Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Removed Security Suite 2012 but now search engines won't work


  • Please log in to reply
5 replies to this topic

#1 dcewing

dcewing

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:07:33 AM

Posted 25 April 2012 - 10:04 PM

I removed Security Suite 2012 over the weekend following the instructions on this website. It appears to be removed, but I am now having problems with using any search engine. When I attempt to search using Bing or Google, the computer just sits waiting for the website. It does not connect to the search engine nor does it redirect to another site. I saw someone else had similar troubles after removing Security Suite 2012, so I'm suspecting I may not have completely removed it or that it left behind some damage.

Thank you for being here and being so helpful.

Carol

BC AdBot (Login to Remove)

 


#2 Blade

Blade

    Strong in the Bleepforce


  • Site Admin
  • 12,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US
  • Local time:11:33 AM

Posted 25 April 2012 - 10:07 PM

Hello,

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
Be sure to download TDSSKiller.exe from Kaspersky's website and not TDSSKiller.zip which appears to be an older version 2.3.2.2 of the tool.
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.

~Blade


In your next reply, please include the following:
TDSSKiller Log

Posted Image

If I am helping you, it has been 48 hours since your last post, and I have yet to reply to your topic, please send me a PM
Become a BleepingComputer fan: Facebook
Follow us on Twitter!
Circle us on Google+


#3 Blade

Blade

    Strong in the Bleepforce


  • Site Admin
  • 12,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US
  • Local time:11:33 AM

Posted 25 April 2012 - 10:08 PM

Also, please post the logs from the Malwarebytes' scans you ran.

Posted Image

If I am helping you, it has been 48 hours since your last post, and I have yet to reply to your topic, please send me a PM
Become a BleepingComputer fan: Facebook
Follow us on Twitter!
Circle us on Google+


#4 dcewing

dcewing
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:07:33 AM

Posted 27 April 2012 - 05:19 PM

Blade,
Thank you for your help.

TDSS Killer found one problem. Google search is now WORKING! :thumbsup: Hooray!
Thank you!
Carol

Here's the log generated:

14:59:44.0093 6024 TDSS rootkit removing tool 2.7.33.0 Apr 24 2012 18:43:43
14:59:44.0750 6024 ============================================================
14:59:44.0750 6024 Current date / time: 2012/04/27 14:59:44.0750
14:59:44.0750 6024 SystemInfo:
14:59:44.0750 6024
14:59:44.0750 6024 OS Version: 5.1.2600 ServicePack: 3.0
14:59:44.0750 6024 Product type: Workstation
14:59:44.0750 6024 ComputerName: HOME-W3O9G5F1PY
14:59:44.0750 6024 UserName: Carol
14:59:44.0750 6024 Windows directory: C:\WINDOWS
14:59:44.0750 6024 System windows directory: C:\WINDOWS
14:59:44.0750 6024 Processor architecture: Intel x86
14:59:44.0750 6024 Number of processors: 2
14:59:44.0750 6024 Page size: 0x1000
14:59:44.0750 6024 Boot type: Normal boot
14:59:44.0750 6024 ============================================================
14:59:45.0328 6024 Drive \Device\Harddisk0\DR0 - Size: 0x2658AE0000 (153.39 Gb), SectorSize: 0x200, Cylinders: 0x4E37, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
14:59:45.0328 6024 ============================================================
14:59:45.0328 6024 \Device\Harddisk0\DR0:
14:59:45.0328 6024 MBR partitions:
14:59:45.0328 6024 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x132C0A77
14:59:45.0328 6024 ============================================================
14:59:45.0390 6024 C: <-> \Device\Harddisk0\DR0\Partition0
14:59:45.0390 6024 ============================================================
14:59:45.0390 6024 Initialize success
14:59:45.0390 6024 ============================================================
14:59:48.0859 5992 ============================================================
14:59:48.0859 5992 Scan started
14:59:48.0859 5992 Mode: Manual;
14:59:48.0859 5992 ============================================================
14:59:49.0140 5992 61883 (86d7b1e70661d754685b9ac6d749aae5) C:\WINDOWS\system32\DRIVERS\61883.sys
14:59:49.0140 5992 61883 - ok
14:59:49.0140 5992 Abiosdsk - ok
14:59:49.0156 5992 abp480n5 - ok
14:59:49.0328 5992 ACDaemon (769db4f484957cc98153b3c1b5d1162f) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
14:59:49.0359 5992 ACDaemon - ok
14:59:49.0390 5992 ACPI (78dba80f47dcdf4010d9581e9cd26298) C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:59:49.0390 5992 Suspicious file (Forged): C:\WINDOWS\system32\DRIVERS\ACPI.sys. Real md5: 78dba80f47dcdf4010d9581e9cd26298, Fake md5: a5bd09787a3a0f1c8c17e5281b42a821
14:59:49.0390 5992 ACPI ( Virus.Win32.Rloader.a ) - infected
14:59:49.0390 5992 ACPI - detected Virus.Win32.Rloader.a (0)
14:59:49.0437 5992 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
14:59:49.0437 5992 ACPIEC - ok
14:59:49.0500 5992 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:59:49.0500 5992 AdobeFlashPlayerUpdateSvc - ok
14:59:49.0515 5992 adpu160m - ok
14:59:49.0546 5992 aec (1ee7b434ba961ef845de136224c30fec) C:\WINDOWS\system32\drivers\aec.sys
14:59:49.0546 5992 aec - ok
14:59:49.0562 5992 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
14:59:49.0562 5992 AFD - ok
14:59:49.0578 5992 Aha154x - ok
14:59:49.0578 5992 aic78u2 - ok
14:59:49.0593 5992 aic78xx - ok
14:59:49.0671 5992 ALCXWDM (35045a23957a71ba649740741e69408c) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
14:59:49.0718 5992 ALCXWDM - ok
14:59:49.0781 5992 Alerter (c7ae0fd3867db0d42b03b73c18f3d671) C:\WINDOWS\system32\alrsvc.dll
14:59:49.0781 5992 Alerter - ok
14:59:49.0796 5992 ALG (f1958fbf86d5c004cf19a5951a9514b7) C:\WINDOWS\System32\alg.exe
14:59:49.0796 5992 ALG - ok
14:59:49.0812 5992 AliIde - ok
14:59:49.0859 5992 AmdK8 (efbb0956baed786e137351b5ca272aef) C:\WINDOWS\system32\DRIVERS\AmdK8.sys
14:59:49.0875 5992 AmdK8 - ok
14:59:49.0890 5992 amsint - ok
14:59:50.0062 5992 Apache2.2 (375640f39f2d613b6fdcf8c2f956205a) C:\xampp\apache\bin\httpd.exe
14:59:50.0062 5992 Apache2.2 - ok
14:59:50.0218 5992 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:59:50.0218 5992 Apple Mobile Device - ok
14:59:50.0218 5992 AppMgmt - ok
14:59:50.0265 5992 Arp1394 (f0d692b0bffb46e30eb3cea168bbc49f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
14:59:50.0265 5992 Arp1394 - ok
14:59:50.0281 5992 asc - ok
14:59:50.0281 5992 asc3350p - ok
14:59:50.0281 5992 asc3550 - ok
14:59:50.0296 5992 ASPI32 - ok
14:59:50.0453 5992 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:59:50.0531 5992 aspnet_state - ok
14:59:50.0546 5992 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:59:50.0546 5992 AsyncMac - ok
14:59:50.0546 5992 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
14:59:50.0562 5992 atapi - ok
14:59:50.0562 5992 Atdisk - ok
14:59:50.0578 5992 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:59:50.0578 5992 Atmarpc - ok
14:59:50.0609 5992 AudioSrv (db66db626e4882ebef55f136f12c1829) C:\WINDOWS\System32\audiosrv.dll
14:59:50.0609 5992 AudioSrv - ok
14:59:50.0625 5992 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
14:59:50.0625 5992 audstub - ok
14:59:50.0656 5992 Avc (87c223adb8f7596b31caae3c67b16ddd) C:\WINDOWS\system32\DRIVERS\avc.sys
14:59:50.0656 5992 Avc - ok
14:59:50.0703 5992 AVG Anti-Spyware Driver - ok
14:59:50.0734 5992 AvgAsCln (6d4a1da6e6d522b3ebbcbff4a3589ec5) C:\WINDOWS\system32\DRIVERS\AvgAsCln.sys
14:59:50.0734 5992 AvgAsCln - ok
14:59:50.0734 5992 Beep - ok
14:59:50.0781 5992 BITS (2c69ec7e5a311334d10dd95f338fccea) C:\WINDOWS\system32\qmgr.dll
14:59:51.0015 5992 BITS - ok
14:59:51.0078 5992 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
14:59:51.0078 5992 Bonjour Service - ok
14:59:51.0109 5992 Browser (e3cfccdda4edd1d0dc9168b2e18f27b8) C:\WINDOWS\System32\browser.dll
14:59:51.0109 5992 Browser - ok
14:59:51.0140 5992 BTCFilterService (4813df77ede536a52e3737971f910baa) C:\WINDOWS\system32\DRIVERS\motfilt.sys
14:59:51.0156 5992 BTCFilterService - ok
14:59:51.0171 5992 BVRPMPR5 - ok
14:59:51.0187 5992 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
14:59:51.0187 5992 cbidf2k - ok
14:59:51.0203 5992 cd20xrnt - ok
14:59:51.0234 5992 CdaD10BA (841cefab8228ee691705d059e7f21c47) C:\WINDOWS\system32\drivers\CdaD10BA.SYS
14:59:51.0234 5992 CdaD10BA - ok
14:59:51.0265 5992 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
14:59:51.0265 5992 Cdaudio - ok
14:59:51.0296 5992 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
14:59:51.0296 5992 Cdfs - ok
14:59:51.0328 5992 cdrbsdrv (351735695e9ead93de6af85d8beb1ca8) C:\WINDOWS\system32\drivers\cdrbsdrv.sys
14:59:51.0328 5992 cdrbsdrv - ok
14:59:51.0359 5992 Cdrom (7b53584d94e9d8716b2de91d5f1cb42d) C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:59:51.0359 5992 Cdrom - ok
14:59:51.0359 5992 Changer - ok
14:59:51.0390 5992 CiSvc (3192bd04d032a9c4a85a3278c268a13a) C:\WINDOWS\system32\cisvc.exe
14:59:51.0390 5992 CiSvc - ok
14:59:51.0406 5992 ClipSrv (c8dec22c4137d7a90f8bdf41ca4b82ae) C:\WINDOWS\system32\clipsrv.exe
14:59:51.0406 5992 ClipSrv - ok
14:59:51.0484 5992 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:59:51.0531 5992 clr_optimization_v2.0.50727_32 - ok
14:59:51.0609 5992 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:59:51.0718 5992 clr_optimization_v4.0.30319_32 - ok
14:59:51.0734 5992 CmdIde - ok
14:59:51.0734 5992 COMSysApp - ok
14:59:51.0750 5992 Cpqarray - ok
14:59:51.0765 5992 CryptSvc (10654f9ddcea9c46cfb77554231be73b) C:\WINDOWS\System32\cryptsvc.dll
14:59:51.0765 5992 CryptSvc - ok
14:59:51.0812 5992 ctac32k (fb06bb39860340c6fa84867f0288d1dd) C:\WINDOWS\system32\drivers\ctac32k.sys
14:59:51.0828 5992 ctac32k - ok
14:59:51.0875 5992 ctaud2k (b810fa12cf726b200e057834eaebb1ac) C:\WINDOWS\system32\drivers\ctaud2k.sys
14:59:51.0875 5992 ctaud2k - ok
14:59:51.0906 5992 ctdvda2k (c4333325d325efa668888d0d3177c6ff) C:\WINDOWS\system32\drivers\ctdvda2k.sys
14:59:51.0921 5992 ctdvda2k - ok
14:59:51.0937 5992 ctprxy2k (1fa95c8cf34b9911e352a07ea7a200fc) C:\WINDOWS\system32\drivers\ctprxy2k.sys
14:59:51.0937 5992 ctprxy2k - ok
14:59:51.0968 5992 ctsfm2k (400cb754b91f73bee2655686a57269d2) C:\WINDOWS\system32\drivers\ctsfm2k.sys
14:59:51.0968 5992 ctsfm2k - ok
14:59:51.0968 5992 dac2w2k - ok
14:59:51.0984 5992 dac960nt - ok
14:59:52.0015 5992 DcomLaunch (ce94a2bd25e3e9f4d46a7373ff455c6d) C:\WINDOWS\system32\rpcss.dll
14:59:52.0031 5992 DcomLaunch - ok
14:59:52.0062 5992 Dhcp (ef545e1a4b043da4c84e230dd471c55f) C:\WINDOWS\System32\dhcpcsvc.dll
14:59:52.0062 5992 Dhcp - ok
14:59:52.0078 5992 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
14:59:52.0078 5992 Disk - ok
14:59:52.0093 5992 dmadmin - ok
14:59:52.0109 5992 dmboot (c0fbb516e06e243f0cf31f597e7ebf7d) C:\WINDOWS\system32\drivers\dmboot.sys
14:59:52.0125 5992 dmboot - ok
14:59:52.0140 5992 dmio (f5e7b358a732d09f4bcf2824b88b9e28) C:\WINDOWS\system32\drivers\dmio.sys
14:59:52.0140 5992 dmio - ok
14:59:52.0171 5992 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
14:59:52.0171 5992 dmload - ok
14:59:52.0203 5992 dmserver (1639d9964c9e1b2ecca95c8217d3e70d) C:\WINDOWS\System32\dmserver.dll
14:59:52.0203 5992 dmserver - ok
14:59:52.0218 5992 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
14:59:52.0218 5992 DMusic - ok
14:59:52.0250 5992 Dnscache (aac8ffbfd61e784fa3bac851d4a0bd5f) C:\WINDOWS\System32\dnsrslvr.dll
14:59:52.0250 5992 Dnscache - ok
14:59:52.0250 5992 dpti2o - ok
14:59:52.0281 5992 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
14:59:52.0281 5992 drmkaud - ok
14:59:52.0281 5992 easytether - ok
14:59:52.0328 5992 emupia (7bb488ec082d40645936d9e583f560dc) C:\WINDOWS\system32\drivers\emupia2k.sys
14:59:52.0328 5992 emupia - ok
14:59:52.0359 5992 ERSvc (67dff7bbbd0e80aab7b3cf061448db8a) C:\WINDOWS\System32\ersvc.dll
14:59:52.0359 5992 ERSvc - ok
14:59:52.0375 5992 Eventlog (c6ce6eec82f187615d1002bb3bb50ed4) C:\WINDOWS\system32\services.exe
14:59:52.0406 5992 Eventlog - ok
14:59:52.0421 5992 EventSystem (60d1a6342238378bfb7545c81ee3606c) C:\WINDOWS\System32\es.dll
14:59:52.0421 5992 EventSystem - ok
14:59:52.0437 5992 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
14:59:52.0453 5992 Fastfat - ok
14:59:52.0484 5992 FastUserSwitchingCompatibility (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
14:59:52.0484 5992 FastUserSwitchingCompatibility - ok
14:59:52.0500 5992 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
14:59:52.0500 5992 Fdc - ok
14:59:52.0640 5992 FileZilla Server (cfc890ff6797c6c4e4c4b9ad2258af73) c:\xampp\FileZillaFTP\FileZillaServer.exe
14:59:52.0656 5992 FileZilla Server - ok
14:59:52.0671 5992 Fips (e153ab8a11de5452bcf5ac7652dbf3ed) C:\WINDOWS\system32\drivers\Fips.sys
14:59:52.0671 5992 Fips - ok
14:59:52.0687 5992 fixustor (cdb568db5e8985dcc623da808ac61042) C:\WINDOWS\system32\drivers\fixustor.sys
14:59:52.0687 5992 fixustor - ok
14:59:52.0718 5992 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
14:59:52.0718 5992 Flpydisk - ok
14:59:52.0750 5992 FltMgr (3d234fb6d6ee875eb009864a299bea29) C:\WINDOWS\system32\drivers\fltmgr.sys
14:59:52.0750 5992 FltMgr - ok
14:59:52.0843 5992 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
14:59:52.0843 5992 FontCache3.0.0.0 - ok
14:59:52.0875 5992 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:59:52.0875 5992 Fs_Rec - ok
14:59:52.0875 5992 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:59:52.0875 5992 Ftdisk - ok
14:59:52.0890 5992 gameenum (5f92fd09e5610a5995da7d775eadcd12) C:\WINDOWS\system32\DRIVERS\gameenum.sys
14:59:52.0890 5992 gameenum - ok
14:59:52.0921 5992 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
14:59:52.0921 5992 GEARAspiWDM - ok
14:59:52.0937 5992 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:59:52.0937 5992 Gpc - ok
14:59:53.0046 5992 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
14:59:53.0046 5992 gupdate - ok
14:59:53.0046 5992 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
14:59:53.0046 5992 gupdatem - ok
14:59:53.0109 5992 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
14:59:53.0109 5992 gusvc - ok
14:59:53.0156 5992 ha10kx2k (9bb84b1dff8bce7fdddea746f6819fcf) C:\WINDOWS\system32\drivers\ha10kx2k.sys
14:59:53.0171 5992 ha10kx2k - ok
14:59:53.0187 5992 hap16v2k (1418833169b29780fbdab127623b8767) C:\WINDOWS\system32\drivers\hap16v2k.sys
14:59:53.0187 5992 hap16v2k - ok
14:59:53.0218 5992 hap17v2k (8b3148391dc121d96d513785d588e75b) C:\WINDOWS\system32\drivers\hap17v2k.sys
14:59:53.0218 5992 hap17v2k - ok
14:59:53.0265 5992 helpsvc (8827911a8c37e40c027cbfc88e69d967) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
14:59:53.0281 5992 helpsvc - ok
14:59:53.0296 5992 HidServ (9376e6893e52b368abc6255bf54f0b28) C:\WINDOWS\System32\hidserv.dll
14:59:53.0296 5992 HidServ - ok
14:59:53.0312 5992 HidUsb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:59:53.0328 5992 HidUsb - ok
14:59:53.0328 5992 hpn - ok
14:59:53.0468 5992 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
14:59:53.0484 5992 hpqcxs08 - ok
14:59:53.0500 5992 hpqddsvc (ee4c7a4cf2316701ffde90f404520265) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
14:59:53.0500 5992 hpqddsvc - ok
14:59:53.0531 5992 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
14:59:53.0531 5992 HPZid412 - ok
14:59:53.0562 5992 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
14:59:53.0562 5992 HPZipr12 - ok
14:59:53.0578 5992 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
14:59:53.0578 5992 HPZius12 - ok
14:59:53.0609 5992 HTTP (cb77bb47e67e84deb17ba29632501730) C:\WINDOWS\system32\Drivers\HTTP.sys
14:59:53.0609 5992 HTTP - ok
14:59:53.0640 5992 HTTPFilter (064d8581adf77c25133e7d751d917d83) C:\WINDOWS\System32\w3ssl.dll
14:59:53.0640 5992 HTTPFilter - ok
14:59:53.0656 5992 i2omgmt - ok
14:59:53.0656 5992 i2omp - ok
14:59:53.0687 5992 i8042prt (5502b58eef7486ee6f93f3f164dcb808) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:59:53.0687 5992 i8042prt - ok
14:59:53.0781 5992 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
14:59:53.0781 5992 IDriverT - ok
14:59:53.0937 5992 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:59:53.0953 5992 idsvc - ok
14:59:53.0984 5992 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
