Het is nu za mei 25, 2013 11:33 pm

Alle tijden zijn GMT + 1 uur [ Zomertijd ]




Dit onderwerp is gesloten, je kunt geen berichten wijzigen of nieuwe antwoorden plaatsen  [ 6 berichten ] 
Auteur Bericht
 Berichttitel: CPU Loopt max
BerichtGeplaatst: di maart 13, 2012 6:51 pm 
Offline
Lid
Avatar gebruiker

Geregistreerd: di maart 13, 2012 3:30 pm
Berichten: 3
Woonplaats: Winterswijk
Besturingssysteem: win 7pro en ultimate 64 bit
Bescherming: microsoft essentials en Avira
Hoi :wink:

Mijn cpu loopt bijna continu 80 tot 90 % .
Ik heb malwarebytes full scan niets gevonden en schoon gemaakt met ccleaner zoals het op de forum wordt uitgelegd .
Ook heb ik veelal niet gebruikte programma,s verwijderd .
Meschien dat een HiJack log iets meer kan vertellen .
Taakbeheer geeft wel aan dat google chrome en svchost veel cpu trekt ?

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:50:34, on 13-3-2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\WIDCOMM\Bluetooth Software\Bluetooth Headset Helper.exe
C:\Users\Sydney\Downloads\drivermax (1).exe
C:\Users\Sydney\AppData\Local\Temp\is-2PDM0.tmp\drivermax (1).tmp
C:\Users\Sydney\Downloads\drivermax (1).exe
C:\Users\Sydney\AppData\Local\Temp\is-FME1P.tmp\drivermax (1).tmp
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Sydney\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={9B5BD6D8-114B-4C83-B80C-411E6E83480C}&mid=633417c07b0847d19d92d16d38b42699-a9bcdaa11f3a1f7b96b249da38ba108a4d1e512a&lang=nl&ds=is015&pr=sa&d=2012-03-13 17:38:27&v=10.0.0.7&sap=hp
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {fcbf663e-8530-46f8-a880-ac5abe9d2b23} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: Messenger Plus! Community SmartbarEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - mscoree.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Messenger Plus! Community Smartbar - {ae07101b-46d4-4a98-af68-0333ea26e113} - mscoree.dll (file missing)
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKCU\..\Run: [Predator] C:\Program Files\Predator2\Predator.exe /AUTORUN
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files (x86)\Paltalk Messenger\Paltalk.exe
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/Mi ... b56986.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BB872A6A-A673-415A-8873-7B3382EF8282}: NameServer = 192.168.2.254,192.168.1.254
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avira Planner (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: gogo6 gogoCLIENT (gogoc) - gogo6, Inc. - C:\Program Files\gogo6\gogoCLIENT\gogoc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Kinoni Service (KinoniSvc) - Unknown owner - C:\Program Files (x86)\Kinoni\KinoniSvc.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Predator ACE (PredatorACE) - Montpellier-Informatique - C:\Program Files\Predator2\PredatorACE.exe
O23 - Service: Protected Storage (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Procedure Call (RPC) Locator (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Print Spooler (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WMI Performance Adapter (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: ZAtheros Wlan Agent - Atheros - C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe

--
End of file - 13723 bytes

_________________
Was je ondergoed niet te heet !


Omhoog
 Profiel  
 
 Berichttitel: Re: CPU Loopt max
BerichtGeplaatst: wo maart 14, 2012 5:54 pm 
Offline
Moderator
Avatar gebruiker

Geregistreerd: wo apr 13, 2005 3:54 pm
Berichten: 30551
Woonplaats: Kotje aan de kust.
Besturingssysteem: Windows 7
Bescherming: Malwarebytes pro
Download TDSSKiller en plaats het op je bureaublad.
  • Pak de bestanden in tdsskiller.zip uit.
  • Open de map tdsskiller en dubbelklik op TDSSKiller.exe om de tool te starten.
  • Let op!!! Windows Vista & 7 gebruikers dienen TDSSkiller als administrator uit te voeren "Rechtermuisknop uitvoeren als",
  • Als er door TDSSkiller een update wordt gevonden klikt u op de knop "Load update"
    Afbeelding
  • Een nieuwe versie van TDSSkiller zal nu gedownload worden en sla deze op het bureaublad op.
  • Start nu TDSSkiller opnieuw.
  • Klik op "Change parameters" en zorg dat de onderstaande opties allemaal aangevinkt zijn.
    Afbeelding
  • Klik op de knop "Start Scan" en volg de instructies.
  • Wanneer de scan klaar is klik je op de knop "Report".
  • Selecteer de inhoud (log) en plaats deze in uw volgende bericht.
Wanneer er een herstart nodig was, vind je de logfile in C:\TDSSKiller.[Version]_[Date]_[Time]_log.txt

De unsigned files skip je, TDSS File System laat je verwijderen of in quarantaine zetten, delete of copy to quarantine
Rootkit.Boot.SST.b en anderen zoals Sinowal, ZeroAccess of Whistler laat je herstellen Cure.



Download OTL naar je Bureaublad
  • Dubbelklik op OTL.com om het programma te openen. Zorg ervoor dat all andere vensters gesloten zijn, en laat het programma ongestoord zijn werk doen.
  • Zet een vinkje bij Scan All Users.
  • Klik op de knop Quick Scan. Verander de instellingen van OTL niet, tenzij ik je hiervoor specifiek instructies geef. De scan zal niet heel erg lang duren.
    • Er zullen twee Kladblok-vensters geopend worden wanneer de scan klaar is. OTL.Txt en Extras.Txt. Deze bestanden zijn opgeslagen in dezelfde locatie als OTL.
    • Kopieer (Bewerken->Alles selecteren, Bewerken->Kopiëren) en plak (Bewerken->Alles selecteren, Bewerken->Plakken) de inhoud van deze twee bestanden één voor één in je volgende bericht.

_________________
Afbeelding
Goed geholpen hier, overweeg een donatie:
loglezer worden?
Lid van Team Opleiding.
tips
traagheidtips


Omhoog
 Profiel  
 
 Berichttitel: Re: CPU Loopt max
BerichtGeplaatst: vr maart 16, 2012 12:33 pm 
Offline
Lid
Avatar gebruiker

Geregistreerd: di maart 13, 2012 3:30 pm
Berichten: 3
Woonplaats: Winterswijk
Besturingssysteem: win 7pro en ultimate 64 bit
Bescherming: microsoft essentials en Avira
Hoi Superr

