Ga naar inhoud

Trojaans paard...


Aanbevolen berichten

Ook mijn computer gaf een melding van een Trojaans paard.

Kon ze wel verwijderen via AVG.

Ze zijn naar een map verplaatst RECYCLER maar nu is mijn vraag is het virus ook echt van mijn computer af.

aangepast door Blanca
Link naar reactie
Delen op andere sites

Hoi Blanca,

welkom op PCH.

Ik heb je een eigen topic aangemaakt...nieuwe vragen plaatsen in lopende topics van andere mensen creëert enkel verwarring.

Ter info : post 1 werd afgesplitst van dit topic.

Kan je het onderstaande uitvoeren ?...

1. Download HijackThis. (klik er op)

Klik op HijackThis.msi en de download start automatisch na 5 seconden.

Bestand HijackThis.msi opslaan. Daarna kiezen voor "uitvoeren".

Hijackthis wordt nu op je PC geïnstalleerd, een snelkoppeling wordt op je bureaublad geplaatst.

Als je geen netwerkverbinding meer hebt, kan je de download doen met een andere pc en het bestand met een usb stick overbrengen

Als je enkel nog in veilige modus kan werken, moet je de executable (HijackThis.exe) downloaden.

Sla deze op in een nieuwe map op de C schijf (bvb C:\hijackthis) en start hijackthis dan vanaf deze map.

De logjes kan je dan ook in die map terugvinden.


2. Klik op de snelkoppeling om HijackThis te starten. (lees eerst de rode tekst hieronder!)

Klik ofwel op "Do a systemscan and save a logfile", ofwel eerst op "Scan" en dan op "Savelog".

Er opent een kladblokvenster, hou gelijktijdig de CTRL en A-toets ingedrukt, nu is alles geselecteerd. Hou gelijktijdig de CTRL en C-toets ingedrukt, nu is alles gekopieerd. Plak nu het HJT logje in je bericht door CTRL en V-toets.

Krijg je een melding ""For some reason your system denied writing to the Host file ....", klik dan gewoon door op de OK-toets.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis. (Bekijk hier de afbeelding ---> Klik hier)


3. Na het plaatsen van je logje wordt dit door een expert (Kape of Kweezie Wabbit) nagekeken en begeleidt hij jou verder door het ganse proces.

Tip!

Wil je in woord en beeld weten hoe je een logje met HijackThis maakt en plaatst op het forum, klik dan HIER.

Link naar reactie
Delen op andere sites

Hallo.

Ik hoop dat het goed want ik ben niet goed in zulke dingen.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 12:27:40, on 8-4-2012

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Ahead\InCD\InCDsrv.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe

C:\Program Files\Ahead\InCD\InCD.exe

C:\PROGRA~1\AVG\AVG8\avgtray.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Brother\ControlCenter3\brccMCtl.exe

C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe

C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\PSIService.exe

C:\PROGRA~1\AVG\AVG8\avgrsx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

C:\PROGRA~1\AVG\AVG8\avgemc.exe

C:\Program Files\AVG\AVG8\avgcsrvx.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\PROGRA~1\AVG\AVG8\avgnsx.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

D:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

C:\WINDOWS\system32\NOTEPAD.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.ziggo.nl/#home

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe

O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN

O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe

O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun

O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [WinampAgent] "D:\Program Files\Winamp\winampa.exe"

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe"

O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Office\OSA9.EXE

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} (Album Upload Software Control) - http://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab

O16 - DPF: {63D6DD13-C913-466D-9444-9357561E4D94} (Upload-applicatie Control) - http://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)

O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: AST Service (astcc) - Unknown owner - C:\WINDOWS\system32\astsrv.exe (file missing)

O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe

O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe

O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Blanca/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg

--

End of file - 7632 bytes

Link naar reactie
Delen op andere sites

Start Hijackthis op. Selecteer “Scan”. Selecteer alleen de items die hieronder zijn genoemd:

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 –k

O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)

O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Blanca/LOCALS~1/...p_image001.jpg

Klik op 'Fix checked' om de items te verwijderen.

Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis.

Download TDSSKiller en plaats het op je bureaublad.

Pak de bestanden in tdsskiller.zip uit.

Open de map tdsskiller en dubbelklik op TDSSKiller.exe om de tool te starten.

Windows 7 en Windows Vista gebruikers:

Rechtsklik op TDSSKiller.exe -> Uitvoeren als Administrator om de tool te starten.

Als TDSSKiller bericht geeft van een beschikbare update, dan voer je deze eerst uit.

Klik op de knop "Start Scan" en volg de instructies.

Wanneer de scan klaar is klik je op de knop "Report".

Er opent een kladblokbestand. Post de inhoud van dit bestand.

Herstart de pc als TDSSKiller die optie geeft. (Reboot now)

Wanneer er een herstart nodig was, vind je de logfile in C:\TDSSKiller.[Version]_[Date]_[Time]_log.txt. Post dit samen met een nieuw log van HijackThis.

Link naar reactie
Delen op andere sites

Bedankt voor de hulp!!!

Inmiddels de bestanden verwijderd en even opnieuw opgestart en het ziet er nu zo uit.

