Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected by "Privitize VPN"


  • Please log in to reply
5 replies to this topic

#1 Idealworm1989

Idealworm1989

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:10:27 AM

Posted 06 April 2013 - 03:13 PM

Hello there,

 

A couple of nights ago I accidentally downloaded a programme called "Privitize VPN", which turned out to be a virus. My AVG detected and quarantined two trojans (I think), and I spend some time in regedit deleting all suspicious files with "privitize" and "Industriya", but still when I search for "Privitize" in the "about:config" of my Firefox, it locates several files. Additionally when I open IE, it reverts my homepage to "www.google.co.uk/webhp". I've read this is a symptom of the virus. Basically, although this virus isn't affecting the running of my laptop I believe elements remain and I'd like to get rid of them, in case my personal details etc. might be in danger. I've installed and run Malwarebytes and it doesn't come up with everything. I am VERY dense when it comes to computers, but any help would be greatly appreciated.

 

Thanks in advance!

 

A



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:27 AM

Posted 09 April 2013 - 11:14 PM

Welcome...Please run these.

 

I do not know your Operating system,,  XP, Vista etc..

So go into Control Panel.. Remove programs..

Look if there is  a Privatize to uninstall.

 

 

Look in FireFox it may be the Add ons/Plugins.

 

How to disable extensions and plugins

Keeping your third-party plugins up to date

 

 

 

Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)
 
Do not change the default options on scan results.

 

 

 

Please download AdwCleaner by Xplode onto your desktop.
•Close all open programs and internet browsers.
•Double click on adwcleaner.exe to run the tool.
•Click on Delete.
•Confirm each time with Ok.
•You will be prompted to restart your computer. A text file will open after the restart.
•Please post the contents of that logfile with your next reply.
•You can find the logfile at C:\AdwCleaner[S1].txt as well.


>>>>

Now I'd like us to scan your machine with ESET OnlineScan

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png  button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

[B]NOTE:Sometimes if ESET finds no infections it will not create a log.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Idealworm1989

Idealworm1989
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:10:27 AM

Posted 10 April 2013 - 01:47 PM

Thank you so much for getting back to me. I had already removed the Privitize stuff prior to posting.

 

I've completed the first two steps, but when I run ESET, it comes up with a message saying "ESET has stopped working" at around 50%. The first time it came across two threats, the second time it didn't come across any. Additionally, you requested I download the first two programmes to my desktop, however the only option for me is to "save file" (it doesn't specify where) the rest of the process went as described though, is it vital they are installed to desktop?

 

I am running Windows Vista by the way.

 

Thanks again,

 

A



#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:27 AM

Posted 10 April 2013 - 03:30 PM

No as long as you look to where they go so yu can run them..

TRy this instead of ESET

Please run the F-Secure Online Scanner
Follow the Instruction here for installation.
Accept the License Agreement.
Once the ActiveX installs,Click Full System Scan
Once the download completes, the scan will begin automatically.
The scan will take some time to finish, so please be patient.
When the scan completes, click the Automatic cleaning (recommended) button.
Click the Show Report button and Copy&Paste the entire report in your next reply.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 Idealworm1989

Idealworm1989
  • Topic Starter

  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:10:27 AM

Posted 11 April 2013 - 12:09 PM

Hi again, this is the log for TDSS:

 

