problemen opstart / logje

  • glenn

    malware bytes log

    Malwarebytes Anti-Malware 1.60.0.1800

    www.malwarebytes.org

    Databaseversie: v2012.01.14.01

    Windows Vista Service Pack 2 x86 NTFS

    Internet Explorer 9.0.8112.16421

    :: PC_VAN_

    14-1-2012 15:02:17

    mbam-log-2012-01-14 (15-02-17).txt

    Scantype: Snelle scan

    Ingeschakelde scanopties: Geheugen | Opstarten | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 233242

    Verstreken tijd: 11 minuut/minuten, 50 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    (einde)

    online scanner log

    NALYSIS: 2012-01-14 15:02:35

    PROTECTIONS: 1

    MALWARE: 4

    SUSPECTS: 0

    ;***********************************************************************************************************************************************************************************

    PROTECTIONS

    Description Version Active Updated

    ;===================================================================================================================================================================================

    AVG Anti-Virus Free Edition 2012 Yes Yes

    ;===================================================================================================================================================================================

    MALWARE

    Id Description Type Active Severity Disinfectable Disinfected Location

    ;===================================================================================================================================================================================

    00167704 Cookie/Xiti TrackingCookie No 0 Yes No c:\users\\appdata\roaming\microsoft\windows\cookies\low\z0pkyusr.txt

    00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\users\appdata\roaming\microsoft\windows\cookies\low\80617ica.txt

    00168106 Cookie/Weborama TrackingCookie No 0 Yes No c:\users\\appdata\roaming\microsoft\windows\cookies\mq8qznmi.txt

    00168114 Cookie/onestat.com TrackingCookie No 0 Yes No c:\users\\appdata\roaming\microsoft\windows\cookies\low\pmg3xh4p.txt

    SUSPECTS

    Sent Location

    VULNERABILITIES

    Id Severity Description

    en tot slot hijack log

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 23:42:36, on 13-1-2012

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16421)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

    C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

    C:\Program Files\AVAST Software\Avast\AvastUI.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe

    C:\Windows\System32\mobsync.exe

    C:\Windows\explorer.exe

    C:\Program Files\TuneUp Utilities 2011\OneClick.exe

    C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL

    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL

    O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O4 - HKLM\..\Run: C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

    O4 - HKLM\..\Run: “C:\Program Files\AVAST Software\Avast\avastUI.exe” /nogui

    O4 - HKLM\..\RunOnce: C:\Windows\system32\reg.exe DELETE “HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components” /v “NoIE4StubProcessing” /f

    O4 - HKLM\..\RunOnce: cmd.exe /c start http://www.avg.com/nl.special-uninstallation-feedback-app?lic=OE1FSC1SNk8yUC1WWUtYUy1CQVlXUi1DRTdYWS1XRU1CUg“&”inst=NzYtOTQ1ODYzNDI0LVQ1LUJBKzEtS1YzKzctWEwrMS1CNC1YTzM2KzEtRDM4MUwrNy1OMUQrMS1QTCs5LUNJUCsyLUREVCswLUk5MCsxLUREOTArMS1TVDkwQV

    O4 - HKLM\..\RunOnce: C:\Windows\System32\rstrui.exe /runonce

    O4 - HKLM\..\RunOnce: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

    O4 - HKCU\..\Run: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: “C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe” /AutoStart

    O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User ‘UpdatusUser’)

    O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: rundll32.exe oobefldr.dll,ShowWelcomeCenter (User ‘UpdatusUser’)

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra ‘Tools’ menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra ‘Tools’ menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe

    O9 - Extra ‘Tools’ menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe

    O11 - Options group: Accelerated graphics

    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab

    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab

    O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    O23 - Service: CLHNServiceForPowerDVD - Unknown owner - C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe

    O23 - Service: CyberLink PowerDVD 11.0 Monitor Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe

    O23 - Service: CyberLink PowerDVD 11.0 Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe

    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

    O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

    O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe

    End of file - 7525 bytes

  • Ben

    Hallo glenn,

    Waarom heb je niet alle stappen uitgevoerd???

    Wil je AVG houden? Want je had ook Avast opnieuw kunnen installeren maar dat waren de volgende stappen.!!

    http://antivirus.startpagina.nl/prikbord/15028946/15030719/re-problemen-opstart–logje#msg-15030719

    Je had de combofix in stap 3 nog moeten doen :S

    Je gaat dingen uit je eigen uitvoeren waar ik niet om vraag, zo werk alles alleen tegen.:S

    Dus verwijder 1 van de twee virusscanners en doe stap 2 en 3 nog een keer en plaats daarna de logjes van Combo en HijackThis.

    Hoe is het met je internet verbinding??(reset anders je modem eens)

    Gr. Ben

  • glenn

    Sorry

    Ga niet meer op eigen houtje dingen doen

    combo start opnieuw op en gaat een herstelpunt maken en dan…..ben ik mijn internet kwijt

    en heb dan de grootste moeite het weer in orde te krijgen

    Mijn keuze is avg geworden omdat avast het begaf….als alles weer als vanouds loopt dan gooi ik avg eraf en avast erop / wil niet ombeschermd op het internet

    Ik ga nu combo uitvoeren en dan doe ik hijack

    Zal ik het zo doen ben ?

  • Ben

    Hallo glenn,

    Verwijder AVAST,

    En doe dan de rest van de stappen waarna we nog verder gaan.

    Gr.Ben

  • glenn

    Hallo ben

    met veel pijn en moeite heb ik de pc weer aan de praat gekregen

    combofix werkt bij mij averechts

    systeemherstel etc etc

    sorry kan je geen logje geven van combofix

    wacht op reactie

    gr

  • Ben

    Hallo glenn,

    Doe onderstaande stappen;

    1. Heb je al één virusscanner verwijderd?( zo nee verwijder die eerst)

    2. We gaan je mappen zichtbaar maken:

    Ga naar Computer.

