Virus redirection google.

Fermé
Cécile - 3 mai 2013 à 17:18
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 - 3 mai 2013 à 18:23
Bonjour,

Depuis hier je pense avoir un virus (ZeroAccess?) qui fait que je suis redirigée à chaque recherche google sur un site qui n'a aucun rapport avec mon choix mais je ne sais pas du tout comment m'en débarrasser. J'ai effectué une analyse avec mon antivirus (AVG) ainsi qu'avec Malwarebytes mais cela n'a rien changé.
Je viens donc ici vous demander de l'aide. J'ai fait deux rapports avec ZHPDiag et RogueKiller car j'ai cru comprendre que ça pouvait être utile... Je suis à votre écoute pour le reste des manipulations à effectuer pour me débarrasser de ce virus. Je vous remercie d'avance pour l'attention que vous porterez à ma requête.

Cécile

Rapport ZHPDiag :
http://pjjoint.malekal.com/files.php?id=ZHPDiag_20130503_u10v14g9k6h9
Rapport RogueKiller :
http://pjjoint.malekal.com/files.php?id=20130503_c12r10l13s13w15

A voir également:

7 réponses

2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
3 mai 2013 à 17:21
Hello,

- Quitte tous les programmes en cours.
- Relance RogueKiller.exe.
- Attends la fin du Prescan...
- Clique sur Scan.
- À la fin du scan, clique sur Suppression.
- Patiente...
- À la fin de la suppression, clique sur Rapport et copie/colle le contenu dans ta prochaine réponse.

Aide en vidéo : https://www.youtube.com/watch?v=v83OWU-Frvs&feature=youtu.be

Si tu as des questions, n'hésite pas à les poser !

@+

Gabriel.
1
Merci pour cette réponse rapide,

Voici le rapport après Suppression :
http://pjjoint.malekal.com/files.php?id=20130503_c7y8z7f811

J'ai l'impression que tout est remis dans l'ordre mais RK à l'air d'avoir trouvé autre chose.
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
3 mai 2013 à 17:58
Re,

Rien de spécial.
As-tu le rapport de suppression de RogueKiller ?

Tant mieux si tout est remis dans l'ordre, mais continue bien la désinfection, il y a d'autres choses, et on vérifiera si l'infection est belle et bien partie.

@+

Gabriel.
0
Voilà le rapport de la suppression :
http://pjjoint.malekal.com/files.php?id=20130503_z6t7s5w10t15

J'ai ensuite effectué un autre scan pour être sure, voici donc le dernier scan :
http://pjjoint.malekal.com/files.php?id=20130503_v9s13n12e5j10

Je pense que tout est ok.

Merci!
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
Modifié par 2011N2 le 3/05/2013 à 18:14
Re,

Bien. Normalement tout est ok pour ZeroAccess, cependant on va s'en assurer avec la procédure ci-dessous. En revanche tout n'est pas ok, il y a d'autres infections présentes sur ton PC (LPIs). On s'en occupe juste après.
Redémarre ton PC avant, si tu ne l'as pas fait depuis la suppression de RogueKiller.

- Télécharge TDSSKiller : https://support.kaspersky.com/downloads/utils/tdsskiller.zip

- Lance-le (Utilisateurs de Vista/Seven => Clique droit puis "Exécuter en tant que administrateur")

L'outil va télécharger automatiquement la dernière version de TDSSKiller.

- Clique sur "Start Scan".

Patiente pendant le scan. À la fin de l'analyse, appuie sur Report (en haut à droite du logiciel). Un rapport va s'ouvrir.

- Copie/Colle son contenu dans ta prochaine réponse sur le forum.

Note : Le rapport se trouve également sous C:\tdsskiller.txt.

Si TDSS.tdl2 est détecté l'option delete sera cochée par défaut.
Si TDSS.tdl3 est détecté assure toi que Cure est bien cochée.
Si TDSS.tdl4 (\HardDisk0\MBR) est détecté assure toi que Cure est bien cochée.
Si Suspicious file est indiqué, laisse l''option cochée sur Skip
Si Rootkit.Win32.ZAccess est détecté règle sur "cure" en haut, et "delete" en bas.

Aide en vidéo : https://www.youtube.com/watch?v=-JhW3Okri0Y&feature=youtu.be

Si tu as des questions, n'hésite pas à me les poser !

@+

Gabriel.
0
"No threats found"


