Wirus BOO/TDss.A - Jak Go Usunąć


(asziatko) #1

Witam,

Na laptopie TOSHIBA A300 z Windows'em Vista pojawił się wirus o nazwie BOO/TDss.A. Dzisiaj przywróciłem fabrycznie nowy system z płyty recovery ale o dziwo wirus dalej jest. Stawiał bym że ten wirus znajduje się gdzieś w początkowych klasterach dysku. Program antywirusowy nie może go usunąć ani w normalnym trybie ani w trybie awaryjnym.

W jaki sposób można usunąć ten wirus?.


(jessica) #2

Daj log z >TDSSKiller

jessi


(asziatko) #3

Przepraszam za małe opóźnienie w wrzuceniu loga z TDSSKiller. Oto log

22:16:22.0617 2856	TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43

22:16:22.0724 2856	============================================================

22:16:22.0724 2856	Current date / time: 2012/03/12 22:16:22.0724

22:16:22.0724 2856	SystemInfo:

22:16:22.0724 2856	

22:16:22.0724 2856	OS Version: 6.0.6001 ServicePack: 1.0

22:16:22.0724 2856	Product type: Workstation

22:16:22.0724 2856	ComputerName: LAPTOP

22:16:22.0725 2856	UserName: Ja

22:16:22.0725 2856	Windows directory: C:\Windows

22:16:22.0725 2856	System windows directory: C:\Windows

22:16:22.0725 2856	Processor architecture: Intel x86

22:16:22.0725 2856	Number of processors: 2

22:16:22.0725 2856	Page size: 0x1000

22:16:22.0725 2856	Boot type: Normal boot

22:16:22.0725 2856	============================================================

22:16:23.0598 2856	Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050

22:16:23.0600 2856	\Device\Harddisk0\DR0:

22:16:23.0600 2856	MBR used

22:16:23.0600 2856	\Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0xE86C000

22:16:23.0600 2856	\Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xEB5A800, BlocksNum 0xE66A800

22:16:23.0675 2856	Initialize success

22:16:23.0675 2856	============================================================

22:16:36.0734 6020	============================================================

22:16:36.0734 6020	Scan started

22:16:36.0734 6020	Mode: Manual; 

22:16:36.0734 6020	============================================================

22:16:37.0382 6020	ACPI (fcb8c7210f0135e24c6580f7f649c73c) C:\Windows\system32\drivers\acpi.sys

22:16:37.0384 6020	ACPI - ok

22:16:37.0478 6020	adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys

22:16:37.0507 6020	adp94xx - ok

22:16:37.0698 6020	adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys

22:16:37.0714 6020	adpahci - ok

22:16:37.0810 6020	adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys

22:16:37.0829 6020	adpu160m - ok

22:16:37.0861 6020	adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys

22:16:37.0871 6020	adpu320 - ok

22:16:38.0024 6020	AFD (763e172a55177e478cb419f88fd0ba03) C:\Windows\system32\drivers\afd.sys

22:16:38.0042 6020	AFD - ok

22:16:38.0202 6020	AgereSoftModem (ce91b158fa490cf4c4d487a4130f4660) C:\Windows\system32\DRIVERS\AGRSM.sys

22:16:38.0221 6020	AgereSoftModem - ok

22:16:38.0324 6020	agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys

22:16:38.0333 6020	agp440 - ok

22:16:38.0372 6020	aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys

22:16:38.0387 6020	aic78xx - ok

22:16:38.0415 6020	aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys

22:16:38.0423 6020	aliide - ok

22:16:38.0547 6020	amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys

22:16:38.0558 6020	amdagp - ok

22:16:38.0572 6020	amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys

22:16:38.0583 6020	amdide - ok

22:16:38.0604 6020	AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys

22:16:38.0613 6020	AmdK7 - ok

22:16:38.0627 6020	AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys

22:16:38.0637 6020	AmdK8 - ok

22:16:38.0773 6020	arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys

22:16:38.0784 6020	arc - ok

22:16:38.0815 6020	arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys

22:16:38.0831 6020	arcsas - ok

22:16:38.0859 6020	AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys

22:16:38.0866 6020	AsyncMac - ok

22:16:38.0892 6020	atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys

22:16:38.0909 6020	atapi - ok

22:16:39.0006 6020	avgntflt (7713e4eb0276702faa08e52a6e23f2a6) C:\Windows\system32\DRIVERS\avgntflt.sys

