Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Happili Trojan + FBI Green Dot?


  • This topic is locked This topic is locked
10 replies to this topic

#1 iamnothing

iamnothing

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 22 October 2012 - 03:07 AM

Hello,
I am using a vaio with windows xp. While doing some browsing the computer suddenly went to what I believe is the FBI Green Dot ransomware. My webcam turned on and I could see myself in the top portion of the screen. I restarted the computer and scanned with superantispyware, which said it found the trojan Happili. I next scanned with malwarebytes anti-malware and microsoft security essentials. These scans found nothing. I am consistently getting redirected in both chrome and explorer.
I found a thread regarding FBI Green Dot and followed the instructions to remove using emsisoft. I have included the scan log for this, but I am still getting redirected. I am not sure if this the FBI Green Dot or Happili, or both. I look forward to speaking with someone. Thanks so much.


Emsisoft Emergency Kit - Version 2.0
Last update: 10/22/2012 12:05:46 AM

Scan settings:

Scan type: Deep Scan
Objects: Rootkits, Memory, Traces, C:\
Scan archives: On
ADS Scan: On

Scan start: 10/22/2012 12:06:21 AM

C:\Users\Brian\AppData\Local\temp\3.942578910968221E7 detected: Trojan.Win32.Yakes!E2
C:\ProgramData\Microsoft\Windows\DRM\F732.tmp detected: Trojan.Win64.Olmarik!E1
C:\ProgramData\Microsoft\Windows\DRM\F761.tmp detected: Trojan.Win64.Olmarik!E1
C:\Program Files (x86)\Intuit\QuickBooks 2009\Components\Support\RemoteAssist.exe detected: Riskware.RemoteAdmin.Win32.WinVNC-based.AMN!E1

Scanned 608210
Found 4

Scan end: 10/22/2012 1:49:18 AM
Scan time: 1:42:57

C:\Program Files (x86)\Intuit\QuickBooks 2009\Components\Support\RemoteAssist.exe Quarantined Riskware.RemoteAdmin.Win32.WinVNC-based.AMN!E1
C:\ProgramData\Microsoft\Windows\DRM\F732.tmp Quarantined Trojan.Win64.Olmarik!E1
C:\ProgramData\Microsoft\Windows\DRM\F761.tmp Quarantined Trojan.Win64.Olmarik!E1
C:\Users\Brian\AppData\Local\temp\3.942578910968221E7 Quarantined Trojan.Win32.Yakes!E2

Quarantined 4

BC AdBot (Login to Remove)

 


#2 Jimbob85

Jimbob85

  • Members
  • 308 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:VA, USA
  • Local time:03:45 AM

Posted 22 October 2012 - 09:34 AM

Lets start with a few scans:

Please Download Tdsskiller

Run TDSSKiller.exe
Click on Change Parameters
Put a check in the box of Detect TDLFS file system
Start scan
When it is finished the utility outputs a list of detected objects with descriptions:
The utility automatically selects an action (Cure or Delete) for malicious objects and asks you what to do with suspicious objects (Skip, by default)
Just stick with the default options and click Continue
If it wants to reboot please allow it to do so and let me know
Click on Report and post the contents of the text file that will open

By default, the utility outputs the log into system disk (it is usually the disk where the operating system is installed, C:\) root folder. The Log will have a name like: TDSSKiller.Version_Date_Time_log.txt.




Please Download Malwarebytes AKA MBAM

Update Malwarebytes via the update tab.
Run a full scan
When the scan finnishes please select Remove Selected and make sure all of the boxs are checked
Please post the results

The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
Copy and paste the contents of that report in your next reply. Be sure to post the complete log to
include the top portion which shows MBAM's database version and your operating system.

#3 iamnothing

iamnothing
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 22 October 2012 - 06:03 PM

Jimbob,
Thanks so much for responding. I had one question before I started scanning. I already have mbam. Should I remove the old one and download and install new one? Wasn't sure about that. Thanks so much.

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,176 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:04:45 AM

Posted 22 October 2012 - 07:26 PM

Just update the MBAM you have.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 iamnothing

iamnothing
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 24 October 2012 - 09:57 AM

Boopme,
Thank you. I was away for work and wasn't able to get to it. Thank you for the quick response. Will scan now.

#6 iamnothing

iamnothing
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 24 October 2012 - 11:41 AM

Here are the first two logs:
thanks again!

Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.10.24.05

Windows Vista Service Pack 2 x64 NTFS
Internet Explorer 9.0.8112.16421
Brian :: BRIAN-PC [administrator]

10/24/2012 10:59:57 AM
mbam-log-2012-10-24 (10-59-57).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 361676
Time elapsed: 1 hour(s), 30 minute(s), 16 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

