Ga naar inhoud

Trojaans Paard C:\windows\system32\services.exe


Aanbevolen berichten

Hallo Allemaal,

Ik heb totaal geen verstand van virussen (gelukkig!).

Ik heb sinds kort dat er om de 10min een trojaans paard Dropper.Generic_c.MMI op komt duiken, via AVG.

De enige keuze die AVG geeft is om dit te negeren.

Ik heb daarom een scan uitgevoerd, hij vond er toen maar 4. Hij de andere Trojaanse paarden verwijderd, maar omdat het services.exe is, is het een belangrijk bestand en kan hij het niet verwijderen.

Ik heb al op een andere forum gekeken, daar werd mensen aangeraden om TTDS Killer te instaleren, en die persoon had ook geen problemen meer. Helaas is dit voor mij niet de oplossing.

Ik plak hier even een logje van de scan met TTDS Killer.

Wie heeft er voor mij aub een oplossing?!

22:09:41.0443 5620 TDSS rootkit removing tool 2.7.43.0 Jun 29 2012 17:54:22

22:09:43.0452 5620 ============================================================

22:09:43.0452 5620 Current date / time: 2012/06/29 22:09:43.0452

22:09:43.0452 5620 SystemInfo:

22:09:43.0452 5620

22:09:43.0452 5620 OS Version: 6.1.7601 ServicePack: 1.0

22:09:43.0452 5620 Product type: Workstation

22:09:43.0452 5620 ComputerName: ROBERT-PC

22:09:43.0452 5620 UserName: robert

22:09:43.0452 5620 Windows directory: C:\Windows

22:09:43.0452 5620 System windows directory: C:\Windows

22:09:43.0452 5620 Running under WOW64

22:09:43.0452 5620 Processor architecture: Intel x64

22:09:43.0452 5620 Number of processors: 4

22:09:43.0452 5620 Page size: 0x1000

22:09:43.0452 5620 Boot type: Normal boot

22:09:43.0452 5620 ============================================================

22:09:44.0393 5620 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

22:09:44.0403 5620 ============================================================

22:09:44.0403 5620 \Device\Harddisk0\DR0:

22:09:44.0403 5620 MBR partitions:

22:09:44.0403 5620 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2400800, BlocksNum 0x32000

22:09:44.0403 5620 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2432800, BlocksNum 0x48425000

22:09:44.0403 5620 ============================================================

22:09:44.0433 5620 C: <-> \Device\Harddisk0\DR0\Partition1

22:09:44.0433 5620 ============================================================

22:09:44.0433 5620 Initialize success

22:09:44.0433 5620 ============================================================

22:09:57.0645 10520 ============================================================

22:09:57.0645 10520 Scan started

22:09:57.0645 10520 Mode: Manual;

22:09:57.0645 10520 ============================================================

22:09:59.0704 10520 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys

22:09:59.0735 10520 1394ohci - ok

22:09:59.0798 10520 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys

22:09:59.0813 10520 ACPI - ok

22:09:59.0860 10520 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys

22:09:59.0860 10520 AcpiPmi - ok

22:09:59.0969 10520 AdobeARMservice (11a52cf7b265631deeb24c6149309eff) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

22:09:59.0969 10520 AdobeARMservice - ok

22:10:00.0156 10520 AdobeFlashPlayerUpdateSvc (f3cd7b20b27d1772c946df993ff3635c) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

22:10:00.0281 10520 AdobeFlashPlayerUpdateSvc - ok

22:10:00.0390 10520 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys

22:10:00.0422 10520 adp94xx - ok

22:10:00.0515 10520 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys

22:10:00.0562 10520 adpahci - ok

22:10:00.0609 10520 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys

22:10:00.0656 10520 adpu320 - ok

22:10:00.0702 10520 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll

22:10:00.0702 10520 AeLookupSvc - ok

22:10:00.0812 10520 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys

22:10:00.0812 10520 AFD - ok

22:10:00.0874 10520 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys

22:10:00.0874 10520 agp440 - ok

22:10:00.0921 10520 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe

22:10:00.0952 10520 ALG - ok

22:10:00.0968 10520 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys

22:10:00.0968 10520 aliide - ok

22:10:00.0983 10520 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys

22:10:00.0983 10520 amdide - ok

22:10:01.0046 10520 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys

22:10:01.0046 10520 AmdK8 - ok

22:10:01.0061 10520 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys

22:10:01.0061 10520 AmdPPM - ok

22:10:01.0108 10520 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys

22:10:01.0108 10520 amdsata - ok

22:10:01.0170 10520 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys

22:10:01.0202 10520 amdsbs - ok

22:10:01.0217 10520 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys

22:10:01.0217 10520 amdxata - ok

22:10:01.0248 10520 Andbus (bc3e934af147211cb5d61ac257371e4a) C:\Windows\system32\DRIVERS\lgandbus64.sys

22:10:01.0264 10520 Andbus - ok

22:10:01.0311 10520 AndDiag (aed499431a45810d28beca2f7cfd2635) C:\Windows\system32\DRIVERS\lganddiag64.sys

22:10:01.0311 10520 AndDiag - ok

22:10:01.0373 10520 AndGps (c2c42287f8e8f54081b46d22a413e8d3) C:\Windows\system32\DRIVERS\lgandgps64.sys

22:10:01.0373 10520 AndGps - ok

22:10:01.0420 10520 ANDModem (75befd9d99fd08ca2d697d878ef4f23d) C:\Windows\system32\DRIVERS\lgandmodem64.sys

22:10:01.0420 10520 ANDModem - ok

22:10:01.0482 10520 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys

22:10:01.0482 10520 AppID - ok

22:10:01.0514 10520 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll

22:10:01.0514 10520 AppIDSvc - ok

22:10:01.0545 10520 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll

22:10:01.0545 10520 Appinfo - ok

22:10:01.0685 10520 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

22:10:01.0685 10520 Apple Mobile Device - ok

22:10:01.0716 10520 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys

22:10:01.0716 10520 arc - ok

22:10:01.0748 10520 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys

22:10:01.0748 10520 arcsas - ok

22:10:01.0794 10520 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys

22:10:01.0794 10520 AsyncMac - ok

22:10:01.0836 10520 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys

22:10:01.0836 10520 atapi - ok

22:10:01.0966 10520 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll

22:10:01.0986 10520 AudioEndpointBuilder - ok

22:10:02.0006 10520 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll

22:10:02.0016 10520 AudioSrv - ok

22:10:02.0576 10520 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

22:10:02.0696 10520 AVGIDSAgent - ok

22:10:02.0866 10520 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys

22:10:02.0886 10520 AVGIDSDriver - ok

22:10:02.0896 10520 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys

22:10:02.0906 10520 AVGIDSEH - ok

22:10:02.0916 10520 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys

22:10:02.0926 10520 AVGIDSFilter - ok

22:10:02.0966 10520 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\Windows\system32\DRIVERS\avgldx64.sys

22:10:02.0986 10520 Avgldx64 - ok

22:10:02.0996 10520 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\Windows\system32\DRIVERS\avgmfx64.sys

22:10:03.0006 10520 Avgmfx64 - ok

22:10:03.0046 10520 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\Windows\system32\DRIVERS\avgrkx64.sys

22:10:03.0046 10520 Avgrkx64 - ok

22:10:03.0106 10520 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\Windows\system32\DRIVERS\avgtdia.sys

22:10:03.0126 10520 Avgtdia - ok

22:10:03.0206 10520 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

22:10:03.0226 10520 avgwd - ok

22:10:03.0276 10520 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll

22:10:03.0286 10520 AxInstSV - ok

22:10:03.0386 10520 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys

22:10:03.0406 10520 b06bdrv - ok

22:10:03.0456 10520 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys

22:10:03.0476 10520 b57nd60a - ok

22:10:03.0516 10520 b57xdbd (a424cb46a145e5aabf15621550976df2) C:\Windows\system32\DRIVERS\b57xdbd.sys

22:10:03.0516 10520 b57xdbd - ok

22:10:03.0536 10520 b57xdmp (be4e6fd5a898812b85d5817ad9754a9f) C:\Windows\system32\DRIVERS\b57xdmp.sys

22:10:03.0546 10520 b57xdmp - ok

22:10:03.0656 10520 BBSvc (87f3bcf82a63e900af896cd930bf7e05) C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE

22:10:03.0666 10520 BBSvc - ok

22:10:03.0726 10520 BBUpdate (78779ee07231c658b483b1f38b5088df) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE

22:10:03.0736 10520 BBUpdate - ok

22:10:04.0183 10520 BCM43XX (11f844b46b631337395651abe9c4167b) C:\Windows\system32\DRIVERS\bcmwl664.sys

22:10:04.0324 10520 BCM43XX - ok

22:10:04.0480 10520 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll

22:10:04.0495 10520 BDESVC - ok

22:10:04.0558 10520 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys

22:10:04.0558 10520 Beep - ok

22:10:04.0682 10520 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll

22:10:04.0714 10520 BFE - ok

22:10:04.0838 10520 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll

22:10:04.0854 10520 BITS - ok

22:10:04.0885 10520 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys

22:10:04.0885 10520 blbdrive - ok

22:10:05.0026 10520 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe

22:10:05.0041 10520 Bonjour Service - ok

22:10:05.0088 10520 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys

22:10:05.0104 10520 bowser - ok

22:10:05.0119 10520 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys

22:10:05.0119 10520 BrFiltLo - ok

22:10:05.0135 10520 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys

22:10:05.0135 10520 BrFiltUp - ok

22:10:05.0182 10520 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll

22:10:05.0182 10520 Browser - ok

22:10:05.0244 10520 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys

22:10:05.0260 10520 Brserid - ok

22:10:05.0260 10520 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys

22:10:05.0275 10520 BrSerWdm - ok

22:10:05.0291 10520 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys

22:10:05.0291 10520 BrUsbMdm - ok

22:10:05.0291 10520 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys

22:10:05.0306 10520 BrUsbSer - ok

22:10:05.0338 10520 bScsiMSa (0970d8b7151e9113bf8d44ce2e954df7) C:\Windows\system32\DRIVERS\bScsiMSa.sys

22:10:05.0338 10520 bScsiMSa - ok

22:10:05.0416 10520 bScsiSDa (0c1eee5af32402d306874b110de237ec) C:\Windows\system32\DRIVERS\bScsiSDa.sys

22:10:05.0431 10520 bScsiSDa - ok

22:10:05.0447 10520 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys

22:10:05.0447 10520 BTHMODEM - ok

22:10:05.0509 10520 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll

22:10:05.0540 10520 bthserv - ok

22:10:05.0572 10520 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys

22:10:05.0603 10520 cdfs - ok

22:10:05.0634 10520 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys

22:10:05.0650 10520 cdrom - ok

22:10:05.0681 10520 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll

22:10:05.0696 10520 CertPropSvc - ok

22:10:05.0728 10520 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys

22:10:05.0743 10520 cfwids - ok

22:10:05.0759 10520 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys

22:10:05.0774 10520 circlass - ok

22:10:05.0852 10520 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys

22:10:05.0852 10520 CLFS - ok

22:10:05.0930 10520 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

22:10:05.0930 10520 clr_optimization_v2.0.50727_32 - ok

22:10:05.0993 10520 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

22:10:06.0008 10520 clr_optimization_v2.0.50727_64 - ok

22:10:06.0133 10520 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

22:10:06.0149 10520 clr_optimization_v4.0.30319_32 - ok

22:10:06.0196 10520 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

22:10:06.0227 10520 clr_optimization_v4.0.30319_64 - ok

22:10:06.0258 10520 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys

22:10:06.0274 10520 CmBatt - ok

22:10:06.0289 10520 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys

22:10:06.0289 10520 cmdide - ok

22:10:06.0383 10520 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys

22:10:06.0414 10520 CNG - ok

22:10:06.0445 10520 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys

22:10:06.0445 10520 Compbatt - ok

22:10:06.0476 10520 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys

22:10:06.0476 10520 CompositeBus - ok

22:10:06.0492 10520 COMSysApp - ok

22:10:06.0523 10520 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys

22:10:06.0523 10520 crcdisk - ok

22:10:06.0586 10520 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll

22:10:06.0586 10520 CryptSvc - ok

22:10:06.0788 10520 cvhsvc (72794d112cbaff3bc0c29bf7350d4741) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

22:10:06.0804 10520 cvhsvc - ok

22:10:06.0898 10520 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll

22:10:06.0913 10520 DcomLaunch - ok

22:10:06.0976 10520 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll

22:10:06.0991 10520 defragsvc - ok

22:10:07.0069 10520 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys

22:10:07.0069 10520 DfsC - ok

22:10:07.0132 10520 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll

22:10:07.0147 10520 Dhcp - ok

22:10:07.0178 10520 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys

22:10:07.0178 10520 discache - ok

22:10:07.0225 10520 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys

22:10:07.0225 10520 Disk - ok

22:10:07.0256 10520 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll

22:10:07.0272 10520 Dnscache - ok

22:10:07.0319 10520 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll

22:10:07.0334 10520 dot3svc - ok

22:10:07.0366 10520 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll

22:10:07.0366 10520 DPS - ok

22:10:07.0397 10520 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys

22:10:07.0397 10520 drmkaud - ok

22:10:07.0537 10520 DsiWMIService (9dd3a22f804697606c2b7ff9e912ff6b) C:\Program Files (x86)\Launch Manager\dsiwmis.exe

22:10:07.0537 10520 DsiWMIService - ok

22:10:07.0646 10520 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys

22:10:07.0662 10520 DXGKrnl - ok

22:10:07.0709 10520 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll

22:10:07.0709 10520 EapHost - ok

22:10:08.0005 10520 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys

22:10:08.0099 10520 ebdrv - ok

22:10:08.0251 10520 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe

22:10:08.0261 10520 EFS - ok

22:10:08.0361 10520 EgisTec Ticket Service (18dd872dd46acb24e106dc2c9c270466) C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe

22:10:08.0371 10520 EgisTec Ticket Service - ok

22:10:08.0511 10520 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe

22:10:08.0531 10520 ehRecvr - ok

22:10:08.0561 10520 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe

22:10:08.0591 10520 ehSched - ok

22:10:08.0711 10520 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys

22:10:08.0731 10520 elxstor - ok

22:10:08.0881 10520 ePowerSvc (ac5c64f828c0a6a1350971501ac2a0c7) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe

22:10:08.0901 10520 ePowerSvc - ok

22:10:09.0011 10520 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys

22:10:09.0021 10520 ErrDev - ok

22:10:09.0081 10520 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll

22:10:09.0101 10520 EventSystem - ok

22:10:09.0131 10520 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys

22:10:09.0151 10520 exfat - ok

22:10:09.0191 10520 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys

22:10:09.0211 10520 fastfat - ok

22:10:09.0311 10520 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe

22:10:09.0331 10520 Fax - ok

22:10:09.0361 10520 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys

22:10:09.0361 10520 fdc - ok

22:10:09.0401 10520 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll

22:10:09.0401 10520 fdPHost - ok

22:10:09.0431 10520 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll

22:10:09.0431 10520 FDResPub - ok

22:10:09.0451 10520 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys

22:10:09.0461 10520 FileInfo - ok

22:10:09.0471 10520 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys

22:10:09.0471 10520 Filetrace - ok

22:10:09.0641 10520 FLEXnet Licensing Service (bb0667b0171b632b97ea759515476f07) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

