Avatar billede mathilda Nybegynder
17. september 2013 - 16:04 Der er 90 kommentarer

Langsom start og Safe Mode problem

Hej Eksperten,

Jeg har haft - og har måske stadig - noget skidt på min computer.

Den booter meget langsomt, og i safe mode låser windows stifinder indenfor 1 minut.

Jeg ved at jeg har haft besøg af DownTango i min Firefox. Jeg tror jeg har passivseret den men jeg har ikke kunnet afinstallere dens plugin i Firefox.

Der er tale om en
HP ProBook 4530s
Win7  64 bit

Jeg har scannet med
ADW Cleaner - som senere blev afinsalleret af Norton Power Eraser
Norton Internet Security
Norton Power Eraser
AdAware
SpyBot search and destroy  -  som finder ca 30 "hits", men jeg er ikke sikker på, om de alle skal slettes.

Kan I hjælpe mig?

Mvh  Mathilda
17. september 2013 - 18:07 #1
---

Hent og instalér CCleaner www.ccleaner.com/ + www.spywarefri.dk/manualer/manual-for-installation-og-brug-af-ccleaner/
www.alt-til-windows.dk/?Artikler/CCleaner-GuideTilOptimeringAfVista/763
Lad programmet foretage en oprydning...

http://gratisupload.dk/vis/62873/
http://gratisupload.dk/vis/62874/
http://gratisupload.dk/vis/63036/

--------

Hent Malwarebytes Anti-Malware herfra:
www.besttechie.net/tools/mbam-setup.exe

Installer programmet - når det er gjort skal du lade programmet opdatere sig. Herefter åbner et vindue, hvor du skal flytte prikken til "Kør et fuldstændigt systemscan" - klik på Skan Knappen - lad programmet arbejde. Når det er færdig (det tager lidt tid afhængig af hvor meget du har på computeren).
Derefter - Tryk på "Vis resultater" knappen efter scanningen - og herefter tryk på "Fjern det valgte" - nu åbnes log'en og du skal gemme den et sted, hvor du kan finde den igen.
Kopier indholdet herind sammen med en frisk log fra HiJackThis...

...og her er omtalte HiJackThis ->
www.spywareinfo.dk/index.htm#/manualer/hijackthis.htm

Bemærk at HiJackThis.exe programmet skal gemmes i en dertil oprettet mappe og IKKE køres direkte fra nettet...

PS: Brug denne version af HJT -> http://www.bleepingcomputer.com/download/hijackthis/dl/90/

Mht.: Vista/Win7 - HøjreMusseTast - "Kør som Administrator..."
Avatar billede mathilda Nybegynder
17. september 2013 - 19:33 #2
Hej Larry

Tak for hurtigt svar.
Jeg vender tilbage
Avatar billede mathilda Nybegynder
17. september 2013 - 22:46 #3
Hej Larry
Malwarebites fandt ikke noget.

HijackThis gav denne log:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:39:17, on 17-09-2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
C:\PROGRA~2\AD-AWA~1\AdAware.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____

\Eksperten  sept 2013\hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =

http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized

for Bing and MSN
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer =

localhost:21320
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-

Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files

(x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program

Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:

\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files

(x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Hjælp til logon til Microsoft-konto - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:

\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:

\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files

(x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program

Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files

(x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files

(x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll" (file missing)
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files

(x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe"

/DelayServices
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection

Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology

\IAStorIcon.exe
O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection

\adawarebp.exe"
O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus

\AdAwareLauncher" --windows-run
O4 - HKLM\..\Run: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb

\hpqwutils.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-

Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User

'LOKAL TJENESTE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKAL

TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User

'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User

'NETVÆRKSTJENESTE')
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote

\Evernote\EvernoteIE.dll/204
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows

\system32\GPhotos.scr/200
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-

1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer

\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer

\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files

(x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources

\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:

\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck

\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework

\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08}

- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck

\NCLauncherFromIE.exe
O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files

(x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:

\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Sammenkædede OneNote-noter - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:

\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Sammenkædede OneNote-noter - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}

- C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-

11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file

missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 -

{A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote

\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows

live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows

live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} (SABScanProcesses Class) -

http://www.superadblocker.com/activex/sabspx.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype

\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows

Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files

(x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O21 - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows

\SysWOW64\CbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-

FB6951629E55} - C:\windows\SysWOW64\CbFsMntNtf3.dll
O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Ad-Aware Antivirus

\AdAwareService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:

\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems

Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:

\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program

Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows

\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple

\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth

Suite\adminservice.exe
O23 - Service: Bonjour tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour

\mDNSResponder.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin

\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP

ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: EaseUS Agent Service (EaseUS Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:

\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows

\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows

\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company -

c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game

Console\GameConsoleService.exe
O23 - Service: Guard Agent Service (Guard Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:

\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe
O23 - Service: Google Update Tjeneste (gupdate) (gupdate) - Google Inc. - C:\Program Files

(x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Tjeneste (gupdatem) (gupdatem) - Google Inc. - C:\Program Files

(x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common

\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-

Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files

(x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company,

L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program

Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:

\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program

Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-

Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program

Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file

missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:

\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin

\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) -

Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file

missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-

Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) -

Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS

\LMS.exe
O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-

Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
O23 - Service: Norton Management (MCLIENT) - Symantec Corporation - C:\Program Files (x86)\Norton

Management\Engine\3.2.2.12\ccSvcHst.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program

Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file

missing)
O23 - Service: Norton Identity Safe (NCO) - Symantec Corporation - C:\Program Files (x86)\Norton

Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows

\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files

(x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files

(x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program

Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:

\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows

\system32\locator.exe (file missing)
O23 - Service: RtlISMServ - Realtek - C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing

Manager\HP_UI\RtlService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows

\system32\lsass.exe (file missing)
O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files (x86)\Ad-Aware Antivirus

\SBAMSvc.exe
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:

\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:

\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:

\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype

\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows

\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows

\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows

\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10118 (STacSV) - IDT, Inc. - C:\Program

Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:

\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) -

Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS

\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows

\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:

\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows

\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows

\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:

\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows

\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:

\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown

owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite

\Ath_CoexAgent.exe

--
End of file - 18414 bytes


Mvh  Mathilda
18. september 2013 - 09:40 #4
Hmmm... jeg vil no gerne se loggen fra [Malwarebites] - se i programmet under fanen [Logs] ...
Avatar billede mathilda Nybegynder
18. september 2013 - 14:00 #5
Her er loggen fra Malwarebites

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.09.17.08

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16686
Torben :: TORBEN-HP [administrator]

17-09-2013 19:43:39
mbam-log-2013-09-17 (19-43-39).txt

Skanningstype: Fuldstændig skanning (C:\|D:\|E:\|)
Skanningsmuligheder valgt: Hukommelse | Opstart | Registreringsdatabasen | Filsystem | Heuristics/Ekstra | Heuristics/Shuriken | PUP | PUM
Skanningsmuligheder som er deaktiverede: P2P
Objekter skannet: 457675
Tid gået: 2 time(e), 20 minut(ter), 27 sekund(er)

Hukommelses Processorer Inficeret: 0
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret: 0
(Ingen skadelige objekter blev fundet)

Inficerede Mapper: 0
(Ingen skadelige objekter blev fundet)

Inficerede Filer: 0
(Ingen skadelige objekter blev fundet)

(færdig)

Mvh  Matilda
19. september 2013 - 07:42 #6
Jeg forventer at du HAR kørt [AwClener] ?

---

Vi tager lige denne med ->
Til Vista / WIN7 styresystem:
Gå i Start - Skriv i søgefeltet > cmd > vælg det program som hedder > cmd.exe > og højreklik på den og sig "Kør som administrator"
Skriv:
SFC.exe    /scannow > ENTER
Der kommer en bjælke så længe scanningen køre - og når den er færdig forsvinder den igen og du får ikke andre meldinger.
Indsæt din Windows CD/DVD, hvis du bliver bedt om det.
Efter scanningen > Genstart...
Avatar billede mathilda Nybegynder
19. september 2013 - 09:19 #7
Hm.m.m. ??
AwClener ?
Mener du  ADW Cleaner.  Eller AdAware?
19. september 2013 - 09:59 #8
Prøv at hente AdwCleaner her:
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
(Der går lige 5 sek før du skal trykke på gem)
Start programmet, og når det er startet trykker du på [Scan]
Pc scannes, og ved endt scanning skal du trykke på [Clean].
Og derefter (automatisk) genstart...
Tilbage fra genstart kommer en log, som du gerne må kopiere herind.
Avatar billede f-arn Guru
19. september 2013 - 10:08 #9
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe

O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe

O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe

Det er også en måde at få problemer på.
Avatar billede mathilda Nybegynder
19. september 2013 - 17:17 #10
Hej Larry og f-arn

AdwCleaner log

# AdwCleaner v3.004 - Report created 19/09/2013 at 16:08:19
# Updated 15/09/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Torben - TORBEN-HP
# Running from : C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____\Eksperten  sept 2013\AdwCleaner\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16686


-\\ Mozilla Firefox v24.0 (da)

[ File : C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\q3qft0cl.default-1378673744691\prefs.js ]


*************************

AdwCleaner[R0].txt - [4183 octets] - [15/09/2013 11:51:41]
AdwCleaner[R1].txt - [937 octets] - [15/09/2013 12:10:09]
AdwCleaner[R2].txt - [1169 octets] - [17/09/2013 00:29:20]
AdwCleaner[R3].txt - [1305 octets] - [19/09/2013 15:29:01]
AdwCleaner[R4].txt - [1369 octets] - [19/09/2013 15:43:18]
AdwCleaner[R5].txt - [1490 octets] - [19/09/2013 16:02:14]
AdwCleaner[S0].txt - [4157 octets] - [15/09/2013 11:57:34]
AdwCleaner[S1].txt - [997 octets] - [15/09/2013 12:14:27]
AdwCleaner[S2].txt - [1233 octets] - [17/09/2013 00:31:18]
AdwCleaner[S3].txt - [1369 octets] - [19/09/2013 15:31:03]
AdwCleaner[S4].txt - [1431 octets] - [19/09/2013 15:44:46]
AdwCleaner[S5].txt - [1411 octets] - [19/09/2013 16:08:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [1471 octets] ##########



Til f-arn,
Tak for at du gør mig opmærksom på at HijackThis loggen angiver at flere filer er missing

Jeg har nu downloaded Norton Removal Tool og installationsfiler til Norton Internet Security. - Så prøver jeg at afinstallre og geninstallere.  -  Det må så være en begyndelse.
Men hvad skal jeg så fortsætte med?

Mvh Mathilda
Avatar billede f-arn Guru
19. september 2013 - 19:39 #11
Det er ikke det jeg gør opmærksom på, for sådan vil en HJT log altid se ud på en 64 bit Windows !!!!

Det jeg mener er, du må ikke køre med både NIS, Ad-Aware og Spybot !!!
Avatar billede mathilda Nybegynder
19. september 2013 - 22:22 #12
OK f-arn

Jeg vil gætte på at du vil anbefale at jeg beholder NIS og afinstallerer de andre ?
Avatar billede f-arn Guru
20. september 2013 - 10:51 #13
Hvis du har betalt for NIS, så Ja !

Jeg ved ikke om karise_larry fortsætter eller... ?
20. september 2013 - 10:52 #14
... hvordan er status så nu ?
Avatar billede mathilda Nybegynder
20. september 2013 - 22:48 #15
Jeg har nu
afinstalleret Ad-Aware
deaktiveret Spy Bot tjenester (der er mange filer og andet godt i karantænen,men det tør jeg ikke pille i endnu)
Norton Power Eraser repararede firefox
kørt  sfc /scannow
kørt malwarebytesog fået denne log:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.09.18.06

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16686
Torben :: TORBEN-HP [administrator]

20-09-2013 16:37:43
mbam-log-2013-09-20 (16-37-43).txt

Skanningstype: Fuldstændig skanning (C:\|D:\|E:\|)
Skanningsmuligheder valgt: Hukommelse | Opstart | Registreringsdatabasen | Filsystem | Heuristics/Ekstra | Heuristics/Shuriken | PUP | PUM
Skanningsmuligheder som er deaktiverede: P2P
Objekter skannet: 463996
Tid gået: 2 time(e), 31 minut(ter), 27 sekund(er)

Hukommelses Processorer Inficeret: 0
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret: 0
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret: 0
(Ingen skadelige objekter blev fundet)

Inficerede Mapper: 0
(Ingen skadelige objekter blev fundet)

Inficerede Filer: 0
(Ingen skadelige objekter blev fundet)

(færdig)


Er der basis for a køre HijactThis igen?


Mathilda
Avatar billede mathilda Nybegynder
20. september 2013 - 22:54 #16
Og nu har Norton Internet Security sat  Suspicious.Cloud.9  i karantæne:

Category: Resolved Security Risks
Date & Time,Risk,Activity,Status,Recommended Action,Path - Filename
20-09-2013 01:19:35,High,quarantine.exe (Suspicious.Cloud.9) detected by Virus scanner,Quarantined,Resolved - No Action Required,c:\users\torben\appdata\local\temp\quarantine.exe


Mathilda
Avatar billede mathilda Nybegynder
21. september 2013 - 15:51 #17
Så har jeg også brugt HijackThis igen:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:32:13, on 21-09-2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____\Eksperten  sept 2013\hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Hjælp til logon til Microsoft-konto - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll" (file missing)
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [AccelerometerSysTrayApplet] "C:\Program Files\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.Exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [Norton Download Manager{NIS21013-SHPD-FSD40014}] C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe /m (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Norton Download Manager{NIS21013-SHPD-FSD40014}] C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe /m (User 'Default user')
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Sammenkædede OneNote-noter - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Sammenkædede OneNote-noter - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} (SABScanProcesses Class) - http://www.superadblocker.com/activex/sabspx.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - Winlogon Notify: DeviceNP - DeviceNP.dll (file missing)
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O21 - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\SysWOW64\CbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\SysWOW64\CbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Bonjour tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: EaseUS Agent Service (EaseUS Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP ProtectTools Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\Windows\SysWOW64\flcdlock.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: Guard Agent Service (Guard Agent) - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe
O23 - Service: Google Update Tjeneste (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Tjeneste (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: File Sanitizer for HP ProtectTools (HPFSService) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Endpoint Encryption Agent - Unknown owner - C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
O23 - Service: Norton Management (MCLIENT) - Symantec Corporation - C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Norton Identity Safe (NCO) - Symantec Corporation - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: RtlISMServ - Realtek - C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10118 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 17833 bytes
Avatar billede f-arn Guru
28. september 2013 - 10:20 #18
Kom du videre ?
Avatar billede mathilda Nybegynder
28. september 2013 - 12:56 #19
Næ-eh,  . . . .  sporet synes at stoppe her...
Avatar billede f-arn Guru
28. september 2013 - 14:49 #20
Jeg vil gerne se en log der fortæller lidt mere ->

Hent og kør DDS.

Du kan også bruge denne DDS.

Den laver to logs,(DDS.txt og Attach.txt) gem dem på skrivebordet og kopier indholdet af begge herind.

OBS - DDS skal gemmes på computeren og ikke køres fra nettet.

Mht.: Vista og Windows 7/8 - Højreklik på filen - Kør som Administrator.
Avatar billede mathilda Nybegynder
28. september 2013 - 15:51 #21
DDS logs:

Attach.txt:

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 09-07-2012 17:03:51
System Uptime: 28-09-2013 15:30:21 (0 hours ago)
.
Motherboard: Hewlett-Packard |  | 167C
Processor: Intel(R) Core(TM) i3-2310M CPU @ 2.10GHz | CPU 1 | 2100/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 274 GiB total, 77,018 GiB free.
D: is FIXED (NTFS) - 18 GiB total, 2,766 GiB free.
E: is FIXED (FAT32) - 5 GiB total, 2,102 GiB free.
F: is CDROM (CDFS)
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: OfficeJet G55
Device ID: ROOT\MULTIFUNCTION\0000
Manufacturer:
Name: OfficeJet G55
PNP Device ID: ROOT\MULTIFUNCTION\0000
Service:
.
==== System Restore Points ===================
.
RP436: 21-09-2013 11:25:22 - HPSF Restore Point
RP437: 21-09-2013 11:26:26 - HPSF Restore Point
RP438: 21-09-2013 13:30:37 - Installed Java 7 Update 40 (64-bit)
RP439: 21-09-2013 13:32:20 - Installed Java 7 Update 40
RP440: 21-09-2013 16:24:48 - Configured Microsoft Office Professionel Plus 2010
RP441: 22-09-2013 12:16:15 - Removed Java 7 Update 40 (64-bit)
RP442: 22-09-2013 14:05:20 - Norton_Power_Eraser_20130922140517683
RP443: 22-09-2013 23:39:44 - Removed Microsoft SQL Server 2005 Compact Edition [ENU]
RP444: 23-09-2013 17:50:51 - Gendan handling
RP445: 23-09-2013 21:31:54 - Norton_Power_Eraser_20130923213151102
RP446: 23-09-2013 22:39:16 - Removed Ad-Aware Antivirus.
RP447: 23-09-2013 22:58:26 - Windows Update
RP448: 24-09-2013 17:03:24 - Removed Java 7 Update 25
RP449: 25-09-2013 16:21:22 - Installed Java 7 Update 40
RP450: 27-09-2013 10:11:45 - Windows Update
.
==== Installed Programs ======================
.
?????? ???????
7-Zip 9.22 (x64 edition)
A-PDF To Excel
Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.04) - Dansk
Advanced Uninstaller PRO - Version 11
Agatha Christie - Peril at End House
AMD APP SDK Runtime
AMD Catalyst Install Manager
Apple-programunderstøttelse
Apple Mobile Device Support
Apple Software Update
Awesome Duplicate Photo Finder v. 1.1
Bejeweled 2 Deluxe
Bing Bar
Bing Rewards Client Installer
Blasterball 3
Bonjour
Bounce Symphony
Build-a-Lot - The Elizabethan Era
Bullzip PDF Printer 9.3.0.1516
Cake Mania
CCleaner
Chuzzle Deluxe
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
ConvertHelper 2.2
D3DX10
Debut Video Capture Software
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Device Access Manager for HP ProtectTools
Diner Dash 2 Restaurant Rescue
DiskAid 5.42
Drive Encryption For HP ProtectTools
Dropbox
EaseUS MobiSaver Free 2.0
EaseUS Todo Backup Free 5.5
Energy Star Digital Logo
Evernote v. 4.6
Express Burn
Face Recognition for HP ProtectTools
Farm Frenzy
Fast Duplicate File Finder 3.5.0.1
FATE
File Sanitizer For HP ProtectTools
Folder Size 2.9.0.0
Fotogalleri
Fotogalleriet
FreeFileSync 5.12
Google Earth Plug-in
Greenshot 1.0.6.2228
Hewlett-Packard ACLM.NET v1.2.1.1
HP 3D DriveGuard
HP Auto
HP Connection Manager
HP Customer Experience Enhancements
HP DayStarter
HP Deskjet 3050 J610 series grundlæggende enhedssoftware
HP Deskjet 3050 J610 series Hjælp
HP Documentation
HP ESU for Microsoft Windows 7
HP Game Console
HP Games
HP HD Webcam Driver
HP Hotkey Support
HP Install Network Printer Wizard
HP Internet Sharing Manager
HP Power Assistant
HP Product Detection
HP ProtectTools Security Manager
HP QuickWeb
HP Setup
HP SoftPaq Download Manager
HP Software Framework
HP Software Setup
HP Support Assistant
HP System Default Settings
HP Update
HP Wallpaper
HPDiagnosticAlert
HPISDataManager
iCloud
IDT Audio
Insaniquarium Deluxe
Intel(R) Control Center
Intel(R) Identity Protection Technology 1.1.2.0
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) Rapid Storage Technology
IrfanView (remove only)
iTunes
Java 7 Update 40
Java Auto Updater
Jewel Quest II
Jewel Quest Solitaire
JMicron Flash Media Controller Driver
John Deere Drive Green
Junk Mail filter update
LightScribe System Software
LSI HDA Modem
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Office Access MUI (Danish) 2010
Microsoft Office Excel MUI (Danish) 2010
Microsoft Office Groove MUI (Danish) 2010
Microsoft Office InfoPath MUI (Danish) 2010
Microsoft Office Office 64-bit Components 2010
Microsoft Office OneNote MUI (Danish) 2010
Microsoft Office Outlook MUI (Danish) 2010
Microsoft Office PowerPoint MUI (Danish) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Professionel Plus 2010
Microsoft Office Proof (Danish) 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (German) 2010
Microsoft Office Proof (Swedish) 2010
Microsoft Office Proofing (Danish) 2010
Microsoft Office Publisher MUI (Danish) 2010
Microsoft Office Shared 64-bit MUI (Danish) 2010
Microsoft Office Shared MUI (Danish) 2010
Microsoft Office Word MUI (Danish) 2010
Microsoft Silverlight
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft_VC90_CRT_x86
MixPad
Movie Maker
Mozilla Firefox 24.0 (x86 da)
Mozilla Maintenance Service
Mozilla Thunderbird 24.0 (x86 da)
MSVCRT
MSVCRT_amd64
MSVCRT110
MSVCRT110_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
MSXML 4.0 SP3 Parser (KB2721691)
MSXML 4.0 SP3 Parser (KB2758694)
Norton Identity Safe
Norton Internet Security
Norton Management
PDF Complete Special Edition
Penguins!
Photo Common
Photo Gallery
Picasa 3
Pixillion Image Converter
Plants vs. Zombies
Polar Bowler
Prism Video File Converter
Privacy Manager for HP ProtectTools
Qualcomm Atheros Bluetooth Suite (64)
Qualcomm Atheros Driver Installation Program
QuickShare
QuickTime
Rdio
Realtek Ethernet Controller All-In-One Windows Driver
RecordPad Sound Recorder
Screencast-O-Matic
SDK
Secunia PSI (3.0.0.7011)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft Excel 2010 (KB2760597) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition
Security Update for Microsoft Outlook 2010 (KB2794707) 32-Bit Edition
Security Update for Microsoft Word 2010 (KB2760769) 32-Bit Edition
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skolekom 11.033
Skype™ 6.7
Slingo Deluxe
SoundTap Streaming Audio Recorder
Spybot - Search & Destroy
Switch Sound File Converter
Synaptics Pointing Device Driver
Theft Recovery for HP ProtectTools
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2836939)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553157) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589370) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760758) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Validity Fingerprint Sensor Driver
Valokuvavalikoima
VideoPad Video Editor
VIP Access SDK (1.0.1.5)
Virtual Villagers - The Secret City
WavePad Sound Editor
Wedding Dash
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live Fotogalleri
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Mail
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Windows Liven peruspaketti
Windows Liven sähköposti
Windows Media Player Firefox Plugin
WinZip 14.5
Wuala
Wuala CBFS
Wuala OverlayIcons
Xobni Core
XY Chart Labeler 7.1
Zuma Deluxe
.
==== End Of File ===========================





DDS.txt:

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16686  BrowserJavaVersion: 10.40.2
Run by Torben at 15:43:05 on 2013-09-28
Microsoft Windows 7 Professional  6.1.7601.1.1252.45.1030.18.4030.1855 [GMT 2:00]
.
AV: Norton Internet Security *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Disabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\Program Files\IDT\WDM\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
C:\windows\system32\taskeng.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\IDT\WDM\AESTSr64.exe
C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
C:\Program Files (x86)\Secunia\PSI\PSIA.exe
C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtWlan.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
c:\Windows\SysWOW64\flcdlock.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\SearchIndexer.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\servicing\TrustedInstaller.exe
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\hkcmd.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\LSI SoftModem\agr64svc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
C:\windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\PDF Complete\pdfsvc.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\windows\system32\sppsvc.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelperx64.exe
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\windows\system32\igfxext.exe
C:\windows\system32\igfxsrvc.exe
C:\windows\system32\taskeng.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\windows\system32\SearchFilterHost.exe
C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____\Eksperten  sept 2013\DDS\dds.com
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
C:\windows\system32\SearchProtocolHost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
uWindow Title = Internet Explorer, optimized for Bing and MSN
uSearch Page = hxxp://www.google.com
mSearch Bar = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
uProxyServer = localhost:21320
mWinlogon: Userinit = userinit.exe,
BHO: Bing Bar Helper: {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll
BHO: File Sanitizer for HP ProtectTools: {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll
BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coieplg.dll
BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\ipsbho.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Hjælp til logon til Microsoft-konto: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live

\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck

\HPNetworkCheckPlugin.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coieplg.dll
TB: Bing Bar: {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
mRun: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
mRun: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
StartupFolder: C:\Users\Torben\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: DisableCAD = dword:1
IE: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr/200
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
  If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} - hxxp://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab
DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} - hxxp://www.superadblocker.com/activex/sabspx.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{449128F1-21D8-484D-AF0B-C4181749E2AD} : DHCPNameServer = 212.242.40.51 212.242.40.3
TCP: Interfaces\{FABD5D01-6125-4938-903D-30A0E505AE48} : DHCPNameServer = 192.168.2.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: DeviceNP - DeviceNP.dll
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\SysWOW64\CbFsMntNtf3.dll
STS: Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysWOW64\CbFsMntNtf3.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
LSA: Notification Packages =  EpePcNp64 DPPassFilter scecli
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
x64-mWinlogon: Userinit = C:\windows\System32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: CIESpeechBHO Class: {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-Run: [MfeEpePcMonitor] "C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe"
x64-Run: [HPPowerAssistant] C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Power Assistant

\HPPA_Main.exe /hidden
x64-Run: [Persistence] C:\windows\System32\igfxpers.exe
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [HotKeysCmds] C:\windows\System32\hkcmd.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
.
INFO: x64-HKLM has more than 50 listed domains.
  If you wish to scan all of them, select the 'Force scan all domains' option.
.
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
x64-SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\System32\CbFsMntNtf3.dll
x64-STS: Virtual Storage Mount Notification - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\System32\CbFsMntNtf3.dll
x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
Hosts: 127.0.0.1    www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\q3qft0cl.default-1378673744691\
FF - prefs.js: browser.startup.homepage - hxxp://www.solvangskolen.dk/infoweb/designskabelon7/rammeside.asp?action=&side=&klasse=&id=&startside=&forumid=|

http://www.dmi.dk/vejr/til-lands/byvejr/by/vis/dk/2850/n%c3%a6rum,danmark|http://www.dmi.dk/vejr/maalinger/radar-nedboer/|https://accounts.google.com/servicelogin?

service=cl&passive=1209600&continue=https://www.google.com/calendar/render&followup=http://www.google.com/calendar&scc=1|http://www.dr.dk/nyheder/index.htm
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Torben\AppData\Roaming\Mozilla\plugins\npDownTango.dll
FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
FF - plugin: C:\windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 2013-09-23 18:50; {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn
FF - ExtSQL: 2013-09-23 18:50; {BBDA0591-3099-440a-AA10-41764D9DB4DB}; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFFPlgn
.
============= SERVICES / DRIVERS ===============
.
R0 EUBAKUP;EUBAKUP;C:\windows\System32\drivers\eubakup.sys [2012-9-16 58952]
R0 EUBKMON;EUBKMON;C:\windows\System32\drivers\EUBKMON.sys [2012-9-16 48200]
R0 gfibto;gfibto;C:\windows\System32\drivers\gfibto.sys [2013-9-15 14456]
R0 MfeEpeOpal;MfeEpeOpal;C:\windows\System32\drivers\MfeEpeOpal.sys [2013-2-1 101288]
R0 MfeEpePc;MfeEpePc;C:\windows\System32\drivers\MfeEpePc.sys [2013-2-1 158888]
R0 SymDS;Symantec Data Store;C:\windows\System32\drivers\NISx64\1500010.003\SymDS64.sys [2013-9-23 493656]
R0 SymEFA;Symantec Extended File Attributes;C:\windows\System32\drivers\NISx64\1500010.003\SymEFA64.sys [2013-9-23 1147480]
R1 BHDrvx64;BHDrvx64;C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys [2013-9-24 1525848]
R1 cbfs3;cbfs3;C:\windows\System32\drivers\cbfs3.sys [2012-9-25 352144]
R1 ccSet_MCLIENT;Norton Management Settings Manager;C:\windows\System32\drivers\MCLIENTx64\0302020.00C\ccsetx64.sys [2013-8-22 168096]
R1 ccSet_NIS;NIS Settings Manager;C:\windows\System32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-9-23 150104]
R1 ccSet_NST;Norton Identity Safe Settings Manager;C:\windows\System32\drivers\NSTx64\7DD04000.00A\ccsetx64.sys [2013-6-18 169048]
R1 EUDSKACS;EUDSKACS;C:\windows\System32\drivers\eudskacs.sys [2012-9-16 18504]
R1 EUFDDISK;EUFDDISK;C:\windows\System32\drivers\EuFdDisk.sys [2012-9-16 189000]
R1 IDSVia64;IDSVia64;C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130927.002\IDSviA64.sys [2013-9-28 520280]
R1 SymIRON;Symantec Iron Driver;C:\windows\System32\drivers\NISx64\1500010.003\Ironx64.sys [2013-9-23 264280]
R1 SymNetS;Symantec Network Security WFP Driver;C:\windows\System32\drivers\NISx64\1500010.003\symnets.sys [2013-9-23 590424]
R2 AESTFilters;Andrea ST Filters Service;C:\Program Files\IDT\WDM\AESTSr64.exe [2013-1-14 89600]
R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2012-8-19 211584]
R2 BBSvc;BingBar Service;C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.EXE [2013-7-23 193696]
R2 FLCDLOCK;HP ProtectTools Device Locking / Auditing;C:\Windows\SysWOW64\flcdlock.exe [2011-9-5 476728]
R2 HP Power Assistant Service;HP Power Assistant Service;C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2011-7-15 137272]
R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2012-9-27 86528]
R2 hpCMSrv;HP Connection Manager 4 Service;C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2012-9-5 1420192]
R2 HPDayStarterService;HP DayStarter Service;C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [2011-1-28 133688]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-11-12 197536]
R2 hpHotkeyMonitor;hpHotkeyMonitor;C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-6-20 523680]
R2 hpsrv;HP Service;C:\windows\System32\hpservice.exe [2012-2-28 31000]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-7-9 13336]
R2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service;C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [2011-2-24 212944]
R2 McAfee Endpoint Encryption Agent;McAfee Endpoint Encryption Agent;C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [2013-2-1 1323008]
R2 MCLIENT;Norton Management;C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccsvchst.exe [2013-8-22 143928]
R2 NCO;Norton Identity Safe;C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccsvchst.exe [2013-6-18 144368]
R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-9-23 275696]
R2 pdfcDispatcher;PDF Document Manager;C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-5-5 1128952]
R2 PdiService;Portrait Displays SDK Service;C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2012-7-10 113264]
R2 RtlISMServ;RtlISMServ;C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe [2011-5-30 40960]
R2 Secunia PSI Agent;Secunia PSI Agent;C:\Program Files (x86)\Secunia\PSI\psia.exe [2013-7-3 1228504]
R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-7-9

2656536]
R2 vcsFPService;Validity VCS Fingerprint Service;C:\windows\System32\vcsFPService.exe [2012-7-19 2714232]
R2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent;C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2012-8-19 323584]
R3 BBUpdate;BBUpdate;C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.EXE [2013-7-23 240288]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;C:\windows\System32\drivers\btath_bus.sys [2013-7-3 33944]
R3 DAMDrv;DAMDrv;C:\windows\System32\drivers\DAMDrv64.sys [2011-2-7 63336]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-9-23 140376]
R3 IntcDAud;Intel(R) lyd for skærm;C:\windows\System32\drivers\IntcDAud.sys [2013-1-14 317440]
R3 JMCR;JMCR;C:\windows\System32\drivers\jmcr.sys [2013-1-14 175928]
R3 PSI;PSI;C:\windows\System32\drivers\psi_mf_amd64.sys [2013-7-3 18456]
R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2013-1-14 708200]
R3 stdriver;SoundTap Filter Driver v6.05.00;C:\windows\System32\drivers\stdriverx64.sys [2013-4-18 32536]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-6-8 1033688]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-7-25 162672]
S3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;C:\windows\System32\drivers\btath_flt.sys [2013-7-3 88728]
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM;C:\windows\System32\drivers\AthDfu.sys [2012-8-19 55448]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\windows\System32\drivers\btath_a2dp.sys [2013-7-3 344216]
S3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;C:\windows\System32\drivers\btath_avdt.sys [2013-7-3 114840]
S3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\windows\System32\drivers\btath_hcrp.sys [2013-7-3 178840]
S3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\windows\System32\drivers\btath_lwflt.sys [2013-7-3 77464]
S3 BTATH_RCP;Bluetooth AVRCP Device;C:\windows\System32\drivers\btath_rcp.sys [2013-7-3 135832]
S3 BtFilter;BtFilter;C:\windows\System32\drivers\btfilter.sys [2013-7-3 567808]
S3 EaseUS Agent;EaseUS Agent Service;C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [2013-1-8 69192]
S3 FlashUSB;FlashUSB;C:\windows\System32\drivers\FlashUSB_x64.sys [2012-10-2 19968]
S3 fssfltr;fssfltr;C:\windows\System32\drivers\fssfltr.sys [2013-3-1 57856]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-9-12 1512448]
S3 Guard Agent;Guard Agent Service;C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe [2013-1-8 23624]
S3 HPFSService;File Sanitizer for HP ProtectTools;C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2011-2-7 320000]
S3 Netaapl;Apple Mobile Device Ethernet Service;C:\windows\System32\drivers\netaapl64.sys [2012-3-26 22528]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\windows\System32\drivers\rdpvideominiport.sys [2012-12-9 19456]
S3 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-6-8 1817560]
S3 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-6-8 171928]
S3 StorSvc;Lagertjeneste;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 27136]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-12-9 57856]
S3 USBAAPL64;Apple Mobile USB Driver;C:\windows\System32\drivers\usbaapl64.sys [2012-12-13 54784]
S3 WatAdminSvc;Tjenesten Windows Aktivering;C:\windows\System32\Wat\WatAdminSvc.exe [2012-7-10 1255736]
.
=============== File Associations ===============
.
ShellExec: switch.exe: open="C:\Program Files (x86)\NCH Software\Switch\switch" "%L"
.
=============== Created Last 30 ================
.
2013-09-28 08:56:48    71048    ----a-w-    C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-28 08:56:48    692616    ----a-w-    C:\windows\SysWow64\FlashPlayerApp.exe
2013-09-27 08:14:46    9694160    ----a-w-    C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{27ABA16E-5FB7-4A63-BD97-34FBC3345963}\mpengine.dll
2013-09-25 14:22:08    96168    ----a-w-    C:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-09-23 17:33:34    --------    d-----w-    C:\Program Files (x86)\Common Files\Symantec Shared
2013-09-23 16:49:12    177752    ----a-w-    C:\windows\System32\drivers\SYMEVENT64x86.SYS
2013-09-23 16:48:42    590424    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\symnets.sys
2013-09-23 16:48:42    493656    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\SymDS64.sys
2013-09-23 16:48:42    23568    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\SymELAM.sys
2013-09-23 16:48:42    1147480    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\SymEFA64.sys
2013-09-23 16:48:41    854616    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\srtsp64.sys
2013-09-23 16:48:41    36952    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\srtspx64.sys
2013-09-23 16:48:41    264280    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\Ironx64.sys
2013-09-23 16:48:41    150104    ----a-r-    C:\windows\System32\drivers\NISx64\1500010.003\ccSetx64.sys
2013-09-23 16:48:07    --------    d-----w-    C:\Program Files (x86)\Norton Internet Security
2013-09-22 22:45:22    --------    d-----w-    C:\Program Files (x86)\MozBackup
2013-09-21 11:34:09    --------    d-----w-    C:\ProgramData\Oracle
2013-09-18 12:43:26    --------    d-----w-    C:\Program Files (x86)\AMD APP
2013-09-18 12:43:05    --------    d-----w-    C:\Program Files\ATI Technologies
2013-09-15 22:05:17    --------    d-----w-    C:\Users\Torben\AppData\Roaming\LavasoftStatistics
2013-09-15 22:05:17    --------    d-----w-    C:\ProgramData\Ad-Aware Antivirus
2013-09-15 21:59:29    --------    d-----w-    C:\ProgramData\Downloaded Installations
2013-09-15 21:59:18    --------    d-----w-    C:\Program Files (x86)\Lavasoft
2013-09-15 20:25:48    14456    ----a-w-    C:\windows\System32\drivers\gfibto.sys
2013-09-15 09:51:11    --------    d-----w-    C:\AdwCleaner
2013-09-14 16:42:59    --------    d-----w-    C:\ProgramData\Synaptics
2013-09-14 14:32:53    --------    d-----r-    C:\Program Files (x86)\Skype
2013-09-14 12:52:41    --------    d-----w-    C:\Users\Torben\AppData\Local\Secunia PSI
2013-09-14 12:52:28    --------    d-----w-    C:\Program Files (x86)\Secunia
2013-09-10 23:20:59    817664    ----a-w-    C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2013-09-10 23:20:59    1084928    ----a-w-    C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll
2013-09-10 23:20:59    108032    ----a-w-    C:\Program Files (x86)\Internet Explorer\jsdebuggeride.dll
2013-09-10 23:20:57    2241024    ----a-w-    C:\windows\System32\wininet.dll
2013-09-10 23:20:57    1767936    ----a-w-    C:\windows\SysWow64\wininet.dll
2013-09-10 23:02:13    155584    ----a-w-    C:\windows\System32\drivers\ataport.sys
2013-09-10 23:02:04    3155456    ----a-w-    C:\windows\System32\win32k.sys
2013-09-08 16:15:19    --------    d-----w-    C:\windows\86CA3695A4124BAE92B649A60C2AC663.TMP
2013-09-08 15:30:39    --------    d-----w-    C:\Program Files\ATI
2013-09-08 13:03:22    --------    d-----w-    C:\Program Files (x86)\ATI Technologies
2013-09-08 13:03:12    --------    d-----w-    C:\Program Files (x86)\ATI
2013-09-05 14:04:02    209272    ----a-w-    C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
2013-09-04 09:51:26    --------    d-----w-    C:\windows\System32\drivers\NISx64\1500010.003
.
==================== Find3M  ====================
.
2013-09-25 14:21:56    868264    ----a-w-    C:\windows\SysWow64\npDeployJava1.dll
2013-09-25 14:21:56    790440    ----a-w-    C:\windows\SysWow64\deployJava1.dll
2013-08-10 05:20:59    3959296    ----a-w-    C:\windows\System32\jscript9.dll
2013-08-10 05:20:55    67072    ----a-w-    C:\windows\System32\iesetup.dll
2013-08-10 05:20:55    136704    ----a-w-    C:\windows\System32\iesysprep.dll
2013-08-10 03:58:09    2876928    ----a-w-    C:\windows\SysWow64\jscript9.dll
2013-08-10 03:58:06    61440    ----a-w-    C:\windows\SysWow64\iesetup.dll
2013-08-10 03:58:06    109056    ----a-w-    C:\windows\SysWow64\iesysprep.dll
2013-08-10 03:17:38    2706432    ----a-w-    C:\windows\System32\mshtml.tlb
2013-08-10 03:07:50    2706432    ----a-w-    C:\windows\SysWow64\mshtml.tlb
2013-08-10 02:27:59    89600    ----a-w-    C:\windows\System32\RegisterIEPKEYs.exe
2013-08-10 02:17:19    71680    ----a-w-    C:\windows\SysWow64\RegisterIEPKEYs.exe
2013-08-07 02:22:02    278800    ------w-    C:\windows\System32\MpSigStub.exe
2013-08-02 02:23:53    5550528    ----a-w-    C:\windows\System32\ntoskrnl.exe
2013-08-02 02:15:44    1732032    ----a-w-    C:\windows\System32\ntdll.dll
2013-08-02 02:15:03    362496    ----a-w-    C:\windows\System32\wow64win.dll
2013-08-02 02:15:03    243712    ----a-w-    C:\windows\System32\wow64.dll
2013-08-02 02:15:03    13312    ----a-w-    C:\windows\System32\wow64cpu.dll
2013-08-02 02:14:57    215040    ----a-w-    C:\windows\System32\winsrv.dll
2013-08-02 02:14:11    16384    ----a-w-    C:\windows\System32\ntvdm64.dll
2013-08-02 02:13:34    424448    ----a-w-    C:\windows\System32\KernelBase.dll
2013-08-02 01:59:30    3968960    ----a-w-    C:\windows\SysWow64\ntkrnlpa.exe
2013-08-02 01:59:30    3913664    ----a-w-    C:\windows\SysWow64\ntoskrnl.exe
2013-08-02 01:51:23    1292192    ----a-w-    C:\windows\SysWow64\ntdll.dll
2013-08-02 01:50:42    5120    ----a-w-    C:\windows\SysWow64\wow32.dll
2013-08-02 01:50:42    274944    ----a-w-    C:\windows\SysWow64\KernelBase.dll
2013-08-02 01:09:17    338432    ----a-w-    C:\windows\System32\conhost.exe
2013-08-02 00:59:09    112640    ----a-w-    C:\windows\System32\smss.exe
2013-08-02 00:45:37    25600    ----a-w-    C:\windows\SysWow64\setup16.exe
2013-08-02 00:45:36    14336    ----a-w-    C:\windows\SysWow64\ntvdm64.dll
2013-08-02 00:45:35    7680    ----a-w-    C:\windows\SysWow64\instnm.exe
2013-08-02 00:45:34    2048    ----a-w-    C:\windows\SysWow64\user.exe
2013-08-02 00:43:05    6144    ---ha-w-    C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05    4608    ---ha-w-    C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05    3584    ---ha-w-    C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05    3072    ---ha-w-    C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2013-07-25 09:25:54    1888768    ----a-w-    C:\windows\System32\WMVDECOD.DLL
2013-07-25 08:57:27    1620992    ----a-w-    C:\windows\SysWow64\WMVDECOD.DLL
2013-07-19 01:58:42    2048    ----a-w-    C:\windows\System32\tzres.dll
2013-07-19 01:41:01    2048    ----a-w-    C:\windows\SysWow64\tzres.dll
2013-07-09 05:52:52    224256    ----a-w-    C:\windows\System32\wintrust.dll
2013-07-09 05:51:16    1217024    ----a-w-    C:\windows\System32\rpcrt4.dll
2013-07-09 05:46:20    184320    ----a-w-    C:\windows\System32\cryptsvc.dll
2013-07-09 05:46:20    1472512    ----a-w-    C:\windows\System32\crypt32.dll
2013-07-09 05:46:20    139776    ----a-w-    C:\windows\System32\cryptnet.dll
2013-07-09 04:52:33    663552    ----a-w-    C:\windows\SysWow64\rpcrt4.dll
2013-07-09 04:52:10    175104    ----a-w-    C:\windows\SysWow64\wintrust.dll
2013-07-09 04:46:31    140288    ----a-w-    C:\windows\SysWow64\cryptsvc.dll
2013-07-09 04:46:31    1166848    ----a-w-    C:\windows\SysWow64\crypt32.dll
2013-07-09 04:46:31    103936    ----a-w-    C:\windows\SysWow64\cryptnet.dll
2013-07-06 06:03:53    1910208    ----a-w-    C:\windows\System32\drivers\tcpip.sys
2013-07-03 08:32:42    18456    ----a-w-    C:\windows\System32\drivers\psi_mf_amd64.sys
.
============= FINISH: 15:44:13,32 ===============
Avatar billede f-arn Guru
28. september 2013 - 17:46 #22
deaktiveret Spy Bot tjenester (der er mange filer og andet godt i karantænen,men det tør jeg ikke pille i endnu)

Spybot spøger stadig, så hvis du har mulighed for det - vil jeg gerne se hvad den har lagt i karantæne.

------

Hent og gem MiniToolBox af Farbar.

Start den og sæt flueben i følgende.

List last 10 Event Wiewer Errors

Klik så på GO. Den laver Result.txt, som du gerne må kopiere herind.
Avatar billede mathilda Nybegynder
28. september 2013 - 18:11 #23
MiniToolBox by Farbar  Version: 13-07-2013
Ran by Torben (administrator) on 28-09-2013 at 18:06:29
Running from "C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____\Eksperten  sept 2013\MiniToolBox"
Microsoft Windows 7 Professional  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (09/28/2013 03:21:03 PM) (Source: Application Hang) (User: )
Description: Programmet NIS.exe version 12.10.0.42 afbrød kommunikationen med Windows og blev afsluttet. Hvis du vil se, om der findes flere oplysninger om problemet, kan du læse om problemets historik via Løsningscenter.

Proces-id: 128c

Starttidspunkt: 01cebc4d422890af

Afslutningstidspunkt: 16

Programsti: C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe

Rapport-id: b14a3e0b-2840-11e3-892f-101f74f78257

Error: (09/28/2013 02:05:51 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: Explorer.EXE, version: 6.1.7601.17567, tidsstempel: 0x4d672ee4
Navn på modul med fejl: OverlayIcon.dll, version: 1.0.0.2, tidsstempel: 0x4fa19def
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x000000000000eef7
Proces-id 0x54c
Programmets starttidspunkt 0xExplorer.EXE0
Programsti: Explorer.EXE1
Modulsti: Explorer.EXE2
Rapport-id: Explorer.EXE3

Error: (09/28/2013 02:05:20 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: Explorer.EXE, version: 6.1.7601.17567, tidsstempel: 0x4d672ee4
Navn på modul med fejl: OverlayIcon.dll, version: 1.0.0.2, tidsstempel: 0x4fa19def
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x000000000000eef7
Proces-id 0x120
Programmets starttidspunkt 0xExplorer.EXE0
Programsti: Explorer.EXE1
Modulsti: Explorer.EXE2
Rapport-id: Explorer.EXE3

Error: (09/28/2013 00:07:47 AM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xe74
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (09/27/2013 10:48:32 AM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xd5c
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (09/26/2013 11:41:03 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0x1adc
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (09/26/2013 08:59:42 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0x10b0
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (09/26/2013 06:55:10 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0x1f8c
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (09/26/2013 06:42:42 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: HpHotkeyMonitor.exe, version: 4.6.4.1, tidsstempel: 0x4fe21c40
Navn på modul med fejl: ntdll.dll, version: 6.1.7601.18229, tidsstempel: 0x51fb1072
Undtagelseskode: 0xc0000374
Forskydning med fejl 0x000ce753
Proces-id 0x17fc
Programmets starttidspunkt 0xHpHotkeyMonitor.exe0
Programsti: HpHotkeyMonitor.exe1
Modulsti: HpHotkeyMonitor.exe2
Rapport-id: HpHotkeyMonitor.exe3

Error: (09/26/2013 06:42:41 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0x16f4
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3


System errors:
=============
Error: (09/28/2013 05:59:43 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: programspecifikkeLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)

Error: (09/28/2013 05:58:47 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Connection Manager 4 Service hang ved start.

Error: (09/28/2013 05:57:27 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten Spybot-S&D 2 Updating Service kunne ikke starte pga. følgende fejl:
%%1053

Error: (09/28/2013 05:57:27 PM) (Source: Service Control Manager) (User: )
Description: Der opstod timeout (30000 millisekunder), mens systemet ventede på, at der blev oprettet forbindelse til tjenesten Spybot-S&D 2 Updating Service.

Error: (09/28/2013 05:56:43 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Network Devices Support blev afbrudt med følgende fejl:
%%126

Error: (09/28/2013 05:56:40 PM) (Source: BTHUSB) (User: )
Description: Der opstod en ukendt fejl i den lokale Bluetooth-adapter og den vil derfor ikke blive brugt. Driveren vil ikke blive indlæst.

Error: (09/28/2013 04:51:00 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten Windows-billedscanning hang ved start.

Error: (09/28/2013 04:47:07 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten Lyttefunktion til hjemmegruppe blev afbrudt med den tjenestespecifikke fejl %%-2147023143.

Error: (09/28/2013 04:46:29 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: programspecifikkeLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)

Error: (09/28/2013 04:45:36 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Connection Manager 4 Service hang ved start.


Microsoft Office Sessions:
=========================
Error: (09/28/2013 03:21:03 PM) (Source: Application Hang)(User: )
Description: NIS.exe12.10.0.42128c01cebc4d422890af16C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exeb14a3e0b-2840-11e3-892f-101f74f78257

Error: (09/28/2013 02:05:51 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.1.7601.175674d672ee4OverlayIcon.dll1.0.0.24fa19defc0000005000000000000eef754c01cebc4304e66438C:\windows\Explorer.EXEC:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll50e254de-2836-11e3-8aea-b474db4e5e11

Error: (09/28/2013 02:05:20 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.1.7601.175674d672ee4OverlayIcon.dll1.0.0.24fa19defc0000005000000000000eef712001cebc42f323dfedC:\windows\Explorer.EXEC:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll3ecc8069-2836-11e3-8aea-b474db4e5e11

Error: (09/28/2013 00:07:47 AM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6e7401cebbc5d8ad6098C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe3d5239ab-27c1-11e3-8a0f-101f74f78257

Error: (09/27/2013 10:48:32 AM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6d5c01cebb588864b338C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe95d1415e-2751-11e3-aa2f-101f74f78257

Error: (09/26/2013 11:41:03 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d61adc01cebaefb4663bc3C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe572b9096-26f4-11e3-89ad-101f74f78257

Error: (09/26/2013 08:59:42 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d610b001cebae3b1b9614dC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.execce99cd8-26dd-11e3-89ad-101f74f78257

Error: (09/26/2013 06:55:10 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d61f8c01cebad873db36d1C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe6738fa27-26cc-11e3-89ad-101f74f78257

Error: (09/26/2013 06:42:42 PM) (Source: Application Error)(User: )
Description: HpHotkeyMonitor.exe4.6.4.14fe21c40ntdll.dll6.1.7601.1822951fb1072c0000374000ce75317fc01cebabb3b6d50f8C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exeC:\windows\SysWOW64\ntdll.dlla8f5aab8-26ca-11e3-89ad-101f74f78257

Error: (09/26/2013 06:42:41 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d616f401cebad2ad5e3ddeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exea8b0b265-26ca-11e3-89ad-101f74f78257


**** End of log ****
Avatar billede f-arn Guru
28. september 2013 - 19:39 #24
Spybot spøger stadig, så hvis du har mulighed for det - vil jeg gerne se hvad den har lagt i karantæne.

Overså du det ?
Avatar billede mathilda Nybegynder
28. september 2013 - 23:58 #25
Jeg  har fundet følgede mapper fra SpyBot:

C:\ProgramData\Spybot - Search & Destroy\Cleaning  med 7 xml-filer
C:\ProgramData\Spybot - Search & Destroy\Ignore   
C:\ProgramData\Spybot - Search & Destroy\Logs      med 34 txt og log filer
C:\ProgramData\Spybot - Search & Destroy\Quarantine    med 11 zip-filer
C:\ProgramData\Spybot - Search & Destroy\System Configuration Snapshots    med 5 lasshes-filer

Skal jeg igang med log og txt-filerne fra Logs
eller zip-filerne fra Quarantine  ?
- - - og hvordan?
Avatar billede f-arn Guru
29. september 2013 - 08:10 #26
Det må være txt og log filerne der er interessante :)
Avatar billede mathilda Nybegynder
29. september 2013 - 09:29 #27
skal de kopieres ind her eller sendes som bilag?
Avatar billede f-arn Guru
29. september 2013 - 09:49 #28
Hvor store er de ?
Avatar billede mathilda Nybegynder
29. september 2013 - 12:05 #29
Der er :

7  Rootkit.log  hver på  100-200 KB
1  Firewall.log      på      135 KB
1  Update.log        på      55 KB
1  Scanner.log      på      36 KB
1  Proxy.log        på      21 KB
1  Cleaner.log      på      10 KB
1  Immunization-Browsers.log  10 KB
1  Quarantine.log    på        5 KB
2  på formen:  Checks.130917-0718.txt  hver på 15 KB
11 på formen:  Checks.130917-0718.txt  hver på  5 KB
7  Rootkit.log  hver på        1 KB


Umiddelbart ser det ud som om Cleaner.Log er mest interessant.
Men der kan godt være noget interessant i nogle af de andre.
Cleaner.Log følger her:

[i]    13-06-08 18:22:56       
[i]    13-06-08 18:22:56    Processing    130608-174424.xml
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Delta.Toolbar
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectNewTabPageShow
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectShowTabsWelcome
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    SimplyTech.HomeTab
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\tjalu0yq.default\extensions\WTB_GLOBAL.sqlite
[i]    13-06-08 18:22:57    Already cleaned    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[i]    13-06-08 18:22:57    Already cleaned    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
  •     13-06-08 18:22:57    Moving into quarantine    C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\tjalu0yq.default\extensions\WTB_GLOBAL.sqlite
  •     13-06-08 18:22:57    Moving into quarantine    C:\Windows\Launcher.exe
  •     13-06-08 18:22:57    Moving into quarantine    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
  •     13-06-08 18:22:57    Moving into quarantine    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
  •     13-06-08 18:22:57    Successfully cleaned    C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\tjalu0yq.default\extensions\WTB_GLOBAL.sqlite
  •     13-06-08 18:22:57    Successfully cleaned    C:\Windows\Launcher.exe
  •     13-06-08 18:22:57    Successfully cleaned    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
  •     13-06-08 18:22:57    Successfully cleaned    HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    SweetIM
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\SweetIM
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\SweetIM\Install
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\SweetIM\Toolbars
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\SweetIM\simapp_id
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM\simapp_id
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Macromedia.FlashPlayer.Cookies
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\D8VX6B6P\a.vimeocdn.com\com.conviva.livePass.sol
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\D8VX6B6P\s.ytimg.com\soundData.sol
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\D8VX6B6P\www.ricoreeds.com\com.jeroenwijering.sol
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\D8VX6B6P\tag.userreport.com\FlashCookieProxy.swf\__bpn_uid.sol
[i]    13-06-08 18:22:57    Already cleaned    C:\Users\Torben\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\D8VX6B6P\heias.com\x\heias_sc.swf\heias.sol
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    DoubleClick
[i]    13-06-08 18:22:57    Already cleaned    Cookie (Firefox: Torben (default)).doubleclick.net/ (id)
[i]    13-06-08 18:22:57    Already cleaned    Cookie (Firefox: Torben (default)).doubleclick.net/ (_drt_)
[i]    13-06-08 18:22:57    Already cleaned    Cookie (Firefox: Torben (default))2843239.fls.doubleclick.net/ (__atuvc)
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Adviva
[i]    13-06-08 18:22:57    Already cleaned    Cookie (Firefox: Torben (default)).adviva.net/ (ug)
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    FastClick
[i]    13-06-08 18:22:57    Already cleaned    Cookie (Firefox: Torben (default)).fastclick.net/ (pluto2)
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Internet Explorer
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Internet Explorer\TypedURLs
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Internet Explorer\Download Directory
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    MS Management Console
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Microsoft Management Console\Recent File List
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    MS Media Player
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\MediaPlayer\Player\Settings\Client ID
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    MS Direct3D
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Direct3D\MostRecentApplication\Name
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    MS DirectDraw
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Windows
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
[i]    13-06-08 18:22:57    Already cleaned    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Windows.OpenWith
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CAB\OpenWithList
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CHK\OpenWithList
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CSV\OpenWithList
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Windows Explorer
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Windows Media SDK
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    WinZip
[i]    13-06-08 18:22:57    Already cleaned    HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Nico Mak Computing\WinZip\rrs\Opened
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Cookie
[i]    13-06-08 18:22:57    Already cleaned    Internet Explorer (User) (Torben)Cookies
[i]    13-06-08 18:22:57    Already cleaned    Firefox (Torben (default))Cookies
[i]    13-06-08 18:22:57    Already cleaned    Thunderbird (Torben (default))Cookies
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    Cache
[i]    13-06-08 18:22:57    Already cleaned    Internet Explorer (User) (Torben)Cache
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Product    History
[i]    13-06-08 18:22:57    Already cleaned    Internet Explorer (User) (Torben)History
[i]    13-06-08 18:22:57       
[i]    13-06-08 18:22:57    Summary   
[i]    13-06-08 18:22:57    Errors while cleaning    0
[i]    13-06-08 18:22:57    Files moved into quarantine    4
[i]    13-06-08 18:22:57    Files successfully cleaned    56
  •     13-06-08 18:22:57        Congratulations, everything (from file 130608-174424.xml) is fixed.
Avatar billede mathilda Nybegynder
29. september 2013 - 12:23 #30
Hmmm.  . . . .  Firewall.log ??
Det ser spooky ud.
Avatar billede f-arn Guru
01. oktober 2013 - 20:23 #31
Hent Junkware Removal Tool af thisisu, og gem den på dit Skrivebord.

Deaktiver dit sikkerhedprogram, mens du kører den :exclaim:

Start JRT

Mht.: Vista og Windows 7/8 - Højreklik på filen - Kør som Administrator.

Vær tålmodig mens den kører, da det kan ta' noget tid.

