19:18:45.0523 2372 TDSS rootkit removing tool 2.7.1.0 Jan 13 2012 15:24:05
19:18:45.0664 2372 ============================================================
19:18:45.0664 2372 Current date / time: 2012/01/14 19:18:45.0664
19:18:45.0664 2372 SystemInfo:
19:18:45.0664 2372
19:18:45.0664 2372 OS Version: 6.0.6002 ServicePack: 2.0
19:18:45.0664 2372 Product type: Workstation
19:18:45.0664 2372 ComputerName: PC_VAN_
19:18:45.0664 2372 UserName:
19:18:45.0664 2372 Windows directory: C:\Windows
19:18:45.0664 2372 System windows directory: C:\Windows
19:18:45.0664 2372 Processor architecture: Intel x86
19:18:45.0664 2372 Number of processors: 2
19:18:45.0664 2372 Page size: 0x1000
19:18:45.0664 2372 Boot type: Normal boot
19:18:45.0664 2372 ============================================================
19:18:46.0210 2372 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000, SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K’, Flags 0x00000050
19:18:46.0319 2372 Initialize success
19:18:52.0387 4880 ============================================================
19:18:52.0387 4880 Scan started
19:18:52.0387 4880 Mode: Manual; SigCheck; TDLFS;
19:18:52.0387 4880 ============================================================
19:18:53.0058 4880 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
19:18:53.0276 4880 ACPI - ok
19:18:53.0495 4880 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
19:18:53.0526 4880 adp94xx - ok
19:18:53.0588 4880 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
19:18:53.0620 4880 adpahci - ok
19:18:53.0666 4880 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
19:18:53.0682 4880 adpu160m - ok
19:18:53.0713 4880 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
19:18:53.0744 4880 adpu320 - ok
19:18:53.0838 4880 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
19:18:53.0885 4880 AFD - ok
19:18:53.0932 4880 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
19:18:53.0947 4880 agp440 - ok
19:18:54.0010 4880 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
19:18:54.0056 4880 aic78xx - ok
19:18:54.0150 4880 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
19:18:54.0166 4880 aliide - ok
19:18:54.0212 4880 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
19:18:54.0244 4880 amdagp - ok
19:18:54.0275 4880 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
19:18:54.0306 4880 amdide - ok
19:18:54.0337 4880 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
19:18:54.0400 4880 AmdK7 - ok
19:18:54.0431 4880 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
19:18:54.0478 4880 AmdK8 - ok
19:18:54.0524 4880 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
19:18:54.0556 4880 arc - ok
19:18:54.0587 4880 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
19:18:54.0618 4880 arcsas - ok
19:18:54.0665 4880 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
19:18:54.0712 4880 AsyncMac - ok
19:18:54.0743 4880 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
19:18:54.0758 4880 atapi - ok
19:18:54.0790 4880 ATE_PROCMON - ok
19:18:54.0852 4880 AVGIDSDriver (4cbb56fbc9c0cbc517e6e3a6889ebddc) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
19:18:54.0914 4880 AVGIDSDriver - ok
19:18:54.0946 4880 AVGIDSEH (459bce188232e2fe6152423efef65d76) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
19:18:54.0961 4880 AVGIDSEH - ok
19:18:54.0977 4880 AVGIDSFilter (91d9abe7e88eac7c167cba4ed4d983bf) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
19:18:54.0992 4880 AVGIDSFilter - ok
19:18:55.0024 4880 AVGIDSShim (3fc2714e185c04308215d46730d41a94) C:\Windows\system32\DRIVERS\AVGIDSShim.Sys
19:18:55.0055 4880 AVGIDSShim - ok
19:18:55.0102 4880 Avgldx86 (bf8118cd5e2255387b715b534d64acd1) C:\Windows\system32\DRIVERS\avgldx86.sys
19:18:55.0133 4880 Avgldx86 - ok
19:18:55.0148 4880 Avgmfx86 (1c77ef67f196466adc9924cb288afe87) C:\Windows\system32\DRIVERS\avgmfx86.sys
19:18:55.0164 4880 Avgmfx86 - ok
19:18:55.0195 4880 Avgrkx86 (f2038ed7284b79dcef581468121192a9) C:\Windows\system32\DRIVERS\avgrkx86.sys
19:18:55.0211 4880 Avgrkx86 - ok
19:18:55.0242 4880 Avgtdix (a6d562b612216d8d02a35ebeb92366bd) C:\Windows\system32\DRIVERS\avgtdix.sys
19:18:55.0273 4880 Avgtdix - ok
19:18:55.0304 4880 BCASPROT - ok
19:18:55.0336 4880 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
19:18:55.0382 4880 Beep - ok