22:16:39.0017 6020	avgntflt - ok

22:16:39.0040 6020	avipbb (13b02b9b969dde270cd7c351203dad3c) C:\Windows\system32\DRIVERS\avipbb.sys

22:16:39.0053 6020	avipbb - ok

22:16:39.0067 6020	avkmgr (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys

22:16:39.0077 6020	avkmgr - ok

22:16:39.0121 6020	Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys

22:16:39.0126 6020	Beep - ok

22:16:39.0230 6020	blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys

22:16:39.0237 6020	blbdrive - ok

22:16:39.0276 6020	bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys

22:16:39.0284 6020	bowser - ok

22:16:39.0316 6020	BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys

22:16:39.0322 6020	BrFiltLo - ok

22:16:39.0338 6020	BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys

22:16:39.0345 6020	BrFiltUp - ok

22:16:39.0416 6020	Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys

22:16:39.0428 6020	Brserid - ok

22:16:39.0442 6020	BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys

22:16:39.0450 6020	BrSerWdm - ok

22:16:39.0465 6020	BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys

22:16:39.0471 6020	BrUsbMdm - ok

22:16:39.0487 6020	BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys

22:16:39.0496 6020	BrUsbSer - ok

22:16:39.0512 6020	BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys

22:16:39.0520 6020	BTHMODEM - ok

22:16:39.0547 6020	cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys

22:16:39.0554 6020	cdfs - ok

22:16:39.0598 6020	cdrom (1ec25cea0de6ac4718bf89f9e1778b57) C:\Windows\system32\DRIVERS\cdrom.sys

22:16:39.0607 6020	cdrom - ok

22:16:39.0671 6020	circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys

22:16:39.0679 6020	circlass - ok

22:16:39.0729 6020	CLFS (465745561c832b29f7c48b488aab3842) C:\Windows\system32\CLFS.sys

22:16:39.0745 6020	CLFS - ok

22:16:39.0823 6020	CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys

22:16:39.0831 6020	CmBatt - ok

22:16:39.0895 6020	cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys

22:16:39.0901 6020	cmdide - ok

22:16:39.0924 6020	Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys

22:16:39.0936 6020	Compbatt - ok

22:16:40.0036 6020	crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys

22:16:40.0046 6020	crcdisk - ok

22:16:40.0087 6020	Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys

22:16:40.0096 6020	Crusoe - ok

22:16:40.0141 6020	DfsC (9e635ae5e8ad93e2b5989e2e23679f97) C:\Windows\system32\Drivers\dfsc.sys

22:16:40.0153 6020	DfsC - ok

22:16:40.0239 6020	disk (64109e623abd6955c8fb110b592e68b7) C:\Windows\system32\drivers\disk.sys

22:16:40.0240 6020	disk - ok

22:16:40.0309 6020	drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys

22:16:40.0315 6020	drmkaud - ok

22:16:40.0360 6020	DXGKrnl (f8bf50a8d862f8cc089080bec509bca6) C:\Windows\System32\drivers\dxgkrnl.sys

22:16:40.0372 6020	DXGKrnl - ok

22:16:40.0449 6020	E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys

22:16:40.0461 6020	E1G60 - ok

22:16:40.0533 6020	Ecache (dd2cd259d83d8b72c02c5f2331ff9d68) C:\Windows\system32\drivers\ecache.sys

22:16:40.0547 6020	Ecache - ok

22:16:40.0634 6020	elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys

22:16:40.0649 6020	elxstor - ok

22:16:40.0755 6020	ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys

22:16:40.0759 6020	ErrDev - ok

22:16:40.0857 6020	exfat (0d858eb20589a34efb25695acaa6aa2d) C:\Windows\system32\drivers\exfat.sys

22:16:40.0867 6020	exfat - ok

22:16:40.0935 6020	fastfat (3c489390c2e2064563727752af8eab9e) C:\Windows\system32\drivers\fastfat.sys

22:16:40.0945 6020	fastfat - ok

22:16:41.0038 6020	fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys

22:16:41.0043 6020	fdc - ok

22:16:41.0133 6020	FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys

22:16:41.0142 6020	FileInfo - ok

22:16:41.0184 6020	Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys

22:16:41.0190 6020	Filetrace - ok

22:16:41.0203 6020	flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys

22:16:41.0210 6020	flpydisk - ok

22:16:41.0242 6020	FltMgr (05ea53afe985443011e36dab07343b46) C:\Windows\system32\drivers\fltmgr.sys