Den laver en logfil (JRT.txt) på skrivebordet, som du skal kopiere herind i næste indlæg.
Avatar billede mathilda Nybegynder
01. oktober 2013 - 22:28 #32
JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.3 (09.27.2013:1)
OS: Windows 7 Professional x64
Ran by Torben on 01-10-2013 at 22:05:02,49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1766701091-1852947600-986297412-1001\Software\SweetIM
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}



~~~ Files



~~~ Folders



~~~ FireFox

Successfully deleted: [File] C:\Users\Torben\AppData\Roaming\mozilla\firefox\profiles\q3qft0cl.default-1378673744691\searchplugins\safesearch.xml
Emptied folder: C:\Users\Torben\AppData\Roaming\mozilla\firefox\profiles\q3qft0cl.default-1378673744691\minidumps [12 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 01-10-2013 at 22:19:13,69
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Avatar billede f-arn Guru
01. oktober 2013 - 23:45 #33
Til 64 bit Windows, hent Farbar Recovery Scan Tool x64 og gem den på Skrivebordet.

Start Farbar Recovery Scan Tool og klik på Scan.

Når scanningen er færdig, har du 2 log filer på Skrivebordet -  FRST.txt og Addition.txt som du bedes kopiere herind.

Send dem i separate indlæg, da de kan være meget lange !
Avatar billede mathilda Nybegynder
02. oktober 2013 - 06:27 #34
FRST.txt
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-09-2013 02
Ran by Torben (administrator) on TORBEN-HP on 02-10-2013 06:19:45
Running from C:\Users\Torben\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Danish
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\windows\system32\Hpservice.exe
(Validity Sensors, Inc.) C:\windows\system32\vcsFPService.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
(Realtek) C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe
(Realtek) C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtWlan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Hewlett-Packard Company) c:\Windows\SysWOW64\flcdlock.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
() C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Dropbox, Inc.) C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Hewlett-Packard Company) c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
(Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelperx64.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\windows\system32\igfxext.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [MfeEpePcMonitor] - C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [200704 2013-02-01] ()
HKLM\...\Run: [HPPowerAssistant] - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2996792 2011-07-15] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3011824 2013-03-14] (Synaptics Incorporated)
HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
MountPoints2: H - H:\LGAutoRun.exe
MountPoints2: {ebe2d298-089b-11e2-90df-74de2b4ca5a7} - H:\LGAutoRun.exe
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184736 2012-09-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [169528 2013-02-27] (Hewlett-Packard Company)
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
Startup: C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\system32\CbFsMntNtf3.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
BootExecute: autocheck autochk * bootdelete

==================== Internet (Whitelisted) ====================

ProxyServer: localhost:21320
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=OIE9MSE&PC=UP09
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: File Sanitizer for HP ProtectTools - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Hjælp til logon til Microsoft-konto - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab
DPF: HKLM-x32 {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} http://www.superadblocker.com/activex/sabspx.cab
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} -  No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Torben\AppData\Roaming\Mozilla\Firefox\Profiles\q3qft0cl.default-1378673744691
FF Homepage: hxxp://www.solvangskolen.dk/infoweb/designskabelon7/rammeside.asp?action=&side=&klasse=&id=&startside=&forumid=|hxxp://www.dmi.dk/vejr/til-lands/byvejr/by/vis/dk/2850/n%c3%a6rum,danmark|hxxp://www.dmi.dk/vejr/maalinger/radar-nedboer/|https://www.google.com/calendar/render?pli=1|hxxp://www.dr.dk/nyheder/index.htm
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @java.com/DTPlugin,version=10.15.2 - C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazon-co-uk.xml
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\
FF Extension: DigitalPersona Extension - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\
FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.2.1.33\coFFPlgn\
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFFPlgn\
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFFPlgn\
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn\

Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\Exts\Chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] -
CHR HKLM-x32\...\Chrome\Extension: [oejkcgajlodefenbbjdnaiahmbnnoole] - C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\chrome-newtab-search.crx

==================== Services (Whitelisted) =================

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-19] (Qualcomm Atheros Commnucations)
R2 DpHost; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [486224 2011-11-10] (DigitalPersona, Inc.)
S3 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [69192 2012-12-19] (CHENGDU YIWO Tech Development Co., Ltd)
R2 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [476728 2011-09-05] (Hewlett-Packard Company)
S3 Guard Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe [23624 2012-12-19] (CHENGDU YIWO Tech Development Co., Ltd)
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1323008 2013-02-01] ()
R2 MCLIENT; C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe [143928 2012-12-05] (Symantec Corporation)
R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [275696 2013-08-31] (Symantec Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-08-11] (PDF Complete Inc)
R2 RtlISMServ; C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe [40960 2011-05-30] (Realtek)
S3 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
S2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
S3 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-19] (Atheros)
S2 HPSLPSVC; C:\Users\Torben\AppData\Local\Temp\7zS5757\hpslpsvc64.dll [x]

==================== Drivers (Whitelisted) ====================

R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys [1525848 2013-09-24] (Symantec Corporation)
R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys [1525848 2013-09-24] (Symantec Corporation)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-08-19] (Qualcomm Atheros)
R1 cbfs3; C:\windows\system32\drivers\cbfs3.sys [352144 2012-04-09] (EldoS Corporation)
R1 ccSet_MCLIENT; C:\Windows\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys [168096 2012-10-03] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation)
R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation)
R3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-09-23] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-09-23] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [140376 2013-09-23] (Symantec Corporation)
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [48200 2012-12-19] ()
S3 FlashUSB; C:\Windows\System32\DRIVERS\FlashUSB_x64.sys [19968 2010-05-12] (Danish Wireless Design A/S)
R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-09-19] (GFI Software)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130928.001\IDSvia64.sys [520280 2013-09-21] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130928.001\IDSvia64.sys [520280 2013-09-21] (Symantec Corporation)
R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [101288 2013-02-01] (McAfee, Inc.)
R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158888 2013-02-01] (McAfee, Inc.)
R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131001.004\ENG64.SYS [126040 2013-09-23] (Symantec Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131001.004\ENG64.SYS [126040 2013-09-23] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131001.004\EX64.SYS [2099288 2013-09-23] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131001.004\EX64.SYS [2099288 2013-09-23] (Symantec Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
R3 SRTSP; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [854616 2013-07-31] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [36952 2013-07-31] (Symantec Corporation)
R3 stdriver; C:\Windows\System32\DRIVERS\stdriverx64.sys [32536 2013-04-18] ()
R0 SymDS; C:\Windows\System32\drivers\NISx64\1500010.003\SYMDS64.SYS [493656 2013-08-01] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1500010.003\SYMEFA64.SYS [1147480 2013-08-05] (Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-09-23] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [264280 2013-07-31] (Symantec Corporation)
R1 SymNetS; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [590424 2013-07-31] (Symantec Corporation)
S3 ARCVCAM; system32\DRIVERS\ArcSoftVCapture.sys [x]
S3 CpqDfw; system32\drivers\CpqDfw.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 LgBttPort; system32\DRIVERS\lgbtpt64.sys [x]
S3 lgbusenum; system32\DRIVERS\lgbtbs64.sys [x]
S3 LGVMODEM; system32\DRIVERS\lgvmdm64.sys [x]
S3 usbbus; system32\DRIVERS\lgx64bus.sys [x]
S3 UsbDiag; system32\DRIVERS\lgx64diag.sys [x]
S3 USBModem; system32\DRIVERS\lgx64modem.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-02 06:19 - 2013-10-02 06:19 - 00000000 ____D C:\FRST
2013-10-02 06:16 - 2013-10-02 06:16 - 01953880 _____ (Farbar) C:\Users\Torben\Desktop\FRST64.exe
2013-10-01 22:04 - 2013-10-01 22:04 - 00000000 ____D C:\windows\ERUNT
2013-09-28 23:24 - 2013-09-28 23:25 - 00001044 _____ C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
2013-09-28 16:34 - 2013-09-28 16:35 - 00000241 _____ C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
2013-09-28 15:44 - 2013-09-28 15:44 - 00032240 _____ C:\Users\Torben\Desktop\dds.txt
2013-09-28 15:44 - 2013-09-28 15:44 - 00010977 _____ C:\Users\Torben\Desktop\attach.txt
2013-09-28 15:10 - 2013-09-28 15:10 - 00003250 _____ C:\windows\System32\Tasks\{206EC948-566D-4E5F-9D78-46B637E4ACCC}
2013-09-28 15:04 - 2013-09-28 15:04 - 00003190 _____ C:\windows\System32\Tasks\{E600702E-FB22-4CF7-B8C6-67117EC37859}
2013-09-28 14:58 - 2013-09-28 14:58 - 00003138 _____ C:\windows\System32\Tasks\{EB6142DB-86AC-447A-A9FA-B8656A8A4520}
2013-09-28 13:00 - 2013-09-28 13:02 - 00015274 _____ C:\Users\Torben\Documents\cc_20130928_130052.reg
2013-09-28 10:56 - 2013-10-02 06:09 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-09-28 10:56 - 2013-09-28 10:56 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-09-28 10:56 - 2013-09-28 10:56 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-28 10:56 - 2013-09-28 10:56 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-09-26 22:36 - 2013-09-26 22:37 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406(1).exe
2013-09-26 20:58 - 2013-09-26 20:59 - 00000149 _____ C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
2013-09-25 17:32 - 2013-09-25 17:33 - 00000161 _____ C:\Users\Torben\Desktop\MS  WIN7  Community.url
2013-09-25 16:52 - 2013-09-25 16:52 - 00000167 _____ C:\Users\Torben\Desktop\sfc .url
2013-09-25 16:31 - 2013-09-25 16:31 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406.exe
2013-09-25 16:22 - 2013-09-25 16:21 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-09-25 16:22 - 2013-09-25 16:21 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-09-25 16:22 - 2013-09-25 16:21 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-09-25 16:22 - 2013-09-25 16:21 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-23 21:41 - 2013-09-17 12:42 - 07254144 _____ C:\windows\ntbtlog.txt.bak
2013-09-23 18:51 - 2013-09-23 18:51 - 00000000 ____D C:\windows\System32\Tasks\Norton Internet Security
2013-09-23 18:49 - 2013-09-23 18:49 - 00177752 _____ (Symantec Corporation) C:\windows\system32\Drivers\SYMEVENT64x86.SYS
2013-09-23 18:49 - 2013-09-23 18:49 - 00008222 _____ C:\windows\system32\Drivers\SYMEVENT64x86.CAT
2013-09-23 18:49 - 2013-09-23 18:49 - 00002564 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
2013-09-23 18:48 - 2013-09-23 18:48 - 00000000 ____D C:\Program Files (x86)\Norton Internet Security
2013-09-23 18:46 - 2013-09-23 18:46 - 00001287 _____ C:\Users\Torben\Desktop\Norton Installation Files.lnk
2013-09-23 18:22 - 2013-09-23 18:22 - 00869456 _____ C:\Users\Torben\Downloads\Norton_Removal_Tool.exe
2013-09-23 18:13 - 2013-09-23 18:13 - 07539624 _____ (Symantec Corporation) C:\Users\Torben\Downloads\NRnR(2).exe
2013-09-23 17:18 - 2013-09-24 16:51 - 00231467 _____ C:\Users\Torben\Desktop\Systemgendannelse.odt
2013-09-23 00:46 - 2013-09-23 00:46 - 08646407 _____ C:\Users\Torben\Documents\Firefox 24.0 (da) - 2013-09-23.pcv
2013-09-23 00:45 - 2013-09-23 17:59 - 00000000 ____D C:\Program Files (x86)\MozBackup
2013-09-22 11:31 - 2013-09-22 11:32 - 00000161 _____ C:\Users\Torben\Desktop\Use and manage plugins.url
2013-09-21 13:34 - 2013-09-25 16:23 - 00000000 ____D C:\ProgramData\Oracle
2013-09-21 11:23 - 2013-09-21 11:24 - 00000223 _____ C:\Users\Torben\Desktop\HP diagnose.url
2013-09-19 16:37 - 2013-09-19 16:37 - 00011820 _____ C:\Users\Torben\Documents\Norton Identity Safe.CSV
2013-09-19 16:36 - 2013-09-19 16:36 - 00077824 _____ C:\Users\Torben\Documents\Norton Identity Safe.DAT
2013-09-19 15:59 - 2013-09-19 15:59 - 00019968 ___SH C:\Users\Torben\AppData\Roaming\Thumbs.db
2013-09-18 17:37 - 2013-09-18 17:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 17:24 - 2013-09-18 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-09-18 14:43 - 2013-09-18 14:43 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-18 14:43 - 2013-09-18 14:43 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-09-17 22:38 - 2013-09-17 22:38 - 00003552 _____ C:\windows\System32\Tasks\{02B34B83-8AC8-4D27-B035-5F54280EE7A7}
2013-09-17 16:12 - 2013-09-17 16:13 - 00262270 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-09-17 00:32 - 2013-09-17 00:32 - 00001188 ____N C:\windows\SysWOW64\ServiceConfig.xml
2013-09-17 00:32 - 2013-09-17 00:32 - 00000334 _____ C:\windows\SysWOW64\CountScans.XML
2013-09-16 23:47 - 2013-09-16 23:49 - 00401372 _____ C:\windows\msxml4-KB2721691-enu.LOG
2013-09-16 00:05 - 2013-09-23 22:40 - 00000000 ____D C:\Users\Torben\AppData\Roaming\LavasoftStatistics
2013-09-16 00:05 - 2013-09-16 00:08 - 00000000 ____D C:\ProgramData\Ad-Aware Antivirus
2013-09-16 00:05 - 2013-09-16 00:05 - 00004326 _____ C:\windows\System32\Tasks\Ad-Aware Antivirus Scheduled Scan
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\ProgramData\Lavasoft
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\ProgramData\Downloaded Installations
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2013-09-15 22:25 - 2013-09-19 19:30 - 00014456 _____ (GFI Software) C:\windows\system32\Drivers\gfibto.sys
2013-09-15 11:51 - 2013-09-19 16:08 - 00000000 ____D C:\AdwCleaner
2013-09-14 19:13 - 2013-09-14 19:13 - 00000000 ____D C:\Users\Torben\Documents\Mine Web-steder
2013-09-14 19:12 - 2013-09-14 21:39 - 00000013 _____ C:\windows\vbaddin.ini
2013-09-14 19:12 - 2013-09-14 19:12 - 00000376 _____ C:\windows\ODBC.INI
2013-09-14 19:11 - 2013-09-14 19:11 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Microsoft Web Folders
2013-09-14 18:42 - 2013-09-14 18:42 - 00000000 ____D C:\ProgramData\Synaptics
2013-09-14 16:32 - 2013-09-14 16:32 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-09-14 16:19 - 2013-09-14 16:19 - 00003248 _____ C:\windows\System32\Tasks\{762B3C6B-821F-4141-8F7D-5D0D568B18FA}
2013-09-14 14:52 - 2013-09-14 14:52 - 00000000 ____D C:\Users\Torben\AppData\Local\Secunia PSI
2013-09-14 14:52 - 2013-09-14 14:52 - 00000000 ____D C:\Program Files (x86)\Secunia
2013-09-14 14:51 - 2013-09-14 14:51 - 03272136 _____ (Secunia) C:\Users\Torben\Downloads\PSISetup.exe
2013-09-14 13:07 - 2013-09-14 13:07 - 00001057 _____ C:\Users\Torben\Desktop\Getting Started DiskAid5.pdf - Genvej.lnk
2013-09-14 13:07 - 2013-09-14 13:07 - 00000936 _____ C:\Users\Torben\Desktop\Folkeskolen.pdf - Genvej.lnk
2013-09-11 11:19 - 2013-09-11 11:19 - 00003006 _____ C:\windows\System32\Tasks\{75987ED9-6D80-4B29-9CFB-3DC969D8A7F0}
2013-09-11 11:19 - 2013-09-11 11:19 - 00003006 _____ C:\windows\System32\Tasks\{01E4C22E-BB6B-4F8A-887F-415719870FD2}
2013-09-11 01:21 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-09-11 01:21 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-09-11 01:21 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-09-11 01:21 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-09-11 01:21 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-09-11 01:21 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-09-11 01:21 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-09-11 01:21 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-09-11 01:21 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-11 01:20 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-09-11 01:20 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-09-11 01:20 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-09-11 01:20 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-09-11 01:20 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-09-11 01:20 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-09-11 01:20 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-09-11 01:20 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-09-11 01:20 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-09-11 01:07 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-09-11 01:07 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-09-11 01:07 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2013-09-11 01:07 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2013-09-11 01:07 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2013-09-11 01:07 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2013-09-11 01:07 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2013-09-11 01:07 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2013-09-11 01:07 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2013-09-11 01:07 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2013-09-11 01:07 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-09-11 01:07 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2013-09-11 01:07 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2013-09-11 01:07 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2013-09-11 01:07 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2013-09-11 01:07 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2013-09-11 01:07 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2013-09-11 01:07 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2013-09-11 01:07 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2013-09-11 01:07 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-11 01:07 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-11 01:02 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2013-09-11 01:02 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys
2013-09-11 01:02 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2013-09-11 01:02 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2013-09-11 01:02 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2013-09-11 01:02 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll
2013-09-10 23:52 - 2013-09-10 23:53 - 00000158 _____ C:\Users\Torben\Desktop\HP  Support Forum.url
2013-09-08 18:15 - 2013-09-08 22:11 - 00000000 ____D C:\windows\86CA3695A4124BAE92B649A60C2AC663.TMP
2013-09-08 17:30 - 2013-09-08 17:30 - 00000000 ____D C:\Program Files\ATI
2013-09-08 16:21 - 2013-09-08 16:21 - 00002968 _____ C:\windows\System32\Tasks\{D6F25FAB-CCDA-4BE9-9ECC-6024EDDA4C06}
2013-09-08 16:21 - 2013-09-08 16:21 - 00002968 _____ C:\windows\System32\Tasks\{7E8484BF-0319-4D0C-8E66-17544B4636AA}
2013-09-08 15:57 - 2013-09-08 15:57 - 00002968 _____ C:\windows\System32\Tasks\{BBCC3378-810B-4344-B08B-B608DD8011A1}
2013-09-08 15:56 - 2013-09-08 15:56 - 00002968 _____ C:\windows\System32\Tasks\{7CB91EFB-CA28-48AA-8A36-51B486134347}
2013-09-08 15:55 - 2013-09-08 15:55 - 00002968 _____ C:\windows\System32\Tasks\{DD0A6713-7764-4E21-B906-7B8BAE9448B0}
2013-09-08 15:55 - 2013-09-08 15:55 - 00002968 _____ C:\windows\System32\Tasks\{21CDD176-8B12-40CB-A152-0BBF486D5C9A}
2013-09-08 15:54 - 2013-09-08 15:54 - 00002968 _____ C:\windows\System32\Tasks\{F550F47F-61D1-4300-BF2B-736C6CC3A3F0}
2013-09-08 15:52 - 2013-09-08 15:52 - 00002968 _____ C:\windows\System32\Tasks\{9D0992BB-34AD-48CB-98B9-FA6384B2A821}
2013-09-08 15:48 - 2013-09-08 15:48 - 00792704 _____ (AMD) C:\Users\Torben\Downloads\amddriverdownloader.exe
2013-09-08 15:47 - 2013-09-08 15:47 - 00000157 _____ C:\Users\Torben\Desktop\amd autodetect.url
2013-09-08 15:04 - 2013-09-08 15:04 - 00003124 _____ C:\windows\System32\Tasks\{D1D4F0FD-D022-45FC-B77E-E4D4133C28E1}
2013-09-08 15:03 - 2013-09-08 15:03 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-09-08 15:03 - 2013-09-08 15:03 - 00000000 ____D C:\Program Files (x86)\ATI

==================== One Month Modified Files and Folders =======

2013-10-02 06:20 - 2012-07-09 15:42 - 01194828 _____ C:\windows\WindowsUpdate.log
2013-10-02 06:19 - 2013-10-02 06:19 - 00000000 ____D C:\FRST
2013-10-02 06:16 - 2013-10-02 06:16 - 01953880 _____ (Farbar) C:\Users\Torben\Desktop\FRST64.exe
2013-10-02 06:10 - 2012-07-11 15:17 - 00000932 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-02 06:09 - 2013-09-28 10:56 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-10-02 00:20 - 2009-07-14 06:45 - 00020944 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-02 00:20 - 2009-07-14 06:45 - 00020944 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-02 00:15 - 2013-06-05 00:50 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Dropbox
2013-10-02 00:15 - 2011-05-05 04:07 - 00000000 ____D C:\ProgramData\PDFC
2013-10-02 00:14 - 2013-06-05 01:24 - 00000000 ___RD C:\Users\Torben\Dropbox
2013-10-02 00:14 - 2012-07-11 15:17 - 00000928 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-02 00:10 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-10-02 00:10 - 2009-07-14 06:51 - 00159572 _____ C:\windows\setupact.log
2013-10-01 22:45 - 2012-07-10 11:33 - 00463452 _____ C:\Users\Torben\danid.log
2013-10-01 22:04 - 2013-10-01 22:04 - 00000000 ____D C:\windows\ERUNT
2013-10-01 19:17 - 2012-07-09 22:59 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2013-10-01 18:48 - 2012-07-09 18:47 - 01895442 _____ C:\windows\PFRO.log
2013-10-01 17:23 - 2012-09-08 15:40 - 00003932 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{7A517541-1EA2-48C7-9409-DBF3C876775D}
2013-10-01 07:50 - 2012-11-05 18:51 - 00000000 ____D C:\Users\Torben\AppData\Roaming\HpUpdate
2013-09-30 21:23 - 2012-07-11 03:54 - 00007633 _____ C:\Users\Torben\AppData\Local\resmon.resmoncfg
2013-09-30 19:38 - 2012-07-09 17:04 - 00000000 ____D C:\Users\Torben\AppData\Roaming\hpqLog
2013-09-30 14:59 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\NDF
2013-09-28 23:25 - 2013-09-28 23:24 - 00001044 _____ C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
2013-09-28 16:35 - 2013-09-28 16:34 - 00000241 _____ C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
2013-09-28 15:44 - 2013-09-28 15:44 - 00032240 _____ C:\Users\Torben\Desktop\dds.txt
2013-09-28 15:44 - 2013-09-28 15:44 - 00010977 _____ C:\Users\Torben\Desktop\attach.txt
2013-09-28 15:10 - 2013-09-28 15:10 - 00003250 _____ C:\windows\System32\Tasks\{206EC948-566D-4E5F-9D78-46B637E4ACCC}
2013-09-28 15:04 - 2013-09-28 15:04 - 00003190 _____ C:\windows\System32\Tasks\{E600702E-FB22-4CF7-B8C6-67117EC37859}
2013-09-28 14:59 - 2012-09-27 18:25 - 00002411 _____ C:\windows\SysWOW64\lgAxconfig.ini
2013-09-28 14:58 - 2013-09-28 14:58 - 00003138 _____ C:\windows\System32\Tasks\{EB6142DB-86AC-447A-A9FA-B8656A8A4520}
2013-09-28 14:05 - 2012-07-11 15:23 - 00000000 ____D C:\Users\Torben\AppData\Local\CrashDumps
2013-09-28 13:45 - 2012-07-09 18:26 - 00000000 ___RD C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-09-28 13:02 - 2013-09-28 13:00 - 00015274 _____ C:\Users\Torben\Documents\cc_20130928_130052.reg
2013-09-28 10:56 - 2013-09-28 10:56 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-09-28 10:56 - 2013-09-28 10:56 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-28 10:56 - 2013-09-28 10:56 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-09-28 10:55 - 2012-11-10 12:56 - 00000000 ____D C:\Users\Torben\AppData\Local\Adobe
2013-09-28 10:28 - 2012-12-06 14:06 - 00003192 _____ C:\windows\System32\Tasks\HPCeeScheduleForTorben
2013-09-28 10:28 - 2012-12-06 14:06 - 00000336 _____ C:\windows\Tasks\HPCeeScheduleForTorben.job
2013-09-28 10:27 - 2012-07-11 20:57 - 00000000 ____D C:\Users\Torben\Downloads\_MasterDownload
2013-09-26 22:37 - 2013-09-26 22:36 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406(1).exe
2013-09-26 20:59 - 2013-09-26 20:58 - 00000149 _____ C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
2013-09-25 17:33 - 2013-09-25 17:32 - 00000161 _____ C:\Users\Torben\Desktop\MS  WIN7  Community.url
2013-09-25 17:04 - 2011-05-05 03:52 - 00508892 _____ C:\windows\system32\perfh006.dat
2013-09-25 17:04 - 2011-05-05 03:52 - 00098126 _____ C:\windows\system32\perfc006.dat
2013-09-25 17:04 - 2009-07-14 07:13 - 01372536 _____ C:\windows\system32\PerfStringBackup.INI
2013-09-25 16:52 - 2013-09-25 16:52 - 00000167 _____ C:\Users\Torben\Desktop\sfc .url
2013-09-25 16:35 - 2013-03-07 01:46 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-09-25 16:35 - 2012-07-10 23:37 - 00000000 ____D C:\Program Files\CCleaner
2013-09-25 16:31 - 2013-09-25 16:31 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406.exe
2013-09-25 16:23 - 2013-09-21 13:34 - 00000000 ____D C:\ProgramData\Oracle
2013-09-25 16:21 - 2013-09-25 16:22 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-09-25 16:21 - 2013-09-25 16:22 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-09-25 16:21 - 2013-09-25 16:22 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-09-25 16:21 - 2013-09-25 16:22 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-25 16:21 - 2013-04-17 21:06 - 00000000 ____D C:\Program Files (x86)\Java
2013-09-25 16:21 - 2012-07-10 11:31 - 00868264 _____ (Oracle Corporation) C:\windows\SysWOW64\npDeployJava1.dll
2013-09-25 16:21 - 2012-07-10 11:31 - 00790440 _____ (Oracle Corporation) C:\windows\SysWOW64\deployJava1.dll
2013-09-24 19:31 - 2012-07-09 17:03 - 00000000 ____D C:\Users\Torben
2013-09-24 16:51 - 2013-09-23 17:18 - 00231467 _____ C:\Users\Torben\Desktop\Systemgendannelse.odt
2013-09-23 22:47 - 2012-10-19 19:35 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Malwarebytes
2013-09-23 22:40 - 2013-09-16 00:05 - 00000000 ____D C:\Users\Torben\AppData\Roaming\LavasoftStatistics
2013-09-23 22:05 - 2012-09-08 10:28 - 00000000 ____D C:\Users\Torben\AppData\Local\NPE
2013-09-23 18:51 - 2013-09-23 18:51 - 00000000 ____D C:\windows\System32\Tasks\Norton Internet Security
2013-09-23 18:50 - 2012-07-09 20:10 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
2013-09-23 18:50 - 2012-07-09 17:20 - 00000000 ____D C:\ProgramData\Norton
2013-09-23 18:49 - 2013-09-23 18:49 - 00177752 _____ (Symantec Corporation) C:\windows\system32\Drivers\SYMEVENT64x86.SYS
2013-09-23 18:49 - 2013-09-23 18:49 - 00008222 _____ C:\windows\system32\Drivers\SYMEVENT64x86.CAT
2013-09-23 18:49 - 2013-09-23 18:49 - 00002564 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
2013-09-23 18:49 - 2013-01-30 17:59 - 00003232 _____ C:\windows\System32\Tasks\Norton WSC Integration
2013-09-23 18:49 - 2013-01-30 17:59 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2013-09-23 18:48 - 2013-09-23 18:48 - 00000000 ____D C:\Program Files (x86)\Norton Internet Security
2013-09-23 18:46 - 2013-09-23 18:46 - 00001287 _____ C:\Users\Torben\Desktop\Norton Installation Files.lnk
2013-09-23 18:22 - 2013-09-23 18:22 - 00869456 _____ C:\Users\Torben\Downloads\Norton_Removal_Tool.exe
2013-09-23 18:13 - 2013-09-23 18:13 - 07539624 _____ (Symantec Corporation) C:\Users\Torben\Downloads\NRnR(2).exe
2013-09-23 18:13 - 2012-08-08 22:26 - 00000000 ____D C:\Users\Torben\Downloads\Norton Internet Security
2013-09-23 18:07 - 2012-07-09 18:21 - 00109296 _____ C:\Users\Torben\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-23 18:00 - 2013-06-08 17:41 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-09-23 18:00 - 2012-07-10 13:01 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-09-23 18:00 - 2009-07-27 16:36 - 00000000 ____D C:\windows\ShellNew
2013-09-23 18:00 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-09-23 17:59 - 2013-09-23 00:45 - 00000000 ____D C:\Program Files (x86)\MozBackup
2013-09-23 17:59 - 2013-04-25 21:44 - 00000000 ____D C:\SoftPaqDownloadDirectory
2013-09-23 17:59 - 2009-07-27 16:36 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-09-23 17:58 - 2009-07-14 05:20 - 00000000 ____D C:\windows\registration
2013-09-23 00:46 - 2013-09-23 00:46 - 08646407 _____ C:\Users\Torben\Documents\Firefox 24.0 (da) - 2013-09-23.pcv
2013-09-22 11:32 - 2013-09-22 11:31 - 00000161 _____ C:\Users\Torben\Desktop\Use and manage plugins.url
2013-09-21 11:24 - 2013-09-21 11:23 - 00000223 _____ C:\Users\Torben\Desktop\HP diagnose.url
2013-09-19 19:30 - 2013-09-15 22:25 - 00014456 _____ (GFI Software) C:\windows\system32\Drivers\gfibto.sys
2013-09-19 16:37 - 2013-09-19 16:37 - 00011820 _____ C:\Users\Torben\Documents\Norton Identity Safe.CSV
2013-09-19 16:36 - 2013-09-19 16:36 - 00077824 _____ C:\Users\Torben\Documents\Norton Identity Safe.DAT
2013-09-19 16:08 - 2013-09-15 11:51 - 00000000 ____D C:\AdwCleaner
2013-09-19 15:59 - 2013-09-19 15:59 - 00019968 ___SH C:\Users\Torben\AppData\Roaming\Thumbs.db
2013-09-19 15:32 - 2009-07-14 07:08 - 00032550 _____ C:\windows\Tasks\SCHEDLGU.TXT
2013-09-18 22:39 - 2012-07-10 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-18 17:38 - 2012-07-10 10:41 - 00000000 ____D C:\Users\Torben\AppData\Local\Mozilla
2013-09-18 17:37 - 2013-09-18 17:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 17:24 - 2013-09-18 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-09-18 14:43 - 2013-09-18 14:43 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-18 14:43 - 2013-09-18 14:43 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-09-17 22:38 - 2013-09-17 22:38 - 00003552 _____ C:\windows\System32\Tasks\{02B34B83-8AC8-4D27-B035-5F54280EE7A7}
2013-09-17 16:13 - 2013-09-17 16:12 - 00262270 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-09-17 12:42 - 2013-09-23 21:41 - 07254144 _____ C:\windows\ntbtlog.txt.bak
2013-09-17 00:49 - 2013-01-25 01:34 - 00000000 ____D C:\plugins
2013-09-17 00:32 - 2013-09-17 00:32 - 00001188 ____N C:\windows\SysWOW64\ServiceConfig.xml
2013-09-17 00:32 - 2013-09-17 00:32 - 00000334 _____ C:\windows\SysWOW64\CountScans.XML
2013-09-16 23:49 - 2013-09-16 23:47 - 00401372 _____ C:\windows\msxml4-KB2721691-enu.LOG
2013-09-16 23:48 - 2012-09-27 16:31 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-09-16 23:46 - 2012-07-13 02:12 - 00000000 ____D C:\Users\Torben\Downloads\Microsoft  download
2013-09-16 00:08 - 2013-09-16 00:05 - 00000000 ____D C:\ProgramData\Ad-Aware Antivirus
2013-09-16 00:05 - 2013-09-16 00:05 - 00004326 _____ C:\windows\System32\Tasks\Ad-Aware Antivirus Scheduled Scan
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\ProgramData\Lavasoft
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\ProgramData\Downloaded Installations
2013-09-15 23:59 - 2013-09-15 23:59 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2013-09-14 21:39 - 2013-09-14 19:12 - 00000013 _____ C:\windows\vbaddin.ini
2013-09-14 21:39 - 2012-07-10 13:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-09-14 19:17 - 2009-07-14 06:45 - 00417776 _____ C:\windows\system32\FNTCACHE.DAT
2013-09-14 19:13 - 2013-09-14 19:13 - 00000000 ____D C:\Users\Torben\Documents\Mine Web-steder
2013-09-14 19:12 - 2013-09-14 19:12 - 00000376 _____ C:\windows\ODBC.INI
2013-09-14 19:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\Help
2013-09-14 19:11 - 2013-09-14 19:11 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Microsoft Web Folders
2013-09-14 19:10 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system
2013-09-14 18:42 - 2013-09-14 18:42 - 00000000 ____D C:\ProgramData\Synaptics
2013-09-14 18:35 - 2011-05-05 04:03 - 00108042 _____ C:\windows\DPINST.LOG
2013-09-14 18:34 - 2012-07-10 00:47 - 00001358 _____ C:\windows\Synaptics.log
2013-09-14 18:02 - 2009-07-14 04:34 - 00000596 _____ C:\windows\win.ini
2013-09-14 17:12 - 2012-07-09 17:19 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Skype
2013-09-14 16:33 - 2012-07-09 17:19 - 00000000 ____D C:\ProgramData\Skype
2013-09-14 16:32 - 2013-09-14 16:32 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-09-14 16:19 - 2013-09-14 16:19 - 00003248 _____ C:\windows\System32\Tasks\{762B3C6B-821F-4141-8F7D-5D0D568B18FA}
2013-09-14 14:52 - 2013-09-14 14:52 - 00000000 ____D C:\Users\Torben\AppData\Local\Secunia PSI
2013-09-14 14:52 - 2013-09-14 14:52 - 00000000 ____D C:\Program Files (x86)\Secunia
2013-09-14 14:51 - 2013-09-14 14:51 - 03272136 _____ (Secunia) C:\Users\Torben\Downloads\PSISetup.exe
2013-09-14 13:07 - 2013-09-14 13:07 - 00001057 _____ C:\Users\Torben\Desktop\Getting Started DiskAid5.pdf - Genvej.lnk
2013-09-14 13:07 - 2013-09-14 13:07 - 00000936 _____ C:\Users\Torben\Desktop\Folkeskolen.pdf - Genvej.lnk
2013-09-11 15:25 - 2011-05-05 03:34 - 01354692 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2013-09-11 11:19 - 2013-09-11 11:19 - 00003006 _____ C:\windows\System32\Tasks\{75987ED9-6D80-4B29-9CFB-3DC969D8A7F0}
2013-09-11 11:19 - 2013-09-11 11:19 - 00003006 _____ C:\windows\System32\Tasks\{01E4C22E-BB6B-4F8A-887F-415719870FD2}
2013-09-11 01:30 - 2012-07-09 18:26 - 00000000 ___RD C:\Users\Torben\Virtual Machines
2013-09-11 01:30 - 2012-07-09 18:26 - 00000000 ___RD C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-09-11 01:20 - 2013-07-15 20:15 - 00000000 ____D C:\windows\system32\MRT
2013-09-11 01:17 - 2012-07-10 09:36 - 79143768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-09-11 00:41 - 2013-02-25 16:52 - 00000000 ____D C:\windows\pss
2013-09-10 23:53 - 2013-09-10 23:52 - 00000158 _____ C:\Users\Torben\Desktop\HP  Support Forum.url
2013-09-10 15:09 - 2012-07-10 11:33 - 01081729 _____ C:\Users\Torben\danid.log.1
2013-09-10 13:56 - 2013-06-11 15:16 - 00000000 ____D C:\ProgramData\SecTaskMan
2013-09-08 22:11 - 2013-09-08 18:15 - 00000000 ____D C:\windows\86CA3695A4124BAE92B649A60C2AC663.TMP
2013-09-08 17:59 - 2012-07-11 15:17 - 00000000 ____D C:\Users\Torben\AppData\Local\Google
2013-09-08 17:30 - 2013-09-08 17:30 - 00000000 ____D C:\Program Files\ATI
2013-09-08 16:49 - 2012-10-02 22:11 - 00000000 ____D C:\Program Files (x86)\LG Electronics
2013-09-08 16:42 - 2013-06-28 11:32 - 00002435 _____ C:\Users\Torben\Desktop\Advanced Uninstaller PRO 11.lnk
2013-09-08 16:21 - 2013-09-08 16:21 - 00002968 _____ C:\windows\System32\Tasks\{D6F25FAB-CCDA-4BE9-9ECC-6024EDDA4C06}
2013-09-08 16:21 - 2013-09-08 16:21 - 00002968 _____ C:\windows\System32\Tasks\{7E8484BF-0319-4D0C-8E66-17544B4636AA}
2013-09-08 15:57 - 2013-09-08 15:57 - 00002968 _____ C:\windows\System32\Tasks\{BBCC3378-810B-4344-B08B-B608DD8011A1}
2013-09-08 15:56 - 2013-09-08 15:56 - 00002968 _____ C:\windows\System32\Tasks\{7CB91EFB-CA28-48AA-8A36-51B486134347}
2013-09-08 15:55 - 2013-09-08 15:55 - 00002968 _____ C:\windows\System32\Tasks\{DD0A6713-7764-4E21-B906-7B8BAE9448B0}
2013-09-08 15:55 - 2013-09-08 15:55 - 00002968 _____ C:\windows\System32\Tasks\{21CDD176-8B12-40CB-A152-0BBF486D5C9A}
2013-09-08 15:54 - 2013-09-08 15:54 - 00002968 _____ C:\windows\System32\Tasks\{F550F47F-61D1-4300-BF2B-736C6CC3A3F0}
2013-09-08 15:52 - 2013-09-08 15:52 - 00002968 _____ C:\windows\System32\Tasks\{9D0992BB-34AD-48CB-98B9-FA6384B2A821}
2013-09-08 15:48 - 2013-09-08 15:48 - 00792704 _____ (AMD) C:\Users\Torben\Downloads\amddriverdownloader.exe
2013-09-08 15:47 - 2013-09-08 15:47 - 00000157 _____ C:\Users\Torben\Desktop\amd autodetect.url
2013-09-08 15:33 - 2011-02-02 22:42 - 00000000 ____D C:\swsetup
2013-09-08 15:04 - 2013-09-08 15:04 - 00003124 _____ C:\windows\System32\Tasks\{D1D4F0FD-D022-45FC-B77E-E4D4133C28E1}
2013-09-08 15:03 - 2013-09-08 15:03 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-09-08 15:03 - 2013-09-08 15:03 - 00000000 ____D C:\Program Files (x86)\ATI
2013-09-08 13:07 - 2012-07-17 23:09 - 00000000 ____D C:\Users\Torben\AppData\Roaming\ArcSoft
2013-09-08 13:07 - 2012-07-09 17:12 - 00000000 ____D C:\Program Files (x86)\ArcSoft
2013-09-08 11:40 - 2012-07-09 17:27 - 00000000 ____D C:\Users\Torben\AppData\Local\Hewlett-Packard
2013-09-07 12:39 - 2011-05-05 03:28 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2013-09-04 23:29 - 2012-11-21 09:12 - 00003220 _____ C:\windows\System32\Tasks\HPCeeScheduleForTORBEN-HP$
2013-09-04 23:29 - 2012-11-21 09:12 - 00000344 _____ C:\windows\Tasks\HPCeeScheduleForTORBEN-HP$.job
2013-09-04 11:54 - 2013-01-30 17:57 - 00000000 ____D C:\windows\system32\Drivers\NISx64
2013-09-04 11:28 - 2012-07-09 20:10 - 00000000 ____D C:\Users\Public\Downloads\Norton

Files to move or delete:
====================
C:\Users\Torben\AppData\Roaming\CamLayout.ini
C:\Users\Torben\AppData\Roaming\CamShapes.ini
C:\Users\Torben\temp.dat


Some content of TEMP:
====================
C:\Users\Torben\AppData\Local\Temp\6854E2BB.dll
C:\Users\Torben\AppData\Local\Temp\6A43B358.dll
C:\Users\Torben\AppData\Local\Temp\6A453FFB.dll
C:\Users\Torben\AppData\Local\Temp\6A466C79.dll
C:\Users\Torben\AppData\Local\Temp\6A472309.dll
C:\Users\Torben\AppData\Local\Temp\6A476E9D.dll
C:\Users\Torben\AppData\Local\Temp\6A4FB9D3.dll
C:\Users\Torben\AppData\Local\Temp\6A525211.dll
C:\Users\Torben\AppData\Local\Temp\6ADB0D00.dll
C:\Users\Torben\AppData\Local\Temp\6F00D98D.dll
C:\Users\Torben\AppData\Local\Temp\6F024B5B.dll
C:\Users\Torben\AppData\Local\Temp\6F045B86.dll
C:\Users\Torben\AppData\Local\Temp\6F2D66E6.dll
C:\Users\Torben\AppData\Local\Temp\74F34001.dll
C:\Users\Torben\AppData\Local\Temp\75C516D9.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-01 21:46

==================== End Of Log ============================






ADDITION.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-09-2013 02
Ran by Torben at 2013-10-02 06:21:00
Running from C:\Users\Torben\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ====
Avatar billede mathilda Nybegynder
02. oktober 2013 - 06:34 #35
ADDITION.txt

Det ser ikke ud som om loggen kom helt med i forrige kommentr, så her er den igen:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-09-2013 02
Ran by Torben at 2013-10-02 06:21:00
Running from C:\Users\Torben\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Norton Internet Security (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: Norton Internet Security (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

==================== Installed Programs ======================

7-Zip 9.22 (x64 edition) (Version: 9.22.00.0)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168)
Adobe Reader XI (11.0.04) - Dansk (x32 Version: 11.0.04)
Advanced Uninstaller PRO - Version 11 (x32 Version: 11)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95)
AMD APP SDK Runtime (Version: 2.5.793.1)
AMD Catalyst Install Manager (Version: 3.0.851.0)
A-PDF To Excel (x32)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
Apple-programunderstøttelse (x32 Version: 2.3.4)
Awesome Duplicate Photo Finder v. 1.1 (x32)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95)
Bing Bar (x32 Version: 7.2.241.0)
Bing Rewards Client Installer (x32 Version: 16.0.345.0)
Blasterball 3 (x32 Version: 2.2.0.95)
Bonjour (Version: 3.0.0.10)
Bounce Symphony (x32 Version: 2.2.0.95)
Build-a-Lot - The Elizabethan Era (x32 Version: 2.2.0.95)
Bullzip PDF Printer 9.3.0.1516 (Version: 9.3.0.1516)
Cake Mania (x32 Version: 2.2.0.95)
CCleaner (Version: 4.06)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Cisco EAP-FAST Module (x32 Version: 2.2.14)
Cisco LEAP Module (x32 Version: 1.0.19)
Cisco PEAP Module (x32 Version: 1.1.6)
ConvertHelper 2.2 (x32)
D3DX10 (x32 Version: 15.4.2368.0902)
Debut Video Capture Software (x32)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
Device Access Manager for HP ProtectTools (Version: 6.1.0.1)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95)
DiskAid 5.42 (x32 Version: 5.42)
Drive Encryption For HP ProtectTools (Version: 6.0.100.35469)
Dropbox (HKCU Version: 2.0.26)
EaseUS MobiSaver Free 2.0 (x32)
EaseUS Todo Backup Free 5.5 (x32 Version: 5.5)
Energy Star Digital Logo (x32 Version: 1.0.1)
Evernote v. 4.6 (x32 Version: 4.6.0.7670)
Express Burn (x32)
Face Recognition for HP ProtectTools (Version: 6.00.4407)
Farm Frenzy (x32 Version: 2.2.0.95)
Fast Duplicate File Finder 3.5.0.1 (x32 Version: 3.5.0.1)
FATE (x32 Version: 2.2.0.95)
File Sanitizer For HP ProtectTools (x32 Version: 6.0.0.8)
Folder Size 2.9.0.0 (x32 Version: 2.9.0.0)
Fotogalleri (x32 Version: 16.4.3505.0912)
Fotogalleriet (x32 Version: 16.4.3505.0912)
FreeFileSync 5.12 (x32 Version: 5.12)
Google Earth Plug-in (x32 Version: 7.1.1.1888)
Greenshot 1.0.6.2228 (Version: 1.0.6.2228)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HP 3D DriveGuard (Version: 4.2.9.1)
HP Auto (Version: 1.0.12494.3472)
HP Connection Manager (x32 Version: 4.4.10.1)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP DayStarter (Version: 2.0.0.12)
HP Deskjet 3050 J610 series grundlæggende enhedssoftware (Version: 22.0.334.0)
HP Deskjet 3050 J610 series Hjælp (x32 Version: 140.0.63.63)
HP Documentation (x32 Version: 1.2.0.0)
HP ESU for Microsoft Windows 7 (x32 Version: 2.0.8.1)
HP Game Console (x32)
HP Games (x32 Version: 1.0.1.5)
HP HD Webcam Driver (x32 Version: 6.0.1112.2_WHQL)
HP Hotkey Support (x32 Version: 4.6.4.1)
HP Install Network Printer Wizard (x32 Version: 8.1.01)
HP Internet Sharing Manager (x32 Version: 1.0.0.10)
HP Power Assistant (Version: 2.1.0.6)
HP Product Detection (x32 Version: 11.14.0006)
HP ProtectTools Security Manager (Version: 6.08.1017)
HP QuickWeb (x32 Version: 3.1.2.10229)
HP Setup (x32 Version: 8.5.4526.3645)
HP SoftPaq Download Manager (x32 Version: 3.4.12.0)
HP Software Framework (x32 Version: 4.6.10.1)
HP Software Setup (x32 Version: 8.2.1.1)
HP Support Assistant (x32 Version: 7.0.39.15)
HP System Default Settings (x32 Version: 2.4.3.1)
HP Update (x32 Version: 5.003.001.001)
HP Wallpaper (x32 Version: 2.00)
HPDiagnosticAlert (x32 Version: 1.00.0000)
HPISDataManager (x32 Version: 1.0.0.27)
iCloud (Version: 2.1.2.8)
IDT Audio (x32 Version: 1.0.6428.0)
Insaniquarium Deluxe (x32 Version: 2.2.0.95)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Identity Protection Technology 1.1.2.0 (x32 Version: 1.1.2.0)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2559)
Intel(R) Rapid Storage Technology (x32 Version: 10.1.2.1004)
IrfanView (remove only) (x32 Version: 4.36)
iTunes (Version: 11.0.5.5)
Java 7 Update 40 (x32 Version: 7.0.400)
Java Auto Updater (x32 Version: 2.1.9.8)
Jewel Quest II (x32 Version: 2.2.0.95)
Jewel Quest Solitaire (x32 Version: 2.2.0.95)
JMicron Flash Media Controller Driver (x32 Version: 1.0.72.4)
John Deere Drive Green (x32 Version: 2.2.0.95)
Junk Mail filter update (x32 Version: 16.4.3505.0912)
LightScribe System Software (x32 Version: 1.18.22.2)
LSI HDA Modem (Version: 2.2.100)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office Access MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Excel MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Groove MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Professionel Plus 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (Swedish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proofing (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Shared 64-bit MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Word MUI (Danish) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft_VC90_CRT_x86 (x32 Version: 1.0.0)
MixPad (x32)
Movie Maker (x32 Version: 16.4.3505.0912)
Mozilla Firefox 24.0 (x86 da) (x32 Version: 24.0)
Mozilla Maintenance Service (x32 Version: 24.0)
Mozilla Thunderbird 24.0 (x86 da) (x32 Version: 24.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0)
MSXML 4.0 SP3 Parser (KB2721691) (x32 Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0)
Norton Identity Safe (x32 Version: 2013.4.0.10)
Norton Internet Security (x32 Version: 21.0.1.3)
Norton Management (x32 Version: 3.2.2.12)
PDF Complete Special Edition (x32 Version: 4.0.64)
Penguins! (x32 Version: 2.2.0.95)
Photo Common (x32 Version: 16.4.3505.0912)
Photo Gallery (x32 Version: 16.4.3505.0912)
Picasa 3 (x32 Version: 3.9)
Pixillion Image Converter (x32 Version: 2.59)
Plants vs. Zombies (x32 Version: 2.2.0.95)
Polar Bowler (x32 Version: 2.2.0.95)
Prism Video File Converter (x32)
Privacy Manager for HP ProtectTools (Version: 6.00.831)
Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.206)
Qualcomm Atheros Driver Installation Program (x32 Version: 10.0)
QuickShare (x32 Version: 1.6.1.697)
QuickTime (x32 Version: 7.74.80.86)
Rdio (HKCU Version: 1.12.0.0)
Realtek Ethernet Controller All-In-One Windows Driver (x32 Version: 7.58.411.2012)
RecordPad Sound Recorder (x32 Version: 4.29)
Screencast-O-Matic (HKCU)
SDK (x32 Version: 2.26.012)
Secunia PSI (3.0.0.7011) (x32 Version: 3.0.0.7011)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32)
Skolekom 11.033 (x32 Version: 11.033)
Skype™ 6.7 (x32 Version: 6.7.102)
Slingo Deluxe (x32 Version: 2.2.0.95)
SoundTap Streaming Audio Recorder (x32)
Spybot - Search & Destroy (x32 Version: 2.1.19)
Switch Sound File Converter (x32)
Synaptics Pointing Device Driver (Version: 16.3.9.0)
Theft Recovery for HP ProtectTools (x32 Version: 6.0.37.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553157) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589370) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760758) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32)
Validity Fingerprint Sensor Driver (Version: 4.4.228.0)
Valokuvavalikoima (x32 Version: 16.4.3505.0912)
VideoPad Video Editor (x32)
VIP Access SDK (1.0.1.5)  (x32 Version: 1.0.1.5)
Virtual Villagers - The Secret City (x32 Version: 2.2.0.95)
WavePad Sound Editor (x32)
Wedding Dash (x32 Version: 2.2.0.95)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 16.4.3505.0912)
Windows Live Family Safety (Version: 16.4.3505.0912)
Windows Live Family Safety (x32 Version: 16.4.3505.0912)
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3505.0912)
Windows Live Mail (x32 Version: 16.4.3505.0912)
Windows Live Messenger (x32 Version: 16.4.3505.0912)
Windows Live MIME IFilter (Version: 16.4.3505.0912)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 16.4.3505.0912)
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912)
Windows Live SOXE (x32 Version: 16.4.3505.0912)
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912)
Windows Live UX Platform (x32 Version: 16.4.3505.0912)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912)
Windows Live Writer (x32 Version: 16.4.3505.0912)
Windows Live Writer Resources (x32 Version: 16.4.3505.0912)
Windows Liven peruspaketti (x32 Version: 16.4.3505.0912)
Windows Liven sähköposti (x32 Version: 16.4.3505.0912)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8)
WinZip 14.5 (x32 Version: 14.5.9095)
Wuala (HKCU Version: 1.0.411.0)
Wuala CBFS (x32 Version: 3.2.107.0)
Wuala OverlayIcons (x32 Version: 1.0.0.2)
Xobni Core (x32 Version: 1.0.0)
XY Chart Labeler 7.1 (x32)
Zuma Deluxe (x32 Version: 2.2.0.95)
&#1490;&#1500;&#1512;&#1497;&#1497;&#1514; &#1492;&#1514;&#1502;&#1493;&#1504;&#1493;&#1514; (x32 Version: 16.4.3505.0912)

==================== Restore Points  =========================

21-09-2013 09:25:22 HPSF Restore Point
21-09-2013 09:26:26 HPSF Restore Point
21-09-2013 11:30:37 Installed Java 7 Update 40 (64-bit)
21-09-2013 11:32:20 Installed Java 7 Update 40
21-09-2013 14:24:48 Configured Microsoft Office Professionel Plus 2010
22-09-2013 10:16:15 Removed Java 7 Update 40 (64-bit)
22-09-2013 12:05:20 Norton_Power_Eraser_20130922140517683
22-09-2013 21:39:44 Removed Microsoft SQL Server 2005 Compact Edition [ENU]
23-09-2013 15:50:51 Gendan handling
23-09-2013 19:31:54 Norton_Power_Eraser_20130923213151102
23-09-2013 20:39:16 Removed Ad-Aware Antivirus.
23-09-2013 20:58:26 Windows Update
24-09-2013 15:03:24 Removed Java 7 Update 25
25-09-2013 14:21:22 Installed Java 7 Update 40
27-09-2013 08:11:45 Windows Update

==================== Hosts content: ==========================

2009-07-14 04:34 - 2013-09-15 12:16 - 00556236 ____N C:\windows\system32\Drivers\etc\hosts
127.0.0.1 08sr.combineads.info # hosts anti-adware / pups
127.0.0.1 08srvr.combineads.info # hosts anti-adware / pups
127.0.0.1 12srvr.combineads.info # hosts anti-adware / pups
127.0.0.1 2010-fr.com # hosts anti-adware / pups
127.0.0.1 2012-new.biz # hosts anti-adware / pups
127.0.0.1 2319825.ourtoolbar.com # hosts anti-adware / pups
127.0.0.1 24h00business.com # hosts anti-adware / pups
127.0.0.1 a.daasafterdusk.com # hosts anti-adware / pups
127.0.0.1 ad.adn360.com # hosts anti-adware / pups
127.0.0.1 adeartss.eu # hosts anti-adware / pups
127.0.0.1 adesoeasy.eu # hosts anti-adware / pups
127.0.0.1 adf.girldatesforfree.net # hosts anti-adware / pups
127.0.0.1 adm.soft365.com # hosts anti-adware / pups
127.0.0.1 adomicileavail.googlepages.com # hosts anti-adware / pups
127.0.0.1 ads7.complexadveising.com # hosts anti-adware / pups
127.0.0.1 ads.aff.co # hosts anti-adware / pups
127.0.0.1 ads.alpha00001.com # hosts anti-adware / pups
127.0.0.1 ads.cloud4ads.com # hosts anti-adware / pups
127.0.0.1 ads.eorezo.com # hosts anti-adware / pups
127.0.0.1 ads.hooqy.com # hosts anti-adware / pups
127.0.0.1 ads.icksor.com # hosts anti-adware / pups
127.0.0.1 ads.regiedepub.com # hosts anti-adware / pups
127.0.0.1 ads.sucomspot.com # hosts anti-adware / pups
127.0.0.1 ads.tersecta.com # hosts anti-adware / pups
127.0.0.1 a.dungtank.com # hosts anti-adware / pups
127.0.0.1 adwcleaner.programmesetjeux.com # hosts anti-adware / pups
127.0.0.1 adwcleaner.telecharger.toggle.com # hosts anti-adware / pups
127.0.0.1 aff.foxtab.com # hosts anti-adware / pups
127.0.0.1 affilibot.eu # hosts anti-adware / pups

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

Task: {09A0210F-10D1-467E-B5F6-0D0F51047471} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {0EF2BD90-DD7C-4FEA-8185-BCC3EADBFE64} - System32\Tasks\{7E8484BF-0319-4D0C-8E66-17544B4636AA} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {0F16364A-66DA-49C0-9B08-3B575BF85956} - System32\Tasks\{9D0992BB-34AD-48CB-98B9-FA6384B2A821} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {15E5B5CD-6E42-4BAE-934E-F44A3C015B08} - System32\Tasks\{829EB16B-18BA-4A97-A43B-C29AB093CB20} => C:\Users\Torben\Downloads\_MasterDownload\LG\LG  Mobile Support Tool\B2CAppSetup.exe [2012-10-02] (LG Electronics)
Task: {182CB7F2-530D-4561-BDB8-12F40437E15C} - System32\Tasks\{7CB91EFB-CA28-48AA-8A36-51B486134347} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {2764C154-58DF-4B42-8C52-B7442896F0FF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-11] (Google Inc.)
Task: {2B2FCD72-6C1A-46D8-8D7C-4BCEEA209AFE} - \BrowserDefendert No Task File
Task: {2D9C9C1B-48A7-44E2-A829-3F881A2FAE31} - System32\Tasks\{BBCC3378-810B-4344-B08B-B608DD8011A1} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {309BD920-90AF-4BF5-947A-AD7A65D11531} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation)
Task: {37334167-7314-4F82-9CFF-86E5E9936AF4} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: {39DD174E-04F2-49BE-84D4-C99CD0749F76} - System32\Tasks\{98CABC24-98AC-4088-B41A-8B53E41B61B8} => C:\Users\Torben\Downloads\_MasterDownload\LG\LG  Mobile Support Tool\B2CAppSetup.exe [2012-10-02] (LG Electronics)
Task: {47B0B993-04E2-4AD6-8629-F42F49C20115} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-28] (Adobe Systems Incorporated)
Task: {49454002-5391-4341-808D-065E4EA309D0} - System32\Tasks\{2E050F27-22CE-49C8-BD20-32767FB767C7} => C:\ProgramData\HP\HP SoftPaq Download Manager\SWDownload\sp56849.exe [2013-06-16] (Hewlett-Packard                                            )
Task: {4AAFBFE9-3299-44F2-ACC0-760C35BB09B9} - System32\Tasks\{21CDD176-8B12-40CB-A152-0BBF486D5C9A} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {53061DB2-C42C-4061-A8E7-197835FDB2B0} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2012-07-10] (Microsoft Corporation)
Task: {5FE6F684-2A34-411A-9C9F-3919C68F783C} - \Scheduled Update for Ask Toolbar No Task File
Task: {60264E93-FDE5-40EC-97A6-19CBD3529196} - System32\Tasks\HPCeeScheduleForTorben => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {667DAFC4-7EF0-4ABC-9A72-68F31F34354B} - \DealPlyLiveUpdateTaskMachineUA No Task File
Task: {79702D57-983E-4C8D-BF9E-94AEFDDD7E5A} - System32\Tasks\{6DD7A331-FCEC-44F2-8A1C-1E093B868B3F} => C:\ProgramData\LGMOBILEAX\LGMLauncher.exe
Task: {7A5F313A-7493-459B-91FB-797C560029AF} - System32\Tasks\{DD0A6713-7764-4E21-B906-7B8BAE9448B0} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {7A5FDD89-098E-4D97-84F3-640CC3010D4A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-04-01] (Hewlett-Packard Company)
Task: {7F269388-690C-4DE5-87AD-B6910473CD01} - System32\Tasks\{01E4C22E-BB6B-4F8A-887F-415719870FD2} => C:\ProgramData\HP\HP SoftPaq Download Manager\SWDownload\sp56849.exe [2013-06-16] (Hewlett-Packard                                            )
Task: {7FECE4BB-F3DA-4CF2-AA83-83AC003EEF8A} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe
Task: {8D603419-2C17-4E7B-AC6F-649A2B4C8F85} - System32\Tasks\{D6F25FAB-CCDA-4BE9-9ECC-6024EDDA4C06} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {8E64B976-BC13-4BC2-9368-179031D4078A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)
Task: {95DEF06B-4DA5-42E7-8284-CC6A36F0B528} - System32\Tasks\{75987ED9-6D80-4B29-9CFB-3DC969D8A7F0} => C:\ProgramData\HP\HP SoftPaq Download Manager\SWDownload\sp56849.exe [2013-06-16] (Hewlett-Packard                                            )
Task: {9AE0F61B-35B8-4D6C-8BC0-E2583E2B4E9E} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {A4C52B77-718F-435F-BFAE-0589D77844FB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {A70A1BE3-250D-47A1-85D2-414A3EEA1143} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {ACC7FBBF-999D-4ACC-8FDA-021470CCFB36} - System32\Tasks\{F550F47F-61D1-4300-BF2B-736C6CC3A3F0} => C:\Users\Torben\Downloads\amddriverdownloader.exe [2013-09-08] (AMD)
Task: {B3436B67-120C-4894-9531-25DA61776861} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {BAEF782B-C1B7-4CD5-A71E-395C8C789D87} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-11] (Google Inc.)
Task: {BCBE3494-0101-476B-8958-B8D4F04F9211} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis Install => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {D3428CF7-7D2D-4734-A0E0-E84EC487155B} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\WSCStub.exe [2013-08-31] (Symantec Corporation)
Task: {D71B0095-CF97-4167-832C-0F7AB8C0C726} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E18DA8E6-5DD3-4201-9FA1-93F1F13E9470} - \EPUpdater No Task File
Task: {E6AA2600-8944-4BC9-A0C0-E0B4D18A1BE3} - System32\Tasks\Norton Management\Norton Error Processor => C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\SymErr.exe [2012-10-18] (Symantec Corporation)
Task: {EBC23647-3613-4013-9BF7-7893B2F4E44A} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {EC192101-1694-41A5-9415-1CB109B0E2C8} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\SymErr.exe [2013-05-30] (Symantec Corporation)
Task: {EF0A6C40-FC45-4231-BA0B-24ADC2134DBA} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\SymErr.exe [2013-05-30] (Symantec Corporation)
Task: {F0928782-CE6D-4BD3-8096-57BE1D01AA40} - System32\Tasks\Norton Management\Norton Error Analyzer => C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\SymErr.exe [2012-10-18] (Symantec Corporation)
Task: {F2488AA2-7417-4F7D-A1EF-E8EF75F9723A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {F3671789-E275-4063-B765-2CAAA0BA6611} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\SymErr.exe [2013-08-01] (Symantec Corporation)
Task: {F4607E3A-C5D9-4E7C-9331-7BA9D4E03015} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2013-04-05] (Apple Inc.)
Task: {F6DF57DF-DFD0-40E4-B25A-655F3A424F3F} - System32\Tasks\HPCeeScheduleForTORBEN-HP$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {FA689414-20D1-48FC-838C-5313FB07721C} - System32\Tasks\User_Feed_Synchronization-{7A517541-1EA2-48C7-9409-DBF3C876775D} => C:\windows\system32\msfeedssync.exe [2013-03-14] (Microsoft Corporation)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForTORBEN-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForTorben.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) =============

2013-04-04 01:09 - 2013-04-04 01:09 - 04300432 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2013-04-05 12:58 - 2013-04-05 12:58 - 00954696 _____ () C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll
2011-03-26 05:28 - 2011-03-26 05:28 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-07-10 12:26 - 2011-06-11 12:42 - 01083392 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\System.Data.SQLite.dll
2011-04-27 18:05 - 2011-04-27 18:05 - 00514570 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\sqlite3.dll
2013-02-01 10:14 - 2013-02-01 10:14 - 02830336 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcEncryptionProviderPlugin.dll
2013-02-01 09:38 - 2013-02-01 09:38 - 00126976 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHostInterface.dll
2013-02-01 10:17 - 2013-02-01 10:17 - 02863104 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpeHpDpHostPlugin.dll
2013-02-01 10:15 - 2013-02-01 10:15 - 00053248 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpeOpalATASec4SATA.dll
2013-02-01 09:42 - 2013-02-01 09:42 - 02035712 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeCoreEncryptionPlugin.dll
2013-02-01 09:43 - 2013-02-01 09:43 - 01945600 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeProductDetectionPlugin.dll
2013-02-01 10:12 - 2013-02-01 10:12 - 03092480 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpeOpalEncryptionProviderPlugin.dll
2013-08-14 11:38 - 2013-08-14 11:38 - 00169472 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\9ab0e818cb3d1b6930eba54179f89300\IsdiInterop.ni.dll
2012-07-09 17:08 - 2011-01-13 03:56 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2013-06-18 15:13 - 2012-05-30 16:51 - 00699280 ____R () C:\PROGRAM FILES (X86)\NORTON IDENTITY SAFE\ENGINE\2013.4.0.10\wincfi39.dll
2010-09-06 14:18 - 2010-09-06 14:18 - 01412608 _____ () C:\windows\system32\LIBEAY32.dll
2013-03-13 22:48 - 2013-03-13 22:48 - 24978944 _____ () C:\Users\Torben\AppData\Roaming\Dropbox\bin\libcef.dll
2012-08-27 22:33 - 2012-08-27 22:33 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-08-27 22:33 - 2012-08-27 22:33 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\TEMP:A4A25FD3

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\65194793.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\65194793.sys => ""="Driver"

==================== Faulty Device Manager Devices =============

Name: OfficeJet G55
Description: OfficeJet G55
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/02/2013 01:40:21 AM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xfe8
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3


System errors:
=============
Error: (10/02/2013 06:10:35 AM) (Source: Service Control Manager) (User: )
Description: Tjenestekontrolstyring prøvede at foretage en korrigerende handling (Genstart tjenesten) efter den uventede afbrydelse af tjenesten HP Software Framework Service, men denne handling mislykkedes med følgende fejl:
%%1056

Error: (10/02/2013 06:09:53 AM) (Source: BTHUSB) (User: )
Description: Der opstod en ukendt fejl i den lokale Bluetooth-adapter og den vil derfor ikke blive brugt. Driveren vil ikke blive indlæst.

Error: (10/02/2013 06:09:37 AM) (Source: Service Control Manager) (User: )
Description: Der opstod en timeout (30000 millisekunder), mens der ventedes på et transaktionssvar fra tjenesten IPBusEnum.

Error: (10/02/2013 01:40:28 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Software Framework Service blev afbrudt uventet. Dette er sket 1 gange. Følgende korrigerende handling foretages om 60000 millisekunder: Genstart tjenesten.

Error: (10/02/2013 00:13:48 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: programspecifikkeLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)

Error: (10/02/2013 00:13:11 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Connection Manager 4 Service hang ved start.

Error: (10/02/2013 00:11:50 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten Spybot-S&D 2 Updating Service kunne ikke starte pga. følgende fejl:
%%1053

Error: (10/02/2013 00:11:50 AM) (Source: Service Control Manager) (User: )
Description: Der opstod timeout (30000 millisekunder), mens systemet ventede på, at der blev oprettet forbindelse til tjenesten Spybot-S&D 2 Updating Service.

Error: (10/02/2013 00:11:18 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Network Devices Support blev afbrudt med følgende fejl:
%%126

Error: (10/02/2013 00:11:18 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Software Framework Service kunne ikke starte pga. følgende fejl:
%%1053


Microsoft Office Sessions:
=========================
Error: (10/02/2013 01:40:21 AM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6fe801cebef37aca7dc8C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exed5cff8f1-2af2-11e3-9d68-101f74f78257


==================== Memory info ===========================

Percentage of memory in use: 68%
Total physical RAM: 4030.37 MB
Available physical RAM: 1286.67 MB
Total Pagefile: 8058.92 MB
Available Pagefile: 5151.67 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:274.43 GB) (Free:73.61 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:18.37 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:4.99 GB) (Free:2.1 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 042EBD29)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=274 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=18 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=0C)

==================== End Of Log ============================
Avatar billede f-arn Guru
02. oktober 2013 - 21:44 #36
Deaktiver dine Sikkerheds programmer, mens "Fixet" kører.

Åben Notesblok, kopier det fremhævede  med fed ind, og gem filen som Fixlist på Skrivebordet ved siden af Farbar Recovery Scan Tool.


SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Task: {09A0210F-10D1-467E-B5F6-0D0F51047471} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {5FE6F684-2A34-411A-9C9F-3919C68F783C} - \Scheduled Update for Ask Toolbar No Task File
Task: {7FECE4BB-F3DA-4CF2-AA83-83AC003EEF8A} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe
Task: {B3436B67-120C-4894-9531-25DA61776861} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {F2488AA2-7417-4F7D-A1EF-E8EF75F9723A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\65194793.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\65194793.sys => ""="Driver"


Start FRST (Farbar Recovery Scan Tool) og klik på FIX (og vent til den er færdig)

Den laver Fixlog.txt, som du skal kopiere herind i dit næste indlæg.

Luk Farbar Recovery Scan Tool, og genstart PCen.
Avatar billede mathilda Nybegynder
02. oktober 2013 - 22:29 #37
Fixlog.txt

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 27-09-2013 02
Ran by Torben at 2013-10-02 21:57:03 Run:1
Running from C:\Users\Torben\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Task: {09A0210F-10D1-467E-B5F6-0D0F51047471} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {5FE6F684-2A34-411A-9C9F-3919C68F783C} - \Scheduled Update for Ask Toolbar No Task File
Task: {7FECE4BB-F3DA-4CF2-AA83-83AC003EEF8A} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe
Task: {B3436B67-120C-4894-9531-25DA61776861} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {F2488AA2-7417-4F7D-A1EF-E8EF75F9723A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\65194793.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\40865476.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\65194793.sys => ""="Driver"

*****************

HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09A0210F-10D1-467E-B5F6-0D0F51047471} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09A0210F-10D1-467E-B5F6-0D0F51047471} => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FE6F684-2A34-411A-9C9F-3919C68F783C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FE6F684-2A34-411A-9C9F-3919C68F783C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7FECE4BB-F3DA-4CF2-AA83-83AC003EEF8A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FECE4BB-F3DA-4CF2-AA83-83AC003EEF8A} => Key deleted successfully.
C:\Windows\System32\Tasks\Ad-Aware Antivirus Scheduled Scan => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ad-Aware Antivirus Scheduled Scan => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B3436B67-120C-4894-9531-25DA61776861} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3436B67-120C-4894-9531-25DA61776861} => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F2488AA2-7417-4F7D-A1EF-E8EF75F9723A} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2488AA2-7417-4F7D-A1EF-E8EF75F9723A} => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates => Key deleted successfully.
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\40865476.sys => Key deleted successfully.
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\65194793.sys => Key deleted successfully.
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\40865476.sys => Key deleted successfully.
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\65194793.sys => Key deleted successfully.

==== End of Fixlog ====
Avatar billede f-arn Guru
02. oktober 2013 - 22:45 #38
Deaktiver dit sikkerhedprogram, mens du kører disse ->


Download Tdsskiller.zip på dit skrivebord og pak den ud i en mappe.

Start TDSSKiller.exe.

Mht.: Vista og Windows 7/8 - Højreklik på filen - Kør som Administrator.

Under "Change parameters" sætter du flueben ved "Detect TDLFS file system"

Klik på "Start Scan"

Hvis en inficeret fil bliver fundet, vil "Default action" være Cure, klik på Continue
Hvis den finder TDLFS file system, klikker du på Skip.
Hvis en mistænkelig fil opdages, vil "Default action" være Skip, klik på Continue
Hvis den ikke spørger om "Reboot" (genstart) så klik på "Report", kopier den tekst herind i tråden.

Genstart hvis den kræver det.

Hvis den genstarter kan du finde logfilen her :
C:\TDSSKiller.[Version]_[Dato]_[Tidspunkt]_log.txt.

Kopier den tekst herind i denne tråd. (Den skal nok deles i to ! )

------

Hent og gem aswMBR på dit Skrivebord.

Start aswMBR og klik på "Scan"

Mht.: Vista og Windows 7 - Højreklik på filen - Kør som Administrator.

Hvis den spørger efter "Avast virus definitioner" klikker du "Yes"

Når den er færdig med at scanne, klikker du på "SAVE LOG" og sender loggen herind.
Avatar billede mathilda Nybegynder
03. oktober 2013 - 06:42 #39
TDSSKiller

>>>>>>>>    aswMBR kmmer senere  .......

06:23:01.0936 0x12f8  TDSS rootkit removing tool 3.0.0.11 Sep 30 2013 09:17:03
06:23:01.0961 0x12f8  ============================================================
06:23:01.0961 0x12f8  Current date / time: 2013/10/03 06:23:01.0961
06:23:01.0961 0x12f8  SystemInfo:
06:23:01.0961 0x12f8 
06:23:01.0961 0x12f8  OS Version: 6.1.7601 ServicePack: 1.0