12:36:57.0733 3612 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47
12:36:57.0795 3612 ============================================================
12:36:57.0795 3612 Current date / time: 2012/10/24 12:36:57.0795
12:36:57.0795 3612 SystemInfo:
12:36:57.0795 3612
12:36:57.0795 3612 OS Version: 6.0.6002 ServicePack: 2.0
12:36:57.0795 3612 Product type: Workstation
12:36:57.0795 3612 ComputerName: BRIAN-PC
12:36:57.0795 3612 UserName: Brian
12:36:57.0795 3612 Windows directory: C:\Windows
12:36:57.0795 3612 System windows directory: C:\Windows
12:36:57.0795 3612 Running under WOW64
12:36:57.0795 3612 Processor architecture: Intel x64
12:36:57.0795 3612 Number of processors: 2
12:36:57.0795 3612 Page size: 0x1000
12:36:57.0795 3612 Boot type: Normal boot
12:36:57.0795 3612 ============================================================
12:36:58.0934 3612 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:36:58.0949 3612 ============================================================
12:36:58.0949 3612 \Device\Harddisk0\DR0:
12:36:58.0949 3612 MBR partitions:
12:36:58.0949 3612 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1524000, BlocksNum 0x23F0A2B0
12:36:58.0949 3612 ============================================================
12:36:58.0981 3612 C: <-> \Device\Harddisk0\DR0\Partition1
12:36:58.0981 3612 ============================================================
12:36:58.0981 3612 Initialize success
12:36:58.0981 3612 ============================================================
12:37:03.0988 0176 ============================================================
12:37:03.0988 0176 Scan started
12:37:03.0988 0176 Mode: Manual; TDLFS;
12:37:03.0988 0176 ============================================================
12:37:04.0285 0176 ================ Scan system memory ========================
12:37:04.0285 0176 System memory - ok
12:37:04.0285 0176 ================ Scan services =============================
12:37:04.0347 0176 [ 7D9D615201A483D6FA99491C2E655A5A ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
12:37:04.0347 0176 !SASCORE - ok
12:37:04.0519 0176 [ 3044D0F3FEB9FFE8BC953D8F34B5B504 ] A2DDA C:\Users\Brian\Desktop\EmsisoftEmergencyKit\Run\a2ddax64.sys
12:37:04.0519 0176 A2DDA - ok
12:37:04.0628 0176 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
12:37:04.0628 0176 ACDaemon - ok
12:37:04.0753 0176 [ 1965AAFFAB07E3FB03C77F81BEBA3547 ] ACPI C:\Windows\system32\drivers\acpi.sys
12:37:04.0768 0176 ACPI - ok
12:37:04.0877 0176 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
12:37:04.0877 0176 AdobeFlashPlayerUpdateSvc - ok
12:37:04.0924 0176 [ F14215E37CF124104575073F782111D2 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
12:37:04.0924 0176 adp94xx - ok
12:37:04.0955 0176 [ 7D05A75E3066861A6610F7EE04FF085C ] adpahci C:\Windows\system32\drivers\adpahci.sys
12:37:04.0955 0176 adpahci - ok
12:37:04.0971 0176 [ 820A201FE08A0C345B3BEDBC30E1A77C ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
12:37:04.0987 0176 adpu160m - ok
12:37:05.0018 0176 [ 9B4AB6854559DC168FBB4C24FC52E794 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
12:37:05.0018 0176 adpu320 - ok
12:37:05.0049 0176 [ 0F421175574BFE0BF2F4D8E910A253BB ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:37:05.0049 0176 AeLookupSvc - ok
12:37:05.0111 0176 [ C4F6CE6087760AD70960C9EB130E7943 ] AFD C:\Windows\system32\drivers\afd.sys
12:37:05.0127 0176 AFD - ok
12:37:05.0158 0176 [ F6F6793B7F17B550ECFDBD3B229173F7 ] agp440 C:\Windows\system32\drivers\agp440.sys
12:37:05.0174 0176 agp440 - ok
12:37:05.0189 0176 [ 222CB641B4B8A1D1126F8033F9FD6A00 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
12:37:05.0189 0176 aic78xx - ok
12:37:05.0236 0176 [ 5922F4F59B7868F3D74BBBBEB7B825A3 ] ALG C:\Windows\System32\alg.exe
12:37:05.0252 0176 ALG - ok
12:37:05.0283 0176 [ 157D0898D4B73F075CE9FA26B482DF98 ] aliide C:\Windows\system32\drivers\aliide.sys
12:37:05.0283 0176 aliide - ok
12:37:05.0299 0176 [ 970FA5059E61E30D25307B99903E991E ] amdide C:\Windows\system32\drivers\amdide.sys
12:37:05.0299 0176 amdide - ok
12:37:05.0314 0176 [ CDC3632A3A5EA4DBB83E46076A3165A1 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
12:37:05.0314 0176 AmdK8 - ok
12:37:05.0345 0176 [ 2E0D64D672F9E3EDD51531FA91F33DA5 ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys
12:37:05.0361 0176 ApfiltrService - ok
12:37:05.0377 0176 [ 9C37B3FD5615477CB9A0CD116CF43F5C ] Appinfo C:\Windows\System32\appinfo.dll
12:37:05.0377 0176 Appinfo - ok
12:37:05.0470 0176 [ 3DEBBECF665DCDDE3A95D9B902010817 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:37:05.0470 0176 Apple Mobile Device - ok
12:37:05.0501 0176 [ BA8417D4765F3988FF921F30F630E303 ] arc C:\Windows\system32\drivers\arc.sys
12:37:05.0501 0176 arc - ok
12:37:05.0533 0176 [ 9D41C435619733B34CC16A511E644B11 ] arcsas C:\Windows\system32\drivers\arcsas.sys
12:37:05.0533 0176 arcsas - ok
12:37:05.0580 0176 [ 1CE3822B05A5E229286A15EA39369870 ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
12:37:05.0580 0176 ArcSoftKsUFilter - ok
12:37:05.0596 0176 [ 22D13FF3DAFEC2A80634752B1EAA2DE6 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:37:05.0596 0176 AsyncMac - ok
12:37:05.0627 0176 [ 1898FAE8E07D97F2F6C2D5326C633FAC ] atapi C:\Windows\system32\drivers\atapi.sys
12:37:05.0627 0176 atapi - ok
12:37:05.0690 0176 [ 390BC9B68E1EF2A299731BC775D43004 ] athr C:\Windows\system32\DRIVERS\athrx.sys
12:37:05.0705 0176 athr - ok
12:37:05.0768 0176 [ 20C8215AD926C2DB4E4915AD7D24241E ] Ati External Event Utility C:\Windows\system32\Ati2evxx.exe
12:37:05.0783 0176 Ati External Event Utility - ok
12:37:05.0955 0176 [ A0E8B71A181930338B45F371A25CDEC4 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
12:37:06.0095 0176 atikmdag - ok
12:37:06.0142 0176 [ 79318C744693EC983D20E9337A2F8196 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
12:37:06.0158 0176 AudioEndpointBuilder - ok
12:37:06.0173 0176 [ 79318C744693EC983D20E9337A2F8196 ] AudioSrv C:\Windows\System32\Audiosrv.dll
12:37:06.0173 0176 AudioSrv - ok
12:37:06.0189 0176 Beep - ok
12:37:06.0251 0176 [ FFB96C2589FFA60473EAD78B39FBDE29 ] BFE C:\Windows\System32\bfe.dll
12:37:06.0251 0176 BFE - ok
12:37:06.0329 0176 [ 6D316F4859634071CC25C4FD4589AD2C ] BITS C:\Windows\system32\qmgr.dll
12:37:06.0360 0176 BITS - ok
12:37:06.0392 0176 [ 79FEEB40056683F8F61398D81DDA65D2 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
12:37:06.0392 0176 blbdrive - ok
12:37:06.0470 0176 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
12:37:06.0485 0176 Bonjour Service - ok
12:37:06.0532 0176 [ 2348447A80920B2493A9B582A23E81E1 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:37:06.0532 0176 bowser - ok
12:37:06.0580 0176 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
12:37:06.0580 0176 BrFiltLo - ok
12:37:06.0595 0176 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
12:37:06.0595 0176 BrFiltUp - ok
12:37:06.0627 0176 [ A1B39DE453433B115B4EA69EE0343816 ] Browser C:\Windows\System32\browser.dll
12:37:06.0642 0176 Browser - ok
12:37:06.0689 0176 [ F0F0BA4D815BE446AA6A4583CA3BCA9B ] Brserid C:\Windows\system32\drivers\brserid.sys
12:37:06.0689 0176 Brserid - ok
12:37:06.0736 0176 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
12:37:06.0736 0176 BrSerWdm - ok
12:37:06.0767 0176 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
12:37:06.0767 0176 BrUsbMdm - ok
12:37:06.0783 0176 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
12:37:06.0783 0176 BrUsbSer - ok
12:37:06.0814 0176 [ 471FF09330A53177BBE9FD6DDF8A8259 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
12:37:06.0829 0176 BthEnum - ok
12:37:06.0845 0176 [ E0777B34E05F8A82A21856EFC900C29F ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
12:37:06.0845 0176 BTHMODEM - ok
12:37:06.0892 0176 [ BEFC5311736B475AC5B60C14FF7C775A ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
12:37:06.0892 0176 BthPan - ok
12:37:06.0970 0176 [ 7D104F22C04A76F0D2F96F789AC07FCB ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
12:37:06.0985 0176 BTHPORT - ok
12:37:07.0017 0176 [ 22E65FFD640F16968F855F5B3528D366 ] BthServ C:\Windows\System32\bthserv.dll
12:37:07.0032 0176 BthServ - ok
12:37:07.0048 0176 [ D9324F0C142267961CE900BFC3798BB1 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
12:37:07.0063 0176 BTHUSB - ok
12:37:07.0095 0176 [ 1ABD26DE34D3A5E346E96D721C0D67F8 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
12:37:07.0095 0176 btwaudio - ok
12:37:07.0141 0176 [ 3081D3213A3D2DF2F3E7BBD816C17225 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
12:37:07.0141 0176 btwavdt - ok
12:37:07.0204 0176 [ 51871801EF4F79F22683ABEF7BEA989B ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
12:37:07.0219 0176 btwdins - ok
12:37:07.0251 0176 [ 0037CB116097E8E0EA77F3B13C50FF1E ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
12:37:07.0251 0176 btwl2cap - ok
12:37:07.0266 0176 [ 6921AD2FAF1CB24B2FFC78104721D506 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
12:37:07.0266 0176 btwrchid - ok
12:37:07.0329 0176 [ FDB53A8D3BC52DC29884587E768E3388 ] CAXHWAZL C:\Windows\system32\DRIVERS\CAXHWAZL.sys
12:37:07.0329 0176 CAXHWAZL - ok
12:37:07.0344 0176 [ B4D787DB8D30793A4D4DF9FEED18F136 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:37:07.0360 0176 cdfs - ok
12:37:07.0391 0176 [ C025AA69BE3D0D25C7A2E746EF6F94FC ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
12:37:07.0391 0176 cdrom - ok
12:37:07.0438 0176 [ 5A268127633C7EE2A7FB87F39D748D56 ] CertPropSvc C:\Windows\System32\certprop.dll
12:37:07.0438 0176 CertPropSvc - ok
12:37:07.0469 0176 [ 02EA568D498BBDD4BA55BF3FCE34D456 ] circlass C:\Windows\system32\drivers\circlass.sys
12:37:07.0469 0176 circlass - ok
12:37:07.0516 0176 [ 3DCA9A18B204939CFB24BEA53E31EB48 ] CLFS C:\Windows\system32\CLFS.sys
12:37:07.0516 0176 CLFS - ok
12:37:07.0578 0176 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:37:07.0578 0176 clr_optimization_v2.0.50727_32 - ok
12:37:07.0656 0176 [ CE07A466201096F021CD09D631B21540 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
