Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

106 ports open....normal?


  • Please log in to reply
14 replies to this topic

#1 droppy45

droppy45

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 06:03 PM

Just got a notification from Google Chrome that an abnormal computer tried to log into my account. Said it was blocked but I changed my password anyway. Out of curiosity I opened a port checker call CurrPorts. It shows that there are 106 internet ports open. There are 26 Chrome ports open, all established. There are 47 unknown ports open, all time wait. The rest are system open ports, all listening except for one that is listed as: System 2044 TCP 49897 192.168.1.105 80 http 216.34.181.96 projects.sourceforge.net Established
Does this seem outrageous? And if so, how can I keep those possibly malicious ports from opening? I am on a Toshiba C875D-S7225 laptop with Win 7 home premium. I use ZoneAlarm Internet Security Suite and have run the virus checker. Also ran Spybot that found some stuff, even registry entries that I had to restart to clear and it worked. Also ran Malwarebytes, IObit AdvancedSystemCare Pro, and IObit Malware Fighter, all clean. Thanks for any thoughts!

EDIT: I just closed the projects.sourceforge.net port and now I have 14 Chrome ports open and 5 unknown ports.

Edited by droppy45, 17 August 2012 - 06:19 PM.


BC AdBot (Login to Remove)

 


#2 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:06:35 PM

Posted 17 August 2012 - 07:15 PM

Hello,

I will be helping you with your problems. Please be patient while I assist you.

Some points for you to keep in mind while I am helping you to make things go easier and faster for both of us

  • Please do NOT run, install or uninstall any programs, unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not attach logs or use code boxes, just copy and paste the text.
    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.
  • Please read every post completely before doing anything.
    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.
  • Please provide feedback about your experience as we go.
    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.

NOTE: At the top of your post, click on the Watch Topic Button, select Immediate Notification, and click on Proceed. This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of hartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.

----------------------------------------------

Please do the following:

:step1:

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
  • Double-click on TDSSKiller.exe on your desktop to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click on change parameters
  • Under Objects to scan, check the box next to Loaded modules
  • If you are asked to reboot, then click Yes.

Next

  • Check the boxes next to Loaded modules, Verify file digital signatures, Detect TDLFS file system, then click OK.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    Note: If Cure is not an option, Skip instead, do NOT choose Delete or Quarantine unless instructed.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the full contents of that file in your next reply.

:step2:

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the full contents of that document.


:step3:

Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press Scan.
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the full contents of the log in your next reply.


:step4:

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • List Restore points
NOTE: When using "Reset FF Proxy Settings" option Firefox should be closed.

Click Go and post the full contents of the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#3 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 08:10 PM

TDSSKiller Log Part 1:

19:50:12.0887 0492 TDSS rootkit removing tool 2.8.6.0 Aug 13 2012 17:24:05
19:50:13.0496 0492 ============================================================
19:50:13.0496 0492 Current date / time: 2012/08/17 19:50:13.0496
19:50:13.0496 0492 SystemInfo:
19:50:13.0496 0492
19:50:13.0496 0492 OS Version: 6.1.7601 ServicePack: 1.0
19:50:13.0496 0492 Product type: Workstation
19:50:13.0496 0492 ComputerName: DEREK-PC
19:50:13.0496 0492 UserName: Derek
19:50:13.0496 0492 Windows directory: C:\windows
19:50:13.0496 0492 System windows directory: C:\windows
19:50:13.0496 0492 Running under WOW64
19:50:13.0496 0492 Processor architecture: Intel x64
19:50:13.0496 0492 Number of processors: 2
19:50:13.0496 0492 Page size: 0x1000
19:50:13.0496 0492 Boot type: Normal boot
19:50:13.0496 0492 ============================================================
19:50:14.0837 0492 BG loaded
19:50:15.0165 0492 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:50:15.0181 0492 ============================================================
19:50:15.0181 0492 \Device\Harddisk0\DR0:
19:50:15.0181 0492 MBR partitions:
19:50:15.0181 0492 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x379C8000
19:50:15.0181 0492 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x37CB6800, BlocksNum 0xBB8000
19:50:15.0181 0492 ============================================================
19:50:15.0196 0492 C: <-> \Device\Harddisk0\DR0\Partition1
19:50:15.0243 0492 F: <-> \Device\Harddisk0\DR0\Partition2
19:50:15.0243 0492 ============================================================
19:50:15.0243 0492 Initialize success
19:50:15.0243 0492 ============================================================
19:50:27.0583 3648 ============================================================
19:50:27.0583 3648 Scan started
19:50:27.0583 3648 Mode: Manual; SigCheck; TDLFS;
19:50:27.0583 3648 ============================================================
19:50:29.0065 3648 ================ Scan services =============================
19:50:29.0267 3648 [ a87d604aea360176311474c87a63bb88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
19:50:29.0377 3648 1394ohci - ok
19:50:29.0408 3648 [ d81d9e70b8a6dd14d42d7b4efa65d5f2 ] ACPI C:\windows\system32\drivers\ACPI.sys
19:50:29.0423 3648 ACPI - ok
19:50:29.0439 3648 [ 99f8e788246d495ce3794d7e7821d2ca ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
19:50:29.0517 3648 AcpiPmi - ok
19:50:29.0735 3648 [ 982ed373a7701b2fbc2121b30475279d ] AcrSch2Svc C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
19:50:29.0751 3648 AcrSch2Svc - ok
19:50:29.0860 3648 [ 0d4c486a24a711a45fd83acdf4d18506 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:50:29.0876 3648 AdobeFlashPlayerUpdateSvc - ok
19:50:29.0923 3648 [ 2f6b34b83843f0c5118b63ac634f5bf4 ] adp94xx C:\windows\system32\drivers\adp94xx.sys
19:50:29.0954 3648 adp94xx - ok
19:50:30.0016 3648 [ 597f78224ee9224ea1a13d6350ced962 ] adpahci C:\windows\system32\drivers\adpahci.sys
19:50:30.0032 3648 adpahci - ok
19:50:30.0032 3648 [ e109549c90f62fb570b9540c4b148e54 ] adpu320 C:\windows\system32\drivers\adpu320.sys
19:50:30.0047 3648 adpu320 - ok
19:50:30.0203 3648 [ 96d6cdd0b32846e8cfbe592f4f32e608 ] AdvancedSystemCareService5 C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe
19:50:30.0235 3648 AdvancedSystemCareService5 - ok
19:50:30.0281 3648 [ 4b78b431f225fd8624c5655cb1de7b61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
19:50:30.0375 3648 AeLookupSvc - ok
19:50:30.0422 3648 [ b794dd8acc5cc76177156463dab4bebb ] afcdp C:\windows\system32\DRIVERS\afcdp.sys
19:50:30.0437 3648 afcdp - ok
19:50:30.0531 3648 [ cd2b244f62ba9c4683597e3edcb0fbe3 ] afcdpsrv C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
19:50:30.0578 3648 afcdpsrv - ok
19:50:30.0640 3648 [ 1c7857b62de5994a75b054a9fd4c3825 ] AFD C:\windows\system32\drivers\afd.sys
19:50:30.0671 3648 AFD - ok
19:50:30.0687 3648 [ 608c14dba7299d8cb6ed035a68a15799 ] agp440 C:\windows\system32\drivers\agp440.sys
19:50:30.0703 3648 agp440 - ok
19:50:30.0734 3648 [ 3290d6946b5e30e70414990574883ddb ] ALG C:\windows\System32\alg.exe
19:50:30.0796 3648 ALG - ok
19:50:30.0843 3648 [ 5812713a477a3ad7363c7438ca2ee038 ] aliide C:\windows\system32\drivers\aliide.sys
19:50:30.0859 3648 aliide - ok
19:50:30.0937 3648 [ 63204b7c361d44da791b70f4e31e5220 ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
19:50:31.0015 3648 AMD External Events Utility - ok
19:50:31.0061 3648 [ c17bafa60f941a1af5c2b10d8632c409 ] amdhub30 C:\windows\system32\DRIVERS\amdhub30.sys
19:50:31.0077 3648 amdhub30 - ok
19:50:31.0093 3648 [ 1ff8b4431c353ce385c875f194924c0c ] amdide C:\windows\system32\drivers\amdide.sys
19:50:31.0108 3648 amdide - ok
19:50:31.0124 3648 [ 7024f087cff1833a806193ef9d22cda9 ] AmdK8 C:\windows\system32\drivers\amdk8.sys
19:50:31.0171 3648 AmdK8 - ok
19:50:31.0436 3648 [ 0468fb7ae99626524f9bde3e1e030f63 ] amdkmdag C:\windows\system32\DRIVERS\atikmdag.sys
19:50:31.0561 3648 amdkmdag - ok
19:50:31.0639 3648 [ 41df60b783af496c93ab22b3b30518e1 ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys
19:50:31.0685 3648 amdkmdap - ok
19:50:31.0748 3648 [ 554fb0f28c411fb1eafd4ea46a8caaa4 ] amdkmpfd C:\windows\system32\DRIVERS\amdkmpfd.sys
19:50:31.0763 3648 amdkmpfd - ok
19:50:31.0795 3648 [ 1e56388b3fe0d031c44144eb8c4d6217 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
19:50:31.0826 3648 AmdPPM - ok
19:50:31.0857 3648 [ d4121ae6d0c0e7e13aa221aa57ef2d49 ] amdsata C:\windows\system32\drivers\amdsata.sys
19:50:31.0873 3648 amdsata - ok
19:50:31.0888 3648 [ f67f933e79241ed32ff46a4f29b5120b ] amdsbs C:\windows\system32\drivers\amdsbs.sys
19:50:31.0904 3648 amdsbs - ok
19:50:31.0904 3648 [ 540daf1cea6094886d72126fd7c33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
19:50:31.0919 3648 amdxata - ok
19:50:31.0966 3648 [ 3dc51308f5e7a4bb8020d16e64e9d882 ] amdxhc C:\windows\system32\DRIVERS\amdxhc.sys
19:50:31.0982 3648 amdxhc - ok
19:50:31.0997 3648 [ 89a69c3f2f319b43379399547526d952 ] AppID C:\windows\system32\drivers\appid.sys
19:50:32.0044 3648 AppID - ok
19:50:32.0075 3648 [ 0bc381a15355a3982216f7172f545de1 ] AppIDSvc C:\windows\System32\appidsvc.dll
19:50:32.0122 3648 AppIDSvc - ok
19:50:32.0138 3648 [ 3977d4a871ca0d4f2ed1e7db46829731 ] Appinfo C:\windows\System32\appinfo.dll
19:50:32.0185 3648 Appinfo - ok
19:50:32.0247 3648 [ c484f8ceb1717c540242531db7845c4e ] arc C:\windows\system32\drivers\arc.sys
19:50:32.0263 3648 arc - ok
19:50:32.0263 3648 [ 019af6924aefe7839f61c830227fe79c ] arcsas C:\windows\system32\drivers\arcsas.sys
19:50:32.0278 3648 arcsas - ok
19:50:32.0403 3648 [ 9217d874131ae6ff8f642f124f00a555 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:50:32.0450 3648 aspnet_state - ok
19:50:32.0497 3648 [ 769765ce2cc62867468cea93969b2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
19:50:32.0559 3648 AsyncMac - ok
19:50:32.0559 3648 [ 02062c0b390b7729edc9e69c680a6f3c ] atapi C:\windows\system32\drivers\atapi.sys
19:50:32.0575 3648 atapi - ok
19:50:32.0637 3648 [ 2b3b05c0a7768bf033217eb8f33f9c35 ] AtiHDAudioService C:\windows\system32\drivers\AtihdW76.sys
19:50:32.0653 3648 AtiHDAudioService - ok
19:50:32.0715 3648 [ f23fef6d569fce88671949894a8becf1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
19:50:32.0777 3648 AudioEndpointBuilder - ok
19:50:32.0793 3648 [ f23fef6d569fce88671949894a8becf1 ] AudioSrv C:\windows\System32\Audiosrv.dll
19:50:32.0840 3648 AudioSrv - ok
19:50:32.0871 3648 [ a6bf31a71b409dfa8cac83159e1e2aff ] AxInstSV C:\windows\System32\AxInstSV.dll
19:50:32.0949 3648 AxInstSV - ok
19:50:32.0996 3648 [ 3e5b191307609f7514148c6832bb0842 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
19:50:33.0058 3648 b06bdrv - ok
19:50:33.0074 3648 [ b5ace6968304a3900eeb1ebfd9622df2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
19:50:33.0121 3648 b57nd60a - ok
19:50:33.0167 3648 [ fde360167101b4e45a96f939f388aeb0 ] BDESVC C:\windows\System32\bdesvc.dll
19:50:33.0199 3648 BDESVC - ok
19:50:33.0230 3648 [ 16a47ce2decc9b099349a5f840654746 ] Beep C:\windows\system32\drivers\Beep.sys
19:50:33.0292 3648 Beep - ok
19:50:33.0370 3648 [ 82974d6a2fd19445cc5171fc378668a4 ] BFE C:\windows\System32\bfe.dll
19:50:33.0433 3648 BFE - ok
19:50:33.0573 3648 [ 1ea7969e3271cbc59e1730697dc74682 ] BITS C:\windows\System32\qmgr.dll
19:50:33.0667 3648 BITS - ok
19:50:33.0729 3648 [ 61583ee3c3a17003c4acd0475646b4d3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
19:50:33.0776 3648 blbdrive - ok
19:50:33.0823 3648 [ 6c02a83164f5cc0a262f4199f0871cf5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
19:50:33.0869 3648 bowser - ok
19:50:33.0901 3648 [ f09eee9edc320b5e1501f749fde686c8 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys
19:50:33.0932 3648 BrFiltLo - ok
19:50:33.0947 3648 [ b114d3098e9bdb8bea8b053685831be6 ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys
19:50:33.0963 3648 BrFiltUp - ok
19:50:34.0025 3648 [ 05f5a0d14a2ee1d8255c2aa0e9e8e694 ] Browser C:\windows\System32\browser.dll
19:50:34.0057 3648 Browser - ok
19:50:34.0103 3648 [ 43bea8d483bf1870f018e2d02e06a5bd ] Brserid C:\windows\System32\Drivers\Brserid.sys
19:50:34.0181 3648 Brserid - ok
19:50:34.0181 3648 [ a6eca2151b08a09caceca35c07f05b42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
19:50:34.0228 3648 BrSerWdm - ok
19:50:34.0259 3648 [ b79968002c277e869cf38bd22cd61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
19:50:34.0337 3648 BrUsbMdm - ok
19:50:34.0337 3648 [ a87528880231c54e75ea7a44943b38bf ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
19:50:34.0369 3648 BrUsbSer - ok
19:50:34.0603 3648 [ 9da669f11d1f894ab4eb69bf546a42e8 ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys
19:50:34.0852 3648 BTHMODEM - ok
19:50:34.0883 3648 [ 95f9c2976059462cbbf227f7aab10de9 ] bthserv C:\windows\system32\bthserv.dll
19:50:35.0008 3648 bthserv - ok
19:50:36.0334 3648 [ 3014ca345e8ad68587babfb162dddec5 ] Capture Device Service C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
19:50:36.0365 3648 Capture Device Service ( UnsignedFile.Multi.Generic ) - warning
19:50:36.0365 3648 Capture Device Service - detected UnsignedFile.Multi.Generic (1)
19:50:36.0412 3648 [ b8bd2bb284668c84865658c77574381a ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
19:50:36.0475 3648 cdfs - ok
19:50:36.0490 3648 [ f036ce71586e93d94dab220d7bdf4416 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
19:50:36.0537 3648 cdrom - ok
19:50:36.0584 3648 [ f17d1d393bbc69c5322fbfafaca28c7f ] CertPropSvc C:\windows\System32\certprop.dll
19:50:36.0646 3648 CertPropSvc - ok
19:50:36.0693 3648 [ d7cd5c4e1b71fa62050515314cfb52cf ] circlass C:\windows\system32\drivers\circlass.sys
19:50:36.0724 3648 circlass - ok
19:50:36.0771 3648 [ fe1ec06f2253f691fe36217c592a0206 ] CLFS C:\windows\system32\CLFS.sys
19:50:36.0787 3648 CLFS - ok
19:50:36.0865 3648 [ d88040f816fda31c3b466f0fa0918f29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:50:36.0896 3648 clr_optimization_v2.0.50727_32 - ok
19:50:36.0943 3648 [ d1ceea2b47cb998321c579651ce3e4f8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:50:36.0958 3648 clr_optimization_v2.0.50727_64 - ok
19:50:37.0083 3648 [ c5a75eb48e2344abdc162bda79e16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:50:37.0223 3648 clr_optimization_v4.0.30319_32 - ok
19:50:37.0270 3648 [ c6f9af94dcd58122a4d7e89db6bed29d ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:50:37.0317 3648 clr_optimization_v4.0.30319_64 - ok
19:50:37.0364 3648 [ 0840155d0bddf1190f84a663c284bd33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
19:50:37.0395 3648 CmBatt - ok
19:50:37.0395 3648 [ e19d3f095812725d88f9001985b94edd ] cmdide C:\windows\system32\drivers\cmdide.sys
19:50:37.0426 3648 cmdide - ok
19:50:37.0457 3648 [ 9ac4f97c2d3e93367e2148ea940cd2cd ] CNG C:\windows\system32\Drivers\cng.sys
19:50:37.0489 3648 CNG - ok
19:50:37.0520 3648 [ 102de219c3f61415f964c88e9085ad14 ] Compbatt C:\windows\system32\drivers\compbatt.sys
19:50:37.0535 3648 Compbatt - ok
19:50:37.0567 3648 [ 03edb043586cceba243d689bdda370a8 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
19:50:37.0613 3648 CompositeBus - ok
19:50:37.0645 3648 COMSysApp - ok
19:50:37.0645 3648 [ 1c827878a998c18847245fe1f34ee597 ] crcdisk C:\windows\system32\drivers\crcdisk.sys
19:50:37.0660 3648 crcdisk - ok
19:50:37.0707 3648 [ 4f5414602e2544a4554d95517948b705 ] CryptSvc C:\windows\system32\cryptsvc.dll
19:50:37.0769 3648 CryptSvc - ok
19:50:37.0801 3648 [ 5c627d1b1138676c0a7ab2c2c190d123 ] DcomLaunch C:\windows\system32\rpcss.dll
19:50:37.0847 3648 DcomLaunch - ok
19:50:37.0894 3648 [ 3cec7631a84943677aa8fa8ee5b6b43d ] defragsvc C:\windows\System32\defragsvc.dll
19:50:37.0941 3648 defragsvc - ok
19:50:38.0003 3648 [ 9bb2ef44eaa163b29c4a4587887a0fe4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
19:50:38.0050 3648 DfsC - ok
19:50:38.0097 3648 [ 43d808f5d9e1a18e5eeb5ebc83969e4e ] Dhcp C:\windows\system32\dhcpcore.dll
19:50:38.0159 3648 Dhcp - ok
19:50:38.0191 3648 [ 13096b05847ec78f0977f2c0f79e9ab3 ] discache C:\windows\system32\drivers\discache.sys
19:50:38.0237 3648 discache - ok
19:50:38.0253 3648 [ 9819eee8b5ea3784ec4af3b137a5244c ] Disk C:\windows\system32\drivers\disk.sys
19:50:38.0269 3648 Disk - ok
19:50:38.0300 3648 [ 16835866aaa693c7d7fceba8fff706e4 ] Dnscache C:\windows\System32\dnsrslvr.dll
19:50:38.0347 3648 Dnscache - ok
19:50:38.0378 3648 [ b1fb3ddca0fdf408750d5843591afbc6 ] dot3svc C:\windows\System32\dot3svc.dll
19:50:38.0425 3648 dot3svc - ok
19:50:38.0456 3648 [ b26f4f737e8f9df4f31af6cf31d05820 ] DPS C:\windows\system32\dps.dll
19:50:38.0503 3648 DPS - ok
19:50:38.0549 3648 [ 9b19f34400d24df84c858a421c205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
19:50:38.0581 3648 drmkaud - ok
19:50:38.0612 3648 [ 85dbf6ec7bdfa6187f4a1ec8f3145cd0 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
19:50:38.0643 3648 DXGKrnl - ok
19:50:38.0674 3648 [ e2dda8726da9cb5b2c4000c9018a9633 ] EapHost C:\windows\System32\eapsvc.dll
19:50:38.0721 3648 EapHost - ok
19:50:38.0830 3648 [ dc5d737f51be844d8c82c695eb17372f ] ebdrv C:\windows\system32\drivers\evbda.sys
19:50:38.0955 3648 ebdrv - ok
19:50:39.0002 3648 [ c118a82cd78818c29ab228366ebf81c3 ] EFS C:\windows\System32\lsass.exe
19:50:39.0017 3648 EFS - ok
19:50:39.0142 3648 [ c4002b6b41975f057d98c439030cea07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
19:50:39.0189 3648 ehRecvr - ok
19:50:39.0267 3648 [ 4705e8ef9934482c5bb488ce28afc681 ] ehSched C:\windows\ehome\ehsched.exe
19:50:39.0298 3648 ehSched - ok
19:50:39.0361 3648 [ 0e5da5369a0fcaea12456dd852545184 ] elxstor C:\windows\system32\drivers\elxstor.sys
19:50:39.0376 3648 elxstor - ok
19:50:39.0376 3648 [ 34a3c54752046e79a126e15c51db409b ] ErrDev C:\windows\system32\drivers\errdev.sys
19:50:39.0423 3648 ErrDev - ok
19:50:39.0501 3648 [ 4166f82be4d24938977dd1746be9b8a0 ] EventSystem C:\windows\system32\es.dll
19:50:39.0548 3648 EventSystem - ok
19:50:39.0595 3648 [ a510c654ec00c1e9bdd91eeb3a59823b ] exfat C:\windows\system32\drivers\exfat.sys
19:50:39.0641 3648 exfat - ok
19:50:39.0704 3648 [ 0adc83218b66a6db380c330836f3e36d ] fastfat C:\windows\system32\drivers\fastfat.sys
19:50:39.0766 3648 fastfat - ok
19:50:39.0844 3648 [ dbefd454f8318a0ef691fdd2eaab44eb ] Fax C:\windows\system32\fxssvc.exe
19:50:39.0907 3648 Fax - ok
19:50:39.0922 3648 [ d765d19cd8ef61f650c384f62fac00ab ] fdc C:\windows\system32\drivers\fdc.sys
19:50:39.0953 3648 fdc - ok
19:50:40.0016 3648 [ 0438cab2e03f4fb61455a7956026fe86 ] fdPHost C:\windows\system32\fdPHost.dll
19:50:40.0063 3648 fdPHost - ok
19:50:40.0094 3648 [ 802496cb59a30349f9a6dd22d6947644 ] FDResPub C:\windows\system32\fdrespub.dll
19:50:40.0156 3648 FDResPub - ok
19:50:40.0203 3648 [ 655661be46b5f5f3fd454e2c3095b930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
19:50:40.0219 3648 FileInfo - ok
19:50:40.0359 3648 [ 060cc45cecae2feaff9c8c52d8fafaa8 ] FileMonitor C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
19:50:40.0359 3648 FileMonitor - ok
19:50:40.0390 3648 [ 5f671ab5bc87eea04ec38a6cd5962a47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
19:50:40.0437 3648 Filetrace - ok
19:50:40.0453 3648 [ c172a0f53008eaeb8ea33fe10e177af5 ] flpydisk C:\windows\system32\drivers\flpydisk.sys
19:50:40.0468 3648 flpydisk - ok
19:50:40.0499 3648 [ da6b67270fd9db3697b20fce94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
19:50:40.0515 3648 FltMgr - ok
19:50:40.0546 3648 [ d4463a74e1bfbf3fb9b4fc6cf5390152 ] fltsrv C:\windows\system32\DRIVERS\fltsrv.sys
19:50:40.0562 3648 fltsrv - ok
19:50:40.0640 3648 [ 5c4cb4086fb83115b153e47add961a0c ] FontCache C:\windows\system32\FntCache.dll
19:50:40.0702 3648 FontCache - ok
19:50:40.0811 3648 [ a8b7f3818ab65695e3a0bb3279f6dce6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:50:40.0811 3648 FontCache3.0.0.0 - ok
19:50:40.0858 3648 [ d43703496149971890703b4b1b723eac ] FsDepends C:\windows\system32\drivers\FsDepends.sys
19:50:40.0874 3648 FsDepends - ok
19:50:40.0874 3648 [ 6bd9295cc032dd3077c671fccf579a7b ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
19:50:40.0889 3648 Fs_Rec - ok
19:50:40.0889 3648 [ 1f7b25b858fa27015169fe95e54108ed ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
19:50:40.0921 3648 fvevol - ok
19:50:40.0921 3648 [ 8c778d335c9d272cfd3298ab02abe3b6 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
19:50:40.0936 3648 gagp30kx - ok
19:50:41.0030 3648 [ c403c5db49a0f9aaf4f2128edc0106d8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
19:50:41.0045 3648 GamesAppService - ok
19:50:41.0108 3648 [ fa07ec01952729ddddc5bf4bae06b09e ] GFNEXSrv C:\Windows\System32\GFNEXSrv.exe
19:50:41.0123 3648 GFNEXSrv - ok
19:50:41.0295 3648 [ 277bbc7e1aa1ee957f573a10eca7ef3a ] gpsvc C:\windows\System32\gpsvc.dll
19:50:41.0342 3648 gpsvc - ok
19:50:41.0467 3648 [ f02a533f517eb38333cb12a9e8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:50:41.0482 3648 gupdate - ok
19:50:41.0482 3648 [ f02a533f517eb38333cb12a9e8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:50:41.0498 3648 gupdatem - ok
19:50:42.0917 3648 [ c1b577b2169900f4cf7190c39f085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
19:50:42.0933 3648 gusvc - ok
19:50:42.0964 3648 [ f2523ef6460fc42405b12248338ab2f0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
19:50:43.0027 3648 hcw85cir - ok
19:50:43.0058 3648 [ 975761c778e33cd22498059b91e7373a ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
19:50:43.0089 3648 HdAudAddService - ok
19:50:43.0105 3648 [ 97bfed39b6b79eb12cddbfeed51f56bb ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
19:50:43.0136 3648 HDAudBus - ok
19:50:43.0151 3648 [ 78e86380454a7b10a5eb255dc44a355f ] HidBatt C:\windows\system32\drivers\HidBatt.sys
19:50:43.0198 3648 HidBatt - ok
19:50:43.0229 3648 [ 7fd2a313f7afe5c4dab14798c48dd104 ] HidBth C:\windows\system32\drivers\hidbth.sys
19:50:43.0261 3648 HidBth - ok
19:50:43.0276 3648 [ 0a77d29f311b88cfae3b13f9c1a73825 ] HidIr C:\windows\system32\drivers\hidir.sys
19:50:43.0292 3648 HidIr - ok
19:50:43.0339 3648 [ bd9eb3958f213f96b97b1d897dee006d ] hidserv C:\windows\system32\hidserv.dll
19:50:43.0385 3648 hidserv - ok
19:50:43.0448 3648 [ 9592090a7e2b61cd582b612b6df70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
19:50:43.0463 3648 HidUsb - ok
19:50:43.0510 3648 [ 387e72e739e15e3d37907a86d9ff98e2 ] hkmsvc C:\windows\system32\kmsvc.dll
19:50:43.0573 3648 hkmsvc - ok
19:50:43.0588 3648 [ efdfb3dd38a4376f93e7985173813abd ] HomeGroupListener C:\windows\system32\ListSvc.dll
19:50:43.0682 3648 HomeGroupListener - ok
19:50:43.0713 3648 [ 908acb1f594274965a53926b10c81e89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
19:50:43.0760 3648 HomeGroupProvider - ok
19:50:43.0822 3648 [ 39d2abcd392f3d8a6dce7b60ae7b8efc ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
19:50:43.0838 3648 HpSAMD - ok
19:50:43.0885 3648 [ 0ea7de1acb728dd5a369fd742d6eee28 ] HTTP C:\windows\system32\drivers\HTTP.sys
19:50:43.0963 3648 HTTP - ok
19:50:43.0963 3648 [ a5462bd6884960c9dc85ed49d34ff392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
19:50:43.0978 3648 hwpolicy - ok
19:50:43.0994 3648 [ fa55c73d4affa7ee23ac4be53b4592d3 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
19:50:44.0025 3648 i8042prt - ok
19:50:44.0056 3648 [ aaaf44db3bd0b9d1fb6969b23ecc8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
19:50:44.0072 3648 iaStorV - ok
19:50:44.0150 3648 [ 1cf03c69b49acb70c722df92755c0c8c ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
19:50:44.0165 3648 IDriverT ( UnsignedFile.Multi.Generic ) - warning
19:50:44.0165 3648 IDriverT - detected UnsignedFile.Multi.Generic (1)
19:50:44.0228 3648 [ 5988fc40f8db5b0739cd1e3a5d0d78bd ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:50:44.0259 3648 idsvc - ok
19:50:44.0290 3648 [ 5c18831c61933628f5bb0ea2675b9d21 ] iirsp C:\windows\system32\drivers\iirsp.sys
19:50:44.0306 3648 iirsp - ok
19:50:45.0866 3648 [ fcd84c381e0140af901e58d48882d26b ] IKEEXT C:\windows\System32\ikeext.dll
19:50:45.0944 3648 IKEEXT - ok
19:50:46.0037 3648 [ 8ae99ebe30e8338907361018d9030835 ] IMFservice C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
19:50:46.0069 3648 IMFservice - ok
19:50:46.0381 3648 [ 112a84bd9a31c59826ac2979d451f0da ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys
19:50:46.0474 3648 IntcAzAudAddService - ok
19:50:46.0490 3648 [ f00f20e70c6ec3aa366910083a0518aa ] intelide C:\windows\system32\drivers\intelide.sys
19:50:46.0505 3648 intelide - ok
19:50:46.0537 3648 [ ada036632c664caa754079041cf1f8c1 ] intelppm C:\windows\system32\drivers\intelppm.sys
19:50:46.0568 3648 intelppm - ok
19:50:46.0599 3648 [ 098a91c54546a3b878dad6a7e90a455b ] IPBusEnum C:\windows\system32\ipbusenum.dll
19:50:46.0661 3648 IPBusEnum - ok
19:50:46.0677 3648 [ c9f0e1bd74365a8771590e9008d22ab6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
19:50:46.0724 3648 IpFilterDriver - ok
19:50:46.0755 3648 [ a34a587fffd45fa649fba6d03784d257 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
19:50:46.0833 3648 iphlpsvc - ok
19:50:46.0849 3648 [ 0fc1aea580957aa8817b8f305d18ca3a ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
19:50:46.0880 3648 IPMIDRV - ok
19:50:46.0895 3648 [ af9b39a7e7b6caa203b3862582e9f2d0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
19:50:46.0973 3648 IPNAT - ok
19:50:46.0973 3648 [ 3abf5e7213eb28966d55d58b515d5ce9 ] IRENUM C:\windows\system32\drivers\irenum.sys
19:50:47.0005 3648 IRENUM - ok
19:50:47.0020 3648 [ 2f7b28dc3e1183e5eb418df55c204f38 ] isapnp C:\windows\system32\drivers\isapnp.sys
19:50:47.0036 3648 isapnp - ok
19:50:47.0051 3648 [ d931d7309deb2317035b07c9f9e6b0bd ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
19:50:47.0083 3648 iScsiPrt - ok
19:50:47.0317 3648 [ 420b9729a7de07d4aaffaa7d9d13b452 ] ISWKL C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys
19:50:47.0332 3648 ISWKL - ok
19:50:47.0504 3648 [ eedac170e922a4bd19fdb3d0d55786bb ] IswSvc C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
19:50:47.0535 3648 IswSvc - ok
19:50:47.0566 3648 [ bc02336f1cba7dcc7d1213bb588a68a5 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
19:50:47.0582 3648 kbdclass - ok
19:50:47.0629 3648 [ 0705eff5b42a9db58548eec3b26bb484 ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys
19:50:47.0660 3648 kbdhid - ok
19:50:47.0660 3648 [ c118a82cd78818c29ab228366ebf81c3 ] KeyIso C:\windows\system32\lsass.exe
19:50:47.0691 3648 KeyIso - ok
19:50:47.0738 3648 [ e656fe10d6d27794afa08136685a69e8 ] KL1 C:\windows\system32\DRIVERS\kl1.sys
19:50:47.0769 3648 KL1 - ok
19:50:47.0785 3648 [ d865dd8b0448e3f963d68c04c532858f ] kl2 C:\windows\system32\DRIVERS\kl2.sys
19:50:47.0800 3648 kl2 - ok
19:50:47.0831 3648 [ 055790d38d7ec73aef03e4aa7f67ba03 ] KLIF C:\windows\system32\DRIVERS\klif.sys
19:50:47.0863 3648 KLIF - ok
19:50:47.0909 3648 [ 97a7070aea4c058b6418519e869a63b4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
19:50:47.0925 3648 KSecDD - ok
19:50:47.0941 3648 [ 26c43a7c2862447ec59deda188d1da07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
19:50:47.0972 3648 KSecPkg - ok
19:50:48.0019 3648 [ 6869281e78cb31a43e969f06b57347c4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
19:50:48.0065 3648 ksthunk - ok
19:50:48.0112 3648 [ 6ab66e16aa859232f64deb66887a8c9c ] KtmRm C:\windows\system32\msdtckrm.dll
19:50:48.0175 3648 KtmRm - ok
19:50:48.0221 3648 [ d9f42719019740baa6d1c6d536cbdaa6 ] LanmanServer C:\windows\system32\srvsvc.dll
19:50:48.0268 3648 LanmanServer - ok
19:50:48.0299 3648 [ 851a1382eed3e3a7476db004f4ee3e1a ] LanmanWorkstation C:\windows\System32\wkssvc.dll
19:50:48.0362 3648 LanmanWorkstation - ok
19:50:48.0471 3648 [ 7772dfab22611050b79504e671b06e6e ] LBTServ C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
19:50:48.0487 3648 LBTServ - ok
19:50:48.0549 3648 [ 241f2648adf090e2a10095bd6d6f5dcb ] LHidFilt C:\windows\system32\DRIVERS\LHidFilt.Sys
19:50:48.0565 3648 LHidFilt - ok
19:50:48.0611 3648 [ 1538831cf8ad2979a04c423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
19:50:48.0658 3648 lltdio - ok
19:50:48.0705 3648 [ c1185803384ab3feed115f79f109427f ] lltdsvc C:\windows\System32\lltdsvc.dll
19:50:48.0767 3648 lltdsvc - ok
19:50:48.0767 3648 [ f993a32249b66c9d622ea5592a8b76b8 ] lmhosts C:\windows\System32\lmhsvc.dll
19:50:48.0814 3648 lmhosts - ok
19:50:48.0877 3648 [ 342ed5a4b3326014438f36d22d803737 ] LMouFilt C:\windows\system32\DRIVERS\LMouFilt.Sys
19:50:48.0892 3648 LMouFilt - ok
19:50:48.0939 3648 [ 1a93e54eb0ece102495a51266dcdb6a6 ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys
19:50:48.0986 3648 LSI_FC - ok
19:50:49.0001 3648 [ 1047184a9fdc8bdbff857175875ee810 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
19:50:49.0017 3648 LSI_SAS - ok
19:50:49.0017 3648 [ 30f5c0de1ee8b5bc9306c1f0e4a75f93 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
19:50:49.0033 3648 LSI_SAS2 - ok
19:50:49.0064 3648 [ 0504eacaff0d3c8aed161c4b0d369d4a ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
19:50:49.0079 3648 LSI_SCSI - ok
19:50:49.0079 3648 [ 43d0f98e1d56ccddb0d5254cff7b356e ] luafv C:\windows\system32\drivers\luafv.sys
19:50:49.0126 3648 luafv - ok
19:50:49.0173 3648 [ 0be09cd858abf9df6ed259d57a1a1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
19:50:49.0189 3648 Mcx2Svc - ok
19:50:49.0189 3648 [ a55805f747c6edb6a9080d7c633bd0f4 ] megasas C:\windows\system32\drivers\megasas.sys
19:50:49.0204 3648 megasas - ok
19:50:49.0235 3648 [ baf74ce0072480c3b6b7c13b2a94d6b3 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
19:50:49.0267 3648 MegaSR - ok
19:50:49.0423 3648 [ e40e80d0304a73e8d269f7141d77250b ] MMCSS C:\windows\system32\mmcss.dll
19:50:49.0469 3648 MMCSS - ok
19:50:49.0485 3648 [ 800ba92f7010378b09f9ed9270f07137 ] Modem C:\windows\system32\drivers\modem.sys
19:50:49.0547 3648 Modem - ok
19:50:49.0594 3648 [ b03d591dc7da45ece20b3b467e6aadaa ] monitor C:\windows\system32\DRIVERS\monitor.sys
19:50:49.0625 3648 monitor - ok
19:50:49.0657 3648 [ 7d27ea49f3c1f687d357e77a470aea99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
19:50:49.0672 3648 mouclass - ok
19:50:49.0735 3648 [ d3bf052c40b0c4166d9fd86a4288c1e6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
19:50:49.0797 3648 mouhid - ok
19:50:49.0813 3648 [ 32e7a3d591d671a6df2db515a5cbe0fa ] mountmgr C:\windows\system32\drivers\mountmgr.sys
19:50:49.0828 3648 mountmgr - ok
19:50:49.0828 3648 [ a44b420d30bd56e145d6a2bc8768ec58 ] mpio C:\windows\system32\drivers\mpio.sys
19:50:49.0859 3648 mpio - ok
19:50:49.0859 3648 [ 6c38c9e45ae0ea2fa5e551f2ed5e978f ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
19:50:49.0906 3648 mpsdrv - ok
19:50:50.0047 3648 [ 54ffc9c8898113ace189d4aa7199d2c1 ] MpsSvc C:\windows\system32\mpssvc.dll
19:50:50.0327 3648 MpsSvc - ok
19:50:50.0343 3648 [ dc722758b8261e1abafd31a3c0a66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
19:50:50.0390 3648 MRxDAV - ok
19:50:50.0437 3648 [ a5d9106a73dc88564c825d317cac68ac ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
19:50:50.0499 3648 mrxsmb - ok
19:50:50.0515 3648 [ d711b3c1d5f42c0c2415687be09fc163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
19:50:50.0530 3648 mrxsmb10 - ok
19:50:50.0546 3648 [ 9423e9d355c8d303e76b8cfbd8a5c30c ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
19:50:50.0561 3648 mrxsmb20 - ok
19:50:50.0671 3648 [ c25f0bafa182cbca2dd3c851c2e75796 ] msahci C:\windows\system32\DRIVERS\msahci.sys
19:50:50.0686 3648 msahci - ok
19:50:50.0702 3648 [ db801a638d011b9633829eb6f663c900 ] msdsm C:\windows\system32\drivers\msdsm.sys
19:50:50.0717 3648 msdsm - ok
19:50:50.0749 3648 [ de0ece52236cfa3ed2dbfc03f28253a8 ] MSDTC C:\windows\System32\msdtc.exe
19:50:50.0780 3648 MSDTC - ok
19:50:50.0795 3648 [ aa3fb40e17ce1388fa1bedab50ea8f96 ] Msfs C:\windows\system32\drivers\Msfs.sys
19:50:50.0842 3648 Msfs - ok
19:50:50.0873 3648 [ f9d215a46a8b9753f61767fa72a20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
19:50:50.0920 3648 mshidkmdf - ok
19:50:50.0936 3648 [ d916874bbd4f8b07bfb7fa9b3ccae29d ] msisadrv C:\windows\system32\drivers\msisadrv.sys
19:50:50.0951 3648 msisadrv - ok
19:50:51.0029 3648 [ 808e98ff49b155c522e6400953177b08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
19:50:51.0076 3648 MSiSCSI - ok
19:50:51.0076 3648 msiserver - ok
19:50:51.0123 3648 [ 49ccf2c4fea34ffad8b1b59d49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
19:50:51.0154 3648 MSKSSRV - ok
19:50:51.0170 3648 [ bdd71ace35a232104ddd349ee70e1ab3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
19:50:51.0201 3648 MSPCLOCK - ok
19:50:51.0217 3648 [ 4ed981241db27c3383d72092b618a1d0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
19:50:51.0263 3648 MSPQM - ok
19:50:51.0279 3648 [ 759a9eeb0fa9ed79da1fb7d4ef78866d ] MsRPC C:\windows\system32\drivers\MsRPC.sys
19:50:51.0295 3648 MsRPC - ok
19:50:51.0310 3648 [ 0eed230e37515a0eaee3c2e1bc97b288 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
19:50:51.0326 3648 mssmbios - ok
19:50:51.0326 3648 [ 2e66f9ecb30b4221a318c92ac2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
19:50:51.0373 3648 MSTEE - ok
19:50:51.0404 3648 [ 7ea404308934e675bffde8edf0757bcd ] MTConfig C:\windows\system32\drivers\MTConfig.sys
19:50:51.0419 3648 MTConfig - ok
19:50:51.0419 3648 [ f9a18612fd3526fe473c1bda678d61c8 ] Mup C:\windows\system32\Drivers\mup.sys
19:50:51.0451 3648 Mup - ok
19:50:51.0482 3648 [ 582ac6d9873e31dfa28a4547270862dd ] napagent C:\windows\system32\qagentRT.dll
19:50:51.0529 3648 napagent - ok
19:50:51.0731 3648 [ 1ea3749c4114db3e3161156ffffa6b33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
19:50:51.0763 3648 NativeWifiP - ok
19:50:51.0887 3648 [ c38b8ae57f78915905064a9a24dc1586 ] NDIS C:\windows\system32\drivers\ndis.sys
19:50:51.0919 3648 NDIS - ok
19:50:51.0934 3648 [ 9f9a1f53aad7da4d6fef5bb73ab811ac ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
19:50:51.0997 3648 NdisCap - ok
19:50:52.0043 3648 [ 30639c932d9fef22b31268fe25a1b6e5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
19:50:52.0090 3648 NdisTapi - ok
19:50:52.0090 3648 [ 136185f9fb2cc61e573e676aa5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
19:50:52.0168 3648 Ndisuio - ok
19:50:52.0168 3648 [ 53f7305169863f0a2bddc49e116c2e11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
19:50:52.0246 3648 NdisWan - ok
19:50:52.0309 3648 [ 015c0d8e0e0421b4cfd48cffe2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
19:50:52.0355 3648 NDProxy - ok
19:50:52.0402 3648 [ 59267d2f0328599aa3b5408c2e06126f ] Net Driver HPZ12 C:\windows\system32\HPZinw12.dll
19:50:52.0402 3648 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
19:50:52.0402 3648 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
19:50:52.0418 3648 [ 86743d9f5d2b1048062b14b1d84501c4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
19:50:52.0465 3648 NetBIOS - ok
19:50:52.0511 3648 [ 09594d1089c523423b32a4229263f068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
19:50:52.0543 3648 NetBT - ok
19:50:52.0574 3648 [ c118a82cd78818c29ab228366ebf81c3 ] Netlogon C:\windows\system32\lsass.exe
19:50:52.0589 3648 Netlogon - ok
19:50:52.0652 3648 [ 847d3ae376c0817161a14a82c8922a9e ] Netman C:\windows\System32\netman.dll
19:50:52.0714 3648 Netman - ok
19:50:52.0777 3648 [ d22cd77d4f0d63d1169bb35911bff12d ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:50:52.0808 3648 NetMsmqActivator - ok
19:50:52.0823 3648 [ d22cd77d4f0d63d1169bb35911bff12d ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:50:52.0839 3648 NetPipeActivator - ok
19:50:52.0886 3648 [ 5f28111c648f1e24f7dbc87cdeb091b8 ] netprofm C:\windows\System32\netprofm.dll
19:50:53.0011 3648 netprofm - ok
19:50:53.0042 3648 [ d22cd77d4f0d63d1169bb35911bff12d ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:50:53.0057 3648 NetTcpActivator - ok
19:50:53.0057 3648 [ d22cd77d4f0d63d1169bb35911bff12d ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:50:53.0073 3648 NetTcpPortSharing - ok
19:50:53.0167 3648 [ 77889813be4d166cdab78ddba990da92 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
19:50:53.0276 3648 nfrd960 - ok
19:50:53.0385 3648 [ 1ee99a89cc788ada662441d1e9830529 ] NlaSvc C:\windows\System32\nlasvc.dll
19:50:53.0447 3648 NlaSvc - ok
19:50:53.0572 3648 Norton PC Checkup Application Launcher - ok
19:50:53.0603 3648 [ 1e4c4ab5c9b8dd13179bbdc75a2a01f7 ] Npfs C:\windows\system32\drivers\Npfs.sys
19:50:53.0650 3648 Npfs - ok
19:50:53.0681 3648 [ d54bfdf3e0c953f823b3d0bfe4732528 ] nsi C:\windows\system32\nsisvc.dll
19:50:53.0744 3648 nsi - ok
19:50:53.0869 3648 [ e7f5ae18af4168178a642a9247c63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
19:50:53.0931 3648 nsiproxy - ok
19:50:54.0009 3648 [ a2f74975097f52a00745f9637451fdd8 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
19:50:54.0056 3648 Ntfs - ok
19:50:54.0087 3648 [ 9899284589f75fa8724ff3d16aed75c1 ] Null C:\windows\system32\drivers\Null.sys
19:50:54.0118 3648 Null - ok
19:50:54.0149 3648 [ 0a92cb65770442ed0dc44834632f66ad ] nvraid C:\windows\system32\drivers\nvraid.sys
19:50:54.0165 3648 nvraid - ok
19:50:54.0196 3648 [ dab0e87525c10052bf65f06152f37e4a ] nvstor C:\windows\system32\drivers\nvstor.sys
19:50:54.0290 3648 nvstor - ok
19:50:54.0321 3648 [ 270d7cd42d6e3979f6dd0146650f0e05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
19:50:54.0337 3648 nv_agp - ok
19:50:54.0352 3648 [ 3589478e4b22ce21b41fa1bfc0b8b8a0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
19:50:54.0368 3648 ohci1394 - ok
19:50:54.0415 3648 [ 3eac4455472cc2c97107b5291e0dcafe ] p2pimsvc C:\windows\system32\pnrpsvc.dll
19:50:54.0493 3648 p2pimsvc - ok
19:50:54.0555 3648 [ 927463ecb02179f88e4b9a17568c63c3 ] p2psvc C:\windows\system32\p2psvc.dll
19:50:54.0571 3648 p2psvc - ok
19:50:54.0602 3648 [ 0086431c29c35be1dbc43f52cc273887 ] Parport C:\windows\system32\drivers\parport.sys
19:50:54.0649 3648 Parport - ok
19:50:54.0680 3648 [ e9766131eeade40a27dc27d2d68fba9c ] partmgr C:\windows\system32\drivers\partmgr.sys
19:50:54.0695 3648 partmgr - ok
19:50:54.0742 3648 [ 3aeaa8b561e63452c655dc0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
19:50:54.0773 3648 PcaSvc - ok
19:50:54.0805 3648 [ 2f86be1818c2d7ac90478e3323ee7fcb ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvcHst.exe
19:50:54.0820 3648 PCCUJobMgr - ok
19:50:54.0867 3648 [ 94575c0571d1462a0f70bde6bd6ee6b3 ] pci C:\windows\system32\drivers\pci.sys
19:50:54.0898 3648 pci - ok
19:50:54.0898 3648 [ b5b8b5ef2e5cb34df8dcf8831e3534fa ] pciide C:\windows\system32\DRIVERS\pciide.sys
19:50:54.0914 3648 pciide - ok
19:50:54.0929 3648 [ b2e81d4e87ce48589f98cb8c05b01f2f ] pcmcia C:\windows\system32\drivers\pcmcia.sys
19:50:54.0961 3648 pcmcia - ok
19:50:54.0961 3648 [ d6b9c2e1a11a3a4b26a182ffef18f603 ] pcw C:\windows\system32\drivers\pcw.sys
19:50:54.0976 3648 pcw - ok
19:50:54.0992 3648 [ 68769c3356b3be5d1c732c97b9a80d6e ] PEAUTH C:\windows\system32\drivers\peauth.sys
19:50:55.0070 3648 PEAUTH - ok
19:50:55.0148 3648 [ e495e408c93141e8fc72dc0c6046ddfa ] PerfHost C:\windows\SysWow64\perfhost.exe
19:50:55.0179 3648 PerfHost - ok
19:50:55.0241 3648 [ 91111cebbde8015e822c46120ed9537c ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys
19:50:55.0257 3648 PGEffect - ok
19:50:55.0366 3648 [ c7cf6a6e137463219e1259e3f0f0dd6c ] pla C:\windows\system32\pla.dll
19:50:55.0429 3648 pla - ok
19:50:55.0491 3648 [ 25fbdef06c4d92815b353f6e792c8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
19:50:55.0538 3648 PlugPlay - ok
19:50:55.0616 3648 [ 5261a2fd55183ac6993145ab6662cddf ] Pml Driver HPZ12 C:\windows\system32\HPZipm12.dll
19:50:55.0663 3648 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
19:50:55.0663 3648 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
19:50:55.0694 3648 [ 7195581cec9bb7d12abe54036acc2e38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
19:50:55.0756 3648 PNRPAutoReg - ok
19:50:55.0803 3648 [ 3eac4455472cc2c97107b5291e0dcafe ] PNRPsvc C:\windows\system32\pnrpsvc.dll
19:50:55.0819 3648 PNRPsvc - ok
19:50:55.0897 3648 [ 4f15d75adf6156bf56eced6d4a55c389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
19:50:55.0959 3648 PolicyAgent - ok
19:50:56.0068 3648 [ a2cca4fb273e6050f17a0a416cff2fcd ] Power C:\windows\system32\umpo.dll
19:50:56.0115 3648 Power - ok
19:50:56.0177 3648 [ f92a2c41117a11a00be01ca01a7fcde9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
19:50:56.0240 3648 PptpMiniport - ok
19:50:56.0271 3648 [ 0d922e23c041efb1c3fac2a6f943c9bf ] Processor C:\windows\system32\drivers\processr.sys
19:50:56.0318 3648 Processor - ok
19:50:56.0380 3648 [ 53e83f1f6cf9d62f32801cf66d8352a8 ] ProfSvc C:\windows\system32\profsvc.dll
19:50:56.0427 3648 ProfSvc - ok
19:50:56.0458 3648 [ c118a82cd78818c29ab228366ebf81c3 ] ProtectedStorage C:\windows\system32\lsass.exe
19:50:56.0474 3648 ProtectedStorage - ok
19:50:56.0536 3648 [ f115af58abe5605d7d709cbfbd83f418 ] ProtexisLicensing C:\windows\SysWOW64\PSIService.exe
19:50:56.0552 3648 ProtexisLicensing - ok
19:50:56.0583 3648 [ 0557cf5a2556bd58e26384169d72438d ] Psched C:\windows\system32\DRIVERS\pacer.sys
19:50:56.0630 3648 Psched - ok
19:50:56.0692 3648 [ a6a7ad767bf5141665f5c675f671b3e1 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
19:50:56.0692 3648 PSI_SVC_2 - ok
19:50:56.0864 3648 [ a53a15a11ebfd21077463ee2c7afeef0 ] ql2300 C:\windows\system32\drivers\ql2300.sys
19:50:56.0895 3648 ql2300 - ok
19:50:56.0911 3648 [ 4f6d12b51de1aaeff7dc58c4d75423c8 ] ql40xx C:\windows\system32\drivers\ql40xx.sys
19:50:56.0926 3648 ql40xx - ok
19:50:56.0957 3648 [ 906191634e99aea92c4816150bda3732 ] QWAVE C:\windows\system32\qwave.dll
19:50:56.0989 3648 QWAVE - ok
19:50:57.0004 3648 [ 76707bb36430888d9ce9d705398adb6c ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
19:50:57.0035 3648 QWAVEdrv - ok
19:50:57.0051 3648 [ 5a0da8ad5762fa2d91678a8a01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
19:50:57.0082 3648 RasAcd - ok
19:50:57.0129 3648 [ 7ecff9b22276b73f43a99a15a6094e90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
19:50:57.0160 3648 RasAgileVpn - ok
19:50:57.0191 3648 [ 8f26510c5383b8dbe976de1cd00fc8c7 ] RasAuto C:\windows\System32\rasauto.dll
19:50:57.0238 3648 RasAuto - ok
19:50:57.0254 3648 [ 471815800ae33e6f1c32fb1b97c490ca ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
19:50:57.0301 3648 Rasl2tp - ok
19:50:57.0332 3648 [ ee867a0870fc9e4972ba9eaad35651e2 ] RasMan C:\windows\System32\rasmans.dll
19:50:57.0363 3648 RasMan - ok
19:50:57.0394 3648 [ 855c9b1cd4756c5e9a2aa58a15f58c25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
19:50:57.0425 3648 RasPppoe - ok
19:50:57.0441 3648 [ e8b1e447b008d07ff47d016c2b0eeecb ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
19:50:57.0488 3648 RasSstp - ok
19:50:57.0503 3648 [ 77f665941019a1594d887a74f301fa2f ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
19:50:57.0550 3648 rdbss - ok
19:50:57.0566 3648 [ 302da2a0539f2cf54d7c6cc30c1f2d8d ] rdpbus C:\windows\system32\drivers\rdpbus.sys
19:50:57.0613 3648 rdpbus - ok
19:50:57.0613 3648 [ cea6cc257fc9b7715f1c2b4849286d24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
19:50:57.0644 3648 RDPCDD - ok
19:50:57.0659 3648 [ bb5971a4f00659529a5c44831af22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
19:50:57.0691 3648 RDPENCDD - ok
19:50:57.0706 3648 [ 216f3fa57533d98e1f74ded70113177a ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
19:50:57.0737 3648 RDPREFMP - ok
19:50:57.0769 3648 [ e61608aa35e98999af9aaeeea6114b0a ] RDPWD C:\windows\system32\drivers\RDPWD.sys
19:50:57.0800 3648 RDPWD - ok
19:50:57.0847 3648 [ a115f49bea840a5f049bc6310f35f776 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
19:50:57.0862 3648 rdyboost - ok
19:50:57.0878 3648 [ 5f9ac3243c206ec95f32e4348ae67c13 ] RegFilter C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys
19:50:57.0893 3648 RegFilter - ok
19:50:57.0909 3648 [ 254fb7a22d74e5511c73a3f6d802f192 ] RemoteAccess C:\windows\System32\mprdim.dll
19:50:57.0971 3648 RemoteAccess - ok
19:50:58.0003 3648 [ e4d94f24081440b5fc5aa556c7c62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
19:50:58.0034 3648 RemoteRegistry - ok
19:50:58.0065 3648 [ e4dc58cf7b3ea515ae917ff0d402a7bb ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
19:50:58.0096 3648 RpcEptMapper - ok
19:50:58.0127 3648 [ d5ba242d4cf8e384db90e6a8ed850b8c ] RpcLocator C:\windows\system32\locator.exe
19:50:58.0143 3648 RpcLocator - ok
19:50:58.0174 3648 [ 5c627d1b1138676c0a7ab2c2c190d123 ] RpcSs C:\windows\system32\rpcss.dll
19:50:58.0205 3648 RpcSs - ok
19:50:58.0252 3648 [ ddc86e4f8e7456261e637e3552e804ff ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