14:59:53.0984 5992 Imapi - ok
14:59:54.0000 5992 ImapiService (fa788520bcac0f5d9d5cde5615c0d931) C:\WINDOWS\system32\imapi.exe
14:59:54.0015 5992 ImapiService - ok
14:59:54.0015 5992 ini910u - ok
14:59:54.0031 5992 IntelIde - ok
14:59:54.0046 5992 ip6fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\drivers\ip6fw.sys
14:59:54.0046 5992 ip6fw - ok
14:59:54.0078 5992 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:59:54.0078 5992 IpFilterDriver - ok
14:59:54.0093 5992 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:59:54.0093 5992 IpInIp - ok
14:59:54.0109 5992 IpNat (e2168cbc7098ffe963c6f23f472a3593) C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:59:54.0125 5992 IpNat - ok
14:59:54.0218 5992 iPod Service (ce004777b92dea56fe14ec900d20baa4) C:\Program Files\iPod\bin\iPodService.exe
14:59:54.0234 5992 iPod Service - ok
14:59:54.0250 5992 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:59:54.0265 5992 IPSec - ok
14:59:54.0265 5992 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
14:59:54.0265 5992 IRENUM - ok
14:59:54.0296 5992 isapnp (e504f706ccb699c2596e9a3da1596e87) C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:59:54.0296 5992 isapnp - ok
14:59:54.0406 5992 JavaQuickStarterService (1834c96fb1f9280bcf6ddfa6de8338bf) C:\Program Files\Java\jre6\bin\jqs.exe
14:59:54.0406 5992 JavaQuickStarterService - ok
14:59:54.0437 5992 Kbdclass (ebdee8a2ee5393890a1acee971c4c246) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:59:54.0437 5992 Kbdclass - ok
14:59:54.0453 5992 kbdhid (e182fa8e49e8ee41b4adc53093f3c7e6) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
14:59:54.0453 5992 kbdhid - ok
14:59:54.0484 5992 kmixer (ba5deda4d934e6288c2f66caf58d2562) C:\WINDOWS\system32\drivers\kmixer.sys
14:59:54.0484 5992 kmixer - ok
14:59:54.0484 5992 KSecDD (eb7ffe87fd367ea8fca0506f74a87fbb) C:\WINDOWS\system32\drivers\KSecDD.sys
14:59:54.0484 5992 KSecDD - ok
14:59:54.0531 5992 L8042Kbd (58759156a6918913edd368f995be3e53) C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys
14:59:54.0531 5992 L8042Kbd - ok
14:59:54.0546 5992 L8042mou (973f78482aa2f2760323900b3a501c40) C:\WINDOWS\system32\DRIVERS\L8042mou.Sys
14:59:54.0546 5992 L8042mou - ok
14:59:54.0578 5992 lanmanserver (0cb3af149a0bac0836022ca307c7a0f8) C:\WINDOWS\System32\srvsvc.dll
14:59:54.0578 5992 lanmanserver - ok
14:59:54.0593 5992 lanmanworkstation (3cd291a2c4909088b3d1e98ded73d4b2) C:\WINDOWS\System32\wkssvc.dll
14:59:54.0593 5992 lanmanworkstation - ok
14:59:54.0703 5992 Lavasoft Ad-Aware Service (ea38136981c61c571d52c380daad46ef) C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
14:59:54.0718 5992 Lavasoft Ad-Aware Service - ok
14:59:54.0781 5992 Lavasoft Kernexplorer (6c4a3804510ad8e0f0c07b5be3d44ddb) C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys
14:59:54.0781 5992 Lavasoft Kernexplorer - ok
14:59:54.0890 5992 Lbd (336abe8721cbc3110f1c6426da633417) C:\WINDOWS\system32\DRIVERS\Lbd.sys
14:59:54.0890 5992 Lbd - ok
14:59:54.0906 5992 lbrtfdc - ok
14:59:54.0984 5992 LBTServ (a0f7dc0080e4f97dc97de08b699e231b) C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
14:59:54.0984 5992 LBTServ - ok
14:59:55.0046 5992 LexBceS (2a125981bb23f0a023255d39b7e1c25e) C:\WINDOWS\system32\LEXBCES.EXE
14:59:55.0062 5992 LexBceS - ok
14:59:55.0109 5992 LHidFilt (24e0ddb99aeccf86bb37702611761459) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
14:59:55.0109 5992 LHidFilt - ok
14:59:55.0140 5992 LmHosts (b3eff6d938c572e90a07b3d87a3c7657) C:\WINDOWS\System32\lmhsvc.dll
14:59:55.0140 5992 LmHosts - ok
14:59:55.0171 5992 LMouFilt (d58b330d318361a66a9fe60d7c9b4951) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
14:59:55.0171 5992 LMouFilt - ok
14:59:55.0218 5992 LMouKE (2a3e4db78b20b2cd2c548a48a8e6b1b7) C:\WINDOWS\system32\DRIVERS\LMouKE.Sys
14:59:55.0218 5992 LMouKE - ok
14:59:55.0218 5992 LXARScan - ok
14:59:55.0250 5992 mchInjDrv (9971aa2d16cb558358d6f6f3b5055cba) C:\WINDOWS\system32\Drivers\mchInjDrv.sys
14:59:55.0250 5992 mchInjDrv - ok
14:59:55.0265 5992 MCSTRM - ok
14:59:55.0296 5992 Messenger (95fd808e4ac22aba025a7b3eac0375d2) C:\WINDOWS\System32\msgsvc.dll
14:59:55.0296 5992 Messenger - ok
14:59:55.0406 5992 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
14:59:55.0437 5992 Microsoft Office Groove Audit Service - ok
14:59:55.0468 5992 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
14:59:55.0468 5992 mnmdd - ok
14:59:55.0500 5992 mnmsrvc (f6415361201915b9fe3896b0e4e724ff) C:\WINDOWS\System32\mnmsrvc.exe
14:59:55.0515 5992 mnmsrvc - ok
14:59:55.0531 5992 Modem (6fc6f9d7acc36dca9b914565a3aeda05) C:\WINDOWS\system32\drivers\Modem.sys
14:59:55.0531 5992 Modem - ok
14:59:55.0578 5992 motccgp (f4ea1193a52c8fe4b8a135e210abe546) C:\WINDOWS\system32\DRIVERS\motccgp.sys
14:59:55.0578 5992 motccgp - ok
14:59:55.0593 5992 motccgpfl (b812da6605caf02641312f1f65c75419) C:\WINDOWS\system32\DRIVERS\motccgpfl.sys
14:59:55.0593 5992 motccgpfl - ok
14:59:55.0625 5992 motmodem (69814acd50a9d6d28296050ef6215d46) C:\WINDOWS\system32\DRIVERS\motmodem.sys
14:59:55.0625 5992 motmodem - ok
14:59:55.0671 5992 MotoHelper (3bbc6c2402242401f791548aaebf3d39) C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
14:59:55.0671 5992 MotoHelper - ok
14:59:55.0703 5992 MotoSwitchService (fd8c2cef7ad8b23c6714103d621fac1f) C:\WINDOWS\system32\DRIVERS\motswch.sys
14:59:55.0703 5992 MotoSwitchService - ok
14:59:55.0734 5992 Motousbnet (ddc489d40b49f443787e7ffa75373522) C:\WINDOWS\system32\DRIVERS\Motousbnet.sys
14:59:55.0734 5992 Motousbnet - ok
14:59:55.0750 5992 motusbdevice (2136cca3d1bf7c0248e5366b1a6c24e3) C:\WINDOWS\system32\DRIVERS\motusbdevice.sys
14:59:55.0750 5992 motusbdevice - ok
14:59:55.0781 5992 Mouclass (34e1f0031153e491910e12551400192c) C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:59:55.0781 5992 Mouclass - ok
14:59:56.0343 5992 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:59:56.0343 5992 mouhid - ok
14:59:56.0375 5992 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
14:59:56.0375 5992 MountMgr - ok
14:59:56.0375 5992 mraid35x - ok
14:59:56.0406 5992 MRxDAV (29414447eb5bde2f8397dc965dbb3156) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:59:56.0406 5992 MRxDAV - ok
14:59:56.0437 5992 MRxSmb (6f2d483b97b395544e59749c47963c6a) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:59:56.0453 5992 MRxSmb - ok
14:59:56.0500 5992 MSCamSvc (d98350792a7ce82e7459a7c36481beda) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
14:59:56.0515 5992 MSCamSvc - ok
14:59:56.0531 5992 MSDTC (c7c3d89eb0a6f3dba622ea737fa335b1) C:\WINDOWS\System32\msdtc.exe
14:59:56.0531 5992 MSDTC - ok
14:59:56.0562 5992 MSDV (6dd721dfd2648f3f6d5808b5ba6cb095) C:\WINDOWS\system32\DRIVERS\msdv.sys
14:59:56.0562 5992 MSDV - ok
14:59:56.0578 5992 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
14:59:56.0593 5992 Msfs - ok
14:59:56.0609 5992 MSHUSBVideo (5119ffc2a6b51089cdb0efdc75808c97) C:\WINDOWS\system32\Drivers\nx6000.sys
14:59:56.0609 5992 MSHUSBVideo - ok
14:59:56.0609 5992 MSIServer - ok
14:59:56.0625 5992 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:59:56.0625 5992 MSKSSRV - ok
14:59:56.0656 5992 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:59:56.0656 5992 MSPCLOCK - ok
14:59:56.0656 5992 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
14:59:56.0656 5992 MSPQM - ok
14:59:56.0687 5992 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:59:56.0687 5992 mssmbios - ok
14:59:56.0718 5992 MSTEE (bf13612142995096ab084f2db7f40f77) C:\WINDOWS\system32\drivers\MSTEE.sys
14:59:56.0718 5992 MSTEE - ok
14:59:56.0750 5992 ms_mpu401 (ca3e22598f411199adc2dfee76cd0ae0) C:\WINDOWS\system32\drivers\msmpu401.sys
14:59:56.0750 5992 ms_mpu401 - ok
14:59:56.0765 5992 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
14:59:56.0781 5992 MTsensor - ok
14:59:56.0796 5992 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
14:59:56.0796 5992 Mup - ok
14:59:56.0890 5992 mysql - ok
14:59:56.0921 5992 NABTSFEC (5c8dc6429c43dc6177c1fa5b76290d1a) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
14:59:56.0921 5992 NABTSFEC - ok
14:59:56.0953 5992 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
14:59:56.0953 5992 NDIS - ok
14:59:56.0968 5992 NdisIP (520ce427a8b298f54112857bcf6bde15) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
14:59:56.0968 5992 NdisIP - ok
14:59:57.0000 5992 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:59:57.0000 5992 NdisTapi - ok
14:59:57.0000 5992 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:59:57.0000 5992 Ndisuio - ok
14:59:57.0015 5992 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:59:57.0015 5992 NdisWan - ok
14:59:57.0046 5992 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
14:59:57.0046 5992 NDProxy - ok
14:59:57.0078 5992 Net Driver HPZ12 (a081cb6fb9a12668f233eb5414be3a0e) C:\WINDOWS\system32\HPZinw12.dll
14:59:57.0078 5992 Net Driver HPZ12 - ok
14:59:57.0093 5992 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
14:59:57.0093 5992 NetBIOS - ok
14:59:57.0125 5992 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
14:59:57.0125 5992 NetBT - ok
14:59:57.0156 5992 NetDDE (05afb5ad06462257bea7495283c86d50) C:\WINDOWS\system32\netdde.exe
14:59:57.0156 5992 NetDDE - ok
14:59:57.0156 5992 NetDDEdsdm (05afb5ad06462257bea7495283c86d50) C:\WINDOWS\system32\netdde.exe
14:59:57.0171 5992 NetDDEdsdm - ok
14:59:57.0187 5992 Netlogon (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:57.0187 5992 Netlogon - ok
14:59:57.0218 5992 Netman (36739b39267914ba69ad0610a0299732) C:\WINDOWS\System32\netman.dll
14:59:57.0218 5992 Netman - ok
14:59:57.0328 5992 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:59:57.0390 5992 NetTcpPortSharing - ok
14:59:57.0406 5992 NIC1394 (5c5c53db4fef16cf87b9911c7e8c6fbc) C:\WINDOWS\system32\DRIVERS\nic1394.sys
14:59:57.0406 5992 NIC1394 - ok
14:59:57.0437 5992 Nla (097722f235a1fb698bf9234e01b52637) C:\WINDOWS\System32\mswsock.dll
14:59:57.0453 5992 Nla - ok
14:59:57.0468 5992 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
14:59:57.0468 5992 Npfs - ok
14:59:57.0500 5992 Ntfs (19a811ef5f1ed5c926a028ce107ff1af) C:\WINDOWS\system32\drivers\Ntfs.sys
14:59:57.0500 5992 Ntfs - ok
14:59:57.0531 5992 NtLmSsp (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\System32\lsass.exe
14:59:57.0531 5992 NtLmSsp - ok
14:59:57.0562 5992 NtmsSvc (b62f29c00ac55a761b2e45877d85ea0f) C:\WINDOWS\system32\ntmssvc.dll
14:59:57.0578 5992 NtmsSvc - ok
14:59:57.0593 5992 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
14:59:57.0593 5992 Null - ok
14:59:57.0875 5992 nv (cb0ce8de9f66a297cd86eb98921b8e58) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
14:59:58.0140 5992 nv - ok
14:59:58.0250 5992 nvata (dce353985c988bfb7e84fd942068151f) C:\WINDOWS\system32\DRIVERS\nvata.sys
14:59:58.0250 5992 nvata - ok
14:59:58.0281 5992 NVENETFD (720cc533eecb65553bd86b139ca04433) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
14:59:58.0281 5992 NVENETFD - ok
14:59:58.0312 5992 nvnetbus (5f9f545cc5904dd8765f84ee1d056406) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
14:59:58.0312 5992 nvnetbus - ok
14:59:58.0343 5992 nvsvc (1f31a588cc83a7b76715f9549515c161) C:\WINDOWS\system32\nvsvc32.exe
14:59:58.0359 5992 nvsvc - ok
14:59:58.0390 5992 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:59:58.0390 5992 NwlnkFlt - ok
14:59:58.0406 5992 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:59:58.0406 5992 NwlnkFwd - ok
14:59:58.0515 5992 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:59:58.0531 5992 odserv - ok
14:59:58.0562 5992 ohci1394 (0951db8e5823ea366b0e408d71e1ba2a) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
14:59:58.0562 5992 ohci1394 - ok
14:59:58.0625 5992 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:59:58.0625 5992 ose - ok
14:59:58.0656 5992 ossrv (01e1ab8249f9dde5978c6b4af18eda7c) C:\WINDOWS\system32\drivers\ctoss2k.sys
14:59:58.0656 5992 ossrv - ok
14:59:58.0671 5992 Parport (29744eb4ce659dfe3b4122deb45bc478) C:\WINDOWS\system32\DRIVERS\parport.sys
14:59:58.0687 5992 Parport - ok
14:59:58.0703 5992 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
14:59:58.0703 5992 PartMgr - ok
14:59:58.0718 5992 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
14:59:58.0718 5992 ParVdm - ok
14:59:58.0750 5992 PCI (8086d9979234b603ad5bc2f5d890b234) C:\WINDOWS\system32\DRIVERS\pci.sys
14:59:58.0750 5992 PCI - ok
14:59:58.0750 5992 PCIDump - ok
14:59:58.0796 5992 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
14:59:58.0796 5992 PCIIde - ok
14:59:58.0843 5992 Pcmcia (82a087207decec8456fbe8537947d579) C:\WINDOWS\system32\drivers\Pcmcia.sys
14:59:58.0843 5992 Pcmcia - ok
14:59:58.0859 5992 PCTCore (807ff1dd6e1bdf8e7d2062fca0daecaf) C:\WINDOWS\system32\drivers\PCTCore.sys
14:59:58.0875 5992 PCTCore - ok
14:59:58.0890 5992 pctgntdi (d15669bd3e1cf18f00b46a7949ea541f) C:\WINDOWS\system32\drivers\pctgntdi.sys
14:59:58.0906 5992 pctgntdi - ok
14:59:58.0984 5992 PCToolsSSDMonitorSvc (8ab77eea3f00c94462cffd0e1d0938f9) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
14:59:58.0984 5992 PCToolsSSDMonitorSvc - ok
14:59:59.0015 5992 pctplsg (30c931fcb8df713bcd2fb7ce763a0b47) C:\WINDOWS\system32\drivers\pctplsg.sys
14:59:59.0015 5992 pctplsg - ok
14:59:59.0015 5992 PDCOMP - ok
14:59:59.0031 5992 PDFRAME - ok
14:59:59.0031 5992 PDRELI - ok
14:59:59.0046 5992 PDRFRAME - ok
14:59:59.0046 5992 perc2 - ok
14:59:59.0062 5992 perc2hib - ok
14:59:59.0093 5992 PlugPlay (c6ce6eec82f187615d1002bb3bb50ed4) C:\WINDOWS\system32\services.exe
14:59:59.0093 5992 PlugPlay - ok
14:59:59.0140 5992 Pml Driver HPZ12 (65bc271f337637731d3c71455ae1f476) C:\WINDOWS\system32\HPZipm12.dll
14:59:59.0140 5992 Pml Driver HPZ12 - ok
14:59:59.0171 5992 PnkBstrA (19e83b09ab8ee1d837665da941e2ac44) C:\WINDOWS\system32\PnkBstrA.exe
14:59:59.0171 5992 PnkBstrA - ok
14:59:59.0187 5992 PolicyAgent (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0187 5992 PolicyAgent - ok
14:59:59.0218 5992 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:59:59.0218 5992 PptpMiniport - ok
