Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Happili.XGen Trojan removal


  • Please log in to reply
9 replies to this topic

#1 Holly5778

Holly5778

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:20 AM

Posted 12 June 2012 - 10:36 AM

Hi. Our desktop computer had all the desktop icons completely missing. I ran the Malwarebytes and it came back with Happili.XGen Trojan. Deleted it and ran again and it came back clean. Then I ran the unhide.exe program, restarted the computer, and had all of my desktop icons back. Is there anything else I need to do after that to make sure the Trojan is completely gone and to make sure everything else is as it should be? Thanks.

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:11:20 AM

Posted 12 June 2012 - 10:38 AM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)


Please download GMER from here(doesnot work on 64 bit OS)

http://www2.gmer.net/download.php

Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.

GMER will open to the Rootkit/Malware tab and perform an automatic Full Scan when first run. (do not use the computer while the scan is in progress)

If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
Now click the Scan button. If you see a rootkit warning window, click OK.
When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
Click the Copy button and paste the results into your next reply.


Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

#3 Holly5778

Holly5778
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:20 AM

Posted 12 June 2012 - 10:46 AM

You said the GMER does not work on 64bit. Is there an alternative to it? I have 64bit

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:11:20 AM

Posted 12 June 2012 - 10:50 AM

Ignore GMER then

Download

ESET online scanner


Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#5 Holly5778

Holly5778
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:20 AM

Posted 12 June 2012 - 10:54 AM

ok. will do as soon as it's all done! thanks!!

#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:11:20 AM

Posted 12 June 2012 - 10:55 AM

:thumbup2:

#7 Holly5778

Holly5778
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:20 AM

Posted 12 June 2012 - 07:11 PM

Sorry, had to take my son to a doctors appt. All scans are done. I have zero idea what any of this means, but here it is for the experts to analyze. Thank you!!