06:23:01.0962 0x12f8  Product type: Workstation
06:23:01.0962 0x12f8  ComputerName: TORBEN-HP
06:23:01.0962 0x12f8  UserName: Torben
06:23:01.0962 0x12f8  Windows directory: C:\windows
06:23:01.0962 0x12f8  System windows directory: C:\windows
06:23:01.0962 0x12f8  Running under WOW64
06:23:01.0962 0x12f8  Processor architecture: Intel x64
06:23:01.0962 0x12f8  Number of processors: 4
06:23:01.0962 0x12f8  Page size: 0x1000
06:23:01.0962 0x12f8  Boot type: Normal boot
06:23:01.0962 0x12f8  ============================================================
06:23:02.0526 0x12f8  System UUID: {3C751FD7-5BC4-E3C3-3814-E2FBDB226CBA}
06:23:03.0028 0x12f8  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
06:23:03.0036 0x12f8  ============================================================
06:23:03.0036 0x12f8  \Device\Harddisk0\DR0:
06:23:03.0036 0x12f8  MBR partitions:
06:23:03.0036 0x12f8  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x96000
06:23:03.0036 0x12f8  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x96800, BlocksNum 0x224DA000
06:23:03.0036 0x12f8  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x22570800, BlocksNum 0x24BC800
06:23:03.0036 0x12f8  \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x24A2D000, BlocksNum 0xA01000
06:23:03.0036 0x12f8  ============================================================
06:23:03.0079 0x12f8  C: <-> \Device\Harddisk0\DR0\Partition2
06:23:03.0123 0x12f8  D: <-> \Device\Harddisk0\DR0\Partition3
06:23:03.0133 0x12f8  E: <-> \Device\Harddisk0\DR0\Partition4
06:23:03.0133 0x12f8  ============================================================
06:23:03.0133 0x12f8  Initialize success
06:23:03.0133 0x12f8  ============================================================
06:23:14.0612 0x16a4  ============================================================
06:23:14.0612 0x16a4  Scan started
06:23:14.0612 0x16a4  Mode: Manual;
06:23:14.0613 0x16a4  ============================================================
06:23:14.0613 0x16a4  KSN ping started
06:23:14.0707 0x16a4  KSN ping finished: false
06:23:14.0941 0x16a4  ================ Scan system memory ========================
06:23:14.0941 0x16a4  System memory - ok
06:23:14.0941 0x16a4  ================ Scan services =============================
06:23:15.0073 0x16a4  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\windows\system32\drivers\1394ohci.sys
06:23:15.0082 0x16a4  1394ohci - ok
06:23:15.0149 0x16a4  [ A3D3A95303269011060BBCFB97CA1DD5, D472C7B91BBDBDBA820089D204D64CAEF17184B2BEEBD48EC3A178BF06435713 ] Accelerometer  C:\windows\system32\DRIVERS\Accelerometer.sys
06:23:15.0151 0x16a4  Accelerometer - ok
06:23:15.0182 0x16a4  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\windows\system32\drivers\ACPI.sys
06:23:15.0194 0x16a4  ACPI - ok
06:23:15.0211 0x16a4  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi        C:\windows\system32\drivers\acpipmi.sys
06:23:15.0212 0x16a4  AcpiPmi - ok
06:23:15.0304 0x16a4  [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
06:23:15.0306 0x16a4  AdobeARMservice - ok
06:23:15.0398 0x16a4  [ 3109B16A0939BA11696EEB04F345D099, 8863EFE3631F0F4D8F6BAE804DBB01564FF2969D53393B2887F682427C289B25 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
06:23:15.0406 0x16a4  AdobeFlashPlayerUpdateSvc - ok
06:23:15.0457 0x16a4  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx        C:\windows\system32\DRIVERS\adp94xx.sys
06:23:15.0482 0x16a4  adp94xx - ok
06:23:15.0513 0x16a4  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci        C:\windows\system32\DRIVERS\adpahci.sys
06:23:15.0527 0x16a4  adpahci - ok
06:23:15.0553 0x16a4  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320        C:\windows\system32\DRIVERS\adpu320.sys
06:23:15.0560 0x16a4  adpu320 - ok
06:23:15.0591 0x16a4  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc    C:\windows\System32\aelupsvc.dll
06:23:15.0594 0x16a4  AeLookupSvc - ok
06:23:15.0692 0x16a4  [ A6FB9DB8F1A86861D955FD6975977AE0, 788C6EE50719227D7A9B7F08C8D5E1289FCD0E8AC23A1021A5093D2E8368F696 ] AESTFilters    C:\Program Files\IDT\WDM\AESTSr64.exe
06:23:15.0696 0x16a4  AESTFilters - ok
06:23:15.0736 0x16a4  [ 6CCD1135320109D6B219F1A6E04AD9F6, B97D4DF46DF0EFC106BD3E248C70809F3F47DF3FD1CA039A0A3923E1FA05A969 ] Afc            C:\windows\syswow64\drivers\Afc.sys
06:23:15.0737 0x16a4  Afc - ok
06:23:15.0784 0x16a4  [ 1C7857B62DE5994A75B054A9FD4C3825, 83F963D7E636532B1AD30B1E727EC429317CA540F6EB3BB268FCC0B163B67767 ] AFD            C:\windows\system32\drivers\afd.sys
06:23:15.0808 0x16a4  AFD - ok
06:23:15.0840 0x16a4  [ 48008D4EA73C1058F36D323A644410D4, D0219AE0197BBD4C7BD75CD7564013B11497562F71C97918856B176942D86F65 ] AgereModemAudio C:\Program Files\LSI SoftModem\agr64svc.exe
06:23:15.0842 0x16a4  AgereModemAudio - ok
06:23:15.0906 0x16a4  [ DDF52C4C92D831A4CDB7788B37585E36, 604EB7E1F254A085364F652C41F560044439EA9B3D98EF0FEBC0B5AB8C6FFFC0 ] AgereSoftModem  C:\windows\system32\DRIVERS\agrsm64.sys
06:23:15.0974 0x16a4  AgereSoftModem - ok
06:23:16.0017 0x16a4  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\windows\system32\drivers\agp440.sys
06:23:16.0021 0x16a4  agp440 - ok
06:23:16.0043 0x16a4  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG            C:\windows\System32\alg.exe
06:23:16.0046 0x16a4  ALG - ok
06:23:16.0076 0x16a4  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\windows\system32\drivers\aliide.sys
06:23:16.0077 0x16a4  aliide - ok
06:23:16.0097 0x16a4  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\windows\system32\drivers\amdide.sys
06:23:16.0099 0x16a4  amdide - ok
06:23:16.0126 0x16a4  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8          C:\windows\system32\DRIVERS\amdk8.sys
06:23:16.0129 0x16a4  AmdK8 - ok
06:23:16.0143 0x16a4  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\windows\system32\DRIVERS\amdppm.sys
06:23:16.0146 0x16a4  AmdPPM - ok
06:23:16.0176 0x16a4  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata        C:\windows\system32\drivers\amdsata.sys
06:23:16.0180 0x16a4  amdsata - ok
06:23:16.0200 0x16a4  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\windows\system32\DRIVERS\amdsbs.sys
06:23:16.0208 0x16a4  amdsbs - ok
06:23:16.0238 0x16a4  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata        C:\windows\system32\drivers\amdxata.sys
06:23:16.0239 0x16a4  amdxata - ok
06:23:16.0281 0x16a4  [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID          C:\windows\system32\drivers\appid.sys
06:23:16.0284 0x16a4  AppID - ok
06:23:16.0315 0x16a4  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\windows\System32\appidsvc.dll
06:23:16.0317 0x16a4  AppIDSvc - ok
06:23:16.0344 0x16a4  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo        C:\windows\System32\appinfo.dll
06:23:16.0346 0x16a4  Appinfo - ok
06:23:16.0440 0x16a4  [ 4FE5C6D40664AE07BE5105874357D2ED, 70DD05EE80B77EB2F781E0919885D1BBB1119EA1A8955935AF5AECD05E30F14A ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
06:23:16.0443 0x16a4  Apple Mobile Device - ok
06:23:16.0469 0x16a4  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt        C:\windows\System32\appmgmts.dll
06:23:16.0476 0x16a4  AppMgmt - ok
06:23:16.0510 0x16a4  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc            C:\windows\system32\DRIVERS\arc.sys
06:23:16.0515 0x16a4  arc - ok
06:23:16.0527 0x16a4  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\windows\system32\DRIVERS\arcsas.sys
06:23:16.0532 0x16a4  arcsas - ok
06:23:16.0537 0x16a4  ARCVCAM - ok
06:23:16.0630 0x16a4  [ 9217D874131AE6FF8F642F124F00A555, BE2923D5AA7748FDAAED73AF567D015517B36F1C739C6E5637DD15112EFDF495 ] aspnet_state    C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
06:23:16.0648 0x16a4  aspnet_state - ok
06:23:16.0662 0x16a4  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\windows\system32\DRIVERS\asyncmac.sys
06:23:16.0664 0x16a4  AsyncMac - ok
06:23:16.0680 0x16a4  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi          C:\windows\system32\drivers\atapi.sys
06:23:16.0682 0x16a4  atapi - ok
06:23:16.0713 0x16a4  [ 4885C14A6AB6969B5773A42DA0BA3DA4, E317E1E299543FBD9853C71E1CF8019343B6234B9AAF56ABF48C41BB7743490B ] AthBTPort      C:\windows\system32\DRIVERS\btath_flt.sys
06:23:16.0717 0x16a4  AthBTPort - ok
06:23:16.0735 0x16a4  [ 0D21FF67523897518C88F00CCDF09CCC, 0D23D7BC51C1EC0ADBFBFCA0BC1D20BD4E094C22FA3DC37FFBC0F0A6C62C7C33 ] ATHDFU          C:\windows\system32\Drivers\AthDfu.sys
06:23:16.0738 0x16a4  ATHDFU - ok
06:23:16.0781 0x16a4  [ 27EB9EC5A9BA471ECD392605BD7E7F5C, F9443A98E4F743C5B1DEB82C015CC535687C97461E0FEE0362DB5E44BB3E0A5E ] AtherosSvc      C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
06:23:16.0789 0x16a4  AtherosSvc - ok
06:23:16.0975 0x16a4  [ CE197ECAA255ACC7A7765DC24FAB3A0D, 932372AD0CA012BDF0A6C5B4E3EADE15BF3A09D3881EB73CF6C57BF19739D6E3 ] athr            C:\windows\system32\DRIVERS\athrx.sys
06:23:17.0128 0x16a4  athr - ok
06:23:17.0195 0x16a4  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
06:23:17.0226 0x16a4  AudioEndpointBuilder - ok
06:23:17.0260 0x16a4  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\windows\System32\Audiosrv.dll
06:23:17.0280 0x16a4  AudioSrv - ok
06:23:17.0322 0x16a4  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\windows\System32\AxInstSV.dll
06:23:17.0326 0x16a4  AxInstSV - ok
06:23:17.0366 0x16a4  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv        C:\windows\system32\DRIVERS\bxvbda.sys
06:23:17.0391 0x16a4  b06bdrv - ok
06:23:17.0413 0x16a4  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\windows\system32\DRIVERS\b57nd60a.sys
06:23:17.0422 0x16a4  b57nd60a - ok
06:23:17.0523 0x16a4  [ 369C1928C9BBED65C9E347448BD376B0, FFADEEBD2A24EB2C362958FAE467F7B319D9AE1EE9B5724CDB6B70FBE31E6EE8 ] BBSvc          C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
06:23:17.0529 0x16a4  BBSvc - ok
06:23:17.0585 0x16a4  [ 54949AFAC5CE6FA2E4D7846D4362BAB3, 1C7025FF250023991BB719C5E03C9F9EB861E08F3B11DFB2AFDC83A81F6A39DD ] BBUpdate        C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
06:23:17.0592 0x16a4  BBUpdate - ok
06:23:17.0638 0x16a4  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\windows\System32\bdesvc.dll
06:23:17.0643 0x16a4  BDESVC - ok
06:23:17.0653 0x16a4  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\windows\system32\drivers\Beep.sys
06:23:17.0654 0x16a4  Beep - ok
06:23:17.0725 0x16a4  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE            C:\windows\System32\bfe.dll
06:23:17.0776 0x16a4  BFE - ok
06:23:18.0007 0x16a4  [ 4AD1940DAAAC84036B65EF78BAE42208, C17B159554A4CC11B432AB00819972836529A0EFE48B8B6E5ADE7CF7FDD1A148 ] BHDrvx64        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys
06:23:18.0070 0x16a4  BHDrvx64 - ok
06:23:18.0135 0x16a4  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\windows\System32\qmgr.dll
06:23:18.0159 0x16a4  BITS - ok
06:23:18.0180 0x16a4  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\windows\system32\DRIVERS\blbdrive.sys
06:23:18.0182 0x16a4  blbdrive - ok
06:23:18.0235 0x16a4  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
06:23:18.0253 0x16a4  Bonjour Service - ok
06:23:18.0277 0x16a4  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\windows\system32\DRIVERS\bowser.sys
06:23:18.0281 0x16a4  bowser - ok
06:23:18.0298 0x16a4  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\windows\system32\DRIVERS\BrFiltLo.sys
06:23:18.0299 0x16a4  BrFiltLo - ok
06:23:18.0313 0x16a4  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\windows\system32\DRIVERS\BrFiltUp.sys
06:23:18.0315 0x16a4  BrFiltUp - ok
06:23:18.0353 0x16a4  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser        C:\windows\System32\browser.dll
06:23:18.0358 0x16a4  Browser - ok
06:23:18.0387 0x16a4  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid        C:\windows\System32\Drivers\Brserid.sys
06:23:18.0396 0x16a4  Brserid - ok
06:23:18.0410 0x16a4  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\windows\System32\Drivers\BrSerWdm.sys
06:23:18.0413 0x16a4  BrSerWdm - ok
06:23:18.0426 0x16a4  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\windows\System32\Drivers\BrUsbMdm.sys
06:23:18.0428 0x16a4  BrUsbMdm - ok
06:23:18.0433 0x16a4  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\windows\System32\Drivers\BrUsbSer.sys
06:23:18.0435 0x16a4  BrUsbSer - ok
06:23:18.0471 0x16a4  [ E53B1FF861DCD4A66858F1B74B051402, 200590F1A9BE0F6AF5AB1016291CD1EC6DAEEF1E920698806782F29F4E9A7D73 ] BTATH_A2DP      C:\windows\system32\drivers\btath_a2dp.sys
06:23:18.0483 0x16a4  BTATH_A2DP - ok
06:23:18.0503 0x16a4  [ D0632BBEFF06098354AF3401ACA4494F, 753645304CCA307D3F6C87CA8F199CB15972CB789B44E2F55C6071F7F068809E ] btath_avdt      C:\windows\system32\drivers\btath_avdt.sys
06:23:18.0507 0x16a4  btath_avdt - ok
06:23:18.0529 0x16a4  [ 8170714B89CA05E6C35FEFB9DA7653D8, 92411525217FC2589947C70F7B12FAA3E3053A9FE98D11F4F96A48DAC2AC7E90 ] BTATH_BUS      C:\windows\system32\DRIVERS\btath_bus.sys
06:23:18.0531 0x16a4  BTATH_BUS - ok
06:23:18.0542 0x16a4  [ 77F498F46192EF92C0144B5B13C50B4B, 99B2BCD3039169CC1CE30E436100F89435D6D156C051268360C9FFE78333BDA7 ] BTATH_HCRP      C:\windows\system32\DRIVERS\btath_hcrp.sys
06:23:18.0548 0x16a4  BTATH_HCRP - ok
06:23:18.0566 0x16a4  [ D0AA846BCF0E85E1513C8DF2FC6F8BF1, FADA2949202CE2FB92B5256AE2070C78E70CE712E45F547532BDDAA7E3FE141E ] BTATH_LWFLT    C:\windows\system32\DRIVERS\btath_lwflt.sys
06:23:18.0569 0x16a4  BTATH_LWFLT - ok
06:23:18.0594 0x16a4  [ F8056CE360559AB0C390618DAD63193E, 5D243E025DF816FDB8CC4D12657A91E534812D8283D1285534998EE76D00CB58 ] BTATH_RCP      C:\windows\system32\DRIVERS\btath_rcp.sys
06:23:18.0598 0x16a4  BTATH_RCP - ok
06:23:18.0641 0x16a4  [ CBF4EF7E9FE86CE0CAB0A6472DE34A1C, 7E4B410E1BC0BBC3B7CECF4B7396070E3FFB99D73CF185CBF38E65A79DDBB780 ] BtFilter        C:\windows\system32\DRIVERS\btfilter.sys
06:23:18.0668 0x16a4  BtFilter - ok
06:23:18.0689 0x16a4  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum        C:\windows\system32\DRIVERS\BthEnum.sys
06:23:18.0691 0x16a4  BthEnum - ok
06:23:18.0704 0x16a4  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\windows\system32\DRIVERS\bthmodem.sys
06:23:18.0707 0x16a4  BTHMODEM - ok
06:23:18.0739 0x16a4  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\windows\system32\DRIVERS\bthpan.sys
06:23:18.0744 0x16a4  BthPan - ok
06:23:18.0778 0x16a4  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT        C:\windows\system32\Drivers\BTHport.sys
06:23:18.0804 0x16a4  BTHPORT - ok
06:23:18.0873 0x16a4  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv        C:\windows\system32\bthserv.dll
06:23:18.0877 0x16a4  bthserv - ok
06:23:18.0894 0x16a4  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\windows\system32\Drivers\BTHUSB.sys
06:23:18.0897 0x16a4  BTHUSB - ok
06:23:18.0954 0x16a4  [ 555FA105C22B1616094EDAD1CBFB0551, 3DB8EB0F95589E8CC338AE033C314256296F0BF039B338CF023FE393CF80840C ] cbfs3          C:\windows\system32\drivers\cbfs3.sys
06:23:18.0965 0x16a4  cbfs3 - ok
06:23:19.0031 0x16a4  [ 248C952C82DF1E23775432774CBB20F1, D04D382E7963B84E4856534A2FA209787FEBA2B6F21F579CA8F7C6BE4AA10072 ] ccSet_MCLIENT  C:\windows\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys
06:23:19.0038 0x16a4  ccSet_MCLIENT - ok
06:23:19.0115 0x16a4  [ A5C16A0BE89EE409732178BEB62F7EA7, D4B993F63CFD9B487BD53B532AB9435084B4C752F2731E189FA1420D516A4E95 ] ccSet_NIS      C:\windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys
06:23:19.0121 0x16a4  ccSet_NIS - ok
06:23:19.0185 0x16a4  [ 56685951208AC81CF923B9B08BEDF3B7, F5FF438B9A54AD8D54E82DE60E1771C9685A95D5E590D69EB1E4E78D3B9B7769 ] ccSet_NST      C:\windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys
06:23:19.0192 0x16a4  ccSet_NST - ok
06:23:19.0208 0x16a4  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\windows\system32\DRIVERS\cdfs.sys
06:23:19.0213 0x16a4  cdfs - ok
06:23:19.0245 0x16a4  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom          C:\windows\system32\DRIVERS\cdrom.sys
06:23:19.0251 0x16a4  cdrom - ok
06:23:19.0297 0x16a4  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc    C:\windows\System32\certprop.dll
06:23:19.0300 0x16a4  CertPropSvc - ok
06:23:19.0326 0x16a4  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\windows\system32\DRIVERS\circlass.sys
06:23:19.0328 0x16a4  circlass - ok
06:23:19.0365 0x16a4  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\windows\system32\CLFS.sys
06:23:19.0380 0x16a4  CLFS - ok
06:23:19.0438 0x16a4  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
06:23:19.0441 0x16a4  clr_optimization_v2.0.50727_32 - ok
06:23:19.0482 0x16a4  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
06:23:19.0486 0x16a4  clr_optimization_v2.0.50727_64 - ok
06:23:19.0536 0x16a4  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
06:23:19.0571 0x16a4  clr_optimization_v4.0.30319_32 - ok
06:23:19.0594 0x16a4  [ C6F9AF94DCD58122A4D7E89DB6BED29D, CB0E5AE60EC76323585FB86D89E8DB7ADB5EDF6EA3D0B27E9ECE75B8CAA8BFDE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
06:23:19.0601 0x16a4  clr_optimization_v4.0.30319_64 - ok
06:23:19.0632 0x16a4  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\windows\system32\DRIVERS\CmBatt.sys
06:23:19.0633 0x16a4  CmBatt - ok
06:23:19.0664 0x16a4  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\windows\system32\drivers\cmdide.sys
06:23:19.0665 0x16a4  cmdide - ok
06:23:19.0725 0x16a4  [ AAFCB52FE0037207FB6FBEA070D25EFE, 7D035BFB6DD86944CCDE6D71811891406D7FD08344EF8CF57C4D932E096F1377 ] CNG            C:\windows\system32\Drivers\cng.sys
06:23:19.0752 0x16a4  CNG - ok
06:23:19.0790 0x16a4  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\windows\system32\DRIVERS\compbatt.sys
06:23:19.0792 0x16a4  Compbatt - ok
06:23:19.0816 0x16a4  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\windows\system32\drivers\CompositeBus.sys
06:23:19.0818 0x16a4  CompositeBus - ok
06:23:19.0824 0x16a4  COMSysApp - ok
06:23:19.0829 0x16a4  CpqDfw - ok
06:23:19.0843 0x16a4  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk        C:\windows\system32\DRIVERS\crcdisk.sys
06:23:19.0844 0x16a4  crcdisk - ok
06:23:19.0899 0x16a4  [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc        C:\windows\system32\cryptsvc.dll
06:23:19.0905 0x16a4  CryptSvc - ok
06:23:19.0968 0x16a4  [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC            C:\windows\system32\drivers\csc.sys
06:23:19.0995 0x16a4  CSC - ok
06:23:20.0059 0x16a4  [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService      C:\windows\System32\cscsvc.dll
06:23:20.0089 0x16a4  CscService - ok
06:23:20.0115 0x16a4  [ 2E3374F9F0B5A3247B779978980C24CB, 21DE1C89252703198E192C91DD41307851457FCC9E10EEB1B9AF03AAAB35AD78 ] DAMDrv          C:\windows\system32\DRIVERS\DAMDrv64.sys
06:23:20.0117 0x16a4  DAMDrv - ok
06:23:20.0174 0x16a4  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\windows\system32\rpcss.dll
06:23:20.0200 0x16a4  DcomLaunch - ok
06:23:20.0228 0x16a4  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc      C:\windows\System32\defragsvc.dll
06:23:20.0239 0x16a4  defragsvc - ok
06:23:20.0279 0x16a4  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\windows\system32\Drivers\dfsc.sys
06:23:20.0283 0x16a4  DfsC - ok
06:23:20.0333 0x16a4  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\windows\system32\dhcpcore.dll
06:23:20.0350 0x16a4  Dhcp - ok
06:23:20.0368 0x16a4  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\windows\system32\drivers\discache.sys
06:23:20.0369 0x16a4  discache - ok
06:23:20.0386 0x16a4  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\windows\system32\DRIVERS\disk.sys
06:23:20.0389 0x16a4  Disk - ok
06:23:20.0419 0x16a4  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\windows\System32\dnsrslvr.dll
06:23:20.0426 0x16a4  Dnscache - ok
06:23:20.0469 0x16a4  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc        C:\windows\System32\dot3svc.dll
06:23:20.0478 0x16a4  dot3svc - ok
06:23:20.0506 0x16a4  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] dot4            C:\windows\system32\DRIVERS\Dot4.sys
06:23:20.0513 0x16a4  dot4 - ok
06:23:20.0531 0x16a4  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print      C:\windows\system32\DRIVERS\Dot4Prt.sys
06:23:20.0533 0x16a4  Dot4Print - ok
06:23:20.0544 0x16a4  [ 488669CD1CD3BDCFDD9A5FDA72209069, CCB6BCB23A30CFD016E4086ED010A0E9DA647D3FAD9724200A29938D2B79A3C0 ] Dot4Scan        C:\windows\system32\DRIVERS\Dot4Scan.sys
06:23:20.0545 0x16a4  Dot4Scan - ok
06:23:20.0557 0x16a4  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb        C:\windows\system32\DRIVERS\dot4usb.sys
06:23:20.0559 0x16a4  dot4usb - ok
06:23:20.0641 0x16a4  [ 0B9134A45E88DCF0657382F277242F62, 3AC5A8705D53BD9D1325E7E0E8AC2B3044264B521C855BFAB5949E4AEA2E4DBC ] DpHost          C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
06:23:20.0655 0x16a4  DpHost - ok
06:23:20.0698 0x16a4  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS            C:\windows\system32\dps.dll
06:23:20.0705 0x16a4  DPS - ok
06:23:20.0731 0x16a4  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud        C:\windows\system32\drivers\drmkaud.sys
06:23:20.0732 0x16a4  drmkaud - ok
06:23:20.0795 0x16a4  [ 1A986E433B8EB2375F55961D993746B3, FAEDC1F812C1CA6AAD4546751EB4A5A0D1143E8CC58B24E8660D87D44E9EDB9D ] DXGKrnl        C:\windows\System32\drivers\dxgkrnl.sys
06:23:20.0837 0x16a4  DXGKrnl - ok
06:23:20.0870 0x16a4  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost        C:\windows\System32\eapsvc.dll
06:23:20.0876 0x16a4  EapHost - ok
06:23:20.0951 0x16a4  [ 0CD6BE2D93DB0B4B780985F63DCF8039, F6B6E4CA85ECCFBFB2A71E0A621A08F99E3300E158C7152CE1AD502A9796D28E ] EaseUS Agent    C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
06:23:20.0954 0x16a4  EaseUS Agent - ok
06:23:21.0109 0x16a4  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv          C:\windows\system32\DRIVERS\evbda.sys
06:23:21.0234 0x16a4  ebdrv - ok
06:23:21.0279 0x16a4  [ A2DA3D8E0B336E13F7A155B5789B58CF, D492E24807857547F62E69B8F2935ABC48113C28832B1155AB3186D04A63DEF1 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
06:23:21.0305 0x16a4  eeCtrl - ok
06:23:21.0328 0x16a4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] EFS            C:\windows\System32\lsass.exe
06:23:21.0332 0x16a4  EFS - ok
06:23:21.0411 0x16a4  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr        C:\windows\ehome\ehRecvr.exe
06:23:21.0434 0x16a4  ehRecvr - ok
06:23:21.0461 0x16a4  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched        C:\windows\ehome\ehsched.exe
06:23:21.0465 0x16a4  ehSched - ok
06:23:21.0505 0x16a4  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor        C:\windows\system32\DRIVERS\elxstor.sys
06:23:21.0529 0x16a4  elxstor - ok
06:23:21.0568 0x16a4  [ 23C3061D2F7F8BCB6140A098447035B4, A89A628D99637DA72F51E90A6C3CBAAB552B423447C2EDC561E3D7CCB4D7EAB7 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
06:23:21.0574 0x16a4  EraserUtilRebootDrv - ok
06:23:21.0598 0x16a4  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\windows\system32\drivers\errdev.sys
06:23:21.0599 0x16a4  ErrDev - ok
06:23:21.0623 0x16a4  esgiguard - ok
06:23:21.0651 0x16a4  [ 8903FDB9A849396DCC3B9C6F0748D3B2, 5792A31D37C7CE99F7D4AB52FCC9453129B2A276BE4E95A17778E1CB2D31FA40 ] EUBAKUP        C:\windows\system32\drivers\eubakup.sys
06:23:21.0653 0x16a4  EUBAKUP - ok
06:23:21.0673 0x16a4  [ F5C66F29C559363B7E78B968B225570A, E1B0929CA88100B32A3684A683A204F89754BED567DA279FAC3714D1AC9AC996 ] EUBKMON        C:\windows\system32\drivers\EUBKMON.sys
06:23:21.0675 0x16a4  EUBKMON - ok
06:23:21.0688 0x16a4  [ 379CBA04EABE4DD2226C8BD39E4D1AD9, EAF2DCF55860BEEE5AEB35723F2BE21E27EAB66DC65FE7F80E3E5E19109ADDE7 ] EUDSKACS        C:\windows\system32\drivers\eudskacs.sys
06:23:21.0689 0x16a4  EUDSKACS - ok
06:23:21.0705 0x16a4  [ DCE38A7B0C788EB269A89AC6B377250B, EE843A1114DD740BF3117AFB4806A390FC5F7C98F2C7F4FE10BD64D61EC8055E ] EUFDDISK        C:\windows\system32\drivers\EuFdDisk.sys
06:23:21.0712 0x16a4  EUFDDISK - ok
06:23:21.0761 0x16a4  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem    C:\windows\system32\es.dll
06:23:21.0775 0x16a4  EventSystem - ok
06:23:21.0798 0x16a4  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat          C:\windows\system32\drivers\exfat.sys
06:23:21.0807 0x16a4  exfat - ok
06:23:21.0846 0x16a4  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat        C:\windows\system32\drivers\fastfat.sys
06:23:21.0854 0x16a4  fastfat - ok
06:23:21.0937 0x16a4  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax            C:\windows\system32\fxssvc.exe
06:23:21.0995 0x16a4  Fax - ok
06:23:22.0050 0x16a4  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc            C:\windows\system32\DRIVERS\fdc.sys
06:23:22.0052 0x16a4  fdc - ok
06:23:22.0065 0x16a4  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost        C:\windows\system32\fdPHost.dll
06:23:22.0067 0x16a4  fdPHost - ok
06:23:22.0081 0x16a4  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\windows\system32\fdrespub.dll
06:23:22.0083 0x16a4  FDResPub - ok
06:23:22.0097 0x16a4  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\windows\system32\drivers\fileinfo.sys
06:23:22.0100 0x16a4  FileInfo - ok
06:23:22.0113 0x16a4  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace      C:\windows\system32\drivers\filetrace.sys
06:23:22.0115 0x16a4  Filetrace - ok
06:23:22.0143 0x16a4  [ 9BE8AAEA071CB5666A1FE297E5588E71, 18F2A92472A43E1F8BD55B9534C5C28C490ACA75C29A64239161B3A0C0422A8F ] FlashUSB        C:\windows\system32\DRIVERS\FlashUSB_x64.sys
06:23:22.0145 0x16a4  FlashUSB - ok
06:23:22.0233 0x16a4  [ A814979613C50457ED25FD60C872EBBC, E9C142AF280772B8ABA8D673B3CBED85F1369F80DA10965C076F57B74A3DE7FE ] FLCDLOCK        c:\Windows\SysWOW64\flcdlock.exe
06:23:22.0248 0x16a4  FLCDLOCK - ok
06:23:22.0267 0x16a4  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\windows\system32\DRIVERS\flpydisk.sys
06:23:22.0268 0x16a4  flpydisk - ok
06:23:22.0317 0x16a4  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\windows\system32\drivers\fltmgr.sys
06:23:22.0328 0x16a4  FltMgr - ok
06:23:22.0393 0x16a4  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache      C:\windows\system32\FntCache.dll
06:23:22.0440 0x16a4  FontCache - ok
06:23:22.0501 0x16a4  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
06:23:22.0503 0x16a4  FontCache3.0.0.0 - ok
06:23:22.0530 0x16a4  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends      C:\windows\system32\drivers\FsDepends.sys
06:23:22.0533 0x16a4  FsDepends - ok
06:23:22.0560 0x16a4  [ B16B626996C74B564005BA855C5DEE90, B432C669EB610C262B18F3F8308EEE1B910DE7F7BC2A8EB5483419DC52A07AE1 ] fssfltr        C:\windows\system32\DRIVERS\fssfltr.sys
06:23:22.0562 0x16a4  fssfltr - ok
06:23:22.0673 0x16a4  [ 812E1BA5C52A78F13EA6AA10DF708B1D, CF1C4D8E072CF0D66C977DFA4C852E5CE757843BEAF5D29454D26A9AC5766E61 ] fsssvc          C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
06:23:22.0735 0x16a4  fsssvc - ok
06:23:22.0766 0x16a4  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\windows\system32\drivers\Fs_Rec.sys
06:23:22.0768 0x16a4  Fs_Rec - ok
06:23:22.0802 0x16a4  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\windows\system32\DRIVERS\fvevol.sys
06:23:22.0811 0x16a4  fvevol - ok
06:23:22.0838 0x16a4  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\windows\system32\DRIVERS\gagp30kx.sys
06:23:22.0841 0x16a4  gagp30kx - ok
06:23:22.0922 0x16a4  [ 551D463E4CCEB5240234DA6718C93A44, 37CE7DFD392A1899FDB1B36163D34E9C005344EABDF7397BEA81447B9F7262D1 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
06:23:22.0942 0x16a4  GameConsoleService - ok
06:23:22.0986 0x16a4  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM    C:\windows\system32\DRIVERS\GEARAspiWDM.sys
06:23:22.0989 0x16a4  GEARAspiWDM - ok
06:23:23.0013 0x16a4  [ 14908F4F9005C29DE8F5587E271390EE, 43DDFA99F52467F91019DB858989F111EBE48A2BED8D43EA2C15D1FD3C104489 ] gfibto          C:\windows\system32\drivers\gfibto.sys
06:23:23.0014 0x16a4  gfibto - ok
06:23:23.0092 0x16a4  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc          C:\windows\System32\gpsvc.dll
06:23:23.0113 0x16a4  gpsvc - ok
06:23:23.0137 0x16a4  [ 714E18ABBE6EBED6B8F8A7314C026260, 72199AB00A9ECDFFC225826BD9CB817F57A4AF16F3EE0FA6744243CCA5DA7AF5 ] Guard Agent    C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe
06:23:23.0139 0x16a4  Guard Agent - ok
06:23:23.0178 0x16a4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
06:23:23.0181 0x16a4  gupdate - ok
06:23:23.0189 0x16a4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
06:23:23.0193 0x16a4  gupdatem - ok
06:23:23.0226 0x16a4  [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc          C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
06:23:23.0231 0x16a4  gusvc - ok
06:23:23.0256 0x16a4  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\windows\system32\drivers\hcw85cir.sys
06:23:23.0258 0x16a4  hcw85cir - ok
06:23:23.0296 0x16a4  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
06:23:23.0312 0x16a4  HdAudAddService - ok
06:23:23.0346 0x16a4  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\windows\system32\drivers\HDAudBus.sys
06:23:23.0351 0x16a4  HDAudBus - ok
06:23:23.0367 0x16a4  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt        C:\windows\system32\DRIVERS\HidBatt.sys
06:23:23.0368 0x16a4  HidBatt - ok
06:23:23.0388 0x16a4  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\windows\system32\DRIVERS\hidbth.sys
06:23:23.0392 0x16a4  HidBth - ok
06:23:23.0409 0x16a4  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr          C:\windows\system32\DRIVERS\hidir.sys
06:23:23.0411 0x16a4  HidIr - ok
06:23:23.0435 0x16a4  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv        C:\windows\system32\hidserv.dll
06:23:23.0437 0x16a4  hidserv - ok
06:23:23.0461 0x16a4  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\windows\system32\drivers\hidusb.sys
06:23:23.0463 0x16a4  HidUsb - ok
06:23:23.0503 0x16a4  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\windows\system32\kmsvc.dll
06:23:23.0507 0x16a4  hkmsvc - ok
06:23:23.0554 0x16a4  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\windows\system32\ListSvc.dll
06:23:23.0562 0x16a4  HomeGroupListener - ok
06:23:23.0620 0x16a4  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\windows\system32\provsvc.dll
06:23:23.0629 0x16a4  HomeGroupProvider - ok
06:23:23.0669 0x16a4  [ E8F8A94109429A327521C83AE2C25941, 4EE25908A903DA970B3410BE63D29BBF666FA8BA67805F7675E0E2581152A121 ] HP Power Assistant Service C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
06:23:23.0674 0x16a4  HP Power Assistant Service - ok
06:23:23.0748 0x16a4  [ BB1FC298BE53AAB1E110F6E786BD8AC5, C2DA2C3CE96D5F8B50013063B5EF7BED7478636896C709A7AF34855B2E69B9F1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
06:23:23.0751 0x16a4  HP Support Assistant Service - ok
06:23:23.0858 0x16a4  [ 6F36B2B1A5286044EF8EEEDBDAB2BDD2, 9DAA2ECF190DB5E8B8D28DA526A657EBBF7085D8C44BF1A48F92044B50FA4205 ] hpCMSrv        C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
06:23:23.0914 0x16a4  hpCMSrv - ok
06:23:23.0992 0x16a4  [ A9FC4D7EA174BBF5A675B299FFAD80A2, C9272E0C20EABBAC6B68FC6CDEA7577426B1F3FCD9E619EBC87556A625EEF1A3 ] HPDayStarterService c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
06:23:23.0997 0x16a4  HPDayStarterService - ok
06:23:24.0074 0x16a4  [ C48B579D5A287AD85BEDEF291E81A3AA, 7A84EF09659A8DE4F121BDE9FCD4BCA9323C114B2F16C21D0B078950086E8E1A ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
06:23:24.0081 0x16a4  HPDrvMntSvc.exe - ok
06:23:24.0124 0x16a4  [ 4EC5F601B46C00DF87323CD58E8AA1A3, 34646B30F9DB599439A145E67553D3DA03FE6BF81E5EE0B14EFF586A5B02876B ] hpdskflt        C:\windows\system32\DRIVERS\hpdskflt.sys
06:23:24.0126 0x16a4  hpdskflt - ok
06:23:24.0176 0x16a4  [ 98FAB0413C7365C9069994D7CE47F3EC, 9234FE9FF933845B0F9F4D5C35651474B3FE94E2D75FFB8EA06D6E2616006693 ] HPFSService    C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
06:23:24.0187 0x16a4  HPFSService - ok
06:23:24.0255 0x16a4  [ 4968C0728E257B3B6210244A9CDE2A08, 9886CFC5B06185575D4630BBA10273774F349756C05D83B5335421ADB36CA6A7 ] hpHotkeyMonitor C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
06:23:24.0269 0x16a4  hpHotkeyMonitor - ok
06:23:24.0287 0x16a4  [ B98EE5D4535A685634B90F7E04DE0DF7, E37D26EF83B70E84742498D2F53037F83BE13F0E01484D85A20C872F1F02ADDA ] HpqKbFiltr      C:\windows\system32\DRIVERS\HpqKbFiltr.sys
06:23:24.0288 0x16a4  HpqKbFiltr - ok
06:23:24.0346 0x16a4  [ 375B287A63F5E27D20EE94B459981CEA, F151F031F2CD9F48AFE0F87E089946623D5EC4AB73E2BFEFEC0F09716E6EF472 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
06:23:24.0374 0x16a4  hpqwmiex - ok
06:23:24.0404 0x16a4  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\windows\system32\drivers\HpSAMD.sys
06:23:24.0407 0x16a4  HpSAMD - ok
06:23:24.0493 0x16a4  HPSLPSVC - ok
06:23:24.0532 0x16a4  [ 3A63CD2EAC2188CF2660A8E8DA701AB7, 26BFF8DB06E40BE08C82CE91F7868D5E09459B0EDD6C44CDAD28813AC10E6355 ] hpsrv          C:\windows\system32\Hpservice.exe
06:23:24.0535 0x16a4  hpsrv - ok
06:23:24.0602 0x16a4  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\windows\system32\drivers\HTTP.sys
06:23:24.0646 0x16a4  HTTP - ok
06:23:24.0689 0x16a4  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\windows\system32\drivers\hwpolicy.sys
06:23:24.0690 0x16a4  hwpolicy - ok
06:23:24.0715 0x16a4  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\windows\system32\DRIVERS\i8042prt.sys
06:23:24.0720 0x16a4  i8042prt - ok
06:23:24.0760 0x16a4  [ D469B77687E12FE43E344806740B624D, DFDD486FD040813BF4E5DDB504CF9E0BFBF6D4E540DDDA4829F9B675ACF63E89 ] iaStor          C:\windows\system32\DRIVERS\iaStor.sys
06:23:24.0773 0x16a4  iaStor - ok
06:23:24.0822 0x16a4  [ 117FF657E0D9BBD61B5C3E71E63D3919, F8AD1C861F018754A9BF348C9F1D6503854ED9D7DEEBF40E6B4E2FEA9FC6E56A ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
06:23:24.0823 0x16a4  IAStorDataMgrSvc - ok
06:23:24.0858 0x16a4  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV        C:\windows\system32\drivers\iaStorV.sys
06:23:24.0882 0x16a4  iaStorV - ok
06:23:24.0974 0x16a4  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc          C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
06:23:25.0025 0x16a4  idsvc - ok
06:23:25.0192 0x16a4  [ A1258065E8B16E23E2AFDE72FB5559BC, 22819A822035C4378E5DD40E7829BBC54973BB49734B7E021EF7C7A5F0A5A55A ] IDSVia64        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131001.002\IDSvia64.sys
06:23:25.0227 0x16a4  IDSVia64 - ok
06:23:25.0718 0x16a4  [ 0089B53F1BEFD34B7D8CA4AB021335FA, AE2B32E05E166DBAFA602C38D9FF670A1A9E561D8E37E5C088E1519779AE8475 ] igfx            C:\windows\system32\DRIVERS\igdkmd64.sys
06:23:26.0213 0x16a4  igfx - ok
06:23:26.0258 0x16a4  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp          C:\windows\system32\DRIVERS\iirsp.sys
06:23:26.0261 0x16a4  iirsp - ok
06:23:26.0335 0x16a4  [ FCD84C381E0140AF901E58D48882D26B, 76955FFC230C801E8ED890E32076075F04CD6E5EC79E594FDE6D23797A36B406 ] IKEEXT          C:\windows\System32\ikeext.dll
06:23:26.0377 0x16a4  IKEEXT - ok
06:23:26.0413 0x16a4  [ AE594CC17C33AC146739494615E14851, 0E4FA415C1B4065083D761A458450FAE9C6A6EE6E49B3A598B43871D6F01B3EC ] IntcDAud        C:\windows\system32\DRIVERS\IntcDAud.sys
06:23:26.0429 0x16a4  IntcDAud - ok
06:23:26.0451 0x16a4  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\windows\system32\drivers\intelide.sys
06:23:26.0453 0x16a4  intelide - ok
06:23:26.0467 0x16a4  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\windows\system32\DRIVERS\intelppm.sys
06:23:26.0470 0x16a4  intelppm - ok
06:23:26.0514 0x16a4  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum      C:\windows\system32\ipbusenum.dll
06:23:26.0517 0x16a4  IPBusEnum - ok
06:23:26.0561 0x16a4  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\windows\system32\DRIVERS\ipfltdrv.sys
06:23:26.0564 0x16a4  IpFilterDriver - ok
06:23:26.0620 0x16a4  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\windows\System32\iphlpsvc.dll
06:23:26.0646 0x16a4  iphlpsvc - ok
06:23:26.0669 0x16a4  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV        C:\windows\system32\drivers\IPMIDrv.sys
06:23:26.0672 0x16a4  IPMIDRV - ok
06:23:26.0694 0x16a4  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT          C:\windows\system32\drivers\ipnat.sys
06:23:26.0698 0x16a4  IPNAT - ok
06:23:26.0755 0x16a4  [ 78486992AC657AE5065C4A2135838570, E958E2977843A15A73F06A2D2F24130C7F62305A9AA0488F419E2D729BA6939A ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
06:23:26.0790 0x16a4  iPod Service - ok
06:23:26.0803 0x16a4  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\windows\system32\drivers\irenum.sys
06:23:26.0805 0x16a4  IRENUM - ok
06:23:26.0836 0x16a4  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\windows\system32\drivers\isapnp.sys
06:23:26.0838 0x16a4  isapnp - ok
06:23:26.0867 0x16a4  [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt        C:\windows\system32\drivers\msiscsi.sys
06:23:26.0882 0x16a4  iScsiPrt - ok
06:23:26.0928 0x16a4  [ 6C85719A21B3F62C2C76280F4BD36C7B, 471E333467937720EF9369419EEDE5C2246C976123B437E0AC66F394CF1C056A ] jhi_service    C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
06:23:26.0934 0x16a4  jhi_service - ok
06:23:26.0966 0x16a4  [ 3FE43C2F5B5C08657A1B547AFBE2118E, 33A589EFA8CC13E5C46392B321797D15030B38C56276B2C3755E332E6CC15786 ] JMCR            C:\windows\system32\DRIVERS\jmcr.sys
06:23:26.0974 0x16a4  JMCR - ok
06:23:26.0993 0x16a4  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\windows\system32\drivers\kbdclass.sys
06:23:26.0996 0x16a4  kbdclass - ok
06:23:27.0026 0x16a4  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\windows\system32\drivers\kbdhid.sys
06:23:27.0028 0x16a4  kbdhid - ok
06:23:27.0049 0x16a4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] KeyIso          C:\windows\system32\lsass.exe
06:23:27.0051 0x16a4  KeyIso - ok
06:23:27.0082 0x16a4  [ 97A7070AEA4C058B6418519E869A63B4, 15345C2D6CA159BD498002974A0BD21CAB611124D85E3320248B47652AEF23C8 ] KSecDD          C:\windows\system32\Drivers\ksecdd.sys
06:23:27.0087 0x16a4  KSecDD - ok
06:23:27.0130 0x16a4  [ 7EFB9333E4ECCE6AE4AE9D777D9E553E, 94F1382291BD748BAE7EDBCB56F43B8564A1EE22E2DBEB37066559EE3D065FBA ] KSecPkg        C:\windows\system32\Drivers\ksecpkg.sys
06:23:27.0136 0x16a4  KSecPkg - ok
06:23:27.0161 0x16a4  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk        C:\windows\system32\drivers\ksthunk.sys
06:23:27.0163 0x16a4  ksthunk - ok
06:23:27.0205 0x16a4  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm          C:\windows\system32\msdtckrm.dll
06:23:27.0229 0x16a4  KtmRm - ok
06:23:27.0278 0x16a4  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\windows\system32\srvsvc.dll
06:23:27.0285 0x16a4  LanmanServer - ok
06:23:27.0332 0x16a4  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
06:23:27.0337 0x16a4  LanmanWorkstation - ok
06:23:27.0346 0x16a4  LgBttPort - ok
06:23:27.0352 0x16a4  lgbusenum - ok
06:23:27.0359 0x16a4  LGVMODEM - ok
06:23:27.0410 0x16a4  [ C34411A244029F1C08687F7C752C4563, 4FC1D6156D760AE8138547262B33677118BD9369F4930F5C5F9BAA2FE6E78EA3 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
06:23:27.0413 0x16a4  LightScribeService - ok
06:23:27.0424 0x16a4  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\windows\system32\DRIVERS\lltdio.sys
06:23:27.0427 0x16a4  lltdio - ok
06:23:27.0482 0x16a4  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc        C:\windows\System32\lltdsvc.dll
06:23:27.0492 0x16a4  lltdsvc - ok
06:23:27.0506 0x16a4  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts        C:\windows\System32\lmhsvc.dll
06:23:27.0508 0x16a4  lmhosts - ok
06:23:27.0548 0x16a4  [ 519D66259DF1672AABCE9D2E0ACC5552, 953EAEC04D45574ED9260726383438AA18A5EBEB2E0C93869DF4C57B9998BB27 ] LMS            C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
06:23:27.0557 0x16a4  LMS - ok
06:23:27.0590 0x16a4  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\windows\system32\DRIVERS\lsi_fc.sys
06:23:27.0594 0x16a4  LSI_FC - ok
06:23:27.0613 0x16a4  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS        C:\windows\system32\DRIVERS\lsi_sas.sys
06:23:27.0616 0x16a4  LSI_SAS - ok
06:23:27.0651 0x16a4  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\windows\system32\DRIVERS\lsi_sas2.sys
06:23:27.0653 0x16a4  LSI_SAS2 - ok
06:23:27.0666 0x16a4  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\windows\system32\DRIVERS\lsi_scsi.sys
06:23:27.0671 0x16a4  LSI_SCSI - ok
06:23:27.0687 0x16a4  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv          C:\windows\system32\drivers\luafv.sys
06:23:27.0691 0x16a4  luafv - ok
06:23:27.0796 0x16a4  [ FDE6052CD5846863463828E61176C4DC, 6494F2450B2F32D71D2330C5FA41B3C554B969C7F621C38B7478A40E440D523F ] McAfee Endpoint Encryption Agent C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
06:23:27.0845 0x16a4  McAfee Endpoint Encryption Agent - ok
06:23:27.0911 0x16a4  [ 4BA84C832E0741A294C4444556DFE993, 2CC888C85887F0F3EB5395075B9C65FF1307D98608BDC1D88ACE4A375DD9DFD9 ] MCLIENT        C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
06:23:27.0916 0x16a4  MCLIENT - ok
06:23:27.0960 0x16a4  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc        C:\windows\system32\Mcx2Svc.dll
06:23:27.0966 0x16a4  Mcx2Svc - ok
06:23:27.0989 0x16a4  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas        C:\windows\system32\DRIVERS\megasas.sys
06:23:27.0991 0x16a4  megasas - ok
06:23:28.0018 0x16a4  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\windows\system32\DRIVERS\MegaSR.sys
06:23:28.0035 0x16a4  MegaSR - ok
06:23:28.0070 0x16a4  [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64          C:\windows\system32\DRIVERS\HECIx64.sys
06:23:28.0072 0x16a4  MEIx64 - ok
06:23:28.0116 0x16a4  [ 4ED2FB4C002D7147C40C37EC9617BEAF, 1CEC51DAD293F769E15254E870179A60C6874DA4268416AE99A2A0980760B8D6 ] MfeEpeOpal      C:\windows\system32\drivers\MfeEpeOpal.sys
06:23:28.0119 0x16a4  MfeEpeOpal - ok
06:23:28.0143 0x16a4  [ CECEA4A76F776AE0B709093822C99AD5, 03A86246E968C3DE7C718B1F674C1A5EC43DDFC673A85E9C4E36FAA2D259FE92 ] MfeEpePc        C:\windows\system32\drivers\MfeEpePc.sys
06:23:28.0149 0x16a4  MfeEpePc - ok
06:23:28.0201 0x16a4  Microsoft SharePoint Workspace Audit Service - ok
06:23:28.0223 0x16a4  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS          C:\windows\system32\mmcss.dll
06:23:28.0227 0x16a4  MMCSS - ok
06:23:28.0253 0x16a4  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem          C:\windows\system32\drivers\modem.sys
06:23:28.0255 0x16a4  Modem - ok
06:23:28.0280 0x16a4  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor        C:\windows\system32\DRIVERS\monitor.sys
06:23:28.0282 0x16a4  monitor - ok
06:23:28.0311 0x16a4  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\windows\system32\DRIVERS\mouclass.sys
06:23:28.0314 0x16a4  mouclass - ok
06:23:28.0328 0x16a4  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\windows\system32\DRIVERS\mouhid.sys
06:23:28.0330 0x16a4  mouhid - ok
06:23:28.0376 0x16a4  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\windows\system32\drivers\mountmgr.sys
06:23:28.0379 0x16a4  mountmgr - ok
06:23:28.0424 0x16a4  [ F17FD0051108B5AE5ED37FF24CEF2183, AB98A9954942D5A98C44539B5BDC790B2B0240D09437481EF96D22C8E57B221C ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
06:23:28.0429 0x16a4  MozillaMaintenance - ok
06:23:28.0461 0x16a4  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\windows\system32\drivers\mpio.sys
06:23:28.0469 0x16a4  mpio - ok
06:23:28.0485 0x16a4  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\windows\system32\drivers\mpsdrv.sys
06:23:28.0489 0x16a4  mpsdrv - ok
06:23:28.0556 0x16a4  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\windows\system32\mpssvc.dll
06:23:28.0589 0x16a4  MpsSvc - ok
06:23:28.0633 0x16a4  [ DC722758B8261E1ABAFD31A3C0A66380, 88BBE073E2CCD1DAB4656DDC53D5161E8A91D035ADAC1465D0CEBA86F1BB6D9A ] MRxDAV          C:\windows\system32\drivers\mrxdav.sys
06:23:28.0637 0x16a4  MRxDAV - ok
06:23:28.0670 0x16a4  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\windows\system32\DRIVERS\mrxsmb.sys
06:23:28.0675 0x16a4  mrxsmb - ok
06:23:28.0695 0x16a4  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\windows\system32\DRIVERS\mrxsmb10.sys
06:23:28.0706 0x16a4  mrxsmb10 - ok
06:23:28.0732 0x16a4  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\windows\system32\DRIVERS\mrxsmb20.sys
06:23:28.0736 0x16a4  mrxsmb20 - ok
06:23:28.0764 0x16a4  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\windows\system32\drivers\msahci.sys
06:23:28.0766 0x16a4  msahci - ok
06:23:28.0796 0x16a4  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm          C:\windows\system32\drivers\msdsm.sys
06:23:28.0800 0x16a4  msdsm - ok
06:23:28.0820 0x16a4  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC          C:\windows\System32\msdtc.exe
06:23:28.0826 0x16a4  MSDTC - ok
06:23:28.0857 0x16a4  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\windows\system32\drivers\Msfs.sys
06:23:28.0858 0x16a4  Msfs - ok
06:23:28.0873 0x16a4  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf      C:\windows\System32\drivers\mshidkmdf.sys
06:23:28.0875 0x16a4  mshidkmdf - ok
06:23:28.0902 0x16a4  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\windows\system32\drivers\msisadrv.sys
06:23:28.0904 0x16a4  msisadrv - ok
06:23:28.0939 0x16a4  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI        C:\windows\system32\iscsiexe.dll
06:23:28.0947 0x16a4  MSiSCSI - ok
06:23:28.0953 0x16a4  msiserver - ok
06:23:28.0972 0x16a4  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV        C:\windows\system32\drivers\MSKSSRV.sys
06:23:28.0973 0x16a4  MSKSSRV - ok
06:23:28.0986 0x16a4  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\windows\system32\drivers\MSPCLOCK.sys
06:23:28.0988 0x16a4  MSPCLOCK - ok
06:23:28.0996 0x16a4  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM          C:\windows\system32\drivers\MSPQM.sys
06:23:28.0998 0x16a4  MSPQM - ok
06:23:29.0052 0x16a4  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC          C:\windows\system32\drivers\MsRPC.sys
06:23:29.0069 0x16a4  MsRPC - ok
06:23:29.0103 0x16a4  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\windows\system32\drivers\mssmbios.sys
06:23:29.0104 0x16a4  mssmbios - ok
06:23:29.0111 0x16a4  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE          C:\windows\system32\drivers\MSTEE.sys
06:23:29.0113 0x16a4  MSTEE - ok
06:23:29.0133 0x16a4  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\windows\system32\DRIVERS\MTConfig.sys
06:23:29.0135 0x16a4  MTConfig - ok
06:23:29.0152 0x16a4  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup            C:\windows\system32\Drivers\mup.sys
06:23:29.0155 0x16a4  Mup - ok
06:23:29.0221 0x16a4  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\windows\system32\qagentRT.dll
06:23:29.0247 0x16a4  napagent - ok
06:23:29.0294 0x16a4  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP    C:\windows\system32\DRIVERS\nwifi.sys
06:23:29.0310 0x16a4  NativeWifiP - ok
06:23:29.0412 0x16a4  [ 702E07EC32F96ACDB873E9A5465D4401, 2C6B1C8BA0BF4791AEA064062DCA3678AE4443DF19DB37D6CB55BA6297D8A238 ] NAVENG          C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131002.003\ENG64.SYS
06:23:29.0417 0x16a4  NAVENG - ok
06:23:29.0511 0x16a4  [ 302EA314A1AF0D7CEF0A3D0195F79561, 046DBC2D9D028F2D2E8BAE745CA2ADEF42741689BFF743A13B81EA4228DDCDC6 ] NAVEX15        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131002.003\EX64.SYS
06:23:29.0600 0x16a4  NAVEX15 - ok
06:23:29.0661 0x16a4  [ 1BF9D6476061B31CD7FC2BF848529A56, 95B585543240E823D7850ADEEEA7A4738EF9E18A4B07D921F145F6EF466F0271 ] NCO            C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
06:23:29.0666 0x16a4  NCO - ok
06:23:29.0722 0x16a4  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\windows\system32\drivers\ndis.sys
06:23:29.0759 0x16a4  NDIS - ok
06:23:29.0782 0x16a4  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap        C:\windows\system32\DRIVERS\ndiscap.sys
06:23:29.0784 0x16a4  NdisCap - ok
06:23:29.0797 0x16a4  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\windows\system32\DRIVERS\ndistapi.sys
06:23:29.0799 0x16a4  NdisTapi - ok
06:23:29.0826 0x16a4  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio        C:\windows\system32\DRIVERS\ndisuio.sys
06:23:29.0829 0x16a4  Ndisuio - ok
06:23:29.0868 0x16a4  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan        C:\windows\system32\DRIVERS\ndiswan.sys
06:23:29.0874 0x16a4  NdisWan - ok
06:23:29.0890 0x16a4  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy        C:\windows\system32\drivers\NDProxy.sys
06:23:29.0894 0x16a4  NDProxy - ok
06:23:29.0916 0x16a4  [ 6F4607E2333FE21E9E3FF8133A88B35B, F7B7B262D85D03552A8D0F3F91E795B31E3D09020DDA1E3D62A4A3209D916BB6 ] Netaapl        C:\windows\system32\DRIVERS\netaapl64.sys
06:23:29.0918 0x16a4  Netaapl - ok
06:23:29.0932 0x16a4  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS        C:\windows\system32\DRIVERS\netbios.sys
06:23:29.0935 0x16a4  NetBIOS - ok
06:23:29.0985 0x16a4  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT          C:\windows\system32\DRIVERS\netbt.sys
06:23:29.0996 0x16a4  NetBT - ok
06:23:30.0016 0x16a4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] Netlogon        C:\windows\system32\lsass.exe
06:23:30.0018 0x16a4  Netlogon - ok
06:23:30.0053 0x16a4  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\windows\System32\netman.dll
06:23:30.0065 0x16a4  Netman - ok
06:23:30.0112 0x16a4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:23:30.0117 0x16a4  NetMsmqActivator - ok
06:23:30.0128 0x16a4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:23:30.0133 0x16a4  NetPipeActivator - ok
06:23:30.0176 0x16a4  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\windows\System32\netprofm.dll
06:23:30.0193 0x16a4  netprofm - ok
06:23:30.0205 0x16a4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9C
Avatar billede f-arn Guru
03. oktober 2013 - 12:17 #40
Hvis du læser det jeg skrev om TDSSKiller, vil du se at du skal sætte flueben i "Detect TDLFS file system" og at loggen sikkert skal deles i to.

Du har glemt fluebenet, og loggen er ikke komplet :)
Avatar billede mathilda Nybegynder
03. oktober 2013 - 15:47 #41
TDSKiller log 1

15:06:18.0289 0x1b30  TDSS rootkit removing tool 3.0.0.11 Sep 30 2013 09:17:03
15:06:20.0301 0x1b30  ============================================================
15:06:20.0301 0x1b30  Current date / time: 2013/10/03 15:06:20.0301
15:06:20.0301 0x1b30  SystemInfo:
15:06:20.0301 0x1b30 
15:06:20.0301 0x1b30  OS Version: 6.1.7601 ServicePack: 1.0
15:06:20.0301 0x1b30  Product type: Workstation
15:06:20.0301 0x1b30  ComputerName: TORBEN-HP
15:06:20.0301 0x1b30  UserName: Torben
15:06:20.0301 0x1b30  Windows directory: C:\windows
15:06:20.0301 0x1b30  System windows directory: C:\windows
15:06:20.0301 0x1b30  Running under WOW64
15:06:20.0301 0x1b30  Processor architecture: Intel x64
15:06:20.0301 0x1b30  Number of processors: 4
15:06:20.0301 0x1b30  Page size: 0x1000
15:06:20.0301 0x1b30  Boot type: Normal boot
15:06:20.0301 0x1b30  ============================================================
15:06:22.0095 0x1b30  System UUID: {3C751FD7-5BC4-E3C3-3814-E2FBDB226CBA}
15:06:25.0591 0x1b30  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:06:25.0606 0x1b30  ============================================================
15:06:25.0606 0x1b30  \Device\Harddisk0\DR0:
15:06:25.0606 0x1b30  MBR partitions:
15:06:25.0606 0x1b30  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x96000
15:06:25.0606 0x1b30  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x96800, BlocksNum 0x224DA000
15:06:25.0606 0x1b30  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x22570800, BlocksNum 0x24BC800
15:06:25.0606 0x1b30  \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x24A2D000, BlocksNum 0xA01000
15:06:25.0606 0x1b30  ============================================================
15:06:26.0074 0x1b30  C: <-> \Device\Harddisk0\DR0\Partition2
15:06:26.0620 0x1b30  D: <-> \Device\Harddisk0\DR0\Partition3
15:06:26.0698 0x1b30  E: <-> \Device\Harddisk0\DR0\Partition4
15:06:26.0698 0x1b30  ============================================================
15:06:26.0698 0x1b30  Initialize success
15:06:26.0698 0x1b30  ============================================================
15:06:40.0504 0x17e4  ============================================================
15:06:40.0504 0x17e4  Scan started
15:06:40.0504 0x17e4  Mode: Manual; TDLFS;
15:06:40.0504 0x17e4  ============================================================
15:06:40.0504 0x17e4  KSN ping started
15:06:49.0630 0x17e4  KSN ping finished: true
15:06:50.0582 0x17e4  ================ Scan system memory ========================
15:06:50.0582 0x17e4  System memory - ok
15:06:50.0582 0x17e4  ================ Scan services =============================
15:06:50.0769 0x17e4  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\windows\system32\drivers\1394ohci.sys
15:06:51.0034 0x17e4  1394ohci - ok
15:06:51.0362 0x17e4  [ A3D3A95303269011060BBCFB97CA1DD5, D472C7B91BBDBDBA820089D204D64CAEF17184B2BEEBD48EC3A178BF06435713 ] Accelerometer  C:\windows\system32\DRIVERS\Accelerometer.sys
15:06:51.0362 0x17e4  Accelerometer - ok
15:06:51.0534 0x17e4  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\windows\system32\drivers\ACPI.sys
15:06:51.0534 0x17e4  ACPI - ok
15:06:51.0658 0x17e4  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi        C:\windows\system32\drivers\acpipmi.sys
15:06:51.0674 0x17e4  AcpiPmi - ok
15:06:52.0360 0x17e4  [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:06:52.0360 0x17e4  AdobeARMservice - ok
15:06:53.0109 0x17e4  [ 3109B16A0939BA11696EEB04F345D099, 8863EFE3631F0F4D8F6BAE804DBB01564FF2969D53393B2887F682427C289B25 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:06:53.0203 0x17e4  AdobeFlashPlayerUpdateSvc - ok
15:06:53.0250 0x17e4  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx        C:\windows\system32\DRIVERS\adp94xx.sys
15:06:53.0484 0x17e4  adp94xx - ok
15:06:53.0952 0x17e4  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci        C:\windows\system32\DRIVERS\adpahci.sys
15:06:54.0123 0x17e4  adpahci - ok
15:06:54.0201 0x17e4  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320        C:\windows\system32\DRIVERS\adpu320.sys
15:06:54.0279 0x17e4  adpu320 - ok
15:06:54.0342 0x17e4  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc    C:\windows\System32\aelupsvc.dll
15:06:54.0357 0x17e4  AeLookupSvc - ok
15:06:55.0215 0x17e4  [ A6FB9DB8F1A86861D955FD6975977AE0, 788C6EE50719227D7A9B7F08C8D5E1289FCD0E8AC23A1021A5093D2E8368F696 ] AESTFilters    C:\Program Files\IDT\WDM\AESTSr64.exe
15:06:55.0231 0x17e4  AESTFilters - ok
15:06:55.0496 0x17e4  [ 6CCD1135320109D6B219F1A6E04AD9F6, B97D4DF46DF0EFC106BD3E248C70809F3F47DF3FD1CA039A0A3923E1FA05A969 ] Afc            C:\windows\syswow64\drivers\Afc.sys
15:06:55.0496 0x17e4  Afc - ok
15:06:55.0714 0x17e4  [ 1C7857B62DE5994A75B054A9FD4C3825, 83F963D7E636532B1AD30B1E727EC429317CA540F6EB3BB268FCC0B163B67767 ] AFD            C:\windows\system32\drivers\afd.sys
15:06:55.0746 0x17e4  AFD - ok
15:06:55.0808 0x17e4  [ 48008D4EA73C1058F36D323A644410D4, D0219AE0197BBD4C7BD75CD7564013B11497562F71C97918856B176942D86F65 ] AgereModemAudio C:\Program Files\LSI SoftModem\agr64svc.exe
15:06:55.0808 0x17e4  AgereModemAudio - ok
15:06:56.0073 0x17e4  [ DDF52C4C92D831A4CDB7788B37585E36, 604EB7E1F254A085364F652C41F560044439EA9B3D98EF0FEBC0B5AB8C6FFFC0 ] AgereSoftModem  C:\windows\system32\DRIVERS\agrsm64.sys
15:06:56.0151 0x17e4  AgereSoftModem - ok
15:06:56.0245 0x17e4  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\windows\system32\drivers\agp440.sys
15:06:56.0260 0x17e4  agp440 - ok
15:06:56.0354 0x17e4  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG            C:\windows\System32\alg.exe
15:06:56.0370 0x17e4  ALG - ok
15:06:56.0526 0x17e4  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\windows\system32\drivers\aliide.sys
15:06:56.0853 0x17e4  aliide - ok
15:06:56.0962 0x17e4  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\windows\system32\drivers\amdide.sys
15:06:57.0087 0x17e4  amdide - ok
15:06:57.0150 0x17e4  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8          C:\windows\system32\DRIVERS\amdk8.sys
15:06:57.0290 0x17e4  AmdK8 - ok
15:06:57.0321 0x17e4  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\windows\system32\DRIVERS\amdppm.sys
15:06:57.0384 0x17e4  AmdPPM - ok
15:06:57.0430 0x17e4  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata        C:\windows\system32\drivers\amdsata.sys
15:06:57.0462 0x17e4  amdsata - ok
15:06:57.0540 0x17e4  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\windows\system32\DRIVERS\amdsbs.sys
15:06:57.0602 0x17e4  amdsbs - ok
15:06:57.0633 0x17e4  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata        C:\windows\system32\drivers\amdxata.sys
15:06:57.0633 0x17e4  amdxata - ok
15:06:57.0680 0x17e4  [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID          C:\windows\system32\drivers\appid.sys
15:06:57.0680 0x17e4  AppID - ok
15:06:57.0711 0x17e4  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\windows\System32\appidsvc.dll
15:06:57.0711 0x17e4  AppIDSvc - ok
15:06:57.0805 0x17e4  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo        C:\windows\System32\appinfo.dll
15:06:57.0805 0x17e4  Appinfo - ok
15:06:58.0195 0x17e4  [ 4FE5C6D40664AE07BE5105874357D2ED, 70DD05EE80B77EB2F781E0919885D1BBB1119EA1A8955935AF5AECD05E30F14A ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:06:58.0195 0x17e4  Apple Mobile Device - ok
15:06:58.0304 0x17e4  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt        C:\windows\System32\appmgmts.dll
15:06:58.0335 0x17e4  AppMgmt - ok
15:06:58.0413 0x17e4  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc            C:\windows\system32\DRIVERS\arc.sys
15:06:58.0444 0x17e4  arc - ok
15:06:58.0491 0x17e4  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\windows\system32\DRIVERS\arcsas.sys
15:06:58.0522 0x17e4  arcsas - ok
15:06:58.0522 0x17e4  ARCVCAM - ok
15:06:59.0131 0x17e4  [ 9217D874131AE6FF8F642F124F00A555, BE2923D5AA7748FDAAED73AF567D015517B36F1C739C6E5637DD15112EFDF495 ] aspnet_state    C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
15:06:59.0271 0x17e4  aspnet_state - ok
15:06:59.0318 0x17e4  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\windows\system32\DRIVERS\asyncmac.sys
15:06:59.0365 0x17e4  AsyncMac - ok
15:06:59.0490 0x17e4  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi          C:\windows\system32\drivers\atapi.sys
15:06:59.0630 0x17e4  atapi - ok
15:06:59.0926 0x17e4  [ 4885C14A6AB6969B5773A42DA0BA3DA4, E317E1E299543FBD9853C71E1CF8019343B6234B9AAF56ABF48C41BB7743490B ] AthBTPort      C:\windows\system32\DRIVERS\btath_flt.sys
15:07:00.0285 0x17e4  AthBTPort - ok
15:07:00.0332 0x17e4  [ 0D21FF67523897518C88F00CCDF09CCC, 0D23D7BC51C1EC0ADBFBFCA0BC1D20BD4E094C22FA3DC37FFBC0F0A6C62C7C33 ] ATHDFU          C:\windows\system32\Drivers\AthDfu.sys
15:07:00.0332 0x17e4  ATHDFU - ok
15:07:00.0472 0x17e4  [ 27EB9EC5A9BA471ECD392605BD7E7F5C, F9443A98E4F743C5B1DEB82C015CC535687C97461E0FEE0362DB5E44BB3E0A5E ] AtherosSvc      C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
15:07:00.0488 0x17e4  AtherosSvc - ok
15:07:00.0831 0x17e4  [ CE197ECAA255ACC7A7765DC24FAB3A0D, 932372AD0CA012BDF0A6C5B4E3EADE15BF3A09D3881EB73CF6C57BF19739D6E3 ] athr            C:\windows\system32\DRIVERS\athrx.sys
15:07:01.0096 0x17e4  athr - ok
15:07:01.0268 0x17e4  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
15:07:01.0284 0x17e4  AudioEndpointBuilder - ok
15:07:01.0299 0x17e4  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\windows\System32\Audiosrv.dll
15:07:01.0315 0x17e4  AudioSrv - ok
15:07:01.0486 0x17e4  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\windows\System32\AxInstSV.dll
15:07:01.0596 0x17e4  AxInstSV - ok
15:07:01.0705 0x17e4  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv        C:\windows\system32\DRIVERS\bxvbda.sys
15:07:01.0736 0x17e4  b06bdrv - ok
15:07:02.0032 0x17e4  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\windows\system32\DRIVERS\b57nd60a.sys
15:07:02.0095 0x17e4  b57nd60a - ok
15:07:02.0391 0x17e4  [ 369C1928C9BBED65C9E347448BD376B0, FFADEEBD2A24EB2C362958FAE467F7B319D9AE1EE9B5724CDB6B70FBE31E6EE8 ] BBSvc          C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
15:07:02.0407 0x17e4  BBSvc - ok
15:07:02.0625 0x17e4  [ 54949AFAC5CE6FA2E4D7846D4362BAB3, 1C7025FF250023991BB719C5E03C9F9EB861E08F3B11DFB2AFDC83A81F6A39DD ] BBUpdate        C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
15:07:02.0625 0x17e4  BBUpdate - ok
15:07:02.0766 0x17e4  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\windows\System32\bdesvc.dll
15:07:02.0890 0x17e4  BDESVC - ok
15:07:02.0906 0x17e4  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\windows\system32\drivers\Beep.sys
15:07:02.0922 0x17e4  Beep - ok
15:07:03.0187 0x17e4  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE            C:\windows\System32\bfe.dll
15:07:03.0202 0x17e4  BFE - ok
15:07:04.0232 0x17e4  [ 4AD1940DAAAC84036B65EF78BAE42208, C17B159554A4CC11B432AB00819972836529A0EFE48B8B6E5ADE7CF7FDD1A148 ] BHDrvx64        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys
15:07:04.0263 0x17e4  BHDrvx64 - ok
15:07:04.0747 0x17e4  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\windows\System32\qmgr.dll
15:07:04.0762 0x17e4  BITS - ok
15:07:04.0965 0x17e4  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\windows\system32\DRIVERS\blbdrive.sys
15:07:04.0965 0x17e4  blbdrive - ok
15:07:05.0028 0x17e4  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:07:05.0043 0x17e4  Bonjour Service - ok
15:07:05.0074 0x17e4  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\windows\system32\DRIVERS\bowser.sys
15:07:05.0090 0x17e4  bowser - ok
15:07:05.0106 0x17e4  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\windows\system32\DRIVERS\BrFiltLo.sys
15:07:05.0106 0x17e4  BrFiltLo - ok
15:07:05.0121 0x17e4  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\windows\system32\DRIVERS\BrFiltUp.sys
15:07:05.0137 0x17e4  BrFiltUp - ok
15:07:05.0277 0x17e4  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser        C:\windows\System32\browser.dll
15:07:05.0277 0x17e4  Browser - ok
15:07:05.0449 0x17e4  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid        C:\windows\System32\Drivers\Brserid.sys
15:07:05.0464 0x17e4  Brserid - ok
15:07:05.0527 0x17e4  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\windows\System32\Drivers\BrSerWdm.sys
15:07:05.0542 0x17e4  BrSerWdm - ok
15:07:05.0558 0x17e4  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\windows\System32\Drivers\BrUsbMdm.sys
15:07:05.0574 0x17e4  BrUsbMdm - ok
15:07:05.0667 0x17e4  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\windows\System32\Drivers\BrUsbSer.sys
15:07:05.0698 0x17e4  BrUsbSer - ok
15:07:05.0979 0x17e4  [ E53B1FF861DCD4A66858F1B74B051402, 200590F1A9BE0F6AF5AB1016291CD1EC6DAEEF1E920698806782F29F4E9A7D73 ] BTATH_A2DP      C:\windows\system32\drivers\btath_a2dp.sys
15:07:06.0010 0x17e4  BTATH_A2DP - ok
15:07:06.0088 0x17e4  [ D0632BBEFF06098354AF3401ACA4494F, 753645304CCA307D3F6C87CA8F199CB15972CB789B44E2F55C6071F7F068809E ] btath_avdt      C:\windows\system32\drivers\btath_avdt.sys
15:07:06.0088 0x17e4  btath_avdt - ok
15:07:06.0120 0x17e4  [ 8170714B89CA05E6C35FEFB9DA7653D8, 92411525217FC2589947C70F7B12FAA3E3053A9FE98D11F4F96A48DAC2AC7E90 ] BTATH_BUS      C:\windows\system32\DRIVERS\btath_bus.sys
15:07:06.0120 0x17e4  BTATH_BUS - ok
15:07:06.0135 0x17e4  [ 77F498F46192EF92C0144B5B13C50B4B, 99B2BCD3039169CC1CE30E436100F89435D6D156C051268360C9FFE78333BDA7 ] BTATH_HCRP      C:\windows\system32\DRIVERS\btath_hcrp.sys
15:07:06.0244 0x17e4  BTATH_HCRP - ok
15:07:06.0478 0x17e4  [ D0AA846BCF0E85E1513C8DF2FC6F8BF1, FADA2949202CE2FB92B5256AE2070C78E70CE712E45F547532BDDAA7E3FE141E ] BTATH_LWFLT    C:\windows\system32\DRIVERS\btath_lwflt.sys
15:07:06.0494 0x17e4  BTATH_LWFLT - ok
15:07:06.0556 0x17e4  [ F8056CE360559AB0C390618DAD63193E, 5D243E025DF816FDB8CC4D12657A91E534812D8283D1285534998EE76D00CB58 ] BTATH_RCP      C:\windows\system32\DRIVERS\btath_rcp.sys
15:07:06.0603 0x17e4  BTATH_RCP - ok
15:07:06.0822 0x17e4  [ CBF4EF7E9FE86CE0CAB0A6472DE34A1C, 7E4B410E1BC0BBC3B7CECF4B7396070E3FFB99D73CF185CBF38E65A79DDBB780 ] BtFilter        C:\windows\system32\DRIVERS\btfilter.sys
15:07:06.0915 0x17e4  BtFilter - ok
15:07:06.0978 0x17e4  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum        C:\windows\system32\DRIVERS\BthEnum.sys
15:07:07.0102 0x17e4  BthEnum - ok
15:07:07.0118 0x17e4  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\windows\system32\DRIVERS\bthmodem.sys
15:07:07.0149 0x17e4  BTHMODEM - ok
15:07:07.0290 0x17e4  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\windows\system32\DRIVERS\bthpan.sys
15:07:07.0477 0x17e4  BthPan - ok
15:07:07.0742 0x17e4  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT        C:\windows\system32\Drivers\BTHport.sys
15:07:07.0773 0x17e4  BTHPORT - ok
15:07:08.0148 0x17e4  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv        C:\windows\system32\bthserv.dll
15:07:08.0288 0x17e4  bthserv - ok
15:07:08.0319 0x17e4  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\windows\system32\Drivers\BTHUSB.sys
15:07:08.0319 0x17e4  BTHUSB - ok
15:07:08.0366 0x17e4  [ 555FA105C22B1616094EDAD1CBFB0551, 3DB8EB0F95589E8CC338AE033C314256296F0BF039B338CF023FE393CF80840C ] cbfs3          C:\windows\system32\drivers\cbfs3.sys
15:07:08.0397 0x17e4  cbfs3 - ok
15:07:08.0460 0x17e4  [ 248C952C82DF1E23775432774CBB20F1, D04D382E7963B84E4856534A2FA209787FEBA2B6F21F579CA8F7C6BE4AA10072 ] ccSet_MCLIENT  C:\windows\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys
15:07:08.0475 0x17e4  ccSet_MCLIENT - ok
15:07:08.0538 0x17e4  [ A5C16A0BE89EE409732178BEB62F7EA7, D4B993F63CFD9B487BD53B532AB9435084B4C752F2731E189FA1420D516A4E95 ] ccSet_NIS      C:\windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys
15:07:08.0553 0x17e4  ccSet_NIS - ok
15:07:08.0787 0x17e4  [ 56685951208AC81CF923B9B08BEDF3B7, F5FF438B9A54AD8D54E82DE60E1771C9685A95D5E590D69EB1E4E78D3B9B7769 ] ccSet_NST      C:\windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys
15:07:08.0834 0x17e4  ccSet_NST - ok
15:07:08.0896 0x17e4  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\windows\system32\DRIVERS\cdfs.sys
15:07:08.0959 0x17e4  cdfs - ok
15:07:09.0037 0x17e4  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom          C:\windows\system32\DRIVERS\cdrom.sys
15:07:09.0068 0x17e4  cdrom - ok
15:07:09.0177 0x17e4  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc    C:\windows\System32\certprop.dll
15:07:09.0177 0x17e4  CertPropSvc - ok
15:07:09.0240 0x17e4  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\windows\system32\DRIVERS\circlass.sys
15:07:09.0271 0x17e4  circlass - ok
15:07:09.0474 0x17e4  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\windows\system32\CLFS.sys
15:07:09.0583 0x17e4  CLFS - ok
15:07:09.0817 0x17e4  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:07:09.0926 0x17e4  clr_optimization_v2.0.50727_32 - ok
15:07:10.0130 0x17e4  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
15:07:10.0161 0x17e4  clr_optimization_v2.0.50727_64 - ok
15:07:10.0535 0x17e4  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:07:13.0235 0x17e4  clr_optimization_v4.0.30319_32 - ok