14:59:59.0234 5992 Processor (0d97d88720a4087ec93af7dbb303b30a) C:\WINDOWS\system32\DRIVERS\processr.sys
14:59:59.0234 5992 Processor - ok
14:59:59.0234 5992 ProtectedStorage (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0250 5992 ProtectedStorage - ok
14:59:59.0250 5992 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
14:59:59.0250 5992 PSched - ok
14:59:59.0281 5992 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:59:59.0281 5992 Ptilink - ok
14:59:59.0281 5992 ql1080 - ok
14:59:59.0281 5992 Ql10wnt - ok
14:59:59.0296 5992 ql12160 - ok
14:59:59.0296 5992 ql1240 - ok
14:59:59.0312 5992 ql1280 - ok
14:59:59.0312 5992 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:59:59.0312 5992 RasAcd - ok
14:59:59.0359 5992 RasAuto (44db7a9bdd2fb58747d123fbf1d35adb) C:\WINDOWS\System32\rasauto.dll
14:59:59.0359 5992 RasAuto - ok
14:59:59.0375 5992 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:59:59.0375 5992 Rasl2tp - ok
14:59:59.0406 5992 RasMan (49b5eed5fb89d39456a2f616ccd8ba5d) C:\WINDOWS\System32\rasmans.dll
14:59:59.0421 5992 RasMan - ok
14:59:59.0437 5992 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:59:59.0453 5992 RasPppoe - ok
14:59:59.0484 5992 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
14:59:59.0484 5992 Raspti - ok
14:59:59.0500 5992 Rdbss (03b965b1ca47f6ef60eb5e51cb50e0af) C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:59:59.0500 5992 Rdbss - ok
14:59:59.0515 5992 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:59:59.0515 5992 RDPCDD - ok
14:59:59.0562 5992 RDPWD (b54cd38a9ebfbf2b3561426e3fe26f62) C:\WINDOWS\system32\drivers\RDPWD.sys
14:59:59.0562 5992 RDPWD - ok
14:59:59.0593 5992 RDSessMgr (729798e0933076b8fcfcd9934698f164) C:\WINDOWS\system32\sessmgr.exe
14:59:59.0609 5992 RDSessMgr - ok
14:59:59.0625 5992 redbook (b31b4588e4086d8d84adbf9845c2402b) C:\WINDOWS\system32\DRIVERS\redbook.sys
14:59:59.0625 5992 redbook - ok
14:59:59.0656 5992 RemoteAccess (3046db917e3cfa040632799dd9b14865) C:\WINDOWS\System32\mprdim.dll
14:59:59.0656 5992 RemoteAccess - ok
14:59:59.0671 5992 RpcLocator (793f04a09b15e7c6c11dbdffaf06c0ab) C:\WINDOWS\System32\locator.exe
14:59:59.0671 5992 RpcLocator - ok
14:59:59.0718 5992 RpcSs (ce94a2bd25e3e9f4d46a7373ff455c6d) C:\WINDOWS\System32\rpcss.dll
14:59:59.0718 5992 RpcSs - ok
14:59:59.0750 5992 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\System32\rsvp.exe
14:59:59.0765 5992 RSVP - ok
14:59:59.0781 5992 SamSs (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0781 5992 SamSs - ok
14:59:59.0812 5992 SCardSvr (25d8de134df108e3dbc8d7d23b1aa58e) C:\WINDOWS\System32\SCardSvr.exe
14:59:59.0812 5992 SCardSvr - ok
14:59:59.0843 5992 Schedule (92360854316611f6cc471612213c3d92) C:\WINDOWS\system32\schedsvc.dll
14:59:59.0843 5992 Schedule - ok
14:59:59.0968 5992 sdAuxService (a1089ac7683826e6c7c9fab9723dd80f) C:\Program Files\Spyware Doctor\pctsAuxs.exe
15:00:00.0000 5992 sdAuxService - ok
15:00:00.0046 5992 sdCoreService (06f95756353653c7d505361117186713) C:\Program Files\Spyware Doctor\pctsSvc.exe
15:00:00.0062 5992 sdCoreService - ok
15:00:00.0140 5992 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
15:00:00.0140 5992 Secdrv - ok
15:00:00.0156 5992 seclogon (b1e0ce09895376871746f36dc5773b4f) C:\WINDOWS\System32\seclogon.dll
15:00:00.0156 5992 seclogon - ok
15:00:00.0156 5992 SENS (dfd9870cf39c791d86c4c209da9fa919) C:\WINDOWS\system32\sens.dll
15:00:00.0171 5992 SENS - ok
15:00:00.0187 5992 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
15:00:00.0187 5992 serenum - ok
15:00:00.0234 5992 Serial (cd9404d115a00d249f70a371b46d5a26) C:\WINDOWS\system32\DRIVERS\serial.sys
15:00:00.0234 5992 Serial - ok
15:00:00.0281 5992 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
15:00:00.0281 5992 Sfloppy - ok
15:00:00.0312 5992 SharedAccess (36cc8c01b5e50163037bef56cb96deff) C:\WINDOWS\System32\ipnathlp.dll
15:00:00.0328 5992 SharedAccess - ok
15:00:00.0343 5992 ShellHWDetection (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
15:00:00.0343 5992 ShellHWDetection - ok
15:00:00.0343 5992 Si3114r5 - ok
15:00:00.0359 5992 SiFilter - ok
15:00:00.0359 5992 Simbad - ok
15:00:00.0421 5992 SkypeUpdate (db0405d9aad62f0762e0876ac142b7e1) C:\Program Files\Skype\Updater\Updater.exe
15:00:00.0421 5992 SkypeUpdate - ok
15:00:00.0453 5992 SLIP (5caeed86821fa2c6139e32e9e05ccdc9) C:\WINDOWS\system32\DRIVERS\SLIP.sys
15:00:00.0453 5992 SLIP - ok
15:00:00.0453 5992 Sparrow - ok
15:00:00.0484 5992 splitter (0ce218578fff5f4f7e4201539c45c78f) C:\WINDOWS\system32\drivers\splitter.sys
15:00:00.0484 5992 splitter - ok
15:00:00.0515 5992 Spooler (da81ec57acd4cdc3d4c51cf3d409af9f) C:\WINDOWS\system32\spoolsv.exe
15:00:00.0515 5992 Spooler - ok
15:00:00.0531 5992 sr (e41b6d037d6cd08461470af04500dc24) C:\WINDOWS\system32\DRIVERS\sr.sys
15:00:00.0531 5992 sr - ok
15:00:00.0546 5992 srservice (92bdf74f12d6cbec43c94d4b7f804838) C:\WINDOWS\system32\srsvc.dll
15:00:00.0562 5992 srservice - ok
15:00:00.0578 5992 Srv (ab9c79ed12d65e800aaad3d72a04792f) C:\WINDOWS\system32\DRIVERS\srv.sys
15:00:00.0593 5992 Srv - ok
15:00:00.0593 5992 SSDPSRV (4b8d61792f7175bed48859cc18ce4e38) C:\WINDOWS\System32\ssdpsrv.dll
15:00:00.0609 5992 SSDPSRV - ok
15:00:00.0625 5992 Steam Client Service - ok
15:00:00.0656 5992 stisvc (b6763f8534ac547cf1af98afdff2edc8) C:\WINDOWS\system32\wiaservc.dll
15:00:00.0656 5992 stisvc - ok
15:00:00.0671 5992 streamip (284c57df5dc7abca656bc2b96a667afb) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
15:00:00.0687 5992 streamip - ok
15:00:00.0703 5992 SWDUMon (7168ea26833301750562bfd0a16a66d3) C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
15:00:00.0703 5992 SWDUMon - ok
15:00:00.0750 5992 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
15:00:00.0750 5992 swenum - ok
15:00:00.0765 5992 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
15:00:00.0765 5992 swmidi - ok
15:00:00.0765 5992 SwPrv - ok
15:00:00.0781 5992 symc810 - ok
15:00:00.0796 5992 symc8xx - ok
15:00:00.0796 5992 sym_hi - ok
15:00:00.0796 5992 sym_u3 - ok
15:00:00.0828 5992 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
15:00:00.0828 5992 sysaudio - ok
15:00:00.0875 5992 SysmonLog (8b54aa346d1b1b113ffaa75501b8b1b2) C:\WINDOWS\system32\smlogsvc.exe
15:00:00.0875 5992 SysmonLog - ok
15:00:00.0906 5992 TapiSrv (fb78839b36025aa286a51289ed28b73e) C:\WINDOWS\System32\tapisrv.dll
15:00:00.0921 5992 TapiSrv - ok
15:00:00.0953 5992 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
15:00:00.0953 5992 Tcpip - ok
15:00:00.0968 5992 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
15:00:00.0968 5992 TDPIPE - ok
15:00:01.0015 5992 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
15:00:01.0015 5992 TDTCP - ok
15:00:01.0031 5992 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
15:00:01.0031 5992 TermDD - ok
15:00:01.0062 5992 TermService (b60c877d16d9c880b952fda04adf16e6) C:\WINDOWS\System32\termsrv.dll
15:00:01.0078 5992 TermService - ok
15:00:01.0109 5992 TfFsMon (d2a1cd31200a6c9d3dfad022503e4836) C:\WINDOWS\system32\drivers\TfFsMon.sys
15:00:01.0109 5992 TfFsMon - ok
15:00:01.0109 5992 TfKbMon - ok
15:00:01.0140 5992 TfNetMon (3e3a544d10b0ac1c4c133048f84390ac) C:\WINDOWS\system32\drivers\TfNetMon.sys
15:00:01.0140 5992 TfNetMon - ok
15:00:01.0140 5992 TfSysMon (706be7328a35c39dbe449e10c1ac6a38) C:\WINDOWS\system32\drivers\TfSysMon.sys
15:00:01.0140 5992 TfSysMon - ok
15:00:01.0187 5992 Themes (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
15:00:01.0187 5992 Themes - ok
15:00:01.0281 5992 ThreatFire - ok
15:00:01.0296 5992 TosIde - ok
15:00:01.0312 5992 TrkWks (6d9ac544b30f96c57f8206566c1fb6a1) C:\WINDOWS\system32\trkwks.dll
15:00:01.0312 5992 TrkWks - ok
15:00:01.0343 5992 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
15:00:01.0343 5992 Udfs - ok
15:00:01.0343 5992 ultra - ok
15:00:01.0375 5992 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
15:00:01.0375 5992 Update - ok
15:00:01.0437 5992 Updater Service for StartNow Toolbar (7ccf424450af71461ca5aca14fb45b72) C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
15:00:01.0437 5992 Updater Service for StartNow Toolbar - ok
15:00:01.0468 5992 upnphost (aca5d98663d879c6baafcea7e2f1b710) C:\WINDOWS\System32\upnphost.dll
15:00:01.0468 5992 upnphost - ok
15:00:01.0484 5992 UPS (3f5df65b0758675f95a2d43918a740a3) C:\WINDOWS\System32\ups.exe
15:00:01.0484 5992 UPS - ok
15:00:01.0531 5992 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\WINDOWS\system32\Drivers\usbaapl.sys
15:00:01.0531 5992 USBAAPL - ok
15:00:01.0546 5992 usbaudio (45a0d14b26c35497ad93bce7e15c9941) C:\WINDOWS\system32\drivers\usbaudio.sys
15:00:01.0546 5992 usbaudio - ok
15:00:01.0578 5992 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
15:00:01.0593 5992 usbccgp - ok
15:00:01.0593 5992 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
15:00:01.0593 5992 usbehci - ok
15:00:01.0625 5992 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
15:00:01.0625 5992 usbhub - ok
15:00:01.0640 5992 usbohci (bdfe799a8531bad8a5a985821fe78760) C:\WINDOWS\system32\DRIVERS\usbohci.sys
15:00:01.0640 5992 usbohci - ok
15:00:01.0671 5992 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\WINDOWS\system32\DRIVERS\usbprint.sys
15:00:01.0671 5992 usbprint - ok
15:00:01.0671 5992 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\WINDOWS\system32\DRIVERS\usbscan.sys
15:00:01.0671 5992 usbscan - ok
15:00:01.0687 5992 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
15:00:01.0687 5992 USBSTOR - ok
15:00:01.0703 5992 usbvideo (8968ff3973a883c49e8b564200f565b9) C:\WINDOWS\system32\Drivers\usbvideo.sys
15:00:01.0703 5992 usbvideo - ok
15:00:01.0718 5992 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
15:00:01.0718 5992 VgaSave - ok
15:00:01.0734 5992 ViaIde - ok
15:00:01.0750 5992 VolSnap (ee4660083deba849ff6c485d944b379b) C:\WINDOWS\system32\drivers\VolSnap.sys
15:00:01.0750 5992 VolSnap - ok
15:00:01.0796 5992 VSS (3ee00364ae0fd8d604f46cbaf512838a) C:\WINDOWS\System32\vssvc.exe
15:00:01.0796 5992 VSS - ok
15:00:01.0828 5992 W32Time (2b281958f5d0cf99ed626e3ef39d5c8d) C:\WINDOWS\system32\w32time.dll
15:00:01.0843 5992 W32Time - ok
15:00:01.0890 5992 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
15:00:01.0890 5992 Wanarp - ok
15:00:01.0921 5992 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
15:00:01.0921 5992 wceusbsh - ok
15:00:01.0968 5992 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
15:00:01.0968 5992 Wdf01000 - ok
15:00:01.0984 5992 WDICA - ok
15:00:02.0000 5992 wdmaud (efd235ca22b57c81118c1aeb4798f1c1) C:\WINDOWS\system32\drivers\wdmaud.sys
15:00:02.0000 5992 wdmaud - ok
15:00:02.0031 5992 WebClient (265f534ef76832435afbf771ec97176d) C:\WINDOWS\System32\webclnt.dll
15:00:02.0031 5992 WebClient - ok
15:00:02.0093 5992 winmgmt (f399242a80c4066fd155efa4cf96658e) C:\WINDOWS\system32\wbem\WMIsvc.dll
15:00:02.0093 5992 winmgmt - ok
15:00:02.0140 5992 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\WINDOWS\system32\DRIVERS\WinUsb.sys
15:00:02.0156 5992 WinUsb - ok
15:00:02.0265 5992 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:00:02.0281 5992 wlidsvc - ok
15:00:02.0328 5992 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
15:00:02.0343 5992 WmdmPmSN - ok
15:00:02.0406 5992 WmiApSrv (ba8cecc3e813e1f7c441b20393d4f86c) C:\WINDOWS\System32\wbem\wmiapsrv.exe
15:00:02.0406 5992 WmiApSrv - ok
15:00:02.0500 5992 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
15:00:02.0515 5992 WMPNetworkSvc - ok
15:00:02.0546 5992 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
15:00:02.0546 5992 WpdUsb - ok
15:00:02.0687 5992 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:00:02.0703 5992 WPFFontCache_v0400 - ok
15:00:02.0734 5992 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
15:00:02.0734 5992 WS2IFSL - ok
15:00:02.0765 5992 wscsvc (4d59daa66c60858cdf4f67a900f42d4a) C:\WINDOWS\system32\wscsvc.dll
15:00:02.0765 5992 wscsvc - ok
15:00:02.0796 5992 WSTCODEC (d5842484f05e12121c511aa93f6439ec) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
15:00:02.0796 5992 WSTCODEC - ok
15:00:02.0812 5992 wuauserv (13d72740963cba12d9ff76a7f218bcd8) C:\WINDOWS\system32\wuauserv.dll
15:00:02.0843 5992 wuauserv - ok
15:00:02.0875 5992 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
15:00:02.0875 5992 WudfPf - ok
15:00:02.0890 5992 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
15:00:02.0906 5992 WudfRd - ok
15:00:02.0921 5992 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
15:00:02.0937 5992 WudfSvc - ok
15:00:02.0953 5992 WZCSVC (5a91e6feab9f901302fa7ff768c0120f) C:\WINDOWS\System32\wzcsvc.dll
15:00:03.0046 5992 WZCSVC - ok
15:00:03.0078 5992 xmlprov (eef46dab68229a14da3d8e73c99e2959) C:\WINDOWS\System32\xmlprov.dll
15:00:03.0125 5992 xmlprov - ok
15:00:03.0156 5992 yukonwxp (a8d429e2268792638cffc57552c5e736) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
15:00:03.0156 5992 yukonwxp - ok
15:00:03.0187 5992 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
15:00:03.0312 5992 \Device\Harddisk0\DR0 - ok
15:00:03.0328 5992 Boot (0x1200) (3039df2e37eb2dac6179517bdb2985c6) \Device\Harddisk0\DR0\Partition0
15:00:03.0328 5992 \Device\Harddisk0\DR0\Partition0 - ok
15:00:03.0328 5992 ============================================================
15:00:03.0328 5992 Scan finished
15:00:03.0328 5992 ============================================================
15:00:03.0343 3676 Detected object count: 1
15:00:03.0343 3676 Actual detected object count: 1
15:00:41.0515 3676 C:\WINDOWS\system32\DRIVERS\ACPI.sys - copied to quarantine
15:00:41.0531 3676 VerifyFileNameVersionInfo: GetFileVersionInfoSizeW(C:\WINDOWS\system32\drivers\acpi.sys) error 1813
15:00:44.0234 3676 Backup copy found, using it..
15:00:44.0250 3676 C:\WINDOWS\system32\DRIVERS\ACPI.sys - will be cured on reboot
15:00:44.0250 3676 ACPI ( Virus.Win32.Rloader.a ) - User select action: Cure
15:00:53.0703 5260 Deinitialize success