    Kies > Organiseren > Map- en zoekopties.

    Ga naar het tabblad Weergave.

    Scroll in het venster naar Verborgen bestanden en mappen.

    Selecteer de optie Verborgen bestanden en mappen weergeven.

    Klik op Toepassen > OK.

    3. Download TDSSKiller en sla het op je Bureaublad op.

    • Pak de bestanden in tdsskiller.zip uit.

    • Open de map tdsskiller en dubbelklik op TDSSKiller.exe om de tool te starten.

    Windows 7 en Windows Vista gebruikers:

    Rechtsklik op TDSSKiller.exe -> Uitvoeren als Administrator om de tool te starten.

    Als TDSSKiller bericht geeft van een beschikbare update, dan voer je deze eerst uit.

    • Een nieuwe versie van TDSSkiller zal nu gedownload worden en sla deze op je Bureaublad op.

    • Start TDSSkiller opnieuw.

    • Klik op "Change parameters" en zorg dat de onderstaande opties allemaal aangevinkt zijn.

    • Klik op de knop "Start Scan" en volg de instructies.

    • Wanneer de scan klaar is klik je op de knop "Report".

    • Er opent een kladblokbestand. Post de inhoud van dit bestand.

    Herstart de pc als TDSSKiller die optie geeft. (Reboot now)

    Wanneer er een herstart nodig was, vind je de logfile in C:\TDSSKiller.___log.txt

    4. Plaats nu het TDSS en een nieuw HijackThis logje.

    gr.Ben

  • glenn

    19:18:45.0523 2372 TDSS rootkit removing tool 2.7.1.0 Jan 13 2012 15:24:05

    19:18:45.0664 2372 ============================================================

    19:18:45.0664 2372 Current date / time: 2012/01/14 19:18:45.0664

    19:18:45.0664 2372 SystemInfo:

    19:18:45.0664 2372

    19:18:45.0664 2372 OS Version: 6.0.6002 ServicePack: 2.0

    19:18:45.0664 2372 Product type: Workstation

    19:18:45.0664 2372 ComputerName: PC_VAN_

    19:18:45.0664 2372 UserName:

    19:18:45.0664 2372 Windows directory: C:\Windows

    19:18:45.0664 2372 System windows directory: C:\Windows

    19:18:45.0664 2372 Processor architecture: Intel x86

    19:18:45.0664 2372 Number of processors: 2

    19:18:45.0664 2372 Page size: 0x1000

    19:18:45.0664 2372 Boot type: Normal boot

    19:18:45.0664 2372 ============================================================

    19:18:46.0210 2372 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000, SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K’, Flags 0x00000050

    19:18:46.0319 2372 Initialize success

    19:18:52.0387 4880 ============================================================

    19:18:52.0387 4880 Scan started

    19:18:52.0387 4880 Mode: Manual; SigCheck; TDLFS;

    19:18:52.0387 4880 ============================================================

    19:18:53.0058 4880 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys

    19:18:53.0276 4880 ACPI - ok

    19:18:53.0495 4880 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys

    19:18:53.0526 4880 adp94xx - ok

    19:18:53.0588 4880 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys

    19:18:53.0620 4880 adpahci - ok

    19:18:53.0666 4880 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys

    19:18:53.0682 4880 adpu160m - ok

    19:18:53.0713 4880 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys

    19:18:53.0744 4880 adpu320 - ok

    19:18:53.0838 4880 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys

    19:18:53.0885 4880 AFD - ok

    19:18:53.0932 4880 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys

    19:18:53.0947 4880 agp440 - ok

    19:18:54.0010 4880 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys

    19:18:54.0056 4880 aic78xx - ok

    19:18:54.0150 4880 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys

    19:18:54.0166 4880 aliide - ok

    19:18:54.0212 4880 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys

    19:18:54.0244 4880 amdagp - ok

    19:18:54.0275 4880 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys

    19:18:54.0306 4880 amdide - ok

    19:18:54.0337 4880 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys

    19:18:54.0400 4880 AmdK7 - ok

    19:18:54.0431 4880 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys

    19:18:54.0478 4880 AmdK8 - ok

    19:18:54.0524 4880 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys

    19:18:54.0556 4880 arc - ok

    19:18:54.0587 4880 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys

    19:18:54.0618 4880 arcsas - ok

    19:18:54.0665 4880 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys

    19:18:54.0712 4880 AsyncMac - ok

    19:18:54.0743 4880 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys

    19:18:54.0758 4880 atapi - ok

    19:18:54.0790 4880 ATE_PROCMON - ok

    19:18:54.0852 4880 AVGIDSDriver (4cbb56fbc9c0cbc517e6e3a6889ebddc) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys

    19:18:54.0914 4880 AVGIDSDriver - ok

    19:18:54.0946 4880 AVGIDSEH (459bce188232e2fe6152423efef65d76) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys

    19:18:54.0961 4880 AVGIDSEH - ok

    19:18:54.0977 4880 AVGIDSFilter (91d9abe7e88eac7c167cba4ed4d983bf) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys

    19:18:54.0992 4880 AVGIDSFilter - ok

    19:18:55.0024 4880 AVGIDSShim (3fc2714e185c04308215d46730d41a94) C:\Windows\system32\DRIVERS\AVGIDSShim.Sys

    19:18:55.0055 4880 AVGIDSShim - ok

    19:18:55.0102 4880 Avgldx86 (bf8118cd5e2255387b715b534d64acd1) C:\Windows\system32\DRIVERS\avgldx86.sys

    19:18:55.0133 4880 Avgldx86 - ok

    19:18:55.0148 4880 Avgmfx86 (1c77ef67f196466adc9924cb288afe87) C:\Windows\system32\DRIVERS\avgmfx86.sys

    19:18:55.0164 4880 Avgmfx86 - ok

    19:18:55.0195 4880 Avgrkx86 (f2038ed7284b79dcef581468121192a9) C:\Windows\system32\DRIVERS\avgrkx86.sys

