virus melding bij openen internet

  • Ben

    Hallo,

    Heb je nou nog last van die blauwe scherm?

    Hoe draait je pc nu?

    Gr.Ben

    Antivirusprikbord.nl

  • marianne40

    pffff hij start weer op.

  • fazantje

    Hoi Marianne,

    De aanhouder wint maar weer heh;)

    Hoe loopt het verder:S

    Staat jou AVG er nog op:S

    Ik ga even een opruim fix schrijven.

    Kan even duren.

    Groetjes Huib;)

  • marianne40

    Hoi Huib

    Inderdaad de aanhouder wint ik ben echt super blij met jullie.

    AVG staat er niet meer op die moet ik er opnieuw opzetten.

    Maar ik ga nu naar bed want ik moet morgen werken.

    Zodra ik morgen tijd heb ga ik weer verder.

    Nogmaals bedankt tot nu toe.

    Groetjes Marianne

  • fazantje

    Oke is goed.

    Slaap nu lekker en tot morgen maar weer:D

    Groetjes Huib;)

  • fazantje

    Hoi Marianne,

    Download OTC exe hier, om combo weer helemaal te verwijderen.

    Plaats het bestand op je bureaublad.

    Zorg dat er een internetverbinding is.

    Klik vervolgens met je rechtermuisknop op OTCleanIt.exe en kies voor Run as Administrator (Nederlands: Uitvoeren als Administrator) om het programma te starten.

    Lukt dat niet , dan dubbelklikken op het icoon.

    Klik nu op de knop "CleanUp!"

    Als je firewall, of een ander beveiligingsprogramma, een waarschuwing geeft dat OTC.exe internettoegang wil, mag je dit toestaan, het programma heeft die connectie nodig.

    OTC zal als laatste vragen of je de computer herstarten wilt, dit mag je toestaan, hiermee verwijdert het zichzelf ook.

    Voer nu het schoonmaakplan uit.

    Kijk nog even voor de zekerheid bij: deze computer (C schijf) - programfiles of daar nog een map AVG staat.

    Zo ja, verwijder deze ook, want je gaat (als jij het goed vind) een andere scanner nemen.

    AVG laat de laatste tijd nogal steekjes vallen en geeft met regelmaat false positiven.

    Download Avast Free hier en installeer deze.

    Je hoeft alleen maar te registreren en daarna op de bevestigingslink te klikken die je per mail van Avast gestuurd krijgt.

    We gaan nu alle herstelpunten verwijderen:

    Windows XP systeemherstelpunten verwijderen.

    Ga naar: Start - Configuratiescherm - Systeem - Systeemherstel: Systeemherstel op alle stations uitschakelen aanvinken.

    Klik op “Toepassen” en “OK“.

    Herstart nu de PC en haal het geplaatste vinkje weer weg bij de optie Systeemherstel op alle stations uitschakelen.

    Laat ook nog even MBAM in normale modus scannen. (graag een volledige scan) en plaats dat logje samen met een nieuw HijackThis logje.

    Succes,

    Huib;)

  • marianne40

    Hoi Huib

    Ik heb alle stappen uitgevoerd. Alleen heb ik nog geen backup gemaakt.

    Ik had wel 1 keer dat de pc vanzelf uitging en weer opstarte zonder dat ik wat deed of dat een programma dit veroorzaakte.

    Maar hieronder mijn logjes.

    Malwarebytes Anti-Malware 1.62.0.1300

    www.malwarebytes.org

    Databaseversie: v2012.08.13.04

    Windows XP Service Pack 3 x86 NTFS

    Internet Explorer 8.0.6001.18702

    Marianne :: MARIANNE-4F98D8

    13-8-2012 16:42:16

    mbam-log-2012-08-13 (16-42-16).txt

    Scantype: Volledige scan (C:\|D:\|E:\|F:\|)

    Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 677673

    Verstreken tijd: 3 uur/uren, 6 minuut/minuten, 10 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 10

    D:\program files\iColorFolder\iColorFolder.exe (Trojan.Agent) -> Geen actie ondernomen.

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Bureaublad\diversen\diversen\keyfinder.exe (RiskWare.Tool.CK) -> Succesvol in quarantaine geplaatst en verwijderd.

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Bureaublad\spelletjes\remco\runescape\epicbot_520.exe (PUP.BundleOffers.IIQ) -> Succesvol in quarantaine geplaatst en verwijderd.

    E:\Mijn video's\diversen\installer_vlc_media_player_1_0_1_Nederlands_Dutch( mp4 afspelen).exe (PUP.SmsPay.pns) -> Succesvol in quarantaine geplaatst en verwijderd.

    E:\Mijn video's\diversen\software en programma`s\activatie office 2010 goed\Activatieprogramma.exe (Riskware.Keygen) -> Succesvol in quarantaine geplaatst en verwijderd.

    F:\diversen downloads\alcohol 120%\Alcohol_120_any_version_LoadeR_v3.0_by_GEGTER\automatically\Alcohol.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd.

    F:\diversen downloads\alcohol 120%\Alcohol_120_any_version_LoadeR_v3.0_by_GEGTER\manually\Alcohol.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd.

    F:\diversen downloads\poweriso\keYgeN\Keygen.exe (RiskWare.Tool.HCK) -> Succesvol in quarantaine geplaatst en verwijderd.

    F:\diversen downloads\Need.for.Speed.Underground.2\Keygen\nfsu2 keygen.exe (Trojan.Downloader) -> Succesvol in quarantaine geplaatst en verwijderd.

    F:\usb stick\Pac-Man.exe (Adware.Onlinegames) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 21:50:09, on 13-8-2012

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v8.00 (8.00.6001.18702)

    Boot mode: Normal

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Program Files\Windows Defender\MsMpEng.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\system32\spoolsv.exe

    c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe

    C:\WINDOWS\system32\RUNDLL32.EXE

    C:\WINDOWS\RTHDCPL.EXE

    C:\Program Files\Logitech\QuickCam10\QuickCam10.exe

    C:\Program Files\Logitech\SetPointP\SetPoint.exe

    C:\Program Files\AVAST Software\Avast\avastUI.exe

    C:\Program Files\Microsoft ActiveSync\wcescomm.exe

    C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE

    C:\Program Files\DNA\btdna.exe

    D:\program files\steam\steam.exe

    C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe

    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

    C:\PROGRA~1\MI3AA1~1\rapimgr.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\GamersFirst\LIVE!\Live.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe

    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    C:\Program Files\Microsoft\BingBar\SeaPort.EXE

    C:\Program Files\Bonjour\mDNSResponder.exe

    C:\WINDOWS\system32\FsUsbExService.Exe

    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    C:\Program Files\Java\jre6\bin\jqs.exe

    C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe

    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

    C:\Program Files\Pando Networks\Media Booster\PMB.exe

    C:\WINDOWS\system32\nvsvc32.exe

    C:\WINDOWS\system32\PnkBstrA.exe

    C:\Program Files\IncrediMail\Bin\ImApp.exe

    C:\Program Files\CyberLink\Shared files\RichVideo.exe

    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe

    C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe

    C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe

    C:\WINDOWS\system32\HPZipm12.exe

    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe

    C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe

    C:\PROGRA~1\COMMON~1\Nokia\MPLATF~1\NOKIAM~1.EXE

    C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe

    C:\Program Files\IncrediMail\Bin\IncMail.exe

    C:\WINDOWS\notepad.exe

    C:\WINDOWS\notepad.exe

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

    C:\Documents and Settings\Marianne.MARIANNE-4F98D8\Bureaublad\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

    O2 - BHO: Increase performance and video formats for your HTML5 - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll

    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll

    O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - “C:\Program Files\Microsoft\BingBar\BingExt.dll” (file missing)

    O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

    O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - “C:\Program Files\Microsoft\BingBar\BingExt.dll” (file missing)

    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    O4 - HKLM\..\Run: RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKLM\..\Run: RTHDCPL.EXE

    O4 - HKLM\..\Run: “C:\Program Files\CyberLink\PowerDVD\Language\Language.exe”

    O4 - HKLM\..\Run: “C:\Program Files\Logitech\QuickCam10\QuickCam10.exe” /hide

    O4 - HKLM\..\Run: “C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe” /autorun

    O4 - HKLM\..\Run: C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming

    O4 - HKLM\..\Run: C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe

    O4 - HKLM\..\Run: RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: “C:\Program Files\QuickTime\qttask.exe” -atboottime

    O4 - HKLM\..\Run: “C:\Program Files\DivX\DivX Update\DivXUpdate.exe” /CHECKNOW

    O4 - HKLM\..\Run: “C:\Program Files\AVAST Software\Avast\avastUI.exe” /nogui

    O4 - HKLM\..\RunOnce: cmd.exe /c start http://www.avg.com/nl.special-uninstallation-feedback-appf?lic=NFVIMlctM1NYM0UtR0hHWDktQUZISjMtUFcyUU4tWjlLSDQ“&”inst=NzctNjQ4MzEyNzQ0LUJBKzEtS1YzKzctWEwrMS1UNS1GTCs5LVhPMzYrMS1GOU03Qys1LUY5TTMrMS1GTDEwKzEtVFVHKzMtTElDKzE“&”prod=90“&”ver=10.0.1382

