Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Please help


  • Please log in to reply
15 replies to this topic

#1 Artanderxia

Artanderxia

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 21 September 2012 - 11:05 PM

I ran a scans with Avast and it says that it found threats but I would like to know if they're actually threats and have affected my computer.

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 21 September 2012 - 11:06 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 22 September 2012 - 10:36 PM

19:01:30.0372 1904 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
19:01:31.0752 1904 ============================================================
19:01:31.0752 1904 Current date / time: 2012/09/22 19:01:31.0752
19:01:31.0752 1904 SystemInfo:
19:01:31.0752 1904
19:01:31.0752 1904 OS Version: 6.0.6002 ServicePack: 2.0
19:01:31.0752 1904 Product type: Workstation
19:01:31.0762 1904 ComputerName: JUSTIN-PC
19:01:31.0762 1904 UserName: Justin
19:01:31.0762 1904 Windows directory: C:\Windows
19:01:31.0762 1904 System windows directory: C:\Windows
19:01:31.0762 1904 Processor architecture: Intel x86
19:01:31.0762 1904 Number of processors: 2
19:01:31.0762 1904 Page size: 0x1000
19:01:31.0762 1904 Boot type: Normal boot
19:01:31.0762 1904 ============================================================
19:01:32.0338 1904 Drive \Device\Harddisk0\DR0 - Size: 0x53D67B6000 (335.35 Gb), SectorSize: 0x200, Cylinders: 0xAB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
19:01:32.0358 1904 ============================================================
19:01:32.0358 1904 \Device\Harddisk0\DR0:
19:01:32.0358 1904 MBR partitions:
19:01:32.0358 1904 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x28D56D55
19:01:32.0358 1904 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x28D56D94, BlocksNum 0x115BC2D
19:01:32.0358 1904 ============================================================
19:01:32.0378 1904 C: <-> \Device\Harddisk0\DR0\Partition1
19:01:32.0418 1904 D: <-> \Device\Harddisk0\DR0\Partition2
19:01:32.0418 1904 ============================================================
19:01:32.0418 1904 Initialize success
19:01:32.0418 1904 ============================================================
19:02:19.0812 5988 ============================================================
19:02:19.0812 5988 Scan started
19:02:19.0812 5988 Mode: Manual;
19:02:19.0812 5988 ============================================================
19:02:20.0399 5988 ================ Scan system memory ========================
19:02:20.0399 5988 System memory - ok
19:02:20.0409 5988 ================ Scan services =============================
19:02:20.0429 5988 .dfsc - ok
19:02:20.0609 5988 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
19:02:20.0609 5988 ACPI - ok
19:02:20.0729 5988 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
19:02:20.0729 5988 AdobeARMservice - ok
19:02:20.0789 5988 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
19:02:20.0789 5988 adp94xx - ok
19:02:20.0819 5988 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
19:02:20.0819 5988 adpahci - ok
19:02:20.0829 5988 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
19:02:20.0829 5988 adpu160m - ok
19:02:20.0849 5988 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
19:02:20.0849 5988 adpu320 - ok
19:02:20.0919 5988 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
19:02:20.0919 5988 AeLookupSvc - ok
19:02:20.0979 5988 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
19:02:20.0989 5988 AFD - ok
19:02:21.0039 5988 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
19:02:21.0049 5988 agp440 - ok
19:02:21.0069 5988 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
19:02:21.0069 5988 aic78xx - ok
19:02:21.0119 5988 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
19:02:21.0119 5988 ALG - ok
19:02:21.0129 5988 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
19:02:21.0129 5988 aliide - ok
19:02:21.0149 5988 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
19:02:21.0149 5988 amdagp - ok
19:02:21.0169 5988 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
19:02:21.0169 5988 amdide - ok
19:02:21.0189 5988 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
19:02:21.0189 5988 AmdK7 - ok
19:02:21.0229 5988 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
19:02:21.0229 5988 AmdK8 - ok
19:02:21.0309 5988 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
19:02:21.0309 5988 Appinfo - ok
19:02:21.0369 5988 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
19:02:21.0369 5988 arc - ok
19:02:21.0429 5988 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
19:02:21.0449 5988 arcsas - ok
19:02:21.0549 5988 [ 40C145F12FF461A0220303BDA134F598 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:02:21.0559 5988 aspnet_state - ok
19:02:21.0619 5988 [ F5DC168BF77572D51BE28BA261B30CB4 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
19:02:21.0619 5988 aswFsBlk - ok
19:02:21.0649 5988 [ 09678587C5C70F91720631EF048B4744 ] aswFW C:\Windows\system32\drivers\aswFW.sys
19:02:21.0659 5988 aswFW - ok
19:02:21.0669 5988 Scan interrupted by user!
19:02:21.0669 5988 ================ Scan global ===============================
19:02:21.0669 5988 Scan interrupted by user!
19:02:21.0669 5988 ================ Scan MBR ==================================
19:02:21.0669 5988 Scan interrupted by user!
19:02:21.0669 5988 ================ Scan VBR ==================================
19:02:21.0669 5988 Scan interrupted by user!
19:02:21.0669 5988 ============================================================
19:02:21.0669 5988 Scan finished
19:02:21.0669 5988 ============================================================
19:02:21.0679 5276 Detected object count: 0
19:02:21.0679 5276 Actual detected object count: 0
19:02:38.0555 5224 ============================================================
19:02:38.0555 5224 Scan started
19:02:38.0555 5224 Mode: Manual; TDLFS;
19:02:38.0555 5224 ============================================================
19:02:38.0715 5224 ================ Scan system memory ========================
19:02:38.0715 5224 System memory - ok
19:02:38.0715 5224 ================ Scan services =============================
19:02:38.0755 5224 .dfsc - ok
19:02:38.0995 5224 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
19:02:38.0995 5224 ACPI - ok
19:02:39.0095 5224 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
19:02:39.0095 5224 AdobeARMservice - ok
19:02:39.0155 5224 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
19:02:39.0155 5224 adp94xx - ok
19:02:39.0175 5224 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
19:02:39.0175 5224 adpahci - ok
19:02:39.0205 5224 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
19:02:39.0205 5224 adpu160m - ok
19:02:39.0215 5224 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
19:02:39.0215 5224 adpu320 - ok
19:02:39.0255 5224 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
19:02:39.0255 5224 AeLookupSvc - ok
19:02:39.0295 5224 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
19:02:39.0295 5224 AFD - ok
19:02:39.0325 5224 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
19:02:39.0325 5224 agp440 - ok
19:02:39.0365 5224 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
19:02:39.0365 5224 aic78xx - ok
19:02:39.0415 5224 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
19:02:39.0415 5224 ALG - ok
19:02:39.0435 5224 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
19:02:39.0435 5224 aliide - ok
19:02:39.0445 5224 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
19:02:39.0445 5224 amdagp - ok
19:02:39.0465 5224 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
19:02:39.0465 5224 amdide - ok
19:02:39.0485 5224 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
19:02:39.0485 5224 AmdK7 - ok
19:02:39.0505 5224 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
19:02:39.0515 5224 AmdK8 - ok
19:02:39.0575 5224 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
19:02:39.0585 5224 Appinfo - ok
19:02:39.0635 5224 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
19:02:39.0635 5224 arc - ok
19:02:39.0645 5224 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
19:02:39.0645 5224 arcsas - ok
19:02:39.0765 5224 [ 40C145F12FF461A0220303BDA134F598 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:02:39.0765 5224 aspnet_state - ok
19:02:39.0815 5224 [ F5DC168BF77572D51BE28BA261B30CB4 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
19:02:39.0815 5224 aswFsBlk - ok
19:02:39.0865 5224 [ 09678587C5C70F91720631EF048B4744 ] aswFW C:\Windows\system32\drivers\aswFW.sys
19:02:39.0865 5224 aswFW - ok
19:02:39.0915 5224 [ 31E0D16EB06D09A248AFF20C76F9091B ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
19:02:39.0915 5224 aswKbd - ok
19:02:39.0985 5224 [ F76E51561562AC4105DBBE53FC99BC10 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
19:02:39.0995 5224 aswMonFlt - ok
19:02:40.0025 5224 [ 7B948E3657BEA62E437BC46CA6EF6012 ] aswNdis C:\Windows\system32\DRIVERS\aswNdis.sys
19:02:40.0025 5224 aswNdis - ok
19:02:40.0045 5224 [ C6E5E1E0FB3827B2359F4D394ECAA070 ] aswNdis2 C:\Windows\system32\drivers\aswNdis2.sys
19:02:40.0045 5224 aswNdis2 - ok
19:02:40.0086 5224 [ B7D5E4486BA658ED08624D8084ABB830 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
19:02:40.0086 5224 AswRdr - ok
19:02:40.0133 5224 [ 30E45AF8B4D83176CA850FC9699E860B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
19:02:40.0148 5224 aswSnx - ok
19:02:40.0194 5224 [ F04BDBCB965C05C51F4A7DE7B62063D6 ] aswSP C:\Windows\system32\drivers\aswSP.sys
19:02:40.0204 5224 aswSP - ok
19:02:40.0204 5224 [ DFE9152ABFA89BB8CFDC057409B2D4DA ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
19:02:40.0214 5224 aswTdi - ok
19:02:40.0254 5224 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
19:02:40.0254 5224 AsyncMac - ok
19:02:40.0284 5224 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
19:02:40.0294 5224 atapi - ok
19:02:40.0344 5224 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:02:40.0344 5224 AudioEndpointBuilder - ok
19:02:40.0364 5224 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
19:02:40.0374 5224 Audiosrv - ok
19:02:40.0454 5224 [ B5D974C1FD078A68C7536C561B031D39 ] Automatic LiveUpdate Scheduler C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
19:02:40.0464 5224 Automatic LiveUpdate Scheduler - ok
19:02:40.0544 5224 [ 04AC21E821F259845BD7367CEE057290 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:02:40.0544 5224 avast! Antivirus - ok
19:02:40.0574 5224 [ DD4C61CB3CDBC8B0A7D2107C6944DC71 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
19:02:40.0574 5224 avast! Firewall - ok
19:02:40.0634 5224 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
19:02:40.0634 5224 Beep - ok
19:02:40.0714 5224 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
19:02:40.0714 5224 BFE - ok
19:02:40.0804 5224 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\system32\qmgr.dll
19:02:40.0824 5224 BITS - ok
19:02:40.0824 5224 blbdrive - ok
19:02:40.0884 5224 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
19:02:40.0884 5224 bowser - ok
19:02:40.0934 5224 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
19:02:40.0934 5224 BrFiltLo - ok
19:02:40.0944 5224 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
19:02:40.0944 5224 BrFiltUp - ok
19:02:40.0994 5224 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
19:02:40.0994 5224 Browser - ok
19:02:41.0044 5224 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
19:02:41.0044 5224 Brserid - ok
19:02:41.0064 5224 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
19:02:41.0064 5224 BrSerWdm - ok
19:02:41.0074 5224 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
19:02:41.0074 5224 BrUsbMdm - ok
19:02:41.0084 5224 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
19:02:41.0094 5224 BrUsbSer - ok
19:02:41.0124 5224 BT - ok
19:02:41.0134 5224 BTCOM - ok
19:02:41.0154 5224 BTCOMBUS - ok
19:02:41.0174 5224 BtHidBus - ok
19:02:41.0204 5224 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
19:02:41.0204 5224 BTHMODEM - ok
19:02:41.0264 5224 [ 7BB8AC22BC9E6A1E7707DAECADA95CD9 ] btnetBUs C:\Windows\system32\Drivers\btnetBus.sys
19:02:41.0264 5224 btnetBUs - ok
19:02:41.0594 5224 catchme - ok
19:02:41.0644 5224 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
19:02:41.0644 5224 cdfs - ok
19:02:41.0694 5224 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
19:02:41.0694 5224 cdrom - ok
19:02:41.0744 5224 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
19:02:41.0744 5224 CertPropSvc - ok
19:02:41.0784 5224 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys
19:02:41.0794 5224 circlass - ok
19:02:41.0844 5224 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
19:02:41.0844 5224 CLFS - ok
19:02:41.0874 5224 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:02:41.0884 5224 clr_optimization_v2.0.50727_32 - ok
19:02:41.0994 5224 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:02:42.0034 5224 clr_optimization_v4.0.30319_32 - ok
19:02:42.0054 5224 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
19:02:42.0064 5224 cmdide - ok
19:02:42.0074 5224 [ 82B8C91D327CFECF76CB58716F7D4997 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
19:02:42.0074 5224 Compbatt - ok
19:02:42.0074 5224 COMSysApp - ok
19:02:42.0094 5224 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
19:02:42.0094 5224 crcdisk - ok
19:02:42.0104 5224 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
19:02:42.0104 5224 Crusoe - ok
19:02:42.0184 5224 [ 75C6A297E364014840B48ECCD7525E30 ] CryptSvc C:\Windows\system32\cryptsvc.dll
19:02:42.0184 5224 CryptSvc - ok
19:02:42.0318 5224 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
19:02:42.0349 5224 cvhsvc - ok
19:02:42.0411 5224 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
19:02:42.0451 5224 DcomLaunch - ok
19:02:42.0561 5224 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
19:02:42.0621 5224 DFSR - ok
19:02:42.0701 5224 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
19:02:42.0701 5224 Dhcp - ok
19:02:42.0741 5224 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
19:02:42.0751 5224 disk - ok
19:02:42.0771 5224 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
19:02:42.0781 5224 Dnscache - ok
19:02:42.0821 5224 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
19:02:42.0831 5224 dot3svc - ok
19:02:42.0901 5224 [ 4F59C172C094E1A1D46463A8DC061CBD ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
19:02:42.0901 5224 Dot4 - ok
19:02:42.0921 5224 [ 80BF3BA09F6F2523C8F6B7CC6DBF7BD5 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
19:02:42.0921 5224 Dot4Print - ok
19:02:42.0931 5224 [ C55004CA6B419B6695970DFE849B122F ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
19:02:42.0931 5224 dot4usb - ok
19:02:42.0971 5224 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
19:02:42.0971 5224 DPS - ok
19:02:43.0001 5224 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
19:02:43.0001 5224 drmkaud - ok
19:02:43.0061 5224 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
19:02:43.0071 5224 DXGKrnl - ok
19:02:43.0121 5224 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
19:02:43.0121 5224 E1G60 - ok
19:02:43.0161 5224 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
19:02:43.0161 5224 EapHost - ok
19:02:43.0231 5224 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
19:02:43.0231 5224 Ecache - ok
19:02:43.0311 5224 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
19:02:43.0311 5224 ehRecvr - ok
19:02:43.0341 5224 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
19:02:43.0341 5224 ehSched - ok
19:02:43.0351 5224 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
19:02:43.0351 5224 ehstart - ok
19:02:43.0411 5224 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
19:02:43.0421 5224 elxstor - ok
19:02:43.0471 5224 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
19:02:43.0481 5224 EMDMgmt - ok
19:02:43.0521 5224 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
19:02:43.0521 5224 EventSystem - ok
19:02:43.0581 5224 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
19:02:43.0581 5224 exfat - ok
19:02:43.0621 5224 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
19:02:43.0631 5224 fastfat - ok
19:02:43.0651 5224 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
19:02:43.0651 5224 fdc - ok
19:02:43.0691 5224 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
19:02:43.0691 5224 fdPHost - ok
19:02:43.0721 5224 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
19:02:43.0721 5224 FDResPub - ok
19:02:43.0781 5224 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
19:02:43.0781 5224 FileInfo - ok
19:02:43.0821 5224 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
19:02:43.0821 5224 Filetrace - ok
19:02:43.0951 5224 [ BB0667B0171B632B97EA759515476F07 ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
19:02:43.0961 5224 FLEXnet Licensing Service - ok
19:02:43.0981 5224 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
19:02:43.0981 5224 flpydisk - ok
19:02:44.0021 5224 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
19:02:44.0021 5224 FltMgr - ok
19:02:44.0091 5224 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
19:02:44.0101 5224 FontCache - ok
19:02:44.0161 5224 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
19:02:44.0161 5224 FontCache3.0.0.0 - ok
19:02:44.0201 5224 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
19:02:44.0201 5224 Fs_Rec - ok
19:02:44.0231 5224 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
19:02:44.0231 5224 gagp30kx - ok
19:02:44.0281 5224 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
19:02:44.0291 5224 gpsvc - ok
19:02:44.0391 5224 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
19:02:44.0391 5224 gupdate - ok
19:02:44.0401 5224 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
19:02:44.0401 5224 gupdatem - ok
19:02:44.0441 5224 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
19:02:44.0441 5224 gusvc - ok
19:02:44.0471 5224 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:02:44.0471 5224 HdAudAddService - ok
19:02:44.0534 5224 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
19:02:44.0549 5224 HDAudBus - ok
19:02:44.0580 5224 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
19:02:44.0580 5224 HidBth - ok
19:02:44.0590 5224 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
19:02:44.0590 5224 HidIr - ok
19:02:44.0630 5224 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\System32\hidserv.dll
19:02:44.0630 5224 hidserv - ok
19:02:44.0660 5224 [ 3C64042B95E583B366BA4E5D2450235E ] HidUsb C:\Windows\system32\drivers\hidusb.sys
19:02:44.0660 5224 HidUsb - ok
19:02:44.0700 5224 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
19:02:44.0700 5224 hkmsvc - ok
19:02:44.0820 5224 [ E48B80F6614D4BEFA7768B960FFEF514 ] HP Health Check Service c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
19:02:44.0820 5224 HP Health Check Service - ok
19:02:44.0830 5224 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
19:02:44.0830 5224 HpCISSs - ok
19:02:44.0870 5224 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
19:02:44.0870 5224 HTTP - ok
19:02:44.0890 5224 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
19:02:44.0890 5224 i2omp - ok
19:02:44.0960 5224 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
19:02:44.0960 5224 i8042prt - ok
19:02:44.0980 5224 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
19:02:44.0980 5224 iaStorV - ok
19:02:45.0060 5224 [ 6F95324909B502E2651442C1548AB12F ] IDriverT c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
19:02:45.0060 5224 IDriverT - ok
19:02:45.0160 5224 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:02:45.0180 5224 idsvc - ok
19:02:45.0200 5224 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
19:02:45.0210 5224 iirsp - ok
19:02:45.0240 5224 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
19:02:45.0250 5224 IKEEXT - ok
19:02:45.0370 5224 [ 84ED2154239F9D013BBD3220755ADA8B ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
19:02:45.0440 5224 IntcAzAudAddService - ok
19:02:45.0460 5224 [ 97469037714070E45194ED318D636401 ] intelide C:\Windows\system32\drivers\intelide.sys
19:02:45.0460 5224 intelide - ok
19:02:45.0510 5224 [ CE44CC04262F28216DD4341E9E36A16F ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
19:02:45.0520 5224 intelppm - ok
19:02:45.0550 5224 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
19:02:45.0560 5224 IPBusEnum - ok
19:02:45.0590 5224 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:02:45.0600 5224 IpFilterDriver - ok
19:02:45.0610 5224 IpInIp - ok
19:02:45.0630 5224 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
19:02:45.0630 5224 IPMIDRV - ok
19:02:45.0680 5224 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
19:02:45.0680 5224 IPNAT - ok
19:02:45.0730 5224 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
19:02:45.0730 5224 IRENUM - ok
19:02:45.0750 5224 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
19:02:45.0760 5224 isapnp - ok
19:02:45.0810 5224 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
19:02:45.0820 5224 iScsiPrt - ok
19:02:45.0840 5224 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
19:02:45.0850 5224 iteatapi - ok
19:02:45.0860 5224 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
19:02:45.0860 5224 iteraid - ok
19:02:45.0890 5224 IvtBtBUs - ok
19:02:45.0920 5224 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
19:02:45.0920 5224 kbdclass - ok
19:02:45.0940 5224 [ D2600CB17B7408B4A83F231DC9A11AC3 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
19:02:45.0940 5224 kbdhid - ok
19:02:45.0980 5224 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
19:02:45.0980 5224 KeyIso - ok
19:02:46.0040 5224 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
19:02:46.0050 5224 KSecDD - ok
19:02:46.0120 5224 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
19:02:46.0120 5224 KtmRm - ok
19:02:46.0160 5224 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
19:02:46.0170 5224 LanmanServer - ok
19:02:46.0240 5224 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:02:46.0240 5224 LanmanWorkstation - ok
19:02:46.0310 5224 [ 71C6A95A5F0CCC87298C4DD0F2C3635A ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
19:02:46.0310 5224 LightScribeService - ok
19:02:46.0400 5224 [ A97EEB81F05BCE3D7AA6C81F04EF39A4 ] LiveUpdate C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
19:02:46.0460 5224 LiveUpdate - ok
19:02:46.0480 5224 LiveUpdate Notice Ex - ok
19:02:46.0560 5224 [ 2D1389E05A807D956829F44BD4B60389 ] LiveUpdate Notice Service C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
19:02:46.0570 5224 LiveUpdate Notice Service - ok
19:02:46.0620 5224 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
19:02:46.0620 5224 lltdio - ok
19:02:46.0672 5224 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
19:02:46.0687 5224 lltdsvc - ok
19:02:46.0703 5224 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
19:02:46.0703 5224 lmhosts - ok
19:02:46.0750 5224 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
19:02:46.0750 5224 LSI_FC - ok
19:02:46.0781 5224 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
19:02:46.0781 5224 LSI_SAS - ok
19:02:46.0812 5224 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
19:02:46.0828 5224 LSI_SCSI - ok
19:02:46.0848 5224 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
19:02:46.0858 5224 luafv - ok
19:02:46.0898 5224 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
19:02:46.0908 5224 Mcx2Svc - ok
19:02:46.0948 5224 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
19:02:46.0948 5224 megasas - ok
19:02:46.0968 5224 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
19:02:46.0978 5224 MMCSS - ok
19:02:47.0018 5224 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
19:02:47.0028 5224 Modem - ok
19:02:47.0078 5224 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
19:02:47.0078 5224 monitor - ok
19:02:47.0088 5224 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
19:02:47.0088 5224 mouclass - ok
19:02:47.0108 5224 [ A3A6DFF7E9E757DB3DF51A833BC28885 ] mouhid C:\Windows\system32\drivers\mouhid.sys
19:02:47.0108 5224 mouhid - ok
19:02:47.0158 5224 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
19:02:47.0158 5224 MountMgr - ok
19:02:47.0238 5224 [ C41D993BF561B810E1567E9E88CF5904 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
19:02:47.0238 5224 MozillaMaintenance - ok
19:02:47.0258 5224 MpFilter - ok
19:02:47.0308 5224 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
19:02:47.0308 5224 mpio - ok
19:02:47.0318 5224 MpNWMon - ok
19:02:47.0368 5224 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
19:02:47.0368 5224 mpsdrv - ok
19:02:47.0428 5224 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
19:02:47.0438 5224 MpsSvc - ok
19:02:47.0488 5224 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
19:02:47.0488 5224 Mraid35x - ok
19:02:47.0528 5224 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
19:02:47.0538 5224 MRxDAV - ok
19:02:47.0578 5224 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
19:02:47.0578 5224 mrxsmb - ok
19:02:47.0628 5224 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:02:47.0638 5224 mrxsmb10 - ok
19:02:47.0658 5224 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:02:47.0658 5224 mrxsmb20 - ok
19:02:47.0688 5224 [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci C:\Windows\system32\drivers\msahci.sys
19:02:47.0688 5224 msahci - ok
19:02:47.0708 5224 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
19:02:47.0718 5224 msdsm - ok
19:02:47.0758 5224 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
19:02:47.0758 5224 MSDTC - ok
19:02:47.0808 5224 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
19:02:47.0808 5224 Msfs - ok
19:02:47.0868 5224 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
19:02:47.0868 5224 msisadrv - ok
19:02:47.0908 5224 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
19:02:47.0908 5224 MSiSCSI - ok
19:02:47.0938 5224 msiserver - ok
19:02:47.0978 5224 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
19:02:47.0978 5224 MSKSSRV - ok
19:02:48.0088 5224 MsMpSvc - ok
19:02:48.0128 5224 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
19:02:48.0128 5224 MSPCLOCK - ok
19:02:48.0168 5224 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
19:02:48.0178 5224 MSPQM - ok
19:02:48.0208 5224 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
19:02:48.0218 5224 MsRPC - ok
19:02:48.0248 5224 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
19:02:48.0248 5224 mssmbios - ok
19:02:48.0248 5224 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
19:02:48.0258 5224 MSTEE - ok
19:02:48.0288 5224 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
19:02:48.0298 5224 Mup - ok
19:02:48.0328 5224 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
19:02:48.0338 5224 napagent - ok
19:02:48.0388 5224 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
19:02:48.0398 5224 NativeWifiP - ok
19:02:48.0428 5224 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
19:02:48.0438 5224 NDIS - ok
19:02:48.0488 5224 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
19:02:48.0498 5224 NdisTapi - ok
19:02:48.0538 5224 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
19:02:48.0538 5224 Ndisuio - ok
19:02:48.0578 5224 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
19:02:48.0578 5224 NdisWan - ok
19:02:48.0618 5224 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
19:02:48.0618 5224 NDProxy - ok
19:02:48.0648 5224 [ 69C503C004F49AEE8B8E3067CC047BA7 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
19:02:48.0648 5224 Net Driver HPZ12 - ok
19:02:48.0698 5224 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
19:02:48.0698 5224 netbt - ok
19:02:48.0838 5224 [ 38CE271DAC632044AA18A7457CBBE2D2 ] NETGEARGenieDaemon C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
19:02:48.0838 5224 NETGEARGenieDaemon - ok
19:02:48.0868 5224 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
19:02:48.0868 5224 Netlogon - ok
19:02:48.0919 5224 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
19:02:48.0919 5224 Netman - ok
19:02:48.0966 5224 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
19:02:48.0966 5224 netprofm - ok
19:02:49.0007 5224 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:02:49.0007 5224 NetTcpPortSharing - ok
19:02:49.0037 5224 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
19:02:49.0047 5224 nfrd960 - ok
19:02:49.0047 5224 NisDrv - ok
19:02:49.0057 5224 NisSrv - ok
19:02:49.0097 5224 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
19:02:49.0107 5224 NlaSvc - ok
19:02:49.0167 5224 [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] NPF C:\Windows\system32\drivers\npf.sys
19:02:49.0177 5224 NPF - ok
19:02:49.0207 5224 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
19:02:49.0207 5224 Npfs - ok
19:02:49.0247 5224 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
19:02:49.0257 5224 nsi - ok
19:02:49.0297 5224 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
19:02:49.0297 5224 nsiproxy - ok
19:02:49.0357 5224 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
19:02:49.0387 5224 Ntfs - ok
19:02:49.0417 5224 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
19:02:49.0417 5224 ntrigdigi - ok
19:02:49.0467 5224 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
19:02:49.0477 5224 Null - ok
19:02:49.0517 5224 [ 74C825C573AA6E115590D94E7BF86901 ] NVENETFD C:\Windows\system32\DRIVERS\nvmfdx32.sys
19:02:49.0547 5224 NVENETFD - ok
19:02:49.0817 5224 [ 73A70F1D89C942EEDD99A3F10459B051 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:02:50.0017 5224 nvlddmkm - ok
19:02:50.0047 5224 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
19:02:50.0047 5224 nvraid - ok
19:02:50.0067 5224 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
19:02:50.0077 5224 nvstor - ok
19:02:50.0147 5224 [ 7EBA6C9A0A295B1559EFB9062E701218 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys
19:02:50.0157 5224 nvstor32 - ok
19:02:50.0207 5224 [ 538A52E480C816D1990579A8FAAFFA20 ] NVSvc C:\Windows\system32\nvvsvc.exe
19:02:50.0227 5224 NVSvc - ok
19:02:50.0247 5224 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
19:02:50.0247 5224 nv_agp - ok
19:02:50.0257 5224 NwlnkFlt - ok
19:02:50.0267 5224 NwlnkFwd - ok
19:02:50.0307 5224 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:02:50.0317 5224 odserv - ok
19:02:50.0357 5224 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
19:02:50.0357 5224 ohci1394 - ok
19:02:50.0427 5224 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:02:50.0427 5224 ose - ok
19:02:50.0607 5224 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:02:50.0697 5224 osppsvc - ok
19:02:50.0747 5224 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
19:02:50.0767 5224 p2pimsvc - ok
19:02:50.0797 5224 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
19:02:50.0807 5224 p2psvc - ok
19:02:50.0867 5224 [ 4A410C7AEA51123519C20D43A20BCE96 ] PAC207 C:\Windows\system32\DRIVERS\PFC027.SYS
19:02:50.0887 5224 PAC207 - ok
19:02:50.0917 5224 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
19:02:50.0917 5224 Parport - ok
19:02:50.0947 5224 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
19:02:50.0957 5224 partmgr - ok
19:02:50.0977 5224 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
19:02:50.0977 5224 Parvdm - ok
19:02:51.0017 5224 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
19:02:51.0027 5224 PcaSvc - ok
19:02:51.0088 5224 [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfd.sys
19:02:51.0088 5224 pccsmcfd - ok
19:02:51.0135 5224 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
19:02:51.0150 5224 pci - ok
19:02:51.0182 5224 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys
19:02:51.0182 5224 pciide - ok
19:02:51.0228 5224 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
19:02:51.0228 5224 pcmcia - ok
19:02:51.0314 5224 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
19:02:51.0364 5224 PEAUTH - ok
19:02:51.0614 5224 [ F042EE4C8D66248D9B86DCF52ABAE416 ] PEVSystemStart C:\ComboFix\pev.3XE
19:02:51.0624 5224 PEVSystemStart - ok
19:02:51.0694 5224 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
19:02:51.0734 5224 pla - ok
19:02:51.0784 5224 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
19:02:51.0794 5224 PlugPlay - ok
19:02:51.0854 5224 [ 12B4549D515CB26BB8D375038017CA65 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
19:02:51.0854 5224 Pml Driver HPZ12 - ok
19:02:51.0894 5224 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
19:02:51.0904 5224 PNRPAutoReg - ok
19:02:51.0924 5224 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
19:02:51.0934 5224 PNRPsvc - ok
19:02:51.0964 5224 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
19:02:51.0974 5224 PolicyAgent - ok
