Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Problem with Trojan


  • Please log in to reply
13 replies to this topic

#1 Supergirl73

Supergirl73

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 03 April 2013 - 06:14 PM

Hi - Trying to help fix my mother's Dell Inspiron laptop which was in such bad shape it wouldn't even start.  Currently, the problem is narrowed to a continuous virus, as reported via Malwarebytes:  Malwarebytes has blocked and quarantined a threat:  C:\Windows\svchost.exeTrogan.Agent   From my research I understand this is likely a spyaxe infection and I need possibly the SmitRem.exe program to fix it, however I didn't see it in the list after I clicked the link - unless I'm just blind.  Looking desperately for some direction and help.  THANK YOU!!!!  Running Windows 7.



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 03 April 2013 - 06:51 PM

Hello and welcome Supergirl73
 
Please run these next..........
 
 Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results.
 
 
=================================================== Running GMER on 32 and 64 bit Systems -------------------- Please download GMER from one of the following locations and save it to your desktop:   Main Mirror which will download a randomly named file Zipped Mirror - Unzip the file to its own folder such as C:\gmer Disconnect from the Internet and close all running programs Temporarily disable any real-time active protection It is very important you do not use your computer while GMER is running Double-click on the randomly named GMER gmericon_zps951fd5aa.jpg icon GMER will open to the Rootkit/Malware tab and perform an automatic quick scan If you receive a warning about rootkit activity and are asked to fully scan your system click NO Please check in the Quick scan box Please uncheck the following: IAT/EAT Show All <<< Important GMER2new_zpsdd936679.jpg Click Scan If you see a rootkit warning window click OK When the scan is finished, Save the results to your desktop as gmer.log Click Copy then paste the results in your reply Exit GMER and be sure to re-enable your Antivirus, Firewall and any other security programs you had disabled Note: If you encounter any problems, try running GMER in Safe Mode If GMER crashes or keeps resulting in a Blue Screen of Death, uncheck Devices on the right side before scanning

Edited by boopme, 03 April 2013 - 06:55 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 03 April 2013 - 08:12 PM

From TDSS Killer: 

 

