0375 0620 SPI - ok 10:55:14.0375 0620 [ 0CE218578FFF5F4F7E4201539C45C78F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 10:55:14.0828 0620 splitter - ok 10:55:14.0859 0620 [ DA81EC57ACD4CDC3D4C51CF3D409AF9F ] Spooler C:\WINDOWS\system32\spoolsv.exe 10:55:15.0328 0620 Spooler - ok 10:55:15.0328 0620 SPTISRV - ok 10:55:15.0359 0620 [ E4200CB2F418D8FC4ACDD7E38C419D6A ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 10:55:15.0468 0620 sr - ok 10:55:15.0500 0620 [ E150E7618328562598F4CE0B5851B5CD ] srservice C:\WINDOWS\system32\srsvc.dll 10:55:15.0953 0620 srservice - ok 10:55:16.0000 0620 [ EA554A3FFC3F536FE8320EB38F5E4843 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 10:55:16.0468 0620 Srv - ok 10:55:16.0484 0620 [ 6FA03B462B2FFFE2627171B7FE73EE29 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 10:55:16.0609 0620 SSDPSRV - ok 10:55:16.0640 0620 [ A36EE93698802CD899F98BFD553D8185 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys 10:55:16.0671 0620 ssmdrv - ok 10:55:16.0718 0620 [ F05B8D10BD6AD4CBB561E29D5BE2C674 ] SSScsiSV C:\Programme\Gemeinsame Dateien\Sony Shared\Avlib\SSScsiSV.exe 10:55:16.0781 0620 SSScsiSV ( UnsignedFile.Multi.Generic ) - warning 10:55:16.0781 0620 SSScsiSV - detected UnsignedFile.Multi.Generic (1) 10:55:16.0859 0620 [ BBBC5BF9A5F1FB5D57E91B944D2E51A5 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys 10:55:16.0984 0620 STHDA - ok 10:55:17.0031 0620 [ 25E9B30AF1FA1B9AF1853577F39FF20B ] stisvc C:\WINDOWS\system32\wiaservc.dll 10:55:17.0515 0620 stisvc - ok 10:55:17.0531 0620 [ 284C57DF5DC7ABCA656BC2B96A667AFB ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys 10:55:17.0687 0620 streamip - ok 10:55:17.0718 0620 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 10:55:17.0875 0620 swenum - ok 10:55:17.0906 0620 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 10:55:18.0062 0620 swmidi - ok 10:55:18.0062 0620 SwPrv - ok 10:55:18.0062 0620 symc810 - ok 10:55:18.0078 0620 symc8xx - ok 10:55:18.0078 0620 sym_hi - ok 10:55:18.0078 0620 sym_u3 - ok 10:55:18.0109 0620 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 10:55:18.0265 0620 sysaudio - ok 10:55:18.0281 0620 [ 6D0C43DF9D3A7C5A9B4F94772CBD5DDC ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 10:55:18.0453 0620 SysmonLog - ok 10:55:18.0484 0620 [ 427D7EB3B453347082C8F4B370065D60 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 10:55:18.0953 0620 TapiSrv - ok 10:55:19.0015 0620 [ 64798ECFA43D78C7178375FCDD16D8C8 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 10:55:19.0500 0620 Tcpip - ok 10:55:19.0531 0620 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 10:55:19.0703 0620 TDPIPE - ok 10:55:19.0718 0620 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 10:55:19.0875 0620 TDTCP - ok 10:55:19.0906 0620 [ 64E59FCF5F81F55442E8476CE8E54CA0 ] Teefer C:\WINDOWS\system32\Drivers\Teefer.sys 10:55:19.0953 0620 Teefer ( UnsignedFile.Multi.Generic ) - warning 10:55:19.0953 0620 Teefer - detected UnsignedFile.Multi.Generic (1) 10:55:20.0000 0620 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 10:55:20.0234 0620 TermDD - ok 10:55:20.0265 0620 [ 1850BC10DE5DCCCEDE063FC2D0F2CEDA ] TermService C:\WINDOWS\System32\termsrv.dll 10:55:20.0468 0620 TermService - ok 10:55:20.0500 0620 [ 521A4CB71CC419FDF60DB83E7308AE2B ] Themes C:\WINDOWS\System32\shsvcs.dll 10:55:20.0921 0620 Themes - ok 10:55:20.0953 0620 [ 26587CE8E6C6F16B8B4E7E2C16FA00BF ] ti21sony C:\WINDOWS\system32\drivers\ti21sony.sys 10:55:21.0031 0620 ti21sony - ok 