19:02:52.0004 5224 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
19:02:52.0014 5224 PptpMiniport - ok
19:02:52.0024 5224 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
19:02:52.0024 5224 Processor - ok
19:02:52.0054 5224 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
19:02:52.0064 5224 ProfSvc - ok
19:02:52.0094 5224 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
19:02:52.0094 5224 ProtectedStorage - ok
19:02:52.0144 5224 [ 390C204CED3785609AB24E9C52054A84 ] Ps2 C:\Windows\system32\DRIVERS\PS2.sys
19:02:52.0144 5224 Ps2 - ok
19:02:52.0184 5224 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
19:02:52.0184 5224 PSched - ok
19:02:52.0214 5224 [ 40FEDD328F98245AD201CF5F9F311724 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
19:02:52.0214 5224 PxHelp20 - ok
19:02:52.0294 5224 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
19:02:52.0314 5224 ql2300 - ok
19:02:52.0334 5224 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
19:02:52.0344 5224 ql40xx - ok
19:02:52.0384 5224 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
19:02:52.0394 5224 QWAVE - ok
19:02:52.0434 5224 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
19:02:52.0434 5224 QWAVEdrv - ok
19:02:52.0474 5224 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
19:02:52.0474 5224 RasAcd - ok
19:02:52.0524 5224 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
19:02:52.0524 5224 RasAuto - ok
19:02:52.0574 5224 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
19:02:52.0574 5224 Rasl2tp - ok
19:02:52.0624 5224 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
19:02:52.0634 5224 RasMan - ok
19:02:52.0684 5224 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
19:02:52.0684 5224 RasPppoe - ok
19:02:52.0714 5224 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
19:02:52.0714 5224 RasSstp - ok
19:02:52.0744 5224 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
19:02:52.0754 5224 rdbss - ok
19:02:52.0794 5224 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
19:02:52.0804 5224 RDPCDD - ok
19:02:52.0864 5224 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
19:02:52.0874 5224 rdpdr - ok
19:02:52.0904 5224 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
19:02:52.0904 5224 RDPENCDD - ok
19:02:52.0934 5224 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
19:02:52.0944 5224 RDPWD - ok
19:02:52.0974 5224 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
19:02:52.0974 5224 RemoteAccess - ok
19:02:53.0014 5224 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
19:02:53.0024 5224 RemoteRegistry - ok
19:02:53.0124 5224 [ 2DAC86F10C42B55F2511F14CBCEE7284 ] RoxMediaDB9 c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
19:02:53.0154 5224 RoxMediaDB9 - ok
19:02:53.0184 5224 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
19:02:53.0184 5224 RpcLocator - ok
19:02:53.0214 5224 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\System32\rpcss.dll
19:02:53.0224 5224 RpcSs - ok
19:02:53.0264 5224 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
19:02:53.0264 5224 rspndr - ok
19:02:53.0284 5224 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
19:02:53.0284 5224 SamSs - ok
19:02:53.0335 5224 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
19:02:53.0335 5224 sbp2port - ok
19:02:53.0413 5224 [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
19:02:53.0433 5224 SBSDWSCService - ok
19:02:53.0493 5224 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
19:02:53.0493 5224 SCardSvr - ok
19:02:53.0553 5224 [ 52402149E66200C2C2BDA115BCA757D6 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
19:02:53.0563 5224 SCDEmu - ok
19:02:53.0603 5224 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
19:02:53.0623 5224 Schedule - ok
19:02:53.0653 5224 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
19:02:53.0653 5224 SCPolicySvc - ok
19:02:53.0693 5224 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
19:02:53.0693 5224 SDRSVC - ok
19:02:53.0713 5224 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
19:02:53.0713 5224 secdrv - ok
19:02:53.0763 5224 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
19:02:53.0763 5224 seclogon - ok
19:02:53.0803 5224 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
19:02:53.0813 5224 SENS - ok
19:02:53.0833 5224 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
19:02:53.0833 5224 Serenum - ok
19:02:53.0853 5224 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
19:02:53.0853 5224 Serial - ok
19:02:53.0863 5224 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
19:02:53.0873 5224 sermouse - ok
19:02:53.0923 5224 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
19:02:53.0933 5224 SessionEnv - ok
19:02:53.0943 5224 [ 51CF56AA8BCC241F134B420B8F850406 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
19:02:53.0943 5224 sffdisk - ok
19:02:53.0963 5224 [ 96DED8B20C734AC41641CE275250E55D ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
19:02:53.0963 5224 sffp_mmc - ok
19:02:53.0973 5224 [ 8B08CAB1267B2C377883FC9E56981F90 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
19:02:53.0973 5224 sffp_sd - ok
19:02:53.0983 5224 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
19:02:53.0983 5224 sfloppy - ok
19:02:54.0063 5224 [ D9B734638DD8DBA9D59AAD3189CD0FAD ] Sftfs C:\Windows\system32\DRIVERS\Sftfslh.sys
19:02:54.0073 5224 Sftfs - ok
19:02:54.0173 5224 [ CB73BC422C07FB611F194DA18D1E7F36 ] sftlist C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
19:02:54.0183 5224 sftlist - ok
19:02:54.0233 5224 [ 2F61BD46C0BFF4EB36E1E359CA17BFC5 ] Sftplay C:\Windows\system32\DRIVERS\Sftplaylh.sys
19:02:54.0233 5224 Sftplay - ok
19:02:54.0253 5224 [ 518BAC0179F94304F422696B47C0EC12 ] Sftredir C:\Windows\system32\DRIVERS\Sftredirlh.sys
19:02:54.0253 5224 Sftredir - ok
19:02:54.0273 5224 [ 747325236D88B3F05FFD27FF9EC711C5 ] Sftvol C:\Windows\system32\DRIVERS\Sftvollh.sys
19:02:54.0273 5224 Sftvol - ok
19:02:54.0283 5224 [ A5812F0281CA5081BF696626F9BF324D ] sftvsa C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
19:02:54.0293 5224 sftvsa - ok
19:02:54.0313 5224 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
19:02:54.0323 5224 SharedAccess - ok
19:02:54.0363 5224 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:02:54.0373 5224 ShellHWDetection - ok
19:02:54.0393 5224 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
19:02:54.0403 5224 sisagp - ok
19:02:54.0423 5224 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
19:02:54.0423 5224 SiSRaid2 - ok
19:02:54.0443 5224 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
19:02:54.0443 5224 SiSRaid4 - ok
19:02:54.0623 5224 [ 4CA43B85F22C7739311788B651A779CB ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
19:02:54.0713 5224 Skype C2C Service - ok
19:02:54.0813 5224 [ DDAA5F4A6B958FC313EBD02DD925752F ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
19:02:54.0813 5224 SkypeUpdate - ok
19:02:54.0923 5224 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
19:02:55.0003 5224 slsvc - ok
19:02:55.0053 5224 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
19:02:55.0053 5224 SLUINotify - ok
19:02:55.0103 5224 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
19:02:55.0103 5224 Smb - ok
19:02:55.0133 5224 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
19:02:55.0133 5224 SNMPTRAP - ok
19:02:55.0173 5224 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
19:02:55.0183 5224 spldr - ok
19:02:55.0213 5224 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
19:02:55.0213 5224 Spooler - ok
19:02:55.0263 5224 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
19:02:55.0263 5224 srv - ok
19:02:55.0303 5224 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
19:02:55.0313 5224 srv2 - ok
19:02:55.0353 5224 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
19:02:55.0353 5224 srvnet - ok
19:02:55.0383 5224 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
19:02:55.0393 5224 SSDPSRV - ok
19:02:55.0453 5224 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
19:02:55.0463 5224 SstpSvc - ok
19:02:55.0536 5224 Steam Client Service - ok
19:02:55.0652 5224 [ 8C37C35FB2D9692DDA0EDDBCA58BFE18 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:02:55.0672 5224 Stereo Service - ok
19:02:55.0722 5224 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
19:02:55.0732 5224 stisvc - ok
19:02:55.0802 5224 [ E5FF667E416DAC99BFF16B626234A379 ] stllssvr c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
19:02:55.0802 5224 stllssvr - ok
19:02:55.0832 5224 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
19:02:55.0832 5224 swenum - ok
19:02:55.0882 5224 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
19:02:55.0892 5224 swprv - ok
19:02:55.0912 5224 sxbbihsu - ok
19:02:55.0952 5224 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
19:02:55.0952 5224 Symc8xx - ok
19:02:55.0962 5224 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
19:02:55.0972 5224 Sym_hi - ok
19:02:55.0982 5224 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
19:02:55.0982 5224 Sym_u3 - ok
19:02:56.0042 5224 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
19:02:56.0062 5224 SysMain - ok
19:02:56.0082 5224 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:02:56.0082 5224 TabletInputService - ok
19:02:56.0122 5224 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
19:02:56.0132 5224 TapiSrv - ok
19:02:56.0162 5224 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
19:02:56.0172 5224 TBS - ok
19:02:56.0222 5224 [ EE7E10BED85C312C1D5D30C435BDDA9F ] Tcpip C:\Windows\system32\drivers\tcpip.sys
19:02:56.0252 5224 Tcpip - ok
19:02:56.0282 5224 [ EE7E10BED85C312C1D5D30C435BDDA9F ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
19:02:56.0292 5224 Tcpip6 - ok
19:02:56.0312 5224 [ 2C2D4CFF5E09C73908F9B5AF49A51365 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
19:02:56.0322 5224 tcpipreg - ok
19:02:56.0362 5224 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
19:02:56.0362 5224 TDPIPE - ok
19:02:56.0412 5224 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
19:02:56.0412 5224 TDTCP - ok
19:02:56.0452 5224 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
19:02:56.0452 5224 tdx - ok
19:02:56.0482 5224 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
19:02:56.0482 5224 TermDD - ok
19:02:56.0512 5224 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
19:02:56.0522 5224 TermService - ok
19:02:56.0562 5224 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
19:02:56.0572 5224 Themes - ok
19:02:56.0592 5224 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
19:02:56.0592 5224 THREADORDER - ok
19:02:56.0622 5224 tqjqzlsu - ok
19:02:56.0672 5224 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
19:02:56.0672 5224 TrkWks - ok
19:02:56.0732 5224 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:02:56.0732 5224 TrustedInstaller - ok
19:02:56.0772 5224 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
19:02:56.0772 5224 tssecsrv - ok
19:02:56.0802 5224 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
19:02:56.0802 5224 tunmp - ok
19:02:56.0822 5224 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
19:02:56.0822 5224 tunnel - ok
19:02:56.0852 5224 tyynrxga - ok
19:02:56.0892 5224 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
19:02:56.0892 5224 uagp35 - ok
19:02:56.0942 5224 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
19:02:56.0942 5224 udfs - ok
19:02:56.0992 5224 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
19:02:57.0002 5224 UI0Detect - ok
19:02:57.0022 5224 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
19:02:57.0022 5224 uliagpkx - ok
19:02:57.0052 5224 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
19:02:57.0052 5224 uliahci - ok
19:02:57.0072 5224 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
19:02:57.0072 5224 UlSata - ok
19:02:57.0092 5224 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
19:02:57.0092 5224 ulsata2 - ok
19:02:57.0122 5224 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
19:02:57.0122 5224 umbus - ok
19:02:57.0162 5224 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
19:02:57.0172 5224 upnphost - ok
19:02:57.0232 5224 [ 9419FAAC6552A51542DBBA02971C841C ] usbbus C:\Windows\system32\DRIVERS\lgusbbus.sys
19:02:57.0232 5224 usbbus - ok
19:02:57.0262 5224 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
19:02:57.0262 5224 usbccgp - ok
19:02:57.0292 5224 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
19:02:57.0302 5224 usbcir - ok
19:02:57.0332 5224 [ C0A466FA4FFEC464320E159BC1BBDC0C ] UsbDiag C:\Windows\system32\DRIVERS\lgusbdiag.sys
19:02:57.0332 5224 UsbDiag - ok
19:02:57.0372 5224 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
19:02:57.0372 5224 usbehci - ok
19:02:57.0422 5224 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
19:02:57.0422 5224 usbhub - ok
19:02:57.0472 5224 [ F74A54774A9B0AFEB3C40ADEC68AA600 ] USBModem C:\Windows\system32\DRIVERS\lgusbmodem.sys
19:02:57.0472 5224 USBModem - ok
19:02:57.0502 5224 [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
19:02:57.0502 5224 usbohci - ok
19:02:57.0522 5224 [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
19:02:57.0522 5224 usbprint - ok
19:02:57.0552 5224 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:02:57.0552 5224 USBSTOR - ok
19:02:57.0592 5224 [ 325DBBACB8A36AF9988CCF40EAC228CC ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
19:02:57.0592 5224 usbuhci - ok
19:02:57.0642 5224 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
19:02:57.0642 5224 UxSms - ok
19:02:57.0705 5224 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
19:02:57.0705 5224 vds - ok
19:02:57.0767 5224 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
19:02:57.0767 5224 vga - ok
19:02:57.0814 5224 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
19:02:57.0814 5224 VgaSave - ok
19:02:57.0830 5224 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
19:02:57.0830 5224 viaagp - ok
19:02:57.0840 5224 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
19:02:57.0840 5224 ViaC7 - ok
19:02:57.0860 5224 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
19:02:57.0870 5224 viaide - ok
19:02:57.0880 5224 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
19:02:57.0880 5224 volmgr - ok
19:02:57.0930 5224 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
19:02:57.0930 5224 volmgrx - ok
19:02:57.0980 5224 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
19:02:57.0980 5224 volsnap - ok
19:02:58.0040 5224 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
19:02:58.0040 5224 vsmraid - ok
19:02:58.0100 5224 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
19:02:58.0130 5224 VSS - ok
19:02:58.0160 5224 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
19:02:58.0170 5224 W32Time - ok
19:02:58.0200 5224 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
19:02:58.0200 5224 WacomPen - ok
19:02:58.0240 5224 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
19:02:58.0250 5224 Wanarp - ok
19:02:58.0250 5224 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
19:02:58.0260 5224 Wanarpv6 - ok
19:02:58.0290 5224 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
19:02:58.0300 5224 wcncsvc - ok
19:02:58.0330 5224 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:02:58.0340 5224 WcsPlugInService - ok
19:02:58.0350 5224 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
19:02:58.0350 5224 Wd - ok
19:02:58.0410 5224 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
19:02:58.0430 5224 Wdf01000 - ok
19:02:58.0470 5224 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
19:02:58.0480 5224 WdiServiceHost - ok
19:02:58.0490 5224 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
19:02:58.0490 5224 WdiSystemHost - ok
19:02:58.0530 5224 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
19:02:58.0540 5224 WebClient - ok
19:02:58.0580 5224 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
19:02:58.0590 5224 Wecsvc - ok
19:02:58.0630 5224 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
19:02:58.0640 5224 wercplsupport - ok
19:02:58.0680 5224 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
19:02:58.0690 5224 WerSvc - ok
19:02:58.0710 5224 WinHttpAutoProxySvc - ok
19:02:58.0760 5224 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
19:02:58.0770 5224 Winmgmt - ok
19:02:58.0820 5224 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
19:02:58.0860 5224 WinRM - ok
19:02:58.0900 5224 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
19:02:58.0920 5224 Wlansvc - ok
19:02:59.0030 5224 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:02:59.0070 5224 wlidsvc - ok
19:02:59.0090 5224 [ 701A9F884A294327E9141D73746EE279 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
19:02:59.0090 5224 WmiAcpi - ok
19:02:59.0140 5224 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
19:02:59.0150 5224 wmiApSrv - ok
19:02:59.0220 5224 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
19:02:59.0250 5224 WMPNetworkSvc - ok
19:02:59.0280 5224 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
19:02:59.0290 5224 WPCSvc - ok
19:02:59.0330 5224 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
19:02:59.0340 5224 WPDBusEnum - ok
19:02:59.0370 5224 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
19:02:59.0380 5224 WpdUsb - ok
19:02:59.0490 5224 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:02:59.0500 5224 WPFFontCache_v0400 - ok
19:02:59.0550 5224 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
19:02:59.0550 5224 ws2ifsl - ok
19:02:59.0600 5224 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\system32\wscsvc.dll
19:02:59.0610 5224 wscsvc - ok
19:02:59.0620 5224 WSearch - ok
19:02:59.0700 5224 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
19:02:59.0750 5224 wuauserv - ok
19:02:59.0800 5224 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
19:02:59.0810 5224 WUDFRd - ok
19:02:59.0860 5224 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
19:02:59.0870 5224 wudfsvc - ok
19:02:59.0983 5224 [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
19:02:59.0999 5224 YahooAUService - ok
19:02:59.0999 5224 ================ Scan global ===============================
19:03:00.0030 5224 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
19:03:00.0077 5224 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
19:03:00.0097 5224 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
19:03:00.0137 5224 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
19:03:00.0147 5224 [Global] - ok
19:03:00.0147 5224 ================ Scan MBR ==================================
19:03:00.0177 5224 [ 27A811553A4F7A6A891CA99FFAE128F7 ] \Device\Harddisk0\DR0
19:03:00.0587 5224 \Device\Harddisk0\DR0 - ok
19:03:00.0587 5224 ================ Scan VBR ==================================
19:03:00.0597 5224 [ 8FBA7B9B9E543D59ADEAC3DA1C2BEBB6 ] \Device\Harddisk0\DR0\Partition1
19:03:00.0597 5224 \Device\Harddisk0\DR0\Partition1 - ok
19:03:00.0617 5224 [ 20A3CAF28403A3C1B32A71BE235E508F ] \Device\Harddisk0\DR0\Partition2
19:03:00.0617 5224 \Device\Harddisk0\DR0\Partition2 - ok
19:03:00.0617 5224 ============================================================
19:03:00.0617 5224 Scan finished
19:03:00.0617 5224 ============================================================
19:03:00.0637 4800 Detected object count: 0
19:03:00.0637 4800 Actual detected object count: 0
19:04:19.0322 3316 ============================================================
19:04:19.0322 3316 Scan started
19:04:19.0322 3316 Mode: Manual; TDLFS;
19:04:19.0322 3316 ============================================================
19:04:19.0544 3316 ================ Scan system memory ========================
19:04:19.0544 3316 System memory - ok
19:04:19.0544 3316 ================ Scan services =============================
19:04:19.0554 3316 .dfsc - ok
19:04:19.0714 3316 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
19:04:19.0714 3316 ACPI - ok
19:04:19.0814 3316 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
19:04:19.0814 3316 AdobeARMservice - ok
19:04:19.0864 3316 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
19:04:19.0864 3316 adp94xx - ok
19:04:19.0884 3316 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys
19:04:19.0884 3316 adpahci - ok
19:04:19.0904 3316 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
19:04:19.0904 3316 adpu160m - ok
19:04:19.0914 3316 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys
19:04:19.0914 3316 adpu320 - ok
19:04:19.0944 3316 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
19:04:19.0954 3316 AeLookupSvc - ok
19:04:19.0984 3316 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
19:04:19.0984 3316 AFD - ok
19:04:20.0004 3316 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys
19:04:20.0004 3316 agp440 - ok
19:04:20.0034 3316 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
19:04:20.0034 3316 aic78xx - ok
19:04:20.0084 3316 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
19:04:20.0084 3316 ALG - ok
19:04:20.0094 3316 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys
19:04:20.0094 3316 aliide - ok
19:04:20.0114 3316 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
19:04:20.0114 3316 amdagp - ok
19:04:20.0154 3316 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys
19:04:20.0154 3316 amdide - ok
19:04:20.0174 3316 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
19:04:20.0174 3316 AmdK7 - ok
19:04:20.0204 3316 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
19:04:20.0204 3316 AmdK8 - ok
19:04:20.0224 3316 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
19:04:20.0224 3316 Appinfo - ok
19:04:20.0254 3316 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys
19:04:20.0254 3316 arc - ok
19:04:20.0274 3316 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys
19:04:20.0274 3316 arcsas - ok
19:04:20.0364 3316 [ 40C145F12FF461A0220303BDA134F598 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
19:04:20.0364 3316 aspnet_state - ok
19:04:20.0404 3316 [ F5DC168BF77572D51BE28BA261B30CB4 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
19:04:20.0414 3316 aswFsBlk - ok
19:04:20.0454 3316 [ 09678587C5C70F91720631EF048B4744 ] aswFW C:\Windows\system32\drivers\aswFW.sys
19:04:20.0464 3316 aswFW - ok
19:04:20.0494 3316 [ 31E0D16EB06D09A248AFF20C76F9091B ] aswKbd C:\Windows\system32\drivers\aswKbd.sys
19:04:20.0494 3316 aswKbd - ok
19:04:20.0554 3316 [ F76E51561562AC4105DBBE53FC99BC10 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
19:04:20.0554 3316 aswMonFlt - ok
19:04:20.0584 3316 [ 7B948E3657BEA62E437BC46CA6EF6012 ] aswNdis C:\Windows\system32\DRIVERS\aswNdis.sys
19:04:20.0584 3316 aswNdis - ok
19:04:20.0594 3316 [ C6E5E1E0FB3827B2359F4D394ECAA070 ] aswNdis2 C:\Windows\system32\drivers\aswNdis2.sys
19:04:20.0604 3316 aswNdis2 - ok
19:04:20.0634 3316 [ B7D5E4486BA658ED08624D8084ABB830 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys
19:04:20.0634 3316 AswRdr - ok
19:04:20.0674 3316 [ 30E45AF8B4D83176CA850FC9699E860B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
19:04:20.0684 3316 aswSnx - ok
19:04:20.0734 3316 [ F04BDBCB965C05C51F4A7DE7B62063D6 ] aswSP C:\Windows\system32\drivers\aswSP.sys
19:04:20.0734 3316 aswSP - ok
19:04:20.0744 3316 [ DFE9152ABFA89BB8CFDC057409B2D4DA ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
19:04:20.0754 3316 aswTdi - ok
19:04:20.0784 3316 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
19:04:20.0794 3316 AsyncMac - ok
19:04:20.0824 3316 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
19:04:20.0824 3316 atapi - ok
19:04:20.0864 3316 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:04:20.0864 3316 AudioEndpointBuilder - ok
19:04:20.0874 3316 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
19:04:20.0884 3316 Audiosrv - ok
19:04:20.0934 3316 [ B5D974C1FD078A68C7536C561B031D39 ] Automatic LiveUpdate Scheduler C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
19:04:20.0944 3316 Automatic LiveUpdate Scheduler - ok
19:04:21.0014 3316 [ 04AC21E821F259845BD7367CEE057290 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
19:04:21.0014 3316 avast! Antivirus - ok
19:04:21.0044 3316 [ DD4C61CB3CDBC8B0A7D2107C6944DC71 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
19:04:21.0044 3316 avast! Firewall - ok
19:04:21.0094 3316 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
19:04:21.0094 3316 Beep - ok
19:04:21.0154 3316 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
19:04:21.0154 3316 BFE - ok
19:04:21.0214 3316 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\system32\qmgr.dll
19:04:21.0224 3316 BITS - ok
19:04:21.0224 3316 blbdrive - ok
19:04:21.0254 3316 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
19:04:21.0254 3316 bowser - ok
19:04:21.0274 3316 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
19:04:21.0274 3316 BrFiltLo - ok
19:04:21.0284 3316 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
19:04:21.0284 3316 BrFiltUp - ok
19:04:21.0334 3316 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
19:04:21.0334 3316 Browser - ok
19:04:21.0344 3316 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
19:04:21.0344 3316 Brserid - ok
19:04:21.0364 3316 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
19:04:21.0364 3316 BrSerWdm - ok
19:04:21.0384 3316 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
19:04:21.0384 3316 BrUsbMdm - ok
19:04:21.0394 3316 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
19:04:21.0394 3316 BrUsbSer - ok
19:04:21.0404 3316 BT - ok
19:04:21.0414 3316 BTCOM - ok
19:04:21.0424 3316 BTCOMBUS - ok
19:04:21.0444 3316 BtHidBus - ok
19:04:21.0454 3316 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
19:04:21.0464 3316 BTHMODEM - ok
19:04:21.0514 3316 [ 7BB8AC22BC9E6A1E7707DAECADA95CD9 ] btnetBUs C:\Windows\system32\Drivers\btnetBus.sys
19:04:21.0514 3316 btnetBUs - ok
19:04:21.0773 3316 catchme - ok
19:04:21.0833 3316 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
19:04:21.0833 3316 cdfs - ok
19:04:21.0883 3316 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
19:04:21.0883 3316 cdrom - ok
19:04:21.0933 3316 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
19:04:21.0943 3316 CertPropSvc - ok
19:04:21.0973 3316 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys
19:04:21.0973 3316 circlass - ok
19:04:22.0023 3316 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
19:04:22.0023 3316 CLFS - ok
19:04:22.0043 3316 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:04:22.0043 3316 clr_optimization_v2.0.50727_32 - ok
19:04:22.0113 3316 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:04:22.0113 3316 clr_optimization_v4.0.30319_32 - ok
19:04:22.0133 3316 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys
19:04:22.0133 3316 cmdide - ok
19:04:22.0143 3316 [ 82B8C91D327CFECF76CB58716F7D4997 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
19:04:22.0143 3316 Compbatt - ok
19:04:22.0153 3316 COMSysApp - ok
19:04:22.0163 3316 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
19:04:22.0163 3316 crcdisk - ok
19:04:22.0173 3316 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys
19:04:22.0183 3316 Crusoe - ok
19:04:22.0223 3316 [ 75C6A297E364014840B48ECCD7525E30 ] CryptSvc C:\Windows\system32\cryptsvc.dll
19:04:22.0223 3316 CryptSvc - ok
19:04:22.0313 3316 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
19:04:22.0313 3316 cvhsvc - ok
19:04:22.0373 3316 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
19:04:22.0383 3316 DcomLaunch - ok
19:04:22.0473 3316 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
19:04:22.0493 3316 DFSR - ok
19:04:22.0543 3316 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
19:04:22.0543 3316 Dhcp - ok
19:04:22.0583 3316 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
19:04:22.0583 3316 disk - ok
19:04:22.0613 3316 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
19:04:22.0613 3316 Dnscache - ok
19:04:22.0663 3316 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
19:04:22.0663 3316 dot3svc - ok
19:04:22.0693 3316 [ 4F59C172C094E1A1D46463A8DC061CBD ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
19:04:22.0703 3316 Dot4 - ok
19:04:22.0713 3316 [ 80BF3BA09F6F2523C8F6B7CC6DBF7BD5 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
19:04:22.0713 3316 Dot4Print - ok
19:04:22.0723 3316 [ C55004CA6B419B6695970DFE849B122F ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
19:04:22.0733 3316 dot4usb - ok
19:04:22.0773 3316 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
19:04:22.0773 3316 DPS - ok
19:04:22.0803 3316 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
19:04:22.0803 3316 drmkaud - ok
19:04:22.0863 3316 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
19:04:22.0863 3316 DXGKrnl - ok
19:04:22.0893 3316 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
19:04:22.0893 3316 E1G60 - ok
19:04:22.0933 3316 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
19:04:22.0933 3316 EapHost - ok
19:04:22.0973 3316 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
19:04:22.0983 3316 Ecache - ok
19:04:23.0043 3316 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
19:04:23.0053 3316 ehRecvr - ok
19:04:23.0073 3316 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
19:04:23.0073 3316 ehSched - ok
19:04:23.0083 3316 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
19:04:23.0093 3316 ehstart - ok
19:04:23.0123 3316 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys
19:04:23.0123 3316 elxstor - ok
19:04:23.0173 3316 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
19:04:23.0183 3316 EMDMgmt - ok
19:04:23.0213 3316 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
19:04:23.0223 3316 EventSystem - ok
19:04:23.0263 3316 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
19:04:23.0263 3316 exfat - ok
19:04:23.0293 3316 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
19:04:23.0293 3316 fastfat - ok
19:04:23.0313 3316 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
19:04:23.0313 3316 fdc - ok
19:04:23.0353 3316 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
19:04:23.0353 3316 fdPHost - ok
19:04:23.0383 3316 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
19:04:23.0383 3316 FDResPub - ok
19:04:23.0433 3316 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
19:04:23.0433 3316 FileInfo - ok
19:04:23.0473 3316 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
19:04:23.0473 3316 Filetrace - ok
19:04:23.0573 3316 [ BB0667B0171B632B97EA759515476F07 ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
19:04:23.0573 3316 FLEXnet Licensing Service - ok
19:04:23.0593 3316 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
19:04:23.0593 3316 flpydisk - ok
19:04:23.0633 3316 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
19:04:23.0633 3316 FltMgr - ok
19:04:23.0683 3316 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
19:04:23.0693 3316 FontCache - ok
19:04:23.0770 3316 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
19:04:23.0770 3316 FontCache3.0.0.0 - ok
19:04:23.0801 3316 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
19:04:23.0801 3316 Fs_Rec - ok
19:04:23.0832 3316 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
19:04:23.0832 3316 gagp30kx - ok
19:04:23.0892 3316 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
19:04:23.0902 3316 gpsvc - ok
19:04:24.0002 3316 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
19:04:24.0012 3316 gupdate - ok
19:04:24.0012 3316 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
19:04:24.0012 3316 gupdatem - ok
19:04:24.0042 3316 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
19:04:24.0042 3316 gusvc - ok
19:04:24.0072 3316 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:04:24.0082 3316 HdAudAddService - ok
19:04:24.0132 3316 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
19:04:24.0142 3316 HDAudBus - ok
19:04:24.0172 3316 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
19:04:24.0172 3316 HidBth - ok
19:04:24.0192 3316 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
19:04:24.0192 3316 HidIr - ok
19:04:24.0222 3316 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\System32\hidserv.dll
19:04:24.0222 3316 hidserv - ok
19:04:24.0252 3316 [ 3C64042B95E583B366BA4E5D2450235E ] HidUsb C:\Windows\system32\drivers\hidusb.sys
19:04:24.0252 3316 HidUsb - ok
19:04:24.0292 3316 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
19:04:24.0302 3316 hkmsvc - ok
19:04:24.0362 3316 [ E48B80F6614D4BEFA7768B960FFEF514 ] HP Health Check Service c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
19:04:24.0362 3316 HP Health Check Service - ok
19:04:24.0382 3316 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
19:04:24.0382 3316 HpCISSs - ok
19:04:24.0412 3316 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
19:04:24.0422 3316 HTTP - ok
19:04:24.0442 3316 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys
19:04:24.0442 3316 i2omp - ok
19:04:24.0462 3316 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
