Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Am I infected? Clicked on an ad :/


  • Please log in to reply
9 replies to this topic

#1 ohht

ohht

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 29 April 2013 - 06:28 PM

Was watching, ya know, on the hub.

 

I have adblock on Firefox, but I was thinking, and keep clicking the middle-mouse button. I look back to my screen and it has opened up 2 new windows to fling.com (i have exact links if needed, idk if I'm allowed to post).

 

Having been keylogged before, I've been extremely paranoid about computer security, was wondering if I could post a log and someone whos qualified, verify that I'm clean or not.

 

thanks.



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,338 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:36 PM

Posted 29 April 2013 - 06:46 PM

Hello ohht
what log(s) doo you have?
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 ohht

ohht
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 01 May 2013 - 01:48 PM

None so far

Hello ohht
what log(s) doo you have?



#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,338 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:36 PM

Posted 01 May 2013 - 01:56 PM

As you have reformatted any malware should be gone.

 

If you want to scan then run these.

 

Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)
 
Do not change the default options on scan results.

 

 

 

Please download AdwCleaner by Xplode onto your desktop.
•Close all open programs and internet browsers.
•Double click on adwcleaner.exe to run the tool.
•Click on Delete.
•Confirm each time with Ok.
•You will be prompted to restart your computer. A text file will open after the restart.
•Please post the contents of that logfile with your next reply.
•You can find the logfile at C:\AdwCleaner[S1].txt as well.

>>>>

Now I'd like us to scan your machine with ESET OnlineScan

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png  button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.

NOTE:Sometimes if ESET finds no infections it will not create a log.

 

 

 

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 ohht

ohht
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 07 May 2013 - 06:06 AM