19:18:55.0429 4880 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
19:18:55.0476 4880 blbdrive - ok
19:18:55.0507 4880 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
19:18:55.0554 4880 bowser - ok
19:18:55.0570 4880 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
19:18:55.0616 4880 BrFiltLo - ok
19:18:55.0632 4880 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
19:18:55.0663 4880 BrFiltUp - ok
19:18:55.0694 4880 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
19:18:55.0757 4880 Brserid - ok
19:18:55.0788 4880 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
19:18:55.0835 4880 BrSerWdm - ok
19:18:55.0866 4880 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
19:18:55.0928 4880 BrUsbMdm - ok
19:18:55.0944 4880 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
19:18:56.0006 4880 BrUsbSer - ok
19:18:56.0022 4880 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
19:18:56.0100 4880 BTHMODEM - ok
19:18:56.0287 4880 catchme - ok
19:18:56.0381 4880 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
19:18:56.0428 4880 cdfs - ok
19:18:56.0474 4880 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
19:18:56.0506 4880 cdrom - ok
19:18:56.0537 4880 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
19:18:56.0584 4880 circlass - ok
19:18:56.0630 4880 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
19:18:56.0662 4880 CLFS - ok
19:18:56.0724 4880 cmdGuard (0a2e8cde40d6fd252f4a66558d6cd18d) C:\Windows\system32\DRIVERS\cmdguard.sys
19:18:56.0771 4880 cmdGuard - ok
19:18:56.0818 4880 cmdHlp (beb0da2bf48a8f7ad3c49e893936466c) C:\Windows\system32\DRIVERS\cmdhlp.sys
19:18:56.0849 4880 cmdHlp - ok
19:18:56.0880 4880 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
19:18:56.0911 4880 cmdide - ok
19:18:56.0958 4880 CoachUsb (38d7513e99497eb26d3424ab1eea61cd) C:\Windows\system32\DRIVERS\CoachUsb.sys
19:18:57.0005 4880 CoachUsb - ok
19:18:57.0036 4880 CoachVc (4c38e9d104e3e79073e6f27647994d3c) C:\Windows\system32\DRIVERS\CoachVc.sys
19:18:57.0052 4880 CoachVc ( UnsignedFile.Multi.Generic ) - warning
19:18:57.0052 4880 CoachVc - detected UnsignedFile.Multi.Generic (1)
19:18:57.0083 4880 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\drivers\compbatt.sys
19:18:57.0114 4880 Compbatt - ok
19:18:57.0161 4880 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
19:18:57.0192 4880 crcdisk - ok
19:18:57.0239 4880 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
19:18:57.0301 4880 Crusoe - ok
19:18:57.0379 4880 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
19:18:57.0426 4880 DfsC - ok
19:18:57.0457 4880 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
19:18:57.0473 4880 disk - ok
19:18:57.0520 4880 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys
19:18:57.0566 4880 Dot4 - ok
19:18:57.0598 4880 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys
19:18:57.0644 4880 Dot4Print - ok
19:18:57.0660 4880 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys
19:18:57.0707 4880 dot4usb - ok
19:18:57.0754 4880 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
19:18:57.0785 4880 drmkaud - ok
19:18:57.0816 4880 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
19:18:57.0863 4880 DXGKrnl - ok
19:18:57.0910 4880 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
19:18:57.0941 4880 E1G60 - ok
19:18:58.0003 4880 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
19:18:58.0034 4880 Ecache - ok
19:18:58.0081 4880 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
19:18:58.0112 4880 elxstor - ok
19:18:58.0159 4880 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
19:18:58.0190 4880 ErrDev - ok
19:18:58.0253 4880 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
19:18:58.0284 4880 exfat - ok
19:18:58.0315 4880 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
19:18:58.0362 4880 fastfat - ok
19:18:58.0393 4880 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
19:18:58.0424 4880 fdc - ok
19:18:58.0456 4880 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
19:18:58.0487 4880 FileInfo - ok
19:18:58.0518 4880 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
19:18:58.0549 4880 Filetrace - ok
19:18:58.0596 4880 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
19:18:58.0627 4880 flpydisk - ok
19:18:58.0658 4880 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