12:37:07.0656 0176 clr_optimization_v2.0.50727_64 - ok
12:37:07.0734 0176 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:37:07.0765 0176 clr_optimization_v4.0.30319_32 - ok
12:37:07.0797 0176 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
12:37:07.0859 0176 clr_optimization_v4.0.30319_64 - ok
12:37:07.0906 0176 [ B52D9A14CE4101577900A364BA86F3DF ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
12:37:07.0906 0176 CmBatt - ok
12:37:07.0921 0176 [ E5D5499A1C50A54B5161296B6AFE6192 ] cmdide C:\Windows\system32\drivers\cmdide.sys
12:37:07.0937 0176 cmdide - ok
12:37:07.0953 0176 [ 7FB8AD01DB0EABE60C8A861531A8F431 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
12:37:07.0953 0176 Compbatt - ok
12:37:07.0968 0176 COMSysApp - ok
12:37:07.0968 0176 [ A8585B6412253803CE8EFCBD6D6DC15C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
12:37:07.0968 0176 crcdisk - ok
12:37:08.0031 0176 [ CA78B312C44E4D52E842C2C8BD48E452 ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:37:08.0046 0176 CryptSvc - ok
12:37:08.0109 0176 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] DcomLaunch C:\Windows\system32\rpcss.dll
12:37:08.0124 0176 DcomLaunch - ok
12:37:08.0187 0176 [ 8B722BA35205C71E7951CDC4CDBADE19 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
12:37:08.0187 0176 DfsC - ok
12:37:08.0296 0176 [ C647F468F7DE343DF8C143655C5557D4 ] DFSR C:\Windows\system32\DFSR.exe
12:37:08.0389 0176 DFSR - ok
12:37:08.0436 0176 [ 3ED0321127CE70ACDAABBF77E157C2A7 ] Dhcp C:\Windows\System32\dhcpcsvc.dll
12:37:08.0452 0176 Dhcp - ok
12:37:08.0483 0176 [ B0107E40ECDB5FA692EBF832F295D905 ] disk C:\Windows\system32\drivers\disk.sys
12:37:08.0499 0176 disk - ok
12:37:08.0499 0176 DMICall - ok
12:37:08.0545 0176 [ 06230F1B721494A6DF8D47FD395BB1B0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:37:08.0561 0176 Dnscache - ok
12:37:08.0592 0176 [ 1A7156DD1E850E9914E5E991E3225B94 ] dot3svc C:\Windows\System32\dot3svc.dll
12:37:08.0608 0176 dot3svc - ok
12:37:08.0655 0176 [ 74C02B1717740C3B8039539E23E4B53F ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
12:37:08.0655 0176 Dot4 - ok
12:37:08.0686 0176 [ 08321D1860235BF42CF2854234337AEA ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
12:37:08.0686 0176 Dot4Print - ok
12:37:08.0717 0176 [ 4ADCCF0124F2B6911D3786A5D0E779E5 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
12:37:08.0717 0176 dot4usb - ok
12:37:08.0764 0176 [ 1583B39790DB3EAEC7EDB0CB0140C708 ] DPS C:\Windows\system32\dps.dll
12:37:08.0764 0176 DPS - ok
12:37:08.0779 0176 [ F1A78A98CFC2EE02144C6BEC945447E6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:37:08.0779 0176 drmkaud - ok
12:37:08.0873 0176 [ B8E554E502D5123BC111F99D6A2181B4 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:37:08.0889 0176 DXGKrnl - ok
12:37:08.0920 0176 [ 264CEE7B031A9D6C827F3D0CB031F2FE ] E1G60 C:\Windows\system32\DRIVERS\E1G6032E.sys
12:37:08.0920 0176 E1G60 - ok
12:37:08.0951 0176 [ C2303883FD9BE49DC36A6400643002EA ] EapHost C:\Windows\System32\eapsvc.dll
12:37:08.0951 0176 EapHost - ok
12:37:08.0982 0176 [ 5F94962BE5A62DB6E447FF6470C4F48A ] Ecache C:\Windows\system32\drivers\ecache.sys
12:37:08.0998 0176 Ecache - ok
12:37:09.0029 0176 [ 14CE384D2E27B64C256BDA4DC39C312D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
12:37:09.0045 0176 ehRecvr - ok
12:37:09.0060 0176 [ B93159C1313D66FDFBBE876F5189CD52 ] ehSched C:\Windows\ehome\ehsched.exe
12:37:09.0060 0176 ehSched - ok
12:37:09.0076 0176 [ F5EE2527D74449868E3C3227A59BCD28 ] ehstart C:\Windows\ehome\ehstart.dll
12:37:09.0076 0176 ehstart - ok
12:37:09.0123 0176 [ C4636D6E10469404AB5308D9FD45ED07 ] elxstor C:\Windows\system32\drivers\elxstor.sys
12:37:09.0138 0176 elxstor - ok
12:37:09.0201 0176 [ A9B18B63A4FD6BAAB83326706D857FAB ] EMDMgmt C:\Windows\system32\emdmgmt.dll
12:37:09.0201 0176 EMDMgmt - ok
12:37:09.0216 0176 [ BC3A58E938BB277E46BF4B3003B01ABD ] ErrDev C:\Windows\system32\drivers\errdev.sys
12:37:09.0216 0176 ErrDev - ok
12:37:09.0279 0176 [ E12F22B73F153DECE721CD45EC05B4AF ] EventSystem C:\Windows\system32\es.dll
12:37:09.0294 0176 EventSystem - ok
12:37:09.0388 0176 [ 2898EEC4FF1C8204222D266F48A35B7D ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
12:37:09.0419 0176 EvtEng - ok
12:37:09.0466 0176 [ 486844F47B6636044A42454614ED4523 ] exfat C:\Windows\system32\drivers\exfat.sys
12:37:09.0481 0176 exfat - ok
12:37:09.0528 0176 [ 1A4BEE34277784619DDAF0422C0C6E23 ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:37:09.0528 0176 fastfat - ok
12:37:09.0575 0176 [ 81B79B6DF71FA1D2C6D688D830616E39 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
12:37:09.0575 0176 fdc - ok
12:37:09.0637 0176 [ BB9267ACACD8B7533DD936C34A0CBA5E ] fdPHost C:\Windows\system32\fdPHost.dll
12:37:09.0637 0176 fdPHost - ok
12:37:09.0637 0176 [ 300C80931EABBE1DB7591C516EFE8D0F ] FDResPub C:\Windows\system32\fdrespub.dll
12:37:09.0637 0176 FDResPub - ok
12:37:09.0669 0176 [ 457B7D1D533E4BD62A99AED9C7BB4C59 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:37:09.0669 0176 FileInfo - ok
12:37:09.0684 0176 [ D421327FD6EFCCAF884A54C58E1B0D7F ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:37:09.0684 0176 Filetrace - ok
12:37:09.0700 0176 [ 230923EA2B80F79B0F88D90F87B87EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
12:37:09.0715 0176 flpydisk - ok
12:37:09.0747 0176 [ E3041BC26D6930D61F42AEDB79C91720 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:37:09.0762 0176 FltMgr - ok
12:37:09.0840 0176 [ BE1C5BD1CA7ED015BC6FA1AE67E592C8 ] FontCache C:\Windows\system32\FntCache.dll
12:37:09.0856 0176 FontCache - ok
12:37:09.0903 0176 [ BC5B0BE5AF3510B0FD8C140EE42C6D3E ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
12:37:09.0903 0176 FontCache3.0.0.0 - ok
12:37:09.0965 0176 [ 5779B86CD8B32519FBECB136394D946A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:37:09.0965 0176 Fs_Rec - ok
12:37:09.0981 0176 [ C8E416668D3DC2BE3D4FE4C79224997F ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
12:37:09.0996 0176 gagp30kx - ok
12:37:10.0043 0176 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
12:37:10.0043 0176 GEARAspiWDM - ok
12:37:10.0090 0176 [ A0E1B575BA8F504968CD40C0FAEB2384 ] gpsvc C:\Windows\System32\gpsvc.dll
12:37:10.0105 0176 gpsvc - ok
12:37:10.0183 0176 [ 626A24ED1228580B9518C01930936DF9 ] gupdate1c9d08e6d157c97 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:37:10.0183 0176 gupdate1c9d08e6d157c97 - ok
12:37:10.0183 0176 [ 626A24ED1228580B9518C01930936DF9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:37:10.0183 0176 gupdatem - ok
12:37:10.0199 0176 [ CC839E8D766CC31A7710C9F38CF3E375 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
12:37:10.0215 0176 gusvc - ok
12:37:10.0246 0176 [ DF45F8142DC6DF9D18C39B3EFFBD0409 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:37:10.0261 0176 HdAudAddService - ok
12:37:10.0324 0176 [ F942C5820205F2FB453243EDFEC82A3D ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
12:37:10.0355 0176 HDAudBus - ok
12:37:10.0371 0176 [ B4881C84A180E75B8C25DC1D726C375F ] HidBth C:\Windows\system32\drivers\hidbth.sys
12:37:10.0371 0176 HidBth - ok
12:37:10.0402 0176 [ 4E77A77E2C986E8F88F996BB3E1AD829 ] HidIr C:\Windows\system32\drivers\hidir.sys
12:37:10.0402 0176 HidIr - ok
12:37:10.0464 0176 [ 59361D38A297755D46A540E450202B2A ] hidserv C:\Windows\System32\hidserv.dll
12:37:10.0464 0176 hidserv - ok
12:37:10.0511 0176 [ 443BDD2D30BB4F00795C797E2CF99EDF ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
12:37:10.0511 0176 HidUsb - ok
12:37:10.0542 0176 [ B12F367EA39C0795FD57E31242CE1A5A ] hkmsvc C:\Windows\system32\kmsvc.dll
12:37:10.0542 0176 hkmsvc - ok
12:37:10.0573 0176 [ D7109A1E6BD2DFDBCBA72A6BC626A13B ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
12:37:10.0573 0176 HpCISSs - ok
12:37:10.0667 0176 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
12:37:10.0683 0176 hpqcxs08 - ok
12:37:10.0714 0176 [ DF446BA625CC441617843E87798CE048 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
12:37:10.0714 0176 hpqddsvc - ok
12:37:10.0761 0176 [ 57BA73B5B321291E5114CB21350E1EA0 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL6.SYS
12:37:10.0776 0176 HSFHWAZL - ok
12:37:10.0854 0176 [ E90D0E3D9715F3BEC7DB2D6321DDDEE8 ] HSF_DPV C:\Windows\system32\DRIVERS\CAX_DPV.sys
12:37:10.0885 0176 HSF_DPV - ok
12:37:10.0932 0176 [ 098F1E4E5C9CB5B0063A959063631610 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:37:10.0948 0176 HTTP - ok
12:37:10.0979 0176 [ DA94C854CEA5FAC549D4E1F6E88349E8 ] i2omp C:\Windows\system32\drivers\i2omp.sys
12:37:10.0979 0176 i2omp - ok
12:37:11.0010 0176 [ CBB597659A2713CE0C9CC20C88C7591F ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
12:37:11.0010 0176 i8042prt - ok
12:37:11.0041 0176 [ 8D58627FEF3F8767665D9F4DC91CBD97 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
12:37:11.0057 0176 iaStor - ok
12:37:11.0073 0176 [ 3E3BF3627D886736D0B4E90054F929F6 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
12:37:11.0088 0176 iaStorV - ok
12:37:11.0166 0176 [ 749F5F8CEDCA70F2A512945325FC489D ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
12:37:11.0197 0176 idsvc - ok
12:37:11.0213 0176 igfx - ok
12:37:11.0244 0176 [ 8C3951AD2FE886EF76C7B5027C3125D3 ] iirsp C:\Windows\system32\drivers\iirsp.sys
12:37:11.0260 0176 iirsp - ok
12:37:11.0307 0176 [ 0C9EA6E654E7B0471741E343A6C671AF ] IKEEXT C:\Windows\System32\ikeext.dll
12:37:11.0322 0176 IKEEXT - ok
12:37:11.0400 0176 [ 18F7691B18D4A93559D2A998AB2142BD ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
12:37:11.0431 0176 IntcAzAudAddService - ok
12:37:11.0447 0176 IntcHdmiAddService - ok
12:37:11.0463 0176 [ DF797A12176F11B2D301C5B234BB200E ] intelide C:\Windows\system32\drivers\intelide.sys
12:37:11.0478 0176 intelide - ok
12:37:11.0494 0176 [ BFD84AF32FA1BAD6231C4585CB469630 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
12:37:11.0494 0176 intelppm - ok
12:37:11.0525 0176 [ 5624BC1BC5EEB49C0AB76A8114F05EA3 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
