Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

virus apparso dopo il ripristino di windows vista Opzioni
kikkas93
Inviato: Friday, December 23, 2011 11:56:38 AM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
ho appena terminato di resettare il mio pc (HP dv-6000 so vista home premium 32bit) per errori di sistema,e tuttora è ancora in fase di aggiornamento (questo è il vecchio post)... pensavo che l incubo fosse finito,invece a quanto pare mi sbagliavo... casualmente ho scaricato Kaspersky TDSSkiller per dare un occhiata con "occhio nuovo" al mio pc con so ripristinato,e... accidenti a lui questo è stato il suo primo responso:

ho provato immediatamente a rimuverlo,e questo è stato il risultato immediatamente successivo

allora dopo aver riparato col ripristino di sistema,ho provato a fare una scansione con GMER e questa è stata la sua risposta

così ho provato a cercare manualmente questo animale nella cartella dove si nascondeva e ne ho trovato anche altri 7 della stessa famiglia (che poi fra l altro avevo aperto un post parlando proprio di questi file,che ricordandomi sono del programma PCTools Spyware Doctor,(un software da evitare a quanto pare) e che già avevo invano tentato di eliminare in passato in tutti i modi che conosco


ho provato allora a rimuoverli manualmente tutti e 8,niente da fare,crash di sistema di nuovo! allora sono andata a curiosare un po in giro sul web e ho trovato riferimenti vari di questi file N.B. quasi tutti in siti antivirus-rootkit,e ho trovato le loro chiavi di registro (che fra l'altro non me le fa eliminare neanche cambiando autorizzazioni o con le bombe a bano,sono blindate!)



così ho deciso di fare 2 scansioni complete con Mbam e con Avira,ma non hanno trovato nulla di nulla! mentre ri-scansionando con Kaspersky TDSSKiller e con GMER quell affare è sempre lì! ma perchè loro lo vedono e Mbam e Avira non li vedono? semplice,perchè TDSSKiller e GMER li ho scaricati DOPO aver ripristinato il sistema per il problema descritto nel vecchio post! quindi il motivo è che sto schifoso mi deve aver corrotto Mbam e Avira!,ecco perchè...comunque ho un programma che si chiama Unknown Device Identifier (un tool per eliminare i driver), ho provato a controllare i driver e ho scoperto che uno di questi animali è attivo alla grande,che poi è proprio quello che mi trovano TDSSKiller e GMER,guardate che roba...




voglio sbarazzarmi di sti affari prima dell anno nuovo,ma non voglio formattare una seconda volta che nemmeno ho finito l aggiornamento della prima. sono i benvenuti tutti coloro che desiderano aiutare. grazie
Sponsor
Inviato: Friday, December 23, 2011 11:56:38 AM

 
shapiro
Inviato: Friday, December 23, 2011 12:01:19 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164



ciao kikkas puoi postare il log per intero?
kikkas93
Inviato: Friday, December 23, 2011 12:20:38 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
shapiro ha scritto:



ciao kikkas puoi postare il log per intero?

aspetta,sto finendo di creare il post,comq non ho un log e forse nemmeno lo posso avere,poi leggendo capirai il perchè
inchiummation
Inviato: Friday, December 23, 2011 12:38:37 PM

Rank: AiutAmico

Iscritto dal : 10/26/2011
Posts: 87
@@pensavo che l incubo fosse finito

... si vede che non era tutt' oro quello che luceva.
Adesso si che sei in buone mani. (sperem)
kikkas93
Inviato: Friday, December 23, 2011 12:50:27 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
inchiummation ha scritto:
@@pensavo che l incubo fosse finito

... si vede che non era tutt' oro quello che luceva.
Adesso si che sei in buone mani. (sperem)

parla chiaro, a cosa ti riferisci? ma sta volta hai intenzione di contribuire o no????????????????????
e comunque in italiano si dice luccicava e non luceva.
miticoalex
Inviato: Friday, December 23, 2011 12:59:18 PM

Rank: AiutAmico

Iscritto dal : 10/19/2010
Posts: 14,635
Kikkas, aspetta shapiro, non tarderà ad arrivare :-) Il ripristino come ben sai, ripristina e rimpiazza i file di sistema danneggiati; se gli animali

c'erano prima, sono ovviamente rimasti nel sistema :-)

Ciao


inchiummation
Inviato: Friday, December 23, 2011 1:01:33 PM

Rank: AiutAmico

Iscritto dal : 10/26/2011
Posts: 87
kikkas93 ha scritto:
inchiummation ha scritto:
@@pensavo che l incubo fosse finito

... si vede che non era tutt' oro quello che luceva.
Adesso si che sei in buone mani. (sperem)

parla chiaro, a cosa ti riferisci? ma sta volta hai intenzione di contribuire o no????????????????????
e comunque in italiano si dice luccicava e non luceva.


Commenta:
parla chiaro, a cosa ti riferisci?