TDSS killer results:
17:59:39.0041 4020 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
17:59:39.0275 4020 ============================================================
17:59:39.0275 4020 Current date / time: 2012/06/12 17:59:39.0275
17:59:39.0275 4020 SystemInfo:
17:59:39.0275 4020
17:59:39.0275 4020 OS Version: 6.1.7601 ServicePack: 1.0
17:59:39.0275 4020 Product type: Workstation
17:59:39.0275 4020 ComputerName: WOLFF
17:59:39.0275 4020 UserName: Administrator
17:59:39.0275 4020 Windows directory: C:\Windows
17:59:39.0275 4020 System windows directory: C:\Windows
17:59:39.0275 4020 Running under WOW64
17:59:39.0275 4020 Processor architecture: Intel x64
17:59:39.0275 4020 Number of processors: 4
17:59:39.0275 4020 Page size: 0x1000
17:59:39.0275 4020 Boot type: Normal boot
17:59:39.0275 4020 ============================================================
17:59:39.0633 4020 Drive \Device\Harddisk0\DR0 - Size: 0xE8D4A50000 (931.32 Gb), SectorSize: 0x200, Cylinders: 0x1DAE8, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:59:39.0665 4020 ============================================================
17:59:39.0665 4020 \Device\Harddisk0\DR0:
17:59:39.0665 4020 MBR partitions:
17:59:39.0665 4020 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:59:39.0665 4020 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x72FE0800
17:59:39.0665 4020 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x73013000, BlocksNum 0x1691800
17:59:39.0665 4020 ============================================================
17:59:39.0711 4020 C: <-> \Device\Harddisk0\DR0\Partition1
17:59:39.0774 4020 D: <-> \Device\Harddisk0\DR0\Partition2
17:59:39.0774 4020 ============================================================
17:59:39.0774 4020 Initialize success
17:59:39.0774 4020 ============================================================
17:59:51.0599 1856 ============================================================
17:59:51.0599 1856 Scan started
17:59:51.0599 1856 Mode: Manual; TDLFS;
17:59:51.0599 1856 ============================================================
17:59:52.0223 1856 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
17:59:52.0223 1856 1394ohci - ok
17:59:52.0316 1856 ACDaemon (adc420616c501b45d26c0fd3ef1e54e4) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
17:59:52.0316 1856 ACDaemon - ok
17:59:52.0363 1856 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
17:59:52.0363 1856 ACPI - ok
17:59:52.0410 1856 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
17:59:52.0410 1856 AcpiPmi - ok
17:59:52.0488 1856 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
17:59:52.0519 1856 adp94xx - ok
17:59:52.0581 1856 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
17:59:52.0597 1856 adpahci - ok
17:59:52.0644 1856 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
17:59:52.0644 1856 adpu320 - ok
17:59:52.0675 1856 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
17:59:52.0691 1856 AeLookupSvc - ok
17:59:52.0753 1856 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
17:59:52.0769 1856 AFD - ok
17:59:52.0815 1856 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
17:59:52.0815 1856 agp440 - ok
17:59:52.0847 1856 ahcix64s (aa3f73ccbf498bd56800f840d75e40e4) C:\Windows\system32\DRIVERS\ahcix64s.sys
17:59:52.0862 1856 ahcix64s - ok
17:59:52.0893 1856 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
17:59:52.0893 1856 ALG - ok
17:59:52.0909 1856 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
17:59:52.0909 1856 aliide - ok
17:59:53.0502 1856 AllShare (7c8f942e65cb4a2bb1133ce1806976ee) C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe
17:59:53.0689 1856 AllShare - ok
17:59:53.0798 1856 AMD External Events Utility (998021e7c3de3e97e441abace498ffb6) C:\Windows\system32\atiesrxx.exe
17:59:53.0798 1856 AMD External Events Utility - ok
17:59:53.0845 1856 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
17:59:53.0845 1856 amdide - ok
17:59:53.0876 1856 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
17:59:53.0892 1856 AmdK8 - ok
17:59:54.0344 1856 amdkmdag (250d5b746fff9b7d88591ee60b63b3e4) C:\Windows\system32\DRIVERS\atikmdag.sys
17:59:54.0547 1856 amdkmdag - ok
17:59:54.0609 1856 amdkmdap (781daec0c3e63950cca53d193582f2e8) C:\Windows\system32\DRIVERS\atikmpag.sys
17:59:54.0625 1856 amdkmdap - ok
17:59:54.0641 1856 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
17:59:54.0641 1856 AmdPPM - ok
17:59:54.0687 1856 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
17:59:54.0703 1856 amdsata - ok
17:59:54.0734 1856 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
17:59:54.0750 1856 amdsbs - ok
17:59:54.0765 1856 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
17:59:54.0765 1856 amdxata - ok
17:59:54.0859 1856 AMD_RAIDXpert (2b8d1c23d204c0e70eff48a3ffa1c67b) C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe
17:59:54.0859 1856 AMD_RAIDXpert - ok
17:59:54.0921 1856 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
17:59:54.0921 1856 AppID - ok
17:59:54.0953 1856 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
17:59:54.0953 1856 AppIDSvc - ok
17:59:54.0999 1856 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
17:59:54.0999 1856 Appinfo - ok
17:59:55.0109 1856 Apple Mobile Device (70d7be78061126dd0c3accdb7e129017) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
17:59:55.0109 1856 Apple Mobile Device - ok
17:59:55.0187 1856 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
17:59:55.0187 1856 AppMgmt - ok
17:59:55.0218 1856 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
17:59:55.0218 1856 arc - ok
17:59:55.0233 1856 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
17:59:55.0233 1856 arcsas - ok
17:59:55.0265 1856 ArcSoftKsUFilter (c130bc4a51b1382b2be8e44579ec4c0a) C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
17:59:55.0265 1856 ArcSoftKsUFilter - ok
17:59:55.0296 1856 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
17:59:55.0311 1856 AsyncMac - ok
17:59:55.0343 1856 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
17:59:55.0343 1856 atapi - ok
17:59:55.0483 1856 athr (7d89b0c443f6068e5b27aa3b972069ff) C:\Windows\system32\DRIVERS\athrx.sys
17:59:55.0514 1856 athr - ok
17:59:55.0655 1856 AtiHdmiService (fb7602c5c508be281368aae0b61b51c6) C:\Windows\system32\drivers\AtiHdmi.sys
17:59:55.0655 1856 AtiHdmiService - ok
17:59:56.0029 1856 atikmdag (250d5b746fff9b7d88591ee60b63b3e4) C:\Windows\system32\DRIVERS\atikmdag.sys
17:59:56.0076 1856 atikmdag - ok
17:59:56.0154 1856 AtiPcie (7c5d273e29dcc5505469b299c6f29163) C:\Windows\system32\DRIVERS\AtiPcie.sys
17:59:56.0154 1856 AtiPcie - ok
17:59:56.0247 1856 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
17:59:56.0263 1856 AudioEndpointBuilder - ok
17:59:56.0279 1856 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
17:59:56.0294 1856 AudioSrv - ok
17:59:56.0341 1856 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
17:59:56.0357 1856 AxInstSV - ok
17:59:56.0419 1856 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
17:59:56.0435 1856 b06bdrv - ok
17:59:56.0497 1856 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
17:59:56.0497 1856 b57nd60a - ok
17:59:56.0622 1856 BcmSqlStartupSvc (6163664c7e9cd110af70180c126c3fdc) C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
17:59:56.0622 1856 BcmSqlStartupSvc - ok
17:59:56.0653 1856 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
17:59:56.0653 1856 BDESVC - ok
17:59:56.0669 1856 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
17:59:56.0669 1856 Beep - ok
17:59:56.0762 1856 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
17:59:56.0778 1856 BFE - ok
17:59:56.0887 1856 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
17:59:56.0918 1856 BITS - ok
17:59:56.0965 1856 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
17:59:56.0981 1856 blbdrive - ok
17:59:57.0059 1856 Bonjour Service (673cf4f6bb1fbe09331b526802fbb892) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
17:59:57.0059 1856 Bonjour Service - ok
17:59:57.0105 1856 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
17:59:57.0105 1856 bowser - ok
17:59:57.0137 1856 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
17:59:57.0137 1856 BrFiltLo - ok
17:59:57.0137 1856 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
17:59:57.0137 1856 BrFiltUp - ok
17:59:57.0183 1856 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
17:59:57.0199 1856 Browser - ok
17:59:57.0230 1856 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
17:59:57.0230 1856 Brserid - ok
17:59:57.0261 1856 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
17:59:57.0261 1856 BrSerWdm - ok
17:59:57.0277 1856 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
17:59:57.0277 1856 BrUsbMdm - ok
17:59:57.0293 1856 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
17:59:57.0293 1856 BrUsbSer - ok
17:59:57.0324 1856 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
17:59:57.0339 1856 BthEnum - ok
17:59:57.0355 1856 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
17:59:57.0355 1856 BTHMODEM - ok
17:59:57.0386 1856 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
17:59:57.0402 1856 BthPan - ok
17:59:57.0464 1856 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
17:59:57.0511 1856 BTHPORT - ok
17:59:57.0558 1856 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
17:59:57.0573 1856 bthserv - ok
17:59:57.0605 1856 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
17:59:57.0605 1856 BTHUSB - ok
17:59:57.0667 1856 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
17:59:57.0683 1856 cdfs - ok
17:59:57.0745 1856 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
17:59:57.0745 1856 cdrom - ok
17:59:57.0792 1856 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
17:59:57.0792 1856 CertPropSvc - ok
17:59:57.0823 1856 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
17:59:57.0823 1856 circlass - ok
17:59:57.0870 1856 CISVC (ff60401f1c659ca2ed4bae85d3fd14da) C:\Windows\system32\CISVC.EXE
17:59:57.0870 1856 CISVC - ok
17:59:57.0901 1856 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
17:59:57.0917 1856 CLFS - ok
17:59:57.0979 1856 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:59:57.0979 1856 clr_optimization_v2.0.50727_32 - ok
17:59:58.0026 1856 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
17:59:58.0026 1856 clr_optimization_v2.0.50727_64 - ok
17:59:58.0104 1856 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:59:58.0104 1856 clr_optimization_v4.0.30319_32 - ok
17:59:58.0151 1856 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
17:59:58.0151 1856 clr_optimization_v4.0.30319_64 - ok
17:59:58.0197 1856 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
17:59:58.0197 1856 CmBatt - ok
17:59:58.0244 1856 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
17:59:58.0244 1856 cmdide - ok
17:59:58.0307 1856 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
17:59:58.0322 1856 CNG - ok
17:59:58.0338 1856 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
17:59:58.0338 1856 Compbatt - ok
17:59:58.0369 1856 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
17:59:58.0369 1856 CompositeBus - ok
17:59:58.0385 1856 COMSysApp - ok
17:59:58.0463 1856 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
17:59:58.0463 1856 crcdisk - ok
17:59:58.0509 1856 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
17:59:58.0509 1856 CryptSvc - ok
17:59:58.0587 1856 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
17:59:58.0603 1856 CSC - ok
17:59:58.0712 1856 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
17:59:58.0728 1856 CscService - ok
17:59:58.0790 1856 dc3d (7af9dac504fbd047cbc3e64ae52c92bf) C:\Windows\system32\DRIVERS\dc3d.sys
17:59:58.0790 1856 dc3d - ok
17:59:58.0853 1856 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
17:59:58.0853 1856 DcomLaunch - ok
17:59:58.0899 1856 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
17:59:58.0915 1856 defragsvc - ok
17:59:58.0946 1856 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
17:59:58.0962 1856 DfsC - ok
17:59:58.0993 1856 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
17:59:59.0024 1856 Dhcp - ok
17:59:59.0055 1856 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
17:59:59.0055 1856 discache - ok
17:59:59.0087 1856 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
17:59:59.0087 1856 Disk - ok
17:59:59.0133 1856 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
17:59:59.0149 1856 Dnscache - ok
17:59:59.0196 1856 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
17:59:59.0196 1856 dot3svc - ok
17:59:59.0227 1856 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
17:59:59.0243 1856 DPS - ok
17:59:59.0289 1856 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
17:59:59.0289 1856 drmkaud - ok
17:59:59.0399 1856 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
17:59:59.0430 1856 DXGKrnl - ok
17:59:59.0461 1856 EagleX64 - ok
17:59:59.0508 1856 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
17:59:59.0508 1856 EapHost - ok
17:59:59.0726 1856 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
17:59:59.0820 1856 ebdrv - ok
17:59:59.0945 1856 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
17:59:59.0945 1856 EFS - ok
18:00:00.0038 1856 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
18:00:00.0054 1856 ehRecvr - ok