17:40:23.0818 7192  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:40:25.0300 7192  ============================================================
17:40:25.0300 7192  Current date / time: 2013/04/10 17:40:25.0300
17:40:25.0301 7192  SystemInfo:
17:40:25.0301 7192  
17:40:25.0301 7192  OS Version: 6.1.7601 ServicePack: 1.0
17:40:25.0301 7192  Product type: Workstation
17:40:25.0301 7192  ComputerName: ALEX-PC
17:40:25.0302 7192  UserName: Alex
17:40:25.0302 7192  Windows directory: C:\windows
17:40:25.0302 7192  System windows directory: C:\windows
17:40:25.0302 7192  Running under WOW64
17:40:25.0302 7192  Processor architecture: Intel x64
17:40:25.0302 7192  Number of processors: 4
17:40:25.0302 7192  Page size: 0x1000
17:40:25.0302 7192  Boot type: Normal boot
17:40:25.0302 7192  ============================================================
17:40:26.0464 7192  Drive \Device\Harddisk0\DR0 - Size: 0x1DCF856000 (119.24 Gb), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:40:26.0475 7192  ============================================================
17:40:26.0475 7192  \Device\Harddisk0\DR0:
17:40:26.0475 7192  MBR partitions:
17:40:26.0475 7192  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:40:26.0475 7192  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xAE6D800
17:40:26.0475 7192  ============================================================
17:40:26.0477 7192  C: <-> \Device\Harddisk0\DR0\Partition2
17:40:26.0477 7192  ============================================================
17:40:26.0477 7192  Initialize success
17:40:26.0477 7192  ============================================================
17:40:57.0121 2948  ============================================================
17:40:57.0121 2948  Scan started
17:40:57.0121 2948  Mode: Manual; TDLFS;
17:40:57.0121 2948  ============================================================
17:40:57.0423 2948  ================ Scan system memory ========================
17:40:57.0423 2948  System memory - ok
17:40:57.0424 2948  ================ Scan services =============================
17:40:57.0506 2948  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\windows\system32\drivers\1394ohci.sys
17:40:57.0540 2948  1394ohci - ok
17:40:57.0556 2948  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\windows\system32\drivers\ACPI.sys
17:40:57.0563 2948  ACPI - ok
17:40:57.0573 2948  [ 12C5274CD87449A2A37A607CDB321922 ] acpials         C:\windows\system32\DRIVERS\acpials.sys
17:40:57.0574 2948  acpials - ok
17:40:57.0582 2948  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\windows\system32\drivers\acpipmi.sys
17:40:57.0601 2948  AcpiPmi - ok
17:40:57.0612 2948  [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:40:57.0614 2948  AdobeARMservice - ok
17:40:57.0659 2948  [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:40:57.0664 2948  AdobeFlashPlayerUpdateSvc - ok
17:40:57.0683 2948  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\windows\system32\drivers\adp94xx.sys
17:40:57.0716 2948  adp94xx - ok
17:40:57.0730 2948  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\windows\system32\drivers\adpahci.sys
17:40:57.0759 2948  adpahci - ok
17:40:57.0770 2948  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\windows\system32\drivers\adpu320.sys
17:40:57.0797 2948  adpu320 - ok
17:40:57.0810 2948  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\windows\System32\aelupsvc.dll
17:40:57.0812 2948  AeLookupSvc - ok
17:40:57.0829 2948  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\windows\system32\drivers\afd.sys
17:40:57.0839 2948  AFD - ok
17:40:57.0849 2948  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\windows\system32\drivers\agp440.sys
17:40:57.0874 2948  agp440 - ok
17:40:57.0883 2948  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\windows\System32\alg.exe
17:40:57.0902 2948  ALG - ok
17:40:57.0913 2948  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\windows\system32\drivers\aliide.sys
17:40:57.0933 2948  aliide - ok
17:40:57.0942 2948  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\windows\system32\drivers\amdide.sys
17:40:57.0961 2948  amdide - ok
17:40:57.0970 2948  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\windows\system32\drivers\amdk8.sys
17:40:57.0990 2948  AmdK8 - ok
17:40:57.0999 2948  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\windows\system32\drivers\amdppm.sys
17:40:58.0019 2948  AmdPPM - ok
17:40:58.0029 2948  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\windows\system32\drivers\amdsata.sys
17:40:58.0054 2948  amdsata - ok
17:40:58.0065 2948  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\windows\system32\drivers\amdsbs.sys
17:40:58.0091 2948  amdsbs - ok
17:40:58.0099 2948  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\windows\system32\drivers\amdxata.sys
17:40:58.0120 2948  amdxata - ok
17:40:58.0133 2948  [ 449D90F1FB6402773C2F1ECCEAE15F74 ] AMPPAL          C:\windows\system32\DRIVERS\AMPPAL.sys
17:40:58.0157 2948  AMPPAL - ok
17:40:58.0168 2948  [ 449D90F1FB6402773C2F1ECCEAE15F74 ] AMPPALP         C:\windows\system32\DRIVERS\amppal.sys
17:40:58.0172 2948  AMPPALP - ok
17:40:58.0196 2948  [ AB6E5B9333101E414D8F04BC570064F1 ] AMPPALR3        C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
17:40:58.0206 2948  AMPPALR3 - ok
17:40:58.0218 2948  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\windows\system32\drivers\appid.sys
17:40:58.0238 2948  AppID - ok
17:40:58.0246 2948  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\windows\System32\appidsvc.dll
17:40:58.0251 2948  AppIDSvc - ok
17:40:58.0260 2948  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\windows\System32\appinfo.dll
17:40:58.0262 2948  Appinfo - ok
17:40:58.0274 2948  [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
17:40:58.0277 2948  Apple Mobile Device - ok
17:40:58.0287 2948  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\windows\system32\drivers\arc.sys
17:40:58.0310 2948  arc - ok
17:40:58.0319 2948  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\windows\system32\drivers\arcsas.sys
17:40:58.0342 2948  arcsas - ok
17:40:58.0350 2948  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\windows\system32\DRIVERS\asyncmac.sys
17:40:58.0353 2948  AsyncMac - ok
17:40:58.0360 2948  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\windows\system32\drivers\atapi.sys
17:40:58.0386 2948  atapi - ok
17:40:58.0406 2948  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
17:40:58.0419 2948  AudioEndpointBuilder - ok
17:40:58.0438 2948  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\windows\System32\Audiosrv.dll
17:40:58.0448 2948  AudioSrv - ok
17:40:58.0464 2948  [ 3D1FFAA3358CA0D8A298DEA8BECFC468 ] Avgfwfd         C:\windows\system32\DRIVERS\avgfwd6a.sys
17:40:58.0488 2948  Avgfwfd - ok
17:40:58.0523 2948  [ D0BE22C910E46550C6308D50DDA76B94 ] avgfws          C:\Program Files (x86)\AVG\AVG2013\avgfws.exe
17:40:58.0548 2948  avgfws - ok
17:40:58.0652 2948  [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent     C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
17:40:58.0746 2948  AVGIDSAgent - ok
17:40:58.0761 2948  [ 388056EBD5FE6718FE669078DBE37897 ] AVGIDSDriver    C:\windows\system32\DRIVERS\avgidsdrivera.sys
17:40:58.0785 2948  AVGIDSDriver - ok
17:40:58.0794 2948  [ 550E981747D6A6C55078C77346FFC2C6 ] AVGIDSHA        C:\windows\system32\DRIVERS\avgidsha.sys
17:40:58.0796 2948  AVGIDSHA - ok
17:40:58.0807 2948  [ 5989592A91A17587799792A81E1541D4 ] Avgldx64        C:\windows\system32\DRIVERS\avgldx64.sys
17:40:58.0830 2948  Avgldx64 - ok
17:40:58.0842 2948  [ 3FC43AA02545FCDDC22817829114DEC8 ] Avgloga         C:\windows\system32\DRIVERS\avgloga.sys
17:40:58.0848 2948  Avgloga - ok
17:40:58.0859 2948  [ 841C40C193889730848849AC220D9242 ] Avgmfx64        C:\windows\system32\DRIVERS\avgmfx64.sys
17:40:58.0862 2948  Avgmfx64 - ok
17:40:58.0871 2948  [ FE4F444DBE4BBBDFD8FECF49398DEFC7 ] Avgrkx64        C:\windows\system32\DRIVERS\avgrkx64.sys
17:40:58.0872 2948  Avgrkx64 - ok
17:40:58.0885 2948  [ 6E634525613D48A1D1657FB21F21F3B2 ] Avgtdia         C:\windows\system32\DRIVERS\avgtdia.sys
17:40:58.0908 2948  Avgtdia - ok
17:40:58.0920 2948  [ 4C05242DC361A217223E9B8EC2B3A76B ] avgtp           C:\windows\system32\drivers\avgtpx64.sys
17:40:58.0942 2948  avgtp - ok
17:40:58.0952 2948  [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd           C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
17:40:58.0957 2948  avgwd - ok
17:40:58.0969 2948  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\windows\System32\AxInstSV.dll
17:40:58.0993 2948  AxInstSV - ok
17:40:59.0010 2948  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\windows\system32\drivers\bxvbda.sys
17:40:59.0040 2948  b06bdrv - ok
17:40:59.0058 2948  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\windows\system32\DRIVERS\b57nd60a.sys
17:40:59.0082 2948  b57nd60a - ok
17:40:59.0099 2948  [ 93EE7D9C35AE7E9FFDA148D7805F1421 ] BBSvc           C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
17:40:59.0154 2948  BBSvc - ok
17:40:59.0164 2948  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\windows\System32\bdesvc.dll
17:40:59.0182 2948  BDESVC - ok
17:40:59.0190 2948  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\windows\system32\drivers\Beep.sys
17:40:59.0205 2948  Beep - ok
17:40:59.0226 2948  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\windows\System32\bfe.dll
17:40:59.0240 2948  BFE - ok
17:40:59.0264 2948  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\windows\System32\qmgr.dll
17:40:59.0281 2948  BITS - ok
17:40:59.0289 2948  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\windows\system32\DRIVERS\blbdrive.sys
17:40:59.0307 2948  blbdrive - ok
17:40:59.0334 2948  [ A52EA1D8C2900055323C93DDB252A3DA ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
17:40:59.0349 2948  Bluetooth Device Monitor - ok
17:40:59.0379 2948  [ 091210450CA7CED08F360D9D7FEC5D11 ] Bluetooth Media Service C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
17:40:59.0399 2948  Bluetooth Media Service - ok
17:40:59.0426 2948  [ 392450754E17FF778CBC5B9D20583AD1 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
17:40:59.0443 2948  Bluetooth OBEX Service - ok
17:40:59.0462 2948  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
17:40:59.0472 2948  Bonjour Service - ok
17:40:59.0484 2948  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\windows\system32\DRIVERS\bowser.sys
17:40:59.0487 2948  bowser - ok
17:40:59.0497 2948  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\windows\system32\drivers\BrFiltLo.sys
17:40:59.0516 2948  BrFiltLo - ok
17:40:59.0524 2948  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\windows\system32\drivers\BrFiltUp.sys
17:40:59.0540 2948  BrFiltUp - ok
17:40:59.0553 2948  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\windows\System32\browser.dll
17:40:59.0557 2948  Browser - ok
17:40:59.0571 2948  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\windows\System32\Drivers\Brserid.sys
17:40:59.0599 2948  Brserid - ok
17:40:59.0607 2948  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\windows\System32\Drivers\BrSerWdm.sys
17:40:59.0626 2948  BrSerWdm - ok
17:40:59.0635 2948  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\windows\System32\Drivers\BrUsbMdm.sys
