Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google Rirect and Computer very slow


  • Please log in to reply
23 replies to this topic

#1 achu

achu

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 13 June 2012 - 01:39 PM

Here's my situation:

I've noticed over the past day that when I do google searches and click on the links, I get redirected to other sites. I have downloaded and run Malwarebytes, and ru which initially picked up multiple threats, including files that I see on the redirected urls (such as click.scour, or other click/answer files) and I remove them, reboot, run a new scan, and it either finds a lot less infected files and I repeat the process, or it finds no threats. I then do google searches again, and the problem is there. It seems to happen less frequently now that I have run these programs, but it still does occur. I also get an error message on startup that says "RunDLL" on the tab and has the message "C:\Users\Ria's\AppData\Local\Broderbund\Software\ATI\tuqpmqtt.dll It is affecting both my browsers, Chrome and IE

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:28 PM

Posted 13 June 2012 - 02:18 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)


Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner


Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 bosox1001

bosox1001

  • Members
  • 33 posts
  • OFFLINE
  •  
  • Local time:05:28 PM

Posted 13 June 2012 - 02:31 PM

I read this thread and noticed this is a copy + paste of my exact post.... however, I did not create this thread, and I don't know who this person is?

#4 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 13 June 2012 - 02:40 PM

I read this thread and noticed this is a copy + paste of my exact post.... however, I did not create this thread, and I don't know who this person is?


The Same thing happened to me. Thats why i copied and pasted. Sorry :mellow:

Edited by achu, 13 June 2012 - 02:48 PM.