21:36:23.0117 7084  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
21:36:23.0466 7084  ============================================================
21:36:23.0466 7084  Current date / time: 2013/05/06 21:36:23.0466
21:36:23.0466 7084  SystemInfo:
21:36:23.0466 7084  
21:36:23.0466 7084  OS Version: 6.0.6001 ServicePack: 1.0
21:36:23.0466 7084  Product type: Workstation
21:36:23.0466 7084  ComputerName: JAMES-PC
21:36:23.0467 7084  UserName: James
21:36:23.0467 7084  Windows directory: C:\Windows
21:36:23.0467 7084  System windows directory: C:\Windows
21:36:23.0467 7084  Running under WOW64
21:36:23.0467 7084  Processor architecture: Intel x64
21:36:23.0467 7084  Number of processors: 2
21:36:23.0467 7084  Page size: 0x1000
21:36:23.0467 7084  Boot type: Normal boot
21:36:23.0467 7084  ============================================================
21:36:25.0086 7084  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:36:25.0091 7084  ============================================================
21:36:25.0091 7084  \Device\Harddisk0\DR0:
21:36:25.0091 7084  MBR partitions:
21:36:25.0091 7084  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x38658000
21:36:25.0091 7084  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x3866C000, BlocksNum 0x1D19800
21:36:25.0091 7084  ============================================================
21:36:25.0121 7084  C: <-> \Device\Harddisk0\DR0\Partition1
21:36:25.0251 7084  D: <-> \Device\Harddisk0\DR0\Partition2
21:36:25.0251 7084  ============================================================
21:36:25.0251 7084  Initialize success
21:36:25.0251 7084  ============================================================
21:36:36.0957 7124  ============================================================
21:36:36.0957 7124  Scan started
21:36:36.0957 7124  Mode: Manual; TDLFS;
21:36:36.0957 7124  ============================================================
21:36:37.0583 7124  ================ Scan system memory ========================
21:36:37.0583 7124  System memory - ok
21:36:37.0583 7124  ================ Scan services =============================
21:36:37.0681 7124  [ 8C99ED256A889D647935A97C543B7B85 ] ACPI            C:\Windows\system32\drivers\acpi.sys
21:36:37.0685 7124  ACPI - ok
21:36:37.0797 7124  [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:36:37.0798 7124  AdobeARMservice - ok
21:36:37.0840 7124  [ F14215E37CF124104575073F782111D2 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
21:36:37.0850 7124  adp94xx - ok
21:36:37.0868 7124  [ 7D05A75E3066861A6610F7EE04FF085C ] adpahci         C:\Windows\system32\drivers\adpahci.sys
21:36:37.0874 7124  adpahci - ok
21:36:37.0883 7124  [ 820A201FE08A0C345B3BEDBC30E1A77C ] adpu160m        C:\Windows\system32\drivers\adpu160m.sys
21:36:37.0887 7124  adpu160m - ok
21:36:37.0900 7124  [ 9B4AB6854559DC168FBB4C24FC52E794 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
21:36:37.0904 7124  adpu320 - ok
21:36:37.0939 7124  [ 0F421175574BFE0BF2F4D8E910A253BB ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:36:37.0940 7124  AeLookupSvc - ok
21:36:37.0970 7124  [ 9BB97042FA331A0FB4BDD98B9280A50A ] AFD             C:\Windows\system32\drivers\afd.sys
21:36:37.0978 7124  AFD - ok
21:36:38.0002 7124  [ F6F6793B7F17B550ECFDBD3B229173F7 ] agp440          C:\Windows\system32\drivers\agp440.sys
21:36:38.0005 7124  agp440 - ok
21:36:38.0026 7124  [ 222CB641B4B8A1D1126F8033F9FD6A00 ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
21:36:38.0028 7124  aic78xx - ok
21:36:38.0047 7124  [ 5922F4F59B7868F3D74BBBBEB7B825A3 ] ALG             C:\Windows\System32\alg.exe
21:36:38.0050 7124  ALG - ok
21:36:38.0056 7124  [ 157D0898D4B73F075CE9FA26B482DF98 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:36:38.0057 7124  aliide - ok
21:36:38.0063 7124  [ 970FA5059E61E30D25307B99903E991E ] amdide          C:\Windows\system32\drivers\amdide.sys
21:36:38.0065 7124  amdide - ok
21:36:38.0074 7124  [ CDC3632A3A5EA4DBB83E46076A3165A1 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
21:36:38.0075 7124  AmdK8 - ok
21:36:38.0092 7124  [ 9C37B3FD5615477CB9A0CD116CF43F5C ] Appinfo         C:\Windows\System32\appinfo.dll
21:36:38.0094 7124  Appinfo - ok
21:36:38.0117 7124  [ BA8417D4765F3988FF921F30F630E303 ] arc             C:\Windows\system32\drivers\arc.sys
21:36:38.0138 7124  arc - ok
21:36:38.0161 7124  [ 9D41C435619733B34CC16A511E644B11 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
21:36:38.0164 7124  arcsas - ok
21:36:38.0173 7124  [ 22D13FF3DAFEC2A80634752B1EAA2DE6 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:36:38.0178 7124  AsyncMac - ok
21:36:38.0192 7124  [ 1898FAE8E07D97F2F6C2D5326C633FAC ] atapi           C:\Windows\system32\drivers\atapi.sys
21:36:38.0193 7124  atapi - ok
21:36:38.0232 7124  [ 2A54B6A48AB6D2166271B05E9469326E ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:36:38.0238 7124  AudioEndpointBuilder - ok
21:36:38.0255 7124  [ 2A54B6A48AB6D2166271B05E9469326E ] AudioSrv        C:\Windows\System32\Audiosrv.dll
21:36:38.0259 7124  AudioSrv - ok
21:36:38.0303 7124  [ B66AEBF3B7073473468B941629242FBD ] BFE             C:\Windows\System32\bfe.dll
21:36:38.0310 7124  BFE - ok
21:36:38.0353 7124  [ D896A0D43F8AB81ECB1FC6C24DECFD58 ] BITS            C:\Windows\System32\qmgr.dll
21:36:38.0368 7124  BITS - ok
21:36:38.0387 7124  [ 79FEEB40056683F8F61398D81DDA65D2 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
21:36:38.0389 7124  blbdrive - ok
21:36:38.0409 7124  [ F0F035FCEC3554CC1B70C5611BD87951 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:36:38.0411 7124  bowser - ok
21:36:38.0425 7124  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\brfiltlo.sys
21:36:38.0426 7124  BrFiltLo - ok
21:36:38.0431 7124  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\brfiltup.sys
21:36:38.0437 7124  BrFiltUp - ok
21:36:38.0459 7124  [ A1B39DE453433B115B4EA69EE0343816 ] Browser         C:\Windows\System32\browser.dll
21:36:38.0462 7124  Browser - ok
21:36:38.0479 7124  [ F0F0BA4D815BE446AA6A4583CA3BCA9B ] Brserid         C:\Windows\system32\drivers\brserid.sys
21:36:38.0482 7124  Brserid - ok
21:36:38.0490 7124  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\system32\drivers\brserwdm.sys
21:36:38.0492 7124  BrSerWdm - ok
21:36:38.0497 7124  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\system32\drivers\brusbmdm.sys
21:36:38.0499 7124  BrUsbMdm - ok
21:36:38.0505 7124  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\system32\drivers\brusbser.sys
21:36:38.0507 7124  BrUsbSer - ok
21:36:38.0513 7124  [ E0777B34E05F8A82A21856EFC900C29F ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
21:36:38.0515 7124  BTHMODEM - ok
21:36:38.0522 7124  [ B4D787DB8D30793A4D4DF9FEED18F136 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:36:38.0524 7124  cdfs - ok
21:36:38.0540 7124  [ 3B2FB35363423ED60C8FBF15FC8680BD ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:36:38.0542 7124  cdrom - ok
21:36:38.0559 7124  [ EDFFFC8B6AFB609BF33DBE0A900426B6 ] CertPropSvc     C:\Windows\System32\certprop.dll
21:36:38.0560 7124  CertPropSvc - ok
21:36:38.0573 7124  [ 02EA568D498BBDD4BA55BF3FCE34D456 ] circlass        C:\Windows\system32\drivers\circlass.sys
21:36:38.0575 7124  circlass - ok
21:36:38.0594 7124  [ CAEDA2572B7042B11062F327F099251D ] CLFS            C:\Windows\system32\CLFS.sys
21:36:38.0601 7124  CLFS - ok
21:36:38.0656 7124  [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:36:38.0658 7124  clr_optimization_v2.0.50727_32 - ok
21:36:38.0691 7124  [ FA58B51ED71C9133E141164EAA7C54EB ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:36:38.0693 7124  clr_optimization_v2.0.50727_64 - ok
21:36:38.0704 7124  [ E5D5499A1C50A54B5161296B6AFE6192 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:36:38.0705 7124  cmdide - ok
21:36:38.0710 7124  [ 7FB8AD01DB0EABE60C8A861531A8F431 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
21:36:38.0715 7124  Compbatt - ok
21:36:38.0720 7124  COMSysApp - ok
21:36:38.0773 7124  [ 984CC82169360EA26076A77949254A1B ] CorsairCAHS1    C:\Windows\system32\drivers\CAHS164.sys
21:36:38.0788 7124  CorsairCAHS1 - ok
21:36:38.0798 7124  [ A8585B6412253803CE8EFCBD6D6DC15C ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
21:36:38.0799 7124  crcdisk - ok
21:36:38.0825 7124  [ 4374F784121D8B3BB466B03F5E5EBD33 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:36:38.0828 7124  CryptSvc - ok
21:36:38.0886 7124  [ EB7439918F3E04B51CD8822FD8C8E018 ] ctxusbm         C:\Windows\system32\DRIVERS\ctxusbm.sys
21:36:38.0954 7124  ctxusbm - ok
21:36:38.0991 7124  [ 52CDADE8289FF21F1F2215FF51A5F36C ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:36:38.0997 7124  DcomLaunch - ok