19:03:52.0881 5464  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
19:03:54.0893 5464  ============================================================
19:03:54.0893 5464  Current date / time: 2013/04/03 19:03:54.0893
19:03:54.0893 5464  SystemInfo:
19:03:54.0893 5464 
19:03:54.0893 5464  OS Version: 6.1.7601 ServicePack: 1.0
19:03:54.0893 5464  Product type: Workstation
19:03:54.0893 5464  ComputerName: LAUREL-PC
19:03:54.0893 5464  UserName: Laurel
19:03:54.0893 5464  Windows directory: C:\Windows
19:03:54.0893 5464  System windows directory: C:\Windows
19:03:54.0893 5464  Running under WOW64
19:03:54.0893 5464  Processor architecture: Intel x64
19:03:54.0893 5464  Number of processors: 4
19:03:54.0893 5464  Page size: 0x1000
19:03:54.0893 5464  Boot type: Normal boot
19:03:54.0893 5464  ============================================================
19:03:55.0501 5464  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:03:55.0517 5464  ============================================================
19:03:55.0517 5464  \Device\Harddisk0\DR0:
19:03:55.0517 5464  MBR partitions:
19:03:55.0517 5464  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32FCD, BlocksNum 0x1D4C000
19:03:55.0517 5464  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1D7EFCD, BlocksNum 0x38606863
19:03:55.0517 5464  ============================================================
19:03:55.0548 5464  C: <-> \Device\Harddisk0\DR0\Partition2
19:03:55.0548 5464  ============================================================
19:03:55.0548 5464  Initialize success
19:03:55.0548 5464  ============================================================
19:04:22.0833 3904  ============================================================
19:04:22.0833 3904  Scan started
19:04:22.0833 3904  Mode: Manual; TDLFS;
19:04:22.0833 3904  ============================================================
19:04:23.0332 3904  ================ Scan system memory ========================
19:04:23.0332 3904  System memory - ok
19:04:23.0332 3904  ================ Scan services =============================
19:04:23.0691 3904  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:04:23.0706 3904  1394ohci - ok
19:04:23.0753 3904  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:04:23.0753 3904  ACPI - ok
19:04:23.0784 3904  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:04:23.0784 3904  AcpiPmi - ok
19:04:31.0226 3904  [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:04:31.0226 3904  AdobeFlashPlayerUpdateSvc - ok
19:04:31.0382 3904  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
19:04:31.0382 3904  adp94xx - ok
19:04:31.0538 3904  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
19:04:31.0538 3904  adpahci - ok
19:04:31.0678 3904  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
19:04:31.0678 3904  adpu320 - ok
19:04:31.0803 3904  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:04:31.0803 3904  AeLookupSvc - ok
19:04:32.0006 3904  [ D1E343BC00136CE03C4D403194D06A80 ] AERTFilters     C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
19:04:32.0006 3904  AERTFilters - ok
19:04:32.0052 3904  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
19:04:32.0068 3904  AFD - ok
19:04:32.0084 3904  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
19:04:32.0084 3904  agp440 - ok
19:04:32.0115 3904  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
19:04:32.0130 3904  ALG - ok
19:04:32.0146 3904  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:04:32.0146 3904  aliide - ok
19:04:32.0162 3904  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
19:04:32.0177 3904  amdide - ok
19:04:32.0224 3904  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
19:04:32.0224 3904  AmdK8 - ok
19:04:32.0240 3904  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
19:04:32.0240 3904  AmdPPM - ok
19:04:32.0271 3904  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:04:32.0271 3904  amdsata - ok
19:04:32.0302 3904  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
19:04:32.0318 3904  amdsbs - ok
19:04:32.0364 3904  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:04:32.0364 3904  amdxata - ok
19:04:32.0427 3904  [ 7380B9072EBC65A54DA3074E14BF34B9 ] ApfiltrService  C:\Windows\system32\DRIVERS\Apfiltr.sys
19:04:32.0442 3904  ApfiltrService - ok
19:04:32.0567 3904  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
19:04:32.0567 3904  AppID - ok
19:04:32.0598 3904  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:04:32.0598 3904  AppIDSvc - ok
19:04:32.0630 3904  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
19:04:32.0770 3904  Appinfo - ok
19:04:32.0817 3904  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
19:04:32.0817 3904  arc - ok
19:04:32.0848 3904  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
19:04:32.0848 3904  arcsas - ok
19:04:32.0895 3904  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:04:32.0895 3904  AsyncMac - ok
19:04:32.0926 3904  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
19:04:32.0926 3904  atapi - ok
19:04:32.0988 3904  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:04:33.0020 3904  AudioEndpointBuilder - ok
19:04:33.0035 3904  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:04:33.0051 3904  AudioSrv - ok
19:04:33.0082 3904  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:04:33.0222 3904  AxInstSV - ok
19:04:33.0269 3904  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
19:04:33.0285 3904  b06bdrv - ok
19:04:33.0316 3904  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:04:33.0332 3904  b57nd60a - ok
19:04:33.0363 3904  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:04:33.0363 3904  BDESVC - ok
19:04:33.0378 3904  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
19:04:33.0378 3904  Beep - ok
19:04:33.0425 3904  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
19:04:33.0456 3904  BFE - ok
19:04:33.0534 3904  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
19:04:33.0753 3904  BITS - ok
19:04:33.0784 3904  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
19:04:33.0784 3904  blbdrive - ok
19:04:33.0924 3904  [ C620C59D46F43BEECC556F65E801312B ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
19:04:33.0940 3904  Bluetooth Device Monitor - ok
19:04:34.0002 3904  [ 5E5EDCCEEA4FA3FDF3A907AC204B5828 ] Bluetooth Media Service C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
19:04:34.0034 3904  Bluetooth Media Service - ok
19:04:34.0096 3904  [ 826E65C945738CBD64F89EAE4406687F ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
19:04:34.0112 3904  Bluetooth OBEX Service - ok
19:04:34.0143 3904  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:04:34.0143 3904  bowser - ok
19:04:34.0190 3904  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:04:34.0205 3904  BrFiltLo - ok
19:04:34.0236 3904  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:04:34.0236 3904  BrFiltUp - ok
19:04:34.0268 3904  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
19:04:34.0268 3904  Browser - ok
19:04:34.0299 3904  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:04:34.0299 3904  Brserid - ok
19:04:34.0377 3904  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:04:34.0377 3904  BrSerWdm - ok
19:04:34.0392 3904  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:04:34.0392 3904  BrUsbMdm - ok
19:04:34.0408 3904  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:04:34.0408 3904  BrUsbSer - ok
19:04:34.0439 3904  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
19:04:34.0439 3904  BthEnum - ok
19:04:34.0470 3904  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
19:04:34.0470 3904  BTHMODEM - ok
19:04:34.0517 3904  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
19:04:34.0517 3904  BthPan - ok
19:04:34.0580 3904  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
19:04:34.0595 3904  BTHPORT - ok
19:04:34.0673 3904  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
19:04:34.0704 3904  bthserv - ok
19:04:34.0720 3904  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
19:04:34.0720 3904  BTHUSB - ok
19:04:34.0751 3904  [ 962BD3689E2C85F0BA97F3D7E7BA540B ] btmaux          C:\Windows\system32\DRIVERS\btmaux.sys
19:04:34.0751 3904  btmaux - ok
19:04:34.0782 3904  [ 40C6FEC49D1CC4D112368A2BCD2BCBB7 ] btmhsf          C:\Windows\system32\DRIVERS\btmhsf.sys
19:04:34.0798 3904  btmhsf - ok
19:04:34.0829 3904  [ 9887CA12F407D7FBC7F48F3678F5F0B6 ] BVRPMPR5a64     C:\Windows\system32\drivers\BVRPMPR5a64.SYS
19:04:34.0829 3904  BVRPMPR5a64 - ok
19:04:34.0860 3904  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:04:34.0876 3904  cdfs - ok
19:04:34.0907 3904  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\drivers\cdrom.sys
19:04:34.0907 3904  cdrom - ok
19:04:34.0970 3904  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
19:04:34.0970 3904  CertPropSvc - ok
19:04:35.0001 3904  [ A73276435F75025DA6E67B2470E1FE16 ] cfwids          C:\Windows\system32\drivers\cfwids.sys
19:04:35.0001 3904  cfwids - ok
19:04:35.0032 3904  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
19:04:35.0048 3904  circlass - ok
19:04:35.0079 3904  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
19:04:35.0094 3904  CLFS - ok
19:04:35.0204 3904  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:04:35.0204 3904  clr_optimization_v2.0.50727_32 - ok
19:04:35.0282 3904  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:04:35.0282 3904  clr_optimization_v2.0.50727_64 - ok
19:04:35.0375 3904  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:04:35.0391 3904  clr_optimization_v4.0.30319_32 - ok
19:04:35.0469 3904  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:04:35.0484 3904  clr_optimization_v4.0.30319_64 - ok
19:04:35.0531 3904  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
19:04:35.0531 3904  CmBatt - ok
19:04:35.0562 3904  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:04:35.0562 3904  cmdide - ok
19:04:35.0594 3904  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
19:04:35.0609 3904  CNG - ok
19:04:35.0672 3904  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
19:04:35.0672 3904  Compbatt - ok
19:04:35.0687 3904  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
19:04:35.0703 3904  CompositeBus - ok
19:04:35.0703 3904  COMSysApp - ok
19:04:35.0718 3904  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
19:04:35.0718 3904  crcdisk - ok
19:04:35.0812 3904  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:04:35.0937 3904  CryptSvc - ok
19:04:35.0968 3904  [ FBE228ABEAB2BE13B9C3A3A112D4D8DC ] CtClsFlt        C:\Windows\system32\DRIVERS\CtClsFlt.sys
19:04:35.0968 3904  CtClsFlt - ok
19:04:35.0999 3904  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:04:36.0015 3904  DcomLaunch - ok
19:04:36.0077 3904  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
19:04:36.0093 3904  defragsvc - ok
19:04:36.0155 3904  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:04:36.0155 3904  DfsC - ok