19:18:58.0690 4880 FltMgr - ok
19:18:58.0736 4880 FreshIO (caac750e6d27866c28494e0de9fa802a) C:\Program Files\FreshDevices\FreshDiagnose\FreshIO.sys
19:18:58.0752 4880 FreshIO ( UnsignedFile.Multi.Generic ) - warning
19:18:58.0752 4880 FreshIO - detected UnsignedFile.Multi.Generic (1)
19:18:58.0783 4880 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
19:18:58.0814 4880 Fs_Rec - ok
19:18:58.0846 4880 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
19:18:58.0877 4880 gagp30kx - ok
19:18:58.0908 4880 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
19:18:58.0924 4880 GEARAspiWDM - ok
19:18:58.0955 4880 giveio (77ebf3e9386daa51551af429052d88d0) C:\Windows\system32\giveio.sys
19:18:58.0955 4880 giveio ( UnsignedFile.Multi.Generic ) - warning
19:18:58.0955 4880 giveio - detected UnsignedFile.Multi.Generic (1)
19:18:58.0970 4880 gsjxu - ok
19:18:59.0048 4880 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
19:18:59.0064 4880 HdAudAddService - ok
19:18:59.0142 4880 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
19:18:59.0189 4880 HDAudBus - ok
19:18:59.0236 4880 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
19:18:59.0298 4880 HidBth - ok
19:18:59.0345 4880 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
19:18:59.0407 4880 HidIr - ok
19:18:59.0454 4880 HidUsb (3c64042b95e583b366ba4e5d2450235e) C:\Windows\system32\drivers\hidusb.sys
19:18:59.0516 4880 HidUsb - ok
19:18:59.0548 4880 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
19:18:59.0579 4880 HpCISSs - ok
19:18:59.0626 4880 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
19:18:59.0704 4880 HTTP - ok
19:18:59.0735 4880 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
19:18:59.0766 4880 i2omp - ok
19:18:59.0782 4880 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
19:18:59.0813 4880 i8042prt - ok
19:18:59.0860 4880 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
19:18:59.0875 4880 iaStorV - ok
19:18:59.0922 4880 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
19:18:59.0938 4880 iirsp - ok
19:19:00.0000 4880 inspect (2c03538258729852d55f9f2b8906a8b9) C:\Windows\system32\DRIVERS\inspect.sys
19:19:00.0016 4880 inspect - ok
19:19:00.0109 4880 IntcAzAudAddService (e286395fd90d15b6a86da1619e3fcebf) C:\Windows\system32\drivers\RTKVHDA.sys
19:19:00.0296 4880 IntcAzAudAddService - ok
19:19:00.0390 4880 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
19:19:00.0421 4880 intelide - ok
19:19:00.0437 4880 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
19:19:00.0499 4880 intelppm - ok
19:19:00.0515 4880 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:19:00.0562 4880 IpFilterDriver - ok
19:19:00.0593 4880 IpInIp - ok
19:19:00.0624 4880 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
19:19:00.0671 4880 IPMIDRV - ok
19:19:00.0702 4880 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
19:19:00.0733 4880 IPNAT - ok
19:19:00.0780 4880 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
19:19:00.0827 4880 IRENUM - ok
19:19:00.0858 4880 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
19:19:00.0874 4880 isapnp - ok
19:19:00.0920 4880 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
19:19:00.0936 4880 iScsiPrt - ok
19:19:00.0967 4880 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
19:19:00.0998 4880 iteatapi - ok
19:19:01.0030 4880 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
19:19:01.0045 4880 iteraid - ok
19:19:01.0092 4880 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
19:19:01.0108 4880 kbdclass - ok
19:19:01.0139 4880 kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\drivers\kbdhid.sys
19:19:01.0186 4880 kbdhid - ok
19:19:01.0248 4880 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
19:19:01.0295 4880 KSecDD - ok
19:19:01.0326 4880 Lbd - ok
19:19:01.0373 4880 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
19:19:01.0404 4880 lltdio - ok
19:19:01.0466 4880 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
19:19:01.0482 4880 LSI_FC - ok
19:19:01.0513 4880 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
19:19:01.0529 4880 LSI_SAS - ok
19:19:01.0560 4880 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
19:19:01.0591 4880 LSI_SCSI - ok
19:19:01.0622 4880 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
19:19:01.0669 4880 luafv - ok
19:19:01.0732 4880 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
