Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Recurring Infection


  • Please log in to reply
9 replies to this topic

#1 LittleGreenDots

LittleGreenDots

  • Members
  • 444 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Metro Detroit Area
  • Local time:08:01 AM

Posted 10 January 2013 - 04:49 AM

I have a laptop I bought in 2005 (Windows 7) and I must have picked up an infection back when I was first setting it up. This computer has been in my office, offline since shortly after I got it.

A few months ago I got this computer online at my office on a wi-fi network.

After a virus scan, I found a two infected files a few weeks ago, a Malware Generator. I removed the infected files and did a second scan with Avast, then another with MalwareBytes. No infected files were found.

The other day I did another scan and found more infected files, which I removed. This time it was a program files > fwcsetup.exe. I read a little online about it and this is a target file for malicious attacks. The original location for this file was ProgramFiles - blg_fwupdate.

I found this fwcsetup.exe repair kit but don't know if I should use it at this time:

http://www.pcmaxutilities.com/wikidllfiles/fwcsetup-exe-error-fix-guide.html

I've noticed sometimes when I'm turning off my computer a msg about a background program shutting down. It is gone before I can ID it. My knowledge of computers is not deep enough to look through my running processes and note any suspicious programs running.

I'm not sure how to proceed as I am basically uncomfortable messing around with such things unless I have very precise and clear instructions. I do have to transfer data via a flash drive from my other computer. How can I clear up this infection once and for all?

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,428 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:01 AM

Posted 10 January 2013 - 11:23 AM

Hello,this is a registry error,usually from a bad install or removal of some application.

According to http://www.processlibrary.com/directory/files/fwupdate/ it is an utility to auto-update the firmware of LG devices. If you don't want it every time you log on, click Start, type msconfig, hit ENTER, go to the Startup tab and see if Fwupdate.exe is listed there. If so, uncheck it, click OK, and restart the computer.

You can also contact LG technical support: http://www.lge.com/support/main.jhtml
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 LittleGreenDots

LittleGreenDots
  • Topic Starter

  • Members
  • 444 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Metro Detroit Area
  • Local time:08:01 AM

Posted 14 January 2013 - 11:34 AM

Thanks for the quick response. Before I proceed, I just want to double check something. Since you did not mention a word about a possible infection, does that mean you do not think malware has caused my problem? I'm attaching an image of the malware that has been removed from the computer. Please note the dates.

As for the LG devices, I don't use any and never have. I understand it is a practice of those who pass along these viruses and malware programs to hide the malicious files in regular program files one would expect to find on a healthy computer.

I will do as you advise.

Oopz...guess I can't add an attachment.

Here is the data from my virus chest:

All were found in Temp Internet Files\Content IE5\...

  • Compose[1] Last Changed: 12/19/12 Transfer Time: 12/19/12
  • Compose[1] Last Changed: 12/19/12 Transfer Time: 12/19/12
  • Compose[1].htm Last Changed: 6/5/2006 Transfer Time: 12/18/12
  • Compose[1].htm Last Changed: 6/5/2006 Transfer Time: 12/18/12
  • fwcsetup.exe Last Changed: 3/17/2008 Transfer Time: 12/18/12
  • login[1].htm Last Changed: Transfer Time: 1/07/13
  • ShowFolder[1].htm Last Changed: 6/5/2006 Transfer Time: 12/18/12
  • ShowLetter[1].htm Last Changed: 6/5/2006 Transfer Time: 12/18/12

Thanks.

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,428 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:01 AM

Posted 14 January 2013 - 12:06 PM

The file may have been damaged by malware. Can't rall tell what happened here other thana change
•fwcsetup.exe Last Changed: 3/17/2008 Transfer Time: 12/18/12
fwcsetup.exe
Lets do this..


TFC
Please download TFC (Temp File Cleaner) by Old Timer and save it to your desktop.
alternate download link
  • Save any unsaved work. TFC will close ALL open programs including your browser!
  • Double-click on TFC.exe to run it. If you are using Vista, right-click on the file and choose Run As Administrator.
  • Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
  • TFC will clear out all temp folders for all user accounts (temp, IE temp, Java, FF, Opera, Chrome, Safari), including Administrator, All Users, LocalService, NetworkService, and any other accounts in the user folder.
  • Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway to ensure a complete clean.
Note: It is normal for the computer to be slow to boot after running TFC cleaner the first time.



MiniToolBox
Please download MiniToolBox, save it to your desktop and run it.Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run. Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



ADW Cleaner

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 LittleGreenDots

LittleGreenDots
  • Topic Starter

  • Members
  • 444 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Metro Detroit Area
  • Local time:08:01 AM

Posted 14 January 2013 - 04:42 PM

I did as you instructed.

Here are the two logs you requested:

MiniToolBox by Farbar Version:10-01-2013
Ran by RoyalOak_Guitar (administrator) on 14-01-2013 at 16:29:56
Running from "C:\Users\RoyalOak_Guitar\Desktop"
Windows 7 Home Premium (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : GuitarTeacher
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
Physical Address. . . . . . . . . : 00-26-B6-60-B8-2D
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::d57c:f935:93fd:50fa%13(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.254.110(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Monday, January 14, 2013 4:23:31 PM
Lease Expires . . . . . . . . . . : Tuesday, January 15, 2013 4:23:41 PM
Default Gateway . . . . . . . . . : 192.168.254.1
DHCP Server . . . . . . . . . . . : 192.168.254.1
DHCPv6 IAID . . . . . . . . . . . : 318777014
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-12-BD-3C-20-00-26-22-F7-B2-C8
DNS Servers . . . . . . . . . . . : 10.1.10.1
192.168.254.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : hsd1.mi.comcast.net.
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 00-26-22-F7-B2-C8
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{B0DE15D8-6DD2-4135-8F50-B4834539DB54}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:953c:2c64:232a:3f57:191(Preferred)
Link-local IPv6 Address . . . . . : fe80::2c64:232a:3f57:191%14(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
Server: www
Address: 10.1.10.1

Name: google.com
Addresses: 2607:f8b0:4009:801::1005
74.125.225.70
74.125.225.72
74.125.225.71
74.125.225.68
74.125.225.65
74.125.225.73
74.125.225.66
74.125.225.69
74.125.225.64
74.125.225.67
74.125.225.78


Pinging google.com [74.125.225.71] with 32 bytes of data:
Reply from 74.125.225.71: bytes=32 time=22ms TTL=55
Reply from 74.125.225.71: bytes=32 time=28ms TTL=55

Ping statistics for 74.125.225.71:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 22ms, Maximum = 28ms, Average = 25ms
Server: www
Address: 10.1.10.1

Name: yahoo.com
Addresses: 98.138.253.109
72.30.38.140
98.139.183.24


Pinging yahoo.com [72.30.38.140] with 32 bytes of data:
Reply from 72.30.38.140: bytes=32 time=132ms TTL=51
Reply from 72.30.38.140: bytes=32 time=95ms TTL=51

Ping statistics for 72.30.38.140:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 95ms, Maximum = 132ms, Average = 113ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
13...00 26 b6 60 b8 2d ......Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
11...00 26 22 f7 b2 c8 ......Realtek PCIe FE Family Controller
1...........................Software Loopback Interface 1
15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
12...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
14...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.254.1 192.168.254.110 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.254.0 255.255.255.0 On-link 192.168.254.110 281
192.168.254.110 255.255.255.255 On-link 192.168.254.110 281
192.168.254.255 255.255.255.255 On-link 192.168.254.110 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.254.110 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.254.110 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
14 58 ::/0 On-link
1 306 ::1/128 On-link
14 58 2001::/32 On-link
14 306 2001:0:9d38:953c:2c64:232a:3f57:191/128
On-link
13 281 fe80::/64 On-link
14 306 fe80::/64 On-link
14 306 fe80::2c64:232a:3f57:191/128
On-link
13 281 fe80::d57c:f935:93fd:50fa/128
On-link
1 306 ff00::/8 On-link
14 306 ff00::/8 On-link
13 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\system32\NLAapi.dll [51712] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog9 01 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [232448] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (01/12/2013 00:21:15 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/12/2013 09:15:15 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/09/2013 02:38:11 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/08/2013 04:31:12 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/06/2013 03:01:50 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/05/2013 08:50:13 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/02/2013 04:17:40 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (01/01/2013 07:15:11 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (12/29/2012 02:49:26 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (12/28/2012 08:46:49 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.


System errors:
=============
Error: (01/14/2013 04:23:24 PM) (Source: atikmdag) (User: )
Description: Display is not active

Error: (01/14/2013 04:23:24 PM) (Source: atikmdag) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/14/2013 04:15:13 PM) (Source: Service Control Manager) (User: )
Description: The AMD External Events Utility service terminated unexpectedly. It has done this 1 time(s).

Error: (01/14/2013 04:08:25 PM) (Source: atikmdag) (User: )
Description: Display is not active

Error: (01/14/2013 04:08:25 PM) (Source: atikmdag) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/14/2013 10:18:25 AM) (Source: atikmdag) (User: )
Description: Display is not active

Error: (01/14/2013 10:18:25 AM) (Source: atikmdag) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/12/2013 00:57:09 PM) (Source: atikmdag) (User: )
Description: Display is not active

Error: (01/12/2013 00:00:22 PM) (Source: atikmdag) (User: )
Description: Display is not active

Error: (01/12/2013 09:51:01 AM) (Source: atikmdag) (User: )
Description: Display is not active


