Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Not sure I'm infected with a virus or my hard drive is about to kick the bucket


  • Please log in to reply
11 replies to this topic

#1 Parker1028

Parker1028

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 05 June 2012 - 08:20 PM

I've been getting a lot of error messages lately on my desktop (Dell XPS 420 running Vista). I've run several anti-virus & Malware programs but they have come up clean. Errors include corrupted files, application error and on reboot the file system wasn't working. I ran Mini Toolbox and will post the log here. Any help would be greatly appreciated.

MiniToolBox by Farbar Version: 04-06-2012
Ran by John (administrator) on 05-06-2012 at 21:04:09
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

::1 localhost

127.0.0.1 localhost

========================= IP Configuration: ================================

Broadcom 802.11g Network Adapter = Wireless Network Connection (Connected)
Intel® 82566DC-2 Gigabit Network Connection = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : MY-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom 802.11g Network Adapter
Physical Address. . . . . . . . . : 00-1E-8C-2D-2E-9B
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::50ee:5e87:ef22:e98f%10(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.101(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Monday, June 04, 2012 9:08:54 AM
Lease Expires . . . . . . . . . . : Wednesday, June 06, 2012 6:04:11 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 167779980
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-0E-F1-B6-13-00-1D-09-1B-85-31
DNS Servers . . . . . . . . . . . : 167.206.254.1
167.206.254.2
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Intel® 82566DC-2 Gigabit Network Connection
Physical Address. . . . . . . . . : 00-1D-09-1B-85-31
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 6:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 02-00-54-55-4E-01
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:3c:1525:3f57:fe9a(Preferred)
Link-local IPv6 Address . . . . . : fe80::3c:1525:3f57:fe9a%8(Preferred)
Default Gateway . . . . . . . . . : ::
DHCPv6 IAID . . . . . . . . . . . : 117571668
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-0E-F1-B6-13-00-1D-09-1B-85-31
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Local Area Connection* 7:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : isatap.{9845E986-4553-4D1F-9C4D-3F72D1387320}
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 13:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : isatap.{D4930C78-C7EE-43B2-8A1E-5A89A1650DDC}
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: vdns1.srv.hcvlny.cv.net
Address: 167.206.254.1

DNS request timed out.
timeout was 2 seconds.
Name: google.com
Addresses: 173.194.43.37
173.194.43.46
173.194.43.41
173.194.43.36
173.194.43.34
173.194.43.35
173.194.43.32
173.194.43.33
173.194.43.40
173.194.43.38
173.194.43.39



Pinging google.com [173.194.43.39] with 32 bytes of data:

Reply from 173.194.43.39: bytes=32 time=43ms TTL=55

Reply from 173.194.43.39: bytes=32 time=66ms TTL=55



Ping statistics for 173.194.43.39:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 43ms, Maximum = 66ms, Average = 54ms

Server: vdns1.srv.hcvlny.cv.net
Address: 167.206.254.1

DNS request timed out.
timeout was 2 seconds.
Name: yahoo.com
Addresses: 209.191.122.70
72.30.38.140
98.139.183.24



Pinging yahoo.com [209.191.122.70] with 32 bytes of data:

Reply from 209.191.122.70: bytes=32 time=100ms TTL=52

Reply from 209.191.122.70: bytes=32 time=123ms TTL=51



Ping statistics for 209.191.122.70:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 100ms, Maximum = 123ms, Average = 111ms

Server: vdns1.srv.hcvlny.cv.net
Address: 167.206.254.1

DNS request timed out.
timeout was 2 seconds.
Name: bleepingcomputer.com
Address: 208.43.87.2



Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:

Request timed out.

Request timed out.



Ping statistics for 208.43.87.2:

Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),



Pinging 127.0.0.1 with 32 bytes of data:

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
10 ...00 1e 8c 2d 2e 9b ...... Broadcom 802.11g Network Adapter
9 ...00 1d 09 1b 85 31 ...... Intel® 82566DC-2 Gigabit Network Connection
1 ........................... Software Loopback Interface 1
8 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
15 ...00 00 00 00 00 00 00 e0 isatap.{9845E986-4553-4D1F-9C4D-3F72D1387320}
14 ...00 00 00 00 00 00 00 e0 isatap.{D4930C78-C7EE-43B2-8A1E-5A89A1650DDC}
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.101 30
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.101 286
192.168.1.101 255.255.255.255 On-link 192.168.1.101 286
192.168.1.255 255.255.255.255 On-link 192.168.1.101 286
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.101 286
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.101 286
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
8 18 ::/0 On-link
1 306 ::1/128 On-link
8 18 2001::/32 On-link
8 266 2001:0:4137:9e76:3c:1525:3f57:fe9a/128
On-link
10 286 fe80::/64 On-link
8 266 fe80::/64 On-link
8 266 fe80::3c:1525:3f57:fe9a/128
On-link
10 286 fe80::50ee:5e87:ef22:e98f/128
On-link
1 306 ff00::/8 On-link
8 266 ff00::/8 On-link
10 286 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\system32\NLAapi.dll [48128] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Windows\System32\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 06 C:\Windows\System32\winrnr.dll [19968] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/05/2012 09:03:12 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: 1392 (0x570)The file or directory is corrupted and unreadable.

Error: (06/05/2012 09:03:00 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: 1392 (0x570)The file or directory is corrupted and unreadable.

Error: (06/05/2012 09:02:59 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: 1392 (0x570)The file or directory is corrupted and unreadable.

Error: (06/05/2012 07:38:30 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: 1392 (0x570)The file or directory is corrupted and unreadable.

Error: (06/05/2012 06:02:00 PM) (Source: Application Hang) (User: )
Description: The program firefox.exe version 12.0.0.4493 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: 1614
Start Time: 01cd42a125658b00
Termination Time: 2660

Error: (06/05/2012 06:01:23 PM) (Source: Application Error) (User: )
Description: Windows cannot access the file C:\Windows\Prefetch\AgCx_S2_S-1-5-21-1715022307-3347994223-979988216-1002.snp.db for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Host Process for Windows Services because of this error.

Program: Host Process for Windows Services
File: C:\Windows\Prefetch\AgCx_S2_S-1-5-21-1715022307-3347994223-979988216-1002.snp.db

The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.

Additional Data
Error value: C000009C
Disk type: 3

Error: (06/05/2012 06:01:23 PM) (Source: Application Error) (User: )
Description: Faulting application svchost.exe_SysMain, version 6.0.6001.18000, time stamp 0x47918b89, faulting module ntdll.dll, version 6.0.6002.18541, time stamp 0x4ec3e3d5, exception code 0xc0000006, fault offset 0x0000553e,
process id 0x41c, application start time 0xsvchost.exe_SysMain0.

Error: (06/05/2012 08:38:32 AM) (Source: Application Error) (User: )
Description: Windows cannot access the file C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BE46CA53-801A-4972-8FBB-BBBA25E930CE}\mpengine.dll for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Host Process for Windows Services because of this error.

Program: Host Process for Windows Services
File: C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BE46CA53-801A-4972-8FBB-BBBA25E930CE}\mpengine.dll

The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.

Additional Data
Error value: C000009C
Disk type: 3

Error: (06/05/2012 08:38:32 AM) (Source: Application Error) (User: )
Description: Faulting application svchost.exe_WinDefend, version 6.0.6001.18000, time stamp 0x47918b89, faulting module mpengine.dll, version 1.1.8403.0, time stamp 0x4fa94c1e, exception code 0xc0000006, fault offset 0x0040b0e4,
process id 0x1470, application start time 0xsvchost.exe_WinDefend0.

Error: (06/05/2012 03:20:09 AM) (Source: Application Error) (User: )
Description: Windows cannot access the file C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{47BFB78D-5E37-46F1-8F1B-2B554C3F6C3B}\mpengine.dll for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Host Process for Windows Services because of this error.

Program: Host Process for Windows Services
File: C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{47BFB78D-5E37-46F1-8F1B-2B554C3F6C3B}\mpengine.dll

The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.

Additional Data
Error value: C000009C
Disk type: 3


System errors:
=============
Error: (06/05/2012 09:03:13 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 09:03:12 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 09:03:03 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 09:03:00 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 09:03:00 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 09:02:59 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 08:14:38 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 08:14:35 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 08:14:35 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.

Error: (06/05/2012 08:03:16 PM) (Source: Ntfs) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume OS.


Microsoft Office Sessions:
=========================
Error: (01/25/2012 09:00:07 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 9 seconds with 0 seconds of active time. This session ended with a crash.

Error: (03/18/2010 00:17:00 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 261 seconds with 120 seconds of active time. This session ended with a crash.

Error: (12/11/2009 09:16:25 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6514.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 124 seconds with 120 seconds of active time. This session ended with a crash.

Error: (08/01/2009 02:36:41 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 3 seconds with 0 seconds of active time. This session ended with a crash.

Error: (07/14/2009 11:27:00 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6504.5000, Microsoft Office Version: 12.0.6215.1000. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.


