Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

What should I do? Sirefef.AA and now others :(


  • Please log in to reply
5 replies to this topic

#1 CharlesL

CharlesL

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:29 PM

Posted 24 August 2012 - 09:07 PM

Hello,

I got Sirefef.AA after getting a pop up that looked very much like an Adobe Flash Player update window. I suppose that I should have always set Adobe Flash Player to update automatically but for some reason I didn't, then I got a window that looked exactly like the normal Adobe window and I clicked yes to install it, then after that I had a bunch of malware installed, some sort of fake antivirus program, it disabled or deleted my Window Firewall, my Windows Security Essentials, Windows Updates, a bunch of Microsoft services, etc. It was a real mess but I was able to get all of those things removed and things seemed to be back up and running fine...

Until recently that is. My search results still seemed to be sort of hijacked, sometimes it would take me to Scour.com or Skour.com, GetTheResults.com or some such website, and also a website to purchase Norton Antivirus. I messed around with my hosts file and set it back to default and that seemed to fix then. But now I am having problems after Java started to update or load by itself, after that the redirects seemed to become more frequent, I ran both Microsoft Security Essentials (I run that regularly) and also MalwareBytes and they removed several other pieces of malware, I believe one was called Tracur something.

To my untrained eye it seemed that Java or some Adobe program is still corrupted. I have uninstalled and reinstalled the newest versions of Java, Adobe Flash Player, Adobe Reader, etc. I'm still worried and unsure of what I should do. This computer is used for both work and personal, I bank on it, shop on it, etc.

What should I do? Thank you in advance for any help.

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:29 PM

Posted 24 August 2012 - 09:09 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 CharlesL

CharlesL
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:29 PM

Posted 24 August 2012 - 10:30 PM

Hi Naren, thanks so much for the response.

I only have this one log for you sadly. aswMBR stops responding each time that I run it for some reason and the ESET Online Scanner program ended without giving me an option to create a log that I could see, it said that it didn't find anything though but interestingly it said that the scan was "Stopped by User" or some such, that seemed a bit fishy to me.

I'm going to continue trying the other two programs but I figured that I should post the TDSSkiller log so it doesn't seem like I just disappeared. Oh and "Skip" was the default option in TDSSkiller for the file that it found so I left it as Skip.




