Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

The "bProtector" virus?


  • Please log in to reply
37 replies to this topic

#1 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 27 May 2012 - 05:48 PM

Recently, my husband downloaded a BUNCH of video downloaders (that ended up not working any way) onto my computer. Since then, every time I open Mozilla Firefox, it automatically has the home page set at http://www.findamo.com/?ch=12. I can change the home page a million times, and it still resets itself. Did some research, and most people said that it is a virus that shows on your computer as bProtector. I thought I had deleted the file by searching it, clicking "delete" in safe mode, then removing it from the recycle bin. And it seemed to have done the trick for a while, but it's started doing it again. I even tried uninstalling and re-installing mozilla, but that didn't help at all. I can search my computer for the file "bProtector" but nothing comes up now, so I can't figure out what's going on. I ran a full virus scan (using Avast) and did a scan with "MalwareBytes" as well, but neither have fixed my problem. I'm driving myself mad here trying to find out how this thing is still on my computer, yet not coming up in search results. Can any one out there help me?

Edit: Moved topic from XP to the more appropriate forum. ~ Animal

BC AdBot (Login to Remove)

 


#2 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 27 May 2012 - 05:51 PM

I also forgot to mention that as far as I can tell, I have completely removed all of the programs that he had downloaded (I used Revo Uninstaller for this)

#3 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md

Posted 27 May 2012 - 06:00 PM

What did Malwarebytes detect if it detected anything? Can you post the log?

#4 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 27 May 2012 - 06:03 PM

I can't recall the exact files and stuff it detected, but I had it remove them all. I'm not sure how I'd go about posting the log. I do remember that there were a few "rootkits" found.

#5 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md

Posted 27 May 2012 - 06:05 PM

The log can be found via the Logs Tab in Malwarebytes.

#6 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 27 May 2012 - 06:10 PM

Okay I've found that, now how do I post them for you to see?

#7 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:10:51 AM

Posted 27 May 2012 - 06:15 PM

open the file up and then go to edit in Notepad and select "Select All". Then go back to edit and hit copy then right click in the text box here and select paste.

#8 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 27 May 2012 - 06:21 PM

I have 3 total logs:
The first:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.05.16.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Holly :: BOB [administrator]

5/16/2012 11:13:37 AM
mbam-log-2012-05-16 (11-13-37).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 35
Time elapsed: 7 minute(s), 38 second(s) [aborted]

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)


The second:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.05.16.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Holly :: BOB [administrator]

5/16/2012 11:21:42 AM
mbam-log-2012-05-16 (11-21-42).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 437684
Time elapsed: 1 hour(s), 48 minute(s), 56 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 2
HKLM\SOFTWARE\-388722766 (Rogue.Multiple) -> Quarantined and deleted successfully.
HKLM\System\CurrentControlSet\Enum\Root\LEGACY_NETWORK_MONITOR (Trojan.DNSChanger) -> Quarantined and deleted successfully.

Registry Values Detected: 2
HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{4D25F926-B9FE-4682-BF72-8AB8210D6D75} (PUP.MyWebSearch) -> Data: -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks|{4D25F926-B9FE-4682-BF72-8AB8210D6D75} (PUP.MyWebSearch) -> Data: -> Quarantined and deleted successfully.

Registry Data Items Detected: 2
HKCR\scrfile\shell\open\command| (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: ("%1" /S) -> Quarantined and repaired successfully.
HKCR\regfile\shell\open\command| (Broken.OpenCommand) -> Bad: (NOTEPAD.EXE %1) Good: (regedit.exe "%1") -> Quarantined and repaired successfully.

Folders Detected: 4
C:\Documents and Settings\ConnieT\Application Data\FunWebProducts (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\ConnieT\Application Data\FunWebProducts\Data (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\ConnieT\Application Data\FunWebProducts\Data\ConnieT (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\LocalService\Application Data\NetMon (Trojan.NetMon) -> Quarantined and deleted successfully.

Files Detected: 11
C:\Documents and Settings\Dezzy\My Documents\Downloads\Tube2FileSetup(1).exe (PUP.BundleInstaller.IB) -> Quarantined and deleted successfully.
C:\Documents and Settings\Dezzy\My Documents\Downloads\Tube2FileSetup.exe (PUP.BundleInstaller.IB) -> Quarantined and deleted successfully.
C:\Documents and Settings\Dezzy\My Documents\Downloads\VideoPerformerSetup.exe (PUP.BundleInstaller.IB) -> Quarantined and deleted successfully.
C:\Program Files\MSN Messenger\msimg32.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully.
C:\Program Files\MSN Messenger\riched20.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-570362858-1980720279-1651279605-1014\Dc26.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP2396\A1841720.exe (PUP.FunWebProducts) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP2405\A1842133.exe (PUP.BundleInstaller.IB) -> Quarantined and deleted successfully.
C:\Documents and Settings\ConnieT\Application Data\FunWebProducts\Data\ConnieT\avatar.dat (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\LocalService\Application Data\NetMon\domains.txt (Trojan.NetMon) -> Quarantined and deleted successfully.
C:\Documents and Settings\LocalService\Application Data\NetMon\log.txt (Trojan.NetMon) -> Quarantined and deleted successfully.

(end)


The third:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.05.16.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Holly :: BOB [administrator]

5/16/2012 4:58:23 PM
mbam-log-2012-05-16 (16-58-23).txt

Scan type: Custom scan
Scan options enabled: File System | Heuristics/Shuriken | PUP | PUM
Scan options disabled: Memory | Startup | Registry | Heuristics/Extra | P2P
Objects scanned: 1
Time elapsed: 39 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)


Also, I think I may have deleted another log before trying to come and post here, but I'm not 100 percent on if I did or not.

