Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

error 404 micro httpd


  • Please log in to reply
4 replies to this topic

#1 noob2012

noob2012

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:02:33 PM

Posted 13 September 2012 - 04:06 PM

Hello,

Firstly i apologise for being a total noob regarding this issue.

for around two weeks anytime i connected to my sky broadband using there sagem router, using any browser or search engine all that has come up has a dodgy looking pink screen with the text error 404, not available and micro httpd underneath. finally got a new router and can access the internet again but i was trying to install macafee and it was unable to install as it found threats that it could not remove, im really at a loss and would appreciate any help at all.

regards

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:01:33 PM

Posted 13 September 2012 - 09:15 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 noob2012

noob2012
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:02:33 PM

Posted 19 September 2012 - 09:08 AM

Hello,

Many apologies for such a late reply, got called away for a few days.

Many thanks for your help, i have downloaded and scanned and here are the logs:

TDSSKILLER: 11:57:11.0733 1452 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
11:57:12.0945 1452 ============================================================
11:57:12.0945 1452 Current date / time: 2012/09/19 11:57:12.0945
11:57:12.0945 1452 SystemInfo:
11:57:12.0945 1452
11:57:12.0945 1452 OS Version: 5.1.2600 ServicePack: 3.0
11:57:12.0945 1452 Product type: Workstation
11:57:12.0945 1452 ComputerName: NEW-E9CC713894C
11:57:12.0945 1452 UserName: Administrator
11:57:12.0945 1452 Windows directory: C:\WINDOWS
11:57:12.0945 1452 System windows directory: C:\WINDOWS
11:57:12.0945 1452 Processor architecture: Intel x86
11:57:12.0945 1452 Number of processors: 1
11:57:12.0945 1452 Page size: 0x1000
11:57:12.0945 1452 Boot type: Normal boot
11:57:12.0945 1452 ============================================================
11:57:17.0522 1452 Drive \Device\Harddisk0\DR0 - Size: 0x950A60000 (37.26 Gb), SectorSize: 0x200, Cylinders: 0x1300, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:57:17.0592 1452 ============================================================
11:57:17.0592 1452 \Device\Harddisk0\DR0:
11:57:17.0592 1452 MBR partitions:
11:57:17.0592 1452 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4A81400
11:57:17.0592 1452 ============================================================
11:57:17.0782 1452 C: <-> \Device\Harddisk0\DR0\Partition1
11:57:17.0782 1452 ============================================================
11:57:17.0782 1452 Initialize success
11:57:17.0782 1452 ============================================================
11:57:51.0390 3920 ============================================================
11:57:51.0390 3920 Scan started
11:57:51.0390 3920 Mode: Manual; TDLFS;
11:57:51.0390 3920 ============================================================
11:57:53.0033 3920 ================ Scan system memory ========================
11:57:53.0043 3920 System memory - ok
11:57:53.0043 3920 ================ Scan services =============================
11:57:53.0854 3920 Abiosdsk - ok
11:57:53.0864 3920 abp480n5 - ok
11:57:53.0984 3920 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:57:54.0014 3920 ACPI - ok
11:57:54.0104 3920 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
11:57:54.0114 3920 ACPIEC - ok
11:57:54.0945 3920 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:57:55.0076 3920 AdobeFlashPlayerUpdateSvc - ok
11:57:55.0086 3920 adpu160m - ok
11:57:55.0136 3920 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
11:57:55.0146 3920 aec - ok
11:57:55.0376 3920 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
11:57:55.0446 3920 AFD - ok
11:57:55.0907 3920 [ 55188B7C84A4C5E73E0680F744C4561D ] AgereSoftModem C:\WINDOWS\system32\DRIVERS\AGRSM.sys
11:57:56.0117 3920 AgereSoftModem - ok
11:57:56.0137 3920 Aha154x - ok
11:57:56.0157 3920 aic78u2 - ok
11:57:56.0167 3920 aic78xx - ok
11:57:56.0257 3920 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
11:57:56.0267 3920 Alerter - ok
11:57:56.0317 3920 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
11:57:56.0347 3920 ALG - ok
11:57:56.0367 3920 AliIde - ok
11:57:56.0377 3920 amsint - ok
11:57:56.0978 3920 [ 6EAC742B758E110DD12EBC8446C07B6C ] Amsp C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
11:57:56.0988 3920 Amsp - ok
11:57:57.0169 3920 [ F401929EE0CC92BFE7F15161CA535383 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:57:57.0179 3920 Apple Mobile Device - ok
11:57:57.0229 3920 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
11:57:57.0229 3920 AppMgmt - ok
11:57:57.0269 3920 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
11:57:57.0269 3920 Arp1394 - ok
11:57:57.0279 3920 asc - ok
11:57:57.0289 3920 asc3350p - ok
11:57:57.0309 3920 asc3550 - ok
11:57:57.0349 3920 [ ED8CEE58C1E4C5893F5B2FD686A272BF ] Aspi32 C:\WINDOWS\system32\drivers\Aspi32.sys
11:57:57.0349 3920 Aspi32 - ok
11:57:57.0429 3920 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
11:57:57.0469 3920 aspnet_state - ok
11:57:57.0489 3920 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:57:57.0489 3920 AsyncMac - ok
11:57:57.0529 3920 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
11:57:57.0529 3920 atapi - ok
11:57:57.0539 3920 Atdisk - ok
11:57:57.0579 3920 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:57:57.0579 3920 Atmarpc - ok
11:57:57.0629 3920 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
11:57:57.0639 3920 AudioSrv - ok
11:57:57.0669 3920 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
11:57:57.0669 3920 audstub - ok
11:57:57.0729 3920 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