19:19:01.0763 4880 megasas - ok
19:19:01.0794 4880 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
19:19:01.0841 4880 MegaSR - ok
19:19:01.0888 4880 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
19:19:01.0919 4880 Modem - ok
19:19:01.0950 4880 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
19:19:01.0997 4880 monitor - ok
19:19:02.0012 4880 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
19:19:02.0044 4880 mouclass - ok
19:19:02.0090 4880 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\drivers\mouhid.sys
19:19:02.0137 4880 mouhid - ok
19:19:02.0168 4880 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
19:19:02.0184 4880 MountMgr - ok
19:19:02.0231 4880 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
19:19:02.0246 4880 mpio - ok
19:19:02.0278 4880 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
19:19:02.0324 4880 mpsdrv - ok
19:19:02.0356 4880 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
19:19:02.0371 4880 Mraid35x - ok
19:19:02.0387 4880 MREMP50 - ok
19:19:02.0402 4880 MREMP50a64 - ok
19:19:02.0418 4880 MREMPR5 - ok
19:19:02.0434 4880 MRENDIS5 - ok
19:19:02.0449 4880 MRESP50 - ok
19:19:02.0465 4880 MRESP50a64 - ok
19:19:02.0527 4880 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
19:19:02.0558 4880 MRxDAV - ok
19:19:02.0590 4880 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:19:02.0636 4880 mrxsmb - ok
19:19:02.0668 4880 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:19:02.0699 4880 mrxsmb10 - ok
19:19:02.0714 4880 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:19:02.0746 4880 mrxsmb20 - ok
19:19:02.0792 4880 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
19:19:02.0824 4880 msahci - ok
19:19:02.0839 4880 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
19:19:02.0855 4880 msdsm - ok
19:19:02.0902 4880 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
19:19:02.0948 4880 Msfs - ok
19:19:02.0964 4880 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
19:19:02.0980 4880 msisadrv - ok
19:19:03.0042 4880 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
19:19:03.0089 4880 MSKSSRV - ok
19:19:03.0167 4880 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
19:19:03.0198 4880 MSPCLOCK - ok
19:19:03.0214 4880 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
19:19:03.0260 4880 MSPQM - ok
19:19:03.0292 4880 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
19:19:03.0323 4880 MsRPC - ok
19:19:03.0338 4880 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
19:19:03.0370 4880 mssmbios - ok
19:19:03.0416 4880 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
19:19:03.0463 4880 MSTEE - ok
19:19:03.0494 4880 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
19:19:03.0510 4880 Mup - ok
19:19:03.0588 4880 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
19:19:03.0619 4880 NativeWifiP - ok
19:19:03.0666 4880 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
19:19:03.0713 4880 NDIS - ok
19:19:03.0744 4880 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
19:19:03.0791 4880 NdisTapi - ok
19:19:03.0838 4880 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
19:19:03.0900 4880 Ndisuio - ok
19:19:03.0947 4880 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
19:19:03.0994 4880 NdisWan - ok
19:19:04.0025 4880 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
19:19:04.0087 4880 NDProxy - ok
19:19:04.0134 4880 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
19:19:04.0165 4880 NetBIOS - ok
19:19:04.0212 4880 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
19:19:04.0243 4880 netbt - ok
19:19:04.0321 4880 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
19:19:04.0337 4880 nfrd960 - ok
19:19:04.0384 4880 nmwcd (357ddb51e03cae598c096d95497373d0) C:\Windows\system32\drivers\ccdcmb.sys
19:19:04.0430 4880 nmwcd - ok
19:19:04.0477 4880 nmwcdc (7cd443f9d36c80e152fadb274089577a) C:\Windows\system32\drivers\ccdcmbo.sys
19:19:04.0508 4880 nmwcdc - ok
19:19:04.0540 4880 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
19:19:04.0571 4880 Npfs - ok
19:19:04.0602 4880 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
19:19:04.0649 4880 nsiproxy - ok
19:19:04.0727 4880 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
19:19:04.0805 4880 Ntfs - ok