17:40:59.0655 2948  BrUsbMdm - ok
17:40:59.0663 2948  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\windows\System32\Drivers\BrUsbSer.sys
17:40:59.0681 2948  BrUsbSer - ok
17:40:59.0689 2948  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\windows\system32\drivers\BthEnum.sys
17:40:59.0692 2948  BthEnum - ok
17:40:59.0702 2948  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\windows\system32\drivers\bthmodem.sys
17:40:59.0725 2948  BTHMODEM - ok
17:40:59.0736 2948  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\windows\system32\DRIVERS\bthpan.sys
17:40:59.0739 2948  BthPan - ok
17:40:59.0759 2948  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT         C:\windows\System32\Drivers\BTHport.sys
17:40:59.0770 2948  BTHPORT - ok
17:40:59.0781 2948  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\windows\system32\bthserv.dll
17:40:59.0784 2948  bthserv - ok
17:40:59.0793 2948  [ 588762F716C2B7A2054AFBC3D58E5C21 ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
17:40:59.0796 2948  BTHSSecurityMgr - ok
17:40:59.0806 2948  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\windows\System32\Drivers\BTHUSB.sys
17:40:59.0809 2948  BTHUSB - ok
17:40:59.0819 2948  [ 988CC6CC49303665D3B2435C51505C3F ] btmaux          C:\windows\system32\DRIVERS\btmaux.sys
17:40:59.0822 2948  btmaux - ok
17:40:59.0846 2948  [ 2B4B508AFAC2A563931AF1FE875A5B16 ] btmhsf          C:\windows\system32\DRIVERS\btmhsf.sys
17:40:59.0860 2948  btmhsf - ok
17:40:59.0871 2948  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\windows\system32\DRIVERS\cdfs.sys
17:40:59.0897 2948  cdfs - ok
17:40:59.0907 2948  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\windows\system32\DRIVERS\cdrom.sys
17:40:59.0930 2948  cdrom - ok
17:40:59.0941 2948  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\windows\System32\certprop.dll
17:40:59.0945 2948  CertPropSvc - ok
17:40:59.0955 2948  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\windows\system32\drivers\circlass.sys
17:40:59.0976 2948  circlass - ok
17:40:59.0994 2948  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\windows\system32\CLFS.sys
17:41:00.0002 2948  CLFS - ok
17:41:00.0018 2948  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:41:00.0056 2948  clr_optimization_v2.0.50727_32 - ok
17:41:00.0071 2948  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
17:41:00.0103 2948  clr_optimization_v2.0.50727_64 - ok
17:41:00.0122 2948  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:41:00.0131 2948  clr_optimization_v4.0.30319_32 - ok
17:41:00.0147 2948  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
17:41:00.0151 2948  clr_optimization_v4.0.30319_64 - ok
17:41:00.0163 2948  [ E13A438F9E51DD034730678E33B73290 ] clwvd           C:\windows\system32\DRIVERS\clwvd.sys
17:41:00.0187 2948  clwvd - ok
17:41:00.0197 2948  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\windows\system32\DRIVERS\CmBatt.sys
17:41:00.0219 2948  CmBatt - ok
17:41:00.0233 2948  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\windows\system32\drivers\cmdide.sys
17:41:00.0256 2948  cmdide - ok
17:41:00.0278 2948  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\windows\system32\Drivers\cng.sys
17:41:00.0288 2948  CNG - ok
17:41:00.0300 2948  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\windows\system32\DRIVERS\compbatt.sys
17:41:00.0302 2948  Compbatt - ok
17:41:00.0313 2948  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\windows\system32\DRIVERS\CompositeBus.sys
17:41:00.0337 2948  CompositeBus - ok
17:41:00.0424 2948  COMSysApp - ok
17:41:00.0508 2948  [ 2EB06FCCFACB43B0EA6EBDD1ABE8CB17 ] cphs            C:\windows\SysWow64\IntelCpHeciSvc.exe
17:41:00.0593 2948  cphs - ok
17:41:00.0602 2948  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\windows\system32\drivers\crcdisk.sys
17:41:00.0623 2948  crcdisk - ok
17:41:00.0640 2948  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\windows\system32\cryptsvc.dll
17:41:00.0646 2948  CryptSvc - ok
17:41:00.0670 2948  [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc          C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
17:41:00.0684 2948  cvhsvc - ok
17:41:00.0707 2948  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\windows\system32\rpcss.dll
17:41:00.0719 2948  DcomLaunch - ok
17:41:00.0734 2948  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\windows\System32\defragsvc.dll
17:41:00.0741 2948  defragsvc - ok
17:41:00.0752 2948  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\windows\system32\Drivers\dfsc.sys
17:41:00.0774 2948  DfsC - ok
17:41:00.0788 2948  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\windows\system32\dhcpcore.dll
17:41:00.0796 2948  Dhcp - ok
17:41:00.0804 2948  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\windows\system32\drivers\discache.sys
17:41:00.0806 2948  discache - ok
17:41:00.0814 2948  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\windows\system32\drivers\disk.sys
17:41:00.0817 2948  Disk - ok
17:41:00.0828 2948  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\windows\System32\dnsrslvr.dll
17:41:00.0833 2948  Dnscache - ok
17:41:00.0850 2948  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\windows\System32\dot3svc.dll
17:41:00.0870 2948  dot3svc - ok
17:41:00.0881 2948  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\windows\system32\dps.dll
17:41:00.0886 2948  DPS - ok
17:41:00.0895 2948  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\windows\system32\drivers\drmkaud.sys
17:41:00.0911 2948  drmkaud - ok
17:41:00.0938 2948  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\windows\System32\drivers\dxgkrnl.sys
17:41:00.0983 2948  DXGKrnl - ok
17:41:00.0994 2948  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\windows\System32\eapsvc.dll
17:41:01.0000 2948  EapHost - ok
17:41:01.0064 2948  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\windows\system32\drivers\evbda.sys
17:41:01.0139 2948  ebdrv - ok
17:41:01.0152 2948  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\windows\System32\lsass.exe
17:41:01.0156 2948  EFS - ok
17:41:01.0178 2948  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\windows\ehome\ehRecvr.exe
17:41:01.0192 2948  ehRecvr - ok
17:41:01.0202 2948  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\windows\ehome\ehsched.exe
17:41:01.0224 2948  ehSched - ok
17:41:01.0246 2948  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\windows\system32\drivers\elxstor.sys
17:41:01.0282 2948  elxstor - ok
17:41:01.0289 2948  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\windows\system32\drivers\errdev.sys
17:41:01.0307 2948  ErrDev - ok
17:41:01.0325 2948  [ F9B5EFCE2A856BBA9DA2A28252180036 ] ETD             C:\windows\system32\DRIVERS\ETD.sys
17:41:01.0349 2948  ETD - ok
17:41:01.0369 2948  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\windows\system32\es.dll
17:41:01.0379 2948  EventSystem - ok
17:41:01.0401 2948  [ 64D25284A4E9D11CA0722AF3F30FD970 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
17:41:01.0414 2948  EvtEng - ok
17:41:01.0426 2948  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\windows\system32\drivers\exfat.sys
17:41:01.0454 2948  exfat - ok
17:41:01.0465 2948  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\windows\system32\drivers\fastfat.sys
17:41:01.0490 2948  fastfat - ok
17:41:01.0511 2948  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\windows\system32\fxssvc.exe
17:41:01.0525 2948  Fax - ok
17:41:01.0533 2948  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\windows\system32\drivers\fdc.sys
17:41:01.0551 2948  fdc - ok
17:41:01.0565 2948  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\windows\system32\fdPHost.dll
17:41:01.0567 2948  fdPHost - ok
17:41:01.0574 2948  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\windows\system32\fdrespub.dll
17:41:01.0577 2948  FDResPub - ok
17:41:01.0585 2948  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\windows\system32\drivers\fileinfo.sys
17:41:01.0588 2948  FileInfo - ok
17:41:01.0597 2948  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\windows\system32\drivers\filetrace.sys
17:41:01.0617 2948  Filetrace - ok
17:41:01.0640 2948  [ 8669BE94F63944E4F899C3950B520241 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
17:41:01.0670 2948  FLEXnet Licensing Service - ok
17:41:01.0692 2948  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\windows\system32\drivers\flpydisk.sys
17:41:01.0714 2948  flpydisk - ok
17:41:01.0731 2948  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\windows\system32\drivers\fltmgr.sys
17:41:01.0740 2948  FltMgr - ok
17:41:01.0777 2948  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\windows\system32\FntCache.dll
17:41:01.0800 2948  FontCache - ok
17:41:01.0810 2948  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:41:01.0869 2948  FontCache3.0.0.0 - ok
17:41:01.0878 2948  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\windows\system32\drivers\FsDepends.sys
17:41:01.0904 2948  FsDepends - ok
17:41:01.0913 2948  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\windows\system32\drivers\Fs_Rec.sys
17:41:01.0915 2948  Fs_Rec - ok
17:41:01.0928 2948  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\windows\system32\DRIVERS\fvevol.sys
17:41:01.0934 2948  fvevol - ok
17:41:01.0943 2948  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\windows\system32\drivers\gagp30kx.sys
17:41:01.0967 2948  gagp30kx - ok
17:41:01.0982 2948  [ 521A469CAF61F00E1DE081CC2099C1D6 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
17:41:02.0043 2948  GameConsoleService - ok
17:41:02.0052 2948  [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM     C:\windows\system32\DRIVERS\GEARAspiWDM.sys
17:41:02.0073 2948  GEARAspiWDM - ok
17:41:02.0095 2948  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\windows\System32\gpsvc.dll
17:41:02.0110 2948  gpsvc - ok
17:41:02.0117 2948  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\windows\system32\drivers\hcw85cir.sys
17:41:02.0136 2948  hcw85cir - ok
17:41:02.0151 2948  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
17:41:02.0181 2948  HdAudAddService - ok
17:41:02.0190 2948  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\windows\system32\DRIVERS\HDAudBus.sys
17:41:02.0194 2948  HDAudBus - ok
17:41:02.0201 2948  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\windows\system32\drivers\HidBatt.sys
17:41:02.0220 2948  HidBatt - ok
17:41:02.0229 2948  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\windows\system32\drivers\hidbth.sys
17:41:02.0251 2948  HidBth - ok
17:41:02.0259 2948  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\windows\system32\drivers\hidir.sys
17:41:02.0279 2948  HidIr - ok
17:41:02.0287 2948  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\windows\system32\hidserv.dll
17:41:02.0290 2948  hidserv - ok
17:41:02.0298 2948  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\windows\system32\DRIVERS\hidusb.sys
17:41:02.0301 2948  HidUsb - ok
17:41:02.0315 2948  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\windows\system32\kmsvc.dll
17:41:02.0320 2948  hkmsvc - ok
17:41:02.0333 2948  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
17:41:02.0340 2948  HomeGroupListener - ok
17:41:02.0352 2948  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