Eric ik heb een log
Hoop dat je er wijs uit word


11:29:27.0858 5240 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43
11:29:28.0287 5240 ============================================================
11:29:28.0287 5240 Current date / time: 2012/03/16 11:29:28.0287
11:29:28.0287 5240 SystemInfo:
11:29:28.0287 5240
11:29:28.0287 5240 OS Version: 6.1.7601 ServicePack: 1.0
11:29:28.0287 5240 Product type: Workstation
11:29:28.0287 5240 ComputerName: SYDNEY_NOTEBOOK
11:29:28.0297 5240 UserName: Sydney
11:29:28.0297 5240 Windows directory: C:\Windows
11:29:28.0297 5240 System windows directory: C:\Windows
11:29:28.0297 5240 Running under WOW64
11:29:28.0297 5240 Processor architecture: Intel x64
11:29:28.0297 5240 Number of processors: 2
11:29:28.0297 5240 Page size: 0x1000
11:29:28.0297 5240 Boot type: Normal boot
11:29:28.0297 5240 ============================================================
11:29:29.0503 5240 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0x5249A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x2E, Type 'K0', Flags 0x00000040
11:29:29.0526 5240 Drive \Device\Harddisk1\DR1 - Size: 0x3F1C0000 (0.99 Gb), SectorSize: 0x200, Cylinders: 0x80, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:29:29.0530 5240 \Device\Harddisk0\DR0:
11:29:29.0530 5240 MBR used
11:29:29.0530 5240 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:29:29.0530 5240 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x39752420
11:29:29.0530 5240 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x39785000, BlocksNum 0xC00000
11:29:29.0530 5240 \Device\Harddisk1\DR1:
11:29:29.0532 5240 MBR used
11:29:29.0645 5240 Initialize success
11:29:29.0645 5240 ============================================================
11:29:39.0639 1704 ============================================================
11:29:39.0639 1704 Scan started
11:29:39.0639 1704 Mode: Manual; SigCheck; TDLFS;
11:29:39.0639 1704 ============================================================
11:29:44.0508 3220 ============================================================
11:29:44.0508 3220 Scan started
11:29:44.0508 3220 Mode: Manual; SigCheck; TDLFS;
11:29:44.0508 3220 ============================================================
11:29:45.0115 3220 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
11:29:45.0251 3220 1394ohci - ok
11:29:45.0413 3220 Accelerometer (5c368f4b04ed2a923e6afca2d37baff5) C:\Windows\system32\DRIVERS\Accelerometer.sys
11:29:45.0490 3220 Accelerometer - ok
11:29:45.0619 3220 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
11:29:45.0708 3220 ACPI - ok
11:29:45.0868 3220 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
11:29:46.0044 3220 AcpiPmi - ok
11:29:46.0190 3220 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
11:29:46.0240 3220 adp94xx - ok
11:29:46.0408 3220 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
11:29:46.0435 3220 adpahci - ok
11:29:46.0578 3220 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
11:29:46.0597 3220 adpu320 - ok
11:29:46.0740 3220 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
11:29:46.0874 3220 AFD - ok
11:29:46.0981 3220 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
11:29:46.0996 3220 agp440 - ok
11:29:47.0105 3220 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
11:29:47.0119 3220 aliide - ok
11:29:47.0272 3220 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
11:29:47.0285 3220 amdide - ok
11:29:47.0397 3220 amdiox64 (6a2eeb0c4133b20773bb3dd0b7b377b4) C:\Windows\system32\DRIVERS\amdiox64.sys
11:29:47.0409 3220 amdiox64 - ok
11:29:47.0524 3220 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
11:29:47.0563 3220 AmdK8 - ok
11:29:48.0079 3220 amdkmdag (56d6631761ec37745f0df16bcdc4caf4) C:\Windows\system32\DRIVERS\atikmdag.sys
11:29:48.0568 3220 amdkmdag - ok
11:29:48.0687 3220 amdkmdap (2d9005ea0bfd25c740e53c8dd3c069e0) C:\Windows\system32\DRIVERS\atikmpag.sys
11:29:48.0727 3220 amdkmdap - ok
11:29:48.0849 3220 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
11:29:48.0890 3220 AmdPPM - ok
11:29:49.0049 3220 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
11:29:49.0066 3220 amdsata - ok
11:29:49.0187 3220 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
11:29:49.0219 3220 amdsbs - ok
11:29:49.0319 3220 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
11:29:49.0333 3220 amdxata - ok
11:29:49.0469 3220 amd_sata (628eb24b46dac369625883dce82eee26) C:\Windows\system32\DRIVERS\amd_sata.sys
11:29:49.0492 3220 amd_sata - ok
11:29:49.0643 3220 amd_xata (b9657cf8cb2a3fa53209a2638e8151b2) C:\Windows\system32\DRIVERS\amd_xata.sys
11:29:49.0660 3220 amd_xata - ok
11:29:49.0815 3220 AODDriver4.1 (0e2ba6dc63e9cf3bf275856735a3e3be) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
11:29:49.0895 3220 AODDriver4.1 - ok
11:29:50.0131 3220 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
11:29:50.0627 3220 AppID - ok
11:29:50.0852 3220 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
11:29:50.0895 3220 arc - ok
11:29:51.0124 3220 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
11:29:51.0140 3220 arcsas - ok
11:29:51.0301 3220 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
11:29:51.0356 3220 AsyncMac - ok
11:29:51.0474 3220 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
11:29:51.0490 3220 atapi - ok
11:29:51.0750 3220 athr (7d0398396727195cc73d703001d3cff4) C:\Windows\system32\DRIVERS\athrx.sys
11:29:51.0997 3220 athr - ok
11:29:52.0238 3220 AtiHDAudioService (2b3b05c0a7768bf033217eb8f33f9c35) C:\Windows\system32\drivers\AtihdW76.sys
11:29:52.0255 3220 AtiHDAudioService - ok
11:29:52.0760 3220 atikmdag (56d6631761ec37745f0df16bcdc4caf4) C:\Windows\system32\DRIVERS\atikmdag.sys
11:29:52.0955 3220 atikmdag - ok
11:29:53.0083 3220 avgntflt (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys
11:29:53.0102 3220 avgntflt - ok
11:29:53.0236 3220 avipbb (852e3c0a60d368c487949e55ad52a47f) C:\Windows\system32\DRIVERS\avipbb.sys
11:29:53.0255 3220 avipbb - ok
11:29:53.0374 3220 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys
11:29:53.0389 3220 avkmgr - ok
11:29:53.0545 3220 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
11:29:53.0588 3220 b06bdrv - ok
11:29:53.0730 3220 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
11:29:53.0768 3220 b57nd60a - ok
11:29:53.0902 3220 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
11:29:53.0975 3220 Beep - ok
11:29:54.0140 3220 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
11:29:54.0166 3220 blbdrive - ok
11:29:54.0299 3220 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
11:29:54.0330 3220 bowser - ok
11:29:54.0456 3220 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
11:29:54.0480 3220 BrFiltLo - ok
11:29:54.0706 3220 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
11:29:54.0740 3220 BrFiltUp - ok
11:29:54.0852 3220 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
11:29:54.0887 3220 Brserid - ok
11:29:55.0015 3220 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
11:29:55.0055 3220 BrSerWdm - ok
11:29:55.0156 3220 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
11:29:55.0193 3220 BrUsbMdm - ok
11:29:55.0312 3220 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
11:29:55.0365 3220 BrUsbSer - ok
11:29:55.0478 3220 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\DRIVERS\BthEnum.sys
11:29:55.0519 3220 BthEnum - ok
11:29:55.0682 3220 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
11:29:55.0751 3220 BTHMODEM - ok
11:29:55.0977 3220 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
11:29:56.0026 3220 BthPan - ok
11:29:56.0166 3220 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\system32\Drivers\BTHport.sys
11:29:56.0233 3220 BTHPORT - ok
11:29:56.0346 3220 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\system32\Drivers\BTHUSB.sys
11:29:56.0375 3220 BTHUSB - ok
11:29:56.0537 3220 btwampfl - ok
11:29:56.0629 3220 btwaudio - ok
11:29:56.0708 3220 btwavdt - ok
11:29:56.0795 3220 BTWDPAN (41933521a618475644b6e8d8487af326) C:\Windows\system32\DRIVERS\btwdpan.sys
11:29:56.0829 3220 BTWDPAN - ok
11:29:56.0920 3220 btwl2cap - ok
11:29:56.0939 3220 btwrchid - ok
11:29:57.0089 3220 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
11:29:57.0226 3220 cdfs - ok
11:29:57.0419 3220 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
11:29:57.0472 3220 cdrom - ok
11:29:57.0709 3220 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
11:29:57.0767 3220 circlass - ok
11:29:58.0025 3220 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
11:29:58.0061 3220 CLFS - ok
11:29:58.0668 3220 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
11:29:58.0880 3220 CmBatt - ok
11:29:59.0145 3220 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
11:29:59.0164 3220 cmdide - ok
11:29:59.0401 3220 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
11:29:59.0476 3220 CNG - ok
11:29:59.0751 3220 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
11:29:59.0795 3220 Compbatt - ok
11:30:00.0056 3220 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
11:30:00.0110 3220 CompositeBus - ok
11:30:00.0683 3220 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
11:30:00.0698 3220 crcdisk - ok
11:30:00.0995 3220 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
11:30:01.0077 3220 CSC - ok
11:30:01.0319 3220 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
11:30:01.0399 3220 DfsC - ok
11:30:01.0627 3220 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
11:30:01.0700 3220 discache - ok
11:30:01.0869 3220 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
11:30:01.0886 3220 Disk - ok
11:30:02.0108 3220 dmvsc (5db085a8a6600be6401f2b24eecb5415) C:\Windows\system32\drivers\dmvsc.sys
11:30:02.0156 3220 dmvsc - ok
11:30:02.0363 3220 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
11:30:02.0406 3220 drmkaud - ok
11:30:02.0577 3220 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
11:30:02.0640 3220 DXGKrnl - ok
11:30:02.0980 3220 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
11:30:03.0165 3220 ebdrv - ok
11:30:03.0307 3220 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
11:30:03.0340 3220 elxstor - ok
11:30:03.0506 3220 enecir (524c79054636d2e5751169005006460b) C:\Windows\system32\DRIVERS\enecir.sys
11:30:03.0545 3220 enecir - ok
11:30:03.0750 3220 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
11:30:03.0779 3220 ErrDev - ok
11:30:03.0987 3220 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
11:30:04.0078 3220 exfat - ok
11:30:04.0289 3220 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
11:30:04.0395 3220 fastfat - ok
11:30:04.0564 3220 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys
11:30:04.0644 3220 fdc - ok
11:30:04.0799 3220 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
11:30:04.0816 3220 FileInfo - ok
11:30:04.0910 3220 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
11:30:04.0979 3220 Filetrace - ok
11:30:05.0134 3220 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys
11:30:05.0151 3220 flpydisk - ok
11:30:05.0270 3220 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
11:30:05.0295 3220 FltMgr - ok
11:30:05.0554 3220 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
11:30:05.0573 3220 FsDepends - ok
11:30:05.0715 3220 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
11:30:05.0730 3220 Fs_Rec - ok
11:30:05.0884 3220 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
11:30:05.0934 3220 fvevol - ok
11:30:06.0072 3220 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
11:30:06.0086 3220 gagp30kx - ok
11:30:06.0246 3220 gogoTunnelDevice (65961d99898eb8b829d1bbd112c762c2) C:\Windows\system32\DRIVERS\gogotun.sys
11:30:06.0261 3220 gogoTunnelDevice - ok
11:30:06.0443 3220 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
11:30:06.0469 3220 hcw85cir - ok
11:30:06.0597 3220 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