=========================== Installed Programs ============================

Update for Microsoft Office 2007 (KB2508958)
Acrobat.com (Version: 2.0.0)
Acrobat.com (Version: 2.0.0.0)
Ad-Aware (Version: 9.5.0)
Adobe AIR (Version: 3.2.0.2070)
Adobe Anchor Service CS3 (Version: 1.0)
Adobe Asset Services CS3 (Version: 3)
Adobe Bridge CS3 (Version: 2)
Adobe Bridge Start Meeting (Version: 1.0)
Adobe Camera Raw 4.0 (Version: 4.0)
Adobe CMaps (Version: 1.0)
Adobe Common File Installer (Version: 1.00.002)
Adobe Default Language CS3 (Version: 1.0)
Adobe Device Central CS3 (Version: 1.0)
Adobe ExtendScript Toolkit 2 (Version: 2.0.2)
Adobe Flash Player 11 ActiveX (Version: 11.2.202.235)
Adobe Flash Player 11 Plugin (Version: 11.2.202.235)
Adobe Help Viewer CS3 (Version: 1)
Adobe PDF Library Files (Version: 8.0)
Adobe Photoshop 7.0 (Version: 7.0)
Adobe Photoshop Elements 6.0 (Version: 6.0)
Adobe Premiere Elements 4.0 (Version: 4.0)
Adobe Premiere Elements 4.0 Templates (Version: 4.0.0)
Adobe Reader 9.5.1 (Version: 9.5.1)
Adobe Setup (Version: 1.0)
Adobe Shockwave Player 11.5 (Version: 11.5.6.606)
Adobe Soundbooth CS3 (Version: 1)
Adobe Soundbooth CS3 Codecs (Version: 3)
Adobe Soundbooth CS3 Scores (Version: 1)
Adobe Type Support (Version: 1.0)
Adobe Update Manager CS3 (Version: 5.1.0)
Adobe Version Cue CS3 Client (Version: 3)
Adobe XMP DVA Panels CS3 (Version: 1.0)
Adobe XMP Panels CS3 (Version: 1.0)
Advanced Audio FX Engine
Advanced Video FX Engine
AIM 7
AnswerWorks 5.0 English Runtime (Version: 5.0.7)
AOL Mail and AIM Gadget (Version: 1.0.0)
AOL Messaging Toolbar
AOL Registration
AOL Uninstaller (Choose which Products to Remove)
Apple Application Support (Version: 2.1.7)
Apple Mobile Device Support (Version: 5.1.1.4)
Apple Software Update (Version: 2.1.3.127)
Audacity 1.2.6
BitTorrent
Bonjour (Version: 3.0.0.10)
Browser Address Error Redirector (Version: 1.00.0000)
Coupon Printer for Windows (Version: 4.0)
Creative Audio Control Panel (Version: 2.00)
Creative MediaSource 5 (Version: 5.00)
CueM3UWin (Version: 1.0.1.7)
CuteFTP 8 Home (Version: 8.3.2)
D3DX10 (Version: 15.4.2368.0902)
Dell DataSafe Online (Version: 1.0.15)
Dell Driver Download Manager (Version: 2.1.0.0)
Dell Getting Started Guide (Version: 1.00.0000)
Dell Support Center (Support Software) (Version: 2.2.09085)
DELL Webcam Center
DELL Webcam Manager
Download Updater (AOL LLC)
DQ Tycoon (Version: 1.0)
Dropbox (Version: 1.2.52)
EPSON Easy Photo Print (Version: 1.5.1.0)
EPSON NX200 User's Guide
EPSON Scan
EPSON Stylus NX200 Series Printer Uninstall
ESET Online Scanner v3
Firebird 2.1.3.18185 (Win32) (Version: 2.1.3.18185)
Google Chrome Frame (Version: 19.0.1084.52)
Google Desktop (Version: 5.9.1005.12335)
Google Earth (Version: 6.1.0.5001)
Google Gears (Version: 0.5.3600)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.3.2710.138)
Google Update Helper (Version: 1.3.21.111)
HijackThis 2.0.2 (Version: 2.0.2)
iCloud (Version: 1.1.0.40)
Intel® PRO Network Connections 12.1.12.4 (Version: )
Intel® Viiv™ Software (Version: 1.7.512.0)
iTunes (Version: 10.6.1.7)
Java Auto Updater (Version: 2.1.6.0)
Java™ 7 Update 3 (Version: 7.0.30)
JavaFX 2.0.3 (Version: 2.0.3)
Junk Mail filter update (Version: 15.4.3502.0922)
LAME v3.98.2 for Audacity
Live! Cam Avatar Creator (Version: 4.5.3007.1)
Live! Cam Avatar v1.0 (Version: 1.0)
Malwarebytes Anti-Malware version 1.61.0.1400 (Version: 1.61.0.1400)
McAfee SecurityCenter
McAfee Virtual Technician (Version: 5.5.2.0)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook Connector (Version: 14.0.5118.5000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Rise Of Nations
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs (Version: 12.0.4518.1014)
Microsoft Search Enhancement Pack (Version: 3.0.133.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft VC9 runtime libraries (Version: 1.0.0)
Microsoft VC9 runtime libraries (Version: 2.0.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
MobileMe Control Panel (Version: 3.1.8.0)
Monitor Integrated Webcam Driver (1.00.13.0608)
Move Networks Media Player for Internet Explorer
Mozilla Firefox 12.0 (x86 en-US) (Version: 12.0)
Mozilla Maintenance Service (Version: 12.0)
MSI to redistribute MS VS2005 CRT libraries (Version: 8.0.50727.42)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
MSXML4 Parser (Version: 1.0.0)
Music, Photos & Videos Launcher (Version: 1.00.0000)
Nike+ Utility (Version: 1.00.0000)
NVIDIA Display Control Panel (Version: 6.14.11.9745)
NVIDIA Drivers (Version: 1.10.59.37)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0)
OpenAL
PeaZip 2.6
Play MPE Player (Version: 3.5.89.189)
POOL (Version: 2.2)
POOL (Version: Version 2.2)
Product Documentation Launcher (Version: 1.00.0000)
PVSonyDll (Version: 1.00.0001)
QuickBooks Pro 2008 (Version: 18.0.4006.606)
Quicken 2009 (Version: 18.1.1.29)
QuickTime (Version: 7.72.80.56)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealPlayer
RealUpgrade 1.1 (Version: 1.1.0)
Roxio Activation Module (Version: 1.0)
Roxio Creator Audio (Version: 3.5.0)
Roxio Creator BDAV Plugin (Version: 3.5.0)
Roxio Creator Copy (Version: 3.5.0)
Roxio Creator Data (Version: 3.5.0)
Roxio Creator Premier (Version: 3.5.0)
Roxio Creator Tools (Version: 3.5.0)
Roxio EasyArchive (Version: 3.5.0)
Roxio Express Labeler (Version: 3.2)
Roxio MyDVD Premier (Version: 9.1.573)
Roxio Update Manager (Version: 6.0.0)
SAM Broadcaster (remove only)
Segoe UI (Version: 15.4.2271.0615)
Sonic CinePlayer Decoder Pack (Version: 4.2.0)
Sound Blaster X-Fi (Version: 1.0)
Spelling Dictionaries Support For Adobe Reader 8 (Version: 8.0.0)
Spotify (Version: 0.5.2)
Spotify (Version: 0.8.3.222.g317ab79d)
Start and Run a Coffee Bar (Version: 07-1)
StationPlaylist Creator v4.23 (Version: 4.23)
Studio365-Live (Version: 2.6.9)
Studio365 1.3 (Version: Studio365-Win 1.21)
SupportSoft Assisted Service (Version: 15)
Tax Forms Helper 2009 9.0
Tax Forms Helper 2010 9.5
Tax Forms Helper 2011 10.0
TomTom HOME 2.8.3.2499 (Version: 2.8.3.2499)
TomTom HOME Visual Studio Merge Modules (Version: 1.0.2)
TreeSize Free V2.4 (Version: 2.4)
TweetDeck (Version: 0.38.2)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2598290) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
User's Guides
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
WD SmartWare (Version: 1.4.5.5)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3538.0513)
Windows Live Family Safety (Version: 15.4.3538.0513)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8089.726)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Windows Mobile Device Center (Version: 6.1.6965.0)
Windows Mobile Device Center Driver Update (Version: 6.1.6965.0)
Wise Disk Cleaner 5.93
Wise Registry Cleaner 5.9.4 (Version: 5.9.4)
XPS MiniView Gadget (Version: 1.00.0000)
Xvid 1.2.2 final uninstall (Version: 1.2)

========================= Memory info: ===================================

Percentage of memory in use: 57%
Total physical RAM: 3069.22 MB
Available physical RAM: 1297.96 MB
Total Pagefile: 6359.47 MB
Available Pagefile: 4004.33 MB
Total Virtual: 2047.88 MB
Available Virtual: 1960.06 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:283.04 GB) (Free:97.51 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:15 GB) (Free:4.56 GB) NTFS
4 Drive f: (RESOURCE_CD) (CDROM) (Total:0.55 GB) (Free:0 GB) CDFS

========================= Users: ========================================

User accounts for \\MY-PC

Administrator ASPNET Ellen
Guest iTunes IUSR_NMPR
John


**** End of log ****

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:06:46 AM

Posted 05 June 2012 - 08:46 PM

Hello, the ESET online scan was also clean?

Please download TDSSKiller.zip and and extract it.
  • Run TDSSKiller.exe.
  • Click on Change Parameters
  • Put a check in the box of Detect TDLFS file system
  • Click Start scan.
  • When it is finished the utility outputs a list of detected objects with description.
    The utility automatically selects an action (Cure or Delete) for malicious objects.
    The utility prompts the user to select an action to apply to suspicious objects (Skip, by default). Let the options as it is and click Continue
  • Let reboot if needed and tell me if the tool needed a reboot.
  • Click on Report and post the contents of the text file that will open.