17:41:02.0358 2948  HomeGroupProvider - ok
17:41:02.0367 2948  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\windows\system32\drivers\HpSAMD.sys
17:41:02.0394 2948  HpSAMD - ok
17:41:02.0415 2948  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\windows\system32\drivers\HTTP.sys
17:41:02.0429 2948  HTTP - ok
17:41:02.0438 2948  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\windows\system32\drivers\hwpolicy.sys
17:41:02.0442 2948  hwpolicy - ok
17:41:02.0451 2948  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\windows\system32\DRIVERS\i8042prt.sys
17:41:02.0473 2948  i8042prt - ok
17:41:02.0496 2948  [ C224331A54571C8C9162F7714400BBBD ] iaStor          C:\windows\system32\DRIVERS\iaStor.sys
17:41:02.0505 2948  iaStor - ok
17:41:02.0521 2948  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\windows\system32\drivers\iaStorV.sys
17:41:02.0551 2948  iaStorV - ok
17:41:02.0561 2948  [ 60CC7AE9AEDB4D1E7923BD053B176D97 ] ibtfltcoex      C:\windows\system32\DRIVERS\iBtFltCoex.sys
17:41:02.0564 2948  ibtfltcoex - ok
17:41:02.0587 2948  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
17:41:02.0657 2948  idsvc - ok
17:41:02.0912 2948  [ 54E37A4E66B2CA1C38E9728FAD5F9822 ] igfx            C:\windows\system32\DRIVERS\igdkmd64.sys
17:41:03.0185 2948  igfx - ok
17:41:03.0201 2948  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\windows\system32\drivers\iirsp.sys
17:41:03.0223 2948  iirsp - ok
17:41:03.0246 2948  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\windows\System32\ikeext.dll
17:41:03.0262 2948  IKEEXT - ok
17:41:03.0275 2948  [ CADDF0927DAC63EDAE48F5C35A61D87D ] intaud_WaveExtensible C:\windows\system32\drivers\intelaud.sys
17:41:03.0297 2948  intaud_WaveExtensible - ok
17:41:03.0371 2948  [ 6EF96DF5184DDB95A12107B8D7531FB7 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys
17:41:03.0449 2948  IntcAzAudAddService - ok
17:41:03.0466 2948  [ 6C9FFFECA9FED31347D211C5D1FFBD2D ] IntcDAud        C:\windows\system32\DRIVERS\IntcDAud.sys
17:41:03.0495 2948  IntcDAud - ok
17:41:03.0514 2948  [ 832CE330DD987227B7DEA8C03F22AEFA ] Intel® Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
17:41:03.0526 2948  Intel® Capability Licensing Service Interface - ok
17:41:03.0539 2948  [ 9571D8BDB56EBC52280E8020574508E6 ] Intel® ME Service C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
17:41:03.0542 2948  Intel® ME Service - ok
17:41:03.0553 2948  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\windows\system32\drivers\intelide.sys
17:41:03.0574 2948  intelide - ok
17:41:03.0583 2948  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\windows\system32\DRIVERS\intelppm.sys
17:41:03.0586 2948  intelppm - ok
17:41:03.0597 2948  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\windows\system32\ipbusenum.dll
17:41:03.0620 2948  IPBusEnum - ok
17:41:03.0630 2948  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\windows\system32\DRIVERS\ipfltdrv.sys
17:41:03.0653 2948  IpFilterDriver - ok
17:41:03.0670 2948  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\windows\System32\iphlpsvc.dll
17:41:03.0682 2948  iphlpsvc - ok
17:41:03.0691 2948  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\windows\system32\drivers\IPMIDrv.sys
17:41:03.0712 2948  IPMIDRV - ok
17:41:03.0726 2948  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\windows\system32\drivers\ipnat.sys
17:41:03.0749 2948  IPNAT - ok
17:41:03.0770 2948  [ 0F261EC4F514926177C70C1832374231 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
17:41:03.0780 2948  iPod Service - ok
17:41:03.0788 2948  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\windows\system32\drivers\irenum.sys
17:41:03.0810 2948  IRENUM - ok
17:41:03.0821 2948  [ 6DC22BDAA595BE00F19696E72F2F3312 ] irstrtdv        C:\windows\system32\DRIVERS\irstrtdv.sys
17:41:03.0842 2948  irstrtdv - ok
17:41:03.0855 2948  [ 205FD80EF4B9832F9763B9A187957260 ] irstrtsv        C:\windows\SysWOW64\irstrtsv.exe
17:41:03.0862 2948  irstrtsv - ok
17:41:03.0873 2948  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\windows\system32\drivers\isapnp.sys
17:41:03.0900 2948  isapnp - ok
17:41:03.0915 2948  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\windows\system32\drivers\msiscsi.sys
17:41:03.0946 2948  iScsiPrt - ok
17:41:03.0956 2948  [ 716F66336F10885D935B08174DC54242 ] iwdbus          C:\windows\system32\DRIVERS\iwdbus.sys
17:41:03.0979 2948  iwdbus - ok
17:41:03.0991 2948  [ DBD76BC1D498FE368F2C8CB76C3E00A4 ] jhi_service     C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
17:41:03.0996 2948  jhi_service - ok
17:41:04.0007 2948  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\windows\system32\DRIVERS\kbdclass.sys
17:41:04.0033 2948  kbdclass - ok
17:41:04.0044 2948  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\windows\system32\drivers\kbdhid.sys
17:41:04.0065 2948  kbdhid - ok
17:41:04.0074 2948  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\windows\system32\lsass.exe
17:41:04.0079 2948  KeyIso - ok
17:41:04.0092 2948  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\windows\system32\Drivers\ksecdd.sys
17:41:04.0096 2948  KSecDD - ok
17:41:04.0108 2948  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\windows\system32\Drivers\ksecpkg.sys
17:41:04.0113 2948  KSecPkg - ok
17:41:04.0122 2948  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\windows\system32\drivers\ksthunk.sys
17:41:04.0142 2948  ksthunk - ok
17:41:04.0164 2948  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\windows\system32\msdtckrm.dll
17:41:04.0198 2948  KtmRm - ok
17:41:04.0212 2948  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\windows\system32\srvsvc.dll
17:41:04.0222 2948  LanmanServer - ok
17:41:04.0233 2948  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
17:41:04.0240 2948  LanmanWorkstation - ok
17:41:04.0255 2948  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\windows\system32\DRIVERS\lltdio.sys
17:41:04.0258 2948  lltdio - ok
17:41:04.0274 2948  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\windows\System32\lltdsvc.dll
17:41:04.0299 2948  lltdsvc - ok
17:41:04.0310 2948  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\windows\System32\lmhsvc.dll
17:41:04.0314 2948  lmhosts - ok
17:41:04.0328 2948  [ 86E4CC39C953D11EF57CF54C4DC78238 ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
17:41:04.0334 2948  LMS - ok
17:41:04.0351 2948  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\windows\system32\drivers\lsi_fc.sys
17:41:04.0377 2948  LSI_FC - ok
17:41:04.0389 2948  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\windows\system32\drivers\lsi_sas.sys
17:41:04.0413 2948  LSI_SAS - ok
17:41:04.0423 2948  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\windows\system32\drivers\lsi_sas2.sys
17:41:04.0446 2948  LSI_SAS2 - ok
17:41:04.0456 2948  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\windows\system32\drivers\lsi_scsi.sys
17:41:04.0480 2948  LSI_SCSI - ok
17:41:04.0490 2948  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\windows\system32\drivers\luafv.sys
17:41:04.0495 2948  luafv - ok
17:41:04.0509 2948  [ 92EB844D90615CB266F84C3202B8786E ] MBAMProtector   C:\windows\system32\drivers\mbam.sys
17:41:04.0510 2948  MBAMProtector - ok
17:41:04.0527 2948  [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler   C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
17:41:04.0535 2948  MBAMScheduler - ok
17:41:04.0555 2948  [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService     C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
17:41:04.0567 2948  MBAMService - ok
17:41:04.0577 2948  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\windows\system32\Mcx2Svc.dll
17:41:04.0598 2948  Mcx2Svc - ok
17:41:04.0607 2948  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\windows\system32\drivers\megasas.sys
17:41:04.0629 2948  megasas - ok
17:41:04.0644 2948  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\windows\system32\drivers\MegaSR.sys
17:41:04.0673 2948  MegaSR - ok
17:41:04.0684 2948  [ 6B01B7414A105B9E51652089A03027CF ] MEIx64          C:\windows\system32\DRIVERS\HECIx64.sys
17:41:04.0704 2948  MEIx64 - ok
17:41:04.0712 2948  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\windows\system32\mmcss.dll
17:41:04.0717 2948  MMCSS - ok
17:41:04.0725 2948  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\windows\system32\drivers\modem.sys
17:41:04.0745 2948  Modem - ok
17:41:04.0753 2948  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\windows\system32\DRIVERS\monitor.sys
17:41:04.0755 2948  monitor - ok
17:41:04.0762 2948  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\windows\system32\DRIVERS\mouclass.sys
17:41:04.0784 2948  mouclass - ok
17:41:04.0792 2948  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\windows\system32\DRIVERS\mouhid.sys
17:41:04.0811 2948  mouhid - ok
17:41:04.0820 2948  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\windows\system32\drivers\mountmgr.sys
17:41:04.0823 2948  mountmgr - ok
17:41:04.0832 2948  [ 8A7C8F4C713E70D73946833D76B77035 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
17:41:04.0876 2948  MozillaMaintenance - ok
17:41:04.0897 2948  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\windows\system32\drivers\mpio.sys
17:41:04.0932 2948  mpio - ok
17:41:04.0944 2948  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\windows\system32\drivers\mpsdrv.sys
17:41:04.0948 2948  mpsdrv - ok
17:41:04.0974 2948  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\windows\system32\mpssvc.dll
17:41:04.0990 2948  MpsSvc - ok
17:41:05.0002 2948  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\windows\system32\drivers\mrxdav.sys
17:41:05.0025 2948  MRxDAV - ok
17:41:05.0037 2948  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\windows\system32\DRIVERS\mrxsmb.sys
17:41:05.0043 2948  mrxsmb - ok
17:41:05.0059 2948  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\windows\system32\DRIVERS\mrxsmb10.sys
17:41:05.0066 2948  mrxsmb10 - ok
17:41:05.0078 2948  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\windows\system32\DRIVERS\mrxsmb20.sys
17:41:05.0082 2948  mrxsmb20 - ok
17:41:05.0092 2948  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\windows\system32\drivers\msahci.sys
17:41:05.0117 2948  msahci - ok
17:41:05.0129 2948  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\windows\system32\drivers\msdsm.sys
17:41:05.0156 2948  msdsm - ok
17:41:05.0178 2948  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\windows\System32\msdtc.exe
17:41:05.0221 2948  MSDTC - ok
17:41:05.0254 2948  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\windows\system32\drivers\Msfs.sys
17:41:05.0274 2948  Msfs - ok
17:41:05.0284 2948  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\windows\System32\drivers\mshidkmdf.sys
17:41:05.0308 2948  mshidkmdf - ok
17:41:05.0328 2948  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\windows\system32\drivers\msisadrv.sys
17:41:05.0330 2948  msisadrv - ok
17:41:05.0353 2948  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\windows\system32\iscsiexe.dll
17:41:05.0377 2948  MSiSCSI - ok
17:41:05.0387 2948  msiserver - ok
17:41:05.0405 2948  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\windows\system32\drivers\MSKSSRV.sys
