Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Chrome weak signature algorithm problems and services.exe possibly infected


  • This topic is locked This topic is locked
9 replies to this topic

#1 dadecasa

dadecasa

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:06:47 AM

Posted 19 July 2012 - 06:35 AM

Hi,

I would really appreciate some help if possible.

A couple of days ago I started having issues with my home PC, specifically with Google Chrom. Every time I try to access an https website (even gmail) I get a red screen in the browser's window stating that the website has a weak security algorithm. If I use IE I do not have this issue.
I also noticed that in some instances when I click some links following a google search, I get redirected to random websites, this happens on IE as well.
Services.exe also seems to have issues as AVG often comes up with a message stating this file is infected by a Trojan.
Finally, I ran several malware removal tools (Iobit, MBAM, AVG) and they all found some issues, but a couple of problems keep popping up if I scan my system again.

I am on Windows 7 64-bit and I will update this post with complete specs once I get home.

I am aware I will need to submit some logs, but I wanted to post something here and await instructions.

Thank you for any help you might provide.

Cheers

Edited by dadecasa, 19 July 2012 - 06:43 AM.


BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:47 AM

Posted 19 July 2012 - 06:56 AM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 dadecasa

dadecasa
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:06:47 AM

Posted 19 July 2012 - 07:37 AM

Thanks! will do this in a few hours when I get home.

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:47 AM

Posted 19 July 2012 - 07:45 AM

:thumbup2:

#5 dadecasa

dadecasa
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:06:47 AM

Posted 19 July 2012 - 05:00 PM

Hi there,

I did what you asked, here are the logs.