#5 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 13 June 2012 - 02:46 PM

20:41:20.0294 1956 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
20:41:20.0820 1956 ============================================================
20:41:20.0820 1956 Current date / time: 2012/06/13 20:41:20.0820
20:41:20.0820 1956 SystemInfo:
20:41:20.0820 1956
20:41:20.0820 1956 OS Version: 6.1.7601 ServicePack: 1.0
20:41:20.0820 1956 Product type: Workstation
20:41:20.0820 1956 ComputerName: LAP-PC
20:41:20.0821 1956 UserName: LAP
20:41:20.0821 1956 Windows directory: C:\Windows
20:41:20.0821 1956 System windows directory: C:\Windows
20:41:20.0821 1956 Processor architecture: Intel x86
20:41:20.0821 1956 Number of processors: 2
20:41:20.0821 1956 Page size: 0x1000
20:41:20.0821 1956 Boot type: Normal boot
20:41:20.0821 1956 ============================================================
20:41:22.0501 1956 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
20:41:22.0503 1956 ============================================================
20:41:22.0503 1956 \Device\Harddisk0\DR0:
20:41:22.0503 1956 MBR partitions:
20:41:22.0503 1956 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x64000
20:41:22.0503 1956 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x64800, BlocksNum 0x6144000
20:41:22.0503 1956 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x61A8800, BlocksNum 0x61A8000
20:41:22.0534 1956 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xC351000, BlocksNum 0x61A8000
20:41:22.0564 1956 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x124F9800, BlocksNum 0x61A8000
20:41:22.0590 1956 \Device\Harddisk0\DR0\Partition5: MBR, Type 0x7, StartLBA 0x186A2000, BlocksNum 0x61A8000
20:41:22.0621 1956 \Device\Harddisk0\DR0\Partition6: MBR, Type 0x7, StartLBA 0x1E84A800, BlocksNum 0x6BE3800
20:41:22.0621 1956 ============================================================
20:41:22.0665 1956 C: <-> \Device\Harddisk0\DR0\Partition1
20:41:22.0712 1956 D: <-> \Device\Harddisk0\DR0\Partition3
20:41:22.0758 1956 E: <-> \Device\Harddisk0\DR0\Partition4
20:41:22.0825 1956 F: <-> \Device\Harddisk0\DR0\Partition5
20:41:22.0862 1956 G: <-> \Device\Harddisk0\DR0\Partition6
20:41:22.0917 1956 H: <-> \Device\Harddisk0\DR0\Partition2
20:41:22.0918 1956 ============================================================
20:41:22.0918 1956 Initialize success
20:41:22.0918 1956 ============================================================
20:41:51.0377 1524 ============================================================
20:41:51.0377 1524 Scan started
20:41:51.0377 1524 Mode: Manual; TDLFS;
20:41:51.0377 1524 ============================================================
20:41:54.0957 1524 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
20:41:54.0961 1524 1394ohci - ok
20:41:55.0151 1524 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
20:41:55.0158 1524 ACPI - ok
20:41:55.0216 1524 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
20:41:55.0218 1524 AcpiPmi - ok
20:41:55.0253 1524 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
20:41:55.0260 1524 adp94xx - ok
20:41:55.0304 1524 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
20:41:55.0310 1524 adpahci - ok
20:41:55.0325 1524 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
20:41:55.0328 1524 adpu320 - ok
20:41:55.0470 1524 AdvancedSystemCareService5 (e690647ae0b4111e3d82fce27fdfd9b4) C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
20:41:55.0478 1524 AdvancedSystemCareService5 - ok
20:41:55.0510 1524 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
20:41:55.0523 1524 AeLookupSvc - ok
20:41:55.0578 1524 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
20:41:55.0585 1524 AFD - ok
20:41:55.0632 1524 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
20:41:55.0634 1524 agp440 - ok
20:41:55.0665 1524 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
20:41:55.0667 1524 aic78xx - ok
20:41:55.0693 1524 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
20:41:55.0695 1524 ALG - ok
20:41:55.0711 1524 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
20:41:55.0712 1524 aliide - ok
20:41:55.0723 1524 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
20:41:55.0725 1524 amdagp - ok
20:41:55.0742 1524 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
20:41:55.0743 1524 amdide - ok
20:41:55.0760 1524 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
20:41:55.0762 1524 AmdK8 - ok
20:41:55.0778 1524 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
20:41:55.0780 1524 AmdPPM - ok
20:41:55.0800 1524 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
20:41:55.0803 1524 amdsata - ok
20:41:55.0836 1524 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
20:41:55.0840 1524 amdsbs - ok
20:41:55.0881 1524 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
20:41:55.0883 1524 amdxata - ok
20:41:55.0927 1524 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
20:41:55.0930 1524 AppID - ok
20:41:55.0997 1524 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
20:41:55.0999 1524 AppIDSvc - ok
20:41:56.0047 1524 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
20:41:56.0048 1524 Appinfo - ok
20:41:56.0175 1524 Apple Mobile Device (70d7be78061126dd0c3accdb7e129017) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:41:56.0180 1524 Apple Mobile Device - ok
20:41:56.0214 1524 AppMgmt (a45d184df6a8803da13a0b329517a64a) C:\Windows\System32\appmgmts.dll
20:41:56.0218 1524 AppMgmt - ok
20:41:56.0244 1524 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
20:41:56.0246 1524 arc - ok
20:41:56.0269 1524 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
20:41:56.0272 1524 arcsas - ok
20:41:56.0279 1524 Aspi32 - ok
20:41:56.0300 1524 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
20:41:56.0302 1524 AsyncMac - ok
20:41:56.0349 1524 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
20:41:56.0350 1524 atapi - ok
20:41:56.0421 1524 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
20:41:56.0429 1524 AudioEndpointBuilder - ok
20:41:56.0444 1524 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
20:41:56.0449 1524 Audiosrv - ok
20:41:57.0274 1524 AVGIDSAgent (3ce07fb20b84734cce81cf10d1d7f803) C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
20:41:57.0502 1524 AVGIDSAgent - ok
20:41:57.0643 1524 AVGIDSDriver (b9acb889ba1e0561868c025f95d63e25) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
20:41:57.0646 1524 AVGIDSDriver - ok
20:41:57.0674 1524 AVGIDSEH (13256fc72fa5b3f6d6e8c5957e579b7c) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
20:41:57.0676 1524 AVGIDSEH - ok
20:41:57.0704 1524 AVGIDSFilter (fa0685cc51de5cfd804e7deaa6488e0e) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
20:41:57.0705 1524 AVGIDSFilter - ok
20:41:57.0743 1524 AVGIDSShim (f788b51100d0f40ea176798cce954a1a) C:\Windows\system32\DRIVERS\AVGIDSShim.Sys
20:41:57.0745 1524 AVGIDSShim - ok
20:41:57.0790 1524 Avgmfx86 (5639de66b37d02bd22df4cf3155fba60) C:\Windows\system32\DRIVERS\avgmfx86.sys
20:41:57.0792 1524 Avgmfx86 - ok
20:41:57.0841 1524 Avgrkx86 (d1baf652eda0ae70896276a1fb32c2d4) C:\Windows\system32\DRIVERS\avgrkx86.sys
20:41:57.0842 1524 Avgrkx86 - ok
20:41:57.0863 1524 Avgtdix (aaf0ebcad95f2164cffb544e00392498) C:\Windows\system32\DRIVERS\avgtdix.sys
20:41:57.0868 1524 Avgtdix - ok
20:41:58.0007 1524 avgwd (fc2bc51120a945f7c70376495e4e7737) C:\Program Files\AVG\AVG10\avgwdsvc.exe
20:41:58.0011 1524 avgwd - ok
20:41:58.0054 1524 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
20:41:58.0057 1524 AxInstSV - ok
20:41:58.0092 1524 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
20:41:58.0099 1524 b06bdrv - ok
20:41:58.0148 1524 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
20:41:58.0152 1524 b57nd60x - ok
20:41:58.0191 1524 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
20:41:58.0193 1524 BDESVC - ok
20:41:58.0212 1524 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
20:41:58.0213 1524 Beep - ok
20:41:58.0281 1524 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll
20:41:58.0343 1524 BITS - ok
20:41:58.0364 1524 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
20:41:58.0375 1524 blbdrive - ok
20:41:58.0506 1524 Bonjour Service (673cf4f6bb1fbe09331b526802fbb892) C:\Program Files\Bonjour\mDNSResponder.exe
20:41:58.0512 1524 Bonjour Service - ok
20:41:58.0561 1524 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
20:41:58.0563 1524 bowser - ok
20:41:58.0569 1524 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
20:41:58.0571 1524 BrFiltLo - ok
20:41:58.0599 1524 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
20:41:58.0600 1524 BrFiltUp - ok
20:41:58.0615 1524 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys
20:41:58.0617 1524 BridgeMP - ok
20:41:58.0663 1524 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
20:41:58.0665 1524 Browser - ok
20:41:58.0691 1524 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
20:41:58.0697 1524 Brserid - ok
20:41:58.0708 1524 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
20:41:58.0710 1524 BrSerWdm - ok
20:41:58.0728 1524 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
20:41:58.0730 1524 BrUsbMdm - ok
20:41:58.0736 1524 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
20:41:58.0737 1524 BrUsbSer - ok
20:41:58.0790 1524 BthEnum (2865a5c8e98c70c605f417908cebb3a4) C:\Windows\system32\drivers\BthEnum.sys
20:41:58.0792 1524 BthEnum - ok
20:41:58.0822 1524 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
20:41:58.0824 1524 BTHMODEM - ok
20:41:58.0861 1524 BthPan (ad1872e5829e8a2c3b5b4b641c3eab0e) C:\Windows\system32\DRIVERS\bthpan.sys
20:41:58.0864 1524 BthPan - ok
20:41:58.0906 1524 BTHPORT (c2fbf6d271d9a94d839c416bf186ead9) C:\Windows\System32\Drivers\BTHport.sys
20:41:58.0913 1524 BTHPORT - ok
20:41:58.0961 1524 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
20:41:58.0964 1524 bthserv - ok
20:41:59.0015 1524 BTHUSB (c81e9413a25a439f436b1d4b6a0cf9e9) C:\Windows\System32\Drivers\BTHUSB.sys
20:41:59.0018 1524 BTHUSB - ok
20:41:59.0091 1524 catchme - ok
20:41:59.0120 1524 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
20:41:59.0123 1524 cdfs - ok
20:41:59.0129 1524 cdrom - ok
20:41:59.0185 1524 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
20:41:59.0187 1524 CertPropSvc - ok
20:41:59.0205 1524 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
20:41:59.0207 1524 circlass - ok
20:41:59.0213 1524 cjfb - ok
20:41:59.0266 1524 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
20:41:59.0271 1524 CLFS - ok
20:41:59.0317 1524 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:41:59.0321 1524 clr_optimization_v2.0.50727_32 - ok
20:41:59.0420 1524 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:41:59.0447 1524 clr_optimization_v4.0.30319_32 - ok
20:41:59.0487 1524 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
20:41:59.0489 1524 CmBatt - ok
20:41:59.0530 1524 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
20:41:59.0531 1524 cmdide - ok
20:41:59.0588 1524 CNG (6427525d76f61d0c519b008d3680e8e7) C:\Windows\system32\Drivers\cng.sys
20:41:59.0595 1524 CNG - ok
20:41:59.0607 1524 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
20:41:59.0609 1524 Compbatt - ok
20:41:59.0653 1524 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
20:41:59.0654 1524 CompositeBus - ok
20:41:59.0660 1524 COMSysApp - ok
20:41:59.0696 1524 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
20:41:59.0697 1524 crcdisk - ok
20:41:59.0754 1524 CryptSvc (a585bebf7d054bd9618eda0922d5484a) C:\Windows\system32\cryptsvc.dll
20:41:59.0757 1524 CryptSvc - ok
20:41:59.0791 1524 CSC (3c2177a897b4ca2788c6fb0c3fd81d4b) C:\Windows\system32\drivers\csc.sys
20:41:59.0798 1524 CSC - ok
20:41:59.0859 1524 CscService (15f93b37f6801943360d9eb42485d5d3) C:\Windows\System32\cscsvc.dll
20:41:59.0869 1524 CscService - ok
20:41:59.0929 1524 ctxusbm (cb6ff7012bb5d59d7c12350db795ce1f) C:\Windows\system32\DRIVERS\ctxusbm.sys
20:41:59.0931 1524 ctxusbm - ok
20:41:59.0967 1524 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
20:41:59.0976 1524 DcomLaunch - ok
20:42:00.0006 1524 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
20:42:00.0011 1524 defragsvc - ok
20:42:00.0056 1524 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
20:42:00.0058 1524 DfsC - ok
20:42:00.0139 1524 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
20:42:00.0144 1524 Dhcp - ok
20:42:00.0168 1524 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
20:42:00.0170 1524 discache - ok
20:42:00.0192 1524 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
20:42:00.0194 1524 Disk - ok
20:42:00.0258 1524 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
20:42:00.0263 1524 Dnscache - ok
20:42:00.0326 1524 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
20:42:00.0331 1524 dot3svc - ok
20:42:00.0411 1524 Dot4 (b5e479eb83707dd698f66953e922042c) C:\Windows\system32\DRIVERS\Dot4.sys
20:42:00.0429 1524 Dot4 - ok
20:42:00.0473 1524 Dot4Print (caefd09b6a6249c53a67d55a9a9fcabf) C:\Windows\system32\drivers\Dot4Prt.sys
20:42:00.0475 1524 Dot4Print - ok
20:42:00.0492 1524 dot4usb (cf491ff38d62143203c065260567e2f7) C:\Windows\system32\DRIVERS\dot4usb.sys
20:42:00.0494 1524 dot4usb - ok
20:42:00.0730 1524 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
20:42:00.0736 1524 DPS - ok
20:42:00.0779 1524 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
20:42:00.0781 1524 drmkaud - ok
20:42:00.0991 1524 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
20:42:01.0004 1524 DXGKrnl - ok
20:42:01.0030 1524 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
20:42:01.0033 1524 EapHost - ok
20:42:01.0216 1524 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
20:42:01.0256 1524 ebdrv - ok
20:42:01.0456 1524 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
20:42:01.0459 1524 EFS - ok
20:42:01.0578 1524 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
20:42:01.0588 1524 ehRecvr - ok
20:42:01.0615 1524 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
20:42:01.0617 1524 ehSched - ok
20:42:01.0688 1524 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
20:42:01.0695 1524 elxstor - ok
20:42:01.0749 1524 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
20:42:01.0751 1524 ErrDev - ok
20:42:01.0839 1524 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
20:42:01.0844 1524 EventSystem - ok
20:42:01.0851 1524 ewaw - ok
20:42:01.0887 1524 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
20:42:01.0891 1524 exfat - ok
20:42:01.0909 1524 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
20:42:01.0912 1524 fastfat - ok
20:42:01.0980 1524 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
20:42:01.0989 1524 Fax - ok
20:42:02.0055 1524 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
20:42:02.0058 1524 fdc - ok
20:42:02.0098 1524 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
20:42:02.0101 1524 fdPHost - ok
20:42:02.0114 1524 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
20:42:02.0117 1524 FDResPub - ok
20:42:02.0137 1524 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
20:42:02.0139 1524 FileInfo - ok
20:42:02.0162 1524 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
20:42:02.0164 1524 Filetrace - ok
20:42:02.0193 1524 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
20:42:02.0195 1524 flpydisk - ok
20:42:02.0214 1524 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
20:42:02.0218 1524 FltMgr - ok
20:42:02.0319 1524 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
20:42:02.0331 1524 FontCache - ok
20:42:02.0440 1524 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
20:42:02.0443 1524 FontCache3.0.0.0 - ok
20:42:02.0489 1524 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
20:42:02.0490 1524 FsDepends - ok
20:42:02.0527 1524 fssfltr (b0082808a6856a252f7cdd939892ce50) C:\Windows\system32\DRIVERS\fssfltr.sys
20:42:02.0529 1524 fssfltr - ok
20:42:03.0715 1524 fsssvc (28ddeeec44e988657b732cf404d504cb) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
20:42:03.0776 1524 fsssvc - ok
20:42:04.0906 1524 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
20:42:04.0981 1524 Fs_Rec - ok
20:42:05.0286 1524 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
20:42:05.0308 1524 fvevol - ok
20:42:05.0375 1524 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
20:42:05.0377 1524 gagp30kx - ok
20:42:05.0484 1524 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
20:42:05.0496 1524 GEARAspiWDM - ok
20:42:05.0725 1524 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
20:42:05.0767 1524 gpsvc - ok
20:42:06.0146 1524 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
20:42:06.0155 1524 gupdate - ok
20:42:06.0162 1524 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
20:42:06.0164 1524 gupdatem - ok
20:42:06.0625 1524 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
20:42:06.0681 1524 gusvc - ok
20:42:06.0798 1524 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
20:42:06.0818 1524 hcw85cir - ok
20:42:07.0967 1524 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys
20:42:08.0012 1524 HdAudAddService - ok
20:42:08.0231 1524 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
20:42:08.0237 1524 HDAudBus - ok
20:42:08.0344 1524 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
20:42:08.0358 1524 HidBatt - ok
20:42:08.0637 1524 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
20:42:08.0651 1524 HidBth - ok
20:42:08.0790 1524 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
20:42:08.0800 1524 HidIr - ok
20:42:08.0945 1524 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll
20:42:08.0956 1524 hidserv - ok
20:42:09.0042 1524 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys
20:42:09.0060 1524 HidUsb - ok
20:42:09.0213 1524 hitmanpro35 (72472b9ce5d02e443cff49a40355455d) C:\Windows\system32\drivers\hitmanpro35.sys
20:42:09.0227 1524 hitmanpro35 - ok
20:42:09.0424 1524 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
20:42:09.0439 1524 hkmsvc - ok
20:42:09.0847 1524 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
20:42:09.0882 1524 HomeGroupListener - ok
20:42:10.0188 1524 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
20:42:10.0239 1524 HomeGroupProvider - ok
20:42:11.0537 1524 hpqcxs08 (5da42d24712e00728cea2342a65009b2) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
20:42:11.0624 1524 hpqcxs08 - ok
20:42:11.0955 1524 hpqddsvc (d86a39bf100069444d026d22d9a6e555) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
20:42:11.0980 1524 hpqddsvc - ok
20:42:12.0171 1524 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
20:42:12.0223 1524 HpSAMD - ok
20:42:13.0157 1524 HPSLPSVC (a04f4ac48895774a2cf9d1c9eaaacef0) C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
20:42:13.0198 1524 HPSLPSVC - ok
20:42:13.0531 1524 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
20:42:13.0565 1524 HTTP - ok
20:42:13.0577 1524 hwdatacard - ok
20:42:13.0650 1524 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
20:42:13.0660 1524 hwpolicy - ok
20:42:13.0672 1524 hwusbfake - ok
20:42:13.0762 1524 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
20:42:13.0773 1524 i8042prt - ok
20:42:13.0923 1524 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
20:42:13.0940 1524 iaStorV - ok
20:42:14.0540 1524 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:42:15.0326 1524 idsvc - ok
20:42:17.0049 1524 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
20:42:17.0271 1524 igfx - ok
20:42:17.0413 1524 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
20:42:17.0415 1524 iirsp - ok
20:42:17.0489 1524 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
20:42:17.0502 1524 IKEEXT - ok
20:42:17.0563 1524 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
20:42:17.0565 1524 intelide - ok
20:42:17.0577 1524 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
20:42:17.0579 1524 intelppm - ok
20:42:17.0616 1524 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
20:42:17.0620 1524 IPBusEnum - ok
20:42:17.0640 1524 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:42:17.0642 1524 IpFilterDriver - ok
20:42:17.0694 1524 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
20:42:17.0697 1524 IPMIDRV - ok
20:42:17.0736 1524 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
20:42:17.0739 1524 IPNAT - ok
20:42:17.0850 1524 iPod Service (32cdedd15e2d1a557cd54552ae78ff86) C:\Program Files\iPod\bin\iPodService.exe
20:42:17.0864 1524 iPod Service - ok
20:42:17.0879 1524 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
20:42:17.0881 1524 IRENUM - ok
20:42:17.0939 1524 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
20:42:17.0941 1524 isapnp - ok
20:42:18.0008 1524 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
20:42:18.0012 1524 iScsiPrt - ok
20:42:18.0063 1524 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys
20:42:18.0065 1524 kbdclass - ok
20:42:18.0120 1524 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys
20:42:18.0121 1524 kbdhid - ok
20:42:18.0167 1524 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:42:18.0170 1524 KeyIso - ok
20:42:18.0221 1524 KSecDD (f4647bb23db9038a7536cf6b68f4207f) C:\Windows\system32\Drivers\ksecdd.sys
20:42:18.0224 1524 KSecDD - ok
20:42:18.0285 1524 KSecPkg (e73cae53bbb72ba26918492c6b4c229d) C:\Windows\system32\Drivers\ksecpkg.sys
20:42:18.0289 1524 KSecPkg - ok
20:42:18.0339 1524 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
20:42:18.0347 1524 KtmRm - ok
20:42:18.0409 1524 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll
20:42:18.0416 1524 LanmanServer - ok
20:42:18.0488 1524 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
20:42:18.0507 1524 LanmanWorkstation - ok
20:42:18.0542 1524 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
20:42:18.0545 1524 lltdio - ok
20:42:18.0577 1524 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
20:42:18.0583 1524 lltdsvc - ok
20:42:18.0616 1524 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
20:42:18.0619 1524 lmhosts - ok