18:20:29.0310 3436 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
18:20:29.0669 3436 ============================================================
18:20:29.0669 3436 Current date / time: 2013/05/03 18:20:29.0669
18:20:29.0669 3436 SystemInfo:
18:20:29.0669 3436
18:20:29.0669 3436 OS Version: 6.1.7601 ServicePack: 1.0
18:20:29.0669 3436 Product type: Workstation
18:20:29.0669 3436 ComputerName: JM-PC
18:20:29.0669 3436 UserName: jm
18:20:29.0669 3436 Windows directory: C:\Windows
18:20:29.0669 3436 System windows directory: C:\Windows
18:20:29.0669 3436 Processor architecture: Intel x86
18:20:29.0669 3436 Number of processors: 2
18:20:29.0669 3436 Page size: 0x1000
18:20:29.0669 3436 Boot type: Normal boot
18:20:29.0669 3436 ============================================================
18:20:30.0933 3436 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x5686, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000050
18:20:30.0948 3436 ============================================================
18:20:30.0948 3436 \Device\Harddisk0\DR0:
18:20:30.0948 3436 MBR partitions:
18:20:30.0948 3436 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x12A16361
18:20:30.0948 3436 ============================================================
18:20:30.0995 3436 C: <-> \Device\Harddisk0\DR0\Partition1
18:20:30.0995 3436 ============================================================
18:20:30.0995 3436 Initialize success
18:20:30.0995 3436 ============================================================
18:20:34.0661 3160 ============================================================
18:20:34.0661 3160 Scan started
18:20:34.0661 3160 Mode: Manual;
18:20:34.0661 3160 ============================================================
18:20:35.0348 3160 ================ Scan system memory ========================
18:20:35.0348 3160 System memory - ok
18:20:35.0348 3160 ================ Scan services =============================
18:20:35.0582 3160 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
18:20:35.0582 3160 1394ohci - ok
18:20:35.0706 3160 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
18:20:35.0706 3160 ACPI - ok
18:20:35.0847 3160 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
18:20:35.0847 3160 AcpiPmi - ok
18:20:36.0003 3160 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
18:20:36.0003 3160 AdobeARMservice - ok
18:20:36.0128 3160 [ 479901C99FA62D1C3261B7ACB1228DAD ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
18:20:36.0128 3160 AdobeFlashPlayerUpdateSvc - ok
18:20:36.0206 3160 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
18:20:36.0206 3160 adp94xx - ok
18:20:36.0252 3160 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
18:20:36.0252 3160 adpahci - ok
18:20:36.0299 3160 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
18:20:36.0299 3160 adpu320 - ok
18:20:36.0346 3160 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
18:20:36.0346 3160 AeLookupSvc - ok
18:20:36.0408 3160 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
18:20:36.0408 3160 AFD - ok
18:20:36.0440 3160 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
18:20:36.0455 3160 agp440 - ok
18:20:36.0502 3160 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
18:20:36.0502 3160 aic78xx - ok
18:20:36.0549 3160 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
18:20:36.0549 3160 ALG - ok
18:20:36.0580 3160 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
18:20:36.0596 3160 aliide - ok
18:20:36.0627 3160 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
18:20:36.0627 3160 amdagp - ok
18:20:36.0658 3160 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
18:20:36.0658 3160 amdide - ok
18:20:36.0705 3160 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
18:20:36.0705 3160 AmdK8 - ok
18:20:36.0752 3160 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
18:20:36.0752 3160 AmdPPM - ok
18:20:36.0798 3160 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
18:20:36.0798 3160 amdsata - ok
18:20:36.0830 3160 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
18:20:36.0845 3160 amdsbs - ok
18:20:36.0861 3160 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
18:20:36.0861 3160 amdxata - ok
18:20:36.0908 3160 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
18:20:36.0908 3160 AppID - ok
18:20:36.0954 3160 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
18:20:36.0970 3160 AppIDSvc - ok
18:20:37.0017 3160 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
18:20:37.0017 3160 Appinfo - ok
18:20:37.0048 3160 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
18:20:37.0064 3160 AppMgmt - ok
18:20:37.0110 3160 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
18:20:37.0110 3160 arc - ok
18:20:37.0142 3160 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
18:20:37.0142 3160 arcsas - ok
18:20:37.0266 3160 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
18:20:37.0266 3160 aspnet_state - ok
18:20:37.0298 3160 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
18:20:37.0298 3160 AsyncMac - ok
18:20:37.0329 3160 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
18:20:37.0329 3160 atapi - ok
18:20:37.0407 3160 [ 614A60AEE03A6151FDCBAC295854A9CB ] athr C:\Windows\system32\DRIVERS\athr.sys
18:20:37.0422 3160 athr - ok
18:20:37.0485 3160 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:20:37.0500 3160 AudioEndpointBuilder - ok
18:20:37.0516 3160 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
18:20:37.0516 3160 Audiosrv - ok
18:20:37.0688 3160 [ 0D8244A9DB70BC6C36E2FB56F6039AB6 ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe
18:20:37.0719 3160 AVGIDSAgent - ok
18:20:37.0781 3160 [ 1A2213B7D94944861449CB07BF2D099E ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdriverx.sys
18:20:37.0781 3160 AVGIDSDriver - ok
18:20:37.0812 3160 [ B0DEF92F4E1E6B9242E6C8FAB82703F7 ] AVGIDSHX C:\Windows\system32\DRIVERS\avgidshx.sys
18:20:37.0812 3160 AVGIDSHX - ok
18:20:37.0828 3160 [ A426B2DC795531D99E2EE1952AEC051A ] AVGIDSShim C:\Windows\system32\DRIVERS\avgidsshimx.sys
18:20:37.0828 3160 AVGIDSShim - ok
18:20:37.0844 3160 [ 08FA13787D77A75DC413E27FD92B44E8 ] Avgldx86 C:\Windows\system32\DRIVERS\avgldx86.sys
18:20:37.0859 3160 Avgldx86 - ok
18:20:37.0890 3160 [ 3E587EE55C70E6DB78A98D7121D3052E ] Avglogx C:\Windows\system32\DRIVERS\avglogx.sys
18:20:37.0906 3160 Avglogx - ok
18:20:37.0937 3160 [ 5AC56B2CF8EE751796C5A8FC5C631B66 ] Avgmfx86 C:\Windows\system32\DRIVERS\avgmfx86.sys
18:20:37.0937 3160 Avgmfx86 - ok
18:20:37.0968 3160 [ C29E6070396E437FDE184D739CCBA2C7 ] Avgrkx86 C:\Windows\system32\DRIVERS\avgrkx86.sys
18:20:37.0984 3160 Avgrkx86 - ok
18:20:38.0031 3160 [ 52448A41CF1769CB3627677A0509627B ] Avgtdix C:\Windows\system32\DRIVERS\avgtdix.sys
18:20:38.0031 3160 Avgtdix - ok
18:20:38.0062 3160 [ DC98337F0D2A9F6C0B6FB682297ECE3B ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe
18:20:38.0062 3160 avgwd - ok
18:20:38.0109 3160 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
18:20:38.0109 3160 AxInstSV - ok
18:20:38.0171 3160 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
18:20:38.0171 3160 b06bdrv - ok
18:20:38.0218 3160 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
18:20:38.0218 3160 b57nd60x - ok
18:20:38.0280 3160 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
18:20:38.0296 3160 BDESVC - ok
18:20:38.0312 3160 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
18:20:38.0312 3160 Beep - ok
18:20:38.0327 3160 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
18:20:38.0327 3160 blbdrive - ok
