Administrator
Antal indlæg: 7044
f-arn TeamSpywarefri - 07.05.2012 11:04:18
minimax - 06.05.2012 21:48:58
nu kan jeg ikke logge på intenettet via genvejen ...??
Hvilken genvej, for ComboFix viser ingen tegn på at ha’ rørt nogen genvej.
Vil du godt læse hvad jeg skriver, og svare på mine spørgsmål
———
Download Tdsskiller.zip på dit skrivebord og pak den ud i en mappe.
Start TDSSKiller.exe.
Mht.: Vista og Windows 7 - Højreklik på filen - Kør som Administrator.
Under “Change parameters” sætter du flueben ved “Detect TDLFS file system”
Klik på “Start Scan”
Hvis en inficeret fil bliver fundet, vil ”Default action” være Cure, klik på Continue
Hvis den finder TDLFS file system, klikker du på Delete.
Hvis en mistænkelig fil opdages, vil ”Default action” være Skip, klik på Continue
Hvis den ikke spørger om ”Reboot” (genstart) så klik på ”Report”, kopier den tekst herind i tråden.
Genstart hvis den kræver det.
Hvis den genstarter kan du finde logfilen her :
C:\TDSSKiller.[Version]_[Dato]_[Tidspunkt]_log.txt.
Kopier den tekst herind I denne tråd.
———
Hent og gem aswMBR på dit Skrivebord.
Start aswMBR og klik på “Scan ”
Mht.: Vista og Windows 7 - Højreklik på filen - Kør som Administrator.
Hvis den spørger efter “Avast virus definitioner” klikker du “Yes”
Når den er færdig med at scanne, klikker du på “SAVE LOG ” og sender loggen herind.
———
PS Vil du godt gøre det, i den rækkefølge jeg anfører
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !
internet genvej virker så det må ha været noget andet der lige drillede.
08:14:10.0355 5196 TDSS rootkit removing tool 2.7.34.0 May 2 2012 09:59:18
08:14:10.0636 5196 ============================================================
08:14:10.0636 5196 Current date / time: 2012/05/09 08:14:10.0636
08:14:10.0636 5196 SystemInfo:
08:14:10.0636 5196
08:14:10.0636 5196 OS Version: 6.0.6002 ServicePack: 2.0
08:14:10.0636 5196 Product type: Workstation
08:14:10.0636 5196 ComputerName: SHHS-PC
08:14:10.0636 5196 UserName: SHHS
08:14:10.0636 5196 Windows directory: C:\Windows
08:14:10.0636 5196 System windows directory: C:\Windows
08:14:10.0636 5196 Processor architecture: Intel x86
08:14:10.0636 5196 Number of processors: 2
08:14:10.0636 5196 Page size: 0x1000
08:14:10.0636 5196 Boot type: Normal boot
08:14:10.0636 5196 ============================================================
08:14:11.0806 5196 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type ‘K0’, Flags 0x00000050
08:14:11.0806 5196 ============================================================
08:14:11.0806 5196 \Device\Harddisk0\DR0:
08:14:11.0806 5196 MBR partitions:
08:14:11.0806 5196 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1400800, BlocksNum 0x12016800
08:14:11.0806 5196 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x13417000, BlocksNum 0x12017000
08:14:11.0806 5196 ============================================================
08:14:11.0837 5196 C: <-> \Device\Harddisk0\DR0\Partition0
08:14:11.0884 5196 D: <-> \Device\Harddisk0\DR0\Partition1
08:14:11.0884 5196 ============================================================
08:14:11.0884 5196 Initialize success
08:14:11.0884 5196 ============================================================
08:14:26.0564 5116 ============================================================
08:14:26.0564 5116 Scan started
08:14:26.0564 5116 Mode: Manual; TDLFS;
08:14:26.0564 5116 ============================================================
08:14:27.0453 5116 !SASCORE (c0393eb99a6c72c6bef9bfc4a72b33a6) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
08:14:27.0468 5116 !SASCORE - ok
08:14:27.0749 5116 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
08:14:27.0765 5116 ACPI - ok
08:14:27.0858 5116 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
08:14:27.0874 5116 adp94xx - ok
08:14:27.0936 5116 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
08:14:27.0952 5116 adpahci - ok
08:14:27.0983 5116 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
08:14:27.0983 5116 adpu160m - ok
08:14:28.0030 5116 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
08:14:28.0030 5116 adpu320 - ok
08:14:28.0077 5116 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
08:14:28.0077 5116 AeLookupSvc - ok
08:14:28.0170 5116 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
08:14:28.0170 5116 AFD - ok
08:14:28.0217 5116 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
08:14:28.0217 5116 agp440 - ok
08:14:28.0248 5116 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
08:14:28.0264 5116 aic78xx - ok
08:14:28.0280 5116 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
08:14:28.0295 5116 ALG - ok
08:14:28.0311 5116 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
08:14:28.0311 5116 aliide - ok
08:14:28.0342 5116 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
08:14:28.0342 5116 amdagp - ok
08:14:28.0373 5116 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
08:14:28.0373 5116 amdide - ok
08:14:28.0404 5116 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
08:14:28.0404 5116 AmdK7 - ok
08:14:28.0436 5116 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
08:14:28.0436 5116 AmdK8 - ok
08:14:28.0498 5116 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
08:14:28.0498 5116 Appinfo - ok
08:14:28.0638 5116 Apple Mobile Device (018857ead9a077a56aedfc0e5ef7a24a) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
08:14:28.0654 5116 Apple Mobile Device - ok
08:14:28.0716 5116 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
08:14:28.0716 5116 arc - ok
08:14:28.0748 5116 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
08:14:28.0748 5116 arcsas - ok
08:14:28.0779 5116 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
08:14:28.0779 5116 AsyncMac - ok
08:14:28.0826 5116 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
08:14:28.0841 5116 atapi - ok
08:14:28.0997 5116 athr (8be56f8300e1c37b578da23c71816b7a) C:\Windows\system32\DRIVERS\athr.sys
08:14:29.0028 5116 athr - ok
08:14:29.0106 5116 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
08:14:29.0122 5116 AudioEndpointBuilder - ok
08:14:29.0138 5116 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
08:14:29.0153 5116 Audiosrv - ok
08:14:29.0200 5116 b57nd60x (7d0f2bfa273831124fa08526af48af18) C:\Windows\system32\DRIVERS\b57nd60x.sys
08:14:29.0216 5116 b57nd60x - ok
08:14:29.0387 5116 BCM43XX (c38077d14adf896ee1e1dbbcbcf77e14) C:\Windows\system32\DRIVERS\bcmwl6.sys
08:14:29.0434 5116 BCM43XX - ok
08:14:29.0450 5116 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
08:14:29.0465 5116 Beep - ok
08:14:29.0574 5116 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
08:14:29.0574 5116 BFE - ok
08:14:29.0699 5116 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\system32\qmgr.dll
08:14:29.0730 5116 BITS - ok
08:14:29.0762 5116 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
08:14:29.0777 5116 blbdrive - ok
08:14:29.0918 5116 Bonjour Service (673cf4f6bb1fbe09331b526802fbb892) C:\Program Files\Bonjour\mDNSResponder.exe
08:14:29.0933 5116 Bonjour Service - ok
08:14:29.0996 5116 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
08:14:29.0996 5116 bowser - ok
08:14:30.0042 5116 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
08:14:30.0042 5116 BrFiltLo - ok
08:14:30.0074 5116 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
08:14:30.0074 5116 BrFiltUp - ok
08:14:30.0105 5116 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
08:14:30.0105 5116 Browser - ok
08:14:30.0167 5116 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
08:14:30.0167 5116 Brserid - ok
08:14:30.0198 5116 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
08:14:30.0198 5116 BrSerWdm - ok
08:14:30.0230 5116 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
08:14:30.0230 5116 BrUsbMdm - ok
08:14:30.0245 5116 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
08:14:30.0245 5116 BrUsbSer - ok
08:14:30.0292 5116 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
08:14:30.0292 5116 BTHMODEM - ok
08:14:30.0370 5116 BUNAgentSvc (09e6affae6c0e9158bf05c7d08d0107a) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
08:14:30.0370 5116 BUNAgentSvc - ok
08:14:30.0495 5116 catchme - ok
08:14:30.0573 5116 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
08:14:30.0573 5116 cdfs - ok
08:14:30.0651 5116 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
08:14:30.0651 5116 cdrom - ok
08:14:30.0713 5116 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
08:14:30.0713 5116 CertPropSvc - ok
08:14:30.0760 5116 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\DRIVERS\circlass.sys
08:14:30.0760 5116 circlass - ok
08:14:30.0838 5116 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
08:14:30.0854 5116 CLFS - ok
08:14:30.0932 5116 CLHNService (5ca9b1062c0c3e3ae19c23ad9d8a5048) C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
08:14:30.0947 5116 CLHNService - ok
08:14:31.0025 5116 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
08:14:31.0025 5116 clr_optimization_v2.0.50727_32 - ok
08:14:31.0103 5116 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
08:14:31.0119 5116 CmBatt - ok
08:14:31.0134 5116 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
08:14:31.0150 5116 cmdide - ok
08:14:31.0181 5116 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
08:14:31.0181 5116 Compbatt - ok
08:14:31.0197 5116 COMSysApp - ok
08:14:31.0228 5116 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
08:14:31.0228 5116 crcdisk - ok
08:14:31.0259 5116 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
08:14:31.0259 5116 Crusoe - ok
08:14:31.0337 5116 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
08:14:31.0337 5116 CryptSvc - ok
08:14:31.0462 5116 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