10:55:21.0031 0620 TosIde - ok 10:55:21.0062 0620 [ A34E894201D66E380E1FA96FE11B587E ] TrkWks C:\WINDOWS\system32\trkwks.dll 10:55:21.0234 0620 TrkWks - ok 10:55:21.0265 0620 [ 77D14696D77D2A6F04A466DDD49026BE ] TuneUp.Defrag C:\WINDOWS\System32\TuneUpDefragService.exe 10:55:21.0328 0620 TuneUp.Defrag - ok 10:55:21.0375 0620 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 10:55:21.0546 0620 Udfs - ok 10:55:21.0546 0620 ultra - ok 10:55:21.0578 0620 [ AB0A7CA90D9E3D6A193905DC1715DED0 ] UMWdf C:\WINDOWS\system32\wdfmgr.exe 10:55:21.0656 0620 UMWdf - ok 10:55:21.0703 0620 [ CED744117E91BDC0BEB810F7D8608183 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 10:55:22.0203 0620 Update - ok 10:55:22.0234 0620 [ 855790C1BACED245A6B210AF430ED17B ] upnphost C:\WINDOWS\System32\upnphost.dll 10:55:22.0703 0620 upnphost - ok 10:55:22.0718 0620 [ A99F867E76CFDAA28EE305B93F70E84F ] UPS C:\WINDOWS\System32\ups.exe 10:55:22.0890 0620 UPS - ok 10:55:22.0921 0620 [ 1DF89C499BF45D878B87EBD4421D462D ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys 10:55:22.0953 0620 USBAAPL ( UnsignedFile.Multi.Generic ) - warning 10:55:22.0953 0620 USBAAPL - detected UnsignedFile.Multi.Generic (1) 10:55:22.0984 0620 [ 45A0D14B26C35497AD93BCE7E15C9941 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys 10:55:23.0156 0620 usbaudio - ok 10:55:23.0187 0620 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 10:55:23.0328 0620 usbccgp - ok 10:55:23.0375 0620 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 10:55:23.0531 0620 usbehci - ok 10:55:23.0562 0620 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 10:55:23.0734 0620 usbhub - ok 10:55:23.0750 0620 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 10:55:23.0937 0620 usbprint - ok 10:55:23.0968 0620 [ A6BC71402F4F7DD5B77FD7F4A8DDBA85 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 10:55:24.0140 0620 usbscan - ok 10:55:24.0171 0620 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 10:55:24.0328 0620 USBSTOR - ok 10:55:24.0359 0620 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 10:55:24.0531 0620 usbuhci - ok 10:55:24.0562 0620 [ 838C97B3D28BFEBDD11D12ADFE957004 ] UxTuneUp C:\WINDOWS\System32\uxtuneup.dll 10:55:24.0609 0620 UxTuneUp - ok 10:55:24.0656 0620 [ FB1A8F8CBD361FC1F0D144D5018C97F3 ] VAIO Entertainment TV Device Arbitration Service C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe 10:55:24.0703 0620 VAIO Entertainment TV Device Arbitration Service ( UnsignedFile.Multi.Generic ) - warning 10:55:24.0703 0620 VAIO Entertainment TV Device Arbitration Service - detected UnsignedFile.Multi.Generic (1) 10:55:24.0765 0620 [ 2B0EAC2B6E5F1C5E007DABAE101028B0 ] VAIO Event Service C:\Programme\Sony\VAIO Event Service\VESMgr.exe 10:55:24.0812 0620 VAIO Event Service ( UnsignedFile.Multi.Generic ) - warning 10:55:24.0812 0620 VAIO Event Service - detected UnsignedFile.Multi.Generic (1) 10:55:24.0937 0620 [ 8A851EE335A459440B69A44C1CD50BDB ] VAIOMediaPlatform-IntegratedServer-AppServer C:\Programme\Sony\VAIO Media Integrated Server\VMISrv.exe 10:55:25.0203 0620 VAIOMediaPlatform-IntegratedServer-AppServer ( UnsignedFile.Multi.Generic ) - warning 10:55:25.0203 0620 VAIOMediaPlatform-IntegratedServer-AppServer - detected UnsignedFile.Multi.Generic (1) 10:55:25.0265 0620 [ B74A27540B0B7FE393A882B94B0D2188 ] VAIOMediaPlatform-IntegratedServer-HTTP C:\Programme\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe 10:55:25.0312 0620 VAIOMediaPlatform-IntegratedServer-HTTP ( UnsignedFile.Multi.Generic ) - warning 10:55:25.0312 0620 VAIOMediaPlatform-IntegratedServer-HTTP - detected UnsignedFile.Multi.Generic (1) 10:55:25.0343 0620 [ 4914B65DCCF68CB95C2D1303C7264C8C ] VAIOMediaPlatform-IntegratedServer-UPnP C:\Programme\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe 10:55:25.0546 0620 VAIOMediaPlatform-IntegratedServer-UPnP ( UnsignedFile.Multi.Generic ) - warning 10:55:25.0546 0620 VAIOMediaPlatform-IntegratedServer-UPnP - detected UnsignedFile.Multi.Generic (1) 10:55:25.0562 0620 [ C5AFCD27DFE4D1501406B9AD40F85750 ] VAIOMediaPlatform-Mobile-Gateway C:\Programme\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe 10:55:25.0656 0620 VAIOMediaPlatform-Mobile-Gateway ( UnsignedFile.Multi.Generic ) - warning 10:55:25.0656 0620 VAIOMediaPlatform-Mobile-Gateway - detected UnsignedFile.Multi.Generic (1) 10:55:25.0718 0620 [ 55A47A048E5FD13977CA47DF39CBA5FF ] VCI C:\Programme\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe 10:55:25.0843 0620 VCI ( UnsignedFile.Multi.Generic ) - warning 10:55:25.0843 0620 VCI - detected UnsignedFile.Multi.Generic (1) 10:55:25.0843 0620 Vcsw - ok 10:55:25.0859 0620 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 10:55:26.0109 0620 VgaSave - ok 10:55:26.0109 0620 ViaIde - ok 10:55:26.0156 0620 [ D6888520FF56D72A50437E371CA25FC9 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 10:55:26.0296 0620 VolSnap - ok 10:55:26.0343 0620 [ 6635ECBF0D8090DC3A452D0D072B5D5B ] VSS C:\WINDOWS\System32\vssvc.exe 10:55:26.0468 0620 VSS - ok 10:55:26.0515 0620 [ AF9EBC7CF22A18E2369346067F555953 ] VzCdbSvc C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe 10:55:26.0578 0620 VzCdbSvc ( UnsignedFile.Multi.Generic ) - warning 10:55:26.0578 0620 VzCdbSvc - detected UnsignedFile.Multi.Generic (1) 10:55:26.0609 0620 [ 37D04941A5B52027EE32D2685F0F72BA ] VzFw C:\Programme\Gemeinsame Dateien\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe 10:55:26.0656 0620 VzFw ( UnsignedFile.Multi.Generic ) - warning 10:55:26.0656 0620 VzFw - detected UnsignedFile.Multi.Generic (1) 10:55:26.0703 0620 [ C6D874CD2A5B83CD11CDEBD28A638584 ] W32Time C:\WINDOWS\system32\w32time.dll 10:55:26.0875 0620 W32Time - ok 10:55:26.0953 0620 [ 4E7B07653F4F9937CF62AD2869FBA520 ] w39n51 C:\WINDOWS\system32\DRIVERS\w39n51.sys 10:55:27.0171 0620 w39n51 - ok 10:55:27.0218 0620 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 10:55:27.0406 0620 Wanarp - ok 10:55:27.0421 0620 WDICA - ok 10:55:27.0437 0620 [ EFD235CA22B57C81118C1AEB4798F1C1 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 10:55:27.0953 0620 wdmaud - ok 10:55:27.0984 0620 [ 879ECB9A5F14A03960B84EDB7207A051 ] WebClient C:\WINDOWS\System32\webclnt.dll 10:55:28.0468 0620 WebClient - ok 10:55:28.0484 0620 [ 8E95E30E9031C3AC25EC2455DA19831F ] wg3n C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys 10:55:28.0531 0620 wg3n ( UnsignedFile.Multi.Generic ) - warning 10:55:28.0531 0620 wg3n - detected UnsignedFile.Multi.Generic (1) 10:55:28.0578 0620 [ C1D5CBD8AA0D674DA1BA1BB189696396 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys 10:55:28.0734 0620 winachsf - ok 10:55:28.0796 0620 [ DA2DADB42916E59C6E4BBA593BCCDA73 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 10:55:28.0937 0620 winmgmt - ok 10:55:29.0000 0620 [ 140EF97B64F560FD78643CAE2CDAD838 ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 10:55:29.0062 0620 WmdmPmSN - ok 10:55:29.0078 0620 [ 042A78FCD1ADFB0FBA9865D55C6F5CC1 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 10:55:29.0281 0620 