Rootkit

  • Annemieke

    Logje TDSSKiller:

    12:05:50.0576 3948 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35

    12:05:50.0794 3948 ============================================================

    12:05:50.0794 3948 Current date / time: 2013/02/11 12:05:50.0794

    12:05:50.0794 3948 SystemInfo:

    12:05:50.0794 3948

    12:05:50.0794 3948 OS Version: 6.1.7601 ServicePack: 1.0

    12:05:50.0794 3948 Product type: Workstation

    12:05:50.0794 3948 ComputerName: GEBRUIKER-WDBPC

    12:05:50.0794 3948 UserName: Gebruiker

    12:05:50.0794 3948 Windows directory: C:\Windows

    12:05:50.0794 3948 System windows directory: C:\Windows

    12:05:50.0794 3948 Processor architecture: Intel x86

    12:05:50.0794 3948 Number of processors: 2

    12:05:50.0794 3948 Page size: 0x1000

    12:05:50.0794 3948 Boot type: Normal boot

    12:05:50.0794 3948 ============================================================

    12:05:51.0777 3948 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000050

    12:05:51.0808 3948 ============================================================

    12:05:51.0808 3948 \Device\Harddisk0\DR0:

    12:05:51.0808 3948 MBR partitions:

    12:05:51.0808 3948 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1388800, BlocksNum 0xFA000

    12:05:51.0808 3948 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1482800, BlocksNum 0x7327CDB0

    12:05:51.0808 3948 ============================================================

    12:05:51.0824 3948 C: <-> \Device\Harddisk0\DR0\Partition2

    12:05:51.0824 3948 ============================================================

    12:05:51.0824 3948 Initialize success

    12:05:51.0824 3948 ============================================================

    12:06:57.0500 3736 ============================================================

    12:06:57.0500 3736 Scan started

    12:06:57.0500 3736 Mode: Manual; SigCheck; TDLFS;

    12:06:57.0500 3736 ============================================================

    12:06:57.0781 3736 ================ Scan services =============================

    12:06:57.0937 3736 1394ohci C:\Windows\system32\drivers\1394ohci.sys

    12:06:58.0015 3736 1394ohci - ok

    12:06:58.0108 3736 ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    12:06:58.0124 3736 ABBYY.Licensing.FineReader.Sprint.9.0 - ok

    12:06:58.0155 3736 ACPI C:\Windows\system32\drivers\ACPI.sys

    12:06:58.0171 3736 ACPI - ok

    12:06:58.0202 3736 AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

    12:06:58.0249 3736 AcpiPmi - ok

    12:06:58.0296 3736 AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    12:06:58.0311 3736 AdobeARMservice - ok

    12:06:58.0405 3736 AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    12:06:58.0420 3736 AdobeFlashPlayerUpdateSvc - ok

    12:06:58.0483 3736 adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

    12:06:58.0498 3736 adp94xx - ok

    12:06:58.0545 3736 adpahci C:\Windows\system32\DRIVERS\adpahci.sys

    12:06:58.0561 3736 adpahci - ok

    12:06:58.0576 3736 adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

    12:06:58.0592 3736 adpu320 - ok

    12:06:58.0608 3736 AeLookupSvc C:\Windows\System32\aelupsvc.dll

    12:06:58.0654 3736 AeLookupSvc - ok

    12:06:58.0686 3736 AFD C:\Windows\system32\drivers\afd.sys

    12:06:58.0748 3736 AFD - ok

    12:06:58.0779 3736 agp440 C:\Windows\system32\drivers\agp440.sys

    12:06:58.0779 3736 agp440 - ok

    12:06:58.0810 3736 aic78xx C:\Windows\system32\DRIVERS\djsvs.sys

    12:06:58.0842 3736 aic78xx - ok

    12:06:58.0842 3736 ALG C:\Windows\System32\alg.exe

    12:06:58.0888 3736 ALG - ok

    12:06:58.0904 3736 aliide C:\Windows\system32\drivers\aliide.sys

    12:06:58.0920 3736 aliide - ok

    12:06:58.0951 3736 AMD External Events Utility C:\Windows\system32\atiesrxx.exe

    12:06:58.0982 3736 AMD External Events Utility - ok

    12:06:59.0013 3736 amdagp C:\Windows\system32\drivers\amdagp.sys

    12:06:59.0029 3736 amdagp - ok

    12:06:59.0044 3736 amdide C:\Windows\system32\drivers\amdide.sys

    12:06:59.0060 3736 amdide - ok

    12:06:59.0060 3736 AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

    12:06:59.0076 3736 AmdK8 - ok

    12:06:59.0200 3736 amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys

    12:06:59.0294 3736 amdkmdag - ok

    12:06:59.0310 3736 amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys

    12:06:59.0341 3736 amdkmdap - ok

    12:06:59.0356 3736 AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

    12:06:59.0403 3736 AmdPPM - ok

    12:06:59.0434 3736 amdsata C:\Windows\system32\drivers\amdsata.sys

    12:06:59.0434 3736 amdsata - ok

    12:06:59.0450 3736 amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

    12:06:59.0466 3736 amdsbs - ok

    12:06:59.0481 3736 amdxata C:\Windows\system32\drivers\amdxata.sys

    12:06:59.0497 3736 amdxata - ok

    12:06:59.0544 3736 AppID C:\Windows\system32\drivers\appid.sys

    12:06:59.0559 3736 AppID - ok

    12:06:59.0575 3736 AppIDSvc C:\Windows\System32\appidsvc.dll

    12:06:59.0606 3736 AppIDSvc - ok

    12:06:59.0668 3736 Appinfo C:\Windows\System32\appinfo.dll

    12:06:59.0700 3736 Appinfo - ok

    12:06:59.0778 3736 Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    12:06:59.0778 3736 Apple Mobile Device - ok

    12:06:59.0840 3736 arc C:\Windows\system32\DRIVERS\arc.sys

    12:06:59.0856 3736 arc - ok

    12:06:59.0871 3736 arcsas C:\Windows\system32\DRIVERS\arcsas.sys

    12:06:59.0887 3736 arcsas - ok

    12:06:59.0965 3736 aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe

    12:06:59.0965 3736 aspnet_state - ok

    12:07:00.0027 3736 aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys

    12:07:00.0058 3736 aswFsBlk - ok

    12:07:00.0136 3736 aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys

    12:07:00.0136 3736 aswMonFlt - ok

    12:07:00.0183 3736 aswRdr C:\Windows\System32\Drivers\aswrdr2.sys

    12:07:00.0199 3736 aswRdr - ok

    12:07:00.0246 3736 aswSnx C:\Windows\system32\drivers\aswSnx.sys

    12:07:00.0277 3736 aswSnx - ok

    12:07:00.0324 3736 aswSP C:\Windows\system32\drivers\aswSP.sys

    12:07:00.0339 3736 aswSP - ok

    12:07:00.0370 3736 aswTdi C:\Windows\system32\drivers\aswTdi.sys

    12:07:00.0370 3736 aswTdi - ok

    12:07:00.0386 3736 AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

    12:07:00.0433 3736 AsyncMac - ok

    12:07:00.0464 3736 atapi C:\Windows\system32\drivers\atapi.sys

    12:07:00.0480 3736 atapi - ok

    12:07:00.0542 3736 AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys

    12:07:00.0558 3736 AtiHdmiService - ok

    12:07:00.0589 3736 AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

    12:07:00.0636 3736 AudioEndpointBuilder - ok

    12:07:00.0651 3736 Audiosrv C:\Windows\System32\Audiosrv.dll

    12:07:00.0667 3736 Audiosrv - ok

    12:07:00.0745 3736 avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    12:07:00.0760 3736 avast! Antivirus - ok

    12:07:00.0792 3736 AxInstSV C:\Windows\System32\AxInstSV.dll

    12:07:00.0870 3736 AxInstSV - ok

    12:07:00.0901 3736 b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys

    12:07:00.0948 3736 b06bdrv - ok

    12:07:00.0963 3736 b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys

    12:07:00.0994 3736 b57nd60x - ok

    12:07:01.0041 3736 BDESVC C:\Windows\System32\bdesvc.dll

    12:07:01.0072 3736 BDESVC - ok

    12:07:01.0119 3736 Beep C:\Windows\system32\drivers\Beep.sys

    12:07:01.0135 3736 Beep - ok

    12:07:01.0182 3736 BFE C:\Windows\System32\bfe.dll

    12:07:01.0228 3736 BFE - ok

    12:07:01.0260 3736 BITS C:\Windows\system32\qmgr.dll

    12:07:01.0306 3736 BITS - ok

    12:07:01.0338 3736 blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

    12:07:01.0353 3736 blbdrive - ok

    12:07:01.0431 3736 Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

    12:07:01.0447 3736 Bonjour Service - ok

    12:07:01.0462 3736 bowser C:\Windows\system32\DRIVERS\bowser.sys

    12:07:01.0478 3736 bowser - ok

    12:07:01.0494 3736 BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

    12:07:01.0540 3736 BrFiltLo - ok

    12:07:01.0556 3736 BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

    12:07:01.0603 3736 BrFiltUp - ok

    12:07:01.0634 3736 Browser C:\Windows\System32\browser.dll

    12:07:01.0634 3736 Browser - ok

    12:07:01.0665 3736 Brserid C:\Windows\System32\Drivers\Brserid.sys

    12:07:01.0681 3736 Brserid - ok

    12:07:01.0696 3736 BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

    12:07:01.0712 3736 BrSerWdm - ok

    12:07:01.0728 3736 BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

    12:07:01.0759 3736 BrUsbMdm - ok

    12:07:01.0774 3736 BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

    12:07:01.0806 3736 BrUsbSer - ok

    12:07:01.0837 3736 BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

    12:07:01.0884 3736 BTHMODEM - ok

    12:07:01.0915 3736 bthserv C:\Windows\system32\bthserv.dll

    12:07:01.0946 3736 bthserv - ok

    12:07:02.0102 3736 catchme - ok

    12:07:02.0133 3736 cdfs C:\Windows\system32\DRIVERS\cdfs.sys

    12:07:02.0180 3736 cdfs - ok

    12:07:02.0242 3736 cdrom C:\Windows\system32\drivers\cdrom.sys

    12:07:02.0274 3736 cdrom - ok

    12:07:02.0336 3736 CertPropSvc C:\Windows\System32\certprop.dll

    12:07:02.0367 3736 CertPropSvc - ok

    12:07:02.0383 3736 circlass C:\Windows\system32\DRIVERS\circlass.sys

    12:07:02.0398 3736 circlass - ok

    12:07:02.0414 3736 CLFS C:\Windows\system32\CLFS.sys

    12:07:02.0430 3736 CLFS - ok

    12:07:02.0492 3736 clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    12:07:02.0492 3736 clr_optimization_v2.0.50727_32 - ok

    12:07:02.0586 3736 clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    12:07:02.0601 3736 clr_optimization_v4.0.30319_32 - ok

    12:07:02.0617 3736 CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

    12:07:02.0648 3736 CmBatt - ok

    12:07:02.0695 3736 cmdide C:\Windows\system32\drivers\cmdide.sys

    12:07:02.0695 3736 cmdide - ok

    12:07:02.0726 3736 CNG C:\Windows\system32\Drivers\cng.sys

    12:07:02.0742 3736 CNG - ok

    12:07:02.0773 3736 Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

    12:07:02.0773 3736 Compbatt - ok

    12:07:02.0820 3736 CompositeBus C:\Windows\system32\drivers\CompositeBus.sys

    12:07:02.0851 3736 CompositeBus - ok

    12:07:02.0866 3736 COMSysApp - ok

    12:07:02.0882 3736 crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

    12:07:02.0898 3736 crcdisk - ok

    12:07:02.0944 3736 CryptSvc C:\Windows\system32\cryptsvc.dll

    12:07:02.0960 3736 CryptSvc - ok

    12:07:02.0976 3736 DcomLaunch C:\Windows\system32\rpcss.dll

    12:07:03.0022 3736 DcomLaunch - ok

    12:07:03.0054 3736 defragsvc C:\Windows\System32\defragsvc.dll

    12:07:03.0085 3736 defragsvc - ok

    12:07:03.0116 3736 DfsC C:\Windows\system32\Drivers\dfsc.sys

    12:07:03.0163 3736 DfsC - ok

    12:07:03.0194 3736 Dhcp C:\Windows\system32\dhcpcore.dll

    12:07:03.0225 3736 Dhcp - ok

    12:07:03.0241 3736 discache C:\Windows\system32\drivers\discache.sys

    12:07:03.0272 3736 discache - ok

    12:07:03.0319 3736 Disk C:\Windows\system32\DRIVERS\disk.sys

    12:07:03.0334 3736 Disk - ok

    12:07:03.0366 3736 Dnscache C:\Windows\System32\dnsrslvr.dll

    12:07:03.0397 3736 Dnscache - ok

    12:07:03.0428 3736 dot3svc C:\Windows\System32\dot3svc.dll

    12:07:03.0475 3736 dot3svc - ok

    12:07:03.0522 3736 DPS C:\Windows\system32\dps.dll

    12:07:03.0553 3736 DPS - ok

    12:07:03.0584 3736 drmkaud C:\Windows\system32\drivers\drmkaud.sys

    12:07:03.0600 3736 drmkaud - ok

    12:07:03.0631 3736 DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

    12:07:03.0646 3736 DXGKrnl - ok

    12:07:03.0678 3736 E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys

    12:07:03.0709 3736 E1G60 - ok

    12:07:03.0740 3736 EapHost C:\Windows\System32\eapsvc.dll

    12:07:03.0771 3736 EapHost - ok

    12:07:03.0834 3736 ebdrv C:\Windows\system32\DRIVERS\evbdx.sys

    12:07:03.0896 3736 ebdrv - ok

    12:07:03.0927 3736 EFS C:\Windows\System32\lsass.exe

    12:07:03.0958 3736 EFS - ok

    12:07:04.0005 3736 ehRecvr C:\Windows\ehome\ehRecvr.exe

    12:07:04.0021 3736 ehRecvr - ok

    12:07:04.0052 3736 ehSched C:\Windows\ehome\ehsched.exe

    12:07:04.0083 3736 ehSched - ok

    12:07:04.0114 3736 elxstor C:\Windows\system32\DRIVERS\elxstor.sys

    12:07:04.0130 3736 elxstor - ok

    12:07:04.0208 3736 EPSON_EB_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE

    12:07:04.0255 3736 EPSON_EB_RPCV4_04 - ok

    12:07:04.0270 3736 EPSON_PM_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE

    12:07:04.0302 3736 EPSON_PM_RPCV4_04 - ok

    12:07:04.0333 3736 ErrDev C:\Windows\system32\drivers\errdev.sys

    12:07:04.0364 3736 ErrDev - ok

    12:07:04.0411 3736 EventSystem C:\Windows\system32\es.dll

    12:07:04.0442 3736 EventSystem - ok

    12:07:04.0458 3736 exfat C:\Windows\system32\drivers\exfat.sys

    12:07:04.0489 3736 exfat - ok

    12:07:04.0520 3736 fastfat C:\Windows\system32\drivers\fastfat.sys

    12:07:04.0567 3736 fastfat - ok

    12:07:04.0598 3736 Fax C:\Windows\system32\fxssvc.exe

    12:07:04.0629 3736 Fax - ok

    12:07:04.0660 3736 fdc C:\Windows\system32\DRIVERS\fdc.sys

    12:07:04.0692 3736 fdc - ok

    12:07:04.0707 3736 fdPHost C:\Windows\system32\fdPHost.dll

    12:07:04.0738 3736 fdPHost - ok

    12:07:04.0770 3736 FDResPub C:\Windows\system32\fdrespub.dll

    12:07:04.0801 3736 FDResPub - ok

    12:07:04.0816 3736 FileInfo C:\Windows\system32\drivers\fileinfo.sys

    12:07:04.0816 3736 FileInfo - ok

    12:07:04.0848 3736 Filetrace C:\Windows\system32\drivers\filetrace.sys

    12:07:04.0863 3736 Filetrace - ok

    12:07:04.0894 3736 FIXUSTOR C:\Windows\system32\DRIVERS\fixustor.sys

    12:07:04.0926 3736 FIXUSTOR - ok

    12:07:04.0957 3736 flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

    12:07:04.0972 3736 flpydisk - ok

    12:07:04.0988 3736 FltMgr C:\Windows\system32\drivers\fltmgr.sys

    12:07:04.0988 3736 FltMgr - ok

    12:07:05.0050 3736 FontCache C:\Windows\system32\FntCache.dll

    12:07:05.0097 3736 FontCache - ok

    12:07:05.0160 3736 FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

    12:07:05.0175 3736 FontCache3.0.0.0 - ok

    12:07:05.0191 3736 FsDepends C:\Windows\system32\drivers\FsDepends.sys

    12:07:05.0191 3736 FsDepends - ok

    12:07:05.0253 3736 fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys

    12:07:05.0269 3736 fssfltr - ok

    12:07:05.0316 3736 fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

    12:07:05.0347 3736 fsssvc - ok

    12:07:05.0378 3736 Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

    12:07:05.0394 3736 Fs_Rec - ok

    12:07:05.0425 3736 fvevol C:\Windows\system32\DRIVERS\fvevol.sys

    12:07:05.0440 3736 fvevol - ok

    12:07:05.0472 3736 gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

    12:07:05.0487 3736 gagp30kx - ok

    12:07:05.0503 3736 GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    12:07:05.0518 3736 GEARAspiWDM - ok

    12:07:05.0550 3736 gpsvc C:\Windows\System32\gpsvc.dll

    12:07:05.0596 3736 gpsvc - ok

    12:07:05.0659 3736 gupdate C:\Program Files\Google\Update\GoogleUpdate.exe

    12:07:05.0659 3736 gupdate - ok

    12:07:05.0674 3736 gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe

    12:07:05.0674 3736 gupdatem - ok

    12:07:05.0737 3736 gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    12:07:05.0737 3736 gusvc - ok

    12:07:05.0768 3736 hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

    12:07:05.0784 3736 hcw85cir - ok

    12:07:05.0862 3736 HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

    12:07:05.0877 3736 HdAudAddService - ok

    12:07:05.0908 3736 HDAudBus C:\Windows\system32\drivers\HDAudBus.sys

    12:07:05.0924 3736 HDAudBus - ok

    12:07:05.0955 3736 HECI C:\Windows\system32\DRIVERS\HECI.sys

    12:07:05.0986 3736 HECI - ok

    12:07:06.0018 3736 HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

    12:07:06.0018 3736 HidBatt - ok

    12:07:06.0033 3736 HidBth C:\Windows\system32\DRIVERS\hidbth.sys

    12:07:06.0080 3736 HidBth - ok

    12:07:06.0205 3736 HideMyIpSRV C:\Program Files\Hide My IP\HideMyIpSrv.exe

    12:07:06.0236 3736 HideMyIpSRV - ok

    12:07:06.0252 3736 HidIr C:\Windows\system32\DRIVERS\hidir.sys

    12:07:06.0267 3736 HidIr - ok

    12:07:06.0298 3736 hidserv C:\Windows\System32\hidserv.dll

    12:07:06.0314 3736 hidserv - ok

    12:07:06.0376 3736 HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

    12:07:06.0408 3736 HidUsb - ok

    12:07:06.0439 3736 hkmsvc C:\Windows\system32\kmsvc.dll

    12:07:06.0470 3736 hkmsvc - ok

    12:07:06.0501 3736 HomeGroupListener C:\Windows\system32\ListSvc.dll

    12:07:06.0532 3736 HomeGroupListener - ok

    12:07:06.0579 3736 HomeGroupProvider C:\Windows\system32\provsvc.dll

    12:07:06.0595 3736 HomeGroupProvider - ok

    12:07:06.0657 3736 HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

    12:07:06.0673 3736 HpSAMD - ok

    12:07:06.0704 3736 HTTP C:\Windows\system32\drivers\HTTP.sys

    12:07:06.0735 3736 HTTP - ok

    12:07:06.0751 3736 hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

    12:07:06.0766 3736 hwpolicy - ok

    12:07:06.0813 3736 i8042prt C:\Windows\system32\drivers\i8042prt.sys

    12:07:06.0844 3736 i8042prt - ok

    12:07:06.0891 3736 iaStorV C:\Windows\system32\drivers\iaStorV.sys

    12:07:06.0907 3736 iaStorV - ok

    12:07:06.0954 3736 idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

    12:07:06.0969 3736 idsvc - ok

    12:07:06.0985 3736 iirsp C:\Windows\system32\DRIVERS\iirsp.sys

    12:07:07.0000 3736 iirsp - ok

    12:07:07.0032 3736 IKEEXT C:\Windows\System32\ikeext.dll

    12:07:07.0078 3736 IKEEXT - ok

    12:07:07.0172 3736 IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys

    12:07:07.0219 3736 IntcAzAudAddService - ok

    12:07:07.0234 3736 intelide C:\Windows\system32\drivers\intelide.sys

    12:07:07.0250 3736 intelide - ok

    12:07:07.0281 3736 intelppm C:\Windows\system32\DRIVERS\intelppm.sys

    12:07:07.0312 3736 intelppm - ok

    12:07:07.0344 3736 IPBusEnum C:\Windows\system32\ipbusenum.dll

    12:07:07.0375 3736 IPBusEnum - ok

    12:07:07.0422 3736 IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

    12:07:07.0453 3736 IpFilterDriver - ok

    12:07:07.0500 3736 iphlpsvc C:\Windows\System32\iphlpsvc.dll

    12:07:07.0531 3736 iphlpsvc - ok

    12:07:07.0562 3736 IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

    12:07:07.0562 3736 IPMIDRV - ok

    12:07:07.0578 3736 IPNAT C:\Windows\system32\drivers\ipnat.sys

    12:07:07.0624 3736 IPNAT - ok

    12:07:07.0671 3736 iPod Service C:\Program Files\iPod\bin\iPodService.exe

    12:07:07.0687 3736 iPod Service - ok

    12:07:07.0718 3736 IRENUM C:\Windows\system32\drivers\irenum.sys

    12:07:07.0749 3736 IRENUM - ok

    12:07:07.0765 3736 isapnp C:\Windows\system32\drivers\isapnp.sys

    12:07:07.0780 3736 isapnp - ok

    12:07:07.0796 3736 iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

    12:07:07.0812 3736 iScsiPrt - ok

    12:07:07.0812 3736 kbdclass C:\Windows\system32\drivers\kbdclass.sys

    12:07:07.0827 3736 kbdclass - ok

    12:07:07.0874 3736 kbdhid C:\Windows\system32\drivers\kbdhid.sys

    12:07:07.0905 3736 kbdhid - ok

    12:07:07.0921 3736 KeyIso C:\Windows\system32\lsass.exe

    12:07:07.0936 3736 KeyIso - ok

    12:07:07.0968 3736 KSecDD C:\Windows\system32\Drivers\ksecdd.sys

    12:07:07.0983 3736 KSecDD - ok

    12:07:07.0983 3736 KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

    12:07:07.0999 3736 KSecPkg - ok

    12:07:08.0030 3736 KtmRm C:\Windows\system32\msdtckrm.dll

    12:07:08.0077 3736 KtmRm - ok

    12:07:08.0108 3736 LanmanServer C:\Windows\System32\srvsvc.dll

    12:07:08.0155 3736 LanmanServer - ok

    12:07:08.0186 3736 LanmanWorkstation C:\Windows\System32\wkssvc.dll

    12:07:08.0217 3736 LanmanWorkstation - ok

    12:07:08.0264 3736 lltdio C:\Windows\system32\DRIVERS\lltdio.sys

    12:07:08.0311 3736 lltdio - ok

    12:07:08.0342 3736 lltdsvc C:\Windows\System32\lltdsvc.dll

    12:07:08.0389 3736 lltdsvc - ok

    12:07:08.0404 3736 lmhosts C:\Windows\System32\lmhsvc.dll

    12:07:08.0451 3736 lmhosts - ok

    12:07:08.0482 3736 LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

    12:07:08.0498 3736 LSI_FC - ok

    12:07:08.0545 3736 LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

    12:07:08.0545 3736 LSI_SAS - ok

    12:07:08.0576 3736 LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

    12:07:08.0592 3736 LSI_SAS2 - ok

    12:07:08.0607 3736 LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

    12:07:08.0607 3736 LSI_SCSI - ok

    12:07:08.0638 3736 luafv C:\Windows\system32\drivers\luafv.sys

    12:07:08.0654 3736 luafv - ok

    12:07:08.0701 3736 MBAMProtector C:\Windows\system32\drivers\mbam.sys

    12:07:08.0701 3736 MBAMProtector - ok

    12:07:08.0779 3736 MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    12:07:08.0794 3736 MBAMScheduler - ok