11:30:06.0674 3220 HdAudAddService - ok
11:30:06.0816 3220 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys
11:30:06.0867 3220 HDAudBus - ok
11:30:06.0949 3220 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
11:30:06.0976 3220 HidBatt - ok
11:30:07.0084 3220 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
11:30:07.0139 3220 HidBth - ok
11:30:07.0282 3220 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
11:30:07.0316 3220 HidIr - ok
11:30:07.0481 3220 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
11:30:07.0526 3220 HidUsb - ok
11:30:07.0736 3220 hpdskflt (4e0bec0f78096ffd6d3314b497fc49d3) C:\Windows\system32\DRIVERS\hpdskflt.sys
11:30:07.0757 3220 hpdskflt - ok
11:30:07.0984 3220 HpqKbFiltr (9af482d058be59cc28bce52e7c4b747c) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
11:30:08.0019 3220 HpqKbFiltr - ok
11:30:08.0138 3220 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
11:30:08.0157 3220 HpSAMD - ok
11:30:08.0349 3220 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
11:30:08.0435 3220 HTTP - ok
11:30:08.0640 3220 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
11:30:08.0654 3220 hwpolicy - ok
11:30:08.0834 3220 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
11:30:08.0860 3220 i8042prt - ok
11:30:08.0960 3220 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
11:30:08.0992 3220 iaStorV - ok
11:30:09.0104 3220 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
11:30:09.0117 3220 iirsp - ok
11:30:09.0276 3220 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
11:30:09.0289 3220 intelide - ok
11:30:09.0416 3220 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\drivers\intelppm.sys
11:30:09.0484 3220 intelppm - ok
11:30:09.0717 3220 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:30:09.0770 3220 IpFilterDriver - ok
11:30:09.0999 3220 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
11:30:10.0032 3220 IPMIDRV - ok
11:30:10.0182 3220 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
11:30:10.0254 3220 IPNAT - ok
11:30:10.0396 3220 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
11:30:10.0421 3220 IRENUM - ok
11:30:10.0534 3220 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
11:30:10.0547 3220 isapnp - ok
11:30:10.0733 3220 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
11:30:10.0752 3220 iScsiPrt - ok
11:30:10.0881 3220 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
11:30:10.0895 3220 kbdclass - ok
11:30:11.0102 3220 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
11:30:11.0165 3220 kbdhid - ok
11:30:11.0299 3220 KeyScrambler (e3cf421210ebddacb4590ae67a0226dc) C:\Windows\system32\drivers\keyscrambler.sys
11:30:11.0322 3220 KeyScrambler - ok
11:30:11.0488 3220 kinonivd (22246d979e88e934a92e01d650880179) C:\Windows\system32\DRIVERS\kinonivd.sys
11:30:11.0620 3220 kinonivd ( UnsignedFile.Multi.Generic ) - warning
11:30:11.0620 3220 kinonivd - detected UnsignedFile.Multi.Generic (1)
11:30:12.0220 3220 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
11:30:12.0236 3220 KSecDD - ok
11:30:12.0433 3220 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
11:30:12.0449 3220 KSecPkg - ok
11:30:12.0761 3220 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
11:30:12.0845 3220 ksthunk - ok
11:30:12.0997 3220 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
11:30:13.0076 3220 lltdio - ok
11:30:13.0236 3220 LPCFilter (2825a71e7501cb33b3b9f856610c729d) C:\Windows\system32\DRIVERS\LPCFilter.sys
11:30:13.0249 3220 LPCFilter - ok
11:30:13.0435 3220 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
11:30:13.0452 3220 LSI_FC - ok
11:30:13.0616 3220 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
11:30:13.0631 3220 LSI_SAS - ok
11:30:14.0149 3220 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
11:30:14.0169 3220 LSI_SAS2 - ok
11:30:14.0338 3220 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
11:30:14.0354 3220 LSI_SCSI - ok
11:30:14.0632 3220 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
11:30:14.0718 3220 luafv - ok
11:30:14.0834 3220 MBAMProtector (79da94b35371b9e7104460c7693dcb2c) C:\Windows\system32\drivers\mbam.sys
11:30:14.0847 3220 MBAMProtector - ok
11:30:14.0997 3220 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
11:30:15.0012 3220 megasas - ok
11:30:15.0258 3220 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
11:30:15.0279 3220 MegaSR - ok
11:30:15.0413 3220 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
11:30:15.0463 3220 Modem - ok
11:30:15.0671 3220 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
11:30:15.0701 3220 monitor - ok
11:30:15.0824 3220 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
11:30:15.0837 3220 mouclass - ok
11:30:16.0070 3220 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
11:30:16.0124 3220 mouhid - ok
11:30:16.0622 3220 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
11:30:16.0639 3220 mountmgr - ok
11:30:16.0853 3220 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
11:30:16.0870 3220 mpio - ok
11:30:17.0026 3220 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
11:30:17.0083 3220 mpsdrv - ok
11:30:17.0222 3220 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
11:30:17.0260 3220 MRxDAV - ok
11:30:17.0404 3220 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
11:30:17.0457 3220 mrxsmb - ok
11:30:17.0606 3220 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:30:17.0639 3220 mrxsmb10 - ok
11:30:17.0773 3220 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:30:17.0809 3220 mrxsmb20 - ok
11:30:17.0946 3220 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
11:30:17.0958 3220 msahci - ok
11:30:18.0129 3220 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
11:30:18.0145 3220 msdsm - ok
11:30:18.0337 3220 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
11:30:18.0397 3220 Msfs - ok
11:30:18.0587 3220 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
11:30:18.0644 3220 mshidkmdf - ok
11:30:18.0822 3220 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
11:30:18.0838 3220 msisadrv - ok
11:30:18.0997 3220 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
11:30:19.0073 3220 MSKSSRV - ok
11:30:19.0211 3220 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
11:30:19.0346 3220 MSPCLOCK - ok
11:30:19.0548 3220 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
11:30:19.0642 3220 MSPQM - ok
11:30:19.0763 3220 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
11:30:19.0787 3220 MsRPC - ok
11:30:19.0974 3220 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
11:30:19.0988 3220 mssmbios - ok
11:30:20.0120 3220 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
11:30:20.0204 3220 MSTEE - ok
11:30:20.0387 3220 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
11:30:20.0419 3220 MTConfig - ok
11:30:20.0616 3220 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
11:30:20.0634 3220 Mup - ok
11:30:20.0753 3220 MxEFUF (755dc4bdf89460c98deb2d7e6a2aa901) C:\Windows\system32\DRIVERS\MxEFUF64.sys
11:30:20.0802 3220 MxEFUF - ok
11:30:21.0017 3220 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
11:30:21.0079 3220 NativeWifiP - ok
11:30:21.0216 3220 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
11:30:21.0257 3220 NDIS - ok
11:30:21.0402 3220 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
11:30:21.0476 3220 NdisCap - ok
11:30:21.0629 3220 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
11:30:21.0696 3220 NdisTapi - ok
11:30:21.0915 3220 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
11:30:22.0000 3220 Ndisuio - ok
11:30:22.0193 3220 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
11:30:22.0260 3220 NdisWan - ok
11:30:22.0432 3220 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
11:30:22.0549 3220 NDProxy - ok
11:30:22.0683 3220 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
11:30:22.0870 3220 NetBIOS - ok
11:30:22.0970 3220 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
11:30:23.0050 3220 NetBT - ok
11:30:23.0227 3220 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
11:30:23.0243 3220 nfrd960 - ok
11:30:23.0407 3220 nmwcd (5fe6f8c05f0769bbb74afac11453b182) C:\Windows\system32\drivers\ccdcmbx64.sys
11:30:23.0468 3220 nmwcd - ok
11:30:23.0640 3220 nmwcdc (73c929945c0850b8d1fe2fea05fdf05d) C:\Windows\system32\drivers\ccdcmbox64.sys
11:30:23.0708 3220 nmwcdc - ok
11:30:23.0866 3220 nmwcdnsucx64 (697ca586209e022d15dd0c838b235d6a) C:\Windows\system32\drivers\nmwcdnsucx64.sys
11:30:23.0912 3220 nmwcdnsucx64 - ok
11:30:24.0017 3220 nmwcdnsux64 (292ddf13f91f2cb2482b57aacd6aeb9b) C:\Windows\system32\drivers\nmwcdnsux64.sys
11:30:24.0066 3220 nmwcdnsux64 - ok
11:30:24.0171 3220 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
11:30:24.0249 3220 Npfs - ok
11:30:24.0379 3220 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
11:30:24.0490 3220 nsiproxy - ok
11:30:24.0722 3220 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
11:30:24.0797 3220 Ntfs - ok
11:30:24.0978 3220 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
11:30:25.0043 3220 Null - ok
11:30:25.0234 3220 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
11:30:25.0251 3220 nvraid - ok
11:30:25.0359 3220 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
11:30:25.0376 3220 nvstor - ok
11:30:25.0473 3220 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
11:30:25.0488 3220 nv_agp - ok
11:30:25.0644 3220 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
11:30:25.0678 3220 ohci1394 - ok
11:30:25.0861 3220 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys
11:30:25.0881 3220 Parport - ok
11:30:26.0054 3220 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
11:30:26.0073 3220 partmgr - ok
11:30:26.0321 3220 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
11:30:26.0355 3220 pccsmcfd - ok
11:30:26.0479 3220 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
11:30:26.0508 3220 pci - ok
11:30:26.0694 3220 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
11:30:26.0710 3220 pciide - ok
11:30:26.0866 3220 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
11:30:26.0885 3220 pcmcia - ok
11:30:27.0053 3220 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
11:30:27.0070 3220 pcw - ok
11:30:27.0236 3220 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
11:30:27.0316 3220 PEAUTH - ok
11:30:27.0544 3220 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
11:30:27.0598 3220 PptpMiniport - ok
11:30:27.0771 3220 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
11:30:27.0813 3220 Processor - ok
11:30:27.0939 3220 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
11:30:27.0990 3220 Psched - ok
11:30:28.0174 3220 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
11:30:28.0246 3220 ql2300 - ok
11:30:28.0429 3220 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
11:30:28.0446 3220 ql40xx - ok
11:30:28.0631 3220 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
11:30:28.0694 3220 QWAVEdrv - ok
11:30:28.0865 3220 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
11:30:28.0925 3220 RasAcd - ok
11:30:29.0070 3220 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
11:30:29.0122 3220 RasAgileVpn - ok
11:30:29.0318 3220 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
11:30:29.0385 3220 Rasl2tp - ok
11:30:29.0606 3220 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
11:30:29.0683 3220 RasPppoe - ok
11:30:29.0888 3220 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
11:30:29.0947 3220 RasSstp - ok
11:30:30.0108 3220 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
11:30:30.0175 3220 rdbss - ok
11:30:30.0344 3220 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
11:30:30.0377 3220 rdpbus - ok
11:30:30.0531 3220 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
11:30:30.0605 3220 RDPCDD - ok
11:30:30.0793 3220 RDPDISPM (bdf2db2f19945afaf102a2c03062efb1) C:\Windows\system32\DRIVERS\rdpdispm.sys