12:37:11.0525 0176 IPBusEnum - ok
12:37:11.0556 0176 [ D8AABC341311E4780D6FCE8C73C0AD81 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:37:11.0556 0176 IpFilterDriver - ok
12:37:11.0603 0176 [ BF0DBFA9792C5C14FA00F61C75116C1B ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:37:11.0603 0176 iphlpsvc - ok
12:37:11.0619 0176 IpInIp - ok
12:37:11.0634 0176 [ 9C2EE2E6E5A7203BFAE15C299475EC67 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
12:37:11.0650 0176 IPMIDRV - ok
12:37:11.0665 0176 [ B7E6212F581EA5F6AB0C3A6CEEEB89BE ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
12:37:11.0665 0176 IPNAT - ok
12:37:11.0743 0176 [ EE4C2A137C7088911A8919EFFC9812E7 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
12:37:11.0759 0176 iPod Service - ok
12:37:11.0790 0176 [ 8C42CA155343A2F11D29FECA67FAA88D ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:37:11.0790 0176 IRENUM - ok
12:37:11.0806 0176 [ 0672BFCEDC6FC468A2B0500D81437F4F ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:37:11.0806 0176 isapnp - ok
12:37:11.0837 0176 [ E4FDF99599F27EC25D2CF6D754243520 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
12:37:11.0837 0176 iScsiPrt - ok
12:37:11.0853 0176 [ 63C766CDC609FF8206CB447A65ABBA4A ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
12:37:11.0868 0176 iteatapi - ok
12:37:11.0884 0176 [ 1281FE73B17664631D12F643CBEA3F59 ] iteraid C:\Windows\system32\drivers\iteraid.sys
12:37:11.0884 0176 iteraid - ok
12:37:11.0899 0176 [ 213822072085B5BBAD9AF30AB577D817 ] IviRegMgr C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
12:37:11.0915 0176 IviRegMgr - ok
12:37:11.0931 0176 [ 423696F3BA6472DD17699209B933BC26 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
12:37:11.0931 0176 kbdclass - ok
12:37:11.0962 0176 [ DBDF75D51464FBC47D0104EC3D572C05 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
12:37:11.0962 0176 kbdhid - ok
12:37:12.0009 0176 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] KeyIso C:\Windows\system32\lsass.exe
12:37:12.0009 0176 KeyIso - ok
12:37:12.0071 0176 [ 88956AD9FA510848AD176777A6C6C1F5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:37:12.0087 0176 KSecDD - ok
12:37:12.0118 0176 [ 1D419CF43DB29396ECD7113D129D94EB ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
12:37:12.0118 0176 ksthunk - ok
12:37:12.0149 0176 [ 1FAF6926F3416D3DA05C5B265491BDAE ] KtmRm C:\Windows\system32\msdtckrm.dll
12:37:12.0165 0176 KtmRm - ok
12:37:12.0227 0176 [ 50C7A3CB427E9BB5ED0708A669956AB5 ] LanmanServer C:\Windows\System32\srvsvc.dll
12:37:12.0243 0176 LanmanServer - ok
12:37:12.0289 0176 [ CAF86FC1388BE1E470F1A7B43E348ADB ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:37:12.0289 0176 LanmanWorkstation - ok
12:37:12.0321 0176 [ 96ECE2659B6654C10A0C310AE3A6D02C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:37:12.0321 0176 lltdio - ok
12:37:12.0367 0176 [ 961CCBD0B1CCB5675D64976FAE37D092 ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:37:12.0367 0176 lltdsvc - ok
12:37:12.0399 0176 [ A47F8080CACC23C91FE823AD19AA5612 ] lmhosts C:\Windows\System32\lmhsvc.dll
12:37:12.0414 0176 lmhosts - ok
12:37:12.0430 0176 [ ACBE1AF32D3123E330A07BFBC5EC4A9B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
12:37:12.0430 0176 LSI_FC - ok
12:37:12.0461 0176 [ 799FFB2FC4729FA46D2157C0065B3525 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
12:37:12.0461 0176 LSI_SAS - ok
12:37:12.0492 0176 [ F445FF1DAAD8A226366BFAF42551226B ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
12:37:12.0492 0176 LSI_SCSI - ok
12:37:12.0523 0176 [ 52F87B9CC8932C2A7375C3B2A9BE5E3E ] luafv C:\Windows\system32\drivers\luafv.sys
12:37:12.0523 0176 luafv - ok
12:37:12.0570 0176 [ 76A58DF02BD4EA29F189B82D0BEF17F8 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
12:37:12.0570 0176 Mcx2Svc - ok
12:37:12.0601 0176 [ E4F44EC214B3E381E1FC844A02926666 ] mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys
12:37:12.0617 0176 mdmxsdk - ok
12:37:12.0633 0176 [ 5C5CD6AACED32FB26C3FB34B3DCF972F ] megasas C:\Windows\system32\drivers\megasas.sys
12:37:12.0648 0176 megasas - ok
12:37:12.0679 0176 [ 859BC2436B076C77C159ED694ACFE8F8 ] MegaSR C:\Windows\system32\drivers\megasr.sys
12:37:12.0679 0176 MegaSR - ok
12:37:12.0726 0176 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] MMCSS C:\Windows\system32\mmcss.dll
12:37:12.0726 0176 MMCSS - ok
12:37:12.0742 0176 [ 59848D5CC74606F0EE7557983BB73C2E ] Modem C:\Windows\system32\drivers\modem.sys
12:37:12.0742 0176 Modem - ok
12:37:12.0773 0176 [ C247CC2A57E0A0C8C6DCCF7807B3E9E5 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
12:37:12.0773 0176 monitor - ok
12:37:12.0804 0176 [ 9367304E5E412B120CF5F4EA14E4E4F1 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
12:37:12.0804 0176 mouclass - ok
12:37:12.0820 0176 [ C2C2BD5C5CE5AAF786DDD74B75D2AC69 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
12:37:12.0820 0176 mouhid - ok
12:37:12.0835 0176 [ 11BC9B1E8801B01F7F6ADB9EAD30019B ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
12:37:12.0835 0176 MountMgr - ok
12:37:12.0867 0176 [ 05BF204EC0E82CC4A054DB189C8A3D84 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
12:37:12.0882 0176 MpFilter - ok
12:37:12.0898 0176 [ F8276EB8698142884498A528DFEA8478 ] mpio C:\Windows\system32\drivers\mpio.sys
12:37:12.0913 0176 mpio - ok
12:37:12.0929 0176 [ C92B9ABDB65A5991E00C28F13491DBA2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:37:12.0929 0176 mpsdrv - ok
12:37:12.0976 0176 [ 897E3BAF68BA406A61682AE39C83900C ] MpsSvc C:\Windows\system32\mpssvc.dll
12:37:12.0991 0176 MpsSvc - ok
12:37:13.0007 0176 [ 3C200630A89EF2C0864D515B7A75802E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
12:37:13.0007 0176 Mraid35x - ok
12:37:13.0038 0176 [ 7C1DE4AA96DC0C071611F9E7DE02A68D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:37:13.0054 0176 MRxDAV - ok
12:37:13.0101 0176 [ 1485811B320FF8C7EDAD1CAEBB1C6C2B ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:37:13.0101 0176 mrxsmb - ok
12:37:13.0163 0176 [ 3B929A60C833FC615FD97FBA82BC7632 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:37:13.0163 0176 mrxsmb10 - ok
12:37:13.0179 0176 [ C64AB3E1F53B4F5B5BB6D796B2D7BEC3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:37:13.0179 0176 mrxsmb20 - ok
12:37:13.0210 0176 [ 1AC860612B85D8E85EE257D372E39F4D ] msahci C:\Windows\system32\drivers\msahci.sys
12:37:13.0225 0176 msahci - ok
12:37:13.0241 0176 [ 264BBB4AAF312A485F0E44B65A6B7202 ] msdsm C:\Windows\system32\drivers\msdsm.sys
12:37:13.0241 0176 msdsm - ok
12:37:13.0257 0176 [ 7EC02CE772F068ED0BEAFA3DA341A9BC ] MSDTC C:\Windows\System32\msdtc.exe
12:37:13.0257 0176 MSDTC - ok
12:37:13.0303 0176 [ 704F59BFC4512D2BB0146AEC31B10A7C ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:37:13.0303 0176 Msfs - ok
12:37:13.0303 0176 [ 00EBC952961664780D43DCA157E79B27 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:37:13.0319 0176 msisadrv - ok
12:37:13.0366 0176 [ 366B0C1F4478B519C181E37D43DCDA32 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:37:13.0366 0176 MSiSCSI - ok
12:37:13.0397 0176 msiserver - ok
12:37:13.0428 0176 [ 0EA73E498F53B96D83DBFCA074AD4CF8 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:37:13.0428 0176 MSKSSRV - ok
12:37:13.0475 0176 [ CC8E4F72F21340A4D3A3D4DB50313EF5 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
12:37:13.0475 0176 MsMpSvc - ok
12:37:13.0506 0176 [ 52E59B7E992A58E740AA63F57EDBAE8B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:37:13.0506 0176 MSPCLOCK - ok
12:37:13.0522 0176 [ 49084A75BAE043AE02D5B44D02991BB2 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:37:13.0522 0176 MSPQM - ok
12:37:13.0569 0176 [ DC6CCF440CDEDE4293DB41C37A5060A5 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:37:13.0569 0176 MsRPC - ok
12:37:13.0600 0176 [ 855796E59DF77EA93AF46F20155BF55B ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
12:37:13.0600 0176 mssmbios - ok
12:37:13.0631 0176 [ 86D632D75D05D5B7C7C043FA3564AE86 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:37:13.0631 0176 MSTEE - ok
12:37:13.0647 0176 [ 0CC49F78D8ACA0877D885F149084E543 ] Mup C:\Windows\system32\Drivers\mup.sys
12:37:13.0647 0176 Mup - ok
12:37:13.0693 0176 [ A5B10C845E7538C60C0F5D87A57CB3F5 ] napagent C:\Windows\system32\qagentRT.dll
12:37:13.0709 0176 napagent - ok
12:37:13.0756 0176 [ 2007B826C4ACD94AE32232B41F0842B9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:37:13.0756 0176 NativeWifiP - ok
12:37:13.0818 0176 [ 65950E07329FCEE8E6516B17C8D0ABB6 ] NDIS C:\Windows\system32\drivers\ndis.sys
12:37:13.0834 0176 NDIS - ok
12:37:13.0865 0176 [ 64DF698A425478E321981431AC171334 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:37:13.0865 0176 NdisTapi - ok
12:37:13.0881 0176 [ 8BAA43196D7B5BB972C9A6B2BBF61A19 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:37:13.0881 0176 Ndisuio - ok
12:37:13.0927 0176 [ F8158771905260982CE724076419EF19 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:37:13.0927 0176 NdisWan - ok
12:37:13.0943 0176 [ 9CB77ED7CB72850253E973A2D6AFDF49 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:37:13.0943 0176 NDProxy - ok
12:37:13.0974 0176 [ 59267D2F0328599AA3B5408C2E06126F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
12:37:14.0052 0176 Net Driver HPZ12 - ok
12:37:14.0099 0176 [ A499294F5029A7862ADC115BDA7371CE ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:37:14.0099 0176 NetBIOS - ok
12:37:14.0146 0176 [ FC2C792EBDDC8E28DF939D6A92C83D61 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
12:37:14.0146 0176 netbt - ok
12:37:14.0161 0176 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] Netlogon C:\Windows\system32\lsass.exe
12:37:14.0161 0176 Netlogon - ok
12:37:14.0208 0176 [ 9B63B29DEFC0F3115A559D2597BF5D75 ] Netman C:\Windows\System32\netman.dll
12:37:14.0208 0176 Netman - ok
12:37:14.0239 0176 [ 7846D0136CC2B264926A73047BA7688A ] netprofm C:\Windows\System32\netprofm.dll
12:37:14.0239 0176 netprofm - ok
12:37:14.0286 0176 [ 74751DDA198165947FD7454D83F49825 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