15:07:13.0298 0x17e4  [ C6F9AF94DCD58122A4D7E89DB6BED29D, CB0E5AE60EC76323585FB86D89E8DB7ADB5EDF6EA3D0B27E9ECE75B8CAA8BFDE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:07:13.0828 0x17e4  clr_optimization_v4.0.30319_64 - ok
15:07:13.0890 0x17e4  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\windows\system32\DRIVERS\CmBatt.sys
15:07:14.0031 0x17e4  CmBatt - ok
15:07:14.0156 0x17e4  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\windows\system32\drivers\cmdide.sys
15:07:14.0296 0x17e4  cmdide - ok
15:07:14.0530 0x17e4  [ AAFCB52FE0037207FB6FBEA070D25EFE, 7D035BFB6DD86944CCDE6D71811891406D7FD08344EF8CF57C4D932E096F1377 ] CNG            C:\windows\system32\Drivers\cng.sys
15:07:14.0670 0x17e4  CNG - ok
15:07:14.0717 0x17e4  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\windows\system32\DRIVERS\compbatt.sys
15:07:14.0748 0x17e4  Compbatt - ok
15:07:14.0811 0x17e4  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\windows\system32\drivers\CompositeBus.sys
15:07:14.0826 0x17e4  CompositeBus - ok
15:07:14.0826 0x17e4  COMSysApp - ok
15:07:14.0842 0x17e4  CpqDfw - ok
15:07:14.0982 0x17e4  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk        C:\windows\system32\DRIVERS\crcdisk.sys
15:07:14.0998 0x17e4  crcdisk - ok
15:07:15.0154 0x17e4  [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc        C:\windows\system32\cryptsvc.dll
15:07:15.0154 0x17e4  CryptSvc - ok
15:07:15.0310 0x17e4  [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC            C:\windows\system32\drivers\csc.sys
15:07:15.0372 0x17e4  CSC - ok
15:07:15.0606 0x17e4  [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService      C:\windows\System32\cscsvc.dll
15:07:15.0622 0x17e4  CscService - ok
15:07:15.0716 0x17e4  [ 2E3374F9F0B5A3247B779978980C24CB, 21DE1C89252703198E192C91DD41307851457FCC9E10EEB1B9AF03AAAB35AD78 ] DAMDrv          C:\windows\system32\DRIVERS\DAMDrv64.sys
15:07:15.0747 0x17e4  DAMDrv - ok
15:07:15.0903 0x17e4  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\windows\system32\rpcss.dll
15:07:15.0918 0x17e4  DcomLaunch - ok
15:07:16.0043 0x17e4  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc      C:\windows\System32\defragsvc.dll
15:07:16.0137 0x17e4  defragsvc - ok
15:07:16.0262 0x17e4  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\windows\system32\Drivers\dfsc.sys
15:07:16.0386 0x17e4  DfsC - ok
15:07:16.0542 0x17e4  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\windows\system32\dhcpcore.dll
15:07:16.0542 0x17e4  Dhcp - ok
15:07:16.0683 0x17e4  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\windows\system32\drivers\discache.sys
15:07:16.0683 0x17e4  discache - ok
15:07:16.0761 0x17e4  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\windows\system32\DRIVERS\disk.sys
15:07:16.0823 0x17e4  Disk - ok
15:07:16.0932 0x17e4  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\windows\System32\dnsrslvr.dll
15:07:16.0932 0x17e4  Dnscache - ok
15:07:17.0120 0x17e4  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc        C:\windows\System32\dot3svc.dll
15:07:17.0244 0x17e4  dot3svc - ok
15:07:17.0322 0x17e4  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] dot4            C:\windows\system32\DRIVERS\Dot4.sys
15:07:17.0478 0x17e4  dot4 - ok
15:07:17.0510 0x17e4  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print      C:\windows\system32\DRIVERS\Dot4Prt.sys
15:07:17.0525 0x17e4  Dot4Print - ok
15:07:17.0572 0x17e4  [ 488669CD1CD3BDCFDD9A5FDA72209069, CCB6BCB23A30CFD016E4086ED010A0E9DA647D3FAD9724200A29938D2B79A3C0 ] Dot4Scan        C:\windows\system32\DRIVERS\Dot4Scan.sys
15:07:17.0712 0x17e4  Dot4Scan - ok
15:07:17.0759 0x17e4  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb        C:\windows\system32\DRIVERS\dot4usb.sys
15:07:17.0806 0x17e4  dot4usb - ok
15:07:18.0555 0x17e4  [ 0B9134A45E88DCF0657382F277242F62, 3AC5A8705D53BD9D1325E7E0E8AC2B3044264B521C855BFAB5949E4AEA2E4DBC ] DpHost          C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
15:07:18.0570 0x17e4  DpHost - ok
15:07:18.0758 0x17e4  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS            C:\windows\system32\dps.dll
15:07:18.0758 0x17e4  DPS - ok
15:07:18.0851 0x17e4  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud        C:\windows\system32\drivers\drmkaud.sys
15:07:18.0960 0x17e4  drmkaud - ok
15:07:19.0350 0x17e4  [ 1A986E433B8EB2375F55961D993746B3, FAEDC1F812C1CA6AAD4546751EB4A5A0D1143E8CC58B24E8660D87D44E9EDB9D ] DXGKrnl        C:\windows\System32\drivers\dxgkrnl.sys
15:07:19.0475 0x17e4  DXGKrnl - ok
15:07:19.0522 0x17e4  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost        C:\windows\System32\eapsvc.dll
15:07:19.0538 0x17e4  EapHost - ok
15:07:20.0115 0x17e4  [ 0CD6BE2D93DB0B4B780985F63DCF8039, F6B6E4CA85ECCFBFB2A71E0A621A08F99E3300E158C7152CE1AD502A9796D28E ] EaseUS Agent    C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
15:07:20.0318 0x17e4  EaseUS Agent - ok
15:07:20.0474 0x17e4  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv          C:\windows\system32\DRIVERS\evbda.sys
15:07:20.0676 0x17e4  ebdrv - ok
15:07:20.0848 0x17e4  [ A2DA3D8E0B336E13F7A155B5789B58CF, D492E24807857547F62E69B8F2935ABC48113C28832B1155AB3186D04A63DEF1 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
15:07:20.0864 0x17e4  eeCtrl - ok
15:07:20.0895 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] EFS            C:\windows\System32\lsass.exe
15:07:20.0926 0x17e4  EFS - ok
15:07:21.0425 0x17e4  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr        C:\windows\ehome\ehRecvr.exe
15:07:21.0472 0x17e4  ehRecvr - ok
15:07:21.0534 0x17e4  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched        C:\windows\ehome\ehsched.exe
15:07:21.0628 0x17e4  ehSched - ok
15:07:21.0800 0x17e4  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor        C:\windows\system32\DRIVERS\elxstor.sys
15:07:21.0862 0x17e4  elxstor - ok
15:07:21.0956 0x17e4  [ 23C3061D2F7F8BCB6140A098447035B4, A89A628D99637DA72F51E90A6C3CBAAB552B423447C2EDC561E3D7CCB4D7EAB7 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
15:07:21.0971 0x17e4  EraserUtilRebootDrv - ok
15:07:22.0002 0x17e4  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\windows\system32\drivers\errdev.sys
15:07:22.0018 0x17e4  ErrDev - ok
15:07:22.0049 0x17e4  esgiguard - ok
15:07:22.0080 0x17e4  [ 8903FDB9A849396DCC3B9C6F0748D3B2, 5792A31D37C7CE99F7D4AB52FCC9453129B2A276BE4E95A17778E1CB2D31FA40 ] EUBAKUP        C:\windows\system32\drivers\eubakup.sys
15:07:22.0080 0x17e4  EUBAKUP - ok
15:07:22.0096 0x17e4  [ F5C66F29C559363B7E78B968B225570A, E1B0929CA88100B32A3684A683A204F89754BED567DA279FAC3714D1AC9AC996 ] EUBKMON        C:\windows\system32\drivers\EUBKMON.sys
15:07:22.0096 0x17e4  EUBKMON - ok
15:07:22.0112 0x17e4  [ 379CBA04EABE4DD2226C8BD39E4D1AD9, EAF2DCF55860BEEE5AEB35723F2BE21E27EAB66DC65FE7F80E3E5E19109ADDE7 ] EUDSKACS        C:\windows\system32\drivers\eudskacs.sys
15:07:22.0112 0x17e4  EUDSKACS - ok
15:07:22.0127 0x17e4  [ DCE38A7B0C788EB269A89AC6B377250B, EE843A1114DD740BF3117AFB4806A390FC5F7C98F2C7F4FE10BD64D61EC8055E ] EUFDDISK        C:\windows\system32\drivers\EuFdDisk.sys
15:07:22.0143 0x17e4  EUFDDISK - ok
15:07:22.0283 0x17e4  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem    C:\windows\system32\es.dll
15:07:22.0424 0x17e4  EventSystem - ok
15:07:22.0470 0x17e4  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat          C:\windows\system32\drivers\exfat.sys
15:07:22.0548 0x17e4  exfat - ok
15:07:22.0595 0x17e4  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat        C:\windows\system32\drivers\fastfat.sys
15:07:22.0595 0x17e4  fastfat - ok
15:07:22.0907 0x17e4  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax            C:\windows\system32\fxssvc.exe
15:07:23.0001 0x17e4  Fax - ok
15:07:23.0157 0x17e4  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc            C:\windows\system32\DRIVERS\fdc.sys
15:07:23.0391 0x17e4  fdc - ok
15:07:23.0609 0x17e4  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost        C:\windows\system32\fdPHost.dll
15:07:23.0609 0x17e4  fdPHost - ok
15:07:23.0750 0x17e4  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\windows\system32\fdrespub.dll
15:07:23.0750 0x17e4  FDResPub - ok
15:07:23.0828 0x17e4  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\windows\system32\drivers\fileinfo.sys
15:07:23.0843 0x17e4  FileInfo - ok
15:07:23.0937 0x17e4  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace      C:\windows\system32\drivers\filetrace.sys
15:07:23.0937 0x17e4  Filetrace - ok
15:07:23.0984 0x17e4  [ 9BE8AAEA071CB5666A1FE297E5588E71, 18F2A92472A43E1F8BD55B9534C5C28C490ACA75C29A64239161B3A0C0422A8F ] FlashUSB        C:\windows\system32\DRIVERS\FlashUSB_x64.sys
15:07:24.0030 0x17e4  FlashUSB - ok
15:07:24.0717 0x17e4  [ A814979613C50457ED25FD60C872EBBC, E9C142AF280772B8ABA8D673B3CBED85F1369F80DA10965C076F57B74A3DE7FE ] FLCDLOCK        c:\Windows\SysWOW64\flcdlock.exe
15:07:24.0748 0x17e4  FLCDLOCK - ok
15:07:24.0764 0x17e4  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\windows\system32\DRIVERS\flpydisk.sys
15:07:24.0764 0x17e4  flpydisk - ok
15:07:24.0935 0x17e4  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\windows\system32\drivers\fltmgr.sys
15:07:25.0122 0x17e4  FltMgr - ok
15:07:25.0512 0x17e4  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache      C:\windows\system32\FntCache.dll
15:07:25.0544 0x17e4  FontCache - ok
15:07:25.0653 0x17e4  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:07:25.0653 0x17e4  FontCache3.0.0.0 - ok
15:07:25.0715 0x17e4  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends      C:\windows\system32\drivers\FsDepends.sys
15:07:25.0731 0x17e4  FsDepends - ok
15:07:25.0887 0x17e4  [ B16B626996C74B564005BA855C5DEE90, B432C669EB610C262B18F3F8308EEE1B910DE7F7BC2A8EB5483419DC52A07AE1 ] fssfltr        C:\windows\system32\DRIVERS\fssfltr.sys
15:07:25.0980 0x17e4  fssfltr - ok
15:07:26.0214 0x17e4  [ 812E1BA5C52A78F13EA6AA10DF708B1D, CF1C4D8E072CF0D66C977DFA4C852E5CE757843BEAF5D29454D26A9AC5766E61 ] fsssvc          C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
15:07:26.0277 0x17e4  fsssvc - ok
15:07:26.0324 0x17e4  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\windows\system32\drivers\Fs_Rec.sys
15:07:26.0339 0x17e4  Fs_Rec - ok
15:07:26.0370 0x17e4  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\windows\system32\DRIVERS\fvevol.sys
15:07:26.0370 0x17e4  fvevol - ok
15:07:26.0402 0x17e4  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\windows\system32\DRIVERS\gagp30kx.sys
15:07:26.0433 0x17e4  gagp30kx - ok
15:07:26.0963 0x17e4  [ 551D463E4CCEB5240234DA6718C93A44, 37CE7DFD392A1899FDB1B36163D34E9C005344EABDF7397BEA81447B9F7262D1 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
15:07:27.0026 0x17e4  GameConsoleService - ok
15:07:27.0197 0x17e4  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM    C:\windows\system32\DRIVERS\GEARAspiWDM.sys
15:07:27.0291 0x17e4  GEARAspiWDM - ok
15:07:27.0400 0x17e4  [ 14908F4F9005C29DE8F5587E271390EE, 43DDFA99F52467F91019DB858989F111EBE48A2BED8D43EA2C15D1FD3C104489 ] gfibto          C:\windows\system32\drivers\gfibto.sys
15:07:27.0431 0x17e4  gfibto - ok
15:07:27.0743 0x17e4  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc          C:\windows\System32\gpsvc.dll
15:07:27.0774 0x17e4  gpsvc - ok
15:07:27.0837 0x17e4  [ 714E18ABBE6EBED6B8F8A7314C026260, 72199AB00A9ECDFFC225826BD9CB817F57A4AF16F3EE0FA6744243CCA5DA7AF5 ] Guard Agent    C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe
15:07:28.0024 0x17e4  Guard Agent - ok
15:07:28.0383 0x17e4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:07:28.0383 0x17e4  gupdate - ok
15:07:28.0414 0x17e4  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:07:28.0430 0x17e4  gupdatem - ok
15:07:28.0664 0x17e4  [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc          C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
15:07:28.0742 0x17e4  gusvc - ok
15:07:28.0804 0x17e4  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\windows\system32\drivers\hcw85cir.sys
15:07:29.0022 0x17e4  hcw85cir - ok
15:07:29.0210 0x17e4  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
15:07:29.0256 0x17e4  HdAudAddService - ok
15:07:29.0350 0x17e4  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\windows\system32\drivers\HDAudBus.sys
15:07:29.0381 0x17e4  HDAudBus - ok
15:07:29.0490 0x17e4  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt        C:\windows\system32\DRIVERS\HidBatt.sys
15:07:29.0553 0x17e4  HidBatt - ok
15:07:29.0615 0x17e4  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\windows\system32\DRIVERS\hidbth.sys
15:07:29.0678 0x17e4  HidBth - ok
15:07:29.0740 0x17e4  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr          C:\windows\system32\DRIVERS\hidir.sys
15:07:29.0802 0x17e4  HidIr - ok
15:07:29.0865 0x17e4  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv        C:\windows\system32\hidserv.dll
15:07:29.0865 0x17e4  hidserv - ok
15:07:29.0912 0x17e4  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\windows\system32\drivers\hidusb.sys
15:07:30.0052 0x17e4  HidUsb - ok
15:07:30.0177 0x17e4  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\windows\system32\kmsvc.dll
15:07:30.0177 0x17e4  hkmsvc - ok
15:07:30.0270 0x17e4  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\windows\system32\ListSvc.dll
15:07:30.0348 0x17e4  HomeGroupListener - ok
15:07:30.0458 0x17e4  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\windows\system32\provsvc.dll
15:07:30.0458 0x17e4  HomeGroupProvider - ok
15:07:30.0894 0x17e4  [ E8F8A94109429A327521C83AE2C25941, 4EE25908A903DA970B3410BE63D29BBF666FA8BA67805F7675E0E2581152A121 ] HP Power Assistant Service C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
15:07:30.0894 0x17e4  HP Power Assistant Service - ok
15:07:31.0035 0x17e4  [ BB1FC298BE53AAB1E110F6E786BD8AC5, C2DA2C3CE96D5F8B50013063B5EF7BED7478636896C709A7AF34855B2E69B9F1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
15:07:31.0035 0x17e4  HP Support Assistant Service - ok
15:07:31.0128 0x17e4  [ 6F36B2B1A5286044EF8EEEDBDAB2BDD2, 9DAA2ECF190DB5E8B8D28DA526A657EBBF7085D8C44BF1A48F92044B50FA4205 ] hpCMSrv        C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
15:07:31.0191 0x17e4  hpCMSrv - ok
15:07:31.0394 0x17e4  [ A9FC4D7EA174BBF5A675B299FFAD80A2, C9272E0C20EABBAC6B68FC6CDEA7577426B1F3FCD9E619EBC87556A625EEF1A3 ] HPDayStarterService c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
15:07:31.0394 0x17e4  HPDayStarterService - ok
15:07:31.0674 0x17e4  [ C48B579D5A287AD85BEDEF291E81A3AA, 7A84EF09659A8DE4F121BDE9FCD4BCA9323C114B2F16C21D0B078950086E8E1A ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
15:07:31.0690 0x17e4  HPDrvMntSvc.exe - ok
15:07:31.0752 0x17e4  [ 4EC5F601B46C00DF87323CD58E8AA1A3, 34646B30F9DB599439A145E67553D3DA03FE6BF81E5EE0B14EFF586A5B02876B ] hpdskflt        C:\windows\system32\DRIVERS\hpdskflt.sys
15:07:31.0768 0x17e4  hpdskflt - ok
15:07:31.0955 0x17e4  [ 98FAB0413C7365C9069994D7CE47F3EC, 9234FE9FF933845B0F9F4D5C35651474B3FE94E2D75FFB8EA06D6E2616006693 ] HPFSService    C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
15:07:32.0018 0x17e4  HPFSService - ok
15:07:32.0267 0x17e4  [ 4968C0728E257B3B6210244A9CDE2A08, 9886CFC5B06185575D4630BBA10273774F349756C05D83B5335421ADB36CA6A7 ] hpHotkeyMonitor C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
15:07:32.0267 0x17e4  hpHotkeyMonitor - ok
15:07:32.0330 0x17e4  [ B98EE5D4535A685634B90F7E04DE0DF7, E37D26EF83B70E84742498D2F53037F83BE13F0E01484D85A20C872F1F02ADDA ] HpqKbFiltr      C:\windows\system32\DRIVERS\HpqKbFiltr.sys
15:07:32.0361 0x17e4  HpqKbFiltr - ok
15:07:32.0548 0x17e4  [ 375B287A63F5E27D20EE94B459981CEA, F151F031F2CD9F48AFE0F87E089946623D5EC4AB73E2BFEFEC0F09716E6EF472 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
15:07:32.0564 0x17e4  hpqwmiex - ok
15:07:32.0610 0x17e4  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\windows\system32\drivers\HpSAMD.sys
15:07:32.0642 0x17e4  HpSAMD - ok
15:07:33.0203 0x17e4  HPSLPSVC - ok
15:07:33.0250 0x17e4  [ 3A63CD2EAC2188CF2660A8E8DA701AB7, 26BFF8DB06E40BE08C82CE91F7868D5E09459B0EDD6C44CDAD28813AC10E6355 ] hpsrv          C:\windows\system32\Hpservice.exe
15:07:33.0250 0x17e4  hpsrv - ok
15:07:33.0328 0x17e4  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\windows\system32\drivers\HTTP.sys
15:07:33.0375 0x17e4  HTTP - ok
15:07:33.0437 0x17e4  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\windows\system32\drivers\hwpolicy.sys
15:07:33.0437 0x17e4  hwpolicy - ok
15:07:33.0500 0x17e4  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\windows\system32\DRIVERS\i8042prt.sys
15:07:33.0531 0x17e4  i8042prt - ok
15:07:33.0734 0x17e4  [ D469B77687E12FE43E344806740B624D, DFDD486FD040813BF4E5DDB504CF9E0BFBF6D4E540DDDA4829F9B675ACF63E89 ] iaStor          C:\windows\system32\DRIVERS\iaStor.sys
15:07:33.0749 0x17e4  iaStor - ok
15:07:34.0061 0x17e4  [ 117FF657E0D9BBD61B5C3E71E63D3919, F8AD1C861F018754A9BF348C9F1D6503854ED9D7DEEBF40E6B4E2FEA9FC6E56A ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
15:07:34.0061 0x17e4  IAStorDataMgrSvc - ok
15:07:34.0217 0x17e4  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV        C:\windows\system32\drivers\iaStorV.sys
15:07:34.0280 0x17e4  iaStorV - ok
15:07:34.0545 0x17e4  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc          C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
15:07:34.0716 0x17e4  idsvc - ok
15:07:35.0403 0x17e4  [ A1258065E8B16E23E2AFDE72FB5559BC, 22819A822035C4378E5DD40E7829BBC54973BB49734B7E021EF7C7A5F0A5A55A ] IDSVia64        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131002.001\IDSvia64.sys
15:07:35.0418 0x17e4  IDSVia64 - ok
15:07:36.0978 0x17e4  [ 0089B53F1BEFD34B7D8CA4AB021335FA, AE2B32E05E166DBAFA602C38D9FF670A1A9E561D8E37E5C088E1519779AE8475 ] igfx            C:\windows\system32\DRIVERS\igdkmd64.sys
15:07:37.0431 0x17e4  igfx - ok
15:07:37.0524 0x17e4  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp          C:\windows\system32\DRIVERS\iirsp.sys
15:07:37.0556 0x17e4  iirsp - ok
15:07:37.0914 0x17e4  [ FCD84C381E0140AF901E58D48882D26B, 76955FFC230C801E8ED890E32076075F04CD6E5EC79E594FDE6D23797A36B406 ] IKEEXT          C:\windows\System32\ikeext.dll
15:07:37.0930 0x17e4  IKEEXT - ok
15:07:38.0070 0x17e4  [ AE594CC17C33AC146739494615E14851, 0E4FA415C1B4065083D761A458450FAE9C6A6EE6E49B3A598B43871D6F01B3EC ] IntcDAud        C:\windows\system32\DRIVERS\IntcDAud.sys
15:07:38.0180 0x17e4  IntcDAud - ok
15:07:38.0258 0x17e4  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\windows\system32\drivers\intelide.sys
15:07:38.0429 0x17e4  intelide - ok
15:07:38.0507 0x17e4  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\windows\system32\DRIVERS\intelppm.sys
15:07:38.0523 0x17e4  intelppm - ok
15:07:38.0554 0x17e4  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum      C:\windows\system32\ipbusenum.dll
15:07:38.0554 0x17e4  IPBusEnum - ok
15:07:38.0710 0x17e4  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\windows\system32\DRIVERS\ipfltdrv.sys
15:07:38.0726 0x17e4  IpFilterDriver - ok
15:07:39.0022 0x17e4  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\windows\System32\iphlpsvc.dll
15:07:39.0022 0x17e4  iphlpsvc - ok
15:07:39.0131 0x17e4  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV        C:\windows\system32\drivers\IPMIDrv.sys
15:07:39.0209 0x17e4  IPMIDRV - ok
15:07:39.0334 0x17e4  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT          C:\windows\system32\drivers\ipnat.sys
15:07:39.0381 0x17e4  IPNAT - ok
15:07:39.0537 0x17e4  [ 78486992AC657AE5065C4A2135838570, E958E2977843A15A73F06A2D2F24130C7F62305A9AA0488F419E2D729BA6939A ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
15:07:39.0818 0x17e4  iPod Service - ok
15:07:39.0864 0x17e4  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\windows\system32\drivers\irenum.sys
15:07:39.0911 0x17e4  IRENUM - ok
15:07:40.0130 0x17e4  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\windows\system32\drivers\isapnp.sys
15:07:40.0192 0x17e4  isapnp - ok
15:07:40.0379 0x17e4  [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt        C:\windows\system32\drivers\msiscsi.sys
15:07:40.0473 0x17e4  iScsiPrt - ok
15:07:40.0707 0x17e4  [ 6C85719A21B3F62C2C76280F4BD36C7B, 471E333467937720EF9369419EEDE5C2246C976123B437E0AC66F394CF1C056A ] jhi_service    C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
15:07:40.0754 0x17e4  jhi_service - ok
15:07:40.0925 0x17e4  [ 3FE43C2F5B5C08657A1B547AFBE2118E, 33A589EFA8CC13E5C46392B321797D15030B38C56276B2C3755E332E6CC15786 ] JMCR            C:\windows\system32\DRIVERS\jmcr.sys
15:07:40.0941 0x17e4  JMCR - ok
15:07:41.0081 0x17e4  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\windows\system32\drivers\kbdclass.sys
15:07:41.0081 0x17e4  kbdclass - ok
15:07:41.0518 0x17e4  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\windows\system32\drivers\kbdhid.sys
15:07:41.0643 0x17e4  kbdhid - ok
15:07:41.0721 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] KeyIso          C:\windows\system32\lsass.exe
15:07:41.0721 0x17e4  KeyIso - ok
15:07:41.0924 0x17e4  [ 97A7070AEA4C058B6418519E869A63B4, 15345C2D6CA159BD498002974A0BD21CAB611124D85E3320248B47652AEF23C8 ] KSecDD          C:\windows\system32\Drivers\ksecdd.sys
15:07:41.0955 0x17e4  KSecDD - ok
15:07:42.0438 0x17e4  [ 7EFB9333E4ECCE6AE4AE9D777D9E553E, 94F1382291BD748BAE7EDBCB56F43B8564A1EE22E2DBEB37066559EE3D065FBA ] KSecPkg        C:\windows\system32\Drivers\ksecpkg.sys
15:07:42.0610 0x17e4  KSecPkg - ok
15:07:42.0719 0x17e4  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk        C:\windows\system32\drivers\ksthunk.sys
15:07:42.0797 0x17e4  ksthunk - ok
15:07:42.0906 0x17e4  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm          C:\windows\system32\msdtckrm.dll
15:07:43.0000 0x17e4  KtmRm - ok
15:07:43.0172 0x17e4  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\windows\system32\srvsvc.dll
15:07:43.0187 0x17e4  LanmanServer - ok
15:07:43.0343 0x17e4  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\windows\System32\wkssvc.dll
15:07:43.0359 0x17e4  LanmanWorkstation - ok
15:07:43.0359 0x17e4  LgBttPort - ok
15:07:43.0374 0x17e4  lgbusenum - ok
15:07:43.0374 0x17e4  LGVMODEM - ok
15:07:43.0905 0x17e4  [ C34411A244029F1C08687F7C752C4563, 4FC1D6156D760AE8138547262B33677118BD9369F4930F5C5F9BAA2FE6E78EA3 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
15:07:44.0108 0x17e4  LightScribeService - ok
15:07:44.0139 0x17e4  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\windows\system32\DRIVERS\lltdio.sys
15:07:44.0342 0x17e4  lltdio - ok
15:07:44.0435 0x17e4  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc        C:\windows\System32\lltdsvc.dll
15:07:44.0513 0x17e4  lltdsvc - ok
15:07:44.0544 0x17e4  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts        C:\windows\System32\lmhsvc.dll
15:07:44.0576 0x17e4  lmhosts - ok
15:07:44.0825 0x17e4  [ 519D66259DF1672AABCE9D2E0ACC5552, 953EAEC04D45574ED9260726383438AA18A5EBEB2E0C93869DF4C57B9998BB27 ] LMS            C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
15:07:44.0825 0x17e4  LMS - ok
15:07:44.0888 0x17e4  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\windows\system32\DRIVERS\lsi_fc.sys
15:07:44.0919 0x17e4  LSI_FC - ok
15:07:44.0934 0x17e4  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS        C:\windows\system32\DRIVERS\lsi_sas.sys
15:07:45.0012 0x17e4  LSI_SAS - ok
15:07:45.0075 0x17e4  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\windows\system32\DRIVERS\lsi_sas2.sys
15:07:45.0090 0x17e4  LSI_SAS2 - ok
15:07:45.0122 0x17e4  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\windows\system32\DRIVERS\lsi_scsi.sys
15:07:45.0168 0x17e4  LSI_SCSI - ok
15:07:45.0231 0x17e4  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv          C:\windows\system32\drivers\luafv.sys
15:07:45.0246 0x17e4  luafv - ok
15:07:45.0558 0x17e4  [ FDE6052CD5846863463828E61176C4DC, 6494F2450B2F32D71D2330C5FA41B3C554B969C7F621C38B7478A40E440D523F ] McAfee Endpoint Encryption Agent C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
15:07:45.0605 0x17e4  McAfee Endpoint Encryption Agent - ok
15:07:45.0730 0x17e4  [ 4BA84C832E0741A294C4444556DFE993, 2CC888C85887F0F3EB5395075B9C65FF1307D98608BDC1D88ACE4A375DD9DFD9 ] MCLIENT        C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
15:07:45.0730 0x17e4  MCLIENT - ok
15:07:45.0777 0x17e4  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc        C:\windows\system32\Mcx2Svc.dll
15:07:45.0777 0x17e4  Mcx2Svc - ok
15:07:45.0808 0x17e4  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas        C:\windows\system32\DRIVERS\megasas.sys
15:07:45.0824 0x17e4  megasas - ok
15:07:45.0839 0x17e4  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\windows\system32\DRIVERS\MegaSR.sys
15:07:45.0855 0x17e4  MegaSR - ok
15:07:45.0902 0x17e4  [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64          C:\windows\system32\DRIVERS\HECIx64.sys
15:07:45.0902 0x17e4  MEIx64 - ok
15:07:45.0980 0x17e4  [ 4ED2FB4C002D7147C40C37EC9617BEAF, 1CEC51DAD293F769E15254E870179A60C6874DA4268416AE99A2A0980760B8D6 ] MfeEpeOpal      C:\windows\system32\drivers\MfeEpeOpal.sys
15:07:46.0026 0x17e4  MfeEpeOpal - ok
15:07:46.0089 0x17e4  [ CECEA4A76F776AE0B709093822C99AD5, 03A86246E968C3DE7C718B1F674C1A5EC43DDFC673A85E9C4E36FAA2D259FE92 ] MfeEpePc        C:\windows\system32\drivers\MfeEpePc.sys
15:07:46.0151 0x17e4  MfeEpePc - ok
15:07:47.0165 0x17e4  Microsoft SharePoint Workspace Audit Service - ok
15:07:47.0384 0x17e4  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS          C:\windows\system32\mmcss.dll
15:07:47.0384 0x17e4  MMCSS - ok
15:07:47.0571 0x17e4  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem          C:\windows\system32\drivers\modem.sys
15:07:47.0649 0x17e4  Modem - ok
15:07:47.0711 0x17e4  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor        C:\windows\system32\DRIVERS\monitor.sys
15:07:47.0711 0x17e4  monitor - ok
15:07:47.0774 0x17e4  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\windows\system32\DRIVERS\mouclass.sys
15:07:47.0789 0x17e4  mouclass - ok
15:07:47.0836 0x17e4  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\windows\system32\DRIVERS\mouhid.sys
15:07:47.0914 0x17e4  mouhid - ok
15:07:47.0992 0x17e4  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\windows\system32\drivers\mountmgr.sys
15:07:48.0023 0x17e4  mountmgr - ok
15:07:48.0132 0x17e4  [ F17FD0051108B5AE5ED37FF24CEF2183, AB98A9954942D5A98C44539B5BDC790B2B0240D09437481EF96D22C8E57B221C ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:07:48.0210 0x17e4  MozillaMaintenance - ok
15:07:48.0304 0x17e4  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\windows\system32\drivers\mpio.sys
15:07:48.0366 0x17e4  mpio - ok
15:07:48.0444 0x17e4  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\windows\system32\drivers\mpsdrv.sys
15:07:48.0522 0x17e4  mpsdrv - ok
15:07:48.0834 0x17e4  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\windows\system32\mpssvc.dll
15:07:48.0866 0x17e4  MpsSvc - ok
15:07:48.0975 0x17e4  [ DC722758B8261E1ABAFD31A3C0A66380, 88BBE073E2CCD1DAB4656DDC53D5161E8A91D035ADAC1465D0CEBA86F1BB6D9A ] MRxDAV          C:\windows\system32\drivers\mrxdav.sys
15:07:49.0006 0x17e4  MRxDAV - ok
15:07:49.0131 0x17e4  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\windows\system32\DRIVERS\mrxsmb.sys
15:07:49.0162 0x17e4  mrxsmb - ok
15:07:49.0302 0x17e4  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\windows\system32\DRIVERS\mrxsmb10.sys
15:07:49.0349 0x17e4  mrxsmb10 - ok
15:07:49.0427 0x17e4  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\windows\system32\DRIVERS\mrxsmb20.sys
15:07:49.0458 0x17e4  mrxsmb20 - ok
15:07:49.0536 0x17e4  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\windows\system32\drivers\msahci.sys
15:07:49.0536 0x17e4  msahci - ok
15:07:49.0864 0x17e4  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm          C:\windows\system32\drivers\msdsm.sys
15:07:49.0880 0x17e4  msdsm - ok
15:07:49.0942 0x17e4  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC          C:\windows\System32\msdtc.exe
15:07:50.0020 0x17e4  MSDTC - ok
15:07:50.0067 0x17e4  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\windows\system32\drivers\Msfs.sys
15:07:50.0129 0x17e4  Msfs - ok
15:07:50.0176 0x17e4  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf      C:\windows\System32\drivers\mshidkmdf.sys
15:07:50.0207 0x17e4  mshidkmdf - ok
15:07:50.0254 0x17e4  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\windows\system32\drivers\msisadrv.sys
15:07:50.0254 0x17e4  msisadrv - ok
15:07:50.0332 0x17e4  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI        C:\windows\system32\iscsiexe.dll
15:07:50.0379 0x17e4  MSiSCSI - ok
15:07:50.0379 0x17e4  msiserver - ok
15:07:50.0410 0x17e4  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV        C:\windows\system32\drivers\MSKSSRV.sys
15:07:50.0457 0x17e4  MSKSSRV - ok
15:07:50.0488 0x17e4  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\windows\system32\drivers\MSPCLOCK.sys
15:07:50.0519 0x17e4  MSPCLOCK - ok
15:07:50.0566 0x17e4  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM          C:\windows\system32\drivers\MSPQM.sys
15:07:50.0628 0x17e4  MSPQM - ok
15:07:50.0738 0x17e4  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC          C:\windows\system32\drivers\MsRPC.sys
15:07:50.0784 0x17e4  MsRPC - ok
15:07:50.0847 0x17e4  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\windows\system32\drivers\mssmbios.sys
15:07:50.0847 0x17e4  mssmbios - ok
15:07:50.0956 0x17e4  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE          C:\windows\system32\drivers\MSTEE.sys
15:07:50.0972 0x17e4  MSTEE - ok
15:07:51.0003 0x17e4  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\windows\system32\DRIVERS\MTConfig.sys
15:07:51.0003 0x17e4  MTConfig - ok
15:07:51.0018 0x17e4  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup            C:\windows\system32\Drivers\mup.sys
15:07:51.0018 0x17e4  Mup - ok
15:07:51.0096 0x17e4  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\windows\system32\qagentRT.dll
15:07:51.0096 0x17e4  napagent - ok
15:07:51.0159 0x17e4  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP    C:\windows\system32\DRIVERS\nwifi.sys
15:07:51.0190 0x17e4  NativeWifiP - ok
15:07:51.0596 0x17e4  [ 702E07EC32F96ACDB873E9A5465D4401, 2C6B1C8BA0BF4791AEA064062DCA3678AE4443DF19DB37D6CB55BA6297D8A238 ] NAVENG          C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131002.009\ENG64.SYS
15:07:51.0596 0x17e4  NAVENG - ok
15:07:52.0142 0x17e4  [ 302EA314A1AF0D7CEF0A3D0195F79561, 046DBC2D9D028F2D2E8BAE745CA2ADEF42741689BFF743A13B81EA4228DDCDC6 ] NAVEX15        C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131002.009\EX64.SYS
15:07:52.0251 0x17e4  NAVEX15 - ok
15:07:52.0485 0x17e4  [ 1BF9D6476061B31CD7FC2BF848529A56, 95B585543240E823D7850ADEEEA7A4738EF9E18A4B07D921F145F6EF466F0271 ] NCO            C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
15:07:52.0485 0x17e4  NCO - ok
15:07:52.0766 0x17e4  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\windows\system32\drivers\ndis.sys
15:07:52.0812 0x17e4  NDIS - ok
15:07:52.0937 0x17e4  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap        C:\windows\system32\DRIVERS\ndiscap.sys
15:07:52.0968 0x17e4  NdisCap - ok
15:07:53.0015 0x17e4  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\windows\system32\DRIVERS\ndistapi.sys
15:07:53.0046 0x17e4  NdisTapi - ok
15:07:53.0124 0x17e4  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio        C:\windows\system32\DRIVERS\ndisuio.sys
15:07:53.0171 0x17e4  Ndisuio - ok
15:07:53.0280 0x17e4  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan        C:\windows\system32\DRIVERS\ndiswan.sys
15:07:53.0327 0x17e4  NdisWan - ok
15:07:53.0405 0x17e4  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy        C:\windows\system32\drivers\NDProxy.sys
15:07:53.0436 0x17e4  NDProxy - ok
15:07:53.0499 0x17e4  [ 6F4607E2333FE21E9E3FF8133A88B35B, F7B7B262D85D03552A8D0F3F91E795B31E3D09020DDA1E3D62A4A3209D916BB6 ] Netaapl        C:\windows\system32\DRIVERS\netaapl64.sys
15:07:53.0514 0x17e4  Netaapl - ok
15:07:53.0592 0x17e4  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS        C:\windows\system32\DRIVERS\netbios.sys
15:07:53.0624 0x17e4  NetBIOS - ok
15:07:53.0733 0x17e4  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT          C:\windows\system32\DRIVERS\netbt.sys
15:07:53.0748 0x17e4  NetBT - ok
15:07:53.0795 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] Netlogon        C:\windows\system32\lsass.exe
Avatar billede mathilda Nybegynder
03. oktober 2013 - 15:48 #42
TDSKiller log2


15:07:53.0795 0x17e4  Netlogon - ok
15:07:53.0858 0x17e4  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\windows\System32\netman.dll
15:07:53.0858 0x17e4  Netman - ok
15:07:54.0762 0x17e4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:07:54.0903 0x17e4  NetMsmqActivator - ok
15:07:54.0918 0x17e4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:07:54.0918 0x17e4  NetPipeActivator - ok
15:07:54.0965 0x17e4  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\windows\System32\netprofm.dll
15:07:54.0965 0x17e4  netprofm - ok
15:07:54.0996 0x17e4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:07:54.0996 0x17e4  NetTcpActivator - ok
15:07:55.0012 0x17e4  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:07:55.0012 0x17e4  NetTcpPortSharing - ok
15:07:55.0043 0x17e4  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960        C:\windows\system32\DRIVERS\nfrd960.sys
15:07:55.0043 0x17e4  nfrd960 - ok
15:07:55.0636 0x17e4  [ 262FB554D67D17D843F81820111F0A80, 69D2F9E1713AECD3D75EE97864E0DCA6B50F3AD572E6810800FF57EC08CE2E38 ] NIS            C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
15:07:55.0714 0x17e4  NIS - ok
15:07:55.0901 0x17e4  [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc          C:\windows\System32\nlasvc.dll
15:07:55.0901 0x17e4  NlaSvc - ok
15:07:55.0932 0x17e4  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\windows\system32\drivers\Npfs.sys
15:07:55.0948 0x17e4  Npfs - ok
15:07:56.0010 0x17e4  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi            C:\windows\system32\nsisvc.dll
15:07:56.0010 0x17e4  nsi - ok
15:07:56.0073 0x17e4  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\windows\system32\drivers\nsiproxy.sys
15:07:56.0073 0x17e4  nsiproxy - ok
15:07:56.0229 0x17e4  [ B98F8C6E31CD07B2E6F71F7F648E38C0, 2FEA100B80680FBBF644CB6763738804155DF1E94A6542CAE2B2786D770D554E ] Ntfs            C:\windows\system32\drivers\Ntfs.sys
15:07:56.0354 0x17e4  Ntfs - ok
15:07:56.0478 0x17e4  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\windows\system32\drivers\Null.sys
15:07:56.0494 0x17e4  Null - ok
15:07:56.0588 0x17e4  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\windows\system32\drivers\nvraid.sys
15:07:56.0681 0x17e4  nvraid - ok
15:07:56.0868 0x17e4  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\windows\system32\drivers\nvstor.sys
15:07:56.0915 0x17e4  nvstor - ok
15:07:56.0978 0x17e4  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\windows\system32\drivers\nv_agp.sys
15:07:56.0993 0x17e4  nv_agp - ok
15:07:57.0024 0x17e4  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\windows\system32\drivers\ohci1394.sys
15:07:57.0102 0x17e4  ohci1394 - ok
15:07:57.0321 0x17e4  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose            C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:07:57.0383 0x17e4  ose - ok
15:07:58.0522 0x17e4  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc        C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:07:58.0740 0x17e4  osppsvc - ok
15:07:58.0896 0x17e4  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\windows\system32\pnrpsvc.dll
15:07:58.0912 0x17e4  p2pimsvc - ok
15:07:59.0068 0x17e4  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\windows\system32\p2psvc.dll
15:07:59.0084 0x17e4  p2psvc - ok
15:07:59.0130 0x17e4  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport        C:\windows\system32\DRIVERS\parport.sys
15:07:59.0162 0x17e4  Parport - ok
15:07:59.0240 0x17e4  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr        C:\windows\system32\drivers\partmgr.sys
15:07:59.0271 0x17e4  partmgr - ok
15:07:59.0427 0x17e4  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\windows\System32\pcasvc.dll
15:07:59.0442 0x17e4  PcaSvc - ok
15:07:59.0583 0x17e4  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci            C:\windows\system32\drivers\pci.sys
15:07:59.0614 0x17e4  pci - ok
15:07:59.0739 0x17e4  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\windows\system32\drivers\pciide.sys
15:07:59.0848 0x17e4  pciide - ok
15:07:59.0957 0x17e4  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\windows\system32\DRIVERS\pcmcia.sys
15:08:00.0020 0x17e4  pcmcia - ok
15:08:00.0066 0x17e4  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw            C:\windows\system32\drivers\pcw.sys
15:08:00.0066 0x17e4  pcw - ok
15:08:00.0129 0x17e4  pdfcDispatcher - ok
15:08:00.0285 0x17e4  [ 4A8CC4D25525F456069887D5E8C53225, 38589FF80761F57E8F9D371CB1508EBC3DAD43B1B07114C9CD9F4238990EB9B6 ] PdiService      C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
15:08:00.0285 0x17e4  PdiService - ok
15:08:00.0456 0x17e4  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\windows\system32\drivers\peauth.sys
15:08:00.0519 0x17e4  PEAUTH - ok
15:08:00.0987 0x17e4  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc    C:\windows\system32\peerdistsvc.dll
15:08:01.0049 0x17e4  PeerDistSvc - ok
15:08:01.0392 0x17e4  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\windows\SysWow64\perfhost.exe
15:08:01.0392 0x17e4  PerfHost - ok
15:08:01.0564 0x17e4  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla            C:\windows\system32\pla.dll
15:08:01.0673 0x17e4  pla - ok
15:08:01.0845 0x17e4  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\windows\system32\umpnpmgr.dll
15:08:01.0845 0x17e4  PlugPlay - ok
15:08:01.0954 0x17e4  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg    C:\windows\system32\pnrpauto.dll
15:08:02.0001 0x17e4  PNRPAutoReg - ok
15:08:02.0141 0x17e4  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc        C:\windows\system32\pnrpsvc.dll
15:08:02.0141 0x17e4  PNRPsvc - ok
15:08:02.0328 0x17e4  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent    C:\windows\System32\ipsecsvc.dll
15:08:02.0344 0x17e4  PolicyAgent - ok
15:08:02.0438 0x17e4  [ A2CCA4FB273E6050F17A0A416CFF2FCD, C42BA18DF0C8E3F7358669A784E51E4DC7A4112096345EA699EDC95F561E0255 ] Power          C:\windows\system32\umpo.dll
15:08:02.0453 0x17e4  Power - ok
15:08:02.0516 0x17e4  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\windows\system32\DRIVERS\raspptp.sys
15:08:02.0547 0x17e4  PptpMiniport - ok
15:08:02.0640 0x17e4  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor      C:\windows\system32\DRIVERS\processr.sys
15:08:02.0640 0x17e4  Processor - ok
15:08:02.0672 0x17e4  [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc        C:\windows\system32\profsvc.dll
15:08:02.0672 0x17e4  ProfSvc - ok
15:08:02.0703 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] ProtectedStorage C:\windows\system32\lsass.exe
15:08:02.0718 0x17e4  ProtectedStorage - ok
15:08:02.0765 0x17e4  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\windows\system32\DRIVERS\pacer.sys
15:08:02.0765 0x17e4  Psched - ok
15:08:02.0796 0x17e4  [ DD3FD48D69F5FBBB21D46D1514C1C2DB, 2B188E3AC4BD9B608D375DD550507717852C2AF7C0F99FFED90098999B9D4F01 ] PSI            C:\windows\system32\DRIVERS\psi_mf_amd64.sys
15:08:02.0828 0x17e4  PSI - ok
15:08:02.0906 0x17e4  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\windows\system32\DRIVERS\ql2300.sys
15:08:02.0984 0x17e4  ql2300 - ok
15:08:03.0030 0x17e4  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\windows\system32\DRIVERS\ql40xx.sys
15:08:03.0030 0x17e4  ql40xx - ok
15:08:03.0140 0x17e4  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE          C:\windows\system32\qwave.dll
15:08:03.0171 0x17e4  QWAVE - ok
15:08:03.0233 0x17e4  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\windows\system32\drivers\qwavedrv.sys
15:08:03.0233 0x17e4  QWAVEdrv - ok
15:08:03.0296 0x17e4  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\windows\system32\DRIVERS\rasacd.sys
15:08:03.0327 0x17e4  RasAcd - ok
15:08:03.0389 0x17e4  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn    C:\windows\system32\DRIVERS\AgileVpn.sys
15:08:03.0436 0x17e4  RasAgileVpn - ok
15:08:03.0498 0x17e4  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto        C:\windows\System32\rasauto.dll
15:08:03.0576 0x17e4  RasAuto - ok
15:08:03.0639 0x17e4  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp        C:\windows\system32\DRIVERS\rasl2tp.sys
15:08:03.0670 0x17e4  Rasl2tp - ok
15:08:03.0779 0x17e4  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\windows\System32\rasmans.dll
15:08:03.0810 0x17e4  RasMan - ok
15:08:03.0873 0x17e4  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\windows\system32\DRIVERS\raspppoe.sys
15:08:03.0982 0x17e4  RasPppoe - ok
15:08:04.0029 0x17e4  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp        C:\windows\system32\DRIVERS\rassstp.sys
15:08:04.0044 0x17e4  RasSstp - ok
15:08:04.0200 0x17e4  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss          C:\windows\system32\DRIVERS\rdbss.sys
15:08:04.0216 0x17e4  rdbss - ok
15:08:04.0278 0x17e4  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\windows\system32\DRIVERS\rdpbus.sys
15:08:04.0294 0x17e4  rdpbus - ok
15:08:04.0341 0x17e4  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\windows\system32\DRIVERS\RDPCDD.sys
15:08:04.0341 0x17e4  RDPCDD - ok
15:08:04.0466 0x17e4  [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR          C:\windows\system32\drivers\rdpdr.sys
15:08:04.0466 0x17e4  RDPDR - ok
15:08:04.0559 0x17e4  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\windows\system32\drivers\rdpencdd.sys
15:08:04.0559 0x17e4  RDPENCDD - ok
15:08:04.0606 0x17e4  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\windows\system32\drivers\rdprefmp.sys
15:08:04.0606 0x17e4  RDPREFMP - ok
15:08:04.0684 0x17e4  [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys
15:08:04.0809 0x17e4  RdpVideoMiniport - ok
15:08:04.0887 0x17e4  [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD          C:\windows\system32\drivers\RDPWD.sys
15:08:04.0918 0x17e4  RDPWD - ok
15:08:05.0105 0x17e4  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\windows\system32\drivers\rdyboost.sys
15:08:05.0199 0x17e4  rdyboost - ok
15:08:05.0511 0x17e4  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\windows\System32\mprdim.dll
15:08:05.0589 0x17e4  RemoteAccess - ok
15:08:05.0714 0x17e4  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\windows\system32\regsvc.dll
15:08:05.0807 0x17e4  RemoteRegistry - ok
15:08:05.0916 0x17e4  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\windows\system32\DRIVERS\rfcomm.sys
15:08:05.0932 0x17e4  RFCOMM - ok
15:08:05.0979 0x17e4  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\windows\System32\RpcEpMap.dll
15:08:05.0979 0x17e4  RpcEptMapper - ok
15:08:06.0026 0x17e4  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\windows\system32\locator.exe
15:08:06.0041 0x17e4  RpcLocator - ok
15:08:06.0244 0x17e4  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs          C:\windows\system32\rpcss.dll
15:08:06.0260 0x17e4  RpcSs - ok
15:08:06.0431 0x17e4  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\windows\system32\DRIVERS\rspndr.sys
15:08:06.0494 0x17e4  rspndr - ok
15:08:06.0837 0x17e4  [ BD9BA262CF26EFE9A9867EBE32D12164, FF549FA3CC66C31FE228ECEC7649D76DBB577A89B2F6A0EA0BE3D5B7B2EEF9D9 ] RTL8167        C:\windows\system32\DRIVERS\Rt64win7.sys
15:08:06.0884 0x17e4  RTL8167 - ok
15:08:07.0242 0x17e4  [ F8CDADCE6CBCDAF8C7E8BCCE4D31DBB6, 5EA574E44E035934A1EDF573CDAD2B20A91470C4EE2209323B2DF65157FA443A ] RtlISMServ      C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
15:08:07.0289 0x17e4  RtlISMServ - ok
15:08:07.0336 0x17e4  [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap          C:\windows\system32\drivers\vms3cap.sys
15:08:07.0367 0x17e4  s3cap - ok
15:08:07.0414 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] SamSs          C:\windows\system32\lsass.exe
15:08:07.0414 0x17e4  SamSs - ok
15:08:07.0508 0x17e4  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\windows\system32\drivers\sbp2port.sys
15:08:07.0539 0x17e4  sbp2port - ok
15:08:07.0664 0x17e4  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\windows\System32\SCardSvr.dll
15:08:07.0695 0x17e4  SCardSvr - ok
15:08:07.0757 0x17e4  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\windows\system32\DRIVERS\scfilter.sys
15:08:07.0835 0x17e4  scfilter - ok
15:08:08.0178 0x17e4  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\windows\system32\schedsvc.dll
15:08:08.0241 0x17e4  Schedule - ok
15:08:08.0334 0x17e4  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc    C:\windows\System32\certprop.dll
15:08:08.0334 0x17e4  SCPolicySvc - ok
15:08:08.0381 0x17e4  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus          C:\windows\system32\drivers\sdbus.sys
15:08:08.0444 0x17e4  sdbus - ok
15:08:08.0584 0x17e4  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\windows\System32\SDRSVC.dll
15:08:08.0615 0x17e4  SDRSVC - ok
15:08:09.0317 0x17e4  [ 95AA9E165C7DE1B64A11E8B18E91E499, 505BB51F358EAE5835071A89069530DFDA99E9C5220EA6A648842C15E74E4907 ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
15:08:10.0581 0x17e4  SDScannerService - ok
15:08:10.0643 0x17e4  [ D31398D4BB4907B517B6E784C2100C4A, 36BDB2BFAC2C0ADF8C6DF6D1511ECF43C8F6ED7D4D76244DC5232AD97BA5E9C9 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
15:08:10.0690 0x17e4  SDUpdateService - ok
15:08:10.0721 0x17e4  [ 6AE8E702D1027A9627DDE2B77BB9992B, 5EA68E2A487D252A68DB0861E7FAFA69956D266CBAA5A1D77751F7E6BD4169B7 ] SDWSCService    C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
15:08:10.0862 0x17e4  SDWSCService - ok
15:08:10.0924 0x17e4  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\windows\system32\drivers\secdrv.sys
15:08:10.0940 0x17e4  secdrv - ok
15:08:11.0049 0x17e4  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\windows\system32\seclogon.dll
15:08:11.0049 0x17e4  seclogon - ok
15:08:11.0657 0x17e4  [ 05E383849FA1FBBBC160612B0080618C, 43A33CC6BD24635EE849E89DB4391AB36292DDC0AC407E1B480B6E1DF7FC3BC5 ] Secunia PSI Agent C:\Program Files (x86)\Secunia\PSI\PSIA.exe
15:08:11.0782 0x17e4  Secunia PSI Agent - ok
15:08:11.0907 0x17e4  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\windows\System32\sens.dll
15:08:11.0907 0x17e4  SENS - ok
15:08:11.0969 0x17e4  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\windows\system32\sensrsvc.dll
15:08:12.0047 0x17e4  SensrSvc - ok
15:08:12.0078 0x17e4  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum        C:\windows\system32\DRIVERS\serenum.sys
15:08:12.0172 0x17e4  Serenum - ok
15:08:12.0234 0x17e4  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\windows\system32\DRIVERS\serial.sys
15:08:12.0281 0x17e4  Serial - ok
15:08:12.0328 0x17e4  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\windows\system32\DRIVERS\sermouse.sys
15:08:12.0359 0x17e4  sermouse - ok
15:08:12.0453 0x17e4  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\windows\system32\sessenv.dll
15:08:12.0453 0x17e4  SessionEnv - ok
15:08:12.0500 0x17e4  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk        C:\windows\system32\drivers\sffdisk.sys
15:08:12.0546 0x17e4  sffdisk - ok
15:08:12.0609 0x17e4  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\windows\system32\drivers\sffp_mmc.sys
15:08:12.0671 0x17e4  sffp_mmc - ok
15:08:12.0812 0x17e4  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd        C:\windows\system32\drivers\sffp_sd.sys
15:08:12.0827 0x17e4  sffp_sd - ok
15:08:12.0858 0x17e4  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy        C:\windows\system32\DRIVERS\sfloppy.sys
15:08:12.0890 0x17e4  sfloppy - ok
15:08:13.0077 0x17e4  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\windows\System32\ipnathlp.dll
15:08:13.0139 0x17e4  SharedAccess - ok
15:08:13.0436 0x17e4  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\windows\System32\shsvcs.dll
15:08:13.0436 0x17e4  ShellHWDetection - ok
15:08:13.0482 0x17e4  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\windows\system32\DRIVERS\SiSRaid2.sys
15:08:13.0498 0x17e4  SiSRaid2 - ok
15:08:13.0529 0x17e4  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\windows\system32\DRIVERS\sisraid4.sys
15:08:13.0545 0x17e4  SiSRaid4 - ok
15:08:13.0732 0x17e4  [ 9CD1BB2DB803B6AC642BD643DDB773BC, E03EC2FFBE9720E291D13ABF35E027DFA1324CE0934403D1BF4A8E1B86623053 ] SkypeUpdate    C:\Program Files (x86)\Skype\Updater\Updater.exe
15:08:13.0779 0x17e4  SkypeUpdate - ok
15:08:13.0857 0x17e4  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb            C:\windows\system32\DRIVERS\smb.sys
15:08:13.0857 0x17e4  Smb - ok
15:08:13.0919 0x17e4  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\windows\System32\snmptrap.exe
15:08:13.0919 0x17e4  SNMPTRAP - ok
15:08:14.0434 0x17e4  [ 80B683DF156771E30D33E01AF09ABE3C, 950496EAF8BF1AEDDF1B0555E9BA605DF7F9E9E3EA2D7BDEF7A0083B859F0D93 ] SNP2UVC        C:\windows\system32\DRIVERS\snp2uvc.sys
15:08:14.0481 0x17e4  SNP2UVC - ok
15:08:14.0606 0x17e4  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr          C:\windows\system32\drivers\spldr.sys
15:08:14.0606 0x17e4  spldr - ok
15:08:14.0652 0x17e4  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler        C:\windows\System32\spoolsv.exe
15:08:14.0684 0x17e4  Spooler - ok
15:08:14.0871 0x17e4  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\windows\system32\sppsvc.exe
15:08:15.0136 0x17e4  sppsvc - ok
15:08:15.0292 0x17e4  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify    C:\windows\system32\sppuinotify.dll
15:08:15.0323 0x17e4  sppuinotify - ok
15:08:15.0744 0x17e4  [ 5BFBC7278A8CD8F4E0A28D5C862197E1, BF62C0665E6CC8FC61CAD52C94E143F404B1DA4FE6A6D2C40206C420B6391A5D ] SRTSP          C:\windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS
15:08:15.0791 0x17e4  SRTSP - ok
15:08:15.0838 0x17e4  [ B18CE01B9C09C59422BA7C7064248B35, B355EE2FBB37C4B0EFFE4DC5E0788A26579266828E7988EDC497B0AE7375F8AB ] SRTSPX          C:\windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS
15:08:15.0854 0x17e4  SRTSPX - ok
15:08:16.0088 0x17e4  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv            C:\windows\system32\DRIVERS\srv.sys
15:08:16.0119 0x17e4  srv - ok
15:08:16.0244 0x17e4  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\windows\system32\DRIVERS\srv2.sys
15:08:16.0368 0x17e4  srv2 - ok
15:08:16.0478 0x17e4  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\windows\system32\DRIVERS\srvnet.sys
15:08:16.0509 0x17e4  srvnet - ok
15:08:17.0148 0x17e4  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV        C:\windows\System32\ssdpsrv.dll
15:08:17.0164 0x17e4  SSDPSRV - ok
15:08:17.0320 0x17e4  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc        C:\windows\system32\sstpsvc.dll
15:08:17.0492 0x17e4  SstpSvc - ok
15:08:17.0710 0x17e4  [ 917117ADC2934720A071AA3786C0CAB1, 0C67186960C92D4C3A478B913F8F0AC0419E047DCC99A3443D2AC0720C66237E ] STacSV          C:\Program Files\IDT\WDM\STacSV64.exe
15:08:17.0726 0x17e4  STacSV - ok
15:08:17.0757 0x17e4  [ 7EC9919E79BB826F837FA3551A964AEC, 8F6376DFAFF7FE6A0E91EB34B8D6F10A4128FAC0FA48A2EA4F13CA309BCD2BD6 ] stdriver        C:\windows\system32\DRIVERS\stdriverx64.sys
15:08:17.0819 0x17e4  stdriver - ok
15:08:17.0835 0x17e4  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\windows\system32\DRIVERS\stexstor.sys
15:08:17.0835 0x17e4  stexstor - ok
15:08:17.0913 0x17e4  [ 7E99C4640869E95CFBD185811E80079E, 6274CBEAB4F36D8D7031F52CB9F011B23622C3C8372FCCD9BA6BD43307F78B13 ] STHDA          C:\windows\system32\DRIVERS\stwrt64.sys
15:08:17.0944 0x17e4  STHDA - ok
15:08:18.0209 0x17e4  [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam        C:\windows\system32\DRIVERS\serscan.sys
15:08:18.0287 0x17e4  StillCam - ok
15:08:18.0880 0x17e4  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\windows\System32\wiaservc.dll
15:08:18.0896 0x17e4  stisvc - ok
15:08:18.0989 0x17e4  [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt        C:\windows\system32\drivers\vmstorfl.sys
15:08:18.0989 0x17e4  storflt - ok
15:08:19.0504 0x17e4  [ C40841817EF57D491F22EB103DA587CC, 5FAA2DE43BADC16A898C0C290C44C41E4411D919A95FE8C6FF45EA7A34495079 ] StorSvc        C:\windows\system32\storsvc.dll
15:08:19.0520 0x17e4  StorSvc - ok
15:08:19.0722 0x17e4  [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc        C:\windows\system32\drivers\storvsc.sys
15:08:19.0722 0x17e4  storvsc - ok
15:08:19.0769 0x17e4  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\windows\system32\drivers\swenum.sys
15:08:19.0769 0x17e4  swenum - ok
15:08:19.0816 0x17e4  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv          C:\windows\System32\swprv.dll
15:08:19.0832 0x17e4  swprv - ok
15:08:20.0284 0x17e4  [ 5C9EE2303CA7F267665D75237862B39C, 5DECD977A823C14B4D980D3DB621BC875231B741653F0450A027FC9E87725F9D ] SymDS          C:\windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS
15:08:20.0456 0x17e4  SymDS - ok
15:08:21.0080 0x17e4  [ B12034EFC73DE70042A110B314802740, 47FD810FD22AF2D76299810101F0CCF497032E91DE37ACF6E09858F77BF49C16 ] SymEFA          C:\windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS
15:08:21.0314 0x17e4  SymEFA - ok
15:08:21.0392 0x17e4  [ 97E11C50CE52277B377396EA8838E539, E17D03F80E14F961C41F2D54D1EF73D29BF01F38459C5710D786234F8BA3C835 ] SymEvent        C:\windows\system32\Drivers\SYMEVENT64x86.SYS
15:08:21.0407 0x17e4  SymEvent - ok
15:08:21.0657 0x17e4  [ 48C2934683CBD06F662B088EEF49EF6A, 2212A3588C28F33EFCB1D34618B3054EBBAC6731D177A581D21D1F969FE040C0 ] SymIRON        C:\windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS
15:08:21.0704 0x17e4  SymIRON - ok
15:08:21.0906 0x17e4  [ FF06138CA54AA969F886D5590F4ECD6D, 6295465E63E1671AEED67CDBB03473C7D7606EB47C6FE84540635696806FB684 ] SymNetS        C:\windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS
15:08:21.0938 0x17e4  SymNetS - ok
15:08:22.0094 0x17e4  [ 34D5CB94656B443D50B3FF1A450A559C, C0F7CCC04FF290D6158150AC423FA54BE2B04C947E4414FDAD21FC544CD0033C ] SynTP          C:\windows\system32\DRIVERS\SynTP.sys
15:08:22.0109 0x17e4  SynTP - ok
15:08:22.0234 0x17e4  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain        C:\windows\system32\sysmain.dll
15:08:22.0421 0x17e4  SysMain - ok
15:08:22.0530 0x17e4  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\windows\System32\TabSvc.dll
15:08:22.0577 0x17e4  TabletInputService - ok
15:08:22.0811 0x17e4  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv        C:\windows\System32\tapisrv.dll
15:08:22.0842 0x17e4  TapiSrv - ok
15:08:22.0967 0x17e4  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS            C:\windows\System32\tbssvc.dll
15:08:22.0967 0x17e4  TBS - ok
15:08:23.0513 0x17e4  [ DB74544B75566C974815E79A62433F29, 035EBF70FDA28CF2B6C1FD7EE0ED703DB4B647064B5DBA6E258878A19B1BCCA4 ] Tcpip          C:\windows\system32\drivers\tcpip.sys
15:08:23.0732 0x17e4  Tcpip - ok
15:08:24.0122 0x17e4  [ DB74544B75566C974815E79A62433F29, 035EBF70FDA28CF2B6C1FD7EE0ED703DB4B647064B5DBA6E258878A19B1BCCA4 ] TCPIP6          C:\windows\system32\DRIVERS\tcpip.sys
15:08:24.0168 0x17e4  TCPIP6 - ok
15:08:24.0246 0x17e4  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\windows\system32\drivers\tcpipreg.sys
15:08:24.0278 0x17e4  tcpipreg - ok
15:08:24.0340 0x17e4  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\windows\system32\drivers\tdpipe.sys
15:08:24.0402 0x17e4  TDPIPE - ok
15:08:24.0465 0x17e4  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP          C:\windows\system32\drivers\tdtcp.sys
15:08:24.0543 0x17e4  TDTCP - ok
15:08:24.0621 0x17e4  [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx            C:\windows\system32\DRIVERS\tdx.sys
15:08:24.0636 0x17e4  tdx - ok
15:08:24.0714 0x17e4  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\windows\system32\drivers\termdd.sys
15:08:24.0714 0x17e4  TermDD - ok
15:08:24.0995 0x17e4  [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService    C:\windows\System32\termsrv.dll
15:08:25.0011 0x17e4  TermService - ok
15:08:25.0089 0x17e4  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\windows\system32\themeservice.dll
15:08:25.0089 0x17e4  Themes - ok
15:08:25.0136 0x17e4  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER    C:\windows\system32\mmcss.dll
15:08:25.0136 0x17e4  THREADORDER - ok
15:08:25.0245 0x17e4  [ DBCC20C02E8A3E43B03C304A4E40A84F, BF5F3ACCB0342304A6870E94D2576644B08DBF307C853C7DBA4B82B0C7309DA4 ] TPM            C:\windows\system32\drivers\tpm.sys
15:08:25.0385 0x17e4  TPM - ok
15:08:25.0432 0x17e4  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\windows\System32\trkwks.dll
15:08:25.0432 0x17e4  TrkWks - ok
15:08:25.0510 0x17e4  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
15:08:25.0510 0x17e4  TrustedInstaller - ok
15:08:25.0541 0x17e4  [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv        C:\windows\system32\DRIVERS\tssecsrv.sys
15:08:25.0557 0x17e4  tssecsrv - ok
15:08:25.0604 0x17e4  [ 17C6B51CBCCDED95B3CC14E22791F85E, EE417C19E9B2C258D62A74F1F2421AFFBAC67ACD62481CAA08F5B6A3439C1D7C ] TsUsbFlt        C:\windows\system32\drivers\tsusbflt.sys
15:08:25.0604 0x17e4  TsUsbFlt - ok
15:08:25.0650 0x17e4  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\windows\system32\DRIVERS\tunnel.sys
15:08:25.0713 0x17e4  tunnel - ok
15:08:25.0791 0x17e4  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\windows\system32\DRIVERS\uagp35.sys
15:08:25.0838 0x17e4  uagp35 - ok
15:08:25.0978 0x17e4  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\windows\system32\DRIVERS\udfs.sys
15:08:26.0087 0x17e4  udfs - ok
15:08:26.0150 0x17e4  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect      C:\windows\system32\UI0Detect.exe
15:08:26.0181 0x17e4  UI0Detect - ok
15:08:26.0212 0x17e4  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\windows\system32\drivers\uliagpkx.sys
15:08:26.0243 0x17e4  uliagpkx - ok
15:08:26.0321 0x17e4  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus          C:\windows\system32\DRIVERS\umbus.sys
15:08:26.0352 0x17e4  umbus - ok
15:08:26.0415 0x17e4  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\windows\system32\DRIVERS\umpass.sys
15:08:26.0462 0x17e4  UmPass - ok
15:08:26.0571 0x17e4  [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService    C:\windows\System32\umrdp.dll
15:08:26.0571 0x17e4  UmRdpService - ok
15:08:27.0336 0x17e4  [ 1B71370AEC1115F80D9A4A209317C968, C6886F556E87C1750991C27EF818B3A2CAB5DD84A26290457A005CFDECBEF884 ] UNS            C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
15:08:27.0477 0x17e4  UNS - ok
15:08:27.0617 0x17e4  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\windows\System32\upnphost.dll
15:08:27.0633 0x17e4  upnphost - ok
15:08:27.0695 0x17e4  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64      C:\windows\system32\Drivers\usbaapl64.sys
15:08:27.0773 0x17e4  USBAAPL64 - ok
15:08:27.0773 0x17e4  usbbus - ok
15:08:27.0867 0x17e4  [ 2B26FCB7C634C49313FD72120FB9946E, EF0C46AC9C8A911433543EBDEED905FA9ABE97D47F0BEC84B53B63FDAA8E3BAE ] usbccgp        C:\windows\system32\DRIVERS\usbccgp.sys
15:08:27.0945 0x17e4  usbccgp - ok
15:08:28.0023 0x17e4  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\windows\system32\drivers\usbcir.sys
15:08:28.0117 0x17e4  usbcir - ok
15:08:28.0133 0x17e4  UsbDiag - ok
15:08:28.0242 0x17e4  [ AA68C758B3F225618A5FD1ED40C383C4, 554C0D905D293EE0CFE3E09B85F17DA0335D444ED19E6082DB1FCD7B00490D62 ] usbehci        C:\windows\system32\drivers\usbehci.sys
15:08:28.0336 0x17e4  usbehci - ok
15:08:28.0460 0x17e4  [ 66E1EF753543785D7E2C44719B2C5DAD, DC46080D3C02B91DE753A38B32AF4E1A42DB16856EEC9DA52B8E5D220180959A ] usbhub          C:\windows\system32\DRIVERS\usbhub.sys
15:08:28.0492 0x17e4  usbhub - ok
15:08:28.0492 0x17e4  USBModem - ok
15:08:28.0554 0x17e4  [ B26ACA4784AD1295C25A7501FD4AB79E, 85AF98DE6D900C0986C9C5C808D0556DC3704C01EA0137F34C962D3B295455CE ] usbohci        C:\windows\system32\drivers\usbohci.sys
15:08:28.0616 0x17e4  usbohci - ok
15:08:28.0663 0x17e4  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\windows\system32\DRIVERS\usbprint.sys
15:08:28.0663 0x17e4  usbprint - ok
15:08:28.0757 0x17e4  [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan        C:\windows\system32\DRIVERS\usbscan.sys
15:08:28.0835 0x17e4  usbscan - ok
15:08:28.0913 0x17e4  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR        C:\windows\system32\DRIVERS\USBSTOR.SYS
15:08:28.0960 0x17e4  USBSTOR - ok
15:08:29.0038 0x17e4  [ 35944CFF264134FFD2E7EED0F8B81A56, 48D4CD3143950B2D2650B7F37EDE0B9B94921C1E1FB2A3FFF8C23B399929726F ] usbuhci        C:\windows\system32\drivers\usbuhci.sys
15:08:29.0132 0x17e4  usbuhci - ok
15:08:29.0210 0x17e4  [ 454800C2BC7F3927CE030141EE4F4C50, 10901E62DAA70657C499AD590DECCCA6E46FDDF4A193B2F19279E1B8ED7B1E44 ] usbvideo        C:\windows\system32\Drivers\usbvideo.sys
15:08:29.0257 0x17e4  usbvideo - ok
15:08:29.0304 0x17e4  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms          C:\windows\System32\uxsms.dll
15:08:29.0304 0x17e4  UxSms - ok
15:08:29.0319 0x17e4  [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] VaultSvc        C:\windows\system32\lsass.exe
15:08:29.0319 0x17e4  VaultSvc - ok
15:08:29.0943 0x17e4  [ 9F0B4584F9AB393CA599CB0D6191FD46, 4BFDC83E3410A00D8E17C99D6DA7FEBAB25ECE528663BFCA99E0C8DF5BEEB134 ] vcsFPService    C:\windows\system32\vcsFPService.exe
15:08:30.0115 0x17e4  vcsFPService - ok
15:08:30.0162 0x17e4  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\windows\system32\drivers\vdrvroot.sys
15:08:30.0162 0x17e4  vdrvroot - ok
15:08:30.0380 0x17e4  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds            C:\windows\System32\vds.exe
15:08:30.0411 0x17e4  vds - ok
15:08:30.0474 0x17e4  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga            C:\windows\system32\DRIVERS\vgapnp.sys
15:08:30.0489 0x17e4  vga - ok
15:08:30.0536 0x17e4  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave        C:\windows\System32\drivers\vga.sys
15:08:30.0614 0x17e4  VgaSave - ok
15:08:30.0692 0x17e4  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp          C:\windows\system32\DRIVERS\vhdmp.sys
15:08:30.0723 0x17e4  vhdmp - ok
15:08:30.0770 0x17e4  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\windows\system32\drivers\viaide.sys
15:08:30.0786 0x17e4  viaide - ok
15:08:30.0864 0x17e4  [ 86EA3E79AE350FEA5331A1303054005F, 7E7D6027EB41E591633C7383A5D29A3BA8ECFC08C177D2BCF741EE27686B1691 ] vmbus          C:\windows\system32\drivers\vmbus.sys
15:08:30.0895 0x17e4  vmbus - ok
15:08:30.0942 0x17e4  [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID        C:\windows\system32\drivers\VMBusHID.sys
15:08:30.0942 0x17e4  VMBusHID - ok
15:08:31.0004 0x17e4  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\windows\system32\drivers\volmgr.sys
15:08:31.0035 0x17e4  volmgr - ok
15:08:31.0363 0x17e4  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx        C:\windows\system32\drivers\volmgrx.sys
15:08:31.0379 0x17e4  volmgrx - ok
15:08:31.0472 0x17e4  [ DF8126BD41180351A093A3AD2FC8903B, AEFF4AA89CDDAAAD43CDE17C6B6EB2A397A0AC1651CBD51B889161EC2BC6527A ] volsnap        C:\windows\system32\drivers\volsnap.sys
15:08:31.0550 0x17e4  volsnap - ok
15:08:31.0659 0x17e4  [ B4A73CA4EF9A02B9738CEA9AD5FE5917, B6A8086189FE2F1C3FE5B3F484FBA3DB2E5E1836F3154D30090F136C27D16166 ] vpcbus          C:\windows\system32\DRIVERS\vpchbus.sys
15:08:31.0659 0x17e4  vpcbus - ok
15:08:31.0769 0x17e4  [ E675FB2B48C54F09895482E2253B289C, 68BBFBF2356C849722E429CA753CC309A3CCE8CF00EBDBBD2695ECD292324DF2 ] vpcnfltr        C:\windows\system32\DRIVERS\vpcnfltr.sys
15:08:31.0893 0x17e4  vpcnfltr - ok
15:08:32.0065 0x17e4  [ 5FB42082B0D19A0268705F1DD343DF20, 62F8EEE6A507CE6A8BD638020118D71B78332F79BA82654AB702AE46B04767D9 ] vpcusb          C:\windows\system32\DRIVERS\vpcusb.sys
15:08:32.0081 0x17e4  vpcusb - ok
15:08:32.0205 0x17e4  [ 207B6539799CC1C112661A9B620DD233, 6B915CC7F77C867516D94865D7BF2E5C815402EF0A4488C3EB2FEF7CFA6C98F6 ] vpcvmm          C:\windows\system32\drivers\vpcvmm.sys
15:08:32.0221 0x17e4  vpcvmm - ok
15:08:32.0315 0x17e4  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid        C:\windows\system32\DRIVERS\vsmraid.sys
15:08:32.0361 0x17e4  vsmraid - ok
15:08:32.0611 0x17e4  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS            C:\windows\system32\vssvc.exe
15:08:32.0720 0x17e4  VSS - ok
15:08:32.0798 0x17e4  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\windows\system32\DRIVERS\vwifibus.sys
15:08:32.0845 0x17e4  vwifibus - ok
15:08:32.0907 0x17e4  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\windows\system32\DRIVERS\vwififlt.sys
15:08:32.0970 0x17e4  vwififlt - ok
15:08:33.0001 0x17e4  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp        C:\windows\system32\DRIVERS\vwifimp.sys
15:08:33.0032 0x17e4  vwifimp - ok
15:08:33.0251 0x17e4  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time        C:\windows\system32\w32time.dll
15:08:33.0251 0x17e4  W32Time - ok
15:08:33.0329 0x17e4  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\windows\system32\DRIVERS\wacompen.sys
15:08:33.0407 0x17e4  WacomPen - ok
15:08:33.0485 0x17e4  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\windows\system32\DRIVERS\wanarp.sys
15:08:33.0547 0x17e4  WANARP - ok
15:08:33.0578 0x17e4  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\windows\system32\DRIVERS\wanarp.sys
15:08:33.0594 0x17e4  Wanarpv6 - ok
15:08:33.0999 0x17e4  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc    C:\windows\system32\Wat\WatAdminSvc.exe
15:08:34.0077 0x17e4  WatAdminSvc - ok
15:08:34.0514 0x17e4  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\windows\system32\wbengine.exe
15:08:34.0608 0x17e4  wbengine - ok
15:08:34.0686 0x17e4  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\windows\System32\wbiosrvc.dll
15:08:34.0717 0x17e4  WbioSrvc - ok
15:08:34.0779 0x17e4  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc        C:\windows\System32\wcncsvc.dll
15:08:34.0795 0x17e4  wcncsvc - ok
15:08:34.0842 0x17e4  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
15:08:34.0857 0x17e4  WcsPlugInService - ok
15:08:34.0873 0x17e4  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\windows\system32\DRIVERS\wd.sys
15:08:34.0889 0x17e4  Wd - ok
15:08:35.0091 0x17e4  [ 442783E2CB0DA19873B7A63833FF4CB4, 09254970265476214F3187CC22A4F9C7C2769D419600E83FBE302C3A103E527F ] Wdf01000        C:\windows\system32\drivers\Wdf01000.sys
15:08:35.0169 0x17e4  Wdf01000 - ok
15:08:35.0201 0x17e4  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\windows\system32\wdi.dll
15:08:35.0201 0x17e4  WdiServiceHost - ok
15:08:35.0263 0x17e4  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost  C:\windows\system32\wdi.dll
15:08:35.0263 0x17e4  WdiSystemHost - ok
15:08:35.0372 0x17e4  [ 3DB6D04E1C64272F8B14EB8BC4616280, 9138642B1C19F895D4ECFD930160C80FBF15813CE63BBF4C899842C300FD3026 ] WebClient      C:\windows\System32\webclnt.dll
15:08:35.0450 0x17e4  WebClient - ok