21:36:39.0013 7124  [ 3725C43C9E90731ECA651D506CC599A3 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:36:39.0015 7124  DfsC - ok
21:36:39.0107 7124  [ 1781F99840979EE7B126C9073C377FD0 ] DFSR            C:\Windows\system32\DFSR.exe
21:36:39.0150 7124  DFSR - ok
21:36:39.0178 7124  [ FDAA0EDFCFB70CD529589AD654651B40 ] Dhcp            C:\Windows\System32\dhcpcsvc.dll
21:36:39.0180 7124  Dhcp - ok
21:36:39.0189 7124  [ 2DC415FC05FB8A079F896CBBACB19324 ] disk            C:\Windows\system32\drivers\disk.sys
21:36:39.0190 7124  disk - ok
21:36:39.0219 7124  [ DAF05293C1264E251D3A25E7E24B2DDF ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:36:39.0224 7124  Dnscache - ok
21:36:39.0241 7124  [ CC661867677627F2911C2A4970DEE0F1 ] dot3svc         C:\Windows\System32\dot3svc.dll
21:36:39.0246 7124  dot3svc - ok
21:36:39.0289 7124  [ 74C02B1717740C3B8039539E23E4B53F ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
21:36:39.0348 7124  Dot4 - ok
21:36:39.0368 7124  [ 08321D1860235BF42CF2854234337AEA ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
21:36:39.0376 7124  Dot4Print - ok
21:36:39.0407 7124  [ 4ADCCF0124F2B6911D3786A5D0E779E5 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
21:36:39.0416 7124  dot4usb - ok
21:36:39.0461 7124  [ 1583B39790DB3EAEC7EDB0CB0140C708 ] DPS             C:\Windows\system32\dps.dll
21:36:39.0464 7124  DPS - ok
21:36:39.0489 7124  [ F1A78A98CFC2EE02144C6BEC945447E6 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:36:39.0490 7124  drmkaud - ok
21:36:39.0526 7124  [ 412964040CE920FF83AFF6B5B551BF99 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:36:39.0536 7124  DXGKrnl - ok
21:36:39.0560 7124  [ 264CEE7B031A9D6C827F3D0CB031F2FE ] E1G60           C:\Windows\system32\DRIVERS\E1G6032E.sys
21:36:39.0563 7124  E1G60 - ok
21:36:39.0590 7124  [ C2303883FD9BE49DC36A6400643002EA ] EapHost         C:\Windows\System32\eapsvc.dll
21:36:39.0592 7124  EapHost - ok
21:36:39.0608 7124  [ 7343D950A34A95DCB7441642E3E6BEEF ] Ecache          C:\Windows\system32\drivers\ecache.sys
21:36:39.0610 7124  Ecache - ok
21:36:39.0650 7124  [ 14CE384D2E27B64C256BDA4DC39C312D ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:36:39.0656 7124  ehRecvr - ok
21:36:39.0667 7124  [ B93159C1313D66FDFBBE876F5189CD52 ] ehSched         C:\Windows\ehome\ehsched.exe
21:36:39.0671 7124  ehSched - ok
21:36:39.0689 7124  [ F5EE2527D74449868E3C3227A59BCD28 ] ehstart         C:\Windows\ehome\ehstart.dll
21:36:39.0689 7124  ehstart - ok
21:36:39.0709 7124  [ C4636D6E10469404AB5308D9FD45ED07 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
21:36:39.0728 7124  elxstor - ok
21:36:39.0763 7124  [ E4EB76D0A8FC43DB7F36302E1F33791F ] EMDMgmt         C:\Windows\system32\emdmgmt.dll
21:36:39.0769 7124  EMDMgmt - ok
21:36:39.0778 7124  [ BC3A58E938BB277E46BF4B3003B01ABD ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:36:39.0779 7124  ErrDev - ok
21:36:39.0816 7124  [ 6B1A97BF9FEFBDC83F3C7C7D0F826C66 ] EventSystem     C:\Windows\system32\es.dll
21:36:39.0822 7124  EventSystem - ok
21:36:39.0859 7124  [ 2A546B9A84658B0554B1EC35CD9ADAF5 ] exfat           C:\Windows\system32\drivers\exfat.sys
21:36:39.0862 7124  exfat - ok
21:36:39.0891 7124  [ FE731D345ED9EEABBC72A59B35941834 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:36:39.0894 7124  fastfat - ok
21:36:39.0906 7124  [ 81B79B6DF71FA1D2C6D688D830616E39 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
21:36:39.0909 7124  fdc - ok
21:36:39.0946 7124  [ BB9267ACACD8B7533DD936C34A0CBA5E ] fdPHost         C:\Windows\system32\fdPHost.dll
21:36:39.0948 7124  fdPHost - ok
21:36:39.0961 7124  [ 300C80931EABBE1DB7591C516EFE8D0F ] FDResPub        C:\Windows\system32\fdrespub.dll
21:36:39.0962 7124  FDResPub - ok
21:36:39.0967 7124  [ 457B7D1D533E4BD62A99AED9C7BB4C59 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:36:39.0970 7124  FileInfo - ok
21:36:39.0976 7124  [ D421327FD6EFCCAF884A54C58E1B0D7F ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:36:39.0978 7124  Filetrace - ok
21:36:39.0986 7124  [ 230923EA2B80F79B0F88D90F87B87EBD ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
21:36:39.0990 7124  flpydisk - ok
21:36:39.0998 7124  [ 7DACF1A3A4219575070C6DC7C957428A ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:36:40.0002 7124  FltMgr - ok
21:36:40.0075 7124  [ 73D0F1D32EDAE3DCC4E84468BF910ADD ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:36:40.0076 7124  FontCache3.0.0.0 - ok
21:36:40.0104 7124  [ 29D99E860A1CA0A03C6A733FDD0DA703 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:36:40.0104 7124  Fs_Rec - ok
21:36:40.0131 7124  [ C8E416668D3DC2BE3D4FE4C79224997F ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
21:36:40.0132 7124  gagp30kx - ok
21:36:40.0163 7124  [ 9E5B254D58232EC8921EC3C5A94C81ED ] gpsvc           C:\Windows\System32\gpsvc.dll
21:36:40.0168 7124  gpsvc - ok
21:36:40.0201 7124  [ DF45F8142DC6DF9D18C39B3EFFBD0409 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:36:40.0206 7124  HdAudAddService - ok
21:36:40.0218 7124  [ 0C0D0F8A3FF09ECC81963D09EC6A0A84 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
21:36:40.0219 7124  HDAudBus - ok
21:36:40.0230 7124  [ B4881C84A180E75B8C25DC1D726C375F ] HidBth          C:\Windows\system32\drivers\hidbth.sys
21:36:40.0232 7124  HidBth - ok
21:36:40.0243 7124  [ 4E77A77E2C986E8F88F996BB3E1AD829 ] HidIr           C:\Windows\system32\drivers\hidir.sys
21:36:40.0245 7124  HidIr - ok
21:36:40.0275 7124  [ 0AA154538544E988429DA2D5AA803A6C ] hidserv         C:\Windows\system32\hidserv.dll
21:36:40.0276 7124  hidserv - ok
21:36:40.0288 7124  [ 128E2DA8483FDD4DD0C7B3F9ABD6F323 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:36:40.0289 7124  HidUsb - ok
21:36:40.0300 7124  [ B12F367EA39C0795FD57E31242CE1A5A ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:36:40.0303 7124  hkmsvc - ok
21:36:40.0321 7124  [ D7109A1E6BD2DFDBCBA72A6BC626A13B ] HpCISSs         C:\Windows\system32\drivers\hpcisss.sys
21:36:40.0323 7124  HpCISSs - ok
21:36:40.0350 7124  [ E690736DA6C543F5D99C8FA27BEA31DB ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:36:40.0358 7124  HTTP - ok
21:36:40.0369 7124  [ DA94C854CEA5FAC549D4E1F6E88349E8 ] i2omp           C:\Windows\system32\drivers\i2omp.sys
21:36:40.0371 7124  i2omp - ok
21:36:40.0411 7124  [ CBB597659A2713CE0C9CC20C88C7591F ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
21:36:40.0413 7124  i8042prt - ok
21:36:40.0449 7124  [ 3E3BF3627D886736D0B4E90054F929F6 ] iaStorV         C:\Windows\system32\drivers\iastorv.sys
21:36:40.0454 7124  iaStorV - ok
21:36:40.0515 7124  [ 76EA63CDB2D88DAE7209691D089BEF1D ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:36:40.0526 7124  idsvc - ok
21:36:40.0536 7124  [ 8C3951AD2FE886EF76C7B5027C3125D3 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
21:36:40.0537 7124  iirsp - ok
21:36:40.0585 7124  [ F6B541B5B8FFC17E91C2697A39C80FE4 ] IKEEXT          C:\Windows\System32\ikeext.dll
21:36:40.0592 7124  IKEEXT - ok
21:36:40.0613 7124  [ DF797A12176F11B2D301C5B234BB200E ] intelide        C:\Windows\system32\drivers\intelide.sys
21:36:40.0614 7124  intelide - ok
21:36:40.0631 7124  [ BFD84AF32FA1BAD6231C4585CB469630 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
21:36:40.0632 7124  intelppm - ok
21:36:40.0660 7124  [ 5624BC1BC5EEB49C0AB76A8114F05EA3 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:36:40.0667 7124  IPBusEnum - ok
21:36:40.0674 7124  [ 99B821F5BEBD6A3CC3FE564F802AE0FD ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:36:40.0675 7124  IpFilterDriver - ok
21:36:40.0703 7124  [ 3A0427F35E7F8C16BBC5B1BE32B8DE76 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
21:36:40.0708 7124  iphlpsvc - ok
21:36:40.0713 7124  IpInIp - ok
21:36:40.0730 7124  [ 9C2EE2E6E5A7203BFAE15C299475EC67 ] IPMIDRV         C:\Windows\system32\drivers\ipmidrv.sys
21:36:40.0732 7124  IPMIDRV - ok
21:36:40.0739 7124  [ B7E6212F581EA5F6AB0C3A6CEEEB89BE ] IPNAT           C:\Windows\system32\DRIVERS\ipnat.sys
21:36:40.0742 7124  IPNAT - ok
21:36:40.0746 7124  [ 8C42CA155343A2F11D29FECA67FAA88D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:36:40.0748 7124  IRENUM - ok
21:36:40.0765 7124  [ 0672BFCEDC6FC468A2B0500D81437F4F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:36:40.0766 7124  isapnp - ok
21:36:40.0784 7124  [ 49E4CCBF74783FCE5D2CC1FF6480E1F4 ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
21:36:40.0787 7124  iScsiPrt - ok
21:36:40.0794 7124  [ 63C766CDC609FF8206CB447A65ABBA4A ] iteatapi        C:\Windows\system32\drivers\iteatapi.sys
21:36:40.0795 7124  iteatapi - ok
21:36:40.0801 7124  [ 1281FE73B17664631D12F643CBEA3F59 ] iteraid         C:\Windows\system32\drivers\iteraid.sys
21:36:40.0803 7124  iteraid - ok
21:36:40.0818 7124  [ 423696F3BA6472DD17699209B933BC26 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