19:04:36.0186 3904  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:04:36.0296 3904  Dhcp - ok
19:04:36.0342 3904  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
19:04:36.0342 3904  discache - ok
19:04:36.0374 3904  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
19:04:36.0374 3904  Disk - ok
19:04:36.0405 3904  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:04:36.0405 3904  Dnscache - ok
19:04:36.0452 3904  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
19:04:36.0545 3904  dot3svc - ok
19:04:36.0561 3904  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
19:04:36.0561 3904  DPS - ok
19:04:36.0576 3904  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:04:36.0576 3904  drmkaud - ok
19:04:36.0623 3904  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:04:36.0654 3904  DXGKrnl - ok
19:04:36.0717 3904  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
19:04:36.0717 3904  EapHost - ok
19:04:36.0826 3904  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
19:04:36.0888 3904  ebdrv - ok
19:04:36.0920 3904  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
19:04:36.0935 3904  EFS - ok
19:04:37.0044 3904  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:04:37.0060 3904  ehRecvr - ok
19:04:37.0091 3904  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
19:04:37.0091 3904  ehSched - ok
19:04:37.0122 3904  [ F21A07780BBD64ADEF872F50E8CE2E75 ] ElRawDisk       C:\Windows\system32\drivers\ElRawDsk.sys
19:04:37.0122 3904  ElRawDisk - ok
19:04:37.0154 3904  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
19:04:37.0185 3904  elxstor - ok
19:04:37.0216 3904  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:04:37.0216 3904  ErrDev - ok
19:04:37.0325 3904  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
19:04:37.0325 3904  EventSystem - ok
19:04:37.0497 3904  [ 8B6C9924B0D333DBF76086B8258A0891 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
19:04:37.0512 3904  EvtEng - ok
19:04:37.0559 3904  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
19:04:37.0559 3904  exfat - ok
19:04:37.0606 3904  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:04:37.0622 3904  fastfat - ok
19:04:37.0684 3904  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
19:04:37.0715 3904  Fax - ok
19:04:37.0746 3904  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
19:04:37.0746 3904  fdc - ok
19:04:37.0809 3904  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
19:04:37.0809 3904  fdPHost - ok
19:04:37.0824 3904  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:04:37.0824 3904  FDResPub - ok
19:04:37.0856 3904  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:04:37.0856 3904  FileInfo - ok
19:04:37.0887 3904  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:04:37.0887 3904  Filetrace - ok
19:04:37.0902 3904  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
19:04:37.0902 3904  flpydisk - ok
19:04:37.0949 3904  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:04:37.0965 3904  FltMgr - ok
19:04:38.0027 3904  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\Windows\system32\FntCache.dll
19:04:38.0074 3904  FontCache - ok
19:04:38.0152 3904  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:04:38.0152 3904  FontCache3.0.0.0 - ok
19:04:38.0199 3904  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:04:38.0214 3904  FsDepends - ok
19:04:38.0261 3904  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:04:38.0261 3904  Fs_Rec - ok
19:04:38.0308 3904  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:04:38.0308 3904  fvevol - ok
19:04:38.0324 3904  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
19:04:38.0339 3904  gagp30kx - ok
19:04:38.0402 3904  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
19:04:38.0433 3904  gpsvc - ok
19:04:38.0480 3904  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:04:38.0495 3904  hcw85cir - ok
19:04:38.0511 3904  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
19:04:38.0511 3904  HDAudBus - ok
19:04:38.0573 3904  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
19:04:38.0573 3904  HidBatt - ok
19:04:38.0604 3904  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
19:04:38.0604 3904  HidBth - ok
19:04:38.0636 3904  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
19:04:38.0636 3904  HidIr - ok
19:04:38.0682 3904  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
19:04:38.0682 3904  hidserv - ok
19:04:38.0729 3904  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:04:38.0729 3904  HidUsb - ok
19:04:38.0792 3904  [ A894FB2CAE6A29F5D9C8EDA47B074623 ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
19:04:38.0792 3904  HipShieldK - ok
19:04:38.0838 3904  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:04:38.0838 3904  hkmsvc - ok
19:04:38.0870 3904  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:04:38.0870 3904  HomeGroupListener - ok
19:04:38.0916 3904  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:04:38.0932 3904  HomeGroupProvider - ok
19:04:38.0979 3904  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:04:38.0979 3904  HpSAMD - ok
19:04:39.0026 3904  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:04:39.0072 3904  HTTP - ok
19:04:39.0088 3904  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:04:39.0104 3904  hwpolicy - ok
19:04:39.0119 3904  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
19:04:39.0135 3904  i8042prt - ok
19:04:39.0182 3904  [ D469B77687E12FE43E344806740B624D ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
19:04:39.0197 3904  iaStor - ok
19:04:39.0228 3904  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:04:39.0244 3904  iaStorV - ok
19:04:39.0260 3904  [ FC47F5CF561BF0FD897EFD1A9604DCCF ] iBtFltCoex      C:\Windows\system32\DRIVERS\iBtFltCoex.sys
19:04:39.0275 3904  iBtFltCoex - ok
19:04:39.0353 3904  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:04:39.0509 3904  idsvc - ok
19:04:39.0821 3904  [ 795C99DC4F574C97C03D0BB39CF099EE ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:04:40.0118 3904  igfx - ok
19:04:40.0149 3904  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
19:04:40.0149 3904  iirsp - ok
19:04:40.0196 3904  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
19:04:40.0227 3904  IKEEXT - ok
19:04:40.0258 3904  [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd           C:\Windows\system32\DRIVERS\Impcd.sys
19:04:40.0258 3904  Impcd - ok
19:04:40.0352 3904  [ A9853214CC97796579D75B1F59C51DCD ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
19:04:40.0430 3904  IntcAzAudAddService - ok
19:04:40.0492 3904  [ FC727061C0F47C8059E88E05D5C8E381 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
19:04:40.0508 3904  IntcDAud - ok
19:04:40.0539 3904  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
19:04:40.0539 3904  intelide - ok
19:04:40.0586 3904  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
19:04:40.0586 3904  intelppm - ok
19:04:40.0695 3904  [ 4C279F23F88E0854CE94731E55BF6E77 ] ioloSystemService C:\Program Files (x86)\iolo\Common\Lib\ioloServiceManager.exe
19:04:40.0710 3904  ioloSystemService - ok
19:04:40.0773 3904  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:04:40.0773 3904  IPBusEnum - ok
19:04:40.0804 3904  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:04:40.0804 3904  IpFilterDriver - ok
19:04:40.0866 3904  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:04:41.0007 3904  iphlpsvc - ok
19:04:41.0054 3904  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:04:41.0054 3904  IPMIDRV - ok
19:04:41.0085 3904  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:04:41.0085 3904  IPNAT - ok
19:04:41.0178 3904  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:04:41.0178 3904  IRENUM - ok
19:04:41.0241 3904  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:04:41.0241 3904  isapnp - ok
19:04:41.0288 3904  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:04:41.0303 3904  iScsiPrt - ok
19:04:41.0334 3904  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
19:04:41.0334 3904  kbdclass - ok
19:04:41.0366 3904  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
19:04:41.0366 3904  kbdhid - ok
19:04:41.0397 3904  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
19:04:41.0397 3904  KeyIso - ok
19:04:41.0428 3904  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:04:41.0428 3904  KSecDD - ok
19:04:41.0459 3904  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:04:41.0459 3904  KSecPkg - ok
19:04:41.0506 3904  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:04:41.0506 3904  ksthunk - ok
19:04:41.0568 3904  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:04:41.0600 3904  KtmRm - ok
19:04:41.0646 3904  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
19:04:41.0662 3904  LanmanServer - ok
19:04:41.0693 3904  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:04:41.0709 3904  LanmanWorkstation - ok
19:04:41.0740 3904  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:04:41.0740 3904  lltdio - ok
19:04:41.0787 3904  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:04:41.0802 3904  lltdsvc - ok
19:04:41.0802 3904  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:04:41.0818 3904  lmhosts - ok
19:04:41.0865 3904  [ 7F32D4C47A50E7223491E8FB9359907D ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
19:04:41.0880 3904  LMS - ok
19:04:41.0912 3904  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
19:04:41.0927 3904  LSI_FC - ok
19:04:41.0958 3904  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
19:04:41.0958 3904  LSI_SAS - ok
19:04:41.0990 3904  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:04:41.0990 3904  LSI_SAS2 - ok
19:04:42.0021 3904  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:04:42.0021 3904  LSI_SCSI - ok
19:04:42.0083 3904  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
19:04:42.0083 3904  luafv - ok
19:04:42.0208 3904  [ 92EB844D90615CB266F84C3202B8786E ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
19:04:42.0224 3904  MBAMProtector - ok
19:04:42.0567 3904  [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler   C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
19:04:42.0567 3904  MBAMScheduler - ok
19:04:42.0957 3904  [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService     C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
19:04:42.0972 3904  MBAMService - ok
19:04:43.0581 3904  [ B6BD99C3E23507A732C474CAA620C0D7 ] McAWFwk         c:\PROGRA~1\mcafee\msc\mcawfwk.exe
19:04:43.0581 3904  McAWFwk - ok
19:04:43.0986 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McMPFSvc        C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
19:04:43.0986 3904  McMPFSvc - ok
19:04:44.0002 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] mcmscsvc        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
19:04:44.0002 3904  mcmscsvc - ok
19:04:44.0018 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McNaiAnn        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