18:20:38.0374 3160 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
18:20:38.0374 3160 bowser - ok
18:20:38.0421 3160 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:20:38.0421 3160 BrFiltLo - ok
18:20:38.0452 3160 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:20:38.0452 3160 BrFiltUp - ok
18:20:38.0499 3160 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
18:20:38.0499 3160 Browser - ok
18:20:38.0530 3160 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
18:20:38.0530 3160 Brserid - ok
18:20:38.0561 3160 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
18:20:38.0561 3160 BrSerWdm - ok
18:20:38.0577 3160 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
18:20:38.0577 3160 BrUsbMdm - ok
18:20:38.0577 3160 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
18:20:38.0592 3160 BrUsbSer - ok
18:20:38.0608 3160 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
18:20:38.0608 3160 BTHMODEM - ok
18:20:38.0655 3160 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
18:20:38.0655 3160 bthserv - ok
18:20:38.0686 3160 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
18:20:38.0686 3160 cdfs - ok
18:20:38.0748 3160 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
18:20:38.0748 3160 cdrom - ok
18:20:38.0780 3160 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
18:20:38.0780 3160 CertPropSvc - ok
18:20:38.0811 3160 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
18:20:38.0811 3160 circlass - ok
18:20:38.0858 3160 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
18:20:38.0858 3160 CLFS - ok
18:20:38.0920 3160 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:20:38.0920 3160 clr_optimization_v2.0.50727_32 - ok
18:20:38.0982 3160 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:20:38.0982 3160 clr_optimization_v4.0.30319_32 - ok
18:20:38.0998 3160 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
18:20:38.0998 3160 CmBatt - ok
18:20:39.0029 3160 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
18:20:39.0029 3160 cmdide - ok
18:20:39.0076 3160 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
18:20:39.0076 3160 CNG - ok
18:20:39.0107 3160 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
18:20:39.0107 3160 Compbatt - ok
18:20:39.0154 3160 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
18:20:39.0154 3160 CompositeBus - ok
18:20:39.0170 3160 COMSysApp - ok
18:20:39.0201 3160 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
18:20:39.0201 3160 crcdisk - ok
18:20:39.0263 3160 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll
18:20:39.0263 3160 CryptSvc - ok
18:20:39.0294 3160 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
18:20:39.0294 3160 CSC - ok
18:20:39.0326 3160 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
18:20:39.0341 3160 CscService - ok
18:20:39.0404 3160 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
18:20:39.0404 3160 DcomLaunch - ok
18:20:39.0435 3160 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
18:20:39.0435 3160 defragsvc - ok
18:20:39.0482 3160 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
18:20:39.0497 3160 DfsC - ok
18:20:39.0544 3160 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
18:20:39.0544 3160 Dhcp - ok
18:20:39.0560 3160 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
18:20:39.0560 3160 discache - ok
18:20:39.0606 3160 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
18:20:39.0606 3160 Disk - ok
18:20:39.0653 3160 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
18:20:39.0669 3160 Dnscache - ok
18:20:39.0716 3160 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
18:20:39.0716 3160 dot3svc - ok
18:20:39.0762 3160 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
18:20:39.0762 3160 DPS - ok
18:20:39.0794 3160 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
18:20:39.0794 3160 drmkaud - ok
18:20:39.0856 3160 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
18:20:39.0872 3160 DXGKrnl - ok
18:20:39.0918 3160 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
18:20:39.0918 3160 EapHost - ok
18:20:40.0074 3160 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
18:20:40.0090 3160 ebdrv - ok
18:20:40.0137 3160 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
18:20:40.0137 3160 EFS - ok
18:20:40.0215 3160 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
18:20:40.0215 3160 ehRecvr - ok
18:20:40.0262 3160 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
18:20:40.0262 3160 ehSched - ok
18:20:40.0324 3160 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
18:20:40.0340 3160 elxstor - ok
18:20:40.0355 3160 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
18:20:40.0355 3160 ErrDev - ok
18:20:40.0433 3160 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
18:20:40.0433 3160 EventSystem - ok
18:20:40.0480 3160 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
18:20:40.0480 3160 exfat - ok
18:20:40.0511 3160 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
18:20:40.0527 3160 fastfat - ok
18:20:40.0589 3160 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
18:20:40.0589 3160 Fax - ok
18:20:40.0620 3160 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
18:20:40.0620 3160 fdc - ok
18:20:40.0652 3160 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
18:20:40.0652 3160 fdPHost - ok
18:20:40.0683 3160 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
18:20:40.0683 3160 FDResPub - ok
18:20:40.0698 3160 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
18:20:40.0698 3160 FileInfo - ok
18:20:40.0714 3160 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
18:20:40.0714 3160 Filetrace - ok
18:20:40.0730 3160 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
18:20:40.0745 3160 flpydisk - ok
18:20:40.0776 3160 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
18:20:40.0776 3160 FltMgr - ok
18:20:40.0823 3160 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll
18:20:40.0839 3160 FontCache - ok
18:20:40.0886 3160 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
18:20:40.0901 3160 FontCache3.0.0.0 - ok
18:20:40.0964 3160 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
18:20:40.0964 3160 FsDepends - ok
18:20:40.0995 3160 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
18:20:41.0010 3160 Fs_Rec - ok
18:20:41.0057 3160 [ E306A24D9694C724FA2491278BF50FDB ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
18:20:41.0057 3160 fvevol - ok
18:20:41.0104 3160 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
18:20:41.0120 3160 gagp30kx - ok
18:20:41.0166 3160 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
18:20:41.0166 3160 gpsvc - ok
18:20:41.0213 3160 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
18:20:41.0213 3160 hamachi - ok
18:20:41.0307 3160 [ BF50E3D40D24020F24055ACCFED99F05 ] Hamachi2Svc C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
18:20:41.0322 3160 Hamachi2Svc - ok
18:20:41.0354 3160 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
18:20:41.0354 3160 hcw85cir - ok
18:20:41.0400 3160 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:20:41.0416 3160 HdAudAddService - ok
18:20:41.0525 3160 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
18:20:41.0525 3160 HDAudBus - ok
18:20:41.0556 3160 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
18:20:41.0556 3160 HidBatt - ok
18:20:41.0572 3160 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
18:20:41.0588 3160 HidBth - ok
18:20:41.0634 3160 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
18:20:41.0634 3160 HidIr - ok