19:04:24.0462 3316 i8042prt - ok
19:04:24.0482 3316 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
19:04:24.0492 3316 iaStorV - ok
19:04:24.0552 3316 [ 6F95324909B502E2651442C1548AB12F ] IDriverT c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
19:04:24.0562 3316 IDriverT - ok
19:04:24.0632 3316 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
19:04:24.0652 3316 idsvc - ok
19:04:24.0672 3316 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
19:04:24.0682 3316 iirsp - ok
19:04:24.0712 3316 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
19:04:24.0722 3316 IKEEXT - ok
19:04:24.0832 3316 [ 84ED2154239F9D013BBD3220755ADA8B ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
19:04:24.0932 3316 IntcAzAudAddService - ok
19:04:24.0962 3316 [ 97469037714070E45194ED318D636401 ] intelide C:\Windows\system32\drivers\intelide.sys
19:04:24.0972 3316 intelide - ok
19:04:24.0982 3316 [ CE44CC04262F28216DD4341E9E36A16F ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
19:04:24.0982 3316 intelppm - ok
19:04:25.0032 3316 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
19:04:25.0042 3316 IPBusEnum - ok
19:04:25.0072 3316 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:04:25.0072 3316 IpFilterDriver - ok
19:04:25.0082 3316 IpInIp - ok
19:04:25.0102 3316 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
19:04:25.0102 3316 IPMIDRV - ok
19:04:25.0142 3316 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
19:04:25.0152 3316 IPNAT - ok
19:04:25.0192 3316 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
19:04:25.0192 3316 IRENUM - ok
19:04:25.0202 3316 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys
19:04:25.0202 3316 isapnp - ok
19:04:25.0252 3316 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
19:04:25.0262 3316 iScsiPrt - ok
19:04:25.0292 3316 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
19:04:25.0292 3316 iteatapi - ok
19:04:25.0302 3316 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
19:04:25.0302 3316 iteraid - ok
19:04:25.0312 3316 IvtBtBUs - ok
19:04:25.0332 3316 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
19:04:25.0342 3316 kbdclass - ok
19:04:25.0352 3316 [ D2600CB17B7408B4A83F231DC9A11AC3 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
19:04:25.0352 3316 kbdhid - ok
19:04:25.0392 3316 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
19:04:25.0392 3316 KeyIso - ok
19:04:25.0462 3316 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
19:04:25.0472 3316 KSecDD - ok
19:04:25.0522 3316 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
19:04:25.0532 3316 KtmRm - ok
19:04:25.0572 3316 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
19:04:25.0582 3316 LanmanServer - ok
19:04:25.0622 3316 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:04:25.0622 3316 LanmanWorkstation - ok
19:04:25.0692 3316 [ 71C6A95A5F0CCC87298C4DD0F2C3635A ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe
19:04:25.0692 3316 LightScribeService - ok
19:04:25.0782 3316 [ A97EEB81F05BCE3D7AA6C81F04EF39A4 ] LiveUpdate C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
19:04:25.0812 3316 LiveUpdate - ok
19:04:25.0832 3316 LiveUpdate Notice Ex - ok
19:04:25.0924 3316 [ 2D1389E05A807D956829F44BD4B60389 ] LiveUpdate Notice Service C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
19:04:25.0939 3316 LiveUpdate Notice Service - ok
19:04:25.0986 3316 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
19:04:26.0002 3316 lltdio - ok
19:04:26.0048 3316 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
19:04:26.0048 3316 lltdsvc - ok
19:04:26.0064 3316 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
19:04:26.0064 3316 lmhosts - ok
19:04:26.0100 3316 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
19:04:26.0110 3316 LSI_FC - ok
19:04:26.0130 3316 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
19:04:26.0140 3316 LSI_SAS - ok
19:04:26.0170 3316 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
19:04:26.0170 3316 LSI_SCSI - ok
19:04:26.0210 3316 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
19:04:26.0210 3316 luafv - ok
19:04:26.0260 3316 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
19:04:26.0260 3316 Mcx2Svc - ok
19:04:26.0280 3316 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys
19:04:26.0280 3316 megasas - ok
19:04:26.0330 3316 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
19:04:26.0330 3316 MMCSS - ok
19:04:26.0380 3316 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
19:04:26.0380 3316 Modem - ok
19:04:26.0400 3316 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
19:04:26.0400 3316 monitor - ok
19:04:26.0420 3316 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
19:04:26.0420 3316 mouclass - ok
19:04:26.0440 3316 [ A3A6DFF7E9E757DB3DF51A833BC28885 ] mouhid C:\Windows\system32\drivers\mouhid.sys
19:04:26.0450 3316 mouhid - ok
19:04:26.0480 3316 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
19:04:26.0490 3316 MountMgr - ok
19:04:26.0530 3316 [ C41D993BF561B810E1567E9E88CF5904 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
19:04:26.0530 3316 MozillaMaintenance - ok
19:04:26.0560 3316 MpFilter - ok
19:04:26.0590 3316 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys
19:04:26.0600 3316 mpio - ok
19:04:26.0610 3316 MpNWMon - ok
19:04:26.0650 3316 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
19:04:26.0650 3316 mpsdrv - ok
19:04:26.0700 3316 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
19:04:26.0710 3316 MpsSvc - ok
19:04:26.0730 3316 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
19:04:26.0730 3316 Mraid35x - ok
19:04:26.0760 3316 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
19:04:26.0770 3316 MRxDAV - ok
19:04:26.0810 3316 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
19:04:26.0810 3316 mrxsmb - ok
19:04:26.0870 3316 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:04:26.0870 3316 mrxsmb10 - ok
19:04:26.0900 3316 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:04:26.0900 3316 mrxsmb20 - ok
19:04:26.0950 3316 [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci C:\Windows\system32\drivers\msahci.sys
19:04:26.0950 3316 msahci - ok
19:04:26.0970 3316 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys
19:04:26.0980 3316 msdsm - ok
19:04:27.0030 3316 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
19:04:27.0030 3316 MSDTC - ok
19:04:27.0090 3316 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
19:04:27.0090 3316 Msfs - ok
19:04:27.0120 3316 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
19:04:27.0120 3316 msisadrv - ok
19:04:27.0160 3316 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
19:04:27.0170 3316 MSiSCSI - ok
19:04:27.0170 3316 msiserver - ok
19:04:27.0220 3316 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
19:04:27.0220 3316 MSKSSRV - ok
19:04:27.0300 3316 MsMpSvc - ok
19:04:27.0310 3316 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
19:04:27.0310 3316 MSPCLOCK - ok
19:04:27.0330 3316 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
19:04:27.0330 3316 MSPQM - ok
19:04:27.0370 3316 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
19:04:27.0370 3316 MsRPC - ok
19:04:27.0400 3316 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
19:04:27.0400 3316 mssmbios - ok
19:04:27.0410 3316 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
19:04:27.0410 3316 MSTEE - ok
19:04:27.0450 3316 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
19:04:27.0450 3316 Mup - ok
19:04:27.0480 3316 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
19:04:27.0490 3316 napagent - ok
19:04:27.0530 3316 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
19:04:27.0530 3316 NativeWifiP - ok
19:04:27.0570 3316 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
19:04:27.0580 3316 NDIS - ok
19:04:27.0610 3316 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
19:04:27.0610 3316 NdisTapi - ok
19:04:27.0670 3316 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
19:04:27.0670 3316 Ndisuio - ok
19:04:27.0700 3316 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
19:04:27.0700 3316 NdisWan - ok
19:04:27.0740 3316 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
19:04:27.0740 3316 NDProxy - ok
19:04:27.0770 3316 [ 69C503C004F49AEE8B8E3067CC047BA7 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
19:04:27.0770 3316 Net Driver HPZ12 - ok
19:04:27.0820 3316 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
19:04:27.0820 3316 netbt - ok
19:04:27.0960 3316 [ 38CE271DAC632044AA18A7457CBBE2D2 ] NETGEARGenieDaemon C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
19:04:27.0970 3316 NETGEARGenieDaemon - ok
19:04:28.0000 3316 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
19:04:28.0000 3316 Netlogon - ok
19:04:28.0050 3316 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
19:04:28.0050 3316 Netman - ok
19:04:28.0100 3316 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
19:04:28.0110 3316 netprofm - ok
19:04:28.0155 3316 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:04:28.0171 3316 NetTcpPortSharing - ok
19:04:28.0218 3316 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
19:04:28.0218 3316 nfrd960 - ok
19:04:28.0218 3316 NisDrv - ok
19:04:28.0233 3316 NisSrv - ok
19:04:28.0280 3316 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
19:04:28.0280 3316 NlaSvc - ok
19:04:28.0337 3316 [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] NPF C:\Windows\system32\drivers\npf.sys
19:04:28.0337 3316 NPF - ok
19:04:28.0377 3316 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
19:04:28.0377 3316 Npfs - ok
19:04:28.0417 3316 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
19:04:28.0417 3316 nsi - ok
19:04:28.0457 3316 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
19:04:28.0457 3316 nsiproxy - ok
19:04:28.0527 3316 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
19:04:28.0547 3316 Ntfs - ok
19:04:28.0577 3316 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
19:04:28.0587 3316 ntrigdigi - ok
19:04:28.0627 3316 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
19:04:28.0627 3316 Null - ok
19:04:28.0677 3316 [ 74C825C573AA6E115590D94E7BF86901 ] NVENETFD C:\Windows\system32\DRIVERS\nvmfdx32.sys
19:04:28.0707 3316 NVENETFD - ok
19:04:28.0937 3316 [ 73A70F1D89C942EEDD99A3F10459B051 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:04:29.0157 3316 nvlddmkm - ok
19:04:29.0187 3316 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys
19:04:29.0187 3316 nvraid - ok
19:04:29.0207 3316 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys
19:04:29.0217 3316 nvstor - ok
19:04:29.0257 3316 [ 7EBA6C9A0A295B1559EFB9062E701218 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys
19:04:29.0257 3316 nvstor32 - ok
19:04:29.0327 3316 [ 538A52E480C816D1990579A8FAAFFA20 ] NVSvc C:\Windows\system32\nvvsvc.exe
19:04:29.0337 3316 NVSvc - ok
19:04:29.0357 3316 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
19:04:29.0367 3316 nv_agp - ok
19:04:29.0367 3316 NwlnkFlt - ok
19:04:29.0377 3316 NwlnkFwd - ok
19:04:29.0437 3316 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
19:04:29.0437 3316 odserv - ok
19:04:29.0477 3316 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
19:04:29.0487 3316 ohci1394 - ok
19:04:29.0537 3316 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:04:29.0547 3316 ose - ok
19:04:29.0677 3316 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:04:29.0767 3316 osppsvc - ok
19:04:29.0817 3316 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
19:04:29.0847 3316 p2pimsvc - ok
19:04:29.0877 3316 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
19:04:29.0887 3316 p2psvc - ok
19:04:29.0937 3316 [ 4A410C7AEA51123519C20D43A20BCE96 ] PAC207 C:\Windows\system32\DRIVERS\PFC027.SYS
19:04:29.0947 3316 PAC207 - ok
19:04:29.0977 3316 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
19:04:29.0977 3316 Parport - ok
19:04:30.0017 3316 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
19:04:30.0017 3316 partmgr - ok
19:04:30.0047 3316 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
19:04:30.0047 3316 Parvdm - ok
19:04:30.0087 3316 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
19:04:30.0087 3316 PcaSvc - ok
19:04:30.0137 3316 [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfd.sys
19:04:30.0147 3316 pccsmcfd - ok
19:04:30.0187 3316 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
19:04:30.0187 3316 pci - ok
19:04:30.0227 3316 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys
19:04:30.0227 3316 pciide - ok
19:04:30.0277 3316 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
19:04:30.0277 3316 pcmcia - ok
19:04:30.0317 3316 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
19:04:30.0337 3316 PEAUTH - ok
19:04:30.0536 3316 [ F042EE4C8D66248D9B86DCF52ABAE416 ] PEVSystemStart C:\ComboFix\pev.3XE
19:04:30.0536 3316 PEVSystemStart - ok
19:04:30.0606 3316 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
19:04:30.0646 3316 pla - ok
19:04:30.0676 3316 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
19:04:30.0686 3316 PlugPlay - ok
19:04:30.0706 3316 [ 12B4549D515CB26BB8D375038017CA65 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
19:04:30.0716 3316 Pml Driver HPZ12 - ok
19:04:30.0746 3316 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
19:04:30.0756 3316 PNRPAutoReg - ok
19:04:30.0786 3316 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
19:04:30.0796 3316 PNRPsvc - ok
19:04:30.0816 3316 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
19:04:30.0826 3316 PolicyAgent - ok
19:04:30.0886 3316 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
19:04:30.0896 3316 PptpMiniport - ok
19:04:30.0906 3316 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys
19:04:30.0906 3316 Processor - ok
19:04:30.0946 3316 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
19:04:30.0956 3316 ProfSvc - ok
19:04:30.0976 3316 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
19:04:30.0986 3316 ProtectedStorage - ok
19:04:31.0046 3316 [ 390C204CED3785609AB24E9C52054A84 ] Ps2 C:\Windows\system32\DRIVERS\PS2.sys
19:04:31.0046 3316 Ps2 - ok
19:04:31.0076 3316 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
19:04:31.0086 3316 PSched - ok
19:04:31.0116 3316 [ 40FEDD328F98245AD201CF5F9F311724 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
19:04:31.0126 3316 PxHelp20 - ok
19:04:31.0176 3316 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys
19:04:31.0196 3316 ql2300 - ok
19:04:31.0216 3316 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
19:04:31.0226 3316 ql40xx - ok
19:04:31.0276 3316 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
19:04:31.0286 3316 QWAVE - ok
19:04:31.0326 3316 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
19:04:31.0336 3316 QWAVEdrv - ok
19:04:31.0376 3316 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
19:04:31.0376 3316 RasAcd - ok
19:04:31.0416 3316 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
19:04:31.0426 3316 RasAuto - ok
19:04:31.0476 3316 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
19:04:31.0476 3316 Rasl2tp - ok
19:04:31.0516 3316 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
19:04:31.0526 3316 RasMan - ok
19:04:31.0556 3316 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
19:04:31.0556 3316 RasPppoe - ok
19:04:31.0586 3316 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
19:04:31.0586 3316 RasSstp - ok
19:04:31.0616 3316 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
19:04:31.0626 3316 rdbss - ok
19:04:31.0656 3316 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
19:04:31.0656 3316 RDPCDD - ok
19:04:31.0686 3316 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
19:04:31.0696 3316 rdpdr - ok
19:04:31.0706 3316 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
19:04:31.0706 3316 RDPENCDD - ok
19:04:31.0756 3316 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
19:04:31.0766 3316 RDPWD - ok
19:04:31.0796 3316 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
19:04:31.0796 3316 RemoteAccess - ok
19:04:31.0856 3316 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
19:04:31.0876 3316 RemoteRegistry - ok
19:04:31.0986 3316 [ 2DAC86F10C42B55F2511F14CBCEE7284 ] RoxMediaDB9 c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
19:04:32.0046 3316 RoxMediaDB9 - ok
19:04:32.0076 3316 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
19:04:32.0076 3316 RpcLocator - ok
19:04:32.0106 3316 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\System32\rpcss.dll
19:04:32.0116 3316 RpcSs - ok
19:04:32.0166 3316 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
19:04:32.0166 3316 rspndr - ok
19:04:32.0186 3316 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
19:04:32.0186 3316 SamSs - ok
19:04:32.0226 3316 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
19:04:32.0226 3316 sbp2port - ok
19:04:32.0306 3316 [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
19:04:32.0326 3316 SBSDWSCService - ok
19:04:32.0366 3316 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
19:04:32.0366 3316 SCardSvr - ok
19:04:32.0426 3316 [ 52402149E66200C2C2BDA115BCA757D6 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
19:04:32.0436 3316 SCDEmu - ok
19:04:32.0476 3316 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
19:04:32.0496 3316 Schedule - ok
19:04:32.0536 3316 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
19:04:32.0536 3316 SCPolicySvc - ok
19:04:32.0566 3316 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
19:04:32.0566 3316 SDRSVC - ok
19:04:32.0586 3316 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
19:04:32.0586 3316 secdrv - ok
19:04:32.0626 3316 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
19:04:32.0636 3316 seclogon - ok
19:04:32.0646 3316 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
19:04:32.0656 3316 SENS - ok
19:04:32.0666 3316 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
19:04:32.0666 3316 Serenum - ok
19:04:32.0686 3316 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
19:04:32.0696 3316 Serial - ok
19:04:32.0706 3316 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
19:04:32.0706 3316 sermouse - ok
19:04:32.0766 3316 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
19:04:32.0766 3316 SessionEnv - ok
19:04:32.0786 3316 [ 51CF56AA8BCC241F134B420B8F850406 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
19:04:32.0786 3316 sffdisk - ok
19:04:32.0796 3316 [ 96DED8B20C734AC41641CE275250E55D ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
19:04:32.0796 3316 sffp_mmc - ok
19:04:32.0846 3316 [ 8B08CAB1267B2C377883FC9E56981F90 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
19:04:32.0846 3316 sffp_sd - ok
19:04:32.0866 3316 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
19:04:32.0866 3316 sfloppy - ok
19:04:32.0916 3316 [ D9B734638DD8DBA9D59AAD3189CD0FAD ] Sftfs C:\Windows\system32\DRIVERS\Sftfslh.sys
19:04:32.0926 3316 Sftfs - ok
19:04:33.0006 3316 [ CB73BC422C07FB611F194DA18D1E7F36 ] sftlist C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
19:04:33.0016 3316 sftlist - ok
19:04:33.0046 3316 [ 2F61BD46C0BFF4EB36E1E359CA17BFC5 ] Sftplay C:\Windows\system32\DRIVERS\Sftplaylh.sys
19:04:33.0056 3316 Sftplay - ok
19:04:33.0066 3316 [ 518BAC0179F94304F422696B47C0EC12 ] Sftredir C:\Windows\system32\DRIVERS\Sftredirlh.sys
19:04:33.0066 3316 Sftredir - ok
19:04:33.0096 3316 [ 747325236D88B3F05FFD27FF9EC711C5 ] Sftvol C:\Windows\system32\DRIVERS\Sftvollh.sys
19:04:33.0096 3316 Sftvol - ok
19:04:33.0116 3316 [ A5812F0281CA5081BF696626F9BF324D ] sftvsa C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
19:04:33.0116 3316 sftvsa - ok
19:04:33.0146 3316 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
19:04:33.0156 3316 SharedAccess - ok
19:04:33.0196 3316 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:04:33.0206 3316 ShellHWDetection - ok
19:04:33.0226 3316 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys
19:04:33.0226 3316 sisagp - ok
19:04:33.0256 3316 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
19:04:33.0256 3316 SiSRaid2 - ok
19:04:33.0276 3316 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
19:04:33.0276 3316 SiSRaid4 - ok
19:04:33.0456 3316 [ 4CA43B85F22C7739311788B651A779CB ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
19:04:33.0526 3316 Skype C2C Service - ok
19:04:33.0616 3316 [ DDAA5F4A6B958FC313EBD02DD925752F ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
19:04:33.0616 3316 SkypeUpdate - ok
19:04:33.0726 3316 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
19:04:33.0816 3316 slsvc - ok
19:04:33.0846 3316 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
19:04:33.0856 3316 SLUINotify - ok
19:04:33.0896 3316 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
19:04:33.0896 3316 Smb - ok
19:04:33.0936 3316 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
19:04:33.0936 3316 SNMPTRAP - ok
19:04:33.0992 3316 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
19:04:33.0992 3316 spldr - ok
19:04:34.0023 3316 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
19:04:34.0023 3316 Spooler - ok
19:04:34.0070 3316 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
19:04:34.0070 3316 srv - ok
19:04:34.0116 3316 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
19:04:34.0116 3316 srv2 - ok
19:04:34.0163 3316 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
19:04:34.0163 3316 srvnet - ok
19:04:34.0183 3316 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
19:04:34.0193 3316 SSDPSRV - ok
19:04:34.0233 3316 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
19:04:34.0233 3316 SstpSvc - ok
19:04:34.0303 3316 Steam Client Service - ok
19:04:34.0393 3316 [ 8C37C35FB2D9692DDA0EDDBCA58BFE18 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
19:04:34.0393 3316 Stereo Service - ok
19:04:34.0443 3316 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
19:04:34.0453 3316 stisvc - ok
19:04:34.0513 3316 [ E5FF667E416DAC99BFF16B626234A379 ] stllssvr c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
19:04:34.0523 3316 stllssvr - ok
19:04:34.0543 3316 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
19:04:34.0543 3316 swenum - ok
19:04:34.0583 3316 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
19:04:34.0593 3316 swprv - ok
19:04:34.0603 3316 sxbbihsu - ok
19:04:34.0623 3316 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
19:04:34.0633 3316 Symc8xx - ok
19:04:34.0643 3316 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
19:04:34.0653 3316 Sym_hi - ok
19:04:34.0663 3316 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
19:04:34.0663 3316 Sym_u3 - ok
19:04:34.0713 3316 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
19:04:34.0723 3316 SysMain - ok
19:04:34.0753 3316 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:04:34.0763 3316 TabletInputService - ok
19:04:34.0803 3316 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
19:04:34.0803 3316 TapiSrv - ok
19:04:34.0863 3316 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
19:04:34.0873 3316 TBS - ok
19:04:34.0923 3316 [ EE7E10BED85C312C1D5D30C435BDDA9F ] Tcpip C:\Windows\system32\drivers\tcpip.sys
19:04:34.0953 3316 Tcpip - ok
19:04:34.0983 3316 [ EE7E10BED85C312C1D5D30C435BDDA9F ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
19:04:34.0993 3316 Tcpip6 - ok
19:04:35.0023 3316 [ 2C2D4CFF5E09C73908F9B5AF49A51365 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
19:04:35.0023 3316 tcpipreg - ok
19:04:35.0073 3316 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
19:04:35.0073 3316 TDPIPE - ok
19:04:35.0123 3316 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
19:04:35.0123 3316 TDTCP - ok
19:04:35.0163 3316 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
19:04:35.0163 3316 tdx - ok
19:04:35.0193 3316 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
19:04:35.0203 3316 TermDD - ok
19:04:35.0233 3316 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
19:04:35.0233 3316 TermService - ok
19:04:35.0263 3316 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
19:04:35.0263 3316 Themes - ok
19:04:35.0293 3316 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
19:04:35.0293 3316 THREADORDER - ok
19:04:35.0303 3316 tqjqzlsu - ok
19:04:35.0343 3316 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
19:04:35.0353 3316 TrkWks - ok
19:04:35.0403 3316 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:04:35.0403 3316 TrustedInstaller - ok
19:04:35.0443 3316 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
19:04:35.0453 3316 tssecsrv - ok
19:04:35.0473 3316 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
19:04:35.0473 3316 tunmp - ok
19:04:35.0493 3316 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
19:04:35.0503 3316 tunnel - ok
19:04:35.0503 3316 tyynrxga - ok
19:04:35.0533 3316 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
19:04:35.0533 3316 uagp35 - ok
19:04:35.0573 3316 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
19:04:35.0583 3316 udfs - ok
19:04:35.0633 3316 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
19:04:35.0643 3316 UI0Detect - ok
19:04:35.0663 3316 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
19:04:35.0663 3316 uliagpkx - ok
19:04:35.0683 3316 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys
19:04:35.0683 3316 uliahci - ok
19:04:35.0703 3316 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
19:04:35.0703 3316 UlSata - ok
19:04:35.0723 3316 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
19:04:35.0723 3316 ulsata2 - ok
19:04:35.0753 3316 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
19:04:35.0753 3316 umbus - ok
19:04:35.0793 3316 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
19:04:35.0803 3316 upnphost - ok
19:04:35.0853 3316 [ 9419FAAC6552A51542DBBA02971C841C ] usbbus C:\Windows\system32\DRIVERS\lgusbbus.sys
19:04:35.0863 3316 usbbus - ok
19:04:35.0913 3316 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
19:04:35.0923 3316 usbccgp - ok
19:04:35.0943 3316 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
19:04:35.0943 3316 usbcir - ok
19:04:35.0983 3316 [ C0A466FA4FFEC464320E159BC1BBDC0C ] UsbDiag C:\Windows\system32\DRIVERS\lgusbdiag.sys
19:04:35.0983 3316 UsbDiag - ok
19:04:36.0013 3316 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
19:04:36.0013 3316 usbehci - ok
19:04:36.0063 3316 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
19:04:36.0063 3316 usbhub - ok
19:04:36.0113 3316 [ F74A54774A9B0AFEB3C40ADEC68AA600 ] USBModem C:\Windows\system32\DRIVERS\lgusbmodem.sys
19:04:36.0113 3316 USBModem - ok
19:04:36.0133 3316 [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
19:04:36.0143 3316 usbohci - ok
19:04:36.0173 3316 [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
19:04:36.0173 3316 usbprint - ok
19:04:36.0203 3316 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:04:36.0203 3316 USBSTOR - ok
19:04:36.0239 3316 [ 325DBBACB8A36AF9988CCF40EAC228CC ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
19:04:36.0254 3316 usbuhci - ok
19:04:36.0286 3316 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
19:04:36.0286 3316 UxSms - ok
19:04:36.0317 3316 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
19:04:36.0332 3316 vds - ok
19:04:36.0342 3316 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
19:04:36.0342 3316 vga - ok
19:04:36.0382 3316 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
19:04:36.0392 3316 VgaSave - ok
19:04:36.0402 3316 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys
19:04:36.0402 3316 viaagp - ok
19:04:36.0422 3316 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
19:04:36.0422 3316 ViaC7 - ok
19:04:36.0442 3316 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys
19:04:36.0442 3316 viaide - ok
19:04:36.0462 3316 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
19:04:36.0462 3316 volmgr - ok
19:04:36.0512 3316 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
19:04:36.0512 3316 volmgrx - ok
19:04:36.0552 3316 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
19:04:36.0562 3316 volsnap - ok
19:04:36.0582 3316 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
19:04:36.0582 3316 vsmraid - ok
19:04:36.0652 3316 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
19:04:36.0662 3316 VSS - ok
19:04:36.0692 3316 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
19:04:36.0712 3316 W32Time - ok
19:04:36.0732 3316 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
19:04:36.0732 3316 WacomPen - ok
19:04:36.0782 3316 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
19:04:36.0782 3316 Wanarp - ok
19:04:36.0792 3316 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
19:04:36.0792 3316 Wanarpv6 - ok
19:04:36.0832 3316 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
19:04:36.0842 3316 wcncsvc - ok
19:04:36.0882 3316 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:04:36.0882 3316 WcsPlugInService - ok
19:04:36.0902 3316 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys
19:04:36.0902 3316 Wd - ok
19:04:36.0932 3316 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
19:04:36.0942 3316 Wdf01000 - ok
19:04:36.0982 3316 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
19:04:36.0982 3316 WdiServiceHost - ok
19:04:36.0992 3316 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
19:04:37.0002 3316 WdiSystemHost - ok
19:04:37.0042 3316 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
19:04:37.0052 3316 WebClient - ok
19:04:37.0092 3316 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
19:04:37.0102 3316 Wecsvc - ok
19:04:37.0142 3316 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
19:04:37.0152 3316 wercplsupport - ok
19:04:37.0192 3316 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
19:04:37.0202 3316 WerSvc - ok
19:04:37.0212 3316 WinHttpAutoProxySvc - ok
19:04:37.0262 3316 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
19:04:37.0272 3316 Winmgmt - ok
19:04:37.0322 3316 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
19:04:37.0362 3316 WinRM - ok
19:04:37.0412 3316 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
19:04:37.0422 3316 Wlansvc - ok
19:04:37.0522 3316 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:04:37.0552 3316 wlidsvc - ok
19:04:37.0572 3316 [ 701A9F884A294327E9141D73746EE279 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
19:04:37.0582 3316 WmiAcpi - ok
19:04:37.0622 3316 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
19:04:37.0632 3316 wmiApSrv - ok
19:04:37.0712 3316 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
19:04:37.0732 3316 WMPNetworkSvc - ok
19:04:37.0772 3316 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
19:04:37.0782 3316 WPCSvc - ok
19:04:37.0822 3316 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
19:04:37.0822 3316 WPDBusEnum - ok
19:04:37.0892 3316 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
19:04:37.0902 3316 WpdUsb - ok
19:04:38.0042 3316 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
19:04:38.0052 3316 WPFFontCache_v0400 - ok
19:04:38.0092 3316 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
19:04:38.0102 3316 ws2ifsl - ok
19:04:38.0142 3316 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\system32\wscsvc.dll
19:04:38.0152 3316 wscsvc - ok
19:04:38.0162 3316 WSearch - ok
19:04:38.0252 3316 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
19:04:38.0312 3316 wuauserv - ok
19:04:38.0352 3316 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
19:04:38.0362 3316 WUDFRd - ok
19:04:38.0424 3316 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
19:04:38.0424 3316 wudfsvc - ok
19:04:38.0533 3316 [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
19:04:38.0533 3316 YahooAUService - ok
19:04:38.0548 3316 ================ Scan global ===============================
19:04:38.0580 3316 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
19:04:38.0620 3316 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
19:04:38.0640 3316 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
19:04:38.0690 3316 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
19:04:38.0690 3316 [Global] - ok
19:04:38.0700 3316 ================ Scan MBR ==================================
19:04:38.0720 3316 [ 27A811553A4F7A6A891CA99FFAE128F7 ] \Device\Harddisk0\DR0
19:04:39.0120 3316 \Device\Harddisk0\DR0 - ok
19:04:39.0120 3316 ================ Scan VBR ==================================
19:04:39.0130 3316 [ 8FBA7B9B9E543D59ADEAC3DA1C2BEBB6 ] \Device\Harddisk0\DR0\Partition1
19:04:39.0130 3316 \Device\Harddisk0\DR0\Partition1 - ok
19:04:39.0150 3316 [ 20A3CAF28403A3C1B32A71BE235E508F ] \Device\Harddisk0\DR0\Partition2
19:04:39.0150 3316 \Device\Harddisk0\DR0\Partition2 - ok
19:04:39.0150 3316 ============================================================
19:04:39.0150 3316 Scan finished
19:04:39.0150 3316 ============================================================
19:04:39.0160 3780 Detected object count: 0
19:04:39.0160 3780 Actual detected object count: 0