18:00:00.0101 1856 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
18:00:00.0101 1856 ehSched - ok
18:00:00.0194 1856 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
18:00:00.0210 1856 elxstor - ok
18:00:00.0257 1856 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
18:00:00.0257 1856 ErrDev - ok
18:00:00.0335 1856 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
18:00:00.0350 1856 EventSystem - ok
18:00:00.0397 1856 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
18:00:00.0397 1856 exfat - ok
18:00:00.0428 1856 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
18:00:00.0428 1856 fastfat - ok
18:00:00.0522 1856 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
18:00:00.0537 1856 Fax - ok
18:00:00.0569 1856 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
18:00:00.0569 1856 fdc - ok
18:00:00.0600 1856 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
18:00:00.0600 1856 fdPHost - ok
18:00:00.0615 1856 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
18:00:00.0615 1856 FDResPub - ok
18:00:00.0647 1856 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
18:00:00.0647 1856 FileInfo - ok
18:00:00.0647 1856 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
18:00:00.0662 1856 Filetrace - ok
18:00:00.0771 1856 FLEXnet Licensing Service (f76d04f7413b07daa029f6520b64b4e8) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
18:00:00.0803 1856 FLEXnet Licensing Service - ok
18:00:00.0834 1856 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
18:00:00.0834 1856 flpydisk - ok
18:00:00.0881 1856 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
18:00:00.0896 1856 FltMgr - ok
18:00:01.0005 1856 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
18:00:01.0037 1856 FontCache - ok
18:00:01.0099 1856 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:00:01.0099 1856 FontCache3.0.0.0 - ok
18:00:01.0146 1856 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
18:00:01.0146 1856 FsDepends - ok
18:00:01.0177 1856 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
18:00:01.0177 1856 Fs_Rec - ok
18:00:01.0255 1856 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
18:00:01.0255 1856 fvevol - ok
18:00:01.0286 1856 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
18:00:01.0286 1856 gagp30kx - ok
18:00:01.0333 1856 GameConsoleService (73a2ec1a8dd15f85f92f8ac303a7e39b) C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
18:00:01.0333 1856 GameConsoleService - ok
18:00:01.0395 1856 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:00:01.0395 1856 GEARAspiWDM - ok
18:00:01.0489 1856 GoToAssist Express Customer (939fd7b2170de0da1ec7224d5c5b4ff1) C:\Program Files (x86)\Citrix\GoToAssist Express Customer\223\g2ax_service.exe
18:00:01.0489 1856 GoToAssist Express Customer - ok
18:00:01.0583 1856 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
18:00:01.0614 1856 gpsvc - ok
18:00:01.0723 1856 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:00:01.0723 1856 gupdate - ok
18:00:01.0770 1856 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:00:01.0770 1856 gupdatem - ok
18:00:01.0817 1856 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
18:00:01.0817 1856 hcw85cir - ok
18:00:01.0863 1856 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
18:00:01.0863 1856 HDAudBus - ok
18:00:01.0895 1856 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
18:00:01.0895 1856 HidBatt - ok
18:00:01.0910 1856 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
18:00:01.0910 1856 HidBth - ok
18:00:01.0926 1856 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
18:00:01.0926 1856 HidIr - ok
18:00:01.0957 1856 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
18:00:01.0957 1856 hidserv - ok
18:00:01.0973 1856 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
18:00:01.0973 1856 HidUsb - ok
18:00:02.0004 1856 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
18:00:02.0004 1856 hkmsvc - ok
18:00:02.0035 1856 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
18:00:02.0035 1856 HomeGroupListener - ok
18:00:02.0066 1856 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
18:00:02.0066 1856 HomeGroupProvider - ok
18:00:02.0113 1856 HP Health Check Service (00b239202f7756695c8ccdf8bafa7d3d) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
18:00:02.0113 1856 HP Health Check Service - ok
18:00:02.0191 1856 HP LaserJet Service (16959f84844dc9b2cef0d5b1a412370f) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
18:00:02.0191 1856 HP LaserJet Service - ok
18:00:02.0222 1856 hpqwmiex (fdf273a845f1ffcceadf363aaf47582f) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
18:00:02.0222 1856 hpqwmiex - ok
18:00:02.0253 1856 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
18:00:02.0253 1856 HpSAMD - ok
18:00:02.0347 1856 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
18:00:02.0363 1856 HTTP - ok
18:00:02.0363 1856 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
18:00:02.0363 1856 hwpolicy - ok
18:00:02.0394 1856 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
18:00:02.0394 1856 i8042prt - ok
18:00:02.0456 1856 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
18:00:02.0472 1856 iaStorV - ok
18:00:02.0597 1856 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
18:00:02.0597 1856 IDriverT - ok
18:00:02.0721 1856 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:00:02.0753 1856 idsvc - ok
18:00:02.0893 1856 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
18:00:02.0893 1856 iirsp - ok
18:00:02.0987 1856 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
18:00:03.0018 1856 IKEEXT - ok
18:00:03.0221 1856 IntcAzAudAddService (3c4b4ee54febb09f7e9f58776de96dca) C:\Windows\system32\drivers\RTKVHD64.sys
18:00:03.0267 1856 IntcAzAudAddService - ok
18:00:03.0377 1856 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
18:00:03.0377 1856 intelide - ok
18:00:03.0392 1856 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
18:00:03.0408 1856 intelppm - ok
18:00:03.0439 1856 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
18:00:03.0439 1856 IPBusEnum - ok
18:00:03.0470 1856 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:00:03.0486 1856 IpFilterDriver - ok
18:00:03.0548 1856 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
18:00:03.0579 1856 iphlpsvc - ok
18:00:03.0611 1856 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
18:00:03.0626 1856 IPMIDRV - ok
18:00:03.0657 1856 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
18:00:03.0657 1856 IPNAT - ok
18:00:03.0782 1856 iPod Service (f0eac938ecc1b2764d04ce16f8627e56) C:\Program Files\iPod\bin\iPodService.exe
18:00:03.0798 1856 iPod Service - ok
18:00:03.0829 1856 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
18:00:03.0829 1856 IRENUM - ok
18:00:03.0845 1856 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
18:00:03.0845 1856 isapnp - ok
18:00:03.0907 1856 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
18:00:03.0907 1856 iScsiPrt - ok
18:00:03.0938 1856 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
18:00:03.0938 1856 kbdclass - ok
18:00:03.0938 1856 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
18:00:03.0954 1856 kbdhid - ok
18:00:03.0985 1856 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
18:00:03.0985 1856 KeyIso - ok
18:00:04.0032 1856 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
18:00:04.0032 1856 KSecDD - ok
18:00:04.0063 1856 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
18:00:04.0079 1856 KSecPkg - ok
18:00:04.0094 1856 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
18:00:04.0094 1856 ksthunk - ok
18:00:04.0141 1856 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
18:00:04.0172 1856 KtmRm - ok
18:00:04.0235 1856 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
18:00:04.0235 1856 LanmanServer - ok
18:00:04.0281 1856 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
18:00:04.0281 1856 LanmanWorkstation - ok
18:00:04.0344 1856 libusb0 (e8e43d80198ba46789a497f9ab787217) C:\Windows\system32\DRIVERS\libusb0.sys
18:00:04.0344 1856 libusb0 - ok
18:00:04.0406 1856 LightScribeService (2238b91ac1a12cc6cc4c4fed41258b2a) c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
18:00:04.0422 1856 LightScribeService - ok
18:00:04.0453 1856 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
18:00:04.0453 1856 lltdio - ok
18:00:04.0484 1856 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
18:00:04.0500 1856 lltdsvc - ok
18:00:04.0531 1856 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
18:00:04.0531 1856 lmhosts - ok
18:00:04.0687 1856 LMIGuardianSvc (c2e8bf4d0ce0337f54a83d2ec698570a) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
18:00:04.0687 1856 LMIGuardianSvc - ok
18:00:04.0718 1856 LMIInfo (0317335b15ff3bda8e10197e3434cfc0) C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys
18:00:04.0718 1856 LMIInfo - ok
18:00:04.0765 1856 LMIMaint (f46c8b109b17703e234edc3873ff261c) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
18:00:04.0781 1856 LMIMaint - ok
18:00:04.0812 1856 lmimirr (413ecdcfad9a82804d3674c8d7eec24e) C:\Windows\system32\DRIVERS\lmimirr.sys
18:00:04.0812 1856 lmimirr - ok
18:00:04.0827 1856 LMIRfsClientNP - ok
18:00:04.0859 1856 LMIRfsDriver (c57d3faa50e6f395759ffb7c709bd944) C:\Windows\system32\drivers\LMIRfsDriver.sys
18:00:04.0874 1856 LMIRfsDriver - ok
18:00:04.0937 1856 LogMeIn (d3760bc17e1755091b7120cf32dbf56b) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
18:00:04.0937 1856 LogMeIn - ok
18:00:04.0983 1856 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
18:00:04.0983 1856 LSI_FC - ok
18:00:05.0015 1856 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
18:00:05.0015 1856 LSI_SAS - ok
18:00:05.0046 1856 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:00:05.0061 1856 LSI_SAS2 - ok
18:00:05.0077 1856 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:00:05.0077 1856 LSI_SCSI - ok
18:00:05.0139 1856 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
18:00:05.0139 1856 luafv - ok
18:00:05.0186 1856 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
18:00:05.0186 1856 Mcx2Svc - ok
18:00:05.0217 1856 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
18:00:05.0217 1856 megasas - ok
18:00:05.0264 1856 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
18:00:05.0264 1856 MegaSR - ok
18:00:05.0280 1856 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
18:00:05.0295 1856 MMCSS - ok
18:00:05.0311 1856 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
18:00:05.0311 1856 Modem - ok
18:00:05.0358 1856 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
18:00:05.0358 1856 monitor - ok
18:00:05.0420 1856 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
18:00:05.0420 1856 mouclass - ok
18:00:05.0451 1856 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
18:00:05.0451 1856 mouhid - ok
18:00:05.0483 1856 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
18:00:05.0483 1856 mountmgr - ok
18:00:05.0529 1856 MpFilter (c177a7ebf5e8a0b596f618870516cab8) C:\Windows\system32\DRIVERS\MpFilter.sys
18:00:05.0529 1856 MpFilter - ok
18:00:05.0576 1856 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
18:00:05.0592 1856 mpio - ok
18:00:05.0607 1856 MpNWMon (8fbf6b31fe8af1833d93c5913d5b4d55) C:\Windows\system32\DRIVERS\MpNWMon.sys
18:00:05.0607 1856 MpNWMon - ok
18:00:05.0639 1856 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
18:00:05.0639 1856 mpsdrv - ok
18:00:05.0732 1856 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
18:00:05.0795 1856 MpsSvc - ok
18:00:05.0841 1856 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
18:00:05.0841 1856 MRxDAV - ok
18:00:05.0888 1856 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
18:00:05.0888 1856 mrxsmb - ok
18:00:05.0951 1856 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:00:05.0951 1856 mrxsmb10 - ok
18:00:05.0966 1856 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:00:05.0982 1856 mrxsmb20 - ok
18:00:05.0997 1856 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
18:00:05.0997 1856 msahci - ok
18:00:06.0029 1856 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
18:00:06.0029 1856 msdsm - ok
18:00:06.0060 1856 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
18:00:06.0075 1856 MSDTC - ok
18:00:06.0091 1856 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
18:00:06.0091 1856 Msfs - ok
18:00:06.0107 1856 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
18:00:06.0107 1856 mshidkmdf - ok
18:00:06.0122 1856 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
18:00:06.0122 1856 msisadrv - ok
18:00:06.0153 1856 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
18:00:06.0153 1856 MSiSCSI - ok
18:00:06.0153 1856 msiserver - ok
18:00:06.0185 1856 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
18:00:06.0185 1856 MSKSSRV - ok
18:00:06.0263 1856 MsMpSvc (157e9e498206a3366baa7e4697bdd947) c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
18:00:06.0263 1856 MsMpSvc - ok
18:00:06.0278 1856 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
18:00:06.0278 1856 MSPCLOCK - ok
18:00:06.0309 1856 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
18:00:06.0309 1856 MSPQM - ok
18:00:06.0372 1856 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
18:00:06.0387 1856 MsRPC - ok
18:00:06.0419 1856 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
18:00:06.0419 1856 mssmbios - ok
