Sei sulla pagina 1di 11

21:54:33.

0244 2352
TDSS rootkit removing tool 2.6.25.0 Dec 23 2011 14:51:16
21:54:35.0244 2352
========================================================
====
21:54:35.0244 2352
Current date / time: 2011/12/26 21:54:35.0244
21:54:35.0244 2352
SystemInfo:
21:54:35.0244 2352
21:54:35.0244 2352
OS Version: 5.1.2600 ServicePack: 3.0
21:54:35.0244 2352
Product type: Workstation
21:54:35.0244 2352
ComputerName: A6-F4831690BEE1
21:54:35.0244 2352
UserName: User
21:54:35.0244 2352
Windows directory: C:\WINDOWS
21:54:35.0244 2352
System windows directory: C:\WINDOWS
21:54:35.0244 2352
Processor architecture: Intel x86
21:54:35.0244 2352
Number of processors: 2
21:54:35.0244 2352
Page size: 0x1000
21:54:35.0244 2352
Boot type: Normal boot
21:54:35.0244 2352
========================================================
====
21:54:37.0650 2352
Initialize success
21:54:59.0697 1964
========================================================
====
21:54:59.0697 1964
Scan started
21:54:59.0697 1964
Mode: Manual; SigCheck; TDLFS;
21:54:59.0697 1964
========================================================
====
21:55:00.0415 1964
Aavmker4
(b6de0336f9f4b687b4ff57939f7b657a) C:\WI
NDOWS\system32\drivers\Aavmker4.sys
21:55:00.0744 1964
Aavmker4 - ok
21:55:01.0025 1964
Abiosdsk - ok
21:55:01.0384 1964
abp480n5 - ok
21:55:01.0759 1964
ACPI
(e5e6dbfc41ea8aad005cb9a57a96b43b) C:\WI
NDOWS\system32\DRIVERS\ACPI.sys
21:55:02.0650 1964
ACPI - ok
21:55:02.0962 1964
ACPIEC
(e4abc1212b70bb03d35e60681c447210) C:\WI
NDOWS\system32\drivers\ACPIEC.sys
21:55:03.0103 1964
ACPIEC - ok
21:55:03.0462 1964
adpu160m - ok
21:55:03.0806 1964
aec
(8bed39e3c35d6a489438b8141717a557) C:\WI
NDOWS\system32\drivers\aec.sys
21:55:03.0962 1964
aec - ok
21:55:04.0290 1964
AFD
(1e44bc1e83d8fd2305f8d452db109cf9) C:\WI
NDOWS\System32\drivers\afd.sys
21:55:04.0322 1964
AFD - ok
21:55:04.0650 1964
Aha154x - ok
21:55:04.0947 1964
aic78u2 - ok
21:55:05.0259 1964
aic78xx - ok
21:55:05.0634 1964
AIRPLUS
(0f181ef999f634e49848dba9efa7726a) C:\WI
NDOWS\system32\DRIVERS\airplus.sys
21:55:05.0665 1964
AIRPLUS ( UnsignedFile.Multi.Generic ) - warning
21:55:05.0665 1964
AIRPLUS - detected UnsignedFile.Multi.Generic (1)
21:55:05.0962 1964
AliIde - ok
21:55:06.0259 1964
amsint - ok
21:55:06.0619 1964
asc - ok
21:55:06.0915 1964
asc3350p - ok
21:55:07.0228 1964
asc3550 - ok
21:55:07.0572 1964
aswFsBlk
(054df24c92b55427e0757cfff160e4f2) C:\WI
NDOWS\system32\drivers\aswFsBlk.sys
21:55:07.0603 1964
aswFsBlk - ok
21:55:07.0962 1964
aswFW
(9b88d53227e0bc1ce62a981b2fcd67c8) C:\WI
NDOWS\system32\drivers\aswFW.sys

21:55:07.0978 1964
aswFW - ok
21:55:08.0306 1964
aswMon2
NDOWS\system32\drivers\aswMon2.sys
21:55:08.0337 1964
aswMon2 - ok
21:55:08.0712 1964
aswNdis
NDOWS\system32\DRIVERS\aswNdis.sys
21:55:08.0728 1964
aswNdis - ok
21:55:09.0087 1964
aswNdis2
NDOWS\system32\drivers\aswNdis2.sys
21:55:09.0119 1964
aswNdis2 - ok
21:55:09.0447 1964
aswRdr
NDOWS\system32\drivers\aswRdr.sys
21:55:09.0478 1964
aswRdr - ok
21:55:09.0790 1964
aswSnx
NDOWS\system32\drivers\aswSnx.sys
21:55:09.0837 1964
aswSnx - ok
21:55:10.0197 1964
aswSP
NDOWS\system32\drivers\aswSP.sys
21:55:10.0228 1964
aswSP - ok
21:55:10.0572 1964
aswTdi
NDOWS\system32\drivers\aswTdi.sys
21:55:10.0587 1964
aswTdi - ok
21:55:10.0915 1964
AsyncMac
NDOWS\system32\DRIVERS\asyncmac.sys
21:55:11.0072 1964
AsyncMac - ok
21:55:11.0415 1964
atapi
NDOWS\system32\DRIVERS\atapi.sys
21:55:11.0556 1964
atapi - ok
21:55:11.0869 1964
Atdisk - ok
21:55:12.0181 1964
Atmarpc
NDOWS\system32\DRIVERS\atmarpc.sys
21:55:12.0322 1964
Atmarpc - ok
21:55:12.0665 1964
audstub
NDOWS\system32\DRIVERS\audstub.sys
21:55:12.0822 1964
audstub - ok
21:55:13.0134 1964
azvusb
NDOWS\system32\DRIVERS\azvusb.sys
21:55:13.0181 1964
azvusb - ok
21:55:13.0572 1964
Beep
NDOWS\system32\drivers\Beep.sys
21:55:13.0728 1964
Beep - ok
21:55:14.0072 1964
BthEnum
NDOWS\system32\DRIVERS\BthEnum.sys
21:55:14.0228 1964
BthEnum - ok
21:55:14.0681 1964
BthPan
NDOWS\system32\DRIVERS\bthpan.sys
21:55:14.0884 1964
BthPan - ok
21:55:15.0197 1964
BTHPORT
NDOWS\system32\Drivers\BTHport.sys
21:55:15.0259 1964
BTHPORT - ok
21:55:15.0650 1964
BTHUSB
NDOWS\system32\Drivers\BTHUSB.sys
21:55:15.0853 1964
BTHUSB - ok
21:55:16.0197 1964
cbidf2k
NDOWS\system32\drivers\cbidf2k.sys
21:55:16.0384 1964
cbidf2k - ok
21:55:17.0228 1964
CCDECODE
NDOWS\system32\DRIVERS\CCDECODE.sys
21:55:17.0400 1964
CCDECODE - ok
21:55:17.0712 1964
cd20xrnt - ok

(ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WI
(7b948e3657bea62e437bc46ca6ef6012) C:\WI
(2d26aaee48a48e64129b4ae1d0ab3a3b) C:\WI
(352d5a48ebab35a7693b048679304831) C:\WI
(8d34d2b24297e27d93e847319abfdec4) C:\WI
(010012597333da1f46c3243f33f8409e) C:\WI
(f9f84364416658e9786235904d448d37) C:\WI
(b153affac761e7f5fcfa822b9c4e97bc) C:\WI
(9f3a2f5aa6875c72bf062c712cfa2674) C:\WI

(9916c1225104ba14794209cfa8012159) C:\WI
(d9f724aa26c010a217c97606b160ed68) C:\WI
(0a5e8178eff1d8f109a95235aeb7d76f) C:\WI
(da1f27d85e0d1525f6621372e7b685e9) C:\WI
(b279426e3c0c344893ed78a613a73bde) C:\WI
(80602b8746d3738f5886ce3d67ef06b6) C:\WI
(ef26202fee56f7607c6b794059df347a) C:\WI
(61364cd71ef63b0f038b7e9df00f1efa) C:\WI
(90a673fc8e12a79afbed2576f6a7aaf9) C:\WI
(0be5aef125be881c4f854c554f2b025c) C:\WI

21:55:18.0025 1964
Cdaudio
(c1b486a7658353d33a10cc15211a873b)
NDOWS\system32\drivers\Cdaudio.sys
21:55:18.0212 1964
Cdaudio - ok
21:55:18.0540 1964
Cdfs
(c885b02847f5d2fd45a24e219ed93b32)
NDOWS\system32\drivers\Cdfs.sys
21:55:18.0806 1964
Cdfs - ok
21:55:19.0540 1964
Cdrom
(1f4260cc5b42272d71f79e570a27a4fe)
NDOWS\system32\DRIVERS\cdrom.sys
21:55:19.0759 1964
Cdrom - ok
21:55:20.0087 1964
Changer - ok
21:55:20.0478 1964
CmdIde - ok
21:55:20.0853 1964
cmuda
(883f93de120956cb25fd69d1636b5530)
NDOWS\system32\drivers\cmuda.sys
21:55:20.0915 1964
cmuda ( UnsignedFile.Multi.Generic ) - warning
21:55:20.0915 1964
cmuda - detected UnsignedFile.Multi.Generic (1)
21:55:21.0259 1964
Cpqarray - ok
21:55:21.0556 1964
dac2w2k - ok
21:55:21.0853 1964
dac960nt - ok
21:55:22.0290 1964
DIG_TS
(a5084de4435b338aadb72b1d041494f0)
NDOWS\system32\DRIVERS\dig_ts.sys
21:55:22.0337 1964
DIG_TS ( UnsignedFile.Multi.Generic ) - warning
21:55:22.0337 1964
DIG_TS - detected UnsignedFile.Multi.Generic (1)
21:55:22.0728 1964
DIG_V
(4b71140283a851b89304e0a2cc1a4a63)
NDOWS\system32\drivers\dig_v.sys
21:55:22.0744 1964
DIG_V ( UnsignedFile.Multi.Generic ) - warning
21:55:22.0744 1964
DIG_V - detected UnsignedFile.Multi.Generic (1)
21:55:23.0072 1964
Disk
(044452051f3e02e7963599fc8f4f3e25)
NDOWS\system32\DRIVERS\disk.sys
21:55:23.0244 1964
Disk - ok
21:55:23.0650 1964
dmboot
(f5deadd42335fb33edca74ecb2f36cba)
NDOWS\system32\drivers\dmboot.sys
21:55:23.0915 1964
dmboot - ok
21:55:24.0290 1964
dmio
(5a7c47c9b3f9fb92a66410a7509f0c71)
NDOWS\system32\drivers\dmio.sys
21:55:24.0540 1964
dmio - ok
21:55:24.0853 1964
dmload
(e9317282a63ca4d188c0df5e09c6ac5f)
NDOWS\system32\drivers\dmload.sys
21:55:25.0025 1964
dmload - ok
21:55:25.0400 1964
DMusic
(8a208dfcf89792a484e76c40e5f50b45)
NDOWS\system32\drivers\DMusic.sys
21:55:25.0556 1964
DMusic - ok
21:55:25.0853 1964
dpti2o - ok
21:55:26.0165 1964
drmkaud
(8f5fcff8e8848afac920905fbd9d33c8)
NDOWS\system32\drivers\drmkaud.sys
21:55:26.0322 1964
drmkaud - ok
21:55:26.0665 1964
Fastfat
(38d332a6d56af32635675f132548343e)
NDOWS\system32\drivers\Fastfat.sys
21:55:26.0837 1964
Fastfat - ok
21:55:27.0165 1964
Fdc
(92cdd60b6730b9f50f6a1a0c1f8cdc81)
NDOWS\system32\DRIVERS\fdc.sys
21:55:27.0322 1964
Fdc - ok
21:55:27.0665 1964
Fips
(31f923eb2170fc172c81abda0045d18c)
NDOWS\system32\drivers\Fips.sys
21:55:27.0822 1964
Fips - ok
21:55:28.0165 1964
Flpydisk
(9d27e7b80bfcdf1cdd9b555862d5e7f0)
NDOWS\system32\DRIVERS\flpydisk.sys
21:55:28.0322 1964
Flpydisk - ok
21:55:28.0697 1964
FltMgr
(b2cf4b0786f8212cb92ed2b50c6db6b0)
NDOWS\system32\DRIVERS\fltMgr.sys
21:55:28.0869 1964
FltMgr - ok