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-09-22 19:09:15
-----------------------------
19:09:15.195 OS Version: Windows 6.0.6002 Service Pack 2
19:09:15.195 Number of processors: 2 586 0x6B01
19:09:15.195 ComputerName: JUSTIN-PC UserName: Justin
19:09:43.134 Initialize success
19:09:44.055 AVAST engine defs: 12092201
19:10:23.883 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000005a
19:10:23.893 Disk 0 Vendor: ST336032 3.CH Size: 343399MB BusType: 6
19:10:23.903 Disk 0 MBR read successfully
19:10:23.903 Disk 0 MBR scan
19:10:23.913 Disk 0 Windows VISTA default MBR code
19:10:23.913 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 334509 MB offset 63
19:10:23.953 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 8887 MB offset 685075860
19:10:23.963 Disk 0 scanning sectors +703277505
19:10:24.013 Disk 0 scanning C:\Windows\system32\drivers
19:10:38.387 Service scanning
19:10:38.947 Service .dfsc \* **LOCKED** 123
19:11:01.997 Modules scanning
19:11:08.203 Disk 0 trace - called modules:
19:11:08.223 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll storport.sys nvstor32.sys ndis.sys nvmfdx32.sys
19:11:08.223 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85e48480]
19:11:08.233 3 CLASSPNP.SYS[881a48b3] -> nt!IofCallDriver -> [0x84e14b68]
19:11:08.233 5 acpi.sys[806126bc] -> nt!IofCallDriver -> \Device\0000005a[0x84e46c90]
19:11:08.933 AVAST engine scan C:\Windows
19:11:13.269 AVAST engine scan C:\Windows\system32
19:13:59.502 AVAST engine scan C:\Windows\system32\drivers
19:15:16.644 AVAST engine scan C:\Users\Justin
19:23:12.725 Disk 0 MBR has been saved successfully to "C:\Users\Justin\Downloads\MBR.dat"
19:23:12.740 The log file has been saved successfully to "C:\Users\Justin\Downloads\aswMBR.txt"