#5 dcewing

dcewing
  • Topic Starter

  • Members
  • 17 posts
  • OFFLINE
  •  
  • Local time:07:33 AM

Posted 27 April 2012 - 05:22 PM

Here's the Maleware Bytes Log:

14:59:44.0093 6024 TDSS rootkit removing tool 2.7.33.0 Apr 24 2012 18:43:43
14:59:44.0750 6024 ============================================================
14:59:44.0750 6024 Current date / time: 2012/04/27 14:59:44.0750
14:59:44.0750 6024 SystemInfo:
14:59:44.0750 6024
14:59:44.0750 6024 OS Version: 5.1.2600 ServicePack: 3.0
14:59:44.0750 6024 Product type: Workstation
14:59:44.0750 6024 ComputerName: HOME-W3O9G5F1PY
14:59:44.0750 6024 UserName: Carol
14:59:44.0750 6024 Windows directory: C:\WINDOWS
14:59:44.0750 6024 System windows directory: C:\WINDOWS
14:59:44.0750 6024 Processor architecture: Intel x86
14:59:44.0750 6024 Number of processors: 2
14:59:44.0750 6024 Page size: 0x1000
14:59:44.0750 6024 Boot type: Normal boot
14:59:44.0750 6024 ============================================================
14:59:45.0328 6024 Drive \Device\Harddisk0\DR0 - Size: 0x2658AE0000 (153.39 Gb), SectorSize: 0x200, Cylinders: 0x4E37, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
14:59:45.0328 6024 ============================================================
14:59:45.0328 6024 \Device\Harddisk0\DR0:
14:59:45.0328 6024 MBR partitions:
14:59:45.0328 6024 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x132C0A77
14:59:45.0328 6024 ============================================================
14:59:45.0390 6024 C: <-> \Device\Harddisk0\DR0\Partition0
14:59:45.0390 6024 ============================================================
14:59:45.0390 6024 Initialize success
14:59:45.0390 6024 ============================================================
14:59:48.0859 5992 ============================================================
14:59:48.0859 5992 Scan started
14:59:48.0859 5992 Mode: Manual;
14:59:48.0859 5992 ============================================================
14:59:49.0140 5992 61883 (86d7b1e70661d754685b9ac6d749aae5) C:\WINDOWS\system32\DRIVERS\61883.sys
14:59:49.0140 5992 61883 - ok
14:59:49.0140 5992 Abiosdsk - ok
14:59:49.0156 5992 abp480n5 - ok
14:59:49.0328 5992 ACDaemon (769db4f484957cc98153b3c1b5d1162f) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
14:59:49.0359 5992 ACDaemon - ok
14:59:49.0390 5992 ACPI (78dba80f47dcdf4010d9581e9cd26298) C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:59:49.0390 5992 Suspicious file (Forged): C:\WINDOWS\system32\DRIVERS\ACPI.sys. Real md5: 78dba80f47dcdf4010d9581e9cd26298, Fake md5: a5bd09787a3a0f1c8c17e5281b42a821
14:59:49.0390 5992 ACPI ( Virus.Win32.Rloader.a ) - infected
14:59:49.0390 5992 ACPI - detected Virus.Win32.Rloader.a (0)
14:59:49.0437 5992 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
14:59:49.0437 5992 ACPIEC - ok
14:59:49.0500 5992 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:59:49.0500 5992 AdobeFlashPlayerUpdateSvc - ok
14:59:49.0515 5992 adpu160m - ok
14:59:49.0546 5992 aec (1ee7b434ba961ef845de136224c30fec) C:\WINDOWS\system32\drivers\aec.sys
14:59:49.0546 5992 aec - ok
14:59:49.0562 5992 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
14:59:49.0562 5992 AFD - ok
14:59:49.0578 5992 Aha154x - ok
14:59:49.0578 5992 aic78u2 - ok
14:59:49.0593 5992 aic78xx - ok
14:59:49.0671 5992 ALCXWDM (35045a23957a71ba649740741e69408c) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
14:59:49.0718 5992 ALCXWDM - ok
14:59:49.0781 5992 Alerter (c7ae0fd3867db0d42b03b73c18f3d671) C:\WINDOWS\system32\alrsvc.dll
14:59:49.0781 5992 Alerter - ok
14:59:49.0796 5992 ALG (f1958fbf86d5c004cf19a5951a9514b7) C:\WINDOWS\System32\alg.exe
14:59:49.0796 5992 ALG - ok
14:59:49.0812 5992 AliIde - ok
14:59:49.0859 5992 AmdK8 (efbb0956baed786e137351b5ca272aef) C:\WINDOWS\system32\DRIVERS\AmdK8.sys
14:59:49.0875 5992 AmdK8 - ok
14:59:49.0890 5992 amsint - ok
14:59:50.0062 5992 Apache2.2 (375640f39f2d613b6fdcf8c2f956205a) C:\xampp\apache\bin\httpd.exe
14:59:50.0062 5992 Apache2.2 - ok
14:59:50.0218 5992 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:59:50.0218 5992 Apple Mobile Device - ok
14:59:50.0218 5992 AppMgmt - ok
14:59:50.0265 5992 Arp1394 (f0d692b0bffb46e30eb3cea168bbc49f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
14:59:50.0265 5992 Arp1394 - ok
14:59:50.0281 5992 asc - ok
14:59:50.0281 5992 asc3350p - ok
14:59:50.0281 5992 asc3550 - ok
14:59:50.0296 5992 ASPI32 - ok
14:59:50.0453 5992 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:59:50.0531 5992 aspnet_state - ok
14:59:50.0546 5992 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:59:50.0546 5992 AsyncMac - ok
14:59:50.0546 5992 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
14:59:50.0562 5992 atapi - ok
14:59:50.0562 5992 Atdisk - ok
14:59:50.0578 5992 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:59:50.0578 5992 Atmarpc - ok
14:59:50.0609 5992 AudioSrv (db66db626e4882ebef55f136f12c1829) C:\WINDOWS\System32\audiosrv.dll
14:59:50.0609 5992 AudioSrv - ok
14:59:50.0625 5992 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
14:59:50.0625 5992 audstub - ok
14:59:50.0656 5992 Avc (87c223adb8f7596b31caae3c67b16ddd) C:\WINDOWS\system32\DRIVERS\avc.sys
14:59:50.0656 5992 Avc - ok
14:59:50.0703 5992 AVG Anti-Spyware Driver - ok
14:59:50.0734 5992 AvgAsCln (6d4a1da6e6d522b3ebbcbff4a3589ec5) C:\WINDOWS\system32\DRIVERS\AvgAsCln.sys
14:59:50.0734 5992 AvgAsCln - ok
14:59:50.0734 5992 Beep - ok
14:59:50.0781 5992 BITS (2c69ec7e5a311334d10dd95f338fccea) C:\WINDOWS\system32\qmgr.dll
14:59:51.0015 5992 BITS - ok
14:59:51.0078 5992 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
14:59:51.0078 5992 Bonjour Service - ok
14:59:51.0109 5992 Browser (e3cfccdda4edd1d0dc9168b2e18f27b8) C:\WINDOWS\System32\browser.dll
14:59:51.0109 5992 Browser - ok
14:59:51.0140 5992 BTCFilterService (4813df77ede536a52e3737971f910baa) C:\WINDOWS\system32\DRIVERS\motfilt.sys
14:59:51.0156 5992 BTCFilterService - ok
14:59:51.0171 5992 BVRPMPR5 - ok
14:59:51.0187 5992 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
14:59:51.0187 5992 cbidf2k - ok
14:59:51.0203 5992 cd20xrnt - ok
14:59:51.0234 5992 CdaD10BA (841cefab8228ee691705d059e7f21c47) C:\WINDOWS\system32\drivers\CdaD10BA.SYS
14:59:51.0234 5992 CdaD10BA - ok
14:59:51.0265 5992 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
14:59:51.0265 5992 Cdaudio - ok
14:59:51.0296 5992 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
14:59:51.0296 5992 Cdfs - ok
14:59:51.0328 5992 cdrbsdrv (351735695e9ead93de6af85d8beb1ca8) C:\WINDOWS\system32\drivers\cdrbsdrv.sys
14:59:51.0328 5992 cdrbsdrv - ok
14:59:51.0359 5992 Cdrom (7b53584d94e9d8716b2de91d5f1cb42d) C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:59:51.0359 5992 Cdrom - ok
14:59:51.0359 5992 Changer - ok
14:59:51.0390 5992 CiSvc (3192bd04d032a9c4a85a3278c268a13a) C:\WINDOWS\system32\cisvc.exe
14:59:51.0390 5992 CiSvc - ok
14:59:51.0406 5992 ClipSrv (c8dec22c4137d7a90f8bdf41ca4b82ae) C:\WINDOWS\system32\clipsrv.exe
14:59:51.0406 5992 ClipSrv - ok
14:59:51.0484 5992 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:59:51.0531 5992 clr_optimization_v2.0.50727_32 - ok
14:59:51.0609 5992 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:59:51.0718 5992 clr_optimization_v4.0.30319_32 - ok
14:59:51.0734 5992 CmdIde - ok
14:59:51.0734 5992 COMSysApp - ok
14:59:51.0750 5992 Cpqarray - ok
14:59:51.0765 5992 CryptSvc (10654f9ddcea9c46cfb77554231be73b) C:\WINDOWS\System32\cryptsvc.dll
14:59:51.0765 5992 CryptSvc - ok
14:59:51.0812 5992 ctac32k (fb06bb39860340c6fa84867f0288d1dd) C:\WINDOWS\system32\drivers\ctac32k.sys
14:59:51.0828 5992 ctac32k - ok
14:59:51.0875 5992 ctaud2k (b810fa12cf726b200e057834eaebb1ac) C:\WINDOWS\system32\drivers\ctaud2k.sys
14:59:51.0875 5992 ctaud2k - ok
14:59:51.0906 5992 ctdvda2k (c4333325d325efa668888d0d3177c6ff) C:\WINDOWS\system32\drivers\ctdvda2k.sys
14:59:51.0921 5992 ctdvda2k - ok
14:59:51.0937 5992 ctprxy2k (1fa95c8cf34b9911e352a07ea7a200fc) C:\WINDOWS\system32\drivers\ctprxy2k.sys
14:59:51.0937 5992 ctprxy2k - ok
14:59:51.0968 5992 ctsfm2k (400cb754b91f73bee2655686a57269d2) C:\WINDOWS\system32\drivers\ctsfm2k.sys
14:59:51.0968 5992 ctsfm2k - ok
14:59:51.0968 5992 dac2w2k - ok
14:59:51.0984 5992 dac960nt - ok
14:59:52.0015 5992 DcomLaunch (ce94a2bd25e3e9f4d46a7373ff455c6d) C:\WINDOWS\system32\rpcss.dll
14:59:52.0031 5992 DcomLaunch - ok
14:59:52.0062 5992 Dhcp (ef545e1a4b043da4c84e230dd471c55f) C:\WINDOWS\System32\dhcpcsvc.dll
14:59:52.0062 5992 Dhcp - ok
14:59:52.0078 5992 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
14:59:52.0078 5992 Disk - ok
14:59:52.0093 5992 dmadmin - ok
14:59:52.0109 5992 dmboot (c0fbb516e06e243f0cf31f597e7ebf7d) C:\WINDOWS\system32\drivers\dmboot.sys
14:59:52.0125 5992 dmboot - ok
14:59:52.0140 5992 dmio (f5e7b358a732d09f4bcf2824b88b9e28) C:\WINDOWS\system32\drivers\dmio.sys
14:59:52.0140 5992 dmio - ok
14:59:52.0171 5992 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
14:59:52.0171 5992 dmload - ok
14:59:52.0203 5992 dmserver (1639d9964c9e1b2ecca95c8217d3e70d) C:\WINDOWS\System32\dmserver.dll
14:59:52.0203 5992 dmserver - ok
14:59:52.0218 5992 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
14:59:52.0218 5992 DMusic - ok
14:59:52.0250 5992 Dnscache (aac8ffbfd61e784fa3bac851d4a0bd5f) C:\WINDOWS\System32\dnsrslvr.dll
14:59:52.0250 5992 Dnscache - ok
14:59:52.0250 5992 dpti2o - ok
14:59:52.0281 5992 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
14:59:52.0281 5992 drmkaud - ok
14:59:52.0281 5992 easytether - ok
14:59:52.0328 5992 emupia (7bb488ec082d40645936d9e583f560dc) C:\WINDOWS\system32\drivers\emupia2k.sys
14:59:52.0328 5992 emupia - ok
14:59:52.0359 5992 ERSvc (67dff7bbbd0e80aab7b3cf061448db8a) C:\WINDOWS\System32\ersvc.dll
14:59:52.0359 5992 ERSvc - ok
14:59:52.0375 5992 Eventlog (c6ce6eec82f187615d1002bb3bb50ed4) C:\WINDOWS\system32\services.exe
14:59:52.0406 5992 Eventlog - ok
14:59:52.0421 5992 EventSystem (60d1a6342238378bfb7545c81ee3606c) C:\WINDOWS\System32\es.dll
14:59:52.0421 5992 EventSystem - ok
14:59:52.0437 5992 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
14:59:52.0453 5992 Fastfat - ok
14:59:52.0484 5992 FastUserSwitchingCompatibility (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
14:59:52.0484 5992 FastUserSwitchingCompatibility - ok
14:59:52.0500 5992 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
14:59:52.0500 5992 Fdc - ok
14:59:52.0640 5992 FileZilla Server (cfc890ff6797c6c4e4c4b9ad2258af73) c:\xampp\FileZillaFTP\FileZillaServer.exe
14:59:52.0656 5992 FileZilla Server - ok
14:59:52.0671 5992 Fips (e153ab8a11de5452bcf5ac7652dbf3ed) C:\WINDOWS\system32\drivers\Fips.sys
14:59:52.0671 5992 Fips - ok