#9 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md

Posted 27 May 2012 - 07:10 PM

I dont see any detected rootkits by Mbam, so can you do the following.

Please download and run TDSS Killer. If it asks you to fix anything, then please do not fix anything. Post the resulting log file contents.

#10 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 28 May 2012 - 12:23 PM

I scanned it, but it said that no threats were found and didn't ask me to fix anything. I'm not sure how to find the log. There is a report option I can view, but it won't let me copy the text from it.

#11 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:10:51 AM

Posted 28 May 2012 - 12:25 PM

the log file is created, and saved in C:\ you can access it by going to My Computer.

#12 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 28 May 2012 - 04:07 PM

I think this is it:

13:19:31.0140 1964 TDSS rootkit removing tool 2.7.38.0 May 25 2012 17:35:31
13:19:32.0578 1964 ============================================================
13:19:32.0578 1964 Current date / time: 2012/05/28 13:19:32.0578
13:19:32.0578 1964 SystemInfo:
13:19:32.0578 1964
13:19:32.0578 1964 OS Version: 5.1.2600 ServicePack: 3.0
13:19:32.0578 1964 Product type: Workstation
13:19:32.0578 1964 ComputerName: BOB
13:19:32.0578 1964 UserName: Holly
13:19:32.0578 1964 Windows directory: C:\WINDOWS
13:19:32.0578 1964 System windows directory: C:\WINDOWS
13:19:32.0578 1964 Processor architecture: Intel x86
13:19:32.0578 1964 Number of processors: 1
13:19:32.0578 1964 Page size: 0x1000
13:19:32.0578 1964 Boot type: Normal boot
13:19:32.0578 1964 ============================================================
13:19:37.0468 1964 Drive \Device\Harddisk0\DR0 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
13:19:37.0468 1964 ============================================================
13:19:37.0468 1964 \Device\Harddisk0\DR0:
13:19:37.0468 1964 MBR partitions:
13:19:37.0468 1964 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x139C5, BlocksNum 0x8DCF228
13:19:37.0468 1964 ============================================================
13:19:37.0515 1964 C: <-> \Device\Harddisk0\DR0\Partition0
13:19:37.0515 1964 ============================================================
13:19:37.0515 1964 Initialize success
13:19:37.0515 1964 ============================================================
13:19:43.0140 0960 ============================================================
13:19:43.0140 0960 Scan started
13:19:43.0140 0960 Mode: Manual;
13:19:43.0140 0960 ============================================================
13:19:47.0593 0960 6to4 (c07d5197410aab28d0d93f943f59656d) C:\WINDOWS\System32\6to4svc.dll
13:19:47.0687 0960 6to4 - ok
13:19:48.0171 0960 Aavmker4 (473f97edc5a5312f3665ab2921196c0c) C:\WINDOWS\system32\drivers\Aavmker4.sys
13:19:48.0203 0960 Aavmker4 - ok
13:19:48.0218 0960 Abiosdsk - ok
13:19:48.0359 0960 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
13:19:48.0375 0960 abp480n5 - ok
13:19:49.0281 0960 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
13:19:49.0484 0960 ACPI - ok
13:19:49.0578 0960 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
13:19:49.0609 0960 ACPIEC - ok
13:19:53.0000 0960 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:19:53.0359 0960 AdobeFlashPlayerUpdateSvc - ok
13:19:55.0437 0960 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
13:19:55.0453 0960 adpu160m - ok
13:20:12.0359 0960 AdvancedSystemCareService5 (b11c71b29fa69e4586f9b65560e6604d) C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
13:20:13.0265 0960 AdvancedSystemCareService5 - ok
13:20:14.0468 0960 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
13:20:14.0546 0960 aec - ok
13:20:15.0203 0960 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
13:20:15.0406 0960 AFD - ok
13:20:15.0640 0960 AFS2K (0ebb674888cbdefd5773341c16dd6a07) C:\WINDOWS\system32\drivers\AFS2K.sys
13:20:15.0656 0960 AFS2K - ok
13:20:15.0843 0960 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
13:20:15.0843 0960 agp440 - ok
13:20:15.0953 0960 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
13:20:15.0953 0960 agpCPQ - ok
13:20:16.0031 0960 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
13:20:16.0046 0960 Aha154x - ok
13:20:16.0171 0960 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
13:20:16.0203 0960 aic78u2 - ok
13:20:16.0390 0960 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
13:20:16.0406 0960 aic78xx - ok
13:20:16.0578 0960 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
13:20:16.0609 0960 Alerter - ok
13:20:16.0968 0960 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
13:20:16.0968 0960 ALG - ok
13:20:17.0062 0960 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
13:20:17.0062 0960 AliIde - ok
13:20:17.0171 0960 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
13:20:17.0171 0960 alim1541 - ok
13:20:17.0468 0960 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
13:20:17.0468 0960 amdagp - ok
13:20:17.0546 0960 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
13:20:17.0546 0960 amsint - ok
13:20:18.0281 0960 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:20:18.0328 0960 Apple Mobile Device - ok
13:20:18.0406 0960 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
13:20:18.0406 0960 asc - ok
13:20:18.0625 0960 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
13:20:18.0625 0960 asc3350p - ok
13:20:18.0890 0960 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
13:20:18.0890 0960 asc3550 - ok
13:20:19.0703 0960 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
13:20:19.0796 0960 aspnet_state - ok
13:20:20.0031 0960 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\WINDOWS\system32\drivers\aswFsBlk.sys