=====





22:26:13.0562 4760 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
22:26:14.0037 4760 ============================================================
22:26:14.0037 4760 Current date / time: 2012/08/24 22:26:14.0037
22:26:14.0037 4760 SystemInfo:
22:26:14.0037 4760
22:26:14.0037 4760 OS Version: 6.1.7601 ServicePack: 1.0
22:26:14.0037 4760 Product type: Workstation
22:26:14.0037 4760 ComputerName: CHARLES-LAPTOP
22:26:14.0038 4760 UserName: Charles
22:26:14.0038 4760 Windows directory: C:\Windows
22:26:14.0038 4760 System windows directory: C:\Windows
22:26:14.0038 4760 Running under WOW64
22:26:14.0038 4760 Processor architecture: Intel x64
22:26:14.0038 4760 Number of processors: 4
22:26:14.0038 4760 Page size: 0x1000
22:26:14.0038 4760 Boot type: Normal boot
22:26:14.0038 4760 ============================================================
22:26:14.0761 4760 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:26:14.0767 4760 ============================================================
22:26:14.0767 4760 \Device\Harddisk0\DR0:
22:26:14.0767 4760 MBR partitions:
22:26:14.0767 4760 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x5E800, BlocksNum 0x177000
22:26:14.0767 4760 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1D5800, BlocksNum 0x24E57800
22:26:14.0798 4760 \Device\Harddisk0\DR0\Partition3: MBR, Type 0xC, StartLBA 0x2502D800, BlocksNum 0x400800
22:26:14.0798 4760 ============================================================
22:26:14.0838 4760 C: <-> \Device\Harddisk0\DR0\Partition2
22:26:14.0869 4760 D: <-> \Device\Harddisk0\DR0\Partition3
22:26:14.0870 4760 ============================================================
22:26:14.0870 4760 Initialize success
22:26:14.0870 4760 ============================================================
22:26:52.0438 7036 ============================================================
22:26:52.0439 7036 Scan started
22:26:52.0439 7036 Mode: Manual; TDLFS;
22:26:52.0439 7036 ============================================================
22:26:52.0559 7036 ================ Scan system memory ========================
22:26:52.0559 7036 System memory - ok
22:26:52.0560 7036 ================ Scan services =============================
22:26:52.0750 7036 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
22:26:52.0754 7036 1394ohci - ok
22:26:52.0780 7036 [ 627371B2D48F64CECC4D019114FB140D ] Acceler C:\Windows\system32\DRIVERS\Accelern.sys
22:26:52.0783 7036 Acceler - ok
22:26:52.0804 7036 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
22:26:52.0811 7036 ACPI - ok
22:26:52.0831 7036 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
22:26:52.0833 7036 AcpiPmi - ok
22:26:52.0981 7036 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
22:26:52.0986 7036 AdobeFlashPlayerUpdateSvc - ok
22:26:53.0031 7036 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
22:26:53.0049 7036 adp94xx - ok
22:26:53.0072 7036 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
22:26:53.0079 7036 adpahci - ok
22:26:53.0096 7036 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
22:26:53.0102 7036 adpu320 - ok
22:26:53.0125 7036 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:26:53.0128 7036 AeLookupSvc - ok
22:26:53.0188 7036 [ A6FB9DB8F1A86861D955FD6975977AE0 ] AESTFilters C:\Program Files\IDT\WDM\AESTSr64.exe
22:26:53.0191 7036 AESTFilters - ok
22:26:53.0240 7036 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
22:26:53.0248 7036 AFD - ok
22:26:53.0292 7036 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
22:26:53.0295 7036 agp440 - ok
22:26:53.0317 7036 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
22:26:53.0319 7036 ALG - ok
22:26:53.0337 7036 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
22:26:53.0339 7036 aliide - ok
22:26:53.0378 7036 [ B3E801135E0C81733542C14D9AA8120A ] Alpham1 C:\Windows\system32\DRIVERS\Alpham164.sys
22:26:53.0381 7036 Alpham1 - ok
22:26:53.0393 7036 [ 6493983FEDBC49D9112703ECE9B251FE ] Alpham2 C:\Windows\system32\DRIVERS\Alpham264.sys
22:26:53.0395 7036 Alpham2 - ok
22:26:53.0416 7036 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
22:26:53.0419 7036 amdide - ok
22:26:53.0456 7036 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
22:26:53.0459 7036 AmdK8 - ok
22:26:53.0473 7036 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
22:26:53.0476 7036 AmdPPM - ok
22:26:53.0510 7036 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:26:53.0513 7036 amdsata - ok
22:26:53.0531 7036 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
22:26:53.0538 7036 amdsbs - ok
22:26:53.0553 7036 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:26:53.0554 7036 amdxata - ok
22:26:53.0606 7036 [ 8655A2983A86D6675135B1FF6892055D ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys
22:26:53.0613 7036 ApfiltrService - ok
22:26:53.0647 7036 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
22:26:53.0650 7036 AppID - ok
22:26:53.0665 7036 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:26:53.0668 7036 AppIDSvc - ok
22:26:53.0717 7036 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
22:26:53.0719 7036 Appinfo - ok
22:26:53.0754 7036 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
22:26:53.0759 7036 AppMgmt - ok
22:26:53.0773 7036 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
22:26:53.0776 7036 arc - ok
22:26:53.0794 7036 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
22:26:53.0797 7036 arcsas - ok
22:26:53.0819 7036 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:26:53.0821 7036 AsyncMac - ok
22:26:53.0858 7036 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
22:26:53.0862 7036 atapi - ok
22:26:53.0905 7036 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:26:53.0926 7036 AudioEndpointBuilder - ok
22:26:53.0954 7036 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
22:26:53.0961 7036 AudioSrv - ok
22:26:54.0012 7036 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:26:54.0016 7036 AxInstSV - ok
22:26:54.0042 7036 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
22:26:54.0051 7036 b06bdrv - ok
22:26:54.0069 7036 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
22:26:54.0075 7036 b57nd60a - ok
22:26:54.0103 7036 [ 50D45E314B13F70BF328D783868E6EA6 ] BCM42RLY C:\Windows\system32\drivers\BCM42RLY.sys
22:26:54.0105 7036 BCM42RLY - ok
22:26:54.0196 7036 [ 487794BECFE161A8E112D5A25D940B06 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
22:26:54.0272 7036 BCM43XX - ok
22:26:54.0317 7036 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
22:26:54.0320 7036 BDESVC - ok
22:26:54.0331 7036 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
22:26:54.0333 7036 Beep - ok
22:26:54.0374 7036 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
22:26:54.0396 7036 BFE - ok
22:26:54.0433 7036 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
22:26:54.0459 7036 BITS - ok
22:26:54.0474 7036 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:26:54.0477 7036 blbdrive - ok
22:26:54.0512 7036 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:26:54.0515 7036 bowser - ok
22:26:54.0527 7036 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:26:54.0529 7036 BrFiltLo - ok
22:26:54.0540 7036 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:26:54.0542 7036 BrFiltUp - ok
22:26:54.0580 7036 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
22:26:54.0584 7036 Browser - ok
22:26:54.0603 7036 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:26:54.0609 7036 Brserid - ok
22:26:54.0629 7036 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:26:54.0631 7036 BrSerWdm - ok
22:26:54.0643 7036 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:26:54.0646 7036 BrUsbMdm - ok
22:26:54.0681 7036 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:26:54.0683 7036 BrUsbSer - ok
22:26:54.0736 7036 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