A quello che ho detto, sei in buone mani, non è chiaro ??

kikkas93
Inviato: Friday, December 23, 2011 1:28:25 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
shapiro ha scritto:



ciao kikkas puoi postare il log per intero?

dimmi quale log devo postarti,shapy... non trovano piu nulla,penso che dopo l ultimo crash abbia corrotto anche TDSSKiller e GMER
non lo trovano piu l animale,ma è sempre qui attaccato e attivo che mi sta guastando connessioni e quant altro.

d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! d'oh! Brick wall Brick wall Brick wall Brick wall Brick wall Brick wall Brick wall Brick wall Brick wall


nota bene,nella maggior parte dei siti descrivono che si tratta di un keyloggher molto potente,e in altri un rootkit

lo voglio morto questo schifoso....
shapiro
Inviato: Friday, December 23, 2011 3:36:40 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
kikka ti vedo ''imbestialita'' Drool sai che i virus hanno oreccchie?

a parte gli scherzi quel driver e' nel tuo pc da circa due mesi controllando il log di combofix che ti ho fatto usare la scorsa volta

S0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2011-10-22 331880]

esso viene dato come legittimo da molti siti, parlo dei piu' affidabili

http://www.threatexpert.com/files/pctcore.sys.html

http://www.file.net/it/processo/pctcore.sys.html

prevx lo considera cosi'



hai anche notato che eliminandolo il tuo sistema va in crash quindi ti consiglierei di:

1
inviami una copia del file oppure controllalo da sola su virus total dopo aver visualizzato file e cartelle nascosti
2
se ritieni che avira e' fuori uso disinstallalo, fai pulizia con ccleaner e reinstallalo e fai una scansione completa dopo averlo aggiornato

se riesci a recuperare il log di tds killer sarebbe meglio

attendo tue notizie

Ciao
kikkas93
Inviato: Friday, December 23, 2011 4:11:44 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
shapiro ha scritto:
kikka ti vedo ''imbestialita'' Drool sai che i virus hanno oreccchie?

a parte gli scherzi quel driver e' nel tuo pc da circa due mesi controllando il log di combofix che ti ho fatto usare la scorsa volta

S0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2011-10-22 331880]

esso viene dato come legittimo da molti siti, parlo dei piu' affidabili

http://www.threatexpert.com/files/pctcore.sys.html

http://www.file.net/it/processo/pctcore.sys.html



hai anche notato che eliminandolo il tuo sistema va in crash quindi ti consiglierei di:

1
inviami una copia del file oppure controllalo da sola su virus total dopo aver visualizzato file e cartelle nascosti
2
se ritieni che avira e' fuori uso disinstallalo, fai pulizia con ccleaner e reinstallalo e fai una scansione completa dopo averlo aggiornato

se riesci a recuperare il log di tds killer sarebbe meglio

attendo tue notizie

Ciao


shapy sì,sono incazzata come un cinghiale principalmente perchè ora mi toccherà riformattare una terza volta (e sono 4 con questa nell arco del 2011).dunque,io ho controllato tutti e 8 i file sia su kaspersky online scannere virustotal online risultato tutto ok. ho gia disinstallato e reinstallato avira 2 volte,aggiornato sia lui che Mbam e scansionato tutto da cima a fondo e non hanno trovato nulla. ho addirittura provato a sandboxarli tutti e 8 e PCTCore.sys si attivava comunque...si attiva ogni volta al riavvio di windows,ma il bello sai cos è? che nonostante tu mi possa dire che sono tutti e 8 file legittimi,io intanto avevo provato tempo fa a reinstallare e disinstallare PCTools Spyware Doctor per ben 3 volte (la prima normalmente,la seconda in mod provvisoria e la terza con iobit) il risultato fu (ed è tuttora) che questi 8 file (di cui 1 attivissimo) non sono mai stati sradicati! e assieme a loro anche tutte le loro cavolo di chiavi di registro (le quali nemmeno cambiando le autorizzazioni si cancellano!) e allora io mi pongo,ti pongo e vi pongo a tutti una domanda stupida: ma perchè (se io ho disinstallato PCTools Spyware Doctor per ben 3 volte) questi file (che sono stati creati dal medesimo software) rimangono quì nel mio pc????? e perchè uno di loro continua ad essere attivo come driver in uso se il creatore non (spyware doctor) non è piu installato? e perchè mi mandano in crash il so quando provo a cancellarli? cosa cavolo ci stanno a fare? a che servono? ma chi li vule!!!! e tu mi dici che questi file sono legittimi? ma legittimi di cheeee??? questi si comportano esattamente come degli autentici rootkit!!! non possono essere file legittimi,shapy,io non li voglio,e se qui nessuno puo aiutarmi,io saro costretta a formattare per la quarta volta,e addio capodanno.
kikkas93
Inviato: Friday, December 23, 2011 4:22:45 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
ho recuperato il primo log dove mi ha trovato quello che ti ho detto,eccolo qui




