Hoi hoi
Hier zoals gevraagd het logbestandje.
Zou je me toevallig ook kunnen vertellen welke instelling ik ook al weer moet doen om te zorgen dat ik niet allemaal x op sites heb. Als ik klik op afbeelding weergeven komen de plaatjes ook niet terug.
Het logbestandje:
21:16:28.0906 1716 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47
21:16:28.0906 1716 ============================================================
21:16:28.0906 1716 Current date / time: 2012/10/16 21:16:28.0906
21:16:28.0906 1716 SystemInfo:
21:16:28.0906 1716
21:16:28.0906 1716 OS Version: 5.1.2600 ServicePack: 3.0
21:16:28.0906 1716 Product type: Workstation
21:16:28.0906 1716 ComputerName: VDBERG
21:16:28.0906 1716 UserName: Rick
21:16:28.0906 1716 Windows directory: C:\WINDOWS
21:16:28.0906 1716 System windows directory: C:\WINDOWS
21:16:28.0906 1716 Processor architecture: Intel x86
21:16:28.0906 1716 Number of processors: 1
21:16:28.0906 1716 Page size: 0x1000
21:16:28.0906 1716 Boot type: Normal boot
21:16:28.0906 1716 ============================================================
21:16:30.0296 1716 Drive \Device\Harddisk0\DR0 - Size: 0x1315740000 (76.34 Gb), SectorSize: 0x200, Cylinders: 0x26EC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000054
21:16:30.0312 1716 Drive \Device\Harddisk1\DR1 - Size: 0x262AE80000 (152.67 Gb), SectorSize: 0x200, Cylinders: 0x4DD9, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000054
21:16:30.0312 1716 ============================================================
21:16:30.0312 1716 \Device\Harddisk0\DR0:
21:16:30.0312 1716 MBR partitions:
21:16:30.0312 1716 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x50014A7
21:16:30.0328 1716 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x5004325, BlocksNum 0x3C1BE44
21:16:30.0343 1716 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x8C201AD, BlocksNum 0xC87E47
21:16:30.0343 1716 \Device\Harddisk1\DR1:
21:16:30.0343 1716 MBR partitions:
21:16:30.0375 1716 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F00, BlocksNum 0x936A9D7
21:16:30.0390 1716 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x936E916, BlocksNum 0x9DE5583
21:16:30.0390 1716 ============================================================
21:16:30.0437 1716 C: <-> \Device\Harddisk0\DR0\Partition1
21:16:30.0453 1716 H: <-> \Device\Harddisk1\DR1\Partition2
21:16:30.0484 1716 I: <-> \Device\Harddisk1\DR1\Partition1
21:16:30.0500 1716 G: <-> \Device\Harddisk0\DR0\Partition3
21:16:30.0531 1716 F: <-> \Device\Harddisk0\DR0\Partition2
21:16:30.0531 1716 ============================================================
21:16:30.0531 1716 Initialize success
21:16:30.0531 1716 ============================================================
21:16:30.0625 1504 ============================================================
21:16:30.0625 1504 Scan started
21:16:30.0625 1504 Mode: Auto (DCExact ); SigCheck; TDLFS; Silent;
21:16:30.0625 1504 ============================================================
21:16:32.0250 1504 ================ Scan system memory ========================
21:16:32.0265 1504 ================ Scan services =============================
21:16:32.0375 1504 ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
21:16:33.0828 1504 ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
21:16:34.0125 1504 AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:16:34.0171 1504 aec C:\WINDOWS\system32\drivers\aec.sys
21:16:34.0375 1504 AFD C:\WINDOWS\System32\drivers\afd.sys
21:16:34.0484 1504 agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
21:16:34.0718 1504 Alerter C:\WINDOWS\system32\alrsvc.dll
21:16:35.0140 1504 ALG C:\WINDOWS\System32\alg.exe
21:16:35.0437 1504 aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:16:35.0546 1504 AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
21:16:35.0765 1504 atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
21:16:35.0953 1504 Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
21:16:36.0156 1504 AudioSrv C:\WINDOWS\System32\audiosrv.dll
21:16:36.0343 1504 audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
21:16:36.0562 1504 Beep C:\WINDOWS\system32\drivers\Beep.sys
21:16:36.0812 1504 BITS C:\WINDOWS\system32\qmgr.dll
21:16:37.0078 1504 Browser C:\WINDOWS\System32\browser.dll
21:16:37.0171 1504 cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
21:16:37.0390 1504 Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
21:16:37.0593 1504 Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