19:04:44.0018 3904  McNaiAnn - ok
19:04:44.0033 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McNASvc         C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
19:04:44.0033 3904  McNASvc - ok
19:04:44.0408 3904  [ 1814532DB0404C5FB65AA3EB051B2BE5 ] McODS           C:\Program Files\mcafee\VirusScan\mcods.exe
19:04:44.0423 3904  McODS - ok
19:04:44.0517 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McOobeSv        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
19:04:44.0517 3904  McOobeSv - ok
19:04:44.0532 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McProxy         C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
19:04:44.0532 3904  McProxy - ok
19:04:44.0876 3904  [ 23EA22ACADD66D7F1E18A4AA72BE6158 ] McShield        C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
19:04:44.0891 3904  McShield - ok
19:04:44.0985 3904  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:04:45.0141 3904  Mcx2Svc - ok
19:04:45.0203 3904  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
19:04:45.0203 3904  megasas - ok
19:04:45.0422 3904  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
19:04:45.0422 3904  MegaSR - ok
19:04:45.0468 3904  [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
19:04:45.0468 3904  MEIx64 - ok
19:04:45.0578 3904  [ 19323081FA4018C9C1AEBF08114BEA11 ] mfeapfk         C:\Windows\system32\drivers\mfeapfk.sys
19:04:45.0578 3904  mfeapfk - ok
19:04:45.0765 3904  [ EF1D39A70CAD1B7BEDC220480F26815C ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
19:04:45.0780 3904  mfeavfk - ok
19:04:45.0796 3904  mfeavfk01 - ok
19:04:45.0921 3904  [ 3CBBB569730EFD069B4BD253DDD4AD58 ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
19:04:45.0936 3904  mfefire - ok
19:04:46.0233 3904  [ 67972BFC8F23054BD23E1DE1450E40BD ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
19:04:46.0280 3904  mfefirek - ok
19:04:46.0576 3904  [ 5C0EE849C03C37071FABDAA6B58D3D94 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
19:04:46.0592 3904  mfehidk - ok
19:04:46.0623 3904  [ 450B77CAC7384A9C1BAF476AC302CD4C ] mferkdet        C:\Windows\system32\drivers\mferkdet.sys
19:04:46.0638 3904  mferkdet - ok
19:04:46.0794 3904  [ 74CE2EBE64AB78904E33DD4C5F21611F ] mfevtp          C:\Windows\system32\mfevtps.exe
19:04:46.0794 3904  mfevtp - ok
19:04:46.0950 3904  [ F55F9742BFA88D02F96516B80AB400EC ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
19:04:46.0950 3904  mfewfpk - ok
19:04:47.0060 3904  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
19:04:47.0060 3904  MMCSS - ok
19:04:47.0153 3904  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
19:04:47.0169 3904  Modem - ok
19:04:47.0262 3904  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:04:47.0262 3904  monitor - ok
19:04:47.0372 3904  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
19:04:47.0372 3904  mouclass - ok
19:04:47.0434 3904  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:04:47.0450 3904  mouhid - ok
19:04:47.0606 3904  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:04:47.0606 3904  mountmgr - ok
19:04:47.0746 3904  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
19:04:47.0762 3904  mpio - ok
19:04:47.0840 3904  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:04:47.0855 3904  mpsdrv - ok
19:04:48.0261 3904  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:04:48.0276 3904  MpsSvc - ok
19:04:48.0448 3904  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:04:48.0448 3904  MRxDAV - ok
19:04:48.0573 3904  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:04:48.0573 3904  mrxsmb - ok
19:04:48.0713 3904  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:04:48.0713 3904  mrxsmb10 - ok
19:04:48.0744 3904  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:04:48.0760 3904  mrxsmb20 - ok
19:04:48.0776 3904  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:04:48.0776 3904  msahci - ok
19:04:48.0807 3904  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:04:48.0822 3904  msdsm - ok
19:04:48.0869 3904  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
19:04:48.0885 3904  MSDTC - ok
19:04:48.0932 3904  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:04:48.0932 3904  Msfs - ok
19:04:48.0978 3904  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:04:48.0978 3904  mshidkmdf - ok
19:04:48.0994 3904  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:04:48.0994 3904  msisadrv - ok
19:04:49.0025 3904  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:04:49.0041 3904  MSiSCSI - ok
19:04:49.0056 3904  msiserver - ok
19:04:49.0088 3904  [ F928E5E72BBA15DD0CE9A26E0413D236 ] MSK80Service    C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
19:04:49.0088 3904  MSK80Service - ok
19:04:49.0103 3904  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:04:49.0103 3904  MSKSSRV - ok
19:04:49.0119 3904  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:04:49.0119 3904  MSPCLOCK - ok
19:04:49.0134 3904  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:04:49.0134 3904  MSPQM - ok
19:04:49.0150 3904  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:04:49.0166 3904  MsRPC - ok
19:04:49.0197 3904  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
19:04:49.0197 3904  mssmbios - ok
19:04:49.0228 3904  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:04:49.0228 3904  MSTEE - ok
19:04:49.0275 3904  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
19:04:49.0275 3904  MTConfig - ok
19:04:49.0290 3904  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
19:04:49.0290 3904  Mup - ok
19:04:49.0337 3904  [ 6ED8935257672F4CD04A88A0F3DE093D ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
19:04:49.0337 3904  MyWiFiDHCPDNS - ok
19:04:49.0400 3904  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
19:04:49.0415 3904  napagent - ok
19:04:49.0478 3904  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:04:49.0478 3904  NativeWifiP - ok
19:04:49.0540 3904  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:04:49.0571 3904  NDIS - ok
19:04:49.0618 3904  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:04:49.0634 3904  NdisCap - ok
19:04:49.0649 3904  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:04:49.0649 3904  NdisTapi - ok
19:04:49.0665 3904  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:04:49.0680 3904  Ndisuio - ok
19:04:49.0696 3904  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:04:49.0696 3904  NdisWan - ok
19:04:49.0774 3904  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:04:49.0774 3904  NDProxy - ok
19:04:49.0790 3904  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:04:49.0790 3904  NetBIOS - ok
19:04:49.0821 3904  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:04:49.0836 3904  NetBT - ok
19:04:49.0868 3904  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
19:04:49.0868 3904  Netlogon - ok
19:04:49.0930 3904  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
19:04:49.0946 3904  Netman - ok
19:04:49.0977 3904  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
19:04:49.0992 3904  netprofm - ok
19:04:50.0024 3904  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
19:04:50.0039 3904  NetTcpPortSharing - ok
19:04:50.0226 3904  [ 5D262402B0634C998F8CBCEAD7DD8676 ] NETwNs64        C:\Windows\system32\DRIVERS\NETwNs64.sys
19:04:50.0414 3904  NETwNs64 - ok
19:04:50.0460 3904  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
19:04:50.0460 3904  nfrd960 - ok
19:04:50.0523 3904  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:04:50.0523 3904  NlaSvc - ok
19:04:50.0741 3904  [ B9B72FAAAA41D59B73B88FE3DD737ED1 ] NOBU            C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe
19:04:50.0772 3904  NOBU - ok
19:04:50.0804 3904  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:04:50.0819 3904  Npfs - ok
19:04:50.0850 3904  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
19:04:50.0850 3904  nsi - ok
19:04:50.0882 3904  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:04:50.0882 3904  nsiproxy - ok
19:04:50.0960 3904  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:04:51.0006 3904  Ntfs - ok
19:04:51.0022 3904  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
19:04:51.0022 3904  Null - ok
19:04:51.0053 3904  [ A7127E86F9FFE2A53E271B56B2C4CEDF ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
19:04:51.0053 3904  nusb3hub - ok
19:04:51.0084 3904  [ 49BBEC6F48D5F9284B03ABF3A959B19B ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
19:04:51.0084 3904  nusb3xhc - ok
19:04:51.0131 3904  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:04:51.0131 3904  nvraid - ok
19:04:51.0162 3904  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:04:51.0162 3904  nvstor - ok
19:04:51.0194 3904  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:04:51.0209 3904  nv_agp - ok
19:04:51.0240 3904  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:04:51.0256 3904  ohci1394 - ok
19:04:51.0334 3904  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:04:51.0334 3904  ose - ok
19:04:51.0552 3904  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:04:51.0724 3904  osppsvc - ok
19:04:51.0771 3904  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:04:51.0771 3904  p2pimsvc - ok
19:04:51.0802 3904  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
19:04:51.0802 3904  p2psvc - ok
19:04:51.0849 3904  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
19:04:51.0849 3904  Parport - ok
19:04:51.0880 3904  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:04:51.0880 3904  partmgr - ok
19:04:51.0911 3904  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:04:51.0911 3904  PcaSvc - ok
19:04:51.0942 3904  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
19:04:51.0942 3904  pci - ok
19:04:51.0958 3904  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
19:04:51.0958 3904  pciide - ok
19:04:51.0974 3904  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
19:04:51.0974 3904  pcmcia - ok
19:04:52.0005 3904  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:04:52.0005 3904  pcw - ok
19:04:52.0020 3904  [ 8570C04D9DBFDDD2CCF655DEB4D84715 ] PDFsFilter      C:\Windows\system32\DRIVERS\PDFsFilter.sys
19:04:52.0020 3904  PDFsFilter - ok
19:04:52.0067 3904  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:04:52.0083 3904  PEAUTH - ok
19:04:52.0223 3904  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:04:52.0223 3904  PerfHost - ok
19:04:52.0332 3904  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
19:04:52.0504 3904  pla - ok
19:04:52.0566 3904  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:04:52.0582 3904  PlugPlay - ok
19:04:52.0598 3904  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:04:52.0613 3904  PNRPAutoReg - ok
19:04:52.0629 3904  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:04:52.0629 3904  PNRPsvc - ok
19:04:52.0676 3904  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:04:52.0769 3904  PolicyAgent - ok