    Note: By default, the utility outputs the log into system disk (it is usually the disk with installed operating system, C:\) root folder. The Log have a name like: TDSSKiller.Version_Date_Time_log.txt.[/lis



    Please download aswMBR ( 511KB ) to your desktop.
    [list]
  • Double click the aswMBR.exe icon to run it
  • Click the Scan button to start the scan
  • On completion of the scan, click the save log button, save it to your desktop and post it in your next reply.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 05 June 2012 - 09:08 PM

Yes, the ESET was clean. Here is the TDSSKiller log. Downloading aswMBR now.

21:58:42.0539 8012 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
21:58:43.0520 8012 ============================================================
21:58:43.0520 8012 Current date / time: 2012/06/05 21:58:43.0520
21:58:43.0520 8012 SystemInfo:
21:58:43.0520 8012
21:58:43.0520 8012 OS Version: 6.0.6002 ServicePack: 2.0
21:58:43.0520 8012 Product type: Workstation
21:58:43.0520 8012 ComputerName: MY-PC
21:58:43.0520 8012 UserName: John
21:58:43.0520 8012 Windows directory: C:\Windows
21:58:43.0520 8012 System windows directory: C:\Windows
21:58:43.0520 8012 Processor architecture: Intel x86
21:58:43.0520 8012 Number of processors: 4
21:58:43.0520 8012 Page size: 0x1000
21:58:43.0520 8012 Boot type: Normal boot
21:58:43.0520 8012 ============================================================
21:58:48.0222 8012 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
21:58:48.0224 8012 ============================================================
21:58:48.0224 8012 \Device\Harddisk0\DR0:
21:58:48.0224 8012 MBR partitions:
21:58:48.0224 8012 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1B800, BlocksNum 0x1E00000
21:58:48.0224 8012 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1E1B800, BlocksNum 0x23612800
21:58:48.0224 8012 ============================================================
21:58:48.0343 8012 C: <-> \Device\Harddisk0\DR0\Partition1
21:58:48.0370 8012 D: <-> \Device\Harddisk0\DR0\Partition0
21:58:48.0397 8012 ============================================================
21:58:48.0397 8012 Initialize success
21:58:48.0397 8012 ============================================================
21:59:38.0232 5292 ============================================================
21:59:42.0762 5292 Scan started
21:59:42.0762 5292 Mode: Manual; TDLFS;
21:59:42.0762 5292 ============================================================
22:00:02.0861 5292 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
22:00:03.0062 5292 ACPI - ok
22:00:04.0105 5292 AdobeActiveFileMonitor6.0 (e8fe4fce23d2809bd88bcc1d0f8408ce) C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
22:00:04.0129 5292 AdobeActiveFileMonitor6.0 - ok
22:00:04.0501 5292 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:00:04.0503 5292 AdobeFlashPlayerUpdateSvc - ok
22:00:04.0586 5292 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
22:00:04.0612 5292 adp94xx - ok
22:00:04.0638 5292 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
22:00:04.0651 5292 adpahci - ok
22:00:04.0669 5292 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
22:00:04.0676 5292 adpu160m - ok
22:00:04.0698 5292 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
22:00:04.0705 5292 adpu320 - ok
22:00:04.0726 5292 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
22:00:04.0727 5292 AeLookupSvc - ok
22:00:04.0898 5292 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
22:00:04.0919 5292 AFD - ok
22:00:05.0005 5292 agp440 (8b10ce1c1f9f1d47e4deb1a547a00cd4) C:\Windows\system32\drivers\agp440.sys
22:00:05.0020 5292 agp440 - ok
22:00:05.0040 5292 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
22:00:05.0042 5292 aic78xx - ok
22:00:05.0764 5292 AlertService (cf86f64a1aea27e5fa97e697bf70346d) C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
22:00:05.0767 5292 AlertService - ok
22:00:05.0807 5292 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
22:00:05.0808 5292 ALG - ok
22:00:05.0833 5292 aliide (dc67a153fdb8105b25d05334b5e1d8e2) C:\Windows\system32\drivers\aliide.sys
22:00:05.0835 5292 aliide - ok
22:00:05.0856 5292 amdagp (848f27e5b27c1c253f6cefdc1a5d8f21) C:\Windows\system32\drivers\amdagp.sys
22:00:05.0857 5292 amdagp - ok
22:00:05.0876 5292 amdide (835c4c3355088298a5ebd818fa31430f) C:\Windows\system32\drivers\amdide.sys
22:00:05.0877 5292 amdide - ok
22:00:05.0891 5292 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
22:00:05.0893 5292 AmdK7 - ok
22:00:05.0911 5292 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
22:00:05.0913 5292 AmdK8 - ok
22:00:06.0094 5292 AOL ACS (85180cf88c5ebad73b452a43a004ca51) C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
22:00:06.0121 5292 AOL ACS - ok
22:00:06.0150 5292 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
22:00:06.0151 5292 Appinfo - ok
22:00:06.0434 5292 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:00:06.0455 5292 Apple Mobile Device - ok
22:00:06.0475 5292 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
22:00:06.0477 5292 arc - ok
22:00:06.0520 5292 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
22:00:06.0521 5292 arcsas - ok
22:00:06.0638 5292 aspnet_state (40c145f12ff461a0220303bda134f598) C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
22:00:06.0639 5292 aspnet_state - ok
22:00:06.0749 5292 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
22:00:06.0763 5292 AsyncMac - ok
22:00:06.0838 5292 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
22:00:06.0838 5292 atapi - ok
22:00:07.0908 5292 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
22:00:07.0911 5292 AudioEndpointBuilder - ok
22:00:07.0915 5292 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
22:00:07.0918 5292 Audiosrv - ok
22:00:07.0987 5292 BCM43XV (cf6a67c90951e3e763d2135dede44b85) C:\Windows\system32\DRIVERS\bcmwl6.sys
22:00:07.0998 5292 BCM43XV - ok
22:00:08.0054 5292 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
22:00:08.0071 5292 Beep - ok
22:00:08.0113 5292 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
22:00:08.0126 5292 BFE - ok
22:00:09.0895 5292 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\System32\qmgr.dll
22:00:09.0920 5292 BITS - ok
22:00:09.0923 5292 blbdrive - ok
22:00:11.0295 5292 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
22:00:11.0308 5292 Bonjour Service - ok
22:00:11.0683 5292 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
22:00:11.0685 5292 bowser - ok
22:00:11.0704 5292 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
22:00:11.0705 5292 BrFiltLo - ok
22:00:11.0715 5292 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
22:00:11.0716 5292 BrFiltUp - ok
22:00:15.0575 5292 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
22:00:15.0628 5292 Browser - ok
22:00:17.0485 5292 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
22:00:17.0487 5292 Brserid - ok
22:00:17.0516 5292 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
22:00:17.0517 5292 BrSerWdm - ok
22:00:17.0530 5292 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
22:00:17.0531 5292 BrUsbMdm - ok
22:00:17.0540 5292 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
22:00:17.0541 5292 BrUsbSer - ok
22:00:17.0556 5292 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
22:00:17.0557 5292 BTHMODEM - ok
22:00:17.0905 5292 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\Windows\System32\bthserv.dll
22:00:17.0939 5292 BthServ - ok
22:00:17.0994 5292 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
22:00:17.0995 5292 cdfs - ok
22:00:18.0032 5292 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
22:00:18.0034 5292 cdrom - ok
22:00:19.0083 5292 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
22:00:19.0091 5292 CertPropSvc - ok
22:00:19.0105 5292 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
22:00:19.0106 5292 circlass - ok
22:00:19.0130 5292 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
22:00:19.0142 5292 CLFS - ok
22:00:20.0109 5292 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:00:20.0111 5292 clr_optimization_v2.0.50727_32 - ok
22:00:21.0902 5292 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:00:21.0940 5292 clr_optimization_v4.0.30319_32 - ok
22:00:21.0965 5292 cmdide (e79cbb2195e965f6e3256e2c1b23fd1c) C:\Windows\system32\drivers\cmdide.sys
22:00:21.0966 5292 cmdide - ok
22:00:21.0984 5292 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
22:00:21.0985 5292 Compbatt - ok
22:00:21.0988 5292 COMSysApp - ok
22:00:22.0003 5292 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
22:00:22.0004 5292 crcdisk - ok
22:00:22.0031 5292 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
22:00:22.0032 5292 Crusoe - ok
22:00:22.0941 5292 CryptSvc (fb27772beaf8e1d28ccd825c09da939b) C:\Windows\system32\cryptsvc.dll
22:00:22.0948 5292 CryptSvc - ok
22:00:23.0509 5292 CT20XUT (51a4c2c6d3ac2c275a1b93c34d4e87c6) C:\Windows\system32\drivers\CT20XUT.SYS
22:00:23.0570 5292 CT20XUT - ok
22:00:23.0573 5292 CT20XUT.DLL - ok
22:00:23.0579 5292 CT20XUT.SYS (51a4c2c6d3ac2c275a1b93c34d4e87c6) C:\Windows\System32\drivers\CT20XUT.SYS
22:00:23.0580 5292 CT20XUT.SYS - ok
22:00:23.0933 5292 ctac32k (7ec5c5f0b0c14ec186074fd095f0f370) C:\Windows\system32\drivers\ctac32k.sys
22:00:24.0126 5292 ctac32k - ok
22:00:30.0110 5292 ctaud2k (8dc02de5321499e6c1fe87e43d86a73b) C:\Windows\system32\drivers\ctaud2k.sys
22:00:30.0186 5292 ctaud2k - ok
22:00:33.0315 5292 CTEXFIFX (d4c74f7228a2162171dee3087cc22fbf) C:\Windows\system32\drivers\CTEXFIFX.SYS
22:00:33.0493 5292 CTEXFIFX - ok
22:00:34.0227 5292 CTEXFIFX.DLL - ok
22:00:35.0889 5292 CTEXFIFX.SYS (d4c74f7228a2162171dee3087cc22fbf) C:\Windows\System32\drivers\CTEXFIFX.SYS
22:00:35.0896 5292 CTEXFIFX.SYS - ok
22:00:38.0041 5292 CTHWIUT (1d5bf4f26b27c5eba08f4d0fe96bff12) C:\Windows\system32\drivers\CTHWIUT.SYS
22:00:38.0043 5292 CTHWIUT - ok
22:00:38.0046 5292 CTHWIUT.DLL - ok
22:00:38.0051 5292 CTHWIUT.SYS (1d5bf4f26b27c5eba08f4d0fe96bff12) C:\Windows\System32\drivers\CTHWIUT.SYS
22:00:38.0052 5292 CTHWIUT.SYS - ok
22:00:39.0477 5292 ctprxy2k (920b45bc9191f4e880ea2b75524d96ab) C:\Windows\system32\drivers\ctprxy2k.sys
22:00:39.0524 5292 ctprxy2k - ok
22:00:40.0049 5292 ctsfm2k (eac70ef0b40df7b8178bf5e80b5f4277) C:\Windows\system32\drivers\ctsfm2k.sys
22:00:40.0055 5292 ctsfm2k - ok
22:00:40.0566 5292 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
22:00:40.0585 5292 DcomLaunch - ok
22:00:40.0667 5292 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
22:00:40.0879 5292 DfsC - ok