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 14:57:14, on 8-4-2012

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Ahead\InCD\InCDsrv.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe

C:\Program Files\Ahead\InCD\InCD.exe

C:\PROGRA~1\AVG\AVG8\avgtray.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

C:\Program Files\Brother\ControlCenter3\brccMCtl.exe

C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe

C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\PROGRA~1\AVG\AVG8\avgrsx.exe

C:\WINDOWS\system32\PSIService.exe

C:\PROGRA~1\AVG\AVG8\avgnsx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

C:\PROGRA~1\AVG\AVG8\avgemc.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\AVG\AVG8\avgcsrvx.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\WINDOWS\system32\wscntfy.exe

C:\Program Files\Internet Explorer\iexplore.exe

D:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.ziggo.nl/#home

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe

O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN

O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe

O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun

O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [WinampAgent] "D:\Program Files\Winamp\winampa.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe"

O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Office\OSA9.EXE

O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} (Album Upload Software Control) - http://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab

O16 - DPF: {63D6DD13-C913-466D-9444-9357561E4D94} (Upload-applicatie Control) - http://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: AST Service (astcc) - Unknown owner - C:\WINDOWS\system32\astsrv.exe (file missing)

O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe

O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe

O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

--

End of file - 7274 bytes

Link naar reactie
Delen op andere sites

17:56:55.0812 3872 TDSS rootkit removing tool 2.7.26.0 Apr 4 2012 19:52:02

17:56:55.0875 3872 ============================================================

17:56:55.0875 3872 Current date / time: 2012/04/08 17:56:55.0875

17:56:55.0875 3872 SystemInfo:

17:56:55.0875 3872

17:56:55.0875 3872 OS Version: 5.1.2600 ServicePack: 3.0

17:56:55.0875 3872 Product type: Workstation

17:56:55.0875 3872 ComputerName: BLANCA-PC

17:56:55.0875 3872 UserName: Blanca

17:56:55.0875 3872 Windows directory: C:\WINDOWS

17:56:55.0875 3872 System windows directory: C:\WINDOWS

17:56:55.0875 3872 Processor architecture: Intel x86

17:56:55.0875 3872 Number of processors: 2

17:56:55.0875 3872 Page size: 0x1000

17:56:55.0875 3872 Boot type: Normal boot

17:56:55.0875 3872 ============================================================

17:56:57.0406 3872 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054

17:56:57.0437 3872 Drive \Device\Harddisk1\DR1 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054

17:56:57.0437 3872 Drive \Device\Harddisk2\DR4 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'

17:56:57.0890 3872 \Device\Harddisk0\DR0:

17:56:57.0890 3872 MBR used

17:56:57.0890 3872 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x12A14BC1

17:56:57.0890 3872 \Device\Harddisk1\DR1:

17:56:57.0890 3872 MBR used

17:56:57.0890 3872 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2542D682

17:56:57.0890 3872 \Device\Harddisk2\DR4:

17:56:57.0890 3872 MBR used

17:56:57.0890 3872 \Device\Harddisk2\DR4\Partition0: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x575452C2

17:56:58.0031 3872 Initialize success

17:56:58.0031 3872 ============================================================

17:57:11.0593 1696 ============================================================

17:57:11.0593 1696 Scan started

17:57:11.0593 1696 Mode: Manual;

17:57:11.0593 1696 ============================================================

17:57:11.0875 1696 Abiosdsk - ok

17:57:12.0000 1696 abp480n5 - ok

17:57:12.0187 1696 ACPI (02273a448ba21a7d447daeb47810d40c) C:\WINDOWS\system32\DRIVERS\ACPI.sys

17:57:12.0187 1696 ACPI - ok

17:57:12.0343 1696 ACPIEC (63f517b1a87dabf3f5acb8a7952fc1d1) C:\WINDOWS\system32\drivers\ACPIEC.sys

17:57:12.0343 1696 ACPIEC - ok

17:57:12.0484 1696 AdobeFlashPlayerUpdateSvc (0d4c486a24a711a45fd83acdf4d18506) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

17:57:12.0484 1696 AdobeFlashPlayerUpdateSvc - ok

17:57:12.0609 1696 adpu160m - ok

17:57:12.0750 1696 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys

17:57:12.0750 1696 aec - ok

17:57:12.0921 1696 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys

17:57:12.0921 1696 AFD - ok

17:57:13.0015 1696 Aha154x - ok

17:57:13.0156 1696 aic78u2 - ok

17:57:13.0234 1696 aic78xx - ok

17:57:13.0359 1696 Alerter (8bed67d13dcb55b3e9ff6dac4c6d3b49) C:\WINDOWS\system32\alrsvc.dll

17:57:13.0359 1696 Alerter - ok

17:57:13.0484 1696 ALG (dab2a89fde5cf791161200d90c1bcb12) C:\WINDOWS\System32\alg.exe

17:57:13.0484 1696 ALG - ok

17:57:13.0656 1696 AliIde - ok

17:57:13.0765 1696 amsint - ok

17:57:13.0859 1696 AppMgmt - ok

17:57:13.0968 1696 asc - ok

17:57:14.0093 1696 asc3350p - ok

17:57:14.0203 1696 asc3550 - ok

17:57:14.0359 1696 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe

17:57:14.0359 1696 aspnet_state - ok

17:57:14.0437 1696 astcc - ok

17:57:14.0578 1696 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys

17:57:14.0578 1696 AsyncMac - ok

17:57:14.0718 1696 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys

17:57:14.0718 1696 atapi - ok

17:57:14.0812 1696 Atdisk - ok

17:57:14.0953 1696 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys

17:57:14.0953 1696 Atmarpc - ok

17:57:15.0093 1696 AudioSrv (f10745ed3195360e69aa4a6e7768c0e0) C:\WINDOWS\System32\audiosrv.dll

17:57:15.0093 1696 AudioSrv - ok

17:57:15.0234 1696 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys

17:57:15.0234 1696 audstub - ok

17:57:15.0453 1696 avg8emc (b9ae3c63a53396cd669ef8ae9c9cbd85) C:\PROGRA~1\AVG\AVG8\avgemc.exe

17:57:15.0453 1696 avg8emc - ok

17:57:15.0609 1696 avg8wd (db338a6bd3976904eb0f8343f51e64eb) C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