15:08:35.0606 0x17e4  [ D5BA7D43FA2EF656BF7E98A188391E40, 56CF132B7C43A0F9C7C4D070730315FE7AFD2E87E94014DFC3D7107BB52B9C64 ] Wecsvc          C:\windows\system32\wecsvc.dll
15:08:35.0793 0x17e4  Wecsvc - ok
15:08:35.0871 0x17e4  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport  C:\windows\System32\wercplsupport.dll
15:08:35.0887 0x17e4  wercplsupport - ok
15:08:35.0934 0x17e4  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\windows\System32\WerSvc.dll
15:08:35.0934 0x17e4  WerSvc - ok
15:08:35.0996 0x17e4  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\windows\system32\DRIVERS\wfplwf.sys
15:08:36.0059 0x17e4  WfpLwf - ok
15:08:36.0105 0x17e4  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\windows\system32\drivers\wimmount.sys
15:08:36.0137 0x17e4  WIMMount - ok
15:08:36.0183 0x17e4  WinDefend - ok
15:08:36.0215 0x17e4  WinHttpAutoProxySvc - ok
15:08:36.0839 0x17e4  [ 136760C1E9697BAF4ECDEAE5590A0806, 12E80D0923D794F4C520FEA7CB98EF581231B996FB1876EB20995E6E457EFF56 ] Winmgmt        C:\windows\system32\wbem\WMIsvc.dll
15:08:36.0870 0x17e4  Winmgmt - ok
15:08:37.0541 0x17e4  [ 3BB6B401A780BF434C8F58137DE10BF7, 1A377C39B78B92A1A1FED699EE5E5ED0271A6FFAC143F1D29FC1FDF4D726A522 ] WinRM          C:\windows\system32\WsmSvc.dll
15:08:37.0775 0x17e4  WinRM - ok
15:08:37.0853 0x17e4  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUSB          C:\windows\system32\DRIVERS\WinUSB.sys
15:08:37.0899 0x17e4  WinUSB - ok
15:08:38.0227 0x17e4  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc        C:\windows\System32\wlansvc.dll
15:08:38.0258 0x17e4  Wlansvc - ok
15:08:38.0898 0x17e4  [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc        C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:08:39.0085 0x17e4  wlidsvc - ok
15:08:39.0116 0x17e4  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi        C:\windows\system32\drivers\wmiacpi.sys
15:08:39.0116 0x17e4  WmiAcpi - ok
15:08:39.0163 0x17e4  [ 4DF841632B62A7CF19A79A05046A8AB1, D80F28FD7FEB95DB83976EAFECB2E9AE1423DA4D34EC5D820FC39A33444B82DA ] wmiApSrv        C:\windows\system32\wbem\WmiApSrv.exe
15:08:39.0179 0x17e4  wmiApSrv - ok
15:08:39.0210 0x17e4  WMPNetworkSvc - ok
15:08:39.0241 0x17e4  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\windows\System32\wpcsvc.dll
15:08:39.0257 0x17e4  WPCSvc - ok
15:08:39.0319 0x17e4  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\windows\system32\wpdbusenum.dll
15:08:39.0319 0x17e4  WPDBusEnum - ok
15:08:39.0381 0x17e4  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl        C:\windows\system32\drivers\ws2ifsl.sys
15:08:39.0459 0x17e4  ws2ifsl - ok
15:08:39.0522 0x17e4  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\windows\System32\wscsvc.dll
15:08:39.0522 0x17e4  wscsvc - ok
15:08:39.0600 0x17e4  [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice  C:\windows\system32\DRIVERS\WSDPrint.sys
15:08:39.0678 0x17e4  WSDPrintDevice - ok
15:08:39.0693 0x17e4  WSearch - ok
15:08:40.0286 0x17e4  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\windows\system32\wuaueng.dll
15:08:40.0442 0x17e4  wuauserv - ok
15:08:40.0505 0x17e4  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\windows\system32\drivers\WudfPf.sys
15:08:40.0598 0x17e4  WudfPf - ok
15:08:40.0692 0x17e4  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc        C:\windows\System32\WUDFSvc.dll
15:08:40.0754 0x17e4  wudfsvc - ok
15:08:40.0832 0x17e4  [ FE90B750AB808FB9DD8FBB428B5FF83B, 3F8F592EC813BE292D305A87C5BA852F8BC3D7CE610612D9871F209A17326AA8 ] WwanSvc        C:\windows\System32\wwansvc.dll
15:08:40.0879 0x17e4  WwanSvc - ok
15:08:41.0269 0x17e4  [ 918C73F0275D7813E6F01E100B39DBD9, 06D08C9B0894A307A4D215B445A5EA08CD53DEA19526FECBB4ADDB833D1070D1 ] ZAtheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
15:08:41.0300 0x17e4  ZAtheros Bt&Wlan Coex Agent - ok
15:08:41.0425 0x17e4  ================ Scan global ===============================
15:08:41.0690 0x17e4  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\windows\system32\basesrv.dll
15:08:41.0909 0x17e4  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll
15:08:41.0987 0x17e4  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\windows\system32\winsrv.dll
15:08:42.0034 0x17e4  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\windows\system32\sxssrv.dll
15:08:42.0314 0x17e4  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\windows\system32\services.exe
15:08:42.0361 0x17e4  [ Global ] - ok
15:08:42.0377 0x17e4  ================ Scan MBR ==================================
15:08:42.0408 0x17e4  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:08:43.0984 0x17e4  \Device\Harddisk0\DR0 - ok
15:08:43.0999 0x17e4  ================ Scan VBR ==================================
15:08:44.0015 0x17e4  [ 0423DD61DE77DA90A2544F4F39648236 ] \Device\Harddisk0\DR0\Partition1
15:08:44.0186 0x17e4  \Device\Harddisk0\DR0\Partition1 - ok
15:08:44.0233 0x17e4  [ 5C29243C9BFF90950BC47AA658A6EF58 ] \Device\Harddisk0\DR0\Partition2
15:08:44.0327 0x17e4  \Device\Harddisk0\DR0\Partition2 - ok
15:08:44.0389 0x17e4  [ 28562753A6C395803695F7178E58EAA8 ] \Device\Harddisk0\DR0\Partition3
15:08:44.0514 0x17e4  \Device\Harddisk0\DR0\Partition3 - ok
15:08:44.0561 0x17e4  [ FCAEB18F32D5FEFC6FC199BD15117806 ] \Device\Harddisk0\DR0\Partition4
15:08:44.0592 0x17e4  \Device\Harddisk0\DR0\Partition4 - ok
15:08:44.0608 0x17e4  AV detected via SS2: Norton Internet Security, C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\WSCStub.exe ( 21.0.0.0 ), 0x51000 ( enabled : updated )
15:08:44.0608 0x17e4  FW detected via SS2: Norton Internet Security, C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\WSCStub.exe ( 21.0.0.0 ), 0x51010 ( enabled )
15:08:44.0608 0x17e4  ============================================================
15:08:44.0608 0x17e4  Scan finished
15:08:44.0608 0x17e4  ============================================================
15:08:44.0623 0x0b74  Detected object count: 0
15:08:44.0623 0x0b74  Actual detected object count: 0
Avatar billede mathilda Nybegynder
03. oktober 2013 - 19:19 #43
Når jeg kører  aswMBR med Avast definitioner, scan, så kører den et stykke tid, hvorefter den stopper ed meddelelsen: Avast antirootkit er holdt op med at fungere,
Avatar billede f-arn Guru
03. oktober 2013 - 23:09 #44
Prøv dette i stedet ->

Hent Malwarebytes Anti-Rootkit ned på skrivebordet og pak den ud i en mappe.

Start mbar.exe og lad den opdatere.

Mht.: Vista og Windows 7/8 - Højreklik på filen - Kør som Administrator.

Når den har Scannet færdig klikker du på Cleanup og genstarter PCen hvis du opfordres til det.

Den laver to logfiler (mbar-log-ÅR-Måned-Dato og System-log.txt) i Malwarebytes Anti-Rootkit mappen.

Dem skal du kopiere ind i dit næste indlæg.
Avatar billede mathilda Nybegynder
05. oktober 2013 - 12:44 #45
Her kommer de to logs

Først System-log.txt  og derefter  mbar-log dato


Mbar  system-log.txt

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1005

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x64

Account is Administrative

Internet Explorer version: 10.0.9200.16686

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.095000 GHz
Memory total: 4226146304, free: 2013241344

=======================================


---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1005

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x64

Account is Administrative

Internet Explorer version: 10.0.9200.16686

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED
CPU speed: 2.095000 GHz
Memory total: 4226146304, free: 2012557312

Downloaded database version: v2013.10.04.04
Downloaded database version: v2013.09.30.01
=======================================
Initializing...
------------ Kernel report ------------
    10/04/2013 11:46:39
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\system32\drivers\gfibto.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\DRIVERS\iaStor.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\msahci.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\SYMDS64.SYS
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\System32\Drivers\MfeEpeOpal.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\Drivers\MfeEpePc.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\system32\DRIVERS\hpdskflt.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\drivers\EUBKMON.sys
\SystemRoot\system32\drivers\eubakup.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\ccSetx64.sys
\SystemRoot\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\Ironx64.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vpcnfltr.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\vpcvmm.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\SYMNETS.SYS
\??\C:\windows\system32\Drivers\SYMEVENT64x86.SYS
\SystemRoot\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\??\C:\windows\system32\drivers\EuFdDisk.sys
\??\C:\windows\system32\drivers\eudskacs.sys
\??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
\??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\??\C:\windows\system32\drivers\cbfs3.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\igdkmd64.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\HECIx64.sys
\SystemRoot\system32\drivers\usbehci.sys
\SystemRoot\system32\drivers\USBPORT.SYS
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\DRIVERS\SCSIPORT.SYS
\SystemRoot\system32\DRIVERS\athrx.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\SystemRoot\system32\DRIVERS\Rt64win7.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\HpqKbFiltr.sys
\SystemRoot\system32\DRIVERS\SynTP.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\drivers\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\SysWOW64\drivers\Afc.sys
\SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\Accelerometer.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\drivers\wmiacpi.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\DRIVERS\serscan.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\DRIVERS\btath_bus.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\vpcusb.sys
\SystemRoot\system32\DRIVERS\usbrpm.sys
\SystemRoot\system32\DRIVERS\vpchbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\stwrt64.sys
\SystemRoot\system32\DRIVERS\portcls.sys
\SystemRoot\system32\DRIVERS\drmk.sys
\SystemRoot\system32\DRIVERS\stdriverx64.sys
\SystemRoot\system32\DRIVERS\agrsm64.sys
\SystemRoot\system32\drivers\modem.sys
\SystemRoot\system32\DRIVERS\IntcDAud.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\SystemRoot\system32\DRIVERS\cdfs.sys
\SystemRoot\system32\DRIVERS\WinUSB.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\snp2uvc.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_iaStor.sys
\SystemRoot\System32\Drivers\dump_MfeEpeHb.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\system32\DRIVERS\DAMDrv64.sys
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\NISx64\1500010.003\SRTSP64.SYS
\SystemRoot\system32\DRIVERS\psi_mf_amd64.sys
\??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131003.001\IDSvia64.sys
\??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131003.065\EX64.SYS
\??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131003.065\ENG64.SYS
\??\C:\windows\system32\drivers\mbamchameleon.sys
\??\C:\windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8004b4a060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IAAStorageDevice-1\
Lower Device Object: 0xfffffa8004b84050
Lower Device Driver Name: \Driver\iaStor\
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8004b4a060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8004b4aab0, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8004ca5880, DeviceName: Unknown, DriverName: \Driver\MfeEpeOpal\
DevicePointer: 0xfffffa8004b4b040, DeviceName: Unknown, DriverName: \Driver\MfeEpePc\
DevicePointer: 0xfffffa8004b4a060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8004ca6b10, DeviceName: Unknown, DriverName: \Driver\hpdskflt\
DevicePointer: 0xfffffa8004b80550, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xfffffa8004b84050, DeviceName: \Device\Ide\IAAStorageDevice-1\, DriverName: \Driver\iaStor\
------------ End ----------
Alternate DeviceName: Unknown, DriverName: \Driver\MfeEpeOpal\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 42EBD29

Partition information:

    Partition 0 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 2048  Numsec = 614400
    Partition file system is NTFS
    Partition is bootable

    Partition 1 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 616448  Numsec = 575512576

    Partition 2 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 576129024  Numsec = 38520832

    Partition 3 type is Other (0xc)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 614649856  Numsec = 10489856

Disk Size: 320072933376 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-2047-625122448-625142448)...
Done!
Scan finished
=======================================


Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\Bootstrap_0_0_2048_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_r.mbam...
Removal finished




**********************************
**********************************
**********************************
**********************************


mbar-log dato

Malwarebytes Anti-Rootkit BETA 1.07.0.1005
www.malwarebytes.org

Database version: v2013.10.04.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16686
Torben :: TORBEN-HP [administrator]

04-10-2013 11:46:45
mbar-log-2013-10-04 (11-46-45).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 232872
Time elapsed: 29 minute(s), 25 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
Avatar billede f-arn Guru
05. oktober 2013 - 20:32 #46
Vi har gjort flere ting, så inden vi fortsætter - vil jeg gerne høre om der er nogen forbedring ?
Avatar billede mathilda Nybegynder
07. oktober 2013 - 23:37 #47
Jeg har ikke haft mulighed for at komme på nettet de sidste par dage. De er rart at se, at jeg tilsyneladende er fri for kendt malware, men opstart er stadig MEGET sløv.
Avatar billede f-arn Guru
08. oktober 2013 - 23:24 #48
Det jeg gerne ville vide var, om du stadig har problemer med safe mode ?
Avatar billede mathilda Nybegynder
08. oktober 2013 - 23:51 #49
Ja, der er stadig problemer med Safe Mode.
Jeg kan starte Safe Mode, men efter 10 sekunder holder Wondows Explorer op med at fungere.
Avatar billede f-arn Guru
10. oktober 2013 - 07:35 #50
Vil du godt læse det jeg skriver omhyggeligt, for det er ikke de almindelige former for safe mode jeg mener.

------

Til 64 bit Windows, hent Farbar Recovery Scan Tool x64 og gem den på et USB nøgle.

Sæt USB nøglen i problem PCen.

Start PCen op med "Advanced Boot Options" (Tryk F8 flere gange under opstart)
Vælg "Repair Your Computer"
Vælg sprog.
Vælg Bruger konto.

Så skal du vælge Kommando Prompt.

Der skriver du notepad, og trykker <Enter>

Vælg Fil menu -> Åbn og vælg"Computer". Find drevbogstavet til din USB nøgle. Luk Notesblok.

Ved Kommando prompten skriver du e:\frst (64 bit Windows e:\frst64)
Erstat e med det rigtige bogstav.

Når Farbar Recovery Scan Tool er startet, klikker du på Scan.

Den laver FRST.txt på USB nøglen. Kopier den herind i dit næste indlæg.
Avatar billede mathilda Nybegynder
12. oktober 2013 - 22:14 #51
Hej f-arn
Når du skriver:
Vil du godt læse det jeg skriver omhyggeligt, for det er ikke de almindelige former for safe mode jeg mener.
      Er det så med hensyn til din videre vejledning, eller en tidligere kommentar?

Hvor stor skal USB-nøglen være?

Vælge sprog  ---  Skal jeg vælge samme sprog som det installerede system?

Skal bruger-konto være en administrator?
Avatar billede f-arn Guru
13. oktober 2013 - 20:32 #52
Når jeg skriver det på den måde, er det fordi min erfaring siger mig - at rigtig mange forveksler det med "Fejlsikret med Kommando Prompt".

Og det er ikke der jeg ønsker du skal køre FRST fra!!!!!

ANG sprog, ja - og det skal være en admin bruger :)
Avatar billede mathilda Nybegynder
17. oktober 2013 - 10:57 #53
Beklager at det tog lidt tid inden jeg fik kørt frst64.
dens log er herunder. Jeg ser at den skriver
Windows 7 Professional (X64) OS Language: English(US)
men jeg valgte sproget  Dansk  for menuerne er danske - er det OK?


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by SYSTEM on MININT-KE4CQNJ on 17-10-2013 10:35:54
Running from H:\
Windows 7 Professional (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [MfeEpePcMonitor] - C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe [200704 2013-02-01] ()
HKLM\...\Run: [HPPowerAssistant] - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2996792 2011-07-15] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3011824 2013-03-14] (Synaptics Incorporated)
HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184736 2012-09-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [169528 2013-02-27] (Hewlett-Packard Company)
Lsa: [Notification Packages] EpePcNp64 DPPassFilter scecli
Startup: C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk ->  (No File)
SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\system32\CbFsMntNtf3.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} -  No File
BootExecute: autocheck autochk * bootdelete

==================== Services (Whitelisted) =================

S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-19] (Qualcomm Atheros Commnucations)
S2 DpHost; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [486224 2011-11-10] (DigitalPersona, Inc.)
S3 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [69192 2012-12-19] (CHENGDU YIWO Tech Development Co., Ltd)
S2 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [476728 2011-09-05] (Hewlett-Packard Company)
S3 Guard Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe [23624 2012-12-19] (CHENGDU YIWO Tech Development Co., Ltd)
S2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-27] (Hewlett-Packard Company)
S2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company)
S2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1323008 2013-01-31] ()
S2 MCLIENT; C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe [143928 2012-12-04] (Symantec Corporation)
S2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe [144368 2013-05-20] (Symantec Corporation)
S2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-08-11] (PDF Complete Inc)
S2 RtlISMServ; C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe [40960 2011-05-30] (Realtek)
S3 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
S2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
S3 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
S2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
S2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-19] (Atheros)
S2 HPSLPSVC; C:\Users\Torben\AppData\Local\Temp\7zS5757\hpslpsvc64.dll [x]

==================== Drivers (Whitelisted) ====================

S1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20131002.001\BHDrvx64.sys [1525848 2013-10-01] (Symantec Corporation)
S1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20131002.001\BHDrvx64.sys [1525848 2013-10-01] (Symantec Corporation)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2012-08-19] (Qualcomm Atheros)
S1 cbfs3; C:\windows\system32\drivers\cbfs3.sys [352144 2012-04-09] (EldoS Corporation)
S1 ccSet_MCLIENT; C:\Windows\system32\drivers\MCLIENTx64\0302020.00C\ccSetx64.sys [168096 2012-10-03] (Symantec Corporation)
S1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1501000.012\ccSetx64.sys [162392 2013-09-25] (Symantec Corporation)
S1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD04000.00A\ccSetx64.sys [169048 2013-04-15] (Symantec Corporation)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [63336 2011-02-07] (Hewlett-Packard Company)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-09-23] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-09-23] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [140376 2013-09-23] (Symantec Corporation)
S0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [48200 2012-12-19] ()
S3 FlashUSB; C:\Windows\System32\DRIVERS\FlashUSB_x64.sys [19968 2010-05-11] (Danish Wireless Design A/S)
S0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-09-19] (GFI Software)
S1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131015.003\IDSvia64.sys [521816 2013-10-16] (Symantec Corporation)
S1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131015.003\IDSvia64.sys [521816 2013-10-16] (Symantec Corporation)
S0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [101288 2013-02-01] (McAfee, Inc.)
S0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158888 2013-02-01] (McAfee, Inc.)
S3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131016.016\ENG64.SYS [126040 2013-09-23] (Symantec Corporation)
S3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131016.016\ENG64.SYS [126040 2013-09-23] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131016.016\EX64.SYS [2099288 2013-09-23] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131016.016\EX64.SYS [2099288 2013-09-23] (Symantec Corporation)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1501000.012\SRTSP64.SYS [858200 2013-09-26] (Symantec Corporation)
S1 SRTSPX; C:\Windows\system32\drivers\NISx64\1501000.012\SRTSPX64.SYS [36952 2013-07-30] (Symantec Corporation)
S3 stdriver; C:\Windows\System32\DRIVERS\stdriverx64.sys [32536 2013-04-17] ()
S0 SymDS; C:\Windows\System32\drivers\NISx64\1501000.012\SYMDS64.SYS [493656 2013-07-31] (Symantec Corporation)
S0 SymEFA; C:\Windows\System32\drivers\NISx64\1501000.012\SYMEFA64.SYS [1147480 2013-09-26] (Symantec Corporation)
S3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-09-23] (Symantec Corporation)
S1 SymIRON; C:\Windows\system32\drivers\NISx64\1501000.012\Ironx64.SYS [264280 2013-07-30] (Symantec Corporation)
S1 SymNetS; C:\Windows\System32\Drivers\NISx64\1501000.012\SYMNETS.SYS [590936 2013-09-25] (Symantec Corporation)
S3 ARCVCAM; system32\DRIVERS\ArcSoftVCapture.sys [x]
S3 CpqDfw; system32\drivers\CpqDfw.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 LgBttPort; system32\DRIVERS\lgbtpt64.sys [x]
S3 lgbusenum; system32\DRIVERS\lgbtbs64.sys [x]
S3 LGVMODEM; system32\DRIVERS\lgvmdm64.sys [x]
S3 usbbus; system32\DRIVERS\lgx64bus.sys [x]
S3 UsbDiag; system32\DRIVERS\lgx64diag.sys [x]
S3 USBModem; system32\DRIVERS\lgx64modem.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-16 22:52 - 2013-10-16 22:52 - 01954124 _____ (Farbar) C:\Users\Torben\Downloads\FRST64.exe
2013-10-16 22:48 - 2013-10-16 22:48 - 00005344 _____ C:\Users\Torben\Desktop\Eksperten f-arn.odt
2013-10-16 22:19 - 2013-10-16 22:19 - 00000000 ____D C:\Windows\System32\Tasks\Norton Internet Security
2013-10-16 22:02 - 2013-07-04 04:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll
2013-10-16 22:02 - 2013-07-04 04:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll
2013-10-16 22:02 - 2013-07-04 03:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-16 22:02 - 2013-07-04 03:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-16 22:02 - 2013-07-04 02:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxdav.sys
2013-10-15 12:03 - 2013-09-22 15:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-15 12:03 - 2013-09-22 14:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-10-15 12:03 - 2013-09-20 19:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-10-15 12:03 - 2013-09-20 19:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-15 12:02 - 2013-09-22 15:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-15 12:02 - 2013-09-22 15:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-15 12:02 - 2013-09-22 15:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-15 12:02 - 2013-09-22 14:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-10-15 12:02 - 2013-09-22 14:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-10-15 12:02 - 2013-09-22 14:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-10-15 12:02 - 2013-09-22 14:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-10-15 12:02 - 2013-09-22 14:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-10-15 12:02 - 2013-09-20 18:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-10-15 12:02 - 2013-09-20 18:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-15 08:20 - 2013-10-15 08:20 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-10-15 07:46 - 2013-09-13 17:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys
2013-10-15 07:46 - 2013-09-07 18:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-10-15 07:46 - 2013-09-07 18:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\System32\mswsock.dll
2013-10-15 07:46 - 2013-09-07 18:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-15 07:46 - 2013-07-04 04:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\System32\comctl32.dll
2013-10-15 07:46 - 2013-07-04 03:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-15 07:45 - 2013-06-25 14:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys
2013-10-15 07:45 - 2013-06-05 21:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll
2013-10-15 07:45 - 2013-06-05 21:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2013-10-15 07:45 - 2013-06-05 21:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2013-10-15 07:45 - 2013-06-05 21:47 - 00046080 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll
2013-10-15 07:45 - 2013-06-05 20:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-15 07:45 - 2013-06-05 20:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-15 07:45 - 2013-06-05 20:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-15 07:45 - 2013-06-05 19:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2013-10-15 07:45 - 2013-06-05 19:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-15 07:45 - 2013-06-05 19:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-15 07:44 - 2013-07-02 20:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys
2013-10-15 07:44 - 2013-07-02 20:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidparse.sys
2013-10-15 07:42 - 2013-08-27 17:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-10-15 07:42 - 2013-07-12 02:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbvideo.sys
2013-10-15 07:42 - 2013-07-12 02:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbcir.sys
2013-10-15 07:40 - 2013-08-28 18:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2013-10-15 07:40 - 2013-08-28 18:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2013-10-15 07:40 - 2013-08-28 18:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\System32\tdh.dll
2013-10-15 07:40 - 2013-08-28 18:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\wow64.dll
2013-10-15 07:40 - 2013-08-28 18:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\System32\advapi32.dll
2013-10-15 07:40 - 2013-08-28 17:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-15 07:40 - 2013-08-28 17:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-15 07:40 - 2013-08-28 17:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-15 07:40 - 2013-08-28 17:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-15 07:40 - 2013-08-28 17:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-15 07:40 - 2013-08-28 17:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-15 07:40 - 2013-08-28 16:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-15 07:40 - 2013-08-28 16:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-15 07:40 - 2013-08-28 16:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-15 07:40 - 2013-08-28 16:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-15 07:37 - 2013-08-27 17:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\System32\scavengeui.dll
2013-10-15 07:37 - 2013-08-01 01:19 - 00984512 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2013-10-15 07:37 - 2013-08-01 01:19 - 00265152 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys
2013-10-15 07:37 - 2013-07-20 02:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-10-15 07:37 - 2013-07-20 02:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-04 01:46 - 2013-10-04 03:26 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-10-04 01:43 - 2013-10-04 03:26 - 00000000 ____D C:\Users\Torben\Desktop\mbar
2013-10-02 20:19 - 2013-10-03 05:05 - 00000000 ____D C:\Users\Torben\Desktop\TDSSKiller
2013-10-01 20:19 - 2013-10-01 20:19 - 00000000 ____D C:\FRST
2013-10-01 12:04 - 2013-10-01 12:04 - 00000000 ____D C:\Windows\ERUNT
2013-09-28 13:24 - 2013-09-28 13:25 - 00001044 _____ C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
2013-09-28 06:34 - 2013-09-28 06:35 - 00000241 _____ C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
2013-09-28 05:44 - 2013-09-28 05:44 - 00032240 _____ C:\Users\Torben\Desktop\dds.txt
2013-09-28 05:44 - 2013-09-28 05:44 - 00010977 _____ C:\Users\Torben\Desktop\attach.txt
2013-09-28 05:10 - 2013-09-28 05:10 - 00003250 _____ C:\Windows\System32\Tasks\{206EC948-566D-4E5F-9D78-46B637E4ACCC}
2013-09-28 05:04 - 2013-09-28 05:04 - 00003190 _____ C:\Windows\System32\Tasks\{E600702E-FB22-4CF7-B8C6-67117EC37859}
2013-09-28 04:58 - 2013-09-28 04:58 - 00003138 _____ C:\Windows\System32\Tasks\{EB6142DB-86AC-447A-A9FA-B8656A8A4520}
2013-09-28 03:00 - 2013-09-28 03:02 - 00015274 _____ C:\Users\Torben\Documents\cc_20130928_130052.reg
2013-09-28 00:56 - 2013-10-16 23:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-28 00:56 - 2013-10-08 11:54 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-09-28 00:56 - 2013-10-08 11:53 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-09-28 00:56 - 2013-10-08 11:53 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-26 12:36 - 2013-09-26 12:37 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406(1).exe
2013-09-26 10:58 - 2013-09-26 10:59 - 00000149 _____ C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
2013-09-25 07:32 - 2013-09-25 07:33 - 00000161 _____ C:\Users\Torben\Desktop\MS  WIN7  Community.url
2013-09-25 06:52 - 2013-09-25 06:52 - 00000167 _____ C:\Users\Torben\Desktop\sfc .url
2013-09-25 06:31 - 2013-09-25 06:31 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406.exe
2013-09-25 06:22 - 2013-09-25 06:21 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-09-25 06:22 - 2013-09-25 06:21 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-09-25 06:22 - 2013-09-25 06:21 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-09-25 06:22 - 2013-09-25 06:21 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-23 08:49 - 2013-10-16 22:11 - 00002501 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
2013-09-23 08:49 - 2013-09-23 08:49 - 00177752 _____ (Symantec Corporation) C:\Windows\System32\Drivers\SYMEVENT64x86.SYS
2013-09-23 08:49 - 2013-09-23 08:49 - 00008222 _____ C:\Windows\System32\Drivers\SYMEVENT64x86.CAT
2013-09-23 08:48 - 2013-09-23 08:48 - 00000000 ____D C:\Program Files (x86)\Norton Internet Security
2013-09-23 08:46 - 2013-09-23 08:46 - 00001287 _____ C:\Users\Torben\Desktop\Norton Installation Files.lnk
2013-09-23 08:22 - 2013-09-23 08:22 - 00869456 _____ C:\Users\Torben\Downloads\Norton_Removal_Tool.exe
2013-09-23 08:13 - 2013-09-23 08:13 - 07539624 _____ (Symantec Corporation) C:\Users\Torben\Downloads\NRnR(2).exe
2013-09-23 07:18 - 2013-09-24 06:51 - 00231467 _____ C:\Users\Torben\Desktop\Systemgendannelse.odt
2013-09-22 14:46 - 2013-09-22 14:46 - 08646407 _____ C:\Users\Torben\Documents\Firefox 24.0 (da) - 2013-09-23.pcv
2013-09-22 14:45 - 2013-09-23 07:59 - 00000000 ____D C:\Program Files (x86)\MozBackup
2013-09-22 01:31 - 2013-09-22 01:32 - 00000161 _____ C:\Users\Torben\Desktop\Use and manage plugins.url
2013-09-21 03:34 - 2013-09-25 06:23 - 00000000 ____D C:\ProgramData\Oracle
2013-09-21 01:23 - 2013-09-21 01:24 - 00000223 _____ C:\Users\Torben\Desktop\HP diagnose.url
2013-09-19 06:37 - 2013-09-19 06:37 - 00011820 _____ C:\Users\Torben\Documents\Norton Identity Safe.CSV
2013-09-19 06:36 - 2013-09-19 06:36 - 00077824 _____ C:\Users\Torben\Documents\Norton Identity Safe.DAT
2013-09-19 05:59 - 2013-09-19 05:59 - 00019968 ___SH C:\Users\Torben\AppData\Roaming\Thumbs.db
2013-09-18 07:37 - 2013-09-18 07:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 07:24 - 2013-09-18 07:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-09-18 04:43 - 2013-09-18 04:43 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-18 04:43 - 2013-09-18 04:43 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-09-17 12:38 - 2013-09-17 12:38 - 00003552 _____ C:\Windows\System32\Tasks\{02B34B83-8AC8-4D27-B035-5F54280EE7A7}
2013-09-17 06:12 - 2013-09-17 06:13 - 00262270 _____ C:\Windows\msxml4-KB2758694-enu.LOG

==================== One Month Modified Files and Folders =======

2013-10-17 00:27 - 2012-07-09 05:42 - 01156311 _____ C:\Windows\WindowsUpdate.log
2013-10-17 00:27 - 2009-07-13 20:45 - 00020944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-17 00:27 - 2009-07-13 20:45 - 00020944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-17 00:25 - 2011-05-04 17:52 - 00508892 _____ C:\Windows\System32\perfh006.dat
2013-10-17 00:25 - 2011-05-04 17:52 - 00098126 _____ C:\Windows\System32\perfc006.dat
2013-10-17 00:25 - 2009-07-13 21:13 - 01372536 _____ C:\Windows\System32\PerfStringBackup.INI
2013-10-17 00:23 - 2011-05-04 18:07 - 00000000 ____D C:\ProgramData\PDFC
2013-10-17 00:21 - 2013-06-04 15:24 - 00000000 ___RD C:\Users\Torben\Dropbox
2013-10-17 00:21 - 2013-06-04 14:50 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Dropbox
2013-10-17 00:21 - 2012-07-11 05:17 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-17 00:17 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-17 00:17 - 2009-07-13 20:51 - 00161868 _____ C:\Windows\setupact.log
2013-10-16 23:47 - 2012-07-11 05:17 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-16 23:45 - 2013-09-28 00:56 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-16 22:52 - 2013-10-16 22:52 - 01954124 _____ (Farbar) C:\Users\Torben\Downloads\FRST64.exe
2013-10-16 22:48 - 2013-10-16 22:48 - 00005344 _____ C:\Users\Torben\Desktop\Eksperten f-arn.odt
2013-10-16 22:28 - 2012-09-08 00:28 - 00000000 ____D C:\Users\Torben\AppData\Local\NPE
2013-10-16 22:19 - 2013-10-16 22:19 - 00000000 ____D C:\Windows\System32\Tasks\Norton Internet Security
2013-10-16 22:13 - 2013-01-30 07:57 - 00000000 ____D C:\Windows\System32\Drivers\NISx64
2013-10-16 22:12 - 2013-01-30 07:59 - 00003234 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2013-10-16 22:11 - 2013-09-23 08:49 - 00002501 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
2013-10-16 21:53 - 2012-09-08 05:40 - 00003932 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{7A517541-1EA2-48C7-9409-DBF3C876775D}
2013-10-16 21:41 - 2009-07-13 20:45 - 00417776 _____ C:\Windows\System32\FNTCACHE.DAT
2013-10-16 21:35 - 2012-08-25 13:35 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-16 21:35 - 2012-08-25 13:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-15 12:15 - 2012-07-10 03:01 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-15 11:21 - 2012-07-09 08:47 - 01896684 _____ C:\Windows\PFRO.log
2013-10-15 08:55 - 2011-05-04 17:34 - 01354692 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-15 08:42 - 2012-07-11 05:17 - 00003928 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-15 08:41 - 2013-07-15 10:15 - 00000000 ____D C:\Windows\System32\MRT
2013-10-15 08:41 - 2012-07-11 05:17 - 00003676 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-15 08:21 - 2012-07-09 23:36 - 80541720 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-10-15 08:20 - 2013-10-15 08:20 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-10-09 08:18 - 2012-12-06 04:06 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleForTorben.job
2013-10-08 13:37 - 2012-07-11 05:23 - 00000000 ____D C:\Users\Torben\AppData\Local\CrashDumps
2013-10-08 12:28 - 2012-12-06 04:06 - 00003192 _____ C:\Windows\System32\Tasks\HPCeeScheduleForTorben
2013-10-08 12:28 - 2012-07-09 07:03 - 00000000 ____D C:\users\Torben
2013-10-08 11:54 - 2013-09-28 00:56 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-08 11:53 - 2013-09-28 00:56 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-08 11:53 - 2013-09-28 00:56 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 11:00 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2013-10-07 13:29 - 2012-11-20 23:12 - 00003220 _____ C:\Windows\System32\Tasks\HPCeeScheduleForTORBEN-HP$
2013-10-07 13:29 - 2012-11-20 23:12 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForTORBEN-HP$.job
2013-10-07 13:07 - 2012-07-09 12:59 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-10-05 02:46 - 2012-07-10 01:33 - 00472398 _____ C:\Users\Torben\danid.log
2013-10-04 03:26 - 2013-10-04 01:46 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-10-04 03:26 - 2013-10-04 01:43 - 00000000 ____D C:\Users\Torben\Desktop\mbar
2013-10-03 05:05 - 2013-10-02 20:19 - 00000000 ____D C:\Users\Torben\Desktop\TDSSKiller
2013-10-01 20:19 - 2013-10-01 20:19 - 00000000 ____D C:\FRST
2013-10-01 12:04 - 2013-10-01 12:04 - 00000000 ____D C:\Windows\ERUNT
2013-09-30 21:50 - 2012-11-05 08:51 - 00000000 ____D C:\Users\Torben\AppData\Roaming\HpUpdate
2013-09-30 11:23 - 2012-07-10 17:54 - 00007633 _____ C:\Users\Torben\AppData\Local\resmon.resmoncfg
2013-09-30 09:38 - 2012-07-09 07:04 - 00000000 ____D C:\Users\Torben\AppData\Roaming\hpqLog
2013-09-28 13:25 - 2013-09-28 13:24 - 00001044 _____ C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
2013-09-28 06:35 - 2013-09-28 06:34 - 00000241 _____ C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
2013-09-28 05:44 - 2013-09-28 05:44 - 00032240 _____ C:\Users\Torben\Desktop\dds.txt
2013-09-28 05:44 - 2013-09-28 05:44 - 00010977 _____ C:\Users\Torben\Desktop\attach.txt
2013-09-28 05:10 - 2013-09-28 05:10 - 00003250 _____ C:\Windows\System32\Tasks\{206EC948-566D-4E5F-9D78-46B637E4ACCC}
2013-09-28 05:04 - 2013-09-28 05:04 - 00003190 _____ C:\Windows\System32\Tasks\{E600702E-FB22-4CF7-B8C6-67117EC37859}
2013-09-28 04:59 - 2012-09-27 08:25 - 00002411 _____ C:\Windows\SysWOW64\lgAxconfig.ini
2013-09-28 04:58 - 2013-09-28 04:58 - 00003138 _____ C:\Windows\System32\Tasks\{EB6142DB-86AC-447A-A9FA-B8656A8A4520}
2013-09-28 03:02 - 2013-09-28 03:00 - 00015274 _____ C:\Users\Torben\Documents\cc_20130928_130052.reg
2013-09-28 00:55 - 2012-11-10 02:56 - 00000000 ____D C:\Users\Torben\AppData\Local\Adobe
2013-09-28 00:27 - 2012-07-11 10:57 - 00000000 ____D C:\Users\Torben\Downloads\_MasterDownload
2013-09-26 12:37 - 2013-09-26 12:36 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406(1).exe
2013-09-26 10:59 - 2013-09-26 10:58 - 00000149 _____ C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
2013-09-25 07:33 - 2013-09-25 07:32 - 00000161 _____ C:\Users\Torben\Desktop\MS  WIN7  Community.url
2013-09-25 06:52 - 2013-09-25 06:52 - 00000167 _____ C:\Users\Torben\Desktop\sfc .url
2013-09-25 06:35 - 2013-03-06 15:46 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-09-25 06:35 - 2012-07-10 13:37 - 00000000 ____D C:\Program Files\CCleaner
2013-09-25 06:31 - 2013-09-25 06:31 - 04369632 _____ (Piriform Ltd) C:\Users\Torben\Downloads\ccsetup406.exe
2013-09-25 06:23 - 2013-09-21 03:34 - 00000000 ____D C:\ProgramData\Oracle
2013-09-25 06:21 - 2013-09-25 06:22 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-09-25 06:21 - 2013-09-25 06:22 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-09-25 06:21 - 2013-09-25 06:22 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-09-25 06:21 - 2013-09-25 06:22 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-25 06:21 - 2013-04-17 11:06 - 00000000 ____D C:\Program Files (x86)\Java
2013-09-25 06:21 - 2012-07-10 01:31 - 00868264 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-09-25 06:21 - 2012-07-10 01:31 - 00790440 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-09-24 06:51 - 2013-09-23 07:18 - 00231467 _____ C:\Users\Torben\Desktop\Systemgendannelse.odt
2013-09-23 12:47 - 2012-10-19 09:35 - 00000000 ____D C:\Users\Torben\AppData\Roaming\Malwarebytes
2013-09-23 12:40 - 2013-09-15 14:05 - 00000000 ____D C:\Users\Torben\AppData\Roaming\LavasoftStatistics
2013-09-23 08:50 - 2012-07-09 07:20 - 00000000 ____D C:\ProgramData\Norton
2013-09-23 08:49 - 2013-09-23 08:49 - 00177752 _____ (Symantec Corporation) C:\Windows\System32\Drivers\SYMEVENT64x86.SYS
2013-09-23 08:49 - 2013-09-23 08:49 - 00008222 _____ C:\Windows\System32\Drivers\SYMEVENT64x86.CAT
2013-09-23 08:49 - 2013-01-30 07:59 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2013-09-23 08:48 - 2013-09-23 08:48 - 00000000 ____D C:\Program Files (x86)\Norton Internet Security
2013-09-23 08:46 - 2013-09-23 08:46 - 00001287 _____ C:\Users\Torben\Desktop\Norton Installation Files.lnk
2013-09-23 08:22 - 2013-09-23 08:22 - 00869456 _____ C:\Users\Torben\Downloads\Norton_Removal_Tool.exe
2013-09-23 08:13 - 2013-09-23 08:13 - 07539624 _____ (Symantec Corporation) C:\Users\Torben\Downloads\NRnR(2).exe
2013-09-23 08:13 - 2012-08-08 12:26 - 00000000 ____D C:\Users\Torben\Downloads\Norton Internet Security
2013-09-23 08:07 - 2012-07-09 08:21 - 00109296 _____ C:\Users\Torben\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-23 08:00 - 2013-06-08 07:41 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-09-23 08:00 - 2009-07-27 06:36 - 00000000 ____D C:\Windows\ShellNew
2013-09-23 08:00 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-09-23 07:59 - 2013-09-22 14:45 - 00000000 ____D C:\Program Files (x86)\MozBackup
2013-09-23 07:59 - 2013-04-25 11:44 - 00000000 ____D C:\SoftPaqDownloadDirectory
2013-09-23 07:59 - 2009-07-27 06:36 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-09-23 07:58 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\registration
2013-09-22 15:28 - 2013-10-15 12:02 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-22 15:28 - 2013-10-15 12:02 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-22 15:27 - 2013-10-15 12:03 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-22 15:27 - 2013-10-15 12:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-22 14:55 - 2013-10-15 12:02 - 02241024 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-09-22 14:55 - 2013-10-15 12:02 - 01365504 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-09-22 14:55 - 2013-10-15 12:02 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-09-22 14:54 - 2013-10-15 12:03 - 00526336 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 19252224 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 15404544 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 03959296 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 02647552 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00855552 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00603136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00136704 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00067072 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-09-22 14:54 - 2013-10-15 12:02 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-09-22 14:46 - 2013-09-22 14:46 - 08646407 _____ C:\Users\Torben\Documents\Firefox 24.0 (da) - 2013-09-23.pcv
2013-09-22 01:32 - 2013-09-22 01:31 - 00000161 _____ C:\Users\Torben\Desktop\Use and manage plugins.url
2013-09-21 01:24 - 2013-09-21 01:23 - 00000223 _____ C:\Users\Torben\Desktop\HP diagnose.url
2013-09-20 19:38 - 2013-10-15 12:03 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-09-20 19:30 - 2013-10-15 12:03 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-20 18:48 - 2013-10-15 12:02 - 00089600 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-09-20 18:39 - 2013-10-15 12:02 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-19 09:30 - 2013-09-15 12:25 - 00014456 _____ (GFI Software) C:\Windows\System32\Drivers\gfibto.sys
2013-09-19 06:37 - 2013-09-19 06:37 - 00011820 _____ C:\Users\Torben\Documents\Norton Identity Safe.CSV
2013-09-19 06:36 - 2013-09-19 06:36 - 00077824 _____ C:\Users\Torben\Documents\Norton Identity Safe.DAT
2013-09-19 06:08 - 2013-09-15 01:51 - 00000000 ____D C:\AdwCleaner
2013-09-19 05:59 - 2013-09-19 05:59 - 00019968 ___SH C:\Users\Torben\AppData\Roaming\Thumbs.db
2013-09-19 05:32 - 2009-07-13 21:08 - 00032550 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-18 12:39 - 2012-07-10 00:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-18 07:38 - 2012-07-10 00:41 - 00000000 ____D C:\Users\Torben\AppData\Local\Mozilla
2013-09-18 07:37 - 2013-09-18 07:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-18 07:24 - 2013-09-18 07:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-09-18 04:43 - 2013-09-18 04:43 - 00000000 ____D C:\Program Files\ATI Technologies
2013-09-18 04:43 - 2013-09-18 04:43 - 00000000 ____D C:\Program Files (x86)\AMD APP
2013-09-17 12:38 - 2013-09-17 12:38 - 00003552 _____ C:\Windows\System32\Tasks\{02B34B83-8AC8-4D27-B035-5F54280EE7A7}
2013-09-17 06:13 - 2013-09-17 06:12 - 00262270 _____ C:\Windows\msxml4-KB2758694-enu.LOG

Files to move or delete:
====================
C:\Users\Torben\AppData\Roaming\CamLayout.ini
C:\Users\Torben\AppData\Roaming\CamShapes.ini
C:\Users\Torben\temp.dat


Some content of TEMP:
====================
C:\Users\Torben\AppData\Local\Temp\88396408.dll


==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points  =========================

9
Restore point made on: 2013-09-23 11:32:19
Restore point made on: 2013-09-23 12:39:39
Restore point made on: 2013-09-23 12:58:52
Restore point made on: 2013-09-24 07:03:51
Restore point made on: 2013-09-25 06:21:45
Restore point made on: 2013-09-27 00:12:54
Restore point made on: 2013-10-15 07:36:23
Restore point made on: 2013-10-15 11:54:31
Restore point made on: 2013-10-16 23:23:05

==================== Memory info ===========================

Percentage of memory in use: 16%
Total physical RAM: 4030.37 MB
Available physical RAM: 3384.11 MB
Total Pagefile: 4028.52 MB
Available Pagefile: 3380.39 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:274.43 GB) (Free:76.24 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_RECOVERY) (Fixed) (Total:18.37 GB) (Free:2.77 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:4.99 GB) (Free:2.1 GB) FAT32
Drive h: (TORBEN  USB) (Removable) (Total:0.48 GB) (Free:0.4 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.12 GB) (Free:0.12 GB) NTFS
Drive y: (SYSTEM) (Fixed) (Total:0.29 GB) (Free:0.24 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 042EBD29)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=274 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=18 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=0C)

========================================================
Disk: 1 (Size: 496 MB) (Disk ID: 6C652065)
No partition Table on disk 1.


LastRegBack: 2013-10-01 11:46

==================== End Of Log ============================
Avatar billede mathilda Nybegynder
17. oktober 2013 - 12:31 #54
Når jeg vælger sprog:  US   
bliver backslash til comandoprompten væk.
Avatar billede mathilda Nybegynder
20. oktober 2013 - 13:38 #55
Jeg har fundet folderen med de filer, som SpyBot har sat i karantæne. - Fra du skrev, at SpyBot lavede ballade, har jeg haft inaktiveret den.

SpyBot's karantæne indeholder:

1 fil:    MS Management Console-0000.zip
4 filer:  Windows Explorer-0000.zip    nummeretet fra 0000 til 0004
4 filer:  Windows-0000.zip            nummeretet fra 0000 til 0004

samt  overview.ini  med dette indhold:

[MS Management Console-0000.zip]
File=
Product=MS Management Console
Description=All detected items of product
Date=2013-06-08 18:22:13
Destination=
Type=Combo
SourceModule=SDScan

[Windows Explorer-0000.zip]
File=
Product=Windows Explorer
Description=All detected items of product
Date=2013-06-08 18:22:13
Destination=
Type=Combo
SourceModule=SDScan

[Windows Explorer-0001.zip]
File=
Product=Windows Explorer
Description=All detected items of product
Date=2013-06-08 19:57:17
Destination=
Type=Combo
SourceModule=SDScan

[Windows-0000.zip]
File=
Product=Windows
Description=All detected items of product
Date=2013-06-08 18:22:13
Destination=
Type=Combo
SourceModule=SDScan

[Windows-0001.zip]
File=
Product=Windows
Description=All detected items of product
Date=2013-06-08 19:24:22
Destination=
Type=Combo
SourceModule=SDScan

[Windows-0002.zip]
File=
Product=Windows
Description=All detected items of product
Date=2013-06-08 19:57:17
Destination=
Type=Combo
SourceModule=SDScan

[Windows Explorer-0002.zip]
File=
Product=Windows Explorer
Description=All detected items of product
Date=2013-06-09 15:19:35
Destination=
Type=Combo
SourceModule=SDScan

[Windows-0003.zip]
File=
Product=Windows
Description=All detected items of product
Date=2013-06-09 15:19:35
Destination=
Type=Combo
SourceModule=SDScan

[Windows Explorer-0003.zip]
File=
Product=Windows Explorer
Description=All detected items of product
Date=2013-06-11 08:02:13
Destination=
Type=Combo
SourceModule=SDScan

[Windows-0004.zip]
File=
Product=Windows
Description=All detected items of product
Date=2013-06-11 08:02:13
Destination=
Type=Combo
SourceModule=SDScan

[Windows Explorer-0004.zip]
File=
Product=Windows Explorer
Description=All detected items of product
Date=2013-08-06 07:30:54
Destination=
Type=Combo
SourceModule=SDScan
Avatar billede f-arn Guru
20. oktober 2013 - 18:27 #56
Jeg beklager, men jeg har ikke fået en mail om dit indlæg.

------

Åben Notesblok, kopier det fremhævede  med fed ind, og gem filen som Fixlist på USB nøglen ved siden af Farbar Recovery Scan Tool.

DisableService: SDScannerService
DisableService: SDUpdateService
DisableService: SDWSCService
S2 HPSLPSVC; C:\Users\Torben\AppData\Local\Temp\7zS5757\hpslpsvc64.dll [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]


Start PCen op med Kommando prompt. (Som før)

Ved Kommando prompten starter du FRST (Farbar Recovery Scan Tool) og klikker på FIX (og venter til den er færdig)

Den laver Fixlog.txt, som du skal kopiere herind i dit næste indlæg.

Luk Farbar Recovery Scan Tool, og genstart PCen.
Avatar billede mathilda Nybegynder
20. oktober 2013 - 20:42 #57
Her er FRST's  Fixlog.txt 

Jeg vælger sprog  dansk, selvom systemet er US.
Hvis jeg vælger US har mit tastatur tilsyneladende ikke backslash \.

I kommentar #55 giverjeg noget info om SpyBot's karantæne. Skal/kan det bruges til noget?


Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-10-2013
Ran by SYSTEM at 2013-10-20 20:25:51 Run:2
Running from H:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
DisableService: SDScannerService
DisableService: SDUpdateService
DisableService: SDWSCService
S2 HPSLPSVC; C:\Users\Torben\AppData\Local\Temp\7zS5757\hpslpsvc64.dll [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
*****************

SDScannerService service was disabled
SDUpdateService service was disabled
SDWSCService service was disabled
HPSLPSVC => Service deleted successfully.
esgiguard => Service deleted successfully.

==== End of Fixlog ====
Avatar billede f-arn Guru
20. oktober 2013 - 21:06 #58
Hvis jeg vælger US har mit tastatur tilsyneladende ikke backslash \.

Beklager det glemte jeg.

Det er fordi du kører med US tadtatur, men du kan bruge "Alt" + 92.

Det skal være den venste alt, og 92 på det numeriske tastatur.

------

Har det vi lige lavede hjulpet på opstarten ?
Avatar billede mathilda Nybegynder
20. oktober 2013 - 21:34 #59
Fra  login windows til skrivebord baggrund  35 sek
Fra  login windows til ikoner på skivebord  3 min 5 sek
Fra  login windows til programmr/services med forsinket start ca 6 min

jeg tester lige om window går ned i safe mode
Avatar billede mathilda Nybegynder
20. oktober 2013 - 21:57 #60
Safe mode starter med vinduet:  Windows Help and Support.  Det er vel OK. Men Wndows stifinder går ned i Safe mode.

Fra  login windows til skrivebord baggrund  40 sek
Fra  login windows til ikoner på skivebord  3 min
Fra  login windows til kørende Firefox      5 min

Det er langsommere end den plejer.


I # 34  angives dette:
Files to move or delete:
====================
C:\Users\Torben\AppData\Roaming\CamLayout.ini
C:\Users\Torben\AppData\Roaming\CamShapes.ini
C:\Users\Torben\temp.dat

Er det væsentligt?
Avatar billede f-arn Guru
21. oktober 2013 - 09:30 #61
Jeg ville/vil prøve noget andet først.

------

Hent og gem MiniToolBox af Farbar.

Start den og sæt flueben i følgende.

List last 10 Event Wiewer Errors

List Installed Programs

List Devices. (Only problems)


Klik så på GO. Den laver Result.txt, som du gerne må kopiere herind.
Avatar billede mathilda Nybegynder
21. oktober 2013 - 14:33 #62
Der er en del af de installerede programmer, som jeg ikke kender ????

MiniToolBox by Farbar  Version: 13-07-2013
Ran by Torben (administrator) on 21-10-2013 at 13:28:03
Running from "C:\Users\Torben\Downloads\_MasterDownload\____  GRUNDIG RENSNING FOR UØNSKEDE PROGRAMMER  ____\Eksperten  sept 2013\MiniToolBox"
Microsoft Windows 7 Professional  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (10/20/2013 09:41:46 PM) (Source: flcdlock) (User: )
Description: Current SID profile operation failed with unknown exception.

Error: (10/20/2013 09:37:45 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: Explorer.EXE, version: 6.1.7601.17567, tidsstempel: 0x4d672ee4
Navn på modul med fejl: OverlayIcon.dll, version: 1.0.0.2, tidsstempel: 0x4fa19def
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x000000000000eef7
Proces-id 0x3a4
Programmets starttidspunkt 0xExplorer.EXE0
Programsti: Explorer.EXE1
Modulsti: Explorer.EXE2
Rapport-id: Explorer.EXE3

Error: (10/20/2013 07:09:50 PM) (Source: flcdlock) (User: )
Description: Current SID profile operation failed with unknown exception.

Error: (10/20/2013 02:03:38 PM) (Source: flcdlock) (User: )
Description: Current SID profile operation failed with unknown exception.

Error: (10/19/2013 07:15:24 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xc7c
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (10/19/2013 03:31:40 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xe90
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (10/18/2013 06:29:02 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xce8
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (10/18/2013 02:03:40 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0xb54
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (10/17/2013 10:45:22 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel: 0x50a165a9
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x0002b5d6
Proces-id 0x5b8
Programmets starttidspunkt 0xhpqWmiEx.exe0
Programsti: hpqWmiEx.exe1
Modulsti: hpqWmiEx.exe2
Rapport-id: hpqWmiEx.exe3

Error: (10/17/2013 09:27:17 PM) (Source: Application Error) (User: )
Description: Navn på program med fejl: POWERPNT.EXE, version: 14.0.6009.1000, tidsstempel: 0x4cc1a4ed
Navn på modul med fejl: ppcore.dll, version: 14.0.7105.5000, tidsstempel: 0x51e86edb
Undtagelseskode: 0xc0000005
Forskydning med fejl 0x003da632
Proces-id 0xc54
Programmets starttidspunkt 0xPOWERPNT.EXE0
Programsti: POWERPNT.EXE1
Modulsti: POWERPNT.EXE2
Rapport-id: POWERPNT.EXE3


System errors:
=============
Error: (10/21/2013 01:19:49 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: programspecifikkeLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)

Error: (10/21/2013 01:18:46 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Connection Manager 4 Service hang ved start.

Error: (10/21/2013 01:17:20 PM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Software Framework Service kunne ikke starte pga. følgende fejl:
%%1053

Error: (10/21/2013 01:17:20 PM) (Source: Service Control Manager) (User: )
Description: Der opstod timeout (30000 millisekunder), mens systemet ventede på, at der blev oprettet forbindelse til tjenesten HP Software Framework Service.

Error: (10/21/2013 01:16:34 PM) (Source: BTHUSB) (User: )
Description: Der opstod en ukendt fejl i den lokale Bluetooth-adapter og den vil derfor ikke blive brugt. Driveren vil ikke blive indlæst.

Error: (10/21/2013 06:35:57 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: programspecifikkeLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (via LRPC)

Error: (10/21/2013 06:34:49 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Connection Manager 4 Service hang ved start.

Error: (10/21/2013 06:33:23 AM) (Source: Service Control Manager) (User: )
Description: Tjenesten HP Software Framework Service kunne ikke starte pga. følgende fejl:
%%1053

Error: (10/21/2013 06:33:23 AM) (Source: Service Control Manager) (User: )
Description: Der opstod timeout (30000 millisekunder), mens systemet ventede på, at der blev oprettet forbindelse til tjenesten HP Software Framework Service.

Error: (10/21/2013 06:32:50 AM) (Source: BTHUSB) (User: )
Description: Der opstod en ukendt fejl i den lokale Bluetooth-adapter og den vil derfor ikke blive brugt. Driveren vil ikke blive indlæst.


Microsoft Office Sessions:
=========================
Error: (10/20/2013 09:41:46 PM) (Source: flcdlock)(User: )
Description:

Error: (10/20/2013 09:37:45 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.1.7601.175674d672ee4OverlayIcon.dll1.0.0.24fa19defc0000005000000000000eef73a401cecdcbb8b1a8ecC:\windows\Explorer.EXEC:\Program Files (x86)\Wuala OverlayIcons\OverlayIcon.dll177393db-39bf-11e3-8026-830d03131319

Error: (10/20/2013 07:09:50 PM) (Source: flcdlock)(User: )
Description:

Error: (10/20/2013 02:03:38 PM) (Source: flcdlock)(User: )
Description:

Error: (10/19/2013 07:15:24 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6c7c01ceccee7357c349C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe0a180e8b-38e2-11e3-a3a6-101f74f78257

Error: (10/19/2013 03:31:40 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6e9001ceccbd828da658C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exec9073016-38c2-11e3-a3c5-101f74f78257

Error: (10/18/2013 06:29:02 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6ce801cecc1eba70e0c8C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe653b8742-3812-11e3-a1d1-101f74f78257

Error: (10/18/2013 02:03:40 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d6b5401cecbe4ee0e4e55C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe5336d4d7-37ed-11e3-a1d1-101f74f78257

Error: (10/17/2013 10:45:22 PM) (Source: Application Error)(User: )
Description: hpqWmiEx.exe4.6.15.150a165a9hpqWmiEx.exe4.6.15.150a165a9c00000050002b5d65b801cecb5c1935b193C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe0a20ad96-376d-11e3-883f-101f74f78257

Error: (10/17/2013 09:27:17 PM) (Source: Application Error)(User: )
Description: POWERPNT.EXE14.0.6009.10004cc1a4edppcore.dll14.0.7105.500051e86edbc0000005003da632c5401cecb67ecf43d02C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXEC:\Program Files (x86)\Microsoft Office\Office14\ppcore.dll21a9d562-3762-11e3-883f-101f74f78257


=========================== Installed Programs ============================

?????? ??????? (Version: 16.4.3505.0912)
7-Zip 9.22 (x64 edition) (Version: 9.22.00.0)
Adobe Flash Player 11 Plugin (Version: 11.9.900.117)
Adobe Reader XI (11.0.04) - Dansk (Version: 11.0.04)
Advanced Uninstaller PRO - Version 11 (Version: 11)
Agatha Christie - Peril at End House (Version: 2.2.0.95)
AMD APP SDK Runtime (Version: 2.5.793.1)
AMD Catalyst Install Manager (Version: 3.0.851.0)
A-PDF To Excel
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (Version: 2.1.3.127)
Apple-programunderstøttelse (Version: 2.3.4)
Awesome Duplicate Photo Finder v. 1.1
Bejeweled 2 Deluxe (Version: 2.2.0.95)
Bing Bar (Version: 7.2.241.0)
Bing Rewards Client Installer (Version: 16.0.345.0)
Blasterball 3 (Version: 2.2.0.95)
Bonjour (Version: 3.0.0.10)
Bounce Symphony (Version: 2.2.0.95)
Build-a-Lot - The Elizabethan Era (Version: 2.2.0.95)
Bullzip PDF Printer 9.3.0.1516 (Version: 9.3.0.1516)
Cake Mania (Version: 2.2.0.95)
CCleaner (Version: 4.06)
Chuzzle Deluxe (Version: 2.2.0.95)
Cisco EAP-FAST Module (Version: 2.2.14)
Cisco LEAP Module (Version: 1.0.19)
Cisco PEAP Module (Version: 1.1.6)
ConvertHelper 2.2
D3DX10 (Version: 15.4.2368.0902)
Debut Video Capture Software
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Device Access Manager for HP ProtectTools (Version: 6.1.0.1)
Diner Dash 2 Restaurant Rescue (Version: 2.2.0.95)
DiskAid 5.42 (Version: 5.42)
Drive Encryption For HP ProtectTools (Version: 6.0.100.35469)
Dropbox (Version: 2.0.26)
EaseUS MobiSaver Free 2.0
EaseUS Todo Backup Free 5.5 (Version: 5.5)
Energy Star Digital Logo (Version: 1.0.1)
Evernote v. 4.6 (Version: 4.6.0.7670)
Express Burn
Face Recognition for HP ProtectTools (Version: 6.00.4407)
Farm Frenzy (Version: 2.2.0.95)
Fast Duplicate File Finder 3.5.0.1 (Version: 3.5.0.1)
FATE (Version: 2.2.0.95)
File Sanitizer For HP ProtectTools (Version: 6.0.0.8)
Folder Size 2.9.0.0 (Version: 2.9.0.0)
Fotogalleri (Version: 16.4.3505.0912)
Fotogalleriet (Version: 16.4.3505.0912)
FreeFileSync 5.12 (Version: 5.12)
Google Earth Plug-in (Version: 7.1.1.1888)
Google Update Helper (Version: 1.3.21.165)
Greenshot 1.0.6.2228 (Version: 1.0.6.2228)
Hewlett-Packard ACLM.NET v1.2.1.1 (Version: 1.00.0000)
HP 3D DriveGuard (Version: 4.2.9.1)
HP Auto (Version: 1.0.12494.3472)
HP Connection Manager (Version: 4.4.10.1)
HP Customer Experience Enhancements (Version: 6.0.1.7)
HP DayStarter (Version: 2.0.0.12)
HP Deskjet 3050 J610 series grundlæggende enhedssoftware (Version: 22.0.334.0)
HP Deskjet 3050 J610 series Hjælp (Version: 140.0.63.63)
HP Documentation (Version: 1.2.0.0)
HP ESU for Microsoft Windows 7 (Version: 2.0.8.1)
HP Game Console
HP Games (Version: 1.0.1.5)
HP HD Webcam Driver (Version: 6.0.1112.2_WHQL)
HP Hotkey Support (Version: 4.6.4.1)
HP Install Network Printer Wizard (Version: 8.1.01)
HP Internet Sharing Manager (Version: 1.0.0.10)
HP Power Assistant (Version: 2.1.0.6)
HP Product Detection (Version: 11.14.0006)
HP ProtectTools Security Manager (Version: 6.08.1017)
HP QuickWeb (Version: 3.1.2.10229)
HP Setup (Version: 8.5.4526.3645)
HP SoftPaq Download Manager (Version: 3.4.12.0)
HP Software Framework (Version: 4.6.10.1)
HP Software Setup (Version: 8.2.1.1)
HP Support Assistant (Version: 7.0.39.15)
HP System Default Settings (Version: 2.4.3.1)
HP Update (Version: 5.003.001.001)
HP Wallpaper (Version: 2.00)
HPDiagnosticAlert (Version: 1.00.0000)
HPISDataManager (Version: 1.0.0.27)
iCloud (Version: 2.1.2.8)
IDT Audio (Version: 1.0.6428.0)
Insaniquarium Deluxe (Version: 2.2.0.95)
Intel(R) Control Center (Version: 1.2.1.1007)
Intel(R) Identity Protection Technology 1.1.2.0 (Version: 1.1.2.0)
Intel(R) Management Engine Components (Version: 7.0.0.1144)
Intel(R) Processor Graphics (Version: 8.15.10.2559)
Intel(R) Rapid Storage Technology (Version: 10.1.2.1004)
IrfanView (remove only) (Version: 4.36)
iTunes (Version: 11.0.5.5)
Jewel Quest II (Version: 2.2.0.95)
Jewel Quest Solitaire (Version: 2.2.0.95)
JMicron Flash Media Controller Driver (Version: 1.0.72.4)
John Deere Drive Green (Version: 2.2.0.95)
Junk Mail filter update (Version: 16.4.3505.0912)
LightScribe System Software (Version: 1.18.22.2)
LSI HDA Modem (Version: 2.2.100)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office Access MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Groove MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Professionel Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Swedish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared 64-bit MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Word MUI (Danish) 2010 (Version: 14.0.7015.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft_VC90_CRT_x86 (Version: 1.0.0)
MixPad
Movie Maker (Version: 16.4.3505.0912)
Mozilla Firefox 24.0 (x86 da) (Version: 24.0)
Mozilla Maintenance Service (Version: 24.0)
Mozilla Thunderbird 24.0 (x86 da) (Version: 24.0)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSVCRT110 (Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0)
Norton Identity Safe (Version: 2013.4.0.10)
Norton Internet Security (Version: 21.1.0.18)
Norton Management (Version: 3.2.2.12)
PDF Complete Special Edition (Version: 4.0.64)
Penguins! (Version: 2.2.0.95)
Photo Common (Version: 16.4.3505.0912)
Photo Gallery (Version: 16.4.3505.0912)
Picasa 3 (Version: 3.9)
Pixillion Image Converter (Version: 2.59)
Plants vs. Zombies (Version: 2.2.0.95)
Polar Bowler (Version: 2.2.0.95)
Prism Video File Converter
Privacy Manager for HP ProtectTools (Version: 6.00.831)
Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.206)
Qualcomm Atheros Driver Installation Program (Version: 10.0)
QuickShare (Version: 1.6.1.697)
QuickTime (Version: 7.74.80.86)
Realtek Ethernet Controller All-In-One Windows Driver (Version: 7.58.411.2012)
RecordPad Sound Recorder (Version: 4.29)
Screencast-O-Matic
SDK (Version: 2.26.012)
Secunia PSI (3.0.0.7011) (Version: 3.0.0.7011)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skolekom 11.033 (Version: 11.033)
Skype™ 6.7 (Version: 6.7.102)
Slingo Deluxe (Version: 2.2.0.95)
SoundTap Streaming Audio Recorder
Spybot - Search & Destroy (Version: 2.1.19)
Switch Sound File Converter
Synaptics Pointing Device Driver (Version: 16.3.9.0)
Theft Recovery for HP ProtectTools (Version: 6.0.37.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (Version: 3)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition
Validity Fingerprint Sensor Driver (Version: 4.4.228.0)
Valokuvavalikoima (Version: 16.4.3505.0912)
VideoPad Video Editor
VIP Access SDK (1.0.1.5)  (Version: 1.0.1.5)
Virtual Villagers - The Secret City (Version: 2.2.0.95)
WavePad Sound Editor
Wedding Dash (Version: 2.2.0.95)
Windows Live Communications Platform (Version: 16.4.3505.0912)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 16.4.3505.0912)
Windows Live Family Safety (Version: 16.4.3505.0912)
Windows Live Fotogalleri (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (Version: 16.4.3505.0912)
Windows Live Mail (Version: 16.4.3505.0912)
Windows Live Messenger (Version: 16.4.3505.0912)
Windows Live MIME IFilter (Version: 16.4.3505.0912)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 16.4.3505.0912)
Windows Live PIMT Platform (Version: 16.4.3505.0912)
Windows Live SOXE (Version: 16.4.3505.0912)
Windows Live SOXE Definitions (Version: 16.4.3505.0912)
Windows Live UX Platform (Version: 16.4.3505.0912)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 16.4.3505.0912)
Windows Live Writer (Version: 16.4.3505.0912)
Windows Live Writer Resources (Version: 16.4.3505.0912)
Windows Liven peruspaketti (Version: 16.4.3505.0912)
Windows Liven sähköposti (Version: 16.4.3505.0912)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
WinZip 14.5 (Version: 14.5.9095)
Wuala (Version: 1.0.411.0)
Wuala CBFS (Version: 3.2.107.0)
Wuala OverlayIcons (Version: 1.0.0.2)
Xobni Core (Version: 1.0.0)
XY Chart Labeler 7.1
Zuma Deluxe (Version: 2.2.0.95)

========================= Devices: ================================

Name: OfficeJet G55
Description: OfficeJet G55
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


**** End of log ****
Avatar billede f-arn Guru
21. oktober 2013 - 23:30 #63
Fulgte der en program CD med PCen, for HP ProtectTools kommer med en gyselig masse fejl ?
Avatar billede mathilda Nybegynder
21. oktober 2013 - 23:42 #64
Nej, der var ingen CD med.
Windows var allerede installeret.
Der er 1 harddisk, som e partitioneret i
C:  med system, programmer og eget arbejde.    274  GB
D:  HP recovery                                18.3 GB
E:  HP tools                                    2.1 GB
Avatar billede mathilda Nybegynder
21. oktober 2013 - 23:45 #65
Nej, 
E:  HP tools        er på 4.99 GB
Avatar billede mathilda Nybegynder
22. oktober 2013 - 00:10 #66
Jeg mener at kunne lave en repair install fra D:  eller E:  via boot til der hvor man har valgmuligheden for safe mode ved gentagne tryk på (f8) ved opstart.
Avatar billede f-arn Guru
22. oktober 2013 - 06:57 #67
Det er ikke en Windows CD jeg spørger om, men en program CD der indeholder alle de preinstallerede programmer på PCen !

Står der ingen steder, hvad man kan gøre når et af disse "går i udu" ?

Hvad er det for en PC ? (mærke og model)
Avatar billede mathilda Nybegynder
