Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected with Yahoo Spigot redirect.


  • Please log in to reply
6 replies to this topic

#1 morbidbattlecry

morbidbattlecry

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:42 PM

Posted 18 November 2012 - 01:24 PM

Got the spigot yahoo redirect from You tube downloader. Redirects happen to Google Chrome and IE. I've uninstalled YTD and the spigot toolbar(can't remember what it was). But i'm still getting redirects. Ran various programs with not help. Running windows Vista. Thanks.

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:06:42 PM

Posted 18 November 2012 - 01:25 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here.If you get crashes in normal mode,run it in safemode with networking

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 morbidbattlecry

morbidbattlecry
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:42 PM

Posted 19 November 2012 - 04:19 PM

18:14:49.0599 5092 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
18:14:50.0033 5092 ============================================================
18:14:50.0034 5092 Current date / time: 2012/11/18 18:14:50.0033
18:14:50.0034 5092 SystemInfo:
18:14:50.0034 5092
18:14:50.0034 5092 OS Version: 6.0.6002 ServicePack: 2.0
18:14:50.0034 5092 Product type: Workstation
18:14:50.0034 5092 ComputerName: ANRAE-PC
18:14:50.0034 5092 UserName: Anrae
18:14:50.0034 5092 Windows directory: C:\Windows
18:14:50.0034 5092 System windows directory: C:\Windows
18:14:50.0034 5092 Processor architecture: Intel x86
18:14:50.0034 5092 Number of processors: 1
18:14:50.0034 5092 Page size: 0x1000
18:14:50.0034 5092 Boot type: Normal boot
18:14:50.0034 5092 ============================================================
18:14:52.0586 5092 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
18:14:52.0609 5092 ============================================================
18:14:52.0609 5092 \Device\Harddisk0\DR0:
18:14:52.0609 5092 MBR partitions:
18:14:52.0609 5092 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0xDCA6000
18:14:52.0609 5092 ============================================================
18:14:52.0678 5092 C: <-> \Device\Harddisk0\DR0\Partition1
18:14:52.0715 5092 ============================================================
18:14:52.0715 5092 Initialize success
18:14:52.0715 5092 ============================================================
18:15:06.0515 4016 ============================================================
18:15:06.0515 4016 Scan started
18:15:06.0515 4016 Mode: Manual; TDLFS;
18:15:06.0515 4016 ============================================================
18:15:07.0633 4016 ================ Scan system memory ========================
18:15:07.0633 4016 System memory - ok
18:15:07.0637 4016 ================ Scan services =============================
18:15:07.0855 4016 [ 35F57598F0589FEB3C3ABC1621BF329F ] ACDaemon C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
18:15:07.0858 4016 ACDaemon - ok
18:15:08.0048 4016 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys
18:15:08.0053 4016 ACPI - ok
18:15:08.0147 4016 [ D9881575C4166AE3A92118ECC217B079 ] ADExchange C:\Program Files\Common Files\ArcSoft\esinter\Bin\eservutil.exe
18:15:08.0149 4016 ADExchange - ok
18:15:08.0282 4016 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
18:15:08.0284 4016 AdobeFlashPlayerUpdateSvc - ok
18:15:08.0368 4016 [ 04F0FCAC69C7C71A3AC4EB97FAFC8303 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
18:15:08.0381 4016 adp94xx - ok
18:15:08.0410 4016 [ 60505E0041F7751BDBB80F88BF45C2CE ] adpahci C:\Windows\system32\drivers\adpahci.sys
18:15:08.0416 4016 adpahci - ok
18:15:08.0440 4016 [ 8A42779B02AEC986EAB64ECFC98F8BD7 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
18:15:08.0444 4016 adpu160m - ok
18:15:08.0474 4016 [ 241C9E37F8CE45EF51C3DE27515CA4E5 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
18:15:08.0478 4016 adpu320 - ok
18:15:08.0550 4016 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
18:15:08.0551 4016 AeLookupSvc - ok
18:15:08.0633 4016 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys
18:15:08.0640 4016 AFD - ok
18:15:08.0747 4016 [ 39E435C90C9C4F780FA0ED05CA3C3A1B ] AgereModemAudio C:\Windows\system32\agrsmsvc.exe
18:15:08.0748 4016 AgereModemAudio - ok
18:15:08.0853 4016 [ CE91B158FA490CF4C4D487A4130F4660 ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
18:15:08.0880 4016 AgereSoftModem - ok
18:15:08.0946 4016 [ 13F9E33747E6B41A3FF305C37DB0D360 ] agp440 C:\Windows\system32\drivers\agp440.sys
18:15:08.0949 4016 agp440 - ok
18:15:09.0108 4016 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys
18:15:09.0263 4016 aic78xx - ok
18:15:09.0311 4016 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe
18:15:09.0313 4016 ALG - ok
18:15:09.0342 4016 [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91 ] aliide C:\Windows\system32\drivers\aliide.sys
18:15:09.0344 4016 aliide - ok
18:15:09.0480 4016 [ C47344BC706E5F0B9DCE369516661578 ] amdagp C:\Windows\system32\drivers\amdagp.sys
18:15:09.0483 4016 amdagp - ok
18:15:09.0525 4016 [ 9B78A39A4C173FDBC1321E0DD659B34C ] amdide C:\Windows\system32\drivers\amdide.sys
18:15:09.0527 4016 amdide - ok
18:15:09.0614 4016 [ 18F29B49AD23ECEE3D2A826C725C8D48 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
18:15:09.0616 4016 AmdK7 - ok
18:15:09.0659 4016 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
18:15:09.0662 4016 AmdK8 - ok
18:15:09.0780 4016 [ 7C2F57BCE81FA74933F0E1C84A97C9DB ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys
18:15:09.0784 4016 ApfiltrService - ok
18:15:09.0898 4016 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll
18:15:09.0900 4016 Appinfo - ok
18:15:10.0032 4016 [ 7EF47644B74EBE721CC32211D3C35E76 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:15:10.0034 4016 Apple Mobile Device - ok
18:15:10.0184 4016 [ 5D2888182FB46632511ACEE92FDAD522 ] arc C:\Windows\system32\drivers\arc.sys
18:15:10.0187 4016 arc - ok
18:15:10.0296 4016 [ 5E2A321BD7C8B3624E41FDEC3E244945 ] arcsas C:\Windows\system32\drivers\arcsas.sys
18:15:10.0303 4016 arcsas - ok
18:15:10.0345 4016 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
18:15:10.0346 4016 AsyncMac - ok
18:15:10.0412 4016 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys
18:15:10.0413 4016 atapi - ok
18:15:10.0505 4016 [ 40767B965A8D575D794F1F95E2E017E9 ] atashost C:\Windows\system32\atashost.exe
18:15:10.0506 4016 atashost - ok
18:15:10.0689 4016 [ 8BE56F8300E1C37B578DA23C71816B7A ] athr C:\Windows\system32\DRIVERS\athr.sys
18:15:10.0709 4016 athr - ok
18:15:10.0848 4016 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:15:10.0855 4016 AudioEndpointBuilder - ok
18:15:10.0910 4016 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll
18:15:10.0914 4016 Audiosrv - ok
18:15:11.0303 4016 [ A2494901E7226B356B8C1005C45F1C5F ] BBSvc C:\Program Files\Microsoft\BingBar\7.1.361.0\BBSvc.exe
18:15:11.0307 4016 BBSvc - ok
18:15:11.0395 4016 [ 63B1CBBAE4790B5BAC98F01BF9449722 ] BBUpdate C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.exe
18:15:11.0399 4016 BBUpdate - ok
18:15:11.0507 4016 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys
18:15:11.0509 4016 Beep - ok
18:15:11.0739 4016 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll
18:15:11.0752 4016 BFE - ok
18:15:11.0855 4016 [ ACC9C8C560C567FAD6F79C977AB2EA09 ] bgsvcgen C:\Windows\System32\bgsvcgen.exe
18:15:11.0859 4016 bgsvcgen - ok
18:15:12.0045 4016 BITCOMET_HELPER_SERVICE - ok
18:15:12.0183 4016 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\system32\qmgr.dll
18:15:12.0200 4016 BITS - ok
18:15:12.0252 4016 [ D4DF28447741FD3D953526E33A617397 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
18:15:12.0257 4016 blbdrive - ok
18:15:12.0987 4016 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:15:12.0990 4016 Bonjour Service - ok
18:15:13.0098 4016 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys
18:15:13.0100 4016 bowser - ok
18:15:13.0200 4016 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
18:15:13.0202 4016 BrFiltLo - ok
18:15:13.0265 4016 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
18:15:13.0266 4016 BrFiltUp - ok
18:15:13.0372 4016 [ B1564976D98E91FC764D5DC28A0297DA ] Bridge C:\Windows\system32\DRIVERS\bridge.sys
18:15:13.0375 4016 Bridge - ok
18:15:13.0443 4016 [ B1564976D98E91FC764D5DC28A0297DA ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
18:15:13.0444 4016 BridgeMP - ok
18:15:13.0517 4016 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll
18:15:13.0519 4016 Browser - ok
18:15:13.0607 4016 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys
18:15:13.0611 4016 Brserid - ok
18:15:13.0664 4016 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
18:15:13.0674 4016 BrSerWdm - ok
18:15:13.0742 4016 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
18:15:13.0922 4016 BrUsbMdm - ok
18:15:14.0062 4016 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
18:15:14.0064 4016 BrUsbSer - ok
18:15:14.0172 4016 [ 4813DF77EDE536A52E3737971F910BAA ] BTCFilterService C:\Windows\system32\DRIVERS\motfilt.sys
18:15:14.0173 4016 BTCFilterService - ok
18:15:14.0240 4016 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
18:15:14.0242 4016 BTHMODEM - ok
18:15:14.0519 4016 catchme - ok
18:15:14.0598 4016 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
18:15:14.0601 4016 cdfs - ok
18:15:14.0674 4016 [ C3E76B0C05EBF7261ABFB08D9E75822E ] Cdr4_xp C:\Windows\system32\drivers\Cdr4_xp.sys
18:15:14.0675 4016 Cdr4_xp - ok
18:15:14.0777 4016 [ 17590DFE29E02842A6E3A463E443D1B9 ] Cdralw2k C:\Windows\system32\drivers\Cdralw2k.sys
18:15:14.0778 4016 Cdralw2k - ok
18:15:14.0876 4016 [ E0042BD5BEF17A6A3EF1DF576BDE24D1 ] cdrbsdrv C:\Windows\system32\drivers\cdrbsdrv.sys
18:15:14.0878 4016 cdrbsdrv - ok
18:15:14.0962 4016 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
18:15:14.0965 4016 cdrom - ok
18:15:15.0063 4016 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll
18:15:15.0064 4016 CertPropSvc - ok
18:15:15.0138 4016 [ E5D4133F37219DBCFE102BC61072589D ] circlass C:\Windows\system32\drivers\circlass.sys
18:15:15.0140 4016 circlass - ok
18:15:15.0197 4016 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys
18:15:15.0203 4016 CLFS - ok
18:15:15.0368 4016 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:15:15.0371 4016 clr_optimization_v2.0.50727_32 - ok
18:15:15.0500 4016 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:15:15.0504 4016 clr_optimization_v4.0.30319_32 - ok
18:15:15.0585 4016 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