C:\WI
C:\WI
C:\WI

C:\WI

C:\WI

C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

21:55:29.0197 1964
Fs_Rec
(3e1e2bd4f39b0e2b7dc4f4d2bcc2779a)
NDOWS\system32\drivers\Fs_Rec.sys
21:55:29.0353 1964
Fs_Rec - ok
21:55:29.0681 1964
Ftdisk
(a86859b77b908c18c2657f284aa29fe3)
NDOWS\system32\DRIVERS\ftdisk.sys
21:55:29.0837 1964
Ftdisk - ok
21:55:30.0165 1964
gameenum
(065639773d8b03f33577f6cdaea21063)
NDOWS\system32\DRIVERS\gameenum.sys
21:55:30.0322 1964
gameenum - ok
21:55:30.0650 1964
giveio
(77ebf3e9386daa51551af429052d88d0)
NDOWS\system32\giveio.sys
21:55:30.0665 1964
giveio ( UnsignedFile.Multi.Generic ) - warning
21:55:30.0665 1964
giveio - detected UnsignedFile.Multi.Generic (1)
21:55:30.0978 1964
Gpc
(0a02c63c8b144bd8c86b103dee7c86a2)
NDOWS\system32\DRIVERS\msgpc.sys
21:55:31.0150 1964
Gpc - ok
21:55:31.0587 1964
hidusb
(ccf82c5ec8a7326c3066de870c06daf1)
NDOWS\system32\DRIVERS\hidusb.sys
21:55:31.0806 1964
hidusb - ok
21:55:32.0259 1964
hpn - ok
21:55:32.0681 1964
HTTP
(f80a415ef82cd06ffaf0d971528ead38)
NDOWS\system32\Drivers\HTTP.sys
21:55:32.0728 1964
HTTP - ok
21:55:33.0150 1964
i2omgmt - ok
21:55:33.0587 1964
i2omp - ok
21:55:34.0119 1964
i8042prt
(a09bdc4ed10e3b2e0ec27bb94af32516)
NDOWS\system32\DRIVERS\i8042prt.sys
21:55:34.0353 1964
i8042prt - ok
21:55:34.0744 1964
Imapi
(083a052659f5310dd8b6a6cb05edcf8e)
NDOWS\system32\DRIVERS\imapi.sys
21:55:35.0009 1964
Imapi - ok
21:55:35.0353 1964
ini910u - ok
21:55:35.0712 1964
IntelIde - ok
21:55:36.0056 1964
intelppm
(ad340800c35a42d4de1641a37feea34c)
NDOWS\system32\DRIVERS\intelppm.sys
21:55:36.0244 1964
intelppm - ok
21:55:36.0572 1964
Ip6Fw
(3bb22519a194418d5fec05d800a19ad0)
NDOWS\system32\DRIVERS\Ip6Fw.sys
21:55:36.0744 1964
Ip6Fw - ok
21:55:37.0056 1964
IpFilterDriver (731f22ba402ee4b62748adaf6363c182)
NDOWS\system32\DRIVERS\ipfltdrv.sys
21:55:37.0275 1964
IpFilterDriver - ok
21:55:37.0697 1964
IpInIp
(b87ab476dcf76e72010632b5550955f5)
NDOWS\system32\DRIVERS\ipinip.sys
21:55:37.0947 1964
IpInIp - ok
21:55:38.0259 1964
IpNat
(cc748ea12c6effde940ee98098bf96bb)
NDOWS\system32\DRIVERS\ipnat.sys
21:55:38.0431 1964
IpNat - ok
21:55:38.0775 1964
IPSec
(23c74d75e36e7158768dd63d92789a91)
NDOWS\system32\DRIVERS\ipsec.sys
21:55:38.0947 1964
IPSec - ok
21:55:39.0337 1964
IRENUM
(c93c9ff7b04d772627a3646d89f7bf89)
NDOWS\system32\DRIVERS\irenum.sys
21:55:39.0462 1964
IRENUM - ok
21:55:39.0806 1964
isapnp
(355836975a67b6554bca60328cd6cb74)
NDOWS\system32\DRIVERS\isapnp.sys
21:55:40.0040 1964
isapnp - ok
21:55:40.0150 1964
ISODrive
(2f03ceb28307983f3b36216d35ffa5aa)
ogram Files\UltraISO\drivers\ISODrive.sys
21:55:40.0181 1964
ISODrive - ok