22:16:41.0258 6020	FltMgr - ok

22:16:41.0341 6020	Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys

22:16:41.0346 6020	Fs_Rec - ok

22:16:41.0399 6020	FwLnk (cbc22823628544735625b280665e434e) C:\Windows\system32\DRIVERS\FwLnk.sys

22:16:41.0404 6020	FwLnk - ok

22:16:41.0471 6020	gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys

22:16:41.0481 6020	gagp30kx - ok

22:16:41.0571 6020	HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys

22:16:41.0587 6020	HdAudAddService - ok

22:16:41.0662 6020	HDAudBus (c87b1ee051c0464491c1a7b03fa0bc99) C:\Windows\system32\DRIVERS\HDAudBus.sys

22:16:41.0663 6020	HDAudBus - ok

22:16:41.0692 6020	HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys

22:16:41.0699 6020	HidBth - ok

22:16:41.0722 6020	HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys

22:16:41.0729 6020	HidIr - ok

22:16:41.0808 6020	HidUsb (854ca287ab7faf949617a788306d967e) C:\Windows\system32\DRIVERS\hidusb.sys

22:16:41.0812 6020	HidUsb - ok

22:16:41.0865 6020	HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys

22:16:41.0874 6020	HpCISSs - ok

22:16:41.0908 6020	HTTP (406c027c18e98a396faa1963dad5ff70) C:\Windows\system32\drivers\HTTP.sys

22:16:41.0927 6020	HTTP - ok

22:16:42.0034 6020	i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys

22:16:42.0042 6020	i2omp - ok

22:16:42.0158 6020	i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys

22:16:42.0166 6020	i8042prt - ok

22:16:42.0276 6020	iaStor (e5a0034847537eaee3c00349d5c34c5f) C:\Windows\system32\DRIVERS\iaStor.sys

22:16:42.0279 6020	iaStor - ok

22:16:42.0328 6020	iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys

22:16:42.0342 6020	iaStorV - ok

22:16:42.0481 6020	igfx (038815297078d236d8cc064c295a74c6) C:\Windows\system32\DRIVERS\igdkmd32.sys

22:16:42.0518 6020	igfx - ok

22:16:42.0604 6020	iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys

22:16:42.0612 6020	iirsp - ok

22:16:42.0763 6020	IntcAzAudAddService (8a4341616976e47712b60f18c7049dcc) C:\Windows\system32\drivers\RTKVHDA.sys

22:16:42.0858 6020	IntcAzAudAddService - ok

22:16:42.0953 6020	intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys

22:16:42.0961 6020	intelide - ok

22:16:43.0001 6020	intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys

22:16:43.0002 6020	intelppm - ok

22:16:43.0106 6020	IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys

22:16:43.0114 6020	IpFilterDriver - ok

22:16:43.0131 6020	IpInIp - ok

22:16:43.0165 6020	IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys

22:16:43.0174 6020	IPMIDRV - ok

22:16:43.0188 6020	IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys

22:16:43.0200 6020	IPNAT - ok

22:16:43.0214 6020	IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys

22:16:43.0220 6020	IRENUM - ok

22:16:43.0235 6020	isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys

22:16:43.0245 6020	isapnp - ok

22:16:43.0280 6020	iScsiPrt (f247eec28317f6c739c16de420097301) C:\Windows\system32\DRIVERS\msiscsi.sys

22:16:43.0282 6020	iScsiPrt - ok

22:16:43.0361 6020	iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys

22:16:43.0369 6020	iteatapi - ok

22:16:43.0383 6020	iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys

22:16:43.0391 6020	iteraid - ok

22:16:43.0415 6020	kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys

22:16:43.0423 6020	kbdclass - ok

22:16:43.0449 6020	kbdhid (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\DRIVERS\kbdhid.sys

22:16:43.0454 6020	kbdhid - ok

22:16:43.0493 6020	KSecDD (5367dc846cae9639b899bfd13b97a8c9) C:\Windows\system32\Drivers\ksecdd.sys