08:14:31.0493 5116 DcomLaunch - ok
08:14:31.0556 5116 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
08:14:31.0556 5116 DfsC - ok
08:14:31.0821 5116 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
08:14:31.0883 5116 DFSR - ok
08:14:32.0070 5116 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
08:14:32.0070 5116 Dhcp - ok
08:14:32.0148 5116 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
08:14:32.0164 5116 disk - ok
08:14:32.0211 5116 DKbFltr (73baf270d24fe726b9cd7f80bb17a23d) C:\Windows\system32\DRIVERS\DKbFltr.sys
08:14:32.0211 5116 DKbFltr - ok
08:14:32.0273 5116 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
08:14:32.0289 5116 Dnscache - ok
08:14:32.0351 5116 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
08:14:32.0351 5116 dot3svc - ok
08:14:32.0414 5116 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
08:14:32.0429 5116 DPS - ok
08:14:32.0460 5116 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
08:14:32.0460 5116 drmkaud - ok
08:14:32.0585 5116 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
08:14:32.0616 5116 DXGKrnl - ok
08:14:32.0663 5116 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
08:14:32.0663 5116 E1G60 - ok
08:14:32.0710 5116 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
08:14:32.0710 5116 EapHost - ok
08:14:32.0788 5116 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
08:14:32.0788 5116 Ecache - ok
08:14:32.0928 5116 eDataSecurity Service (2ce2ddcb1a41ed4488a2a8b98d286b3d) C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
08:14:32.0944 5116 eDataSecurity Service - ok
08:14:33.0022 5116 ehRecvr (9be3744d295a7701eb425332014f0797) C:\Windows\ehome\ehRecvr.exe
08:14:33.0022 5116 ehRecvr - ok
08:14:33.0069 5116 ehSched (ad1870c8e5d6dd340c829e6074bf3c3f) C:\Windows\ehome\ehsched.exe
08:14:33.0069 5116 ehSched - ok
08:14:33.0100 5116 ehstart (c27c4ee8926e74aa72efcab24c5242c3) C:\Windows\ehome\ehstart.dll
08:14:33.0100 5116 ehstart - ok
08:14:33.0178 5116 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
08:14:33.0194 5116 elxstor - ok
08:14:33.0318 5116 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
08:14:33.0334 5116 EMDMgmt - ok
08:14:33.0350 5116 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
08:14:33.0350 5116 ErrDev - ok
08:14:33.0459 5116 ETService (a51fd9df23720485991f56741bbefcfb) C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
08:14:33.0459 5116 ETService - ok
08:14:33.0568 5116 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
08:14:33.0568 5116 EventSystem - ok
08:14:33.0662 5116 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
08:14:33.0662 5116 exfat - ok
08:14:33.0724 5116 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
08:14:33.0740 5116 fastfat - ok
08:14:33.0786 5116 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
08:14:33.0786 5116 fdc - ok
08:14:33.0818 5116 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
08:14:33.0818 5116 fdPHost - ok
08:14:33.0849 5116 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
08:14:33.0849 5116 FDResPub - ok
08:14:33.0896 5116 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
08:14:33.0896 5116 FileInfo - ok
08:14:33.0927 5116 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
08:14:33.0927 5116 Filetrace - ok
08:14:33.0958 5116 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
08:14:33.0958 5116 flpydisk - ok
08:14:34.0020 5116 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
08:14:34.0036 5116 FltMgr - ok
08:14:34.0208 5116 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
08:14:34.0223 5116 FontCache - ok
08:14:34.0348 5116 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
08:14:34.0348 5116 FontCache3.0.0.0 - ok
08:14:34.0395 5116 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
08:14:34.0395 5116 Fs_Rec - ok
08:14:34.0442 5116 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
08:14:34.0442 5116 gagp30kx - ok
08:14:34.0488 5116 GEARAspiWDM (4ac51459805264affd5f6fdfb9d9235f) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
08:14:34.0488 5116 GEARAspiWDM - ok
08:14:34.0582 5116 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
08:14:34.0598 5116 gpsvc - ok
08:14:34.0738 5116 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
08:14:34.0738 5116 gupdate - ok
08:14:34.0769 5116 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
08:14:34.0769 5116 gupdatem - ok
08:14:34.0878 5116 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
08:14:34.0878 5116 gusvc - ok
08:14:34.0972 5116 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
08:14:34.0988 5116 HdAudAddService - ok
08:14:35.0081 5116 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
08:14:35.0097 5116 HDAudBus - ok
08:14:35.0144 5116 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
08:14:35.0159 5116 HidBth - ok
08:14:35.0190 5116 HidIr (d8df3722d5e961baa1292aa2f12827e2) C:\Windows\system32\DRIVERS\hidir.sys
08:14:35.0190 5116 HidIr - ok
08:14:35.0268 5116 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\System32\hidserv.dll
08:14:35.0268 5116 hidserv - ok
08:14:35.0346 5116 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
08:14:35.0346 5116 HidUsb - ok
08:14:35.0393 5116 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
08:14:35.0393 5116 hkmsvc - ok
08:14:35.0424 5116 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
08:14:35.0440 5116 HpCISSs - ok
08:14:35.0502 5116 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS
08:14:35.0502 5116 HSFHWAZL - ok
08:14:35.0643 5116 HSF_DPV (fadd7095163cb3cb4073793ebb50fe75) C:\Windows\system32\DRIVERS\HSX_DPV.sys
08:14:35.0674 5116 HSF_DPV - ok
08:14:35.0736 5116 HSXHWAZL (058783bedd17615d1fece09f77960436) C:\Windows\system32\DRIVERS\HSXHWAZL.sys
08:14:35.0736 5116 HSXHWAZL - ok
08:14:35.0768 5116 HTCAND32 - ok
08:14:35.0877 5116 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
08:14:35.0892 5116 HTTP - ok
08:14:35.0924 5116 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
08:14:35.0924 5116 i2omp - ok
08:14:35.0986 5116 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
08:14:35.0986 5116 i8042prt - ok
08:14:36.0033 5116 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
08:14:36.0033 5116 iaStorV - ok
08:14:36.0236 5116 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
08:14:36.0251 5116 idsvc - ok
08:14:36.0282 5116 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
08:14:36.0282 5116 iirsp - ok
08:14:36.0392 5116 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
08:14:36.0407 5116 IKEEXT - ok
08:14:36.0438 5116 int15 (c6e5276c00ebdeb096bb5ef4b797d1b6) C:\Windows\system32\drivers\int15.sys
08:14:36.0438 5116 int15 - ok
08:14:36.0470 5116 IntcAzAudAddService - ok
08:14:36.0516 5116 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
08:14:36.0532 5116 intelide - ok
08:14:36.0563 5116 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
08:14:36.0563 5116 intelppm - ok
08:14:36.0610 5116 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
08:14:36.0626 5116 IPBusEnum - ok
08:14:36.0657 5116 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:14:36.0657 5116 IpFilterDriver - ok
08:14:36.0719 5116 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
08:14:36.0735 5116 iphlpsvc - ok
08:14:36.0750 5116 IpInIp - ok
08:14:36.0782 5116 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
08:14:36.0797 5116 IPMIDRV - ok
08:14:36.0844 5116 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
08:14:36.0860 5116 IPNAT - ok
08:14:37.0016 5116 iPod Service (6e27978a4755f4789f912f5f49392f7c) C:\Program Files\iPod\bin\iPodService.exe
08:14:37.0047 5116 iPod Service - ok
08:14:37.0062 5116 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
08:14:37.0062 5116 IRENUM - ok
08:14:37.0094 5116 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
08:14:37.0109 5116 isapnp - ok
08:14:37.0203 5116 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
08:14:37.0218 5116 iScsiPrt - ok
08:14:37.0250 5116 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
08:14:37.0250 5116 iteatapi - ok
08:14:37.0281 5116 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
08:14:37.0296 5116 iteraid - ok
08:14:37.0328 5116 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
08:14:37.0328 5116 kbdclass - ok
08:14:37.0374 5116 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
08:14:37.0374 5116 kbdhid - ok
08:14:37.0406 5116 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
08:14:37.0406 5116 KeyIso - ok
08:14:37.0484 5116 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
08:14:37.0499 5116 KSecDD - ok
08:14:37.0577 5116 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
08:14:37.0593 5116 KtmRm - ok
08:14:37.0671 5116 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\System32\srvsvc.dll
08:14:37.0671 5116 LanmanServer - ok
08:14:37.0749 5116 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
08:14:37.0764 5116 LanmanWorkstation - ok
08:14:37.0858 5116 LightScribeService (793ff718477345cd5d232c50bed1e452) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
08:14:37.0874 5116 LightScribeService - ok
08:14:37.0905 5116 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
08:14:37.0905 5116 lltdio - ok
08:14:37.0967 5116 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
08:14:37.0983 5116 lltdsvc - ok
08:14:37.0998 5116 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
08:14:37.0998 5116 lmhosts - ok
08:14:38.0061 5116 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
08:14:38.0061 5116 LSI_FC - ok
08:14:38.0092 5116 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
08:14:38.0092 5116 LSI_SAS - ok
08:14:38.0139 5116 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
08:14:38.0139 5116 LSI_SCSI - ok