21:16:37.0781 1504 Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
21:16:37.0984 1504 CiSvc C:\WINDOWS\system32\cisvc.exe
21:16:38.0187 1504 ClipSrv C:\WINDOWS\system32\clipsrv.exe
21:16:38.0390 1504 clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:16:38.0593 1504 CryptSvc C:\WINDOWS\System32\cryptsvc.dll
21:16:38.0812 1504 ctac32k C:\WINDOWS\system32\drivers\ctac32k.sys
21:16:38.0890 1504 ctaud2k C:\WINDOWS\system32\drivers\ctaud2k.sys
21:16:39.0015 1504 ctljystk C:\WINDOWS\system32\DRIVERS\ctljystk.sys
21:16:39.0218 1504 ctprxy2k C:\WINDOWS\system32\drivers\ctprxy2k.sys
21:16:39.0265 1504 ctsfm2k C:\WINDOWS\system32\drivers\ctsfm2k.sys
21:16:39.0343 1504 DcomLaunch C:\WINDOWS\system32\rpcss.dll
21:16:39.0500 1504 Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
21:16:39.0718 1504 Disk C:\WINDOWS\system32\DRIVERS\disk.sys
21:16:39.0921 1504 dmboot C:\WINDOWS\system32\drivers\dmboot.sys
21:16:40.0171 1504 dmio C:\WINDOWS\system32\drivers\dmio.sys
21:16:40.0390 1504 dmload C:\WINDOWS\system32\drivers\dmload.sys
21:16:40.0593 1504 dmserver C:\WINDOWS\System32\dmserver.dll
21:16:40.0781 1504 DMusic C:\WINDOWS\system32\drivers\DMusic.sys
21:16:41.0000 1504 Dnscache C:\WINDOWS\System32\dnsrslvr.dll
21:16:41.0140 1504 Dot3svc C:\WINDOWS\System32\dot3svc.dll
21:16:41.0328 1504 drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
21:16:41.0546 1504 eamon C:\WINDOWS\system32\DRIVERS\eamon.sys
21:16:41.0671 1504 EapHost C:\WINDOWS\System32\eapsvc.dll
21:16:41.0890 1504 ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys
21:16:42.0015 1504 ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
21:16:42.0093 1504 emupia C:\WINDOWS\system32\drivers\emupia2k.sys
21:16:42.0156 1504 epfwtdir C:\WINDOWS\system32\DRIVERS\epfwtdir.sys
21:16:42.0203 1504 ERSvc C:\WINDOWS\System32\ersvc.dll
21:16:42.0421 1504 Eventlog C:\WINDOWS\system32\services.exe
21:16:42.0531 1504 EventSystem C:\WINDOWS\System32\es.dll
21:16:42.0656 1504 Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
21:16:42.0859 1504 FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
21:16:42.0921 1504 Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
21:16:43.0125 1504 Fips C:\WINDOWS\system32\drivers\Fips.sys
21:16:43.0328 1504 Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
21:16:43.0531 1504 FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
21:16:43.0796 1504 FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
21:16:43.0828 1504 Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
21:16:44.0109 1504 Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
21:16:44.0312 1504 gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
21:16:44.0500 1504 Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
21:16:44.0750 1504 gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
21:16:44.0765 1504 gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
21:16:44.0828 1504 ha10kx2k C:\WINDOWS\system32\drivers\ha10kx2k.sys
21:16:44.0968 1504 helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
21:16:45.0171 1504 HidServ C:\WINDOWS\System32\hidserv.dll
21:16:45.0359 1504 HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
21:16:45.0546 1504 hkmsvc C:\WINDOWS\System32\kmsvc.dll
21:16:45.0765 1504 HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
21:16:45.0859 1504 HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
21:16:45.0953 1504 HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys
21:16:46.0062 1504 HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
21:16:46.0156 1504 HTTPFilter C:\WINDOWS\System32\w3ssl.dll
21:16:46.0359 1504 i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
21:16:46.0593 1504 idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:16:46.0718 1504 Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
21:16:46.0921 1504 ImapiService C:\WINDOWS\System32\imapi.exe
21:16:47.0171 1504 intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
21:16:47.0375 1504 ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
21:16:47.0578 1504 IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
21:16:47.0765 1504 IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
21:16:47.0937 1504 IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
21:16:48.0156 1504 IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
21:16:48.0328 1504 irda C:\WINDOWS\system32\DRIVERS\irda.sys
21:16:48.0515 1504 IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