13:20:20.0046 0960 aswFsBlk - ok
13:20:20.0265 0960 aswMon2 (8c30b7ddd2f1d8d138ebe40345af2b11) C:\WINDOWS\system32\drivers\aswMon2.sys
13:20:20.0265 0960 aswMon2 - ok
13:20:20.0468 0960 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\WINDOWS\system32\drivers\aswRdr.sys
13:20:20.0500 0960 aswRdr - ok
13:20:21.0046 0960 aswSnx (dcb199b967375753b5019ec15f008f53) C:\WINDOWS\system32\drivers\aswSnx.sys
13:20:21.0078 0960 aswSnx - ok
13:20:21.0437 0960 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\WINDOWS\system32\drivers\aswSP.sys
13:20:21.0453 0960 aswSP - ok
13:20:21.0703 0960 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\WINDOWS\system32\drivers\aswTdi.sys
13:20:21.0718 0960 aswTdi - ok
13:20:21.0984 0960 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
13:20:22.0015 0960 AsyncMac - ok
13:20:22.0281 0960 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
13:20:22.0281 0960 atapi - ok
13:20:22.0296 0960 Atdisk - ok
13:20:22.0343 0960 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
13:20:22.0343 0960 Atmarpc - ok
13:20:22.0453 0960 ATWPKT2 (8a11527579faac8237f6d70946132c24) C:\WINDOWS\system32\drivers\ATWPKT2.SYS
13:20:22.0468 0960 ATWPKT2 - ok
13:20:22.0531 0960 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
13:20:22.0546 0960 AudioSrv - ok
13:20:22.0640 0960 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
13:20:22.0640 0960 audstub - ok
13:20:22.0828 0960 avast! Antivirus (4041d31508a2a084dfb42c595854090f) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
13:20:22.0828 0960 avast! Antivirus - ok
13:20:22.0937 0960 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
13:20:22.0937 0960 Beep - ok
13:20:23.0062 0960 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
13:20:23.0125 0960 BITS - ok
13:20:23.0281 0960 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
13:20:23.0296 0960 Bonjour Service - ok
13:20:23.0359 0960 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
13:20:23.0375 0960 Browser - ok
13:20:23.0421 0960 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
13:20:23.0421 0960 cbidf - ok
13:20:23.0437 0960 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
13:20:23.0453 0960 cbidf2k - ok
13:20:23.0515 0960 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
13:20:23.0515 0960 CCDECODE - ok
13:20:23.0546 0960 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
13:20:23.0562 0960 cd20xrnt - ok
13:20:23.0609 0960 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
13:20:23.0609 0960 Cdaudio - ok
13:20:23.0671 0960 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
13:20:23.0671 0960 Cdfs - ok
13:20:23.0687 0960 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
13:20:23.0703 0960 Cdrom - ok
13:20:23.0718 0960 Changer - ok
13:20:23.0781 0960 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
13:20:23.0781 0960 CiSvc - ok
13:20:23.0812 0960 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
13:20:23.0828 0960 ClipSrv - ok
13:20:23.0984 0960 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:20:24.0109 0960 clr_optimization_v2.0.50727_32 - ok
13:20:24.0187 0960 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys
13:20:24.0203 0960 CmdIde - ok
13:20:24.0296 0960 CoachAud (3128276503486bff925e8fa57f1c2776) C:\WINDOWS\system32\DRIVERS\CoachAud.sys
13:20:24.0296 0960 CoachAud - ok
13:20:24.0312 0960 COMSysApp - ok
13:20:24.0359 0960 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
13:20:24.0359 0960 Cpqarray - ok
13:20:24.0437 0960 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
13:20:24.0437 0960 CryptSvc - ok
13:20:24.0515 0960 CSHelper (aefb8558199bd5212b268b09bfa1d71a) C:\WINDOWS\system32\CSHelper.exe
13:20:24.0531 0960 CSHelper - ok
13:20:24.0593 0960 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
13:20:24.0609 0960 dac2w2k - ok
13:20:24.0640 0960 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
13:20:24.0640 0960 dac960nt - ok
13:20:24.0718 0960 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
13:20:24.0734 0960 DcomLaunch - ok
13:20:24.0796 0960 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
13:20:24.0812 0960 Dhcp - ok
13:20:24.0937 0960 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
13:20:24.0937 0960 Disk - ok
13:20:24.0953 0960 dmadmin - ok
13:20:25.0015 0960 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
13:20:25.0046 0960 dmboot - ok
13:20:25.0093 0960 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
13:20:25.0093 0960 dmio - ok
13:20:25.0140 0960 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
13:20:25.0140 0960 dmload - ok
13:20:25.0203 0960 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
13:20:25.0265 0960 dmserver - ok
13:20:25.0312 0960 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
13:20:25.0328 0960 DMusic - ok
13:20:25.0390 0960 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
13:20:25.0406 0960 Dnscache - ok
13:20:25.0468 0960 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
13:20:25.0484 0960 Dot3svc - ok
13:20:25.0515 0960 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
13:20:25.0531 0960 dpti2o - ok
13:20:25.0593 0960 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
13:20:25.0593 0960 drmkaud - ok
13:20:25.0656 0960 drvmcdb (e814854e6b246ccf498874839ab64d77) C:\WINDOWS\system32\drivers\drvmcdb.sys
13:20:25.0656 0960 drvmcdb - ok
13:20:25.0687 0960 drvnddm (ee83a4ebae70bc93cf14879d062f548b) C:\WINDOWS\system32\drivers\drvnddm.sys
13:20:25.0687 0960 drvnddm - ok
13:20:25.0750 0960 E100B (7d91dc6342248369f94d6eba0cf42e99) C:\WINDOWS\system32\DRIVERS\e100b325.sys
13:20:25.0765 0960 E100B - ok
13:20:25.0843 0960 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
