Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Microsoft Essentials shuts down computer


  • Please log in to reply
14 replies to this topic

#1 nlewis5

nlewis5

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 06 June 2013 - 12:34 AM

HELP, Hi I am having the same issue with my compaq presario desktop. I did those scans ... avg cant finish its scan - the computer just shuts off. then I have to keep restarting until it stops shutting itself down and windows starts up. its been 3 weeks!!! Thank you!!!!!!

 

minitoolbar =

MiniToolBox by Farbar  Version:21-04-2013
Ran by KITAandROY (administrator) on 05-06-2013 at 22:14:32
Running from "C:\Users\KITAandROY\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VCQAFRH3"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================

 

========================= IP Configuration: ================================

NVIDIA nForce Networking Controller = Local Area Connection (Connected)

# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled

popd
# End of IPv4 configuration

 

Windows IP Configuration

   Host Name . . . . . . . . . . . . : KITAandROY-PC
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : socal.rr.com

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : socal.rr.com
   Description . . . . . . . . . . . : NVIDIA nForce Networking Controller
   Physical Address. . . . . . . . . : 00-1F-C6-6F-65-D0
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::4953:a22e:4a9a:5d39%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 98.148.29.114(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.252.0
   Lease Obtained. . . . . . . . . . : Wednesday, June 05, 2013 8:26:02 PM
   Lease Expires . . . . . . . . . . : Thursday, June 06, 2013 8:18:18 AM
   Default Gateway . . . . . . . . . : 98.148.28.1
   DHCP Server . . . . . . . . . . . : 76.85.238.35
   DHCPv6 IAID . . . . . . . . . . . : 234889158
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-19-3C-4E-C1-00-1F-C6-6F-65-D0
   DNS Servers . . . . . . . . . . . : 209.18.47.61
                                       209.18.47.62
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.socal.rr.com:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : socal.rr.com
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

   Connection-specific DNS Suffix  . : socal.rr.com
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2002:6294:1d72::6294:1d72(Preferred)
   Default Gateway . . . . . . . . . :
   DNS Servers . . . . . . . . . . . : 209.18.47.61
                                       209.18.47.62
   NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:820:693:9d6b:ed94(Preferred)
   Link-local IPv6 Address . . . . . : fe80::820:693:9d6b:ed94%14(Preferred)
   Default Gateway . . . . . . . . . :
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  dns-cac-lb-01.rr.com
Address:  209.18.47.61

Name:    google.com
Addresses:  2607:f8b0:4005:800::1003
   74.125.239.99
   74.125.239.100
   74.125.239.101
   74.125.239.102
   74.125.239.103
   74.125.239.104
   74.125.239.105
   74.125.239.110
   74.125.239.96
   74.125.239.97
   74.125.239.98

Pinging google.com [74.125.239.130] with 32 bytes of data:
Reply from 74.125.239.130: bytes=32 time=20ms TTL=54
Reply from 74.125.239.130: bytes=32 time=23ms TTL=54

Ping statistics for 74.125.239.130:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 20ms, Maximum = 23ms, Average = 21ms
Server:  dns-cac-lb-01.rr.com
Address:  209.18.47.61

Name:    yahoo.com
Addresses:  206.190.36.45
   98.138.253.109
   98.139.183.24

Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=343ms TTL=46
Reply from 98.139.183.24: bytes=32 time=352ms TTL=46

Ping statistics for 98.139.183.24:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 343ms, Maximum = 352ms, Average = 347ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 11...00 1f c6 6f 65 d0 ......NVIDIA nForce Networking Controller
  1...........................Software Loopback Interface 1
 12...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
 14...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      98.148.28.1    98.148.29.114     20
      98.148.28.0    255.255.252.0         On-link     98.148.29.114    276
    98.148.29.114  255.255.255.255         On-link     98.148.29.114    276
    98.148.31.255  255.255.255.255         On-link     98.148.29.114    276
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     98.148.29.114    276
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     98.148.29.114    276
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 14     58 2001::/32                On-link
 14    306 2001:0:5ef5:79fd:820:693:9d6b:ed94/128
                                    On-link
 13   1025 2002::/16                On-link
 13    281 2002:6294:1d72::6294:1d72/128
                                    On-link
 11    276 fe80::/64                On-link
 14    306 fe80::/64                On-link
 14    306 fe80::820:693:9d6b:ed94/128
                                    On-link
 11    276 fe80::4953:a22e:4a9a:5d39/128
                                    On-link
  1    306 ff00::/8                 On-link
 14    306 ff00::/8                 On-link
 11    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/05/2013 08:24:11 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 07:53:01 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:24:04 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:19:50 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:06:44 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 04:42:17 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:43:48 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:37:14 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:12:48 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 01:22:39 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

System errors:
=============
Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Update for Windows 7 for x64-based Systems (KB2515325).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2813347).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Update for Windows 7 for x64-based Systems (KB2763523).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Update for Windows 7 for x64-based Systems (KB2533552).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2620704).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2756921).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2658846).

Error: (06/05/2013 08:26:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2560656).

Error: (06/05/2013 08:26:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2830290).

Error: (06/05/2013 08:26:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2769369).

Microsoft Office Sessions:
=========================
Error: (06/05/2013 08:24:11 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 07:53:01 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:24:04 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:19:50 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 06:06:44 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 04:42:17 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:43:48 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:37:14 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 02:12:48 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/05/2013 01:22:39 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

=========================== Installed Programs ============================

AVG 2013 (Version: 13.0.3184)
AVG 2013 (Version: 13.0.3343)
AVG 2013 (Version: 2013.0.3343)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1)

========================= Devices: ================================

========================= Memory info: ===================================

Percentage of memory in use: 44%
Total physical RAM: 3070.49 MB
Available physical RAM: 1716.1 MB
Total Pagefile: 6139.17 MB
Available Pagefile: 4680.65 MB
Total Virtual: 4095.88 MB
Available Virtual: 3978.91 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:354.63 GB) (Free:178.24 GB) NTFS
2 Drive d: () (Fixed) (Total:100.97 GB) (Free:100.87 GB) NTFS
3 Drive e: (FACTORY_IMAGE) (Fixed) (Total:10.16 GB) (Free:1.32 GB) NTFS