21:16:48.0718 1504 Irmon C:\WINDOWS\System32\irmon.dll
21:16:48.0906 1504 irsir C:\WINDOWS\system32\DRIVERS\irsir.sys
21:16:49.0000 1504 isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
21:16:49.0187 1504 Iviaspi C:\WINDOWS\system32\drivers\iviaspi.sys
21:16:49.0187 1504 Iviaspi ( UnsignedFile.Multi.Generic ) - warning
21:16:49.0187 1504 Iviaspi - detected UnsignedFile.Multi.Generic (1)
21:16:49.0250 1504 JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe
21:16:49.0312 1504 Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
21:16:49.0500 1504 kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
21:16:49.0703 1504 kmixer C:\WINDOWS\system32\drivers\kmixer.sys
21:16:49.0906 1504 KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
21:16:50.0000 1504 L8042Kbd C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys
21:16:50.0062 1504 L8042mou C:\WINDOWS\system32\DRIVERS\L8042mou.Sys
21:16:50.0109 1504 lanmanserver C:\WINDOWS\System32\srvsvc.dll
21:16:50.0203 1504 lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
21:16:50.0296 1504 LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
21:16:50.0375 1504 LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
21:16:50.0468 1504 LinksysUpdater C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe
21:16:50.0515 1504 LinksysUpdater ( UnsignedFile.Multi.Generic ) - warning
21:16:50.0515 1504 LinksysUpdater - detected UnsignedFile.Multi.Generic (1)
21:16:50.0578 1504 LmHosts C:\WINDOWS\System32\lmhsvc.dll
21:16:50.0781 1504 LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
21:16:50.0828 1504 LMouKE C:\WINDOWS\system32\DRIVERS\LMouKE.Sys
21:16:50.0859 1504 Messenger C:\WINDOWS\System32\msgsvc.dll
21:16:51.0062 1504 mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
21:16:51.0250 1504 mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
21:16:51.0453 1504 Modem C:\WINDOWS\system32\drivers\Modem.sys
21:16:51.0656 1504 Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
21:16:51.0828 1504 mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
21:16:52.0015 1504 MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
21:16:52.0187 1504 MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
21:16:52.0406 1504 MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
21:16:52.0515 1504 MSDTC C:\WINDOWS\System32\msdtc.exe
21:16:52.0750 1504 Msfs C:\WINDOWS\system32\drivers\Msfs.sys
21:16:52.0937 1504 MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
21:16:53.0109 1504 MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
21:16:53.0281 1504 MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
21:16:53.0468 1504 mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
21:16:53.0671 1504 Mup C:\WINDOWS\system32\drivers\Mup.sys
21:16:53.0765 1504 napagent C:\WINDOWS\System32\qagentrt.dll
21:16:53.0968 1504 NDIS C:\WINDOWS\system32\drivers\NDIS.sys
21:16:54.0171 1504 NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
21:16:54.0218 1504 Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
21:16:54.0562 1504 NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
21:16:54.0781 1504 NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
21:16:54.0906 1504 Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
21:16:55.0000 1504 NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
21:16:55.0171 1504 NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
21:16:55.0375 1504 NetDDE C:\WINDOWS\system32\netdde.exe
21:16:55.0546 1504 NetDDEdsdm C:\WINDOWS\system32\netdde.exe
21:16:55.0750 1504 Netlogon C:\WINDOWS\System32\lsass.exe
21:16:55.0937 1504 Netman C:\WINDOWS\System32\netman.dll
21:16:56.0140 1504 NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:16:56.0187 1504 Nla C:\WINDOWS\System32\mswsock.dll
21:16:56.0343 1504 NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
21:16:56.0453 1504 nmservice C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
21:16:56.0546 1504 Npfs C:\WINDOWS\system32\drivers\Npfs.sys
21:16:56.0750 1504 Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
21:16:56.0968 1504 NtLmSsp C:\WINDOWS\System32\lsass.exe
21:16:57.0156 1504 NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
21:16:57.0375 1504 Null C:\WINDOWS\system32\drivers\Null.sys
21:16:57.0625 1504 nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
21:16:57.0921 1504 NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
21:16:58.0109 1504 NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