19:19:04.0914 4880 ntk_PowerDVD (170ee229d4def31dbe95348c9a88fe74) C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD.sys
19:19:04.0945 4880 ntk_PowerDVD - ok
19:19:05.0023 4880 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
19:19:05.0086 4880 ntrigdigi - ok
19:19:05.0132 4880 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
19:19:05.0179 4880 Null - ok
19:19:05.0444 4880 nvlddmkm (66b4bf606fcc7f0622d4a21bb1461089) C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:19:05.0944 4880 nvlddmkm - ok
19:19:06.0053 4880 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
19:19:06.0084 4880 nvraid - ok
19:19:06.0131 4880 nvrd32 (b8d6145d3eb05e9f81bade9b7afc2c80) C:\Windows\system32\drivers\nvrd32.sys
19:19:06.0146 4880 nvrd32 - ok
19:19:06.0162 4880 nvsmu (c44ee36dd84fa95eb81d79c374756003) C:\Windows\system32\drivers\nvsmu.sys
19:19:06.0209 4880 nvsmu - ok
19:19:06.0240 4880 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
19:19:06.0256 4880 nvstor - ok
19:19:06.0302 4880 nvstor32 (97778c3cb3af6b2243648d0dcd4d8916) C:\Windows\system32\drivers\nvstor32.sys
19:19:06.0318 4880 nvstor32 - ok
19:19:06.0365 4880 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
19:19:06.0396 4880 nv_agp - ok
19:19:06.0412 4880 NwlnkFlt - ok
19:19:06.0443 4880 NwlnkFwd - ok
19:19:06.0490 4880 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
19:19:06.0552 4880 ohci1394 - ok
19:19:06.0630 4880 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
19:19:06.0692 4880 Parport - ok
19:19:06.0739 4880 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
19:19:06.0755 4880 partmgr - ok
19:19:06.0786 4880 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
19:19:06.0848 4880 Parvdm - ok
19:19:06.0880 4880 pavboot (3adb8bd6154a3ef87496e8fce9c22493) C:\Windows\system32\drivers\pavboot.sys
19:19:06.0895 4880 pavboot - ok
19:19:06.0942 4880 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\Windows\system32\DRIVERS\pccsmcfd.sys
19:19:06.0973 4880 pccsmcfd - ok
19:19:07.0020 4880 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
19:19:07.0036 4880 pci - ok
19:19:07.0067 4880 pciide (1636d43f10416aeb483bc6001097b26c) C:\Windows\system32\drivers\pciide.sys
19:19:07.0082 4880 pciide - ok
19:19:07.0129 4880 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
19:19:07.0160 4880 pcmcia - ok
19:19:07.0207 4880 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
19:19:07.0254 4880 pcouffin - ok
19:19:07.0285 4880 PCTCore (8f93fb300deac55c553c2255f1d0342d) C:\Windows\system32\drivers\PCTCore.sys
19:19:07.0316 4880 PCTCore - ok
19:19:07.0379 4880 pctDS (f820b4c61d1e591325b679d479d4eea4) C:\Windows\system32\drivers\pctDS.sys
19:19:07.0410 4880 pctDS - ok
19:19:07.0457 4880 pctEFA (acc8c15f3d59f17c5d903ff1de3b43d3) C:\Windows\system32\drivers\pctEFA.sys
19:19:07.0504 4880 pctEFA - ok
19:19:07.0582 4880 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
19:19:07.0691 4880 PEAUTH - ok
19:19:07.0800 4880 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
19:19:07.0831 4880 PptpMiniport - ok
19:19:07.0862 4880 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
19:19:07.0909 4880 Processor - ok
19:19:07.0987 4880 Ps2 (390c204ced3785609ab24e9c52054a84) C:\Windows\system32\DRIVERS\PS2.sys
19:19:08.0018 4880 Ps2 - ok
19:19:08.0081 4880 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
19:19:08.0112 4880 PSched - ok
19:19:08.0128 4880 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\Windows\system32\Drivers\PxHelp20.sys
19:19:08.0159 4880 PxHelp20 - ok
19:19:08.0221 4880 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
19:19:08.0299 4880 ql2300 - ok
19:19:08.0346 4880 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
19:19:08.0362 4880 ql40xx - ok
19:19:08.0408 4880 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
19:19:08.0440 4880 QWAVEdrv - ok
19:19:08.0471 4880 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
19:19:08.0502 4880 RasAcd - ok
19:19:08.0549 4880 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:19:08.0596 4880 Rasl2tp - ok
19:19:08.0627 4880 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
19:19:08.0674 4880 RasPppoe - ok
19:19:08.0689 4880 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
19:19:08.0720 4880 RasSstp - ok
19:19:08.0767 4880 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
19:19:08.0798 4880 rdbss - ok