========================= Users: ========================================

User accounts for \\KITAANDROY-PC

Administrator            Guest                    KITAandROY              

========================= Minidump Files ==================================

No minidump file found

========================= Restore Points ==================================

04-06-2013 14:34:23 Windows Update
04-06-2013 16:36:18 Windows Update
04-06-2013 16:57:00 Windows Update
04-06-2013 17:30:52 Windows Update
04-06-2013 17:37:13 Restore Operation
04-06-2013 19:04:43 Windows Update
04-06-2013 19:40:40 Windows Update
05-06-2013 00:21:38 Windows Update
05-06-2013 14:46:11 Windows Update
05-06-2013 16:47:00 Windows Update
05-06-2013 17:18:35 Windows Update
06-06-2013 01:09:33 Windows Update
06-06-2013 01:25:17 NEWEST! After AVG & updates - Picasa creates shutdown
06-06-2013 02:55:43 Windows Update

**** End of log ****

 

 

 

tdsskiller =

22:20:56.0054 2576 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

22:20:57.0209 2576 ============================================================

22:20:57.0209 2576 Current date / time: 2013/06/05 22:20:57.0209

22:20:57.0209 2576 SystemInfo:

22:20:57.0209 2576

22:20:57.0209 2576 OS Version: 6.1.7601 ServicePack: 1.0

22:20:57.0209 2576 Product type: Workstation

22:20:57.0209 2576 ComputerName: KITAANDROY-PC

22:20:57.0209 2576 UserName: KITAandROY

22:20:57.0209 2576 Windows directory: C:\Windows

22:20:57.0209 2576 System windows directory: C:\Windows

22:20:57.0209 2576 Running under WOW64

22:20:57.0209 2576 Processor architecture: Intel x64

22:20:57.0209 2576 Number of processors: 2

22:20:57.0209 2576 Page size: 0x1000

22:20:57.0209 2576 Boot type: Normal boot

22:20:57.0209 2576 ============================================================

22:20:59.0190 2576 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

22:20:59.0221 2576 ============================================================

22:20:59.0221 2576 \Device\Harddisk0\DR0:

22:20:59.0221 2576 MBR partitions:

22:20:59.0221 2576 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2C542917

22:20:59.0221 2576 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2D993504, BlocksNum 0xC9F173D

22:20:59.0221 2576 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x2C542956, BlocksNum 0x1450BAE

22:20:59.0221 2576 ============================================================

22:20:59.0237 2576 C: <-> \Device\Harddisk0\DR0\Partition1

22:20:59.0268 2576 D: <-> \Device\Harddisk0\DR0\Partition2

22:20:59.0299 2576 E: <-> \Device\Harddisk0\DR0\Partition3

22:20:59.0299 2576 ============================================================

22:20:59.0299 2576 Initialize success

22:20:59.0299 2576 ============================================================

22:21:45.0597 3612 ============================================================

22:21:45.0597 3612 Scan started

22:21:45.0597 3612 Mode: Manual; SigCheck; TDLFS;

22:21:45.0597 3612 ============================================================

22:21:47.0203 3612 ================ Scan system memory ========================

22:21:47.0203 3612 System memory - ok

22:21:47.0203 3612 ================ Scan services =============================

22:21:47.0547 3612 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys

22:21:47.0671 3612 1394ohci - ok

22:21:47.0687 3612 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys

22:21:47.0718 3612 ACPI - ok

22:21:47.0734 3612 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

22:21:47.0765 3612 AcpiPmi - ok

22:21:47.0812 3612 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys

22:21:47.0859 3612 adp94xx - ok

22:21:47.0874 3612 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys

22:21:47.0905 3612 adpahci - ok

22:21:47.0921 3612 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys

22:21:47.0937 3612 adpu320 - ok

22:21:47.0999 3612 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

22:21:48.0030 3612 AeLookupSvc - ok

22:21:48.0093 3612 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys

22:21:48.0139 3612 AFD - ok

22:21:48.0171 3612 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys

22:21:48.0202 3612 agp440 - ok

22:21:48.0233 3612 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe

22:21:48.0264 3612 ALG - ok

22:21:48.0295 3612 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys

22:21:48.0311 3612 aliide - ok

22:21:48.0358 3612 [ A359974EAAC83A435497C52F62A2E590 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe

22:21:48.0405 3612 AMD External Events Utility - ok

22:21:48.0420 3612 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys

22:21:48.0436 3612 amdide - ok

22:21:48.0483 3612 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

22:21:48.0483 3612 AmdK8 - ok

22:21:48.0701 3612 [ 60216B0E704584DE6D5A9F59E9C34C47 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys

22:21:49.0029 3612 amdkmdag - ok

22:21:49.0044 3612 [ 6B4E9261B613B047A9A145F328889968 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys

22:21:49.0091 3612 amdkmdap - ok

22:21:49.0107 3612 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys

22:21:49.0138 3612 AmdPPM - ok

22:21:49.0185 3612 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys

22:21:49.0216 3612 amdsata - ok

22:21:49.0247 3612 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys

22:21:49.0278 3612 amdsbs - ok

22:21:49.0294 3612 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys

22:21:49.0309 3612 amdxata - ok

22:21:49.0341 3612 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys

22:21:49.0387 3612 AppID - ok

22:21:49.0419 3612 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll

22:21:49.0465 3612 AppIDSvc - ok

22:21:49.0497 3612 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll

22:21:49.0528 3612 Appinfo - ok

22:21:49.0543 3612 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys

22:21:49.0559 3612 arc - ok

22:21:49.0575 3612 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys

22:21:49.0590 3612 arcsas - ok

22:21:49.0637 3612 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

22:21:49.0684 3612 AsyncMac - ok

22:21:49.0699 3612 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys

22:21:49.0699 3612 atapi - ok

22:21:49.0762 3612 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

22:21:49.0809 3612 AudioEndpointBuilder - ok

22:21:49.0824 3612 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll

22:21:49.0871 3612 AudioSrv - ok

22:21:49.0918 3612 [ 3D1FFAA3358CA0D8A298DEA8BECFC468 ] Avgfwfd C:\Windows\system32\DRIVERS\avgfwd6a.sys