11:57:57.0739 3920 Beep - ok
11:57:57.0789 3920 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
11:57:57.0990 3920 BITS - ok
11:57:58.0090 3920 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:57:58.0150 3920 Bonjour Service - ok
11:57:58.0210 3920 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
11:57:58.0210 3920 Browser - ok
11:57:58.0280 3920 [ D4B47530831024434D780E6BE25F0AB7 ] BtnHnd C:\Program Files\Fujitsu\BtnHnd\BtnHnd.sys
11:57:58.0290 3920 BtnHnd - ok
11:57:58.0340 3920 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
11:57:58.0340 3920 cbidf2k - ok
11:57:58.0370 3920 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
11:57:58.0370 3920 CCDECODE - ok
11:57:58.0380 3920 cd20xrnt - ok
11:57:58.0400 3920 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
11:57:58.0400 3920 Cdaudio - ok
11:57:58.0450 3920 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
11:57:58.0450 3920 Cdfs - ok
11:57:58.0480 3920 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:57:58.0480 3920 Cdrom - ok
11:57:58.0490 3920 Changer - ok
11:57:58.0521 3920 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
11:57:58.0521 3920 CiSvc - ok
11:57:58.0561 3920 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
11:57:58.0561 3920 ClipSrv - ok
11:57:58.0601 3920 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:57:58.0711 3920 clr_optimization_v2.0.50727_32 - ok
11:57:58.0751 3920 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
11:57:58.0751 3920 CmBatt - ok
11:57:58.0751 3920 CmdIde - ok
11:57:58.0781 3920 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
11:57:58.0781 3920 Compbatt - ok
11:57:58.0791 3920 COMSysApp - ok
11:57:58.0811 3920 Cpqarray - ok
11:57:58.0851 3920 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
11:57:58.0861 3920 CryptSvc - ok
11:57:58.0871 3920 dac2w2k - ok
11:57:58.0881 3920 dac960nt - ok
11:57:58.0991 3920 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
11:57:59.0041 3920 DcomLaunch - ok
11:57:59.0081 3920 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
11:57:59.0091 3920 Dhcp - ok
11:57:59.0121 3920 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
11:57:59.0141 3920 Disk - ok
11:57:59.0161 3920 dmadmin - ok
11:57:59.0232 3920 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
11:57:59.0332 3920 dmboot - ok
11:57:59.0372 3920 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
11:57:59.0372 3920 dmio - ok
11:57:59.0422 3920 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
11:57:59.0422 3920 dmload - ok
11:57:59.0452 3920 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
11:57:59.0452 3920 dmserver - ok
11:57:59.0522 3920 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
11:57:59.0522 3920 DMusic - ok
11:57:59.0562 3920 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
11:57:59.0582 3920 Dnscache - ok
11:57:59.0762 3920 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
11:57:59.0772 3920 Dot3svc - ok
11:57:59.0782 3920 dpti2o - ok
11:57:59.0802 3920 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
11:57:59.0812 3920 drmkaud - ok
11:57:59.0842 3920 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
11:57:59.0842 3920 EapHost - ok
11:57:59.0902 3920 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
11:57:59.0902 3920 ERSvc - ok
11:57:59.0953 3920 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
11:57:59.0953 3920 Eventlog - ok
11:58:00.0023 3920 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll
11:58:00.0053 3920 EventSystem - ok
11:58:00.0093 3920 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
11:58:00.0103 3920 Fastfat - ok
11:58:00.0173 3920 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
11:58:00.0213 3920 FastUserSwitchingCompatibility - ok
11:58:00.0233 3920 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
11:58:00.0233 3920 Fdc - ok
11:58:00.0253 3920 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
11:58:00.0253 3920 Fips - ok
11:58:00.0303 3920 [ DDD41C727F328AF67518F7CB168F2A8D ] FjBtHS_simple C:\WINDOWS\system32\drivers\FjBtHS.sys
11:58:00.0303 3920 FjBtHS_simple - ok
11:58:00.0323 3920 [ 3CA53305C648376294B3E4EE25D42198 ] FjBtSco C:\WINDOWS\system32\Drivers\FjBtSco.sys
11:58:00.0323 3920 FjBtSco - ok
11:58:00.0353 3920 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
11:58:00.0353 3920 Flpydisk - ok
11:58:00.0403 3920 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
11:58:00.0413 3920 FltMgr - ok
11:58:00.0503 3920 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
11:58:00.0513 3920 FontCache3.0.0.0 - ok
11:58:00.0543 3920 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:58:00.0543 3920 Fs_Rec - ok
11:58:00.0563 3920 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:58:00.0563 3920 Ftdisk - ok
11:58:00.0604 3920 [ 00845DCD64FE6348DDF7890C310C17B9 ] FUJ02B1 C:\WINDOWS\system32\DRIVERS\FUJ02B1.sys
11:58:00.0614 3920 FUJ02B1 - ok
11:58:00.0634 3920 [ 4AA9DB198679CBC97C322393735BAF08 ] FUJ02E1 C:\WINDOWS\system32\Drivers\FUJ02E1.sys
11:58:00.0634 3920 FUJ02E1 - ok
11:58:00.0684 3920 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:58:00.0684 3920 GEARAspiWDM - ok
11:58:00.0734 3920 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:58:00.0734 3920 Gpc - ok
11:58:00.0824 3920 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
11:58:00.0824 3920 helpsvc - ok
11:58:00.0854 3920 [ DEB04DA35CC871B6D309B77E1443C796 ] HidServ C:\WINDOWS\System32\hidserv.dll
11:58:00.0884 3920 HidServ - ok
11:58:00.0914 3920 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
11:58:00.0914 3920 HidUsb - ok
11:58:00.0944 3920 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
11:58:00.0944 3920 hkmsvc - ok
11:58:00.0954 3920 hpn - ok
11:58:01.0194 3920 [ EAC76A9283E8B2192351E5C0B3820624 ] HsdService C:\Program Files\Virgin Media\Digital Home Support\HsdService.exe