19:50:58.0283 3648 rspndr - ok
19:50:58.0330 3648 [ bb1c3df1d6cc0972e9c7268a19e62d2e ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys
19:50:58.0346 3648 RSUSBSTOR - ok
19:50:58.0393 3648 [ 9140db0911de035fed0a9a77a2d156ea ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys
19:50:58.0408 3648 RTL8167 - ok
19:50:58.0517 3648 [ f33e70e48a54a7a1bfbeeb4f3b273e4a ] RTL8192Ce C:\windows\system32\DRIVERS\rtl8192Ce.sys
19:50:58.0549 3648 RTL8192Ce - ok
19:50:58.0564 3648 [ c118a82cd78818c29ab228366ebf81c3 ] SamSs C:\windows\system32\lsass.exe
19:50:58.0580 3648 SamSs - ok
19:50:58.0595 3648 [ ac03af3329579fffb455aa2daabbe22b ] sbp2port C:\windows\system32\drivers\sbp2port.sys
19:50:58.0611 3648 sbp2port - ok
19:50:58.0720 3648 [ 794d4b48dfb6e999537c7c3947863463 ] SBSDWSCService C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
19:50:58.0751 3648 SBSDWSCService - ok
19:50:58.0798 3648 [ 9b7395789e3791a3b6d000fe6f8b131e ] SCardSvr C:\windows\System32\SCardSvr.dll
19:50:58.0829 3648 SCardSvr - ok
19:50:58.0876 3648 [ 253f38d0d7074c02ff8deb9836c97d2b ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
19:50:58.0923 3648 scfilter - ok
19:50:58.0954 3648 [ 262f6592c3299c005fd6bec90fc4463a ] Schedule C:\windows\system32\schedsvc.dll
19:50:59.0001 3648 Schedule - ok
19:50:59.0048 3648 [ f17d1d393bbc69c5322fbfafaca28c7f ] SCPolicySvc C:\windows\System32\certprop.dll
19:50:59.0079 3648 SCPolicySvc - ok
19:50:59.0126 3648 [ 6ea4234dc55346e0709560fe7c2c1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
19:50:59.0173 3648 SDRSVC - ok
19:50:59.0204 3648 [ 3ea8a16169c26afbeb544e0e48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
19:50:59.0251 3648 secdrv - ok
19:50:59.0282 3648 [ bc617a4e1b4fa8df523a061739a0bd87 ] seclogon C:\windows\system32\seclogon.dll
19:50:59.0313 3648 seclogon - ok
19:50:59.0329 3648 [ c32ab8fa018ef34c0f113bd501436d21 ] SENS C:\windows\System32\sens.dll
19:50:59.0375 3648 SENS - ok
19:50:59.0391 3648 [ 0336cffafaab87a11541f1cf1594b2b2 ] SensrSvc C:\windows\system32\sensrsvc.dll
19:50:59.0422 3648 SensrSvc - ok
19:50:59.0438 3648 [ cb624c0035412af0debec78c41f5ca1b ] Serenum C:\windows\system32\drivers\serenum.sys
19:50:59.0469 3648 Serenum - ok
19:50:59.0500 3648 [ c1d8e28b2c2adfaec4ba89e9fda69bd6 ] Serial C:\windows\system32\drivers\serial.sys
19:50:59.0531 3648 Serial - ok
19:50:59.0531 3648 [ 1c545a7d0691cc4a027396535691c3e3 ] sermouse C:\windows\system32\drivers\sermouse.sys
19:50:59.0547 3648 sermouse - ok
19:50:59.0594 3648 [ 0b6231bf38174a1628c4ac812cc75804 ] SessionEnv C:\windows\system32\sessenv.dll
19:50:59.0656 3648 SessionEnv - ok
19:50:59.0687 3648 [ a554811bcd09279536440c964ae35bbf ] sffdisk C:\windows\system32\drivers\sffdisk.sys
19:50:59.0703 3648 sffdisk - ok
19:50:59.0703 3648 [ ff414f0baefeba59bc6c04b3db0b87bf ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
19:50:59.0750 3648 sffp_mmc - ok
19:50:59.0765 3648 [ dd85b78243a19b59f0637dcf284da63c ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
19:50:59.0797 3648 sffp_sd - ok
19:50:59.0797 3648 [ a9d601643a1647211a1ee2ec4e433ff4 ] sfloppy C:\windows\system32\drivers\sfloppy.sys
19:50:59.0828 3648 sfloppy - ok
19:50:59.0843 3648 [ b95f6501a2f8b2e78c697fec401970ce ] SharedAccess C:\windows\System32\ipnathlp.dll
19:50:59.0890 3648 SharedAccess - ok
19:50:59.0921 3648 [ aaf932b4011d14052955d4b212a4da8d ] ShellHWDetection C:\windows\System32\shsvcs.dll
19:50:59.0968 3648 ShellHWDetection - ok
19:51:00.0015 3648 [ 843caf1e5fde1ffd5ff768f23a51e2e1 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
19:51:00.0031 3648 SiSRaid2 - ok
19:51:00.0031 3648 [ 6a6c106d42e9ffff8b9fcb4f754f6da4 ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
19:51:00.0046 3648 SiSRaid4 - ok
19:51:00.0062 3648 [ 548260a7b8654e024dc30bf8a7c5baa4 ] Smb C:\windows\system32\DRIVERS\smb.sys
19:51:00.0109 3648 Smb - ok
19:51:00.0171 3648 [ f26aad9adfc9b62ac59a004a913c92da ] snapman C:\windows\system32\DRIVERS\snapman.sys
19:51:00.0187 3648 snapman - ok
19:51:00.0218 3648 [ 6313f223e817cc09aa41811daa7f541d ] SNMPTRAP C:\windows\System32\snmptrap.exe
19:51:00.0249 3648 SNMPTRAP - ok
19:51:00.0249 3648 [ b9e31e5cacdfe584f34f730a677803f9 ] spldr C:\windows\system32\drivers\spldr.sys
19:51:00.0265 3648 spldr - ok
19:51:00.0311 3648 [ 85daa09a98c9286d4ea2ba8d0e644377 ] Spooler C:\windows\System32\spoolsv.exe
19:51:00.0327 3648 Spooler - ok
19:51:00.0421 3648 [ e17e0188bb90fae42d83e98707efa59c ] sppsvc C:\windows\system32\sppsvc.exe
19:51:00.0514 3648 sppsvc - ok
19:51:00.0514 3648 [ 93d7d61317f3d4bc4f4e9f8a96a7de45 ] sppuinotify C:\windows\system32\sppuinotify.dll
19:51:00.0561 3648 sppuinotify - ok
19:51:00.0592 3648 [ 441fba48bff01fdb9d5969ebc1838f0b ] srv C:\windows\system32\DRIVERS\srv.sys
19:51:00.0623 3648 srv - ok
19:51:00.0623 3648 [ b4adebbf5e3677cce9651e0f01f7cc28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
19:51:00.0655 3648 srv2 - ok
19:51:00.0670 3648 [ 27e461f0be5bff5fc737328f749538c3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
19:51:00.0686 3648 srvnet - ok
19:51:00.0733 3648 [ 51b52fbd583cde8aa9ba62b8b4298f33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
19:51:00.0779 3648 SSDPSRV - ok
19:51:00.0795 3648 [ ab7aebf58dad8daab7a6c45e6a8885cb ] SstpSvc C:\windows\system32\sstpsvc.dll
19:51:00.0826 3648 SstpSvc - ok
19:51:00.0842 3648 [ f3817967ed533d08327dc73bc4d5542a ] stexstor C:\windows\system32\drivers\stexstor.sys
19:51:00.0857 3648 stexstor - ok
19:51:00.0889 3648 [ 8dd52e8e6128f4b2da92ce27402871c1 ] stisvc C:\windows\System32\wiaservc.dll
19:51:00.0920 3648 stisvc - ok
19:51:00.0935 3648 [ d01ec09b6711a5f8e7e6564a4d0fbc90 ] swenum C:\windows\system32\DRIVERS\swenum.sys
19:51:00.0951 3648 swenum - ok
19:51:00.0982 3648 [ e08e46fdd841b7184194011ca1955a0b ] swprv C:\windows\System32\swprv.dll
19:51:01.0029 3648 swprv - ok
19:51:01.0201 3648 [ 9ad49345cbcafb82dbe0cc9cdd55e3d2 ] syncagentsrv C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
19:51:01.0279 3648 syncagentsrv - ok
19:51:01.0341 3648 [ b868e292fba5b62b9fc71572a5faef5c ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
19:51:01.0357 3648 SynTP - ok
19:51:01.0419 3648 [ 7be4cdea6bc7832bfe3112a350d8b9ea ] SysMain C:\windows\system32\sysmain.dll
19:51:01.0481 3648 SysMain - ok
19:51:01.0513 3648 [ e3c61fd7b7c2557e1f1b0b4cec713585 ] TabletInputService C:\windows\System32\TabSvc.dll
19:51:01.0544 3648 TabletInputService - ok
19:51:01.0778 3648 [ c4c20cfa4f42e9b7454e895c5c47bcd3 ] TabletServicePen C:\Program Files\Tablet\Pen\Pen_Tablet.exe
19:51:01.0871 3648 TabletServicePen - ok
19:51:02.0012 3648 [ f38be8b8e7a5b8816a857b0ad0eb8aba ] taisregispinger C:\Program Files (x86)\Toshiba\ToshibaRegistration\TaisRegistPinger.exe
19:51:02.0059 3648 taisregispinger - ok
19:51:02.0105 3648 [ 40f0849f65d13ee87b9a9ae3c1dd6823 ] TapiSrv C:\windows\System32\tapisrv.dll
19:51:02.0152 3648 TapiSrv - ok
19:51:02.0152 3648 [ 1be03ac720f4d302ea01d40f588162f6 ] TBS C:\windows\System32\tbssvc.dll
19:51:02.0199 3648 TBS - ok
19:51:02.0261 3648 [ acb82bda8f46c84f465c1afa517dc4b9 ] Tcpip C:\windows\system32\drivers\tcpip.sys
19:51:02.0308 3648 Tcpip - ok
19:51:02.0355 3648 [ acb82bda8f46c84f465c1afa517dc4b9 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
19:51:02.0386 3648 TCPIP6 - ok
19:51:02.0433 3648 [ df687e3d8836bfb04fcc0615bf15a519 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
19:51:02.0464 3648 tcpipreg - ok
19:51:02.0527 3648 [ fd542b661bd22fa69ca789ad0ac58c29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys
19:51:02.0542 3648 tdcmdpst - ok
19:51:02.0573 3648 TDEIO - ok
19:51:02.0605 3648 [ 3371d21011695b16333a3934340c4e7c ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
19:51:02.0636 3648 TDPIPE - ok
19:51:02.0698 3648 [ 7bc43335c778370fd0040d5224d8edeb ] tdrpman C:\windows\system32\DRIVERS\tdrpman.sys
19:51:02.0745 3648 tdrpman - ok
19:51:02.0745 3648 [ 51c5eceb1cdee2468a1748be550cfbc8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
19:51:02.0776 3648 TDTCP - ok
19:51:02.0807 3648 [ ddad5a7ab24d8b65f8d724f5c20fd806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
19:51:02.0839 3648 tdx - ok
19:51:02.0839 3648 [ 561e7e1f06895d78de991e01dd0fb6e5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
19:51:02.0854 3648 TermDD - ok
19:51:02.0885 3648 [ 2e648163254233755035b46dd7b89123 ] TermService C:\windows\System32\termsrv.dll
19:51:02.0948 3648 TermService - ok
19:51:02.0963 3648 [ f0344071948d1a1fa732231785a0664c ] Themes C:\windows\system32\themeservice.dll
19:51:02.0979 3648 Themes - ok
19:51:02.0995 3648 [ e40e80d0304a73e8d269f7141d77250b ] THREADORDER C:\windows\system32\mmcss.dll
19:51:03.0041 3648 THREADORDER - ok
19:51:03.0104 3648 [ 7d68eab50df8b71408b645ba8581800e ] timounter C:\windows\system32\DRIVERS\timntr.sys
19:51:03.0135 3648 timounter - ok
19:51:03.0182 3648 [ 71c321649b28638ee80a2eeb164c1dc8 ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
19:51:03.0197 3648 TMachInfo - ok
19:51:03.0244 3648 [ 8e2c799d3476eac32c3ba0df7ce6af19 ] TODDSrv C:\windows\system32\TODDSrv.exe
19:51:03.0260 3648 TODDSrv - ok
19:51:03.0400 3648 [ a7efe68d424a55fa84ccb6099d1d93c0 ] TosCoSrv C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
19:51:03.0416 3648 TosCoSrv ( UnsignedFile.Multi.Generic ) - warning
19:51:03.0416 3648 TosCoSrv - detected UnsignedFile.Multi.Generic (1)
19:51:03.0494 3648 [ 17db352fa977daaabb6e61a4ded245d9 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
19:51:03.0509 3648 TOSHIBA HDD SSD Alert Service - ok
19:51:03.0556 3648 [ 7625dcf246e488e523dc1f64c38abda2 ] TouchServicePen C:\Program Files\Tablet\Pen\Pen_TouchService.exe
19:51:03.0572 3648 TouchServicePen - ok
19:51:03.0681 3648 [ 36cdd894395bec46efb14f49d77d3d82 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
19:51:03.0712 3648 TPCHSrv - ok
19:51:03.0775 3648 [ 7e7afd841694f6ac397e99d75cead49d ] TrkWks C:\windows\System32\trkwks.dll
19:51:03.0853 3648 TrkWks - ok
19:51:03.0899 3648 [ 773212b2aaa24c1e31f10246b15b276c ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
19:51:03.0946 3648 TrustedInstaller - ok
19:51:03.0977 3648 [ ce18b2cdfc837c99e5fae9ca6cba5d30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
19:51:04.0040 3648 tssecsrv - ok
19:51:04.0055 3648 [ d11c783e3ef9a3c52c0ebe83cc5000e9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
19:51:04.0071 3648 TsUsbFlt - ok
19:51:04.0087 3648 [ 9cc2ccae8a84820eaecb886d477cbcb8 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys
19:51:04.0118 3648 TsUsbGD - ok
19:51:04.0118 3648 [ 3566a8daafa27af944f5d705eaa64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
19:51:04.0165 3648 tunnel - ok
19:51:04.0211 3648 [ 550b567f9364d8f7684c3fb3ea665a72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS
19:51:04.0227 3648 TVALZ - ok
19:51:04.0289 3648 [ 9c7191f4b2e49bff47a6c1144b5923fa ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys
19:51:04.0289 3648 TVALZFL - ok
19:51:04.0305 3648 [ b4dd609bd7e282bfc683cec7eaaaad67 ] uagp35 C:\windows\system32\drivers\uagp35.sys
19:51:04.0321 3648 uagp35 - ok
19:51:04.0367 3648 [ ff4232a1a64012baa1fd97c7b67df593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
19:51:04.0414 3648 udfs - ok
19:51:04.0461 3648 [ 3cbdec8d06b9968aba702eba076364a1 ] UI0Detect C:\windows\system32\UI0Detect.exe
19:51:04.0492 3648 UI0Detect - ok
19:51:04.0492 3648 [ 4bfe1bc28391222894cbf1e7d0e42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
19:51:04.0508 3648 uliagpkx - ok
19:51:04.0523 3648 [ dc54a574663a895c8763af0fa1ff7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys
19:51:04.0555 3648 umbus - ok
19:51:04.0555 3648 [ b2e8e8cb557b156da5493bbddcc1474d ] UmPass C:\windows\system32\drivers\umpass.sys
19:51:04.0586 3648 UmPass - ok
19:51:04.0648 3648 [ bb879dcfd22926efbeb3298129898cbb ] UnlockerDriver5 C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys
19:51:04.0664 3648 UnlockerDriver5 ( UnsignedFile.Multi.Generic ) - warning
19:51:04.0664 3648 UnlockerDriver5 - detected UnsignedFile.Multi.Generic (1)
19:51:04.0695 3648 [ d47ec6a8e81633dd18d2436b19baf6de ] upnphost C:\windows\System32\upnphost.dll
19:51:04.0757 3648 upnphost - ok
19:51:04.0773 3648 [ 241080f1b28e68f0d00f8f1066a3780d ] UrlFilter C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys
19:51:04.0789 3648 UrlFilter - ok
19:51:04.0820 3648 [ 6f1a3157a1c89435352ceb543cdb359c ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
19:51:04.0851 3648 usbccgp - ok
19:51:04.0851 3648 [ af0892a803fdda7492f595368e3b68e7 ] usbcir C:\windows\system32\drivers\usbcir.sys
19:51:04.0867 3648 usbcir - ok
19:51:04.0882 3648 [ c025055fe7b87701eb042095df1a2d7b ] usbehci C:\windows\system32\DRIVERS\usbehci.sys
19:51:04.0898 3648 usbehci - ok
19:51:04.0976 3648 [ 33a58c5630200e17b51c8d73dd64181b ] usbfilter C:\windows\system32\DRIVERS\usbfilter.sys
19:51:04.0976 3648 usbfilter - ok
19:51:05.0023 3648 [ 287c6c9410b111b68b52ca298f7b8c24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
19:51:05.0054 3648 usbhub - ok
19:51:05.0054 3648 [ 9840fc418b4cbd632d3d0a667a725c31 ] usbohci C:\windows\system32\DRIVERS\usbohci.sys
19:51:05.0085 3648 usbohci - ok
19:51:05.0101 3648 [ 73188f58fb384e75c4063d29413cee3d ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
19:51:05.0147 3648 usbprint - ok
19:51:05.0179 3648 [ aaa2513c8aed8b54b189fd0c6b1634c0 ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
19:51:05.0194 3648 usbscan - ok
19:51:05.0225 3648 [ fed648b01349a3c8395a5169db5fb7d6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
19:51:05.0272 3648 USBSTOR - ok
19:51:05.0272 3648 [ 62069a34518bcf9c1fd9e74b3f6db7cd ] usbuhci C:\windows\system32\drivers\usbuhci.sys
19:51:05.0288 3648 usbuhci - ok
19:51:05.0319 3648 [ 454800c2bc7f3927ce030141ee4f4c50 ] usbvideo C:\windows\system32\Drivers\usbvideo.sys
19:51:05.0335 3648 usbvideo - ok
19:51:05.0381 3648 [ edbb23cbcf2cdf727d64ff9b51a6070e ] UxSms C:\windows\System32\uxsms.dll
19:51:05.0428 3648 UxSms - ok
19:51:05.0428 3648 [ c118a82cd78818c29ab228366ebf81c3 ] VaultSvc C:\windows\system32\lsass.exe
19:51:05.0444 3648 VaultSvc - ok
19:51:05.0459 3648 [ c5c876ccfc083ff3b128f933823e87bd ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
19:51:05.0475 3648 vdrvroot - ok
19:51:05.0506 3648 [ 8d6b481601d01a456e75c3210f1830be ] vds C:\windows\System32\vds.exe
19:51:05.0569 3648 vds - ok
19:51:05.0600 3648 [ da4da3f5e02943c2dc8c6ed875de68dd ] vga C:\windows\system32\DRIVERS\vgapnp.sys
19:51:05.0615 3648 vga - ok
19:51:05.0647 3648 [ 53e92a310193cb3c03bea963de7d9cfc ] VgaSave C:\windows\System32\drivers\vga.sys
19:51:05.0693 3648 VgaSave - ok
19:51:05.0709 3648 [ 2ce2df28c83aeaf30084e1b1eb253cbb ] vhdmp C:\windows\system32\drivers\vhdmp.sys
19:51:05.0725 3648 vhdmp - ok
19:51:05.0725 3648 [ e5689d93ffe4e5d66c0178761240dd54 ] viaide C:\windows\system32\drivers\viaide.sys
19:51:05.0740 3648 viaide - ok
19:51:05.0818 3648 [ acbcbd8421920d20f1f40b6f76a4c213 ] vididr C:\windows\system32\DRIVERS\vididr.sys
19:51:05.0834 3648 vididr - ok
19:51:05.0849 3648 [ 905dd422d28a32face8ae695b3823843 ] vidsflt67 C:\windows\system32\DRIVERS\vsflt67.sys
19:51:05.0865 3648 vidsflt67 - ok
19:51:05.0896 3648 [ d2aafd421940f640b407aefaaebd91b0 ] volmgr C:\windows\system32\drivers\volmgr.sys
19:51:05.0912 3648 volmgr - ok
19:51:05.0927 3648 [ a255814907c89be58b79ef2f189b843b ] volmgrx C:\windows\system32\drivers\volmgrx.sys
19:51:05.0943 3648 volmgrx - ok
19:51:05.0959 3648 [ df8126bd41180351a093a3ad2fc8903b ] volsnap C:\windows\system32\drivers\volsnap.sys
19:51:05.0974 3648 volsnap - ok
19:51:06.0037 3648 [ 239d8d72730226cd460bdc8ca0a23d43 ] Vsdatant C:\windows\system32\DRIVERS\vsdatant.sys
19:51:06.0052 3648 Vsdatant - ok
19:51:06.0161 3648 vsmon - ok
19:51:06.0193 3648 [ 5e2016ea6ebaca03c04feac5f330d997 ] vsmraid C:\windows\system32\drivers\vsmraid.sys
19:51:06.0208 3648 vsmraid - ok
19:51:06.0302 3648 [ b60ba0bc31b0cb414593e169f6f21cc2 ] VSS C:\windows\system32\vssvc.exe
19:51:06.0364 3648 VSS - ok
19:51:06.0380 3648 [ 36d4720b72b5c5d9cb2b9c29e9df67a1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
19:51:06.0411 3648 vwifibus - ok
19:51:06.0411 3648 [ 6a3d66263414ff0d6fa754c646612f3f ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
19:51:06.0442 3648 vwififlt - ok
19:51:06.0473 3648 [ 1c9d80cc3849b3788048078c26486e1a ] W32Time C:\windows\system32\w32time.dll
19:51:06.0505 3648 W32Time - ok
19:51:06.0551 3648 [ fe75777289278a4941fe6139e82b3bd9 ] wacmoumonitor C:\windows\system32\DRIVERS\wacmoumonitor.sys
19:51:06.0567 3648 wacmoumonitor - ok
19:51:06.0583 3648 [ e04d43c7d1641e95d35cae6086c7e350 ] wacommousefilter C:\windows\system32\DRIVERS\wacommousefilter.sys
19:51:06.0598 3648 wacommousefilter - ok
19:51:06.0645 3648 [ 4e9440f4f152a7b944cb1663d3935a3e ] WacomPen C:\windows\system32\drivers\wacompen.sys
19:51:06.0676 3648 WacomPen - ok
19:51:06.0707 3648 [ ec1ceb237e365330c1fcfc4876aa0ac0 ] wacomvhid C:\windows\system32\DRIVERS\wacomvhid.sys
19:51:06.0707 3648 wacomvhid - ok
19:51:06.0723 3648 WacomVKHid - ok
19:51:06.0754 3648 [ 356afd78a6ed4457169241ac3965230c ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
19:51:06.0801 3648 WANARP - ok
19:51:06.0801 3648 [ 356afd78a6ed4457169241ac3965230c ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
19:51:06.0848 3648 Wanarpv6 - ok
19:51:06.0941 3648 [ 3cec96de223e49eaae3651fcf8faea6c ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
19:51:06.0973 3648 WatAdminSvc - ok
19:51:07.0051 3648 [ 78f4e7f5c56cb9716238eb57da4b6a75 ] wbengine C:\windows\system32\wbengine.exe
19:51:07.0097 3648 wbengine - ok
19:51:07.0113 3648 [ 3aa101e8edab2db4131333f4325c76a3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
19:51:07.0144 3648 WbioSrvc - ok
19:51:07.0160 3648 [ 7368a2afd46e5a4481d1de9d14848edd ] wcncsvc C:\windows\System32\wcncsvc.dll
19:51:07.0207 3648 wcncsvc - ok
19:51:07.0238 3648 [ 20f7441334b18cee52027661df4a6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
19:51:07.0253 3648 WcsPlugInService - ok
19:51:07.0300 3648 [ 72889e16ff12ba0f235467d6091b17dc ] Wd C:\windows\system32\drivers\wd.sys
19:51:07.0300 3648 Wd - ok
19:51:07.0316 3648 [ 441bd2d7b4f98134c3a4f9fa570fd250 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
19:51:07.0347 3648 Wdf01000 - ok
19:51:07.0363 3648 [ bf1fc3f79b863c914687a737c2f3d681 ] WdiServiceHost C:\windows\system32\wdi.dll
19:51:07.0425 3648 WdiServiceHost - ok
19:51:07.0425 3648 [ bf1fc3f79b863c914687a737c2f3d681 ] WdiSystemHost C:\windows\system32\wdi.dll
19:51:07.0441 3648 WdiSystemHost - ok
19:51:07.0487 3648 [ 3db6d04e1c64272f8b14eb8bc4616280 ] WebClient C:\windows\System32\webclnt.dll
19:51:07.0534 3648 WebClient - ok
19:51:07.0550 3648 [ c749025a679c5103e575e3b48e092c43 ] Wecsvc C:\windows\system32\wecsvc.dll
19:51:07.0597 3648 Wecsvc - ok
19:51:07.0643 3648 [ 7e591867422dc788b9e5bd337a669a08 ] wercplsupport C:\windows\System32\wercplsupport.dll
19:51:07.0675 3648 wercplsupport - ok
19:51:07.0721 3648 [ 6d137963730144698cbd10f202e9f251 ] WerSvc C:\windows\System32\WerSvc.dll
19:51:07.0768 3648 WerSvc - ok
19:51:07.0799 3648 [ 611b23304bf067451a9fdee01fbdd725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
19:51:07.0831 3648 WfpLwf - ok
19:51:07.0846 3648 [ 05ecaec3e4529a7153b3136ceb49f0ec ] WIMMount C:\windows\system32\drivers\wimmount.sys
19:51:07.0862 3648 WIMMount - ok
19:51:07.0877 3648 WinDefend - ok
19:51:07.0877 3648 WinHttpAutoProxySvc - ok
19:51:07.0940 3648 [ 19b07e7e8915d701225da41cb3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
19:51:07.0987 3648 Winmgmt - ok
19:51:08.0049 3648 [ bcb1310604aa415c4508708975b3931e ] WinRM C:\windows\system32\WsmSvc.dll
19:51:08.0111 3648 WinRM - ok
19:51:08.0189 3648 [ 4fada86e62f18a1b2f42ba18ae24e6aa ] Wlansvc C:\windows\System32\wlansvc.dll
19:51:08.0236 3648 Wlansvc - ok
19:51:08.0299 3648 [ 06c8fa1cf39de6a735b54d906ba791c6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
19:51:08.0314 3648 wlcrasvc - ok
19:51:08.0408 3648 [ 2bacd71123f42cea603f4e205e1ae337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:51:08.0439 3648 wlidsvc - ok
19:51:08.0455 3648 [ f6ff8944478594d0e414d3f048f0d778 ] WmiAcpi C:\windows\system32\DRIVERS\wmiacpi.sys
19:51:08.0486 3648 WmiAcpi - ok
19:51:08.0533 3648 [ 38b84c94c5a8af291adfea478ae54f93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
19:51:08.0564 3648 wmiApSrv - ok
19:51:08.0595 3648 WMPNetworkSvc - ok
19:51:08.0626 3648 [ 96c6e7100d724c69fcf9e7bf590d1dca ] WPCSvc C:\windows\System32\wpcsvc.dll
19:51:08.0642 3648 WPCSvc - ok
19:51:08.0657 3648 [ 93221146d4ebbf314c29b23cd6cc391d ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
19:51:08.0689 3648 WPDBusEnum - ok
19:51:08.0720 3648 [ 6bcc1d7d2fd2453957c5479a32364e52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
19:51:08.0751 3648 ws2ifsl - ok
19:51:08.0767 3648 [ e8b1fe6669397d1772d8196df0e57a9e ] wscsvc C:\windows\System32\wscsvc.dll
19:51:08.0798 3648 wscsvc - ok
19:51:08.0798 3648 WSearch - ok
19:51:08.0891 3648 [ d9ef901dca379cfe914e9fa13b73b4c4 ] wuauserv C:\windows\system32\wuaueng.dll
19:51:08.0938 3648 wuauserv - ok
19:51:08.0954 3648 [ d3381dc54c34d79b22cee0d65ba91b7c ] WudfPf C:\windows\system32\drivers\WudfPf.sys
19:51:09.0001 3648 WudfPf - ok
19:51:09.0032 3648 [ 7a95c95b6c4cf292d689106bcae49543 ] wudfsvc C:\windows\System32\WUDFSvc.dll
19:51:09.0079 3648 wudfsvc - ok
19:51:09.0094 3648 [ f0b1d8725fab9f4a559ccc91a960fce0 ] WwanSvc C:\windows\System32\wwansvc.dll
19:51:09.0125 3648 WwanSvc - ok
19:51:09.0125 3648 ================ Scan global ===============================
19:51:09.0157 3648 (ba0cd8c393e8c9f83354106093832c7b) C:\windows\system32\basesrv.dll
19:51:09.0188 3648 (eb6a48cc998e1090e44e8e7f1009a640) C:\windows\system32\winsrv.dll
19:51:09.0203 3648 (eb6a48cc998e1090e44e8e7f1009a640) C:\windows\system32\winsrv.dll
19:51:09.0235 3648 (d6160f9d869ba3af0b787f971db56368) C:\windows\system32\sxssrv.dll
19:51:09.0266 3648 (24acb7e5be595468e3b9aa488b9b4fcb) C:\windows\system32\services.exe
19:51:09.0281 3648 [Global] - ok
19:51:09.0281 3648 ================ Scan MBR ==================================
19:51:09.0297 3648 MBR (0x1B8) (5b5e648d12fcadc244c1ec30318e1eb9) \Device\Harddisk0\DR0
19:51:09.0515 3648 \Device\Harddisk0\DR0 - ok
19:51:09.0515 3648 ================ Scan VBR ==================================
19:51:09.0547 3648 Boot (0x1200) (d95e591e93b63a8c2aab137c71e52d6f) \Device\Harddisk0\DR0\Partition1
19:51:09.0547 3648 \Device\Harddisk0\DR0\Partition1 - ok
19:51:09.0578 3648 Boot (0x1200) (f73cdcfa54d29b3b64c32908b341c0f3) \Device\Harddisk0\DR0\Partition2
19:51:09.0578 3648 \Device\Harddisk0\DR0\Partition2 - ok
19:51:09.0578 3648 ================ Scan active images ========================
19:51:09.0578 3648 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
19:51:09.0578 3648 C:\Windows\System32\drivers\crashdmp.sys - ok
19:51:09.0593 3648 [ 839B5FE3D48E9F35B22C21A3D5103F6C ] C:\Windows\System32\drivers\Dumpata.sys
19:51:09.0593 3648 C:\Windows\System32\drivers\Dumpata.sys - ok
19:51:09.0593 3648 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
19:51:09.0593 3648 C:\Windows\System32\drivers\dumpfve.sys - ok
19:51:09.0609 3648 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] C:\Windows\System32\drivers\msahci.sys
19:51:09.0609 3648 C:\Windows\System32\drivers\msahci.sys - ok
19:51:09.0609 3648 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
19:51:09.0609 3648 C:\Windows\System32\drivers\cdrom.sys - ok
19:51:09.0609 3648 [ 055790D38D7EC73AEF03E4AA7F67BA03 ] C:\Windows\System32\drivers\klif.sys
19:51:09.0609 3648 C:\Windows\System32\drivers\klif.sys - ok
19:51:09.0609 3648 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
19:51:09.0609 3648 C:\Windows\System32\drivers\null.sys - ok
19:51:09.0625 3648 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
19:51:09.0625 3648 C:\Windows\System32\drivers\beep.sys - ok
19:51:09.0625 3648 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
19:51:09.0625 3648 C:\Windows\System32\drivers\videoprt.sys - ok
19:51:09.0625 3648 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
19:51:09.0625 3648 C:\Windows\System32\drivers\watchdog.sys - ok
19:51:09.0640 3648 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
19:51:09.0640 3648 C:\Windows\System32\drivers\RDPCDD.sys - ok
19:51:09.0640 3648 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
19:51:09.0640 3648 C:\Windows\System32\drivers\RDPENCDD.sys - ok
19:51:09.0640 3648 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
19:51:09.0640 3648 C:\Windows\System32\drivers\vga.sys - ok
19:51:09.0656 3648 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
19:51:09.0656 3648 C:\Windows\System32\drivers\msfs.sys - ok
19:51:09.0656 3648 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
19:51:09.0656 3648 C:\Windows\System32\drivers\RDPREFMP.sys - ok
19:51:09.0656 3648 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
19:51:09.0656 3648 C:\Windows\System32\drivers\npfs.sys - ok
19:51:09.0671 3648 [ D865DD8B0448E3F963D68C04C532858F ] C:\Windows\System32\drivers\kl2.sys
19:51:09.0671 3648 C:\Windows\System32\drivers\kl2.sys - ok
19:51:09.0671 3648 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
19:51:09.0671 3648 C:\Windows\System32\drivers\tdi.sys - ok
19:51:09.0671 3648 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
19:51:09.0671 3648 C:\Windows\System32\drivers\tdx.sys - ok
19:51:09.0671 3648 [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys
19:51:09.0671 3648 C:\Windows\System32\drivers\afd.sys - ok
19:51:09.0687 3648 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
19:51:09.0687 3648 C:\Windows\System32\drivers\netbt.sys - ok
19:51:09.0687 3648 [ 239D8D72730226CD460BDC8CA0A23D43 ] C:\Windows\System32\drivers\vsdatant.sys
19:51:09.0687 3648 C:\Windows\System32\drivers\vsdatant.sys - ok
19:51:09.0687 3648 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
19:51:09.0687 3648 C:\Windows\System32\drivers\netbios.sys - ok
19:51:09.0703 3648 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
19:51:09.0703 3648 C:\Windows\System32\drivers\pacer.sys - ok
19:51:09.0703 3648 [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys
19:51:09.0703 3648 C:\Windows\System32\drivers\vwififlt.sys - ok
19:51:09.0703 3648 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
19:51:09.0703 3648 C:\Windows\System32\drivers\wanarp.sys - ok
19:51:09.0718 3648 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
19:51:09.0718 3648 C:\Windows\System32\drivers\wfplwf.sys - ok
19:51:09.0718 3648 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
19:51:09.0718 3648 C:\Windows\System32\drivers\discache.sys - ok
19:51:09.0718 3648 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
19:51:09.0718 3648 C:\Windows\System32\drivers\mssmbios.sys - ok
19:51:09.0734 3648 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
19:51:09.0734 3648 C:\Windows\System32\drivers\nsiproxy.sys - ok
19:51:09.0734 3648 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
19:51:09.0734 3648 C:\Windows\System32\drivers\rdbss.sys - ok
19:51:09.0734 3648 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
19:51:09.0734 3648 C:\Windows\System32\drivers\termdd.sys - ok
19:51:09.0734 3648 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
19:51:09.0734 3648 C:\Windows\System32\drivers\blbdrive.sys - ok
19:51:09.0749 3648 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
19:51:09.0749 3648 C:\Windows\System32\drivers\dfsc.sys - ok
19:51:09.0749 3648 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
19:51:09.0749 3648 C:\Windows\System32\drivers\tunnel.sys - ok
19:51:09.0749 3648 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
19:51:09.0749 3648 C:\Windows\System32\drivers\amdppm.sys - ok
19:51:09.0765 3648 [ 41DF60B783AF496C93AB22B3B30518E1 ] C:\Windows\System32\drivers\atikmpag.sys
19:51:09.0765 3648 C:\Windows\System32\drivers\atikmpag.sys - ok
19:51:09.0765 3648 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
19:51:09.0765 3648 C:\Windows\System32\drivers\wmiacpi.sys - ok
19:51:09.0765 3648 [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll
19:51:09.0765 3648 C:\Windows\System32\ntdll.dll - ok
19:51:09.0765 3648 [ 1911A3356FA3F77CCC825CCBAC038C2A ] C:\Windows\System32\smss.exe
19:51:09.0765 3648 C:\Windows\System32\smss.exe - ok
19:51:09.0781 3648 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
19:51:09.0781 3648 C:\Windows\System32\autochk.exe - ok
19:51:09.0781 3648 [ 0468FB7AE99626524F9BDE3E1E030F63 ] C:\Windows\System32\drivers\atikmdag.sys
19:51:09.0781 3648 C:\Windows\System32\drivers\atikmdag.sys - ok
19:51:09.0781 3648 [ 85DBF6EC7BDFA6187F4A1EC8F3145CD0 ] C:\Windows\System32\drivers\dxgkrnl.sys
19:51:09.0781 3648 C:\Windows\System32\drivers\dxgkrnl.sys - ok
19:51:09.0796 3648 [ D0BF5B74A3B75F5B07DF04DA258A29B9 ] C:\Windows\System32\drivers\dxgmms1.sys
19:51:09.0796 3648 C:\Windows\System32\drivers\dxgmms1.sys - ok
19:51:09.0796 3648 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
19:51:09.0796 3648 C:\Windows\System32\drivers\hdaudbus.sys - ok
19:51:09.0796 3648 [ F33E70E48A54A7A1BFBEEB4F3B273E4A ] C:\Windows\System32\drivers\rtl8192ce.sys
19:51:09.0796 3648 C:\Windows\System32\drivers\rtl8192ce.sys - ok
19:51:09.0812 3648 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys
19:51:09.0812 3648 C:\Windows\System32\drivers\vwifibus.sys - ok
19:51:09.0812 3648 [ 9140DB0911DE035FED0A9A77A2D156EA ] C:\Windows\System32\drivers\Rt64win7.sys
19:51:09.0812 3648 C:\Windows\System32\drivers\Rt64win7.sys - ok
19:51:09.0812 3648 [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll
19:51:09.0812 3648 C:\Windows\System32\shell32.dll - ok
19:51:09.0827 3648 [ CCA2AB1752A61F29C3C941CD79D78CEA ] C:\Windows\System32\drivers\usbd.sys
19:51:09.0827 3648 C:\Windows\System32\drivers\usbd.sys - ok
19:51:09.0827 3648 [ 3DC51308F5E7A4BB8020D16E64E9D882 ] C:\Windows\System32\drivers\amdxhc.sys
19:51:09.0827 3648 C:\Windows\System32\drivers\amdxhc.sys - ok
19:51:09.0827 3648 [ FD542B661BD22FA69CA789AD0AC58C29 ] C:\Windows\System32\drivers\tdcmdpst.sys
19:51:09.0827 3648 C:\Windows\System32\drivers\tdcmdpst.sys - ok
19:51:09.0827 3648 [ 33A58C5630200E17B51C8D73DD64181B ] C:\Windows\System32\drivers\usbfilter.sys
19:51:09.0827 3648 C:\Windows\System32\drivers\usbfilter.sys - ok
19:51:09.0843 3648 [ AE259C75F9A0B057B6BF9E9695632B09 ] C:\Windows\System32\drivers\usbport.sys
19:51:09.0843 3648 C:\Windows\System32\drivers\usbport.sys - ok
19:51:09.0843 3648 [ C025055FE7B87701EB042095DF1A2D7B ] C:\Windows\System32\drivers\usbehci.sys
19:51:09.0843 3648 C:\Windows\System32\drivers\usbehci.sys - ok
19:51:09.0843 3648 [ 9840FC418B4CBD632D3D0A667A725C31 ] C:\Windows\System32\drivers\usbohci.sys
19:51:09.0843 3648 C:\Windows\System32\drivers\usbohci.sys - ok
19:51:09.0859 3648 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys
19:51:09.0859 3648 C:\Windows\System32\drivers\i8042prt.sys - ok
19:51:09.0859 3648 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
19:51:09.0859 3648 C:\Windows\System32\drivers\kbdclass.sys - ok
19:51:09.0859 3648 [ B868E292FBA5B62B9FC71572A5FAEF5C ] C:\Windows\System32\drivers\SynTP.sys
19:51:09.0859 3648 C:\Windows\System32\drivers\SynTP.sys - ok
19:51:09.0874 3648 [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys
19:51:09.0874 3648 C:\Windows\System32\drivers\CmBatt.sys - ok
19:51:09.0874 3648 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
19:51:09.0874 3648 C:\Windows\System32\drivers\mouclass.sys - ok
19:51:09.0874 3648 [ 9C7191F4B2E49BFF47A6C1144B5923FA ] C:\Windows\System32\drivers\TVALZFL.sys
19:51:09.0874 3648 C:\Windows\System32\drivers\TVALZFL.sys - ok
19:51:09.0890 3648 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
19:51:09.0890 3648 C:\Windows\System32\drivers\CompositeBus.sys - ok
19:51:09.0890 3648 [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys
19:51:09.0890 3648 C:\Windows\System32\drivers\hidparse.sys - ok
19:51:09.0890 3648 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
19:51:09.0890 3648 C:\Windows\System32\drivers\agilevpn.sys - ok
19:51:09.0905 3648 [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys
19:51:09.0905 3648 C:\Windows\System32\drivers\hidclass.sys - ok
19:51:09.0905 3648 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
19:51:09.0905 3648 C:\Windows\System32\drivers\ndistapi.sys - ok
19:51:09.0905 3648 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
19:51:09.0905 3648 C:\Windows\System32\drivers\rasl2tp.sys - ok
19:51:09.0905 3648 [ EC1CEB237E365330C1FCFC4876AA0AC0 ] C:\Windows\System32\drivers\wacomvhid.sys
19:51:09.0905 3648 C:\Windows\System32\drivers\wacomvhid.sys - ok
19:51:09.0921 3648 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
19:51:09.0921 3648 C:\Windows\System32\drivers\ndiswan.sys - ok
19:51:09.0921 3648 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
19:51:09.0921 3648 C:\Windows\System32\drivers\raspppoe.sys - ok
19:51:09.0921 3648 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
19:51:09.0921 3648 C:\Windows\System32\drivers\raspptp.sys - ok
19:51:09.0937 3648 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
19:51:09.0937 3648 C:\Windows\System32\drivers\rassstp.sys - ok
19:51:09.0937 3648 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
19:51:09.0937 3648 C:\Windows\System32\drivers\ks.sys - ok
19:51:09.0937 3648 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
19:51:09.0937 3648 C:\Windows\System32\drivers\swenum.sys - ok
19:51:09.0952 3648 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
19:51:09.0952 3648 C:\Windows\System32\drivers\umbus.sys - ok
19:51:09.0952 3648 [ C17BAFA60F941A1AF5C2B10D8632C409 ] C:\Windows\System32\drivers\amdhub30.sys
19:51:09.0952 3648 C:\Windows\System32\drivers\amdhub30.sys - ok
19:51:09.0952 3648 [ 287C6C9410B111B68B52CA298F7B8C24 ] C:\Windows\System32\drivers\usbhub.sys
19:51:09.0952 3648 C:\Windows\System32\drivers\usbhub.sys - ok
19:51:09.0952 3648 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
19:51:09.0952 3648 C:\Windows\System32\drivers\mouhid.sys - ok
19:51:09.0968 3648 [ E04D43C7D1641E95D35CAE6086C7E350 ] C:\Windows\System32\drivers\wacommousefilter.sys
19:51:09.0968 3648 C:\Windows\System32\drivers\wacommousefilter.sys - ok
19:51:09.0968 3648 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
19:51:09.0968 3648 C:\Windows\System32\drivers\ndproxy.sys - ok
19:51:09.0968 3648 [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys
19:51:09.0968 3648 C:\Windows\System32\drivers\drmk.sys - ok
19:51:09.0983 3648 [ 2B3B05C0A7768BF033217EB8F33F9C35 ] C:\Windows\System32\drivers\AtihdW76.sys
19:51:09.0983 3648 C:\Windows\System32\drivers\AtihdW76.sys - ok
19:51:09.0983 3648 [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys
19:51:09.0983 3648 C:\Windows\System32\drivers\portcls.sys - ok
19:51:09.0983 3648 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
19:51:09.0983 3648 C:\Windows\System32\drivers\ksthunk.sys - ok
19:51:09.0999 3648 [ 112A84BD9A31C59826AC2979D451F0DA ] C:\Windows\System32\drivers\RTKVHD64.sys
19:51:09.0999 3648 C:\Windows\System32\drivers\RTKVHD64.sys - ok
19:51:09.0999 3648 [ BB1C3DF1D6CC0972E9C7268A19E62D2E ] C:\Windows\System32\drivers\RtsUStor.sys
19:51:09.0999 3648 C:\Windows\System32\drivers\RtsUStor.sys - ok
19:51:09.0999 3648 [ 6F1A3157A1C89435352CEB543CDB359C ] C:\Windows\System32\drivers\usbccgp.sys
19:51:09.0999 3648 C:\Windows\System32\drivers\usbccgp.sys - ok
19:51:10.0015 3648 [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
19:51:10.0015 3648 C:\Windows\System32\drivers\hidusb.sys - ok
19:51:10.0015 3648 [ 241F2648ADF090E2A10095BD6D6F5DCB ] C:\Windows\System32\drivers\LHidFilt.Sys
19:51:10.0015 3648 C:\Windows\System32\drivers\LHidFilt.Sys - ok
19:51:10.0015 3648 [ 342ED5A4B3326014438F36D22D803737 ] C:\Windows\System32\drivers\LMouFilt.Sys
19:51:10.0015 3648 C:\Windows\System32\drivers\LMouFilt.Sys - ok
19:51:10.0015 3648 [ 454800C2BC7F3927CE030141EE4F4C50 ] C:\Windows\System32\drivers\usbvideo.sys
19:51:10.0015 3648 C:\Windows\System32\drivers\usbvideo.sys - ok
19:51:10.0030 3648 [ 91111CEBBDE8015E822C46120ED9537C ] C:\Windows\System32\drivers\PGEffect.sys
19:51:10.0030 3648 C:\Windows\System32\drivers\PGEffect.sys - ok
19:51:10.0030 3648 [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll
19:51:10.0030 3648 C:\Windows\System32\advapi32.dll - ok
19:51:10.0030 3648 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
19:51:10.0030 3648 C:\Windows\System32\nsi.dll - ok
19:51:10.0046 3648 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
19:51:10.0046 3648 C:\Windows\System32\sechost.dll - ok
19:51:10.0046 3648 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
19:51:10.0046 3648 C:\Windows\System32\oleaut32.dll - ok
19:51:10.0046 3648 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
19:51:10.0046 3648 C:\Windows\System32\imm32.dll - ok
19:51:10.0061 3648 [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll
19:51:10.0061 3648 C:\Windows\System32\lpk.dll - ok
19:51:10.0061 3648 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
19:51:10.0061 3648 C:\Windows\System32\msctf.dll - ok
19:51:10.0061 3648 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
19:51:10.0061 3648 C:\Windows\System32\user32.dll - ok
19:51:10.0061 3648 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
19:51:10.0061 3648 C:\Windows\System32\ws2_32.dll - ok
19:51:10.0077 3648 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
19:51:10.0077 3648 C:\Windows\System32\setupapi.dll - ok
19:51:10.0077 3648 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
19:51:10.0077 3648 C:\Windows\System32\difxapi.dll - ok
19:51:10.0077 3648 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
19:51:10.0077 3648 C:\Windows\System32\msvcrt.dll - ok
19:51:10.0093 3648 [ 7F7FE11DF2D67B36DFE5013881619A94 ] C:\Windows\System32\urlmon.dll
19:51:10.0093 3648 C:\Windows\System32\urlmon.dll - ok
19:51:10.0093 3648 [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll
19:51:10.0093 3648 C:\Windows\System32\rpcrt4.dll - ok
19:51:10.0093 3648 [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll
19:51:10.0093 3648 C:\Windows\System32\gdi32.dll - ok
19:51:10.0108 3648 [ 2F8B1E3EE3545D3B5A8D56FA1AE07B65 ] C:\Windows\System32\usp10.dll
19:51:10.0108 3648 C:\Windows\System32\usp10.dll - ok
19:51:10.0108 3648 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
19:51:10.0108 3648 C:\Windows\System32\psapi.dll - ok
19:51:10.0108 3648 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
19:51:10.0108 3648 C:\Windows\System32\shlwapi.dll - ok
19:51:10.0124 3648 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
19:51:10.0124 3648 C:\Windows\System32\normaliz.dll - ok
19:51:10.0124 3648 [ 8EA68FD3780DDDD5072F8CB830B3CB3D ] C:\Windows\System32\wininet.dll
19:51:10.0124 3648 C:\Windows\System32\wininet.dll - ok
19:51:10.0124 3648 [ E10A0704318A6F7E52787D09717D7C2C ] C:\Windows\System32\iertutil.dll
19:51:10.0124 3648 C:\Windows\System32\iertutil.dll - ok
19:51:10.0139 3648 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
19:51:10.0139 3648 C:\Windows\System32\clbcatq.dll - ok
19:51:10.0139 3648 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
19:51:10.0139 3648 C:\Windows\System32\comdlg32.dll - ok
19:51:10.0139 3648 [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll
19:51:10.0139 3648 C:\Windows\System32\imagehlp.dll - ok
19:51:10.0139 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\System32\kernel32.dll
19:51:10.0139 3648 C:\Windows\System32\kernel32.dll - ok
19:51:10.0155 3648 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
19:51:10.0155 3648 C:\Windows\System32\ole32.dll - ok
19:51:10.0155 3648 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
19:51:10.0155 3648 C:\Windows\System32\Wldap32.dll - ok
19:51:10.0155 3648 [ FAF1BA660F84789CCCE747CE6F9D055A ] C:\Windows\System32\crypt32.dll
19:51:10.0155 3648 C:\Windows\System32\crypt32.dll - ok
19:51:10.0171 3648 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
19:51:10.0171 3648 C:\Windows\System32\devobj.dll - ok
19:51:10.0171 3648 [ 53238D99636BBA85F491C3E8FD22AB00 ] C:\Windows\System32\wintrust.dll
19:51:10.0171 3648 C:\Windows\System32\wintrust.dll - ok
19:51:10.0171 3648 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
19:51:10.0171 3648 C:\Windows\System32\cfgmgr32.dll - ok
19:51:10.0186 3648 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll
19:51:10.0186 3648 C:\Windows\System32\comctl32.dll - ok
19:51:10.0186 3648 [ 6B5174702343BD955E174FDFEFA2A1A3 ] C:\Windows\System32\KernelBase.dll
19:51:10.0186 3648 C:\Windows\System32\KernelBase.dll - ok
19:51:10.0186 3648 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
19:51:10.0186 3648 C:\Windows\System32\msasn1.dll - ok
19:51:10.0186 3648 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
19:51:10.0186 3648 C:\Windows\SysWOW64\normaliz.dll - ok
19:51:10.0202 3648 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
19:51:10.0202 3648 C:\Windows\System32\drivers\dxapi.sys - ok
19:51:10.0202 3648 [ F0D6864A7D52CE137E0A9D24795C3F0E ] C:\Windows\System32\win32k.sys
19:51:10.0202 3648 C:\Windows\System32\win32k.sys - ok
19:51:10.0202 3648 [ 96F587CA26A6AA894BD8CACE4540CFFC ] C:\Windows\System32\csrsrv.dll
19:51:10.0202 3648 C:\Windows\System32\csrsrv.dll - ok
19:51:10.0217 3648 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
19:51:10.0217 3648 C:\Windows\System32\csrss.exe - ok
19:51:10.0217 3648 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