22:00:44.0714 5292 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
22:00:44.0769 5292 DFSR - ok
22:00:44.0910 5292 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
22:00:44.0912 5292 Dhcp - ok
22:00:45.0560 5292 DHTRACE (2c56880d37785cf2c07b0309cebb0a7d) C:\Program Files\Common Files\Intel\IntelDH\bin\DHTraceController.exe
22:00:45.0561 5292 DHTRACE - ok
22:00:45.0824 5292 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
22:00:45.0850 5292 disk - ok
22:00:46.0307 5292 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
22:00:46.0325 5292 Dnscache - ok
22:00:46.0352 5292 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
22:00:46.0358 5292 dot3svc - ok
22:00:46.0402 5292 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
22:00:46.0410 5292 DPS - ok
22:00:46.0877 5292 DQLWinService (28b42d80ce943a98c6bcea67263cbdff) C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
22:00:46.0902 5292 DQLWinService - ok
22:00:46.0956 5292 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
22:00:46.0958 5292 drmkaud - ok
22:00:47.0118 5292 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
22:00:47.0137 5292 DXGKrnl - ok
22:00:47.0169 5292 e1express (04944f4fc4f0477185f5d26ae0ddb90e) C:\Windows\system32\DRIVERS\e1e6032.sys
22:00:47.0182 5292 e1express - ok
22:00:47.0211 5292 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
22:00:47.0218 5292 E1G60 - ok
22:00:47.0268 5292 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
22:00:47.0270 5292 EapHost - ok
22:00:47.0314 5292 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
22:00:47.0330 5292 Ecache - ok
22:00:47.0423 5292 ehRecvr (9be3744d295a7701eb425332014f0797) C:\Windows\ehome\ehRecvr.exe
22:00:47.0436 5292 ehRecvr - ok
22:00:47.0472 5292 ehSched (ad1870c8e5d6dd340c829e6074bf3c3f) C:\Windows\ehome\ehsched.exe
22:00:47.0479 5292 ehSched - ok
22:00:47.0500 5292 ehstart (c27c4ee8926e74aa72efcab24c5242c3) C:\Windows\ehome\ehstart.dll
22:00:47.0501 5292 ehstart - ok
22:00:47.0529 5292 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
22:00:47.0542 5292 elxstor - ok
22:00:47.0592 5292 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
22:00:47.0610 5292 EMDMgmt - ok
22:00:47.0646 5292 emupia (8b41f776beafda612cdf8ffa997b201e) C:\Windows\system32\drivers\emupia2k.sys
22:00:47.0654 5292 emupia - ok
22:00:47.0890 5292 EPSON_EB_RPCV4_01 (ec6a73cd8413f68655e5e0b99c415a21) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE
22:00:47.0898 5292 EPSON_EB_RPCV4_01 - ok
22:00:47.0913 5292 EPSON_PM_RPCV4_01 (8fe6ab59cab8f2c038fea9522a5eeba7) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
22:00:47.0920 5292 EPSON_PM_RPCV4_01 - ok
22:00:47.0994 5292 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
22:00:47.0996 5292 EventSystem - ok
22:00:48.0036 5292 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
22:00:48.0066 5292 exfat - ok
22:00:48.0098 5292 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
22:00:48.0114 5292 fastfat - ok
22:00:48.0141 5292 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
22:00:48.0142 5292 fdc - ok
22:00:48.0178 5292 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
22:00:48.0187 5292 fdPHost - ok
22:00:48.0211 5292 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
22:00:48.0213 5292 FDResPub - ok
22:00:48.0445 5292 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
22:00:48.0471 5292 FileInfo - ok
22:00:48.0588 5292 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
22:00:48.0604 5292 Filetrace - ok22:00:48.0982 5292 FirebirdGuardianDefaultInstance (b9963c336a2bf054520dc09ce7c81476) C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
22:00:49.0001 5292 FirebirdGuardianDefaultInstance - ok
22:00:54.0565 5292 FirebirdServerDefaultInstance (db8ee43c90536a07d4ba481079ae214c) C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
22:00:54.0629 5292 FirebirdServerDefaultInstance - ok
22:00:55.0588 5292 FLEXnet Licensing Service (227846995afeefa70d328bf5334a86a5) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
22:00:55.0606 5292 FLEXnet Licensing Service - ok
22:01:00.0744 5292 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
22:01:00.0770 5292 flpydisk - ok
22:01:05.0468 5292 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
22:01:08.0291 5292 FltMgr - ok
22:01:09.0064 5292 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
22:01:09.0145 5292 FontCache - ok
22:01:09.0542 5292 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:01:09.0560 5292 FontCache3.0.0.0 - ok
22:01:09.0590 5292 fssfltr (d909075fa72c090f27aa926c32cb4612) C:\Windows\system32\DRIVERS\fssfltr.sys
22:01:09.0591 5292 fssfltr - ok
22:01:10.0921 5292 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
22:01:10.0966 5292 fsssvc - ok
22:01:12.0778 5292 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
22:01:12.0790 5292 Fs_Rec - ok
22:01:12.0816 5292 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
22:01:12.0818 5292 gagp30kx - ok
22:01:12.0862 5292 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\Drivers\GEARAspiWDM.sys
22:01:12.0863 5292 GEARAspiWDM - ok
22:01:13.0080 5292 GoogleDesktopManager-051210-111108 (9f5f2f0fb0a7f5aa9f16b9a7b6dad89f) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
22:01:13.0091 5292 GoogleDesktopManager-051210-111108 - ok
22:01:13.0920 5292 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
22:01:13.0941 5292 gpsvc - ok
22:01:14.0453 5292 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
22:01:14.0454 5292 gupdate - ok
22:01:14.0469 5292 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
22:01:14.0470 5292 gupdatem - ok
22:01:14.0537 5292 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:01:14.0538 5292 gusvc - ok
22:01:14.0924 5292 ha20x22k (c663d5a459ee96b51d3ff49e70abd143) C:\Windows\system32\drivers\ha20x22k.sys
22:01:14.0983 5292 ha20x22k - ok
22:01:17.0947 5292 ha20x2k (eda33b1d4721470bb924f082cf66d06a) C:\Windows\system32\drivers\ha20x2k.sys
22:01:17.0972 5292 ha20x2k - ok
22:01:18.0114 5292 HDAudBus (0db613a7e427b5663563677796fd5258) C:\Windows\system32\drivers\hdaudbus.sys
22:01:18.0126 5292 HDAudBus - ok
22:01:18.0140 5292 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
22:01:18.0142 5292 HidBth - ok
22:01:18.0158 5292 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
22:01:18.0160 5292 HidIr - ok
22:01:18.0277 5292 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\system32\hidserv.dll
22:01:18.0299 5292 hidserv - ok
22:01:18.0360 5292 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
22:01:18.0362 5292 HidUsb - ok
22:01:18.0555 5292 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
22:01:18.0600 5292 hkmsvc - ok
22:01:18.0724 5292 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
22:01:18.0725 5292 HpCISSs - ok
22:01:18.0886 5292 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
22:01:18.0899 5292 HTTP - ok
22:01:18.0912 5292 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
22:01:18.0914 5292 i2omp - ok
22:01:18.0954 5292 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
22:01:18.0955 5292 i8042prt - ok
22:01:21.0352 5292 iaStor (bdc361489a7f22e568060fa6fb3c960e) C:\Windows\system32\drivers\iastor.sys
22:01:21.0366 5292 iaStor - ok
22:01:21.0400 5292 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
22:01:21.0414 5292 iaStorV - ok
22:01:30.0403 5292 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
22:01:30.0472 5292 IDriverT - ok
22:01:30.0927 5292 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:01:30.0966 5292 idsvc - ok
22:01:31.0888 5292 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
22:01:32.0104 5292 iirsp - ok
22:01:32.0183 5292 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
22:01:32.0193 5292 IKEEXT - ok
22:01:32.0233 5292 IntelDH (7f440f8ced849fcdfa85bb3521b4f048) C:\Windows\system32\Drivers\IntelDH.sys
22:01:32.0234 5292 IntelDH - ok
22:01:32.0248 5292 intelide (0084046c084d68e494f8cf36bcf08186) C:\Windows\system32\DRIVERS\intelide.sys
22:01:32.0249 5292 intelide - ok
22:01:33.0733 5292 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
22:01:33.0746 5292 intelppm - ok
22:01:34.0081 5292 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
22:01:34.0083 5292 IPBusEnum - ok
22:01:34.0092 5292 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:01:34.0093 5292 IpFilterDriver - ok
22:01:34.0656 5292 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
22:01:34.0672 5292 iphlpsvc - ok
22:01:34.0675 5292 IpInIp - ok
22:01:34.0699 5292 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
22:01:34.0701 5292 IPMIDRV - ok
22:01:34.0759 5292 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
22:01:34.0766 5292 IPNAT - ok
22:01:35.0071 5292 iPod Service (57edb35ea2feca88f8b17c0c095c9a56) C:\Program Files\iPod\bin\iPodService.exe
22:01:35.0095 5292 iPod Service - ok
22:01:35.0137 5292 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
22:01:35.0138 5292 IRENUM - ok
22:01:35.0163 5292 isapnp (2f8ece2699e7e2070545e9b0960a8ed2) C:\Windows\system32\drivers\isapnp.sys
22:01:35.0164 5292 isapnp - ok
22:01:41.0934 5292 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
22:01:41.0942 5292 iScsiPrt - ok
22:01:52.0854 5292 ISSM (50adb2883f8874aa6632a67cd410f27f) C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
22:01:55.0624 5292 ISSM - ok
22:01:55.0669 5292 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
22:01:55.0670 5292 iteatapi - ok
22:01:55.0694 5292 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
22:01:55.0696 5292 iteraid - ok
22:01:55.0699 5292 ivusb - ok
22:01:55.0754 5292 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
22:01:55.0755 5292 kbdclass - ok
22:01:55.0890 5292 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
22:01:55.0907 5292 kbdhid - ok
22:01:55.0969 5292 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
22:01:55.0973 5292 KeyIso - ok
22:01:56.0791 5292 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
22:01:56.0891 5292 KSecDD - ok
22:01:57.0071 5292 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
22:01:57.0130 5292 KtmRm - ok
22:01:57.0680 5292 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\system32\srvsvc.dll
22:01:57.0684 5292 LanmanServer - ok
22:01:58.0261 5292 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
22:01:58.0289 5292 LanmanWorkstation - ok
22:01:59.0246 5292 Lavasoft Ad-Aware Service (4d99fca201b72e0f2ca996e357baa170) C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
22:01:59.0297 5292 Lavasoft Ad-Aware Service - ok
22:01:59.0331 5292 Lavasoft Kernexplorer (6c4a3804510ad8e0f0c07b5be3d44ddb) C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys
22:01:59.0332 5292 Lavasoft Kernexplorer - ok
22:02:00.0404 5292 Lbd (336abe8721cbc3110f1c6426da633417) C:\Windows\system32\DRIVERS\Lbd.sys
22:02:00.0411 5292 Lbd - ok
22:02:00.0471 5292 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
22:02:00.0479 5292 lltdio - ok
22:02:00.0515 5292 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
22:02:00.0528 5292 lltdsvc - ok
22:02:00.0552 5292 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
22:02:00.0554 5292 lmhosts - ok
22:02:00.0583 5292 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
22:02:00.0585 5292 LSI_FC - ok
22:02:00.0599 5292 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
22:02:00.0600 5292 LSI_SAS - ok
22:02:00.0616 5292 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
22:02:00.0618 5292 LSI_SCSI - ok
22:02:00.0698 5292 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
22:02:00.0718 5292 luafv - ok
22:02:01.0252 5292 M1 Server (9a3741d5412ab81b86992915e3ecd3e9) C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
22:02:01.0269 5292 M1 Server - ok
22:02:01.0325 5292 MCLServiceATL (6ad27b01272f966c9611a398961fcf15) C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
22:02:01.0332 5292 MCLServiceATL - ok
22:02:01.0668 5292 mcmscsvc (5f2e238661f79cc2d0347f0265bf0063) C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
22:02:01.0672 5292 mcmscsvc - ok
22:02:02.0932 5292 McNASvc (aa490bfb95998686af46fdcd8093443b) c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
22:02:02.0982 5292 McNASvc - ok
22:02:03.0571 5292 McODS (eeefcd3e7d5c4c21dd18e7b6ec938124) C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
22:02:03.0588 5292 McODS - ok
22:02:03.0876 5292 McProxy (5a8d1acd2070b8261236d5484ae63721) c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
22:02:03.0889 5292 McProxy - ok
22:02:03.0932 5292 McShield (a8ce782507f61e70aec7179fac254ef2) C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
22:02:03.0938 5292 McShield - ok
22:02:04.0120 5292 McSysmon (4d87bd3151c0cce515699e3a3d2476f8) C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
22:02:04.0137 5292 McSysmon - ok
22:02:04.0387 5292 Mcx2Svc (aef9babb8a506bc4ce0451a64aaded46) C:\Windows\system32\Mcx2Svc.dll
22:02:04.0397 5292 Mcx2Svc - ok
22:02:04.0447 5292 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
22:02:04.0448 5292 megasas - ok
22:02:04.0475 5292 mfeavfk (2a5c22d126e1e806d6779f05c2aa8c2f) C:\Windows\system32\drivers\mfeavfk.sys
22:02:04.0476 5292 mfeavfk - ok
22:02:04.0488 5292 mfebopk (8e79451e5144669c1ed9c437e1162373) C:\Windows\system32\drivers\mfebopk.sys
22:02:04.0489 5292 mfebopk - ok
22:02:04.0513 5292 mfehidk (1377b0bb5e6fbe8475be0ed6edfbfbce) C:\Windows\system32\drivers\mfehidk.sys
22:02:04.0528 5292 mfehidk - ok
22:02:04.0565 5292 mferkdk (e30e485df0bf5df334ee93b0455d726f) C:\Windows\system32\drivers\mferkdk.sys
22:02:04.0566 5292 mferkdk - ok
22:02:04.0576 5292 mfesmfk (ea76fcf9aa1b1c44f12a0c26f17d4c37) C:\Windows\system32\drivers\mfesmfk.sys
22:02:04.0577 5292 mfesmfk - ok
22:02:04.0620 5292 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
22:02:04.0641 5292 MMCSS - ok
22:02:04.0686 5292 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
22:02:04.0687 5292 Modem - ok
22:02:04.0713 5292 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
22:02:04.0714 5292 monitor - ok
22:02:04.0893 5292 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
22:02:04.0914 5292 mouclass - ok
22:02:04.0995 5292 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
22:02:05.0011 5292 mouhid - ok
22:02:05.0157 5292 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
22:02:05.0159 5292 MountMgr - ok
22:02:05.0230 5292 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:02:05.0236 5292 MozillaMaintenance - ok
22:02:05.0280 5292 MPFP (447d50511a7aac23d4cbbe527e1ff1f2) C:\Windows\system32\Drivers\Mpfp.sys
22:02:05.0287 5292 MPFP - ok
22:02:05.0974 5292 MpfService (545b1165bca3990a3f2579170c7f34d1) C:\Program Files\McAfee\MPF\MPFSrv.exe
22:02:05.0978 5292 MpfService - ok
22:02:06.0157 5292 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
22:02:06.0159 5292 mpio - ok
22:02:06.0207 5292 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
22:02:06.0208 5292 mpsdrv - ok
22:02:06.0260 5292 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
22:02:06.0272 5292 MpsSvc - ok
22:02:06.0297 5292 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
22:02:06.0298 5292 Mraid35x - ok
22:02:06.0362 5292 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
22:02:06.0369 5292 MRxDAV - ok
22:02:06.0432 5292 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
22:02:06.0439 5292 mrxsmb - ok
22:02:06.0498 5292 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:02:06.0512 5292 mrxsmb10 - ok
22:02:06.0532 5292 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:02:06.0540 5292 mrxsmb20 - ok
22:02:06.0555 5292 msahci (d420bc42a637ac3cc4f411220549c0dc) C:\Windows\system32\drivers\msahci.sys
22:02:06.0556 5292 msahci - ok
22:02:06.0578 5292 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
22:02:06.0580 5292 msdsm - ok
22:02:06.0916 5292 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
22:02:06.0924 5292 MSDTC - ok
22:02:07.0015 5292 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
22:02:07.0032 5292 Msfs - ok
22:02:07.0072 5292 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
22:02:07.0074 5292 msisadrv - ok
22:02:07.0441 5292 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
22:02:07.0466 5292 MSiSCSI - ok
22:02:07.0470 5292 msiserver - ok
22:02:07.0706 5292 MSK80Service (9a55cfa5f970bb407c7f639d19578a89) C:\Program Files\McAfee\MSK\MskSrver.exe
22:02:07.0706 5292 MSK80Service - ok
22:02:07.0776 5292 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
22:02:07.0804 5292 MSKSSRV - ok
22:02:07.0846 5292 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
22:02:07.0847 5292 MSPCLOCK - ok
22:02:07.0889 5292 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
22:02:07.0890 5292 MSPQM - ok
22:02:07.0929 5292 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
22:02:07.0935 5292 MsRPC - ok
22:02:08.0074 5292 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
22:02:08.0089 5292 mssmbios - ok
22:02:08.0104 5292 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
22:02:08.0105 5292 MSTEE - ok
22:02:08.0150 5292 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
22:02:08.0152 5292 Mup - ok
22:02:08.0868 5292 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
22:02:08.0874 5292 napagent - ok
22:02:08.0918 5292 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
22:02:08.0924 5292 NativeWifiP - ok
22:02:09.0931 5292 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
22:02:09.0948 5292 NDIS - ok
22:02:09.0986 5292 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
22:02:09.0988 5292 NdisTapi - ok
22:02:10.0080 5292 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
22:02:10.0082 5292 Ndisuio - ok
22:02:10.0142 5292 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
22:02:10.0149 5292 NdisWan - ok
22:02:10.0481 5292 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
22:02:10.0516 5292 NDProxy - ok
22:02:10.0637 5292 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
22:02:10.0648 5292 NetBIOS - ok
22:02:10.0698 5292 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
22:02:10.0704 5292 netbt - ok
22:02:10.0739 5292 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
22:02:10.0741 5292 Netlogon - ok
22:02:11.0554 5292 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
22:02:11.0578 5292 Netman - ok
22:02:11.0894 5292 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
22:02:11.0908 5292 netprofm - ok
22:02:12.0306 5292 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:02:12.0313 5292 NetTcpPortSharing - ok
22:02:12.0343 5292 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
22:02:12.0345 5292 nfrd960 - ok
22:02:12.0426 5292 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
22:02:12.0432 5292 NlaSvc - ok
22:02:12.0540 5292 NMSCore (5384d7a64e7b6011e98d68f69dcfc980) C:\Program Files\Common Files\Intel\IntelDH\NMS\NMSCore\NMSCore.exe
22:02:12.0553 5292 NMSCore - ok
22:02:12.0589 5292 nmsunidr (dfeabb7cfffadea4a912ab95bdc3177a) C:\Windows\system32\DRIVERS\nmsunidr.sys
22:02:12.0590 5292 nmsunidr - ok
22:02:12.0629 5292 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
22:02:12.0630 5292 Npfs - ok
22:02:12.0674 5292 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
22:02:12.0676 5292 nsi - ok
22:02:12.0720 5292 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
22:02:12.0721 5292 nsiproxy - ok
22:02:12.0788 5292 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
22:02:12.0814 5292 Ntfs - ok
22:02:12.0842 5292 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
22:02:12.0844 5292 ntrigdigi - ok
22:02:12.0885 5292 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
22:02:12.0886 5292 Null - ok
22:02:13.0318 5292 nvlddmkm (c8cb6135884cbc2a10225c4c3cef0f95) C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:02:13.0574 5292 nvlddmkm - ok
22:02:13.0725 5292 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
22:02:13.0732 5292 nvraid - ok
22:02:13.0747 5292 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
22:02:13.0748 5292 nvstor - ok
22:02:13.0780 5292 nvsvc (c1303870d5f9ead4beb68559aab7a87b) C:\Windows\system32\nvvsvc.exe
22:02:13.0786 5292 nvsvc - ok
22:02:13.0804 5292 nv_agp (055081fd5076401c1ee1bcab08d81911) C:\Windows\system32\drivers\nv_agp.sys
22:02:13.0811 5292 nv_agp - ok
22:02:13.0815 5292 NwlnkFlt - ok
22:02:13.0821 5292 NwlnkFwd - ok
22:02:13.0906 5292 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:02:13.0918 5292 odserv - ok
22:02:13.0954 5292 OEM03Afx (58f478fd0115012ceec75fb73628901c) C:\Windows\system32\Drivers\OEM03Afx.sys
22:02:13.0962 5292 OEM03Afx - ok
22:02:13.0978 5292 OEM03Vfx (86326062a90494bdd79ce383511d7d69) C:\Windows\system32\DRIVERS\OEM03Vfx.sys
22:02:13.0979 5292 OEM03Vfx - ok
22:02:14.0002 5292 OEM03Vid (d9ed95c6752cc59368e35927f7fc39f0) C:\Windows\system32\DRIVERS\OEM03Vid.sys
22:02:14.0017 5292 OEM03Vid - ok
22:02:14.0066 5292 ohci1394 (6f310e890d46e246e0e261a63d9b36b4) C:\Windows\system32\DRIVERS\ohci1394.sys
22:02:14.0067 5292 ohci1394 - ok
22:02:14.0097 5292 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:02:14.0104 5292 ose - ok
22:02:14.0138 5292 ossrv (ea7563de822696f1b9be9e589d33fa96) C:\Windows\system32\drivers\ctoss2k.sys
22:02:14.0145 5292 ossrv - ok
22:02:14.0203 5292 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
22:02:14.0228 5292 p2pimsvc - ok
22:02:14.0235 5292 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