22:16:43.0519 6020	KSecDD - ok

22:16:43.0621 6020	lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys

22:16:43.0629 6020	lltdio - ok

22:16:43.0690 6020	LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys

22:16:43.0700 6020	LSI_FC - ok

22:16:43.0716 6020	LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys

22:16:43.0728 6020	LSI_SAS - ok

22:16:43.0750 6020	LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys

22:16:43.0761 6020	LSI_SCSI - ok

22:16:43.0785 6020	luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys

22:16:43.0795 6020	luafv - ok

22:16:43.0902 6020	megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys

22:16:43.0909 6020	megasas - ok

22:16:43.0945 6020	MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys

22:16:43.0966 6020	MegaSR - ok

22:16:43.0993 6020	Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys

22:16:43.0994 6020	Modem - ok

22:16:44.0033 6020	monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys

22:16:44.0034 6020	monitor - ok

22:16:44.0108 6020	mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys

22:16:44.0119 6020	mouclass - ok

22:16:44.0173 6020	mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys

22:16:44.0180 6020	mouhid - ok

22:16:44.0221 6020	MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys

22:16:44.0231 6020	MountMgr - ok

22:16:44.0308 6020	mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys

22:16:44.0322 6020	mpio - ok

22:16:44.0369 6020	mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys

22:16:44.0378 6020	mpsdrv - ok

22:16:44.0413 6020	Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys

22:16:44.0421 6020	Mraid35x - ok

22:16:44.0445 6020	MRxDAV (ae3de84536b6799d2267443cec8edbb9) C:\Windows\system32\drivers\mrxdav.sys

22:16:44.0457 6020	MRxDAV - ok

22:16:44.0534 6020	mrxsmb (c4ad205530888404e2b5fc8d9319b119) C:\Windows\system32\DRIVERS\mrxsmb.sys

22:16:44.0550 6020	mrxsmb - ok

22:16:44.0604 6020	mrxsmb10 (67e55ced3fc143c82a8197988bfc1f9a) C:\Windows\system32\DRIVERS\mrxsmb10.sys

22:16:44.0618 6020	mrxsmb10 - ok

22:16:44.0636 6020	mrxsmb20 (3268b8c3fa92bfc086355c39b45e9cc9) C:\Windows\system32\DRIVERS\mrxsmb20.sys

22:16:44.0645 6020	mrxsmb20 - ok

22:16:44.0717 6020	msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys

22:16:44.0725 6020	msahci - ok

22:16:44.0796 6020	msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys

22:16:44.0807 6020	msdsm - ok

22:16:44.0832 6020	Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys

22:16:44.0842 6020	Msfs - ok

22:16:44.0868 6020	msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys

22:16:44.0876 6020	msisadrv - ok

22:16:44.0977 6020	MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys

22:16:44.0982 6020	MSKSSRV - ok

22:16:45.0015 6020	MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys

22:16:45.0021 6020	MSPCLOCK - ok

22:16:45.0042 6020	MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys

22:16:45.0047 6020	MSPQM - ok

22:16:45.0077 6020	MsRPC (b5614aecb05a9340aa0fb55bf561cc63) C:\Windows\system32\drivers\MsRPC.sys

22:16:45.0101 6020	MsRPC - ok

22:16:45.0200 6020	mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys

22:16:45.0201 6020	mssmbios - ok

22:16:45.0241 6020	MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys

22:16:45.0245 6020	MSTEE - ok

22:16:45.0272 6020	Mup (6dfd1d322de55b0b7db7d21b90bec49c) C:\Windows\system32\Drivers\mup.sys

22:16:45.0281 6020	Mup - ok

22:16:45.0397 6020	NativeWifiP (dd721f8635191132992e7ceaa3c43c84) C:\Windows\system32\DRIVERS\nwifi.sys

22:16:45.0406 6020	NativeWifiP - ok

22:16:45.0494 6020	NDIS (9bdc71790fa08f0a0b5f10462b1bd0b1) C:\Windows\system32\drivers\ndis.sys

22:16:45.0500 6020	NDIS - ok

22:16:45.0573 6020	NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys

22:16:45.0579 6020	NdisTapi - ok

22:16:45.0629 6020	Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys

22:16:45.0642 6020	Ndisuio - ok

22:16:45.0668 6020	NdisWan (3d14c3b3496f88890d431e8aa022a411) C:\Windows\system32\DRIVERS\ndiswan.sys

22:16:45.0681 6020	NdisWan - ok

22:16:45.0716 6020	NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys

22:16:45.0723 6020	NDProxy - ok

22:16:45.0812 6020	NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys

22:16:45.0819 6020	NetBIOS - ok

22:16:45.0860 6020	netbt (7c5fee5b1c5728507cd96fb4a13e7a02) C:\Windows\system32\DRIVERS\netbt.sys

22:16:45.0875 6020	netbt - ok

22:16:45.0974 6020	nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys

22:16:45.0984 6020	nfrd960 - ok

22:16:46.0093 6020	Npfs (ecb5003f484f9ed6c608d6d6c7886cbb) C:\Windows\system32\drivers\Npfs.sys