TDSS

20:46:30.0365 3168 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
20:46:30.0817 3168 ============================================================
20:46:30.0817 3168 Current date / time: 2012/07/19 20:46:30.0817
20:46:30.0817 3168 SystemInfo:
20:46:30.0817 3168
20:46:30.0817 3168 OS Version: 6.1.7601 ServicePack: 1.0
20:46:30.0817 3168 Product type: Workstation
20:46:30.0817 3168 ComputerName: CASARINI-PC
20:46:30.0817 3168 UserName: Casarini
20:46:30.0817 3168 Windows directory: C:\Windows
20:46:30.0817 3168 System windows directory: C:\Windows
20:46:30.0817 3168 Running under WOW64
20:46:30.0817 3168 Processor architecture: Intel x64
20:46:30.0817 3168 Number of processors: 4
20:46:30.0817 3168 Page size: 0x1000
20:46:30.0817 3168 Boot type: Normal boot
20:46:30.0817 3168 ============================================================
20:46:32.0190 3168 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:46:32.0190 3168 Drive \Device\Harddisk1\DR1 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
20:46:35.0856 3168 Drive \Device\Harddisk4\DR4 - Size: 0x1D9C00000 (7.40 Gb), SectorSize: 0x200, Cylinders: 0x3C6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
20:46:35.0871 3168 ============================================================
20:46:35.0871 3168 \Device\Harddisk0\DR0:
20:46:35.0871 3168 MBR partitions:
20:46:35.0871 3168 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2542D800
20:46:35.0871 3168 \Device\Harddisk1\DR1:
20:46:35.0871 3168 MBR partitions:
20:46:35.0871 3168 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x4A857AB0
20:46:35.0871 3168 \Device\Harddisk4\DR4:
20:46:35.0871 3168 MBR partitions:
20:46:35.0871 3168 \Device\Harddisk4\DR4\Partition0: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xECC000
20:46:35.0871 3168 ============================================================
20:46:35.0949 3168 C: <-> \Device\Harddisk0\DR0\Partition0
20:46:35.0996 3168 I: <-> \Device\Harddisk1\DR1\Partition0
20:46:35.0996 3168 ============================================================
20:46:35.0996 3168 Initialize success
20:46:35.0996 3168 ============================================================
20:47:03.0405 2388 ============================================================
20:47:03.0405 2388 Scan started
20:47:03.0405 2388 Mode: Manual; TDLFS;
20:47:03.0405 2388 ============================================================
20:47:04.0747 2388 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\DRIVERS\1394ohci.sys
20:47:04.0747 2388 1394ohci - ok
20:47:04.0794 2388 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
20:47:04.0794 2388 ACPI - ok
20:47:04.0809 2388 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
20:47:04.0809 2388 AcpiPmi - ok
20:47:04.0887 2388 ADIHdAudAddService (0aecfcd0d5c67070fed350d871564c50) C:\Windows\system32\drivers\ADIHdAud.sys
20:47:04.0887 2388 ADIHdAudAddService - ok
20:47:05.0059 2388 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:47:05.0059 2388 AdobeFlashPlayerUpdateSvc - ok
20:47:05.0184 2388 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
20:47:05.0184 2388 adp94xx - ok
20:47:05.0231 2388 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
20:47:05.0231 2388 adpahci - ok
20:47:05.0277 2388 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
20:47:05.0293 2388 adpu320 - ok
20:47:05.0449 2388 AdvancedSystemCareService5 (96d6cdd0b32846e8cfbe592f4f32e608) C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe
20:47:05.0449 2388 AdvancedSystemCareService5 - ok
20:47:05.0496 2388 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
20:47:05.0496 2388 AeLookupSvc - ok
20:47:05.0543 2388 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys
20:47:05.0558 2388 AFD - ok
20:47:05.0574 2388 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
20:47:05.0589 2388 agp440 - ok
20:47:05.0589 2388 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
20:47:05.0589 2388 ALG - ok
20:47:05.0605 2388 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
20:47:05.0605 2388 aliide - ok
20:47:05.0652 2388 Alpham1 (b3e801135e0c81733542c14d9aa8120a) C:\Windows\system32\DRIVERS\Alpham164.sys
20:47:05.0667 2388 Alpham1 - ok
20:47:05.0683 2388 Alpham2 (6493983fedbc49d9112703ece9b251fe) C:\Windows\system32\DRIVERS\Alpham264.sys
20:47:05.0683 2388 Alpham2 - ok
20:47:05.0745 2388 AMD External Events Utility (9c616ba191b80f5cd1a1b9553e107100) C:\Windows\system32\atiesrxx.exe
20:47:05.0745 2388 AMD External Events Utility - ok
20:47:05.0761 2388 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
20:47:05.0761 2388 amdide - ok
20:47:05.0808 2388 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
20:47:05.0823 2388 AmdK8 - ok
20:47:06.0276 2388 amdkmdag (5165e83751b8ff40e5e4925996fcc506) C:\Windows\system32\DRIVERS\atikmdag.sys
20:47:06.0401 2388 amdkmdag - ok
20:47:06.0588 2388 amdkmdap (86ab3cf484260c4318f3a6e8b035f422) C:\Windows\system32\DRIVERS\atikmpag.sys
20:47:06.0603 2388 amdkmdap - ok
20:47:06.0635 2388 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys
20:47:06.0635 2388 AmdPPM - ok
20:47:06.0666 2388 amdsata (6ec6d772eae38dc17c14aed9b178d24b) C:\Windows\system32\drivers\amdsata.sys
20:47:06.0666 2388 amdsata - ok
20:47:06.0713 2388 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
20:47:06.0728 2388 amdsbs - ok
20:47:06.0744 2388 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys
20:47:06.0744 2388 amdxata - ok
20:47:06.0775 2388 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
20:47:06.0775 2388 AppID - ok
20:47:06.0806 2388 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
20:47:06.0822 2388 AppIDSvc - ok
20:47:06.0822 2388 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
20:47:06.0822 2388 Appinfo - ok
20:47:06.0993 2388 Apple Mobile Device (f401929ee0cc92bfe7f15161ca535383) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:47:06.0993 2388 Apple Mobile Device - ok
20:47:07.0071 2388 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
20:47:07.0087 2388 AppMgmt - ok
20:47:07.0087 2388 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
20:47:07.0103 2388 arc - ok
20:47:07.0118 2388 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
20:47:07.0118 2388 arcsas - ok
20:47:07.0305 2388 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:47:07.0305 2388 aspnet_state - ok
20:47:07.0337 2388 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
20:47:07.0337 2388 AsyncMac - ok
20:47:07.0337 2388 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
20:47:07.0337 2388 atapi - ok
20:47:07.0415 2388 AtiHDAudioService (24464b908e143d2561e9e452fee97309) C:\Windows\system32\drivers\AtihdW76.sys
20:47:07.0415 2388 AtiHDAudioService - ok
20:47:07.0461 2388 atksgt (b4bde3f758a34658a37dfed3d9783cd8) C:\Windows\system32\DRIVERS\atksgt.sys
20:47:07.0461 2388 atksgt - ok
20:47:07.0539 2388 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:47:07.0555 2388 AudioEndpointBuilder - ok
20:47:07.0555 2388 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
20:47:07.0571 2388 AudioSrv - ok
20:47:07.0945 2388 AVGIDSAgent (d67719bcfde5798f5c30d14efed3bcaf) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
20:47:07.0976 2388 AVGIDSAgent - ok
20:47:08.0179 2388 AVGIDSDriver (1b2e9fcdc26dc7c81d4131430e2dc936) C:\Windows\system32\DRIVERS\avgidsdrivera.sys
20:47:08.0179 2388 AVGIDSDriver - ok
20:47:08.0226 2388 AVGIDSFilter (0f293406f64b48d5d2f0d3a1117f3a83) C:\Windows\system32\DRIVERS\avgidsfiltera.sys
20:47:08.0226 2388 AVGIDSFilter - ok
20:47:08.0273 2388 AVGIDSHA (cffc3a4a638f462e0561cb368b9a7a3a) C:\Windows\system32\DRIVERS\avgidsha.sys
20:47:08.0273 2388 AVGIDSHA - ok
20:47:08.0335 2388 Avgldx64 (59955b4c288dd2a8b9fd2cd5158355c5) C:\Windows\system32\DRIVERS\avgldx64.sys
20:47:08.0351 2388 Avgldx64 - ok
20:47:08.0382 2388 Avgmfx64 (a6aec362aae5e2dda7445e7690cb0f33) C:\Windows\system32\DRIVERS\avgmfx64.sys
20:47:08.0382 2388 Avgmfx64 - ok
20:47:08.0413 2388 Avgrkx64 (645c7f0a0e39758a0024a9b1748273c0) C:\Windows\system32\DRIVERS\avgrkx64.sys
20:47:08.0413 2388 Avgrkx64 - ok
20:47:08.0460 2388 Avgtdia (1bee674ad792b1c63bb0dac5fa724b23) C:\Windows\system32\DRIVERS\avgtdia.sys
20:47:08.0475 2388 Avgtdia - ok
20:47:08.0600 2388 avgwd (ea1145debcd508fd25bd1e95c4346929) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
20:47:08.0600 2388 avgwd - ok
20:47:08.0663 2388 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
20:47:08.0663 2388 AxInstSV - ok
20:47:08.0725 2388 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
20:47:08.0741 2388 b06bdrv - ok
20:47:08.0803 2388 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
20:47:08.0819 2388 b57nd60a - ok
20:47:08.0897 2388 BBSvc (0d1ea7509f394d8b705b239ee71f5118) C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
20:47:08.0912 2388 BBSvc - ok
20:47:08.0912 2388 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
20:47:08.0912 2388 BDESVC - ok
20:47:08.0959 2388 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
20:47:08.0959 2388 Beep - ok
20:47:09.0037 2388 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
20:47:09.0037 2388 BITS - ok
20:47:09.0068 2388 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
20:47:09.0068 2388 blbdrive - ok
20:47:09.0162 2388 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
20:47:09.0162 2388 Bonjour Service - ok
20:47:09.0209 2388 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
20:47:09.0209 2388 bowser - ok
20:47:09.0224 2388 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
20:47:09.0240 2388 BrFiltLo - ok
20:47:09.0255 2388 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
20:47:09.0255 2388 BrFiltUp - ok
20:47:09.0271 2388 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
20:47:09.0287 2388 Browser - ok
20:47:09.0318 2388 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
20:47:09.0333 2388 Brserid - ok
20:47:09.0333 2388 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
20:47:09.0333 2388 BrSerWdm - ok
20:47:09.0349 2388 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
20:47:09.0365 2388 BrUsbMdm - ok
20:47:09.0380 2388 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
20:47:09.0380 2388 BrUsbSer - ok
20:47:09.0396 2388 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys
20:47:09.0396 2388 BTHMODEM - ok
20:47:09.0427 2388 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
20:47:09.0427 2388 bthserv - ok
20:47:09.0474 2388 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
20:47:09.0474 2388 cdfs - ok
20:47:09.0505 2388 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
20:47:09.0505 2388 cdrom - ok
20:47:09.0552 2388 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:47:09.0552 2388 CertPropSvc - ok
20:47:09.0583 2388 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
20:47:09.0583 2388 circlass - ok
20:47:09.0614 2388 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
20:47:09.0614 2388 CLFS - ok
20:47:09.0692 2388 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:47:09.0708 2388 clr_optimization_v2.0.50727_32 - ok
20:47:09.0801 2388 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:47:09.0801 2388 clr_optimization_v2.0.50727_64 - ok
20:47:09.0895 2388 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:47:09.0895 2388 clr_optimization_v4.0.30319_32 - ok
20:47:09.0926 2388 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:47:09.0926 2388 clr_optimization_v4.0.30319_64 - ok
20:47:09.0957 2388 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys
20:47:09.0957 2388 CmBatt - ok
20:47:09.0973 2388 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
20:47:09.0973 2388 cmdide - ok
20:47:10.0020 2388 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
20:47:10.0020 2388 CNG - ok
20:47:10.0098 2388 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys
20:47:10.0098 2388 Compbatt - ok
20:47:10.0113 2388 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
20:47:10.0113 2388 CompositeBus - ok
20:47:10.0129 2388 COMSysApp - ok
20:47:10.0238 2388 CrazyRemoteServer (05678d71bba7c1ac18b5e108636997b0) C:\Program Files (x86)\CrazyRemote\CrazyRemoteServer.exe
20:47:10.0254 2388 CrazyRemoteServer - ok
20:47:10.0269 2388 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
20:47:10.0269 2388 crcdisk - ok
20:47:10.0301 2388 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
20:47:10.0316 2388 CryptSvc - ok
20:47:10.0363 2388 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
20:47:10.0379 2388 CSC - ok
20:47:10.0425 2388 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
20:47:10.0425 2388 CscService - ok
20:47:10.0488 2388 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:47:10.0488 2388 DcomLaunch - ok
20:47:10.0550 2388 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
20:47:10.0550 2388 defragsvc - ok
20:47:10.0613 2388 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
20:47:10.0613 2388 DfsC - ok
20:47:10.0644 2388 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
20:47:10.0644 2388 Dhcp - ok
20:47:10.0706 2388 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
20:47:10.0706 2388 discache - ok
20:47:10.0737 2388 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