20:42:18.0645 1524 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
20:42:18.0647 1524 LSI_FC - ok
20:42:18.0671 1524 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
20:42:18.0674 1524 LSI_SAS - ok
20:42:18.0698 1524 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
20:42:18.0701 1524 LSI_SAS2 - ok
20:42:18.0722 1524 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
20:42:18.0730 1524 LSI_SCSI - ok
20:42:18.0753 1524 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
20:42:18.0755 1524 luafv - ok
20:42:18.0824 1524 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
20:42:18.0825 1524 MBAMProtector - ok
20:42:18.0947 1524 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:42:18.0959 1524 MBAMService - ok
20:42:19.0087 1524 McComponentHostService (f453d1e6d881e8f8717e20ccd4199e85) C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
20:42:19.0092 1524 McComponentHostService - ok
20:42:19.0132 1524 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
20:42:19.0136 1524 Mcx2Svc - ok
20:42:19.0160 1524 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
20:42:19.0162 1524 megasas - ok
20:42:19.0190 1524 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
20:42:19.0195 1524 MegaSR - ok
20:42:19.0230 1524 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
20:42:19.0233 1524 MMCSS - ok
20:42:19.0248 1524 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
20:42:19.0250 1524 Modem - ok
20:42:19.0303 1524 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
20:42:19.0304 1524 monitor - ok
20:42:19.0366 1524 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys
20:42:19.0368 1524 mouclass - ok
20:42:19.0446 1524 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
20:42:19.0448 1524 mouhid - ok
20:42:19.0495 1524 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
20:42:19.0497 1524 mountmgr - ok
20:42:19.0563 1524 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
20:42:19.0566 1524 mpio - ok
20:42:19.0590 1524 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
20:42:19.0592 1524 mpsdrv - ok
20:42:19.0730 1524 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
20:42:19.0755 1524 MRxDAV - ok
20:42:19.0864 1524 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
20:42:19.0867 1524 mrxsmb - ok
20:42:19.0929 1524 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:42:19.0934 1524 mrxsmb10 - ok
20:42:20.0024 1524 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:42:20.0027 1524 mrxsmb20 - ok
20:42:20.0072 1524 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
20:42:20.0074 1524 msahci - ok
20:42:20.0124 1524 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
20:42:20.0126 1524 msdsm - ok
20:42:20.0149 1524 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
20:42:20.0153 1524 MSDTC - ok
20:42:20.0188 1524 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
20:42:20.0190 1524 Msfs - ok
20:42:20.0198 1524 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
20:42:20.0199 1524 mshidkmdf - ok
20:42:20.0251 1524 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
20:42:20.0252 1524 msisadrv - ok
20:42:20.0278 1524 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
20:42:20.0281 1524 MSiSCSI - ok
20:42:20.0289 1524 msiserver - ok
20:42:20.0308 1524 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
20:42:20.0309 1524 MSKSSRV - ok
20:42:20.0321 1524 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
20:42:20.0322 1524 MSPCLOCK - ok
20:42:20.0341 1524 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
20:42:20.0342 1524 MSPQM - ok
20:42:20.0367 1524 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
20:42:20.0370 1524 MsRPC - ok
20:42:20.0389 1524 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
20:42:20.0391 1524 mssmbios - ok
20:42:20.0398 1524 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
20:42:20.0399 1524 MSTEE - ok
20:42:20.0407 1524 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
20:42:20.0409 1524 MTConfig - ok
20:42:20.0431 1524 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
20:42:20.0433 1524 Mup - ok
20:42:20.0490 1524 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
20:42:20.0496 1524 napagent - ok
20:42:20.0515 1524 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
20:42:20.0520 1524 NativeWifiP - ok
20:42:20.0569 1524 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
20:42:20.0580 1524 NDIS - ok
20:42:20.0618 1524 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
20:42:20.0620 1524 NdisCap - ok
20:42:20.0632 1524 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
20:42:20.0633 1524 NdisTapi - ok
20:42:20.0680 1524 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
20:42:20.0681 1524 Ndisuio - ok
20:42:20.0732 1524 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
20:42:20.0735 1524 NdisWan - ok
20:42:20.0752 1524 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
20:42:20.0754 1524 NDProxy - ok
20:42:20.0800 1524 Net Driver HPZ12 (69c503c004f49aee8b8e3067cc047ba7) C:\Windows\system32\HPZinw12.dll
20:42:20.0802 1524 Net Driver HPZ12 - ok
20:42:20.0845 1524 Netaapl (7afd0e39ab15cb355487b7cc19f4e2c5) C:\Windows\system32\DRIVERS\netaapl.sys
20:42:20.0846 1524 Netaapl - ok
20:42:20.0875 1524 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
20:42:20.0877 1524 NetBIOS - ok
20:42:20.0939 1524 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
20:42:20.0943 1524 NetBT - ok
20:42:20.0990 1524 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:42:20.0993 1524 Netlogon - ok
20:42:21.0034 1524 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
20:42:21.0041 1524 Netman - ok
20:42:21.0072 1524 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
20:42:21.0081 1524 netprofm - ok
20:42:21.0208 1524 NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:42:21.0211 1524 NetTcpPortSharing - ok
20:42:21.0259 1524 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
20:42:21.0261 1524 nfrd960 - ok
20:42:21.0322 1524 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
20:42:21.0329 1524 NlaSvc - ok
20:42:21.0438 1524 NMIndexingService (193fa51dddd0bffded1c340f0434999a) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
20:42:21.0445 1524 NMIndexingService - ok
20:42:21.0469 1524 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
20:42:21.0471 1524 Npfs - ok
20:42:21.0492 1524 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
20:42:21.0496 1524 nsi - ok
20:42:21.0533 1524 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
20:42:21.0535 1524 nsiproxy - ok
20:42:21.0658 1524 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
20:42:21.0679 1524 Ntfs - ok
20:42:21.0799 1524 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
20:42:21.0801 1524 Null - ok
20:42:21.0854 1524 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
20:42:21.0857 1524 nvraid - ok
20:42:21.0879 1524 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
20:42:21.0882 1524 nvstor - ok
20:42:21.0905 1524 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
20:42:21.0907 1524 nv_agp - ok
20:42:21.0955 1524 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
20:42:21.0957 1524 ohci1394 - ok
20:42:22.0058 1524 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:42:22.0061 1524 ose - ok
20:42:22.0118 1524 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
20:42:22.0125 1524 p2pimsvc - ok
20:42:22.0178 1524 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
20:42:22.0186 1524 p2psvc - ok
20:42:22.0196 1524 pabyu - ok
20:42:22.0237 1524 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
20:42:22.0240 1524 Parport - ok
20:42:22.0295 1524 partmgr (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
20:42:22.0297 1524 partmgr - ok
20:42:22.0320 1524 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
20:42:22.0322 1524 Parvdm - ok
20:42:22.0340 1524 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
20:42:22.0345 1524 PcaSvc - ok
20:42:22.0406 1524 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
20:42:22.0409 1524 pci - ok
20:42:22.0427 1524 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
20:42:22.0428 1524 pciide - ok
20:42:22.0457 1524 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
20:42:22.0467 1524 pcmcia - ok
20:42:22.0648 1524 PCToolsSSDMonitorSvc (c98cd9ee0012df72206bd519db9780d4) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
20:42:22.0661 1524 PCToolsSSDMonitorSvc - ok
20:42:22.0686 1524 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
20:42:22.0688 1524 pcw - ok
20:42:22.0756 1524 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
20:42:22.0766 1524 PEAUTH - ok
20:42:22.0855 1524 PeerDistSvc (af4d64d2a57b9772cf3801950b8058a6) C:\Windows\system32\peerdistsvc.dll
20:42:22.0875 1524 PeerDistSvc - ok
20:42:23.0026 1524 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
20:42:23.0053 1524 pla - ok
20:42:23.0193 1524 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
20:42:23.0201 1524 PlugPlay - ok
20:42:23.0247 1524 Pml Driver HPZ12 (12b4549d515cb26bb8d375038017ca65) C:\Windows\system32\HPZipm12.dll
20:42:23.0251 1524 Pml Driver HPZ12 - ok
20:42:23.0289 1524 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
20:42:23.0293 1524 PNRPAutoReg - ok
20:42:23.0327 1524 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
20:42:23.0333 1524 PNRPsvc - ok
20:42:23.0403 1524 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
20:42:23.0411 1524 PolicyAgent - ok
20:42:23.0478 1524 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
20:42:23.0484 1524 Power - ok
20:42:23.0534 1524 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
20:42:23.0537 1524 PptpMiniport - ok
20:42:23.0559 1524 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
20:42:23.0561 1524 Processor - ok
20:42:23.0617 1524 ProfSvc (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
20:42:23.0623 1524 ProfSvc - ok
20:42:23.0679 1524 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:42:23.0682 1524 ProtectedStorage - ok
20:42:23.0699 1524 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
20:42:23.0702 1524 Psched - ok
20:42:23.0737 1524 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\Windows\system32\DRIVERS\PxHelp20.sys
20:42:23.0740 1524 PxHelp20 - ok
20:42:23.0835 1524 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
20:42:23.0857 1524 ql2300 - ok
20:42:23.0989 1524 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
20:42:23.0992 1524 ql40xx - ok
20:42:24.0038 1524 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
20:42:24.0045 1524 QWAVE - ok
20:42:24.0061 1524 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
20:42:24.0063 1524 QWAVEdrv - ok
20:42:24.0079 1524 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
20:42:24.0081 1524 RasAcd - ok
20:42:24.0103 1524 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
20:42:24.0105 1524 RasAgileVpn - ok
20:42:24.0130 1524 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
20:42:24.0135 1524 RasAuto - ok
20:42:24.0153 1524 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
20:42:24.0155 1524 Rasl2tp - ok
20:42:24.0228 1524 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
20:42:24.0236 1524 RasMan - ok
20:42:24.0268 1524 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
20:42:24.0271 1524 RasPppoe - ok
20:42:24.0288 1524 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
20:42:24.0290 1524 RasSstp - ok
20:42:24.0345 1524 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
20:42:24.0350 1524 rdbss - ok
20:42:24.0372 1524 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
20:42:24.0374 1524 rdpbus - ok
20:42:24.0418 1524 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
20:42:24.0419 1524 RDPCDD - ok
20:42:24.0480 1524 RDPDR (b973fcfc50dc1434e1970a146f7e3885) C:\Windows\system32\drivers\rdpdr.sys
20:42:24.0483 1524 RDPDR - ok
20:42:24.0504 1524 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
20:42:24.0505 1524 RDPENCDD - ok
20:42:24.0554 1524 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
20:42:24.0559 1524 RDPREFMP - ok
20:42:24.0620 1524 RDPWD (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
20:42:24.0624 1524 RDPWD - ok
20:42:24.0680 1524 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
20:42:24.0684 1524 rdyboost - ok
20:42:24.0754 1524 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
20:42:24.0758 1524 RemoteAccess - ok
20:42:24.0794 1524 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
20:42:24.0799 1524 RemoteRegistry - ok
20:42:24.0835 1524 RFCOMM (cb928d9e6daf51879dd6ba8d02f01321) C:\Windows\system32\DRIVERS\rfcomm.sys
20:42:24.0838 1524 RFCOMM - ok
20:42:24.0911 1524 RichVideo (bd517c7fb119997effbe39d5e4b37b05) C:\Program Files\CyberLink\Shared Files\RichVideo.exe
20:42:24.0915 1524 RichVideo - ok
20:42:24.0944 1524 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
20:42:24.0948 1524 RpcEptMapper - ok
20:42:25.0004 1524 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
20:42:25.0008 1524 RpcLocator - ok
20:42:25.0081 1524 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
20:42:25.0088 1524 RpcSs - ok
20:42:25.0121 1524 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
20:42:25.0124 1524 rspndr - ok
20:42:25.0173 1524 RTL8167 (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
20:42:25.0180 1524 RTL8167 - ok
20:42:25.0316 1524 rtl8192se (8327c64e9a4d052339c16499d08f7d6c) C:\Windows\system32\DRIVERS\rtl8192se.sys
20:42:25.0332 1524 rtl8192se - ok
20:42:25.0392 1524 s3cap (7fa7f2e249a5dcbb7970630e15e1f482) C:\Windows\system32\drivers\vms3cap.sys
20:42:25.0394 1524 s3cap - ok
20:42:25.0447 1524 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:42:25.0449 1524 SamSs - ok
20:42:25.0521 1524 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
20:42:25.0523 1524 sbp2port - ok
20:42:25.0564 1524 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
20:42:25.0569 1524 SCardSvr - ok
20:42:25.0626 1524 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
20:42:25.0629 1524 scfilter - ok
20:42:25.0718 1524 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
20:42:25.0733 1524 Schedule - ok
20:42:25.0796 1524 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
20:42:25.0798 1524 SCPolicySvc - ok
20:42:25.0825 1524 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
20:42:25.0830 1524 SDRSVC - ok
20:42:25.0872 1524 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
20:42:25.0874 1524 secdrv - ok
20:42:25.0901 1524 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
20:42:25.0905 1524 seclogon - ok
20:42:25.0926 1524 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll
20:42:25.0930 1524 SENS - ok
20:42:25.0967 1524 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
20:42:25.0971 1524 SensrSvc - ok
20:42:25.0993 1524 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
20:42:25.0994 1524 Serenum - ok
20:42:26.0022 1524 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
20:42:26.0033 1524 Serial - ok
20:42:26.0086 1524 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
20:42:26.0088 1524 sermouse - ok
20:42:26.0174 1524 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
20:42:26.0179 1524 SessionEnv - ok
20:42:26.0244 1524 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
20:42:26.0293 1524 sffdisk - ok
20:42:26.0374 1524 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
20:42:26.0376 1524 sffp_mmc - ok
20:42:26.0476 1524 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys
20:42:26.0526 1524 sffp_sd - ok
20:42:26.0548 1524 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
20:42:26.0565 1524 sfloppy - ok
20:42:26.0641 1524 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
20:42:26.0650 1524 ShellHWDetection - ok
20:42:26.0698 1524 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
20:42:26.0700 1524 sisagp - ok
20:42:26.0717 1524 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
20:42:26.0719 1524 SiSRaid2 - ok
20:42:26.0740 1524 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
20:42:26.0743 1524 SiSRaid4 - ok
20:42:26.0776 1524 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
20:42:26.0778 1524 Smb - ok
20:42:26.0834 1524 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
20:42:26.0839 1524 SNMPTRAP - ok
20:42:26.0962 1524 Sony PC Companion (5177d14a78e60fd61dcfc6b388e7e971) C:\Program Files\Sony\Sony PC Companion\PCCService.exe
20:42:26.0966 1524 Sony PC Companion - ok
20:42:27.0001 1524 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
20:42:27.0004 1524 spldr - ok
20:42:27.0074 1524 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
20:42:27.0082 1524 Spooler - ok
20:42:27.0295 1524 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
20:42:27.0349 1524 sppsvc - ok
20:42:27.0497 1524 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
20:42:27.0501 1524 sppuinotify - ok
20:42:27.0589 1524 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
20:42:27.0595 1524 srv - ok
20:42:27.0661 1524 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
20:42:27.0666 1524 srv2 - ok
20:42:27.0686 1524 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
20:42:27.0691 1524 srvnet - ok
20:42:27.0759 1524 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
20:42:27.0765 1524 SSDPSRV - ok
20:42:27.0792 1524 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
20:42:27.0797 1524 SstpSvc - ok
20:42:27.0831 1524 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
20:42:27.0833 1524 stexstor - ok
20:42:27.0918 1524 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
20:42:27.0928 1524 StiSvc - ok
20:42:27.0985 1524 storflt (472af0311073dceceaa8fa18ba2bdf89) C:\Windows\system32\drivers\vmstorfl.sys
20:42:27.0987 1524 storflt - ok
20:42:28.0024 1524 StorSvc (0bf669f0a910beda4a32258d363af2a5) C:\Windows\system32\storsvc.dll
20:42:28.0029 1524 StorSvc - ok
20:42:28.0105 1524 storvsc (dcaffd62259e0bdb433dd67b5bb37619) C:\Windows\system32\drivers\storvsc.sys
20:42:28.0107 1524 storvsc - ok
20:42:28.0211 1524 SvcMgr (6d9024b5fdbdb01d700f0e4bc16a448e) C:\Windows\svcmgr.exe
20:42:28.0220 1524 SvcMgr - ok
20:42:28.0243 1524 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
20:42:28.0245 1524 swenum - ok
20:42:28.0302 1524 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
20:42:28.0311 1524 swprv - ok
20:42:28.0369 1524 SynTP (70534d1e4f9ac990536d5fb5b550b3de) C:\Windows\system32\DRIVERS\SynTP.sys
20:42:28.0373 1524 SynTP - ok
20:42:28.0491 1524 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
20:42:28.0512 1524 SysMain - ok
20:42:28.0573 1524 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
20:42:28.0578 1524 TabletInputService - ok
20:42:28.0656 1524 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
20:42:28.0663 1524 TapiSrv - ok
20:42:28.0695 1524 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
20:42:28.0701 1524 TBS - ok
20:42:28.0839 1524 Tcpip (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
20:42:28.0861 1524 Tcpip - ok
20:42:29.0063 1524 TCPIP6 (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
20:42:29.0077 1524 TCPIP6 - ok
20:42:29.0250 1524 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
20:42:29.0253 1524 tcpipreg - ok
20:42:29.0322 1524 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
20:42:29.0324 1524 TDPIPE - ok
20:42:29.0387 1524 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
20:42:29.0389 1524 TDTCP - ok
20:42:29.0449 1524 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
20:42:29.0451 1524 tdx - ok
20:42:29.0505 1524 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
20:42:29.0507 1524 TermDD - ok
20:42:29.0589 1524 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
20:42:29.0600 1524 TermService - ok
20:42:29.0628 1524 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
20:42:29.0632 1524 Themes - ok
20:42:29.0675 1524 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
20:42:29.0678 1524 THREADORDER - ok
20:42:29.0804 1524 TOSHIBA Bluetooth Service (f95208d35a9667c58cf8122ee22805a6) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
20:42:29.0808 1524 TOSHIBA Bluetooth Service - ok
20:42:29.0858 1524 tosporte (90afa1a4451bbbee87c9f18a665d8121) C:\Windows\system32\DRIVERS\tosporte.sys
20:42:29.0860 1524 tosporte - ok
20:42:29.0889 1524 tosrfbd (490a76ab428f34ea676a23e429dd6da4) C:\Windows\system32\DRIVERS\tosrfbd.sys
20:42:29.0894 1524 tosrfbd - ok
20:42:29.0920 1524 tosrfbnp (75cd3c238a0ffc66c4581c3870c09314) C:\Windows\system32\Drivers\tosrfbnp.sys
20:42:29.0922 1524 tosrfbnp - ok
20:42:29.0949 1524 Tosrfcom (b551d3f266dda311256f963e8cfd1e9b) C:\Windows\system32\Drivers\tosrfcom.sys
20:42:29.0952 1524 Tosrfcom - ok
20:42:30.0001 1524 tosrfec (51baa142744e236c3a886479cad99a06) C:\Windows\system32\DRIVERS\tosrfec.sys
20:42:30.0003 1524 tosrfec - ok
20:42:30.0032 1524 Tosrfhid (f3e8762163ee87f3ac95537584cf5b4f) C:\Windows\system32\DRIVERS\Tosrfhid.sys
20:42:30.0034 1524 Tosrfhid - ok
20:42:30.0058 1524 tosrfnds (b2a1a6538245fd69578224bbf2fd4677) C:\Windows\system32\DRIVERS\tosrfnds.sys
20:42:30.0060 1524 tosrfnds - ok
20:42:30.0083 1524 TosRfSnd (3de5cbb4f8eb64563ce08e8ec7458d03) C:\Windows\system32\drivers\tosrfsnd.sys
20:42:30.0085 1524 TosRfSnd - ok
20:42:30.0144 1524 Tosrfusb (af5126fb6e9ed41c99ab7a10e98729cd) C:\Windows\system32\DRIVERS\tosrfusb.sys
20:42:30.0146 1524 Tosrfusb - ok
20:42:30.0182 1524 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
20:42:30.0187 1524 TrkWks - ok
20:42:30.0280 1524 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
20:42:30.0284 1524 TrustedInstaller - ok
20:42:30.0311 1524 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
20:42:30.0313 1524 tssecsrv - ok
20:42:30.0366 1524 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
20:42:30.0368 1524 TsUsbFlt - ok
20:42:30.0428 1524 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
20:42:30.0431 1524 tunnel - ok
20:42:30.0482 1524 TVALZ (792a8b80f8188aba4b2be271583f3e46) C:\Windows\system32\DRIVERS\TVALZ_O.SYS
20:42:30.0484 1524 TVALZ - ok
20:42:30.0521 1524 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