19:04:52.0785 3904  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
19:04:52.0785 3904  Power - ok
19:04:52.0816 3904  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:04:52.0816 3904  PptpMiniport - ok
19:04:52.0863 3904  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
19:04:52.0863 3904  Processor - ok
19:04:52.0910 3904  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
19:04:52.0925 3904  ProfSvc - ok
19:04:52.0956 3904  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
19:04:52.0956 3904  ProtectedStorage - ok
19:04:52.0988 3904  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:04:52.0988 3904  Psched - ok
19:04:53.0050 3904  [ 87B04878A6D59D6C79251DC960C674C1 ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
19:04:53.0050 3904  PxHlpa64 - ok
19:04:53.0112 3904  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
19:04:53.0159 3904  ql2300 - ok
19:04:53.0190 3904  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
19:04:53.0190 3904  ql40xx - ok
19:04:53.0253 3904  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
19:04:53.0253 3904  QWAVE - ok
19:04:53.0268 3904  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:04:53.0268 3904  QWAVEdrv - ok
19:04:53.0300 3904  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:04:53.0300 3904  RasAcd - ok
19:04:53.0331 3904  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:04:53.0331 3904  RasAgileVpn - ok
19:04:53.0362 3904  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
19:04:53.0393 3904  RasAuto - ok
19:04:53.0424 3904  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:04:53.0424 3904  Rasl2tp - ok
19:04:53.0471 3904  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
19:04:53.0596 3904  RasMan - ok
19:04:53.0612 3904  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:04:53.0612 3904  RasPppoe - ok
19:04:53.0658 3904  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:04:53.0658 3904  RasSstp - ok
19:04:53.0690 3904  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:04:53.0705 3904  rdbss - ok
19:04:53.0721 3904  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
19:04:53.0736 3904  rdpbus - ok
19:04:53.0752 3904  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:04:53.0752 3904  RDPCDD - ok
19:04:53.0783 3904  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:04:53.0783 3904  RDPENCDD - ok
19:04:53.0799 3904  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:04:53.0799 3904  RDPREFMP - ok
19:04:53.0830 3904  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:04:53.0830 3904  RDPWD - ok
19:04:53.0877 3904  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:04:53.0877 3904  rdyboost - ok
19:04:54.0002 3904  [ 189C5A8D2098E0AA14FD157A954B34FC ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
19:04:54.0017 3904  RegSrvc - ok
19:04:54.0048 3904  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:04:54.0064 3904  RemoteAccess - ok
19:04:54.0111 3904  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:04:54.0126 3904  RemoteRegistry - ok
19:04:54.0158 3904  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
19:04:54.0158 3904  RFCOMM - ok
19:04:54.0314 3904  [ BDDC447AB46625A54619808575D5CB46 ] RoxMediaDB12OEM C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe
19:04:54.0360 3904  RoxMediaDB12OEM - ok
19:04:54.0407 3904  [ CE203243ADF512540249DF9C264F12DD ] RoxWatch12      C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe
19:04:54.0423 3904  RoxWatch12 - ok
19:04:54.0470 3904  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:04:54.0470 3904  RpcEptMapper - ok
19:04:54.0501 3904  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
19:04:54.0516 3904  RpcLocator - ok
19:04:54.0563 3904  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
19:04:54.0563 3904  RpcSs - ok
19:04:54.0626 3904  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:04:54.0626 3904  rspndr - ok
19:04:54.0657 3904  [ 135A64530D7699AD48F29D73A658DD11 ] RSUSBSTOR       C:\Windows\system32\Drivers\RtsUStor.sys
19:04:54.0672 3904  RSUSBSTOR - ok
19:04:54.0704 3904  [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
19:04:54.0719 3904  RTL8167 - ok
19:04:54.0750 3904  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
19:04:54.0750 3904  SamSs - ok
19:04:54.0782 3904  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:04:54.0797 3904  sbp2port - ok
19:04:54.0844 3904  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:04:54.0844 3904  SCardSvr - ok
19:04:54.0875 3904  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:04:54.0875 3904  scfilter - ok
19:04:54.0938 3904  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
19:04:54.0984 3904  Schedule - ok
19:04:55.0047 3904  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:04:55.0047 3904  SCPolicySvc - ok
19:04:55.0062 3904  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:04:55.0094 3904  SDRSVC - ok
19:04:55.0140 3904  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:04:55.0140 3904  secdrv - ok
19:04:55.0187 3904  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
19:04:55.0187 3904  seclogon - ok
19:04:55.0218 3904  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
19:04:55.0218 3904  SENS - ok
19:04:55.0250 3904  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:04:55.0265 3904  SensrSvc - ok
19:04:55.0296 3904  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
19:04:55.0296 3904  Serenum - ok
19:04:55.0328 3904  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
19:04:55.0328 3904  Serial - ok
19:04:55.0359 3904  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
19:04:55.0359 3904  sermouse - ok
19:04:55.0437 3904  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
19:04:55.0562 3904  SessionEnv - ok
19:04:55.0577 3904  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:04:55.0577 3904  sffdisk - ok
19:04:55.0593 3904  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:04:55.0593 3904  sffp_mmc - ok
19:04:55.0624 3904  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:04:55.0624 3904  sffp_sd - ok
19:04:55.0655 3904  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
19:04:55.0655 3904  sfloppy - ok
19:04:55.0780 3904  [ 74EC60E20516AAA573BE74F31175270F ] SftService      C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
19:04:55.0796 3904  SftService - ok
19:04:55.0952 3904  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:04:55.0967 3904  SharedAccess - ok
19:04:56.0045 3904  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:04:56.0154 3904  ShellHWDetection - ok
19:04:56.0186 3904  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:04:56.0186 3904  SiSRaid2 - ok
19:04:56.0201 3904  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
19:04:56.0201 3904  SiSRaid4 - ok
19:04:56.0232 3904  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:04:56.0232 3904  Smb - ok
19:04:56.0279 3904  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:04:56.0295 3904  SNMPTRAP - ok
19:04:56.0342 3904  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:04:56.0342 3904  spldr - ok
19:04:56.0404 3904  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
19:04:56.0404 3904  Spooler - ok
19:04:56.0529 3904  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
19:04:56.0638 3904  sppsvc - ok
19:04:56.0638 3904  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:04:56.0638 3904  sppuinotify - ok
19:04:56.0716 3904  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:04:56.0732 3904  srv - ok
19:04:56.0763 3904  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:04:56.0778 3904  srv2 - ok
19:04:56.0794 3904  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:04:56.0794 3904  srvnet - ok
19:04:56.0841 3904  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:04:56.0841 3904  SSDPSRV - ok
19:04:56.0856 3904  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:04:56.0856 3904  SstpSvc - ok
19:04:56.0888 3904  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
19:04:56.0888 3904  stexstor - ok
19:04:56.0950 3904  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
19:04:57.0090 3904  stisvc - ok
19:04:57.0184 3904  [ 9E182DD94496550A22A392CC1A8E0F52 ] stllssvr        C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe
19:04:57.0200 3904  stllssvr - ok
19:04:57.0246 3904  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
19:04:57.0246 3904  swenum - ok
19:04:57.0293 3904  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
19:04:57.0309 3904  swprv - ok
19:04:57.0371 3904  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
19:04:57.0402 3904  SysMain - ok
19:04:57.0449 3904  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:04:57.0558 3904  TabletInputService - ok
19:04:57.0621 3904  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:04:57.0746 3904  TapiSrv - ok
19:04:57.0777 3904  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
19:04:57.0777 3904  TBS - ok
19:04:57.0870 3904  [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:04:57.0933 3904  Tcpip - ok
19:04:57.0995 3904  [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:04:58.0026 3904  TCPIP6 - ok
19:04:58.0042 3904  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:04:58.0042 3904  tcpipreg - ok
19:04:58.0104 3904  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:04:58.0120 3904  TDPIPE - ok
19:04:58.0151 3904  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:04:58.0167 3904  TDTCP - ok
19:04:58.0182 3904  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:04:58.0198 3904  tdx - ok
19:04:58.0214 3904  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
19:04:58.0214 3904  TermDD - ok
19:04:58.0260 3904  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
19:04:58.0307 3904  TermService - ok
19:04:58.0354 3904  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
19:04:58.0370 3904  Themes - ok
19:04:58.0401 3904  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
19:04:58.0416 3904  THREADORDER - ok
19:04:58.0432 3904  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
19:04:58.0448 3904  TrkWks - ok
19:04:58.0526 3904  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:04:58.0526 3904  TrustedInstaller - ok
19:04:58.0557 3904  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:04:58.0557 3904  tssecsrv - ok
19:04:58.0619 3904  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:04:58.0619 3904  TsUsbFlt - ok
19:04:58.0650 3904  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:04:58.0650 3904  tunnel - ok
19:04:58.0666 3904  [ FD24F98D2898BE093FE926604BE7DB99 ] TurboB          C:\Windows\system32\DRIVERS\TurboB.sys
19:04:58.0666 3904  TurboB - ok
19:04:58.0728 3904  [ 600B406A04D90F577FEA8A88D7379F08 ] TurboBoost      C:\Program Files\Intel\TurboBoost\TurboBoost.exe
19:04:58.0728 3904  TurboBoost - ok
19:04:58.0760 3904  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
19:04:58.0760 3904  uagp35 - ok
19:04:58.0775 3904  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:04:58.0791 3904  udfs - ok