18:15:15.0586 4016 CmBatt - ok
18:15:15.0640 4016 [ 0CA25E686A4928484E9FDABD168AB629 ] cmdide C:\Windows\system32\drivers\cmdide.sys
18:15:15.0642 4016 cmdide - ok
18:15:15.0771 4016 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
18:15:15.0773 4016 Compbatt - ok
18:15:15.0819 4016 COMSysApp - ok
18:15:15.0939 4016 [ 596E452B5152EC9AFE8153D296459D2B ] ConfigFree Service C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
18:15:15.0940 4016 ConfigFree Service - ok
18:15:15.0994 4016 cpuz132 - ok
18:15:16.0040 4016 [ 741E9DFF4F42D2D8477D0FC1DC0DF871 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
18:15:16.0042 4016 crcdisk - ok
18:15:16.0070 4016 [ 1F07BECDCA750766A96CDA811BA86410 ] Crusoe C:\Windows\system32\drivers\crusoe.sys
18:15:16.0072 4016 Crusoe - ok
18:15:16.0182 4016 [ F1E8C34892336D33EDDCDFE44E474F64 ] CryptSvc C:\Windows\system32\cryptsvc.dll
18:15:16.0186 4016 CryptSvc - ok
18:15:16.0335 4016 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll
18:15:16.0349 4016 DcomLaunch - ok
18:15:16.0417 4016 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys
18:15:16.0420 4016 DfsC - ok
18:15:16.0618 4016 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe
18:15:16.0666 4016 DFSR - ok
18:15:16.0768 4016 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll
18:15:16.0770 4016 Dhcp - ok
18:15:16.0849 4016 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys
18:15:16.0852 4016 disk - ok
18:15:16.0930 4016 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll
18:15:16.0933 4016 Dnscache - ok
18:15:16.0980 4016 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll
18:15:16.0985 4016 dot3svc - ok
18:15:17.0086 4016 [ 4F59C172C094E1A1D46463A8DC061CBD ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
18:15:17.0090 4016 Dot4 - ok
18:15:17.0162 4016 [ 80BF3BA09F6F2523C8F6B7CC6DBF7BD5 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
18:15:17.0163 4016 Dot4Print - ok
18:15:17.0191 4016 [ C55004CA6B419B6695970DFE849B122F ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
18:15:17.0193 4016 dot4usb - ok
18:15:17.0263 4016 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll
18:15:17.0267 4016 DPS - ok
18:15:17.0354 4016 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
18:15:17.0356 4016 drmkaud - ok
18:15:17.0442 4016 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
18:15:17.0456 4016 DXGKrnl - ok
18:15:17.0540 4016 [ 5425F74AC0C1DBD96A1E04F17D63F94C ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
18:15:17.0544 4016 E1G60 - ok
18:15:17.0611 4016 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll
18:15:17.0613 4016 EapHost - ok
18:15:18.0002 4016 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys
18:15:18.0091 4016 Ecache - ok
18:15:18.0223 4016 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
18:15:18.0229 4016 ehRecvr - ok
18:15:18.0277 4016 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe
18:15:18.0281 4016 ehSched - ok
18:15:18.0316 4016 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll
18:15:18.0317 4016 ehstart - ok
18:15:18.0427 4016 [ 23B62471681A124889978F6295B3F4C6 ] elxstor C:\Windows\system32\drivers\elxstor.sys
18:15:18.0435 4016 elxstor - ok
18:15:18.0510 4016 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
18:15:18.0523 4016 EMDMgmt - ok
18:15:18.0586 4016 [ 3DB974F3935483555D7148663F726C61 ] ErrDev C:\Windows\system32\drivers\errdev.sys
18:15:18.0587 4016 ErrDev - ok
18:15:18.0648 4016 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll
18:15:18.0650 4016 EventSystem - ok
18:15:18.0740 4016 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys
18:15:18.0744 4016 exfat - ok
18:15:18.0797 4016 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys
18:15:18.0801 4016 fastfat - ok
18:15:18.0880 4016 [ AFE1E8B9782A0DD7FB46BBD88E43F89A ] fdc C:\Windows\system32\DRIVERS\fdc.sys
18:15:18.0882 4016 fdc - ok
18:15:18.0964 4016 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll
18:15:18.0966 4016 fdPHost - ok
18:15:19.0005 4016 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll
18:15:19.0007 4016 FDResPub - ok
18:15:19.0065 4016 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
18:15:19.0067 4016 FileInfo - ok
18:15:19.0088 4016 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys
18:15:19.0091 4016 Filetrace - ok
18:15:19.0120 4016 [ 85B7CF99D532820495D68D747FDA9EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
18:15:19.0122 4016 flpydisk - ok
18:15:19.0178 4016 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
18:15:19.0182 4016 FltMgr - ok
18:15:19.0284 4016 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll
18:15:19.0300 4016 FontCache - ok
18:15:19.0401 4016 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
18:15:19.0403 4016 FontCache3.0.0.0 - ok
18:15:19.0440 4016 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
18:15:19.0442 4016 Fs_Rec - ok
18:15:19.0493 4016 [ 34582A6E6573D54A07ECE5FE24A126B5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
18:15:19.0648 4016 gagp30kx - ok
18:15:20.0324 4016 [ 01A5829DD261B4F3DD66D7E9F9B973F5 ] GameConsoleService C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe
18:15:20.0329 4016 GameConsoleService - ok
18:15:20.0415 4016 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\Windows\system32\Drivers\GEARAspiWDM.sys
18:15:20.0417 4016 GEARAspiWDM - ok
18:15:20.0466 4016 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll
18:15:20.0478 4016 gpsvc - ok
18:15:20.0611 4016 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
18:15:20.0613 4016 gupdate - ok
18:15:20.0651 4016 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
18:15:20.0652 4016 gupdatem - ok
18:15:20.0751 4016 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
18:15:20.0756 4016 gusvc - ok
18:15:20.0836 4016 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:15:20.0842 4016 HdAudAddService - ok
18:15:20.0894 4016 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
18:15:20.0905 4016 HDAudBus - ok
18:15:20.0935 4016 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys
18:15:20.0937 4016 HidBth - ok
18:15:20.0993 4016 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys
18:15:20.0995 4016 HidIr - ok
18:15:21.0067 4016 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\System32\hidserv.dll
18:15:21.0069 4016 hidserv - ok
18:15:21.0117 4016 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
18:15:21.0118 4016 HidUsb - ok
18:15:21.0163 4016 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll
18:15:21.0166 4016 hkmsvc - ok
18:15:21.0197 4016 [ 16EE7B23A009E00D835CDB79574A91A6 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
18:15:21.0199 4016 HpCISSs - ok
18:15:21.0402 4016 [ 5DA42D24712E00728CEA2342A65009B2 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
18:15:21.0408 4016 hpqcxs08 - ok
18:15:21.0438 4016 [ D86A39BF100069444D026D22D9A6E555 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
18:15:21.0441 4016 hpqddsvc - ok
18:15:21.0500 4016 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys
18:15:21.0509 4016 HTTP - ok
18:15:21.0554 4016 [ C6B032D69650985468160FC9937CF5B4 ] i2omp C:\Windows\system32\drivers\i2omp.sys
18:15:21.0556 4016 i2omp - ok
18:15:21.0627 4016 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
18:15:21.0628 4016 i8042prt - ok
18:15:21.0669 4016 [ 54155EA1B0DF185878E0FC9EC3AC3A14 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
18:15:21.0681 4016 iaStorV - ok
18:15:21.0782 4016 [ DAF66902F08796F9C694901660E5A64A ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
18:15:21.0785 4016 IDriverT - ok
18:15:21.0952 4016 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
18:15:21.0969 4016 idsvc - ok
18:15:22.0108 4016 [ 62F534791AE488A475A3E508D92AF4CC ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
18:15:22.0156 4016 igfx - ok
18:15:22.0194 4016 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys
18:15:22.0196 4016 iirsp - ok
18:15:22.0249 4016 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll
18:15:22.0259 4016 IKEEXT - ok
18:15:22.0393 4016 [ 8A4341616976E47712B60F18C7049DCC ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
18:15:22.0459 4016 IntcAzAudAddService - ok
18:15:22.0533 4016 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys
18:15:22.0534 4016 intelide - ok
18:15:22.0569 4016 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
18:15:22.0571 4016 intelppm - ok
18:15:22.0649 4016 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
18:15:22.0652 4016 IPBusEnum - ok
18:15:22.0686 4016 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:15:22.0688 4016 IpFilterDriver - ok
18:15:22.0747 4016 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
18:15:22.0753 4016 iphlpsvc - ok
18:15:22.0778 4016 IpInIp - ok
18:15:22.0815 4016 [ B25AAF203552B7B3491139D582B39AD1 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
18:15:22.0832 4016 IPMIDRV - ok
18:15:22.0887 4016 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
18:15:22.0890 4016 IPNAT - ok
18:15:23.0028 4016 [ 57EDB35EA2FECA88F8B17C0C095C9A56 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
18:15:23.0035 4016 iPod Service - ok
18:15:23.0072 4016 iPodDrv - ok
18:15:23.0111 4016 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
18:15:23.0112 4016 IRENUM - ok
18:15:23.0137 4016 [ 6C70698A3E5C4376C6AB5C7C17FB0614 ] isapnp C:\Windows\system32\drivers\isapnp.sys
18:15:23.0154 4016 isapnp - ok
18:15:23.0195 4016 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
18:15:23.0199 4016 iScsiPrt - ok
18:15:23.0226 4016 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
18:15:23.0229 4016 iteatapi - ok
18:15:23.0258 4016 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys
18:15:23.0260 4016 iteraid - ok
18:15:23.0386 4016 [ 723BA0AEC942E91C0A9CE146E73DECEB ] jswpsapi C:\Program Files\Jumpstart\jswpsapi.exe
18:15:23.0405 4016 jswpsapi - ok
18:15:23.0441 4016 [ 7E72514A3A1C5A9F3BFF0660B3866C2B ] jswpslwf C:\Windows\system32\DRIVERS\jswpslwf.sys
18:15:23.0442 4016 jswpslwf - ok
18:15:23.0494 4016 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
18:15:23.0496 4016 kbdclass - ok
18:15:23.0520 4016 [ 18247836959BA67E3511B62846B9C2E0 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
18:15:23.0522 4016 kbdhid - ok
18:15:23.0584 4016 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe
18:15:23.0586 4016 KeyIso - ok
18:15:23.0681 4016 [ E8CA038F51F7761BD6E3A3B0B8014263 ] KR10I C:\Windows\system32\drivers\kr10i.sys
18:15:23.0687 4016 KR10I - ok
18:15:23.0723 4016 [ 6A4ADB9186DD0E114E623DAF57E42B31 ] KR10N C:\Windows\system32\drivers\kr10n.sys
18:15:23.0729 4016 KR10N - ok
