Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infection? what is "Win32/InstalleRex.I application"


  • Please log in to reply
18 replies to this topic

#1 Ca20

Ca20

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 04 June 2013 - 07:31 PM

Hi,

I ran an ESET scan and unticked the 'remove found threats' option, ticked the 'scan for potentially unwanted applications, scan for potentially unsafe applications, and enable anti-stealth technology' options as per instructions on using ESET last time I received assistance on the forum.

The results listed 2 found threats:

Threat 1) C:\Users\cowfun\AppData\Local\Temp\Ac+wgTED.exe.part
Win32/InstalleRex.J application

Threat 2) C:\Users\cowfun\AppData\Local\Temp\ZdqGJ4Lz.exe.part
Win32/InstalleRex.I application


They've been on my computer since mid April Are they viruses?
Help would be greathy appreciated.

The file says name of signer: Moshe Caspi and email adress: admin@bestdealapp.info
I am running Windows 7 Service pack 1 build 7601.

This is what I could find from google but I don't understand what it means
http://www.avira.com/en/support-threats-description/tid/8043/tlang/en

Is my personal information compromised/was compromised, such as log in information (online banking etc)?

Edited by Ca20, 04 June 2013 - 11:05 PM.


BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:59 AM

Posted 07 June 2013 - 07:50 PM

It's a Downloder Trojan.
 
Infection Channel: Downloaded from the Internet, Dropped by other malware

 
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
It executes the downloaded files. As a result, malicious routines of the downloaded files are exhibited on the affected system.
 
http://about-threats.trendmicro.com/Malware.aspx?id=49890&name=TROJ_DLOADR.TE&language=au
 
 
ESET did not  remove it??
Empty your temp folders using TFC (Temporary File Cleaner)
  • Please download TFC by Old Timer and save it to your desktop.
    alternate download link
  • Save any unsaved work. (TFC will close ALL open programs including your browser!)
  • Double-click on TFC.exe to run it. (If you are using Vista, right-click on the file and choose "Run As Administrator".)
  • Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
  • Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway allowing Windows to load normally (not into Safe Mode) to ensure a complete clean.
Run and post these logs please..
 
Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results.



Please download AdwCleaner by Xplode onto your desktop.
Close all open programs and internet browsers.
Double click on adwcleaner.exe to run the tool.
Click on Delete.
Confirm each time with Ok.
You will be prompted to restart your computer. A text file will open after the restart.
Please post the contents of that logfile with your next reply.
You can find the logfile at C:\AdwCleaner[S1].txt as well.



Last run ESET.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 08:02 PM

I did not set eset to remove found threats.

Should I redo eset scan with that option ticked first?

I'm a bit reluctant to run Temporary FIle Cleaner because it cause some issues on my computer last time I was instructed to run it as mentioned in a previous post I made here (Post #17)
http://www.bleepingcomputer.com/forums/t/476940/infected-what-is-jeetyetmedia/page-2

Thank You


Edited by Ca20, 07 June 2013 - 08:03 PM.


#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:59 AM

Posted 07 June 2013 - 08:09 PM

OK.. don't do it.. Run the tools I posted.. ESET is a part of it.. Lets see if it removes them.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 08:25 PM