22:02:14.0240 5292 p2psvc - ok
22:02:14.0289 5292 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
22:02:14.0290 5292 Parport - ok
22:02:14.0331 5292 partmgr (b9c2b89f08670e159f7181891e449cd9) C:\Windows\system32\drivers\partmgr.sys
22:02:14.0332 5292 partmgr - ok
22:02:14.0351 5292 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
22:02:14.0352 5292 Parvdm - ok
22:02:14.0391 5292 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
22:02:14.0394 5292 PcaSvc - ok
22:02:14.0457 5292 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
22:02:14.0490 5292 pci - ok
22:02:14.0502 5292 pciide (1636d43f10416aeb483bc6001097b26c) C:\Windows\system32\drivers\pciide.sys
22:02:14.0504 5292 pciide - ok
22:02:14.0536 5292 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
22:02:14.0542 5292 pcmcia - ok
22:02:14.0587 5292 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
22:02:14.0611 5292 PEAUTH - ok
22:02:33.0778 5292 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
22:02:33.0811 5292 pla - ok
22:02:33.0918 5292 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
22:02:33.0932 5292 PlugPlay - ok
22:02:33.0993 5292 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
22:02:33.0998 5292 PNRPAutoReg - ok
22:02:34.0005 5292 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
22:02:34.0010 5292 PNRPsvc - ok
22:02:34.0062 5292 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
22:02:34.0072 5292 PolicyAgent - ok
22:02:34.0148 5292 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
22:02:34.0150 5292 PptpMiniport - ok
22:02:34.0178 5292 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
22:02:34.0180 5292 Processor - ok
22:02:34.0221 5292 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
22:02:34.0228 5292 ProfSvc - ok
22:02:34.0268 5292 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
22:02:34.0270 5292 ProtectedStorage - ok
22:02:34.0321 5292 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
22:02:34.0322 5292 PSched - ok
22:02:34.0359 5292 PxHelp20 (40fedd328f98245ad201cf5f9f311724) C:\Windows\system32\Drivers\PxHelp20.sys
22:02:34.0360 5292 PxHelp20 - ok
22:02:34.0489 5292 QBCFMonitorService (1ca502803647c80c006ccacf396ced46) C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
22:02:34.0489 5292 QBCFMonitorService - ok
22:02:34.0539 5292 QBFCService (bab30d2799754f6ea22f0b9076311793) C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
22:02:34.0541 5292 QBFCService - ok
22:02:34.0586 5292 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
22:02:34.0611 5292 ql2300 - ok
22:02:34.0647 5292 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
22:02:34.0655 5292 ql40xx - ok
22:02:34.0792 5292 QualityManager (938a882b718866e24ca5f71dfc925866) C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\qualitymanager.exe
22:02:34.0804 5292 QualityManager - ok
22:02:34.0855 5292 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
22:02:34.0868 5292 QWAVE - ok
22:02:34.0908 5292 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
22:02:34.0909 5292 QWAVEdrv - ok
22:02:34.0987 5292 R300 (e642b131fb74caf4bb8a014f31113142) C:\Windows\system32\DRIVERS\atikmdag.sys
22:02:35.0037 5292 R300 - ok
22:02:35.0130 5292 RapiMgr (8f97d374ad1857e1eed85a79f29a1d3d) C:\Windows\WindowsMobile\rapimgr.dll
22:02:35.0137 5292 RapiMgr - ok
22:02:35.0247 5292 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
22:02:35.0248 5292 RasAcd - ok
22:02:35.0289 5292 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
22:02:35.0296 5292 RasAuto - ok
22:02:35.0337 5292 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
22:02:35.0339 5292 Rasl2tp - ok
22:02:35.0385 5292 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
22:02:35.0398 5292 RasMan - ok
22:02:35.0434 5292 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
22:02:35.0436 5292 RasPppoe - ok
22:02:35.0485 5292 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
22:02:35.0487 5292 RasSstp - ok
22:02:35.0527 5292 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
22:02:35.0532 5292 rdbss - ok
22:02:35.0570 5292 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
22:02:35.0571 5292 RDPCDD - ok
22:02:35.0609 5292 rdpdr (0245418224cfa77bf4b41c2fe0622258) C:\Windows\system32\drivers\rdpdr.sys
22:02:35.0622 5292 rdpdr - ok
22:02:35.0651 5292 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
22:02:35.0652 5292 RDPENCDD - ok
22:02:35.0694 5292 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys
22:02:35.0699 5292 RDPWD - ok
22:02:35.0858 5292 Remote UI Service (a8430231e1a06828210248c79755bf9c) C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
22:02:35.0869 5292 Remote UI Service - ok
22:02:35.0912 5292 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
22:02:35.0915 5292 RemoteAccess - ok
22:02:35.0968 5292 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
22:02:35.0975 5292 RemoteRegistry - ok
22:02:35.0990 5292 RLDesignVirtualAudioCableWdm (f5cd7457fa2f0d1078992ccb77a546c4) C:\Windows\system32\DRIVERS\livecamv.sys
22:02:35.0992 5292 RLDesignVirtualAudioCableWdm - ok
22:02:36.0108 5292 RoxMediaDB9 (a03855ecbea2268a447d4df1caa064f5) C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
22:02:36.0136 5292 RoxMediaDB9 - ok
22:02:36.0167 5292 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
22:02:36.0169 5292 RpcLocator - ok
22:02:36.0222 5292 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
22:02:36.0227 5292 RpcSs - ok
22:02:36.0317 5292 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
22:02:36.0318 5292 rspndr - ok
22:02:36.0344 5292 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
22:02:36.0345 5292 SamSs - ok
22:02:36.0388 5292 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
22:02:36.0390 5292 sbp2port - ok
22:02:36.0430 5292 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
22:02:36.0437 5292 SCardSvr - ok
22:02:36.0492 5292 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
22:02:36.0525 5292 Schedule - ok
22:02:36.0577 5292 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
22:02:36.0578 5292 SCPolicySvc - ok
22:02:36.0638 5292 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
22:02:36.0645 5292 SDRSVC - ok
22:02:36.0785 5292 SeaPort (16a252022535b680046f6e34e136d378) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
22:02:36.0798 5292 SeaPort - ok
22:02:36.0865 5292 SecDrv (c71394d99a04ca76484492f590c9cba5) C:\Windows\system32\drivers\SECDRV.SYS
22:02:36.0866 5292 SecDrv - ok
22:02:36.0899 5292 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
22:02:36.0903 5292 seclogon - ok
22:02:36.0938 5292 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\System32\sens.dll
22:02:36.0940 5292 SENS - ok
22:02:36.0970 5292 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
22:02:36.0971 5292 Serenum - ok
22:02:36.0989 5292 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
22:02:36.0996 5292 Serial - ok
22:02:37.0061 5292 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
22:02:37.0062 5292 sermouse - ok
22:02:37.0113 5292 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
22:02:37.0120 5292 SessionEnv - ok
22:02:37.0134 5292 sffdisk (51cf56aa8bcc241f134b420b8f850406) C:\Windows\system32\drivers\sffdisk.sys
22:02:37.0136 5292 sffdisk - ok
22:02:37.0160 5292 sffp_mmc (96ded8b20c734ac41641ce275250e55d) C:\Windows\system32\drivers\sffp_mmc.sys
22:02:37.0161 5292 sffp_mmc - ok
22:02:37.0169 5292 sffp_sd (8b08cab1267b2c377883fc9e56981f90) C:\Windows\system32\drivers\sffp_sd.sys
22:02:37.0170 5292 sffp_sd - ok
22:02:37.0181 5292 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
22:02:37.0182 5292 sfloppy - ok
22:02:37.0246 5292 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
22:02:37.0258 5292 SharedAccess - ok
22:02:37.0329 5292 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
22:02:37.0345 5292 ShellHWDetection - ok
22:02:37.0374 5292 sisagp (08072b2fb92477fc813271a84b3a8698) C:\Windows\system32\drivers\sisagp.sys
22:02:37.0376 5292 sisagp - ok
22:02:37.0391 5292 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
22:02:37.0392 5292 SiSRaid2 - ok
22:02:37.0415 5292 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
22:02:37.0417 5292 SiSRaid4 - ok
22:02:37.0560 5292 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
22:02:37.0631 5292 slsvc - ok
22:02:37.0735 5292 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
22:02:37.0738 5292 SLUINotify - ok
22:02:37.0800 5292 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
22:02:37.0802 5292 Smb - ok
22:02:37.0840 5292 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
22:02:37.0842 5292 SNMPTRAP - ok
22:02:37.0891 5292 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
22:02:37.0893 5292 spldr - ok
22:02:37.0937 5292 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
22:02:37.0942 5292 Spooler - ok
22:02:37.0982 5292 sprtsvc_dellsupportcenter - ok
22:02:38.0070 5292 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
22:02:38.0126 5292 srv - ok
22:02:38.0171 5292 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
22:02:38.0186 5292 srv2 - ok
22:02:38.0226 5292 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
22:02:38.0242 5292 srvnet - ok
22:02:38.0264 5292 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
22:02:38.0269 5292 SSDPSRV - ok
22:02:38.0315 5292 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
22:02:38.0322 5292 SstpSvc - ok
22:02:38.0374 5292 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
22:02:38.0395 5292 stisvc - ok
22:02:38.0486 5292 stllssvr (de3e7a2345ebaa3ce8e6957dfb55fb15) C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
22:02:38.0488 5292 stllssvr - ok
22:02:38.0545 5292 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
22:02:38.0547 5292 swenum - ok
22:02:38.0597 5292 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
22:02:38.0611 5292 swprv - ok
22:02:38.0644 5292 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
22:02:38.0646 5292 Symc8xx - ok
22:02:38.0660 5292 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
22:02:38.0661 5292 Sym_hi - ok
22:02:38.0693 5292 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
22:02:38.0694 5292 Sym_u3 - ok
22:02:38.0751 5292 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
22:02:38.0851 5292 SysMain - ok
22:02:38.0993 5292 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
22:02:38.0996 5292 TabletInputService - ok
22:02:39.0052 5292 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
22:02:39.0068 5292 TapiSrv - ok
22:02:39.0110 5292 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
22:02:39.0113 5292 TBS - ok