20:47:10.0737 2388 Disk - ok
20:47:11.0471 2388 DisplayLinkService (214cf29d013b96b8aaa0c31682349d92) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
20:47:11.0517 2388 DisplayLinkService - ok
20:47:11.0689 2388 dlkmd (5d5b9e1e45b1eb727efeab0f44c7e4ef) C:\Windows\system32\drivers\dlkmd.sys
20:47:11.0705 2388 dlkmd - ok
20:47:11.0736 2388 dlkmdldr (b701a03d4c256a288d89d615e139cb7c) C:\Windows\system32\drivers\dlkmdldr.sys
20:47:11.0736 2388 dlkmdldr - ok
20:47:11.0783 2388 dmvsc (5db085a8a6600be6401f2b24eecb5415) C:\Windows\system32\drivers\dmvsc.sys
20:47:11.0798 2388 dmvsc - ok
20:47:11.0845 2388 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
20:47:11.0845 2388 Dnscache - ok
20:47:11.0907 2388 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
20:47:11.0923 2388 dot3svc - ok
20:47:12.0017 2388 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
20:47:12.0017 2388 DPS - ok
20:47:12.0063 2388 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
20:47:12.0063 2388 drmkaud - ok
20:47:12.0157 2388 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
20:47:12.0173 2388 DXGKrnl - ok
20:47:12.0188 2388 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
20:47:12.0188 2388 EapHost - ok
20:47:12.0344 2388 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
20:47:12.0391 2388 ebdrv - ok
20:47:12.0500 2388 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
20:47:12.0500 2388 EFS - ok
20:47:12.0594 2388 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
20:47:12.0609 2388 ehRecvr - ok
20:47:12.0625 2388 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
20:47:12.0625 2388 ehSched - ok
20:47:12.0703 2388 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
20:47:12.0703 2388 elxstor - ok
20:47:12.0734 2388 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
20:47:12.0734 2388 ErrDev - ok
20:47:12.0797 2388 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
20:47:12.0812 2388 EventSystem - ok
20:47:12.0828 2388 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
20:47:12.0828 2388 exfat - ok
20:47:12.0843 2388 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
20:47:12.0843 2388 fastfat - ok
20:47:12.0890 2388 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
20:47:12.0906 2388 Fax - ok
20:47:12.0937 2388 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
20:47:12.0937 2388 fdc - ok
20:47:12.0937 2388 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
20:47:12.0937 2388 fdPHost - ok
20:47:12.0968 2388 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
20:47:12.0984 2388 FDResPub - ok
20:47:13.0062 2388 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
20:47:13.0062 2388 FileInfo - ok
20:47:13.0218 2388 FileMonitor (060cc45cecae2feaff9c8c52d8fafaa8) C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
20:47:13.0218 2388 FileMonitor - ok
20:47:13.0218 2388 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
20:47:13.0233 2388 Filetrace - ok
20:47:13.0296 2388 FLEXnet Licensing Service (227846995afeefa70d328bf5334a86a5) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
20:47:13.0327 2388 FLEXnet Licensing Service - ok
20:47:13.0358 2388 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
20:47:13.0358 2388 flpydisk - ok
20:47:13.0389 2388 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
20:47:13.0389 2388 FltMgr - ok
20:47:13.0483 2388 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll
20:47:13.0499 2388 FontCache - ok
20:47:13.0608 2388 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:47:13.0608 2388 FontCache3.0.0.0 - ok
20:47:13.0655 2388 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
20:47:13.0655 2388 FsDepends - ok
20:47:13.0655 2388 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
20:47:13.0655 2388 Fs_Rec - ok
20:47:13.0701 2388 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
20:47:13.0701 2388 fvevol - ok
20:47:13.0717 2388 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
20:47:13.0717 2388 gagp30kx - ok
20:47:13.0764 2388 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
20:47:13.0764 2388 GEARAspiWDM - ok
20:47:13.0811 2388 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
20:47:13.0826 2388 gpsvc - ok
20:47:13.0951 2388 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:47:13.0951 2388 gupdate - ok
20:47:14.0013 2388 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:47:14.0013 2388 gupdatem - ok
20:47:14.0060 2388 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
20:47:14.0060 2388 gusvc - ok
20:47:14.0091 2388 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
20:47:14.0091 2388 hcw85cir - ok
20:47:14.0154 2388 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
20:47:14.0154 2388 HdAudAddService - ok
20:47:14.0185 2388 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys
20:47:14.0201 2388 HDAudBus - ok
20:47:14.0201 2388 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
20:47:14.0201 2388 HidBatt - ok
20:47:14.0201 2388 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
20:47:14.0216 2388 HidBth - ok
20:47:14.0232 2388 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
20:47:14.0232 2388 HidIr - ok
20:47:14.0263 2388 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
20:47:14.0263 2388 hidserv - ok
20:47:14.0294 2388 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
20:47:14.0294 2388 HidUsb - ok
20:47:14.0341 2388 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
20:47:14.0341 2388 hkmsvc - ok
20:47:14.0357 2388 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
20:47:14.0357 2388 HomeGroupListener - ok
20:47:14.0403 2388 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
20:47:14.0419 2388 HomeGroupProvider - ok
20:47:14.0435 2388 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
20:47:14.0435 2388 HpSAMD - ok
20:47:14.0591 2388 HPSLPSVC (7f57926169c1b8aba9274ea7d4b70f18) C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
20:47:14.0606 2388 HPSLPSVC - ok
20:47:14.0653 2388 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
20:47:14.0669 2388 HTTP - ok
20:47:14.0684 2388 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
20:47:14.0684 2388 hwpolicy - ok
20:47:14.0715 2388 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
20:47:14.0715 2388 i8042prt - ok
20:47:14.0747 2388 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys
20:47:14.0762 2388 iaStorV - ok
20:47:14.0965 2388 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:47:14.0981 2388 idsvc - ok
20:47:15.0043 2388 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
20:47:15.0043 2388 iirsp - ok
20:47:15.0137 2388 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
20:47:15.0152 2388 IKEEXT - ok
20:47:15.0324 2388 IMFservice (8ae99ebe30e8338907361018d9030835) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
20:47:15.0324 2388 IMFservice - ok
20:47:15.0480 2388 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
20:47:15.0480 2388 intelide - ok
20:47:15.0511 2388 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
20:47:15.0511 2388 intelppm - ok
20:47:15.0527 2388 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
20:47:15.0527 2388 IPBusEnum - ok
20:47:15.0558 2388 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:47:15.0558 2388 IpFilterDriver - ok
20:47:15.0573 2388 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
20:47:15.0573 2388 IPMIDRV - ok
20:47:15.0605 2388 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
20:47:15.0605 2388 IPNAT - ok
20:47:15.0729 2388 iPod Service (a9ab99ee7d39725eafec82732d2b3271) C:\Program Files\iPod\bin\iPodService.exe
20:47:15.0745 2388 iPod Service - ok
20:47:15.0761 2388 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
20:47:15.0761 2388 IRENUM - ok
20:47:15.0776 2388 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
20:47:15.0776 2388 isapnp - ok
20:47:15.0807 2388 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
20:47:15.0839 2388 iScsiPrt - ok
20:47:15.0870 2388 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
20:47:15.0870 2388 kbdclass - ok
20:47:15.0901 2388 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
20:47:15.0901 2388 kbdhid - ok
20:47:15.0932 2388 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:47:15.0932 2388 KeyIso - ok
20:47:15.0948 2388 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
20:47:15.0948 2388 KSecDD - ok
20:47:15.0963 2388 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
20:47:15.0963 2388 KSecPkg - ok
20:47:16.0041 2388 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
20:47:16.0041 2388 ksthunk - ok
20:47:16.0119 2388 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
20:47:16.0119 2388 KtmRm - ok
20:47:16.0166 2388 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
20:47:16.0182 2388 LanmanServer - ok
20:47:16.0213 2388 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
20:47:16.0229 2388 LanmanWorkstation - ok
20:47:16.0260 2388 lirsgt (955982bf4421b77722196552b62e8dc2) C:\Windows\system32\DRIVERS\lirsgt.sys
20:47:16.0260 2388 lirsgt - ok
20:47:16.0291 2388 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
20:47:16.0291 2388 lltdio - ok
20:47:16.0353 2388 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
20:47:16.0369 2388 lltdsvc - ok
20:47:16.0385 2388 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
20:47:16.0385 2388 lmhosts - ok
20:47:16.0431 2388 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
20:47:16.0431 2388 LSI_FC - ok
20:47:16.0447 2388 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
20:47:16.0447 2388 LSI_SAS - ok
20:47:16.0478 2388 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
20:47:16.0478 2388 LSI_SAS2 - ok
20:47:16.0556 2388 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
20:47:16.0572 2388 LSI_SCSI - ok
20:47:16.0712 2388 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
20:47:16.0712 2388 luafv - ok
20:47:16.0775 2388 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
20:47:17.0133 2388 Mcx2Svc - ok
20:47:17.0196 2388 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
20:47:17.0196 2388 megasas - ok
20:47:17.0227 2388 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
20:47:17.0243 2388 MegaSR - ok
20:47:17.0289 2388 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:47:17.0289 2388 MMCSS - ok
20:47:17.0321 2388 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
20:47:17.0321 2388 Modem - ok
20:47:17.0352 2388 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
20:47:17.0352 2388 monitor - ok
20:47:17.0383 2388 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
20:47:17.0383 2388 mouclass - ok
20:47:17.0414 2388 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
20:47:17.0414 2388 mouhid - ok
20:47:17.0430 2388 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
20:47:17.0430 2388 mountmgr - ok
20:47:17.0586 2388 Mp3Rocket Toolbar Helper (51d307bcfb34cf4d37ee059f2ab6fa2d) C:\Program Files (x86)\MP3 Rocket Toolbar\Mp3RocketSvc.exe
20:47:17.0586 2388 Mp3Rocket Toolbar Helper - ok
20:47:17.0617 2388 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
20:47:17.0633 2388 mpio - ok
20:47:17.0648 2388 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
20:47:17.0664 2388 mpsdrv - ok
20:47:17.0695 2388 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
20:47:17.0711 2388 MRxDAV - ok
20:47:17.0773 2388 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
20:47:17.0773 2388 mrxsmb - ok
20:47:17.0835 2388 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:47:17.0835 2388 mrxsmb10 - ok
20:47:17.0882 2388 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:47:17.0898 2388 mrxsmb20 - ok
20:47:17.0929 2388 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
20:47:17.0929 2388 msahci - ok
20:47:17.0991 2388 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
20:47:17.0991 2388 msdsm - ok
20:47:18.0038 2388 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
20:47:18.0038 2388 MSDTC - ok
20:47:18.0069 2388 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
20:47:18.0069 2388 Msfs - ok
20:47:18.0085 2388 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
20:47:18.0085 2388 mshidkmdf - ok
20:47:18.0101 2388 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
20:47:18.0101 2388 msisadrv - ok
20:47:18.0179 2388 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
20:47:18.0179 2388 MSiSCSI - ok
20:47:18.0194 2388 msiserver - ok
20:47:18.0241 2388 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
20:47:18.0241 2388 MSKSSRV - ok
20:47:18.0257 2388 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
20:47:18.0257 2388 MSPCLOCK - ok
20:47:18.0272 2388 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
20:47:18.0272 2388 MSPQM - ok
20:47:18.0381 2388 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
20:47:18.0381 2388 MsRPC - ok
20:47:18.0397 2388 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
20:47:18.0397 2388 mssmbios - ok
20:47:18.0413 2388 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
20:47:18.0413 2388 MSTEE - ok
20:47:18.0428 2388 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
20:47:18.0428 2388 MTConfig - ok
20:47:18.0506 2388 MTsensor (03b7145c889603537e9ffeabb1ad1089) C:\Windows\system32\DRIVERS\ASACPI.sys