22:26:54.0738 7036 BthEnum - ok
22:26:54.0752 7036 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
22:26:54.0755 7036 BTHMODEM - ok
22:26:54.0778 7036 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
22:26:54.0781 7036 BthPan - ok
22:26:54.0802 7036 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
22:26:54.0820 7036 BTHPORT - ok
22:26:54.0850 7036 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
22:26:54.0852 7036 bthserv - ok
22:26:54.0871 7036 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
22:26:54.0873 7036 BTHUSB - ok
22:26:54.0891 7036 [ 2D19C44A9D0E175BC93D23C562A0AA01 ] btwampfl C:\Windows\system32\drivers\btwampfl.sys
22:26:54.0898 7036 btwampfl - ok
22:26:54.0931 7036 [ AD4B38BF35896778236B40CF453F58AA ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
22:26:54.0935 7036 btwaudio - ok
22:26:54.0962 7036 [ C2A11549E72841EF9FC5AF14C7F29233 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
22:26:54.0966 7036 btwavdt - ok
22:26:55.0031 7036 [ 3D13849A1F9E7C61096294B955EFCDF2 ] btwdins c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
22:26:55.0057 7036 btwdins - ok
22:26:55.0074 7036 [ 06E96CF5C046F7CAB4AA131DF6E2B9BC ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
22:26:55.0077 7036 btwl2cap - ok
22:26:55.0088 7036 [ D8270F1D59DD10743C8E62D806AF85E2 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
22:26:55.0090 7036 btwrchid - ok
22:26:55.0148 7036 [ F9A6DEAC2776A85F23B55E044CD4BC10 ] buttonsvc64 c:\Program Files\Dell\Dell ControlPoint\DCPButtonSvc.exe
22:26:55.0155 7036 buttonsvc64 - ok
22:26:55.0170 7036 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:26:55.0173 7036 cdfs - ok
22:26:55.0222 7036 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:26:55.0226 7036 cdrom - ok
22:26:55.0266 7036 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
22:26:55.0269 7036 CertPropSvc - ok
22:26:55.0292 7036 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
22:26:55.0294 7036 circlass - ok
22:26:55.0326 7036 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
22:26:55.0333 7036 CLFS - ok
22:26:55.0368 7036 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:26:55.0371 7036 clr_optimization_v2.0.50727_32 - ok
22:26:55.0416 7036 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:26:55.0419 7036 clr_optimization_v2.0.50727_64 - ok
22:26:55.0471 7036 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:26:55.0475 7036 clr_optimization_v4.0.30319_32 - ok
22:26:55.0499 7036 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
22:26:55.0503 7036 clr_optimization_v4.0.30319_64 - ok
22:26:55.0529 7036 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:26:55.0531 7036 CmBatt - ok
22:26:55.0550 7036 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:26:55.0552 7036 cmdide - ok
22:26:55.0593 7036 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
22:26:55.0601 7036 CNG - ok
22:26:55.0614 7036 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
22:26:55.0614 7036 Compbatt - ok
22:26:55.0659 7036 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
22:26:55.0661 7036 CompositeBus - ok
22:26:55.0676 7036 COMSysApp - ok
22:26:55.0697 7036 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
22:26:55.0699 7036 crcdisk - ok
22:26:55.0762 7036 [ 95669E82007DBD7BC3A7093252905612 ] Credential Vault Host Control Service C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe
22:26:55.0791 7036 Credential Vault Host Control Service - ok
22:26:55.0808 7036 [ 33BD6D2F7F3906E07913BE4D05E6ABFD ] Credential Vault Host Storage C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe
22:26:55.0811 7036 Credential Vault Host Storage - ok
22:26:55.0853 7036 [ 4F5414602E2544A4554D95517948B705 ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:26:55.0857 7036 CryptSvc - ok
22:26:55.0897 7036 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
22:26:55.0908 7036 CSC - ok
22:26:55.0935 7036 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
22:26:55.0957 7036 CscService - ok
22:26:55.0977 7036 [ 8CE04A5BDD2CE6E62CE02A1C27093104 ] CtClsFlt C:\Windows\system32\DRIVERS\CtClsFlt.sys
22:26:55.0981 7036 CtClsFlt - ok
22:26:56.0009 7036 [ A84CAAE89B487931200B969D94018AFA ] cvusbdrv C:\Windows\system32\Drivers\cvusbdrv.sys
22:26:56.0011 7036 cvusbdrv - ok
22:26:56.0036 7036 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
22:26:56.0057 7036 DcomLaunch - ok
22:26:56.0107 7036 [ BDF7AF2604E89E8E5CB6AE4AE88EFCFA ] dcpsysmgrsvc c:\Program Files\Dell\Dell ControlPoint\System Manager\DCPSysMgrSvc.exe
22:26:56.0124 7036 dcpsysmgrsvc - ok
22:26:56.0153 7036 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
22:26:56.0161 7036 defragsvc - ok
22:26:56.0194 7036 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:26:56.0196 7036 DfsC - ok
22:26:56.0224 7036 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
22:26:56.0232 7036 Dhcp - ok
22:26:56.0261 7036 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
22:26:56.0263 7036 discache - ok
22:26:56.0288 7036 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
22:26:56.0291 7036 Disk - ok
22:26:56.0330 7036 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:26:56.0335 7036 Dnscache - ok
22:26:56.0372 7036 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
22:26:56.0379 7036 dot3svc - ok
22:26:56.0398 7036 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
22:26:56.0404 7036 DPS - ok
22:26:56.0436 7036 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:26:56.0438 7036 drmkaud - ok
22:26:56.0510 7036 [ AD00375D9ABA8DB72D0E38129AF0277A ] DVMIO D:\Program Files (x86)\Dell\Reader 2.1\dvmio_x64.sys
22:26:56.0538 7036 DVMIO - ok
22:26:56.0623 7036 [ 6F0952F5A3C8D9E90DF1F88B84541145 ] DvmMDES D:\Program Files (x86)\Dell\Reader 2.1\DVMExportService.exe
22:26:56.0641 7036 DvmMDES - ok
22:26:56.0725 7036 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:26:56.0754 7036 DXGKrnl - ok
22:26:56.0783 7036 [ 60C5B36E07BE8B3AF3911C3D10303CFE ] e1kexpress C:\Windows\system32\DRIVERS\e1k62x64.sys
22:26:56.0791 7036 e1kexpress - ok
22:26:56.0815 7036 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
22:26:56.0820 7036 EapHost - ok
22:26:56.0915 7036 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
22:26:57.0006 7036 ebdrv - ok
22:26:57.0043 7036 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
22:26:57.0047 7036 EFS - ok
22:26:57.0088 7036 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:26:57.0108 7036 ehRecvr - ok
22:26:57.0133 7036 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
22:26:57.0136 7036 ehSched - ok
22:26:57.0171 7036 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
22:26:57.0188 7036 elxstor - ok
22:26:57.0213 7036 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:26:57.0216 7036 ErrDev - ok
22:26:57.0252 7036 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
22:26:57.0260 7036 EventSystem - ok
22:26:57.0283 7036 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
22:26:57.0290 7036 exfat - ok
22:26:57.0314 7036 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:26:57.0318 7036 fastfat - ok
22:26:57.0363 7036 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
22:26:57.0389 7036 Fax - ok
22:26:57.0408 7036 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:26:57.0410 7036 fdc - ok
22:26:57.0430 7036 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
22:26:57.0432 7036 fdPHost - ok
22:26:57.0447 7036 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
22:26:57.0450 7036 FDResPub - ok
22:26:57.0466 7036 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:26:57.0469 7036 FileInfo - ok
22:26:57.0479 7036 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:26:57.0481 7036 Filetrace - ok
22:26:57.0591 7036 [ BB0667B0171B632B97EA759515476F07 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