    12:07:08.0826 3736 MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    12:07:08.0841 3736 MBAMService - ok

    12:07:08.0872 3736 Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

    12:07:08.0935 3736 Mcx2Svc - ok

    12:07:08.0966 3736 megasas C:\Windows\system32\DRIVERS\megasas.sys

    12:07:08.0966 3736 megasas - ok

    12:07:08.0997 3736 MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

    12:07:09.0013 3736 MegaSR - ok

    12:07:09.0075 3736 Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe

    12:07:09.0091 3736 Microsoft Office Groove Audit Service - ok

    12:07:09.0106 3736 MMCSS C:\Windows\system32\mmcss.dll

    12:07:09.0153 3736 MMCSS - ok

    12:07:09.0169 3736 Modem C:\Windows\system32\drivers\modem.sys

    12:07:09.0200 3736 Modem - ok

    12:07:09.0247 3736 monitor C:\Windows\system32\DRIVERS\monitor.sys

    12:07:09.0247 3736 monitor - ok

    12:07:09.0294 3736 mouclass C:\Windows\system32\DRIVERS\mouclass.sys

    12:07:09.0309 3736 mouclass - ok

    12:07:09.0340 3736 mouhid C:\Windows\system32\DRIVERS\mouhid.sys

    12:07:09.0372 3736 mouhid - ok

    12:07:09.0403 3736 mountmgr C:\Windows\system32\drivers\mountmgr.sys

    12:07:09.0418 3736 mountmgr - ok

    12:07:09.0434 3736 mpio C:\Windows\system32\drivers\mpio.sys

    12:07:09.0450 3736 mpio - ok

    12:07:09.0465 3736 mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

    12:07:09.0496 3736 mpsdrv - ok

    12:07:09.0528 3736 MpsSvc C:\Windows\system32\mpssvc.dll

    12:07:09.0574 3736 MpsSvc - ok

    12:07:09.0621 3736 MRxDAV C:\Windows\system32\drivers\mrxdav.sys

    12:07:09.0637 3736 MRxDAV - ok

    12:07:09.0668 3736 mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

    12:07:09.0684 3736 mrxsmb - ok

    12:07:09.0730 3736 mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

    12:07:09.0746 3736 mrxsmb10 - ok

    12:07:09.0762 3736 mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

    12:07:09.0777 3736 mrxsmb20 - ok

    12:07:09.0793 3736 msahci C:\Windows\system32\drivers\msahci.sys

    12:07:09.0808 3736 msahci - ok

    12:07:09.0808 3736 msdsm C:\Windows\system32\drivers\msdsm.sys

    12:07:09.0824 3736 msdsm - ok

    12:07:09.0855 3736 MSDTC C:\Windows\System32\msdtc.exe

    12:07:09.0886 3736 MSDTC - ok

    12:07:09.0918 3736 Msfs C:\Windows\system32\drivers\Msfs.sys

    12:07:09.0949 3736 Msfs - ok

    12:07:09.0949 3736 mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

    12:07:09.0964 3736 mshidkmdf - ok

    12:07:09.0996 3736 msisadrv C:\Windows\system32\drivers\msisadrv.sys

    12:07:10.0011 3736 msisadrv - ok

    12:07:10.0058 3736 MSiSCSI C:\Windows\system32\iscsiexe.dll

    12:07:10.0105 3736 MSiSCSI - ok

    12:07:10.0105 3736 msiserver - ok

    12:07:10.0136 3736 MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

    12:07:10.0167 3736 MSKSSRV - ok

    12:07:10.0198 3736 MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

    12:07:10.0230 3736 MSPCLOCK - ok

    12:07:10.0245 3736 MSPQM C:\Windows\system32\drivers\MSPQM.sys

    12:07:10.0276 3736 MSPQM - ok

    12:07:10.0308 3736 MsRPC C:\Windows\system32\drivers\MsRPC.sys

    12:07:10.0308 3736 MsRPC - ok

    12:07:10.0339 3736 mssmbios C:\Windows\system32\drivers\mssmbios.sys

    12:07:10.0339 3736 mssmbios - ok

    12:07:10.0432 3736 MSSQL$SQLEXPRESS - ok

    12:07:10.0510 3736 MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE

    12:07:10.0510 3736 MSSQLServerADHelper100 - ok

    12:07:10.0526 3736 MSTEE C:\Windows\system32\drivers\MSTEE.sys

    12:07:10.0557 3736 MSTEE - ok

    12:07:10.0573 3736 MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

    12:07:10.0604 3736 MTConfig - ok

    12:07:10.0635 3736 Mup C:\Windows\system32\Drivers\mup.sys

    12:07:10.0651 3736 Mup - ok

    12:07:10.0651 3736 napagent C:\Windows\system32\qagentRT.dll

    12:07:10.0698 3736 napagent - ok

    12:07:10.0729 3736 NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

    12:07:10.0760 3736 NativeWifiP - ok

    12:07:10.0807 3736 NDIS C:\Windows\system32\drivers\ndis.sys

    12:07:10.0822 3736 NDIS - ok

    12:07:10.0838 3736 NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

    12:07:10.0885 3736 NdisCap - ok

    12:07:10.0916 3736 NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

    12:07:10.0963 3736 NdisTapi - ok

    12:07:10.0994 3736 Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

    12:07:11.0041 3736 Ndisuio - ok

    12:07:11.0072 3736 NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

    12:07:11.0119 3736 NdisWan - ok

    12:07:11.0150 3736 NDProxy C:\Windows\system32\drivers\NDProxy.sys

    12:07:11.0166 3736 NDProxy - ok

    12:07:11.0259 3736 Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

    12:07:11.0290 3736 Nero BackItUp Scheduler 4.0 - ok

    12:07:11.0306 3736 NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

    12:07:11.0337 3736 NetBIOS - ok

    12:07:11.0368 3736 NetBT C:\Windows\system32\DRIVERS\netbt.sys

    12:07:11.0415 3736 NetBT - ok

    12:07:11.0431 3736 Netlogon C:\Windows\system32\lsass.exe

    12:07:11.0446 3736 Netlogon - ok

    12:07:11.0493 3736 Netman C:\Windows\System32\netman.dll

    12:07:11.0524 3736 Netman - ok

    12:07:11.0540 3736 NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0556 3736 NetMsmqActivator - ok

    12:07:11.0556 3736 NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0571 3736 NetPipeActivator - ok

    12:07:11.0587 3736 netprofm C:\Windows\System32\netprofm.dll

    12:07:11.0618 3736 netprofm - ok

    12:07:11.0618 3736 NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0634 3736 NetTcpActivator - ok

    12:07:11.0634 3736 NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0634 3736 NetTcpPortSharing - ok

    12:07:11.0680 3736 nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

    12:07:11.0680 3736 nfrd960 - ok

    12:07:11.0712 3736 NlaSvc C:\Windows\System32\nlasvc.dll

    12:07:11.0743 3736 NlaSvc - ok

    12:07:11.0790 3736 Npfs C:\Windows\system32\drivers\Npfs.sys

    12:07:11.0805 3736 Npfs - ok

    12:07:11.0821 3736 nsi C:\Windows\system32\nsisvc.dll

    12:07:11.0852 3736 nsi - ok

    12:07:11.0868 3736 nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

    12:07:11.0914 3736 nsiproxy - ok

    12:07:11.0961 3736 Ntfs C:\Windows\system32\drivers\Ntfs.sys

    12:07:11.0992 3736 Ntfs - ok

    12:07:11.0992 3736 Null C:\Windows\system32\drivers\Null.sys

    12:07:12.0024 3736 Null - ok

    12:07:12.0055 3736 nvamacpi C:\Windows\system32\DRIVERS\NVAMACPI.sys

    12:07:12.0055 3736 nvamacpi - ok

    12:07:12.0070 3736 nvgts C:\Windows\system32\DRIVERS\nvgts.sys

    12:07:12.0086 3736 nvgts - ok

    12:07:12.0289 3736 nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

    12:07:12.0460 3736 nvlddmkm - ok

    12:07:12.0507 3736 nvraid C:\Windows\system32\drivers\nvraid.sys

    12:07:12.0523 3736 nvraid - ok

    12:07:12.0538 3736 nvrd32 C:\Windows\system32\DRIVERS\nvrd32.sys

    12:07:12.0538 3736 nvrd32 - ok

    12:07:12.0554 3736 nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys

    12:07:12.0585 3736 nvsmu - ok

    12:07:12.0616 3736 nvstor C:\Windows\system32\drivers\nvstor.sys

    12:07:12.0632 3736 nvstor - ok

    12:07:12.0648 3736 nvstor32 C:\Windows\system32\DRIVERS\nvstor32.sys

    12:07:12.0663 3736 nvstor32 - ok

    12:07:12.0679 3736 nvsvc C:\Windows\system32\nvvsvc.exe

    12:07:12.0694 3736 nvsvc - ok

    12:07:12.0710 3736 nv_agp C:\Windows\system32\drivers\nv_agp.sys

    12:07:12.0726 3736 nv_agp - ok

    12:07:12.0788 3736 odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    12:07:12.0804 3736 odserv - ok

    12:07:12.0819 3736 ohci1394 C:\Windows\system32\drivers\ohci1394.sys

    12:07:12.0850 3736 ohci1394 - ok

    12:07:12.0897 3736 ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    12:07:12.0897 3736 ose - ok

    12:07:12.0928 3736 p2pimsvc C:\Windows\system32\pnrpsvc.dll

    12:07:12.0960 3736 p2pimsvc - ok

    12:07:13.0006 3736 p2psvc C:\Windows\system32\p2psvc.dll

    12:07:13.0022 3736 p2psvc - ok

    12:07:13.0038 3736 Parport C:\Windows\system32\DRIVERS\parport.sys

    12:07:13.0053 3736 Parport - ok

    12:07:13.0069 3736 partmgr C:\Windows\system32\drivers\partmgr.sys

    12:07:13.0084 3736 partmgr - ok

    12:07:13.0116 3736 Parvdm C:\Windows\system32\DRIVERS\parvdm.sys

    12:07:13.0147 3736 Parvdm - ok

    12:07:13.0178 3736 PcaSvc C:\Windows\System32\pcasvc.dll

    12:07:13.0209 3736 PcaSvc - ok

    12:07:13.0225 3736 pci C:\Windows\system32\drivers\pci.sys

    12:07:13.0240 3736 pci - ok

    12:07:13.0256 3736 pciide C:\Windows\system32\drivers\pciide.sys

    12:07:13.0272 3736 pciide - ok

    12:07:13.0287 3736 pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

    12:07:13.0303 3736 pcmcia - ok

    12:07:13.0318 3736 pcw C:\Windows\system32\drivers\pcw.sys

    12:07:13.0334 3736 pcw - ok

    12:07:13.0350 3736 PEAUTH C:\Windows\system32\drivers\peauth.sys

    12:07:13.0396 3736 PEAUTH - ok

    12:07:13.0474 3736 pla C:\Windows\system32\pla.dll

    12:07:13.0521 3736 pla - ok

    12:07:13.0568 3736 PlugPlay C:\Windows\system32\umpnpmgr.dll

    12:07:13.0584 3736 PlugPlay - ok

    12:07:13.0615 3736 PNRPAutoReg C:\Windows\system32\pnrpauto.dll

    12:07:13.0615 3736 PNRPAutoReg - ok

    12:07:13.0630 3736 PNRPsvc C:\Windows\system32\pnrpsvc.dll

    12:07:13.0646 3736 PNRPsvc - ok

    12:07:13.0662 3736 PolicyAgent C:\Windows\System32\ipsecsvc.dll

    12:07:13.0708 3736 PolicyAgent - ok

    12:07:13.0740 3736 Power C:\Windows\system32\umpo.dll

    12:07:13.0771 3736 Power - ok

    12:07:13.0802 3736 PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

    12:07:13.0833 3736 PptpMiniport - ok

    12:07:13.0849 3736 Processor C:\Windows\system32\DRIVERS\processr.sys

    12:07:13.0880 3736 Processor - ok

    12:07:13.0911 3736 ProfSvc C:\Windows\system32\profsvc.dll

    12:07:13.0942 3736 ProfSvc - ok

    12:07:13.0958 3736 ProtectedStorage C:\Windows\system32\lsass.exe

    12:07:13.0974 3736 ProtectedStorage - ok

    12:07:14.0005 3736 Psched C:\Windows\system32\DRIVERS\pacer.sys

    12:07:14.0036 3736 Psched - ok

    12:07:14.0067 3736 ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

    12:07:14.0098 3736 ql2300 - ok

    12:07:14.0114 3736 ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

    12:07:14.0130 3736 ql40xx - ok

    12:07:14.0161 3736 QWAVE C:\Windows\system32\qwave.dll

    12:07:14.0192 3736 QWAVE - ok

    12:07:14.0223 3736 QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

    12:07:14.0254 3736 QWAVEdrv - ok

    12:07:14.0286 3736 RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

    12:07:14.0317 3736 RasAcd - ok

    12:07:14.0364 3736 RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

    12:07:14.0395 3736 RasAgileVpn - ok

    12:07:14.0426 3736 RasAuto C:\Windows\System32\rasauto.dll

    12:07:14.0442 3736 RasAuto - ok

    12:07:14.0457 3736 Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

    12:07:14.0488 3736 Rasl2tp - ok

    12:07:14.0535 3736 RasMan C:\Windows\System32\rasmans.dll

    12:07:14.0566 3736 RasMan - ok

    12:07:14.0566 3736 RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

    12:07:14.0598 3736 RasPppoe - ok

    12:07:14.0613 3736 RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

    12:07:14.0629 3736 RasSstp - ok

    12:07:14.0644 3736 rdbss C:\Windows\system32\DRIVERS\rdbss.sys

    12:07:14.0676 3736 rdbss - ok

    12:07:14.0707 3736 rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

    12:07:14.0738 3736 rdpbus - ok

    12:07:14.0769 3736 RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

    12:07:14.0800 3736 RDPCDD - ok

    12:07:14.0832 3736 RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

    12:07:14.0863 3736 RDPENCDD - ok

    12:07:14.0863 3736 RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

    12:07:14.0910 3736 RDPREFMP - ok

    12:07:14.0941 3736 RDPWD C:\Windows\system32\drivers\RDPWD.sys

    12:07:14.0972 3736 RDPWD - ok

    12:07:15.0003 3736 rdyboost C:\Windows\system32\drivers\rdyboost.sys

    12:07:15.0003 3736 rdyboost - ok

    12:07:15.0050 3736 RemoteAccess C:\Windows\System32\mprdim.dll

    12:07:15.0097 3736 RemoteAccess - ok

    12:07:15.0128 3736 RemoteRegistry C:\Windows\system32\regsvc.dll

    12:07:15.0144 3736 RemoteRegistry - ok

    12:07:15.0159 3736 RpcEptMapper C:\Windows\System32\RpcEpMap.dll

    12:07:15.0206 3736 RpcEptMapper - ok

    12:07:15.0237 3736 RpcLocator C:\Windows\system32\locator.exe

    12:07:15.0268 3736 RpcLocator - ok

    12:07:15.0300 3736 RpcSs C:\Windows\system32\rpcss.dll

    12:07:15.0331 3736 RpcSs - ok

    12:07:15.0378 3736 RsFx0151 C:\Windows\system32\DRIVERS\RsFx0151.sys

    12:07:15.0393 3736 RsFx0151 - ok

    12:07:15.0440 3736 rspndr C:\Windows\system32\DRIVERS\rspndr.sys

    12:07:15.0487 3736 rspndr - ok

    12:07:15.0534 3736 RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys

    12:07:15.0534 3736 RTL8167 - ok

    12:07:15.0549 3736 SamSs C:\Windows\system32\lsass.exe

    12:07:15.0565 3736 SamSs - ok

    12:07:15.0612 3736 sbp2port C:\Windows\system32\drivers\sbp2port.sys

    12:07:15.0627 3736 sbp2port - ok

    12:07:15.0643 3736 SCardSvr C:\Windows\System32\SCardSvr.dll

    12:07:15.0674 3736 SCardSvr - ok

    12:07:15.0705 3736 scfilter C:\Windows\system32\DRIVERS\scfilter.sys

    12:07:15.0721 3736 scfilter - ok

    12:07:15.0752 3736 Schedule C:\Windows\system32\schedsvc.dll

    12:07:15.0783 3736 Schedule - ok

    12:07:15.0814 3736 SCPolicySvc C:\Windows\System32\certprop.dll

    12:07:15.0830 3736 SCPolicySvc - ok

    12:07:15.0861 3736 SDRSVC C:\Windows\System32\SDRSVC.dll

    12:07:15.0877 3736 SDRSVC - ok

    12:07:15.0892 3736 secdrv C:\Windows\system32\drivers\secdrv.sys

    12:07:15.0924 3736 secdrv - ok

    12:07:15.0939 3736 seclogon C:\Windows\system32\seclogon.dll

    12:07:15.0986 3736 seclogon - ok

    12:07:16.0033 3736 SENS C:\Windows\system32\sens.dll

    12:07:16.0064 3736 SENS - ok

    12:07:16.0080 3736 SensrSvc C:\Windows\system32\sensrsvc.dll

    12:07:16.0080 3736 SensrSvc - ok

    12:07:16.0126 3736 Serenum C:\Windows\system32\DRIVERS\serenum.sys

    12:07:16.0126 3736 Serenum - ok

    12:07:16.0142 3736 Serial C:\Windows\system32\DRIVERS\serial.sys

    12:07:16.0158 3736 Serial - ok

    12:07:16.0173 3736 sermouse C:\Windows\system32\DRIVERS\sermouse.sys

    12:07:16.0220 3736 sermouse - ok

    12:07:16.0251 3736 SessionEnv C:\Windows\system32\sessenv.dll

    12:07:16.0298 3736 SessionEnv - ok

    12:07:16.0329 3736 sffdisk C:\Windows\system32\drivers\sffdisk.sys

    12:07:16.0360 3736 sffdisk - ok

    12:07:16.0376 3736 sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

    12:07:16.0392 3736 sffp_mmc - ok

    12:07:16.0407 3736 sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

    12:07:16.0438 3736 sffp_sd - ok

    12:07:16.0454 3736 sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

    12:07:16.0485 3736 sfloppy - ok

    12:07:16.0532 3736 SharedAccess C:\Windows\System32\ipnathlp.dll

    12:07:16.0548 3736 SharedAccess - ok

    12:07:16.0579 3736 ShellHWDetection C:\Windows\System32\shsvcs.dll

    12:07:16.0594 3736 ShellHWDetection - ok

    12:07:16.0626 3736 sisagp C:\Windows\system32\drivers\sisagp.sys

    12:07:16.0626 3736 sisagp - ok

    12:07:16.0641 3736 SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

    12:07:16.0657 3736 SiSRaid2 - ok

    12:07:16.0672 3736 SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

    12:07:16.0688 3736 SiSRaid4 - ok

    12:07:16.0719 3736 Smb C:\Windows\system32\DRIVERS\smb.sys

    12:07:16.0750 3736 Smb - ok

    12:07:16.0797 3736 SNMPTRAP C:\Windows\System32\snmptrap.exe

    12:07:16.0813 3736 SNMPTRAP - ok

    12:07:16.0828 3736 spldr C:\Windows\system32\drivers\spldr.sys

    12:07:16.0844 3736 spldr - ok

    12:07:16.0875 3736 Spooler C:\Windows\System32\spoolsv.exe

    12:07:16.0906 3736 Spooler - ok

    12:07:17.0062 3736 sppsvc C:\Windows\system32\sppsvc.exe

    12:07:17.0109 3736 sppsvc - ok

    12:07:17.0156 3736 sppuinotify C:\Windows\system32\sppuinotify.dll

    12:07:17.0281 3736 sppuinotify - ok

    12:07:17.0312 3736 SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE

    12:07:17.0328 3736 SQLAgent$SQLEXPRESS - ok

    12:07:17.0374 3736 SQLBrowser c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    12:07:17.0390 3736 SQLBrowser - ok

    12:07:17.0421 3736 SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    12:07:17.0421 3736 SQLWriter - ok