    19:18:55.0211 4880 Avgrkx86 - ok

    19:18:55.0242 4880 Avgtdix (a6d562b612216d8d02a35ebeb92366bd) C:\Windows\system32\DRIVERS\avgtdix.sys

    19:18:55.0273 4880 Avgtdix - ok

    19:18:55.0304 4880 BCASPROT - ok

    19:18:55.0336 4880 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys

    19:18:55.0382 4880 Beep - ok

    19:18:55.0429 4880 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys

    19:18:55.0476 4880 blbdrive - ok

    19:18:55.0507 4880 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys

    19:18:55.0554 4880 bowser - ok

    19:18:55.0570 4880 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys

    19:18:55.0616 4880 BrFiltLo - ok

    19:18:55.0632 4880 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys

    19:18:55.0663 4880 BrFiltUp - ok

    19:18:55.0694 4880 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys

    19:18:55.0757 4880 Brserid - ok

    19:18:55.0788 4880 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys

    19:18:55.0835 4880 BrSerWdm - ok

    19:18:55.0866 4880 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys

    19:18:55.0928 4880 BrUsbMdm - ok

    19:18:55.0944 4880 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys

    19:18:56.0006 4880 BrUsbSer - ok

    19:18:56.0022 4880 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys

    19:18:56.0100 4880 BTHMODEM - ok

    19:18:56.0287 4880 catchme - ok

    19:18:56.0381 4880 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys

    19:18:56.0428 4880 cdfs - ok

    19:18:56.0474 4880 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys

    19:18:56.0506 4880 cdrom - ok

    19:18:56.0537 4880 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys

    19:18:56.0584 4880 circlass - ok

    19:18:56.0630 4880 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys

    19:18:56.0662 4880 CLFS - ok

    19:18:56.0724 4880 cmdGuard (0a2e8cde40d6fd252f4a66558d6cd18d) C:\Windows\system32\DRIVERS\cmdguard.sys

    19:18:56.0771 4880 cmdGuard - ok

    19:18:56.0818 4880 cmdHlp (beb0da2bf48a8f7ad3c49e893936466c) C:\Windows\system32\DRIVERS\cmdhlp.sys

    19:18:56.0849 4880 cmdHlp - ok

    19:18:56.0880 4880 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys

    19:18:56.0911 4880 cmdide - ok

    19:18:56.0958 4880 CoachUsb (38d7513e99497eb26d3424ab1eea61cd) C:\Windows\system32\DRIVERS\CoachUsb.sys

    19:18:57.0005 4880 CoachUsb - ok

    19:18:57.0036 4880 CoachVc (4c38e9d104e3e79073e6f27647994d3c) C:\Windows\system32\DRIVERS\CoachVc.sys

    19:18:57.0052 4880 CoachVc ( UnsignedFile.Multi.Generic ) - warning

    19:18:57.0052 4880 CoachVc - detected UnsignedFile.Multi.Generic (1)

    19:18:57.0083 4880 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\drivers\compbatt.sys

    19:18:57.0114 4880 Compbatt - ok

    19:18:57.0161 4880 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys

    19:18:57.0192 4880 crcdisk - ok

    19:18:57.0239 4880 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys

    19:18:57.0301 4880 Crusoe - ok

    19:18:57.0379 4880 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys

    19:18:57.0426 4880 DfsC - ok

    19:18:57.0457 4880 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys

    19:18:57.0473 4880 disk - ok

    19:18:57.0520 4880 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys

    19:18:57.0566 4880 Dot4 - ok

    19:18:57.0598 4880 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys

    19:18:57.0644 4880 Dot4Print - ok

    19:18:57.0660 4880 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys

    19:18:57.0707 4880 dot4usb - ok

    19:18:57.0754 4880 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys

    19:18:57.0785 4880 drmkaud - ok

    19:18:57.0816 4880 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys

    19:18:57.0863 4880 DXGKrnl - ok

    19:18:57.0910 4880 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys

    19:18:57.0941 4880 E1G60 - ok

    19:18:58.0003 4880 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys

    19:18:58.0034 4880 Ecache - ok

    19:18:58.0081 4880 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys

    19:18:58.0112 4880 elxstor - ok

    19:18:58.0159 4880 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys

    19:18:58.0190 4880 ErrDev - ok

    19:18:58.0253 4880 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys

    19:18:58.0284 4880 exfat - ok

    19:18:58.0315 4880 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys

    19:18:58.0362 4880 fastfat - ok

    19:18:58.0393 4880 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys

    19:18:58.0424 4880 fdc - ok

    19:18:58.0456 4880 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys

    19:18:58.0487 4880 FileInfo - ok

    19:18:58.0518 4880 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys

    19:18:58.0549 4880 Filetrace - ok

    19:18:58.0596 4880 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys

    19:18:58.0627 4880 flpydisk - ok

    19:18:58.0658 4880 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys

    19:18:58.0690 4880 FltMgr - ok

    19:18:58.0736 4880 FreshIO (caac750e6d27866c28494e0de9fa802a) C:\Program Files\FreshDevices\FreshDiagnose\FreshIO.sys

    19:18:58.0752 4880 FreshIO ( UnsignedFile.Multi.Generic ) - warning

    19:18:58.0752 4880 FreshIO - detected UnsignedFile.Multi.Generic (1)

    19:18:58.0783 4880 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys

    19:18:58.0814 4880 Fs_Rec - ok

    19:18:58.0846 4880 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys

    19:18:58.0877 4880 gagp30kx - ok

    19:18:58.0908 4880 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    19:18:58.0924 4880 GEARAspiWDM - ok

    19:18:58.0955 4880 giveio (77ebf3e9386daa51551af429052d88d0) C:\Windows\system32\giveio.sys