22:21:49.0949 3612 Avgfwfd - ok

22:21:50.0074 3612 [ 6D3A517FE33AD047578BF73BB447EEAD ] avgfws C:\Program Files (x86)\AVG\AVG2013\avgfws.exe

22:21:50.0183 3612 avgfws - ok

22:21:50.0308 3612 [ 50185186719134FA8F307D269106A51C ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe

22:21:50.0370 3612 AVGIDSAgent - ok

22:21:50.0401 3612 [ 139BD30C32BEE830D0CF39C5324D79DE ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys

22:21:50.0433 3612 AVGIDSDriver - ok

22:21:50.0448 3612 [ 2940FACB6EF92BD1936E4A1E2502468E ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys

22:21:50.0448 3612 AVGIDSHA - ok

22:21:50.0464 3612 [ 54B66C4AEEC6C4F742F3569EBA03EBB8 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys

22:21:50.0495 3612 Avgldx64 - ok

22:21:50.0511 3612 [ 13667B5D6310228A9FEF2BA5FCD9081F ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys

22:21:50.0542 3612 Avgloga - ok

22:21:50.0542 3612 [ BE82F9A1F2CCF4CE746D0C645D94079E ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys

22:21:50.0557 3612 Avgmfx64 - ok

22:21:50.0573 3612 [ 5D11620DEF66F9DC9468FEE385A8429B ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys

22:21:50.0573 3612 Avgrkx64 - ok

22:21:50.0589 3612 [ 69BD90E337625F96C718CACE7A9C9E29 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys

22:21:50.0620 3612 Avgtdia - ok

22:21:50.0651 3612 [ 3A0977CB68AF13E2579E47EB8984056B ] avgwd C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe

22:21:50.0667 3612 avgwd - ok

22:21:50.0729 3612 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll

22:21:50.0807 3612 AxInstSV - ok

22:21:50.0854 3612 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys

22:21:50.0916 3612 b06bdrv - ok

22:21:50.0979 3612 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys

22:21:51.0025 3612 b57nd60a - ok

22:21:51.0057 3612 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll

22:21:51.0103 3612 BDESVC - ok

22:21:51.0119 3612 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys

22:21:51.0181 3612 Beep - ok

22:21:51.0244 3612 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll

22:21:51.0291 3612 BFE - ok

22:21:51.0337 3612 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll

22:21:51.0400 3612 BITS - ok

22:21:51.0431 3612 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

22:21:51.0447 3612 blbdrive - ok

22:21:51.0493 3612 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys

22:21:51.0525 3612 bowser - ok

22:21:51.0540 3612 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys

22:21:51.0556 3612 BrFiltLo - ok

22:21:51.0571 3612 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys

22:21:51.0587 3612 BrFiltUp - ok

22:21:51.0618 3612 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll

22:21:51.0665 3612 Browser - ok

22:21:51.0696 3612 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys

22:21:51.0774 3612 Brserid - ok

22:21:51.0790 3612 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

22:21:51.0837 3612 BrSerWdm - ok

22:21:51.0837 3612 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

22:21:51.0868 3612 BrUsbMdm - ok

22:21:51.0868 3612 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

22:21:51.0883 3612 BrUsbSer - ok

22:21:51.0899 3612 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys

22:21:51.0930 3612 BTHMODEM - ok

22:21:51.0961 3612 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll

22:21:52.0024 3612 bthserv - ok

22:21:52.0024 3612 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

22:21:52.0071 3612 cdfs - ok

22:21:52.0102 3612 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys

22:21:52.0133 3612 cdrom - ok

22:21:52.0180 3612 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll

22:21:52.0227 3612 CertPropSvc - ok

22:21:52.0242 3612 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys

22:21:52.0273 3612 circlass - ok

22:21:52.0305 3612 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys

22:21:52.0320 3612 CLFS - ok

22:21:52.0414 3612 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

22:21:52.0429 3612 clr_optimization_v2.0.50727_32 - ok

22:21:52.0539 3612 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

22:21:52.0554 3612 clr_optimization_v2.0.50727_64 - ok

22:21:52.0554 3612 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys

22:21:52.0601 3612 CmBatt - ok

22:21:52.0601 3612 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys

22:21:52.0632 3612 cmdide - ok

22:21:52.0663 3612 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys

22:21:52.0710 3612 CNG - ok

22:21:52.0741 3612 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys

22:21:52.0757 3612 Compbatt - ok

22:21:52.0788 3612 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys

22:21:52.0819 3612 CompositeBus - ok

22:21:52.0835 3612 COMSysApp - ok

22:21:52.0851 3612 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys

22:21:52.0866 3612 crcdisk - ok

22:21:52.0913 3612 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll

22:21:52.0944 3612 CryptSvc - ok

22:21:52.0975 3612 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll

22:21:53.0038 3612 DcomLaunch - ok

22:21:53.0069 3612 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll

22:21:53.0116 3612 defragsvc - ok

22:21:53.0131 3612 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys

22:21:53.0194 3612 DfsC - ok

22:21:53.0225 3612 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll

22:21:53.0287 3612 Dhcp - ok

22:21:53.0303 3612 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys

22:21:53.0365 3612 discache - ok

22:21:53.0381 3612 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys

22:21:53.0397 3612 Disk - ok

22:21:53.0428 3612 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll

22:21:53.0475 3612 Dnscache - ok

22:21:53.0490 3612 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll

22:21:53.0599 3612 dot3svc - ok

22:21:53.0631 3612 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll

22:21:53.0677 3612 DPS - ok

22:21:53.0724 3612 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

22:21:53.0755 3612 drmkaud - ok

22:21:53.0787 3612 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

22:21:53.0833 3612 DXGKrnl - ok

22:21:53.0849 3612 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll

22:21:53.0896 3612 EapHost - ok

22:21:54.0005 3612 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys

22:21:54.0130 3612 ebdrv - ok

22:21:54.0161 3612 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe

22:21:54.0208 3612 EFS - ok

22:21:54.0270 3612 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe

22:21:54.0348 3612 ehRecvr - ok

22:21:54.0364 3612 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe

22:21:54.0395 3612 ehSched - ok

22:21:54.0426 3612 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys

22:21:54.0457 3612 elxstor - ok

22:21:54.0473 3612 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys

22:21:54.0504 3612 ErrDev - ok

22:21:54.0551 3612 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll

22:21:54.0598 3612 EventSystem - ok

22:21:54.0613 3612 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys

22:21:54.0660 3612 exfat - ok

22:21:54.0676 3612 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys

22:21:54.0723 3612 fastfat - ok

22:21:54.0769 3612 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe

22:21:54.0832 3612 Fax - ok

22:21:54.0863 3612 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys

22:21:54.0910 3612 fdc - ok

22:21:54.0941 3612 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll

22:21:54.0972 3612 fdPHost - ok

22:21:54.0988 3612 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll

22:21:55.0019 3612 FDResPub - ok

22:21:55.0035 3612 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

22:21:55.0050 3612 FileInfo - ok

22:21:55.0066 3612 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys

22:21:55.0113 3612 Filetrace - ok

22:21:55.0128 3612 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys

22:21:55.0144 3612 flpydisk - ok

22:21:55.0175 3612 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

22:21:55.0206 3612 FltMgr - ok

22:21:55.0253 3612 [ B4447F606BB19FD8AD0BAFB59B90F5D9 ] FontCache C:\Windows\system32\FntCache.dll