17:41:05.0430 2948  MSKSSRV - ok
17:41:05.0442 2948  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\windows\system32\drivers\MSPCLOCK.sys
17:41:05.0467 2948  MSPCLOCK - ok
17:41:05.0478 2948  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\windows\system32\drivers\MSPQM.sys
17:41:05.0515 2948  MSPQM - ok
17:41:05.0531 2948  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\windows\system32\drivers\MsRPC.sys
17:41:05.0540 2948  MsRPC - ok
17:41:05.0553 2948  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\windows\system32\DRIVERS\mssmbios.sys
17:41:05.0555 2948  mssmbios - ok
17:41:05.0563 2948  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\windows\system32\drivers\MSTEE.sys
17:41:05.0582 2948  MSTEE - ok
17:41:05.0593 2948  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\windows\system32\drivers\MTConfig.sys
17:41:05.0615 2948  MTConfig - ok
17:41:05.0626 2948  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\windows\system32\Drivers\mup.sys
17:41:05.0629 2948  Mup - ok
17:41:05.0643 2948  [ E3B58E3011B207C5289D11173B30E298 ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
17:41:05.0672 2948  MyWiFiDHCPDNS - ok
17:41:05.0692 2948  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\windows\system32\qagentRT.dll
17:41:05.0703 2948  napagent - ok
17:41:05.0718 2948  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\windows\system32\DRIVERS\nwifi.sys
17:41:05.0725 2948  NativeWifiP - ok
17:41:05.0751 2948  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\windows\system32\drivers\ndis.sys
17:41:05.0767 2948  NDIS - ok
17:41:05.0778 2948  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\windows\system32\DRIVERS\ndiscap.sys
17:41:05.0798 2948  NdisCap - ok
17:41:05.0808 2948  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\windows\system32\DRIVERS\ndistapi.sys
17:41:05.0827 2948  NdisTapi - ok
17:41:05.0837 2948  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\windows\system32\DRIVERS\ndisuio.sys
17:41:05.0840 2948  Ndisuio - ok
17:41:05.0851 2948  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\windows\system32\DRIVERS\ndiswan.sys
17:41:05.0874 2948  NdisWan - ok
17:41:05.0887 2948  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\windows\system32\drivers\NDProxy.sys
17:41:05.0909 2948  NDProxy - ok
17:41:05.0918 2948  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\windows\system32\DRIVERS\netbios.sys
17:41:05.0940 2948  NetBIOS - ok
17:41:05.0954 2948  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\windows\system32\DRIVERS\netbt.sys
17:41:05.0961 2948  NetBT - ok
17:41:05.0970 2948  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\windows\system32\lsass.exe
17:41:05.0973 2948  Netlogon - ok
17:41:05.0990 2948  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\windows\System32\netman.dll
17:41:06.0000 2948  Netman - ok
17:41:06.0018 2948  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\windows\System32\netprofm.dll
17:41:06.0029 2948  netprofm - ok
17:41:06.0040 2948  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:41:06.0518 2948  NetTcpPortSharing - ok
17:41:06.0715 2948  [ B51E9AD4F4E4F8DBE0AB882756BC5DAB ] NETwNs64        C:\windows\system32\DRIVERS\NETwNs64.sys
17:41:06.0902 2948  NETwNs64 - ok
17:41:06.0919 2948  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\windows\system32\drivers\nfrd960.sys
17:41:06.0945 2948  nfrd960 - ok
17:41:06.0961 2948  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\windows\System32\nlasvc.dll
17:41:06.0970 2948  NlaSvc - ok
17:41:06.0980 2948  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\windows\system32\drivers\Npfs.sys
17:41:06.0999 2948  Npfs - ok
17:41:07.0007 2948  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\windows\system32\nsisvc.dll
17:41:07.0011 2948  nsi - ok
17:41:07.0019 2948  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\windows\system32\drivers\nsiproxy.sys
17:41:07.0020 2948  nsiproxy - ok
17:41:07.0063 2948  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\windows\system32\drivers\Ntfs.sys
17:41:07.0092 2948  Ntfs - ok
17:41:07.0100 2948  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\windows\system32\drivers\Null.sys
17:41:07.0117 2948  Null - ok
17:41:07.0128 2948  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\windows\system32\drivers\nvraid.sys
17:41:07.0156 2948  nvraid - ok
17:41:07.0167 2948  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\windows\system32\drivers\nvstor.sys
17:41:07.0193 2948  nvstor - ok
17:41:07.0203 2948  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\windows\system32\drivers\nv_agp.sys
17:41:07.0229 2948  nv_agp - ok
17:41:07.0238 2948  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\windows\system32\drivers\ohci1394.sys
17:41:07.0259 2948  ohci1394 - ok
17:41:07.0272 2948  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:41:07.0278 2948  ose - ok
17:41:07.0374 2948  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
17:41:07.0454 2948  osppsvc - ok
17:41:07.0476 2948  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\windows\system32\pnrpsvc.dll
17:41:07.0485 2948  p2pimsvc - ok
17:41:07.0511 2948  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\windows\system32\p2psvc.dll
17:41:07.0522 2948  p2psvc - ok
17:41:07.0533 2948  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\windows\system32\drivers\parport.sys
17:41:07.0556 2948  Parport - ok
17:41:07.0568 2948  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\windows\system32\drivers\partmgr.sys
17:41:07.0571 2948  partmgr - ok
17:41:07.0590 2948  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\windows\System32\pcasvc.dll
17:41:07.0599 2948  PcaSvc - ok
17:41:07.0619 2948  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\windows\system32\drivers\pci.sys
17:41:07.0624 2948  pci - ok
17:41:07.0635 2948  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\windows\system32\drivers\pciide.sys
17:41:07.0657 2948  pciide - ok
17:41:07.0671 2948  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\windows\system32\drivers\pcmcia.sys
17:41:07.0698 2948  pcmcia - ok
17:41:07.0708 2948  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\windows\system32\drivers\pcw.sys
17:41:07.0711 2948  pcw - ok
17:41:07.0731 2948  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\windows\system32\drivers\peauth.sys
17:41:07.0743 2948  PEAUTH - ok
17:41:07.0760 2948  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\windows\SysWow64\perfhost.exe
17:41:07.0787 2948  PerfHost - ok
17:41:07.0832 2948  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\windows\system32\pla.dll
17:41:07.0883 2948  pla - ok
17:41:07.0902 2948  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\windows\system32\umpnpmgr.dll
17:41:07.0913 2948  PlugPlay - ok
17:41:07.0924 2948  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\windows\system32\pnrpauto.dll
17:41:07.0944 2948  PNRPAutoReg - ok
17:41:07.0959 2948  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\windows\system32\pnrpsvc.dll
17:41:07.0967 2948  PNRPsvc - ok
17:41:07.0987 2948  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\windows\System32\ipsecsvc.dll
17:41:07.0998 2948  PolicyAgent - ok
17:41:08.0017 2948  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\windows\system32\umpo.dll
17:41:08.0023 2948  Power - ok
17:41:08.0034 2948  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\windows\system32\DRIVERS\raspptp.sys
17:41:08.0058 2948  PptpMiniport - ok
17:41:08.0067 2948  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\windows\system32\drivers\processr.sys
17:41:08.0089 2948  Processor - ok
17:41:08.0103 2948  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\windows\system32\profsvc.dll
17:41:08.0112 2948  ProfSvc - ok
17:41:08.0120 2948  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
17:41:08.0125 2948  ProtectedStorage - ok
17:41:08.0136 2948  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\windows\system32\DRIVERS\pacer.sys
17:41:08.0141 2948  Psched - ok
17:41:08.0176 2948  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\windows\system32\drivers\ql2300.sys
17:41:08.0226 2948  ql2300 - ok
17:41:08.0239 2948  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\windows\system32\drivers\ql40xx.sys
17:41:08.0266 2948  ql40xx - ok
17:41:08.0284 2948  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\windows\system32\qwave.dll
17:41:08.0315 2948  QWAVE - ok
17:41:08.0325 2948  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\windows\system32\drivers\qwavedrv.sys
17:41:08.0346 2948  QWAVEdrv - ok
17:41:08.0354 2948  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\windows\system32\DRIVERS\rasacd.sys
17:41:08.0372 2948  RasAcd - ok
17:41:08.0382 2948  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\windows\system32\DRIVERS\AgileVpn.sys
17:41:08.0407 2948  RasAgileVpn - ok
17:41:08.0421 2948  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\windows\System32\rasauto.dll
17:41:08.0444 2948  RasAuto - ok
17:41:08.0453 2948  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\windows\system32\DRIVERS\rasl2tp.sys
17:41:08.0478 2948  Rasl2tp - ok
17:41:08.0492 2948  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\windows\System32\rasmans.dll
17:41:08.0523 2948  RasMan - ok
17:41:08.0531 2948  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\windows\system32\DRIVERS\raspppoe.sys
17:41:08.0553 2948  RasPppoe - ok
17:41:08.0562 2948  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\windows\system32\DRIVERS\rassstp.sys
17:41:08.0583 2948  RasSstp - ok
17:41:08.0597 2948  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\windows\system32\DRIVERS\rdbss.sys
17:41:08.0624 2948  rdbss - ok
17:41:08.0632 2948  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\windows\system32\drivers\rdpbus.sys
17:41:08.0652 2948  rdpbus - ok
17:41:08.0659 2948  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\windows\system32\DRIVERS\RDPCDD.sys
17:41:08.0661 2948  RDPCDD - ok
17:41:08.0673 2948  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\windows\system32\drivers\rdpencdd.sys
17:41:08.0675 2948  RDPENCDD - ok
17:41:08.0687 2948  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\windows\system32\drivers\rdprefmp.sys
17:41:08.0689 2948  RDPREFMP - ok
17:41:08.0701 2948  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\windows\system32\drivers\RDPWD.sys
17:41:08.0728 2948  RDPWD - ok
17:41:08.0740 2948  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\windows\system32\drivers\rdyboost.sys
17:41:08.0746 2948  rdyboost - ok
17:41:08.0757 2948  [ F3AF2B43F35DBB3A0EB9FEEEC7D62217 ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
17:41:08.0761 2948  RegSrvc - ok
17:41:08.0774 2948  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\windows\System32\mprdim.dll
17:41:08.0799 2948  RemoteAccess - ok
17:41:08.0812 2948  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\windows\system32\regsvc.dll
17:41:08.0840 2948  RemoteRegistry - ok
17:41:08.0851 2948  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\windows\system32\DRIVERS\rfcomm.sys
17:41:08.0856 2948  RFCOMM - ok
17:41:08.0892 2948  [ CC465ECBC1700B2D91E152ED9165994A ] RosettaStoneDaemon C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe
17:41:08.0920 2948  RosettaStoneDaemon - ok