    19:18:58.0955 4880 giveio ( UnsignedFile.Multi.Generic ) - warning

    19:18:58.0955 4880 giveio - detected UnsignedFile.Multi.Generic (1)

    19:18:58.0970 4880 gsjxu - ok

    19:18:59.0048 4880 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys

    19:18:59.0064 4880 HdAudAddService - ok

    19:18:59.0142 4880 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys

    19:18:59.0189 4880 HDAudBus - ok

    19:18:59.0236 4880 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys

    19:18:59.0298 4880 HidBth - ok

    19:18:59.0345 4880 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys

    19:18:59.0407 4880 HidIr - ok

    19:18:59.0454 4880 HidUsb (3c64042b95e583b366ba4e5d2450235e) C:\Windows\system32\drivers\hidusb.sys

    19:18:59.0516 4880 HidUsb - ok

    19:18:59.0548 4880 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys

    19:18:59.0579 4880 HpCISSs - ok

    19:18:59.0626 4880 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys

    19:18:59.0704 4880 HTTP - ok

    19:18:59.0735 4880 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys

    19:18:59.0766 4880 i2omp - ok

    19:18:59.0782 4880 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys

    19:18:59.0813 4880 i8042prt - ok

    19:18:59.0860 4880 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys

    19:18:59.0875 4880 iaStorV - ok

    19:18:59.0922 4880 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys

    19:18:59.0938 4880 iirsp - ok

    19:19:00.0000 4880 inspect (2c03538258729852d55f9f2b8906a8b9) C:\Windows\system32\DRIVERS\inspect.sys

    19:19:00.0016 4880 inspect - ok

    19:19:00.0109 4880 IntcAzAudAddService (e286395fd90d15b6a86da1619e3fcebf) C:\Windows\system32\drivers\RTKVHDA.sys

    19:19:00.0296 4880 IntcAzAudAddService - ok

    19:19:00.0390 4880 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys

    19:19:00.0421 4880 intelide - ok

    19:19:00.0437 4880 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys

    19:19:00.0499 4880 intelppm - ok

    19:19:00.0515 4880 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys

    19:19:00.0562 4880 IpFilterDriver - ok

    19:19:00.0593 4880 IpInIp - ok

    19:19:00.0624 4880 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys

    19:19:00.0671 4880 IPMIDRV - ok

    19:19:00.0702 4880 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys

    19:19:00.0733 4880 IPNAT - ok

    19:19:00.0780 4880 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys

    19:19:00.0827 4880 IRENUM - ok

    19:19:00.0858 4880 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys

    19:19:00.0874 4880 isapnp - ok

    19:19:00.0920 4880 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys

    19:19:00.0936 4880 iScsiPrt - ok

    19:19:00.0967 4880 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys

    19:19:00.0998 4880 iteatapi - ok

    19:19:01.0030 4880 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys

    19:19:01.0045 4880 iteraid - ok

    19:19:01.0092 4880 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys

    19:19:01.0108 4880 kbdclass - ok

    19:19:01.0139 4880 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\drivers\kbdhid.sys

    19:19:01.0186 4880 kbdhid - ok

    19:19:01.0248 4880 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys

    19:19:01.0295 4880 KSecDD - ok

    19:19:01.0326 4880 Lbd - ok

    19:19:01.0373 4880 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys

    19:19:01.0404 4880 lltdio - ok

    19:19:01.0466 4880 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys

    19:19:01.0482 4880 LSI_FC - ok

    19:19:01.0513 4880 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys

    19:19:01.0529 4880 LSI_SAS - ok

    19:19:01.0560 4880 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys

    19:19:01.0591 4880 LSI_SCSI - ok

    19:19:01.0622 4880 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys

    19:19:01.0669 4880 luafv - ok

    19:19:01.0732 4880 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys

    19:19:01.0763 4880 megasas - ok

    19:19:01.0794 4880 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys

    19:19:01.0841 4880 MegaSR - ok

    19:19:01.0888 4880 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys

    19:19:01.0919 4880 Modem - ok

    19:19:01.0950 4880 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys

    19:19:01.0997 4880 monitor - ok

    19:19:02.0012 4880 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys

    19:19:02.0044 4880 mouclass - ok

    19:19:02.0090 4880 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\drivers\mouhid.sys

