Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Redirect Virus


  • This topic is locked This topic is locked
46 replies to this topic

#1 acole95

acole95

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 02:53 PM

Hi There! Like many others it seems that my computer is infected with some sort of redirect virus. When a search a topic and click to links in the results I am often redirected to a site that is nowhere near what I intended to click on. I ran my Norton360 scan, which I thought protected from things like this. :( and it found nothing. I also ran the Norton Power Eraser which found nothing. I then ran the MalwareBytes Scanner which found trojan.hapilli and trojan.agent which it says it removed, however I'm still having the redirect issues.

Is there anyone out there that can help me??

BC AdBot (Login to Remove)

 


#2 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:06:39 AM

Posted 17 November 2012 - 03:05 PM

Hi acole95, and welcome to BC! :thumbsup:

My name is bloopie and I'll be helping you with your problems as best I can! :thumbup2:

Please tell me what version of Windows you are running...XP? Vista? 7? ...32 or 64-bit?

A few things to keep in mind while we are working together:

  • If you have since resolved the original problem you were having, I would appreciate it if you let me know.
  • If you are unsure about any of the steps just post what you can and I will guide you!
  • Please tell me if you have your original Windows CD/DVD available.
  • Please copy and paste all logs here unless otherwise instructed!
  • Upon completing the steps below I will review your topic an do my best to resolve your issues.

==========

Step :step1:

Download the latest version of TDSSKiller from here and save it to your Desktop.


  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    Posted Image
  • Click the Start Scan button.

    Posted Image
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

    Posted Image
  • Note*** If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents in your next reply.

==========

Step :step2:

Please download aswMBR ( 4.5MB ) to your desktop.
  • Double click the aswMBR.exe icon, and click Run.
  • When asked if you'd like to "download the latest Avast! virus definitions", click Yes.
  • Click the Scan button to start the scan.
  • On completion of the scan, click the save log button, save it to your desktop, then copy and paste it in your next reply.

==========

In your next reply, please include the following:

  • The log from TDSSKiller
  • The aswMBR log
  • Still being redirected?
bloopie

#3 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 03:42 PM

Hi Bloopie!

Thanks so much. Downloading TDSS Killer now. Be right back.

#4 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 03:46 PM

Windows7 64-bit, don't have the original Windows CD.

#5 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 03:57 PM

7 threats detected. Cure wasn't an option.

Here's the report...