18:15:23.0792 4016 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
18:15:23.0802 4016 KSecDD - ok
18:15:23.0884 4016 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll
18:15:23.0892 4016 KtmRm - ok
18:15:23.0948 4016 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\System32\srvsvc.dll
18:15:23.0953 4016 LanmanServer - ok
18:15:24.0037 4016 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:15:24.0043 4016 LanmanWorkstation - ok
18:15:24.0193 4016 [ 61323B88EFE90F6B144A3611B3ED1D7D ] Lavasoft Ad-Aware Service C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
18:15:24.0228 4016 Lavasoft Ad-Aware Service - ok
18:15:24.0276 4016 [ 6C4A3804510AD8E0F0C07B5BE3D44DDB ] Lavasoft Kernexplorer C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys
18:15:24.0278 4016 Lavasoft Kernexplorer - ok
18:15:24.0393 4016 [ 336ABE8721CBC3110F1C6426DA633417 ] Lbd C:\Windows\system32\DRIVERS\Lbd.sys
18:15:24.0395 4016 Lbd - ok
18:15:24.0445 4016 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
18:15:24.0447 4016 lltdio - ok
18:15:24.0497 4016 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll
18:15:24.0503 4016 lltdsvc - ok
18:15:24.0530 4016 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll
18:15:24.0533 4016 lmhosts - ok
18:15:24.0619 4016 [ 515FC18CABEE0158A324B08B1C2667CF ] LPCFilter C:\Windows\system32\DRIVERS\LPCFilter.sys
18:15:24.0621 4016 LPCFilter - ok
18:15:24.0663 4016 [ C7E15E82879BF3235B559563D4185365 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
18:15:24.0666 4016 LSI_FC - ok
18:15:24.0686 4016 [ EE01EBAE8C9BF0FA072E0FF68718920A ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
18:15:24.0700 4016 LSI_SAS - ok
18:15:24.0738 4016 [ 912A04696E9CA30146A62AFA1463DD5C ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
18:15:24.0741 4016 LSI_SCSI - ok
18:15:24.0776 4016 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys
18:15:24.0779 4016 luafv - ok
18:15:24.0824 4016 MCSTRM - ok
18:15:24.0932 4016 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
18:15:24.0934 4016 Mcx2Svc - ok
18:15:24.0984 4016 [ 0001CE609D66632FA17B84705F658879 ] megasas C:\Windows\system32\drivers\megasas.sys
18:15:24.0986 4016 megasas - ok
18:15:25.0017 4016 [ C252F32CD9A49DBFC25ECF26EBD51A99 ] MegaSR C:\Windows\system32\drivers\megasr.sys
18:15:25.0027 4016 MegaSR - ok
18:15:25.0135 4016 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
18:15:25.0138 4016 Microsoft Office Groove Audit Service - ok
18:15:25.0192 4016 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll
18:15:25.0195 4016 MMCSS - ok
18:15:25.0261 4016 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys
18:15:25.0306 4016 Modem - ok
18:15:25.0399 4016 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
18:15:25.0499 4016 monitor - ok
18:15:25.0607 4016 [ C741717B0A18813DD7D12085937CEE72 ] motccgp C:\Windows\system32\DRIVERS\motccgp.sys
18:15:25.0609 4016 motccgp - ok
18:15:25.0663 4016 [ B812DA6605CAF02641312F1F65C75419 ] motccgpfl C:\Windows\system32\DRIVERS\motccgpfl.sys
18:15:25.0664 4016 motccgpfl - ok
18:15:25.0716 4016 [ 54FEE02961C70FD9D4D7E2F87AFA23FA ] motmodem C:\Windows\system32\DRIVERS\motmodem.sys
18:15:25.0717 4016 motmodem - ok
18:15:25.0753 4016 [ 9B2923C59D49672D1205C391A1296525 ] MotoConnect Service C:\Program Files\Motorola\MotoConnectService\MotoConnectService.exe
18:15:25.0756 4016 MotoConnect Service - ok
18:15:25.0780 4016 [ FD8C2CEF7AD8B23C6714103D621FAC1F ] MotoSwitchService C:\Windows\system32\DRIVERS\motswch.sys
18:15:25.0781 4016 MotoSwitchService - ok
18:15:25.0856 4016 [ DDC489D40B49F443787E7FFA75373522 ] Motousbnet C:\Windows\system32\DRIVERS\Motousbnet.sys
18:15:25.0857 4016 Motousbnet - ok
18:15:25.0910 4016 [ 2136CCA3D1BF7C0248E5366B1A6C24E3 ] motusbdevice C:\Windows\system32\DRIVERS\motusbdevice.sys
18:15:25.0911 4016 motusbdevice - ok
18:15:25.0972 4016 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
18:15:25.0974 4016 mouclass - ok
18:15:26.0042 4016 [ BAA4ED3C323BEE7EBC144C7D232220A8 ] moufiltr C:\Windows\system32\DRIVERS\moufiltr.sys
18:15:26.0043 4016 moufiltr - ok
18:15:26.0083 4016 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
18:15:26.0085 4016 mouhid - ok
18:15:26.0116 4016 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
18:15:26.0118 4016 MountMgr - ok
18:15:26.0185 4016 [ 511D011289755DD9F9A7579FB0B064E6 ] mpio C:\Windows\system32\drivers\mpio.sys
18:15:26.0189 4016 mpio - ok
18:15:26.0244 4016 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
18:15:26.0246 4016 mpsdrv - ok
18:15:26.0298 4016 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll
18:15:26.0308 4016 MpsSvc - ok
18:15:26.0353 4016 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
18:15:26.0355 4016 Mraid35x - ok
18:15:26.0405 4016 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
18:15:26.0409 4016 MRxDAV - ok
18:15:26.0469 4016 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
18:15:26.0472 4016 mrxsmb - ok
18:15:26.0532 4016 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:15:26.0537 4016 mrxsmb10 - ok
18:15:26.0569 4016 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:15:26.0572 4016 mrxsmb20 - ok
18:15:26.0604 4016 [ 5457DCFA7C0DA43522F4D9D4049C1472 ] msahci C:\Windows\system32\drivers\msahci.sys
18:15:26.0606 4016 msahci - ok
18:15:26.0637 4016 [ 4468B0F385A86ECDDAF8D3CA662EC0E7 ] msdsm C:\Windows\system32\drivers\msdsm.sys
18:15:26.0656 4016 msdsm - ok
18:15:26.0686 4016 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe
18:15:26.0694 4016 MSDTC - ok
18:15:26.0731 4016 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys
18:15:26.0733 4016 Msfs - ok
18:15:26.0795 4016 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
18:15:26.0797 4016 msisadrv - ok
18:15:26.0894 4016 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
18:15:26.0899 4016 MSiSCSI - ok
18:15:26.0910 4016 msiserver - ok
18:15:26.0978 4016 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
18:15:26.0988 4016 MSKSSRV - ok
18:15:27.0070 4016 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
18:15:27.0071 4016 MSPCLOCK - ok
18:15:27.0099 4016 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
18:15:27.0101 4016 MSPQM - ok
18:15:27.0153 4016 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
18:15:27.0157 4016 MsRPC - ok
18:15:27.0193 4016 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
18:15:27.0195 4016 mssmbios - ok
18:15:27.0225 4016 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
18:15:27.0226 4016 MSTEE - ok
18:15:27.0320 4016 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys
18:15:27.0322 4016 Mup - ok
18:15:27.0366 4016 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll
18:15:27.0374 4016 napagent - ok
18:15:27.0453 4016 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
18:15:27.0460 4016 NativeWifiP - ok
18:15:27.0543 4016 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys
18:15:27.0555 4016 NDIS - ok
18:15:27.0634 4016 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
18:15:27.0636 4016 NdisTapi - ok
18:15:27.0675 4016 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
18:15:27.0676 4016 Ndisuio - ok
18:15:27.0771 4016 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
18:15:27.0793 4016 NdisWan - ok
18:15:27.0826 4016 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
18:15:27.0828 4016 NDProxy - ok
18:15:27.0900 4016 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
18:15:27.0903 4016 Net Driver HPZ12 - ok
18:15:27.0928 4016 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
18:15:27.0945 4016 NetBIOS - ok
18:15:27.0986 4016 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys
18:15:27.0991 4016 netbt - ok
18:15:28.0017 4016 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe
18:15:28.0019 4016 Netlogon - ok
18:15:28.0062 4016 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll
18:15:28.0070 4016 Netman - ok
18:15:28.0102 4016 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll
18:15:28.0109 4016 netprofm - ok
18:15:28.0158 4016 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
18:15:28.0161 4016 NetTcpPortSharing - ok
18:15:28.0294 4016 [ 35D5458D9A1B26B2005ABFFBF4C1C5E7 ] NETw3v32 C:\Windows\system32\DRIVERS\NETw3v32.sys
18:15:28.0340 4016 NETw3v32 - ok
18:15:28.0383 4016 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
18:15:28.0386 4016 nfrd960 - ok
18:15:28.0426 4016 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll
18:15:28.0431 4016 NlaSvc - ok
18:15:28.0529 4016 [ CD569FA91EC6F59D045C19D0D3850F44 ] nmservice C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
18:15:28.0544 4016 nmservice - ok
18:15:28.0587 4016 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys
18:15:28.0589 4016 Npfs - ok
18:15:28.0621 4016 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll
18:15:28.0624 4016 nsi - ok
18:15:28.0655 4016 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
18:15:28.0657 4016 nsiproxy - ok
18:15:28.0735 4016 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
18:15:28.0765 4016 Ntfs - ok
18:15:28.0825 4016 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
18:15:28.0827 4016 ntrigdigi - ok
18:15:28.0875 4016 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys
18:15:28.0876 4016 Null - ok
18:15:28.0934 4016 [ 2EDF9E7751554B42CBB60116DE727101 ] nvraid C:\Windows\system32\drivers\nvraid.sys
18:15:28.0957 4016 nvraid - ok
18:15:29.0021 4016 [ ABED0C09758D1D97DB0042DBB2688177 ] nvstor C:\Windows\system32\drivers\nvstor.sys
18:15:29.0023 4016 nvstor - ok
18:15:29.0064 4016 [ 18BBDF913916B71BD54575BDB6EEAC0B ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
18:15:29.0069 4016 nv_agp - ok
18:15:29.0102 4016 NwlnkFlt - ok
18:15:29.0119 4016 NwlnkFwd - ok
18:15:29.0238 4016 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:15:29.0247 4016 odserv - ok
18:15:29.0327 4016 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
18:15:29.0330 4016 ohci1394 - ok
18:15:29.0430 4016 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:15:29.0434 4016 ose - ok
18:15:29.0499 4016 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll
18:15:29.0516 4016 p2pimsvc - ok
18:15:29.0550 4016 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll
18:15:29.0557 4016 p2psvc - ok
18:15:29.0601 4016 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys
18:15:29.0604 4016 Parport - ok
18:15:29.0657 4016 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
18:15:29.0659 4016 partmgr - ok
18:15:29.0686 4016 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
18:15:29.0688 4016 Parvdm - ok
18:15:29.0731 4016 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll
18:15:29.0734 4016 PcaSvc - ok
18:15:29.0780 4016 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys
18:15:29.0784 4016 pci - ok
18:15:29.0850 4016 [ FC175F5DDAB666D7F4D17449A547626F ] pciide C:\Windows\system32\drivers\pciide.sys
18:15:29.0852 4016 pciide - ok
18:15:29.0938 4016 [ 3BB2244F343B610C29C98035504C9B75 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
18:15:29.0942 4016 pcmcia - ok
18:15:30.0029 4016 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
18:15:30.0049 4016 PEAUTH - ok
18:15:30.0176 4016 [ 6DBF2AC2BDAFF355995AB25ECCC4CFE1 ] pinger C:\Toshiba\IVP\ISM\pinger.exe
18:15:30.0180 4016 pinger - ok
18:15:30.0254 4016 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll
18:15:30.0286 4016 pla - ok
18:15:30.0343 4016 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
18:15:30.0350 4016 PlugPlay - ok
18:15:30.0428 4016 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
18:15:30.0430 4016 Pml Driver HPZ12 - ok
18:15:30.0482 4016 [ 3DE33BCE4A930EDF57BD1F742823BCD8 ] pnarp C:\Windows\system32\DRIVERS\pnarp.sys
18:15:30.0483 4016 pnarp - ok
18:15:30.0532 4016 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
18:15:30.0540 4016 PNRPAutoReg - ok
18:15:30.0610 4016 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll
18:15:30.0617 4016 PNRPsvc - ok
18:15:30.0733 4016 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
18:15:30.0742 4016 PolicyAgent - ok
18:15:30.0785 4016 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
18:15:30.0787 4016 PptpMiniport - ok
18:15:30.0816 4016 [ 2027293619DD0F047C584CF2E7DF4FFD ] Processor C:\Windows\system32\drivers\processr.sys
18:15:30.0819 4016 Processor - ok
18:15:30.0874 4016 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll
18:15:30.0884 4016 ProfSvc - ok
18:15:30.0908 4016 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
18:15:30.0911 4016 ProtectedStorage - ok
18:15:30.0955 4016 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys
18:15:30.0958 4016 PSched - ok
18:15:31.0032 4016 [ 53EFA6066E7FFAA1AD91C7FB40FFD2EC ] purendis C:\Windows\system32\DRIVERS\purendis.sys
18:15:31.0033 4016 purendis - ok
18:15:31.0085 4016 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
18:15:31.0087 4016 PxHelp20 - ok
18:15:31.0167 4016 [ 0A6DB55AFB7820C99AA1F3A1D270F4F6 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
18:15:31.0191 4016 ql2300 - ok
18:15:31.0216 4016 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
18:15:31.0219 4016 ql40xx - ok
18:15:31.0271 4016 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll
18:15:31.0278 4016 QWAVE - ok
18:15:31.0313 4016 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:15:31.0315 4016 QWAVEdrv - ok
18:15:31.0346 4016 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:15:31.0347 4016 RasAcd - ok
18:15:31.0374 4016 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll
18:15:31.0379 4016 RasAuto - ok
18:15:31.0400 4016 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:15:31.0406 4016 Rasl2tp - ok
18:15:31.0506 4016 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll
18:15:31.0515 4016 RasMan - ok
18:15:31.0556 4016 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:15:31.0558 4016 RasPppoe - ok
18:15:31.0605 4016 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:15:31.0608 4016 RasSstp - ok
18:15:31.0655 4016 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:15:31.0663 4016 rdbss - ok
18:15:31.0698 4016 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:15:31.0700 4016 RDPCDD - ok
18:15:31.0742 4016 [ FBC0BACD9C3D7F6956853F64A66E252D ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
18:15:31.0747 4016 rdpdr - ok
18:15:31.0764 4016 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:15:31.0765 4016 RDPENCDD - ok
18:15:31.0826 4016 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:15:31.0831 4016 RDPWD - ok
18:15:31.0872 4016 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll
18:15:31.0875 4016 RemoteAccess - ok
18:15:31.0922 4016 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:15:31.0927 4016 RemoteRegistry - ok
18:15:32.0003 4016 [ 2C4FB2E9F039287767C384E46EE91030 ] RimVSerPort C:\Windows\system32\DRIVERS\RimSerial.sys
18:15:32.0006 4016 RimVSerPort - ok
18:15:32.0052 4016 [ 75E8A6BFA7374ABA833AE92BF41AE4E6 ] ROOTMODEM C:\Windows\system32\Drivers\RootMdm.sys
18:15:32.0054 4016 ROOTMODEM - ok
18:15:32.0097 4016 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe
18:15:32.0099 4016 RpcLocator - ok
18:15:32.0176 4016 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll
18:15:32.0184 4016 RpcSs - ok
18:15:32.0213 4016 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:15:32.0215 4016 rspndr - ok
18:15:32.0298 4016 [ 5163F804256DEB8CF1EF64B780A18CAA ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys
18:15:32.0302 4016 RTL8169 - ok
18:15:32.0329 4016 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe
18:15:32.0331 4016 SamSs - ok
18:15:32.0372 4016 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:15:32.0375 4016 sbp2port - ok
18:15:32.0422 4016 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:15:32.0427 4016 SCardSvr - ok
18:15:32.0503 4016 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll
18:15:32.0519 4016 Schedule - ok
18:15:32.0564 4016 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll
18:15:32.0564 4016 SCPolicySvc - ok
18:15:32.0615 4016 [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
18:15:32.0618 4016 sdbus - ok
18:15:32.0664 4016 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:15:32.0668 4016 SDRSVC - ok
18:15:32.0708 4016 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:15:32.0730 4016 secdrv - ok
18:15:32.0757 4016 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll
18:15:32.0760 4016 seclogon - ok
18:15:32.0792 4016 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\system32\sens.dll
18:15:32.0795 4016 SENS - ok
18:15:32.0822 4016 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys
18:15:32.0824 4016 Serenum - ok
18:15:32.0859 4016 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys
18:15:32.0862 4016 Serial - ok
18:15:32.0892 4016 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys
18:15:32.0894 4016 sermouse - ok
18:15:32.0943 4016 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll
18:15:32.0951 4016 SessionEnv - ok
18:15:32.0987 4016 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
18:15:32.0989 4016 sffdisk - ok
18:15:33.0024 4016 [ E95D451F7EA3E583AEC75F3B3EE42DC5 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:15:33.0026 4016 sffp_mmc - ok
18:15:33.0059 4016 [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
18:15:33.0061 4016 sffp_sd - ok
18:15:33.0091 4016 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
18:15:33.0093 4016 sfloppy - ok
18:15:33.0137 4016 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll
18:15:33.0144 4016 SharedAccess - ok
18:15:33.0191 4016 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:15:33.0199 4016 ShellHWDetection - ok
18:15:33.0233 4016 [ 1D76624A09A054F682D746B924E2DBC3 ] sisagp C:\Windows\system32\drivers\sisagp.sys
18:15:33.0235 4016 sisagp - ok
18:15:33.0259 4016 [ 43CB7AA756C7DB280D01DA9B676CFDE2 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
18:15:33.0261 4016 SiSRaid2 - ok
18:15:33.0288 4016 [ A99C6C8B0BAA970D8AA59DDC50B57F94 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
18:15:33.0290 4016 SiSRaid4 - ok
18:15:33.0484 4016 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe
18:15:33.0579 4016 slsvc - ok
18:15:33.0634 4016 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll
18:15:33.0638 4016 SLUINotify - ok
18:15:33.0699 4016 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:15:33.0701 4016 Smb - ok
18:15:33.0796 4016 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:15:33.0799 4016 SNMPTRAP - ok
18:15:33.0863 4016 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys
18:15:33.0865 4016 spldr - ok
18:15:33.0934 4016 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe
18:15:33.0939 4016 Spooler - ok
18:15:33.0997 4016 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys
18:15:34.0009 4016 srv - ok
18:15:34.0064 4016 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:15:34.0068 4016 srv2 - ok
18:15:34.0095 4016 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:15:34.0098 4016 srvnet - ok
18:15:34.0151 4016 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:15:34.0157 4016 SSDPSRV - ok
18:15:34.0230 4016 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:15:34.0235 4016 SstpSvc - ok
18:15:34.0324 4016 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll
18:15:34.0336 4016 stisvc - ok
18:15:34.0368 4016 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
18:15:34.0370 4016 swenum - ok
18:15:34.0407 4016 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll
18:15:34.0412 4016 swprv - ok
18:15:34.0489 4016 [ E1292C1ED4DEB17B8A9B586D22CB2061 ] Swupdtmr c:\Toshiba\IVP\swupdate\swupdtmr.exe
18:15:34.0492 4016 Swupdtmr - ok
18:15:34.0520 4016 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
18:15:34.0522 4016 Symc8xx - ok
18:15:34.0561 4016 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
18:15:34.0563 4016 Sym_hi - ok
18:15:34.0608 4016 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
18:15:34.0610 4016 Sym_u3 - ok
18:15:34.0648 4016 [ 5EFCEDCF3DAF5C8D9E8B77A34A4EEC99 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
18:15:34.0653 4016 SynTP - ok
18:15:34.0704 4016 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll
18:15:34.0718 4016 SysMain - ok
18:15:34.0758 4016 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:15:34.0762 4016 TabletInputService - ok
18:15:34.0820 4016 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll
18:15:34.0827 4016 TapiSrv - ok
18:15:34.0870 4016 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll
18:15:34.0874 4016 TBS - ok
18:15:34.0961 4016 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:15:34.0979 4016 Tcpip - ok
18:15:35.0013 4016 [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
18:15:35.0021 4016 Tcpip6 - ok
18:15:35.0078 4016 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:15:35.0079 4016 tcpipreg - ok
18:15:35.0157 4016 [ 1825BCEB47BF41C5A9F0E44DE82FC27A ] tdcmdpst C:\Windows\system32\DRIVERS\tdcmdpst.sys
18:15:35.0158 4016 tdcmdpst - ok
18:15:35.0202 4016 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:15:35.0204 4016 TDPIPE - ok
18:15:35.0227 4016 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:15:35.0229 4016 TDTCP - ok
