logjes ivm ukash virus

  • marcel

    hallo

    aan het eind gaf ie gevonden treaths en skip aan en dan kon ik volgende doen

    hij heeft ze dan niet verwijderd zeker?

    22:11:09.0640 2864 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

    22:11:09.0984 2864 ============================================================

    22:11:09.0984 2864 Current date / time: 2013/02/12 22:11:09.0984

    22:11:09.0984 2864 SystemInfo:

    22:11:09.0984 2864

    22:11:09.0984 2864 OS Version: 5.1.2600 ServicePack: 3.0

    22:11:09.0984 2864 Product type: Workstation

    22:11:09.0984 2864 ComputerName: UW-259CBE6449D1

    22:11:09.0984 2864 UserName: manon

    22:11:10.0000 2864 Windows directory: C:\WINDOWS

    22:11:10.0000 2864 System windows directory: C:\WINDOWS

    22:11:10.0000 2864 Processor architecture: Intel x86

    22:11:10.0000 2864 Number of processors: 2

    22:11:10.0000 2864 Page size: 0x1000

    22:11:10.0000 2864 Boot type: Normal boot

    22:11:10.0000 2864 ============================================================

    22:11:13.0437 2864 BG loaded

    22:11:13.0859 2864 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x000000A4

    22:11:13.0906 2864 ============================================================

    22:11:13.0906 2864 \Device\Harddisk0\DR0:

    22:11:13.0906 2864 MBR partitions:

    22:11:13.0906 2864 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542

    22:11:13.0906 2864 ============================================================

    22:11:13.0968 2864 C: <-> \Device\Harddisk0\DR0\Partition1

    22:11:14.0031 2864 ============================================================

    22:11:14.0031 2864 Initialize success

    22:11:14.0031 2864 ============================================================

    22:15:28.0562 3232 ============================================================

    22:15:28.0562 3232 Scan started

    22:15:28.0562 3232 Mode: Manual; SigCheck; TDLFS;

    22:15:28.0562 3232 ============================================================

    22:15:29.0093 3232 ================ Scan services =============================

    22:15:29.0218 3232 ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    22:15:29.0390 3232 ABBYY.Licensing.FineReader.Sprint.9.0 - ok

    22:15:29.0468 3232 Abiosdsk - ok

    22:15:29.0468 3232 abp480n5 - ok

    22:15:29.0515 3232 ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys

    22:15:29.0671 3232 ACPI - ok

    22:15:29.0703 3232 ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys

    22:15:29.0859 3232 ACPIEC - ok

    22:15:29.0859 3232 ADBLOCK.DLL - ok

    22:15:29.0875 3232 adpu160m - ok

    22:15:29.0921 3232 aec C:\WINDOWS\system32\drivers\aec.sys

    22:15:30.0078 3232 aec - ok

    22:15:30.0125 3232 AFD C:\WINDOWS\System32\drivers\afd.sys

    22:15:30.0171 3232 AFD - ok

    22:15:30.0187 3232 Aha154x - ok

    22:15:30.0203 3232 aic78u2 - ok

    22:15:30.0203 3232 aic78xx - ok

    22:15:30.0234 3232 Alerter C:\WINDOWS\system32\alrsvc.dll

    22:15:30.0375 3232 Alerter - ok

    22:15:30.0421 3232 ALG C:\WINDOWS\System32\alg.exe

    22:15:30.0500 3232 ALG - ok

    22:15:30.0515 3232 AliIde - ok

    22:15:30.0515 3232 amsint - ok

    22:15:30.0593 3232 Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    22:15:30.0609 3232 Apple Mobile Device - ok

    22:15:30.0625 3232 AppMgmt - ok

    22:15:30.0625 3232 ARP.DLL - ok

    22:15:30.0656 3232 Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys

    22:15:30.0812 3232 Arp1394 - ok

    22:15:30.0828 3232 asc - ok

    22:15:30.0828 3232 asc3350p - ok

    22:15:30.0843 3232 asc3550 - ok

    22:15:30.0968 3232 aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe

    22:15:31.0015 3232 aspnet_state - ok

    22:15:31.0046 3232 AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys

    22:15:31.0203 3232 AsyncMac - ok

    22:15:31.0218 3232 atapi C:\WINDOWS\system32\DRIVERS\atapi.sys

    22:15:31.0375 3232 atapi - ok

    22:15:31.0375 3232 Atdisk - ok

    22:15:31.0421 3232 Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe

    22:15:31.0468 3232 Ati HotKey Poller - ok

    22:15:31.0562 3232 ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys

    22:15:31.0671 3232 ati2mtag - ok

    22:15:31.0703 3232 Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys

    22:15:31.0875 3232 Atmarpc - ok

    22:15:31.0906 3232 AudioSrv C:\WINDOWS\System32\audiosrv.dll

    22:15:32.0062 3232 AudioSrv - ok

    22:15:32.0109 3232 audstub C:\WINDOWS\system32\DRIVERS\audstub.sys

    22:15:32.0250 3232 audstub - ok

    22:15:32.0296 3232 Beep C:\WINDOWS\system32\drivers\Beep.sys

    22:15:32.0453 3232 Beep - ok

    22:15:32.0484 3232 BITS C:\WINDOWS\system32\qmgr.dll

    22:15:32.0656 3232 BITS - ok

    22:15:32.0687 3232 BlueletAudio C:\WINDOWS\system32\DRIVERS\blueletaudio.sys

    22:15:32.0687 3232 BlueletAudio ( UnsignedFile.Multi.Generic ) - warning

    22:15:32.0687 3232 BlueletAudio - detected UnsignedFile.Multi.Generic (1)

