/ Forside/ Teknologi / Internet / Sikkerhed / Spørgsmål
Login
Glemt dit kodeord?
Brugernavn

Kodeord


Reklame
Top 10 brugere
Sikkerhed
#NavnPoint
stl_s 37026
arlet 26827
miritdk 20260
o.v.n. 12167
als 8951
refi 8694
tedd 8272
BjarneD 7338
Klaudi 7257
10  molokyle 6481
Firewall pop up
Fra : Daxxa
Vist : 1262 gange
200 point
Dato : 11-07-07 17:13

Hej Kandu'er (:

Nogen der kan svare på hvad det her er da jeg ikk lii ka se det

Den spørger om tilladelse til at gå på nettet men trykkede bloker,

Her er et billede, det er vidst ikk lii for godt,

www.peecee.dk/index.php?lid=1&aid=1&pid=2&loadid=57202



 
 
Kommentar
Fra : Daxxa


Dato : 11-07-07 17:14

Det er under path de hedder det der ???

Kommentar
Fra : stl_s


Dato : 11-07-07 17:17

Det ser mystisk ud. Kom lige med en HijackThis herfra http://sptlarsenserious.googlepages.com/HJT-sfx.exe

Kommentar
Fra : Daxxa


Dato : 11-07-07 17:33

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:37:16, on 11-07-2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\AntiVir PersonalEdition Classic\avguard.exe
C:\Acer\eManager\anbmServ.exe
C:\Programmer\AntiVir PersonalEdition Classic\sched.exe
C:\Programmer\Acer\ASM Agent\G700\asmagent.exe
C:\Programmer\Acer\ASM Agent\G700\EventNodePolling.exe
C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programmer\Comodo\CBOClean\BOCORE.exe
C:\Programmer\Acer\ASM Agent\G700\EventNodeSink.exe
C:\Programmer\Acer\ASM Agent\G700\discoveryAgent.exe
C:\WINDOWS\system32\LckFldService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmer\Launch Manager\LaunchAp.exe
C:\Programmer\Launch Manager\PowerKey.exe
C:\Programmer\Launch Manager\HotkeyApp.exe
C:\Programmer\Launch Manager\OSDCtrl.exe
C:\Programmer\Launch Manager\Wbutton.exe
C:\Program Files\Arcade\PCMService.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\Programmer\Matinsoft\GoldTach\GoldTach.exe
C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\Comodo\CBOClean\BOC423.EXE
C:\Programmer\Java\jre1.6.0_01\bin\jusched.exe
C:\Programmer\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programmer\Fælles filer\Aminova\WordSeeker\WordSeeker.exe
C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\MSN Messenger\MsnMsgr.Exe
C:\Programmer\Fælles filer\Ahead\Lib\NMBgMonitor.exe
C:\Programmer\Fælles filer\Ahead\Lib\NMIndexStoreSvr.exe
C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programmer\SpywareGuard\sgmain.exe
C:\Programmer\SpywareGuard\sgbhp.exe
C:\Programmer\HP\Digital Imaging\bin\hpqgalry.exe
C:\Programmer\AliveMedia\DVD Ripper\DVDRipper.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\HJTrenamed.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Programmer\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [preload] C:\Windows\RUNXMLPL.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [LaunchAp] "C:\Programmer\Launch Manager\LaunchAp.exe"
O4 - HKLM\..\Run: [PowerKey] "C:\Programmer\Launch Manager\PowerKey.exe"
O4 - HKLM\..\Run: [LManager] "C:\Programmer\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [CtrlVol] "C:\Programmer\Launch Manager\CtrlVol.exe"
O4 - HKLM\..\Run: [LMgrOSD] "C:\Programmer\Launch Manager\OSDCtrl.exe"
O4 - HKLM\..\Run: [Wbutton] "C:\Programmer\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Arcade\PCMService.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [GoldTach] C:\Programmer\Matinsoft\GoldTach\GoldTach.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Programmer\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [BOC-423] C:\PROGRA~1\Comodo\CBOClean\BOC423.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmer\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmer\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Aminova WordSeeker] "C:\Programmer\Fælles filer\Aminova\WordSeeker\Controller.exe" SHORTCUT
O4 - HKLM\..\Run: [Accelerate] C:\Programmer\Webroot\Accelerate\accelerate.exe /S
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programmer\Fælles filer\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Programmer\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmer\Fælles filer\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Programmer\SpywareGuard\sgmain.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Hurtig start.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FÆLLES~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmer\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programmer\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASM Agent - Unknown owner - C:\Programmer\Acer\ASM Agent\G700\asmagent.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BOCore - COMODO - C:\Programmer\Comodo\CBOClean\BOCORE.exe
O23 - Service: IPMI Watchdog (IPMIWatchdog) - Unknown owner - C:\Programmer\Acer\ASM Agent\G700\IPMIWD.exe
O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe
O23 - Service: NBService - Nero AG - C:\Programmer\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programmer\Fælles filer\PCSuite\Services\ServiceLayer.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe

--
End of file - 9180 bytes


Kommentar
Fra : stl_s


Dato : 11-07-07 18:36

Der var ikke noget at se. Kom lige med en log fra ComboFix:

Hent Combofix, og gem den på dit skrivebord:
http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Kør så combofix.exe, og følg vejledningen i vinduet.

Du bør ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.
Når combofix er færdig, og efter det har genstartet, skulle der gerne åbnes en logfil: combofix.txt som kan findes her-C:\combofix.txt



Kommentar
Fra : Daxxa


Dato : 11-07-07 19:04

Så må jeg jo hellere smide et tæppe over den hvis det sker

Kommentar
Fra : Daxxa


Dato : 11-07-07 19:29

Der må være et eller andet galt, for nu lukkede alle mine sikkerheds programmer ned :S + Firewall

Kommentar
Fra : Daxxa


Dato : 11-07-07 19:30

"Madsen" - 2007-07-11 19:08:59 - ComboFix 07-07-10.1 - Service Pack 2 [color=red]FAT32[/color]


((((((((((((((((((((((((( Files Created from 2007-06-11 to 2007-07-11 )))))))))))))))))))))))))))))))


2007-07-11 19:06   51,200   --a------   C:\WINDOWS\nircmd.exe
2007-07-11 15:01   23,040   --a------   C:\WINDOWS\system32\auth.dll
2007-07-11 15:01   110,080   --a------   C:\WINDOWS\system32\nLame.dll
2007-07-11 15:01   <DIR>   d--------   C:\Programmer\AliveMedia
2007-07-11 11:34   <DIR>   d--------   C:\Programmer\AVI MPEG RM WMV Joiner
2007-07-10 16:43   <DIR>   d--------   C:\Temp\E--
2007-07-10 16:42   <DIR>   d--------   C:\Temp
2007-07-10 16:41   45,056   --a------   C:\WINDOWS\system32\WNASPI32.DLL
2007-07-10 16:41   16,512   --a------   C:\WINDOWS\system32\drivers\ASPI32.SYS
2007-07-09 08:39   <DIR>   d--hs----   C:\FOUND.003
2007-07-07 22:05   <DIR>   d--------   C:\Programmer\id Software
2007-07-07 22:02   <DIR>   d--hs----   C:\WINDOWS\ftpcache
2007-07-02 15:45   <DIR>   d--------   C:\Programmer\Rockstar Games
2007-07-02 14:44   <DIR>   d--------   C:\Gta Vice City
2007-07-02 10:16   10,872   --a------   C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-07-02 10:09   <DIR>   d--hs----   C:\FOUND.002
2007-07-01 12:53   <DIR>   d--------   C:\DOCUME~1\Madsen\APPLIC~1\Ahead
2007-07-01 12:50   <DIR>   d--------   C:\Programmer\Nero
2007-07-01 12:50   <DIR>   d--------   C:\Programmer\F‘lles filer\Ahead
2007-07-01 12:50   <DIR>   d--------   C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
2007-06-30 10:36   1,144   --a------   C:\WINDOWS\mozver.dat
2007-06-28 20:37   <DIR>   d--hs----   C:\FOUND.001
2007-06-28 13:36   <DIR>   d--------   C:\Programmer\Recuva
2007-06-27 22:45   <DIR>   d--------   C:\DOCUME~1\Madsen\APPLIC~1\dvdcss
2007-06-27 16:59   <DIR>   d--hs----   C:\FOUND.000
2007-06-27 12:26   <DIR>   d--------   C:\Programmer\backups
2007-06-26 22:39   401,720   --a------   C:\Programmer\HJTrenamed.exe
2007-06-24 18:33   388,096   --a------   C:\WINDOWS\unacc.exe
2007-06-24 18:33   <DIR>   d--------   C:\Programmer\Webroot
2007-06-22 14:36   <DIR>   d--------   C:\DOCUME~1\Madsen\APPLIC~1\HP
2007-06-18 21:14   <DIR>   d--------   C:\Programmer\Gads Bogskab
2007-06-18 21:14   <DIR>   d--------   C:\Programmer\F‘lles filer\Aminova
2007-06-18 21:02   <DIR>   d--------   C:\Programmer\Polob32
2007-06-13 21:40   0   --a------   C:\WINDOWS\nsreg.dat
2007-06-11 21:04   <DIR>   d--------   C:\Programmer\DivX