08:47:34.0417 5080 TDSS rootkit removing tool 2.6.24.0 Dec 22 2011 18:21:27
08:47:35.0449 5080 ============================================================
08:47:35.0449 5080 Current date / time: 2011/12/23 08:47:35.0449
08:47:35.0449 5080 SystemInfo:
08:47:35.0449 5080
08:47:35.0449 5080 OS Version: 6.0.6002 ServicePack: 2.0
08:47:35.0449 5080 Product type: Workstation
08:47:35.0449 5080 ComputerName: PC bea
08:47:35.0450 5080 UserName: bea
08:47:35.0450 5080 Windows directory: C:\Windows
08:47:35.0450 5080 System windows directory: C:\Windows
08:47:35.0450 5080 Processor architecture: Intel x86
08:47:35.0450 5080 Number of processors: 2
08:47:35.0450 5080 Page size: 0x1000
08:47:35.0450 5080 Boot type: Normal boot
08:47:35.0450 5080 ============================================================
08:47:39.0059 5080 Initialize success
08:47:40.0697 2036 ============================================================
08:47:40.0698 2036 Scan started
08:47:40.0698 2036 Mode: Manual;
08:47:40.0698 2036 ============================================================
08:47:42.0828 2036 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
08:47:42.0850 2036 ACPI - ok
08:47:42.0915 2036 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
08:47:42.0944 2036 adp94xx - ok
08:47:42.0990 2036 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
08:47:43.0012 2036 adpahci - ok
08:47:43.0037 2036 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
08:47:43.0057 2036 adpu160m - ok
08:47:43.0230 2036 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
08:47:43.0260 2036 adpu320 - ok
08:47:43.0357 2036 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
08:47:43.0414 2036 AFD - ok
08:47:43.0480 2036 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
08:47:43.0488 2036 agp440 - ok
08:47:43.0551 2036 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
08:47:43.0583 2036 aic78xx - ok
08:47:43.0659 2036 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
08:47:43.0716 2036 aliide - ok
08:47:43.0833 2036 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
08:47:43.0863 2036 amdagp - ok
08:47:43.0885 2036 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
08:47:43.0946 2036 amdide - ok
08:47:43.0992 2036 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
08:47:44.0021 2036 AmdK7 - ok
08:47:44.0079 2036 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
08:47:44.0111 2036 AmdK8 - ok
08:47:44.0191 2036 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
08:47:44.0221 2036 arc - ok
08:47:44.0262 2036 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
08:47:44.0276 2036 arcsas - ok
08:47:44.0305 2036 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
08:47:44.0311 2036 AsyncMac - ok
08:47:44.0336 2036 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
08:47:44.0337 2036 atapi - ok
08:47:44.0414 2036 avgntflt (1e4114685de1ffa9675e09c6a1fb3f4b) C:\Windows\system32\DRIVERS\avgntflt.sys
08:47:44.0462 2036 avgntflt - ok
08:47:44.0534 2036 avipbb (0f78d3dae6dedd99ae54c9491c62adf2) C:\Windows\system32\DRIVERS\avipbb.sys
08:47:44.0556 2036 avipbb - ok
08:47:44.0629 2036 b57nd60x (502f1c30bd50b32d00ce4dcaecc3d3c7) C:\Windows\system32\DRIVERS\b57nd60x.sys
08:47:44.0672 2036 b57nd60x - ok
08:47:44.0732 2036 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
08:47:44.0737 2036 Beep - ok
08:47:44.0768 2036 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
08:47:44.0819 2036 blbdrive - ok
08:47:44.0884 2036 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
08:47:44.0895 2036 bowser - ok
08:47:44.0951 2036 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
08:47:44.0961 2036 BrFiltLo - ok
08:47:44.0984 2036 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
08:47:45.0005 2036 BrFiltUp - ok
08:47:45.0031 2036 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
08:47:45.0049 2036 Brserid - ok
08:47:45.0088 2036 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
08:47:45.0095 2036 BrSerWdm - ok
08:47:45.0118 2036 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
08:47:45.0137 2036 BrUsbMdm - ok
08:47:45.0159 2036 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
08:47:45.0164 2036 BrUsbSer - ok
08:47:45.0187 2036 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
08:47:45.0208 2036 BTHMODEM - ok
08:47:45.0391 2036 catchme - ok
08:47:45.0768 2036 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
08:47:45.0829 2036 cdfs - ok
08:47:45.0890 2036 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
08:47:45.0906 2036 cdrom - ok
08:47:45.0981 2036 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
08:47:46.0008 2036 circlass - ok
08:47:46.0078 2036 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
08:47:46.0097 2036 CLFS - ok
08:47:46.0160 2036 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
08:47:46.0165 2036 CmBatt - ok
08:47:46.0199 2036 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
08:47:46.0230 2036 cmdide - ok
08:47:46.0256 2036 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
08:47:46.0270 2036 Compbatt - ok
08:47:46.0314 2036 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
08:47:46.0335 2036 crcdisk - ok
08:47:46.0358 2036 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
08:47:46.0378 2036 Crusoe - ok
08:47:46.0533 2036 devremdrv (cdf0f20a1195968711eb26f35bfc59df) C:\Users\polizia di Stato\Desktop\devremdrv.sys
08:47:46.0543 2036 devremdrv - ok
08:47:46.0946 2036 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
08:47:46.0985 2036 DfsC - ok
08:47:47.0080 2036 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
08:47:47.0091 2036 disk - ok
08:47:47.0185 2036 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
08:47:47.0206 2036 drmkaud - ok
08:47:47.0293 2036 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
08:47:47.0346 2036 DXGKrnl - ok
08:47:47.0779 2036 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
08:47:47.0798 2036 E1G60 - ok
08:47:47.0830 2036 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