Before I ran the ESET Online Scanner it said something about Windows Defender and how it could interfere, I checked and I don't think Windows Defender is running but I'm not 100% sure, I actually can't even open Windows Defender.

C:\Qoobox\Quarantine\C\Program Files\Search Toolbar\SearchToolbarUpdater.exe.vir Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\Users\Justin\Downloads\7zipap_718(1).exe a variant of Win32/InstallIQ application cleaned by deleting - quarantined
C:\Users\Justin\Downloads\7zipap_718.exe a variant of Win32/InstallIQ application cleaned by deleting - quarantined

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 23 September 2012 - 06:45 AM

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

Download

FSS

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.



Download

adware cleaner

Launch it click on Delete

post the generated log

#5 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 23 September 2012 - 05:26 PM

I ran a full scan of Malwarebytes and nothing was detected.


ListParts by Farbar
Ran by Justin on 20-02-2012 at 16:34:08
Windows Vista (X86)
Running From: C:\Users\Justin\Downloads
Language: 0409
************************************************************

========================= Memory info ======================

Percentage of memory in use: 58%
Total physical RAM: 2045.76 MB
Available physical RAM: 842.06 MB
Total Pagefile: 4330.1 MB
Available Pagefile: 2978.06 MB
Total Virtual: 2047.88 MB
Available Virtual: 1965.01 MB

======================= Partitions =========================

1 Drive c: (HP) (Fixed) (Total:326.67 GB) (Free:143.28 GB) NTFS ==>[Drive with boot components (obtanied from BCD)]
2 Drive d: (FACTORY_IMAGE) (Fixed) (Total:8.68 GB) (Free:1.18 GB) NTFS ==>[System with boot components (obtained from reading drive)]

Disk ### Status Size Free Dyn Gpt
-------- ---------- ------- ------- --- ---
Disk 0 Online 335 GB 0 B
Disk 1 No Media 0 B 0 B
Disk 2 No Media 0 B 0 B
Disk 3 No Media 0 B 0 B
Disk 4 No Media 0 B 0 B

Partitions of Disk 0:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 327 GB 32 KB
Partition 2 Primary 9 GB 327 GB
Partition 3 Primary 2544 KB 335 GB

Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 C HP NTFS Partition 327 GB Healthy System (partition with boot components)

Disk: 0
Partition 2
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D FACTORY_IMA NTFS Partition 9 GB Healthy

Disk: 0
Partition 3
Type : 17 (Suspicious Type)
Hidden: Yes
Active: No

There is no volume associated with this partition.