22:16:46.0101 6020	Npfs - ok

22:16:46.0199 6020	nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys

22:16:46.0218 6020	nsiproxy - ok

22:16:46.0285 6020	Ntfs (b4effe29eb4f15538fd8a9681108492d) C:\Windows\system32\drivers\Ntfs.sys

22:16:46.0321 6020	Ntfs - ok

22:16:46.0381 6020	ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys

22:16:46.0386 6020	ntrigdigi - ok

22:16:46.0441 6020	Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys

22:16:46.0445 6020	Null - ok

22:16:46.0464 6020	nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys

22:16:46.0473 6020	nvraid - ok

22:16:46.0489 6020	nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys

22:16:46.0499 6020	nvstor - ok

22:16:46.0528 6020	nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys

22:16:46.0541 6020	nv_agp - ok

22:16:46.0620 6020	NwlnkFlt - ok

22:16:46.0687 6020	NwlnkFwd - ok

22:16:46.0797 6020	ohci1394 (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys

22:16:46.0799 6020	ohci1394 - ok

22:16:46.0914 6020	Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys

22:16:46.0924 6020	Parport - ok

22:16:47.0024 6020	partmgr (3b38467e7c3daed009dfe359e17f139f) C:\Windows\system32\drivers\partmgr.sys

22:16:47.0036 6020	partmgr - ok

22:16:47.0126 6020	Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys

22:16:47.0144 6020	Parvdm - ok

22:16:47.0246 6020	pci (01b94418deb235dff777cc80076354b4) C:\Windows\system32\drivers\pci.sys

22:16:47.0262 6020	pci - ok

22:16:47.0309 6020	pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys

22:16:47.0318 6020	pciide - ok

22:16:47.0339 6020	pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys

22:16:47.0356 6020	pcmcia - ok

22:16:47.0426 6020	PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys

22:16:47.0473 6020	PEAUTH - ok

22:16:47.0610 6020	PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys

22:16:47.0619 6020	PptpMiniport - ok

22:16:47.0658 6020	Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys

22:16:47.0665 6020	Processor - ok

22:16:47.0713 6020	PSched (a114cfe308c24b8235b03cfdffe11e99) C:\Windows\system32\DRIVERS\pacer.sys

22:16:47.0714 6020	PSched - ok

22:16:47.0815 6020	PxHelp20 (f7bb4e7a7c02ab4a2672937e124e306e) C:\Windows\system32\Drivers\PxHelp20.sys

22:16:47.0826 6020	PxHelp20 - ok

22:16:47.0897 6020	ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys

22:16:47.0939 6020	ql2300 - ok

22:16:48.0027 6020	ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys

22:16:48.0037 6020	ql40xx - ok

22:16:48.0075 6020	QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys

22:16:48.0093 6020	QWAVEdrv - ok

22:16:48.0128 6020	RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys

22:16:48.0132 6020	RasAcd - ok

22:16:48.0228 6020	Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys

22:16:48.0245 6020	Rasl2tp - ok

22:16:48.0287 6020	RasPppoe (3e9d9b048107b40d87b97df2e48e0744) C:\Windows\system32\DRIVERS\raspppoe.sys

22:16:48.0295 6020	RasPppoe - ok

22:16:48.0325 6020	RasSstp (a7d141684e9500ac928a772ed8e6b671) C:\Windows\system32\DRIVERS\rassstp.sys

22:16:48.0334 6020	RasSstp - ok

22:16:48.0374 6020	rdbss (6e1c5d0457622f9ee35f683110e93d14) C:\Windows\system32\DRIVERS\rdbss.sys

22:16:48.0391 6020	rdbss - ok

22:16:48.0510 6020	RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys

22:16:48.0515 6020	RDPCDD - ok

22:16:48.0582 6020	rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys

22:16:48.0602 6020	rdpdr - ok

22:16:48.0635 6020	RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys

22:16:48.0641 6020	RDPENCDD - ok

22:16:48.0740 6020	RDPWD (e1c18f4097a5abcec941dc4b2f99db7e) C:\Windows\system32\drivers\RDPWD.sys

22:16:48.0768 6020	RDPWD - ok

22:16:48.0856 6020	rimmptsk (c2ef513bbe069f0d4ee0938a76f975d3) C:\Windows\system32\DRIVERS\rimmptsk.sys

22:16:48.0862 6020	rimmptsk - ok

22:16:48.0931 6020	rimsptsk (c398bca91216755b098679a8da8a2300) C:\Windows\system32\DRIVERS\rimsptsk.sys