19:19:08.0830 4880 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:19:08.0876 4880 RDPCDD - ok
19:19:08.0923 4880 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
19:19:08.0970 4880 rdpdr - ok
19:19:08.0986 4880 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
19:19:09.0017 4880 RDPENCDD - ok
19:19:09.0095 4880 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
19:19:09.0126 4880 RDPWD - ok
19:19:09.0204 4880 Revoflt (b9bb8e2093c1615ad6ea55ad96214354) C:\Windows\system32\DRIVERS\revoflt.sys
19:19:09.0220 4880 Revoflt - ok
19:19:09.0266 4880 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
19:19:09.0313 4880 rspndr - ok
19:19:09.0344 4880 RTL8169 (2dd5dd25fb68975d094ae57d46097f48) C:\Windows\system32\DRIVERS\Rtlh86.sys
19:19:09.0360 4880 RTL8169 - ok
19:19:09.0422 4880 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
19:19:09.0438 4880 sbp2port - ok
19:19:09.0500 4880 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
19:19:09.0563 4880 secdrv - ok
19:19:09.0594 4880 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
19:19:09.0656 4880 Serenum - ok
19:19:09.0719 4880 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
19:19:09.0781 4880 Serial - ok
19:19:09.0844 4880 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
19:19:09.0890 4880 sermouse - ok
19:19:10.0046 4880 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
19:19:10.0078 4880 sffdisk - ok
19:19:10.0171 4880 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
19:19:10.0234 4880 sffp_mmc - ok
19:19:10.0296 4880 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
19:19:10.0343 4880 sffp_sd - ok
19:19:10.0468 4880 sfloppy (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys
19:19:10.0530 4880 sfloppy - ok
19:19:10.0764 4880 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
19:19:10.0795 4880 sisagp - ok
19:19:10.0858 4880 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
19:19:10.0889 4880 SiSRaid2 - ok
19:19:10.0967 4880 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
19:19:10.0998 4880 SiSRaid4 - ok
19:19:11.0123 4880 SmartDefragDriver (46b40982af166bf89c3f51fb13e60d6d) C:\Windows\system32\Drivers\SmartDefragDriver.sys
19:19:11.0138 4880 SmartDefragDriver - ok
19:19:11.0201 4880 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
19:19:11.0248 4880 Smb - ok
19:19:11.0357 4880 speedfan (5d6401db90ec81b71f8e2c5c8f0fef23) C:\Windows\system32\speedfan.sys
19:19:11.0372 4880 speedfan ( UnsignedFile.Multi.Generic ) - warning
19:19:11.0372 4880 speedfan - detected UnsignedFile.Multi.Generic (1)
19:19:11.0404 4880 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
19:19:11.0435 4880 spldr - ok
19:19:11.0513 4880 sptd (d15da1ba189770d93eea2d7e18f95af9) C:\Windows\system32\Drivers\sptd.sys
19:19:11.0513 4880 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: d15da1ba189770d93eea2d7e18f95af9
19:19:11.0528 4880 sptd ( LockedFile.Multi.Generic ) - warning
19:19:11.0528 4880 sptd - detected LockedFile.Multi.Generic (1)
19:19:11.0575 4880 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
19:19:11.0653 4880 srv - ok
19:19:11.0700 4880 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
19:19:11.0747 4880 srv2 - ok
19:19:11.0809 4880 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
19:19:11.0840 4880 srvnet - ok
19:19:11.0918 4880 ssm_bus (14622ae81c72b08691eedaabc1d4a129) C:\Windows\system32\DRIVERS\ssm_bus.sys
19:19:11.0950 4880 ssm_bus - ok
19:19:11.0981 4880 ssm_mdfl (43ee5e9fda61a5e0eac4c1de699e6e4d) C:\Windows\system32\DRIVERS\ssm_mdfl.sys
19:19:12.0012 4880 ssm_mdfl - ok
19:19:12.0043 4880 ssm_mdm (918cfd32c7feb174f356a0a6fad11f4b) C:\Windows\system32\DRIVERS\ssm_mdm.sys
19:19:12.0074 4880 ssm_mdm - ok
19:19:12.0152 4880 ss_bus (5a1d0ca8a5f1e7b4ec50b9d76c001f0e) C:\Windows\system32\DRIVERS\ss_bus.sys
19:19:12.0168 4880 ss_bus - ok
19:19:12.0230 4880 ss_mdfl (f0a85580e36a3a85059037d39a9cf079) C:\Windows\system32\DRIVERS\ss_mdfl.sys
19:19:12.0246 4880 ss_mdfl - ok
19:19:12.0277 4880 ss_mdm (84c3dbfd1bfa4adc0a950b3d5506cb00) C:\Windows\system32\DRIVERS\ss_mdm.sys
19:19:12.0293 4880 ss_mdm - ok
19:19:12.0340 4880 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys
19:19:12.0355 4880 StarOpen ( UnsignedFile.Multi.Generic ) - warning
19:19:12.0355 4880 StarOpen - detected UnsignedFile.Multi.Generic (1)