15:48:28.0781 2856 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
15:48:30.0792 2856 ============================================================
15:48:30.0792 2856 Current date / time: 2012/11/17 15:48:30.0792
15:48:30.0792 2856 SystemInfo:
15:48:30.0792 2856
15:48:30.0792 2856 OS Version: 6.1.7601 ServicePack: 1.0
15:48:30.0792 2856 Product type: Workstation
15:48:30.0792 2856 ComputerName: ACOLEMAN-PC
15:48:30.0792 2856 UserName: Temp
15:48:30.0792 2856 Windows directory: C:\windows
15:48:30.0792 2856 System windows directory: C:\windows
15:48:30.0792 2856 Running under WOW64
15:48:30.0792 2856 Processor architecture: Intel x64
15:48:30.0792 2856 Number of processors: 2
15:48:30.0792 2856 Page size: 0x1000
15:48:30.0792 2856 Boot type: Normal boot
15:48:30.0792 2856 ============================================================
15:48:32.0412 2856 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:48:32.0412 2856 ============================================================
15:48:32.0412 2856 \Device\Harddisk0\DR0:
15:48:32.0432 2856 MBR partitions:
15:48:32.0432 2856 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x38926800
15:48:32.0432 2856 ============================================================
15:48:32.0542 2856 C: <-> \Device\Harddisk0\DR0\Partition1
15:48:32.0542 2856 ============================================================
15:48:32.0542 2856 Initialize success
15:48:32.0542 2856 ============================================================
15:50:25.0427 4208 ============================================================
15:50:25.0427 4208 Scan started
15:50:25.0427 4208 Mode: Manual; SigCheck; TDLFS;
15:50:25.0427 4208 ============================================================
15:50:25.0647 4208 ================ Scan system memory ========================
15:50:25.0647 4208 System memory - ok
15:50:25.0647 4208 ================ Scan services =============================
15:50:25.0897 4208 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
15:50:26.0097 4208 1394ohci - ok
15:50:26.0137 4208 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys
15:50:26.0157 4208 ACPI - ok
15:50:26.0177 4208 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
15:50:26.0307 4208 AcpiPmi - ok
15:50:26.0447 4208 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:50:26.0477 4208 AdobeARMservice - ok
15:50:26.0627 4208 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:50:26.0657 4208 AdobeFlashPlayerUpdateSvc - ok
15:50:26.0707 4208 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
15:50:26.0737 4208 adp94xx - ok
15:50:26.0787 4208 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
15:50:26.0827 4208 adpahci - ok
15:50:26.0867 4208 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
15:50:26.0887 4208 adpu320 - ok
15:50:26.0907 4208 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
15:50:27.0087 4208 AeLookupSvc - ok
15:50:27.0147 4208 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys
15:50:27.0257 4208 AFD - ok
15:50:27.0317 4208 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys
15:50:27.0347 4208 agp440 - ok
15:50:27.0377 4208 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe
15:50:27.0477 4208 ALG - ok
15:50:27.0537 4208 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys
15:50:27.0567 4208 aliide - ok
15:50:27.0577 4208 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys
15:50:27.0597 4208 amdide - ok
15:50:27.0617 4208 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
15:50:27.0707 4208 AmdK8 - ok
15:50:27.0727 4208 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
15:50:27.0787 4208 AmdPPM - ok
15:50:27.0857 4208 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys
15:50:27.0887 4208 amdsata - ok
15:50:27.0927 4208 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
15:50:27.0957 4208 amdsbs - ok
15:50:27.0977 4208 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
15:50:27.0997 4208 amdxata - ok
15:50:28.0057 4208 [ 48CD7E6520D47D62EAB0E6CE3EC30C65 ] Andbus C:\windows\system32\DRIVERS\lgandbus64.sys
15:50:28.0107 4208 Andbus - ok
15:50:28.0127 4208 [ 08CBACC00D15DCDBBAAE1A7C8F231C61 ] AndDiag C:\windows\system32\DRIVERS\lganddiag64.sys
15:50:28.0187 4208 AndDiag - ok
15:50:28.0227 4208 [ CEA9A4CD6B3A83428CE8501240833668 ] AndGps C:\windows\system32\DRIVERS\lgandgps64.sys
15:50:28.0267 4208 AndGps - ok
15:50:28.0347 4208 [ E2B5663E547FA5E756B253EFA8EC8286 ] ANDModem C:\windows\system32\DRIVERS\lgandmodem64.sys
15:50:28.0397 4208 ANDModem - ok
15:50:28.0457 4208 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys
15:50:28.0627 4208 AppID - ok
15:50:28.0657 4208 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll
15:50:28.0757 4208 AppIDSvc - ok
15:50:28.0837 4208 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll
15:50:28.0917 4208 Appinfo - ok
15:50:28.0987 4208 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:50:29.0007 4208 Apple Mobile Device - ok
15:50:29.0047 4208 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\DRIVERS\arc.sys
15:50:29.0067 4208 arc - ok
15:50:29.0087 4208 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
15:50:29.0107 4208 arcsas - ok
15:50:29.0137 4208 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
15:50:29.0207 4208 AsyncMac - ok
15:50:29.0277 4208 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys
15:50:29.0307 4208 atapi - ok
15:50:29.0377 4208 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
15:50:29.0457 4208 AudioEndpointBuilder - ok
15:50:29.0467 4208 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll
15:50:29.0517 4208 AudioSrv - ok
15:50:29.0587 4208 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll
15:50:29.0727 4208 AxInstSV - ok
15:50:29.0777 4208 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\DRIVERS\bxvbda.sys
15:50:29.0867 4208 b06bdrv - ok
15:50:29.0907 4208 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
15:50:29.0957 4208 b57nd60a - ok
15:50:29.0997 4208 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll
15:50:30.0067 4208 BDESVC - ok
15:50:30.0077 4208 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys
15:50:30.0177 4208 Beep - ok
15:50:30.0317 4208 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll
15:50:30.0407 4208 BFE - ok
15:50:30.0707 4208 [ ED97ADAF00A61F57A2CCBBB1CE58C600 ] BHDrvx64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\BASHDefs\20121106.001\BHDrvx64.sys
15:50:30.0777 4208 BHDrvx64 - ok
15:50:30.0817 4208 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\system32\qmgr.dll
15:50:30.0897 4208 BITS - ok
15:50:30.0937 4208 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
15:50:30.0967 4208 blbdrive - ok
15:50:31.0017 4208 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:50:31.0047 4208 Bonjour Service - ok
15:50:31.0117 4208 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
15:50:31.0167 4208 bowser - ok
15:50:31.0187 4208 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
15:50:31.0327 4208 BrFiltLo - ok
15:50:31.0377 4208 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
15:50:31.0397 4208 BrFiltUp - ok
15:50:31.0457 4208 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll
15:50:31.0497 4208 Browser - ok
15:50:31.0557 4208 [ 6DF544E72FF139E8FBBBA6D0E569BEA5 ] BrSerIb C:\windows\system32\DRIVERS\BrSerIb.sys
15:50:31.0597 4208 BrSerIb ( UnsignedFile.Multi.Generic ) - warning
15:50:31.0597 4208 BrSerIb - detected UnsignedFile.Multi.Generic (1)
15:50:31.0667 4208 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys
15:50:31.0727 4208 Brserid - ok
15:50:31.0757 4208 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
15:50:31.0827 4208 BrSerWdm - ok
15:50:31.0847 4208 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
15:50:31.0917 4208 BrUsbMdm - ok
15:50:31.0937 4208 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
15:50:31.0967 4208 BrUsbSer - ok
15:50:32.0027 4208 [ 80082AD46578F0D3270D2E56D6433082 ] BrUsbSIb C:\windows\system32\DRIVERS\BrUsbSIb.sys
15:50:32.0087 4208 BrUsbSIb ( UnsignedFile.Multi.Generic ) - warning
15:50:32.0087 4208 BrUsbSIb - detected UnsignedFile.Multi.Generic (1)
15:50:32.0107 4208 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
15:50:32.0167 4208 BTHMODEM - ok
15:50:32.0217 4208 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll
15:50:32.0297 4208 bthserv - ok
15:50:32.0337 4208 catchme - ok
15:50:32.0487 4208 [ 248C952C82DF1E23775432774CBB20F1 ] ccSet_N360 C:\windows\system32\drivers\N360x64\1402000.013\ccSetx64.sys
15:50:32.0517 4208 ccSet_N360 - ok
15:50:32.0537 4208 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
15:50:32.0618 4208 cdfs - ok
15:50:32.0698 4208 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\drivers\cdrom.sys
15:50:32.0718 4208 cdrom - ok
15:50:32.0778 4208 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll
15:50:32.0928 4208 CertPropSvc - ok
15:50:32.0968 4208 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\DRIVERS\circlass.sys
15:50:33.0028 4208 circlass - ok
15:50:33.0078 4208 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys
15:50:33.0118 4208 CLFS - ok
15:50:33.0188 4208 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:50:33.0208 4208 clr_optimization_v2.0.50727_32 - ok
15:50:33.0248 4208 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
15:50:33.0258 4208 clr_optimization_v2.0.50727_64 - ok
15:50:33.0338 4208 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:50:33.0358 4208 clr_optimization_v4.0.30319_32 - ok
15:50:33.0388 4208 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:50:33.0408 4208 clr_optimization_v4.0.30319_64 - ok
15:50:33.0448 4208 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
15:50:33.0498 4208 CmBatt - ok
15:50:33.0538 4208 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys
15:50:33.0548 4208 cmdide - ok
15:50:33.0619 4208 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys
15:50:33.0659 4208 CNG - ok
15:50:33.0689 4208 [ 25C58EE97BE0416A373E3E4F855206B5 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys
15:50:33.0729 4208 CnxtHdAudService - ok
15:50:33.0799 4208 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
15:50:33.0819 4208 Compbatt - ok
15:50:33.0889 4208 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys
15:50:33.0959 4208 CompositeBus - ok
15:50:33.0989 4208 COMSysApp - ok
15:50:34.0009 4208 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
15:50:34.0029 4208 crcdisk - ok
15:50:34.0080 4208 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\windows\system32\cryptsvc.dll
15:50:34.0140 4208 CryptSvc - ok
15:50:34.0170 4208 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll
15:50:34.0250 4208 DcomLaunch - ok
15:50:34.0280 4208 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll
15:50:34.0360 4208 defragsvc - ok
15:50:34.0430 4208 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
15:50:34.0520 4208 DfsC - ok
15:50:34.0610 4208 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll
15:50:34.0660 4208 Dhcp - ok
15:50:34.0690 4208 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys
15:50:34.0800 4208 discache - ok
15:50:34.0830 4208 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\DRIVERS\disk.sys
15:50:34.0850 4208 Disk - ok
15:50:34.0910 4208 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll
15:50:34.0990 4208 Dnscache - ok
15:50:35.0040 4208 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll
15:50:35.0100 4208 dot3svc - ok
15:50:35.0140 4208 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\windows\system32\DRIVERS\Dot4.sys
15:50:35.0170 4208 Dot4 - ok
15:50:35.0210 4208 [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print C:\windows\system32\DRIVERS\Dot4Prt.sys
15:50:35.0270 4208 Dot4Print - ok
15:50:35.0280 4208 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\windows\system32\DRIVERS\dot4usb.sys
15:50:35.0320 4208 dot4usb - ok
15:50:35.0360 4208 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll
15:50:35.0450 4208 DPS - ok
15:50:35.0490 4208 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
15:50:35.0530 4208 drmkaud - ok
15:50:35.0590 4208 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
15:50:35.0650 4208 DXGKrnl - ok
15:50:35.0680 4208 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll
15:50:35.0750 4208 EapHost - ok
15:50:35.0850 4208 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\DRIVERS\evbda.sys
15:50:35.0980 4208 ebdrv - ok
15:50:36.0070 4208 [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
15:50:36.0110 4208 eeCtrl - ok
15:50:36.0150 4208 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe
15:50:36.0240 4208 EFS - ok
15:50:36.0320 4208 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
15:50:36.0410 4208 ehRecvr - ok
15:50:36.0430 4208 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe
15:50:36.0480 4208 ehSched - ok
15:50:36.0510 4208 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
15:50:36.0540 4208 elxstor - ok
15:50:36.0620 4208 [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
15:50:36.0640 4208 EraserUtilRebootDrv - ok
15:50:36.0700 4208 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys
15:50:36.0740 4208 ErrDev - ok
15:50:36.0780 4208 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll
15:50:36.0850 4208 EventSystem - ok
15:50:36.0890 4208 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys
15:50:36.0960 4208 exfat - ok
15:50:36.0990 4208 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys
15:50:37.0070 4208 fastfat - ok
15:50:37.0160 4208 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe
15:50:37.0200 4208 Fax - ok
15:50:37.0220 4208 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\DRIVERS\fdc.sys
15:50:37.0250 4208 fdc - ok
15:50:37.0280 4208 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll
15:50:37.0330 4208 fdPHost - ok
15:50:37.0340 4208 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll
15:50:37.0400 4208 FDResPub - ok
15:50:37.0430 4208 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
15:50:37.0450 4208 FileInfo - ok
15:50:37.0460 4208 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
15:50:37.0560 4208 Filetrace - ok
15:50:37.0600 4208 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
15:50:37.0620 4208 flpydisk - ok
15:50:37.0700 4208 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
15:50:37.0740 4208 FltMgr - ok
15:50:37.0820 4208 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll
15:50:37.0930 4208 FontCache - ok
15:50:38.0000 4208 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:50:38.0020 4208 FontCache3.0.0.0 - ok
15:50:38.0060 4208 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys
15:50:38.0090 4208 FsDepends - ok
15:50:38.0150 4208 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
15:50:38.0170 4208 Fs_Rec - ok
15:50:38.0230 4208 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
15:50:38.0280 4208 fvevol - ok
15:50:38.0290 4208 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
15:50:38.0310 4208 gagp30kx - ok
15:50:38.0360 4208 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys
15:50:38.0380 4208 GEARAspiWDM - ok
15:50:38.0460 4208 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll
15:50:38.0540 4208 gpsvc - ok
15:50:38.0630 4208 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:50:38.0660 4208 gupdate - ok
15:50:38.0680 4208 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:50:38.0710 4208 gupdatem - ok
15:50:38.0750 4208 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
15:50:38.0780 4208 gusvc - ok
15:50:38.0810 4208 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
15:50:38.0900 4208 hcw85cir - ok
15:50:38.0980 4208 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
15:50:39.0030 4208 HdAudAddService - ok
15:50:39.0080 4208 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys
15:50:39.0140 4208 HDAudBus - ok
15:50:39.0180 4208 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\windows\system32\DRIVERS\HECIx64.sys
15:50:39.0210 4208 HECIx64 - ok
15:50:39.0230 4208 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
15:50:39.0290 4208 HidBatt - ok
15:50:39.0320 4208 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
15:50:39.0370 4208 HidBth - ok
15:50:39.0410 4208 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\DRIVERS\hidir.sys
15:50:39.0430 4208 HidIr - ok
15:50:39.0450 4208 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\System32\hidserv.dll
15:50:39.0520 4208 hidserv - ok
15:50:39.0570 4208 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
15:50:39.0580 4208 HidUsb - ok
15:50:39.0630 4208 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll
15:50:39.0750 4208 hkmsvc - ok
15:50:39.0800 4208 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
15:50:39.0870 4208 HomeGroupListener - ok
15:50:39.0920 4208 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
15:50:39.0970 4208 HomeGroupProvider - ok
15:50:40.0020 4208 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
15:50:40.0040 4208 HpSAMD - ok
15:50:40.0110 4208 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys
15:50:40.0190 4208 HTTP - ok
15:50:40.0250 4208 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
15:50:40.0280 4208 hwpolicy - ok
15:50:40.0350 4208 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\drivers\i8042prt.sys
15:50:40.0380 4208 i8042prt - ok
15:50:40.0420 4208 [ 5E60DD5F090AB4A563C7204C289C4650 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
15:50:40.0440 4208 iaStor - ok
15:50:40.0500 4208 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
15:50:40.0550 4208 iaStorV - ok
15:50:40.0610 4208 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
15:50:40.0650 4208 IDriverT ( UnsignedFile.Multi.Generic ) - warning
15:50:40.0650 4208 IDriverT - detected UnsignedFile.Multi.Generic (1)
15:50:40.0750 4208 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
15:50:40.0800 4208 idsvc - ok
15:50:41.0040 4208 [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\IPSDefs\20121116.001\IDSvia64.sys
15:50:41.0070 4208 IDSVia64 - ok
15:50:41.0320 4208 [ 1BE8D9CA4F2363B8E8015621878E0043 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
15:50:41.0690 4208 igfx - ok
15:50:41.0740 4208 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
15:50:41.0760 4208 iirsp - ok
15:50:41.0850 4208 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll
15:50:41.0940 4208 IKEEXT - ok