    22:15:32.0750 3232 Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

    22:15:32.0781 3232 Bonjour Service - ok

    22:15:32.0828 3232 Browser C:\WINDOWS\System32\browser.dll

    22:15:32.0859 3232 Browser - ok

    22:15:32.0875 3232 BT C:\WINDOWS\system32\DRIVERS\btnetdrv.sys

    22:15:32.0890 3232 BT ( UnsignedFile.Multi.Generic ) - warning

    22:15:32.0890 3232 BT - detected UnsignedFile.Multi.Generic (1)

    22:15:32.0906 3232 Btcsrusb C:\WINDOWS\system32\Drivers\btcusb.sys

    22:15:32.0921 3232 Btcsrusb ( UnsignedFile.Multi.Generic ) - warning

    22:15:32.0921 3232 Btcsrusb - detected UnsignedFile.Multi.Generic (1)

    22:15:32.0937 3232 BTHidEnum C:\WINDOWS\system32\DRIVERS\vbtenum.sys

    22:15:32.0937 3232 BTHidEnum ( UnsignedFile.Multi.Generic ) - warning

    22:15:32.0937 3232 BTHidEnum - detected UnsignedFile.Multi.Generic (1)

    22:15:32.0968 3232 BTHidMgr C:\WINDOWS\system32\Drivers\BTHidMgr.sys

    22:15:32.0968 3232 BTHidMgr ( UnsignedFile.Multi.Generic ) - warning

    22:15:32.0968 3232 BTHidMgr - detected UnsignedFile.Multi.Generic (1)

    22:15:33.0000 3232 catchme - ok

    22:15:33.0031 3232 cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys

    22:15:33.0187 3232 cbidf2k - ok

    22:15:33.0203 3232 CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys

    22:15:33.0375 3232 CCDECODE - ok

    22:15:33.0390 3232 cd20xrnt - ok

    22:15:33.0421 3232 Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys

    22:15:33.0578 3232 Cdaudio - ok

    22:15:33.0625 3232 Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys

    22:15:33.0781 3232 Cdfs - ok

    22:15:33.0812 3232 Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys

    22:15:33.0953 3232 Cdrom - ok

    22:15:33.0968 3232 Changer - ok

    22:15:34.0000 3232 CiSvc C:\WINDOWS\system32\cisvc.exe

    22:15:34.0156 3232 CiSvc - ok

    22:15:34.0171 3232 ClipSrv C:\WINDOWS\system32\clipsrv.exe

    22:15:34.0328 3232 ClipSrv - ok

    22:15:34.0375 3232 clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    22:15:34.0531 3232 clr_optimization_v2.0.50727_32 - ok

    22:15:34.0578 3232 clr_optimization_v4.0.30319_32 c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    22:15:34.0609 3232 clr_optimization_v4.0.30319_32 - ok

    22:15:34.0609 3232 CmdIde - ok

    22:15:34.0671 3232 cmudau C:\WINDOWS\system32\drivers\cmudau.sys

    22:15:34.0718 3232 cmudau ( UnsignedFile.Multi.Generic ) - warning

    22:15:34.0718 3232 cmudau - detected UnsignedFile.Multi.Generic (1)