19:19:12.0433 4880 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
19:19:12.0449 4880 swenum - ok
19:19:12.0480 4880 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
19:19:12.0511 4880 Symc8xx - ok
19:19:12.0542 4880 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
19:19:12.0558 4880 Sym_hi - ok
19:19:12.0589 4880 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
19:19:12.0605 4880 Sym_u3 - ok
19:19:12.0714 4880 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
19:19:12.0808 4880 Tcpip - ok
19:19:12.0839 4880 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
19:19:12.0901 4880 Tcpip6 - ok
19:19:12.0979 4880 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
19:19:13.0073 4880 tcpipreg - ok
19:19:13.0135 4880 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
19:19:13.0182 4880 TDPIPE - ok
19:19:13.0229 4880 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
19:19:13.0291 4880 TDTCP - ok
19:19:13.0338 4880 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
19:19:13.0369 4880 tdx - ok
19:19:13.0416 4880 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
19:19:13.0432 4880 TermDD - ok
19:19:13.0556 4880 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:19:13.0603 4880 tssecsrv - ok
19:19:13.0822 4880 TuneUpUtilitiesDrv (f2107c9d85ec0df116939ccce06ae697) C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys
19:19:13.0837 4880 TuneUpUtilitiesDrv - ok
19:19:13.0915 4880 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
19:19:13.0978 4880 tunmp - ok
19:19:14.0024 4880 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
19:19:14.0087 4880 tunnel - ok
19:19:14.0118 4880 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
19:19:14.0149 4880 uagp35 - ok
19:19:14.0196 4880 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
19:19:14.0258 4880 udfs - ok
19:19:14.0321 4880 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
19:19:14.0336 4880 uliagpkx - ok
19:19:14.0383 4880 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
19:19:14.0414 4880 uliahci - ok
19:19:14.0446 4880 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
19:19:14.0477 4880 UlSata - ok
19:19:14.0508 4880 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
19:19:14.0539 4880 ulsata2 - ok
19:19:14.0586 4880 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
19:19:14.0648 4880 umbus - ok
19:19:14.0726 4880 UnlockerDriver5 (bb879dcfd22926efbeb3298129898cbb) C:\Program Files\Unlocker\UnlockerDriver5.sys
19:19:14.0742 4880 UnlockerDriver5 ( UnsignedFile.Multi.Generic ) - warning
19:19:14.0742 4880 UnlockerDriver5 - detected UnsignedFile.Multi.Generic (1)
19:19:14.0882 4880 upperdev (15629e4d65f97ab5432d6d9597cf6a33) C:\Windows\system32\DRIVERS\usbser_lowerflt.sys
19:19:14.0929 4880 upperdev - ok
19:19:14.0992 4880 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
19:19:15.0038 4880 usbccgp - ok
19:19:15.0085 4880 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
19:19:15.0179 4880 usbcir - ok
19:19:15.0226 4880 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
19:19:15.0272 4880 usbehci - ok
19:19:15.0304 4880 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
19:19:15.0350 4880 usbhub - ok
19:19:15.0382 4880 usbohci (ce697fee0d479290d89bec80dfe793b7) C:\Windows\system32\DRIVERS\usbohci.sys
19:19:15.0413 4880 usbohci - ok
19:19:15.0460 4880 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
19:19:15.0506 4880 usbprint - ok
19:19:15.0569 4880 usbser (d575246188f63de0accf6eac5fb59e6a) C:\Windows\system32\drivers\usbser.sys
19:19:15.0600 4880 usbser - ok
19:19:15.0631 4880 UsbserFilt (5c17e6a11aa8be53f79fd364ba19f0ce) C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys
19:19:15.0662 4880 UsbserFilt - ok
19:19:15.0709 4880 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:19:15.0740 4880 USBSTOR - ok
19:19:15.0787 4880 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
19:19:15.0818 4880 usbuhci - ok
19:19:15.0896 4880 V0260VID (4f6d02349cac986a017ad1a0f2e2b099) C:\Windows\system32\DRIVERS\V0260Vid.sys
19:19:15.0943 4880 V0260VID - ok
19:19:15.0990 4880 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
19:19:16.0037 4880 vga - ok
19:19:16.0084 4880 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
19:19:16.0115 4880 VgaSave - ok
19:19:16.0162 4880 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
19:19:16.0193 4880 viaagp - ok