19:51:10.0217 3648 C:\Windows\System32\basesrv.dll - ok
19:51:10.0217 3648 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\System32\winsrv.dll
19:51:10.0217 3648 C:\Windows\System32\winsrv.dll - ok
19:51:10.0233 3648 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
19:51:10.0233 3648 C:\Windows\System32\drivers\monitor.sys - ok
19:51:10.0233 3648 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
19:51:10.0233 3648 C:\Windows\System32\tsddd.dll - ok
19:51:10.0233 3648 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
19:51:10.0233 3648 C:\Windows\System32\sxssrv.dll - ok
19:51:10.0233 3648 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
19:51:10.0233 3648 C:\Windows\System32\wininit.exe - ok
19:51:10.0249 3648 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
19:51:10.0249 3648 C:\Windows\System32\profapi.dll - ok
19:51:10.0264 3648 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
19:51:10.0264 3648 C:\Windows\System32\RpcRtRemote.dll - ok
19:51:10.0264 3648 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
19:51:10.0264 3648 C:\Windows\System32\KBDUS.DLL - ok
19:51:10.0264 3648 [ 943F527DF79E6B400104341AA7023C75 ] C:\Windows\System32\cdd.dll
19:51:10.0264 3648 C:\Windows\System32\cdd.dll - ok
19:51:10.0280 3648 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
19:51:10.0280 3648 C:\Windows\System32\WlS0WndH.dll - ok
19:51:10.0280 3648 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
19:51:10.0280 3648 C:\Windows\System32\sxs.dll - ok
19:51:10.0280 3648 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
19:51:10.0280 3648 C:\Windows\System32\cryptbase.dll - ok
19:51:10.0280 3648 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
19:51:10.0280 3648 C:\Windows\System32\apphelp.dll - ok
19:51:10.0295 3648 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
19:51:10.0295 3648 C:\Windows\System32\services.exe - ok
19:51:10.0295 3648 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
19:51:10.0295 3648 C:\Windows\System32\lsm.exe - ok
19:51:10.0295 3648 [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll
19:51:10.0295 3648 C:\Windows\System32\sspicli.dll - ok
19:51:10.0311 3648 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
19:51:10.0311 3648 C:\Windows\System32\sysntfy.dll - ok
19:51:10.0311 3648 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
19:51:10.0311 3648 C:\Windows\System32\wmsgapi.dll - ok
19:51:10.0311 3648 [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll
19:51:10.0311 3648 C:\Windows\System32\lsasrv.dll - ok
19:51:10.0327 3648 [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe
19:51:10.0327 3648 C:\Windows\System32\lsass.exe - ok
19:51:10.0327 3648 [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll
19:51:10.0327 3648 C:\Windows\System32\sspisrv.dll - ok
19:51:10.0327 3648 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
19:51:10.0327 3648 C:\Windows\System32\scext.dll - ok
19:51:10.0327 3648 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
19:51:10.0327 3648 C:\Windows\System32\samsrv.dll - ok
19:51:10.0342 3648 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
19:51:10.0342 3648 C:\Windows\System32\scesrv.dll - ok
19:51:10.0342 3648 [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll
19:51:10.0342 3648 C:\Windows\System32\secur32.dll - ok
19:51:10.0342 3648 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
19:51:10.0342 3648 C:\Windows\System32\srvcli.dll - ok
19:51:10.0358 3648 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
19:51:10.0358 3648 C:\Windows\System32\cryptdll.dll - ok
19:51:10.0358 3648 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
19:51:10.0358 3648 C:\Windows\System32\wevtapi.dll - ok
19:51:10.0358 3648 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
19:51:10.0358 3648 C:\Windows\System32\authz.dll - ok
19:51:10.0373 3648 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
19:51:10.0373 3648 C:\Windows\System32\cngaudit.dll - ok
19:51:10.0373 3648 [ 400645085A91BF3EB0271329B95AE0BE ] C:\Windows\System32\ncrypt.dll
19:51:10.0373 3648 C:\Windows\System32\ncrypt.dll - ok
19:51:10.0373 3648 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
19:51:10.0373 3648 C:\Windows\System32\bcrypt.dll - ok
19:51:10.0389 3648 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
19:51:10.0389 3648 C:\Windows\System32\msprivs.dll - ok
19:51:10.0389 3648 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
19:51:10.0389 3648 C:\Windows\System32\netjoin.dll - ok
19:51:10.0389 3648 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
19:51:10.0389 3648 C:\Windows\System32\negoexts.dll - ok
19:51:10.0389 3648 [ 16ECE8BD6734CC170B9AE74176E89A9B ] C:\Windows\System32\kerberos.dll
19:51:10.0389 3648 C:\Windows\System32\kerberos.dll - ok
19:51:10.0405 3648 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
19:51:10.0405 3648 C:\Windows\System32\cryptsp.dll - ok
19:51:10.0405 3648 [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll
19:51:10.0405 3648 C:\Windows\System32\mswsock.dll - ok
19:51:10.0405 3648 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
19:51:10.0405 3648 C:\Windows\System32\msv1_0.dll - ok
19:51:10.0420 3648 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
19:51:10.0420 3648 C:\Windows\System32\netlogon.dll - ok
19:51:10.0420 3648 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
19:51:10.0420 3648 C:\Windows\System32\wship6.dll - ok
19:51:10.0420 3648 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
19:51:10.0420 3648 C:\Windows\System32\dnsapi.dll - ok
19:51:10.0436 3648 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
19:51:10.0436 3648 C:\Windows\System32\logoncli.dll - ok
19:51:10.0436 3648 [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll
19:51:10.0436 3648 C:\Windows\System32\schannel.dll - ok
19:51:10.0436 3648 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
19:51:10.0436 3648 C:\Windows\System32\wdigest.dll - ok
19:51:10.0436 3648 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
19:51:10.0436 3648 C:\Windows\System32\rsaenh.dll - ok
19:51:10.0451 3648 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
19:51:10.0451 3648 C:\Windows\System32\TSpkg.dll - ok
19:51:10.0451 3648 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
19:51:10.0451 3648 C:\Windows\System32\pku2u.dll - ok
19:51:10.0451 3648 [ 7DBA64AD70C2E2481C68D9E0F7CD7840 ] C:\Windows\System32\LIVESSP.DLL
19:51:10.0451 3648 C:\Windows\System32\LIVESSP.DLL - ok
19:51:10.0467 3648 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
19:51:10.0467 3648 C:\Windows\System32\bcryptprimitives.dll - ok
19:51:10.0467 3648 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
19:51:10.0467 3648 C:\Windows\System32\credssp.dll - ok
19:51:10.0467 3648 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
19:51:10.0467 3648 C:\Windows\System32\efslsaext.dll - ok
19:51:10.0483 3648 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
19:51:10.0483 3648 C:\Windows\System32\scecli.dll - ok
19:51:10.0483 3648 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
19:51:10.0483 3648 C:\Windows\System32\ubpm.dll - ok
19:51:10.0483 3648 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
19:51:10.0483 3648 C:\Windows\System32\winsta.dll - ok
19:51:10.0498 3648 [ 6F68F63794097E54F36474ED4384B759 ] C:\Windows\System32\svchost.exe
19:51:10.0498 3648 C:\Windows\System32\svchost.exe - ok
19:51:10.0498 3648 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
19:51:10.0498 3648 C:\Windows\System32\SPInf.dll - ok
19:51:10.0498 3648 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
19:51:10.0498 3648 C:\Windows\System32\umpnpmgr.dll - ok
19:51:10.0498 3648 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
19:51:10.0498 3648 C:\Windows\System32\devrtl.dll - ok
19:51:10.0514 3648 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
19:51:10.0514 3648 C:\Windows\System32\userenv.dll - ok
19:51:10.0514 3648 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
19:51:10.0514 3648 C:\Windows\System32\gpapi.dll - ok
19:51:10.0514 3648 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
19:51:10.0514 3648 C:\Windows\System32\pcwum.dll - ok
19:51:10.0529 3648 [ A2CCA4FB273E6050F17A0A416CFF2FCD ] C:\Windows\System32\umpo.dll
19:51:10.0529 3648 C:\Windows\System32\umpo.dll - ok
19:51:10.0529 3648 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
19:51:10.0529 3648 C:\Windows\System32\powrprof.dll - ok
19:51:10.0529 3648 [ 96D6CDD0B32846E8CFBE592F4F32E608 ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe
19:51:10.0529 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe - ok
19:51:10.0545 3648 [ E73B0F1819602CB6EF176FB78D76A47B ] C:\Windows\SysWOW64\ntdll.dll
19:51:10.0545 3648 C:\Windows\SysWOW64\ntdll.dll - ok
19:51:10.0545 3648 [ B1E3772FFA96AC5AEE89BF202AF8E348 ] C:\Windows\System32\wow64.dll
19:51:10.0545 3648 C:\Windows\System32\wow64.dll - ok
19:51:10.0545 3648 [ FC5A43FA257F546F8F2B96B5529857E1 ] C:\Windows\System32\wow64win.dll
19:51:10.0545 3648 C:\Windows\System32\wow64win.dll - ok
19:51:10.0545 3648 [ AA0D2571A4348838B8DD49FD0043826A ] C:\Windows\System32\wow64cpu.dll
19:51:10.0545 3648 C:\Windows\System32\wow64cpu.dll - ok
19:51:10.0561 3648 [ 99C3F8E9CC59D95666EB8D8A8B4C2BEB ] C:\Windows\SysWOW64\kernel32.dll
19:51:10.0561 3648 C:\Windows\SysWOW64\kernel32.dll - ok
19:51:10.0561 3648 [ 2BA8242CD13B239565628220FBD0535B ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\rtl120.bpl
19:51:10.0561 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\rtl120.bpl - ok
19:51:10.0561 3648 [ 5C2D21C9B6B6175B89BC5D7E3CB979E1 ] C:\Windows\SysWOW64\KernelBase.dll
19:51:10.0561 3648 C:\Windows\SysWOW64\KernelBase.dll - ok
19:51:10.0576 3648 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
19:51:10.0576 3648 C:\Windows\SysWOW64\oleaut32.dll - ok
19:51:10.0576 3648 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
19:51:10.0576 3648 C:\Windows\SysWOW64\ole32.dll - ok
19:51:10.0576 3648 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
19:51:10.0576 3648 C:\Windows\System32\winlogon.exe - ok
19:51:10.0576 3648 [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll
19:51:10.0576 3648 C:\Windows\SysWOW64\gdi32.dll - ok
19:51:10.0592 3648 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
19:51:10.0592 3648 C:\Windows\SysWOW64\msvcrt.dll - ok
19:51:10.0592 3648 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
19:51:10.0592 3648 C:\Windows\SysWOW64\user32.dll - ok
19:51:10.0592 3648 [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll
19:51:10.0592 3648 C:\Windows\SysWOW64\advapi32.dll - ok
19:51:10.0607 3648 [ C5AD8083CF94201F1F8084ECC696A8B7 ] C:\Windows\SysWOW64\rpcrt4.dll
19:51:10.0607 3648 C:\Windows\SysWOW64\rpcrt4.dll - ok
19:51:10.0607 3648 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
19:51:10.0607 3648 C:\Windows\SysWOW64\sechost.dll - ok
19:51:10.0607 3648 [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll
19:51:10.0607 3648 C:\Windows\SysWOW64\sspicli.dll - ok
19:51:10.0623 3648 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
19:51:10.0623 3648 C:\Windows\SysWOW64\cryptbase.dll - ok
19:51:10.0623 3648 [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll
19:51:10.0623 3648 C:\Windows\SysWOW64\lpk.dll - ok
19:51:10.0623 3648 [ 804AAAFEBB3AD5F49334DD906BCB1DE5 ] C:\Windows\SysWOW64\usp10.dll
19:51:10.0623 3648 C:\Windows\SysWOW64\usp10.dll - ok
19:51:10.0639 3648 [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll
19:51:10.0639 3648 C:\Windows\SysWOW64\imagehlp.dll - ok
19:51:10.0639 3648 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
19:51:10.0639 3648 C:\Windows\SysWOW64\mpr.dll - ok
19:51:10.0639 3648 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
19:51:10.0639 3648 C:\Windows\SysWOW64\version.dll - ok
19:51:10.0639 3648 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
19:51:10.0639 3648 C:\Windows\SysWOW64\ws2_32.dll - ok
19:51:10.0654 3648 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
19:51:10.0654 3648 C:\Windows\SysWOW64\wsock32.dll - ok
19:51:10.0654 3648 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
19:51:10.0654 3648 C:\Windows\SysWOW64\nsi.dll - ok
19:51:10.0654 3648 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
19:51:10.0654 3648 C:\Windows\SysWOW64\oleacc.dll - ok
19:51:10.0670 3648 [ 9E60C31564457F12584F7AC755E968B4 ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\madexcept_.bpl
19:51:10.0670 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\madexcept_.bpl - ok
19:51:10.0670 3648 [ 4C2EAEDD8E7E57838DB48C4C88B476DB ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\madbasic_.bpl
19:51:10.0670 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\madbasic_.bpl - ok
19:51:10.0670 3648 [ E716BE751FCA66E97E49757305F44B3C ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\vcl120.bpl
19:51:10.0670 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\vcl120.bpl - ok
19:51:10.0685 3648 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
19:51:10.0685 3648 C:\Windows\SysWOW64\msimg32.dll - ok
19:51:10.0685 3648 [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
19:51:10.0685 3648 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok
19:51:10.0685 3648 [ 29E9794708DF51DB5DC89FB2E903A0F6 ] C:\Windows\SysWOW64\shell32.dll
19:51:10.0685 3648 C:\Windows\SysWOW64\shell32.dll - ok
19:51:10.0701 3648 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
19:51:10.0701 3648 C:\Windows\SysWOW64\shlwapi.dll - ok
19:51:10.0701 3648 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
19:51:10.0701 3648 C:\Windows\SysWOW64\comdlg32.dll - ok
19:51:10.0701 3648 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
19:51:10.0701 3648 C:\Windows\SysWOW64\winspool.drv - ok
19:51:10.0717 3648 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
19:51:10.0717 3648 C:\Windows\SysWOW64\oledlg.dll - ok
19:51:10.0717 3648 [ D5D103A7C4F9DAB3DE6062160A9D03A6 ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\maddisAsm_.bpl
19:51:10.0717 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\maddisAsm_.bpl - ok
19:51:10.0717 3648 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
19:51:10.0717 3648 C:\Windows\SysWOW64\winmm.dll - ok
19:51:10.0717 3648 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
19:51:10.0717 3648 C:\Windows\SysWOW64\imm32.dll - ok
19:51:10.0732 3648 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
19:51:10.0732 3648 C:\Windows\SysWOW64\profapi.dll - ok
19:51:10.0732 3648 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
19:51:10.0732 3648 C:\Windows\SysWOW64\userenv.dll - ok
19:51:10.0732 3648 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
19:51:10.0732 3648 C:\Windows\SysWOW64\msctf.dll - ok
19:51:10.0748 3648 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
19:51:10.0748 3648 C:\Windows\System32\drivers\luafv.sys - ok
19:51:10.0748 3648 [ D3381DC54C34D79B22CEE0D65BA91B7C ] C:\Windows\System32\drivers\WUDFPf.sys
19:51:10.0748 3648 C:\Windows\System32\drivers\WUDFPf.sys - ok
19:51:10.0748 3648 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
19:51:10.0748 3648 C:\Windows\System32\rpcss.dll - ok
19:51:10.0763 3648 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
19:51:10.0763 3648 C:\Windows\System32\RpcEpMap.dll - ok
19:51:10.0763 3648 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
19:51:10.0763 3648 C:\Windows\System32\wshqos.dll - ok
19:51:10.0763 3648 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
19:51:10.0763 3648 C:\Windows\System32\WSHTCPIP.DLL - ok
19:51:10.0763 3648 [ 63204B7C361D44DA791B70F4E31E5220 ] C:\Windows\System32\atiesrxx.exe
19:51:10.0779 3648 C:\Windows\System32\atiesrxx.exe - ok
19:51:10.0779 3648 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
19:51:10.0779 3648 C:\Windows\System32\FirewallAPI.dll - ok
19:51:10.0779 3648 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
19:51:10.0779 3648 C:\Windows\System32\wtsapi32.dll - ok
19:51:10.0779 3648 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
19:51:10.0779 3648 C:\Windows\System32\LogonUI.exe - ok
19:51:10.0795 3648 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
19:51:10.0795 3648 C:\Windows\System32\version.dll - ok
19:51:10.0795 3648 [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll
19:51:10.0795 3648 C:\Windows\System32\authui.dll - ok
19:51:10.0795 3648 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
19:51:10.0795 3648 C:\Windows\System32\cryptui.dll - ok
19:51:10.0810 3648 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
19:51:10.0810 3648 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
19:51:10.0810 3648 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
19:51:10.0810 3648 C:\Windows\System32\wevtsvc.dll - ok
19:51:10.0810 3648 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
19:51:10.0810 3648 C:\Windows\System32\propsys.dll - ok
19:51:10.0826 3648 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
19:51:10.0826 3648 C:\Windows\System32\samlib.dll - ok
19:51:10.0826 3648 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
19:51:10.0826 3648 C:\Windows\System32\shacct.dll - ok
19:51:10.0826 3648 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
19:51:10.0826 3648 C:\Windows\System32\adtschema.dll - ok
19:51:10.0826 3648 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
19:51:10.0826 3648 C:\Windows\System32\audiosrv.dll - ok
19:51:10.0841 3648 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
19:51:10.0841 3648 C:\Windows\System32\uxtheme.dll - ok
19:51:10.0841 3648 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
19:51:10.0841 3648 C:\Windows\System32\avrt.dll - ok
19:51:10.0841 3648 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
19:51:10.0841 3648 C:\Windows\System32\mmcss.dll - ok
19:51:10.0841 3648 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
19:51:10.0841 3648 C:\Windows\System32\profsvc.dll - ok
19:51:10.0857 3648 [ 179E8401224D557ECFF3695F2016EA5B ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll
19:51:10.0857 3648 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll - ok
19:51:10.0857 3648 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
19:51:10.0857 3648 C:\Windows\System32\MMDevAPI.dll - ok
19:51:10.0857 3648 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
19:51:10.0857 3648 C:\Windows\System32\wlansvc.dll - ok
19:51:10.0873 3648 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
19:51:10.0873 3648 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
19:51:10.0873 3648 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
19:51:10.0873 3648 C:\Windows\System32\drivers\fltMgr.sys - ok
19:51:10.0873 3648 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
19:51:10.0873 3648 C:\Windows\System32\PSHED.DLL - ok
19:51:10.0888 3648 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
19:51:10.0888 3648 C:\Windows\System32\netprofm.dll - ok
19:51:10.0888 3648 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
19:51:10.0888 3648 C:\Windows\System32\audiodg.exe - ok
19:51:10.0888 3648 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
19:51:10.0888 3648 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
19:51:10.0904 3648 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
19:51:10.0904 3648 C:\Windows\System32\ntmarta.dll - ok
19:51:10.0904 3648 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
19:51:10.0904 3648 C:\Windows\System32\gpsvc.dll - ok
19:51:10.0904 3648 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
19:51:10.0904 3648 C:\Windows\System32\MPSSVC.dll - ok
19:51:10.0919 3648 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
19:51:10.0919 3648 C:\Windows\System32\dui70.dll - ok
19:51:10.0919 3648 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
19:51:10.0919 3648 C:\Windows\System32\atl.dll - ok
19:51:10.0919 3648 [ 2DF36F15B2BC1571A6A542A3C2107920 ] C:\Windows\System32\nlaapi.dll
19:51:10.0919 3648 C:\Windows\System32\nlaapi.dll - ok
19:51:10.0919 3648 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
19:51:10.0919 3648 C:\Windows\System32\themeservice.dll - ok
19:51:10.0935 3648 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
19:51:10.0935 3648 C:\Windows\System32\dsrole.dll - ok
19:51:10.0935 3648 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
19:51:10.0935 3648 C:\Windows\System32\duser.dll - ok
19:51:10.0935 3648 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
19:51:10.0935 3648 C:\Windows\System32\slc.dll - ok
19:51:10.0951 3648 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
19:51:10.0951 3648 C:\Windows\System32\SndVolSSO.dll - ok
19:51:10.0951 3648 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
19:51:10.0951 3648 C:\Windows\System32\hid.dll - ok
19:51:10.0951 3648 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
19:51:10.0951 3648 C:\Windows\System32\dwmapi.dll - ok
19:51:10.0966 3648 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
19:51:10.0966 3648 C:\Windows\System32\xmllite.dll - ok
19:51:10.0966 3648 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
19:51:10.0966 3648 C:\Windows\System32\es.dll - ok
19:51:10.0966 3648 [ 26B73A85855681500BCC25C7CD9FF5B1 ] C:\Windows\System32\WindowsCodecs.dll
19:51:10.0966 3648 C:\Windows\System32\WindowsCodecs.dll - ok
19:51:10.0966 3648 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
19:51:10.0966 3648 C:\Windows\System32\comres.dll - ok
19:51:10.0982 3648 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
19:51:10.0982 3648 C:\Windows\System32\Sens.dll - ok
19:51:10.0982 3648 [ 7625DCF246E488E523DC1F64C38ABDA2 ] C:\Program Files\Tablet\Pen\Pen_TouchService.exe
19:51:10.0982 3648 C:\Program Files\Tablet\Pen\Pen_TouchService.exe - ok
19:51:10.0982 3648 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
19:51:10.0982 3648 C:\Windows\System32\uxsms.dll - ok
19:51:10.0997 3648 [ CAED4A65CAF1EF80AA81E9B135326658 ] C:\Program Files\Tablet\Pen\msvcp100.dll
19:51:10.0997 3648 C:\Program Files\Tablet\Pen\msvcp100.dll - ok
19:51:10.0997 3648 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] C:\Windows\System32\TabSvc.dll
19:51:10.0997 3648 C:\Windows\System32\TabSvc.dll - ok
19:51:10.0997 3648 [ AED6D63CFA5A3EF7021AF9C457FEE994 ] C:\Program Files\Tablet\Pen\msvcr100.dll
19:51:10.0997 3648 C:\Program Files\Tablet\Pen\msvcr100.dll - ok
19:51:11.0013 3648 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
19:51:11.0013 3648 C:\Windows\System32\winbrand.dll - ok
19:51:11.0013 3648 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
19:51:11.0013 3648 C:\Windows\System32\VaultCredProvider.dll - ok
19:51:11.0013 3648 [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll
19:51:11.0013 3648 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
19:51:11.0013 3648 [ 1335B4B2ABC7B3DE595A323BEE7A27E7 ] C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
19:51:11.0013 3648 C:\Program Files\Tablet\Pen\Pen_TouchUser.exe - ok
19:51:11.0029 3648 [ 80E69670BDA10F32A941BA7358E33012 ] C:\Windows\System32\WUDFPlatform.dll
19:51:11.0029 3648 C:\Windows\System32\WUDFPlatform.dll - ok
19:51:11.0029 3648 [ 7A95C95B6C4CF292D689106BCAE49543 ] C:\Windows\System32\WUDFSvc.dll
19:51:11.0029 3648 C:\Windows\System32\WUDFSvc.dll - ok
19:51:11.0029 3648 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
19:51:11.0029 3648 C:\Windows\System32\BioCredProv.dll - ok
19:51:11.0044 3648 [ 7D786737F1BC3A398C71860D3342C523 ] C:\Program Files\Tablet\Pen\libxml2.dll
19:51:11.0044 3648 C:\Program Files\Tablet\Pen\libxml2.dll - ok
19:51:11.0044 3648 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
19:51:11.0044 3648 C:\Windows\System32\drivers\lltdio.sys - ok
19:51:11.0044 3648 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
19:51:11.0044 3648 C:\Windows\System32\drivers\nwifi.sys - ok
19:51:11.0060 3648 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
19:51:11.0060 3648 C:\Windows\System32\drivers\ndisuio.sys - ok
19:51:11.0060 3648 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
19:51:11.0060 3648 C:\Windows\System32\drivers\rspndr.sys - ok
19:51:11.0060 3648 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
19:51:11.0060 3648 C:\Windows\System32\lmhsvc.dll - ok
19:51:11.0060 3648 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
19:51:11.0060 3648 C:\Windows\System32\winbio.dll - ok
19:51:11.0075 3648 [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll
19:51:11.0075 3648 C:\Windows\System32\credui.dll - ok
19:51:11.0075 3648 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
19:51:11.0075 3648 C:\Windows\System32\IPHLPAPI.DLL - ok
19:51:11.0075 3648 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
19:51:11.0075 3648 C:\Windows\System32\nrpsrv.dll - ok
19:51:11.0091 3648 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
19:51:11.0091 3648 C:\Windows\System32\nsisvc.dll - ok
19:51:11.0091 3648 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
19:51:11.0091 3648 C:\Windows\System32\winnsi.dll - ok
19:51:11.0091 3648 [ 4F5414602E2544A4554D95517948B705 ] C:\Windows\System32\cryptsvc.dll
19:51:11.0091 3648 C:\Windows\System32\cryptsvc.dll - ok
19:51:11.0107 3648 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
19:51:11.0107 3648 C:\Windows\System32\dhcpcore.dll - ok
19:51:11.0107 3648 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
19:51:11.0107 3648 C:\Windows\System32\keyiso.dll - ok
19:51:11.0107 3648 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
19:51:11.0107 3648 C:\Windows\System32\eapphost.dll - ok
19:51:11.0107 3648 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
19:51:11.0107 3648 C:\Windows\System32\eapsvc.dll - ok
19:51:11.0122 3648 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
19:51:11.0122 3648 C:\Windows\System32\mpr.dll - ok
19:51:11.0122 3648 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
19:51:11.0122 3648 C:\Windows\System32\umb.dll - ok
19:51:11.0122 3648 [ 1D817D77C8EB600AB311AAC8E68B5A1A ] C:\Windows\System32\cryptnet.dll
19:51:11.0122 3648 C:\Windows\System32\cryptnet.dll - ok
19:51:11.0138 3648 [ 71C7B65B6557B75B99907E76956AE4B8 ] C:\Windows\System32\dhcpcore6.dll
19:51:11.0138 3648 C:\Windows\System32\dhcpcore6.dll - ok
19:51:11.0138 3648 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
19:51:11.0138 3648 C:\Windows\System32\dnsrslvr.dll - ok
19:51:11.0138 3648 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
19:51:11.0138 3648 C:\Windows\System32\wlanmsm.dll - ok
19:51:11.0153 3648 [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL
19:51:11.0153 3648 C:\Windows\System32\FWPUCLNT.DLL - ok
19:51:11.0153 3648 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
19:51:11.0153 3648 C:\Windows\System32\netapi32.dll - ok
19:51:11.0153 3648 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
19:51:11.0153 3648 C:\Windows\System32\vaultcli.dll - ok
19:51:11.0153 3648 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
19:51:11.0153 3648 C:\Windows\System32\wlansec.dll - ok
19:51:11.0169 3648 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
19:51:11.0169 3648 C:\Windows\System32\netutils.dll - ok
19:51:11.0169 3648 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
19:51:11.0169 3648 C:\Windows\System32\wkscli.dll - ok
19:51:11.0169 3648 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
19:51:11.0169 3648 C:\Windows\System32\onex.dll - ok
19:51:11.0185 3648 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
19:51:11.0185 3648 C:\Windows\System32\samcli.dll - ok
19:51:11.0185 3648 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
19:51:11.0185 3648 C:\Windows\System32\dhcpcsvc.dll - ok
19:51:11.0185 3648 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
19:51:11.0185 3648 C:\Windows\System32\eappcfg.dll - ok
19:51:11.0200 3648 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
19:51:11.0200 3648 C:\Windows\System32\eappprxy.dll - ok
19:51:11.0200 3648 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
19:51:11.0200 3648 C:\Windows\System32\dnsext.dll - ok
19:51:11.0200 3648 [ 2AC6029D934225F6C91F86FA8A81D6AB ] C:\Program Files\Toshiba\SmartFaceV\SmartFaceVCP.dll
19:51:11.0200 3648 C:\Program Files\Toshiba\SmartFaceV\SmartFaceVCP.dll - ok
19:51:11.0200 3648 [ 76B311DF9BF7A4A841DB2FBAD4E3B163 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
19:51:11.0200 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe - ok
19:51:11.0216 3648 [ 87C1629EC2743FE752B6089C29ADEE5C ] C:\Program Files\Toshiba\SmartFaceV\SmartFaceVHelper.dll
19:51:11.0216 3648 C:\Program Files\Toshiba\SmartFaceV\SmartFaceVHelper.dll - ok
19:51:11.0216 3648 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
19:51:11.0216 3648 C:\Windows\System32\vssapi.dll - ok
19:51:11.0216 3648 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
19:51:11.0216 3648 C:\Windows\System32\wlgpclnt.dll - ok
19:51:11.0231 3648 [ 3F5DD3782094BA2E7BC6A11E8324A4B0 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdata.dll
19:51:11.0231 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdata.dll - ok
19:51:11.0231 3648 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
19:51:11.0231 3648 C:\Windows\System32\l2gpstore.dll - ok
19:51:11.0231 3648 [ 1238943AC2C823D1ED9289D469F0A543 ] C:\Windows\System32\Pen_Tablet.dll
19:51:11.0231 3648 C:\Windows\System32\Pen_Tablet.dll - ok
19:51:11.0247 3648 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
19:51:11.0247 3648 C:\Windows\System32\WinSCard.dll - ok
19:51:11.0247 3648 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
19:51:11.0247 3648 C:\Windows\System32\wlanutil.dll - ok
19:51:11.0247 3648 [ BF4C2068F2B70A48BC2279E2B7199B1A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsinit.dll
19:51:11.0247 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsinit.dll - ok
19:51:11.0263 3648 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
19:51:11.0263 3648 C:\Windows\SysWOW64\psapi.dll - ok
19:51:11.0263 3648 [ DB001FAEA818AE2E14A74E0ADC530FC0 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcp90.dll
19:51:11.0263 3648 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcp90.dll - ok
19:51:11.0263 3648 [ B3892E6DA8E2C8CE4B0A9D3EB9A185E5 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcr90.dll
19:51:11.0263 3648 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcr90.dll - ok
19:51:11.0263 3648 [ 4FFDE68C4B7C9993FA551E7E36DDB34D ] C:\Windows\System32\msxml6.dll
19:51:11.0263 3648 C:\Windows\System32\msxml6.dll - ok
19:51:11.0278 3648 [ 1295338CFE6F249823EF9BC8D4368A84 ] C:\Windows\SysWOW64\crypt32.dll
19:51:11.0278 3648 C:\Windows\SysWOW64\crypt32.dll - ok
19:51:11.0278 3648 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
19:51:11.0278 3648 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
19:51:11.0294 3648 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
19:51:11.0294 3648 C:\Windows\SysWOW64\msasn1.dll - ok
19:51:11.0294 3648 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
19:51:11.0294 3648 C:\Windows\SysWOW64\winnsi.dll - ok
19:51:11.0294 3648 [ E0B44D1DD2A06A51C7F823A7C5B80F79 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsutil.dll
19:51:11.0294 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsutil.dll - ok
19:51:11.0309 3648 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
19:51:11.0309 3648 C:\Windows\SysWOW64\netapi32.dll - ok
19:51:11.0309 3648 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
19:51:11.0309 3648 C:\Windows\SysWOW64\netutils.dll - ok
19:51:11.0309 3648 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
19:51:11.0309 3648 C:\Windows\SysWOW64\srvcli.dll - ok
19:51:11.0325 3648 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
19:51:11.0325 3648 C:\Windows\SysWOW64\ntmarta.dll - ok
19:51:11.0325 3648 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
19:51:11.0325 3648 C:\Windows\SysWOW64\samcli.dll - ok
19:51:11.0325 3648 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
19:51:11.0325 3648 C:\Windows\SysWOW64\wkscli.dll - ok
19:51:11.0341 3648 [ 7AE92C896AF9ABFBDB18C1D055B6EBA7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll
19:51:11.0341 3648 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll - ok
19:51:11.0341 3648 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
19:51:11.0341 3648 C:\Windows\SysWOW64\Wldap32.dll - ok
19:51:11.0341 3648 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
19:51:11.0341 3648 C:\Windows\System32\vsstrace.dll - ok
19:51:11.0356 3648 [ 4CBCC37856EA2039C27A2FB661DDA0E5 ] C:\Windows\System32\dhcpcsvc6.dll
19:51:11.0356 3648 C:\Windows\System32\dhcpcsvc6.dll - ok
19:51:11.0356 3648 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
19:51:11.0356 3648 C:\Windows\SysWOW64\cryptsp.dll - ok
19:51:11.0356 3648 [ 591FE0A6CEB19BF886CEB1331F591940 ] C:\Windows\SysWOW64\ncrypt.dll
19:51:11.0356 3648 C:\Windows\SysWOW64\ncrypt.dll - ok
19:51:11.0356 3648 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
19:51:11.0356 3648 C:\Windows\SysWOW64\rsaenh.dll - ok
19:51:11.0372 3648 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
19:51:11.0372 3648 C:\Windows\SysWOW64\bcrypt.dll - ok
19:51:11.0372 3648 [ 06A754FE28A06F780A099703CFCAAA22 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll
19:51:11.0372 3648 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll - ok
19:51:11.0372 3648 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
19:51:11.0372 3648 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
19:51:11.0387 3648 [ DD072705435259D5ABB5D7E0C348EB35 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\dbghelp.dll
19:51:11.0387 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\dbghelp.dll - ok
19:51:11.0387 3648 [ 9AE75388EE2C110216B8319584E8AC34 ] C:\Program Files\Toshiba\SmartFaceV\SmartFaceVCtrl.dll
19:51:11.0387 3648 C:\Program Files\Toshiba\SmartFaceV\SmartFaceVCtrl.dll - ok
19:51:11.0387 3648 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
19:51:11.0387 3648 C:\Windows\System32\winmm.dll - ok
19:51:11.0403 3648 [ 2A9238A326763122424E07EF320D5D3A ] C:\Program Files\Toshiba\SmartFaceV\FaceRec.dll
19:51:11.0403 3648 C:\Program Files\Toshiba\SmartFaceV\FaceRec.dll - ok
19:51:11.0403 3648 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
19:51:11.0403 3648 C:\Windows\System32\netcfgx.dll - ok
19:51:11.0403 3648 [ 66F67AA5A830BAED4CBBB00032AB0514 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\icslta.dll
19:51:11.0403 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\icslta.dll - ok
19:51:11.0419 3648 [ B6C10C101D3E4B4624E47AF610B8E71F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\ssleay32.dll
19:51:11.0419 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\ssleay32.dll - ok
19:51:11.0419 3648 [ 4BA5418AAAD21ABBD8CB86E9456DF165 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdb.dll
19:51:11.0419 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsdb.dll - ok
19:51:11.0419 3648 [ 91175B7E997CFAC64F271A15B4217BC7 ] C:\Program Files\Toshiba\SmartFaceV\FaceHI.dll
19:51:11.0419 3648 C:\Program Files\Toshiba\SmartFaceV\FaceHI.dll - ok
19:51:11.0434 3648 [ 42C88DC939001CB5DBA9808A47EB81A9 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsxml.dll
19:51:11.0434 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsxml.dll - ok
19:51:11.0434 3648 [ 3FAADCED8DE6CD3B18E8E25AB05B51D5 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\fbl.dll
19:51:11.0434 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\fbl.dll - ok
19:51:11.0434 3648 [ 074A975395F2BE9B3A127871A194F88E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\featuremap.dll
19:51:11.0434 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\featuremap.dll - ok
19:51:11.0434 3648 [ B53689E37BA52B1BA96BFF6A4D6B288F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vswmi.dll
19:51:11.0434 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vswmi.dll - ok
19:51:11.0450 3648 [ 04C5F3B6C52FD0CDE606E279E3F8C0BA ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcomm.dll
19:51:11.0450 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcomm.dll - ok
19:51:11.0450 3648 [ 47A1D9DADC91C3DCCF4C59A4F73DC6C8 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcommdb.dll
19:51:11.0450 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlcommdb.dll - ok
19:51:11.0450 3648 [ ADD26297F53141BB5F5737719E01D460 ] C:\Program Files\Toshiba\SmartFaceV\SmartFaceVLogOn.dll
19:51:11.0450 3648 C:\Program Files\Toshiba\SmartFaceV\SmartFaceVLogOn.dll - ok
19:51:11.0465 3648 [ 139B203AFAF591317D8C09F7081C21ED ] C:\Windows\System32\atieclxx.exe
19:51:11.0465 3648 C:\Windows\System32\atieclxx.exe - ok
19:51:11.0465 3648 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
19:51:11.0465 3648 C:\Windows\System32\certCredProvider.dll - ok
19:51:11.0465 3648 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
19:51:11.0465 3648 C:\Windows\System32\UXInit.dll - ok
19:51:11.0481 3648 [ 032229246107C5C7211E6D1498B52D3D ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL
19:51:11.0481 3648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL - ok
19:51:11.0481 3648 [ 558F71DA5A42EEA422AAB78B03721693 ] C:\Windows\System32\atiadlxx.dll
19:51:11.0481 3648 C:\Windows\System32\atiadlxx.dll - ok
19:51:11.0481 3648 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
19:51:11.0481 3648 C:\Windows\System32\rasplap.dll - ok
19:51:11.0497 3648 [ 02E20372D9D6D28E37BA9704EDC90B67 ] C:\Windows\System32\wisptis.exe
19:51:11.0497 3648 C:\Windows\System32\wisptis.exe - ok
19:51:11.0497 3648 [ 4C3DAEE652B005B483F16B8E9131C99D ] C:\Windows\System32\d3d9.dll
19:51:11.0497 3648 C:\Windows\System32\d3d9.dll - ok
19:51:11.0497 3648 [ DF6737304C458AFB28AA214AEB7D7ECD ] C:\Windows\System32\Magnification.dll
19:51:11.0497 3648 C:\Windows\System32\Magnification.dll - ok
19:51:11.0497 3648 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
19:51:11.0497 3648 C:\Windows\System32\rasapi32.dll - ok
19:51:11.0512 3648 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
19:51:11.0512 3648 C:\Windows\System32\rasman.dll - ok
19:51:11.0512 3648 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
19:51:11.0512 3648 C:\Windows\System32\rtutils.dll - ok
19:51:11.0512 3648 [ 63F708E4A5AE6105775C1CBDAE78C838 ] C:\Windows\System32\atimuixx.dll
19:51:11.0512 3648 C:\Windows\System32\atimuixx.dll - ok
19:51:11.0528 3648 [ 3044D07ABDF4BBEA27E2EE7B1E0C0C65 ] C:\Windows\System32\d3d8thk.dll
19:51:11.0528 3648 C:\Windows\System32\d3d8thk.dll - ok
19:51:11.0528 3648 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
19:51:11.0528 3648 C:\Windows\System32\imageres.dll - ok
19:51:11.0528 3648 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
19:51:11.0528 3648 C:\Windows\System32\oleacc.dll - ok
19:51:11.0543 3648 [ DAF3E300311D2B78174AE52B231981BD ] C:\Windows\System32\Tabbtn.dll
19:51:11.0543 3648 C:\Windows\System32\Tabbtn.dll - ok
19:51:11.0543 3648 [ EAE8FA7CAA6D5E670D23931B06C50468 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsruledb.dll
19:51:11.0543 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsruledb.dll - ok
19:51:11.0543 3648 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
19:51:11.0543 3648 C:\Windows\SysWOW64\wtsapi32.dll - ok
19:51:11.0559 3648 [ 47D699D6DDFB92B9E946D023326F2D23 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsvault.dll
19:51:11.0559 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsvault.dll - ok
19:51:11.0559 3648 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
19:51:11.0559 3648 C:\Windows\SysWOW64\clbcatq.dll - ok
19:51:11.0559 3648 [ 09DEF3ABB6A196749299359AC5578DD8 ] C:\Windows\SysWOW64\msxml4.dll
19:51:11.0559 3648 C:\Windows\SysWOW64\msxml4.dll - ok
19:51:11.0575 3648 [ 839F96DBAAFD3353E0B248A5E0BD2A51 ] C:\Windows\SysWOW64\rasapi32.dll
19:51:11.0575 3648 C:\Windows\SysWOW64\rasapi32.dll - ok
19:51:11.0575 3648 [ FFA7172354B9256DBB2CDD75F16F33FE ] C:\Windows\SysWOW64\rasman.dll
19:51:11.0575 3648 C:\Windows\SysWOW64\rasman.dll - ok
19:51:11.0575 3648 [ 75A97A2C060E72AB49E071E08C7DD2BA ] C:\Windows\SysWOW64\wininet.dll
19:51:11.0575 3648 C:\Windows\SysWOW64\wininet.dll - ok
19:51:11.0575 3648 [ B17ADBBBDC97148D28F995F32C380F2E ] C:\Windows\SysWOW64\iertutil.dll
19:51:11.0575 3648 C:\Windows\SysWOW64\iertutil.dll - ok
19:51:11.0590 3648 [ 667981F2E7C26275F0694B58EEE303B9 ] C:\Windows\SysWOW64\urlmon.dll
19:51:11.0590 3648 C:\Windows\SysWOW64\urlmon.dll - ok
19:51:11.0590 3648 [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159 ] C:\Windows\SysWOW64\rtutils.dll
19:51:11.0590 3648 C:\Windows\SysWOW64\rtutils.dll - ok
19:51:11.0590 3648 [ 2F040CF0613A6D64DCBBA9EE81F5A5AE ] C:\Windows\SysWOW64\dsrole.dll
19:51:11.0590 3648 C:\Windows\SysWOW64\dsrole.dll - ok
19:51:11.0606 3648 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
19:51:11.0606 3648 C:\Windows\System32\esent.dll - ok
19:51:11.0606 3648 [ A7D79E9F660340AB20CD73F12910985F ] C:\Windows\SysWOW64\wintrust.dll
19:51:11.0606 3648 C:\Windows\SysWOW64\wintrust.dll - ok
19:51:11.0606 3648 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
19:51:11.0606 3648 C:\Windows\SysWOW64\gpapi.dll - ok
19:51:11.0621 3648 [ 6316957BB3431DFB06BFFA98C0F1926E ] C:\Windows\SysWOW64\cryptnet.dll
19:51:11.0621 3648 C:\Windows\SysWOW64\cryptnet.dll - ok
19:51:11.0621 3648 [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll
19:51:11.0621 3648 C:\Windows\SysWOW64\mswsock.dll - ok
19:51:11.0621 3648 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
19:51:11.0621 3648 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
19:51:11.0621 3648 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
19:51:11.0621 3648 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok

#4 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 08:13 PM

TDSSKiller log Part 2:


19:51:11.0637 3648 [ 8258362DDB18B644A82D8B5061AD9426 ] C:\Windows\SysWOW64\wscisvif.dll
19:51:11.0637 3648 C:\Windows\SysWOW64\wscisvif.dll - ok
19:51:11.0637 3648 [ 37BFC5FA0346237B8DDA93E60231B9FB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\av.dll
19:51:11.0637 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\av.dll - ok
19:51:11.0637 3648 [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll
19:51:11.0637 3648 C:\Windows\SysWOW64\secur32.dll - ok
19:51:11.0653 3648 [ A8CDF3768604FF95B54669E20053D569 ] C:\Windows\SysWOW64\wscapi.dll
19:51:11.0653 3648 C:\Windows\SysWOW64\wscapi.dll - ok
19:51:11.0653 3648 [ 87ADAC29D1C06956A96D5F0053942DB5 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kave8.dll
19:51:11.0653 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kave8.dll - ok
19:51:11.0653 3648 [ A3C190D644E88DE5872FC7FEC7377E35 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcp80.dll
19:51:11.0653 3648 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcp80.dll - ok
19:51:11.0668 3648 [ 5FF5E12F28725D14CAA3B408848ADFFC ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll
19:51:11.0668 3648 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll - ok
19:51:11.0668 3648 [ 042B0E8F14BAFB7AB8ACF5EB8FD884D1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\fssync.dll
19:51:11.0668 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\fssync.dll - ok
19:51:11.0668 3648 [ ED12110CD5BFE686F645E145A7DD28C5 ] C:\Windows\SysWOW64\comsvcs.dll
19:51:11.0668 3648 C:\Windows\SysWOW64\comsvcs.dll - ok
19:51:11.0684 3648 [ 1EBE9524683C7C4EED8B8BC93FB6FBCC ] C:\Windows\SysWOW64\fltLib.dll
19:51:11.0684 3648 C:\Windows\SysWOW64\fltLib.dll - ok
19:51:11.0684 3648 [ 3B6E6B123312E898A64649178752B3CA ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\scheduler.dll
19:51:11.0684 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\scheduler.dll - ok
19:51:11.0684 3648 [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll
19:51:11.0684 3648 C:\Windows\SysWOW64\atl.dll - ok
19:51:11.0684 3648 [ 8EA53101FF2B15BDFF934B62A8FB326D ] C:\Windows\SysWOW64\logoncli.dll
19:51:11.0684 3648 C:\Windows\SysWOW64\logoncli.dll - ok
19:51:11.0699 3648 [ C1B5C25DC4BB3CF59351D97413AC07D0 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlupdate.dll
19:51:11.0699 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zlupdate.dll - ok
19:51:11.0699 3648 [ 4FC11A74DC2777C30636D79E5E94755B ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavess.dll
19:51:11.0699 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavess.dll - ok
19:51:11.0699 3648 [ 185B4791D6EFE53E50D9EA2FB948C3DE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zdx.dll
19:51:11.0699 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zdx.dll - ok
19:51:11.0715 3648 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
19:51:11.0715 3648 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
19:51:11.0715 3648 [ A63DC5C2EA944E6657203E0C8EDEAF61 ] C:\Windows\SysWOW64\dllhost.exe
19:51:11.0715 3648 C:\Windows\SysWOW64\dllhost.exe - ok
19:51:11.0715 3648 [ 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 ] C:\Windows\SysWOW64\mapi32.dll
19:51:11.0715 3648 C:\Windows\SysWOW64\mapi32.dll - ok
19:51:11.0731 3648 [ 1DBC79D285B891B5CFA8A97FC17741AD ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prloader.dll
19:51:11.0731 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prloader.dll - ok
19:51:11.0731 3648 [ 7638298DB5B6CC49B306D4A3F12165B5 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\nfio.ppl
19:51:11.0731 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\nfio.ppl - ok
19:51:11.0731 3648 [ 3F50200237961034FACE602373838980 ] C:\Windows\SysWOW64\FirewallAPI.dll
19:51:11.0731 3648 C:\Windows\SysWOW64\FirewallAPI.dll - ok
19:51:11.0746 3648 [ D061948B248838581F866EBBC42FFF87 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\FsDrvPlg.ppl
19:51:11.0746 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\FsDrvPlg.ppl - ok
19:51:11.0746 3648 [ 37F2AD87E43E69074037C29DE3BE5A37 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\WinReg.ppl
19:51:11.0746 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\WinReg.ppl - ok
19:51:11.0762 3648 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll
19:51:11.0762 3648 C:\Windows\SysWOW64\sxs.dll - ok
19:51:11.0762 3648 [ 1463267FE911C04D2A2C5FC6061672AE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\service.dll
19:51:11.0762 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\service.dll - ok
19:51:11.0762 3648 [ 52A9283885D407E29ACDF19201E4EAA6 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\eka_meta.dll
19:51:11.0762 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\eka_meta.dll - ok
19:51:11.0777 3648 [ ECE7E314D550EEF3A593F83939BAE804 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\esmgr.dll
19:51:11.0777 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\esmgr.dll - ok
19:51:11.0777 3648 [ 749BBF5767D47947F3C35B4BCD6EFF3E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_sync.dll
19:51:11.0777 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_sync.dll - ok
19:51:11.0777 3648 [ 27E83D676797F1D8BC0D7082E8887792 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\storage.dll
19:51:11.0777 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\storage.dll - ok
19:51:11.0793 3648 [ E7BCE52EAB1A9568D22E9D33EB24B7FE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_adaptor.dll
19:51:11.0793 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_adaptor.dll - ok
19:51:11.0793 3648 [ FA07EC01952729DDDDC5BF4BAE06B09E ] C:\Windows\System32\GFNEXSrv.exe
19:51:11.0793 3648 C:\Windows\System32\GFNEXSrv.exe - ok
19:51:11.0793 3648 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
19:51:11.0793 3648 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
19:51:11.0793 3648 [ 420B9729A7DE07D4AAFFAA7D9D13B452 ] C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys
19:51:11.0793 3648 C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys - ok
19:51:11.0809 3648 [ EEDAC170E922A4BD19FDB3D0D55786BB ] C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
19:51:11.0809 3648 C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe - ok
19:51:11.0809 3648 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
19:51:11.0809 3648 C:\Windows\SysWOW64\dnsapi.dll - ok
19:51:11.0809 3648 [ 2FADF13BFADAD06F1268F091880FBB3D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\params.ppl
19:51:11.0809 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\params.ppl - ok
19:51:11.0824 3648 [ 7C31673BD95DB614115D41537948DF2E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\tm.ppl
19:51:11.0824 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\tm.ppl - ok
19:51:11.0824 3648 [ 2EC670E22369F245E3B7F9A00E86F747 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\schedule.ppl
19:51:11.0824 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\schedule.ppl - ok
19:51:11.0824 3648 [ BDCBC18188EDB82DA5E2D1BAD0F216CF ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\regmap.ppl
19:51:11.0824 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\regmap.ppl - ok
19:51:11.0840 3648 [ 106594F497EF70E2C2692F467D72D7B3 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Timer.ppl
19:51:11.0840 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Timer.ppl - ok
19:51:11.0840 3648 [ 06CA4D7149689423F1DFE95B3C3E2FC1 ] C:\Program Files\CheckPoint\ZAForceField\ZDXUI.dll
19:51:11.0840 3648 C:\Program Files\CheckPoint\ZAForceField\ZDXUI.dll - ok
19:51:11.0840 3648 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
19:51:11.0840 3648 C:\Windows\System32\shsvcs.dll - ok
19:51:11.0855 3648 [ 69ADEDD4783AA72699D64171AFADFB05 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\thpimpl.ppl
19:51:11.0855 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\thpimpl.ppl - ok
19:51:11.0855 3648 [ 104A1070E90F1C530328E69B49718841 ] C:\Windows\SysWOW64\nlaapi.dll
19:51:11.0855 3648 C:\Windows\SysWOW64\nlaapi.dll - ok
19:51:11.0855 3648 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
19:51:11.0855 3648 C:\Windows\SysWOW64\SensApi.dll - ok
19:51:11.0855 3648 [ D7622BCFBABBCD74E1AA43AA55E13690 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Report.ppl
19:51:11.0855 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Report.ppl - ok
19:51:11.0871 3648 [ E36D4CFABB9345B45A86AC0C62DE9A39 ] C:\Program Files\CheckPoint\ZAForceField\Zdx.dll
19:51:11.0871 3648 C:\Program Files\CheckPoint\ZAForceField\Zdx.dll - ok
19:51:11.0871 3648 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll
19:51:11.0871 3648 C:\Windows\SysWOW64\NapiNSP.dll - ok
19:51:11.0871 3648 [ BE165318E0052A91F7EA36F515B5F2B1 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcp90.dll
19:51:11.0871 3648 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcp90.dll - ok
19:51:11.0887 3648 [ 12B79422A23814429CDA9E734C58F78F ] C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL
19:51:11.0887 3648 C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL - ok
19:51:11.0887 3648 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
19:51:11.0887 3648 C:\Windows\System32\fveapi.dll - ok
19:51:11.0887 3648 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll
19:51:11.0887 3648 C:\Windows\SysWOW64\pnrpnsp.dll - ok
19:51:11.0902 3648 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll
19:51:11.0902 3648 C:\Windows\SysWOW64\winrnr.dll - ok
19:51:11.0902 3648 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
19:51:11.0902 3648 C:\Windows\System32\fvecerts.dll - ok
19:51:11.0902 3648 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
19:51:11.0902 3648 C:\Windows\System32\tbs.dll - ok
19:51:11.0902 3648 [ 2EE186BFE26025086C81962CF514C5DB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ReportDB.ppl
19:51:11.0902 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ReportDB.ppl - ok
19:51:11.0918 3648 [ 64CC813E0134E952080576A3CA0CD8E8 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\procmon.ppl
19:51:11.0918 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\procmon.ppl - ok
19:51:11.0918 3648 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
19:51:11.0918 3648 C:\Windows\System32\schedsvc.dll - ok
19:51:11.0918 3648 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
19:51:11.0918 3648 C:\Windows\System32\wbemcomn.dll - ok
19:51:11.0933 3648 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
19:51:11.0933 3648 C:\Windows\System32\wbem\wbemprox.dll - ok
19:51:11.0933 3648 [ 0D7BE936A44E6B70F822D272A5CEBC22 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcr90.dll
19:51:11.0933 3648 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcr90.dll - ok
19:51:11.0933 3648 [ AE9F4A8B5D04CE86CA66022F7C013E35 ] C:\Program Files\CheckPoint\ZAForceField\FFApi.dll
19:51:11.0933 3648 C:\Program Files\CheckPoint\ZAForceField\FFApi.dll - ok
19:51:11.0949 3648 [ 5CB388FA587CED50F9A9A93EE07C55AB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ichecker.dll
19:51:11.0949 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ichecker.dll - ok
19:51:11.0949 3648 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
19:51:11.0949 3648 C:\Windows\System32\ktmw32.dll - ok
19:51:11.0949 3648 [ 786C5C9A71BA97FF4DF81F3D784816A9 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\klifpp.dll
19:51:11.0949 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\klifpp.dll - ok
19:51:11.0965 3648 [ 12CF533184CF28A4D303ADFD1B239F09 ] C:\Program Files\CheckPoint\ZAForceField\ISWUL.dll
19:51:11.0965 3648 C:\Program Files\CheckPoint\ZAForceField\ISWUL.dll - ok
19:51:11.0965 3648 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
19:51:11.0965 3648 C:\Windows\SysWOW64\setupapi.dll - ok
19:51:11.0965 3648 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
19:51:11.0965 3648 C:\Windows\System32\taskcomp.dll - ok
19:51:11.0980 3648 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
19:51:11.0980 3648 C:\Windows\System32\wiarpc.dll - ok
19:51:11.0980 3648 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
19:51:11.0980 3648 C:\Windows\System32\drivers\http.sys - ok
19:51:11.0980 3648 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
19:51:11.0980 3648 C:\Windows\System32\spoolsv.exe - ok
19:51:11.0980 3648 [ DF282180E237F1D46EF1671A0FF30516 ] C:\Program Files\CheckPoint\ZAForceField\iswrcs.dll
19:51:11.0980 3648 C:\Program Files\CheckPoint\ZAForceField\iswrcs.dll - ok
19:51:11.0996 3648 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
19:51:11.0996 3648 C:\Windows\SysWOW64\cfgmgr32.dll - ok
19:51:11.0996 3648 [ 1A1DFAB79AFA2933301BCAC2B2995C94 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\packed_io.dll
19:51:11.0996 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\packed_io.dll - ok
19:51:11.0996 3648 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
19:51:11.0996 3648 C:\Windows\SysWOW64\devobj.dll - ok
19:51:12.0011 3648 [ 596B9EE0B20C04B1099F7CFB522B5768 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\HashMD5.PPL
19:51:12.0011 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\HashMD5.PPL - ok
19:51:12.0011 3648 [ A6BBCFE41CA0C43CACC1583CF0F381D3 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\crpthlpr.ppl
19:51:12.0011 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\crpthlpr.ppl - ok
19:51:12.0011 3648 [ 921EF3525B2C7F0E9B3E02484B43A2B5 ] C:\Program Files\CheckPoint\ZAForceField\ISWUILib.dll
19:51:12.0011 3648 C:\Program Files\CheckPoint\ZAForceField\ISWUILib.dll - ok
19:51:12.0027 3648 [ 7CBDE549B0E31FF4EEAFE67B57EB0B5D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dtreg.ppl
19:51:12.0027 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dtreg.ppl - ok
19:51:12.0027 3648 [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL
19:51:12.0027 3648 C:\Windows\System32\BFE.DLL - ok
19:51:12.0027 3648 [ 8AE99EBE30E8338907361018D9030835 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
19:51:12.0027 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe - ok
19:51:12.0043 3648 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
19:51:12.0043 3648 C:\Windows\System32\msimg32.dll - ok
19:51:12.0043 3648 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll
19:51:12.0043 3648 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok
19:51:12.0043 3648 [ 1C72802E7029A64DE7DA2683100B0EBC ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\excludemanager.dll
19:51:12.0043 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\excludemanager.dll - ok
19:51:12.0058 3648 [ DD82EB68D97944B192C7803EB585B03C ] C:\Program Files (x86)\IObit\IObit Malware Fighter\rtl120.bpl
19:51:12.0058 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\rtl120.bpl - ok
19:51:12.0058 3648 [ 59857CB8209056C8000BBA25B4F739F1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ACAssembler.dll
19:51:12.0058 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ACAssembler.dll - ok
19:51:12.0058 3648 [ 417E40B1A5DA514CB7FBB2EA341681C2 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWDMP.dll
19:51:12.0058 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWDMP.dll - ok
19:51:12.0074 3648 [ BE9ADC6242BDA9EAD264BBE4388C46F9 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\format_recognizer.dll
19:51:12.0074 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\format_recognizer.dll - ok
19:51:12.0074 3648 [ CC2C38C632289902D6B7B634729B3E48 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\avs.ppl
19:51:12.0074 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\avs.ppl - ok
19:51:12.0074 3648 [ 2F1780B2A4C0A37A048ED221F4503FB6 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWMENUS.dll
19:51:12.0074 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWMENUS.dll - ok
19:51:12.0074 3648 [ 5075358956EEA62454BE430197D4F0C0 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dmap.ppl
19:51:12.0074 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dmap.ppl - ok
19:51:12.0089 3648 [ 39CD5DD43D1134336E51C9EBEE821F6A ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\avengine.dll.39cd5dd43d1134336e51c9ebee821f6a
19:51:12.0089 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\avengine.dll.39cd5dd43d1134336e51c9ebee821f6a - ok
19:51:12.0089 3648 [ A1445E8EC4AEE217475BE5EE6FCD0463 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ProcessMonitor.dll
19:51:12.0089 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ProcessMonitor.dll - ok
19:51:12.0089 3648 [ 3CD596E244611C75A6E7AAA354CFE616 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kavbase.kdl.3cd596e244611c75a6e7aaa354cfe616
19:51:12.0089 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kavbase.kdl.3cd596e244611c75a6e7aaa354cfe616 - ok
19:51:12.0105 3648 [ D5A73163AA550CC02051A3DB715D8B73 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSTATS.dll
19:51:12.0105 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSTATS.dll - ok
19:51:12.0105 3648 [ A32772B91C2E7652B01441CEE504B928 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\klavemu.kdl.a32772b91c2e7652b01441cee504b928
19:51:12.0105 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\klavemu.kdl.a32772b91c2e7652b01441cee504b928 - ok
19:51:12.0105 3648 [ 31C5504DF97B2F296E48233B094AEFCC ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kjim.kdl.31c5504df97b2f296e48233b094aefcc
19:51:12.0105 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kjim.kdl.31c5504df97b2f296e48233b094aefcc - ok
19:51:12.0121 3648 [ 34E568D69AD5E0FD28E50AF0362E1E1C ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\mark.kdl.34e568d69ad5e0fd28e50af0362e1e1c
19:51:12.0121 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\mark.kdl.34e568d69ad5e0fd28e50af0362e1e1c - ok
19:51:12.0121 3648 [ 795F5332EE7A8203B492BC0E54BA0CA3 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSPYSCAN.dll
19:51:12.0121 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSPYSCAN.dll - ok
19:51:12.0136 3648 [ BBBFAECEA5CDF559E87E6B95EA3A79A0 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\qscan.kdl.bbbfaecea5cdf559e87e6b95ea3a79a0
19:51:12.0136 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\qscan.kdl.bbbfaecea5cdf559e87e6b95ea3a79a0 - ok
19:51:12.0136 3648 [ CDD13A8DC4F2E104E61559B6396C3444 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\pbs.kdl.cdd13a8dc4f2e104e61559b6396c3444
19:51:12.0136 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\pbs.kdl.cdd13a8dc4f2e104e61559b6396c3444 - ok
19:51:12.0136 3648 [ 27D6A1845D903B8AAF64DC94949B9785 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWFWMON.dll
19:51:12.0136 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWFWMON.dll - ok
19:51:12.0136 3648 [ 8CF8FF090BE33010869B2548B2C53E9D ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWUPD.dll
19:51:12.0136 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWUPD.dll - ok
19:51:12.0152 3648 [ B729E948A2DF3941F1FDE5D57718A0AE ] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
19:51:12.0152 3648 C:\Program Files\CheckPoint\ZAForceField\ForceField.exe - ok
19:51:12.0152 3648 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
19:51:12.0152 3648 C:\Windows\System32\dllhost.exe - ok
19:51:12.0152 3648 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
19:51:12.0152 3648 C:\Windows\System32\IDStore.dll - ok
19:51:12.0167 3648 [ 517110BD83835338C037269E603DB55D ] C:\Windows\System32\taskhost.exe
19:51:12.0167 3648 C:\Windows\System32\taskhost.exe - ok
19:51:12.0167 3648 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
19:51:12.0167 3648 C:\Windows\System32\HotStartUserAgent.dll - ok
19:51:12.0167 3648 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
19:51:12.0167 3648 C:\Windows\System32\userinit.exe - ok
19:51:12.0167 3648 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
19:51:12.0183 3648 C:\Windows\System32\PlaySndSrv.dll - ok
19:51:12.0183 3648 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
19:51:12.0183 3648 C:\Windows\System32\MsCtfMonitor.dll - ok
19:51:12.0183 3648 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
19:51:12.0183 3648 C:\Windows\System32\msutb.dll - ok
19:51:12.0183 3648 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
19:51:12.0183 3648 C:\Windows\System32\dwm.exe - ok
19:51:12.0199 3648 [ 2DC0C4DE960A20BC2840D72E7B98A144 ] C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe
19:51:12.0199 3648 C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe - ok
19:51:12.0199 3648 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
19:51:12.0199 3648 C:\Windows\System32\dwmredir.dll - ok
19:51:12.0199 3648 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
19:51:12.0199 3648 C:\Windows\System32\dwmcore.dll - ok
19:51:12.0214 3648 [ E1374D37477322D4956604711008C69D ] C:\Windows\System32\d3d10_1.dll
19:51:12.0214 3648 C:\Windows\System32\d3d10_1.dll - ok
19:51:12.0214 3648 [ 426BA4E737A7988FD1202AF2F2B2F4A6 ] C:\Windows\System32\d3d10_1core.dll
19:51:12.0214 3648 C:\Windows\System32\d3d10_1core.dll - ok
19:51:12.0214 3648 [ F404E59DB6A0F122AB26BF4F3E2FD0FA ] C:\Windows\System32\dxgi.dll
19:51:12.0214 3648 C:\Windows\System32\dxgi.dll - ok
19:51:12.0230 3648 [ D2917D0C9D3EB308A6037E39FD85D2A7 ] C:\Windows\System32\aticfx64.dll
19:51:12.0230 3648 C:\Windows\System32\aticfx64.dll - ok
19:51:12.0230 3648 [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL
19:51:12.0230 3648 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
19:51:12.0230 3648 [ AFB5B500AD69E24ED1BC15D1161641EF ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
19:51:12.0230 3648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - ok
19:51:12.0230 3648 [ 2ABFB305022FA93E87273E2A21E4B30A ] C:\Windows\System32\TabbtnEx.dll
19:51:12.0230 3648 C:\Windows\System32\TabbtnEx.dll - ok
19:51:12.0245 3648 [ 773EBD87010A6F644869A59D98792C9C ] C:\Program Files (x86)\IObit\IObit Malware Fighter\vcl120.bpl
19:51:12.0245 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\vcl120.bpl - ok
19:51:12.0245 3648 [ F2951A689BDEC25591E3F99D1EDFD721 ] C:\Program Files\Common Files\Microsoft Shared\ink\tipskins.dll
19:51:12.0245 3648 C:\Program Files\Common Files\Microsoft Shared\ink\tipskins.dll - ok
19:51:12.0245 3648 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
19:51:12.0245 3648 C:\Windows\System32\rasadhlp.dll - ok
19:51:12.0261 3648 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
19:51:12.0261 3648 C:\Windows\SysWOW64\rasadhlp.dll - ok
19:51:12.0261 3648 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
19:51:12.0261 3648 C:\Windows\System32\localspl.dll - ok
19:51:12.0261 3648 [ C6F399AA662D1BA9DAD2F16D3506E300 ] C:\Windows\System32\atidxx64.dll
19:51:12.0261 3648 C:\Windows\System32\atidxx64.dll - ok
19:51:12.0277 3648 [ 9C906A239F4015AFB32E35DD7F6392F9 ] C:\Windows\System32\atiuxp64.dll
19:51:12.0277 3648 C:\Windows\System32\atiuxp64.dll - ok
19:51:12.0277 3648 [ 2DC64A3446C8C6E020E781456B46573D ] C:\Program Files (x86)\Common Files\microsoft shared\ink\TabTip32.exe
19:51:12.0277 3648 C:\Program Files (x86)\Common Files\microsoft shared\ink\TabTip32.exe - ok
19:51:12.0277 3648 [ 8A73E259446AEADF64EA884F2BCE4E69 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\datastate.dll
19:51:12.0277 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\datastate.dll - ok
19:51:12.0292 3648 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
19:51:12.0292 3648 C:\Windows\System32\spoolss.dll - ok
19:51:12.0292 3648 [ 7896EFFDEE215C172BE724A64931EF1C ] C:\Program Files (x86)\Common Files\microsoft shared\ink\tiptsf.dll
19:51:12.0292 3648 C:\Program Files (x86)\Common Files\microsoft shared\ink\tiptsf.dll - ok
19:51:12.0292 3648 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
19:51:12.0292 3648 C:\Windows\System32\drivers\bowser.sys - ok
19:51:12.0292 3648 [ CE6616AF5A7B437A88F951B07B477D99 ] C:\Program Files\Common Files\Microsoft Shared\ink\TipRes.dll
19:51:12.0292 3648 C:\Program Files\Common Files\Microsoft Shared\ink\TipRes.dll - ok
19:51:12.0308 3648 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll
19:51:12.0308 3648 C:\Windows\System32\shfolder.dll - ok
19:51:12.0308 3648 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
19:51:12.0308 3648 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
19:51:12.0323 3648 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
19:51:12.0323 3648 C:\Windows\System32\msftedit.dll - ok
19:51:12.0323 3648 [ AFAFD74780A0BB4EBE76CDE10C9CCE43 ] C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll
19:51:12.0323 3648 C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll - ok
19:51:12.0339 3648 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
19:51:12.0339 3648 C:\Windows\System32\taskeng.exe - ok
19:51:12.0339 3648 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
19:51:12.0339 3648 C:\Windows\System32\TSChannel.dll - ok
19:51:12.0339 3648 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
19:51:12.0339 3648 C:\Windows\System32\winspool.drv - ok
19:51:12.0355 3648 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
19:51:12.0355 3648 C:\Windows\System32\PrintIsolationProxy.dll - ok
19:51:12.0355 3648 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
19:51:12.0355 3648 C:\Windows\System32\FXSMON.dll - ok
19:51:12.0355 3648 [ 06C364E9A8E3AD34897D2B49CAA9D100 ] C:\Windows\System32\HPZ3LLHN.DLL
19:51:12.0355 3648 C:\Windows\System32\HPZ3LLHN.DLL - ok
19:51:12.0370 3648 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
19:51:12.0370 3648 C:\Windows\System32\snmpapi.dll - ok
19:51:12.0370 3648 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
19:51:12.0370 3648 C:\Windows\System32\tcpmon.dll - ok
19:51:12.0370 3648 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
19:51:12.0370 3648 C:\Windows\System32\wsnmp32.dll - ok
19:51:12.0370 3648 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
19:51:12.0370 3648 C:\Windows\System32\usbmon.dll - ok
19:51:12.0386 3648 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
19:51:12.0386 3648 C:\Windows\System32\WSDMon.dll - ok
19:51:12.0386 3648 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
19:51:12.0386 3648 C:\Windows\System32\WSDApi.dll - ok
19:51:12.0386 3648 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
19:51:12.0386 3648 C:\Windows\System32\webservices.dll - ok
19:51:12.0401 3648 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
19:51:12.0401 3648 C:\Windows\System32\fdPnp.dll - ok
19:51:12.0401 3648 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
19:51:12.0401 3648 C:\Windows\System32\fundisc.dll - ok
19:51:12.0401 3648 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
19:51:12.0401 3648 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
19:51:12.0417 3648 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
19:51:12.0417 3648 C:\Windows\explorer.exe - ok
19:51:12.0417 3648 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
19:51:12.0417 3648 C:\Windows\System32\ExplorerFrame.dll - ok
19:51:12.0417 3648 [ 43604DB56E81FD75E87C85387765DF37 ] C:\Windows\System32\spool\prtprocs\x64\HPZPPLHN.DLL
19:51:12.0417 3648 C:\Windows\System32\spool\prtprocs\x64\HPZPPLHN.DLL - ok
19:51:12.0417 3648 [ 548CB980D7876E207CC9F8B60C1587A3 ] C:\Windows\System32\win32spl.dll
19:51:12.0417 3648 C:\Windows\System32\win32spl.dll - ok
19:51:12.0433 3648 [ D56806ECFF5C590F54D02CBB9F2D857B ] C:\Program Files\Common Files\Microsoft Shared\ink\rtscom.dll
19:51:12.0433 3648 C:\Program Files\Common Files\Microsoft Shared\ink\rtscom.dll - ok
19:51:12.0433 3648 [ 1E44158CFA78520343CE5C10CA2CD235 ] C:\Program Files\Common Files\Microsoft Shared\ink\mshwgst.dll
19:51:12.0433 3648 C:\Program Files\Common Files\Microsoft Shared\ink\mshwgst.dll - ok
19:51:12.0433 3648 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
19:51:12.0433 3648 C:\Windows\System32\inetpp.dll - ok
19:51:12.0448 3648 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
19:51:12.0448 3648 C:\Windows\System32\cscapi.dll - ok
19:51:12.0448 3648 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
19:51:12.0448 3648 C:\Windows\System32\EhStorShell.dll - ok
19:51:12.0448 3648 [ EF9A9E4FFB0D30C816CDDDC36D119D0C ] C:\Program Files\Classic Shell\ClassicExplorer64.dll
19:51:12.0448 3648 C:\Program Files\Classic Shell\ClassicExplorer64.dll - ok
19:51:12.0464 3648 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
19:51:12.0464 3648 C:\Windows\System32\ntshrui.dll - ok
19:51:12.0464 3648 [ B64BCC9D6C1F00C15EB5DDD46AAFC18C ] C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll
19:51:12.0464 3648 C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll - ok
19:51:12.0464 3648 [ FF2F985A1CE7922E1D7ADAA914B9332F ] C:\Program Files (x86)\Acronis\TrueImageHome\timounter64.dll
19:51:12.0464 3648 C:\Program Files (x86)\Acronis\TrueImageHome\timounter64.dll - ok
19:51:12.0479 3648 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
19:51:12.0479 3648 C:\Windows\System32\IconCodecService.dll - ok
19:51:12.0479 3648 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys
19:51:12.0479 3648 C:\Windows\System32\drivers\mpsdrv.sys - ok
19:51:12.0479 3648 [ B519848DFA30AE2B306576B51321D102 ] C:\Windows\System32\ie4uinit.exe
19:51:12.0479 3648 C:\Windows\System32\ie4uinit.exe - ok
19:51:12.0479 3648 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
19:51:12.0479 3648 C:\Windows\System32\timedate.cpl - ok
19:51:12.0495 3648 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
19:51:12.0495 3648 C:\Windows\System32\actxprxy.dll - ok
19:51:12.0495 3648 [ C4F40F6CACD796A8E16671D0E9A2F319 ] C:\Windows\System32\shdocvw.dll
19:51:12.0495 3648 C:\Windows\System32\shdocvw.dll - ok
19:51:12.0495 3648 [ 661CEEDE98A2E0E5CDD7DE239EB38353 ] C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll
19:51:12.0495 3648 C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll - ok
19:51:12.0511 3648 [ 7FCAB194F01E3403C300EB034E480B36 ] C:\Windows\System32\msls31.dll
19:51:12.0511 3648 C:\Windows\System32\msls31.dll - ok
19:51:12.0511 3648 [ 3504B34CD2DE00BA3CC1A195F1B739BD ] C:\Windows\System32\gameux.dll
19:51:12.0511 3648 C:\Windows\System32\gameux.dll - ok
19:51:12.0511 3648 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
19:51:12.0511 3648 C:\Windows\System32\wer.dll - ok
19:51:12.0526 3648 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
19:51:12.0526 3648 C:\Windows\System32\msi.dll - ok
19:51:12.0526 3648 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
19:51:12.0526 3648 C:\Windows\System32\msiltcfg.dll - ok
19:51:12.0526 3648 [ F02A533F517EB38333CB12A9E8963773 ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
19:51:12.0526 3648 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
19:51:12.0542 3648 [ 39C5FCF8AA3B83D79A0E853ECB38BF25 ] C:\Program Files (x86)\Google\Update\1.3.21.115\goopdate.dll
19:51:12.0542 3648 C:\Program Files (x86)\Google\Update\1.3.21.115\goopdate.dll - ok
19:51:12.0542 3648 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
19:51:12.0542 3648 C:\Windows\System32\linkinfo.dll - ok
19:51:12.0542 3648 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
19:51:12.0542 3648 C:\Windows\System32\thumbcache.dll - ok
19:51:12.0542 3648 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
19:51:12.0542 3648 C:\Windows\SysWOW64\msi.dll - ok
19:51:12.0557 3648 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
19:51:12.0557 3648 C:\Windows\System32\DeviceCenter.dll - ok
19:51:12.0557 3648 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
19:51:12.0557 3648 C:\Windows\System32\drivers\mrxsmb.sys - ok
19:51:12.0557 3648 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
19:51:12.0557 3648 C:\Windows\System32\drivers\mrxsmb10.sys - ok
19:51:12.0573 3648 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
19:51:12.0573 3648 C:\Windows\System32\drivers\mrxsmb20.sys - ok
19:51:12.0573 3648 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
19:51:12.0573 3648 C:\Windows\System32\wkssvc.dll - ok
19:51:12.0573 3648 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
19:51:12.0573 3648 C:\Windows\SysWOW64\cscapi.dll - ok
19:51:12.0589 3648 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
19:51:12.0589 3648 C:\Windows\SysWOW64\dbghelp.dll - ok
19:51:12.0589 3648 [ 982ED373A7701B2FBC2121B30475279D ] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
19:51:12.0589 3648 C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe - ok
19:51:12.0589 3648 [ 93F29E6964BAEF31E53D203992B0AFD4 ] C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe
19:51:12.0589 3648 C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe - ok
19:51:12.0604 3648 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
19:51:12.0604 3648 C:\Windows\SysWOW64\apphelp.dll - ok
19:51:12.0604 3648 [ C282F4A84FDA6EF4376996542F7A1249 ] C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe
19:51:12.0604 3648 C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe - ok
19:51:12.0604 3648 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
19:51:12.0604 3648 C:\Windows\System32\networkexplorer.dll - ok
19:51:12.0604 3648 [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll
19:51:12.0604 3648 C:\Windows\System32\wfapigp.dll - ok
19:51:12.0620 3648 [ CD2B244F62BA9C4683597E3EDCB0FBE3 ] C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
19:51:12.0620 3648 C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe - ok
19:51:12.0620 3648 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
19:51:12.0620 3648 C:\Windows\System32\mscms.dll - ok
19:51:12.0620 3648 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
19:51:12.0620 3648 C:\Windows\System32\wdmaud.drv - ok
19:51:12.0635 3648 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
19:51:12.0635 3648 C:\Windows\System32\ksuser.dll - ok
19:51:12.0635 3648 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
19:51:12.0635 3648 C:\Windows\System32\pcasvc.dll - ok
19:51:12.0635 3648 [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe
19:51:12.0635 3648 C:\Windows\System32\snmptrap.exe - ok
19:51:12.0651 3648 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
19:51:12.0651 3648 C:\Windows\System32\AudioSes.dll - ok
19:51:12.0651 3648 [ 10EAB90C1AE8271B5FE5A8930987EE5C ] C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll
19:51:12.0651 3648 C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll - ok
19:51:12.0651 3648 [ 7C00C608FE4C8EDE9E30940837B9AC8B ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
19:51:12.0651 3648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll - ok
19:51:12.0667 3648 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
19:51:12.0667 3648 C:\Windows\System32\msacm32.dll - ok
19:51:12.0667 3648 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
19:51:12.0667 3648 C:\Windows\System32\msacm32.drv - ok
19:51:12.0667 3648 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
19:51:12.0667 3648 C:\Windows\System32\midimap.dll - ok
19:51:12.0667 3648 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll
19:51:12.0667 3648 C:\Windows\System32\sstpsvc.dll - ok
19:51:12.0682 3648 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
19:51:12.0682 3648 C:\Windows\System32\AudioEng.dll - ok
19:51:12.0682 3648 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
19:51:12.0682 3648 C:\Windows\System32\provsvc.dll - ok
19:51:12.0682 3648 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
19:51:12.0682 3648 C:\Windows\System32\AUDIOKSE.dll - ok
19:51:12.0698 3648 [ 90618E03CEE5E264E08D816FE63E3DE0 ] C:\Windows\System32\RtkAPO64.dll
19:51:12.0698 3648 C:\Windows\System32\RtkAPO64.dll - ok
19:51:12.0698 3648 [ A200E1BAE91B2CD9CC6D0769080A4C74 ] C:\Program Files (x86)\Common Files\Acronis\SnapAPI\snapapi.dll
19:51:12.0698 3648 C:\Program Files (x86)\Common Files\Acronis\SnapAPI\snapapi.dll - ok
19:51:12.0698 3648 [ C5737A1488A312DE4F3A845D546B6DE2 ] C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustChecker.dll
19:51:12.0698 3648 C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustChecker.dll - ok
19:51:12.0713 3648 [ 8AF8B047BDC5B68961B77D440903D0A1 ] C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy.dll
19:51:12.0713 3648 C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy.dll - ok
19:51:12.0713 3648 [ B9D9BC6C328EFD4864AB385EBAB000B6 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\ti_managers.dll
19:51:12.0713 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\ti_managers.dll - ok
19:51:12.0713 3648 [ 1A3586235C5DEF0C05F2F0C711E94376 ] C:\Windows\System32\tadefxapo264.dll
19:51:12.0713 3648 C:\Windows\System32\tadefxapo264.dll - ok
19:51:12.0713 3648 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
19:51:12.0713 3648 C:\Windows\System32\WMALFXGFXDSP.dll - ok
19:51:12.0729 3648 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
19:51:12.0729 3648 C:\Windows\SysWOW64\sfc.dll - ok
19:51:12.0729 3648 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
19:51:12.0729 3648 C:\Windows\SysWOW64\sfc_os.dll - ok
19:51:12.0729 3648 [ C61A6389C4BB5979A42D8588AF87AF9B ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\icu38.dll
19:51:12.0729 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\icu38.dll - ok
19:51:12.0745 3648 [ CCC2990D218899C9D4EA36CD520DD29A ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
19:51:12.0745 3648 C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
19:51:12.0745 3648 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
19:51:12.0745 3648 C:\Windows\System32\mfplat.dll - ok
19:51:12.0745 3648 [ D42EB2F76AE3D0B61457F29618D09189 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\icudt38.dll
19:51:12.0745 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\icudt38.dll - ok
19:51:12.0760 3648 [ 28CC5AF81C94851B37CEAA747336DD56 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
19:51:12.0760 3648 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok
19:51:12.0760 3648 [ 29F9C9CD7B885BDAF5422E051D66394F ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\libssl10.dll
19:51:12.0760 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\libssl10.dll - ok
19:51:12.0760 3648 [ 799DCC8F11BC309F202A47D5999258E3 ] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
19:51:12.0760 3648 C:\Program Files\Toshiba\Power Saver\TPwrMain.exe - ok
19:51:12.0776 3648 [ EA76E8522F750665D505452B176FEFFD ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\libcrypto10.dll
19:51:12.0776 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\libcrypto10.dll - ok
19:51:12.0776 3648 [ F214CBBEF14271A9599F833C540849F6 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\thread_pool.dll
19:51:12.0776 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\thread_pool.dll - ok
19:51:12.0776 3648 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll
19:51:12.0776 3648 C:\Windows\SysWOW64\shfolder.dll - ok
19:51:12.0791 3648 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
19:51:12.0791 3648 C:\Windows\SysWOW64\propsys.dll - ok
19:51:12.0791 3648 [ 181E7432B1E9D7826E90828645C80A51 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\sync_agent_api.dll
19:51:12.0791 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\sync_agent_api.dll - ok
19:51:12.0791 3648 [ 7191E490623832A6930D3877387BF0D5 ] C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll
19:51:12.0791 3648 C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll - ok
19:51:12.0791 3648 [ 3014CA345E8AD68587BABFB162DDDEC5 ] C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
19:51:12.0791 3648 C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe - ok
19:51:12.0807 3648 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
19:51:12.0807 3648 C:\Windows\System32\stobject.dll - ok
19:51:12.0807 3648 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
19:51:12.0807 3648 C:\Windows\SysWOW64\mstask.dll - ok
19:51:12.0807 3648 [ DC59D4B02B00F6BF69A41367538CD239 ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\AutoSweep.exe
19:51:12.0807 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\AutoSweep.exe - ok
19:51:12.0823 3648 [ 3C7DEF3CBBCA6284867AA4621D5D8A54 ] C:\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.762_none_11ecb0ab9b2caf3c\ATL80.dll
19:51:12.0823 3648 C:\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.762_none_11ecb0ab9b2caf3c\ATL80.dll - ok
19:51:12.0823 3648 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
19:51:12.0823 3648 C:\Windows\System32\dps.dll - ok
19:51:12.0823 3648 [ FCD84C381E0140AF901E58D48882D26B ] C:\Windows\System32\IKEEXT.DLL
19:51:12.0823 3648 C:\Windows\System32\IKEEXT.DLL - ok
19:51:12.0838 3648 [ 59267D2F0328599AA3B5408C2E06126F ] C:\Windows\System32\HPZinw12.dll
19:51:12.0838 3648 C:\Windows\System32\HPZinw12.dll - ok
19:51:12.0838 3648 [ 1EE99A89CC788ADA662441D1E9830529 ] C:\Windows\System32\nlasvc.dll
19:51:12.0838 3648 C:\Windows\System32\nlasvc.dll - ok
19:51:12.0838 3648 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
19:51:12.0838 3648 C:\Windows\System32\wsock32.dll - ok
19:51:12.0854 3648 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvcHst.exe
19:51:12.0854 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvcHst.exe - ok
19:51:12.0854 3648 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
19:51:12.0854 3648 C:\Windows\System32\aepic.dll - ok
19:51:12.0854 3648 [ 5BB8C06EB5EA4BA22EE8A678F2D79B25 ] C:\Windows\SysWOW64\devenum.dll
19:51:12.0854 3648 C:\Windows\SysWOW64\devenum.dll - ok
19:51:12.0869 3648 [ 7069AAB8536F29ED7323140973A2894B ] C:\Windows\SysWOW64\msdmo.dll
19:51:12.0869 3648 C:\Windows\SysWOW64\msdmo.dll - ok
19:51:12.0869 3648 [ 88104CCBC329D185A881031A11259229 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccL90U.dll
19:51:12.0869 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccL90U.dll - ok
19:51:12.0869 3648 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
19:51:12.0869 3648 C:\Windows\SysWOW64\MMDevAPI.dll - ok
19:51:12.0869 3648 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
19:51:12.0869 3648 C:\Windows\System32\batmeter.dll - ok
19:51:12.0885 3648 [ 4A435F95B940E93A88FEC144BD409789 ] C:\Windows\System32\ncsi.dll
19:51:12.0885 3648 C:\Windows\System32\ncsi.dll - ok
19:51:12.0885 3648 [ C140F86932B5B61F54A4D836E2D34AB2 ] C:\Windows\SysWOW64\ksproxy.ax
19:51:12.0885 3648 C:\Windows\SysWOW64\ksproxy.ax - ok
19:51:12.0885 3648 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
19:51:12.0885 3648 C:\Windows\System32\sfc.dll - ok
19:51:12.0901 3648 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
19:51:12.0901 3648 C:\Windows\System32\sfc_os.dll - ok
19:51:12.0901 3648 [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll
19:51:12.0901 3648 C:\Windows\SysWOW64\d3d9.dll - ok
19:51:12.0901 3648 [ 9C67F6BBDA3881CFD02095160CF91576 ] C:\Windows\SysWOW64\ksuser.dll
19:51:12.0901 3648 C:\Windows\SysWOW64\ksuser.dll - ok
19:51:12.0916 3648 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
19:51:12.0916 3648 C:\Windows\System32\winhttp.dll - ok
19:51:12.0916 3648 [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll
19:51:12.0916 3648 C:\Windows\System32\vpnikeapi.dll - ok
19:51:12.0916 3648 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
19:51:12.0916 3648 C:\Windows\System32\taskschd.dll - ok
19:51:12.0916 3648 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
19:51:12.0916 3648 C:\Windows\System32\prnfldr.dll - ok
19:51:12.0932 3648 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
19:51:12.0932 3648 C:\Windows\System32\webio.dll - ok
19:51:12.0932 3648 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
19:51:12.0932 3648 C:\Windows\System32\drivers\PEAuth.sys - ok
19:51:12.0932 3648 [ 0921ED273D89BA9778437ECD26B6A78A ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccVrTrst.dll
19:51:12.0932 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccVrTrst.dll - ok
19:51:12.0947 3648 [ 4219B7B71D6C15EBE6E4F0CAFAFEF709 ] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
19:51:12.0947 3648 C:\Program Files\Toshiba\FlashCards\TCrdMain.exe - ok
19:51:12.0947 3648 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
19:51:12.0947 3648 C:\Windows\System32\aeevts.dll - ok
19:51:12.0947 3648 [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll
19:51:12.0947 3648 C:\Windows\SysWOW64\d3d8thk.dll - ok
19:51:12.0947 3648 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
19:51:12.0947 3648 C:\Windows\SysWOW64\dwmapi.dll - ok
19:51:12.0963 3648 [ 1AB8813DED097F7B202B4D2A6D08E114 ] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe
19:51:12.0963 3648 C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe - ok
19:51:12.0963 3648 [ B936172D47C3319B4D25AF109CE539E7 ] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
19:51:12.0963 3648 C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe - ok
19:51:12.0963 3648 [ F82483A80D49ACCA81193A294FB233CD ] C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe
19:51:12.0963 3648 C:\Program Files\Toshiba\TosVolRegulator\TosVolRegulator.exe - ok
19:51:12.0979 3648 [ DF72D700CC33611206675B8A2FD4D4F9 ] C:\Program Files\Logitech\SetPointP\SetPoint.exe
19:51:12.0979 3648 C:\Program Files\Logitech\SetPointP\SetPoint.exe - ok
19:51:12.0979 3648 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
19:51:12.0979 3648 C:\Windows\System32\ssdpapi.dll - ok
19:51:12.0979 3648 [ 89E3317708F167AE4BAE0000842C8CE7 ] C:\Windows\System32\UIHub.dll
19:51:12.0979 3648 C:\Windows\System32\UIHub.dll - ok
19:51:12.0994 3648 [ AB1CF38E862BEF9EA2955C42136A0FCE ] C:\Program Files\Classic Shell\ClassicStartMenu.exe
19:51:12.0994 3648 C:\Program Files\Classic Shell\ClassicStartMenu.exe - ok
19:51:12.0994 3648 [ 18921ED36B7AB65916C075E234E81930 ] C:\Program Files\Logitech\SetPointP\khalwrapper.dll
19:51:12.0994 3648 C:\Program Files\Logitech\SetPointP\khalwrapper.dll - ok
19:51:12.0994 3648 [ F6C97A1E197BD98E77FD717D9D25BC34 ] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
19:51:12.0994 3648 C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll - ok
19:51:13.0010 3648 [ 52425F4F67DE0E8E7149EBC337D1A60A ] C:\Program Files\Logitech\SetPointP\KemUtil.dll
19:51:13.0010 3648 C:\Program Files\Logitech\SetPointP\KemUtil.dll - ok
19:51:13.0010 3648 [ 5261A2FD55183AC6993145AB6662CDDF ] C:\Windows\System32\HPZipm12.dll
19:51:13.0010 3648 C:\Windows\System32\HPZipm12.dll - ok
19:51:13.0010 3648 [ D205C24A9D069049FE2DF2A1B38726A7 ] C:\Windows\SysWOW64\wdmaud.drv
19:51:13.0010 3648 C:\Windows\SysWOW64\wdmaud.drv - ok
19:51:13.0025 3648 [ 4050600091370422C9B20AC34DC1ACAC ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvc.dll
19:51:13.0025 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSvc.dll - ok
19:51:13.0025 3648 [ 09A06ECC3CE3048B17F25F75ACC63D14 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccIPC.dll
19:51:13.0025 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccIPC.dll - ok
19:51:13.0025 3648 [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll
19:51:13.0025 3648 C:\Windows\SysWOW64\avrt.dll - ok
19:51:13.0041 3648 [ E9017D8024BD96E95791DB3957C4230A ] C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_04480933ab2137b1\mfc90u.dll
19:51:13.0041 3648 C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_04480933ab2137b1\mfc90u.dll - ok
19:51:13.0041 3648 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
19:51:13.0041 3648 C:\Windows\SysWOW64\AudioSes.dll - ok
19:51:13.0041 3648 [ F85FFE6F26CF4CFBDD49540B5EFA0E1E ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\sqlite3.dll
19:51:13.0041 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\sqlite3.dll - ok
19:51:13.0041 3648 [ 725E8022808C6B92D99EF36F2E9FCE02 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\diMaster.dll
19:51:13.0041 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\diMaster.dll - ok
19:51:13.0057 3648 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
19:51:13.0057 3648 C:\Windows\System32\DXP.dll - ok
19:51:13.0057 3648 [ 2B61F6766CAE1125C00DD9DDD268D876 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSet.dll
19:51:13.0057 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccSet.dll - ok
19:51:13.0057 3648 [ 4DDACA8A66B95ABA02812FF3C13DE198 ] C:\Windows\SysWOW64\vidcap.ax