11:58:01.0264 3920 HsdService - ok
11:58:01.0375 3920 [ BEF7D9760E0B00973E0F7EFCE68875C1 ] hshld C:\Program Files\Hotspot Shield\bin\openvpnas.exe
11:58:01.0455 3920 hshld - ok
11:58:01.0525 3920 [ 6361F419C1DFD5141702A90D93DBF569 ] HssDrv C:\WINDOWS\system32\DRIVERS\HssDrv.sys
11:58:01.0525 3920 HssDrv - ok
11:58:03.0187 3920 [ 01947D3CBAFCFEF066E1EB45DADC182D ] HssSrv C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
11:58:03.0287 3920 HssSrv - ok
11:58:03.0337 3920 [ 5527CF1FF457E819112EAC7DC0AA69CB ] HssTrayService C:\Program Files\Hotspot Shield\bin\HssTrayService.EXE
11:58:03.0347 3920 HssTrayService - ok
11:58:03.0438 3920 [ F4C1B3C4847BBA031ACFDCE5A3F0CFCB ] HssWd C:\Program Files\Hotspot Shield\bin\hsswd.exe
11:58:03.0548 3920 HssWd - ok
11:58:03.0888 3920 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
11:58:03.0918 3920 HTTP - ok
11:58:03.0958 3920 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
11:58:03.0968 3920 HTTPFilter - ok
11:58:03.0968 3920 i2omgmt - ok
11:58:03.0988 3920 i2omp - ok
11:58:04.0028 3920 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:58:04.0028 3920 i8042prt - ok
11:58:04.0068 3920 [ B076EB745EC3C669D4AE953225366F1D ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
11:58:04.0068 3920 ialm - ok
11:58:06.0332 3920 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:58:06.0963 3920 idsvc - ok
11:58:07.0033 3920 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
11:58:07.0053 3920 Imapi - ok
11:58:07.0163 3920 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
11:58:07.0273 3920 ImapiService - ok
11:58:07.0303 3920 ini910u - ok
11:58:07.0443 3920 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
11:58:07.0463 3920 IntelIde - ok
11:58:07.0594 3920 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
11:58:07.0684 3920 intelppm - ok
11:58:07.0844 3920 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
11:58:07.0864 3920 Ip6Fw - ok
11:58:07.0904 3920 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:58:07.0984 3920 IpFilterDriver - ok
11:58:08.0044 3920 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:58:08.0064 3920 IpInIp - ok
11:58:08.0244 3920 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:58:08.0385 3920 IpNat - ok
11:58:09.0106 3920 [ E6BE7A41A28D8F2DB174957454D32448 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:58:09.0576 3920 iPod Service - ok
11:58:09.0626 3920 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:58:09.0687 3920 IPSec - ok
11:58:10.0568 3920 [ ACA5E7B54409F9CB5EED97ED0C81120E ] irda C:\WINDOWS\system32\DRIVERS\irda.sys
11:58:10.0648 3920 irda - ok
11:58:10.0678 3920 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
11:58:10.0678 3920 IRENUM - ok
11:58:10.0718 3920 [ 49CC4533CE897CB2E93C1E84A818FDE5 ] Irmon C:\WINDOWS\System32\irmon.dll
11:58:10.0728 3920 Irmon - ok
11:58:10.0768 3920 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:58:10.0768 3920 isapnp - ok
11:58:10.0908 3920 [ 9DBA73C2F1E76EC4CB837E67C5743596 ] JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe
11:58:10.0918 3920 JavaQuickStarterService - ok
11:58:10.0938 3920 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:58:10.0938 3920 Kbdclass - ok
11:58:10.0968 3920 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
11:58:10.0978 3920 kmixer - ok
11:58:11.0018 3920 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
11:58:11.0028 3920 KSecDD - ok
11:58:11.0059 3920 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
11:58:11.0069 3920 lanmanserver - ok
11:58:11.0109 3920 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
11:58:11.0119 3920 lanmanworkstation - ok
11:58:11.0139 3920 lbrtfdc - ok
11:58:11.0179 3920 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
11:58:11.0179 3920 LmHosts - ok
11:58:11.0199 3920 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
11:58:11.0209 3920 Messenger - ok
11:58:11.0299 3920 [ 3F138A1C8A0659F329F242D1E389B2CF ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
11:58:11.0369 3920 mfehidk - ok
11:58:11.0509 3920 [ 41FE2F288E05A6C8AB85DD56770FFBAD ] mferkdk C:\WINDOWS\system32\drivers\mferkdk.sys
11:58:11.0559 3920 mferkdk - ok
11:58:11.0619 3920 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
11:58:11.0750 3920 mnmdd - ok
11:58:11.0900 3920 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
11:58:11.0950 3920 mnmsrvc - ok
11:58:12.0040 3920 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
11:58:12.0050 3920 Modem - ok
11:58:12.0100 3920 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:58:12.0170 3920 Mouclass - ok
11:58:12.0260 3920 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
11:58:12.0270 3920 MountMgr - ok
11:58:12.0491 3920 [ 15D5398EED42C2504BB3D4FC875C15D1 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:58:12.0611 3920 MozillaMaintenance - ok
11:58:12.0621 3920 mraid35x - ok
11:58:12.0751 3920 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:58:12.0851 3920 MRxDAV - ok
11:58:13.0031 3920 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:58:13.0272 3920 MRxSmb - ok
11:58:13.0372 3920 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
11:58:13.0422 3920 MSDTC - ok
11:58:13.0452 3920 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
11:58:13.0472 3920 Msfs - ok
11:58:13.0482 3920 MSIServer - ok
11:58:13.0622 3920 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:58:13.0622 3920 MSKSSRV - ok
11:58:13.0692 3920 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:58:13.0712 3920 MSPCLOCK - ok
11:58:13.0772 3920 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
11:58:13.0802 3920 MSPQM - ok
11:58:13.0843 3920 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:58:13.0853 3920 mssmbios - ok
11:58:13.0913 3920 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
11:58:13.0963 3920 MSTEE - ok