18:15:35.0286 4016 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:15:35.0288 4016 tdx - ok
18:15:35.0363 4016 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
18:15:35.0365 4016 TermDD - ok
18:15:35.0406 4016 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll
18:15:35.0418 4016 TermService - ok
18:15:35.0458 4016 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll
18:15:35.0463 4016 Themes - ok
18:15:35.0493 4016 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll
18:15:35.0496 4016 THREADORDER - ok
18:15:35.0576 4016 [ E4C85C291DDB3DC5E4A2F227CA465BA6 ] tifm21 C:\Windows\system32\drivers\tifm21.sys
18:15:35.0583 4016 tifm21 - ok
18:15:35.0937 4016 [ E47F35A87FF0DA38DEF37A0EB0C2D2DF ] TNaviSrv C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
18:15:35.0938 4016 TNaviSrv - ok
18:15:36.0035 4016 [ C5AC715B65B01788ABC22D10749DDDD8 ] TODDSrv C:\Windows\system32\TODDSrv.exe
18:15:36.0040 4016 TODDSrv - ok
18:15:36.0093 4016 [ DA6903958CBDC091FFCBBCA70CCFF34C ] TosCoSrv C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
18:15:36.0102 4016 TosCoSrv - ok
18:15:36.0128 4016 [ 22690DFFC7F2A18279A7A0489AA02BAC ] TOSHIBA SMART Log Service C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
18:15:36.0131 4016 TOSHIBA SMART Log Service - ok
18:15:36.0165 4016 Tosrfcom - ok
18:15:36.0198 4016 [ 5C4103544612E5011EF46301B93D1AA6 ] tosrfec C:\Windows\system32\DRIVERS\tosrfec.sys
18:15:36.0200 4016 tosrfec - ok
18:15:36.0285 4016 [ 1EA5F27C29405BF49799FECA77186DA9 ] tos_sps32 C:\Windows\system32\DRIVERS\tos_sps32.sys
18:15:36.0291 4016 tos_sps32 - ok
18:15:36.0333 4016 TpChoice - ok
18:15:36.0392 4016 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll
18:15:36.0396 4016 TrkWks - ok
18:15:36.0466 4016 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:15:36.0467 4016 TrustedInstaller - ok
18:15:36.0521 4016 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:15:36.0523 4016 tssecsrv - ok
18:15:36.0586 4016 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
18:15:36.0588 4016 tunmp - ok
18:15:36.0632 4016 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:15:36.0634 4016 tunnel - ok
18:15:36.0667 4016 [ 792A8B80F8188ABA4B2BE271583F3E46 ] TVALZ C:\Windows\system32\DRIVERS\TVALZ_O.SYS
18:15:36.0668 4016 TVALZ - ok
18:15:36.0704 4016 [ 7D33C4DB2CE363C8518D2DFCF533941F ] uagp35 C:\Windows\system32\drivers\uagp35.sys
18:15:36.0706 4016 uagp35 - ok
18:15:36.0764 4016 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:15:36.0770 4016 udfs - ok
18:15:36.0829 4016 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:15:36.0833 4016 UI0Detect - ok
18:15:36.0887 4016 [ B0ACFDC9E4AF279E9116C03E014B2B27 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:15:36.0890 4016 uliagpkx - ok
18:15:36.0919 4016 [ 9224BB254F591DE4CA8D572A5F0D635C ] uliahci C:\Windows\system32\drivers\uliahci.sys
18:15:36.0925 4016 uliahci - ok
18:15:36.0957 4016 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys
18:15:36.0960 4016 UlSata - ok
18:15:36.0999 4016 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
18:15:37.0003 4016 ulsata2 - ok
18:15:37.0030 4016 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
18:15:37.0031 4016 umbus - ok
18:15:37.0101 4016 [ 88BD96A1BAEED33EE8BDF9499C07A841 ] UMPass C:\Windows\system32\DRIVERS\umpass.sys
18:15:37.0103 4016 UMPass - ok
18:15:37.0158 4016 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll
18:15:37.0166 4016 upnphost - ok
18:15:37.0217 4016 [ EAFE1E00739AFE6C51487A050E772E17 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
18:15:37.0219 4016 USBAAPL - ok
18:15:37.0239 4016 usbbus - ok
18:15:37.0283 4016 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:15:37.0286 4016 usbccgp - ok
18:15:37.0338 4016 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:15:37.0341 4016 usbcir - ok
18:15:37.0363 4016 UsbDiag - ok
18:15:37.0443 4016 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
18:15:37.0445 4016 usbehci - ok
18:15:37.0483 4016 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:15:37.0488 4016 usbhub - ok
18:15:37.0528 4016 USBModem - ok
18:15:37.0575 4016 [ 38DBC7DD6CC5A72011F187425384388B ] usbohci C:\Windows\system32\drivers\usbohci.sys
18:15:37.0577 4016 usbohci - ok
18:15:37.0624 4016 [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
18:15:37.0626 4016 usbprint - ok
18:15:37.0651 4016 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:15:37.0653 4016 USBSTOR - ok
18:15:37.0701 4016 [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
18:15:37.0702 4016 usbuhci - ok
18:15:37.0784 4016 [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
18:15:37.0789 4016 usbvideo - ok
18:15:37.0836 4016 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll
18:15:37.0840 4016 UxSms - ok
18:15:37.0896 4016 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe
18:15:37.0906 4016 vds - ok
18:15:37.0940 4016 [ 87B06E1F30B749A114F74622D013F8D4 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:15:37.0942 4016 vga - ok
18:15:37.0967 4016 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys
18:15:37.0969 4016 VgaSave - ok
18:15:38.0017 4016 [ 5D7159DEF58A800D5781BA3A879627BC ] viaagp C:\Windows\system32\drivers\viaagp.sys
18:15:38.0019 4016 viaagp - ok
18:15:38.0051 4016 [ C4F3A691B5BAD343E6249BD8C2D45DEE ] ViaC7 C:\Windows\system32\drivers\viac7.sys
18:15:38.0053 4016 ViaC7 - ok
18:15:38.0085 4016 [ AADF5587A4063F52C2C3FED7887426FC ] viaide C:\Windows\system32\drivers\viaide.sys
18:15:38.0087 4016 viaide - ok
18:15:38.0104 4016 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:15:38.0106 4016 volmgr - ok
18:15:38.0161 4016 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:15:38.0168 4016 volmgrx - ok
18:15:38.0216 4016 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:15:38.0222 4016 volsnap - ok
18:15:38.0258 4016 [ 587253E09325E6BF226B299774B728A9 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
18:15:38.0261 4016 vsmraid - ok
18:15:38.0335 4016 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe
18:15:38.0352 4016 VSS - ok
18:15:38.0391 4016 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll
18:15:38.0400 4016 W32Time - ok
18:15:38.0432 4016 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
18:15:38.0434 4016 WacomPen - ok
18:15:38.0467 4016 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
18:15:38.0469 4016 Wanarp - ok
18:15:38.0485 4016 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:15:38.0486 4016 Wanarpv6 - ok
18:15:38.0539 4016 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:15:38.0550 4016 wcncsvc - ok
18:15:38.0589 4016 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:15:38.0593 4016 WcsPlugInService - ok
18:15:38.0664 4016 [ 78FE9542363F297B18C027B2D7E7C07F ] Wd C:\Windows\system32\drivers\wd.sys
18:15:38.0666 4016 Wd - ok
18:15:38.0751 4016 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:15:38.0761 4016 Wdf01000 - ok
18:15:38.0795 4016 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll
18:15:38.0800 4016 WdiServiceHost - ok
18:15:38.0811 4016 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll
18:15:38.0818 4016 WdiSystemHost - ok
18:15:38.0860 4016 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll
18:15:38.0867 4016 WebClient - ok
18:15:38.0911 4016 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll
18:15:38.0917 4016 Wecsvc - ok
18:15:38.0956 4016 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll
18:15:38.0960 4016 wercplsupport - ok
18:15:39.0012 4016 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll
18:15:39.0017 4016 WerSvc - ok
18:15:39.0086 4016 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
18:15:39.0092 4016 WinDefend - ok
18:15:39.0139 4016 WinHttpAutoProxySvc - ok
18:15:39.0393 4016 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
18:15:39.0397 4016 Winmgmt - ok
18:15:39.0483 4016 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll
18:15:39.0510 4016 WinRM - ok
18:15:39.0592 4016 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll
18:15:39.0605 4016 Wlansvc - ok
18:15:39.0735 4016 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
18:15:39.0767 4016 wlidsvc - ok
18:15:39.0819 4016 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
18:15:39.0821 4016 WmiAcpi - ok
18:15:39.0870 4016 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
18:15:39.0874 4016 wmiApSrv - ok
18:15:39.0997 4016 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
18:15:40.0015 4016 WMPNetworkSvc - ok
18:15:40.0069 4016 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll
18:15:40.0075 4016 WPCSvc - ok
18:15:40.0166 4016 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
18:15:40.0171 4016 WPDBusEnum - ok
18:15:40.0253 4016 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
18:15:40.0255 4016 WpdUsb - ok
18:15:40.0427 4016 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
18:15:40.0447 4016 WPFFontCache_v0400 - ok
18:15:40.0497 4016 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
18:15:40.0498 4016 ws2ifsl - ok
18:15:40.0535 4016 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\system32\wscsvc.dll
18:15:40.0539 4016 wscsvc - ok
18:15:40.0555 4016 WSearch - ok
18:15:40.0668 4016 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
18:15:40.0718 4016 wuauserv - ok
18:15:40.0803 4016 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
18:15:40.0806 4016 WUDFRd - ok
18:15:40.0857 4016 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll
18:15:40.0924 4016 wudfsvc - ok
18:15:40.0987 4016 ================ Scan global ===============================
18:15:41.0030 4016 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
18:15:41.0091 4016 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
18:15:41.0114 4016 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
18:15:41.0167 4016 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
18:15:41.0175 4016 [Global] - ok
18:15:41.0179 4016 ================ Scan MBR ==================================
18:15:41.0201 4016 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0
18:15:42.0468 4016 \Device\Harddisk0\DR0 - ok
18:15:42.0472 4016 ================ Scan VBR ==================================
18:15:42.0506 4016 [ BCAF97A13B1D31BC3778CA91DC7DFA31 ] \Device\Harddisk0\DR0\Partition1
18:15:42.0508 4016 \Device\Harddisk0\DR0\Partition1 - ok
18:15:42.0514 4016 ============================================================
18:15:42.0514 4016 Scan finished
18:15:42.0514 4016 ============================================================
18:15:42.0539 5464 Detected object count: 0
18:15:42.0539 5464 Actual detected object count: 0
18:17:40.0613 4240 Deinitialize success



aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2012-11-18 18:19:21
-----------------------------
18:19:21.409 OS Version: Windows 6.0.6002 Service Pack 2
18:19:21.409 Number of processors: 1 586 0x1601
18:19:21.410 ComputerName: ANRAE-PC UserName: Anrae
18:19:23.001 Initialize success
18:20:30.932 AVAST engine defs: 12111801
18:21:15.492 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-4
18:21:15.497 Disk 0 Vendor: TOSHIBA_MK1246GSX LB213M Size: 114473MB BusType: 3
18:21:15.519 Disk 0 MBR read successfully
18:21:15.523 Disk 0 MBR scan
18:21:15.530 Disk 0 Windows VISTA default MBR code
18:21:15.536 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048
18:21:15.557 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 112972 MB offset 3074048
18:21:15.576 Disk 0 scanning sectors +234440704
18:21:15.665 Disk 0 scanning C:\Windows\system32\drivers
18:21:29.513 Service scanning
18:22:14.920 Modules scanning
18:22:34.071 Disk 0 trace - called modules:
18:22:34.101 ntkrnlpa.exe CLASSPNP.SYS disk.sys ataport.SYS hal.dll PCIIDEX.SYS msahci.sys
18:22:34.449 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x858fdac8]
18:22:34.455 3 CLASSPNP.SYS[82d4b8b3] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-4[0x851d0030]
18:22:35.989 AVAST engine scan C:\Windows
18:22:40.256 AVAST engine scan C:\Windows\system32
18:26:44.081 AVAST engine scan C:\Windows\system32\drivers
18:27:04.194 AVAST engine scan C:\Users\Anrae
18:28:03.068 Disk 0 MBR has been saved successfully to "C:\Users\Anrae\Desktop\computer cleanup\MBR.dat"
18:28:03.108 The log file has been saved successfully to "C:\Users\Anrae\Desktop\computer cleanup\aswMBR.txt"


ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=44f7300221ea6648856d5610abf43f8f
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-11-19 02:01:08
# local_time=2012-11-18 09:01:08 (-0500, Eastern Standard Time)
# country="United States"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=1029 16777214 0 1 85861984 85861984 0 0
# compatibility_mode=5892 16776574 100 100 0 189889256 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=221951
# found=0
# cleaned=0
# scan_time=8739

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:06:42 PM

Posted 19 November 2012 - 08:59 PM

Download

Malwarebytes

Install,update and run a full scan

Click on Show results.Right click on the list ,select all and remove them.

Post the generated log here

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List restore points

Click Go and post the result.

Download

Farbar service scanner

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.

Download

adware cleaner

Launch it click on Delete

A log should be generated after scan ,post it here

Download

Junkware removal tool

For vista and windows 7 right click on the tool and select run as administrator

After scan gets completed,post the generated log here.

#5 morbidbattlecry

morbidbattlecry
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:42 PM

Posted 20 November 2012 - 09:21 PM

Still working on scans you gave me.

#6 morbidbattlecry

morbidbattlecry
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:42 PM

Posted 26 November 2012 - 01:55 PM

Redirect is gone on both Chrome and IE

# AdwCleaner v2.008 - Logfile created 11/23/2012 at 15:28:06
# Updated 17/11/2012 by Xplode
# Operating system : Windows Vista ™ Home Premium Service Pack 2 (32 bits)
# User : Anrae - ANRAE-PC
# Boot Mode : Normal
# Running from : C:\Users\Anrae\Desktop\Josh\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\Users\Anrae\AppData\Roaming\Mozilla\Firefox\Profiles\9s9omdx1.default\searchplugins\Askcom.xml
File Deleted : C:\Windows\system32\conduitEngine.tmp
Folder Deleted : C:\Users\Anrae\AppData\Roaming\Complitly
Folder Deleted : C:\Users\Anrae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freecorder
Folder Deleted : C:\Users\Anrae\AppData\Roaming\Mozilla\Firefox\Profiles\9s9omdx1.default\blekkotb
Folder Deleted : C:\Users\Anrae\AppData\Roaming\Mozilla\Firefox\Profiles\9s9omdx1.default\extensions\{33E0DAA6-3AF3-D8B5-6752-10E949C61516}

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Freecorder
Key Deleted : HKCU\Software\AppDataLow\Software\FunWebProducts
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\Ask&Record
Key Deleted : HKCU\Software\Complitly
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Freecorder Toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{625F420E-A4A9-4B40-BC23-716C1C43893A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1392B8D2-5C05-419F-A8F6-B9F15A596612}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{26C9E18C-3717-4BE1-A225-04E4471F5B6E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1392B8D2-5C05-419F-A8F6-B9F15A596612}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{26C9E18C-3717-4BE1-A225-04E4471F5B6E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9E92257F-3F0A-451D-B231-6E2DB60CDC71}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\StartSearch
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1392B8D2-5C05-419F-A8F6-B9F15A596612}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9E92257F-3F0A-451D-B231-6E2DB60CDC71}
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT1060933
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Freecorder
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{14465489-C299-42A6-BA64-8B5718EB8BC7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24E1B572-C108-4BBC-8700-904BCE69A230}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1392B8D2-5C05-419F-A8F6-B9F15A596612}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9E92257F-3F0A-451D-B231-6E2DB60CDC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Freecorder Toolbar
Key Deleted : HKLM\SOFTWARE\Software
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{1392B8D2-5C05-419F-A8F6-B9F15A596612}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{1392B8D2-5C05-419F-A8F6-B9F15A596612}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{1392B8D2-5C05-419F-A8F6-B9F15A596612}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{1392B8D2-5C05-419F-A8F6-B9F15A596612}]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.19328

Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.bigseekpro.com/pivotstickfigure/{BB3CE38A-E1AE-4768-95FF-33E6BE5E2D35} --> hxxp://www.google.com

-\\ Mozilla Firefox v [Unable to get version]

Profile name : default
File : C:\Users\Anrae\AppData\Roaming\Mozilla\Firefox\Profiles\9s9omdx1.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v [Unable to get version]

File : C:\Users\Anrae\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [8738 octets] - [21/11/2012 21:41:48]
AdwCleaner[S1].txt - [367 octets] - [21/11/2012 21:36:55]
AdwCleaner[S2].txt - [367 octets] - [21/11/2012 21:42:17]
AdwCleaner[S3].txt - [8423 octets] - [23/11/2012 15:28:06]

########## EOF - C:\AdwCleaner[S3].txt - [8483 octets] ##########

Farbar Service Scanner Version: 09-11-2012
Ran by Anrae (administrator) on 21-11-2012 at 21:27:38
Running from "C:\Users\Anrae\Desktop\Josh"
Windows Vista ™ Home Premium Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Security Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Other Services:
==============


File Check:
========
C:\Windows\system32\nsisvc.dll => MD5 is legit
C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
C:\Windows\system32\dhcpcsvc.dll => MD5 is legit
C:\Windows\system32\Drivers\afd.sys => MD5 is legit
C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
C:\Windows\system32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\system32\dnsrslvr.dll => MD5 is legit
C:\Windows\system32\mpssvc.dll => MD5 is legit
C:\Windows\system32\bfe.dll => MD5 is legit
C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit
C:\Windows\system32\SDRSVC.dll => MD5 is legit
C:\Windows\system32\vssvc.exe => MD5 is legit
C:\Windows\system32\wscsvc.dll => MD5 is legit
C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\system32\wuaueng.dll => MD5 is legit
C:\Windows\system32\qmgr.dll => MD5 is legit
C:\Windows\system32\es.dll => MD5 is legit
C:\Windows\system32\cryptsvc.dll
[2012-10-10 14:54] - [2012-06-01 19:02] - 0133120 ____A (Microsoft Corporation) F1E8C34892336D33EDDCDFE44E474F64

C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\system32\ipnathlp.dll
[2008-01-20 21:24] - [2008-01-20 21:24] - 0288256 ____A (Microsoft Corporation) E1499BD0FF76B1B2FBBF1AF339D91165

C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit


**** End of log ****
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.20.07

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.19328
Anrae :: ANRAE-PC [administrator]

11/20/2012 5:29:51 PM
mbam-log-2012-11-20 (17-29-51).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 442259
Time elapsed: 3 hour(s), 54 minute(s), 6 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

MiniToolBox by Farbar Version: 10-11-2012 02
Ran by Anrae (administrator) on 20-11-2012 at 17:21:37
Windows Vista ™ Home Premium Service Pack 2 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1 localhost

========================= Winsock entries =====================================

Catalog5 01 C:\Windows\system32\NLAapi.dll [48128] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Windows\System32\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 06 C:\Windows\System32\winrnr.dll [19968] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 26 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 27 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 28 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 29 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 30 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (11/20/2012 05:15:38 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2284931

Error: (11/20/2012 05:15:38 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2284931

Error: (11/20/2012 05:15:38 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/20/2012 05:15:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2281172

Error: (11/20/2012 05:15:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2281172

Error: (11/20/2012 05:15:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/20/2012 05:15:33 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2280002

Error: (11/20/2012 05:15:33 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2280002

Error: (11/20/2012 05:15:33 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/20/2012 04:37:39 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5523


System errors:
=============
Error: (11/20/2012 03:18:24 PM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2

Error: (11/20/2012 03:18:24 PM) (Source: Service Control Manager) (User: )
Description: iPodDrv%%2

Error: (11/20/2012 03:18:24 PM) (Source: Service Control Manager) (User: )
Description: cpuz132%%2

Error: (11/20/2012 03:18:24 PM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058

Error: (11/19/2012 11:25:15 AM) (Source: Service Control Manager) (User: )
Description: Apple Mobile Device2600001Restart the service

Error: (11/19/2012 11:22:30 AM) (Source: Service Control Manager) (User: )
Description: Apple Mobile Device1600001Restart the service

Error: (11/19/2012 10:31:31 AM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2

Error: (11/19/2012 10:31:31 AM) (Source: Service Control Manager) (User: )
Description: iPodDrv%%2

Error: (11/19/2012 10:31:31 AM) (Source: Service Control Manager) (User: )
Description: cpuz132%%2

Error: (11/19/2012 10:31:31 AM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058


Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
Date: 2012-11-18 00:28:58.499
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-11-18 00:28:58.094
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-11-18 00:28:57.688
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-11-18 00:28:57.282
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-11-18 00:28:56.861
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-11-18 00:28:56.424
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Lavasoft\Ad-Aware\Drivers\i386\sbapifs.sys because the set of per-page image hashes could not be found on the system.

Date: 2012-09-11 18:00:54.098
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Freecorder\Applian_Audio_Plugin.dll because the set of per-page image hashes could not be found on the system.

Date: 2012-09-11 18:00:53.106
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Freecorder\Applian_Audio_Plugin.dll because the set of per-page image hashes could not be found on the system.

Date: 2012-09-11 17:37:31.058
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Freecorder\Applian_Audio_Plugin.dll because the set of per-page image hashes could not be found on the system.

Date: 2012-09-11 17:37:30.575
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Freecorder\Applian_Audio_Plugin.dll because the set of per-page image hashes could not be found on the system.