    O4 - HKCU\..\Run: “C:\Program Files\Microsoft ActiveSync\wcescomm.exe”

    O4 - HKCU\..\Run: C:\Program Files\IncrediMail\bin\IncMail.exe /c

    O4 - HKCU\..\Run: “C:\Program Files\DNA\btdna.exe”

    O4 - HKCU\..\Run: “D:\program files\steam\steam.exe” -silent

    O4 - HKCU\..\Run: C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray

    O4 - HKCU\..\Run: “C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe”

    O4 - HKCU\..\Run: C:\WINDOWS\system32\ctfmon.exe

    O4 - HKUS\S-1-5-18\..\Run: C:\WINDOWS\system32\CTFMON.EXE (User ‘SYSTEM’)

    O4 - HKUS\.DEFAULT\..\Run: C:\WINDOWS\system32\CTFMON.EXE (User ‘Default user’)

    O4 - Global Startup: GamersFirst LIVE!.lnk = C:\Program Files\GamersFirst\LIVE!\Live.exe

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    O8 - Extra context menu item: Download met Mipony - file://D:\program files\MiPony\Browser\IEContext.htm

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    O8 - Extra context menu item: Zoek op het web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html

    O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra ‘Tools’ menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra ‘Tools’ menuitem: Mobiele favorieten maken… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab

    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab

    O16 - DPF: {444785F1-DE89-4295-863A-D46C3A781394} (UnityWebPlayer Control) - http://webplayer.unity3d.com/download_webplayer-2.x/UnityWebPlayer.cab

    O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/mjss/MJSS.cab109791.cab

    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/MSNPUpld.cab

    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab

    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab

    O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - (no file)

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

    O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

    O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: FsUsbExService - Teruten - C:\WINDOWS\system32\FsUsbExService.Exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe

    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe

    O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

    O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe

    O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files\Skype\Updater\Updater.exe

    O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe

    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe

    End of file - 14722 bytes

  • fazantje

    Hoi Marianne,

    Zijn er toevallig meerdere accounts op die computer:S

    Aan MBAM te zien zit/zat er nog veel meer op:(

    Voer de stappen van de volgende link ff uit, want je bent nog niet klaar. klik hier.

    Succes,

    Huib;)

  • marianne40

    Hoi Huib

    Er zijn geen meerdere accounts zover ik weet is dit de enige. Er is op een of andere vage wijze een account gemaakt met mijn naam en ik heb het niet gedaan en de kinderen ook niet. De dingen die gevonden zijn in mbam staan al heel lang op mijn pc en ik dacht niet dat dat echte bedreigingen waren. Het zijn cracks van software. En epicbot gebruikt mijn zoon voor het spel runescape. Maar hier mijn log.

    22:38:21.0265 5980 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32

    22:38:21.0484 5980 ============================================================

    22:38:21.0484 5980 Current date / time: 2012/08/13 22:38:21.0484

    22:38:21.0484 5980 SystemInfo:

    22:38:21.0484 5980

    22:38:21.0484 5980 OS Version: 5.1.2600 ServicePack: 3.0

    22:38:21.0484 5980 Product type: Workstation

    22:38:21.0484 5980 ComputerName: MARIANNE-4F98D8

    22:38:21.0484 5980 UserName: Marianne

    22:38:21.0484 5980 Windows directory: C:\WINDOWS

    22:38:21.0484 5980 System windows directory: C:\WINDOWS

    22:38:21.0484 5980 Processor architecture: Intel x86

    22:38:21.0484 5980 Number of processors: 4

    22:38:21.0484 5980 Page size: 0x1000

    22:38:21.0484 5980 Boot type: Normal boot

    22:38:21.0484 5980 ============================================================

    22:38:22.0843 5980 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000054

    22:38:22.0875 5980 Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000054

    22:38:22.0875 5980 ============================================================

    22:38:22.0875 5980 \Device\Harddisk0\DR0:

    22:38:22.0875 5980 MBR partitions:

    22:38:22.0875 5980 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xC34F28D

    22:38:22.0906 5980 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xC34F30B, BlocksNum 0x10E713B5

    22:38:22.0906 5980 \Device\Harddisk1\DR1:

    22:38:22.0906 5980 MBR partitions:

    22:38:22.0906 5980 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xEA60903

    22:38:22.0921 5980 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xEA60981, BlocksNum 0xE75FD3F

    22:38:22.0921 5980 ============================================================

    22:38:22.0968 5980 C: <-> \Device\Harddisk0\DR0\Partition0

    22:38:23.0000 5980 D: <-> \Device\Harddisk1\DR1\Partition0

    22:38:23.0046 5980 E: <-> \Device\Harddisk0\DR0\Partition1

    22:38:23.0125 5980 F: <-> \Device\Harddisk1\DR1\Partition1

    22:38:23.0125 5980 ============================================================

    22:38:23.0125 5980 Initialize success

    22:38:23.0125 5980 ============================================================

    22:41:26.0171 4160 ============================================================

    22:41:26.0171 4160 Scan started

    22:41:26.0171 4160 Mode: Manual; SigCheck; TDLFS;

    22:41:26.0171 4160 ============================================================

    22:41:26.0546 4160 Aavmker4 (0b27ae82c113d3687024d18459440426) C:\WINDOWS\system32\drivers\Aavmker4.sys

    22:41:26.0718 4160 Aavmker4 - ok

    22:41:26.0734 4160 Abiosdsk - ok

    22:41:26.0734 4160 abp480n5 - ok

    22:41:26.0781 4160 ACPI (02273a448ba21a7d447daeb47810d40c) C:\WINDOWS\system32\DRIVERS\ACPI.sys

    22:41:27.0703 4160 ACPI - ok

    22:41:27.0734 4160 ACPIEC (63f517b1a87dabf3f5acb8a7952fc1d1) C:\WINDOWS\system32\drivers\ACPIEC.sys

    22:41:27.0843 4160 ACPIEC - ok

    22:41:27.0859 4160 adpu160m - ok

    22:41:27.0875 4160 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys

    22:41:27.0953 4160 aec - ok

    22:41:28.0000 4160 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys

    22:41:28.0062 4160 AFD - ok

    22:41:28.0062 4160 Aha154x - ok

    22:41:28.0062 4160 aic78u2 - ok

    22:41:28.0062 4160 aic78xx - ok

    22:41:28.0093 4160 Alerter (8bed67d13dcb55b3e9ff6dac4c6d3b49) C:\WINDOWS\system32\alrsvc.dll

    22:41:28.0187 4160 Alerter - ok

    22:41:28.0203 4160 ALG (dab2a89fde5cf791161200d90c1bcb12) C:\WINDOWS\System32\alg.exe

    22:41:28.0250 4160 ALG - ok

    22:41:28.0250 4160 AliIde - ok

    22:41:28.0265 4160 amsint - ok

    22:41:28.0296 4160 AnyDVD (9031e1f28845b099695440a7e3f11690) C:\WINDOWS\system32\Drivers\AnyDVD.sys

    22:41:28.0312 4160 AnyDVD ( UnsignedFile.Multi.Generic ) - warning

    22:41:28.0312 4160 AnyDVD - detected UnsignedFile.Multi.Generic (1)

    22:41:28.0437 4160 Apple Mobile Device (20f6f19fe9e753f2780dc2fa083ad597) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    22:41:28.0453 4160 Apple Mobile Device - ok

    22:41:28.0453 4160 AppMgmt - ok

    22:41:28.0500 4160 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys

    22:41:28.0593 4160 Arp1394 - ok

    22:41:28.0593 4160 asc - ok

    22:41:28.0593 4160 asc3350p - ok

    22:41:28.0593 4160 asc3550 - ok

    22:41:28.0734 4160 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe

    22:41:28.0750 4160 aspnet_state - ok

    22:41:28.0781 4160 aswFsBlk (1c1f3d6dddc046c920c493a779649f66) C:\WINDOWS\system32\drivers\aswFsBlk.sys

    22:41:28.0796 4160 aswFsBlk - ok

    22:41:28.0796 4160 aswMon2 (9e912fe7b41650701ef2b227aca440f3) C:\WINDOWS\system32\drivers\aswMon2.sys

    22:41:28.0812 4160 aswMon2 - ok

    22:41:28.0843 4160 AswRdr (982e275d1c5801042fe94209fb0160fb) C:\WINDOWS\system32\drivers\AswRdr.sys

    22:41:28.0843 4160 AswRdr - ok

    22:41:28.0890 4160 aswSnx (73dbcf808e00580f2a47f93dd9b03876) C:\WINDOWS\system32\drivers\aswSnx.sys