08:14:38.0170 5116 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
08:14:38.0186 5116 luafv - ok
08:14:38.0217 5116 Mcx2Svc (aef9babb8a506bc4ce0451a64aaded46) C:\Windows\system32\Mcx2Svc.dll
08:14:38.0217 5116 Mcx2Svc - ok
08:14:38.0248 5116 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys
08:14:38.0264 5116 mdmxsdk - ok
08:14:38.0295 5116 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
08:14:38.0295 5116 megasas - ok
08:14:38.0388 5116 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
08:14:38.0404 5116 MegaSR - ok
08:14:38.0513 5116 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
08:14:38.0529 5116 Microsoft Office Groove Audit Service - ok
08:14:38.0560 5116 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
08:14:38.0576 5116 MMCSS - ok
08:14:38.0607 5116 MobilityService - ok
08:14:38.0654 5116 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
08:14:38.0654 5116 Modem - ok
08:14:38.0669 5116 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
08:14:38.0685 5116 monitor - ok
08:14:38.0716 5116 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
08:14:38.0716 5116 mouclass - ok
08:14:38.0732 5116 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
08:14:38.0747 5116 mouhid - ok
08:14:38.0778 5116 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
08:14:38.0778 5116 MountMgr - ok
08:14:38.0810 5116 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
08:14:38.0810 5116 mpio - ok
08:14:38.0856 5116 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
08:14:38.0856 5116 mpsdrv - ok
08:14:38.0950 5116 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
08:14:38.0966 5116 MpsSvc - ok
08:14:38.0997 5116 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
08:14:38.0997 5116 Mraid35x - ok
08:14:39.0059 5116 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
08:14:39.0075 5116 MRxDAV - ok
08:14:39.0122 5116 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
08:14:39.0137 5116 mrxsmb - ok
08:14:39.0200 5116 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:14:39.0215 5116 mrxsmb10 - ok
08:14:39.0231 5116 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:14:39.0246 5116 mrxsmb20 - ok
08:14:39.0278 5116 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
08:14:39.0278 5116 msahci - ok
08:14:39.0324 5116 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
08:14:39.0324 5116 msdsm - ok
08:14:39.0371 5116 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
08:14:39.0387 5116 MSDTC - ok
08:14:39.0434 5116 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
08:14:39.0434 5116 Msfs - ok
08:14:39.0465 5116 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
08:14:39.0465 5116 msisadrv - ok
08:14:39.0527 5116 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
08:14:39.0527 5116 MSiSCSI - ok
08:14:39.0558 5116 msiserver - ok
08:14:39.0590 5116 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
08:14:39.0605 5116 MSKSSRV - ok
08:14:39.0621 5116 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
08:14:39.0621 5116 MSPCLOCK - ok
08:14:39.0652 5116 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
08:14:39.0652 5116 MSPQM - ok
08:14:39.0730 5116 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
08:14:39.0746 5116 MsRPC - ok
08:14:39.0777 5116 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
08:14:39.0777 5116 mssmbios - ok
08:14:39.0808 5116 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
08:14:39.0808 5116 MSTEE - ok
08:14:39.0839 5116 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
08:14:39.0839 5116 Mup - ok
08:14:39.0902 5116 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
08:14:39.0917 5116 napagent - ok
08:14:40.0011 5116 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
08:14:40.0011 5116 NativeWifiP - ok
08:14:40.0104 5116 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
08:14:40.0120 5116 NDIS - ok
08:14:40.0151 5116 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
08:14:40.0151 5116 NdisTapi - ok
08:14:40.0167 5116 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
08:14:40.0182 5116 Ndisuio - ok
08:14:40.0229 5116 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
08:14:40.0229 5116 NdisWan - ok
08:14:40.0276 5116 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
08:14:40.0276 5116 NDProxy - ok
08:14:40.0307 5116 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
08:14:40.0307 5116 NetBIOS - ok
08:14:40.0385 5116 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
08:14:40.0385 5116 netbt - ok
08:14:40.0432 5116 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
08:14:40.0432 5116 Netlogon - ok
08:14:40.0479 5116 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
08:14:40.0494 5116 Netman - ok
08:14:40.0541 5116 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
08:14:40.0557 5116 netprofm - ok
08:14:40.0682 5116 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
08:14:40.0697 5116 NetTcpPortSharing - ok
08:14:40.0744 5116 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
08:14:40.0744 5116 nfrd960 - ok
08:14:40.0791 5116 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
08:14:40.0806 5116 NlaSvc - ok
08:14:40.0869 5116 nmwcd (c82f4cc10ad315b6d6bcb14d0a7cad66) C:\Windows\system32\drivers\ccdcmb.sys
08:14:40.0869 5116 nmwcd - ok
08:14:40.0931 5116 nmwcdc (60ef5f5621d7832f00a3f190a0c905e2) C:\Windows\system32\drivers\ccdcmbo.sys
08:14:40.0931 5116 nmwcdc - ok
08:14:40.0994 5116 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
08:14:40.0994 5116 Npfs - ok
08:14:41.0009 5116 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
08:14:41.0025 5116 nsi - ok
08:14:41.0040 5116 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
08:14:41.0040 5116 nsiproxy - ok
08:14:41.0228 5116 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
08:14:41.0259 5116 Ntfs - ok
08:14:41.0306 5116 NTIBackupSvc (a2b6583a5652a385dff5e4f49ad48761) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
08:14:41.0306 5116 NTIBackupSvc - ok
08:14:41.0337 5116 NTIDrvr (2757d2ba59aee155209e24942ab127c9) C:\Windows\system32\DRIVERS\NTIDrvr.sys
08:14:41.0352 5116 NTIDrvr - ok
08:14:41.0446 5116 NTIPPKernel (547bfa3591c70674b0bfc99354ab78b3) C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys
08:14:41.0462 5116 NTIPPKernel - ok
08:14:41.0508 5116 NTISchedulerSvc (40b87fe8a1a9a5ac9e5a91d96f212bcd) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
08:14:41.0508 5116 NTISchedulerSvc - ok
08:14:41.0555 5116 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
08:14:41.0555 5116 ntrigdigi - ok
08:14:41.0571 5116 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
08:14:41.0586 5116 Null - ok
08:14:41.0649 5116 NVHDA (2c7ac27710e8d41c1eb7d1599187d237) C:\Windows\system32\drivers\nvhda32v.sys
08:14:41.0649 5116 NVHDA - ok
08:14:42.0476 5116 nvlddmkm (cb0d6f8f65b8766ff2aaaa78881fd9f8) C:\Windows\system32\DRIVERS\nvlddmkm.sys
08:14:42.0788 5116 nvlddmkm - ok
08:14:42.0944 5116 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
08:14:42.0944 5116 nvraid - ok
08:14:42.0975 5116 nvsmu (0fb6bf3ab170fc5bd403d25e134eafde) C:\Windows\system32\DRIVERS\nvsmu.sys
08:14:42.0975 5116 nvsmu - ok
08:14:43.0006 5116 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
08:14:43.0022 5116 nvstor - ok
08:14:43.0068 5116 nvstor32 (fa7b8eca6e845b244b7e30a9dcd82c6c) C:\Windows\system32\DRIVERS\nvstor32.sys
08:14:43.0068 5116 nvstor32 - ok
08:14:43.0115 5116 nvsvc (15315bb51e9025fe41b482681c6e7ba2) C:\Windows\system32\nvvsvc.exe
08:14:43.0131 5116 nvsvc - ok
08:14:43.0162 5116 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
08:14:43.0178 5116 nv_agp - ok
08:14:43.0193 5116 NwlnkFlt - ok
08:14:43.0209 5116 NwlnkFwd - ok
08:14:43.0396 5116 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
08:14:43.0412 5116 odserv - ok
08:14:43.0474 5116 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
08:14:43.0490 5116 ohci1394 - ok
08:14:43.0536 5116 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
08:14:43.0536 5116 ose - ok
08:14:43.0677 5116 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
08:14:43.0708 5116 p2pimsvc - ok
08:14:43.0739 5116 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
08:14:43.0755 5116 p2psvc - ok
08:14:43.0786 5116 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
08:14:43.0802 5116 Parport - ok
08:14:43.0848 5116 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
08:14:43.0864 5116 partmgr - ok
08:14:43.0895 5116 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
08:14:43.0895 5116 Parvdm - ok
08:14:43.0926 5116 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
08:14:43.0942 5116 PcaSvc - ok
08:14:44.0004 5116 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
08:14:44.0020 5116 pci - ok
08:14:44.0036 5116 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
08:14:44.0036 5116 pciide - ok
08:14:44.0082 5116 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
08:14:44.0098 5116 pcmcia - ok
08:14:44.0207 5116 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
08:14:44.0238 5116 PEAUTH - ok
08:14:44.0472 5116 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
08:14:44.0535 5116 pla - ok
08:14:44.0691 5116 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
08:14:44.0706 5116 PlugPlay - ok
08:14:44.0816 5116 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
08:14:44.0847 5116 PNRPAutoReg - ok
08:14:44.0878 5116 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
08:14:44.0909 5116 PNRPsvc - ok
08:14:45.0003 5116 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
08:14:45.0018 5116 PolicyAgent - ok
08:14:45.0096 5116 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
08:14:45.0096 5116 PptpMiniport - ok
08:14:45.0128 5116 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\DRIVERS\processr.sys