20:42:30.0523 1524 uagp35 - ok
20:42:30.0583 1524 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
20:42:30.0588 1524 udfs - ok
20:42:30.0639 1524 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
20:42:30.0645 1524 UI0Detect - ok
20:42:30.0701 1524 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
20:42:30.0703 1524 uliagpkx - ok
20:42:30.0754 1524 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
20:42:30.0756 1524 umbus - ok
20:42:30.0787 1524 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
20:42:30.0789 1524 UmPass - ok
20:42:30.0838 1524 UmRdpService (409994a8eaceee4e328749c0353527a0) C:\Windows\System32\umrdp.dll
20:42:30.0845 1524 UmRdpService - ok
20:42:30.0882 1524 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
20:42:30.0890 1524 upnphost - ok
20:42:30.0917 1524 USBAAPL (4b8a9c16b6d9258ed99c512aecb8c555) C:\Windows\system32\Drivers\usbaapl.sys
20:42:30.0919 1524 USBAAPL - ok
20:42:30.0979 1524 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys
20:42:30.0981 1524 usbccgp - ok
20:42:31.0040 1524 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
20:42:31.0042 1524 usbcir - ok
20:42:31.0065 1524 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
20:42:31.0068 1524 usbehci - ok
20:42:31.0095 1524 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
20:42:31.0100 1524 usbhub - ok
20:42:31.0118 1524 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\drivers\usbohci.sys
20:42:31.0120 1524 usbohci - ok
20:42:31.0152 1524 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
20:42:31.0154 1524 usbprint - ok
20:42:31.0209 1524 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
20:42:31.0211 1524 usbscan - ok
20:42:31.0265 1524 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:42:31.0269 1524 USBSTOR - ok
20:42:31.0350 1524 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
20:42:31.0352 1524 usbuhci - ok
20:42:31.0401 1524 usbvideo (45f4e7bf43db40a6c6b4d92c76cbc3f2) C:\Windows\System32\Drivers\usbvideo.sys
20:42:31.0404 1524 usbvideo - ok
20:42:31.0458 1524 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
20:42:31.0463 1524 UxSms - ok
20:42:31.0524 1524 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:42:31.0527 1524 VaultSvc - ok
20:42:31.0598 1524 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
20:42:31.0634 1524 vdrvroot - ok
20:42:31.0859 1524 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
20:42:31.0870 1524 vds - ok
20:42:31.0896 1524 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
20:42:31.0898 1524 vga - ok
20:42:31.0920 1524 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
20:42:31.0923 1524 VgaSave - ok
20:42:31.0997 1524 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
20:42:32.0001 1524 vhdmp - ok
20:42:32.0052 1524 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
20:42:32.0054 1524 viaagp - ok
20:42:32.0093 1524 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
20:42:32.0096 1524 ViaC7 - ok
20:42:32.0121 1524 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
20:42:32.0123 1524 viaide - ok
20:42:32.0180 1524 vmbus (c2f2911156fdc7817c52829c86da494e) C:\Windows\system32\drivers\vmbus.sys
20:42:32.0184 1524 vmbus - ok
20:42:32.0238 1524 VMBusHID (d4d77455211e204f370d08f4963063ce) C:\Windows\system32\drivers\VMBusHID.sys
20:42:32.0240 1524 VMBusHID - ok
20:42:32.0267 1524 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
20:42:32.0269 1524 volmgr - ok
20:42:32.0297 1524 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
20:42:32.0302 1524 volmgrx - ok
20:42:32.0365 1524 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
20:42:32.0370 1524 volsnap - ok
20:42:32.0410 1524 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
20:42:32.0414 1524 vsmraid - ok
20:42:32.0519 1524 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
20:42:32.0540 1524 VSS - ok
20:42:32.0569 1524 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
20:42:32.0571 1524 vwifibus - ok
20:42:32.0613 1524 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
20:42:32.0616 1524 vwififlt - ok
20:42:32.0635 1524 vwifimp (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
20:42:32.0637 1524 vwifimp - ok
20:42:32.0702 1524 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
20:42:32.0710 1524 W32Time - ok
20:42:32.0738 1524 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
20:42:32.0740 1524 WacomPen - ok
20:42:32.0800 1524 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
20:42:32.0802 1524 WANARP - ok
20:42:32.0814 1524 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
20:42:32.0815 1524 Wanarpv6 - ok
20:42:32.0940 1524 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe
20:42:32.0961 1524 WatAdminSvc - ok
20:42:33.0152 1524 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
20:42:33.0175 1524 wbengine - ok
20:42:33.0210 1524 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
20:42:33.0217 1524 WbioSrvc - ok
20:42:33.0284 1524 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
20:42:33.0293 1524 wcncsvc - ok
20:42:33.0330 1524 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
20:42:33.0335 1524 WcsPlugInService - ok
20:42:33.0388 1524 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
20:42:33.0390 1524 Wd - ok
20:42:33.0441 1524 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
20:42:33.0449 1524 Wdf01000 - ok
20:42:33.0489 1524 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
20:42:33.0494 1524 WdiServiceHost - ok
20:42:33.0507 1524 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
20:42:33.0512 1524 WdiSystemHost - ok
20:42:33.0575 1524 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
20:42:33.0582 1524 WebClient - ok
20:42:33.0608 1524 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
20:42:33.0615 1524 Wecsvc - ok
20:42:33.0633 1524 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
20:42:33.0638 1524 wercplsupport - ok
20:42:33.0661 1524 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
20:42:33.0665 1524 WerSvc - ok
20:42:33.0693 1524 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
20:42:33.0695 1524 WfpLwf - ok
20:42:33.0712 1524 wg3n - ok
20:42:33.0739 1524 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
20:42:33.0741 1524 WIMMount - ok
20:42:33.0763 1524 WinHttpAutoProxySvc - ok
20:42:33.0813 1524 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
20:42:33.0828 1524 Winmgmt - ok
20:42:33.0926 1524 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
20:42:33.0949 1524 WinRM - ok
20:42:34.0075 1524 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
20:42:34.0077 1524 WinUsb - ok
20:42:34.0145 1524 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
20:42:34.0162 1524 Wlansvc - ok
20:42:34.0310 1524 wlcrasvc (6067acef367e79914af628fa1e9b5330) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
20:42:34.0314 1524 wlcrasvc - ok
20:42:34.0521 1524 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:42:34.0551 1524 wlidsvc - ok
20:42:34.0706 1524 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
20:42:34.0708 1524 WmiAcpi - ok
20:42:34.0805 1524 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
20:42:34.0858 1524 wmiApSrv - ok
20:42:35.0070 1524 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
20:42:35.0089 1524 WMPNetworkSvc - ok
20:42:35.0249 1524 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
20:42:36.0049 1524 WPCSvc - ok
20:42:38.0708 1524 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
20:42:39.0552 1524 WPDBusEnum - ok
20:42:41.0309 1524 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
20:42:41.0311 1524 ws2ifsl - ok
20:42:41.0326 1524 WSearch - ok
20:42:41.0454 1524 WTGService (19636ca5b98ec679484bf3a7ee085da8) C:\Program Files\InternetEverywhere\WTGService.exe
20:42:41.0459 1524 WTGService - ok
20:42:41.0600 1524 wuauserv (3026418a50c5b4761befa632cedb7406) C:\Windows\system32\wuaueng.dll
20:42:41.0632 1524 wuauserv - ok
20:42:41.0774 1524 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
20:42:41.0777 1524 WudfPf - ok
20:42:41.0809 1524 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
20:42:41.0813 1524 WUDFRd - ok
20:42:41.0867 1524 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
20:42:41.0873 1524 wudfsvc - ok
20:42:41.0907 1524 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
20:42:41.0914 1524 WwanSvc - ok
20:42:42.0017 1524 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
20:42:42.0639 1524 \Device\Harddisk0\DR0 - ok
20:42:42.0643 1524 Boot (0x1200) (8ae59619104db8bf236292c19b41f877) \Device\Harddisk0\DR0\Partition0
20:42:42.0644 1524 \Device\Harddisk0\DR0\Partition0 - ok
20:42:42.0667 1524 Boot (0x1200) (1984785d8b7381ecfbbde9c144e580a7) \Device\Harddisk0\DR0\Partition1
20:42:42.0669 1524 \Device\Harddisk0\DR0\Partition1 - ok
20:42:42.0689 1524 Boot (0x1200) (1998c4b8ad1375dadf22e093933fb40d) \Device\Harddisk0\DR0\Partition2
20:42:42.0690 1524 \Device\Harddisk0\DR0\Partition2 - ok
20:42:42.0707 1524 Boot (0x1200) (fdc8b28da05e7357b0d2c6075817000e) \Device\Harddisk0\DR0\Partition3
20:42:42.0709 1524 \Device\Harddisk0\DR0\Partition3 - ok
20:42:42.0742 1524 Boot (0x1200) (020dfbfd81b87277a1cb07449f843a0e) \Device\Harddisk0\DR0\Partition4
20:42:42.0743 1524 \Device\Harddisk0\DR0\Partition4 - ok
20:42:42.0769 1524 Boot (0x1200) (9a44bb59c4f2e50aababc338b772fa6b) \Device\Harddisk0\DR0\Partition5
20:42:42.0771 1524 \Device\Harddisk0\DR0\Partition5 - ok
20:42:42.0788 1524 Boot (0x1200) (3e934227fd26d3bfc40eaa5175f983d4) \Device\Harddisk0\DR0\Partition6
20:42:42.0789 1524 \Device\Harddisk0\DR0\Partition6 - ok
20:42:42.0790 1524 ============================================================
20:42:42.0790 1524 Scan finished
20:42:42.0790 1524 ============================================================
20:42:42.0808 6096 Detected object count: 0
20:42:42.0808 6096 Actual detected object count: 0
20:42:42.0925 5032 ============================================================
20:42:42.0925 5032 Scan started
20:42:42.0925 5032 Mode: Manual; TDLFS;
20:42:42.0925 5032 ============================================================
20:42:43.0549 5032 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
20:42:43.0551 5032 1394ohci - ok
20:42:43.0594 5032 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
20:42:43.0598 5032 ACPI - ok
20:42:43.0630 5032 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
20:42:43.0631 5032 AcpiPmi - ok
20:42:43.0677 5032 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
20:42:43.0681 5032 adp94xx - ok
20:42:43.0711 5032 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
20:42:43.0714 5032 adpahci - ok
20:42:43.0740 5032 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
20:42:43.0742 5032 adpu320 - ok
20:42:43.0891 5032 AdvancedSystemCareService5 (e690647ae0b4111e3d82fce27fdfd9b4) C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
20:42:43.0896 5032 AdvancedSystemCareService5 - ok
20:42:43.0925 5032 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
20:42:43.0926 5032 AeLookupSvc - ok
20:42:43.0983 5032 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
20:42:43.0986 5032 AFD - ok
20:42:44.0024 5032 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
20:42:44.0025 5032 agp440 - ok
20:42:44.0056 5032 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
20:42:44.0058 5032 aic78xx - ok
20:42:44.0096 5032 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
20:42:44.0097 5032 ALG - ok
20:42:44.0113 5032 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
20:42:44.0113 5032 aliide - ok
20:42:44.0138 5032 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
20:42:44.0139 5032 amdagp - ok
20:42:44.0155 5032 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
20:42:44.0156 5032 amdide - ok
20:42:44.0173 5032 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
20:42:44.0174 5032 AmdK8 - ok
20:42:44.0202 5032 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
20:42:44.0203 5032 AmdPPM - ok
20:42:44.0246 5032 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
20:42:44.0248 5032 amdsata - ok
20:42:44.0280 5032 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
20:42:44.0282 5032 amdsbs - ok
20:42:44.0306 5032 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
20:42:44.0307 5032 amdxata - ok
20:42:44.0342 5032 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
20:42:44.0343 5032 AppID - ok
20:42:44.0366 5032 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
20:42:44.0367 5032 AppIDSvc - ok
20:42:44.0405 5032 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
20:42:44.0406 5032 Appinfo - ok
20:42:44.0521 5032 Apple Mobile Device (70d7be78061126dd0c3accdb7e129017) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:42:44.0524 5032 Apple Mobile Device - ok
20:42:44.0561 5032 AppMgmt (a45d184df6a8803da13a0b329517a64a) C:\Windows\System32\appmgmts.dll
20:42:44.0563 5032 AppMgmt - ok
20:42:44.0592 5032 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
20:42:44.0594 5032 arc - ok
20:42:44.0617 5032 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
20:42:44.0618 5032 arcsas - ok
20:42:44.0625 5032 Aspi32 - ok
20:42:44.0636 5032 Scan interrupted by user!
20:42:44.0637 5032 Scan interrupted by user!
20:42:44.0637 5032 Scan interrupted by user!
20:42:44.0638 5032 ============================================================
20:42:44.0638 5032 Scan finished
20:42:44.0638 5032 ============================================================
20:42:44.0658 3080 Detected object count: 0
20:42:44.0658 3080 Actual detected object count: 0
20:42:49.0696 5700 ============================================================
20:42:49.0696 5700 Scan started
20:42:49.0697 5700 Mode: Manual; SigCheck; TDLFS;
20:42:49.0697 5700 ============================================================
20:42:50.0182 5700 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
20:42:50.0373 5700 1394ohci - ok
20:42:50.0415 5700 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
20:42:50.0445 5700 ACPI - ok
20:42:50.0474 5700 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
20:42:50.0539 5700 AcpiPmi - ok
20:42:50.0586 5700 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
20:42:50.0620 5700 adp94xx - ok
20:42:50.0657 5700 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
20:42:50.0686 5700 adpahci - ok
20:42:50.0706 5700 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
20:42:50.0731 5700 adpu320 - ok
20:42:50.0849 5700 AdvancedSystemCareService5 (e690647ae0b4111e3d82fce27fdfd9b4) C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
20:42:50.0896 5700 AdvancedSystemCareService5 - ok
20:42:50.0924 5700 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
20:42:51.0005 5700 AeLookupSvc - ok
20:42:51.0057 5700 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
20:42:51.0130 5700 AFD - ok
20:42:51.0169 5700 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
20:42:51.0192 5700 agp440 - ok
20:42:51.0223 5700 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
20:42:51.0249 5700 aic78xx - ok
20:42:51.0285 5700 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
20:42:51.0433 5700 ALG - ok
20:42:51.0491 5700 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
20:42:51.0512 5700 aliide - ok
20:42:51.0625 5700 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
20:42:51.0651 5700 amdagp - ok
20:42:51.0667 5700 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
20:42:51.0688 5700 amdide - ok
20:42:51.0717 5700 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
20:42:51.0762 5700 AmdK8 - ok
20:42:51.0780 5700 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
20:42:51.0828 5700 AmdPPM - ok
20:42:51.0868 5700 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
20:42:51.0894 5700 amdsata - ok
20:42:51.0924 5700 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
20:42:51.0950 5700 amdsbs - ok
20:42:51.0961 5700 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
20:42:51.0983 5700 amdxata - ok
20:42:52.0019 5700 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
20:42:52.0113 5700 AppID - ok
20:42:52.0133 5700 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
20:42:52.0199 5700 AppIDSvc - ok
20:42:52.0237 5700 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
20:42:52.0298 5700 Appinfo - ok
20:42:52.0410 5700 Apple Mobile Device (70d7be78061126dd0c3accdb7e129017) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:42:52.0429 5700 Apple Mobile Device - ok
20:42:52.0459 5700 AppMgmt (a45d184df6a8803da13a0b329517a64a) C:\Windows\System32\appmgmts.dll
20:42:52.0509 5700 AppMgmt - ok
20:42:52.0555 5700 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
20:42:52.0577 5700 arc - ok
20:42:52.0607 5700 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
20:42:52.0629 5700 arcsas - ok
20:42:52.0635 5700 Aspi32 - ok
20:42:52.0658 5700 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
20:42:52.0768 5700 AsyncMac - ok
20:42:52.0807 5700 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
20:42:52.0829 5700 atapi - ok
20:42:52.0899 5700 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
20:42:52.0965 5700 AudioEndpointBuilder - ok
20:42:52.0979 5700 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
20:42:53.0035 5700 Audiosrv - ok
20:42:53.0622 5700 AVGIDSAgent (3ce07fb20b84734cce81cf10d1d7f803) C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
20:42:53.0839 5700 AVGIDSAgent - ok
20:42:53.0971 5700 AVGIDSDriver (b9acb889ba1e0561868c025f95d63e25) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
20:42:54.0006 5700 AVGIDSDriver - ok
20:42:54.0043 5700 AVGIDSEH (13256fc72fa5b3f6d6e8c5957e579b7c) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
20:42:54.0058 5700 AVGIDSEH - ok
20:42:54.0063 5700 AVGIDSFilter (fa0685cc51de5cfd804e7deaa6488e0e) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
20:42:54.0078 5700 AVGIDSFilter - ok
20:42:54.0113 5700 AVGIDSShim (f788b51100d0f40ea176798cce954a1a) C:\Windows\system32\DRIVERS\AVGIDSShim.Sys
20:42:54.0124 5700 AVGIDSShim - ok
20:42:54.0159 5700 Avgmfx86 (5639de66b37d02bd22df4cf3155fba60) C:\Windows\system32\DRIVERS\avgmfx86.sys
20:42:54.0172 5700 Avgmfx86 - ok
20:42:54.0199 5700 Avgrkx86 (d1baf652eda0ae70896276a1fb32c2d4) C:\Windows\system32\DRIVERS\avgrkx86.sys
20:42:54.0211 5700 Avgrkx86 - ok
20:42:54.0233 5700 Avgtdix (aaf0ebcad95f2164cffb544e00392498) C:\Windows\system32\DRIVERS\avgtdix.sys
20:42:54.0253 5700 Avgtdix - ok
20:42:54.0354 5700 avgwd (fc2bc51120a945f7c70376495e4e7737) C:\Program Files\AVG\AVG10\avgwdsvc.exe
20:42:54.0372 5700 avgwd - ok
20:42:54.0413 5700 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
20:42:54.0468 5700 AxInstSV - ok
20:42:54.0519 5700 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
20:42:54.0564 5700 b06bdrv - ok
20:42:54.0585 5700 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
20:42:54.0610 5700 b57nd60x - ok
20:42:54.0638 5700 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
20:42:54.0706 5700 BDESVC - ok
20:42:54.0726 5700 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
20:42:54.0789 5700 Beep - ok
20:42:54.0857 5700 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll
20:42:54.0916 5700 BITS - ok
20:42:54.0934 5700 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
20:42:54.0961 5700 blbdrive - ok
20:42:55.0060 5700 Bonjour Service (673cf4f6bb1fbe09331b526802fbb892) C:\Program Files\Bonjour\mDNSResponder.exe
20:42:55.0083 5700 Bonjour Service - ok
20:42:55.0119 5700 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
20:42:55.0157 5700 bowser - ok
20:42:55.0164 5700 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
20:42:55.0242 5700 BrFiltLo - ok
20:42:55.0262 5700 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
20:42:55.0325 5700 BrFiltUp - ok
20:42:55.0339 5700 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys
20:42:55.0398 5700 BridgeMP - ok
20:42:55.0442 5700 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
20:42:55.0504 5700 Browser - ok
20:42:55.0525 5700 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
20:42:55.0568 5700 Brserid - ok
20:42:55.0577 5700 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
20:42:55.0614 5700 BrSerWdm - ok
20:42:55.0641 5700 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
20:42:55.0667 5700 BrUsbMdm - ok
20:42:55.0672 5700 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
20:42:55.0712 5700 BrUsbSer - ok
20:42:55.0747 5700 BthEnum (2865a5c8e98c70c605f417908cebb3a4) C:\Windows\system32\drivers\BthEnum.sys
20:42:55.0781 5700 BthEnum - ok
20:42:55.0813 5700 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
20:42:55.0842 5700 BTHMODEM - ok
20:42:55.0874 5700 BthPan (ad1872e5829e8a2c3b5b4b641c3eab0e) C:\Windows\system32\DRIVERS\bthpan.sys
20:42:55.0904 5700 BthPan - ok
20:42:55.0961 5700 BTHPORT (c2fbf6d271d9a94d839c416bf186ead9) C:\Windows\System32\Drivers\BTHport.sys
20:42:56.0000 5700 BTHPORT - ok
20:42:56.0030 5700 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
20:42:56.0081 5700 bthserv - ok
20:42:56.0107 5700 BTHUSB (c81e9413a25a439f436b1d4b6a0cf9e9) C:\Windows\System32\Drivers\BTHUSB.sys
20:42:56.0154 5700 BTHUSB - ok
20:42:56.0214 5700 catchme - ok
20:42:56.0243 5700 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
20:42:56.0295 5700 cdfs - ok
20:42:56.0300 5700 cdrom - ok
20:42:56.0341 5700 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
20:42:56.0388 5700 CertPropSvc - ok
20:42:56.0407 5700 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
20:42:56.0434 5700 circlass - ok
20:42:56.0440 5700 cjfb - ok
20:42:56.0482 5700 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
20:42:56.0504 5700 CLFS - ok
20:42:56.0553 5700 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:42:56.0569 5700 clr_optimization_v2.0.50727_32 - ok
20:42:56.0672 5700 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:42:56.0694 5700 clr_optimization_v4.0.30319_32 - ok
20:42:56.0723 5700 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
20:42:56.0754 5700 CmBatt - ok