21:36:40.0820 7124  kbdclass - ok
21:36:40.0828 7124  [ BF8783A5066CFECF45095459E8010FA7 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
21:36:40.0829 7124  kbdhid - ok
21:36:40.0859 7124  [ 80F4593E92FF960E4763380D3168E498 ] KeyIso          C:\Windows\system32\lsass.exe
21:36:40.0860 7124  KeyIso - ok
21:36:40.0882 7124  [ CCDCCE6224E1E207E953AF826B98A9D9 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:36:40.0889 7124  KSecDD - ok
21:36:40.0898 7124  [ 1D419CF43DB29396ECD7113D129D94EB ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
21:36:40.0899 7124  ksthunk - ok
21:36:40.0940 7124  [ 1FAF6926F3416D3DA05C5B265491BDAE ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:36:40.0947 7124  KtmRm - ok
21:36:40.0989 7124  [ 3F27C9CDAE606D74431E3AB39571A7F3 ] LanmanServer    C:\Windows\system32\srvsvc.dll
21:36:40.0995 7124  LanmanServer - ok
21:36:41.0030 7124  [ 6E25FFC6FEAD6544C6E9F1D23329570C ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:36:41.0033 7124  LanmanWorkstation - ok
21:36:41.0044 7124  [ 96ECE2659B6654C10A0C310AE3A6D02C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:36:41.0046 7124  lltdio - ok
21:36:41.0074 7124  [ 961CCBD0B1CCB5675D64976FAE37D092 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:36:41.0086 7124  lltdsvc - ok
21:36:41.0116 7124  [ A47F8080CACC23C91FE823AD19AA5612 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:36:41.0117 7124  lmhosts - ok
21:36:41.0176 7124  [ ACBE1AF32D3123E330A07BFBC5EC4A9B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
21:36:41.0179 7124  LSI_FC - ok
21:36:41.0190 7124  [ 799FFB2FC4729FA46D2157C0065B3525 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
21:36:41.0193 7124  LSI_SAS - ok
21:36:41.0215 7124  [ F445FF1DAAD8A226366BFAF42551226B ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
21:36:41.0218 7124  LSI_SCSI - ok
21:36:41.0230 7124  [ 52F87B9CC8932C2A7375C3B2A9BE5E3E ] luafv           C:\Windows\system32\drivers\luafv.sys
21:36:41.0233 7124  luafv - ok
21:36:41.0256 7124  [ 76A58DF02BD4EA29F189B82D0BEF17F8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:36:41.0259 7124  Mcx2Svc - ok
21:36:41.0271 7124  [ 5C5CD6AACED32FB26C3FB34B3DCF972F ] megasas         C:\Windows\system32\drivers\megasas.sys
21:36:41.0273 7124  megasas - ok
21:36:41.0301 7124  [ 859BC2436B076C77C159ED694ACFE8F8 ] MegaSR          C:\Windows\system32\drivers\megasr.sys
21:36:41.0307 7124  MegaSR - ok
21:36:41.0327 7124  [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] MMCSS           C:\Windows\system32\mmcss.dll
21:36:41.0329 7124  MMCSS - ok
21:36:41.0339 7124  [ 59848D5CC74606F0EE7557983BB73C2E ] Modem           C:\Windows\system32\drivers\modem.sys
21:36:41.0343 7124  Modem - ok
21:36:41.0358 7124  [ C247CC2A57E0A0C8C6DCCF7807B3E9E5 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:36:41.0360 7124  monitor - ok
21:36:41.0369 7124  [ 9367304E5E412B120CF5F4EA14E4E4F1 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:36:41.0370 7124  mouclass - ok
21:36:41.0383 7124  [ C2C2BD5C5CE5AAF786DDD74B75D2AC69 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:36:41.0385 7124  mouhid - ok
21:36:41.0401 7124  [ 11BC9B1E8801B01F7F6ADB9EAD30019B ] MountMgr        C:\Windows\system32\drivers\mountmgr.sys
21:36:41.0410 7124  MountMgr - ok
21:36:41.0465 7124  [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:36:41.0467 7124  MozillaMaintenance - ok
21:36:41.0509 7124  [ F8A10560B35C66F9DE212F03DAD5BFA7 ] MpFilter        C:\Windows\system32\DRIVERS\MpFilter.sys
21:36:41.0512 7124  MpFilter - ok
21:36:41.0526 7124  [ F8276EB8698142884498A528DFEA8478 ] mpio            C:\Windows\system32\drivers\mpio.sys
21:36:41.0528 7124  mpio - ok
21:36:41.0543 7124  [ C92B9ABDB65A5991E00C28F13491DBA2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:36:41.0545 7124  mpsdrv - ok
21:36:41.0581 7124  [ 8A670648C755867A3AA38DA50BA569AA ] MpsSvc          C:\Windows\system32\mpssvc.dll
21:36:41.0598 7124  MpsSvc - ok
21:36:41.0603 7124  [ 3C200630A89EF2C0864D515B7A75802E ] Mraid35x        C:\Windows\system32\drivers\mraid35x.sys
21:36:41.0605 7124  Mraid35x - ok
21:36:41.0613 7124  [ FE2706C15F8345C342820E4E4583FEA0 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:36:41.0617 7124  MRxDAV - ok
21:36:41.0638 7124  [ B698EB9ACC7ECD4927D99D268918F912 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:36:41.0641 7124  mrxsmb - ok
21:36:41.0660 7124  [ 9A797E27FD28500EE13D43000C931435 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:36:41.0664 7124  mrxsmb10 - ok
21:36:41.0673 7124  [ F9425D610712533107A264E2D5B2154B ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:36:41.0676 7124  mrxsmb20 - ok
21:36:41.0696 7124  [ 1AC860612B85D8E85EE257D372E39F4D ] msahci          C:\Windows\system32\drivers\msahci.sys
21:36:41.0698 7124  msahci - ok
21:36:41.0703 7124  [ 264BBB4AAF312A485F0E44B65A6B7202 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:36:41.0705 7124  msdsm - ok
21:36:41.0718 7124  [ 7EC02CE772F068ED0BEAFA3DA341A9BC ] MSDTC           C:\Windows\System32\msdtc.exe
21:36:41.0720 7124  MSDTC - ok
21:36:41.0737 7124  [ 704F59BFC4512D2BB0146AEC31B10A7C ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:36:41.0738 7124  Msfs - ok
21:36:41.0756 7124  [ 00EBC952961664780D43DCA157E79B27 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:36:41.0757 7124  msisadrv - ok
21:36:41.0786 7124  [ 366B0C1F4478B519C181E37D43DCDA32 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:36:41.0788 7124  MSiSCSI - ok
21:36:41.0794 7124  msiserver - ok
21:36:41.0809 7124  [ 0EA73E498F53B96D83DBFCA074AD4CF8 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:36:41.0810 7124  MSKSSRV - ok
21:36:41.0892 7124  [ E07DEC52FF801841BA9B6878A60304FB ] MsMpSvc         c:\Program Files\Microsoft Security Client\MsMpEng.exe
21:36:41.0892 7124  MsMpSvc - ok
21:36:41.0946 7124  [ 52E59B7E992A58E740AA63F57EDBAE8B ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:36:41.0947 7124  MSPCLOCK - ok
21:36:41.0953 7124  [ 49084A75BAE043AE02D5B44D02991BB2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:36:41.0954 7124  MSPQM - ok
21:36:41.0989 7124  [ B8E32E6103FBBA9FBB1D0C11FF0D13B5 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:36:41.0994 7124  MsRPC - ok
21:36:42.0011 7124  [ 855796E59DF77EA93AF46F20155BF55B ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
21:36:42.0013 7124  mssmbios - ok
21:36:42.0019 7124  [ 86D632D75D05D5B7C7C043FA3564AE86 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:36:42.0020 7124  MSTEE - ok
21:36:42.0028 7124  [ DDF133501F68D6988A0F55DFA88637B4 ] Mup             C:\Windows\system32\Drivers\mup.sys
21:36:42.0030 7124  Mup - ok
21:36:42.0056 7124  [ C25022CDD18980846973B598900915F8 ] napagent        C:\Windows\system32\qagentRT.dll
21:36:42.0063 7124  napagent - ok
21:36:42.0111 7124  [ 73B99C98FA3A2ED1566E02D6FE1913A5 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:36:42.0114 7124  NativeWifiP - ok
21:36:42.0157 7124  [ 2A2EE457AF36C5C9A6808C768BD3A12B ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:36:42.0166 7124  NDIS - ok
21:36:42.0203 7124  [ 64DF698A425478E321981431AC171334 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:36:42.0204 7124  NdisTapi - ok
21:36:42.0226 7124  [ 8BAA43196D7B5BB972C9A6B2BBF61A19 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:36:42.0227 7124  Ndisuio - ok
21:36:42.0236 7124  [ 52E3E8E35101399BE9B2938C992AA087 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:36:42.0238 7124  NdisWan - ok
21:36:42.0248 7124  [ 9CB77ED7CB72850253E973A2D6AFDF49 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:36:42.0249 7124  NDProxy - ok
21:36:42.0262 7124  [ A499294F5029A7862ADC115BDA7371CE ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:36:42.0263 7124  NetBIOS - ok
21:36:42.0275 7124  [ 7A29CA243A629230799754162D80120F ] netbt           C:\Windows\system32\DRIVERS\netbt.sys
21:36:42.0279 7124  netbt - ok
21:36:42.0292 7124  [ 80F4593E92FF960E4763380D3168E498 ] Netlogon        C:\Windows\system32\lsass.exe
21:36:42.0293 7124  Netlogon - ok
21:36:42.0330 7124  [ 9B63B29DEFC0F3115A559D2597BF5D75 ] Netman          C:\Windows\System32\netman.dll
21:36:42.0343 7124  Netman - ok
21:36:42.0363 7124  [ 7846D0136CC2B264926A73047BA7688A ] netprofm        C:\Windows\System32\netprofm.dll
21:36:42.0370 7124  netprofm - ok
21:36:42.0405 7124  [ B84613B469B98E09F50A748C1D02E132 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:36:42.0408 7124  NetTcpPortSharing - ok
21:36:42.0439 7124  [ 4AC08BD6AF2DF42E0C3196D826C8AEA7 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
21:36:42.0440 7124  nfrd960 - ok
21:36:42.0460 7124  [ 162100E0BC8377710F9D170631921C03 ] NisDrv          C:\Windows\system32\DRIVERS\NisDrvWFP.sys