18:20:41.0697 3160 [ 7DDA322DF3022ABADA4DAE8E87C611D0 ] hidkmdf C:\Windows\system32\DRIVERS\hidkmdf.sys
18:20:41.0697 3160 hidkmdf - ok
18:20:41.0744 3160 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
18:20:41.0744 3160 hidserv - ok
18:20:41.0790 3160 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
18:20:41.0790 3160 HidUsb - ok
18:20:41.0837 3160 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
18:20:41.0837 3160 hkmsvc - ok
18:20:41.0868 3160 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:20:41.0884 3160 HomeGroupListener - ok
18:20:41.0900 3160 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:20:41.0915 3160 HomeGroupProvider - ok
18:20:41.0931 3160 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
18:20:41.0931 3160 HpSAMD - ok
18:20:41.0978 3160 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
18:20:41.0978 3160 HTTP - ok
18:20:42.0009 3160 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
18:20:42.0009 3160 hwpolicy - ok
18:20:42.0040 3160 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
18:20:42.0040 3160 i8042prt - ok
18:20:42.0071 3160 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
18:20:42.0071 3160 iaStorV - ok
18:20:42.0165 3160 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
18:20:42.0196 3160 idsvc - ok
18:20:42.0243 3160 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
18:20:42.0243 3160 iirsp - ok
18:20:42.0305 3160 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
18:20:42.0321 3160 IKEEXT - ok
18:20:42.0368 3160 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
18:20:42.0368 3160 intelide - ok
18:20:42.0399 3160 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
18:20:42.0414 3160 intelppm - ok
18:20:42.0446 3160 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
18:20:42.0446 3160 IPBusEnum - ok
18:20:42.0492 3160 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:20:42.0508 3160 IpFilterDriver - ok
18:20:42.0555 3160 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
18:20:42.0555 3160 IPMIDRV - ok
18:20:42.0602 3160 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
18:20:42.0602 3160 IPNAT - ok
18:20:42.0633 3160 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
18:20:42.0633 3160 IRENUM - ok
18:20:42.0664 3160 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
18:20:42.0664 3160 isapnp - ok
18:20:42.0680 3160 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
18:20:42.0680 3160 iScsiPrt - ok
18:20:42.0711 3160 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
18:20:42.0726 3160 kbdclass - ok
18:20:42.0758 3160 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
18:20:42.0773 3160 kbdhid - ok
18:20:42.0789 3160 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
18:20:42.0789 3160 KeyIso - ok
18:20:42.0851 3160 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
18:20:42.0851 3160 KSecDD - ok
18:20:42.0898 3160 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
18:20:42.0898 3160 KSecPkg - ok
18:20:42.0929 3160 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
18:20:42.0945 3160 KtmRm - ok
18:20:42.0992 3160 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
18:20:42.0992 3160 LanmanServer - ok
18:20:43.0038 3160 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:20:43.0038 3160 LanmanWorkstation - ok
18:20:43.0085 3160 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
18:20:43.0085 3160 lltdio - ok
18:20:43.0132 3160 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
18:20:43.0132 3160 lltdsvc - ok
18:20:43.0179 3160 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
18:20:43.0179 3160 lmhosts - ok
18:20:43.0210 3160 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
18:20:43.0210 3160 LSI_FC - ok
18:20:43.0226 3160 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
18:20:43.0226 3160 LSI_SAS - ok
18:20:43.0257 3160 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:20:43.0257 3160 LSI_SAS2 - ok
18:20:43.0288 3160 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:20:43.0288 3160 LSI_SCSI - ok
18:20:43.0319 3160 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
18:20:43.0319 3160 luafv - ok
18:20:43.0350 3160 [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
18:20:43.0350 3160 MBAMProtector - ok
18:20:43.0397 3160 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
18:20:43.0397 3160 MBAMScheduler - ok
18:20:43.0538 3160 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
18:20:43.0538 3160 MBAMService - ok
18:20:43.0584 3160 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
18:20:43.0584 3160 Mcx2Svc - ok
18:20:43.0616 3160 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
18:20:43.0616 3160 megasas - ok
18:20:43.0678 3160 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
18:20:43.0678 3160 MegaSR - ok
18:20:43.0709 3160 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
18:20:43.0709 3160 MMCSS - ok
18:20:43.0725 3160 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
18:20:43.0725 3160 Modem - ok
18:20:43.0772 3160 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
18:20:43.0772 3160 monitor - ok
18:20:43.0818 3160 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
18:20:43.0818 3160 mouclass - ok
18:20:43.0834 3160 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
18:20:43.0834 3160 mouhid - ok
18:20:43.0881 3160 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
18:20:43.0881 3160 mountmgr - ok
18:20:43.0928 3160 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
18:20:43.0943 3160 MozillaMaintenance - ok
18:20:43.0974 3160 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
18:20:43.0974 3160 mpio - ok
18:20:44.0021 3160 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
18:20:44.0021 3160 mpsdrv - ok
18:20:44.0052 3160 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
18:20:44.0052 3160 MRxDAV - ok
18:20:44.0099 3160 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
18:20:44.0099 3160 mrxsmb - ok
18:20:44.0146 3160 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:20:44.0146 3160 mrxsmb10 - ok
18:20:44.0193 3160 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:20:44.0193 3160 mrxsmb20 - ok
18:20:44.0240 3160 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
18:20:44.0240 3160 msahci - ok
18:20:44.0255 3160 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
18:20:44.0255 3160 msdsm - ok
18:20:44.0302 3160 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
18:20:44.0302 3160 MSDTC - ok
18:20:44.0349 3160 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
18:20:44.0349 3160 Msfs - ok
18:20:44.0364 3160 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
18:20:44.0364 3160 mshidkmdf - ok
18:20:44.0380 3160 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
18:20:44.0380 3160 msisadrv - ok
18:20:44.0442 3160 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
18:20:44.0442 3160 MSiSCSI - ok
18:20:44.0458 3160 msiserver - ok
18:20:44.0505 3160 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
18:20:44.0505 3160 MSKSSRV - ok
18:20:44.0536 3160 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
18:20:44.0536 3160 MSPCLOCK - ok
18:20:44.0552 3160 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
18:20:44.0552 3160 MSPQM - ok
18:20:44.0583 3160 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
18:20:44.0583 3160 MsRPC - ok
18:20:44.0630 3160 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
18:20:44.0630 3160 mssmbios - ok
18:20:44.0723 3160 MSSQL$SQLEXPRESS - ok