22:26:57.0617 7036 FLEXnet Licensing Service - ok
22:26:57.0635 7036 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:26:57.0637 7036 flpydisk - ok
22:26:57.0685 7036 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:26:57.0691 7036 FltMgr - ok
22:26:57.0753 7036 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
22:26:57.0791 7036 FontCache - ok
22:26:57.0843 7036 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:26:57.0846 7036 FontCache3.0.0.0 - ok
22:26:57.0865 7036 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:26:57.0868 7036 FsDepends - ok
22:26:57.0893 7036 [ 07DA62C960DDCCC2D35836AEAB4FC578 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
22:26:57.0896 7036 fssfltr - ok
22:26:58.0010 7036 [ 28DDEEEC44E988657B732CF404D504CB ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
22:26:58.0078 7036 fsssvc - ok
22:26:58.0117 7036 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:26:58.0120 7036 Fs_Rec - ok
22:26:58.0164 7036 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:26:58.0169 7036 fvevol - ok
22:26:58.0187 7036 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
22:26:58.0189 7036 gagp30kx - ok
22:26:58.0232 7036 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
22:26:58.0258 7036 gpsvc - ok
22:26:58.0707 7036 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:26:58.0710 7036 gupdate - ok
22:26:58.0729 7036 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:26:58.0731 7036 gupdatem - ok
22:26:58.0776 7036 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
22:26:58.0781 7036 gusvc - ok
22:26:58.0798 7036 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:26:58.0801 7036 hcw85cir - ok
22:26:58.0843 7036 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
22:26:58.0846 7036 HDAudBus - ok
22:26:58.0867 7036 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
22:26:58.0869 7036 HidBatt - ok
22:26:58.0886 7036 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
22:26:58.0889 7036 HidBth - ok
22:26:58.0908 7036 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
22:26:58.0912 7036 HidIr - ok
22:26:58.0944 7036 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
22:26:58.0947 7036 hidserv - ok
22:26:58.0988 7036 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:26:58.0991 7036 HidUsb - ok
22:26:59.0021 7036 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:26:59.0025 7036 hkmsvc - ok
22:26:59.0063 7036 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:26:59.0069 7036 HomeGroupListener - ok
22:26:59.0102 7036 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:26:59.0108 7036 HomeGroupProvider - ok
22:26:59.0134 7036 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
22:26:59.0137 7036 HpSAMD - ok
22:26:59.0189 7036 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:26:59.0212 7036 HTTP - ok
22:26:59.0250 7036 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:26:59.0250 7036 hwpolicy - ok
22:26:59.0263 7036 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
22:26:59.0266 7036 i8042prt - ok
22:26:59.0296 7036 [ ABBF174CB394F5C437410A788B7E404A ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
22:26:59.0303 7036 iaStor - ok
22:26:59.0373 7036 [ 31A0E93CDF29007D6C6FFFB632F375ED ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
22:26:59.0375 7036 IAStorDataMgrSvc - ok
22:26:59.0418 7036 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:26:59.0426 7036 iaStorV - ok
22:26:59.0481 7036 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:26:59.0507 7036 idsvc - ok
22:26:59.0534 7036 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
22:26:59.0539 7036 iirsp - ok
22:26:59.0593 7036 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
22:26:59.0618 7036 IKEEXT - ok
22:26:59.0644 7036 [ 36FDF367A1DABFF903E2214023D71368 ] Impcd C:\Windows\system32\DRIVERS\Impcd.sys
22:26:59.0649 7036 Impcd - ok
22:26:59.0700 7036 [ A4A87C2F228DD2AC93DAE94E103792D3 ] InstallFilterService C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\InstallFilterService.exe
22:26:59.0702 7036 InstallFilterService - ok
22:26:59.0736 7036 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
22:26:59.0738 7036 intelide - ok
22:26:59.0759 7036 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:26:59.0761 7036 intelppm - ok
22:26:59.0780 7036 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:26:59.0784 7036 IPBusEnum - ok
22:26:59.0828 7036 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:26:59.0831 7036 IpFilterDriver - ok
22:26:59.0858 7036 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:26:59.0879 7036 iphlpsvc - ok
22:26:59.0915 7036 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
22:26:59.0918 7036 IPMIDRV - ok
22:26:59.0939 7036 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:26:59.0942 7036 IPNAT - ok
22:26:59.0969 7036 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:26:59.0971 7036 IRENUM - ok
22:26:59.0984 7036 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:26:59.0986 7036 isapnp - ok
22:27:00.0012 7036 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
22:27:00.0018 7036 iScsiPrt - ok
22:27:00.0068 7036 [ 2F9F76349BB8C578873A58C840BA0589 ] ivusb C:\Windows\system32\DRIVERS\ivusb.sys
22:27:00.0094 7036 ivusb - ok
22:27:00.0117 7036 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
22:27:00.0120 7036 kbdclass - ok
22:27:00.0129 7036 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
22:27:00.0131 7036 kbdhid - ok
22:27:00.0145 7036 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
22:27:00.0147 7036 KeyIso - ok
22:27:00.0180 7036 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:27:00.0182 7036 KSecDD - ok
22:27:00.0215 7036 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:27:00.0218 7036 KSecPkg - ok
22:27:00.0243 7036 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
22:27:00.0246 7036 ksthunk - ok
22:27:00.0278 7036 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
22:27:00.0287 7036 KtmRm - ok
22:27:00.0337 7036 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
22:27:00.0345 7036 LanmanServer - ok
22:27:00.0382 7036 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:27:00.0387 7036 LanmanWorkstation - ok
22:27:00.0419 7036 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:27:00.0421 7036 lltdio - ok
22:27:00.0450 7036 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:27:00.0458 7036 lltdsvc - ok
22:27:00.0475 7036 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
22:27:00.0478 7036 lmhosts - ok
22:27:00.0507 7036 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
22:27:00.0510 7036 LSI_FC - ok
22:27:00.0528 7036 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
22:27:00.0531 7036 LSI_SAS - ok
22:27:00.0555 7036 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:27:00.0558 7036 LSI_SAS2 - ok
22:27:00.0578 7036 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:27:00.0581 7036 LSI_SCSI - ok
22:27:00.0617 7036 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
22:27:00.0620 7036 luafv - ok
22:27:00.0650 7036 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:27:00.0654 7036 Mcx2Svc - ok
22:27:00.0668 7036 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
22:27:00.0671 7036 megasas - ok
22:27:00.0694 7036 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
22:27:00.0701 7036 MegaSR - ok
22:27:00.0772 7036 Microsoft SharePoint Workspace Audit Service - ok
22:27:00.0798 7036 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
22:27:00.0802 7036 MMCSS - ok
22:27:00.0815 7036 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
22:27:00.0818 7036 Modem - ok
22:27:00.0842 7036 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:27:00.0844 7036 monitor - ok
22:27:00.0882 7036 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:27:00.0884 7036 mouclass - ok
22:27:00.0899 7036 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:27:00.0901 7036 mouhid - ok
22:27:00.0934 7036 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:27:00.0937 7036 mountmgr - ok
22:27:00.0986 7036 [ 94C66EDEDCDB6A126880472F9A704D8E ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
22:27:00.0990 7036 MpFilter - ok
22:27:01.0019 7036 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
22:27:01.0023 7036 mpio - ok
22:27:01.0116 7036 MpKslb928a168 - ok
22:27:01.0132 7036 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:27:01.0136 7036 mpsdrv - ok
22:27:01.0186 7036 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:27:01.0212 7036 MpsSvc - ok
22:27:01.0248 7036 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:27:01.0253 7036 MRxDAV - ok
22:27:01.0293 7036 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:27:01.0296 7036 mrxsmb - ok
22:27:01.0329 7036 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:27:01.0335 7036 mrxsmb10 - ok
22:27:01.0366 7036 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:27:01.0369 7036 mrxsmb20 - ok
22:27:01.0385 7036 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
22:27:01.0388 7036 msahci - ok
22:27:01.0404 7036 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:27:01.0408 7036 msdsm - ok
22:27:01.0428 7036 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
22:27:01.0435 7036 MSDTC - ok
22:27:01.0460 7036 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:27:01.0461 7036 Msfs - ok
22:27:01.0480 7036 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:27:01.0482 7036 mshidkmdf - ok
22:27:01.0508 7036 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:27:01.0509 7036 msisadrv - ok
22:27:01.0539 7036 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:27:01.0555 7036 MSiSCSI - ok
22:27:01.0561 7036 msiserver - ok
22:27:01.0581 7036 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:27:01.0583 7036 MSKSSRV - ok
22:27:01.0663 7036 [ 59FAAF2C83C8169EA20F9E335E418907 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
22:27:01.0665 7036 MsMpSvc - ok
22:27:01.0684 7036 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:27:01.0686 7036 MSPCLOCK - ok
22:27:01.0703 7036 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:27:01.0706 7036 MSPQM - ok
22:27:01.0740 7036 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:27:01.0747 7036 MsRPC - ok
22:27:01.0780 7036 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
22:27:01.0781 7036 mssmbios - ok
22:27:01.0798 7036 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:27:01.0801 7036 MSTEE - ok
22:27:01.0814 7036 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
22:27:01.0817 7036 MTConfig - ok
22:27:01.0835 7036 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
22:27:01.0836 7036 Mup - ok
22:27:01.0874 7036 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
22:27:01.0885 7036 napagent - ok
22:27:01.0914 7036 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:27:01.0922 7036 NativeWifiP - ok
22:27:01.0985 7036 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
22:27:02.0010 7036 NDIS - ok
22:27:02.0023 7036 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:27:02.0026 7036 NdisCap - ok
22:27:02.0047 7036 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:27:02.0050 7036 NdisTapi - ok
22:27:02.0082 7036 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:27:02.0084 7036 Ndisuio - ok
22:27:02.0122 7036 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:27:02.0126 7036 NdisWan - ok
22:27:02.0166 7036 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:27:02.0168 7036 NDProxy - ok
22:27:02.0184 7036 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:27:02.0185 7036 NetBIOS - ok
22:27:02.0228 7036 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:27:02.0233 7036 NetBT - ok
22:27:02.0249 7036 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
22:27:02.0252 7036 Netlogon - ok
22:27:02.0286 7036 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
22:27:02.0295 7036 Netman - ok
22:27:02.0318 7036 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
22:27:02.0334 7036 netprofm - ok
22:27:02.0357 7036 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:27:02.0361 7036 NetTcpPortSharing - ok
22:27:02.0387 7036 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
22:27:02.0390 7036 nfrd960 - ok
22:27:02.0458 7036 [ 91B4E0273D2F6C24EF845F2B41311289 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
22:27:02.0464 7036 NisDrv - ok
22:27:02.0528 7036 [ 10A43829A9E606AF3EEF25A1C1665923 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
22:27:02.0534 7036 NisSrv - ok
22:27:02.0590 7036 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
22:27:02.0598 7036 NlaSvc - ok
22:27:02.0642 7036 [ 1E8281A0BC4358CF816754E0A195D329 ] NovacomD C:\Program Files\Palm, Inc\novacomd\amd64\novacomd.exe
22:27:02.0644 7036 NovacomD - ok
22:27:02.0662 7036 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:27:02.0663 7036 Npfs - ok
22:27:02.0678 7036 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
22:27:02.0682 7036 nsi - ok
22:27:02.0695 7036 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:27:02.0696 7036 nsiproxy - ok
22:27:02.0765 7036 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:27:02.0817 7036 Ntfs - ok
22:27:02.0832 7036 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
22:27:02.0834 7036 Null - ok
22:27:02.0872 7036 [ 960E39A54E525DF58CB29193147DFFA1 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
22:27:02.0876 7036 NVHDA - ok
22:27:03.0164 7036 [ CC1EFEA1F0AB17E59BD4B5BAFF3E5CB0 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:27:03.0416 7036 nvlddmkm - ok
22:27:03.0460 7036 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:27:03.0464 7036 nvraid - ok
22:27:03.0499 7036 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:27:03.0503 7036 nvstor - ok
22:27:03.0545 7036 [ 39F933CA2798156B0B7A19D104B73B9A ] nvsvc C:\Windows\system32\nvvsvc.exe
22:27:03.0577 7036 nvsvc - ok
22:27:03.0617 7036 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:27:03.0620 7036 nv_agp - ok
22:27:03.0651 7036 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
22:27:03.0654 7036 ohci1394 - ok
22:27:03.0722 7036 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:27:03.0726 7036 ose - ok
22:27:03.0916 7036 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
22:27:04.0035 7036 osppsvc - ok
22:27:04.0071 7036 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:27:04.0077 7036 p2pimsvc - ok
22:27:04.0093 7036 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
22:27:04.0100 7036 p2psvc - ok
22:27:04.0130 7036 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
22:27:04.0133 7036 Parport - ok
22:27:04.0160 7036 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:27:04.0162 7036 partmgr - ok
22:27:04.0187 7036 [ 363B3F857ABEE85767E01E3044C539CD ] PBADRV C:\Windows\system32\DRIVERS\PBADRV.sys
22:27:04.0188 7036 PBADRV - ok
22:27:04.0206 7036 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:27:04.0213 7036 PcaSvc - ok
22:27:04.0248 7036 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
22:27:04.0252 7036 pci - ok
22:27:04.0265 7036 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
22:27:04.0268 7036 pciide - ok
22:27:04.0285 7036 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
22:27:04.0290 7036 pcmcia - ok
22:27:04.0306 7036 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
22:27:04.0307 7036 pcw - ok
22:27:04.0331 7036 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:27:04.0354 7036 PEAUTH - ok
22:27:04.0399 7036 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
22:27:04.0433 7036 PeerDistSvc - ok
22:27:04.0529 7036 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
22:27:04.0536 7036 PerfHost - ok
22:27:04.0607 7036 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
22:27:04.0641 7036 pla - ok
22:27:04.0685 7036 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:27:04.0702 7036 PlugPlay - ok
22:27:04.0725 7036 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:27:04.0729 7036 PNRPAutoReg - ok
22:27:04.0749 7036 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:27:04.0755 7036 PNRPsvc - ok
22:27:04.0795 7036 [ 32D374C60778253B81FA76C2FE19E155 ] Point64 C:\Windows\system32\DRIVERS\point64.sys
22:27:04.0798 7036 Point64 - ok
22:27:04.0823 7036 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:27:04.0833 7036 PolicyAgent - ok
22:27:04.0870 7036 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
22:27:04.0876 7036 Power - ok
22:27:04.0915 7036 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:27:04.0919 7036 PptpMiniport - ok
22:27:04.0935 7036 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
22:27:04.0938 7036 Processor - ok
22:27:04.0975 7036 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
22:27:04.0981 7036 ProfSvc - ok
22:27:04.0997 7036 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:27:04.0999 7036 ProtectedStorage - ok
22:27:05.0040 7036 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:27:05.0043 7036 Psched - ok
22:27:05.0094 7036 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
22:27:05.0136 7036 ql2300 - ok
22:27:05.0155 7036 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
22:27:05.0159 7036 ql40xx - ok
22:27:05.0186 7036 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
22:27:05.0193 7036 QWAVE - ok
22:27:05.0209 7036 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:27:05.0212 7036 QWAVEdrv - ok
22:27:05.0226 7036 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:27:05.0228 7036 RasAcd - ok
22:27:05.0253 7036 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:27:05.0255 7036 RasAgileVpn - ok
22:27:05.0266 7036 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
22:27:05.0272 7036 RasAuto - ok
22:27:05.0306 7036 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:27:05.0310 7036 Rasl2tp - ok
22:27:05.0339 7036 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
22:27:05.0355 7036 RasMan - ok
22:27:05.0371 7036 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:27:05.0374 7036 RasPppoe - ok
22:27:05.0391 7036 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:27:05.0394 7036 RasSstp - ok
22:27:05.0429 7036 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:27:05.0435 7036 rdbss - ok
22:27:05.0449 7036 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:27:05.0452 7036 rdpbus - ok
22:27:05.0465 7036 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:27:05.0467 7036 RDPCDD - ok
22:27:05.0500 7036 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
22:27:05.0504 7036 RDPDR - ok
22:27:05.0519 7036 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:27:05.0520 7036 RDPENCDD - ok
22:27:05.0531 7036 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:27:05.0531 7036 RDPREFMP - ok
22:27:05.0568 7036 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:27:05.0572 7036 RDPWD - ok
22:27:05.0605 7036 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:27:05.0608 7036 rdyboost - ok
22:27:05.0633 7036 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
22:27:05.0638 7036 RemoteAccess - ok
22:27:05.0657 7036 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:27:05.0663 7036 RemoteRegistry - ok
22:27:05.0693 7036 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
22:27:05.0697 7036 RFCOMM - ok
22:27:05.0725 7036 [ 3DCA561AAF776AA2E356FB5B142AA5F8 ] rimspci C:\Windows\system32\DRIVERS\rimspe64.sys
22:27:05.0728 7036 rimspci - ok
22:27:05.0748 7036 [ 91C2AE052652E7ABD88155F11D667ED2 ] risdpcie C:\Windows\system32\DRIVERS\risdpe64.sys
22:27:05.0751 7036 risdpcie - ok
22:27:05.0770 7036 [ A4579105A3C5B6290701EAD0C153E07A ] rixdpcie C:\Windows\system32\DRIVERS\rixdpe64.sys
22:27:05.0773 7036 rixdpcie - ok
22:27:05.0798 7036 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:27:05.0803 7036 RpcEptMapper - ok
22:27:05.0824 7036 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
22:27:05.0828 7036 RpcLocator - ok
22:27:05.0871 7036 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
22:27:05.0879 7036 RpcSs - ok
22:27:05.0896 7036 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:27:05.0899 7036 rspndr - ok
22:27:05.0930 7036 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
22:27:05.0933 7036 s3cap - ok
22:27:05.0945 7036 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
22:27:05.0947 7036 SamSs - ok
22:27:05.0968 7036 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:27:05.0971 7036 sbp2port - ok
22:27:05.0992 7036 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:27:05.0998 7036 SCardSvr - ok
22:27:06.0033 7036 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:27:06.0035 7036 scfilter - ok
22:27:06.0072 7036 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
22:27:06.0106 7036 Schedule - ok
22:27:06.0141 7036 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
22:27:06.0143 7036 SCPolicySvc - ok
22:27:06.0162 7036 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:27:06.0169 7036 SDRSVC - ok
22:27:06.0183 7036 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:27:06.0186 7036 secdrv - ok
22:27:06.0199 7036 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
22:27:06.0203 7036 seclogon - ok
22:27:06.0309 7036 [ 38A40E111ABDF0862B72BB37A8BD5E62 ] SecureStorageService C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe
22:27:06.0582 7036 SecureStorageService - ok
22:27:06.0611 7036 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
22:27:06.0613 7036 SENS - ok
22:27:06.0630 7036 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:27:06.0633 7036 SensrSvc - ok
22:27:06.0650 7036 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:27:06.0653 7036 Serenum - ok
22:27:06.0677 7036 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:27:06.0680 7036 Serial - ok
22:27:06.0722 7036 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
22:27:06.0724 7036 sermouse - ok
22:27:06.0771 7036 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
22:27:06.0776 7036 SessionEnv - ok
22:27:06.0807 7036 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
22:27:06.0809 7036 sffdisk - ok
22:27:06.0825 7036 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:27:06.0827 7036 sffp_mmc - ok
22:27:06.0835 7036 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
22:27:06.0839 7036 sffp_sd - ok
22:27:06.0862 7036 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
22:27:06.0864 7036 sfloppy - ok
22:27:06.0902 7036 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:27:06.0911 7036 SharedAccess - ok
22:27:06.0948 7036 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:27:06.0958 7036 ShellHWDetection - ok
22:27:06.0984 7036 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:27:06.0986 7036 SiSRaid2 - ok
22:27:07.0001 7036 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
22:27:07.0004 7036 SiSRaid4 - ok
22:27:07.0063 7036 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:27:07.0068 7036 SkypeUpdate - ok
22:27:07.0092 7036 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:27:07.0096 7036 Smb - ok
22:27:07.0133 7036 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:27:07.0138 7036 SNMPTRAP - ok
22:27:07.0148 7036 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
22:27:07.0150 7036 spldr - ok
22:27:07.0195 7036 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
22:27:07.0218 7036 Spooler - ok
22:27:07.0321 7036 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
22:27:07.0406 7036 sppsvc - ok
22:27:07.0421 7036 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:27:07.0426 7036 sppuinotify - ok
22:27:07.0490 7036 [ D519AD2DE7968CD2B47FEA807C5B29B2 ] sptd C:\Windows\System32\Drivers\sptd.sys
22:27:07.0491 7036 Suspicious file (NoAccess): C:\Windows\System32\Drivers\sptd.sys. md5: D519AD2DE7968CD2B47FEA807C5B29B2
22:27:07.0492 7036 sptd ( LockedFile.Multi.Generic ) - warning
22:27:07.0492 7036 sptd - detected LockedFile.Multi.Generic (1)
22:27:07.0531 7036 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
22:27:07.0540 7036 srv - ok
22:27:07.0580 7036 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:27:07.0588 7036 srv2 - ok
22:27:07.0627 7036 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:27:07.0631 7036 srvnet - ok
22:27:07.0656 7036 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:27:07.0664 7036 SSDPSRV - ok
22:27:07.0680 7036 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:27:07.0685 7036 SstpSvc - ok
22:27:07.0745 7036 [ 82611146BAE413CD44A66B8DA6DA9945 ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
22:27:07.0750 7036 STacSV - ok
22:27:07.0779 7036 [ C568FDB21CE77A44FD166F28F104AC46 ] stdflt C:\Windows\system32\DRIVERS\stdfltn.sys
22:27:07.0780 7036 stdflt - ok
22:27:07.0802 7036 Steam Client Service - ok
22:27:07.0852 7036 [ 9BF7E58D9113CE15CF4F1E1B18CEFF83 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:27:07.0860 7036 Stereo Service - ok
22:27:07.0885 7036 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
22:27:07.0888 7036 stexstor - ok
22:27:07.0910 7036 [ 7F43422BEE65CD1284FED6C4FA577D5E ] STHDA C:\Windows\system32\DRIVERS\stwrt64.sys
22:27:07.0919 7036 STHDA - ok
22:27:07.0963 7036 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
22:27:07.0985 7036 stisvc - ok
22:27:08.0028 7036 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
22:27:08.0029 7036 storflt - ok
22:27:08.0051 7036 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
22:27:08.0055 7036 StorSvc - ok
22:27:08.0072 7036 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
22:27:08.0075 7036 storvsc - ok
22:27:08.0088 7036 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
22:27:08.0090 7036 swenum - ok
22:27:08.0199 7036 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
22:27:08.0208 7036 SwitchBoard - ok
22:27:08.0235 7036 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
22:27:08.0255 7036 swprv - ok
22:27:08.0321 7036 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
22:27:08.0381 7036 SysMain - ok
22:27:08.0414 7036 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:27:08.0420 7036 TabletInputService - ok
22:27:08.0440 7036 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
22:27:08.0448 7036 TapiSrv - ok
22:27:08.0465 7036 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
22:27:08.0470 7036 TBS - ok
22:27:08.0533 7036 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:27:08.0578 7036 Tcpip - ok
22:27:08.0633 7036 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:27:08.0650 7036 TCPIP6 - ok
22:27:08.0993 7036 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:27:08.0996 7036 tcpipreg - ok
22:27:09.0065 7036 [ 69F1A38A6DBFE682491CB61A596662E3 ] tcsd_win32.exe C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe
22:27:09.0262 7036 tcsd_win32.exe - ok
22:27:09.0367 7036 [ 8C6740F641A1C3D56A1A396AEB0158E7 ] TdmService C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
22:27:09.0419 7036 TdmService - ok
22:27:09.0444 7036 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:27:09.0446 7036 TDPIPE - ok
22:27:09.0478 7036 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:27:09.0480 7036 TDTCP - ok
22:27:09.0530 7036 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:27:09.0534 7036 tdx - ok
22:27:09.0651 7036 [ 8A9828975A857E477EFEF5A61BA45AC0 ] TeamViewer6 C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
22:27:09.0719 7036 TeamViewer6 - ok
22:27:09.0754 7036 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
22:27:09.0756 7036 TermDD - ok
22:27:09.0785 7036 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
22:27:09.0810 7036 TermService - ok
22:27:09.0829 7036 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
22:27:09.0834 7036 Themes - ok
22:27:09.0857 7036 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
22:27:09.0860 7036 THREADORDER - ok
22:27:09.0879 7036 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
22:27:09.0885 7036 TrkWks - ok
22:27:09.0941 7036 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:27:09.0946 7036 TrustedInstaller - ok
22:27:09.0985 7036 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:27:09.0988 7036 tssecsrv - ok
22:27:10.0043 7036 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
22:27:10.0045 7036 TsUsbFlt - ok
22:27:10.0102 7036 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:27:10.0106 7036 tunnel - ok
22:27:10.0133 7036 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
22:27:10.0135 7036 uagp35 - ok
22:27:10.0160 7036 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:27:10.0168 7036 udfs - ok
22:27:10.0191 7036 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:27:10.0196 7036 UI0Detect - ok
22:27:10.0226 7036 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:27:10.0229 7036 uliagpkx - ok
22:27:10.0273 7036 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
22:27:10.0276 7036 umbus - ok
22:27:10.0295 7036 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
22:27:10.0297 7036 UmPass - ok
22:27:10.0336 7036 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
22:27:10.0343 7036 UmRdpService - ok
22:27:10.0360 7036 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
22:27:10.0377 7036 upnphost - ok
22:27:10.0407 7036 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
22:27:10.0411 7036 usbaudio - ok
22:27:10.0445 7036 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:27:10.0448 7036 usbccgp - ok
22:27:10.0470 7036 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:27:10.0474 7036 usbcir - ok
22:27:10.0509 7036 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
22:27:10.0512 7036 usbehci - ok
22:27:10.0546 7036 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:27:10.0553 7036 usbhub - ok
22:27:10.0567 7036 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
22:27:10.0570 7036 usbohci - ok
22:27:10.0594 7036 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:27:10.0596 7036 usbprint - ok
22:27:10.0636 7036 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
22:27:10.0638 7036 usbscan - ok
22:27:10.0666 7036 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:27:10.0669 7036 USBSTOR - ok
22:27:10.0699 7036 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:27:10.0701 7036 usbuhci - ok
22:27:10.0737 7036 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
22:27:10.0749 7036 usbvideo - ok
22:27:10.0768 7036 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
22:27:10.0772 7036 UxSms - ok
22:27:10.0788 7036 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
22:27:10.0790 7036 VaultSvc - ok
22:27:10.0803 7036 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
22:27:10.0805 7036 vdrvroot - ok
22:27:10.0848 7036 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
22:27:10.0868 7036 vds - ok
22:27:10.0881 7036 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:27:10.0883 7036 vga - ok
22:27:10.0897 7036 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
22:27:10.0899 7036 VgaSave - ok
22:27:10.0920 7036 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
22:27:10.0925 7036 vhdmp - ok
22:27:10.0955 7036 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
22:27:10.0958 7036 viaide - ok
22:27:10.0975 7036 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
22:27:10.0980 7036 vmbus - ok
22:27:10.0998 7036 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
22:27:11.0001 7036 VMBusHID - ok
22:27:11.0020 7036 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:27:11.0022 7036 volmgr - ok
22:27:11.0060 7036 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:27:11.0065 7036 volmgrx - ok