18:00:06.0512 1856 MSSQL$MSSMLBIZ - ok
18:00:06.0575 1856 MSSQLServerADHelper (1d89eb4e2a99cabd4e81225f4f4c4b25) c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe
18:00:06.0575 1856 MSSQLServerADHelper - ok
18:00:06.0590 1856 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
18:00:06.0590 1856 MSTEE - ok
18:00:06.0606 1856 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
18:00:06.0606 1856 MTConfig - ok
18:00:06.0621 1856 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
18:00:06.0621 1856 Mup - ok
18:00:06.0699 1856 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
18:00:06.0715 1856 napagent - ok
18:00:06.0762 1856 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
18:00:06.0777 1856 NativeWifiP - ok
18:00:06.0871 1856 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
18:00:06.0887 1856 NDIS - ok
18:00:06.0902 1856 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
18:00:06.0902 1856 NdisCap - ok
18:00:06.0918 1856 Ndisrd - ok
18:00:06.0933 1856 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
18:00:06.0933 1856 NdisTapi - ok
18:00:06.0980 1856 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
18:00:06.0980 1856 Ndisuio - ok
18:00:07.0011 1856 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
18:00:07.0011 1856 NdisWan - ok
18:00:07.0058 1856 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
18:00:07.0058 1856 NDProxy - ok
18:00:07.0105 1856 Net Driver HPZ12 (d4f51e88c71bf8f06ea1be320b0bb75b) C:\Windows\system32\HPZinw12.dll
18:00:07.0105 1856 Net Driver HPZ12 - ok
18:00:07.0121 1856 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
18:00:07.0136 1856 NetBIOS - ok
18:00:07.0167 1856 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
18:00:07.0183 1856 NetBT - ok
18:00:07.0214 1856 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
18:00:07.0230 1856 Netlogon - ok
18:00:07.0277 1856 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
18:00:07.0292 1856 Netman - ok
18:00:07.0339 1856 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
18:00:07.0355 1856 netprofm - ok
18:00:07.0417 1856 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
18:00:07.0417 1856 NetTcpPortSharing - ok
18:00:07.0495 1856 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
18:00:07.0495 1856 nfrd960 - ok
18:00:07.0526 1856 NisDrv (5f7d72cbcdd025af1f38fdeee5646968) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
18:00:07.0526 1856 NisDrv - ok
18:00:07.0635 1856 NisSrv (566ddd5d82520da01d75f81428ac4c38) c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
18:00:07.0635 1856 NisSrv - ok
18:00:07.0745 1856 NitroDriverReadSpool (b8f8dd0c416c6842b3430132d00045ed) C:\Program Files\Common Files\Nitro PDF\Professional\6.0\NitroPDFDriverServicex64.exe
18:00:07.0776 1856 NitroDriverReadSpool - ok
18:00:07.0838 1856 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
18:00:07.0854 1856 NlaSvc - ok
18:00:07.0963 1856 nlsX86cc (087d74074361c82daf7611acc91e030a) C:\Windows\SysWOW64\NLSSRV32.EXE
18:00:07.0963 1856 nlsX86cc - ok
18:00:08.0041 1856 npf (c31fa031335eff434b2d94278e74bcce) C:\Windows\system32\drivers\npf.sys
18:00:08.0041 1856 npf - ok
18:00:08.0072 1856 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
18:00:08.0088 1856 Npfs - ok
18:00:08.0119 1856 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
18:00:08.0119 1856 nsi - ok
18:00:08.0135 1856 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
18:00:08.0135 1856 nsiproxy - ok
18:00:08.0275 1856 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
18:00:08.0291 1856 Ntfs - ok
18:00:08.0415 1856 NuidFltr (d4012918d3a3847b44b888d56bc095d6) C:\Windows\system32\DRIVERS\NuidFltr.sys
18:00:08.0431 1856 NuidFltr - ok
18:00:08.0431 1856 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
18:00:08.0431 1856 Null - ok
18:00:08.0509 1856 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
18:00:08.0509 1856 nvraid - ok
18:00:08.0540 1856 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
18:00:08.0540 1856 nvstor - ok
18:00:08.0571 1856 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
18:00:08.0571 1856 nv_agp - ok
18:00:08.0618 1856 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
18:00:08.0618 1856 ohci1394 - ok
18:00:08.0712 1856 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:00:08.0712 1856 ose - ok
18:00:09.0071 1856 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
18:00:09.0149 1856 osppsvc - ok
18:00:09.0305 1856 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
18:00:09.0320 1856 p2pimsvc - ok
18:00:09.0351 1856 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
18:00:09.0367 1856 p2psvc - ok
18:00:09.0429 1856 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
18:00:09.0429 1856 Parport - ok
18:00:09.0461 1856 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
18:00:09.0461 1856 partmgr - ok
18:00:09.0492 1856 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
18:00:09.0492 1856 PcaSvc - ok
18:00:09.0539 1856 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
18:00:09.0539 1856 pci - ok
18:00:09.0554 1856 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
18:00:09.0554 1856 pciide - ok
18:00:09.0585 1856 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
18:00:09.0585 1856 pcmcia - ok
18:00:09.0663 1856 pcouffin (af7ce12c4f3dc8cb2b07685c916bbcfe) C:\Windows\system32\Drivers\pcouffin.sys
18:00:09.0663 1856 pcouffin - ok
18:00:09.0710 1856 Pcouffin64 (a7a134de374e91d931ba211556293b1b) C:\Windows\system32\Drivers\pcouffin64a.sys
18:00:09.0710 1856 Pcouffin64 - ok
18:00:09.0757 1856 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
18:00:09.0757 1856 pcw - ok
18:00:09.0819 1856 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
18:00:09.0851 1856 PEAUTH - ok
18:00:09.0991 1856 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
18:00:10.0022 1856 PeerDistSvc - ok
18:00:10.0131 1856 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
18:00:10.0131 1856 PerfHost - ok
18:00:10.0303 1856 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
18:00:10.0334 1856 pla - ok
18:00:10.0443 1856 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
18:00:10.0459 1856 PlugPlay - ok
18:00:10.0506 1856 Pml Driver HPZ12 (9a80707d8b6c1806531bfd7399b3cc76) C:\Windows\system32\HPZipm12.dll
18:00:10.0521 1856 Pml Driver HPZ12 - ok
18:00:10.0537 1856 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
18:00:10.0553 1856 PNRPAutoReg - ok
18:00:10.0584 1856 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
18:00:10.0599 1856 PNRPsvc - ok
18:00:10.0662 1856 Point64 (4f0878fd62d5f7444c5f1c4c66d9d293) C:\Windows\system32\DRIVERS\point64.sys
18:00:10.0662 1856 Point64 - ok
18:00:10.0724 1856 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
18:00:10.0755 1856 PolicyAgent - ok
18:00:10.0802 1856 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
18:00:10.0818 1856 Power - ok
18:00:10.0865 1856 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
18:00:10.0865 1856 PptpMiniport - ok
18:00:10.0896 1856 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
18:00:10.0911 1856 Processor - ok
18:00:10.0958 1856 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
18:00:10.0974 1856 ProfSvc - ok
18:00:11.0005 1856 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
18:00:11.0005 1856 ProtectedStorage - ok
18:00:11.0130 1856 ProtexisLicensing (64e413ba0c529aa40c3924bbcc4153db) C:\Windows\SysWOW64\PSIService.exe
18:00:11.0130 1856 ProtexisLicensing - ok
18:00:11.0192 1856 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
18:00:11.0192 1856 Psched - ok
18:00:11.0317 1856 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
18:00:11.0348 1856 ql2300 - ok
18:00:11.0473 1856 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
18:00:11.0473 1856 ql40xx - ok
18:00:11.0520 1856 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
18:00:11.0535 1856 QWAVE - ok
18:00:11.0582 1856 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
18:00:11.0582 1856 QWAVEdrv - ok
18:00:11.0598 1856 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
18:00:11.0613 1856 RasAcd - ok
18:00:11.0645 1856 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
18:00:11.0645 1856 RasAgileVpn - ok
18:00:11.0660 1856 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
18:00:11.0676 1856 RasAuto - ok
18:00:11.0707 1856 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
18:00:11.0723 1856 Rasl2tp - ok
18:00:11.0769 1856 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
18:00:11.0785 1856 RasMan - ok
18:00:11.0816 1856 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
18:00:11.0816 1856 RasPppoe - ok
18:00:11.0832 1856 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
18:00:11.0832 1856 RasSstp - ok
18:00:11.0879 1856 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
18:00:11.0894 1856 rdbss - ok
18:00:11.0941 1856 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
18:00:11.0941 1856 rdpbus - ok
18:00:11.0972 1856 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
18:00:11.0972 1856 RDPCDD - ok
18:00:12.0019 1856 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
18:00:12.0035 1856 RDPDR - ok
18:00:12.0050 1856 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
18:00:12.0050 1856 RDPENCDD - ok
18:00:12.0066 1856 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
18:00:12.0066 1856 RDPREFMP - ok
18:00:12.0128 1856 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
18:00:12.0128 1856 RDPWD - ok
18:00:12.0191 1856 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
18:00:12.0191 1856 rdyboost - ok
18:00:12.0222 1856 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
18:00:12.0222 1856 RemoteAccess - ok
18:00:12.0253 1856 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
18:00:12.0253 1856 RemoteRegistry - ok
18:00:12.0315 1856 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
18:00:12.0315 1856 RFCOMM - ok
18:00:12.0347 1856 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
18:00:12.0347 1856 RpcEptMapper - ok
18:00:12.0378 1856 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
18:00:12.0393 1856 RpcLocator - ok
18:00:12.0456 1856 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
18:00:12.0471 1856 RpcSs - ok
18:00:12.0534 1856 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
18:00:12.0534 1856 rspndr - ok
18:00:12.0596 1856 RTL8167 (3b01789ee4eaee97f5eb46b711387d5e) C:\Windows\system32\DRIVERS\Rt64win7.sys
18:00:12.0596 1856 RTL8167 - ok
18:00:12.0643 1856 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
18:00:12.0643 1856 SamSs - ok
18:00:12.0690 1856 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
18:00:12.0690 1856 sbp2port - ok
18:00:12.0737 1856 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
18:00:12.0752 1856 SCardSvr - ok
18:00:12.0783 1856 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
18:00:12.0783 1856 scfilter - ok
18:00:12.0877 1856 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
18:00:12.0908 1856 Schedule - ok
18:00:12.0939 1856 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
18:00:12.0939 1856 SCPolicySvc - ok
18:00:12.0986 1856 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
18:00:13.0002 1856 SDRSVC - ok
18:00:13.0064 1856 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
18:00:13.0064 1856 secdrv - ok
18:00:13.0095 1856 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
18:00:13.0095 1856 seclogon - ok
18:00:13.0127 1856 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
18:00:13.0127 1856 SENS - ok
18:00:13.0158 1856 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
18:00:13.0158 1856 SensrSvc - ok
18:00:13.0189 1856 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
18:00:13.0205 1856 Serenum - ok
18:00:13.0236 1856 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
18:00:13.0236 1856 Serial - ok
18:00:13.0267 1856 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
18:00:13.0283 1856 sermouse - ok
18:00:13.0329 1856 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
18:00:13.0345 1856 SessionEnv - ok
18:00:13.0376 1856 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
18:00:13.0376 1856 sffdisk - ok
18:00:13.0392 1856 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
18:00:13.0392 1856 sffp_mmc - ok
18:00:13.0407 1856 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
18:00:13.0407 1856 sffp_sd - ok
18:00:13.0423 1856 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
18:00:13.0423 1856 sfloppy - ok
18:00:13.0485 1856 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
18:00:13.0501 1856 SharedAccess - ok
18:00:13.0579 1856 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
18:00:13.0595 1856 ShellHWDetection - ok
18:00:13.0626 1856 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:00:13.0626 1856 SiSRaid2 - ok
18:00:13.0641 1856 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
18:00:13.0641 1856 SiSRaid4 - ok
18:00:13.0688 1856 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
18:00:13.0688 1856 Smb - ok
18:00:13.0735 1856 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
18:00:13.0751 1856 SNMPTRAP - ok
18:00:13.0751 1856 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
18:00:13.0751 1856 spldr - ok
18:00:13.0813 1856 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
18:00:13.0829 1856 Spooler - ok
18:00:14.0047 1856 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