08:14:45.0128 5116 Processor - ok
08:14:45.0190 5116 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
08:14:45.0206 5116 ProfSvc - ok
08:14:45.0237 5116 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
08:14:45.0252 5116 ProtectedStorage - ok
08:14:45.0299 5116 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
08:14:45.0299 5116 PSched - ok
08:14:45.0330 5116 PSDFilter (1dcbb35090cc4b2bd3d661e6089523c6) C:\Windows\system32\DRIVERS\psdfilter.sys
08:14:45.0330 5116 PSDFilter - ok
08:14:45.0362 5116 PSDNServ (e26e46d619469964ac3609620f443867) C:\Windows\system32\DRIVERS\PSDNServ.sys
08:14:45.0362 5116 PSDNServ - ok
08:14:45.0393 5116 psdvdisk (3e1d134af2806867d06047c4cc33cc65) C:\Windows\system32\DRIVERS\PSDVdisk.sys
08:14:45.0393 5116 psdvdisk - ok
08:14:45.0518 5116 PSI_SVC_2 (543a4ef0923bf70d126625b034ef25af) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
08:14:45.0518 5116 PSI_SVC_2 - ok
08:14:45.0689 5116 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
08:14:45.0720 5116 ql2300 - ok
08:14:45.0767 5116 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
08:14:45.0783 5116 ql40xx - ok
08:14:45.0830 5116 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
08:14:45.0845 5116 QWAVE - ok
08:14:45.0876 5116 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
08:14:45.0892 5116 QWAVEdrv - ok
08:14:45.0908 5116 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
08:14:45.0908 5116 RasAcd - ok
08:14:45.0954 5116 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
08:14:45.0954 5116 RasAuto - ok
08:14:46.0001 5116 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
08:14:46.0001 5116 Rasl2tp - ok
08:14:46.0079 5116 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
08:14:46.0095 5116 RasMan - ok
08:14:46.0142 5116 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
08:14:46.0157 5116 RasPppoe - ok
08:14:46.0188 5116 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
08:14:46.0188 5116 RasSstp - ok
08:14:46.0235 5116 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
08:14:46.0251 5116 rdbss - ok
08:14:46.0282 5116 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
08:14:46.0282 5116 RDPCDD - ok
08:14:46.0344 5116 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
08:14:46.0360 5116 rdpdr - ok
08:14:46.0376 5116 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
08:14:46.0376 5116 RDPENCDD - ok
08:14:46.0454 5116 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
08:14:46.0469 5116 RDPWD - ok
08:14:46.0516 5116 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
08:14:46.0532 5116 RemoteAccess - ok
08:14:46.0594 5116 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
08:14:46.0610 5116 RemoteRegistry - ok
08:14:46.0703 5116 RichVideo (17e0bef5ca5c9ce52cc8082ac6ebc449) C:\Program Files\Cyberlink\Shared files\RichVideo.exe
08:14:46.0719 5116 RichVideo - ok
08:14:46.0750 5116 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
08:14:46.0750 5116 RpcLocator - ok
08:14:46.0859 5116 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
08:14:46.0890 5116 RpcSs - ok
08:14:46.0922 5116 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
08:14:46.0922 5116 rspndr - ok
08:14:46.0968 5116 RTSTOR (830b682cb24206f457ea8a617605209f) C:\Windows\system32\drivers\RTSTOR.SYS
08:14:46.0968 5116 RTSTOR - ok
08:14:47.0000 5116 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
08:14:47.0000 5116 SamSs - ok
08:14:47.0062 5116 SASDIFSV (39763504067962108505bff25f024345) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
08:14:47.0062 5116 SASDIFSV - ok
08:14:47.0124 5116 SASKUTIL (77b9fc20084b48408ad3e87570eb4a85) C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
08:14:47.0124 5116 SASKUTIL - ok
08:14:47.0171 5116 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
08:14:47.0171 5116 sbp2port - ok
08:14:47.0234 5116 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
08:14:47.0234 5116 SCardSvr - ok
08:14:47.0358 5116 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
08:14:47.0390 5116 Schedule - ok
08:14:47.0436 5116 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
08:14:47.0436 5116 SCPolicySvc - ok
08:14:47.0483 5116 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
08:14:47.0499 5116 SDRSVC - ok
08:14:47.0530 5116 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
08:14:47.0530 5116 secdrv - ok
08:14:47.0561 5116 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
08:14:47.0577 5116 seclogon - ok
08:14:47.0592 5116 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\system32\sens.dll
08:14:47.0608 5116 SENS - ok
08:14:47.0639 5116 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
08:14:47.0655 5116 Serenum - ok
08:14:47.0670 5116 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
08:14:47.0686 5116 Serial - ok
08:14:47.0702 5116 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
08:14:47.0702 5116 sermouse - ok
08:14:47.0780 5116 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
08:14:47.0795 5116 SessionEnv - ok
08:14:47.0826 5116 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
08:14:47.0826 5116 sffdisk - ok
08:14:47.0873 5116 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
08:14:47.0889 5116 sffp_mmc - ok
08:14:47.0920 5116 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
08:14:47.0920 5116 sffp_sd - ok
08:14:47.0967 5116 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
08:14:47.0967 5116 sfloppy - ok
08:14:48.0029 5116 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
08:14:48.0045 5116 SharedAccess - ok
08:14:48.0138 5116 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
08:14:48.0138 5116 ShellHWDetection - ok
08:14:48.0170 5116 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
08:14:48.0185 5116 sisagp - ok
08:14:48.0216 5116 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
08:14:48.0232 5116 SiSRaid2 - ok
08:14:48.0263 5116 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
08:14:48.0263 5116 SiSRaid4 - ok
08:14:48.0684 5116 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
08:14:48.0825 5116 slsvc - ok
08:14:48.0965 5116 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
08:14:48.0981 5116 SLUINotify - ok
08:14:49.0074 5116 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
08:14:49.0074 5116 Smb - ok
08:14:49.0137 5116 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
08:14:49.0152 5116 SNMPTRAP - ok
08:14:49.0168 5116 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
08:14:49.0168 5116 spldr - ok
08:14:49.0246 5116 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
08:14:49.0262 5116 Spooler - ok
08:14:49.0402 5116 sptd (71e276f6d189413266ea22171806597b) C:\Windows\system32\Drivers\sptd.sys
08:14:49.0402 5116 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 71e276f6d189413266ea22171806597b
08:14:49.0402 5116 sptd ( LockedFile.Multi.Generic ) - warning
08:14:49.0402 5116 sptd - detected LockedFile.Multi.Generic (1)
08:14:49.0480 5116 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
08:14:49.0496 5116 srv - ok
08:14:49.0527 5116 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
08:14:49.0542 5116 srv2 - ok
08:14:49.0574 5116 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
08:14:49.0589 5116 srvnet - ok
08:14:49.0636 5116 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
08:14:49.0636 5116 SSDPSRV - ok
08:14:49.0698 5116 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
08:14:49.0714 5116 SstpSvc - ok
08:14:49.0761 5116 StillCam (ef70b3d22b4bffda6ea851ecb063efaa) C:\Windows\system32\DRIVERS\serscan.sys
08:14:49.0761 5116 StillCam - ok
08:14:49.0870 5116 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
08:14:49.0886 5116 stisvc - ok
08:14:49.0932 5116 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
08:14:49.0948 5116 swenum - ok
08:14:49.0995 5116 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
08:14:50.0026 5116 swprv - ok
08:14:50.0042 5116 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
08:14:50.0057 5116 Symc8xx - ok
08:14:50.0073 5116 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
08:14:50.0088 5116 Sym_hi - ok
08:14:50.0104 5116 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
08:14:50.0104 5116 Sym_u3 - ok
08:14:50.0166 5116 SynTP (bf7aa84d5af0faa0978c840e63b17dbf) C:\Windows\system32\DRIVERS\SynTP.sys
08:14:50.0166 5116 SynTP - ok
08:14:50.0291 5116 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
08:14:50.0307 5116 SysMain - ok
08:14:50.0354 5116 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
08:14:50.0369 5116 TabletInputService - ok
08:14:50.0447 5116 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
08:14:50.0478 5116 TapiSrv - ok
08:14:50.0494 5116 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
08:14:50.0510 5116 TBS - ok
08:14:50.0650 5116 Tcpip (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\drivers\tcpip.sys
08:14:50.0681 5116 Tcpip - ok
08:14:50.0728 5116 Tcpip6 (16731b631f28f63cd9f4cb60940e7ddd) C:\Windows\system32\DRIVERS\tcpip.sys
08:14:50.0759 5116 Tcpip6 - ok
08:14:50.0790 5116 tcpipreg (3fc13f09af9be487c7b4fac4070a036c) C:\Windows\system32\drivers\tcpipreg.sys
08:14:50.0806 5116 tcpipreg - ok
08:14:50.0837 5116 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
08:14:50.0837 5116 TDPIPE - ok
08:14:50.0868 5116 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
08:14:50.0868 5116 TDTCP - ok
08:14:50.0931 5116 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
08:14:50.0931 5116 tdx - ok
08:14:50.0993 5116 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
08:14:50.0993 5116 TermDD - ok
08:14:51.0118 5116 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
08:14:51.0134 5116 TermService - ok