    12:07:17.0452 3736 srv C:\Windows\system32\DRIVERS\srv.sys

    12:07:17.0468 3736 srv - ok

    12:07:17.0484 3736 srv2 C:\Windows\system32\DRIVERS\srv2.sys

    12:07:17.0499 3736 srv2 - ok

    12:07:17.0515 3736 srvnet C:\Windows\system32\DRIVERS\srvnet.sys

    12:07:17.0546 3736 srvnet - ok

    12:07:17.0577 3736 SSDPSRV C:\Windows\System32\ssdpsrv.dll

    12:07:17.0624 3736 SSDPSRV - ok

    12:07:17.0640 3736 SstpSvc C:\Windows\system32\sstpsvc.dll

    12:07:17.0655 3736 SstpSvc - ok

    12:07:17.0671 3736 stexstor C:\Windows\system32\DRIVERS\stexstor.sys

    12:07:17.0686 3736 stexstor - ok

    12:07:17.0733 3736 StiSvc C:\Windows\System32\wiaservc.dll

    12:07:17.0749 3736 StiSvc - ok

    12:07:17.0780 3736 swenum C:\Windows\system32\drivers\swenum.sys

    12:07:17.0796 3736 swenum - ok

    12:07:17.0811 3736 swprv C:\Windows\System32\swprv.dll

    12:07:17.0842 3736 swprv - ok

    12:07:17.0889 3736 SysMain C:\Windows\system32\sysmain.dll

    12:07:17.0905 3736 SysMain - ok

    12:07:17.0920 3736 TabletInputService C:\Windows\System32\TabSvc.dll

    12:07:17.0952 3736 TabletInputService - ok

    12:07:17.0998 3736 TapiSrv C:\Windows\System32\tapisrv.dll

    12:07:18.0014 3736 TapiSrv - ok

    12:07:18.0030 3736 TBS C:\Windows\System32\tbssvc.dll

    12:07:18.0076 3736 TBS - ok

    12:07:18.0123 3736 Tcpip C:\Windows\system32\drivers\tcpip.sys

    12:07:18.0154 3736 Tcpip - ok

    12:07:18.0186 3736 TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

    12:07:18.0217 3736 TCPIP6 - ok

    12:07:18.0232 3736 tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

    12:07:18.0264 3736 tcpipreg - ok

    12:07:18.0295 3736 TDPIPE C:\Windows\system32\drivers\tdpipe.sys

    12:07:18.0326 3736 TDPIPE - ok

    12:07:18.0342 3736 TDTCP C:\Windows\system32\drivers\tdtcp.sys

    12:07:18.0357 3736 TDTCP - ok

    12:07:18.0388 3736 tdx C:\Windows\system32\DRIVERS\tdx.sys

    12:07:18.0420 3736 tdx - ok

    12:07:18.0435 3736 TermDD C:\Windows\system32\drivers\termdd.sys

    12:07:18.0451 3736 TermDD - ok

    12:07:18.0482 3736 TermService C:\Windows\System32\termsrv.dll

    12:07:18.0544 3736 TermService - ok

    12:07:18.0560 3736 Themes C:\Windows\system32\themeservice.dll

    12:07:18.0576 3736 Themes - ok

    12:07:18.0591 3736 THREADORDER C:\Windows\system32\mmcss.dll

    12:07:18.0607 3736 THREADORDER - ok

    12:07:18.0654 3736 TrkWks C:\Windows\System32\trkwks.dll

    12:07:18.0685 3736 TrkWks - ok

    12:07:18.0732 3736 TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

  • Annemieke

    deel 2 logje TDSSKiller (paste niet in 1 bericht)

    12:07:18.0778 3736 TrustedInstaller - ok

    12:07:18.0794 3736 tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

    12:07:18.0810 3736 tssecsrv - ok

    12:07:18.0856 3736 TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

    12:07:18.0872 3736 TsUsbFlt - ok

    12:07:18.0919 3736 tunnel C:\Windows\system32\DRIVERS\tunnel.sys

    12:07:18.0934 3736 tunnel - ok

    12:07:18.0966 3736 uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

    12:07:18.0981 3736 uagp35 - ok

    12:07:18.0997 3736 udfs C:\Windows\system32\DRIVERS\udfs.sys

    12:07:19.0028 3736 udfs - ok

    12:07:19.0044 3736 UI0Detect C:\Windows\system32\UI0Detect.exe

    12:07:19.0075 3736 UI0Detect - ok

    12:07:19.0090 3736 uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

    12:07:19.0106 3736 uliagpkx - ok

    12:07:19.0137 3736 umbus C:\Windows\system32\drivers\umbus.sys

    12:07:19.0153 3736 umbus - ok

    12:07:19.0168 3736 UmPass C:\Windows\system32\DRIVERS\umpass.sys

    12:07:19.0215 3736 UmPass - ok

    12:07:19.0246 3736 upnphost C:\Windows\System32\upnphost.dll

    12:07:19.0293 3736 upnphost - ok

    12:07:19.0340 3736 USBAAPL C:\Windows\system32\Drivers\usbaapl.sys

    12:07:19.0371 3736 USBAAPL - ok

    12:07:19.0402 3736 usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

    12:07:19.0418 3736 usbccgp - ok

    12:07:19.0434 3736 usbcir C:\Windows\system32\drivers\usbcir.sys

    12:07:19.0449 3736 usbcir - ok

    12:07:19.0465 3736 usbehci C:\Windows\system32\DRIVERS\usbehci.sys

    12:07:19.0480 3736 usbehci - ok

    12:07:19.0496 3736 usbhub C:\Windows\system32\DRIVERS\usbhub.sys

    12:07:19.0527 3736 usbhub - ok

    12:07:19.0558 3736 usbohci C:\Windows\system32\drivers\usbohci.sys

    12:07:19.0590 3736 usbohci - ok

    12:07:19.0605 3736 usbprint C:\Windows\system32\DRIVERS\usbprint.sys

    12:07:19.0621 3736 usbprint - ok

    12:07:19.0652 3736 usbscan C:\Windows\system32\DRIVERS\usbscan.sys

    12:07:19.0668 3736 usbscan - ok

    12:07:19.0683 3736 USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

    12:07:19.0714 3736 USBSTOR - ok

    12:07:19.0730 3736 usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys

    12:07:19.0730 3736 usbuhci - ok

    12:07:19.0777 3736 usb_rndisx C:\Windows\system32\drivers\usb8023x.sys

    12:07:19.0777 3736 usb_rndisx - ok

    12:07:19.0792 3736 UxSms C:\Windows\System32\uxsms.dll

    12:07:19.0839 3736 UxSms - ok

    12:07:19.0839 3736 VaultSvc C:\Windows\system32\lsass.exe

    12:07:19.0855 3736 VaultSvc - ok

    12:07:19.0870 3736 vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

    12:07:19.0886 3736 vdrvroot - ok

    12:07:19.0917 3736 vds C:\Windows\System32\vds.exe

    12:07:19.0948 3736 vds - ok

    12:07:19.0995 3736 vga C:\Windows\system32\DRIVERS\vgapnp.sys

    12:07:20.0026 3736 vga - ok

    12:07:20.0042 3736 VgaSave C:\Windows\System32\drivers\vga.sys

    12:07:20.0073 3736 VgaSave - ok

    12:07:20.0104 3736 vhdmp C:\Windows\system32\drivers\vhdmp.sys

    12:07:20.0120 3736 vhdmp - ok

    12:07:20.0167 3736 viaagp C:\Windows\system32\drivers\viaagp.sys

    12:07:20.0167 3736 viaagp - ok

    12:07:20.0198 3736 ViaC7 C:\Windows\system32\DRIVERS\viac7.sys

    12:07:20.0229 3736 ViaC7 - ok

    12:07:20.0245 3736 viaide C:\Windows\system32\drivers\viaide.sys

    12:07:20.0260 3736 viaide - ok

    12:07:20.0276 3736 volmgr C:\Windows\system32\drivers\volmgr.sys

    12:07:20.0292 3736 volmgr - ok

    12:07:20.0292 3736 volmgrx C:\Windows\system32\drivers\volmgrx.sys

    12:07:20.0307 3736 volmgrx - ok

    12:07:20.0338 3736 volsnap C:\Windows\system32\drivers\volsnap.sys

    12:07:20.0354 3736 volsnap - ok

    12:07:20.0385 3736 vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

    12:07:20.0401 3736 vsmraid - ok

    12:07:20.0448 3736 VSS C:\Windows\system32\vssvc.exe

    12:07:20.0479 3736 VSS - ok

    12:07:20.0494 3736 vwifibus C:\Windows\System32\drivers\vwifibus.sys

    12:07:20.0510 3736 vwifibus - ok

    12:07:20.0526 3736 W32Time C:\Windows\system32\w32time.dll

    12:07:20.0572 3736 W32Time - ok

    12:07:20.0604 3736 WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

    12:07:20.0604 3736 WacomPen - ok

    12:07:20.0650 3736 WANARP C:\Windows\system32\DRIVERS\wanarp.sys

    12:07:20.0666 3736 WANARP - ok

    12:07:20.0666 3736 Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

    12:07:20.0697 3736 Wanarpv6 - ok

    12:07:20.0775 3736 WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

    12:07:20.0806 3736 WatAdminSvc - ok

    12:07:20.0838 3736 wbengine C:\Windows\system32\wbengine.exe

    12:07:20.0869 3736 wbengine - ok

    12:07:20.0884 3736 WbioSrvc C:\Windows\System32\wbiosrvc.dll

    12:07:20.0916 3736 WbioSrvc - ok

    12:07:20.0931 3736 wcncsvc C:\Windows\System32\wcncsvc.dll

    12:07:20.0978 3736 wcncsvc - ok

    12:07:20.0994 3736 WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

    12:07:21.0025 3736 WcsPlugInService - ok

    12:07:21.0040 3736 Wd C:\Windows\system32\DRIVERS\wd.sys

    12:07:21.0056 3736 Wd - ok

    12:07:21.0087 3736 Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

    12:07:21.0118 3736 Wdf01000 - ok

    12:07:21.0118 3736 WdiServiceHost C:\Windows\system32\wdi.dll

    12:07:21.0134 3736 WdiServiceHost - ok

    12:07:21.0150 3736 WdiSystemHost C:\Windows\system32\wdi.dll

    12:07:21.0165 3736 WdiSystemHost - ok

    12:07:21.0181 3736 WebClient C:\Windows\System32\webclnt.dll

    12:07:21.0228 3736 WebClient - ok

    12:07:21.0259 3736 Wecsvc C:\Windows\system32\wecsvc.dll

    12:07:21.0290 3736 Wecsvc - ok

    12:07:21.0321 3736 wercplsupport C:\Windows\System32\wercplsupport.dll

    12:07:21.0352 3736 wercplsupport - ok

    12:07:21.0384 3736 WerSvc C:\Windows\System32\WerSvc.dll

    12:07:21.0415 3736 WerSvc - ok

    12:07:21.0446 3736 WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

    12:07:21.0477 3736 WfpLwf - ok

    12:07:21.0508 3736 WIMMount C:\Windows\system32\drivers\wimmount.sys

    12:07:21.0508 3736 WIMMount - ok

    12:07:21.0524 3736 WinHttpAutoProxySvc - ok

    12:07:21.0571 3736 Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

    12:07:21.0586 3736 Winmgmt - ok

    12:07:21.0618 3736 WinRM C:\Windows\system32\WsmSvc.dll

    12:07:21.0649 3736 WinRM - ok

    12:07:21.0711 3736 WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys

    12:07:21.0742 3736 WinUsb - ok

    12:07:21.0789 3736 Wlansvc C:\Windows\System32\wlansvc.dll

    12:07:21.0836 3736 Wlansvc - ok

    12:07:21.0914 3736 wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

    12:07:21.0930 3736 wlcrasvc - ok

    12:07:22.0023 3736 wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    12:07:22.0054 3736 wlidsvc - ok

    12:07:22.0070 3736 WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

    12:07:22.0101 3736 WmiAcpi - ok

    12:07:22.0132 3736 wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

    12:07:22.0148 3736 wmiApSrv - ok

    12:07:22.0226 3736 WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe

    12:07:22.0273 3736 WMPNetworkSvc - ok

    12:07:22.0366 3736 WMZuneComm C:\Program Files\Zune\WMZuneComm.exe

    12:07:22.0382 3736 WMZuneComm - ok

    12:07:22.0398 3736 WPCSvc C:\Windows\System32\wpcsvc.dll

    12:07:22.0444 3736 WPCSvc - ok

    12:07:22.0476 3736 WPDBusEnum C:\Windows\system32\wpdbusenum.dll

    12:07:22.0507 3736 WPDBusEnum - ok

    12:07:22.0522 3736 ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

    12:07:22.0569 3736 ws2ifsl - ok

    12:07:22.0585 3736 wscsvc C:\Windows\system32\wscsvc.dll

    12:07:22.0616 3736 wscsvc - ok

    12:07:22.0616 3736 WSearch - ok

    12:07:22.0663 3736 wuauserv C:\Windows\system32\wuaueng.dll

    12:07:22.0694 3736 wuauserv - ok

    12:07:22.0725 3736 WudfPf C:\Windows\system32\drivers\WudfPf.sys

    12:07:22.0741 3736 WudfPf - ok

    12:07:22.0772 3736 WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

    12:07:22.0788 3736 WUDFRd - ok

    12:07:22.0834 3736 wudfsvc C:\Windows\System32\WUDFSvc.dll

    12:07:22.0850 3736 wudfsvc - ok

    12:07:22.0881 3736 WwanSvc C:\Windows\System32\wwansvc.dll

    12:07:22.0897 3736 WwanSvc - ok

    12:07:23.0006 3736 ZuneNetworkSvc C:\Program Files\Zune\ZuneNss.exe

    12:07:23.0100 3736 ZuneNetworkSvc - ok

    12:07:23.0146 3736 ZuneWlanCfgSvc C:\Program Files\Zune\ZuneWlanCfgSvc.exe

    12:07:23.0162 3736 ZuneWlanCfgSvc - ok

    12:07:23.0209 3736 ================ Scan global ===============================

    12:07:23.0240 3736 C:\Windows\system32\basesrv.dll

    12:07:23.0256 3736 C:\Windows\system32\winsrv.dll

    12:07:23.0271 3736 C:\Windows\system32\winsrv.dll

    12:07:23.0287 3736 C:\Windows\system32\sxssrv.dll

    12:07:23.0302 3736 C:\Windows\system32\services.exe

    12:07:23.0318 3736 - ok

    12:07:23.0318 3736 ================ Scan MBR ==================================

    12:07:23.0334 3736 \Device\Harddisk0\DR0

    12:07:23.0630 3736 \Device\Harddisk0\DR0 ( TDSS File System ) - warning

    12:07:23.0630 3736 \Device\Harddisk0\DR0 - detected TDSS File System (1)

    12:07:23.0630 3736 ================ Scan VBR ==================================

    12:07:23.0630 3736 \Device\Harddisk0\DR0\Partition1

    12:07:23.0630 3736 \Device\Harddisk0\DR0\Partition1 - ok

    12:07:23.0646 3736 \Device\Harddisk0\DR0\Partition2

    12:07:23.0646 3736 \Device\Harddisk0\DR0\Partition2 - ok

    12:07:23.0646 3736 ============================================================

    12:07:23.0646 3736 Scan finished

    12:07:23.0646 3736 ============================================================

    12:07:23.0661 2844 Detected object count: 1

    12:07:23.0661 2844 Actual detected object count: 1

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip

  • Ben

    Hallo,

    Voer op deze computer nogmaals TDSSKiller uit en kies bij de onderstaande items voor DELETE, plaats hierna wederom het logje van TDSSKIller.

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip

    Gr.Ben

  • Annemieke

    12:05:50.0576 3948 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35

    12:05:50.0794 3948 ============================================================

    12:05:50.0794 3948 Current date / time: 2013/02/11 12:05:50.0794

    12:05:50.0794 3948 SystemInfo:

    12:05:50.0794 3948

    12:05:50.0794 3948 OS Version: 6.1.7601 ServicePack: 1.0

    12:05:50.0794 3948 Product type: Workstation

    12:05:50.0794 3948 ComputerName: GEBRUIKER-WDBPC

    12:05:50.0794 3948 UserName: Gebruiker

    12:05:50.0794 3948 Windows directory: C:\Windows

    12:05:50.0794 3948 System windows directory: C:\Windows

    12:05:50.0794 3948 Processor architecture: Intel x86

    12:05:50.0794 3948 Number of processors: 2

    12:05:50.0794 3948 Page size: 0x1000

    12:05:50.0794 3948 Boot type: Normal boot

    12:05:50.0794 3948 ============================================================

    12:05:51.0777 3948 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000050

    12:05:51.0808 3948 ============================================================

    12:05:51.0808 3948 \Device\Harddisk0\DR0:

    12:05:51.0808 3948 MBR partitions:

    12:05:51.0808 3948 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1388800, BlocksNum 0xFA000

    12:05:51.0808 3948 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1482800, BlocksNum 0x7327CDB0

    12:05:51.0808 3948 ============================================================

    12:05:51.0824 3948 C: <-> \Device\Harddisk0\DR0\Partition2

    12:05:51.0824 3948 ============================================================

    12:05:51.0824 3948 Initialize success

    12:05:51.0824 3948 ============================================================

    12:06:57.0500 3736 ============================================================

    12:06:57.0500 3736 Scan started

    12:06:57.0500 3736 Mode: Manual; SigCheck; TDLFS;

    12:06:57.0500 3736 ============================================================

    12:06:57.0781 3736 ================ Scan services =============================

    12:06:57.0937 3736 1394ohci C:\Windows\system32\drivers\1394ohci.sys

    12:06:58.0015 3736 1394ohci - ok

    12:06:58.0108 3736 ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    12:06:58.0124 3736 ABBYY.Licensing.FineReader.Sprint.9.0 - ok

    12:06:58.0155 3736 ACPI C:\Windows\system32\drivers\ACPI.sys

    12:06:58.0171 3736 ACPI - ok

    12:06:58.0202 3736 AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

    12:06:58.0249 3736 AcpiPmi - ok

    12:06:58.0296 3736 AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    12:06:58.0311 3736 AdobeARMservice - ok

    12:06:58.0405 3736 AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    12:06:58.0420 3736 AdobeFlashPlayerUpdateSvc - ok

    12:06:58.0483 3736 adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

    12:06:58.0498 3736 adp94xx - ok

    12:06:58.0545 3736 adpahci C:\Windows\system32\DRIVERS\adpahci.sys

    12:06:58.0561 3736 adpahci - ok

    12:06:58.0576 3736 adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

    12:06:58.0592 3736 adpu320 - ok

    12:06:58.0608 3736 AeLookupSvc C:\Windows\System32\aelupsvc.dll

    12:06:58.0654 3736 AeLookupSvc - ok

    12:06:58.0686 3736 AFD C:\Windows\system32\drivers\afd.sys

    12:06:58.0748 3736 AFD - ok

    12:06:58.0779 3736 agp440 C:\Windows\system32\drivers\agp440.sys

    12:06:58.0779 3736 agp440 - ok

    12:06:58.0810 3736 aic78xx C:\Windows\system32\DRIVERS\djsvs.sys

    12:06:58.0842 3736 aic78xx - ok

    12:06:58.0842 3736 ALG C:\Windows\System32\alg.exe

    12:06:58.0888 3736 ALG - ok

    12:06:58.0904 3736 aliide C:\Windows\system32\drivers\aliide.sys

    12:06:58.0920 3736 aliide - ok

    12:06:58.0951 3736 AMD External Events Utility C:\Windows\system32\atiesrxx.exe

    12:06:58.0982 3736 AMD External Events Utility - ok

    12:06:59.0013 3736 amdagp C:\Windows\system32\drivers\amdagp.sys

    12:06:59.0029 3736 amdagp - ok

    12:06:59.0044 3736 amdide C:\Windows\system32\drivers\amdide.sys

    12:06:59.0060 3736 amdide - ok

    12:06:59.0060 3736 AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

    12:06:59.0076 3736 AmdK8 - ok

    12:06:59.0200 3736 amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys

    12:06:59.0294 3736 amdkmdag - ok

    12:06:59.0310 3736 amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys

    12:06:59.0341 3736 amdkmdap - ok

    12:06:59.0356 3736 AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

    12:06:59.0403 3736 AmdPPM - ok

    12:06:59.0434 3736 amdsata C:\Windows\system32\drivers\amdsata.sys

    12:06:59.0434 3736 amdsata - ok

    12:06:59.0450 3736 amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

    12:06:59.0466 3736 amdsbs - ok

    12:06:59.0481 3736 amdxata C:\Windows\system32\drivers\amdxata.sys

    12:06:59.0497 3736 amdxata - ok

    12:06:59.0544 3736 AppID C:\Windows\system32\drivers\appid.sys

    12:06:59.0559 3736 AppID - ok

    12:06:59.0575 3736 AppIDSvc C:\Windows\System32\appidsvc.dll

    12:06:59.0606 3736 AppIDSvc - ok

    12:06:59.0668 3736 Appinfo C:\Windows\System32\appinfo.dll

    12:06:59.0700 3736 Appinfo - ok

    12:06:59.0778 3736 Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    12:06:59.0778 3736 Apple Mobile Device - ok

    12:06:59.0840 3736 arc C:\Windows\system32\DRIVERS\arc.sys

    12:06:59.0856 3736 arc - ok

    12:06:59.0871 3736 arcsas C:\Windows\system32\DRIVERS\arcsas.sys

    12:06:59.0887 3736 arcsas - ok

    12:06:59.0965 3736 aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe

    12:06:59.0965 3736 aspnet_state - ok

    12:07:00.0027 3736 aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys

    12:07:00.0058 3736 aswFsBlk - ok

    12:07:00.0136 3736 aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys

    12:07:00.0136 3736 aswMonFlt - ok

    12:07:00.0183 3736 aswRdr C:\Windows\System32\Drivers\aswrdr2.sys

    12:07:00.0199 3736 aswRdr - ok

    12:07:00.0246 3736 aswSnx C:\Windows\system32\drivers\aswSnx.sys

    12:07:00.0277 3736 aswSnx - ok

    12:07:00.0324 3736 aswSP C:\Windows\system32\drivers\aswSP.sys

    12:07:00.0339 3736 aswSP - ok

    12:07:00.0370 3736 aswTdi C:\Windows\system32\drivers\aswTdi.sys

    12:07:00.0370 3736 aswTdi - ok

    12:07:00.0386 3736 AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

    12:07:00.0433 3736 AsyncMac - ok

    12:07:00.0464 3736 atapi C:\Windows\system32\drivers\atapi.sys

    12:07:00.0480 3736 atapi - ok

    12:07:00.0542 3736 AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys

    12:07:00.0558 3736 AtiHdmiService - ok

    12:07:00.0589 3736 AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

    12:07:00.0636 3736 AudioEndpointBuilder - ok

    12:07:00.0651 3736 Audiosrv C:\Windows\System32\Audiosrv.dll

    12:07:00.0667 3736 Audiosrv - ok

    12:07:00.0745 3736 avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    12:07:00.0760 3736 avast! Antivirus - ok