22:16:48.0939 6020	rimsptsk - ok

22:16:48.0978 6020	rismxdp (2a2554cb24506e0a0508fc395c4a1b42) C:\Windows\system32\DRIVERS\rixdptsk.sys

22:16:48.0985 6020	rismxdp - ok

22:16:49.0022 6020	rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys

22:16:49.0031 6020	rspndr - ok

22:16:49.0086 6020	RTL8169 (8cca591019216e9523e3cb385ce643e6) C:\Windows\system32\DRIVERS\Rtlh86.sys

22:16:49.0094 6020	RTL8169 - ok

22:16:49.0171 6020	sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys

22:16:49.0181 6020	sbp2port - ok

22:16:49.0237 6020	sdbus (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys

22:16:49.0248 6020	sdbus - ok

22:16:49.0278 6020	secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys

22:16:49.0287 6020	secdrv - ok

22:16:49.0313 6020	Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys

22:16:49.0318 6020	Serenum - ok

22:16:49.0350 6020	Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys

22:16:49.0360 6020	Serial - ok

22:16:49.0420 6020	sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys

22:16:49.0428 6020	sermouse - ok

22:16:49.0461 6020	sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\DRIVERS\sffdisk.sys

22:16:49.0468 6020	sffdisk - ok

22:16:49.0483 6020	sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys

22:16:49.0490 6020	sffp_mmc - ok

22:16:49.0506 6020	sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\DRIVERS\sffp_sd.sys

22:16:49.0512 6020	sffp_sd - ok

22:16:49.0528 6020	sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys

22:16:49.0535 6020	sfloppy - ok

22:16:49.0558 6020	sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys

22:16:49.0571 6020	sisagp - ok

22:16:49.0585 6020	SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys

22:16:49.0594 6020	SiSRaid2 - ok

22:16:49.0630 6020	SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys

22:16:49.0639 6020	SiSRaid4 - ok

22:16:49.0679 6020	Smb (031e6bcd53c9b2b9ace111eafec347b6) C:\Windows\system32\DRIVERS\smb.sys

22:16:49.0687 6020	Smb - ok

22:16:49.0738 6020	spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys

22:16:49.0760 6020	spldr - ok

22:16:49.0855 6020	srv (3d7c04aba41ac96ba7e9d123ec8f7fa3) C:\Windows\system32\DRIVERS\srv.sys

22:16:49.0875 6020	srv - ok

22:16:49.0929 6020	srv2 (805fac010405ad3f82ef8df0bb035d81) C:\Windows\system32\DRIVERS\srv2.sys

22:16:49.0942 6020	srv2 - ok

22:16:49.0960 6020	srvnet (f63a0a58aafe34d7a1a0a74abccdd9c0) C:\Windows\system32\DRIVERS\srvnet.sys

22:16:49.0977 6020	srvnet - ok

22:16:50.0015 6020	ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys

22:16:50.0024 6020	ssmdrv - ok

22:16:50.0061 6020	swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys

22:16:50.0070 6020	swenum - ok

22:16:50.0167 6020	Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys

22:16:50.0177 6020	Symc8xx - ok

22:16:50.0217 6020	Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys

22:16:50.0227 6020	Sym_hi - ok

22:16:50.0246 6020	Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys

22:16:50.0259 6020	Sym_u3 - ok

22:16:50.0297 6020	SynTP (55f6e55cc2430ca8713387106fa79817) C:\Windows\system32\DRIVERS\SynTP.sys

22:16:50.0318 6020	SynTP - ok

22:16:50.0445 6020	Tcpip (fc6e2835d667774d409c7c7021eaf9c4) C:\Windows\system32\drivers\tcpip.sys

22:16:50.0475 6020	Tcpip - ok

22:16:50.0613 6020	Tcpip6 (fc6e2835d667774d409c7c7021eaf9c4) C:\Windows\system32\DRIVERS\tcpip.sys

22:16:50.0620 6020	Tcpip6 - ok

22:16:50.0712 6020	tcpipreg (d4a2e4a4b011f3a883af77315a5ae76b) C:\Windows\system32\drivers\tcpipreg.sys

22:16:50.0719 6020	tcpipreg - ok

22:16:50.0786 6020	tdcmdpst (1825bceb47bf41c5a9f0e44de82fc27a) C:\Windows\system32\DRIVERS\tdcmdpst.sys