20:42:56.0788 5700 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
20:42:56.0809 5700 cmdide - ok
20:42:56.0873 5700 CNG (6427525d76f61d0c519b008d3680e8e7) C:\Windows\system32\Drivers\cng.sys
20:42:56.0927 5700 CNG - ok
20:42:56.0952 5700 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
20:42:56.0974 5700 Compbatt - ok
20:42:57.0011 5700 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
20:42:57.0047 5700 CompositeBus - ok
20:42:57.0053 5700 COMSysApp - ok
20:42:57.0089 5700 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
20:42:57.0111 5700 crcdisk - ok
20:42:57.0157 5700 CryptSvc (a585bebf7d054bd9618eda0922d5484a) C:\Windows\system32\cryptsvc.dll
20:42:57.0204 5700 CryptSvc - ok
20:42:57.0242 5700 CSC (3c2177a897b4ca2788c6fb0c3fd81d4b) C:\Windows\system32\drivers\csc.sys
20:42:57.0332 5700 CSC - ok
20:42:57.0418 5700 CscService (15f93b37f6801943360d9eb42485d5d3) C:\Windows\System32\cscsvc.dll
20:42:57.0522 5700 CscService - ok
20:42:57.0567 5700 ctxusbm (cb6ff7012bb5d59d7c12350db795ce1f) C:\Windows\system32\DRIVERS\ctxusbm.sys
20:42:57.0584 5700 ctxusbm - ok
20:42:57.0638 5700 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
20:42:57.0708 5700 DcomLaunch - ok
20:42:57.0755 5700 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
20:42:57.0820 5700 defragsvc - ok
20:42:57.0857 5700 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
20:42:57.0916 5700 DfsC - ok
20:42:57.0958 5700 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
20:42:58.0023 5700 Dhcp - ok
20:42:58.0049 5700 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
20:42:58.0093 5700 discache - ok
20:42:58.0118 5700 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
20:42:58.0135 5700 Disk - ok
20:42:58.0170 5700 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
20:42:58.0213 5700 Dnscache - ok
20:42:58.0260 5700 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
20:42:58.0310 5700 dot3svc - ok
20:42:58.0346 5700 Dot4 (b5e479eb83707dd698f66953e922042c) C:\Windows\system32\DRIVERS\Dot4.sys
20:42:58.0385 5700 Dot4 - ok
20:42:58.0421 5700 Dot4Print (caefd09b6a6249c53a67d55a9a9fcabf) C:\Windows\system32\drivers\Dot4Prt.sys
20:42:58.0447 5700 Dot4Print - ok
20:42:58.0462 5700 dot4usb (cf491ff38d62143203c065260567e2f7) C:\Windows\system32\DRIVERS\dot4usb.sys
20:42:58.0507 5700 dot4usb - ok
20:42:58.0541 5700 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
20:42:58.0593 5700 DPS - ok
20:42:58.0616 5700 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
20:42:58.0637 5700 drmkaud - ok
20:42:58.0697 5700 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
20:42:58.0729 5700 DXGKrnl - ok
20:42:58.0756 5700 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
20:42:58.0801 5700 EapHost - ok
20:42:59.0038 5700 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
20:42:59.0135 5700 ebdrv - ok
20:42:59.0259 5700 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
20:42:59.0311 5700 EFS - ok
20:42:59.0389 5700 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
20:42:59.0436 5700 ehRecvr - ok
20:42:59.0462 5700 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
20:42:59.0516 5700 ehSched - ok
20:42:59.0593 5700 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
20:42:59.0625 5700 elxstor - ok
20:42:59.0664 5700 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
20:42:59.0700 5700 ErrDev - ok
20:42:59.0747 5700 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
20:42:59.0812 5700 EventSystem - ok
20:42:59.0820 5700 ewaw - ok
20:42:59.0858 5700 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
20:42:59.0910 5700 exfat - ok
20:42:59.0935 5700 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
20:42:59.0991 5700 fastfat - ok
20:43:00.0049 5700 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
20:43:00.0092 5700 Fax - ok
20:43:00.0114 5700 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
20:43:00.0144 5700 fdc - ok
20:43:00.0169 5700 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
20:43:00.0210 5700 fdPHost - ok
20:43:00.0228 5700 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
20:43:00.0266 5700 FDResPub - ok
20:43:00.0285 5700 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
20:43:00.0302 5700 FileInfo - ok
20:43:00.0310 5700 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
20:43:00.0347 5700 Filetrace - ok
20:43:00.0363 5700 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
20:43:00.0386 5700 flpydisk - ok
20:43:00.0406 5700 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
20:43:00.0426 5700 FltMgr - ok
20:43:00.0494 5700 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
20:43:00.0545 5700 FontCache - ok
20:43:00.0626 5700 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
20:43:00.0639 5700 FontCache3.0.0.0 - ok
20:43:00.0672 5700 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
20:43:00.0694 5700 FsDepends - ok
20:43:00.0730 5700 fssfltr (b0082808a6856a252f7cdd939892ce50) C:\Windows\system32\DRIVERS\fssfltr.sys
20:43:00.0748 5700 fssfltr - ok
20:43:00.0912 5700 fsssvc (28ddeeec44e988657b732cf404d504cb) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
20:43:00.0969 5700 fsssvc - ok
20:43:01.0098 5700 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
20:43:01.0120 5700 Fs_Rec - ok
20:43:01.0168 5700 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
20:43:01.0200 5700 fvevol - ok
20:43:01.0233 5700 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
20:43:01.0259 5700 gagp30kx - ok
20:43:01.0301 5700 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
20:43:01.0318 5700 GEARAspiWDM - ok
20:43:01.0389 5700 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
20:43:01.0456 5700 gpsvc - ok
20:43:01.0562 5700 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
20:43:01.0581 5700 gupdate - ok
20:43:01.0588 5700 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
20:43:01.0607 5700 gupdatem - ok
20:43:01.0656 5700 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
20:43:01.0676 5700 gusvc - ok
20:43:01.0759 5700 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
20:43:01.0850 5700 hcw85cir - ok
20:43:01.0915 5700 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys
20:43:01.0959 5700 HdAudAddService - ok
20:43:02.0013 5700 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
20:43:02.0049 5700 HDAudBus - ok
20:43:02.0078 5700 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
20:43:02.0107 5700 HidBatt - ok
20:43:02.0132 5700 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
20:43:02.0164 5700 HidBth - ok
20:43:02.0180 5700 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
20:43:02.0220 5700 HidIr - ok
20:43:02.0250 5700 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll
20:43:02.0312 5700 hidserv - ok
20:43:02.0357 5700 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys
20:43:02.0390 5700 HidUsb - ok
20:43:02.0418 5700 hitmanpro35 (72472b9ce5d02e443cff49a40355455d) C:\Windows\system32\drivers\hitmanpro35.sys
20:43:02.0434 5700 hitmanpro35 - ok
20:43:02.0476 5700 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
20:43:02.0525 5700 hkmsvc - ok
20:43:02.0544 5700 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
20:43:02.0604 5700 HomeGroupListener - ok
20:43:02.0646 5700 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
20:43:02.0687 5700 HomeGroupProvider - ok
20:43:02.0833 5700 hpqcxs08 (5da42d24712e00728cea2342a65009b2) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
20:43:02.0854 5700 hpqcxs08 - ok
20:43:02.0876 5700 hpqddsvc (d86a39bf100069444d026d22d9a6e555) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
20:43:02.0892 5700 hpqddsvc - ok
20:43:02.0927 5700 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
20:43:02.0949 5700 HpSAMD - ok
20:43:02.0994 5700 HPSLPSVC (a04f4ac48895774a2cf9d1c9eaaacef0) C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
20:43:03.0026 5700 HPSLPSVC - ok
20:43:03.0092 5700 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
20:43:03.0146 5700 HTTP - ok
20:43:03.0158 5700 hwdatacard - ok
20:43:03.0179 5700 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
20:43:03.0202 5700 hwpolicy - ok
20:43:03.0217 5700 hwusbfake - ok
20:43:03.0258 5700 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
20:43:03.0295 5700 i8042prt - ok
20:43:03.0357 5700 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
20:43:03.0387 5700 iaStorV - ok
20:43:03.0503 5700 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:43:03.0544 5700 idsvc - ok
20:43:04.0094 5700 igfx (dce0b53570703cce580d066f89ef58cd) C:\Windows\system32\DRIVERS\igdkmd32.sys
20:43:04.0317 5700 igfx - ok
20:43:04.0426 5700 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
20:43:04.0445 5700 iirsp - ok
20:43:04.0510 5700 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
20:43:04.0563 5700 IKEEXT - ok
20:43:04.0599 5700 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
20:43:04.0615 5700 intelide - ok
20:43:04.0635 5700 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
20:43:04.0660 5700 intelppm - ok
20:43:04.0692 5700 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
20:43:04.0757 5700 IPBusEnum - ok
20:43:04.0776 5700 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:43:04.0850 5700 IpFilterDriver - ok
20:43:04.0896 5700 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
20:43:04.0920 5700 IPMIDRV - ok
20:43:05.0005 5700 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
20:43:05.0069 5700 IPNAT - ok
20:43:05.0172 5700 iPod Service (32cdedd15e2d1a557cd54552ae78ff86) C:\Program Files\iPod\bin\iPodService.exe
20:43:05.0208 5700 iPod Service - ok
20:43:05.0226 5700 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
20:43:05.0285 5700 IRENUM - ok
20:43:05.0319 5700 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
20:43:05.0343 5700 isapnp - ok
20:43:05.0406 5700 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
20:43:05.0434 5700 iScsiPrt - ok
20:43:05.0467 5700 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys
20:43:05.0489 5700 kbdclass - ok
20:43:05.0523 5700 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys
20:43:05.0557 5700 kbdhid - ok
20:43:05.0604 5700 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:43:05.0626 5700 KeyIso - ok
20:43:05.0668 5700 KSecDD (f4647bb23db9038a7536cf6b68f4207f) C:\Windows\system32\Drivers\ksecdd.sys
20:43:05.0692 5700 KSecDD - ok
20:43:05.0730 5700 KSecPkg (e73cae53bbb72ba26918492c6b4c229d) C:\Windows\system32\Drivers\ksecpkg.sys
20:43:05.0755 5700 KSecPkg - ok
20:43:05.0805 5700 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
20:43:05.0869 5700 KtmRm - ok
20:43:05.0919 5700 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll
20:43:05.0982 5700 LanmanServer - ok
20:43:06.0024 5700 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
20:43:06.0072 5700 LanmanWorkstation - ok
20:43:06.0111 5700 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
20:43:06.0170 5700 lltdio - ok
20:43:06.0202 5700 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
20:43:06.0264 5700 lltdsvc - ok
20:43:06.0285 5700 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
20:43:06.0331 5700 lmhosts - ok
20:43:06.0358 5700 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
20:43:06.0384 5700 LSI_FC - ok
20:43:06.0407 5700 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
20:43:06.0430 5700 LSI_SAS - ok
20:43:06.0445 5700 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
20:43:06.0464 5700 LSI_SAS2 - ok
20:43:06.0490 5700 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
20:43:06.0508 5700 LSI_SCSI - ok
20:43:06.0521 5700 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
20:43:06.0571 5700 luafv - ok
20:43:06.0591 5700 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
20:43:06.0607 5700 MBAMProtector - ok
20:43:06.0684 5700 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
20:43:06.0710 5700 MBAMService - ok
20:43:06.0784 5700 McComponentHostService (f453d1e6d881e8f8717e20ccd4199e85) C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
20:43:06.0802 5700 McComponentHostService - ok
20:43:06.0870 5700 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
20:43:06.0900 5700 Mcx2Svc - ok
20:43:06.0928 5700 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
20:43:06.0946 5700 megasas - ok
20:43:06.0965 5700 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
20:43:06.0987 5700 MegaSR - ok
20:43:07.0020 5700 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
20:43:07.0070 5700 MMCSS - ok
20:43:07.0082 5700 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
20:43:07.0123 5700 Modem - ok
20:43:07.0150 5700 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
20:43:07.0174 5700 monitor - ok
20:43:07.0213 5700 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys
20:43:07.0230 5700 mouclass - ok
20:43:07.0531 5700 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
20:43:07.0650 5700 mouhid - ok
20:43:07.0710 5700 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
20:43:07.0733 5700 mountmgr - ok
20:43:07.0779 5700 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
20:43:07.0803 5700 mpio - ok
20:43:07.0815 5700 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
20:43:07.0867 5700 mpsdrv - ok
20:43:07.0911 5700 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
20:43:07.0949 5700 MRxDAV - ok
20:43:07.0989 5700 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
20:43:08.0026 5700 mrxsmb - ok
20:43:08.0070 5700 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:43:08.0095 5700 mrxsmb10 - ok
20:43:08.0112 5700 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:43:08.0144 5700 mrxsmb20 - ok
20:43:08.0187 5700 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
20:43:08.0209 5700 msahci - ok
20:43:08.0250 5700 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
20:43:08.0276 5700 msdsm - ok
20:43:08.0308 5700 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
20:43:08.0346 5700 MSDTC - ok
20:43:08.0391 5700 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
20:43:08.0440 5700 Msfs - ok
20:43:08.0456 5700 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
20:43:08.0525 5700 mshidkmdf - ok
20:43:08.0554 5700 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
20:43:08.0575 5700 msisadrv - ok
20:43:08.0603 5700 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
20:43:08.0660 5700 MSiSCSI - ok
20:43:08.0667 5700 msiserver - ok
20:43:08.0699 5700 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
20:43:08.0744 5700 MSKSSRV - ok
20:43:08.0757 5700 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
20:43:08.0805 5700 MSPCLOCK - ok
20:43:08.0812 5700 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
20:43:08.0860 5700 MSPQM - ok
20:43:08.0880 5700 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
20:43:08.0899 5700 MsRPC - ok
20:43:08.0959 5700 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
20:43:08.0976 5700 mssmbios - ok
20:43:08.0999 5700 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
20:43:09.0037 5700 MSTEE - ok
20:43:09.0056 5700 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
20:43:09.0078 5700 MTConfig - ok
20:43:09.0100 5700 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
20:43:09.0119 5700 Mup - ok
20:43:09.0169 5700 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
20:43:09.0220 5700 napagent - ok
20:43:09.0240 5700 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
20:43:09.0266 5700 NativeWifiP - ok
20:43:09.0303 5700 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
20:43:09.0326 5700 NDIS - ok
20:43:09.0355 5700 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
20:43:09.0404 5700 NdisCap - ok
20:43:09.0423 5700 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
20:43:09.0455 5700 NdisTapi - ok
20:43:09.0493 5700 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
20:43:09.0523 5700 Ndisuio - ok
20:43:09.0568 5700 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
20:43:09.0595 5700 NdisWan - ok
20:43:09.0611 5700 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
20:43:09.0638 5700 NDProxy - ok
20:43:09.0680 5700 Net Driver HPZ12 (69c503c004f49aee8b8e3067cc047ba7) C:\Windows\system32\HPZinw12.dll
20:43:09.0685 5700 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:43:09.0685 5700 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:43:09.0725 5700 Netaapl (7afd0e39ab15cb355487b7cc19f4e2c5) C:\Windows\system32\DRIVERS\netaapl.sys
20:43:09.0750 5700 Netaapl - ok
20:43:09.0777 5700 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
20:43:09.0828 5700 NetBIOS - ok
20:43:09.0861 5700 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
20:43:09.0894 5700 NetBT - ok
20:43:09.0925 5700 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:43:09.0938 5700 Netlogon - ok
20:43:09.0976 5700 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
20:43:10.0014 5700 Netman - ok
20:43:10.0040 5700 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
20:43:10.0094 5700 netprofm - ok
20:43:10.0177 5700 NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:43:10.0196 5700 NetTcpPortSharing - ok
20:43:10.0237 5700 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
20:43:10.0259 5700 nfrd960 - ok
20:43:10.0317 5700 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
20:43:10.0372 5700 NlaSvc - ok
20:43:10.0476 5700 NMIndexingService (193fa51dddd0bffded1c340f0434999a) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
20:43:10.0497 5700 NMIndexingService - ok
20:43:10.0517 5700 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
20:43:10.0576 5700 Npfs - ok
20:43:10.0617 5700 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
20:43:10.0668 5700 nsi - ok
20:43:10.0702 5700 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
20:43:10.0764 5700 nsiproxy - ok
20:43:10.0863 5700 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
20:43:10.0917 5700 Ntfs - ok
20:43:11.0024 5700 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
20:43:11.0077 5700 Null - ok
20:43:11.0125 5700 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
20:43:11.0148 5700 nvraid - ok
20:43:11.0172 5700 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
20:43:11.0198 5700 nvstor - ok
20:43:11.0232 5700 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
20:43:11.0258 5700 nv_agp - ok
20:43:11.0300 5700 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
20:43:11.0345 5700 ohci1394 - ok
20:43:11.0437 5700 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:43:11.0458 5700 ose - ok
20:43:11.0518 5700 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
20:43:11.0560 5700 p2pimsvc - ok
20:43:11.0608 5700 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
20:43:11.0643 5700 p2psvc - ok
20:43:11.0653 5700 pabyu - ok
20:43:11.0706 5700 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
20:43:11.0731 5700 Parport - ok
20:43:11.0763 5700 partmgr (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
20:43:11.0785 5700 partmgr - ok
20:43:11.0800 5700 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
20:43:11.0836 5700 Parvdm - ok
20:43:12.0084 5700 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
20:43:12.0115 5700 PcaSvc - ok
20:43:12.0164 5700 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
20:43:12.0188 5700 pci - ok
20:43:12.0206 5700 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
20:43:12.0227 5700 pciide - ok
20:43:12.0271 5700 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
20:43:12.0296 5700 pcmcia - ok
20:43:12.0425 5700 PCToolsSSDMonitorSvc (c98cd9ee0012df72206bd519db9780d4) C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
20:43:12.0458 5700 PCToolsSSDMonitorSvc - ok
20:43:12.0475 5700 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
20:43:12.0500 5700 pcw - ok
20:43:12.0564 5700 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
20:43:12.0630 5700 PEAUTH - ok
20:43:12.0695 5700 PeerDistSvc (af4d64d2a57b9772cf3801950b8058a6) C:\Windows\system32\peerdistsvc.dll
20:43:12.0751 5700 PeerDistSvc - ok
20:43:12.0873 5700 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
20:43:12.0935 5700 pla - ok
20:43:13.0075 5700 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
20:43:13.0137 5700 PlugPlay - ok
20:43:13.0181 5700 Pml Driver HPZ12 (12b4549d515cb26bb8d375038017ca65) C:\Windows\system32\HPZipm12.dll
20:43:13.0206 5700 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:43:13.0206 5700 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:43:13.0246 5700 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
20:43:13.0288 5700 PNRPAutoReg - ok
20:43:13.0316 5700 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
20:43:13.0345 5700 PNRPsvc - ok
20:43:13.0413 5700 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
20:43:13.0472 5700 PolicyAgent - ok
20:43:13.0516 5700 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
20:43:13.0568 5700 Power - ok
20:43:13.0626 5700 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
20:43:13.0679 5700 PptpMiniport - ok
20:43:13.0694 5700 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
20:43:13.0717 5700 Processor - ok
20:43:13.0766 5700 ProfSvc (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
20:43:13.0822 5700 ProfSvc - ok
20:43:13.0870 5700 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:43:13.0897 5700 ProtectedStorage - ok
20:43:13.0937 5700 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
20:43:14.0001 5700 Psched - ok
20:43:14.0039 5700 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\Windows\system32\DRIVERS\PxHelp20.sys
20:43:14.0056 5700 PxHelp20 - ok
20:43:14.0167 5700 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
20:43:14.0228 5700 ql2300 - ok
20:43:14.0378 5700 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
20:43:14.0403 5700 ql40xx - ok
20:43:14.0449 5700 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
20:43:14.0476 5700 QWAVE - ok
20:43:14.0496 5700 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
20:43:14.0519 5700 QWAVEdrv - ok
20:43:14.0537 5700 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