11:30:30.0827 3220 RDPDISPM ( UnsignedFile.Multi.Generic ) - warning
11:30:30.0827 3220 RDPDISPM - detected UnsignedFile.Multi.Generic (1)
11:30:31.0396 3220 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
11:30:31.0508 3220 RDPDR - ok
11:30:31.0623 3220 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
11:30:31.0721 3220 RDPENCDD - ok
11:30:31.0842 3220 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
11:30:31.0900 3220 RDPREFMP - ok
11:30:32.0029 3220 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
11:30:32.0065 3220 RdpVideoMiniport - ok
11:30:32.0162 3220 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
11:30:32.0191 3220 RDPWD - ok
11:30:32.0316 3220 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
11:30:32.0342 3220 rdyboost - ok
11:30:32.0519 3220 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
11:30:32.0576 3220 RFCOMM - ok
11:30:32.0761 3220 RMCAST (caf88d6573d21cd2aa27001ddbfdc74d) C:\Windows\system32\DRIVERS\RMCAST.sys
11:30:32.0830 3220 RMCAST - ok
11:30:32.0986 3220 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
11:30:33.0055 3220 rspndr - ok
11:30:33.0128 3220 RSUSBSTOR - ok
11:30:33.0210 3220 RTHDMIAzAudService (c20f64fcd5e2b40310a1774495877acd) C:\Windows\system32\drivers\RtHDMIVX.sys
11:30:33.0233 3220 RTHDMIAzAudService - ok
11:30:33.0378 3220 RTL8167 (6cf9db101a75360e98659f823852e540) C:\Windows\system32\DRIVERS\Rt64win7.sys
11:30:33.0433 3220 RTL8167 - ok
11:30:33.0539 3220 RtsUIR - ok
11:30:33.0699 3220 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
11:30:33.0727 3220 s3cap - ok
11:30:33.0912 3220 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
11:30:33.0929 3220 sbp2port - ok
11:30:34.0032 3220 SBRE - ok
11:30:34.0219 3220 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
11:30:34.0293 3220 scfilter - ok
11:30:34.0437 3220 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
11:30:34.0525 3220 secdrv - ok
11:30:34.0657 3220 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys
11:30:34.0685 3220 Serenum - ok
11:30:34.0816 3220 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys
11:30:34.0860 3220 Serial - ok
11:30:34.0971 3220 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
11:30:35.0018 3220 sermouse - ok
11:30:35.0182 3220 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
11:30:35.0213 3220 sffdisk - ok
11:30:35.0350 3220 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
11:30:35.0394 3220 sffp_mmc - ok
11:30:35.0639 3220 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
11:30:35.0787 3220 sffp_sd - ok
11:30:36.0007 3220 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
11:30:36.0034 3220 sfloppy - ok
11:30:36.0206 3220 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
11:30:36.0220 3220 SiSRaid2 - ok
11:30:36.0351 3220 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
11:30:36.0367 3220 SiSRaid4 - ok
11:30:36.0512 3220 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
11:30:36.0580 3220 Smb - ok
11:30:36.0794 3220 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
11:30:36.0810 3220 spldr - ok
11:30:37.0015 3220 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
11:30:37.0071 3220 srv - ok
11:30:37.0243 3220 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
11:30:37.0302 3220 srv2 - ok
11:30:37.0483 3220 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
11:30:37.0549 3220 srvnet - ok
11:30:37.0759 3220 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
11:30:37.0780 3220 stexstor - ok
11:30:37.0958 3220 STHDA (dffbc024dfc7bb05b2129e05cbc7a201) C:\Windows\system32\DRIVERS\stwrt64.sys
11:30:37.0996 3220 STHDA - ok
11:30:38.0147 3220 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
11:30:38.0165 3220 storflt - ok
11:30:38.0279 3220 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
11:30:38.0295 3220 storvsc - ok
11:30:38.0439 3220 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
11:30:38.0453 3220 swenum - ok
11:30:38.0590 3220 Synth3dVsc (c3a39c4079305480972d29c44b868c78) C:\Windows\system32\drivers\synth3dvsc.sys
11:30:38.0604 3220 Synth3dVsc - ok
11:30:38.0747 3220 SynTP (ac3cc98b1bdb6540021d3ffb105ac2b9) C:\Windows\system32\DRIVERS\SynTP.sys
11:30:38.0786 3220 SynTP - ok
11:30:38.0999 3220 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
11:30:39.0069 3220 Tcpip - ok
11:30:39.0288 3220 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
11:30:39.0366 3220 TCPIP6 - ok
11:30:39.0518 3220 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
11:30:39.0588 3220 tcpipreg - ok
11:30:39.0749 3220 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
11:30:39.0837 3220 TDPIPE - ok
11:30:40.0039 3220 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
11:30:40.0064 3220 TDTCP - ok
11:30:40.0306 3220 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
11:30:40.0361 3220 tdx - ok
11:30:40.0556 3220 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
11:30:40.0571 3220 TermDD - ok
11:30:40.0711 3220 terminpt (2b5bdff688ec9871d7ec5837833374e9) C:\Windows\system32\drivers\terminpt.sys
11:30:40.0743 3220 terminpt - ok
11:30:40.0915 3220 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
11:30:40.0983 3220 tssecsrv - ok
11:30:41.0154 3220 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
11:30:41.0173 3220 TsUsbFlt - ok
11:30:41.0314 3220 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
11:30:41.0347 3220 TsUsbGD - ok
11:30:41.0484 3220 tsusbhub (e1748d04ae40118b62bc18ac86032192) C:\Windows\system32\drivers\tsusbhub.sys
11:30:41.0503 3220 tsusbhub - ok
11:30:41.0672 3220 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
11:30:41.0686 3220 TuneUpUtilitiesDrv - ok
11:30:41.0829 3220 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
11:30:41.0896 3220 tunnel - ok
11:30:42.0075 3220 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
11:30:42.0089 3220 uagp35 - ok
11:30:42.0402 3220 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
11:30:42.0561 3220 udfs - ok
11:30:42.0724 3220 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
11:30:42.0739 3220 uliagpkx - ok
11:30:42.0846 3220 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
11:30:42.0893 3220 umbus - ok
11:30:43.0026 3220 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys
11:30:43.0070 3220 UmPass - ok
11:30:43.0177 3220 upperdev (34afb83c7bba370e404e52cc2290350c) C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
11:30:43.0236 3220 upperdev - ok
11:30:43.0495 3220 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
11:30:43.0535 3220 usbaudio - ok
11:30:43.0730 3220 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
11:30:43.0754 3220 usbccgp - ok
11:30:43.0845 3220 USBCCID - ok
11:30:43.0912 3220 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
11:30:43.0957 3220 usbcir - ok
11:30:44.0087 3220 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
11:30:44.0128 3220 usbehci - ok
11:30:44.0246 3220 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
11:30:44.0297 3220 usbhub - ok
11:30:44.0510 3220 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\DRIVERS\usbohci.sys
11:30:44.0543 3220 usbohci - ok
11:30:44.0725 3220 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
11:30:44.0786 3220 usbprint - ok
11:30:44.0911 3220 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
11:30:44.0942 3220 usbser - ok
11:30:45.0061 3220 UsbserFilt (aa75e1efbee7186b4cbaaacf1f15e6ca) C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
11:30:45.0111 3220 UsbserFilt - ok
11:30:45.0323 3220 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:30:45.0356 3220 USBSTOR - ok
11:30:45.0518 3220 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
11:30:45.0560 3220 usbuhci - ok
11:30:45.0685 3220 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
11:30:45.0750 3220 usbvideo - ok
11:30:45.0954 3220 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
11:30:45.0969 3220 vdrvroot - ok
11:30:46.0108 3220 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
11:30:46.0134 3220 vga - ok
11:30:46.0266 3220 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
11:30:46.0332 3220 VgaSave - ok
11:30:46.0401 3220 VGPU - ok
11:30:46.0458 3220 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
11:30:46.0480 3220 vhdmp - ok
11:30:46.0585 3220 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
11:30:46.0597 3220 viaide - ok
11:30:46.0729 3220 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
11:30:46.0750 3220 vmbus - ok
11:30:46.0913 3220 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
11:30:46.0969 3220 VMBusHID - ok
11:30:47.0071 3220 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
11:30:47.0087 3220 volmgr - ok
11:30:47.0225 3220 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
11:30:47.0254 3220 volmgrx - ok
11:30:47.0414 3220 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
11:30:47.0448 3220 volsnap - ok
11:30:47.0650 3220 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
11:30:47.0670 3220 vsmraid - ok
11:30:47.0881 3220 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
11:30:47.0918 3220 vwifibus - ok
11:30:48.0034 3220 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
11:30:48.0071 3220 vwififlt - ok
11:30:48.0115 3220 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
11:30:48.0137 3220 vwifimp - ok
11:30:48.0276 3220 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
11:30:48.0319 3220 WacomPen - ok
11:30:48.0443 3220 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
11:30:48.0508 3220 WANARP - ok
11:30:48.0517 3220 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
11:30:48.0566 3220 Wanarpv6 - ok
11:30:48.0734 3220 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
11:30:48.0749 3220 Wd - ok
11:30:48.0870 3220 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
11:30:48.0903 3220 Wdf01000 - ok
11:30:49.0137 3220 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
11:30:49.0194 3220 WfpLwf - ok
11:30:49.0356 3220 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
11:30:49.0373 3220 WIMMount - ok
11:30:49.0564 3220 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
11:30:49.0599 3220 WinUsb - ok
11:30:49.0807 3220 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys
11:30:49.0833 3220 WmiAcpi - ok
11:30:50.0104 3220 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
11:30:50.0157 3220 ws2ifsl - ok
11:30:50.0335 3220 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
11:30:50.0406 3220 WudfPf - ok
11:30:50.0587 3220 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
11:30:50.0659 3220 WUDFRd - ok
11:30:50.0834 3220 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
11:30:51.0255 3220 \Device\Harddisk0\DR0 - ok
11:30:51.0265 3220 MBR (0x1B8) (fd7389e7da12d96c79efc5c35f79ac76) \Device\Harddisk1\DR1
11:30:59.0021 3220 \Device\Harddisk1\DR1 - ok
11:30:59.0036 3220 Boot (0x1200) (908b7d162e02fd0061473f398861c348) \Device\Harddisk0\DR0\Partition0
11:30:59.0038 3220 \Device\Harddisk0\DR0\Partition0 - ok
11:30:59.0053 3220 Boot (0x1200) (da51d37e803014179d45bae479daaa92) \Device\Harddisk0\DR0\Partition1
11:30:59.0054 3220 \Device\Harddisk0\DR0\Partition1 - ok
11:30:59.0094 3220 Boot (0x1200) (561d9a84c31ce5924a4a41d2601a546b) \Device\Harddisk0\DR0\Partition2
11:30:59.0096 3220 \Device\Harddisk0\DR0\Partition2 - ok
11:30:59.0101 3220 ============================================================
11:30:59.0101 3220 Scan finished
11:30:59.0101 3220 ============================================================
11:30:59.0124 3236 Detected object count: 2
11:30:59.0125 3236 Actual detected object count: 2
11:31:09.0331 3236 C:\Windows\system32\DRIVERS\kinonivd.sys - copied to quarantine
11:31:09.0335 3236 kinonivd ( UnsignedFile.Multi.Generic ) - User select action: Quarantine
11:31:09.0476 3236 C:\Windows\system32\DRIVERS\rdpdispm.sys - copied to quarantine
11:31:09.0478 3236 RDPDISPM ( UnsignedFile.Multi.Generic ) - User select action: Quarantine