22:16:50.0791 6020	tdcmdpst - ok

22:16:50.0822 6020	TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys

22:16:50.0840 6020	TDPIPE - ok

22:16:50.0934 6020	TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys

22:16:50.0941 6020	TDTCP - ok

22:16:50.0967 6020	tdx (d09276b1fab033ce1d40dcbdf303d10f) C:\Windows\system32\DRIVERS\tdx.sys

22:16:50.0976 6020	tdx - ok

22:16:51.0013 6020	TermDD (a048056f5e1a96a9bf3071b91741a5aa) C:\Windows\system32\DRIVERS\termdd.sys

22:16:51.0022 6020	TermDD - ok

22:16:51.0198 6020	Tosrfcom - ok

22:16:51.0279 6020	tosrfec (5c4103544612e5011ef46301b93d1aa6) C:\Windows\system32\DRIVERS\tosrfec.sys

22:16:51.0283 6020	tosrfec - ok

22:16:51.0353 6020	tos_sps32 (1ea5f27c29405bf49799feca77186da9) C:\Windows\system32\DRIVERS\tos_sps32.sys

22:16:51.0367 6020	tos_sps32 - ok

22:16:51.0419 6020	tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys

22:16:51.0425 6020	tssecsrv - ok

22:16:51.0498 6020	tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys

22:16:51.0500 6020	tunmp - ok

22:16:51.0587 6020	tunnel (119b8184e106baedc83fce5ddf3950da) C:\Windows\system32\DRIVERS\tunnel.sys

22:16:51.0589 6020	tunnel - ok

22:16:51.0674 6020	TVALZ (792a8b80f8188aba4b2be271583f3e46) C:\Windows\system32\DRIVERS\TVALZ_O.SYS

22:16:51.0681 6020	TVALZ - ok

22:16:51.0778 6020	uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys

22:16:51.0786 6020	uagp35 - ok

22:16:51.0894 6020	udfs (8b5088058fa1d1cd897a2113ccff6c58) C:\Windows\system32\DRIVERS\udfs.sys

22:16:51.0907 6020	udfs - ok

22:16:52.0010 6020	uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys

22:16:52.0019 6020	uliagpkx - ok

22:16:52.0123 6020	uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys

22:16:52.0137 6020	uliahci - ok

22:16:52.0226 6020	UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys

22:16:52.0236 6020	UlSata - ok

22:16:52.0323 6020	ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys

22:16:52.0335 6020	ulsata2 - ok

22:16:52.0433 6020	umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys

22:16:52.0440 6020	umbus - ok

22:16:52.0537 6020	usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys

22:16:52.0545 6020	usbccgp - ok

22:16:52.0640 6020	usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys

22:16:52.0651 6020	usbcir - ok

22:16:52.0738 6020	usbehci (cebe90821810e76320155beba722fcf9) C:\Windows\system32\DRIVERS\usbehci.sys

22:16:52.0745 6020	usbehci - ok

22:16:52.0835 6020	usbhub (cc6b28e4ce39951357963119ce47b143) C:\Windows\system32\DRIVERS\usbhub.sys

22:16:52.0846 6020	usbhub - ok

22:16:52.0906 6020	usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys

22:16:52.0911 6020	usbohci - ok

22:16:52.0932 6020	usbprint (b51e52acf758be00ef3a58ea452fe360) C:\Windows\system32\drivers\usbprint.sys

22:16:52.0937 6020	usbprint - ok

22:16:52.0966 6020	USBSTOR (87ba6b83c5d19b69160968d07d6e2982) C:\Windows\system32\DRIVERS\USBSTOR.SYS

22:16:52.0972 6020	USBSTOR - ok

22:16:53.0044 6020	usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys

22:16:53.0050 6020	usbuhci - ok

22:16:53.0161 6020	usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys

22:16:53.0172 6020	usbvideo - ok

22:16:53.0262 6020	UVCFTR (8c5094a8ab24de7496c7c19942f2df04) C:\Windows\system32\Drivers\UVCFTR_S.SYS

22:16:53.0268 6020	UVCFTR - ok

22:16:53.0356 6020	vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys

22:16:53.0362 6020	vga - ok

22:16:53.0450 6020	VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys

22:16:53.0455 6020	VgaSave - ok

22:16:53.0547 6020	viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys

22:16:53.0557 6020	viaagp - ok

22:16:53.0649 6020	ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys

22:16:53.0659 6020	ViaC7 - ok

22:16:53.0750 6020	viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys

22:16:53.0758 6020	viaide - ok

22:16:53.0852 6020	volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys

22:16:53.0863 6020	volmgr - ok

22:16:53.0909 6020	volmgrx (98f5ffe6316bd74e9e2c97206c190196) C:\Windows\system32\drivers\volmgrx.sys