17:41:08.0931 2948  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\windows\System32\RpcEpMap.dll
17:41:08.0935 2948  RpcEptMapper - ok
17:41:08.0943 2948  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\windows\system32\locator.exe
17:41:08.0959 2948  RpcLocator - ok
17:41:08.0983 2948  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\windows\system32\rpcss.dll
17:41:08.0994 2948  RpcSs - ok
17:41:09.0006 2948  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\windows\system32\DRIVERS\rspndr.sys
17:41:09.0009 2948  rspndr - ok
17:41:09.0029 2948  [ 6CF9DB101A75360E98659F823852E540 ] RTL8167         C:\windows\system32\DRIVERS\Rt64win7.sys
17:41:09.0039 2948  RTL8167 - ok
17:41:09.0050 2948  [ CAB06CA598638E0457E1DCF8CA824EC2 ] rusb3hub        C:\windows\system32\DRIVERS\rusb3hub.sys
17:41:09.0071 2948  rusb3hub - ok
17:41:09.0083 2948  [ F47E2920F2A8C34562AAE24B73800C5C ] rusb3xhc        C:\windows\system32\DRIVERS\rusb3xhc.sys
17:41:09.0108 2948  rusb3xhc - ok
17:41:09.0116 2948  [ 62DB6CC4B0818F1B5F3441241B098F12 ] SABI            C:\windows\system32\Drivers\SABI.sys
17:41:09.0135 2948  SABI - ok
17:41:09.0143 2948  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\windows\system32\lsass.exe
17:41:09.0147 2948  SamSs - ok
17:41:09.0159 2948  [ 5E66ABD041D76C46CBF55AEF910FCA56 ] SamsungDeviceConfigurationWinService C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
17:41:09.0161 2948  SamsungDeviceConfigurationWinService - ok
17:41:09.0171 2948  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\windows\system32\drivers\sbp2port.sys
17:41:09.0196 2948  sbp2port - ok
17:41:09.0207 2948  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\windows\System32\SCardSvr.dll
17:41:09.0229 2948  SCardSvr - ok
17:41:09.0237 2948  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\windows\system32\DRIVERS\scfilter.sys
17:41:09.0257 2948  scfilter - ok
17:41:09.0283 2948  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\windows\system32\schedsvc.dll
17:41:09.0305 2948  Schedule - ok
17:41:09.0318 2948  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\windows\System32\certprop.dll
17:41:09.0321 2948  SCPolicySvc - ok
17:41:09.0337 2948  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\windows\System32\SDRSVC.dll
17:41:09.0364 2948  SDRSVC - ok
17:41:09.0379 2948  [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort         C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
17:41:09.0384 2948  SeaPort - ok
17:41:09.0392 2948  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\windows\system32\drivers\secdrv.sys
17:41:09.0394 2948  secdrv - ok
17:41:09.0404 2948  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\windows\system32\seclogon.dll
17:41:09.0430 2948  seclogon - ok
17:41:09.0439 2948  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\windows\System32\sens.dll
17:41:09.0444 2948  SENS - ok
17:41:09.0452 2948  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\windows\system32\sensrsvc.dll
17:41:09.0457 2948  SensrSvc - ok
17:41:09.0464 2948  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\windows\system32\drivers\serenum.sys
17:41:09.0483 2948  Serenum - ok
17:41:09.0491 2948  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\windows\system32\drivers\serial.sys
17:41:09.0513 2948  Serial - ok
17:41:09.0520 2948  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\windows\system32\drivers\sermouse.sys
17:41:09.0539 2948  sermouse - ok
17:41:09.0563 2948  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\windows\system32\sessenv.dll
17:41:09.0585 2948  SessionEnv - ok
17:41:09.0592 2948  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\windows\system32\drivers\sffdisk.sys
17:41:09.0609 2948  sffdisk - ok
17:41:09.0616 2948  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\windows\system32\drivers\sffp_mmc.sys
17:41:09.0635 2948  sffp_mmc - ok
17:41:09.0643 2948  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\windows\system32\drivers\sffp_sd.sys
17:41:09.0660 2948  sffp_sd - ok
17:41:09.0668 2948  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\windows\system32\drivers\sfloppy.sys
17:41:09.0690 2948  sfloppy - ok
17:41:09.0712 2948  [ C6CC9297BD53E5229653303E556AA539 ] Sftfs           C:\windows\system32\DRIVERS\Sftfslh.sys
17:41:09.0723 2948  Sftfs - ok
17:41:09.0741 2948  [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist         C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
17:41:09.0751 2948  sftlist - ok
17:41:09.0766 2948  [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay         C:\windows\system32\DRIVERS\Sftplaylh.sys
17:41:09.0771 2948  Sftplay - ok
17:41:09.0779 2948  [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir        C:\windows\system32\DRIVERS\Sftredirlh.sys
17:41:09.0780 2948  Sftredir - ok
17:41:09.0789 2948  [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol          C:\windows\system32\DRIVERS\Sftvollh.sys
17:41:09.0790 2948  Sftvol - ok
17:41:09.0806 2948  [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa          C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
17:41:09.0812 2948  sftvsa - ok
17:41:09.0828 2948  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\windows\System32\ipnathlp.dll
17:41:09.0861 2948  SharedAccess - ok
17:41:09.0879 2948  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
17:41:09.0889 2948  ShellHWDetection - ok
17:41:09.0903 2948  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\windows\system32\drivers\SiSRaid2.sys
17:41:09.0924 2948  SiSRaid2 - ok
17:41:09.0936 2948  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\windows\system32\drivers\sisraid4.sys
17:41:09.0960 2948  SiSRaid4 - ok
17:41:09.0973 2948  [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
17:41:09.0977 2948  SkypeUpdate - ok
17:41:09.0992 2948  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\windows\system32\DRIVERS\smb.sys
17:41:10.0015 2948  Smb - ok
17:41:10.0048 2948  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\windows\System32\snmptrap.exe
17:41:10.0053 2948  SNMPTRAP - ok
17:41:10.0062 2948  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\windows\system32\drivers\spldr.sys
17:41:10.0065 2948  spldr - ok
17:41:10.0093 2948  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\windows\System32\spoolsv.exe
17:41:10.0108 2948  Spooler - ok
17:41:10.0177 2948  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\windows\system32\sppsvc.exe
17:41:10.0233 2948  sppsvc - ok
17:41:10.0247 2948  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\windows\system32\sppuinotify.dll
17:41:10.0276 2948  sppuinotify - ok
17:41:10.0297 2948  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\windows\system32\DRIVERS\srv.sys
17:41:10.0307 2948  srv - ok
17:41:10.0326 2948  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\windows\system32\DRIVERS\srv2.sys
17:41:10.0336 2948  srv2 - ok
17:41:10.0356 2948  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\windows\system32\DRIVERS\srvnet.sys
17:41:10.0368 2948  srvnet - ok
17:41:10.0386 2948  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\windows\System32\ssdpsrv.dll
17:41:10.0395 2948  SSDPSRV - ok
17:41:10.0407 2948  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\windows\system32\sstpsvc.dll
17:41:10.0412 2948  SstpSvc - ok
17:41:10.0429 2948  Steam Client Service - ok
17:41:10.0442 2948  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\windows\system32\drivers\stexstor.sys
17:41:10.0464 2948  stexstor - ok
17:41:10.0487 2948  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\windows\System32\wiaservc.dll
17:41:10.0501 2948  stisvc - ok
17:41:10.0509 2948  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\windows\system32\DRIVERS\swenum.sys
17:41:10.0530 2948  swenum - ok
17:41:10.0547 2948  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\windows\System32\swprv.dll
17:41:10.0562 2948  swprv - ok
17:41:10.0601 2948  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\windows\system32\sysmain.dll
17:41:10.0634 2948  SysMain - ok
17:41:10.0645 2948  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
17:41:10.0665 2948  TabletInputService - ok
17:41:10.0685 2948  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\windows\System32\tapisrv.dll
17:41:10.0725 2948  TapiSrv - ok
17:41:10.0734 2948  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\windows\System32\tbssvc.dll
17:41:10.0738 2948  TBS - ok
17:41:10.0780 2948  [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip           C:\windows\system32\drivers\tcpip.sys
17:41:10.0813 2948  Tcpip - ok
17:41:10.0856 2948  [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6          C:\windows\system32\DRIVERS\tcpip.sys
17:41:10.0884 2948  TCPIP6 - ok
17:41:10.0900 2948  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\windows\system32\drivers\tcpipreg.sys
17:41:10.0903 2948  tcpipreg - ok
17:41:10.0916 2948  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\windows\system32\drivers\tdpipe.sys
17:41:10.0936 2948  TDPIPE - ok
17:41:10.0945 2948  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\windows\system32\drivers\tdtcp.sys
17:41:10.0965 2948  TDTCP - ok
17:41:10.0976 2948  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\windows\system32\DRIVERS\tdx.sys
17:41:11.0003 2948  tdx - ok
17:41:11.0012 2948  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\windows\system32\DRIVERS\termdd.sys
17:41:11.0036 2948  TermDD - ok
17:41:11.0059 2948  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\windows\System32\termsrv.dll
17:41:11.0075 2948  TermService - ok
17:41:11.0085 2948  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\windows\system32\themeservice.dll
17:41:11.0090 2948  Themes - ok
17:41:11.0099 2948  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\windows\system32\mmcss.dll
17:41:11.0103 2948  THREADORDER - ok
17:41:11.0113 2948  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\windows\System32\trkwks.dll
17:41:11.0120 2948  TrkWks - ok
17:41:11.0131 2948  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
17:41:11.0135 2948  TrustedInstaller - ok
17:41:11.0147 2948  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\windows\system32\DRIVERS\tssecsrv.sys
17:41:11.0168 2948  tssecsrv - ok
17:41:11.0177 2948  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\windows\system32\drivers\tsusbflt.sys
17:41:11.0201 2948  TsUsbFlt - ok
17:41:11.0210 2948  [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD         C:\windows\system32\drivers\TsUsbGD.sys
17:41:11.0231 2948  TsUsbGD - ok
17:41:11.0245 2948  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\windows\system32\DRIVERS\tunnel.sys
17:41:11.0250 2948  tunnel - ok
17:41:11.0260 2948  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\windows\system32\drivers\uagp35.sys
17:41:11.0283 2948  uagp35 - ok
17:41:11.0298 2948  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\windows\system32\DRIVERS\udfs.sys
17:41:11.0327 2948  udfs - ok
17:41:11.0346 2948  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\windows\system32\UI0Detect.exe
17:41:11.0371 2948  UI0Detect - ok
17:41:11.0381 2948  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\windows\system32\drivers\uliagpkx.sys
17:41:11.0406 2948  uliagpkx - ok