C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI

C:\WI

C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\Pr

21:55:40.0556 1964
Kbdclass
(16813155807c6881f4bfbf6657424659)
NDOWS\system32\DRIVERS\kbdclass.sys
21:55:40.0837 1964
Kbdclass - ok
21:55:41.0228 1964
kmixer
(692bcf44383d056aed41b045a323d378)
NDOWS\system32\drivers\kmixer.sys
21:55:41.0494 1964
kmixer - ok
21:55:41.0837 1964
KSecDD
(b467646c54cc746128904e1654c750c1)
NDOWS\system32\drivers\KSecDD.sys
21:55:41.0884 1964
KSecDD - ok
21:55:42.0197 1964
lbrtfdc - ok
21:55:42.0306 1964
LMIInfo
(4f69faaabb7db0d43e327c0b6aab40fc)
ogram Files\LogMeIn\x86\RaInfo.sys
21:55:42.0322 1964
LMIInfo - ok
21:55:42.0665 1964
lmimirr
(4477689e2d8ae6b78ba34c9af4cc1ed1)
NDOWS\system32\DRIVERS\lmimirr.sys
21:55:42.0697 1964
lmimirr - ok
21:55:43.0025 1964
LMIRfsClientNP - ok
21:55:43.0353 1964
LMIRfsDriver
(3faa563ddf853320f90259d455a01d79)
NDOWS\system32\drivers\LMIRfsDriver.sys
21:55:43.0369 1964
LMIRfsDriver - ok
21:55:43.0728 1964
mnmdd
(4ae068242760a1fb6e1a44bf4e16afa6)
NDOWS\system32\drivers\mnmdd.sys
21:55:43.0900 1964
mnmdd - ok
21:55:44.0244 1964
Modem
(510ade9327fe84c10254e1902697e25f)
NDOWS\system32\drivers\Modem.sys
21:55:44.0400 1964
Modem - ok
21:55:44.0728 1964
Mouclass
(027c01bd7ef3349aaebc883d8a799efb)
NDOWS\system32\DRIVERS\mouclass.sys
21:55:44.0884 1964
Mouclass - ok
21:55:45.0244 1964
mouhid
(124d6846040c79b9c997f78ef4b2a4e5)
NDOWS\system32\DRIVERS\mouhid.sys
21:55:45.0431 1964
mouhid - ok
21:55:46.0103 1964
MountMgr
(a80b9a0bad1b73637dbcbba7df72d3fd)
NDOWS\system32\drivers\MountMgr.sys
21:55:46.0353 1964
MountMgr - ok
21:55:46.0900 1964
mraid35x - ok
21:55:47.0259 1964
MRxDAV
(11d42bb6206f33fbb3ba0288d3ef81bd)
NDOWS\system32\DRIVERS\mrxdav.sys
21:55:47.0540 1964
MRxDAV - ok
21:55:47.0931 1964
MRxSmb
(7d304a5eb4344ebeeab53a2fe3ffb9f0)
NDOWS\system32\DRIVERS\mrxsmb.sys
21:55:47.0978 1964
MRxSmb - ok
21:55:48.0415 1964
Msfs
(c941ea2454ba8350021d774daf0f1027)
NDOWS\system32\drivers\Msfs.sys
21:55:48.0665 1964
Msfs - ok
21:55:49.0025 1964
MSKSSRV
(d1575e71568f4d9e14ca56b7b0453bf1)
NDOWS\system32\drivers\MSKSSRV.sys
21:55:49.0228 1964
MSKSSRV - ok
21:55:49.0978 1964
MSPCLOCK
(325bb26842fc7ccc1fcce2c457317f3e)
NDOWS\system32\drivers\MSPCLOCK.sys
21:55:50.0134 1964
MSPCLOCK - ok
21:55:50.0462 1964
MSPQM
(bad59648ba099da4a17680b39730cb3d)
NDOWS\system32\drivers\MSPQM.sys
21:55:50.0634 1964
MSPQM - ok
21:55:50.0947 1964
mssmbios
(af5f4f3f14a8ea2c26de30f7a1e17136)
NDOWS\system32\DRIVERS\mssmbios.sys
21:55:51.0165 1964
mssmbios - ok
21:55:51.0509 1964
MSTEE
(e53736a9e30c45fa9e7b5eac55056d1d)
NDOWS\system32\drivers\MSTEE.sys
21:55:51.0681 1964
MSTEE - ok

C:\WI
C:\WI
C:\WI

C:\Pr
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

21:55:52.0025 1964
Mup
NDOWS\system32\drivers\Mup.sys
21:55:52.0056 1964
Mup - ok
21:55:52.0384 1964
NABTSFEC
NDOWS\system32\DRIVERS\NABTSFEC.sys
21:55:52.0556 1964
NABTSFEC - ok
21:55:52.0869 1964
NDIS
NDOWS\system32\drivers\NDIS.sys
21:55:53.0040 1964
NDIS - ok
21:55:53.0369 1964
NdisIP
NDOWS\system32\DRIVERS\NdisIP.sys
21:55:53.0525 1964
NdisIP - ok
21:55:53.0884 1964
NdisTapi
NDOWS\system32\DRIVERS\ndistapi.sys
21:55:53.0915 1964
NdisTapi - ok
21:55:54.0212 1964
Ndisuio
NDOWS\system32\DRIVERS\ndisuio.sys
21:55:54.0384 1964
Ndisuio - ok
21:55:54.0697 1964
NdisWan
NDOWS\system32\DRIVERS\ndiswan.sys
21:55:54.0853 1964
NdisWan - ok
21:55:55.0165 1964
NDProxy
NDOWS\system32\drivers\NDProxy.sys
21:55:55.0197 1964
NDProxy - ok
21:55:55.0540 1964
NetBIOS
NDOWS\system32\DRIVERS\netbios.sys
21:55:55.0790 1964
NetBIOS - ok
21:55:56.0150 1964
NetBT
NDOWS\system32\DRIVERS\netbt.sys
21:55:56.0290 1964
NetBT - ok
21:55:56.0634 1964
Npfs
NDOWS\system32\drivers\Npfs.sys
21:55:56.0806 1964
Npfs - ok
21:55:57.0150 1964
Ntfs
NDOWS\system32\drivers\Ntfs.sys
21:55:57.0337 1964
Ntfs - ok
21:55:57.0712 1964
Null
NDOWS\system32\drivers\Null.sys
21:55:57.0869 1964
Null - ok
21:55:58.0525 1964
nv
NDOWS\system32\DRIVERS\nv4_mini.sys
21:55:58.0994 1964
nv - ok
21:55:59.0306 1964
NwlnkFlt
NDOWS\system32\DRIVERS\nwlnkflt.sys
21:55:59.0494 1964
NwlnkFlt - ok
21:55:59.0822 1964
NwlnkFwd
NDOWS\system32\DRIVERS\nwlnkfwd.sys
21:55:59.0962 1964
NwlnkFwd - ok
21:56:00.0306 1964
Parport
NDOWS\system32\DRIVERS\parport.sys
21:56:00.0572 1964
Parport - ok
21:56:00.0947 1964
PartMgr
NDOWS\system32\drivers\PartMgr.sys
21:56:01.0244 1964
PartMgr - ok
21:56:01.0650 1964
ParVdm
NDOWS\system32\drivers\ParVdm.sys
21:56:01.0915 1964
ParVdm - ok
21:56:02.0275 1964
pccsmcfd
NDOWS\system32\DRIVERS\pccsmcfd.sys
21:56:02.0306 1964
pccsmcfd - ok