18:00:14.0125 1856 sppsvc - ok
18:00:14.0234 1856 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
18:00:14.0234 1856 sppuinotify - ok
18:00:14.0343 1856 SQLBrowser (86ebd8b1f23e743aad21f4d5b4d40985) c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
18:00:14.0343 1856 SQLBrowser - ok
18:00:14.0421 1856 SQLWriter (3c432a96363097870995e2a3c8b66abd) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
18:00:14.0421 1856 SQLWriter - ok
18:00:14.0499 1856 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
18:00:14.0515 1856 srv - ok
18:00:14.0562 1856 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
18:00:14.0577 1856 srv2 - ok
18:00:14.0609 1856 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
18:00:14.0609 1856 srvnet - ok
18:00:14.0640 1856 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
18:00:14.0655 1856 SSDPSRV - ok
18:00:14.0671 1856 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
18:00:14.0671 1856 SstpSvc - ok
18:00:14.0702 1856 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
18:00:14.0702 1856 stexstor - ok
18:00:14.0749 1856 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
18:00:14.0749 1856 StillCam - ok
18:00:14.0827 1856 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
18:00:14.0858 1856 stisvc - ok
18:00:14.0889 1856 StorSvc (c40841817ef57d491f22eb103da587cc) C:\Windows\system32\storsvc.dll
18:00:14.0905 1856 StorSvc - ok
18:00:14.0936 1856 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
18:00:14.0936 1856 swenum - ok
18:00:14.0983 1856 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
18:00:15.0014 1856 swprv - ok
18:00:15.0186 1856 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
18:00:15.0217 1856 SysMain - ok
18:00:15.0342 1856 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
18:00:15.0357 1856 TabletInputService - ok
18:00:15.0420 1856 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
18:00:15.0435 1856 TapiSrv - ok
18:00:15.0451 1856 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
18:00:15.0467 1856 TBS - ok
18:00:15.0638 1856 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
18:00:15.0669 1856 Tcpip - ok
18:00:15.0857 1856 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
18:00:15.0872 1856 TCPIP6 - ok
18:00:15.0950 1856 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
18:00:15.0950 1856 tcpipreg - ok
18:00:15.0997 1856 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
18:00:15.0997 1856 TDPIPE - ok
18:00:16.0044 1856 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
18:00:16.0044 1856 TDTCP - ok
18:00:16.0091 1856 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
18:00:16.0091 1856 tdx - ok
18:00:16.0325 1856 TeamViewer6 (a409a5c99c29328018e1e3dce9abdc36) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
18:00:16.0356 1856 TeamViewer6 - ok
18:00:16.0434 1856 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
18:00:16.0434 1856 TermDD - ok
18:00:16.0496 1856 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
18:00:16.0512 1856 TermService - ok
18:00:16.0543 1856 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
18:00:16.0559 1856 Themes - ok
18:00:16.0590 1856 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
18:00:16.0590 1856 THREADORDER - ok
18:00:16.0605 1856 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
18:00:16.0621 1856 TrkWks - ok
18:00:16.0668 1856 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
18:00:16.0668 1856 TrustedInstaller - ok
18:00:16.0699 1856 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
18:00:16.0699 1856 tssecsrv - ok
18:00:16.0777 1856 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
18:00:16.0777 1856 TsUsbFlt - ok
18:00:16.0839 1856 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
18:00:16.0839 1856 tunnel - ok
18:00:16.0871 1856 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
18:00:16.0871 1856 uagp35 - ok
18:00:16.0980 1856 uCamMonitor (63f6d08c54d5b3c1b12a6172032055c7) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
18:00:16.0980 1856 uCamMonitor - ok
18:00:17.0042 1856 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
18:00:17.0058 1856 udfs - ok
18:00:17.0120 1856 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
18:00:17.0120 1856 UI0Detect - ok
18:00:17.0167 1856 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
18:00:17.0167 1856 uliagpkx - ok
18:00:17.0229 1856 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
18:00:17.0229 1856 umbus - ok
18:00:17.0245 1856 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
18:00:17.0245 1856 UmPass - ok
18:00:17.0323 1856 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
18:00:17.0339 1856 UmRdpService - ok
18:00:17.0370 1856 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
18:00:17.0385 1856 upnphost - ok
18:00:17.0432 1856 USBAAPL64 (cd03479f2da26500b203ed075c146a7a) C:\Windows\system32\Drivers\usbaapl64.sys
18:00:17.0432 1856 USBAAPL64 - ok
18:00:17.0479 1856 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
18:00:17.0479 1856 usbaudio - ok
18:00:17.0526 1856 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
18:00:17.0541 1856 usbccgp - ok
18:00:17.0573 1856 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
18:00:17.0588 1856 usbcir - ok
18:00:17.0604 1856 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
18:00:17.0619 1856 usbehci - ok
18:00:17.0651 1856 usbfilter (6648c6d7323a2ce0c4776c36cefbcb14) C:\Windows\system32\DRIVERS\usbfilter.sys
18:00:17.0651 1856 usbfilter - ok
18:00:17.0729 1856 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
18:00:17.0744 1856 usbhub - ok
18:00:17.0760 1856 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\DRIVERS\usbohci.sys
18:00:17.0760 1856 usbohci - ok
18:00:17.0791 1856 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
18:00:17.0791 1856 usbprint - ok
18:00:17.0838 1856 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:00:17.0838 1856 USBSTOR - ok
18:00:17.0853 1856 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
18:00:17.0853 1856 usbuhci - ok
18:00:17.0885 1856 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
18:00:17.0885 1856 usbvideo - ok
18:00:17.0900 1856 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
18:00:17.0900 1856 UxSms - ok
18:00:17.0947 1856 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
18:00:17.0947 1856 VaultSvc - ok
18:00:17.0963 1856 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
18:00:17.0963 1856 vdrvroot - ok
18:00:18.0041 1856 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
18:00:18.0056 1856 vds - ok
18:00:18.0103 1856 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
18:00:18.0103 1856 vga - ok
18:00:18.0119 1856 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
18:00:18.0119 1856 VgaSave - ok
18:00:18.0150 1856 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
18:00:18.0150 1856 vhdmp - ok
18:00:18.0181 1856 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
18:00:18.0181 1856 viaide - ok
18:00:18.0197 1856 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
18:00:18.0197 1856 volmgr - ok
18:00:18.0259 1856 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
18:00:18.0259 1856 volmgrx - ok
18:00:18.0290 1856 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
18:00:18.0306 1856 volsnap - ok
18:00:18.0337 1856 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
18:00:18.0337 1856 vsmraid - ok
18:00:18.0493 1856 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
18:00:18.0524 1856 VSS - ok
18:00:18.0649 1856 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
18:00:18.0649 1856 vwifibus - ok
18:00:18.0680 1856 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
18:00:18.0680 1856 vwififlt - ok
18:00:18.0696 1856 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
18:00:18.0696 1856 vwifimp - ok
18:00:18.0774 1856 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
18:00:18.0789 1856 W32Time - ok
18:00:18.0821 1856 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
18:00:18.0821 1856 WacomPen - ok
18:00:18.0883 1856 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
18:00:18.0883 1856 WANARP - ok
18:00:18.0883 1856 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
18:00:18.0899 1856 Wanarpv6 - ok
18:00:19.0023 1856 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
18:00:19.0039 1856 WatAdminSvc - ok
18:00:19.0164 1856 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
18:00:19.0211 1856 wbengine - ok
18:00:19.0320 1856 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
18:00:19.0335 1856 WbioSrvc - ok
18:00:19.0398 1856 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
18:00:19.0445 1856 wcncsvc - ok
18:00:19.0460 1856 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
18:00:19.0460 1856 WcsPlugInService - ok
18:00:19.0507 1856 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
18:00:19.0507 1856 Wd - ok
18:00:19.0569 1856 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
18:00:19.0585 1856 Wdf01000 - ok
18:00:19.0601 1856 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
18:00:19.0601 1856 WdiServiceHost - ok
18:00:19.0601 1856 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
18:00:19.0601 1856 WdiSystemHost - ok
18:00:19.0647 1856 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
18:00:19.0647 1856 WebClient - ok
18:00:19.0663 1856 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
18:00:19.0679 1856 Wecsvc - ok
18:00:19.0694 1856 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
18:00:19.0694 1856 wercplsupport - ok
18:00:19.0725 1856 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
18:00:19.0725 1856 WerSvc - ok
18:00:19.0741 1856 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
18:00:19.0741 1856 WfpLwf - ok
18:00:19.0741 1856 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
18:00:19.0741 1856 WIMMount - ok
18:00:19.0772 1856 WinDefend - ok
18:00:19.0772 1856 WinHttpAutoProxySvc - ok
18:00:19.0835 1856 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
18:00:19.0835 1856 Winmgmt - ok
18:00:19.0959 1856 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
18:00:19.0975 1856 WinRM - ok
18:00:20.0100 1856 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
18:00:20.0100 1856 WinUsb - ok
18:00:20.0178 1856 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
18:00:20.0193 1856 Wlansvc - ok
18:00:20.0349 1856 wlidsvc (7e47c328fc4768cb8beafbcfafa70362) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
18:00:20.0396 1856 wlidsvc - ok
18:00:20.0474 1856 WmBEnum (c6df0ed8289be6cd3c20dfb0b6e36faa) C:\Windows\system32\drivers\WmBEnum.sys
18:00:20.0474 1856 WmBEnum - ok
18:00:20.0505 1856 WmFilter (cda299ec031613957c97f758d9b732cb) C:\Windows\system32\drivers\WmFilter.sys
18:00:20.0505 1856 WmFilter - ok
18:00:20.0521 1856 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
18:00:20.0521 1856 WmiAcpi - ok
18:00:20.0583 1856 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
18:00:20.0583 1856 wmiApSrv - ok
18:00:20.0630 1856 WMPNetworkSvc - ok
18:00:20.0646 1856 WmVirHid (c44b30af4ece75c8376e565e0d4beaff) C:\Windows\system32\drivers\WmVirHid.sys
18:00:20.0646 1856 WmVirHid - ok
18:00:20.0677 1856 WmXlCore (792177c7d55f3224415161ed4b6979a3) C:\Windows\system32\drivers\WmXlCore.sys
18:00:20.0677 1856 WmXlCore - ok
18:00:20.0708 1856 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
18:00:20.0708 1856 WPCSvc - ok
18:00:20.0755 1856 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
18:00:20.0755 1856 WPDBusEnum - ok
18:00:20.0771 1856 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
18:00:20.0771 1856 ws2ifsl - ok
18:00:20.0802 1856 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
18:00:20.0802 1856 wscsvc - ok
18:00:20.0817 1856 WSearch - ok
18:00:20.0942 1856 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
18:00:20.0989 1856 wuauserv - ok
18:00:21.0114 1856 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
18:00:21.0114 1856 WudfPf - ok
18:00:21.0145 1856 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
18:00:21.0161 1856 WUDFRd - ok
18:00:21.0207 1856 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
18:00:21.0207 1856 wudfsvc - ok
18:00:21.0239 1856 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
18:00:21.0254 1856 WwanSvc - ok
18:00:21.0363 1856 {55662437-DA8C-40c0-AADA-2C816A897A49} (74983addca2d9618512c088d856d6615) c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl
18:00:21.0363 1856 {55662437-DA8C-40c0-AADA-2C816A897A49} - ok
18:00:21.0379 1856 MBR (0x1B8) (7e47294038f58c4cea4d3608194686ef) \Device\Harddisk0\DR0
18:00:21.0722 1856 \Device\Harddisk0\DR0 - ok
18:00:21.0722 1856 Boot (0x1200) (926e463016806f92a651f41545d72dcb) \Device\Harddisk0\DR0\Partition0
18:00:21.0722 1856 \Device\Harddisk0\DR0\Partition0 - ok
18:00:21.0769 1856 Boot (0x1200) (6cfcbb00e507ab3c47c25b24df064293) \Device\Harddisk0\DR0\Partition1
18:00:21.0769 1856 \Device\Harddisk0\DR0\Partition1 - ok
18:00:21.0816 1856 Boot (0x1200) (1762f9ff5891736fb3a49e20bf98a7a0) \Device\Harddisk0\DR0\Partition2
18:00:21.0816 1856 \Device\Harddisk0\DR0\Partition2 - ok
18:00:21.0816 1856 ============================================================
18:00:21.0816 1856 Scan finished
18:00:21.0816 1856 ============================================================
18:00:21.0831 2976 Detected object count: 0
18:00:21.0831 2976 Actual detected object count: 0