    12:07:00.0792 3736 AxInstSV C:\Windows\System32\AxInstSV.dll

    12:07:00.0870 3736 AxInstSV - ok

    12:07:00.0901 3736 b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys

    12:07:00.0948 3736 b06bdrv - ok

    12:07:00.0963 3736 b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys

    12:07:00.0994 3736 b57nd60x - ok

    12:07:01.0041 3736 BDESVC C:\Windows\System32\bdesvc.dll

    12:07:01.0072 3736 BDESVC - ok

    12:07:01.0119 3736 Beep C:\Windows\system32\drivers\Beep.sys

    12:07:01.0135 3736 Beep - ok

    12:07:01.0182 3736 BFE C:\Windows\System32\bfe.dll

    12:07:01.0228 3736 BFE - ok

    12:07:01.0260 3736 BITS C:\Windows\system32\qmgr.dll

    12:07:01.0306 3736 BITS - ok

    12:07:01.0338 3736 blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

    12:07:01.0353 3736 blbdrive - ok

    12:07:01.0431 3736 Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

    12:07:01.0447 3736 Bonjour Service - ok

    12:07:01.0462 3736 bowser C:\Windows\system32\DRIVERS\bowser.sys

    12:07:01.0478 3736 bowser - ok

    12:07:01.0494 3736 BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

    12:07:01.0540 3736 BrFiltLo - ok

    12:07:01.0556 3736 BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

    12:07:01.0603 3736 BrFiltUp - ok

    12:07:01.0634 3736 Browser C:\Windows\System32\browser.dll

    12:07:01.0634 3736 Browser - ok

    12:07:01.0665 3736 Brserid C:\Windows\System32\Drivers\Brserid.sys

    12:07:01.0681 3736 Brserid - ok

    12:07:01.0696 3736 BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

    12:07:01.0712 3736 BrSerWdm - ok

    12:07:01.0728 3736 BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

    12:07:01.0759 3736 BrUsbMdm - ok

    12:07:01.0774 3736 BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

    12:07:01.0806 3736 BrUsbSer - ok

    12:07:01.0837 3736 BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

    12:07:01.0884 3736 BTHMODEM - ok

    12:07:01.0915 3736 bthserv C:\Windows\system32\bthserv.dll

    12:07:01.0946 3736 bthserv - ok

    12:07:02.0102 3736 catchme - ok

    12:07:02.0133 3736 cdfs C:\Windows\system32\DRIVERS\cdfs.sys

    12:07:02.0180 3736 cdfs - ok

    12:07:02.0242 3736 cdrom C:\Windows\system32\drivers\cdrom.sys

    12:07:02.0274 3736 cdrom - ok

    12:07:02.0336 3736 CertPropSvc C:\Windows\System32\certprop.dll

    12:07:02.0367 3736 CertPropSvc - ok

    12:07:02.0383 3736 circlass C:\Windows\system32\DRIVERS\circlass.sys

    12:07:02.0398 3736 circlass - ok

    12:07:02.0414 3736 CLFS C:\Windows\system32\CLFS.sys

    12:07:02.0430 3736 CLFS - ok

    12:07:02.0492 3736 clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    12:07:02.0492 3736 clr_optimization_v2.0.50727_32 - ok

    12:07:02.0586 3736 clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    12:07:02.0601 3736 clr_optimization_v4.0.30319_32 - ok

    12:07:02.0617 3736 CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

    12:07:02.0648 3736 CmBatt - ok

    12:07:02.0695 3736 cmdide C:\Windows\system32\drivers\cmdide.sys

    12:07:02.0695 3736 cmdide - ok

    12:07:02.0726 3736 CNG C:\Windows\system32\Drivers\cng.sys

    12:07:02.0742 3736 CNG - ok

    12:07:02.0773 3736 Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

    12:07:02.0773 3736 Compbatt - ok

    12:07:02.0820 3736 CompositeBus C:\Windows\system32\drivers\CompositeBus.sys

    12:07:02.0851 3736 CompositeBus - ok

    12:07:02.0866 3736 COMSysApp - ok

    12:07:02.0882 3736 crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

    12:07:02.0898 3736 crcdisk - ok

    12:07:02.0944 3736 CryptSvc C:\Windows\system32\cryptsvc.dll

    12:07:02.0960 3736 CryptSvc - ok

    12:07:02.0976 3736 DcomLaunch C:\Windows\system32\rpcss.dll

    12:07:03.0022 3736 DcomLaunch - ok

    12:07:03.0054 3736 defragsvc C:\Windows\System32\defragsvc.dll

    12:07:03.0085 3736 defragsvc - ok

    12:07:03.0116 3736 DfsC C:\Windows\system32\Drivers\dfsc.sys

    12:07:03.0163 3736 DfsC - ok

    12:07:03.0194 3736 Dhcp C:\Windows\system32\dhcpcore.dll

    12:07:03.0225 3736 Dhcp - ok

    12:07:03.0241 3736 discache C:\Windows\system32\drivers\discache.sys

    12:07:03.0272 3736 discache - ok

    12:07:03.0319 3736 Disk C:\Windows\system32\DRIVERS\disk.sys

    12:07:03.0334 3736 Disk - ok

    12:07:03.0366 3736 Dnscache C:\Windows\System32\dnsrslvr.dll

    12:07:03.0397 3736 Dnscache - ok

    12:07:03.0428 3736 dot3svc C:\Windows\System32\dot3svc.dll

    12:07:03.0475 3736 dot3svc - ok

    12:07:03.0522 3736 DPS C:\Windows\system32\dps.dll

    12:07:03.0553 3736 DPS - ok

    12:07:03.0584 3736 drmkaud C:\Windows\system32\drivers\drmkaud.sys

    12:07:03.0600 3736 drmkaud - ok

    12:07:03.0631 3736 DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

    12:07:03.0646 3736 DXGKrnl - ok

    12:07:03.0678 3736 E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys

    12:07:03.0709 3736 E1G60 - ok

    12:07:03.0740 3736 EapHost C:\Windows\System32\eapsvc.dll

    12:07:03.0771 3736 EapHost - ok

    12:07:03.0834 3736 ebdrv C:\Windows\system32\DRIVERS\evbdx.sys

    12:07:03.0896 3736 ebdrv - ok

    12:07:03.0927 3736 EFS C:\Windows\System32\lsass.exe

    12:07:03.0958 3736 EFS - ok

    12:07:04.0005 3736 ehRecvr C:\Windows\ehome\ehRecvr.exe

    12:07:04.0021 3736 ehRecvr - ok

    12:07:04.0052 3736 ehSched C:\Windows\ehome\ehsched.exe

    12:07:04.0083 3736 ehSched - ok

    12:07:04.0114 3736 elxstor C:\Windows\system32\DRIVERS\elxstor.sys

    12:07:04.0130 3736 elxstor - ok

    12:07:04.0208 3736 EPSON_EB_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE

    12:07:04.0255 3736 EPSON_EB_RPCV4_04 - ok

    12:07:04.0270 3736 EPSON_PM_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE

    12:07:04.0302 3736 EPSON_PM_RPCV4_04 - ok

    12:07:04.0333 3736 ErrDev C:\Windows\system32\drivers\errdev.sys

    12:07:04.0364 3736 ErrDev - ok

    12:07:04.0411 3736 EventSystem C:\Windows\system32\es.dll

    12:07:04.0442 3736 EventSystem - ok

    12:07:04.0458 3736 exfat C:\Windows\system32\drivers\exfat.sys

    12:07:04.0489 3736 exfat - ok

    12:07:04.0520 3736 fastfat C:\Windows\system32\drivers\fastfat.sys

    12:07:04.0567 3736 fastfat - ok

    12:07:04.0598 3736 Fax C:\Windows\system32\fxssvc.exe

    12:07:04.0629 3736 Fax - ok

    12:07:04.0660 3736 fdc C:\Windows\system32\DRIVERS\fdc.sys

    12:07:04.0692 3736 fdc - ok

    12:07:04.0707 3736 fdPHost C:\Windows\system32\fdPHost.dll

    12:07:04.0738 3736 fdPHost - ok

    12:07:04.0770 3736 FDResPub C:\Windows\system32\fdrespub.dll

    12:07:04.0801 3736 FDResPub - ok

    12:07:04.0816 3736 FileInfo C:\Windows\system32\drivers\fileinfo.sys

    12:07:04.0816 3736 FileInfo - ok

    12:07:04.0848 3736 Filetrace C:\Windows\system32\drivers\filetrace.sys

    12:07:04.0863 3736 Filetrace - ok

    12:07:04.0894 3736 FIXUSTOR C:\Windows\system32\DRIVERS\fixustor.sys

    12:07:04.0926 3736 FIXUSTOR - ok

    12:07:04.0957 3736 flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

    12:07:04.0972 3736 flpydisk - ok

    12:07:04.0988 3736 FltMgr C:\Windows\system32\drivers\fltmgr.sys

    12:07:04.0988 3736 FltMgr - ok

    12:07:05.0050 3736 FontCache C:\Windows\system32\FntCache.dll

    12:07:05.0097 3736 FontCache - ok

    12:07:05.0160 3736 FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

    12:07:05.0175 3736 FontCache3.0.0.0 - ok

    12:07:05.0191 3736 FsDepends C:\Windows\system32\drivers\FsDepends.sys

    12:07:05.0191 3736 FsDepends - ok

    12:07:05.0253 3736 fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys

    12:07:05.0269 3736 fssfltr - ok

    12:07:05.0316 3736 fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

    12:07:05.0347 3736 fsssvc - ok

    12:07:05.0378 3736 Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

    12:07:05.0394 3736 Fs_Rec - ok

    12:07:05.0425 3736 fvevol C:\Windows\system32\DRIVERS\fvevol.sys

    12:07:05.0440 3736 fvevol - ok

    12:07:05.0472 3736 gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

    12:07:05.0487 3736 gagp30kx - ok

    12:07:05.0503 3736 GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    12:07:05.0518 3736 GEARAspiWDM - ok

    12:07:05.0550 3736 gpsvc C:\Windows\System32\gpsvc.dll

    12:07:05.0596 3736 gpsvc - ok

    12:07:05.0659 3736 gupdate C:\Program Files\Google\Update\GoogleUpdate.exe

    12:07:05.0659 3736 gupdate - ok

    12:07:05.0674 3736 gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe

    12:07:05.0674 3736 gupdatem - ok

    12:07:05.0737 3736 gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    12:07:05.0737 3736 gusvc - ok

    12:07:05.0768 3736 hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

    12:07:05.0784 3736 hcw85cir - ok

    12:07:05.0862 3736 HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

    12:07:05.0877 3736 HdAudAddService - ok

    12:07:05.0908 3736 HDAudBus C:\Windows\system32\drivers\HDAudBus.sys

    12:07:05.0924 3736 HDAudBus - ok

    12:07:05.0955 3736 HECI C:\Windows\system32\DRIVERS\HECI.sys

    12:07:05.0986 3736 HECI - ok

    12:07:06.0018 3736 HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

    12:07:06.0018 3736 HidBatt - ok

    12:07:06.0033 3736 HidBth C:\Windows\system32\DRIVERS\hidbth.sys

    12:07:06.0080 3736 HidBth - ok

    12:07:06.0205 3736 HideMyIpSRV C:\Program Files\Hide My IP\HideMyIpSrv.exe

    12:07:06.0236 3736 HideMyIpSRV - ok

    12:07:06.0252 3736 HidIr C:\Windows\system32\DRIVERS\hidir.sys

    12:07:06.0267 3736 HidIr - ok

    12:07:06.0298 3736 hidserv C:\Windows\System32\hidserv.dll

    12:07:06.0314 3736 hidserv - ok

    12:07:06.0376 3736 HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

    12:07:06.0408 3736 HidUsb - ok

    12:07:06.0439 3736 hkmsvc C:\Windows\system32\kmsvc.dll

    12:07:06.0470 3736 hkmsvc - ok

    12:07:06.0501 3736 HomeGroupListener C:\Windows\system32\ListSvc.dll

    12:07:06.0532 3736 HomeGroupListener - ok

    12:07:06.0579 3736 HomeGroupProvider C:\Windows\system32\provsvc.dll

    12:07:06.0595 3736 HomeGroupProvider - ok

    12:07:06.0657 3736 HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

    12:07:06.0673 3736 HpSAMD - ok

    12:07:06.0704 3736 HTTP C:\Windows\system32\drivers\HTTP.sys

    12:07:06.0735 3736 HTTP - ok

    12:07:06.0751 3736 hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

    12:07:06.0766 3736 hwpolicy - ok

    12:07:06.0813 3736 i8042prt C:\Windows\system32\drivers\i8042prt.sys

    12:07:06.0844 3736 i8042prt - ok

    12:07:06.0891 3736 iaStorV C:\Windows\system32\drivers\iaStorV.sys

    12:07:06.0907 3736 iaStorV - ok

    12:07:06.0954 3736 idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

    12:07:06.0969 3736 idsvc - ok

    12:07:06.0985 3736 iirsp C:\Windows\system32\DRIVERS\iirsp.sys

    12:07:07.0000 3736 iirsp - ok

    12:07:07.0032 3736 IKEEXT C:\Windows\System32\ikeext.dll

    12:07:07.0078 3736 IKEEXT - ok

    12:07:07.0172 3736 IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys

    12:07:07.0219 3736 IntcAzAudAddService - ok

    12:07:07.0234 3736 intelide C:\Windows\system32\drivers\intelide.sys

    12:07:07.0250 3736 intelide - ok

    12:07:07.0281 3736 intelppm C:\Windows\system32\DRIVERS\intelppm.sys

    12:07:07.0312 3736 intelppm - ok

    12:07:07.0344 3736 IPBusEnum C:\Windows\system32\ipbusenum.dll

    12:07:07.0375 3736 IPBusEnum - ok

    12:07:07.0422 3736 IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

    12:07:07.0453 3736 IpFilterDriver - ok

    12:07:07.0500 3736 iphlpsvc C:\Windows\System32\iphlpsvc.dll

    12:07:07.0531 3736 iphlpsvc - ok

    12:07:07.0562 3736 IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

    12:07:07.0562 3736 IPMIDRV - ok

    12:07:07.0578 3736 IPNAT C:\Windows\system32\drivers\ipnat.sys

    12:07:07.0624 3736 IPNAT - ok

    12:07:07.0671 3736 iPod Service C:\Program Files\iPod\bin\iPodService.exe

    12:07:07.0687 3736 iPod Service - ok

    12:07:07.0718 3736 IRENUM C:\Windows\system32\drivers\irenum.sys

    12:07:07.0749 3736 IRENUM - ok

    12:07:07.0765 3736 isapnp C:\Windows\system32\drivers\isapnp.sys

    12:07:07.0780 3736 isapnp - ok

    12:07:07.0796 3736 iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

    12:07:07.0812 3736 iScsiPrt - ok

    12:07:07.0812 3736 kbdclass C:\Windows\system32\drivers\kbdclass.sys

    12:07:07.0827 3736 kbdclass - ok

    12:07:07.0874 3736 kbdhid C:\Windows\system32\drivers\kbdhid.sys

    12:07:07.0905 3736 kbdhid - ok

    12:07:07.0921 3736 KeyIso C:\Windows\system32\lsass.exe

    12:07:07.0936 3736 KeyIso - ok

    12:07:07.0968 3736 KSecDD C:\Windows\system32\Drivers\ksecdd.sys

    12:07:07.0983 3736 KSecDD - ok

    12:07:07.0983 3736 KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

    12:07:07.0999 3736 KSecPkg - ok

    12:07:08.0030 3736 KtmRm C:\Windows\system32\msdtckrm.dll

    12:07:08.0077 3736 KtmRm - ok

    12:07:08.0108 3736 LanmanServer C:\Windows\System32\srvsvc.dll

    12:07:08.0155 3736 LanmanServer - ok

    12:07:08.0186 3736 LanmanWorkstation C:\Windows\System32\wkssvc.dll

    12:07:08.0217 3736 LanmanWorkstation - ok

    12:07:08.0264 3736 lltdio C:\Windows\system32\DRIVERS\lltdio.sys

    12:07:08.0311 3736 lltdio - ok

    12:07:08.0342 3736 lltdsvc C:\Windows\System32\lltdsvc.dll

    12:07:08.0389 3736 lltdsvc - ok

    12:07:08.0404 3736 lmhosts C:\Windows\System32\lmhsvc.dll

    12:07:08.0451 3736 lmhosts - ok

    12:07:08.0482 3736 LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

    12:07:08.0498 3736 LSI_FC - ok

    12:07:08.0545 3736 LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

    12:07:08.0545 3736 LSI_SAS - ok

    12:07:08.0576 3736 LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

    12:07:08.0592 3736 LSI_SAS2 - ok

    12:07:08.0607 3736 LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

    12:07:08.0607 3736 LSI_SCSI - ok

    12:07:08.0638 3736 luafv C:\Windows\system32\drivers\luafv.sys

    12:07:08.0654 3736 luafv - ok

    12:07:08.0701 3736 MBAMProtector C:\Windows\system32\drivers\mbam.sys

    12:07:08.0701 3736 MBAMProtector - ok

    12:07:08.0779 3736 MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    12:07:08.0794 3736 MBAMScheduler - ok

    12:07:08.0826 3736 MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    12:07:08.0841 3736 MBAMService - ok

    12:07:08.0872 3736 Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

    12:07:08.0935 3736 Mcx2Svc - ok

    12:07:08.0966 3736 megasas C:\Windows\system32\DRIVERS\megasas.sys

    12:07:08.0966 3736 megasas - ok

    12:07:08.0997 3736 MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

    12:07:09.0013 3736 MegaSR - ok

    12:07:09.0075 3736 Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe

    12:07:09.0091 3736 Microsoft Office Groove Audit Service - ok

    12:07:09.0106 3736 MMCSS C:\Windows\system32\mmcss.dll

    12:07:09.0153 3736 MMCSS - ok

    12:07:09.0169 3736 Modem C:\Windows\system32\drivers\modem.sys

    12:07:09.0200 3736 Modem - ok

    12:07:09.0247 3736 monitor C:\Windows\system32\DRIVERS\monitor.sys

    12:07:09.0247 3736 monitor - ok

    12:07:09.0294 3736 mouclass C:\Windows\system32\DRIVERS\mouclass.sys

    12:07:09.0309 3736 mouclass - ok

    12:07:09.0340 3736 mouhid C:\Windows\system32\DRIVERS\mouhid.sys

    12:07:09.0372 3736 mouhid - ok

    12:07:09.0403 3736 mountmgr C:\Windows\system32\drivers\mountmgr.sys

    12:07:09.0418 3736 mountmgr - ok

    12:07:09.0434 3736 mpio C:\Windows\system32\drivers\mpio.sys

    12:07:09.0450 3736 mpio - ok

    12:07:09.0465 3736 mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

    12:07:09.0496 3736 mpsdrv - ok

    12:07:09.0528 3736 MpsSvc C:\Windows\system32\mpssvc.dll

    12:07:09.0574 3736 MpsSvc - ok

    12:07:09.0621 3736 MRxDAV C:\Windows\system32\drivers\mrxdav.sys

    12:07:09.0637 3736 MRxDAV - ok

    12:07:09.0668 3736 mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

    12:07:09.0684 3736 mrxsmb - ok

    12:07:09.0730 3736 mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

    12:07:09.0746 3736 mrxsmb10 - ok

    12:07:09.0762 3736 mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

    12:07:09.0777 3736 mrxsmb20 - ok

    12:07:09.0793 3736 msahci C:\Windows\system32\drivers\msahci.sys

    12:07:09.0808 3736 msahci - ok

    12:07:09.0808 3736 msdsm C:\Windows\system32\drivers\msdsm.sys

    12:07:09.0824 3736 msdsm - ok

    12:07:09.0855 3736 MSDTC C:\Windows\System32\msdtc.exe

    12:07:09.0886 3736 MSDTC - ok

    12:07:09.0918 3736 Msfs C:\Windows\system32\drivers\Msfs.sys

    12:07:09.0949 3736 Msfs - ok

    12:07:09.0949 3736 mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

    12:07:09.0964 3736 mshidkmdf - ok

    12:07:09.0996 3736 msisadrv C:\Windows\system32\drivers\msisadrv.sys

    12:07:10.0011 3736 msisadrv - ok

    12:07:10.0058 3736 MSiSCSI C:\Windows\system32\iscsiexe.dll

    12:07:10.0105 3736 MSiSCSI - ok

    12:07:10.0105 3736 msiserver - ok

    12:07:10.0136 3736 MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

    12:07:10.0167 3736 MSKSSRV - ok

    12:07:10.0198 3736 MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

    12:07:10.0230 3736 MSPCLOCK - ok

    12:07:10.0245 3736 MSPQM C:\Windows\system32\drivers\MSPQM.sys

    12:07:10.0276 3736 MSPQM - ok

    12:07:10.0308 3736 MsRPC C:\Windows\system32\drivers\MsRPC.sys

    12:07:10.0308 3736 MsRPC - ok

    12:07:10.0339 3736 mssmbios C:\Windows\system32\drivers\mssmbios.sys

    12:07:10.0339 3736 mssmbios - ok

    12:07:10.0432 3736 MSSQL$SQLEXPRESS - ok

    12:07:10.0510 3736 MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE

    12:07:10.0510 3736 MSSQLServerADHelper100 - ok

    12:07:10.0526 3736 MSTEE C:\Windows\system32\drivers\MSTEE.sys

    12:07:10.0557 3736 MSTEE - ok

    12:07:10.0573 3736 MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

    12:07:10.0604 3736 MTConfig - ok

    12:07:10.0635 3736 Mup C:\Windows\system32\Drivers\mup.sys

    12:07:10.0651 3736 Mup - ok

    12:07:10.0651 3736 napagent C:\Windows\system32\qagentRT.dll

    12:07:10.0698 3736 napagent - ok

    12:07:10.0729 3736 NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

    12:07:10.0760 3736 NativeWifiP - ok

    12:07:10.0807 3736 NDIS C:\Windows\system32\drivers\ndis.sys

    12:07:10.0822 3736 NDIS - ok

    12:07:10.0838 3736 NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

  • Annemieke

    deel2 TDSSKiller logje: (kreeg na delete weer melding van Avast, rootkit is in kluis gezet)

    12:07:10.0885 3736 NdisCap - ok

    12:07:10.0916 3736 NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

    12:07:10.0963 3736 NdisTapi - ok

    12:07:10.0994 3736 Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

    12:07:11.0041 3736 Ndisuio - ok

    12:07:11.0072 3736 NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

    12:07:11.0119 3736 NdisWan - ok

    12:07:11.0150 3736 NDProxy C:\Windows\system32\drivers\NDProxy.sys

    12:07:11.0166 3736 NDProxy - ok

    12:07:11.0259 3736 Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

    12:07:11.0290 3736 Nero BackItUp Scheduler 4.0 - ok

    12:07:11.0306 3736 NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

    12:07:11.0337 3736 NetBIOS - ok

    12:07:11.0368 3736 NetBT C:\Windows\system32\DRIVERS\netbt.sys

    12:07:11.0415 3736 NetBT - ok

    12:07:11.0431 3736 Netlogon C:\Windows\system32\lsass.exe

    12:07:11.0446 3736 Netlogon - ok

    12:07:11.0493 3736 Netman C:\Windows\System32\netman.dll

    12:07:11.0524 3736 Netman - ok

    12:07:11.0540 3736 NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0556 3736 NetMsmqActivator - ok