08:14:51.0212 5116 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
08:14:51.0227 5116 Themes - ok
08:14:51.0258 5116 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
08:14:51.0274 5116 THREADORDER - ok
08:14:51.0321 5116 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
08:14:51.0321 5116 TrkWks - ok
08:14:51.0399 5116 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
08:14:51.0399 5116 TrustedInstaller - ok
08:14:51.0446 5116 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
08:14:51.0446 5116 tssecsrv - ok
08:14:51.0492 5116 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
08:14:51.0492 5116 tunmp - ok
08:14:51.0524 5116 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
08:14:51.0524 5116 tunnel - ok
08:14:51.0570 5116 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
08:14:51.0570 5116 uagp35 - ok
08:14:51.0602 5116 UBHelper (f763e070843ee2803de1395002b42938) C:\Windows\system32\drivers\UBHelper.sys
08:14:51.0602 5116 UBHelper - ok
08:14:51.0664 5116 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
08:14:51.0664 5116 udfs - ok
08:14:51.0726 5116 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
08:14:51.0742 5116 UI0Detect - ok
08:14:51.0789 5116 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
08:14:51.0789 5116 uliagpkx - ok
08:14:51.0851 5116 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
08:14:51.0851 5116 uliahci - ok
08:14:51.0914 5116 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
08:14:51.0914 5116 UlSata - ok
08:14:51.0945 5116 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
08:14:51.0960 5116 ulsata2 - ok
08:14:51.0992 5116 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
08:14:51.0992 5116 umbus - ok
08:14:52.0054 5116 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
08:14:52.0070 5116 upnphost - ok
08:14:52.0116 5116 upperdev (bb16932a4189e82d6c455042c11849b6) C:\Windows\system32\DRIVERS\usbser_lowerflt.sys
08:14:52.0116 5116 upperdev - ok
08:14:52.0179 5116 USBAAPL (4b8a9c16b6d9258ed99c512aecb8c555) C:\Windows\system32\Drivers\usbaapl.sys
08:14:52.0194 5116 USBAAPL - ok
08:14:52.0257 5116 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
08:14:52.0272 5116 usbccgp - ok
08:14:52.0304 5116 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
08:14:52.0304 5116 usbcir - ok
08:14:52.0366 5116 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
08:14:52.0382 5116 usbehci - ok
08:14:52.0413 5116 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
08:14:52.0428 5116 usbhub - ok
08:14:52.0475 5116 usbohci (ce697fee0d479290d89bec80dfe793b7) C:\Windows\system32\DRIVERS\usbohci.sys
08:14:52.0491 5116 usbohci - ok
08:14:52.0522 5116 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
08:14:52.0522 5116 usbprint - ok
08:14:52.0569 5116 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
08:14:52.0584 5116 usbscan - ok
08:14:52.0631 5116 usbser (d575246188f63de0accf6eac5fb59e6a) C:\Windows\system32\DRIVERS\usbser.sys
08:14:52.0631 5116 usbser - ok
08:14:52.0694 5116 UsbserFilt (e748d50b3b2ec7f40a2ba67fb094cf01) C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys
08:14:52.0694 5116 UsbserFilt - ok
08:14:52.0756 5116 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
08:14:52.0756 5116 USBSTOR - ok
08:14:52.0787 5116 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
08:14:52.0803 5116 usbuhci - ok
08:14:52.0865 5116 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
08:14:52.0865 5116 usbvideo - ok
08:14:52.0928 5116 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
08:14:52.0943 5116 UxSms - ok
08:14:53.0037 5116 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
08:14:53.0052 5116 vds - ok
08:14:53.0099 5116 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
08:14:53.0099 5116 vga - ok
08:14:53.0130 5116 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
08:14:53.0130 5116 VgaSave - ok
08:14:53.0177 5116 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
08:14:53.0177 5116 viaagp - ok
08:14:53.0208 5116 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
08:14:53.0208 5116 ViaC7 - ok
08:14:53.0224 5116 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
08:14:53.0240 5116 viaide - ok
08:14:53.0271 5116 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
08:14:53.0271 5116 volmgr - ok
08:14:53.0364 5116 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
08:14:53.0380 5116 volmgrx - ok
08:14:53.0442 5116 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
08:14:53.0458 5116 volsnap - ok
08:14:53.0505 5116 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
08:14:53.0505 5116 vsmraid - ok
08:14:53.0676 5116 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
08:14:53.0723 5116 VSS - ok
08:14:53.0817 5116 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
08:14:53.0832 5116 W32Time - ok
08:14:53.0895 5116 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
08:14:53.0910 5116 WacomPen - ok
08:14:53.0942 5116 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
08:14:53.0942 5116 Wanarp - ok
08:14:53.0957 5116 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
08:14:53.0973 5116 Wanarpv6 - ok
08:14:54.0035 5116 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
08:14:54.0066 5116 wcncsvc - ok
08:14:54.0113 5116 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
08:14:54.0129 5116 WcsPlugInService - ok
08:14:54.0160 5116 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
08:14:54.0176 5116 Wd - ok
08:14:54.0254 5116 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
08:14:54.0269 5116 Wdf01000 - ok
08:14:54.0316 5116 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
08:14:54.0332 5116 WdiServiceHost - ok
08:14:54.0347 5116 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
08:14:54.0347 5116 WdiSystemHost - ok
08:14:54.0441 5116 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
08:14:54.0456 5116 WebClient - ok
08:14:54.0519 5116 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
08:14:54.0534 5116 Wecsvc - ok
08:14:54.0581 5116 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
08:14:54.0597 5116 wercplsupport - ok
08:14:54.0644 5116 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
08:14:54.0659 5116 WerSvc - ok
08:14:54.0768 5116 winachsf (bb9cbaf6ac20452b245c324f1f50ee81) C:\Windows\system32\DRIVERS\HSX_CNXT.sys
08:14:54.0800 5116 winachsf - ok
08:14:54.0831 5116 winbondcir (3fa87d56769838aac82fafc3e78fc732) C:\Windows\system32\DRIVERS\winbondcir.sys
08:14:54.0831 5116 winbondcir - ok
08:14:54.0924 5116 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
08:14:54.0940 5116 WinDefend - ok
08:14:54.0971 5116 WinHttpAutoProxySvc - ok
08:14:55.0080 5116 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
08:14:55.0096 5116 Winmgmt - ok
08:14:55.0268 5116 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
08:14:55.0314 5116 WinRM - ok
08:14:55.0424 5116 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
08:14:55.0455 5116 Wlansvc - ok
08:14:55.0517 5116 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
08:14:55.0533 5116 WmiAcpi - ok
08:14:55.0626 5116 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
08:14:55.0642 5116 wmiApSrv - ok
08:14:55.0798 5116 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
08:14:55.0814 5116 WMPNetworkSvc - ok
08:14:55.0860 5116 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
08:14:55.0876 5116 WPCSvc - ok
08:14:55.0954 5116 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
08:14:55.0970 5116 WPDBusEnum - ok
08:14:56.0063 5116 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
08:14:56.0079 5116 WpdUsb - ok
08:14:56.0110 5116 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
08:14:56.0126 5116 ws2ifsl - ok
08:14:56.0172 5116 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\system32\wscsvc.dll
08:14:56.0188 5116 wscsvc - ok
08:14:56.0204 5116 WSearch - ok
08:14:56.0266 5116 WSVD (0d0367919d12143739cd7ec67a65b6eb) C:\Windows\system32\drivers\WSVD.sys
08:14:56.0282 5116 WSVD - ok
08:14:56.0516 5116 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
08:14:56.0609 5116 wuauserv - ok
08:14:56.0781 5116 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
08:14:56.0781 5116 WUDFRd - ok
08:14:56.0828 5116 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
08:14:56.0843 5116 wudfsvc - ok
08:14:56.0859 5116 XAudio (dab33cfa9dd24251aaa389ff36b64d4b) C:\Windows\system32\DRIVERS\xaudio.sys
08:14:56.0874 5116 XAudio - ok
08:14:56.0937 5116 XAudioService (cd5f291a1161f15896d1a4d63daff5df) C:\Windows\system32\DRIVERS\xaudio.exe
08:14:56.0952 5116 XAudioService - ok
08:14:57.0046 5116 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} (4d840c6af3c020ed3a35efba9025cf4a) C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl
08:14:57.0046 5116 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} - ok
08:14:57.0108 5116 MBR (0x1B8) (7ba4c7ea1ef33a92f5f01be63edacb6a) \Device\Harddisk0\DR0
08:15:10.0384 5116 \Device\Harddisk0\DR0 - ok
08:15:10.0415 5116 Boot (0x1200) (ab1764870528b2ebafb0933e3eadcdda) \Device\Harddisk0\DR0\Partition0
08:15:10.0431 5116 \Device\Harddisk0\DR0\Partition0 - ok
08:15:10.0462 5116 Boot (0x1200) (fd394050d295c9eda662a503aca86ea7) \Device\Harddisk0\DR0\Partition1
08:15:10.0462 5116 \Device\Harddisk0\DR0\Partition1 - ok
08:15:10.0462 5116 ============================================================
08:15:10.0462 5116 Scan finished
08:15:10.0462 5116 ============================================================
08:15:10.0509 4740 Detected object count: 1
08:15:10.0509 4740 Actual detected object count: 1
08:15:16.0312 4740 sptd ( LockedFile.Multi.Generic ) - skipped by user
08:15:16.0312 4740 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
Det var den første den anden følger om lidt.