15:50:41.0980 4208 [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd C:\windows\system32\DRIVERS\Impcd.sys
15:50:42.0020 4208 Impcd - ok
15:50:42.0060 4208 [ 03C74719D48056A1078F3A51CEB76BAA ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
15:50:42.0150 4208 IntcDAud - ok
15:50:42.0200 4208 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys
15:50:42.0220 4208 intelide - ok
15:50:42.0250 4208 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
15:50:42.0290 4208 intelppm - ok
15:50:42.0320 4208 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll
15:50:42.0380 4208 IPBusEnum - ok
15:50:42.0440 4208 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
15:50:42.0480 4208 IpFilterDriver - ok
15:50:42.0540 4208 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
15:50:42.0570 4208 IPMIDRV - ok
15:50:42.0610 4208 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
15:50:42.0670 4208 IPNAT - ok
15:50:42.0750 4208 [ 6E50CFA46527B39015B750AAD161C5CC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
15:50:42.0800 4208 iPod Service - ok
15:50:42.0820 4208 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys
15:50:42.0880 4208 IRENUM - ok
15:50:42.0920 4208 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys
15:50:42.0930 4208 isapnp - ok
15:50:42.0950 4208 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
15:50:42.0970 4208 iScsiPrt - ok
15:50:43.0000 4208 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\drivers\kbdclass.sys
15:50:43.0020 4208 kbdclass - ok
15:50:43.0050 4208 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
15:50:43.0110 4208 kbdhid - ok
15:50:43.0140 4208 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe
15:50:43.0170 4208 KeyIso - ok
15:50:43.0210 4208 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
15:50:43.0230 4208 KSecDD - ok
15:50:43.0270 4208 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
15:50:43.0290 4208 KSecPkg - ok
15:50:43.0310 4208 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
15:50:43.0370 4208 ksthunk - ok
15:50:43.0420 4208 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll
15:50:43.0490 4208 KtmRm - ok
15:50:43.0550 4208 [ 55480B9C63F3F91A8EBBADCBF28FE581 ] L1C C:\windows\system32\DRIVERS\L1C62x64.sys
15:50:43.0570 4208 L1C - ok
15:50:43.0640 4208 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\System32\srvsvc.dll
15:50:43.0730 4208 LanmanServer - ok
15:50:43.0790 4208 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
15:50:43.0850 4208 LanmanWorkstation - ok
15:50:43.0890 4208 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
15:50:43.0960 4208 lltdio - ok
15:50:44.0010 4208 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll
15:50:44.0090 4208 lltdsvc - ok
15:50:44.0130 4208 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll
15:50:44.0190 4208 lmhosts - ok
15:50:44.0260 4208 [ DBC1136A62BD4DECC3632DF650284C2E ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
15:50:44.0280 4208 LMS - ok
15:50:44.0300 4208 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
15:50:44.0320 4208 LSI_FC - ok
15:50:44.0350 4208 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
15:50:44.0360 4208 LSI_SAS - ok
15:50:44.0380 4208 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
15:50:44.0400 4208 LSI_SAS2 - ok
15:50:44.0410 4208 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
15:50:44.0420 4208 LSI_SCSI - ok
15:50:44.0440 4208 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys
15:50:44.0510 4208 luafv - ok
15:50:44.0550 4208 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
15:50:44.0580 4208 MBAMProtector - ok
15:50:44.0651 4208 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
15:50:44.0701 4208 MBAMScheduler - ok
15:50:44.0771 4208 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
15:50:44.0791 4208 MBAMService - ok
15:50:44.0921 4208 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
15:50:44.0961 4208 McComponentHostService - ok
15:50:45.0001 4208 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
15:50:45.0031 4208 Mcx2Svc - ok
15:50:45.0061 4208 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\DRIVERS\megasas.sys
15:50:45.0071 4208 megasas - ok
15:50:45.0091 4208 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
15:50:45.0111 4208 MegaSR - ok
15:50:45.0151 4208 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll
15:50:45.0231 4208 MMCSS - ok
15:50:45.0261 4208 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys
15:50:45.0331 4208 Modem - ok
15:50:45.0361 4208 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys
15:50:45.0401 4208 monitor - ok
15:50:45.0451 4208 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\drivers\mouclass.sys
15:50:45.0471 4208 mouclass - ok
15:50:45.0501 4208 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
15:50:45.0541 4208 mouhid - ok
15:50:45.0591 4208 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys
15:50:45.0631 4208 mountmgr - ok
15:50:45.0721 4208 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:50:45.0751 4208 MozillaMaintenance - ok
15:50:45.0781 4208 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys
15:50:45.0791 4208 mpio - ok
15:50:45.0821 4208 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
15:50:45.0871 4208 mpsdrv - ok
15:50:45.0991 4208 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll
15:50:46.0081 4208 MpsSvc - ok
15:50:46.0131 4208 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
15:50:46.0201 4208 MRxDAV - ok
15:50:46.0241 4208 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
15:50:46.0271 4208 mrxsmb - ok
15:50:46.0301 4208 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
15:50:46.0331 4208 mrxsmb10 - ok
15:50:46.0361 4208 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
15:50:46.0371 4208 mrxsmb20 - ok
15:50:46.0381 4208 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys
15:50:46.0391 4208 msahci - ok
15:50:46.0441 4208 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys
15:50:46.0471 4208 msdsm - ok
15:50:46.0491 4208 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe
15:50:46.0541 4208 MSDTC - ok
15:50:46.0581 4208 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys
15:50:46.0641 4208 Msfs - ok
15:50:46.0671 4208 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
15:50:46.0711 4208 mshidkmdf - ok
15:50:46.0721 4208 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys
15:50:46.0731 4208 msisadrv - ok
15:50:46.0771 4208 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
15:50:46.0821 4208 MSiSCSI - ok
15:50:46.0831 4208 msiserver - ok
15:50:46.0861 4208 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
15:50:46.0911 4208 MSKSSRV - ok
15:50:46.0931 4208 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
15:50:47.0001 4208 MSPCLOCK - ok
15:50:47.0041 4208 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
15:50:47.0111 4208 MSPQM - ok
15:50:47.0161 4208 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys
15:50:47.0181 4208 MsRPC - ok
15:50:47.0231 4208 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\drivers\mssmbios.sys
15:50:47.0251 4208 mssmbios - ok
15:50:47.0271 4208 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
15:50:47.0331 4208 MSTEE - ok
15:50:47.0361 4208 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
15:50:47.0381 4208 MTConfig - ok
15:50:47.0401 4208 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys
15:50:47.0411 4208 Mup - ok
15:50:47.0611 4208 [ 4A9258B9597A31DB68EC9740F3A8A70B ] N360 C:\Program Files (x86)\Norton 360\Engine\20.2.0.19\ccSvcHst.exe
15:50:47.0631 4208 N360 - ok
15:50:47.0681 4208 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll
15:50:47.0761 4208 napagent - ok
15:50:47.0831 4208 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
15:50:47.0881 4208 NativeWifiP - ok
15:50:47.0991 4208 [ C58D8A669D6551F616D90244BD2C2D4F ] NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\VirusDefs\20121116.020\ENG64.SYS
15:50:48.0011 4208 NAVENG - ok
15:50:48.0101 4208 [ A3DBDB412ADFA5882DD6843B11FE0828 ] NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\VirusDefs\20121116.020\EX64.SYS
15:50:48.0171 4208 NAVEX15 - ok
15:50:48.0241 4208 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys
15:50:48.0291 4208 NDIS - ok
15:50:48.0321 4208 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
15:50:48.0381 4208 NdisCap - ok
15:50:48.0401 4208 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
15:50:48.0441 4208 NdisTapi - ok
15:50:48.0481 4208 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
15:50:48.0581 4208 Ndisuio - ok
15:50:48.0621 4208 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
15:50:48.0681 4208 NdisWan - ok
15:50:48.0711 4208 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
15:50:48.0771 4208 NDProxy - ok
15:50:48.0801 4208 [ DC6530A291D4BDF6DF399F1F128E7F8F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
15:50:48.0811 4208 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
15:50:48.0811 4208 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
15:50:48.0831 4208 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
15:50:48.0931 4208 NetBIOS - ok
15:50:48.0971 4208 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
15:50:49.0071 4208 NetBT - ok
15:50:49.0101 4208 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe
15:50:49.0111 4208 Netlogon - ok
15:50:49.0141 4208 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll
15:50:49.0201 4208 Netman - ok
15:50:49.0231 4208 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll
15:50:49.0291 4208 netprofm - ok
15:50:49.0321 4208 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:50:49.0331 4208 NetTcpPortSharing - ok
15:50:49.0371 4208 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
15:50:49.0381 4208 nfrd960 - ok
15:50:49.0451 4208 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\windows\System32\nlasvc.dll
15:50:49.0511 4208 NlaSvc - ok
15:50:49.0561 4208 Norton PC Checkup Application Launcher - ok
15:50:49.0571 4208 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys
15:50:49.0621 4208 Npfs - ok
15:50:49.0681 4208 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll
15:50:49.0801 4208 nsi - ok
15:50:49.0841 4208 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
15:50:49.0921 4208 nsiproxy - ok
15:50:50.0001 4208 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
15:50:50.0061 4208 Ntfs - ok
15:50:50.0091 4208 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys
15:50:50.0131 4208 Null - ok
15:50:50.0151 4208 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys
15:50:50.0171 4208 nvraid - ok
15:50:50.0221 4208 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys
15:50:50.0251 4208 nvstor - ok
15:50:50.0281 4208 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
15:50:50.0301 4208 nv_agp - ok
15:50:50.0311 4208 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
15:50:50.0341 4208 ohci1394 - ok
15:50:50.0411 4208 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:50:50.0441 4208 ose - ok
15:50:50.0561 4208 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:50:50.0752 4208 osppsvc - ok
15:50:50.0882 4208 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll
15:50:50.0942 4208 p2pimsvc - ok
15:50:50.0962 4208 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll
15:50:50.0992 4208 p2psvc - ok
15:50:51.0012 4208 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\DRIVERS\parport.sys
15:50:51.0032 4208 Parport - ok
15:50:51.0082 4208 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys
15:50:51.0092 4208 partmgr - ok
15:50:51.0132 4208 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
15:50:51.0172 4208 PcaSvc - ok
15:50:51.0202 4208 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.5.60\ccSvcHst.exe
15:50:51.0222 4208 PCCUJobMgr - ok
15:50:51.0262 4208 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys
15:50:51.0292 4208 pci - ok
15:50:51.0312 4208 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys
15:50:51.0332 4208 pciide - ok
15:50:51.0362 4208 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
15:50:51.0382 4208 pcmcia - ok
15:50:51.0402 4208 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys
15:50:51.0422 4208 pcw - ok
15:50:51.0432 4208 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys
15:50:51.0512 4208 PEAUTH - ok
15:50:51.0592 4208 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe
15:50:51.0622 4208 PerfHost - ok
15:50:51.0652 4208 [ 663962900E7FEA522126BA287715BB4A ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys
15:50:51.0672 4208 PGEffect - ok
15:50:51.0742 4208 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll
15:50:51.0832 4208 pla - ok
15:50:51.0882 4208 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
15:50:51.0932 4208 PlugPlay - ok
15:50:51.0942 4208 [ 71F62C51DFDFBC04C83C5C64B2B8058E ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
15:50:51.0972 4208 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
15:50:51.0972 4208 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
15:50:52.0012 4208 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
15:50:52.0062 4208 PNRPAutoReg - ok
15:50:52.0092 4208 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll
15:50:52.0112 4208 PNRPsvc - ok
15:50:52.0172 4208 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
15:50:52.0262 4208 PolicyAgent - ok
15:50:52.0302 4208 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll
15:50:52.0372 4208 Power - ok
15:50:52.0412 4208 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
15:50:52.0482 4208 PptpMiniport - ok
15:50:52.0522 4208 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\DRIVERS\processr.sys
15:50:52.0562 4208 Processor - ok
15:50:52.0622 4208 PROCEXP150 - ok
15:50:52.0682 4208 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll
15:50:52.0752 4208 ProfSvc - ok
15:50:52.0772 4208 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
15:50:52.0792 4208 ProtectedStorage - ok
15:50:52.0852 4208 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys
15:50:52.0932 4208 Psched - ok
15:50:52.0972 4208 [ C8FCB4899F8B70CC34E0D9876A80963C ] QIOMem C:\windows\system32\DRIVERS\QIOMem.sys
15:50:53.0042 4208 QIOMem - ok
15:50:53.0112 4208 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
15:50:53.0192 4208 ql2300 - ok
15:50:53.0202 4208 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
15:50:53.0222 4208 ql40xx - ok
15:50:53.0252 4208 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll
15:50:53.0272 4208 QWAVE - ok
15:50:53.0302 4208 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
15:50:53.0352 4208 QWAVEdrv - ok
15:50:53.0382 4208 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
15:50:53.0462 4208 RasAcd - ok
15:50:53.0492 4208 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
15:50:53.0552 4208 RasAgileVpn - ok
15:50:53.0572 4208 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll
15:50:53.0632 4208 RasAuto - ok
15:50:53.0682 4208 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
15:50:53.0742 4208 Rasl2tp - ok
15:50:53.0822 4208 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll
15:50:53.0912 4208 RasMan - ok
15:50:53.0932 4208 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
15:50:53.0992 4208 RasPppoe - ok
15:50:54.0012 4208 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
15:50:54.0062 4208 RasSstp - ok
15:50:54.0122 4208 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
15:50:54.0222 4208 rdbss - ok
15:50:54.0252 4208 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
15:50:54.0272 4208 rdpbus - ok
15:50:54.0302 4208 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
15:50:54.0372 4208 RDPCDD - ok
15:50:54.0402 4208 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
15:50:54.0492 4208 RDPENCDD - ok
15:50:54.0542 4208 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
15:50:54.0602 4208 RDPREFMP - ok
15:50:54.0652 4208 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys
15:50:54.0733 4208 RDPWD - ok
15:50:54.0803 4208 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
15:50:54.0833 4208 rdyboost - ok
15:50:54.0863 4208 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll
15:50:54.0933 4208 RemoteAccess - ok
15:50:54.0963 4208 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
15:50:55.0023 4208 RemoteRegistry - ok
15:50:55.0033 4208 RimUsb - ok
15:50:55.0083 4208 [ C903D49655B4AAE46673F0AAA6BE0F58 ] RimVSerPort C:\windows\system32\DRIVERS\RimSerial_AMD64.sys
15:50:55.0143 4208 RimVSerPort - ok
15:50:55.0173 4208 [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM C:\windows\system32\Drivers\RootMdm.sys
15:50:55.0253 4208 ROOTMODEM - ok
15:50:55.0283 4208 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
15:50:55.0353 4208 RpcEptMapper - ok
15:50:55.0383 4208 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe
15:50:55.0423 4208 RpcLocator - ok
15:50:55.0463 4208 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll
15:50:55.0513 4208 RpcSs - ok
15:50:55.0553 4208 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
15:50:55.0613 4208 rspndr - ok
15:50:55.0683 4208 [ 3CEEE53BBF8BA284FF44585CEC0162FE ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys
15:50:55.0693 4208 RSUSBSTOR - ok
15:50:55.0733 4208 [ B89C0601A05E1140AC96FA965D94C340 ] rtl8192Ce C:\windows\system32\DRIVERS\rtl8192Ce.sys
15:50:55.0763 4208 rtl8192Ce - ok
15:50:55.0773 4208 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe
15:50:55.0793 4208 SamSs - ok
15:50:55.0853 4208 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys
15:50:55.0893 4208 sbp2port - ok
15:50:55.0923 4208 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll
15:50:55.0983 4208 SCardSvr - ok
15:50:56.0033 4208 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
15:50:56.0113 4208 scfilter - ok
15:50:56.0193 4208 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll
15:50:56.0293 4208 Schedule - ok
15:50:56.0353 4208 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll
15:50:56.0393 4208 SCPolicySvc - ok
15:50:56.0403 4208 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
15:50:56.0463 4208 SDRSVC - ok
15:50:56.0503 4208 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
15:50:56.0573 4208 secdrv - ok
15:50:56.0623 4208 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll
15:50:56.0683 4208 seclogon - ok