    12:07:11.0556 3736 NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0571 3736 NetPipeActivator - ok

    12:07:11.0587 3736 netprofm C:\Windows\System32\netprofm.dll

    12:07:11.0618 3736 netprofm - ok

    12:07:11.0618 3736 NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0634 3736 NetTcpActivator - ok

    12:07:11.0634 3736 NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:07:11.0634 3736 NetTcpPortSharing - ok

    12:07:11.0680 3736 nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

    12:07:11.0680 3736 nfrd960 - ok

    12:07:11.0712 3736 NlaSvc C:\Windows\System32\nlasvc.dll

    12:07:11.0743 3736 NlaSvc - ok

    12:07:11.0790 3736 Npfs C:\Windows\system32\drivers\Npfs.sys

    12:07:11.0805 3736 Npfs - ok

    12:07:11.0821 3736 nsi C:\Windows\system32\nsisvc.dll

    12:07:11.0852 3736 nsi - ok

    12:07:11.0868 3736 nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

    12:07:11.0914 3736 nsiproxy - ok

    12:07:11.0961 3736 Ntfs C:\Windows\system32\drivers\Ntfs.sys

    12:07:11.0992 3736 Ntfs - ok

    12:07:11.0992 3736 Null C:\Windows\system32\drivers\Null.sys

    12:07:12.0024 3736 Null - ok

    12:07:12.0055 3736 nvamacpi C:\Windows\system32\DRIVERS\NVAMACPI.sys

    12:07:12.0055 3736 nvamacpi - ok

    12:07:12.0070 3736 nvgts C:\Windows\system32\DRIVERS\nvgts.sys

    12:07:12.0086 3736 nvgts - ok

    12:07:12.0289 3736 nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

    12:07:12.0460 3736 nvlddmkm - ok

    12:07:12.0507 3736 nvraid C:\Windows\system32\drivers\nvraid.sys

    12:07:12.0523 3736 nvraid - ok

    12:07:12.0538 3736 nvrd32 C:\Windows\system32\DRIVERS\nvrd32.sys

    12:07:12.0538 3736 nvrd32 - ok

    12:07:12.0554 3736 nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys

    12:07:12.0585 3736 nvsmu - ok

    12:07:12.0616 3736 nvstor C:\Windows\system32\drivers\nvstor.sys

    12:07:12.0632 3736 nvstor - ok

    12:07:12.0648 3736 nvstor32 C:\Windows\system32\DRIVERS\nvstor32.sys

    12:07:12.0663 3736 nvstor32 - ok

    12:07:12.0679 3736 nvsvc C:\Windows\system32\nvvsvc.exe

    12:07:12.0694 3736 nvsvc - ok

    12:07:12.0710 3736 nv_agp C:\Windows\system32\drivers\nv_agp.sys

    12:07:12.0726 3736 nv_agp - ok

    12:07:12.0788 3736 odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    12:07:12.0804 3736 odserv - ok

    12:07:12.0819 3736 ohci1394 C:\Windows\system32\drivers\ohci1394.sys

    12:07:12.0850 3736 ohci1394 - ok

    12:07:12.0897 3736 ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    12:07:12.0897 3736 ose - ok

    12:07:12.0928 3736 p2pimsvc C:\Windows\system32\pnrpsvc.dll

    12:07:12.0960 3736 p2pimsvc - ok

    12:07:13.0006 3736 p2psvc C:\Windows\system32\p2psvc.dll

    12:07:13.0022 3736 p2psvc - ok

    12:07:13.0038 3736 Parport C:\Windows\system32\DRIVERS\parport.sys

    12:07:13.0053 3736 Parport - ok

    12:07:13.0069 3736 partmgr C:\Windows\system32\drivers\partmgr.sys

    12:07:13.0084 3736 partmgr - ok

    12:07:13.0116 3736 Parvdm C:\Windows\system32\DRIVERS\parvdm.sys

    12:07:13.0147 3736 Parvdm - ok

    12:07:13.0178 3736 PcaSvc C:\Windows\System32\pcasvc.dll

    12:07:13.0209 3736 PcaSvc - ok

    12:07:13.0225 3736 pci C:\Windows\system32\drivers\pci.sys

    12:07:13.0240 3736 pci - ok

    12:07:13.0256 3736 pciide C:\Windows\system32\drivers\pciide.sys

    12:07:13.0272 3736 pciide - ok

    12:07:13.0287 3736 pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

    12:07:13.0303 3736 pcmcia - ok

    12:07:13.0318 3736 pcw C:\Windows\system32\drivers\pcw.sys

    12:07:13.0334 3736 pcw - ok

    12:07:13.0350 3736 PEAUTH C:\Windows\system32\drivers\peauth.sys

    12:07:13.0396 3736 PEAUTH - ok

    12:07:13.0474 3736 pla C:\Windows\system32\pla.dll

    12:07:13.0521 3736 pla - ok

    12:07:13.0568 3736 PlugPlay C:\Windows\system32\umpnpmgr.dll

    12:07:13.0584 3736 PlugPlay - ok

    12:07:13.0615 3736 PNRPAutoReg C:\Windows\system32\pnrpauto.dll

    12:07:13.0615 3736 PNRPAutoReg - ok

    12:07:13.0630 3736 PNRPsvc C:\Windows\system32\pnrpsvc.dll

    12:07:13.0646 3736 PNRPsvc - ok

    12:07:13.0662 3736 PolicyAgent C:\Windows\System32\ipsecsvc.dll

    12:07:13.0708 3736 PolicyAgent - ok

    12:07:13.0740 3736 Power C:\Windows\system32\umpo.dll

    12:07:13.0771 3736 Power - ok

    12:07:13.0802 3736 PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

    12:07:13.0833 3736 PptpMiniport - ok

    12:07:13.0849 3736 Processor C:\Windows\system32\DRIVERS\processr.sys

    12:07:13.0880 3736 Processor - ok

    12:07:13.0911 3736 ProfSvc C:\Windows\system32\profsvc.dll

    12:07:13.0942 3736 ProfSvc - ok

    12:07:13.0958 3736 ProtectedStorage C:\Windows\system32\lsass.exe

    12:07:13.0974 3736 ProtectedStorage - ok

    12:07:14.0005 3736 Psched C:\Windows\system32\DRIVERS\pacer.sys

    12:07:14.0036 3736 Psched - ok

    12:07:14.0067 3736 ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

    12:07:14.0098 3736 ql2300 - ok

    12:07:14.0114 3736 ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

    12:07:14.0130 3736 ql40xx - ok

    12:07:14.0161 3736 QWAVE C:\Windows\system32\qwave.dll

    12:07:14.0192 3736 QWAVE - ok

    12:07:14.0223 3736 QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

    12:07:14.0254 3736 QWAVEdrv - ok

    12:07:14.0286 3736 RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

    12:07:14.0317 3736 RasAcd - ok

    12:07:14.0364 3736 RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

    12:07:14.0395 3736 RasAgileVpn - ok

    12:07:14.0426 3736 RasAuto C:\Windows\System32\rasauto.dll

    12:07:14.0442 3736 RasAuto - ok

    12:07:14.0457 3736 Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

    12:07:14.0488 3736 Rasl2tp - ok

    12:07:14.0535 3736 RasMan C:\Windows\System32\rasmans.dll

    12:07:14.0566 3736 RasMan - ok

    12:07:14.0566 3736 RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

    12:07:14.0598 3736 RasPppoe - ok

    12:07:14.0613 3736 RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

    12:07:14.0629 3736 RasSstp - ok

    12:07:14.0644 3736 rdbss C:\Windows\system32\DRIVERS\rdbss.sys

    12:07:14.0676 3736 rdbss - ok

    12:07:14.0707 3736 rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

    12:07:14.0738 3736 rdpbus - ok

    12:07:14.0769 3736 RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

    12:07:14.0800 3736 RDPCDD - ok

    12:07:14.0832 3736 RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

    12:07:14.0863 3736 RDPENCDD - ok

    12:07:14.0863 3736 RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

    12:07:14.0910 3736 RDPREFMP - ok

    12:07:14.0941 3736 RDPWD C:\Windows\system32\drivers\RDPWD.sys

    12:07:14.0972 3736 RDPWD - ok

    12:07:15.0003 3736 rdyboost C:\Windows\system32\drivers\rdyboost.sys

    12:07:15.0003 3736 rdyboost - ok

    12:07:15.0050 3736 RemoteAccess C:\Windows\System32\mprdim.dll

    12:07:15.0097 3736 RemoteAccess - ok

    12:07:15.0128 3736 RemoteRegistry C:\Windows\system32\regsvc.dll

    12:07:15.0144 3736 RemoteRegistry - ok

    12:07:15.0159 3736 RpcEptMapper C:\Windows\System32\RpcEpMap.dll

    12:07:15.0206 3736 RpcEptMapper - ok

    12:07:15.0237 3736 RpcLocator C:\Windows\system32\locator.exe

    12:07:15.0268 3736 RpcLocator - ok

    12:07:15.0300 3736 RpcSs C:\Windows\system32\rpcss.dll

    12:07:15.0331 3736 RpcSs - ok

    12:07:15.0378 3736 RsFx0151 C:\Windows\system32\DRIVERS\RsFx0151.sys

    12:07:15.0393 3736 RsFx0151 - ok

    12:07:15.0440 3736 rspndr C:\Windows\system32\DRIVERS\rspndr.sys

    12:07:15.0487 3736 rspndr - ok

    12:07:15.0534 3736 RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys

    12:07:15.0534 3736 RTL8167 - ok

    12:07:15.0549 3736 SamSs C:\Windows\system32\lsass.exe

    12:07:15.0565 3736 SamSs - ok

    12:07:15.0612 3736 sbp2port C:\Windows\system32\drivers\sbp2port.sys

    12:07:15.0627 3736 sbp2port - ok

    12:07:15.0643 3736 SCardSvr C:\Windows\System32\SCardSvr.dll

    12:07:15.0674 3736 SCardSvr - ok

    12:07:15.0705 3736 scfilter C:\Windows\system32\DRIVERS\scfilter.sys

    12:07:15.0721 3736 scfilter - ok

    12:07:15.0752 3736 Schedule C:\Windows\system32\schedsvc.dll

    12:07:15.0783 3736 Schedule - ok

    12:07:15.0814 3736 SCPolicySvc C:\Windows\System32\certprop.dll

    12:07:15.0830 3736 SCPolicySvc - ok

    12:07:15.0861 3736 SDRSVC C:\Windows\System32\SDRSVC.dll

    12:07:15.0877 3736 SDRSVC - ok

    12:07:15.0892 3736 secdrv C:\Windows\system32\drivers\secdrv.sys

    12:07:15.0924 3736 secdrv - ok

    12:07:15.0939 3736 seclogon C:\Windows\system32\seclogon.dll

    12:07:15.0986 3736 seclogon - ok

    12:07:16.0033 3736 SENS C:\Windows\system32\sens.dll

    12:07:16.0064 3736 SENS - ok

    12:07:16.0080 3736 SensrSvc C:\Windows\system32\sensrsvc.dll

    12:07:16.0080 3736 SensrSvc - ok

    12:07:16.0126 3736 Serenum C:\Windows\system32\DRIVERS\serenum.sys

    12:07:16.0126 3736 Serenum - ok

    12:07:16.0142 3736 Serial C:\Windows\system32\DRIVERS\serial.sys

    12:07:16.0158 3736 Serial - ok

    12:07:16.0173 3736 sermouse C:\Windows\system32\DRIVERS\sermouse.sys

    12:07:16.0220 3736 sermouse - ok

    12:07:16.0251 3736 SessionEnv C:\Windows\system32\sessenv.dll

    12:07:16.0298 3736 SessionEnv - ok

    12:07:16.0329 3736 sffdisk C:\Windows\system32\drivers\sffdisk.sys

    12:07:16.0360 3736 sffdisk - ok

    12:07:16.0376 3736 sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

    12:07:16.0392 3736 sffp_mmc - ok

    12:07:16.0407 3736 sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

    12:07:16.0438 3736 sffp_sd - ok

    12:07:16.0454 3736 sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

    12:07:16.0485 3736 sfloppy - ok

    12:07:16.0532 3736 SharedAccess C:\Windows\System32\ipnathlp.dll

    12:07:16.0548 3736 SharedAccess - ok

    12:07:16.0579 3736 ShellHWDetection C:\Windows\System32\shsvcs.dll

    12:07:16.0594 3736 ShellHWDetection - ok

    12:07:16.0626 3736 sisagp C:\Windows\system32\drivers\sisagp.sys

    12:07:16.0626 3736 sisagp - ok

    12:07:16.0641 3736 SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

    12:07:16.0657 3736 SiSRaid2 - ok

    12:07:16.0672 3736 SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

    12:07:16.0688 3736 SiSRaid4 - ok

    12:07:16.0719 3736 Smb C:\Windows\system32\DRIVERS\smb.sys

    12:07:16.0750 3736 Smb - ok

    12:07:16.0797 3736 SNMPTRAP C:\Windows\System32\snmptrap.exe

    12:07:16.0813 3736 SNMPTRAP - ok

    12:07:16.0828 3736 spldr C:\Windows\system32\drivers\spldr.sys

    12:07:16.0844 3736 spldr - ok

    12:07:16.0875 3736 Spooler C:\Windows\System32\spoolsv.exe

    12:07:16.0906 3736 Spooler - ok

    12:07:17.0062 3736 sppsvc C:\Windows\system32\sppsvc.exe

    12:07:17.0109 3736 sppsvc - ok

    12:07:17.0156 3736 sppuinotify C:\Windows\system32\sppuinotify.dll

    12:07:17.0281 3736 sppuinotify - ok

    12:07:17.0312 3736 SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE

    12:07:17.0328 3736 SQLAgent$SQLEXPRESS - ok

    12:07:17.0374 3736 SQLBrowser c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    12:07:17.0390 3736 SQLBrowser - ok

    12:07:17.0421 3736 SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    12:07:17.0421 3736 SQLWriter - ok

    12:07:17.0452 3736 srv C:\Windows\system32\DRIVERS\srv.sys

    12:07:17.0468 3736 srv - ok

    12:07:17.0484 3736 srv2 C:\Windows\system32\DRIVERS\srv2.sys

    12:07:17.0499 3736 srv2 - ok

    12:07:17.0515 3736 srvnet C:\Windows\system32\DRIVERS\srvnet.sys

    12:07:17.0546 3736 srvnet - ok

    12:07:17.0577 3736 SSDPSRV C:\Windows\System32\ssdpsrv.dll

    12:07:17.0624 3736 SSDPSRV - ok

    12:07:17.0640 3736 SstpSvc C:\Windows\system32\sstpsvc.dll

    12:07:17.0655 3736 SstpSvc - ok

    12:07:17.0671 3736 stexstor C:\Windows\system32\DRIVERS\stexstor.sys

    12:07:17.0686 3736 stexstor - ok

    12:07:17.0733 3736 StiSvc C:\Windows\System32\wiaservc.dll

    12:07:17.0749 3736 StiSvc - ok

    12:07:17.0780 3736 swenum C:\Windows\system32\drivers\swenum.sys

    12:07:17.0796 3736 swenum - ok

    12:07:17.0811 3736 swprv C:\Windows\System32\swprv.dll

    12:07:17.0842 3736 swprv - ok

    12:07:17.0889 3736 SysMain C:\Windows\system32\sysmain.dll

    12:07:17.0905 3736 SysMain - ok

    12:07:17.0920 3736 TabletInputService C:\Windows\System32\TabSvc.dll

    12:07:17.0952 3736 TabletInputService - ok

    12:07:17.0998 3736 TapiSrv C:\Windows\System32\tapisrv.dll

    12:07:18.0014 3736 TapiSrv - ok

    12:07:18.0030 3736 TBS C:\Windows\System32\tbssvc.dll

    12:07:18.0076 3736 TBS - ok

    12:07:18.0123 3736 Tcpip C:\Windows\system32\drivers\tcpip.sys

    12:07:18.0154 3736 Tcpip - ok

    12:07:18.0186 3736 TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

    12:07:18.0217 3736 TCPIP6 - ok

    12:07:18.0232 3736 tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

    12:07:18.0264 3736 tcpipreg - ok

    12:07:18.0295 3736 TDPIPE C:\Windows\system32\drivers\tdpipe.sys

    12:07:18.0326 3736 TDPIPE - ok

    12:07:18.0342 3736 TDTCP C:\Windows\system32\drivers\tdtcp.sys

    12:07:18.0357 3736 TDTCP - ok

    12:07:18.0388 3736 tdx C:\Windows\system32\DRIVERS\tdx.sys

    12:07:18.0420 3736 tdx - ok

    12:07:18.0435 3736 TermDD C:\Windows\system32\drivers\termdd.sys

    12:07:18.0451 3736 TermDD - ok

    12:07:18.0482 3736 TermService C:\Windows\System32\termsrv.dll

    12:07:18.0544 3736 TermService - ok

    12:07:18.0560 3736 Themes C:\Windows\system32\themeservice.dll

    12:07:18.0576 3736 Themes - ok

    12:07:18.0591 3736 THREADORDER C:\Windows\system32\mmcss.dll

    12:07:18.0607 3736 THREADORDER - ok

    12:07:18.0654 3736 TrkWks C:\Windows\System32\trkwks.dll

    12:07:18.0685 3736 TrkWks - ok

    12:07:18.0732 3736 TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

    12:07:18.0778 3736 TrustedInstaller - ok

    12:07:18.0794 3736 tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

    12:07:18.0810 3736 tssecsrv - ok

    12:07:18.0856 3736 TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

    12:07:18.0872 3736 TsUsbFlt - ok

    12:07:18.0919 3736 tunnel C:\Windows\system32\DRIVERS\tunnel.sys

    12:07:18.0934 3736 tunnel - ok

    12:07:18.0966 3736 uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

    12:07:18.0981 3736 uagp35 - ok

    12:07:18.0997 3736 udfs C:\Windows\system32\DRIVERS\udfs.sys

    12:07:19.0028 3736 udfs - ok

    12:07:19.0044 3736 UI0Detect C:\Windows\system32\UI0Detect.exe

    12:07:19.0075 3736 UI0Detect - ok

    12:07:19.0090 3736 uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

    12:07:19.0106 3736 uliagpkx - ok

    12:07:19.0137 3736 umbus C:\Windows\system32\drivers\umbus.sys

    12:07:19.0153 3736 umbus - ok

    12:07:19.0168 3736 UmPass C:\Windows\system32\DRIVERS\umpass.sys

    12:07:19.0215 3736 UmPass - ok

    12:07:19.0246 3736 upnphost C:\Windows\System32\upnphost.dll

    12:07:19.0293 3736 upnphost - ok

    12:07:19.0340 3736 USBAAPL C:\Windows\system32\Drivers\usbaapl.sys

    12:07:19.0371 3736 USBAAPL - ok

    12:07:19.0402 3736 usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

    12:07:19.0418 3736 usbccgp - ok

    12:07:19.0434 3736 usbcir C:\Windows\system32\drivers\usbcir.sys

    12:07:19.0449 3736 usbcir - ok

    12:07:19.0465 3736 usbehci C:\Windows\system32\DRIVERS\usbehci.sys

    12:07:19.0480 3736 usbehci - ok

    12:07:19.0496 3736 usbhub C:\Windows\system32\DRIVERS\usbhub.sys

    12:07:19.0527 3736 usbhub - ok

    12:07:19.0558 3736 usbohci C:\Windows\system32\drivers\usbohci.sys

    12:07:19.0590 3736 usbohci - ok

    12:07:19.0605 3736 usbprint C:\Windows\system32\DRIVERS\usbprint.sys

    12:07:19.0621 3736 usbprint - ok

    12:07:19.0652 3736 usbscan C:\Windows\system32\DRIVERS\usbscan.sys

    12:07:19.0668 3736 usbscan - ok

    12:07:19.0683 3736 USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

    12:07:19.0714 3736 USBSTOR - ok

    12:07:19.0730 3736 usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys

    12:07:19.0730 3736 usbuhci - ok

    12:07:19.0777 3736 usb_rndisx C:\Windows\system32\drivers\usb8023x.sys

    12:07:19.0777 3736 usb_rndisx - ok

    12:07:19.0792 3736 UxSms C:\Windows\System32\uxsms.dll

    12:07:19.0839 3736 UxSms - ok

    12:07:19.0839 3736 VaultSvc C:\Windows\system32\lsass.exe

    12:07:19.0855 3736 VaultSvc - ok

    12:07:19.0870 3736 vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

    12:07:19.0886 3736 vdrvroot - ok

    12:07:19.0917 3736 vds C:\Windows\System32\vds.exe

    12:07:19.0948 3736 vds - ok

    12:07:19.0995 3736 vga C:\Windows\system32\DRIVERS\vgapnp.sys

    12:07:20.0026 3736 vga - ok

    12:07:20.0042 3736 VgaSave C:\Windows\System32\drivers\vga.sys

    12:07:20.0073 3736 VgaSave - ok

    12:07:20.0104 3736 vhdmp C:\Windows\system32\drivers\vhdmp.sys

    12:07:20.0120 3736 vhdmp - ok

    12:07:20.0167 3736 viaagp C:\Windows\system32\drivers\viaagp.sys

    12:07:20.0167 3736 viaagp - ok

    12:07:20.0198 3736 ViaC7 C:\Windows\system32\DRIVERS\viac7.sys

    12:07:20.0229 3736 ViaC7 - ok

    12:07:20.0245 3736 viaide C:\Windows\system32\drivers\viaide.sys

    12:07:20.0260 3736 viaide - ok

    12:07:20.0276 3736 volmgr C:\Windows\system32\drivers\volmgr.sys

    12:07:20.0292 3736 volmgr - ok

    12:07:20.0292 3736 volmgrx C:\Windows\system32\drivers\volmgrx.sys

    12:07:20.0307 3736 volmgrx - ok

    12:07:20.0338 3736 volsnap C:\Windows\system32\drivers\volsnap.sys

    12:07:20.0354 3736 volsnap - ok

    12:07:20.0385 3736 vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

    12:07:20.0401 3736 vsmraid - ok

    12:07:20.0448 3736 VSS C:\Windows\system32\vssvc.exe

    12:07:20.0479 3736 VSS - ok

    12:07:20.0494 3736 vwifibus C:\Windows\System32\drivers\vwifibus.sys

    12:07:20.0510 3736 vwifibus - ok

    12:07:20.0526 3736 W32Time C:\Windows\system32\w32time.dll

    12:07:20.0572 3736 W32Time - ok

    12:07:20.0604 3736 WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

    12:07:20.0604 3736 WacomPen - ok

    12:07:20.0650 3736 WANARP C:\Windows\system32\DRIVERS\wanarp.sys

    12:07:20.0666 3736 WANARP - ok

    12:07:20.0666 3736 Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

    12:07:20.0697 3736 Wanarpv6 - ok

    12:07:20.0775 3736 WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

    12:07:20.0806 3736 WatAdminSvc - ok

    12:07:20.0838 3736 wbengine C:\Windows\system32\wbengine.exe

    12:07:20.0869 3736 wbengine - ok

    12:07:20.0884 3736 WbioSrvc C:\Windows\System32\wbiosrvc.dll

    12:07:20.0916 3736 WbioSrvc - ok

    12:07:20.0931 3736 wcncsvc C:\Windows\System32\wcncsvc.dll

    12:07:20.0978 3736 wcncsvc - ok

    12:07:20.0994 3736 WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

    12:07:21.0025 3736 WcsPlugInService - ok

    12:07:21.0040 3736 Wd C:\Windows\system32\DRIVERS\wd.sys

    12:07:21.0056 3736 Wd - ok

    12:07:21.0087 3736 Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

    12:07:21.0118 3736 Wdf01000 - ok

    12:07:21.0118 3736 WdiServiceHost C:\Windows\system32\wdi.dll

    12:07:21.0134 3736 WdiServiceHost - ok

    12:07:21.0150 3736 WdiSystemHost C:\Windows\system32\wdi.dll

    12:07:21.0165 3736 WdiSystemHost - ok

    12:07:21.0181 3736 WebClient C:\Windows\System32\webclnt.dll

    12:07:21.0228 3736 WebClient - ok

    12:07:21.0259 3736 Wecsvc C:\Windows\system32\wecsvc.dll

    12:07:21.0290 3736 Wecsvc - ok

    12:07:21.0321 3736 wercplsupport C:\Windows\System32\wercplsupport.dll

    12:07:21.0352 3736 wercplsupport - ok

    12:07:21.0384 3736 WerSvc C:\Windows\System32\WerSvc.dll

    12:07:21.0415 3736 WerSvc - ok

    12:07:21.0446 3736 WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

    12:07:21.0477 3736 WfpLwf - ok

    12:07:21.0508 3736 WIMMount C:\Windows\system32\drivers\wimmount.sys

    12:07:21.0508 3736 WIMMount - ok

    12:07:21.0524 3736 WinHttpAutoProxySvc - ok

    12:07:21.0571 3736 Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

    12:07:21.0586 3736 Winmgmt - ok

    12:07:21.0618 3736 WinRM C:\Windows\system32\WsmSvc.dll

    12:07:21.0649 3736 WinRM - ok

    12:07:21.0711 3736 WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys

    12:07:21.0742 3736 WinUsb - ok

    12:07:21.0789 3736 Wlansvc C:\Windows\System32\wlansvc.dll

    12:07:21.0836 3736 Wlansvc - ok

    12:07:21.0914 3736 wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

    12:07:21.0930 3736 wlcrasvc - ok

    12:07:22.0023 3736 wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    12:07:22.0054 3736 wlidsvc - ok