****** End Of Log ****** MiniToolBox by Farbar Version: 23-07-2012
Ran by Justin (administrator) on 23-09-2012 at 18:10:00
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com

There are 15248 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

NVIDIA nForce 10/100 Mbps Ethernet = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Justin-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : NVIDIA nForce 10/100 Mbps Ethernet
Physical Address. . . . . . . . . : 00-1B-B9-A3-71-46
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::f50f:46d3:3b70:ef69%8(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.3(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Sunday, September 23, 2012 9:35:35 AM
Lease Expires . . . . . . . . . . : Monday, September 24, 2012 9:35:26 AM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 201333689
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-00-DE-1E-00-1B-B9-A3-71-46
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter Local Area Connection* 6:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 02-00-54-55-4E-01
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 13:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: UnKnown
Address: 192.168.1.1

Name: google.com
Addresses: 2001:4860:800a::8a
74.125.139.113
74.125.139.139
74.125.139.138
74.125.139.102
74.125.139.100
74.125.139.101



Pinging google.com [74.125.139.139] with 32 bytes of data:

Reply from 74.125.139.139: bytes=32 time=18ms TTL=41

Reply from 74.125.139.139: bytes=32 time=19ms TTL=41



Ping statistics for 74.125.139.139:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 18ms, Maximum = 19ms, Average = 18ms

Server: UnKnown
Address: 192.168.1.1

Name: yahoo.com
Addresses: 98.138.253.109
98.139.183.24
72.30.38.140



Pinging yahoo.com [98.139.183.24] with 32 bytes of data:

Reply from 98.139.183.24: bytes=32 time=708ms TTL=45

Reply from 98.139.183.24: bytes=32 time=654ms TTL=44



Ping statistics for 98.139.183.24:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 654ms, Maximum = 708ms, Average = 681ms

Server: UnKnown
Address: 192.168.1.1

DNS request timed out.
timeout was 2 seconds.
Name: bleepingcomputer.com
Address: 208.43.87.2



Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:

Reply from 208.43.87.2: Destination host unreachable.

Reply from 208.43.87.2: Destination host unreachable.



Ping statistics for 208.43.87.2:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),



Pinging 127.0.0.1 with 32 bytes of data:

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
8 ...00 1b b9 a3 71 46 ...... NVIDIA nForce 10/100 Mbps Ethernet
1 ........................... Software Loopback Interface 1
9 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
13 ...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
14 ...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #4
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.3 20
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.3 276
192.168.1.3 255.255.255.255 On-link 192.168.1.3 276
192.168.1.255 255.255.255.255 On-link 192.168.1.3 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.3 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.3 276
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 306 ::1/128 On-link
8 276 fe80::/64 On-link
8 276 fe80::f50f:46d3:3b70:ef69/128
On-link
1 306 ff00::/8 On-link
8 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [223232] (Microsoft Corporation)
ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"

Catalog5 02 C:\Windows\system32\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Windows\System32\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 06 C:\Windows\System32\winrnr.dll [19968] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (09/23/2012 05:48:49 PM) (Source: Automatic LiveUpdate Scheduler) (User: NT AUTHORITY)NT AUTHORITY
Description: Information Level: error

Initialization of the COM subsystem failed. Error code: 0x80004005

Error: (09/23/2012 05:18:29 PM) (Source: Automatic LiveUpdate Scheduler) (User: NT AUTHORITY)NT AUTHORITY
Description: Information Level: error

Initialization of the COM subsystem failed. Error code: 0x80004005

Error: (09/23/2012 05:17:51 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\JUSTIN\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\C2LVC278\B[2].GIF> in the hash map cannot be updated.

Context: Application, SystemIndex Catalog

Details:
A device attached to the system is not functioning. (0x8007001f)

Error: (09/23/2012 05:17:50 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\JUSTIN\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\C2LVC278\PIXEL[1].GIF> in the hash map cannot be updated.

Context: Application, SystemIndex Catalog

Details:
A device attached to the system is not functioning. (0x8007001f)

Error: (09/23/2012 05:09:22 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\JUSTIN\APPDATA\LOCAL\MICROSOFT\WINDOWS\TEMPORARY INTERNET FILES\CONTENT.IE5\FJMJ5RSL\P[1].GIF> in the hash map cannot be updated.

Context: Application, SystemIndex Catalog

Details:
A device attached to the system is not functioning. (0x8007001f)

Error: (09/23/2012 04:50:35 PM) (Source: Automatic LiveUpdate Scheduler) (User: NT AUTHORITY)NT AUTHORITY
Description: Information Level: error

Initialization of the COM subsystem failed. Error code: 0x80004005

Error: (09/23/2012 01:17:02 PM) (Source: Automatic LiveUpdate Scheduler) (User: NT AUTHORITY)NT AUTHORITY
Description: Information Level: error

Initialization of the COM subsystem failed. Error code: 0x80004005

Error: (09/23/2012 09:43:08 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service NisSrv since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.

Error: (09/23/2012 09:40:56 AM) (Source: Automatic LiveUpdate Scheduler) (User: NT AUTHORITY)NT AUTHORITY
Description: Information Level: error

Initialization of the COM subsystem failed. Error code: 0x80004005

Error: (09/23/2012 09:25:13 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service NisSrv since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.


System errors:
=============
Error: (09/23/2012 09:36:20 AM) (Source: Service Control Manager) (User: )
Description: BtHidBus
MpFilter

Error: (09/23/2012 09:36:00 AM) (Source: Service Control Manager) (User: )
Description: Microsoft Antimalware Service%%2

Error: (09/23/2012 09:33:37 AM) (Source: DCOM) (User: )
Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED}

Error: (09/23/2012 09:11:23 AM) (Source: Service Control Manager) (User: )
Description: BtHidBus
MpFilter

Error: (09/23/2012 09:11:08 AM) (Source: Service Control Manager) (User: )
Description: Computer BrowserWorkstation%%1053

Error: (09/23/2012 09:11:08 AM) (Source: Service Control Manager) (User: )
Description: Workstation%%1053

Error: (09/23/2012 09:11:08 AM) (Source: Service Control Manager) (User: )
Description: 30000LanmanWorkstation

Error: (09/23/2012 09:11:08 AM) (Source: Service Control Manager) (User: )
Description: Microsoft Antimalware Service%%2

Error: (09/23/2012 08:49:12 AM) (Source: Service Control Manager) (User: )
Description: BtHidBus
MpFilter

Error: (09/23/2012 08:49:12 AM) (Source: Service Control Manager) (User: )
Description: Client Virtualization HandlerApplication Virtualization Client%%1070


Microsoft Office Sessions:
=========================

=========================== Installed Programs ============================

Update for Microsoft Office 2007 (KB2508958)
32 Bit HP CIO Components Installer (Version: 6.1.2)
7-Zip 9.20
Activation Assistant for the 2007 Microsoft Office suites
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0.1)
ActiveCheck component for HP Active Support Library (Version: 3.0.0.2)
Adobe AIR (Version: 2.5.1.17730)
Adobe Flash Player 10 ActiveX (Version: 10.3.181.34)
Adobe Flash Player 11 Plugin (Version: 11.1.102.55)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Apple Application Support (Version: 2.1.5)
Apple Software Update (Version: 2.1.3.127)
Ask Toolbar (Version: 1.14.1.0)
Ask Toolbar Updater (Version: 1.2.0.20007)
avast! Internet Security (Version: 7.0.1466.0)
AVIcodec (remove only)
Axis & Allies (Version: 1.00.000)
BitTorrentBar Toolbar (Version: 6.2.7.3)
Command & Conquer Generals (Version: 0.50.0000)
Conduit Engine (Version: )
Content Transfer (Version: 1.3.0.23190)
ConvertHelper 2.2
Coupon Printer for Windows (Version: 5.0.0.1)
DivX Setup (Version: 2.6.0.34)
DJ_SF_06_D1600_SW_Min (Version: 140.0.690.000)
Dota 2
Download Manager 2.3.10 (Version: 2.3.10)
Empire Earth II (Version: 1.20)
Empire Earth II: The Art of Supremacy (Version: 1.0)
Empire: Total War
Enhanced Multimedia Keyboard Solution
ESET Online Scanner v3
Far Cry
FrostWire 5.3.4 (Version: 5.3.4.0)
GameSpy Arcade
Google Chrome (Version: 21.0.1180.89)
Google Earth (Version: 6.2.2.6613)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.4.3230.2052)
Google Update Helper (Version: 1.3.21.123)
Hardware Diagnostic Tools (Version: 5.00.4558.05)
Hijack Hunter 1.8.4.1
HiJackThis (Version: 1.0.0)
HP Active Support Library (Version: 2.0.12.1)
HP Active Support Library 32 bit components (Version: 2.1.0)
HP Advisor (Version: 3.1.9152.3107)
HP Customer Experience Enhancements (Version: 5.2.0.2296)
HP Customer Feedback (Version: 1.0.0)
HP Deskjet D1600 Printer Driver 14.0 Rel. 6 (Version: 14.0)
HP Easy Setup - Frontend (Version: 5.2.0.2304)
HP On-Screen Cap/Num/Scroll Lock Indicator
HP Photosmart Essential 2.01 (Version: 2.01)
HP Photosmart Essential2.01 (Version: 1.01.0000)
HP Picasso Media Center Add-In (Version: 1.0.0)
HP Update (Version: 4.000.005.007)
HPAsset component for HP Active Support Library (Version: 3.0.0.7)
Itibiti RTC (Version: 0.0.1)
Java Auto Updater (Version: 2.0.7.1)
Java™ 6 Update 35 (Version: 6.0.350)
Java™ SE Runtime Environment 6 Update 1 (Version: 1.6.0.10)
Killing Floor
LG USB Modem driver
LightScribe System Software (Version: 1.18.24.1)
LiveUpdate 3.2 (Symantec Corporation) (Version: 3.2.0.68)
LiveUpdate Notice (Symantec Corporation) (Version: 1.4.5)
Malwarebytes Anti-Malware version 1.65.0.1400 (Version: 1.65.0.1400)
Medieval II Total War (Version: 1.02.001)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000)
Microsoft Office Home and Student 2010 - English (Version: 14.0.6109.5003)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual J# .NET Redistributable Package 1.1 (Version: 1.1.4322)
Microsoft Works (Version: 08.05.0818)
Mount & Blade: Warband
Mount & Blade: With Fire and Sword
Mozilla Firefox 16.0 (x86 en-US) (Version: 16.0)
Mozilla Maintenance Service (Version: 16.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
muvee autoProducer 6.0 (Version: 6.00.050)
My HP Games (Version: HPCMPQ1804)
NETGEAR Genie (Version: 2.2.26.50 )
Nokia Connectivity Cable Driver (Version: 7.0.2.0)
NVIDIA Display Control Panel (Version: 6.14.12.6658)
NVIDIA Drivers
NVIDIA Graphics Driver 266.58 (Version: 266.58)
NVIDIA Install Application (Version: 2.265.36.0)
NVIDIA PhysX (Version: 9.09.0428)
NVIDIA PhysX (Version: 9.10.0514)
NVIDIA PhysX System Software 9.10.0514 (Version: 9.10.0514)
NWZ-S540 WALKMAN Guide (Version: 2.0.00.07010)
PC Connectivity Solution (Version: 8.22.7.0)
PowerISO (Version: 5.0)
PSSWCORE (Version: 2.01.0000)
Python 2.5 (Version: 2.5.150)
Realtek High Definition Audio Driver (Version: 6.0.1.5789)
Red Orchestra: Ostfront 41-45
Rhapsody
Rhapsody Player Engine (Version: 1.0.604)
Roblox
Rome - Total War (Version: 1.5)
Rome - Total War™ (Version: 1.2)
Rosetta Stone Version 3 (Version: 3.4.7.0)
Roxio Activation Module (Version: 1.0)
Roxio Creator Audio (Version: 3.4.0)
Roxio Creator Basic v9 (Version: 3.4.0)
Roxio Creator Copy (Version: 3.4.0)
Roxio Creator Data (Version: 3.4.0)
Roxio Creator EasyArchive (Version: 3.4.0)
Roxio Creator Tools (Version: 3.4.0)
Roxio Express Labeler 3 (Version: 3.2.1)
Roxio MyDVD Basic v9 (Version: 9.0.572)
SDFormatter (Version: 3.0.0)
Security Task Manager 1.8d (Version: 1.8d)
Skype Click to Call (Version: 6.0.10201)
Skype™ 5.10 (Version: 5.10.116)
Snapfish Picture Mover (Version: 1.9.0.16)
Spybot - Search & Destroy (Version: 1.6.2)
Steam (Version: 1.0.0.0)
Stronghold Kingdoms (Version: Stronghold Kingdoms (Installer v1.17))
Team Fortress 2
Toolbox (Version: 140.0.428.000)
Unity Web Player (Version: )
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
VideoToolkit01 (Version: 90.0.146.000)
War Inc. Battlezone
Warcraft III
WeatherBug Gadget (Version: 1.0.0.6)
Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) (Version: 08/22/2008 7.0.0.0)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
WinRAR 4.01 (32-bit) (Version: 4.01.0)
WMV Converter 3.2
World of Battles
Yahoo! Software Update
Yahoo! Toolbar

========================= Memory info: ===================================

Percentage of memory in use: 73%
Total physical RAM: 2045.76 MB
Available physical RAM: 548.63 MB
Total Pagefile: 4575.05 MB
Available Pagefile: 2287.2 MB
Total Virtual: 2047.88 MB
Available Virtual: 1944.89 MB

========================= Partitions: =====================================

1 Drive c: (HP) (Fixed) (Total:326.67 GB) (Free:124.92 GB) NTFS
2 Drive d: (FACTORY_IMAGE) (Fixed) (Total:8.68 GB) (Free:1.17 GB) NTFS

========================= Users: ========================================

User accounts for \\JUSTIN-PC

Administrator ASPNET Guest
Justin


**** End of log ****

Farbar Service Scanner Version: 19-09-2012
Ran by Justin (administrator) on 23-09-2012 at 18:23:41
Running from "C:\Users\Justin\Downloads"
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============
VSS Service is not running. Checking service configuration:
The start type of VSS service is OK.
The ImagePath of VSS service is OK.


System Restore Disabled Policy:
========================


Security Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of WinDefend. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of WinDefend. The value does not exist.
Unable to retrieve ServiceDll of WinDefend. The value does not exist.


Other Services:
==============


File Check:
========
C:\Windows\system32\nsisvc.dll => MD5 is legit
C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
C:\Windows\system32\dhcpcsvc.dll => MD5 is legit
C:\Windows\system32\Drivers\afd.sys => MD5 is legit
C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
C:\Windows\system32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\system32\dnsrslvr.dll => MD5 is legit
C:\Windows\system32\mpssvc.dll => MD5 is legit
C:\Windows\system32\bfe.dll => MD5 is legit
C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit
C:\Windows\system32\SDRSVC.dll => MD5 is legit
C:\Windows\system32\vssvc.exe => MD5 is legit
C:\Windows\system32\wscsvc.dll => MD5 is legit
C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\system32\wuaueng.dll => MD5 is legit
C:\Windows\system32\qmgr.dll => MD5 is legit
C:\Windows\system32\es.dll => MD5 is legit
C:\Windows\system32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\system32\ipnathlp.dll
[2011-03-04 19:48] - [2008-01-19 03:34] - 0288256 ____A (Microsoft Corporation) E1499BD0FF76B1B2FBBF1AF339D91165

C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit


**** End of log ****

#6 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 23 September 2012 - 05:45 PM

# AdwCleaner v2.003 - Logfile created 09/23/2012 at 18:38:02
# Updated 23/09/2012 by Xplode
# Operating system : Windows Vista ™ Home Premium Service Pack 2 (32 bits)
# User : Justin - JUSTIN-PC
# Boot Mode : Normal
# Running from : C:\Users\Justin\Downloads\adwcleaner(1).exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
Folder Deleted : C:\Program Files\AppGraffiti
Folder Deleted : C:\Program Files\Ask.com
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\ConduitEngine
Folder Deleted : C:\Program Files\Ilivid
Folder Deleted : C:\Program Files\Inbox Toolbar
Folder Deleted : C:\Program Files\RebateInformer
Folder Deleted : C:\Program Files\Vuze_Remote
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\24x7 Help
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RebateInformer
Folder Deleted : C:\Users\Justin\AppData\Local\APN
Folder Deleted : C:\Users\Justin\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Justin\AppData\Local\Temp\avg@toolbar
Folder Deleted : C:\Users\Justin\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Justin\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\Justin\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\Justin\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Justin\AppData\LocalLow\ConduitEngine
Folder Deleted : C:\Users\Justin\AppData\LocalLow\Inbox Toolbar
Folder Deleted : C:\Users\Justin\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Justin\AppData\LocalLow\RebateInformer
Folder Deleted : C:\Users\Justin\AppData\LocalLow\Vuze_Remote
Folder Deleted : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registry] *****

Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\IGearSettings
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\incredibar.com
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\incredibar.com
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2790392
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\conduitEngine
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B238021D-84C3-40C1-9F77-B9898F119AA1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\incredibar.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\incredibar.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Deleted : HKLM\SOFTWARE\Software
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

Restored : [HKCU\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
Restored : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
Restored : [HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
Restored : [HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
Restored : [HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

-\\ Mozilla Firefox v16.0 (en-US)

Profile name : default
File : C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\1fzy1xft.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v21.0.1180.89

File : C:\Users\Justin\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.8] : homepage = "hxxp://www.ask.com/?l=dis&o=14196cr",
Deleted [l.12] : urls_to_restore_on_startup = [ "hxxp://www.ask.com/?l=dis&o=14196cr" ]
Deleted [l.49] : icon_url = "hxxp://www.ask.com/favicon.ico",
Deleted [l.52] : keyword = "ask.com",
Deleted [l.55] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=FWV5&o=14193&locale=en_US&apn_uid=0ca98b5c-730d-45bd-aaec-b59dc406a2b7&apn_ptnrs=FM&apn_sauid=85C6852F-62F5-4967-A102-631206D15AD3&apn_dtid=TES002U0US&q={searchTerms}",
Deleted [l.56] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms}"
Deleted [l.860] : homepage = "hxxp://www.ask.com/?l=dis&o=14196cr",
Deleted [l.1227] : urls_to_restore_on_startup = [ "hxxp://www.ask.com/?l=dis&o=14196cr" ]

*************************

AdwCleaner[S1].txt - [8590 octets] - [23/09/2012 18:38:02]

########## EOF - C:\AdwCleaner[S1].txt - [8650 octets] ##########

#7 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 23 September 2012 - 10:07 PM

Post the new list parts log now

download

http://www.bleepingcomputer.com/download/rkill/

Run it and after scan finishes,post the contents of RKILL log located on the desktop here


Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the text contents here

Edited by narenxp, 27 September 2012 - 03:42 PM.