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-05-09 07:18:48 ——————————————-
07:18:48.430 OS Version: Windows 6.0.6002 Service Pack 2
07:18:48.430 Number of processors: 2 586 0x301
07:18:48.430 ComputerName: SHHS-PC UserName: SHHS
07:18:51.020 Initialize success
07:21:48.878 AVAST engine defs: 12050801
07:23:21.214 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000068
07:23:21.230 Disk 0 Vendor: Hitachi_ FB4O Size: 305245MB BusType: 6
07:23:21.245 Disk 0 MBR read successfully
07:23:21.261 Disk 0 MBR scan
07:23:21.292 Disk 0 unknown MBR code
07:23:21.308 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 10240 MB offset 2048
07:23:21.354 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 147501 MB offset 20973568
07:23:21.386 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 147502 MB offset 323055616
07:23:21.417 Disk 0 scanning sectors +625139712
07:23:21.495 Disk 0 scanning C:\Windows\system32\drivers
07:23:40.402 Service scanning
07:24:19.324 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
07:24:33.785 Modules scanning
07:25:00.929 Disk 0 trace - called modules:
07:25:01.007 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x855a01f8]<<
07:25:01.054 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85f93270]
07:25:01.085 3 CLASSPNP.SYS[899a28b3] -> nt!IofCallDriver -> [0x847d25f8]
07:25:01.132 5 acpi.sys[807436bc] -> nt!IofCallDriver -> \Device\00000068[0x85689ac8]
07:25:01.179 \Driver\nvstor32[0x8566d030] -> IRP_MJ_CREATE -> 0x855a01f8
07:25:02.271 AVAST engine scan C:\Windows
07:25:08.246 AVAST engine scan C:\Windows\system32
07:31:08.793 AVAST engine scan C:\Windows\system32\drivers
07:31:35.328 AVAST engine scan C:\Users\SHHS
07:33:52.125 Disk 0 MBR has been saved successfully to “C:\Users\SHHS\Desktop\MBR.dat”
07:33:52.187 The log file has been saved successfully to “C:\Users\SHHS\Desktop\aswMBR.txt”
Det ser ud som om smart faktura pro porgrammet er lukket ned og skal startes forfra… kan du på nogen måde tjekke det.
Administrator
Antal indlæg: 7044
minimax - 09.05.2012 09:24:28
Det ser ud som om smart faktura pro porgrammet er lukket ned og skal startes forfra… kan du på nogen måde tjekke det.
Lad os ta’ en ting ad gangen
Slet den ComboFix du har, og hent en ny!
———
Hent og gem ComboFix på dit skrivebord. <- Vigtigt
Højreklik på skrivebordet og vælg ny->tekstdokument og kopier det fremhævede ind og gem filen som CFScript
Killall::
DDS::
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;<local>
ClearJavaCache::
Da Combofix kan konflikte med dine sikkerhedsprogrammer er det vigtigt at du deaktiverer dem. <- Vigtigt
Tag så fat i den nye fil med musen, og før den hen over ComboFix-filen, hvorefter du “giver slip” med musen.
http://www.fromsej.saknet.dk/billeder/swfcombo.gif
Så skulle ComboFix gerne give sig til at arbejde. Muligvis vil den kræve en genstart, hvilket du skal tillade. Du bør ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.
Når Combofix er færdig, og efter det (muligvis) har genstartet, skulle der gerne åbnes en logfil combofix.txt som ligger her C:\Combofix.txt
Indholdet af denne fil må du gerne lægge herind.
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !
ComboFix 12-05-09.01 - SHHS 09-05-2012 18:50:01.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.45.1030.18.2557.1529 [GMT 2:00]
Kører fra: c:\users\SHHS\Desktop\ComboFix.exe
Kommandoer benyttet :: c:\users\SHHS\Desktop\CFScript.txt
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((( Filer skabt fra 2012-04-09 til 2012-05-09 )))))))))))))))))))))))))))))))))))
.
.