    22:15:34.0734 3232 COMSysApp - ok

    22:15:34.0734 3232 CONTENT.DLL - ok

    22:15:34.0765 3232 Cpqarray - ok

    22:15:34.0796 3232 CryptSvc C:\WINDOWS\System32\cryptsvc.dll

    22:15:34.0953 3232 CryptSvc - ok

    22:15:34.0968 3232 dac2w2k - ok

    22:15:34.0984 3232 dac960nt - ok

    22:15:35.0031 3232 DcomLaunch C:\WINDOWS\system32\rpcss.dll

    22:15:35.0078 3232 DcomLaunch - ok

    22:15:35.0125 3232 Dhcp C:\WINDOWS\System32\dhcpcsvc.dll

    22:15:35.0281 3232 Dhcp - ok

    22:15:35.0296 3232 Disk C:\WINDOWS\system32\DRIVERS\disk.sys

    22:15:35.0468 3232 Disk - ok

    22:15:35.0484 3232 dmadmin - ok

    22:15:35.0515 3232 dmboot C:\WINDOWS\system32\drivers\dmboot.sys

    22:15:35.0703 3232 dmboot - ok

    22:15:35.0718 3232 dmio C:\WINDOWS\system32\drivers\dmio.sys

    22:15:35.0890 3232 dmio - ok

    22:15:35.0921 3232 dmload C:\WINDOWS\system32\drivers\dmload.sys

    22:15:36.0078 3232 dmload - ok

    22:15:36.0093 3232 dmserver C:\WINDOWS\System32\dmserver.dll

    22:15:36.0250 3232 dmserver - ok

    22:15:36.0296 3232 DMusic C:\WINDOWS\system32\drivers\DMusic.sys

    22:15:36.0453 3232 DMusic - ok

    22:15:36.0468 3232 DNSCACHE.DLL - ok

    22:15:36.0500 3232 Dot3svc C:\WINDOWS\System32\dot3svc.dll

    22:15:36.0640 3232 Dot3svc - ok

    22:15:36.0656 3232 dpti2o - ok

    22:15:36.0687 3232 drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys

    22:15:36.0843 3232 drmkaud - ok

    22:15:36.0859 3232 EapHost C:\WINDOWS\System32\eapsvc.dll

    22:15:37.0015 3232 EapHost - ok

    22:15:37.0062 3232 ERSvc C:\WINDOWS\System32\ersvc.dll

    22:15:37.0218 3232 ERSvc - ok

    22:15:37.0234 3232 esgiguard - ok

    22:15:37.0265 3232 Eventlog C:\WINDOWS\system32\services.exe

    22:15:37.0296 3232 Eventlog - ok

    22:15:37.0343 3232 EventSystem C:\WINDOWS\system32\es.dll

    22:15:37.0359 3232 EventSystem - ok

    22:15:37.0406 3232 Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys

    22:15:37.0687 3232 Fastfat - ok

    22:15:37.0718 3232 FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll

    22:15:37.0750 3232 FastUserSwitchingCompatibility - ok

    22:15:37.0796 3232 Fax C:\WINDOWS\system32\fxssvc.exe

    22:15:37.0937 3232 Fax - ok

    22:15:37.0984 3232 Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys

    22:15:38.0156 3232 Fdc - ok

    22:15:38.0171 3232 Fips C:\WINDOWS\system32\drivers\Fips.sys

    22:15:38.0343 3232 Fips - ok

    22:15:38.0390 3232 Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys

    22:15:38.0546 3232 Flpydisk - ok

    22:15:38.0593 3232 FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys

    22:15:38.0750 3232 FltMgr - ok

    22:15:38.0781 3232 fssfltr C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys

    22:15:38.0812 3232 fssfltr - ok

    22:15:38.0906 3232 fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

    22:15:38.0953 3232 fsssvc - ok

    22:15:39.0000 3232 FsUsbExDisk C:\WINDOWS\system32\FsUsbExDisk.SYS

    22:15:39.0000 3232 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning

    22:15:39.0000 3232 FsUsbExDisk - detected UnsignedFile.Multi.Generic (1)

    22:15:39.0031 3232 FsUsbExService C:\WINDOWS\system32\FsUsbExService.Exe

    22:15:39.0031 3232 FsUsbExService ( UnsignedFile.Multi.Generic ) - warning

    22:15:39.0031 3232 FsUsbExService - detected UnsignedFile.Multi.Generic (1)

    22:15:39.0062 3232 Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys

    22:15:39.0218 3232 Fs_Rec - ok

    22:15:39.0250 3232 Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys

    22:15:39.0406 3232 Ftdisk - ok

    22:15:39.0406 3232 FTPFILT.DLL - ok

    22:15:39.0453 3232 GEARAspiWDM C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys

    22:15:39.0468 3232 GEARAspiWDM - ok

    22:15:39.0500 3232 gfibto C:\WINDOWS\system32\drivers\gfibto.sys

    22:15:39.0562 3232 gfibto - ok

    22:15:39.0593 3232 Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys

    22:15:39.0781 3232 Gpc - ok

    22:15:39.0812 3232 HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys

    22:15:39.0828 3232 HdAudAddService - ok

    22:15:39.0859 3232 HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys

    22:15:40.0015 3232 HDAudBus - ok

    22:15:40.0093 3232 helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll

    22:15:40.0265 3232 helpsvc - ok

    22:15:40.0328 3232 HidServ C:\WINDOWS\System32\hidserv.dll

    22:15:40.0468 3232 HidServ - ok

    22:15:40.0515 3232 hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys

    22:15:40.0671 3232 hidusb - ok

    22:15:40.0718 3232 hkmsvc C:\WINDOWS\System32\kmsvc.dll

    22:15:40.0859 3232 hkmsvc - ok

    22:15:40.0875 3232 hpn - ok

    22:15:40.0890 3232 HTMLFILT.DLL - ok

    22:15:40.0937 3232 HTTP C:\WINDOWS\system32\Drivers\HTTP.sys

    22:15:40.0953 3232 HTTP - ok

    22:15:40.0953 3232 HTTPFILT.DLL - ok

    22:15:41.0015 3232 HTTPFilter C:\WINDOWS\System32\w3ssl.dll

    22:15:41.0171 3232 HTTPFilter - ok

    22:15:41.0187 3232 i2omgmt - ok

    22:15:41.0187 3232 i2omp - ok

    22:15:41.0234 3232 i8042prt C:\WINDOWS\system32\drivers\i8042prt.sys

    22:15:41.0406 3232 i8042prt - ok

    22:15:41.0468 3232 IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

    22:15:41.0468 3232 IDriverT ( UnsignedFile.Multi.Generic ) - warning

    22:15:41.0468 3232 IDriverT - detected UnsignedFile.Multi.Generic (1)