    12:07:22.0070 3736 WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

    12:07:22.0101 3736 WmiAcpi - ok

    12:07:22.0132 3736 wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

    12:07:22.0148 3736 wmiApSrv - ok

    12:07:22.0226 3736 WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe

    12:07:22.0273 3736 WMPNetworkSvc - ok

    12:07:22.0366 3736 WMZuneComm C:\Program Files\Zune\WMZuneComm.exe

    12:07:22.0382 3736 WMZuneComm - ok

    12:07:22.0398 3736 WPCSvc C:\Windows\System32\wpcsvc.dll

    12:07:22.0444 3736 WPCSvc - ok

    12:07:22.0476 3736 WPDBusEnum C:\Windows\system32\wpdbusenum.dll

    12:07:22.0507 3736 WPDBusEnum - ok

    12:07:22.0522 3736 ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

    12:07:22.0569 3736 ws2ifsl - ok

    12:07:22.0585 3736 wscsvc C:\Windows\system32\wscsvc.dll

    12:07:22.0616 3736 wscsvc - ok

    12:07:22.0616 3736 WSearch - ok

    12:07:22.0663 3736 wuauserv C:\Windows\system32\wuaueng.dll

    12:07:22.0694 3736 wuauserv - ok

    12:07:22.0725 3736 WudfPf C:\Windows\system32\drivers\WudfPf.sys

    12:07:22.0741 3736 WudfPf - ok

    12:07:22.0772 3736 WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

    12:07:22.0788 3736 WUDFRd - ok

    12:07:22.0834 3736 wudfsvc C:\Windows\System32\WUDFSvc.dll

    12:07:22.0850 3736 wudfsvc - ok

    12:07:22.0881 3736 WwanSvc C:\Windows\System32\wwansvc.dll

    12:07:22.0897 3736 WwanSvc - ok

    12:07:23.0006 3736 ZuneNetworkSvc C:\Program Files\Zune\ZuneNss.exe

    12:07:23.0100 3736 ZuneNetworkSvc - ok

    12:07:23.0146 3736 ZuneWlanCfgSvc C:\Program Files\Zune\ZuneWlanCfgSvc.exe

    12:07:23.0162 3736 ZuneWlanCfgSvc - ok

    12:07:23.0209 3736 ================ Scan global ===============================

    12:07:23.0240 3736 C:\Windows\system32\basesrv.dll

    12:07:23.0256 3736 C:\Windows\system32\winsrv.dll

    12:07:23.0271 3736 C:\Windows\system32\winsrv.dll

    12:07:23.0287 3736 C:\Windows\system32\sxssrv.dll

    12:07:23.0302 3736 C:\Windows\system32\services.exe

    12:07:23.0318 3736 - ok

    12:07:23.0318 3736 ================ Scan MBR ==================================

    12:07:23.0334 3736 \Device\Harddisk0\DR0

    12:07:23.0630 3736 \Device\Harddisk0\DR0 ( TDSS File System ) - warning

    12:07:23.0630 3736 \Device\Harddisk0\DR0 - detected TDSS File System (1)

    12:07:23.0630 3736 ================ Scan VBR ==================================

    12:07:23.0630 3736 \Device\Harddisk0\DR0\Partition1

    12:07:23.0630 3736 \Device\Harddisk0\DR0\Partition1 - ok

    12:07:23.0646 3736 \Device\Harddisk0\DR0\Partition2

    12:07:23.0646 3736 \Device\Harddisk0\DR0\Partition2 - ok

    12:07:23.0646 3736 ============================================================

    12:07:23.0646 3736 Scan finished

    12:07:23.0646 3736 ============================================================

    12:07:23.0661 2844 Detected object count: 1

    12:07:23.0661 2844 Actual detected object count: 1

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user

    12:08:16.0628 2844 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip

    12:24:18.0002 3320 ============================================================

    12:24:18.0002 3320 Scan started

    12:24:18.0002 3320 Mode: Manual; SigCheck; TDLFS;

    12:24:18.0002 3320 ============================================================

    12:24:18.0805 3320 ================ Scan services =============================

    12:24:18.0932 3320 1394ohci C:\Windows\system32\drivers\1394ohci.sys

    12:24:18.0966 3320 1394ohci - ok

    12:24:19.0077 3320 ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    12:24:19.0093 3320 ABBYY.Licensing.FineReader.Sprint.9.0 - ok

    12:24:19.0140 3320 ACPI C:\Windows\system32\drivers\ACPI.sys

    12:24:19.0158 3320 ACPI - ok

    12:24:19.0174 3320 AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

    12:24:19.0174 3320 AcpiPmi - ok

    12:24:19.0220 3320 AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    12:24:19.0236 3320 AdobeARMservice - ok

    12:24:19.0316 3320 AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    12:24:19.0332 3320 AdobeFlashPlayerUpdateSvc - ok

    12:24:19.0366 3320 adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

    12:24:19.0381 3320 adp94xx - ok

    12:24:19.0413 3320 adpahci C:\Windows\system32\DRIVERS\adpahci.sys

    12:24:19.0428 3320 adpahci - ok

    12:24:19.0446 3320 adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

    12:24:19.0462 3320 adpu320 - ok

    12:24:19.0477 3320 AeLookupSvc C:\Windows\System32\aelupsvc.dll

    12:24:19.0493 3320 AeLookupSvc - ok

    12:24:19.0509 3320 AFD C:\Windows\system32\drivers\afd.sys

    12:24:19.0524 3320 AFD - ok

    12:24:19.0540 3320 agp440 C:\Windows\system32\drivers\agp440.sys

    12:24:19.0558 3320 agp440 - ok

    12:24:19.0589 3320 aic78xx C:\Windows\system32\DRIVERS\djsvs.sys

    12:24:19.0589 3320 aic78xx - ok

    12:24:19.0605 3320 ALG C:\Windows\System32\alg.exe

    12:24:19.0620 3320 ALG - ok

    12:24:19.0620 3320 aliide C:\Windows\system32\drivers\aliide.sys

    12:24:19.0638 3320 aliide - ok

    12:24:19.0654 3320 AMD External Events Utility C:\Windows\system32\atiesrxx.exe

    12:24:19.0670 3320 AMD External Events Utility - ok

    12:24:19.0685 3320 amdagp C:\Windows\system32\drivers\amdagp.sys

    12:24:19.0685 3320 amdagp - ok

    12:24:19.0701 3320 amdide C:\Windows\system32\drivers\amdide.sys

    12:24:19.0716 3320 amdide - ok

    12:24:19.0732 3320 AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

    12:24:19.0748 3320 AmdK8 - ok

    12:24:19.0846 3320 amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys

    12:24:19.0893 3320 amdkmdag - ok

    12:24:19.0909 3320 amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys

    12:24:19.0924 3320 amdkmdap - ok

    12:24:19.0940 3320 AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

    12:24:19.0958 3320 AmdPPM - ok

    12:24:19.0974 3320 amdsata C:\Windows\system32\drivers\amdsata.sys

    12:24:19.0989 3320 amdsata - ok

    12:24:20.0005 3320 amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

    12:24:20.0005 3320 amdsbs - ok

    12:24:20.0020 3320 amdxata C:\Windows\system32\drivers\amdxata.sys

    12:24:20.0036 3320 amdxata - ok

    12:24:20.0052 3320 AppID C:\Windows\system32\drivers\appid.sys

    12:24:20.0083 3320 AppID - ok

    12:24:20.0098 3320 AppIDSvc C:\Windows\System32\appidsvc.dll

    12:24:20.0114 3320 AppIDSvc - ok

    12:24:20.0145 3320 Appinfo C:\Windows\System32\appinfo.dll

    12:24:20.0161 3320 Appinfo - ok

    12:24:20.0223 3320 Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    12:24:20.0223 3320 Apple Mobile Device - ok

    12:24:20.0317 3320 arc C:\Windows\system32\DRIVERS\arc.sys

    12:24:20.0317 3320 arc - ok

    12:24:20.0332 3320 arcsas C:\Windows\system32\DRIVERS\arcsas.sys

    12:24:20.0348 3320 arcsas - ok

    12:24:20.0535 3320 aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe

    12:24:20.0551 3320 aspnet_state - ok

    12:24:20.0582 3320 aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys

    12:24:20.0598 3320 aswFsBlk - ok

    12:24:20.0644 3320 aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys

    12:24:20.0644 3320 aswMonFlt - ok

    12:24:20.0707 3320 aswRdr C:\Windows\System32\Drivers\aswrdr2.sys

    12:24:20.0707 3320 aswRdr - ok

    12:24:20.0738 3320 aswSnx C:\Windows\system32\drivers\aswSnx.sys

    12:24:20.0754 3320 aswSnx - ok

    12:24:20.0769 3320 aswSP C:\Windows\system32\drivers\aswSP.sys

    12:24:20.0785 3320 aswSP - ok

    12:24:20.0816 3320 aswTdi C:\Windows\system32\drivers\aswTdi.sys

    12:24:20.0816 3320 aswTdi - ok

    12:24:20.0832 3320 AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

    12:24:20.0863 3320 AsyncMac - ok

    12:24:20.0863 3320 atapi C:\Windows\system32\drivers\atapi.sys

    12:24:20.0878 3320 atapi - ok

    12:24:20.0894 3320 AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys

    12:24:20.0894 3320 AtiHdmiService - ok

    12:24:20.0925 3320 AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

    12:24:20.0956 3320 AudioEndpointBuilder - ok

    12:24:20.0956 3320 Audiosrv C:\Windows\System32\Audiosrv.dll

    12:24:20.0988 3320 Audiosrv - ok

    12:24:21.0050 3320 avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    12:24:21.0066 3320 avast! Antivirus - ok

    12:24:21.0128 3320 AxInstSV C:\Windows\System32\AxInstSV.dll

    12:24:21.0144 3320 AxInstSV - ok

    12:24:21.0159 3320 b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys

    12:24:21.0175 3320 b06bdrv - ok

    12:24:21.0190 3320 b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys

    12:24:21.0206 3320 b57nd60x - ok

    12:24:21.0237 3320 BDESVC C:\Windows\System32\bdesvc.dll

    12:24:21.0237 3320 BDESVC - ok

    12:24:21.0268 3320 Beep C:\Windows\system32\drivers\Beep.sys

    12:24:21.0300 3320 Beep - ok

    12:24:21.0346 3320 BFE C:\Windows\System32\bfe.dll

    12:24:21.0378 3320 BFE - ok

    12:24:21.0393 3320 BITS C:\Windows\system32\qmgr.dll

    12:24:21.0424 3320 BITS - ok

    12:24:21.0440 3320 blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

    12:24:21.0456 3320 blbdrive - ok

    12:24:21.0518 3320 Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

    12:24:21.0534 3320 Bonjour Service - ok

    12:24:21.0565 3320 bowser C:\Windows\system32\DRIVERS\bowser.sys

    12:24:21.0580 3320 bowser - ok

    12:24:21.0596 3320 BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

    12:24:21.0612 3320 BrFiltLo - ok

    12:24:21.0612 3320 BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

    12:24:21.0627 3320 BrFiltUp - ok

    12:24:21.0658 3320 Browser C:\Windows\System32\browser.dll

    12:24:21.0658 3320 Browser - ok

    12:24:21.0690 3320 Brserid C:\Windows\System32\Drivers\Brserid.sys

    12:24:21.0705 3320 Brserid - ok

    12:24:21.0721 3320 BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

    12:24:21.0736 3320 BrSerWdm - ok

    12:24:21.0752 3320 BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

    12:24:21.0752 3320 BrUsbMdm - ok

    12:24:21.0783 3320 BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

    12:24:21.0799 3320 BrUsbSer - ok

    12:24:21.0814 3320 BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

    12:24:21.0814 3320 BTHMODEM - ok

    12:24:21.0861 3320 bthserv C:\Windows\system32\bthserv.dll

    12:24:21.0892 3320 bthserv - ok

    12:24:21.0970 3320 catchme - ok

    12:24:21.0986 3320 cdfs C:\Windows\system32\DRIVERS\cdfs.sys

    12:24:22.0017 3320 cdfs - ok

    12:24:22.0080 3320 cdrom C:\Windows\system32\drivers\cdrom.sys

    12:24:22.0095 3320 cdrom - ok

    12:24:22.0111 3320 CertPropSvc C:\Windows\System32\certprop.dll

    12:24:22.0126 3320 CertPropSvc - ok

    12:24:22.0142 3320 circlass C:\Windows\system32\DRIVERS\circlass.sys

    12:24:22.0158 3320 circlass - ok

    12:24:22.0173 3320 CLFS C:\Windows\system32\CLFS.sys

    12:24:22.0189 3320 CLFS - ok

    12:24:22.0251 3320 clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    12:24:22.0251 3320 clr_optimization_v2.0.50727_32 - ok

  • Annemieke

    deel 3 logje TDSSKiller:

    12:24:22.0329 3320 clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    12:24:22.0345 3320 clr_optimization_v4.0.30319_32 - ok

    12:24:22.0360 3320 CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

    12:24:22.0376 3320 CmBatt - ok

    12:24:22.0407 3320 cmdide C:\Windows\system32\drivers\cmdide.sys

    12:24:22.0407 3320 cmdide - ok

    12:24:22.0438 3320 CNG C:\Windows\system32\Drivers\cng.sys

    12:24:22.0454 3320 CNG - ok

    12:24:22.0470 3320 Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

    12:24:22.0485 3320 Compbatt - ok

    12:24:22.0501 3320 CompositeBus C:\Windows\system32\drivers\CompositeBus.sys

    12:24:22.0516 3320 CompositeBus - ok

    12:24:22.0516 3320 COMSysApp - ok

    12:24:22.0532 3320 crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

    12:24:22.0548 3320 crcdisk - ok

    12:24:22.0563 3320 CryptSvc C:\Windows\system32\cryptsvc.dll

    12:24:22.0579 3320 CryptSvc - ok

    12:24:22.0594 3320 DcomLaunch C:\Windows\system32\rpcss.dll

    12:24:22.0626 3320 DcomLaunch - ok

    12:24:22.0641 3320 defragsvc C:\Windows\System32\defragsvc.dll

    12:24:22.0672 3320 defragsvc - ok

    12:24:22.0719 3320 DfsC C:\Windows\system32\Drivers\dfsc.sys

    12:24:22.0750 3320 DfsC - ok

    12:24:22.0782 3320 Dhcp C:\Windows\system32\dhcpcore.dll

    12:24:22.0797 3320 Dhcp - ok

    12:24:22.0813 3320 discache C:\Windows\system32\drivers\discache.sys

    12:24:22.0828 3320 discache - ok

    12:24:22.0860 3320 Disk C:\Windows\system32\DRIVERS\disk.sys

    12:24:22.0875 3320 Disk - ok

    12:24:22.0906 3320 Dnscache C:\Windows\System32\dnsrslvr.dll

    12:24:22.0922 3320 Dnscache - ok

    12:24:22.0938 3320 dot3svc C:\Windows\System32\dot3svc.dll

    12:24:22.0969 3320 dot3svc - ok

    12:24:23.0000 3320 DPS C:\Windows\system32\dps.dll

    12:24:23.0016 3320 DPS - ok

    12:24:23.0031 3320 drmkaud C:\Windows\system32\drivers\drmkaud.sys

    12:24:23.0047 3320 drmkaud - ok

    12:24:23.0078 3320 DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

    12:24:23.0109 3320 DXGKrnl - ok

    12:24:23.0109 3320 E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys

    12:24:23.0125 3320 E1G60 - ok

    12:24:23.0172 3320 EapHost C:\Windows\System32\eapsvc.dll

    12:24:23.0203 3320 EapHost - ok

    12:24:23.0250 3320 ebdrv C:\Windows\system32\DRIVERS\evbdx.sys

    12:24:23.0296 3320 ebdrv - ok

    12:24:23.0312 3320 EFS C:\Windows\System32\lsass.exe

    12:24:23.0328 3320 EFS - ok

    12:24:23.0390 3320 ehRecvr C:\Windows\ehome\ehRecvr.exe

    12:24:23.0406 3320 ehRecvr - ok

    12:24:23.0437 3320 ehSched C:\Windows\ehome\ehsched.exe

    12:24:23.0452 3320 ehSched - ok

    12:24:23.0468 3320 elxstor C:\Windows\system32\DRIVERS\elxstor.sys

    12:24:23.0484 3320 elxstor - ok

    12:24:23.0577 3320 EPSON_EB_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE

    12:24:23.0593 3320 EPSON_EB_RPCV4_04 - ok

    12:24:23.0593 3320 EPSON_PM_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE

    12:24:23.0608 3320 EPSON_PM_RPCV4_04 - ok

    12:24:23.0624 3320 ErrDev C:\Windows\system32\drivers\errdev.sys

    12:24:23.0624 3320 ErrDev - ok

    12:24:23.0655 3320 EventSystem C:\Windows\system32\es.dll

    12:24:23.0671 3320 EventSystem - ok

    12:24:23.0686 3320 exfat C:\Windows\system32\drivers\exfat.sys

    12:24:23.0718 3320 exfat - ok

    12:24:23.0733 3320 fastfat C:\Windows\system32\drivers\fastfat.sys

    12:24:23.0764 3320 fastfat - ok

    12:24:23.0780 3320 Fax C:\Windows\system32\fxssvc.exe

    12:24:23.0796 3320 Fax - ok

    12:24:23.0811 3320 fdc C:\Windows\system32\DRIVERS\fdc.sys

    12:24:23.0811 3320 fdc - ok

    12:24:23.0827 3320 fdPHost C:\Windows\system32\fdPHost.dll

    12:24:23.0858 3320 fdPHost - ok

    12:24:23.0858 3320 FDResPub C:\Windows\system32\fdrespub.dll

    12:24:23.0889 3320 FDResPub - ok

    12:24:23.0889 3320 FileInfo C:\Windows\system32\drivers\fileinfo.sys

    12:24:23.0905 3320 FileInfo - ok

    12:24:23.0920 3320 Filetrace C:\Windows\system32\drivers\filetrace.sys

    12:24:23.0936 3320 Filetrace - ok

    12:24:23.0967 3320 FIXUSTOR C:\Windows\system32\DRIVERS\fixustor.sys

    12:24:23.0983 3320 FIXUSTOR - ok

    12:24:23.0998 3320 flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

    12:24:24.0014 3320 flpydisk - ok

    12:24:24.0030 3320 FltMgr C:\Windows\system32\drivers\fltmgr.sys

    12:24:24.0030 3320 FltMgr - ok

    12:24:24.0076 3320 FontCache C:\Windows\system32\FntCache.dll

    12:24:24.0092 3320 FontCache - ok

    12:24:24.0170 3320 FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

    12:24:24.0170 3320 FontCache3.0.0.0 - ok

    12:24:24.0201 3320 FsDepends C:\Windows\system32\drivers\FsDepends.sys

    12:24:24.0201 3320 FsDepends - ok

    12:24:24.0232 3320 fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys

    12:24:24.0248 3320 fssfltr - ok

    12:24:24.0310 3320 fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

    12:24:24.0326 3320 fsssvc - ok

    12:24:24.0357 3320 Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

    12:24:24.0373 3320 Fs_Rec - ok

    12:24:24.0404 3320 fvevol C:\Windows\system32\DRIVERS\fvevol.sys

    12:24:24.0404 3320 fvevol - ok

    12:24:24.0420 3320 gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

    12:24:24.0435 3320 gagp30kx - ok

    12:24:24.0466 3320 GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    12:24:24.0466 3320 GEARAspiWDM - ok