17:41:11.0415 2948  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\windows\system32\DRIVERS\umbus.sys
17:41:11.0436 2948  umbus - ok
17:41:11.0444 2948  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\windows\system32\drivers\umpass.sys
17:41:11.0466 2948  UmPass - ok
17:41:11.0483 2948  [ D80B1075B69B57A3AB78F750CE463ECE ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
17:41:11.0489 2948  UNS - ok
17:41:11.0507 2948  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\windows\System32\upnphost.dll
17:41:11.0517 2948  upnphost - ok
17:41:11.0526 2948  [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64       C:\windows\system32\Drivers\usbaapl64.sys
17:41:11.0547 2948  USBAAPL64 - ok
17:41:11.0558 2948  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio        C:\windows\system32\drivers\usbaudio.sys
17:41:11.0563 2948  usbaudio - ok
17:41:11.0573 2948  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\windows\system32\DRIVERS\usbccgp.sys
17:41:11.0577 2948  usbccgp - ok
17:41:11.0589 2948  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\windows\system32\drivers\usbcir.sys
17:41:11.0615 2948  usbcir - ok
17:41:11.0625 2948  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\windows\system32\drivers\usbehci.sys
17:41:11.0628 2948  usbehci - ok
17:41:11.0645 2948  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\windows\system32\DRIVERS\usbhub.sys
17:41:11.0653 2948  usbhub - ok
17:41:11.0662 2948  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\windows\system32\drivers\usbohci.sys
17:41:11.0682 2948  usbohci - ok
17:41:11.0690 2948  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\windows\system32\drivers\usbprint.sys
17:41:11.0711 2948  usbprint - ok
17:41:11.0722 2948  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\windows\system32\DRIVERS\USBSTOR.SYS
17:41:11.0726 2948  USBSTOR - ok
17:41:11.0736 2948  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\windows\system32\drivers\usbuhci.sys
17:41:11.0757 2948  usbuhci - ok
17:41:11.0770 2948  [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo        C:\windows\system32\Drivers\usbvideo.sys
17:41:11.0776 2948  usbvideo - ok
17:41:11.0785 2948  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\windows\System32\uxsms.dll
17:41:11.0790 2948  UxSms - ok
17:41:11.0798 2948  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\windows\system32\lsass.exe
17:41:11.0801 2948  VaultSvc - ok
17:41:11.0810 2948  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\windows\system32\drivers\vdrvroot.sys
17:41:11.0812 2948  vdrvroot - ok
17:41:11.0832 2948  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\windows\System32\vds.exe
17:41:11.0869 2948  vds - ok
17:41:11.0878 2948  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\windows\system32\DRIVERS\vgapnp.sys
17:41:11.0898 2948  vga - ok
17:41:11.0906 2948  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\windows\System32\drivers\vga.sys
17:41:11.0927 2948  VgaSave - ok
17:41:11.0941 2948  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\windows\system32\drivers\vhdmp.sys
17:41:11.0971 2948  vhdmp - ok
17:41:11.0979 2948  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\windows\system32\drivers\viaide.sys
17:41:12.0001 2948  viaide - ok
17:41:12.0010 2948  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\windows\system32\drivers\volmgr.sys
17:41:12.0013 2948  volmgr - ok
17:41:12.0028 2948  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\windows\system32\drivers\volmgrx.sys
17:41:12.0037 2948  volmgrx - ok
17:41:12.0067 2948  [ DF8126BD41180351A093A3AD2FC8903B ] volsnap         C:\windows\system32\drivers\volsnap.sys
17:41:12.0074 2948  volsnap - ok
17:41:12.0090 2948  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\windows\system32\drivers\vsmraid.sys
17:41:12.0116 2948  vsmraid - ok
17:41:12.0155 2948  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\windows\system32\vssvc.exe
17:41:12.0186 2948  VSS - ok
17:41:12.0216 2948  [ 3AD1E72748978D8B0B3B674741E4C3E2 ] vToolbarUpdater14.2.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
17:41:12.0234 2948  vToolbarUpdater14.2.0 - ok
17:41:12.0250 2948  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\windows\system32\DRIVERS\vwifibus.sys
17:41:12.0254 2948  vwifibus - ok
17:41:12.0264 2948  [ 13A0DECD1794DE60A8427862C8669D27 ] VWiFiFlt        C:\windows\system32\DRIVERS\vwififlt.sys
17:41:12.0284 2948  VWiFiFlt - ok
17:41:12.0293 2948  [ 49003B357D101CDC474937437ECF5ABC ] vwifimp         C:\windows\system32\DRIVERS\vwifimp.sys
17:41:12.0295 2948  vwifimp - ok
17:41:12.0313 2948  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\windows\system32\w32time.dll
17:41:12.0324 2948  W32Time - ok
17:41:12.0342 2948  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\windows\system32\drivers\wacompen.sys
17:41:12.0362 2948  WacomPen - ok
17:41:12.0373 2948  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\windows\system32\DRIVERS\wanarp.sys
17:41:12.0397 2948  WANARP - ok
17:41:12.0405 2948  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\windows\system32\DRIVERS\wanarp.sys
17:41:12.0408 2948  Wanarpv6 - ok
17:41:12.0442 2948  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\windows\system32\Wat\WatAdminSvc.exe
17:41:12.0818 2948  WatAdminSvc - ok
17:41:12.0855 2948  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\windows\system32\wbengine.exe
17:41:12.0918 2948  wbengine - ok
17:41:12.0932 2948  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\windows\System32\wbiosrvc.dll
17:41:12.0956 2948  WbioSrvc - ok
17:41:12.0978 2948  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\windows\System32\wcncsvc.dll
17:41:13.0004 2948  wcncsvc - ok
17:41:13.0013 2948  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
17:41:13.0037 2948  WcsPlugInService - ok
17:41:13.0046 2948  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\windows\system32\drivers\wd.sys
17:41:13.0068 2948  Wd - ok
17:41:13.0076 2948  [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM         C:\windows\system32\DRIVERS\wdcsam64.sys
17:41:13.0095 2948  WDC_SAM - ok
17:41:13.0117 2948  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\windows\system32\drivers\Wdf01000.sys
17:41:13.0132 2948  Wdf01000 - ok
17:41:13.0141 2948  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\windows\system32\wdi.dll
17:41:13.0148 2948  WdiServiceHost - ok
17:41:13.0156 2948  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\windows\system32\wdi.dll
17:41:13.0161 2948  WdiSystemHost - ok
17:41:13.0174 2948  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\windows\System32\webclnt.dll
17:41:13.0198 2948  WebClient - ok
17:41:13.0213 2948  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\windows\system32\wecsvc.dll
17:41:13.0239 2948  Wecsvc - ok
17:41:13.0253 2948  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\windows\System32\wercplsupport.dll
17:41:13.0259 2948  wercplsupport - ok
17:41:13.0270 2948  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\windows\System32\WerSvc.dll
17:41:13.0277 2948  WerSvc - ok
17:41:13.0285 2948  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\windows\system32\DRIVERS\wfplwf.sys
17:41:13.0304 2948  WfpLwf - ok
17:41:13.0313 2948  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\windows\system32\drivers\wimmount.sys
17:41:13.0335 2948  WIMMount - ok
17:41:13.0342 2948  WinDefend - ok
17:41:13.0355 2948  WinHttpAutoProxySvc - ok
17:41:13.0378 2948  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\windows\system32\wbem\WMIsvc.dll
17:41:13.0385 2948  Winmgmt - ok
17:41:13.0430 2948  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\windows\system32\WsmSvc.dll
17:41:13.0505 2948  WinRM - ok
17:41:13.0541 2948  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\windows\System32\wlansvc.dll
17:41:13.0560 2948  Wlansvc - ok
17:41:13.0569 2948  [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
17:41:13.0597 2948  wlcrasvc - ok
17:41:13.0647 2948  [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
17:41:13.0680 2948  wlidsvc - ok
17:41:13.0690 2948  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\windows\system32\drivers\wmiacpi.sys
17:41:13.0710 2948  WmiAcpi - ok
17:41:13.0731 2948  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\windows\system32\wbem\WmiApSrv.exe
17:41:13.0764 2948  wmiApSrv - ok
17:41:13.0772 2948  WMPNetworkSvc - ok
17:41:13.0783 2948  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\windows\System32\wpcsvc.dll
17:41:13.0802 2948  WPCSvc - ok
17:41:13.0812 2948  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\windows\system32\wpdbusenum.dll
17:41:13.0819 2948  WPDBusEnum - ok
17:41:13.0828 2948  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\windows\system32\drivers\ws2ifsl.sys
17:41:13.0849 2948  ws2ifsl - ok
17:41:13.0859 2948  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\windows\System32\wscsvc.dll
17:41:13.0865 2948  wscsvc - ok
17:41:13.0872 2948  WSearch - ok
17:41:13.0936 2948  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\windows\system32\wuaueng.dll
17:41:13.0980 2948  wuauserv - ok
17:41:14.0002 2948  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\windows\system32\drivers\WudfPf.sys
17:41:14.0006 2948  WudfPf - ok
17:41:14.0019 2948  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\windows\system32\DRIVERS\WUDFRd.sys
17:41:14.0026 2948  WUDFRd - ok
17:41:14.0052 2948  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\windows\System32\WUDFSvc.dll
17:41:14.0058 2948  wudfsvc - ok
17:41:14.0083 2948  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\windows\System32\wwansvc.dll
17:41:14.0117 2948  WwanSvc - ok
17:41:14.0151 2948  [ 74713CB32792F9C7632DAA7DA22CA974 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
17:41:14.0163 2948  ZeroConfigService - ok
17:41:14.0205 2948  ================ Scan global ===============================
17:41:14.0214 2948  [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll
17:41:14.0227 2948  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\windows\system32\winsrv.dll
17:41:14.0246 2948  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\windows\system32\winsrv.dll
17:41:14.0261 2948  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll
17:41:14.0277 2948  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\windows\system32\services.exe
17:41:14.0287 2948  [Global] - ok
17:41:14.0288 2948  ================ Scan MBR ==================================
17:41:14.0295 2948  [ 2E5DEBB2116B3417023E0D6562D7ED07 ] \Device\Harddisk0\DR0
17:41:14.0731 2948  \Device\Harddisk0\DR0 - ok
17:41:14.0733 2948  ================ Scan VBR ==================================
17:41:14.0739 2948  [ B50417D82BC0E777A4956109FC2B046B ] \Device\Harddisk0\DR0\Partition1
17:41:14.0749 2948  \Device\Harddisk0\DR0\Partition1 - ok
17:41:14.0760 2948  [ 380B70B3CB1692089EFDA63DDF1FE0E9 ] \Device\Harddisk0\DR0\Partition2
17:41:14.0764 2948  \Device\Harddisk0\DR0\Partition2 - ok
17:41:14.0765 2948  ============================================================
17:41:14.0765 2948  Scan finished
17:41:14.0765 2948  ============================================================
17:41:14.0791 5888  Detected object count: 0
17:41:14.0791 5888  Actual detected object count: 0
17:45:50.0745 4448  Deinitialize success