Bedankt :oops:

_________________
Was je ondergoed niet te heet !


Omhoog
 Profiel  
 
 Berichttitel: Re: CPU Loopt max
BerichtGeplaatst: vr maart 16, 2012 5:25 pm 
Offline
Moderator
Avatar gebruiker

Geregistreerd: wo apr 13, 2005 3:54 pm
Berichten: 30551
Woonplaats: Kotje aan de kust.
Besturingssysteem: Windows 7
Bescherming: Malwarebytes pro
De unsigned files skip je,

11:31:09.0335 3236 kinonivd ( UnsignedFile.Multi.Generic ) - User select action: Quarantine
11:31:09.0478 3236 RDPDISPM ( UnsignedFile.Multi.Generic ) - User select action: Quarantine

Waar is het OTL logje ?

_________________
Afbeelding
Goed geholpen hier, overweeg een donatie:
loglezer worden?
Lid van Team Opleiding.
tips
traagheidtips


Omhoog
 Profiel  
 
 Berichttitel: Re: CPU Loopt max
BerichtGeplaatst: za maart 17, 2012 9:32 pm 
Offline
Lid
Avatar gebruiker

Geregistreerd: di maart 13, 2012 3:30 pm
Berichten: 3
Woonplaats: Winterswijk
Besturingssysteem: win 7pro en ultimate 64 bit
Bescherming: microsoft essentials en Avira
Eric schreef:
De unsigned files skip je,
En dan Eric ik snap niet wat er met de onderste 2 quarantine Moet gebeuren :pale: :pale: :pale: :pale: :pale: :pale: :pale: :pale:
11:31:09.0335 3236 kinonivd ( UnsignedFile.Multi.Generic ) - User select action: Quarantine
11:31:09.0478 3236 RDPDISPM ( UnsignedFile.Multi.Generic ) - User select action: Quarantine

Waar is het OTL logje ?

Hier is het OTL logje mijn optic onderwerp compleet is link

http://www.nationaalcomputerforum.nl/sh ... post798880


:shock:


OTL logfile created on: 16-3-2012 11:39:25 - Run 1
OTL by OldTimer - Version 3.2.37.1 Folder = C:\Users\Sydney\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000413 | Country: Nederland | Language: NLD | Date Format: d-M-yyyy

4,00 Gb Total Physical Memory | 0,71 Gb Available Physical Memory | 17,77% Memory free
4,68 Gb Paging File | 0,62 Gb Available in Paging File | 13,35% Paging File free
Paging file location(s): e:\pagefile.sys 64 6085 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 459,66 Gb Total Space | 398,08 Gb Free Space | 86,60% Space Free | Partition Type: NTFS
Drive E: | 6,00 Gb Total Space | 5,24 Gb Free Space | 87,40% Space Free | Partition Type: NTFS
Drive F: | 1009,48 Mb Total Space | 1009,47 Mb Free Space | 100,00% Space Free | Partition Type: FAT

Computer Name: SYDNEY_NOTEBOOK | User Name: Sydney | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012-03-16 11:36:12 | 000,594,944 | ---- | M] (OldTimer Tools) -- C:\Users\Sydney\Downloads\OTL.com
PRC - [2012-02-03 15:28:22 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2012-02-03 15:28:12 | 000,258,512 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012-02-03 15:28:12 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2012-01-22 16:39:49 | 000,124,832 | ---- | M] (Yuna Software) -- C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe
PRC - [2012-01-04 13:32:36 | 000,718,888 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
PRC - [2012-01-04 13:32:06 | 000,148,520 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
PRC - [2011-10-21 19:40:38 | 000,073,728 | ---- | M] (Atheros) -- C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe


========== Modules (No Company Name) ==========

MOD - [2012-02-15 06:03:36 | 000,429,040 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\ppGoogleNaClPluginChrome.dll
MOD - [2012-02-15 06:03:34 | 003,772,912 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\pdf.dll
MOD - [2012-02-15 06:02:10 | 000,122,880 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\avutil-51.dll
MOD - [2012-02-15 06:02:08 | 000,220,672 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\avformat-53.dll
MOD - [2012-02-15 06:02:07 | 001,747,456 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\avcodec-53.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012-02-15 04:13:00 | 000,235,520 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012-02-14 22:16:40 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2011-11-23 14:15:30 | 000,035,648 | ---- | M] (TuneUp Software) [On_Demand | Stopped] -- C:\Windows\SysNative\uxtuneup.dll -- (UxTuneUp)
SRV:64bit: - [2011-05-13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [On_Demand | Stopped] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2011-03-26 00:12:34 | 000,108,544 | ---- | M] (Montpellier-Informatique) [Auto | Running] -- C:\Program Files\Predator2\PredatorACE.exe -- (PredatorACE)
SRV:64bit: - [2010-09-22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010-03-23 14:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\st wrt64.inf_amd64_neutral_960c1f056a541068\stacsv64. exe -- (STacSV)
SRV:64bit: - [2010-03-13 01:04:14 | 000,527,688 | ---- | M] (gogo6, Inc.) [Auto | Running] -- C:\Program Files\gogo6\gogoCLIENT\gogoc.exe -- (gogoc)
SRV:64bit: - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009-07-14 02:41:19 | 000,045,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lpdsvc.dll -- (LPDSVC)
SRV:64bit: - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2009-07-12 22:18:24 | 001,924,400 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV - [2012-02-29 08:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-02-22 12:56:13 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\srvany.exe -- (KMService)
SRV - [2012-02-03 15:28:22 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012-02-03 15:28:12 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012-01-22 16:39:49 | 000,124,832 | ---- | M] (Yuna Software) [Auto | Running] -- C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe -- (MsgPlusService)
SRV - [2012-01-19 12:47:20 | 003,027,840 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012-01-13 14:53:18 | 000,652,360 | ---- | M] (Malwarebytes Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012-01-04 13:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011-11-23 14:15:40 | 002,118,976 | ---- | M] (TuneUp Software) [Disabled | Stopped] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2011-11-23 14:15:32 | 000,028,992 | ---- | M] (TuneUp Software) [On_Demand | Stopped] -- C:\Windows\SysWOW64\uxtuneup.dll -- (UxTuneUp)
SRV - [2011-10-21 19:40:38 | 000,073,728 | ---- | M] (Atheros) [Auto | Running] -- C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe -- (ZAtheros Wlan Agent)
SRV - [2011-08-03 14:23:54 | 000,828,944 | ---- | M] (GlavSoft LLC.) [On_Demand | Stopped] -- C:\Program Files (x86)\TightVNC\tvnserver.exe -- (tvnserver)
SRV - [2010-03-23 14:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stw rt64.inf_amd64_neutral_960c1f056a541068\STacSV64.e xe -- (STacSV)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\msco rsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-07-12 22:04:26 | 001,656,112 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\msco rsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012-02-27 13:38:16 | 002,782,848 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kinonivd.sys -- (kinonivd)
DRV:64bit: - [2012-02-15 04:48:32 | 010,856,960 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2012-02-15 04:48:32 | 010,856,960 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012-02-15 03:13:12 | 000,327,680 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012-02-03 15:28:37 | 000,132,320 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2012-02-03 15:28:37 | 000,097,312 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2012-02-03 15:28:37 | 000,027,760 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2012-01-03 22:22:54 | 000,055,936 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.1)
DRV:64bit: - [2011-12-15 01:46:42 | 000,222,904 | ---- | M] (QFX Software Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\keyscrambler.sys -- (KeyScrambler)
DRV:64bit: - [2011-12-10 15:24:08 | 000,023,152 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011-12-05 20:47:30 | 000,095,248 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2011-12-02 18:38:08 | 000,239,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:64bit: - [2011-11-23 23:02:20 | 000,648,808 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011-11-23 15:13:10 | 002,796,544 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2011-11-01 10:07:26 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.s ys -- (UsbserFilt)
DRV:64bit: - [2011-11-01 10:07:26 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sy s -- (upperdev)
DRV:64bit: - [2011-11-01 10:07:24 | 000,171,008 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:64bit: - [2011-11-01 10:07:24 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc)
DRV:64bit: - [2011-11-01 10:07:24 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd)
DRV:64bit: - [2011-11-01 10:07:24 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64)
DRV:64bit: - [2011-10-29 02:41:28 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2011-10-29 02:41:26 | 000,080,512 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011-10-14 04:37:44 | 000,396,848 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011-08-25 02:33:32 | 000,089,640 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwdpan.sys -- (BTWDPAN)
DRV:64bit: - [2011-08-16 10:36:16 | 000,157,696 | ---- | M] (Matrox Graphics Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\MxEFUF64.sys -- (MxEFUF)
DRV:64bit: - [2011-05-13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011-05-13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011-03-11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010-11-21 04:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010-11-21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010-11-21 04:24:15 | 000,146,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST)
DRV:64bit: - [2010-11-21 04:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2010-11-21 04:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2010-11-21 04:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010-11-21 04:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2010-11-21 04:23:48 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010-11-21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010-08-31 12:32:44 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpdispm.sys -- (RDPDISPM)
DRV:64bit: - [2010-03-23 14:53:06 | 000,505,344 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010-03-22 10:55:20 | 000,046,192 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:64bit: - [2010-03-13 01:04:06 | 000,027,648 | ---- | M] (gogo6 Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\gogotun.sys -- (gogoTunnelDevice)
DRV:64bit: - [2010-02-18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 02:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-06-28 18:17:00 | 000,070,656 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\enecir.sys -- (enecir)
DRV:64bit: - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009-04-29 08:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2008-08-28 11:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011-11-09 09:21:18 | 000,011,856 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVer sion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Inter net Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={9B5BD6D8-114B-4C83-B80C-411E6E83480C}&mid=633417c07b0847d19d92d16d38b42699-a9bcdaa11f3a1f7b96b249da38ba108a4d1e512a&lang=nl&d s=is015&pr=sa&d=2012-03-13 17:38:27&v=10.0.0.7&sap=hp
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://nl.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = nl-NL
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 88 5F E1 19 3E D3 CC 01 [binary data]
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\URLSearchHook: {fcbf663e-8530-46f8-a880-ac5abe9d2b23} - No CLSID value found
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://www.plusnetwork.com/?sp=addr&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = http://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={9B5BD6D8-114B-4C83-B80C-411E6E83480C}&mid=633417c07b0847d19d92d16d38b42699-a9bcdaa11f3a1f7b96b249da38ba108a4d1e512a&lang=nl&d s=is015&pr=sa&d=2012-03-13 17:38:27&v=10.0.0.7&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings: "ProxyEnable" = 0

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Sydney\AppData\Local\Google\Update\1.3.21 .99\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Sydney\AppData\Local\Google\Update\1.3.21 .99\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extens ions\\E-MAILADRES VERWIJDERD - Stuur een privébericht naar deze gebruiker i.p.v. een e-mail.: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-02-23 19:03:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extens ions\\E-MAILADRES VERWIJDERD - Stuur een privébericht naar deze gebruiker i.p.v. een e-mail.: C:\Program Files (x86)\Nokia\Nokia Suite\Connectors\Bookmarks Connector\FirefoxExtension_9.0 [2012-03-16 11:07:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Ex tensions\\E-MAILADRES VERWIJDERD - Stuur een privébericht naar deze gebruiker i.p.v. een e-mail.: C:\Program Files (x86)\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_9.0 [2012-03-16 11:07:47 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensi ons\\E-MAILADRES VERWIJDERD - Stuur een privébericht naar deze gebruiker i.p.v. een e-mail.: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-02-23 19:03:00 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = http://www.google.com/search?q={searchTerms}
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\Applic ation\17.0.963.56\pdf.dll
CHR - plugin: HP Product Detection Plugin for Mozilla (Enabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkj kjoglp\1.0.15.0_0\plugins/npProductDetectPlugin.dll
CHR - plugin: HP Active Check Plugin (Enabled) = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkj kjoglp\1.0.15.0_0\plugins/npAclmPlugin.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Sydney\AppData\Local\Google\Update\1.3.21 .99\npGoogleUpdate3.dll
CHR - plugin: Windows Activation Technologies (Enabled) = C:\Windows\system32\Wat\npWatWeb.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: TV = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfe mbdimh\1.0.11_0\
CHR - Extension: Turn Off the Lights = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfj jepjdn\2.0.0.66_0\
CHR - Extension: YouTube = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldk acnbeo\4.2.5_0\
CHR - Extension: TVGiDS.tv = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocdjdnpjmkaaaangagmlnkcpf jkjfcn\1.0.0.1_0\
CHR - Extension: Chrome YouTube Downloader = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbdjiinahkdjdcdlgfimlcolkj pbooja\2.6.3_0\
CHR - Extension: Google Zoeken = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljnie djpjpf\0.0.0.17_0\
CHR - Extension: witte ruis = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkjpdnomgodmagfmhojepjlaj poicip\1.6_0\
CHR - Extension: De QR Code Generator = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcmhlmapohffdglflokbgknlkn nmogbb\0.2.2_0\
CHR - Extension: AdBlock = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbi glidom\2.5.20_0\
CHR - Extension: TweetDeck = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdpomandigafcibbmofojjchb cdagbl\1.1.3_0\
CHR - Extension: Typing Test - KeyHero = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcieoaeooeidmpaopkpjpjfak idlabm\1.3.1_0\
CHR - Extension: HootSuite = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\kneloppijbcidgidihgdjnooih jcdbij\5.244_0\
CHR - Extension: HP Product Detection Plugin = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhbepgnjnaoahohppnffanmkj kjoglp\1.0.15.0_0\
CHR - Extension: Jailbreak Rush = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncfiimlbhgllinjmkfjpikokpe dpdbae\2.0_0\
CHR - Extension: Gmail = C:\Users\Sydney\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoe jaedia\7_0\