    22:41:28.0921 4160 aswSnx - ok

    22:41:28.0953 4160 aswSP (6cbd7d3a33f498d09c831cdd732da2e0) C:\WINDOWS\system32\drivers\aswSP.sys

    22:41:28.0984 4160 aswSP - ok

    22:41:29.0015 4160 aswTdi (7109a9aa551f37cd168c02368465957e) C:\WINDOWS\system32\drivers\aswTdi.sys

    22:41:29.0015 4160 aswTdi - ok

    22:41:29.0062 4160 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys

    22:41:29.0156 4160 AsyncMac - ok

    22:41:29.0156 4160 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys

    22:41:29.0265 4160 atapi - ok

    22:41:29.0296 4160 AtcL001 (19f277bc4ce5689f20f347a6b8aa8c42) C:\WINDOWS\system32\DRIVERS\atl01_xp.sys

    22:41:29.0359 4160 AtcL001 - ok

    22:41:29.0359 4160 Atdisk - ok

    22:41:29.0390 4160 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys

    22:41:29.0484 4160 Atmarpc - ok

    22:41:29.0531 4160 AudioSrv (f10745ed3195360e69aa4a6e7768c0e0) C:\WINDOWS\System32\audiosrv.dll

    22:41:29.0609 4160 AudioSrv - ok

    22:41:29.0640 4160 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys

    22:41:29.0734 4160 audstub - ok

    22:41:29.0812 4160 avast! Antivirus (2f7c0f3e39c45e0127fb78b2f18a41f3) C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    22:41:29.0828 4160 avast! Antivirus - ok

    22:41:29.0906 4160 BBSvc (2ed050291bc1d7f9e322e328db3aaecf) C:\Program Files\Microsoft\BingBar\BBSvc.EXE

    22:41:29.0921 4160 BBSvc - ok

    22:41:29.0937 4160 BBUpdate (785de7abda13309d6065305542829e76) C:\Program Files\Microsoft\BingBar\SeaPort.EXE

    22:41:29.0968 4160 BBUpdate - ok

    22:41:30.0000 4160 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys

    22:41:30.0078 4160 Beep - ok

    22:41:30.0140 4160 BITS (5c0073a51c4873430fa8b262e92183ff) C:\WINDOWS\system32\qmgr.dll

    22:41:30.0390 4160 BITS - ok

    22:41:30.0390 4160 boky - ok

    22:41:30.0468 4160 Bonjour Service (f2060a34c8a75bc24a9222eb4f8c07bd) C:\Program Files\Bonjour\mDNSResponder.exe

    22:41:30.0484 4160 Bonjour Service - ok

    22:41:30.0515 4160 Browser (69eaa7501f53a40e8c04c69f2391224f) C:\WINDOWS\System32\browser.dll

    22:41:30.0609 4160 Browser - ok

    22:41:30.0671 4160 CamDrL (0f5ca31bb3fdb5c1e63c170cfbecc93b) C:\WINDOWS\system32\DRIVERS\Camdrl.sys

    22:41:30.0703 4160 CamDrL - ok

    22:41:30.0734 4160 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys

    22:41:30.0828 4160 cbidf2k - ok

    22:41:30.0859 4160 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys

    22:41:30.0953 4160 CCDECODE - ok

    22:41:30.0953 4160 cd20xrnt - ok

    22:41:30.0968 4160 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys

    22:41:31.0046 4160 Cdaudio - ok

    22:41:31.0093 4160 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys

    22:41:31.0187 4160 Cdfs - ok

    22:41:31.0187 4160 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys

    22:41:31.0281 4160 Cdrom - ok

    22:41:31.0281 4160 Changer - ok

    22:41:31.0312 4160 CiSvc (bd85400700b80fbe3d4a3412bce74861) C:\WINDOWS\system32\cisvc.exe

    22:41:31.0406 4160 CiSvc - ok

    22:41:31.0421 4160 ClipSrv (4fb6108130829666c8fe96b442fead94) C:\WINDOWS\system32\clipsrv.exe

    22:41:31.0500 4160 ClipSrv - ok

    22:41:31.0593 4160 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    22:41:31.0671 4160 clr_optimization_v2.0.50727_32 - ok

    22:41:31.0671 4160 CmdIde - ok

    22:41:31.0687 4160 COMSysApp - ok

    22:41:31.0687 4160 Cpqarray - ok

    22:41:31.0718 4160 CryptSvc (0a9cf5d3cf63a8699f28c814ef821c7e) C:\WINDOWS\System32\cryptsvc.dll

    22:41:31.0812 4160 CryptSvc - ok

    22:41:31.0812 4160 dac2w2k - ok

    22:41:31.0828 4160 dac960nt - ok

    22:41:31.0875 4160 DcomLaunch (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll

    22:41:31.0953 4160 DcomLaunch - ok

    22:41:31.0984 4160 Dhcp (146ab038f5dbb366122d28444999ab2c) C:\WINDOWS\System32\dhcpcsvc.dll

    22:41:32.0078 4160 Dhcp - ok

    22:41:32.0093 4160 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys

    22:41:32.0171 4160 Disk - ok

    22:41:32.0171 4160 dmadmin - ok

    22:41:32.0218 4160 dmboot (dec123e0c75971d0cc7a6c6a75e28429) C:\WINDOWS\system32\drivers\dmboot.sys

    22:41:32.0343 4160 dmboot - ok

    22:41:32.0359 4160 dmio (7268e66259722f6228c730685b201092) C:\WINDOWS\system32\drivers\dmio.sys

    22:41:32.0468 4160 dmio - ok

    22:41:32.0484 4160 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys

    22:41:32.0593 4160 dmload - ok

    22:41:32.0609 4160 dmserver (127db74184e2d3d31655da525a5efde1) C:\WINDOWS\System32\dmserver.dll

    22:41:32.0718 4160 dmserver - ok

    22:41:32.0734 4160 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys

    22:41:32.0828 4160 DMusic - ok

    22:41:32.0875 4160 Dnscache (de6cdb6cbc5c27b9085cfa6dfe8e5025) C:\WINDOWS\System32\dnsrslvr.dll

    22:41:32.0937 4160 Dnscache - ok

    22:41:32.0968 4160 Dot3svc (90ee765e1a598b578852901f74f914f1) C:\WINDOWS\System32\dot3svc.dll

    22:41:33.0062 4160 Dot3svc - ok

    22:41:33.0062 4160 dpti2o - ok

    22:41:33.0109 4160 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys

    22:41:33.0187 4160 drmkaud - ok

    22:41:33.0312 4160 dump_wmimmc (609f7e53c3ea20f137425defcb3329dc) D:\program files\Gpotato\Flyff\GameGuard\dump_wmimmc.sys

    22:41:33.0343 4160 dump_wmimmc - ok

    22:41:33.0343 4160 EagleNT - ok

    22:41:33.0343 4160 EagleXNt - ok

    22:41:33.0359 4160 EapHost (e6bbdebf7081899d161c773e8d84d015) C:\WINDOWS\System32\eapsvc.dll

    22:41:33.0468 4160 EapHost - ok

    22:41:33.0500 4160 ElbyCDFL (c61c83501268b0110b5c5db7e63dee0c) C:\WINDOWS\system32\Drivers\ElbyCDFL.sys

    22:41:33.0515 4160 ElbyCDFL ( UnsignedFile.Multi.Generic ) - warning

    22:41:33.0515 4160 ElbyCDFL - detected UnsignedFile.Multi.Generic (1)

    22:41:33.0562 4160 ElbyCDIO (fa13264eea448b2e1b3a844ae4f75c7a) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys

    22:41:33.0562 4160 ElbyCDIO ( UnsignedFile.Multi.Generic ) - warning

    22:41:33.0562 4160 ElbyCDIO - detected UnsignedFile.Multi.Generic (1)

    22:41:33.0562 4160 ElbyDelay (df9957db3bfe5136aad3c2c101806c98) C:\WINDOWS\system32\Drivers\ElbyDelay.sys

    22:41:33.0609 4160 ElbyDelay ( UnsignedFile.Multi.Generic ) - warning

    22:41:33.0609 4160 ElbyDelay - detected UnsignedFile.Multi.Generic (1)

    22:41:33.0687 4160 ERSvc (2f5c7f650b7af178988946ee4b0d9c01) C:\WINDOWS\System32\ersvc.dll

    22:41:33.0796 4160 ERSvc - ok

    22:41:33.0843 4160 Eventlog (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe

    22:41:33.0906 4160 Eventlog - ok

    22:41:33.0953 4160 EventSystem (97912dc0679d2da60cce589bbc196d72) C:\WINDOWS\system32\es.dll

    22:41:34.0093 4160 EventSystem - ok

    22:41:34.0109 4160 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys

    22:41:34.0234 4160 Fastfat - ok

    22:41:34.0265 4160 FastUserSwitchingCompatibility (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