08:47:47.0869 2036 Ecache - ok
08:47:47.0934 2036 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
08:47:47.0958 2036 elxstor - ok
08:47:48.0009 2036 ErrDev (a81ab23eddb4693612014d87367d014c) C:\Windows\system32\drivers\errdev.sys
08:47:48.0015 2036 ErrDev - ok
08:47:48.0052 2036 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
08:47:48.0081 2036 exfat - ok
08:47:48.0108 2036 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
08:47:48.0123 2036 fastfat - ok
08:47:48.0146 2036 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
08:47:48.0153 2036 fdc - ok
08:47:48.0189 2036 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
08:47:48.0252 2036 FileInfo - ok
08:47:48.0276 2036 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
08:47:48.0293 2036 Filetrace - ok
08:47:48.0330 2036 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
08:47:48.0344 2036 flpydisk - ok
08:47:48.0404 2036 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
08:47:48.0438 2036 FltMgr - ok
08:47:48.0484 2036 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
08:47:48.0492 2036 Fs_Rec - ok
08:47:48.0530 2036 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
08:47:48.0556 2036 gagp30kx - ok
08:47:48.0614 2036 HBtnKey (93aee3434935fc2f805fefd8dc5ed1b4) C:\Windows\system32\DRIVERS\cpqbttn.sys
08:47:48.0638 2036 HBtnKey - ok
08:47:48.0710 2036 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
08:47:48.0756 2036 HdAudAddService - ok
08:47:49.0140 2036 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
08:47:49.0185 2036 HDAudBus - ok
08:47:49.0213 2036 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
08:47:49.0246 2036 HidBth - ok
08:47:49.0269 2036 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
08:47:49.0280 2036 HidIr - ok
08:47:49.0318 2036 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
08:47:49.0322 2036 HidUsb - ok
08:47:49.0351 2036 HpCISSs (7ebec5eb56b90ed65a8bbd91464e5cfb) C:\Windows\system32\drivers\hpcisss.sys
08:47:49.0360 2036 HpCISSs - ok
08:47:49.0420 2036 HpqKbFiltr (1210960ff8928950d2a786895b0c424a) C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
08:47:49.0455 2036 HpqKbFiltr - ok
08:47:49.0549 2036 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
08:47:49.0613 2036 HTTP - ok
08:47:49.0684 2036 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
08:47:49.0704 2036 i2omp - ok
08:47:49.0759 2036 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
08:47:49.0782 2036 i8042prt - ok
08:47:49.0846 2036 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
08:47:49.0879 2036 iaStorV - ok
08:47:49.0910 2036 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
08:47:49.0922 2036 iirsp - ok
08:47:49.0957 2036 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
08:47:49.0964 2036 intelide - ok
08:47:49.0992 2036 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
08:47:50.0001 2036 intelppm - ok
08:47:50.0027 2036 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:47:50.0040 2036 IpFilterDriver - ok
08:47:50.0064 2036 IpInIp - ok
08:47:50.0092 2036 IPMIDRV (4b9c0f4d4a3acc535f9771039ecd6365) C:\Windows\system32\drivers\ipmidrv.sys
08:47:50.0119 2036 IPMIDRV - ok
08:47:50.0143 2036 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
08:47:50.0155 2036 IPNAT - ok
08:47:50.0178 2036 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
08:47:50.0183 2036 IRENUM - ok
08:47:50.0228 2036 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
08:47:50.0238 2036 isapnp - ok
08:47:50.0276 2036 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
08:47:50.0305 2036 iScsiPrt - ok
08:47:50.0328 2036 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
08:47:50.0347 2036 iteatapi - ok
08:47:50.0371 2036 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
08:47:50.0379 2036 iteraid - ok
08:47:50.0439 2036 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
08:47:50.0468 2036 kbdclass - ok
08:47:50.0505 2036 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
08:47:50.0510 2036 kbdhid - ok
08:47:50.0584 2036 KSecDD (86165728af9bf72d6442a894fdfb4f8b) C:\Windows\system32\Drivers\ksecdd.sys
08:47:50.0628 2036 KSecDD - ok
08:47:51.0104 2036 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
08:47:51.0134 2036 lltdio - ok
08:47:51.0202 2036 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
08:47:51.0220 2036 LSI_FC - ok
08:47:51.0245 2036 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
08:47:51.0261 2036 LSI_SAS - ok
08:47:51.0285 2036 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
08:47:51.0308 2036 LSI_SCSI - ok
08:47:51.0332 2036 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
08:47:51.0344 2036 luafv - ok
08:47:51.0411 2036 MBAMProtector (69a6268d7f81e53d568ab4e7e991caf3) C:\Windows\system32\drivers\mbam.sys
08:47:51.0440 2036 MBAMProtector - ok
08:47:51.0492 2036 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
08:47:51.0523 2036 megasas - ok
08:47:51.0647 2036 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
08:47:51.0681 2036 MegaSR - ok
08:47:52.0076 2036 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
08:47:52.0121 2036 Modem - ok
08:47:52.0182 2036 MODEMCSA (cbb59c41f19efea1a000793e08070a62) C:\Windows\system32\drivers\MODEMCSA.sys
08:47:52.0188 2036 MODEMCSA - ok
08:47:52.0236 2036 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
08:47:52.0254 2036 monitor - ok
08:47:52.0287 2036 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
08:47:52.0324 2036 mouclass - ok
08:47:52.0348 2036 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
08:47:52.0363 2036 mouhid - ok
08:47:52.0389 2036 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
08:47:52.0401 2036 MountMgr - ok
08:47:52.0446 2036 mpio (5da347912fd3af24d7bfb3de519d4bd0) C:\Windows\system32\drivers\mpio.sys
08:47:52.0480 2036 mpio - ok
08:47:52.0505 2036 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
08:47:52.0515 2036 mpsdrv - ok
08:47:52.0561 2036 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