22:21:55.0331 3612 FontCache - ok

22:21:55.0378 3612 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

22:21:55.0471 3612 FontCache3.0.0.0 - ok

22:21:55.0487 3612 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys

22:21:55.0503 3612 FsDepends - ok

22:21:55.0549 3612 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

22:21:55.0549 3612 Fs_Rec - ok

22:21:55.0596 3612 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys

22:21:55.0612 3612 fvevol - ok

22:21:55.0627 3612 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys

22:21:55.0643 3612 gagp30kx - ok

22:21:55.0674 3612 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll

22:21:55.0737 3612 gpsvc - ok

22:21:55.0752 3612 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

22:21:55.0783 3612 hcw85cir - ok

22:21:55.0846 3612 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

22:21:55.0893 3612 HdAudAddService - ok

22:21:55.0908 3612 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys

22:21:55.0939 3612 HDAudBus - ok

22:21:55.0955 3612 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys

22:21:55.0986 3612 HidBatt - ok

22:21:56.0002 3612 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys

22:21:56.0033 3612 HidBth - ok

22:21:56.0049 3612 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys

22:21:56.0080 3612 HidIr - ok

22:21:56.0095 3612 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll

22:21:56.0142 3612 hidserv - ok

22:21:56.0173 3612 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

22:21:56.0173 3612 HidUsb - ok

22:21:56.0220 3612 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll

22:21:56.0267 3612 hkmsvc - ok

22:21:56.0283 3612 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll

22:21:56.0314 3612 HomeGroupListener - ok

22:21:56.0329 3612 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll

22:21:56.0376 3612 HomeGroupProvider - ok

22:21:56.0392 3612 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

22:21:56.0454 3612 HpSAMD - ok

22:21:56.0485 3612 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys

22:21:56.0563 3612 HTTP - ok

22:21:56.0579 3612 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

22:21:56.0595 3612 hwpolicy - ok

22:21:56.0610 3612 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys

22:21:56.0641 3612 i8042prt - ok

22:21:56.0673 3612 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys

22:21:56.0704 3612 iaStorV - ok

22:21:56.0766 3612 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

22:21:56.0829 3612 idsvc - ok

22:21:56.0844 3612 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys

22:21:56.0860 3612 iirsp - ok

22:21:56.0891 3612 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll

22:21:57.0000 3612 IKEEXT - ok

22:21:57.0031 3612 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys

22:21:57.0063 3612 intelide - ok

22:21:57.0094 3612 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys

22:21:57.0125 3612 intelppm - ok

22:21:57.0156 3612 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll

22:21:57.0219 3612 IPBusEnum - ok

22:21:57.0219 3612 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

22:21:57.0265 3612 IpFilterDriver - ok

22:21:57.0297 3612 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

22:21:57.0328 3612 iphlpsvc - ok

22:21:57.0343 3612 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

22:21:57.0375 3612 IPMIDRV - ok

22:21:57.0375 3612 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys

22:21:57.0421 3612 IPNAT - ok

22:21:57.0453 3612 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys

22:21:57.0484 3612 IRENUM - ok

22:21:57.0484 3612 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys

22:21:57.0515 3612 isapnp - ok

22:21:57.0546 3612 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

22:21:57.0624 3612 iScsiPrt - ok

22:21:57.0765 3612 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys

22:21:57.0796 3612 kbdclass - ok

22:21:57.0796 3612 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys

22:21:57.0827 3612 kbdhid - ok

22:21:57.0843 3612 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe

22:21:57.0858 3612 KeyIso - ok

22:21:57.0874 3612 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

22:21:57.0889 3612 KSecDD - ok

22:21:57.0905 3612 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

22:21:57.0921 3612 KSecPkg - ok

22:21:57.0936 3612 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys

22:21:57.0983 3612 ksthunk - ok

22:21:58.0014 3612 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll

22:21:58.0077 3612 KtmRm - ok

22:21:58.0123 3612 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll

22:21:58.0170 3612 LanmanServer - ok

22:21:58.0201 3612 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

22:21:58.0233 3612 LanmanWorkstation - ok

22:21:58.0295 3612 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

22:21:58.0389 3612 lltdio - ok

22:21:58.0404 3612 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll

22:21:58.0451 3612 lltdsvc - ok

22:21:58.0482 3612 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll

22:21:58.0529 3612 lmhosts - ok

22:21:58.0560 3612 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys

22:21:58.0591 3612 LSI_FC - ok

22:21:58.0591 3612 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys

22:21:58.0623 3612 LSI_SAS - ok

22:21:58.0623 3612 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys

22:21:58.0654 3612 LSI_SAS2 - ok

22:21:58.0654 3612 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys

22:21:58.0669 3612 LSI_SCSI - ok

22:21:58.0701 3612 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys

22:21:58.0747 3612 luafv - ok

22:21:58.0779 3612 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

22:21:58.0794 3612 Mcx2Svc - ok

22:21:58.0794 3612 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys

22:21:58.0825 3612 megasas - ok

22:21:58.0857 3612 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys

22:21:58.0950 3612 MegaSR - ok

22:21:58.0997 3612 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll

22:21:59.0075 3612 MMCSS - ok

22:21:59.0091 3612 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys

22:21:59.0137 3612 Modem - ok

22:21:59.0184 3612 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys

22:21:59.0184 3612 monitor - ok

22:21:59.0200 3612 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys

22:21:59.0215 3612 mouclass - ok

22:21:59.0231 3612 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys

22:21:59.0231 3612 mouhid - ok

22:21:59.0247 3612 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys

22:21:59.0247 3612 mountmgr - ok

22:21:59.0278 3612 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys

22:21:59.0309 3612 mpio - ok

22:21:59.0325 3612 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

22:21:59.0356 3612 mpsdrv - ok

22:21:59.0387 3612 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll

22:21:59.0449 3612 MpsSvc - ok

22:21:59.0465 3612 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

22:21:59.0496 3612 MRxDAV - ok

22:21:59.0527 3612 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

22:21:59.0559 3612 mrxsmb - ok

22:21:59.0590 3612 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

22:21:59.0621 3612 mrxsmb10 - ok

22:21:59.0668 3612 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

22:21:59.0668 3612 mrxsmb20 - ok

22:21:59.0683 3612 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys

22:21:59.0715 3612 msahci - ok

22:21:59.0715 3612 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys

22:21:59.0746 3612 msdsm - ok

22:21:59.0777 3612 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe

22:21:59.0808 3612 MSDTC - ok

22:21:59.0808 3612 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys

22:21:59.0871 3612 Msfs - ok

22:21:59.0886 3612 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

22:21:59.0933 3612 mshidkmdf - ok

22:21:59.0949 3612 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys

22:21:59.0949 3612 msisadrv - ok

22:21:59.0995 3612 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll

22:22:00.0058 3612 MSiSCSI - ok

22:22:00.0058 3612 msiserver - ok

22:22:00.0089 3612 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

22:22:00.0151 3612 MSKSSRV - ok

22:22:00.0167 3612 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

22:22:00.0198 3612 MSPCLOCK - ok

22:22:00.0214 3612 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

22:22:00.0261 3612 MSPQM - ok

22:22:00.0276 3612 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

22:22:00.0307 3612 MsRPC - ok

22:22:00.0323 3612 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys

22:22:00.0323 3612 mssmbios - ok

22:22:00.0323 3612 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

22:22:00.0385 3612 MSTEE - ok

22:22:00.0401 3612 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys

22:22:00.0417 3612 MTConfig - ok

22:22:00.0417 3612 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys

22:22:00.0432 3612 Mup - ok

22:22:00.0479 3612 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll

22:22:00.0573 3612 napagent - ok

22:22:00.0604 3612 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

22:22:00.0651 3612 NativeWifiP - ok

22:22:00.0697 3612 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys

22:22:00.0729 3612 NDIS - ok

22:22:00.0760 3612 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

22:22:00.0807 3612 NdisCap - ok

22:22:00.0838 3612 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

22:22:00.0869 3612 NdisTapi - ok

22:22:00.0900 3612 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

22:22:00.0931 3612 Ndisuio - ok

22:22:00.0947 3612 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

22:22:00.0994 3612 NdisWan - ok

22:22:01.0025 3612 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

22:22:01.0056 3612 NDProxy - ok

22:22:01.0072 3612 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

22:22:01.0119 3612 NetBIOS - ok

22:22:01.0150 3612 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys

22:22:01.0197 3612 NetBT - ok

22:22:01.0212 3612 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe

22:22:01.0228 3612 Netlogon - ok

22:22:01.0275 3612 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll

22:22:01.0306 3612 Netman - ok

22:22:01.0321 3612 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll

22:22:01.0431 3612 netprofm - ok

22:22:01.0477 3612 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

22:22:01.0711 3612 NetTcpPortSharing - ok

22:22:01.0711 3612 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys

22:22:01.0727 3612 nfrd960 - ok

22:22:01.0774 3612 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll

22:22:01.0789 3612 NlaSvc - ok

22:22:01.0789 3612 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys

22:22:01.0836 3612 Npfs - ok

22:22:01.0852 3612 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll

22:22:01.0899 3612 nsi - ok

22:22:01.0899 3612 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

22:22:01.0945 3612 nsiproxy - ok

22:22:01.0977 3612 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

22:22:02.0039 3612 Ntfs - ok

22:22:02.0055 3612 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys

22:22:02.0101 3612 Null - ok

22:22:02.0133 3612 [ A85B4F2EF3A7304A5399EF0526423040 ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x64.sys