    22:15:41.0546 3232 idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

    22:15:41.0609 3232 idsvc - ok

    22:15:41.0625 3232 IMAPFILT.DLL - ok

    22:15:41.0656 3232 Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys

    22:15:41.0812 3232 Imapi - ok

    22:15:41.0859 3232 ImapiService C:\WINDOWS\system32\imapi.exe

    22:15:42.0000 3232 ImapiService - ok

    22:15:42.0015 3232 ini910u - ok

    22:15:42.0156 3232 IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys

    22:15:42.0453 3232 IntcAzAudAddService - ok

    22:15:42.0468 3232 IntelIde - ok

    22:15:42.0515 3232 intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys

    22:15:42.0656 3232 intelppm - ok

    22:15:42.0703 3232 Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys

    22:15:42.0875 3232 Ip6Fw - ok

    22:15:42.0890 3232 IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys

    22:15:43.0046 3232 IpFilterDriver - ok

    22:15:43.0062 3232 IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys

    22:15:43.0234 3232 IpInIp - ok

    22:15:43.0281 3232 IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys

    22:15:43.0437 3232 IpNat - ok

    22:15:43.0484 3232 iPod Service C:\Program Files\iPod\bin\iPodService.exe

    22:15:43.0531 3232 iPod Service - ok

    22:15:43.0562 3232 IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys

    22:15:43.0734 3232 IPSec - ok

    22:15:43.0765 3232 IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys

    22:15:43.0843 3232 IRENUM - ok

    22:15:43.0875 3232 isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys

    22:15:44.0031 3232 isapnp - ok

    22:15:44.0171 3232 JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe

    22:15:44.0203 3232 JavaQuickStarterService - ok

    22:15:44.0218 3232 Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys

    22:15:44.0390 3232 Kbdclass - ok

    22:15:44.0421 3232 kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys

    22:15:44.0578 3232 kbdhid - ok

    22:15:44.0593 3232 kmixer C:\WINDOWS\system32\drivers\kmixer.sys

    22:15:44.0765 3232 kmixer - ok

    22:15:44.0796 3232 KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys

    22:15:44.0828 3232 KSecDD - ok

    22:15:44.0875 3232 lanmanserver C:\WINDOWS\System32\srvsvc.dll

    22:15:44.0906 3232 lanmanserver - ok

    22:15:44.0953 3232 lanmanworkstation C:\WINDOWS\System32\wkssvc.dll

    22:15:44.0984 3232 lanmanworkstation - ok

    22:15:44.0984 3232 lbrtfdc - ok

    22:15:45.0046 3232 LexBceS C:\WINDOWS\system32\LEXBCES.EXE

    22:15:45.0062 3232 LexBceS ( UnsignedFile.Multi.Generic ) - warning

    22:15:45.0062 3232 LexBceS - detected UnsignedFile.Multi.Generic (1)