17:57:15.0609 1696 avg8wd - ok

17:57:15.0765 1696 AvgLdx86 (bc12f2404bb6f2b6b2ff3c4c246cb752) C:\WINDOWS\System32\Drivers\avgldx86.sys

17:57:15.0781 1696 AvgLdx86 - ok

17:57:15.0921 1696 AvgMfx86 (5903d729d4f0c5bca74123c96a1b29e0) C:\WINDOWS\System32\Drivers\avgmfx86.sys

17:57:15.0921 1696 AvgMfx86 - ok

17:57:16.0078 1696 AvgTdiX (92d8e1e8502e649b60e70074eb29c380) C:\WINDOWS\System32\Drivers\avgtdix.sys

17:57:16.0078 1696 AvgTdiX - ok

17:57:16.0234 1696 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys

17:57:16.0234 1696 Beep - ok

17:57:16.0421 1696 BITS (5c0073a51c4873430fa8b262e92183ff) C:\WINDOWS\system32\qmgr.dll

17:57:16.0421 1696 BITS - ok

17:57:16.0578 1696 Browser (69eaa7501f53a40e8c04c69f2391224f) C:\WINDOWS\System32\browser.dll

17:57:16.0578 1696 Browser - ok

17:57:16.0703 1696 BrScnUsb (92a964547b96d697e5e9ed43b4297f5a) C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys

17:57:16.0703 1696 BrScnUsb - ok

17:57:16.0812 1696 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys

17:57:16.0812 1696 cbidf2k - ok

17:57:16.0906 1696 cd20xrnt - ok

17:57:17.0046 1696 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys

17:57:17.0046 1696 Cdaudio - ok

17:57:17.0171 1696 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys

17:57:17.0171 1696 Cdfs - ok

17:57:17.0328 1696 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys

17:57:17.0328 1696 Cdrom - ok

17:57:17.0421 1696 Changer - ok

17:57:17.0515 1696 CiSvc (bd85400700b80fbe3d4a3412bce74861) C:\WINDOWS\system32\cisvc.exe

17:57:17.0515 1696 CiSvc - ok

17:57:17.0640 1696 ClipSrv (4fb6108130829666c8fe96b442fead94) C:\WINDOWS\system32\clipsrv.exe

17:57:17.0640 1696 ClipSrv - ok

17:57:17.0781 1696 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

17:57:17.0796 1696 clr_optimization_v2.0.50727_32 - ok

17:57:17.0875 1696 CmdIde - ok

17:57:17.0968 1696 COMSysApp - ok

17:57:18.0078 1696 Cpqarray - ok

17:57:18.0218 1696 CryptSvc (0a9cf5d3cf63a8699f28c814ef821c7e) C:\WINDOWS\System32\cryptsvc.dll

17:57:18.0218 1696 CryptSvc - ok

17:57:18.0312 1696 dac2w2k - ok

17:57:18.0437 1696 dac960nt - ok

17:57:18.0640 1696 DcomLaunch (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll

17:57:18.0640 1696 DcomLaunch - ok

17:57:18.0796 1696 Dhcp (146ab038f5dbb366122d28444999ab2c) C:\WINDOWS\System32\dhcpcsvc.dll

17:57:18.0796 1696 Dhcp - ok

17:57:18.0937 1696 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys

17:57:18.0937 1696 Disk - ok

17:57:19.0031 1696 dmadmin - ok

17:57:19.0250 1696 dmboot (dec123e0c75971d0cc7a6c6a75e28429) C:\WINDOWS\system32\drivers\dmboot.sys

17:57:19.0250 1696 dmboot - ok

17:57:19.0406 1696 dmio (7268e66259722f6228c730685b201092) C:\WINDOWS\system32\drivers\dmio.sys

17:57:19.0406 1696 dmio - ok

17:57:19.0531 1696 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys

17:57:19.0531 1696 dmload - ok

17:57:19.0640 1696 dmserver (127db74184e2d3d31655da525a5efde1) C:\WINDOWS\System32\dmserver.dll

17:57:19.0640 1696 dmserver - ok

17:57:19.0781 1696 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys

17:57:19.0781 1696 DMusic - ok

17:57:19.0906 1696 Dnscache (de6cdb6cbc5c27b9085cfa6dfe8e5025) C:\WINDOWS\System32\dnsrslvr.dll

17:57:19.0921 1696 Dnscache - ok

17:57:20.0046 1696 Dot3svc (90ee765e1a598b578852901f74f914f1) C:\WINDOWS\System32\dot3svc.dll

17:57:20.0062 1696 Dot3svc - ok

17:57:20.0140 1696 dpti2o - ok

17:57:20.0296 1696 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys

17:57:20.0296 1696 drmkaud - ok

17:57:20.0421 1696 EapHost (e6bbdebf7081899d161c773e8d84d015) C:\WINDOWS\System32\eapsvc.dll

17:57:20.0421 1696 EapHost - ok

17:57:20.0531 1696 ERSvc (2f5c7f650b7af178988946ee4b0d9c01) C:\WINDOWS\System32\ersvc.dll

17:57:20.0531 1696 ERSvc - ok

17:57:20.0671 1696 Eventlog (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe

17:57:20.0671 1696 Eventlog - ok

17:57:20.0828 1696 EventSystem (97912dc0679d2da60cce589bbc196d72) C:\WINDOWS\system32\es.dll

17:57:20.0828 1696 EventSystem - ok

17:57:21.0000 1696 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys

17:57:21.0000 1696 Fastfat - ok

17:57:21.0140 1696 FastUserSwitchingCompatibility (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