20:43:14.0579 5700 RasAcd - ok
20:43:14.0605 5700 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
20:43:14.0639 5700 RasAgileVpn - ok
20:43:14.0667 5700 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
20:43:14.0721 5700 RasAuto - ok
20:43:14.0755 5700 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
20:43:14.0820 5700 Rasl2tp - ok
20:43:14.0878 5700 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
20:43:14.0924 5700 RasMan - ok
20:43:14.0957 5700 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
20:43:15.0000 5700 RasPppoe - ok
20:43:15.0012 5700 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
20:43:15.0058 5700 RasSstp - ok
20:43:15.0086 5700 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
20:43:15.0127 5700 rdbss - ok
20:43:15.0141 5700 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
20:43:15.0156 5700 rdpbus - ok
20:43:15.0198 5700 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
20:43:15.0234 5700 RDPCDD - ok
20:43:15.0279 5700 RDPDR (b973fcfc50dc1434e1970a146f7e3885) C:\Windows\system32\drivers\rdpdr.sys
20:43:15.0320 5700 RDPDR - ok
20:43:15.0328 5700 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
20:43:15.0358 5700 RDPENCDD - ok
20:43:15.0379 5700 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
20:43:15.0404 5700 RDPREFMP - ok
20:43:15.0455 5700 RDPWD (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
20:43:15.0505 5700 RDPWD - ok
20:43:15.0557 5700 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
20:43:15.0584 5700 rdyboost - ok
20:43:15.0625 5700 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
20:43:15.0672 5700 RemoteAccess - ok
20:43:15.0705 5700 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
20:43:15.0761 5700 RemoteRegistry - ok
20:43:15.0791 5700 RFCOMM (cb928d9e6daf51879dd6ba8d02f01321) C:\Windows\system32\DRIVERS\rfcomm.sys
20:43:15.0822 5700 RFCOMM - ok
20:43:15.0903 5700 RichVideo (bd517c7fb119997effbe39d5e4b37b05) C:\Program Files\CyberLink\Shared Files\RichVideo.exe
20:43:15.0921 5700 RichVideo ( UnsignedFile.Multi.Generic ) - warning
20:43:15.0921 5700 RichVideo - detected UnsignedFile.Multi.Generic (1)
20:43:15.0958 5700 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
20:43:16.0023 5700 RpcEptMapper - ok
20:43:16.0062 5700 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
20:43:16.0091 5700 RpcLocator - ok
20:43:16.0157 5700 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
20:43:16.0209 5700 RpcSs - ok
20:43:16.0246 5700 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
20:43:16.0310 5700 rspndr - ok
20:43:16.0383 5700 RTL8167 (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
20:43:16.0410 5700 RTL8167 - ok
20:43:16.0490 5700 rtl8192se (8327c64e9a4d052339c16499d08f7d6c) C:\Windows\system32\DRIVERS\rtl8192se.sys
20:43:16.0533 5700 rtl8192se - ok
20:43:16.0573 5700 s3cap (7fa7f2e249a5dcbb7970630e15e1f482) C:\Windows\system32\drivers\vms3cap.sys
20:43:16.0619 5700 s3cap - ok
20:43:16.0660 5700 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:43:16.0683 5700 SamSs - ok
20:43:16.0721 5700 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
20:43:16.0745 5700 sbp2port - ok
20:43:16.0776 5700 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
20:43:16.0833 5700 SCardSvr - ok
20:43:16.0873 5700 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
20:43:16.0907 5700 scfilter - ok
20:43:16.0980 5700 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
20:43:17.0037 5700 Schedule - ok
20:43:17.0076 5700 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
20:43:17.0110 5700 SCPolicySvc - ok
20:43:17.0157 5700 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
20:43:17.0201 5700 SDRSVC - ok
20:43:17.0230 5700 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
20:43:17.0280 5700 secdrv - ok
20:43:17.0302 5700 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
20:43:17.0364 5700 seclogon - ok
20:43:17.0384 5700 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll
20:43:17.0437 5700 SENS - ok
20:43:17.0469 5700 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
20:43:17.0500 5700 SensrSvc - ok
20:43:17.0517 5700 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
20:43:17.0548 5700 Serenum - ok
20:43:17.0581 5700 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
20:43:17.0614 5700 Serial - ok
20:43:17.0656 5700 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
20:43:17.0678 5700 sermouse - ok
20:43:17.0744 5700 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
20:43:17.0802 5700 SessionEnv - ok
20:43:17.0847 5700 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
20:43:17.0885 5700 sffdisk - ok
20:43:17.0910 5700 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
20:43:17.0941 5700 sffp_mmc - ok
20:43:17.0967 5700 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys
20:43:17.0998 5700 sffp_sd - ok
20:43:18.0040 5700 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
20:43:18.0068 5700 sfloppy - ok
20:43:18.0128 5700 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
20:43:18.0194 5700 ShellHWDetection - ok
20:43:18.0234 5700 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
20:43:18.0264 5700 sisagp - ok
20:43:18.0286 5700 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
20:43:18.0310 5700 SiSRaid2 - ok
20:43:18.0344 5700 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
20:43:18.0368 5700 SiSRaid4 - ok
20:43:18.0389 5700 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
20:43:18.0441 5700 Smb - ok
20:43:18.0481 5700 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
20:43:18.0502 5700 SNMPTRAP - ok
20:43:18.0619 5700 Sony PC Companion (5177d14a78e60fd61dcfc6b388e7e971) C:\Program Files\Sony\Sony PC Companion\PCCService.exe
20:43:18.0632 5700 Sony PC Companion - ok
20:43:18.0659 5700 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
20:43:18.0675 5700 spldr - ok
20:43:18.0730 5700 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
20:43:18.0774 5700 Spooler - ok
20:43:18.0933 5700 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
20:43:19.0024 5700 sppsvc - ok
20:43:19.0169 5700 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
20:43:19.0197 5700 sppuinotify - ok
20:43:19.0270 5700 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
20:43:19.0324 5700 srv - ok
20:43:19.0383 5700 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
20:43:19.0427 5700 srv2 - ok
20:43:19.0457 5700 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
20:43:19.0485 5700 srvnet - ok
20:43:19.0528 5700 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
20:43:19.0582 5700 SSDPSRV - ok
20:43:19.0617 5700 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
20:43:19.0674 5700 SstpSvc - ok
20:43:19.0700 5700 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
20:43:19.0722 5700 stexstor - ok
20:43:19.0785 5700 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
20:43:19.0837 5700 StiSvc - ok
20:43:19.0876 5700 storflt (472af0311073dceceaa8fa18ba2bdf89) C:\Windows\system32\drivers\vmstorfl.sys
20:43:19.0898 5700 storflt - ok
20:43:19.0937 5700 StorSvc (0bf669f0a910beda4a32258d363af2a5) C:\Windows\system32\storsvc.dll
20:43:19.0970 5700 StorSvc - ok
20:43:20.0008 5700 storvsc (dcaffd62259e0bdb433dd67b5bb37619) C:\Windows\system32\drivers\storvsc.sys
20:43:20.0030 5700 storvsc - ok
20:43:20.0091 5700 SvcMgr (6d9024b5fdbdb01d700f0e4bc16a448e) C:\Windows\svcmgr.exe
20:43:20.0127 5700 SvcMgr ( UnsignedFile.Multi.Generic ) - warning
20:43:20.0127 5700 SvcMgr - detected UnsignedFile.Multi.Generic (1)
20:43:20.0146 5700 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
20:43:20.0168 5700 swenum - ok
20:43:20.0215 5700 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
20:43:20.0282 5700 swprv - ok
20:43:20.0341 5700 SynTP (70534d1e4f9ac990536d5fb5b550b3de) C:\Windows\system32\DRIVERS\SynTP.sys
20:43:20.0362 5700 SynTP - ok
20:43:20.0452 5700 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
20:43:20.0507 5700 SysMain - ok
20:43:20.0565 5700 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
20:43:20.0600 5700 TabletInputService - ok
20:43:20.0657 5700 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
20:43:20.0715 5700 TapiSrv - ok
20:43:20.0753 5700 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
20:43:20.0814 5700 TBS - ok
20:43:20.0926 5700 Tcpip (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
20:43:20.0983 5700 Tcpip - ok
20:43:21.0127 5700 TCPIP6 (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
20:43:21.0182 5700 TCPIP6 - ok
20:43:21.0436 5700 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
20:43:21.0509 5700 tcpipreg - ok
20:43:21.0558 5700 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
20:43:21.0607 5700 TDPIPE - ok
20:43:21.0656 5700 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
20:43:21.0678 5700 TDTCP - ok
20:43:21.0716 5700 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
20:43:21.0776 5700 tdx - ok
20:43:21.0828 5700 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
20:43:21.0851 5700 TermDD - ok
20:43:21.0911 5700 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
20:43:21.0969 5700 TermService - ok
20:43:21.0997 5700 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
20:43:22.0037 5700 Themes - ok
20:43:22.0077 5700 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
20:43:22.0126 5700 THREADORDER - ok
20:43:22.0229 5700 TOSHIBA Bluetooth Service (f95208d35a9667c58cf8122ee22805a6) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
20:43:22.0247 5700 TOSHIBA Bluetooth Service - ok
20:43:22.0283 5700 tosporte (90afa1a4451bbbee87c9f18a665d8121) C:\Windows\system32\DRIVERS\tosporte.sys
20:43:22.0298 5700 tosporte - ok
20:43:22.0328 5700 tosrfbd (490a76ab428f34ea676a23e429dd6da4) C:\Windows\system32\DRIVERS\tosrfbd.sys
20:43:22.0348 5700 tosrfbd - ok
20:43:22.0367 5700 tosrfbnp (75cd3c238a0ffc66c4581c3870c09314) C:\Windows\system32\Drivers\tosrfbnp.sys
20:43:22.0382 5700 tosrfbnp - ok
20:43:22.0407 5700 Tosrfcom (b551d3f266dda311256f963e8cfd1e9b) C:\Windows\system32\Drivers\tosrfcom.sys
20:43:22.0422 5700 Tosrfcom - ok
20:43:22.0470 5700 tosrfec (51baa142744e236c3a886479cad99a06) C:\Windows\system32\DRIVERS\tosrfec.sys
20:43:22.0485 5700 tosrfec - ok
20:43:22.0512 5700 Tosrfhid (f3e8762163ee87f3ac95537584cf5b4f) C:\Windows\system32\DRIVERS\Tosrfhid.sys
20:43:22.0527 5700 Tosrfhid - ok
20:43:22.0548 5700 tosrfnds (b2a1a6538245fd69578224bbf2fd4677) C:\Windows\system32\DRIVERS\tosrfnds.sys
20:43:22.0562 5700 tosrfnds - ok
20:43:22.0586 5700 TosRfSnd (3de5cbb4f8eb64563ce08e8ec7458d03) C:\Windows\system32\drivers\tosrfsnd.sys
20:43:22.0634 5700 TosRfSnd - ok
20:43:22.0679 5700 Tosrfusb (af5126fb6e9ed41c99ab7a10e98729cd) C:\Windows\system32\DRIVERS\tosrfusb.sys
20:43:22.0693 5700 Tosrfusb - ok
20:43:22.0729 5700 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
20:43:22.0793 5700 TrkWks - ok
20:43:22.0859 5700 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
20:43:22.0916 5700 TrustedInstaller - ok
20:43:22.0948 5700 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
20:43:22.0993 5700 tssecsrv - ok
20:43:23.0035 5700 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
20:43:23.0088 5700 TsUsbFlt - ok
20:43:23.0131 5700 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
20:43:23.0186 5700 tunnel - ok
20:43:23.0229 5700 TVALZ (792a8b80f8188aba4b2be271583f3e46) C:\Windows\system32\DRIVERS\TVALZ_O.SYS
20:43:23.0245 5700 TVALZ - ok
20:43:23.0290 5700 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
20:43:23.0312 5700 uagp35 - ok
20:43:23.0374 5700 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
20:43:23.0445 5700 udfs - ok
20:43:23.0508 5700 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
20:43:23.0565 5700 UI0Detect - ok
20:43:23.0603 5700 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
20:43:23.0626 5700 uliagpkx - ok
20:43:23.0668 5700 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
20:43:23.0692 5700 umbus - ok
20:43:23.0723 5700 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
20:43:23.0756 5700 UmPass - ok
20:43:23.0808 5700 UmRdpService (409994a8eaceee4e328749c0353527a0) C:\Windows\System32\umrdp.dll
20:43:23.0845 5700 UmRdpService - ok
20:43:23.0885 5700 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
20:43:23.0942 5700 upnphost - ok
20:43:23.0975 5700 USBAAPL (4b8a9c16b6d9258ed99c512aecb8c555) C:\Windows\system32\Drivers\usbaapl.sys
20:43:24.0011 5700 USBAAPL - ok
20:43:24.0059 5700 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys
20:43:24.0088 5700 usbccgp - ok
20:43:24.0129 5700 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
20:43:24.0155 5700 usbcir - ok
20:43:24.0178 5700 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
20:43:24.0200 5700 usbehci - ok
20:43:24.0232 5700 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
20:43:24.0258 5700 usbhub - ok
20:43:24.0276 5700 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\drivers\usbohci.sys
20:43:24.0310 5700 usbohci - ok
20:43:24.0343 5700 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
20:43:24.0369 5700 usbprint - ok
20:43:24.0411 5700 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
20:43:24.0452 5700 usbscan - ok
20:43:24.0497 5700 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:43:24.0544 5700 USBSTOR - ok
20:43:24.0569 5700 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
20:43:24.0591 5700 usbuhci - ok
20:43:24.0647 5700 usbvideo (45f4e7bf43db40a6c6b4d92c76cbc3f2) C:\Windows\System32\Drivers\usbvideo.sys
20:43:24.0674 5700 usbvideo - ok
20:43:24.0705 5700 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
20:43:24.0753 5700 UxSms - ok
20:43:24.0794 5700 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
20:43:24.0816 5700 VaultSvc - ok
20:43:24.0900 5700 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
20:43:24.0923 5700 vdrvroot - ok
20:43:25.0033 5700 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
20:43:25.0088 5700 vds - ok
20:43:25.0132 5700 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
20:43:25.0167 5700 vga - ok
20:43:25.0189 5700 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
20:43:25.0237 5700 VgaSave - ok
20:43:25.0288 5700 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
20:43:25.0312 5700 vhdmp - ok
20:43:25.0365 5700 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
20:43:25.0388 5700 viaagp - ok
20:43:25.0419 5700 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
20:43:25.0457 5700 ViaC7 - ok
20:43:25.0480 5700 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
20:43:25.0501 5700 viaide - ok
20:43:25.0553 5700 vmbus (c2f2911156fdc7817c52829c86da494e) C:\Windows\system32\drivers\vmbus.sys
20:43:25.0579 5700 vmbus - ok
20:43:25.0629 5700 VMBusHID (d4d77455211e204f370d08f4963063ce) C:\Windows\system32\drivers\VMBusHID.sys
20:43:25.0662 5700 VMBusHID - ok
20:43:25.0690 5700 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
20:43:25.0712 5700 volmgr - ok
20:43:25.0751 5700 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
20:43:25.0783 5700 volmgrx - ok
20:43:25.0832 5700 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
20:43:25.0861 5700 volsnap - ok
20:43:25.0889 5700 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
20:43:25.0915 5700 vsmraid - ok
20:43:25.0996 5700 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
20:43:26.0074 5700 VSS - ok
20:43:26.0094 5700 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
20:43:26.0128 5700 vwifibus - ok
20:43:26.0160 5700 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
20:43:26.0188 5700 vwififlt - ok
20:43:26.0204 5700 vwifimp (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
20:43:26.0235 5700 vwifimp - ok
20:43:26.0287 5700 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
20:43:26.0338 5700 W32Time - ok
20:43:26.0363 5700 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
20:43:26.0388 5700 WacomPen - ok
20:43:26.0423 5700 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
20:43:26.0458 5700 WANARP - ok
20:43:26.0466 5700 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
20:43:26.0502 5700 Wanarpv6 - ok
20:43:26.0604 5700 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe
20:43:26.0651 5700 WatAdminSvc - ok
20:43:26.0818 5700 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
20:43:26.0862 5700 wbengine - ok
20:43:26.0900 5700 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
20:43:26.0936 5700 WbioSrvc - ok
20:43:26.0989 5700 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
20:43:27.0016 5700 wcncsvc - ok
20:43:27.0032 5700 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
20:43:27.0065 5700 WcsPlugInService - ok
20:43:27.0113 5700 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
20:43:27.0129 5700 Wd - ok
20:43:27.0166 5700 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
20:43:27.0191 5700 Wdf01000 - ok
20:43:27.0224 5700 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
20:43:27.0285 5700 WdiServiceHost - ok
20:43:27.0299 5700 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
20:43:27.0330 5700 WdiSystemHost - ok
20:43:27.0389 5700 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
20:43:27.0441 5700 WebClient - ok
20:43:27.0489 5700 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
20:43:27.0543 5700 Wecsvc - ok
20:43:27.0569 5700 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
20:43:27.0628 5700 wercplsupport - ok
20:43:27.0652 5700 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
20:43:27.0705 5700 WerSvc - ok
20:43:27.0729 5700 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
20:43:27.0777 5700 WfpLwf - ok
20:43:27.0791 5700 wg3n - ok
20:43:27.0819 5700 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
20:43:27.0843 5700 WIMMount - ok
20:43:27.0861 5700 WinHttpAutoProxySvc - ok
20:43:27.0914 5700 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
20:43:27.0950 5700 Winmgmt - ok
20:43:28.0038 5700 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
20:43:28.0115 5700 WinRM - ok
20:43:28.0199 5700 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
20:43:28.0236 5700 WinUsb - ok
20:43:28.0308 5700 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
20:43:28.0356 5700 Wlansvc - ok
20:43:28.0445 5700 wlcrasvc (6067acef367e79914af628fa1e9b5330) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
20:43:28.0466 5700 wlcrasvc - ok
20:43:28.0619 5700 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:43:28.0682 5700 wlidsvc - ok
20:43:28.0819 5700 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
20:43:28.0846 5700 WmiAcpi - ok
20:43:28.0907 5700 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
20:43:28.0943 5700 wmiApSrv - ok
20:43:29.0064 5700 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
20:43:29.0120 5700 WMPNetworkSvc - ok
20:43:29.0218 5700 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
20:43:29.0269 5700 WPCSvc - ok
20:43:29.0311 5700 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
20:43:29.0367 5700 WPDBusEnum - ok
20:43:29.0409 5700 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
20:43:29.0467 5700 ws2ifsl - ok
20:43:29.0482 5700 WSearch - ok
20:43:29.0608 5700 WTGService (19636ca5b98ec679484bf3a7ee085da8) C:\Program Files\InternetEverywhere\WTGService.exe
20:43:29.0626 5700 WTGService - ok
20:43:29.0741 5700 wuauserv (3026418a50c5b4761befa632cedb7406) C:\Windows\system32\wuaueng.dll
20:43:29.0805 5700 wuauserv - ok
20:43:29.0942 5700 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
20:43:29.0983 5700 WudfPf - ok
20:43:30.0010 5700 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
20:43:30.0061 5700 WUDFRd - ok
20:43:30.0115 5700 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
20:43:30.0162 5700 wudfsvc - ok
20:43:30.0209 5700 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
20:43:30.0248 5700 WwanSvc - ok
20:43:30.0352 5700 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
20:43:30.0985 5700 \Device\Harddisk0\DR0 - ok
20:43:30.0990 5700 Boot (0x1200) (8ae59619104db8bf236292c19b41f877) \Device\Harddisk0\DR0\Partition0
20:43:30.0992 5700 \Device\Harddisk0\DR0\Partition0 - ok
20:43:31.0013 5700 Boot (0x1200) (1984785d8b7381ecfbbde9c144e580a7) \Device\Harddisk0\DR0\Partition1
20:43:31.0015 5700 \Device\Harddisk0\DR0\Partition1 - ok
20:43:31.0035 5700 Boot (0x1200) (1998c4b8ad1375dadf22e093933fb40d) \Device\Harddisk0\DR0\Partition2
20:43:31.0036 5700 \Device\Harddisk0\DR0\Partition2 - ok
20:43:31.0053 5700 Boot (0x1200) (fdc8b28da05e7357b0d2c6075817000e) \Device\Harddisk0\DR0\Partition3
20:43:31.0055 5700 \Device\Harddisk0\DR0\Partition3 - ok
20:43:31.0076 5700 Boot (0x1200) (020dfbfd81b87277a1cb07449f843a0e) \Device\Harddisk0\DR0\Partition4
20:43:31.0078 5700 \Device\Harddisk0\DR0\Partition4 - ok
20:43:31.0104 5700 Boot (0x1200) (9a44bb59c4f2e50aababc338b772fa6b) \Device\Harddisk0\DR0\Partition5
20:43:31.0106 5700 \Device\Harddisk0\DR0\Partition5 - ok
20:43:31.0123 5700 Boot (0x1200) (3e934227fd26d3bfc40eaa5175f983d4) \Device\Harddisk0\DR0\Partition6
20:43:31.0124 5700 \Device\Harddisk0\DR0\Partition6 - ok
20:43:31.0125 5700 ============================================================
20:43:31.0125 5700 Scan finished
20:43:31.0125 5700 ============================================================
20:43:31.0143 2104 Detected object count: 4
20:43:31.0143 2104 Actual detected object count: 4
20:43:35.0141 2104 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:43:35.0141 2104 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:43:35.0141 2104 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:43:35.0142 2104 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:43:35.0145 2104 RichVideo ( UnsignedFile.Multi.Generic ) - skipped by user
20:43:35.0145 2104 RichVideo ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:43:35.0148 2104 SvcMgr ( UnsignedFile.Multi.Generic ) - skipped by user
20:43:35.0148 2104 SvcMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:43:53.0281 3180 Deinitialize success