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2007-07-11 07:59:32   82,166   ----a-w   C:\WINDOWS\system32\perfc006.dat
2007-07-11 07:59:32   452,718   ----a-w   C:\WINDOWS\system32\perfh006.dat
2007-07-09 14:05:08   141   ----a-w   C:\WINDOWS\system32\mslck.dat
2007-07-08 11:14:34   549   ----a-w   C:\WINDOWS\eReg.dat
2007-07-07 21:00:14   163,644   ----a-w   C:\WINDOWS\system32\drivers\secdrv.sys
2007-07-01 10:50:52   --------   d-----w   C:\Programmer\Fælles filer\Ahead
2007-06-18 19:14:24   --------   d-----w   C:\Programmer\Fælles filer\Aminova
2007-06-09 16:49:54   32   ----a-w   C:\WINDOWS\system32\Mlkf.dll
2007-06-09 11:45:54   --------   d-----w   C:\DOCUME~1\Madsen\APPLIC~1\DataLayer
2007-06-09 11:44:56   --------   d-----w   C:\DOCUME~1\Madsen\APPLIC~1\Nokia
2007-06-09 11:43:28   --------   d-----w   C:\Programmer\DIFX
2007-06-09 11:42:46   --------   d-----w   C:\Programmer\Fælles filer\Nokia
2007-06-09 11:42:34   --------   d-----w   C:\DOCUME~1\Madsen\APPLIC~1\PC Suite
2007-06-09 11:42:32   --------   d-----w   C:\Programmer\Fælles filer\PCSuite
2007-06-09 11:42:18   --------   d-----w   C:\Programmer\Nokia
2007-06-07 17:40:20   --------   d-----w   C:\Programmer\FolderAccess
2007-06-04 20:11:50   --------   d-----w   C:\Programmer\D-Tools
2007-06-04 19:43:54   639,224   ----a-w   C:\WINDOWS\system32\drivers\sptd.sys
2007-05-27 09:12:20   --------   d-----w   C:\Programmer\Sierra
2007-05-26 20:35:02   --------   d-----w   C:\Programmer\Pocket Tanks
2007-05-26 18:52:12   --------   d-----w   C:\Programmer\TrackMania Nations ESWC
2007-05-17 22:37:00   --------   d-----w   C:\DOCUME~1\Madsen\APPLIC~1\Skype
2007-05-17 22:36:20   --------   d-----w   C:\Programmer\Skype
2007-05-17 22:36:20   --------   d-----w   C:\Programmer\Fælles filer\Skype
2007-05-16 15:14:26   683,520   ----a-w   C:\WINDOWS\system32\inetcomm.dll
2007-05-14 13:44:54   --------   d-----w   C:\Programmer\Western Digital
2007-05-13 15:15:26   271,360   ----a-w   C:\WINDOWS\system32\drivers\atksgt.sys
2007-05-13 15:15:26   18,048   ----a-w   C:\WINDOWS\system32\drivers\lirsgt.sys
2007-05-13 15:12:46   --------   d-----w   C:\Programmer\AGEIA Technologies
2007-05-13 15:07:06   --------   d-----w   C:\Programmer\Playlogic
2007-05-11 11:09:58   664   ----a-w   C:\WINDOWS\system32\d3d9caps.dat
2007-05-09 19:35:56   108,144   ----a-w   C:\WINDOWS\system32\CmdLineExt.dll
2007-05-04 12:07:34   0   ----a-w   C:\WINDOWS\system32\CMMGR32.EXE
2007-05-04 10:13:18   737,280   ----a-w   C:\WINDOWS\iun6002.exe
2007-05-02 17:29:20   68,408   ----a-w   C:\WINDOWS\hpoins05.dat
2007-05-02 12:42:26   87,608   ----a-w   C:\DOCUME~1\Madsen\APPLIC~1\inst.exe
2007-05-02 12:42:26   47,360   ----a-w   C:\DOCUME~1\Madsen\APPLIC~1\pcouffin.sys
2007-04-29 15:42:22   1,024   ---h--r   C:\WINDOWS\system32\NTIBUN4.dll
2007-04-29 15:42:02   1,024   ---h--r   C:\WINDOWS\system32\NTIMPEG2.dll
2007-04-29 15:42:02   1,024   ---h--r   C:\WINDOWS\system32\NTIMP3.dll
2007-04-29 15:42:02   1,024   ---h--r   C:\WINDOWS\system32\NTIFCD3.dll
2007-04-29 15:42:02   1,024   ---h--r   C:\WINDOWS\system32\NTICDMK7.dll
2007-04-29 15:40:10   0   --sha-r   C:\MSDOS.SYS
2007-04-29 15:40:10   0   --sha-r   C:\IO.SYS
2007-04-25 14:22:44   144,896   ----a-w   C:\WINDOWS\system32\schannel.dll
2007-04-23 00:15:20   200,704   ----a-w   C:\WINDOWS\system32\ssldivx.dll
2007-04-23 00:15:20   1,044,480   ----a-w   C:\WINDOWS\system32\libdivx.dll
2007-04-19 07:35:40   240,368   ----a-w   C:\WINDOWS\UNBOC.EXE
2007-04-18 16:14:26   2,854,400   ----a-w   C:\WINDOWS\system32\msi.dll
2007-04-16 20:47:36   33,624   ----a-w   C:\WINDOWS\system32\wups.dll
2007-04-16 20:45:54   1,710,936   ----a-w   C:\WINDOWS\system32\wuaueng.dll
2007-04-16 20:45:48   549,720   ----a-w   C:\WINDOWS\system32\wuapi.dll
2007-04-16 20:45:42   325,976   ----a-w   C:\WINDOWS\system32\wucltui.dll
2007-04-16 20:45:36   203,096   ----a-w   C:\WINDOWS\system32\wuweb.dll
2007-04-16 20:45:28   92,504   ----a-w   C:\WINDOWS\system32\cdm.dll
2007-04-16 20:45:20   53,080   ----a-w   C:\WINDOWS\system32\wuauclt.exe
2007-04-16 20:45:20   43,352   ----a-w   C:\WINDOWS\system32\wups2.dll
2007-04-13 01:21:14   271,360   ----a-w   C:\WINDOWS\system32\mscoree.dll
2007-04-11 09:04:16   524,288   ----a-w   C:\WINDOWS\opuc.dll


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
         C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{4A368E80-174F-4872-96B5-0B27DDD11DB2}]
2003-08-02 23:24   192512   -ra------   C:\Programmer\SpywareGuard\dlprotect.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
2005-05-31 01:04   853672   --a------   C:\PROGRA~1\SPYBOT~1\SDHelper.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPLpr"="C:\Programmer\Synaptics\SynTP\SynTPLpr.exe" [2004-10-05 16:25]
"SynTPEnh"="C:\Programmer\Synaptics\SynTP\SynTPEnh.exe" [2004-10-05 16:24]
"ATIPTA"="C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-04-05 21:05]
"LaunchAp"="C:\Programmer\Launch Manager\LaunchAp.exe" [2005-03-30 15:29]
"PowerKey"="C:\Programmer\Launch Manager\PowerKey.exe" [2002-08-30 15:02]
"LManager"="C:\Programmer\Launch Manager\HotkeyApp.exe" [2005-05-19 14:45]
"CtrlVol"="C:\Programmer\Launch Manager\CtrlVol.exe" [2003-09-16 14:28]
"LMgrOSD"="C:\Programmer\Launch Manager\OSDCtrl.exe" [2004-10-11 10:47]
"Wbutton"="C:\Programmer\Launch Manager\Wbutton.exe" [2005-04-18 11:41]
"PCMService"="C:\Program Files\Arcade\PCMService.exe" [2005-03-09 18:59]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 18:39 C:\WINDOWS\SOUNDMAN.EXE]
"eRecoveryService"="C:\Acer\Empowering Technology\eRecovery\Monitor.exe" [2005-10-31 19:05]
"GoldTach"="C:\Programmer\Matinsoft\GoldTach\GoldTach.exe" [2006-04-27 02:45]
"HP Software Update"="C:\Programmer\HP\HP Software Update\HPWuSchd2.exe" [2004-09-13 15:49]
"BOC-423"="C:\PROGRA~1\Comodo\CBOClean\BOC423.EXE" [2007-04-20 09:28]
"SunJavaUpdateSched"="C:\Programmer\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 03:43]
"avgnt"="C:\Programmer\AntiVir PersonalEdition Classic\avgnt.exe" [2007-04-02 10:35]
"Aminova WordSeeker"="C:\Programmer\Fælles filer\Aminova\WordSeeker\Controller.exe" []
"Accelerate"="C:\Programmer\Webroot\Accelerate\accelerate.exe" [2003-01-30 14:35]
"Adobe Reader Speed Launcher"="C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06]
"NeroFilterCheck"="C:\Programmer\Fælles filer\Ahead\Lib\NeroCheck.exe" []
"!AVG Anti-Spyware"="C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 11:25]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-27 05:00]
"MsnMsgr"="C:\Programmer\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"Skype"="C:\Programmer\Skype\Phone\Skype.exe" [2007-06-08 15:18]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Programmer\Fælles filer\Ahead\Lib\NMBgMonitor.exe" []

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"DisableRegistryTools"=0 (0x0)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"="C:\Programmer\SUPERAntiSpyware\SASSEH.DLL" [2006-12-20 12:55]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-05-30 14:29]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Programmer\SUPERAntiSpyware\SASWINLO.DLL 2007-05-14 14:20 294912 C:\Programmer\SUPERAntiSpyware\SASWINLO.DLL

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menuen Start^Programmer^Start^WinZip Quick Pick.lnk]
path=C:\Documents and Settings\All Users\Menuen Start\Programmer\Start\WinZip Quick Pick.lnk
backup=C:\WINDOWS\pss\WinZip Quick Pick.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033]
"C:\Programmer\D-Tools\daemon.exe" -lang 1033

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
C:\Programmer\Picasa2\PicasaMediaDetector.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
"c:\programmer\valve\steam\steam.exe" -silent

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{508fa592-f666-11db-b707-806d6172696f}]
PlayWithPowerCinema\Command- "C:\Program Files\Arcade\PCM3.exe" MOVIE "%L"

*Newly Created Service* - INT15.SYS

Contents of the 'Scheduled Tasks' folder
2007-07-11 14:00:02 C:\WINDOWS\tasks\HPpromotions photosmart 2600 series.job

**************************************************************************

catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-07-11 19:20:20
Windows 5.1.2600 Service Pack 2 FAT NTAPI

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

Completion time: 2007-07-11 19:29:31

   --- E O F ---


Kommentar
Fra : stl_s


Dato : 11-07-07 20:02

Upload lige denne fil C:\WINDOWS\unacc.exe til scanning her http://www.virustotal.com/

Og læg resultatet her ind.

Kommentar
Fra : Daxxa


Dato : 11-07-07 20:15

Den fandt ingenting

Kommentar
Fra : Daxxa


Dato : 11-07-07 20:27

Men scannede lii den combofix som du sendte mig, for derefter lukkede diverse virus programmer ned, ved den skrev den: Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.

Har det noget at sige ??

Kommentar
Fra : stl_s


Dato : 11-07-07 20:52

Lad os lige prøve om SDFix finder noget:

Hent og dobbeltklik denne fil. Den pakker sig ud til C:\SDFix:
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

Genstart i fejlsikret, hvis du ikke ved hvordan så kig her (Scroll ned til "Sådan får du adgang til fejlsikret tilstand") http://kimludvigsen.dk/tips-windows-fejlsikret.html


Gå så ind i mappen SDFix på C drevet. Dobbeltklik på filen RunThis.bat, for at starte værktøjet. Tryk "y" for at bekræfte, at du kører værktøjet på egen risiko. Så vil værktøjet gå i gang med at fjerne trojanservicen, og lave et par reparationer af registreringsdatabasen. På et tidspunkt vil det bede dig om at trykke en taste for at genstarte computeren. Det skal du gøre, hvorefter computeren vil genstarte efter 15 sekunder.

Genstarten vil tage lidt længere end sædvanligt, idet værktøjet skal have tid til at udføre sit arbejde. Når skrivebordet dukker op, vil værktøjet skrive "Finished". Tryk herefter en taste for at indlæse dine skrivebordsikoner igen.

Åben så SDFix-mappen, find filen Report.txt, og kopier indholdet af denne fil herind.