    19:19:02.0137 4880 mouhid - ok

    19:19:02.0168 4880 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys

    19:19:02.0184 4880 MountMgr - ok

    19:19:02.0231 4880 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys

    19:19:02.0246 4880 mpio - ok

    19:19:02.0278 4880 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys

    19:19:02.0324 4880 mpsdrv - ok

    19:19:02.0356 4880 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys

    19:19:02.0371 4880 Mraid35x - ok

    19:19:02.0387 4880 MREMP50 - ok

    19:19:02.0402 4880 MREMP50a64 - ok

    19:19:02.0418 4880 MREMPR5 - ok

    19:19:02.0434 4880 MRENDIS5 - ok

    19:19:02.0449 4880 MRESP50 - ok

    19:19:02.0465 4880 MRESP50a64 - ok

    19:19:02.0527 4880 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys

    19:19:02.0558 4880 MRxDAV - ok

    19:19:02.0590 4880 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys

    19:19:02.0636 4880 mrxsmb - ok

    19:19:02.0668 4880 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys

    19:19:02.0699 4880 mrxsmb10 - ok

    19:19:02.0714 4880 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys

    19:19:02.0746 4880 mrxsmb20 - ok

    19:19:02.0792 4880 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys

    19:19:02.0824 4880 msahci - ok

    19:19:02.0839 4880 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys

    19:19:02.0855 4880 msdsm - ok

    19:19:02.0902 4880 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys

    19:19:02.0948 4880 Msfs - ok

    19:19:02.0964 4880 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys

    19:19:02.0980 4880 msisadrv - ok

    19:19:03.0042 4880 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys

    19:19:03.0089 4880 MSKSSRV - ok

    19:19:03.0167 4880 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys

    19:19:03.0198 4880 MSPCLOCK - ok

    19:19:03.0214 4880 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys

    19:19:03.0260 4880 MSPQM - ok

    19:19:03.0292 4880 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys

    19:19:03.0323 4880 MsRPC - ok

    19:19:03.0338 4880 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys

    19:19:03.0370 4880 mssmbios - ok

    19:19:03.0416 4880 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys

    19:19:03.0463 4880 MSTEE - ok

    19:19:03.0494 4880 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys

    19:19:03.0510 4880 Mup - ok

    19:19:03.0588 4880 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys

    19:19:03.0619 4880 NativeWifiP - ok

    19:19:03.0666 4880 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys

    19:19:03.0713 4880 NDIS - ok

    19:19:03.0744 4880 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys

    19:19:03.0791 4880 NdisTapi - ok

    19:19:03.0838 4880 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys

    19:19:03.0900 4880 Ndisuio - ok

    19:19:03.0947 4880 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys

    19:19:03.0994 4880 NdisWan - ok

    19:19:04.0025 4880 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys

    19:19:04.0087 4880 NDProxy - ok

    19:19:04.0134 4880 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys

    19:19:04.0165 4880 NetBIOS - ok

    19:19:04.0212 4880 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys

    19:19:04.0243 4880 netbt - ok

    19:19:04.0321 4880 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys

    19:19:04.0337 4880 nfrd960 - ok

    19:19:04.0384 4880 nmwcd (357ddb51e03cae598c096d95497373d0) C:\Windows\system32\drivers\ccdcmb.sys

    19:19:04.0430 4880 nmwcd - ok

    19:19:04.0477 4880 nmwcdc (7cd443f9d36c80e152fadb274089577a) C:\Windows\system32\drivers\ccdcmbo.sys

    19:19:04.0508 4880 nmwcdc - ok

    19:19:04.0540 4880 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys

    19:19:04.0571 4880 Npfs - ok

    19:19:04.0602 4880 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys

    19:19:04.0649 4880 nsiproxy - ok

    19:19:04.0727 4880 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys

    19:19:04.0805 4880 Ntfs - ok

    19:19:04.0914 4880 ntk_PowerDVD (170ee229d4def31dbe95348c9a88fe74) C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys

    19:19:04.0945 4880 ntk_PowerDVD - ok

    19:19:05.0023 4880 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys

    19:19:05.0086 4880 ntrigdigi - ok

    19:19:05.0132 4880 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys

    19:19:05.0179 4880 Null - ok

    19:19:05.0444 4880 nvlddmkm (66b4bf606fcc7f0622d4a21bb1461089) C:\Windows\system32\DRIVERS\nvlddmkm.sys

    19:19:05.0944 4880 nvlddmkm - ok

    19:19:06.0053 4880 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys

    19:19:06.0084 4880 nvraid - ok

    19:19:06.0131 4880 nvrd32 (b8d6145d3eb05e9f81bade9b7afc2c80) C:\Windows\system32\drivers\nvrd32.sys

    19:19:06.0146 4880 nvrd32 - ok

    19:19:06.0162 4880 nvsmu (c44ee36dd84fa95eb81d79c374756003) C:\Windows\system32\drivers\nvsmu.sys

    19:19:06.0209 4880 nvsmu - ok

    19:19:06.0240 4880 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys

    19:19:06.0256 4880 nvstor - ok

    19:19:06.0302 4880 nvstor32 (97778c3cb3af6b2243648d0dcd4d8916) C:\Windows\system32\drivers\nvstor32.sys

    19:19:06.0318 4880 nvstor32 - ok

    19:19:06.0365 4880 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys

    19:19:06.0396 4880 nv_agp - ok

    19:19:06.0412 4880 NwlnkFlt - ok

    19:19:06.0443 4880 NwlnkFwd - ok

    19:19:06.0490 4880 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys

    19:19:06.0552 4880 ohci1394 - ok

    19:19:06.0630 4880 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys

    19:19:06.0692 4880 Parport - ok

    19:19:06.0739 4880 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys

    19:19:06.0755 4880 partmgr - ok

    19:19:06.0786 4880 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys

    19:19:06.0848 4880 Parvdm - ok

    19:19:06.0880 4880 pavboot (3adb8bd6154a3ef87496e8fce9c22493) C:\Windows\system32\drivers\pavboot.sys

    19:19:06.0895 4880 pavboot - ok

    19:19:06.0942 4880 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\Windows\system32\DRIVERS\pccsmcfd.sys

    19:19:06.0973 4880 pccsmcfd - ok

    19:19:07.0020 4880 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys

    19:19:07.0036 4880 pci - ok

    19:19:07.0067 4880 pciide (1636d43f10416aeb483bc6001097b26c) C:\Windows\system32\drivers\pciide.sys

    19:19:07.0082 4880 pciide - ok

    19:19:07.0129 4880 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys

    19:19:07.0160 4880 pcmcia - ok

    19:19:07.0207 4880 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys

    19:19:07.0254 4880 pcouffin - ok

    19:19:07.0285 4880 PCTCore (8f93fb300deac55c553c2255f1d0342d) C:\Windows\system32\drivers\PCTCore.sys

    19:19:07.0316 4880 PCTCore - ok

    19:19:07.0379 4880 pctDS (f820b4c61d1e591325b679d479d4eea4) C:\Windows\system32\drivers\pctDS.sys

    19:19:07.0410 4880 pctDS - ok

    19:19:07.0457 4880 pctEFA (acc8c15f3d59f17c5d903ff1de3b43d3) C:\Windows\system32\drivers\pctEFA.sys