Microsoft Office Sessions:
=========================

=========================== Installed Programs ============================

32 Bit HP CIO Components Installer (Version: 6.1.1)
8000A809_BasicWeb (Version: 50.0.165.000)
8000A809_Help_BasicWeb (Version: 1.00.0000)
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.2.443)
Adobe Acrobat 9 Pro - English, Français, Deutsch (Version: 9.2.0)
Adobe Acrobat 9.2.0 - CPSID_50026
Adobe AIR (Version: 1.1.0.5790)
Adobe Anchor Service CS4 (Version: 2.0)
Adobe Asset Services CS4 (Version: 4)
Adobe Bridge CS4 (Version: 3)
Adobe CMaps CS4 (Version: 2.0)
Adobe Color - Photoshop Specific CS4 (Version: 2.0)
Adobe Color EU Extra Settings CS4 (Version: 2.0)
Adobe Color JA Extra Settings CS4 (Version: 2.0)
Adobe Color NA Recommended Settings CS4 (Version: 2.0)
Adobe Color Video Profiles CS CS4 (Version: 2.0)
Adobe Creative Suite 4 Design Premium (Version: 4.0)
Adobe CSI CS4 (Version: 1)
Adobe Default Language CS4 (Version: 2.0)
Adobe Device Central CS4 (Version: 2)
Adobe Dreamweaver CS4 (Version: 10.0)
Adobe Drive CS4 (Version: 1)
Adobe Dynamiclink Support (Version: 1)
Adobe ExtendScript Toolkit CS4 (Version: 3.0.0)
Adobe Extension Manager CS4 (Version: 2.0)
Adobe Fireworks CS4 (Version: 10.0)
Adobe Flash CS4 (Version: 10.0)
Adobe Flash CS4 Extension - Flash Lite STI en (Version: 3.0)
Adobe Flash CS4 STI-en (Version: 10.0)
Adobe Flash Player 11 ActiveX (Version: 11.5.502.146)
Adobe Flash Player 11 Plugin (Version: 11.5.502.146)
Adobe Fonts All (Version: 2.0)
Adobe Illustrator CS4 (Version: 14.0)
Adobe InDesign CS4 (Version: 6.0)
Adobe InDesign CS4 Application Feature Set Files (Roman) (Version: 6.0)
Adobe InDesign CS4 Common Base Files (Version: 6.0)
Adobe InDesign CS4 Icon Handler (Version: 6.0)
Adobe Linguistics CS4 (Version: 4.0.0)
Adobe Media Encoder CS4 (Version: 1.0)
Adobe Media Encoder CS4 Importer (Version: 1.0)
Adobe Media Player (Version: 0.0.0)
Adobe Media Player (Version: 1.1)
Adobe Output Module (Version: 2.0)
Adobe PDF Library Files CS4 (Version: 9.0)
Adobe Photoshop CS4 (Version: 11.0)
Adobe Photoshop CS4 Support (Version: 11.0)
Adobe Reader XI (Version: 11.0.00)
Adobe Search for Help (Version: 1.0)
Adobe Service Manager Extension (Version: 1.0)
Adobe Setup (Version: 2.0)
Adobe SGM CS4 (Version: 3.0)
Adobe SING CS4 (Version: 2.0)
Adobe Type Support CS4 (Version: 9.0)
Adobe Update Manager CS4 (Version: 6.0.0)
Adobe Version Cue CS4 Server (Version: 4.0)
Adobe WinSoft Linguistics Plugin (Version: 1.1)
Adobe XMP Panels CS4 (Version: 2.0)
AdobeColorCommonSetCMYK (Version: 2.0)
AdobeColorCommonSetRGB (Version: 2.0)
Apple Application Support (Version: 2.3)
Apple Software Update (Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.732.0)
avast! Free Antivirus (Version: 7.0.1474.0)
Band-in-a-Box 2012 (Build 349)
Band-in-a-Box Server
BPDSoftware_Ini (Version: 1.00.0000)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2009.0729.2238.38827)
Catalyst Control Center Graphics Full Existing (Version: 2009.0729.2238.38827)
Catalyst Control Center Graphics Full New (Version: 2009.0729.2238.38827)
Catalyst Control Center Graphics Light (Version: 2009.0729.2238.38827)
Catalyst Control Center Graphics Previews Common (Version: 2009.0729.2238.38827)
Catalyst Control Center Graphics Previews Vista (Version: 2009.0729.2238.38827)
Catalyst Control Center InstallProxy (Version: 2009.0729.2238.38827)
Catalyst Control Center Localization All (Version: 2009.0729.2238.38827)
ccc-core-static (Version: 2009.0729.2238.38827)
ccc-utility (Version: 2009.0729.2238.38827)
CCC Help Chinese Standard (Version: 2009.0729.2237.38827)
CCC Help Chinese Traditional (Version: 2009.0729.2237.38827)
CCC Help Czech (Version: 2009.0729.2237.38827)
CCC Help Danish (Version: 2009.0729.2237.38827)
CCC Help Dutch (Version: 2009.0729.2237.38827)
CCC Help English (Version: 2009.0729.2237.38827)
CCC Help Finnish (Version: 2009.0729.2237.38827)
CCC Help French (Version: 2009.0729.2237.38827)
CCC Help German (Version: 2009.0729.2237.38827)
CCC Help Greek (Version: 2009.0729.2237.38827)
CCC Help Hungarian (Version: 2009.0729.2237.38827)
CCC Help Italian (Version: 2009.0729.2237.38827)
CCC Help Japanese (Version: 2009.0729.2237.38827)
CCC Help Korean (Version: 2009.0729.2237.38827)
CCC Help Norwegian (Version: 2009.0729.2237.38827)
CCC Help Polish (Version: 2009.0729.2237.38827)
CCC Help Portuguese (Version: 2009.0729.2237.38827)
CCC Help Russian (Version: 2009.0729.2237.38827)
CCC Help Spanish (Version: 2009.0729.2237.38827)
CCC Help Swedish (Version: 2009.0729.2237.38827)
CCC Help Thai (Version: 2009.0729.2237.38827)
CCC Help Turkish (Version: 2009.0729.2237.38827)
Celtx (2.7) (Version: 2.7 (en-US))
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Connect (Version: 1.0.0.1)
CorelDRAW Graphics Suite X4 - Capture (Version: 14.1)
CorelDRAW Graphics Suite X4 - Content (Version: 14.1)
CorelDRAW Graphics Suite X4 - Draw (Version: 14.1)
CorelDRAW Graphics Suite X4 - Filters (Version: 14.1)
CorelDRAW Graphics Suite X4 - FontNav (Version: 14.1)
CorelDRAW Graphics SUite X4 - ICA (Version: 14.1)
CorelDRAW Graphics Suite X4 - IPM (Version: 14.1)
CorelDRAW Graphics Suite X4 - Lang BR (Version: 14.1)
CorelDRAW Graphics Suite X4 - Lang EN (Version: 14.1)
CorelDRAW Graphics Suite X4 - Lang ES (Version: 14.1)
CorelDRAW Graphics Suite X4 - Lang FR (Version: 14.1)
CorelDRAW Graphics Suite X4 - PP (Version: 14.1)
CorelDRAW Graphics Suite X4 - VBA (Version: 14.1)
CorelDRAW Graphics Suite X4 (Version: 14.1)
CorelDRAW® Graphics Suite X4
CorelDRAW® Graphics Suite X4 - Windows Shell Extension
CorelDRAW® Graphics Suite X4 - Windows Shell Extension (Version: 1.1)
CoyoteWT 1.1
D3DX10 (Version: 15.4.2368.0902)
DirectX 9 Runtime (Version: 1.00.0000)
EMC 10 Content (Version: 1.0.035)
Eudora OSE (1.0) (Version: 1.0 (en-US))
FileZilla Client 3.6.0.2 (Version: 3.6.0.2)
Finale 2009 (Version: 14.2.r3.0)
FindThatFont! 1.0 (Version: 1.0)
Freemake Video Converter version 3.2.1 (Version: 3.2.1)
Freemake Video Downloader (Version: 3.4.3)
G7
Garritan Instruments for Finale 2009 (Version: v1.0.0.1)
Google Update Helper (Version: 1.3.21.123)
HL-2240 (Version: 1.0.7.0)
HP Officejet Pro 8000 A809 Series (Version: 13.0)
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
Java™ 6 Update 14 (Version: 6.0.140)
Junk Mail filter update (Version: 15.4.3502.0922)
kuler (Version: 2.0)
Label@Once 1.0 (Version: 1.0)
LG Burning Tool (Version: 6.2.5218a)
LG CyberLink LabelPrint (Version: 2.5.3624)
LG CyberLink Media Suite (Version: 8.0.2808)
LG CyberLink PowerBackup (Version: 2.5.6023)
LG CyberLink YouCam (Version: 2.0.3718)
LG ODD Auto Firmware Update (Version: 8.01.1209.01)
LSI V92 MOH Application
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Expression Design 3 (Version: 6.0.1739.0)
Microsoft Expression Encoder 3 (Version: 3.0.1332.0)
Microsoft Expression Web 3 (Version: 3.0.3813.0)
Microsoft Expression Web 3 SP1
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Office Professional 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Works (Version: 9.7.0621)
Mozilla Firefox 18.0 (x86 en-US) (Version: 18.0)
Mozilla Maintenance Service (Version: 18.0)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MusEdit
MyToshiba (Version: 2.2.0.3)
Native Instruments Sibelius Player G7
Network (Version: 130.0.579.000)
Neuratron PhotoScore Lite (Version: 3.00)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0)
PDF Settings CS4 (Version: 9.0)
PG Music DirectX Plugins 2.0.0.0
Photoshop Camera Raw (Version: 5.0)
Pixel Bender Toolkit (Version: 1.0)
PlayReady PC Runtime x86 (Version: 1.3.0)
QuickTime (Version: 7.73.80.64)
Realtek 8136 8168 8169 Ethernet Driver (Version: 1.00.0005)
Realtek High Definition Audio Driver (Version: 6.0.1.5904)
Realtek USB 2.0 Card Reader (Version: 6.1.7600.30101)
Realtek WLAN Driver (Version: 2.00.0006)
RiffMaster Pro 3.0
Roxio Activation Module (Version: 1.0)
Roxio BackOnTrack (Version: 1.3.0)
Roxio Burn (Version: 1.0.0)
Roxio Central Audio (Version: 3.8.0)
Roxio Central Copy (Version: 3.8.0)
Roxio Central Core (Version: 3.8.0)
Roxio Central Data (Version: 3.8.0)
Roxio Central Tools (Version: 3.8.0)
Roxio Easy CD and DVD Burning (Version: 10.3)
Roxio Easy CD and DVD Burning (Version: 10.3.104)
Roxio Express Labeler 3 (Version: 3.2.1)
Roxio File Backup (Version: 1.3.0)
Roxio Update Manager (Version: 6.0.0)
Sibelius Scorch
Sonic CinePlayer Decoder Pack (Version: 4.3.0)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Suite Shared Configuration CS4 (Version: 1.0)
Synaptics Pointing Device Driver (Version: 13.2.6.1)
Toolbox (Version: 130.0.648.000)
Toshiba Application and Driver Installer (Version: 9.0.0.9)
TOSHIBA Assist (Version: 2.01.11)
TOSHIBA ConfigFree (Version: 8.0.21)
TOSHIBA Disc Creator (Version: 2.1.0.1)
TOSHIBA DVD PLAYER (Version: 3.01.0.07-A)
TOSHIBA eco Utility (Version: 1.1.7.0)
TOSHIBA Extended Tiles for Windows Mobility Center (Version: 1.01.00)
TOSHIBA Face Recognition (Version: 3.1.0.32)
TOSHIBA Flash Cards Support Utility (Version: 1.63.0.4C)
TOSHIBA Hardware Setup (Version: 1.63.0.11C)
TOSHIBA HDD/SSD Alert (Version: 3.1.0.2)
TOSHIBA Internal Modem Region Select Utility (Version: 2.3.0.01)
TOSHIBA PC Health Monitor (Version: 1.4.1.0)
Toshiba Quality Application (Version: 1.001.0000)
TOSHIBA Recovery Media Creator (Version: 2.1.0.2)
TOSHIBA Service Station (Version: 2.1.33)
TOSHIBA Software Modem (Version: 2.2.97)
TOSHIBA Speech System Applications (Version: 1.00.2518)
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
TOSHIBA Supervisor Password (Version: 1.63.0.6C)
TOSHIBA Web Camera Application (Version: 1.1.1.4)
ToshibaRegistration (Version: 1.0.3)
Transcribe! 8.00 (Version: 8.00)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2760586) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Utility Common Driver (Version: 1.0.50.26C)
Visual Basic for Applications ® Core - English (Version: 6.4.99.69)
Visual Basic for Applications ® Core (Version: 6.4.99.69)
WebReg (Version: 130.0.132.017)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3502.0922)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8089.726)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
WinPcap 4.1.2 (Version: 4.1.0.2001)

========================= Memory info: ===================================

Percentage of memory in use: 37%
Total physical RAM: 2814.36 MB
Available physical RAM: 1751.91 MB
Total Pagefile: 5627 MB
Available Pagefile: 4489.15 MB
Total Virtual: 2047.88 MB
Available Virtual: 1934.73 MB

========================= Partitions: =====================================

1 Drive c: (TI103196W0D) (Fixed) (Total:223.33 GB) (Free:135.38 GB) NTFS

========================= Users: ========================================

User accounts for \\GUITARTEACHER

Administrator Guest RoyalOak_Guitar


**** End of log ****





----------------------------------------------------------------------
# AdwCleaner v2.105 - Logfile created 01/14/2013 at 16:33:06
# Updated 08/01/2013 by Xplode
# Operating system : Windows 7 Home Premium (32 bits)
# User : RoyalOak_Guitar - GUITARTEACHER
# Boot Mode : Normal
# Running from : C:\Users\RoyalOak_Guitar\Desktop\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\ProgramData\Partner

***** [Registry] *****

Key Deleted : HKLM\SOFTWARE\Software

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16457

[OK] Registry is clean.