21:16:58.0359 1504 odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:16:58.0437 1504 ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:16:58.0500 1504 ossrv C:\WINDOWS\system32\drivers\ctoss2k.sys
21:16:58.0625 1504 Parport C:\WINDOWS\system32\DRIVERS\parport.sys
21:16:58.0781 1504 PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
21:16:58.0968 1504 ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
21:16:59.0156 1504 PCI C:\WINDOWS\system32\DRIVERS\pci.sys
21:16:59.0328 1504 PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
21:16:59.0546 1504 Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
21:16:59.0765 1504 PfModNT C:\WINDOWS\system32\PfModNT.sys
21:16:59.0781 1504 PfModNT ( UnsignedFile.Multi.Generic ) - warning
21:16:59.0781 1504 PfModNT - detected UnsignedFile.Multi.Generic (1)
21:16:59.0796 1504 PlugPlay C:\WINDOWS\system32\services.exe
21:16:59.0890 1504 Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
21:16:59.0906 1504 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
21:16:59.0906 1504 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
21:16:59.0937 1504 pnarp C:\WINDOWS\system32\DRIVERS\pnarp.sys
21:16:59.0953 1504 PolicyAgent C:\WINDOWS\System32\lsass.exe
21:17:00.0125 1504 PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
21:17:00.0296 1504 Processor C:\WINDOWS\system32\DRIVERS\processr.sys
21:17:00.0484 1504 ProtectedStorage C:\WINDOWS\system32\lsass.exe
21:17:00.0656 1504 PSched C:\WINDOWS\system32\DRIVERS\psched.sys
21:17:00.0843 1504 Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
21:17:01.0062 1504 purendis C:\WINDOWS\system32\DRIVERS\purendis.sys
21:17:01.0109 1504 RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
21:17:01.0328 1504 RasAuto C:\WINDOWS\System32\rasauto.dll
21:17:01.0515 1504 Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
21:17:01.0625 1504 Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
21:17:01.0812 1504 RasMan C:\WINDOWS\System32\rasmans.dll
21:17:01.0968 1504 RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
21:17:02.0140 1504 Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
21:17:02.0359 1504 Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
21:17:02.0531 1504 RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
21:17:02.0750 1504 RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
21:17:02.0859 1504 RDSessMgr C:\WINDOWS\system32\sessmgr.exe
21:17:03.0015 1504 redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
21:17:03.0218 1504 RemoteAccess C:\WINDOWS\System32\mprdim.dll
21:17:03.0390 1504 RpcLocator C:\WINDOWS\System32\locator.exe
21:17:03.0578 1504 RpcSs C:\WINDOWS\system32\rpcss.dll
21:17:03.0703 1504 RSVP C:\WINDOWS\System32\rsvp.exe
21:17:03.0921 1504 rtl8139 C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
21:17:04.0062 1504 SamSs C:\WINDOWS\system32\lsass.exe
21:17:04.0234 1504 SCardSvr C:\WINDOWS\System32\SCardSvr.exe
21:17:04.0437 1504 Schedule C:\WINDOWS\system32\schedsvc.dll
21:17:04.0671 1504 Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
21:17:04.0859 1504 seclogon C:\WINDOWS\System32\seclogon.dll
21:17:05.0046 1504 SENS C:\WINDOWS\system32\sens.dll
21:17:05.0234 1504 serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
21:17:05.0421 1504 Serial C:\WINDOWS\system32\DRIVERS\serial.sys
21:17:05.0593 1504 Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
21:17:05.0796 1504 SharedAccess C:\WINDOWS\System32\ipnathlp.dll
21:17:06.0000 1504 ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
21:17:06.0062 1504 splitter C:\WINDOWS\system32\drivers\splitter.sys
21:17:06.0250 1504 Spooler C:\WINDOWS\system32\spoolsv.exe
21:17:06.0328 1504 sr C:\WINDOWS\system32\DRIVERS\sr.sys
21:17:06.0531 1504 srservice C:\WINDOWS\System32\srsvc.dll
21:17:06.0750 1504 Srv C:\WINDOWS\system32\DRIVERS\srv.sys
21:17:06.0875 1504 SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
21:17:07.0078 1504 stisvc C:\WINDOWS\system32\wiaservc.dll
21:17:07.0296 1504 swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
21:17:07.0484 1504 swmidi C:\WINDOWS\system32\drivers\swmidi.sys
21:17:07.0703 1504 sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
21:17:07.0890 1504 SysmonLog C:\WINDOWS\system32\smlogsvc.exe
21:17:08.0109 1504 TapiSrv C:\WINDOWS\System32\tapisrv.dll
21:17:08.0312 1504 Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
21:17:08.0453 1504 TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
21:17:08.0656 1504 TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