22:16:53.0929 6020	volmgrx - ok

22:16:53.0947 6020	volsnap (d8b4a53dd2769f226b3eb374374987c9) C:\Windows\system32\drivers\volsnap.sys

22:16:53.0965 6020	volsnap - ok

22:16:54.0006 6020	vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys

22:16:54.0019 6020	vsmraid - ok

22:16:54.0053 6020	WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys

22:16:54.0060 6020	WacomPen - ok

22:16:54.0092 6020	Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys

22:16:54.0101 6020	Wanarp - ok

22:16:54.0116 6020	Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys

22:16:54.0118 6020	Wanarpv6 - ok

22:16:54.0198 6020	Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys

22:16:54.0207 6020	Wd - ok

22:16:54.0319 6020	Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys

22:16:54.0349 6020	Wdf01000 - ok

22:16:54.0454 6020	WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\drivers\wmiacpi.sys

22:16:54.0458 6020	WmiAcpi - ok

22:16:54.0493 6020	ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys

22:16:54.0498 6020	ws2ifsl - ok

22:16:54.0556 6020	WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys

22:16:54.0558 6020	WUDFRd - ok

22:16:54.0588 6020	MBR (0x1B8) (e2623ec53824142420ae2f36878e5488) \Device\Harddisk0\DR0

22:16:54.0613 6020	\Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - infected

22:16:54.0613 6020	\Device\Harddisk0\DR0 - detected Rootkit.Win32.TDSS.tdl4 (0)

22:16:54.0643 6020	Boot (0x1200) (c7bf61637b59786135d07238d459416e) \Device\Harddisk0\DR0\Partition0

22:16:54.0645 6020	\Device\Harddisk0\DR0\Partition0 - ok

22:16:54.0668 6020	Boot (0x1200) (e3e0be2babd270a5b07a361e5ac9ead8) \Device\Harddisk0\DR0\Partition1

22:16:54.0669 6020	\Device\Harddisk0\DR0\Partition1 - ok

22:16:54.0670 6020	============================================================

22:16:54.0670 6020	Scan finished

22:16:54.0670 6020	============================================================

22:16:54.0684 4128	Detected object count: 1

22:16:54.0684 4128	Actual detected object count: 1

22:17:11.0581 4128	\Device\Harddisk0\DR0\# - copied to quarantine

22:17:11.0582 4128	\Device\Harddisk0\DR0 - copied to quarantine

22:17:11.0588 4128	\Device\Harddisk0\DR0\TDLFS\cfg.ini - copied to quarantine

22:17:11.0592 4128	\Device\Harddisk0\DR0\TDLFS\mbr - copied to quarantine

22:17:11.0595 4128	\Device\Harddisk0\DR0\TDLFS\bckfg.tmp - copied to quarantine

22:17:11.0629 4128	\Device\Harddisk0\DR0\TDLFS\cmd.dll - copied to quarantine

22:17:11.0632 4128	\Device\Harddisk0\DR0\TDLFS\ldr16 - copied to quarantine

22:17:11.0637 4128	\Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine

22:17:11.0642 4128	\Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine

22:17:11.0653 4128	\Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine

22:17:11.0661 4128	\Device\Harddisk0\DR0\TDLFS\cmd64.dll - copied to quarantine

22:17:11.0677 4128	\Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine

22:17:11.0692 4128	\Device\Harddisk0\DR0\TDLFS\keywords - copied to quarantine

22:17:11.0765 4128	\Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - will be cured on reboot

22:17:11.0765 4128	\Device\Harddisk0\DR0 - ok

22:17:11.0772 4128	\Device\Harddisk0\DR0 ( Rootkit.Win32.TDSS.tdl4 ) - User select action: Cure 

22:17:17.0452 2596	Deinitialize success

. Nie znam się zbytnio na logach ale coś widzę że jest wirus. Co można z tym zrobić?.


(jessica) #4

TDSSKiller chyba załatwił sprawę.

Zrób jeszcze raz log z niego - sprawdzimy, czy już tego nie wykryje.

jessi


(asziatko) #5

Witam,

Faktycznie nie ma już wirusa, przeskanowałem raz jeszcze komputer TDSSKiller i nawet widać po tym że program antywirusowy nie rzuca info o wirusie BOO/TDss.A.

Dzięki wielkie za pomoc.