-\\ Mozilla Firefox v18.0 (en-US)

File : C:\Users\RoyalOak_Guitar\AppData\Roaming\Mozilla\Firefox\Profiles\ecj0io5d.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [767 octets] - [14/01/2013 16:33:06]

########## EOF - C:\AdwCleaner[S1].txt - [826 octets] ##########

#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,428 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:01 AM

Posted 14 January 2013 - 06:15 PM

ok,go into ControlPanel and remove this. There is a security breach with it.
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
Java™ 6 Update 14 (Version: 6.0.140)

Reboot and install this...
Windows Offline Java Installer (64-bit)


Now please run these to see if it shows again.

Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results.


Rerun MBAM (MalwareBytes) like this:

Open MBAM in normal mode and click Update tab, select Check for Updates,when done
click Scanner tab,select Quick scan and scan (normal mode).
After scan click Remove Selected, Post new scan log and Reboot.

Please ask any needed questions,post logs and Let us know how the PC is running now.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 LittleGreenDots

LittleGreenDots
  • Topic Starter

  • Members
  • 444 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Metro Detroit Area
  • Local time:08:01 AM

Posted 14 January 2013 - 06:43 PM

I uninstalled the two Java programs you sited but could not find the installer listed in Control Panel > Programs and Features. When I tried to install the other Java you listed, it wouldn't install as I have a 32-bit system and the one you linked was for a 64 bit system.

I tried to find the 32-bit version on the Java site and the one they list is version 7 update 11. Should I install that one from their website?

http://www.java.com/en/download/inc/windows_new_xpi.jsp?locale=en

Please advise. Thank you.

Edited by LittleGreenDots, 14 January 2013 - 06:47 PM.


#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,428 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:01 AM

Posted 14 January 2013 - 07:06 PM

Don't fret the installer..

Windows Offline Java Installer(32-bit)

Edited by boopme, 14 January 2013 - 07:07 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 LittleGreenDots

LittleGreenDots
  • Topic Starter

  • Members
  • 444 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Metro Detroit Area
  • Local time:08:01 AM

Posted 15 January 2013 - 04:32 PM

Hi. I installed the Java installer from your link and ran TDSSKILLER as per your instructions. Then MalwareBytes, as per instructed. When I completed it, I did not find "Remove Selected."

Here are my logs:

16:08:55.0954 5324 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:08:56.0469 5324 ============================================================
16:08:56.0469 5324 Current date / time: 2013/01/15 16:08:56.0469
16:08:56.0469 5324 SystemInfo:
16:08:56.0469 5324
16:08:56.0469 5324 OS Version: 6.1.7600 ServicePack: 0.0
16:08:56.0469 5324 Product type: Workstation
16:08:56.0469 5324 ComputerName: GUITARTEACHER
16:08:56.0469 5324 UserName: RoyalOak_Guitar
16:08:56.0469 5324 Windows directory: C:\windows
16:08:56.0469 5324 System windows directory: C:\windows
16:08:56.0469 5324 Processor architecture: Intel x86
16:08:56.0469 5324 Number of processors: 2
16:08:56.0469 5324 Page size: 0x1000
16:08:56.0469 5324 Boot type: Normal boot
16:08:56.0469 5324 ============================================================
16:08:57.0842 5324 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
16:08:57.0842 5324 ============================================================
16:08:57.0842 5324 \Device\Harddisk0\DR0:
16:08:57.0842 5324 MBR partitions:
16:08:57.0842 5324 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x1BEAA800
16:08:57.0842 5324 ============================================================
16:08:57.0857 5324 C: <-> \Device\Harddisk0\DR0\Partition1
16:08:57.0857 5324 ============================================================
16:08:57.0857 5324 Initialize success
16:08:57.0857 5324 ============================================================
16:09:13.0333 4996 ============================================================
16:09:13.0333 4996 Scan started
16:09:13.0333 4996 Mode: Manual; TDLFS;
16:09:13.0333 4996 ============================================================
16:09:15.0407 4996 ================ Scan system memory ========================
16:09:15.0407 4996 System memory - ok
16:09:15.0407 4996 ================ Scan services =============================
16:09:15.0813 4996 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\windows\system32\DRIVERS\1394ohci.sys
16:09:15.0813 4996 1394ohci - ok
16:09:15.0829 4996 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\windows\system32\DRIVERS\ACPI.sys
16:09:15.0844 4996 ACPI - ok
16:09:15.0860 4996 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\windows\system32\DRIVERS\acpipmi.sys
16:09:15.0860 4996 AcpiPmi - ok
16:09:15.0891 4996 [ 6D7F09CD92A9FEF3A8EFCE66231FDD79 ] adfs C:\windows\system32\drivers\adfs.sys
16:09:15.0891 4996 adfs - ok
16:09:16.0000 4996 [ 57A3B9A69F14414ACE12AFD6BA701773 ] Adobe Version Cue CS4 C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe
16:09:16.0031 4996 Adobe Version Cue CS4 - ok
16:09:16.0109 4996 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
16:09:16.0109 4996 AdobeARMservice - ok
16:09:16.0203 4996 [ 424877CB9D5517F980FF7BACA2EB379D ] AdobeFlashPlayerUpdateSvc C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
16:09:16.0219 4996 AdobeFlashPlayerUpdateSvc - ok
16:09:16.0265 4996 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
16:09:16.0281 4996 adp94xx - ok
16:09:16.0328 4996 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
16:09:16.0328 4996 adpahci - ok
16:09:16.0359 4996 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
16:09:16.0359 4996 adpu320 - ok
16:09:16.0406 4996 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
16:09:16.0406 4996 AeLookupSvc - ok
16:09:16.0468 4996 [ 0DB7A48388D54D154EBEC120461A0FCD ] AFD C:\windows\system32\drivers\afd.sys
16:09:16.0484 4996 AFD - ok
16:09:16.0531 4996 [ 6416F9B6B220F0A890525C38235AFAD7 ] AgereModemAudio C:\Program Files\LSI SoftModem\agrsmsvc.exe
16:09:16.0531 4996 AgereModemAudio - ok
16:09:16.0577 4996 [ 07758C2196A62F207F77556311E7459A ] AgereSoftModem C:\windows\system32\DRIVERS\AGRSM.sys
16:09:16.0624 4996 AgereSoftModem - ok
16:09:16.0671 4996 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\windows\system32\DRIVERS\agp440.sys
16:09:16.0687 4996 agp440 - ok
16:09:16.0702 4996 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\windows\system32\DRIVERS\djsvs.sys
16:09:16.0702 4996 aic78xx - ok
16:09:16.0749 4996 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\windows\System32\alg.exe
16:09:16.0749 4996 ALG - ok
16:09:16.0780 4996 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\windows\system32\DRIVERS\aliide.sys
16:09:16.0780 4996 aliide - ok
16:09:16.0827 4996 [ 0BC6704F6FB4C63CDCB85401E8263A1B ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
16:09:16.0827 4996 AMD External Events Utility - ok
16:09:16.0858 4996 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\windows\system32\DRIVERS\amdagp.sys
16:09:16.0858 4996 amdagp - ok
16:09:16.0874 4996 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\windows\system32\DRIVERS\amdide.sys
16:09:16.0874 4996 amdide - ok
16:09:16.0889 4996 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
16:09:16.0889 4996 AmdK8 - ok
16:09:16.0905 4996 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
16:09:16.0905 4996 AmdPPM - ok
16:09:16.0936 4996 [ 19CE906B4CDC11FC4FEF5745F33A63B6 ] amdsata C:\windows\system32\drivers\amdsata.sys
16:09:16.0936 4996 amdsata - ok
16:09:16.0967 4996 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
16:09:16.0983 4996 amdsbs - ok
16:09:16.0999 4996 [ 869E67D66BE326A5A9159FBA8746FA70 ] amdxata C:\windows\system32\drivers\amdxata.sys
16:09:16.0999 4996 amdxata - ok
16:09:17.0014 4996 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\windows\system32\drivers\appid.sys
16:09:17.0014 4996 AppID - ok
16:09:17.0045 4996 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\windows\System32\appidsvc.dll
16:09:17.0045 4996 AppIDSvc - ok
16:09:17.0061 4996 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\windows\System32\appinfo.dll
16:09:17.0061 4996 Appinfo - ok
16:09:17.0092 4996 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\windows\system32\DRIVERS\arc.sys
16:09:17.0108 4996 arc - ok
16:09:17.0123 4996 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
16:09:17.0123 4996 arcsas - ok
16:09:17.0170 4996 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
16:09:17.0170 4996 aswFsBlk - ok
16:09:17.0201 4996 [ 62F9DCEC95F91B8E0203E85D344A7E65 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
16:09:17.0201 4996 aswMonFlt - ok
16:09:17.0248 4996 [ 81F638A2DD94ABBF0B43880AB38D8DBD ] aswRdr C:\windows\System32\Drivers\aswrdr2.sys
16:09:17.0248 4996 aswRdr - ok
16:09:17.0342 4996 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
16:09:17.0373 4996 aswSnx - ok
16:09:17.0420 4996 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\windows\system32\drivers\aswSP.sys
16:09:17.0435 4996 aswSP - ok
16:09:17.0482 4996 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\windows\system32\drivers\aswTdi.sys
16:09:17.0482 4996 aswTdi - ok
16:09:17.0498 4996 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
16:09:17.0513 4996 AsyncMac - ok
16:09:17.0513 4996 [ 338C86357871C167A96AB976519BF59E ] atapi C:\windows\system32\DRIVERS\atapi.sys
16:09:17.0513 4996 atapi - ok
16:09:17.0732 4996 [ C97BE8350FBCB1960B22FAD2E6C2B514 ] atikmdag C:\windows\system32\DRIVERS\atikmdag.sys
16:09:17.0857 4996 atikmdag - ok
16:09:17.0903 4996 [ B73C832088DD54B55E04FF6F9646AD8C ] AtiPcie C:\windows\system32\DRIVERS\AtiPcie.sys
16:09:17.0903 4996 AtiPcie - ok
16:09:17.0981 4996 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
16:09:17.0981 4996 AudioEndpointBuilder - ok
16:09:17.0997 4996 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\windows\System32\Audiosrv.dll
16:09:18.0013 4996 Audiosrv - ok
16:09:18.0044 4996 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
16:09:18.0044 4996 avast! Antivirus - ok
16:09:18.0091 4996 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\windows\System32\AxInstSV.dll
16:09:18.0091 4996 AxInstSV - ok
16:09:18.0122 4996 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\windows\system32\DRIVERS\bxvbdx.sys
16:09:18.0153 4996 b06bdrv - ok
16:09:18.0200 4996 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\windows\system32\DRIVERS\b57nd60x.sys
16:09:18.0215 4996 b57nd60x - ok
16:09:18.0262 4996 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\windows\System32\bdesvc.dll
16:09:18.0262 4996 BDESVC - ok
16:09:18.0278 4996 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\windows\system32\drivers\Beep.sys
16:09:18.0278 4996 Beep - ok
16:09:18.0309 4996 [ 85AC71C045CEB054ED48A7841AAE0C11 ] BFE C:\windows\System32\bfe.dll
16:09:18.0325 4996 BFE - ok
16:09:18.0371 4996 [ 53F476476F55A27F580661BDE09C4EC4 ] BITS C:\windows\System32\qmgr.dll
16:09:18.0387 4996 BITS - ok
16:09:18.0403 4996 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
16:09:18.0403 4996 blbdrive - ok
16:09:18.0465 4996 [ 9A5C671B7FBAE4865149BB11F59B91B2 ] bowser C:\windows\system32\DRIVERS\bowser.sys
16:09:18.0481 4996 bowser - ok
16:09:18.0496 4996 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
16:09:18.0496 4996 BrFiltLo - ok
16:09:18.0527 4996 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
16:09:18.0527 4996 BrFiltUp - ok
16:09:18.0590 4996 [ A0E691DC6589D4D2CBE373171D1A49E5 ] Browser C:\windows\System32\browser.dll
16:09:18.0590 4996 Browser - ok
16:09:18.0605 4996 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\windows\System32\Drivers\Brserid.sys
16:09:18.0621 4996 Brserid - ok
16:09:18.0621 4996 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
16:09:18.0621 4996 BrSerWdm - ok
16:09:18.0621 4996 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
16:09:18.0637 4996 BrUsbMdm - ok
16:09:18.0652 4996 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
16:09:18.0652 4996 BrUsbSer - ok
16:09:18.0730 4996 [ EA7E57F87D6FEE5FD6C5F813C04E8CD2 ] BrYNSvc C:\Program Files\Browny02\BrYNSvc.exe
16:09:18.0730 4996 BrYNSvc - ok
16:09:18.0761 4996 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
16:09:18.0761 4996 BTHMODEM - ok
16:09:18.0793 4996 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\windows\system32\bthserv.dll
16:09:18.0793 4996 bthserv - ok
16:09:18.0839 4996 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
16:09:18.0839 4996 cdfs - ok
16:09:18.0871 4996 [ BA6E70AA0E6091BC39DE29477D866A77 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
16:09:18.0871 4996 cdrom - ok
16:09:18.0902 4996 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\windows\System32\certprop.dll
16:09:18.0917 4996 CertPropSvc - ok
16:09:19.0011 4996 [ 1F8A319D29394F9CE1B7AE020DF2EBBF ] cfWiMAXService C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe
16:09:19.0011 4996 cfWiMAXService - ok
16:09:19.0058 4996 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\windows\system32\DRIVERS\circlass.sys
16:09:19.0058 4996 circlass - ok
16:09:19.0089 4996 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\windows\system32\CLFS.sys
16:09:19.0105 4996 CLFS - ok
16:09:19.0198 4996 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:09:19.0214 4996 clr_optimization_v2.0.50727_32 - ok
16:09:19.0261 4996 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:09:19.0292 4996 clr_optimization_v4.0.30319_32 - ok
16:09:19.0323 4996 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
16:09:19.0323 4996 CmBatt - ok
16:09:19.0354 4996 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\windows\system32\DRIVERS\cmdide.sys
16:09:19.0354 4996 cmdide - ok
16:09:19.0401 4996 [ DB5E008B3744DD60C8498CBBF2A1CFA6 ] CNG C:\windows\system32\Drivers\cng.sys
16:09:19.0432 4996 CNG - ok
16:09:19.0463 4996 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
16:09:19.0463 4996 Compbatt - ok
16:09:19.0495 4996 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
16:09:19.0495 4996 CompositeBus - ok
16:09:19.0510 4996 COMSysApp - ok
16:09:19.0541 4996 [ CAB0EEAF5295FC96DDD3E19DCE27E131 ] ConfigFree Service C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
16:09:19.0541 4996 ConfigFree Service - ok