(de6a75f5c270e756c5508d94b6cf68f5) C:\WI
(5b50f1b2a2ed47d560577b221da734db) C:\WI
(1df7f42665c94b825322fae71721130d) C:\WI
(7ff1f1fd8609c149aa432f95a8163d97) C:\WI
(0109c4f3850dfbab279542515386ae22) C:\WI
(f927a4434c5028758a842943ef1a3849) C:\WI
(edc1531a49c80614b2cfda43ca8659ab) C:\WI
(9282bd12dfb069d3889eb3fcc1000a9b) C:\WI
(5d81cf9a2f1a3a756b66cf684911cdf0) C:\WI
(74b2b2f5bea5e9a3dc021d685551bd3d) C:\WI
(3182d64ae053d6fb034f44b6def8034a) C:\WI
(78a08dd6a8d65e697c18e1db01c5cdca) C:\WI
(73c1e1f395918bc2c6dd67af7591a3ad) C:\WI
(9f4384aa43548ddd438f7b7825d11699) C:\WI
(b305f3fad35083837ef46a0bbce2fc57) C:\WI
(c99b3415198d1aab7227f2c88fd664b9) C:\WI
(8fd0bdbea875d06ccf6c945ca9abaf75) C:\WI
(beb3ba25197665d82ec7065b724171c6) C:\WI
(9575c5630db8fb804649a6959737154c) C:\WI
(fd2041e9ba03db7764b2248f02475079) C:\WI

21:56:02.0697 1964
PCI
(043410877bda580c528f45165f7125bc)
NDOWS\system32\DRIVERS\pci.sys
21:56:02.0884 1964
PCI - ok
21:56:03.0197 1964
PCIDump - ok
21:56:03.0572 1964
PCIIde
(f4bfde7209c14a07aaa61e4d6ae69eac)
NDOWS\system32\DRIVERS\pciide.sys
21:56:03.0744 1964
PCIIde - ok
21:56:04.0087 1964
Pcmcia
(f0406cbc60bdb0394a0e17ffb04cdd3d)
NDOWS\system32\drivers\Pcmcia.sys
21:56:04.0322 1964
Pcmcia - ok
21:56:04.0665 1964
pctvnet
(7e5a649a57f236f9388cf3ff28f225c6)
NDOWS\system32\DRIVERS\pctvnet.sys
21:56:04.0665 1964
pctvnet ( UnsignedFile.Multi.Generic ) - warning
21:56:04.0665 1964
pctvnet - detected UnsignedFile.Multi.Generic (1)
21:56:04.0978 1964
pctvvbi
(eb7de8f91803f267e899f87197731664)
NDOWS\system32\DRIVERS\pctvvbi.sys
21:56:05.0009 1964
pctvvbi - ok
21:56:05.0306 1964
PDCOMP - ok
21:56:05.0634 1964
PDFRAME - ok
21:56:05.0947 1964
PDRELI - ok
21:56:06.0244 1964
PDRFRAME - ok
21:56:06.0619 1964
perc2 - ok
21:56:06.0915 1964
perc2hib - ok
21:56:07.0259 1964
PptpMiniport
(efeec01b1d3cf84f16ddd24d9d9d8f99)
NDOWS\system32\DRIVERS\raspptp.sys
21:56:07.0525 1964
PptpMiniport - ok
21:56:07.0869 1964
PSched
(09298ec810b07e5d582cb3a3f9255424)
NDOWS\system32\DRIVERS\psched.sys
21:56:08.0150 1964
PSched - ok
21:56:08.0556 1964
PSSDK42
(c8eb36910d3bd582891977e80925e21e)
NDOWS\system32\Drivers\pssdk42.sys
21:56:08.0587 1964
PSSDK42 - ok
21:56:08.0931 1964
Ptilink
(80d317bd1c3dbc5d4fe7b1678c60cadd)
NDOWS\system32\DRIVERS\ptilink.sys
21:56:09.0165 1964
Ptilink - ok
21:56:09.0462 1964
ql1080 - ok
21:56:09.0759 1964
Ql10wnt - ok
21:56:10.0056 1964
ql12160 - ok
21:56:10.0556 1964
ql1240 - ok
21:56:10.0869 1964
ql1280 - ok
21:56:11.0212 1964
RasAcd
(fe0d99d6f31e4fad8159f690d68ded9c)
NDOWS\system32\DRIVERS\rasacd.sys
21:56:11.0478 1964
RasAcd - ok
21:56:11.0837 1964
Rasl2tp
(11b4a627bc9614b885c4969bfa5ff8a6)
NDOWS\system32\DRIVERS\rasl2tp.sys
21:56:12.0103 1964
Rasl2tp - ok
21:56:12.0431 1964
RasPppoe
(5bc962f2654137c9909c3d4603587dee)
NDOWS\system32\DRIVERS\raspppoe.sys
21:56:12.0681 1964
RasPppoe - ok
21:56:13.0025 1964
Raspti
(fdbb1d60066fcfbb7452fd8f9829b242)
NDOWS\system32\DRIVERS\raspti.sys
21:56:13.0259 1964
Raspti - ok
21:56:13.0572 1964
Rdbss
(7ad224ad1a1437fe28d89cf22b17780a)
NDOWS\system32\DRIVERS\rdbss.sys
21:56:13.0744 1964
Rdbss - ok
21:56:14.0119 1964
RDPCDD
(4912d5b403614ce99c28420f75353332)
NDOWS\system32\DRIVERS\RDPCDD.sys
21:56:14.0275 1964
RDPCDD - ok
21:56:14.0587 1964
rdpdr
(15cabd0f7c00c47c70124907916af3f1)
NDOWS\system32\DRIVERS\rdpdr.sys