11:58:14.0053 3920 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
11:58:14.0083 3920 Mup - ok
11:58:14.0103 3920 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
11:58:14.0103 3920 NABTSFEC - ok
11:58:14.0163 3920 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
11:58:14.0233 3920 napagent - ok
11:58:14.0263 3920 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
11:58:14.0283 3920 NDIS - ok
11:58:14.0333 3920 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
11:58:14.0353 3920 NdisIP - ok
11:58:14.0393 3920 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:58:14.0393 3920 NdisTapi - ok
11:58:14.0423 3920 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:58:14.0423 3920 Ndisuio - ok
11:58:14.0453 3920 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:58:14.0453 3920 NdisWan - ok
11:58:14.0524 3920 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
11:58:14.0524 3920 NDProxy - ok
11:58:14.0544 3920 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
11:58:14.0544 3920 NetBIOS - ok
11:58:14.0564 3920 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
11:58:14.0574 3920 NetBT - ok
11:58:14.0644 3920 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
11:58:14.0664 3920 NetDDE - ok
11:58:15.0004 3920 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
11:58:15.0004 3920 NetDDEdsdm - ok
11:58:15.0054 3920 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
11:58:15.0054 3920 Netlogon - ok
11:58:15.0084 3920 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
11:58:15.0104 3920 Netman - ok
11:58:15.0164 3920 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:58:15.0174 3920 NetTcpPortSharing - ok
11:58:15.0194 3920 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
11:58:15.0194 3920 NIC1394 - ok
11:58:15.0225 3920 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
11:58:15.0295 3920 Nla - ok
11:58:15.0375 3920 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
11:58:15.0385 3920 Npfs - ok
11:58:15.0485 3920 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
11:58:15.0515 3920 Ntfs - ok
11:58:15.0545 3920 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
11:58:15.0545 3920 NtLmSsp - ok
11:58:15.0605 3920 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
11:58:15.0635 3920 NtmsSvc - ok
11:58:15.0665 3920 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
11:58:15.0665 3920 Null - ok
11:58:15.0695 3920 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:58:15.0695 3920 NwlnkFlt - ok
11:58:15.0705 3920 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:58:15.0705 3920 NwlnkFwd - ok
11:58:15.0735 3920 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
11:58:15.0735 3920 ohci1394 - ok
11:58:15.0966 3920 [ 66BCD38559A59A0CE9C0DE4F24692929 ] OIIBTUSB C:\WINDOWS\system32\Drivers\OIIBTUSB.sys
11:58:16.0196 3920 OIIBTUSB - ok
11:58:16.0246 3920 [ 6EA85B6BE0E0CEE0BA790527A051E770 ] OiiNd2kU C:\WINDOWS\system32\DRIVERS\oiind2ku.sys
11:58:16.0266 3920 OiiNd2kU - ok
11:58:16.0306 3920 [ 4D1E1B0C6A45EE72BC5A72547783D00F ] Oiivcomu C:\WINDOWS\system32\Drivers\oiivcomu.sys
11:58:16.0316 3920 Oiivcomu - ok
11:58:16.0406 3920 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
11:58:16.0436 3920 Parport - ok
11:58:16.0486 3920 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
11:58:16.0506 3920 PartMgr - ok
11:58:16.0556 3920 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
11:58:16.0586 3920 ParVdm - ok
11:58:16.0637 3920 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
11:58:16.0667 3920 PCI - ok
11:58:16.0677 3920 PCIDump - ok
11:58:16.0707 3920 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
11:58:16.0727 3920 PCIIde - ok
11:58:16.0777 3920 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys
11:58:16.0787 3920 Pcmcia - ok
11:58:16.0807 3920 PDCOMP - ok
11:58:16.0817 3920 PDFRAME - ok
11:58:16.0827 3920 PDRELI - ok
11:58:16.0847 3920 PDRFRAME - ok
11:58:16.0857 3920 perc2 - ok
11:58:16.0867 3920 perc2hib - ok
11:58:16.0927 3920 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
11:58:16.0927 3920 PlugPlay - ok
11:58:16.0957 3920 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
11:58:16.0957 3920 PolicyAgent - ok
11:58:17.0027 3920 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:58:17.0057 3920 PptpMiniport - ok
11:58:17.0097 3920 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
11:58:17.0097 3920 ProtectedStorage - ok
11:58:17.0117 3920 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
11:58:17.0217 3920 PSched - ok
11:58:17.0448 3920 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:58:17.0528 3920 Ptilink - ok
11:58:17.0558 3920 ql1080 - ok
11:58:17.0568 3920 Ql10wnt - ok
11:58:17.0588 3920 ql12160 - ok
11:58:17.0598 3920 ql1240 - ok
11:58:17.0618 3920 ql1280 - ok
11:58:19.0961 3920 [ 0B174EE82593895CC7755545D1731022 ] Radialpoint Security Services C:\Program Files\Virgin Media\Virgin Media Security\10.0.38.58308\RpsSecurityAwareR.exe
11:58:21.0814 3920 Radialpoint Security Services - ok
11:58:22.0134 3920 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:58:22.0144 3920 RasAcd - ok
11:58:22.0475 3920 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
11:58:22.0495 3920 RasAuto - ok
11:58:22.0665 3920 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys
11:58:22.0695 3920 Rasirda - ok
11:58:22.0735 3920 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:58:22.0745 3920 Rasl2tp - ok
11:58:22.0916 3920 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
11:58:22.0996 3920 RasMan - ok
11:58:23.0076 3920 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:58:23.0096 3920 RasPppoe - ok
11:58:23.0146 3920 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
11:58:23.0166 3920 Raspti - ok
11:58:23.0206 3920 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:58:23.0256 3920 Rdbss - ok
11:58:23.0276 3920 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:58:23.0276 3920 RDPCDD - ok