22:10:09.0681 10520 FLEXnet Licensing Service - ok

22:10:09.0741 10520 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys

22:10:09.0741 10520 flpydisk - ok

22:10:09.0791 10520 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys

22:10:09.0831 10520 FltMgr - ok

22:10:10.0011 10520 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll

22:10:10.0041 10520 FontCache - ok

22:10:10.0111 10520 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

22:10:10.0111 10520 FontCache3.0.0.0 - ok

22:10:10.0181 10520 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys

22:10:10.0191 10520 FsDepends - ok

22:10:10.0231 10520 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys

22:10:10.0231 10520 Fs_Rec - ok

22:10:10.0281 10520 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys

22:10:10.0291 10520 fvevol - ok

22:10:10.0331 10520 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys

22:10:10.0331 10520 gagp30kx - ok

22:10:10.0442 10520 GamesAppService (c403c5db49a0f9aaf4f2128edc0106d8) C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

22:10:10.0458 10520 GamesAppService - ok

22:10:10.0505 10520 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

22:10:10.0505 10520 GEARAspiWDM - ok

22:10:10.0630 10520 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll

22:10:10.0661 10520 gpsvc - ok

22:10:10.0692 10520 GREGService (84e58fea8b1a7537696a20c59cb9b0c9) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe

22:10:10.0692 10520 GREGService - ok

22:10:10.0739 10520 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys

22:10:10.0739 10520 hcw85cir - ok

22:10:10.0801 10520 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys

22:10:10.0801 10520 HdAudAddService - ok

22:10:10.0848 10520 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys

22:10:10.0864 10520 HDAudBus - ok

22:10:10.0879 10520 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys

22:10:10.0926 10520 HidBatt - ok

22:10:10.0942 10520 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys

22:10:10.0957 10520 HidBth - ok

22:10:10.0957 10520 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys

22:10:10.0973 10520 HidIr - ok

22:10:11.0004 10520 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll

22:10:11.0004 10520 hidserv - ok

22:10:11.0020 10520 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys

22:10:11.0035 10520 HidUsb - ok

22:10:11.0082 10520 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll

22:10:11.0113 10520 hkmsvc - ok

22:10:11.0144 10520 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll

22:10:11.0160 10520 HomeGroupListener - ok

22:10:11.0207 10520 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll

22:10:11.0222 10520 HomeGroupProvider - ok

22:10:11.0238 10520 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys

22:10:11.0238 10520 HpSAMD - ok

22:10:11.0347 10520 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys

22:10:11.0363 10520 HTTP - ok

22:10:11.0410 10520 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys

22:10:11.0410 10520 hwpolicy - ok

22:10:11.0456 10520 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys

22:10:11.0488 10520 i8042prt - ok

22:10:11.0566 10520 iaStor (26cf4275034214ecedd8ec17b0a18a99) C:\Windows\system32\drivers\iaStor.sys

22:10:11.0581 10520 iaStor - ok

22:10:11.0675 10520 IAStorDataMgrSvc (e79a8e33bd136d14bae1fa20eb2ef124) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

22:10:11.0675 10520 IAStorDataMgrSvc - ok

22:10:11.0768 10520 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys

22:10:11.0784 10520 iaStorV - ok

22:10:11.0940 10520 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

22:10:11.0971 10520 idsvc - ok

22:10:13.0032 10520 igfx (9937600a1584ff00565d5379eb4c9edb) C:\Windows\system32\DRIVERS\igdkmd64.sys

22:10:13.0297 10520 igfx - ok

22:10:13.0453 10520 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys

22:10:13.0453 10520 iirsp - ok

22:10:13.0547 10520 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll

22:10:13.0578 10520 IKEEXT - ok

22:10:13.0906 10520 IntcAzAudAddService (1ce438b31551746ab450d8ffa403bdb5) C:\Windows\system32\drivers\RTKVHD64.sys

22:10:13.0984 10520 IntcAzAudAddService - ok

22:10:14.0202 10520 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys

22:10:14.0218 10520 IntcDAud - ok

22:10:14.0249 10520 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys

22:10:14.0249 10520 intelide - ok

22:10:14.0296 10520 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys

22:10:14.0296 10520 intelppm - ok

22:10:14.0342 10520 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll

22:10:14.0374 10520 IPBusEnum - ok

22:10:14.0389 10520 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys

22:10:14.0405 10520 IpFilterDriver - ok

22:10:14.0420 10520 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys

22:10:14.0420 10520 IPMIDRV - ok

22:10:14.0452 10520 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys

22:10:14.0452 10520 IPNAT - ok

22:10:14.0639 10520 iPod Service (50d6ccc6ff5561f9f56946b3e6164fb8) C:\Program Files\iPod\bin\iPodService.exe

22:10:14.0654 10520 iPod Service - ok

22:10:14.0701 10520 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys

22:10:14.0732 10520 IRENUM - ok

22:10:14.0748 10520 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys

22:10:14.0748 10520 isapnp - ok

22:10:14.0795 10520 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys

22:10:14.0810 10520 iScsiPrt - ok

22:10:14.0896 10520 k57nd60a (455b75c19bf3f1f2ee3ac10e1169826c) C:\Windows\system32\DRIVERS\k57nd60a.sys

22:10:14.0916 10520 k57nd60a - ok

22:10:14.0956 10520 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys

22:10:14.0956 10520 kbdclass - ok

22:10:14.0986 10520 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys

22:10:14.0996 10520 kbdhid - ok

22:10:15.0016 10520 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:10:15.0026 10520 KeyIso - ok

22:10:15.0056 10520 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys

22:10:15.0086 10520 KSecDD - ok

22:10:15.0126 10520 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys

22:10:15.0136 10520 KSecPkg - ok

22:10:15.0156 10520 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys

22:10:15.0166 10520 ksthunk - ok

22:10:15.0246 10520 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll

22:10:15.0266 10520 KtmRm - ok

22:10:15.0346 10520 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll

22:10:15.0356 10520 LanmanServer - ok

22:10:15.0396 10520 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll

22:10:15.0396 10520 LanmanWorkstation - ok

22:10:15.0486 10520 Live Updater Service (b705c7097f9a0ec941d02dce7c7d426c) C:\Program Files\Acer\Acer Updater\UpdaterService.exe

22:10:15.0496 10520 Live Updater Service - ok

22:10:15.0546 10520 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys

22:10:15.0546 10520 lltdio - ok

22:10:15.0596 10520 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll

22:10:15.0616 10520 lltdsvc - ok

22:10:15.0656 10520 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll

22:10:15.0656 10520 lmhosts - ok

22:10:15.0796 10520 LMS (50c7ce53ef461870410355f1f2e7d515) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

22:10:15.0806 10520 LMS - ok

22:10:15.0856 10520 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys

22:10:15.0876 10520 LSI_FC - ok

22:10:15.0916 10520 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys

22:10:15.0926 10520 LSI_SAS - ok

22:10:15.0946 10520 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys

22:10:15.0956 10520 LSI_SAS2 - ok

22:10:15.0976 10520 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys

22:10:15.0986 10520 LSI_SCSI - ok

22:10:16.0046 10520 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys

22:10:16.0066 10520 luafv - ok

22:10:16.0096 10520 lxdi_device - ok

22:10:16.0206 10520 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:10:16.0216 10520 McAfee SiteAdvisor Service - ok

22:10:16.0296 10520 McAWFwk (9504f1dda1b67fb8d526fd4f8cc882f3) c:\PROGRA~1\mcafee\msc\mcawfwk.exe

22:10:16.0306 10520 McAWFwk - ok

22:10:16.0316 10520 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:10:16.0326 10520 McMPFSvc - ok

22:10:16.0336 10520 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:10:16.0346 10520 mcmscsvc - ok

22:10:16.0356 10520 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:10:16.0356 10520 McNaiAnn - ok

22:10:16.0366 10520 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:10:16.0366 10520 McNASvc - ok

22:10:16.0436 10520 McODS (c6232488cdbf063ce077fc7f8f8c248c) C:\Program Files\mcafee\VirusScan\mcods.exe

22:10:16.0456 10520 McODS - ok

22:10:16.0456 10520 McOobeSv (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:10:16.0466 10520 McOobeSv - ok

22:10:16.0476 10520 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:10:16.0476 10520 McProxy - ok

22:10:16.0566 10520 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe

22:10:16.0566 10520 McShield - ok

22:10:16.0726 10520 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll

22:10:16.0756 10520 Mcx2Svc - ok

22:10:16.0796 10520 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys

22:10:16.0806 10520 megasas - ok

22:10:16.0856 10520 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys

22:10:16.0887 10520 MegaSR - ok

22:10:16.0934 10520 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys

22:10:16.0934 10520 MEIx64 - ok

22:10:16.0996 10520 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys

22:10:17.0012 10520 mfeapfk - ok

22:10:17.0074 10520 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys

22:10:17.0074 10520 mfeavfk - ok

22:10:17.0106 10520 mfeavfk01 - ok

22:10:17.0168 10520 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe

22:10:17.0184 10520 mfefire - ok

22:10:17.0262 10520 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys

22:10:17.0277 10520 mfefirek - ok

22:10:17.0371 10520 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys

22:10:17.0386 10520 mfehidk - ok

22:10:17.0418 10520 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys

22:10:17.0418 10520 mfenlfk - ok

22:10:17.0449 10520 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys

22:10:17.0464 10520 mferkdet - ok

22:10:17.0511 10520 mfevtp (8f3b3c3625e3aaa11d6d4db8423e1721) C:\Windows\system32\mfevtps.exe

22:10:17.0511 10520 mfevtp - ok

22:10:17.0558 10520 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys

22:10:17.0574 10520 mfewfpk - ok

22:10:17.0620 10520 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

22:10:17.0620 10520 MMCSS - ok

22:10:17.0652 10520 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys

22:10:17.0652 10520 Modem - ok

22:10:17.0698 10520 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys

22:10:17.0698 10520 monitor - ok

22:10:17.0730 10520 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys

22:10:17.0745 10520 mouclass - ok

22:10:17.0776 10520 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\drivers\mouhid.sys

22:10:17.0776 10520 mouhid - ok

22:10:17.0808 10520 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys

22:10:17.0823 10520 mountmgr - ok

22:10:17.0870 10520 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys

22:10:17.0932 10520 mpio - ok

22:10:17.0964 10520 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys

22:10:17.0979 10520 mpsdrv - ok

22:10:18.0104 10520 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll

22:10:18.0120 10520 MpsSvc - ok

22:10:18.0151 10520 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys

22:10:18.0151 10520 MRxDAV - ok

22:10:18.0198 10520 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys

22:10:18.0198 10520 mrxsmb - ok

22:10:18.0260 10520 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys

22:10:18.0276 10520 mrxsmb10 - ok

22:10:18.0307 10520 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys

22:10:18.0322 10520 mrxsmb20 - ok

22:10:18.0354 10520 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys

22:10:18.0354 10520 msahci - ok

22:10:18.0369 10520 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys

22:10:18.0385 10520 msdsm - ok

22:10:18.0400 10520 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe

22:10:18.0416 10520 MSDTC - ok

22:10:18.0447 10520 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys

22:10:18.0447 10520 Msfs - ok

22:10:18.0463 10520 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys

22:10:18.0463 10520 mshidkmdf - ok

22:10:18.0478 10520 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys

22:10:18.0478 10520 msisadrv - ok

22:10:18.0525 10520 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll

22:10:18.0541 10520 MSiSCSI - ok

22:10:18.0556 10520 msiserver - ok

22:10:18.0619 10520 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:10:18.0634 10520 MSK80Service - ok

22:10:18.0650 10520 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys

22:10:18.0666 10520 MSKSSRV - ok

22:10:18.0666 10520 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys

22:10:18.0666 10520 MSPCLOCK - ok

22:10:18.0681 10520 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys

22:10:18.0697 10520 MSPQM - ok

22:10:18.0754 10520 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys

22:10:18.0774 10520 MsRPC - ok

22:10:18.0794 10520 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys

22:10:18.0794 10520 mssmbios - ok

22:10:18.0804 10520 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys

22:10:18.0814 10520 MSTEE - ok

22:10:18.0824 10520 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys

22:10:18.0824 10520 MTConfig - ok

22:10:18.0844 10520 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys

22:10:18.0854 10520 Mup - ok

22:10:18.0874 10520 mwlPSDFilter (c009123b206c56854f4e88596035231d) C:\Windows\system32\DRIVERS\mwlPSDFilter.sys

22:10:18.0874 10520 mwlPSDFilter - ok

22:10:18.0894 10520 mwlPSDNServ (bf3739eeb9f008b1debac115089a53f8) C:\Windows\system32\DRIVERS\mwlPSDNServ.sys

22:10:18.0904 10520 mwlPSDNServ - ok

22:10:18.0914 10520 mwlPSDVDisk (38dd143d95e7a01b86f219dda9c28779) C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys

22:10:18.0924 10520 mwlPSDVDisk - ok

22:10:18.0984 10520 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll

22:10:19.0014 10520 napagent - ok

22:10:19.0074 10520 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys

22:10:19.0084 10520 NativeWifiP - ok

22:10:19.0214 10520 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys

22:10:19.0234 10520 NDIS - ok

22:10:19.0274 10520 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys

22:10:19.0274 10520 NdisCap - ok

22:10:19.0314 10520 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys

22:10:19.0314 10520 NdisTapi - ok

22:10:19.0354 10520 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys

22:10:19.0354 10520 Ndisuio - ok

22:10:19.0394 10520 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys

22:10:19.0414 10520 NdisWan - ok

22:10:19.0444 10520 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys

22:10:19.0454 10520 NDProxy - ok

22:10:19.0464 10520 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys

22:10:19.0474 10520 NetBIOS - ok

22:10:19.0524 10520 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys

22:10:19.0524 10520 NetBT - ok

22:10:19.0564 10520 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:10:19.0564 10520 Netlogon - ok

22:10:19.0634 10520 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll

22:10:19.0654 10520 Netman - ok

22:10:19.0704 10520 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll

22:10:19.0714 10520 netprofm - ok

22:10:19.0784 10520 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

22:10:19.0814 10520 NetTcpPortSharing - ok

22:10:19.0884 10520 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys

22:10:19.0884 10520 nfrd960 - ok

22:10:19.0974 10520 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll

22:10:19.0984 10520 NlaSvc - ok

22:10:20.0384 10520 NOBU (5839a8027d6d324a7cd494051a96628c) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe

22:10:20.0454 10520 NOBU - ok

22:10:20.0624 10520 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys

22:10:20.0624 10520 Npfs - ok

22:10:20.0654 10520 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll

22:10:20.0654 10520 nsi - ok

22:10:20.0674 10520 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys

22:10:20.0684 10520 nsiproxy - ok

22:10:20.0864 10520 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys

22:10:20.0924 10520 Ntfs - ok

22:10:21.0024 10520 NTI IScheduleSvc (1873214666f6f0a883742df91fbc48c9) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe

22:10:21.0034 10520 NTI IScheduleSvc - ok

22:10:21.0194 10520 NTIDrvr (ee3ba1024594d5d09e314f206b94069e) C:\Windows\system32\drivers\NTIDrvr.sys

22:10:21.0194 10520 NTIDrvr - ok

22:10:21.0214 10520 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys

22:10:21.0214 10520 Null - ok

22:10:22.0585 10520 nvlddmkm (73dc184af4d2addc41b37344636d2cc7) C:\Windows\system32\DRIVERS\nvlddmkm.sys