19:04:58.0838 3904  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:04:58.0853 3904  UI0Detect - ok
19:04:58.0869 3904  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:04:58.0884 3904  uliagpkx - ok
19:04:58.0900 3904  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\drivers\umbus.sys
19:04:58.0900 3904  umbus - ok
19:04:58.0931 3904  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
19:04:58.0931 3904  UmPass - ok
19:04:59.0087 3904  [ 2C16648A12999AE69A9EBF41974B0BA2 ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
19:04:59.0196 3904  UNS - ok
19:04:59.0274 3904  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
19:04:59.0274 3904  upnphost - ok
19:04:59.0321 3904  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
19:04:59.0337 3904  usbccgp - ok
19:04:59.0352 3904  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:04:59.0368 3904  usbcir - ok
19:04:59.0384 3904  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
19:04:59.0384 3904  usbehci - ok
19:04:59.0430 3904  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
19:04:59.0446 3904  usbhub - ok
19:04:59.0477 3904  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:04:59.0477 3904  usbohci - ok
19:04:59.0493 3904  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
19:04:59.0493 3904  usbprint - ok
19:04:59.0524 3904  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\drivers\USBSTOR.SYS
19:04:59.0524 3904  USBSTOR - ok
19:04:59.0555 3904  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
19:04:59.0555 3904  usbuhci - ok
19:04:59.0586 3904  [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
19:04:59.0586 3904  usbvideo - ok
19:04:59.0649 3904  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
19:04:59.0649 3904  UxSms - ok
19:04:59.0664 3904  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
19:04:59.0680 3904  VaultSvc - ok
19:04:59.0711 3904  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:04:59.0711 3904  vdrvroot - ok
19:04:59.0758 3904  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
19:04:59.0898 3904  vds - ok
19:04:59.0930 3904  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:04:59.0930 3904  vga - ok
19:04:59.0945 3904  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:04:59.0945 3904  VgaSave - ok
19:05:00.0023 3904  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:05:00.0039 3904  vhdmp - ok
19:05:00.0070 3904  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:05:00.0070 3904  viaide - ok
19:05:00.0101 3904  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:05:00.0101 3904  volmgr - ok
19:05:00.0132 3904  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:05:00.0132 3904  volmgrx - ok
19:05:00.0195 3904  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:05:00.0195 3904  volsnap - ok
19:05:00.0242 3904  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
19:05:00.0242 3904  vsmraid - ok
19:05:00.0335 3904  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
19:05:00.0382 3904  VSS - ok
19:05:00.0444 3904  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
19:05:00.0444 3904  vwifibus - ok
19:05:00.0491 3904  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
19:05:00.0491 3904  vwififlt - ok
19:05:00.0538 3904  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
19:05:00.0554 3904  vwifimp - ok
19:05:00.0616 3904  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
19:05:00.0632 3904  W32Time - ok
19:05:00.0710 3904  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
19:05:00.0710 3904  WacomPen - ok
19:05:00.0772 3904  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:05:00.0772 3904  WANARP - ok
19:05:00.0788 3904  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:05:00.0788 3904  Wanarpv6 - ok
19:05:00.0912 3904  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
19:05:02.0238 3904  WatAdminSvc - ok
19:05:02.0332 3904  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
19:05:02.0566 3904  wbengine - ok
19:05:02.0582 3904  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:05:02.0597 3904  WbioSrvc - ok
19:05:02.0613 3904  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:05:02.0738 3904  wcncsvc - ok
19:05:02.0753 3904  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:05:02.0769 3904  WcsPlugInService - ok
19:05:02.0784 3904  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
19:05:02.0784 3904  Wd - ok
19:05:02.0862 3904  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:05:02.0894 3904  Wdf01000 - ok
19:05:02.0925 3904  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:05:02.0925 3904  WdiServiceHost - ok
19:05:02.0940 3904  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:05:02.0956 3904  WdiSystemHost - ok
19:05:02.0987 3904  [ 94DC2BF6CBAAA95E369C3756D3115A76 ] wdkmd           C:\Windows\system32\DRIVERS\WDKMD.sys
19:05:02.0987 3904  wdkmd - ok
19:05:03.0034 3904  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
19:05:03.0034 3904  WebClient - ok
19:05:03.0081 3904  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:05:03.0096 3904  Wecsvc - ok
19:05:03.0128 3904  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:05:03.0128 3904  wercplsupport - ok
19:05:03.0143 3904  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:05:03.0143 3904  WerSvc - ok
19:05:03.0174 3904  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:05:03.0174 3904  WfpLwf - ok
19:05:03.0237 3904  [ B14EF15BD757FA488F9C970EEE9C0D35 ] WimFltr         C:\Windows\system32\DRIVERS\wimfltr.sys
19:05:03.0237 3904  WimFltr - ok
19:05:03.0268 3904  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:05:03.0268 3904  WIMMount - ok
19:05:03.0299 3904  WinDefend - ok
19:05:03.0330 3904  WinHttpAutoProxySvc - ok
19:05:03.0440 3904  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:05:03.0455 3904  Winmgmt - ok
19:05:03.0564 3904  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
19:05:03.0674 3904  WinRM - ok
19:05:03.0720 3904  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:05:03.0720 3904  WinUsb - ok
19:05:03.0767 3904  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:05:03.0767 3904  Wlansvc - ok
19:05:03.0876 3904  [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
19:05:03.0876 3904  wlcrasvc - ok
19:05:04.0017 3904  [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
19:05:04.0095 3904  wlidsvc - ok
19:05:04.0126 3904  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
19:05:04.0126 3904  WmiAcpi - ok
19:05:04.0173 3904  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:05:04.0188 3904  wmiApSrv - ok
19:05:04.0220 3904  WMPNetworkSvc - ok
19:05:04.0282 3904  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:05:04.0298 3904  WPCSvc - ok
19:05:04.0298 3904  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:05:04.0360 3904  WPDBusEnum - ok
19:05:04.0391 3904  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:05:04.0391 3904  ws2ifsl - ok
19:05:04.0438 3904  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
19:05:04.0454 3904  wscsvc - ok
19:05:04.0454 3904  WSearch - ok
19:05:04.0594 3904  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
19:05:04.0641 3904  wuauserv - ok
19:05:04.0672 3904  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:05:04.0672 3904  WudfPf - ok
19:05:04.0703 3904  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:05:04.0703 3904  WUDFRd - ok
19:05:04.0719 3904  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:05:04.0734 3904  wudfsvc - ok
19:05:04.0781 3904  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:05:04.0781 3904  WwanSvc - ok
19:05:04.0797 3904  ================ Scan global ===============================
19:05:04.0890 3904  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
19:05:04.0922 3904  [ 9E479C2B605C25DA4971ABA36250FAEF ] C:\Windows\system32\winsrv.dll
19:05:04.0953 3904  [ 9E479C2B605C25DA4971ABA36250FAEF ] C:\Windows\system32\winsrv.dll
19:05:05.0000 3904  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
19:05:05.0031 3904  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
19:05:05.0046 3904  [Global] - ok
19:05:05.0046 3904  ================ Scan MBR ==================================
19:05:05.0062 3904  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
19:05:05.0062 3904  Suspicious mbr (Forged): \Device\Harddisk0\DR0
19:05:05.0124 3904  \Device\Harddisk0\DR0 ( Rootkit.Boot.Pihar.c ) - infected
19:05:05.0124 3904  \Device\Harddisk0\DR0 - detected Rootkit.Boot.Pihar.c (0)
19:05:05.0218 3904  \Device\Harddisk0\DR0 ( TDSS File System ) - warning
19:05:05.0218 3904  \Device\Harddisk0\DR0 - detected TDSS File System (1)
19:05:05.0218 3904  ================ Scan VBR ==================================
19:05:05.0218 3904  [ 51D3153E11BAB844D2C883EE971944F1 ] \Device\Harddisk0\DR0\Partition1
19:05:05.0234 3904  \Device\Harddisk0\DR0\Partition1 - ok
19:05:05.0249 3904  [ 683C52AD82086AEDC39384B3D0160F54 ] \Device\Harddisk0\DR0\Partition2
19:05:05.0265 3904  \Device\Harddisk0\DR0\Partition2 - ok
19:05:05.0265 3904  ============================================================
19:05:05.0265 3904  Scan finished
19:05:05.0265 3904  ============================================================
19:05:05.0280 5728  Detected object count: 2
19:05:05.0280 5728  Actual detected object count: 2
19:06:55.0417 5728  \Device\Harddisk0\DR0\# - copied to quarantine
19:06:55.0417 5728  \Device\Harddisk0\DR0 - copied to quarantine
19:06:55.0541 5728  \Device\Harddisk0\DR0\TDLFS\cmd.dll - copied to quarantine
19:06:55.0541 5728  \Device\Harddisk0\DR0\TDLFS\cmd64.dll - copied to quarantine
19:06:55.0573 5728  \Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine
19:06:55.0588 5728  \Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine
19:06:55.0604 5728  \Device\Harddisk0\DR0\TDLFS\servers.dat - copied to quarantine
19:06:55.0604 5728  \Device\Harddisk0\DR0\TDLFS\config.ini - copied to quarantine
19:06:55.0604 5728  \Device\Harddisk0\DR0\TDLFS\ldr16 - copied to quarantine
19:06:55.0619 5728  \Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine
19:06:55.0619 5728  \Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine
19:06:55.0619 5728  \Device\Harddisk0\DR0\TDLFS\s - copied to quarantine
19:06:55.0635 5728  \Device\Harddisk0\DR0\TDLFS\ldrm - copied to quarantine
19:06:55.0635 5728  \Device\Harddisk0\DR0\TDLFS\u - copied to quarantine
19:06:55.0635 5728  \Device\Harddisk0\DR0\TDLFS\cmd32.dll - copied to quarantine
19:06:55.0666 5728  \Device\Harddisk0\DR0\TDLFS\ua - copied to quarantine
19:06:55.0729 5728  \Device\Harddisk0\DR0 ( Rootkit.Boot.Pihar.c ) - will be cured on reboot
19:06:55.0729 5728  \Device\Harddisk0\DR0 - ok
19:06:55.0744 5728  \Device\Harddisk0\DR0 ( Rootkit.Boot.Pihar.c ) - User select action: Cure
19:06:55.0744 5728  \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
19:06:55.0744 5728  \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
19:07:04.0340 5308  Deinitialize success
 