13:20:25.0843 0960 EapHost - ok
13:20:25.0921 0960 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
13:20:25.0921 0960 ERSvc - ok
13:20:26.0015 0960 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
13:20:26.0031 0960 Eventlog - ok
13:20:26.0109 0960 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
13:20:26.0125 0960 EventSystem - ok
13:20:26.0187 0960 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
13:20:26.0203 0960 Fastfat - ok
13:20:26.0312 0960 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
13:20:26.0328 0960 FastUserSwitchingCompatibility - ok
13:20:26.0390 0960 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
13:20:26.0406 0960 Fdc - ok
13:20:26.0421 0960 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
13:20:26.0421 0960 Fips - ok
13:20:26.0468 0960 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
13:20:26.0484 0960 Flpydisk - ok
13:20:26.0531 0960 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
13:20:26.0546 0960 FltMgr - ok
13:20:26.0703 0960 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
13:20:26.0718 0960 FontCache3.0.0.0 - ok
13:20:26.0765 0960 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
13:20:26.0765 0960 Fs_Rec - ok
13:20:26.0843 0960 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
13:20:26.0875 0960 Ftdisk - ok
13:20:26.0937 0960 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
13:20:26.0953 0960 GEARAspiWDM - ok
13:20:27.0062 0960 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
13:20:27.0078 0960 Gpc - ok
13:20:27.0281 0960 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
13:20:27.0296 0960 gupdate - ok
13:20:27.0312 0960 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
13:20:27.0312 0960 gupdatem - ok
13:20:27.0421 0960 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
13:20:27.0437 0960 helpsvc - ok
13:20:27.0531 0960 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
13:20:27.0531 0960 HidUsb - ok
13:20:27.0625 0960 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
13:20:27.0640 0960 hkmsvc - ok
13:20:27.0687 0960 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
13:20:27.0687 0960 hpn - ok
13:20:27.0843 0960 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
13:20:27.0875 0960 hpqcxs08 - ok
13:20:27.0968 0960 hpqddsvc (df446ba625cc441617843e87798ce048) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
13:20:27.0984 0960 hpqddsvc - ok
13:20:28.0031 0960 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
13:20:28.0046 0960 HPZid412 - ok
13:20:28.0078 0960 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
13:20:28.0078 0960 HPZipr12 - ok
13:20:28.0109 0960 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
13:20:28.0109 0960 HPZius12 - ok
13:20:28.0187 0960 HSFHWBS2 (77e4ff0b73bc0aeaaf39bf0c8104231f) C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
13:20:28.0218 0960 HSFHWBS2 - ok
13:20:28.0296 0960 HSF_DP (60e1604729a15ef4a3b05f298427b3b1) C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
13:20:28.0343 0960 HSF_DP - ok
13:20:28.0421 0960 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
13:20:28.0437 0960 HTTP - ok
13:20:28.0484 0960 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
13:20:28.0500 0960 HTTPFilter - ok
13:20:28.0562 0960 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
13:20:28.0562 0960 i2omgmt - ok
13:20:28.0609 0960 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
13:20:28.0609 0960 i2omp - ok
13:20:28.0656 0960 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
13:20:28.0671 0960 i8042prt - ok
13:20:28.0781 0960 ialm (9a883c3c4d91292c0d09de7c728e781c) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
13:20:28.0828 0960 ialm - ok
13:20:29.0078 0960 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
13:20:29.0078 0960 IDriverT - ok
13:20:29.0281 0960 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:20:29.0328 0960 idsvc - ok
13:20:29.0500 0960 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
13:20:29.0515 0960 Imapi - ok
13:20:29.0593 0960 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
13:20:29.0609 0960 ImapiService - ok
13:20:29.0718 0960 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
13:20:29.0718 0960 ini910u - ok
13:20:29.0765 0960 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
13:20:29.0781 0960 IntelIde - ok
13:20:29.0843 0960 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
13:20:29.0843 0960 intelppm - ok
13:20:29.0906 0960 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
13:20:29.0921 0960 Ip6Fw - ok
13:20:29.0984 0960 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
13:20:29.0984 0960 IpFilterDriver - ok
13:20:30.0062 0960 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
13:20:30.0062 0960 IpInIp - ok
13:20:30.0140 0960 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
13:20:30.0156 0960 IpNat - ok
13:20:30.0312 0960 iPod Service (57edb35ea2feca88f8b17c0c095c9a56) C:\Program Files\iPod\bin\iPodService.exe
13:20:30.0359 0960 iPod Service - ok
13:20:30.0390 0960 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
13:20:30.0390 0960 IPSec - ok
13:20:30.0468 0960 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
13:20:30.0468 0960 IRENUM - ok
13:20:30.0500 0960 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
13:20:30.0515 0960 isapnp - ok
13:20:30.0734 0960 JavaQuickStarterService (a38441ed570f190cc041a7be49488fa7) C:\Program Files\Java\jre6\bin\jqs.exe
13:20:30.0734 0960 JavaQuickStarterService - ok
13:20:30.0796 0960 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
13:20:30.0812 0960 Kbdclass - ok
13:20:30.0828 0960 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
13:20:30.0843 0960 kmixer - ok