22:22:02.0148 3612 NVENETFD - ok

22:22:02.0195 3612 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys

22:22:02.0257 3612 nvraid - ok

22:22:02.0289 3612 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys

22:22:02.0304 3612 nvstor - ok

22:22:02.0320 3612 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys

22:22:02.0351 3612 nv_agp - ok

22:22:02.0367 3612 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys

22:22:02.0398 3612 ohci1394 - ok

22:22:02.0445 3612 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll

22:22:02.0476 3612 p2pimsvc - ok

22:22:02.0523 3612 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll

22:22:02.0554 3612 p2psvc - ok

22:22:02.0569 3612 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys

22:22:02.0585 3612 Parport - ok

22:22:02.0616 3612 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys

22:22:02.0632 3612 partmgr - ok

22:22:02.0663 3612 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll

22:22:02.0694 3612 PcaSvc - ok

22:22:02.0710 3612 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys

22:22:02.0725 3612 pci - ok

22:22:02.0741 3612 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys

22:22:02.0757 3612 pciide - ok

22:22:02.0772 3612 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys

22:22:02.0897 3612 pcmcia - ok

22:22:02.0897 3612 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys

22:22:02.0913 3612 pcw - ok

22:22:02.0944 3612 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys

22:22:03.0006 3612 PEAUTH - ok

22:22:03.0100 3612 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe

22:22:03.0115 3612 PerfHost - ok

22:22:03.0178 3612 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll

22:22:03.0256 3612 pla - ok

22:22:03.0318 3612 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll

22:22:03.0381 3612 PlugPlay - ok

22:22:03.0396 3612 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll

22:22:03.0443 3612 PNRPAutoReg - ok

22:22:03.0474 3612 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll

22:22:03.0490 3612 PNRPsvc - ok

22:22:03.0521 3612 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

22:22:03.0583 3612 PolicyAgent - ok

22:22:03.0615 3612 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll

22:22:03.0661 3612 Power - ok

22:22:03.0708 3612 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

22:22:03.0771 3612 PptpMiniport - ok

22:22:03.0786 3612 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys

22:22:03.0817 3612 Processor - ok

22:22:03.0849 3612 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll

22:22:03.0911 3612 ProfSvc - ok

22:22:03.0927 3612 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe

22:22:03.0958 3612 ProtectedStorage - ok

22:22:03.0973 3612 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys

22:22:04.0036 3612 Psched - ok

22:22:04.0098 3612 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys

22:22:04.0161 3612 ql2300 - ok

22:22:04.0176 3612 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys

22:22:04.0207 3612 ql40xx - ok

22:22:04.0239 3612 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll

22:22:04.0270 3612 QWAVE - ok

22:22:04.0285 3612 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

22:22:04.0317 3612 QWAVEdrv - ok

22:22:04.0317 3612 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

22:22:04.0363 3612 RasAcd - ok

22:22:04.0395 3612 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

22:22:04.0441 3612 RasAgileVpn - ok

22:22:04.0457 3612 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll

22:22:04.0504 3612 RasAuto - ok

22:22:04.0519 3612 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

22:22:04.0566 3612 Rasl2tp - ok

22:22:04.0597 3612 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll

22:22:04.0644 3612 RasMan - ok

22:22:04.0644 3612 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

22:22:04.0691 3612 RasPppoe - ok

22:22:04.0722 3612 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

22:22:04.0769 3612 RasSstp - ok

22:22:04.0769 3612 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

22:22:04.0831 3612 rdbss - ok

22:22:04.0847 3612 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys

22:22:04.0878 3612 rdpbus - ok

22:22:04.0894 3612 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

22:22:04.0925 3612 RDPCDD - ok

22:22:04.0941 3612 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

22:22:04.0987 3612 RDPENCDD - ok

22:22:05.0003 3612 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

22:22:05.0034 3612 RDPREFMP - ok

22:22:05.0050 3612 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

22:22:05.0081 3612 RDPWD - ok

22:22:05.0112 3612 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys

22:22:05.0159 3612 rdyboost - ok

22:22:05.0206 3612 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll

22:22:05.0268 3612 RemoteAccess - ok

22:22:05.0284 3612 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll

22:22:05.0331 3612 RemoteRegistry - ok

22:22:05.0377 3612 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll

22:22:05.0424 3612 RpcEptMapper - ok

22:22:05.0455 3612 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe

22:22:05.0471 3612 RpcLocator - ok

22:22:05.0502 3612 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll

22:22:05.0533 3612 RpcSs - ok

22:22:05.0549 3612 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

22:22:05.0580 3612 rspndr - ok

22:22:05.0596 3612 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe

22:22:05.0611 3612 SamSs - ok

22:22:05.0611 3612 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys

22:22:05.0627 3612 sbp2port - ok

22:22:05.0658 3612 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll

22:22:05.0705 3612 SCardSvr - ok

22:22:05.0721 3612 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys

22:22:05.0767 3612 scfilter - ok

22:22:05.0799 3612 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll

22:22:05.0861 3612 Schedule - ok

22:22:05.0908 3612 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll

22:22:05.0986 3612 SCPolicySvc - ok

22:22:06.0017 3612 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll

22:22:06.0048 3612 SDRSVC - ok

22:22:06.0064 3612 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys

22:22:06.0126 3612 secdrv - ok

22:22:06.0142 3612 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll

22:22:06.0173 3612 seclogon - ok

22:22:06.0189 3612 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll

22:22:06.0235 3612 SENS - ok