21:22:36.0535 1044  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
21:22:37.0065 1044  ============================================================
21:22:37.0065 1044  Current date / time: 2013/06/07 21:22:37.0065
21:22:37.0065 1044  SystemInfo:
21:22:37.0065 1044  
21:22:37.0065 1044  OS Version: 6.1.7601 ServicePack: 1.0
21:22:37.0065 1044  Product type: Workstation
21:22:37.0065 1044  ComputerName: COWFUN-VAIO
21:22:37.0065 1044  UserName: cowfun
21:22:37.0065 1044  Windows directory: C:\Windows
21:22:37.0065 1044  System windows directory: C:\Windows
21:22:37.0065 1044  Running under WOW64
21:22:37.0065 1044  Processor architecture: Intel x64
21:22:37.0065 1044  Number of processors: 4
21:22:37.0065 1044  Page size: 0x1000
21:22:37.0065 1044  Boot type: Normal boot
21:22:37.0065 1044  ============================================================
21:22:40.0919 1044  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:22:40.0934 1044  ============================================================
21:22:40.0934 1044  \Device\Harddisk0\DR0:
21:22:40.0934 1044  MBR partitions:
21:22:40.0934 1044  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x13B1800, BlocksNum 0x32000
21:22:40.0934 1044  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x13E3800, BlocksNum 0x38FA2030
21:22:40.0934 1044  ============================================================
21:22:40.0981 1044  C: <-> \Device\Harddisk0\DR0\Partition2
21:22:40.0981 1044  ============================================================
21:22:40.0981 1044  Initialize success
21:22:40.0981 1044  ============================================================
21:23:11.0604 4116  ============================================================
21:23:11.0604 4116  Scan started
21:23:11.0604 4116  Mode: Manual; TDLFS;
21:23:11.0604 4116  ============================================================
21:23:13.0273 4116  ================ Scan system memory ========================
21:23:13.0273 4116  System memory - ok
21:23:13.0273 4116  ================ Scan services =============================
21:23:14.0755 4116  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
21:23:14.0755 4116  1394ohci - ok
21:23:14.0911 4116  [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon        C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
21:23:14.0927 4116  ACDaemon - ok
21:23:15.0020 4116  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
21:23:15.0036 4116  ACPI - ok
21:23:15.0176 4116  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
21:23:15.0176 4116  AcpiPmi - ok
21:23:15.0363 4116  [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:23:15.0363 4116  AdobeARMservice - ok
21:23:15.0519 4116  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
21:23:15.0551 4116  adp94xx - ok
21:23:15.0675 4116  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\drivers\adpahci.sys
21:23:15.0691 4116  adpahci - ok
21:23:15.0753 4116  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
21:23:15.0753 4116  adpu320 - ok
21:23:15.0878 4116  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:23:15.0878 4116  AeLookupSvc - ok
21:23:16.0034 4116  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
21:23:16.0050 4116  AFD - ok
21:23:16.0097 4116  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
21:23:16.0112 4116  agp440 - ok
21:23:16.0175 4116  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
21:23:16.0175 4116  ALG - ok
21:23:16.0221 4116  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:23:16.0237 4116  aliide - ok
21:23:16.0268 4116  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
21:23:16.0268 4116  amdide - ok
21:23:16.0346 4116  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
21:23:16.0362 4116  AmdK8 - ok
21:23:16.0393 4116  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
21:23:16.0393 4116  AmdPPM - ok
21:23:16.0487 4116  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
21:23:16.0502 4116  amdsata - ok
21:23:16.0549 4116  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
21:23:16.0549 4116  amdsbs - ok
21:23:16.0611 4116  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
21:23:16.0611 4116  amdxata - ok
21:23:16.0721 4116  [ 2D45F2DFBC3D8F53DF7EBEFFA8C9BC38 ] ApfiltrService  C:\Windows\system32\drivers\Apfiltr.sys
21:23:16.0721 4116  ApfiltrService - ok
21:23:16.0845 4116  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
21:23:16.0861 4116  AppID - ok
21:23:16.0939 4116  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
21:23:16.0955 4116  AppIDSvc - ok
21:23:17.0142 4116  [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo         C:\Windows\System32\appinfo.dll
21:23:17.0142 4116  Appinfo - ok
21:23:17.0298 4116  [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
21:23:17.0298 4116  Apple Mobile Device - ok
21:23:17.0345 4116  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\drivers\arc.sys
21:23:17.0345 4116  arc - ok
21:23:17.0376 4116  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\drivers\arcsas.sys
21:23:17.0391 4116  arcsas - ok
21:23:17.0423 4116  [ C130BC4A51B1382B2BE8E44579EC4C0A ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
21:23:17.0423 4116  ArcSoftKsUFilter - ok
21:23:17.0891 4116  [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
21:23:18.0015 4116  aspnet_state - ok
21:23:18.0093 4116  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:23:18.0093 4116  AsyncMac - ok
21:23:18.0187 4116  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
21:23:18.0203 4116  atapi - ok
21:23:18.0608 4116  [ 08BAAA2432E81031A6C3B11AD5A67E2B ] athr            C:\Windows\system32\DRIVERS\athrx.sys
21:23:18.0671 4116  athr - ok
21:23:18.0795 4116  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:23:18.0827 4116  AudioEndpointBuilder - ok
21:23:18.0967 4116  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
21:23:18.0983 4116  AudioSrv - ok
21:23:19.0061 4116  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
21:23:19.0076 4116  AxInstSV - ok
21:23:19.0201 4116  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
21:23:19.0279 4116  b06bdrv - ok
21:23:19.0341 4116  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
21:23:19.0341 4116  b57nd60a - ok
21:23:19.0466 4116  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
21:23:19.0466 4116  BDESVC - ok
21:23:19.0497 4116  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
21:23:19.0513 4116  Beep - ok
21:23:19.0653 4116  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
21:23:19.0716 4116  BFE - ok
21:23:20.0199 4116  [ 6E10DB69DB1AA96207F4B14B18FF12F8 ] BHDrvx64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\BASHDefs\20130531.001\BHDrvx64.sys
21:23:20.0215 4116  BHDrvx64 - ok
21:23:20.0340 4116  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
21:23:20.0387 4116  BITS - ok
21:23:20.0418 4116  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
21:23:20.0418 4116  blbdrive - ok
21:23:20.0543 4116  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
21:23:20.0574 4116  Bonjour Service - ok
21:23:20.0636 4116  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:23:20.0636 4116  bowser - ok
21:23:20.0699 4116  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
21:23:20.0699 4116  BrFiltLo - ok
21:23:20.0730 4116  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
21:23:20.0730 4116  BrFiltUp - ok
21:23:20.0855 4116  [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
21:23:20.0901 4116  BridgeMP - ok
21:23:21.0042 4116  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
21:23:21.0057 4116  Browser - ok
21:23:21.0089 4116  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
21:23:21.0104 4116  Brserid - ok
21:23:21.0135 4116  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
21:23:21.0151 4116  BrSerWdm - ok
21:23:21.0182 4116  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
21:23:21.0182 4116  BrUsbMdm - ok
21:23:21.0213 4116  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
21:23:21.0213 4116  BrUsbSer - ok
21:23:21.0323 4116  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
21:23:21.0323 4116  BthEnum - ok
21:23:21.0369 4116  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
21:23:21.0369 4116  BTHMODEM - ok
21:23:21.0401 4116  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
21:23:21.0401 4116  BthPan - ok
21:23:21.0541 4116  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
21:23:21.0588 4116  BTHPORT - ok
21:23:21.0650 4116  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
21:23:21.0666 4116  bthserv - ok
21:23:21.0759 4116  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
21:23:21.0759 4116  BTHUSB - ok
21:23:21.0806 4116  [ 59E3510784548C6939C1B3B985C232E3 ] btwampfl        C:\Windows\system32\drivers\btwampfl.sys
21:23:21.0837 4116  btwampfl - ok
21:23:21.0853 4116  [ 1872074ED0A3FB22E3F1E3197B984BFA ] btwaudio        C:\Windows\system32\drivers\btwaudio.sys
21:23:21.0869 4116  btwaudio - ok
21:23:21.0931 4116  [ 691CF076C33AB1C3A5B2FD5450300733 ] btwavdt         C:\Windows\system32\drivers\btwavdt.sys
21:23:21.0947 4116  btwavdt - ok