13:20:30.0953 0960 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
13:20:30.0968 0960 KSecDD - ok
13:20:31.0031 0960 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
13:20:31.0046 0960 lanmanserver - ok
13:20:31.0109 0960 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
13:20:31.0125 0960 lanmanworkstation - ok
13:20:31.0140 0960 lbrtfdc - ok
13:20:31.0218 0960 LexBceS (e19c8550b4c6c67fabffd998eacf440a) C:\WINDOWS\system32\LEXBCES.EXE
13:20:31.0281 0960 LexBceS - ok
13:20:31.0343 0960 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
13:20:31.0343 0960 LmHosts - ok
13:20:31.0406 0960 MBAMSwissArmy (0db7527db188c7d967a37bb51bbf3963) C:\WINDOWS\system32\drivers\mbamswissarmy.sys
13:20:31.0406 0960 MBAMSwissArmy - ok
13:20:31.0531 0960 McciCMService (e6cb119ef2e148eaa1a247343550756e) C:\Program Files\Common Files\Motive\McciCMService.exe
13:20:31.0546 0960 McciCMService - ok
13:20:31.0593 0960 mdmxsdk (195741aee20369980796b557358cd774) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
13:20:31.0593 0960 mdmxsdk - ok
13:20:31.0656 0960 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
13:20:31.0671 0960 Messenger - ok
13:20:31.0734 0960 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
13:20:31.0734 0960 mnmdd - ok
13:20:31.0796 0960 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
13:20:31.0796 0960 mnmsrvc - ok
13:20:31.0859 0960 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
13:20:31.0875 0960 Modem - ok
13:20:31.0968 0960 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
13:20:31.0968 0960 MODEMCSA - ok
13:20:32.0031 0960 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
13:20:32.0031 0960 Mouclass - ok
13:20:32.0109 0960 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
13:20:32.0109 0960 mouhid - ok
13:20:32.0156 0960 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
13:20:32.0171 0960 MountMgr - ok
13:20:32.0281 0960 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
13:20:32.0296 0960 MozillaMaintenance - ok
13:20:32.0343 0960 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
13:20:32.0343 0960 mraid35x - ok
13:20:32.0406 0960 MREMP50 (9bd4dcb5412921864a7aacdedfbd1923) C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS
13:20:32.0421 0960 MREMP50 - ok
13:20:32.0437 0960 MRESP50 (07c02c892e8e1a72d6bf35004f0e9c5e) C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS
13:20:32.0437 0960 MRESP50 - ok
13:20:32.0515 0960 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
13:20:32.0531 0960 MRxDAV - ok
13:20:32.0609 0960 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
13:20:32.0625 0960 MRxSmb - ok
13:20:32.0687 0960 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
13:20:32.0687 0960 MSDTC - ok
13:20:32.0765 0960 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
13:20:32.0765 0960 Msfs - ok
13:20:32.0781 0960 MSIServer - ok
13:20:32.0828 0960 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
13:20:32.0828 0960 MSKSSRV - ok
13:20:32.0890 0960 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
13:20:32.0890 0960 MSPCLOCK - ok
13:20:32.0906 0960 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
13:20:32.0921 0960 MSPQM - ok
13:20:32.0953 0960 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
13:20:32.0953 0960 mssmbios - ok
13:20:33.0015 0960 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
13:20:33.0015 0960 MSTEE - ok
13:20:33.0109 0960 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
13:20:33.0109 0960 Mup - ok
13:20:33.0203 0960 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
13:20:33.0218 0960 NABTSFEC - ok
13:20:33.0312 0960 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
13:20:33.0359 0960 napagent - ok
13:20:33.0671 0960 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
13:20:33.0687 0960 NDIS - ok
13:20:33.0781 0960 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
13:20:33.0781 0960 NdisIP - ok
13:20:33.0859 0960 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
13:20:33.0859 0960 NdisTapi - ok
13:20:33.0953 0960 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
13:20:33.0953 0960 Ndisuio - ok
13:20:34.0000 0960 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
13:20:34.0015 0960 NdisWan - ok
13:20:34.0093 0960 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
13:20:34.0109 0960 NDProxy - ok
13:20:34.0171 0960 Net Driver HPZ12 (2969d26eee289be7422aa46fc55f4e38) C:\WINDOWS\system32\HPZinw12.dll
13:20:34.0187 0960 Net Driver HPZ12 - ok
13:20:34.0281 0960 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
13:20:34.0296 0960 NetBIOS - ok
13:20:34.0343 0960 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
13:20:34.0359 0960 NetBT - ok
13:20:34.0437 0960 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
13:20:34.0453 0960 NetDDE - ok
13:20:34.0468 0960 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
13:20:34.0484 0960 NetDDEdsdm - ok
13:20:34.0531 0960 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
13:20:34.0531 0960 Netlogon - ok
13:20:34.0578 0960 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
13:20:34.0593 0960 Netman - ok
13:20:34.0781 0960 NetSvc (02d0798f376fcbd0210eda58476d0b1b) C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
13:20:34.0796 0960 NetSvc - ok
13:20:34.0953 0960 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:20:34.0968 0960 NetTcpPortSharing - ok
13:20:35.0062 0960 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
13:20:35.0078 0960 Nla - ok
13:20:35.0125 0960 nm (1e421a6bcf2203cc61b821ada9de878b) C:\WINDOWS\system32\DRIVERS\NMnt.sys
13:20:35.0140 0960 nm - ok
13:20:35.0203 0960 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
13:20:35.0203 0960 Npfs - ok