15:50:56.0713 4208 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\system32\sens.dll
15:50:56.0783 4208 SENS - ok
15:50:56.0813 4208 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll
15:50:56.0843 4208 SensrSvc - ok
15:50:56.0853 4208 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\DRIVERS\serenum.sys
15:50:56.0883 4208 Serenum - ok
15:50:56.0903 4208 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\DRIVERS\serial.sys
15:50:56.0913 4208 Serial - ok
15:50:56.0973 4208 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
15:50:56.0993 4208 sermouse - ok
15:50:57.0043 4208 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll
15:50:57.0113 4208 SessionEnv - ok
15:50:57.0153 4208 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys
15:50:57.0193 4208 sffdisk - ok
15:50:57.0213 4208 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
15:50:57.0233 4208 sffp_mmc - ok
15:50:57.0243 4208 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
15:50:57.0273 4208 sffp_sd - ok
15:50:57.0323 4208 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
15:50:57.0363 4208 sfloppy - ok
15:50:57.0423 4208 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll
15:50:57.0493 4208 SharedAccess - ok
15:50:57.0543 4208 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
15:50:57.0593 4208 ShellHWDetection - ok
15:50:57.0633 4208 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
15:50:57.0643 4208 SiSRaid2 - ok
15:50:57.0653 4208 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
15:50:57.0673 4208 SiSRaid4 - ok
15:50:57.0733 4208 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
15:50:57.0763 4208 SkypeUpdate - ok
15:50:57.0803 4208 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys
15:50:57.0853 4208 Smb - ok
15:50:57.0913 4208 [ D48F87803F3965EE04D9BCB318791AAB ] SMR311 C:\windows\system32\drivers\SMR311.SYS
15:50:57.0943 4208 SMR311 - ok
15:50:57.0983 4208 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe
15:50:58.0023 4208 SNMPTRAP - ok
15:50:58.0043 4208 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys
15:50:58.0053 4208 spldr - ok
15:50:58.0113 4208 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe
15:50:58.0173 4208 Spooler - ok
15:50:58.0303 4208 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe
15:50:58.0463 4208 sppsvc - ok
15:50:58.0493 4208 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll
15:50:58.0563 4208 sppuinotify - ok
15:50:58.0743 4208 [ 3510E7021D2637A67FBCB5105EAE945D ] SRTSP C:\windows\System32\Drivers\N360x64\1402000.013\SRTSP64.SYS
15:50:58.0803 4208 SRTSP - ok
15:50:58.0863 4208 [ 1B884D876E87EABF5A3356BBD7321412 ] SRTSPX C:\windows\system32\drivers\N360x64\1402000.013\SRTSPX64.SYS
15:50:58.0883 4208 SRTSPX - ok
15:50:58.0923 4208 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys
15:50:58.0973 4208 srv - ok
15:50:59.0003 4208 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
15:50:59.0053 4208 srv2 - ok
15:50:59.0113 4208 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\windows\system32\DRIVERS\VSTAZL6.SYS
15:50:59.0173 4208 SrvHsfHDA - ok
15:50:59.0203 4208 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\windows\system32\DRIVERS\VSTDPV6.SYS
15:50:59.0283 4208 SrvHsfV92 - ok
15:50:59.0333 4208 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\windows\system32\DRIVERS\VSTCNXT6.SYS
15:50:59.0373 4208 SrvHsfWinac - ok
15:50:59.0403 4208 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
15:50:59.0433 4208 srvnet - ok
15:50:59.0483 4208 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
15:50:59.0563 4208 SSDPSRV - ok
15:50:59.0613 4208 [ 1100066057FBF612B573EFD3B21383F1 ] ssmirrdr C:\windows\system32\DRIVERS\ssmirrdr.sys
15:50:59.0623 4208 ssmirrdr - ok
15:50:59.0643 4208 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll
15:50:59.0693 4208 SstpSvc - ok
15:50:59.0723 4208 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
15:50:59.0743 4208 stexstor - ok
15:50:59.0783 4208 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\windows\system32\DRIVERS\serscan.sys
15:50:59.0813 4208 StillCam - ok
15:50:59.0883 4208 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll
15:50:59.0973 4208 stisvc - ok
15:51:00.0023 4208 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\drivers\swenum.sys
15:51:00.0043 4208 swenum - ok
15:51:00.0083 4208 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll
15:51:00.0143 4208 swprv - ok
15:51:00.0223 4208 [ 777217682DA76337E8E6EC8AC4412B9B ] SymDS C:\windows\system32\drivers\N360x64\1402000.013\SYMDS64.SYS
15:51:00.0243 4208 SymDS - ok
15:51:00.0313 4208 [ 64D1AF3D04E70A681154FFF1893848F6 ] SymEFA C:\windows\system32\drivers\N360x64\1402000.013\SYMEFA64.SYS
15:51:00.0353 4208 SymEFA - ok
15:51:00.0413 4208 [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] SymEvent C:\windows\system32\Drivers\SYMEVENT64x86.SYS
15:51:00.0443 4208 SymEvent - ok
15:51:00.0493 4208 [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON C:\windows\system32\drivers\N360x64\1402000.013\Ironx64.SYS
15:51:00.0503 4208 SymIRON - ok
15:51:00.0593 4208 [ 1605EBD8CB86AFC4430116065995279A ] SymNetS C:\windows\System32\Drivers\N360x64\1402000.013\SYMNETS.SYS
15:51:00.0623 4208 SymNetS - ok
15:51:00.0683 4208 [ 470C47DABA9CA3966F0AB3F835D7D135 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
15:51:00.0703 4208 SynTP - ok
15:51:00.0773 4208 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll
15:51:00.0873 4208 SysMain - ok
15:51:00.0923 4208 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
15:51:00.0943 4208 TabletInputService - ok
15:51:00.0963 4208 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll
15:51:01.0033 4208 TapiSrv - ok
15:51:01.0053 4208 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll
15:51:01.0093 4208 TBS - ok
15:51:01.0213 4208 [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip C:\windows\system32\drivers\tcpip.sys
15:51:01.0273 4208 Tcpip - ok
15:51:01.0373 4208 [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
15:51:01.0423 4208 TCPIP6 - ok
15:51:01.0483 4208 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
15:51:01.0493 4208 tcpipreg - ok
15:51:01.0543 4208 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys
15:51:01.0563 4208 tdcmdpst - ok
15:51:01.0583 4208 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
15:51:01.0633 4208 TDPIPE - ok
15:51:01.0663 4208 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
15:51:01.0684 4208 TDTCP - ok
15:51:01.0724 4208 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
15:51:01.0794 4208 tdx - ok
15:51:01.0874 4208 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\drivers\termdd.sys
15:51:01.0914 4208 TermDD - ok
15:51:01.0954 4208 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll
15:51:02.0034 4208 TermService - ok
15:51:02.0074 4208 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll
15:51:02.0094 4208 Themes - ok
15:51:02.0124 4208 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll
15:51:02.0174 4208 THREADORDER - ok
15:51:02.0244 4208 [ 28644B0523D64EFF2FC7312A2EE74B0A ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
15:51:02.0264 4208 TMachInfo - ok
15:51:02.0314 4208 [ ED32035BDFECED1AD66D459FD9CC1140 ] TODDSrv C:\Windows\system32\TODDSrv.exe
15:51:02.0344 4208 TODDSrv - ok
15:51:02.0404 4208 [ DB9719688C08F42705FEB3F6A0C98B91 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
15:51:02.0434 4208 TosCoSrv - ok
15:51:02.0494 4208 [ BAE96AD126F4EED4D361B092BA2E61FE ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe
15:51:02.0524 4208 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - warning
15:51:02.0524 4208 TOSHIBA eco Utility Service - detected UnsignedFile.Multi.Generic (1)
15:51:02.0564 4208 [ 74C2FA8C3765EE71A9C22182EC108457 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
15:51:02.0574 4208 TOSHIBA HDD SSD Alert Service - ok
15:51:02.0644 4208 [ 97687D094AA597DA366E1194B218CC6C ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
15:51:02.0694 4208 TPCHSrv - ok
15:51:02.0724 4208 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll
15:51:02.0774 4208 TrkWks - ok
15:51:02.0844 4208 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
15:51:02.0934 4208 TrustedInstaller - ok
15:51:02.0974 4208 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
15:51:03.0064 4208 tssecsrv - ok
15:51:03.0134 4208 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
15:51:03.0164 4208 TsUsbFlt - ok
15:51:03.0224 4208 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
15:51:03.0284 4208 tunnel - ok
15:51:03.0324 4208 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS
15:51:03.0344 4208 TVALZ - ok
15:51:03.0364 4208 [ 9C7191F4B2E49BFF47A6C1144B5923FA ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys
15:51:03.0374 4208 TVALZFL - ok
15:51:03.0394 4208 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
15:51:03.0414 4208 uagp35 - ok
15:51:03.0454 4208 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
15:51:03.0534 4208 udfs - ok
15:51:03.0584 4208 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe
15:51:03.0604 4208 UI0Detect - ok
15:51:03.0654 4208 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
15:51:03.0674 4208 uliagpkx - ok
15:51:03.0754 4208 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\drivers\umbus.sys
15:51:03.0794 4208 umbus - ok
15:51:03.0834 4208 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\DRIVERS\umpass.sys
15:51:03.0854 4208 UmPass - ok
15:51:03.0984 4208 [ 7466809E6DA561D60C2F1CE8EDE3C73F ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
15:51:04.0054 4208 UNS - ok
15:51:04.0074 4208 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll
15:51:04.0154 4208 upnphost - ok
15:51:04.0214 4208 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\windows\system32\Drivers\usbaapl64.sys
15:51:04.0214 4208 USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning
15:51:04.0214 4208 USBAAPL64 - detected UnsignedFile.Multi.Generic (1)
15:51:04.0264 4208 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
15:51:04.0294 4208 usbccgp - ok
15:51:04.0314 4208 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys
15:51:04.0334 4208 usbcir - ok
15:51:04.0354 4208 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys
15:51:04.0394 4208 usbehci - ok
15:51:04.0424 4208 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
15:51:04.0444 4208 usbhub - ok
15:51:04.0484 4208 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys
15:51:04.0544 4208 usbohci - ok
15:51:04.0594 4208 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
15:51:04.0644 4208 usbprint - ok
15:51:04.0684 4208 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
15:51:04.0715 4208 usbscan - ok
15:51:04.0735 4208 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
15:51:04.0815 4208 USBSTOR - ok
15:51:04.0865 4208 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys
15:51:04.0895 4208 usbuhci - ok
15:51:04.0945 4208 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
15:51:04.0975 4208 usbvideo - ok
15:51:05.0005 4208 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll
15:51:05.0055 4208 UxSms - ok
15:51:05.0065 4208 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe
15:51:05.0085 4208 VaultSvc - ok
15:51:05.0115 4208 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
15:51:05.0125 4208 vdrvroot - ok
15:51:05.0185 4208 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe
15:51:05.0255 4208 vds - ok
15:51:05.0285 4208 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys
15:51:05.0305 4208 vga - ok
15:51:05.0335 4208 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys
15:51:05.0385 4208 VgaSave - ok
15:51:05.0445 4208 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys
15:51:05.0465 4208 vhdmp - ok
15:51:05.0485 4208 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys
15:51:05.0495 4208 viaide - ok
15:51:05.0515 4208 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys
15:51:05.0535 4208 volmgr - ok
15:51:05.0595 4208 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys
15:51:05.0615 4208 volmgrx - ok
15:51:05.0645 4208 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\windows\system32\drivers\volsnap.sys
15:51:05.0665 4208 volsnap - ok
15:51:05.0705 4208 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
15:51:05.0726 4208 vsmraid - ok
15:51:05.0806 4208 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe
15:51:05.0896 4208 VSS - ok
15:51:05.0916 4208 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
15:51:05.0946 4208 vwifibus - ok
15:51:05.0986 4208 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
15:51:06.0036 4208 vwififlt - ok
15:51:06.0076 4208 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys
15:51:06.0116 4208 vwifimp - ok
15:51:06.0156 4208 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll
15:51:06.0206 4208 W32Time - ok
15:51:06.0236 4208 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
15:51:06.0256 4208 WacomPen - ok
15:51:06.0306 4208 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
15:51:06.0366 4208 WANARP - ok
15:51:06.0376 4208 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
15:51:06.0416 4208 Wanarpv6 - ok
15:51:06.0476 4208 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
15:51:06.0516 4208 WatAdminSvc - ok
15:51:06.0586 4208 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe
15:51:06.0636 4208 wbengine - ok
15:51:06.0656 4208 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
15:51:06.0686 4208 WbioSrvc - ok
15:51:06.0737 4208 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll
15:51:06.0787 4208 wcncsvc - ok
15:51:06.0817 4208 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
15:51:06.0847 4208 WcsPlugInService - ok
15:51:06.0867 4208 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\DRIVERS\wd.sys
15:51:06.0887 4208 Wd - ok
15:51:06.0917 4208 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
15:51:06.0957 4208 Wdf01000 - ok
15:51:06.0987 4208 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll
15:51:07.0107 4208 WdiServiceHost - ok
15:51:07.0107 4208 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll
15:51:07.0137 4208 WdiSystemHost - ok
15:51:07.0187 4208 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll
15:51:07.0227 4208 WebClient - ok
15:51:07.0257 4208 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll
15:51:07.0327 4208 Wecsvc - ok
15:51:07.0347 4208 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll
15:51:07.0417 4208 wercplsupport - ok
15:51:07.0457 4208 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll
15:51:07.0497 4208 WerSvc - ok
15:51:07.0537 4208 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
15:51:07.0577 4208 WfpLwf - ok
15:51:07.0597 4208 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys
15:51:07.0617 4208 WIMMount - ok
15:51:07.0617 4208 WinHttpAutoProxySvc - ok
15:51:07.0667 4208 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
15:51:07.0737 4208 Winmgmt - ok
15:51:07.0817 4208 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll
15:51:07.0917 4208 WinRM - ok
15:51:07.0987 4208 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
15:51:08.0017 4208 WinUsb - ok
15:51:08.0067 4208 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll
15:51:08.0127 4208 Wlansvc - ok
15:51:08.0177 4208 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
15:51:08.0187 4208 wlcrasvc - ok
15:51:08.0307 4208 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:51:08.0377 4208 wlidsvc - ok
15:51:08.0437 4208 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys
15:51:08.0467 4208 WmiAcpi - ok
15:51:08.0497 4208 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
15:51:08.0537 4208 wmiApSrv - ok
15:51:08.0577 4208 WMPNetworkSvc - ok
15:51:08.0607 4208 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll
15:51:08.0647 4208 WPCSvc - ok
15:51:08.0687 4208 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
15:51:08.0707 4208 WPDBusEnum - ok
15:51:08.0737 4208 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
15:51:08.0797 4208 ws2ifsl - ok
15:51:08.0827 4208 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\windows\System32\wscsvc.dll
15:51:08.0867 4208 wscsvc - ok
15:51:08.0867 4208 WSearch - ok
15:51:08.0957 4208 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\windows\system32\wuaueng.dll
15:51:09.0027 4208 wuauserv - ok
15:51:09.0087 4208 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
15:51:09.0147 4208 WudfPf - ok
15:51:09.0227 4208 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
15:51:09.0277 4208 WUDFRd - ok
15:51:09.0317 4208 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
15:51:09.0347 4208 wudfsvc - ok
15:51:09.0377 4208 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll
15:51:09.0407 4208 WwanSvc - ok
15:51:09.0537 4208 [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
15:51:09.0577 4208 YahooAUService - ok
15:51:09.0597 4208 ================ Scan global ===============================
15:51:09.0607 4208 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll
15:51:09.0667 4208 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
15:51:09.0677 4208 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
15:51:09.0707 4208 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll
15:51:09.0747 4208 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\windows\system32\services.exe
15:51:09.0757 4208 [Global] - ok
15:51:09.0757 4208 ================ Scan MBR ==================================
15:51:09.0767 4208 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0
15:51:10.0347 4208 \Device\Harddisk0\DR0 - ok
15:51:10.0347 4208 ================ Scan VBR ==================================
15:51:10.0367 4208 [ 0C80E75223AD68866696B5837DF22CAC ] \Device\Harddisk0\DR0\Partition1
15:51:10.0377 4208 \Device\Harddisk0\DR0\Partition1 - ok
15:51:10.0377 4208 ============================================================
15:51:10.0377 4208 Scan finished
15:51:10.0377 4208 ============================================================
15:51:10.0397 2044 Detected object count: 7
15:51:10.0397 2044 Actual detected object count: 7