C:\WI

C:\WI
C:\WI
C:\WI

C:\WI

C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

21:56:14.0744 1964
rdpdr - ok
21:56:15.0103 1964
RDPWD
(fc105dd312ed64eb66bff111e8ec6eac)
NDOWS\system32\drivers\RDPWD.sys
21:56:15.0119 1964
RDPWD - ok
21:56:15.0462 1964
redbook
(d8eb2a7904db6c916eb5361878ddcbae)
NDOWS\system32\DRIVERS\redbook.sys
21:56:15.0634 1964
redbook - ok
21:56:15.0978 1964
RFCOMM
(851c30df2807fcfa21e4c681a7d6440e)
NDOWS\system32\DRIVERS\rfcomm.sys
21:56:16.0134 1964
RFCOMM - ok
21:56:16.0478 1964
RT73 - ok
21:56:17.0025 1964
Secdrv
(90a3935d05b494a5a39d37e71f09a677)
NDOWS\system32\DRIVERS\secdrv.sys
21:56:17.0103 1964
Secdrv - ok
21:56:17.0447 1964
serenum
(0f29512ccd6bead730039fb4bd2c85ce)
NDOWS\system32\DRIVERS\serenum.sys
21:56:17.0603 1964
serenum - ok
21:56:17.0915 1964
Serial
(93d313c31f7ad9ea2b75f26075413c7c)
NDOWS\system32\DRIVERS\serial.sys
21:56:18.0119 1964
Serial - ok
21:56:18.0509 1964
Sfloppy
(8e6b8c671615d126fdc553d1e2de5562)
NDOWS\system32\drivers\Sfloppy.sys
21:56:18.0728 1964
Sfloppy - ok
21:56:19.0087 1964
Simbad - ok
21:56:19.0619 1964
SiS315
(7ba8febf9ecb36c029410e7957e7ff9c)
NDOWS\system32\DRIVERS\sisgrp.sys
21:56:19.0837 1964
SiS315 - ok
21:56:20.0384 1964
SiSide
(b4485881bd8aed9b157a2e6cf43c2d51)
NDOWS\system32\DRIVERS\siside.sys
21:56:20.0431 1964
SiSide - ok
21:56:20.0790 1964
sisidex
(6225224b8e846ac230f8d9b343635910)
NDOWS\system32\drivers\sisidex.sys
21:56:20.0837 1964
sisidex ( UnsignedFile.Multi.Generic ) - warning
21:56:20.0837 1964
sisidex - detected UnsignedFile.Multi.Generic (1)
21:56:21.0353 1964
SiSkp
(94a0e9f4a7b42899b793f5de6c362662)
NDOWS\system32\DRIVERS\srvkp.sys
21:56:21.0400 1964
SiSkp - ok
21:56:21.0759 1964
SISNIC
(3fbb6ef8b5a71a2fa11f5f461bb73219)
NDOWS\system32\DRIVERS\sisnic.sys
21:56:22.0009 1964
SISNIC - ok
21:56:22.0400 1964
SISNICXP
(a1348a901a44760ccd76043525e851d0)
NDOWS\system32\DRIVERS\sisnicxp.sys
21:56:22.0447 1964
SISNICXP - ok
21:56:22.0806 1964
sisperf
(596d4a7052002d2bd344d8937da6f66d)
NDOWS\system32\drivers\sisperf.sys
21:56:22.0837 1964
sisperf ( UnsignedFile.Multi.Generic ) - warning
21:56:22.0837 1964
sisperf - detected UnsignedFile.Multi.Generic (1)
21:56:23.0244 1964
SLIP
(866d538ebe33709a5c9f5c62b73b7d14)
NDOWS\system32\DRIVERS\SLIP.sys
21:56:23.0400 1964
SLIP - ok
21:56:23.0681 1964
Sparrow - ok
21:56:23.0962 1964
speedfan
(9f70cd5edcc4efc48ae21e04fb03be9d)
NDOWS\system32\speedfan.sys
21:56:23.0994 1964
speedfan - ok
21:56:24.0322 1964
splitter
(ab8b92451ecb048a4d1de7c3ffcb4a9f)
NDOWS\system32\drivers\splitter.sys
21:56:24.0478 1964
splitter - ok
21:56:24.0822 1964
Sr
(39626e6dc1fb39434ec40c42722b660a)
NDOWS\system32\DRIVERS\sr.sys
21:56:24.0915 1964
Sr - ok