13:20:35.0343 0960 npkcmsvc (b28873f1a04dffd29d03d6eb201f9e49) C:\Nexon\Mabinogi\npkcmsvc.exe
13:20:35.0343 0960 npkcmsvc - ok
13:20:35.0359 0960 npkcrypt - ok
13:20:35.0421 0960 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
13:20:35.0421 0960 NPPTNT2 - ok
13:20:35.0484 0960 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
13:20:35.0515 0960 Ntfs - ok
13:20:35.0578 0960 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
13:20:35.0578 0960 NtLmSsp - ok
13:20:35.0640 0960 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
13:20:35.0671 0960 NtmsSvc - ok
13:20:35.0718 0960 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
13:20:35.0718 0960 Null - ok
13:20:35.0875 0960 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
13:20:35.0953 0960 nv - ok
13:20:36.0187 0960 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
13:20:36.0187 0960 NwlnkFlt - ok
13:20:36.0265 0960 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
13:20:36.0265 0960 NwlnkFwd - ok
13:20:36.0328 0960 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
13:20:36.0343 0960 Parport - ok
13:20:36.0359 0960 Partizan - ok
13:20:36.0375 0960 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
13:20:36.0390 0960 PartMgr - ok
13:20:36.0437 0960 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
13:20:36.0437 0960 ParVdm - ok
13:20:36.0515 0960 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
13:20:36.0531 0960 PCI - ok
13:20:36.0546 0960 PCIDump - ok
13:20:36.0625 0960 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
13:20:36.0625 0960 PCIIde - ok
13:20:36.0687 0960 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
13:20:36.0687 0960 Pcmcia - ok
13:20:36.0703 0960 PDCOMP - ok
13:20:36.0718 0960 PDFRAME - ok
13:20:36.0734 0960 PDRELI - ok
13:20:36.0765 0960 PDRFRAME - ok
13:20:36.0796 0960 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
13:20:36.0812 0960 perc2 - ok
13:20:36.0828 0960 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
13:20:36.0828 0960 perc2hib - ok
13:20:36.0937 0960 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
13:20:36.0937 0960 PlugPlay - ok
13:20:37.0000 0960 Pml Driver HPZ12 (bafc9706bdf425a02b66468ab2605c59) C:\WINDOWS\system32\HPZipm12.dll
13:20:37.0000 0960 Pml Driver HPZ12 - ok
13:20:37.0093 0960 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
13:20:37.0093 0960 PolicyAgent - ok
13:20:37.0203 0960 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
13:20:37.0218 0960 PptpMiniport - ok
13:20:37.0234 0960 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
13:20:37.0250 0960 ProtectedStorage - ok
13:20:37.0296 0960 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
13:20:37.0296 0960 PSched - ok
13:20:37.0375 0960 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
13:20:37.0375 0960 Ptilink - ok
13:20:37.0437 0960 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\WINDOWS\system32\Drivers\PxHelp20.sys
13:20:37.0437 0960 PxHelp20 - ok
13:20:37.0500 0960 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
13:20:37.0515 0960 ql1080 - ok
13:20:37.0531 0960 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
13:20:37.0546 0960 Ql10wnt - ok
13:20:37.0593 0960 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
13:20:37.0609 0960 ql12160 - ok
13:20:37.0640 0960 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
13:20:37.0640 0960 ql1240 - ok
13:20:37.0671 0960 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
13:20:37.0671 0960 ql1280 - ok
13:20:37.0734 0960 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
13:20:37.0734 0960 RasAcd - ok
13:20:37.0796 0960 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
13:20:37.0812 0960 RasAuto - ok
13:20:37.0875 0960 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
13:20:37.0875 0960 Rasl2tp - ok
13:20:37.0984 0960 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
13:20:38.0000 0960 RasMan - ok
13:20:38.0062 0960 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
13:20:38.0062 0960 RasPppoe - ok
13:20:38.0093 0960 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
13:20:38.0093 0960 Raspti - ok
13:20:38.0125 0960 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
13:20:38.0140 0960 Rdbss - ok
13:20:38.0171 0960 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
13:20:38.0171 0960 RDPCDD - ok
13:20:38.0265 0960 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
13:20:38.0281 0960 rdpdr - ok
13:20:38.0343 0960 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
13:20:38.0359 0960 RDPWD - ok
13:20:38.0421 0960 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
13:20:38.0437 0960 RDSessMgr - ok
13:20:38.0500 0960 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
13:20:38.0515 0960 redbook - ok
13:20:38.0578 0960 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
13:20:38.0593 0960 RemoteAccess - ok
13:20:38.0671 0960 Revoflt (8b5b8a11306190c6963d3473f052d3c8) C:\WINDOWS\system32\DRIVERS\revoflt.sys
13:20:38.0671 0960 Revoflt - ok
13:20:38.0734 0960 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
13:20:38.0750 0960 RpcLocator - ok
13:20:38.0828 0960 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
13:20:38.0828 0960 RpcSs - ok
13:20:38.0906 0960 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
13:20:38.0953 0960 RSVP - ok
13:20:39.0015 0960 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
13:20:39.0015 0960 SamSs - ok
13:20:39.0078 0960 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
13:20:39.0140 0960 SCardSvr - ok
13:20:39.0218 0960 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
13:20:39.0281 0960 Schedule - ok
13:20:39.0296 0960 SDDMI2 - ok
13:20:39.0359 0960 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
13:20:39.0359 0960 Secdrv - ok