    22:41:34.0359 4160 FastUserSwitchingCompatibility - ok

    22:41:34.0390 4160 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys

    22:41:34.0484 4160 Fdc - ok

    22:41:34.0484 4160 Fips (8bfffb5ac954e19dfdb96d56512aa518) C:\WINDOWS\system32\drivers\Fips.sys

    22:41:34.0578 4160 Fips - ok

    22:41:34.0609 4160 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys

    22:41:34.0687 4160 Flpydisk - ok

    22:41:34.0734 4160 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys

    22:41:34.0828 4160 FltMgr - ok

    22:41:34.0953 4160 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe

    22:41:34.0968 4160 FontCache3.0.0.0 - ok

    22:41:35.0000 4160 fssfltr (c6ee3a87fe609d3e1db9dbd072a248de) C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys

    22:41:35.0015 4160 fssfltr - ok

    22:41:35.0156 4160 fsssvc (45b52394f9624237f33a8a3d73c0b221) C:\Program Files\Windows Live\Family Safety\fsssvc.exe

    22:41:35.0187 4160 fsssvc - ok

    22:41:35.0218 4160 FsUsbExDisk (790a4ca68f44be35967b3df61f3e4675) C:\WINDOWS\system32\FsUsbExDisk.SYS

    22:41:35.0234 4160 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning

    22:41:35.0234 4160 FsUsbExDisk - detected UnsignedFile.Multi.Generic (1)

    22:41:35.0281 4160 FsUsbExService (d3f9205cc4cb07553f2f9472c767ea87) C:\WINDOWS\system32\FsUsbExService.Exe

    22:41:35.0296 4160 FsUsbExService ( UnsignedFile.Multi.Generic ) - warning

    22:41:35.0296 4160 FsUsbExService - detected UnsignedFile.Multi.Generic (1)

    22:41:35.0296 4160 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys

    22:41:35.0390 4160 Fs_Rec - ok

    22:41:35.0421 4160 Ftdisk (fa8ca22e70245c81ff29c36af56292fc) C:\WINDOWS\system32\DRIVERS\ftdisk.sys

    22:41:35.0515 4160 Ftdisk - ok

    22:41:35.0562 4160 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys

    22:41:35.0562 4160 GEARAspiWDM - ok

    22:41:35.0609 4160 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys

    22:41:35.0734 4160 Gpc - ok

    22:41:35.0843 4160 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe

    22:41:35.0859 4160 gupdate - ok

    22:41:35.0859 4160 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe

    22:41:35.0875 4160 gupdatem - ok

    22:41:35.0921 4160 gusvc (408ddd80eede47175f6844817b90213e) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    22:41:35.0937 4160 gusvc - ok

    22:41:35.0968 4160 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys

    22:41:35.0984 4160 hamachi - ok

    22:41:36.0031 4160 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys

    22:41:36.0125 4160 HDAudBus - ok

    22:41:36.0203 4160 helpsvc (5327bad9b35c33d2a64b64e4cf282ecd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll

    22:41:36.0296 4160 helpsvc - ok

    22:41:36.0343 4160 HidServ (10003105aab8d5a7db51a9cb3d9f55a3) C:\WINDOWS\System32\hidserv.dll

    22:41:36.0421 4160 HidServ - ok

    22:41:36.0468 4160 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys

    22:41:36.0562 4160 hidusb - ok

    22:41:36.0593 4160 hkmsvc (1ff903ffa2da1704e5a5443d37d8e49e) C:\WINDOWS\System32\kmsvc.dll

    22:41:36.0703 4160 hkmsvc - ok

    22:41:36.0703 4160 hlstucf - ok

    22:41:36.0703 4160 hpn - ok

    22:41:36.0750 4160 HPZid412 (5faba4775d4c61e55ec669d643ffc71f) C:\WINDOWS\system32\DRIVERS\HPZid412.sys

    22:41:36.0812 4160 HPZid412 - ok

    22:41:36.0812 4160 HPZipr12 (a3c43980ee1f1beac778b44ea65dbdd4) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys

    22:41:36.0875 4160 HPZipr12 - ok

    22:41:36.0890 4160 HPZius12 (2906949bd4e206f2bb0dd1896ce9f66f) C:\WINDOWS\system32\DRIVERS\HPZius12.sys

    22:41:36.0968 4160 HPZius12 - ok

    22:41:37.0000 4160 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys

    22:41:37.0046 4160 HTTP - ok

    22:41:37.0078 4160 HTTPFilter (2529c7ba05242beed0027f554d0513bb) C:\WINDOWS\System32\w3ssl.dll

    22:41:37.0171 4160 HTTPFilter - ok

    22:41:37.0171 4160 i2omgmt - ok

    22:41:37.0171 4160 i2omp - ok

    22:41:37.0218 4160 i8042prt (c43372d0682f8e32e4ec21117e089ec0) C:\WINDOWS\system32\DRIVERS\i8042prt.sys

    22:41:37.0296 4160 i8042prt - ok

    22:41:37.0390 4160 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

    22:41:37.0421 4160 IDriverT ( UnsignedFile.Multi.Generic ) - warning

    22:41:37.0421 4160 IDriverT - detected UnsignedFile.Multi.Generic (1)

    22:41:37.0546 4160 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

    22:41:37.0578 4160 idsvc - ok

    22:41:37.0625 4160 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys

    22:41:37.0750 4160 Imapi - ok

    22:41:37.0765 4160 ImapiService (a117772f94c854de5d1bbc1f1962b192) C:\WINDOWS\system32\imapi.exe

    22:41:37.0859 4160 ImapiService - ok

    22:41:37.0859 4160 ini910u - ok

    22:41:38.0031 4160 IntcAzAudAddService (cbddab14249b2f05407fc09ab8fffb88) C:\WINDOWS\system32\drivers\RtkHDAud.sys

    22:41:38.0234 4160 IntcAzAudAddService - ok

    22:41:38.0296 4160 IntelIde - ok

    22:41:38.0328 4160 intelppm (2d2254fac267e6b1c7865e8ebef60c6d) C:\WINDOWS\system32\DRIVERS\intelppm.sys

    22:41:38.0421 4160 intelppm - ok

    22:41:38.0437 4160 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys

    22:41:38.0531 4160 Ip6Fw - ok

    22:41:38.0562 4160 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys

    22:41:38.0671 4160 IpFilterDriver - ok

    22:41:38.0703 4160 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys

    22:41:38.0796 4160 IpInIp - ok

    22:41:38.0812 4160 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys

    22:41:38.0890 4160 IpNat - ok

    22:41:39.0015 4160 iPod Service (e51bd095b2fdf56b17ee010bb794d6ed) C:\Program Files\iPod\bin\iPodService.exe

    22:41:39.0046 4160 iPod Service - ok

    22:41:39.0078 4160 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys

    22:41:39.0156 4160 IPSec - ok

    22:41:39.0171 4160 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys

    22:41:39.0218 4160 IRENUM - ok

    22:41:39.0250 4160 isapnp (0b78e1a31340e1fb1e389d5633f7c3a0) C:\WINDOWS\system32\DRIVERS\isapnp.sys

    22:41:39.0343 4160 isapnp - ok

    22:41:39.0453 4160 JavaQuickStarterService (381b25dc8e958d905b33130d500bbf29) C:\Program Files\Java\jre6\bin\jqs.exe

    22:41:39.0468 4160 JavaQuickStarterService - ok

    22:41:39.0515 4160 Kbdclass (380397621e94b32c744e7b2cc1330390) C:\WINDOWS\system32\DRIVERS\kbdclass.sys

    22:41:39.0593 4160 Kbdclass - ok

    22:41:39.0640 4160 kbdhid (b833b70fe639f01fb36cedabe57ef031) C:\WINDOWS\system32\DRIVERS\kbdhid.sys

    22:41:39.0718 4160 kbdhid - ok

    22:41:39.0750 4160 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys

    22:41:39.0828 4160 kmixer - ok

    22:41:39.0875 4160 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys

    22:41:39.0984 4160 KSecDD - ok

    22:41:40.0015 4160 L8042Kbd (79d1dbfec599ec47244af7b06ae2a04e) C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys

    22:41:40.0015 4160 L8042Kbd - ok

    22:41:40.0046 4160 lanmanserver (c7955e7edaea462d04f1c4be1d340372) C:\WINDOWS\System32\srvsvc.dll

    22:41:40.0078 4160 lanmanserver - ok

    22:41:40.0125 4160 lanmanworkstation (a936a575eaf6dce8dc08bc0c53972add) C:\WINDOWS\System32\wkssvc.dll

    22:41:40.0187 4160 lanmanworkstation - ok

    22:41:40.0218 4160 LBeepKE (c99ba72106a858cb8b521bb4c02c93ed) C:\WINDOWS\system32\Drivers\LBeepKE.sys

    22:41:40.0234 4160 LBeepKE - ok

    22:41:40.0234 4160 lbrtfdc - ok

    22:41:40.0312 4160 LBTServ (0f98b9384c37c8c29904b8ae4359a54f) C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    22:41:40.0328 4160 LBTServ - ok