C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI

C:\WI

C:\WI
C:\WI
C:\WI

21:56:25.0244 1964
Srv
(47ddfc2f003f7f9f0592c6874962a2e7)
NDOWS\system32\DRIVERS\srv.sys
21:56:25.0290 1964
Srv - ok
21:56:25.0634 1964
streamip
(77813007ba6265c4b6098187e6ed79d2)
NDOWS\system32\DRIVERS\StreamIP.sys
21:56:25.0806 1964
streamip - ok
21:56:26.0197 1964
swenum
(3941d127aef12e93addf6fe6ee027e0f)
NDOWS\system32\DRIVERS\swenum.sys
21:56:26.0353 1964
swenum - ok
21:56:26.0681 1964
swmidi
(8ce882bcc6cf8a62f2b2323d95cb3d01)
NDOWS\system32\drivers\swmidi.sys
21:56:26.0931 1964
swmidi - ok
21:56:27.0244 1964
symc810 - ok
21:56:27.0556 1964
symc8xx - ok
21:56:27.0884 1964
sym_hi - ok
21:56:28.0369 1964
sym_u3 - ok
21:56:28.0681 1964
sysaudio
(8b83f3ed0f1688b4958f77cd6d2bf290)
NDOWS\system32\drivers\sysaudio.sys
21:56:28.0837 1964
sysaudio - ok
21:56:29.0244 1964
Tcpip
(4afb3b0919649f95c1964aa1fad27d73)
NDOWS\system32\DRIVERS\tcpip.sys
21:56:29.0275 1964
Tcpip ( UnsignedFile.Multi.Generic ) - warning
21:56:29.0275 1964
Tcpip - detected UnsignedFile.Multi.Generic (1)
21:56:29.0603 1964
TDPIPE
(6471a66807f5e104e4885f5b67349397)
NDOWS\system32\drivers\TDPIPE.sys
21:56:29.0790 1964
TDPIPE - ok
21:56:30.0119 1964
TDTCP
(c56b6d0402371cf3700eb322ef3aaf61)
NDOWS\system32\drivers\TDTCP.sys
21:56:30.0337 1964
TDTCP - ok
21:56:30.0697 1964
TermDD
(88155247177638048422893737429d9e)
NDOWS\system32\DRIVERS\termdd.sys
21:56:30.0853 1964
TermDD - ok
21:56:31.0228 1964
TosIde - ok
21:56:31.0525 1964
uagp35
(d85938f272d1bcf3db3a31fc0a048928)
NDOWS\system32\DRIVERS\uagp35.sys
21:56:31.0728 1964
uagp35 - ok
21:56:32.0197 1964
Udfs
(5787b80c2e3c5e2f56c2a233d91fa2c9)
NDOWS\system32\drivers\Udfs.sys
21:56:32.0353 1964
Udfs - ok
21:56:32.0650 1964
ultra - ok
21:56:32.0978 1964
Update
(402ddc88356b1bac0ee3dd1580c76a31)
NDOWS\system32\DRIVERS\update.sys
21:56:33.0150 1964
Update - ok
21:56:33.0478 1964
usbehci
(65dcf09d0e37d4c6b11b5b0b76d470a7)
NDOWS\system32\DRIVERS\usbehci.sys
21:56:33.0650 1964
usbehci - ok
21:56:33.0962 1964
UsbEvdoAtc
(348a26469cbc00d0646636e47ecf7463)
NDOWS\system32\DRIVERS\lgevdoatc.sys
21:56:33.0994 1964
UsbEvdoAtc - ok
21:56:34.0384 1964
usbevdobus
(be92417173ca67572f8d1d91f3e53c11)
NDOWS\system32\DRIVERS\lgevdobus.sys
21:56:34.0415 1964
usbevdobus - ok
21:56:34.0744 1964
UsbEvdoDiag
(51a89ebcab432215fd1837239fca3bf4)
NDOWS\system32\DRIVERS\lgevdodiag.sys
21:56:34.0790 1964
UsbEvdoDiag - ok
21:56:35.0134 1964
USBEVDOModem
(81315a2d9ac544b10f88de192d101936)
NDOWS\system32\DRIVERS\lgevdomodem.sys
21:56:35.0165 1964
USBEVDOModem - ok
21:56:35.0494 1964
usbhub
(1ab3cdde553b6e064d2e754efe20285c)
NDOWS\system32\DRIVERS\usbhub.sys