 

This is ADw Cleaner:

 

# AdwCleaner v2.200 - Logfile created 04/10/2013 at 17:53:25
# Updated 02/04/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Alex - ALEX-PC
# Boot Mode : Normal
# Running from : C:\Users\Alex\Downloads\AdwCleaner(1).exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Program Files (x86)\Common Files\AVG Secure Search
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
Folder Deleted : C:\Program Files (x86)\AVG Secure Search
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\AVG Security Toolbar
Folder Deleted : C:\Users\Alex\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\Alex\AppData\Local\Conduit
Folder Deleted : C:\Users\Alex\AppData\Local\PackageAware
Folder Deleted : C:\Users\Alex\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\Alex\AppData\LocalLow\Conduit

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\StartSearch
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3220468
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16470

[OK] Registry is clean.

-\\ Mozilla Firefox v19.0.2 (en-US)

File : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\mev4459i.default-1365535059349\prefs.js

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [317 octets] - [10/04/2013 17:48:04]
AdwCleaner[S2].txt - [6195 octets] - [10/04/2013 17:53:25]

########## EOF - C:\AdwCleaner[S2].txt - [6255 octets] ##########

 

I ran the F-Secure online scan, but there was no option for a full system scan, it just scanned automatically, and there was no "Show Report" option at the end either, it just says "The scan did not find any harmful applications."
 

 


 



#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,906 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:27 AM

Posted 11 April 2013 - 08:48 PM

Is your homepage still redirecting? If so then we should get a deeper look. Please follow this Preparation Guide and post in a new topic.

Let me know if all went well.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users