    12:24:24.0498 3320 gpsvc C:\Windows\System32\gpsvc.dll

    12:24:24.0529 3320 gpsvc - ok

    12:24:24.0591 3320 gupdate C:\Program Files\Google\Update\GoogleUpdate.exe

    12:24:24.0591 3320 gupdate - ok

    12:24:24.0607 3320 gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe

    12:24:24.0607 3320 gupdatem - ok

    12:24:24.0669 3320 gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    12:24:24.0685 3320 gusvc - ok

    12:24:24.0700 3320 hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

    12:24:24.0716 3320 hcw85cir - ok

    12:24:24.0747 3320 HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

    12:24:24.0763 3320 HdAudAddService - ok

    12:24:24.0794 3320 HDAudBus C:\Windows\system32\drivers\HDAudBus.sys

    12:24:24.0794 3320 HDAudBus - ok

    12:24:24.0841 3320 HECI C:\Windows\system32\DRIVERS\HECI.sys

    12:24:24.0856 3320 HECI - ok

    12:24:24.0888 3320 HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

    12:24:24.0903 3320 HidBatt - ok

    12:24:24.0919 3320 HidBth C:\Windows\system32\DRIVERS\hidbth.sys

    12:24:24.0934 3320 HidBth - ok

    12:24:25.0028 3320 HideMyIpSRV C:\Program Files\Hide My IP\HideMyIpSrv.exe

    12:24:25.0059 3320 HideMyIpSRV - ok

    12:24:25.0075 3320 HidIr C:\Windows\system32\DRIVERS\hidir.sys

    12:24:25.0090 3320 HidIr - ok

    12:24:25.0137 3320 hidserv C:\Windows\System32\hidserv.dll

    12:24:25.0168 3320 hidserv - ok

    12:24:25.0168 3320 HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

    12:24:25.0184 3320 HidUsb - ok

    12:24:25.0200 3320 hkmsvc C:\Windows\system32\kmsvc.dll

    12:24:25.0231 3320 hkmsvc - ok

    12:24:25.0262 3320 HomeGroupListener C:\Windows\system32\ListSvc.dll

    12:24:25.0278 3320 HomeGroupListener - ok

    12:24:25.0309 3320 HomeGroupProvider C:\Windows\system32\provsvc.dll

    12:24:25.0324 3320 HomeGroupProvider - ok

    12:24:25.0371 3320 HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

    12:24:25.0371 3320 HpSAMD - ok

    12:24:25.0402 3320 HTTP C:\Windows\system32\drivers\HTTP.sys

    12:24:25.0434 3320 HTTP - ok

    12:24:25.0434 3320 hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

    12:24:25.0449 3320 hwpolicy - ok

    12:24:25.0496 3320 i8042prt C:\Windows\system32\drivers\i8042prt.sys

    12:24:25.0512 3320 i8042prt - ok

    12:24:25.0543 3320 iaStorV C:\Windows\system32\drivers\iaStorV.sys

    12:24:25.0558 3320 iaStorV - ok

    12:24:25.0636 3320 idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

    12:24:25.0652 3320 idsvc - ok

    12:24:25.0668 3320 iirsp C:\Windows\system32\DRIVERS\iirsp.sys

    12:24:25.0668 3320 iirsp - ok

    12:24:25.0699 3320 IKEEXT C:\Windows\System32\ikeext.dll

    12:24:25.0714 3320 IKEEXT - ok

    12:24:25.0792 3320 IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys

    12:24:25.0824 3320 IntcAzAudAddService - ok

    12:24:25.0839 3320 intelide C:\Windows\system32\drivers\intelide.sys

    12:24:25.0855 3320 intelide - ok

    12:24:25.0855 3320 intelppm C:\Windows\system32\DRIVERS\intelppm.sys

    12:24:25.0870 3320 intelppm - ok

    12:24:25.0902 3320 IPBusEnum C:\Windows\system32\ipbusenum.dll

    12:24:25.0917 3320 IPBusEnum - ok

    12:24:25.0933 3320 IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

    12:24:25.0964 3320 IpFilterDriver - ok

    12:24:25.0995 3320 iphlpsvc C:\Windows\System32\iphlpsvc.dll

    12:24:26.0011 3320 iphlpsvc - ok

    12:24:26.0026 3320 IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

    12:24:26.0042 3320 IPMIDRV - ok

    12:24:26.0058 3320 IPNAT C:\Windows\system32\drivers\ipnat.sys

    12:24:26.0073 3320 IPNAT - ok

    12:24:26.0120 3320 iPod Service C:\Program Files\iPod\bin\iPodService.exe

    12:24:26.0136 3320 iPod Service - ok

    12:24:26.0151 3320 IRENUM C:\Windows\system32\drivers\irenum.sys

    12:24:26.0167 3320 IRENUM - ok

    12:24:26.0182 3320 isapnp C:\Windows\system32\drivers\isapnp.sys

    12:24:26.0198 3320 isapnp - ok

    12:24:26.0214 3320 iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

    12:24:26.0229 3320 iScsiPrt - ok

    12:24:26.0245 3320 kbdclass C:\Windows\system32\drivers\kbdclass.sys

    12:24:26.0245 3320 kbdclass - ok

    12:24:26.0276 3320 kbdhid C:\Windows\system32\drivers\kbdhid.sys

    12:24:26.0276 3320 kbdhid - ok

    12:24:26.0292 3320 KeyIso C:\Windows\system32\lsass.exe

    12:24:26.0307 3320 KeyIso - ok

    12:24:26.0323 3320 KSecDD C:\Windows\system32\Drivers\ksecdd.sys

    12:24:26.0338 3320 KSecDD - ok

    12:24:26.0354 3320 KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

    12:24:26.0354 3320 KSecPkg - ok

    12:24:26.0385 3320 KtmRm C:\Windows\system32\msdtckrm.dll

    12:24:26.0416 3320 KtmRm - ok

    12:24:26.0416 3320 LanmanServer C:\Windows\System32\srvsvc.dll

    12:24:26.0448 3320 LanmanServer - ok

    12:24:26.0510 3320 LanmanWorkstation C:\Windows\System32\wkssvc.dll

    12:24:26.0541 3320 LanmanWorkstation - ok

    12:24:26.0541 3320 lltdio C:\Windows\system32\DRIVERS\lltdio.sys

    12:24:26.0572 3320 lltdio - ok

    12:24:26.0604 3320 lltdsvc C:\Windows\System32\lltdsvc.dll

    12:24:26.0619 3320 lltdsvc - ok

    12:24:26.0635 3320 lmhosts C:\Windows\System32\lmhsvc.dll

    12:24:26.0650 3320 lmhosts - ok

    12:24:26.0666 3320 LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

    12:24:26.0682 3320 LSI_FC - ok

    12:24:26.0697 3320 LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

    12:24:26.0713 3320 LSI_SAS - ok

    12:24:26.0728 3320 LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

    12:24:26.0744 3320 LSI_SAS2 - ok

    12:24:26.0760 3320 LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

    12:24:26.0775 3320 LSI_SCSI - ok

    12:24:26.0791 3320 luafv C:\Windows\system32\drivers\luafv.sys

    12:24:26.0806 3320 luafv - ok

    12:24:26.0853 3320 MBAMProtector C:\Windows\system32\drivers\mbam.sys

    12:24:26.0853 3320 MBAMProtector - ok

    12:24:26.0931 3320 MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

    12:24:26.0931 3320 MBAMScheduler - ok

    12:24:26.0962 3320 MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

    12:24:26.0978 3320 MBAMService - ok

    12:24:27.0025 3320 Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

    12:24:27.0040 3320 Mcx2Svc - ok

    12:24:27.0056 3320 megasas C:\Windows\system32\DRIVERS\megasas.sys

    12:24:27.0056 3320 megasas - ok

    12:24:27.0072 3320 MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

    12:24:27.0087 3320 MegaSR - ok

    12:24:27.0150 3320 Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe

    12:24:27.0165 3320 Microsoft Office Groove Audit Service - ok

    12:24:27.0181 3320 MMCSS C:\Windows\system32\mmcss.dll

    12:24:27.0212 3320 MMCSS - ok

    12:24:27.0228 3320 Modem C:\Windows\system32\drivers\modem.sys

    12:24:27.0243 3320 Modem - ok

    12:24:27.0274 3320 monitor C:\Windows\system32\DRIVERS\monitor.sys

    12:24:27.0290 3320 monitor - ok

    12:24:27.0337 3320 mouclass C:\Windows\system32\DRIVERS\mouclass.sys

    12:24:27.0337 3320 mouclass - ok

    12:24:27.0415 3320 mouhid C:\Windows\system32\DRIVERS\mouhid.sys

    12:24:27.0430 3320 mouhid - ok

    12:24:27.0477 3320 mountmgr C:\Windows\system32\drivers\mountmgr.sys

    12:24:27.0493 3320 mountmgr - ok

    12:24:27.0524 3320 mpio C:\Windows\system32\drivers\mpio.sys

    12:24:27.0540 3320 mpio - ok

    12:24:27.0633 3320 mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

    12:24:27.0664 3320 mpsdrv - ok

    12:24:27.0789 3320 MpsSvc C:\Windows\system32\mpssvc.dll

    12:24:27.0820 3320 MpsSvc - ok

    12:24:27.0852 3320 MRxDAV C:\Windows\system32\drivers\mrxdav.sys

    12:24:27.0867 3320 MRxDAV - ok

    12:24:27.0883 3320 mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

    12:24:27.0898 3320 mrxsmb - ok

    12:24:27.0930 3320 mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

    12:24:27.0945 3320 mrxsmb10 - ok

    12:24:27.0961 3320 mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

    12:24:27.0976 3320 mrxsmb20 - ok

    12:24:28.0008 3320 msahci C:\Windows\system32\drivers\msahci.sys

    12:24:28.0008 3320 msahci - ok

    12:24:28.0039 3320 msdsm C:\Windows\system32\drivers\msdsm.sys

    12:24:28.0054 3320 msdsm - ok

    12:24:28.0054 3320 MSDTC C:\Windows\System32\msdtc.exe

    12:24:28.0070 3320 MSDTC - ok

    12:24:28.0117 3320 Msfs C:\Windows\system32\drivers\Msfs.sys

    12:24:28.0148 3320 Msfs - ok

    12:24:28.0148 3320 mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

    12:24:28.0179 3320 mshidkmdf - ok

    12:24:28.0195 3320 msisadrv C:\Windows\system32\drivers\msisadrv.sys

    12:24:28.0210 3320 msisadrv - ok

    12:24:28.0242 3320 MSiSCSI C:\Windows\system32\iscsiexe.dll

    12:24:28.0257 3320 MSiSCSI - ok

    12:24:28.0273 3320 msiserver - ok

    12:24:28.0288 3320 MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

    12:24:28.0304 3320 MSKSSRV - ok

    12:24:28.0320 3320 MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

    12:24:28.0351 3320 MSPCLOCK - ok

    12:24:28.0351 3320 MSPQM C:\Windows\system32\drivers\MSPQM.sys

    12:24:28.0366 3320 MSPQM - ok

    12:24:28.0382 3320 MsRPC C:\Windows\system32\drivers\MsRPC.sys

    12:24:28.0398 3320 MsRPC - ok

    12:24:28.0444 3320 mssmbios C:\Windows\system32\drivers\mssmbios.sys

    12:24:28.0444 3320 mssmbios - ok

    12:24:28.0522 3320 MSSQL$SQLEXPRESS - ok

    12:24:28.0600 3320 MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE

    12:24:28.0600 3320 MSSQLServerADHelper100 - ok

    12:24:28.0600 3320 MSTEE C:\Windows\system32\drivers\MSTEE.sys

    12:24:28.0632 3320 MSTEE - ok

    12:24:28.0647 3320 MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

    12:24:28.0647 3320 MTConfig - ok

    12:24:28.0663 3320 Mup C:\Windows\system32\Drivers\mup.sys

    12:24:28.0678 3320 Mup - ok

    12:24:28.0694 3320 napagent C:\Windows\system32\qagentRT.dll

    12:24:28.0725 3320 napagent - ok

    12:24:28.0741 3320 NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

    12:24:28.0756 3320 NativeWifiP - ok

    12:24:28.0788 3320 NDIS C:\Windows\system32\drivers\ndis.sys

    12:24:28.0803 3320 NDIS - ok

    12:24:28.0819 3320 NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

    12:24:28.0834 3320 NdisCap - ok

    12:24:28.0850 3320 NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

    12:24:28.0881 3320 NdisTapi - ok

    12:24:28.0912 3320 Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

    12:24:28.0928 3320 Ndisuio - ok

    12:24:28.0959 3320 NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

    12:24:28.0975 3320 NdisWan - ok

    12:24:29.0022 3320 NDProxy C:\Windows\system32\drivers\NDProxy.sys

    12:24:29.0037 3320 NDProxy - ok

    12:24:29.0100 3320 Nero BackItUp Scheduler 4.0 C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

    12:24:29.0131 3320 Nero BackItUp Scheduler 4.0 - ok

    12:24:29.0131 3320 NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

    12:24:29.0162 3320 NetBIOS - ok

    12:24:29.0193 3320 NetBT C:\Windows\system32\DRIVERS\netbt.sys

    12:24:29.0209 3320 NetBT - ok

    12:24:29.0224 3320 Netlogon C:\Windows\system32\lsass.exe

    12:24:29.0224 3320 Netlogon - ok

    12:24:29.0256 3320 Netman C:\Windows\System32\netman.dll

    12:24:29.0287 3320 Netman - ok

    12:24:29.0302 3320 NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:24:29.0318 3320 NetMsmqActivator - ok

    12:24:29.0318 3320 NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:24:29.0334 3320 NetPipeActivator - ok

    12:24:29.0349 3320 netprofm C:\Windows\System32\netprofm.dll

    12:24:29.0365 3320 netprofm - ok

    12:24:29.0380 3320 NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:24:29.0380 3320 NetTcpActivator - ok

    12:24:29.0396 3320 NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

    12:24:29.0396 3320 NetTcpPortSharing - ok

    12:24:29.0412 3320 nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

    12:24:29.0427 3320 nfrd960 - ok

    12:24:29.0458 3320 NlaSvc C:\Windows\System32\nlasvc.dll

    12:24:29.0474 3320 NlaSvc - ok

    12:24:29.0490 3320 Npfs C:\Windows\system32\drivers\Npfs.sys

    12:24:29.0521 3320 Npfs - ok

    12:24:29.0536 3320 nsi C:\Windows\system32\nsisvc.dll

    12:24:29.0552 3320 nsi - ok

    12:24:29.0568 3320 nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

    12:24:29.0583 3320 nsiproxy - ok

    12:24:29.0630 3320 Ntfs C:\Windows\system32\drivers\Ntfs.sys

    12:24:29.0661 3320 Ntfs - ok

    12:24:29.0661 3320 Null C:\Windows\system32\drivers\Null.sys

    12:24:29.0692 3320 Null - ok

    12:24:29.0724 3320 nvamacpi C:\Windows\system32\DRIVERS\NVAMACPI.sys

    12:24:29.0724 3320 nvamacpi - ok

    12:24:29.0739 3320 nvgts C:\Windows\system32\DRIVERS\nvgts.sys

    12:24:29.0755 3320 nvgts - ok

    12:24:29.0942 3320 nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

    12:24:30.0067 3320 nvlddmkm - ok

    12:24:30.0145 3320 nvraid C:\Windows\system32\drivers\nvraid.sys

    12:24:30.0160 3320 nvraid - ok

    12:24:30.0176 3320 nvrd32 C:\Windows\system32\DRIVERS\nvrd32.sys

    12:24:30.0176 3320 nvrd32 - ok

    12:24:30.0192 3320 nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys

    12:24:30.0207 3320 nvsmu - ok

    12:24:30.0223 3320 nvstor C:\Windows\system32\drivers\nvstor.sys

    12:24:30.0238 3320 nvstor - ok

    12:24:30.0254 3320 nvstor32 C:\Windows\system32\DRIVERS\nvstor32.sys

    12:24:30.0270 3320 nvstor32 - ok

    12:24:30.0285 3320 nvsvc C:\Windows\system32\nvvsvc.exe

    12:24:30.0301 3320 nvsvc - ok

    12:24:30.0316 3320 nv_agp C:\Windows\system32\drivers\nv_agp.sys

    12:24:30.0332 3320 nv_agp - ok

    12:24:30.0426 3320 odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    12:24:30.0441 3320 odserv - ok

    12:24:30.0457 3320 ohci1394 C:\Windows\system32\drivers\ohci1394.sys

    12:24:30.0472 3320 ohci1394 - ok

    12:24:30.0519 3320 ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    12:24:30.0535 3320 ose - ok