WmiApSrv - ok 10:55:29.0312 0620 [ 1385E5AA9C9821790D33A9563B8D2DD0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys 10:55:29.0375 0620 WpdUsb - ok 10:55:29.0375 0620 [ F62A090F00C5B4E597E8AA4B1048CE05 ] wpsdrvnt C:\WINDOWS\system32\drivers\wpsdrvnt.sys 10:55:29.0421 0620 wpsdrvnt ( UnsignedFile.Multi.Generic ) - warning 10:55:29.0421 0620 wpsdrvnt - detected UnsignedFile.Multi.Generic (1) 10:55:29.0453 0620 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys 10:55:29.0609 0620 WS2IFSL - ok 10:55:29.0625 0620 [ BD3561AAE748150CF51C2CA876449EA7 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 10:55:29.0812 0620 wscsvc - ok 10:55:29.0843 0620 [ D5842484F05E12121C511AA93F6439EC ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 10:55:30.0015 0620 WSTCODEC - ok 10:55:30.0046 0620 [ 1EDDD5C0ECF3FA6EDFD8A25B2B4E7DF6 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 10:55:30.0218 0620 wuauserv - ok 10:55:30.0250 0620 [ EB52B74A5DAADC2CCA68B3E7D81007E6 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 10:55:30.0718 0620 WZCSVC - ok 10:55:30.0734 0620 [ 8302DE1C64618D72346DD0034DBC5D9B ] xmlprov C:\WINDOWS\System32\xmlprov.dll 10:55:30.0921 0620 xmlprov - ok 10:55:30.0984 0620 [ 96982CB3611BD4DB9ED7A5FF2C29219F ] yukonwxp C:\WINDOWS\system32\DRIVERS\yk51x86.sys 10:55:31.0046 0620 yukonwxp - ok 10:55:31.0046 0620 ================ Scan global =============================== 10:55:31.0078 0620 [ 1B91BAC6996731EE8925F58205DCB016 ] C:\WINDOWS\system32\basesrv.dll 10:55:31.0156 0620 [ 317DF8980138FB91AE03E95757F4D0E9 ] C:\WINDOWS\system32\winsrv.dll 10:55:31.0218 0620 [ 317DF8980138FB91AE03E95757F4D0E9 ] C:\WINDOWS\system32\winsrv.dll 10:55:31.0250 0620 [ EDB6B81761BD60F32F740BBC40AFB676 ] C:\WINDOWS\system32\services.exe 10:55:31.0250 0620 [Global] - ok 10:55:31.0250 0620 ================ Scan MBR ================================== 10:55:31.0265 0620 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0 10:55:31.0578 0620 \Device\Harddisk0\DR0 - ok 10:55:31.0578 0620 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk3\DR12 10:55:35.0781 0620 \Device\Harddisk3\DR12 - ok 10:55:35.0781 0620 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk4\DR13 10:55:36.0218 0620 \Device\Harddisk4\DR13 - ok 10:55:36.0218 0620 ================ Scan VBR ================================== 10:55:36.0218 0620 [ 85C47202E47E294D253FC3A15B956822 ] \Device\Harddisk0\DR0\Partition1 10:55:36.0218 0620 \Device\Harddisk0\DR0\Partition1 - ok 10:55:36.0234 0620 [ 635B51F0357B5FD29E87C1E21F67F593 ] \Device\Harddisk0\DR0\Partition2 10:55:36.0234 0620 \Device\Harddisk0\DR0\Partition2 - ok 10:55:36.0234 0620 [ D25E3C7510E8F359BC38E8CF9748D10A ] \Device\Harddisk3\DR12\Partition1 10:55:36.0234 0620 \Device\Harddisk3\DR12\Partition1 - ok 10:55:36.0250 0620 [ 7D8775ABE083072FDA96AA83FEC0EE02 ] \Device\Harddisk4\DR13\Partition1 10:55:36.0250 0620 \Device\Harddisk4\DR13\Partition1 - ok 10:55:36.0250 0620 ============================================================ 10:55:36.0250 0620 Scan finished 10:55:36.0250 0620 ============================================================ 10:55:36.0359 2420 Detected object count: 24 10:55:36.0359 2420 Actual detected object count: 24 10:55:54.0890 2420 AegisP ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 AegisP ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 ASPI ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 ASPI ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 EvtEng ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 