13:20:39.0421 0960 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
13:20:39.0421 0960 seclogon - ok
13:20:39.0531 0960 senfilt (b9c7617c1e8ab6fdff75d3c8dafcb4c8) C:\WINDOWS\system32\drivers\senfilt.sys
13:20:39.0578 0960 senfilt - ok
13:20:39.0625 0960 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
13:20:39.0640 0960 SENS - ok
13:20:39.0703 0960 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
13:20:39.0703 0960 serenum - ok
13:20:39.0734 0960 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
13:20:39.0750 0960 Serial - ok
13:20:39.0796 0960 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
13:20:39.0796 0960 Sfloppy - ok
13:20:39.0875 0960 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
13:20:39.0890 0960 SharedAccess - ok
13:20:39.0984 0960 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
13:20:40.0000 0960 ShellHWDetection - ok
13:20:40.0015 0960 Simbad - ok
13:20:40.0078 0960 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
13:20:40.0078 0960 sisagp - ok
13:20:40.0109 0960 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
13:20:40.0109 0960 SLIP - ok
13:20:40.0187 0960 smwdm (c6d9959e493682f872a639b6ec1b4a08) C:\WINDOWS\system32\drivers\smwdm.sys
13:20:40.0187 0960 smwdm - ok
13:20:40.0265 0960 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
13:20:40.0265 0960 Sparrow - ok
13:20:40.0343 0960 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
13:20:40.0343 0960 splitter - ok
13:20:40.0406 0960 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
13:20:40.0421 0960 Spooler - ok
13:20:40.0453 0960 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
13:20:40.0453 0960 sr - ok
13:20:40.0515 0960 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
13:20:40.0531 0960 srservice - ok
13:20:40.0609 0960 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
13:20:40.0625 0960 Srv - ok
13:20:40.0687 0960 sscdbhk5 (d7968049be0adbb6a57cee3960320911) C:\WINDOWS\system32\drivers\sscdbhk5.sys
13:20:40.0687 0960 sscdbhk5 - ok
13:20:40.0750 0960 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
13:20:40.0765 0960 SSDPSRV - ok
13:20:40.0828 0960 ssrtln (c3ffd65abfb6441e7606cf74f1155273) C:\WINDOWS\system32\drivers\ssrtln.sys
13:20:40.0828 0960 ssrtln - ok
13:20:40.0921 0960 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
13:20:40.0968 0960 stisvc - ok
13:20:41.0046 0960 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
13:20:41.0046 0960 streamip - ok
13:20:41.0093 0960 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
13:20:41.0093 0960 swenum - ok
13:20:41.0140 0960 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
13:20:41.0156 0960 swmidi - ok
13:20:41.0171 0960 SwPrv - ok
13:20:41.0234 0960 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
13:20:41.0250 0960 symc810 - ok
13:20:41.0281 0960 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
13:20:41.0296 0960 symc8xx - ok
13:20:41.0328 0960 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
13:20:41.0343 0960 sym_hi - ok
13:20:41.0375 0960 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
13:20:41.0390 0960 sym_u3 - ok
13:20:41.0453 0960 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
13:20:41.0468 0960 sysaudio - ok
13:20:41.0531 0960 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
13:20:41.0593 0960 SysmonLog - ok
13:20:41.0671 0960 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
13:20:41.0687 0960 TapiSrv - ok
13:20:41.0781 0960 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
13:20:41.0796 0960 Tcpip - ok
13:20:41.0875 0960 Tcpip6 (4e53bbcc4be37d7a4bd6ef1098c89ff7) C:\WINDOWS\system32\DRIVERS\tcpip6.sys
13:20:41.0890 0960 Tcpip6 - ok
13:20:41.0953 0960 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
13:20:41.0968 0960 TDPIPE - ok
13:20:42.0015 0960 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
13:20:42.0031 0960 TDTCP - ok
13:20:42.0093 0960 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
13:20:42.0093 0960 TermDD - ok
13:20:42.0171 0960 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
13:20:42.0250 0960 TermService - ok
13:20:42.0312 0960 tfsnboio (30698355067d07da5f9eb81132c9fdd6) C:\WINDOWS\system32\dla\tfsnboio.sys
13:20:42.0328 0960 tfsnboio - ok
13:20:42.0375 0960 tfsncofs (fb9d825bb4a2abdf24600f7505050e2b) C:\WINDOWS\system32\dla\tfsncofs.sys
13:20:42.0390 0960 tfsncofs - ok
13:20:42.0437 0960 tfsndrct (cafd8cca11aa1e8b6d2ea1ba8f70ec33) C:\WINDOWS\system32\dla\tfsndrct.sys
13:20:42.0437 0960 tfsndrct - ok
13:20:42.0500 0960 tfsndres (8db1e78fbf7c426d8ec3d8f1a33d6485) C:\WINDOWS\system32\dla\tfsndres.sys
13:20:42.0500 0960 tfsndres - ok
13:20:42.0578 0960 tfsnifs (b92f67a71cc8176f331b8aa8d9f555ad) C:\WINDOWS\system32\dla\tfsnifs.sys
13:20:42.0578 0960 tfsnifs - ok
13:20:42.0640 0960 tfsnopio (85985faa9a71e2358fcc2edefc2a3c5c) C:\WINDOWS\system32\dla\tfsnopio.sys
13:20:42.0640 0960 tfsnopio - ok
13:20:42.0687 0960 tfsnpool (bba22094f0f7c210567efdaf11f64495) C:\WINDOWS\system32\dla\tfsnpool.sys
13:20:42.0687 0960 tfsnpool - ok
13:20:42.0750 0960 tfsnudf (81340bef80b9811e98ce64611e67e3ff) C:\WINDOWS\system32\dla\tfsnudf.sys
13:20:42.0750 0960 tfsnudf - ok
13:20:42.0828 0960 tfsnudfa (c035fd116224ccc8325f384776b6a8bb) C:\WINDOWS\system32\dla\tfsnudfa.sys
13:20:42.0828 0960 tfsnudfa - ok
13:20:42.0921 0960 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
13:20:42.0937 0960 Themes - ok
13:20:43.0031 0960 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys
13:20:43.0031 0960 TosIde - ok
13:20:43.0109 0960 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
13:20:43.0125 0960 TrkWks - ok
13:20:43.0203 0960 tunmp (8f861eda21c05857eb8197300a92501c) C:\WINDOWS\system32\DRIVERS\tunmp.sys