14:59:52.0687 5992 fixustor (cdb568db5e8985dcc623da808ac61042) C:\WINDOWS\system32\drivers\fixustor.sys
14:59:52.0687 5992 fixustor - ok
14:59:52.0718 5992 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
14:59:52.0718 5992 Flpydisk - ok
14:59:52.0750 5992 FltMgr (3d234fb6d6ee875eb009864a299bea29) C:\WINDOWS\system32\drivers\fltmgr.sys
14:59:52.0750 5992 FltMgr - ok
14:59:52.0843 5992 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
14:59:52.0843 5992 FontCache3.0.0.0 - ok
14:59:52.0875 5992 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:59:52.0875 5992 Fs_Rec - ok
14:59:52.0875 5992 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:59:52.0875 5992 Ftdisk - ok
14:59:52.0890 5992 gameenum (5f92fd09e5610a5995da7d775eadcd12) C:\WINDOWS\system32\DRIVERS\gameenum.sys
14:59:52.0890 5992 gameenum - ok
14:59:52.0921 5992 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
14:59:52.0921 5992 GEARAspiWDM - ok
14:59:52.0937 5992 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:59:52.0937 5992 Gpc - ok
14:59:53.0046 5992 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
14:59:53.0046 5992 gupdate - ok
14:59:53.0046 5992 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
14:59:53.0046 5992 gupdatem - ok
14:59:53.0109 5992 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
14:59:53.0109 5992 gusvc - ok
14:59:53.0156 5992 ha10kx2k (9bb84b1dff8bce7fdddea746f6819fcf) C:\WINDOWS\system32\drivers\ha10kx2k.sys
14:59:53.0171 5992 ha10kx2k - ok
14:59:53.0187 5992 hap16v2k (1418833169b29780fbdab127623b8767) C:\WINDOWS\system32\drivers\hap16v2k.sys
14:59:53.0187 5992 hap16v2k - ok
14:59:53.0218 5992 hap17v2k (8b3148391dc121d96d513785d588e75b) C:\WINDOWS\system32\drivers\hap17v2k.sys
14:59:53.0218 5992 hap17v2k - ok
14:59:53.0265 5992 helpsvc (8827911a8c37e40c027cbfc88e69d967) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
14:59:53.0281 5992 helpsvc - ok
14:59:53.0296 5992 HidServ (9376e6893e52b368abc6255bf54f0b28) C:\WINDOWS\System32\hidserv.dll
14:59:53.0296 5992 HidServ - ok
14:59:53.0312 5992 HidUsb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:59:53.0328 5992 HidUsb - ok
14:59:53.0328 5992 hpn - ok
14:59:53.0468 5992 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
14:59:53.0484 5992 hpqcxs08 - ok
14:59:53.0500 5992 hpqddsvc (ee4c7a4cf2316701ffde90f404520265) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
14:59:53.0500 5992 hpqddsvc - ok
14:59:53.0531 5992 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
14:59:53.0531 5992 HPZid412 - ok
14:59:53.0562 5992 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
14:59:53.0562 5992 HPZipr12 - ok
14:59:53.0578 5992 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
14:59:53.0578 5992 HPZius12 - ok
14:59:53.0609 5992 HTTP (cb77bb47e67e84deb17ba29632501730) C:\WINDOWS\system32\Drivers\HTTP.sys
14:59:53.0609 5992 HTTP - ok
14:59:53.0640 5992 HTTPFilter (064d8581adf77c25133e7d751d917d83) C:\WINDOWS\System32\w3ssl.dll
14:59:53.0640 5992 HTTPFilter - ok
14:59:53.0656 5992 i2omgmt - ok
14:59:53.0656 5992 i2omp - ok
14:59:53.0687 5992 i8042prt (5502b58eef7486ee6f93f3f164dcb808) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:59:53.0687 5992 i8042prt - ok
14:59:53.0781 5992 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
14:59:53.0781 5992 IDriverT - ok
14:59:53.0937 5992 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:59:53.0953 5992 idsvc - ok
14:59:53.0984 5992 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
14:59:53.0984 5992 Imapi - ok
14:59:54.0000 5992 ImapiService (fa788520bcac0f5d9d5cde5615c0d931) C:\WINDOWS\system32\imapi.exe
14:59:54.0015 5992 ImapiService - ok
14:59:54.0015 5992 ini910u - ok
14:59:54.0031 5992 IntelIde - ok
14:59:54.0046 5992 ip6fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\drivers\ip6fw.sys
14:59:54.0046 5992 ip6fw - ok
14:59:54.0078 5992 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:59:54.0078 5992 IpFilterDriver - ok
14:59:54.0093 5992 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:59:54.0093 5992 IpInIp - ok
14:59:54.0109 5992 IpNat (e2168cbc7098ffe963c6f23f472a3593) C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:59:54.0125 5992 IpNat - ok
14:59:54.0218 5992 iPod Service (ce004777b92dea56fe14ec900d20baa4) C:\Program Files\iPod\bin\iPodService.exe
14:59:54.0234 5992 iPod Service - ok
14:59:54.0250 5992 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:59:54.0265 5992 IPSec - ok
14:59:54.0265 5992 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
14:59:54.0265 5992 IRENUM - ok
14:59:54.0296 5992 isapnp (e504f706ccb699c2596e9a3da1596e87) C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:59:54.0296 5992 isapnp - ok
14:59:54.0406 5992 JavaQuickStarterService (1834c96fb1f9280bcf6ddfa6de8338bf) C:\Program Files\Java\jre6\bin\jqs.exe
14:59:54.0406 5992 JavaQuickStarterService - ok
14:59:54.0437 5992 Kbdclass (ebdee8a2ee5393890a1acee971c4c246) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:59:54.0437 5992 Kbdclass - ok
14:59:54.0453 5992 kbdhid (e182fa8e49e8ee41b4adc53093f3c7e6) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
14:59:54.0453 5992 kbdhid - ok
14:59:54.0484 5992 kmixer (ba5deda4d934e6288c2f66caf58d2562) C:\WINDOWS\system32\drivers\kmixer.sys
14:59:54.0484 5992 kmixer - ok
14:59:54.0484 5992 KSecDD (eb7ffe87fd367ea8fca0506f74a87fbb) C:\WINDOWS\system32\drivers\KSecDD.sys
14:59:54.0484 5992 KSecDD - ok
14:59:54.0531 5992 L8042Kbd (58759156a6918913edd368f995be3e53) C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys
14:59:54.0531 5992 L8042Kbd - ok
14:59:54.0546 5992 L8042mou (973f78482aa2f2760323900b3a501c40) C:\WINDOWS\system32\DRIVERS\L8042mou.Sys
14:59:54.0546 5992 L8042mou - ok
14:59:54.0578 5992 lanmanserver (0cb3af149a0bac0836022ca307c7a0f8) C:\WINDOWS\System32\srvsvc.dll
14:59:54.0578 5992 lanmanserver - ok
14:59:54.0593 5992 lanmanworkstation (3cd291a2c4909088b3d1e98ded73d4b2) C:\WINDOWS\System32\wkssvc.dll
14:59:54.0593 5992 lanmanworkstation - ok
14:59:54.0703 5992 Lavasoft Ad-Aware Service (ea38136981c61c571d52c380daad46ef) C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
14:59:54.0718 5992 Lavasoft Ad-Aware Service - ok
14:59:54.0781 5992 Lavasoft Kernexplorer (6c4a3804510ad8e0f0c07b5be3d44ddb) C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys
14:59:54.0781 5992 Lavasoft Kernexplorer - ok
14:59:54.0890 5992 Lbd (336abe8721cbc3110f1c6426da633417) C:\WINDOWS\system32\DRIVERS\Lbd.sys
14:59:54.0890 5992 Lbd - ok
14:59:54.0906 5992 lbrtfdc - ok
14:59:54.0984 5992 LBTServ (a0f7dc0080e4f97dc97de08b699e231b) C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
14:59:54.0984 5992 LBTServ - ok
14:59:55.0046 5992 LexBceS (2a125981bb23f0a023255d39b7e1c25e) C:\WINDOWS\system32\LEXBCES.EXE
14:59:55.0062 5992 LexBceS - ok
14:59:55.0109 5992 LHidFilt (24e0ddb99aeccf86bb37702611761459) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
14:59:55.0109 5992 LHidFilt - ok
14:59:55.0140 5992 LmHosts (b3eff6d938c572e90a07b3d87a3c7657) C:\WINDOWS\System32\lmhsvc.dll
14:59:55.0140 5992 LmHosts - ok
14:59:55.0171 5992 LMouFilt (d58b330d318361a66a9fe60d7c9b4951) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
14:59:55.0171 5992 LMouFilt - ok
14:59:55.0218 5992 LMouKE (2a3e4db78b20b2cd2c548a48a8e6b1b7) C:\WINDOWS\system32\DRIVERS\LMouKE.Sys
14:59:55.0218 5992 LMouKE - ok
14:59:55.0218 5992 LXARScan - ok
14:59:55.0250 5992 mchInjDrv (9971aa2d16cb558358d6f6f3b5055cba) C:\WINDOWS\system32\Drivers\mchInjDrv.sys
14:59:55.0250 5992 mchInjDrv - ok
14:59:55.0265 5992 MCSTRM - ok
14:59:55.0296 5992 Messenger (95fd808e4ac22aba025a7b3eac0375d2) C:\WINDOWS\System32\msgsvc.dll
14:59:55.0296 5992 Messenger - ok
14:59:55.0406 5992 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
14:59:55.0437 5992 Microsoft Office Groove Audit Service - ok
14:59:55.0468 5992 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
14:59:55.0468 5992 mnmdd - ok
14:59:55.0500 5992 mnmsrvc (f6415361201915b9fe3896b0e4e724ff) C:\WINDOWS\System32\mnmsrvc.exe
14:59:55.0515 5992 mnmsrvc - ok
14:59:55.0531 5992 Modem (6fc6f9d7acc36dca9b914565a3aeda05) C:\WINDOWS\system32\drivers\Modem.sys
14:59:55.0531 5992 Modem - ok
14:59:55.0578 5992 motccgp (f4ea1193a52c8fe4b8a135e210abe546) C:\WINDOWS\system32\DRIVERS\motccgp.sys
14:59:55.0578 5992 motccgp - ok
14:59:55.0593 5992 motccgpfl (b812da6605caf02641312f1f65c75419) C:\WINDOWS\system32\DRIVERS\motccgpfl.sys
14:59:55.0593 5992 motccgpfl - ok
14:59:55.0625 5992 motmodem (69814acd50a9d6d28296050ef6215d46) C:\WINDOWS\system32\DRIVERS\motmodem.sys
14:59:55.0625 5992 motmodem - ok
14:59:55.0671 5992 MotoHelper (3bbc6c2402242401f791548aaebf3d39) C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
14:59:55.0671 5992 MotoHelper - ok
14:59:55.0703 5992 MotoSwitchService (fd8c2cef7ad8b23c6714103d621fac1f) C:\WINDOWS\system32\DRIVERS\motswch.sys
14:59:55.0703 5992 MotoSwitchService - ok
14:59:55.0734 5992 Motousbnet (ddc489d40b49f443787e7ffa75373522) C:\WINDOWS\system32\DRIVERS\Motousbnet.sys
14:59:55.0734 5992 Motousbnet - ok
14:59:55.0750 5992 motusbdevice (2136cca3d1bf7c0248e5366b1a6c24e3) C:\WINDOWS\system32\DRIVERS\motusbdevice.sys
14:59:55.0750 5992 motusbdevice - ok
14:59:55.0781 5992 Mouclass (34e1f0031153e491910e12551400192c) C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:59:55.0781 5992 Mouclass - ok
14:59:56.0343 5992 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:59:56.0343 5992 mouhid - ok
14:59:56.0375 5992 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
14:59:56.0375 5992 MountMgr - ok
14:59:56.0375 5992 mraid35x - ok
14:59:56.0406 5992 MRxDAV (29414447eb5bde2f8397dc965dbb3156) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:59:56.0406 5992 MRxDAV - ok
14:59:56.0437 5992 MRxSmb (6f2d483b97b395544e59749c47963c6a) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:59:56.0453 5992 MRxSmb - ok
14:59:56.0500 5992 MSCamSvc (d98350792a7ce82e7459a7c36481beda) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
14:59:56.0515 5992 MSCamSvc - ok
14:59:56.0531 5992 MSDTC (c7c3d89eb0a6f3dba622ea737fa335b1) C:\WINDOWS\System32\msdtc.exe
14:59:56.0531 5992 MSDTC - ok
14:59:56.0562 5992 MSDV (6dd721dfd2648f3f6d5808b5ba6cb095) C:\WINDOWS\system32\DRIVERS\msdv.sys
14:59:56.0562 5992 MSDV - ok
14:59:56.0578 5992 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
14:59:56.0593 5992 Msfs - ok
14:59:56.0609 5992 MSHUSBVideo (5119ffc2a6b51089cdb0efdc75808c97) C:\WINDOWS\system32\Drivers\nx6000.sys
14:59:56.0609 5992 MSHUSBVideo - ok
14:59:56.0609 5992 MSIServer - ok
14:59:56.0625 5992 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:59:56.0625 5992 MSKSSRV - ok