21:23:22.0149 4116  [ 8BA6E93A182126781952A7895EC1E4B2 ] btwdins         C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
21:23:22.0259 4116  btwdins - ok
21:23:22.0274 4116  [ 07096D2BC22CCB6CEA5A532DF0BE8A75 ] btwl2cap        C:\Windows\system32\DRIVERS\btwl2cap.sys
21:23:22.0274 4116  btwl2cap - ok
21:23:22.0337 4116  [ C9273B20DEC8CE38DBCE5D29DE63C907 ] btwrchid        C:\Windows\system32\DRIVERS\btwrchid.sys
21:23:22.0337 4116  btwrchid - ok
21:23:22.0461 4116  [ 2C6FFCCA37B002AAB3C7C31A6D780A76 ] ccSet_NIS       C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys
21:23:22.0477 4116  ccSet_NIS - ok
21:23:22.0555 4116  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:23:22.0571 4116  cdfs - ok
21:23:22.0617 4116  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:23:22.0617 4116  cdrom - ok
21:23:22.0680 4116  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
21:23:22.0695 4116  CertPropSvc - ok
21:23:22.0742 4116  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\drivers\circlass.sys
21:23:22.0742 4116  circlass - ok
21:23:22.0820 4116  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
21:23:22.0820 4116  CLFS - ok
21:23:22.0992 4116  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:23:22.0992 4116  clr_optimization_v2.0.50727_32 - ok
21:23:23.0117 4116  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:23:23.0132 4116  clr_optimization_v2.0.50727_64 - ok
21:23:23.0460 4116  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:23:23.0709 4116  clr_optimization_v4.0.30319_32 - ok
21:23:23.0756 4116  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:23:23.0959 4116  clr_optimization_v4.0.30319_64 - ok
21:23:24.0021 4116  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
21:23:24.0021 4116  CmBatt - ok
21:23:24.0068 4116  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:23:24.0068 4116  cmdide - ok
21:23:24.0146 4116  [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG             C:\Windows\system32\Drivers\cng.sys
21:23:24.0162 4116  CNG - ok
21:23:24.0209 4116  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
21:23:24.0209 4116  Compbatt - ok
21:23:24.0240 4116  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
21:23:24.0240 4116  CompositeBus - ok
21:23:24.0255 4116  COMSysApp - ok
21:23:24.0333 4116  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
21:23:24.0333 4116  crcdisk - ok
21:23:24.0411 4116  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:23:24.0411 4116  CryptSvc - ok
21:23:24.0552 4116  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:23:24.0552 4116  DcomLaunch - ok
21:23:24.0599 4116  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
21:23:24.0630 4116  defragsvc - ok
21:23:24.0661 4116  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:23:24.0677 4116  DfsC - ok
21:23:24.0739 4116  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
21:23:24.0739 4116  Dhcp - ok
21:23:24.0770 4116  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
21:23:24.0786 4116  discache - ok
21:23:24.0879 4116  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\drivers\disk.sys
21:23:24.0879 4116  Disk - ok
21:23:24.0911 4116  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:23:24.0926 4116  Dnscache - ok
21:23:24.0973 4116  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
21:23:24.0973 4116  dot3svc - ok
21:23:25.0051 4116  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
21:23:25.0051 4116  DPS - ok
21:23:25.0113 4116  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:23:25.0113 4116  drmkaud - ok
21:23:25.0285 4116  [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:23:25.0285 4116  DXGKrnl - ok
21:23:25.0332 4116  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
21:23:25.0332 4116  EapHost - ok
21:23:25.0831 4116  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\drivers\evbda.sys
21:23:25.0925 4116  ebdrv - ok
21:23:26.0283 4116  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
21:23:26.0299 4116  eeCtrl - ok
21:23:26.0361 4116  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
21:23:26.0361 4116  EFS - ok
21:23:26.0517 4116  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:23:26.0580 4116  ehRecvr - ok
21:23:26.0642 4116  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
21:23:26.0673 4116  ehSched - ok
21:23:26.0736 4116  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
21:23:26.0751 4116  elxstor - ok
21:23:26.0814 4116  [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
21:23:26.0814 4116  EraserUtilRebootDrv - ok
21:23:26.0861 4116  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:23:26.0861 4116  ErrDev - ok
21:23:26.0954 4116  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
21:23:26.0970 4116  EventSystem - ok
21:23:27.0017 4116  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
21:23:27.0079 4116  exfat - ok
21:23:27.0110 4116  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:23:27.0110 4116  fastfat - ok
21:23:27.0282 4116  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
21:23:27.0344 4116  Fax - ok
21:23:27.0438 4116  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\drivers\fdc.sys
21:23:27.0453 4116  fdc - ok
21:23:27.0531 4116  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
21:23:27.0531 4116  fdPHost - ok
21:23:27.0578 4116  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
21:23:27.0578 4116  FDResPub - ok
21:23:27.0641 4116  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:23:27.0641 4116  FileInfo - ok
21:23:27.0656 4116  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:23:27.0672 4116  Filetrace - ok
21:23:27.0719 4116  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
21:23:27.0719 4116  flpydisk - ok
21:23:27.0781 4116  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:23:27.0797 4116  FltMgr - ok
21:23:28.0062 4116  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\Windows\system32\FntCache.dll
21:23:28.0109 4116  FontCache - ok
21:23:28.0218 4116  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:23:28.0218 4116  FontCache3.0.0.0 - ok
21:23:28.0280 4116  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
21:23:28.0296 4116  FsDepends - ok
21:23:28.0358 4116  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:23:28.0358 4116  Fs_Rec - ok
21:23:28.0467 4116  [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
21:23:28.0467 4116  fvevol - ok
21:23:28.0530 4116  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
21:23:28.0545 4116  gagp30kx - ok
21:23:28.0577 4116  [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
21:23:28.0577 4116  GEARAspiWDM - ok
21:23:28.0655 4116  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
21:23:28.0670 4116  gpsvc - ok
21:23:28.0811 4116  [ F02A533F517EB38333CB12A9E8963773 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:23:28.0826 4116  gupdate - ok
21:23:28.0889 4116  [ F02A533F517EB38333CB12A9E8963773 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:23:28.0889 4116  gupdatem - ok
21:23:28.0998 4116  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
21:23:28.0998 4116  hcw85cir - ok
21:23:29.0076 4116  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:23:29.0107 4116  HdAudAddService - ok
21:23:29.0201 4116  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
21:23:29.0201 4116  HDAudBus - ok
21:23:29.0232 4116  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
21:23:29.0279 4116  HidBatt - ok
21:23:29.0294 4116  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
21:23:30.0698 4116  HidBth - ok
21:23:30.0776 4116  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\drivers\hidir.sys
21:23:30.0792 4116  HidIr - ok
21:23:30.0839 4116  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\System32\hidserv.dll
21:23:30.0854 4116  hidserv - ok
21:23:30.0932 4116  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:23:30.0932 4116  HidUsb - ok
21:23:30.0995 4116  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:23:30.0995 4116  hkmsvc - ok
21:23:31.0104 4116  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:23:31.0119 4116  HomeGroupListener - ok
21:23:31.0151 4116  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:23:31.0166 4116  HomeGroupProvider - ok
21:23:31.0229 4116  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
21:23:31.0229 4116  HpSAMD - ok
21:23:31.0385 4116  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:23:31.0447 4116  HTTP - ok
21:23:31.0463 4116  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
21:23:31.0463 4116  hwpolicy - ok
21:23:31.0525 4116  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
21:23:31.0525 4116  i8042prt - ok
21:23:31.0603 4116  [ ABBF174CB394F5C437410A788B7E404A ] iaStor          C:\Windows\system32\drivers\iaStor.sys
21:23:31.0619 4116  iaStor - ok
21:23:31.0743 4116  [ 31A0E93CDF29007D6C6FFFB632F375ED ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
21:23:31.0759 4116  IAStorDataMgrSvc - ok
21:23:31.0806 4116  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
21:23:31.0837 4116  iaStorV - ok
21:23:31.0993 4116  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:23:32.0040 4116  idsvc - ok
21:23:32.0305 4116  [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\IPSDefs\20130606.001\IDSvia64.sys