19:51:13.0057 3648 C:\Windows\SysWOW64\vidcap.ax - ok
19:51:13.0072 3648 [ 5B465C535EA4F73C4B14A1320B8CA5F8 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccJobMgr.dll
19:51:13.0072 3648 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.17.38\ccJobMgr.dll - ok
19:51:13.0072 3648 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
19:51:13.0072 3648 C:\Windows\System32\Syncreg.dll - ok
19:51:13.0072 3648 [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll
19:51:13.0072 3648 C:\Windows\SysWOW64\msacm32.dll - ok
19:51:13.0088 3648 [ 07393A09C46083588E751B63B03C8301 ] C:\Windows\SysWOW64\msacm32.drv
19:51:13.0088 3648 C:\Windows\SysWOW64\msacm32.drv - ok
19:51:13.0088 3648 [ 5A12C364AD1D4FCC0AD0E56DBBC34462 ] C:\Windows\SysWOW64\midimap.dll
19:51:13.0088 3648 C:\Windows\SysWOW64\midimap.dll - ok
19:51:13.0088 3648 [ C335EC1182AC10B188705554E0BC1186 ] C:\Windows\SysWOW64\msvfw32.dll
19:51:13.0088 3648 C:\Windows\SysWOW64\msvfw32.dll - ok
19:51:13.0103 3648 [ CC5BF60E9D3F181C0B62AC91AD8634B8 ] C:\Windows\SysWOW64\qcap.dll
19:51:13.0103 3648 C:\Windows\SysWOW64\qcap.dll - ok
19:51:13.0103 3648 [ 33B26FA5DBEB69FFAB703EDCB4E6DE4A ] C:\Windows\SysWOW64\qdvd.dll
19:51:13.0103 3648 C:\Windows\SysWOW64\qdvd.dll - ok
19:51:13.0103 3648 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
19:51:13.0103 3648 C:\Windows\SysWOW64\winsta.dll - ok
19:51:13.0103 3648 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
19:51:13.0103 3648 C:\Windows\SysWOW64\powrprof.dll - ok
19:51:13.0119 3648 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
19:51:13.0119 3648 C:\Windows\ehome\ehSSO.dll - ok
19:51:13.0119 3648 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
19:51:13.0119 3648 C:\Windows\System32\netshell.dll - ok
19:51:13.0119 3648 [ 6650A8960EC5AAD4903D534105506024 ] C:\Program Files\Toshiba\Power Saver\TPwrReg.dll
19:51:13.0119 3648 C:\Program Files\Toshiba\Power Saver\TPwrReg.dll - ok
19:51:13.0135 3648 [ 070DDE91567E81BD9F2BE4F9728B2EFD ] C:\Program Files\Toshiba\Power Saver\TPwrFunc.dll
19:51:13.0135 3648 C:\Program Files\Toshiba\Power Saver\TPwrFunc.dll - ok
19:51:13.0135 3648 [ A6BAA4B79969424743BE72D2044F81A5 ] C:\Program Files\Toshiba\Power Saver\TtosFunc.dll
19:51:13.0135 3648 C:\Program Files\Toshiba\Power Saver\TtosFunc.dll - ok
19:51:13.0135 3648 [ 46B254B0DF12CC54B3C33B4F2C2E9E5F ] C:\Program Files\CheckPoint\ZAForceField\ISWUL_MIN\ISWUL.dll
19:51:13.0135 3648 C:\Program Files\CheckPoint\ZAForceField\ISWUL_MIN\ISWUL.dll - ok
19:51:13.0150 3648 [ 630A31F277349109299E590856A4B004 ] C:\Windows\SysWOW64\Kswdmcap.ax
19:51:13.0150 3648 C:\Windows\SysWOW64\Kswdmcap.ax - ok
19:51:13.0150 3648 [ 3F5FD6F81FB5DDA2730EF8DF579C648B ] C:\Program Files\Toshiba\Power Saver\TCooling.dll
19:51:13.0150 3648 C:\Program Files\Toshiba\Power Saver\TCooling.dll - ok
19:51:13.0150 3648 [ DC6612A9EE015A36BA2A27BC9CC12537 ] C:\Windows\SysWOW64\mfc42.dll
19:51:13.0150 3648 C:\Windows\SysWOW64\mfc42.dll - ok
19:51:13.0150 3648 [ E3F6A938E96121B0713C5442B07FBEFA ] C:\Program Files\Toshiba\Power Saver\TOddPwr.dll
19:51:13.0150 3648 C:\Program Files\Toshiba\Power Saver\TOddPwr.dll - ok
19:51:13.0166 3648 [ A2C6C94C5F45893B745EABC6B6A6061B ] C:\Program Files\Toshiba\Power Saver\TPwrSrv.dll
19:51:13.0166 3648 C:\Program Files\Toshiba\Power Saver\TPwrSrv.dll - ok
19:51:13.0166 3648 [ 79BD79C3EB6A4AD49E2F5ECB045BFCD4 ] C:\Program Files\Toshiba\Power Saver\TPwrBrightness.dll
19:51:13.0166 3648 C:\Program Files\Toshiba\Power Saver\TPwrBrightness.dll - ok
19:51:13.0166 3648 [ CE7E2C9DA6814ABD75BD3663EB2529E4 ] C:\Program Files\Toshiba\Power Saver\T1394Pwr.dll
19:51:13.0166 3648 C:\Program Files\Toshiba\Power Saver\T1394Pwr.dll - ok
19:51:13.0181 3648 [ 35D063AE49A538F939CE257C15DE4F8A ] C:\Program Files\Toshiba\Power Saver\TKBLEDPwr.dll
19:51:13.0181 3648 C:\Program Files\Toshiba\Power Saver\TKBLEDPwr.dll - ok
19:51:13.0181 3648 [ 7D34AF98A706230CC2DEDFE0CABF87AB ] C:\Windows\SysWOW64\odbc32.dll
19:51:13.0181 3648 C:\Windows\SysWOW64\odbc32.dll - ok
19:51:13.0181 3648 [ F59DF79CB996287EB7183D0E08502EC6 ] C:\Program Files\Toshiba\Power Saver\TSDPwr.dll
19:51:13.0181 3648 C:\Program Files\Toshiba\Power Saver\TSDPwr.dll - ok
19:51:13.0197 3648 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
19:51:13.0197 3648 C:\Windows\SysWOW64\wbemcomn.dll - ok
19:51:13.0197 3648 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
19:51:13.0197 3648 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
19:51:13.0197 3648 [ CB0EA991903412B425BA6F4A8CC51F8E ] C:\Program Files\Toshiba\Power Saver\TPCIePwr.dll
19:51:13.0197 3648 C:\Program Files\Toshiba\Power Saver\TPCIePwr.dll - ok
19:51:13.0213 3648 [ 76F123E491B26DAAD5DFBC20FC5996DB ] C:\Program Files\Toshiba\Power Saver\TScreen.dll
19:51:13.0213 3648 C:\Program Files\Toshiba\Power Saver\TScreen.dll - ok
19:51:13.0213 3648 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
19:51:13.0213 3648 C:\Windows\System32\AltTab.dll - ok
19:51:13.0213 3648 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
19:51:13.0213 3648 C:\Windows\System32\pnidui.dll - ok
19:51:13.0213 3648 [ ABA457BFC7EC0B5E130B2F1E0F549DFF ] C:\Windows\SysWOW64\odbcint.dll
19:51:13.0213 3648 C:\Windows\SysWOW64\odbcint.dll - ok
19:51:13.0228 3648 [ 7C7B8A47FFC43180FD49304A87EA78F5 ] C:\Program Files\Logitech\SetPointP\KemXML.dll
19:51:13.0228 3648 C:\Program Files\Logitech\SetPointP\KemXML.dll - ok
19:51:13.0228 3648 [ 451F41C7FEF78BC7CC6F442F9CDBAE62 ] C:\Program Files\Logitech\SetPointP\kemutb.dll
19:51:13.0228 3648 C:\Program Files\Logitech\SetPointP\kemutb.dll - ok
19:51:13.0228 3648 [ 0AE0C4955E1DE29CCDC9DA1B816FE5EE ] C:\Windows\SysWOW64\quartz.dll
19:51:13.0228 3648 C:\Windows\SysWOW64\quartz.dll - ok
19:51:13.0244 3648 [ 93B3D6E86E710CEDA136C973D0EDAA42 ] C:\Program Files\Logitech\SetPointP\KemWnd.dll
19:51:13.0244 3648 C:\Program Files\Logitech\SetPointP\KemWnd.dll - ok
19:51:13.0244 3648 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
19:51:13.0244 3648 C:\Windows\System32\QUTIL.DLL - ok
19:51:13.0244 3648 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
19:51:13.0244 3648 C:\Windows\System32\WPDShServiceObj.dll - ok
19:51:13.0259 3648 [ 5197BFB7F70F44B8C5E56EF7C4F30200 ] C:\Program Files\Logitech\SetPointP\SetPointCOM.dll
19:51:13.0259 3648 C:\Program Files\Logitech\SetPointP\SetPointCOM.dll - ok
19:51:13.0259 3648 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
19:51:13.0259 3648 C:\Windows\System32\PortableDeviceTypes.dll - ok
19:51:13.0259 3648 [ FC70F49F1B15802F5AE7F818AE3ECBC8 ] C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_01c6b44660ce74c3\MFC90ENU.DLL
19:51:13.0259 3648 C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_01c6b44660ce74c3\MFC90ENU.DLL - ok
19:51:13.0259 3648 [ 57ACF47B4FA24A6B9464C9919412C411 ] C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
19:51:13.0275 3648 C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll - ok
19:51:13.0275 3648 [ B77F17EBF26E81208B54DCFAB89778B6 ] C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe
19:51:13.0275 3648 C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe - ok
19:51:13.0275 3648 [ B794DD8ACC5CC76177156463DAB4BEBB ] C:\Windows\System32\drivers\afcdp.sys
19:51:13.0275 3648 C:\Windows\System32\drivers\afcdp.sys - ok
19:51:13.0275 3648 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
19:51:13.0275 3648 C:\Windows\System32\dbghelp.dll - ok
19:51:13.0291 3648 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
19:51:13.0291 3648 C:\Windows\System32\dsound.dll - ok
19:51:13.0291 3648 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
19:51:13.0291 3648 C:\Windows\System32\oledlg.dll - ok
19:51:13.0291 3648 [ D3CEDD5D2709C9C844C4DC731B0C53BB ] C:\Windows\System32\SynCOM.dll
19:51:13.0291 3648 C:\Windows\System32\SynCOM.dll - ok
19:51:13.0306 3648 [ 59B7C04FF1082BE64A0CB6BF022A8671 ] C:\Windows\System32\SynTPAPI.dll
19:51:13.0306 3648 C:\Windows\System32\SynTPAPI.dll - ok
19:51:13.0306 3648 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
19:51:13.0306 3648 C:\Windows\System32\RtkCfg64.dll - ok
19:51:13.0306 3648 [ F115AF58ABE5605D7D709CBFBD83F418 ] C:\Windows\SysWOW64\PSIService.exe
19:51:13.0306 3648 C:\Windows\SysWOW64\PSIService.exe - ok
19:51:13.0322 3648 [ 8FDA02E3E944E203E118F3DABA7C026D ] C:\Windows\SysWOW64\PSIKey.dll
19:51:13.0322 3648 C:\Windows\SysWOW64\PSIKey.dll - ok
19:51:13.0322 3648 [ A6A7AD767BF5141665F5C675F671B3E1 ] C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
19:51:13.0322 3648 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe - ok
19:51:13.0322 3648 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
19:51:13.0322 3648 C:\Windows\SysWOW64\uxtheme.dll - ok
19:51:13.0322 3648 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
19:51:13.0322 3648 C:\Windows\System32\drivers\secdrv.sys - ok
19:51:13.0337 3648 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
19:51:13.0337 3648 C:\Windows\System32\drivers\srvnet.sys - ok
19:51:13.0337 3648 [ 69343620AE454D1385F71334D421F7A7 ] C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
19:51:13.0337 3648 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe - ok
19:51:13.0337 3648 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
19:51:13.0337 3648 C:\Windows\System32\wiaservc.dll - ok
19:51:13.0353 3648 [ 9AD49345CBCAFB82DBE0CC9CDD55E3D2 ] C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
19:51:13.0353 3648 C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe - ok
19:51:13.0353 3648 [ 83B711E0C992DB9F80137375757D3854 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\resource.dll
19:51:13.0353 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\resource.dll - ok
19:51:13.0369 3648 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
19:51:13.0369 3648 C:\Windows\System32\wiatrace.dll - ok
19:51:13.0369 3648 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
19:51:13.0369 3648 C:\Windows\SysWOW64\wship6.dll - ok
19:51:13.0384 3648 [ C4C20CFA4F42E9B7454E895C5C47BCD3 ] C:\Program Files\Tablet\Pen\Pen_Tablet.exe
19:51:13.0384 3648 C:\Program Files\Tablet\Pen\Pen_Tablet.exe - ok
19:51:13.0384 3648 [ 7BE4CDEA6BC7832BFE3112A350D8B9EA ] C:\Windows\System32\sysmain.dll
19:51:13.0384 3648 C:\Windows\System32\sysmain.dll - ok
19:51:13.0384 3648 [ 555A446A33975D1C8C5C12967BE578CF ] C:\Program Files\CheckPoint\ZAForceField\Plugins\updating.dll
19:51:13.0384 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\updating.dll - ok
19:51:13.0400 3648 [ EBD7442A9520EEEC6C673B2C652AD3A2 ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\ulxmlrpcpp.dll
19:51:13.0400 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\ulxmlrpcpp.dll - ok
19:51:13.0400 3648 [ 2C3D9E10578463686A9A96D942346D4F ] C:\Program Files (x86)\Acronis\TrueImageHome\Common\expat.dll
19:51:13.0400 3648 C:\Program Files (x86)\Acronis\TrueImageHome\Common\expat.dll - ok
19:51:13.0400 3648 [ DF687E3D8836BFB04FCC0615BF15A519 ] C:\Windows\System32\drivers\tcpipreg.sys
19:51:13.0400 3648 C:\Windows\System32\drivers\tcpipreg.sys - ok
19:51:13.0400 3648 [ 8E2C799D3476EAC32C3BA0DF7CE6AF19 ] C:\Windows\System32\TODDSrv.exe
19:51:13.0415 3648 C:\Windows\System32\TODDSrv.exe - ok
19:51:13.0415 3648 [ A7EFE68D424A55FA84CCB6099D1D93C0 ] C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
19:51:13.0415 3648 C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe - ok
19:51:13.0415 3648 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
19:51:13.0415 3648 C:\Windows\System32\bthprops.cpl - ok
19:51:13.0415 3648 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
19:51:13.0415 3648 C:\Windows\System32\trkwks.dll - ok
19:51:13.0431 3648 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
19:51:13.0431 3648 C:\Windows\System32\wbem\WMIsvc.dll - ok
19:51:13.0431 3648 [ 2BACD71123F42CEA603F4E205E1AE337 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:51:13.0431 3648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - ok
19:51:13.0431 3648 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
19:51:13.0431 3648 C:\Windows\System32\SensApi.dll - ok
19:51:13.0447 3648 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL
19:51:13.0447 3648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL - ok
19:51:13.0447 3648 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
19:51:13.0447 3648 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
19:51:13.0447 3648 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
19:51:13.0447 3648 C:\Windows\System32\wbem\fastprox.dll - ok
19:51:13.0462 3648 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
19:51:13.0462 3648 C:\Windows\System32\wbem\WinMgmtR.dll - ok
19:51:13.0462 3648 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
19:51:13.0462 3648 C:\Windows\System32\drivers\srv2.sys - ok
19:51:13.0462 3648 [ E8B1FE6669397D1772D8196DF0E57A9E ] C:\Windows\System32\wscsvc.dll
19:51:13.0462 3648 C:\Windows\System32\wscsvc.dll - ok
19:51:13.0462 3648 [ A34A587FFFD45FA649FBA6D03784D257 ] C:\Windows\System32\iphlpsvc.dll
19:51:13.0462 3648 C:\Windows\System32\iphlpsvc.dll - ok
19:51:13.0478 3648 [ 715CFFF09131C968E1A72424D89D2627 ] C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
19:51:13.0478 3648 C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll - ok
19:51:13.0478 3648 [ 0B2D65FDDE31069299AA6330F359FF9C ] C:\Windows\System32\msxml3.dll
19:51:13.0478 3648 C:\Windows\System32\msxml3.dll - ok
19:51:13.0478 3648 [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll
19:51:13.0478 3648 C:\Windows\System32\sqmapi.dll - ok
19:51:13.0493 3648 [ 794D4B48DFB6E999537C7C3947863463 ] C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
19:51:13.0493 3648 C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe - ok
19:51:13.0493 3648 [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll
19:51:13.0493 3648 C:\Windows\System32\wdscore.dll - ok
19:51:13.0493 3648 [ 9131877FD450E942230EE73D2D861579 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\bsshlp.kdl.9131877fd450e942230ee73d2d861579
19:51:13.0493 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\bsshlp.kdl.9131877fd450e942230ee73d2d861579 - ok
19:51:13.0509 3648 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
19:51:13.0509 3648 C:\Windows\System32\wbem\wbemcore.dll - ok
19:51:13.0509 3648 [ 590D5C506044FE02FF7643E32FF9BDAC ] C:\Windows\SysWOW64\wer.dll
19:51:13.0509 3648 C:\Windows\SysWOW64\wer.dll - ok
19:51:13.0509 3648 [ 1E8D06AAE74FED674C1156B3FEA911C2 ] C:\Windows\SysWOW64\Faultrep.dll
19:51:13.0509 3648 C:\Windows\SysWOW64\Faultrep.dll - ok
19:51:13.0509 3648 [ 2B42A13480C03637D93EECBC6447F463 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kavsys.kdl.2b42a13480c03637d93eecbc6447f463
19:51:13.0509 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\kavsys.kdl.2b42a13480c03637d93eecbc6447f463 - ok
19:51:13.0525 3648 [ 54EB73D75DBBE43DC580590234954E2F ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\arkmon.kdl.54eb73d75dbbe43dc580590234954e2f
19:51:13.0525 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\arkmon.kdl.54eb73d75dbbe43dc580590234954e2f - ok
19:51:13.0525 3648 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
19:51:13.0525 3648 C:\Windows\System32\wbem\esscli.dll - ok
19:51:13.0525 3648 [ C33C3A8D8268DF25DB067186AB385EC7 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
19:51:13.0525 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll - ok
19:51:13.0540 3648 [ C48AB3C8D9F3FC344E2B85748CB3166B ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\deterministic_anti_phishing_service.dll
19:51:13.0540 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\deterministic_anti_phishing_service.dll - ok
19:51:13.0540 3648 [ 6B44700917F45B19B96B46B345B6F0E7 ] C:\Program Files (x86)\Spybot - Search & Destroy\SDMain.exe
19:51:13.0540 3648 C:\Program Files (x86)\Spybot - Search & Destroy\SDMain.exe - ok
19:51:13.0540 3648 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
19:51:13.0540 3648 C:\Windows\System32\dssenh.dll - ok
19:51:13.0556 3648 [ 2A46FFE841EC43001D5A293A54DB34DE ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
19:51:13.0556 3648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE - ok
19:51:13.0556 3648 [ 244C6722289F4869068992FD7D8A8832 ] C:\Windows\SysWOW64\wbem\wbemdisp.dll
19:51:13.0556 3648 C:\Windows\SysWOW64\wbem\wbemdisp.dll - ok
19:51:13.0556 3648 [ 5610B0425518D185331CB8E968D060E6 ] C:\Windows\SysWOW64\wbem\wmiutils.dll
19:51:13.0556 3648 C:\Windows\SysWOW64\wbem\wmiutils.dll - ok
19:51:13.0571 3648 [ 798387534977217525F11B758B3517AE ] C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll
19:51:13.0571 3648 C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll - ok
19:51:13.0571 3648 [ 18E756E0FE2FFCD5DE35F6B9F91244A6 ] C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.4148_none_0a1d2fcba76b3f00\ATL90.dll
19:51:13.0571 3648 C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.4148_none_0a1d2fcba76b3f00\ATL90.dll - ok
19:51:13.0571 3648 [ EDEEAA5B121A89425A5DF7AB28E4E544 ] C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll
19:51:13.0571 3648 C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll - ok
19:51:13.0587 3648 [ 563C4641DAE5355C08DF4DDC4134E196 ] C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll
19:51:13.0587 3648 C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll - ok
19:51:13.0587 3648 [ 754BDBD9A6B351E83A8648AB469E238A ] C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll
19:51:13.0587 3648 C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll - ok
19:51:13.0587 3648 [ B8F7FA586A70918FEC5C768250724635 ] C:\Program Files\Logitech\SetPointP\KemMon.dll
19:51:13.0587 3648 C:\Program Files\Logitech\SetPointP\KemMon.dll - ok
19:51:13.0603 3648 [ D5A69B24039442FD76B410CD2D7FEB7B ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALAPI.dll
19:51:13.0603 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALAPI.dll - ok
19:51:13.0603 3648 [ 03CC97EC838FBBA69E6E5FD744012C31 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
19:51:13.0603 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe - ok
19:51:13.0603 3648 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
19:51:13.0603 3648 C:\Windows\System32\ntdsapi.dll - ok
19:51:13.0618 3648 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
19:51:13.0618 3648 C:\Windows\System32\wbem\wbemsvc.dll - ok
19:51:13.0618 3648 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
19:51:13.0618 3648 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
19:51:13.0618 3648 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
19:51:13.0618 3648 C:\Windows\System32\wbem\wmiutils.dll - ok
19:51:13.0634 3648 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
19:51:13.0634 3648 C:\Windows\System32\wbem\repdrvfs.dll - ok
19:51:13.0634 3648 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
19:51:13.0634 3648 C:\Windows\SysWOW64\ntdsapi.dll - ok
19:51:13.0634 3648 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
19:51:13.0634 3648 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
19:51:13.0634 3648 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
19:51:13.0634 3648 C:\Windows\System32\hnetcfg.dll - ok
19:51:13.0649 3648 [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll
19:51:13.0649 3648 C:\Windows\System32\nci.dll - ok
19:51:13.0649 3648 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
19:51:13.0649 3648 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
19:51:13.0649 3648 [ EA73EE8299C58DA3E08A1DEF49C7F68B ] C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
19:51:13.0649 3648 C:\Program Files\Tablet\Pen\Pen_TabletUser.exe - ok
19:51:13.0665 3648 [ 92DBF0A4C9239169010FC6E07859C82E ] C:\Windows\System32\ActionCenter.dll
19:51:13.0665 3648 C:\Windows\System32\ActionCenter.dll - ok
19:51:13.0665 3648 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
19:51:13.0665 3648 C:\Windows\System32\FXSST.dll - ok
19:51:13.0665 3648 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
19:51:13.0665 3648 C:\Windows\System32\FXSAPI.dll - ok
19:51:13.0681 3648 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
19:51:13.0681 3648 C:\Windows\System32\PortableDeviceApi.dll - ok
19:51:13.0681 3648 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
19:51:13.0681 3648 C:\Windows\System32\FXSRESM.dll - ok
19:51:13.0681 3648 [ 9C6F3CC6A3BB310D70026AF1B4561F65 ] C:\Windows\System32\ieframe.dll
19:51:13.0681 3648 C:\Windows\System32\ieframe.dll - ok
19:51:13.0681 3648 [ 7407B5F205AAFDE40844F8DEA4E6CA1A ] C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\CoreLanguage.dll
19:51:13.0681 3648 C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\CoreLanguage.dll - ok
19:51:13.0696 3648 [ 1B7524806D0270B81360C63A2FA047CB ] C:\Windows\winsxs\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.762_none_0c178a139ee2a7ed\mfc80.dll
19:51:13.0696 3648 C:\Windows\winsxs\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.762_none_0c178a139ee2a7ed\mfc80.dll - ok
19:51:13.0696 3648 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
19:51:13.0696 3648 C:\Windows\System32\ncobjapi.dll - ok
19:51:13.0696 3648 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
19:51:13.0696 3648 C:\Windows\System32\wbem\wbemess.dll - ok
19:51:13.0712 3648 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe
19:51:13.0712 3648 C:\Windows\System32\wbem\WmiPrvSE.exe - ok
19:51:13.0712 3648 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
19:51:13.0712 3648 C:\Windows\System32\wbem\NCProv.dll - ok
19:51:13.0712 3648 [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll
19:51:13.0712 3648 C:\Windows\System32\p2pcollab.dll - ok
19:51:13.0727 3648 [ EE2DBFBFE0B16E816A74AD505CF0379C ] C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.dll
19:51:13.0727 3648 C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.dll - ok
19:51:13.0727 3648 [ 4EB19202D44B012387602DB5536FD093 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALITCH.dll
19:51:13.0727 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALITCH.dll - ok
19:51:13.0727 3648 [ D17277381B4522FA34FAE7851E705051 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALMW.dll
19:51:13.0727 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALMW.dll - ok
19:51:13.0743 3648 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
19:51:13.0743 3648 C:\Windows\System32\QAGENTRT.DLL - ok
19:51:13.0743 3648 [ AF09A713D190B2E9DDFCC2CE89357302 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALHPP.dll
19:51:13.0743 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALHPP.dll - ok
19:51:13.0743 3648 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll
19:51:13.0743 3648 C:\Windows\System32\fveui.dll - ok
19:51:13.0743 3648 [ C47F35CC6FA4F1BDBEF8F87AC1A46537 ] C:\Windows\System32\wuapi.dll
19:51:13.0743 3648 C:\Windows\System32\wuapi.dll - ok
19:51:13.0759 3648 [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll
19:51:13.0759 3648 C:\Windows\System32\cabinet.dll - ok
19:51:13.0759 3648 [ 356656B5EEA8C990238E8FAE5C63395C ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALMOU.dll
19:51:13.0759 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALMOU.dll - ok
19:51:13.0759 3648 [ 1A4E49BBBBCD5CE19F8BF6B5D20AFC68 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALHID.dll
19:51:13.0759 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALHID.dll - ok
19:51:13.0774 3648 [ 6ABC6575EF4FEA6E7A44F5C61C66C9E1 ] C:\Program Files\Common Files\Logishrd\KHAL3\KHALUSB.dll
19:51:13.0774 3648 C:\Program Files\Common Files\Logishrd\KHAL3\KHALUSB.dll - ok
19:51:13.0774 3648 [ E746ED90132C6B6313CE9179F56BD31D ] C:\Windows\System32\wups.dll
19:51:13.0774 3648 C:\Windows\System32\wups.dll - ok
19:51:13.0774 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Users\Derek\AppData\Local\Temp\IswTmp\WH\0
19:51:13.0774 3648 C:\Users\Derek\AppData\Local\Temp\IswTmp\WH\0 - ok
19:51:13.0790 3648 [ 6121AFD123A6D8550622E107B9C93808 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWHRPLG.dll
19:51:13.0790 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWHRPLG.dll - ok
19:51:13.0790 3648 [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll
19:51:13.0790 3648 C:\Windows\System32\wbem\cimwin32.dll - ok
19:51:13.0790 3648 [ 07AD88DF9EF73215458867EFC1BFFE9E ] C:\Windows\System32\wbem\wmiprov.dll
19:51:13.0790 3648 C:\Windows\System32\wbem\wmiprov.dll - ok
19:51:13.0805 3648 [ 50EFBC0F319C780E67D43AA7DDB12BF3 ] C:\Program Files\Common Files\Logishrd\CDDRV3\LDConfig.exe
19:51:13.0805 3648 C:\Program Files\Common Files\Logishrd\CDDRV3\LDConfig.exe - ok
19:51:13.0805 3648 [ 74EC5361943174F8232802687BF17FB0 ] C:\Windows\System32\Pen_Touch_Tablet.dll
19:51:13.0805 3648 C:\Windows\System32\Pen_Touch_Tablet.dll - ok
19:51:13.0805 3648 [ 521202AA6F2B74FCCC6BC7E162109D71 ] C:\Windows\System32\wbem\unsecapp.exe
19:51:13.0805 3648 C:\Windows\System32\wbem\unsecapp.exe - ok
19:51:13.0805 3648 [ 3A91AAA7EDC8DE349699BB91A328DC3D ] C:\Program Files\Logitech\SetPointP\KGame.dll
19:51:13.0805 3648 C:\Program Files\Logitech\SetPointP\KGame.dll - ok
19:51:13.0821 3648 [ 7C7915D80170A3832CC8EB0F16648090 ] C:\Program Files\Toshiba\FlashCards\TCrdEvnt.dll
19:51:13.0821 3648 C:\Program Files\Toshiba\FlashCards\TCrdEvnt.dll - ok
19:51:13.0821 3648 [ 874DCC6F79DF9E2F2FDFEF3FA0BEFA9E ] C:\Program Files\Toshiba\FlashCards\TCrdMain.dll
19:51:13.0821 3648 C:\Program Files\Toshiba\FlashCards\TCrdMain.dll - ok
19:51:13.0821 3648 [ 4FD6E8F52DC28F5C3238314DF61DACEF ] C:\Program Files\Toshiba\FlashCards\BlackPng.dll
19:51:13.0821 3648 C:\Program Files\Toshiba\FlashCards\BlackPng.dll - ok
19:51:13.0837 3648 [ 9C96B167C21F6DCCF68E96853B0A8F93 ] C:\Program Files\Toshiba\FlashCards\FnPRTSC.dll
19:51:13.0837 3648 C:\Program Files\Toshiba\FlashCards\FnPRTSC.dll - ok
19:51:13.0837 3648 [ BA1C136123B113195C412E4F2B380C11 ] C:\Program Files\Toshiba\FlashCards\FnSticky.dll
19:51:13.0837 3648 C:\Program Files\Toshiba\FlashCards\FnSticky.dll - ok
19:51:13.0837 3648 [ F2A7A5D3ABC8F816FE011E5499B20496 ] C:\Program Files\Toshiba\FlashCards\ButtonSupport\TBSMain.dll
19:51:13.0837 3648 C:\Program Files\Toshiba\FlashCards\ButtonSupport\TBSMain.dll - ok
19:51:13.0852 3648 [ 1ADB9FE7468B50ECAC9444EE9BA0FBA7 ] C:\Program Files\Toshiba\FlashCards\Hotkey\Brightness.dll
19:51:13.0852 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\Brightness.dll - ok
19:51:13.0852 3648 [ 8B1DF5DE30BFE3E0A359F6E612591E74 ] C:\Program Files\Toshiba\FlashCards\Hotkey\FnF5_2.dll
19:51:13.0852 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\FnF5_2.dll - ok
19:51:13.0852 3648 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll
19:51:13.0852 3648 C:\Windows\System32\mscoree.dll - ok
19:51:13.0868 3648 [ AA794B099F776B37ACCDEAD00E0FBFC9 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
19:51:13.0868 3648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
19:51:13.0868 3648 [ 5A4B1828E7CECC9C41C64F1A8142F42A ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcm90.dll
19:51:13.0868 3648 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcm90.dll - ok
19:51:13.0868 3648 [ A05C0003E8D7CEA359A439690554F8BB ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
19:51:13.0868 3648 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok
19:51:13.0883 3648 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
19:51:13.0883 3648 C:\Windows\System32\drivers\srv.sys - ok
19:51:13.0883 3648 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
19:51:13.0883 3648 C:\Windows\System32\srvsvc.dll - ok
19:51:13.0883 3648 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
19:51:13.0883 3648 C:\Windows\System32\browser.dll - ok
19:51:13.0883 3648 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
19:51:13.0883 3648 C:\Windows\System32\netmsg.dll - ok
19:51:13.0899 3648 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
19:51:13.0899 3648 C:\Windows\System32\clusapi.dll - ok
19:51:13.0899 3648 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
19:51:13.0899 3648 C:\Windows\System32\sscore.dll - ok
19:51:13.0899 3648 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
19:51:13.0899 3648 C:\Windows\System32\resutils.dll - ok
19:51:13.0915 3648 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
19:51:13.0915 3648 C:\Windows\System32\wdi.dll - ok
19:51:13.0915 3648 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
19:51:13.0915 3648 C:\Windows\System32\wpdbusenum.dll - ok
19:51:13.0915 3648 [ C005D9E5DC7841BB5E0C837C5C6DAB97 ] C:\Program Files\Logitech\SetPointP\LCabHandler.dll
19:51:13.0915 3648 C:\Program Files\Logitech\SetPointP\LCabHandler.dll - ok
19:51:13.0930 3648 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
19:51:13.0930 3648 C:\Windows\System32\npmproxy.dll - ok
19:51:13.0930 3648 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
19:51:13.0930 3648 C:\Windows\System32\diagperf.dll - ok
19:51:13.0930 3648 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
19:51:13.0930 3648 C:\Windows\System32\hidserv.dll - ok
19:51:13.0946 3648 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
19:51:13.0946 3648 C:\Windows\System32\perftrack.dll - ok
19:51:13.0946 3648 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
19:51:13.0946 3648 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
19:51:13.0946 3648 [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C ] C:\Windows\System32\ndiscapCfg.dll
19:51:13.0946 3648 C:\Windows\System32\ndiscapCfg.dll - ok
19:51:13.0946 3648 [ 3D6AF45673C4B31CDECD7F80AF09D443 ] C:\Windows\System32\rascfg.dll
19:51:13.0946 3648 C:\Windows\System32\rascfg.dll - ok
19:51:13.0961 3648 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
19:51:13.0961 3648 C:\Windows\System32\mprapi.dll - ok
19:51:13.0961 3648 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
19:51:13.0961 3648 C:\Windows\System32\Apphlpdm.dll - ok
19:51:13.0961 3648 [ 1CF21800E337F4039AAD4C94B4280EE4 ] C:\Windows\System32\mprmsg.dll
19:51:13.0961 3648 C:\Windows\System32\mprmsg.dll - ok
19:51:13.0977 3648 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
19:51:13.0977 3648 C:\Windows\System32\pnpts.dll - ok
19:51:13.0977 3648 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
19:51:13.0977 3648 C:\Windows\System32\radardt.dll - ok
19:51:13.0977 3648 [ 55DE45B116711881C852D2841E4C84DD ] C:\Windows\System32\tcpipcfg.dll
19:51:13.0977 3648 C:\Windows\System32\tcpipcfg.dll - ok
19:51:13.0993 3648 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
19:51:13.0993 3648 C:\Windows\System32\wdiasqmmodule.dll - ok
19:51:13.0993 3648 [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll
19:51:13.0993 3648 C:\Windows\System32\framedynos.dll - ok
19:51:13.0993 3648 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL
19:51:13.0993 3648 C:\Windows\System32\IPSECSVC.DLL - ok
19:51:14.0008 3648 [ 9BC93C9ACFA34DB5A41B89357B31E4ED ] C:\Windows\System32\FwRemoteSvr.dll
19:51:14.0008 3648 C:\Windows\System32\FwRemoteSvr.dll - ok
19:51:14.0008 3648 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
19:51:14.0008 3648 C:\Windows\System32\dimsjob.dll - ok
19:51:14.0008 3648 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
19:51:14.0008 3648 C:\Windows\System32\pautoenr.dll - ok
19:51:14.0008 3648 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
19:51:14.0008 3648 C:\Windows\System32\certcli.dll - ok
19:51:14.0024 3648 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
19:51:14.0024 3648 C:\Windows\System32\srchadmin.dll - ok
19:51:14.0024 3648 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
19:51:14.0024 3648 C:\Windows\System32\CertEnroll.dll - ok
19:51:14.0024 3648 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
19:51:14.0024 3648 C:\Windows\System32\FXSSVC.exe - ok
19:51:14.0039 3648 [ C6C3CE74FF3A0EE4D14BE5BC0497FA7C ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe
19:51:14.0039 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe - ok
19:51:14.0039 3648 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
19:51:14.0039 3648 C:\Windows\System32\SearchIndexer.exe - ok
19:51:14.0039 3648 [ FD28E3B46F63337EAF905120F1E00070 ] C:\Windows\System32\accessibilitycpl.dll
19:51:14.0039 3648 C:\Windows\System32\accessibilitycpl.dll - ok
19:51:14.0055 3648 [ 390679F7A217A5E73D756276C40AE887 ] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
19:51:14.0055 3648 C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe - ok
19:51:14.0055 3648 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
19:51:14.0055 3648 C:\Windows\SysWOW64\runonce.exe - ok
19:51:14.0055 3648 [ 746D93282B1C457B48457BE39CA1C8C9 ] C:\Program Files\CheckPoint\ZAForceField\Plugins\SiteChecker.dll
19:51:14.0055 3648 C:\Program Files\CheckPoint\ZAForceField\Plugins\SiteChecker.dll - ok
19:51:14.0071 3648 [ BB50B21FEE2A6F3E5FC92B330ECCF050 ] C:\Windows\SysWOW64\hhctrl.ocx
19:51:14.0071 3648 C:\Windows\SysWOW64\hhctrl.ocx - ok
19:51:14.0071 3648 [ 326347CFA78559622928E0BA3DFAF00A ] C:\Windows\SysWOW64\jsproxy.dll
19:51:14.0071 3648 C:\Windows\SysWOW64\jsproxy.dll - ok
19:51:14.0071 3648 [ 5512238DB69736055565E6F5DE62574A ] C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe
19:51:14.0071 3648 C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe - ok
19:51:14.0071 3648 [ 715BFF236158F61C042928A53C0D5AA8 ] C:\Program Files\Windows NT\Accessories\wordpad.exe
19:51:14.0071 3648 C:\Program Files\Windows NT\Accessories\wordpad.exe - ok
19:51:14.0086 3648 [ 22FD18772391C859F22A7FC42D4645F3 ] C:\Program Files (x86)\IObit\Advanced SystemCare 5\datastate.dll
19:51:14.0086 3648 C:\Program Files (x86)\IObit\Advanced SystemCare 5\datastate.dll - ok
19:51:14.0086 3648 [ 85E65172E04F2998AF18F7605DF0A774 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
19:51:14.0086 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe - ok
19:51:14.0086 3648 [ 1BD39BC3BC538D1AF8E00016A82B7DBE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
19:51:14.0086 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe - ok
19:51:14.0102 3648 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
19:51:14.0102 3648 C:\Windows\System32\tquery.dll - ok
19:51:14.0102 3648 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
19:51:14.0102 3648 C:\Windows\System32\mssrch.dll - ok
19:51:14.0102 3648 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
19:51:14.0102 3648 C:\Windows\System32\msidle.dll - ok
19:51:14.0117 3648 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
19:51:14.0117 3648 C:\Windows\System32\netman.dll - ok
19:51:14.0117 3648 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
19:51:14.0117 3648 C:\Windows\System32\NapiNSP.dll - ok
19:51:14.0117 3648 [ 8F1BAE0A35F3ED80C0859BF05E4EF6ED ] C:\Program Files\Common Files\Microsoft Shared\ink\IpsPlugin.dll
19:51:14.0117 3648 C:\Program Files\Common Files\Microsoft Shared\ink\IpsPlugin.dll - ok
19:51:14.0133 3648 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
19:51:14.0133 3648 C:\Windows\System32\mssprxy.dll - ok
19:51:14.0133 3648 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
19:51:14.0133 3648 C:\Windows\System32\pnrpnsp.dll - ok
19:51:14.0133 3648 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
19:51:14.0133 3648 C:\Windows\System32\winrnr.dll - ok
19:51:14.0133 3648 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
19:51:14.0133 3648 C:\Windows\System32\rasdlg.dll - ok
19:51:14.0149 3648 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
19:51:14.0149 3648 C:\Windows\System32\en-US\tquery.dll.mui - ok
19:51:14.0149 3648 [ 9090454E6772F7CFBCE240BF4DC5F7E8 ] C:\Windows\winsxs\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.762_none_43efccf17831d131\mfc80ENU.dll
19:51:14.0149 3648 C:\Windows\winsxs\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.762_none_43efccf17831d131\mfc80ENU.dll - ok
19:51:14.0149 3648 [ 7717F84F483002815490033BF069DABD ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll
19:51:14.0149 3648 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll - ok
19:51:14.0164 3648 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
19:51:14.0164 3648 C:\Windows\System32\dot3api.dll - ok
19:51:14.0164 3648 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
19:51:14.0164 3648 C:\Windows\System32\wlanapi.dll - ok
19:51:14.0164 3648 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
19:51:14.0164 3648 C:\Windows\System32\wlanhlp.dll - ok
19:51:14.0180 3648 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
19:51:14.0180 3648 C:\Windows\System32\WWanAPI.dll - ok
19:51:14.0180 3648 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
19:51:14.0180 3648 C:\Windows\System32\wwapi.dll - ok
19:51:14.0180 3648 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
19:51:14.0180 3648 C:\Windows\System32\QAGENT.DLL - ok
19:51:14.0195 3648 [ 1C937AA6A3E2E5F5F650686437AE2854 ] C:\Program Files\Toshiba\FlashCards\SmoothView.dll
19:51:14.0195 3648 C:\Program Files\Toshiba\FlashCards\SmoothView.dll - ok
19:51:14.0195 3648 [ 11615D80DC10ABB83D2A9002B70A4E36 ] C:\Program Files\Toshiba\FlashCards\TWarnMsg\TWarnMsg.dll
19:51:14.0195 3648 C:\Program Files\Toshiba\FlashCards\TWarnMsg\TWarnMsg.dll - ok
19:51:14.0195 3648 [ 76CDA84DCB30EBDEF0D86051A72E0C0F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\f73f0a9c9a83dcd3ff428be509a7992f\mscorlib.ni.dll
19:51:14.0195 3648 C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\f73f0a9c9a83dcd3ff428be509a7992f\mscorlib.ni.dll - ok
19:51:14.0211 3648 [ 233B45DDF77BD45E53872881CFF1839B ] C:\Windows\System32\Magnify.exe
19:51:14.0211 3648 C:\Windows\System32\Magnify.exe - ok
19:51:14.0211 3648 [ AC0C9CEA1218DAB1994AF8B28E680BD9 ] C:\Windows\System32\wlaninst.dll
19:51:14.0211 3648 C:\Windows\System32\wlaninst.dll - ok
19:51:14.0211 3648 [ 5A406C9C8E0880D3EABADC5DFD1ACDAE ] C:\Windows\System32\wwaninst.dll
19:51:14.0211 3648 C:\Windows\System32\wwaninst.dll - ok
19:51:14.0211 3648 [ BA32509D9B340162327B341013DE6522 ] C:\Windows\SysWOW64\tapi32.dll
19:51:14.0211 3648 C:\Windows\SysWOW64\tapi32.dll - ok
19:51:14.0227 3648 [ 5C817C90E6E5C5B8DEC46C1225DA9A24 ] C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\samplesites.dll
19:51:14.0227 3648 C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\samplesites.dll - ok
19:51:14.0227 3648 [ 55E5B32AE8D1F51A63C82919656FD275 ] C:\Windows\SysWOW64\dciman32.dll
19:51:14.0227 3648 C:\Windows\SysWOW64\dciman32.dll - ok
19:51:14.0227 3648 [ 32E15ECF5854F5610BC895490BC3246A ] C:\Windows\SysWOW64\ieframe.dll
19:51:14.0227 3648 C:\Windows\SysWOW64\ieframe.dll - ok
19:51:14.0242 3648 [ 1F60EE2CDEDE6B7EEE46B629867038AB ] C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\Languages\EN\PhotodownloaderRC.dll
19:51:14.0242 3648 C:\Program Files (x86)\Common Files\Corel\Corel PhotoDownloader\Languages\EN\PhotodownloaderRC.dll - ok
19:51:14.0242 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\Temp\IswTmp\WH\0
19:51:14.0242 3648 C:\Windows\Temp\IswTmp\WH\0 - ok
19:51:14.0242 3648 [ D7CEAEDD5F75D2C8A2E80887D7C114CE ] C:\Windows\System32\webcheck.dll
19:51:14.0242 3648 C:\Windows\System32\webcheck.dll - ok
19:51:14.0258 3648 [ F09D83A21B60BAC9BC5A4A248FCC59B1 ] C:\Program Files\CheckPoint\ZAForceField\WOW64\Plugins\ISWSHEX.dll
19:51:14.0258 3648 C:\Program Files\CheckPoint\ZAForceField\WOW64\Plugins\ISWSHEX.dll - ok
19:51:14.0258 3648 [ 255E405D801CF01247390F38F92D8042 ] C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
19:51:14.0258 3648 C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe - ok
19:51:14.0258 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\IswTmp\WH\0
19:51:14.0258 3648 C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\IswTmp\WH\0 - ok
19:51:14.0273 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\IswTmp\WH\1
19:51:14.0273 3648 C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\IswTmp\WH\1 - ok
19:51:14.0273 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\IswTmp\WH\0
19:51:14.0273 3648 C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\IswTmp\WH\0 - ok
19:51:14.0273 3648 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\IswTmp\WH\1
19:51:14.0273 3648 C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\IswTmp\WH\1 - ok
19:51:14.0273 3648 [ F9F3DBB0FAD773208D1954250635AD62 ] C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\liblua.dll
19:51:14.0273 3648 C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\liblua.dll - ok
19:51:14.0289 3648 [ D8F05AE57C513DC9372FAC323CF30663 ] C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\libtextcat.dll
19:51:14.0289 3648 C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\libtextcat.dll - ok
19:51:14.0289 3648 [ B4312A5AD99EE4FFE4E25D56A9D40BD1 ] C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TCData.dll
19:51:14.0289 3648 C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TCData.dll - ok
19:51:14.0289 3648 [ 0B4BB91C67A03F6AE3E7883253C4E678 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_subscription.dll
19:51:14.0289 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\update_subscription.dll - ok
19:51:14.0305 3648 [ 64F08EBE4AEDA2B202C199C72FD7B96E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\queue.dll
19:51:14.0305 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\queue.dll - ok
19:51:14.0305 3648 [ 33C1ED929FD597E298BFD6E2AB2C2C29 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\udinstaller32.exe
19:51:14.0305 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\udinstaller32.exe - ok
19:51:14.0305 3648 [ FA22668C7590888C0CF276501A17B828 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\udinstaller64.exe
19:51:14.0305 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\udinstaller64.exe - ok
19:51:14.0320 3648 [ B7C8660141A9D83E7045CF87A7A68650 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHComm.dll
19:51:14.0320 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHComm.dll - ok
19:51:14.0320 3648 [ 48296081B68AFABF0C15CB1AAD6123CD ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ckahrule.dll
19:51:14.0320 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ckahrule.dll - ok
19:51:14.0320 3648 [ 719344D36015E10F3EE59F80B74207DE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHStat.dll
19:51:14.0320 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHStat.dll - ok
19:51:14.0336 3648 [ 123353D85F1A614877463C2B8E244212 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHUM.dll
19:51:14.0336 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CKAHUM.dll - ok
19:51:14.0336 3648 [ 1BD976DD77B31FE0F25708AD5C1351AE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\difxapi.dll
19:51:14.0336 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\difxapi.dll - ok
19:51:14.0336 3648 [ 2E6BBAAAF64454DE617C829E145E35D5 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dns_client.dll
19:51:14.0336 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\dns_client.dll - ok
19:51:14.0351 3648 [ D79816DD62287CC0B09E88BCBF17C85D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ekasyswatch.dll
19:51:14.0351 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ekasyswatch.dll - ok
19:51:14.0351 3648 [ 001FA69533FC071E4A064002C387F69C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\FTPprtc.dll
19:51:14.0351 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\FTPprtc.dll - ok
19:51:14.0351 3648 [ 43CD11898B9B9C8A781AE715A1A87187 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icudt40.dll
19:51:14.0351 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icudt40.dll - ok
19:51:14.0367 3648 [ 9B73E35030DA79105AB868AF281C4106 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuin40.dll
19:51:14.0367 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuin40.dll - ok
19:51:14.0367 3648 [ 6F7989EA10E07A9AC573278DF00D248D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuio40.dll
19:51:14.0367 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuio40.dll - ok
19:51:14.0367 3648 [ C356BC00FD980612A61E882DB50EE6DB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuuc40.dll
19:51:14.0367 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\icuuc40.dll - ok
19:51:14.0383 3648 [ F9637E3AC15D6395515EC77D5DBB638E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IpcLib.dll
19:51:14.0383 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IpcLib.dll - ok
19:51:14.0383 3648 [ A792B3E37336B6EB86B4DD57336E4A88 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavesd.dll
19:51:14.0383 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavesd.dll - ok
19:51:14.0383 3648 [ 4D9B248234871B2A2934E39A30639930 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavessi.dll
19:51:14.0383 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\kavessi.dll - ok
19:51:14.0398 3648 [ 4C8A880EABC0B4D462CC4B2472116EA1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msvcp80.dll
19:51:14.0398 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msvcp80.dll - ok
19:51:14.0398 3648 [ 3ABB7ADB9CCBCD24D6C55201A3842A94 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
19:51:14.0398 3648 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok
19:51:14.0414 3648 [ E4FECE18310E23B1D8FEE993E35E7A6F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msvcr80.dll
19:51:14.0414 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msvcr80.dll - ok
19:51:14.0414 3648 [ D6420988E5002B729B76AEB7885EAF05 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prremote.dll
19:51:14.0414 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prremote.dll - ok
19:51:14.0414 3648 [ D964DA1E8FA2A8C7FAB7C1CF1FD10577 ] C:\Program Files\Toshiba\FlashCards\Hotkey\TouchPad.dll
19:51:14.0414 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\TouchPad.dll - ok
19:51:14.0429 3648 [ 5F750736752B58D40A36727586C5B085 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\swpragueplugin.dll
19:51:14.0429 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\swpragueplugin.dll - ok
19:51:14.0429 3648 [ F5236DA92C3FD6AAF6A0981DF1AB84C2 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\threats_disinfection.dll
19:51:14.0429 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\threats_disinfection.dll - ok
19:51:14.0429 3648 [ 33947E5D348913D1440351F8A942628C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\transport.dll
19:51:14.0429 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\transport.dll - ok
19:51:14.0445 3648 [ 13D699D161672CD97CBA2AB6BF5793D1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\advdis.ppl
19:51:14.0445 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\advdis.ppl - ok
19:51:14.0445 3648 [ 153CDE6E08EEB816F98E0B6D51CC2F30 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Arj.ppl
19:51:14.0445 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Arj.ppl - ok
19:51:14.0445 3648 [ 1345D6CCD5583550017C7D682A60CE43 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ArjPack.ppl
19:51:14.0445 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ArjPack.ppl - ok
19:51:14.0461 3648 [ 4EAB05F659ABE6DEF5D003AB48B34656 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Base64.ppl
19:51:14.0461 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Base64.ppl - ok
19:51:14.0461 3648 [ 47FE0FFDD2768728E667D3E7B9A53D77 ] C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe
19:51:14.0461 3648 C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\Corel Paint Shop Pro Photo.exe - ok
19:51:14.0461 3648 [ A94E9B21B4F834CCECA252A3890A2D07 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Base64P.ppl
19:51:14.0461 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Base64P.ppl - ok
19:51:14.0476 3648 [ 0EDADEAF29A15144E196B33DC078E261 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\btdisk.ppl
19:51:14.0476 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\btdisk.ppl - ok
19:51:14.0476 3648 [ 2D601FCB425BE268E45DB710A0D718B4 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\btimages.ppl
19:51:14.0476 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\btimages.ppl - ok
19:51:14.0476 3648 [ 7AB0228FA853D04701F9C0632A34DEF1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\buffer.ppl
19:51:14.0476 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\buffer.ppl - ok