14:59:56.0656 5992 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:59:56.0656 5992 MSPCLOCK - ok
14:59:56.0656 5992 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
14:59:56.0656 5992 MSPQM - ok
14:59:56.0687 5992 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:59:56.0687 5992 mssmbios - ok
14:59:56.0718 5992 MSTEE (bf13612142995096ab084f2db7f40f77) C:\WINDOWS\system32\drivers\MSTEE.sys
14:59:56.0718 5992 MSTEE - ok
14:59:56.0750 5992 ms_mpu401 (ca3e22598f411199adc2dfee76cd0ae0) C:\WINDOWS\system32\drivers\msmpu401.sys
14:59:56.0750 5992 ms_mpu401 - ok
14:59:56.0765 5992 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
14:59:56.0781 5992 MTsensor - ok
14:59:56.0796 5992 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
14:59:56.0796 5992 Mup - ok
14:59:56.0890 5992 mysql - ok
14:59:56.0921 5992 NABTSFEC (5c8dc6429c43dc6177c1fa5b76290d1a) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
14:59:56.0921 5992 NABTSFEC - ok
14:59:56.0953 5992 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
14:59:56.0953 5992 NDIS - ok
14:59:56.0968 5992 NdisIP (520ce427a8b298f54112857bcf6bde15) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
14:59:56.0968 5992 NdisIP - ok
14:59:57.0000 5992 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:59:57.0000 5992 NdisTapi - ok
14:59:57.0000 5992 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:59:57.0000 5992 Ndisuio - ok
14:59:57.0015 5992 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:59:57.0015 5992 NdisWan - ok
14:59:57.0046 5992 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
14:59:57.0046 5992 NDProxy - ok
14:59:57.0078 5992 Net Driver HPZ12 (a081cb6fb9a12668f233eb5414be3a0e) C:\WINDOWS\system32\HPZinw12.dll
14:59:57.0078 5992 Net Driver HPZ12 - ok
14:59:57.0093 5992 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
14:59:57.0093 5992 NetBIOS - ok
14:59:57.0125 5992 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
14:59:57.0125 5992 NetBT - ok
14:59:57.0156 5992 NetDDE (05afb5ad06462257bea7495283c86d50) C:\WINDOWS\system32\netdde.exe
14:59:57.0156 5992 NetDDE - ok
14:59:57.0156 5992 NetDDEdsdm (05afb5ad06462257bea7495283c86d50) C:\WINDOWS\system32\netdde.exe
14:59:57.0171 5992 NetDDEdsdm - ok
14:59:57.0187 5992 Netlogon (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:57.0187 5992 Netlogon - ok
14:59:57.0218 5992 Netman (36739b39267914ba69ad0610a0299732) C:\WINDOWS\System32\netman.dll
14:59:57.0218 5992 Netman - ok
14:59:57.0328 5992 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:59:57.0390 5992 NetTcpPortSharing - ok
14:59:57.0406 5992 NIC1394 (5c5c53db4fef16cf87b9911c7e8c6fbc) C:\WINDOWS\system32\DRIVERS\nic1394.sys
14:59:57.0406 5992 NIC1394 - ok
14:59:57.0437 5992 Nla (097722f235a1fb698bf9234e01b52637) C:\WINDOWS\System32\mswsock.dll
14:59:57.0453 5992 Nla - ok
14:59:57.0468 5992 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
14:59:57.0468 5992 Npfs - ok
14:59:57.0500 5992 Ntfs (19a811ef5f1ed5c926a028ce107ff1af) C:\WINDOWS\system32\drivers\Ntfs.sys
14:59:57.0500 5992 Ntfs - ok
14:59:57.0531 5992 NtLmSsp (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\System32\lsass.exe
14:59:57.0531 5992 NtLmSsp - ok
14:59:57.0562 5992 NtmsSvc (b62f29c00ac55a761b2e45877d85ea0f) C:\WINDOWS\system32\ntmssvc.dll
14:59:57.0578 5992 NtmsSvc - ok
14:59:57.0593 5992 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
14:59:57.0593 5992 Null - ok
14:59:57.0875 5992 nv (cb0ce8de9f66a297cd86eb98921b8e58) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
14:59:58.0140 5992 nv - ok
14:59:58.0250 5992 nvata (dce353985c988bfb7e84fd942068151f) C:\WINDOWS\system32\DRIVERS\nvata.sys
14:59:58.0250 5992 nvata - ok
14:59:58.0281 5992 NVENETFD (720cc533eecb65553bd86b139ca04433) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
14:59:58.0281 5992 NVENETFD - ok
14:59:58.0312 5992 nvnetbus (5f9f545cc5904dd8765f84ee1d056406) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
14:59:58.0312 5992 nvnetbus - ok
14:59:58.0343 5992 nvsvc (1f31a588cc83a7b76715f9549515c161) C:\WINDOWS\system32\nvsvc32.exe
14:59:58.0359 5992 nvsvc - ok
14:59:58.0390 5992 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:59:58.0390 5992 NwlnkFlt - ok
14:59:58.0406 5992 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:59:58.0406 5992 NwlnkFwd - ok
14:59:58.0515 5992 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:59:58.0531 5992 odserv - ok
14:59:58.0562 5992 ohci1394 (0951db8e5823ea366b0e408d71e1ba2a) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
14:59:58.0562 5992 ohci1394 - ok
14:59:58.0625 5992 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:59:58.0625 5992 ose - ok
14:59:58.0656 5992 ossrv (01e1ab8249f9dde5978c6b4af18eda7c) C:\WINDOWS\system32\drivers\ctoss2k.sys
14:59:58.0656 5992 ossrv - ok
14:59:58.0671 5992 Parport (29744eb4ce659dfe3b4122deb45bc478) C:\WINDOWS\system32\DRIVERS\parport.sys
14:59:58.0687 5992 Parport - ok
14:59:58.0703 5992 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
14:59:58.0703 5992 PartMgr - ok
14:59:58.0718 5992 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
14:59:58.0718 5992 ParVdm - ok
14:59:58.0750 5992 PCI (8086d9979234b603ad5bc2f5d890b234) C:\WINDOWS\system32\DRIVERS\pci.sys
14:59:58.0750 5992 PCI - ok
14:59:58.0750 5992 PCIDump - ok
14:59:58.0796 5992 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
14:59:58.0796 5992 PCIIde - ok
14:59:58.0843 5992 Pcmcia (82a087207decec8456fbe8537947d579) C:\WINDOWS\system32\drivers\Pcmcia.sys
14:59:58.0843 5992 Pcmcia - ok
14:59:58.0859 5992 PCTCore (807ff1dd6e1bdf8e7d2062fca0daecaf) C:\WINDOWS\system32\drivers\PCTCore.sys
14:59:58.0875 5992 PCTCore - ok
14:59:58.0890 5992 pctgntdi (d15669bd3e1cf18f00b46a7949ea541f) C:\WINDOWS\system32\drivers\pctgntdi.sys
14:59:58.0906 5992 pctgntdi - ok
14:59:58.0984 5992 PCToolsSSDMonitorSvc (8ab77eea3f00c94462cffd0e1d0938f9) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
14:59:58.0984 5992 PCToolsSSDMonitorSvc - ok
14:59:59.0015 5992 pctplsg (30c931fcb8df713bcd2fb7ce763a0b47) C:\WINDOWS\system32\drivers\pctplsg.sys
14:59:59.0015 5992 pctplsg - ok
14:59:59.0015 5992 PDCOMP - ok
14:59:59.0031 5992 PDFRAME - ok
14:59:59.0031 5992 PDRELI - ok
14:59:59.0046 5992 PDRFRAME - ok
14:59:59.0046 5992 perc2 - ok
14:59:59.0062 5992 perc2hib - ok
14:59:59.0093 5992 PlugPlay (c6ce6eec82f187615d1002bb3bb50ed4) C:\WINDOWS\system32\services.exe
14:59:59.0093 5992 PlugPlay - ok
14:59:59.0140 5992 Pml Driver HPZ12 (65bc271f337637731d3c71455ae1f476) C:\WINDOWS\system32\HPZipm12.dll
14:59:59.0140 5992 Pml Driver HPZ12 - ok
14:59:59.0171 5992 PnkBstrA (19e83b09ab8ee1d837665da941e2ac44) C:\WINDOWS\system32\PnkBstrA.exe
14:59:59.0171 5992 PnkBstrA - ok
14:59:59.0187 5992 PolicyAgent (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0187 5992 PolicyAgent - ok
14:59:59.0218 5992 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:59:59.0218 5992 PptpMiniport - ok
14:59:59.0234 5992 Processor (0d97d88720a4087ec93af7dbb303b30a) C:\WINDOWS\system32\DRIVERS\processr.sys
14:59:59.0234 5992 Processor - ok
14:59:59.0234 5992 ProtectedStorage (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0250 5992 ProtectedStorage - ok
14:59:59.0250 5992 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
14:59:59.0250 5992 PSched - ok
14:59:59.0281 5992 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:59:59.0281 5992 Ptilink - ok
14:59:59.0281 5992 ql1080 - ok
14:59:59.0281 5992 Ql10wnt - ok
14:59:59.0296 5992 ql12160 - ok
14:59:59.0296 5992 ql1240 - ok
14:59:59.0312 5992 ql1280 - ok
14:59:59.0312 5992 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:59:59.0312 5992 RasAcd - ok
14:59:59.0359 5992 RasAuto (44db7a9bdd2fb58747d123fbf1d35adb) C:\WINDOWS\System32\rasauto.dll
14:59:59.0359 5992 RasAuto - ok
14:59:59.0375 5992 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:59:59.0375 5992 Rasl2tp - ok
14:59:59.0406 5992 RasMan (49b5eed5fb89d39456a2f616ccd8ba5d) C:\WINDOWS\System32\rasmans.dll
14:59:59.0421 5992 RasMan - ok
14:59:59.0437 5992 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:59:59.0453 5992 RasPppoe - ok
14:59:59.0484 5992 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
14:59:59.0484 5992 Raspti - ok
14:59:59.0500 5992 Rdbss (03b965b1ca47f6ef60eb5e51cb50e0af) C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:59:59.0500 5992 Rdbss - ok
14:59:59.0515 5992 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:59:59.0515 5992 RDPCDD - ok
14:59:59.0562 5992 RDPWD (b54cd38a9ebfbf2b3561426e3fe26f62) C:\WINDOWS\system32\drivers\RDPWD.sys
14:59:59.0562 5992 RDPWD - ok
14:59:59.0593 5992 RDSessMgr (729798e0933076b8fcfcd9934698f164) C:\WINDOWS\system32\sessmgr.exe
14:59:59.0609 5992 RDSessMgr - ok
14:59:59.0625 5992 redbook (b31b4588e4086d8d84adbf9845c2402b) C:\WINDOWS\system32\DRIVERS\redbook.sys
14:59:59.0625 5992 redbook - ok
14:59:59.0656 5992 RemoteAccess (3046db917e3cfa040632799dd9b14865) C:\WINDOWS\System32\mprdim.dll
14:59:59.0656 5992 RemoteAccess - ok
14:59:59.0671 5992 RpcLocator (793f04a09b15e7c6c11dbdffaf06c0ab) C:\WINDOWS\System32\locator.exe
14:59:59.0671 5992 RpcLocator - ok
14:59:59.0718 5992 RpcSs (ce94a2bd25e3e9f4d46a7373ff455c6d) C:\WINDOWS\System32\rpcss.dll
14:59:59.0718 5992 RpcSs - ok
14:59:59.0750 5992 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\System32\rsvp.exe
14:59:59.0765 5992 RSVP - ok
14:59:59.0781 5992 SamSs (84885f9b82f4d55c6146ebf6065d75d2) C:\WINDOWS\system32\lsass.exe
14:59:59.0781 5992 SamSs - ok
14:59:59.0812 5992 SCardSvr (25d8de134df108e3dbc8d7d23b1aa58e) C:\WINDOWS\System32\SCardSvr.exe
14:59:59.0812 5992 SCardSvr - ok
14:59:59.0843 5992 Schedule (92360854316611f6cc471612213c3d92) C:\WINDOWS\system32\schedsvc.dll
14:59:59.0843 5992 Schedule - ok
14:59:59.0968 5992 sdAuxService (a1089ac7683826e6c7c9fab9723dd80f) C:\Program Files\Spyware Doctor\pctsAuxs.exe
15:00:00.0000 5992 sdAuxService - ok
15:00:00.0046 5992 sdCoreService (06f95756353653c7d505361117186713) C:\Program Files\Spyware Doctor\pctsSvc.exe
15:00:00.0062 5992 sdCoreService - ok
15:00:00.0140 5992 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
15:00:00.0140 5992 Secdrv - ok
15:00:00.0156 5992 seclogon (b1e0ce09895376871746f36dc5773b4f) C:\WINDOWS\System32\seclogon.dll
15:00:00.0156 5992 seclogon - ok
15:00:00.0156 5992 SENS (dfd9870cf39c791d86c4c209da9fa919) C:\WINDOWS\system32\sens.dll
15:00:00.0171 5992 SENS - ok
15:00:00.0187 5992 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
15:00:00.0187 5992 serenum - ok
15:00:00.0234 5992 Serial (cd9404d115a00d249f70a371b46d5a26) C:\WINDOWS\system32\DRIVERS\serial.sys
15:00:00.0234 5992 Serial - ok
15:00:00.0281 5992 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
15:00:00.0281 5992 Sfloppy - ok