20:47:18.0506 2388 MTsensor - ok
20:47:18.0522 2388 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
20:47:18.0522 2388 Mup - ok
20:47:18.0615 2388 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
20:47:18.0631 2388 napagent - ok
20:47:18.0709 2388 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
20:47:18.0725 2388 NativeWifiP - ok
20:47:18.0834 2388 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
20:47:18.0849 2388 NDIS - ok
20:47:18.0896 2388 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
20:47:18.0896 2388 NdisCap - ok
20:47:18.0943 2388 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
20:47:18.0959 2388 NdisTapi - ok
20:47:19.0005 2388 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
20:47:19.0021 2388 Ndisuio - ok
20:47:19.0052 2388 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
20:47:19.0068 2388 NdisWan - ok
20:47:19.0083 2388 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
20:47:19.0099 2388 NDProxy - ok
20:47:19.0161 2388 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
20:47:19.0161 2388 NetBIOS - ok
20:47:19.0255 2388 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
20:47:19.0255 2388 NetBT - ok
20:47:19.0286 2388 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:47:19.0286 2388 Netlogon - ok
20:47:19.0349 2388 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
20:47:19.0364 2388 Netman - ok
20:47:19.0551 2388 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:47:19.0551 2388 NetMsmqActivator - ok
20:47:19.0567 2388 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:47:19.0567 2388 NetPipeActivator - ok
20:47:19.0723 2388 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
20:47:19.0739 2388 netprofm - ok
20:47:19.0910 2388 netr28ux (04f74abe162a334257e90394196af283) C:\Windows\system32\DRIVERS\netr28ux.sys
20:47:19.0926 2388 netr28ux - ok
20:47:20.0082 2388 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:47:20.0082 2388 NetTcpActivator - ok
20:47:20.0097 2388 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:47:20.0097 2388 NetTcpPortSharing - ok
20:47:20.0160 2388 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
20:47:20.0160 2388 nfrd960 - ok
20:47:20.0238 2388 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
20:47:20.0253 2388 NlaSvc - ok
20:47:20.0378 2388 nlsX86cc (b1ef4686961986dffb7fe8f18e6fcb5b) C:\Windows\SysWOW64\nlssrv32.exe
20:47:20.0378 2388 nlsX86cc - ok
20:47:20.0425 2388 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
20:47:20.0425 2388 Npfs - ok
20:47:20.0472 2388 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
20:47:20.0472 2388 nsi - ok
20:47:20.0487 2388 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
20:47:20.0503 2388 nsiproxy - ok
20:47:20.0653 2388 Ntfs (05d78aa5cb5f3f5c31160bdb955d0b7c) C:\Windows\system32\drivers\Ntfs.sys
20:47:20.0698 2388 Ntfs - ok
20:47:20.0847 2388 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
20:47:20.0849 2388 Null - ok
20:47:20.0910 2388 NVENETFD (a85b4f2ef3a7304a5399ef0526423040) C:\Windows\system32\DRIVERS\nvm62x64.sys
20:47:20.0931 2388 NVENETFD - ok
20:47:21.0918 2388 nvlddmkm (dd81fbc57ab9134cddc5ce90880bfd80) C:\Windows\system32\DRIVERS\nvlddmkm.sys
20:47:22.0074 2388 nvlddmkm - ok
20:47:22.0292 2388 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys
20:47:22.0292 2388 nvraid - ok
20:47:22.0308 2388 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\DRIVERS\nvstor.sys
20:47:22.0308 2388 nvstor - ok
20:47:22.0355 2388 nvstor64 (0d1e252f18aee4b6cbea914704247eea) C:\Windows\system32\drivers\nvstor64.sys
20:47:22.0355 2388 nvstor64 - ok
20:47:22.0386 2388 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
20:47:22.0386 2388 nv_agp - ok
20:47:22.0417 2388 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
20:47:22.0417 2388 ohci1394 - ok
20:47:22.0526 2388 ose (067db5b067722997fcafe1858163d411) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:47:22.0526 2388 ose - ok
20:47:22.0807 2388 osppsvc (458169ba54ccf47d178dcb40d8158a7d) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
20:47:22.0854 2388 osppsvc - ok
20:47:22.0994 2388 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:47:23.0088 2388 p2pimsvc - ok
20:47:23.0135 2388 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
20:47:23.0150 2388 p2psvc - ok
20:47:23.0228 2388 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys
20:47:23.0228 2388 Parport - ok
20:47:23.0260 2388 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
20:47:23.0260 2388 partmgr - ok
20:47:23.0275 2388 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
20:47:23.0291 2388 PcaSvc - ok
20:47:23.0306 2388 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
20:47:23.0306 2388 pci - ok
20:47:23.0369 2388 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
20:47:23.0369 2388 pciide - ok
20:47:23.0400 2388 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
20:47:23.0400 2388 pcmcia - ok
20:47:23.0431 2388 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
20:47:23.0431 2388 pcw - ok
20:47:23.0462 2388 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
20:47:23.0478 2388 PEAUTH - ok
20:47:23.0572 2388 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
20:47:23.0587 2388 PeerDistSvc - ok
20:47:23.0681 2388 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
20:47:23.0696 2388 PerfHost - ok
20:47:23.0837 2388 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
20:47:23.0852 2388 pla - ok
20:47:23.0899 2388 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
20:47:23.0977 2388 PlugPlay - ok
20:47:23.0977 2388 PnkBstrA - ok
20:47:23.0993 2388 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
20:47:24.0008 2388 PNRPAutoReg - ok
20:47:24.0055 2388 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
20:47:24.0055 2388 PNRPsvc - ok
20:47:24.0118 2388 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
20:47:24.0118 2388 PolicyAgent - ok
20:47:24.0180 2388 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
20:47:24.0196 2388 Power - ok
20:47:24.0289 2388 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
20:47:24.0289 2388 PptpMiniport - ok
20:47:24.0320 2388 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
20:47:24.0320 2388 Processor - ok
20:47:24.0352 2388 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
20:47:24.0367 2388 ProfSvc - ok
20:47:24.0383 2388 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:47:24.0383 2388 ProtectedStorage - ok
20:47:24.0445 2388 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
20:47:24.0445 2388 Psched - ok
20:47:24.0523 2388 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
20:47:24.0554 2388 ql2300 - ok
20:47:24.0648 2388 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
20:47:24.0648 2388 ql40xx - ok
20:47:24.0679 2388 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
20:47:24.0679 2388 QWAVE - ok
20:47:24.0695 2388 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
20:47:24.0695 2388 QWAVEdrv - ok
20:47:24.0710 2388 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
20:47:24.0710 2388 RasAcd - ok
20:47:24.0757 2388 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
20:47:24.0757 2388 RasAgileVpn - ok
20:47:24.0773 2388 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
20:47:24.0773 2388 RasAuto - ok
20:47:24.0788 2388 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
20:47:24.0788 2388 Rasl2tp - ok
20:47:24.0804 2388 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
20:47:24.0820 2388 RasMan - ok
20:47:24.0851 2388 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
20:47:24.0851 2388 RasPppoe - ok
20:47:24.0882 2388 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
20:47:24.0882 2388 RasSstp - ok
20:47:24.0913 2388 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
20:47:24.0913 2388 rdbss - ok
20:47:24.0976 2388 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
20:47:24.0976 2388 rdpbus - ok
20:47:24.0991 2388 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
20:47:24.0991 2388 RDPCDD - ok
20:47:25.0038 2388 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
20:47:25.0054 2388 RDPDR - ok
20:47:25.0069 2388 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
20:47:25.0069 2388 RDPENCDD - ok
20:47:25.0085 2388 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
20:47:25.0085 2388 RDPREFMP - ok
20:47:25.0132 2388 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
20:47:25.0132 2388 RdpVideoMiniport - ok
20:47:25.0147 2388 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys
20:47:25.0163 2388 RDPWD - ok
20:47:25.0194 2388 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
20:47:25.0194 2388 rdyboost - ok
20:47:25.0334 2388 RegFilter (d7aea5375db1d6632a4120ad06c52f6b) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\wlh_amd64\regfilter.sys
20:47:25.0334 2388 RegFilter - ok
20:47:25.0381 2388 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
20:47:25.0381 2388 RemoteAccess - ok
20:47:25.0428 2388 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
20:47:25.0444 2388 RemoteRegistry - ok
20:47:25.0490 2388 RimVSerPort (0de22421179d5a8440b68517ddf2b051) C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
20:47:25.0490 2388 RimVSerPort - ok
20:47:25.0506 2388 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
20:47:25.0506 2388 RpcEptMapper - ok
20:47:25.0553 2388 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
20:47:25.0553 2388 RpcLocator - ok
20:47:25.0584 2388 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
20:47:25.0584 2388 RpcSs - ok
20:47:25.0615 2388 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
20:47:25.0615 2388 rspndr - ok
20:47:25.0646 2388 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
20:47:25.0646 2388 s3cap - ok
20:47:25.0678 2388 SaiMini (3da2cca7206db8d4ce234177a97a1b62) C:\Windows\system32\DRIVERS\SaiMini.sys
20:47:25.0709 2388 SaiMini - ok
20:47:25.0771 2388 SaiNtBus (7df4b3e55ff2540111e7e7ad3656a7c5) C:\Windows\system32\drivers\SaiBus.sys
20:47:25.0787 2388 SaiNtBus - ok
20:47:25.0818 2388 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:47:25.0818 2388 SamSs - ok
20:47:25.0849 2388 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
20:47:25.0849 2388 sbp2port - ok
20:47:25.0990 2388 SBSDWSCService (794d4b48dfb6e999537c7c3947863463) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
20:47:26.0021 2388 SBSDWSCService - ok
20:47:26.0114 2388 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
20:47:26.0130 2388 SCardSvr - ok
20:47:26.0192 2388 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
20:47:26.0192 2388 scfilter - ok
20:47:26.0270 2388 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
20:47:26.0286 2388 Schedule - ok
20:47:26.0333 2388 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
20:47:26.0333 2388 SCPolicySvc - ok
20:47:26.0380 2388 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
20:47:26.0395 2388 SDRSVC - ok
20:47:26.0504 2388 SeaPort (78779ee07231c658b483b1f38b5088df) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
20:47:26.0504 2388 SeaPort - ok
20:47:26.0551 2388 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
20:47:26.0551 2388 secdrv - ok
20:47:26.0567 2388 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
20:47:26.0567 2388 seclogon - ok
20:47:26.0676 2388 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
20:47:26.0676 2388 SENS - ok
20:47:26.0816 2388 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
20:47:26.0832 2388 SensrSvc - ok
20:47:26.0910 2388 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys
20:47:26.0910 2388 Serenum - ok
20:47:26.0957 2388 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys
20:47:27.0097 2388 Serial - ok
20:47:27.0144 2388 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
20:47:27.0144 2388 sermouse - ok
20:47:27.0222 2388 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
20:47:27.0222 2388 SessionEnv - ok
20:47:27.0269 2388 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
20:47:27.0269 2388 sffdisk - ok
20:47:27.0284 2388 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
20:47:27.0300 2388 sffp_mmc - ok
20:47:27.0300 2388 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
20:47:27.0316 2388 sffp_sd - ok
20:47:27.0362 2388 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
20:47:27.0362 2388 sfloppy - ok
20:47:27.0440 2388 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
20:47:27.0456 2388 ShellHWDetection - ok
20:47:27.0472 2388 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
20:47:27.0472 2388 SiSRaid2 - ok
20:47:27.0487 2388 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
20:47:27.0487 2388 SiSRaid4 - ok
20:47:27.0550 2388 SmartDefragDriver (327383124d31ac398b98f4ae300421e8) C:\Windows\system32\Drivers\SmartDefragDriver.sys
20:47:27.0550 2388 SmartDefragDriver - ok
20:47:27.0581 2388 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
20:47:27.0581 2388 Smb - ok
20:47:27.0612 2388 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
20:47:27.0628 2388 SNMPTRAP - ok
20:47:27.0628 2388 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
20:47:27.0628 2388 spldr - ok