19:51:14.0492 3648 [ 24D912E79DD1416E6F0BFDC94A80729E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CAB.ppl
19:51:14.0492 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\CAB.ppl - ok
19:51:14.0492 3648 [ 9561DF0AB773906D4A2D89550C54BDE1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\deflate.ppl
19:51:14.0492 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\deflate.ppl - ok
19:51:14.0492 3648 [ D9176BA705A64ECFDF7FCC7AD29AE5E1 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Explode.ppl
19:51:14.0492 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Explode.ppl - ok
19:51:14.0507 3648 [ E4A5162B8DF6FA83E55007409693C5CC ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\EXTLprtc.ppl
19:51:14.0507 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\EXTLprtc.ppl - ok
19:51:14.0507 3648 [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll
19:51:14.0507 3648 C:\Windows\System32\mlang.dll - ok
19:51:14.0507 3648 [ D0A1A0500E434EC78D51D9BDB9F058F7 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\filemap.ppl
19:51:14.0507 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\filemap.ppl - ok
19:51:14.0507 3648 [ 9FE04CF791B9A0AAB75604558A263A14 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\HashSha1.ppl
19:51:14.0507 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\HashSha1.ppl - ok
19:51:14.0523 3648 [ 22ECFC4C4276F7B6BE988AAC948FEC0E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\httpanlz.ppl
19:51:14.0523 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\httpanlz.ppl - ok
19:51:14.0523 3648 [ 93E4BE143647034C9B9A047BD36EE6B4 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\httpscan.ppl
19:51:14.0523 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\httpscan.ppl - ok
19:51:14.0523 3648 [ 21910FC17ABCE54757E6398EFFD7BD6F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IMAPprtc.ppl
19:51:14.0523 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IMAPprtc.ppl - ok
19:51:14.0539 3648 [ 5AA559E74794353FE72D289E9E943D9A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zpeng25.dll
19:51:14.0539 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zpeng25.dll - ok
19:51:14.0539 3648 [ D2D9436096D9C5D455A4E0DDBB93A734 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Inflate.ppl
19:51:14.0539 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Inflate.ppl - ok
19:51:14.0539 3648 [ 38088D2543B0A13D2F423D49BD6AEA7A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IniFile.ppl
19:51:14.0539 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\IniFile.ppl - ok
19:51:14.0554 3648 [ B2EB3ACBA745E9AD1B00B59B0AADB4A3 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\lha.ppl
19:51:14.0554 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\lha.ppl - ok
19:51:14.0554 3648 [ FD9CBB1634DB539688B065655BE528DF ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MailMsg.ppl
19:51:14.0554 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MailMsg.ppl - ok
19:51:14.0554 3648 [ A6C93F8F58B75051ACA9B1913BBA0F0D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\mc.ppl
19:51:14.0554 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\mc.ppl - ok
19:51:14.0554 3648 [ A98F2F5C139116EA6C0D64D67042BAE9 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\mdb.ppl
19:51:14.0570 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\mdb.ppl - ok
19:51:14.0570 3648 [ 7D1D08D5CDCC26FE098A265BE01712BE ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MDMAP.ppl
19:51:14.0570 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MDMAP.ppl - ok
19:51:14.0570 3648 [ 822AB53CD576A677B569B7DF723823A6 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MemModSc.ppl
19:51:14.0570 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MemModSc.ppl - ok
19:51:14.0570 3648 [ 0F1EDF421FA000ABFA7D54BB79E1C99C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MemScan.ppl
19:51:14.0570 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\MemScan.ppl - ok
19:51:14.0585 3648 [ 5F6D23F627E39196FE07DAF316D641C3 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\minizip.ppl
19:51:14.0585 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\minizip.ppl - ok
19:51:14.0585 3648 [ 65A1AAD94B40F8FB1BF18E751E8CF250 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msoe.ppl
19:51:14.0585 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\msoe.ppl - ok
19:51:14.0585 3648 [ D61E7B25603CAC00D5CA7209B9A9C92D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\MainLoop.zip.dll
19:51:14.0585 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\MainLoop.zip.dll - ok
19:51:14.0601 3648 [ B4BFA201ADC0A7FFCB7C51BC108DF835 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ndetect.ppl
19:51:14.0601 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ndetect.ppl - ok
19:51:14.0601 3648 [ 424D34EBC54F68C8817AC025878BE2E2 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\NavBar.zip.dll
19:51:14.0601 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\NavBar.zip.dll - ok
19:51:14.0601 3648 [ 78D15BDF5FA695F33791F05C70D2D26B ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ZAlert.zip.dll
19:51:14.0601 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ZAlert.zip.dll - ok
19:51:14.0617 3648 [ C76194441FC08E2433DD7999706FDB93 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ZClient.zip.dll
19:51:14.0617 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ZClient.zip.dll - ok
19:51:14.0617 3648 [ D2AEAD3F4FC58810A623F4ED8E725BA6 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zfde.zip.dll
19:51:14.0617 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zfde.zip.dll - ok
19:51:14.0617 3648 [ EEBFBDAC97DE1A4D4CBB28F9F1660B3C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zmenu.zip.dll
19:51:14.0617 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zmenu.zip.dll - ok
19:51:14.0632 3648 [ 5DE6A95F10A7BD64FCDDC6FFA58874E4 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\NNTPprtc.ppl
19:51:14.0632 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\NNTPprtc.ppl - ok
19:51:14.0632 3648 [ E27E2864AC9754600F68D326BB7F7A2C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zpy.zip.dll
19:51:14.0632 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zpy.zip.dll - ok
19:51:14.0632 3648 [ CAE100415462CD47942AEB7E7A826EE4 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\NTFSstrm.ppl
19:51:14.0632 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\NTFSstrm.ppl - ok
19:51:14.0648 3648 [ 919E10C7DC3FA0CB8B710D699DBE237F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\oas.ppl
19:51:14.0648 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\oas.ppl - ok
19:51:14.0648 3648 [ 4935B4DFE97E402FAB8479E48A86372A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ods.ppl
19:51:14.0648 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\ods.ppl - ok
19:51:14.0648 3648 [ 39FABC6F58B5066ED4EBD453DE8B6ADD ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\passdmap.ppl
19:51:14.0648 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\passdmap.ppl - ok
19:51:14.0663 3648 [ 610C2A688BC3932C9F37D8A51F5CD418 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zsys.zip.dll
19:51:14.0663 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zsys.zip.dll - ok
19:51:14.0663 3648 [ D0FBF87269979313003CB84AAE8AF6DD ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\pdm2rt.ppl
19:51:14.0663 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\pdm2rt.ppl - ok
19:51:14.0663 3648 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
19:51:14.0663 3648 C:\Windows\System32\wersvc.dll - ok
19:51:14.0679 3648 [ 4E9A599555ED198093F962CB1846FDB6 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ztv.zip.dll
19:51:14.0679 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\ztv.zip.dll - ok
19:51:14.0679 3648 [ 1010E8B6A8406E0E522F0150BECA682B ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zui.zip.dll
19:51:14.0679 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\zui.zip.dll - ok
19:51:14.0679 3648 [ 3DCF52B264832770B868A4D62D0FB57D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zpui.pyd
19:51:14.0679 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zpui.pyd - ok
19:51:14.0695 3648 [ EF8E5E4FD6C023B1E6F26E947EDD1DD4 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\zhtml.dll
19:51:14.0695 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\zhtml.dll - ok
19:51:14.0695 3648 [ 470AC060359FBB3EDD992E0AB23379BA ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_ctypes.pyd
19:51:14.0695 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_ctypes.pyd - ok
19:51:14.0695 3648 [ 0CF00B73337BEF3CCA3A38731F58D9AC ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zpdx.pyd
19:51:14.0695 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zpdx.pyd - ok
19:51:14.0710 3648 [ 384176E51757F762F4284A9E0E59D025 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\pyexpat.pyd
19:51:14.0710 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\pyexpat.pyd - ok
19:51:14.0710 3648 [ 2BE2DC82854C0B45E7DE93F34DEE9E1F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_socket.pyd
19:51:14.0710 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\_socket.pyd - ok
19:51:14.0710 3648 [ AD1EA59C74D873AC22FB839B8E3E97F7 ] C:\Program Files (x86)\Spybot - Search & Destroy\advcheck.dll
19:51:14.0710 3648 C:\Program Files (x86)\Spybot - Search & Destroy\advcheck.dll - ok
19:51:14.0726 3648 [ 564779CFC6AA83597B57DA7855954EBB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zptv.pyd
19:51:14.0726 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\lib\pyd\zptv.pyd - ok
19:51:14.0726 3648 [ 58A1188E976152938758ED70B4A172A0 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vspubapi.dll
19:51:14.0726 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vspubapi.dll - ok
19:51:14.0726 3648 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
19:51:14.0726 3648 C:\Windows\SysWOW64\winhttp.dll - ok
19:51:14.0726 3648 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
19:51:14.0726 3648 C:\Windows\System32\SyncCenter.dll - ok
19:51:14.0741 3648 [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll
19:51:14.0741 3648 C:\Windows\System32\imapi2.dll - ok
19:51:14.0741 3648 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
19:51:14.0741 3648 C:\Windows\System32\hgcpl.dll - ok
19:51:14.0741 3648 [ B918311A8E59FB8CCF613A110024DEBA ] C:\Windows\System32\osk.exe
19:51:14.0741 3648 C:\Windows\System32\osk.exe - ok
19:51:14.0757 3648 [ 5746BD7E255DD6A8AFA06F7C42C1BA41 ] C:\Windows\System32\cmd.exe
19:51:14.0757 3648 C:\Windows\System32\cmd.exe - ok
19:51:14.0757 3648 [ F2C7BB8ACC97F92E987A2D4087D021B1 ] C:\Windows\System32\notepad.exe
19:51:14.0757 3648 C:\Windows\System32\notepad.exe - ok
19:51:14.0757 3648 [ 2E483EC51216B52C711C7EC642798BB7 ] C:\Windows\System32\sti.dll
19:51:14.0757 3648 C:\Windows\System32\sti.dll - ok
19:51:14.0773 3648 [ F2A24E4AEC0F8D5DBAB10CB87A8EFED2 ] C:\Windows\SysWOW64\sti.dll
19:51:14.0773 3648 C:\Windows\SysWOW64\sti.dll - ok
19:51:14.0773 3648 [ 35E397D6CA8407B86D8A7972F0C90711 ] C:\Windows\System32\eudcedit.exe
19:51:14.0773 3648 C:\Windows\System32\eudcedit.exe - ok
19:51:14.0773 3648 [ 1AC9B56AC7E043AC2874D61CBCED5F49 ] C:\Program Files\Toshiba\FlashCards\Hotkey\Mute.dll
19:51:14.0773 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\Mute.dll - ok
19:51:14.0788 3648 [ ABBEE3E367F6E6ED415D33C78121FFA9 ] C:\Program Files (x86)\Unlocker\UnlockerHook.dll
19:51:14.0788 3648 C:\Program Files (x86)\Unlocker\UnlockerHook.dll - ok
19:51:14.0788 3648 [ 4A57709B15C0AD663C4E4C34064308AA ] C:\Program Files (x86)\IObit\IObit Malware Fighter\Scan.dll
19:51:14.0788 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\Scan.dll - ok
19:51:14.0788 3648 [ 8269C503475678F513B8837B9450DF00 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll
19:51:14.0788 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll - ok
19:51:14.0788 3648 [ F83F424661737A60C163F0200CA7C94A ] C:\Program Files (x86)\IObit\IObit Malware Fighter\IntegrateFilter.dll
19:51:14.0788 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\IntegrateFilter.dll - ok
19:51:14.0804 3648 [ D49E943F9741074C0C23916720CD143F ] C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll
19:51:14.0804 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll - ok
19:51:14.0804 3648 [ 016A43C02FBA0E0EF400C944533BE00E ] C:\Program Files (x86)\IObit\IObit Malware Fighter\FileMonitor.dll
19:51:14.0804 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\FileMonitor.dll - ok
19:51:14.0804 3648 [ B087F2B901570F6EF62F6C2E01A480F3 ] C:\Windows\SysWOW64\wiatrace.dll
19:51:14.0804 3648 C:\Windows\SysWOW64\wiatrace.dll - ok
19:51:14.0819 3648 [ C34A9CB3B30902123E48910F6D6C3207 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\URLFilter.dll
19:51:14.0819 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\URLFilter.dll - ok
19:51:14.0819 3648 [ 9C9D20DEBE53283E619E47BDABB6ED0A ] C:\Program Files (x86)\IObit\IObit Malware Fighter\RegFilter.dll
19:51:14.0819 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\RegFilter.dll - ok
19:51:14.0819 3648 [ 198803E5E93E29967DFB0BCFD0186151 ] C:\Windows\System32\spfileq.dll
19:51:14.0819 3648 C:\Windows\System32\spfileq.dll - ok
19:51:14.0835 3648 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
19:51:14.0835 3648 C:\Windows\SysWOW64\webio.dll - ok
19:51:14.0835 3648 [ 521B748A7F9923302CA18B7E6AA2EEAE ] C:\Windows\SysWOW64\activeds.dll
19:51:14.0835 3648 C:\Windows\SysWOW64\activeds.dll - ok
19:51:14.0835 3648 [ 51F5CC1E7DA3D9C664C2D0D61F315E06 ] C:\Windows\SysWOW64\adsldpc.dll
19:51:14.0835 3648 C:\Windows\SysWOW64\adsldpc.dll - ok
19:51:14.0851 3648 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
19:51:14.0851 3648 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
19:51:14.0851 3648 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
19:51:14.0851 3648 C:\Windows\SysWOW64\duser.dll - ok
19:51:14.0851 3648 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
19:51:14.0851 3648 C:\Windows\SysWOW64\dui70.dll - ok
19:51:14.0851 3648 [ 43AA2EFD14590DE58A545BF3B28ED09F ] C:\Program Files\Toshiba\FlashCards\Hotkey\FnF8Dll.dll
19:51:14.0851 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\FnF8Dll.dll - ok
19:51:14.0866 3648 [ 1DCD0B1345720349220CE79316A56751 ] C:\Program Files\Toshiba\FlashCards\Hotkey\FnZ.dll
19:51:14.0866 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\FnZ.dll - ok
19:51:14.0866 3648 [ D9E21CBF9E6A87847AFFD39EA3FA28EE ] C:\Windows\System32\SearchProtocolHost.exe
19:51:14.0866 3648 C:\Windows\System32\SearchProtocolHost.exe - ok
19:51:14.0866 3648 [ 8D58C34EA1304DAB6D8B16925265B5AA ] C:\Program Files\Common Files\Logishrd\sp6\LU\LULnchr.exe
19:51:14.0866 3648 C:\Program Files\Common Files\Logishrd\sp6\LU\LULnchr.exe - ok
19:51:14.0882 3648 [ FA7D82679D003745E40206C8E6170D7B ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmonapi.dll
19:51:14.0882 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmonapi.dll - ok
19:51:14.0882 3648 [ D2A5B2B09F2AF5ED13BF494508B09788 ] C:\Windows\System32\msshooks.dll
19:51:14.0882 3648 C:\Windows\System32\msshooks.dll - ok
19:51:14.0882 3648 [ 093D73639029C6CDE8BACF6C6651E4D2 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\mantispm.exe
19:51:14.0882 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\mantispm.exe - ok
19:51:14.0897 3648 [ E365B567A4DC4A50B10A84B2B2D09EA7 ] C:\Program Files\Toshiba\FlashCards\Hotkey\TCrdKBB.exe
19:51:14.0897 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\TCrdKBB.exe - ok
19:51:14.0897 3648 [ 56F50A715ABB2C4DD3F51F0D890159BF ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\POP3prtc.ppl
19:51:14.0897 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\POP3prtc.ppl - ok
19:51:14.0897 3648 [ 16BD7B25AD89BA5259B58EBD4FCDCC83 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\propmap.ppl
19:51:14.0897 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\propmap.ppl - ok
19:51:14.0913 3648 [ EB6609DBCB1D53BF14EA6B4B986761AB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prseqio.ppl
19:51:14.0913 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\prseqio.ppl - ok
19:51:14.0913 3648 [ DC6A79901F67EC5062135D10D477F6C5 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\PrUtil.ppl
19:51:14.0913 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\PrUtil.ppl - ok
19:51:14.0913 3648 [ CFEE1C64C7598267C65C0B4628CB8C50 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\qb.ppl
19:51:14.0913 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\qb.ppl - ok
19:51:14.0929 3648 [ 0AEE942D0A79DCCCF06774B17205179A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\crsrpt64.dll
19:51:14.0929 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\crsrpt64.dll - ok
19:51:14.0929 3648 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
19:51:14.0929 3648 C:\Windows\System32\aelupsvc.dll - ok
19:51:14.0929 3648 [ AD0CE24CCD55B0FA656437215B23EF67 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Quantum.ppl
19:51:14.0929 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Quantum.ppl - ok
19:51:14.0944 3648 [ 3B63E5FE25814B1F04313E212DB2A668 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\mtdsdk64.dll
19:51:14.0944 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\mtdsdk64.dll - ok
19:51:14.0944 3648 [ 8A3170ADD1DF6BE57F9648AE36BB29D0 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\rar.ppl
19:51:14.0944 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\rar.ppl - ok
19:51:14.0944 3648 [ 49A3AD5CE578CD77F445F3D244AEAB2D ] C:\Windows\System32\SearchFilterHost.exe
19:51:14.0944 3648 C:\Windows\System32\SearchFilterHost.exe - ok
19:51:14.0944 3648 [ CAFFAEF74DBFCE68DCA68C56E49323BF ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\sfdb.PPL
19:51:14.0944 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\sfdb.PPL - ok
19:51:14.0960 3648 [ 2DE8E1B34483E578AC61E376A21DB004 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\SMTPprtc.ppl
19:51:14.0960 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\SMTPprtc.ppl - ok
19:51:14.0960 3648 [ BFFBCEE880DBD0CA029169315962A3EA ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\resources\mbzaenu64.dll
19:51:14.0960 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\resources\mbzaenu64.dll - ok
19:51:14.0960 3648 [ 21F47CFFC85A53F6F5556D37A708F0EB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\StdComp.ppl
19:51:14.0960 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\StdComp.ppl - ok
19:51:14.0975 3648 [ 3B62B1249692EF9F289A5F72D35D5A50 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\stored.ppl
19:51:14.0975 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\stored.ppl - ok
19:51:14.0975 3648 [ FDDF5FAFEEC58878E153701ED1AE8CCB ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\superio.ppl
19:51:14.0975 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\superio.ppl - ok
19:51:14.0975 3648 [ A48AEFE9586488A7B41E953C876AA753 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\TrafMon2.ppl
19:51:14.0975 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\TrafMon2.ppl - ok
19:51:14.0991 3648 [ 0E37EA25C56BD5130D9F27C858328CF2 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\MlfHook64.dll
19:51:14.0991 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\MailFrontier\MlfHook64.dll - ok
19:51:14.0991 3648 [ 63337C2C9DAC04B5A655E0872447B260 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnArj.ppl
19:51:14.0991 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnArj.ppl - ok
19:51:14.0991 3648 [ 97CA255A40952DC01F9E6EE246BF663E ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UniArc.ppl
19:51:14.0991 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UniArc.ppl - ok
19:51:15.0007 3648 [ E45989C127C0476A937D6BEAA6E28211 ] C:\Program Files\Common Files\Logishrd\sp6\LU\LogitechUpdate.exe
19:51:15.0007 3648 C:\Program Files\Common Files\Logishrd\sp6\LU\LogitechUpdate.exe - ok
19:51:15.0007 3648 [ F7061039C4A0A9A5EF9C14480EB47032 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnLZX.ppl
19:51:15.0007 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnLZX.ppl - ok
19:51:15.0007 3648 [ 77F1454BEB48AE309D6AFEEAF40EA17A ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Unreduce.ppl
19:51:15.0007 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\Unreduce.ppl - ok
19:51:15.0022 3648 [ 2910C1DB216B1AA85A422B9171D06184 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UNSHRINK.ppl
19:51:15.0022 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UNSHRINK.ppl - ok
19:51:15.0022 3648 [ 751AED5E7C5B0CDAD38B40A081B3D0C7 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnStored.ppl
19:51:15.0022 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\UnStored.ppl - ok
19:51:15.0022 3648 [ 5C47AC9069CBCDFDBA54C1D047170740 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\urlflt.ppl
19:51:15.0022 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\urlflt.ppl - ok
19:51:15.0038 3648 [ EEA55AD292844C7259342CCD8CC86FC7 ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\volenum.ppl
19:51:15.0038 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\volenum.ppl - ok
19:51:15.0038 3648 [ F7BF4B0E0B216861EE03273142ED0A1D ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\WDiskIO.ppl
19:51:15.0038 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\WDiskIO.ppl - ok
19:51:15.0038 3648 [ 2AF5F0F4610A918BFA94A17C9BEDA74F ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\wmihlpr.ppl
19:51:15.0038 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\wmihlpr.ppl - ok
19:51:15.0053 3648 [ 0BC995CBB9786E212064AA29C6C8830C ] C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\xorio.ppl
19:51:15.0053 3648 C:\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\xorio.ppl - ok
19:51:15.0053 3648 [ 98C19BE840FEAD90A3B0EE84EACBBBE4 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\sys_critical_obj.dll.98c19be840fead90a3b0ee84eacbbbe4
19:51:15.0053 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\sys_critical_obj.dll.98c19be840fead90a3b0ee84eacbbbe4 - ok
19:51:15.0053 3648 [ 106344B28D52E925E85F302A1C90F1E6 ] C:\Program Files\Toshiba\FlashCards\Hotkey\FnSpace.dll
19:51:15.0053 3648 C:\Program Files\Toshiba\FlashCards\Hotkey\FnSpace.dll - ok
19:51:15.0069 3648 [ 07D0E77944520546403802E6B11E4F16 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\klavasyswatch.dll.07d0e77944520546403802e6b11e4f16
19:51:15.0069 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\klavasyswatch.dll.07d0e77944520546403802e6b11e4f16 - ok
19:51:15.0069 3648 [ 1DB71A41DAEE6B3F8CD0DDA8209FA2D5 ] C:\Windows\SysWOW64\WindowsCodecs.dll
19:51:15.0069 3648 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
19:51:15.0069 3648 [ 1AED31302C8351DFEE84E51C11108525 ] C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\pdm.kdl.1aed31302c8351dfee84e51c11108525
19:51:15.0069 3648 C:\ProgramData\CheckPoint\ZoneAlarm\Data\avsys\bases_csd\Cache\pdm.kdl.1aed31302c8351dfee84e51c11108525 - ok
19:51:15.0069 3648 [ ED27D1D75BF5E683AD3EDD9E3123520A ] C:\Windows\SysWOW64\inetcomm.dll
19:51:15.0069 3648 C:\Windows\SysWOW64\inetcomm.dll - ok
19:51:15.0085 3648 [ B7592E80772071D66336B3EC9B82101D ] C:\Windows\SysWOW64\msoert2.dll
19:51:15.0085 3648 C:\Windows\SysWOW64\msoert2.dll - ok
19:51:15.0085 3648 [ 9CB30A4E79BE55751312991DE827F6ED ] C:\Windows\SysWOW64\INETRES.dll
19:51:15.0085 3648 C:\Windows\SysWOW64\INETRES.dll - ok
19:51:15.0085 3648 [ 1CBF15FDB0310345A68972EB5C5B948F ] C:\Windows\SysWOW64\mssprxy.dll
19:51:15.0085 3648 C:\Windows\SysWOW64\mssprxy.dll - ok
19:51:15.0100 3648 [ 48041BAEB60CE5F34F13CC2A1361E49C ] C:\Windows\System32\mssph.dll
19:51:15.0100 3648 C:\Windows\System32\mssph.dll - ok
19:51:15.0100 3648 [ 8F4BB0CFECED925D440ABC2481278360 ] C:\Windows\System32\mapi32.dll
19:51:15.0100 3648 C:\Windows\System32\mapi32.dll - ok
19:51:15.0100 3648 [ 5EA9A0950F322BFA382AF277801C0307 ] C:\Windows\System32\wbem\wmipcima.dll
19:51:15.0100 3648 C:\Windows\System32\wbem\wmipcima.dll - ok
19:51:15.0100 3648 [ F121FF27B30D62EB148E928C4769328B ] C:\Windows\System32\Speech\SpeechUX\sapi.cpl
19:51:15.0100 3648 C:\Windows\System32\Speech\SpeechUX\sapi.cpl - ok
19:51:15.0116 3648 [ 10E4A1D2132CCB5C6759F038CDB6F3C9 ] C:\Windows\System32\calc.exe
19:51:15.0116 3648 C:\Windows\System32\calc.exe - ok
19:51:15.0116 3648 [ FF2B106909EED48C536DA04742C0324A ] C:\Windows\System32\Query.dll
19:51:15.0116 3648 C:\Windows\System32\Query.dll - ok
19:51:15.0116 3648 [ B795E6138E29A37508285FC31E92BD78 ] C:\Windows\System32\DisplaySwitch.exe
19:51:15.0116 3648 C:\Windows\System32\DisplaySwitch.exe - ok
19:51:15.0131 3648 [ 98F1C94E108DF0811CC5EF098ECFB842 ] C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe
19:51:15.0131 3648 C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe - ok
19:51:15.0131 3648 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
19:51:15.0131 3648 C:\Windows\SysWOW64\EhStorShell.dll - ok
19:51:15.0131 3648 [ 3FDC8C8C57629C2161D39A6FD4073846 ] C:\Program Files\Classic Shell\ClassicExplorer32.dll
19:51:15.0131 3648 C:\Program Files\Classic Shell\ClassicExplorer32.dll - ok
19:51:15.0147 3648 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
19:51:15.0147 3648 C:\Windows\SysWOW64\ntshrui.dll - ok
19:51:15.0147 3648 [ FA4C36B574BF387D9582ED2C54A347A8 ] C:\Windows\System32\mblctr.exe
19:51:15.0147 3648 C:\Windows\System32\mblctr.exe - ok
19:51:15.0147 3648 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
19:51:15.0147 3648 C:\Windows\SysWOW64\slc.dll - ok
19:51:15.0163 3648 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
19:51:15.0163 3648 C:\Windows\SysWOW64\imageres.dll - ok
19:51:15.0163 3648 [ 458F4590F80563EB2A0A72709BFC2BD9 ] C:\Windows\System32\mspaint.exe
19:51:15.0163 3648 C:\Windows\System32\mspaint.exe - ok
19:51:15.0163 3648 [ 50F739538EF014B2E7EC59431749D838 ] C:\Windows\System32\mstsc.exe
19:51:15.0163 3648 C:\Windows\System32\mstsc.exe - ok
19:51:15.0163 3648 [ 7633F554EEAFDE7F144B41C2FCAF5F63 ] C:\Windows\System32\SnippingTool.exe
19:51:15.0163 3648 C:\Windows\System32\SnippingTool.exe - ok
19:51:15.0178 3648 [ 47F0F526AD4982806C54B845B3289DE1 ] C:\Windows\System32\SoundRecorder.exe
19:51:15.0178 3648 C:\Windows\System32\SoundRecorder.exe - ok
19:51:15.0178 3648 [ B22CB67919EBAD88B0E8BB9CDA446010 ] C:\Windows\System32\StikyNot.exe
19:51:15.0178 3648 C:\Windows\System32\StikyNot.exe - ok
19:51:15.0178 3648 [ 523CF74A52C9A1762DA8B83AEE734498 ] C:\Windows\SysWOW64\IconCodecService.dll
19:51:15.0178 3648 C:\Windows\SysWOW64\IconCodecService.dll - ok
19:51:15.0194 3648 [ 8A4883F5E7AC37444F23279239553878 ] C:\Windows\SysWOW64\regedit.exe
19:51:15.0194 3648 C:\Windows\SysWOW64\regedit.exe - ok
19:51:15.0194 3648 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
19:51:15.0194 3648 C:\Windows\SysWOW64\cmd.exe - ok
19:51:15.0194 3648 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
19:51:15.0194 3648 C:\Windows\SysWOW64\riched20.dll - ok
19:51:15.0209 3648 [ 509E88FF7B257885775791FAF0965D6A ] C:\Windows\System32\mobsync.exe
19:51:15.0209 3648 C:\Windows\System32\mobsync.exe - ok
19:51:15.0209 3648 [ 5F9AC3243C206EC95F32E4348AE67C13 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys
19:51:15.0209 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys - ok
19:51:15.0209 3648 [ B4C2CE57F51B9F62956D256EB68973ED ] C:\Windows\System32\charmap.exe
19:51:15.0209 3648 C:\Windows\System32\charmap.exe - ok
19:51:15.0225 3648 [ 060CC45CECAE2FEAFF9C8C52D8FAFAA8 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
19:51:15.0225 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys - ok
19:51:15.0225 3648 [ 241080F1B28E68F0D00F8F1066A3780D ] C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys
19:51:15.0225 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys - ok
19:51:15.0225 3648 [ C7301A1D3DB09DE86528D9D916069859 ] C:\Windows\System32\dfrgui.exe
19:51:15.0225 3648 C:\Windows\System32\dfrgui.exe - ok
19:51:15.0241 3648 [ 85EA5C1262CF39BA63E54DB029DA6E63 ] C:\Windows\System32\cleanmgr.exe
19:51:15.0241 3648 C:\Windows\System32\cleanmgr.exe - ok
19:51:15.0241 3648 [ 6E26EE228F60D75C732D209688FB546C ] C:\Windows\System32\wdc.dll
19:51:15.0241 3648 C:\Windows\System32\wdc.dll - ok
19:51:15.0241 3648 [ DF551690EEB462238A09BE3AB6D43ECE ] C:\Program Files (x86)\IObit\IObit Malware Fighter\TaskSchedule.exe
19:51:15.0241 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\TaskSchedule.exe - ok
19:51:15.0241 3648 [ D291620D4C51C5F5FFA62CCDC52C5C13 ] C:\Windows\System32\msinfo32.exe
19:51:15.0241 3648 C:\Windows\System32\msinfo32.exe - ok
19:51:15.0256 3648 [ BBE34DAA066FFC44AB2F785F3E29CAC3 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\taskmgr.dll
19:51:15.0256 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\taskmgr.dll - ok
19:51:15.0256 3648 [ 3DB5A1EACE7F3049ECC49FA64461E254 ] C:\Windows\System32\rstrui.exe
19:51:15.0256 3648 C:\Windows\System32\rstrui.exe - ok
19:51:15.0256 3648 [ 544EFF88AC6C85DF5A4D6F18DFE08CFC ] C:\Windows\SysWOW64\taskschd.dll
19:51:15.0256 3648 C:\Windows\SysWOW64\taskschd.dll - ok
19:51:15.0272 3648 [ 51D186B582C905E49D84B70322F70B21 ] C:\Windows\System32\miguiresource.dll
19:51:15.0272 3648 C:\Windows\System32\miguiresource.dll - ok
19:51:15.0272 3648 [ 4357D0E91E68B744CCC3416BD8E0257E ] C:\Windows\System32\migwiz\PostMig.exe
19:51:15.0272 3648 C:\Windows\System32\migwiz\PostMig.exe - ok
19:51:15.0272 3648 [ ED79E659E7624D6971DC68C6717F614B ] C:\Windows\System32\migwiz\migwiz.exe
19:51:15.0272 3648 C:\Windows\System32\migwiz\migwiz.exe - ok
19:51:15.0287 3648 [ 4614CFC7524F4DBAA88374344C6A9038 ] C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFUpdater.exe
19:51:15.0287 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFUpdater.exe - ok
19:51:15.0287 3648 [ 9D9C0DD19ED1D36E1FAB8805EA5CE1AF ] C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe
19:51:15.0287 3648 C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe - ok
19:51:15.0287 3648 [ C0227B33BAB59AE7BDF36FF7D4EFDD9A ] C:\Program Files (x86)\IObit\IObit Malware Fighter\IWsIMF.exe
19:51:15.0287 3648 C:\Program Files (x86)\IObit\IObit Malware Fighter\IWsIMF.exe - ok
19:51:15.0303 3648 [ 1C09858449980D64577E377EB262C9D7 ] C:\Program Files\Windows Journal\Journal.exe
19:51:15.0303 3648 C:\Program Files\Windows Journal\Journal.exe - ok
19:51:15.0303 3648 [ 448BF22538F1DFCB3412AE2B1CF123A9 ] C:\Windows\System32\conhost.exe
19:51:15.0303 3648 C:\Windows\System32\conhost.exe - ok
19:51:15.0303 3648 [ D558E09CFB4E933F66B8D24178519300 ] C:\Windows\Branding\ShellBrd\shellbrd.dll
19:51:15.0303 3648 C:\Windows\Branding\ShellBrd\shellbrd.dll - ok
19:51:15.0319 3648 [ 852D67A27E454BD389FA7F02A8CBE23F ] C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
19:51:15.0319 3648 C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe - ok
19:51:15.0319 3648 [ 8E6390B20917929FB31679981B411557 ] C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe
19:51:15.0319 3648 C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe - ok
19:51:15.0319 3648 [ 7DF186D86CF8C571A12AAB788C777F84 ] C:\Windows\SysWOW64\wscproxystub.dll
19:51:15.0319 3648 C:\Windows\SysWOW64\wscproxystub.dll - ok
19:51:15.0319 3648 [ 06A6FE79BD96C7FEF7322AFE5B45FFFF ] C:\Windows\System32\mycomput.dll
19:51:15.0319 3648 C:\Windows\System32\mycomput.dll - ok
19:51:15.0334 3648 [ 3E466073C3B1033FF92ADE9031E3D4A2 ] C:\Windows\System32\odbcint.dll
19:51:15.0334 3648 C:\Windows\System32\odbcint.dll - ok
19:51:15.0334 3648 [ B9CE8CF2FF2D5EAFFDBAA340E7B385A5 ] C:\Windows\System32\iscsicpl.dll
19:51:15.0334 3648 C:\Windows\System32\iscsicpl.dll - ok
19:51:15.0334 3648 [ 3EEC0FB1DDD317AA1E8933B912439736 ] C:\Windows\System32\MdSched.exe
19:51:15.0334 3648 C:\Windows\System32\MdSched.exe - ok
19:51:15.0350 3648 [ DE038C40F3033EDA732655FA42DCBD18 ] C:\Windows\System32\filemgmt.dll
19:51:15.0350 3648 C:\Windows\System32\filemgmt.dll - ok
19:51:15.0350 3648 [ E19D102BAF266F34592F7C742FBFA886 ] C:\Windows\System32\msconfig.exe
19:51:15.0350 3648 C:\Windows\System32\msconfig.exe - ok
19:51:15.0350 3648 [ 11F174ED2050121C394C17B4F7B69983 ] C:\Windows\System32\AuthFWGP.dll
19:51:15.0350 3648 C:\Windows\System32\AuthFWGP.dll - ok
19:51:15.0350 3648 [ B90FE869B2D5515AFDC7E0A9CB0B443C ] C:\Program Files\Tablet\Pen\Consumer_CPL.exe
19:51:15.0350 3648 C:\Program Files\Tablet\Pen\Consumer_CPL.exe - ok
19:51:15.0365 3648 [ 3D0B9EA79BF1F828324447D84AA9DCE2 ] C:\Windows\hh.exe
19:51:15.0365 3648 C:\Windows\hh.exe - ok
19:51:15.0365 3648 [ E691BA3A66DCE0394CF75B1298F62EEF ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\000d96f5-8034-4b74-a429-b6f0b04c75f4.dll
19:51:15.0365 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\000d96f5-8034-4b74-a429-b6f0b04c75f4.dll - ok
19:51:15.0365 3648 [ BDA5B805D95CCC6A8F76DD0D55FE7225 ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\26352374-af55-4b53-b07b-6b0288ed97df.dll
19:51:15.0365 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\26352374-af55-4b53-b07b-6b0288ed97df.dll - ok
19:51:15.0381 3648 [ 1CDEA9188899E76D4FFD54C9D512CCDB ] C:\Windows\SysWOW64\msxml3.dll
19:51:15.0381 3648 C:\Windows\SysWOW64\msxml3.dll - ok
19:51:15.0381 3648 [ 31FA152A22E78DD2AD78FEA77B07C2F3 ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\d58eecb0-0816-11de-8c30-0800200c9a66.dll
19:51:15.0381 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\d58eecb0-0816-11de-8c30-0800200c9a66.dll - ok
19:51:15.0397 3648 [ 740291FAD50FBC451560B1E487A4168D ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\3eda1e54-8889-41f5-a649-5a306789b7ef.dll
19:51:15.0397 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\3eda1e54-8889-41f5-a649-5a306789b7ef.dll - ok
19:51:15.0397 3648 [ 056C3A0EB0AA5B719C386431C0D5EC89 ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\c3c636e0-1b04-11de-8c30-0800200c9a66.dll
19:51:15.0397 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\c3c636e0-1b04-11de-8c30-0800200c9a66.dll - ok
19:51:15.0397 3648 [ 07DD9DCD1CC2840751A1F8772F3C0195 ] C:\Program Files\Microsoft Games\Chess\Chess.exe
19:51:15.0397 3648 C:\Program Files\Microsoft Games\Chess\Chess.exe - ok
19:51:15.0412 3648 [ DB8D2FFDE4532C8CD43FBD0BA4C987F2 ] C:\Program Files (x86)\TOSHIBA Games\Web Link - Dark Orbit\227680FF-28CE-48EE-AADF-8D009B2813A9.dll
19:51:15.0412 3648 C:\Program Files (x86)\TOSHIBA Games\Web Link - Dark Orbit\227680FF-28CE-48EE-AADF-8D009B2813A9.dll - ok
19:51:15.0412 3648 [ BEF8BE93965EC65C51D70030B9B6B058 ] C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe
19:51:15.0412 3648 C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe - ok
19:51:15.0412 3648 [ A8524F6C3AFF774911BCA26AB8322602 ] C:\Program Files\Microsoft Games\Hearts\Hearts.exe
19:51:15.0412 3648 C:\Program Files\Microsoft Games\Hearts\Hearts.exe - ok
19:51:15.0412 3648 [ 1C9289324B5558AA5A59FB98359B3FD7 ] C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe
19:51:15.0412 3648 C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe - ok
19:51:15.0428 3648 [ AB0A8849029B4CE1109BA4E86481AB4F ] C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe
19:51:15.0428 3648 C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe - ok
19:51:15.0428 3648 [ 89F37FFA37B28807B1E7628BE13664C5 ] C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe
19:51:15.0428 3648 C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe - ok
19:51:15.0443 3648 [ 6EA39F19C2C7506F7AD0739B542E3D08 ] C:\Program Files (x86)\TOSHIBA Games\Web Link - It Girl!\ca4ed303-5737-4b13-9aff-3f92aa8e364d.dll
19:51:15.0443 3648 C:\Program Files (x86)\TOSHIBA Games\Web Link - It Girl!\ca4ed303-5737-4b13-9aff-3f92aa8e364d.dll - ok
19:51:15.0443 3648 [ 9AAADE86A4659A69CF5AA298C8AEEC22 ] C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe
19:51:15.0443 3648 C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe - ok
19:51:15.0459 3648 [ B3EE7BD189C5925D4C0D2BBFCA00FDD1 ] C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe
19:51:15.0459 3648 C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe - ok
19:51:15.0459 3648 [ 062F3D6ECBDE8E602E99ECC293A1AA7A ] C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - main\977b5905-4d14-47f1-bbbf-7b92f596695d.dll
19:51:15.0459 3648 C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - main\977b5905-4d14-47f1-bbbf-7b92f596695d.dll - ok
19:51:15.0459 3648 [ 62E76014A0C070A548762893C0C59C6B ] C:\Program Files (x86)\TOSHIBA Games\Web Link - Polar Bowler Strike!\5f828e7a-066c-4d4a-ada6-8b2494b859db.dll
19:51:15.0459 3648 C:\Program Files (x86)\TOSHIBA Games\Web Link - Polar Bowler Strike!\5f828e7a-066c-4d4a-ada6-8b2494b859db.dll - ok
19:51:15.0475 3648 [ EB596E72F63B7C31BE8DF75FA8829B3F ] C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe
19:51:15.0475 3648 C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe - ok
19:51:15.0475 3648 [ 2638FBFC4C9965172B9C6ABF29349B7E ] C:\Program Files (x86)\TOSHIBA Games\Web Link - Seafight\2D080D0F-37EF-433E-90F1-CE36EB0205F6.dll
19:51:15.0475 3648 C:\Program Files (x86)\TOSHIBA Games\Web Link - Seafight\2D080D0F-37EF-433E-90F1-CE36EB0205F6.dll - ok
19:51:15.0475 3648 [ 5BACFD51D926774C8DD8028BEC9B4374 ] C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe
19:51:15.0475 3648 C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe - ok
19:51:15.0475 3648 [ 53534F0BC0BEFFD60FC13864B3034984 ] C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe
19:51:15.0475 3648 C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe - ok
19:51:15.0490 3648 [ 203F2C8BF7E7F5D994C75500C425E61F ] C:\Program Files (x86)\TOSHIBA Games\Web Link - World of Warcraft\22A975C0-D22F-482C-A387-637EEC15870F.dll
19:51:15.0490 3648 C:\Program Files (x86)\TOSHIBA Games\Web Link - World of Warcraft\22A975C0-D22F-482C-A387-637EEC15870F.dll - ok
19:51:15.0490 3648 [ 75B9A9D10BC16C2D3E39426DB4DC539E ] C:\Program Files\Common Files\Logishrd\Unifying\DJCUHost.exe
19:51:15.0490 3648 C:\Program Files\Common Files\Logishrd\Unifying\DJCUHost.exe - ok
19:51:15.0490 3648 [ E7B1B5D5A1D1E4C77AE995D725A1FEE5 ] C:\Windows\System32\sdcpl.dll
19:51:15.0506 3648 C:\Windows\System32\sdcpl.dll - ok
19:51:15.0506 3648 [ F3B306179F1840C0813DC6771B018358 ] C:\Windows\System32\recdisc.exe
19:51:15.0506 3648 C:\Windows\System32\recdisc.exe - ok
19:51:15.0506 3648 [ E79DF53BAD587E24B3CF965A5746C7B6 ] C:\Windows\System32\msra.exe
19:51:15.0506 3648 C:\Windows\System32\msra.exe - ok
19:51:15.0506 3648 [ BD4C1D83353BFB80F6BA019F6D0BA95B ] C:\Windows\ehome\ehshell.exe
19:51:15.0506 3648 C:\Windows\ehome\ehshell.exe - ok
19:51:15.0521 3648 [ C1E0D32F10FE1F5F1401A69BD3B13C26 ] C:\Windows\Installer\{95140000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
19:51:15.0521 3648 C:\Windows\Installer\{95140000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe - ok
19:51:15.0521 3648 [ EF648657E3EAC1376EFADF9AC1CC54CB ] C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
19:51:15.0521 3648 C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll - ok
19:51:15.0521 3648 [ E3BF29CED96790CDAAFA981FFDDF53A3 ] C:\Program Files\Windows Sidebar\sidebar.exe
19:51:15.0521 3648 C:\Program Files\Windows Sidebar\sidebar.exe - ok
19:51:15.0537 3648 [ 232D90407A8159C8BF03A533A58CC99D ] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSSDAlert.exe
19:51:15.0537 3648 C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSSDAlert.exe - ok
19:51:15.0537 3648 [ 76E86C93B54DC86E9C31AD328591CF7B ] C:\Program Files\Toshiba\TPHM\TPCHViewer.exe
19:51:15.0537 3648 C:\Program Files\Toshiba\TPHM\TPCHViewer.exe - ok
19:51:15.0537 3648 [ CE4A1FB06BAA52FE6E4E8D5A6749007C ] C:\Program Files\Toshiba\TOSHIBA Assist\TInTouch.exe
19:51:15.0537 3648 C:\Program Files\Toshiba\TOSHIBA Assist\TInTouch.exe - ok
19:51:15.0553 3648 [ D381918E0997A4BC1F45D9F4595C0AB7 ] C:\Program Files\Toshiba\Utilities\TACSPROP.exe
19:51:15.0553 3648 C:\Program Files\Toshiba\Utilities\TACSPROP.exe - ok
19:51:15.0553 3648 [ 04ADFFAF5385343E50B8342A35BFD510 ] C:\Program Files\Toshiba\FlashCards\TfcConf.exe
19:51:15.0553 3648 C:\Program Files\Toshiba\FlashCards\TfcConf.exe - ok
19:51:15.0553 3648 [ DA684C367417A461008728BAF7B23495 ] C:\Program Files\Toshiba\Utilities\HWSetup.exe
19:51:15.0553 3648 C:\Program Files\Toshiba\Utilities\HWSetup.exe - ok
19:51:15.0568 3648 [ F51F342E526245F58F7B1F768C6F1597 ] C:\Program Files\Toshiba\Power Saver\THyboot.exe
19:51:15.0568 3648 C:\Program Files\Toshiba\Power Saver\THyboot.exe - ok
19:51:15.0568 3648 [ 80E7B12D7B804D938F945E2CDB468F9B ] C:\Program Files\Toshiba\Power Saver\THybootSet.exe
19:51:15.0568 3648 C:\Program Files\Toshiba\Power Saver\THybootSet.exe - ok
19:51:15.0568 3648 [ FDA49D1D0C201F6C76BD2593F562BF80 ] C:\Windows\System32\WindowsAnytimeUpgradeui.exe
19:51:15.0568 3648 C:\Windows\System32\WindowsAnytimeUpgradeui.exe - ok
19:51:15.0568 3648 [ E83D2495D5867E224FBF42EF40D8856C ] C:\Program Files\DVD Maker\DVDMaker.exe
19:51:15.0568 3648 C:\Program Files\DVD Maker\DVDMaker.exe - ok
19:51:15.0584 3648 [ 21B62252D283FBF75A5F67849EBD9B2E ] C:\Windows\System32\WFSR.dll
19:51:15.0584 3648 C:\Windows\System32\WFSR.dll - ok
19:51:15.0584 3648 [ 492CB6A624D5DAD73EE0294B5DB37DD6 ] C:\Windows\System32\xpsrchvw.exe
19:51:15.0584 3648 C:\Windows\System32\xpsrchvw.exe - ok
19:51:15.0584 3648 [ 50EBD31C3527366FAFA468BD609F7352 ] C:\Windows\System32\wucltux.dll
19:51:15.0584 3648 C:\Windows\System32\wucltux.dll - ok
19:51:15.0599 3648 [ D2958325C1AE1AE37A83334C6229E3BC ] C:\Windows\SysWOW64\actxprxy.dll
19:51:15.0599 3648 C:\Windows\SysWOW64\actxprxy.dll - ok
19:51:15.0599 3648 [ 55EDFADBEFB5B1C28DCE340DDCD2206E ] C:\Windows\System32\powercpl.dll
19:51:15.0599 3648 C:\Windows\System32\powercpl.dll - ok
19:51:15.0599 3648 [ F0112F2DDAC14DFD4B3A69BB0164D005 ] C:\Windows\System32\taskbarcpl.dll
19:51:15.0599 3648 C:\Windows\System32\taskbarcpl.dll - ok
19:51:15.0615 3648 [ F8297797CC1993E25B8967D6032BFB31 ] C:\Windows\System32\Vault.dll
19:51:15.0615 3648 C:\Windows\System32\Vault.dll - ok
19:51:15.0615 3648 [ 03E012434BBE2B66D8C56B4A69461615 ] C:\Windows\System32\TSWorkspace.dll
19:51:15.0615 3648 C:\Windows\System32\TSWorkspace.dll - ok
19:51:15.0615 3648 [ BF2EF79AC51D1CA10D5F52D7ADF99112 ] C:\Program Files (x86)\Windows Live\Installer\LangSelectorRes.dll
19:51:15.0615 3648 C:\Program Files (x86)\Windows Live\Installer\LangSelectorRes.dll - ok
19:51:15.0631 3648 [ 6F1AC6100B372F22709B24CFC9E2CC16 ] C:\Windows\System32\FirewallControlPanel.dll
19:51:15.0631 3648 C:\Windows\System32\FirewallControlPanel.dll - ok
19:51:15.0631 3648 [ 6E9BF5A8CD471D66E1154CCB640B0AA0 ] C:\Windows\System32\telephon.cpl
19:51:15.0631 3648 C:\Windows\System32\telephon.cpl - ok
19:51:15.0631 3648 [ 6A541D3C502BBA311375D1BB370B2BFD ] C:\Windows\System32\Speech\SpeechUX\speechuxcpl.dll
19:51:15.0631 3648 C:\Windows\System32\Speech\SpeechUX\speechuxcpl.dll - ok
19:51:15.0631 3648 [ 887EB84BB2EC3F4C1510C98E8C1ADFC0 ] C:\Windows\System32\usercpl.dll
19:51:15.0631 3648 C:\Windows\System32\usercpl.dll - ok
19:51:15.0646 3648 [ 2C2FBB6DC3CE8FAF4AB2F7C6C5071C4C ] C:\Windows\System32\intl.cpl
19:51:15.0646 3648 C:\Windows\System32\intl.cpl - ok
19:51:15.0646 3648 [ 6E90B7A6C66355AA8DDC5CABF6073DE1 ] C:\Windows\System32\main.cpl
19:51:15.0646 3648 C:\Windows\System32\main.cpl - ok
19:51:15.0646 3648 [ 1EB9CE09181421F2C5951164611170B9 ] C:\Windows\System32\devmgr.dll
19:51:15.0646 3648 C:\Windows\System32\devmgr.dll - ok
19:51:15.0662 3648 [ 9481CE9E51B3CA43FD61894B89ED4CCA ] C:\Windows\System32\icardres.dll
19:51:15.0662 3648 C:\Windows\System32\icardres.dll - ok
19:51:15.0662 3648 [ DC8560036F238C904DC9FBCEA7796D54 ] C:\Windows\System32\PerfCenterCPL.dll
19:51:15.0662 3648 C:\Windows\System32\PerfCenterCPL.dll - ok
19:51:15.0662 3648 [ F731DB7489A0994F682D68A2B21AA5AE ] C:\Windows\System32\TabletPC.cpl
19:51:15.0662 3648 C:\Windows\System32\TabletPC.cpl - ok
19:51:15.0677 3648 [ 56BEB546F3F6EEAAAD5759E0B32E7C58 ] C:\Windows\System32\netcenter.dll
19:51:15.0677 3648 C:\Windows\System32\netcenter.dll - ok
19:51:15.0677 3648 [ 01073F2BA36792C9BFD1BD622A6247B3 ] C:\Windows\System32\wpccpl.dll
19:51:15.0677 3648 C:\Windows\System32\wpccpl.dll - ok
19:51:15.0677 3648 [ 1FB6588DDF991124D49475C99BBC9C5B ] C:\Windows\System32\autoplay.dll
19:51:15.0677 3648 C:\Windows\System32\autoplay.dll - ok
19:51:15.0693 3648 [ F82044FA23BCBA1BD7453435C9ED30B9 ] C:\Windows\System32\inetcpl.cpl
19:51:15.0693 3648 C:\Windows\System32\inetcpl.cpl - ok
19:51:15.0693 3648 [ 1F6DC007EAB7F6911130D729B4739A12 ] C:\Windows\System32\colorcpl.exe
19:51:15.0693 3648 C:\Windows\System32\colorcpl.exe - ok
19:51:15.0693 3648 [ 7D067C851FD270E7C3495788AD487CDE ] C:\Windows\System32\ActionCenterCPL.dll
19:51:15.0693 3648 C:\Windows\System32\ActionCenterCPL.dll - ok
19:51:15.0693 3648 [ 9613BEA1E1509884EC472A10858EC61D ] C:\Windows\System32\fontext.dll
19:51:15.0693 3648 C:\Windows\System32\fontext.dll - ok
19:51:15.0709 3648 [ F0074CEB72EA93608037C98A1F187DB5 ] C:\Windows\System32\Display.dll
19:51:15.0709 3648 C:\Windows\System32\Display.dll - ok
19:51:15.0709 3648 [ DC50B0FE1C3F654AC25B5484BF3A458C ] C:\Windows\System32\DiagCpl.dll
19:51:15.0709 3648 C:\Windows\System32\DiagCpl.dll - ok
19:51:15.0709 3648 [ 2DA738A0A6BEE483A5647A76695AF3B0 ] C:\Program Files\Windows Defender\MsMpRes.dll
19:51:15.0709 3648 C:\Program Files\Windows Defender\MsMpRes.dll - ok
19:51:15.0724 3648 [ B3F03B594E7A6353273D43F6E7EA1D25 ] C:\Windows\System32\SensorsCpl.dll
19:51:15.0724 3648 C:\Windows\System32\SensorsCpl.dll - ok
19:51:15.0724 3648 [ CFA6B4D4A70D67C6387C29FA6FD703D0 ] C:\Windows\System32\themecpl.dll
19:51:15.0724 3648 C:\Windows\System32\themecpl.dll - ok
19:51:15.0724 3648 [ 649F5F47EA85C08AEE9353CEEF810233 ] C:\Windows\System32\mmsys.cpl
19:51:15.0724 3648 C:\Windows\System32\mmsys.cpl - ok
19:51:15.0740 3648 [ E16AD3495533DA435F1AB00A00C3BD10 ] C:\Windows\System32\RTSnMg64.cpl
19:51:15.0740 3648 C:\Windows\System32\RTSnMg64.cpl - ok
19:51:15.0740 3648 [ DF50DAE4C547285E4997A0C61063B632 ] C:\Windows\System32\wscui.cpl
19:51:15.0740 3648 C:\Windows\System32\wscui.cpl - ok
19:51:15.0740 3648 [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll
19:51:15.0740 3648 C:\Windows\System32\wscapi.dll - ok
19:51:15.0740 3648 [ 270CBAA170C7905CBA1EA6E94788D44B ] C:\Program Files\Internet Explorer\ieproxy.dll
19:51:15.0740 3648 C:\Program Files\Internet Explorer\ieproxy.dll - ok
19:51:15.0755 3648 [ 3BE18EEB1A93CC5F70F5A9C977B71A75 ] C:\Users\Derek\Desktop\tdsskiller.exe
19:51:15.0755 3648 C:\Users\Derek\Desktop\tdsskiller.exe - ok
19:51:15.0755 3648 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
19:51:15.0755 3648 C:\Windows\SysWOW64\credssp.dll - ok
19:51:15.0755 3648 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\02264738.sys
19:51:15.0755 3648 C:\Windows\System32\drivers\02264738.sys - ok
19:51:15.0771 3648 [ 3819AD4329303EAC88480CA16A650735 ] C:\Windows\System32\UIAnimation.dll
19:51:15.0771 3648 C:\Windows\System32\UIAnimation.dll - ok
19:51:15.0771 3648 ============================================================
19:51:15.0771 3648 Scan finished
19:51:15.0771 3648 ============================================================
19:51:15.0787 4036 Detected object count: 6
19:51:15.0787 4036 Actual detected object count: 6
20:02:13.0748 4036 Capture Device Service ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0748 4036 Capture Device Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:02:13.0748 4036 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0748 4036 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:02:13.0750 4036 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0750 4036 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:02:13.0752 4036 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0752 4036 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:02:13.0754 4036 TosCoSrv ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0754 4036 TosCoSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:02:13.0756 4036 UnlockerDriver5 ( UnsignedFile.Multi.Generic ) - skipped by user
20:02:13.0756 4036 UnlockerDriver5 ( UnsignedFile.Multi.Generic ) - User select action: Skip