O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (KeyScramblerBHO Class) - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files (x86)\KeyScrambler\x64\KeyScramblerIE.dll (QFX Software Corporation)
O2 - BHO: (KeyScramblerBHO Class) - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O3 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O3 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000\..\Toolbar\WebBrowser: (no name) - {FCBF663E-8530-46F8-A880-AC5ABE9D2B23} - No CLSID value found.
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000..\Run: [] File not found
O4 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000..\Run: [NokiaSuite.exe] C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (Nokia)
O4 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000..\Run: [Predator] C:\Program Files\Predator2\Predator.exe (Montpellier-Informatique)
O4 - HKU\S-1-5-21-142432774-2739527009-1848016797-1000..\Run: [uTorrent] C:\Users\Sydney\Downloads\uTorrent.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\System: SoftwareSASGeneration = 1
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000 File not found
O9:64bit: - Extra 'Tools' menuitem : &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\x64\KeyScramblerIE.dll (QFX Software Corporation)
O9 - Extra Button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files (x86)\Paltalk Messenger\paltalk.exe (AVM Software Inc.)
O9 - Extra 'Tools' menuitem : &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation)
O9 - Extra Button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe (ICQ, LLC.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary...t.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary...r.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfac es\{B3460CC8-AF37-42CD-8F35-EE940C502F4B}: DhcpNameServer = 192.168.2.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfac es\{BB872A6A-A673-415A-8873-7B3382EF8282}: NameServer = 192.168.2.254,192.168.1.254
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.e xe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012-03-14 09:12:16 | 000,000,000 | ---- | M] () - F:\autorun.inf -- [ FAT ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012-03-16 11:29:10 | 002,063,920 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Sydney\Desktop\TDSSKiller.exe
[2012-03-16 11:08:57 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\{49086BE0-D4D2-485B-8AB1-AD23F3FBCCB7}
[2012-03-16 11:08:41 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\{59CA3015-0BB5-41FF-A7B1-8CD2535F9131}
[2012-03-16 11:07:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia
[2012-03-16 11:07:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2012-03-16 08:21:39 | 000,000,000 | ---D | C] -- C:\Users\Sydney\Documents\text document
[2012-03-16 08:19:36 | 000,000,000 | ---D | C] -- C:\Program Files\IDT
[2012-03-15 10:18:50 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2012-03-15 08:45:09 | 000,210,432 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\st646233.dll
[2012-03-13 22:46:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2012-03-13 22:46:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2012-03-13 19:18:00 | 000,046,192 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Windows\SysNative\drivers\LPCFilter.sys
[2012-03-13 17:48:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2012-03-13 17:48:35 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\HiJackThis
[2012-03-13 16:54:14 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\AMD
[2012-03-13 16:47:27 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\ATI
[2012-03-13 16:47:27 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\ATI
[2012-03-13 16:47:27 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2012-03-13 16:43:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2012-03-13 16:42:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2012-03-13 16:42:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2012-03-13 16:42:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2012-03-13 16:42:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Pro Control Center
[2012-03-13 16:40:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2012-03-13 16:39:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2012-03-13 16:38:38 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2012-03-13 15:51:27 | 000,000,000 | ---D | C] -- C:\symbols
[2012-03-13 15:51:19 | 000,000,000 | ---D | C] -- C:\ProgramData\dbg
[2012-03-13 15:31:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
[2012-03-13 15:26:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed
[2012-03-13 15:26:12 | 000,000,000 | ---D | C] -- C:\Program Files\WhoCrashed
[2012-03-13 15:20:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Debugging Tools for Windows (x64)
[2012-03-13 15:20:17 | 000,000,000 | ---D | C] -- C:\Program Files\Debugging Tools for Windows (x64)
[2012-03-12 18:18:21 | 000,000,000 | ---D | C] -- C:\Users\Sydney\Documents\Nokia
[2012-03-11 14:23:42 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\SopCast
[2012-03-11 14:23:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
[2012-03-11 14:23:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SopCast
[2012-03-11 14:22:59 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Systweak
[2012-03-11 14:22:57 | 000,018,816 | ---- | C] (Systweak Inc., (www.systweak.com)) -- C:\Windows\SysNative\roboot64.exe
[2012-03-05 20:42:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2012-03-05 20:40:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kinoni
[2012-03-03 11:46:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICQ7.7
[2012-03-03 11:46:11 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\ICQ Search
[2012-03-03 11:45:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQ6Toolbar
[2012-03-03 11:45:01 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Mozilla
[2012-03-03 11:45:01 | 000,000,000 | ---D | C] -- C:\ProgramData\ICQ
[2012-03-03 11:43:36 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\ICQ
[2012-03-03 11:43:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQ7.7
[2012-03-03 11:18:52 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\TS3Client
[2012-03-03 10:56:12 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\TeamSpeak 3 Client
[2012-03-03 10:56:04 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\TeamSpeak 3 Client
[2012-03-02 19:45:23 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Audacity
[2012-03-02 18:19:29 | 000,000,000 | ---D | C] -- C:\Users\Sydney\Documents\Outlook-bestanden
[2012-03-01 18:59:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2012-03-01 18:59:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012-03-01 18:58:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2012-03-01 18:56:59 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\Conduit
[2012-03-01 18:56:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Conduit
[2012-02-28 15:32:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Connectivity Solution
[2012-02-27 21:18:45 | 000,000,000 | ---D | C] -- C:\Users\Sydney\Documents\OneNote-notitieblokken
[2012-02-27 18:31:34 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Avira
[2012-02-27 18:26:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2012-02-27 18:26:02 | 000,132,320 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
[2012-02-27 18:26:02 | 000,097,312 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2012-02-27 18:26:02 | 000,027,760 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2012-02-27 18:26:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2012-02-27 18:26:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2012-02-27 18:23:21 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\AVG
[2012-02-27 13:38:16 | 002,782,848 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\kinonivd.sys
[2012-02-23 19:48:44 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\Windows Live Writer
[2012-02-23 19:48:44 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\Windows Live Writer
[2012-02-23 19:45:19 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\HpUpdate
[2012-02-23 19:45:18 | 000,000,000 | ---D | C] -- C:\Windows\Hewlett-Packard
[2012-02-23 19:31:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Hewlett-Packard
[2012-02-23 19:08:52 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\HP
[2012-02-23 19:04:10 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\HP
[2012-02-23 19:01:19 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Product Assistant
[2012-02-23 19:01:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2012-02-23 18:58:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\HP
[2012-02-23 18:58:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Hewlett-Packard
[2012-02-23 18:57:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP
[2012-02-23 18:45:15 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2012-02-22 14:20:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2012-02-22 14:19:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2012-02-22 14:15:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
[2012-02-22 14:13:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2012-02-22 14:13:29 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2012-02-21 17:41:31 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Roaming\TeamViewer
[2012-02-21 17:40:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TeamViewer
[2012-02-20 20:40:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC
[2012-02-20 20:04:52 | 002,796,544 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys
[2012-02-20 19:51:19 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\Innovative Solutions
[2012-02-20 19:51:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverMax
[2012-02-20 19:51:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Innovative Solutions
[2012-02-19 20:27:43 | 000,000,000 | ---D | C] -- C:\Users\Sydney\Documents\Outlook Files
[2012-02-18 15:59:35 | 000,000,000 | ---D | C] -- C:\Users\Sydney\AppData\Local\Linkury
[2012-02-18 15:58:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Messenger Plus! for Skype
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012-03-16 11:29:22 | 000,021,280 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012-03-16 11:29:22 | 000,021,280 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012-03-16 11:29:10 | 002,063,920 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Sydney\Desktop\TDSSKiller.exe
[2012-03-16 11:24:16 | 001,557,408 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012-03-16 11:24:16 | 000,702,318 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat
[2012-03-16 11:24:16 | 000,618,912 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012-03-16 11:24:16 | 000,134,120 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat
[2012-03-16 11:24:16 | 000,107,232 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012-03-16 11:20:13 | 000,416,664 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012-03-16 11:20:05 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012-03-16 11:07:55 | 000,002,089 | ---- | M] () -- C:\Users\Public\Desktop\Nokia Suite.lnk
[2012-03-15 09:54:08 | 002,044,822 | ---- | M] () -- C:\Users\Sydney\Desktop\tdsskiller.zip
[2012-03-15 08:38:32 | 000,001,101 | ---- | M] () -- C:\Users\Sydney\Documents\s_besselink-agenda.ics
[2012-03-14 16:04:28 | 000,002,048 | -H-- | M] () -- C:\Users\Sydney\Documents\Default.rdp
[2012-03-14 15:49:49 | 000,000,831 | ---- | M] () -- C:\Users\Sydney\Desktop\Xbox 360 - Snelkoppeling.lnk
[2012-03-14 15:46:29 | 000,000,347 | ---- | M] () -- C:\Users\Sydney\Desktop\Netwerk.lnk
[2012-03-13 22:46:49 | 000,002,513 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2012-03-13 17:38:40 | 000,001,234 | ---- | M] () -- C:\Users\Sydney\Desktop\DriverMax.lnk
[2012-03-13 16:17:11 | 000,005,568 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Temp5.html
[2012-03-13 16:17:08 | 000,001,858 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Temp1.html
[2012-03-13 15:26:59 | 000,013,360 | ---- | M] () -- C:\Users\Sydney\AppData\Local\Temp11.html
[2012-03-11 15:37:52 | 000,001,660 | ---- | M] () -- C:\Windows\SysNative\ASOROSet.bin
[2012-03-11 14:31:23 | 000,000,782 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012-03-11 14:30:20 | 000,001,842 | ---- | M] () -- C:\Users\Sydney\Desktop\ICQ7.7.lnk
[2012-03-11 14:23:42 | 000,000,991 | ---- | M] () -- C:\Users\Sydney\Desktop\SopCast.lnk
[2012-03-10 09:35:10 | 000,001,181 | ---- | M] () -- C:\Users\Sydney\Desktop\TeamSpeak 3 Client.lnk
[2012-03-05 18:09:15 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-142432774-2739527009-1848016797-1000UA.job
[2012-03-05 18:09:15 | 000,001,018 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-142432774-2739527009-1848016797-1000Core.job
[2012-03-05 14:24:07 | 001,575,212 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012-03-03 11:46:11 | 000,001,848 | ---- | M] () -- C:\Users\Sydney\Application Data\Microsoft\Internet Explorer\Quick Launch\ICQ7.7.lnk
[2012-02-27 21:18:50 | 000,001,296 | ---- | M] () -- C:\Users\Sydney\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk
[2012-02-27 18:23:21 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\drivers\AVG\iavifw.avm
[2012-02-27 13:38:16 | 002,782,848 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\kinonivd.sys
[2012-02-23 20:10:29 | 000,001,131 | ---- | M] () -- C:\Users\Sydney\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2012-02-23 19:37:34 | 000,002,364 | ---- | M] () -- C:\Users\Sydney\Desktop\Google Chrome.lnk
[2012-02-23 19:04:11 | 000,177,286 | ---- | M] () -- C:\Windows\hpoins14.dat
[2012-02-22 12:56:13 | 000,008,192 | ---- | M] () -- C:\Windows\SysWow64\srvany.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012-03-16 11:29:03 | 002,044,822 | ---- | C] () -- C:\Users\Sydney\Desktop\tdsskiller.zip
[2012-03-16 11:19:57 | 000,416,664 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012-03-16 11:07:55 | 000,002,089 | ---- | C] () -- C:\Users\Public\Desktop\Nokia Suite.lnk
[2012-03-15 08:38:32 | 000,001,101 | ---- | C] () -- C:\Users\Sydney\Documents\s_besselink-agenda.ics
[2012-03-14 15:49:49 | 000,000,831 | ---- | C] () -- C:\Users\Sydney\Desktop\Xbox 360 - Snelkoppeling.lnk
[2012-03-14 15:46:29 | 000,000,347 | ---- | C] () -- C:\Users\Sydney\Desktop\Netwerk.lnk
[2012-03-14 08:37:40 | 000,001,296 | ---- | C] () -- C:\Users\Sydney\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\Startup\OneNote 2010 Schermopname en Snel starten.lnk
[2012-03-13 17:38:40 | 000,001,234 | ---- | C] () -- C:\Users\Sydney\Desktop\DriverMax.lnk
[2012-03-13 16:17:11 | 000,005,568 | ---- | C] () -- C:\Users\Sydney\AppData\Local\Temp5.html
[2012-03-13 15:26:59 | 000,013,360 | ---- | C] () -- C:\Users\Sydney\AppData\Local\Temp11.html
[2012-03-13 15:26:15 | 000,001,858 | ---- | C] () -- C:\Users\Sydney\AppData\Local\Temp1.html
[2012-03-11 14:30:20 | 000,001,842 | ---- | C] () -- C:\Users\Sydney\Desktop\ICQ7.7.lnk
[2012-03-11 14:28:03 | 000,001,660 | ---- | C] () -- C:\Windows\SysNative\ASOROSet.bin
[2012-03-11 14:23:42 | 000,000,991 | ---- | C] () -- C:\Users\Sydney\Desktop\SopCast.lnk
[2012-03-10 09:35:10 | 000,001,181 | ---- | C] () -- C:\Users\Sydney\Desktop\TeamSpeak 3 Client.lnk
[2012-03-05 14:24:07 | 001,575,212 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012-03-03 11:46:11 | 000,001,848 | ---- | C] () -- C:\Users\Sydney\Application Data\Microsoft\Internet Explorer\Quick Launch\ICQ7.7.lnk
[2012-02-27 18:23:21 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\drivers\AVG\iavifw.avm
[2012-02-23 20:10:29 | 000,001,131 | ---- | C] () -- C:\Users\Sydney\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2012-02-23 18:45:26 | 000,177,286 | ---- | C] () -- C:\Windows\hpoins14.dat
[2012-02-23 18:45:26 | 000,001,498 | ---- | C] () -- C:\Windows\hpomdl14.dat
[2012-02-22 12:56:38 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\srvany.exe
[2012-02-21 17:40:12 | 000,001,174 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 7.lnk
[2012-02-15 03:36:36 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012-02-15 03:36:36 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012-02-14 22:05:16 | 000,054,784 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2012-01-31 06:00:24 | 000,016,896 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2011-12-21 12:00:56 | 002,469,760 | ---- | C] () -- C:\Windows\SysWow64\BootMan.exe
[2011-12-21 12:00:56 | 000,019,840 | ---- | C] () -- C:\Windows\SysWow64\EuEpmGdi.dll
[2011-12-21 12:00:53 | 000,086,408 | ---- | C] () -- C:\Windows\SysWow64\setupempdrv03.exe
[2011-12-21 12:00:53 | 000,014,216 | ---- | C] () -- C:\Windows\SysWow64\epmntdrv.sys
[2011-12-21 12:00:53 | 000,008,456 | ---- | C] () -- C:\Windows\SysWow64\EuGdiDrv.sys
[2011-12-20 17:56:58 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011-09-13 00:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