18:20:44.0817 3160 [ F1761C8FB2B25A32C6D63E36BB88C3AE ] MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
18:20:44.0817 3160 MSSQLServerADHelper100 - ok
18:20:44.0864 3160 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
18:20:44.0864 3160 MSTEE - ok
18:20:44.0895 3160 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
18:20:44.0895 3160 MTConfig - ok
18:20:44.0910 3160 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
18:20:44.0910 3160 Mup - ok
18:20:44.0957 3160 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
18:20:44.0973 3160 napagent - ok
18:20:45.0020 3160 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
18:20:45.0020 3160 NativeWifiP - ok
18:20:45.0129 3160 [ E0E4A1F81A7D69C595A8A9DDAD084C19 ] NAUpdate C:\Program Files\Nero\Update\NASvc.exe
18:20:45.0144 3160 NAUpdate - ok
18:20:45.0207 3160 [ 8C9C922D71F1CD4DEF73F186416B7896 ] NDIS C:\Windows\system32\drivers\ndis.sys
18:20:45.0222 3160 NDIS - ok
18:20:45.0254 3160 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
18:20:45.0254 3160 NdisCap - ok
18:20:45.0300 3160 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
18:20:45.0300 3160 NdisTapi - ok
18:20:45.0363 3160 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
18:20:45.0363 3160 Ndisuio - ok
18:20:45.0410 3160 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
18:20:45.0410 3160 NdisWan - ok
18:20:45.0425 3160 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
18:20:45.0425 3160 NDProxy - ok
18:20:45.0472 3160 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
18:20:45.0472 3160 NetBIOS - ok
18:20:45.0488 3160 [ 4996B53954BFDB2A0B9CCAEE98EE8C39 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
18:20:45.0503 3160 NetBT - ok
18:20:45.0519 3160 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
18:20:45.0519 3160 Netlogon - ok
18:20:45.0566 3160 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
18:20:45.0581 3160 Netman - ok
18:20:45.0644 3160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
18:20:45.0659 3160 NetMsmqActivator - ok
18:20:45.0659 3160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
18:20:45.0675 3160 NetPipeActivator - ok
18:20:45.0690 3160 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
18:20:45.0706 3160 netprofm - ok
18:20:45.0722 3160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
18:20:45.0722 3160 NetTcpActivator - ok
18:20:45.0737 3160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
18:20:45.0737 3160 NetTcpPortSharing - ok
18:20:45.0784 3160 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
18:20:45.0784 3160 nfrd960 - ok
18:20:45.0831 3160 [ 374071043F9E4231EE43BE2BB48DD36D ] NlaSvc C:\Windows\System32\nlasvc.dll
18:20:45.0846 3160 NlaSvc - ok
18:20:45.0862 3160 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
18:20:45.0878 3160 Npfs - ok
18:20:45.0924 3160 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
18:20:45.0924 3160 nsi - ok
18:20:45.0971 3160 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
18:20:45.0971 3160 nsiproxy - ok
18:20:46.0283 3160 [ 5E43D2B0EE64123D4880DFA6626DEFDE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
18:20:46.0299 3160 Ntfs - ok
18:20:46.0330 3160 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
18:20:46.0330 3160 Null - ok
18:20:46.0361 3160 [ A103F2A100B091809A120A1463BC9EB5 ] NVHDA C:\Windows\system32\drivers\nvhda32v.sys
18:20:46.0377 3160 NVHDA - ok
18:20:46.0611 3160 [ 0B2E7B39411FAA44EBDA76FB38673964 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:20:46.0673 3160 nvlddmkm - ok
18:20:46.0704 3160 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
18:20:46.0704 3160 nvraid - ok
18:20:46.0720 3160 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
18:20:46.0720 3160 nvstor - ok
18:20:46.0798 3160 [ 439FD6A5A34113388C51C48D0E5092AA ] nvsvc C:\Windows\system32\nvvsvc.exe
18:20:46.0814 3160 nvsvc - ok
18:20:46.0923 3160 [ E3C7676582502C5E4BB9288C3617AB59 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
18:20:46.0938 3160 nvUpdatusService - ok
18:20:46.0970 3160 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
18:20:46.0970 3160 nv_agp - ok
18:20:47.0001 3160 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
18:20:47.0001 3160 ohci1394 - ok
18:20:47.0032 3160 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
18:20:47.0032 3160 p2pimsvc - ok
18:20:47.0048 3160 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
18:20:47.0063 3160 p2psvc - ok
18:20:47.0094 3160 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
18:20:47.0094 3160 Parport - ok
18:20:47.0126 3160 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
18:20:47.0126 3160 partmgr - ok
18:20:47.0157 3160 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
18:20:47.0157 3160 Parvdm - ok
18:20:47.0157 3160 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
18:20:47.0172 3160 PcaSvc - ok
18:20:47.0188 3160 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
18:20:47.0188 3160 pci - ok
18:20:47.0219 3160 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
18:20:47.0235 3160 pciide - ok
18:20:47.0250 3160 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
18:20:47.0250 3160 pcmcia - ok
18:20:47.0282 3160 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
18:20:47.0282 3160 pcw - ok
18:20:47.0328 3160 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
18:20:47.0328 3160 PEAUTH - ok
18:20:47.0391 3160 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
18:20:47.0406 3160 PeerDistSvc - ok
18:20:47.0500 3160 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
18:20:47.0531 3160 pla - ok
18:20:47.0578 3160 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
18:20:47.0594 3160 PlugPlay - ok
18:20:47.0609 3160 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
18:20:47.0609 3160 PNRPAutoReg - ok
18:20:47.0656 3160 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
18:20:47.0656 3160 PNRPsvc - ok
18:20:47.0703 3160 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
18:20:47.0718 3160 PolicyAgent - ok
18:20:47.0765 3160 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
18:20:47.0765 3160 Power - ok
18:20:47.0812 3160 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
18:20:47.0812 3160 PptpMiniport - ok
18:20:47.0828 3160 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
18:20:47.0843 3160 Processor - ok
18:20:47.0874 3160 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
18:20:47.0890 3160 ProfSvc - ok
18:20:47.0906 3160 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
18:20:47.0906 3160 ProtectedStorage - ok
18:20:47.0937 3160 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
18:20:47.0937 3160 Psched - ok
18:20:47.0984 3160 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
18:20:47.0999 3160 ql2300 - ok
18:20:48.0030 3160 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
18:20:48.0030 3160 ql40xx - ok
18:20:48.0077 3160 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
18:20:48.0077 3160 QWAVE - ok
18:20:48.0093 3160 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:20:48.0093 3160 QWAVEdrv - ok
18:20:48.0108 3160 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:20:48.0124 3160 RasAcd - ok
18:20:48.0171 3160 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
18:20:48.0171 3160 RasAgileVpn - ok
18:20:48.0218 3160 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
18:20:48.0218 3160 RasAuto - ok
18:20:48.0249 3160 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:20:48.0249 3160 Rasl2tp - ok
18:20:48.0311 3160 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
18:20:48.0327 3160 RasMan - ok