    22:15:45.0109 3232 LmHosts C:\WINDOWS\System32\lmhsvc.dll

    22:15:45.0281 3232 LmHosts - ok

    22:15:45.0312 3232 LPDSVC C:\WINDOWS\system32\tcpsvcs.exe

    22:15:45.0468 3232 LPDSVC - ok

    22:15:45.0468 3232 MAILFILT.DLL - ok

    22:15:45.0531 3232 MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

    22:15:45.0562 3232 MDM - ok

    22:15:45.0593 3232 Messenger C:\WINDOWS\System32\msgsvc.dll

    22:15:45.0765 3232 Messenger - ok

    22:15:45.0796 3232 mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys

    22:15:45.0953 3232 mnmdd - ok

    22:15:45.0984 3232 mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe

    22:15:46.0140 3232 mnmsrvc - ok

    22:15:46.0171 3232 Modem C:\WINDOWS\system32\drivers\Modem.sys

    22:15:46.0328 3232 Modem - ok

    22:15:46.0328 3232 Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys

    22:15:46.0500 3232 Mouclass - ok

    22:15:46.0531 3232 mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys

    22:15:46.0671 3232 mouhid - ok

    22:15:46.0703 3232 MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys

    22:15:46.0843 3232 MountMgr - ok

    22:15:46.0875 3232 MpFilter C:\WINDOWS\system32\DRIVERS\MpFilter.sys

    22:15:46.0906 3232 MpFilter - ok

    22:15:46.0921 3232 mraid35x - ok

    22:15:46.0921 3232 MRENDIS5 - ok

    22:15:46.0953 3232 MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys

    22:15:47.0093 3232 MRxDAV - ok

    22:15:47.0171 3232 MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys

    22:15:47.0281 3232 MRxSmb - ok

    22:15:47.0343 3232 MSDTC C:\WINDOWS\system32\msdtc.exe

    22:15:47.0500 3232 MSDTC - ok

    22:15:47.0593 3232 Msfs C:\WINDOWS\system32\drivers\Msfs.sys

    22:15:47.0796 3232 Msfs - ok

    22:15:47.0812 3232 MSIServer - ok

    22:15:47.0828 3232 MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys

    22:15:47.0984 3232 MSKSSRV - ok

    22:15:48.0093 3232 MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe

    22:15:48.0109 3232 MsMpSvc - ok

    22:15:48.0171 3232 MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys

    22:15:48.0328 3232 MSPCLOCK - ok

    22:15:48.0343 3232 MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys

    22:15:48.0500 3232 MSPQM - ok

    22:15:48.0562 3232 mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys

    22:15:48.0703 3232 mssmbios - ok

    22:15:48.0750 3232 MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys

    22:15:48.0921 3232 MSTEE - ok

    22:15:49.0093 3232 Mup C:\WINDOWS\system32\drivers\Mup.sys

    22:15:49.0250 3232 Mup - ok

    22:15:49.0328 3232 NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys

    22:15:49.0546 3232 NABTSFEC - ok

    22:15:49.0671 3232 napagent C:\WINDOWS\System32\qagentrt.dll

    22:15:49.0859 3232 napagent - ok

    22:15:49.0921 3232 NDIS C:\WINDOWS\system32\drivers\NDIS.sys

    22:15:50.0109 3232 NDIS - ok

    22:15:50.0140 3232 NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys

    22:15:50.0296 3232 NdisIP - ok

    22:15:50.0328 3232 NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys

    22:15:50.0359 3232 NdisTapi - ok

    22:15:50.0390 3232 Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys

    22:15:50.0546 3232 Ndisuio - ok

    22:15:50.0562 3232 NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys

    22:15:50.0718 3232 NdisWan - ok

    22:15:50.0765 3232 NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys

    22:15:50.0812 3232 NDProxy - ok

    22:15:50.0843 3232 NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys

    22:15:51.0015 3232 NetBIOS - ok

    22:15:51.0062 3232 NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys

    22:15:51.0203 3232 NetBT - ok

    22:15:51.0234 3232 NetDDE C:\WINDOWS\system32\netdde.exe

    22:15:51.0390 3232 NetDDE - ok

    22:15:51.0406 3232 NetDDEdsdm C:\WINDOWS\system32\netdde.exe

    22:15:51.0546 3232 NetDDEdsdm - ok

    22:15:51.0593 3232 Netlogon C:\WINDOWS\system32\lsass.exe

    22:15:51.0750 3232 Netlogon - ok

    22:15:51.0765 3232 Netman C:\WINDOWS\System32\netman.dll

    22:15:51.0906 3232 Netman - ok

    22:15:51.0953 3232 NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

    22:15:51.0968 3232 NetTcpPortSharing - ok

    22:15:52.0000 3232 NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys

    22:15:52.0140 3232 NIC1394 - ok

    22:15:52.0187 3232 Nla C:\WINDOWS\System32\mswsock.dll

    22:15:52.0218 3232 Nla - ok

    22:15:52.0234 3232 NNTPFILT.DLL - ok

    22:15:52.0250 3232 Npfs C:\WINDOWS\system32\drivers\Npfs.sys

    22:15:52.0406 3232 Npfs - ok

    22:15:52.0453 3232 Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys

    22:15:52.0656 3232 Ntfs - ok

    22:15:52.0671 3232 NtLmSsp C:\WINDOWS\system32\lsass.exe

    22:15:52.0828 3232 NtLmSsp - ok

    22:15:52.0859 3232 NtmsSvc C:\WINDOWS\system32\ntmssvc.dll

    22:15:53.0031 3232 NtmsSvc - ok

    22:15:53.0062 3232 Null C:\WINDOWS\system32\drivers\Null.sys

    22:15:53.0203 3232 Null - ok

    22:15:53.0234 3232 NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys

    22:15:53.0390 3232 NwlnkFlt - ok

    22:15:53.0406 3232 NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys

    22:15:53.0562 3232 NwlnkFwd - ok

    22:15:53.0578 3232 ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys

    22:15:53.0718 3232 ohci1394 - ok

    22:15:53.0750 3232 ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    22:15:53.0765 3232 ose - ok

    22:15:53.0796 3232 Parport C:\WINDOWS\system32\drivers\Parport.sys

    22:15:53.0953 3232 Parport - ok

    22:15:53.0984 3232 PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys

    22:15:54.0156 3232 PartMgr - ok

    22:15:54.0171 3232 ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys

    22:15:54.0312 3232 ParVdm - ok

    22:15:54.0343 3232 pccsmcfd C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys

    22:15:54.0375 3232 pccsmcfd - ok

    22:15:54.0390 3232 PCI C:\WINDOWS\system32\DRIVERS\pci.sys

    22:15:54.0531 3232 PCI - ok

    22:15:54.0546 3232 PCIDump - ok

    22:15:54.0546 3232 PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys

    22:15:54.0687 3232 PCIIde - ok

    22:15:54.0718 3232 Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys

    22:15:54.0875 3232 Pcmcia - ok

    22:15:54.0890 3232 PDCOMP - ok

    22:15:54.0906 3232 PDFRAME - ok

    22:15:54.0906 3232 PDRELI - ok

    22:15:54.0921 3232 PDRFRAME - ok

    22:15:54.0937 3232 perc2 - ok

    22:15:54.0937 3232 perc2hib - ok

    22:15:55.0000 3232 PlugPlay C:\WINDOWS\system32\services.exe

    22:15:55.0015 3232 PlugPlay - ok

    22:15:55.0031 3232 PolicyAgent C:\WINDOWS\system32\lsass.exe

    22:15:55.0187 3232 PolicyAgent - ok

    22:15:55.0187 3232 POP3FILT.DLL - ok

    22:15:55.0250 3232 PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys

    22:15:55.0406 3232 PptpMiniport - ok

    22:15:55.0406 3232 PROTECT.DLL - ok

    22:15:55.0453 3232 ProtectedStorage C:\WINDOWS\system32\lsass.exe

    22:15:55.0593 3232 ProtectedStorage - ok

    22:15:55.0609 3232 PSched C:\WINDOWS\system32\DRIVERS\psched.sys

    22:15:55.0750 3232 PSched - ok

    22:15:55.0781 3232 Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys

    22:15:55.0937 3232 Ptilink - ok

    22:15:55.0937 3232 ql1080 - ok

    22:15:55.0953 3232 Ql10wnt - ok

    22:15:55.0968 3232 ql12160 - ok

    22:15:55.0968 3232 ql1240 - ok

    22:15:55.0984 3232 ql1280 - ok

    22:15:56.0031 3232 RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys

    22:15:56.0171 3232 RasAcd - ok

    22:15:56.0203 3232 RasAuto C:\WINDOWS\System32\rasauto.dll

    22:15:56.0359 3232 RasAuto - ok

    22:15:56.0390 3232 Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys

    22:15:56.0546 3232 Rasl2tp - ok

    22:15:56.0593 3232 RasMan C:\WINDOWS\System32\rasmans.dll

    22:15:56.0765 3232 RasMan - ok

    22:15:56.0781 3232 RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys

    22:15:56.0953 3232 RasPppoe - ok

    22:15:56.0968 3232 Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys

    22:15:57.0125 3232 Raspti - ok

    22:15:57.0156 3232 Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys

    22:15:57.0312 3232 Rdbss - ok

    22:15:57.0343 3232 RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys

    22:15:57.0484 3232 RDPCDD - ok

    22:15:57.0531 3232 RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys

    22:15:57.0593 3232 RDPWD - ok

    22:15:57.0609 3232 RDSessMgr C:\WINDOWS\system32\sessmgr.exe

    22:15:57.0765 3232 RDSessMgr - ok

    22:15:57.0796 3232 redbook C:\WINDOWS\system32\DRIVERS\redbook.sys

    22:15:57.0953 3232 redbook - ok

    22:15:57.0984 3232 RemoteAccess C:\WINDOWS\System32\mprdim.dll

    22:15:58.0156 3232 RemoteAccess - ok

    22:15:58.0187 3232 RimUsb C:\WINDOWS\system32\Drivers\RimUsb.sys

    22:15:58.0203 3232 RimUsb - ok

    22:15:58.0234 3232 RimVSerPort C:\WINDOWS\system32\DRIVERS\RimSerial.sys

    22:15:58.0250 3232 RimVSerPort - ok

    22:15:58.0296 3232 ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys

    22:15:58.0421 3232 ROOTMODEM - ok

    22:15:58.0453 3232 RpcLocator C:\WINDOWS\system32\locator.exe

    22:15:58.0593 3232 RpcLocator - ok

    22:15:58.0609 3232 RpcSs C:\WINDOWS\system32\rpcss.dll

    22:15:58.0671 3232 RpcSs - ok

    22:15:58.0703 3232 RSVP C:\WINDOWS\system32\rsvp.exe

    22:15:58.0843 3232 RSVP - ok

    22:15:58.0859 3232 s494.sys - ok

    22:15:58.0875 3232 SamSs C:\WINDOWS\system32\lsass.exe

    22:15:59.0015 3232 SamSs - ok

    22:15:59.0046 3232 SCardSvr C:\WINDOWS\System32\SCardSvr.exe

    22:15:59.0187 3232 SCardSvr - ok

    22:15:59.0250 3232 Schedule C:\WINDOWS\system32\schedsvc.dll

    22:15:59.0390 3232 Schedule - ok

    22:15:59.0437 3232 Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys

    22:15:59.0515 3232 Secdrv - ok

    22:15:59.0546 3232 seclogon C:\WINDOWS\System32\seclogon.dll

    22:15:59.0703 3232 seclogon - ok

    22:15:59.0703 3232 SECRET.DLL - ok

    22:15:59.0734 3232 SENS C:\WINDOWS\system32\sens.dll

    22:15:59.0890 3232 SENS - ok

    22:15:59.0906 3232 serenum C:\WINDOWS\system32\DRIVERS\serenum.sys

    22:16:00.0046 3232 serenum - ok

    22:16:00.0062 3232 Serial C:\WINDOWS\system32\DRIVERS\serial.sys

    22:16:00.0218 3232 Serial - ok

    22:16:00.0296 3232 ServiceLayer c:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    22:16:00.0312 3232 ServiceLayer ( UnsignedFile.Multi.Generic ) - warning

    22:16:00.0312 3232 ServiceLayer - detected UnsignedFile.Multi.Generic (1)

    22:16:00.0406 3232 Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys

    22:16:00.0562 3232 Sfloppy - ok

    22:16:00.0625 3232 SharedAccess C:\WINDOWS\System32\ipnathlp.dll

    22:16:00.0781 3232 SharedAccess - ok

    22:16:00.0812 3232 ShellHWDetection C:\WINDOWS\System32\shsvcs.dll

    22:16:00.0828 3232 ShellHWDetection - ok

    22:16:00.0843 3232 Simbad - ok

    22:16:00.0890 3232 SiSGbeXP C:\WINDOWS\system32\DRIVERS\SiSGbeXP.sys

    22:16:00.0906 3232 SiSGbeXP - ok

    22:16:00.0953 3232 SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys

    22:16:01.0093 3232 SLIP - ok

    22:16:01.0125 3232 Sparrow - ok

    22:16:01.0156 3232 splitter C:\WINDOWS\system32\drivers\splitter.sys

    22:16:01.0296 3232 splitter - ok

    22:16:01.0328 3232 Spooler C:\WINDOWS\system32\spoolsv.exe

    22:16:01.0343 3232 Spooler - ok

    22:16:01.0390 3232 sr C:\WINDOWS\system32\DRIVERS\sr.sys

    22:16:01.0453 3232 sr - ok

    22:16:01.0500 3232 srservice C:\WINDOWS\system32\srsvc.dll

    22:16:01.0578 3232 srservice - ok

    22:16:01.0640 3232 Srv C:\WINDOWS\system32\DRIVERS\srv.sys

    22:16:01.0671 3232 Srv - ok

    22:16:01.0703 3232 sscdbus C:\WINDOWS\system32\DRIVERS\sscdbus.sys

    22:16:01.0718 3232 sscdbus - ok

    22:16:01.0750 3232 sscdmdfl C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys

    22:16:01.0765 3232 sscdmdfl - ok

    22:16:01.0781 3232 sscdmdm C:\WINDOWS\system32\DRIVERS\sscdmdm.sys

    22:16:01.0812 3232 sscdmdm - ok

    22:16:01.0843 3232 SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll

    22:16:01.0921 3232 SSDPSRV - ok

    22:16:01.0968 3232 stisvc C:\WINDOWS\system32\wiaservc.dll

    22:16:02.0125 3232 stisvc - ok

    22:16:02.0140 3232 streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys

    22:16:02.0296 3232 streamip - ok

    22:16:02.0312 3232 swenum C:\WINDOWS\system32\DRIVERS\swenum.sys

    22:16:02.0468 3232 swenum - ok

    22:16:02.0484 3232 swmidi C:\WINDOWS\system32\drivers\swmidi.sys

    22:16:02.0640 3232 swmidi - ok

    22:16:02.0656 3232 SwPrv - ok

    22:16:02.0671 3232 symc810 - ok

    22:16:02.0671 3232 symc8xx - ok

    22:16:02.0687 3232 sym_hi - ok

    22:16:02.0703 3232 sym_u3 - ok

    22:16:02.0734 3232 sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys

    22:16:02.0890 3232 sysaudio - ok

    22:16:02.0937 3232 SysmonLog C:\WINDOWS\system32\smlogsvc.exe

    22:16:03.0078 3232 SysmonLog - ok

    22:16:03.0109 3232 TapiSrv C:\WINDOWS\System32\tapisrv.dll

    22:16:03.0250 3232 TapiSrv - ok

    22:16:03.0296 3232 Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys

    22:16:03.0328 3232 Tcpip - ok

    22:16:03.0359 3232 TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys

    22:16:03.0515 3232 TDPIPE - ok

    22:16:03.0531 3232 TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys

    22:16:03.0703 3232 TDTCP - ok

    22:16:03.0734 3232 TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys

    22:16:03.0875 3232 TermDD - ok

    22:16:03.0937 3232 TermService C:\WINDOWS\System32\termsrv.dll

    22:16:04.0078 3232 TermService - ok

    22:16:04.0093 3232 Themes C:\WINDOWS\System32\shsvcs.dll

    22:16:04.0109 3232 Themes - ok

    22:16:04.0171 3232 TomTomHOMEService C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe

    22:16:04.0187 3232 TomTomHOMEService - ok

    22:16:04.0203 3232 TosIde - ok

    22:16:04.0250 3232 TrkWks C:\WINDOWS\system32\trkwks.dll

    22:16:04.0390 3232 TrkWks - ok

    22:16:04.0421 3232 Udfs C:\WINDOWS\system32\drivers\Udfs.sys

    22:16:04.0593 3232 Udfs - ok

    22:16:04.0609 3232 ultra - ok

    22:16:04.0671 3232 Update C:\WINDOWS\system32\DRIVERS\update.sys

    22:16:04.0843 3232 Update - ok

    22:16:04.0875 3232 upnphost C:\WINDOWS\System32\upnphost.dll

    22:16:04.0953 3232 upnphost - ok

    22:16:04.0953 3232 upperdev - ok

    22:16:04.0984 3232 UPS C:\WINDOWS\System32\ups.exe

    22:16:05.0125 3232 UPS - ok

    22:16:05.0171 3232 USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys

    22:16:05.0187 3232 USBAAPL - ok

    22:16:05.0218 3232 usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys

    22:16:05.0359 3232 usbaudio - ok

    22:16:05.0390 3232 usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys

    22:16:05.0546 3232 usbccgp - ok

    22:16:05.0578 3232 usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys

    22:16:05.0703 3232 usbehci - ok

    22:16:05.0765 3232 usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys

    22:16:05.0906 3232 usbhub - ok

    22:16:05.0953 3232 usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys

    22:16:06.0109 3232 usbohci - ok

    22:16:06.0140 3232 usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys

    22:16:06.0265 3232 usbprint - ok

    22:16:06.0296 3232 usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys

    22:16:06.0437 3232 usbscan - ok

    22:16:06.0484 3232 usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS

    22:16:06.0625 3232 usbstor - ok

    22:16:06.0671 3232 VComm C:\WINDOWS\system32\DRIVERS\VComm.sys

    22:16:06.0671 3232 VComm ( UnsignedFile.Multi.Generic ) - warning

    22:16:06.0671 3232 VComm - detected UnsignedFile.Multi.Generic (1)

    22:16:06.0718 3232 VcommMgr C:\WINDOWS\system32\Drivers\VcommMgr.sys

    22:16:06.0718 3232 VcommMgr ( UnsignedFile.Multi.Generic ) - warning

    22:16:06.0718 3232 VcommMgr - detected UnsignedFile.Multi.Generic (1)

    22:16:06.0750 3232 VgaSave C:\WINDOWS\System32\drivers\vga.sys

    22:16:06.0890 3232 VgaSave - ok

    22:16:06.0890 3232 ViaIde - ok

    22:16:06.0937 3232 VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys

    22:16:07.0078 3232 VolSnap - ok

    22:16:07.0125 3232 VSS C:\WINDOWS\System32\vssvc.exe

    22:16:07.0218 3232 VSS - ok

    22:16:07.0250 3232 W32Time C:\WINDOWS\system32\w32time.dll

    22:16:07.0390 3232 W32Time - ok

    22:16:07.0406 3232 Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys

    22:16:07.0562 3232 Wanarp - ok

    22:16:07.0609 3232 Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys

    22:16:07.0640 3232 Wdf01000 - ok

    22:16:07.0656 3232 WDICA - ok

    22:16:07.0703 3232 wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys

    22:16:07.0828 3232 wdmaud - ok

    22:16:07.0890 3232 WebClient C:\WINDOWS\System32\webclnt.dll

    22:16:08.0015 3232 WebClient - ok

    22:16:08.0109 3232 winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll

    22:16:08.0250 3232 winmgmt - ok

    22:16:08.0328 3232 WinRM C:\WINDOWS\system32\WsmSvc.dll

    22:16:08.0406 3232 WinRM - ok

    22:16:08.0453 3232 WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll

    22:16:08.0484 3232 WmdmPmSN - ok

    22:16:08.0515 3232 WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe

    22:16:08.0671 3232 WmiApSrv - ok

    22:16:08.0734 3232 WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe

    22:16:08.0812 3232 WMPNetworkSvc - ok

    22:16:08.0828 3232 WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys

    22:16:08.0859 3232 WpdUsb - ok

    22:16:08.0937 3232 WPFFontCache_v0400 c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe

    22:16:09.0000 3232 WPFFontCache_v0400 - ok

    22:16:09.0046 3232 WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys

    22:16:09.0203 3232 WS2IFSL - ok

    22:16:09.0234 3232 wscsvc C:\WINDOWS\system32\wscsvc.dll

    22:16:09.0375 3232 wscsvc - ok

    22:16:09.0390 3232 WSearch - ok

    22:16:09.0406 3232 WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS

    22:16:09.0562 3232 WSTCODEC - ok

    22:16:09.0609 3232 wuauserv C:\WINDOWS\system32\wuauserv.dll

    22:16:09.0750 3232 wuauserv - ok

    22:16:09.0796 3232 WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys

    22:16:09.0828 3232 WudfPf - ok

    22:16:09.0843 3232 WudfSvc C:\WINDOWS\System32\WUDFSvc.dll

    22:16:09.0859 3232 WudfSvc - ok

    22:16:09.0921 3232 WZCSVC C:\WINDOWS\System32\wzcsvc.dll

    22:16:10.0093 3232 WZCSVC - ok

    22:16:10.0109 3232 xcpip - ok

    22:16:10.0125 3232 xmlprov C:\WINDOWS\System32\xmlprov.dll

    22:16:10.0265 3232 xmlprov - ok

    22:16:10.0281 3232 xpsec - ok

    22:16:10.0312 3232 ================ Scan global ===============================

    22:16:10.0343 3232 C:\WINDOWS\system32\basesrv.dll

    22:16:10.0390 3232 C:\WINDOWS\system32\winsrv.dll

    22:16:10.0406 3232 C:\WINDOWS\system32\winsrv.dll

    22:16:10.0437 3232 C:\WINDOWS\system32\services.exe

    22:16:10.0437 3232 - ok

    22:16:10.0437 3232 ================ Scan MBR ==================================

    22:16:10.0468 3232 \Device\Harddisk0\DR0

    22:16:10.0671 3232 \Device\Harddisk0\DR0 - ok

    22:16:10.0671 3232 ================ Scan VBR ==================================

    22:16:10.0671 3232 \Device\Harddisk0\DR0\Partition1

    22:16:10.0671 3232 \Device\Harddisk0\DR0\Partition1 - ok

    22:16:10.0687 3232 ============================================================

    22:16:10.0687 3232 Scan finished

    22:16:10.0687 3232 ============================================================

    22:16:10.0796 3220 Detected object count: 13

    22:16:10.0796 3220 Actual detected object count: 13

    22:19:46.0359 3220 BlueletAudio ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0359 3220 BlueletAudio ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0359 3220 BT ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0359 3220 BT ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0359 3220 Btcsrusb ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0359 3220 Btcsrusb ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0359 3220 BTHidEnum ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0359 3220 BTHidEnum ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0359 3220 BTHidMgr ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0359 3220 BTHidMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0375 3220 cmudau ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0375 3220 cmudau ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0375 3220 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0375 3220 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0375 3220 FsUsbExService ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0375 3220 FsUsbExService ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0375 3220 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0375 3220 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0390 3220 LexBceS ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0390 3220 LexBceS ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0390 3220 ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0390 3220 ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0390 3220 VComm ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0390 3220 VComm ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:19:46.0390 3220 VcommMgr ( UnsignedFile.Multi.Generic ) - skipped by user

    22:19:46.0390 3220 VcommMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip

    22:21:06.0390 2856 Deinitialize success

  • fazantje

    Hoi Marcel,

    Je schreef:

    >>>aan het eind gaf ie gevonden treaths en skip aan en dan kon ik volgende doen

    hij heeft ze dan niet verwijderd zeker?<<<

    Nee, is niet verwijderd, maar dat moet ook niet, want het zijn legetieme bestanden;)

    Alles ziet er goed uit, dus gaan we opruimen.

    De volgende programma's en bijbehorende log bestanden mag je verwijderen:

    TDSSKiller.exe

    Malwarebytes Anti-Rootkit

    AdwCleaner via Deinstallatie knop als je het programma opstart.

    MBAM mag je houden, 1x in de week updaten en laten scannen.

    ComboFix via de onderstaande instructies:

    Ga naar Start.

    Kopieer en plak: Combofix /Uninstall in de startzoekbalk.

    Druk ENTER en bevestig met OK.

    Als het goed is krijg je dan een melding dat Combofix verwijderd werd.

    Leeg je prullenbak en verwijder nog even je systeemherstelpunten en maak een nieuwe aan, voor nieuwe aanmaken zie:

    1. Klik op Deze computer.

    2. Klik met de rechter muisknop op de betreffende schijf en klik op Eigenschappen.

    3. Ga naar het tabblad Algemeen en klik op Schijfopruiming.

    4. Ga naar ‘Meer opties’ en klik bij Systeemherstel op Opruimen.

    5. Als u alle herstelpunten op het meest recente na wilt verwijderen, klik dan op Ja.

    Succes,

    Huib;)

  • marcel

    gedaan

    dus we zijn klaar?

    zoja bedank huib en Ben

    supers

    gr Marcel,

  • fazantje

    Ook namens Ben,

    Graag gedaan.

    Groetjes Huib;)

  • fazantje

    Omdat dit topic is opgelost word het gesloten.

    Wilt U Uw topic als nog weer openen, stuur dan een privé bericht naar Ben of Huib (fazantje).

    Zij zullen dan het “slotje” er van af halen en het topic is weer geopend.

    Het AV team.

Dit topic is gesloten, er kunnen geen reacties meer worden geplaatst.