16:09:19.0557 4996 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
16:09:19.0604 4996 crcdisk - ok
16:09:19.0666 4996 [ F2FDE6C8DBAAD44CC58D1E07E4AF4EED ] CryptSvc C:\windows\system32\cryptsvc.dll
16:09:19.0666 4996 CryptSvc - ok
16:09:19.0713 4996 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\windows\system32\rpcss.dll
16:09:19.0729 4996 DcomLaunch - ok
16:09:19.0760 4996 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\windows\System32\defragsvc.dll
16:09:19.0775 4996 defragsvc - ok
16:09:19.0822 4996 [ 83D1ECEA8FAAE75604C0FA49AC7AD996 ] DfsC C:\windows\system32\Drivers\dfsc.sys
16:09:19.0838 4996 DfsC - ok
16:09:19.0869 4996 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\windows\system32\dhcpcore.dll
16:09:19.0900 4996 Dhcp - ok
16:09:19.0931 4996 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\windows\system32\drivers\discache.sys
16:09:19.0931 4996 discache - ok
16:09:19.0963 4996 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\windows\system32\DRIVERS\disk.sys
16:09:19.0963 4996 Disk - ok
16:09:20.0025 4996 [ B15BE77A2BACF9C3177D27518AFE26A9 ] Dnscache C:\windows\System32\dnsrslvr.dll
16:09:20.0041 4996 Dnscache - ok
16:09:20.0072 4996 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\windows\System32\dot3svc.dll
16:09:20.0087 4996 dot3svc - ok
16:09:20.0134 4996 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\windows\system32\DRIVERS\Dot4.sys
16:09:20.0150 4996 Dot4 - ok
16:09:20.0181 4996 [ C25FEA07A8E7767E8B89AB96A3B96519 ] Dot4Print C:\windows\system32\DRIVERS\Dot4Prt.sys
16:09:20.0181 4996 Dot4Print - ok
16:09:20.0228 4996 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\windows\system32\DRIVERS\dot4usb.sys
16:09:20.0243 4996 dot4usb - ok
16:09:20.0275 4996 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\windows\system32\dps.dll
16:09:20.0290 4996 DPS - ok
16:09:20.0321 4996 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
16:09:20.0337 4996 drmkaud - ok
16:09:20.0384 4996 [ 1679A4669326CB1A67CC95658D273234 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
16:09:20.0431 4996 DXGKrnl - ok
16:09:20.0462 4996 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\windows\System32\eapsvc.dll
16:09:20.0462 4996 EapHost - ok
16:09:20.0696 4996 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\windows\system32\DRIVERS\evbdx.sys
16:09:20.0805 4996 ebdrv - ok
16:09:20.0836 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] EFS C:\windows\System32\lsass.exe
16:09:20.0836 4996 EFS - ok
16:09:20.0899 4996 [ 1697C39978CD69F6FBC15302EDCECE1F ] ehRecvr C:\windows\ehome\ehRecvr.exe
16:09:20.0899 4996 ehRecvr - ok
16:09:20.0930 4996 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\windows\ehome\ehsched.exe
16:09:20.0930 4996 ehSched - ok
16:09:20.0977 4996 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
16:09:21.0008 4996 elxstor - ok
16:09:21.0023 4996 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\windows\system32\DRIVERS\errdev.sys
16:09:21.0023 4996 ErrDev - ok
16:09:21.0086 4996 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\windows\system32\es.dll
16:09:21.0101 4996 EventSystem - ok
16:09:21.0133 4996 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\windows\system32\drivers\exfat.sys
16:09:21.0133 4996 exfat - ok
16:09:21.0164 4996 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\windows\system32\drivers\fastfat.sys
16:09:21.0164 4996 fastfat - ok
16:09:21.0211 4996 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\windows\system32\fxssvc.exe
16:09:21.0226 4996 Fax - ok
16:09:21.0257 4996 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\windows\system32\DRIVERS\fdc.sys
16:09:21.0257 4996 fdc - ok
16:09:21.0289 4996 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\windows\system32\fdPHost.dll
16:09:21.0289 4996 fdPHost - ok
16:09:21.0304 4996 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\windows\system32\fdrespub.dll
16:09:21.0320 4996 FDResPub - ok
16:09:21.0335 4996 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
16:09:21.0335 4996 FileInfo - ok
16:09:21.0351 4996 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\windows\system32\drivers\filetrace.sys
16:09:21.0351 4996 Filetrace - ok
16:09:21.0398 4996 [ 1F63900E2EB00101B9ACA2B7A870704E ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
16:09:21.0429 4996 FLEXnet Licensing Service - ok
16:09:21.0429 4996 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
16:09:21.0445 4996 flpydisk - ok
16:09:21.0460 4996 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
16:09:21.0460 4996 FltMgr - ok
16:09:21.0538 4996 [ 151258FC2EC8C48BDF8A53350AE0A676 ] FontCache C:\windows\system32\FntCache.dll
16:09:21.0569 4996 FontCache - ok
16:09:21.0632 4996 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
16:09:21.0647 4996 FontCache3.0.0.0 - ok
16:09:21.0741 4996 [ 0AD303363B7CB1EEB713A75EF4B0DCBE ] FreemakeVideoCapture C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
16:09:21.0757 4996 FreemakeVideoCapture - ok
16:09:21.0772 4996 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\windows\system32\drivers\FsDepends.sys
16:09:21.0788 4996 FsDepends - ok
16:09:21.0803 4996 [ 500A9814FD9446A8126858A5A7F7D273 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
16:09:21.0803 4996 Fs_Rec - ok
16:09:21.0850 4996 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
16:09:21.0850 4996 fvevol - ok
16:09:21.0897 4996 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
16:09:21.0897 4996 gagp30kx - ok
16:09:21.0944 4996 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\windows\System32\gpsvc.dll
16:09:21.0975 4996 gpsvc - ok
16:09:22.0084 4996 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
16:09:22.0084 4996 gupdate - ok
16:09:22.0100 4996 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
16:09:22.0100 4996 gupdatem - ok
16:09:22.0131 4996 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
16:09:22.0131 4996 hcw85cir - ok
16:09:22.0162 4996 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
16:09:22.0178 4996 HdAudAddService - ok
16:09:22.0193 4996 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
16:09:22.0209 4996 HDAudBus - ok
16:09:22.0209 4996 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
16:09:22.0209 4996 HidBatt - ok
16:09:22.0225 4996 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
16:09:22.0225 4996 HidBth - ok
16:09:22.0256 4996 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\windows\system32\DRIVERS\hidir.sys
16:09:22.0256 4996 HidIr - ok
16:09:22.0271 4996 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\windows\system32\hidserv.dll
16:09:22.0271 4996 hidserv - ok
16:09:22.0303 4996 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
16:09:22.0303 4996 HidUsb - ok
16:09:22.0318 4996 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\windows\system32\kmsvc.dll
16:09:22.0318 4996 hkmsvc - ok
16:09:22.0334 4996 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\windows\system32\ListSvc.dll
16:09:22.0334 4996 HomeGroupListener - ok
16:09:22.0381 4996 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\windows\system32\provsvc.dll
16:09:22.0396 4996 HomeGroupProvider - ok
16:09:22.0427 4996 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\windows\system32\DRIVERS\HpSAMD.sys
16:09:22.0427 4996 HpSAMD - ok
16:09:22.0537 4996 [ 83DB5DD8BE71CBA5447FBD7A48FDBEDA ] HPSLPSVC C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
16:09:22.0552 4996 HPSLPSVC - ok
16:09:22.0615 4996 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\windows\system32\drivers\HTTP.sys
16:09:22.0630 4996 HTTP - ok
16:09:22.0661 4996 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
16:09:22.0661 4996 hwpolicy - ok
16:09:22.0693 4996 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
16:09:22.0693 4996 i8042prt - ok
16:09:22.0724 4996 [ 71F1A494FEDF4B33C02C4A6A28D6D9E9 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
16:09:22.0739 4996 iaStorV - ok
16:09:22.0864 4996 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:09:22.0927 4996 idsvc - ok
16:09:22.0973 4996 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
16:09:22.0989 4996 iirsp - ok
16:09:23.0036 4996 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\windows\System32\ikeext.dll
16:09:23.0083 4996 IKEEXT - ok
16:09:23.0192 4996 [ E4A2E810CB2607C9C159C0DFB0BD4C88 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHDA.sys
16:09:23.0285 4996 IntcAzAudAddService - ok
16:09:23.0301 4996 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\windows\system32\DRIVERS\intelide.sys
16:09:23.0301 4996 intelide - ok
16:09:23.0332 4996 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
16:09:23.0332 4996 intelppm - ok
16:09:23.0395 4996 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\windows\system32\ipbusenum.dll
16:09:23.0395 4996 IPBusEnum - ok
16:09:23.0395 4996 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
16:09:23.0395 4996 IpFilterDriver - ok
16:09:23.0441 4996 [ 477397B432A256A50EE7E4339EB9EA14 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
16:09:23.0473 4996 iphlpsvc - ok
16:09:23.0488 4996 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\windows\system32\DRIVERS\IPMIDrv.sys
16:09:23.0504 4996 IPMIDRV - ok
16:09:23.0535 4996 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\windows\system32\drivers\ipnat.sys
16:09:23.0535 4996 IPNAT - ok
16:09:23.0566 4996 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\windows\system32\drivers\irenum.sys
16:09:23.0566 4996 IRENUM - ok
16:09:23.0582 4996 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\windows\system32\DRIVERS\isapnp.sys
16:09:23.0582 4996 isapnp - ok
16:09:23.0629 4996 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\windows\system32\DRIVERS\msiscsi.sys
16:09:23.0644 4996 iScsiPrt - ok
16:09:23.0675 4996 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
16:09:23.0675 4996 kbdclass - ok
16:09:23.0707 4996 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys
16:09:23.0722 4996 kbdhid - ok
16:09:23.0738 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] KeyIso C:\windows\system32\lsass.exe
16:09:23.0738 4996 KeyIso - ok
16:09:23.0785 4996 [ 52FC17C8589F11747D01D3CF592673D0 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
16:09:23.0800 4996 KSecDD - ok
16:09:23.0831 4996 [ 3E5474B03568CFAB834DA3C38E8C9EFA ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
16:09:23.0847 4996 KSecPkg - ok
16:09:23.0894 4996 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\windows\system32\msdtckrm.dll
16:09:23.0909 4996 KtmRm - ok
16:09:23.0956 4996 [ 8F6BF790D3168224C16F2AF68A84438C ] LanmanServer C:\windows\system32\srvsvc.dll
16:09:23.0972 4996 LanmanServer - ok
16:09:24.0003 4996 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\windows\System32\wkssvc.dll
16:09:24.0019 4996 LanmanWorkstation - ok
16:09:24.0065 4996 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
16:09:24.0065 4996 lltdio - ok
16:09:24.0097 4996 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\windows\System32\lltdsvc.dll
16:09:24.0112 4996 lltdsvc - ok
16:09:24.0112 4996 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\windows\System32\lmhsvc.dll
16:09:24.0128 4996 lmhosts - ok
16:09:24.0159 4996 [ 6E3D3816749E107883EEC5734CE44493 ] LPCFilter C:\windows\system32\DRIVERS\LPCFilter.sys
16:09:24.0159 4996 LPCFilter - ok
16:09:24.0206 4996 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
16:09:24.0206 4996 LSI_FC - ok
16:09:24.0221 4996 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
16:09:24.0221 4996 LSI_SAS - ok
16:09:24.0221 4996 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
16:09:24.0221 4996 LSI_SAS2 - ok
16:09:24.0237 4996 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
16:09:24.0237 4996 LSI_SCSI - ok