2012-05-09 17:05 . 2012-05-09 17:20 ———— d——-w- c:\users\SHHS\AppData\Local\temp
2012-05-09 17:05 . 2012-05-09 17:05 ———— d——-w- c:\users\Default\AppData\Local\temp
2012-05-06 20:29 . 2012-02-29 15:11 5120 ——a-w- c:\windows\system32\wmi.dll
2012-05-06 20:29 . 2012-02-29 15:11 172032 ——a-w- c:\windows\system32\wintrust.dll
2012-05-06 20:29 . 2012-02-29 15:09 157696 ——a-w- c:\windows\system32\imagehlp.dll
2012-05-06 20:29 . 2012-02-29 13:32 12800 ——a-w- c:\windows\system32\drivers\fs_rec.sys
2012-05-06 20:26 . 2012-03-06 06:39 3602816 ——a-w- c:\windows\system32\ntkrnlpa.exe
2012-05-06 20:26 . 2012-03-06 06:39 3550080 ——a-w- c:\windows\system32\ntoskrnl.exe
2012-05-06 19:29 . 2006-11-02 09:45 16896 ——a-w- c:\windows\system32\grpconv.exe
2012-05-06 17:22 . 2012-03-01 11:01 2409784 ——a-w- c:\program files\Windows Mail\OESpamFilter.dat
2012-05-06 06:34 . 2012-05-06 06:34 ———— d——-w- c:\users\SHHS\AppData\Roaming\SUPERAntiSpyware.com
2012-05-06 06:33 . 2012-05-06 06:34 ———— d——-w- c:\program files\SUPERAntiSpyware
2012-05-06 06:33 . 2012-05-06 06:33 ———— d——-w- c:\programdata\SUPERAntiSpyware.com
2012-05-06 06:21 . 2012-04-18 01:06 6734704 ——a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{D382EE03-51B5-412F-A4B0-37339982D8AB}\mpengine.dll
2012-05-05 08:26 . 2012-05-05 08:26 ———— d——-w- c:\program files\ESET
2012-05-05 07:28 . 2012-05-05 07:28 ———— d——-w- c:\program files\CCleaner
2012-05-04 20:47 . 2012-05-04 20:56 ———— d——-w- C:\filer fundet d drev
2012-05-04 11:48 . 2012-05-04 11:48 ———— d——-w- c:\users\SHHS\filer fundet c drev
2012-05-04 11:42 . 2012-05-04 11:42 ———— d——-w- c:\program files\File Scavenger 4.0
2012-05-04 10:33 . 2012-05-04 10:33 ———— d——-w- c:\users\SHHS\Formularer
2012-05-04 10:32 . 2012-05-04 10:33 ———— d——-w- c:\users\SHHS\1
2012-05-04 10:18 . 2012-05-04 10:18 ———— d——-w- c:\users\SHHS\AppData\Local\ElevatedDiagnostics
2012-05-04 10:09 . 2012-05-04 10:09 ———— d——-w- c:\users\Public\Formularer
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-05 10:45 . 2012-04-05 10:45 12872 ——a-w- c:\windows\system32\bootdelete.exe
2012-04-04 13:56 . 2012-04-04 17:19 22344 ——a-w- c:\windows\system32\drivers\mbam.sys
2012-02-24 02:25 . 2012-02-24 02:25 161792 ——a-w- c:\windows\system32\msls31.dll
2012-02-24 02:25 . 2012-02-24 02:25 74752 ——a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-02-24 02:25 . 2012-02-24 02:25 76800 ——a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-02-24 02:25 . 2012-02-24 02:25 48640 ——a-w- c:\windows\system32\mshtmler.dll
2012-02-24 02:25 . 2012-02-24 02:25 86528 ——a-w- c:\windows\system32\iesysprep.dll
2012-02-24 02:25 . 2012-02-24 02:25 63488 ——a-w- c:\windows\system32\tdc.ocx
2012-02-24 02:25 . 2012-02-24 02:25 367104 ——a-w- c:\windows\system32\html.iec
2012-02-24 02:25 . 2012-02-24 02:25 74752 ——a-w- c:\windows\system32\iesetup.dll
2012-02-24 02:25 . 2012-02-24 02:25 23552 ——a-w- c:\windows\system32\licmgr10.dll
2012-02-24 02:25 . 2012-02-24 02:25 152064 ——a-w- c:\windows\system32\wextract.exe
2012-02-24 02:25 . 2012-02-24 02:25 150528 ——a-w- c:\windows\system32\iexpress.exe
2012-02-24 02:25 . 2012-02-24 02:25 420864 ——a-w- c:\windows\system32\vbscript.dll
2012-02-24 02:25 . 2012-02-24 02:25 142848 ——a-w- c:\windows\system32\ieUnatt.exe
2012-02-24 02:25 . 2012-02-24 02:25 11776 ——a-w- c:\windows\system32\mshta.exe
2012-02-24 02:25 . 2012-02-24 02:25 101888 ——a-w- c:\windows\system32\admparse.dll
2012-02-24 02:25 . 2012-02-24 02:25 35840 ——a-w- c:\windows\system32\imgutil.dll
2012-02-24 02:25 . 2012-02-24 02:25 110592 ——a-w- c:\windows\system32\IEAdvpack.dll
2012-02-23 08:18 . 2009-10-03 01:04 237072 ———w- c:\windows\system32\MpSigStub.exe
2012-02-14 15:45 . 2012-03-14 07:39 219648 ——a-w- c:\windows\system32\d3d10_1core.dll
2012-02-14 15:45 . 2012-03-14 07:39 160768 ——a-w- c:\windows\system32\d3d10_1.dll
2012-02-13 14:12 . 2012-03-14 07:39 1172480 ——a-w- c:\windows\system32\d3d10warp.dll
2012-02-13 13:47 . 2012-03-14 07:39 683008 ——a-w- c:\windows\system32\d2d1.dll
2012-02-13 13:44 . 2012-03-14 07:39 1068544 ——a-w- c:\windows\system32\DWrite.dll
.
.
((((((((((((((((((((((((((((((((((( Start steder i reg.basen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@=”{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}”
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-05-14 16:05 121392 ——a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“DAEMON Tools Lite”=“c:\program files\DAEMON Tools Lite\daemon.exe” [2008-12-29 687560]
“ehTray.exe”=“c:\windows\ehome\ehTray.exe” [2008-01-21 125952]
“swg”=“c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe” [2009-03-29 39408]
“Akamai NetSession Interface”=“c:\users\SHHS\AppData\Local\Akamai\netsession_win.exe” [2012-03-13 3331872]
“WMPNSCFG”=“c:\program files\Windows Media Player\WMPNSCFG.exe” [2008-01-21 202240]
“SUPERAntiSpyware”=“c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe” [2012-05-01 3905920]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“SynTPEnh”=“c:\program files\Synaptics\SynTP\SynTPEnh.exe” [2008-02-13 1033512]
“NvCplDaemon”=“c:\windows\system32\NvCpl.dll” [2008-07-18 13543968]
“NvMediaCenter”=“c:\windows\system32\NvMcTray.dll” [2008-07-18 92704]
“BrMfcWnd”=“c:\program files\Brother\Brmfcmon\BrMfcWnd.exe” [2009-01-19 1150976]
“ControlCenter3”=“c:\program files\Brother\ControlCenter3\brctrcen.exe” [2009-01-09 114688]
“PhilipsSongbirdLauncher”=“c:\program files\Philips\Philips Songbird\extensions\philips-autoplay@philips.com\application\PhilipsSongbirdLauncher.exe” [2010-05-26 346624]
“Inno Tilt”=“c:\mouse driver\Tilt.exe” [2010-02-25 724992]
“iTunesHelper”=“c:\program files\iTunes\iTunesHelper.exe” [2010-12-13 421160]
“GrooveMonitor”=“c:\program files\Microsoft Office\Office12\GrooveMonitor.exe” [2009-02-26 30040]
“SunJavaUpdateSched”=“c:\program files\Common Files\Java\Java Update\jusched.exe” [2011-01-07 253672]
“Adobe Reader Speed Launcher”=“c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe” [2011-06-08 37296]
“Adobe ARM”=“c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe” [2011-03-30 937920]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
“EnableUIADesktopToggle”= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
“{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}”= “c:\program files\SUPERAntiSpyware\SASSEH.DLL” [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ——a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=”“
.
[HKLM\~\startupfolder\C:^Users^SHHS^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CurseClientStartup.ccip]
path=c:\users\SHHS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip
backup=c:\windows\pss\CurseClientStartup.ccip.Startup
backupExtension=.Startup
.
[HKLM\~\startupfolder\C:^Users^SHHS^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Screen Clipper and Launcher til OneNote 2007.lnk]
path=c:\users\SHHS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Screen Clipper and Launcher til OneNote 2007.lnk
backup=c:\windows\pss\Screen Clipper and Launcher til OneNote 2007.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2011-03-30 04:59 937920 ——a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-06-08 04:02 37296 ——a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeDeluxeAgent]
2008-05-12 21:10 147456 ———w- c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BkupTray]
2008-04-25 20:36 28672 ——a-w- c:\program files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-05-12 21:11 167936 ———w- c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2008-12-29 10:40 687560 ——a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eAudio]
2008-05-30 11:24 544768 ——a-w- c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
2008-05-14 16:05 526896 ——a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ePower_DMC]
2008-05-09 13:07 397312 ——a-w- c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2009-02-26 17:36 30040 ——a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndexSearch]
2008-07-09 22:05 46368 ——a-w- c:\program files\ScanSoft\PaperPort\IndexSearch.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
2008-07-16 10:09 821768 ——a-w- c:\progra~1\LAUNCH~1\QtZgAcer.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2009-07-26 15:44 3883856 ——a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PaperPort PTD]
2008-07-09 22:07 29984 ——a-w- c:\program files\ScanSoft\PaperPort\pptd40nt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlayMovie]
2008-05-12 16:28 167936 ———w- c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PLFSetI]
2008-06-30 16:56 200704 ——a-w- c:\windows\PLFSetI.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PPort11reminder]
2007-08-31 08:01 328992 ——a-w- c:\program files\ScanSoft\PaperPort\Ereg\Ereg.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-11-29 16:38 421888 ——a-w- c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate]
2006-10-25 08:03 210472 ——a-w- c:\program files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-01-07 11:12 253672 ——a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2009-03-29 00:28 39408 ——a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
2008-01-29 08:03 303104 ——a-w- c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
“DisableMonitoring”=dword:00000001
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011-08-11 116608]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Akamai REG_MULTI_SZ Akamai
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Indhold af mappen ‘Planlagte Opgaver’
.
2012-05-09 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 04:31]
.
2012-05-09 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 04:31]
.
. ———- Yderligere scanning———-
.
uStart Page = hxxp://www.google.dk/
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://www.nixat.com/
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&ksporter; til Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
Trusted Zone: danid.dk
TCP: DhcpNameServer = 193.162.153.164 194.239.134.83
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-05-09 19:20
Windows 6.0.6002 Service Pack 2 NTFS
.
scanner skjulte processer ...
.
scanner skjulte autostarter ...
.
scanner skjulte filer ...