12:37:14.0286 0176 NetTcpPortSharing - ok
12:37:14.0458 0176 [ BFBD278F8C9BCEC693345759AC278E14 ] NETw5v64 C:\Windows\system32\DRIVERS\NETw5v64.sys
12:37:14.0598 0176 NETw5v64 - ok
12:37:14.0661 0176 [ 4AC08BD6AF2DF42E0C3196D826C8AEA7 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
12:37:14.0661 0176 nfrd960 - ok
12:37:14.0692 0176 [ 5FF89F20317309D28AC1EDEB0CD1BA72 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
12:37:14.0692 0176 NisDrv - ok
12:37:14.0754 0176 [ 79E80B10FE8F6662E0C9162A68C43444 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
12:37:14.0754 0176 NisSrv - ok
12:37:14.0801 0176 [ F145BF4C4668E7E312069F81EF847CFC ] NlaSvc C:\Windows\System32\nlasvc.dll
12:37:14.0817 0176 NlaSvc - ok
12:37:14.0848 0176 [ B298874F8E0EA93F06EC40AA8D146478 ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:37:14.0863 0176 Npfs - ok
12:37:14.0895 0176 [ ACB62BAA1C319B17752553DF3026EEEB ] nsi C:\Windows\system32\nsisvc.dll
12:37:14.0895 0176 nsi - ok
12:37:14.0910 0176 [ 1523AF19EE8B030BA682F7A53537EAEB ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:37:14.0910 0176 nsiproxy - ok
12:37:15.0004 0176 [ BAC869DFB98E499BA4D9BB1FB43270E1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:37:15.0035 0176 Ntfs - ok
12:37:15.0051 0176 [ DD5D684975352B85B52E3FD5347C20CB ] Null C:\Windows\system32\drivers\Null.sys
12:37:15.0066 0176 Null - ok
12:37:15.0082 0176 [ 2C040B7ADA5B06F6FACADAC8514AA034 ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:37:15.0082 0176 nvraid - ok
12:37:15.0113 0176 [ F7EA0FE82842D05EDA3EFDD376DBFDBA ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:37:15.0113 0176 nvstor - ok
12:37:15.0144 0176 [ 19067CA93075EF4823E3938A686F532F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:37:15.0144 0176 nv_agp - ok
12:37:15.0144 0176 NwlnkFlt - ok
12:37:15.0160 0176 NwlnkFwd - ok
12:37:15.0253 0176 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
12:37:15.0269 0176 odserv - ok
12:37:15.0300 0176 [ B5B1CE65AC15BBD11C0619E3EF7CFC28 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
12:37:15.0300 0176 ohci1394 - ok
12:37:15.0331 0176 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:37:15.0331 0176 ose - ok
12:37:15.0394 0176 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2pimsvc C:\Windows\system32\p2psvc.dll
12:37:15.0409 0176 p2pimsvc - ok
12:37:15.0441 0176 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2psvc C:\Windows\system32\p2psvc.dll
12:37:15.0441 0176 p2psvc - ok
12:37:15.0519 0176 [ B8040C5C1FC1FBBBE5C78CB9EDA343EC ] PACSPTISVR C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
12:37:15.0519 0176 PACSPTISVR - ok
12:37:15.0581 0176 [ AECD57F94C887F58919F307C35498EA0 ] Parport C:\Windows\system32\drivers\parport.sys
12:37:15.0581 0176 Parport - ok
12:37:15.0628 0176 [ B43751085E2ABE389DA466BC62A4B987 ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:37:15.0628 0176 partmgr - ok
12:37:15.0659 0176 [ 9AB157B374192FF276C1628FBDBA2B0E ] PcaSvc C:\Windows\System32\pcasvc.dll
12:37:15.0659 0176 PcaSvc - ok
12:37:15.0690 0176 [ 47AB1E0FC9D0E12BB53BA246E3A0906D ] pci C:\Windows\system32\drivers\pci.sys
12:37:15.0706 0176 pci - ok
12:37:15.0721 0176 [ 8D618C829034479985A9ED56106CC732 ] pciide C:\Windows\system32\drivers\pciide.sys
12:37:15.0721 0176 pciide - ok
12:37:15.0768 0176 [ 037661F3D7C507C9993B7010CEEE6288 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
12:37:15.0768 0176 pcmcia - ok
12:37:15.0799 0176 [ 58865916F53592A61549B04941BFD80D ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:37:15.0815 0176 PEAUTH - ok
12:37:15.0909 0176 [ 0ED8727EA0172860F47258456C06CAEA ] PerfHost C:\Windows\SysWow64\perfhost.exe
12:37:15.0909 0176 PerfHost - ok
12:37:15.0971 0176 [ E9E68C1A0F25CF4A7AC966EEA74EE89E ] pla C:\Windows\system32\pla.dll
12:37:16.0002 0176 pla - ok
12:37:16.0049 0176 [ FE6B0F59215C9FD9F9D26539C58C8B82 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:37:16.0049 0176 PlugPlay - ok
12:37:16.0080 0176 [ 5261A2FD55183AC6993145AB6662CDDF ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
12:37:16.0111 0176 Pml Driver HPZ12 - ok
12:37:16.0143 0176 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
12:37:16.0158 0176 PNRPAutoReg - ok
12:37:16.0174 0176 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPsvc C:\Windows\system32\p2psvc.dll
12:37:16.0189 0176 PNRPsvc - ok
12:37:16.0221 0176 [ 89A5560671C2D8B4A4B51F3E1AA069D8 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:37:16.0236 0176 PolicyAgent - ok
12:37:16.0283 0176 [ 23386E9952025F5F21C368971E2E7301 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:37:16.0283 0176 PptpMiniport - ok
12:37:16.0314 0176 [ 5080E59ECEE0BC923F14018803AA7A01 ] Processor C:\Windows\system32\drivers\processr.sys
12:37:16.0314 0176 Processor - ok
12:37:16.0361 0176 [ E058CE4FC2449D8BFA14739C83B7FF2A ] ProfSvc C:\Windows\system32\profsvc.dll
12:37:16.0361 0176 ProfSvc - ok
12:37:16.0392 0176 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] ProtectedStorage C:\Windows\system32\lsass.exe
12:37:16.0392 0176 ProtectedStorage - ok
12:37:16.0423 0176 [ C5AB7F0809392D0DA027F4A2A81BFA31 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
12:37:16.0423 0176 PSched - ok
12:37:16.0439 0176 [ FBF4DB6D53585437E41A113300002A2B ] PxHlpa64 C:\Windows\system32\Drivers\PxHlpa64.sys
12:37:16.0439 0176 PxHlpa64 - ok
12:37:16.0517 0176 [ 17996CA5C59259AE02CA95BD11D7BEEC ] QBCFMonitorService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
12:37:16.0517 0176 QBCFMonitorService - ok
12:37:16.0548 0176 [ 2241EAF40E472C471CB80CF6B97CCA11 ] QBFCService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
12:37:16.0548 0176 QBFCService - ok
12:37:16.0626 0176 [ 0B83F4E681062F3839BE2EC1D98FD94A ] ql2300 C:\Windows\system32\drivers\ql2300.sys
12:37:16.0642 0176 ql2300 - ok
12:37:16.0689 0176 [ E1C80F8D4D1E39EF9595809C1369BF2A ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
12:37:16.0689 0176 ql40xx - ok
12:37:16.0735 0176 [ 90574842C3DA781E279061A3EFF91F07 ] QWAVE C:\Windows\system32\qwave.dll
12:37:16.0735 0176 QWAVE - ok
12:37:16.0751 0176 [ E8D76EDAB77EC9C634C27B8EAC33ADC5 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
12:37:16.0751 0176 QWAVEdrv - ok
12:37:16.0782 0176 [ 1013B3B663A56D3DDD784F581C1BD005 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
12:37:16.0782 0176 RasAcd - ok
12:37:16.0798 0176 [ B2AE18F847D07F0044404DDF7CB04497 ] RasAuto C:\Windows\System32\rasauto.dll
12:37:16.0813 0176 RasAuto - ok
12:37:16.0845 0176 [ AC7BC4D42A7E558718DFDEC599BBFC2C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
12:37:16.0860 0176 Rasl2tp - ok
12:37:16.0891 0176 [ 3AD83E4046C43BE510DE681588ACB8AF ] RasMan C:\Windows\System32\rasmans.dll
12:37:16.0891 0176 RasMan - ok
12:37:16.0938 0176 [ 4517FBF8B42524AFE4EDE1DE102AAE3E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
12:37:16.0938 0176 RasPppoe - ok
12:37:16.0985 0176 [ C6A593B51F34C33E5474539544072527 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
12:37:16.0985 0176 RasSstp - ok
12:37:17.0032 0176 [ 322DB5C6B55E8D8EE8D6F358B2AAABB1 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
12:37:17.0032 0176 rdbss - ok
12:37:17.0063 0176 [ 603900CC05F6BE65CCBF373800AF3716 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
12:37:17.0063 0176 RDPCDD - ok
12:37:17.0094 0176 [ C045D1FB111C28DF0D1BE8D4BDA22C06 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
12:37:17.0110 0176 rdpdr - ok
12:37:17.0110 0176 [ CAB9421DAF3D97B33D0D055858E2C3AB ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
12:37:17.0125 0176 RDPENCDD - ok
12:37:17.0172 0176 [ AE4BD9E1C33D351D8E607FC81F15160C ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
12:37:17.0172 0176 RDPWD - ok
12:37:17.0266 0176 [ 9600567E331F5AE87D31B0A60763E48C ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
12:37:17.0281 0176 RegSrvc - ok
12:37:17.0328 0176 [ C612B9557DA73F70D41F8A6FBC8E5344 ] RemoteAccess C:\Windows\System32\mprdim.dll
12:37:17.0328 0176 RemoteAccess - ok
12:37:17.0375 0176 [ 44B9D8EC2F3EF3A0EFB00857AF70D861 ] RemoteRegistry C:\Windows\system32\regsvc.dll
12:37:17.0375 0176 RemoteRegistry - ok
12:37:17.0422 0176 [ 72C35598BA591ABDDC37FCE7D26FE1C4 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
12:37:17.0437 0176 RFCOMM - ok
12:37:17.0469 0176 [ 7EAE3999B94A8CE60BFBAA83462B89A1 ] rimsptsk C:\Windows\system32\DRIVERS\rimssn64.sys
12:37:17.0484 0176 rimsptsk - ok
12:37:17.0500 0176 [ FA6D7CD63AD08A01D9259F58E0C5C09E ] risdptsk C:\Windows\system32\DRIVERS\risdsn64.sys
12:37:17.0500 0176 risdptsk - ok
12:37:17.0531 0176 [ F46C457840D4B7A4DAAFEE739CE04102 ] RpcLocator C:\Windows\system32\locator.exe
12:37:17.0531 0176 RpcLocator - ok
12:37:17.0578 0176 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] RpcSs C:\Windows\system32\rpcss.dll
12:37:17.0593 0176 RpcSs - ok
12:37:17.0625 0176 [ 22A9CB08B1A6707C1550C6BF099AAE73 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
12:37:17.0625 0176 rspndr - ok
12:37:17.0656 0176 [ 67C7695D3B18682ADDF8419EDA4BBFB8 ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
12:37:17.0671 0176 RTHDMIAzAudService - ok
12:37:17.0719 0176 [ BDD34A4A3725E3D527BEDA3C5FB67603 ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
12:37:17.0719 0176 RtkAudioService - ok
12:37:17.0782 0176 [ 6B318F9443740A907D1C8F3460C19009 ] SampleCollector C:\Program Files\Sony\VAIO Care\collsvc.exe
12:37:17.0797 0176 SampleCollector - ok
12:37:17.0813 0176 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] SamSs C:\Windows\system32\lsass.exe
12:37:17.0828 0176 SamSs - ok
12:37:17.0875 0176 [ 3289766038DB2CB14D07DC84392138D5 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
12:37:17.0875 0176 SASDIFSV - ok
12:37:17.0891 0176 [ 58A38E75F3316A83C23DF6173D41F2B5 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
12:37:17.0891 0176 SASKUTIL - ok
12:37:17.0922 0176 [ CD9C693589C60AD59BBBCFB0E524E01B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
12:37:17.0922 0176 sbp2port - ok