20:47:27.0674 2388 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
20:47:27.0690 2388 Spooler - ok
20:47:27.0846 2388 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
20:47:27.0893 2388 sppsvc - ok
20:47:28.0033 2388 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
20:47:28.0033 2388 sppuinotify - ok
20:47:28.0127 2388 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
20:47:28.0127 2388 srv - ok
20:47:28.0205 2388 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
20:47:28.0220 2388 srv2 - ok
20:47:28.0236 2388 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
20:47:28.0236 2388 srvnet - ok
20:47:28.0252 2388 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
20:47:28.0267 2388 SSDPSRV - ok
20:47:28.0283 2388 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
20:47:28.0283 2388 SstpSvc - ok
20:47:28.0345 2388 Steam Client Service - ok
20:47:28.0361 2388 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
20:47:28.0361 2388 stexstor - ok
20:47:28.0408 2388 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
20:47:28.0423 2388 stisvc - ok
20:47:28.0454 2388 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
20:47:28.0454 2388 storflt - ok
20:47:28.0486 2388 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
20:47:28.0486 2388 storvsc - ok
20:47:28.0501 2388 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
20:47:28.0501 2388 swenum - ok
20:47:28.0532 2388 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
20:47:28.0548 2388 swprv - ok
20:47:28.0579 2388 Synth3dVsc (c3a39c4079305480972d29c44b868c78) C:\Windows\system32\drivers\synth3dvsc.sys
20:47:28.0579 2388 Synth3dVsc - ok
20:47:28.0673 2388 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
20:47:28.0704 2388 SysMain - ok
20:47:28.0813 2388 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
20:47:28.0813 2388 TabletInputService - ok
20:47:28.0829 2388 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
20:47:28.0844 2388 TapiSrv - ok
20:47:28.0844 2388 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
20:47:28.0844 2388 TBS - ok
20:47:29.0000 2388 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
20:47:29.0078 2388 Tcpip - ok
20:47:29.0250 2388 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
20:47:29.0266 2388 TCPIP6 - ok
20:47:29.0328 2388 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
20:47:29.0328 2388 tcpipreg - ok
20:47:29.0344 2388 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
20:47:29.0344 2388 TDPIPE - ok
20:47:29.0375 2388 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
20:47:29.0375 2388 TDTCP - ok
20:47:29.0406 2388 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
20:47:29.0406 2388 tdx - ok
20:47:29.0453 2388 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
20:47:29.0453 2388 TermDD - ok
20:47:29.0484 2388 terminpt (2b5bdff688ec9871d7ec5837833374e9) C:\Windows\system32\drivers\terminpt.sys
20:47:29.0484 2388 terminpt - ok
20:47:29.0562 2388 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
20:47:29.0578 2388 TermService - ok
20:47:29.0609 2388 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
20:47:29.0609 2388 Themes - ok
20:47:29.0656 2388 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
20:47:29.0656 2388 THREADORDER - ok
20:47:29.0671 2388 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
20:47:29.0687 2388 TrkWks - ok
20:47:29.0765 2388 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
20:47:29.0765 2388 TrustedInstaller - ok
20:47:29.0827 2388 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
20:47:29.0827 2388 tssecsrv - ok
20:47:29.0858 2388 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
20:47:29.0858 2388 TsUsbFlt - ok
20:47:29.0874 2388 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
20:47:29.0890 2388 TsUsbGD - ok
20:47:29.0968 2388 tsusbhub (e1748d04ae40118b62bc18ac86032192) C:\Windows\system32\drivers\tsusbhub.sys
20:47:29.0968 2388 tsusbhub - ok
20:47:29.0999 2388 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
20:47:30.0014 2388 tunnel - ok
20:47:30.0014 2388 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
20:47:30.0014 2388 uagp35 - ok
20:47:30.0046 2388 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
20:47:30.0061 2388 udfs - ok
20:47:30.0077 2388 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
20:47:30.0077 2388 UI0Detect - ok
20:47:30.0108 2388 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
20:47:30.0108 2388 uliagpkx - ok
20:47:30.0139 2388 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
20:47:30.0139 2388 umbus - ok
20:47:30.0155 2388 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys
20:47:30.0155 2388 UmPass - ok
20:47:30.0202 2388 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
20:47:30.0217 2388 UmRdpService - ok
20:47:30.0248 2388 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
20:47:30.0264 2388 upnphost - ok
20:47:30.0404 2388 UrlFilter (241080f1b28e68f0d00f8f1066a3780d) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys
20:47:30.0404 2388 UrlFilter - ok
20:47:30.0467 2388 USBAAPL64 (fb251567f41bc61988b26731dec19e4b) C:\Windows\system32\Drivers\usbaapl64.sys
20:47:30.0467 2388 USBAAPL64 - ok
20:47:30.0498 2388 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys
20:47:30.0498 2388 usbccgp - ok
20:47:30.0529 2388 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
20:47:30.0529 2388 usbcir - ok
20:47:30.0560 2388 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\DRIVERS\usbehci.sys
20:47:30.0560 2388 usbehci - ok
20:47:30.0592 2388 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\DRIVERS\usbhub.sys
20:47:30.0607 2388 usbhub - ok
20:47:30.0623 2388 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys
20:47:30.0623 2388 usbohci - ok
20:47:30.0654 2388 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
20:47:30.0654 2388 usbprint - ok
20:47:30.0670 2388 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:47:30.0685 2388 USBSTOR - ok
20:47:30.0701 2388 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\drivers\usbuhci.sys
20:47:30.0701 2388 usbuhci - ok
20:47:30.0748 2388 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
20:47:30.0748 2388 UxSms - ok
20:47:30.0779 2388 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
20:47:30.0779 2388 VaultSvc - ok
20:47:30.0810 2388 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
20:47:30.0810 2388 vdrvroot - ok
20:47:30.0841 2388 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
20:47:30.0857 2388 vds - ok
20:47:30.0857 2388 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
20:47:30.0872 2388 vga - ok
20:47:30.0950 2388 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
20:47:30.0950 2388 VgaSave - ok
20:47:30.0966 2388 VGPU - ok
20:47:30.0997 2388 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
20:47:30.0997 2388 vhdmp - ok
20:47:31.0028 2388 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
20:47:31.0028 2388 viaide - ok
20:47:31.0075 2388 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
20:47:31.0106 2388 vmbus - ok
20:47:31.0138 2388 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
20:47:31.0138 2388 VMBusHID - ok
20:47:31.0169 2388 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
20:47:31.0169 2388 volmgr - ok
20:47:31.0200 2388 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
20:47:31.0216 2388 volmgrx - ok
20:47:31.0247 2388 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
20:47:31.0247 2388 volsnap - ok
20:47:31.0278 2388 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
20:47:31.0294 2388 vsmraid - ok
20:47:31.0387 2388 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
20:47:31.0418 2388 VSS - ok
20:47:31.0606 2388 vToolbarUpdater11.2.0 (8ed347bad8d1fb7c40b593bfb01786d2) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe
20:47:31.0606 2388 vToolbarUpdater11.2.0 - ok
20:47:31.0746 2388 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
20:47:31.0762 2388 vwifibus - ok
20:47:31.0777 2388 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
20:47:31.0793 2388 W32Time - ok
20:47:31.0824 2388 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
20:47:31.0824 2388 WacomPen - ok
20:47:31.0871 2388 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:47:31.0871 2388 WANARP - ok
20:47:31.0886 2388 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
20:47:31.0886 2388 Wanarpv6 - ok
20:47:32.0042 2388 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
20:47:32.0058 2388 WatAdminSvc - ok
20:47:32.0261 2388 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
20:47:32.0323 2388 wbengine - ok
20:47:32.0542 2388 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
20:47:32.0557 2388 WbioSrvc - ok
20:47:32.0588 2388 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
20:47:32.0588 2388 wcncsvc - ok
20:47:32.0604 2388 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
20:47:32.0604 2388 WcsPlugInService - ok
20:47:32.0682 2388 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
20:47:32.0682 2388 Wd - ok
20:47:32.0729 2388 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
20:47:32.0744 2388 Wdf01000 - ok
20:47:32.0760 2388 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:47:32.0760 2388 WdiServiceHost - ok
20:47:32.0760 2388 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
20:47:32.0760 2388 WdiSystemHost - ok
20:47:32.0791 2388 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
20:47:32.0791 2388 WebClient - ok
20:47:32.0822 2388 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
20:47:32.0822 2388 Wecsvc - ok
20:47:32.0838 2388 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
20:47:32.0854 2388 wercplsupport - ok
20:47:32.0869 2388 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
20:47:32.0869 2388 WerSvc - ok
20:47:32.0900 2388 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
20:47:32.0900 2388 WfpLwf - ok
20:47:32.0916 2388 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
20:47:32.0916 2388 WIMMount - ok
20:47:32.0932 2388 WinHttpAutoProxySvc - ok
20:47:33.0056 2388 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
20:47:33.0056 2388 Winmgmt - ok
20:47:33.0228 2388 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
20:47:33.0259 2388 WinRM - ok
20:47:33.0415 2388 WinUSB (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUSB.sys
20:47:33.0446 2388 WinUSB - ok
20:47:33.0524 2388 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
20:47:33.0540 2388 Wlansvc - ok
20:47:33.0602 2388 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
20:47:33.0602 2388 WmiAcpi - ok
20:47:33.0696 2388 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
20:47:33.0712 2388 wmiApSrv - ok
20:47:33.0790 2388 WMPNetworkSvc - ok
20:47:33.0899 2388 WMZuneComm (83b6ca03c846fcd47f9883d77d1eb27b) C:\Program Files\Zune\WMZuneComm.exe
20:47:33.0899 2388 WMZuneComm - ok
20:47:33.0977 2388 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
20:47:33.0977 2388 WPCSvc - ok
20:47:34.0008 2388 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
20:47:34.0008 2388 WPDBusEnum - ok
20:47:34.0039 2388 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
20:47:34.0039 2388 ws2ifsl - ok
20:47:34.0039 2388 WSearch - ok
20:47:34.0180 2388 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
20:47:34.0211 2388 wuauserv - ok
20:47:34.0351 2388 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
20:47:34.0367 2388 WudfPf - ok
20:47:34.0382 2388 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
20:47:34.0398 2388 WUDFRd - ok
20:47:34.0414 2388 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
20:47:34.0414 2388 wudfsvc - ok
20:47:34.0429 2388 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
20:47:34.0445 2388 WwanSvc - ok
20:47:34.0866 2388 ZuneNetworkSvc (67b787c34fb2888d01b130ae007042d8) C:\Program Files\Zune\ZuneNss.exe
20:47:34.0991 2388 ZuneNetworkSvc - ok
20:47:35.0038 2388 ZuneWlanCfgSvc (4d89fc1c20cf655739efac5da81a67bc) C:\Program Files\Zune\ZuneWlanCfgSvc.exe
20:47:35.0053 2388 ZuneWlanCfgSvc - ok
20:47:35.0100 2388 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
20:47:35.0381 2388 \Device\Harddisk0\DR0 - ok
20:47:35.0381 2388 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR1
20:47:35.0771 2388 \Device\Harddisk1\DR1 - ok
20:47:35.0771 2388 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk4\DR4
20:47:36.0254 2388 \Device\Harddisk4\DR4 - ok
20:47:36.0254 2388 Boot (0x1200) (969ed0788e06edcad71457f94f499202) \Device\Harddisk0\DR0\Partition0
20:47:36.0254 2388 \Device\Harddisk0\DR0\Partition0 - ok
20:47:36.0254 2388 Boot (0x1200) (6e6d7778d5826e2a2de35297af45b5d1) \Device\Harddisk1\DR1\Partition0
20:47:36.0270 2388 \Device\Harddisk1\DR1\Partition0 - ok
20:47:36.0270 2388 Boot (0x1200) (b62d95c000e5c15b2564c01c2e60530f) \Device\Harddisk4\DR4\Partition0
20:47:36.0270 2388 \Device\Harddisk4\DR4\Partition0 - ok
20:47:36.0270 2388 ============================================================
20:47:36.0270 2388 Scan finished
20:47:36.0270 2388 ============================================================
20:47:36.0286 5332 Detected object count: 0
20:47:36.0286 5332 Actual detected object count: 0