21:17:08.0812 1504 TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
21:17:09.0015 1504 TermService C:\WINDOWS\System32\termsrv.dll
21:17:09.0203 1504 Themes C:\WINDOWS\System32\shsvcs.dll
21:17:09.0265 1504 TrkWks C:\WINDOWS\system32\trkwks.dll
21:17:09.0453 1504 Udfs C:\WINDOWS\system32\drivers\Udfs.sys
21:17:09.0671 1504 Update C:\WINDOWS\system32\DRIVERS\update.sys
21:17:09.0906 1504 upnphost C:\WINDOWS\System32\upnphost.dll
21:17:10.0093 1504 UPS C:\WINDOWS\System32\ups.exe
21:17:10.0265 1504 usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
21:17:10.0453 1504 usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
21:17:10.0671 1504 usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
21:17:10.0843 1504 usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
21:17:11.0015 1504 usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
21:17:11.0203 1504 USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
21:17:11.0390 1504 usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
21:17:11.0562 1504 VgaSave C:\WINDOWS\System32\drivers\vga.sys
21:17:11.0750 1504 VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
21:17:11.0953 1504 VSS C:\WINDOWS\System32\vssvc.exe
21:17:12.0156 1504 W32Time C:\WINDOWS\System32\w32time.dll
21:17:12.0359 1504 Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
21:17:12.0562 1504 Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys
21:17:12.0640 1504 wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
21:17:12.0968 1504 WebClient C:\WINDOWS\System32\webclnt.dll
21:17:13.0203 1504 winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
21:17:13.0406 1504 WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
21:17:13.0531 1504 WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
21:17:13.0828 1504 WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
21:17:13.0953 1504 wscsvc C:\WINDOWS\system32\wscsvc.dll
21:17:14.0140 1504 wuauserv C:\WINDOWS\system32\wuauserv.dll
21:17:14.0343 1504 WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
21:17:14.0406 1504 WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
21:17:14.0484 1504 WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
21:17:14.0562 1504 WZCSVC C:\WINDOWS\System32\wzcsvc.dll
21:17:14.0843 1504 xmlprov C:\WINDOWS\System32\xmlprov.dll
21:17:15.0000 1504 ================ Scan global ===============================
21:17:15.0031 1504 C:\WINDOWS\system32\basesrv.dll
21:17:15.0078 1504 C:\WINDOWS\system32\winsrv.dll
21:17:15.0093 1504 C:\WINDOWS\system32\winsrv.dll
21:17:15.0109 1504 C:\WINDOWS\system32\services.exe
21:17:15.0109 1504 ================ Scan MBR ==================================
21:17:15.0125 1504 \Device\Harddisk0\DR0
21:17:15.0375 1504 \Device\Harddisk1\DR1
21:17:15.0703 1504 ================ Scan VBR ==================================
21:17:15.0703 1504 \Device\Harddisk0\DR0\Partition1
21:17:15.0718 1504 \Device\Harddisk0\DR0\Partition2
21:17:15.0734 1504 \Device\Harddisk0\DR0\Partition3
21:17:15.0734 1504 \Device\Harddisk1\DR1\Partition1
21:17:15.0734 1504 \Device\Harddisk1\DR1\Partition2
21:17:15.0734 1504 ================ Scan UEFI extensions ======================
21:17:15.0734 1504 ================ Scan active images ========================
21:17:15.0734 1504 ============================================================
21:17:15.0734 1504 Scan finished
21:17:15.0734 1504 ============================================================
21:17:16.0640 1896 Deinitialize success
.
==============================================
System Restore Point Check:
.
TDSSKiller Starter Restore Point Created Succesfully
==============================================
Registry Export
.
“139:TCP”=“139:TCP:*:Enabled:@xpsp2res.dll,-22004”
“445:TCP”=“445:TCP:*:Enabled:@xpsp2res.dll,-22005”
“137:UDP”=“137:UDP:*:Enabled:@xpsp2res.dll,-22001”
“138:UDP”=“138:UDP:*:Enabled:@xpsp2res.dll,-22002”
“1900:UDP”=“1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007”
“2869:TCP”=“2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008”
“139:TCP”=“139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004”
“445:TCP”=“445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005”
“137:UDP”=“137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001”
“138:UDP”=“138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002”
“67:UDP”=“67:UDP:*:Enabled:DHCP Discovery Service”
==============================================
EOF
Grt Anita B)