ESET online scanner results:

C:\ProgramData\Microsoft\Windows\DRM\A05F.tmp.dat probably a variant of Win32/Agent.ICJJHAL trojan cleaned by deleting - quarantined
C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll a variant of Win32/Adware.Yontoo.B application cleaned by deleting - quarantined
C:\ProgramData\Tarma Installer\{DA00D550-BB91-4A26-AAE5-9172D626CAAE}\_Setupx.dll a variant of Win32/Adware.Yontoo.B application cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Chromium\Buddy Browser\doxyvhk.dll a variant of Win32/Kryptik.AFWJ trojan cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Temp\CABD.tmp probably a variant of Win32/Agent.ICJJHAL trojan cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Temp\ICReinstall_Downloader.exe a variant of Win32/InstallCore.T application cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Temp\Addons\{433A7262-9477-AA1A-48F1-DC5598D95094}\babylon.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Temp\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbar4ie.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\Users\Home\AppData\Local\Temp\ICReinstall\cnet2_FreeMouseAutoClickerSetup_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined


aswMBR results:

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-06-12 19:34:01
-----------------------------
19:34:01.259 OS Version: Windows x64 6.1.7601 Service Pack 1
19:34:01.259 Number of processors: 4 586 0x402
19:34:01.259 ComputerName: WOLFF UserName:
19:34:03.271 Initialize success
19:35:23.728 AVAST engine defs: 12061201
19:35:41.293 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
19:35:41.293 Disk 0 Vendor: WDC_____ 01.0 Size: 953674MB BusType: 8
19:35:41.309 Disk 0 MBR read successfully
19:35:41.309 Disk 0 MBR scan
19:35:41.371 Disk 0 unknown MBR code
19:35:41.371 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
19:35:41.402 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 942017 MB offset 206848
19:35:41.465 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 11555 MB offset 1929457664
19:35:41.605 Disk 0 scanning C:\Windows\system32\drivers
19:35:57.767 Service scanning
19:36:31.603 Modules scanning
19:36:31.619 Disk 0 trace - called modules:
19:36:31.634 ntoskrnl.exe CLASSPNP.SYS disk.sys storport.sys hal.dll ahcix64s.sys
19:36:31.650 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80082d7060]
19:36:31.666 3 CLASSPNP.SYS[fffff8800160143f] -> nt!IofCallDriver -> \Device\00000069[0xfffffa80075259c0]
19:36:33.772 AVAST engine scan C:\Windows
19:36:37.391 AVAST engine scan C:\Windows\system32
19:40:27.741 AVAST engine scan C:\Windows\system32\drivers
19:40:48.083 AVAST engine scan C:\Users\Administrator
19:42:11.528 AVAST engine scan C:\ProgramData
19:46:05.294 Scan finished successfully
19:53:43.639 Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
19:53:43.654 The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR.txt"

#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:11:20 AM

Posted 12 June 2012 - 09:21 PM

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log

Download

MiniToolBox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

#9 Holly5778

Holly5778
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:20 AM

Posted 13 June 2012 - 12:23 PM

Ok, done. I see all kinds of things that say error in the MiniToolBox report. Does that mean that something else is wrong with it?