17:57:21.0140 1696 FastUserSwitchingCompatibility - ok

17:57:21.0296 1696 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys

17:57:21.0312 1696 Fdc - ok

17:57:21.0468 1696 Fips (8bfffb5ac954e19dfdb96d56512aa518) C:\WINDOWS\system32\drivers\Fips.sys

17:57:21.0468 1696 Fips - ok

17:57:21.0609 1696 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys

17:57:21.0609 1696 Flpydisk - ok

17:57:21.0765 1696 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys

17:57:21.0765 1696 FltMgr - ok

17:57:21.0937 1696 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe

17:57:21.0937 1696 FontCache3.0.0.0 - ok

17:57:22.0078 1696 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys

17:57:22.0078 1696 Fs_Rec - ok

17:57:22.0218 1696 Ftdisk (fa8ca22e70245c81ff29c36af56292fc) C:\WINDOWS\system32\DRIVERS\ftdisk.sys

17:57:22.0218 1696 Ftdisk - ok

17:57:22.0375 1696 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys

17:57:22.0375 1696 Gpc - ok

17:57:22.0468 1696 gusvc (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

17:57:22.0468 1696 gusvc - ok

17:57:22.0609 1696 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys

17:57:22.0625 1696 HDAudBus - ok

17:57:22.0765 1696 helpsvc (5327bad9b35c33d2a64b64e4cf282ecd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll

17:57:22.0765 1696 helpsvc - ok

17:57:22.0843 1696 HidServ - ok

17:57:23.0000 1696 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys

17:57:23.0000 1696 hidusb - ok

17:57:23.0140 1696 hkmsvc (1ff903ffa2da1704e5a5443d37d8e49e) C:\WINDOWS\System32\kmsvc.dll

17:57:23.0140 1696 hkmsvc - ok

17:57:23.0218 1696 hpn - ok

17:57:23.0375 1696 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys

17:57:23.0375 1696 HTTP - ok

17:57:23.0515 1696 HTTPFilter (2529c7ba05242beed0027f554d0513bb) C:\WINDOWS\System32\w3ssl.dll

17:57:23.0515 1696 HTTPFilter - ok

17:57:23.0609 1696 i2omgmt - ok

17:57:23.0687 1696 i2omp - ok

17:57:23.0875 1696 i8042prt (c43372d0682f8e32e4ec21117e089ec0) C:\WINDOWS\system32\DRIVERS\i8042prt.sys

17:57:23.0875 1696 i8042prt - ok

17:57:24.0125 1696 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

17:57:24.0140 1696 idsvc - ok

17:57:24.0281 1696 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys

17:57:24.0281 1696 Imapi - ok

17:57:24.0437 1696 ImapiService (a117772f94c854de5d1bbc1f1962b192) C:\WINDOWS\system32\imapi.exe

17:57:24.0437 1696 ImapiService - ok

17:57:24.0593 1696 InCDfs (2033780b89143e45f56300d8d7d22e7e) C:\WINDOWS\system32\drivers\InCDfs.sys

17:57:24.0593 1696 InCDfs - ok

17:57:24.0750 1696 InCDPass (400313dc0b230836a4fb64cf3f8f6e59) C:\WINDOWS\system32\DRIVERS\InCDPass.sys

17:57:24.0750 1696 InCDPass - ok

17:57:24.0890 1696 InCDrec (970208671716754bad77dcf8dff82892) C:\WINDOWS\system32\drivers\InCDrec.sys

17:57:24.0890 1696 InCDrec - ok

17:57:25.0109 1696 InCDsrv (1c5622809694604167ef6ee991f4965e) C:\Program Files\Ahead\InCD\InCDsrv.exe

17:57:25.0109 1696 InCDsrv - ok

17:57:25.0218 1696 ini910u - ok

17:57:25.0328 1696 IntelIde - ok

17:57:25.0515 1696 intelppm (2d2254fac267e6b1c7865e8ebef60c6d) C:\WINDOWS\system32\DRIVERS\intelppm.sys

17:57:25.0515 1696 intelppm - ok

17:57:25.0656 1696 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys

17:57:25.0656 1696 Ip6Fw - ok

17:57:25.0781 1696 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys

17:57:25.0781 1696 IpFilterDriver - ok

17:57:25.0890 1696 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys

17:57:25.0890 1696 IpInIp - ok

17:57:26.0031 1696 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys

17:57:26.0031 1696 IpNat - ok

17:57:26.0187 1696 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys

17:57:26.0187 1696 IPSec - ok

17:57:26.0312 1696 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys

17:57:26.0312 1696 IRENUM - ok

17:57:26.0453 1696 isapnp (0b78e1a31340e1fb1e389d5633f7c3a0) C:\WINDOWS\system32\DRIVERS\isapnp.sys

17:57:26.0468 1696 isapnp - ok

17:57:26.0656 1696 ivusb (de96bbf842059a67d876b692076d8875) C:\WINDOWS\system32\DRIVERS\ivusb.sys

17:57:26.0656 1696 ivusb - ok

17:57:26.0796 1696 Kbdclass (380397621e94b32c744e7b2cc1330390) C:\WINDOWS\system32\DRIVERS\kbdclass.sys

17:57:26.0796 1696 Kbdclass - ok

17:57:26.0937 1696 kbdhid (b833b70fe639f01fb36cedabe57ef031) C:\WINDOWS\system32\DRIVERS\kbdhid.sys

17:57:26.0937 1696 kbdhid - ok

17:57:27.0093 1696 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys

17:57:27.0093 1696 kmixer - ok

17:57:27.0250 1696 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys

17:57:27.0250 1696 KSecDD - ok

17:57:27.0390 1696 LanmanServer (c7955e7edaea462d04f1c4be1d340372) C:\WINDOWS\System32\srvsvc.dll