    19:19:07.0504 4880 pctEFA - ok

    19:19:07.0582 4880 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys

    19:19:07.0691 4880 PEAUTH - ok

    19:19:07.0800 4880 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys

    19:19:07.0831 4880 PptpMiniport - ok

    19:19:07.0862 4880 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys

    19:19:07.0909 4880 Processor - ok

    19:19:07.0987 4880 Ps2 (390c204ced3785609ab24e9c52054a84) C:\Windows\system32\DRIVERS\PS2.sys

    19:19:08.0018 4880 Ps2 - ok

    19:19:08.0081 4880 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys

    19:19:08.0112 4880 PSched - ok

    19:19:08.0128 4880 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\Windows\system32\Drivers\PxHelp20.sys

    19:19:08.0159 4880 PxHelp20 - ok

    19:19:08.0221 4880 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys

    19:19:08.0299 4880 ql2300 - ok

    19:19:08.0346 4880 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys

    19:19:08.0362 4880 ql40xx - ok

    19:19:08.0408 4880 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys

    19:19:08.0440 4880 QWAVEdrv - ok

    19:19:08.0471 4880 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys

    19:19:08.0502 4880 RasAcd - ok

    19:19:08.0549 4880 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys

    19:19:08.0596 4880 Rasl2tp - ok

    19:19:08.0627 4880 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys

    19:19:08.0674 4880 RasPppoe - ok

    19:19:08.0689 4880 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys

    19:19:08.0720 4880 RasSstp - ok

    19:19:08.0767 4880 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys

    19:19:08.0798 4880 rdbss - ok

    19:19:08.0830 4880 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys

    19:19:08.0876 4880 RDPCDD - ok

    19:19:08.0923 4880 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys

    19:19:08.0970 4880 rdpdr - ok

    19:19:08.0986 4880 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys

    19:19:09.0017 4880 RDPENCDD - ok

    19:19:09.0095 4880 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys

    19:19:09.0126 4880 RDPWD - ok

    19:19:09.0204 4880 Revoflt (b9bb8e2093c1615ad6ea55ad96214354) C:\Windows\system32\DRIVERS\revoflt.sys

    19:19:09.0220 4880 Revoflt - ok

    19:19:09.0266 4880 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys

    19:19:09.0313 4880 rspndr - ok

    19:19:09.0344 4880 RTL8169 (2dd5dd25fb68975d094ae57d46097f48) C:\Windows\system32\DRIVERS\Rtlh86.sys

    19:19:09.0360 4880 RTL8169 - ok

    19:19:09.0422 4880 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys

    19:19:09.0438 4880 sbp2port - ok

    19:19:09.0500 4880 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys

    19:19:09.0563 4880 secdrv - ok

    19:19:09.0594 4880 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys

    19:19:09.0656 4880 Serenum - ok

    19:19:09.0719 4880 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys

    19:19:09.0781 4880 Serial - ok

    19:19:09.0844 4880 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys

    19:19:09.0890 4880 sermouse - ok

    19:19:10.0046 4880 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys

    19:19:10.0078 4880 sffdisk - ok

    19:19:10.0171 4880 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys

    19:19:10.0234 4880 sffp_mmc - ok

    19:19:10.0296 4880 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys

    19:19:10.0343 4880 sffp_sd - ok

    19:19:10.0468 4880 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys

    19:19:10.0530 4880 sfloppy - ok

    19:19:10.0764 4880 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys

    19:19:10.0795 4880 sisagp - ok

    19:19:10.0858 4880 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys

    19:19:10.0889 4880 SiSRaid2 - ok

    19:19:10.0967 4880 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys

    19:19:10.0998 4880 SiSRaid4 - ok

    19:19:11.0123 4880 SmartDefragDriver (46b40982af166bf89c3f51fb13e60d6d) C:\Windows\system32\Drivers\SmartDefragDriver.sys

    19:19:11.0138 4880 SmartDefragDriver - ok

    19:19:11.0201 4880 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys

    19:19:11.0248 4880 Smb - ok

    19:19:11.0357 4880 speedfan (5d6401db90ec81b71f8e2c5c8f0fef23) C:\Windows\system32\speedfan.sys

    19:19:11.0372 4880 speedfan ( UnsignedFile.Multi.Generic ) - warning

    19:19:11.0372 4880 speedfan - detected UnsignedFile.Multi.Generic (1)

    19:19:11.0404 4880 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys

    19:19:11.0435 4880 spldr - ok

    19:19:11.0513 4880 sptd (d15da1ba189770d93eea2d7e18f95af9) C:\Windows\system32\Drivers\sptd.sys

    19:19:11.0513 4880 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: d15da1ba189770d93eea2d7e18f95af9

    19:19:11.0528 4880 sptd ( LockedFile.Multi.Generic ) - warning

    19:19:11.0528 4880 sptd - detected LockedFile.Multi.Generic (1)

    19:19:11.0575 4880 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys

    19:19:11.0653 4880 srv - ok

    19:19:11.0700 4880 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys

    19:19:11.0747 4880 srv2 - ok

    19:19:11.0809 4880 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys

    19:19:11.0840 4880 srvnet - ok

    19:19:11.0918 4880 ssm_bus (14622ae81c72b08691eedaabc1d4a129) C:\Windows\system32\DRIVERS\ssm_bus.sys

    19:19:11.0950 4880 ssm_bus - ok

    19:19:11.0981 4880 ssm_mdfl (43ee5e9fda61a5e0eac4c1de699e6e4d) C:\Windows\system32\DRIVERS\ssm_mdfl.sys

    19:19:12.0012 4880 ssm_mdfl - ok

    19:19:12.0043 4880 ssm_mdm (918cfd32c7feb174f356a0a6fad11f4b) C:\Windows\system32\DRIVERS\ssm_mdm.sys

    19:19:12.0074 4880 ssm_mdm - ok

    19:19:12.0152 4880 ss_bus (5a1d0ca8a5f1e7b4ec50b9d76c001f0e) C:\Windows\system32\DRIVERS\ss_bus.sys