11:58:23.0336 3920 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
11:58:23.0346 3920 rdpdr - ok
11:58:23.0426 3920 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
11:58:23.0456 3920 RDPWD - ok
11:58:23.0516 3920 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
11:58:23.0567 3920 RDSessMgr - ok
11:58:23.0587 3920 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
11:58:23.0637 3920 redbook - ok
11:58:23.0677 3920 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
11:58:23.0697 3920 RemoteAccess - ok
11:58:23.0747 3920 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
11:58:23.0787 3920 RemoteRegistry - ok
11:58:23.0817 3920 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe
11:58:23.0827 3920 RpcLocator - ok
11:58:23.0917 3920 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
11:58:23.0927 3920 RpcSs - ok
11:58:23.0977 3920 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
11:58:24.0007 3920 RSVP - ok
11:58:24.0057 3920 [ 2EF9C0DC26B30B2318B1FC3FAA1F0AE7 ] rtl8139 C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
11:58:24.0087 3920 rtl8139 - ok
11:58:24.0107 3920 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
11:58:24.0107 3920 SamSs - ok
11:58:24.0147 3920 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
11:58:24.0157 3920 SCardSvr - ok
11:58:24.0207 3920 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
11:58:24.0237 3920 Schedule - ok
11:58:24.0308 3920 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:58:24.0308 3920 Secdrv - ok
11:58:24.0358 3920 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
11:58:24.0358 3920 seclogon - ok
11:58:24.0368 3920 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
11:58:24.0378 3920 SENS - ok
11:58:24.0388 3920 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
11:58:24.0418 3920 serenum - ok
11:58:24.0448 3920 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
11:58:24.0458 3920 Serial - ok
11:58:27.0793 3920 [ 3C5253DE64F5A83836F063BD38B91D89 ] ServicepointService C:\Program Files\Virgin Media\Service Manager\ServicepointService.exe
11:58:29.0315 3920 ServicepointService - ok
11:58:29.0375 3920 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
11:58:29.0415 3920 Sfloppy - ok
11:58:29.0485 3920 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
11:58:29.0615 3920 SharedAccess - ok
11:58:29.0665 3920 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
11:58:29.0685 3920 ShellHWDetection - ok
11:58:29.0695 3920 Simbad - ok
11:58:29.0745 3920 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
11:58:29.0775 3920 SLIP - ok
11:58:29.0805 3920 [ 707647A1AA0EDB6CBEF61B0C75C28ED3 ] SMCIRDA C:\WINDOWS\system32\DRIVERS\smcirda.sys
11:58:29.0816 3920 SMCIRDA - ok
11:58:29.0836 3920 Sparrow - ok
11:58:29.0906 3920 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
11:58:29.0916 3920 splitter - ok
11:58:29.0996 3920 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
11:58:30.0036 3920 Spooler - ok
11:58:30.0066 3920 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
11:58:30.0096 3920 sr - ok
11:58:30.0196 3920 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
11:58:30.0216 3920 srservice - ok
11:58:30.0306 3920 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
11:58:30.0527 3920 Srv - ok
11:58:30.0587 3920 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
11:58:30.0607 3920 SSDPSRV - ok
11:58:30.0817 3920 [ 94958B68384BB931F571CD35BB65028D ] STAC97 C:\WINDOWS\system32\drivers\STAC97.sys
11:58:30.0887 3920 STAC97 - ok
11:58:31.0047 3920 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
11:58:31.0368 3920 stisvc - ok
11:58:31.0448 3920 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
11:58:31.0568 3920 streamip - ok
11:58:31.0708 3920 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
11:58:31.0728 3920 swenum - ok
11:58:31.0818 3920 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
11:58:31.0858 3920 swmidi - ok
11:58:31.0868 3920 SwPrv - ok
11:58:31.0878 3920 symc810 - ok
11:58:31.0888 3920 symc8xx - ok
11:58:31.0909 3920 sym_hi - ok
11:58:31.0919 3920 sym_u3 - ok
11:58:31.0969 3920 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
11:58:32.0009 3920 sysaudio - ok
11:58:32.0099 3920 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
11:58:32.0179 3920 SysmonLog - ok
11:58:32.0249 3920 [ C516B5CFFB7C307FCB7DF87D7D7FA200 ] tap0901 C:\WINDOWS\system32\DRIVERS\tap0901.sys
11:58:32.0259 3920 tap0901 - ok
11:58:32.0329 3920 [ FD90A16CEB10D4FDAA00AAF39B8FF58F ] taphss C:\WINDOWS\system32\DRIVERS\taphss.sys
11:58:32.0369 3920 taphss - ok
11:58:32.0459 3920 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
11:58:32.0549 3920 TapiSrv - ok
11:58:32.0579 3920 [ 827C8058C284FF0013E4462EFE2591A3 ] tapoas C:\WINDOWS\system32\DRIVERS\tapoas.sys
11:58:32.0590 3920 tapoas - ok
11:58:32.0690 3920 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:58:32.0770 3920 Tcpip - ok
11:58:32.0890 3920 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
11:58:32.0890 3920 TDPIPE - ok
11:58:32.0910 3920 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
11:58:32.0920 3920 TDTCP - ok
11:58:32.0950 3920 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
11:58:32.0950 3920 TermDD - ok
11:58:33.0180 3920 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
11:58:33.0270 3920 TermService - ok
11:58:33.0381 3920 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
11:58:33.0381 3920 Themes - ok
11:58:33.0461 3920 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
11:58:33.0521 3920 TlntSvr - ok
11:58:33.0611 3920 [ DE87A23D2DDC7378D1C7AB681E20DE47 ] tmactmon C:\WINDOWS\system32\DRIVERS\tmactmon.sys
11:58:33.0741 3920 tmactmon - ok
11:58:34.0102 3920 [ 540C2B5DC47651C572C2804DC72FDDA8 ] tmcomm C:\WINDOWS\system32\DRIVERS\tmcomm.sys