15:51:29.0729 2044 BrSerIb ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0729 2044 BrSerIb ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0739 2044 BrUsbSIb ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0739 2044 BrUsbSIb ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0739 2044 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0739 2044 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0739 2044 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0739 2044 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0749 2044 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0749 2044 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0749 2044 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0749 2044 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:51:29.0749 2044 USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user
15:51:29.0749 2044 USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:52:55.0890 4140 ============================================================
15:52:55.0890 4140 Scan started
15:52:55.0890 4140 Mode: Manual; SigCheck; TDLFS;
15:52:55.0890 4140 ============================================================
15:52:56.0100 4140 ================ Scan system memory ========================
15:52:56.0100 4140 System memory - ok
15:52:56.0100 4140 ================ Scan services =============================
15:52:56.0300 4140 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
15:52:56.0340 4140 1394ohci - ok
15:52:56.0360 4140 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys
15:52:56.0390 4140 ACPI - ok
15:52:56.0410 4140 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
15:52:56.0420 4140 AcpiPmi - ok
15:52:56.0510 4140 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:52:56.0540 4140 AdobeARMservice - ok
15:52:56.0680 4140 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:52:56.0720 4140 AdobeFlashPlayerUpdateSvc - ok
15:52:56.0760 4140 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
15:52:56.0790 4140 adp94xx - ok
15:52:56.0810 4140 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
15:52:56.0830 4140 adpahci - ok
15:52:56.0850 4140 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
15:52:56.0860 4140 adpu320 - ok
15:52:56.0891 4140 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
15:52:56.0941 4140 AeLookupSvc - ok
15:52:56.0971 4140 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys
15:52:56.0991 4140 AFD - ok
15:52:57.0031 4140 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys
15:52:57.0041 4140 agp440 - ok
15:52:57.0071 4140 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe
15:52:57.0081 4140 ALG - ok
15:52:57.0121 4140 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys
15:52:57.0131 4140 aliide - ok
15:52:57.0151 4140 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys
15:52:57.0161 4140 amdide - ok
15:52:57.0191 4140 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
15:52:57.0211 4140 AmdK8 - ok
15:52:57.0221 4140 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
15:52:57.0241 4140 AmdPPM - ok
15:52:57.0271 4140 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys
15:52:57.0281 4140 amdsata - ok
15:52:57.0301 4140 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
15:52:57.0311 4140 amdsbs - ok
15:52:57.0331 4140 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
15:52:57.0341 4140 amdxata - ok
15:52:57.0381 4140 [ 48CD7E6520D47D62EAB0E6CE3EC30C65 ] Andbus C:\windows\system32\DRIVERS\lgandbus64.sys
15:52:57.0391 4140 Andbus - ok
15:52:57.0411 4140 [ 08CBACC00D15DCDBBAAE1A7C8F231C61 ] AndDiag C:\windows\system32\DRIVERS\lganddiag64.sys
15:52:57.0421 4140 AndDiag - ok
15:52:57.0441 4140 [ CEA9A4CD6B3A83428CE8501240833668 ] AndGps C:\windows\system32\DRIVERS\lgandgps64.sys
15:52:57.0451 4140 AndGps - ok
15:52:57.0471 4140 [ E2B5663E547FA5E756B253EFA8EC8286 ] ANDModem C:\windows\system32\DRIVERS\lgandmodem64.sys
15:52:57.0481 4140 ANDModem - ok
15:52:57.0521 4140 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys
15:52:57.0561 4140 AppID - ok
15:52:57.0601 4140 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll
15:52:57.0641 4140 AppIDSvc - ok
15:52:57.0681 4140 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll
15:52:57.0741 4140 Appinfo - ok
15:52:57.0811 4140 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:52:57.0841 4140 Apple Mobile Device - ok
15:52:57.0871 4140 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\DRIVERS\arc.sys
15:52:57.0894 4140 arc - ok
15:52:57.0907 4140 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
15:52:57.0917 4140 arcsas - ok
15:52:57.0937 4140 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
15:52:57.0977 4140 AsyncMac - ok
15:52:58.0017 4140 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys
15:52:58.0027 4140 atapi - ok
15:52:58.0067 4140 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
15:52:58.0117 4140 AudioEndpointBuilder - ok
15:52:58.0127 4140 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll
15:52:58.0177 4140 AudioSrv - ok
15:52:58.0217 4140 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll
15:52:58.0257 4140 AxInstSV - ok
15:52:58.0287 4140 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\DRIVERS\bxvbda.sys
15:52:58.0317 4140 b06bdrv - ok
15:52:58.0327 4140 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
15:52:58.0347 4140 b57nd60a - ok
15:52:58.0367 4140 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll
15:52:58.0387 4140 BDESVC - ok
15:52:58.0417 4140 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys
15:52:58.0457 4140 Beep - ok
15:52:58.0507 4140 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll
15:52:58.0557 4140 BFE - ok
15:52:58.0777 4140 [ ED97ADAF00A61F57A2CCBBB1CE58C600 ] BHDrvx64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\BASHDefs\20121106.001\BHDrvx64.sys
15:52:58.0817 4140 BHDrvx64 - ok
15:52:58.0857 4140 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\system32\qmgr.dll
15:52:58.0907 4140 BITS - ok
15:52:58.0937 4140 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
15:52:58.0957 4140 blbdrive - ok
15:52:58.0997 4140 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:52:59.0037 4140 Bonjour Service - ok
15:52:59.0077 4140 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
15:52:59.0097 4140 bowser - ok
15:52:59.0107 4140 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
15:52:59.0127 4140 BrFiltLo - ok
15:52:59.0157 4140 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
15:52:59.0177 4140 BrFiltUp - ok
15:52:59.0207 4140 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll
15:52:59.0227 4140 Browser - ok
15:52:59.0267 4140 [ 6DF544E72FF139E8FBBBA6D0E569BEA5 ] BrSerIb C:\windows\system32\DRIVERS\BrSerIb.sys
15:52:59.0267 4140 BrSerIb ( UnsignedFile.Multi.Generic ) - warning
15:52:59.0267 4140 BrSerIb - detected UnsignedFile.Multi.Generic (1)
15:52:59.0317 4140 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys
15:52:59.0337 4140 Brserid - ok
15:52:59.0357 4140 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
15:52:59.0377 4140 BrSerWdm - ok
15:52:59.0387 4140 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
15:52:59.0407 4140 BrUsbMdm - ok
15:52:59.0417 4140 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
15:52:59.0427 4140 BrUsbSer - ok
15:52:59.0467 4140 [ 80082AD46578F0D3270D2E56D6433082 ] BrUsbSIb C:\windows\system32\DRIVERS\BrUsbSIb.sys
15:52:59.0467 4140 BrUsbSIb ( UnsignedFile.Multi.Generic ) - warning
15:52:59.0467 4140 BrUsbSIb - detected UnsignedFile.Multi.Generic (1)
15:52:59.0487 4140 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
15:52:59.0497 4140 BTHMODEM - ok
15:52:59.0537 4140 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll
15:52:59.0577 4140 bthserv - ok
15:52:59.0587 4140 catchme - ok
15:52:59.0657 4140 [ 248C952C82DF1E23775432774CBB20F1 ] ccSet_N360 C:\windows\system32\drivers\N360x64\1402000.013\ccSetx64.sys
15:52:59.0687 4140 ccSet_N360 - ok
15:52:59.0717 4140 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
15:52:59.0757 4140 cdfs - ok
15:52:59.0787 4140 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\drivers\cdrom.sys
15:52:59.0807 4140 cdrom - ok
15:52:59.0847 4140 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll
15:52:59.0907 4140 CertPropSvc - ok
15:52:59.0937 4140 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\DRIVERS\circlass.sys
15:52:59.0947 4140 circlass - ok
15:52:59.0977 4140 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys
15:52:59.0997 4140 CLFS - ok
15:53:00.0047 4140 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:53:00.0077 4140 clr_optimization_v2.0.50727_32 - ok
15:53:00.0097 4140 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
15:53:00.0107 4140 clr_optimization_v2.0.50727_64 - ok
15:53:00.0167 4140 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:53:00.0177 4140 clr_optimization_v4.0.30319_32 - ok
15:53:00.0217 4140 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:53:00.0237 4140 clr_optimization_v4.0.30319_64 - ok
15:53:00.0267 4140 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
15:53:00.0287 4140 CmBatt - ok
15:53:00.0297 4140 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys
15:53:00.0307 4140 cmdide - ok
15:53:00.0357 4140 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys
15:53:00.0397 4140 CNG - ok
15:53:00.0427 4140 [ 25C58EE97BE0416A373E3E4F855206B5 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys
15:53:00.0447 4140 CnxtHdAudService - ok
15:53:00.0477 4140 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
15:53:00.0487 4140 Compbatt - ok
15:53:00.0547 4140 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys
15:53:00.0577 4140 CompositeBus - ok
15:53:00.0587 4140 COMSysApp - ok
15:53:00.0617 4140 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
15:53:00.0627 4140 crcdisk - ok
15:53:00.0677 4140 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\windows\system32\cryptsvc.dll
15:53:00.0687 4140 CryptSvc - ok
15:53:00.0717 4140 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll
15:53:00.0767 4140 DcomLaunch - ok
15:53:00.0797 4140 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll
15:53:00.0847 4140 defragsvc - ok
15:53:00.0877 4140 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
15:53:00.0917 4140 DfsC - ok
15:53:00.0957 4140 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll
15:53:00.0977 4140 Dhcp - ok
15:53:00.0997 4140 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys
15:53:01.0047 4140 discache - ok
15:53:01.0057 4140 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\DRIVERS\disk.sys
15:53:01.0077 4140 Disk - ok
15:53:01.0107 4140 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll
15:53:01.0127 4140 Dnscache - ok
15:53:01.0167 4140 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll
15:53:01.0247 4140 dot3svc - ok
15:53:01.0267 4140 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\windows\system32\DRIVERS\Dot4.sys
15:53:01.0287 4140 Dot4 - ok
15:53:01.0327 4140 [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print C:\windows\system32\DRIVERS\Dot4Prt.sys
15:53:01.0347 4140 Dot4Print - ok
15:53:01.0367 4140 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\windows\system32\DRIVERS\dot4usb.sys
15:53:01.0397 4140 dot4usb - ok
15:53:01.0407 4140 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll
15:53:01.0457 4140 DPS - ok
15:53:01.0497 4140 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
15:53:01.0517 4140 drmkaud - ok
15:53:01.0567 4140 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
15:53:01.0597 4140 DXGKrnl - ok
15:53:01.0627 4140 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll
15:53:01.0677 4140 EapHost - ok
15:53:01.0787 4140 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\DRIVERS\evbda.sys
15:53:01.0847 4140 ebdrv - ok
15:53:01.0897 4140 [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
15:53:01.0917 4140 eeCtrl - ok
15:53:01.0957 4140 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe
15:53:01.0977 4140 EFS - ok
15:53:02.0047 4140 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
15:53:02.0077 4140 ehRecvr - ok
15:53:02.0107 4140 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe
15:53:02.0117 4140 ehSched - ok
15:53:02.0207 4140 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
15:53:02.0227 4140 elxstor - ok
15:53:02.0267 4140 [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
15:53:02.0277 4140 EraserUtilRebootDrv - ok
15:53:02.0317 4140 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys
15:53:02.0327 4140 ErrDev - ok
15:53:02.0377 4140 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll
15:53:02.0427 4140 EventSystem - ok
15:53:02.0457 4140 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys
15:53:02.0507 4140 exfat - ok
15:53:02.0547 4140 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys
15:53:02.0587 4140 fastfat - ok
15:53:02.0647 4140 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe
15:53:02.0677 4140 Fax - ok
15:53:02.0697 4140 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\DRIVERS\fdc.sys
15:53:02.0717 4140 fdc - ok
15:53:02.0737 4140 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll
15:53:02.0777 4140 fdPHost - ok
15:53:02.0807 4140 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll
15:53:02.0847 4140 FDResPub - ok
15:53:02.0877 4140 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
15:53:02.0887 4140 FileInfo - ok
15:53:02.0897 4140 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
15:53:02.0938 4140 Filetrace - ok
15:53:02.0968 4140 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
15:53:02.0978 4140 flpydisk - ok
15:53:03.0018 4140 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
15:53:03.0038 4140 FltMgr - ok
15:53:03.0098 4140 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll
15:53:03.0138 4140 FontCache - ok
15:53:03.0188 4140 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:53:03.0208 4140 FontCache3.0.0.0 - ok
15:53:03.0248 4140 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys
15:53:03.0258 4140 FsDepends - ok
15:53:03.0298 4140 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
15:53:03.0318 4140 Fs_Rec - ok
15:53:03.0368 4140 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
15:53:03.0398 4140 fvevol - ok
15:53:03.0418 4140 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
15:53:03.0438 4140 gagp30kx - ok
15:53:03.0478 4140 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys
15:53:03.0508 4140 GEARAspiWDM - ok
15:53:03.0558 4140 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll
15:53:03.0628 4140 gpsvc - ok
15:53:03.0688 4140 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:53:03.0708 4140 gupdate - ok
15:53:03.0708 4140 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:53:03.0728 4140 gupdatem - ok
15:53:03.0768 4140 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
15:53:03.0778 4140 gusvc - ok
15:53:03.0818 4140 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
15:53:03.0838 4140 hcw85cir - ok
15:53:03.0888 4140 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
15:53:03.0908 4140 HdAudAddService - ok
15:53:03.0928 4140 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys
15:53:03.0948 4140 HDAudBus - ok
15:53:03.0968 4140 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\windows\system32\DRIVERS\HECIx64.sys
15:53:03.0978 4140 HECIx64 - ok
15:53:03.0988 4140 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
15:53:04.0008 4140 HidBatt - ok
15:53:04.0028 4140 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
15:53:04.0048 4140 HidBth - ok
15:53:04.0078 4140 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\DRIVERS\hidir.sys
15:53:04.0098 4140 HidIr - ok
15:53:04.0128 4140 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\System32\hidserv.dll
15:53:04.0178 4140 hidserv - ok
15:53:04.0208 4140 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
15:53:04.0218 4140 HidUsb - ok
15:53:04.0248 4140 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll
15:53:04.0318 4140 hkmsvc - ok
15:53:04.0348 4140 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
15:53:04.0358 4140 HomeGroupListener - ok
15:53:04.0408 4140 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
15:53:04.0438 4140 HomeGroupProvider - ok
15:53:04.0468 4140 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
15:53:04.0488 4140 HpSAMD - ok
15:53:04.0568 4140 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys
15:53:04.0628 4140 HTTP - ok
15:53:04.0658 4140 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
15:53:04.0678 4140 hwpolicy - ok
15:53:04.0718 4140 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\drivers\i8042prt.sys
15:53:04.0738 4140 i8042prt - ok
15:53:04.0788 4140 [ 5E60DD5F090AB4A563C7204C289C4650 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
15:53:04.0818 4140 iaStor - ok
15:53:04.0848 4140 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
15:53:04.0878 4140 iaStorV - ok
15:53:04.0928 4140 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
15:53:04.0938 4140 IDriverT ( UnsignedFile.Multi.Generic ) - warning
15:53:04.0938 4140 IDriverT - detected UnsignedFile.Multi.Generic (1)
15:53:05.0008 4140 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
15:53:05.0038 4140 idsvc - ok
15:53:05.0188 4140 [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\IPSDefs\20121116.001\IDSvia64.sys
15:53:05.0218 4140 IDSVia64 - ok
15:53:05.0458 4140 [ 1BE8D9CA4F2363B8E8015621878E0043 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
15:53:05.0608 4140 igfx - ok
15:53:05.0648 4140 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
15:53:05.0658 4140 iirsp - ok
15:53:05.0718 4140 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll
15:53:05.0798 4140 IKEEXT - ok
15:53:05.0828 4140 [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd C:\windows\system32\DRIVERS\Impcd.sys
15:53:05.0838 4140 Impcd - ok
15:53:05.0858 4140 [ 03C74719D48056A1078F3A51CEB76BAA ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
15:53:05.0878 4140 IntcDAud - ok
15:53:05.0898 4140 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys
15:53:05.0918 4140 intelide - ok
15:53:05.0948 4140 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
15:53:05.0958 4140 intelppm - ok
15:53:05.0978 4140 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll
15:53:06.0028 4140 IPBusEnum - ok
15:53:06.0078 4140 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
15:53:06.0118 4140 IpFilterDriver - ok
15:53:06.0158 4140 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