18:20:48.0342 3160 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:20:48.0342 3160 RasPppoe - ok
18:20:48.0358 3160 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:20:48.0374 3160 RasSstp - ok
18:20:48.0405 3160 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:20:48.0405 3160 rdbss - ok
18:20:48.0420 3160 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
18:20:48.0420 3160 rdpbus - ok
18:20:48.0467 3160 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:20:48.0467 3160 RDPCDD - ok
18:20:48.0498 3160 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
18:20:48.0498 3160 RDPDR - ok
18:20:48.0530 3160 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:20:48.0545 3160 RDPENCDD - ok
18:20:48.0561 3160 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
18:20:48.0561 3160 RDPREFMP - ok
18:20:48.0623 3160 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:20:48.0623 3160 RdpVideoMiniport - ok
18:20:48.0670 3160 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:20:48.0670 3160 RDPWD - ok
18:20:48.0717 3160 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
18:20:48.0717 3160 rdyboost - ok
18:20:48.0748 3160 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
18:20:48.0748 3160 RemoteAccess - ok
18:20:48.0779 3160 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:20:48.0779 3160 RemoteRegistry - ok
18:20:48.0810 3160 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
18:20:48.0810 3160 RpcEptMapper - ok
18:20:48.0842 3160 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
18:20:48.0842 3160 RpcLocator - ok
18:20:48.0873 3160 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
18:20:48.0873 3160 RpcSs - ok
18:20:48.0920 3160 [ FD692C6FFADE58F7C4C3C3C9A0EC35BD ] RsFx0103 C:\Windows\system32\DRIVERS\RsFx0103.sys
18:20:48.0920 3160 RsFx0103 - ok
18:20:48.0982 3160 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:20:48.0982 3160 rspndr - ok
18:20:49.0013 3160 [ 7DFD48E24479B68B258D8770121155A0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
18:20:49.0029 3160 RTL8167 - ok
18:20:49.0060 3160 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
18:20:49.0060 3160 s3cap - ok
18:20:49.0091 3160 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
18:20:49.0091 3160 SamSs - ok
18:20:49.0138 3160 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:20:49.0154 3160 sbp2port - ok
18:20:49.0185 3160 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:20:49.0185 3160 SCardSvr - ok
18:20:49.0185 3160 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
18:20:49.0200 3160 scfilter - ok
18:20:49.0247 3160 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
18:20:49.0247 3160 Schedule - ok
18:20:49.0263 3160 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
18:20:49.0263 3160 SCPolicySvc - ok
18:20:49.0310 3160 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:20:49.0310 3160 SDRSVC - ok
18:20:49.0341 3160 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:20:49.0341 3160 secdrv - ok
18:20:49.0372 3160 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
18:20:49.0372 3160 seclogon - ok
18:20:49.0388 3160 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
18:20:49.0388 3160 SENS - ok
18:20:49.0419 3160 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
18:20:49.0419 3160 SensrSvc - ok
18:20:49.0434 3160 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
18:20:49.0434 3160 Serenum - ok
18:20:49.0466 3160 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
18:20:49.0466 3160 Serial - ok
18:20:49.0481 3160 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
18:20:49.0497 3160 sermouse - ok
18:20:49.0528 3160 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
18:20:49.0544 3160 SessionEnv - ok
18:20:49.0575 3160 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
18:20:49.0575 3160 sffdisk - ok
18:20:49.0590 3160 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:20:49.0590 3160 sffp_mmc - ok
18:20:49.0606 3160 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
18:20:49.0606 3160 sffp_sd - ok
18:20:49.0637 3160 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
18:20:49.0637 3160 sfloppy - ok
18:20:49.0684 3160 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:20:49.0700 3160 ShellHWDetection - ok
18:20:49.0715 3160 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
18:20:49.0715 3160 sisagp - ok
18:20:49.0746 3160 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:20:49.0746 3160 SiSRaid2 - ok
18:20:49.0762 3160 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
18:20:49.0778 3160 SiSRaid4 - ok
18:20:49.0809 3160 [ 469C5507BD83EA0DDCAC55A73D67E043 ] SKYNETU2C C:\Windows\system32\DRIVERS\SkyNetU2C.SYS
18:20:49.0809 3160 SKYNETU2C - ok
18:20:49.0856 3160 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:20:49.0856 3160 Smb - ok
18:20:49.0902 3160 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:20:49.0902 3160 SNMPTRAP - ok
18:20:49.0949 3160 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
18:20:49.0949 3160 spldr - ok
18:20:49.0980 3160 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
18:20:49.0996 3160 Spooler - ok
18:20:50.0121 3160 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
18:20:50.0136 3160 sppsvc - ok
18:20:50.0183 3160 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
18:20:50.0183 3160 sppuinotify - ok
18:20:50.0246 3160 [ A687B5B326AFCFCF182C4931D1FF9771 ] SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
18:20:50.0246 3160 SQLAgent$SQLEXPRESS - ok
18:20:50.0339 3160 [ B54B48F6D92423440C264E91225C5FF1 ] SQLBrowser c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
18:20:50.0339 3160 SQLBrowser - ok
18:20:50.0386 3160 [ 637A0F23F9012358E92E6F99835494D1 ] SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
18:20:50.0386 3160 SQLWriter - ok
18:20:50.0448 3160 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
18:20:50.0448 3160 srv - ok
18:20:50.0464 3160 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:20:50.0480 3160 srv2 - ok
18:20:50.0511 3160 [ E00FDFAFF025E94F9821153750C35A6D ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL3.SYS
18:20:50.0526 3160 SrvHsfHDA - ok
18:20:50.0573 3160 [ CEB4E3B6890E1E42DCA6694D9E59E1A0 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV3.SYS
18:20:50.0573 3160 SrvHsfV92 - ok
18:20:50.0604 3160 [ BC0C7EA89194C299F051C24119000E17 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT3.SYS
18:20:50.0604 3160 SrvHsfWinac - ok
18:20:50.0651 3160 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:20:50.0651 3160 srvnet - ok
18:20:50.0682 3160 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:20:50.0682 3160 SSDPSRV - ok
18:20:50.0714 3160 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:20:50.0714 3160 SstpSvc - ok
18:20:50.0792 3160 Steam Client Service - ok
18:20:50.0823 3160 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
18:20:50.0823 3160 stexstor - ok
18:20:50.0885 3160 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
18:20:50.0901 3160 StiSvc - ok
18:20:50.0916 3160 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
18:20:50.0916 3160 storflt - ok
18:20:50.0948 3160 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
18:20:50.0948 3160 storvsc - ok
18:20:50.0963 3160 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
18:20:50.0963 3160 swenum - ok
18:20:50.0994 3160 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
18:20:51.0010 3160 swprv - ok
18:20:51.0041 3160 Synth3dVsc - ok
18:20:51.0104 3160 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