22. oktober 2013 - 09:46 #68
Det er en HP Probook 4530s

Jeg kigger på vejledningen når jeg kommer hjem.

Alternativt kan det måske være en ide afinstallere/reparere HP ProtectTools via  Kontrolpanel>installere og afinstallere programmer ????
Avatar billede f-arn Guru
22. oktober 2013 - 17:27 #69
Det var netop en geninstallation af HP ProtectTools jeg tænkte på.

Fandt du noget i vejledningen ?
Avatar billede mathilda Nybegynder
22. oktober 2013 - 19:51 #70
Jeg fandt ikke noget i vejledningen. Men jeg har geninstalleres/repareret
Alle HP protect tools moduler  Via kontrolpanetet....programmer, samt søgt opdateringer.
Avatar billede f-arn Guru
22. oktober 2013 - 20:53 #71
Har det så hjulpet ?
Avatar billede mathilda Nybegynder
23. oktober 2013 - 00:31 #72
Nej, opstarttiden er den samme som sidst rapporteret.
Og så har jeg ikke tidligere vævnt at HP SoftPaq Download Manager fandt og stadig finder 4 softpaqs, som den ønsker at opdatere, - men det lykkes stadig ikke.
Avatar billede f-arn Guru
23. oktober 2013 - 09:44 #73
Det er stadig safe mode der bekymrer mig mest :)

Du skriver du har brugt Norton Power Eraser.

Kan du huske/se hvad den fjernede, for den har en tendens til at komme med falske positiver (FP).

------

Hent OTL af OldTimer, og gem den på dit skrivebord.

Start OTL

Vista og Windows 7/8 - højreklik på filen - Kør som Administrator.

Øverst sætter du flueben i "Scan All Users"

I boksen "Custom Scans/Fixes" kopierer du det fremhævede ind.

netsvcs
drivers32
msconfig
safebootminimal
safebootnetwork
BASESERVICES
DRIVES
CREATERESTOREPOINT



Luk alle åbne vinduer og klik på "Quick Scan"  og lad programmet køre.

Det vil give to logfiler på skrivebordet, OTL.txt og Extras.txt.

Så kopier følgende ind i dit næste indlæg (i rækkefølge):

Indholdet af OTL.txt (Skal nok deles i to ! )
Indholdet af Extras.txt

Da de er forholdsvis lange, kan du blive nødt til at sende dem i tre indlæg.
Avatar billede mathilda Nybegynder
23. oktober 2013 - 12:24 #74
Nu er det jo længe siden at safemode begyndte at gå ned på Windows Explorer, så jeg jeg tænker om ikke OTL skulle være kørt over FileAge > 30 dage ?

Her er loggen for FileAge = 30 dage

OTL.txt

OTL logfile created on: 23-10-2013 11:52:10 - Run 1
OTL by OldTimer - Version 3.2.69.0    Folder = C:\Users\Torben\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3,94 Gb Total Physical Memory | 2,10 Gb Available Physical Memory | 53,39% Memory free
7,87 Gb Paging File | 5,12 Gb Available in Paging File | 65,04% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 274,43 Gb Total Space | 76,17 Gb Free Space | 27,76% Space Free | Partition Type: NTFS
Drive D: | 18,37 Gb Total Space | 2,77 Gb Free Space | 15,06% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,10 Gb Free Space | 42,13% Space Free | Partition Type: FAT32

Computer Name: TORBEN-HP | User Name: Torben | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013-10-23 11:47:30 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Torben\Desktop\OTL.exe
PRC - [2013-10-08 14:28:15 | 000,275,696 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe
PRC - [2013-07-23 02:46:22 | 000,240,288 | ---- | M] (Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
PRC - [2013-07-03 10:32:44 | 001,228,504 | ---- | M] (Secunia) -- C:\Program Files (x86)\Secunia\PSI\PSIA.exe
PRC - [2013-06-05 19:28:40 | 027,370,808 | ---- | M] (Dropbox, Inc.) -- C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013-05-21 06:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
PRC - [2013-05-11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013-02-27 13:35:36 | 000,169,528 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
PRC - [2013-02-01 10:17:54 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
PRC - [2013-02-01 09:39:50 | 001,323,008 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
PRC - [2013-01-14 00:42:32 | 002,656,536 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2013-01-14 00:42:31 | 000,325,912 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012-12-05 03:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe
PRC - [2012-11-12 15:22:46 | 000,197,536 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2012-09-05 16:40:34 | 001,420,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
PRC - [2012-08-19 21:13:26 | 000,323,584 | R--- | M] (Atheros) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
PRC - [2012-06-20 14:57:22 | 000,523,680 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
PRC - [2011-11-10 16:02:18 | 000,823,632 | R--- | M] (DigitalPersona, Inc.) -- C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
PRC - [2011-09-05 10:57:24 | 000,476,728 | ---- | M] (Hewlett-Packard Company) -- c:\Windows\SysWOW64\flcdlock.exe
PRC - [2011-08-11 19:29:24 | 001,128,952 | ---- | M] (PDF Complete Inc) -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe
PRC - [2011-05-30 15:58:16 | 001,072,128 | ---- | M] (Realtek) -- C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtWlan.exe
PRC - [2011-05-30 14:49:50 | 000,040,960 | ---- | M] (Realtek) -- C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe
PRC - [2011-03-16 11:26:42 | 000,070,256 | ---- | M] (Portrait Displays, Inc) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
PRC - [2011-03-16 11:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
PRC - [2011-02-24 01:10:24 | 000,212,944 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
PRC - [2011-02-07 20:41:42 | 012,274,688 | ---- | M] (Hewlett-Packard) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
PRC - [2011-01-28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe
PRC - [2011-01-26 19:00:32 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011-01-26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe


========== Modules (No Company Name) ==========

MOD - [2013-10-17 07:47:46 | 012,436,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll
MOD - [2013-10-17 07:47:13 | 003,348,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\4eef5a3a4d0ed6d6fd882947a70df530\WindowsBase.ni.dll
MOD - [2013-10-17 07:46:59 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\720d4265aeabf53c4a0689189f5059fe\System.Configuration.ni.dll
MOD - [2013-09-11 01:12:04 | 000,771,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\d473c19e69818875b9c739cad8f386a5\System.Runtime.Remoting.ni.dll
MOD - [2013-08-14 11:38:06 | 000,475,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\6c1d55eed243331c944206f8608fb850\IAStorUtil.ni.dll
MOD - [2013-08-14 11:12:14 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll
MOD - [2013-08-14 11:11:55 | 005,464,064 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll
MOD - [2013-08-14 11:11:49 | 007,989,760 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2013-07-11 00:33:57 | 000,014,336 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\571f0babf15ab38dc80829622caa99d3\IAStorCommon.ni.dll
MOD - [2013-07-11 00:15:23 | 011,499,520 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2013-03-13 22:48:52 | 024,978,944 | ---- | M] () -- C:\Users\Torben\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2013-02-01 10:17:54 | 000,200,704 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
MOD - [2012-11-14 01:32:50 | 003,558,400 | ---- | M] () -- C:\Users\Torben\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2012-05-30 16:51:08 | 000,699,280 | R--- | M] () -- C:\PROGRAM FILES (X86)\NORTON IDENTITY SAFE\ENGINE\2013.4.0.10\wincfi39.dll
MOD - [2011-09-05 10:57:34 | 000,366,136 | ---- | M] () -- C:\Windows\SysWOW64\flcdlmsg.dll
MOD - [2010-11-13 04:03:52 | 000,299,008 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_da_b77a5c561934e089\mscorlib.resources.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013-05-27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV:64bit: - [2013-02-01 09:39:50 | 001,323,008 | ---- | M] () [Auto | Running] -- C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe -- (McAfee Endpoint Encryption Agent)
SRV:64bit: - [2013-01-14 02:25:53 | 000,323,072 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\STacSV64.exe -- (STacSV)
SRV:64bit: - [2013-01-14 02:25:52 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2012-07-19 09:47:50 | 002,714,232 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV:64bit: - [2012-02-28 13:15:16 | 000,031,000 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2011-11-10 16:02:24 | 000,486,224 | R--- | M] (DigitalPersona, Inc.) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe -- (DpHost)
SRV:64bit: - [2011-07-15 14:09:38 | 000,137,272 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe -- (HP Power Assistant Service)
SRV:64bit: - [2011-01-28 09:41:30 | 000,133,688 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe -- (HPDayStarterService)
SRV:64bit: - [2009-12-04 01:27:24 | 000,028,672 | ---- | M] (LSI Corporation) [Auto | Running] -- C:\Program Files\LSI SoftModem\agr64svc.exe -- (AgereModemAudio)
SRV:64bit: - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013-10-08 21:54:02 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013-10-08 14:28:15 | 000,275,696 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe -- (NIS)
SRV - [2013-09-18 17:24:36 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013-07-25 08:52:52 | 000,162,672 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013-07-23 02:46:22 | 000,240,288 | ---- | M] (Microsoft Corporation.) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe -- (BBUpdate)
SRV - [2013-07-23 02:46:22 | 000,193,696 | ---- | M] (Microsoft Corporation.) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe -- (BBSvc)
SRV - [2013-07-03 10:32:44 | 001,228,504 | ---- | M] (Secunia) [Auto | Running] -- C:\Program Files (x86)\Secunia\PSI\PSIA.exe -- (Secunia PSI Agent)
SRV - [2013-05-21 06:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe -- (NCO)
SRV - [2013-05-11 12:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013-01-14 00:42:32 | 002,656,536 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2013-01-14 00:42:31 | 000,325,912 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012-12-19 23:54:14 | 000,023,624 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\GuardAgent.exe -- (Guard Agent)
SRV - [2012-12-19 23:54:06 | 000,069,192 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe -- (EaseUS Agent)
SRV - [2012-12-05 03:40:03 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Management\Engine\3.2.2.12\ccSvcHst.exe -- (MCLIENT)
SRV - [2012-11-12 15:22:46 | 000,197,536 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2012-09-27 11:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
SRV - [2012-09-05 16:40:34 | 001,420,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe -- (hpCMSrv)
SRV - [2012-08-19 21:55:32 | 000,211,584 | ---- | M] (Qualcomm Atheros Commnucations) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe -- (AtherosSvc)
SRV - [2012-08-19 21:13:26 | 000,323,584 | R--- | M] (Atheros) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- (ZAtheros Bt&Wlan Coex Agent)
SRV - [2012-07-19 09:29:58 | 002,342,008 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2012-06-20 14:57:22 | 000,523,680 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe -- (hpHotkeyMonitor)
SRV - [2011-09-05 10:57:24 | 000,476,728 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- c:\Windows\SysWOW64\flcdlock.exe -- (FLCDLOCK)
SRV - [2011-08-11 19:29:24 | 001,128,952 | ---- | M] (PDF Complete Inc) [Auto | Running] -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe -- (pdfcDispatcher)
SRV - [2011-05-30 14:49:50 | 000,040,960 | ---- | M] (Realtek) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Internet Sharing Manager\HP_UI\RtlService.exe -- (RtlISMServ)
SRV - [2011-03-16 11:26:40 | 000,113,264 | ---- | M] (Portrait Displays, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe -- (PdiService)
SRV - [2011-02-24 01:10:24 | 000,212,944 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe -- (jhi_service)
SRV - [2011-02-07 20:41:26 | 000,320,000 | ---- | M] (Hewlett-Packard) [On_Demand | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe -- (HPFSService)
SRV - [2011-01-26 19:00:00 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2010-09-30 23:44:46 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013-10-23 10:55:06 | 000,096,856 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SMR410.SYS -- (SMR410)
DRV:64bit: - [2013-09-27 05:18:30 | 001,147,480 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\symefa64.sys -- (SymEFA)
DRV:64bit: - [2013-09-27 04:26:03 | 000,858,200 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\srtsp64.sys -- (SRTSP)
DRV:64bit: - [2013-09-26 05:28:00 | 000,590,936 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\symnets.sys -- (SymNetS)
DRV:64bit: - [2013-09-26 04:50:25 | 000,162,392 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\ccsetx64.sys -- (ccSet_NIS)
DRV:64bit: - [2013-09-23 18:49:12 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:64bit: - [2013-09-19 19:30:11 | 000,014,456 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\gfibto.sys -- (gfibto)
DRV:64bit: - [2013-08-01 05:19:50 | 000,493,656 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\symds64.sys -- (SymDS)
DRV:64bit: - [2013-07-31 06:13:30 | 000,264,280 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\ironx64.sys -- (SymIRON)
DRV:64bit: - [2013-07-31 05:44:44 | 000,036,952 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NISx64\1501000.012\srtspx64.sys -- (SRTSPX)
DRV:64bit: - [2013-07-03 10:32:42 | 000,018,456 | ---- | M] (Secunia) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\psi_mf_amd64.sys -- (PSI)
DRV:64bit: - [2013-04-18 09:02:58 | 000,032,536 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stdriverx64.sys -- (stdriver)
DRV:64bit: - [2013-04-16 04:41:14 | 000,169,048 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NSTx64\7DD04000.00A\ccsetx64.sys -- (ccSet_NST)
DRV:64bit: - [2013-03-14 22:15:18 | 000,468,720 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2013-02-01 10:33:26 | 000,101,288 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\MfeEpeOpal.sys -- (MfeEpeOpal)
DRV:64bit: - [2013-02-01 10:30:52 | 000,158,888 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\MfeEpePc.sys -- (MfeEpePc)
DRV:64bit: - [2013-01-14 02:30:59 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2013-01-14 02:30:56 | 012,310,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2013-01-14 02:30:38 | 000,175,928 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:64bit: - [2013-01-14 02:29:43 | 000,708,200 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2013-01-14 02:25:53 | 000,543,744 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2012-12-20 21:24:48 | 003,837,440 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012-12-19 23:54:00 | 000,189,000 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\EuFdDisk.sys -- (EUFDDISK)
DRV:64bit: - [2012-12-19 23:53:58 | 000,048,200 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EUBKMON.sys -- (EUBKMON)
DRV:64bit: - [2012-12-19 23:53:54 | 000,018,504 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\eudskacs.sys -- (EUDSKACS)
DRV:64bit: - [2012-12-19 23:53:52 | 000,058,952 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\eubakup.sys -- (EUBAKUP)
DRV:64bit: - [2012-12-13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012-11-28 11:42:06 | 001,866,080 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:64bit: - [2012-10-03 19:19:14 | 000,168,096 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\MCLIENTx64\0302020.00C\ccsetx64.sys -- (ccSet_MCLIENT)
DRV:64bit: - [2012-09-12 16:20:04 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012-08-23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012-08-23 16:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012-08-21 14:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012-08-19 21:36:50 | 000,567,808 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:64bit: - [2012-08-19 21:36:46 | 000,135,832 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:64bit: - [2012-08-19 21:36:46 | 000,077,464 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV:64bit: - [2012-08-19 21:36:44 | 000,178,840 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:64bit: - [2012-08-19 21:36:44 | 000,114,840 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_avdt.sys -- (btath_avdt)
DRV:64bit: - [2012-08-19 21:36:44 | 000,088,728 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:64bit: - [2012-08-19 21:36:44 | 000,033,944 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:64bit: - [2012-08-19 21:36:42 | 000,344,216 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:64bit: - [2012-08-19 21:36:42 | 000,055,448 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AthDfu.sys -- (ATHDFU)
DRV:64bit: - [2012-04-09 16:27:34 | 000,352,144 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\cbfs3.sys -- (cbfs3)
DRV:64bit: - [2012-03-26 15:50:12 | 000,022,528 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:64bit: - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012-02-28 13:15:16 | 000,043,800 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2012-02-28 13:15:16 | 000,029,976 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011-02-07 16:50:26 | 000,063,336 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\DAMDrv64.sys -- (DAMDrv)
DRV:64bit: - [2011-01-13 03:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010-12-03 02:02:58 | 000,025,912 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:64bit: - [2010-11-20 15:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010-11-20 15:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010-11-20 13:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010-11-20 13:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010-11-20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010-10-20 03:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010-05-12 03:30:06 | 000,019,968 | ---- | M] (Danish Wireless Design A/S) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\FlashUSB_x64.sys -- (FlashUSB)
DRV:64bit: - [2010-01-26 22:52:22 | 001,212,416 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009-07-14 02:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009-07-14 02:00:13 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Dot4Scan.sys -- (Dot4Scan)
DRV:64bit: - [2009-07-14 01:21:48 | 000,038,400 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:64bit: - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2013-10-17 07:57:19 | 000,521,816 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20131022.001\IDSvia64.sys -- (IDSVia64)
DRV - [2013-10-02 05:20:13 | 001,525,848 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20131002.001\BHDrvx64.sys -- (BHDrvx64)
DRV - [2013-09-23 11:03:46 | 002,099,288 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131022.008\EX64.SYS -- (NAVEX15)
DRV - [2013-09-23 11:03:46 | 000,484,952 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2013-09-23 11:03:46 | 000,140,376 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2013-09-23 11:03:46 | 000,126,040 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20131022.008\ENG64.SYS -- (NAVENG)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?ocid=OIE9MSE&PC=UP09
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar =
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page =
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL =
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page =
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = localhost:21320

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.solvangskolen.dk/li/default.asp|http://www.dmi.dk/vejr/til-lands/byvejr/by/vis/dk/2850/n%c3%a6rum,danmark|http://www.dmi.dk/vejr/maalinger/radar-nedboer/|https://www.google.com/calendar/render?pli=1|http://www.dr.dk/nyheder/index.htm"
FF - prefs.js..extensions.enabledAddons: %7Bab91efd4-6975-4081-8552-1b3922ed79e2%7D:1.0.28.1
FF - prefs.js..extensions.enabledAddons: %7BBBDA0591-3099-440a-AA10-41764D9DB4DB%7D:12.0.2.8%20-%201
FF - prefs.js..extensions.enabledAddons: %7B2D3F3651-74B9-4795-BDEC-6DA2F431CB62%7D:2014.6.0.27
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:24.0
FF - prefs.js..browser.startup.homepage: "http://www.solvangskolen.dk/infoweb/designskabelon7/rammeside.asp?action=&side=&klasse=&id=&startside=&forumid=|http://www.dmi.dk/vejr/til-lands/byvejr/by/vis/dk/2850|http://www.dmi.dk/vejr/maalinger/radar-nedboer/|https://accounts.google.com/servicelogin?service=cl&passive=1209600&continue=https://www.google.com/calendar/render&followup=http://www.google.com/calendar&scc=1|http://www.dr.dk/nyheder/index.htm|http://www.dlf.org/"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.15.2: C:\windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ [2013-01-13 21:18:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F04D2D30-776C-4d02-8627-8E4385ECA58D}: C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.2.1.33\coFFPlgn\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn\ [2013-10-23 10:50:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFF [2013-10-15 17:03:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-09-18 17:37:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-09-18 17:37:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2013-09-18 17:24:36 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013-09-18 17:37:43 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-09-18 17:37:44 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2013-09-18 17:24:36 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins

[2012-07-10 10:41:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Torben\AppData\Roaming\mozilla\Extensions
[2013-10-22 16:12:02 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Torben\AppData\Roaming\mozilla\Firefox\Profiles\q3qft0cl.default-1378673744691\extensions
[2013-10-22 16:12:02 | 000,000,000 | ---D | M] (HP Detect) -- C:\Users\Torben\AppData\Roaming\mozilla\Firefox\Profiles\q3qft0cl.default-1378673744691\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}
[2013-09-18 17:37:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\Extensions
[2013-09-18 17:37:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2013-09-18 17:37:49 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013-10-23 10:50:15 | 000,000,000 | ---D | M] (Norton Toolbar) -- C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\COFFPLGN
[2013-10-15 17:03:24 | 000,000,000 | ---D | M] (Norton Vulnerability Protection) -- C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFF

O1 HOSTS File: ([2013-09-15 12:16:45 | 000,556,236 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 08sr.combineads.info # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 08srvr.combineads.info # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 12srvr.combineads.info # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 2010-fr.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 2012-new.biz # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 2319825.ourtoolbar.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 24h00business.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 a.daasafterdusk.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ad.adn360.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 adeartss.eu # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 adesoeasy.eu # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 adf.girldatesforfree.net # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 adm.soft365.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 adomicileavail.googlepages.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads7.complexadveising.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.aff.co # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.alpha00001.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.cloud4ads.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.eorezo.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.hooqy.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.icksor.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.regiedepub.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.sucomspot.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 ads.tersecta.com # hosts anti-adware / pups
O1 - Hosts: 127.0.0.1 a.dungtank.com # hosts anti-adware / pups
O1 - Hosts: 17270 more lines...
O2:64bit: - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
O2:64bit: - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2:64bit: - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Bing Bar Helper) - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (File Sanitizer for HP ProtectTools) - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3:64bit: - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Bing Bar) - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HPPowerAssistant] C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe (Hewlett-Packard Company, L.P.)
O4:64bit: - HKLM..\Run: [MfeEpePcMonitor] C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe ()
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [File Sanitizer] C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe (Hewlett-Packard)
O4 - HKLM..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [HPQuickWebProxy] C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (Hewlett-Packard Company)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1766701091-1852947600-986297412-1001..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Torben\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O8:64bit: - Extra context menu item: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200 File not found
O8 - Extra context menu item: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\SysWow64\GPhotos.scr (Google Inc.)
O9:64bit: - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1766701091-1852947600-986297412-1001\..Trusted Domains: secunia.com ([]https in Pålidelige websteder)
O16 - DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} http://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab (IGDTester Class)
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} http://www.superadblocker.com/activex/sabspx.cab (SABScanProcesses Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{449128F1-21D8-484D-AF0B-C4181749E2AD}: DhcpNameServer = 172.20.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FABD5D01-6125-4938-903D-30A0E505AE48}: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\ipp - No CLSID value found
O18:64bit: - Protocol\Handler\ipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~2\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe) - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (DigitalPersona, Inc.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\DeviceNP: DllName - (DeviceNP.dll) - C:\windows\SysWow64\DeviceNP.dll (Hewlett-Packard Company)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) -  File not found
O21:64bit: - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysNative\CbFsMntNtf3.dll (EldoS Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {5FF49FE8-B332-4CB9-B102-FB6951629E55} - Virtual Storage Mount Notification - C:\Windows\SysNative\CbFsMntNtf3.dll (EldoS Corporation)
O22 - SharedTaskScheduler: {5FF49FE8-B332-4CB9-B102-FB6951629E55} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\CbFsMntNtf3.dll (EldoS Corporation)
O28:64bit: - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{ebe2d298-089b-11e2-90df-74de2b4ca5a7}\Shell - "" = AutoRun
O33 - MountPoints2\{ebe2d298-089b-11e2-90df-74de2b4ca5a7}\Shell\AutoRun\command - "" = H:\LGAutoRun.exe
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\LGAutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (bootdelete)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
Avatar billede mathilda Nybegynder
23. oktober 2013 - 12:25 #75
OTL.txt    del 2


NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: vidc.XVID - xvidvfw.dll ()
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\windows\SysWow64\iccvid.dll (Radius Inc.)

MsConfig:64bit - StartUpReg: QuickTime Task - hkey= - key= - C:\Program Files (x86)\QuickTime\QTTask.exe (Apple Inc.)
MsConfig:64bit - State: "startup" - Reg Error: Key error.
MsConfig:64bit - State: "services" - Reg Error: Key error.

SafeBootMin:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SafeBootMin:64bit: Base - Driver Group
SafeBootMin:64bit: Boot Bus Extender - Driver Group
SafeBootMin:64bit: Boot file system - Driver Group
SafeBootMin:64bit: File system - Driver Group
SafeBootMin:64bit: Filter - Driver Group
SafeBootMin:64bit: HelpSvc - Service
SafeBootMin:64bit: hitmanpro37 - Reg Error: Value error.
SafeBootMin:64bit: hitmanpro37.sys - Reg Error: Value error.
SafeBootMin:64bit: PCI Configuration - Driver Group
SafeBootMin:64bit: PNP Filter - Driver Group
SafeBootMin:64bit: Primary disk - Driver Group
SafeBootMin:64bit: sacsvr - Service
SafeBootMin:64bit: SCSI Class - Driver Group
SafeBootMin:64bit: System Bus Extender - Driver Group
SafeBootMin:64bit: vmms - Service
SafeBootMin:64bit: WinDefend - C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SafeBootMin:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: hitmanpro37 - Reg Error: Value error.
SafeBootMin: hitmanpro37.sys - Reg Error: Value error.
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SafeBootNet:64bit: Base - Driver Group
SafeBootNet:64bit: Boot Bus Extender - Driver Group
SafeBootNet:64bit: Boot file system - Driver Group
SafeBootNet:64bit: File system - Driver Group
SafeBootNet:64bit: Filter - Driver Group
SafeBootNet:64bit: HelpSvc - Service
SafeBootNet:64bit: hitmanpro37 - Reg Error: Value error.
SafeBootNet:64bit: hitmanpro37.sys - Reg Error: Value error.
SafeBootNet:64bit: Messenger - Service
SafeBootNet:64bit: NDIS Wrapper - Driver Group
SafeBootNet:64bit: NetBIOSGroup - Driver Group
SafeBootNet:64bit: NetDDEGroup - Driver Group
SafeBootNet:64bit: Network - Driver Group
SafeBootNet:64bit: NetworkProvider - Driver Group
SafeBootNet:64bit: PCI Configuration - Driver Group
SafeBootNet:64bit: PNP Filter - Driver Group
SafeBootNet:64bit: PNP_TDI - Driver Group
SafeBootNet:64bit: Primary disk - Driver Group
SafeBootNet:64bit: rdsessmgr - Service
SafeBootNet:64bit: sacsvr - Service
SafeBootNet:64bit: SCSI Class - Driver Group
SafeBootNet:64bit: Streams Drivers - Driver Group
SafeBootNet:64bit: System Bus Extender - Driver Group
SafeBootNet:64bit: TDI - Driver Group
SafeBootNet:64bit: vmms - Service
SafeBootNet:64bit: WinDefend - C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SafeBootNet:64bit: WudfUsbccidDriver - Driver
SafeBootNet:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: hitmanpro37 - Reg Error: Value error.
SafeBootNet: hitmanpro37.sys - Reg Error: Value error.
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2013-10-23 11:47:38 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Torben\Desktop\OTL.exe
[2013-10-23 11:10:37 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\PowerEraser
[2013-10-23 10:55:06 | 000,096,856 | ---- | C] (Symantec Corporation) -- C:\windows\SysNative\drivers\SMR410.SYS
[2013-10-21 22:43:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013-10-21 22:41:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2013-10-21 22:41:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2013-10-15 18:20:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2013-10-04 11:46:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
[2013-10-04 11:43:35 | 000,000,000 | ---D | C] -- C:\Users\Torben\Desktop\mbar
[2013-10-03 06:19:02 | 000,000,000 | ---D | C] -- C:\Users\Torben\Desktop\TDSSKiller
[2013-10-02 06:19:36 | 000,000,000 | ---D | C] -- C:\FRST
[2013-10-01 22:04:53 | 000,000,000 | ---D | C] -- C:\windows\ERUNT
[2013-09-23 19:33:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Symantec Shared
[2013-09-23 18:49:12 | 000,177,752 | ---- | C] (Symantec Corporation) -- C:\windows\SysNative\drivers\SYMEVENT64x86.SYS
[2013-09-23 18:48:07 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
[2013-09-23 18:48:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Internet Security
[2011-02-24 01:10:36 | 000,020,432 | ---- | C] (Intel Corporation) -- C:\Users\Torben\AppData\Roaming\JomCap.dll
[3 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013-10-23 11:47:30 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Torben\Desktop\OTL.exe
[2013-10-23 11:47:25 | 000,000,932 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2013-10-23 11:45:00 | 000,000,830 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013-10-23 10:59:43 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013-10-23 10:59:43 | 000,020,944 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013-10-23 10:55:12 | 000,000,020 | ---- | M] () -- C:\windows\SysNative\drivers\SMR410.dat
[2013-10-23 10:55:06 | 000,096,856 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\SMR410.SYS
[2013-10-23 10:52:35 | 000,000,928 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2013-10-23 10:49:35 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2013-10-23 10:48:53 | 4226,146,304 | -HS- | M] () -- C:\hiberfil.sys
[2013-10-23 01:34:52 | 000,003,996 | ---- | M] () -- C:\Users\Public\Documents\cc_20131023_013435.reg
[2013-10-23 00:54:05 | 000,037,626 | ---- | M] () -- C:\Users\Public\Documents\cc_20131023_005210.reg
[2013-10-23 00:17:53 | 000,007,633 | ---- | M] () -- C:\Users\Torben\AppData\Local\resmon.resmoncfg
[2013-10-22 15:33:01 | 001,372,536 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2013-10-22 15:33:01 | 000,652,706 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2013-10-22 15:33:01 | 000,508,892 | ---- | M] () -- C:\windows\SysNative\perfh006.dat
[2013-10-22 15:33:01 | 000,121,638 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2013-10-22 15:33:01 | 000,098,126 | ---- | M] () -- C:\windows\SysNative\perfc006.dat
[2013-10-22 15:21:27 | 001,354,692 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2013-10-21 19:14:46 | 000,000,336 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForTorben.job
[2013-10-18 11:39:24 | 000,001,051 | ---- | M] () -- C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013-10-17 08:48:58 | 000,005,344 | ---- | M] () -- C:\Users\Torben\Desktop\Eksperten f-arn.odt
[2013-10-17 08:11:58 | 000,002,501 | ---- | M] () -- C:\Users\Public\Desktop\Norton Internet Security.lnk
[2013-10-17 08:10:58 | 002,736,967 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\Cat.DB
[2013-10-17 07:41:50 | 000,417,776 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2013-10-16 23:26:10 | 000,015,248 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\VT20131016.019
[2013-10-08 14:27:43 | 000,000,172 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\isolate.ini
[2013-10-07 23:29:08 | 000,000,344 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForTORBEN-HP$.job
[2013-10-03 08:13:14 | 000,008,192 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\srtsp64.cat
[2013-09-29 04:38:04 | 000,008,192 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\symnet64.cat
[2013-09-29 03:44:10 | 000,008,202 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\ccsetx64.cat
[2013-09-28 23:25:06 | 000,001,044 | ---- | M] () -- C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
[2013-09-28 16:35:08 | 000,000,241 | ---- | M] () -- C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
[2013-09-28 14:59:24 | 000,002,411 | ---- | M] () -- C:\windows\SysWow64\lgAxconfig.ini
[2013-09-28 13:02:17 | 000,015,274 | ---- | M] () -- C:\Users\Torben\Documents\cc_20130928_130052.reg
[2013-09-27 05:18:30 | 001,147,480 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\NISx64\1501000.012\symefa64.sys
[2013-09-27 05:18:30 | 000,008,194 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\symefa64.cat
[2013-09-27 05:18:30 | 000,003,433 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\symefa.inf
[2013-09-27 04:26:03 | 000,858,200 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\NISx64\1501000.012\srtsp64.sys
[2013-09-27 04:26:03 | 000,001,437 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\srtsp64.inf
[2013-09-26 20:59:31 | 000,000,149 | ---- | M] () -- C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
[2013-09-26 05:28:00 | 000,590,936 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\NISx64\1501000.012\symnets.sys
[2013-09-26 05:27:52 | 000,001,440 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\symnet.inf
[2013-09-26 04:50:25 | 000,162,392 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\NISx64\1501000.012\ccsetx64.sys
[2013-09-26 04:50:25 | 000,000,855 | ---- | M] () -- C:\windows\SysNative\drivers\NISx64\1501000.012\ccsetx64.inf
[2013-09-25 17:33:10 | 000,000,161 | ---- | M] () -- C:\Users\Torben\Desktop\MS  WIN7  Community.url
[2013-09-25 16:52:20 | 000,000,167 | ---- | M] () -- C:\Users\Torben\Desktop\sfc .url
[2013-09-25 16:35:26 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013-09-24 16:51:11 | 000,231,467 | ---- | M] () -- C:\Users\Torben\Desktop\Systemgendannelse.odt
[2013-09-23 18:49:12 | 000,177,752 | ---- | M] (Symantec Corporation) -- C:\windows\SysNative\drivers\SYMEVENT64x86.SYS
[2013-09-23 18:49:12 | 000,008,222 | ---- | M] () -- C:\windows\SysNative\drivers\SYMEVENT64x86.CAT
[2013-09-23 18:49:12 | 000,000,854 | ---- | M] () -- C:\windows\SysNative\drivers\SYMEVENT64x86.INF
[2013-09-23 18:46:59 | 000,001,287 | ---- | M] () -- C:\Users\Torben\Desktop\Norton Installation Files.lnk
[3 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013-10-23 10:55:06 | 000,000,000 | ---- | C] () -- C:\windows\SysNative\drivers\SMR410.dat
[2013-10-23 01:34:37 | 000,003,996 | ---- | C] () -- C:\Users\Public\Documents\cc_20131023_013435.reg
[2013-10-23 00:52:12 | 000,037,626 | ---- | C] () -- C:\Users\Public\Documents\cc_20131023_005210.reg
[2013-10-18 11:39:23 | 000,001,051 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013-10-17 08:48:51 | 000,005,344 | ---- | C] () -- C:\Users\Torben\Desktop\Eksperten f-arn.odt
[2013-09-28 23:24:54 | 000,001,044 | ---- | C] () -- C:\Users\Torben\Desktop\Spybot - Search & Destroy.lnk
[2013-09-28 16:34:43 | 000,000,241 | ---- | C] () -- C:\Users\Torben\Desktop\Repair Windows    GRUNDIG.url
[2013-09-28 13:00:55 | 000,015,274 | ---- | C] () -- C:\Users\Torben\Documents\cc_20130928_130052.reg
[2013-09-28 10:56:49 | 000,000,830 | ---- | C] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2013-09-26 20:58:46 | 000,000,149 | ---- | C] () -- C:\Users\Torben\Desktop\Geninstaller gamle Firefox data.url
[2013-09-25 17:32:26 | 000,000,161 | ---- | C] () -- C:\Users\Torben\Desktop\MS  WIN7  Community.url
[2013-09-25 16:52:08 | 000,000,167 | ---- | C] () -- C:\Users\Torben\Desktop\sfc .url
[2013-09-23 18:49:12 | 000,008,222 | ---- | C] () -- C:\windows\SysNative\drivers\SYMEVENT64x86.CAT
[2013-09-23 18:49:12 | 000,000,854 | ---- | C] () -- C:\windows\SysNative\drivers\SYMEVENT64x86.INF
[2013-09-23 18:49:09 | 000,002,501 | ---- | C] () -- C:\Users\Public\Desktop\Norton Internet Security.lnk
[2013-09-23 18:46:59 | 000,001,287 | ---- | C] () -- C:\Users\Torben\Desktop\Norton Installation Files.lnk
[2013-09-23 17:18:28 | 000,231,467 | ---- | C] () -- C:\Users\Torben\Desktop\Systemgendannelse.odt
[2013-09-14 19:12:36 | 000,000,376 | ---- | C] () -- C:\windows\ODBC.INI
[2013-09-11 10:56:45 | 000,048,356 | ---- | C] () -- C:\Users\Torben\bytteservice_fordelskort.jpg
[2013-06-08 18:22:57 | 000,000,159 | ---- | C] () -- C:\windows\wininit.ini
[2013-05-25 11:06:27 | 000,016,767 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\UserTile.png
[2013-02-12 12:13:27 | 000,000,288 | ---- | C] () -- C:\ProgramData\PDF2XL-5-0.TrialData
[2013-02-12 12:13:27 | 000,000,288 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\MSMtch.dat
[2013-02-12 10:05:49 | 000,000,020 | ---- | C] () -- C:\Users\Torben\minitool.ini
[2013-02-02 14:03:02 | 000,000,114 | ---- | C] () -- C:\windows\{5F6C549F-78DA-4E0E-AE70-0BD981936D99}.ini
[2013-01-24 16:14:56 | 000,000,363 | ---- | C] () -- C:\Users\Torben\_RecentPlaces.lnk
[2013-01-14 02:30:56 | 000,217,536 | ---- | C] () -- C:\windows\SysWow64\igfcg600m.bin
[2013-01-14 02:30:56 | 000,056,832 | ---- | C] () -- C:\windows\SysWow64\igdde32.dll
[2013-01-14 02:30:55 | 013,903,872 | ---- | C] () -- C:\windows\SysWow64\ig4icd32.dll
[2012-11-28 11:42:06 | 000,026,464 | ---- | C] () -- C:\windows\snuvcdsm.exe
[2012-09-27 18:25:07 | 000,053,248 | ---- | C] () -- C:\windows\SysWow64\CommonDL.dll
[2012-09-27 18:25:07 | 000,002,411 | ---- | C] () -- C:\windows\SysWow64\lgAxconfig.ini
[2012-08-29 12:05:04 | 000,100,344 | ---- | C] () -- C:\windows\HPBroker.dll
[2012-08-28 15:20:01 | 000,000,001 | ---- | C] () -- C:\Users\Torben\temp.dat
[2012-08-23 00:15:24 | 000,004,416 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\CamStudio.cfg
[2012-08-23 00:07:22 | 000,000,098 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\CamStudio.Producer.command
[2012-08-23 00:01:12 | 000,000,408 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\CamShapes.ini
[2012-08-23 00:01:12 | 000,000,408 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\CamLayout.ini
[2012-08-23 00:01:12 | 000,000,119 | ---- | C] () -- C:\Users\Torben\AppData\Roaming\Camdata.ini
[2012-08-16 13:03:20 | 000,004,096 | -H-- | C] () -- C:\Users\Torben\AppData\Local\keyfile3.drm
[2012-07-23 12:37:24 | 000,000,256 | ---- | C] () -- C:\windows\SysWow64\vcsAPIShared.dll.hpsign
[2012-07-11 03:54:43 | 000,007,633 | ---- | C] () -- C:\Users\Torben\AppData\Local\resmon.resmoncfg
[2012-07-09 17:22:21 | 000,003,120 | ---- | C] () -- C:\windows\SysWow64\drivers\wdghgf.sys
[2012-07-09 17:11:46 | 000,015,497 | ---- | C] () -- C:\windows\snp2uvc.ini
[2012-02-24 16:47:04 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPPassFilter.dll.hpsign
[2012-02-24 16:47:04 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPCrProv.dll.hpsign
[2011-11-10 16:02:22 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPSCEL.dll.hpsign
[2011-11-10 16:02:20 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPFPApi.dll.hpsign
[2011-11-10 16:02:18 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPClback.dll.hpsign
[2011-11-10 15:58:14 | 000,000,256 | R--- | C] () -- C:\windows\SysWow64\DPLic.dll.hpsign

========== ZeroAccess Check ==========

[2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013-07-26 04:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013-07-26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012-08-21 15:11:31 | 000,857,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012-08-21 15:37:44 | 000,636,928 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012-08-21 15:08:38 | 000,453,120 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========


========== Purity Check ==========



========== Custom Scans ==========

========== Base Services ==========
SRV:64bit: - [2009-07-14 03:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:64bit: - [2013-02-27 07:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:64bit: - [2009-07-14 03:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:64bit: - [2010-11-20 15:27:23 | 000,849,920 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:64bit: - [2010-11-20 15:25:45 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:64bit: - [2011-11-17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:64bit: - [2009-07-14 03:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009-07-14 03:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:64bit: - [2012-07-05 00:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:64bit: - [2013-07-09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2013-07-09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:64bit: - [2010-11-20 15:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:64bit: - [2010-11-20 15:26:04 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010-11-20 14:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:64bit: - [2011-03-03 08:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:64bit: - [2009-07-14 03:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:64bit: - [2009-07-14 03:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009-07-14 03:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:64bit: - [2009-07-14 03:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:64bit: - [2010-11-20 15:26:39 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:64bit: - [2009-07-14 03:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:64bit: - [2009-07-14 03:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:64bit: - [2009-07-14 03:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:64bit: - [2009-07-14 03:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009-07-14 03:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:64bit: - [2012-10-03 19:44:21 | 000,303,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:64bit: - [2009-07-14 03:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:64bit: - [2011-05-24 13:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:64bit: - [2012-02-11 08:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:64bit: - [2011-11-17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:64bit: - [2009-07-14 03:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:64bit: - [2010-11-20 15:27:24 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:64bit: - [2010-11-20 15:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:64bit: - [2010-11-20 15:27:25 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:64bit: - [2011-11-17 08:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:64bit: - [2009-07-14 03:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:64bit: - [2010-11-20 15:27:26 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:64bit: - [2010-11-20 15:27:25 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010-11-20 14:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:64bit: - [2010-11-20 15:27:25 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:64bit: - [2010-11-20 15:27:26 | 000,316,928 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010-11-20 14:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:64bit: - [2009-07-14 03:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:64bit: - [2012-05-01 07:40:20 | 000,209,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:64bit: - [2010-11-20 15:25:27 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:64bit: - [2010-11-20 15:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:64bit: - [2010-11-20 15:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2010-11-20 15:27:25 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:64bit: - [2013-05-27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV:64bit: - [2010-11-20 15:27:28 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:64bit: - [2010-11-20 15:26:59 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:64bit: - [2010-11-20 15:27:28 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:64bit: - [2010-11-20 15:24:58 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010-11-20 14:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysWow64\msiexec.exe -- (msiserver)
SRV:64bit: - [2012-08-21 15:09:40 | 000,219,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:64bit: - [2012-06-03 00:19:43 | 002,428,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:64bit: - [2010-11-20 15:26:07 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:64bit: - [2009-07-14 03:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:64bit: - [2010-11-20 15:27:28 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

========== Drive Information ==========

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD3200BEKT-60PVMT0
Partitions: 4
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 300,00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 274,00GB
Starting Offset: 315621376
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 18,00GB
Starting Offset: 294978060288
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 5,00GB
Starting Offset: 314700726272
Hidden sectors: 0


========== Alternate Data Streams ==========

@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:A4A25FD3

< End of report >
Avatar billede mathilda Nybegynder
23. oktober 2013 - 12:26 #76
OTL  Ekstras.txt

OTL Extras logfile created on: 23-10-2013 11:52:11 - Run 1
OTL by OldTimer - Version 3.2.69.0    Folder = C:\Users\Torben\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3,94 Gb Total Physical Memory | 2,10 Gb Available Physical Memory | 53,39% Memory free
7,87 Gb Paging File | 5,12 Gb Available in Paging File | 65,04% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 274,43 Gb Total Space | 76,17 Gb Free Space | 27,76% Space Free | Partition Type: NTFS
Drive D: | 18,37 Gb Total Space | 2,77 Gb Free Space | 15,06% Space Free | Partition Type: NTFS
Drive E: | 4,99 Gb Total Space | 2,10 Gb Free Space | 42,13% Space Free | Partition Type: FAT32

Computer Name: TORBEN-HP | User Name: Torben | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0643C8B7-BE87-4376-9673-7312C74F63E2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{07EE7E90-8709-4850-B415-BE9903E599A6}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{0F5C863E-8FA6-47F6-93FB-43282F03B122}" = lport=1542 | protocol=6 | dir=in | name=realtek wps tcp prot |
"{1B597891-D854-4531-A984-2E6A0A3AD8C5}" = lport=2869 | protocol=6 | dir=in | app=system |
"{285FA178-48C2-4578-8AC5-C62D0DBEF75C}" = lport=10243 | protocol=6 | dir=in | app=system |
"{347D3B6B-AC12-468E-986F-74A86B2F7D2D}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{35BEEFC5-0A2B-44E5-A94B-3AA7155CDF24}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{39BBEAB9-9EFB-4FD2-90A9-99515257638F}" = rport=445 | protocol=6 | dir=out | app=system |
"{4399BF60-8E72-4206-83B7-1DDD3238385D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4866B155-1073-4BD4-B5AB-0BB4EEC24526}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{4877C2B0-4FCC-4CAA-A39E-B0D192C74EE8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{521E3176-CB30-4401-A066-4E194B18B716}" = lport=137 | protocol=17 | dir=in | app=system |
"{5973E8FC-D28A-4207-BEA1-7F969695E189}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5C76618E-5823-4024-B7BC-B6862F9CB355}" = lport=53 | protocol=17 | dir=in | name=realtek ap udp prot |
"{6099E47D-EE45-4C03-B5B1-E2D293B33BCE}" = rport=139 | protocol=6 | dir=out | app=system |
"{6D52052D-E4E0-4816-994A-C57F2B1B4770}" = lport=1542 | protocol=17 | dir=in | name=realtek wps udp prot |
"{7A597D1E-91BD-475B-88C1-20D8CD62A9F3}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7F83CFDA-4A2D-4B97-B166-29802F6079C7}" = rport=138 | protocol=17 | dir=out | app=system |
"{84D6A33B-2440-4975-8688-83656D94FE90}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{85078BF4-AEA6-4564-A7C9-C14296085A72}" = lport=445 | protocol=6 | dir=in | app=system |
"{86DAF91D-438F-4180-8D32-4CBEAC4D0688}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8AE6070A-261F-42DE-8EA6-949097D5B5DF}" = lport=139 | protocol=6 | dir=in | app=system |
"{932E52E6-4F20-482B-AB72-103033070EFE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9C4F2829-73F0-4E05-87F5-F913E72E221A}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{BD52E9CE-C9F8-4D4B-AFDA-61FDC47CE739}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BAA74210-22F5-4862-A943-2B6375D60E97}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C65A9A04-C392-4981-B8EA-FCE95BD520F2}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{C8434835-0ABB-4993-869E-08EE1A40AB67}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{CEF849A2-F760-4377-912D-855D1888F386}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{E2744EE4-E9D7-486D-8926-3940E8347C8B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E7B255F0-11CC-43FD-81BA-BE054BA43197}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{EE66323B-494A-4FF0-9B8F-F7F0D4AD0842}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EFD69897-801C-4E92-9410-3720F8D7D55F}" = rport=10243 | protocol=6 | dir=out | app=system |
"{F14FBB98-6ECD-4CA3-94C0-FC6389DEA470}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F2B0FA8F-12C3-42B2-B606-A16784D349F5}" = rport=137 | protocol=17 | dir=out | app=system |
"{FAC20B1D-D016-458B-B176-F4BE3C93DF9A}" = lport=138 | protocol=17 | dir=in | app=system |
"{FE049950-B0AE-4B29-8054-53C8CD75E24C}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0040A260-99B5-4FB7-A7E5-C42551BB6110}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{08131D1E-4D28-4426-B6C1-A8A5ECD48DBE}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 3050 j610 series\bin\hpnetworkcommunicator.exe |
"{0D344EF7-1166-4A2E-B668-7D2B0D001BFD}" = protocol=6 | dir=in | app=c:\program files (x86)\easeus\todo backup\bin\tbservice.exe |
"{11D9EA70-B5BD-4FA2-8137-3CCCED131862}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{13937A7B-7075-4B53-9E55-3514789F5D1E}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hppsdr\hpdiagnosticcoreui.exe |
"{1A501809-5906-4606-B80C-6276EB42D6DD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{1BFAB4D3-54FA-44AE-B4B0-115384A82ABF}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{1CE76AE8-0A3D-48B7-A5B4-D4EA63288247}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{20392494-9282-4A28-862E-8776DC016B10}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{3852B3C0-43A4-477E-85D2-CBFC0885BA8E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{3AB255D3-4FA8-4DE2-A40E-9C63813487C8}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\hp internet sharing manager\hp_ui\rtwlan.exe |
"{3BF74A71-664D-4EB3-9F03-B3E2A9E35851}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{3ED802E8-15DE-45B2-B60A-D7BF59295560}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{4CE5A45E-167B-4498-99DA-5470C8EB864F}" = protocol=17 | dir=in | app=c:\program files (x86)\easeus\todo backup\bin\tbservice.exe |
"{4DE891A9-B9FC-4CFB-ACA8-E9806B4343AA}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{5324D3D6-08E4-40E1-BEB2-733BA88056D6}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hppsdr\hpdiagnosticcoreui.exe |
"{54AC8B10-266F-4F11-AD58-D4A12435298F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{56784273-88E3-4218-8E9A-DEC76BC78955}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{5B54F76E-F12A-48B5-9BE4-F1A55CBD8B66}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 3050 j610 series\bin\devicesetup.exe |
"{6019BDCF-F70F-40D1-9229-1996494F6F59}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe |
"{742452DC-1A52-47D9-B8A1-09A57260DAA5}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 3050 j610 series\bin\hpnetworkcommunicator.exe |
"{76986B88-9250-4F84-83B4-5448983A7778}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{7A024B0D-739A-4CEE-9419-BE53E55463D3}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{8050AC9F-6171-43C7-87C4-D0C9DC253F49}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{81C441C6-6B36-4180-B91D-55953418B8A4}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{89A8BA08-AA5A-4FDB-AACB-9D6A69083BAD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8CB841B1-F235-4DBA-A74B-380910E03485}" = protocol=17 | dir=in | app=c:\users\torben\appdata\roaming\dropbox\bin\dropbox.exe |
"{8D808E3D-C0FE-47AA-A68A-4E469658A721}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{9755BE94-F49D-453E-8979-98FF76D4262A}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 3050 j610 series\bin\devicesetup.exe |
"{9A8CA696-D1F6-4A99-8AF5-146793F1DD80}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe |
"{9BAB3F74-D0AF-4A36-A897-745BAFEC0B33}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9CF85DFE-6746-4235-A850-4F790769C1D2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9D5A0135-8954-457C-8D95-779CC903268F}" = protocol=6 | dir=out | app=system |
"{A0B870AE-6200-4C74-811B-C399BB1E4305}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A385AC2C-EC41-4B9E-94C7-F9A7D2AD77C3}" = dir=in | app=c:\program files (x86)\easeus\todo backup\bin\agent.exe |
"{A7D7C92B-1C24-4822-AD36-2DD3062428DE}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B14B730B-7144-45B2-ADD8-D4B7F4A0524A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{B2CF305E-69CD-43EB-9A96-5D9ED3EA1BB8}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B4B818FC-46D9-4545-B3DC-C37D4D973D4C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{B8824BFD-DC47-48E3-9823-F639E8369647}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{BD749BBD-E34E-486B-AC8C-EFC292265F1A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{C7242FAE-D91F-4C71-9237-D2E74F428E90}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{CBE902A4-BDA8-4A24-87FE-07A39412CE60}" = protocol=6 | dir=in | app=c:\program files (x86)\easeus\todo backup\bin\tbconsoleui.exe |
"{D241150F-9B50-4E78-85E4-E6B7D8C93DD1}" = protocol=17 | dir=in | app=c:\program files (x86)\easeus\todo backup\bin\tbconsoleui.exe |
"{D2EFCCD2-1EAE-4BD7-9755-02FDEEDE4034}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{DB62F388-942B-47EA-97EF-A72A8C94B46D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F06A27E9-8DA2-4EA9-9A12-A551E2647ABB}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{F6A341E1-D1A3-4856-BDB1-055DE5009945}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{F6B777DF-750F-4973-A17E-7B5300593807}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{F8617F3D-85D2-4F85-9DBC-A3C166838F97}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{F91AA89B-D675-4C51-B645-0E7771E6CAF8}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\hp internet sharing manager\hp_ui\rtwlan.exe |
"{FB902B2D-D60D-4461-AA69-7E8305586382}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{FC01B262-859F-4530-BC78-E9E8B30859AD}" = protocol=6 | dir=in | app=c:\users\torben\appdata\roaming\dropbox\bin\dropbox.exe |
"{FC98E365-1A88-45E2-830A-F0F4654C4488}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{03520551-508E-EDCA-4A14-90C706A54A41}" = AMD Catalyst Install Manager
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{23170F69-40C1-2702-0922-000001000000}" = 7-Zip 9.22 (x64 edition)
"{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
"{41E951C0-1445-460D-B6F6-A4A208CB0C15}" = HP DayStarter
"{427174C0-096E-40D9-9684-9C109BEE2CBF}" = iTunes
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{55B52830-024A-443E-AF61-61E1E71AFA1B}" = Device Access Manager for HP ProtectTools
"{5F611ADA-B98C-4DBB-ADDE-414F08457ECF}" = Windows Live Family Safety
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{649482AB-1329-4B4B-ADC3-E6A36F8CAD7D}" = HP Power Assistant
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{704C0303-D20C-45AF-BD2B-556EAF31BE09}" = iCloud
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A0041CD-277C-4C1F-BFE4-7AC508B20B4C}" = Drive Encryption For HP ProtectTools
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0406-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Danish) 2010
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64)
"{ACA53F68-B003-4D0E-9C3D-0C4EE09D08A8}" = Privacy Manager for HP ProtectTools
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B617B439-87A2-4109-94A6-BD768B259F83}" = HP ProtectTools Security Manager
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D0FDE12D-22AB-412C-BC4D-5E74E39C83F7}" = HP Deskjet 3050 J610 series grundlæggende enhedssoftware
"{D3A775F2-2674-4452-8D80-1FC1446052EE}" = Face Recognition for HP ProtectTools
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{DE3D7155-A333-4A67-810A-72D8D8FAD248}" = HP 3D DriveGuard
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}" = Windows Live MIME IFilter
"{AA51ED2E-DCE7-415F-9C32-CB9B561D216D}" = Validity Fingerprint Sensor Driver
"Bullzip PDF Printer_is1" = Bullzip PDF Printer 9.3.0.1516
"CCleaner" = CCleaner
"Greenshot_is1" = Greenshot 1.0.6.2228
"HPProtectTools" = HP ProtectTools Security Manager
"LSI Soft Modem" = LSI HDA Modem
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000AD938-EEBB-46F5-BD33-23CB34A57C54}" = Movie Maker
"{03046EBB-CB7C-4B98-BEFB-690EB955DA22}" = HP Setup
"{03E2EED4-368D-49EA-B1AC-8B615E37E16D}" = Windows Live Messenger
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{048C8498-C20B-4AF7-9978-7A79E567D74C}" = Photo Common
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0B783100-6F04-4E2F-B83D-0A9B4EEDE47A}" = Windows Live Writer Resources
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0E1BB4B4-00FF-45B1-914B-AB8D8B9862B3}" = Windows Live UX Platform Language Pack
"{11C9A461-DD9D-4C71-85A4-6DCE7F99CC44}" = HP Wallpaper
"{15F32CAE-4504-4F33-89F8-182FF38CA036}" = Windows Live Family Safety
"{18272881-CFC0-434D-A975-E5BE44206AA0}" = Windows Live UX Platform Language Pack
"{1A79A578-4277-48AF-98A6-F9E48CF1B6D8}" = Windows Live Writer
"{1C71DC57-1388-4C1C-AB2F-2B9C0EF83409}" = Windows Live UX Platform Language Pack
"{1D6F9A9A-DCF3-45A7-9B14-46DDA778313F}" = Windows Liven sähköposti
"{1EA7C505-E6DA-4B85-9432-EBD3C70D510D}" = Windows Live Messenger
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23A3E560-069F-4CFC-8F6C-1B526EC735FC}" = Windows Live Writer Resources
"{252D22BA-FD4A-48C0-A937-C0E0B799F1EF}" = Windows Live Family Safety
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45
"{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1" = ConvertHelper 2.2
"{28B2947F-FC0B-4450-80E3-6DF698E824A6}" = Windows Liven peruspaketti
"{2B919309-7052-45A4-B1C8-5B4894E8648B}" = Windows Live Writer
"{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1" = Folder Size 2.9.0.0
"{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
"{3042A81A-97D7-4A50-9D26-C74266A119C9}" = HP Software Framework
"{306C7AEF-16C7-428D-93AA-99D4A4090243}" = Movie Maker
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{31846283-C955-4CE1-9297-8670BD0C9A7E}" = Windows Live Messenger
"{330BBA5F-4A63-4545-900F-8446F205BA52}" = Windows Live Writer Resources
"{36BEC461-B58A-414D-993E-E2BDD1F1A14B}" = Movie Maker
"{381AAE35-6FB5-437E-8DD9-9C5C733943ED}" = Windows Live Family Safety
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = HP HD Webcam Driver
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{3F437675-F102-4866-BDE1-FFFC7B45EC0B}" = HP QuickWeb
"{400C31E4-796F-4E86-8FDC-C3C4FACC6847}" = Junk Mail filter update
"{43CCAC37-4E31-495F-9077-471E4E92DCEA}" = Windows Live Messenger
"{4807C860-9E40-4D13-96C8-2F00A3E32177}" = HP Install Network Printer Wizard
"{49524B48-4FE9-4A62-A9FD-1F2258DF5489}" = HP SoftPaq Download Manager
"{49F068F2-4323-417B-AFC8-1E43F479D46C}" = Windows Live Essentials
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.7
"{5078CEC3-A56F-4080-8CD4-ED7BCBE5686B}" = Photo Common
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{531000B3-DBEE-4115-BBF3-DA48B67C053F}" = HP Software Setup
"{537B16E0-A39F-47CB-9C1E-50978862B108}" = Windows Live UX Platform Language Pack
"{5BABDA39-61CF-41EE-992D-4054B6649A9B}" = Movie Maker
"{5C2F5C1B-9732-4F81-8FBF-6711627DC508}" = Windows Live Fotogalleri
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple-programunderstøttelse
"{5DCA44EB-03F6-44A3-A294-F3E5DE98D7F6}" = HP Connection Manager
"{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer
"{6209125A-46C5-4099-96DC-72FD55B07C1C}" = Windows Live Writer Resources
"{6241B96B-4959-4045-8988-EDC372CE0F60}" = Skolekom 11.033
"{62CC9AF4-EDD9-43C8-9856-FFD60362CFA9}" = Windows Live Messenger
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{69FCA957-224F-4623-8BE0-6295CFB2C3E4}" = Windows Live Mail
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{6A9C9BE1-14A3-42ED-A388-42E30A1412E9}" = HP Documentation
"{6D5D9B6F-FA1C-4E19-A674-D7417D1EE61A}" = HP Internet Sharing Manager
"{6D6ADF03-B257-4EA5-BBC1-1D145AF8D514}" = File Sanitizer For HP ProtectTools
"{6DA675F3-B549-4BDE-90FA-BEF8C3B87F00}" = Windows Live Mail
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{70854FE6-3BF1-4C69-94D0-BEB821102E34}" = Windows Live Mail
"{70BF63A5-DE6A-417C-AB93-5E31D0DA994E}" = Windows Live Writer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7607440C-FDCA-4210-9CD9-13D8F0DDAD0C}" = Windows Live Writer Resources
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79361740-EAE3-11E2-9911-B8AC6F98CCE3}" = Google Earth Plug-in
"{79A1AF43-BD17-4A81-B38A-6D6535D3F377}" = Windows Live Writer
"{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}" = Windows Live Photo Common
"{7B0C5EF6-DE4C-4E20-8889-C17604FFE5CD}" = Windows Live Family Safety
"{7E63F102-A9E9-4F4C-8004-BC62974736BF}" = Movie Maker
"{81CF4226-47C1-418C-8718-1B3ED2C37878}" = Windows Live Essentials
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{840021F2-FFC0-467A-BF85-29B8B7803717}" = HP ESU for Microsoft Windows 7
"{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
"{86C40513-B5A4-476E-9EAB-EC118DCF4502}" = Windows Live Writer
"{88809C3E-8C92-4454-AEB7-B26166E3D6CD}" = Windows Live UX Platform Language Pack
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8A9FC225-75F6-4B5D-911C-0ED230565643}" = HP Product Detection
"{8DC069E7-893C-41E1-9442-DE89FEC33371}" = Xobni Core
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{0449A074-68CB-420B-98E0-FE86F5A24F9F}" =
"{90140000-0015-0406-0000-0000000FF1CE}" = Microsoft Office Access MUI (Danish) 2010
"{90140000-0016-0406-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Danish) 2010
"{90140000-0018-0406-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Danish) 2010
"{90140000-0019-0406-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Danish) 2010
"{90140000-001A-0406-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Danish) 2010
"{90140000-001B-0406-0000-0000000FF1CE}" = Microsoft Office Word MUI (Danish) 2010
"{90140000-001F-0406-0000-0000000FF1CE}" = Microsoft Office Proof (Danish) 2010
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-041D-0000-0000000FF1CE}" = Microsoft Office Proof (Swedish) 2010
"{90140000-002C-0406-0000-0000000FF1CE}" = Microsoft Office Proofing (Danish) 2010
"{90140000-0044-0406-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Danish) 2010
"{90140000-006E-0406-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Danish) 2010
"{90140000-00A1-0406-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Danish) 2010
"{90140000-00BA-0406-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Danish) 2010
"{902C4E0E-89CE-43B9-BCC0-F3A91E987F99}" = Windows Live Writer
"{9636FF74-65AF-4714-90A4-08982C368100}" = Windows Live Family Safety
"{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}" = Windows Live Writer
"{9939B8FF-7D2D-4258-B5B9-B6BA8DD59905}" = Windows Live Mail
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F470E17-4FC3-4091-A508-D5347A16A2B9}" = Fotogalleriet
"{A23AADDA-3DBF-11E2-A6F2-984BE15F174E}" = Evernote v. 4.6
"{A37F2060-813A-4325-9456-272B10EE75EF}" = Windows Live Essentials
"{A682ACFC-C295-44F9-B745-6656B3272E7D}" = HPISDataManager
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{ABAF6F07-0D84-4700-948E-EC5042B9D978}" = Windows Live Mail
"{AC76BA86-7AD7-1030-7B44-AB0000000001}" = Adobe Reader XI (11.0.04) - Dansk
"{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"{AFECFED6-0A43-488F-8511-1DC6B52F31C3}_is1" = Fast Duplicate File Finder 3.5.0.1
"{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
"{B625668D-34AA-462D-AA32-44BFA70F08E7}" = Windows Live Messenger
"{B67BAFBA-4C9F-48FA-9496-933E3B255044}" = QuickTime
"{B80D3EA9-A252-4AE5-AC51-81729F5C586F}" = Windows Live Mail
"{BA068968-594F-40BE-8EE8-99119123C991}" = Windows Live UX Platform Language Pack
"{BAD4B8FA-4BDA-4A59-BE64-9741031680C7}" = Movie Maker
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{C01A86F5-56E7-101F-9BC9-E3F1025EB779}" = Intel(R) Identity Protection Technology 1.1.2.0
"{C034A6F9-6569-491B-B3BF-F5D15221A708}" = Windows Live Essentials