#4 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 03 April 2013 - 08:35 PM

GMER 2.1.19155 - http://www.gmer.net
Rootkit scan 2013-04-03 20:29:42
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD50 rev.01.0 465.76GB
Running: k4yhshf0.exe; Driver: C:\Users\Laurel\AppData\Local\Temp\uwdirpob.sys


---- User code sections - GMER 2.1 ----

.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!EnableWindow                                 0000000075372da4 5 bytes JMP 000000016dc59eb4
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!DialogBoxIndirectParamW                      000000007538cbf3 5 bytes JMP 000000016dda8fb6
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!DialogBoxParamW                              000000007538cfca 5 bytes JMP 000000016dbb1893
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!DialogBoxParamA                              00000000753acb0c 5 bytes JMP 000000016dda8f51
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!DialogBoxIndirectParamA                      00000000753ace64 5 bytes JMP 000000016dda901b
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!MessageBoxIndirectA                          00000000753bfbd1 5 bytes JMP 000000016dda8ed8
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!MessageBoxIndirectW                          00000000753bfc9d 5 bytes JMP 000000016dda8e5f
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!MessageBoxExA                                00000000753bfcd6 5 bytes JMP 000000016dda8dfb
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\USER32.dll!MessageBoxExW                                00000000753bfcfa 5 bytes JMP 000000016dda8d97
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\OLEAUT32.dll!OleCreatePropertyFrameIndirect             0000000075a893ec 5 bytes JMP 000000016dda91d0
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                     0000000075761465 2 bytes [76, 75]
.text  C:\Program Files (x86)\Internet Explorer\iexplore.exe[5648] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                    00000000757614bb 2 bytes [76, 75]
.text  ...                                                                                                                                     * 2
.text  C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_180_ActiveX.exe[5248] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69   0000000075761465 2 bytes [76, 75]
.text  C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_180_ActiveX.exe[5248] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155  00000000757614bb 2 bytes [76, 75]
.text  ...                                                                                                                                     * 2

---- Registry - GMER 2.1 ----

Reg    HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\bc7737172734                                                            
Reg    HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\bc7737172734 (not active ControlSet)                                        

---- EOF - GMER 2.1 ----



#5 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 03 April 2013 - 08:39 PM

That was good ..Reboot if you have not.

By the way these tools are better than Smitrem. Which is a bit old now.

 

I'd like to run one more that's quick.

Please download AdwCleaner by Xplode onto your desktop.
•Close all open programs and internet browsers.
•Double click on adwcleaner.exe to run the tool.
•Click on Delete.
•Confirm each time with Ok.
•You will be prompted to restart your computer. A text file will open after the restart.
•Please post the contents of that logfile with your next reply.
•You can find the logfile at C:\AdwCleaner[S1].txt as well.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#6 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 03 April 2013 - 09:44 PM

# AdwCleaner v2.200 - Logfile created 04/03/2013 at 21:39:03
# Updated 02/04/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Laurel - LAUREL-PC
# Boot Mode : Normal
# Running from : C:\Users\Laurel\Desktop\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\ProgramData\Ask

***** [Registry] *****

Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16457

[OK] Registry is clean.

*************************

AdwCleaner[S1].txt - [674 octets] - [03/04/2013 21:39:03]

########## EOF - C:\AdwCleaner[S1].txt - [733 octets] ##########



#7 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 04 April 2013 - 11:04 AM

I think everything seems okay now???  Thanks so much for your help - is there anything else I should be doing before I send the laptop back for more abuse?  :football:

Again - thanks very much.  Now on to fix the issue I'm having with MY laptop....I may be back this evening - haha!



#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 04 April 2013 - 08:44 PM

You're welcome!! We don't mind if you stick around :)

 

Lets look at whats on the machine..

 

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

 

 

 

Also..

to prevent possible reinfection from an old one. Some of the malware you picked up could have been backed up, renamed and saved in . Since this is a protected directory your tools cannot access to delete these files, they sometimes can reinfect your system if you accidentally use an old restore point. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state.

The easiest and safest way to do this is:

  • Go to StartBtn.gif > Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name, then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.

  • Then use to remove all but the most recently created Restore Point.
  • Go to StartBtn.gif > Run... and type: Cleanmgr
  • Click "Ok". Disk Cleanup will scan your files for several minutes, then open.
  • Click the "More Options" tab, then click the "Clean up" button under System Restore.
  • Click Ok. You will be prompted with "Are you sure you want to delete all but the most recent restore point?"
  • Click Yes, then click Ok.
  • Click Yes again when prompted with "Are you sure you want to perform these actions?"
  • Disk Cleanup will remove the files and close automatically.

Vista and Windows 7 users can refer to these links:


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 04 April 2013 - 09:12 PM

Why thank you!!  :)  Here is the minitoolbox log....will take care of the restore point right now.

 

MiniToolBox by Farbar  Version:05-03-2013
Ran by Laurel (administrator) on 04-04-2013 at 21:08:42
Running from "C:\Users\Laurel\Desktop"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================

 

========================= IP Configuration: ================================

Intel® Centrino® Wireless-N 1030 = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 3 (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global defaultcurhoplimit=64 icmpredirects=enabled
set interface interface="Local Area Connection" forwarding=disabled advertise=disabled mtu=1500 metric=0 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled
set interface interface="Wireless Network Connection" forwarding=disabled advertise=disabled mtu=1500 metric=0 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled


popd
# End of IPv4 configuration

 

Windows IP Configuration

   Host Name . . . . . . . . . . . . : Laurel-PC
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : new.rr.com

Wireless LAN adapter Wireless Network Connection 3:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter #2
   Physical Address. . . . . . . . . : BC-77-37-17-27-31
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection 2:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
   Physical Address. . . . . . . . . : BC-77-37-17-27-31
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Bluetooth Network Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : BC-77-37-17-27-34
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

   Connection-specific DNS Suffix  . : new.rr.com
   Description . . . . . . . . . . . : Intel® Centrino® Wireless-N 1030
   Physical Address. . . . . . . . . : BC-77-37-17-27-30
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::348f:379e:7042:b549%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.103(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, April 04, 2013 9:02:31 PM
   Lease Expires . . . . . . . . . . : Friday, April 05, 2013 9:04:08 PM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 230455095
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-2F-F9-01-14-FE-B5-A1-31-EA
   DNS Servers . . . . . . . . . . . : 209.18.47.61
                                       209.18.47.62
   NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : 14-FE-B5-A1-31-EA
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.new.rr.com:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : new.rr.com
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:28bb:3a65:94f5:9084(Preferred)
   Link-local IPv6 Address . . . . . : fe80::28bb:3a65:94f5:9084%16(Preferred)
   Default Gateway . . . . . . . . . : ::
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  dns-cac-lb-01.rr.com
Address:  209.18.47.61

Name:    google.com
Addresses:  2607:f8b0:4009:801::1006
   74.125.225.135
   74.125.225.136
   74.125.225.137
   74.125.225.142
   74.125.225.128
   74.125.225.129
   74.125.225.130
   74.125.225.131
   74.125.225.132
   74.125.225.133
   74.125.225.134


Pinging google.com [74.125.225.68] with 32 bytes of data:
Reply from 74.125.225.68: bytes=32 time=618ms TTL=53
Reply from 74.125.225.68: bytes=32 time=106ms TTL=53

Ping statistics for 74.125.225.68:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 106ms, Maximum = 618ms, Average = 362ms
Server:  dns-cac-lb-01.rr.com
Address:  209.18.47.61

Name:    yahoo.com
Addresses:  206.190.36.45
   98.138.253.109
   98.139.183.24


Pinging yahoo.com [98.138.253.109] with 32 bytes of data:
Reply from 98.138.253.109: bytes=32 time=909ms TTL=48
Reply from 98.138.253.109: bytes=32 time=812ms TTL=48

Ping statistics for 98.138.253.109:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 812ms, Maximum = 909ms, Average = 860ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=25ms TTL=64
Reply from 127.0.0.1: bytes=32 time=12ms TTL=64

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 12ms, Maximum = 25ms, Average = 18ms
===========================================================================
Interface List
 15...bc 77 37 17 27 31 ......Microsoft Virtual WiFi Miniport Adapter #2
 14...bc 77 37 17 27 31 ......Microsoft Virtual WiFi Miniport Adapter
 13...bc 77 37 17 27 34 ......Bluetooth Device (Personal Area Network)
 11...bc 77 37 17 27 30 ......Intel® Centrino® Wireless-N 1030
 10...14 fe b5 a1 31 ea ......Realtek PCIe FE Family Controller
  1...........................Software Loopback Interface 1
 19...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 16...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.103     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link     192.168.1.103    281
    192.168.1.103  255.255.255.255         On-link     192.168.1.103    281
    192.168.1.255  255.255.255.255         On-link     192.168.1.103    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     192.168.1.103    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     192.168.1.103    281
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 16     58 ::/0                     On-link
  1    306 ::1/128                  On-link
 16     58 2001::/32                On-link
 16    306 2001:0:9d38:6ab8:28bb:3a65:94f5:9084/128
                                    On-link
 11    281 fe80::/64                On-link
 16    306 fe80::/64                On-link
 16    306 fe80::28bb:3a65:94f5:9084/128
                                    On-link
 11    281 fe80::348f:379e:7042:b549/128
                                    On-link
  1    306 ff00::/8                 On-link
 16    306 ff00::/8                 On-link
 11    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)
Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 09 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)
x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 09 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (04/03/2013 03:52:13 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: MCSCAN32 Engine Initialisation failed.
Engine returned error : 3

Error: (04/03/2013 03:48:57 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: MCSCAN32 Engine Initialisation failed.
Engine returned error : 3

Error: (04/02/2013 05:39:24 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc100
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0xe6917c70
Faulting process id: 0x87c
Faulting application start time: 0xsvchost.exe0
Faulting application path: svchost.exe1
Faulting module path: svchost.exe2
Report Id: svchost.exe3

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.