08:47:52.0583 2036 Mraid35x - ok
08:47:52.0633 2036 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
08:47:52.0663 2036 MRxDAV - ok
08:47:52.0726 2036 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
08:47:52.0737 2036 mrxsmb - ok
08:47:52.0789 2036 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:47:52.0826 2036 mrxsmb10 - ok
08:47:52.0872 2036 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:47:52.0902 2036 mrxsmb20 - ok
08:47:52.0959 2036 msahci (5457dcfa7c0da43522f4d9d4049c1472) C:\Windows\system32\drivers\msahci.sys
08:47:52.0987 2036 msahci - ok
08:47:53.0035 2036 msdsm (2c563aef15b8d0014c36c5f27742ac7b) C:\Windows\system32\drivers\msdsm.sys
08:47:53.0063 2036 msdsm - ok
08:47:53.0096 2036 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
08:47:53.0153 2036 Msfs - ok
08:47:53.0176 2036 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
08:47:53.0199 2036 msisadrv - ok
08:47:53.0242 2036 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
08:47:53.0246 2036 MSKSSRV - ok
08:47:53.0273 2036 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
08:47:53.0277 2036 MSPCLOCK - ok
08:47:53.0301 2036 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
08:47:53.0308 2036 MSPQM - ok
08:47:53.0337 2036 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
08:47:53.0356 2036 MsRPC - ok
08:47:53.0386 2036 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
08:47:53.0428 2036 mssmbios - ok
08:47:53.0454 2036 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
08:47:53.0459 2036 MSTEE - ok
08:47:53.0503 2036 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
08:47:53.0538 2036 Mup - ok
08:47:53.0648 2036 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
08:47:53.0674 2036 NativeWifiP - ok
08:47:53.0753 2036 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
08:47:53.0800 2036 NDIS - ok
08:47:53.0844 2036 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
08:47:53.0849 2036 NdisTapi - ok
08:47:53.0872 2036 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
08:47:53.0896 2036 Ndisuio - ok
08:47:53.0922 2036 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
08:47:53.0940 2036 NdisWan - ok
08:47:53.0964 2036 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
08:47:53.0977 2036 NDProxy - ok
08:47:54.0003 2036 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
08:47:54.0054 2036 NetBIOS - ok
08:47:54.0129 2036 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
08:47:54.0163 2036 netbt - ok
08:47:54.0308 2036 NETw4v32 (1d73499a6664b4da05d750ff83fdb274) C:\Windows\system32\DRIVERS\NETw4v32.sys
08:47:54.0405 2036 NETw4v32 - ok
08:47:54.0991 2036 NETw5v32 (8de67bd902095a13329fd82c85a1fa09) C:\Windows\system32\DRIVERS\NETw5v32.sys
08:47:55.0241 2036 NETw5v32 - ok
08:47:55.0692 2036 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
08:47:55.0712 2036 nfrd960 - ok
08:47:55.0738 2036 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
08:47:55.0758 2036 Npfs - ok
08:47:55.0804 2036 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
08:47:55.0809 2036 nsiproxy - ok
08:47:55.0878 2036 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
08:47:55.0959 2036 Ntfs - ok
08:47:56.0404 2036 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
08:47:56.0443 2036 ntrigdigi - ok
08:47:56.0466 2036 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
08:47:56.0471 2036 Null - ok
08:47:56.0910 2036 nvlddmkm (24000b817cc84ac1555f41929879af5a) C:\Windows\system32\DRIVERS\nvlddmkm.sys
08:47:57.0362 2036 nvlddmkm - ok
08:47:57.0835 2036 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
08:47:57.0870 2036 nvraid - ok
08:47:57.0894 2036 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
08:47:57.0903 2036 nvstor - ok
08:47:57.0953 2036 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
08:47:57.0985 2036 nv_agp - ok
08:47:58.0006 2036 NwlnkFlt - ok
08:47:58.0031 2036 NwlnkFwd - ok
08:47:58.0099 2036 ohci1394 (6f310e890d46e246e0e261a63d9b36b4) C:\Windows\system32\DRIVERS\ohci1394.sys
08:47:58.0126 2036 ohci1394 - ok
08:47:58.0203 2036 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
08:47:58.0229 2036 Parport - ok
08:47:58.0280 2036 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
08:47:58.0292 2036 partmgr - ok
08:47:58.0327 2036 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
08:47:58.0359 2036 Parvdm - ok
08:47:58.0498 2036 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
08:47:58.0527 2036 pci - ok
08:47:58.0559 2036 pciide (1636d43f10416aeb483bc6001097b26c) C:\Windows\system32\drivers\pciide.sys
08:47:58.0583 2036 pciide - ok
08:47:58.0660 2036 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
08:47:58.0695 2036 pcmcia - ok
08:47:58.0697 2036 Suspicious service (NoAccess): PCTCore eccolo!
08:47:58.0861 2036 PCTCore (3a1efee38dcc8db0b0ee8bb98edd950d) C:\Windows\system32\drivers\PCTCore.sys
08:47:58.0892 2036 PCTCore ( LockedService.Multi.Generic ) - warning
08:47:58.0892 2036 PCTCore - detected LockedService.Multi.Generic (1)
08:47:58.0978 2036 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
08:47:59.0020 2036 PEAUTH - ok
08:47:59.0093 2036 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
08:47:59.0116 2036 PptpMiniport - ok
08:47:59.0155 2036 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
08:47:59.0172 2036 Processor - ok
08:47:59.0330 2036 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
08:47:59.0337 2036 PSched - ok
08:47:59.0405 2036 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
08:47:59.0490 2036 ql2300 - ok
08:47:59.0902 2036 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
08:47:59.0917 2036 ql40xx - ok
08:47:59.0948 2036 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
08:47:59.0957 2036 QWAVEdrv - ok
08:47:59.0989 2036 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
08:47:59.0998 2036 RasAcd - ok
08:48:00.0033 2036 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
08:48:00.0041 2036 Rasl2tp - ok