16:09:24.0268 4996 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\windows\system32\drivers\luafv.sys
16:09:24.0268 4996 luafv - ok
16:09:24.0284 4996 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
16:09:24.0284 4996 Mcx2Svc - ok
16:09:24.0315 4996 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\windows\system32\DRIVERS\megasas.sys
16:09:24.0315 4996 megasas - ok
16:09:24.0331 4996 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
16:09:24.0346 4996 MegaSR - ok
16:09:24.0362 4996 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\windows\system32\mmcss.dll
16:09:24.0362 4996 MMCSS - ok
16:09:24.0377 4996 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\windows\system32\drivers\modem.sys
16:09:24.0377 4996 Modem - ok
16:09:24.0409 4996 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\windows\system32\DRIVERS\monitor.sys
16:09:24.0409 4996 monitor - ok
16:09:24.0424 4996 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
16:09:24.0440 4996 mouclass - ok
16:09:24.0455 4996 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
16:09:24.0455 4996 mouhid - ok
16:09:24.0487 4996 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\windows\system32\drivers\mountmgr.sys
16:09:24.0487 4996 mountmgr - ok
16:09:24.0565 4996 [ 730A519505621DF46BCBF9CDAC9FB6AD ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
16:09:24.0580 4996 MozillaMaintenance - ok
16:09:24.0611 4996 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\windows\system32\DRIVERS\mpio.sys
16:09:24.0611 4996 mpio - ok
16:09:24.0658 4996 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
16:09:24.0674 4996 mpsdrv - ok
16:09:24.0721 4996 [ 5CD996CECF45CBC3E8D109C86B82D69E ] MpsSvc C:\windows\system32\mpssvc.dll
16:09:24.0752 4996 MpsSvc - ok
16:09:24.0767 4996 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
16:09:24.0767 4996 MRxDAV - ok
16:09:24.0830 4996 [ CA7570E42522E24324A12161DB14EC02 ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
16:09:24.0845 4996 mrxsmb - ok
16:09:24.0877 4996 [ F965C3AB2B2AE5C378F4562486E35051 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
16:09:24.0877 4996 mrxsmb10 - ok
16:09:24.0908 4996 [ 25C38264A3C72594DD21D355D70D7A5D ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
16:09:24.0908 4996 mrxsmb20 - ok
16:09:24.0939 4996 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\windows\system32\DRIVERS\msahci.sys
16:09:24.0939 4996 msahci - ok
16:09:24.0955 4996 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\windows\system32\DRIVERS\msdsm.sys
16:09:24.0955 4996 msdsm - ok
16:09:24.0986 4996 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\windows\System32\msdtc.exe
16:09:24.0986 4996 MSDTC - ok
16:09:25.0017 4996 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\windows\system32\drivers\Msfs.sys
16:09:25.0017 4996 Msfs - ok
16:09:25.0048 4996 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
16:09:25.0048 4996 mshidkmdf - ok
16:09:25.0064 4996 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\windows\system32\DRIVERS\msisadrv.sys
16:09:25.0064 4996 msisadrv - ok
16:09:25.0095 4996 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\windows\system32\iscsiexe.dll
16:09:25.0111 4996 MSiSCSI - ok
16:09:25.0111 4996 msiserver - ok
16:09:25.0142 4996 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
16:09:25.0142 4996 MSKSSRV - ok
16:09:25.0173 4996 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
16:09:25.0173 4996 MSPCLOCK - ok
16:09:25.0189 4996 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
16:09:25.0189 4996 MSPQM - ok
16:09:25.0220 4996 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\windows\system32\drivers\MsRPC.sys
16:09:25.0220 4996 MsRPC - ok
16:09:25.0235 4996 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
16:09:25.0235 4996 mssmbios - ok
16:09:25.0251 4996 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
16:09:25.0251 4996 MSTEE - ok
16:09:25.0267 4996 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
16:09:25.0267 4996 MTConfig - ok
16:09:25.0282 4996 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\windows\system32\Drivers\mup.sys
16:09:25.0282 4996 Mup - ok
16:09:25.0313 4996 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\windows\system32\qagentRT.dll
16:09:25.0345 4996 napagent - ok
16:09:25.0391 4996 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
16:09:25.0391 4996 NativeWifiP - ok
16:09:25.0423 4996 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\windows\system32\drivers\ndis.sys
16:09:25.0438 4996 NDIS - ok
16:09:25.0469 4996 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
16:09:25.0469 4996 NdisCap - ok
16:09:25.0485 4996 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
16:09:25.0501 4996 NdisTapi - ok
16:09:25.0516 4996 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
16:09:25.0547 4996 Ndisuio - ok
16:09:25.0579 4996 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
16:09:25.0579 4996 NdisWan - ok
16:09:25.0594 4996 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
16:09:25.0594 4996 NDProxy - ok
16:09:25.0641 4996 [ 510C138564486FF926A3F773205C63D1 ] Net Driver HPZ12 C:\windows\system32\HPZinw12.dll
16:09:25.0641 4996 Net Driver HPZ12 - ok
16:09:25.0672 4996 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
16:09:25.0672 4996 NetBIOS - ok
16:09:25.0688 4996 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
16:09:25.0703 4996 NetBT - ok
16:09:25.0703 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] Netlogon C:\windows\system32\lsass.exe
16:09:25.0719 4996 Netlogon - ok
16:09:25.0766 4996 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\windows\System32\netman.dll
16:09:25.0766 4996 Netman - ok
16:09:25.0797 4996 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\windows\System32\netprofm.dll
16:09:25.0813 4996 netprofm - ok
16:09:25.0828 4996 [ FE2AA5A684B0DD9B1FAE57B7817C198B ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:09:25.0828 4996 NetTcpPortSharing - ok
16:09:25.0875 4996 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
16:09:25.0875 4996 nfrd960 - ok
16:09:25.0906 4996 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\windows\System32\nlasvc.dll
16:09:25.0937 4996 NlaSvc - ok
16:09:26.0015 4996 [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] npf C:\windows\system32\drivers\npf.sys
16:09:26.0015 4996 npf - ok
16:09:26.0031 4996 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\windows\system32\drivers\Npfs.sys
16:09:26.0047 4996 Npfs - ok
16:09:26.0078 4996 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\windows\system32\nsisvc.dll
16:09:26.0078 4996 nsi - ok
16:09:26.0093 4996 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
16:09:26.0109 4996 nsiproxy - ok
16:09:26.0203 4996 [ 5126C5402C730C2A953275D8497A4715 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
16:09:26.0249 4996 Ntfs - ok
16:09:26.0296 4996 [ F9756A98D69098DCA8945D62858A812C ] Null C:\windows\system32\drivers\Null.sys
16:09:26.0296 4996 Null - ok
16:09:26.0312 4996 [ F1B0BED906F97E16F6D0C3629D2F21C6 ] nvraid C:\windows\system32\drivers\nvraid.sys
16:09:26.0312 4996 nvraid - ok
16:09:26.0343 4996 [ 4520B63899E867F354EE012D34E11536 ] nvstor C:\windows\system32\drivers\nvstor.sys
16:09:26.0343 4996 nvstor - ok
16:09:26.0374 4996 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\windows\system32\DRIVERS\nv_agp.sys
16:09:26.0374 4996 nv_agp - ok
16:09:26.0530 4996 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
16:09:26.0530 4996 odserv - ok
16:09:26.0561 4996 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\windows\system32\DRIVERS\ohci1394.sys
16:09:26.0561 4996 ohci1394 - ok
16:09:26.0624 4996 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:09:26.0624 4996 ose - ok
16:09:26.0671 4996 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\windows\system32\pnrpsvc.dll
16:09:26.0702 4996 p2pimsvc - ok
16:09:26.0717 4996 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\windows\system32\p2psvc.dll
16:09:26.0749 4996 p2psvc - ok
16:09:26.0780 4996 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\windows\system32\DRIVERS\parport.sys
16:09:26.0780 4996 Parport - ok
16:09:26.0811 4996 [ 66D3415C159741ADE7038A277EFFF99F ] partmgr C:\windows\system32\drivers\partmgr.sys
16:09:26.0811 4996 partmgr - ok
16:09:26.0842 4996 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\windows\system32\DRIVERS\parvdm.sys
16:09:26.0858 4996 Parvdm - ok
16:09:26.0889 4996 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\windows\System32\pcasvc.dll
16:09:26.0905 4996 PcaSvc - ok
16:09:26.0936 4996 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\windows\system32\DRIVERS\pci.sys
16:09:26.0951 4996 pci - ok
16:09:26.0983 4996 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\windows\system32\DRIVERS\pciide.sys
16:09:26.0983 4996 pciide - ok
16:09:26.0998 4996 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
16:09:27.0014 4996 pcmcia - ok
16:09:27.0014 4996 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\windows\system32\drivers\pcw.sys
16:09:27.0029 4996 pcw - ok
16:09:27.0061 4996 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\windows\system32\drivers\peauth.sys
16:09:27.0092 4996 PEAUTH - ok
16:09:27.0139 4996 [ 1B5011DD8D57F53AED31FF0F7D635802 ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys
16:09:27.0139 4996 PGEffect - ok
16:09:27.0232 4996 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\windows\system32\pla.dll
16:09:27.0295 4996 pla - ok
16:09:27.0357 4996 [ 71DEF5EC79774C798342D0EA16E41780 ] PlugPlay C:\windows\system32\umpnpmgr.dll
16:09:27.0373 4996 PlugPlay - ok
16:09:27.0419 4996 [ 37E5E8FFBAD35605DAEEC3224EA0E465 ] Pml Driver HPZ12 C:\windows\system32\HPZipm12.dll
16:09:27.0419 4996 Pml Driver HPZ12 - ok
16:09:27.0435 4996 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
16:09:27.0451 4996 PNRPAutoReg - ok
16:09:27.0466 4996 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\windows\system32\pnrpsvc.dll
16:09:27.0466 4996 PNRPsvc - ok
16:09:27.0513 4996 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
16:09:27.0513 4996 PolicyAgent - ok
16:09:27.0560 4996 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\windows\system32\umpo.dll
16:09:27.0560 4996 Power - ok
16:09:27.0607 4996 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
16:09:27.0607 4996 PptpMiniport - ok
16:09:27.0622 4996 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\windows\system32\DRIVERS\processr.sys
16:09:27.0622 4996 Processor - ok
16:09:27.0685 4996 [ AEA3BDBDBA667AA6F678CB38907E4F5E ] ProfSvc C:\windows\system32\profsvc.dll
16:09:27.0700 4996 ProfSvc - ok
16:09:27.0731 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] ProtectedStorage C:\windows\system32\lsass.exe
16:09:27.0731 4996 ProtectedStorage - ok
16:09:27.0778 4996 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\windows\system32\DRIVERS\pacer.sys
16:09:27.0778 4996 Psched - ok
16:09:27.0825 4996 [ 5491E4E7D93804F43ABE8CE3C39F5A86 ] PxHelp20 C:\windows\system32\Drivers\PxHelp20.sys
16:09:27.0841 4996 PxHelp20 - ok
16:09:27.0919 4996 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
16:09:27.0981 4996 ql2300 - ok
16:09:28.0012 4996 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
16:09:28.0012 4996 ql40xx - ok
16:09:28.0043 4996 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\windows\system32\qwave.dll
16:09:28.0059 4996 QWAVE - ok
16:09:28.0075 4996 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
16:09:28.0075 4996 QWAVEdrv - ok
16:09:28.0090 4996 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
16:09:28.0090 4996 RasAcd - ok
16:09:28.0121 4996 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
16:09:28.0137 4996 RasAgileVpn - ok
16:09:28.0168 4996 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\windows\System32\rasauto.dll
16:09:28.0184 4996 RasAuto - ok