#6 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 13 June 2012 - 04:01 PM

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-06-13 20:42:02
-----------------------------
20:42:02.545 OS Version: Windows 6.1.7601 Service Pack 1
20:42:02.545 Number of processors: 2 586 0x170A
20:42:02.550 ComputerName: LAP-PC UserName: LAP
20:42:15.650 Initialize success
20:48:56.004 AVAST engine defs: 12061300
20:55:59.838 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-1
20:55:59.842 Disk 0 Vendor: Hitachi_HTS545032B9A300 PB3OC64G Size: 305245MB BusType: 11
20:55:59.862 Disk 0 MBR read successfully
20:55:59.866 Disk 0 MBR scan
20:55:59.874 Disk 0 Windows 7 default MBR code
20:55:59.883 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 200 MB offset 2048
20:55:59.900 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 49800 MB offset 411648
20:55:59.933 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 50000 MB offset 102402048
20:55:59.941 Disk 0 Partition - 00 0F Extended LBA 205243 MB offset 204802048
20:55:59.974 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 50000 MB offset 204804096
20:55:59.982 Disk 0 Partition - 00 05 Extended 50001 MB offset 307204096
20:56:00.052 Disk 0 Partition 5 00 07 HPFS/NTFS NTFS 50000 MB offset 307206144
20:56:00.063 Disk 0 Partition - 00 05 Extended 50001 MB offset 512008192
20:56:00.147 Disk 0 Partition 6 00 07 HPFS/NTFS NTFS 50000 MB offset 409608192
20:56:00.159 Disk 0 Partition - 00 05 Extended 55240 MB offset 716812288
20:56:00.232 Disk 0 Partition 7 00 07 HPFS/NTFS NTFS 55239 MB offset 512010240
20:56:00.273 Disk 0 scanning sectors +625139712
20:56:00.381 Disk 0 scanning C:\Windows\system32\drivers
20:56:21.134 Service scanning
20:57:04.731 Service SvcMgr C:\Windows\svcmgr.exe **INFECTED** Win32:Malware-gen
20:57:17.814 Modules scanning
20:57:36.996 Disk 0 trace - called modules:
20:57:37.022 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys
20:57:37.029 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x864d7ac8]
20:57:37.038 3 CLASSPNP.SYS[8b39459e] -> nt!IofCallDriver -> [0x85fc8348]
20:57:37.045 5 ACPI.sys[8ae9e3d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP1T0L0-1[0x85ffc908]
20:57:38.783 AVAST engine scan C:\Windows
20:57:42.582 File: C:\Windows\svcmgr.exe **INFECTED** Win32:Malware-gen
20:57:44.434 AVAST engine scan C:\Windows\system32
21:01:42.871 File: C:\Windows\assembly\GAC\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
21:03:23.403 AVAST engine scan C:\Windows\system32\drivers
21:03:53.150 AVAST engine scan C:\Users\LAP
21:15:06.420 File: C:\Users\LAP\AppData\Local\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}\n **INFECTED** Win32:Sirefef-ZI [Trj]
21:16:54.679 File: C:\Users\LAP\AppData\Roaming\mlengx.dll **INFECTED** Win32:Medfos-AB [Trj]
21:21:06.474 AVAST engine scan C:\ProgramData
21:22:53.899 Scan finished successfully
21:34:15.607 Disk 0 MBR has been saved successfully to "C:\Users\LAP\Documents\MBR.dat"
21:34:15.615 The log file has been saved successfully to "C:\Users\LAP\Documents\aswMBR.txt"

#7 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:28 PM

Posted 13 June 2012 - 08:02 PM

ESET log :thumbup2:

#8 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 13 June 2012 - 11:18 PM

C:\Users\LAP\AppData\Local\temp\NOD587A.tmp Win32/Sirefef.EV trojan cleaned by deleting (after the next restart) - quarantined
C:\Users\LAP\AppData\Local\temp\NODE9F7.tmp Win32/Sirefef.EV trojan cleaned by deleting (after the next restart) - quarantined
C:\Users\LAP\AppData\Local\temp\NODF40D.tmp a variant of Win32/Medfos.AD trojan cleaned by deleting (after the next restart) - quarantined
Operating memory a variant of Win32/Sirefef.EZ trojan

#9 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:28 PM

Posted 13 June 2012 - 11:24 PM

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log


Download

MiniToolBox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

#10 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 14 June 2012 - 12:27 AM

MiniToolBox by Farbar Version: 09-06-2012
Ran by LAP (administrator) on 14-06-2012 at 06:25:45
Microsoft Windows 7 Professional Service Pack 1 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


========================= IP Configuration: ================================

Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)
The following helper DLL cannot be loaded: WSHELPER.DLL.


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : LAP-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Mixed
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection 2:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
Physical Address. . . . . . . . . : 70-1A-04-25-E2-D0
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
Physical Address. . . . . . . . . : 70-1A-04-25-E2-D0
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::1431:88d1:fcd0:6be6%17(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.9(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Wednesday, June 13, 2012 8:11:06 AM
Lease Expires . . . . . . . . . . : Thursday, June 14, 2012 9:57:13 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 460331524
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-56-98-60-00-1E-33-F9-FE-C3
DNS Servers . . . . . . . . . . . : 192.168.1.1
192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 00-1E-33-F9-FE-C3
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{14D52FF5-2DA8-4DC3-B2D9-A60B6C85BE7D}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 13:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Reusable Microsoft 6To4 Adapter:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Pinging google.com [74.125.230.135] with 32 bytes of data:
Reply from 74.125.230.135: bytes=32 time=40ms TTL=54
Reply from 74.125.230.135: bytes=32 time=36ms TTL=54

Ping statistics for 74.125.230.135:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 36ms, Maximum = 40ms, Average = 38ms

Pinging yahoo.com [209.191.122.70] with 32 bytes of data:
Reply from 209.191.122.70: bytes=32 time=154ms TTL=48
Reply from 209.191.122.70: bytes=32 time=153ms TTL=48

Ping statistics for 209.191.122.70:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 153ms, Maximum = 154ms, Average = 153ms

Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
19...70 1a 04 25 e2 d0 ......Microsoft Virtual WiFi Miniport Adapter
17...70 1a 04 25 e2 d0 ......Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
10...00 1e 33 f9 fe c3 ......Realtek PCIe FE Family Controller
1...........................Software Loopback Interface 1
24...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
20...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
14...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter #2
15...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter #3
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.9 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.9 281
192.168.1.9 255.255.255.255 On-link 192.168.1.9 281
192.168.1.255 255.255.255.255 On-link 192.168.1.9 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.9 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.9 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 306 ::1/128 On-link
17 281 fe80::/64 On-link
17 281 fe80::1431:88d1:fcd0:6be6/128
On-link
1 306 ff00::/8 On-link
17 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be %SystemRoot%\system32\NLAapi.dll