EvtEng ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 Image Converter video recording monitor for VAIO Entertainment ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 Image Converter video recording monitor for VAIO Entertainment ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 PxHelp20 ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 PxHelp20 ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 RegSrvc ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 RegSrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 S24EventMonitor ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 S24EventMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 s24trans ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 s24trans ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 shpf ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 shpf ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 SonyImgF ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 SonyImgF ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 SSScsiSV ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 SSScsiSV ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 Teefer ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 Teefer ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 USBAAPL ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 USBAAPL ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIO Entertainment TV Device Arbitration Service ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIO Entertainment TV Device Arbitration Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIO Event Service ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIO Event Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-AppServer ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-AppServer ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-HTTP ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-UPnP ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIOMediaPlatform-IntegratedServer-UPnP ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0890 2420 VAIOMediaPlatform-Mobile-Gateway ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0890 2420 VAIOMediaPlatform-Mobile-Gateway ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0906 2420 VCI ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0906 2420 VCI ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0906 2420 VzCdbSvc ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0906 2420 VzCdbSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0906 2420 VzFw ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0906 2420 VzFw ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0906 2420 wg3n ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0906 2420 wg3n ( UnsignedFile.Multi.Generic ) - User select action: Skip 10:55:54.0906 2420 wpsdrvnt ( UnsignedFile.Multi.Generic ) - skipped by user 10:55:54.0906 2420 wpsdrvnt ( UnsignedFile.Multi.Generic ) - User select action: Skip |
nu wird noch nichts geupdatet, erst am ende Combofix darf ausschließlich ausgeführt werden, wenn dies von einem Team Mitglied angewiesen wurde!Downloade dir bitte Combofix von einem dieser Downloadspiegel Link 1 Link 2 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
|
HIer der logfile von Combofix: Combofix Logfile: Code: ComboFix 12-09-24.03 - sabina 25.09.2012 14:02:55.1.2 - x86 |
hi malwarebytes: Downloade Dir bitte Malwarebytes
|