    22:41:40.0359 4160 LHidFilt (318b3d608fbec44b7e0c23bf759dced5) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys

    22:41:40.0375 4160 LHidFilt - ok

    22:41:40.0406 4160 LmHosts (91ae20c5c2776c511994aa1308c05283) C:\WINDOWS\System32\lmhsvc.dll

    22:41:40.0500 4160 LmHosts - ok

    22:41:40.0515 4160 LMouFilt (84af069d219df3c43dc6792b2bbd7bed) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys

    22:41:40.0531 4160 LMouFilt - ok

    22:41:40.0562 4160 LUsbFilt (81642f134929946ab4b9572c4c17298c) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys

    22:41:40.0562 4160 LUsbFilt - ok

    22:41:40.0671 4160 LVcKap (9a3d4fc6b86e7e36473079ab76ac703d) C:\WINDOWS\system32\DRIVERS\LVcKap.sys

    22:41:40.0718 4160 LVcKap - ok

    22:41:40.0812 4160 LVMVDrv (0acbc11f19320af6c19f2e20013d9095) C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys

    22:41:40.0875 4160 LVMVDrv - ok

    22:41:40.0921 4160 LVPr2Mon (12866641284ebb41e627bb53c04da959) C:\WINDOWS\system32\drivers\LVPr2Mon.sys

    22:41:40.0937 4160 LVPr2Mon - ok

    22:41:41.0062 4160 LVPrcSrv (995d0b52870c7a5caf3ea165fd674a35) c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe

    22:41:41.0078 4160 LVPrcSrv - ok

    22:41:41.0078 4160 LVSrvLauncher (a005cee9be199c5e375faa559ca9a7a9) C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe

    22:41:41.0093 4160 LVSrvLauncher - ok

    22:41:41.0140 4160 LVUSBSta (64bc29c3a0388bfc580bb8b1346f7659) C:\WINDOWS\system32\drivers\LVUSBSta.sys

    22:41:41.0140 4160 LVUSBSta - ok

    22:41:41.0234 4160 MDM (11f714f85530a2bd134074dc30e99fca) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

    22:41:41.0250 4160 MDM - ok

    22:41:41.0296 4160 Messenger (c56a45a03dca11712de9fdf98224230b) C:\WINDOWS\System32\msgsvc.dll

    22:41:41.0390 4160 Messenger - ok

    22:41:41.0421 4160 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys

    22:41:41.0515 4160 mnmdd - ok

    22:41:41.0546 4160 mnmsrvc (5b1d994dcf1895afa27600e46a2f0fea) C:\WINDOWS\system32\mnmsrvc.exe

    22:41:41.0625 4160 mnmsrvc - ok

    22:41:41.0625 4160 Modem (8114eeac353f549331ab73e9af4219ed) C:\WINDOWS\system32\drivers\Modem.sys

    22:41:41.0718 4160 Modem - ok

    22:41:41.0765 4160 Mouclass (1a4e2214dd63e4a876463d3427ee8261) C:\WINDOWS\system32\DRIVERS\mouclass.sys

    22:41:41.0890 4160 Mouclass - ok

    22:41:41.0890 4160 mouhid (18017899254e01371e1a39754d6bf98c) C:\WINDOWS\system32\DRIVERS\mouhid.sys

    22:41:41.0984 4160 mouhid - ok

    22:41:42.0015 4160 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys

    22:41:42.0109 4160 MountMgr - ok

    22:41:42.0109 4160 mraid35x - ok

    22:41:42.0140 4160 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys

    22:41:42.0218 4160 MRxDAV - ok

    22:41:42.0265 4160 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys

    22:41:42.0375 4160 MRxSmb - ok

    22:41:42.0390 4160 MSDTC (21ea21984d7d1ad50db2e627020ab14c) C:\WINDOWS\system32\msdtc.exe

    22:41:42.0468 4160 MSDTC - ok

    22:41:42.0500 4160 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys

    22:41:42.0593 4160 Msfs - ok

    22:41:42.0593 4160 MSIServer - ok

    22:41:42.0593 4160 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys

    22:41:42.0671 4160 MSKSSRV - ok

    22:41:42.0703 4160 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys

    22:41:42.0796 4160 MSPCLOCK - ok

    22:41:42.0828 4160 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys

    22:41:42.0921 4160 MSPQM - ok

    22:41:42.0953 4160 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys

    22:41:43.0046 4160 mssmbios - ok

    22:41:43.0062 4160 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys

    22:41:43.0171 4160 MSTEE - ok

    22:41:43.0203 4160 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys

    22:41:43.0250 4160 MTsensor - ok

    22:41:43.0281 4160 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys

    22:41:43.0328 4160 Mup - ok

    22:41:43.0453 4160 musbehco - ok

    22:41:43.0484 4160 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys

    22:41:43.0578 4160 NABTSFEC - ok

    22:41:43.0625 4160 napagent (87e394c810794d3c70cf22e8316cb23e) C:\WINDOWS\System32\qagentrt.dll

    22:41:43.0734 4160 napagent - ok

    22:41:43.0750 4160 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys

    22:41:43.0859 4160 NDIS - ok

    22:41:43.0875 4160 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys

    22:41:43.0968 4160 NdisIP - ok

    22:41:44.0031 4160 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys

    22:41:44.0062 4160 NdisTapi - ok

    22:41:44.0093 4160 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys

    22:41:44.0171 4160 Ndisuio - ok

    22:41:44.0187 4160 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys

    22:41:44.0265 4160 NdisWan - ok

    22:41:44.0312 4160 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys

    22:41:44.0390 4160 NDProxy - ok

    22:41:44.0406 4160 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys

    22:41:44.0500 4160 NetBIOS - ok

    22:41:44.0546 4160 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys

    22:41:44.0625 4160 NetBT - ok

    22:41:44.0656 4160 NetDDE (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe

    22:41:44.0765 4160 NetDDE - ok

    22:41:44.0765 4160 NetDDEdsdm (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe

    22:41:44.0843 4160 NetDDEdsdm - ok

    22:41:44.0875 4160 Netlogon (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

    22:41:44.0968 4160 Netlogon - ok

    22:41:44.0968 4160 Netman (5431fb616ecae0d587c5b97d0b86cbd8) C:\WINDOWS\System32\netman.dll

    22:41:45.0062 4160 Netman - ok

    22:41:45.0187 4160 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

    22:41:45.0187 4160 NetTcpPortSharing - ok

    22:41:45.0218 4160 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys

    22:41:45.0296 4160 NIC1394 - ok

    22:41:45.0359 4160 Nla (4522cbe00a9e9eee36aa82ed4b319148) C:\WINDOWS\System32\mswsock.dll

    22:41:45.0375 4160 Nla - ok

    22:41:45.0390 4160 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys

    22:41:45.0468 4160 Npfs - ok

    22:41:45.0468 4160 npggsvc - ok

    22:41:45.0500 4160 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys

    22:41:45.0500 4160 NPPTNT2 ( UnsignedFile.Multi.Generic ) - warning

    22:41:45.0500 4160 NPPTNT2 - detected UnsignedFile.Multi.Generic (1)

    22:41:45.0546 4160 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys

    22:41:45.0640 4160 Ntfs - ok

    22:41:45.0671 4160 NtLmSsp (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

    22:41:45.0750 4160 NtLmSsp - ok

    22:41:45.0781 4160 NtmsSvc (ac1a78237b53044735693633f8235468) C:\WINDOWS\system32\ntmssvc.dll

    22:41:45.0875 4160 NtmsSvc - ok

    22:41:45.0906 4160 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys

    22:41:45.0984 4160 Null - ok

    22:41:46.0234 4160 nv (3712d332633b853101ab786380c969ec) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys

    22:41:46.0453 4160 nv ( UnsignedFile.Multi.Generic ) - warning

    22:41:46.0453 4160 nv - detected UnsignedFile.Multi.Generic (1)

    22:41:46.0562 4160 NVSvc (357cde6c24eb15888e810c6d2787c238) C:\WINDOWS\system32\nvsvc32.exe

    22:41:46.0562 4160 NVSvc ( UnsignedFile.Multi.Generic ) - warning

    22:41:46.0562 4160 NVSvc - detected UnsignedFile.Multi.Generic (1)

    22:41:46.0593 4160 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys

    22:41:46.0687 4160 NwlnkFlt - ok

    22:41:46.0703 4160 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys

    22:41:46.0812 4160 NwlnkFwd - ok

    22:41:46.0828 4160 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys

    22:41:46.0921 4160 ohci1394 - ok

    22:41:47.0000 4160 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    22:41:47.0015 4160 ose - ok

    22:41:47.0031 4160 Parport (e3934ccc20a4d24f1924e13d36d2a5bd) C:\WINDOWS\system32\drivers\Parport.sys