    19:19:12.0168 4880 ss_bus - ok

    19:19:12.0230 4880 ss_mdfl (f0a85580e36a3a85059037d39a9cf079) C:\Windows\system32\DRIVERS\ss_mdfl.sys

    19:19:12.0246 4880 ss_mdfl - ok

    19:19:12.0277 4880 ss_mdm (84c3dbfd1bfa4adc0a950b3d5506cb00) C:\Windows\system32\DRIVERS\ss_mdm.sys

    19:19:12.0293 4880 ss_mdm - ok

    19:19:12.0340 4880 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys

    19:19:12.0355 4880 StarOpen ( UnsignedFile.Multi.Generic ) - warning

    19:19:12.0355 4880 StarOpen - detected UnsignedFile.Multi.Generic (1)

    19:19:12.0433 4880 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys

    19:19:12.0449 4880 swenum - ok

    19:19:12.0480 4880 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys

    19:19:12.0511 4880 Symc8xx - ok

    19:19:12.0542 4880 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys

    19:19:12.0558 4880 Sym_hi - ok

    19:19:12.0589 4880 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys

    19:19:12.0605 4880 Sym_u3 - ok

    19:19:12.0714 4880 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys

    19:19:12.0808 4880 Tcpip - ok

    19:19:12.0839 4880 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys

    19:19:12.0901 4880 Tcpip6 - ok

    19:19:12.0979 4880 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys

    19:19:13.0073 4880 tcpipreg - ok

    19:19:13.0135 4880 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys

    19:19:13.0182 4880 TDPIPE - ok

    19:19:13.0229 4880 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys

    19:19:13.0291 4880 TDTCP - ok

    19:19:13.0338 4880 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys

    19:19:13.0369 4880 tdx - ok

    19:19:13.0416 4880 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys

    19:19:13.0432 4880 TermDD - ok

    19:19:13.0556 4880 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys

    19:19:13.0603 4880 tssecsrv - ok

    19:19:13.0822 4880 TuneUpUtilitiesDrv (f2107c9d85ec0df116939ccce06ae697) C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys

    19:19:13.0837 4880 TuneUpUtilitiesDrv - ok

    19:19:13.0915 4880 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys

    19:19:13.0978 4880 tunmp - ok

    19:19:14.0024 4880 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys

    19:19:14.0087 4880 tunnel - ok

    19:19:14.0118 4880 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys

    19:19:14.0149 4880 uagp35 - ok

    19:19:14.0196 4880 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys

    19:19:14.0258 4880 udfs - ok

    19:19:14.0321 4880 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys

    19:19:14.0336 4880 uliagpkx - ok

    19:19:14.0383 4880 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys

    19:19:14.0414 4880 uliahci - ok

    19:19:14.0446 4880 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys

    19:19:14.0477 4880 UlSata - ok

    19:19:14.0508 4880 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys

    19:19:14.0539 4880 ulsata2 - ok

    19:19:14.0586 4880 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys

    19:19:14.0648 4880 umbus - ok

    19:19:14.0726 4880 UnlockerDriver5 (bb879dcfd22926efbeb3298129898cbb) C:\Program Files\Unlocker\UnlockerDriver5.sys

    19:19:14.0742 4880 UnlockerDriver5 ( UnsignedFile.Multi.Generic ) - warning

    19:19:14.0742 4880 UnlockerDriver5 - detected UnsignedFile.Multi.Generic (1)

    19:19:14.0882 4880 upperdev (15629e4d65f97ab5432d6d9597cf6a33) C:\Windows\system32\DRIVERS\usbser_lowerflt.sys

    19:19:14.0929 4880 upperdev - ok

    19:19:14.0992 4880 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys

    19:19:15.0038 4880 usbccgp - ok

    19:19:15.0085 4880 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys

    19:19:15.0179 4880 usbcir - ok

    19:19:15.0226 4880 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys

    19:19:15.0272 4880 usbehci - ok

    19:19:15.0304 4880 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys

    19:19:15.0350 4880 usbhub - ok

    19:19:15.0382 4880 usbohci (ce697fee0d479290d89bec80dfe793b7) C:\Windows\system32\DRIVERS\usbohci.sys

    19:19:15.0413 4880 usbohci - ok

    19:19:15.0460 4880 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys

    19:19:15.0506 4880 usbprint - ok

    19:19:15.0569 4880 usbser (d575246188f63de0accf6eac5fb59e6a) C:\Windows\system32\drivers\usbser.sys

    19:19:15.0600 4880 usbser - ok

    19:19:15.0631 4880 UsbserFilt (5c17e6a11aa8be53f79fd364ba19f0ce) C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys

    19:19:15.0662 4880 UsbserFilt - ok

    19:19:15.0709 4880 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS

    19:19:15.0740 4880 USBSTOR - ok

    19:19:15.0787 4880 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys

    19:19:15.0818 4880 usbuhci - ok

    19:19:15.0896 4880 V0260VID (4f6d02349cac986a017ad1a0f2e2b099) C:\Windows\system32\DRIVERS\V0260Vid.sys