21:36:42.0464 7124  NisDrv - ok
21:36:42.0498 7124  [ C6E15F2F95F9C0A6098D43510B604E52 ] NisSrv          c:\Program Files\Microsoft Security Client\NisSrv.exe
21:36:42.0501 7124  NisSrv - ok
21:36:42.0518 7124  [ F145BF4C4668E7E312069F81EF847CFC ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:36:42.0523 7124  NlaSvc - ok
21:36:42.0537 7124  [ B06154E2A2C91E9BE5599FCA53BC4CD0 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:36:42.0538 7124  Npfs - ok
21:36:42.0554 7124  [ ACB62BAA1C319B17752553DF3026EEEB ] nsi             C:\Windows\system32\nsisvc.dll
21:36:42.0556 7124  nsi - ok
21:36:42.0584 7124  [ 1523AF19EE8B030BA682F7A53537EAEB ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:36:42.0585 7124  nsiproxy - ok
21:36:42.0619 7124  [ FE86BA5AC3B50E2CA911E9C60C07B638 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:36:42.0638 7124  Ntfs - ok
21:36:42.0659 7124  [ DD5D684975352B85B52E3FD5347C20CB ] Null            C:\Windows\system32\drivers\Null.sys
21:36:42.0661 7124  Null - ok
21:36:42.0695 7124  [ B4F53BCA4C688FF47F04FA90098F896E ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
21:36:42.0698 7124  NVHDA - ok
21:36:42.0919 7124  [ 4EE399576F76D38C04745DB739BBC8C7 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
21:36:43.0103 7124  nvlddmkm - ok
21:36:43.0137 7124  [ 2C040B7ADA5B06F6FACADAC8514AA034 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:36:43.0140 7124  nvraid - ok
21:36:43.0147 7124  [ F7EA0FE82842D05EDA3EFDD376DBFDBA ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:36:43.0149 7124  nvstor - ok
21:36:43.0224 7124  [ 7335C3D78A7746D76D37F6722CC4A466 ] nvsvc           C:\Windows\system32\nvvsvc.exe
21:36:43.0235 7124  nvsvc - ok
21:36:43.0281 7124  [ B7C53DA1C73FF39F4A6248643EFD979A ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
21:36:43.0295 7124  nvUpdatusService - ok
21:36:43.0317 7124  [ 19067CA93075EF4823E3938A686F532F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:36:43.0321 7124  nv_agp - ok
21:36:43.0325 7124  NwlnkFlt - ok
21:36:43.0334 7124  NwlnkFwd - ok
21:36:43.0363 7124  [ 1B30103FDE512915A9214B108B6E7A9C ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
21:36:43.0363 7124  ohci1394 - ok
21:36:43.0404 7124  [ 430F35C5592D253F43A26B4F5A523DBF ] p2pimsvc        C:\Windows\system32\p2psvc.dll
21:36:43.0414 7124  p2pimsvc - ok
21:36:43.0431 7124  [ 430F35C5592D253F43A26B4F5A523DBF ] p2psvc          C:\Windows\system32\p2psvc.dll
21:36:43.0438 7124  p2psvc - ok
21:36:43.0450 7124  [ AECD57F94C887F58919F307C35498EA0 ] Parport         C:\Windows\system32\drivers\parport.sys
21:36:43.0452 7124  Parport - ok
21:36:43.0472 7124  [ 5AB40C36894F4C06BDAB0C9A2FBA282D ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:36:43.0473 7124  partmgr - ok
21:36:43.0487 7124  [ 9AB157B374192FF276C1628FBDBA2B0E ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:36:43.0490 7124  PcaSvc - ok
21:36:43.0498 7124  [ 2A5B2A51559066EA84742909B5B2CD69 ] pci             C:\Windows\system32\drivers\pci.sys
21:36:43.0501 7124  pci - ok
21:36:43.0529 7124  [ 8D618C829034479985A9ED56106CC732 ] pciide          C:\Windows\system32\drivers\pciide.sys
21:36:43.0530 7124  pciide - ok
21:36:43.0547 7124  [ 037661F3D7C507C9993B7010CEEE6288 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
21:36:43.0552 7124  pcmcia - ok
21:36:43.0578 7124  [ 58865916F53592A61549B04941BFD80D ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:36:43.0589 7124  PEAUTH - ok
21:36:43.0670 7124  [ 0ED8727EA0172860F47258456C06CAEA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
21:36:43.0672 7124  PerfHost - ok
21:36:43.0732 7124  [ E9E68C1A0F25CF4A7AC966EEA74EE89E ] pla             C:\Windows\system32\pla.dll
21:36:43.0753 7124  pla - ok
21:36:43.0769 7124  [ 5AAA0C5534B05ED49919FCD9DBD11A5B ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:36:43.0775 7124  PlugPlay - ok
21:36:43.0805 7124  [ 430F35C5592D253F43A26B4F5A523DBF ] PNRPAutoReg     C:\Windows\system32\p2psvc.dll
21:36:43.0811 7124  PNRPAutoReg - ok
21:36:43.0824 7124  [ 430F35C5592D253F43A26B4F5A523DBF ] PNRPsvc         C:\Windows\system32\p2psvc.dll
21:36:43.0831 7124  PNRPsvc - ok
21:36:43.0859 7124  [ EEF3688D5E9592CBBBED00DE71DDA1EF ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:36:43.0871 7124  PolicyAgent - ok
21:36:43.0891 7124  [ F5739F2C6DB2534C384AD5150808E8F5 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:36:43.0893 7124  PptpMiniport - ok
21:36:43.0906 7124  [ 5080E59ECEE0BC923F14018803AA7A01 ] Processor       C:\Windows\system32\drivers\processr.sys
21:36:43.0908 7124  Processor - ok
21:36:43.0920 7124  [ B21FE10DAD3AB59E78DF7AA3FBF41E70 ] ProfSvc         C:\Windows\system32\profsvc.dll
21:36:43.0925 7124  ProfSvc - ok
21:36:43.0933 7124  [ 80F4593E92FF960E4763380D3168E498 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:36:43.0934 7124  ProtectedStorage - ok
21:36:43.0959 7124  [ 0E0E205A296095FE4C631E6A4775AD6C ] PSched          C:\Windows\system32\DRIVERS\pacer.sys
21:36:43.0960 7124  PSched - ok
21:36:43.0993 7124  [ 0B83F4E681062F3839BE2EC1D98FD94A ] ql2300          C:\Windows\system32\drivers\ql2300.sys
21:36:44.0008 7124  ql2300 - ok
21:36:44.0016 7124  [ E1C80F8D4D1E39EF9595809C1369BF2A ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
21:36:44.0018 7124  ql40xx - ok
21:36:44.0048 7124  [ 90574842C3DA781E279061A3EFF91F07 ] QWAVE           C:\Windows\system32\qwave.dll
21:36:44.0053 7124  QWAVE - ok
21:36:44.0065 7124  [ E8D76EDAB77EC9C634C27B8EAC33ADC5 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:36:44.0066 7124  QWAVEdrv - ok
21:36:44.0079 7124  [ 1013B3B663A56D3DDD784F581C1BD005 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:36:44.0079 7124  RasAcd - ok
21:36:44.0097 7124  [ B2AE18F847D07F0044404DDF7CB04497 ] RasAuto         C:\Windows\System32\rasauto.dll
21:36:44.0100 7124  RasAuto - ok
21:36:44.0128 7124  [ 3B9085F91EF00ABD15A6F36570E90E12 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:36:44.0148 7124  Rasl2tp - ok
21:36:44.0156 7124  [ 2A63D46B01685FD4BE9778CA3C231C2D ] RasMan          C:\Windows\System32\rasmans.dll
21:36:44.0161 7124  RasMan - ok
21:36:44.0166 7124  [ 2CE1703C27196094FB6E4C6E439F2C21 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:36:44.0167 7124  RasPppoe - ok
21:36:44.0173 7124  [ FCD04FA67E8B40FA0AD361DD38593942 ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:36:44.0174 7124  RasSstp - ok
21:36:44.0208 7124  [ 33FA5B6136D92EE0F53F021C79091300 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:36:44.0216 7124  rdbss - ok
21:36:44.0226 7124  [ 603900CC05F6BE65CCBF373800AF3716 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:36:44.0227 7124  RDPCDD - ok
21:36:44.0248 7124  [ C045D1FB111C28DF0D1BE8D4BDA22C06 ] rdpdr           C:\Windows\system32\drivers\rdpdr.sys
21:36:44.0258 7124  rdpdr - ok
21:36:44.0263 7124  [ CAB9421DAF3D97B33D0D055858E2C3AB ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:36:44.0270 7124  RDPENCDD - ok
21:36:44.0282 7124  [ 7747082F672AA2846235C9CEA42E2E72 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:36:44.0285 7124  RDPWD - ok
21:36:44.0307 7124  [ C612B9557DA73F70D41F8A6FBC8E5344 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:36:44.0310 7124  RemoteAccess - ok
21:36:44.0335 7124  [ 416C611369CBE49074B89CEE2F83ABEF ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:36:44.0339 7124  RemoteRegistry - ok
21:36:44.0359 7124  [ F46C457840D4B7A4DAAFEE739CE04102 ] RpcLocator      C:\Windows\system32\locator.exe
21:36:44.0360 7124  RpcLocator - ok
21:36:44.0380 7124  [ 52CDADE8289FF21F1F2215FF51A5F36C ] RpcSs           C:\Windows\system32\rpcss.dll
21:36:44.0385 7124  RpcSs - ok
21:36:44.0408 7124  [ 22A9CB08B1A6707C1550C6BF099AAE73 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:36:44.0410 7124  rspndr - ok
21:36:44.0445 7124  [ 479F29909B9A48726A07971662F77316 ] RTL8169         C:\Windows\system32\DRIVERS\Rtlh64.sys
21:36:44.0448 7124  RTL8169 - ok
21:36:44.0458 7124  [ 80F4593E92FF960E4763380D3168E498 ] SamSs           C:\Windows\system32\lsass.exe
21:36:44.0459 7124  SamSs - ok
21:36:44.0473 7124  [ CD9C693589C60AD59BBBCFB0E524E01B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:36:44.0475 7124  sbp2port - ok
21:36:44.0490 7124  [ F024D560FEA06F8B56D673849EB89AE6 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:36:44.0494 7124  SCardSvr - ok
21:36:44.0529 7124  [ CE75D26E0A1106129F4D156851E298ED ] Schedule        C:\Windows\system32\schedsvc.dll
21:36:44.0543 7124  Schedule - ok
21:36:44.0558 7124  [ EDFFFC8B6AFB609BF33DBE0A900426B6 ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:36:44.0558 7124  SCPolicySvc - ok
21:36:44.0581 7124  [ 4FF71B076A7760FE75EA5AE2D0EE0018 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:36:44.0585 7124  SDRSVC - ok