16:09:28.0199 4996 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
16:09:28.0215 4996 Rasl2tp - ok
16:09:28.0231 4996 [ 0CE66EC736B7FC526D78F7624C7D2A94 ] RasMan C:\windows\System32\rasmans.dll
16:09:28.0246 4996 RasMan - ok
16:09:28.0277 4996 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
16:09:28.0277 4996 RasPppoe - ok
16:09:28.0293 4996 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
16:09:28.0293 4996 RasSstp - ok
16:09:28.0309 4996 [ 835D7E81BF517A3B72384BDCC85E1CE6 ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
16:09:28.0309 4996 rdbss - ok
16:09:28.0340 4996 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
16:09:28.0355 4996 rdpbus - ok
16:09:28.0355 4996 [ 1E016846895B15A99F9A176A05029075 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
16:09:28.0355 4996 RDPCDD - ok
16:09:28.0371 4996 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
16:09:28.0387 4996 RDPENCDD - ok
16:09:28.0402 4996 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
16:09:28.0402 4996 RDPREFMP - ok
16:09:28.0449 4996 [ C5B8D47A4688DE9D335204EA757C2240 ] RDPWD C:\windows\system32\drivers\RDPWD.sys
16:09:28.0465 4996 RDPWD - ok
16:09:28.0496 4996 [ 4EA225BF1CF05E158853F30A99CA29A7 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
16:09:28.0496 4996 rdyboost - ok
16:09:28.0543 4996 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\windows\System32\mprdim.dll
16:09:28.0558 4996 RemoteAccess - ok
16:09:28.0589 4996 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\windows\system32\regsvc.dll
16:09:28.0605 4996 RemoteRegistry - ok
16:09:28.0855 4996 [ 05FC44D32A144925EAE45570029FD6E1 ] RoxMediaDB10 C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
16:09:28.0964 4996 RoxMediaDB10 - ok
16:09:29.0011 4996 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
16:09:29.0026 4996 RpcEptMapper - ok
16:09:29.0057 4996 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\windows\system32\locator.exe
16:09:29.0057 4996 RpcLocator - ok
16:09:29.0073 4996 [ B82CD39E336973359D7C9BF911E8E84F ] RpcSs C:\windows\system32\rpcss.dll
16:09:29.0089 4996 RpcSs - ok
16:09:29.0120 4996 RSELSVC - ok
16:09:29.0182 4996 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
16:09:29.0182 4996 rspndr - ok
16:09:29.0260 4996 [ EF8B2AFC3C0751C5E5A59983C8893260 ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys
16:09:29.0260 4996 RSUSBSTOR - ok
16:09:29.0291 4996 [ 26A9D6227D12B9D9DA5A81BB9B55D810 ] RTL8167 C:\windows\system32\DRIVERS\Rt86win7.sys
16:09:29.0291 4996 RTL8167 - ok
16:09:29.0323 4996 [ FD0B1D3CE2E7DEBD0AE8456494D21488 ] rtl8192se C:\windows\system32\DRIVERS\rtl8192se.sys
16:09:29.0354 4996 rtl8192se - ok
16:09:29.0354 4996 RtsUIR - ok
16:09:29.0401 4996 [ AABB1D240862349181F5350DD62FAAE7 ] RxFilter C:\windows\system32\DRIVERS\RxFilter.sys
16:09:29.0401 4996 RxFilter - ok
16:09:29.0432 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] SamSs C:\windows\system32\lsass.exe
16:09:29.0432 4996 SamSs - ok
16:09:29.0463 4996 [ 34EE0C44B724E3E4CE2EFF29126DE5B5 ] sbp2port C:\windows\system32\DRIVERS\sbp2port.sys
16:09:29.0463 4996 sbp2port - ok
16:09:29.0494 4996 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\windows\System32\SCardSvr.dll
16:09:29.0510 4996 SCardSvr - ok
16:09:29.0525 4996 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
16:09:29.0525 4996 scfilter - ok
16:09:29.0619 4996 [ DF1E5C82E4D09CF8105CC644980C4803 ] Schedule C:\windows\system32\schedsvc.dll
16:09:29.0650 4996 Schedule - ok
16:09:29.0650 4996 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] SCPolicySvc C:\windows\System32\certprop.dll
16:09:29.0666 4996 SCPolicySvc - ok
16:09:29.0681 4996 [ 5FD90ABDBFAEE85986802622CBB03446 ] SDRSVC C:\windows\System32\SDRSVC.dll
16:09:29.0681 4996 SDRSVC - ok
16:09:29.0713 4996 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\windows\system32\drivers\secdrv.sys
16:09:29.0713 4996 secdrv - ok
16:09:29.0728 4996 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\windows\system32\seclogon.dll
16:09:29.0744 4996 seclogon - ok
16:09:29.0759 4996 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\windows\System32\sens.dll
16:09:29.0775 4996 SENS - ok
16:09:29.0791 4996 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\windows\system32\sensrsvc.dll
16:09:29.0806 4996 SensrSvc - ok
16:09:29.0837 4996 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\windows\system32\DRIVERS\serenum.sys
16:09:29.0853 4996 Serenum - ok
16:09:29.0853 4996 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\windows\system32\DRIVERS\serial.sys
16:09:29.0869 4996 Serial - ok
16:09:29.0884 4996 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
16:09:29.0884 4996 sermouse - ok
16:09:29.0915 4996 [ 8F55CE568C543D5ADF45C409D16718FC ] SessionEnv C:\windows\system32\sessenv.dll
16:09:29.0915 4996 SessionEnv - ok
16:09:29.0947 4996 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\windows\system32\DRIVERS\sffdisk.sys
16:09:29.0947 4996 sffdisk - ok
16:09:29.0962 4996 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\windows\system32\DRIVERS\sffp_mmc.sys
16:09:29.0962 4996 sffp_mmc - ok
16:09:29.0962 4996 [ A0708BBD07D245C06FF9DE549CA47185 ] sffp_sd C:\windows\system32\DRIVERS\sffp_sd.sys
16:09:29.0962 4996 sffp_sd - ok
16:09:29.0993 4996 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
16:09:29.0993 4996 sfloppy - ok
16:09:30.0025 4996 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\windows\System32\ipnathlp.dll
16:09:30.0025 4996 SharedAccess - ok
16:09:30.0071 4996 [ CD2E48FA5B29EE2B3B5858056D246EF2 ] ShellHWDetection C:\windows\System32\shsvcs.dll
16:09:30.0087 4996 ShellHWDetection - ok
16:09:30.0103 4996 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\windows\system32\DRIVERS\sisagp.sys
16:09:30.0103 4996 sisagp - ok
16:09:30.0134 4996 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
16:09:30.0134 4996 SiSRaid2 - ok
16:09:30.0134 4996 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
16:09:30.0134 4996 SiSRaid4 - ok
16:09:30.0149 4996 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\windows\system32\DRIVERS\smb.sys
16:09:30.0165 4996 Smb - ok
16:09:30.0196 4996 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\windows\System32\snmptrap.exe
16:09:30.0212 4996 SNMPTRAP - ok
16:09:30.0212 4996 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\windows\system32\drivers\spldr.sys
16:09:30.0212 4996 spldr - ok
16:09:30.0290 4996 [ E17323B0AA9FB3FF9945731D736EDA2F ] Spooler C:\windows\System32\spoolsv.exe
16:09:30.0290 4996 Spooler - ok
16:09:30.0430 4996 [ 4C287F9069FEDBD791178876EE9DE536 ] sppsvc C:\windows\system32\sppsvc.exe
16:09:30.0493 4996 sppsvc - ok
16:09:30.0524 4996 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7 ] sppuinotify C:\windows\system32\sppuinotify.dll
16:09:30.0539 4996 sppuinotify - ok
16:09:30.0586 4996 [ C4A027B8C0BD3FC0699F41FA5E9E0C87 ] srv C:\windows\system32\DRIVERS\srv.sys
16:09:30.0617 4996 srv - ok
16:09:30.0633 4996 [ 414BB592CAD8A79649D01F9D94318FB3 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
16:09:30.0633 4996 srv2 - ok
16:09:30.0664 4996 [ FF207D67700AA18242AAF985D3E7D8F4 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
16:09:30.0664 4996 srvnet - ok
16:09:30.0695 4996 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
16:09:30.0695 4996 SSDPSRV - ok
16:09:30.0727 4996 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\windows\system32\sstpsvc.dll
16:09:30.0727 4996 SstpSvc - ok
16:09:30.0758 4996 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
16:09:30.0773 4996 stexstor - ok
16:09:30.0805 4996 [ A22825E7BB7018E8AF3E229A5AF17221 ] StiSvc C:\windows\System32\wiaservc.dll
16:09:30.0836 4996 StiSvc - ok
16:09:30.0898 4996 [ FF5EB78AF7DFB68C2FB363537AAF753E ] stllssvr C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
16:09:30.0914 4996 stllssvr - ok
16:09:30.0929 4996 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\windows\system32\DRIVERS\swenum.sys
16:09:30.0929 4996 swenum - ok
16:09:30.0961 4996 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\windows\System32\swprv.dll
16:09:30.0992 4996 swprv - ok
16:09:31.0039 4996 [ 8BD10DC8809DC69A1C5A795CB10ADD76 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
16:09:31.0039 4996 SynTP - ok
16:09:31.0101 4996 [ 04105C8DA62353589C29BDAEB8D88BD8 ] SysMain C:\windows\system32\sysmain.dll
16:09:31.0132 4996 SysMain - ok
16:09:31.0148 4996 [ FCFB6C552FBC0DA299799CBD50AD9FD4 ] TabletInputService C:\windows\System32\TabSvc.dll
16:09:31.0179 4996 TabletInputService - ok
16:09:31.0210 4996 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF ] TapiSrv C:\windows\System32\tapisrv.dll
16:09:31.0226 4996 TapiSrv - ok
16:09:31.0241 4996 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\windows\System32\tbssvc.dll
16:09:31.0241 4996 TBS - ok
16:09:31.0351 4996 [ 55E9965552741F3850CB22CBBA9671ED ] Tcpip C:\windows\system32\drivers\tcpip.sys
16:09:31.0382 4996 Tcpip - ok
16:09:31.0413 4996 [ 55E9965552741F3850CB22CBBA9671ED ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
16:09:31.0429 4996 TCPIP6 - ok
16:09:31.0460 4996 [ E64444523ADD154F86567C469BC0B17F ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
16:09:31.0460 4996 tcpipreg - ok
16:09:31.0507 4996 [ 4084EA00D50C858D6F9038F86AE2E2D0 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys
16:09:31.0507 4996 tdcmdpst - ok
16:09:31.0538 4996 [ 1875C1490D99E70E449E3AFAE9FCBADF ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
16:09:31.0538 4996 TDPIPE - ok
16:09:31.0585 4996 [ 7156308896D34EA75A582F9A09E50C17 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
16:09:31.0600 4996 TDTCP - ok
16:09:31.0631 4996 [ CB39E896A2A83702D1737BFD402B3542 ] tdx C:\windows\system32\DRIVERS\tdx.sys
16:09:31.0647 4996 tdx - ok
16:09:31.0678 4996 [ C36F41EE20E6999DBF4B0425963268A5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
16:09:31.0678 4996 TermDD - ok
16:09:31.0725 4996 [ A01E50A04D7B1960B33E92B9080E6A94 ] TermService C:\windows\System32\termsrv.dll
16:09:31.0772 4996 TermService - ok
16:09:31.0787 4996 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\windows\system32\themeservice.dll
16:09:31.0787 4996 Themes - ok
16:09:31.0803 4996 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\windows\system32\mmcss.dll
16:09:31.0803 4996 THREADORDER - ok
16:09:31.0865 4996 [ 32577B987AE5401038451BB392CB8D89 ] TMachInfo C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
16:09:31.0881 4996 TMachInfo - ok
16:09:31.0912 4996 [ FE65D33B7D4FF07DD1D29526A48DF810 ] TODDSrv C:\Windows\system32\TODDSrv.exe
16:09:31.0943 4996 TODDSrv - ok
16:09:31.0990 4996 [ 0B5FA26E0C8A8E07A6DF3DF4E5711DA8 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe
16:09:32.0006 4996 TOSHIBA eco Utility Service - ok
16:09:32.0053 4996 [ 67C1DA40D78C92622081A3E780C926B2 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
16:09:32.0053 4996 TOSHIBA HDD SSD Alert Service - ok
16:09:32.0115 4996 [ 969377943FE7284609BABBAB4E06B93C ] tos_sps32 C:\windows\system32\DRIVERS\tos_sps32.sys
16:09:32.0131 4996 tos_sps32 - ok
16:09:32.0209 4996 [ 31D2881B0647F2B09B118B9B50C02888 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
16:09:32.0209 4996 TPCHSrv - ok
16:09:32.0240 4996 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\windows\System32\trkwks.dll
16:09:32.0255 4996 TrkWks - ok
16:09:32.0302 4996 [ 41A4C781D2286208D397D72099304133 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
16:09:32.0302 4996 TrustedInstaller - ok
16:09:32.0318 4996 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
16:09:32.0318 4996 tssecsrv - ok
16:09:32.0349 4996 [ 3E461D890A97F9D4C168F5FDA36E1D00 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
16:09:32.0365 4996 tunnel - ok
16:09:32.0396 4996 [ FC24015B4052600C324C43E3A79C0664 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS
16:09:32.0396 4996 TVALZ - ok
16:09:32.0443 4996 [ 866462F5AE3F375EF83EF9DCE436031C ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys
16:09:32.0443 4996 TVALZFL - ok
16:09:32.0489 4996 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
16:09:32.0505 4996 uagp35 - ok
16:09:32.0521 4996 [ 09CC3E16F8E5EE7168E01CF8FCBE061A ] udfs C:\windows\system32\DRIVERS\udfs.sys
16:09:32.0536 4996 udfs - ok
16:09:32.0567 4996 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\windows\system32\UI0Detect.exe
16:09:32.0567 4996 UI0Detect - ok
16:09:32.0614 4996 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\windows\system32\DRIVERS\uliagpkx.sys
16:09:32.0614 4996 uliagpkx - ok
16:09:32.0645 4996 [ 049B3A50B3D646BAEEEE9EEC9B0668DC ] umbus C:\windows\system32\DRIVERS\umbus.sys
16:09:32.0645 4996 umbus - ok
16:09:32.0645 4996 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\windows\system32\DRIVERS\umpass.sys
16:09:32.0645 4996 UmPass - ok
16:09:32.0677 4996 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\windows\System32\upnphost.dll
16:09:32.0677 4996 upnphost - ok
16:09:32.0708 4996 [ C31AE588E403042632DC796CF09E30B0 ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
16:09:32.0708 4996 usbccgp - ok
16:09:32.0723 4996 USBCCID - ok
16:09:32.0755 4996 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\windows\system32\DRIVERS\usbcir.sys
16:09:32.0755 4996 usbcir - ok
16:09:32.0770 4996 [ E4C436D914768CE965D5E659BA7EEBD8 ] usbehci C:\windows\system32\DRIVERS\usbehci.sys
16:09:32.0770 4996 usbehci - ok
16:09:32.0801 4996 [ BDCD7156EC37448F08633FD899823620 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
16:09:32.0801 4996 usbhub - ok
16:09:32.0833 4996 [ EB2D819A639015253C871CDA09D91D58 ] usbohci C:\windows\system32\DRIVERS\usbohci.sys
16:09:32.0833 4996 usbohci - ok
16:09:32.0879 4996 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
16:09:32.0879 4996 usbprint - ok
16:09:32.0895 4996 [ 1C4287739A93594E57E2A9E6A3ED7353 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
16:09:32.0895 4996 USBSTOR - ok
16:09:32.0911 4996 [ 22480BF4E5A09192E5E30BA4DDE79FA4 ] usbuhci C:\windows\system32\drivers\usbuhci.sys
16:09:32.0926 4996 usbuhci - ok
16:09:32.0973 4996 [ B5F6A992D996282B7FAE7048E50AF83A ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
16:09:32.0989 4996 usbvideo - ok
16:09:33.0020 4996 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\windows\System32\uxsms.dll
16:09:33.0035 4996 UxSms - ok
16:09:33.0035 4996 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] VaultSvc C:\windows\system32\lsass.exe
16:09:33.0051 4996 VaultSvc - ok
16:09:33.0082 4996 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\windows\system32\DRIVERS\vdrvroot.sys
16:09:33.0082 4996 vdrvroot - ok
16:09:33.0113 4996 [ 8C4E7C49D3641BC9E299E466A7F8867D ] vds C:\windows\System32\vds.exe
16:09:33.0129 4996 vds - ok
16:09:33.0145 4996 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\windows\system32\DRIVERS\vgapnp.sys
16:09:33.0145 4996 vga - ok
16:09:33.0176 4996 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\windows\System32\drivers\vga.sys
16:09:33.0176 4996 VgaSave - ok
16:09:33.0207 4996 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583 ] vhdmp C:\windows\system32\DRIVERS\vhdmp.sys
16:09:33.0223 4996 vhdmp - ok
16:09:33.0238 4996 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\windows\system32\DRIVERS\viaagp.sys
16:09:33.0238 4996 viaagp - ok
16:09:33.0238 4996 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\windows\system32\DRIVERS\viac7.sys
16:09:33.0238 4996 ViaC7 - ok
16:09:33.0254 4996 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\windows\system32\DRIVERS\viaide.sys
16:09:33.0254 4996 viaide - ok
16:09:33.0269 4996 [ 384E5A2AA49934295171E499F86BA6F3 ] volmgr C:\windows\system32\DRIVERS\volmgr.sys
16:09:33.0285 4996 volmgr - ok
16:09:33.0301 4996 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\windows\system32\drivers\volmgrx.sys
16:09:33.0301 4996 volmgrx - ok
16:09:33.0347 4996 [ 59F06B4968E58BC83DFC56CA4517960E ] volsnap C:\windows\system32\drivers\volsnap.sys
16:09:33.0379 4996 volsnap - ok
16:09:33.0425 4996 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
16:09:33.0457 4996 vsmraid - ok
16:09:33.0535 4996 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C ] VSS C:\windows\system32\vssvc.exe
16:09:33.0581 4996 VSS - ok
16:09:33.0597 4996 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
16:09:33.0597 4996 vwifibus - ok
16:09:33.0613 4996 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
16:09:33.0628 4996 vwififlt - ok
16:09:33.0675 4996 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\windows\system32\w32time.dll
16:09:33.0706 4996 W32Time - ok
16:09:33.0737 4996 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
16:09:33.0737 4996 WacomPen - ok
16:09:33.0769 4996 [ 692A712062146E96D28BA0B7D75DE31B ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
16:09:33.0769 4996 WANARP - ok
16:09:33.0784 4996 [ 692A712062146E96D28BA0B7D75DE31B ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
16:09:33.0784 4996 Wanarpv6 - ok
16:09:34.0003 4996 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
16:09:34.0065 4996 WatAdminSvc - ok
16:09:34.0143 4996 [ 7790B77FE1E5EE47DCC66247095BB4C9 ] wbengine C:\windows\system32\wbengine.exe
16:09:34.0190 4996 wbengine - ok
16:09:34.0205 4996 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
16:09:34.0237 4996 WbioSrvc - ok
16:09:34.0283 4996 [ 6D9B75275C3E3A5F51AEF81AFFADB2B6 ] wcncsvc C:\windows\System32\wcncsvc.dll
16:09:34.0315 4996 wcncsvc - ok
16:09:34.0346 4996 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
16:09:34.0346 4996 WcsPlugInService - ok
16:09:34.0377 4996 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\windows\system32\DRIVERS\wd.sys
16:09:34.0377 4996 Wd - ok
16:09:34.0424 4996 [ D6EFAF429FD30C5DF613D220E344CCE7 ] WDC_SAM C:\windows\system32\DRIVERS\wdcsam.sys
16:09:34.0439 4996 WDC_SAM - ok
16:09:34.0486 4996 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
16:09:34.0502 4996 Wdf01000 - ok
16:09:34.0533 4996 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\windows\system32\wdi.dll
16:09:34.0549 4996 WdiServiceHost - ok
16:09:34.0549 4996 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\windows\system32\wdi.dll
16:09:34.0564 4996 WdiSystemHost - ok
16:09:34.0611 4996 [ BB5EC38F8D4600119B4720BC5D4211F1 ] WebClient C:\windows\System32\webclnt.dll
16:09:34.0627 4996 WebClient - ok
16:09:34.0642 4996 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\windows\system32\wecsvc.dll
16:09:34.0673 4996 Wecsvc - ok
16:09:34.0705 4996 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\windows\System32\wercplsupport.dll
16:09:34.0705 4996 wercplsupport - ok
16:09:34.0736 4996 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\windows\System32\WerSvc.dll
16:09:34.0751 4996 WerSvc - ok
16:09:34.0783 4996 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
16:09:34.0783 4996 WfpLwf - ok
16:09:34.0814 4996 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\windows\system32\drivers\wimmount.sys
16:09:34.0814 4996 WIMMount - ok
16:09:34.0892 4996 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
16:09:34.0923 4996 WinDefend - ok
16:09:34.0939 4996 WinHttpAutoProxySvc - ok
16:09:34.0985 4996 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
16:09:35.0001 4996 Winmgmt - ok
16:09:35.0063 4996 [ C4F5D3901D1B41D602DDC196E0B95B51 ] WinRM C:\windows\system32\WsmSvc.dll
16:09:35.0126 4996 WinRM - ok
16:09:35.0173 4996 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\windows\System32\wlansvc.dll
16:09:35.0204 4996 Wlansvc - ok
16:09:35.0313 4996 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:09:35.0360 4996 wlidsvc - ok
16:09:35.0391 4996 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\windows\system32\DRIVERS\wmiacpi.sys
16:09:35.0391 4996 WmiAcpi - ok
16:09:35.0422 4996 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
16:09:35.0438 4996 wmiApSrv - ok
16:09:35.0485 4996 [ 77FBD400984CF72BA0FC4B3489D65F74 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
16:09:35.0516 4996 WMPNetworkSvc - ok
16:09:35.0547 4996 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\windows\System32\wpcsvc.dll
16:09:35.0563 4996 WPCSvc - ok
16:09:35.0578 4996 [ B7F658A2EBC07129538AD9AB35212637 ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
16:09:35.0578 4996 WPDBusEnum - ok
16:09:35.0594 4996 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
16:09:35.0594 4996 ws2ifsl - ok
16:09:35.0641 4996 [ A661A76333057B383A06E65F0073222F ] wscsvc C:\windows\System32\wscsvc.dll
16:09:35.0641 4996 wscsvc - ok
16:09:35.0656 4996 WSearch - ok
16:09:35.0828 4996 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\windows\system32\wuaueng.dll
16:09:35.0921 4996 wuauserv - ok
16:09:35.0953 4996 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\windows\system32\drivers\WudfPf.sys
16:09:35.0968 4996 WudfPf - ok
16:09:36.0015 4996 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
16:09:36.0031 4996 WUDFRd - ok
16:09:36.0062 4996 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\windows\System32\WUDFSvc.dll
16:09:36.0093 4996 wudfsvc - ok
16:09:36.0124 4996 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\windows\System32\wwansvc.dll
16:09:36.0155 4996 WwanSvc - ok
16:09:36.0187 4996 ================ Scan global ===============================
16:09:36.0218 4996 [ 9A595DF601070DA78C40481120DD2C06 ] C:\windows\system32\basesrv.dll
16:09:36.0280 4996 [ A031E84E7A5884841171E13A73315A7B ] C:\windows\system32\winsrv.dll
16:09:36.0296 4996 [ A031E84E7A5884841171E13A73315A7B ] C:\windows\system32\winsrv.dll
16:09:36.0327 4996 [ 364455805E64882844EE9ACB72522830 ] C:\windows\system32\sxssrv.dll
16:09:36.0358 4996 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\windows\system32\services.exe
16:09:36.0374 4996 [Global] - ok
16:09:36.0374 4996 ================ Scan MBR ==================================
16:09:36.0389 4996 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0
16:09:39.0603 4996 \Device\Harddisk0\DR0 - ok
16:09:39.0603 4996 ================ Scan VBR ==================================
16:09:39.0634 4996 [ 3E2D8FF930A548FE6BFA83167EFB82C4 ] \Device\Harddisk0\DR0\Partition1
16:09:39.0650 4996 \Device\Harddisk0\DR0\Partition1 - ok
16:09:39.0650 4996 ============================================================
16:09:39.0650 4996 Scan finished
16:09:39.0650 4996 ============================================================
16:09:39.0665 4708 Detected object count: 0
16:09:39.0665 4708 Actual detected object count: 0

----------------------------------------------------

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Database version: v2013.01.15.14

Windows 7 x86 NTFS
Internet Explorer 9.0.8112.16421
RoyalOak_Guitar :: GUITARTEACHER [administrator]

1/15/2013 4:13:59 PM
mbam-log-2013-01-15 (16-13-59).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 235375
Time elapsed: 6 minute(s), 26 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)


Thanks. I await your instructions.

#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,428 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:01 AM

Posted 15 January 2013 - 11:37 PM

No infections..
You are probably just not aware that these LG devices are installed....
LG Burning Tool (Version: 6.2.5218a)
LG CyberLink LabelPrint (Version: 2.5.3624)
LG CyberLink Media Suite (Version: 8.0.2808)
LG CyberLink PowerBackup (Version: 2.5.6023)
LG CyberLink YouCam (Version: 2.0.3718)
LG ODD Auto Firmware Update (Version: 8.01.1209.01)


Was it avast! that finds these?
Run it again and see if it finds it. Then see if you can see where it says it is.
eg...C:\Program Files (x86)\mozilla firefox\plugins\npcouponprinter.dll"
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users