"{C0AA1615-49F8-4580-A329-63693C7C5127}" = Windows Live Family Safety
"{C32F4F5A-C9FB-427C-9F6F-9DB157611FFF}" = Valokuvavalikoima
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Qualcomm Atheros Driver Installation Program
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C4E8BC59-BD60-4B73-999B-758890DF4E62}" = Windows Live Writer Resources
"{C7929038-EDFB-416D-A2C9-CC65416DA0DF}" = Photo Common
"{C881BB19-CEFC-4EF3-B012-CF7075CB7F65}" = QuickShare
"{C8BBA220-8549-462A-B411-1AF44DE098B5}" = Photo Common
"{C97CC14E-4789-4FC5-BC75-79191F7CE009}" = HP Hotkey Support
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{CD442136-9115-4236-9C14-278F6A9DCB3F}" = Windows Live Movie Maker
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240BD}" = WinZip 14.5
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D2C146B1-948D-47EF-8387-5D1C6B980F7C}" = Windows Live Writer
"{D322A9E3-758B-4D60-A7C4-65C88FD378D0}" = Bing Bar
"{D888F114-7537-4D48-AF03-5DA9C82D7540}" = Photo Common
"{DF2035BE-5820-4965-BD97-7FAF8D4A7879}" = Microsoft_VC90_CRT_x86
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E0E0FB88-D570-463E-A98E-733B7B656867}" = Photo Gallery
"{E0E55FC1-C53D-4F8D-B14B-B59C312747C8}" = LightScribe System Software
"{E354D495-5DA4-4CCF-AB39-080F6A4141BE}" = Fotogalleri
"{E37CD6E8-BC51-4D48-9840-803EC3B418D3}" = &#1490;&#1500;&#1512;&#1497;&#1497;&#1514; &#1492;&#1514;&#1502;&#1493;&#1504;&#1493;&#1514;
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{EA348D4B-FB4D-4449-8749-654CA51F56A6}" = Windows Live UX Platform Language Pack
"{EC33D375-5164-4374-9061-43F5C6073219}" = Photo Common
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{EE5F1911-EA95-4F1A-AF97-495972F5032D}" = HP System Default Settings
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F0F9505B-3ACF-4158-9311-D0285136AA00}" = Windows Live Essentials
"{F1CA7DAE-F998-499C-8CA5-FC58CA2416EC}" = Windows Live Essentials
"{F2235E5E-7881-4293-9B6F-04B2609FBFF0}" = Windows Live Messenger
"{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}" = HP Deskjet 3050 J610 series Hjælp
"{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}" = Realtek Ethernet Controller All-In-One Windows Driver
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{FC6C7107-7D72-41A1-A031-3CE751159BAB}" = Photo Gallery
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"A-PDF To Excel_is1" = A-PDF To Excel
"AU11_is1" = Advanced Uninstaller PRO - Version 11
"Awesome Duplicate Photo Finder_is1" = Awesome Duplicate Photo Finder v. 1.1
"Debut" = Debut Video Capture Software
"DiskAid_is1" = DiskAid 5.42
"EaseUS MobiSaver Free 2.0_is1" = EaseUS MobiSaver Free 2.0
"EaseUS Todo Backup Free 5.5_is1" = EaseUS Todo Backup Free 5.5
"ExpressBurn" = Express Burn
"FreeFileSync" = FreeFileSync 5.12
"InstallShield_{ADC70B7A-530B-46E3-8384-48D22681A41E}" = Theft Recovery for HP ProtectTools
"IrfanView" = IrfanView (remove only)
"MCLIENT" = Norton Management
"MixPad" = MixPad
"Mozilla Firefox 24.0 (x86 da)" = Mozilla Firefox 24.0 (x86 da)
"Mozilla Thunderbird 24.0 (x86 da)" = Mozilla Thunderbird 24.0 (x86 da)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"My HP Game Console" = HP Game Console
"NIS" = Norton Internet Security
"NST" = Norton Identity Safe
"Office14.PROPLUS" = Microsoft Office Professionel Plus 2010
"PDF Complete" = PDF Complete Special Edition
"Picasa 3" = Picasa 3
"Pixillion" = Pixillion Image Converter
"Prism" = Prism Video File Converter
"Recordpad" = RecordPad Sound Recorder
"Secunia PSI" = Secunia PSI (3.0.0.7011)
"SoundTap" = SoundTap Streaming Audio Recorder
"Switch" = Switch Sound File Converter
"VideoPad" = VideoPad Video Editor
"VIP Access SDK" = VIP Access SDK (1.0.1.5)
"WavePad" = WavePad Sound Editor
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite" = Windows Live Essentials
"WT087330" = Bounce Symphony
"WT087361" = FATE
"WT087380" = John Deere Drive Green
"WT087394" = Penguins!
"WT087396" = Polar Bowler
"WT087428" = Bejeweled 2 Deluxe
"WT087453" = Chuzzle Deluxe
"WT087480" = Insaniquarium Deluxe
"WT087485" = Jewel Quest II
"WT087490" = Jewel Quest Solitaire
"WT087501" = Plants vs. Zombies
"WT087510" = Slingo Deluxe
"WT087513" = Virtual Villagers - The Secret City
"WT087519" = Wedding Dash
"WT087533" = Zuma Deluxe
"WT087536" = Diner Dash 2 Restaurant Rescue
"WT089303" = Build-a-Lot - The Elizabethan Era
"WT089308" = Blasterball 3
"WT089328" = Farm Frenzy
"WT089359" = Cake Mania
"WT089362" = Agatha Christie - Peril at End House
"Wuala CBFS" = Wuala CBFS
"Wuala OverlayIcons" = Wuala OverlayIcons
"XY Chart Labeler 7.1" = XY Chart Labeler 7.1

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1766701091-1852947600-986297412-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Screencast-O-Matic" = Screencast-O-Matic
"Wuala" = Wuala

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 21-10-2013 14:32:37 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0x54c
Programmets
starttidspunkt 0x01cece855c666e37  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: 283b18b4-3a7f-11e3-9429-101f74f78257

Error - 21-10-2013 15:28:40 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0x1aa0
Programmets
starttidspunkt 0x01cece8bec3642c4  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: fcbdc81a-3a86-11e3-9429-101f74f78257

Error - 21-10-2013 17:46:29 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0xcd4
Programmets
starttidspunkt 0x01cecea3e27ff728  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: 3dcdd75c-3a9a-11e3-a0b1-101f74f78257

Error - 21-10-2013 18:20:59 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0xce8
Programmets
starttidspunkt 0x01cecea8b2aa3da4  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: 0f910750-3a9f-11e3-a0b1-101f74f78257

Error - 22-10-2013 07:42:58 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: Explorer.EXE, version: 6.1.7601.17567, tidsstempel:
0x4d672ee4  Navn på modul med fejl: ntdll.dll, version: 6.1.7601.18247, tidsstempel:
0x521eaf24  Undtagelseskode: 0xc0000374  Forskydning med fejl 0x00000000000c4102  Proces-id
0x1310  Programmets starttidspunkt 0x01cecf1af43c1688  Programsti: C:\windows\Explorer.EXE
Modulsti:
C:\windows\SYSTEM32\ntdll.dll  Rapport-id: 18c49b09-3b0f-11e3-94e7-101f74f78257

Error - 22-10-2013 07:52:13 | Computer Name = Torben-HP | Source = flcdlock | ID = 1069
Description = Current SID profile operation failed with unknown exception.

Error - 22-10-2013 09:27:13 | Computer Name = Torben-HP | Source = flcdlock | ID = 1069
Description = Current SID profile operation failed with unknown exception.

Error - 22-10-2013 11:36:36 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0x2b0
Programmets
starttidspunkt 0x01cecf3214c4f19d  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: bc17e302-3b2f-11e3-899b-101f74f78257

Error - 22-10-2013 21:20:13 | Computer Name = Torben-HP | Source = Application Error | ID = 1000
Description = Navn på program med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Navn på modul med fejl: hpqWmiEx.exe, version: 4.6.15.1, tidsstempel:
0x50a165a9  Undtagelseskode: 0xc0000005  Forskydning med fejl 0x0002b5d6  Proces-id 0x608
Programmets
starttidspunkt 0x01cecf845f2763d5  Programsti: C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
Modulsti:
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe  Rapport-id: 43c1a003-3b81-11e3-90aa-101f74f78257

Error - 23-10-2013 00:33:15 | Computer Name = Torben-HP | Source = flcdlock | ID = 1069
Description = Current SID profile operation failed with unknown exception.

[ Hewlett-Packard Events ]
Error - 03-01-2013 01:32:07 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: da-DK  RAM: 4030
Ram
Utilization: 50  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 13-01-2013 15:36:30 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: da-DK  RAM: 4030
Ram
Utilization: 50  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 14-01-2013 13:19:38 | Computer Name = Torben-HP | Source = hpsf.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: hpsf.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\hpsf.exe  Format: da-DK  RAM: 4030
Ram
Utilization: 50  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 23-03-2013 13:52:20 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: da-DK  RAM: 4030
Ram
Utilization:  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 12-06-2013 11:50:25 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: da-DK  RAM: 4030
Ram
Utilization: 60  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 12-06-2013 17:54:08 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261  ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
Objektreferencen er ikke indstillet til en forekomst af et objekt.  StackTrace: 
ved HP.SupportFramework.Utilities.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportFramework.Utilities    Name: HPSF.exe  Version: 07.00.01.01  Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe  Format: da-DK  RAM: 4030
Ram
Utilization: 60  TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()


Error - 11-09-2013 08:33:34 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description =

Error - 11-09-2013 08:33:43 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description =

Error - 11-09-2013 08:33:43 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description =

Error - 22-10-2013 14:42:48 | Computer Name = Torben-HP | Source = HPSF.exe | ID = 2000
Description =

[ HP Connection Manager Events ]
Error - 04-10-2013 08:03:43 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:03:43.689|00001508|Error      |[HP.Mobile]Wlan::c{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:03:43 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:03:43.782|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:10:26 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:10:26.709|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:12:27 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:12:27.657|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:13:41 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:13:41.745|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:15:22 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:15:21.995|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:16:19 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:16:19.426|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 04-10-2013 08:24:27 | Computer Name = Torben-HP | Source = hpMobile | ID = 5
Description = 2013-10-04 14:24:27.083|00001508|Error      |[HP.Mobile]Wlan::b{void()}|Dataene
er ikke gyldige. (Undtagelse fra HRESULT: 0x8007000D)

Error - 17-10-2013 05:45:30 | Computer Name = Torben-HP | Source = hpCMSrv | ID = 5
Description = 2013/10/17 11:45:30.349|00000620|Error      |CCasl::GetString|CASL
Error [var.vt:0]

[ HP Power Assistant Events ]
Error - 21-10-2013 17:28:02 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 07:40:09 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 07:55:28 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 09:02:43 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 09:18:02 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 09:31:14 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 09:40:52 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 09:49:04 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 10:00:34 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

Error - 22-10-2013 17:51:55 | Computer Name = Torben-HP | Source = HP PA Application | ID = 1020
Description = An error occured in HP Power Assistant application, module [HPPA_Main].
Please
restart HP Power Assistant application. Additional details may be available in the
Details section.    DETAILS  Power Control Settings: registry Threshold contains an
invalid value: 0

[ HP Software Framework Events ]
Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.495|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.510|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.526|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.542|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.588|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 03:22:15 | Computer Name = Torben-HP | Source = CaslSmBios | ID = 5
Description = 2013-10-03 09:22:15.635|00000968|Error      |[CaslWmi]A::A{bool()}|Error
connecting to Global Event server. Exception: Hentning af COM-klassefabrikken for
komponenten med CLSID {69D77689-DA2B-4308-8404-2614CBF9896E} mislykkedes pga. følgende
fejl: 8007045b.

Error - 03-10-2013 08:08:05 | Computer Name = Torben-HP | Source = hpCasl | ID = 5
Description = 2013-10-03 14:08:04.837|00001874|Error      |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Hentning af COM-klassefabrikken for komponenten med CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
mislykkedes pga. følgende fejl: 8007041d.

Error - 05-10-2013 06:31:57 | Computer Name = Torben-HP | Source = hpqWmiEx | ID = 5
Description = 2013/10/05 12:31:57.741|000016DC|Error      |ChpqWmiExModule::Start|The
hpqwmiex service failed to start (1063).  A system restart may correct this problem.

Error - 17-10-2013 05:45:01 | Computer Name = Torben-HP | Source = hpqWmiEx | ID = 5
Description = 2013/10/17 11:45:01.863|00000CF4|Error      |ChpqWmiExModule::Run|Run
error.

Error - 17-10-2013 13:12:48 | Computer Name = Torben-HP | Source = hpCasl | ID = 5
Description = 2013-10-17 19:12:46.475|000019F4|Error      |[hpcasl]Command::Get{hpCasl.enReturnCode(string,object&)}|An
exception occurred Hentning af COM-klassefabrikken for komponenten med CLSID {F5539356-2F02-40D4-999E-FA61F45FE12E}
mislykkedes pga. følgende fejl: 8007041d.

[ System Events ]
Error - 23-10-2013 00:24:09 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7032
Description = Tjenestekontrolstyring prøvede at foretage en korrigerende handling
(Genstart tjenesten) efter den uventede afbrydelse af tjenesten HP Software Framework
Service, men denne handling mislykkedes med følgende fejl:  %%1056

Error - 23-10-2013 00:31:44 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7009
Description = Der opstod timeout (30000 millisekunder), mens systemet ventede på,
at der blev oprettet forbindelse til tjenesten HP Software Framework Service.

Error - 23-10-2013 00:31:44 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7000
Description = Tjenesten HP Software Framework Service kunne ikke starte pga. følgende
fejl:  %%1053

Error - 23-10-2013 00:33:09 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7022
Description = Tjenesten HP Connection Manager 4 Service hang ved start.

Error - 23-10-2013 00:34:16 | Computer Name = Torben-HP | Source = DCOM | ID = 10016
Description =

Error - 23-10-2013 04:49:34 | Computer Name = Torben-HP | Source = BTHUSB | ID = 327697
Description = Der opstod en ukendt fejl i den lokale Bluetooth-adapter og den vil
derfor ikke blive brugt. Driveren vil ikke blive indlæst.

Error - 23-10-2013 04:50:13 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7009
Description = Der opstod timeout (30000 millisekunder), mens systemet ventede på,
at der blev oprettet forbindelse til tjenesten HP Software Framework Service.

Error - 23-10-2013 04:50:13 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7000
Description = Tjenesten HP Software Framework Service kunne ikke starte pga. følgende
fejl:  %%1053

Error - 23-10-2013 04:51:39 | Computer Name = Torben-HP | Source = Service Control Manager | ID = 7022
Description = Tjenesten HP Connection Manager 4 Service hang ved start.

Error - 23-10-2013 04:52:39 | Computer Name = Torben-HP | Source = DCOM | ID = 10016
Description =


< End of report >
Avatar billede f-arn Guru
23. oktober 2013 - 20:03 #77
Du skriver du har brugt Norton Power Eraser.

Kan du huske/se hvad den fjernede, for den har en tendens til at komme med falske positiver (FP).

Det svarede du ikke på.

Hvornår har du brugt Hitman Pro ?

------

Vil du godt køre en sfc /scannow. (igen)

http://support.microsoft.com/kb/929833/da

Jeg vil gerne vide hvad findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt" skriver.
Avatar billede mathilda Nybegynder
23. oktober 2013 - 21:09 #78
Norton Power Eraser har sat følgende i karantæne:

23. sept 2013  1 registreringsdatabasenøgle  Firefox
22. sept 2013  1 registreringsdatabasenøgle  Firefox
20. sept 2013  1 registreringsdatabasenøgle  Firefox
17. sept 2013  1 mappe      hosts_anti_adwares_pups
              1 genvej til  adwcleaner.exe
              1 registreringsdatabasenøgle  Firefox
14. maj 2013  1 mappe      hosts_anti_adwares_pups
21. april 2013 1 DNS post    windows/system32/drivers/etc/hosts
              1 registreringsdatabasenøgle  LG LinkAir  mobiltelefon
              1 registreringsdatabasenøgle:
\registry\Machine\software\wow6432node\microsoft\windows\currentversion\run\''''


HitmanPro har leveret 71 logs fra 11. februar 2013 til 8. juni 2013. Langt de fleste uden at have fundet noget.
Første fund var 11 febr 2013.
Avatar billede mathilda Nybegynder
23. oktober 2013 - 22:10 #79
Sfc /scannow fandt ingen integritetsproblmer

Jeg gætter på, at:
findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt"

skal skrives i kommandopromptn.

Men så får jeg problem med tastaturet. Jeg kan godt skrive  \  indtil jeg har skrevet  userprofile%  derefter er  \  væk.

Hvad skal jeg gøre ved det?
Avatar billede f-arn Guru
24. oktober 2013 - 12:36 #80
Læste du det Microsoft link jeg lagde, da jeg bad dig køre sfc /scannow - for der er det beskrevet at begge skal køres fra en kommandoprompt som administrator ?
Avatar billede mathilda Nybegynder
24. oktober 2013 - 14:46 #81
Ja, jeg har kørt  SFC /scannow  på den måde, - og den slutter af med at skrive at der ikke var nogle integritetsproblemer.

Når jeg forsøger at skrive
findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt"

i kommandoprompten kommer jeg ikke helt igennem før backslash ikke er på  "><\"-tasten mere.

Ville man kunne køre den fra en bat-fil ?
Avatar billede mathilda Nybegynder
24. oktober 2013 - 18:58 #82
Så lykkedes det:
sfcdetails.txt

2013-10-20 15:46:58, Info                  CSI    00000009 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:46:58, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:12, Info                  CSI    0000000c [SR] Verify complete
2013-10-20 15:47:13, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:13, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:24, Info                  CSI    00000010 [SR] Verify complete
2013-10-20 15:47:26, Info                  CSI    00000011 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:26, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:31, Info                  CSI    00000014 [SR] Verify complete
2013-10-20 15:47:32, Info                  CSI    00000015 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:32, Info                  CSI    00000016 [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:38, Info                  CSI    00000018 [SR] Verify complete
2013-10-20 15:47:39, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:39, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:44, Info                  CSI    0000001c [SR] Verify complete
2013-10-20 15:47:44, Info                  CSI    0000001d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:44, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:50, Info                  CSI    00000020 [SR] Verify complete
2013-10-20 15:47:51, Info                  CSI    00000021 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:47:51, Info                  CSI    00000022 [SR] Beginning Verify and Repair transaction
2013-10-20 15:47:59, Info                  CSI    00000024 [SR] Verify complete
2013-10-20 15:48:00, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:00, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2013-10-20 15:48:11, Info                  CSI    00000028 [SR] Verify complete
2013-10-20 15:48:12, Info                  CSI    00000029 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:12, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
2013-10-20 15:48:20, Info                  CSI    0000002c [SR] Verify complete
2013-10-20 15:48:21, Info                  CSI    0000002d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:21, Info                  CSI    0000002e [SR] Beginning Verify and Repair transaction
2013-10-20 15:48:26, Info                  CSI    00000030 [SR] Verify complete
2013-10-20 15:48:26, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:26, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2013-10-20 15:48:45, Info                  CSI    00000034 [SR] Verify complete
2013-10-20 15:48:46, Info                  CSI    00000035 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:46, Info                  CSI    00000036 [SR] Beginning Verify and Repair transaction
2013-10-20 15:48:58, Info                  CSI    00000038 [SR] Verify complete
2013-10-20 15:48:58, Info                  CSI    00000039 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:48:58, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2013-10-20 15:49:06, Info                  CSI    0000003c [SR] Verify complete
2013-10-20 15:49:07, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:49:07, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
2013-10-20 15:49:15, Info                  CSI    00000040 [SR] Verify complete
2013-10-20 15:49:16, Info                  CSI    00000041 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:49:16, Info                  CSI    00000042 [SR] Beginning Verify and Repair transaction
2013-10-20 15:49:36, Info                  CSI    00000045 [SR] Verify complete
2013-10-20 15:49:36, Info                  CSI    00000046 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:49:36, Info                  CSI    00000047 [SR] Beginning Verify and Repair transaction
2013-10-20 15:49:57, Info                  CSI    0000004b [SR] Verify complete
2013-10-20 15:49:57, Info                  CSI    0000004c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:49:57, Info                  CSI    0000004d [SR] Beginning Verify and Repair transaction
2013-10-20 15:50:11, Info                  CSI    00000050 [SR] Verify complete
2013-10-20 15:50:12, Info                  CSI    00000051 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:50:12, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
2013-10-20 15:50:24, Info                  CSI    00000055 [SR] Verify complete
2013-10-20 15:50:24, Info                  CSI    00000056 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:50:24, Info                  CSI    00000057 [SR] Beginning Verify and Repair transaction
2013-10-20 15:50:40, Info                  CSI    0000005f [SR] Verify complete
2013-10-20 15:50:40, Info                  CSI    00000060 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:50:40, Info                  CSI    00000061 [SR] Beginning Verify and Repair transaction
2013-10-20 15:50:56, Info                  CSI    00000080 [SR] Verify complete
2013-10-20 15:50:57, Info                  CSI    00000081 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:50:57, Info                  CSI    00000082 [SR] Beginning Verify and Repair transaction
2013-10-20 15:51:17, Info                  CSI    00000084 [SR] Verify complete
2013-10-20 15:51:18, Info                  CSI    00000085 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:51:18, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
2013-10-20 15:51:34, Info                  CSI    00000088 [SR] Verify complete
2013-10-20 15:51:34, Info                  CSI    00000089 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:51:34, Info                  CSI    0000008a [SR] Beginning Verify and Repair transaction
2013-10-20 15:51:46, Info                  CSI    0000008c [SR] Verify complete
2013-10-20 15:51:46, Info                  CSI    0000008d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:51:46, Info                  CSI    0000008e [SR] Beginning Verify and Repair transaction
2013-10-20 15:52:03, Info                  CSI    00000090 [SR] Verify complete
2013-10-20 15:52:04, Info                  CSI    00000091 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:52:04, Info                  CSI    00000092 [SR] Beginning Verify and Repair transaction
2013-10-20 15:52:17, Info                  CSI    00000094 [SR] Verify complete
2013-10-20 15:52:18, Info                  CSI    00000095 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:52:18, Info                  CSI    00000096 [SR] Beginning Verify and Repair transaction
2013-10-20 15:52:36, Info                  CSI    00000098 [SR] Verify complete
2013-10-20 15:52:38, Info                  CSI    00000099 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:52:38, Info                  CSI    0000009a [SR] Beginning Verify and Repair transaction
2013-10-20 15:53:07, Info                  CSI    000000bd [SR] Verify complete
2013-10-20 15:53:08, Info                  CSI    000000be [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:53:08, Info                  CSI    000000bf [SR] Beginning Verify and Repair transaction
2013-10-20 15:53:41, Info                  CSI    000000c1 [SR] Verify complete
2013-10-20 15:53:42, Info                  CSI    000000c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:53:42, Info                  CSI    000000c3 [SR] Beginning Verify and Repair transaction
2013-10-20 15:54:26, Info                  CSI    000000c5 [SR] Verify complete
2013-10-20 15:54:26, Info                  CSI    000000c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:54:26, Info                  CSI    000000c7 [SR] Beginning Verify and Repair transaction
2013-10-20 15:54:53, Info                  CSI    000000cb [SR] Verify complete
2013-10-20 15:54:55, Info                  CSI    000000cc [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:54:55, Info                  CSI    000000cd [SR] Beginning Verify and Repair transaction
2013-10-20 15:55:08, Info                  CSI    000000cf [SR] Verify complete
2013-10-20 15:55:12, Info                  CSI    000000d0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:55:12, Info                  CSI    000000d1 [SR] Beginning Verify and Repair transaction
2013-10-20 15:55:19, Info                  CSI    000000d3 [SR] Verify complete
2013-10-20 15:55:25, Info                  CSI    000000d4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:55:25, Info                  CSI    000000d5 [SR] Beginning Verify and Repair transaction
2013-10-20 15:55:35, Info                  CSI    000000d7 [SR] Verify complete
2013-10-20 15:55:41, Info                  CSI    000000d8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:55:41, Info                  CSI    000000d9 [SR] Beginning Verify and Repair transaction
2013-10-20 15:56:09, Info                  CSI    000000ec [SR] Verify complete
2013-10-20 15:56:13, Info                  CSI    000000ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:56:13, Info                  CSI    000000ee [SR] Beginning Verify and Repair transaction
2013-10-20 15:56:27, Info                  CSI    000000f0 [SR] Verify complete
2013-10-20 15:56:28, Info                  CSI    000000f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:56:28, Info                  CSI    000000f2 [SR] Beginning Verify and Repair transaction
2013-10-20 15:56:35, Info                  CSI    000000f4 [SR] Verify complete
2013-10-20 15:56:35, Info                  CSI    000000f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:56:35, Info                  CSI    000000f6 [SR] Beginning Verify and Repair transaction
2013-10-20 15:56:41, Info                  CSI    000000f8 [SR] Verify complete
2013-10-20 15:56:42, Info                  CSI    000000f9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:56:42, Info                  CSI    000000fa [SR] Beginning Verify and Repair transaction
2013-10-20 15:56:53, Info                  CSI    000000fc [SR] Verify complete
2013-10-20 15:56:54, Info                  CSI    000000fd [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:56:54, Info                  CSI    000000fe [SR] Beginning Verify and Repair transaction
2013-10-20 15:57:19, Info                  CSI    00000102 [SR] Verify complete
2013-10-20 15:57:20, Info                  CSI    00000103 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:57:20, Info                  CSI    00000104 [SR] Beginning Verify and Repair transaction
2013-10-20 15:57:39, Info                  CSI    00000106 [SR] Verify complete
2013-10-20 15:57:40, Info                  CSI    00000107 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:57:40, Info                  CSI    00000108 [SR] Beginning Verify and Repair transaction
2013-10-20 15:57:49, Info                  CSI    0000010a [SR] Verify complete
2013-10-20 15:57:49, Info                  CSI    0000010b [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:57:49, Info                  CSI    0000010c [SR] Beginning Verify and Repair transaction
2013-10-20 15:58:12, Info                  CSI    0000010e [SR] Verify complete
2013-10-20 15:58:13, Info                  CSI    0000010f [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:58:13, Info                  CSI    00000110 [SR] Beginning Verify and Repair transaction
2013-10-20 15:58:32, Info                  CSI    00000112 [SR] Verify complete
2013-10-20 15:58:33, Info                  CSI    00000113 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:58:33, Info                  CSI    00000114 [SR] Beginning Verify and Repair transaction
2013-10-20 15:58:49, Info                  CSI    00000116 [SR] Verify complete
2013-10-20 15:58:49, Info                  CSI    00000117 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:58:49, Info                  CSI    00000118 [SR] Beginning Verify and Repair transaction
2013-10-20 15:59:22, Info                  CSI    0000011a [SR] Verify complete
2013-10-20 15:59:23, Info                  CSI    0000011b [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:59:23, Info                  CSI    0000011c [SR] Beginning Verify and Repair transaction
2013-10-20 15:59:33, Info                  CSI    00000134 [SR] Verify complete
2013-10-20 15:59:34, Info                  CSI    00000135 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:59:34, Info                  CSI    00000136 [SR] Beginning Verify and Repair transaction
2013-10-20 15:59:42, Info                  CSI    00000138 [SR] Verify complete
2013-10-20 15:59:43, Info                  CSI    00000139 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 15:59:43, Info                  CSI    0000013a [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:07, Info                  CSI    0000013c [SR] Verify complete
2013-10-20 16:00:07, Info                  CSI    0000013d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:07, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:18, Info                  CSI    00000140 [SR] Verify complete
2013-10-20 16:00:18, Info                  CSI    00000141 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:18, Info                  CSI    00000142 [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:25, Info                  CSI    00000144 [SR] Verify complete
2013-10-20 16:00:26, Info                  CSI    00000145 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:26, Info                  CSI    00000146 [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:30, Info                  CSI    00000149 [SR] Verify complete
2013-10-20 16:00:31, Info                  CSI    0000014a [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:31, Info                  CSI    0000014b [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:37, Info                  CSI    0000014d [SR] Verify complete
2013-10-20 16:00:37, Info                  CSI    0000014e [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:37, Info                  CSI    0000014f [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:42, Info                  CSI    00000151 [SR] Verify complete
2013-10-20 16:00:42, Info                  CSI    00000152 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:42, Info                  CSI    00000153 [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:48, Info                  CSI    00000157 [SR] Verify complete
2013-10-20 16:00:48, Info                  CSI    00000158 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:48, Info                  CSI    00000159 [SR] Beginning Verify and Repair transaction
2013-10-20 16:00:55, Info                  CSI    0000015b [SR] Verify complete
2013-10-20 16:00:55, Info                  CSI    0000015c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:00:55, Info                  CSI    0000015d [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:00, Info                  CSI    00000160 [SR] Verify complete
2013-10-20 16:01:00, Info                  CSI    00000161 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:00, Info                  CSI    00000162 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:06, Info                  CSI    00000164 [SR] Verify complete
2013-10-20 16:01:06, Info                  CSI    00000165 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:06, Info                  CSI    00000166 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:12, Info                  CSI    00000169 [SR] Verify complete
2013-10-20 16:01:13, Info                  CSI    0000016a [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:13, Info                  CSI    0000016b [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:21, Info                  CSI    0000016e [SR] Verify complete
2013-10-20 16:01:21, Info                  CSI    0000016f [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:21, Info                  CSI    00000170 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:30, Info                  CSI    00000172 [SR] Verify complete
2013-10-20 16:01:30, Info                  CSI    00000173 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:30, Info                  CSI    00000174 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:35, Info                  CSI    00000176 [SR] Verify complete
2013-10-20 16:01:36, Info                  CSI    00000177 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:36, Info                  CSI    00000178 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:42, Info                  CSI    0000017a [SR] Verify complete
2013-10-20 16:01:42, Info                  CSI    0000017b [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:42, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:47, Info                  CSI    0000017f [SR] Verify complete
2013-10-20 16:01:47, Info                  CSI    00000180 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:47, Info                  CSI    00000181 [SR] Beginning Verify and Repair transaction
2013-10-20 16:01:54, Info                  CSI    00000183 [SR] Verify complete
2013-10-20 16:01:54, Info                  CSI    00000184 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:01:54, Info                  CSI    00000185 [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:06, Info                  CSI    00000187 [SR] Verify complete
2013-10-20 16:02:07, Info                  CSI    00000188 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:07, Info                  CSI    00000189 [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:12, Info                  CSI    0000018c [SR] Verify complete
2013-10-20 16:02:12, Info                  CSI    0000018d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:12, Info                  CSI    0000018e [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:17, Info                  CSI    00000190 [SR] Verify complete
2013-10-20 16:02:17, Info                  CSI    00000191 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:17, Info                  CSI    00000192 [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:22, Info                  CSI    00000194 [SR] Verify complete
2013-10-20 16:02:22, Info                  CSI    00000195 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:22, Info                  CSI    00000196 [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:27, Info                  CSI    00000199 [SR] Verify complete
2013-10-20 16:02:28, Info                  CSI    0000019a [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:28, Info                  CSI    0000019b [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:40, Info                  CSI    0000019d [SR] Verify complete
2013-10-20 16:02:40, Info                  CSI    0000019e [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:40, Info                  CSI    0000019f [SR] Beginning Verify and Repair transaction
2013-10-20 16:02:55, Info                  CSI    000001a4 [SR] Verify complete
2013-10-20 16:02:55, Info                  CSI    000001a5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:02:55, Info                  CSI    000001a6 [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:06, Info                  CSI    000001a8 [SR] Verify complete
2013-10-20 16:03:06, Info                  CSI    000001a9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:06, Info                  CSI    000001aa [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:14, Info                  CSI    000001ad [SR] Verify complete
2013-10-20 16:03:14, Info                  CSI    000001ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:14, Info                  CSI    000001af [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:23, Info                  CSI    000001b1 [SR] Verify complete
2013-10-20 16:03:23, Info                  CSI    000001b2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:23, Info                  CSI    000001b3 [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:28, Info                  CSI    000001b5 [SR] Verify complete
2013-10-20 16:03:28, Info                  CSI    000001b6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:28, Info                  CSI    000001b7 [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:43, Info                  CSI    000001b9 [SR] Verify complete
2013-10-20 16:03:43, Info                  CSI    000001ba [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:43, Info                  CSI    000001bb [SR] Beginning Verify and Repair transaction
2013-10-20 16:03:53, Info                  CSI    000001bd [SR] Verify complete
2013-10-20 16:03:53, Info                  CSI    000001be [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:03:53, Info                  CSI    000001bf [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:05, Info                  CSI    000001c1 [SR] Verify complete
2013-10-20 16:04:06, Info                  CSI    000001c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:06, Info                  CSI    000001c3 [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:11, Info                  CSI    000001c5 [SR] Verify complete
2013-10-20 16:04:11, Info                  CSI    000001c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:11, Info                  CSI    000001c7 [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:14, Info                  CSI    000001c9 [SR] Verify complete
2013-10-20 16:04:15, Info                  CSI    000001ca [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:15, Info                  CSI    000001cb [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:23, Info                  CSI    000001cd [SR] Verify complete
2013-10-20 16:04:23, Info                  CSI    000001ce [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:23, Info                  CSI    000001cf [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:40, Info                  CSI    000001d1 [SR] Verify complete
2013-10-20 16:04:40, Info                  CSI    000001d2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:40, Info                  CSI    000001d3 [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:54, Info                  CSI    000001d5 [SR] Verify complete
2013-10-20 16:04:55, Info                  CSI    000001d6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:04:55, Info                  CSI    000001d7 [SR] Beginning Verify and Repair transaction
2013-10-20 16:04:59, Info                  CSI    000001d9 [SR] Verify complete
2013-10-20 16:05:00, Info                  CSI    000001da [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:00, Info                  CSI    000001db [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:02, Info                  CSI    000001dd [SR] Verify complete
2013-10-20 16:05:02, Info                  CSI    000001de [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:02, Info                  CSI    000001df [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:05, Info                  CSI    000001e1 [SR] Verify complete
2013-10-20 16:05:06, Info                  CSI    000001e2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:06, Info                  CSI    000001e3 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:09, Info                  CSI    000001e5 [SR] Verify complete
2013-10-20 16:05:10, Info                  CSI    000001e6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:10, Info                  CSI    000001e7 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:13, Info                  CSI    000001e9 [SR] Verify complete
2013-10-20 16:05:14, Info                  CSI    000001ea [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:14, Info                  CSI    000001eb [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:18, Info                  CSI    000001ed [SR] Verify complete
2013-10-20 16:05:19, Info                  CSI    000001ee [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:19, Info                  CSI    000001ef [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:22, Info                  CSI    000001f1 [SR] Verify complete
2013-10-20 16:05:23, Info                  CSI    000001f2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:23, Info                  CSI    000001f3 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:26, Info                  CSI    000001f5 [SR] Verify complete
2013-10-20 16:05:26, Info                  CSI    000001f6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:26, Info                  CSI    000001f7 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:32, Info                  CSI    000001ff [SR] Verify complete
2013-10-20 16:05:33, Info                  CSI    00000200 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:33, Info                  CSI    00000201 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:37, Info                  CSI    00000203 [SR] Verify complete
2013-10-20 16:05:37, Info                  CSI    00000204 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:37, Info                  CSI    00000205 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:41, Info                  CSI    00000207 [SR] Verify complete
2013-10-20 16:05:41, Info                  CSI    00000208 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:41, Info                  CSI    00000209 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:45, Info                  CSI    0000020b [SR] Verify complete
2013-10-20 16:05:46, Info                  CSI    0000020c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:46, Info                  CSI    0000020d [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:51, Info                  CSI    0000020f [SR] Verify complete
2013-10-20 16:05:52, Info                  CSI    00000210 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:52, Info                  CSI    00000211 [SR] Beginning Verify and Repair transaction
2013-10-20 16:05:57, Info                  CSI    00000213 [SR] Verify complete
2013-10-20 16:05:58, Info                  CSI    00000214 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:05:58, Info                  CSI    00000215 [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:05, Info                  CSI    00000218 [SR] Verify complete
2013-10-20 16:06:05, Info                  CSI    00000219 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:05, Info                  CSI    0000021a [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:09, Info                  CSI    0000021c [SR] Verify complete
2013-10-20 16:06:09, Info                  CSI    0000021d [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:09, Info                  CSI    0000021e [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:11, Info                  CSI    00000220 [SR] Verify complete
2013-10-20 16:06:11, Info                  CSI    00000221 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:11, Info                  CSI    00000222 [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:18, Info                  CSI    00000225 [SR] Verify complete
2013-10-20 16:06:19, Info                  CSI    00000226 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:19, Info                  CSI    00000227 [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:32, Info                  CSI    0000022b [SR] Verify complete
2013-10-20 16:06:32, Info                  CSI    0000022c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:32, Info                  CSI    0000022d [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:38, Info                  CSI    00000231 [SR] Verify complete
2013-10-20 16:06:39, Info                  CSI    00000232 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:39, Info                  CSI    00000233 [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:46, Info                  CSI    00000237 [SR] Verify complete
2013-10-20 16:06:47, Info                  CSI    00000238 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:47, Info                  CSI    00000239 [SR] Beginning Verify and Repair transaction
2013-10-20 16:06:54, Info                  CSI    00000242 [SR] Verify complete
2013-10-20 16:06:54, Info                  CSI    00000243 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:06:54, Info                  CSI    00000244 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:11, Info                  CSI    0000024a [SR] Verify complete
2013-10-20 16:07:11, Info                  CSI    0000024b [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:11, Info                  CSI    0000024c [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:17, Info                  CSI    0000024e [SR] Verify complete
2013-10-20 16:07:17, Info                  CSI    0000024f [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:17, Info                  CSI    00000250 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:22, Info                  CSI    00000254 [SR] Verify complete
2013-10-20 16:07:22, Info                  CSI    00000255 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:22, Info                  CSI    00000256 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:27, Info                  CSI    00000258 [SR] Verify complete
2013-10-20 16:07:28, Info                  CSI    00000259 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:28, Info                  CSI    0000025a [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:34, Info                  CSI    0000027f [SR] Verify complete
2013-10-20 16:07:34, Info                  CSI    00000280 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:34, Info                  CSI    00000281 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:40, Info                  CSI    00000283 [SR] Verify complete
2013-10-20 16:07:40, Info                  CSI    00000284 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:40, Info                  CSI    00000285 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:45, Info                  CSI    00000287 [SR] Verify complete
2013-10-20 16:07:45, Info                  CSI    00000288 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:45, Info                  CSI    00000289 [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:50, Info                  CSI    0000028b [SR] Verify complete
2013-10-20 16:07:51, Info                  CSI    0000028c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:51, Info                  CSI    0000028d [SR] Beginning Verify and Repair transaction
2013-10-20 16:07:56, Info                  CSI    0000029b [SR] Verify complete
2013-10-20 16:07:56, Info                  CSI    0000029c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:07:56, Info                  CSI    0000029d [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:04, Info                  CSI    0000029f [SR] Verify complete
2013-10-20 16:08:04, Info                  CSI    000002a0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:04, Info                  CSI    000002a1 [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:10, Info                  CSI    000002ad [SR] Verify complete
2013-10-20 16:08:10, Info                  CSI    000002ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:10, Info                  CSI    000002af [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:14, Info                  CSI    000002b3 [SR] Verify complete
2013-10-20 16:08:14, Info                  CSI    000002b4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:14, Info                  CSI    000002b5 [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:16, Info                  CSI    000002b7 [SR] Verify complete
2013-10-20 16:08:17, Info                  CSI    000002b8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:17, Info                  CSI    000002b9 [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:23, Info                  CSI    000002bc [SR] Verify complete
2013-10-20 16:08:24, Info                  CSI    000002bd [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:24, Info                  CSI    000002be [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:26, Info                  CSI    000002c0 [SR] Verify complete
2013-10-20 16:08:27, Info                  CSI    000002c1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:27, Info                  CSI    000002c2 [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:32, Info                  CSI    000002c4 [SR] Verify complete
2013-10-20 16:08:33, Info                  CSI    000002c5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:33, Info                  CSI    000002c6 [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:37, Info                  CSI    000002c8 [SR] Verify complete
2013-10-20 16:08:37, Info                  CSI    000002c9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:37, Info                  CSI    000002ca [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:41, Info                  CSI    000002cc [SR] Verify complete
2013-10-20 16:08:42, Info                  CSI    000002cd [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:42, Info                  CSI    000002ce [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:51, Info                  CSI    000002e8 [SR] Verify complete
2013-10-20 16:08:52, Info                  CSI    000002e9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:52, Info                  CSI    000002ea [SR] Beginning Verify and Repair transaction
2013-10-20 16:08:58, Info                  CSI    000002ec [SR] Verify complete
2013-10-20 16:08:58, Info                  CSI    000002ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:08:58, Info                  CSI    000002ee [SR] Beginning Verify and Repair transaction
2013-10-20 16:09:39, Info                  CSI    000002f0 [SR] Verify complete
2013-10-20 16:09:39, Info                  CSI    000002f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:09:39, Info                  CSI    000002f2 [SR] Beginning Verify and Repair transaction
2013-10-20 16:09:44, Info                  CSI    000002f4 [SR] Verify complete
2013-10-20 16:09:44, Info                  CSI    000002f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:09:44, Info                  CSI    000002f6 [SR] Beginning Verify and Repair transaction
2013-10-20 16:09:48, Info                  CSI    000002fa [SR] Verify complete
2013-10-20 16:09:49, Info                  CSI    000002fb [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:09:49, Info                  CSI    000002fc [SR] Beginning Verify and Repair transaction
2013-10-20 16:09:52, Info                  CSI    000002fe [SR] Verify complete
2013-10-20 16:09:52, Info                  CSI    000002ff [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:09:52, Info                  CSI    00000300 [SR] Beginning Verify and Repair transaction
2013-10-20 16:09:58, Info                  CSI    00000302 [SR] Verify complete
2013-10-20 16:09:58, Info                  CSI    00000303 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:09:58, Info                  CSI    00000304 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:03, Info                  CSI    00000306 [SR] Verify complete
2013-10-20 16:10:03, Info                  CSI    00000307 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:03, Info                  CSI    00000308 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:08, Info                  CSI    0000030b [SR] Verify complete
2013-10-20 16:10:08, Info                  CSI    0000030c [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:08, Info                  CSI    0000030d [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:12, Info                  CSI    0000030f [SR] Verify complete
2013-10-20 16:10:13, Info                  CSI    00000310 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:13, Info                  CSI    00000311 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:23, Info                  CSI    00000314 [SR] Verify complete
2013-10-20 16:10:23, Info                  CSI    00000315 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:23, Info                  CSI    00000316 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:28, Info                  CSI    00000318 [SR] Verify complete
2013-10-20 16:10:29, Info                  CSI    00000319 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:29, Info                  CSI    0000031a [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:35, Info                  CSI    0000031d [SR] Verify complete
2013-10-20 16:10:35, Info                  CSI    0000031e [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:35, Info                  CSI    0000031f [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:39, Info                  CSI    00000321 [SR] Verify complete
2013-10-20 16:10:40, Info                  CSI    00000322 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:40, Info                  CSI    00000323 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:46, Info                  CSI    00000325 [SR] Verify complete
2013-10-20 16:10:46, Info                  CSI    00000326 [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:46, Info                  CSI    00000327 [SR] Beginning Verify and Repair transaction
2013-10-20 16:10:51, Info                  CSI    00000329 [SR] Verify complete
2013-10-20 16:10:51, Info                  CSI    0000032a [SR] Verifying 100 (0x0000000000000064) components
2013-10-20 16:10:51, Info                  CSI    0000032b [SR] Beginning Verify and Repair transaction
2013-10-20 16:11:07, Info                  CSI    0000032d [SR] Verify complete
2013-10-20 16:11:07, Info                  CSI    0000032e [SR] Verifying 46 (0x000000000000002e) components
2013-10-20 16:11:07, Info                  CSI    0000032f [SR] Beginning Verify and Repair transaction
2013-10-20 16:11:11, Info                  CSI    00000331 [SR] Verify complete
2013-10-20 16:11:11, Info                  CSI    00000332 [SR] Repairing 0 components
2013-10-20 16:11:11, Info                  CSI    00000333 [SR] Beginning Verify and Repair transaction
2013-10-20 16:11:11, Info                  CSI    00000335 [SR] Repair complete
2013-10-23 21:18:45, Info                  CSI    00000009 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:45, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:47, Info                  CSI    0000000c [SR] Verify complete
2013-10-23 21:18:47, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:47, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:49, Info                  CSI    00000010 [SR] Verify complete
2013-10-23 21:18:49, Info                  CSI    00000011 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:49, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:51, Info                  CSI    00000014 [SR] Verify complete
2013-10-23 21:18:51, Info                  CSI    00000015 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:51, Info                  CSI    00000016 [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:52, Info                  CSI    00000018 [SR] Verify complete
2013-10-23 21:18:53, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:53, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:54, Info                  CSI    0000001c [SR] Verify complete
2013-10-23 21:18:55, Info                  CSI    0000001d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:55, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
2013-10-23 21:18:56, Info                  CSI    00000020 [SR] Verify complete
2013-10-23 21:18:57, Info                  CSI    00000021 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:18:57, Info                  CSI    00000022 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:00, Info                  CSI    00000024 [SR] Verify complete
2013-10-23 21:19:00, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:00, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:03, Info                  CSI    00000028 [SR] Verify complete
2013-10-23 21:19:03, Info                  CSI    00000029 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:03, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:05, Info                  CSI    0000002c [SR] Verify complete
2013-10-23 21:19:06, Info                  CSI    0000002d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:06, Info                  CSI    0000002e [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:07, Info                  CSI    00000030 [SR] Verify complete
2013-10-23 21:19:08, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:08, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:10, Info                  CSI    00000034 [SR] Verify complete
2013-10-23 21:19:11, Info                  CSI    00000035 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:11, Info                  CSI    00000036 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:13, Info                  CSI    00000038 [SR] Verify complete
2013-10-23 21:19:14, Info                  CSI    00000039 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:14, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:15, Info                  CSI    0000003c [SR] Verify complete
2013-10-23 21:19:16, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:16, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:18, Info                  CSI    00000040 [SR] Verify complete
2013-10-23 21:19:18, Info                  CSI    00000041 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:18, Info                  CSI    00000042 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:23, Info                  CSI    00000045 [SR] Verify complete
2013-10-23 21:19:23, Info                  CSI    00000046 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:23, Info                  CSI    00000047 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:28, Info                  CSI    0000004b [SR] Verify complete
2013-10-23 21:19:28, Info                  CSI    0000004c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:28, Info                  CSI    0000004d [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:32, Info                  CSI    00000050 [SR] Verify complete
2013-10-23 21:19:32, Info                  CSI    00000051 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:32, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:35, Info                  CSI    00000055 [SR] Verify complete
2013-10-23 21:19:35, Info                  CSI    00000056 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:35, Info                  CSI    00000057 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:40, Info                  CSI    0000005f [SR] Verify complete
2013-10-23 21:19:40, Info                  CSI    00000060 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:40, Info                  CSI    00000061 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:46, Info                  CSI    00000080 [SR] Verify complete
2013-10-23 21:19:47, Info                  CSI    00000081 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:47, Info                  CSI    00000082 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:52, Info                  CSI    00000084 [SR] Verify complete
2013-10-23 21:19:52, Info                  CSI    00000085 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:52, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
2013-10-23 21:19:56, Info                  CSI    00000088 [SR] Verify complete
2013-10-23 21:19:57, Info                  CSI    00000089 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:19:57, Info                  CSI    0000008a [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:00, Info                  CSI    0000008c [SR] Verify complete
2013-10-23 21:20:01, Info                  CSI    0000008d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:01, Info                  CSI    0000008e [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:06, Info                  CSI    00000090 [SR] Verify complete
2013-10-23 21:20:06, Info                  CSI    00000091 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:06, Info                  CSI    00000092 [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:09, Info                  CSI    00000094 [SR] Verify complete
2013-10-23 21:20:10, Info                  CSI    00000095 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:10, Info                  CSI    00000096 [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:16, Info                  CSI    00000098 [SR] Verify complete
2013-10-23 21:20:16, Info                  CSI    00000099 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:16, Info                  CSI    0000009a [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:26, Info                  CSI    000000bd [SR] Verify complete
2013-10-23 21:20:26, Info                  CSI    000000be [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:26, Info                  CSI    000000bf [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:32, Info                  CSI    000000c1 [SR] Verify complete
2013-10-23 21:20:33, Info                  CSI    000000c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:33, Info                  CSI    000000c3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:45, Info                  CSI    000000c5 [SR] Verify complete
2013-10-23 21:20:45, Info                  CSI    000000c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:45, Info                  CSI    000000c7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:52, Info                  CSI    000000cb [SR] Verify complete
2013-10-23 21:20:53, Info                  CSI    000000cc [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:53, Info                  CSI    000000cd [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:56, Info                  CSI    000000cf [SR] Verify complete
2013-10-23 21:20:56, Info                  CSI    000000d0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:56, Info                  CSI    000000d1 [SR] Beginning Verify and Repair transaction
2013-10-23 21:20:57, Info                  CSI    000000d3 [SR] Verify complete
2013-10-23 21:20:58, Info                  CSI    000000d4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:20:58, Info                  CSI    000000d5 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:00, Info                  CSI    000000d7 [SR] Verify complete
2013-10-23 21:21:01, Info                  CSI    000000d8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:01, Info                  CSI    000000d9 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:10, Info                  CSI    000000ec [SR] Verify complete
2013-10-23 21:21:10, Info                  CSI    000000ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:10, Info                  CSI    000000ee [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:12, Info                  CSI    000000f0 [SR] Verify complete
2013-10-23 21:21:13, Info                  CSI    000000f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:13, Info                  CSI    000000f2 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:15, Info                  CSI    000000f4 [SR] Verify complete
2013-10-23 21:21:16, Info                  CSI    000000f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:16, Info                  CSI    000000f6 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:18, Info                  CSI    000000f8 [SR] Verify complete
2013-10-23 21:21:18, Info                  CSI    000000f9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:18, Info                  CSI    000000fa [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:22, Info                  CSI    000000fc [SR] Verify complete
2013-10-23 21:21:23, Info                  CSI    000000fd [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:23, Info                  CSI    000000fe [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:32, Info                  CSI    00000102 [SR] Verify complete
2013-10-23 21:21:32, Info                  CSI    00000103 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:32, Info                  CSI    00000104 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:36, Info                  CSI    00000106 [SR] Verify complete
2013-10-23 21:21:37, Info                  CSI    00000107 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:37, Info                  CSI    00000108 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:39, Info                  CSI    0000010a [SR] Verify complete
2013-10-23 21:21:40, Info                  CSI    0000010b [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:40, Info                  CSI    0000010c [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:45, Info                  CSI    0000010e [SR] Verify complete
2013-10-23 21:21:45, Info                  CSI    0000010f [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:45, Info                  CSI    00000110 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:50, Info                  CSI    00000112 [SR] Verify complete
2013-10-23 21:21:50, Info                  CSI    00000113 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:50, Info                  CSI    00000114 [SR] Beginning Verify and Repair transaction