12:37:17.0969 0176 [ FD1CDCF108D5EF3366F00D18B70FB89B ] SCardSvr C:\Windows\System32\SCardSvr.dll
12:37:17.0969 0176 SCardSvr - ok
12:37:18.0047 0176 [ 0F838C811AD295D2A4489B9993096C63 ] Schedule C:\Windows\system32\schedsvc.dll
12:37:18.0062 0176 Schedule - ok
12:37:18.0109 0176 [ 5A268127633C7EE2A7FB87F39D748D56 ] SCPolicySvc C:\Windows\System32\certprop.dll
12:37:18.0109 0176 SCPolicySvc - ok
12:37:18.0125 0176 [ B42EE50F7D24F837F925332EB349ECA5 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
12:37:18.0125 0176 sdbus - ok
12:37:18.0156 0176 [ 4FF71B076A7760FE75EA5AE2D0EE0018 ] SDRSVC C:\Windows\System32\SDRSVC.dll
12:37:18.0172 0176 SDRSVC - ok
12:37:18.0172 0176 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
12:37:18.0187 0176 secdrv - ok
12:37:18.0203 0176 [ 5ACDCBC67FCF894A1815B9F96D704490 ] seclogon C:\Windows\system32\seclogon.dll
12:37:18.0203 0176 seclogon - ok
12:37:18.0218 0176 [ 90973A64B96CD647FF81C79443618EED ] SENS C:\Windows\system32\sens.dll
12:37:18.0218 0176 SENS - ok
12:37:18.0234 0176 [ F71BFE7AC6C52273B7C82CBF1BB2A222 ] Serenum C:\Windows\system32\drivers\serenum.sys
12:37:18.0234 0176 Serenum - ok
12:37:18.0265 0176 [ E62FAC91EE288DB29A9696A9D279929C ] Serial C:\Windows\system32\drivers\serial.sys
12:37:18.0265 0176 Serial - ok
12:37:18.0296 0176 [ A842F04833684BCEEA7336211BE478DF ] sermouse C:\Windows\system32\drivers\sermouse.sys
12:37:18.0296 0176 sermouse - ok
12:37:18.0343 0176 [ A8E4A4407A09F35DCCC3771AF590B0C4 ] SessionEnv C:\Windows\system32\sessenv.dll
12:37:18.0343 0176 SessionEnv - ok
12:37:18.0390 0176 [ 70F9C476B62DE4F2823E918A6C181ADE ] SFEP C:\Windows\system32\DRIVERS\SFEP.sys
12:37:18.0390 0176 SFEP - ok
12:37:18.0421 0176 [ 14D4B4465193A87C127933978E8C4106 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
12:37:18.0421 0176 sffdisk - ok
12:37:18.0437 0176 [ 7073AEE3F82F3D598E3825962AA98AB2 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
12:37:18.0437 0176 sffp_mmc - ok
12:37:18.0452 0176 [ 35E59EBE4A01A0532ED67975161C7B82 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
12:37:18.0452 0176 sffp_sd - ok
12:37:18.0484 0176 [ 40567781F0785C4A69411D1B40DA8987 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
12:37:18.0484 0176 sfloppy - ok
12:37:18.0546 0176 [ 4C5AEE179DA7E1EE9A9CCB9DA289AF34 ] SharedAccess C:\Windows\System32\ipnathlp.dll
12:37:18.0562 0176 SharedAccess - ok
12:37:18.0624 0176 [ 56793271ECDEDD350C5ADD305603E963 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
12:37:18.0624 0176 ShellHWDetection - ok
12:37:18.0671 0176 [ 7A5DE502AEB719D4594C6471060A78B3 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
12:37:18.0671 0176 SiSRaid2 - ok
12:37:18.0686 0176 [ 3A2F769FAB9582BC720E11EA1DFB184D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
12:37:18.0686 0176 SiSRaid4 - ok
12:37:18.0796 0176 [ A9A27A8E257B45A604FDAD4F26FE7241 ] slsvc C:\Windows\system32\SLsvc.exe
12:37:18.0874 0176 slsvc - ok
12:37:18.0905 0176 [ FD74B4B7C2088E390A30C85A896FC3AF ] SLUINotify C:\Windows\system32\SLUINotify.dll
12:37:18.0905 0176 SLUINotify - ok
12:37:18.0952 0176 [ 290B6F6A0EC4FCDFC90F5CB6D7020473 ] Smb C:\Windows\system32\DRIVERS\smb.sys
12:37:18.0952 0176 Smb - ok
12:37:18.0998 0176 [ F8F47F38909823B1AF28D60B96340CFF ] SNMPTRAP C:\Windows\System32\snmptrap.exe
12:37:18.0998 0176 SNMPTRAP - ok
12:37:19.0061 0176 [ 7B24EFA2A60BA7388FECDA63AB24560A ] SOHCImp C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
12:37:19.0061 0176 SOHCImp - ok
12:37:19.0092 0176 [ 140FCF5FFAE4EFBA9740A9FD8B49E0BF ] SOHDBSvr C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
12:37:19.0092 0176 SOHDBSvr - ok
12:37:19.0123 0176 [ D8C244121A06B581B097D9617D94CFF1 ] SOHDms C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
12:37:19.0139 0176 SOHDms - ok
12:37:19.0186 0176 [ 2DB561887EA122B946BBE2821473EDD8 ] SOHDs C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
12:37:19.0186 0176 SOHDs - ok
12:37:19.0201 0176 [ AB9EE246A1EB2C3C7C6CB16E0B9462F7 ] SOHPlMgr C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
12:37:19.0201 0176 SOHPlMgr - ok
12:37:19.0264 0176 [ 386C3C63F00A7040C7EC5E384217E89D ] spldr C:\Windows\system32\drivers\spldr.sys
12:37:19.0264 0176 spldr - ok
12:37:19.0326 0176 [ F66FF751E7EFC816D266977939EF5DC3 ] Spooler C:\Windows\System32\spoolsv.exe
12:37:19.0342 0176 Spooler - ok
12:37:19.0404 0176 [ 880A57FCCB571EBD063D4DD50E93E46D ] srv C:\Windows\system32\DRIVERS\srv.sys
12:37:19.0420 0176 srv - ok
12:37:19.0482 0176 [ A1AD14A6D7A37891FFFECA35EBBB0730 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
12:37:19.0482 0176 srv2 - ok
12:37:19.0513 0176 [ 4BED62F4FA4D8300973F1151F4C4D8A7 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
12:37:19.0529 0176 srvnet - ok
12:37:19.0560 0176 [ 192C74646EC5725AEF3F80D19FF75F6A ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
12:37:19.0560 0176 SSDPSRV - ok
12:37:19.0591 0176 [ 2EE3FA0308E6185BA64A9A7F2E74332B ] SstpSvc C:\Windows\system32\sstpsvc.dll
12:37:19.0591 0176 SstpSvc - ok
12:37:19.0654 0176 [ 15825C1FBFB8779992CB65087F316AF5 ] stisvc C:\Windows\System32\wiaservc.dll
12:37:19.0669 0176 stisvc - ok
12:37:19.0700 0176 [ 8A851CA908B8B974F89C50D2E18D4F0C ] swenum C:\Windows\system32\DRIVERS\swenum.sys
12:37:19.0700 0176 swenum - ok
12:37:19.0747 0176 [ 6DE37F4DE19D4EFD9C48C43ADDBC949A ] swprv C:\Windows\System32\swprv.dll
12:37:19.0763 0176 swprv - ok
12:37:19.0778 0176 [ 2F26A2C6FC96B29BEFF5D8ED74E6625B ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
12:37:19.0778 0176 Symc8xx - ok
12:37:19.0810 0176 [ A909667976D3BCCD1DF813FED517D837 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
12:37:19.0810 0176 Sym_hi - ok
12:37:19.0825 0176 [ 36887B56EC2D98B9C362F6AE4DE5B7B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
12:37:19.0825 0176 Sym_u3 - ok
12:37:19.0888 0176 [ 92D7A8B0F87B036F17D25885937897A6 ] SysMain C:\Windows\system32\sysmain.dll
12:37:19.0903 0176 SysMain - ok
12:37:19.0950 0176 [ 005CE42567F9113A3BCCB3B20073B029 ] TabletInputService C:\Windows\System32\TabSvc.dll
12:37:19.0966 0176 TabletInputService - ok
12:37:20.0012 0176 [ CC2562B4D55E0B6A4758C65407F63B79 ] TapiSrv C:\Windows\System32\tapisrv.dll
12:37:20.0012 0176 TapiSrv - ok
12:37:20.0044 0176 [ CDBE8D7C1E201B911CDC346D06617FB5 ] TBS C:\Windows\System32\tbssvc.dll
12:37:20.0044 0176 TBS - ok
12:37:20.0137 0176 [ AC8D5728E6AD6A7C4819D9A67008337A ] Tcpip C:\Windows\system32\drivers\tcpip.sys
12:37:20.0168 0176 Tcpip - ok
12:37:20.0200 0176 [ AC8D5728E6AD6A7C4819D9A67008337A ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
12:37:20.0215 0176 Tcpip6 - ok
12:37:20.0262 0176 [ FD8FDE859E38E40A20085EBB0C22B416 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
12:37:20.0278 0176 tcpipreg - ok
12:37:20.0309 0176 [ 1D8BF4AAA5FB7A2761475781DC1195BC ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
12:37:20.0309 0176 TDPIPE - ok
12:37:20.0356 0176 [ 7F7E00CDF609DF657F4CDA02DD1C9BB1 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
12:37:20.0356 0176 TDTCP - ok
12:37:20.0387 0176 [ 458919C8C42E398DC4802178D5FFEE27 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
12:37:20.0402 0176 tdx - ok
12:37:20.0434 0176 [ 8C19678D22649EC002EF2282EAE92F98 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
12:37:20.0434 0176 TermDD - ok
12:37:20.0480 0176 [ 5CDD30BC217082DAC71A9878D9BFD566 ] TermService C:\Windows\System32\termsrv.dll
12:37:20.0496 0176 TermService - ok
12:37:20.0512 0176 [ 56793271ECDEDD350C5ADD305603E963 ] Themes C:\Windows\system32\shsvcs.dll
12:37:20.0527 0176 Themes - ok
12:37:20.0543 0176 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] THREADORDER C:\Windows\system32\mmcss.dll
12:37:20.0543 0176 THREADORDER - ok
12:37:20.0590 0176 [ F4689F05AF472A651A7B1B7B02D200E7 ] TrkWks C:\Windows\System32\trkwks.dll
12:37:20.0590 0176 TrkWks - ok
12:37:20.0636 0176 [ 66328B08EF5A9305D8EDE36B93930369 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
12:37:20.0636 0176 TrustedInstaller - ok
12:37:20.0683 0176 [ 9E5409CD17C8BEF193AAD498F3BC2CB8 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
12:37:20.0683 0176 tssecsrv - ok
12:37:20.0699 0176 [ 89EC74A9E602D16A75A4170511029B3C ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
12:37:20.0699 0176 tunmp - ok
12:37:20.0746 0176 [ 30A9B3F45AD081BFFC3BCAA9C812B609 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
12:37:20.0746 0176 tunnel - ok
12:37:20.0761 0176 [ FEC266EF401966311744BD0F359F7F56 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
12:37:20.0761 0176 uagp35 - ok
12:37:20.0839 0176 [ 63F6D08C54D5B3C1B12A6172032055C7 ] uCamMonitor C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
12:37:20.0839 0176 uCamMonitor - ok
12:37:20.0886 0176 [ FAF2640A2A76ED03D449E443194C4C34 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
12:37:20.0886 0176 udfs - ok
12:37:20.0933 0176 [ 060507C4113391394478F6953A79EEDC ] UI0Detect C:\Windows\system32\UI0Detect.exe
12:37:20.0933 0176 UI0Detect - ok
12:37:20.0964 0176 [ 4EC9447AC3AB462647F60E547208CA00 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
12:37:20.0980 0176 uliagpkx - ok
12:37:20.0995 0176 [ 697F0446134CDC8F99E69306184FBBB4 ] uliahci C:\Windows\system32\drivers\uliahci.sys
12:37:21.0011 0176 uliahci - ok
12:37:21.0026 0176 [ 31707F09846056651EA2C37858F5DDB0 ] UlSata C:\Windows\system32\drivers\ulsata.sys
12:37:21.0026 0176 UlSata - ok
12:37:21.0058 0176 [ 85E5E43ED5B48C8376281BAB519271B7 ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
12:37:21.0058 0176 ulsata2 - ok
12:37:21.0073 0176 [ 46E9A994C4FED537DD951F60B86AD3F4 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
12:37:21.0073 0176 umbus - ok
12:37:21.0104 0176 [ 7093799FF80E9DECA0680D2E3535BE60 ] upnphost C:\Windows\System32\upnphost.dll
12:37:21.0120 0176 upnphost - ok
12:37:21.0167 0176 [ AA33FC47ED58C34E6E9261E4F850B7EB ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
12:37:21.0167 0176 USBAAPL64 - ok
12:37:21.0198 0176 [ 07E3498FC60834219D2356293DA0FECC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