11:58:34.0172 3920 tmcomm - ok
11:58:34.0202 3920 [ 2DE1FA64EBAFF376F2C038F64492F62C ] tmevtmgr C:\WINDOWS\system32\DRIVERS\tmevtmgr.sys
11:58:34.0232 3920 tmevtmgr - ok
11:58:34.0302 3920 [ 5A61679B2277B9AD550E30479A69503B ] tmtdi C:\WINDOWS\system32\DRIVERS\tmtdi.sys
11:58:34.0322 3920 tmtdi - ok
11:58:34.0332 3920 TosIde - ok
11:58:34.0392 3920 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
11:58:34.0442 3920 TrkWks - ok
11:58:34.0492 3920 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
11:58:34.0502 3920 Udfs - ok
11:58:34.0512 3920 ultra - ok
11:58:35.0994 3920 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
11:58:36.0145 3920 Update - ok
11:58:36.0285 3920 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:58:36.0495 3920 upnphost - ok
11:58:36.0615 3920 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
11:58:36.0665 3920 UPS - ok
11:58:36.0846 3920 [ EAFE1E00739AFE6C51487A050E772E17 ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
11:58:36.0846 3920 USBAAPL - ok
11:58:36.0996 3920 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
11:58:37.0006 3920 usbaudio - ok
11:58:37.0046 3920 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:58:37.0076 3920 usbccgp - ok
11:58:37.0266 3920 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:58:37.0356 3920 usbehci - ok
11:58:37.0456 3920 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:58:37.0487 3920 usbhub - ok
11:58:37.0647 3920 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
11:58:37.0697 3920 usbprint - ok
11:58:37.0797 3920 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
11:58:37.0857 3920 usbscan - ok
11:58:37.0937 3920 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:58:37.0967 3920 USBSTOR - ok
11:58:38.0057 3920 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
11:58:38.0127 3920 usbuhci - ok
11:58:38.0188 3920 [ 63BBFCA7F390F4C49ED4B96BFB1633E0 ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
11:58:38.0248 3920 usbvideo - ok
11:58:38.0308 3920 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
11:58:38.0318 3920 VgaSave - ok
11:58:38.0328 3920 ViaIde - ok
11:58:38.0388 3920 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
11:58:38.0408 3920 VolSnap - ok
11:58:38.0528 3920 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
11:58:38.0668 3920 VSS - ok
11:58:38.0748 3920 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll
11:58:38.0899 3920 W32Time - ok
11:58:39.0099 3920 [ 677AD85E3058C821F5A73CDF7E5B5478 ] w70n51 C:\WINDOWS\system32\DRIVERS\w70n51.sys
11:58:39.0309 3920 w70n51 - ok
11:58:39.0339 3920 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:58:39.0339 3920 Wanarp - ok
11:58:39.0359 3920 WDICA - ok
11:58:39.0409 3920 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
11:58:39.0479 3920 wdmaud - ok
11:58:39.0570 3920 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:58:39.0660 3920 WebClient - ok
11:58:39.0980 3920 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:58:40.0050 3920 winmgmt - ok
11:58:40.0220 3920 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
11:58:40.0251 3920 WmdmPmSN - ok
11:58:40.0391 3920 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll
11:58:40.0541 3920 Wmi - ok
11:58:40.0621 3920 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
11:58:40.0691 3920 WmiApSrv - ok
11:58:41.0252 3920 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
11:58:41.0813 3920 WMPNetworkSvc - ok
11:58:41.0893 3920 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
11:58:41.0973 3920 WpdUsb - ok
11:58:42.0063 3920 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
11:58:42.0173 3920 wscsvc - ok
11:58:42.0654 3920 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
11:58:42.0684 3920 WSTCODEC - ok
11:58:42.0764 3920 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
11:58:42.0914 3920 wuauserv - ok
11:58:42.0984 3920 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
11:58:43.0014 3920 WudfPf - ok
11:58:43.0055 3920 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
11:58:43.0085 3920 WudfRd - ok
11:58:43.0245 3920 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
11:58:43.0255 3920 WudfSvc - ok
11:58:43.0385 3920 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
11:58:43.0455 3920 WZCSVC - ok
11:58:43.0555 3920 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
11:58:43.0726 3920 xmlprov - ok
11:58:43.0796 3920 [ 61002DB7B6EFB5711685B9D79B8E8CE6 ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
11:58:43.0816 3920 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
11:58:43.0876 3920 [ 35CE2BAA708EA038AB72359DE87BAB87 ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
11:58:43.0876 3920 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
11:58:43.0896 3920 ================ Scan global ===============================
11:58:43.0946 3920 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
11:58:44.0016 3920 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
11:58:44.0086 3920 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
11:58:44.0126 3920 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
11:58:44.0146 3920 [Global] - ok
11:58:44.0146 3920 ================ Scan MBR ==================================
11:58:44.0156 3920 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
11:58:45.0428 3920 \Device\Harddisk0\DR0 - ok
11:58:45.0438 3920 ================ Scan VBR ==================================
11:58:45.0438 3920 [ A93BF2A44FEF05BCB534168809A4B55D ] \Device\Harddisk0\DR0\Partition1
11:58:45.0438 3920 \Device\Harddisk0\DR0\Partition1 - ok
11:58:45.0438 3920 ============================================================
11:58:45.0438 3920 Scan finished
11:58:45.0438 3920 ============================================================
11:58:45.0478 4080 Detected object count: 0
11:58:45.0488 4080 Actual detected object count: 0