    22:41:47.0109 4160 Parport - ok

    22:41:47.0125 4160 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys

    22:41:47.0203 4160 PartMgr - ok

    22:41:47.0234 4160 ParVdm (1eade28746a64c21e0a808bb12a63326) C:\WINDOWS\system32\drivers\ParVdm.sys

    22:41:47.0328 4160 ParVdm - ok

    22:41:47.0359 4160 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys

    22:41:47.0421 4160 pccsmcfd - ok

    22:41:47.0453 4160 PCI (3b166f9f753c21aedaa9a6bd76b49655) C:\WINDOWS\system32\DRIVERS\pci.sys

    22:41:47.0531 4160 PCI - ok

    22:41:47.0531 4160 PCIDump - ok

    22:41:47.0546 4160 PCIIde (b31edeba4da28283f6b8dc4756fb9585) C:\WINDOWS\system32\DRIVERS\pciide.sys

    22:41:47.0640 4160 PCIIde - ok

    22:41:47.0671 4160 Pcmcia (2137ffd65f8e609a3a5acd487c56cce0) C:\WINDOWS\system32\drivers\Pcmcia.sys

    22:41:47.0781 4160 Pcmcia - ok

    22:41:47.0812 4160 Pcouffin (5b6c11de7e839c05248ced8825470fef) C:\WINDOWS\system32\Drivers\Pcouffin.sys

    22:41:47.0828 4160 Pcouffin ( UnsignedFile.Multi.Generic ) - warning

    22:41:47.0828 4160 Pcouffin - detected UnsignedFile.Multi.Generic (1)

    22:41:47.0828 4160 PDCOMP - ok

    22:41:47.0828 4160 PDFRAME - ok

    22:41:47.0843 4160 PDRELI - ok

    22:41:47.0843 4160 PDRFRAME - ok

    22:41:47.0843 4160 perc2 - ok

    22:41:47.0843 4160 perc2hib - ok

    22:41:47.0890 4160 PlugPlay (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe

    22:41:47.0921 4160 PlugPlay - ok

    22:41:47.0968 4160 Pml Driver HPZ12 (901c43516504cbe582e4c4193e00876a) C:\WINDOWS\system32\HPZipm12.exe

    22:41:48.0000 4160 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning

    22:41:48.0000 4160 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)

    22:41:48.0046 4160 PnkBstrA (3a2e85f7d90d15460c337ce80c2e3b29) C:\WINDOWS\system32\PnkBstrA.exe

    22:41:48.0062 4160 PnkBstrA - ok

    22:41:48.0093 4160 PolicyAgent (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

    22:41:48.0171 4160 PolicyAgent - ok

    22:41:48.0203 4160 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys

    22:41:48.0281 4160 PptpMiniport - ok

    22:41:48.0296 4160 ProtectedStorage (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

    22:41:48.0375 4160 ProtectedStorage - ok

    22:41:48.0375 4160 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys

    22:41:48.0453 4160 PSched - ok

    22:41:48.0468 4160 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys

    22:41:48.0562 4160 Ptilink - ok

    22:41:48.0609 4160 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys

    22:41:48.0609 4160 PxHelp20 - ok

    22:41:48.0625 4160 ql1080 - ok

    22:41:48.0625 4160 Ql10wnt - ok

    22:41:48.0625 4160 ql12160 - ok

    22:41:48.0625 4160 ql1240 - ok

    22:41:48.0625 4160 ql1280 - ok

    22:41:48.0640 4160 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys

    22:41:48.0718 4160 RasAcd - ok

    22:41:48.0750 4160 RasAuto (0575d034b1292ca3a9bb9f67a8ee289c) C:\WINDOWS\System32\rasauto.dll

    22:41:48.0859 4160 RasAuto - ok

    22:41:48.0890 4160 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys

    22:41:48.0968 4160 Rasl2tp - ok

    22:41:49.0000 4160 RasMan (9e7e2df6971a5f00102be3f901cc3bdc) C:\WINDOWS\System32\rasmans.dll

    22:41:49.0109 4160 RasMan - ok

    22:41:49.0109 4160 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys

    22:41:49.0187 4160 RasPppoe - ok

    22:41:49.0187 4160 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys

    22:41:49.0265 4160 Raspti - ok

    22:41:49.0296 4160 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys

    22:41:49.0375 4160 Rdbss - ok

    22:41:49.0390 4160 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys

    22:41:49.0468 4160 RDPCDD - ok

    22:41:49.0500 4160 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys

    22:41:49.0562 4160 RDPWD - ok

    22:41:49.0593 4160 RDSessMgr (ea9fdf71d696b532bdc44c8bff03a737) C:\WINDOWS\system32\sessmgr.exe

    22:41:49.0687 4160 RDSessMgr - ok

    22:41:49.0703 4160 redbook (4173bc66e485fd77a03c4819f60bd0da) C:\WINDOWS\system32\DRIVERS\redbook.sys

    22:41:49.0796 4160 redbook - ok

    22:41:49.0828 4160 RemoteAccess (4007abf5d9bf0e55451d775443d1f985) C:\WINDOWS\System32\mprdim.dll

    22:41:49.0921 4160 RemoteAccess - ok

    22:41:50.0031 4160 RichVideo (1d4061cc5bc8e823d05e1e6e6c1224e3) C:\Program Files\CyberLink\Shared files\RichVideo.exe

    22:41:50.0046 4160 RichVideo - ok

    22:41:50.0093 4160 RpcLocator (be078f8f7ec2491efdd79a53353a060f) C:\WINDOWS\system32\locator.exe

    22:41:50.0187 4160 RpcLocator - ok

    22:41:50.0250 4160 RpcSs (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\System32\rpcss.dll

    22:41:50.0312 4160 RpcSs - ok

    22:41:50.0343 4160 RSVP (ad1b5f1b99fff08c99f443d784711a81) C:\WINDOWS\system32\rsvp.exe

    22:41:50.0453 4160 RSVP - ok

    22:41:50.0453 4160 sahvgadh - ok

    22:41:50.0500 4160 SamSs (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe

    22:41:50.0562 4160 SamSs - ok

    22:41:50.0609 4160 SCardSvr (1b4cd62174e907c7ef8ec5d4d0a2a616) C:\WINDOWS\System32\SCardSvr.exe

    22:41:50.0703 4160 SCardSvr - ok

    22:41:50.0750 4160 SCDEmu (3b35ce540758bbabb721e234cb5a4f3f) C:\WINDOWS\system32\drivers\SCDEmu.sys

    22:41:50.0750 4160 SCDEmu ( UnsignedFile.Multi.Generic ) - warning

    22:41:50.0750 4160 SCDEmu - detected UnsignedFile.Multi.Generic (1)

    22:41:50.0781 4160 Schedule (7c288ae0f75cb18cff1df6179a67ad8f) C:\WINDOWS\system32\schedsvc.dll

    22:41:50.0875 4160 Schedule - ok

    22:41:50.0890 4160 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys

    22:41:50.0953 4160 Secdrv - ok

    22:41:50.0984 4160 seclogon (6983665bea867125b1da5757cd8b2f9d) C:\WINDOWS\System32\seclogon.dll

    22:41:51.0078 4160 seclogon - ok

    22:41:51.0093 4160 SENS (f6ec8f1e50e40237bddee1cb7fe20b42) C:\WINDOWS\system32\sens.dll

    22:41:51.0187 4160 SENS - ok

    22:41:51.0234 4160 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys

    22:41:51.0312 4160 serenum - ok

    22:41:51.0328 4160 Serial (92c21762653bb2ce51147eb8a9aa654f) C:\WINDOWS\system32\DRIVERS\serial.sys

    22:41:51.0406 4160 Serial - ok

    22:41:51.0531 4160 ServiceLayer (7d3903af48e6c1dc2704eafcb608d031) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    22:41:51.0578 4160 ServiceLayer ( UnsignedFile.Multi.Generic ) - warning

    22:41:51.0578 4160 ServiceLayer - detected UnsignedFile.Multi.Generic (1)

    22:41:51.0625 4160 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\DRIVERS\sfloppy.sys

    22:41:51.0718 4160 Sfloppy - ok

    22:41:51.0765 4160 SharedAccess (7579c4be909d47f10f3d8d801cb13ed9) C:\WINDOWS\System32\ipnathlp.dll

    22:41:51.0859 4160 SharedAccess - ok

    22:41:51.0890 4160 ShellHWDetection (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

    22:41:51.0906 4160 ShellHWDetection - ok

    22:41:51.0906 4160 Simbad - ok

    22:41:52.0140 4160 Skype C2C Service (0f97e7a47a52f4a36969f0fc319654c2) C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    22:41:52.0218 4160 Skype C2C Service - ok

    22:41:52.0296 4160 SkypeUpdate (ddaa5f4a6b958fc313ebd02dd925752f) D:\Program Files\Skype\Updater\Updater.exe