aswMBR log:


aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-07-19 21:03:14
-----------------------------
21:03:14.419 OS Version: Windows x64 6.1.7601 Service Pack 1
21:03:14.419 Number of processors: 4 586 0xF0B
21:03:14.419 ComputerName: CASARINI-PC UserName: Casarini
21:03:16.588 Initialize success
21:03:20.597 AVAST engine defs: 12071901
21:03:24.871 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
21:03:24.871 Disk 0 Vendor: WDC_WD32 01.0 Size: 305245MB BusType: 3
21:03:24.887 Disk 0 MBR read successfully
21:03:24.887 Disk 0 MBR scan
21:03:24.887 Disk 0 Windows 7 default MBR code
21:03:24.902 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 305243 MB offset 2048
21:03:24.949 Disk 0 scanning C:\Windows\system32\drivers
21:03:39.426 Service scanning
21:03:59.254 Modules scanning
21:03:59.254 Disk 0 trace - called modules:
21:03:59.269 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor.sys
21:03:59.269 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80048ca060]
21:03:59.269 3 CLASSPNP.SYS[fffff8800185943f] -> nt!IofCallDriver -> [0xfffffa80046149b0]
21:03:59.269 5 ACPI.sys[fffff88000ede7a1] -> nt!IofCallDriver -> \Device\00000069[0xfffffa8004602590]
21:04:00.782 AVAST engine scan C:\Windows
21:04:19.939 AVAST engine scan C:\Windows\system32
21:07:39.559 File: C:\Windows\assembly\GAC_32\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
21:07:43.007 File: C:\Windows\assembly\GAC_64\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
21:08:34.255 Disk 0 MBR has been saved successfully to "C:\Users\Casarini\Desktop\Fix\MBR.dat"
21:08:34.302 The log file has been saved successfully to "C:\Users\Casarini\Desktop\Fix\aswMBR.txt"


aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-07-19 21:03:14
-----------------------------
21:03:14.419 OS Version: Windows x64 6.1.7601 Service Pack 1
21:03:14.419 Number of processors: 4 586 0xF0B
21:03:14.419 ComputerName: CASARINI-PC UserName: Casarini
21:03:16.588 Initialize success
21:03:20.597 AVAST engine defs: 12071901
21:03:24.871 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
21:03:24.871 Disk 0 Vendor: WDC_WD32 01.0 Size: 305245MB BusType: 3
21:03:24.887 Disk 0 MBR read successfully
21:03:24.887 Disk 0 MBR scan
21:03:24.887 Disk 0 Windows 7 default MBR code
21:03:24.902 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 305243 MB offset 2048
21:03:24.949 Disk 0 scanning C:\Windows\system32\drivers
21:03:39.426 Service scanning
21:03:59.254 Modules scanning
21:03:59.254 Disk 0 trace - called modules:
21:03:59.269 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor.sys
21:03:59.269 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80048ca060]
21:03:59.269 3 CLASSPNP.SYS[fffff8800185943f] -> nt!IofCallDriver -> [0xfffffa80046149b0]
21:03:59.269 5 ACPI.sys[fffff88000ede7a1] -> nt!IofCallDriver -> \Device\00000069[0xfffffa8004602590]
21:04:00.782 AVAST engine scan C:\Windows
21:04:19.939 AVAST engine scan C:\Windows\system32
21:07:39.559 File: C:\Windows\assembly\GAC_32\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
21:07:43.007 File: C:\Windows\assembly\GAC_64\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
21:08:34.255 Disk 0 MBR has been saved successfully to "C:\Users\Casarini\Desktop\Fix\MBR.dat"
21:08:34.302 The log file has been saved successfully to "C:\Users\Casarini\Desktop\Fix\aswMBR.txt"
21:09:55.312 AVAST engine scan C:\Windows\system32\drivers
21:10:18.774 AVAST engine scan C:\Users\Casarini
21:17:01.832 Disk 0 MBR has been saved successfully to "C:\Users\Casarini\Desktop\Fix\MBR.dat"
21:17:01.832 The log file has been saved successfully to "C:\Users\Casarini\Desktop\Fix\aswMBR.txt"