Catalog5 02 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\wshbth.dll [36352] (Microsoft Corporation)
Catalog5 06 C:\Program Files\Bonjour\mdnsNSP.dll [152864] (Apple Inc.)
Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 10 C:\Windows\System32\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 mswsock.dll [File Not found] ()
Catalog9 02 mswsock.dll [File Not found] ()
Catalog9 03 mswsock.dll [File Not found] ()
Catalog9 04 mswsock.dll [File Not found] ()
Catalog9 05 mswsock.dll [File Not found] ()
Catalog9 06 mswsock.dll [File Not found] ()
Catalog9 07 mswsock.dll [File Not found] ()
Catalog9 08 mswsock.dll [File Not found] ()
Catalog9 09 mswsock.dll [File Not found] ()
Catalog9 10 mswsock.dll [File Not found] ()
Catalog9 11 mswsock.dll [File Not found] ()
Catalog9 12 mswsock.dll [File Not found] ()
Catalog9 13 mswsock.dll [File Not found] ()
Catalog9 14 mswsock.dll [File Not found] ()
Catalog9 15 mswsock.dll [File Not found] ()
Catalog9 16 mswsock.dll [File Not found] ()
Catalog9 17 mswsock.dll [File Not found] ()
Catalog9 18 mswsock.dll [File Not found] ()
Catalog9 19 mswsock.dll [File Not found] ()
Catalog9 20 mswsock.dll [File Not found] ()
Catalog9 21 mswsock.dll [File Not found] ()
Catalog9 22 mswsock.dll [File Not found] ()
Catalog9 23 mswsock.dll [File Not found] ()
Catalog9 24 mswsock.dll [File Not found] ()
Catalog9 25 mswsock.dll [File Not found] ()
Catalog9 26 mswsock.dll [File Not found] ()
Catalog9 27 mswsock.dll [File Not found] ()
Catalog9 28 mswsock.dll [File Not found] ()
Catalog9 29 mswsock.dll [File Not found] ()
Catalog9 30 mswsock.dll [File Not found] ()
Catalog9 31 mswsock.dll [File Not found] ()
Catalog9 32 mswsock.dll [File Not found] ()
Catalog9 33 mswsock.dll [File Not found] ()
Catalog9 34 mswsock.dll [File Not found] ()
Catalog9 35 mswsock.dll [File Not found] ()
Catalog9 36 mswsock.dll [File Not found] ()
Catalog9 37 mswsock.dll [File Not found] ()
Catalog9 38 mswsock.dll [File Not found] ()
Catalog9 39 mswsock.dll [File Not found] ()
Catalog9 40 mswsock.dll [File Not found] ()
Catalog9 41 mswsock.dll [File Not found] ()
Catalog9 42 mswsock.dll [File Not found] ()
Catalog9 43 mswsock.dll [File Not found] ()
Catalog9 44 mswsock.dll [File Not found] ()
Catalog9 45 mswsock.dll [File Not found] ()
Catalog9 46 mswsock.dll [File Not found] ()
Catalog9 47 mswsock.dll [File Not found] ()

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/14/2012 05:16:02 AM) (Source: Application Error) (User: )
Description: Faulting application name: chrome.exe, version: 19.0.1084.56, time stamp: 0x4fd04f16
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x5654a81c
Faulting process id: 0x11b4
Faulting application start time: 0xchrome.exe0
Faulting application path: chrome.exe1
Faulting module path: chrome.exe2
Report Id: chrome.exe3

Error: (06/14/2012 01:45:18 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (06/14/2012 01:42:46 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (06/13/2012 09:26:35 PM) (Source: Application Error) (User: )
Description: Faulting application name: ping.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc964
Faulting module name: jscript9.dll_unloaded, version: 0.0.0.0, time stamp: 0x4e5eef88
Exception code: 0xc0000005
Fault offset: 0x6fcbc99a
Faulting process id: 0x157c
Faulting application start time: 0xping.exe0
Faulting application path: ping.exe1
Faulting module path: ping.exe2
Report Id: ping.exe3

Error: (06/13/2012 07:30:42 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:30:41 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:24:40 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:24:39 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:19:18 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:19:17 PM) (Source: SignInAssistant) (User: )
Description: StartService failed with hr = 0x80070422


System errors:
=============
Error: (06/14/2012 06:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 05:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 04:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 03:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 02:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 01:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/14/2012 00:16:28 AM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/13/2012 11:16:28 PM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/13/2012 10:16:29 PM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5

Error: (06/13/2012 08:54:36 PM) (Source: Service Control Manager) (User: )
Description: The SPP Notification Service service terminated with the following error:
%%5


Microsoft Office Sessions:
=========================
Error: (06/14/2012 05:16:02 AM) (Source: Application Error)(User: )
Description: chrome.exe19.0.1084.564fd04f16unknown0.0.0.000000000c00000055654a81c11b401cd49e4615af029C:\Program Files\Google\Chrome\Application\chrome.exeunknowna686bfdd-b5d7-11e1-967c-001e33f9fec3

Error: (06/14/2012 01:45:18 AM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files\Sony\sony pc companion\Drivers\DPInst64.exe

Error: (06/14/2012 01:42:46 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3

Error: (06/13/2012 09:26:35 PM) (Source: Application Error)(User: )
Description: ping.exe6.1.7600.163854a5bc964jscript9.dll_unloaded0.0.0.04e5eef88c00000056fcbc99a157c01cd49a199148c5cC:\Windows\System32\ping.exejscript9.dll11852b77-b596-11e1-967c-001e33f9fec3

Error: (06/13/2012 07:30:42 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:30:41 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:24:40 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:24:39 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:19:18 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422

Error: (06/13/2012 07:19:17 PM) (Source: SignInAssistant)(User: )
Description: StartService failed with hr = 0x80070422


=========================== Installed Programs ============================

µTorrent (Version: 2.2.0)
32 Bit HP CIO Components Installer (Version: 6.1.2)
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.1.377)
Adobe AIR (Version: 1.0.4990)
Adobe AIR (Version: 1.0.8.4990)
Adobe Flash Player 10 ActiveX (Version: 10.3.183.7)
Adobe Flash Player 11 Plugin (Version: 11.1.102.55)
Adobe PageMaker 7.0 (Version: 7.0)
Adobe Photoshop 7.0 (Version: 7.0)
Adobe Reader 9.5.1 (Version: 9.5.1)
Adobe Shockwave Player 11.6 (Version: 11.6.3.633)
Advanced SystemCare 5 (Version: 5.0.0)
Apple Application Support (Version: 1.3.2)
Apple Mobile Device Support (Version: 3.2.0.47)
Apple Software Update (Version: 2.1.2.120)
Audacity 1.3.13 (Unicode)
Autorun Eater v2.6 (Version: 2.6)
AVG 2011 (Version: 10.0.1411)
AVG 2011 (Version: 10.0.2092)
Bluetooth Stack for Windows by Toshiba (Version: v8.00.12(T))
Bonjour (Version: 2.0.3.0)
BufferChm (Version: 140.0.212.000)
CCleaner (Version: 3.03)
Citrix online plug-in - web (Version: 12.1.44.1)
Citrix online plug-in (DV) (Version: 12.1.44.1)
Citrix online plug-in (HDX) (Version: 12.1.44.1)
Citrix online plug-in (USB) (Version: 12.1.44.1)
Citrix online plug-in (Web) (Version: 12.1.44.1)
Citrix XenApp Web Plugin (Version: 11.0.0.5357)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Copy (Version: 140.0.212.000)
Coupon Printer for Windows (Version: 5.0.0.0)
D3DX10 (Version: 15.4.2368.0902)
Destinations (Version: 140.0.77.000)
DeviceDiscovery (Version: 140.0.212.000)
DivX Setup (Version: 2.5.0.8)
DJ_AIO_06_F4500_SW_MIN (Version: 140.0.690.000)
ESET Online Scanner v3
F4500 (Version: 140.0.690.000)
Facebook Video Calling 1.2.0.159 (Version: 1.2.159)
G-Force (Version: 3.5.5)
Google Chrome (Version: 19.0.1084.56)
Google Talk (remove only)
Google Talk Plugin (Version: 2.9.10.7526)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.3.2710.138)
Google Update Helper (Version: 1.3.21.111)
GPBaseService2 (Version: 140.0.211.000)
HP Customer Participation Program 14.0 (Version: 14.0)
HP Deskjet F4500 All-in-One Driver Software 14.0 Rel. 6 (Version: 14.0)
HP Imaging Device Functions 14.0 (Version: 14.0)
HP Photo Creations (Version: 1.0.0.2024)
HP Smart Web Printing 4.60 (Version: 4.60)
HP Solution Center 14.0 (Version: 14.0)
HP Update (Version: 5.002.002.002)
HPPhotoGadget (Version: 140.0.524.000)
HPProductAssistant (Version: 140.0.212.000)
HPSSupply (Version: 140.0.211.000)
Internet Everywhere (Version: )
iTunes (Version: 10.0.1.22)
Java Auto Updater (Version: 2.0.2.4)
Java™ 6 Update 22 (Version: 6.0.220)
Java™ 6 Update 23 (Version: 6.0.230)
Junk Mail filter update (Version: 15.4.3502.0922)
LAME v3.98.3 for Audacity
LimeWire 5.5.8 (Version: 5.5.8)
Malwarebytes Anti-Malware version 1.61.0.1400 (Version: 1.61.0.1400)
MarketResearch (Version: 140.0.212.000)
McAfee Security Scan Plus (Version: 2.0.181.2)
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Outlook Connector (Version: 14.0.5118.5000)
Microsoft Office Professional Edition 2003 (Version: 11.0.8173.0)
Microsoft PowerPoint Viewer (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Mozilla Firefox 11.0 (x86 en-US) (Version: 11.0)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Nero 7 Essentials (Version: 7.03.1303)
neroxml (Version: 1.0.0)
Network (Version: 140.0.215.000)
OpenOffice.org 3.3 (Version: 3.3.9567)
Opera 9.23 (Version: 9.23)
Picasa 3 (Version: 3.8)
PlayBryte
Power Challenge Game Plugin
PowerDVD (Version: 7.0.2414.0)
PriceGong 2.5.0 (Version: 2.5.0)
QuickTime (Version: 7.68.75.0)
RealPlayer
Realtek WLAN Driver (Version: 2.00.0006)
Registry Mechanic 10.0 (Version: 10.0)
Scan (Version: 140.0.80.000)
Scratch (Version: 1.4.0.0)
Scribd Uploader (Version: 1.2.2)
Search Settings v1.2.3
Shop for HP Supplies (Version: 14.0)
Skype Toolbars (Version: 5.0.4137)
Skype™ 5.1 (Version: 5.1.112)
Smart PDF Converter 6.1.0.441 (Version: 6.1.0.441)
SmartWebPrinting (Version: 140.0.186.000)
Smilebox (Version: 1.1.1.1)
SolutionCenter (Version: 140.0.213.000)
Sony PC Companion 2.10.053 (Version: 2.10.053)
SopCast 2.0.4 (Version: 2.0.4)
Sophos Virus Removal Tool (Version: 2.0)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Status (Version: 140.0.212.000)
swMSM (Version: 12.0.0.1)
Synaptics Pointing Device Driver (Version: 11.2.4.0)
Toolbox (Version: 140.0.428.000)
TrayApp (Version: 140.0.212.000)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0)
Veoh Web Player (Version: 1.1.2.0000)
VLC media player 1.0.1 (Version: 1.0.1)
VZOchat (Version: 6.3.5)
WebReg (Version: 140.0.212.017)
Winamp (remove only)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
WinRAR archiver
WinZip 15.0 (Version: 15.0.9302)
Xvid Video Codec (Version: 1.3.2)
Yahoo! Messenger
Yahoo! Toolbar

========================= Memory info: ===================================

Percentage of memory in use: 64%
Total physical RAM: 2939.99 MB
Available physical RAM: 1052.02 MB
Total Pagefile: 5878.26 MB
Available Pagefile: 3345.39 MB
Total Virtual: 2047.88 MB
Available Virtual: 1938.87 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:48.63 GB) (Free:2.51 GB) NTFS
2 Drive d: () (Fixed) (Total:48.83 GB) (Free:16.11 GB) NTFS
3 Drive e: (roshan doc) (Fixed) (Total:48.83 GB) (Free:27.74 GB) NTFS
4 Drive f: (video) (Fixed) (Total:48.83 GB) (Free:29.8 GB) NTFS
5 Drive g: (songs) (Fixed) (Total:53.94 GB) (Free:29.98 GB) NTFS
6 Drive h: (abhinu doc) (Fixed) (Total:48.83 GB) (Free:0.01 GB) NTFS

========================= Users: ========================================

User accounts for \\LAP-PC

Administrator Guest LAP


**** End of log ****

#11 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:28 PM

Posted 14 June 2012 - 01:32 AM

Download

System look

Launch it and copy this script and paste in the BOX

:folderfind 
{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}
:filefind
services.exe

Click on LOOK,post the generated log

Please post the Malwarebytes log too

#12 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 14 June 2012 - 05:50 AM

Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.06.07.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
LAP :: LAP-PC [administrator]

14-Jun-12 6:24:55 AM
mbam-log-2012-06-14 (11-49-29).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 346207
Time elapsed: 2 hour(s), 47 minute(s), 58 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 2
HKCR\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Bad: (C:\Users\LAP\AppData\Local\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}\n.) Good: (%SystemRoot%\system32\shdocvw.dll) -> No action taken.
HKCR\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32| (Trojan.Zaccess) -> Bad: (\\.\globalroot\systemroot\Installer\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}\n.) Good: (%systemroot%\system32\wbem\wbemess.dll) -> No action taken.

Folders Detected: 0
(No malicious items detected)

Files Detected: 7
C:\Users\LAP\AppData\Local\temp\NOD1AF5.tmp (Spyware.Password) -> No action taken.
C:\Users\LAP\AppData\Local\temp\NOD2294.tmp (Spyware.Password) -> No action taken.
C:\Users\LAP\Desktop\IF ACTIVATOR DIDNT WORKED\Se7en Activator v3.exe (RiskWare.Tool.CK) -> No action taken.
C:\Users\LAP\Downloads\setup (1).exe (PUP.ToolBarInstaller.IM) -> No action taken.
C:\Qoobox\Quarantine\C\Windows\Installer\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}\U\00000008.@.vir (Trojan.Dropper.BCMiner) -> No action taken.
C:\Windows\assembly\GAC\Desktop.ini (Trojan.0access) -> No action taken.
C:\Windows\Installer\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}\U\00000008.@ (Trojan.Dropper.BCMiner) -> No action taken.

(end)

#13 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 14 June 2012 - 05:52 AM

SystemLook 30.07.11 by jpshortstuff
Log created at 11:51 on 14/06/2012 by LAP
Administrator - Elevation successful

========== folderfind ==========

Searching for "{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf}"
C:\Qoobox\Quarantine\C\Users\LAP\AppData\Local\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf} d------ [06:01 30/05/2012]
C:\Qoobox\Quarantine\C\Windows\Installer\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf} d------ [06:01 30/05/2012]
C:\Users\LAP\AppData\Local\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf} d--hs-- [11:40 12/04/2012]
C:\Windows\Installer\{ac8444cc-b81a-a6c0-5eff-c03e4506a2cf} d--hs-- [11:40 12/04/2012]

========== filefind ==========

Searching for "services.exe"
C:\Windows\ERDNT\cache\services.exe --a---- 259072 bytes [10:38 28/08/2011] [01:14 14/07/2009] 5F1B6A9C35D3D5CA72D6D6FDEF9747D6
C:\Windows\System32\services.exe --a---- 259072 bytes [23:11 13/07/2009] [01:14 14/07/2009] 5F1B6A9C35D3D5CA72D6D6FDEF9747D6
C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe --a---- 259072 bytes [23:11 13/07/2009] [01:14 14/07/2009] 5F1B6A9C35D3D5CA72D6D6FDEF9747D6

-= EOF =-

#14 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:28 PM

Posted 14 June 2012 - 07:07 AM

Please run malwarebytes again,check mark all infections and remove it.

Re run malwarebytes until you get a clean log.Post the clean log

Run aswmbr after malwarebytes and post the log

#15 achu

achu
  • Topic Starter

  • Members
  • 35 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Liverpool
  • Local time:06:28 PM

Posted 14 June 2012 - 11:10 AM

Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.06.07.05

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
LAP :: LAP-PC [administrator]

Protection: Enabled

14-Jun-12 2:19:49 PM
mbam-log-2012-06-14 (14-19-49).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 345341
Time elapsed: 1 hour(s), 13 minute(s), 47 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\Users\LAP\Downloads\setup (1).exe (PUP.ToolBarInstaller.IM) -> Quarantined and deleted successfully.

(end)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users