    22:41:52.0312 4160 SkypeUpdate - ok

    22:41:52.0390 4160 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys

    22:41:52.0484 4160 SLIP - ok

    22:41:52.0515 4160 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS

    22:41:52.0609 4160 SONYPVU1 - ok

    22:41:52.0609 4160 Sparrow - ok

    22:41:52.0656 4160 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys

    22:41:52.0734 4160 splitter - ok

    22:41:52.0781 4160 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe

    22:41:52.0859 4160 Spooler - ok

    22:41:52.0906 4160 sptd (a199171385be17973fd800fa91f8f78a) C:\WINDOWS\system32\Drivers\sptd.sys

    22:41:52.0906 4160 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: a199171385be17973fd800fa91f8f78a

    22:41:52.0906 4160 sptd ( LockedFile.Multi.Generic ) - warning

    22:41:52.0906 4160 sptd - detected LockedFile.Multi.Generic (1)

    22:41:52.0906 4160 sr (64d2a7640e0767ecd3bcb38d3200e7ce) C:\WINDOWS\system32\DRIVERS\sr.sys

    22:41:52.0984 4160 sr - ok

    22:41:53.0015 4160 srservice (81cbf363c414620caa61bd6843d8fdb9) C:\WINDOWS\system32\srsvc.dll

    22:41:53.0078 4160 srservice - ok

    22:41:53.0140 4160 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys

    22:41:53.0218 4160 Srv - ok

    22:41:53.0234 4160 SSDPSRV (5b9d0de64be96a806819516440fd211c) C:\WINDOWS\System32\ssdpsrv.dll

    22:41:53.0296 4160 SSDPSRV - ok

    22:41:53.0328 4160 ss_bbus (eaa66218cd39f5bb1b4853a78c67c787) C:\WINDOWS\system32\DRIVERS\ss_bbus.sys

    22:41:53.0343 4160 ss_bbus - ok

    22:41:53.0375 4160 ss_bmdfl (91765f99914ed8693d8bc76524f21581) C:\WINDOWS\system32\DRIVERS\ss_bmdfl.sys

    22:41:53.0375 4160 ss_bmdfl - ok

    22:41:53.0390 4160 ss_bmdm (840e7b738b03c10ee91d9b7d3d6eff15) C:\WINDOWS\system32\DRIVERS\ss_bmdm.sys

    22:41:53.0406 4160 ss_bmdm - ok

    22:41:53.0421 4160 ss_bus (5a1d0ca8a5f1e7b4ec50b9d76c001f0e) C:\WINDOWS\system32\DRIVERS\ss_bus.sys

    22:41:53.0437 4160 ss_bus - ok

    22:41:53.0468 4160 StarOpen (306521935042fc0a6988d528643619b3) C:\WINDOWS\system32\drivers\StarOpen.sys

    22:41:53.0484 4160 StarOpen ( UnsignedFile.Multi.Generic ) - warning

    22:41:53.0484 4160 StarOpen - detected UnsignedFile.Multi.Generic (1)

    22:41:53.0562 4160 StarWindServiceAE (e5c796b621f6fba8616511063d7f0ffe) D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

    22:41:53.0609 4160 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - warning

    22:41:53.0609 4160 StarWindServiceAE - detected UnsignedFile.Multi.Generic (1)

    22:41:53.0656 4160 stisvc (5ae996186d2dc694fef88f14a3fc9242) C:\WINDOWS\system32\wiaservc.dll

    22:41:53.0781 4160 stisvc - ok

    22:41:53.0812 4160 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys

    22:41:53.0906 4160 streamip - ok

    22:41:53.0937 4160 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys

    22:41:54.0015 4160 swenum - ok

    22:41:54.0046 4160 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys

    22:41:54.0156 4160 swmidi - ok

    22:41:54.0156 4160 SwPrv - ok

    22:41:54.0156 4160 symc810 - ok

    22:41:54.0171 4160 symc8xx - ok

    22:41:54.0171 4160 sym_hi - ok

    22:41:54.0171 4160 sym_u3 - ok

    22:41:54.0203 4160 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys

    22:41:54.0281 4160 sysaudio - ok

    22:41:54.0296 4160 SysmonLog (251eae7c56c6ab9490311a3c9757e18d) C:\WINDOWS\system32\smlogsvc.exe

    22:41:54.0390 4160 SysmonLog - ok

    22:41:54.0437 4160 TapiSrv (2bc9fb448f0c2394ff53c83a7bb04731) C:\WINDOWS\System32\tapisrv.dll

    22:41:54.0531 4160 TapiSrv - ok

    22:41:54.0578 4160 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys

    22:41:54.0640 4160 Tcpip - ok

    22:41:54.0671 4160 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys

    22:41:54.0765 4160 TDPIPE - ok

    22:41:54.0781 4160 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys

    22:41:54.0890 4160 TDTCP - ok

    22:41:54.0906 4160 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys

    22:41:54.0984 4160 TermDD - ok

    22:41:55.0031 4160 TermService (e0aef86a594c9990d6321c5ca239c5b7) C:\WINDOWS\System32\termsrv.dll

    22:41:55.0125 4160 TermService - ok

    22:41:55.0156 4160 Themes (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll

    22:41:55.0187 4160 Themes - ok

    22:41:55.0187 4160 TosIde - ok

    22:41:55.0218 4160 TrkWks (20655e8ca1c78bc7088b18e93806d21b) C:\WINDOWS\system32\trkwks.dll

    22:41:55.0312 4160 TrkWks - ok

    22:41:55.0546 4160 TuneUp.Defrag (a04e4460de2cf67e959d0b29ec7e738c) C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe

    22:41:55.0562 4160 TuneUp.Defrag - ok

    22:41:55.0640 4160 TuneUp.UtilitiesSvc (8944ca999944899ed49339ffd82e2b3b) C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe

    22:41:55.0671 4160 TuneUp.UtilitiesSvc - ok

    22:41:55.0703 4160 TuneUpUtilitiesDrv (f2107c9d85ec0df116939ccce06ae697) C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys

    22:41:55.0718 4160 TuneUpUtilitiesDrv - ok

    22:41:55.0781 4160 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys

    22:41:55.0890 4160 Udfs - ok

    22:41:55.0906 4160 ultra - ok

    22:41:55.0937 4160 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys

    22:41:56.0015 4160 Update - ok

    22:41:56.0078 4160 upnphost (01653d6c9604f1fb31a76ec94e08954f) C:\WINDOWS\System32\upnphost.dll

    22:41:56.0156 4160 upnphost - ok

    22:41:56.0156 4160 upperdev - ok

    22:41:56.0171 4160 UPS (a89796dd0de24cf03b3a39407e1f46a3) C:\WINDOWS\System32\ups.exe

    22:41:56.0250 4160 UPS - ok

    22:41:56.0265 4160 USBAAPL (d4fb6ecc60a428564ba8768b0e23c0fc) C:\WINDOWS\system32\Drivers\usbaapl.sys

    22:41:56.0312 4160 USBAAPL - ok

    22:41:56.0343 4160 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys

    22:41:56.0421 4160 usbaudio - ok

    22:41:56.0468 4160 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys

    22:41:56.0531 4160 usbccgp - ok

    22:41:56.0578 4160 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys

    22:41:56.0640 4160 usbehci - ok

    22:41:56.0656 4160 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys

    22:41:56.0734 4160 usbhub - ok

    22:41:56.0750 4160 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys

    22:41:56.0828 4160 usbprint - ok

    22:41:56.0828 4160 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys

    22:41:56.0906 4160 usbscan - ok

    22:41:56.0937 4160 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys

    22:41:57.0031 4160 usbser - ok

    22:41:57.0031 4160 UsbserFilt - ok

    22:41:57.0031 4160 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS

    22:41:57.0125 4160 usbstor - ok

    22:41:57.0125 4160 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys

    22:41:57.0203 4160 usbuhci - ok

    22:41:57.0250 4160 UxTuneUp (9e625b7d72c9780090a6032aa6674aac) C:\WINDOWS\System32\uxtuneup.dll

    22:41:57.0265 4160 UxTuneUp - ok

    22:41:57.0312 4160 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys

    22:41:57.0390 4160 VgaSave - ok

    22:41:57.0390 4160 ViaIde - ok

    22:41:57.0406 4160 VolSnap (8ab662b3c4691e6ddf61c96bb5b7d103) C:\WINDOWS\system32\drivers\VolSnap.sys

    22:41:57.0484 4160 VolSnap - ok

    22:41:57.0515 4160 VSS (a585edd6965b301de8a45c6768c7c215) C:\WINDOWS\System32\vssvc.exe

    22:41:57.0578 4160 VSS - ok

    22:41:57.0625 4160 vxyawn (e6d35f3aa51a65eb35c1f2340154a25e) C:\WINDOWS\system32\drivers\dbtyd.sys