ESET online scanner log coming in next post as it's taking ages.

#6 dadecasa

dadecasa
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:06:47 AM

Posted 19 July 2012 - 06:46 PM

ESET online scanner log:

C:\Program Files (x86)\IObit Toolbar\IE\6.0\iobitToolbarIE.dll a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined
C:\Users\Casarini\Downloads\asc-setup.exe a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined
C:\Users\Casarini\Downloads\gamebooster.exe a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined
C:\Users\Casarini\Downloads\gb3-setup.exe a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined
C:\Users\Casarini\Downloads\sd2-setup220.exe a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined
C:\Users\Casarini\Downloads\setup (1).zip a variant of Win32/Kryptik.AFMM trojan deleted - quarantined
C:\Users\Casarini\Downloads\setup.zip a variant of Win32/Kryptik.AFMM trojan deleted - quarantined
C:\Windows\Installer\13ebcf.msi a variant of Win32/Toolbar.Widgi application deleted - quarantined
C:\Windows\Installer\{0b0fe655-d10d-3efe-c0c0-650c72f76425}\U\00000008.@ Win64/Agent.BA trojan cleaned by deleting - quarantined
C:\Windows\Installer\{0b0fe655-d10d-3efe-c0c0-650c72f76425}\U\80000000.@ Win64/Sirefef.AE trojan cleaned by deleting - quarantined
C:\Windows\Installer\{0b0fe655-d10d-3efe-c0c0-650c72f76425}\U\80000032.@ a variant of Win32/Sirefef.FD trojan cleaned by deleting - quarantined
C:\Windows\Installer\{0b0fe655-d10d-3efe-c0c0-650c72f76425}\U\80000064.@ Win64/Sirefef.AN trojan cleaned by deleting - quarantined
Operating memory a variant of Win32/Sirefef.EZ trojan

#7 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:47 AM

Posted 19 July 2012 - 07:33 PM

We need advanced tools to remove this one

Read the guide here

http://www.bleepingcomputer.com/forums/topic34773.html

and create a topic here

http://www.bleepingcomputer.com/forums/forum22.html

Good luck

#8 dadecasa

dadecasa
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:06:47 AM

Posted 21 July 2012 - 06:05 AM

cheers mate, I just posted in the other section.

#9 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:47 AM

Posted 21 July 2012 - 06:59 AM

You're welcome :)

#10 Orange Blossom

Orange Blossom

    OBleepin Investigator


  • Moderator
  • 37,009 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Bloomington, IN
  • Local time:06:47 AM

Posted 21 July 2012 - 09:01 AM

Hello,

Now that you have posted a log here: http://www.bleepingcomputer.com/forums/topic461728.html you should NOT make further changes to your computer (install/uninstall programs, use special fix tools, delete files, edit the registry, etc) unless advised by a MRT Team member, nor should you ask for help elsewhere. Doing so can result in system changes which may not show in the log you already posted. Further, any modifications you make on your own may cause confusion for the helper assisting you and could complicate the malware removal process which would extend the time it takes to clean your computer.

From this point on the MRT Team should be the only members that you take advice from, until they have verified your log as clean.

Please be patient. It may take a while to get a response because the MRT Team members are EXTREMELY busy working logs posted before yours. They are volunteers who will help you out as soon as possible. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the MRT Team. Generally the staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response there will be 1 reply. A team member, looking for a new log to work may assume another MRT Team member is already assisting you and not open the thread to respond.

Please be patient. It may take several days to get a response but your log will be reviewed and answered as soon as possible. I advise checking your topic once a day for responses as the e-mail notification system is unreliable.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

To avoid confusion, I am closing this topic. Good luck with your log.

Orange Blossom :cherry:
Help us help you. If HelpBot replies, you MUST follow step 1 in its reply so we know you need help.

Orange Blossom

An ounce of prevention is worth a pound of cure

SpywareBlaster, WinPatrol Plus, ESET Smart Security, Malwarebytes' Anti-Malware, NoScript Firefox ext., Norton noscript




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users