21:23:32.0305 4116  IDSVia64 - ok
21:23:32.0367 4116  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
21:23:32.0367 4116  iirsp - ok
21:23:32.0508 4116  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
21:23:32.0539 4116  IKEEXT - ok
21:23:32.0633 4116  [ 4B6363CD4610BB848531BB260B15DFCC ] Impcd           C:\Windows\system32\drivers\Impcd.sys
21:23:32.0648 4116  Impcd - ok
21:23:32.0913 4116  [ 526E482AFB586CB1CDD687869DECF686 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
21:23:32.0945 4116  IntcAzAudAddService - ok
21:23:32.0976 4116  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
21:23:32.0991 4116  intelide - ok
21:23:33.0054 4116  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
21:23:33.0054 4116  intelppm - ok
21:23:33.0132 4116  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:23:33.0132 4116  IPBusEnum - ok
21:23:33.0210 4116  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:23:33.0210 4116  IpFilterDriver - ok
21:23:33.0413 4116  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
21:23:33.0475 4116  iphlpsvc - ok
21:23:33.0506 4116  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
21:23:33.0522 4116  IPMIDRV - ok
21:23:33.0600 4116  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
21:23:33.0615 4116  IPNAT - ok
21:23:33.0896 4116  [ 0F261EC4F514926177C70C1832374231 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
21:23:33.0896 4116  iPod Service - ok
21:23:33.0959 4116  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:23:33.0974 4116  IRENUM - ok
21:23:34.0083 4116  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:23:34.0099 4116  isapnp - ok
21:23:34.0177 4116  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
21:23:34.0177 4116  iScsiPrt - ok
21:23:34.0271 4116  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
21:23:34.0271 4116  kbdclass - ok
21:23:34.0349 4116  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
21:23:34.0364 4116  kbdhid - ok
21:23:34.0427 4116  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
21:23:34.0427 4116  KeyIso - ok
21:23:34.0458 4116  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:23:34.0458 4116  KSecDD - ok
21:23:34.0551 4116  [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
21:23:34.0551 4116  KSecPkg - ok
21:23:34.0598 4116  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
21:23:34.0598 4116  ksthunk - ok
21:23:34.0770 4116  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:23:34.0817 4116  KtmRm - ok
21:23:34.0879 4116  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\System32\srvsvc.dll
21:23:34.0879 4116  LanmanServer - ok
21:23:34.0941 4116  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:23:34.0941 4116  LanmanWorkstation - ok
21:23:34.0988 4116  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:23:34.0988 4116  lltdio - ok
21:23:35.0066 4116  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:23:35.0097 4116  lltdsvc - ok
21:23:35.0175 4116  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:23:35.0175 4116  lmhosts - ok
21:23:35.0285 4116  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
21:23:35.0300 4116  LSI_FC - ok
21:23:35.0363 4116  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
21:23:35.0378 4116  LSI_SAS - ok
21:23:35.0394 4116  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
21:23:35.0394 4116  LSI_SAS2 - ok
21:23:35.0456 4116  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
21:23:35.0456 4116  LSI_SCSI - ok
21:23:35.0503 4116  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
21:23:35.0503 4116  luafv - ok
21:23:35.0597 4116  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:23:35.0612 4116  Mcx2Svc - ok
21:23:35.0643 4116  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\drivers\megasas.sys
21:23:35.0675 4116  megasas - ok
21:23:35.0753 4116  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
21:23:35.0784 4116  MegaSR - ok
21:23:35.0846 4116  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
21:23:35.0846 4116  MMCSS - ok
21:23:35.0893 4116  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
21:23:35.0909 4116  Modem - ok
21:23:35.0940 4116  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:23:35.0940 4116  monitor - ok
21:23:36.0002 4116  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:23:36.0018 4116  mouclass - ok
21:23:36.0174 4116  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:23:36.0174 4116  mouhid - ok
21:23:36.0299 4116  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
21:23:36.0314 4116  mountmgr - ok
21:23:36.0455 4116  [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:23:36.0533 4116  MozillaMaintenance - ok
21:23:36.0595 4116  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
21:23:36.0595 4116  mpio - ok
21:23:36.0626 4116  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:23:36.0626 4116  mpsdrv - ok
21:23:36.0720 4116  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
21:23:36.0876 4116  MpsSvc - ok
21:23:36.0954 4116  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:23:37.0001 4116  MRxDAV - ok
21:23:37.0047 4116  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:23:37.0047 4116  mrxsmb - ok
21:23:37.0219 4116  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:23:37.0235 4116  mrxsmb10 - ok
21:23:37.0328 4116  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:23:37.0328 4116  mrxsmb20 - ok
21:23:37.0406 4116  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
21:23:37.0406 4116  msahci - ok
21:23:37.0484 4116  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:23:37.0500 4116  msdsm - ok
21:23:37.0625 4116  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
21:23:37.0656 4116  MSDTC - ok
21:23:37.0671 4116  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:23:37.0671 4116  Msfs - ok
21:23:37.0703 4116  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
21:23:37.0703 4116  mshidkmdf - ok
21:23:37.0734 4116  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:23:37.0734 4116  msisadrv - ok
21:23:37.0796 4116  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:23:37.0812 4116  MSiSCSI - ok
21:23:37.0812 4116  msiserver - ok
21:23:37.0859 4116  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:23:37.0874 4116  MSKSSRV - ok
21:23:37.0952 4116  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:23:38.0732 4116  MSPCLOCK - ok
21:23:38.0935 4116  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:23:38.0935 4116  MSPQM - ok
21:23:39.0060 4116  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:23:39.0075 4116  MsRPC - ok
21:23:39.0107 4116  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
21:23:39.0107 4116  mssmbios - ok
21:23:39.0138 4116  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:23:39.0153 4116  MSTEE - ok
21:23:39.0169 4116  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
21:23:39.0169 4116  MTConfig - ok
21:23:39.0185 4116  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
21:23:39.0185 4116  Mup - ok
21:23:39.0263 4116  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
21:23:39.0263 4116  napagent - ok
21:23:39.0356 4116  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:23:39.0356 4116  NativeWifiP - ok
21:23:39.0512 4116  [ 56540E526B46E379A476FB5BC381B290 ] NAVENG          C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20130607.005\ENG64.SYS
21:23:39.0512 4116  NAVENG - ok
21:23:39.0606 4116  [ 8A19D3991F9F14B885CDE8BC640F6B68 ] NAVEX15         C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20130607.005\EX64.SYS
21:23:39.0606 4116  NAVEX15 - ok
21:23:39.0777 4116  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:23:39.0793 4116  NDIS - ok
21:23:39.0855 4116  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
21:23:39.0871 4116  NdisCap - ok
21:23:39.0887 4116  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:23:39.0887 4116  NdisTapi - ok
21:23:39.0918 4116  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:23:39.0933 4116  Ndisuio - ok
21:23:39.0965 4116  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:23:39.0980 4116  NdisWan - ok
21:23:40.0011 4116  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:23:40.0058 4116  NDProxy - ok
21:23:40.0152 4116  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:23:40.0167 4116  NetBIOS - ok
21:23:40.0261 4116  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
21:23:40.0261 4116  NetBT - ok
21:23:40.0292 4116  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
21:23:40.0292 4116  Netlogon - ok
21:23:40.0339 4116  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
21:23:40.0355 4116  Netman - ok
21:23:40.0386 4116  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:23:40.0698 4116  NetMsmqActivator - ok
21:23:40.0776 4116  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:23:40.0776 4116  NetPipeActivator - ok
21:23:40.0854 4116  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
21:23:40.0854 4116  netprofm - ok
21:23:40.0885 4116  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:23:40.0885 4116  NetTcpActivator - ok
21:23:40.0885 4116  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
21:23:40.0885 4116  NetTcpPortSharing - ok
21:23:40.0932 4116  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
21:23:40.0932 4116  nfrd960 - ok
21:23:41.0150 4116  [ F2840DBFE9322F35557219AE82CC4597 ] NIS             C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe
21:23:41.0150 4116  NIS - ok
21:23:41.0244 4116  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:23:41.0259 4116  NlaSvc - ok
21:23:41.0291 4116  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:23:41.0291 4116  Npfs - ok
21:23:41.0337 4116  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
21:23:41.0337 4116  nsi - ok
21:23:41.0369 4116  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:23:41.0369 4116  nsiproxy - ok
21:23:41.0852 4116  [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:23:41.0868 4116  Ntfs - ok
21:23:41.0961 4116  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
21:23:41.0961 4116  Null - ok
21:23:41.0977 4116  [ 285ACEC1B13A15BA520AAE06BACB9CFF ] nusb3hub        C:\Windows\system32\drivers\nusb3hub.sys
21:23:41.0977 4116  nusb3hub - ok
21:23:42.0008 4116  [ F6D625FF7B56BB6EA063F0D3A5BBC996 ] nusb3xhc        C:\Windows\system32\drivers\nusb3xhc.sys
21:23:42.0008 4116  nusb3xhc - ok
21:23:42.0055 4116  [ 857FB74754EBFF94EE3AD40788740916 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
21:23:42.0055 4116  NVHDA - ok
21:23:42.0944 4116  [ FBE6AC1C3591CB67543FAD15ABD26BCB ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
21:23:43.0007 4116  nvlddmkm - ok
21:23:43.0131 4116  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:23:43.0147 4116  nvraid - ok
21:23:43.0194 4116  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:23:43.0209 4116  nvstor - ok
21:23:43.0256 4116  [ 147B0D17255FD796F990CC6F745605C5 ] nvsvc           C:\Windows\system32\nvvsvc.exe
21:23:43.0287 4116  nvsvc - ok
21:23:43.0319 4116  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:23:43.0334 4116  nv_agp - ok
21:23:43.0397 4116  [ 07571684567859DA796A566CC78FFA74 ] Oasis2Service   C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe
21:23:43.0412 4116  Oasis2Service - ok
21:23:43.0615 4116  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:23:43.0802 4116  odserv - ok
21:23:43.0833 4116  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
21:23:43.0833 4116  ohci1394 - ok
21:23:43.0911 4116  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:23:43.0943 4116  ose - ok
21:23:43.0974 4116  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
21:23:43.0974 4116  p2pimsvc - ok
21:23:44.0021 4116  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
21:23:44.0036 4116  p2psvc - ok
21:23:44.0067 4116  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\drivers\parport.sys
21:23:44.0145 4116  Parport - ok
21:23:44.0177 4116  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:23:44.0177 4116  partmgr - ok
21:23:44.0270 4116  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:23:44.0286 4116  PcaSvc - ok
21:23:44.0317 4116  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
21:23:44.0317 4116  pci - ok
21:23:44.0426 4116  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
21:23:44.0426 4116  pciide - ok
21:23:44.0504 4116  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
21:23:44.0520 4116  pcmcia - ok
21:23:44.0582 4116  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
21:23:44.0582 4116  pcw - ok
21:23:44.0613 4116  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:23:44.0660 4116  PEAUTH - ok
21:23:45.0019 4116  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
21:23:45.0019 4116  PerfHost - ok
21:23:45.0253 4116  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
21:23:45.0300 4116  pla - ok
21:23:45.0393 4116  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:23:45.0393 4116  PlugPlay - ok
21:23:45.0721 4116  [ 80E85394D8CD7F84340B1C6F4B9D698F ] PMBDeviceInfoProvider C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
21:23:45.0815 4116  PMBDeviceInfoProvider - ok
21:23:45.0846 4116  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
21:23:45.0846 4116  PNRPAutoReg - ok
21:23:45.0971 4116  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
21:23:45.0971 4116  PNRPsvc - ok
21:23:46.0033 4116  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:23:46.0064 4116  PolicyAgent - ok
21:23:46.0142 4116  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
21:23:46.0158 4116  Power - ok
21:23:46.0236 4116  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:23:46.0236 4116  PptpMiniport - ok
21:23:46.0283 4116  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\drivers\processr.sys
21:23:46.0283 4116  Processor - ok
21:23:46.0314 4116  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
21:23:46.0314 4116  ProfSvc - ok
21:23:46.0329 4116  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:23:46.0329 4116  ProtectedStorage - ok
21:23:46.0407 4116  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
21:23:46.0407 4116  Psched - ok
21:23:46.0579 4116  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
21:23:46.0657 4116  ql2300 - ok
21:23:46.0782 4116  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
21:23:46.0782 4116  ql40xx - ok
21:23:46.0875 4116  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
21:23:46.0875 4116  QWAVE - ok
21:23:46.0938 4116  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:23:46.0953 4116  QWAVEdrv - ok
21:23:46.0969 4116  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:23:46.0969 4116  RasAcd - ok
21:23:47.0016 4116  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
21:23:47.0031 4116  RasAgileVpn - ok
21:23:47.0047 4116  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
21:23:47.0047 4116  RasAuto - ok
21:23:47.0078 4116  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:23:47.0094 4116  Rasl2tp - ok
21:23:47.0156 4116  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
21:23:47.0156 4116  RasMan - ok
21:23:47.0203 4116  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:23:47.0219 4116  RasPppoe - ok
21:23:47.0250 4116  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:23:47.0250 4116  RasSstp - ok
21:23:47.0312 4116  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:23:47.0328 4116  rdbss - ok
21:23:47.0375 4116  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
21:23:47.0375 4116  rdpbus - ok
21:23:47.0406 4116  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:23:47.0421 4116  RDPCDD - ok
21:23:47.0437 4116  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:23:47.0437 4116  RDPENCDD - ok
21:23:47.0468 4116  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
21:23:47.0468 4116  RDPREFMP - ok
21:23:47.0577 4116  [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
21:23:47.0577 4116  RdpVideoMiniport - ok
21:23:47.0624 4116  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:23:47.0640 4116  RDPWD - ok
21:23:47.0671 4116  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
21:23:47.0671 4116  rdyboost - ok
21:23:47.0702 4116  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:23:47.0718 4116  RemoteAccess - ok
21:23:47.0765 4116  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:23:47.0827 4116  RemoteRegistry - ok
21:23:47.0874 4116  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
21:23:47.0874 4116  RFCOMM - ok
21:23:47.0936 4116  [ FA6ABC06B629DA29634D31F1FE0347BD ] rimspci         C:\Windows\system32\drivers\rimssne64.sys
21:23:47.0936 4116  rimspci - ok
21:23:47.0999 4116  [ 8F8539A7F5C117D4407B2985995671F2 ] risdsnpe        C:\Windows\system32\drivers\risdsne64.sys
21:23:47.0999 4116  risdsnpe - ok
21:23:48.0045 4116  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
21:23:48.0045 4116  RpcEptMapper - ok
21:23:48.0077 4116  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
21:23:48.0077 4116  RpcLocator - ok
21:23:48.0201 4116  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
21:23:48.0217 4116  RpcSs - ok
21:23:48.0248 4116  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:23:48.0248 4116  rspndr - ok
21:23:48.0295 4116  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
21:23:48.0295 4116  SamSs - ok
21:23:48.0326 4116  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:23:48.0326 4116  sbp2port - ok
21:23:48.0389 4116  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:23:48.0404 4116  SCardSvr - ok
21:23:48.0420 4116  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
21:23:48.0420 4116  scfilter - ok
21:23:48.0529 4116  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
21:23:48.0560 4116  Schedule - ok
21:23:48.0591 4116  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:23:48.0623 4116  SCPolicySvc - ok
21:23:48.0716 4116  [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus           C:\Windows\system32\drivers\sdbus.sys
21:23:48.0732 4116  sdbus - ok
21:23:48.0763 4116  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:23:48.0779 4116  SDRSVC - ok
21:23:48.0825 4116  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:23:48.0825 4116  secdrv - ok
21:23:48.0857 4116  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
21:23:48.0857 4116  seclogon - ok
21:23:48.0903 4116  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\system32\sens.dll
21:23:48.0903 4116  SENS - ok
21:23:48.0903 4116  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
21:23:48.0903 4116  SensrSvc - ok
21:23:48.0935 4116  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\drivers\serenum.sys
21:23:48.0950 4116  Serenum - ok
21:23:49.0013 4116  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\drivers\serial.sys
21:23:49.0013 4116  Serial - ok
21:23:49.0122 4116  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
21:23:49.0122 4116  sermouse - ok
21:23:49.0169 4116  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
21:23:49.0169 4116  SessionEnv - ok
21:23:49.0247 4116  [ 286D3889E6AB5589646FF8A63CB928AE ] SFEP            C:\Windows\system32\drivers\SFEP.sys
21:23:49.0247 4116  SFEP - ok
21:23:49.0293 4116  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:23:49.0325 4116  sffdisk - ok
21:23:49.0356 4116  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:23:49.0356 4116  sffp_mmc - ok
21:23:49.0387 4116  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:23:49.0387 4116  sffp_sd - ok
21:23:49.0418 4116  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
21:23:49.0434 4116  sfloppy - ok
21:23:49.0496 4116  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
21:23:49.0512 4116  SharedAccess - ok
21:23:49.0574 4116  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:23:49.0590 4116  ShellHWDetection - ok
21:23:49.0652 4116  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
21:23:49.0652 4116  SiSRaid2 - ok
21:23:49.0683 4116  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
21:23:49.0683 4116  SiSRaid4 - ok
21:23:49.0746 4116  [ 875B04A71869D34A415CC8B4D4673EC4 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
21:23:49.0746 4116  SkypeUpdate - ok
21:23:49.0777 4116  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:23:49.0793 4116  Smb - ok
21:23:49.0855 4116  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:23:49.0855 4116  SNMPTRAP - ok
21:23:50.0011 4116  [ C3E69DB0A4E59564230E053232F39AC7 ] SOHCImp         C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
21:23:50.0089 4116  SOHCImp - ok
21:23:50.0198 4116  [ 65CC4779A29C3E82B987BD4961790DFF ] SOHDms          C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
21:23:50.0276 4116  SOHDms - ok
21:23:50.0292 4116  [ F47D75CEE1844EEF4A9EA6EE768828FB ] SOHDs           C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
21:23:50.0307 4116  SOHDs - ok
21:23:50.0541 4116  [ 5449FC97476F52E027409E703791E6A9 ] SpfService      C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
21:23:50.0635 4116  SpfService - ok
21:23:50.0697 4116  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:23:50.0697 4116  spldr - ok
21:23:50.0760 4116  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
21:23:50.0775 4116  Spooler - ok
21:23:51.0165 4116  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
21:23:51.0259 4116  sppsvc - ok
21:23:51.0321 4116  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
21:23:51.0353 4116  sppuinotify - ok
21:23:51.0555 4116  [ 891793E00432FA055CF040605C260E49 ] SRTSP           C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS
21:23:51.0587 4116  SRTSP - ok
21:23:51.0633 4116  [ 1CB7BB3B0561FB5ECFE37F7731E8BF3E ] SRTSPX          C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS
21:23:51.0633 4116  SRTSPX - ok
21:23:51.0696 4116  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:23:51.0696 4116  srv - ok
21:23:51.0727 4116  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:23:51.0743 4116  srv2 - ok
21:23:51.0821 4116  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:23:51.0852 4116  srvnet - ok
21:23:51.0930 4116  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:23:51.0930 4116  SSDPSRV - ok
21:23:51.0961 4116  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:23:51.0961 4116  SstpSvc - ok
21:23:52.0008 4116  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\drivers\stexstor.sys
21:23:52.0008 4116  stexstor - ok
21:23:52.0070 4116  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
21:23:52.0086 4116  stisvc - ok
21:23:52.0101 4116  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
21:23:52.0101 4116  swenum - ok
21:23:52.0164 4116  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
21:23:52.0179 4116  swprv - ok
21:23:52.0304 4116  [ 8B2430762099598DA40686F754632EFD ] SymDS           C:\Windows\system32\drivers\NISx64\1309010.00E\SYMDS64.SYS
21:23:52.0304 4116  SymDS - ok
21:23:52.0569 4116  [ 5CB7F2FD7E30A0F52F93574BFC3A8041 ] SymEFA          C:\Windows\system32\drivers\NISx64\1309010.00E\SYMEFA64.SYS
21:23:52.0585 4116  SymEFA - ok
21:23:52.0679 4116  [ 898BB48C797483420DF523B2BBC1ECDB ] SymEvent        C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
21:23:52.0866 4116  SymEvent - ok
21:23:52.0944 4116  [ B681D1B0F9596684225DCC9B94C6BACF ] SymIM           C:\Windows\system32\DRIVERS\SymIMv.sys
21:23:52.0944 4116  SymIM - ok
21:23:53.0006 4116  [ 5013A76CAAA1D7CF1C55214B490B4E35 ] SymIRON         C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS
21:23:53.0022 4116  SymIRON - ok
21:23:53.0115 4116  [ 3911BD0E68C010E5438A87706ABBE9AB ] SymNetS         C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS
21:23:53.0115 4116  SymNetS - ok
21:23:53.0287 4116  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
21:23:53.0334 4116  SysMain - ok
21:23:53.0349 4116  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:23:53.0365 4116  TabletInputService - ok
21:23:53.0412 4116  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:23:53.0412 4116  TapiSrv - ok
21:23:53.0443 4116  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
21:23:53.0443 4116  TBS - ok
21:23:53.0677 4116  [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:23:53.0677 4116  Tcpip - ok
21:23:53.0927 4116  [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
21:23:53.0942 4116  TCPIP6 - ok
21:23:53.0973 4116  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:23:53.0973 4116  tcpipreg - ok
21:23:54.0005 4116  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:23:54.0005 4116  TDPIPE - ok
21:23:54.0036 4116  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:23:54.0051 4116  TDTCP - ok
21:23:54.0098 4116  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:23:54.0098 4116  tdx - ok
21:23:54.0129 4116  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
21:23:54.0129 4116  TermDD - ok
21:23:54.0192 4116  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
21:23:54.0239 4116  TermService - ok
21:23:54.0254 4116  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
21:23:54.0270 4116  Themes - ok
21:23:54.0301 4116  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
21:23:54.0301 4116  THREADORDER - ok
21:23:54.0301 4116  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
21:23:54.0301 4116  TrkWks - ok
21:23:54.0363 4116  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:23:54.0363 4116  TrustedInstaller - ok
21:23:54.0457 4116  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:23:54.0473 4116  tssecsrv - ok
21:23:54.0551 4116  [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
21:23:54.0582 4116  TsUsbFlt - ok
21:23:54.0629 4116  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:23:54.0629 4116  tunnel - ok
21:23:54.0675 4116  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
21:23:54.0675 4116  uagp35 - ok
21:23:54.0707 4116  [ 63F6D08C54D5B3C1B12A6172032055C7 ] uCamMonitor     C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
21:23:54.0722 4116  uCamMonitor - ok
21:23:54.0878 4116  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:23:54.0925 4116  udfs - ok
21:23:54.0956 4116  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:23:54.0956 4116  UI0Detect - ok
21:23:54.0987 4116  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:23:55.0003 4116  uliagpkx - ok
21:23:55.0034 4116  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
21:23:55.0050 4116  umbus - ok
21:23:55.0112 4116  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
21:23:55.0112 4116  UmPass - ok
21:23:55.0159 4116  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
21:23:55.0190 4116  upnphost - ok
21:23:55.0237 4116  [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
21:23:55.0268 4116  USBAAPL64 - ok
21:23:55.0299 4116  [ 5FCC71487888589A9244AF54CFEFAB29 ] usbbus          C:\Windows\system32\DRIVERS\lgx64bus.sys
21:23:55.0331 4116  usbbus - ok
21:23:55.0346 4116  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:23:55.0346 4116  usbccgp - ok
21:23:55.0471 4116  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:23:55.0471 4116  usbcir - ok
21:23:55.0565 4116  [ 3FB6E423F7567C92C32EA786F5FD0C69 ] UsbDiag         C:\Windows\system32\DRIVERS\lgx64diag.sys
21:23:55.0596 4116  UsbDiag - ok
21:23:55.0643 4116  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
21:23:55.0643 4116  usbehci - ok
21:23:55.0721 4116  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:23:55.0752 4116  usbhub - ok
21:23:55.0830 4116  [ 78D551F5B93488B4666F5FC8DD4815F3 ] USBModem        C:\Windows\system32\DRIVERS\lgx64modem.sys
21:23:55.0877 4116  USBModem - ok
21:23:55.0908 4116  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
21:23:55.0908 4116  usbohci - ok
21:23:55.0939 4116  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
21:23:55.0955 4116  usbprint - ok
21:23:56.0001 4116  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:23:56.0017 4116  USBSTOR - ok
21:23:56.0048 4116  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
21:23:56.0048 4116  usbuhci - ok
21:23:56.0142 4116  [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
21:23:56.0142 4116  usbvideo - ok
21:23:56.0204 4116  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
21:23:56.0204 4116  UxSms - ok
21:23:56.0298 4116  [ A60605FC66552B421EE1F3D4EBB9A4E0 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
21:23:56.0313 4116  VAIO Event Service - ok
21:23:56.0423 4116  [ D469BE2723F79CF4B384680B1FDC577D ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe
21:23:56.0438 4116  VAIO Power Management - ok
21:23:56.0454 4116  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
21:23:56.0454 4116  VaultSvc - ok
21:23:56.0563 4116  [ 96EFA2698D6B9E2931609A3EA73FC5DC ] VCFw            C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
21:23:56.0610 4116  VCFw - ok
21:23:56.0953 4116  [ 7BEBF6A5285FFC03C34A7297A4E177CB ] VcmIAlzMgr      C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
21:23:57.0109 4116  VcmIAlzMgr - ok
21:23:57.0203 4116  [ E005B04DFCA99F5880C5111933194CA9 ] VcmINSMgr       C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
21:23:57.0312 4116  VcmINSMgr - ok
21:23:57.0343 4116  [ 829A32FD1334F72429CA0515760EB7A7 ] VcmXmlIfHelper  C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
21:23:57.0374 4116  VcmXmlIfHelper - ok
21:23:57.0483 4116  [ D347D3ABE070AA09C22FC37121555D52 ] VCService       C:\Program Files\Sony\VAIO Care\VCService.exe
21:23:57.0530 4116  VCService - ok
21:23:57.0577 4116  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
21:23:57.0577 4116  vdrvroot - ok
21:23:57.0671 4116  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
21:23:57.0686 4116  vds - ok
21:23:57.0764 4116  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:23:57.0780 4116  vga - ok
21:23:57.0811 4116  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:23:57.0811 4116  VgaSave - ok
21:23:57.0889 4116  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
21:23:57.0905 4116  vhdmp - ok
21:23:57.0936 4116  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
21:23:57.0936 4116  viaide - ok
21:23:57.0951 4116  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:23:57.0951 4116  volmgr - ok
21:23:57.0983 4116  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:23:57.0998 4116  volmgrx - ok
21:23:58.0014 4116  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:23:58.0029 4116  volsnap - ok
21:23:58.0045 4116  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
21:23:58.0061 4116  vsmraid - ok
21:23:58.0107 4116  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
21:23:58.0154 4116  VSS - ok
21:23:58.0388 4116  [ FB4A1695D2D74F9C92CA5E84795CDBE1 ] VUAgent         C:\Program Files\Sony\VAIO Update Common\VUAgent.exe
21:23:58.0622 4116  VUAgent - ok
21:23:58.0669 4116  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
21:23:58.0669 4116  vwifibus - ok
21:23:58.0700 4116  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
21:23:58.0700 4116  vwififlt - ok
21:23:58.0716 4116  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
21:23:58.0716 4116  vwifimp - ok
21:23:58.0747 4116  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
21:23:58.0763 4116  W32Time - ok
21:23:58.0809 4116  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
21:23:58.0809 4116  WacomPen - ok
21:23:58.0872 4116  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
21:23:58.0872 4116  WANARP - ok
21:23:58.0887 4116  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:23:58.0887 4116  Wanarpv6 - ok
21:23:59.0121 4116  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
21:23:59.0231 4116  WatAdminSvc - ok
21:23:59.0480 4116  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
21:23:59.0511 4116  wbengine - ok
21:23:59.0730 4116  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
21:23:59.0745 4116  WbioSrvc - ok
21:23:59.0792 4116  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:23:59.0808 4116  wcncsvc - ok
21:23:59.0839 4116  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:23:59.0855 4116  WcsPlugInService - ok
21:23:59.0901 4116  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\drivers\wd.sys
21:23:59.0901 4116  Wd - ok
21:23:59.0948 4116  [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
21:23:59.0979 4116  WDC_SAM - ok
21:24:00.0026 4116  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:24:00.0042 4116  Wdf01000 - ok
21:24:00.0057 4116  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:24:00.0057 4116  WdiServiceHost - ok
21:24:00.0073 4116  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:24:00.0073 4116  WdiSystemHost - ok
21:24:00.0089 4116  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
21:24:00.0104 4116  WebClient - ok
21:24:00.0198 4116  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:24:00.0213 4116  Wecsvc - ok
21:24:00.0260 4116  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:24:00.0260 4116  wercplsupport - ok
21:24:00.0354 4116  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
21:24:00.0354 4116  WerSvc - ok
21:24:00.0447 4116  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
21:24:00.0447 4116  WfpLwf - ok
21:24:00.0463 4116  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
21:24:00.0463 4116  WIMMount - ok
21:24:00.0479 4116  WinDefend - ok
21:24:00.0510 4116  WinHttpAutoProxySvc - ok
21:24:00.0572 4116  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:24:00.0572 4116  Winmgmt - ok
21:24:00.0759 4116  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
21:24:00.0806 4116  WinRM - ok
21:24:00.0931 4116  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
21:24:00.0947 4116  WinUsb - ok
21:24:01.0165 4116  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:24:01.0243 4116  Wlansvc - ok
21:24:01.0617 4116  [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:24:01.0680 4116  wlidsvc - ok
21:24:01.0727 4116  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
21:24:01.0727 4116  WmiAcpi - ok
21:24:01.0773 4116  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:24:01.0805 4116  wmiApSrv - ok
21:24:01.0867 4116  WMPNetworkSvc - ok
21:24:01.0945 4116  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:24:01.0945 4116  WPCSvc - ok
21:24:01.0976 4116  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:24:01.0976 4116  WPDBusEnum - ok
21:24:02.0023 4116  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:24:02.0039 4116  ws2ifsl - ok
21:24:02.0085 4116  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\system32\wscsvc.dll
21:24:02.0085 4116  wscsvc - ok
21:24:02.0101 4116  WSearch - ok
21:24:02.0195 4116  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
21:24:02.0366 4116  wuauserv - ok
21:24:02.0382 4116  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
21:24:02.0413 4116  WudfPf - ok
21:24:02.0444 4116  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
21:24:02.0444 4116  WUDFRd - ok
21:24:02.0475 4116  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:24:02.0507 4116  wudfsvc - ok
21:24:02.0553 4116  [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc         C:\Windows\System32\wwansvc.dll
21:24:02.0569 4116  WwanSvc - ok
21:24:02.0616 4116  [ 5250193EF8E173AA7491250F00EB367F ] yukonw7         C:\Windows\system32\DRIVERS\yk62x64.sys
21:24:02.0616 4116  yukonw7 - ok
21:24:02.0694 4116  ================ Scan global ===============================
21:24:02.0709 4116  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
21:24:02.0741 4116  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
21:24:02.0756 4116  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
21:24:02.0787 4116  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
21:24:02.0803 4116  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
21:24:02.0819 4116  [Global] - ok
21:24:02.0819 4116  ================ Scan MBR ==================================
21:24:02.0834 4116  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:24:05.0361 4116  \Device\Harddisk0\DR0 - ok
21:24:05.0361 4116  ================ Scan VBR ==================================
21:24:05.0393 4116  [ ECCDA50F370288A657E673436A7A28BF ] \Device\Harddisk0\DR0\Partition1
21:24:05.0408 4116  \Device\Harddisk0\DR0\Partition1 - ok
21:24:05.0408 4116  [ 2E79DA14698E468461B0082FCC5DB1AB ] \Device\Harddisk0\DR0\Partition2
21:24:05.0424 4116  \Device\Harddisk0\DR0\Partition2 - ok
21:24:05.0424 4116  ============================================================
21:24:05.0424 4116  Scan finished
21:24:05.0424 4116  ============================================================
21:24:05.0424 4932  Detected object count: 0
21:24:05.0424 4932  Actual detected object count: 0
 



#6 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 08:28 PM

# AdwCleaner v2.302 - Logfile created 06/07/2013 at 21:25:44
# Updated 06/06/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : cowfun - COWFUN-VAIO
# Boot Mode : Normal
# Running from : C:\Users\cowfun\Desktop\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Users\cowfun\AppData\Local\PackageAware

***** [Registry] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0194532A-A99C-4337-937E-2A452C8957BE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0194532A-A99C-4337-937E-2A452C8957BE}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16576

[OK] Registry is clean.

-\\ Mozilla Firefox v21.0 (en-US)

File : C:\Users\cowfun\AppData\Roaming\Mozilla\Firefox\Profiles\dtoql2e3.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v27.0.1453.110

File : C:\Users\cowfun\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[S3].txt - [1319 octets] - [07/06/2013 21:25:44]

########## EOF - C:\AdwCleaner[S3].txt - [1379 octets] ##########
 



#7 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 09:49 PM

Eset scan found no threats



#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:59 AM

Posted 07 June 2013 - 09:56 PM

Good than it is removed.

Look in the TEMP folder and if they exist delte them there..
Running well now?
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 10:12 PM

The files are no longer there.

Since it the removed files were a trojan, were my accounts/password compromised?

But there's this file I'm not sure of "etilqs_pd7rE5tX1A3Ye6c"

Is it just a benign file?

Thanks!


Edited by Ca20, 07 June 2013 - 10:13 PM.


#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:59 AM

Posted 07 June 2013 - 10:28 PM

Delete it, it looks like a malware file.

 

You're welcome!


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 10:31 PM

It's a malware file, how can we be sure?
It says it can't be deleted because the file is open in firefox.


Edited by Ca20, 07 June 2013 - 10:31 PM.


#12 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 10:32 PM

This is a screenshot of the temp folder

http://i.imgur.com/7b6SXSG.png



#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:10:59 AM

Posted 07 June 2013 - 10:37 PM

Close Firefox and see.


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#14 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 10:46 PM

Before I deleted, 2 other files appeared with similar naming.
I was able to delete them after closing firefox.

 

Could they be harmless, how would we know?
They seem to be related to firefox somehow, not sure if they would reappear in the future.

How would I deal with it in the future?

This is what my temp fodler looks like now

http://i.imgur.com/nzSjPX7.png

Some new folders appear here and then but that's normal?


Edited by Ca20, 07 June 2013 - 10:52 PM.


#15 Ca20

Ca20
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:09:59 AM

Posted 07 June 2013 - 11:08 PM

I googled it and it seems etilqs

 files are produced by firefox and should be deleted when it shuts down.

I don't think it is malware?
But I could be wrong?






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users