21:36:44.0609 7124  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:36:44.0610 7124  secdrv - ok
21:36:44.0621 7124  [ 5ACDCBC67FCF894A1815B9F96D704490 ] seclogon        C:\Windows\system32\seclogon.dll
21:36:44.0624 7124  seclogon - ok
21:36:44.0637 7124  [ 90973A64B96CD647FF81C79443618EED ] SENS            C:\Windows\System32\sens.dll
21:36:44.0641 7124  SENS - ok
21:36:44.0645 7124  [ F71BFE7AC6C52273B7C82CBF1BB2A222 ] Serenum         C:\Windows\system32\drivers\serenum.sys
21:36:44.0647 7124  Serenum - ok
21:36:44.0675 7124  [ E62FAC91EE288DB29A9696A9D279929C ] Serial          C:\Windows\system32\drivers\serial.sys
21:36:44.0682 7124  Serial - ok
21:36:44.0763 7124  [ A842F04833684BCEEA7336211BE478DF ] sermouse        C:\Windows\system32\drivers\sermouse.sys
21:36:44.0769 7124  sermouse - ok
21:36:44.0791 7124  [ A8E4A4407A09F35DCCC3771AF590B0C4 ] SessionEnv      C:\Windows\system32\sessenv.dll
21:36:44.0794 7124  SessionEnv - ok
21:36:44.0805 7124  [ 14D4B4465193A87C127933978E8C4106 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:36:44.0808 7124  sffdisk - ok
21:36:44.0817 7124  [ 7073AEE3F82F3D598E3825962AA98AB2 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:36:44.0818 7124  sffp_mmc - ok
21:36:44.0827 7124  [ 35E59EBE4A01A0532ED67975161C7B82 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:36:44.0828 7124  sffp_sd - ok
21:36:44.0836 7124  [ 6B7838C94135768BD455CBDC23E39E5F ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
21:36:44.0838 7124  sfloppy - ok
21:36:44.0870 7124  [ 4C5AEE179DA7E1EE9A9CCB9DA289AF34 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
21:36:44.0890 7124  SharedAccess - ok
21:36:44.0915 7124  [ 9235EC680D3DB17464B39C7C7DECB4DD ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:36:44.0921 7124  ShellHWDetection - ok
21:36:44.0926 7124  [ 7A5DE502AEB719D4594C6471060A78B3 ] SiSRaid2        C:\Windows\system32\drivers\sisraid2.sys
21:36:44.0927 7124  SiSRaid2 - ok
21:36:44.0945 7124  [ 3A2F769FAB9582BC720E11EA1DFB184D ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
21:36:44.0947 7124  SiSRaid4 - ok
21:36:45.0009 7124  [ A301D2CEFB4747DFE0C24425DCBE0B78 ] slsvc           C:\Windows\system32\SLsvc.exe
21:36:45.0037 7124  slsvc - ok
21:36:45.0050 7124  [ F5DDF7C0AF85EB72CB295171F8C3CB35 ] SLUINotify      C:\Windows\system32\SLUINotify.dll
21:36:45.0052 7124  SLUINotify - ok
21:36:45.0072 7124  [ 41EB2E8E005FEEDCAFCE301983EFF932 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:36:45.0074 7124  Smb - ok
21:36:45.0088 7124  [ F8F47F38909823B1AF28D60B96340CFF ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:36:45.0090 7124  SNMPTRAP - ok
21:36:45.0097 7124  [ F9CB0672162F7F04248E2B82C1FF4617 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:36:45.0099 7124  spldr - ok
21:36:45.0124 7124  [ 92E6738D25C2123BE9515C0EAC0776CD ] Spooler         C:\Windows\System32\spoolsv.exe
21:36:45.0130 7124  Spooler - ok
21:36:45.0190 7124  [ A8ABD7D0D907B45CF3831F4DD8644349 ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:36:45.0214 7124  srv - ok
21:36:45.0244 7124  [ 6C72EEA39E1C37B436A6D1532999F9EC ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:36:45.0262 7124  srv2 - ok
21:36:45.0271 7124  [ 7F69BCF9E6FA3D93C82EE6B87812666D ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:36:45.0275 7124  srvnet - ok
21:36:45.0281 7124  [ 192C74646EC5725AEF3F80D19FF75F6A ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:36:45.0283 7124  SSDPSRV - ok
21:36:45.0321 7124  [ 2EE3FA0308E6185BA64A9A7F2E74332B ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:36:45.0325 7124  SstpSvc - ok
21:36:45.0354 7124  Steam Client Service - ok
21:36:45.0385 7124  [ F14F7D7D68A66777FB999D5D0F21138D ] stisvc          C:\Windows\System32\wiaservc.dll
21:36:45.0398 7124  stisvc - ok
21:36:45.0418 7124  [ 8A851CA908B8B974F89C50D2E18D4F0C ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
21:36:45.0419 7124  swenum - ok
21:36:45.0432 7124  [ DA34D6EB4A3154C0BEBAEB0A2483EF3E ] swprv           C:\Windows\System32\swprv.dll
21:36:45.0456 7124  swprv - ok
21:36:45.0473 7124  [ 2F26A2C6FC96B29BEFF5D8ED74E6625B ] Symc8xx         C:\Windows\system32\drivers\symc8xx.sys
21:36:45.0475 7124  Symc8xx - ok
21:36:45.0480 7124  [ A909667976D3BCCD1DF813FED517D837 ] Sym_hi          C:\Windows\system32\drivers\sym_hi.sys
21:36:45.0485 7124  Sym_hi - ok
21:36:45.0491 7124  [ 36887B56EC2D98B9C362F6AE4DE5B7B0 ] Sym_u3          C:\Windows\system32\drivers\sym_u3.sys
21:36:45.0495 7124  Sym_u3 - ok
21:36:45.0532 7124  [ BEA0D5521ED21DF8F6FFEED86DAEDE7B ] SysMain         C:\Windows\system32\sysmain.dll
21:36:45.0621 7124  SysMain - ok
21:36:45.0636 7124  [ 005CE42567F9113A3BCCB3B20073B029 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:36:45.0639 7124  TabletInputService - ok
21:36:45.0659 7124  [ 52091001CAF20AE84CF47023EE21B4BB ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:36:45.0669 7124  TapiSrv - ok
21:36:45.0689 7124  [ CDBE8D7C1E201B911CDC346D06617FB5 ] TBS             C:\Windows\System32\tbssvc.dll
21:36:45.0691 7124  TBS - ok
21:36:45.0755 7124  [ D43D5336BE9DD93E02EE124297295713 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:36:45.0778 7124  Tcpip - ok
21:36:45.0803 7124  [ D43D5336BE9DD93E02EE124297295713 ] Tcpip6          C:\Windows\system32\DRIVERS\tcpip.sys
21:36:45.0815 7124  Tcpip6 - ok
21:36:45.0840 7124  [ C29D4B3B08AD0B7E8564814E4FF6A57B ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:36:45.0843 7124  tcpipreg - ok
21:36:45.0865 7124  [ 1D8BF4AAA5FB7A2761475781DC1195BC ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:36:45.0868 7124  TDPIPE - ok
21:36:45.0891 7124  [ 7F7E00CDF609DF657F4CDA02DD1C9BB1 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:36:45.0893 7124  TDTCP - ok
21:36:45.0912 7124  [ 8C39C72E0E853DE04748C0337D9B9216 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:36:45.0915 7124  tdx - ok
21:36:45.0926 7124  [ 3F0EBF6EE609F2A276C0D5FAF244EC90 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
21:36:45.0927 7124  TermDD - ok
21:36:45.0956 7124  [ F870A5589D6A94B426EFB13689023946 ] TermService     C:\Windows\System32\termsrv.dll
21:36:45.0964 7124  TermService - ok
21:36:45.0981 7124  [ 9235EC680D3DB17464B39C7C7DECB4DD ] Themes          C:\Windows\system32\shsvcs.dll
21:36:45.0984 7124  Themes - ok
21:36:45.0993 7124  [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] THREADORDER     C:\Windows\system32\mmcss.dll
21:36:45.0994 7124  THREADORDER - ok
21:36:46.0015 7124  [ F4689F05AF472A651A7B1B7B02D200E7 ] TrkWks          C:\Windows\System32\trkwks.dll
21:36:46.0019 7124  TrkWks - ok
21:36:46.0058 7124  [ AC6FF1DF22ED90BAD6417EE5A4C6E2F0 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:36:46.0058 7124  TrustedInstaller - ok
21:36:46.0094 7124  [ 9E5409CD17C8BEF193AAD498F3BC2CB8 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:36:46.0109 7124  tssecsrv - ok
21:36:46.0125 7124  [ 89EC74A9E602D16A75A4170511029B3C ] tunmp           C:\Windows\system32\DRIVERS\tunmp.sys
21:36:46.0127 7124  tunmp - ok
21:36:46.0155 7124  [ 2DC2C423572946E9A3131425BDA73CB6 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:36:46.0155 7124  tunnel - ok
21:36:46.0162 7124  [ FEC266EF401966311744BD0F359F7F56 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
21:36:46.0164 7124  uagp35 - ok
21:36:46.0198 7124  [ ECA6629E33F122AFFF18A2AB7C3EB033 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:36:46.0203 7124  udfs - ok
21:36:46.0245 7124  [ 060507C4113391394478F6953A79EEDC ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:36:46.0247 7124  UI0Detect - ok
21:36:46.0264 7124  [ 4EC9447AC3AB462647F60E547208CA00 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:36:46.0266 7124  uliagpkx - ok
21:36:46.0283 7124  [ 697F0446134CDC8F99E69306184FBBB4 ] uliahci         C:\Windows\system32\drivers\uliahci.sys
21:36:46.0288 7124  uliahci - ok
21:36:46.0294 7124  [ 31707F09846056651EA2C37858F5DDB0 ] UlSata          C:\Windows\system32\drivers\ulsata.sys
21:36:46.0310 7124  UlSata - ok
21:36:46.0327 7124  [ 85E5E43ED5B48C8376281BAB519271B7 ] ulsata2         C:\Windows\system32\drivers\ulsata2.sys
21:36:46.0330 7124  ulsata2 - ok
21:36:46.0344 7124  [ 46E9A994C4FED537DD951F60B86AD3F4 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
21:36:46.0345 7124  umbus - ok
21:36:46.0360 7124  [ 7093799FF80E9DECA0680D2E3535BE60 ] upnphost        C:\Windows\System32\upnphost.dll
21:36:46.0366 7124  upnphost - ok
21:36:46.0398 7124  [ C899FB269BE4740DBE2801B204CD71D4 ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
21:36:46.0401 7124  usbaudio - ok
21:36:46.0439 7124  [ 07E3498FC60834219D2356293DA0FECC ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:36:46.0450 7124  usbccgp - ok