#8 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 25 September 2012 - 04:57 PM

Okay I'll do it all soon

#9 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 27 September 2012 - 03:34 PM

What do you mean by list parts log?

Rkill 2.4.3 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 09/27/2012 04:21:32 PM in x86 mode.
Windows Version: Windows Vista ™ Home Premium Service Pack 2

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* No issues found.

Checking Windows Service Integrity:

* iphlpsvc [Missing ImagePath]
* WinDefend [Missing ImagePath]
* NetBIOS [Missing ImagePath]

* msiserver => %systemroot%\system32\msiexec.exe /V [Incorrect ImagePath]

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* Cannot edit the HOSTS file.
* Permissions Fixed. Administrators can now edit the HOSTS file.

* HOSTS file entries found:

127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com

20 out of 15268 HOSTS entries shown.
Please review HOSTS file for further entries.

Program finished at: 09/27/2012 04:21:49 PM
Execution time: 0 hours(s), 0 minute(s), and 17 seconds(s)

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" ""
+ "rdpclip" "" "" "File not found: rdpclip"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Adobe ARM" "Adobe Reader and Acrobat Manager" "Adobe Systems Incorporated" "c:\program files\common files\adobe\arm\1.0\adobearm.exe"
+ "APSDaemon" "Apple Push" "Apple Inc." "c:\program files\common files\apple\apple application support\apsdaemon.exe"
+ "avast" "avast! Antivirus" "AVAST Software" "c:\program files\avast software\avast\avastui.exe"
+ "ContentTransferWMDetector.exe" "Content Transfer Walkman Detector" "Sony Corporation" "c:\program files\sony\content transfer\contenttransferwmdetector.exe"
+ "DivXUpdate" "DivX Update" "" "c:\program files\divx\divx update\divxupdate.exe"
+ "HP Health Check Scheduler" "HP Health Check Scheduler" "Hewlett-Packard" "c:\program files\hewlett-packard\hp health check\hphc_scheduler.exe"
+ "HP Software Update" "Hewlett-Packard Product Assistant" "Hewlett-Packard Co." "c:\program files\hp\hp software update\hpwuschd2.exe"
+ "hpsysdrv" "hpsysdrv" "Hewlett-Packard Company" "c:\hp\support\hpsysdrv.exe"
+ "KBD" "" "" "c:\hp\kbd\kbdstub.exe"
+ "OsdMaestro" "OsdMaestro main program" "OsdMaestro" "c:\program files\hewlett-packard\on-screen osd indicator\osd.exe"
+ "PAC207_Monitor" "Registry Monitor" "PixArt Imaging Incorporation" "c:\windows\pixart\pac207\monitor.exe"
+ "PWRISOVM.EXE" "PowerISO Virtual Drive Manager" "Power Software Ltd" "c:\program files\poweriso\pwrisovm.exe"
+ "RtHDVCpl" "HD Audio Control Panel" "Realtek Semiconductor" "c:\windows\rthdvcpl.exe"
+ "SunJavaUpdateReg" "Java™ Platform SE binary" "Sun Microsystems, Inc." "c:\windows\system32\jureg.exe"
+ "SunJavaUpdateSched" "Java™ Update Scheduler" "Sun Microsystems, Inc." "c:\program files\common files\java\java update\jusched.exe"
+ "Symantec PIF AlertEng" "LiveUpdate Notice Service" "Symantec Corporation" "c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\pifsvc.exe"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce" "" "" ""
+ "Launcher" "Launcher" "soft thinks" "c:\windows\sminst\launcher.exe"
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "Snapfish Media Detector.lnk" "Snapfish Media Detector" "" "c:\program files\snapfish picture mover\snapfishmediadetector.exe"
"C:\Users\Justin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "Axis & Allies Registration.lnk" "" "" "File not found: C:\Users\Justin\AppData\Local\temp\{F0F0D245-0329-4DCD-9FB3-FE6C5ECFCE0A}\{47836B39-2465-4F39-9D7E-52F70A1C3D72}\ATR1.EXE"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "LightScribe Control Panel" "" "Hewlett-Packard Company" "c:\program files\common files\lightscribe\lsrunonce.exe"
+ "Microsoft Windows Mail 7" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Google Update" "Google Installer" "Google Inc." "c:\users\justin\appdata\local\google\update\googleupdate.exe"
+ "igndlm.exe" "Download Manager" "IGN Entertainment" "c:\program files\download manager\dlm.exe"
+ "LightScribe Control Panel" "" "Hewlett-Packard Company" "c:\program files\common files\lightscribe\lightscribecontrolpanel.exe"
+ "NETGEARGenie" "" "" "c:\program files\netgear genie\bin\netgeargenie.exe"
+ "SpybotSD TeaTimer" "System settings protector" "Safer-Networking Ltd." "c:\program files\spybot - search & destroy\teatimer.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office12\msoxmlmf.dll"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "ms-help" "Microsoft® Help Data Services Module" "Microsoft Corporation" "c:\program files\common files\microsoft shared\help\hxds.dll"
+ "ms-itss" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\program files\common files\microsoft shared\information retrieval\msitss.dll"
+ "skype-ie-addon-data" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll"
+ "skype4com" "Skype for COM API" "Skype Technologies" "c:\program files\common files\skype\skype4com.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll"
+ "PowerISO" "PowerISOShell DLL" "Power Software Ltd" "c:\program files\poweriso\pwrisosh.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "PowerISO" "PowerISOShell DLL" "Power Software Ltd" "c:\program files\poweriso\pwrisosh.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll"
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll"
+ "PowerISO" "PowerISOShell DLL" "Power Software Ltd" "c:\program files\poweriso\pwrisosh.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "&Yahoo! Toolbar Helper" "Yahoo! Toolbar" "Yahoo! Inc." "c:\program files\yahoo!\companion\installs\cpn2\yt.dll"
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "avast! WebRep" "avast! WebRep Plugin" "AVAST Software" "c:\program files\avast software\avast\aswwebrepie.dll"
+ "BitTorrentBar Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files\bittorrentbar\tbbitt.dll"
+ "DivX Plus Web Player HTML5 <video>" "DivX Plus Web Player HTML5 <video> version 2.1.2.126" "DivX, LLC" "c:\program files\divx\divx plus web player\ie\divxhtml5\divxhtml5.dll"
+ "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files\google\google toolbar\googletoolbar_32.dll"
+ "Java™ Plug-In 2 SSV Helper" "Java™ Platform SE binary" "Sun Microsystems, Inc." "c:\program files\java\jre6\bin\jp2ssv.dll"
+ "Java™ Plug-In SSV Helper" "Java™ Platform SE binary" "Sun Microsystems, Inc." "c:\program files\java\jre6\bin\ssv.dll"
+ "SingleInstance Class" "Yahoo! Single Instance for Mail" "Yahoo! Inc" "c:\program files\yahoo!\companion\installs\cpn0\ytsingleinstance.dll"
+ "Skype Browser Helper" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll"
+ "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corporation" "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" ""
+ "YTNavAssistPlugin Class" "Yahoo! Toolbar" "Yahoo! Inc." "c:\program files\yahoo!\companion\installs\cpn2\yt.dll"
"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "avast! WebRep" "avast! WebRep Plugin" "AVAST Software" "c:\program files\avast software\avast\aswwebrepie.dll"
+ "BitTorrentBar Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files\bittorrentbar\tbbitt.dll"
+ "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files\google\google toolbar\googletoolbar_32.dll"
+ "Yahoo! Toolbar" "Yahoo! Toolbar" "Yahoo! Inc." "c:\program files\yahoo!\companion\installs\cpn2\yt.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "S&end to OneNote" "Microsoft Office OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office12\onbttnie.dll"
+ "Skype Click to Call" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll"
"Task Scheduler" "" "" ""
+ "\Apple\AppleSoftwareUpdate" "Apple Software Update" "Apple Inc." "c:\program files\apple software update\softwareupdate.exe"
+ "\avast! Emergency Update" "avast! Emergency Update" "AVAST Software" "c:\program files\avast software\avast\avastemupdate.exe"
+ "\GoogleUpdateTaskMachineCore" "Google Installer" "Google Inc." "c:\program files\google\update\googleupdate.exe"
+ "\GoogleUpdateTaskMachineUA" "Google Installer" "Google Inc." "c:\program files\google\update\googleupdate.exe"
+ "\GoogleUpdateTaskUserS-1-5-21-664170069-3270079747-3634051635-1000Core" "Google Installer" "Google Inc." "c:\users\justin\appdata\local\google\update\googleupdate.exe"
+ "\GoogleUpdateTaskUserS-1-5-21-664170069-3270079747-3634051635-1000UA" "Google Installer" "Google Inc." "c:\users\justin\appdata\local\google\update\googleupdate.exe"
+ "\HP Health Check" "HP Health Check Scheduler" "Hewlett-Packard" "c:\program files\hewlett-packard\hp health check\hphc_scheduler.exe"
+ "\JavaUpdateAdministrator" "" "" "File not found: C:\Windows\system32\jusched.exe"
+ "\JavaUpdateJustin" "" "" "File not found: C:\Windows\system32\jusched.exe"
+ "\JavaUpdateR&E" "" "" "File not found: C:\Windows\system32\jusched.exe"
+ "\Microsoft\Windows\Wired\GatherWiredInfo" "" "" "c:\windows\system32\gatherwiredinfo.vbs"
+ "\Microsoft\Windows\Wireless\GatherWirelessInfo" "" "" "c:\windows\system32\gatherwirelessinfo.vbs"
+ "\Scheduled Update for Ask Toolbar" "" "" "File not found: C:\Program Files\Ask.com\UpdateTask.exe"
+ "\{4E79C48E-23D3-4590-98BA-2C75F0E11FE8}" "Skype " "Skype Technologies S.A." "c:\program files\skype\phone\skype.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "AdobeARMservice" "Adobe Acrobat Updater keeps your Adobe software up to date." "Adobe Systems Incorporated" "c:\program files\common files\adobe\arm\1.0\armsvc.exe"
+ "Automatic LiveUpdate Scheduler" "Manages the scheduling of Automatic LiveUpdate sessions" "Symantec Corporation" "c:\program files\symantec\liveupdate\aluschedulersvc.exe"
+ "avast! Antivirus" "Manages and implements avast! antivirus services for this computer. This includes the resident protection, the virus chest and the scheduler." "AVAST Software" "c:\program files\avast software\avast\avastsvc.exe"
+ "avast! Firewall" "Implements main functionality for avast! Firewall" "AVAST Software" "c:\program files\avast software\avast\afwserv.exe"
+ "cvhsvc" "Client Virtualization Handler Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\virtualization handler\cvhsvc.exe"
+ "FLEXnet Licensing Service" "This service performs licensing functions on behalf of FLEXnet enabled products." "Acresso Software Inc." "c:\program files\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe"
+ "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files\google\update\googleupdate.exe"
+ "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files\google\update\googleupdate.exe"
+ "gusvc" "Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work." "Google" "c:\program files\google\common\google updater\googleupdaterservice.exe"
+ "HP Health Check Service" "HP Health Check Service" "Hewlett-Packard" "c:\program files\hewlett-packard\hp health check\hphc_service.exe"
+ "IDriverT" "Provides support for the Running Object Table for InstallShield Drivers" "Macrovision Corporation" "c:\program files\common files\installshield\driver\1050\intel 32\idrivert.exe"
+ "LightScribeService" "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work." "Hewlett-Packard Company" "c:\program files\common files\lightscribe\lssrvc.exe"
+ "LiveUpdate" "LiveUpdate Core Engine" "Symantec Corporation" "c:\program files\symantec\liveupdate\lucomserver_3_2.exe"
+ "LiveUpdate Notice Ex" "Manages Norton product notices." "" "File not found: c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe"
+ "LiveUpdate Notice Service" "Manages Norton product notices" "Symantec Corporation" "c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\pifsvc.exe"
+ "MozillaMaintenance" "The Mozilla Maintenance Service ensures that you have the latest and most secure version of Mozilla Firefox on your computer. Keeping Firefox up to date is very important for your online security, and Mozilla strongly recommends that you keep this service enabled." "Mozilla Foundation" "c:\program files\mozilla maintenance service\maintenanceservice.exe"
+ "MsMpSvc" "@C:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-240" "" "File not found: C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe"
+ "Net Driver HPZ12" "Dot4Net Module" "Hewlett-Packard" "c:\windows\system32\hpzinw12.dll"
+ "NETGEARGenieDaemon" "NETGEAR Genie Daemon for Windows" "NETGEAR" "c:\program files\netgear genie\bin\netgeargeniedaemon.exe"
+ "NisSrv" "@C:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-242" "" "File not found: C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe"
+ "NVSvc" "NVIDIA Driver Helper Service, Version 266.58" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe"
+ "odserv" "Run portions of Microsoft Office Diagnostics." "Microsoft Corporation" "c:\program files\common files\microsoft shared\office12\odserv.exe"
+ "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files\common files\microsoft shared\source engine\ose.exe"
+ "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"
+ "PEVSystemStart" "" "" "c:\combofix\pev.3xe"
+ "Pml Driver HPZ12" "PmlDrv Module" "Hewlett-Packard" "c:\windows\system32\hpzipm12.dll"
+ "RoxMediaDB9" "Roxio RoxMediaDB9 Service" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\sharedcom\roxmediadb9.exe"
+ "SBSDWSCService" "Spybot-S&D Security Center integration" "Safer Networking Ltd." "c:\program files\spybot - search & destroy\sdwinsec.exe"
+ "sftlist" "Streams and manages applications." "Microsoft Corporation" "c:\program files\microsoft application virtualization client\sftlist.exe"
+ "sftvsa" "Monitors global service events and launches virtual services." "Microsoft Corporation" "c:\program files\microsoft application virtualization client\sftvsa.exe"
+ "Skype C2C Service" "Skype Click to Call Update Service" "Skype Technologies S.A." "c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe"
+ "SkypeUpdate" "Enables the detection, download and installation of updates for Skype." "Skype Technologies" "c:\program files\skype\updater\updater.exe"
+ "Steam Client Service" "Steam Client Service monitors and updates Steam content" "Valve Corporation" "c:\program files\common files\steam\steamservice.exe"
+ "stllssvr" "SureThing Labelflash Disc Printer Service Module" "MicroVision Development, Inc." "c:\program files\common files\surething shared\stllssvr.exe"
+ "wlidsvc" "Enables Windows Live ID authentication." "Microsoft Corporation" "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe"
+ "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
+ "YahooAUService" "Keeps your favorite Yahoo! software up-to-date with the latest features, tools, and enhancements." "Yahoo! Inc." "c:\program files\yahoo!\softwareupdate\yahooauservice.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ ".dfsc" "" "" "File not found: \*"
+ "aswFsBlk" "avast! mini-filter driver (aswFsBlk)" "AVAST Software" "c:\windows\system32\drivers\aswfsblk.sys"
+ "aswFW" "avast! TDI Firewall driver" "AVAST Software" "c:\windows\system32\drivers\aswfw.sys"
+ "aswKbd" "avast! keyboard filter driver (aswKbd)" "AVAST Software" "c:\windows\system32\drivers\aswkbd.sys"
+ "aswMonFlt" "avast! mini-filter driver (aswMonFlt)" "AVAST Software" "c:\windows\system32\drivers\aswmonflt.sys"
+ "aswNdis" "avast! Filtering NDIS driver" "ALWIL Software" "c:\windows\system32\drivers\aswndis.sys"
+ "aswNdis2" "avast! Firewall Core Firewall Service" "AVAST Software" "c:\windows\system32\drivers\aswndis2.sys"
+ "AswRdr" "avast! TDI Redirect driver" "AVAST Software" "c:\windows\system32\drivers\aswrdr.sys"
+ "aswSnx" "avast! virtualization driver (aswSnx)" "AVAST Software" "c:\windows\system32\drivers\aswsnx.sys"
+ "aswSP" "avast! Self Protection" "AVAST Software" "c:\windows\system32\drivers\aswsp.sys"
+ "aswTdi" "avast! Network Shield TDI driver" "AVAST Software" "c:\windows\system32\drivers\aswtdi.sys"
+ "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys"
+ "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys"
+ "BT" "" "" "File not found: system32\DRIVERS\btnetdrv.sys"
+ "BTCOM" "" "" "File not found: system32\DRIVERS\btcomport.sys"
+ "BTCOMBUS" "" "" "File not found: System32\Drivers\btcombus.sys"
+ "BtHidBus" "" "" "File not found: System32\Drivers\BtHidBus.sys"
+ "btnetBUs" "" "" "c:\windows\system32\drivers\btnetbus.sys"
+ "catchme" "" "" "File not found: C:\Users\Justin\AppData\Local\Temp\catchme.sys"
+ "E1G60" "Intel® PRO/1000 Adapter NDIS 6 deserialized driver" "Intel Corporation" "c:\windows\system32\drivers\e1g60i32.sys"
+ "IntcAzAudAddService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhda.sys"
+ "IpInIp" "IP in IP Tunnel Driver" "" "File not found: system32\DRIVERS\ipinip.sys"
+ "IvtBtBUs" "" "" "File not found: System32\Drivers\IvtBtBus.sys"
+ "MpFilter" "Microsoft On-Access Malware Protection Mini-Filter Driver" "" "File not found: system32\DRIVERS\MpFilter.sys"
+ "MpNWMon" "Microsoft Network Monitor Malware Protection Driver" "" "File not found: system32\DRIVERS\MpNWMon.sys"
+ "NisDrv" "NIS helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "" "File not found: system32\DRIVERS\NisDrvWFP.sys"
+ "NPF" "npf.sys (NT5/6 x86) Kernel Driver" "CACE Technologies, Inc." "c:\windows\system32\drivers\npf.sys"
+ "NVENETFD" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvmfdx32.sys"
+ "nvlddmkm" "NVIDIA Windows Kernel Mode Driver, Version 295.73 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvlddmkm.sys"
+ "nvstor32" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor32.sys"
+ "NwlnkFlt" "IPX Traffic Filter Driver" "" "File not found: system32\DRIVERS\nwlnkflt.sys"
+ "NwlnkFwd" "IPX Traffic Forwarder Driver" "" "File not found: system32\DRIVERS\nwlnkfwd.sys"
+ "PAC207" "PFC027" "PixArt Imaging Inc." "c:\windows\system32\drivers\pfc027.sys"
+ "pccsmcfd" "PCCS Mode Change Filter Driver" "Nokia" "c:\windows\system32\drivers\pccsmcfd.sys"
+ "Ps2" "PS2 SYS" "Hewlett-Packard Company" "c:\windows\system32\drivers\ps2.sys"
+ "PxHelp20" "Px Engine Device Driver for Windows 2000/XP" "Sonic Solutions" "c:\windows\system32\drivers\pxhelp20.sys"
+ "SCDEmu" "PowerISO Virtual Drive" "Power Software Ltd" "c:\windows\system32\drivers\scdemu.sys"
+ "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "sxbbihsu" "" "" "File not found: C:\Windows\system32\drivers\sxbbihsu.sys"
+ "tqjqzlsu" "" "" "File not found: C:\Windows\system32\drivers\tqjqzlsu.sys"
+ "tyynrxga" "" "" "File not found: C:\Windows\system32\drivers\tyynrxga.sys"
+ "usbbus" "LG CDMA USB Multi function Driver" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbbus.sys"
+ "UsbDiag" "LGE CDMA USB Serial Port" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbdiag.sys"
+ "USBModem" "LGE CDMA Modem Support" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbmodem.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\system32\iccvid.dll"
+ "vidc.DIVX" "DivX" "DivX, Inc." "c:\windows\system32\divx.dll"
+ "vidc.yv12" "DivX" "DivX, Inc." "c:\windows\system32\divx.dll"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "9x8Resize" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Allocator Fix" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Audio Destination" "WAVDest Filter (Sample)" "Microsoft Corporation" "c:\program files\google\google earth\client\wavdest.ax"
+ "Bitmap" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Capture ASF Writer" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "DivX AAC Decoder" "AAC audio decoder filter" "DivX, Inc." "c:\program files\divx\divx plus directshow filters\daac.ax"
+ "DivX Decoder Filter" "DivX Decoder Filter" "DivX, Inc." "c:\program files\divx\divx codec\divxdec.ax"
+ "DivX Demux Filter" "DivX Plus DMF Navigator Filter" "DivX, Inc." "c:\program files\divx\divx plus directshow filters\directshowdemuxfilter.dll"
+ "DivX Demux Filter (Unrestricted Edition)" "DivX Plus DMF Navigator Filter" "DivX, Inc." "c:\program files\divx\divx plus directshow filters\directshowdemuxfilter.dll"
+ "DivX for Blizzard Decoder Filter" "DivX ™ Decoder Filter" "DivXNetworks, Inc." "c:\program files\warcraft iii\blizzard.ax"
+ "DivX H.264 Decoder" "DivX H.264 Decoder Filter" "DivX, Inc." "c:\program files\divx\divx plus directshow filters\divxdech264.ax"
+ "Frame Eater" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "HP VTK Frame Grabber Filter" "HP Video Toolkit" "Hewlett-Packard Co." "c:\program files\common files\hp\digital imaging\bin\hpqvtk01.dll"
+ "HP VTK MPEG-1 Encoder" "HP Video Toolkit" "Hewlett-Packard Co." "c:\program files\common files\hp\digital imaging\bin\hpqvtk01.dll"
+ "HP VTK Resize Filter" "HP Video Toolkit" "Hewlett-Packard Co." "c:\program files\common files\hp\digital imaging\bin\hpqvtk01.dll"
+ "HP VTK Rotate Filter" "HP Video Toolkit" "Hewlett-Packard Co." "c:\program files\common files\hp\digital imaging\bin\hpqvtk01.dll"
+ "LVMWriter" "LVMWriter" "Sonic Solutions" "c:\program files\roxio\videocore 9\lvmwriter.ax"
+ "MainConcept (Muvee) MPEG Audio Decoder" "MPEG Video and Audio Decoder" "MainConcept AG" "c:\program files\common files\muvee technologies\mainconcept2\muveedsmpeg.ax"
+ "MainConcept (Muvee) MPEG Audio Encoder" "MPEG Audio Encoder" "MainConcept AG" "c:\program files\common files\muvee technologies\mainconcept2\muveeeampeg.ax"
+ "MainConcept (Muvee) MPEG Splitter" "Mpeg I/II Splitter" "MainConcept AG" "c:\program files\common files\muvee technologies\mainconcept2\muveespmpeg.ax"
+ "MainConcept (Muvee) MPEG Video Decoder" "MPEG Video and Audio Decoder" "MainConcept AG" "c:\program files\common files\muvee technologies\mainconcept2\muveedsmpeg.ax"
+ "MainConcept (Muvee) MPEG-2 Video Decoder" "MPEG-2 Video Decoder" "MainConcept AG" "c:\program files\common files\muvee technologies\mainconcept3\muveem2vd.ax"
+ "MainConcept (Sonic) DV Video Decoder" "DirectShow DV Video Encoder and Decoder" "MainConcept AG (Sonic)" "c:\program files\roxio\videocore 9\sonicmcdsdv.ax"
+ "MainConcept (Sonic) DV Video Encoder" "DirectShow DV Video Encoder and Decoder" "MainConcept AG (Sonic)" "c:\program files\roxio\videocore 9\sonicmcdsdv.ax"
+ "Media Analyser" "analyse Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\mediaanalyser.ax"
+ "MediaWriter Filter" "NetWrite Filter" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\mediawriter.ax"
+ "Multiple File Output" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "muvee Audio Scope" "Audio Scope Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\mvaudioscope.ax"
+ "muvee HXImage Filter" "HXImage Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\hximagefilter.ax"
+ "muvee MediaProgress Filter" "MediaProgress Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\muvee technologies\muvee autoproducer 6.0 - hpd\mvmediaprogress.ax"
+ "muvee Music Analyser" "Music Analyser Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\mvmanalyse.ax"
+ "muvee Source Filter" "muveeSource Module" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\muveesource.ax"
+ "muvee Video Analyser" "Video Analyser Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\mvvanalyse.ax"
+ "Proxy Sink" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Proxy Source" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "PSI Parser" "" "" "c:\program files\roxio\videocore 9\psiparser.ax"
+ "QuickTime Encoder" "QuickTime Encoder" "muvee Technologies" "c:\program files\common files\muvee technologies\030625\quicktimesink.ax"
+ "QuickTime Source Filter" "QuickTimeSource Module" "" "c:\program files\common files\muvee technologies\030625\quicktimesource.dll"
+ "QuickTimeRenderer Filter" "QuickTimeRenderer Filter" "muvee Technologies Pte. Ltd." "c:\program files\common files\muvee technologies\030625\quicktimerenderer.ax"
+ "Record Queue" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Roxio Audio Decoder (DVD)" "ROXIO Audio Decoder" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\roxiodvdaudio.dll"
+ "ROXIO Audio Source 3.0" "VW Audio Source" "Sonic Solutions" "c:\program files\roxio\videocore 9\audiosrc.ax"
+ "ROXIO Audio VCFChunker 3.0" "Chunker Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\chunker.ax"
+ "ROXIO Audio VCFLooper 3.0" "Looper Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\looper.ax"
+ "ROXIO AudioConvert 3.0" "AudioConvert Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\audconv.ax"
+ "ROXIO AudioGrabber 3.0" "VideoWave Frame Grabber" "Sonic Solutions" "c:\program files\roxio\videocore 9\thumbnailgraber.ax"
+ "ROXIO ColorSpace Converter 3.0" "ROXIO Color Space Converter" "Sonic Solutions" "c:\program files\roxio\videocore 9\colorspconv.dll"
+ "ROXIO CrossGraphEx Renderer 3.0" "CrossGraphEx.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\crossgraphex.ax"
+ "ROXIO CrossGraphEx Source 3.0" "CrossGraphEx.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\crossgraphex.ax"
+ "roxio DCFilters Audio Sync Filter 2" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters Dragons Lair" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters DVD Muxer" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters DVDStream Reader" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters DVDStream Splitter" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters Mpeg I/II Decoder" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters Smart Resizer" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "roxio DCFilters Subpicture Mixer" "roxio DiscCopier DirectShow Filter Collection" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\dllshared\dcfilters9.dll"
+ "ROXIO Deinterlace 3.0" "Video Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\deinter.ax"
+ "ROXIO DVDCrossGraphEx Renderer 3.0" "DVDCrossGraphEx.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\dvdcrossgraphex.ax"
+ "ROXIO DVDCrossGraphEx Source 3.0" "DVDCrossGraphEx.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\dvdcrossgraphex.ax"
+ "ROXIO Image/Colour Source 3.0" "Colour Frame Source" "Sonic Solutions" "c:\program files\roxio\videocore 9\imagesource.ax"
+ "ROXIO ListImage Source 3.0" "ListFrameSource" "Sonic Solutions" "c:\program files\roxio\videocore 9\listimagesource.ax"
+ "ROXIO LPCMSyncFilter" "LPCMSync Filter" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\lpcmsyncfilter.dll"
+ "Roxio LVM File Source (Async.)" "LVMAsync" "Sonic Solutions" "c:\program files\roxio\videocore 9\lvmasync.ax"
+ "Roxio MPEG Analyzer Filter" "MPEG File Analyzer Dynamic Link Library" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\roxiompegprop.dll"
+ "Roxio MPEG Stream Analyzer" "Roxio MPEG Stream Splitter" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpegstreamanalyzer.dll"
+ "Roxio MPEG1 Audio Encoder" "ROXIO MPEG Audio Encoder" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\roxioaudioenc.dll"
+ "Roxio MPEG1 Encoder" "ROXIO MPEG1 Codec" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg1vidcodec.dll"
+ "Roxio MPEG1 Muxer" "ROXIO MPEG MUXER" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg1muxer.dll"
+ "Roxio MPEG2 Demuxer" "ROXIO MPEG Demuxer" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\roxiompegdemuxer.dll"
+ "Roxio MPEG2 Encoder" "ROXIO MPEG2 Codec" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg2vidcodec.dll"
+ "Roxio MPEG2 Muxer" "ROXIO MPEG MUXER" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg2muxer.dll"
+ "Roxio MPEG2 Video Decoder" "ROXIO MPEG2 Codec" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg2vidcodec.dll"
+ "ROXIO Pan Zoom 3.0" "Video Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\panzoom.ax"
+ "ROXIO Pin Tee" "" "" "c:\program files\roxio\videocore 9\roxioinftee.ax"
+ "Roxio Plasma CrossGraph Renderer" "MGICGFilter.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\plasmacgfilter.ax"
+ "Roxio Plasma CrossGraph Source" "MGICGFilter.ax" "Sonic Solutions" "c:\program files\roxio\videocore 9\plasmacgfilter.ax"
+ "ROXIO QT Source" "QuickTime Loader" "Sonic Solutions" "c:\program files\roxio\videocore 9\qtsource.ax"
+ "ROXIO QuickGrabber 3.0" "VideoWave Frame Grabber" "Sonic Solutions" "c:\program files\roxio\videocore 9\thumbnailgraber.ax"
+ "ROXIO Raw Writer" "ROXIO Raw Writer" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mgirawwriter.dll"
+ "Roxio Repack Filter" "Repack Filter" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\repackfilter.dll"
+ "ROXIO Scene Detector 3.0" "Video Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\scenedetector.ax"
+ "ROXIO SceneRecorder 1.0" "DVR support filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\scenerecorderfilt.ax"
+ "ROXIO Simple Dump 3.0" "Simple Dump Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\rxsimpledump.ax"
+ "Roxio Smart Decoder" "ROXIO MPEG2 Codec" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg2vidcodec.dll"
+ "Roxio Smart Encoder" "ROXIO MPEG2 Codec" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\mpeg2vidcodec.dll"
+ "ROXIO SpyPos 3.0" "Null-In-Place (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\mginullip.ax"
+ "ROXIO ThumbnailGrabber 3.0" "VideoWave Frame Grabber" "Sonic Solutions" "c:\program files\roxio\videocore 9\thumbnailgraber.ax"
+ "Roxio Transport Stream Source" "ListFrameSource" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\tsmpegsource.dll"
+ "ROXIO VCFAudioMixer 3.0" "AudioFlt Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\audmf.ax"
+ "ROXIO VCFDvrSupport 3.0" "DVR support filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\dvrsupportfilt.ax"
+ "ROXIO VCFDVSceneDetect 1.0" "DVR support filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\dvscenedetectfilt.ax"
+ "ROXIO VCFLatency 3.0" "Latency Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\latency.ax"
+ "ROXIO VCFpeakmeter 3.0" "Peakmeter Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\peakmeter.ax"
+ "ROXIO VCFVideoCutList 3.0" "Video CutList Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\vcutlist.ax"
+ "ROXIO VCFWaveform 1.0" "Waveform Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\waveform.ax"
+ "ROXIO Video Resampler 3.0" "Video Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\vresamfilt.ax"
+ "ROXIO Video VCFLooper 3.0" "Video Looper Filter (Sample)" "Sonic Solutions" "c:\program files\roxio\videocore 9\vlooper.ax"
+ "ROXIO VideoCombine 3.0" "Video Effect Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\videocombine.ax"
+ "Roxio VOB Formatter" "VOBFormatter" "Sonic Solutions" "c:\program files\roxio\videocore 9\vobformatter.ax"
+ "Roxio Vob Loader" "VOBLoader" "Sonic Solutions" "c:\program files\roxio\videocore 9\vobloader.ax"
+ "ROXIO WAV Dest 3.0" "MGI Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\wavhead.ax"
+ "Sewer" "MVWcDSutil" "Sonic Solutions" "c:\program files\roxio\videocore 9\mvwcdsutil.dll"
+ "ShotDetect" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Sonic MPEG Audio Decoder" "MPEG Video and Audio Decoder" "Sonic Solutions Inc." "c:\program files\common files\sonic shared\sonicmc01\sonicdsmpeg.ax"
+ "Sonic MPEG Video Decoder" "MPEG Video and Audio Decoder" "Sonic Solutions Inc." "c:\program files\common files\sonic shared\sonicmc01\sonicdsmpeg.ax"
+ "Sonic MPEG-2 Video Decoder" "MPEG-2 Video Decoder" "Sonic Solutions Inc" "c:\program files\common files\sonic shared\sonicmc01\sonicm2vd.ax"
+ "Sony ATRAC3/3plus Decode Filter" "Sony ATRAC3/3plus Decode Filter" "Sony Corporation" "c:\windows\system32\atxdec.ax"
+ "Sony ATRAC3/3plus Parse Filter" "Sony ATRAC3/3plus Parse Filter" "Sony Corporation" "c:\windows\system32\atxparser.ax"
+ "SonyMp4AacDecoder" "SonyMp4AacDecoder" "sony" "c:\program files\sony\content transfer\sonymp4aacdecoder.ax"
+ "Stetch" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "SubPicture Encoder" "ROXIO SubPicture Encoder" "Sonic Solutions" "c:\program files\common files\roxio shared\9.0\mpeg\subpictenc.dll"
+ "VCG Null Renderer 3.0" "" "" "c:\program files\roxio\videocore 9\videocompositing.ax"
+ "VCG Video Mixer 3.0" "" "" "c:\program files\roxio\videocore 9\videocompositing.ax"
+ "VCGImageSource" "" "" "c:\program files\roxio\videocore 9\videocompositing.ax"
+ "VMR9 Wrapper 3.0" "" "" "c:\program files\roxio\videocore 9\videocompositing.ax"
+ "VW Input Selector" "Video Effect Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\inputselector.ax"
+ "VW Input Selector 2" "Video Effect Filter" "Sonic Solutions" "c:\program files\roxio\videocore 9\inputselector.ax"
+ "WM VIH2 Fix" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Audio Analyzer" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Black Frame Generator" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT DV Extract Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT FormatConversion" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Import Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Interlacer" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Log Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT MuxDeMux Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Sample Info Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Switch Filter" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Renderer" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Source" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Volume" "Windows Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "{1AD512C6-24AF-4395-82B4-2D3CF21F44A2}" "Roxio MP3 Encoder Dynamic Link Library" "Roxio" "c:\program files\common files\roxio shared\sharedcom\rxdsaudiostreamwriter.ax"
+ "{472C92F0-5438-423D-9B30-FD2932EA44EE}" "Roxio Audio Source Filter" "Microsoft Corporation" "c:\program files\common files\roxio shared\sharedcom\rxdsaudiosource.ax"
+ "{58FF69ED-8388-483B-B9AC-3EB04BBEB913}" "Roxio Audio Stream Reader Filter" "Microsoft Corporation" "c:\program files\common files\roxio shared\sharedcom\rxdsaudiostreamreader.ax"
+ "{B7CCDD5D-DFE7-47ED-AE9A-18A40F7FCBBF}" "Roxio MP3 Encoder Dynamic Link Library" "Roxio" "c:\program files\common files\roxio shared\9.0\sharedcom\rxdsmp3encoder.ax"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "hpfll70v.dll" "LanguageMonitor" "Hewlett-Packard Company" "c:\windows\system32\hpfll70v.dll"
"C:\Users\Justin\AppData\Local\Microsoft\Windows Sidebar\Settings.ini" "" "" ""
+ "Avast! antivirus monitor" "Avast! antivirus sidebar gadget." "AVAST Software" "C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget\Gadget.xml"
+ "Clock" "Watch the clock in your own time zone or any city in the world." "Microsoft Corporation" "C:\Program Files\windows sidebar\gadgets\Clock.gadget\en-US\Gadget.xml"
+ "Feed Headlines" "Track the latest news, sports, and entertainment headlines." "Microsoft Corporation" "C:\Program Files\windows sidebar\gadgets\RSSFeeds.Gadget\en-US\Gadget.xml"
+ "Slide Show" "Show a continuous slide show of your pictures." "Microsoft Corporation" "C:\Program Files\windows sidebar\gadgets\SlideShow.Gadget\en-US\Gadget.xml"