22:22:06.0267 3612 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll

22:22:06.0298 3612 SensrSvc - ok

22:22:06.0329 3612 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys

22:22:06.0345 3612 Serenum - ok

22:22:06.0376 3612 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys

22:22:06.0407 3612 Serial - ok

22:22:06.0407 3612 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys

22:22:06.0423 3612 sermouse - ok

22:22:06.0454 3612 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll

22:22:06.0516 3612 SessionEnv - ok

22:22:06.0532 3612 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys

22:22:06.0563 3612 sffdisk - ok

22:22:06.0563 3612 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

22:22:06.0594 3612 sffp_mmc - ok

22:22:06.0594 3612 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

22:22:06.0625 3612 sffp_sd - ok

22:22:06.0641 3612 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys

22:22:06.0657 3612 sfloppy - ok

22:22:06.0688 3612 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll

22:22:06.0735 3612 SharedAccess - ok

22:22:06.0766 3612 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll

22:22:06.0813 3612 ShellHWDetection - ok

22:22:06.0813 3612 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys

22:22:06.0828 3612 SiSRaid2 - ok

22:22:06.0844 3612 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys

22:22:06.0859 3612 SiSRaid4 - ok

22:22:06.0891 3612 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys

22:22:06.0953 3612 Smb - ok

22:22:06.0984 3612 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe

22:22:07.0000 3612 SNMPTRAP - ok

22:22:07.0015 3612 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys

22:22:07.0031 3612 spldr - ok

22:22:07.0062 3612 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe

22:22:07.0093 3612 Spooler - ok

22:22:07.0171 3612 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe

22:22:07.0327 3612 sppsvc - ok

22:22:07.0343 3612 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll

22:22:07.0390 3612 sppuinotify - ok

22:22:07.0437 3612 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys

22:22:07.0452 3612 srv - ok

22:22:07.0483 3612 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

22:22:07.0515 3612 srv2 - ok

22:22:07.0530 3612 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

22:22:07.0546 3612 srvnet - ok

22:22:07.0577 3612 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

22:22:07.0624 3612 SSDPSRV - ok

22:22:07.0671 3612 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll

22:22:07.0702 3612 SstpSvc - ok

22:22:07.0717 3612 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys

22:22:07.0749 3612 stexstor - ok

22:22:07.0795 3612 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll

22:22:07.0842 3612 stisvc - ok

22:22:07.0858 3612 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys

22:22:07.0889 3612 swenum - ok

22:22:07.0905 3612 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll

22:22:07.0967 3612 swprv - ok

22:22:07.0998 3612 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll

22:22:08.0076 3612 SysMain - ok

22:22:08.0092 3612 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll

22:22:08.0107 3612 TabletInputService - ok

22:22:08.0139 3612 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll

22:22:08.0185 3612 TapiSrv - ok

22:22:08.0217 3612 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll

22:22:08.0248 3612 TBS - ok

22:22:08.0310 3612 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys

22:22:08.0404 3612 Tcpip - ok

22:22:08.0466 3612 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

22:22:08.0513 3612 TCPIP6 - ok

22:22:08.0544 3612 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

22:22:08.0560 3612 tcpipreg - ok

22:22:08.0575 3612 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys

22:22:08.0622 3612 TDPIPE - ok

22:22:08.0653 3612 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys

22:22:08.0669 3612 TDTCP - ok

22:22:08.0716 3612 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys

22:22:08.0747 3612 tdx - ok

22:22:08.0763 3612 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys

22:22:08.0778 3612 TermDD - ok

22:22:08.0809 3612 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll

22:22:08.0887 3612 TermService - ok

22:22:08.0919 3612 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll

22:22:08.0934 3612 Themes - ok

22:22:08.0950 3612 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll

22:22:08.0981 3612 THREADORDER - ok

22:22:09.0012 3612 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll

22:22:09.0059 3612 TrkWks - ok

22:22:09.0106 3612 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

22:22:09.0137 3612 TrustedInstaller - ok

22:22:09.0153 3612 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

22:22:09.0199 3612 tssecsrv - ok

22:22:09.0231 3612 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

22:22:09.0277 3612 TsUsbFlt - ok

22:22:09.0277 3612 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys

22:22:09.0293 3612 TsUsbGD - ok

22:22:09.0340 3612 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

22:22:09.0449 3612 tunnel - ok

22:22:09.0449 3612 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys

22:22:09.0480 3612 uagp35 - ok

22:22:09.0496 3612 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys

22:22:09.0574 3612 udfs - ok

22:22:09.0605 3612 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe

22:22:09.0636 3612 UI0Detect - ok

22:22:09.0652 3612 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

22:22:09.0667 3612 uliagpkx - ok

22:22:09.0699 3612 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys

22:22:09.0745 3612 umbus - ok

22:22:09.0745 3612 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys

22:22:09.0777 3612 UmPass - ok

22:22:09.0808 3612 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll

22:22:09.0870 3612 upnphost - ok

22:22:09.0901 3612 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

22:22:09.0979 3612 usbccgp - ok

22:22:10.0011 3612 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys

22:22:10.0057 3612 usbcir - ok

22:22:10.0073 3612 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys

22:22:10.0104 3612 usbehci - ok

22:22:10.0135 3612 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys

22:22:10.0182 3612 usbhub - ok

22:22:10.0198 3612 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys

22:22:10.0213 3612 usbohci - ok

22:22:10.0229 3612 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\drivers\usbprint.sys