08:48:00.0090 2036 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
08:48:00.0096 2036 RasPppoe - ok
08:48:00.0130 2036 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
08:48:00.0138 2036 RasSstp - ok
08:48:00.0173 2036 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
08:48:00.0204 2036 rdbss - ok
08:48:00.0246 2036 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
08:48:00.0269 2036 RDPCDD - ok
08:48:00.0313 2036 rdpdr (943b18305eae3935598a9b4a3d560b4c) C:\Windows\system32\drivers\rdpdr.sys
08:48:00.0333 2036 rdpdr - ok
08:48:00.0361 2036 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
08:48:00.0367 2036 RDPENCDD - ok
08:48:00.0414 2036 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
08:48:00.0454 2036 RDPWD - ok
08:48:00.0873 2036 rimmptsk (df672613fbbcd58c38bb0bc2694bcfb0) C:\Windows\system32\DRIVERS\rimmptsk.sys
08:48:00.0903 2036 rimmptsk - ok
08:48:00.0966 2036 rimsptsk (9bfb54d3559f2ff7301271d29d383564) C:\Windows\system32\DRIVERS\rimsptsk.sys
08:48:00.0991 2036 rimsptsk - ok
08:48:01.0037 2036 rismxdp (dcb87da83cc1010cbc9fc4dc9e395bbc) C:\Windows\system32\DRIVERS\rixdptsk.sys
08:48:01.0140 2036 rismxdp - ok
08:48:01.0227 2036 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
08:48:01.0255 2036 rspndr - ok
08:48:01.0325 2036 RTL8169 (283392af1860ecdb5e0f8ebd7f3d72df) C:\Windows\system32\DRIVERS\Rtlh86.sys
08:48:01.0343 2036 RTL8169 - ok
08:48:01.0388 2036 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
08:48:01.0423 2036 sbp2port - ok
08:48:01.0486 2036 sdbus (8f36b54688c31eed4580129040c6a3d3) C:\Windows\system32\DRIVERS\sdbus.sys
08:48:01.0520 2036 sdbus - ok
08:48:01.0547 2036 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
08:48:01.0554 2036 secdrv - ok
08:48:01.0585 2036 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
08:48:01.0592 2036 Serenum - ok
08:48:01.0639 2036 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
08:48:01.0662 2036 Serial - ok
08:48:01.0685 2036 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
08:48:01.0702 2036 sermouse - ok
08:48:01.0788 2036 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
08:48:01.0804 2036 sffdisk - ok
08:48:01.0826 2036 sffp_mmc (e5eafe85815bd89095fef3144a09ab68) C:\Windows\system32\drivers\sffp_mmc.sys
08:48:01.0832 2036 sffp_mmc - ok
08:48:01.0857 2036 sffp_sd (9f66a46c55d6f1ccabc79bb7afccc545) C:\Windows\system32\drivers\sffp_sd.sys
08:48:01.0862 2036 sffp_sd - ok
08:48:01.0902 2036 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
08:48:01.0918 2036 sfloppy - ok
08:48:01.0963 2036 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
08:48:01.0990 2036 sisagp - ok
08:48:02.0024 2036 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
08:48:02.0040 2036 SiSRaid2 - ok
08:48:02.0074 2036 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
08:48:02.0089 2036 SiSRaid4 - ok
08:48:02.0125 2036 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
08:48:02.0136 2036 Smb - ok
08:48:02.0236 2036 smserial (859e3adc59d1c89a66aa6492c14d379e) C:\Windows\system32\DRIVERS\smserial.sys
08:48:02.0325 2036 smserial - ok
08:48:02.0791 2036 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
08:48:02.0815 2036 spldr - ok
08:48:02.0892 2036 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
08:48:02.0913 2036 srv - ok
08:48:02.0990 2036 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
08:48:03.0000 2036 srv2 - ok
08:48:03.0400 2036 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
08:48:03.0430 2036 srvnet - ok
08:48:03.0477 2036 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
08:48:03.0511 2036 ssmdrv - ok
08:48:03.0600 2036 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
08:48:03.0607 2036 swenum - ok
08:48:03.0643 2036 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
08:48:03.0701 2036 Symc8xx - ok
08:48:03.0741 2036 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
08:48:03.0756 2036 Sym_hi - ok
08:48:03.0789 2036 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
08:48:03.0804 2036 Sym_u3 - ok
08:48:03.0878 2036 SynTP (067cb9d745407a8c1b26e89a6a2ce152) C:\Windows\system32\DRIVERS\SynTP.sys
08:48:03.0896 2036 SynTP - ok
08:48:03.0994 2036 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
08:48:04.0088 2036 Tcpip - ok
08:48:04.0137 2036 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
08:48:04.0144 2036 Tcpip6 - ok
08:48:04.0181 2036 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
08:48:04.0224 2036 tcpipreg - ok
08:48:04.0283 2036 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
08:48:04.0289 2036 TDPIPE - ok
08:48:04.0313 2036 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
08:48:04.0335 2036 TDTCP - ok
08:48:04.0360 2036 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
08:48:04.0376 2036 tdx - ok
08:48:04.0402 2036 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
08:48:04.0424 2036 TermDD - ok
08:48:04.0473 2036 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
08:48:04.0479 2036 tssecsrv - ok
08:48:04.0503 2036 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
08:48:04.0510 2036 tunmp - ok
08:48:04.0534 2036 tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys
08:48:04.0542 2036 tunnel - ok
08:48:04.0581 2036 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
08:48:04.0607 2036 uagp35 - ok
08:48:04.0665 2036 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
08:48:04.0697 2036 udfs - ok
08:48:04.0747 2036 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
08:48:04.0775 2036 uliagpkx - ok
08:48:04.0823 2036 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
08:48:04.0858 2036 uliahci - ok
08:48:04.0896 2036 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
08:48:04.0913 2036 UlSata - ok
08:48:04.0944 2036 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
08:48:04.0968 2036 ulsata2 - ok
08:48:05.0033 2036 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
08:48:05.0040 2036 umbus - ok
08:48:05.0105 2036 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
08:48:05.0132 2036 usbccgp - ok