22:02:39.0225 5292 Tcpip (27d470dabc77bc60d0a3b0e4deb6cb91) C:\Windows\system32\drivers\tcpip.sys
22:02:39.0336 5292 Tcpip - ok
22:02:39.0347 5292 Tcpip6 (27d470dabc77bc60d0a3b0e4deb6cb91) C:\Windows\system32\DRIVERS\tcpip.sys
22:02:39.0352 5292 Tcpip6 - ok
22:02:39.0410 5292 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
22:02:39.0412 5292 tcpipreg - ok
22:02:39.0458 5292 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
22:02:39.0459 5292 TDPIPE - ok
22:02:39.0503 5292 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
22:02:39.0504 5292 TDTCP - ok
22:02:39.0541 5292 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
22:02:39.0542 5292 tdx - ok
22:02:39.0578 5292 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
22:02:39.0580 5292 TermDD - ok
22:02:39.0633 5292 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
22:02:39.0653 5292 TermService - ok
22:02:39.0712 5292 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
22:02:39.0715 5292 Themes - ok
22:02:39.0776 5292 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
22:02:39.0778 5292 THREADORDER - ok
22:02:39.0900 5292 TomTomHOMEService (3199a477f0f06eede41bd55179f8eb05) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
22:02:39.0902 5292 TomTomHOMEService - ok
22:02:39.0947 5292 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
22:02:39.0950 5292 TrkWks - ok
22:02:40.0018 5292 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
22:02:40.0019 5292 TrustedInstaller - ok
22:02:40.0129 5292 TSHWMDTCP (b56368b25a51cebda77e6b20764f07f2) C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.sys
22:02:40.0130 5292 TSHWMDTCP - ok
22:02:40.0164 5292 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
22:02:40.0165 5292 tssecsrv - ok
22:02:40.0199 5292 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
22:02:40.0200 5292 tunmp - ok
22:02:40.0232 5292 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
22:02:40.0233 5292 tunnel - ok
22:02:40.0255 5292 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
22:02:40.0256 5292 uagp35 - ok
22:02:40.0299 5292 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
22:02:40.0312 5292 udfs - ok
22:02:40.0361 5292 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
22:02:40.0364 5292 UI0Detect - ok
22:02:40.0384 5292 uliagpkx (6d72ef05921abdf59fc45c7ebfe7e8dd) C:\Windows\system32\drivers\uliagpkx.sys
22:02:40.0386 5292 uliagpkx - ok
22:02:40.0408 5292 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
22:02:40.0421 5292 uliahci - ok
22:02:40.0435 5292 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
22:02:40.0442 5292 UlSata - ok
22:02:40.0460 5292 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
22:02:40.0468 5292 ulsata2 - ok
22:02:40.0512 5292 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
22:02:40.0513 5292 umbus - ok
22:02:40.0567 5292 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
22:02:40.0580 5292 upnphost - ok
22:02:40.0619 5292 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\Windows\system32\Drivers\usbaapl.sys
22:02:40.0621 5292 USBAAPL - ok
22:02:40.0660 5292 usbaudio (32db9517628ff0d070682aab61e688f0) C:\Windows\system32\drivers\usbaudio.sys
22:02:40.0662 5292 usbaudio - ok
22:02:40.0727 5292 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
22:02:40.0729 5292 usbccgp - ok
22:02:40.0753 5292 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
22:02:40.0755 5292 usbcir - ok
22:02:40.0799 5292 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
22:02:40.0800 5292 usbehci - ok
22:02:40.0823 5292 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
22:02:40.0829 5292 usbhub - ok
22:02:40.0848 5292 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
22:02:40.0850 5292 usbohci - ok
22:02:40.0898 5292 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
22:02:40.0899 5292 usbprint - ok
22:02:40.0991 5292 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
22:02:40.0993 5292 usbscan - ok
22:02:41.0009 5292 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:02:41.0010 5292 USBSTOR - ok
22:02:41.0053 5292 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
22:02:41.0055 5292 usbuhci - ok
22:02:41.0105 5292 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
22:02:41.0108 5292 UxSms - ok
22:02:41.0198 5292 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
22:02:41.0286 5292 vds - ok
22:02:41.0309 5292 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
22:02:41.0310 5292 vga - ok
22:02:41.0362 5292 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
22:02:41.0363 5292 VgaSave - ok
22:02:41.0379 5292 viaagp (d5929a28bdff4367a12caf06af901971) C:\Windows\system32\drivers\viaagp.sys
22:02:41.0380 5292 viaagp - ok
22:02:41.0393 5292 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
22:02:41.0394 5292 ViaC7 - ok
22:02:41.0412 5292 viaide (f3b4762eb85a2aff4999401f14c3262b) C:\Windows\system32\drivers\viaide.sys
22:02:41.0413 5292 viaide - ok
22:02:41.0471 5292 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
22:02:41.0473 5292 volmgr - ok
22:02:41.0528 5292 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
22:02:41.0540 5292 volmgrx - ok
22:02:41.0581 5292 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
22:02:41.0600 5292 volsnap - ok
22:02:41.0627 5292 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
22:02:41.0634 5292 vsmraid - ok
22:02:41.0704 5292 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
22:02:41.0732 5292 VSS - ok
22:02:41.0761 5292 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
22:02:41.0774 5292 W32Time - ok
22:02:41.0817 5292 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
22:02:41.0818 5292 WacomPen - ok
22:02:41.0979 5292 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
22:02:41.0980 5292 Wanarp - ok
22:02:41.0984 5292 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
22:02:41.0985 5292 Wanarpv6 - ok
22:02:42.0032 5292 wanatw (0a716c08cb13c3a8f4f51e882dbf7416) C:\Windows\system32\DRIVERS\wanatw4.sys
22:02:42.0033 5292 wanatw - ok
22:02:42.0099 5292 WcesComm (59e19bd13c3bdb857646b9e436ba27f7) C:\Windows\WindowsMobile\wcescomm.dll
22:02:42.0112 5292 WcesComm - ok
22:02:42.0141 5292 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
22:02:42.0153 5292 wcncsvc - ok
22:02:42.0174 5292 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
22:02:42.0177 5292 WcsPlugInService - ok
22:02:42.0204 5292 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys
22:02:42.0205 5292 Wd - ok
22:02:42.0245 5292 WDC_SAM (d6efaf429fd30c5df613d220e344cce7) C:\Windows\system32\DRIVERS\wdcsam.sys
22:02:42.0246 5292 WDC_SAM - ok
22:02:42.0382 5292 WDDMService (bf847a3972cc6b5ce26e0ea742dd52d9) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
22:02:42.0387 5292 WDDMService - ok
22:02:42.0441 5292 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
22:02:42.0458 5292 Wdf01000 - ok
22:02:42.0543 5292 WDFME (b5966f1dff6e20576f3c8c2d93d129fd) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
22:02:42.0564 5292 WDFME - ok
22:02:42.0674 5292 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
22:02:42.0678 5292 WdiServiceHost - ok
22:02:42.0682 5292 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
22:02:42.0685 5292 WdiSystemHost - ok
22:02:42.0710 5292 WDSC (92f0088ca18bb08bb596ef2608256f8a) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
22:02:42.0722 5292 WDSC - ok
22:02:42.0776 5292 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
22:02:42.0791 5292 WebClient - ok
22:02:42.0842 5292 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
22:02:42.0850 5292 Wecsvc - ok
22:02:42.0903 5292 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
22:02:42.0906 5292 wercplsupport - ok
22:02:42.0956 5292 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
22:02:42.0963 5292 WerSvc - ok
22:02:43.0046 5292 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
22:02:43.0067 5292 WinDefend - ok
22:02:43.0075 5292 WinHttpAutoProxySvc - ok
22:02:43.0154 5292 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
22:02:43.0161 5292 Winmgmt - ok
22:02:43.0238 5292 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
22:02:43.0296 5292 WinRM - ok
22:02:43.0384 5292 WinUsb (676f4b665bdd8053eaa53ac1695b8074) C:\Windows\system32\DRIVERS\WinUSB.SYS
22:02:43.0385 5292 WinUsb - ok
22:02:43.0441 5292 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
22:02:43.0460 5292 Wlansvc - ok
22:02:43.0577 5292 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:02:43.0653 5292 wlidsvc - ok
22:02:43.0743 5292 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
22:02:43.0744 5292 WmiAcpi - ok
22:02:43.0801 5292 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
22:02:43.0808 5292 wmiApSrv - ok
22:02:43.0917 5292 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
22:02:43.0937 5292 WMPNetworkSvc - ok
22:02:43.0978 5292 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
22:02:43.0985 5292 WPCSvc - ok
22:02:44.0050 5292 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
22:02:44.0053 5292 WPDBusEnum - ok
22:02:44.0102 5292 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
22:02:44.0103 5292 WpdUsb - ok
22:02:44.0266 5292 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
22:02:44.0291 5292 WPFFontCache_v0400 - ok
22:02:44.0338 5292 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
22:02:44.0339 5292 ws2ifsl - ok
22:02:44.0377 5292 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\System32\wscsvc.dll
22:02:44.0380 5292 wscsvc - ok
22:02:44.0385 5292 WSearch - ok
22:02:44.0512 5292 wuauserv (6298277b73c77fa99106b271a7525163) C:\Windows\system32\wuaueng.dll
22:02:44.0561 5292 wuauserv - ok
22:02:44.0693 5292 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
22:02:44.0700 5292 WUDFRd - ok
22:02:44.0747 5292 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
22:02:44.0751 5292 wudfsvc - ok
22:02:44.0781 5292 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
22:02:45.0000 5292 \Device\Harddisk0\DR0 - ok
22:02:45.0026 5292 Boot (0x1200) (5a19b56bd2a56a27823638e258d9970e) \Device\Harddisk0\DR0\Partition0
22:02:45.0028 5292 \Device\Harddisk0\DR0\Partition0 - ok
22:02:45.0031 5292 Boot (0x1200) (c638ef87c307fbb5b551c3c750c8c540) \Device\Harddisk0\DR0\Partition1
22:02:45.0032 5292 \Device\Harddisk0\DR0\Partition1 - ok
22:02:45.0032 5292 ============================================================
22:02:45.0032 5292 Scan finished
22:02:45.0032 5292 ============================================================
22:02:45.0041 7764 Detected object count: 0
22:02:45.0041 7764 Actual detected object count: 0
22:04:48.0162 5924 Deinitialize success