#10 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 27 September 2012 - 03:44 PM

Any current issues?

#11 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 28 September 2012 - 03:48 PM

not really

#12 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 28 September 2012 - 03:51 PM

That looks good

Remove temporary and junk files

Download

TFC

Launch it,it will close all running programs

click on START,it should ask for reboot.If TFC locks up the system,run it in safemode


Create a new restore point

Follow this guide to turn off and turn on your restore points

XP-http://support.microsoft.com/kb/310405

Vista & windows 7-http://windows.microsoft.com/en-US/windows7/Turn-System-Restore-on-or-off

Turn off your system restore-It deletes old infected restore points

Turn on system restore and create a new restore point

Update JAVA and Flash player

Uninstall old version of java from control panel-Add or remove programs.Download the latest version from here

http://java.com/en/

Update your flash player

Antivirus recommendations

Update your antivirus frequently.Two free antivirus that i would suggest are

Microsoft security essentials or Avast.You can select either one of them.

If you have a paid one,make sure to update it frequently.Do not use multiple security softwares.

Informative guides that could prevent you from being infected again

How did I get infected?

http://www.bleepingcomputer.com/forums/topic2520.html

Best Practices for Safe Computing - Prevention of Malware Infection

http://www.bleepingcomputer.com/forums/topic407147.html

Simple and easy ways to keep your computer safe and secure on the Internet

http://www.bleepingcomputer.com/tutorials/keep-your-computer-safe-online/

Safe surfing :)

#13 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 10 October 2012 - 08:54 PM

Okay thanks for the help. And I have a question I'm hoping that you can help me with, Does the System Fix Virus ask for social security number when it tries to make people buy it? I didn't think so but I was reading online and this guy said it did or maybe he was just using examples.
http://www.thriftyfun.com/tf65598358.tip.html

#14 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:19 AM

Posted 10 October 2012 - 08:59 PM

Every rogue software would ask to activate their product.We have to ignore the warning and run scans to remove them. :thumbup2:

#15 Artanderxia

Artanderxia
  • Topic Starter

  • Members
  • 113 posts
  • OFFLINE
  •  
  • Local time:12:19 AM

Posted 11 October 2012 - 04:53 AM

Answer the question please because I used to have the virus




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users