Malwarebytes Anti-Malware log:
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.06.13.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Administrator :: WOLFF [administrator]

6/13/2012 11:59:50 AM
mbam-log-2012-06-13 (11-59-50).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 543624
Time elapsed: 1 hour(s), 8 minute(s), 57 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

MiniToolBox Log:
MiniToolBox by Farbar Version: 09-06-2012
Ran by Administrator (administrator) on 13-06-2012 at 13:11:48
Microsoft Windows 7 Professional Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
::1 localhost


127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com

There are 14884 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Atheros 802.11 a/b/g/n Dualband Wireless Network Module = Wireless Network Connection (Connected)
Realtek PCIe GBE Family Controller = Local Area Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Wolff
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection 2:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
Physical Address. . . . . . . . . : 06-26-82-52-0E-0D
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Atheros 802.11 a/b/g/n Dualband Wireless Network Module
Physical Address. . . . . . . . . : 00-26-82-52-0E-0D
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::c590:cbd7:c005:b708%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.9(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Wednesday, June 13, 2012 9:54:16 AM
Lease Expires . . . . . . . . . . : Thursday, June 14, 2012 12:59:14 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 201336450
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-12-E5-E0-A9-F4-CE-46-2E-43-3E
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Physical Address. . . . . . . . . : F4-CE-46-2E-43-3E
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{4FAB951C-9F2A-41AC-97D4-16A630A5FCB2}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:c1:374:3f57:fef6(Preferred)
Link-local IPv6 Address . . . . . : fe80::c1:374:3f57:fef6%17(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Local Area Connection* 12:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: UnKnown
Address: 192.168.1.1

Name: google.com
Addresses: 2607:f8b0:4004:802::1007
74.125.228.40
74.125.228.46
74.125.228.33
74.125.228.36
74.125.228.35
74.125.228.39
74.125.228.32
74.125.228.34
74.125.228.38
74.125.228.37
74.125.228.41


Pinging google.com [74.125.228.9] with 32 bytes of data:
Reply from 74.125.228.9: bytes=32 time=20ms TTL=54
Reply from 74.125.228.9: bytes=32 time=21ms TTL=54

Ping statistics for 74.125.228.9:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 20ms, Maximum = 21ms, Average = 20ms
Server: UnKnown
Address: 192.168.1.1

Name: yahoo.com
Addresses: 98.139.183.24
209.191.122.70
72.30.38.140


Pinging yahoo.com [209.191.122.70] with 32 bytes of data:
Reply from 209.191.122.70: bytes=32 time=53ms TTL=49
Reply from 209.191.122.70: bytes=32 time=54ms TTL=49

Ping statistics for 209.191.122.70:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 53ms, Maximum = 54ms, Average = 53ms
Server: UnKnown
Address: 192.168.1.1

Name: bleepingcomputer.com
Address: 208.43.87.2


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
12...06 26 82 52 0e 0d ......Microsoft Virtual WiFi Miniport Adapter
11...00 26 82 52 0e 0d ......Atheros 802.11 a/b/g/n Dualband Wireless Network Module
10...f4 ce 46 2e 43 3e ......Realtek PCIe GBE Family Controller
1...........................Software Loopback Interface 1
18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
17...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
19...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.9 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.9 281
192.168.1.9 255.255.255.255 On-link 192.168.1.9 281
192.168.1.255 255.255.255.255 On-link 192.168.1.9 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.9 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.9 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
17 58 ::/0 On-link
1 306 ::1/128 On-link
17 58 2001::/32 On-link
17 306 2001:0:4137:9e76:c1:374:3f57:fef6/128
On-link
11 281 fe80::/64 On-link
17 306 fe80::/64 On-link
17 306 fe80::c1:374:3f57:fef6/128
On-link
11 281 fe80::c590:cbd7:c005:b708/128
On-link
1 306 ff00::/8 On-link
17 306 ff00::/8 On-link
11 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)
Catalog5 06 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [152864] (Apple Inc.)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 10 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)
x64-Catalog5 06 C:\Program Files\Bonjour\mdnsNSP.dll [193824] (Apple Inc.)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 10 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/13/2012 11:30:04 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/13/2012 11:24:28 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/13/2012 11:23:11 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/13/2012 00:31:28 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/12/2012 08:52:49 PM) (Source: Application Hang) (User: )
Description: The program GameClient.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: f38

Start Time: 01cd48fe86ec4cd9

Termination Time: 30

Application Path: C:\Users\Public\Games\Cryptic Studios\Star Trek Online\Live\GameClient.exe

Report Id: 15340cca-b4f2-11e1-b3aa-f4ce462e433e

Error: (06/12/2012 06:06:46 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/12/2012 05:35:07 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (06/12/2012 07:39:29 AM) (Source: Application Error) (User: )
Description: Faulting application name: BM.exe, version: 3.2.0.0, time stamp: 0x4a67e1b6
Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f
Exception code: 0xc0000005
Fault offset: 0x000343d0
Faulting process id: 0x7e8
Faulting application start time: 0xBM.exe0
Faulting application path: BM.exe1
Faulting module path: BM.exe2
Report Id: BM.exe3

Error: (06/12/2012 07:39:11 AM) (Source: Application Error) (User: )
Description: Faulting application name: BM.exe, version: 3.2.0.0, time stamp: 0x4a67e1b6
Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec49b8f
Exception code: 0xc0000005
Fault offset: 0x00033448
Faulting process id: 0x7e8
Faulting application start time: 0xBM.exe0
Faulting application path: BM.exe1
Faulting module path: BM.exe2
Report Id: BM.exe3

Error: (06/12/2012 06:33:05 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to execute command from the offline queue: uninstall "WindowsBase, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil". The error returned was Error: The specified assembly is not installed.
.


System errors:
=============
Error: (06/13/2012 09:54:43 AM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service terminated with the following error:
%%-2147017840

Error: (06/13/2012 09:54:11 AM) (Source: Microsoft Antimalware) (User: )
Description: %%860 grace period has expired. Protection against viruses, spyware, and other potentially unwanted software is disabled.

Expiration Reason: %%873

Expiration Date (UTC): ?6/?13/?2012 1:54:10 PM

Error Code: 0x80092003

Error Description: An error occurred while reading or writing to a file.

Error: (06/13/2012 09:40:36 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/12/2012 00:34:49 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer HOLLY-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{4FAB951C-9F2A-41AC-97D4-16A630A5FCB2}.
The master browser is stopping or an election is being forced.

Error: (06/12/2012 00:26:51 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer HOLLY-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{4FAB951C-9F2A-41AC-97D4-16A630A5FCB2}.
The master browser is stopping or an election is being forced.

Error: (06/12/2012 00:18:51 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer HOLLY-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{4FAB951C-9F2A-41AC-97D4-16A630A5FCB2}.
The master browser is stopping or an election is being forced.

Error: (06/12/2012 08:18:19 AM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service terminated with the following error:
%%-2147017840

Error: (06/12/2012 08:17:48 AM) (Source: Microsoft Antimalware) (User: )
Description: %%860 grace period has expired. Protection against viruses, spyware, and other potentially unwanted software is disabled.

Expiration Reason: %%873

Expiration Date (UTC): ?6/?12/?2012 12:17:48 PM

Error Code: 0x80092003

Error Description: An error occurred while reading or writing to a file.

Error: (06/12/2012 08:16:37 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/12/2012 07:19:52 AM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service terminated with the following error:
%%-2147017840


Microsoft Office Sessions:
=========================
Error: (06/13/2012 11:30:04 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Home\Desktop\esetsmartinstaller_enu.exe

Error: (06/13/2012 11:24:28 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Home\Desktop\esetsmartinstaller_enu.exe

Error: (06/13/2012 11:23:11 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Home\Desktop\esetsmartinstaller_enu.exe

Error: (06/13/2012 00:31:28 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (06/12/2012 08:52:49 PM) (Source: Application Hang)(User: )
Description: GameClient.exe0.0.0.0f3801cd48fe86ec4cd930C:\Users\Public\Games\Cryptic Studios\Star Trek Online\Live\GameClient.exe15340cca-b4f2-11e1-b3aa-f4ce462e433e

Error: (06/12/2012 06:06:46 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V4TQNH46\esetsmartinstaller_enu.exe

Error: (06/12/2012 05:35:07 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Home\Desktop\esetsmartinstaller_enu.exe

Error: (06/12/2012 07:39:29 AM) (Source: Application Error)(User: )
Description: BM.exe3.2.0.04a67e1b6ntdll.dll6.1.7601.177254ec49b8fc0000005000343d07e801cd488ffa317920C:\Program Files (x86)\HP\Button Manager\BM.exeC:\Windows\SysWOW64\ntdll.dll44bdf3bb-b483-11e1-a2b7-f4ce462e433e

Error: (06/12/2012 07:39:11 AM) (Source: Application Error)(User: )
Description: BM.exe3.2.0.04a67e1b6ntdll.dll6.1.7601.177254ec49b8fc0000005000334487e801cd488ffa317920C:\Program Files (x86)\HP\Button Manager\BM.exeC:\Windows\SysWOW64\ntdll.dll39bd72a6-b483-11e1-a2b7-f4ce462e433e

Error: (06/12/2012 06:33:05 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to execute command from the offline queue: uninstall "WindowsBase, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil". The error returned was Error: The specified assembly is not installed.
.