Malwarebytes Anti-Malware (Test) 1.65.0.1400 Malwarebytes : Free anti-malware download Datenbank Version: v2012.09.27.02 Windows XP Service Pack 2 x86 NTFS Internet Explorer 6.0.2900.2180 sabina :: PILATUS [Administrator] Schutz: Aktiviert 28.09.2012 12:55:43 mbam-log-2012-09-28 (12-55-43).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 303426 Laufzeit: 1 Stunde(n), 11 Minute(n), 9 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 3 C:\Programme\Sony\VAIO Cooperated Initialisation\Automatic.exe (Trojan.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Programme\Sony\VAIO Cooperated Initialisation\Manual.exe (Trojan.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Programme\Sony\VAIO Cooperated Initialisation\UnInstall.exe (Trojan.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Was meinsst Du? Alles bereinigt? Irgendwie läuft Firefox immer noch nicht rund... |
wie läuft das gerät jetzt? |
Tja, wie gesagt...vielleicht ein bissl besser... Ein Pop UP geht noch immer auf. Einfach so. Auf diversen Seiten. Es ist blau..heißt wizard...oder so ähnlich. Die Filter bei ADblock plus helfen nicht. Schiebt sich wie eine "Leiste" immer wieder ins Bild. Wie interpretierst Du den Logfile? Alles sauber? DANKE DIR auf jeden FAll schon mal für die großartige Hilfe! Bekomme beim Start jetzt immer diese Meldung von Sygate Firewall: Die EXE-Datei wurde seit der letzten Verwendung von C:\WINDOWS\system32\ntoskrnl.exe geändert. Dateiversion : 5.1.2600.3670 (xpsp_sp2_qfe.100216-2016) Dateibeschreibung : NT-Kernel und -System Dateipfad : C:\WINDOWS\system32\ntoskrnl.exe Prozess-ID : 4 (Heximal) 4 (Dezimal) Verbindungsursprung : lokal initiert Protokoll : UDP Lokale Adresse : 192.168.178.35 Lokaler Port : 137 Remote-Name : Remote-Adresse : 192.168.178.255 Remote-Port : 137 (NETBIOS-NS - Browsing requests of NetBIOS over TCP/IP) Ethernet-Paket-Details: Ethernet II (Packet Length: 124) Destination: ff-ff-ff-ff-ff-ff Source: 00-13-02-55-d1-48 Type: IP (0x0800) Internet Protocol Version: 4 Header Length: 20 bytes Flags: .0.. = Don't fragment: Not set ..0. = More fragments: Not set Fragment offset:0 Time to live: 128 Protocol: 0x11 (UDP - User Datagram Protocol) Header checksum: 0xb54 (Correct) Source: 192.168.178.35 Destination: 192.168.178.255 User Datagram Protocol Source port: 137 Destination port: 137 Length: 8 Checksum: 0x62c6 (Correct) Data (76 Bytes) Binäres Abbild des Pakets: 0000: FF FF FF FF FF FF 00 13 : 02 55 D1 48 08 00 45 00 | .........U.H..E. 0010: 00 60 00 0E 00 00 80 11 : 54 0B C0 A8 B2 23 C0 A8 | .`......T....#.. 0020: B2 FF 00 89 00 89 00 4C : C6 62 80 01 29 10 00 01 | .......L.b..)... 0030: 00 00 00 00 00 01 20 45 : 42 46 43 45 43 45 46 45 | ...... EBFCECEFE 0040: 4A 46 45 46 44 45 48 46 : 43 46 46 46 41 46 41 45 | JFEFDEHFCFFFAFAE 0050: 46 43 41 43 41 41 41 00 : 00 20 00 01 C0 0C 00 20 | FCACAAA.. ..... 0060: 00 01 00 04 93 E0 00 06 : 80 00 C0 A8 B2 23 00 00 | .............#.. 0070: 00 00 00 00 00 00 00 00 : 00 00 00 00 | ............ Firefox hakt die ganze Zeit...braucht ewig zum Öffnen neuer Seiten. MAcht selbstständig Taps zu, etc. NOch IDeen? |
dann machen wir neu. firewalls brauchst du übrigens nicht extra, die windows eigene reicht. 1. Datenrettung:
ich werde außerdem noch weitere punkte dazu posten. 4. alle Passwörter ändern! 5. nach PC Absicherung, die gesicherten Daten prüfen und falls sauber: zurückspielen. 6. werde ich dann noch was zum absichern von Onlinebanking mit Chip Card Reader + Star Money sagen. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 08:48 Uhr. |
Copyright ©2000-2025, Trojaner-Board