Kommentar
Fra : Daxxa


Dato : 11-07-07 21:31

Kan ikk gå i fejlsikret, har haft problemer med det i et stykke tid, har prøvet at få hjælp på spywarefri men hjalp ikk rigtig... Hva gør jeg?

Kommentar
Fra : stl_s


Dato : 11-07-07 21:38

Hvor langt kommer du, når du prøver at gå i fejlsikret ? Kan du komme frem til menuen hvor du kan vælge fejlsikret ? Hvis ja, hvad sker der så ? Oplever du andre fejl ? Fortæl fortæl

Kommentar
Fra : Daxxa


Dato : 11-07-07 21:41

Det er egentlig meget forskelligt hvor langt jeg kommer, den her gang kom jeg til hvor jeg bare skulle ind på min bruger under fejlsikret, og så slukkede den bare... Så hvor jeg ville tænde igen normalt slukkede den igen :S,

Det er vidst de eneste fejl, men er inde på normal igen nu

Kommentar
Fra : stl_s


Dato : 11-07-07 21:58

Denne her *kan* risikere at være en grimmert C:\WINDOWS\system32\CMMGR32.EXE og det var det jeg ville have SDFix til at tjekke. Så upload den lige istedet til VirusTotal http://www.virustotal.com/

Kommentar
Fra : Daxxa


Dato : 11-07-07 22:02

Mærkeligt når den er ved at sende skriver den bar: "0 bytes size received / Se ha recibido un archivo vacio"


Kommentar
Fra : stl_s


Dato : 11-07-07 22:05

Højreklik lige på filen, og vælg egenskaber. Er det en Microsoft fil ?

Kommentar
Fra : Daxxa


Dato : 11-07-07 22:07

Ja det er det

Kommentar
Fra : stl_s


Dato : 11-07-07 22:15

Hmm, okay. Den burde bare ikke være på din XP maskine. Prøv lige at lave en zipfil af den, og mail den til mig på admin(at)malwarecheck.dk

(at)=@

Kommentar
Fra : Daxxa


Dato : 11-07-07 22:22

Er sendt nu... Mmen det blev altså en .rar fil håber det er godt nok

Kommentar
Fra : stl_s


Dato : 11-07-07 22:59

Helt ok, men filen er ikke original Microsoft. Slet den bare, og tjek at den ikke kommer igen ved genstart. Gem rar kopien i et par uger, for en sikkerheds skyld.

Kommentar
Fra : Daxxa


Dato : 11-07-07 23:02

Okay, er det da en skidt fyr

Kommentar
Fra : Daxxa


Dato : 11-07-07 23:11

Tror du der er mere at gøre?? Har du en idé til hvorfor fejlsikret bar ikk vil virke??

Så noget helt andet, er der en eller anden side hvor man kan lære noget om Hjt logs, for vil gerne selv begynde at kig min egen igennem, ved godt det kan skade, men sletter ikk noget før jeg er sikker... Har ikk prøvet endnu

Kommentar
Fra : stl_s


Dato : 11-07-07 23:23

Ang HijackThis, så kig her http://www.ejvindh.net/viewtopic.php?t=20

Når dine sikkerhedsprogrammer lukker ned, og du ikke kan komme i fejlsikret, så er det tegn på en infektion af en slags. Vi prøver lige at tjekke for rootkits:

Hent Blacklight her https://europe.f-secure.com/blacklight/try.shtml Scroll ned på siden, og klik "iaccept". På næste side kan du downloade Blacklight til skrivebordet (tag den øverste). Dobbeltklik filen, og klik scan. Når den er færdig laver den en log på skrivebordet. Kopier loggen her ind. Du skal ikke lade Blacklight fjerne noget endnu.

--------------------------------------------------------------

Hent Gmer rootkit scanner her, og udpak den til skrivebordet http://www.gmer.net/gmer.zip

Luk ned for alle dine kørende programmer i proceslinien ved uret, på nær firewall. Luk også alle browser vinduer.

Kør Gmer.exe og klik Scan. Scanningen kan tage noget tid, og imens den scanner bør du ikke foretage dig andet på computeren.

Når scanningen er færdig, klik da på Copy knappen. Scanningen ligger nu i udklipsholder. Kopier den venligst ind i tråden i

dit næste indlæg.





Kommentar
Fra : Daxxa


Dato : 11-07-07 23:34

07/11/07 23:36:38 [Info]: BlackLight Engine 1.0.64 initialized
07/11/07 23:36:38 [Info]: OS: 5.1 build 2600 (Service Pack 2)
07/11/07 23:36:38 [Note]: 7019 4
07/11/07 23:36:38 [Note]: 7005 0
07/11/07 23:36:44 [Note]: 7006 0
07/11/07 23:36:44 [Note]: 7011 784
07/11/07 23:36:44 [Note]: 7026 0
07/11/07 23:36:44 [Note]: 7026 0
07/11/07 23:36:47 [Note]: FSRAW library version 1.7.1022
07/11/07 23:37:33 [Note]: 7006 0
07/11/07 23:37:33 [Note]: 7011 784
07/11/07 23:37:33 [Note]: 7026 0
07/11/07 23:37:33 [Note]: 7026 0
07/11/07 23:37:38 [Note]: FSRAW library version 1.7.1022
07/11/07 23:38:28 [Note]: 7007 0


Kommentar
Fra : Daxxa


Dato : 12-07-07 08:39

GMER 1.0.13.12551 - http://www.gmer.net
Rootkit scan 2007-07-12 08:43:47
Windows 5.1.2600 Service Pack 2


---- System - GMER 1.0.13 ----

SSDT sptd.sys ZwCreateKey
SSDT sptd.sys ZwEnumerateKey
SSDT sptd.sys ZwEnumerateValueKey
SSDT sptd.sys ZwOpenKey
SSDT \??\C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwOpenProcess
SSDT sptd.sys ZwQueryKey
SSDT sptd.sys ZwQueryValueKey
SSDT sptd.sys ZwSetValueKey
SSDT \??\C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwTerminateProcess

---- Kernel code sections - GMER 1.0.13 ----

? C:\WINDOWS\system32\drivers\sptd.sys Processen kan ikke få adgang til filen, da den bruges af en anden proces.
.text USBPORT.SYS!DllUnload F6F4762C 5 Bytes JMP 86579960

---- User code sections - GMER 1.0.13 ----

.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!SetScrollInfo 7E369056 7 Bytes JMP 00D50D60 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!GetScrollInfo 7E370DA2 7 Bytes JMP 00D50C80 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!GetScrollPos 7E37F6C4 5 Bytes JMP 00D50CD0 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!SetScrollPos 7E37F710 5 Bytes JMP 00D50DB0 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!GetScrollRange 7E37F747 5 Bytes JMP 00D50D10 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!SetScrollRange 7E37F95B 5 Bytes JMP 00D50E00 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!SetMenu 7E39F196 5 Bytes JMP 00D50F30 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!DrawMenuBar 7E39F43C 5 Bytes JMP 00D50E60 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!EnableScrollBar 7E3B7DDD 7 Bytes JMP 00D50C30 C:\Programmer\Matinsoft\GoldTach\AppFace.dll
.text C:\Programmer\Matinsoft\GoldTach\GoldTach.exe[2332] USER32.dll!TrackPopupMenuEx 7E3BCD28 5 Bytes JMP 00D50EB0 C:\Programmer\Matinsoft\GoldTach\AppFace.dll

---- Kernel IAT/EAT - GMER 1.0.13 ----

IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [F7416ABA] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [F7416C00] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [F7416B82] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [F741772E] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [F7417604] sptd.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F7429B9A] sptd.sys

Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CREATE 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLOSE 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_READ 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_WRITE 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_INFORMATION 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_INFORMATION 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_EA 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_EA 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FLUSH_BUFFERS 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_VOLUME_INFORMATION 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_VOLUME_INFORMATION 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DIRECTORY_CONTROL 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FILE_SYSTEM_CONTROL 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DEVICE_CONTROL 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SHUTDOWN 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_LOCK_CONTROL 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLEANUP 869421D8
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_PNP 869421D8
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CREATE 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CLOSE 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_READ 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_WRITE 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_QUERY_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_SET_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_QUERY_VOLUME_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_DIRECTORY_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_FILE_SYSTEM_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_DEVICE_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_LOCK_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CLEANUP 866CC980
Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_PNP 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CREATE 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CLOSE 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_READ 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_WRITE 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_QUERY_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_SET_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_QUERY_VOLUME_INFORMATION 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_DIRECTORY_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_FILE_SYSTEM_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_DEVICE_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_LOCK_CONTROL 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CLEANUP 866CC980
Device \FileSystem\Udfs \UdfsDisk IRP_MJ_PNP 866CC980

AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_NAMED_PIPE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_READ [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_WRITE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FLUSH_BUFFERS [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DIRECTORY_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FILE_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SHUTDOWN [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_LOCK_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLEANUP [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_MAILSLOT [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_POWER [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CHANGE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE_NAMED_PIPE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CLOSE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_READ [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_WRITE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_EA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_EA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_FLUSH_BUFFERS [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_VOLUME_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_VOLUME_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DIRECTORY_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_FILE_SYSTEM_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DEVICE_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_INTERNAL_DEVICE_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SHUTDOWN [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_LOCK_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CLEANUP [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE_MAILSLOT [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_SECURITY [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_SECURITY [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_POWER [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SYSTEM_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DEVICE_CHANGE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_QUOTA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_QUOTA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE_NAMED_PIPE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CLOSE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_READ [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_WRITE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_EA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_EA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_FLUSH_BUFFERS [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_VOLUME_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_VOLUME_INFORMATION [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DIRECTORY_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_FILE_SYSTEM_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DEVICE_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_INTERNAL_DEVICE_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SHUTDOWN [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_LOCK_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CLEANUP [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE_MAILSLOT [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_SECURITY [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_SECURITY [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_POWER [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SYSTEM_CONTROL [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DEVICE_CHANGE [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_QUOTA [F6EE7E00] SynTP.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_QUOTA [F6EE7E00] SynTP.sys

Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_CREATE 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_CLOSE 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_POWER 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_SYSTEM_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_PNP 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_CREATE 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_CLOSE 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_POWER 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_SYSTEM_CONTROL 86573980
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_PNP 86573980
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CREATE 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CLOSE 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_DEVICE_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_POWER 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_SYSTEM_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_PNP 867EC7C8

AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_NAMED_PIPE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_READ [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_WRITE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FLUSH_BUFFERS [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DIRECTORY_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FILE_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SHUTDOWN [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_LOCK_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLEANUP [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_MAILSLOT [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_POWER [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CHANGE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_QUOTA [804F33F8] ntkrnlpa.exe

Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CREATE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_READ 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_WRITE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_FLUSH_BUFFERS 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SHUTDOWN 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CLEANUP 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_POWER 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SYSTEM_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_PNP 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CREATE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_READ 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_WRITE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_FLUSH_BUFFERS 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_INTERNAL_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SHUTDOWN 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CLEANUP 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_POWER 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SYSTEM_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_PNP 8695E1D8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLOSE 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_READ 8673A5F0
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_WRITE 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 866F05E0
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_POWER 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_PNP 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CLOSE 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_READ 8673A5F0
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_WRITE 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_FLUSH_BUFFERS 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DEVICE_CONTROL 866F05E0
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SHUTDOWN 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_POWER 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SYSTEM_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_PNP 867EF698
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_CREATE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_READ 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_WRITE 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_FLUSH_BUFFERS 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_INTERNAL_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_SHUTDOWN 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_CLEANUP 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_POWER 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_SYSTEM_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_PNP 8695E1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CLOSE 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DEVICE_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867DCE20
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_POWER 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SYSTEM_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_PNP 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_CREATE 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_CLOSE 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_DEVICE_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 867DCE20
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_POWER 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_SYSTEM_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 IRP_MJ_PNP 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CLOSE 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DEVICE_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_INTERNAL_DEVICE_CONTROL 867DCE20
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_POWER 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SYSTEM_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_PNP 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_CREATE 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_CLOSE 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_DEVICE_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_INTERNAL_DEVICE_CONTROL 867DCE20
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_POWER 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_SYSTEM_CONTROL 8695D1D8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e IRP_MJ_PNP 8695D1D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_CREATE 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_CLOSE 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_INTERNAL_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_CLEANUP 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{7A2BF1FF-F883-4ABE-96B6-1A6547CDEB65} IRP_MJ_PNP 867081D8
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CREATE 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CLOSE 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_READ 8673A5F0
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_WRITE 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_FLUSH_BUFFERS 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_DEVICE_CONTROL 866F05E0
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SHUTDOWN 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_POWER 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SYSTEM_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_PNP 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_CREATE 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_CLOSE 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_READ 8673A5F0
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_WRITE 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_FLUSH_BUFFERS 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_DEVICE_CONTROL 866F05E0
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_SHUTDOWN 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_POWER 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_SYSTEM_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom3 IRP_MJ_PNP 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_CREATE 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_CLOSE 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_READ 8673A5F0
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_WRITE 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_FLUSH_BUFFERS 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_DEVICE_CONTROL 866F05E0
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_SHUTDOWN 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_POWER 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_SYSTEM_CONTROL 867EF698
Device \Driver\Cdrom \Device\CdRom4 IRP_MJ_PNP 867EF698
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CREATE 867081D8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLOSE 867081D8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_INTERNAL_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLEANUP 867081D8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_PNP 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_CREATE 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_CLOSE 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_INTERNAL_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_CLEANUP 867081D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{2441A336-AEDF-4DAC-9FA0-50A620469ACC} IRP_MJ_PNP 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CREATE 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLOSE 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_INTERNAL_DEVICE_CONTROL 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLEANUP 867081D8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_PNP 867081D8

AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_NAMED_PIPE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_READ [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_WRITE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FLUSH_BUFFERS [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DIRECTORY_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FILE_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SHUTDOWN [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_LOCK_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLEANUP [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_MAILSLOT [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_POWER [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CHANGE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_NAMED_PIPE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_READ [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_WRITE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_EA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FLUSH_BUFFERS [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_VOLUME_INFORMATION [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DIRECTORY_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FILE_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SHUTDOWN [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_LOCK_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLEANUP [F71EE044] Tahi.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_MAILSLOT [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_SECURITY [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_POWER [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SYSTEM_CONTROL [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CHANGE [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_QUOTA [804F33F8] ntkrnlpa.exe
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_QUOTA [804F33F8] ntkrnlpa.exe

Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_CREATE 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_CLOSE 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_POWER 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_SYSTEM_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_PNP 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_CREATE 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_CLOSE 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_POWER 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_SYSTEM_CONTROL 86573980
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_PNP 86573980
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_NAMED_PIPE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLOSE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_READ 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_WRITE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_EA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_EA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FLUSH_BUFFERS 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_VOLUME_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_VOLUME_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DIRECTORY_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FILE_SYSTEM_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_INTERNAL_DEVICE_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SHUTDOWN 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_LOCK_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLEANUP 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_MAILSLOT 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_SECURITY 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_SECURITY 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_POWER 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SYSTEM_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CHANGE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_QUOTA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_QUOTA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_PNP 866A61D8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CREATE 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CLOSE 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_DEVICE_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_POWER 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_SYSTEM_CONTROL 867EC7C8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_PNP 867EC7C8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_NAMED_PIPE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLOSE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_READ 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_WRITE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_EA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_EA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FLUSH_BUFFERS 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_VOLUME_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_VOLUME_INFORMATION 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DIRECTORY_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FILE_SYSTEM_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_INTERNAL_DEVICE_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SHUTDOWN 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_LOCK_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLEANUP 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_MAILSLOT 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_SECURITY 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_SECURITY 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_POWER 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SYSTEM_CONTROL 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CHANGE 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_QUOTA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_QUOTA 866A61D8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_PNP 866A61D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CREATE 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_READ 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_WRITE 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_FLUSH_BUFFERS 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_INTERNAL_DEVICE_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SHUTDOWN 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CLEANUP 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_POWER 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SYSTEM_CONTROL 8695E1D8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_PNP 8695E1D8
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_CREATE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_CREATE_NAMED_PIPE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_CLOSE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_READ 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_WRITE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_QUERY_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SET_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_QUERY_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SET_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_FLUSH_BUFFERS 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_QUERY_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SET_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_DIRECTORY_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_FILE_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_DEVICE_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_INTERNAL_DEVICE_CONTROL 867F1CA0
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SHUTDOWN 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_LOCK_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_CLEANUP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_CREATE_MAILSLOT 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_QUERY_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SET_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_POWER 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_DEVICE_CHANGE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_QUERY_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_SET_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1 IRP_MJ_PNP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_CREATE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_CREATE_NAMED_PIPE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_CLOSE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_READ 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_WRITE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_QUERY_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SET_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_QUERY_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SET_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_FLUSH_BUFFERS 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_QUERY_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SET_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_DIRECTORY_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_FILE_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_DEVICE_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867F1CA0
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SHUTDOWN 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_LOCK_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_CLEANUP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_CREATE_MAILSLOT 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_QUERY_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SET_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_POWER 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_DEVICE_CHANGE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_QUERY_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_SET_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target3Lun0 IRP_MJ_PNP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_CREATE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_CREATE_NAMED_PIPE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_CLOSE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_READ 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_WRITE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_QUERY_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SET_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_QUERY_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SET_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_FLUSH_BUFFERS 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_QUERY_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SET_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_DIRECTORY_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_FILE_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_DEVICE_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867F1CA0
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SHUTDOWN 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_LOCK_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_CLEANUP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_CREATE_MAILSLOT 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_QUERY_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SET_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_POWER 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_DEVICE_CHANGE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_QUERY_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_SET_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target1Lun0 IRP_MJ_PNP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_CREATE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_CREATE_NAMED_PIPE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_CLOSE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_READ 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_WRITE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_QUERY_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SET_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_QUERY_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SET_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_FLUSH_BUFFERS 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_QUERY_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SET_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_DIRECTORY_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_FILE_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_DEVICE_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867F1CA0
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SHUTDOWN 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_LOCK_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_CLEANUP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_CREATE_MAILSLOT 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_QUERY_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SET_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_POWER 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_DEVICE_CHANGE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_QUERY_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_SET_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target0Lun0 IRP_MJ_PNP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_CREATE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_CREATE_NAMED_PIPE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_CLOSE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_READ 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_WRITE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_QUERY_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SET_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_QUERY_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SET_EA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_FLUSH_BUFFERS 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_QUERY_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SET_VOLUME_INFORMATION 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_DIRECTORY_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_FILE_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_DEVICE_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867F1CA0
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SHUTDOWN 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_LOCK_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_CLEANUP 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_CREATE_MAILSLOT 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_QUERY_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SET_SECURITY 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_POWER 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SYSTEM_CONTROL 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_DEVICE_CHANGE 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_QUERY_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_SET_QUOTA 8650F980
Device \Driver\st3wolf \Device\Scsi\st3wolf1Port2Path0Target2Lun0 IRP_MJ_PNP 8650F980
Device \FileSystem\Fastfat \Fat IRP_MJ_CREATE 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_CLOSE 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_READ 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_WRITE 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_INFORMATION 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_INFORMATION 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_EA 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_EA 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_FLUSH_BUFFERS 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_VOLUME_INFORMATION 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_VOLUME_INFORMATION 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_DIRECTORY_CONTROL 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_FILE_SYSTEM_CONTROL 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CONTROL 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_SHUTDOWN 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_LOCK_CONTROL 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_CLEANUP 869421D8
Device \FileSystem\Fastfat \Fat IRP_MJ_PNP 869421D8

AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE [F73141DE] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_NAMED_PIPE [F73141DE] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLOSE [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_READ [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_WRITE [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_INFORMATION [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_INFORMATION [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_EA [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_EA [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FLUSH_BUFFERS [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_VOLUME_INFORMATION [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_VOLUME_INFORMATION [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DIRECTORY_CONTROL [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FILE_SYSTEM_CONTROL [F7314454] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CONTROL [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_INTERNAL_DEVICE_CONTROL [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SHUTDOWN [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_LOCK_CONTROL [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLEANUP [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_MAILSLOT [F73141DE] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_SECURITY [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_SECURITY [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_POWER [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SYSTEM_CONTROL [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CHANGE [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_QUOTA [F7307F4C] fltMgr.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_QUOTA [F7307F4C] fltMgr.sys

Device \FileSystem\Cdfs \Cdfs IRP_MJ_CREATE 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLOSE 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_READ 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_INFORMATION 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SET_INFORMATION 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_VOLUME_INFORMATION 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DIRECTORY_CONTROL 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_FILE_SYSTEM_CONTROL 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DEVICE_CONTROL 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SHUTDOWN 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_LOCK_CONTROL 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLEANUP 86506980
Device \FileSystem\Cdfs \Cdfs IRP_MJ_PNP 86506980

---- EOF - GMER 1.0.13 ----


Kommentar
Fra : stl_s


Dato : 12-07-07 15:15

Heller ikke noget. Vi må prøve med flere logs.

Hent Deckard`s System Scanner her http://www.techsupportforum.com/sectools/Deckard/dss.exe

Luk alle vinduer ned, kør filen, og følg vejledningen. Den laver to logs Main.txt og Extra.txt. Kopier begge logs her ind.

Kommentar
Fra : Daxxa


Dato : 12-07-07 15:25

Det her er så Main teksten

Deckard's System Scanner v20070711.54
Run by Madsen on 2007-07-12 at 15:21:00
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
34: 2007-07-12 13:21:08 UTC - RP125 - Deckard's System Scanner Restore Point
33: 2007-07-12 10:55:25 UTC - RP124 - Systemkontrolpunkt
32: 2007-07-11 07:56:47 UTC - RP123 - Software Distribution Service 3.0
31: 2007-07-10 21:17:42 UTC - RP122 - Systemkontrolpunkt
30: 2007-07-09 21:15:31 UTC - RP121 - Systemkontrolpunkt


-- First Restore Point --
1: 2007-06-09 11:42:40 UTC - RP92 - Installerede Nokia PC Suite


Backed up registry hives.

Performed disk cleanup.


-- HijackThis (run as Madsen.exe) ----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:23:37, on 12-07-2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\AntiVir PersonalEdition Classic\avguard.exe
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\AntiVir PersonalEdition Classic\sched.exe
C:\Programmer\Acer\ASM Agent\G700\asmagent.exe
C:\Programmer\Acer\ASM Agent\G700\EventNodePolling.exe
C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programmer\Comodo\CBOClean\BOCORE.exe
C:\Programmer\Acer\ASM Agent\G700\EventNodeSink.exe
C:\Programmer\Acer\ASM Agent\G700\discoveryAgent.exe
C:\WINDOWS\system32\LckFldService.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmer\Launch Manager\LaunchAp.exe
C:\Programmer\Launch Manager\PowerKey.exe
C:\Programmer\Launch Manager\OSDCtrl.exe
C:\Programmer\Launch Manager\Wbutton.exe
C:\Program Files\Arcade\PCMService.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\Programmer\Matinsoft\GoldTach\GoldTach.exe
C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\Comodo\CBOClean\BOC423.EXE
C:\Programmer\Java\jre1.6.0_01\bin\jusched.exe
C:\Programmer\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\Fælles filer\Ahead\Lib\NMBgMonitor.exe
C:\Programmer\SpywareGuard\sgmain.exe
C:\Programmer\Fælles filer\Ahead\Lib\NMIndexStoreSvr.exe
C:\Programmer\SpywareGuard\sgbhp.exe
C:\Programmer\HP\Digital Imaging\bin\hpqgalry.exe
C:\Programmer\MSN Messenger\msnmsgr.exe
C:\Documents and Settings\Madsen\Lokale indstillinger\Temporary Internet Files\Content.IE5\QOMB58X8\dss[1].exe
C:\PROGRA~1\Madsen.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Programmer\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [LaunchAp] "C:\Programmer\Launch Manager\LaunchAp.exe"
O4 - HKLM\..\Run: [PowerKey] "C:\Programmer\Launch Manager\PowerKey.exe"
O4 - HKLM\..\Run: [LManager] "C:\Programmer\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [CtrlVol] "C:\Programmer\Launch Manager\CtrlVol.exe"
O4 - HKLM\..\Run: [LMgrOSD] "C:\Programmer\Launch Manager\OSDCtrl.exe"
O4 - HKLM\..\Run: [Wbutton] "C:\Programmer\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Arcade\PCMService.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [GoldTach] C:\Programmer\Matinsoft\GoldTach\GoldTach.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Programmer\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [BOC-423] C:\PROGRA~1\Comodo\CBOClean\BOC423.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmer\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmer\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Aminova WordSeeker] "C:\Programmer\Fælles filer\Aminova\WordSeeker\Controller.exe" SHORTCUT
O4 - HKLM\..\Run: [Accelerate] C:\Programmer\Webroot\Accelerate\accelerate.exe /S
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programmer\Fælles filer\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Programmer\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmer\Fælles filer\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: SpywareGuard.lnk = C:\Programmer\SpywareGuard\sgmain.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Hurtig start.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FÆLLES~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmer\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programmer\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASM Agent - Unknown owner - C:\Programmer\Acer\ASM Agent\G700\asmagent.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BOCore - COMODO - C:\Programmer\Comodo\CBOClean\BOCORE.exe
O23 - Service: IPMI Watchdog (IPMIWatchdog) - Unknown owner - C:\Programmer\Acer\ASM Agent\G700\IPMIWD.exe
O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe
O23 - Service: NBService - Nero AG - C:\Programmer\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programmer\Fælles filer\PCSuite\Services\ServiceLayer.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe

--
End of file - 8925 bytes

-- HijackThis Fixed Entries (C:\PROGRA~1\backups\) -----------------------------

backup-20070627-122633-870 F3 - REG:win.ini: load=
backup-20070627-122633-725 F3 - REG:win.ini: run=

-- File Associations -----------------------------------------------------------

[COLOR=red].txt - txtfile - shell\open\command - C:\WINDOWS\NOTEPAD.EXE %1[/COLOR]


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 sfhlp02 (StarForce Protection Helper Driver (version 2.x)) - c:\windows\system32\drivers\sfhlp02.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 sfvfs02 (StarForce Protection VFS Driver (version 2.x)) - c:\windows\system32\drivers\sfvfs02.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 stwlfbus - c:\windows\system32\drivers\stwlfbus.sys
R0 UBHelper - c:\windows\system32\drivers\ubhelper.sys
R1 Hotkey - c:\windows\system32\drivers\hotkey.sys
R1 SASDIFSV - c:\programmer\superantispyware\sasdifsv.sys
R1 SASKUTIL - c:\programmer\superantispyware\saskutil.sys
R1 Tahi - c:\windows\system32\drivers\tahi.sys <Not Verified; MatinSoft. Ltd.; GoldTach Net Monitor>
R1 TsMali - c:\windows\system32\drivers\tsmali.sys <Not Verified; Matinsoft Inc,; GoldLock>
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.2.0.3) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.2.0.3>
R2 atksgt - c:\windows\system32\drivers\atksgt.sys
R2 int15.sys - c:\acer\empowering technology\erecovery\int15.sys
R2 lirsgt - c:\windows\system32\drivers\lirsgt.sys
R3 NTIDrvr (Upper Class Filter Driver) - c:\windows\system32\drivers\ntidrvr.sys <Not Verified; NewTech Infosystems, Inc.; >
R3 pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
R3 pfc (Padus ASPI Shell) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus(R) ASPI Shell>
R3 POWERKEY - c:\programmer\launch manager\powerkey.sys
R3 smbios (SMBIOS Driver V1.0) - c:\windows\system32\drivers\smbios.sys
R3 st3wolf - c:\windows\system32\drivers\st3wolf.sys

S1 Wbutton - c:\windows\system32\drivers\wbutton.sys (file missing)
S3 catchme - c:\docume~1\madsen\lokale~1\temp\catchme.sys (file missing)
S3 imbdrv (IMB Driver v1.0) - c:\windows\system32\drivers\imbdrv.sys
S3 SASENUM - c:\programmer\superantispyware\sasenum.sys <Not Verified; SuperAdBlocker, Inc.; SuperAntiSpyware>
S3 SI15CI - c:\elements\1stboot\si15ci.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 anbmService (Notebook Manager Service) - c:\acer\emanager\anbmserv.exe <Not Verified; OSA Technologies Inc.; Acer eManager for Notebook>
R2 AntiVirScheduler (AntiVir PersonalEdition Classic Scheduler) - "c:\programmer\antivir personaledition classic\sched.exe" <Not Verified; Avira GmbH; Scheduler>
R2 ASM Agent - c:\programmer\acer\asm agent\g700\asmagent.exe
R2 LckFldService - c:\windows\system32\lckfldservice.exe <Not Verified; ; LckFldService>

S2 IPMIWatchdog (IPMI Watchdog) - c:\programmer\acer\asm agent\g700\ipmiwd.exe
S3 NBService - c:\programmer\nero\nero 7\nero backitup\nbservice.exe
S3 ServiceLayer - "c:\programmer\fælles filer\pcsuite\services\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>


-- Scheduled Tasks -------------------------------------------------------------

2007-07-12 12:00:02 358 --a------ C:\WINDOWS\Tasks\HPpromotions photosmart 2600 series.job


-- Files created between 2007-06-12 and 2007-07-12 -----------------------------

2007-07-11 15:01:33 110080 --a------ C:\WINDOWS\system32\nLame.dll
2007-07-11 15:01:33 23040 --a------ C:\WINDOWS\system32\auth.dll
2007-07-11 15:01:32 0 d-------- C:\Programmer\AliveMedia
2007-07-11 11:34:50 0 d-------- C:\Programmer\AVI MPEG RM WMV Joiner
2007-07-10 16:42:59 0 d-------- C:\Temp
2007-07-10 16:41:16 45056 --a------ C:\WINDOWS\system32\WNASPI32.DLL <Not Verified; Adaptec; Adaptec's ASPI Layer>
2007-07-10 16:41:15 16512 --a------ C:\WINDOWS\system32\drivers\ASPI32.SYS <Not Verified; Adaptec; Adaptec's ASPI Layer>
2007-07-09 08:39:00 0 d--hs---- C:\FOUND.003
2007-07-08 00:59:54 0 dr-h----- C:\Documents and Settings\Madsen\Recent
2007-07-07 22:05:09 0 d-------- C:\Programmer\id Software
2007-07-07 22:02:40 0 d--hs---- C:\WINDOWS\ftpcache
2007-07-02 21:04:58 0 d-------- C:\WINDOWS\Sun
2007-07-02 15:45:37 0 d-------- C:\Programmer\Rockstar Games
2007-07-02 14:44:11 0 d-------- C:\Gta Vice City
2007-07-02 10:17:00 0 d-------- C:\Documents and Settings\Madsen\Application Data\Grisoft
2007-07-02 10:16:51 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-07-02 10:09:54 0 d--hs---- C:\FOUND.002
2007-07-01 12:53:00 0 d-------- C:\Documents and Settings\Madsen\Application Data\Ahead
2007-07-01 12:50:52 0 d-------- C:\Documents and Settings\All Users\Application Data\Nero
2007-07-01 12:50:51 0 d-------- C:\Programmer\Nero
2007-07-01 12:50:50 0 d-------- C:\Programmer\Fælles filer\Ahead
2007-06-30 11:15:55 0 d-------- C:\Documents and Settings\Madsen\Application Data\Sun
2007-06-30 10:36:46 1144 --a------ C:\WINDOWS\mozver.dat
2007-06-28 20:37:58 0 d--hs---- C:\FOUND.001
2007-06-28 13:36:48 0 d-------- C:\Programmer\Recuva
2007-06-27 22:45:33 0 d-------- C:\Documents and Settings\Madsen\Application Data\dvdcss
2007-06-27 16:59:30 0 d--hs---- C:\FOUND.000
2007-06-27 12:26:33 0 d-------- C:\Programmer\backups
2007-06-24 18:33:42 388096 --a------ C:\WINDOWS\unacc.exe <Not Verified; Webroot Software, Inc.; >
2007-06-24 18:33:42 0 d-------- C:\Programmer\Webroot
2007-06-22 14:36:20 0 d-------- C:\Documents and Settings\Madsen\Application Data\HP
2007-06-18 21:14:22 0 d-------- C:\Programmer\Gads Bogskab
2007-06-18 21:14:22 0 d-------- C:\Programmer\Fælles filer\Aminova
2007-06-18 21:02:15 0 d-------- C:\Programmer\Polob32
2007-06-13 21:40:37 0 --a------ C:\WINDOWS\nsreg.dat
2007-06-13 21:40:27 0 d-------- C:\Documents and Settings\Madsen\Application Data\Mozilla


-- Find3M Report ---------------------------------------------------------------

2007-07-12 15:23:38 8926 --a------ C:\Programmer\hijackthis.log
2007-07-11 09:59:32 452718 --a------ C:\WINDOWS\system32\perfh006.dat
2007-07-11 09:59:32 82166 --a------ C:\WINDOWS\system32\perfc006.dat
2007-07-09 16:05:08 141 --a------ C:\WINDOWS\system32\mslck.dat
2007-07-08 13:14:34 549 --a------ C:\WINDOWS\eReg.dat
2007-06-11 21:04:26 0 d-------- C:\Programmer\DivX
2007-06-09 18:49:54 32 --a------ C:\WINDOWS\system32\Mlkf.dll
2007-06-09 13:45:54 0 d-------- C:\Documents and Settings\Madsen\Application Data\DataLayer
2007-06-09 13:44:56 0 d-------- C:\Documents and Settings\Madsen\Application Data\Nokia
2007-06-09 13:43:28 0 d-------- C:\Programmer\DIFX
2007-06-09 13:42:46 0 d-------- C:\Programmer\Fælles filer\Nokia
2007-06-09 13:42:34 0 d-------- C:\Documents and Settings\Madsen\Application Data\PC Suite
2007-06-09 13:42:32 0 d-------- C:\Programmer\Fælles filer\PCSuite
2007-06-09 13:42:18 0 d-------- C:\Programmer\Nokia
2007-06-07 19:40:20 0 d-------- C:\Programmer\FolderAccess
2007-06-04 22:11:50 0 d-------- C:\Programmer\D-Tools
2007-05-27 11:12:20 0 d-------- C:\Programmer\Sierra
2007-05-26 22:35:02 0 d-------- C:\Programmer\Pocket Tanks
2007-05-26 20:52:12 0 d-------- C:\Programmer\TrackMania Nations ESWC
2007-05-18 00:37:00 0 d-------- C:\Documents and Settings\Madsen\Application Data\Skype
2007-05-18 00:36:20 0 d-------- C:\Programmer\Skype
2007-05-18 00:36:20 0 d-------- C:\Programmer\Fælles filer\Skype
2007-05-14 15:44:54 0 d-------- C:\Programmer\Western Digital
2007-05-13 17:12:46 0 d-------- C:\Programmer\AGEIA Technologies
2007-05-13 17:07:06 0 d-------- C:\Programmer\Playlogic
2007-05-11 13:09:58 664 --a------ C:\WINDOWS\system32\d3d9caps.dat
2007-05-04 12:13:18 737280 --a------ C:\WINDOWS\iun6002.exe <Not Verified; Indigo Rose Corporation; Setup Factory 6.0 Runtime Module>
2007-05-02 19:29:20 68408 --a------ C:\WINDOWS\hpoins05.dat
2007-05-02 14:42:32 34 --a------ C:\Documents and Settings\Madsen\Application Data\pcouffin.log
2007-05-02 14:42:26 47360 --a------ C:\Documents and Settings\Madsen\Application Data\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
2007-05-02 14:42:26 1144 --a------ C:\Documents and Settings\Madsen\Application Data\pcouffin.inf
2007-05-02 14:42:26 7887 --a------ C:\Documents and Settings\Madsen\Application Data\pcouffin.cat
2007-04-29 17:42:22 1024 -r-h----- C:\WINDOWS\system32\NTIBUN4.dll
2007-04-29 17:42:02 1024 -r-h----- C:\WINDOWS\system32\NTIMPEG2.dll
2007-04-29 17:42:02 1024 -r-h----- C:\WINDOWS\system32\NTIMP3.dll
2007-04-29 17:42:02 1024 -r-h----- C:\WINDOWS\system32\NTIFCD3.dll
2007-04-29 17:42:02 1024 -r-h----- C:\WINDOWS\system32\NTICDMK7.dll
2007-04-29 17:40:10 0 -rahs---- C:\MSDOS.SYS
2007-04-29 17:40:10 0 -rahs---- C:\IO.SYS
2007-04-13 03:21:14 271360 --a------ C:\WINDOWS\system32\mscoree.dll <Not Verified; Microsoft Corporation; Microsoft® .NET Framework>


-- Registry Dump ---------------------------------------------------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{4A368E80-174F-4872-96B5-0B27DDD11DB2}   C:\Programmer\SpywareGuard\dlprotect.dll
{53707962-6F74-2D53-2644-206D7942484F}   C:\PROGRA~1\SPYBOT~1\SDHelper.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"SynTPLpr"="C:\\Programmer\\Synaptics\\SynTP\\SynTPLpr.exe"
"SynTPEnh"="C:\\Programmer\\Synaptics\\SynTP\\SynTPEnh.exe"
"ATIPTA"="C:\\Programmer\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"LaunchAp"="\"C:\\Programmer\\Launch Manager\\LaunchAp.exe\""
"PowerKey"="\"C:\\Programmer\\Launch Manager\\PowerKey.exe\""
"LManager"="\"C:\\Programmer\\Launch Manager\\HotkeyApp.exe\""
"CtrlVol"="\"C:\\Programmer\\Launch Manager\\CtrlVol.exe\""
"LMgrOSD"="\"C:\\Programmer\\Launch Manager\\OSDCtrl.exe\""
"Wbutton"="\"C:\\Programmer\\Launch Manager\\Wbutton.exe\""
"PCMService"="\"C:\\Program Files\\Arcade\\PCMService.exe\""
"SoundMan"="SOUNDMAN.EXE"
"eRecoveryService"="C:\\Acer\\Empowering Technology\\eRecovery\\Monitor.exe"
"GoldTach"="C:\\Programmer\\Matinsoft\\GoldTach\\GoldTach.exe"
"HP Software Update"="\"C:\\Programmer\\HP\\HP Software Update\\HPWuSchd2.exe\""
"BOC-423"="C:\\PROGRA~1\\Comodo\\CBOClean\\BOC423.EXE"
"SunJavaUpdateSched"="\"C:\\Programmer\\Java\\jre1.6.0_01\\bin\\jusched.exe\""
"avgnt"="\"C:\\Programmer\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
"Aminova WordSeeker"="\"C:\\Programmer\\Fælles filer\\Aminova\\WordSeeker\\Controller.exe\" SHORTCUT"
"Accelerate"="C:\\Programmer\\Webroot\\Accelerate\\accelerate.exe /S"
"Adobe Reader Speed Launcher"="\"C:\\Programmer\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"NeroFilterCheck"="C:\\Programmer\\Fælles filer\\Ahead\\Lib\\NeroCheck.exe"
"!AVG Anti-Spyware"="\"C:\\Programmer\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"MsnMsgr"="\"C:\\Programmer\\MSN Messenger\\MsnMsgr.Exe\" /background"
"Skype"="\"C:\\Programmer\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Programmer\\Fælles filer\\Ahead\\Lib\\NMBgMonitor.exe\""

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=dword:00000000

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"DisableRegistryTools"=dword:00000000

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon

HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
Authentication Packages   REG_MULTI_SZ    msv1_0\0\0
Security Packages   REG_MULTI_SZ    kerberos\0msv1_0\0schannel\0wdigest\0\0
Notification Packages   REG_MULTI_SZ    scecli\0\0

HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menuen Start^Programmer^Start^WinZip Quick Pick.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menuen Start\\Programmer\\Start\\WinZip Quick Pick.lnk"
"backup"="C:\\WINDOWS\\pss\\WinZip Quick Pick.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\WinZip\\WZQKPICK.EXE "
"item"="WinZip Quick Pick"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="daemon"
"hkey"="HKLM"
"command"="\"C:\\Programmer\\D-Tools\\daemon.exe\" -lang 1033"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="LAUNCH~1"
"hkey"="HKLM"
"command"="C:\\PROGRA~1\\Nokia\\NOKIAP~1\\LAUNCH~1.EXE -startup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PicasaMediaDetector"
"hkey"="HKLM"
"command"="C:\\Programmer\\Picasa2\\PicasaMediaDetector.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="steam"
"hkey"="HKCU"
"command"="\"c:\\programmer\\valve\\steam\\steam.exe\" -silent"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SUPERAntiSpyware"
"hkey"="HKCU"
"command"="C:\\Programmer\\SUPERAntiSpyware\\SUPERAntiSpyware.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter   REG_MULTI_SZ    HTTPFilter\0\0
LocalService   REG_MULTI_SZ    Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService   REG_MULTI_SZ    DnsCache\0\0
DcomLaunch   REG_MULTI_SZ    DcomLaunch\0TermService\0\0
rpcss   REG_MULTI_SZ    RpcSs\0\0
imgsvc   REG_MULTI_SZ    StiSvc\0\0
termsvcs   REG_MULTI_SZ    TermService\0\0
WudfServiceGroup   REG_MULTI_SZ    WUDFSvc\0\0

*newlycreated* - HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\LEGACY_INT15.SYS


-- End of Deckard's System Scanner: finished at 2007-07-12 at 15:27:20 ---------



Kommentar
Fra : Daxxa


Dato : 12-07-07 15:26

Her kommer extra.txt

Deckard's System Scanner v20070711.54
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: Other (0406) - see http://preview.tinyurl.com/mhhp6

CPU 0: AMD Turion(tm) 64 Mobile Technology ML-32
Percentage of Memory in Use: 46%
Physical Memory (total/avail): 1022.16 MiB / 548.12 MiB
Pagefile Memory (total/avail): 2458.02 MiB / 2015.12 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1962.23 MiB

C: is Fixed (FAT32) - 44.65 GiB total, 12.85 GiB free.
D: is Fixed (FAT32) - 45.36 GiB total, 23.43 GiB free.
E: is CDROM (No Media)
F: is CDROM (CDFS)
G: is CDROM (No Media)
H: is CDROM (No Media)
I: is CDROM (No Media)


-- Security Center -------------------------------------------------------------

AUOptions is set to notify before install.
Windows Internal Firewall is enabled.

FirstRunDisabled is set.

AV: Avira AntiVir PersonalEdition v 6.39.0.114
(Avira GmbH)

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Programmer\\MSN Messenger\\msnmsgr.exe"="C:\\Programmer\\MSN Messenger\\msnmsgr.exe:*:Enabled:Messenger"
"C:\\Programmer\\Skype\\Phone\\Skype.exe"="C:\\Programmer\\Skype\\Phone\\Skype.exe:*:Disabled:Skype. Take a deep breath "
"C:\\Programmer\\LimeWire\\LimeWire.exe"="C:\\Programmer\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Madsen\Application Data
CommonProgramFiles=C:\Programmer\F‘lles filer
COMPUTERNAME=DANIEL
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Madsen
LOGONSERVER=\\DANIEL
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Programmer\ATI Technologies\ATI Control Panel
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 36 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=2402
ProgramFiles=C:\Programmer
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Madsen\LOKALE~1\Temp
TMP=C:\DOCUME~1\Madsen\LOKALE~1\Temp
USERDOMAIN=DANIEL
USERNAME=Madsen
USERPROFILE=C:\Documents and Settings\Madsen
windir=C:\WINDOWS


-- User Profiles ---------------------------------------------------------------

Madsen (admin)


-- Add/Remove Programs ---------------------------------------------------------

--> C:\PROGRA~1\FOLDER~1\FOLDER~1.EXE UnInstall
--> C:\Programmer\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
--> C:\WINDOWS\IsUninst.exe -f"C:\Programmer\Acer Inc.\Acer English Online Help Creator\Uninst.isu"
--> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
--> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
--> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
--> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
--> C:\WINDOWS\UNRecode.exe /UNINSTALL
--> MsiExec.exe /X{7B4AB13C-1A5C-4BC5-ABA6-762F8198444C}
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Accelerate --> C:\WINDOWS\unacc.exe
Acer eManager for Notebook --> C:\Programmer\Fælles filer\InstallShield\Driver\8\Intel 32\IDriver.exe /M{827289F5-B44F-4E49-9993-840741585A62}
Acer GridVista --> C:\WINDOWS\UnInst32.exe GridV.UNI
Acer Server Management Suite --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{923F65ED-393A-419D-8E32-2B8FDC1B9E4C}\Setup.exe" -l0x9
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.0 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81000000003}
AGEIA PhysX v6.10.05 --> MsiExec.exe /X{582876EC-A178-44D4-9823-C10D6C62EAFF}
Alive DVD Ripper (version 2.2.3.6) --> "C:\Programmer\AliveMedia\DVD Ripper\unins000.exe"
Arcade 3.0 --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" -uninstall
Athlon 64 Processor Driver --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x6
ATI - Software Uninstall Utility --> C:\Programmer\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Control Panel --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
ATI Display Driver --> rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
AVG Anti-Spyware 7.5 --> C:\Programmer\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
AVI/MPEG/RM/WMV Joiner 4.82 --> "C:\Programmer\AVI MPEG RM WMV Joiner\unins000.exe"
Avira AntiVir PersonalEdition Classic --> C:\Programmer\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
Azureus Vuze --> C:\Programmer\Azureus\uninstall.exe
Battlefield Vietnam(TM) --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{E35B3C63-E958-4E31-A178-95D22024109A}\setup.exe" -l0x9
Battlefield Vietnam: WW2 Mod --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{F989306B-9287-444F-AE73-E30C7E4AF0F5}\setup.exe" -l0x9
BOClean --> C:\WINDOWS\CMDLIC.DLL
Broadcom 802.11 Network Adapter --> C:\WINDOWS\system32\BCMWLU00.exe verbose
CCleaner (remove only) --> "C:\Programmer\CCleaner\uninst.exe"
ConvertXtoDVD 2.1.18.242 --> "C:\Programmer\VSO\ConvertXtoDVD\unins000.exe"
Counter-Strike: Source --> "C:\Programmer\Valve\Steam\steam.exe" steam://uninstall/240
coverXP (remove only) --> "C:\Programmer\coverXP\cxp-uninst.exe"
DAEMON Tools --> MsiExec.exe /I{7A27AE24-F5B8-4ABC-B3DA-AB57BC7309FB}
Data Lifeguard Tools --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{2C0A655C-61E7-428A-8ED2-23A3D20E7DD2}\Setup.exe"
DivX Content Uploader --> C:\Programmer\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
DivX Web Player --> C:\Programmer\DivX\DivXWebPlayerUninstall.exe /PLUGIN
ExtractNow --> "C:\Programmer\ExtractNow\unins000.exe"
FEAR --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{2B653229-9854-4989-B780-D978F5F13EAB}\setup.exe" -l0x9 /zU -removeonly
Gads Engelsk Large --> MsiExec.exe /I{215343A1-E60B-48CF-A03C-FA056A6E1D73}
GameSpy Arcade --> C:\PROGRA~1\GAMESP~1\UNWISE.EXE C:\PROGRA~1\GAMESP~1\INSTALL.LOG
GoldTach 3.3 --> C:\Programmer\Matinsoft\GoldTach\Uninst.exe
Grand Theft Auto Vice City --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{4B35F00C-E63D-40DC-9839-DF15A33EAC46}\Setup.exe" -l0x9
Half-Life(R) 2 --> MsiExec.exe /I{D45EC259-4A19-4656-B588-C2C360DD18EA}
HijackThis 2.0.2 --> "C:\Programmer\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix til Windows XP (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
HP Extended Capabilities 4.7 --> C:\Programmer\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Image Zone 4.7 --> C:\Programmer\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP Officejet 5600 series --> rundll32 hpzcon12.dll,VendorJettison HP Officejet 5600 series
HP PSC & OfficeJet 4.7 --> "C:\Programmer\HP\Digital Imaging\{342C7C88-D335-4bc2-8CF1-281857629CE2}\setup\hpzscr01.exe" -datfile hposcr05.dat
HP Software Update --> MsiExec.exe /X{64FC0C98-B035-4530-B15D-3D30610B6DF1}
Infernal --> C:\Programmer\Playlogic\Infernal\uninstall.exe
J2SE Runtime Environment 5.0 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150030}
Java(TM) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
K-Lite Codec Pack 3.01 Full --> "C:\Programmer\K-Lite Codec Pack\unins000.exe"
Launch Manager V1.0.8.3 --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{D0846526-66DD-4DC9-A02C-98F9A2806812}\SETUP.EXE" -l0x6
LimeWire 4.12.11 --> "C:\Programmer\LimeWire\uninstall.exe"
Microsoft Base Smart Card Crypto-udbyder --> "C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office Standard Edition 2003 --> MsiExec.exe /I{91120406-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Mozilla Firefox (2.0.0.4) --> C:\Programmer\Mozilla Firefox\uninstall\helper.exe
MSXML 6.0 Parser --> MsiExec.exe /I{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}
Nero 7 Ultra Edition --> MsiExec.exe /I{235BBFC6-D863-4066-A01A-3BD504C31030}
Nokia Connectivity Cable Driver --> MsiExec.exe /X{6882DD11-33B8-4DEA-8305-7E765BF74BD3}
Nokia PC Connectivity Solution --> MsiExec.exe /I{9F2BDC61-4D2D-47C0-BCB6-7D43D0EA7948}
Nokia PC Suite --> MsiExec.exe /I{79880ACC-B5AB-486A-B95D-03F55DF3F9C6}
NTI Backup NOW! 4 --> C:\PROGRA~1\FÆLLES~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{B06B842F-2450-494F-BBDE-217CDC151A37} /l1033 BUN4
NTI CD & DVD-Maker Gold --> C:\PROGRA~1\FÆLLES~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{E98412A2-8AB2-4BCE-AB3F-384B0239557E} /l1033 CDM7
Opdatering til Windows XP (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB920342) --> "C:\WINDOWS\$NtUninstallKB920342$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB925720) --> "C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB925876) --> "C:\WINDOWS\$NtUninstallKB925876$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
Opdatering til Windows XP (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"
Picasa 2 --> "C:\Programmer\Picasa2\Uninstall.exe"
Pocket Tanks v1.2 --> "C:\Programmer\Pocket Tanks\unins000.exe"
Politikens Tysk-Dansk-Tysk --> MsiExec.exe /I{3EFDBD83-BD75-429A-89CA-32BA52C6A2FA}
PowerProducer --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" -uninstall
Quake 4(TM) --> C:\PROGRA~1\FÆLLES~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{152B782A-05F3-48EC-9AAC-4D3EB68D9E20} /l2057
Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\Setup.exe" -l0x6 -removeonly
REALTEK Gigabit and Fast Ethernet NIC Driver --> RunDll32 C:\PROGRA~1\FÆLLES~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{94FB906A-CF42-4128-A509-D353026A607E}\setup.exe" -l0x6 REMOVE
Recuva (remove only) --> "C:\Programmer\Recuva\uninst.exe"
Sikkerhedsopdatering til Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB917422) --> "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB923689) --> "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB923694) --> "C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB928090) --> "C:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
Sikkerhedsopdatering til Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
Skype™ 3.2 --> MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
SoftV90 Data Fax Modem with SmartCP --> C:\Programmer\CONEXANT\CNXT_MODEM_PCI_VEN_1002&DEV_4378&SUBSYS_00801025\HXFSETUP.EXE -U -IVEN_1002&DEV_4378&SUBSYS_00801025
Spybot - Search & Destroy 1.4 --> "C:\Programmer\Spybot - Search & Destroy\unins000.exe"
SpywareBlaster v3.5.1 --> "C:\Programmer\SpywareBlaster\unins000.exe"
SpywareGuard v2.2 --> C:\Programmer\SpywareGuard\unins000.exe
Steam(TM) --> MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
Subtitle Workshop 2.51 --> "C:\Programmer\URUSoft\Subtitle Workshop\uninstall.exe"
SUPERAntiSpyware Free Edition --> MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
Synaptics Pointing Device Driver --> rundll32.exe "C:\Programmer\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Texas Instruments PCIxx21/x515 drivers. --> C:\PROGRA~1\FÆLLES~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{E7A744FD-E1B8-4FF6-ADC1-EA4C32181457} /l1033
TrackMania Nations ESWC 1.7.9 --> "C:\Programmer\TrackMania Nations ESWC\unins000.exe"
VideoLAN VLC media player 0.8.4a --> C:\Programmer\VideoLAN\VLC\uninstall.exe
WD Diagnostics --> MsiExec.exe /X{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}
Winamp (remove only) --> "C:\Programmer\Winamp\UninstWA.exe"
Windows Communication Foundation --> MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Driver Package - Nokia Modem (06/12/2006 6.81.0.21) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_62A340731F8930057B44B8864F236850B0D49D65\nokbtmdm.inf
Windows Imaging Component --> "C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122 --> "C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
Windows Presentation Foundation --> MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Presentation Foundation Language Pack (DAN) --> MsiExec.exe /X{2729C4B5-822B-43BB-9645-3E2C23F88489}
Windows Workflow Foundation --> MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
Windows Workflow Foundation DA Language Pack --> MsiExec.exe /I{AD91693E-78BA-48BF-81E5-6BE98FD09E1F}
WinRAR arkivering --> C:\Programmer\WinRAR\uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0 --> "C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
XML Paper Specification Shared Components Pack 1.0 -->


-- End of Deckard's System Scanner: finished at 2007-07-12 at 15:27:20 ---------



Kommentar
Fra : stl_s


Dato : 12-07-07 19:08

Ja jeg kan ikke finde noget skidt, så det kan være at det er et af dine programmer der laver problemet. Kan du huske hvornår problemet opstod, og hvad du havde installeret lige før ?

Kommentar
Fra : Daxxa


Dato : 12-07-07 19:11

Hva for et af problemerne??,

Kommentar
Fra : stl_s


Dato : 12-07-07 19:19

Gerne begge to. Både med firewallen, og med fejlsikret.

Kommentar
Fra : Daxxa


Dato : 12-07-07 19:24

Fejlsikret har stået på såen i meget lang tid... Men ved ikk helt hva det kan være med firewallen :S

Det sidst jeg har installeret er vidst et spil, :S
Må indrømme jeg bare overhovedet ingn anelse om hva det kan være.

Kommentar
Fra : Daxxa


Dato : 12-07-07 20:09

Hvis du kan bruge det til noget så jan jeg ikk tilslutte til skype mere :S

Kommentar
Fra : stl_s


Dato : 12-07-07 21:25

Prøv om du kan finde en løsning på Skype problemet her (eller måske en anden tråd) http://forum.skype.com/index.php?showtopic=45961

Kører dine sikkerhedsprogrammer normalt nu ?

Kommentar
Fra : Daxxa


Dato : 12-07-07 22:02

Ka ik opdatere mit Avira Antivir

Kommentar
Fra : stl_s


Dato : 12-07-07 22:33

Hmm, det KAN skyldes den mystiske ????? i firewallen. Avira skal connecte internt i maskinen, og det KAN være den du blokerer der.

Kommentar
Fra : Daxxa


Dato : 12-07-07 22:35

Har os tænkt på det, men mærkeligt den lii hedder ???. og den er kommet fornyligt.

Er lidt nervøs for at tillade den

Kommentar
Fra : stl_s


Dato : 12-07-07 22:56

Jeg tror bare at du skal prøve at tillade den. Nu er der jo rigtig mange logs, så jeg har fået Ejvindh til at også at gå dem igennem, og vi er rimeligt enige om, at der ikke er problemer i dem.

Kommentar
Fra : Daxxa


Dato : 12-07-07 22:58

Okay, så prøver jeg bar at tillade dem. Så må vi bare håbe på det bedste :D

Kommentar
Fra : stl_s


Dato : 12-07-07 23:33

Prøv evt om du kan se hvad det connecter til. Så vidt jeg husker, så kan du se de forskellige forbindelser i GoldTach

Prøv lige om dette kan afhjælpe dit fejlsikret problem:

Hent dette værktøj, og gem det på skrivebordet:
http://download.bleepingcomputer.com/sUBs/SafeBootKeyRepair.exe

Dobbeltklik på SafeBootKeyRepair, og følg instruksionerne. Når
programmet har gjort sit arbejde, åbnes en logfil, som du gerne må lægge
herind til check.




Kommentar
Fra : Daxxa


Dato : 13-07-07 09:34

Ved ikk lige hvor det er jeg ska se hvad det connecter til :S



Kommentar
Fra : Daxxa


Dato : 13-07-07 09:43

Reg export of SafeBoot key after repair:
========================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot]
"AlternateShell"="cmd.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\AppMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\AVG Anti-Spyware Driver]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\AVG Anti-Spyware Guard]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Base]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot file system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\CryptSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\DcomLaunch]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmadmin]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmboot.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmio.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmload.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmserver]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\EventLog]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\File system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\HelpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Netlogon]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PCI Configuration]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PlugPlay]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PNP Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Primary disk]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\RpcSs]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SCSI Class]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sermouse.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sr.sys]
@="FSFilter System Recovery"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SRService]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\System Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vga.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vgasave.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\WinMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
@="Universal Serial Bus controllers"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
@="CD-ROM Drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
@="DiskDrive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
@="Hdc"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
@="Keyboard"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
@="Mouse"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
@="PCMCIA Adapters"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
@="SCSIAdapter"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
@="System"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
@="Volume"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
@="Human Interface Devices"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AFD]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AppMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AVG Anti-Spyware Driver]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AVG Anti-Spyware Guard]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Base]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot file system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Browser]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\CryptSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DcomLaunch]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Dhcp]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmadmin]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmboot.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmio.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmload.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmserver]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DnsCache]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\EventLog]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\File system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\HelpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ip6fw.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ipnat.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanServer]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanWorkstation]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LmHosts]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Messenger]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS Wrapper]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Ndisuio]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOS]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOSGroup]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBT]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetDDEGroup]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Netlogon]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetMan]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Network]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetworkProvider]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NtLmSsp]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PCI Configuration]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PlugPlay]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP_TDI]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Primary disk]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpcdd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpdd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpwd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdsessmgr]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\RpcSs]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SCSI Class]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sermouse.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SharedAccess]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sr.sys]
@="FSFilter System Recovery"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SRService]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Streams Drivers]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\System Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Tcpip]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\TDI]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdpipe.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdtcp.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\termservice]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vga.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vgasave.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WinMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WZCSVC]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{36FC9E60-C465-11CF-8056-444553540000}]
@="Universal Serial Bus controllers"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
@="CD-ROM Drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
@="DiskDrive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
@="Hdc"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
@="Keyboard"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
@="Mouse"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
@="Net"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
@="NetClient"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
@="NetService"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
@="NetTrans"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
@="PCMCIA Adapters"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
@="SCSIAdapter"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
@="System"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
@="Volume"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
@="Human Interface Devices"

========================

HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard


Kommentar
Fra : stl_s


Dato : 13-07-07 12:03

Virker opdateringen til dit antivirus nu ? Kan du komme i fejlsikret nu ?

Det er muligt at funktionen slet ikke er i Goldtach. Jeg kan ikke huske det, må jeg indrømme.

Kommentar
Fra : Daxxa


Dato : 13-07-07 12:48

Kan ikk opdatere, skulle jeg egentlig tillade ???

Kommentar
Fra : stl_s


Dato : 13-07-07 16:51

Prøv en gang og se om det virker.

Kommentar
Fra : Daxxa


Dato : 14-07-07 12:20

Det virker nu selvom de stadig er blokket, men der er kommet en ny :s

Og fejlsikret virker stadig ikke, og har mange problemer med at komme ind når jeg først har prøvet fejlsikret, så slukker den hele tiden ved normal efter omkring 5-10 sekunder.

Accepteret svar
Fra : stl_s

Modtaget 200 point
Dato : 14-07-07 13:46

Ok, prøv lige en chkdsk:

Gå i Start/Kør - skriv chkdsk /f /r (husk mellemrum). Du får at vide at drevet er låst. Tryk så j (ja) og <enter> og genstart maskinen. Den tager lang tid (og hjælper måske ikke, men skal prøves).

Kommentar
Fra : Daxxa


Dato : 14-07-07 14:02

http://peecee.dk/?id=57570

Skal jeg bare trykke J, og så genstarte?

Kommentar
Fra : stl_s


Dato : 14-07-07 14:30

Tryk j og tryk på <enter> knappen og genstart. Så kører den ved boot.

Kommentar
Fra : Daxxa


Dato : 14-07-07 15:40

Så de os gjordt


Kommentar
Fra : stl_s


Dato : 14-07-07 16:36

Og ingen ændring ?

Lad os lige se hvad de to ????? er for noget. Hent Currports her http://www.nirsoft.net/utils/cports.html

TILLAD de to ????? forbindelser i din firewall, og genstart maskinen.

Kør Currports. Når den viser alle dine forbindelser, Så gå op i "View" og klik "HTML Report - All Items". Den åbner i browseren, men laver også en HTML fil på dit skrivebord. Send den til mig pr mail.

Kommentar
Fra : stl_s


Dato : 14-07-07 16:38

Husk når du har tilladt de to, også at gemme indstillingerne i firewallen. Gøres vist øverst i vinduet, så vidt jeg husker .

Kommentar
Fra : Daxxa


Dato : 14-07-07 18:11

Er gjordt :b

Kommentar
Fra : Daxxa


Dato : 14-07-07 18:34

Der er 3 af ???

Kommentar
Fra : stl_s


Dato : 14-07-07 18:41

Det var Antivirs interne forbindelser, som jeg regnede med. Firewallen bliver nok lidt "mystificeret" over dem. Den tredie går til Microsoft, og så vidt jeg kan finde ud af, har den forbindelse med MSN og Hotmail. Så ingen problemer med dem.

Har du prøvet at komme i fejlsikret, efter at have kørt chkdsk ?

Kommentar
Fra : Daxxa


Dato : 14-07-07 18:58

Endelig en god nyhed :P, Kan godt komme i fejlsikret tilstand, og har gemt de ??? som tilladt og der er vidst ingen problemer...

Kommentar
Fra : stl_s


Dato : 14-07-07 19:04

Jamen det lyder da godt .

Kommentar
Fra : Daxxa


Dato : 14-07-07 22:49

Så er det vel egentlig ved at være det, så der er vidst ikke flere problemer i den her omgang

Kommentar
Fra : stl_s


Dato : 14-07-07 23:01

Der skal såmænd nok dukke nye probs op

Kommentar
Fra : stl_s


Dato : 14-07-07 23:04

Det blev også til en tråd på 674780 byte

Kommentar
Fra : Daxxa


Dato : 14-07-07 23:06

Hah, jah de kommer altid på et eller andet tidspunkt

Ja den blev rimelig lang (:
Men nu kan jeg vel egentlig bare lukke den

Kommentar
Fra : stl_s


Dato : 14-07-07 23:52

Jeg tror at du roligt kan lukke den. Der er nok ikke så mange, der vil bruge den til godnatlæsning .

Kommentar
Fra : Daxxa


Dato : 15-07-07 09:39

Hah det tvivler jeg os lidt på

Godkendelse af svar
Fra : Daxxa


Dato : 15-07-07 10:27

Tak for svaret endnu engang stl_s



Kommentar
Fra : stl_s


Dato : 15-07-07 18:12

Velbekomme endnu en gang Daxxa

Du har følgende muligheder
Eftersom du ikke er logget ind i systemet, kan du ikke skrive et indlæg til dette spørgsmål.

Hvis du ikke allerede er registreret, kan du gratis blive medlem, ved at trykke på "Bliv medlem" ude i menuen.
Søg
Reklame
Statistik
Spørgsmål : 177558
Tips : 31968
Nyheder : 719565
Indlæg : 6408914
Brugere : 218888

Månedens bedste
Årets bedste
Sidste års bedste