13:20:43.0203 0960 tunmp - ok
13:20:43.0281 0960 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
13:20:43.0281 0960 Udfs - ok
13:20:43.0390 0960 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
13:20:43.0390 0960 ultra - ok
13:20:43.0453 0960 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
13:20:43.0468 0960 Update - ok
13:20:43.0531 0960 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
13:20:43.0546 0960 upnphost - ok
13:20:43.0593 0960 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
13:20:43.0609 0960 UPS - ok
13:20:43.0671 0960 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\WINDOWS\system32\Drivers\usbaapl.sys
13:20:43.0671 0960 USBAAPL - ok
13:20:43.0734 0960 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
13:20:43.0750 0960 usbccgp - ok
13:20:43.0812 0960 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
13:20:43.0812 0960 usbehci - ok
13:20:43.0875 0960 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
13:20:43.0890 0960 usbhub - ok
13:20:43.0953 0960 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
13:20:43.0968 0960 usbprint - ok
13:20:43.0984 0960 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
13:20:43.0984 0960 usbscan - ok
13:20:44.0031 0960 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
13:20:44.0031 0960 USBSTOR - ok
13:20:44.0078 0960 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
13:20:44.0078 0960 usbuhci - ok
13:20:44.0109 0960 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
13:20:44.0125 0960 VgaSave - ok
13:20:44.0187 0960 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
13:20:44.0187 0960 viaagp - ok
13:20:44.0218 0960 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
13:20:44.0218 0960 ViaIde - ok
13:20:44.0281 0960 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
13:20:44.0296 0960 VolSnap - ok
13:20:44.0375 0960 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
13:20:44.0390 0960 VSS - ok
13:20:44.0453 0960 w32time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
13:20:44.0468 0960 w32time - ok
13:20:44.0500 0960 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
13:20:44.0515 0960 Wanarp - ok
13:20:44.0531 0960 wanatw - ok
13:20:44.0609 0960 Wdf01000 (bbcfeab7e871cddac2d397ee7fa91fdc) C:\WINDOWS\system32\Drivers\wdf01000.sys
13:20:44.0640 0960 Wdf01000 - ok
13:20:44.0656 0960 WDICA - ok
13:20:44.0687 0960 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
13:20:44.0687 0960 wdmaud - ok
13:20:44.0750 0960 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
13:20:44.0781 0960 WebClient - ok
13:20:44.0875 0960 winachsf (f59ed5a43b988a18ef582bb07b2327a7) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
13:20:44.0906 0960 winachsf - ok
13:20:45.0031 0960 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
13:20:45.0046 0960 winmgmt - ok
13:20:45.0140 0960 WinRM (18f347402da544a780949b8fdf83351b) C:\WINDOWS\system32\WsmSvc.dll
13:20:45.0218 0960 WinRM - ok
13:20:45.0296 0960 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
13:20:45.0296 0960 WmdmPmSN - ok
13:20:45.0375 0960 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
13:20:45.0390 0960 WmiApSrv - ok
13:20:45.0578 0960 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
13:20:45.0609 0960 WMPNetworkSvc - ok
13:20:45.0703 0960 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\Drivers\wpdusb.sys
13:20:45.0718 0960 WpdUsb - ok
13:20:45.0781 0960 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
13:20:45.0796 0960 WS2IFSL - ok
13:20:45.0859 0960 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
13:20:45.0875 0960 wscsvc - ok
13:20:45.0937 0960 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
13:20:45.0953 0960 WSTCODEC - ok
13:20:46.0015 0960 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
13:20:46.0031 0960 wuauserv - ok
13:20:46.0078 0960 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
13:20:46.0093 0960 WudfPf - ok
13:20:46.0140 0960 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
13:20:46.0156 0960 WudfRd - ok
13:20:46.0218 0960 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
13:20:46.0234 0960 WudfSvc - ok
13:20:46.0328 0960 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
13:20:46.0359 0960 WZCSVC - ok
13:20:46.0421 0960 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
13:20:46.0437 0960 xmlprov - ok
13:20:46.0484 0960 MBR (0x1B8) (b16a2359f4962b0c622d81a1c1f4b703) \Device\Harddisk0\DR0
13:20:46.0906 0960 \Device\Harddisk0\DR0 - ok
13:20:46.0921 0960 Boot (0x1200) (c4de4e64eb8ec6c28de0fda3dadf7493) \Device\Harddisk0\DR0\Partition0
13:20:46.0921 0960 \Device\Harddisk0\DR0\Partition0 - ok
13:20:46.0921 0960 ============================================================
13:20:46.0921 0960 Scan finished
13:20:46.0921 0960 ============================================================
13:20:46.0968 0516 Detected object count: 0
13:20:46.0968 0516 Actual detected object count: 0
13:24:06.0890 1580 Deinitialize success

#13 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md

Posted 28 May 2012 - 11:06 PM

So far it looks like it has been removed, but I shall reply back with more instructions.

#14 Guest_Kohana_*

Guest_Kohana_*

  • Guests
  • OFFLINE
  •  

Posted 29 May 2012 - 01:41 AM

Okay, thanks for all your help so far. Like I said, I thought it had been removed as well, but my internet's home page won't keep google instead of this "findamo" page. So it's a bit boggling to me. I hope you're able to help me fix it :)

#15 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:10:51 AM

Posted 29 May 2012 - 11:51 AM

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
  • List Minidump Files
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users