22:10:22.0913 10520 nvlddmkm - ok

22:10:23.0100 10520 nvpciflt (477a3cf725c4040f77eb9e2c17b922a0) C:\Windows\system32\DRIVERS\nvpciflt.sys

22:10:23.0100 10520 nvpciflt - ok

22:10:23.0163 10520 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys

22:10:23.0178 10520 nvraid - ok

22:10:23.0209 10520 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys

22:10:23.0209 10520 nvstor - ok

22:10:23.0350 10520 NVSvc (6d1056430afc72a6097409a70a716c15) C:\Windows\system32\nvvsvc.exe

22:10:23.0381 10520 NVSvc - ok

22:10:23.0662 10520 nvUpdatusService (a072423c3812472d326bc774610055cf) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

22:10:23.0724 10520 nvUpdatusService - ok

22:10:23.0927 10520 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys

22:10:23.0958 10520 nv_agp - ok

22:10:23.0974 10520 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys

22:10:23.0989 10520 ohci1394 - ok

22:10:24.0083 10520 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

22:10:24.0099 10520 ose - ok

22:10:24.0598 10520 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

22:10:24.0723 10520 osppsvc - ok

22:10:24.0879 10520 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

22:10:24.0894 10520 p2pimsvc - ok

22:10:24.0957 10520 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll

22:10:24.0972 10520 p2psvc - ok

22:10:25.0050 10520 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys

22:10:25.0050 10520 Parport - ok

22:10:25.0081 10520 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys

22:10:25.0113 10520 partmgr - ok

22:10:25.0144 10520 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll

22:10:25.0144 10520 PcaSvc - ok

22:10:25.0191 10520 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys

22:10:25.0206 10520 pci - ok

22:10:25.0206 10520 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys

22:10:25.0222 10520 pciide - ok

22:10:25.0269 10520 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys

22:10:25.0284 10520 pcmcia - ok

22:10:25.0300 10520 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys

22:10:25.0300 10520 pcw - ok

22:10:25.0393 10520 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys

22:10:25.0409 10520 PEAUTH - ok

22:10:25.0534 10520 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe

22:10:25.0549 10520 PerfHost - ok

22:10:25.0877 10520 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll

22:10:25.0939 10520 pla - ok

22:10:26.0127 10520 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll

22:10:26.0142 10520 PlugPlay - ok

22:10:26.0158 10520 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll

22:10:26.0158 10520 PNRPAutoReg - ok

22:10:26.0220 10520 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

22:10:26.0236 10520 PNRPsvc - ok

22:10:26.0329 10520 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll

22:10:26.0329 10520 PolicyAgent - ok

22:10:26.0376 10520 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll

22:10:26.0392 10520 Power - ok

22:10:26.0470 10520 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys

22:10:26.0485 10520 PptpMiniport - ok

22:10:26.0517 10520 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys

22:10:26.0517 10520 Processor - ok

22:10:26.0595 10520 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll

22:10:26.0610 10520 ProfSvc - ok

22:10:26.0626 10520 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:10:26.0626 10520 ProtectedStorage - ok

22:10:26.0673 10520 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys

22:10:26.0688 10520 Psched - ok

22:10:26.0875 10520 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys

22:10:26.0922 10520 ql2300 - ok

22:10:27.0109 10520 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys

22:10:27.0109 10520 ql40xx - ok

22:10:27.0172 10520 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll

22:10:27.0203 10520 QWAVE - ok

22:10:27.0219 10520 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys

22:10:27.0219 10520 QWAVEdrv - ok

22:10:27.0250 10520 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys

22:10:27.0250 10520 RasAcd - ok

22:10:27.0297 10520 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys

22:10:27.0297 10520 RasAgileVpn - ok

22:10:27.0328 10520 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll

22:10:27.0359 10520 RasAuto - ok

22:10:27.0390 10520 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys

22:10:27.0421 10520 Rasl2tp - ok

22:10:27.0468 10520 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll

22:10:27.0484 10520 RasMan - ok

22:10:27.0515 10520 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys

22:10:27.0515 10520 RasPppoe - ok

22:10:27.0546 10520 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys

22:10:27.0546 10520 RasSstp - ok

22:10:27.0593 10520 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys

22:10:27.0609 10520 rdbss - ok

22:10:27.0624 10520 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys

22:10:27.0624 10520 rdpbus - ok

22:10:27.0640 10520 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys

22:10:27.0640 10520 RDPCDD - ok

22:10:27.0655 10520 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys

22:10:27.0655 10520 RDPENCDD - ok

22:10:27.0655 10520 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys

22:10:27.0655 10520 RDPREFMP - ok

22:10:27.0702 10520 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys

22:10:27.0718 10520 RDPWD - ok

22:10:27.0749 10520 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys

22:10:27.0765 10520 rdyboost - ok

22:10:27.0860 10520 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll

22:10:27.0880 10520 RemoteAccess - ok

22:10:27.0950 10520 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll

22:10:27.0990 10520 RemoteRegistry - ok

22:10:28.0050 10520 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll

22:10:28.0060 10520 RpcEptMapper - ok

22:10:28.0090 10520 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe

22:10:28.0090 10520 RpcLocator - ok

22:10:28.0170 10520 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll

22:10:28.0180 10520 RpcSs - ok

22:10:28.0230 10520 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys

22:10:28.0230 10520 rspndr - ok

22:10:28.0270 10520 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:10:28.0280 10520 SamSs - ok

22:10:28.0310 10520 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys

22:10:28.0340 10520 sbp2port - ok

22:10:28.0380 10520 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll

22:10:28.0390 10520 SCardSvr - ok

22:10:28.0410 10520 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys

22:10:28.0420 10520 scfilter - ok

22:10:28.0550 10520 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll

22:10:28.0590 10520 Schedule - ok

22:10:28.0620 10520 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll

22:10:28.0620 10520 SCPolicySvc - ok

22:10:28.0690 10520 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys

22:10:28.0690 10520 sdbus - ok

22:10:28.0740 10520 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll

22:10:28.0750 10520 SDRSVC - ok

22:10:28.0770 10520 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys

22:10:28.0770 10520 secdrv - ok

22:10:28.0800 10520 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll

22:10:28.0800 10520 seclogon - ok

22:10:28.0830 10520 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll

22:10:28.0840 10520 SENS - ok

22:10:28.0870 10520 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll

22:10:28.0880 10520 SensrSvc - ok

22:10:28.0920 10520 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys

22:10:28.0920 10520 Serenum - ok

22:10:28.0950 10520 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys

22:10:28.0960 10520 Serial - ok

22:10:28.0990 10520 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys

22:10:29.0000 10520 sermouse - ok

22:10:29.0050 10520 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll

22:10:29.0070 10520 SessionEnv - ok

22:10:29.0080 10520 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys

22:10:29.0080 10520 sffdisk - ok

22:10:29.0090 10520 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys

22:10:29.0090 10520 sffp_mmc - ok

22:10:29.0100 10520 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys

22:10:29.0100 10520 sffp_sd - ok

22:10:29.0110 10520 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys

22:10:29.0110 10520 sfloppy - ok

22:10:29.0251 10520 Sftfs (c6cc9297bd53e5229653303e556aa539) C:\Windows\system32\DRIVERS\Sftfslh.sys

22:10:29.0281 10520 Sftfs - ok

22:10:29.0431 10520 sftlist (13693b6354dd6e72dc5131da7d764b90) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

22:10:29.0441 10520 sftlist - ok

22:10:29.0631 10520 Sftplay (390aa7bc52cee43f6790cdea1e776703) C:\Windows\system32\DRIVERS\Sftplaylh.sys

22:10:29.0641 10520 Sftplay - ok

22:10:29.0691 10520 Sftredir (617e29a0b0a2807466560d4c4e338d3e) C:\Windows\system32\DRIVERS\Sftredirlh.sys

22:10:29.0691 10520 Sftredir - ok

22:10:29.0741 10520 Sftvol (8f571f016fa1976f445147e9e6c8ae9b) C:\Windows\system32\DRIVERS\Sftvollh.sys

22:10:29.0741 10520 Sftvol - ok

22:10:29.0801 10520 sftvsa (c3cddd18f43d44ab713cf8c4916f7696) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

22:10:29.0801 10520 sftvsa - ok

22:10:29.0911 10520 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll

22:10:29.0981 10520 ShellHWDetection - ok

22:10:30.0031 10520 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys

22:10:30.0041 10520 SiSRaid2 - ok

22:10:30.0061 10520 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys

22:10:30.0061 10520 SiSRaid4 - ok

22:10:30.0091 10520 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys

22:10:30.0101 10520 Smb - ok

22:10:30.0151 10520 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe

22:10:30.0151 10520 SNMPTRAP - ok

22:10:30.0171 10520 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys

22:10:30.0171 10520 spldr - ok

22:10:30.0241 10520 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe

22:10:30.0261 10520 Spooler - ok

22:10:30.0551 10520 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe

22:10:30.0591 10520 sppsvc - ok

22:10:30.0731 10520 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll

22:10:30.0751 10520 sppuinotify - ok

22:10:30.0851 10520 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys

22:10:30.0861 10520 srv - ok

22:10:30.0911 10520 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys

22:10:30.0921 10520 srv2 - ok

22:10:30.0961 10520 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys

22:10:30.0961 10520 srvnet - ok

22:10:31.0001 10520 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll

22:10:31.0011 10520 SSDPSRV - ok

22:10:31.0041 10520 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll

22:10:31.0041 10520 SstpSvc - ok

22:10:31.0121 10520 Steam Client Service - ok

22:10:31.0161 10520 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys

22:10:31.0161 10520 stexstor - ok

22:10:31.0261 10520 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll

22:10:31.0281 10520 stisvc - ok

22:10:31.0301 10520 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys

22:10:31.0311 10520 swenum - ok

22:10:31.0381 10520 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll

22:10:31.0401 10520 swprv - ok

22:10:31.0591 10520 SynTP (ef51b22706db03f0857fade127c804ec) C:\Windows\system32\DRIVERS\SynTP.sys

22:10:31.0641 10520 SynTP - ok

22:10:31.0986 10520 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll

22:10:32.0048 10520 SysMain - ok

22:10:32.0158 10520 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll

22:10:32.0158 10520 TabletInputService - ok

22:10:32.0204 10520 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll

22:10:32.0220 10520 TapiSrv - ok

22:10:32.0236 10520 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll

22:10:32.0251 10520 TBS - ok

22:10:32.0470 10520 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys

22:10:32.0532 10520 Tcpip - ok

22:10:32.0906 10520 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys

22:10:32.0922 10520 TCPIP6 - ok

22:10:33.0031 10520 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys

22:10:33.0031 10520 tcpipreg - ok

22:10:33.0062 10520 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys

22:10:33.0062 10520 TDPIPE - ok

22:10:33.0094 10520 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys

22:10:33.0094 10520 TDTCP - ok

22:10:33.0125 10520 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys

22:10:33.0156 10520 tdx - ok

22:10:33.0187 10520 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys

22:10:33.0187 10520 TermDD - ok

22:10:33.0281 10520 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll

22:10:33.0296 10520 TermService - ok

22:10:33.0328 10520 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll

22:10:33.0328 10520 Themes - ok

22:10:33.0359 10520 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

22:10:33.0359 10520 THREADORDER - ok

22:10:33.0390 10520 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll

22:10:33.0421 10520 TrkWks - ok

22:10:33.0484 10520 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe

22:10:33.0484 10520 TrustedInstaller - ok

22:10:33.0562 10520 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys

22:10:33.0562 10520 tssecsrv - ok

22:10:33.0608 10520 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys

22:10:33.0608 10520 TsUsbFlt - ok

22:10:33.0624 10520 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys

22:10:33.0624 10520 TsUsbGD - ok

22:10:33.0671 10520 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys

22:10:33.0702 10520 tunnel - ok

22:10:33.0749 10520 TurboB (fd24f98d2898be093fe926604be7db99) C:\Windows\system32\DRIVERS\TurboB.sys

22:10:33.0780 10520 TurboB - ok

22:10:33.0847 10520 TurboBoost (600b406a04d90f577fea8a88d7379f08) C:\Program Files\Intel\TurboBoost\TurboBoost.exe

22:10:33.0887 10520 TurboBoost - ok

22:10:33.0947 10520 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys

22:10:33.0957 10520 uagp35 - ok

22:10:34.0017 10520 UBHelper (a17d5e1a6df4eab0a480f2c490de4c9d) C:\Windows\system32\drivers\UBHelper.sys

22:10:34.0017 10520 UBHelper - ok

22:10:34.0107 10520 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys

22:10:34.0117 10520 udfs - ok

22:10:34.0157 10520 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe

22:10:34.0167 10520 UI0Detect - ok

22:10:34.0187 10520 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys

22:10:34.0187 10520 uliagpkx - ok

22:10:34.0227 10520 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys

22:10:34.0227 10520 umbus - ok

22:10:34.0247 10520 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys

22:10:34.0247 10520 UmPass - ok

22:10:34.0607 10520 UNS (374ebda379a8f38e0cfc2211611e7167) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

22:10:34.0697 10520 UNS - ok

22:10:34.0887 10520 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll

22:10:34.0897 10520 upnphost - ok

22:10:34.0977 10520 USBAAPL64 (fb251567f41bc61988b26731dec19e4b) C:\Windows\system32\Drivers\usbaapl64.sys

22:10:34.0997 10520 USBAAPL64 - ok

22:10:35.0077 10520 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys

22:10:35.0097 10520 usbaudio - ok

22:10:35.0147 10520 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys

22:10:35.0147 10520 usbccgp - ok

22:10:35.0197 10520 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys

22:10:35.0217 10520 usbcir - ok

22:10:35.0257 10520 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys

22:10:35.0257 10520 usbehci - ok

22:10:35.0337 10520 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\drivers\usbhub.sys

22:10:35.0347 10520 usbhub - ok

22:10:35.0367 10520 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys

22:10:35.0377 10520 usbohci - ok

22:10:35.0407 10520 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys

22:10:35.0417 10520 usbprint - ok

22:10:35.0457 10520 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys

22:10:35.0457 10520 usbscan - ok

22:10:35.0507 10520 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS

22:10:35.0517 10520 USBSTOR - ok

22:10:35.0527 10520 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys

22:10:35.0537 10520 usbuhci - ok

22:10:35.0587 10520 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys

22:10:35.0607 10520 usbvideo - ok

22:10:35.0647 10520 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll

22:10:35.0657 10520 UxSms - ok

22:10:35.0697 10520 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:10:35.0697 10520 VaultSvc - ok

22:10:35.0747 10520 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys

22:10:35.0757 10520 vdrvroot - ok

22:10:35.0872 10520 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe

22:10:35.0904 10520 vds - ok

22:10:35.0950 10520 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys

22:10:35.0950 10520 vga - ok

22:10:35.0982 10520 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys

22:10:35.0997 10520 VgaSave - ok

22:10:36.0038 10520 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys

22:10:36.0048 10520 vhdmp - ok

22:10:36.0058 10520 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys

22:10:36.0068 10520 viaide - ok

22:10:36.0108 10520 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys

22:10:36.0108 10520 volmgr - ok

22:10:36.0158 10520 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys

22:10:36.0178 10520 volmgrx - ok

22:10:36.0208 10520 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys

22:10:36.0218 10520 volsnap - ok

22:10:36.0248 10520 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys

22:10:36.0258 10520 vsmraid - ok

22:10:36.0458 10520 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe

22:10:36.0518 10520 VSS - ok

22:10:36.0748 10520 vToolbarUpdater11.1.0 (5fa45791413acce628d5361458f32dde) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe

22:10:36.0778 10520 vToolbarUpdater11.1.0 - ok

22:10:36.0948 10520 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys

22:10:36.0948 10520 vwifibus - ok

22:10:36.0978 10520 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys

22:10:36.0978 10520 vwififlt - ok

22:10:37.0018 10520 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys

22:10:37.0018 10520 vwifimp - ok

22:10:37.0088 10520 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll

22:10:37.0108 10520 W32Time - ok

22:10:37.0128 10520 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys

22:10:37.0128 10520 WacomPen - ok

22:10:37.0168 10520 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

22:10:37.0178 10520 WANARP - ok

22:10:37.0198 10520 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

22:10:37.0198 10520 Wanarpv6 - ok

22:10:37.0348 10520 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe

22:10:37.0368 10520 WatAdminSvc - ok

22:10:37.0498 10520 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe

22:10:37.0548 10520 wbengine - ok

22:10:37.0718 10520 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll

22:10:37.0728 10520 WbioSrvc - ok

22:10:37.0788 10520 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll

22:10:37.0798 10520 wcncsvc - ok

22:10:37.0828 10520 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll

22:10:37.0828 10520 WcsPlugInService - ok

22:10:37.0868 10520 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys

22:10:37.0868 10520 Wd - ok

22:10:37.0938 10520 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys

22:10:37.0958 10520 Wdf01000 - ok

22:10:37.0988 10520 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

22:10:37.0998 10520 WdiServiceHost - ok

22:10:38.0008 10520 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

22:10:38.0008 10520 WdiSystemHost - ok

22:10:38.0048 10520 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll

22:10:38.0058 10520 WebClient - ok

22:10:38.0094 10520 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll

22:10:38.0110 10520 Wecsvc - ok

22:10:38.0125 10520 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll

22:10:38.0141 10520 wercplsupport - ok

22:10:38.0156 10520 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll

22:10:38.0156 10520 WerSvc - ok

22:10:38.0219 10520 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys

22:10:38.0219 10520 WfpLwf - ok

22:10:38.0234 10520 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys

22:10:38.0234 10520 WIMMount - ok

22:10:38.0250 10520 WinHttpAutoProxySvc - ok

22:10:38.0328 10520 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll

22:10:38.0328 10520 Winmgmt - ok

22:10:38.0562 10520 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll

22:10:38.0609 10520 WinRM - ok

22:10:38.0843 10520 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll

22:10:38.0874 10520 Wlansvc - ok

22:10:38.0952 10520 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

22:10:38.0968 10520 wlcrasvc - ok

22:10:39.0217 10520 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

22:10:39.0264 10520 wlidsvc - ok

22:10:39.0451 10520 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys

22:10:39.0467 10520 WmiAcpi - ok

22:10:39.0560 10520 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe

22:10:39.0576 10520 wmiApSrv - ok

22:10:39.0623 10520 WMPNetworkSvc - ok

22:10:39.0670 10520 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll

22:10:39.0670 10520 WPCSvc - ok

22:10:39.0716 10520 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll

22:10:39.0763 10520 WPDBusEnum - ok

22:10:39.0794 10520 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys

22:10:39.0810 10520 ws2ifsl - ok

22:10:39.0826 10520 WSearch - ok

22:10:40.0122 10520 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll

22:10:40.0184 10520 wuauserv - ok

22:10:40.0356 10520 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys

22:10:40.0387 10520 WudfPf - ok

22:10:40.0434 10520 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys

22:10:40.0465 10520 WUDFRd - ok

22:10:40.0506 10520 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll

22:10:40.0516 10520 wudfsvc - ok

22:10:40.0556 10520 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll

22:10:40.0566 10520 WwanSvc - ok

22:10:40.0636 10520 ZTEusbmdm6k (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys

22:10:40.0656 10520 ZTEusbmdm6k - ok

22:10:40.0686 10520 ZTEusbnmea (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbnmea.sys

22:10:40.0696 10520 ZTEusbnmea - ok

22:10:40.0736 10520 ZTEusbser6k (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbser6k.sys

22:10:40.0746 10520 ZTEusbser6k - ok

22:10:40.0796 10520 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0

22:10:41.0456 10520 \Device\Harddisk0\DR0 - ok

22:10:41.0456 10520 Boot (0x1200) (56079132efdd728008fccbb6613b831c) \Device\Harddisk0\DR0\Partition0

22:10:41.0456 10520 \Device\Harddisk0\DR0\Partition0 - ok

22:10:41.0466 10520 Boot (0x1200) (3339ef87b3a797678622390a0573ded4) \Device\Harddisk0\DR0\Partition1

22:10:41.0466 10520 \Device\Harddisk0\DR0\Partition1 - ok

22:10:41.0466 10520 ============================================================

22:10:41.0466 10520 Scan finished

22:10:41.0466 10520 ============================================================

22:10:41.0486 4404 Detected object count: 0

22:10:41.0486 4404 Actual detected object count: 0

22:10:54.0853 1640 ============================================================

22:10:54.0853 1640 Scan started

22:10:54.0853 1640 Mode: Manual;

22:10:54.0853 1640 ============================================================

22:10:55.0165 1640 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys

22:10:55.0181 1640 1394ohci - ok

22:10:55.0243 1640 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys

22:10:55.0243 1640 ACPI - ok

22:10:55.0275 1640 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys

22:10:55.0275 1640 AcpiPmi - ok

22:10:55.0368 1640 AdobeARMservice (11a52cf7b265631deeb24c6149309eff) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

22:10:55.0368 1640 AdobeARMservice - ok

22:10:55.0588 1640 AdobeFlashPlayerUpdateSvc (f3cd7b20b27d1772c946df993ff3635c) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

22:10:55.0728 1640 AdobeFlashPlayerUpdateSvc - ok

22:10:55.0806 1640 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys

22:10:55.0822 1640 adp94xx - ok

22:10:55.0884 1640 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys

22:10:55.0884 1640 adpahci - ok

22:10:55.0931 1640 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys

22:10:55.0941 1640 adpu320 - ok

22:10:55.0971 1640 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll

22:10:55.0971 1640 AeLookupSvc - ok

22:10:56.0051 1640 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys

22:10:56.0061 1640 AFD - ok

22:10:56.0081 1640 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys

22:10:56.0091 1640 agp440 - ok

22:10:56.0111 1640 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe

22:10:56.0121 1640 ALG - ok

22:10:56.0121 1640 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys

22:10:56.0121 1640 aliide - ok

22:10:56.0131 1640 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys

22:10:56.0141 1640 amdide - ok

22:10:56.0171 1640 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys

22:10:56.0171 1640 AmdK8 - ok

22:10:56.0181 1640 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys

22:10:56.0181 1640 AmdPPM - ok

22:10:56.0201 1640 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys

22:10:56.0211 1640 amdsata - ok

22:10:56.0251 1640 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys

22:10:56.0251 1640 amdsbs - ok

22:10:56.0281 1640 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys

22:10:56.0281 1640 amdxata - ok

22:10:56.0311 1640 Andbus (bc3e934af147211cb5d61ac257371e4a) C:\Windows\system32\DRIVERS\lgandbus64.sys

22:10:56.0311 1640 Andbus - ok

22:10:56.0361 1640 AndDiag (aed499431a45810d28beca2f7cfd2635) C:\Windows\system32\DRIVERS\lganddiag64.sys

22:10:56.0361 1640 AndDiag - ok

22:10:56.0401 1640 AndGps (c2c42287f8e8f54081b46d22a413e8d3) C:\Windows\system32\DRIVERS\lgandgps64.sys

22:10:56.0401 1640 AndGps - ok

22:10:56.0441 1640 ANDModem (75befd9d99fd08ca2d697d878ef4f23d) C:\Windows\system32\DRIVERS\lgandmodem64.sys

22:10:56.0441 1640 ANDModem - ok

22:10:56.0451 1640 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys

22:10:56.0451 1640 AppID - ok

22:10:56.0491 1640 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll

22:10:56.0491 1640 AppIDSvc - ok

22:10:56.0531 1640 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll

22:10:56.0531 1640 Appinfo - ok

22:10:56.0661 1640 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

22:10:56.0661 1640 Apple Mobile Device - ok

22:10:56.0691 1640 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys

22:10:56.0691 1640 arc - ok

22:10:56.0721 1640 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys

22:10:56.0721 1640 arcsas - ok

22:10:56.0731 1640 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys

22:10:56.0731 1640 AsyncMac - ok

22:10:56.0751 1640 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys

22:10:56.0761 1640 atapi - ok

22:10:56.0861 1640 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll

22:10:56.0871 1640 AudioEndpointBuilder - ok

22:10:56.0891 1640 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll

22:10:56.0891 1640 AudioSrv - ok

22:10:57.0291 1640 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

22:10:57.0321 1640 AVGIDSAgent - ok

22:10:57.0481 1640 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys

22:10:57.0481 1640 AVGIDSDriver - ok

22:10:57.0501 1640 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys

22:10:57.0501 1640 AVGIDSEH - ok

22:10:57.0531 1640 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys

22:10:57.0531 1640 AVGIDSFilter - ok

22:10:57.0591 1640 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\Windows\system32\DRIVERS\avgldx64.sys

22:10:57.0601 1640 Avgldx64 - ok

22:10:57.0621 1640 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\Windows\system32\DRIVERS\avgmfx64.sys

22:10:57.0621 1640 Avgmfx64 - ok

22:10:57.0641 1640 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\Windows\system32\DRIVERS\avgrkx64.sys

22:10:57.0651 1640 Avgrkx64 - ok

22:10:57.0711 1640 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\Windows\system32\DRIVERS\avgtdia.sys

22:10:57.0721 1640 Avgtdia - ok

22:10:57.0831 1640 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

22:10:57.0841 1640 avgwd - ok

22:10:57.0891 1640 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll

22:10:57.0891 1640 AxInstSV - ok

22:10:58.0006 1640 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys

22:10:58.0006 1640 b06bdrv - ok

22:10:58.0084 1640 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys

22:10:58.0084 1640 b57nd60a - ok

22:10:58.0116 1640 b57xdbd (a424cb46a145e5aabf15621550976df2) C:\Windows\system32\DRIVERS\b57xdbd.sys

22:10:58.0116 1640 b57xdbd - ok

22:10:58.0131 1640 b57xdmp (be4e6fd5a898812b85d5817ad9754a9f) C:\Windows\system32\DRIVERS\b57xdmp.sys

22:10:58.0131 1640 b57xdmp - ok

22:10:58.0225 1640 BBSvc (87f3bcf82a63e900af896cd930bf7e05) C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE

22:10:58.0225 1640 BBSvc - ok

22:10:58.0287 1640 BBUpdate (78779ee07231c658b483b1f38b5088df) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE

22:10:58.0287 1640 BBUpdate - ok

22:10:58.0708 1640 BCM43XX (11f844b46b631337395651abe9c4167b) C:\Windows\system32\DRIVERS\bcmwl664.sys

22:10:58.0786 1640 BCM43XX - ok

22:10:58.0927 1640 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll

22:10:58.0927 1640 BDESVC - ok

22:10:58.0974 1640 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys

22:10:58.0989 1640 Beep - ok

22:10:59.0083 1640 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll

22:10:59.0098 1640 BFE - ok

22:10:59.0223 1640 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll

22:10:59.0239 1640 BITS - ok

22:10:59.0270 1640 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys

22:10:59.0270 1640 blbdrive - ok

22:10:59.0395 1640 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe

22:10:59.0411 1640 Bonjour Service - ok

22:10:59.0442 1640 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys

22:10:59.0442 1640 bowser - ok

22:10:59.0457 1640 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys

22:10:59.0457 1640 BrFiltLo - ok

22:10:59.0473 1640 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys

22:10:59.0473 1640 BrFiltUp - ok

22:10:59.0520 1640 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll

22:10:59.0535 1640 Browser - ok

22:10:59.0582 1640 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys

22:10:59.0582 1640 Brserid - ok

22:10:59.0598 1640 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys

22:10:59.0598 1640 BrSerWdm - ok

22:10:59.0613 1640 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys

22:10:59.0613 1640 BrUsbMdm - ok

22:10:59.0629 1640 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys

22:10:59.0629 1640 BrUsbSer - ok

22:10:59.0676 1640 bScsiMSa (0970d8b7151e9113bf8d44ce2e954df7) C:\Windows\system32\DRIVERS\bScsiMSa.sys

22:10:59.0676 1640 bScsiMSa - ok

22:10:59.0691 1640 bScsiSDa (0c1eee5af32402d306874b110de237ec) C:\Windows\system32\DRIVERS\bScsiSDa.sys

22:10:59.0691 1640 bScsiSDa - ok

22:10:59.0723 1640 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys

22:10:59.0723 1640 BTHMODEM - ok

22:10:59.0738 1640 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll

22:10:59.0754 1640 bthserv - ok

22:10:59.0785 1640 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys

22:10:59.0801 1640 cdfs - ok

22:10:59.0847 1640 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys

22:10:59.0847 1640 cdrom - ok

22:10:59.0879 1640 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll

22:10:59.0894 1640 CertPropSvc - ok

22:10:59.0925 1640 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys

22:10:59.0925 1640 cfwids - ok

22:10:59.0957 1640 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys

22:10:59.0957 1640 circlass - ok

22:11:00.0019 1640 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys

22:11:00.0035 1640 CLFS - ok

22:11:00.0128 1640 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

22:11:00.0144 1640 clr_optimization_v2.0.50727_32 - ok

22:11:00.0191 1640 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

22:11:00.0191 1640 clr_optimization_v2.0.50727_64 - ok

22:11:00.0269 1640 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

22:11:00.0269 1640 clr_optimization_v4.0.30319_32 - ok

22:11:00.0315 1640 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

22:11:00.0331 1640 clr_optimization_v4.0.30319_64 - ok

22:11:00.0347 1640 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys

22:11:00.0347 1640 CmBatt - ok

22:11:00.0378 1640 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys

22:11:00.0378 1640 cmdide - ok

22:11:00.0456 1640 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys

22:11:00.0456 1640 CNG - ok

22:11:00.0471 1640 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys

22:11:00.0471 1640 Compbatt - ok

22:11:00.0503 1640 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys

22:11:00.0503 1640 CompositeBus - ok

22:11:00.0503 1640 COMSysApp - ok

22:11:00.0534 1640 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys

22:11:00.0534 1640 crcdisk - ok

22:11:00.0596 1640 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll

22:11:00.0612 1640 CryptSvc - ok

22:11:00.0799 1640 cvhsvc (72794d112cbaff3bc0c29bf7350d4741) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

22:11:00.0815 1640 cvhsvc - ok

22:11:00.0893 1640 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll

22:11:00.0908 1640 DcomLaunch - ok

22:11:00.0971 1640 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll

22:11:00.0971 1640 defragsvc - ok

22:11:01.0033 1640 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys

22:11:01.0033 1640 DfsC - ok

22:11:01.0080 1640 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll

22:11:01.0080 1640 Dhcp - ok

22:11:01.0127 1640 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys

22:11:01.0127 1640 discache - ok

22:11:01.0142 1640 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys

22:11:01.0142 1640 Disk - ok

22:11:01.0189 1640 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll

22:11:01.0189 1640 Dnscache - ok

22:11:01.0236 1640 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll

22:11:01.0236 1640 dot3svc - ok

22:11:01.0267 1640 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll

22:11:01.0267 1640 DPS - ok

22:11:01.0283 1640 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys

22:11:01.0298 1640 drmkaud - ok

22:11:01.0392 1640 DsiWMIService (9dd3a22f804697606c2b7ff9e912ff6b) C:\Program Files (x86)\Launch Manager\dsiwmis.exe