15:00:00.0312 5992 SharedAccess (36cc8c01b5e50163037bef56cb96deff) C:\WINDOWS\System32\ipnathlp.dll
15:00:00.0328 5992 SharedAccess - ok
15:00:00.0343 5992 ShellHWDetection (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
15:00:00.0343 5992 ShellHWDetection - ok
15:00:00.0343 5992 Si3114r5 - ok
15:00:00.0359 5992 SiFilter - ok
15:00:00.0359 5992 Simbad - ok
15:00:00.0421 5992 SkypeUpdate (db0405d9aad62f0762e0876ac142b7e1) C:\Program Files\Skype\Updater\Updater.exe
15:00:00.0421 5992 SkypeUpdate - ok
15:00:00.0453 5992 SLIP (5caeed86821fa2c6139e32e9e05ccdc9) C:\WINDOWS\system32\DRIVERS\SLIP.sys
15:00:00.0453 5992 SLIP - ok
15:00:00.0453 5992 Sparrow - ok
15:00:00.0484 5992 splitter (0ce218578fff5f4f7e4201539c45c78f) C:\WINDOWS\system32\drivers\splitter.sys
15:00:00.0484 5992 splitter - ok
15:00:00.0515 5992 Spooler (da81ec57acd4cdc3d4c51cf3d409af9f) C:\WINDOWS\system32\spoolsv.exe
15:00:00.0515 5992 Spooler - ok
15:00:00.0531 5992 sr (e41b6d037d6cd08461470af04500dc24) C:\WINDOWS\system32\DRIVERS\sr.sys
15:00:00.0531 5992 sr - ok
15:00:00.0546 5992 srservice (92bdf74f12d6cbec43c94d4b7f804838) C:\WINDOWS\system32\srsvc.dll
15:00:00.0562 5992 srservice - ok
15:00:00.0578 5992 Srv (ab9c79ed12d65e800aaad3d72a04792f) C:\WINDOWS\system32\DRIVERS\srv.sys
15:00:00.0593 5992 Srv - ok
15:00:00.0593 5992 SSDPSRV (4b8d61792f7175bed48859cc18ce4e38) C:\WINDOWS\System32\ssdpsrv.dll
15:00:00.0609 5992 SSDPSRV - ok
15:00:00.0625 5992 Steam Client Service - ok
15:00:00.0656 5992 stisvc (b6763f8534ac547cf1af98afdff2edc8) C:\WINDOWS\system32\wiaservc.dll
15:00:00.0656 5992 stisvc - ok
15:00:00.0671 5992 streamip (284c57df5dc7abca656bc2b96a667afb) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
15:00:00.0687 5992 streamip - ok
15:00:00.0703 5992 SWDUMon (7168ea26833301750562bfd0a16a66d3) C:\WINDOWS\system32\DRIVERS\SWDUMon.sys
15:00:00.0703 5992 SWDUMon - ok
15:00:00.0750 5992 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
15:00:00.0750 5992 swenum - ok
15:00:00.0765 5992 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
15:00:00.0765 5992 swmidi - ok
15:00:00.0765 5992 SwPrv - ok
15:00:00.0781 5992 symc810 - ok
15:00:00.0796 5992 symc8xx - ok
15:00:00.0796 5992 sym_hi - ok
15:00:00.0796 5992 sym_u3 - ok
15:00:00.0828 5992 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
15:00:00.0828 5992 sysaudio - ok
15:00:00.0875 5992 SysmonLog (8b54aa346d1b1b113ffaa75501b8b1b2) C:\WINDOWS\system32\smlogsvc.exe
15:00:00.0875 5992 SysmonLog - ok
15:00:00.0906 5992 TapiSrv (fb78839b36025aa286a51289ed28b73e) C:\WINDOWS\System32\tapisrv.dll
15:00:00.0921 5992 TapiSrv - ok
15:00:00.0953 5992 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
15:00:00.0953 5992 Tcpip - ok
15:00:00.0968 5992 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
15:00:00.0968 5992 TDPIPE - ok
15:00:01.0015 5992 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
15:00:01.0015 5992 TDTCP - ok
15:00:01.0031 5992 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
15:00:01.0031 5992 TermDD - ok
15:00:01.0062 5992 TermService (b60c877d16d9c880b952fda04adf16e6) C:\WINDOWS\System32\termsrv.dll
15:00:01.0078 5992 TermService - ok
15:00:01.0109 5992 TfFsMon (d2a1cd31200a6c9d3dfad022503e4836) C:\WINDOWS\system32\drivers\TfFsMon.sys
15:00:01.0109 5992 TfFsMon - ok
15:00:01.0109 5992 TfKbMon - ok
15:00:01.0140 5992 TfNetMon (3e3a544d10b0ac1c4c133048f84390ac) C:\WINDOWS\system32\drivers\TfNetMon.sys
15:00:01.0140 5992 TfNetMon - ok
15:00:01.0140 5992 TfSysMon (706be7328a35c39dbe449e10c1ac6a38) C:\WINDOWS\system32\drivers\TfSysMon.sys
15:00:01.0140 5992 TfSysMon - ok
15:00:01.0187 5992 Themes (6815def9b810aefac107eeaf72da6f82) C:\WINDOWS\System32\shsvcs.dll
15:00:01.0187 5992 Themes - ok
15:00:01.0281 5992 ThreatFire - ok
15:00:01.0296 5992 TosIde - ok
15:00:01.0312 5992 TrkWks (6d9ac544b30f96c57f8206566c1fb6a1) C:\WINDOWS\system32\trkwks.dll
15:00:01.0312 5992 TrkWks - ok
15:00:01.0343 5992 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
15:00:01.0343 5992 Udfs - ok
15:00:01.0343 5992 ultra - ok
15:00:01.0375 5992 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
15:00:01.0375 5992 Update - ok
15:00:01.0437 5992 Updater Service for StartNow Toolbar (7ccf424450af71461ca5aca14fb45b72) C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
15:00:01.0437 5992 Updater Service for StartNow Toolbar - ok
15:00:01.0468 5992 upnphost (aca5d98663d879c6baafcea7e2f1b710) C:\WINDOWS\System32\upnphost.dll
15:00:01.0468 5992 upnphost - ok
15:00:01.0484 5992 UPS (3f5df65b0758675f95a2d43918a740a3) C:\WINDOWS\System32\ups.exe
15:00:01.0484 5992 UPS - ok
15:00:01.0531 5992 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\WINDOWS\system32\Drivers\usbaapl.sys
15:00:01.0531 5992 USBAAPL - ok
15:00:01.0546 5992 usbaudio (45a0d14b26c35497ad93bce7e15c9941) C:\WINDOWS\system32\drivers\usbaudio.sys
15:00:01.0546 5992 usbaudio - ok
15:00:01.0578 5992 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
15:00:01.0593 5992 usbccgp - ok
15:00:01.0593 5992 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
15:00:01.0593 5992 usbehci - ok
15:00:01.0625 5992 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
15:00:01.0625 5992 usbhub - ok
15:00:01.0640 5992 usbohci (bdfe799a8531bad8a5a985821fe78760) C:\WINDOWS\system32\DRIVERS\usbohci.sys
15:00:01.0640 5992 usbohci - ok
15:00:01.0671 5992 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\WINDOWS\system32\DRIVERS\usbprint.sys
15:00:01.0671 5992 usbprint - ok
15:00:01.0671 5992 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\WINDOWS\system32\DRIVERS\usbscan.sys
15:00:01.0671 5992 usbscan - ok
15:00:01.0687 5992 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
15:00:01.0687 5992 USBSTOR - ok
15:00:01.0703 5992 usbvideo (8968ff3973a883c49e8b564200f565b9) C:\WINDOWS\system32\Drivers\usbvideo.sys
15:00:01.0703 5992 usbvideo - ok
15:00:01.0718 5992 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
15:00:01.0718 5992 VgaSave - ok
15:00:01.0734 5992 ViaIde - ok
15:00:01.0750 5992 VolSnap (ee4660083deba849ff6c485d944b379b) C:\WINDOWS\system32\drivers\VolSnap.sys
15:00:01.0750 5992 VolSnap - ok
15:00:01.0796 5992 VSS (3ee00364ae0fd8d604f46cbaf512838a) C:\WINDOWS\System32\vssvc.exe
15:00:01.0796 5992 VSS - ok
15:00:01.0828 5992 W32Time (2b281958f5d0cf99ed626e3ef39d5c8d) C:\WINDOWS\system32\w32time.dll
15:00:01.0843 5992 W32Time - ok
15:00:01.0890 5992 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
15:00:01.0890 5992 Wanarp - ok
15:00:01.0921 5992 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
15:00:01.0921 5992 wceusbsh - ok
15:00:01.0968 5992 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
15:00:01.0968 5992 Wdf01000 - ok
15:00:01.0984 5992 WDICA - ok
15:00:02.0000 5992 wdmaud (efd235ca22b57c81118c1aeb4798f1c1) C:\WINDOWS\system32\drivers\wdmaud.sys
15:00:02.0000 5992 wdmaud - ok
15:00:02.0031 5992 WebClient (265f534ef76832435afbf771ec97176d) C:\WINDOWS\System32\webclnt.dll
15:00:02.0031 5992 WebClient - ok
15:00:02.0093 5992 winmgmt (f399242a80c4066fd155efa4cf96658e) C:\WINDOWS\system32\wbem\WMIsvc.dll
15:00:02.0093 5992 winmgmt - ok
15:00:02.0140 5992 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\WINDOWS\system32\DRIVERS\WinUsb.sys
15:00:02.0156 5992 WinUsb - ok
15:00:02.0265 5992 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:00:02.0281 5992 wlidsvc - ok
15:00:02.0328 5992 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
15:00:02.0343 5992 WmdmPmSN - ok
15:00:02.0406 5992 WmiApSrv (ba8cecc3e813e1f7c441b20393d4f86c) C:\WINDOWS\System32\wbem\wmiapsrv.exe
15:00:02.0406 5992 WmiApSrv - ok
15:00:02.0500 5992 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
15:00:02.0515 5992 WMPNetworkSvc - ok
15:00:02.0546 5992 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
15:00:02.0546 5992 WpdUsb - ok
15:00:02.0687 5992 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:00:02.0703 5992 WPFFontCache_v0400 - ok
15:00:02.0734 5992 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
15:00:02.0734 5992 WS2IFSL - ok
15:00:02.0765 5992 wscsvc (4d59daa66c60858cdf4f67a900f42d4a) C:\WINDOWS\system32\wscsvc.dll
15:00:02.0765 5992 wscsvc - ok
15:00:02.0796 5992 WSTCODEC (d5842484f05e12121c511aa93f6439ec) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
15:00:02.0796 5992 WSTCODEC - ok
15:00:02.0812 5992 wuauserv (13d72740963cba12d9ff76a7f218bcd8) C:\WINDOWS\system32\wuauserv.dll
15:00:02.0843 5992 wuauserv - ok
15:00:02.0875 5992 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
15:00:02.0875 5992 WudfPf - ok
15:00:02.0890 5992 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
15:00:02.0906 5992 WudfRd - ok
15:00:02.0921 5992 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
15:00:02.0937 5992 WudfSvc - ok
15:00:02.0953 5992 WZCSVC (5a91e6feab9f901302fa7ff768c0120f) C:\WINDOWS\System32\wzcsvc.dll
15:00:03.0046 5992 WZCSVC - ok
15:00:03.0078 5992 xmlprov (eef46dab68229a14da3d8e73c99e2959) C:\WINDOWS\System32\xmlprov.dll
15:00:03.0125 5992 xmlprov - ok
15:00:03.0156 5992 yukonwxp (a8d429e2268792638cffc57552c5e736) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
15:00:03.0156 5992 yukonwxp - ok
15:00:03.0187 5992 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
15:00:03.0312 5992 \Device\Harddisk0\DR0 - ok
15:00:03.0328 5992 Boot (0x1200) (3039df2e37eb2dac6179517bdb2985c6) \Device\Harddisk0\DR0\Partition0
15:00:03.0328 5992 \Device\Harddisk0\DR0\Partition0 - ok
15:00:03.0328 5992 ============================================================
15:00:03.0328 5992 Scan finished
15:00:03.0328 5992 ============================================================
15:00:03.0343 3676 Detected object count: 1
15:00:03.0343 3676 Actual detected object count: 1
15:00:41.0515 3676 C:\WINDOWS\system32\DRIVERS\ACPI.sys - copied to quarantine
15:00:41.0531 3676 VerifyFileNameVersionInfo: GetFileVersionInfoSizeW(C:\WINDOWS\system32\drivers\acpi.sys) error 1813
15:00:44.0234 3676 Backup copy found, using it..
15:00:44.0250 3676 C:\WINDOWS\system32\DRIVERS\ACPI.sys - will be cured on reboot
15:00:44.0250 3676 ACPI ( Virus.Win32.Rloader.a ) - User select action: Cure
15:00:53.0703 5260 Deinitialize success

#6 Blade

Blade

    Strong in the Bleepforce


  • Site Admin
  • 12,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US
  • Local time:11:33 AM

Posted 27 April 2012 - 06:00 PM

You posted the TDSSKiller log twice by accident :P

Posted Image

If I am helping you, it has been 48 hours since your last post, and I have yet to reply to your topic, please send me a PM
Become a BleepingComputer fan: Facebook
Follow us on Twitter!
Circle us on Google+





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users