15:53:06.0178 4140 IPMIDRV - ok
15:53:06.0188 4140 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
15:53:06.0238 4140 IPNAT - ok
15:53:06.0278 4140 [ 6E50CFA46527B39015B750AAD161C5CC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
15:53:06.0298 4140 iPod Service - ok
15:53:06.0318 4140 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys
15:53:06.0338 4140 IRENUM - ok
15:53:06.0378 4140 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys
15:53:06.0388 4140 isapnp - ok
15:53:06.0408 4140 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
15:53:06.0428 4140 iScsiPrt - ok
15:53:06.0448 4140 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\drivers\kbdclass.sys
15:53:06.0458 4140 kbdclass - ok
15:53:06.0488 4140 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
15:53:06.0508 4140 kbdhid - ok
15:53:06.0528 4140 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe
15:53:06.0538 4140 KeyIso - ok
15:53:06.0588 4140 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
15:53:06.0598 4140 KSecDD - ok
15:53:06.0628 4140 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
15:53:06.0648 4140 KSecPkg - ok
15:53:06.0668 4140 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
15:53:06.0718 4140 ksthunk - ok
15:53:06.0748 4140 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll
15:53:06.0798 4140 KtmRm - ok
15:53:06.0828 4140 [ 55480B9C63F3F91A8EBBADCBF28FE581 ] L1C C:\windows\system32\DRIVERS\L1C62x64.sys
15:53:06.0838 4140 L1C - ok
15:53:06.0888 4140 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\System32\srvsvc.dll
15:53:06.0939 4140 LanmanServer - ok
15:53:06.0969 4140 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
15:53:07.0009 4140 LanmanWorkstation - ok
15:53:07.0029 4140 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
15:53:07.0069 4140 lltdio - ok
15:53:07.0109 4140 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll
15:53:07.0159 4140 lltdsvc - ok
15:53:07.0189 4140 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll
15:53:07.0229 4140 lmhosts - ok
15:53:07.0289 4140 [ DBC1136A62BD4DECC3632DF650284C2E ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
15:53:07.0299 4140 LMS - ok
15:53:07.0319 4140 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
15:53:07.0339 4140 LSI_FC - ok
15:53:07.0359 4140 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
15:53:07.0379 4140 LSI_SAS - ok
15:53:07.0399 4140 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
15:53:07.0409 4140 LSI_SAS2 - ok
15:53:07.0419 4140 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
15:53:07.0439 4140 LSI_SCSI - ok
15:53:07.0459 4140 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys
15:53:07.0499 4140 luafv - ok
15:53:07.0529 4140 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
15:53:07.0549 4140 MBAMProtector - ok
15:53:07.0599 4140 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
15:53:07.0619 4140 MBAMScheduler - ok
15:53:07.0649 4140 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
15:53:07.0679 4140 MBAMService - ok
15:53:07.0749 4140 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
15:53:07.0769 4140 McComponentHostService - ok
15:53:07.0819 4140 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
15:53:07.0839 4140 Mcx2Svc - ok
15:53:07.0879 4140 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\DRIVERS\megasas.sys
15:53:07.0889 4140 megasas - ok
15:53:07.0909 4140 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
15:53:07.0929 4140 MegaSR - ok
15:53:07.0959 4140 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll
15:53:08.0009 4140 MMCSS - ok
15:53:08.0029 4140 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys
15:53:08.0069 4140 Modem - ok
15:53:08.0079 4140 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys
15:53:08.0099 4140 monitor - ok
15:53:08.0129 4140 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\drivers\mouclass.sys
15:53:08.0139 4140 mouclass - ok
15:53:08.0159 4140 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
15:53:08.0179 4140 mouhid - ok
15:53:08.0209 4140 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys
15:53:08.0239 4140 mountmgr - ok
15:53:08.0289 4140 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:53:08.0319 4140 MozillaMaintenance - ok
15:53:08.0339 4140 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys
15:53:08.0359 4140 mpio - ok
15:53:08.0369 4140 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
15:53:08.0419 4140 mpsdrv - ok
15:53:08.0469 4140 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll
15:53:08.0539 4140 MpsSvc - ok
15:53:08.0579 4140 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
15:53:08.0619 4140 MRxDAV - ok
15:53:08.0649 4140 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
15:53:08.0669 4140 mrxsmb - ok
15:53:08.0699 4140 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
15:53:08.0719 4140 mrxsmb10 - ok
15:53:08.0739 4140 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
15:53:08.0759 4140 mrxsmb20 - ok
15:53:08.0769 4140 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys
15:53:08.0789 4140 msahci - ok
15:53:08.0829 4140 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys
15:53:08.0839 4140 msdsm - ok
15:53:08.0859 4140 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe
15:53:08.0869 4140 MSDTC - ok
15:53:08.0899 4140 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys
15:53:08.0939 4140 Msfs - ok
15:53:08.0949 4140 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
15:53:08.0989 4140 mshidkmdf - ok
15:53:08.0999 4140 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys
15:53:09.0009 4140 msisadrv - ok
15:53:09.0039 4140 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
15:53:09.0089 4140 MSiSCSI - ok
15:53:09.0089 4140 msiserver - ok
15:53:09.0109 4140 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
15:53:09.0149 4140 MSKSSRV - ok
15:53:09.0169 4140 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
15:53:09.0209 4140 MSPCLOCK - ok
15:53:09.0229 4140 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
15:53:09.0269 4140 MSPQM - ok
15:53:09.0309 4140 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys
15:53:09.0329 4140 MsRPC - ok
15:53:09.0369 4140 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\drivers\mssmbios.sys
15:53:09.0389 4140 mssmbios - ok
15:53:09.0419 4140 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
15:53:09.0459 4140 MSTEE - ok
15:53:09.0479 4140 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
15:53:09.0489 4140 MTConfig - ok
15:53:09.0509 4140 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys
15:53:09.0529 4140 Mup - ok
15:53:09.0699 4140 [ 4A9258B9597A31DB68EC9740F3A8A70B ] N360 C:\Program Files (x86)\Norton 360\Engine\20.2.0.19\ccSvcHst.exe
15:53:09.0729 4140 N360 - ok
15:53:09.0779 4140 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll
15:53:09.0849 4140 napagent - ok
15:53:09.0879 4140 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
15:53:09.0909 4140 NativeWifiP - ok
15:53:09.0980 4140 [ C58D8A669D6551F616D90244BD2C2D4F ] NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\VirusDefs\20121116.020\ENG64.SYS
15:53:10.0010 4140 NAVENG - ok
15:53:10.0090 4140 [ A3DBDB412ADFA5882DD6843B11FE0828 ] NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.2.0.19\Definitions\VirusDefs\20121116.020\EX64.SYS
15:53:10.0150 4140 NAVEX15 - ok
15:53:10.0250 4140 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys
15:53:10.0300 4140 NDIS - ok
15:53:10.0330 4140 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
15:53:10.0370 4140 NdisCap - ok
15:53:10.0390 4140 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
15:53:10.0440 4140 NdisTapi - ok
15:53:10.0480 4140 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
15:53:10.0520 4140 Ndisuio - ok
15:53:10.0560 4140 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
15:53:10.0610 4140 NdisWan - ok
15:53:10.0640 4140 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
15:53:10.0680 4140 NDProxy - ok
15:53:10.0710 4140 [ DC6530A291D4BDF6DF399F1F128E7F8F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
15:53:10.0720 4140 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
15:53:10.0720 4140 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
15:53:10.0750 4140 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
15:53:10.0800 4140 NetBIOS - ok
15:53:10.0850 4140 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
15:53:10.0890 4140 NetBT - ok
15:53:10.0900 4140 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe
15:53:10.0920 4140 Netlogon - ok
15:53:10.0940 4140 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll
15:53:10.0990 4140 Netman - ok
15:53:11.0010 4140 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll
15:53:11.0060 4140 netprofm - ok
15:53:11.0080 4140 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:53:11.0090 4140 NetTcpPortSharing - ok
15:53:11.0130 4140 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
15:53:11.0140 4140 nfrd960 - ok
15:53:11.0180 4140 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\windows\System32\nlasvc.dll
15:53:11.0200 4140 NlaSvc - ok
15:53:11.0230 4140 Norton PC Checkup Application Launcher - ok
15:53:11.0250 4140 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys
15:53:11.0300 4140 Npfs - ok
15:53:11.0320 4140 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll
15:53:11.0360 4140 nsi - ok
15:53:11.0390 4140 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
15:53:11.0440 4140 nsiproxy - ok
15:53:11.0510 4140 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
15:53:11.0550 4140 Ntfs - ok
15:53:11.0570 4140 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys
15:53:11.0620 4140 Null - ok
15:53:11.0640 4140 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys
15:53:11.0650 4140 nvraid - ok
15:53:11.0700 4140 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys
15:53:11.0720 4140 nvstor - ok
15:53:11.0740 4140 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
15:53:11.0770 4140 nv_agp - ok
15:53:11.0790 4140 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
15:53:11.0800 4140 ohci1394 - ok
15:53:11.0860 4140 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:53:11.0890 4140 ose - ok
15:53:12.0030 4140 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:53:12.0140 4140 osppsvc - ok
15:53:12.0260 4140 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll
15:53:12.0300 4140 p2pimsvc - ok
15:53:12.0320 4140 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll
15:53:12.0340 4140 p2psvc - ok
15:53:12.0380 4140 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\DRIVERS\parport.sys
15:53:12.0390 4140 Parport - ok
15:53:12.0430 4140 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys
15:53:12.0440 4140 partmgr - ok
15:53:12.0470 4140 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
15:53:12.0490 4140 PcaSvc - ok
15:53:12.0520 4140 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.5.60\ccSvcHst.exe
15:53:12.0530 4140 PCCUJobMgr - ok
15:53:12.0580 4140 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys
15:53:12.0590 4140 pci - ok
15:53:12.0610 4140 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys
15:53:12.0620 4140 pciide - ok
15:53:12.0650 4140 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
15:53:12.0660 4140 pcmcia - ok
15:53:12.0680 4140 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys
15:53:12.0690 4140 pcw - ok
15:53:12.0720 4140 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys
15:53:12.0790 4140 PEAUTH - ok
15:53:12.0850 4140 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe
15:53:12.0870 4140 PerfHost - ok
15:53:12.0890 4140 [ 663962900E7FEA522126BA287715BB4A ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys
15:53:12.0910 4140 PGEffect - ok
15:53:12.0970 4140 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll
15:53:13.0030 4140 pla - ok
15:53:13.0050 4140 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
15:53:13.0070 4140 PlugPlay - ok
15:53:13.0080 4140 [ 71F62C51DFDFBC04C83C5C64B2B8058E ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
15:53:13.0090 4140 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
15:53:13.0090 4140 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
15:53:13.0120 4140 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
15:53:13.0130 4140 PNRPAutoReg - ok
15:53:13.0150 4140 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll
15:53:13.0170 4140 PNRPsvc - ok
15:53:13.0210 4140 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
15:53:13.0260 4140 PolicyAgent - ok
15:53:13.0290 4140 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll
15:53:13.0340 4140 Power - ok
15:53:13.0380 4140 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
15:53:13.0420 4140 PptpMiniport - ok
15:53:13.0440 4140 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\DRIVERS\processr.sys
15:53:13.0450 4140 Processor - ok
15:53:13.0460 4140 PROCEXP150 - ok
15:53:13.0490 4140 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll
15:53:13.0510 4140 ProfSvc - ok
15:53:13.0530 4140 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
15:53:13.0540 4140 ProtectedStorage - ok
15:53:13.0590 4140 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys
15:53:13.0640 4140 Psched - ok
15:53:13.0650 4140 [ C8FCB4899F8B70CC34E0D9876A80963C ] QIOMem C:\windows\system32\DRIVERS\QIOMem.sys
15:53:13.0660 4140 QIOMem - ok
15:53:13.0710 4140 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
15:53:13.0760 4140 ql2300 - ok
15:53:13.0780 4140 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
15:53:13.0790 4140 ql40xx - ok
15:53:13.0820 4140 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll
15:53:13.0850 4140 QWAVE - ok
15:53:13.0870 4140 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
15:53:13.0890 4140 QWAVEdrv - ok
15:53:13.0910 4140 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
15:53:13.0950 4140 RasAcd - ok
15:53:13.0980 4140 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
15:53:14.0020 4140 RasAgileVpn - ok
15:53:14.0050 4140 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll
15:53:14.0090 4140 RasAuto - ok
15:53:14.0140 4140 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
15:53:14.0180 4140 Rasl2tp - ok
15:53:14.0230 4140 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll
15:53:14.0290 4140 RasMan - ok
15:53:14.0320 4140 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
15:53:14.0360 4140 RasPppoe - ok
15:53:14.0370 4140 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
15:53:14.0420 4140 RasSstp - ok
15:53:14.0440 4140 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
15:53:14.0480 4140 rdbss - ok
15:53:14.0500 4140 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
15:53:14.0520 4140 rdpbus - ok
15:53:14.0540 4140 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
15:53:14.0580 4140 RDPCDD - ok
15:53:14.0600 4140 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
15:53:14.0640 4140 RDPENCDD - ok
15:53:14.0650 4140 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
15:53:14.0700 4140 RDPREFMP - ok
15:53:14.0730 4140 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys
15:53:14.0750 4140 RDPWD - ok
15:53:14.0790 4140 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
15:53:14.0820 4140 rdyboost - ok
15:53:14.0840 4140 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll
15:53:14.0900 4140 RemoteAccess - ok
15:53:14.0930 4140 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
15:53:14.0980 4140 RemoteRegistry - ok
15:53:14.0980 4140 RimUsb - ok
15:53:15.0010 4140 [ C903D49655B4AAE46673F0AAA6BE0F58 ] RimVSerPort C:\windows\system32\DRIVERS\RimSerial_AMD64.sys
15:53:15.0020 4140 RimVSerPort - ok
15:53:15.0040 4140 [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM C:\windows\system32\Drivers\RootMdm.sys
15:53:15.0080 4140 ROOTMODEM - ok
15:53:15.0090 4140 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
15:53:15.0140 4140 RpcEptMapper - ok
15:53:15.0170 4140 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe
15:53:15.0180 4140 RpcLocator - ok
15:53:15.0220 4140 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll
15:53:15.0270 4140 RpcSs - ok
15:53:15.0290 4140 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
15:53:15.0340 4140 rspndr - ok
15:53:15.0370 4140 [ 3CEEE53BBF8BA284FF44585CEC0162FE ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys
15:53:15.0390 4140 RSUSBSTOR - ok
15:53:15.0420 4140 [ B89C0601A05E1140AC96FA965D94C340 ] rtl8192Ce C:\windows\system32\DRIVERS\rtl8192Ce.sys
15:53:15.0450 4140 rtl8192Ce - ok
15:53:15.0470 4140 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe
15:53:15.0490 4140 SamSs - ok
15:53:15.0530 4140 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys
15:53:15.0540 4140 sbp2port - ok
15:53:15.0580 4140 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll
15:53:15.0630 4140 SCardSvr - ok
15:53:15.0660 4140 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
15:53:15.0710 4140 scfilter - ok
15:53:15.0770 4140 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll
15:53:15.0830 4140 Schedule - ok
15:53:15.0870 4140 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll
15:53:15.0910 4140 SCPolicySvc - ok
15:53:15.0920 4140 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
15:53:15.0940 4140 SDRSVC - ok
15:53:15.0960 4140 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
15:53:16.0000 4140 secdrv - ok
15:53:16.0040 4140 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll
15:53:16.0110 4140 seclogon - ok
15:53:16.0140 4140 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\system32\sens.dll
15:53:16.0180 4140 SENS - ok
15:53:16.0200 4140 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll
15:53:16.0210 4140 SensrSvc - ok
15:53:16.0230 4140 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\DRIVERS\serenum.sys
15:53:16.0240 4140 Serenum - ok
15:53:16.0250 4140 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\DRIVERS\serial.sys
15:53:16.0270 4140 Serial - ok
15:53:16.0300 4140 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
15:53:16.0320 4140 sermouse - ok
15:53:16.0360 4140 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll
15:53:16.0400 4140 SessionEnv - ok
15:53:16.0430 4140 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys
15:53:16.0450 4140 sffdisk - ok
15:53:16.0460 4140 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
15:53:16.0480 4140 sffp_mmc - ok
15:53:16.0480 4140 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
15:53:16.0500 4140 sffp_sd - ok
15:53:16.0530 4140 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
15:53:16.0550 4140 sfloppy - ok
15:53:16.0580 4140 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll
15:53:16.0630 4140 SharedAccess - ok
15:53:16.0680 4140 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
15:53:16.0750 4140 ShellHWDetection - ok
15:53:16.0770 4140 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
15:53:16.0780 4140 SiSRaid2 - ok
15:53:16.0790 4140 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
15:53:16.0810 4140 SiSRaid4 - ok
15:53:16.0850 4140 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
15:53:16.0860 4140 SkypeUpdate - ok
15:53:16.0890 4140 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys
15:53:16.0940 4140 Smb - ok
15:53:16.0971 4140 [ D48F87803F3965EE04D9BCB318791AAB ] SMR311 C:\windows\system32\drivers\SMR311.SYS
15:53:16.0981 4140 SMR311 - ok
15:53:17.0011 4140 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe
15:53:17.0031 4140 SNMPTRAP - ok
15:53:17.0041 4140 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys
15:53:17.0051 4140 spldr - ok
15:53:17.0091 4140 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe
15:53:17.0131 4140 Spooler - ok
15:53:17.0251 4140 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe
15:53:17.0341 4140 sppsvc - ok
15:53:17.0451 4140 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll
15:53:17.0511 4140 sppuinotify - ok
15:53:17.0611 4140 [ 3510E7021D2637A67FBCB5105EAE945D ] SRTSP C:\windows\System32\Drivers\N360x64\1402000.013\SRTSP64.SYS
15:53:17.0661 4140 SRTSP - ok
15:53:17.0681 4140 [ 1B884D876E87EABF5A3356BBD7321412 ] SRTSPX C:\windows\system32\drivers\N360x64\1402000.013\SRTSPX64.SYS
15:53:17.0691 4140 SRTSPX - ok
15:53:17.0721 4140 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys
15:53:17.0741 4140 srv - ok
15:53:17.0761 4140 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
15:53:17.0781 4140 srv2 - ok
15:53:17.0811 4140 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\windows\system32\DRIVERS\VSTAZL6.SYS
15:53:17.0831 4140 SrvHsfHDA - ok
15:53:17.0871 4140 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\windows\system32\DRIVERS\VSTDPV6.SYS
15:53:17.0901 4140 SrvHsfV92 - ok
15:53:17.0931 4140 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\windows\system32\DRIVERS\VSTCNXT6.SYS
15:53:17.0951 4140 SrvHsfWinac - ok
15:53:17.0981 4140 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
15:53:17.0991 4140 srvnet - ok
15:53:18.0021 4140 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
15:53:18.0061 4140 SSDPSRV - ok
15:53:18.0081 4140 [ 1100066057FBF612B573EFD3B21383F1 ] ssmirrdr C:\windows\system32\DRIVERS\ssmirrdr.sys
15:53:18.0091 4140 ssmirrdr - ok
15:53:18.0111 4140 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll
15:53:18.0161 4140 SstpSvc - ok
15:53:18.0181 4140 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
15:53:18.0201 4140 stexstor - ok
15:53:18.0221 4140 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\windows\system32\DRIVERS\serscan.sys
15:53:18.0231 4140 StillCam - ok
15:53:18.0311 4140 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll
15:53:18.0361 4140 stisvc - ok
15:53:18.0391 4140 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\drivers\swenum.sys
15:53:18.0401 4140 swenum - ok
15:53:18.0431 4140 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll
15:53:18.0481 4140 swprv - ok
15:53:18.0501 4140 [ 777217682DA76337E8E6EC8AC4412B9B ] SymDS C:\windows\system32\drivers\N360x64\1402000.013\SYMDS64.SYS
15:53:18.0521 4140 SymDS - ok
15:53:18.0581 4140 [ 64D1AF3D04E70A681154FFF1893848F6 ] SymEFA C:\windows\system32\drivers\N360x64\1402000.013\SYMEFA64.SYS
15:53:18.0631 4140 SymEFA - ok
15:53:18.0661 4140 [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] SymEvent C:\windows\system32\Drivers\SYMEVENT64x86.SYS
15:53:18.0681 4140 SymEvent - ok
15:53:18.0731 4140 [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON C:\windows\system32\drivers\N360x64\1402000.013\Ironx64.SYS
15:53:18.0741 4140 SymIRON - ok
15:53:18.0781 4140 [ 1605EBD8CB86AFC4430116065995279A ] SymNetS C:\windows\System32\Drivers\N360x64\1402000.013\SYMNETS.SYS
15:53:18.0801 4140 SymNetS - ok
15:53:18.0841 4140 [ 470C47DABA9CA3966F0AB3F835D7D135 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
15:53:18.0861 4140 SynTP - ok
15:53:18.0921 4140 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll
15:53:18.0961 4140 SysMain - ok
15:53:19.0001 4140 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
15:53:19.0021 4140 TabletInputService - ok
15:53:19.0041 4140 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll
15:53:19.0081 4140 TapiSrv - ok
15:53:19.0101 4140 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll
15:53:19.0141 4140 TBS - ok
15:53:19.0221 4140 [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip C:\windows\system32\drivers\tcpip.sys
15:53:19.0281 4140 Tcpip - ok
15:53:19.0311 4140 [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
15:53:19.0361 4140 TCPIP6 - ok
15:53:19.0381 4140 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
15:53:19.0401 4140 tcpipreg - ok
15:53:19.0431 4140 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys
15:53:19.0441 4140 tdcmdpst - ok
15:53:19.0461 4140 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
15:53:19.0471 4140 TDPIPE - ok
15:53:19.0501 4140 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
15:53:19.0511 4140 TDTCP - ok
15:53:19.0551 4140 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
15:53:19.0601 4140 tdx - ok
15:53:19.0641 4140 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\drivers\termdd.sys
15:53:19.0661 4140 TermDD - ok
15:53:19.0691 4140 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll
15:53:19.0741 4140 TermService - ok
15:53:19.0751 4140 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll
15:53:19.0771 4140 Themes - ok
15:53:19.0841 4140 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll
15:53:19.0911 4140 THREADORDER - ok
15:53:19.0962 4140 [ 28644B0523D64EFF2FC7312A2EE74B0A ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
15:53:19.0982 4140 TMachInfo - ok
15:53:20.0012 4140 [ ED32035BDFECED1AD66D459FD9CC1140 ] TODDSrv C:\Windows\system32\TODDSrv.exe
15:53:20.0032 4140 TODDSrv - ok
15:53:20.0092 4140 [ DB9719688C08F42705FEB3F6A0C98B91 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
15:53:20.0132 4140 TosCoSrv - ok
15:53:20.0182 4140 [ BAE96AD126F4EED4D361B092BA2E61FE ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe
15:53:20.0192 4140 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - warning
15:53:20.0192 4140 TOSHIBA eco Utility Service - detected UnsignedFile.Multi.Generic (1)
15:53:20.0242 4140 [ 74C2FA8C3765EE71A9C22182EC108457 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
15:53:20.0272 4140 TOSHIBA HDD SSD Alert Service - ok
15:53:20.0322 4140 [ 97687D094AA597DA366E1194B218CC6C ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
15:53:20.0352 4140 TPCHSrv - ok
15:53:20.0382 4140 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll
15:53:20.0422 4140 TrkWks - ok
15:53:20.0482 4140 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
15:53:20.0552 4140 TrustedInstaller - ok
15:53:20.0582 4140 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
15:53:20.0632 4140 tssecsrv - ok
15:53:20.0672 4140 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
15:53:20.0692 4140 TsUsbFlt - ok
15:53:20.0722 4140 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
15:53:20.0762 4140 tunnel - ok
15:53:20.0792 4140 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS
15:53:20.0802 4140 TVALZ - ok
15:53:20.0822 4140 [ 9C7191F4B2E49BFF47A6C1144B5923FA ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys
15:53:20.0842 4140 TVALZFL - ok
15:53:20.0872 4140 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
15:53:20.0882 4140 uagp35 - ok
15:53:20.0922 4140 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
15:53:20.0972 4140 udfs - ok
15:53:21.0012 4140 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe
15:53:21.0022 4140 UI0Detect - ok
15:53:21.0062 4140 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
15:53:21.0082 4140 uliagpkx - ok
15:53:21.0122 4140 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\drivers\umbus.sys
15:53:21.0142 4140 umbus - ok
15:53:21.0172 4140 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\DRIVERS\umpass.sys
15:53:21.0182 4140 UmPass - ok
15:53:21.0312 4140 [ 7466809E6DA561D60C2F1CE8EDE3C73F ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
15:53:21.0362 4140 UNS - ok
15:53:21.0392 4140 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll
15:53:21.0442 4140 upnphost - ok
15:53:21.0482 4140 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\windows\system32\Drivers\usbaapl64.sys
15:53:21.0492 4140 USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning
15:53:21.0492 4140 USBAAPL64 - detected UnsignedFile.Multi.Generic (1)
15:53:21.0532 4140 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
15:53:21.0542 4140 usbccgp - ok
15:53:21.0562 4140 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys
15:53:21.0582 4140 usbcir - ok
15:53:21.0592 4140 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys
15:53:21.0612 4140 usbehci - ok
15:53:21.0622 4140 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
15:53:21.0642 4140 usbhub - ok
15:53:21.0652 4140 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys
15:53:21.0672 4140 usbohci - ok
15:53:21.0702 4140 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
15:53:21.0722 4140 usbprint - ok
15:53:21.0752 4140 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
15:53:21.0772 4140 usbscan - ok
15:53:21.0782 4140 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
15:53:21.0792 4140 USBSTOR - ok
15:53:21.0822 4140 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys
15:53:21.0832 4140 usbuhci - ok
15:53:21.0852 4140 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
15:53:21.0872 4140 usbvideo - ok
15:53:21.0902 4140 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll
15:53:21.0942 4140 UxSms - ok
15:53:21.0962 4140 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe
15:53:21.0972 4140 VaultSvc - ok
15:53:21.0982 4140 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
15:53:22.0003 4140 vdrvroot - ok
15:53:22.0033 4140 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe
15:53:22.0083 4140 vds - ok
15:53:22.0103 4140 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys
15:53:22.0123 4140 vga - ok
15:53:22.0133 4140 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys
15:53:22.0183 4140 VgaSave - ok
15:53:22.0213 4140 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys
15:53:22.0253 4140 vhdmp - ok
15:53:22.0263 4140 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys
15:53:22.0283 4140 viaide - ok
15:53:22.0293 4140 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys
15:53:22.0313 4140 volmgr - ok
15:53:22.0353 4140 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys
15:53:22.0373 4140 volmgrx - ok
15:53:22.0393 4140 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\windows\system32\drivers\volsnap.sys
15:53:22.0413 4140 volsnap - ok
15:53:22.0443 4140 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
15:53:22.0463 4140 vsmraid - ok
15:53:22.0523 4140 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe
15:53:22.0583 4140 VSS - ok
15:53:22.0603 4140 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
15:53:22.0623 4140 vwifibus - ok
15:53:22.0643 4140 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
15:53:22.0663 4140 vwififlt - ok
15:53:22.0683 4140 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys
15:53:22.0703 4140 vwifimp - ok
15:53:22.0733 4140 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll
15:53:22.0783 4140 W32Time - ok
15:53:22.0803 4140 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
15:53:22.0813 4140 WacomPen - ok
15:53:22.0863 4140 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
15:53:22.0903 4140 WANARP - ok
15:53:22.0903 4140 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
15:53:22.0953 4140 Wanarpv6 - ok
15:53:23.0003 4140 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
15:53:23.0053 4140 WatAdminSvc - ok
15:53:23.0123 4140 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe
15:53:23.0153 4140 wbengine - ok
15:53:23.0183 4140 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
15:53:23.0203 4140 WbioSrvc - ok
15:53:23.0253 4140 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll
15:53:23.0303 4140 wcncsvc - ok
15:53:23.0323 4140 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
15:53:23.0343 4140 WcsPlugInService - ok
15:53:23.0363 4140 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\DRIVERS\wd.sys
15:53:23.0373 4140 Wd - ok
15:53:23.0413 4140 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
15:53:23.0443 4140 Wdf01000 - ok
15:53:23.0473 4140 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll
15:53:23.0503 4140 WdiServiceHost - ok
15:53:23.0503 4140 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll
15:53:23.0533 4140 WdiSystemHost - ok
15:53:23.0573 4140 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll
15:53:23.0613 4140 WebClient - ok
15:53:23.0633 4140 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll
15:53:23.0683 4140 Wecsvc - ok
15:53:23.0693 4140 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll
15:53:23.0743 4140 wercplsupport - ok
15:53:23.0773 4140 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll
15:53:23.0813 4140 WerSvc - ok
15:53:23.0843 4140 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
15:53:23.0883 4140 WfpLwf - ok
15:53:23.0903 4140 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys
15:53:23.0923 4140 WIMMount - ok
15:53:23.0933 4140 WinHttpAutoProxySvc - ok
15:53:23.0993 4140 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
15:53:24.0043 4140 Winmgmt - ok
15:53:24.0113 4140 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll
15:53:24.0183 4140 WinRM - ok
15:53:24.0223 4140 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
15:53:24.0233 4140 WinUsb - ok
15:53:24.0283 4140 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll
15:53:24.0313 4140 Wlansvc - ok
15:53:24.0373 4140 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
15:53:24.0383 4140 wlcrasvc - ok
15:53:24.0483 4140 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
15:53:24.0533 4140 wlidsvc - ok
15:53:24.0573 4140 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys
15:53:24.0593 4140 WmiAcpi - ok
15:53:24.0613 4140 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
15:53:24.0633 4140 wmiApSrv - ok
15:53:24.0673 4140 WMPNetworkSvc - ok
15:53:24.0693 4140 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll
15:53:24.0713 4140 WPCSvc - ok
15:53:24.0763 4140 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
15:53:24.0783 4140 WPDBusEnum - ok
15:53:24.0813 4140 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
15:53:24.0863 4140 ws2ifsl - ok
15:53:24.0873 4140 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\windows\System32\wscsvc.dll
15:53:24.0893 4140 wscsvc - ok
15:53:24.0893 4140 WSearch - ok
15:53:25.0003 4140 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\windows\system32\wuaueng.dll
15:53:25.0063 4140 wuauserv - ok
15:53:25.0093 4140 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys
15:53:25.0123 4140 WudfPf - ok
15:53:25.0173 4140 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
15:53:25.0183 4140 WUDFRd - ok
15:53:25.0223 4140 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll
15:53:25.0253 4140 wudfsvc - ok
15:53:25.0273 4140 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll
15:53:25.0293 4140 WwanSvc - ok
15:53:25.0363 4140 [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
15:53:25.0403 4140 YahooAUService - ok
15:53:25.0413 4140 ================ Scan global ===============================
15:53:25.0423 4140 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll
15:53:25.0463 4140 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
15:53:25.0473 4140 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
15:53:25.0503 4140 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll
15:53:25.0543 4140 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\windows\system32\services.exe
15:53:25.0543 4140 [Global] - ok
15:53:25.0543 4140 ================ Scan MBR ==================================
15:53:25.0553 4140 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0
15:53:25.0873 4140 \Device\Harddisk0\DR0 - ok
15:53:25.0873 4140 ================ Scan VBR ==================================
15:53:25.0893 4140 [ 0C80E75223AD68866696B5837DF22CAC ] \Device\Harddisk0\DR0\Partition1
15:53:25.0903 4140 \Device\Harddisk0\DR0\Partition1 - ok
15:53:25.0903 4140 ============================================================
15:53:25.0903 4140 Scan finished
15:53:25.0903 4140 ============================================================
15:53:25.0923 5488 Detected object count: 7
15:53:25.0923 5488 Actual detected object count: 7
15:54:15.0730 5488 BrSerIb ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0730 5488 BrSerIb ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0730 5488 BrUsbSIb ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0730 5488 BrUsbSIb ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0740 5488 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0740 5488 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0740 5488 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0740 5488 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0740 5488 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0740 5488 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0750 5488 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0750 5488 TOSHIBA eco Utility Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:54:15.0750 5488 USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user
15:54:15.0750 5488 USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip

#6 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 04:07 PM

Yes, I'm still being re-directed. :/

Here's the scan log for step 2:

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2012-11-17 16:04:02
-----------------------------
16:04:02.072 OS Version: Windows x64 6.1.7601 Service Pack 1
16:04:02.072 Number of processors: 2 586 0x2505
16:04:02.072 ComputerName: ACOLEMAN-PC UserName: Temp
16:04:03.732 Initialize success
16:04:27.729 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
16:04:27.729 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
16:04:27.749 Disk 0 MBR read successfully
16:04:27.749 Disk 0 MBR scan
16:04:27.749 Disk 0 Windows VISTA default MBR code
16:04:27.799 Disk 0 Partition 1 80 (A) 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048
16:04:27.809 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 463437 MB offset 3074048
16:04:27.849 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 12002 MB offset 952193024
16:04:27.889 Disk 0 scanning C:\windows\system32\drivers
16:04:36.300 Service scanning
16:05:04.077 Modules scanning
16:05:04.077 Disk 0 trace - called modules:
16:05:04.097 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
16:05:04.107 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004b7e060]
16:05:04.107 3 CLASSPNP.SYS[fffff88001d5643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80049f3050]
16:05:04.117 Scan finished successfully
16:05:23.059 Disk 0 MBR has been saved successfully to "C:\Users\Temp\Desktop\MBR.dat"
16:05:23.059 The log file has been saved successfully to "C:\Users\Temp\Desktop\aswMBR.txt"

#7 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:06:39 AM

Posted 17 November 2012 - 04:23 PM

Hi again,

A quick question first, are you being redirected with other browsers as well, or just one browser?

You will need the use of a removable USB device for the next instructions:

  • Download ListParts64 to a USB flash drive.
  • Plug the USB drive into the infected machine.

Boot your computer into Recovery Environment

  • Restart the computer and press F8 repeatedly until the Advanced Options Menu appears.
  • Select Repair your computer.
  • Select Language and click Next
  • Enter password (if necessary) and click OK, you should now see the screen below ...

Posted Image

  • Select the Command Prompt option.
  • A command window will open.
  • Type notepad then hit Enter.
  • Notepad will open.
  • Click File > Open then select Computer.
  • Note down the drive letter for your USB Drive.
  • Close Notepad.
[*]Back in the command window ....
  • Type e:\listparts64.exe and hit Enter (where e: is replaced by the drive letter for your USB drive)
  • ListParts will start to run.
  • Press the Scan button.
  • When finished scanning it will make a log Result.txt on the flash drive.
[*]Close the command window.
[*]Boot back into normal mode and post me the Result.txt log please.
[/list]
bloopie

#8 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 05:12 PM

OK, one sec and I'm being redirected to several different sites. One looks like a site to purchase Norton Anti-virus, a recipe website, one that looks like what comes up when you go to a website that is no longer active.

#9 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 05:18 PM

How do I download it onto a flash drive without plugging it into my computer to do it?

#10 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:06:39 AM

Posted 17 November 2012 - 05:23 PM

Hi,

You may use any computer to download the file, even the one we're trying to fix. Plug in the USB, download the file to the USB, then reboot into the Recovery Environment as described above.

Let me know if you have any problems!

bloopie

#11 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 05:26 PM

OK, cool thanks! Brb.

#12 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 06:20 PM

So, I was able to restart but when I type in the f:\listparts64.exe is says "This unit is not ready". Is there something else that I should be doing??

#13 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 17 November 2012 - 06:48 PM

Actually it says "...is not recognized as an internal or external command, operable program or batch file."

#14 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:06:39 AM

Posted 17 November 2012 - 10:40 PM

Hi again,

I'm being redirected to several different sites. One looks like a site to purchase Norton Anti-virus, a recipe website, one that looks like what comes up when you go to a website that is no longer active.


I was asking if you're being redirected with other browsers. Do you get redirected with Internet Explorer as well as Firefox? Or Chrome too?

Are you sure you have the drive letter and syntax corret? You should be able to run ListParts from the command prompt with the correct syntax.

bloopie

#15 acole95

acole95
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 18 November 2012 - 01:02 AM

I've only tried Firefox. I don't use any other browsers after issues with IE, and have never had Chrome. My Computer says that my flash drive is F: and after I got the error message I tried it with G: as well and got the "...not ready" message.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users