22:11:01.0407 1640 DsiWMIService - ok

22:11:01.0532 1640 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys

22:11:01.0548 1640 DXGKrnl - ok

22:11:01.0579 1640 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll

22:11:01.0579 1640 EapHost - ok

22:11:01.0953 1640 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys

22:11:02.0000 1640 ebdrv - ok

22:11:02.0141 1640 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe

22:11:02.0141 1640 EFS - ok

22:11:02.0234 1640 EgisTec Ticket Service (18dd872dd46acb24e106dc2c9c270466) C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe

22:11:02.0234 1640 EgisTec Ticket Service - ok

22:11:02.0359 1640 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe

22:11:02.0375 1640 ehRecvr - ok

22:11:02.0406 1640 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe

22:11:02.0406 1640 ehSched - ok

22:11:02.0515 1640 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys

22:11:02.0531 1640 elxstor - ok

22:11:02.0687 1640 ePowerSvc (ac5c64f828c0a6a1350971501ac2a0c7) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe

22:11:02.0702 1640 ePowerSvc - ok

22:11:02.0827 1640 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys

22:11:02.0827 1640 ErrDev - ok

22:11:02.0905 1640 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll

22:11:02.0921 1640 EventSystem - ok

22:11:02.0952 1640 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys

22:11:02.0952 1640 exfat - ok

22:11:02.0999 1640 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys

22:11:03.0014 1640 fastfat - ok

22:11:03.0092 1640 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe

22:11:03.0108 1640 Fax - ok

22:11:03.0139 1640 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys

22:11:03.0139 1640 fdc - ok

22:11:03.0155 1640 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll

22:11:03.0170 1640 fdPHost - ok

22:11:03.0186 1640 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll

22:11:03.0186 1640 FDResPub - ok

22:11:03.0217 1640 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys

22:11:03.0217 1640 FileInfo - ok

22:11:03.0248 1640 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys

22:11:03.0248 1640 Filetrace - ok

22:11:03.0389 1640 FLEXnet Licensing Service (bb0667b0171b632b97ea759515476f07) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

22:11:03.0404 1640 FLEXnet Licensing Service - ok

22:11:03.0435 1640 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys

22:11:03.0435 1640 flpydisk - ok

22:11:03.0482 1640 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys

22:11:03.0498 1640 FltMgr - ok

22:11:03.0638 1640 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll

22:11:03.0654 1640 FontCache - ok

22:11:03.0732 1640 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

22:11:03.0732 1640 FontCache3.0.0.0 - ok

22:11:03.0779 1640 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys

22:11:03.0779 1640 FsDepends - ok

22:11:03.0810 1640 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys

22:11:03.0810 1640 Fs_Rec - ok

22:11:03.0857 1640 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys

22:11:03.0872 1640 fvevol - ok

22:11:03.0935 1640 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys

22:11:03.0935 1640 gagp30kx - ok

22:11:04.0028 1640 GamesAppService (c403c5db49a0f9aaf4f2128edc0106d8) C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

22:11:04.0028 1640 GamesAppService - ok

22:11:04.0059 1640 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

22:11:04.0059 1640 GEARAspiWDM - ok

22:11:04.0169 1640 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll

22:11:04.0184 1640 gpsvc - ok

22:11:04.0231 1640 GREGService (84e58fea8b1a7537696a20c59cb9b0c9) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe

22:11:04.0231 1640 GREGService - ok

22:11:04.0247 1640 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys

22:11:04.0247 1640 hcw85cir - ok

22:11:04.0293 1640 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys

22:11:04.0293 1640 HdAudAddService - ok

22:11:04.0325 1640 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys

22:11:04.0325 1640 HDAudBus - ok

22:11:04.0325 1640 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys

22:11:04.0325 1640 HidBatt - ok

22:11:04.0340 1640 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys

22:11:04.0340 1640 HidBth - ok

22:11:04.0371 1640 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys

22:11:04.0371 1640 HidIr - ok

22:11:04.0403 1640 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll

22:11:04.0403 1640 hidserv - ok

22:11:04.0403 1640 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys

22:11:04.0403 1640 HidUsb - ok

22:11:04.0434 1640 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll

22:11:04.0434 1640 hkmsvc - ok

22:11:04.0481 1640 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll

22:11:04.0481 1640 HomeGroupListener - ok

22:11:04.0528 1640 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll

22:11:04.0528 1640 HomeGroupProvider - ok

22:11:04.0544 1640 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys

22:11:04.0544 1640 HpSAMD - ok

22:11:04.0638 1640 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys

22:11:04.0653 1640 HTTP - ok

22:11:04.0669 1640 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys

22:11:04.0669 1640 hwpolicy - ok

22:11:04.0700 1640 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys

22:11:04.0700 1640 i8042prt - ok

22:11:04.0762 1640 iaStor (26cf4275034214ecedd8ec17b0a18a99) C:\Windows\system32\drivers\iaStor.sys

22:11:04.0778 1640 iaStor - ok

22:11:04.0840 1640 IAStorDataMgrSvc (e79a8e33bd136d14bae1fa20eb2ef124) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

22:11:04.0840 1640 IAStorDataMgrSvc - ok

22:11:04.0903 1640 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys

22:11:04.0903 1640 iaStorV - ok

22:11:05.0059 1640 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

22:11:05.0059 1640 idsvc - ok

22:11:06.0088 1640 igfx (9937600a1584ff00565d5379eb4c9edb) C:\Windows\system32\DRIVERS\igdkmd64.sys

22:11:06.0151 1640 igfx - ok

22:11:06.0291 1640 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys

22:11:06.0291 1640 iirsp - ok

22:11:06.0416 1640 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll

22:11:06.0432 1640 IKEEXT - ok

22:11:06.0697 1640 IntcAzAudAddService (1ce438b31551746ab450d8ffa403bdb5) C:\Windows\system32\drivers\RTKVHD64.sys

22:11:06.0728 1640 IntcAzAudAddService - ok

22:11:06.0884 1640 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys

22:11:06.0884 1640 IntcDAud - ok

22:11:06.0915 1640 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys

22:11:06.0915 1640 intelide - ok

22:11:06.0946 1640 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys

22:11:06.0946 1640 intelppm - ok

22:11:06.0993 1640 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll

22:11:06.0993 1640 IPBusEnum - ok

22:11:07.0009 1640 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys

22:11:07.0009 1640 IpFilterDriver - ok

22:11:07.0024 1640 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys

22:11:07.0024 1640 IPMIDRV - ok

22:11:07.0056 1640 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys

22:11:07.0056 1640 IPNAT - ok

22:11:07.0212 1640 iPod Service (50d6ccc6ff5561f9f56946b3e6164fb8) C:\Program Files\iPod\bin\iPodService.exe

22:11:07.0227 1640 iPod Service - ok

22:11:07.0258 1640 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys

22:11:07.0258 1640 IRENUM - ok

22:11:07.0274 1640 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys

22:11:07.0274 1640 isapnp - ok

22:11:07.0321 1640 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys

22:11:07.0321 1640 iScsiPrt - ok

22:11:07.0399 1640 k57nd60a (455b75c19bf3f1f2ee3ac10e1169826c) C:\Windows\system32\DRIVERS\k57nd60a.sys

22:11:07.0399 1640 k57nd60a - ok

22:11:07.0414 1640 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys

22:11:07.0430 1640 kbdclass - ok

22:11:07.0446 1640 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys

22:11:07.0446 1640 kbdhid - ok

22:11:07.0477 1640 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:11:07.0477 1640 KeyIso - ok

22:11:07.0508 1640 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys

22:11:07.0508 1640 KSecDD - ok

22:11:07.0539 1640 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys

22:11:07.0555 1640 KSecPkg - ok

22:11:07.0570 1640 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys

22:11:07.0586 1640 ksthunk - ok

22:11:07.0648 1640 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll

22:11:07.0664 1640 KtmRm - ok

22:11:07.0711 1640 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll

22:11:07.0726 1640 LanmanServer - ok

22:11:07.0773 1640 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll

22:11:07.0773 1640 LanmanWorkstation - ok

22:11:07.0882 1640 Live Updater Service (b705c7097f9a0ec941d02dce7c7d426c) C:\Program Files\Acer\Acer Updater\UpdaterService.exe

22:11:07.0882 1640 Live Updater Service - ok

22:11:07.0939 1640 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys

22:11:07.0949 1640 lltdio - ok

22:11:08.0009 1640 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll

22:11:08.0019 1640 lltdsvc - ok

22:11:08.0039 1640 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll

22:11:08.0049 1640 lmhosts - ok

22:11:08.0149 1640 LMS (50c7ce53ef461870410355f1f2e7d515) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

22:11:08.0149 1640 LMS - ok

22:11:08.0199 1640 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys

22:11:08.0199 1640 LSI_FC - ok

22:11:08.0219 1640 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys

22:11:08.0229 1640 LSI_SAS - ok

22:11:08.0239 1640 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys

22:11:08.0239 1640 LSI_SAS2 - ok

22:11:08.0259 1640 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys

22:11:08.0269 1640 LSI_SCSI - ok

22:11:08.0299 1640 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys

22:11:08.0299 1640 luafv - ok

22:11:08.0309 1640 lxdi_device - ok

22:11:08.0379 1640 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:11:08.0389 1640 McAfee SiteAdvisor Service - ok

22:11:08.0449 1640 McAWFwk (9504f1dda1b67fb8d526fd4f8cc882f3) c:\PROGRA~1\mcafee\msc\mcawfwk.exe

22:11:08.0459 1640 McAWFwk - ok

22:11:08.0469 1640 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:11:08.0469 1640 McMPFSvc - ok

22:11:08.0479 1640 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:11:08.0489 1640 mcmscsvc - ok

22:11:08.0499 1640 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:11:08.0509 1640 McNaiAnn - ok

22:11:08.0509 1640 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:11:08.0509 1640 McNASvc - ok

22:11:08.0589 1640 McODS (c6232488cdbf063ce077fc7f8f8c248c) C:\Program Files\mcafee\VirusScan\mcods.exe

22:11:08.0599 1640 McODS - ok

22:11:08.0599 1640 McOobeSv (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:11:08.0609 1640 McOobeSv - ok

22:11:08.0619 1640 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

22:11:08.0619 1640 McProxy - ok

22:11:08.0699 1640 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe

22:11:08.0709 1640 McShield - ok

22:11:08.0829 1640 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll

22:11:08.0839 1640 Mcx2Svc - ok

22:11:08.0899 1640 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys

22:11:08.0899 1640 megasas - ok

22:11:08.0949 1640 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys

22:11:08.0959 1640 MegaSR - ok

22:11:08.0989 1640 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys

22:11:08.0989 1640 MEIx64 - ok

22:11:09.0039 1640 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys

22:11:09.0039 1640 mfeapfk - ok

22:11:09.0099 1640 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys

22:11:09.0099 1640 mfeavfk - ok

22:11:09.0109 1640 mfeavfk01 - ok

22:11:09.0189 1640 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe

22:11:09.0189 1640 mfefire - ok

22:11:09.0299 1640 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys

22:11:09.0309 1640 mfefirek - ok

22:11:09.0399 1640 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys

22:11:09.0409 1640 mfehidk - ok

22:11:09.0429 1640 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys

22:11:09.0429 1640 mfenlfk - ok

22:11:09.0469 1640 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys

22:11:09.0469 1640 mferkdet - ok

22:11:09.0509 1640 mfevtp (8f3b3c3625e3aaa11d6d4db8423e1721) C:\Windows\system32\mfevtps.exe

22:11:09.0519 1640 mfevtp - ok

22:11:09.0569 1640 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys

22:11:09.0569 1640 mfewfpk - ok

22:11:09.0619 1640 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

22:11:09.0619 1640 MMCSS - ok

22:11:09.0649 1640 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys

22:11:09.0659 1640 Modem - ok

22:11:09.0679 1640 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys

22:11:09.0689 1640 monitor - ok

22:11:09.0709 1640 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys

22:11:09.0719 1640 mouclass - ok

22:11:09.0739 1640 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\drivers\mouhid.sys

22:11:09.0739 1640 mouhid - ok

22:11:09.0779 1640 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys

22:11:09.0789 1640 mountmgr - ok

22:11:09.0849 1640 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys

22:11:09.0859 1640 mpio - ok

22:11:09.0909 1640 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys

22:11:09.0919 1640 mpsdrv - ok

22:11:10.0049 1640 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll

22:11:10.0059 1640 MpsSvc - ok

22:11:10.0079 1640 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys

22:11:10.0089 1640 MRxDAV - ok

22:11:10.0129 1640 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys

22:11:10.0129 1640 mrxsmb - ok

22:11:10.0199 1640 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys

22:11:10.0209 1640 mrxsmb10 - ok

22:11:10.0239 1640 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys

22:11:10.0249 1640 mrxsmb20 - ok

22:11:10.0269 1640 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys

22:11:10.0269 1640 msahci - ok

22:11:10.0299 1640 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys

22:11:10.0299 1640 msdsm - ok

22:11:10.0329 1640 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe

22:11:10.0339 1640 MSDTC - ok

22:11:10.0369 1640 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys

22:11:10.0369 1640 Msfs - ok

22:11:10.0389 1640 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys

22:11:10.0399 1640 mshidkmdf - ok

22:11:10.0409 1640 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys

22:11:10.0419 1640 msisadrv - ok

22:11:10.0459 1640 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll

22:11:10.0469 1640 MSiSCSI - ok

22:11:10.0469 1640 msiserver - ok

22:11:10.0560 1640 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

22:11:10.0570 1640 MSK80Service - ok

22:11:10.0590 1640 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys

22:11:10.0590 1640 MSKSSRV - ok

22:11:10.0600 1640 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys

22:11:10.0600 1640 MSPCLOCK - ok

22:11:10.0610 1640 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys

22:11:10.0620 1640 MSPQM - ok

22:11:10.0680 1640 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys

22:11:10.0690 1640 MsRPC - ok

22:11:10.0720 1640 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys

22:11:10.0720 1640 mssmbios - ok

22:11:10.0730 1640 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys

22:11:10.0730 1640 MSTEE - ok

22:11:10.0740 1640 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys

22:11:10.0750 1640 MTConfig - ok

22:11:10.0760 1640 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys

22:11:10.0760 1640 Mup - ok

22:11:10.0780 1640 mwlPSDFilter (c009123b206c56854f4e88596035231d) C:\Windows\system32\DRIVERS\mwlPSDFilter.sys

22:11:10.0780 1640 mwlPSDFilter - ok

22:11:10.0800 1640 mwlPSDNServ (bf3739eeb9f008b1debac115089a53f8) C:\Windows\system32\DRIVERS\mwlPSDNServ.sys

22:11:10.0800 1640 mwlPSDNServ - ok

22:11:10.0810 1640 mwlPSDVDisk (38dd143d95e7a01b86f219dda9c28779) C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys

22:11:10.0810 1640 mwlPSDVDisk - ok

22:11:10.0880 1640 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll

22:11:10.0890 1640 napagent - ok

22:11:10.0940 1640 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys

22:11:10.0940 1640 NativeWifiP - ok

22:11:11.0040 1640 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys

22:11:11.0060 1640 NDIS - ok

22:11:11.0080 1640 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys

22:11:11.0080 1640 NdisCap - ok

22:11:11.0100 1640 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys

22:11:11.0100 1640 NdisTapi - ok

22:11:11.0110 1640 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys

22:11:11.0120 1640 Ndisuio - ok

22:11:11.0150 1640 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys

22:11:11.0150 1640 NdisWan - ok

22:11:11.0180 1640 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys

22:11:11.0180 1640 NDProxy - ok

22:11:11.0200 1640 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys

22:11:11.0200 1640 NetBIOS - ok

22:11:11.0240 1640 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys

22:11:11.0240 1640 NetBT - ok

22:11:11.0260 1640 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:11:11.0260 1640 Netlogon - ok

22:11:11.0340 1640 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll

22:11:11.0350 1640 Netman - ok

22:11:11.0400 1640 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll

22:11:11.0410 1640 netprofm - ok

22:11:11.0500 1640 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

22:11:11.0500 1640 NetTcpPortSharing - ok

22:11:11.0570 1640 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys

22:11:11.0570 1640 nfrd960 - ok

22:11:11.0650 1640 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll

22:11:11.0650 1640 NlaSvc - ok

22:11:12.0020 1640 NOBU (5839a8027d6d324a7cd494051a96628c) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe

22:11:12.0060 1640 NOBU - ok

22:11:12.0210 1640 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys

22:11:12.0210 1640 Npfs - ok

22:11:12.0240 1640 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll

22:11:12.0250 1640 nsi - ok

22:11:12.0260 1640 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys

22:11:12.0270 1640 nsiproxy - ok

22:11:12.0471 1640 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys

22:11:12.0502 1640 Ntfs - ok

22:11:12.0595 1640 NTI IScheduleSvc (1873214666f6f0a883742df91fbc48c9) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe

22:11:12.0595 1640 NTI IScheduleSvc - ok

22:11:12.0736 1640 NTIDrvr (ee3ba1024594d5d09e314f206b94069e) C:\Windows\system32\drivers\NTIDrvr.sys

22:11:12.0736 1640 NTIDrvr - ok

22:11:12.0767 1640 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys

22:11:12.0767 1640 Null - ok

22:11:13.0656 1640 nvlddmkm (73dc184af4d2addc41b37344636d2cc7) C:\Windows\system32\DRIVERS\nvlddmkm.sys

22:11:13.0719 1640 nvlddmkm - ok

22:11:13.0890 1640 nvpciflt (477a3cf725c4040f77eb9e2c17b922a0) C:\Windows\system32\DRIVERS\nvpciflt.sys

22:11:13.0890 1640 nvpciflt - ok

22:11:13.0953 1640 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys

22:11:13.0953 1640 nvraid - ok

22:11:13.0984 1640 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys

22:11:13.0984 1640 nvstor - ok

22:11:14.0124 1640 NVSvc (6d1056430afc72a6097409a70a716c15) C:\Windows\system32\nvvsvc.exe

22:11:14.0140 1640 NVSvc - ok

22:11:14.0405 1640 nvUpdatusService (a072423c3812472d326bc774610055cf) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

22:11:14.0421 1640 nvUpdatusService - ok

22:11:14.0592 1640 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys

22:11:14.0608 1640 nv_agp - ok

22:11:14.0639 1640 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys

22:11:14.0639 1640 ohci1394 - ok

22:11:14.0717 1640 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

22:11:14.0717 1640 ose - ok

22:11:15.0116 1640 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

22:11:15.0146 1640 osppsvc - ok

22:11:15.0316 1640 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

22:11:15.0326 1640 p2pimsvc - ok

22:11:15.0396 1640 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll

22:11:15.0406 1640 p2psvc - ok

22:11:15.0466 1640 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys

22:11:15.0466 1640 Parport - ok

22:11:15.0506 1640 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys

22:11:15.0506 1640 partmgr - ok

22:11:15.0526 1640 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll

22:11:15.0536 1640 PcaSvc - ok

22:11:15.0566 1640 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys

22:11:15.0566 1640 pci - ok

22:11:15.0566 1640 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys

22:11:15.0576 1640 pciide - ok

22:11:15.0606 1640 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys

22:11:15.0616 1640 pcmcia - ok

22:11:15.0636 1640 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys

22:11:15.0636 1640 pcw - ok

22:11:15.0716 1640 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys

22:11:15.0736 1640 PEAUTH - ok

22:11:15.0886 1640 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe

22:11:15.0886 1640 PerfHost - ok

22:11:16.0176 1640 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll

22:11:16.0186 1640 pla - ok

22:11:16.0346 1640 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll

22:11:16.0366 1640 PlugPlay - ok

22:11:16.0376 1640 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll

22:11:16.0386 1640 PNRPAutoReg - ok

22:11:16.0436 1640 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll

22:11:16.0446 1640 PNRPsvc - ok

22:11:16.0536 1640 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll

22:11:16.0546 1640 PolicyAgent - ok

22:11:16.0586 1640 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll

22:11:16.0596 1640 Power - ok

22:11:16.0666 1640 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys

22:11:16.0676 1640 PptpMiniport - ok

22:11:16.0706 1640 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys

22:11:16.0706 1640 Processor - ok

22:11:16.0776 1640 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll

22:11:16.0776 1640 ProfSvc - ok

22:11:16.0806 1640 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:11:16.0806 1640 ProtectedStorage - ok

22:11:16.0846 1640 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys

22:11:16.0846 1640 Psched - ok

22:11:17.0028 1640 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys

22:11:17.0043 1640 ql2300 - ok

22:11:17.0215 1640 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys

22:11:17.0231 1640 ql40xx - ok

22:11:17.0293 1640 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll

22:11:17.0293 1640 QWAVE - ok

22:11:17.0324 1640 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys

22:11:17.0324 1640 QWAVEdrv - ok

22:11:17.0340 1640 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys

22:11:17.0355 1640 RasAcd - ok

22:11:17.0387 1640 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys

22:11:17.0387 1640 RasAgileVpn - ok

22:11:17.0418 1640 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll

22:11:17.0418 1640 RasAuto - ok

22:11:17.0465 1640 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys

22:11:17.0465 1640 Rasl2tp - ok

22:11:17.0511 1640 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll

22:11:17.0511 1640 RasMan - ok

22:11:17.0527 1640 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys

22:11:17.0543 1640 RasPppoe - ok

22:11:17.0558 1640 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys

22:11:17.0558 1640 RasSstp - ok

22:11:17.0605 1640 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys

22:11:17.0621 1640 rdbss - ok

22:11:17.0636 1640 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys

22:11:17.0636 1640 rdpbus - ok

22:11:17.0667 1640 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys

22:11:17.0667 1640 RDPCDD - ok

22:11:17.0699 1640 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys

22:11:17.0699 1640 RDPENCDD - ok

22:11:17.0699 1640 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys

22:11:17.0714 1640 RDPREFMP - ok

22:11:17.0777 1640 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys

22:11:17.0792 1640 RDPWD - ok

22:11:17.0823 1640 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys

22:11:17.0823 1640 rdyboost - ok

22:11:17.0901 1640 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll

22:11:17.0917 1640 RemoteAccess - ok

22:11:17.0995 1640 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll

22:11:17.0995 1640 RemoteRegistry - ok

22:11:18.0057 1640 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll

22:11:18.0057 1640 RpcEptMapper - ok

22:11:18.0135 1640 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe

22:11:18.0135 1640 RpcLocator - ok

22:11:18.0198 1640 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll

22:11:18.0213 1640 RpcSs - ok

22:11:18.0245 1640 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys

22:11:18.0245 1640 rspndr - ok

22:11:18.0276 1640 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:11:18.0291 1640 SamSs - ok

22:11:18.0323 1640 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys

22:11:18.0323 1640 sbp2port - ok

22:11:18.0369 1640 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll

22:11:18.0385 1640 SCardSvr - ok

22:11:18.0401 1640 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys

22:11:18.0416 1640 scfilter - ok

22:11:18.0541 1640 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll

22:11:18.0572 1640 Schedule - ok

22:11:18.0603 1640 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll

22:11:18.0603 1640 SCPolicySvc - ok

22:11:18.0650 1640 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys

22:11:18.0666 1640 sdbus - ok

22:11:18.0697 1640 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll

22:11:18.0713 1640 SDRSVC - ok

22:11:18.0728 1640 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys

22:11:18.0728 1640 secdrv - ok

22:11:18.0759 1640 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll

22:11:18.0759 1640 seclogon - ok

22:11:18.0791 1640 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll

22:11:18.0791 1640 SENS - ok

22:11:18.0822 1640 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll

22:11:18.0822 1640 SensrSvc - ok

22:11:18.0853 1640 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys

22:11:18.0853 1640 Serenum - ok

22:11:18.0884 1640 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys

22:11:18.0884 1640 Serial - ok

22:11:18.0900 1640 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys

22:11:18.0900 1640 sermouse - ok

22:11:18.0947 1640 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll

22:11:18.0962 1640 SessionEnv - ok

22:11:18.0962 1640 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys

22:11:18.0962 1640 sffdisk - ok

22:11:18.0978 1640 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys

22:11:18.0978 1640 sffp_mmc - ok

22:11:18.0993 1640 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys

22:11:18.0993 1640 sffp_sd - ok

22:11:19.0009 1640 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys

22:11:19.0009 1640 sfloppy - ok

22:11:19.0134 1640 Sftfs (c6cc9297bd53e5229653303e556aa539) C:\Windows\system32\DRIVERS\Sftfslh.sys

22:11:19.0149 1640 Sftfs - ok

22:11:19.0305 1640 sftlist (13693b6354dd6e72dc5131da7d764b90) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

22:11:19.0321 1640 sftlist - ok

22:11:19.0508 1640 Sftplay (390aa7bc52cee43f6790cdea1e776703) C:\Windows\system32\DRIVERS\Sftplaylh.sys

22:11:19.0524 1640 Sftplay - ok

22:11:19.0555 1640 Sftredir (617e29a0b0a2807466560d4c4e338d3e) C:\Windows\system32\DRIVERS\Sftredirlh.sys

22:11:19.0555 1640 Sftredir - ok

22:11:19.0586 1640 Sftvol (8f571f016fa1976f445147e9e6c8ae9b) C:\Windows\system32\DRIVERS\Sftvollh.sys

22:11:19.0602 1640 Sftvol - ok

22:11:19.0633 1640 sftvsa (c3cddd18f43d44ab713cf8c4916f7696) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

22:11:19.0649 1640 sftvsa - ok

22:11:19.0727 1640 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll

22:11:19.0742 1640 ShellHWDetection - ok

22:11:19.0789 1640 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys

22:11:19.0789 1640 SiSRaid2 - ok

22:11:19.0805 1640 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys

22:11:19.0805 1640 SiSRaid4 - ok

22:11:19.0836 1640 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys

22:11:19.0836 1640 Smb - ok

22:11:19.0883 1640 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe

22:11:19.0883 1640 SNMPTRAP - ok

22:11:19.0898 1640 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys

22:11:19.0898 1640 spldr - ok

22:11:19.0979 1640 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe

22:11:19.0989 1640 Spooler - ok

22:11:20.0409 1640 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe

22:11:20.0449 1640 sppsvc - ok

22:11:20.0589 1640 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll

22:11:20.0589 1640 sppuinotify - ok

22:11:20.0679 1640 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys

22:11:20.0689 1640 srv - ok

22:11:20.0739 1640 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys

22:11:20.0749 1640 srv2 - ok

22:11:20.0789 1640 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys

22:11:20.0789 1640 srvnet - ok

22:11:20.0819 1640 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll

22:11:20.0819 1640 SSDPSRV - ok

22:11:20.0839 1640 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll

22:11:20.0839 1640 SstpSvc - ok

22:11:20.0889 1640 Steam Client Service - ok

22:11:20.0919 1640 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys

22:11:20.0929 1640 stexstor - ok

22:11:21.0009 1640 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll

22:11:21.0029 1640 stisvc - ok

22:11:21.0049 1640 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys

22:11:21.0049 1640 swenum - ok

22:11:21.0129 1640 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll

22:11:21.0149 1640 swprv - ok

22:11:21.0339 1640 SynTP (ef51b22706db03f0857fade127c804ec) C:\Windows\system32\DRIVERS\SynTP.sys

22:11:21.0359 1640 SynTP - ok

22:11:21.0629 1640 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll

22:11:21.0659 1640 SysMain - ok

22:11:21.0799 1640 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll

22:11:21.0809 1640 TabletInputService - ok

22:11:21.0859 1640 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll

22:11:21.0869 1640 TapiSrv - ok

22:11:21.0899 1640 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll

22:11:21.0909 1640 TBS - ok

22:11:22.0159 1640 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys

22:11:22.0189 1640 Tcpip - ok

22:11:22.0559 1640 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys

22:11:22.0589 1640 TCPIP6 - ok

22:11:22.0749 1640 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys

22:11:22.0759 1640 tcpipreg - ok

22:11:22.0779 1640 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys

22:11:22.0779 1640 TDPIPE - ok

22:11:22.0829 1640 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys

22:11:22.0839 1640 TDTCP - ok

22:11:22.0879 1640 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys

22:11:22.0879 1640 tdx - ok

22:11:22.0909 1640 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys

22:11:22.0909 1640 TermDD - ok

22:11:22.0999 1640 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll

22:11:23.0009 1640 TermService - ok

22:11:23.0029 1640 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll

22:11:23.0029 1640 Themes - ok

22:11:23.0059 1640 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll

22:11:23.0059 1640 THREADORDER - ok

22:11:23.0089 1640 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll

22:11:23.0089 1640 TrkWks - ok

22:11:23.0169 1640 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe

22:11:23.0179 1640 TrustedInstaller - ok

22:11:23.0249 1640 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys

22:11:23.0249 1640 tssecsrv - ok

22:11:23.0279 1640 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys

22:11:23.0279 1640 TsUsbFlt - ok

22:11:23.0299 1640 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys

22:11:23.0299 1640 TsUsbGD - ok

22:11:23.0339 1640 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys

22:11:23.0339 1640 tunnel - ok

22:11:23.0379 1640 TurboB (fd24f98d2898be093fe926604be7db99) C:\Windows\system32\DRIVERS\TurboB.sys

22:11:23.0379 1640 TurboB - ok

22:11:23.0459 1640 TurboBoost (600b406a04d90f577fea8a88d7379f08) C:\Program Files\Intel\TurboBoost\TurboBoost.exe

22:11:23.0459 1640 TurboBoost - ok

22:11:23.0479 1640 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys

22:11:23.0479 1640 uagp35 - ok

22:11:23.0499 1640 UBHelper (a17d5e1a6df4eab0a480f2c490de4c9d) C:\Windows\system32\drivers\UBHelper.sys