C:\WI
C:\WI
C:\WI
C:\WI

C:\WI
C:\WI

C:\WI
C:\WI
C:\WI

C:\WI
C:\WI

C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI
C:\WI

21:56:35.0650 1964
usbhub - ok
21:56:35.0962 1964
usbohci
(0daecce65366ea32b162f85f07c6753b) C:\WI
NDOWS\system32\DRIVERS\usbohci.sys
21:56:36.0103 1964
usbohci - ok
21:56:36.0415 1964
USBSTOR
(a32426d9b14a089eaa1d922e0c5801a9) C:\WI
NDOWS\system32\DRIVERS\USBSTOR.SYS
21:56:36.0572 1964
USBSTOR - ok
21:56:36.0900 1964
VBoxDrv
(103b23ec82c08fc4bdbc369552ffab2a) C:\WI
NDOWS\system32\DRIVERS\VBoxDrv.sys
21:56:36.0931 1964
VBoxDrv - ok
21:56:37.0259 1964
VBoxNetAdp
(226cd9e42be28a84ec56430fbb57224f) C:\WI
NDOWS\system32\DRIVERS\VBoxNetAdp.sys
21:56:37.0290 1964
VBoxNetAdp - ok
21:56:37.0603 1964
VBoxNetFlt
(0a5d6512dcb14135a388d0e7e69e01bb) C:\WI
NDOWS\system32\DRIVERS\VBoxNetFlt.sys
21:56:37.0619 1964
VBoxNetFlt - ok
21:56:37.0947 1964
VBoxUSB
(b441887112246d607b9af4267aa60303) C:\WI
NDOWS\system32\Drivers\VBoxUSB.sys
21:56:37.0962 1964
VBoxUSB - ok
21:56:38.0306 1964
VBoxUSBMon
(96a478edfb1fbf1fc663beb09b4175a8) C:\WI
NDOWS\system32\DRIVERS\VBoxUSBMon.sys
21:56:38.0337 1964
VBoxUSBMon - ok
21:56:38.0650 1964
VgaSave
(0d3a8fafceacd8b7625cd549757a7df1) C:\WI
NDOWS\System32\drivers\vga.sys
21:56:38.0822 1964
VgaSave - ok
21:56:39.0353 1964
ViaIde - ok
21:56:39.0447 1964
VirtualFD
(2d8d84d0b90c9055c0b83050d8a17a89) D:\vf
d21\vfd.sys
21:56:39.0525 1964
VirtualFD ( UnsignedFile.Multi.Generic ) - warning
21:56:39.0525 1964
VirtualFD - detected UnsignedFile.Multi.Generic (1)
21:56:39.0853 1964
vmm
(590c7a3a1133e51a7e1cef67366e75af) C:\WI
NDOWS\system32\Drivers\vmm.sys
21:56:39.0900 1964
vmm - ok
21:56:40.0290 1964
VolSnap
(46de1126684369bace4849e4fc8c43ca) C:\WI
NDOWS\system32\drivers\VolSnap.sys
21:56:40.0447 1964
VolSnap - ok
21:56:40.0775 1964
VPCNetS2
(f96a678debdccb0b4bb7f38cb2580589) C:\WI
NDOWS\system32\DRIVERS\VMNetSrv.sys
21:56:40.0790 1964
VPCNetS2 - ok
21:56:41.0290 1964
Wanarp
(e20b95baedb550f32dd489265c1da1f6) C:\WI
NDOWS\system32\DRIVERS\wanarp.sys
21:56:41.0447 1964
Wanarp - ok
21:56:41.0744 1964
WDICA - ok
21:56:42.0072 1964
wdmaud
(6768acf64b18196494413695f0c3a00f) C:\WI
NDOWS\system32\drivers\wdmaud.sys
21:56:42.0228 1964
wdmaud - ok
21:56:42.0587 1964
WSTCODEC
(c98b39829c2bbd34e454150633c62c78) C:\WI
NDOWS\system32\DRIVERS\WSTCODEC.SYS
21:56:42.0837 1964
WSTCODEC - ok
21:56:43.0197 1964
WudfPf
(f15feafffbb3644ccc80c5da584e6311) C:\WI
NDOWS\system32\DRIVERS\WudfPf.sys
21:56:43.0228 1964
WudfPf - ok
21:56:43.0572 1964
WudfRd
(28b524262bce6de1f7ef9f510ba3985b) C:\WI
NDOWS\system32\DRIVERS\wudfrd.sys
21:56:43.0603 1964
WudfRd - ok
21:56:43.0634 1964
MBR (0x1B8)
(c99c3199cfaa4cbdcd91493f6d113a50) \Devi
ce\Harddisk0\DR0
21:56:43.0869 1964
\Device\Harddisk0\DR0 - ok
21:56:43.0900 1964
Boot (0x1200) (84c888929ce05661258bee0bfe6d97a5) \Devi
ce\Harddisk0\DR0\Partition0

21:56:43.0900 1964
\Device\Harddisk0\DR0\Partition0 - ok
21:56:43.0915 1964
Boot (0x1200) (069a407f47bf87f26dac2179e2789f10) \Devi
ce\Harddisk0\DR0\Partition1
21:56:43.0915 1964
\Device\Harddisk0\DR0\Partition1 - ok
21:56:43.0915 1964
========================================================
====
21:56:43.0915 1964
Scan finished
21:56:43.0915 1964
========================================================
====
21:56:44.0025 3000
Detected object count: 10
21:56:44.0025 3000
Actual detected object count: 10
21:57:19.0134 3000
C:\WINDOWS\system32\DRIVERS\airplus.sys - copied to quar
antine
21:57:19.0275 3000
AIRPLUS ( UnsignedFile.Multi.Generic ) - User select act
ion: Quarantine
21:57:19.0665 3000
C:\WINDOWS\system32\drivers\cmuda.sys - copied to quaran
tine
21:57:19.0806 3000
cmuda ( UnsignedFile.Multi.Generic ) - User select actio
n: Quarantine
21:57:20.0337 3000
C:\WINDOWS\system32\DRIVERS\dig_ts.sys - copied to quara
ntine
21:57:20.0540 3000
DIG_TS ( UnsignedFile.Multi.Generic ) - User select acti
on: Quarantine
21:57:20.0915 3000
C:\WINDOWS\system32\drivers\dig_v.sys - copied to quaran
tine
21:57:20.0994 3000
DIG_V ( UnsignedFile.Multi.Generic ) - User select actio
n: Quarantine
21:57:21.0290 3000
C:\WINDOWS\system32\giveio.sys - copied to quarantine
21:57:21.0353 3000
giveio ( UnsignedFile.Multi.Generic ) - User select acti
on: Quarantine
21:57:21.0884 3000
C:\WINDOWS\system32\DRIVERS\pctvnet.sys - copied to quar
antine
21:57:21.0931 3000
pctvnet ( UnsignedFile.Multi.Generic ) - User select act
ion: Quarantine
21:57:22.0290 3000
C:\WINDOWS\system32\drivers\sisidex.sys - copied to quar
antine
21:57:22.0400 3000
sisidex ( UnsignedFile.Multi.Generic ) - User select act
ion: Quarantine
21:57:22.0790 3000
C:\WINDOWS\system32\drivers\sisperf.sys - copied to quar
antine
21:57:22.0884 3000
sisperf ( UnsignedFile.Multi.Generic ) - User select act
ion: Quarantine
21:57:23.0244 3000
C:\WINDOWS\system32\DRIVERS\tcpip.sys - copied to quaran
tine
21:57:23.0322 3000
Tcpip ( UnsignedFile.Multi.Generic ) - User select actio
n: Quarantine
21:57:23.0369 3000
D:\vfd21\vfd.sys - copied to quarantine
21:57:23.0494 3000
VirtualFD ( UnsignedFile.Multi.Generic ) - User select a
ction: Quarantine
22:01:02.0384 2664
Deinitialize success

Potrebbero piacerti anche