#4 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 05 June 2012 - 11:07 PM

Computer crashed during the running of aswMBR. Took forever to download the virus definitions. Computer running extremely slowly now. Window reports the crash as a Service Hang Report on M1 Server. Got the blue screen during the crash and then it said that the disk had to be checked for consistancy. I bypassed that warning twice. Going to try and run aswMBR again.

#5 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 05 June 2012 - 11:15 PM

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-06-06 00:07:32
-----------------------------
00:07:32.091 OS Version: Windows 6.0.6002 Service Pack 2
00:07:32.091 Number of processors: 4 586 0xF0B
00:07:32.092 ComputerName: MY-PC UserName: John
00:08:07.653 Initialize success
00:08:47.728 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-1
00:08:47.730 Disk 0 Vendor: ST3320620AS 3.ADG Size: 305245MB BusType: 3
00:08:47.908 Disk 0 MBR read successfully
00:08:47.910 Disk 0 MBR scan
00:08:47.912 Disk 0 Windows VISTA default MBR code
00:08:47.981 Disk 0 Partition 1 00 DE Dell Utility Dell 8.0 54 MB offset 63
00:08:48.077 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 15360 MB offset 112640
00:08:48.164 Disk 0 Partition 3 80 (A) 07 HPFS/NTFS NTFS 289829 MB offset 31569920
00:08:48.306 Disk 0 scanning sectors +625139712
00:08:49.181 Disk 0 scanning C:\Windows\system32\drivers
00:11:28.583 Service scanning
00:13:06.547 Modules scanning
00:13:45.105 Disk 0 trace - called modules:
00:13:45.157 ntkrnlpa.exe CLASSPNP.SYS disk.sys ataport.SYS hal.dll pciide.sys
00:13:45.486 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x855de968]
00:13:45.490 3 CLASSPNP.SYS[8a1a48b3] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-1[0x8539d8a0]
00:13:45.495 Scan finished successfully
00:13:59.890 Disk 0 MBR has been saved successfully to "C:\Users\John\Desktop\MBR.dat"
00:13:59.947 The log file has been saved successfully to "C:\Users\John\Desktop\aswMBR.txt"

#6 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 06 June 2012 - 04:01 AM

Computer crashed again. This time the it let the ckdsk program run and it said it had deleted a ton of "corrupt files". Tried to open Outlook and it asked if I wanted to open it in safe mode, I said yes but then it couldn't open it. I tried again and it worked in regular mode.

#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:06:46 AM

Posted 06 June 2012 - 01:36 PM

Reboot the machine again to reset the registry and see how it is running now..
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 06 June 2012 - 02:37 PM

Ob reboot, computer came up with the One of your discs needs to be checked for consistancy. CHKDSK ran again and deleted another bunch of corrupt file record segments.

Once the reboot was finished and I logged in, I got a message that the Google Tool Bar Notifier is corrupt.

#9 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 06 June 2012 - 02:44 PM

Internet is still running extremely slow.

#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:06:46 AM

Posted 06 June 2012 - 02:48 PM

Hello, Parker .. Please start a topic in Vista on these new issues as it's not malware and they need to test other things and find what is wrong.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 Parker1028

Parker1028
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:46 AM

Posted 06 June 2012 - 03:10 PM

Warning just popped up that Windows detected a hard disk problem and that I need to back up my files immediately.

Ok, will do. Thanks.

#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:06:46 AM

Posted 06 June 2012 - 06:50 PM

Maybe a failing hard drive.. back rm up

Edited by boopme, 06 June 2012 - 06:51 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users