17:57:27.0390 1696 LanmanServer - ok

17:57:27.0531 1696 lanmanworkstation (a936a575eaf6dce8dc08bc0c53972add) C:\WINDOWS\System32\wkssvc.dll

17:57:27.0531 1696 lanmanworkstation - ok

17:57:27.0640 1696 lbrtfdc - ok

17:57:27.0781 1696 LmHosts (91ae20c5c2776c511994aa1308c05283) C:\WINDOWS\System32\lmhsvc.dll

17:57:27.0781 1696 LmHosts - ok

17:57:27.0921 1696 Messenger (c56a45a03dca11712de9fdf98224230b) C:\WINDOWS\System32\msgsvc.dll

17:57:27.0921 1696 Messenger - ok

17:57:28.0046 1696 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys

17:57:28.0046 1696 mnmdd - ok

17:57:28.0187 1696 mnmsrvc (5b1d994dcf1895afa27600e46a2f0fea) C:\WINDOWS\system32\mnmsrvc.exe

17:57:28.0187 1696 mnmsrvc - ok

17:57:28.0312 1696 Modem (8114eeac353f549331ab73e9af4219ed) C:\WINDOWS\system32\drivers\Modem.sys

17:57:28.0312 1696 Modem - ok

17:57:28.0578 1696 monfilt (9fa7207d1b1adead88ae8eed9cdbbaa5) C:\WINDOWS\system32\drivers\monfilt.sys

17:57:28.0593 1696 monfilt - ok

17:57:28.0734 1696 Mouclass (1a4e2214dd63e4a876463d3427ee8261) C:\WINDOWS\system32\DRIVERS\mouclass.sys

17:57:28.0750 1696 Mouclass - ok

17:57:28.0890 1696 mouhid (18017899254e01371e1a39754d6bf98c) C:\WINDOWS\system32\DRIVERS\mouhid.sys

17:57:28.0890 1696 mouhid - ok

17:57:29.0046 1696 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys

17:57:29.0046 1696 MountMgr - ok

17:57:29.0140 1696 mraid35x - ok

17:57:29.0312 1696 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys

17:57:29.0312 1696 MRxDAV - ok

17:57:29.0500 1696 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys

17:57:29.0500 1696 MRxSmb - ok

17:57:29.0625 1696 MSDTC (21ea21984d7d1ad50db2e627020ab14c) C:\WINDOWS\system32\msdtc.exe

17:57:29.0625 1696 MSDTC - ok

17:57:29.0765 1696 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys

17:57:29.0765 1696 Msfs - ok

17:57:29.0859 1696 MSIServer - ok

17:57:29.0984 1696 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys

17:57:29.0984 1696 MSKSSRV - ok

17:57:30.0093 1696 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys

17:57:30.0093 1696 MSPCLOCK - ok

17:57:30.0218 1696 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys

17:57:30.0218 1696 MSPQM - ok

17:57:30.0343 1696 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys

17:57:30.0343 1696 mssmbios - ok

17:57:30.0500 1696 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys

17:57:30.0500 1696 MTsensor - ok

17:57:30.0656 1696 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys

17:57:30.0656 1696 Mup - ok

17:57:30.0812 1696 napagent (87e394c810794d3c70cf22e8316cb23e) C:\WINDOWS\System32\qagentrt.dll

17:57:30.0828 1696 napagent - ok

17:57:30.0984 1696 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys

17:57:30.0984 1696 NDIS - ok

17:57:31.0140 1696 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys

17:57:31.0140 1696 NdisTapi - ok

17:57:31.0281 1696 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys

17:57:31.0281 1696 Ndisuio - ok

17:57:31.0437 1696 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys

17:57:31.0437 1696 NdisWan - ok

17:57:31.0593 1696 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys

17:57:31.0593 1696 NDProxy - ok

17:57:31.0734 1696 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys

17:57:31.0734 1696 NetBIOS - ok

17:57:31.0890 1696 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys

17:57:31.0906 1696 NetBT - ok

17:57:32.0046 1696 NetDDE (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe

17:57:32.0046 1696 NetDDE - ok

17:57:32.0062 1696 NetDDEdsdm (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe

17:57:32.0062 1696 NetDDEdsdm - ok

17:57:32.0218 1696 Netlogon (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

17:57:32.0218 1696 Netlogon - ok

17:57:32.0390 1696 Netman (5431fb616ecae0d587c5b97d0b86cbd8) C:\WINDOWS\System32\netman.dll

17:57:32.0390 1696 Netman - ok

17:57:32.0562 1696 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

17:57:32.0562 1696 NetTcpPortSharing - ok

17:57:32.0703 1696 Nla (4522cbe00a9e9eee36aa82ed4b319148) C:\WINDOWS\System32\mswsock.dll

17:57:32.0703 1696 Nla - ok

17:57:32.0781 1696 NMIndexingService - ok

17:57:32.0937 1696 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys

17:57:32.0937 1696 Npfs - ok

17:57:33.0156 1696 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys

17:57:33.0156 1696 Ntfs - ok

17:57:33.0312 1696 NtLmSsp (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

17:57:33.0328 1696 NtLmSsp - ok

17:57:33.0484 1696 NtmsSvc (ac1a78237b53044735693633f8235468) C:\WINDOWS\system32\ntmssvc.dll

17:57:33.0484 1696 NtmsSvc - ok

17:57:33.0609 1696 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys

17:57:33.0609 1696 Null - ok

17:57:34.0343 1696 nv (70cb8915895ccb92ddf23ce890c4f5be) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys

17:57:34.0390 1696 nv - ok

17:57:34.0515 1696 NVENETFD (7d275ecda4628318912f6c945d5cf963) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys

17:57:34.0515 1696 NVENETFD - ok

17:57:34.0671 1696 nvnetbus (b64aacefad2be5bff5353fe681253c67) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys

17:57:34.0671 1696 nvnetbus - ok

17:57:34.0828 1696 NVSvc (f96df45cfbdc670584293e03c2ab602a) C:\WINDOWS\system32\nvsvc32.exe

17:57:34.0828 1696 NVSvc - ok

17:57:34.0953 1696 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys

17:57:34.0953 1696 NwlnkFlt - ok

17:57:35.0093 1696 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys

17:57:35.0093 1696 NwlnkFwd - ok

17:57:35.0171 1696 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

17:57:35.0171 1696 ose - ok

17:57:35.0328 1696 Parport (e3934ccc20a4d24f1924e13d36d2a5bd) C:\WINDOWS\system32\DRIVERS\parport.sys

17:57:35.0328 1696 Parport - ok

17:57:35.0484 1696 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys

17:57:35.0484 1696 PartMgr - ok

17:57:35.0625 1696 ParVdm (1eade28746a64c21e0a808bb12a63326) C:\WINDOWS\system32\drivers\ParVdm.sys

17:57:35.0625 1696 ParVdm - ok

17:57:35.0781 1696 PCI (3b166f9f753c21aedaa9a6bd76b49655) C:\WINDOWS\system32\DRIVERS\pci.sys

17:57:35.0781 1696 PCI - ok

17:57:35.0890 1696 PCIDump - ok

17:57:36.0031 1696 PCIIde (b31edeba4da28283f6b8dc4756fb9585) C:\WINDOWS\system32\DRIVERS\pciide.sys

17:57:36.0031 1696 PCIIde - ok

17:57:36.0171 1696 Pcmcia (2137ffd65f8e609a3a5acd487c56cce0) C:\WINDOWS\system32\drivers\Pcmcia.sys

17:57:36.0171 1696 Pcmcia - ok

17:57:36.0281 1696 PDCOMP - ok

17:57:36.0390 1696 PDFRAME - ok

17:57:36.0484 1696 PDRELI - ok

17:57:36.0609 1696 PDRFRAME - ok

17:57:36.0750 1696 perc2 - ok

17:57:36.0890 1696 perc2hib - ok

17:57:37.0062 1696 PlugPlay (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe

17:57:37.0062 1696 PlugPlay - ok

17:57:37.0218 1696 PolicyAgent (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

17:57:37.0234 1696 PolicyAgent - ok

17:57:37.0375 1696 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys

17:57:37.0375 1696 PptpMiniport - ok

17:57:37.0515 1696 ProtectedStorage (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

17:57:37.0515 1696 ProtectedStorage - ok

17:57:37.0656 1696 ProtexisLicensing (f115af58abe5605d7d709cbfbd83f418) C:\WINDOWS\system32\PSIService.exe

17:57:37.0671 1696 ProtexisLicensing - ok

17:57:37.0812 1696 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys

17:57:37.0812 1696 PSched - ok

17:57:37.0968 1696 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys

17:57:37.0968 1696 Ptilink - ok

17:57:38.0125 1696 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys

17:57:38.0125 1696 PxHelp20 - ok

17:57:38.0234 1696 ql1080 - ok

17:57:38.0343 1696 Ql10wnt - ok

17:57:38.0484 1696 ql12160 - ok

17:57:38.0625 1696 ql1240 - ok

17:57:38.0765 1696 ql1280 - ok

17:57:38.0937 1696 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys

17:57:38.0937 1696 RasAcd - ok

17:57:39.0078 1696 RasAuto (0575d034b1292ca3a9bb9f67a8ee289c) C:\WINDOWS\System32\rasauto.dll

17:57:39.0078 1696 RasAuto - ok

17:57:39.0218 1696 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys

17:57:39.0218 1696 Rasl2tp - ok

17:57:39.0375 1696 RasMan (9e7e2df6971a5f00102be3f901cc3bdc) C:\WINDOWS\System32\rasmans.dll

17:57:39.0390 1696 RasMan - ok

17:57:39.0531 1696 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys

17:57:39.0531 1696 RasPppoe - ok

17:57:39.0671 1696 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys

17:57:39.0671 1696 Raspti - ok

17:57:39.0828 1696 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys

17:57:39.0828 1696 Rdbss - ok

17:57:39.0984 1696 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys

17:57:39.0984 1696 RDPCDD - ok

17:57:40.0156 1696 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys

17:57:40.0156 1696 RDPWD - ok

17:57:40.0296 1696 RDSessMgr (ea9fdf71d696b532bdc44c8bff03a737) C:\WINDOWS\system32\sessmgr.exe

17:57:40.0296 1696 RDSessMgr - ok

17:57:40.0437 1696 redbook (4173bc66e485fd77a03c4819f60bd0da) C:\WINDOWS\system32\DRIVERS\redbook.sys

17:57:40.0437 1696 redbook - ok

17:57:40.0562 1696 RemoteAccess (4007abf5d9bf0e55451d775443d1f985) C:\WINDOWS\System32\mprdim.dll

17:57:40.0562 1696 RemoteAccess - ok

17:57:40.0687 1696 RpcLocator (be078f8f7ec2491efdd79a53353a060f) C:\WINDOWS\system32\locator.exe

17:57:40.0687 1696 RpcLocator - ok

17:57:40.0859 1696 RpcSs (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll

17:57:40.0875 1696 RpcSs - ok

17:57:41.0015 1696 RSVP (ad1b5f1b99fff08c99f443d784711a81) C:\WINDOWS\system32\rsvp.exe