=========================== Installed Programs ============================

µTorrent (Version: 1.8.5)
64 Bit HP CIO Components Installer (Version: 7.2.4)
ABBYY FineReader 6.0 Sprint (Version: 6.00.1395.4512)
Acrobat.com (Version: 2.3.0)
Acrobat.com (Version: 2.3.0.0)
ActiveCheck component for HP Active Support Library (Version: 3.0.0.1)
Adobe Acrobat 9 Pro - English, Français, Deutsch (Version: 9.0.0)
Adobe AIR (Version: 3.1.0.4880)
Adobe Digital Editions
Adobe Flash Player 11 ActiveX 64-bit (Version: 11.1.102.63)
Adobe Flash Player 11 Plugin (Version: 11.1.102.55)
Adobe Reader 9.5.0 (Version: 9.5.0)
Adobe Shockwave Player 11.5 (Version: 11.5.7.609)
AMD USB Filter Driver (Version: 1.0.11.86)
Apple Application Support (Version: 1.3.2)
Apple Mobile Device Support (Version: 3.2.0.47)
Apple Software Update (Version: 2.1.2.120)
ArcSoft Magic-i Visual Effects 2 (Version: 2.0.11.80)
ArcSoft Print Creations - Brochure
ArcSoft Print Creations - Photo Calendar
ArcSoft WebCam Companion 3 (Version: 3.0.9.266)
Ask Toolbar (Version: 1.8.0.0)
ATI Catalyst Install Manager (Version: 3.0.741.0)
Bonjour (Version: 2.0.3.0)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1)
calibre (Version: 0.6.52)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full Existing (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full New (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Light (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Common (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Vista (Version: 2009.0908.2225.38429)
Catalyst Control Center HydraVision Full (Version: 2009.0908.2225.38429)
Catalyst Control Center InstallProxy (Version: 2009.0908.2225.38429)
Catalyst Control Center Localization All (Version: 2009.0908.2225.38429)
ccc-core-static (Version: 2009.0908.2225.38429)
ccc-utility64 (Version: 2009.0908.2225.38429)
CCC Help Chinese Standard (Version: 2009.0908.2224.38429)
CCC Help Chinese Traditional (Version: 2009.0908.2224.38429)
CCC Help Czech (Version: 2009.0908.2224.38429)
CCC Help Danish (Version: 2009.0908.2224.38429)
CCC Help Dutch (Version: 2009.0908.2224.38429)
CCC Help English (Version: 2009.0908.2224.38429)
CCC Help Finnish (Version: 2009.0908.2224.38429)
CCC Help French (Version: 2009.0908.2224.38429)
CCC Help German (Version: 2009.0908.2224.38429)
CCC Help Greek (Version: 2009.0908.2224.38429)
CCC Help Hungarian (Version: 2009.0908.2224.38429)
CCC Help Italian (Version: 2009.0908.2224.38429)
CCC Help Japanese (Version: 2009.0908.2224.38429)
CCC Help Korean (Version: 2009.0908.2224.38429)
CCC Help Norwegian (Version: 2009.0908.2224.38429)
CCC Help Polish (Version: 2009.0908.2224.38429)
CCC Help Portuguese (Version: 2009.0908.2224.38429)
CCC Help Russian (Version: 2009.0908.2224.38429)
CCC Help Spanish (Version: 2009.0908.2224.38429)
CCC Help Swedish (Version: 2009.0908.2224.38429)
CCC Help Thai (Version: 2009.0908.2224.38429)
CCC Help Turkish (Version: 2009.0908.2224.38429)
CCleaner (Version: 3.05)
ConvertXtoDVD 3.6.2.153 (Version: 3.6.2.154a)
Corel Paint Shop Pro Photo XI (Version: 11.20.0000)
Coupon Printer for Windows (Version: 5.0.0.1)
CyberLink DVD Suite Deluxe (Version: 7.0.2115)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
DirectX for Managed Code Update (Summer 2004) (Version: 9.02.2904)
DivX Setup (Version: 1.0.1.5)
DVD Menu Pack for HP MediaSmart Video (Version: 3.1.3224)
Emicsoft M2TS Converter
ESET Online Scanner v3
Google Update Helper (Version: 1.3.21.111)
GoToAssist Express Customer 1.4.0.223
Hardware Diagnostic Tools (Version: 6.0.5247.34)
HP Advisor (Version: 3.3.9512.3162)
HP Button Manager (Version: 3.2)
HP Customer Experience Enhancements (Version: 6.0.1.3)
HP Games (Version: 1.0.0.71)
HP LaserJet Professional CM1410 Series
HP LJ CM1410 MFP Series HP Scan (Version: 1.0.302.0)
HP MediaSmart Demo (Version: 1.00.0000)
HP MediaSmart DVD (Version: 3.1.3317)
HP MediaSmart Music/Photo/Video (Version: 3.1.3422)
HP MediaSmart SmartMenu (Version: 3.1.0.1)
HP MediaSmart/TouchSmart Netflix (Version: 1.0.2.0)
HP Odometer (Version: 2.10.0000)
HP Remote Solution (Version: 1.1.11.0)
HP Setup (Version: 1.2.3560.3170)
HP Support Assistant (Version: 4.2.5.3)
HP Support Information (Version: 10.1.0002)
HP Update (Version: 5.001.000.014)
HP Webcam User's Guide
HPAsset component for HP Active Support Library (Version: 3.0.0.3)
HPLaserJetHelp_LearnCenter (Version: 1.01.0000)
HPLJUT (Version: 1.00.0007)
hppCM1410LaserJetService (Version: 001.007.00319)
hppFaxDrvCM1410 (Version: 003.000.00001)
hppFaxUtilityCM1410 (Version: 000.002.00001)
hppLaserJetService (Version: 002.007.00397)
hppSendFaxCM1410 (Version: 003.000.00001)
hppTLBXFXCM1410 (Version: 001.007.00647)
hpzTLBXFX (Version: 006.007.00770)
HydraVision (Version: 4.2.116.0)
I.R.I.S. OCR (Version: 12.3.4)
iTunes (Version: 10.0.1.22)
Java Auto Updater (Version: 2.0.2.4)
Java™ 6 Update 23 (Version: 6.0.230)
Java™ 6 Update 29 (64-bit) (Version: 6.0.290)
Java™ SE Development Kit 6 Update 17 (Version: 1.6.0.170)
JavaFX™ 1.2 SDK (Version: 1.2.1)
Jawbone Updater (Version: 0.1)
Junk Mail filter update (Version: 15.4.3502.0922)
LabelPrint (Version: 2.5.2017)
LightScribe System Software (Version: 1.18.8.1)
Logitech Gaming Software 64 (Version: )
Logitech Gaming Software 64 (Version: 4.60)
Logitech H760 (Version: 1.0.161)
LogMeIn (Version: 4.1.1848)
Malwarebytes Anti-Malware version 1.61.0.1400 (Version: 1.61.0.1400)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Antimalware (Version: 3.0.8402.2)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft IntelliPoint 8.2 (Version: 8.20.468.0)
Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0)
Microsoft Live Search Toolbar (Version: 3.0.566.0)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Professional 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Primary Interoperability Assemblies 2005 (Version: 8.0.50727.42)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ) (Version: 9.4.5000.00)
Microsoft SQL Server Native Client (Version: 9.00.5000.00)
Microsoft SQL Server Setup Support Files (English) (Version: 9.00.5000.00)
Microsoft SQL Server VSS Writer (Version: 9.00.5000.00)
Microsoft VC9 runtime libraries (Version: 2.0.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Minecraft 1.7.3 Aether+ by Kaise123 v1.5.1
Minecraft 1.7.3 Basic by Kaise123 v1.5.1
Minecraft 1.7.3 Full by Kaise123 v1.5.1
MobileMe Control Panel (Version: 3.1.1.0)
Movie Theme Pack for HP MediaSmart Video (Version: 3.1.3310)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Nitro PDF Professional (Version: 6.2.0.44)
OpenRPG
PictureMover (Version: 3.3.1.19)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Power2Go (Version: 6.0.3304)
PowerDirector (Version: 7.0.3503)
Python 2.6.2 (Version: 2.6.2150)
QuickTime (Version: 7.68.75.0)
RAIDXpert (Version: 3.2.1540.5)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealPlayer
Realtek High Definition Audio Driver (Version: 6.0.1.6196)
RealUpgrade 1.1 (Version: 1.1.0)
Recovery Manager (Version: 5.5.2216)
Roblox
Safari (Version: 5.33.16.0)
SAMSUNG PC Share Manager (Version: 4.0)
Skype™ 5.1 (Version: 5.1.112)
Spybot - Search & Destroy (Version: 1.6.2)
Star Trek Online
TeamSpeak 3 Client
TeamViewer 6 (Version: 6.0.10462)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3502.0922)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8089.726)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
winpcap-nmap 4.11
WinRAR archiver
WinZip 14.5 (Version: 14.5.9095)
X-Lite 3.0
Yahoo! Toolbar

========================= Memory info: ===================================

Percentage of memory in use: 34%
Total physical RAM: 8183.89 MB
Available physical RAM: 5362.88 MB
Total Pagefile: 16365.97 MB
Available Pagefile: 13390.05 MB
Total Virtual: 4095.88 MB
Available Virtual: 3970 MB

========================= Partitions: =====================================

1 Drive c: (HP) (Fixed) (Total:919.94 GB) (Free:710.05 GB) NTFS
2 Drive d: (FACTORY_IMAGE) (Fixed) (Total:11.28 GB) (Free:1.63 GB) NTFS

========================= Users: ========================================

User accounts for \\WOLFF

Administrator Guest Home


**** End of log ****

#10 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:11:20 AM

Posted 13 June 2012 - 12:44 PM

Ok, done. I see all kinds of things that say error in the MiniToolBox report. Does that mean that something else is wrong with it?

they are common

DOwnload

Hosts fix

Download

TFC


Launch it,it will close all running programs

click on START,it should ask for reboot

Turn off your system restore,restart the PC,create a new restore point

http://windows.microsoft.com/en-US/windows7/Turn-System-Restore-on-or-off

Update your JAVA from here

http://java.com/en/download/inc/windows_upgrade_xpi.jsp

Update your antivirus frequently,do not click on suspicious links

Safe surfing :)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users