12:37:21.0198 0176 usbccgp - ok
12:37:21.0229 0176 [ 9247F7E0B65852C1F6631480984D6ED2 ] usbcir C:\Windows\system32\drivers\usbcir.sys
12:37:21.0229 0176 usbcir - ok
12:37:21.0260 0176 [ 827E44DE934A736EA31E91D353EB126F ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
12:37:21.0260 0176 usbehci - ok
12:37:21.0292 0176 [ BB35CD80A2ECECFADC73569B3D70C7D1 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
12:37:21.0307 0176 usbhub - ok
12:37:21.0323 0176 [ EBA14EF0C07CEC233F1529C698D0D154 ] usbohci C:\Windows\system32\drivers\usbohci.sys
12:37:21.0323 0176 usbohci - ok
12:37:21.0370 0176 [ 28B693B6D31E7B9332C1BDCEFEF228C1 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
12:37:21.0370 0176 usbprint - ok
12:37:21.0401 0176 [ EA0BF666868964FBE8CB10E50C97B9F1 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
12:37:21.0401 0176 usbscan - ok
12:37:21.0432 0176 [ B854C1558FCA0C269A38663E8B59B581 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
12:37:21.0432 0176 USBSTOR - ok
12:37:21.0463 0176 [ B2872CBF9F47316ABD0E0C74A1ABA507 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
12:37:21.0463 0176 usbuhci - ok
12:37:21.0494 0176 [ FC33099877790D51B0927B7039059855 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
12:37:21.0494 0176 usbvideo - ok
12:37:21.0526 0176 [ D76E231E4850BB3F88A3D9A78DF191E3 ] UxSms C:\Windows\System32\uxsms.dll
12:37:21.0541 0176 UxSms - ok
12:37:21.0604 0176 [ 4E7135D6D0127067E4CFEE12259F895D ] VAIO Entertainment TV Device Arbitration Service C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
12:37:21.0619 0176 VAIO Entertainment TV Device Arbitration Service - ok
12:37:21.0666 0176 [ 73328C784ECFE7072BD102F370076B50 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
12:37:21.0682 0176 VAIO Event Service - ok
12:37:21.0728 0176 [ B63F63960E7254D9D9ED28474B40EB31 ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe
12:37:21.0728 0176 VAIO Power Management - ok
12:37:21.0900 0176 [ 0ED1D51DCEC67F96CC313D02A1741CF3 ] VCFw C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
12:37:22.0040 0176 VCFw - ok
12:37:22.0103 0176 [ 7295A2B5795E7B8AA128E5DF5A29B656 ] VcmIAlzMgr C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
12:37:22.0118 0176 VcmIAlzMgr - ok
12:37:22.0196 0176 [ 76DF898710495C5B1476719410D8B895 ] VcmXmlIfHelper C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
12:37:22.0196 0176 VcmXmlIfHelper - ok
12:37:22.0228 0176 Vcsw - ok
12:37:22.0259 0176 [ 294945381DFA7CE58CECF0A9896AF327 ] vds C:\Windows\System32\vds.exe
12:37:22.0274 0176 vds - ok
12:37:22.0306 0176 [ 916B94BCF1E09873FFF2D5FB11767BBC ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
12:37:22.0306 0176 vga - ok
12:37:22.0321 0176 [ B83AB16B51FEDA65DD81B8C59D114D63 ] VgaSave C:\Windows\System32\drivers\vga.sys
12:37:22.0321 0176 VgaSave - ok
12:37:22.0352 0176 [ 8294B6C3FDB6C33F24E150DE647ECDAA ] viaide C:\Windows\system32\drivers\viaide.sys
12:37:22.0352 0176 viaide - ok
12:37:22.0368 0176 [ 2B7E885ED951519A12C450D24535DFCA ] volmgr C:\Windows\system32\drivers\volmgr.sys
12:37:22.0368 0176 volmgr - ok
12:37:22.0430 0176 [ CEC5AC15277D75D9E5DEC2E1C6EAF877 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
12:37:22.0446 0176 volmgrx - ok
12:37:22.0477 0176 [ 5280AADA24AB36B01A84A6424C475C8D ] volsnap C:\Windows\system32\drivers\volsnap.sys
12:37:22.0477 0176 volsnap - ok
12:37:22.0524 0176 [ A68F455ED2673835209318DD61BFBB0E ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
12:37:22.0524 0176 vsmraid - ok
12:37:22.0602 0176 [ B75232DAD33BFD95BF6F0A3E6BFF51E1 ] VSS C:\Windows\system32\vssvc.exe
12:37:22.0633 0176 VSS - ok
12:37:22.0680 0176 [ 79EB419F4A694B4514249E0D3DB16ECF ] VzCdbSvc C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
12:37:22.0680 0176 VzCdbSvc - ok
12:37:22.0727 0176 [ F14A7DE2EA41883E250892E1E5230A9A ] W32Time C:\Windows\system32\w32time.dll
12:37:22.0742 0176 W32Time - ok
12:37:22.0743 0176 [ FEF8FE5923FEAD2CEE4DFABFCE3393A7 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
12:37:22.0743 0176 WacomPen - ok
12:37:22.0790 0176 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
12:37:22.0790 0176 Wanarp - ok
12:37:22.0806 0176 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
12:37:22.0806 0176 Wanarpv6 - ok
12:37:22.0837 0176 [ B4E4C37D0AA6100090A53213EE2BF1C1 ] wcncsvc C:\Windows\System32\wcncsvc.dll
12:37:22.0853 0176 wcncsvc - ok
12:37:22.0899 0176 [ EA4B369560E986F19D93F45A881484AC ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
12:37:22.0899 0176 WcsPlugInService - ok
12:37:22.0931 0176 [ 0C17A0816F65B89E362E682AD5E7266E ] Wd C:\Windows\system32\drivers\wd.sys
12:37:22.0931 0176 Wd - ok
12:37:22.0977 0176 [ D02E7E4567DA1E7582FBF6A91144B0DF ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
12:37:22.0993 0176 Wdf01000 - ok
12:37:23.0024 0176 [ EBC8E8F27E70A3DCAABD84A8611D3575 ] wdfsgusbV2 C:\Windows\system32\DRIVERS\wdfsgusb.sys
12:37:23.0024 0176 wdfsgusbV2 - ok
12:37:23.0055 0176 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiServiceHost C:\Windows\system32\wdi.dll
12:37:23.0071 0176 WdiServiceHost - ok
12:37:23.0071 0176 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiSystemHost C:\Windows\system32\wdi.dll
12:37:23.0071 0176 WdiSystemHost - ok
12:37:23.0118 0176 [ 3E6D05381CF35F75EBB055544A8ED9AC ] WebClient C:\Windows\System32\webclnt.dll
12:37:23.0118 0176 WebClient - ok
12:37:23.0180 0176 [ 8D40BC587993F876658BF9FB0F7D3462 ] Wecsvc C:\Windows\system32\wecsvc.dll
12:37:23.0196 0176 Wecsvc - ok
12:37:23.0211 0176 [ 9C980351D7E96288EA0C23AE232BD065 ] wercplsupport C:\Windows\System32\wercplsupport.dll
12:37:23.0211 0176 wercplsupport - ok
12:37:23.0243 0176 [ 66B9ECEBC46683F47EDC06333C075FEF ] WerSvc C:\Windows\System32\WerSvc.dll
12:37:23.0243 0176 WerSvc - ok
12:37:23.0289 0176 [ 52DED146E4797E6CCF94799E8E22BB2A ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys
12:37:23.0289 0176 WimFltr - ok
12:37:23.0321 0176 [ 057B062CF9A11E04DB45B8C3AFC28B11 ] winachsf C:\Windows\system32\DRIVERS\CAX_CNXT.sys
12:37:23.0336 0176 winachsf - ok
12:37:23.0367 0176 WinDefend - ok
12:37:23.0383 0176 WinHttpAutoProxySvc - ok
12:37:23.0445 0176 [ D2E7296ED1BD26D8DB2799770C077A02 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
12:37:23.0445 0176 Winmgmt - ok
12:37:23.0539 0176 [ 6CBB0C68F13B9C2EC1B16F5FA5E7C869 ] WinRM C:\Windows\system32\WsmSvc.dll
12:37:23.0586 0176 WinRM - ok
12:37:23.0633 0176 [ 7F2F9E48566B2087F2AAAD258CB2A8D4 ] WinUSB C:\Windows\system32\DRIVERS\WinUSB.sys
12:37:23.0633 0176 WinUSB - ok
12:37:23.0679 0176 [ EC339C8115E91BAED835957E9A677F16 ] Wlansvc C:\Windows\System32\wlansvc.dll
12:37:23.0695 0176 Wlansvc - ok
12:37:23.0820 0176 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
12:37:23.0882 0176 wlidsvc - ok
12:37:23.0913 0176 [ E18AEBAAA5A773FE11AA2C70F65320F5 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
12:37:23.0913 0176 WmiAcpi - ok
12:37:23.0976 0176 [ 21FA389E65A852698B6A1341F36EE02D ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
12:37:23.0976 0176 wmiApSrv - ok
12:37:24.0007 0176 WMPNetworkSvc - ok
12:37:24.0038 0176 [ CBC156C913F099E6680D1DF9307DB7A8 ] WPCSvc C:\Windows\System32\wpcsvc.dll
12:37:24.0054 0176 WPCSvc - ok
12:37:24.0085 0176 [ 490A18B4E4D53DC10879DEAA8E8B70D9 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
12:37:24.0101 0176 WPDBusEnum - ok
12:37:24.0116 0176 [ 5E2401B3FC1089C90E081291357371A9 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
12:37:24.0116 0176 WpdUsb - ok
12:37:24.0319 0176 [ 991E2C2CF3BC204C2BB2EE1476149E4E ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe
12:37:24.0335 0176 WPFFontCache_v0400 - ok
12:37:24.0366 0176 [ 8A900348370E359B6BFF6A550E4649E1 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
12:37:24.0366 0176 ws2ifsl - ok
12:37:24.0413 0176 [ 9EA3E6D0EF7A5C2B9181961052A4B01A ] wscsvc C:\Windows\system32\wscsvc.dll
12:37:24.0413 0176 wscsvc - ok
12:37:24.0428 0176 WSearch - ok
12:37:24.0553 0176 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
12:37:24.0615 0176 wuauserv - ok
12:37:24.0647 0176 [ 501A65252617B495C0F1832F908D54D8 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
12:37:24.0647 0176 WUDFRd - ok
12:37:24.0662 0176 [ 6CBD51FF913C851D56ED9DC7F2A27DDE ] wudfsvc C:\Windows\System32\WUDFSvc.dll
12:37:24.0678 0176 wudfsvc - ok
12:37:24.0693 0176 [ 638C99D993AFAB0E1FAB226E2BBE6D79 ] XAudio C:\Windows\system32\DRIVERS\xaudio64.sys
12:37:24.0709 0176 XAudio - ok
12:37:24.0725 0176 [ 3E775F0BD28DDEFF53D78578B97A3CFF ] XAudioService C:\Windows\system32\DRIVERS\xaudio64.exe
12:37:24.0740 0176 XAudioService - ok
12:37:24.0756 0176 [ D433F6726A727B0528F6E39F423FE1FD ] yksvc C:\Windows\System32\ykx64mpcoinst.dll
12:37:24.0787 0176 yksvc - ok
12:37:24.0818 0176 [ 4D7BD04B794478ABA95EA1E03BE39C47 ] yukonx64 C:\Windows\system32\DRIVERS\yk60x64.sys
12:37:24.0834 0176 yukonx64 - ok
12:37:24.0849 0176 ================ Scan global ===============================
12:37:24.0896 0176 [ 060DC3A7A9A2626031EB23D90151428D ] C:\Windows\system32\basesrv.dll
12:37:24.0959 0176 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll
12:37:24.0990 0176 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll
12:37:25.0037 0176 [ 934E0B7D77FF78C18D9F8891221B6DE3 ] C:\Windows\system32\services.exe
12:37:25.0037 0176 [Global] - ok
12:37:25.0037 0176 ================ Scan MBR ==================================
12:37:25.0052 0176 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
12:37:26.0019 0176 \Device\Harddisk0\DR0 - ok
12:37:26.0019 0176 ================ Scan VBR ==================================
12:37:26.0019 0176 [ 5B0BE995F05980492B1E209B972D842C ] \Device\Harddisk0\DR0\Partition1
12:37:26.0019 0176 \Device\Harddisk0\DR0\Partition1 - ok
12:37:26.0019 0176 ============================================================
12:37:26.0019 0176 Scan finished
12:37:26.0019 0176 ============================================================
12:37:26.0035 4560 Detected object count: 0
12:37:26.0035 4560 Actual detected object count: 0