    22:41:57.0640 4160 vxyawn ( UnsignedFile.Multi.Generic ) - warning

    22:41:57.0640 4160 vxyawn - detected UnsignedFile.Multi.Generic (1)

    22:41:57.0687 4160 W32Time (390d8e65f362327ad510b08971478301) C:\WINDOWS\system32\w32time.dll

    22:41:57.0765 4160 W32Time - ok

    22:41:57.0781 4160 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys

    22:41:57.0875 4160 Wanarp - ok

    22:41:57.0921 4160 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys

    22:41:57.0953 4160 Wdf01000 - ok

    22:41:57.0953 4160 WDICA - ok

    22:41:57.0984 4160 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys

    22:41:58.0062 4160 wdmaud - ok

    22:41:58.0093 4160 WebClient (33d8e2812054d97a0aec9b8f04277927) C:\WINDOWS\System32\webclnt.dll

    22:41:58.0171 4160 WebClient - ok

    22:41:58.0250 4160 WinDefend (f45dd1e1365d857dd08bc23563370d0e) C:\Program Files\Windows Defender\MsMpEng.exe

    22:41:58.0265 4160 WinDefend - ok

    22:41:58.0343 4160 winmgmt (f9e105f369c18e4001e0c05aaf600d73) C:\WINDOWS\system32\wbem\WMIsvc.dll

    22:41:58.0421 4160 winmgmt - ok

    22:41:58.0453 4160 WmBEnum (bc3ecbcb40147bdae3ad2fd0b4b346d8) C:\WINDOWS\system32\drivers\WmBEnum.sys

    22:41:58.0500 4160 WmBEnum - ok

    22:41:58.0515 4160 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll

    22:41:58.0578 4160 WmdmPmSN - ok

    22:41:58.0593 4160 WmFilter (19f9881d8b3484fedb605d0216876898) C:\WINDOWS\system32\drivers\WmFilter.sys

    22:41:58.0640 4160 WmFilter - ok

    22:41:58.0671 4160 WmiApSrv (87f11d161207c7063edabac0aadc33c3) C:\WINDOWS\system32\wbem\wmiapsrv.exe

    22:41:58.0750 4160 WmiApSrv - ok

    22:41:58.0812 4160 WMPNetworkSvc (79a01acd485687ee602411a06b63a9a5) C:\Program Files\Windows Media Player\WMPNetwk.exe

    22:41:58.0875 4160 WMPNetworkSvc - ok

    22:41:58.0906 4160 WmVirHid (7a51545a6409a25eedbdbd97d019e8cc) C:\WINDOWS\system32\drivers\WmVirHid.sys

    22:41:58.0953 4160 WmVirHid - ok

    22:41:58.0984 4160 WmXlCore (1f083b3bc73017e60c3ca85cf4a70753) C:\WINDOWS\system32\drivers\WmXlCore.sys

    22:41:58.0984 4160 WmXlCore - ok

    22:41:59.0031 4160 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys

    22:41:59.0140 4160 WS2IFSL - ok

    22:41:59.0171 4160 wscsvc (843f7fa8ea38e6a4262976dcc994c81a) C:\WINDOWS\system32\wscsvc.dll

    22:41:59.0250 4160 wscsvc - ok

    22:41:59.0281 4160 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS

    22:41:59.0375 4160 WSTCODEC - ok

    22:41:59.0390 4160 wuauserv (1e8fdddef3fe260badab06dae10d753a) C:\WINDOWS\system32\wuauserv.dll

    22:41:59.0500 4160 wuauserv - ok

    22:41:59.0562 4160 WudfPf (eaa6324f51214d2f6718977ec9ce0def) C:\WINDOWS\system32\DRIVERS\WudfPf.sys

    22:41:59.0593 4160 WudfPf - ok

    22:41:59.0609 4160 WudfRd (f91ff1e51fca30b3c3981db7d5924252) C:\WINDOWS\system32\DRIVERS\wudfrd.sys

    22:41:59.0625 4160 WudfRd - ok

    22:41:59.0656 4160 WudfSvc (ddee3682fe97037c45f4d7ab467cb8b6) C:\WINDOWS\System32\WUDFSvc.dll

    22:41:59.0687 4160 WudfSvc - ok

    22:41:59.0750 4160 WZCSVC (e99782dbb8ffa2aee72b31dac8d8d887) C:\WINDOWS\System32\wzcsvc.dll

    22:41:59.0906 4160 WZCSVC - ok

    22:41:59.0937 4160 xmlprov (fd3c38635808920f8235bf2fed642f54) C:\WINDOWS\System32\xmlprov.dll

    22:42:00.0031 4160 xmlprov - ok

    22:42:00.0140 4160 {95808DC4-FA4A-4c74-92FE-5B863F82066B} (8098180b3f6c430a4e60333bc036f936) C:\Program Files\CyberLink\PowerDVD\000.fcl

    22:42:00.0156 4160 {95808DC4-FA4A-4c74-92FE-5B863F82066B} - ok

    22:42:00.0171 4160 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0

    22:42:00.0562 4160 \Device\Harddisk0\DR0 - ok

    22:42:00.0578 4160 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk1\DR1

    22:42:00.0671 4160 \Device\Harddisk1\DR1 - ok

    22:42:00.0671 4160 Boot (0x1200) (bf9dddbc2d5b2e6726f55b12e945e95f) \Device\Harddisk0\DR0\Partition0

    22:42:00.0671 4160 \Device\Harddisk0\DR0\Partition0 - ok

    22:42:00.0703 4160 Boot (0x1200) (9f1781bdad0ce78b2b90aa7069f68651) \Device\Harddisk0\DR0\Partition1

    22:42:00.0703 4160 \Device\Harddisk0\DR0\Partition1 - ok

    22:42:00.0703 4160 Boot (0x1200) (99176013600cfad6faa41c3a938d1c5d) \Device\Harddisk1\DR1\Partition0

    22:42:00.0703 4160 \Device\Harddisk1\DR1\Partition0 - ok

    22:42:00.0718 4160 Boot (0x1200) (b6b587d0c87a845386b12d13c2c030ab) \Device\Harddisk1\DR1\Partition1

    22:42:00.0718 4160 \Device\Harddisk1\DR1\Partition1 - ok

    22:42:00.0718 4160 ============================================================

    22:42:00.0718 4160 Scan finished

    22:42:00.0718 4160 ============================================================

    22:42:00.0843 3140 Detected object count: 18

    22:42:00.0843 3140 Actual detected object count: 18

    22:43:43.0156 3140 AnyDVD ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 AnyDVD ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 ElbyCDFL ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 ElbyCDFL ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 ElbyCDIO ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 ElbyCDIO ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 ElbyDelay ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 ElbyDelay ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 FsUsbExService ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 FsUsbExService ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 NPPTNT2 ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 NPPTNT2 ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 nv ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 nv ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 NVSvc ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 NVSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 Pcouffin ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 Pcouffin ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 SCDEmu ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 SCDEmu ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 sptd ( LockedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 sptd ( LockedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 StarOpen ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 StarOpen ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:43:43.0156 3140 vxyawn ( UnsignedFile.Multi.Generic ) - skipped by user

    22:43:43.0156 3140 vxyawn ( UnsignedFile.Multi.Generic ) - User select action: Skip

  • Ben

    Hallo,

    Zolang je Keygen enCracks blijft gebruiken hou je problemen.

    Door illegale download programma’s staan er meerdere poorten open zodat je een makkelijke prooi bent voor virussen.

    (maar dit is je eigen keus)

    Download de Emsisoft Emergency Kit naar het bureaublad en pak het ZIP bestand uit.

    • Open de map "EmsisoftEmergencyKit“ en dubbelklik op ”Start.exe"

    • Klik nu op "Emergency Kit Scanner“ u krijg nu een melding dat het is aanbevolen om eerst te updaten sta dit toe door te klikken op ”Ja"

    • Als de update gereed is en de melding "Update process is succesvol afgerond“ verschijnt klikt u op ”menu“ en dan op ”Scan PC"

    • Selecteer de optie "Diep" als deze niet standaard al zo is ingesteld.

    • Klik Nu op de knop "Scan" en doe verder niets op de computer tijdens het scannen, deze scan kan een geruime tijd in beslag nemen dus wacht dit geduldig af.

    • Het venster met de waarschuwing over een verhoogd risico kunt u sluiten als de scan gereed is.

    • Zorg ervoor dat alle gevonden items zijn aangevinkt en druk dan op de knop "verwijder geselecteerde“ u zal nu de volgende melding krijgen maar klik hier op ”Ja"

    • Als het verwijderen gereed is klikt u op de knop "View report" en selecteert u het tekstbestand van deze scan met de naam zoals: a2scan_110730-111615.txt

    • Plaats de inhoud van dit LOG bestand straks in uw volgende bericht.

    • Herstart nu de computer.

    Gr.Ben

    Antivirusprikbord.nl

Dit topic is gesloten, er kunnen geen reacties meer worden geplaatst.