21:36:46.0465 7124  [ 9247F7E0B65852C1F6631480984D6ED2 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:36:46.0467 7124  usbcir - ok
21:36:46.0483 7124  [ DA6D8D8ED0A53C63AC6F4BD40FE83FBE ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
21:36:46.0484 7124  usbehci - ok
21:36:46.0502 7124  [ 99045369AE3216216573D0775FD7ED56 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:36:46.0507 7124  usbhub - ok
21:36:46.0522 7124  [ EBA14EF0C07CEC233F1529C698D0D154 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
21:36:46.0524 7124  usbohci - ok
21:36:46.0564 7124  [ 28B693B6D31E7B9332C1BDCEFEF228C1 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
21:36:46.0573 7124  usbprint - ok
21:36:46.0607 7124  [ EA0BF666868964FBE8CB10E50C97B9F1 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
21:36:46.0621 7124  usbscan - ok
21:36:46.0639 7124  [ 586D9876A4945779C8EEA926C0D16889 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:36:46.0652 7124  USBSTOR - ok
21:36:46.0665 7124  [ B2872CBF9F47316ABD0E0C74A1ABA507 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
21:36:46.0666 7124  usbuhci - ok
21:36:46.0693 7124  [ 9190F03C82547AFA87367F1CECA88F3B ] UxSms           C:\Windows\System32\uxsms.dll
21:36:46.0695 7124  UxSms - ok
21:36:46.0715 7124  [ C15A4A550CBA7B9F1F68B72528E04CE1 ] vds             C:\Windows\System32\vds.exe
21:36:46.0723 7124  vds - ok
21:36:46.0774 7124  [ 916B94BCF1E09873FFF2D5FB11767BBC ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:36:46.0776 7124  vga - ok
21:36:46.0802 7124  [ B83AB16B51FEDA65DD81B8C59D114D63 ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:36:46.0804 7124  VgaSave - ok
21:36:46.0818 7124  [ 8294B6C3FDB6C33F24E150DE647ECDAA ] viaide          C:\Windows\system32\drivers\viaide.sys
21:36:46.0819 7124  viaide - ok
21:36:46.0835 7124  [ 793D9B32A1C462C91F6F70358283AC97 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:36:46.0837 7124  volmgr - ok
21:36:46.0849 7124  [ 5AA217DA5DC4FF5B9AC9AB86563B3223 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:36:46.0855 7124  volmgrx - ok
21:36:46.0862 7124  [ DE4307412D98050239026E56A7DFF3C0 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:36:46.0867 7124  volsnap - ok
21:36:46.0887 7124  [ A68F455ED2673835209318DD61BFBB0E ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
21:36:46.0890 7124  vsmraid - ok
21:36:46.0927 7124  [ 186BD53F8A408AD20F5A056C05678629 ] VSS             C:\Windows\system32\vssvc.exe
21:36:46.0949 7124  VSS - ok
21:36:46.0958 7124  [ BA29F34A61CB55C0DEE29E787542EDF4 ] W32Time         C:\Windows\system32\w32time.dll
21:36:46.0965 7124  W32Time - ok
21:36:46.0983 7124  [ FEF8FE5923FEAD2CEE4DFABFCE3393A7 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
21:36:46.0984 7124  WacomPen - ok
21:36:47.0001 7124  [ AEA75207E443C8623C36B8D03596F84F ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
21:36:47.0002 7124  Wanarp - ok
21:36:47.0006 7124  [ AEA75207E443C8623C36B8D03596F84F ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:36:47.0008 7124  Wanarpv6 - ok
21:36:47.0042 7124  [ 055449247C490E24B968B44FE8A969EB ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:36:47.0049 7124  wcncsvc - ok
21:36:47.0057 7124  [ EA4B369560E986F19D93F45A881484AC ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:36:47.0060 7124  WcsPlugInService - ok
21:36:47.0074 7124  [ 0C17A0816F65B89E362E682AD5E7266E ] Wd              C:\Windows\system32\drivers\wd.sys
21:36:47.0075 7124  Wd - ok
21:36:47.0106 7124  [ D02E7E4567DA1E7582FBF6A91144B0DF ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:36:47.0117 7124  Wdf01000 - ok
21:36:47.0125 7124  [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:36:47.0129 7124  WdiServiceHost - ok
21:36:47.0134 7124  [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:36:47.0136 7124  WdiSystemHost - ok
21:36:47.0191 7124  [ 3D4AB55F8178FD0CD3CA45CD0EC9CF5B ] WebClient       C:\Windows\System32\webclnt.dll
21:36:47.0195 7124  WebClient - ok
21:36:47.0201 7124  [ BD9A749F36710FFA02E0E530F7451936 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:36:47.0205 7124  Wecsvc - ok
21:36:47.0222 7124  [ 9C980351D7E96288EA0C23AE232BD065 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:36:47.0225 7124  wercplsupport - ok
21:36:47.0237 7124  [ 66B9ECEBC46683F47EDC06333C075FEF ] WerSvc          C:\Windows\System32\WerSvc.dll
21:36:47.0243 7124  WerSvc - ok
21:36:47.0255 7124  WinDefend - ok
21:36:47.0259 7124  WinHttpAutoProxySvc - ok
21:36:47.0313 7124  [ AC98F38FEAB066A8F983D54FF3F4FD4C ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:36:47.0321 7124  Winmgmt - ok
21:36:47.0390 7124  [ AEB6C5200FD5517F06076AF0EE4538E1 ] WinRM           C:\Windows\system32\WsmSvc.dll
21:36:47.0407 7124  WinRM - ok
21:36:47.0443 7124  [ 0A69955261C1B54206ADC9BEB89517DE ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:36:47.0452 7124  Wlansvc - ok
21:36:47.0477 7124  [ E18AEBAAA5A773FE11AA2C70F65320F5 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
21:36:47.0478 7124  WmiAcpi - ok
21:36:47.0495 7124  [ D303322DD577C3DEDA1251ED2E7A496C ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:36:47.0500 7124  wmiApSrv - ok
21:36:47.0512 7124  WMPNetworkSvc - ok
21:36:47.0527 7124  [ CBC156C913F099E6680D1DF9307DB7A8 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:36:47.0533 7124  WPCSvc - ok
21:36:47.0549 7124  [ A27C8F92D84E2DDC151978E4692C978E ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:36:47.0552 7124  WPDBusEnum - ok
21:36:47.0594 7124  [ 6329D1990DB931073B86AB5946D8E317 ] WpdUsb          C:\Windows\system32\DRIVERS\wpdusb.sys
21:36:47.0609 7124  WpdUsb - ok
21:36:47.0616 7124  [ 8A900348370E359B6BFF6A550E4649E1 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:36:47.0618 7124  ws2ifsl - ok
21:36:47.0651 7124  [ CB8EA6D95949384925CCFCA21CC6DFD8 ] wscsvc          C:\Windows\System32\wscsvc.dll
21:36:47.0655 7124  wscsvc - ok
21:36:47.0660 7124  WSearch - ok
21:36:47.0762 7124  [ 69F2BC7B46E3E15C8EC688F42A65B57F ] wuauserv        C:\Windows\system32\wuaueng.dll
21:36:47.0815 7124  wuauserv - ok
21:36:47.0846 7124  [ 501A65252617B495C0F1832F908D54D8 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
21:36:47.0853 7124  WUDFRd - ok
21:36:47.0861 7124  [ 6CBD51FF913C851D56ED9DC7F2A27DDE ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:36:47.0870 7124  wudfsvc - ok
21:36:47.0885 7124  ================ Scan global ===============================
21:36:47.0948 7124  [ 060DC3A7A9A2626031EB23D90151428D ] C:\Windows\system32\basesrv.dll
21:36:47.0987 7124  [ 2D94E4CE322F12061D3FA7DBE65E9AC5 ] C:\Windows\system32\winsrv.dll
21:36:48.0051 7124  [ 2D94E4CE322F12061D3FA7DBE65E9AC5 ] C:\Windows\system32\winsrv.dll
21:36:48.0082 7124  [ DFAC660F0F139276CC9299812DE42719 ] C:\Windows\system32\services.exe
21:36:48.0108 7124  [Global] - ok
21:36:48.0109 7124  ================ Scan MBR ==================================
21:36:48.0125 7124  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
21:36:48.0391 7124  \Device\Harddisk0\DR0 ( TDSS File System ) - warning
21:36:48.0391 7124  \Device\Harddisk0\DR0 - detected TDSS File System (1)
21:36:48.0393 7124  ================ Scan VBR ==================================
21:36:48.0396 7124  [ CAA24DD4B78088F26D9450EDC1664662 ] \Device\Harddisk0\DR0\Partition1
21:36:48.0401 7124  \Device\Harddisk0\DR0\Partition1 - ok
21:36:48.0417 7124  [ 4487D71CAF05BD0512B60FD8115E11E1 ] \Device\Harddisk0\DR0\Partition2
21:36:48.0420 7124  \Device\Harddisk0\DR0\Partition2 - ok
21:36:48.0420 7124  ============================================================
21:36:48.0420 7124  Scan finished
21:36:48.0420 7124  ============================================================
21:36:48.0445 6112  Detected object count: 1
21:36:48.0445 6112  Actual detected object count: 1
21:37:17.0960 6112  \Device\Harddisk0\DR0\TDLFS\cfg.ini - copied to quarantine
21:37:17.0965 6112  \Device\Harddisk0\DR0\TDLFS\mbr - copied to quarantine
21:37:17.0970 6112  \Device\Harddisk0\DR0\TDLFS\ldr16 - copied to quarantine
21:37:18.0043 6112  \Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine
21:37:18.0136 6112  \Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine
21:37:18.0154 6112  \Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine
21:37:18.0284 6112  \Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine
21:37:18.0342 6112  \Device\Harddisk0\DR0\TDLFS\cmd64.dll - copied to quarantine
21:37:18.0577 6112  \Device\Harddisk0\DR0\TDLFS\bckfg.tmp - copied to quarantine
21:37:18.0582 6112  \Device\Harddisk0\DR0\TDLFS\kdmf.tmp - copied to quarantine
21:37:18.0630 6112  \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Quarantine
21:38:34.0826 6576  Deinitialize success
 