17:57:41.0015 1696 RSVP - ok

17:57:41.0156 1696 RT73 (6ea04a4370609e5e1eaeee898a2ab6ac) C:\WINDOWS\system32\DRIVERS\rt73.sys

17:57:41.0156 1696 RT73 - ok

17:57:41.0296 1696 SamSs (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

17:57:41.0296 1696 SamSs - ok

17:57:41.0437 1696 SCardSvr (1b4cd62174e907c7ef8ec5d4d0a2a616) C:\WINDOWS\System32\SCardSvr.exe

17:57:41.0437 1696 SCardSvr - ok

17:57:41.0593 1696 Schedule (7c288ae0f75cb18cff1df6179a67ad8f) C:\WINDOWS\system32\schedsvc.dll

17:57:41.0593 1696 Schedule - ok

17:57:41.0734 1696 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys

17:57:41.0734 1696 Secdrv - ok

17:57:41.0859 1696 seclogon (6983665bea867125b1da5757cd8b2f9d) C:\WINDOWS\System32\seclogon.dll

17:57:41.0859 1696 seclogon - ok

17:57:41.0968 1696 SENS (f6ec8f1e50e40237bddee1cb7fe20b42) C:\WINDOWS\system32\sens.dll

17:57:41.0968 1696 SENS - ok

17:57:42.0109 1696 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys

17:57:42.0109 1696 serenum - ok

17:57:42.0265 1696 Serial (92c21762653bb2ce51147eb8a9aa654f) C:\WINDOWS\system32\DRIVERS\serial.sys

17:57:42.0265 1696 Serial - ok

17:57:42.0421 1696 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys

17:57:42.0421 1696 Sfloppy - ok

17:57:42.0593 1696 SharedAccess (7579c4be909d47f10f3d8d801cb13ed9) C:\WINDOWS\System32\ipnathlp.dll

17:57:42.0593 1696 SharedAccess - ok

17:57:42.0750 1696 ShellHWDetection (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

17:57:42.0750 1696 ShellHWDetection - ok

17:57:42.0843 1696 Simbad - ok

17:57:42.0953 1696 Sparrow - ok

17:57:43.0109 1696 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys

17:57:43.0109 1696 splitter - ok

17:57:43.0218 1696 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe

17:57:43.0218 1696 Spooler - ok

17:57:43.0390 1696 sr (64d2a7640e0767ecd3bcb38d3200e7ce) C:\WINDOWS\system32\DRIVERS\sr.sys

17:57:43.0390 1696 sr - ok

17:57:43.0515 1696 srservice (81cbf363c414620caa61bd6843d8fdb9) C:\WINDOWS\system32\srsvc.dll

17:57:43.0515 1696 srservice - ok

17:57:43.0671 1696 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys

17:57:43.0687 1696 Srv - ok

17:57:43.0828 1696 SSDPSRV (5b9d0de64be96a806819516440fd211c) C:\WINDOWS\System32\ssdpsrv.dll

17:57:43.0828 1696 SSDPSRV - ok

17:57:44.0015 1696 stisvc (5ae996186d2dc694fef88f14a3fc9242) C:\WINDOWS\system32\wiaservc.dll

17:57:44.0015 1696 stisvc - ok

17:57:44.0187 1696 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys

17:57:44.0187 1696 swenum - ok

17:57:44.0328 1696 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys

17:57:44.0328 1696 swmidi - ok

17:57:44.0421 1696 SwPrv - ok

17:57:44.0515 1696 symc810 - ok

17:57:44.0593 1696 symc8xx - ok

17:57:44.0687 1696 sym_hi - ok

17:57:44.0781 1696 sym_u3 - ok

17:57:44.0921 1696 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys

17:57:44.0921 1696 sysaudio - ok

17:57:45.0062 1696 SysmonLog (251eae7c56c6ab9490311a3c9757e18d) C:\WINDOWS\system32\smlogsvc.exe

17:57:45.0062 1696 SysmonLog - ok

17:57:45.0218 1696 TapiSrv (2bc9fb448f0c2394ff53c83a7bb04731) C:\WINDOWS\System32\tapisrv.dll

17:57:45.0218 1696 TapiSrv - ok

17:57:45.0421 1696 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys

17:57:45.0421 1696 Tcpip - ok

17:57:45.0562 1696 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys

17:57:45.0562 1696 TDPIPE - ok

17:57:45.0671 1696 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys

17:57:45.0671 1696 TDTCP - ok

17:57:45.0812 1696 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys

17:57:45.0812 1696 TermDD - ok

17:57:45.0984 1696 TermService (e0aef86a594c9990d6321c5ca239c5b7) C:\WINDOWS\System32\termsrv.dll

17:57:45.0984 1696 TermService - ok

17:57:46.0140 1696 Themes (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

17:57:46.0140 1696 Themes - ok

17:57:46.0265 1696 TomTomHOMEService (3199a477f0f06eede41bd55179f8eb05) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

17:57:46.0265 1696 TomTomHOMEService - ok

17:57:46.0375 1696 TosIde - ok

17:57:46.0500 1696 TrkWks (20655e8ca1c78bc7088b18e93806d21b) C:\WINDOWS\system32\trkwks.dll

17:57:46.0500 1696 TrkWks - ok

17:57:46.0640 1696 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys

17:57:46.0640 1696 Udfs - ok

17:57:46.0734 1696 ultra - ok

17:57:46.0921 1696 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys

17:57:46.0921 1696 Update - ok

17:57:47.0078 1696 upnphost (01653d6c9604f1fb31a76ec94e08954f) C:\WINDOWS\System32\upnphost.dll

17:57:47.0078 1696 upnphost - ok

17:57:47.0203 1696 UPS (a89796dd0de24cf03b3a39407e1f46a3) C:\WINDOWS\System32\ups.exe