aswMBR:

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-09-19 12:24:28
-----------------------------
12:24:28.987 OS Version: Windows 5.1.2600 Service Pack 3
12:24:28.987 Number of processors: 1 586 0x905
12:24:28.987 ComputerName: NEW-E9CC713894C UserName: Administrator
12:24:31.661 Initialize success
12:25:03.888 AVAST engine defs: 12091802
12:25:16.396 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
12:25:16.396 Disk 0 Vendor: FUJITSU_MHT2040AT 0022 Size: 38154MB BusType: 3
12:25:16.596 Disk 0 MBR read successfully
12:25:16.596 Disk 0 MBR scan
12:25:17.147 Disk 0 Windows XP default MBR code
12:25:17.217 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 38146 MB offset 63
12:25:17.387 Disk 0 scanning sectors +78124095
12:25:18.228 Disk 0 scanning C:\WINDOWS\system32\drivers
12:27:06.194 Service scanning
12:29:59.032 Modules scanning
12:30:46.811 Disk 0 trace - called modules:
12:30:46.861 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
12:30:46.871 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x82f2bab8]
12:30:46.971 3 CLASSPNP.SYS[f87e2fd7] -> nt!IofCallDriver -> \Device\0000007f[0x82f06f18]
12:30:46.971 5 ACPI.sys[f8739620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x82f95328]
12:30:54.602 AVAST engine scan C:\WINDOWS
12:31:36.502 AVAST engine scan C:\WINDOWS\system32
12:51:20.735 AVAST engine scan C:\WINDOWS\system32\drivers
12:52:29.854 AVAST engine scan C:\Documents and Settings\Administrator
13:00:57.214 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Administrator\My Documents\MBR.dat"
13:00:57.214 The log file has been saved successfully to "C:\Documents and Settings\Administrator\My Documents\aswMBR.txt"