    12:24:30.0566 3320 p2pimsvc C:\Windows\system32\pnrpsvc.dll

    12:24:30.0582 3320 p2pimsvc - ok

    12:24:30.0613 3320 p2psvc C:\Windows\system32\p2psvc.dll

    12:24:30.0628 3320 p2psvc - ok

    12:24:30.0644 3320 Parport C:\Windows\system32\DRIVERS\parport.sys

    12:24:30.0660 3320 Parport - ok

    12:24:30.0675 3320 partmgr C:\Windows\system32\drivers\partmgr.sys

    12:24:30.0691 3320 partmgr - ok

    12:24:30.0722 3320 Parvdm C:\Windows\system32\DRIVERS\parvdm.sys

    12:24:30.0738 3320 Parvdm - ok

    12:24:30.0738 3320 PcaSvc C:\Windows\System32\pcasvc.dll

    12:24:30.0769 3320 PcaSvc - ok

    12:24:30.0784 3320 pci C:\Windows\system32\drivers\pci.sys

    12:24:30.0800 3320 pci - ok

    12:24:30.0831 3320 pciide C:\Windows\system32\drivers\pciide.sys

    12:24:30.0831 3320 pciide - ok

    12:24:30.0847 3320 pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

    12:24:30.0862 3320 pcmcia - ok

    12:24:30.0878 3320 pcw C:\Windows\system32\drivers\pcw.sys

    12:24:30.0894 3320 pcw - ok

    12:24:30.0909 3320 PEAUTH C:\Windows\system32\drivers\peauth.sys

    12:24:30.0940 3320 PEAUTH - ok

    12:24:30.0987 3320 pla C:\Windows\system32\pla.dll

    12:24:31.0018 3320 pla - ok

    12:24:31.0065 3320 PlugPlay C:\Windows\system32\umpnpmgr.dll

    12:24:31.0096 3320 PlugPlay - ok

    12:24:31.0112 3320 PNRPAutoReg C:\Windows\system32\pnrpauto.dll

    12:24:31.0112 3320 PNRPAutoReg - ok

    12:24:31.0128 3320 PNRPsvc C:\Windows\system32\pnrpsvc.dll

    12:24:31.0143 3320 PNRPsvc - ok

    12:24:31.0159 3320 PolicyAgent C:\Windows\System32\ipsecsvc.dll

    12:24:31.0190 3320 PolicyAgent - ok

    12:24:31.0206 3320 Power C:\Windows\system32\umpo.dll

    12:24:31.0237 3320 Power - ok

    12:24:31.0252 3320 PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

    12:24:31.0268 3320 PptpMiniport - ok

    12:24:31.0284 3320 Processor C:\Windows\system32\DRIVERS\processr.sys

    12:24:31.0299 3320 Processor - ok

    12:24:31.0315 3320 ProfSvc C:\Windows\system32\profsvc.dll

    12:24:31.0330 3320 ProfSvc - ok

    12:24:31.0346 3320 ProtectedStorage C:\Windows\system32\lsass.exe

    12:24:31.0362 3320 ProtectedStorage - ok

    12:24:31.0377 3320 Psched C:\Windows\system32\DRIVERS\pacer.sys

    12:24:31.0393 3320 Psched - ok

    12:24:31.0424 3320 ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

    12:24:31.0455 3320 ql2300 - ok

    12:24:31.0471 3320 ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

    12:24:31.0486 3320 ql40xx - ok

    12:24:31.0502 3320 QWAVE C:\Windows\system32\qwave.dll

    12:24:31.0533 3320 QWAVE - ok

    12:24:31.0533 3320 QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

    12:24:31.0549 3320 QWAVEdrv - ok

    12:24:31.0564 3320 RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

    12:24:31.0596 3320 RasAcd - ok

    12:24:31.0611 3320 RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

    12:24:31.0627 3320 RasAgileVpn - ok

    12:24:31.0642 3320 RasAuto C:\Windows\System32\rasauto.dll

    12:24:31.0674 3320 RasAuto - ok

    12:24:31.0689 3320 Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

    12:24:31.0705 3320 Rasl2tp - ok

    12:24:31.0720 3320 RasMan C:\Windows\System32\rasmans.dll

    12:24:31.0752 3320 RasMan - ok

    12:24:31.0752 3320 RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

    12:24:31.0783 3320 RasPppoe - ok

    12:24:31.0798 3320 RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

    12:24:31.0814 3320 RasSstp - ok

    12:24:31.0830 3320 rdbss C:\Windows\system32\DRIVERS\rdbss.sys

    12:24:31.0845 3320 rdbss - ok

    12:24:31.0876 3320 rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

    12:24:31.0876 3320 rdpbus - ok

    12:24:31.0908 3320 RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

    12:24:31.0923 3320 RDPCDD - ok

    12:24:31.0939 3320 RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

    12:24:31.0954 3320 RDPENCDD - ok

    12:24:31.0970 3320 RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

    12:24:31.0986 3320 RDPREFMP - ok

    12:24:32.0001 3320 RDPWD C:\Windows\system32\drivers\RDPWD.sys

    12:24:32.0017 3320 RDPWD - ok

    12:24:32.0048 3320 rdyboost C:\Windows\system32\drivers\rdyboost.sys

    12:24:32.0048 3320 rdyboost - ok

    12:24:32.0095 3320 RemoteAccess C:\Windows\System32\mprdim.dll

    12:24:32.0110 3320 RemoteAccess - ok

    12:24:32.0126 3320 RemoteRegistry C:\Windows\system32\regsvc.dll

    12:24:32.0142 3320 RemoteRegistry - ok

    12:24:32.0173 3320 RpcEptMapper C:\Windows\System32\RpcEpMap.dll

    12:24:32.0188 3320 RpcEptMapper - ok

    12:24:32.0204 3320 RpcLocator C:\Windows\system32\locator.exe

    12:24:32.0220 3320 RpcLocator - ok

    12:24:32.0235 3320 RpcSs C:\Windows\system32\rpcss.dll

    12:24:32.0266 3320 RpcSs - ok

    12:24:32.0298 3320 RsFx0151 C:\Windows\system32\DRIVERS\RsFx0151.sys

    12:24:32.0298 3320 RsFx0151 - ok

    12:24:32.0329 3320 rspndr C:\Windows\system32\DRIVERS\rspndr.sys

    12:24:32.0360 3320 rspndr - ok

    12:24:32.0376 3320 RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys

    12:24:32.0391 3320 RTL8167 - ok

    12:24:32.0391 3320 SamSs C:\Windows\system32\lsass.exe

    12:24:32.0407 3320 SamSs - ok

    12:24:32.0454 3320 sbp2port C:\Windows\system32\drivers\sbp2port.sys

    12:24:32.0469 3320 sbp2port - ok

    12:24:32.0485 3320 SCardSvr C:\Windows\System32\SCardSvr.dll

    12:24:32.0516 3320 SCardSvr - ok

    12:24:32.0547 3320 scfilter C:\Windows\system32\DRIVERS\scfilter.sys

    12:24:32.0563 3320 scfilter - ok

    12:24:32.0610 3320 Schedule C:\Windows\system32\schedsvc.dll

    12:24:32.0641 3320 Schedule - ok

    12:24:32.0672 3320 SCPolicySvc C:\Windows\System32\certprop.dll

    12:24:32.0688 3320 SCPolicySvc - ok

    12:24:32.0703 3320 SDRSVC C:\Windows\System32\SDRSVC.dll

    12:24:32.0719 3320 SDRSVC - ok

    12:24:32.0719 3320 secdrv C:\Windows\system32\drivers\secdrv.sys

    12:24:32.0750 3320 secdrv - ok

    12:24:32.0750 3320 seclogon C:\Windows\system32\seclogon.dll

    12:24:32.0781 3320 seclogon - ok

    12:24:32.0797 3320 SENS C:\Windows\system32\sens.dll

    12:24:32.0812 3320 SENS - ok

    12:24:32.0828 3320 SensrSvc C:\Windows\system32\sensrsvc.dll

    12:24:32.0844 3320 SensrSvc - ok

    12:24:32.0859 3320 Serenum C:\Windows\system32\DRIVERS\serenum.sys

    12:24:32.0875 3320 Serenum - ok

    12:24:32.0875 3320 Serial C:\Windows\system32\DRIVERS\serial.sys

    12:24:32.0890 3320 Serial - ok

    12:24:32.0922 3320 sermouse C:\Windows\system32\DRIVERS\sermouse.sys

    12:24:32.0922 3320 sermouse - ok

    12:24:32.0953 3320 SessionEnv C:\Windows\system32\sessenv.dll

    12:24:32.0968 3320 SessionEnv - ok

    12:24:33.0015 3320 sffdisk C:\Windows\system32\drivers\sffdisk.sys

    12:24:33.0031 3320 sffdisk - ok

    12:24:33.0031 3320 sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

    12:24:33.0046 3320 sffp_mmc - ok

    12:24:33.0062 3320 sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

    12:24:33.0078 3320 sffp_sd - ok

    12:24:33.0093 3320 sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

    12:24:33.0109 3320 sfloppy - ok

    12:24:33.0124 3320 SharedAccess C:\Windows\System32\ipnathlp.dll

    12:24:33.0156 3320 SharedAccess - ok

    12:24:33.0171 3320 ShellHWDetection C:\Windows\System32\shsvcs.dll

    12:24:33.0202 3320 ShellHWDetection - ok

    12:24:33.0218 3320 sisagp C:\Windows\system32\drivers\sisagp.sys

    12:24:33.0234 3320 sisagp - ok

    12:24:33.0249 3320 SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

    12:24:33.0249 3320 SiSRaid2 - ok

    12:24:33.0265 3320 SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

    12:24:33.0280 3320 SiSRaid4 - ok

    12:24:33.0296 3320 Smb C:\Windows\system32\DRIVERS\smb.sys

    12:24:33.0312 3320 Smb - ok

    12:24:33.0327 3320 SNMPTRAP C:\Windows\System32\snmptrap.exe

    12:24:33.0343 3320 SNMPTRAP - ok

    12:24:33.0358 3320 spldr C:\Windows\system32\drivers\spldr.sys

    12:24:33.0374 3320 spldr - ok

    12:24:33.0405 3320 Spooler C:\Windows\System32\spoolsv.exe

    12:24:33.0421 3320 Spooler - ok

    12:24:33.0468 3320 sppsvc C:\Windows\system32\sppsvc.exe

    12:24:33.0530 3320 sppsvc - ok

    12:24:33.0561 3320 sppuinotify C:\Windows\system32\sppuinotify.dll

    12:24:33.0577 3320 sppuinotify - ok

    12:24:33.0592 3320 SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE

    12:24:33.0608 3320 SQLAgent$SQLEXPRESS - ok

    12:24:33.0639 3320 SQLBrowser c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    12:24:33.0655 3320 SQLBrowser - ok

    12:24:33.0670 3320 SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    12:24:33.0686 3320 SQLWriter - ok

    12:24:33.0717 3320 srv C:\Windows\system32\DRIVERS\srv.sys

    12:24:33.0733 3320 srv - ok

    12:24:33.0748 3320 srv2 C:\Windows\system32\DRIVERS\srv2.sys

    12:24:33.0764 3320 srv2 - ok

    12:24:33.0780 3320 srvnet C:\Windows\system32\DRIVERS\srvnet.sys

    12:24:33.0795 3320 srvnet - ok

    12:24:33.0795 3320 SSDPSRV C:\Windows\System32\ssdpsrv.dll

    12:24:33.0826 3320 SSDPSRV - ok

    12:24:33.0842 3320 SstpSvc C:\Windows\system32\sstpsvc.dll

    12:24:33.0873 3320 SstpSvc - ok

    12:24:33.0889 3320 stexstor C:\Windows\system32\DRIVERS\stexstor.sys

    12:24:33.0904 3320 stexstor - ok

    12:24:33.0920 3320 StiSvc C:\Windows\System32\wiaservc.dll

    12:24:33.0951 3320 StiSvc - ok

    12:24:33.0951 3320 swenum C:\Windows\system32\drivers\swenum.sys

    12:24:33.0967 3320 swenum - ok

    12:24:33.0982 3320 swprv C:\Windows\System32\swprv.dll

    12:24:34.0014 3320 swprv - ok

    12:24:34.0045 3320 SysMain C:\Windows\system32\sysmain.dll

    12:24:34.0076 3320 SysMain - ok

    12:24:34.0076 3320 TabletInputService C:\Windows\System32\TabSvc.dll

    12:24:34.0107 3320 TabletInputService - ok

    12:24:34.0123 3320 TapiSrv C:\Windows\System32\tapisrv.dll

    12:24:34.0138 3320 TapiSrv - ok

    12:24:34.0154 3320 TBS C:\Windows\System32\tbssvc.dll

    12:24:34.0185 3320 TBS - ok

    12:24:34.0232 3320 Tcpip C:\Windows\system32\drivers\tcpip.sys

    12:24:34.0248 3320 Tcpip - ok

    12:24:34.0263 3320 TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

    12:24:34.0294 3320 TCPIP6 - ok

    12:24:34.0310 3320 tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

    12:24:34.0310 3320 tcpipreg - ok

    12:24:34.0357 3320 TDPIPE C:\Windows\system32\drivers\tdpipe.sys

    12:24:34.0357 3320 TDPIPE - ok

    12:24:34.0404 3320 TDTCP C:\Windows\system32\drivers\tdtcp.sys

    12:24:34.0419 3320 TDTCP - ok

    12:24:34.0435 3320 tdx C:\Windows\system32\DRIVERS\tdx.sys

    12:24:34.0466 3320 tdx - ok

    12:24:34.0497 3320 TermDD C:\Windows\system32\drivers\termdd.sys

    12:24:34.0497 3320 TermDD - ok

    12:24:34.0528 3320 TermService C:\Windows\System32\termsrv.dll

    12:24:34.0560 3320 TermService - ok

    12:24:34.0575 3320 Themes C:\Windows\system32\themeservice.dll

    12:24:34.0591 3320 Themes - ok

    12:24:34.0606 3320 THREADORDER C:\Windows\system32\mmcss.dll

    12:24:34.0622 3320 THREADORDER - ok

    12:24:34.0638 3320 TrkWks C:\Windows\System32\trkwks.dll

    12:24:34.0669 3320 TrkWks - ok

    12:24:34.0700 3320 TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

    12:24:34.0731 3320 TrustedInstaller - ok

    12:24:34.0747 3320 tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

    12:24:34.0762 3320 tssecsrv - ok

    12:24:34.0778 3320 TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

    12:24:34.0794 3320 TsUsbFlt - ok

    12:24:34.0825 3320 tunnel C:\Windows\system32\DRIVERS\tunnel.sys

    12:24:34.0840 3320 tunnel - ok

    12:24:34.0872 3320 uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

    12:24:34.0887 3320 uagp35 - ok

    12:24:34.0903 3320 udfs C:\Windows\system32\DRIVERS\udfs.sys

    12:24:34.0918 3320 udfs - ok

    12:24:34.0950 3320 UI0Detect C:\Windows\system32\UI0Detect.exe

    12:24:34.0965 3320 UI0Detect - ok

    12:24:34.0981 3320 uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

    12:24:34.0981 3320 uliagpkx - ok

    12:24:35.0012 3320 umbus C:\Windows\system32\drivers\umbus.sys

    12:24:35.0012 3320 umbus - ok

    12:24:35.0028 3320 UmPass C:\Windows\system32\DRIVERS\umpass.sys

    12:24:35.0043 3320 UmPass - ok

    12:24:35.0074 3320 upnphost C:\Windows\System32\upnphost.dll

    12:24:35.0106 3320 upnphost - ok

    12:24:35.0137 3320 USBAAPL C:\Windows\system32\Drivers\usbaapl.sys

    12:24:35.0137 3320 USBAAPL - ok

    12:24:35.0184 3320 usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

    12:24:35.0199 3320 usbccgp - ok

    12:24:35.0230 3320 usbcir C:\Windows\system32\drivers\usbcir.sys

    12:24:35.0230 3320 usbcir - ok

    12:24:35.0246 3320 usbehci C:\Windows\system32\DRIVERS\usbehci.sys

    12:24:35.0262 3320 usbehci - ok

    12:24:35.0277 3320 usbhub C:\Windows\system32\DRIVERS\usbhub.sys

    12:24:35.0293 3320 usbhub - ok

    12:24:35.0308 3320 usbohci C:\Windows\system32\drivers\usbohci.sys

    12:24:35.0324 3320 usbohci - ok

    12:24:35.0324 3320 usbprint C:\Windows\system32\DRIVERS\usbprint.sys

    12:24:35.0340 3320 usbprint - ok

    12:24:35.0355 3320 usbscan C:\Windows\system32\DRIVERS\usbscan.sys

    12:24:35.0371 3320 usbscan - ok

    12:24:35.0386 3320 USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

    12:24:35.0402 3320 USBSTOR - ok

    12:24:35.0418 3320 usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys

    12:24:35.0418 3320 usbuhci - ok

    12:24:35.0449 3320 usb_rndisx C:\Windows\system32\drivers\usb8023x.sys

    12:24:35.0464 3320 usb_rndisx - ok

    12:24:35.0480 3320 UxSms C:\Windows\System32\uxsms.dll

    12:24:35.0496 3320 UxSms - ok

    12:24:35.0511 3320 VaultSvc C:\Windows\system32\lsass.exe

    12:24:35.0527 3320 VaultSvc - ok

    12:24:35.0527 3320 vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

    12:24:35.0542 3320 vdrvroot - ok

    12:24:35.0574 3320 vds C:\Windows\System32\vds.exe

    12:24:35.0605 3320 vds - ok

    12:24:35.0605 3320 vga C:\Windows\system32\DRIVERS\vgapnp.sys

    12:24:35.0620 3320 vga - ok

    12:24:35.0636 3320 VgaSave C:\Windows\System32\drivers\vga.sys

    12:24:35.0652 3320 VgaSave - ok

    12:24:35.0683 3320 vhdmp C:\Windows\system32\drivers\vhdmp.sys

    12:24:35.0698 3320 vhdmp - ok

    12:24:35.0714 3320 viaagp C:\Windows\system32\drivers\viaagp.sys

    12:24:35.0730 3320 viaagp - ok

    12:24:35.0745 3320 ViaC7 C:\Windows\system32\DRIVERS\viac7.sys

    12:24:35.0761 3320 ViaC7 - ok

    12:24:35.0776 3320 viaide C:\Windows\system32\drivers\viaide.sys

    12:24:35.0792 3320 viaide - ok

    12:24:35.0792 3320 volmgr C:\Windows\system32\drivers\volmgr.sys

    12:24:35.0808 3320 volmgr - ok

    12:24:35.0839 3320 volmgrx C:\Windows\system32\drivers\volmgrx.sys

    12:24:35.0854 3320 volmgrx - ok

    12:24:35.0886 3320 volsnap C:\Windows\system32\drivers\volsnap.sys

    12:24:35.0901 3320 volsnap - ok

    12:24:35.0917 3320 vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

    12:24:35.0932 3320 vsmraid - ok

    12:24:35.0979 3320 VSS C:\Windows\system32\vssvc.exe

    12:24:36.0010 3320 VSS - ok

    12:24:36.0026 3320 vwifibus C:\Windows\System32\drivers\vwifibus.sys

    12:24:36.0042 3320 vwifibus - ok

    12:24:36.0057 3320 W32Time C:\Windows\system32\w32time.dll

    12:24:36.0088 3320 W32Time - ok

    12:24:36.0104 3320 WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

    12:24:36.0120 3320 WacomPen - ok

    12:24:36.0151 3320 WANARP C:\Windows\system32\DRIVERS\wanarp.sys

    12:24:36.0182 3320 WANARP - ok

    12:24:36.0182 3320 Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

    12:24:36.0198 3320 Wanarpv6 - ok

    12:24:36.0260 3320 WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

    12:24:36.0291 3320 WatAdminSvc - ok

    12:24:36.0322 3320 wbengine C:\Windows\system32\wbengine.exe

    12:24:36.0338 3320 wbengine - ok

    12:24:36.0354 3320 WbioSrvc C:\Windows\System32\wbiosrvc.dll

    12:24:36.0369 3320 WbioSrvc - ok

    12:24:36.0385 3320 wcncsvc C:\Windows\System32\wcncsvc.dll

    12:24:36.0416 3320 wcncsvc - ok

    12:24:36.0416 3320 WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

    12:24:36.0432 3320 WcsPlugInService - ok

    12:24:36.0447 3320 Wd C:\Windows\system32\DRIVERS\wd.sys

    12:24:36.0463 3320 Wd - ok

    12:24:36.0494 3320 Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

    12:24:36.0510 3320 Wdf01000 - ok

    12:24:36.0525 3320 WdiServiceHost C:\Windows\system32\wdi.dll

    12:24:36.0541 3320 WdiServiceHost - ok

    12:24:36.0541 3320 WdiSystemHost C:\Windows\system32\wdi.dll

    12:24:36.0556 3320 WdiSystemHost - ok

    12:24:36.0588 3320 WebClient C:\Windows\System32\webclnt.dll

    12:24:36.0603 3320 WebClient - ok

    12:24:36.0619 3320 Wecsvc C:\Windows\system32\wecsvc.dll

    12:24:36.0650 3320 Wecsvc - ok

    12:24:36.0666 3320 wercplsupport C:\Windows\System32\wercplsupport.dll

    12:24:36.0681 3320 wercplsupport - ok

    12:24:36.0697 3320 WerSvc C:\Windows\System32\WerSvc.dll

    12:24:36.0712 3320 WerSvc - ok

    12:24:36.0728 3320 WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

    12:24:36.0759 3320 WfpLwf - ok

    12:24:36.0775 3320 WIMMount C:\Windows\system32\drivers\wimmount.sys

    12:24:36.0775 3320 WIMMount - ok

    12:24:36.0790 3320 WinHttpAutoProxySvc - ok

    12:24:36.0837 3320 Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

    12:24:36.0853 3320 Winmgmt - ok

    12:24:36.0884 3320 WinRM C:\Windows\system32\WsmSvc.dll

    12:24:36.0915 3320 WinRM - ok

    12:24:36.0978 3320 WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys

    12:24:36.0993 3320 WinUsb - ok

    12:24:37.0024 3320 Wlansvc C:\Windows\System32\wlansvc.dll

    12:24:37.0056 3320 Wlansvc - ok

    12:24:37.0134 3320 wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

    12:24:37.0149 3320 wlcrasvc - ok

    12:24:37.0212 3320 wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    12:24:37.0243 3320 wlidsvc - ok

    12:24:37.0258 3320 WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

    12:24:37.0274 3320 WmiAcpi - ok

    12:24:37.0290 3320 wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

    12:24:37.0305 3320 wmiApSrv - ok

    12:24:37.0352 3320 WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe

    12:24:37.0368 3320 WMPNetworkSvc - ok

    12:24:37.0430 3320 WMZuneComm C:\Program Files\Zune\WMZuneComm.exe

    12:24:37.0446 3320 WMZuneComm - ok

    12:24:37.0461 3320 WPCSvc C:\Windows\System32\wpcsvc.dll

    12:24:37.0477 3320 WPCSvc - ok

    12:24:37.0492 3320 WPDBusEnum C:\Windows\system32\wpdbusenum.dll

    12:24:37.0508 3320 WPDBusEnum - ok

    12:24:37.0524 3320 ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

    12:24:37.0539 3320 ws2ifsl - ok

    12:24:37.0555 3320 wscsvc C:\Windows\system32\wscsvc.dll

    12:24:37.0570 3320 wscsvc - ok

    12:24:37.0586 3320 WSearch - ok

    12:24:37.0633 3320 wuauserv C:\Windows\system32\wuaueng.dll

    12:24:37.0664 3320 wuauserv - ok

    12:24:37.0711 3320 WudfPf C:\Windows\system32\drivers\WudfPf.sys

    12:24:37.0726 3320 WudfPf - ok

    12:24:37.0742 3320 WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

    12:24:37.0742 3320 WUDFRd - ok

    12:24:37.0758 3320 wudfsvc C:\Windows\System32\WUDFSvc.dll

    12:24:37.0773 3320 wudfsvc - ok

    12:24:37.0789 3320 WwanSvc C:\Windows\System32\wwansvc.dll

    12:24:37.0804 3320 WwanSvc - ok

    12:24:37.0914 3320 ZuneNetworkSvc C:\Program Files\Zune\ZuneNss.exe

    12:24:37.0992 3320 ZuneNetworkSvc - ok

    12:24:38.0023 3320 ZuneWlanCfgSvc C:\Program Files\Zune\ZuneWlanCfgSvc.exe

    12:24:38.0038 3320 ZuneWlanCfgSvc - ok

    12:24:38.0054 3320 ================ Scan global ===============================

    12:24:38.0070 3320 C:\Windows\system32\basesrv.dll

    12:24:38.0085 3320 C:\Windows\system32\winsrv.dll

    12:24:38.0101 3320 C:\Windows\system32\winsrv.dll

    12:24:38.0116 3320 C:\Windows\system32\sxssrv.dll

    12:24:38.0132 3320 C:\Windows\system32\services.exe

    12:24:38.0132 3320 - ok

    12:24:38.0132 3320 ================ Scan MBR ==================================

    12:24:38.0148 3320 \Device\Harddisk0\DR0

    12:24:38.0538 3320 \Device\Harddisk0\DR0 ( TDSS File System ) - warning

    12:24:38.0538 3320 \Device\Harddisk0\DR0 - detected TDSS File System (1)

    12:24:38.0538 3320 ================ Scan VBR ==================================

    12:24:38.0538 3320 \Device\Harddisk0\DR0\Partition1

    12:24:38.0538 3320 \Device\Harddisk0\DR0\Partition1 - ok

    12:24:38.0569 3320 \Device\Harddisk0\DR0\Partition2

    12:24:38.0569 3320 \Device\Harddisk0\DR0\Partition2 - ok

    12:24:38.0569 3320 ============================================================

    12:24:38.0569 3320 Scan finished

    12:24:38.0569 3320 ============================================================

    12:24:38.0584 4528 Detected object count: 1

    12:24:38.0584 4528 Actual detected object count: 1

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\mbr - copied to quarantine

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\vbr - copied to quarantine

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\bid - copied to quarantine

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\affid - copied to quarantine

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\boot - copied to quarantine

    12:24:49.0598 4528 \Device\Harddisk0\DR0\TDLFS\cmd32 - copied to quarantine

    12:24:53.0264 4528 \Device\Harddisk0\DR0\TDLFS\cmd64 - copied to quarantine

    12:24:53.0358 4528 \Device\Harddisk0\DR0\TDLFS\dbg32 - copied to quarantine

    12:24:53.0389 4528 \Device\Harddisk0\DR0\TDLFS\dbg64 - copied to quarantine

    12:24:53.0436 4528 \Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine

    12:24:53.0592 4528 \Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine

    12:24:53.0654 4528 \Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine

    12:24:53.0685 4528 \Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine

    12:24:53.0716 4528 \Device\Harddisk0\DR0\TDLFS\main - copied to quarantine

    12:24:53.0716 4528 \Device\Harddisk0\DR0\TDLFS\subid - copied to quarantine

    12:24:53.0716 4528 \Device\Harddisk0\DR0\TDLFS\tdi32 - copied to quarantine

    12:24:53.0763 4528 \Device\Harddisk0\DR0\TDLFS\tdi64 - copied to quarantine

    12:24:53.0794 4528 \Device\Harddisk0\DR0\TDLFS\main1 - copied to quarantine

    12:24:53.0794 4528 \Device\Harddisk0\DR0\TDLFS - deleted

    12:24:53.0794 4528 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Delete

  • Ben

    Hallo,

    Download aswMBR.exe naar het bureaublad.

    * Dubbelklik op "aswMBR.exe" om de tool te starten.

    * Klik bij het volgende scherm op "Ja" om de laatste virusdefinities van Avast te downloaden.

    * Klik nu op de knop "scan" er zal nu tevens een snelle scan van de systeemschijf worden uitgevoerd.

    * Als de scan gereed is klikt u op de knop "save log"

    * Plaats dit log bestand in het volgende bericht.

    Gr.Ben

  • Annemieke

    Heb het 2x geprobeerd maar de scan loopt vast, krijg de melding dat het programma afgesloten wordt omdat het programma niet werkt.

    Zie wel gelijk bij begin scan 2 rode balkjes die gaan over de Rootkit partion 4

  • Ben

    Hallo,

    Start de computer opnieuw.

    Tijdens het opstarten hou je de F8-toets ingedrukt tot het opstartmenu verschijnt.

    In dit menu kies je de optie “Veilige modus”.

    Probeer dan met aswMBR te scannen.

    Gr.Ben

  • Annemieke

    Hallo Ben,

    Helaas ook in de veilige modus loopt aswMBR vast en wordt het afgesloten, wat nu?

    Groetjes Annemieke

Dit topic is gesloten, er kunnen geen reacties meer worden geplaatst.