22:11:23.0499 1640 UBHelper - ok

22:11:23.0549 1640 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys

22:11:23.0559 1640 udfs - ok

22:11:23.0589 1640 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe

22:11:23.0599 1640 UI0Detect - ok

22:11:23.0619 1640 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys

22:11:23.0619 1640 uliagpkx - ok

22:11:23.0639 1640 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys

22:11:23.0639 1640 umbus - ok

22:11:23.0639 1640 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys

22:11:23.0639 1640 UmPass - ok

22:11:23.0979 1640 UNS (374ebda379a8f38e0cfc2211611e7167) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

22:11:24.0019 1640 UNS - ok

22:11:24.0199 1640 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll

22:11:24.0209 1640 upnphost - ok

22:11:24.0259 1640 USBAAPL64 (fb251567f41bc61988b26731dec19e4b) C:\Windows\system32\Drivers\usbaapl64.sys

22:11:24.0259 1640 USBAAPL64 - ok

22:11:24.0309 1640 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys

22:11:24.0309 1640 usbaudio - ok

22:11:24.0369 1640 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys

22:11:24.0379 1640 usbccgp - ok

22:11:24.0409 1640 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys

22:11:24.0409 1640 usbcir - ok

22:11:24.0439 1640 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys

22:11:24.0449 1640 usbehci - ok

22:11:24.0519 1640 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\drivers\usbhub.sys

22:11:24.0519 1640 usbhub - ok

22:11:24.0549 1640 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys

22:11:24.0549 1640 usbohci - ok

22:11:24.0559 1640 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys

22:11:24.0569 1640 usbprint - ok

22:11:24.0599 1640 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys

22:11:24.0599 1640 usbscan - ok

22:11:24.0629 1640 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS

22:11:24.0629 1640 USBSTOR - ok

22:11:24.0639 1640 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys

22:11:24.0649 1640 usbuhci - ok

22:11:24.0699 1640 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys

22:11:24.0699 1640 usbvideo - ok

22:11:24.0739 1640 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll

22:11:24.0739 1640 UxSms - ok

22:11:24.0769 1640 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe

22:11:24.0779 1640 VaultSvc - ok

22:11:24.0799 1640 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys

22:11:24.0809 1640 vdrvroot - ok

22:11:24.0879 1640 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe

22:11:24.0899 1640 vds - ok

22:11:24.0919 1640 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys

22:11:24.0919 1640 vga - ok

22:11:24.0939 1640 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys

22:11:24.0949 1640 VgaSave - ok

22:11:24.0989 1640 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys

22:11:24.0989 1640 vhdmp - ok

22:11:24.0999 1640 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys

22:11:24.0999 1640 viaide - ok

22:11:25.0029 1640 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys

22:11:25.0029 1640 volmgr - ok

22:11:25.0079 1640 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys

22:11:25.0079 1640 volmgrx - ok

22:11:25.0119 1640 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys

22:11:25.0129 1640 volsnap - ok

22:11:25.0159 1640 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys

22:11:25.0159 1640 vsmraid - ok

22:11:25.0359 1640 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe

22:11:25.0369 1640 VSS - ok

22:11:25.0559 1640 vToolbarUpdater11.1.0 (5fa45791413acce628d5361458f32dde) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe

22:11:25.0569 1640 vToolbarUpdater11.1.0 - ok

22:11:25.0720 1640 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys

22:11:25.0720 1640 vwifibus - ok

22:11:25.0750 1640 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys

22:11:25.0760 1640 vwififlt - ok

22:11:25.0790 1640 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys

22:11:25.0800 1640 vwifimp - ok

22:11:25.0890 1640 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll

22:11:25.0900 1640 W32Time - ok

22:11:25.0950 1640 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys

22:11:25.0950 1640 WacomPen - ok

22:11:25.0990 1640 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

22:11:25.0990 1640 WANARP - ok

22:11:26.0000 1640 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

22:11:26.0010 1640 Wanarpv6 - ok

22:11:26.0170 1640 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe

22:11:26.0200 1640 WatAdminSvc - ok

22:11:26.0310 1640 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe

22:11:26.0330 1640 wbengine - ok

22:11:26.0490 1640 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll

22:11:26.0490 1640 WbioSrvc - ok

22:11:26.0530 1640 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll

22:11:26.0530 1640 wcncsvc - ok

22:11:26.0550 1640 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll

22:11:26.0550 1640 WcsPlugInService - ok

22:11:26.0590 1640 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys

22:11:26.0590 1640 Wd - ok

22:11:26.0650 1640 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys

22:11:26.0650 1640 Wdf01000 - ok

22:11:26.0680 1640 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

22:11:26.0680 1640 WdiServiceHost - ok

22:11:26.0690 1640 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll

22:11:26.0700 1640 WdiSystemHost - ok

22:11:26.0750 1640 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll

22:11:26.0750 1640 WebClient - ok

22:11:26.0800 1640 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll

22:11:26.0800 1640 Wecsvc - ok

22:11:26.0830 1640 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll

22:11:26.0830 1640 wercplsupport - ok

22:11:26.0860 1640 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll

22:11:26.0860 1640 WerSvc - ok

22:11:26.0910 1640 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys

22:11:26.0920 1640 WfpLwf - ok

22:11:26.0940 1640 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys

22:11:26.0940 1640 WIMMount - ok

22:11:26.0950 1640 WinHttpAutoProxySvc - ok

22:11:27.0050 1640 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll

22:11:27.0060 1640 Winmgmt - ok

22:11:27.0300 1640 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll

22:11:27.0340 1640 WinRM - ok

22:11:27.0688 1640 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll

22:11:27.0688 1640 Wlansvc - ok

22:11:27.0766 1640 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

22:11:27.0766 1640 wlcrasvc - ok

22:11:28.0140 1640 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

22:11:28.0172 1640 wlidsvc - ok

22:11:28.0328 1640 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys

22:11:28.0328 1640 WmiAcpi - ok

22:11:28.0421 1640 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe

22:11:28.0421 1640 wmiApSrv - ok

22:11:28.0452 1640 WMPNetworkSvc - ok

22:11:28.0499 1640 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll

22:11:28.0499 1640 WPCSvc - ok

22:11:28.0546 1640 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll

22:11:28.0562 1640 WPDBusEnum - ok

22:11:28.0593 1640 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys

22:11:28.0608 1640 ws2ifsl - ok

22:11:28.0608 1640 WSearch - ok

22:11:28.0889 1640 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll

22:11:28.0905 1640 wuauserv - ok

22:11:29.0045 1640 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys

22:11:29.0045 1640 WudfPf - ok

22:11:29.0076 1640 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys

22:11:29.0076 1640 WUDFRd - ok

22:11:29.0123 1640 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll

22:11:29.0123 1640 wudfsvc - ok

22:11:29.0154 1640 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll

22:11:29.0170 1640 WwanSvc - ok

22:11:29.0232 1640 ZTEusbmdm6k (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys

22:11:29.0232 1640 ZTEusbmdm6k - ok

22:11:29.0248 1640 ZTEusbnmea (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbnmea.sys

22:11:29.0248 1640 ZTEusbnmea - ok

22:11:29.0279 1640 ZTEusbser6k (0835c10fdb25daf7bcaaf138423826f3) C:\Windows\system32\DRIVERS\ZTEusbser6k.sys

22:11:29.0279 1640 ZTEusbser6k - ok

22:11:29.0326 1640 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0

22:11:29.0716 1640 \Device\Harddisk0\DR0 - ok

22:11:29.0732 1640 Boot (0x1200) (56079132efdd728008fccbb6613b831c) \Device\Harddisk0\DR0\Partition0

22:11:29.0732 1640 \Device\Harddisk0\DR0\Partition0 - ok

22:11:29.0747 1640 Boot (0x1200) (3339ef87b3a797678622390a0573ded4) \Device\Harddisk0\DR0\Partition1

22:11:29.0747 1640 \Device\Harddisk0\DR0\Partition1 - ok

22:11:29.0747 1640 ============================================================

22:11:29.0747 1640 Scan finished

22:11:29.0747 1640 ============================================================

22:11:29.0747 6928 Detected object count: 0

22:11:29.0747 6928 Actual detected object count: 0

Alvast mega bedankt!

Link naar reactie
Delen op andere sites

Dag little_me,

welkom op PCH.

Kan je het onderstaande uitvoeren ?...

1. Download HijackThis. (klik er op)

Klik op HijackThis.msi en de download start automatisch na 5 seconden.

Bestand HijackThis.msi opslaan. Daarna kiezen voor "uitvoeren".

Hijackthis wordt nu op je PC geïnstalleerd, een snelkoppeling wordt op je bureaublad geplaatst.

Als je geen netwerkverbinding meer hebt, kan je de download doen met een andere pc en het bestand met een usb stick overbrengen

Als je enkel nog in veilige modus kan werken, moet je de executable (HijackThis.exe) downloaden.

Sla deze op in een nieuwe map op de C schijf (bvb C:\hijackthis) en start hijackthis dan vanaf deze map.

De logjes kan je dan ook in die map terugvinden.


2. Klik op de snelkoppeling om HijackThis te starten. (lees eerst de rode tekst hieronder!)

Klik ofwel op "Do a systemscan and save a logfile", ofwel eerst op "Scan" en dan op "Savelog".

Er opent een kladblokvenster, hou gelijktijdig de CTRL en A-toets ingedrukt, nu is alles geselecteerd. Hou gelijktijdig de CTRL en C-toets ingedrukt, nu is alles gekopieerd. Plak nu het HJT logje in je bericht door CTRL en V-toets.

Krijg je een melding ""For some reason your system denied writing to the Host file ....", klik dan gewoon door op de OK-toets.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis. (Bekijk hier de afbeelding ---> Klik hier)


3. Na het plaatsen van je logje wordt dit door een expert (Kape of Kweezie Wabbit) nagekeken en begeleidt hij jou verder door het ganse proces.

Tip!

Wil je in woord en beeld weten hoe je een logje met HijackThis maakt en plaatst op het forum, klik dan HIER.

Link naar reactie
Delen op andere sites

Hartstikke bedankt voor je bericht.

Ik heb de scan uitgevoerd en het logje zet ik hieronder.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 23:00:28, on 29-6-2012

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v9.00 (9.00.8112.16446)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\Launch Manager\LMworker.exe

C:\Program Files (x86)\Lexmark 3500-4500 Series\lxdimon.exe

C:\Program Files (x86)\Lexmark 3500-4500 Series\lxdiamon.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe

C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe

C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

C:\Program Files (x86)\Launch Manager\LManager.exe

C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe

C:\Program Files (x86)\AVG\AVG2012\avgtray.exe

C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe

C:\Program Files (x86)\AVG Secure Search\vprot.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVH.EXE

C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10u_ActiveX.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Acer | MSN

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Zoeken

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Acer | MSN

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Acer | MSN

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

F2 - REG:system.ini: UserInit=userinit.exe

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll

O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111229215942.dll

O2 - BHO: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files (x86)\blekkotb_031\blekkotb_019X.dll

O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll

O2 - BHO: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)

O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll

O3 - Toolbar: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files (x86)\blekkotb_031\blekkotb_019X.dll

O3 - Toolbar: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll

O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey

O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"

O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"

O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d

O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe

O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k

O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe

O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Dolby PCEE4\pcee4.exe" -autostart

O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"

O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"

O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [ROC_roc_dec12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12

O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files (x86)\Lexmark Fax Solutions\fm3032.exe" /s

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10u_ActiveX.exe -update activex

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-21-3874198970-4272042986-3253696355-1000\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')

O4 - HKUS\S-1-5-21-3874198970-4272042986-3253696355-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.1.0\ViProtocol.dll

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll

O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe

O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: lxdi_device - - C:\Windows\system32\lxdicoms.exe

O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe

O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe

O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe

O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe

O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe

O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe

O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: Intel® Turbo Boost Technology Monitor 2.0 (TurboBoost) - Intel® Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: vToolbarUpdater11.1.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 17601 bytes

Link naar reactie
Delen op andere sites

Start Hijackthis op. Selecteer “Scan”. Selecteer alleen de items die hieronder zijn genoemd:

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll

O2 - BHO: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files (x86)\blekkotb_031\blekkotb_019X.dll

O2 - BHO: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)

O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)

O3 - Toolbar: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files (x86)\blekkotb_031\blekkotb_019X.dll

O3 - Toolbar: MyAshampoo Toolbar - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files (x86)\MyAshampoo\tbMyAs.dll

O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll

Klik op 'Fix checked' om de items te verwijderen.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis.

Download MBAM (Malwarebytes Anti-Malware)

Dubbelklik op mbam-setup.exe om het programma te installeren.

Zorg ervoor dat er een vinkje geplaatst is voor Update Malwarebytes' Anti-Malware en Start Malwarebytes' Anti-Malware, Klik daarna op "Voltooien".

Indien een update gevonden werd, zal die gedownload en geïnstalleerd worden.

Wanneer het programma volledig up to date is, selecteer dan in het tabblad Scanner : "Snelle Scan", daarna klik op Scan.

Het scannen kan een tijdje duren, dus wees geduldig.

Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.

Zorg ervoor dat daar alles aangevinkt is, daarna klik op: Verwijder geselecteerde.

Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten. (Zie verder).

Indien er de rootkit (TDSS) aanwezig is, zal MBAM vragen te herstarten. Doe dit dan ook.

MBAM zal na de herstart opnieuw scannen en de rootkit verwijderen.

Het log wordt automatisch bewaard door MBAM en kan je terugvinden door op de "Logs" tab te klikken in het programma.

Indien MBAM moeilijkheden heeft met het verwijderen van bepaalde bestanden zal het enkele meldingen geven waar je OK moet klikken. Daarna zal het vragen om de computer opnieuw op te starten... dus sta toe dat MBAM de computer opnieuw opstart.

Plak de inhoud van het logje in je volgende bericht, samen met een nieuw HijackThis log.

Link naar reactie
Delen op andere sites

Hartstikke bedankt voor jullie hulp!

Na het opnieuw opstarten van de computer was ik helemaal opgelucht, want hij kwam niet meer naar voren.

Maar helaas, nu ik druk op reageren komt het trojaanse paard weer om de 5min voorbij.

Hier eerst een logje van Malware

Malwarebytes Anti-Malware 1.61.0.1400

www.malwarebytes.org

Databaseversie: v2012.06.30.03

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 9.0.8112.16421

robert :: ROBERT-PC [administrator]

30-6-2012 12:06:35

mbam-log-2012-06-30 (12-06-35).txt

Scantype: Snelle scan

Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

Uitgeschakelde scanopties: P2P

Objecten gescand: 239027

Verstreken tijd: 7 minuut/minuten, 45 seconde(n)

Geheugenprocessen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registersleutels gedetecteerd: 1

HKCU\SOFTWARE\Trymedia Systems (Adware.TryMedia) -> Succesvol in quarantaine geplaatst en verwijderd.

Registerwaarden gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Registerdata gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Mappen gedetecteerd: 0

(Geen kwaadaardige objecten gedetecteerd)

Bestanden gedetecteerd: 1

C:\Windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\00000008.@ (Trojan.Dropper.BCMiner) -> Succesvol in quarantaine geplaatst en verwijderd.

(einde)

Hierbij de nieuwe van Hijackmii

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:27:03, on 30-6-2012

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v9.00 (9.00.8112.16446)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\Launch Manager\LMworker.exe

C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe

C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe

C:\Program Files (x86)\Lexmark 3500-4500 Series\lxdimon.exe

C:\Program Files (x86)\Lexmark 3500-4500 Series\lxdiamon.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe

C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe

C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

C:\Program Files (x86)\Launch Manager\LManager.exe

C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe

C:\Program Files (x86)\AVG\AVG2012\avgtray.exe

C:\Program Files (x86)\AVG Secure Search\vprot.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe

C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_257_ActiveX.exe

C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Acer | MSN

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Zoeken

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Acer | MSN

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Acer | MSN

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

F2 - REG:system.ini: UserInit=userinit.exe,

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll

O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111229215942.dll

O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll

O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll

O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey

O4 - HKLM\..\Run: [suiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"

O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"

O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d

O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe

O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k

O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe

O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Dolby PCEE4\pcee4.exe" -autostart

O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"

O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"

O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [ROC_roc_dec12] "C:\Program Files (x86)\AVG Secure Search\ROC_roc_dec12.exe" /PROMPT /CMPID=roc_dec12

O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files (x86)\Lexmark Fax Solutions\fm3032.exe" /s

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-21-3874198970-4272042986-3253696355-1000\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')

O4 - HKUS\S-1-5-21-3874198970-4272042986-3253696355-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

O4 - HKUS\S-1-5-18\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [isMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.1.0\ViProtocol.dll

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll

O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe

O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe

O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe

O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

O23 - Service: lxdi_device - - C:\Windows\system32\lxdicoms.exe

O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\mcafee\msc\mcawfwk.exe

O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe

O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe

O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe

O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe

O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe

O23 - Service: NTI IScheduleSvc - NTI Corporation - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe

O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: Intel® Turbo Boost Technology Monitor 2.0 (TurboBoost) - Intel® Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: vToolbarUpdater11.1.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 16283 bytes

Ik hoop dat jullie me verder kunnen helpen!

Link naar reactie
Delen op andere sites

Download ComboFix van één van deze locaties:

Link 1

Link 2

* BELANGRIJK !!! Sla ComboFix.exe op je Bureaublad op

1. Schakel alle antivirus- en antispywareprogramma's uit, want anders kunnen ze misschien conflicteren met ComboFix. Hier is een handleiding over hoe je ze kan uitschakelen:

Klik hier

2. Het kan voorkomen dat de computer meerdere malen opnieuw gestart moet worden, dit is normaal.

3. Dubbelklik op "Combofix.exe" om de tool te starten.

4. Klik niet in het scherm van Combofix als deze actief is, hierdoor kan de 'tool' vastlopen.

Noot !!! Als er een error wordt getoond met de melding "Illegal operation attempted on a registery key that has been marked for deletion", herstart dan de computer.

5. Wanneer ComboFix klaar is, zal het het een logbestand voor je maken. Post de inhoud van dit logbestand (te vinden als C:\ComboFix.txt) in je volgende bericht.

Link naar reactie
Delen op andere sites

Combofix uitgevoerd, wel lastig hoor! Dan werd mijn computer uitgeschakeld en schakelde avg weer in. Daarna opende niks meer.

Maar als het goed is, is hij nu goed uitgevoerd, dus hierbij het logje.

ComboFix 12-06-30.01 - robert 30-06-2012 21:27:36.1.4 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.5996.4281 [GMT 2:00]

Gestart vanuit: c:\users\robert\Desktop\ComboFix.exe

AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}

SP: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}

SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\users\Public\Documents\NTILiveUpdateV9.dll

c:\users\Public\Documents\NTIMMV9Acer.dll

c:\users\robert\AppData\Roaming\Microsoft\Windows\Recent\www.wickedreaction.ws.url

c:\users\robert\AppData\Roaming\Uxhyu

c:\users\robert\AppData\Roaming\Uxhyu\daba.yba

c:\users\robert\Documents\~WRL0005.tmp

c:\windows\assembly\GAC_32\Desktop.ini

c:\windows\assembly\GAC_64\Desktop.ini

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\L\00000004.@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\L\201d3dde

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\L\55490ac4

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\00000004.@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\00000008.@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\000000cb.@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\80000000.@

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\80000032.~

c:\windows\Installer\{798428e2-33ff-4f80-4af4-6f7781943e44}\U\80000064.@

.

Besmet exemplaar van c:\windows\system32\services.exe werd aangetroffen en gedesinfecteerd

Hersteld exemplaar van - c:\32788r22fwjfw\HarddiskVolumeShadowCopy1_!Windows!System32!services.exe

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2012-05-28 to 2012-06-30 ))))))))))))))))))))))))))))))

.

.

2012-06-30 19:51 . 2012-06-30 19:51 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp

2012-06-30 19:51 . 2012-06-30 19:51 -------- d-----w- c:\users\Default\AppData\Local\temp

2012-06-30 10:06 . 2012-06-30 10:06 -------- d-----w- c:\users\robert\AppData\Roaming\Malwarebytes

2012-06-30 10:05 . 2012-06-30 10:05 -------- d-----w- c:\program files (x86)\MALWAREBYTES ANTI-MALWARE

2012-06-30 10:05 . 2012-06-30 10:21 -------- d-----w- c:\programdata\Malwarebytes

2012-06-30 10:05 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-06-30 10:05 . 2012-06-30 10:05 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

2012-06-29 20:58 . 2012-06-29 20:58 388096 ----a-r- c:\users\robert\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

2012-06-29 20:58 . 2012-06-29 20:58 -------- d-----w- c:\program files (x86)\Trend Micro

2012-06-29 10:13 . 2012-06-29 10:13 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%

2012-06-28 22:14 . 2012-06-28 22:14 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

2012-06-28 22:14 . 2012-06-28 22:14 -------- d-----w- c:\windows\system32\Macromed

2012-06-24 20:50 . 2012-06-24 20:50 -------- d-----w- c:\windows\nl

2012-06-24 20:40 . 2012-06-24 20:40 -------- d-----w- c:\windows\pt-pt

2012-06-24 20:40 . 2012-06-24 20:40 -------- d-----w- c:\windows\ar

2012-06-24 20:40 . 2012-06-24 20:40 -------- d-----w- c:\windows\bg

2012-06-24 20:40 . 2012-06-24 20:40 -------- d-----w- c:\windows\cs

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\da

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\de

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\el

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\en

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\es

2012-06-24 20:39 . 2012-06-24 20:39 -------- d-----w- c:\windows\fi

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\fr

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\he

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\hr

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\hu

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\it

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\no

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\pl

2012-06-24 20:38 . 2012-06-24 20:38 -------- d-----w- c:\windows\pt-br

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\ro

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\ru

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\sk

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\sl

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\sv

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\th

2012-06-24 20:37 . 2012-06-24 20:37 -------- d-----w- c:\windows\tr

2012-06-24 20:36 . 2012-06-24 20:36 -------- d-----w- c:\windows\zh-tw

2012-06-24 20:36 . 2012-06-24 20:36 -------- d-----w- c:\windows\ca

2012-06-24 20:36 . 2012-06-24 20:36 -------- d-----w- c:\windows\eu

2012-06-24 20:10 . 2012-06-24 20:10 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll

2012-06-24 20:04 . 2012-06-24 20:04 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\90a4c7461cd524402\MeshBetaRemover.exe

2012-06-24 20:03 . 2012-06-24 20:03 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\65e995a91cd524401\DXSETUP.exe

2012-06-24 20:03 . 2012-06-24 20:03 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\65e995a91cd524401\dsetup32.dll

2012-06-24 20:03 . 2012-06-24 20:03 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\65e995a91cd524401\DSETUP.dll

2012-06-22 08:05 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe

2012-06-22 08:05 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll

2012-06-22 08:05 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll

2012-06-22 08:05 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll

2012-06-22 08:05 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll

2012-06-22 08:05 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll

2012-06-22 08:05 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll

2012-06-22 08:05 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll

2012-06-22 08:05 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe

2012-06-21 18:04 . 2012-06-21 18:04 -------- d-----w- c:\program files (x86)\Conduit

2012-06-21 18:04 . 2012-06-21 18:04 -------- d-----w- c:\users\robert\AppData\Roaming\Ashampoo

2012-06-21 18:04 . 2012-06-30 10:03 -------- d-----w- c:\program files (x86)\MyAshampoo

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\users\robert\AppData\Local\ashampoo

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\programdata\ashampoo

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\program files (x86)\Ashampoo

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\programdata\blekko toolbars

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\program files (x86)\blekkotb_031

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\users\robert\AppData\Local\blekkotb_031

2012-06-21 18:03 . 2012-06-21 18:03 -------- d-----w- c:\programdata\Anti-phishing Domain Advisor

2012-06-20 20:04 . 2012-06-20 20:04 -------- d-----w- c:\users\robert\AppData\Local\AVG Secure Search

2012-06-19 14:18 . 2012-06-19 14:18 -------- d-----w- c:\users\robert\AppData\Roaming\Revo

2012-06-19 14:18 . 2012-06-19 14:18 -------- d-----w- c:\users\robert\AppData\Roaming\Ogbauz

2012-06-15 21:11 . 2012-06-15 21:11 -------- d-----w- c:\programdata\Microsoft Help

2012-06-15 21:11 . 2012-06-15 21:11 -------- d-----w- c:\users\robert\AppData\Local\Microsoft Help

2012-06-13 21:45 . 2012-04-26 05:41 77312 ----a-w- c:\windows\system32\rdpwsx.dll

2012-06-13 21:45 . 2012-04-26 05:41 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll

2012-06-13 21:45 . 2012-04-26 05:34 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe

2012-06-10 12:16 . 2012-06-10 12:16 -------- d-----w- c:\programdata\App4rTemp

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-06-28 22:14 . 2011-07-22 04:47 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

2012-06-12 05:05 2068536 ----a-w- c:\program files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]

"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\11.1.0.7\AVG Secure Search_toolbar.dll" [2012-06-12 2068536]

.

[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]

"Steam"="c:\program files (x86)\Steam\Steam.exe" [2011-12-29 1242448]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"SuiteTray"="c:\program files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" [2011-04-02 340848]

"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2011-03-29 408432]

"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2011-03-29 202608]

"Norton Online Backup"="c:\program files (x86)\Symantec\Norton Online Backup\NOBuClient.exe" [2010-06-01 1155928]

"BackupManagerTray"="c:\program files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" [2011-04-24 297280]

"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-07-01 1103440]

"Dolby Advanced Audio v2"="c:\dolby pcee4\pcee4.exe" [2011-02-03 506712]

"ArcadeMovieService"="c:\program files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" [2011-05-10 177448]

"AVG_TRAY"="c:\program files (x86)\AVG\AVG2012\avgtray.exe" [2012-01-24 2416480]

"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-06-12 1104440]

"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]

"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]

"ROC_roc_dec12"="c:\program files (x86)\AVG Secure Search\ROC_roc_dec12.exe" [2012-01-16 928096]

"FaxCenterServer"="c:\program files (x86)\Lexmark Fax Solutions\fm3032.exe" [2007-03-06 312240]

"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]

"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-03-27 421736]

"Anti-phishing Domain Advisor"="c:\programdata\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [2012-05-03 217256]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~2\AVG\AVG2012\avgrsa.exe /sync /restart

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

@=""

.

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [x]

R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-28 257224]

R3 Andbus;LGE Android Composite USB Device;c:\windows\system32\DRIVERS\lgandbus64.sys [2010-01-25 19456]

R3 AndDiag;LGE Android USB Serial Port;c:\windows\system32\DRIVERS\lganddiag64.sys [2010-01-25 27648]

R3 AndGps;LGE Android USB GPS NMEA Port;c:\windows\system32\DRIVERS\lgandgps64.sys [2010-01-25 27136]

R3 ANDModem;LGE Android USB Modem;c:\windows\system32\DRIVERS\lgandmodem64.sys [2010-01-25 33792]

R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-06-07 191752]

R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-04-02 173424]

R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

R3 TurboBoost;Intel® Turbo Boost Technology Monitor 2.0;c:\program files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504]

R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-02-15 52736]

R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-29 1255736]

R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

S0 AVGIDSEH;AVGIDSEH;c:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 26704]

S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2011-09-13 37456]

S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-03-30 25960]

S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2011-10-07 283728]

S1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2011-08-08 46672]

S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2011-07-11 375376]

S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [2011-07-22 22648]

S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [2011-07-22 20520]

S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [2011-07-22 62776]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-09-05 64952]

S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]

S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]

S2 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-05-12 249648]

S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]

S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]

S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]

S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-05-26 29696]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-04-30 13592]

S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]

S2 lxdi_device;lxdi_device;c:\windows\system32\lxdicoms.exe [2007-03-06 876976]

S2 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x]

S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]

S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-03-30 2009704]

S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]

S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2010-11-29 16120]

S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]

S2 vToolbarUpdater11.1.0;vToolbarUpdater11.1.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.1.0\ToolbarUpdater.exe [2012-06-12 935480]

S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 120400]

S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 29776]

S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys [2011-01-21 67624]

S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys [2011-01-21 19496]

S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys [2011-05-16 51240]

S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys [2011-05-06 86056]

S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]

S3 k57nd60a;Broadcom NetLink Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2011-05-10 425000]

S3 MEIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]

S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]

S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]

S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]

S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]

S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

.

.

Inhoud van de 'Gedeelde Taken' map

.

2012-06-30 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-28 22:14]

.

.

--------- X64 Entries -----------

.

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-06-21 167704]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-06-21 392472]

"Persistence"="c:\windows\system32\igfxpers.exe" [2011-06-21 416024]

"IntelTBRunOnce"="wscript.exe" [2009-07-14 168960]

"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-03-28 11786344]

"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-21 2207848]

"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]

"lxdimon.exe"="c:\program files (x86)\Lexmark 3500-4500 Series\lxdimon.exe" [2007-03-06 435120]

"lxdiamon"="c:\program files (x86)\Lexmark 3500-4500 Series\lxdiamon.exe" [2007-03-05 20480]

"LXDICATS"="c:\windows\system32\spool\DRIVERS\x64\3\LXDItime.dll" [2007-02-26 31232]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"LoadAppInit_DLLs"=0x1

"AppInit_DLLs"=c:\windows\System32\nvinitx.dll

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2475029

uLocal Page = c:\windows\system32\blank.htm

mStart Page = hxxp://acer.msn.com

mLocal Page = c:\windows\SysWOW64\blank.htm

uInternet Settings,ProxyOverride = *.local

TCP: DhcpNameServer = 192.168.1.254 195.241.77.55 195.241.77.58

Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\11.1.0\ViProtocol.dll

.

- - - - ORPHANS VERWIJDERD - - - -

.

Toolbar-Locked - (no file)

Toolbar-Locked - (no file)

WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)

ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file)

ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file)

ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file)

ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file)

HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe

AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe

.

.

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_257_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_257_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_257.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.11"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_257.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_257.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_257.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

@Denied: (A 2) (Everyone)

@="IFlashBroker4"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]

"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,

00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

------------------------ Andere Aktieve Processen ------------------------

.

c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

c:\program files (x86)\Launch Manager\LMworker.exe

c:\program files (x86)\Launch Manager\LMutilps32.exe

c:\program files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe

c:\program files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe

c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

.

**************************************************************************

.

Voltooingstijd: 2012-06-30 21:58:23 - machine werd herstart

ComboFix-quarantined-files.txt 2012-06-30 19:58

.

Pre-Run: 280.470.953.984 bytes beschikbaar

Post-Run: 281.993.515.008 bytes beschikbaar

.

- - End Of File - - 937718E34B5F805D94620B15DB1AE8F5

Link naar reactie
Delen op andere sites

Laat nu AVG eens opnieuw scannen. Benieuwd wat die nog te vertellen heeft ?

Deze vetgedrukte mappen mag je ook nog manueel verwijderen :

c:\program files (x86)\Conduit

c:\programdata\blekko toolbars

c:\program files (x86)\blekkotb_031

c:\users\robert\AppData\Local\blekkotb_031

aangepast door kape
Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.