    19:19:15.0943 4880 V0260VID - ok

    19:19:15.0990 4880 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys

    19:19:16.0037 4880 vga - ok

    19:19:16.0084 4880 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys

    19:19:16.0115 4880 VgaSave - ok

    19:19:16.0162 4880 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys

    19:19:16.0193 4880 viaagp - ok

    19:19:16.0224 4880 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys

    19:19:16.0271 4880 ViaC7 - ok

    19:19:16.0349 4880 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys

    19:19:16.0380 4880 viaide - ok

    19:19:16.0458 4880 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys

    19:19:16.0474 4880 volmgr - ok

    19:19:16.0630 4880 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys

    19:19:16.0661 4880 volmgrx - ok

    19:19:16.0988 4880 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys

    19:19:17.0020 4880 volsnap - ok

    19:19:17.0129 4880 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys

    19:19:17.0160 4880 vsmraid - ok

    19:19:17.0254 4880 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys

    19:19:17.0316 4880 WacomPen - ok

    19:19:17.0347 4880 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys

    19:19:17.0378 4880 Wanarp - ok

    19:19:17.0410 4880 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys

    19:19:17.0456 4880 Wanarpv6 - ok

    19:19:17.0519 4880 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys

    19:19:17.0534 4880 Wd - ok

    19:19:17.0581 4880 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys

    19:19:17.0628 4880 Wdf01000 - ok

    19:19:17.0846 4880 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys

    19:19:17.0893 4880 WmiAcpi - ok

    19:19:17.0987 4880 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys

    19:19:18.0034 4880 WpdUsb - ok

    19:19:18.0080 4880 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys

    19:19:18.0143 4880 ws2ifsl - ok

    19:19:18.0205 4880 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys

    19:19:18.0252 4880 WUDFRd - ok

    19:19:18.0439 4880 {329F96B6-DF1E-4328-BFDA-39EA953C1312} (3cb263cf60b253bead6e0205e1fa5669) C:\Program Files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl

    19:19:18.0455 4880 {329F96B6-DF1E-4328-BFDA-39EA953C1312} - ok

    19:19:18.0502 4880 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0

    19:19:18.0626 4880 \Device\Harddisk0\DR0 - ok

    19:19:18.0642 4880 Boot (0x1200) (d7b8bf075f4a3e8d469a9f455ec76644) \Device\Harddisk0\DR0\Partition0

    19:19:18.0642 4880 \Device\Harddisk0\DR0\Partition0 - ok

    19:19:18.0642 4880 ============================================================

    19:19:18.0642 4880 Scan finished

    19:19:18.0642 4880 ============================================================

    19:19:18.0658 5924 Detected object count: 7

    19:19:18.0658 5924 Actual detected object count: 7

    en hijack log

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 23:42:36, on 13-1-2012

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16421)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

    C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

    C:\Program Files\AVAST Software\Avast\AvastUI.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe

    C:\Windows\System32\mobsync.exe

    C:\Windows\explorer.exe

    C:\Program Files\TuneUp Utilities 2011\OneClick.exe

    C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL

    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL

    O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O4 - HKLM\..\Run: C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

    O4 - HKLM\..\Run: “C:\Program Files\AVAST Software\Avast\avastUI.exe” /nogui

    O4 - HKLM\..\RunOnce: C:\Windows\system32\reg.exe DELETE “HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components” /v “NoIE4StubProcessing” /f

    O4 - HKLM\..\RunOnce: cmd.exe /c start http://www.avg.com/nl.special-uninstallation-feedback-app?lic=OE1FSC1SNk8yUC1WWUtYUy1CQVlXUi1DRTdYWS1XRU1CUg“&”inst=NzYtOTQ1ODYzNDI0LVQ1LUJBKzEtS1YzKzctWEwrMS1CNC1YTzM2KzEtRDM4MUwrNy1OMUQrMS1QTCs5LUNJUCsyLUREVCswLUk5MCsxLUREOTArMS1TVDkwQV

    O4 - HKLM\..\RunOnce: C:\Windows\System32\rstrui.exe /runonce

    O4 - HKLM\..\RunOnce: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

    O4 - HKCU\..\Run: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: “C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe” /AutoStart

    O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User ‘UpdatusUser’)

    O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: rundll32.exe oobefldr.dll,ShowWelcomeCenter (User ‘UpdatusUser’)

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra ‘Tools’ menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra ‘Tools’ menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe

    O9 - Extra ‘Tools’ menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe

    O11 - Options group: Accelerated graphics

    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab

    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab

    O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    O23 - Service: CLHNServiceForPowerDVD - Unknown owner - C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe

    O23 - Service: CyberLink PowerDVD 11.0 Monitor Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe

    O23 - Service: CyberLink PowerDVD 11.0 Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe

    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

    O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe

    O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe

    End of file - 7525 bytes

  • fazantje

    Hoi Glenn,

    Ik heb toch het gevoel dat er ergens goeie bestanden zijn verwijderd, door welk programma dan ook.

    Doe het volgende eens:

    Let goed op en voer precies uit zoals ik omschrijf!!!!!!

    Klik op start.

    Typ onderaan, in het vakje “programma's en bestanden zoeken” cmd.

    Nu zie je een lijst tevoorschijn komen en helemaal boven aan staat onder “programma's” CMD.exe

    Klik hierop met jou rechter muisknop en kies voor Als administrator uitvoeren.

    In het zwarte venster wat je nu ziet type je: sfc /scannow en klik dan op enter.

    p.s.

    Denk wel aan de spatie na cfs.

    In het zwarte venster zie nu de voortgang van de scan.

    Als de scan klaar is, typ je Exit en klik dan op enter.

    Let goed op de laatste meldingen in het venster: indien aangegeven wordt dat de computer opnieuw opgestart moet worden, moet je dit doen.

    Vertel daarna eens hoe het dan gaat.

    Succes,

    Huib;)

  • glenn

    er zijn beschadigde bestanden en opgeslagen in cbs logwindir logs cbs cbs log

    gekeken maar toegang geweigerd

    geen herstart o i d

    gr

  • fazantje

    Hoi Glenn,

    Het begint er op te lijken dat je een herinstal van windows moet doen.

    Er is TE veel beschadigd.

    Voor een goede uitleg voor herinstal zie:

    Herinstal deel 1 (stap 1 t/m 4).

    Herinstal deel 2 (stap 5 t/m 10).

    Je mag ook nog tot morgen wachten op Ben, want hij is goed op het gebied van software en hardware.

    En misschien dat Jos H nog een oplossing heeft op soft- hardware gebied, hij is DE vaste helper aldaar;)

    Succes,

    Huib;)