18:20:51.0119 3160 SysMain - ok
18:20:51.0166 3160 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:20:51.0166 3160 TabletInputService - ok
18:20:51.0182 3160 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
18:20:51.0197 3160 TapiSrv - ok
18:20:51.0228 3160 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
18:20:51.0228 3160 TBS - ok
18:20:51.0369 3160 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:20:51.0384 3160 Tcpip - ok
18:20:51.0494 3160 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
18:20:51.0525 3160 TCPIP6 - ok
18:20:51.0556 3160 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:20:51.0556 3160 tcpipreg - ok
18:20:51.0587 3160 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:20:51.0587 3160 TDPIPE - ok
18:20:51.0618 3160 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:20:51.0618 3160 TDTCP - ok
18:20:51.0650 3160 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:20:51.0650 3160 tdx - ok
18:20:51.0696 3160 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
18:20:51.0696 3160 TermDD - ok
18:20:51.0743 3160 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
18:20:51.0759 3160 TermService - ok
18:20:51.0790 3160 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
18:20:51.0790 3160 Themes - ok
18:20:51.0806 3160 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
18:20:51.0806 3160 THREADORDER - ok
18:20:51.0821 3160 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
18:20:51.0821 3160 TrkWks - ok
18:20:51.0868 3160 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:20:51.0868 3160 TrustedInstaller - ok
18:20:51.0915 3160 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:20:51.0915 3160 tssecsrv - ok
18:20:51.0930 3160 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
18:20:51.0930 3160 TsUsbFlt - ok
18:20:51.0946 3160 tsusbhub - ok
18:20:51.0977 3160 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:20:51.0977 3160 tunnel - ok
18:20:52.0008 3160 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
18:20:52.0008 3160 uagp35 - ok
18:20:52.0055 3160 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:20:52.0055 3160 udfs - ok
18:20:52.0118 3160 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:20:52.0118 3160 UI0Detect - ok
18:20:52.0164 3160 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:20:52.0164 3160 uliagpkx - ok
18:20:52.0196 3160 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
18:20:52.0196 3160 umbus - ok
18:20:52.0211 3160 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
18:20:52.0211 3160 UmPass - ok
18:20:52.0274 3160 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
18:20:52.0289 3160 UmRdpService - ok
18:20:52.0336 3160 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
18:20:52.0336 3160 upnphost - ok
18:20:52.0398 3160 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
18:20:52.0398 3160 usbaudio - ok
18:20:52.0430 3160 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:20:52.0430 3160 usbccgp - ok
18:20:52.0476 3160 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:20:52.0476 3160 usbcir - ok
18:20:52.0492 3160 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
18:20:52.0492 3160 usbehci - ok
18:20:52.0539 3160 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:20:52.0539 3160 usbhub - ok
18:20:52.0554 3160 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys
18:20:52.0554 3160 usbohci - ok
18:20:52.0586 3160 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
18:20:52.0586 3160 usbprint - ok
18:20:52.0617 3160 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:20:52.0617 3160 USBSTOR - ok
18:20:52.0648 3160 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
18:20:52.0648 3160 usbuhci - ok
18:20:52.0695 3160 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
18:20:52.0695 3160 usbvideo - ok
18:20:52.0726 3160 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
18:20:52.0726 3160 UxSms - ok
18:20:52.0742 3160 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
18:20:52.0742 3160 VaultSvc - ok
18:20:52.0788 3160 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
18:20:52.0788 3160 vdrvroot - ok
18:20:52.0835 3160 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
18:20:52.0851 3160 vds - ok
18:20:52.0882 3160 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:20:52.0882 3160 vga - ok
18:20:52.0898 3160 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
18:20:52.0898 3160 VgaSave - ok
18:20:52.0898 3160 VGPU - ok
18:20:52.0944 3160 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
18:20:52.0944 3160 vhdmp - ok
18:20:52.0976 3160 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
18:20:52.0976 3160 viaagp - ok
18:20:53.0007 3160 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
18:20:53.0007 3160 ViaC7 - ok
18:20:53.0022 3160 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
18:20:53.0022 3160 viaide - ok
18:20:53.0085 3160 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
18:20:53.0085 3160 vmbus - ok
18:20:53.0100 3160 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
18:20:53.0100 3160 VMBusHID - ok
18:20:53.0116 3160 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:20:53.0116 3160 volmgr - ok
18:20:53.0147 3160 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:20:53.0147 3160 volmgrx - ok
18:20:53.0178 3160 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:20:53.0178 3160 volsnap - ok
18:20:53.0194 3160 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
18:20:53.0210 3160 vsmraid - ok
18:20:53.0256 3160 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
18:20:53.0272 3160 VSS - ok
18:20:53.0303 3160 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
18:20:53.0303 3160 vwifibus - ok
18:20:53.0334 3160 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
18:20:53.0334 3160 vwififlt - ok
18:20:53.0381 3160 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
18:20:53.0381 3160 W32Time - ok
18:20:53.0412 3160 [ CD2CBF2254239D4CD12A439863C2219F ] WacHidRouter C:\Windows\system32\DRIVERS\wachidrouter.sys
18:20:53.0412 3160 WacHidRouter - ok
18:20:53.0444 3160 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
18:20:53.0444 3160 WacomPen - ok
18:20:53.0490 3160 [ FA09D4F768703D0B89A67C4267DEF9BA ] wacomrouterfilter C:\Windows\system32\DRIVERS\wacomrouterfilter.sys
18:20:53.0490 3160 wacomrouterfilter - ok
18:20:53.0537 3160 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
18:20:53.0537 3160 WANARP - ok
18:20:53.0553 3160 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:20:53.0553 3160 Wanarpv6 - ok
18:20:53.0646 3160 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
18:20:53.0662 3160 WatAdminSvc - ok
18:20:53.0740 3160 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
18:20:53.0756 3160 wbengine - ok
18:20:53.0787 3160 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
18:20:53.0787 3160 WbioSrvc - ok
18:20:53.0834 3160 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:20:53.0834 3160 wcncsvc - ok
18:20:53.0865 3160 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:20:53.0865 3160 WcsPlugInService - ok
18:20:53.0896 3160 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
18:20:53.0896 3160 Wd - ok
18:20:53.0927 3160 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:20:53.0943 3160 Wdf01000 - ok
18:20:53.0943 3160 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiService
0
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 917
3 mai 2013 à 18:23
Ok, il n'est pas complet, pourrais-tu l'héberger comme ZHPdiag ?