22:27:11.0079 7036 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:27:11.0085 7036 volsnap - ok
22:27:11.0119 7036 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
22:27:11.0124 7036 vsmraid - ok
22:27:11.0187 7036 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
22:27:11.0231 7036 VSS - ok
22:27:11.0245 7036 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:27:11.0248 7036 vwifibus - ok
22:27:11.0274 7036 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:27:11.0277 7036 vwififlt - ok
22:27:11.0301 7036 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
22:27:11.0302 7036 vwifimp - ok
22:27:11.0332 7036 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
22:27:11.0349 7036 W32Time - ok
22:27:11.0373 7036 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
22:27:11.0376 7036 WacomPen - ok
22:27:11.0403 7036 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:27:11.0406 7036 WANARP - ok
22:27:11.0412 7036 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:27:11.0414 7036 Wanarpv6 - ok
22:27:11.0483 7036 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:27:11.0519 7036 WatAdminSvc - ok
22:27:11.0558 7036 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
22:27:11.0592 7036 wbengine - ok
22:27:11.0599 7036 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:27:11.0604 7036 WbioSrvc - ok
22:27:11.0637 7036 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:27:11.0647 7036 wcncsvc - ok
22:27:11.0662 7036 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:27:11.0667 7036 WcsPlugInService - ok
22:27:11.0686 7036 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
22:27:11.0688 7036 Wd - ok
22:27:11.0725 7036 [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM C:\Windows\system32\DRIVERS\wdcsam64.sys
22:27:11.0727 7036 WDC_SAM - ok
22:27:11.0780 7036 [ 0D3F3F586780059B427CD0E50F8AF7D5 ] WDDMService C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
22:27:11.0786 7036 WDDMService - ok
22:27:11.0815 7036 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:27:11.0836 7036 Wdf01000 - ok
22:27:11.0883 7036 [ DD017DEB8A60085559E94089801BCCB1 ] WDFME C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
22:27:11.0908 7036 WDFME - ok
22:27:11.0921 7036 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:27:11.0926 7036 WdiServiceHost - ok
22:27:11.0933 7036 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:27:11.0937 7036 WdiSystemHost - ok
22:27:11.0971 7036 [ 5C61701F8257BBDD41B75B22D9B8311F ] WDSC C:\Program Files (x86)\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
22:27:11.0980 7036 WDSC - ok
22:27:12.0021 7036 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
22:27:12.0029 7036 WebClient - ok
22:27:12.0043 7036 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:27:12.0050 7036 Wecsvc - ok
22:27:12.0057 7036 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:27:12.0061 7036 wercplsupport - ok
22:27:12.0081 7036 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
22:27:12.0085 7036 WerSvc - ok
22:27:12.0110 7036 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:27:12.0112 7036 WfpLwf - ok
22:27:12.0126 7036 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:27:12.0129 7036 WIMMount - ok
22:27:12.0143 7036 WinDefend - ok
22:27:12.0151 7036 WinHttpAutoProxySvc - ok
22:27:12.0195 7036 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:27:12.0199 7036 Winmgmt - ok
22:27:12.0272 7036 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
22:27:12.0336 7036 WinRM - ok
22:27:12.0399 7036 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUSB.sys
22:27:12.0401 7036 WinUsb - ok
22:27:12.0429 7036 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
22:27:12.0454 7036 Wlansvc - ok
22:27:12.0517 7036 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
22:27:12.0519 7036 wlcrasvc - ok
22:27:12.0622 7036 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:27:12.0698 7036 wlidsvc - ok
22:27:12.0753 7036 [ 8097878196EFAA50A70B42AEF8225A61 ] wltrysvc C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
22:27:12.0755 7036 wltrysvc - ok
22:27:12.0773 7036 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
22:27:12.0775 7036 WmiAcpi - ok
22:27:12.0810 7036 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:27:12.0815 7036 wmiApSrv - ok
22:27:12.0849 7036 WMPNetworkSvc - ok
22:27:12.0882 7036 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:27:12.0887 7036 WPCSvc - ok
22:27:12.0920 7036 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:27:12.0925 7036 WPDBusEnum - ok
22:27:12.0938 7036 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:27:12.0940 7036 ws2ifsl - ok
22:27:12.0956 7036 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
22:27:12.0962 7036 wscsvc - ok
22:27:12.0969 7036 WSearch - ok
22:27:13.0063 7036 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
22:27:13.0122 7036 wuauserv - ok
22:27:13.0137 7036 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:27:13.0141 7036 WudfPf - ok
22:27:13.0177 7036 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:27:13.0182 7036 WUDFRd - ok
22:27:13.0199 7036 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:27:13.0205 7036 wudfsvc - ok
22:27:13.0220 7036 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
22:27:13.0228 7036 WwanSvc - ok
22:27:13.0274 7036 ================ Scan global ===============================
22:27:13.0294 7036 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
22:27:13.0328 7036 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
22:27:13.0341 7036 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\system32\winsrv.dll
22:27:13.0350 7036 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
22:27:13.0390 7036 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
22:27:13.0399 7036 [Global] - ok
22:27:13.0400 7036 ================ Scan MBR ==================================
22:27:13.0415 7036 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:27:13.0865 7036 \Device\Harddisk0\DR0 - ok
22:27:13.0866 7036 ================ Scan VBR ==================================
22:27:13.0870 7036 [ 0B5943A589A1EEE9E57CAD4C837A2D8E ] \Device\Harddisk0\DR0\Partition1
22:27:13.0873 7036 \Device\Harddisk0\DR0\Partition1 - ok
22:27:13.0912 7036 [ 5689D4A8BA70078B23E6B0B7AE3F2DB7 ] \Device\Harddisk0\DR0\Partition2
22:27:13.0915 7036 \Device\Harddisk0\DR0\Partition2 - ok
22:27:13.0952 7036 [ 623872D55E43DB88623D7F5E4E3AE515 ] \Device\Harddisk0\DR0\Partition3
22:27:13.0954 7036 \Device\Harddisk0\DR0\Partition3 - ok
22:27:13.0955 7036 ============================================================
22:27:13.0955 7036 Scan finished
22:27:13.0955 7036 ============================================================
22:27:13.0972 6008 Detected object count: 1
22:27:13.0972 6008 Actual detected object count: 1
22:27:47.0932 6008 sptd ( LockedFile.Multi.Generic ) - skipped by user
22:27:47.0932 6008 sptd ( LockedFile.Multi.Generic ) - User select action: Skip

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:29 PM

Posted 24 August 2012 - 10:32 PM

Run ASWMBR and ESET online scanner in safemode with networking

TDSSkiller detected a legitimate file,Skip it

#5 CharlesL

CharlesL
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:29 PM

Posted 25 August 2012 - 11:58 AM

I've been trying to get aswMBR to finish all morning but it just stops responding over and over again while it's scanning, I tried to redownload it but that didn't help.

I ran the ESET Online Scanner again and it finished with no found threats.

#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:05:29 PM

Posted 25 August 2012 - 12:55 PM

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

Download

FSS

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.


Download

adware cleaner

Launch it click on Delete

post the generated log




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users