08:48:05.0201 2036 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
08:48:05.0220 2036 usbcir - ok
08:48:05.0261 2036 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
08:48:05.0284 2036 usbehci - ok
08:48:05.0323 2036 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
08:48:05.0335 2036 usbhub - ok
08:48:05.0358 2036 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
08:48:05.0377 2036 usbohci - ok
08:48:05.0401 2036 usbprint (b51e52acf758be00ef3a58ea452fe360) C:\Windows\system32\drivers\usbprint.sys
08:48:05.0420 2036 usbprint - ok
08:48:05.0478 2036 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
08:48:05.0479 2036 USBSTOR - ok
08:48:05.0548 2036 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
08:48:05.0558 2036 usbuhci - ok
08:48:05.0605 2036 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
08:48:05.0636 2036 usbvideo - ok
08:48:05.0698 2036 usb_rndisx (35c9095fa7076466afbfc5b9ec4b779e) C:\Windows\system32\DRIVERS\usb8023x.sys
08:48:05.0736 2036 usb_rndisx - ok
08:48:05.0820 2036 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
08:48:05.0846 2036 vga - ok
08:48:05.0884 2036 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
08:48:05.0894 2036 VgaSave - ok
08:48:05.0926 2036 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
08:48:05.0935 2036 viaagp - ok
08:48:05.0961 2036 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
08:48:05.0978 2036 ViaC7 - ok
08:48:06.0003 2036 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
08:48:06.0017 2036 viaide - ok
08:48:06.0061 2036 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
08:48:06.0073 2036 volmgr - ok
08:48:06.0102 2036 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
08:48:06.0124 2036 volmgrx - ok
08:48:06.0166 2036 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
08:48:06.0184 2036 volsnap - ok
08:48:06.0221 2036 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
08:48:06.0232 2036 vsmraid - ok
08:48:06.0300 2036 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
08:48:06.0318 2036 WacomPen - ok
08:48:06.0345 2036 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
08:48:06.0371 2036 Wanarp - ok
08:48:06.0376 2036 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
08:48:06.0378 2036 Wanarpv6 - ok
08:48:06.0434 2036 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
08:48:06.0447 2036 Wd - ok
08:48:06.0536 2036 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
08:48:06.0567 2036 Wdf01000 - ok
08:48:06.0661 2036 WINUSB (676f4b665bdd8053eaa53ac1695b8074) C:\Windows\system32\DRIVERS\WinUSB.SYS
08:48:06.0690 2036 WINUSB - ok
08:48:06.0759 2036 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
08:48:06.0763 2036 WmiAcpi - ok
08:48:06.0818 2036 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
08:48:06.0829 2036 ws2ifsl - ok
08:48:06.0873 2036 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
08:48:06.0886 2036 WUDFRd - ok
08:48:06.0939 2036 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
08:48:06.0945 2036 \Device\Harddisk0\DR0 - ok
08:48:06.0952 2036 MBR (0x1B8) (ddae9d649db12f6aff24483f2c298989) \Device\Harddisk1\DR1
08:48:15.0197 2036 \Device\Harddisk1\DR1 - ok
08:48:15.0202 2036 Boot (0x1200) (46c32bd4e5272fa3ac06c44861eca0f1) \Device\Harddisk0\DR0\Partition0
08:48:15.0203 2036 \Device\Harddisk0\DR0\Partition0 - ok
08:48:15.0241 2036 Boot (0x1200) (b7a7126ac3d4b358b669c6caea7d2426) \Device\Harddisk0\DR0\Partition1
08:48:15.0242 2036 \Device\Harddisk0\DR0\Partition1 - ok
08:48:15.0247 2036 Boot (0x1200) (ebd09510359903bc5ad90698534b069f) \Device\Harddisk1\DR1\Partition0
08:48:15.0248 2036 \Device\Harddisk1\DR1\Partition0 - ok
08:48:15.0259 2036 ============================================================
08:48:15.0259 2036 Scan finished
08:48:15.0259 2036 ============================================================
08:48:15.0275 3668 Detected object count: 1
08:48:15.0275 3668 Actual detected object count: 1
08:48:29.0012 3668 HKLM\SYSTEM\ControlSet001\services\PCTCore - will be deleted on reboot
08:48:29.0081 3668 HKLM\SYSTEM\ControlSet002\services\PCTCore - will be deleted on reboot
08:48:29.0095 3668 HKLM\SYSTEM\ControlSet003\services\PCTCore - will be deleted on reboot
08:48:29.0111 3668 HKLM\SYSTEM\ControlSet004\services\PCTCore - will be deleted on reboot
08:48:29.0182 3668 HKLM\SYSTEM\ControlSet005\services\PCTCore - will be deleted on reboot
08:48:29.0196 3668 HKLM\SYSTEM\ControlSet006\services\PCTCore - will be deleted on reboot
08:48:29.0213 3668 HKLM\SYSTEM\ControlSet007\services\PCTCore - will be deleted on reboot
08:48:29.0230 3668 HKLM\SYSTEM\ControlSet008\services\PCTCore - will be deleted on reboot
08:48:29.0293 3668 HKLM\SYSTEM\ControlSet009\services\PCTCore - will be deleted on reboot
08:48:29.0373 3668 HKLM\SYSTEM\ControlSet010\services\PCTCore - will be deleted on reboot
08:48:29.0389 3668 HKLM\SYSTEM\ControlSet011\services\PCTCore - will be deleted on reboot
08:48:29.0453 3668 HKLM\SYSTEM\ControlSet012\services\PCTCore - will be deleted on reboot
08:48:29.0467 3668 HKLM\SYSTEM\ControlSet013\services\PCTCore - will be deleted on reboot
08:48:29.0570 3668 HKLM\SYSTEM\ControlSet014\services\PCTCore - will be deleted on reboot
08:48:29.0575 3668 HKLM\SYSTEM\ControlSet015\services\PCTCore - will be deleted on reboot
08:48:29.0584 3668 HKLM\SYSTEM\ControlSet016\services\PCTCore - will be deleted on reboot
08:48:29.0589 3668 HKLM\SYSTEM\ControlSet017\services\PCTCore - will be deleted on reboot
08:48:29.0592 3668 HKLM\SYSTEM\ControlSet018\services\PCTCore - will be deleted on reboot
08:48:29.0615 3668 HKLM\SYSTEM\ControlSet019\services\PCTCore - will be deleted on reboot
08:48:29.0657 3668 C:\Windows\system32\drivers\PCTCore.sys - will be deleted on reboot
08:48:29.0657 3668 PCTCore ( LockedService.Multi.Generic ) - User select action: Delete
08:48:32.0933 4032 Deinitialize success
shapiro
Inviato: Friday, December 23, 2011 4:26:02 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164