2013-10-23 21:21:54, Info                  CSI    00000116 [SR] Verify complete
2013-10-23 21:21:55, Info                  CSI    00000117 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:21:55, Info                  CSI    00000118 [SR] Beginning Verify and Repair transaction
2013-10-23 21:22:06, Info                  CSI    0000011a [SR] Verify complete
2013-10-23 21:22:07, Info                  CSI    0000011b [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:22:07, Info                  CSI    0000011c [SR] Beginning Verify and Repair transaction
2013-10-23 21:22:14, Info                  CSI    00000134 [SR] Verify complete
2013-10-23 21:22:14, Info                  CSI    00000135 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:22:14, Info                  CSI    00000136 [SR] Beginning Verify and Repair transaction
2013-10-23 21:22:26, Info                  CSI    00000138 [SR] Verify complete
2013-10-23 21:22:27, Info                  CSI    00000139 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:22:27, Info                  CSI    0000013a [SR] Beginning Verify and Repair transaction
2013-10-23 21:22:46, Info                  CSI    0000013c [SR] Verify complete
2013-10-23 21:22:47, Info                  CSI    0000013d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:22:47, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
2013-10-23 21:22:59, Info                  CSI    00000140 [SR] Verify complete
2013-10-23 21:22:59, Info                  CSI    00000141 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:22:59, Info                  CSI    00000142 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:07, Info                  CSI    00000144 [SR] Verify complete
2013-10-23 21:23:07, Info                  CSI    00000145 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:07, Info                  CSI    00000146 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:11, Info                  CSI    00000149 [SR] Verify complete
2013-10-23 21:23:12, Info                  CSI    0000014a [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:12, Info                  CSI    0000014b [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:16, Info                  CSI    0000014d [SR] Verify complete
2013-10-23 21:23:16, Info                  CSI    0000014e [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:16, Info                  CSI    0000014f [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:21, Info                  CSI    00000151 [SR] Verify complete
2013-10-23 21:23:21, Info                  CSI    00000152 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:21, Info                  CSI    00000153 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:26, Info                  CSI    00000157 [SR] Verify complete
2013-10-23 21:23:26, Info                  CSI    00000158 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:26, Info                  CSI    00000159 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:32, Info                  CSI    0000015b [SR] Verify complete
2013-10-23 21:23:32, Info                  CSI    0000015c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:32, Info                  CSI    0000015d [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:37, Info                  CSI    00000160 [SR] Verify complete
2013-10-23 21:23:37, Info                  CSI    00000161 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:37, Info                  CSI    00000162 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:43, Info                  CSI    00000164 [SR] Verify complete
2013-10-23 21:23:43, Info                  CSI    00000165 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:43, Info                  CSI    00000166 [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:48, Info                  CSI    00000169 [SR] Verify complete
2013-10-23 21:23:48, Info                  CSI    0000016a [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:48, Info                  CSI    0000016b [SR] Beginning Verify and Repair transaction
2013-10-23 21:23:56, Info                  CSI    0000016e [SR] Verify complete
2013-10-23 21:23:56, Info                  CSI    0000016f [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:23:56, Info                  CSI    00000170 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:04, Info                  CSI    00000172 [SR] Verify complete
2013-10-23 21:24:04, Info                  CSI    00000173 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:04, Info                  CSI    00000174 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:09, Info                  CSI    00000176 [SR] Verify complete
2013-10-23 21:24:10, Info                  CSI    00000177 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:10, Info                  CSI    00000178 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:15, Info                  CSI    0000017a [SR] Verify complete
2013-10-23 21:24:16, Info                  CSI    0000017b [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:16, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:21, Info                  CSI    0000017f [SR] Verify complete
2013-10-23 21:24:21, Info                  CSI    00000180 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:21, Info                  CSI    00000181 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:28, Info                  CSI    00000183 [SR] Verify complete
2013-10-23 21:24:29, Info                  CSI    00000184 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:29, Info                  CSI    00000185 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:31, Info                  CSI    00000187 [SR] Verify complete
2013-10-23 21:24:32, Info                  CSI    00000188 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:32, Info                  CSI    00000189 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:36, Info                  CSI    0000018c [SR] Verify complete
2013-10-23 21:24:37, Info                  CSI    0000018d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:37, Info                  CSI    0000018e [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:42, Info                  CSI    00000190 [SR] Verify complete
2013-10-23 21:24:42, Info                  CSI    00000191 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:42, Info                  CSI    00000192 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:45, Info                  CSI    00000194 [SR] Verify complete
2013-10-23 21:24:46, Info                  CSI    00000195 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:46, Info                  CSI    00000196 [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:51, Info                  CSI    00000199 [SR] Verify complete
2013-10-23 21:24:51, Info                  CSI    0000019a [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:51, Info                  CSI    0000019b [SR] Beginning Verify and Repair transaction
2013-10-23 21:24:57, Info                  CSI    0000019d [SR] Verify complete
2013-10-23 21:24:58, Info                  CSI    0000019e [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:24:58, Info                  CSI    0000019f [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:04, Info                  CSI    000001a4 [SR] Verify complete
2013-10-23 21:25:04, Info                  CSI    000001a5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:04, Info                  CSI    000001a6 [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:10, Info                  CSI    000001a8 [SR] Verify complete
2013-10-23 21:25:10, Info                  CSI    000001a9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:10, Info                  CSI    000001aa [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:17, Info                  CSI    000001ad [SR] Verify complete
2013-10-23 21:25:17, Info                  CSI    000001ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:17, Info                  CSI    000001af [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:24, Info                  CSI    000001b1 [SR] Verify complete
2013-10-23 21:25:24, Info                  CSI    000001b2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:24, Info                  CSI    000001b3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:27, Info                  CSI    000001b5 [SR] Verify complete
2013-10-23 21:25:28, Info                  CSI    000001b6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:28, Info                  CSI    000001b7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:33, Info                  CSI    000001b9 [SR] Verify complete
2013-10-23 21:25:33, Info                  CSI    000001ba [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:33, Info                  CSI    000001bb [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:36, Info                  CSI    000001bd [SR] Verify complete
2013-10-23 21:25:37, Info                  CSI    000001be [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:37, Info                  CSI    000001bf [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:40, Info                  CSI    000001c1 [SR] Verify complete
2013-10-23 21:25:41, Info                  CSI    000001c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:41, Info                  CSI    000001c3 [SR] Beginnin
Avatar billede mathilda Nybegynder
24. oktober 2013 - 18:59 #83
del 2
2013-10-23 21:25:41, Info                  CSI    000001c3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:46, Info                  CSI    000001c5 [SR] Verify complete
2013-10-23 21:25:46, Info                  CSI    000001c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:46, Info                  CSI    000001c7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:49, Info                  CSI    000001c9 [SR] Verify complete
2013-10-23 21:25:49, Info                  CSI    000001ca [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:49, Info                  CSI    000001cb [SR] Beginning Verify and Repair transaction
2013-10-23 21:25:55, Info                  CSI    000001cd [SR] Verify complete
2013-10-23 21:25:56, Info                  CSI    000001ce [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:25:56, Info                  CSI    000001cf [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:12, Info                  CSI    000001d1 [SR] Verify complete
2013-10-23 21:26:13, Info                  CSI    000001d2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:13, Info                  CSI    000001d3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:27, Info                  CSI    000001d5 [SR] Verify complete
2013-10-23 21:26:27, Info                  CSI    000001d6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:27, Info                  CSI    000001d7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:32, Info                  CSI    000001d9 [SR] Verify complete
2013-10-23 21:26:33, Info                  CSI    000001da [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:33, Info                  CSI    000001db [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:35, Info                  CSI    000001dd [SR] Verify complete
2013-10-23 21:26:36, Info                  CSI    000001de [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:36, Info                  CSI    000001df [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:39, Info                  CSI    000001e1 [SR] Verify complete
2013-10-23 21:26:39, Info                  CSI    000001e2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:39, Info                  CSI    000001e3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:42, Info                  CSI    000001e5 [SR] Verify complete
2013-10-23 21:26:43, Info                  CSI    000001e6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:43, Info                  CSI    000001e7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:46, Info                  CSI    000001e9 [SR] Verify complete
2013-10-23 21:26:47, Info                  CSI    000001ea [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:47, Info                  CSI    000001eb [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:51, Info                  CSI    000001ed [SR] Verify complete
2013-10-23 21:26:51, Info                  CSI    000001ee [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:51, Info                  CSI    000001ef [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:55, Info                  CSI    000001f1 [SR] Verify complete
2013-10-23 21:26:56, Info                  CSI    000001f2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:26:56, Info                  CSI    000001f3 [SR] Beginning Verify and Repair transaction
2013-10-23 21:26:59, Info                  CSI    000001f5 [SR] Verify complete
2013-10-23 21:27:00, Info                  CSI    000001f6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:27:00, Info                  CSI    000001f7 [SR] Beginning Verify and Repair transaction
2013-10-23 21:27:09, Info                  CSI    000001ff [SR] Verify complete
2013-10-23 21:27:09, Info                  CSI    00000200 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:27:09, Info                  CSI    00000201 [SR] Beginning Verify and Repair transaction
2013-10-23 21:27:52, Info                  CSI    00000203 [SR] Verify complete
2013-10-23 21:27:52, Info                  CSI    00000204 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:27:52, Info                  CSI    00000205 [SR] Beginning Verify and Repair transaction
2013-10-23 21:28:38, Info                  CSI    00000207 [SR] Verify complete
2013-10-23 21:28:39, Info                  CSI    00000208 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:28:39, Info                  CSI    00000209 [SR] Beginning Verify and Repair transaction
2013-10-23 21:29:01, Info                  CSI    0000020b [SR] Verify complete
2013-10-23 21:29:01, Info                  CSI    0000020c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:29:01, Info                  CSI    0000020d [SR] Beginning Verify and Repair transaction
2013-10-23 21:29:43, Info                  CSI    0000020f [SR] Verify complete
2013-10-23 21:29:43, Info                  CSI    00000210 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:29:43, Info                  CSI    00000211 [SR] Beginning Verify and Repair transaction
2013-10-23 21:30:16, Info                  CSI    00000213 [SR] Verify complete
2013-10-23 21:30:16, Info                  CSI    00000214 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:30:16, Info                  CSI    00000215 [SR] Beginning Verify and Repair transaction
2013-10-23 21:30:49, Info                  CSI    00000218 [SR] Verify complete
2013-10-23 21:30:50, Info                  CSI    00000219 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:30:50, Info                  CSI    0000021a [SR] Beginning Verify and Repair transaction
2013-10-23 21:31:03, Info                  CSI    0000021c [SR] Verify complete
2013-10-23 21:31:04, Info                  CSI    0000021d [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:31:04, Info                  CSI    0000021e [SR] Beginning Verify and Repair transaction
2013-10-23 21:31:17, Info                  CSI    00000220 [SR] Verify complete
2013-10-23 21:31:18, Info                  CSI    00000221 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:31:18, Info                  CSI    00000222 [SR] Beginning Verify and Repair transaction
2013-10-23 21:31:33, Info                  CSI    00000225 [SR] Verify complete
2013-10-23 21:31:34, Info                  CSI    00000226 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:31:34, Info                  CSI    00000227 [SR] Beginning Verify and Repair transaction
2013-10-23 21:32:09, Info                  CSI    0000022b [SR] Verify complete
2013-10-23 21:32:10, Info                  CSI    0000022c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:32:10, Info                  CSI    0000022d [SR] Beginning Verify and Repair transaction
2013-10-23 21:32:19, Info                  CSI    00000231 [SR] Verify complete
2013-10-23 21:32:19, Info                  CSI    00000232 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:32:19, Info                  CSI    00000233 [SR] Beginning Verify and Repair transaction
2013-10-23 21:32:36, Info                  CSI    00000237 [SR] Verify complete
2013-10-23 21:32:37, Info                  CSI    00000238 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:32:37, Info                  CSI    00000239 [SR] Beginning Verify and Repair transaction
2013-10-23 21:32:48, Info                  CSI    00000242 [SR] Verify complete
2013-10-23 21:32:49, Info                  CSI    00000243 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:32:49, Info                  CSI    00000244 [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:04, Info                  CSI    0000024a [SR] Verify complete
2013-10-23 21:33:05, Info                  CSI    0000024b [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:05, Info                  CSI    0000024c [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:14, Info                  CSI    0000024e [SR] Verify complete
2013-10-23 21:33:15, Info                  CSI    0000024f [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:15, Info                  CSI    00000250 [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:24, Info                  CSI    00000254 [SR] Verify complete
2013-10-23 21:33:25, Info                  CSI    00000255 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:25, Info                  CSI    00000256 [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:33, Info                  CSI    00000258 [SR] Verify complete
2013-10-23 21:33:33, Info                  CSI    00000259 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:33, Info                  CSI    0000025a [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:42, Info                  CSI    0000027f [SR] Verify complete
2013-10-23 21:33:42, Info                  CSI    00000280 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:42, Info                  CSI    00000281 [SR] Beginning Verify and Repair transaction
2013-10-23 21:33:52, Info                  CSI    00000283 [SR] Verify complete
2013-10-23 21:33:53, Info                  CSI    00000284 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:33:53, Info                  CSI    00000285 [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:01, Info                  CSI    00000287 [SR] Verify complete
2013-10-23 21:34:01, Info                  CSI    00000288 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:01, Info                  CSI    00000289 [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:13, Info                  CSI    0000028b [SR] Verify complete
2013-10-23 21:34:14, Info                  CSI    0000028c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:14, Info                  CSI    0000028d [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:21, Info                  CSI    0000029b [SR] Verify complete
2013-10-23 21:34:21, Info                  CSI    0000029c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:21, Info                  CSI    0000029d [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:36, Info                  CSI    0000029f [SR] Verify complete
2013-10-23 21:34:37, Info                  CSI    000002a0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:37, Info                  CSI    000002a1 [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:44, Info                  CSI    000002ad [SR] Verify complete
2013-10-23 21:34:45, Info                  CSI    000002ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:45, Info                  CSI    000002af [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:51, Info                  CSI    000002b3 [SR] Verify complete
2013-10-23 21:34:51, Info                  CSI    000002b4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:51, Info                  CSI    000002b5 [SR] Beginning Verify and Repair transaction
2013-10-23 21:34:56, Info                  CSI    000002b7 [SR] Verify complete
2013-10-23 21:34:57, Info                  CSI    000002b8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:34:57, Info                  CSI    000002b9 [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:09, Info                  CSI    000002bc [SR] Verify complete
2013-10-23 21:35:09, Info                  CSI    000002bd [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:09, Info                  CSI    000002be [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:14, Info                  CSI    000002c0 [SR] Verify complete
2013-10-23 21:35:15, Info                  CSI    000002c1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:15, Info                  CSI    000002c2 [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:24, Info                  CSI    000002c4 [SR] Verify complete
2013-10-23 21:35:24, Info                  CSI    000002c5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:24, Info                  CSI    000002c6 [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:33, Info                  CSI    000002c8 [SR] Verify complete
2013-10-23 21:35:33, Info                  CSI    000002c9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:33, Info                  CSI    000002ca [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:42, Info                  CSI    000002cc [SR] Verify complete
2013-10-23 21:35:43, Info                  CSI    000002cd [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:43, Info                  CSI    000002ce [SR] Beginning Verify and Repair transaction
2013-10-23 21:35:56, Info                  CSI    000002e8 [SR] Verify complete
2013-10-23 21:35:56, Info                  CSI    000002e9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:35:56, Info                  CSI    000002ea [SR] Beginning Verify and Repair transaction
2013-10-23 21:36:06, Info                  CSI    000002ec [SR] Verify complete
2013-10-23 21:36:06, Info                  CSI    000002ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:36:06, Info                  CSI    000002ee [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:07, Info                  CSI    000002f0 [SR] Verify complete
2013-10-23 21:37:07, Info                  CSI    000002f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:37:07, Info                  CSI    000002f2 [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:15, Info                  CSI    000002f4 [SR] Verify complete
2013-10-23 21:37:15, Info                  CSI    000002f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:37:15, Info                  CSI    000002f6 [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:23, Info                  CSI    000002fa [SR] Verify complete
2013-10-23 21:37:23, Info                  CSI    000002fb [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:37:23, Info                  CSI    000002fc [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:32, Info                  CSI    000002fe [SR] Verify complete
2013-10-23 21:37:32, Info                  CSI    000002ff [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:37:32, Info                  CSI    00000300 [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:49, Info                  CSI    00000302 [SR] Verify complete
2013-10-23 21:37:50, Info                  CSI    00000303 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:37:50, Info                  CSI    00000304 [SR] Beginning Verify and Repair transaction
2013-10-23 21:37:59, Info                  CSI    00000306 [SR] Verify complete
2013-10-23 21:38:00, Info                  CSI    00000307 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:38:00, Info                  CSI    00000308 [SR] Beginning Verify and Repair transaction
2013-10-23 21:38:16, Info                  CSI    0000030b [SR] Verify complete
2013-10-23 21:38:16, Info                  CSI    0000030c [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:38:16, Info                  CSI    0000030d [SR] Beginning Verify and Repair transaction
2013-10-23 21:38:29, Info                  CSI    0000030f [SR] Verify complete
2013-10-23 21:38:29, Info                  CSI    00000310 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:38:29, Info                  CSI    00000311 [SR] Beginning Verify and Repair transaction
2013-10-23 21:38:43, Info                  CSI    00000314 [SR] Verify complete
2013-10-23 21:38:44, Info                  CSI    00000315 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:38:44, Info                  CSI    00000316 [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:08, Info                  CSI    00000318 [SR] Verify complete
2013-10-23 21:39:08, Info                  CSI    00000319 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:39:08, Info                  CSI    0000031a [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:35, Info                  CSI    0000031d [SR] Verify complete
2013-10-23 21:39:35, Info                  CSI    0000031e [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:39:35, Info                  CSI    0000031f [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:38, Info                  CSI    00000321 [SR] Verify complete
2013-10-23 21:39:39, Info                  CSI    00000322 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:39:39, Info                  CSI    00000323 [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:43, Info                  CSI    00000325 [SR] Verify complete
2013-10-23 21:39:43, Info                  CSI    00000326 [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:39:43, Info                  CSI    00000327 [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:46, Info                  CSI    00000329 [SR] Verify complete
2013-10-23 21:39:47, Info                  CSI    0000032a [SR] Verifying 100 (0x0000000000000064) components
2013-10-23 21:39:47, Info                  CSI    0000032b [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:51, Info                  CSI    0000032d [SR] Verify complete
2013-10-23 21:39:51, Info                  CSI    0000032e [SR] Verifying 46 (0x000000000000002e) components
2013-10-23 21:39:51, Info                  CSI    0000032f [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:53, Info                  CSI    00000331 [SR] Verify complete
2013-10-23 21:39:53, Info                  CSI    00000332 [SR] Repairing 0 components
2013-10-23 21:39:53, Info                  CSI    00000333 [SR] Beginning Verify and Repair transaction
2013-10-23 21:39:53, Info                  CSI    00000335 [SR] Repair complete
2013-10-24 18:28:16, Info                  CSI    00000009 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:16, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:19, Info                  CSI    0000000c [SR] Verify complete
2013-10-24 18:28:19, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:19, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:22, Info                  CSI    00000010 [SR] Verify complete
2013-10-24 18:28:22, Info                  CSI    00000011 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:22, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:25, Info                  CSI    00000014 [SR] Verify complete
2013-10-24 18:28:25, Info                  CSI    00000015 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:25, Info                  CSI    00000016 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:27, Info                  CSI    00000018 [SR] Verify complete
2013-10-24 18:28:28, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:28, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:30, Info                  CSI    0000001c [SR] Verify complete
2013-10-24 18:28:31, Info                  CSI    0000001d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:31, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:33, Info                  CSI    00000020 [SR] Verify complete
2013-10-24 18:28:33, Info                  CSI    00000021 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:33, Info                  CSI    00000022 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:36, Info                  CSI    00000024 [SR] Verify complete
2013-10-24 18:28:37, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:37, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:40, Info                  CSI    00000028 [SR] Verify complete
2013-10-24 18:28:40, Info                  CSI    00000029 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:40, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:43, Info                  CSI    0000002c [SR] Verify complete
2013-10-24 18:28:43, Info                  CSI    0000002d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:43, Info                  CSI    0000002e [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:45, Info                  CSI    00000030 [SR] Verify complete
2013-10-24 18:28:46, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:46, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:49, Info                  CSI    00000034 [SR] Verify complete
2013-10-24 18:28:49, Info                  CSI    00000035 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:49, Info                  CSI    00000036 [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:51, Info                  CSI    00000038 [SR] Verify complete
2013-10-24 18:28:52, Info                  CSI    00000039 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:52, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:53, Info                  CSI    0000003c [SR] Verify complete
2013-10-24 18:28:53, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:53, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
2013-10-24 18:28:56, Info                  CSI    00000040 [SR] Verify complete
2013-10-24 18:28:56, Info                  CSI    00000041 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:28:56, Info                  CSI    00000042 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:02, Info                  CSI    00000045 [SR] Verify complete
2013-10-24 18:29:02, Info                  CSI    00000046 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:02, Info                  CSI    00000047 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:07, Info                  CSI    0000004b [SR] Verify complete
2013-10-24 18:29:08, Info                  CSI    0000004c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:08, Info                  CSI    0000004d [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:12, Info                  CSI    00000050 [SR] Verify complete
2013-10-24 18:29:12, Info                  CSI    00000051 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:12, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:16, Info                  CSI    00000055 [SR] Verify complete
2013-10-24 18:29:16, Info                  CSI    00000056 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:16, Info                  CSI    00000057 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:21, Info                  CSI    0000005f [SR] Verify complete
2013-10-24 18:29:21, Info                  CSI    00000060 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:21, Info                  CSI    00000061 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:28, Info                  CSI    00000080 [SR] Verify complete
2013-10-24 18:29:29, Info                  CSI    00000081 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:29, Info                  CSI    00000082 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:34, Info                  CSI    00000084 [SR] Verify complete
2013-10-24 18:29:34, Info                  CSI    00000085 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:34, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:39, Info                  CSI    00000088 [SR] Verify complete
2013-10-24 18:29:40, Info                  CSI    00000089 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:40, Info                  CSI    0000008a [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:43, Info                  CSI    0000008c [SR] Verify complete
2013-10-24 18:29:44, Info                  CSI    0000008d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:44, Info                  CSI    0000008e [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:49, Info                  CSI    00000090 [SR] Verify complete
2013-10-24 18:29:50, Info                  CSI    00000091 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:50, Info                  CSI    00000092 [SR] Beginning Verify and Repair transaction
2013-10-24 18:29:54, Info                  CSI    00000094 [SR] Verify complete
2013-10-24 18:29:54, Info                  CSI    00000095 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:29:54, Info                  CSI    00000096 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:01, Info                  CSI    00000098 [SR] Verify complete
2013-10-24 18:30:02, Info                  CSI    00000099 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:02, Info                  CSI    0000009a [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:13, Info                  CSI    000000bd [SR] Verify complete
2013-10-24 18:30:13, Info                  CSI    000000be [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:13, Info                  CSI    000000bf [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:19, Info                  CSI    000000c1 [SR] Verify complete
2013-10-24 18:30:20, Info                  CSI    000000c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:20, Info                  CSI    000000c3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:33, Info                  CSI    000000c5 [SR] Verify complete
2013-10-24 18:30:33, Info                  CSI    000000c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:33, Info                  CSI    000000c7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:41, Info                  CSI    000000cb [SR] Verify complete
2013-10-24 18:30:41, Info                  CSI    000000cc [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:41, Info                  CSI    000000cd [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:44, Info                  CSI    000000cf [SR] Verify complete
2013-10-24 18:30:45, Info                  CSI    000000d0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:45, Info                  CSI    000000d1 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:46, Info                  CSI    000000d3 [SR] Verify complete
2013-10-24 18:30:46, Info                  CSI    000000d4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:46, Info                  CSI    000000d5 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:49, Info                  CSI    000000d7 [SR] Verify complete
2013-10-24 18:30:49, Info                  CSI    000000d8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:30:49, Info                  CSI    000000d9 [SR] Beginning Verify and Repair transaction
2013-10-24 18:30:59, Info                  CSI    000000ec [SR] Verify complete
2013-10-24 18:31:00, Info                  CSI    000000ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:00, Info                  CSI    000000ee [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:02, Info                  CSI    000000f0 [SR] Verify complete
2013-10-24 18:31:02, Info                  CSI    000000f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:02, Info                  CSI    000000f2 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:05, Info                  CSI    000000f4 [SR] Verify complete
2013-10-24 18:31:05, Info                  CSI    000000f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:05, Info                  CSI    000000f6 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:08, Info                  CSI    000000f8 [SR] Verify complete
2013-10-24 18:31:08, Info                  CSI    000000f9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:08, Info                  CSI    000000fa [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:14, Info                  CSI    000000fc [SR] Verify complete
2013-10-24 18:31:14, Info                  CSI    000000fd [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:14, Info                  CSI    000000fe [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:24, Info                  CSI    00000102 [SR] Verify complete
2013-10-24 18:31:25, Info                  CSI    00000103 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:25, Info                  CSI    00000104 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:29, Info                  CSI    00000106 [SR] Verify complete
2013-10-24 18:31:30, Info                  CSI    00000107 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:30, Info                  CSI    00000108 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:32, Info                  CSI    0000010a [SR] Verify complete
2013-10-24 18:31:33, Info                  CSI    0000010b [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:33, Info                  CSI    0000010c [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:38, Info                  CSI    0000010e [SR] Verify complete
2013-10-24 18:31:38, Info                  CSI    0000010f [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:38, Info                  CSI    00000110 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:43, Info                  CSI    00000112 [SR] Verify complete
2013-10-24 18:31:44, Info                  CSI    00000113 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:44, Info                  CSI    00000114 [SR] Beginning Verify and Repair transaction
2013-10-24 18:31:48, Info                  CSI    00000116 [SR] Verify complete
2013-10-24 18:31:49, Info                  CSI    00000117 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:31:49, Info                  CSI    00000118 [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:00, Info                  CSI    0000011a [SR] Verify complete
2013-10-24 18:32:00, Info                  CSI    0000011b [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:00, Info                  CSI    0000011c [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:08, Info                  CSI    00000134 [SR] Verify complete
2013-10-24 18:32:08, Info                  CSI    00000135 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:08, Info                  CSI    00000136 [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:16, Info                  CSI    00000138 [SR] Verify complete
2013-10-24 18:32:16, Info                  CSI    00000139 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:16, Info                  CSI    0000013a [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:37, Info                  CSI    0000013c [SR] Verify complete
2013-10-24 18:32:37, Info                  CSI    0000013d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:37, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:49, Info                  CSI    00000140 [SR] Verify complete
2013-10-24 18:32:50, Info                  CSI    00000141 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:50, Info                  CSI    00000142 [SR] Beginning Verify and Repair transaction
2013-10-24 18:32:58, Info                  CSI    00000144 [SR] Verify complete
2013-10-24 18:32:58, Info                  CSI    00000145 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:32:58, Info                  CSI    00000146 [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:03, Info                  CSI    00000149 [SR] Verify complete
2013-10-24 18:33:04, Info                  CSI    0000014a [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:04, Info                  CSI    0000014b [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:09, Info                  CSI    0000014d [SR] Verify complete
2013-10-24 18:33:09, Info                  CSI    0000014e [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:09, Info                  CSI    0000014f [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:15, Info                  CSI    00000151 [SR] Verify complete
2013-10-24 18:33:16, Info                  CSI    00000152 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:16, Info                  CSI    00000153 [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:23, Info                  CSI    00000157 [SR] Verify complete
2013-10-24 18:33:23, Info                  CSI    00000158 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:23, Info                  CSI    00000159 [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:30, Info                  CSI    0000015b [SR] Verify complete
2013-10-24 18:33:31, Info                  CSI    0000015c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:31, Info                  CSI    0000015d [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:36, Info                  CSI    00000160 [SR] Verify complete
2013-10-24 18:33:37, Info                  CSI    00000161 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:37, Info                  CSI    00000162 [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:42, Info                  CSI    00000164 [SR] Verify complete
2013-10-24 18:33:43, Info                  CSI    00000165 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:43, Info                  CSI    00000166 [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:50, Info                  CSI    00000169 [SR] Verify complete
2013-10-24 18:33:50, Info                  CSI    0000016a [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:50, Info                  CSI    0000016b [SR] Beginning Verify and Repair transaction
2013-10-24 18:33:58, Info                  CSI    0000016e [SR] Verify complete
2013-10-24 18:33:59, Info                  CSI    0000016f [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:33:59, Info                  CSI    00000170 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:07, Info                  CSI    00000172 [SR] Verify complete
2013-10-24 18:34:07, Info                  CSI    00000173 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:07, Info                  CSI    00000174 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:12, Info                  CSI    00000176 [SR] Verify complete
2013-10-24 18:34:13, Info                  CSI    00000177 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:13, Info                  CSI    00000178 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:19, Info                  CSI    0000017a [SR] Verify complete
2013-10-24 18:34:20, Info                  CSI    0000017b [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:20, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:25, Info                  CSI    0000017f [SR] Verify complete
2013-10-24 18:34:26, Info                  CSI    00000180 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:26, Info                  CSI    00000181 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:33, Info                  CSI    00000183 [SR] Verify complete
2013-10-24 18:34:34, Info                  CSI    00000184 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:34, Info                  CSI    00000185 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:37, Info                  CSI    00000187 [SR] Verify complete
2013-10-24 18:34:38, Info                  CSI    00000188 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:38, Info                  CSI    00000189 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:43, Info                  CSI    0000018c [SR] Verify complete
2013-10-24 18:34:43, Info                  CSI    0000018d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:43, Info                  CSI    0000018e [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:47, Info                  CSI    00000190 [SR] Verify complete
2013-10-24 18:34:47, Info                  CSI    00000191 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:47, Info                  CSI    00000192 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:50, Info                  CSI    00000194 [SR] Verify complete
2013-10-24 18:34:51, Info                  CSI    00000195 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:51, Info                  CSI    00000196 [SR] Beginning Verify and Repair transaction
2013-10-24 18:34:56, Info                  CSI    00000199 [SR] Verify complete
2013-10-24 18:34:56, Info                  CSI    0000019a [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:34:56, Info                  CSI    0000019b [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:04, Info                  CSI    0000019d [SR] Verify complete
2013-10-24 18:35:04, Info                  CSI    0000019e [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:04, Info                  CSI    0000019f [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:11, Info                  CSI    000001a4 [SR] Verify complete
2013-10-24 18:35:12, Info                  CSI    000001a5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:12, Info                  CSI    000001a6 [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:19, Info                  CSI    000001a8 [SR] Verify complete
2013-10-24 18:35:19, Info                  CSI    000001a9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:19, Info                  CSI    000001aa [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:27, Info                  CSI    000001ad [SR] Verify complete
2013-10-24 18:35:28, Info                  CSI    000001ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:28, Info                  CSI    000001af [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:35, Info                  CSI    000001b1 [SR] Verify complete
2013-10-24 18:35:35, Info                  CSI    000001b2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:35, Info                  CSI    000001b3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:39, Info                  CSI    000001b5 [SR] Verify complete
2013-10-24 18:35:39, Info                  CSI    000001b6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:39, Info                  CSI    000001b7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:44, Info                  CSI    000001b9 [SR] Verify complete
2013-10-24 18:35:45, Info                  CSI    000001ba [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:45, Info                  CSI    000001bb [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:48, Info                  CSI    000001bd [SR] Verify complete
2013-10-24 18:35:49, Info                  CSI    000001be [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:49, Info                  CSI    000001bf [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:53, Info                  CSI    000001c1 [SR] Verify complete
2013-10-24 18:35:53, Info                  CSI    000001c2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:53, Info                  CSI    000001c3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:35:59, Info                  CSI    000001c5 [SR] Verify complete
2013-10-24 18:35:59, Info                  CSI    000001c6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:35:59, Info                  CSI    000001c7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:02, Info                  CSI    000001c9 [SR] Verify complete
2013-10-24 18:36:03, Info                  CSI    000001ca [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:03, Info                  CSI    000001cb [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:10, Info                  CSI    000001cd [SR] Verify complete
2013-10-24 18:36:10, Info                  CSI    000001ce [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:10, Info                  CSI    000001cf [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:29, Info                  CSI    000001d1 [SR] Verify complete
2013-10-24 18:36:30, Info                  CSI    000001d2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:30, Info                  CSI    000001d3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:45, Info                  CSI    000001d5 [SR] Verify complete
2013-10-24 18:36:46, Info                  CSI    000001d6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:46, Info                  CSI    000001d7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:51, Info                  CSI    000001d9 [SR] Verify complete
2013-10-24 18:36:52, Info                  CSI    000001da [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:52, Info                  CSI    000001db [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:54, Info                  CSI    000001dd [SR] Verify complete
2013-10-24 18:36:55, Info                  CSI    000001de [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:55, Info                  CSI    000001df [SR] Beginning Verify and Repair transaction
2013-10-24 18:36:58, Info                  CSI    000001e1 [SR] Verify complete
2013-10-24 18:36:59, Info                  CSI    000001e2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:36:59, Info                  CSI    000001e3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:02, Info                  CSI    000001e5 [SR] Verify complete
2013-10-24 18:37:03, Info                  CSI    000001e6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:03, Info                  CSI    000001e7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:06, Info                  CSI    000001e9 [SR] Verify complete
2013-10-24 18:37:06, Info                  CSI    000001ea [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:06, Info                  CSI    000001eb [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:11, Info                  CSI    000001ed [SR] Verify complete
2013-10-24 18:37:12, Info                  CSI    000001ee [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:12, Info                  CSI    000001ef [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:14, Info                  CSI    000001f1 [SR] Verify complete
2013-10-24 18:37:14, Info                  CSI    000001f2 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:14, Info                  CSI    000001f3 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:16, Info                  CSI    000001f5 [SR] Verify complete
2013-10-24 18:37:16, Info                  CSI    000001f6 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:16, Info                  CSI    000001f7 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:23, Info                  CSI    000001ff [SR] Verify complete
2013-10-24 18:37:23, Info                  CSI    00000200 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:23, Info                  CSI    00000201 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:27, Info                  CSI    00000203 [SR] Verify complete
2013-10-24 18:37:28, Info                  CSI    00000204 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:28, Info                  CSI    00000205 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:32, Info                  CSI    00000207 [SR] Verify complete
2013-10-24 18:37:33, Info                  CSI    00000208 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:33, Info                  CSI    00000209 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:37, Info                  CSI    0000020b [SR] Verify complete
2013-10-24 18:37:37, Info                  CSI    0000020c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:37, Info                  CSI    0000020d [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:43, Info                  CSI    0000020f [SR] Verify complete
2013-10-24 18:37:44, Info                  CSI    00000210 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:44, Info                  CSI    00000211 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:50, Info                  CSI    00000213 [SR] Verify complete
2013-10-24 18:37:50, Info                  CSI    00000214 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:50, Info                  CSI    00000215 [SR] Beginning Verify and Repair transaction
2013-10-24 18:37:58, Info                  CSI    00000218 [SR] Verify complete
2013-10-24 18:37:58, Info                  CSI    00000219 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:37:58, Info                  CSI    0000021a [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:03, Info                  CSI    0000021c [SR] Verify complete
2013-10-24 18:38:03, Info                  CSI    0000021d [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:03, Info                  CSI    0000021e [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:05, Info                  CSI    00000220 [SR] Verify complete
2013-10-24 18:38:05, Info                  CSI    00000221 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:05, Info                  CSI    00000222 [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:13, Info                  CSI    00000225 [SR] Verify complete
2013-10-24 18:38:14, Info                  CSI    00000226 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:14, Info                  CSI    00000227 [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:29, Info                  CSI    0000022b [SR] Verify complete
2013-10-24 18:38:29, Info                  CSI    0000022c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:29, Info                  CSI    0000022d [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:37, Info                  CSI    00000231 [SR] Verify complete
2013-10-24 18:38:37, Info                  CSI    00000232 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:37, Info                  CSI    00000233 [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:45, Info                  CSI    00000237 [SR] Verify complete
2013-10-24 18:38:45, Info                  CSI    00000238 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:45, Info                  CSI    00000239 [SR] Beginning Verify and Repair transaction
2013-10-24 18:38:52, Info                  CSI    00000242 [SR] Verify complete
2013-10-24 18:38:52, Info                  CSI    00000243 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:38:52, Info                  CSI    00000244 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:13, Info                  CSI    0000024a [SR] Verify complete
2013-10-24 18:39:14, Info                  CSI    0000024b [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:14, Info                  CSI    0000024c [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:19, Info                  CSI    0000024e [SR] Verify complete
2013-10-24 18:39:20, Info                  CSI    0000024f [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:20, Info                  CSI    00000250 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:24, Info                  CSI    00000254 [SR] Verify complete
2013-10-24 18:39:25, Info                  CSI    00000255 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:25, Info                  CSI    00000256 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:29, Info                  CSI    00000258 [SR] Verify complete
2013-10-24 18:39:30, Info                  CSI    00000259 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:30, Info                  CSI    0000025a [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:36, Info                  CSI    0000027f [SR] Verify complete
2013-10-24 18:39:36, Info                  CSI    00000280 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:36, Info                  CSI    00000281 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:41, Info                  CSI    00000283 [SR] Verify complete
2013-10-24 18:39:42, Info                  CSI    00000284 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:42, Info                  CSI    00000285 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:46, Info                  CSI    00000287 [SR] Verify complete
2013-10-24 18:39:46, Info                  CSI    00000288 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:46, Info                  CSI    00000289 [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:51, Info                  CSI    0000028b [SR] Verify complete
2013-10-24 18:39:52, Info                  CSI    0000028c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:52, Info                  CSI    0000028d [SR] Beginning Verify and Repair transaction
2013-10-24 18:39:57, Info                  CSI    0000029b [SR] Verify complete
2013-10-24 18:39:57, Info                  CSI    0000029c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:39:57, Info                  CSI    0000029d [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:05, Info                  CSI    0000029f [SR] Verify complete
2013-10-24 18:40:06, Info                  CSI    000002a0 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:06, Info                  CSI    000002a1 [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:11, Info                  CSI    000002ad [SR] Verify complete
2013-10-24 18:40:12, Info                  CSI    000002ae [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:12, Info                  CSI    000002af [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:16, Info                  CSI    000002b3 [SR] Verify complete
2013-10-24 18:40:17, Info                  CSI    000002b4 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:17, Info                  CSI    000002b5 [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:19, Info                  CSI    000002b7 [SR] Verify complete
2013-10-24 18:40:20, Info                  CSI    000002b8 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:20, Info                  CSI    000002b9 [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:26, Info                  CSI    000002bc [SR] Verify complete
2013-10-24 18:40:27, Info                  CSI    000002bd [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:27, Info                  CSI    000002be [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:29, Info                  CSI    000002c0 [SR] Verify complete
2013-10-24 18:40:30, Info                  CSI    000002c1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:30, Info                  CSI    000002c2 [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:34, Info                  CSI    000002c4 [SR] Verify complete
2013-10-24 18:40:35, Info                  CSI    000002c5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:35, Info                  CSI    000002c6 [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:39, Info                  CSI    000002c8 [SR] Verify complete
2013-10-24 18:40:40, Info                  CSI    000002c9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:40, Info                  CSI    000002ca [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:44, Info                  CSI    000002cc [SR] Verify complete
2013-10-24 18:40:45, Info                  CSI    000002cd [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:45, Info                  CSI    000002ce [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:53, Info                  CSI    000002e8 [SR] Verify complete
2013-10-24 18:40:53, Info                  CSI    000002e9 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:40:53, Info                  CSI    000002ea [SR] Beginning Verify and Repair transaction
2013-10-24 18:40:59, Info                  CSI    000002ec [SR] Verify complete
2013-10-24 18:41:00, Info                  CSI    000002ed [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:00, Info                  CSI    000002ee [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:18, Info                  CSI    000002f0 [SR] Verify complete
2013-10-24 18:41:18, Info                  CSI    000002f1 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:18, Info                  CSI    000002f2 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:23, Info                  CSI    000002f4 [SR] Verify complete
2013-10-24 18:41:23, Info                  CSI    000002f5 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:23, Info                  CSI    000002f6 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:27, Info                  CSI    000002fa [SR] Verify complete
2013-10-24 18:41:28, Info                  CSI    000002fb [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:28, Info                  CSI    000002fc [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:31, Info                  CSI    000002fe [SR] Verify complete
2013-10-24 18:41:32, Info                  CSI    000002ff [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:32, Info                  CSI    00000300 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:38, Info                  CSI    00000302 [SR] Verify complete
2013-10-24 18:41:38, Info                  CSI    00000303 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:38, Info                  CSI    00000304 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:43, Info                  CSI    00000306 [SR] Verify complete
2013-10-24 18:41:43, Info                  CSI    00000307 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:43, Info                  CSI    00000308 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:48, Info                  CSI    0000030b [SR] Verify complete
2013-10-24 18:41:49, Info                  CSI    0000030c [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:49, Info                  CSI    0000030d [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:53, Info                  CSI    0000030f [SR] Verify complete
2013-10-24 18:41:53, Info                  CSI    00000310 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:53, Info                  CSI    00000311 [SR] Beginning Verify and Repair transaction
2013-10-24 18:41:58, Info                  CSI    00000314 [SR] Verify complete
2013-10-24 18:41:59, Info                  CSI    00000315 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:41:59, Info                  CSI    00000316 [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:04, Info                  CSI    00000318 [SR] Verify complete
2013-10-24 18:42:05, Info                  CSI    00000319 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:42:05, Info                  CSI    0000031a [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:11, Info                  CSI    0000031d [SR] Verify complete
2013-10-24 18:42:12, Info                  CSI    0000031e [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:42:12, Info                  CSI    0000031f [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:14, Info                  CSI    00000321 [SR] Verify complete
2013-10-24 18:42:15, Info                  CSI    00000322 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:42:15, Info                  CSI    00000323 [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:20, Info                  CSI    00000325 [SR] Verify complete
2013-10-24 18:42:20, Info                  CSI    00000326 [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:42:20, Info                  CSI    00000327 [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:24, Info                  CSI    00000329 [SR] Verify complete
2013-10-24 18:42:25, Info                  CSI    0000032a [SR] Verifying 100 (0x0000000000000064) components
2013-10-24 18:42:25, Info                  CSI    0000032b [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:31, Info                  CSI    0000032d [SR] Verify complete
2013-10-24 18:42:31, Info                  CSI    0000032e [SR] Verifying 46 (0x000000000000002e) components
2013-10-24 18:42:31, Info                  CSI    0000032f [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:33, Info                  CSI    00000331 [SR] Verify complete
2013-10-24 18:42:33, Info                  CSI    00000332 [SR] Repairing 0 components
2013-10-24 18:42:33, Info                  CSI    00000333 [SR] Beginning Verify and Repair transaction
2013-10-24 18:42:33, Info                  CSI    00000335 [SR] Repair complete
Avatar billede mathilda Nybegynder
24. oktober 2013 - 19:16 #84
Kan vi være sikre på, at dette er OK og fyldestgørende?
Artiklen er:
Artikel-id: 929833 - Seneste redigering: 1. oktober 2013 - Redigering: 4.0
Oplysningerne i den artikel vi bruger gælder:

    Windows Vista Enterprise 64-bit edition
    Windows Vista Ultimate 64-bit edition
    Windows Vista Business
    Windows Vista Business 64-bit edition
    Windows Vista Enterprise
    Windows Vista Ultimate
    Windows 7 Enterprise
    Windows 7 Home Basic
    Windows 7 Home Premium
    Windows 7 Professional    <<<<<<<  men hvad med 64-bit edition som denne ?
    Windows 7 Starter
    Windows 7 Ultimate
Avatar billede f-arn Guru
24. oktober 2013 - 20:57 #85
Ja - det er OK.

Kan du huske hvornår og hvad du gjorde da safe mode "gik i udu" ?

Har du i slutningeng af August installeret noget det hed CamStudio ?

Find og upload nedenstående hos Jotti eller Virustotal:

C:\windows\SysWow64\drivers\wdghgf.sys

Jotti - Virustotal

Hvis du får at vide de er blevet scannet før, skal du få dem scannet igen.

Kopier resultatet herind som link eller MD5 Checksum.
Avatar billede mathilda Nybegynder
24. oktober 2013 - 21:16 #86
Nej, jeg kan ikke huske hvad jeg gjorde, da safe mode "gik i udu" .
Jeg har haft CamStudio installeret, men jeg mener at det er mere end 1/2 år siden. Jeg husker det ikke.

Jeg går til Jotti eller Virustotal nu og vender tilbage
Avatar billede mathilda Nybegynder
24. oktober 2013 - 21:44 #87
Scannet hos Virustotal:

SHA256:     5f2f946e4a1c1491d30376bf6089103df6f4a21adaedef77fc9d7a85641298bf
Filnavn:     wdghgf.sys
Opdagelses forhold:     0 / 47
Undersøgelses dato:     2013-10-24 19:37:28 UTC ( 5 minutteriden )
Avatar billede mathilda Nybegynder
25. oktober 2013 - 18:24 #88
Nå ja, som skolelærer må jeg jo erkende, at det er klogt at gøre, som man selv kræver af ungerne: læs vejledningen ordentligt  ;-)

Her er linket

https://www.virustotal.com/da/file/5f2f946e4a1c1491d30376bf6089103df6f4a21adaedef77fc9d7a85641298bf/analysis/
Avatar billede mathilda Nybegynder
26. oktober 2013 - 12:40 #89
Kan vi regne med at  SFC /scannow  har ordnet  windows og windowseksplorer  mht til at SpyBot har sat filer derfra i karantæne (se #55), - og at jeg derfor kan afinstallere SpyBot med alt hvad dermed  fulgte (karaantæne m.m.)....?
Avatar billede mathilda Nybegynder
02. december 2013 - 01:03 #90
Kan vi afslutte denne tråd som et uløst problem?
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester