Koneen käynnistys hidas, HjT-loki

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by erkki4, Dec 11, 2006.

Thread Status:
Not open for further replies.
  1. erkki4

    erkki4 Member

    Joined:
    Dec 11, 2006
    Messages:
    30
    Likes Received:
    0
    Trophy Points:
    16
    Logfile of HijackThis v1.99.1
    Scan saved at 16:55:48, on 11.12.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Razer\razerhid.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\Eset\nod32krn.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
    C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    C:\Program Files\CyberLink\Shared files\RichVideo.exe
    C:\Program Files\Sygate\SPF\smc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Razer\razertra.exe
    C:\Program Files\Razer\razerofa.exe
    C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Documents and Settings\Mikkonen\Omat tiedostot\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
    O4 - HKLM\..\Run: [razer] C:\Program Files\Razer\razerhid.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - Global Startup: hp psc 1000 series.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1165782562046
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{CACADDBD-3391-491B-BAB1-C4EE15089B9D}: NameServer = 212.116.32.218 212.116.32.222
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
    O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe
     
  2. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Moi!
    Nimeä HijackThis.exe uudestaan vaikka erkki.exe ja ota sen jälkeen uusi hjt-logi ja lähetä tänne
     
  3. erkki4

    erkki4 Member

    Joined:
    Dec 11, 2006
    Messages:
    30
    Likes Received:
    0
    Trophy Points:
    16
    Vaihoin ton .exe nimen. Miksi se piti muuttaa?

    Logfile of HijackThis v1.99.1
    Scan saved at 18:22:31, on 11.12.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Razer\razerhid.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    C:\Program Files\Razer\razertra.exe
    C:\Program Files\Razer\razerofa.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    C:\Program Files\CyberLink\Shared files\RichVideo.exe
    C:\Program Files\Sygate\SPF\smc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
    C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Documents and Settings\Mikkonen\Omat tiedostot\utorrent-1.6.1-beta-build-483.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\Mikkonen\Omat tiedostot\HijackThis\erkki.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
    O4 - HKLM\..\Run: [razer] C:\Program Files\Razer\razerhid.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - Global Startup: hp psc 1000 series.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1165782562046
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{CACADDBD-3391-491B-BAB1-C4EE15089B9D}: NameServer = 212.116.32.218 212.116.32.222
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
    O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe

     
  4. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Moro erkki4! Nimen vaihdos sen takia koska jotkut önniäiset pystyy menemään piiloon kun tekee hjt-scannauksen
    Mitään pahempaa ei näy tällä hetkellä mutta kaikki virukset ei näy Hjt-lokissa.Kokeillaan vielä etsiä niitä

    Lataa GMER ja tallenna se työpöydällesi:
    • Pura se työpöydälle ja tuplaklikkaa tiedostoa GMER.exe
    • Klikkaa rootkit-välilehteä ja sitten klikkaa scan.
    • Älä rastita "Show All" boksia skannauksen aikana!
    • Kun skannaus on valmis, klikkaa Copy.
    • Tämä kopioi lokin leikepöydälle (voit tallentaa lokin varmuuden vuoksi tekstitiedostoon).
    • Liitä loki sitten viestiketjuusi.

    ja sen jälkeen

    Tallenna nämä ohjeet tekstitiedostoon tai tulosta nämä, muuten et pääse niihin käsiksi vikasietotilasta

    Lataa http://www.ewido.net/en/download ja tallenna ohjelma työpöydällesi.
    • Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa.
    • Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää.
    • Käynnistä AVG Anti-Spyware.
    • Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta.
      • Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa.
      • Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti.
      • Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine".
      • Sitten "Reports" valikon alta:
      • Laita täppi kohtaan "Automatically generate report after every scan"
      • Ota täppi pois kohdasta"Only if threats were found"
      • Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa
      • "Resident shield is", muuta tila active:sta inactive:ksi
      • Sulje ohjelma, ÄLÄ skannaa vielä.
        Käynnistä koneesi vikasietotilaan, http://www.virustorjunta.net/modules.php?name=FAQ&myfaq=yes&id_cat=6&categories

        HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta.
        • Kun vikasietotilassa, käynnistä AVG Anti-Spyware.
        • Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan".
        • AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa.

          Kun skannaus on valmis:
          TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions"
        • Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta.
        • Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions"
          [​IMG]
        • Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta.
        • Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle.
        • Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestikejuusi.


          Lähetä gmer + avg + hjt-lokit
     
    Last edited: Dec 12, 2006
  5. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    .
     
    Last edited: Dec 11, 2006
  6. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    .
     
    Last edited: Dec 11, 2006
  7. erkki4

    erkki4 Member

    Joined:
    Dec 11, 2006
    Messages:
    30
    Likes Received:
    0
    Trophy Points:
    16
    Huomasin eilen että kone käynnistyy hitaasti kun kytken modeemin päälle. Minulla on kaapeliyhteys ja PPPOE eli tarvitsee vielä yhdistää käsin internetiin.

    Tässä nämä logit:

    Gmer
    GMER 1.0.12.12011 - http://www.gmer.net
    Rootkit scan 2006-12-11 20:40:13
    Windows 5.1.2600 Service Pack 2


    ---- System - GMER 1.0.12 ----

    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwAllocateVirtualMemory
    SSDT sptd.sys ZwCreateKey
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwCreateThread
    SSDT sptd.sys ZwEnumerateKey
    SSDT sptd.sys ZwEnumerateValueKey
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwMapViewOfSection
    SSDT sptd.sys ZwOpenKey
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwProtectVirtualMemory
    SSDT sptd.sys ZwQueryKey
    SSDT sptd.sys ZwQueryValueKey
    SSDT sptd.sys ZwSetValueKey
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwShutdownSystem
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwTerminateProcess
    SSDT \??\C:\WINDOWS\System32\drivers\wpsdrvnt.sys ZwWriteVirtualMemory

    ---- Kernel code sections - GMER 1.0.12 ----

    .text USBPORT.SYS!DllUnload F711462C 5 Bytes JMP 86419558
    .text tcpip.sys!IPTransmit + 10BC AAE90CFA 6 Bytes CALL F757EFB0 Teefer.sys
    .text tcpip.sys!IPTransmit + 2810 AAE9244E 6 Bytes CALL F757EFB0 Teefer.sys
    .text tcpip.sys!ARPRcv + 506D AAE974E0 6 Bytes CALL F757EFB0 Teefer.sys
    .text wanarp.sys F6FFA3FD 7 Bytes CALL F757F100 Teefer.sys
    .text ntdll.dll!NtClose 7C90D586 5 Bytes JMP 72033FAA
    .text ntdll.dll!NtCreateProcess 7C90D754 5 Bytes JMP 72034135
    .text ntdll.dll!NtCreateProcessEx 7C90D769 5 Bytes JMP 72034019
    .text ntdll.dll!NtCreateSection 7C90D793 5 Bytes JMP 72033FC8

    ---- User code sections - GMER 1.0.12 ----

    .text C:\Program Files\MSN Messenger\msnmsgr.exe[1748] kernel32.dll!SetUnhandledExceptionFilter 7C84479D 5 Bytes JMP 004E12D0 C:\Program Files\MSN Messenger\MsnMsgr.Exe
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!SetScrollInfo 77D39056 7 Bytes JMP 01C5AAA2 C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!GetScrollInfo 77D417F8 7 Bytes JMP 01C5AA2A C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!ShowScrollBar 77D4F2CA 5 Bytes JMP 01C5AB26 C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!GetScrollPos 77D4F6DC 5 Bytes JMP 01C5AA52 C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!SetScrollPos 77D4F728 5 Bytes JMP 01C5AACD C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!GetScrollRange 77D4F75F 5 Bytes JMP 01C5AA77 C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!SetScrollRange 77D4F973 5 Bytes JMP 01C5AAF8 C:\Program Files\Winamp\Plugins\gen_jumpex.dll
    .text C:\Program Files\Winamp\winamp.exe[2080] USER32.dll!EnableScrollBar 77D87BC5 7 Bytes JMP 01C5AA02 C:\Program Files\Winamp\Plugins\gen_jumpex.dll

    ---- Devices - GMER 1.0.12 ----

    Device \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA 867D21D8
    Device \FileSystem\Ntfs \Ntfs IRP_MJ_PNP 867D21D8
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CREATE 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CLOSE 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_READ 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_WRITE 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_QUERY_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_SET_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_QUERY_VOLUME_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_DIRECTORY_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_FILE_SYSTEM_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_DEVICE_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_LOCK_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_CLEANUP 8568C980
    Device \FileSystem\Udfs \UdfsCdRom IRP_MJ_PNP 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CREATE 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CLOSE 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_READ 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_WRITE 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_QUERY_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_SET_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_QUERY_VOLUME_INFORMATION 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_DIRECTORY_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_FILE_SYSTEM_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_DEVICE_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_LOCK_CONTROL 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_CLEANUP 8568C980
    Device \FileSystem\Udfs \UdfsDisk IRP_MJ_PNP 8568C980
    Device \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [F7016220] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [F7016480] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [F70165A0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [F70165D0] wpsdrvnt.sys
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_CREATE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_CLOSE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_INTERNAL_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_CLEANUP 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{28BF69B9-1CB5-4597-9F60-76D3AC5E6543} IRP_MJ_PNP 86143980
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_CREATE 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_CLOSE 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_DEVICE_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_POWER 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_SYSTEM_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_PNP 864FF610
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_CREATE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_CLOSE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_INTERNAL_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_CLEANUP 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{CACADDBD-3391-491B-BAB1-C4EE15089B9D} IRP_MJ_PNP 86143980
    Device \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [F7016220] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [F7016480] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [F70165A0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [F70165D0] wpsdrvnt.sys
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_CREATE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_CLOSE 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_INTERNAL_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_CLEANUP 86143980
    Device \Driver\NetBT \Device\NetBT_Tcpip_{4E112088-A98E-4500-A41C-4A25EF707D48} IRP_MJ_PNP 86143980
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CREATE 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_READ 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_WRITE 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_FLUSH_BUFFERS 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_INTERNAL_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SHUTDOWN 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CLEANUP 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_POWER 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SYSTEM_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_PNP 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CREATE 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_READ 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_WRITE 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_FLUSH_BUFFERS 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_INTERNAL_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SHUTDOWN 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CLEANUP 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_POWER 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SYSTEM_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_PNP 867661D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLOSE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_READ 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_WRITE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_POWER 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_PNP 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CLOSE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_READ 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_WRITE 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_FLUSH_BUFFERS 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DEVICE_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SHUTDOWN 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_POWER 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SYSTEM_CONTROL 8642F1D8
    Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_PNP 8642F1D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort2 IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdePort3 IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-13 IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP2T1L0-1b IRP_MJ_PNP 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_CREATE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_CLOSE 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_INTERNAL_DEVICE_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_POWER 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_SYSTEM_CONTROL 867D31D8
    Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-7 IRP_MJ_PNP 867D31D8
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CREATE 86143980
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLOSE 86143980
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_INTERNAL_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLEANUP 86143980
    Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_PNP 86143980
    Device \Driver\00000039 \Device\0000004b IRP_MJ_POWER [F7746D74] sptd.sys
    Device \Driver\00000039 \Device\0000004b IRP_MJ_SYSTEM_CONTROL [F77602A2] sptd.sys
    Device \Driver\00000039 \Device\0000004b IRP_MJ_PNP [F7761228] sptd.sys
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CREATE 86143980
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLOSE 86143980
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_INTERNAL_DEVICE_CONTROL 86143980
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLEANUP 86143980
    Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_PNP 86143980
    Device \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [F7016220] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [F7016480] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CONTROL [F70165A0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [F70165D0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [F7016220] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [F7016480] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CONTROL [F70165A0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [F70165D0] wpsdrvnt.sys
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_PNP 864EF1D8
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_NAMED_PIPE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLOSE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_READ 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_WRITE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_EA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_EA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FLUSH_BUFFERS 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_VOLUME_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_VOLUME_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DIRECTORY_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FILE_SYSTEM_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_INTERNAL_DEVICE_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SHUTDOWN 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_LOCK_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLEANUP 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_MAILSLOT 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_SECURITY 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_SECURITY 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_POWER 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SYSTEM_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CHANGE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_QUOTA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_QUOTA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_PNP 86301980
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-2 IRP_MJ_PNP 864EF1D8
    Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CREATE [F7016220] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CLOSE [F7016480] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_DEVICE_CONTROL [F70165A0] wpsdrvnt.sys
    Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_INTERNAL_DEVICE_CONTROL [F70165D0] wpsdrvnt.sys
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_NAMED_PIPE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLOSE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_READ 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_WRITE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_EA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_EA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FLUSH_BUFFERS 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_VOLUME_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_VOLUME_INFORMATION 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DIRECTORY_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FILE_SYSTEM_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_INTERNAL_DEVICE_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SHUTDOWN 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_LOCK_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLEANUP 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_MAILSLOT 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_SECURITY 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_SECURITY 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_POWER 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SYSTEM_CONTROL 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CHANGE 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_QUOTA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_QUOTA 86301980
    Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_PNP 86301980
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_CREATE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_CLOSE 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_POWER 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_SYSTEM_CONTROL 864EF1D8
    Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_PNP 864EF1D8
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_CREATE 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_CLOSE 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_DEVICE_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_POWER 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_SYSTEM_CONTROL 864FF610
    Device \Driver\usbehci \Device\USBFDO-4 IRP_MJ_PNP 864FF610
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CREATE 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_READ 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_WRITE 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_FLUSH_BUFFERS 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_INTERNAL_DEVICE_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SHUTDOWN 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CLEANUP 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_POWER 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SYSTEM_CONTROL 867661D8
    Device \Driver\Ftdisk \Device\FtControl IRP_MJ_PNP 867661D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_CREATE 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_CLOSE 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_DEVICE_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_POWER 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_SYSTEM_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1Port4Path0Target0Lun0 IRP_MJ_PNP 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_CREATE 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_CLOSE 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_DEVICE_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_INTERNAL_DEVICE_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_POWER 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_SYSTEM_CONTROL 864D41D8
    Device \Driver\amjyvfdj \Device\Scsi\amjyvfdj1 IRP_MJ_PNP 864D41D8
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_CREATE 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLOSE 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_READ 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_INFORMATION 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_SET_INFORMATION 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_VOLUME_INFORMATION 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_DIRECTORY_CONTROL 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_FILE_SYSTEM_CONTROL 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_DEVICE_CONTROL 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_SHUTDOWN 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_LOCK_CONTROL 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLEANUP 864C4940
    Device \FileSystem\Cdfs \Cdfs IRP_MJ_PNP 864C4940

    ---- Files - GMER 1.0.12 ----

    ADS C:\Program Files\ATI Technologies\ATI.ACE\skins\CATALYST_Quicksilver\CATALYST_Quicksilver.uis_Scrollbar:Smaller.WB4
    ADS C:\Program Files\Online Services\MSN:n avulla verkkoon.lnk

    ---- EOF - GMER 1.0.12 ----



    AVG Spyware
    ---------------------------------------------------------

    + Created at: 22:41:34 11.12.2006

    + Scan result:



    C:\WINDOWS\Temp\ASHeuristic\Patch_exe.vir -> Not-A-Virus.Hacktool.Crack : No action taken.
    C:\Documents and Settings\Mikkonen\Cookies\mikkonen@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\Mikkonen\Cookies\mikkonen@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
    C:\Documents and Settings\Mikkonen\Cookies\mikkonen@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
    C:\Documents and Settings\Mikkonen\Cookies\mikkonen@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.


    ::Report end



    HijackThis
    Logfile of HijackThis v1.99.1
    Scan saved at 16:34:43, on 12.12.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Razer\razerhid.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    C:\Program Files\Razer\razertra.exe
    C:\Program Files\Razer\razerofa.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    C:\Program Files\CyberLink\Shared files\RichVideo.exe
    C:\Program Files\Sygate\SPF\smc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
    C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    C:\Documents and Settings\Mikkonen\Omat tiedostot\utorrent-1.6.1-beta-build-483.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Mikkonen\Omat tiedostot\HijackThis\erkki.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
    O4 - HKLM\..\Run: [razer] C:\Program Files\Razer\razerhid.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - Global Startup: hp psc 1000 series.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1165782562046
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{CACADDBD-3391-491B-BAB1-C4EE15089B9D}: NameServer = 212.116.32.218 212.116.32.222
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
    O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
    O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe

     
  8. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Lokeissa ei kummempaa voisit kokeilla levyn eheytys ja asentamalla ccleaner

    Asenna Ccleaner
    Ccleaner puhdistaa väliaikaistiedostot ja rekisteriä
    Lataa Ccleaner
    Opas!
     
  9. erkki4

    erkki4 Member

    Joined:
    Dec 11, 2006
    Messages:
    30
    Likes Received:
    0
    Trophy Points:
    16
    CCleaner vasta ajettu ja kovo vasta forkattu.
     
  10. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Moro!
    Paljonkohan on koneessa keskusmuistia ?
     
  11. erkki4

    erkki4 Member

    Joined:
    Dec 11, 2006
    Messages:
    30
    Likes Received:
    0
    Trophy Points:
    16
    1024 MB
     
  12. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Moi!
    Kannattais varmaan kokeilla toisella modeemilla,jos tämä nykyinen vaikka
    on sanomassa sopimuksen irti??
     
Thread Status:
Not open for further replies.

Share This Page