ESET:

C:\Documents and Settings\Administrator\Local Settings\Temp\2CF123CB-BAB0-7891-A7A4-748C61188774\Latest\MyBabylonTB.exe Win32/Toolbar.Babylon application
C:\Documents and Settings\Administrator\Local Settings\Temp\2E4EA126-BAB0-7891-B150-E0B0B5669BD1\Latest\MyBabylonTB.exe Win32/Toolbar.Babylon application
C:\Documents and Settings\Administrator\Local Settings\Temp\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbar4ie.exe Win32/Toolbar.Babylon application
C:\Documents and Settings\Administrator\Local Settings\Temp\is1068456772\GiantSavings_GB.exe Win32/Toolbar.CrossRider application
C:\Documents and Settings\Administrator\Local Settings\Temp\is1068456772\MyBabylonTB.exe Win32/Toolbar.Babylon application
C:\Documents and Settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll a variant of Win32/Adware.Yontoo.B application

the above are the threats found.
Many many thanks for your help

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:01:33 PM

Posted 19 September 2012 - 09:22 AM

the above are the threats found.


Makesure to remove the threats

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

Download

FSS

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.



Download

adware cleaner

Launch it click on Delete

post the generated log

#5 awalkingshadow

awalkingshadow

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:10:33 AM

Posted 22 February 2015 - 12:44 AM

I had the same problem as the original poster (pink screen, micro_httpd). Interestingly, only https sites worked and all sites worked with Incognito.

 

The above advice solved my issues. I ran MalwareBytes and AdwCleaner, and this solved my issue.

 

(I know this is an old thread, but I wanted to thank narenxp for his advice to use MalwareBytes; it never occurred to me that my problem could be due to malware.)

 

UPDATE:

I tested it out further, and it turns out that my router was the actual root of the cause.Sometimes the website would give me the pink screen, and sometimes it would redirect me to a (Telus [my ISP]) page that describes my modem's settings.

Restarting the router several times allowed my internet to work again.


Edited by awalkingshadow, 22 February 2015 - 06:34 PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users