#7 Jimbob85

Jimbob85

  • Members
  • 308 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:VA, USA
  • Local time:03:45 AM

Posted 24 October 2012 - 12:36 PM

These scans look good.

Just to clarify, are you still having redirects on the web?

Lets try another scan:

Download

ESET online scanner

Install it

Click on START, it should download the virus definitions
When scan completes, click on LIST of found threats

Export the list to desktop, copy the contents of the text file in your reply
You may not get a listing if nothing is found

#8 iamnothing

iamnothing
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 27 October 2012 - 07:30 AM

Jimbob,
I am definitely getting redirected, almost with every search. This happens both in explorer and in google chrome. In explorer the redirect opens in a new window. in google chrome it does not. here is eset scan


C:\Users\Brian\AppData\Local\ArcSoft\Apple Computer\lnwmgfd.dll a variant of Win32/Kryptik.ANSO trojan cleaned by deleting (after the next restart) - quarantined
C:\Users\Brian\AppData\Local\Google\Chrome\User Data\Default\Default\aaggdddjgbgfdjgfdcdfdcdgdegddbdc\background.html Win32/BHO.OEI trojan cleaned by deleting - quarantined
C:\Users\Brian\AppData\Local\temp\NOD14BC.tmp a variant of Win32/Kryptik.ANSO trojan cleaned by deleting (after the next restart) - quarantined

#9 Jimbob85

Jimbob85

  • Members
  • 308 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:VA, USA
  • Local time:03:45 AM

Posted 27 October 2012 - 02:17 PM

You Do have an infection.

Please follow the instructions in ==>This Guide<== starting at Step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

#10 iamnothing

iamnothing
  • Topic Starter

  • Members
  • 150 posts
  • OFFLINE
  •  
  • Local time:04:45 AM

Posted 27 October 2012 - 05:57 PM

Jimbob,
Thanks so much. I started the new thread with the scans. Thanks again.

#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,176 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:04:45 AM

Posted 27 October 2012 - 07:22 PM

New topic
http://www.bleepingcomputer.com/forums/user-309318/iamnothing/


Now that your log is properly posted, you should NOT make further changes to your computer (install/uninstall programs, use special fix tools, delete files, edit the registry, etc) unless advised by a Malware Removal Team member, nor should you continue to ask for help elsewhere. Doing so can result in system changes which may not show it the log you already posted. Further, any modifications you make on your own may cause confusion for the helper assisting you and could complicate the malware removal process which would extend the time it takes to clean your computer.

From this point on the Malware Removal Team should be the only members that you take advice from, until they have verified your log as clean.

Please be patient. It may take a while to get a response because the Malware Removal Team members are very busy working logs posted before yours. They are volunteers who will help you out as soon as possible. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the Malware Removal Team. Generally the staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response there will be 1 reply. A team member, looking for a new log to work may assume another MRL Team member is already assisting you and not open the thread to respond.

The current wait time is 1 - 2 days and ALL logs are answered.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

To avoid confusion, I am closing this topic.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users