System errors:
=============
Error: (04/03/2013 07:50:49 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (04/03/2013 06:56:06 PM) (Source: NetBT) (User: )
Description: A duplicate name has been detected on the TCP network.  The IP address of
the computer that sent the message is in the data. Use nbtstat -n in a
command window to see which name is in the Conflict state.

Error: (04/03/2013 06:56:06 PM) (Source: NetBT) (User: )
Description: A duplicate name has been detected on the TCP network.  The IP address of
the computer that sent the message is in the data. Use nbtstat -n in a
command window to see which name is in the Conflict state.

Error: (04/03/2013 05:45:49 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80004005

Error: (04/03/2013 05:45:03 PM) (Source: Service Control Manager) (User: )
Description: The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error:
%%1053

Error: (04/03/2013 05:45:03 PM) (Source: Service Control Manager) (User: )
Description: The Function Discovery Resource Publication service failed to start due to the following error:
%%1053

Error: (04/03/2013 05:45:03 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Function Discovery Resource Publication service to connect.

Error: (04/03/2013 05:23:45 PM) (Source: DCOM) (User: )
Description: {3A185DDE-E020-4985-A8F2-E27CDC4A0F3A}

Error: (04/03/2013 05:22:29 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80004005

Error: (04/03/2013 05:17:56 PM) (Source: cdrom) (User: )
Description: The device, \Device\CdRom0, is not ready for access yet.


Microsoft Office Sessions:
=========================
Error: (04/03/2013 03:52:13 AM) (Source: McLogEvent)(User: NT AUTHORITY)
Description: 3

Error: (04/03/2013 03:48:57 AM) (Source: McLogEvent)(User: NT AUTHORITY)
Description: 3

Error: (04/02/2013 05:39:24 PM) (Source: Application Error)(User: )
Description: svchost.exe6.1.7600.163854a5bc100unknown0.0.0.000000000c0000005e6917c7087c01ce2fed274f8d02C:\Windows\SysWOW64\svchost.exeunknown2ad1a5ea-9be6-11e2-804e-bc7737172734

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:06:44 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe

Error: (04/01/2013 10:00:14 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\Cozi Express\CoziExpress.exe


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX (Version: 11.6.602.180)
Advanced Audio FX Engine (Version: 1.12.05)
Bing Rewards Client Installer (Version: 16.0.345.0)
Consumer In-Home Service Agreement (Version: 2.0.0)
Cozi (Version: 1.0.4323.24051)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Dell DataSafe Local Backup - Support Software (Version: 9.4.60)
Dell DataSafe Local Backup (Version: 9.4.60)
Dell DataSafe Online (Version: 2.1.19634)
Dell Driver Download Manager (Version: 2.1.0.0)
Dell Edoc Viewer (Version: 1.0.0)
Dell Getting Started Guide (Version: 1.00.0000)
Dell Home Systems Service Agreement (Version: 2.0.0)
Dell Marketplace Webslice IE8 (Version: 8.0)
Dell MusicStage (Version: 1.5.402.0)
Dell PhotoStage (Version: 1.5.0.1)
Dell PhotoStage (Version: 1.5.0.66)
Dell Stage (Version: 1.7.209.0)
Dell Stage Remote (Version: 2.0.0.43)
Dell Support Center (Version: 3.0.5621.01)
Dell Touchpad (Version: 7.1207.101.218)
Dell VideoStage (Version: 1.1.0.1011)
Dell Webcam Central (Version: 2.00.35)
DirectX 9 Runtime (Version: 1.00.0000)
Intel PROSet Wireless
Intel® Control Center (Version: 1.2.1.1007)
Intel® Management Engine Components (Version: 7.0.0.1144)
Intel® Processor Graphics (Version: 8.15.10.2342)
Intel® PROSet/Wireless Software for Bluetooth® Technology (Version: 1.0.1.0489)
Intel® PROSet/Wireless WiFi Software (Version: 14.00.1000)
Intel® Turbo Boost Technology Monitor 2.0 (Version: 2.1.23.0)
Intel® Wireless Display (Version: 2.0.27.0)
Internet Explorer (Version: 8)
iolo technologies' System Mechanic (Version: 11.7.0)
Java Auto Updater (Version: 2.0.3.1)
Java™ 6 Update 23 (64-bit) (Version: 6.0.230)
Java™ 6 Update 26 (Version: 6.0.260)
Junk Mail filter update (Version: 15.4.3502.0922)
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)
McAfee SecurityCenter (Version: 11.6.477)
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Home and Student 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.58299)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Modem Diagnostic Tool (Version: 1.0.28.0)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
PhotoShowExpress (Version: 2.0.028)
Quickset64 (Version: 11.0.15)
RBVirtualFolder64Inst (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.6267)
Roxio Activation Module (Version: 1.0)
Roxio BackOnTrack (Version: 1.3.3)
Roxio Burn (Version: 1.6)
Roxio Creator Starter (Version: 1.0.311)
Roxio Creator Starter (Version: 12.1.40.0)
Roxio Creator Starter (Version: 5.0.0)
Roxio Express Labeler 3 (Version: 3.2.2)
Roxio File Backup (Version: 1.3.2)
Shared C Run-time for x64 (Version: 10.0.0)
Sonic CinePlayer Decoder Pack (Version: 4.3.0)
TrustedID (Version: 5.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3508.1109)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 46%
Total physical RAM: 4010.17 MB
Available physical RAM: 2152.5 MB
Total Pagefile: 8018.53 MB
Available Pagefile: 5962.72 MB
Total Virtual: 4095.88 MB
Available Virtual: 3974.29 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:451.01 GB) (Free:404.76 GB) NTFS

========================= Users: ========================================

User accounts for \\LAUREL-PC

Administrator            Guest                    Laurel                  

========================= Minidump Files ==================================

No minidump file found


**** End of log ****



#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 04 April 2013 - 10:12 PM

Win7 links did not post
 
Vista and Windows 7 users can refer to these links:
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 04 April 2013 - 10:23 PM

Are you using the free version of McAfee Security Center and is it current?

Go thru Control Panel >> Add/Remove and uninstall these
Java™ 6 Update 23 (64-bit) (Version: 6.0.230)
Java™ 6 Update 26 (Version: 6.0.260)

Reboot

Follow these instructions for installing 64-bit Java on your system.

Choose the 64-bit Windows offline download. From here
http://www.java.com/en/download/manual.jsp

The File Download dialog box appears.
Choose the folder location. (Save the file to a known location on your computer, for example, to your desktop) and Click Save.
Close all applications including the browser.
Double-click on the saved file icon to start the installation process
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#12 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 05 April 2013 - 12:45 AM

Hi! Thanks again for all the help; I figured out how to do the system restore stuff for Win7 no problem, so no worries. The McAfee on my mom's computer is a subscription good through 2014. Is there a better program you recommend? I deleted if off my computer and installed AVG. I would gladly try something else you would recommend.

 

I created a new post last night for the problems I am having with my own computer...as the Malwarebytes notification was the same. I posted the logs for the first three steps but quit in case there was something different, per the logs....(in case you have some time to check it out for me).

 

Took care of the above steps - no problems there. :bananas:



#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:36 PM

Posted 05 April 2013 - 08:35 PM

Good work on that!!
I personally use Avira Antivir

 

Let me look at the other.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#14 Supergirl73

Supergirl73
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:09:36 PM

Posted 06 April 2013 - 08:12 PM

FABULOUS!  Thanks again for all of your help!






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users