dammi il tempo di prepararti una procedura che rimuovera' tutti i driver anche se ti ripeto che PCTools Spyware Doctor non e' un prodotto dannoso ma se a te crea questo problema lo eliminiamo

http://www.pctools.com/it/spyware-doctor/download/

kikkas93
Inviato: Friday, December 23, 2011 4:31:00 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
shapiro ha scritto:


dammi il tempo di prepararti una procedura che rimuovera' tutti i driver anche se ti ripeto che PCTools Spyware Doctor non e' un prodotto dannoso ma se a te crea questo problema lo eliminiamo

http://www.pctools.com/it/spyware-doctor/download/

cosa devo fare,devo riscaricarlo? shapy,sono 120 mb,lo sai quanti giorni ci metto con la connessione che mi ritrovo?
miticoalex
Inviato: Friday, December 23, 2011 4:42:27 PM

Rank: AiutAmico

Iscritto dal : 10/19/2010
Posts: 14,635
Shapiro, vedi se va bene questo

Kikkas, aspetta l'ok di shapiro.

Bye


kikkas93
Inviato: Friday, December 23, 2011 4:53:50 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
miticoalex ha scritto:
Shapiro, vedi se va bene questo

Kikkas, aspetta l'ok di shapiro.

Bye

va bene mitico.
miticoalex
Inviato: Friday, December 23, 2011 4:58:36 PM

Rank: AiutAmico

Iscritto dal : 10/19/2010
Posts: 14,635
Ricordi che nell'altro post, ti avevo consigliato il backup del sistema?
Comunque vada adesso, a problema risolto, creati quell'immagine e non formatti più :-)



kikkas93
Inviato: Friday, December 23, 2011 5:07:05 PM

Rank: AiutAmico

Iscritto dal : 12/11/2011
Posts: 140
miticoalex ha scritto:
Ricordi che nell'altro post, ti avevo consigliato il backup del sistema?
Comunque vada adesso, a problema risolto, creati quell'immagine e non formatti più :-)

l ho fatto,l ho creata sulla partizione D:\ ma provando a ripristinare da quella partizione creata non parte,ho provato.... forse sbaglio qualcosa? p.s. ma se la partizione comprende anche pctools non si rinstalla anche lui? cmq non parte se ripristino da quella partizione crata su D:\
miticoalex
Inviato: Friday, December 23, 2011 8:28:57 PM

Rank: AiutAmico

Iscritto dal : 10/19/2010
Posts: 14,635
kikkas93 ha scritto:
p.s. ma se la partizione comprende anche pctools non si rinstalla anche lui? cmq non parte se ripristino da quella partizione crata su D:\


Giusto, infatti io ho scritto a problema risolto. Dovrai farla dopo aver risolto il problema.


enigmista63
Inviato: Friday, December 23, 2011 10:48:36 PM

Rank: AiutAmico

Iscritto dal : 4/28/2007
Posts: 1,976
Whistle Ciao puoi provare questo kit di emergenza per scansionare
http://www.emsisoft.com/en/software/eek/
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.