On passe à la suite en même temps.

Ton ordinateur est infecté par des PUPs/LPIs.

Les PUPs/LPIs (Logiciels Potentiellement Indésirables) sont des programmes indésirables qui généralement, affichent des publicités et installent des barres d'outils (toolbars). Ils s'installent en même temps que l'installation d'autres logiciels, en général, gratuits.
Ils modifient les paramètres des navigateurs (page de démarrage et de recherche).
Afin d'éviter cela, il faut donc faire attention lors de l'installation des logiciels (surtout ceux gratuits), et ne pas installer les modules complémentaires proposés avec ceux-là (en décochant les cases, souvent pré-cochées). Il est également fortement conseillé de télécharger les logiciels sur le site de l'éditeur (et non Softonic, 01Net, etc... qui incluent dans leurs installations ce genre de programmes néfastes).

Nous allons nous occuper de les éradiquer.

- Télécharge AdwCleaner (d'Xplode) sur ton bureau.
- Lance le, clique sur [Recherche] puis patiente le temps du scan.
- Une fois le scan fini, un rapport s'ouvrira. Poste moi son contenu dans ta prochaine réponse.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[R1].txt

Aide en vidéo ici : https://www.youtube.com/watch?v=vOa47SdO7Zk&feature=youtu.be

Si tu as des questions, n'hésite pas à les poser !

@+

Gabriel.
0