 



#6 ohht

ohht
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 07 May 2013 - 06:08 AM

# AdwCleaner v2.300 - Logfile created 05/06/2013 at 21:39:25
# Updated 28/04/2013 by Xplode
# Operating system : Windows ™ Vista Home Premium Service Pack 1 (64 bits)
# User : James - JAMES-PC
# Boot Mode : Normal
# Running from : C:\Users\James\Downloads\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Deleted on reboot : C:\Users\James\AppData\Roaming\Mozilla\Firefox\Profiles\67o6h1vd.default\jetpack

***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v7.0.6001.18639

[OK] Registry is clean.

-\\ Mozilla Firefox v20.0.1 (en-US)

File : C:\Users\James\AppData\Roaming\Mozilla\Firefox\Profiles\67o6h1vd.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [782 octets] - [06/05/2013 21:39:25]

########## EOF - C:\AdwCleaner[S1].txt - [841 octets] ##########
 



ESET said I was clean, didn't have time for MiniToolBox, will do later if still needed



#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,338 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:36 PM

Posted 08 May 2013 - 08:21 PM

Hello, sorry  ... I had to reformat and replace some computer parts.

 

This looks good. I would like to see the MINI log to be sure you don't have any issues in there.

 

How is it running now?


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 ohht

ohht
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 10 May 2013 - 01:46 PM

What exactly were these:

 

21:37:17.0960 6112  \Device\Harddisk0\DR0\TDLFS\cfg.ini - copied to quarantine
21:37:17.0965 6112  \Device\Harddisk0\DR0\TDLFS\mbr - copied to quarantine
21:37:17.0970 6112  \Device\Harddisk0\DR0\TDLFS\ldr16 - copied to quarantine
21:37:18.0043 6112  \Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine
21:37:18.0136 6112  \Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine
21:37:18.0154 6112  \Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine
21:37:18.0284 6112  \Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine
21:37:18.0342 6112  \Device\Harddisk0\DR0\TDLFS\cmd64.dll - copied to quarantine
21:37:18.0577 6112  \Device\Harddisk0\DR0\TDLFS\bckfg.tmp - copied to quarantine
21:37:18.0582 6112  \Device\Harddisk0\DR0\TDLFS\kdmf.tmp - copied to quarantine

 

 

and this

 

C:\Users\James\AppData\Roaming\Mozilla\Firefox\Profiles\67o6h1vd.default\jetpack



#9 ohht

ohht
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:36 PM

Posted 10 May 2013 - 01:51 PM

I sent it as a PM, wasn't sure if there wasn't any sensitive information, if there was I didn't want it to be public.

 

And it's always been running fine, was just paranoid



#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,338 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:36 PM

Posted 10 May 2013 - 08:12 PM

This looks good to me now. Thanks for visiting.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users