=========================== Installed Programs ============================

Update for Microsoft Office 2007 (KB2508958)
32 Bit HP CIO Components Installer (Version: 7.1.8)
Activation Assistant for the 2007 Microsoft Office suites
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0)
Ad-Aware
Ad-Aware (Version: 9.0.1)
Ad-Aware Browsing Protection (Version: 1.0.0.6)
Adobe AIR (Version: 1.5.3.9130)
Adobe Community Help (Version: 3.2.1)
Adobe Community Help (Version: 3.2.1.650)
Adobe Flash Player 11 ActiveX (Version: 11.4.402.287)
Adobe Flash Player 11 Plugin (Version: 11.4.402.287)
Adobe Reader 8.3.1 (Version: 8.3.1)
ALPS Touch Pad Driver (Version: 7.0.301.4)
Apple Application Support (Version: 2.3)
Apple Mobile Device Support (Version: 6.0.0.59)
Apple Software Update (Version: 2.1.3.127)
ArcSoft MediaConverter 7.5 (Version: 7.5.0.114)
ArcSoft Print Creations - Album Page
ArcSoft Print Creations - Funhouse
ArcSoft Print Creations - Greeting Card
ArcSoft Print Creations - Photo Book
ArcSoft Print Creations - Photo Calendar
ArcSoft Print Creations - Scrapbook
ArcSoft Print Creations - Slimline Card
ArcSoft Print Creations (Version: 2.8.255.384)
Ask Toolbar (Version: 1.11.3.0)
Atheros Driver Installation Program (Version: 7.1)
Atheros Wi-Fi Protected Setup Library
Audacity 1.3.12 (Unicode)
Auslogics Disk Defrag (Version: version 3.4)
Bing Bar (Version: 7.1.361.0)
BlackBerry Desktop Software 5.0 (Version: 5.0.0.7)
Bonjour (Version: 3.0.0.10)
BufferChm (Version: 140.0.212.000)
calibre (Version: 0.8.55)
CASIO USB Driver V1.2.2474.0623 (Version: 1.2.2474.0623)
CCleaner (Version: 3.17)
CD/DVD Drive Acoustic Silencer (Version: 2.02.01)
CDisplay 1.8
Cisco Network Magic (Version: 5.5.09195.0)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Coupon Printer for Windows (Version: 5.0.0.0)
CPUID CPU-Z 1.61
CPUID HWMonitor 1.21
D1600 (Version: 140.0.690.000)
Defraggler (Version: 2.10)
DeviceDiscovery (Version: 140.0.212.000)
DHTML Editing Component (Version: 6.02.0001)
DJ_SF_06_D1600_SW_Min (Version: 140.0.690.000)
Driver Updater (Version: 1.1.0.0)
DVD Flick 1.3.0.7 (Version: 1.3.0.7)
DVD Shrink 3.2
ESET Online Scanner v3
FFmpeg for Audacity on Windows
FLAC 1.2.1b (remove only) (Version: 1.2.1b)
Free Easy Burner V 3.8
Free WMA to MP3 Converter 1.16
Freecorder 4.01 Application (Version: 4.01)
Freecorder 5 (Version: 5.11)
Freecorder Toolbar (Version: 6.8.5.1)
GearDrvs (Version: 1)
Google Chrome (Version: 23.0.1271.64)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.4.3230.2052)
Google Update Helper (Version: 1.3.21.123)
GPBaseService2 (Version: 140.0.211.000)
HP Customer Participation Program 14.0 (Version: 14.0)
HP Deskjet D1600 Printer Driver Software 14.0 Rel. 6 (Version: 14.0)
HP Imaging Device Functions 14.0 (Version: 14.0)
HP Photo Creations (Version: 1.0.0.2024)
HP Smart Web Printing 4.60 (Version: 4.60)
HP Solution Center 14.0 (Version: 14.0)
HP Update (Version: 5.003.001.001)
HPDiagnosticAlert (Version: 1.00.0000)
HPPhotoGadget (Version: 140.0.524.000)
HPProductAssistant (Version: 140.0.212.000)
HPSSupply (Version: 140.0.211.000)
iCloud (Version: 2.0.2.187)
ImgBurn (Version: 2.5.7.0)
inSSIDer (Version: 1.2.8)
inSSIDer (Version: 2.1.6)
Intel® Graphics Media Accelerator Driver
ISO Image Burner 1.1
iTunes (Version: 10.7.0.21)
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
Kyodai
LAME v3.98.2 for Audacity
LG Android Drivers (Version: 1.1)
LG USB Modem driver (Version: 4.9.4)
Malwarebytes Anti-Malware version 1.65.1.1000 (Version: 1.65.1.1000)
MarketResearch (Version: 140.0.212.000)
Memeo AutoBackup (Version: 3.00.3023)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Primary Interoperability Assemblies 2005 (Version: 8.0.50727.42)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Works (Version: 9.7.0621)
Microsoft XML Parser (Version: 8.20.8730.4)
Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)
Microsoft_VC90_CRT_x86 (Version: 1.00.0000)
MobileMe Control Panel (Version: 3.1.8.0)
MotoConnect (Version: 1.1.30)
Motorola Driver Installation 4.6.0 (Version: 4.6.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Nero 6 Ultra Edition
Network Magic (Version: 5.5.9195.0)
Norton 360 (Version: 1.2.0.10)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0)
On Target v1.10
OpenAL
Orbital Viewer
Pantech Handset Driver (Version: 2.0.14)
Picasa 3 (Version: 3.8)
Pure Networks Platform (Version: 11.2.09195.1)
Quick Media Converter
QuickTime (Version: 7.73.80.64)
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.5559)
SAMSUNG Mobile USB DRIVER(4.40.7.0) v1.6 (Version: 4.47)
Shop for HP Supplies (Version: 14.0)
SmartWebPrinting (Version: 140.0.186.000)
SolutionCenter (Version: 140.0.213.000)
SpaceMonger 2.1.1 (Version: 2.1.1)
Status (Version: 140.0.212.000)
Synaptics Pointing Device Driver (Version: 12.2.11.0)
System Requirements Lab
System Requirements Lab for Intel (Version: 4.5.5.0)
Texas Instruments PCIxx21/x515/xx12 drivers. (Version: 2.00.0001)
Tina 9 - TI (Version: 9.00.000)
TIPCI (Version: 2.00.0001)
Toolbox (Version: 140.0.428.000)
TOSHIBA Assist (Version: 2.01.05)
TOSHIBA ConfigFree (Version: 7.1.27)
TOSHIBA Disc Creator (Version: 2.0.1.1a)
TOSHIBA DVD PLAYER (Version: 1.20.10)
TOSHIBA Extended Tiles for Windows Mobility Center (Version: 1.01.00)
TOSHIBA Flash Cards Support Utility (Version: 1.48.0.3C)
TOSHIBA Games (Version: 1.0.0.43)
TOSHIBA Hardware Setup (Version: 1.48.0.11C)
Toshiba Registration (Version: 1.00.0000)
TOSHIBA SD Memory Utilities (Version: 1.8.1.1)
TOSHIBA Software Modem (Version: 2.1.77 (SM2177ALD04))
TOSHIBA Software Upgrades (Version: 4.3)
TOSHIBA Speech System Applications
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
TOSHIBA Supervisor Password (Version: 1.48.0.8C)
TOSHIBA Value Added Package (Version: 1.1.14)
TrayApp (Version: 140.0.212.000)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2760413) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Utility Common Driver (Version: 0.0.50.7C)
V CAST Music with Rhapsody
VideoCam Suite 2.0 (Version: 2.00.043.1033)
VideoFileDownload (Version: 1.0)
Vista Codec Package (Version: 6.2.6)
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
VLC media player 1.0.5 (Version: 1.0.5)
WebEx Support Manager for Internet Explorer (Version: 6.5.4917)
WebReg (Version: 140.0.212.017)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Media Encoder 9 Series
Windows Media Encoder 9 Series (Version: 9.00.3374)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Windows Vista Upgrade Advisor (Version: 1.0.4)
WinRAR archiver
WinZip 15.0 (Version: 15.0.9334)
Xiph.Org Open Codecs 0.85.17777 (Version: 0.85.17777)

========================= Memory info: ===================================

Percentage of memory in use: 57%
Total physical RAM: 2037.69 MB
Available physical RAM: 874.55 MB
Total Pagefile: 4314.68 MB
Available Pagefile: 2931.33 MB
Total Virtual: 2047.88 MB
Available Virtual: 1959.52 MB

========================= Partitions: =====================================

1 Drive c: (SQ004680V03) (Fixed) (Total:110.32 GB) (Free:13.76 GB) NTFS

========================= Users: ========================================

User accounts for \\ANRAE-PC

Administrator Anrae Guest
Mcx1

========================= Restore Points ==================================

18-11-2012 22:05:24 Scheduled Checkpoint
19-11-2012 16:22:57 Device Driver Package Install: Apple, Inc. Universal Serial Bus controllers
19-11-2012 16:24:18 Device Driver Package Install: Apple Network adapters
20-11-2012 20:29:25 Windows Update

**** End of log ****

#7 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:06:42 PM

Posted 27 November 2012 - 12:36 AM

Download

http://www.bleepingcomputer.com/download/rkill/

Run it and after scan finishes,post the contents of RKILL log located on the desktop here


Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the contents of text here




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users