========== LOP Check ==========

[2012-03-02 20:17:22 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Audacity
[2011-12-21 08:41:01 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\DriverCure
[2011-12-21 04:02:36 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\GFI Software
[2012-03-14 09:14:31 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\ICQ
[2012-03-03 11:46:11 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\ICQ Search
[2012-02-12 21:38:46 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Montpellier-Informatique
[2012-03-16 11:29:05 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Nokia
[2012-03-16 11:29:05 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Nokia Suite
[2012-01-07 21:11:19 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Paltalk
[2011-12-30 21:30:34 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\PC Suite
[2011-12-21 12:36:54 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\QFX Software
[2012-03-11 14:28:18 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Systweak
[2012-02-21 20:10:20 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\TeamViewer
[2012-01-02 19:48:10 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\TightVNC
[2012-03-03 11:34:42 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\TS3Client
[2011-12-21 03:55:40 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\TuneUp Software
[2012-03-16 11:38:06 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\uTorrent
[2012-02-23 19:48:44 | 000,000,000 | ---D | M] -- C:\Users\Sydney\AppData\Roaming\Windows Live Writer
[2012-03-09 09:55:50 | 000,032,556 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >

16 maart 2012, 12:15 #8
Abraham54
Moderator

Toffee :mrgreen:

_________________
Was je ondergoed niet te heet !


Omhoog
 Profiel  
 
 Berichttitel: Re: CPU Loopt max
BerichtGeplaatst: za maart 17, 2012 9:38 pm 
Offline
Moderator
Avatar gebruiker

Geregistreerd: wo apr 13, 2005 3:54 pm
Berichten: 30551
Woonplaats: Kotje aan de kust.
Besturingssysteem: Windows 7
Bescherming: Malwarebytes pro
Onderbroek is te heet gewassen.

U mag doorgaan op NCF.

Deze gaat op slot.

_________________
Afbeelding
Goed geholpen hier, overweeg een donatie:
loglezer worden?
Lid van Team Opleiding.
tips
traagheidtips


Omhoog
 Profiel  
 
Geef de vorige berichten weer:  Sorteer op  
Dit onderwerp is gesloten, je kunt geen berichten wijzigen of nieuwe antwoorden plaatsen  [ 6 berichten ] 

Alle tijden zijn GMT + 1 uur [ Zomertijd ]


Wie is er online

Gebruikers op dit forum: Google [Bot] en 2 gasten


Je mag geen nieuwe onderwerpen in dit forum plaatsen
Je mag niet antwoorden op een onderwerp in dit forum
Je mag je berichten in dit forum niet wijzigen
Je mag je berichten niet uit dit forum verwijderen
Je mag geen bijlagen toevoegen in dit forum

Ga naar:  
Powered by phpBB® Forum Software © phpBB Group
phpBB.nl Vertaling