.
scanning gennemført med succes
skjulte filer: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
“ImagePath”=”\??\c:\program files\Acer Arcade Deluxe\PlayMovie\000.fcl”
. ——————————- LÅSTE REGISTRERINGS NØGLER——————————-
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
“BlindDial”=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
“BlindDial”=dword:00000000
. ——————————- DLLs startet under kørende Processer——————————-
.
- - - - - - - > ‘Explorer.exe’(3808)
c:\windows\system32\NVSVC.DLL
c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
c:\program files\Acer\Empowering Technology\eDataSecurity\x86\sysenv.dll
. ————————————Andre kørende processer————————————
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\rundll32.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
c:\program files\Acer\Empowering Technology\Service\ETService.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\acer\Mobility Center\MobilityService.exe
c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files\Cyberlink\Shared files\RichVideo.exe
c:\windows\system32\DRIVERS\xaudio.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\system32\conime.exe
.
**************************************************************************
.
Gennemført tid: 2012-05-09 19:26:54 - maskinen blev genstartet
ComboFix-quarantined-files.txt 2012-05-09 17:25
ComboFix2.txt 2012-05-09 13:30
ComboFix3.txt 2012-05-06 19:42
.
Pre-Kørsel: 31.534.424.064 byte ledig
Post-Kørsel: 31.497.256.960 byte ledig
.
- - End Of File - - 53103CBBA57F66497111E0C9048DB050
Hver gang jeg har brugt combofix kan jeg ikke bruge nettet før jeg har genstartet.
Administrator
Antal indlæg: 7044
Fint
Hver gang jeg har brugt combofix kan jeg ikke bruge nettet før jeg har genstartet.
Det sker nogen gange.
———
1. Hent dette lille værktøj:
http://jpshortstuff.247fixes.com/SystemLook.exe
http://images.malwareremoval.com/jpshortstuff/SystemLook.exe (alternativ adresse)
2. Dobbeltklik på systemlook.exe - nu dukker der et lille vindue op, hvor du skal kopiere HELE indholdet med fed skrift ind:
:file
c:\mouse driver\Tilt.exe
:folderfind
*faktura*
*Summa*
3. Luk så alle andre vinduer og klik på knappen Look. Programmet vil nu lede på din computer.
4. Når programmet er færdig med at lede, vil der dukke et notepad-vindue op, med en log fra SystemLook. Den skal du kopiere herind i forum i dit næste svar. Log’en kan også findes på dit Skrivebord med navnet: SystemLook.txt.
Vista og Windows 7 - højreklik på filen - Kør som Administrator.
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !
SystemLook 30.07.11 by jpshortstuff
Log created at 07:14 on 10/05/2012 by SHHS
Administrator - Elevation successful
========== file ==========
c:\mouse driver\Tilt.exe - File found and opened.
MD5: 2B7CA1547D0D09031A34B7644A7B4F79
Created at 03:15 on 25/02/2010
Modified at 03:15 on 25/02/2010
Size: 724992 bytes
Attributes:—a——
FileDescription: Tilt driver
FileVersion: 1, 0, 0, 1
ProductVersion: 1, 0, 0, 1
OriginalFilename: Tilt.EXE
InternalName: Tilt
ProductName: Tilt
CompanyName:
LegalCopyright: Copyright (C) 2009
Comments:
:folderfind - Unable to find/read file.
*faktura* - Unable to find/read file.
*Summa* - Unable to find/read file.
-= EOF =-
Administrator
Antal indlæg: 7044
Vil du godt kopiere det ind. Det ser ud som om, du har skrevet det
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !
SystemLook 30.07.11 by jpshortstuff
Log created at 23:20 on 10/05/2012 by SHHS
Administrator - Elevation successful
========== file ==========
c:\mouse driver\Tilt.exe - File found and opened.
MD5: 2B7CA1547D0D09031A34B7644A7B4F79
Created at 03:15 on 25/02/2010
Modified at 03:15 on 25/02/2010
Size: 724992 bytes
Attributes:—a——
FileDescription: Tilt driver
FileVersion: 1, 0, 0, 1
ProductVersion: 1, 0, 0, 1
OriginalFilename: Tilt.EXE
InternalName: Tilt
ProductName: Tilt
CompanyName:
LegalCopyright: Copyright (C) 2009
Comments:
:folderfind - Unable to find/read file.
*faktura* - Unable to find/read file.
*Summa* - Unable to find/read file.
-= EOF =-
Jeg har kopieret ikke skrevet noget af det selv…:)
Administrator
Antal indlæg: 7044
Jeg ved ikke hvordan du kopierer, men der mangler et : (kolon) foran folderfind.
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !
jeg bruger ctrl+c og ctrl+v til at kopiere, og jeg har marekeret hele teksten. er der en anden og bedre måde at gøre det på
SystemLook 30.07.11 by jpshortstuff
Log created at 12:32 on 11/05/2012 by SHHS
Administrator - Elevation successful
========== file ==========
c:\mouse driver\Tilt.exe - File found and opened.
MD5: 2B7CA1547D0D09031A34B7644A7B4F79
Created at 03:15 on 25/02/2010
Modified at 03:15 on 25/02/2010
Size: 724992 bytes
Attributes:—a——
FileDescription: Tilt driver
FileVersion: 1, 0, 0, 1
ProductVersion: 1, 0, 0, 1
OriginalFilename: Tilt.EXE
InternalName: Tilt
ProductName: Tilt
CompanyName:
LegalCopyright: Copyright (C) 2009
Comments:
:folderfind - Unable to find/read file.
*faktura* - Unable to find/read file.
*Summa* - Unable to find/read file.
-= EOF =-
Her er det fra systemlook :
SystemLook 30.07.11 by jpshortstuff
Log created at 17:44 on 11/05/2012 by SHHS
Administrator - Elevation successful
========== file ==========
c:\mouse driver\Tilt.exe - File found and opened.
MD5: 2B7CA1547D0D09031A34B7644A7B4F79
Created at 03:15 on 25/02/2010
Modified at 03:15 on 25/02/2010
Size: 724992 bytes
Attributes:—a——
FileDescription: Tilt driver
FileVersion: 1, 0, 0, 1
ProductVersion: 1, 0, 0, 1
OriginalFilename: Tilt.EXE
InternalName: Tilt
ProductName: Tilt
CompanyName:
LegalCopyright: Copyright (C) 2009
Comments:
========== folderfind ==========
Searching for “*faktura*”
C:\Users\SHHS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Remy.Dk\Smart Faktura PRO d——— [13:56 25/02/2009]
C:\Users\SHHS\Desktop\Smart Faktura PRO d——— [13:55 25/02/2009]
C:\Users\SHHS\Desktop\SMART-FAKTURA d——— [13:59 25/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\faktura faxekalk d——— [16:23 20/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\faktura sydkystens hus og have d——— [09:12 12/01/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\SMART-FAKTURA d——— [18:33 20/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\Smart_Faktura_PRO d——— [18:29 20/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\SMART-FAKTURA\FAKTURA d——— [18:33 20/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\Smart_Faktura_PRO\Smart Faktura PRO d——— [18:29 20/02/2009]
C:\Users\SHHS\Desktop\service aftaler\sydkystens hus og have service\Smart_Faktura_PRO\Smart Faktura PRO\Application Files\SMART FAKTURA PRO_1_0_0_6 d——— [18:29 20/02/2009]
C:\Users\SHHS\Desktop\Smart Faktura PRO\Application Files\SMART FAKTURA PRO_1_0_0_6 d——— [13:55 25/02/2009]
C:\Users\SHHS\Desktop\SMART-FAKTURA\FAKTURA d——— [13:59 25/02/2009]
Searching for “*Summa*”
C:\Program Files\SummaSummarum d——— [13:44 25/03/2009]
C:\Program Files\iTunes\iTunes.Resources\da.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\de.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\en.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\en_GB.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\es.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\fi.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\fr.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\it.lproj\SummaryBar.nib d——— [09:48 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\ja.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\ko.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\nb.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\nl.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\pl.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\pt.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\pt_PT.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\ru.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\sv.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\zh_CN.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\Program Files\iTunes\iTunes.Resources\zh_TW.lproj\SummaryBar.nib d——— [09:49 27/12/2010]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stone’s SummaSummarum d——— [13:44 25/03/2009]
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Stone’s SummaSummarum d——— [13:44 25/03/2009]
C:\Users\SHHS\AppData\Local\VirtualStore\Program Files\SummaSummarum d——— [13:02 25/03/2009]
C:\Users\SHHS\AppData\Roaming\SummaSummarum d——— [07:58 24/02/2009]
-= EOF =-
Administrator
Antal indlæg: 7044
minimax - 11.05.2012 17:48:21
C:\Users\SHHS \Desktop\service aftaler\sydkystens hus og have service \faktura sydkystens hus og have
Er det en firma PC
Signatur
Undlad venligst at vedhæfte logs, medmindre du bliver bedt om det !