17:57:47.0203 1696 UPS - ok

17:57:47.0328 1696 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys

17:57:47.0328 1696 usbccgp - ok

17:57:47.0468 1696 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys

17:57:47.0468 1696 usbehci - ok

17:57:47.0671 1696 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys

17:57:47.0671 1696 usbhub - ok

17:57:47.0812 1696 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys

17:57:47.0812 1696 usbohci - ok

17:57:47.0937 1696 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys

17:57:47.0937 1696 usbprint - ok

17:57:48.0062 1696 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys

17:57:48.0062 1696 usbscan - ok

17:57:48.0187 1696 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS

17:57:48.0187 1696 usbstor - ok

17:57:48.0468 1696 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys

17:57:48.0468 1696 VgaSave - ok

17:57:48.0953 1696 VIAHdAudAddService (51b24990850076f659d1d1daefbed6f1) C:\WINDOWS\system32\drivers\viahduaa.sys

17:57:48.0953 1696 VIAHdAudAddService - ok

17:57:49.0046 1696 ViaIde - ok

17:57:49.0203 1696 VolSnap (8ab662b3c4691e6ddf61c96bb5b7d103) C:\WINDOWS\system32\drivers\VolSnap.sys

17:57:49.0203 1696 VolSnap - ok

17:57:49.0359 1696 VSS (a585edd6965b301de8a45c6768c7c215) C:\WINDOWS\System32\vssvc.exe

17:57:49.0359 1696 VSS - ok

17:57:49.0500 1696 W32Time (390d8e65f362327ad510b08971478301) C:\WINDOWS\system32\w32time.dll

17:57:49.0500 1696 W32Time - ok

17:57:49.0703 1696 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys

17:57:49.0703 1696 Wanarp - ok

17:57:49.0812 1696 WDICA - ok

17:57:49.0968 1696 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys

17:57:49.0968 1696 wdmaud - ok

17:57:50.0078 1696 WebClient (33d8e2812054d97a0aec9b8f04277927) C:\WINDOWS\System32\webclnt.dll

17:57:50.0093 1696 WebClient - ok

17:57:50.0265 1696 winmgmt (f9e105f369c18e4001e0c05aaf600d73) C:\WINDOWS\system32\wbem\WMIsvc.dll

17:57:50.0265 1696 winmgmt - ok

17:57:50.0406 1696 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll

17:57:50.0406 1696 WmdmPmSN - ok

17:57:50.0531 1696 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys

17:57:50.0531 1696 WmiAcpi - ok

17:57:50.0687 1696 WmiApSrv (87f11d161207c7063edabac0aadc33c3) C:\WINDOWS\system32\wbem\wmiapsrv.exe

17:57:50.0687 1696 WmiApSrv - ok

17:57:50.0890 1696 WMPNetworkSvc (79a01acd485687ee602411a06b63a9a5) C:\Program Files\Windows Media Player\WMPNetwk.exe

17:57:50.0890 1696 WMPNetworkSvc - ok

17:57:51.0046 1696 wscsvc (843f7fa8ea38e6a4262976dcc994c81a) C:\WINDOWS\system32\wscsvc.dll

17:57:51.0046 1696 wscsvc - ok

17:57:51.0187 1696 wuauserv (1e8fdddef3fe260badab06dae10d753a) C:\WINDOWS\system32\wuauserv.dll

17:57:51.0187 1696 wuauserv - ok

17:57:51.0312 1696 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys

17:57:51.0312 1696 WudfPf - ok

17:57:51.0468 1696 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys

17:57:51.0468 1696 WudfRd - ok

17:57:51.0593 1696 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll

17:57:51.0593 1696 WudfSvc - ok

17:57:51.0765 1696 WZCSVC (e99782dbb8ffa2aee72b31dac8d8d887) C:\WINDOWS\System32\wzcsvc.dll

17:57:51.0765 1696 WZCSVC - ok

17:57:51.0906 1696 xmlprov (fd3c38635808920f8235bf2fed642f54) C:\WINDOWS\System32\xmlprov.dll

17:57:51.0906 1696 xmlprov - ok

17:57:51.0921 1696 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk0\DR0

17:57:52.0093 1696 \Device\Harddisk0\DR0 - ok

17:57:52.0093 1696 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk1\DR1

17:57:52.0093 1696 \Device\Harddisk1\DR1 - ok

17:57:52.0562 1696 MBR (0x1B8) (671b81004fdd1588fa9ed1331c9ceca9) \Device\Harddisk2\DR4

17:57:52.0578 1696 \Device\Harddisk2\DR4 - ok

17:57:52.0578 1696 Boot (0x1200) (6e3aa0b315b1b0c7725d5a2daad68364) \Device\Harddisk0\DR0\Partition0

17:57:52.0578 1696 \Device\Harddisk0\DR0\Partition0 - ok

17:57:52.0593 1696 Boot (0x1200) (f932ef9be0c50ab9f4f063d96f523810) \Device\Harddisk1\DR1\Partition0

17:57:52.0593 1696 \Device\Harddisk1\DR1\Partition0 - ok

17:57:52.0593 1696 Boot (0x1200) (3dbbd6d33ceca6d7f95440f9fefe9a91) \Device\Harddisk2\DR4\Partition0

17:57:52.0625 1696 \Device\Harddisk2\DR4\Partition0 - ok

17:57:52.0625 1696 ============================================================

17:57:52.0625 1696 Scan finished

17:57:52.0625 1696 ============================================================

17:57:52.0625 2604 Detected object count: 0

17:57:52.0625 2604 Actual detected object count: 0

aangepast door Blanca
Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.