#5 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 08:18 PM

Security Check Log:


Results of screen317's Security Check version 0.99.44
Windows 7 Service Pack 1 x64 (UAC is disabled!)
Internet Explorer 9
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
ZoneAlarm Internet Security Suite Antivirus
Antivirus up to date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
MVPS Hosts File
Spybot - Search & Destroy
Malwarebytes Anti-Malware version 1.62.0.1300
Java™ 6 Update 25
Java version out of Date!
Adobe Flash Player 10 Flash Player out of Date!
Mozilla Thunderbird (14.0.)
Google Chrome 21.0.1180.77
Google Chrome 21.0.1180.79
Google Chrome VisualElementsManifest.xml..
````````Process Check: objlist.exe by Laurent````````
Norton ccSvcHst.exe
IObit IObit Malware Fighter IMFsrv.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 8%
````````````````````End of Log``````````````````````

#6 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 08:23 PM

Farbar Service Scan:

Farbar Service Scanner Version: 06-08-2012
Ran by Derek (administrator) on 17-08-2012 at 20:21:13
Running from "C:\Users\Derek\Desktop"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****

#7 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 17 August 2012 - 08:29 PM

MiniTool Box Report:


MiniToolBox by Farbar Version: 23-07-2012
Ran by Derek (administrator) on 17-08-2012 at 20:26:04
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================


127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com

There are 15255 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Derek-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : satx.rr.com

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 4C-72-B9-50-BA-21
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . : satx.rr.com
Description . . . . . . . . . . . : Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Physical Address. . . . . . . . . : 74-E5-43-0C-3C-B8
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::c591:5312:caae:f79f%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.105(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Friday, August 17, 2012 7:48:04 PM
Lease Expires . . . . . . . . . . : Saturday, August 18, 2012 7:48:03 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 242541891
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-17-88-7C-51-74-E5-43-0C-3C-B8
DNS Servers . . . . . . . . . . . : 208.67.222.222
208.67.220.220
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.satx.rr.com:

Connection-specific DNS Suffix . : satx.rr.com
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::5efe:192.168.1.105%15(Preferred)
Default Gateway . . . . . . . . . :
DNS Servers . . . . . . . . . . . : 208.67.222.222
208.67.220.220
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Local Area Connection* 12:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:3c98:2f4:3f57:fe96(Preferred)
Link-local IPv6 Address . . . . . : fe80::3c98:2f4:3f57:fe96%14(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
Server: resolver1.opendns.com
Address: 208.67.222.222

Name: google.com.satx.rr.com
Address: 67.215.65.132


Pinging google.com [74.125.227.105] with 32 bytes of data:
Reply from 74.125.227.105: bytes=32 time=15ms TTL=52
Reply from 74.125.227.105: bytes=32 time=18ms TTL=52

Ping statistics for 74.125.227.105:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 15ms, Maximum = 18ms, Average = 16ms
Server: resolver1.opendns.com
Address: 208.67.222.222

Name: yahoo.com.satx.rr.com
Address: 67.215.65.132


Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=140ms TTL=46
Reply from 98.139.183.24: bytes=32 time=102ms TTL=47

Ping statistics for 98.139.183.24:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 102ms, Maximum = 140ms, Average = 121ms
Server: resolver1.opendns.com
Address: 208.67.222.222

Name: bleepingcomputer.com.satx.rr.com
Address: 67.215.65.132


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
12...4c 72 b9 50 ba 21 ......Realtek PCIe FE Family Controller
11...74 e5 43 0c 3c b8 ......Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
1...........................Software Loopback Interface 1
15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
14...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.105 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.105 281
192.168.1.105 255.255.255.255 On-link 192.168.1.105 281
192.168.1.255 255.255.255.255 On-link 192.168.1.105 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.105 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.105 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
14 58 ::/0 On-link
1 306 ::1/128 On-link
14 58 2001::/32 On-link
14 306 2001:0:4137:9e76:3c98:2f4:3f57:fe96/128
On-link
11 281 fe80::/64 On-link
14 306 fe80::/64 On-link
15 286 fe80::5efe:192.168.1.105/128
On-link
14 306 fe80::3c98:2f4:3f57:fe96/128
On-link
11 281 fe80::c591:5312:caae:f79f/128
On-link
1 306 ff00::/8 On-link
14 306 ff00::/8 On-link
11 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (08/17/2012 07:48:45 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 04:24:53 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 04:14:02 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 00:14:22 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/16/2012 08:49:47 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/16/2012 05:39:52 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/15/2012 07:51:51 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/15/2012 11:52:29 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/14/2012 05:34:39 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/14/2012 05:17:07 PM) (Source: Microsoft Office 10) (User: )
Description: Rejected Safe Mode action : Microsoft Word.


System errors:
=============
Error: (08/17/2012 07:27:02 PM) (Source: Service Control Manager) (User: )
Description: The Toshiba Laptop Checkup Application Launcher service terminated unexpectedly. It has done this 1 time(s).

Error: (08/17/2012 07:05:08 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (08/17/2012 04:25:34 PM) (Source: DCOM) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Error: (08/17/2012 04:23:15 PM) (Source: DCOM) (User: )
Description: {1EF75F33-893B-4E8F-9655-C3D602BA4897}

Error: (08/17/2012 08:13:34 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (08/16/2012 09:13:49 PM) (Source: DCOM) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (08/16/2012 08:47:59 PM) (Source: DCOM) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (08/13/2012 07:53:47 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (08/13/2012 10:34:10 AM) (Source: Service Control Manager) (User: )
Description: The Advanced SystemCare Service 5 service terminated unexpectedly. It has done this 2 time(s).

Error: (08/13/2012 10:33:03 AM) (Source: Service Control Manager) (User: )
Description: The Advanced SystemCare Service 5 service terminated unexpectedly. It has done this 1 time(s).


Microsoft Office Sessions:
=========================
Error: (08/17/2012 07:48:45 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 04:24:53 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 04:14:02 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/17/2012 00:14:22 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/16/2012 08:49:47 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/16/2012 05:39:52 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/15/2012 07:51:51 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/15/2012 11:52:29 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/14/2012 05:34:39 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/14/2012 05:17:07 PM) (Source: Microsoft Office 10)(User: )
Description: Microsoft Word


=========================== Installed Programs ============================

64 Bit HP CIO Components Installer (Version: 1.0.0)
Acronis True Image Home 2012 (Version: 15.0.7133)
Adobe AIR (Version: 3.3.0.3670)
Adobe Flash Player 10 Plugin (Version: 10.2.159.1)
Adobe Flash Player 11 ActiveX 64-bit (Version: 11.2.202.228)
Adobe Reader X MUI (Version: 10.0.0)
Adobe Shockwave Player 11.5 (Version: 11.5.9.620)
Advanced SystemCare 5 (Version: 5.4.0)
AMD Accelerated Video Transcoding (Version: 2.00.0000)
AMD APP SDK Runtime (Version: 10.0.873.1)
AMD Catalyst Install Manager (Version: 3.0.870.0)
AMD Media Foundation Decoders (Version: 1.0.70213.1643)
AMD Steady Video Plug-In (Version: 2.03.0000)
AMD VISION Engine Control Center (Version: 2012.0213.1644.29893)
Bamboo (Version: 5.2.5-5)
Bamboo Dock (Version: 4.0)
Bamboo Dock (Version: 4.0.0)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (Version: 2012.0213.1644.29893)
Catalyst Control Center Localization All (Version: 2012.0213.1644.29893)
ccc-utility64 (Version: 2012.0213.1644.29893)
CCC Help Chinese Standard (Version: 2012.0213.1643.29893)
CCC Help Chinese Traditional (Version: 2012.0213.1643.29893)
CCC Help Czech (Version: 2012.0213.1643.29893)
CCC Help Danish (Version: 2012.0213.1643.29893)
CCC Help Dutch (Version: 2012.0213.1643.29893)
CCC Help English (Version: 2012.0213.1643.29893)
CCC Help Finnish (Version: 2012.0213.1643.29893)
CCC Help French (Version: 2012.0213.1643.29893)
CCC Help German (Version: 2012.0213.1643.29893)
CCC Help Greek (Version: 2012.0213.1643.29893)
CCC Help Hungarian (Version: 2012.0213.1643.29893)
CCC Help Italian (Version: 2012.0213.1643.29893)
CCC Help Japanese (Version: 2012.0213.1643.29893)
CCC Help Korean (Version: 2012.0213.1643.29893)
CCC Help Norwegian (Version: 2012.0213.1643.29893)
CCC Help Polish (Version: 2012.0213.1643.29893)
CCC Help Portuguese (Version: 2012.0213.1643.29893)
CCC Help Russian (Version: 2012.0213.1643.29893)
CCC Help Spanish (Version: 2012.0213.1643.29893)
CCC Help Swedish (Version: 2012.0213.1643.29893)
CCC Help Thai (Version: 2012.0213.1643.29893)
CCC Help Turkish (Version: 2012.0213.1643.29893)
Civ3 Conquests v1.22 Full
Civilization III Complete Edition (Version: 1.00.0000)
Civilization III v1.29f
Classic Shell (Version: 3.5.1)
Corel Paint Shop Pro Photo X2 (Version: 12.010.0000)
Corel Painter Essentials 4
Corel Painter Essentials 4 (Version: 4.2)
D3DX10 (Version: 15.4.2368.0902)
eReg (Version: 1.20.138.34)
Google Chrome (Version: 21.0.1180.79)
Google Update Helper (Version: 1.3.21.115)
ImageSkill Background Remover 3 (Version: 3.0)
ImageSkill Displacement Map 1 (Remove only) (Version: 1.0)
ImageSkill Magic Enhancer Lite 1 (Remove only) (Version: 1.0)
ImageSkill Magic Sharpener 2 (Remove only) (Version: 2.1)
ImageSkill Outliner 2 (Remove only) (Version: 2.0)
ImgBurn (Version: 2.5.6.0)
InterVideo DeviceService (Version: 1.0.0)
IObit Malware Fighter (Version: 1.0)
Java Auto Updater (Version: 2.0.4.1)
Java™ 6 Update 25 (Version: 6.0.250)
Junk Mail filter update (Version: 15.4.3502.0922)
Logitech SetPoint 6.32 (Version: 6.32.20)
Malwarebytes Anti-Malware version 1.62.0.1300 (Version: 1.62.0.1300)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Calculator Plus (Version: 1.0.0)
Microsoft PowerPoint Viewer (Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 4.0.50401.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Word 2002 (Version: 10.0.2627.01)
Microsoft Works (Version: 08.05.0818)
Microsoft Works Suite 2006 Setup Launcher
Microsoft Works Suite Add-in for Microsoft Word (Version: 8.0.0.0000)
Microsoft XML Parser (Version: 8.20.8730.4)
MozBackup 1.4.9
Mozilla Thunderbird 14.0 (x86 en-US) (Version: 14.0)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Penguins! (Version: 2.2.0.98)
Picasa 3 (Version: 3.8)
Plants vs. Zombies - Game of the Year (Version: 2.2.0.98)
PlayReady PC Runtime amd64 (Version: 1.3.0)
PlayReady PC Runtime x86 (Version: 1.3.0)
Polar Bowler (Version: 2.2.0.97)
Private Proxy (Version: 2.40.0000)
Quicken 2007 (Version: 16.1.5.7)
Realtek Ethernet Controller Driver (Version: 7.48.823.2011)
Realtek High Definition Audio Driver (Version: 6.0.1.6577)
Realtek USB 2.0 Card Reader (Version: 6.1.7601.30130)
Realtek WLAN Driver (Version: 2.00.0016)
Revo Uninstaller 1.75 (Version: 1.75)
Spybot - Search & Destroy (Version: 1.6.2)
Synaptics Pointing Device Driver (Version: 15.3.38.2)
TOSHIBA Application Installer (Version: 9.0.1.2)
TOSHIBA Assist (Version: 4.2.3.1)
TOSHIBA Audio Enhancement (Version: 1.0.2.8)
TOSHIBA Bulletin Board (Version: 1.6.11.64)
TOSHIBA Disc Creator (Version: 2.1.0.11 for x64)
TOSHIBA Face Recognition (Version: 3.1.18.64)
TOSHIBA Hardware Setup (Version: 2.00.0020)
TOSHIBA HDD/SSD Alert (Version: 3.1.64.12)
Toshiba Laptop Checkup (Version: 2.0.17.38)
TOSHIBA Media Controller (Version: 1.0.87.5)
TOSHIBA Media Controller Plug-in (Version: 1.0.7.7)
Toshiba Online Backup (Version: 2.0.0.31)
TOSHIBA PC Health Monitor (Version: 1.7.15.64)
TOSHIBA Quality Application (Version: 1.0.4)
TOSHIBA Recovery Media Creator (Version: 2.1.6.52020009)
TOSHIBA ReelTime (Version: 1.7.21.64)
TOSHIBA Resolution+ Plug-in for Windows Media Player (Version: 1.1.3.03)
Toshiba Security Dashboard (Version: 1.0.0.48)
TOSHIBA Service Station (Version: 2.2.13)
TOSHIBA Supervisor Password (Version: 2.00.0009)
TOSHIBA User's Guide (Version: 1.00.02)
TOSHIBA Value Added Package (Version: 1.6.0023.640204)
TOSHIBA Web Camera Application (Version: 2.0.3.33)
TOSHIBARegistration (Version: 1.0.9)
Ulead DVD MovieFactory 6 (Version: 6.0.0)
Unlocker 1.9.1 (Version: 1.9.1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update Installer for WildTangent Games App
WebTablet FB Plugin (Version: 2.0.0.1)
WebTablet IE Plugin (Version: 1.1.0.12)
WebTablet Netscape Plugin (Version: 1.1.0.10)
WildTangent Games (Version: 1.0.3.0)
WildTangent Games App (Toshiba Games) (Version: 4.0.5.36)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3538.0513)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3538.0513)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Works Upgrade (Version: 8.0.0.0000)
xplorer² lite (Version: 1.4)
ZoneAlarm Antivirus (Version: 10.2.074.000)
ZoneAlarm Firewall (Version: 10.2.074.000)
ZoneAlarm Internet Security Suite (Version: 10.2.064.000)
ZoneAlarm LTD Toolbar
ZoneAlarm Security (Version: 10.2.074.000)
ZoneAlarm Security Toolbar

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 25%
Total physical RAM: 5606.37 MB
Available physical RAM: 4156.85 MB
Total Pagefile: 11210.93 MB
Available Pagefile: 9536.3 MB
Total Virtual: 4095.88 MB
Available Virtual: 3969.9 MB

========================= Partitions: =====================================

1 Drive c: (TI106426W0A) (Fixed) (Total:444.89 GB) (Free:366.25 GB) NTFS
3 Drive f: (My BackUps) (Fixed) (Total:5.86 GB) (Free:3.49 GB) NTFS

========================= Users: ========================================

User accounts for \\DEREK-PC

Administrator Derek Guest

========================= Minidump Files ==================================

No minidump file found

========================= Restore Points ==================================

12-08-2012 19:44:55 Installed Works Upgrade
12-08-2012 19:45:41 Installed Microsoft Works
12-08-2012 19:49:35 Installed Microsoft Word 2002
12-08-2012 19:51:30 Installed Microsoft Works Suite Add-in for Microsoft Word
12-08-2012 20:02:28 Installed Corel Paint Shop Pro Photo X2.
12-08-2012 20:13:11 Installed Corel Painter Essentials 4.
13-08-2012 01:34:38 Installed Classic Shell
13-08-2012 15:03:19 Windows Update
13-08-2012 15:12:58 Installed Microsoft Calculator Plus
13-08-2012 15:29:37 Installed Microsoft Visual C++ 2005 Redistributable
13-08-2012 15:36:50 Installed Private Proxy
13-08-2012 19:19:04 Installed Civilization III Complete Edition
14-08-2012 20:13:51 Installed DirectX
14-08-2012 20:15:28 Installed Ulead DVD MovieFactory 6
14-08-2012 21:00:52 Installed Ulead DVD MovieFactory
14-08-2012 21:01:41 Installed DirectX
14-08-2012 21:50:04 Installed Ulead DVD MovieFactory
14-08-2012 21:50:41 Installed DirectX
14-08-2012 21:59:33 Installed Ulead DVD MovieFactory
14-08-2012 22:00:28 Installed DirectX
15-08-2012 22:50:17 Installed Microsoft PowerPoint Viewer
16-08-2012 00:36:49 Removed TOSHIBA eco Utility.
16-08-2012 00:42:20 Windows Update

**** End of log ****

#8 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:06:35 PM

Posted 18 August 2012 - 07:28 AM

Hi

Please do the following next:

:step1:

  • Launch Malwarebytes' Anti-Malware (MBAM)
  • Click on the tab update, then click Check for Updates
  • If an update is found, it will download and install the latest version.
  • Then on the Scanner tab select Perform full scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad.
  • Post the log in your next reply.

Note: Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\<Username>\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Users\<Username>\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt


:step2:

I'd like us to scan your machine with ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

Note: Vista/Windows 7 users: You will need to to right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator from the context menu.

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image
      icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • On ESET: Click the Back button, then the Finish button.
Note: Do not forget to re-enable your Anti-Virus application after running the above scan!


:step3:

How is the computer running now?

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#9 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 18 August 2012 - 11:20 AM

Malwarebyes found no infections, here is the log:
I was going to post the log file from Spybot that found some infections but cannot find it.

Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org

Database version: v2012.08.18.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Derek :: DEREK-PC [administrator]
l
8/18/2012 9:50:36 AM
mbam-log-2012-08-18 (09-50-36).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 339558
Time elapsed: 45 minute(s), 14 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

#10 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 18 August 2012 - 02:00 PM

Results from ESET scan:

C:\Downloads Vista\hypersnap\cnet2_HS7Setup_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Downloads Vista\Unlocker\Unlocker1.9.1.exe a variant of Win32/Toolbar.Babylon application cleaned by deleting - quarantined


Also, if it would help I could post the CurrPorts report on open Ports.

#11 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:06:35 PM

Posted 19 August 2012 - 04:27 AM

Also, if it would help I could post the CurrPorts report on open Ports.

No need to at the moment.

Please do the following next:

:step1:

Online Gaming Warning!

Online gaming sites are a security risk which can make your computer susceptible to a large number of malware infections, remote attacks, exposure of personal information, and identity theft. They can lead to other sites containing malware which you can inadvertently download without knowledge. Users visiting such sites may see innocuous-looking banner ads containing code which can trigger pop-up ads and malicious Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users. Gaming sites can put you at risk to fraud, phishing and theft of personal data. Even if the gaming site is a clean site, there is always the potential of some type of malware making its way there and then onto your system. In some instances an infection may have caused so much damage to your system that it cannot be successfully cleaned or repaired. In those cases, recovery is not possible and the only option is to reformat/reinstall the OS.

More specifically, I noticed you had WildTangent on your computer.
WildTangent Program Warning

Wild Tangent is a video game software company specializing in online games. It has even made a partnership with AOL to include itself as part of the AOL Instant Messenger for their AIM games section. The WildTangent Web Driver is their technology that allows you to play 3D games over the Internet. Although its not technically considered spyware it does have built in components to update itself and gather information about the computer system including:
  • Operating System Version
  • CPU Type and Speed
  • Memory Amount
  • Video Card type and Driver Version
  • Sound Card type and Driver Version
  • DirectX Version
  • Location that the Web Driver was installed from
For that reason I would suggest you uninstalled it via add/remove.

Reboot after the uninstallation.<- Important.


:step2:

Important Note: Your version of Java is out of date. Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.


Please follow these steps to remove older version Java components and update:

  • Download the latest version of Java Runtime Environment (JRE) Version 7 and save it to your desktop.
  • Look for "Java Platform, Standard Edition".
  • Click the "Download JRE" button to the right.
  • Read the License Agreement, and then check the box that says: "Accept License Agreement".
  • From the list, select your OS and Platform (32-bit or 64-bit).
    64-bit OS users, should read: Which Java download should I choose for my 64-bit Windows operating system?
  • If a download for an Offline Installation is available, it is recommended to choose that and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.

Go to Posted Image > Control Panel, double-click on Add/Remove Programs or Programs and Features in Vista/Windows 7 and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button and follow the onscreen instructions for the Java uninstaller.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-7u6-windows-i586.exe (or jre-7u6-windows-x64.exe for 64-bit) to install the newest version.
  • If using Windows 7 or Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the Java Setup - Welcome window opens, click the Install > button.
  • If offered any unwanted software or toolbars during installation, just uncheck the box before continuing unless you want it.
  • The McAfee Security Scan Plus tool is installed by default unless you uncheck the McAfee installation box when updating Java.

Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications but it's not necessary.
To disable the JQS service if you don't want to use it:
  • Go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter.
  • Click Ok and reboot your computer.


:step3:

Important Note: Your version of Adobe Flash is out of date.

Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.

Uninstall Adobe Flash
  • Open Programs and Features or Add and Remove Programs by clicking the Start / Windows "Orb" button, clicking Control Panel, clicking Programs, and then clicking Programs and Features or Add and Remove Programs.
  • Select any program with Adobe Flash in the name, and then click Uninstall.
  • Repeat step 2 until no more programs containing Adobe Flash are visible.
Note: Some programs include the option to change or repair the program in addition to uninstalling it. but many simply offer the option to uninstall. To change a program, click
Change or Repair. If you are prompted for an administrator password or confirmation, type the password or provide confirmation.

Please follow these steps to Install the latest Adobe flash player:


:step4:

Your version of Adobe Reader is outdated.

Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.

Please follow these steps to remove older version Adobe components and update:
  • Download the latest version of Adobe Reader Version X. and save it to your desktop.
  • Uncheck the "Free McAfee Security plan Plus" option or any other Toolbar you are offered
  • Click the download button at the bottom.
  • If you use Internet Explorer and do not wish to install the ActiveX element, simply click on the click here to download link on the next page.
  • Remove all older version of Adobe Reader: Go to Add/remove and uninstall all versions of Adobe Reader, Acrobat Reader and Adobe Acrobat.
    If you are unsure of how to use Add or Remove Programs (or Programs and Features), the please see this tutorial:How To Remove An Installed Program From Your Computer
  • Then from your desktop double-click on Adobe Reader to install the newest version.
    If using Windows Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the "Adobe Setup - Welcome" window opens, click the Install > button.
  • If offered to install a Toolbar, just uncheck the box before continuing unless you want it.

Your Adobe Reader is now up to date!



:step5:

Follow the instructions here to Enable UAC (User Account Control)


:step6:

Please delete Security Check on your desktop as it is outdated.

  • Download the latest version of Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document in your next reply.


:step7:

Please delete Minitoolbox on your desktop.

Then download the latest version of MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices (Only Problems)
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • List Restore points

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

Click Go and post the full contents of the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.


:step8:

How is the computer running now?

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#12 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 20 August 2012 - 10:06 AM

A quick note to let you know that I really appreciate your help on this issue. And, I agree with you on Wildtangent and gaming sites. I just bought this laptop last week and that was one of the 'crap' loaded on by mfg. I have been uninstalling some but hadn't got to that yet, so just did along with some other stuff. I like to use Revo and IObit uninstallers instead of Windows add/remove.
My computer seems to be running fine now, and a check of open ports has decreased to about 32/34 most of the time. Another thing I have done is have Zone Alarm notify me every time something wants on the internet, except for a few specific programs, and totally stopped a couple even though they probably not malicious. But something that still concerns me is that Windows and NT Authority is now most of the open ports. Cannot understand why the OS needs that many contacts with the internet and will spend time investigating that issue when I have time. Any thoughts from you on this would also be appreciated!
This was suppose to be a quick note but kind of babbled on. Sorry. But thanks again, and I will be running MiniToolBox late today.

#13 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 20 August 2012 - 03:13 PM

MiniToolBox report:


MiniToolBox by Farbar Version: 23-07-2012
Ran by Derek (administrator) on 20-08-2012 at 14:59:36
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================


127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com

There are 15255 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Derek-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : satx.rr.com

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 4C-72-B9-50-BA-21
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . : satx.rr.com
Description . . . . . . . . . . . : Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
Physical Address. . . . . . . . . : 74-E5-43-0C-3C-B8
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::c591:5312:caae:f79f%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.105(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Sunday, August 19, 2012 1:42:19 PM
Lease Expires . . . . . . . . . . : Tuesday, August 21, 2012 2:58:09 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 242541891
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-17-88-7C-51-74-E5-43-0C-3C-B8
DNS Servers . . . . . . . . . . . : 208.67.222.222
208.67.220.220
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.satx.rr.com:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 12:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{CC4CAF52-24CF-4BD0-B80F-7758D695F7A3}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
DNS request timed out.
timeout was 2 seconds.
Server: UnKnown
Address: 208.67.222.222

Name: google.com.satx.rr.com
Address: 67.215.65.132


Pinging google.com [74.125.227.104] with 32 bytes of data:
Reply from 74.125.227.104: bytes=32 time=27ms TTL=52
Reply from 74.125.227.104: bytes=32 time=22ms TTL=52

Ping statistics for 74.125.227.104:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 22ms, Maximum = 27ms, Average = 24ms
Server: resolver1.opendns.com
Address: 208.67.222.222

Name: yahoo.com.satx.rr.com
Address: 67.215.65.132


Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=113ms TTL=46
Reply from 98.139.183.24: bytes=32 time=111ms TTL=46

Ping statistics for 98.139.183.24:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 111ms, Maximum = 113ms, Average = 112ms
Server: resolver1.opendns.com
Address: 208.67.222.222

Name: bleepingcomputer.com.satx.rr.com
Address: 67.215.65.132


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Request timed out.
Request timed out.

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
===========================================================================
Interface List
12...4c 72 b9 50 ba 21 ......Realtek PCIe FE Family Controller
11...74 e5 43 0c 3c b8 ......Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC
1...........................Software Loopback Interface 1
16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
14...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.105 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.105 281
192.168.1.105 255.255.255.255 On-link 192.168.1.105 281
192.168.1.255 255.255.255.255 On-link 192.168.1.105 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.105 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.105 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 306 ::1/128 On-link
11 281 fe80::/64 On-link
11 281 fe80::c591:5312:caae:f79f/128
On-link
1 306 ff00::/8 On-link
11 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (08/19/2012 07:02:44 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "*" of attribute "language" in element "assemblyIdentity" is invalid.

Error: (08/19/2012 07:02:20 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "*" of attribute "language" in element "assemblyIdentity" is invalid.

Error: (08/19/2012 07:01:34 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (08/19/2012 01:42:48 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/19/2012 01:05:31 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service TPCH Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service TOSHIBA HDD SSD Alert Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service TOSHIBA Power Saver since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service Adobe Flash Player Update Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (08/19/2012 00:40:11 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddWin32ServiceFiles: Unable to back up image of service TPCH Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.


System errors:
=============
Error: (08/20/2012 02:58:12 PM) (Source: Microsoft-Windows-BitLocker-Driver) (User: NT AUTHORITY)
Description: Encrypted volume check: Volume information on cannot be read.

Error: (08/20/2012 08:47:39 AM) (Source: DCOM) (User: )
Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED}

Error: (08/19/2012 02:08:43 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (08/19/2012 01:42:37 PM) (Source: Service Control Manager) (User: )
Description: The Common Client Job Manager Service service terminated with service-specific error %%-1.

Error: (08/19/2012 01:05:21 PM) (Source: Service Control Manager) (User: )
Description: The Common Client Job Manager Service service terminated with service-specific error %%-1.

Error: (08/18/2012 06:55:27 PM) (Source: Microsoft-Windows-BitLocker-Driver) (User: NT AUTHORITY)
Description: Encrypted volume check: Volume information on cannot be read.

Error: (08/18/2012 06:54:44 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.

Error: (08/18/2012 05:02:33 PM) (Source: Microsoft-Windows-BitLocker-Driver) (User: NT AUTHORITY)
Description: Encrypted volume check: Volume information on cannot be read.

Error: (08/18/2012 04:53:36 PM) (Source: volsnap) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (08/18/2012 02:47:38 PM) (Source: Service Control Manager) (User: )
Description: The Common Client Job Manager Service service terminated with service-specific error %%-1.


Microsoft Office Sessions:
=========================
Error: (08/19/2012 07:02:44 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitylanguage*c:\program files (x86)\spybot - search & destroy\DelZip179.dllc:\program files (x86)\spybot - search & destroy\DelZip179.dll8

Error: (08/19/2012 07:02:20 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitylanguage*c:\program files (x86)\mozbackup\dll\DelZip179.dllc:\program files (x86)\mozbackup\dll\DelZip179.dll8

Error: (08/19/2012 07:01:34 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (08/19/2012 01:42:48 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/19/2012 01:05:31 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service TPCH Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service TOSHIBA HDD SSD Alert Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service TOSHIBA Power Saver since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.

Error: (08/19/2012 01:01:01 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service Adobe Flash Player Update Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.

Error: (08/19/2012 00:40:11 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service TPCH Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.


=========================== Installed Programs ============================

64 Bit HP CIO Components Installer (Version: 1.0.0)
Acronis True Image Home 2012 (Version: 15.0.7133)
Adobe AIR (Version: 3.3.0.3670)
Adobe Flash Player 11 ActiveX (Version: 11.3.300.271)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Adobe Shockwave Player 11.5 (Version: 11.5.9.620)
Advanced SystemCare 5 (Version: 5.4.0)
AMD Accelerated Video Transcoding (Version: 2.00.0000)
AMD APP SDK Runtime (Version: 10.0.873.1)
AMD Catalyst Install Manager (Version: 3.0.870.0)
AMD Media Foundation Decoders (Version: 1.0.70213.1643)
AMD Steady Video Plug-In (Version: 2.03.0000)
AMD VISION Engine Control Center (Version: 2012.0213.1644.29893)
Bamboo (Version: 5.2.5-5)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (Version: 2012.0213.1644.29893)
Catalyst Control Center Localization All (Version: 2012.0213.1644.29893)
ccc-utility64 (Version: 2012.0213.1644.29893)
CCC Help Chinese Standard (Version: 2012.0213.1643.29893)
CCC Help Chinese Traditional (Version: 2012.0213.1643.29893)
CCC Help Czech (Version: 2012.0213.1643.29893)
CCC Help Danish (Version: 2012.0213.1643.29893)
CCC Help Dutch (Version: 2012.0213.1643.29893)
CCC Help English (Version: 2012.0213.1643.29893)
CCC Help Finnish (Version: 2012.0213.1643.29893)
CCC Help French (Version: 2012.0213.1643.29893)
CCC Help German (Version: 2012.0213.1643.29893)
CCC Help Greek (Version: 2012.0213.1643.29893)
CCC Help Hungarian (Version: 2012.0213.1643.29893)
CCC Help Italian (Version: 2012.0213.1643.29893)
CCC Help Japanese (Version: 2012.0213.1643.29893)
CCC Help Korean (Version: 2012.0213.1643.29893)
CCC Help Norwegian (Version: 2012.0213.1643.29893)
CCC Help Polish (Version: 2012.0213.1643.29893)
CCC Help Portuguese (Version: 2012.0213.1643.29893)
CCC Help Russian (Version: 2012.0213.1643.29893)
CCC Help Spanish (Version: 2012.0213.1643.29893)
CCC Help Swedish (Version: 2012.0213.1643.29893)
CCC Help Thai (Version: 2012.0213.1643.29893)
CCC Help Turkish (Version: 2012.0213.1643.29893)
Civ3 Conquests v1.22 Full
Civilization III Complete Edition (Version: 1.00.0000)
Civilization III v1.29f
Classic Shell (Version: 3.6.0)
Corel Paint Shop Pro Photo X2 (Version: 12.010.0000)
Corel Painter Essentials 4
Corel Painter Essentials 4 (Version: 4.2)
Desktop Icon Position Saver (64-bit)
eReg (Version: 1.20.138.34)
ESET Online Scanner v3
Google Chrome (Version: 21.0.1180.79)
Google Update Helper (Version: 1.3.21.115)
ImageSkill Background Remover 3 (Version: 3.0)
ImageSkill Displacement Map 1 (Remove only) (Version: 1.0)
ImageSkill Magic Enhancer Lite 1 (Remove only) (Version: 1.0)
ImageSkill Magic Sharpener 2 (Remove only) (Version: 2.1)
ImageSkill Outliner 2 (Remove only) (Version: 2.0)
ImgBurn (Version: 2.5.6.0)
InterVideo DeviceService (Version: 1.0.0)
IObit Malware Fighter (Version: 1.0)
Java 7 Update 6 (64-bit) (Version: 7.0.60)
Java SE Development Kit 7 Update 6 (64-bit) (Version: 1.7.0.60)
Logitech SetPoint 6.32 (Version: 6.32.20)
Malwarebytes Anti-Malware version 1.62.0.1300 (Version: 1.62.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Calculator Plus (Version: 1.0.0)
Microsoft PowerPoint Viewer (Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 4.0.50401.0)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Word 2002 (Version: 10.0.2627.01)
Microsoft Works (Version: 08.05.0818)
Microsoft Works Suite 2006 Setup Launcher
Microsoft Works Suite Add-in for Microsoft Word (Version: 8.0.0.0000)
Microsoft XML Parser (Version: 8.20.8730.4)
MozBackup 1.4.9
Mozilla Thunderbird 14.0 (x86 en-US) (Version: 14.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Picasa 3 (Version: 3.8)
PlayReady PC Runtime amd64 (Version: 1.3.0)
PlayReady PC Runtime x86 (Version: 1.3.0)
Private Proxy (Version: 2.40.0000)
Quicken 2007 (Version: 16.1.5.7)
Realtek Ethernet Controller Driver (Version: 7.48.823.2011)
Realtek High Definition Audio Driver (Version: 6.0.1.6577)
Realtek USB 2.0 Card Reader (Version: 6.1.7601.30130)
Realtek WLAN Driver (Version: 2.00.0016)
Revo Uninstaller 1.75 (Version: 1.75)
Spybot - Search & Destroy (Version: 1.6.2)
Synaptics Pointing Device Driver (Version: 15.3.38.2)
TOSHIBA Application Installer (Version: 9.0.1.2)
TOSHIBA Assist (Version: 4.2.3.1)
TOSHIBA Audio Enhancement (Version: 1.0.2.8)
TOSHIBA Disc Creator (Version: 2.1.0.11 for x64)
TOSHIBA Hardware Setup (Version: 2.00.0020)
TOSHIBA HDD/SSD Alert (Version: 3.1.64.12)
Toshiba Laptop Checkup (Version: 2.0.17.38)
TOSHIBA Media Controller (Version: 1.0.87.5)
TOSHIBA Media Controller Plug-in (Version: 1.0.7.7)
Toshiba Online Backup (Version: 2.0.0.31)
TOSHIBA PC Health Monitor (Version: 1.7.15.64)
TOSHIBA Quality Application (Version: 1.0.4)
TOSHIBA Recovery Media Creator (Version: 2.1.6.52020009)
TOSHIBA ReelTime (Version: 1.7.21.64)
TOSHIBA Resolution+ Plug-in for Windows Media Player (Version: 1.1.3.03)
Toshiba Security Dashboard (Version: 1.0.0.48)
TOSHIBA Service Station (Version: 2.2.13)
TOSHIBA Supervisor Password (Version: 2.00.0009)
TOSHIBA User's Guide (Version: 1.00.02)
TOSHIBA Value Added Package (Version: 1.6.0023.640204)
TOSHIBA Web Camera Application (Version: 2.0.3.33)
TOSHIBARegistration (Version: 1.0.9)
Ulead DVD MovieFactory 6 (Version: 6.0.0)
Unlocker 1.9.1 (Version: 1.9.1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
WebTablet FB Plugin (Version: 2.0.0.1)
WebTablet IE Plugin (Version: 1.1.0.12)
WebTablet Netscape Plugin (Version: 1.1.0.10)
Works Upgrade (Version: 8.0.0.0000)
xplorer² lite (Version: 1.4)
ZoneAlarm Antivirus (Version: 10.2.074.000)
ZoneAlarm Firewall (Version: 10.2.074.000)
ZoneAlarm Internet Security Suite (Version: 10.2.064.000)
ZoneAlarm LTD Toolbar
ZoneAlarm Security (Version: 10.2.074.000)
ZoneAlarm Security Toolbar

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 30%
Total physical RAM: 5606.37 MB
Available physical RAM: 3886.02 MB
Total Pagefile: 11210.93 MB
Available Pagefile: 9113.58 MB
Total Virtual: 4095.88 MB
Available Virtual: 3970.24 MB

========================= Partitions: =====================================

1 Drive c: (TI106426W0A) (Fixed) (Total:444.89 GB) (Free:378.02 GB) NTFS
3 Drive e: (My Book) (Fixed) (Total:465.65 GB) (Free:319.45 GB) FAT32
4 Drive f: (My BackUps) (Fixed) (Total:5.86 GB) (Free:3.49 GB) NTFS

========================= Users: ========================================

User accounts for \\DEREK-PC

Administrator Derek Guest

========================= Minidump Files ==================================

No minidump file found

========================= Restore Points ==================================

19-08-2012 17:08:20 Removed Java™ 6 Update 25
19-08-2012 17:12:03 Removed Adobe Reader X MUI.
19-08-2012 17:20:48 Configured TOSHIBA Bulletin Board
19-08-2012 17:23:22 Configured TOSHIBA Face Recognition
19-08-2012 17:39:16 Windows Live Essentials
19-08-2012 17:40:11 WLSetup
19-08-2012 18:01:00 Removed Windows Live Mesh ActiveX Control for Remote Connections
19-08-2012 18:08:13 Installed Java SE Development Kit 7 Update 6 (64-bit)
19-08-2012 18:09:49 Installed Java 7 Update 6 (64-bit)
19-08-2012 18:14:13 Installed Classic Shell

**** End of log ****

#14 droppy45

droppy45
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:01:35 PM

Posted 20 August 2012 - 04:40 PM

Okay, spoke too soon earlier. Just logged off internet and had 108 ports open and listening. At least half look like advertising stuff. Wonder how to prevent them from opening ports?

#15 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:06:35 PM

Posted 21 August 2012 - 06:41 PM

Hi

Okay, spoke too soon earlier. Just logged off internet and had 108 ports open and listening. At least half look like advertising stuff. Wonder how to prevent them from opening ports?

Windows and applications require some ports to be open when connected to the internet.

See link for further info on looking at ports individually. Even thought this is for Windows Server, it can similarly be applied to most other Windows Versions.

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users