19:19:16.0224 4880 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
19:19:16.0271 4880 ViaC7 - ok
19:19:16.0349 4880 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
19:19:16.0380 4880 viaide - ok
19:19:16.0458 4880 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
19:19:16.0474 4880 volmgr - ok
19:19:16.0630 4880 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
19:19:16.0661 4880 volmgrx - ok
19:19:16.0988 4880 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
19:19:17.0020 4880 volsnap - ok
19:19:17.0129 4880 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
19:19:17.0160 4880 vsmraid - ok
19:19:17.0254 4880 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
19:19:17.0316 4880 WacomPen - ok
19:19:17.0347 4880 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
19:19:17.0378 4880 Wanarp - ok
19:19:17.0410 4880 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
19:19:17.0456 4880 Wanarpv6 - ok
19:19:17.0519 4880 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
19:19:17.0534 4880 Wd - ok
19:19:17.0581 4880 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
19:19:17.0628 4880 Wdf01000 - ok
19:19:17.0846 4880 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
19:19:17.0893 4880 WmiAcpi - ok
19:19:17.0987 4880 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
19:19:18.0034 4880 WpdUsb - ok
19:19:18.0080 4880 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
19:19:18.0143 4880 ws2ifsl - ok
19:19:18.0205 4880 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:19:18.0252 4880 WUDFRd - ok
19:19:18.0439 4880 {329F96B6-DF1E-4328-BFDA-39EA953C1312} (3cb263cf60b253bead6e0205e1fa5669) C:\Program Files\CyberLink\PowerDVD11\Common\NavFilter\000.fcl
19:19:18.0455 4880 {329F96B6-DF1E-4328-BFDA-39EA953C1312} - ok
19:19:18.0502 4880 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
19:19:18.0626 4880 \Device\Harddisk0\DR0 - ok
19:19:18.0642 4880 Boot (0x1200) (d7b8bf075f4a3e8d469a9f455ec76644) \Device\Harddisk0\DR0\Partition0
19:19:18.0642 4880 \Device\Harddisk0\DR0\Partition0 - ok
19:19:18.0642 4880 ============================================================
19:19:18.0642 4880 Scan finished
19:19:18.0642 4880 ============================================================
19:19:18.0658 5924 Detected object count: 7
19:19:18.0658 5924 Actual detected object count: 7
en hijack log
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:42:36, on 13-1-2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Windows\System32\mobsync.exe
C:\Windows\explorer.exe
C:\Program Files\TuneUp Utilities 2011\OneClick.exe
C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: “C:\Program Files\AVAST Software\Avast\avastUI.exe” /nogui
O4 - HKLM\..\RunOnce: C:\Windows\system32\reg.exe DELETE “HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components” /v “NoIE4StubProcessing” /f
O4 - HKLM\..\RunOnce: cmd.exe /c start http://www.avg.com/nl.special-uninstallation-feedback-app?lic=OE1FSC1SNk8yUC1WWUtYUy1CQVlXUi1DRTdYWS1XRU1CUg“&”inst=NzYtOTQ1ODYzNDI0LVQ1LUJBKzEtS1YzKzctWEwrMS1CNC1YTzM2KzEtRDM4MUwrNy1OMUQrMS1QTCs5LUNJUCsyLUREVCswLUk5MCsxLUREOTArMS1TVDkwQV
O4 - HKLM\..\RunOnce: C:\Windows\System32\rstrui.exe /runonce
O4 - HKLM\..\RunOnce: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: “C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe” /AutoStart
O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User ‘UpdatusUser’)
O4 - HKUS\S-1-5-21-1844289585-2998590225-2314192525-1004\..\Run: rundll32.exe oobefldr.dll,ShowWelcomeCenter (User ‘UpdatusUser’)
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra ‘Tools’ menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra ‘Tools’ menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra ‘Tools’ menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O11 - Options group: Accelerated graphics
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\System32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: CLHNServiceForPowerDVD - Unknown owner - C:\Program Files\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
O23 - Service: CyberLink PowerDVD 11.0 Monitor Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
O23 - Service: CyberLink PowerDVD 11.0 Service - CyberLink - C:\Program Files\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
–
End of file - 7525 bytes