22:22:10.0291 3612 usbprint - ok

22:22:10.0307 3612 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS

22:22:10.0369 3612 USBSTOR - ok

22:22:10.0401 3612 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys

22:22:10.0432 3612 usbuhci - ok

22:22:10.0463 3612 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll

22:22:10.0494 3612 UxSms - ok

22:22:10.0510 3612 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe

22:22:10.0525 3612 VaultSvc - ok

22:22:10.0541 3612 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

22:22:10.0557 3612 vdrvroot - ok

22:22:10.0603 3612 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe

22:22:10.0713 3612 vds - ok

22:22:10.0728 3612 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys

22:22:10.0744 3612 vga - ok

22:22:10.0775 3612 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys

22:22:10.0822 3612 VgaSave - ok

22:22:10.0837 3612 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys

22:22:10.0869 3612 vhdmp - ok

22:22:10.0884 3612 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys

22:22:10.0900 3612 viaide - ok

22:22:10.0915 3612 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys

22:22:10.0931 3612 volmgr - ok

22:22:10.0947 3612 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

22:22:10.0962 3612 volmgrx - ok

22:22:10.0993 3612 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys

22:22:11.0009 3612 volsnap - ok

22:22:11.0040 3612 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys

22:22:11.0056 3612 vsmraid - ok

22:22:11.0103 3612 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe

22:22:11.0212 3612 VSS - ok

22:22:11.0227 3612 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys

22:22:11.0259 3612 vwifibus - ok

22:22:11.0290 3612 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll

22:22:11.0337 3612 W32Time - ok

22:22:11.0352 3612 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys

22:22:11.0399 3612 WacomPen - ok

22:22:11.0415 3612 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys

22:22:11.0477 3612 WANARP - ok

22:22:11.0493 3612 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

22:22:11.0524 3612 Wanarpv6 - ok

22:22:11.0820 3612 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

22:22:12.0085 3612 WatAdminSvc - ok

22:22:12.0132 3612 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe

22:22:12.0210 3612 wbengine - ok

22:22:12.0226 3612 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll

22:22:12.0257 3612 WbioSrvc - ok

22:22:12.0273 3612 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll

22:22:12.0319 3612 wcncsvc - ok

22:22:12.0319 3612 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

22:22:12.0366 3612 WcsPlugInService - ok

22:22:12.0382 3612 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys

22:22:12.0397 3612 Wd - ok

22:22:12.0429 3612 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

22:22:12.0507 3612 Wdf01000 - ok

22:22:12.0553 3612 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll

22:22:12.0631 3612 WdiServiceHost - ok

22:22:12.0647 3612 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll

22:22:12.0663 3612 WdiSystemHost - ok

22:22:12.0694 3612 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll

22:22:12.0725 3612 WebClient - ok

22:22:12.0741 3612 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll

22:22:12.0787 3612 Wecsvc - ok

22:22:12.0803 3612 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll

22:22:12.0834 3612 wercplsupport - ok

22:22:12.0881 3612 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll

22:22:12.0912 3612 WerSvc - ok

22:22:12.0943 3612 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

22:22:12.0990 3612 WfpLwf - ok

22:22:13.0006 3612 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys

22:22:13.0021 3612 WIMMount - ok

22:22:13.0068 3612 WinDefend - ok

22:22:13.0084 3612 WinHttpAutoProxySvc - ok

22:22:13.0146 3612 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

22:22:13.0209 3612 Winmgmt - ok

22:22:13.0255 3612 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll

22:22:13.0396 3612 WinRM - ok

22:22:13.0443 3612 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll

22:22:13.0521 3612 Wlansvc - ok

22:22:13.0521 3612 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

22:22:13.0552 3612 WmiAcpi - ok

22:22:13.0583 3612 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

22:22:13.0614 3612 wmiApSrv - ok

22:22:13.0645 3612 WMPNetworkSvc - ok

22:22:13.0661 3612 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll

22:22:13.0692 3612 WPCSvc - ok

22:22:13.0708 3612 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

22:22:13.0723 3612 WPDBusEnum - ok

22:22:13.0739 3612 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

22:22:13.0786 3612 ws2ifsl - ok

22:22:13.0801 3612 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll

22:22:13.0833 3612 wscsvc - ok

22:22:13.0833 3612 WSearch - ok

22:22:13.0895 3612 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll

22:22:14.0004 3612 wuauserv - ok

22:22:14.0035 3612 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

22:22:14.0051 3612 WudfPf - ok

22:22:14.0082 3612 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

22:22:14.0098 3612 WUDFRd - ok

22:22:14.0129 3612 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

22:22:14.0176 3612 wudfsvc - ok

22:22:14.0207 3612 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll

22:22:14.0269 3612 WwanSvc - ok

22:22:14.0269 3612 ================ Scan global ===============================

22:22:14.0301 3612 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll

22:22:14.0332 3612 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll

22:22:14.0347 3612 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll

22:22:14.0363 3612 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll

22:22:14.0379 3612 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe

22:22:14.0394 3612 [Global] - ok

22:22:14.0394 3612 ================ Scan MBR ==================================

22:22:14.0394 3612 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0

22:22:14.0644 3612 \Device\Harddisk0\DR0 ( TDSS File System ) - warning

22:22:14.0644 3612 \Device\Harddisk0\DR0 - detected TDSS File System (1)

22:22:14.0644 3612 ================ Scan VBR ==================================

22:22:14.0659 3612 [ 4A23B09EFA81FD8105296EE8915D886A ] \Device\Harddisk0\DR0\Partition1

22:22:14.0659 3612 \Device\Harddisk0\DR0\Partition1 - ok

22:22:14.0691 3612 [ DA1ED0039D8E4071E58A9D12803A801E ] \Device\Harddisk0\DR0\Partition2

22:22:14.0691 3612 \Device\Harddisk0\DR0\Partition2 - ok

22:22:14.0706 3612 [ C1820B02365BF1EE8DDEF097A8042B4E ] \Device\Harddisk0\DR0\Partition3

22:22:14.0706 3612 \Device\Harddisk0\DR0\Partition3 - ok

22:22:14.0706 3612 ============================================================

22:22:14.0706 3612 Scan finished

22:22:14.0706 3612 ============================================================

22:22:14.0722 1088 Detected object count: 1

22:22:14.0722 1088 Actual detected object count: 1

22:22:27.0841 1088 \Device\Harddisk0\DR0\TDLFS\ph.dll - copied to quarantine

22:22:27.0841 1088 \Device\Harddisk0\DR0\TDLFS\phx.dll - copied to quarantine

22:22:27.0873 1088 \Device\Harddisk0\DR0\TDLFS\sub.dll - copied to quarantine

22:22:27.0888 1088 \Device\Harddisk0\DR0\TDLFS\subx.dll - copied to quarantine

22:22:27.0904 1088 \Device\Harddisk0\DR0\TDLFS\phd - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phdx - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phs - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phdata - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phld - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phln - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phlx - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS\phm - copied to quarantine

22:22:27.0951 1088 \Device\Harddisk0\DR0\TDLFS - deleted

22:22:27.0951 1088 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Delete

 

 

adware cleaner =

# AdwCleaner v2.301 - Logfile created 06/05/2013 at 22:25:13
# Updated 16/05/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : KITAandROY - KITAANDROY-PC
# Boot Mode : Normal
# Running from : C:\Users\KITAandROY\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3WI1AARK\AdwCleaner.exe
# Option [Search]

***** [Services] *****

***** [Files / Folders] *****

Folder Found : C:\Program Files (x86)\Common Files\AVG Secure Search

***** [Registry] *****

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16483

[OK] Registry is clean.

*************************

AdwCleaner[R1].txt - [4220 octets] - [08/05/2013 22:16:02]
AdwCleaner[R2].txt - [730 octets] - [05/06/2013 22:25:13]
AdwCleaner[S1].txt - [3320 octets] - [08/05/2013 22:16:38]

########## EOF - C:\AdwCleaner[R2].txt - [849 octets] ##########

 

 

Eset =

I will post as soon as its done. I wanted to get the other results up before the computer shuts itself down.



BC AdBot (Login to Remove)

 


#2 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 06 June 2013 - 01:28 AM

am I intruding... i'm sorry i'm just so lost! If I should post elsewhere please let me know... the eset scan gets to 25% then the computer dies has happened 2 times. i will try a third. the first time it blue screened me when I tried to restart saying fatal error memory dump...



#3 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 06 June 2013 - 09:34 AM

I split you to your own topic here,

http://www.bleepingcomputer.com/forums/t/497152/microsoft-essentials-shuts-down-computer/#entry3070717

Titled Microsoft Essentials shuts down computer

 

Lets see how it is after ESET


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 06 June 2013 - 12:56 PM

Try this if you cannot run ESET.

Please run the F-Secure Online Scanner
Follow the Instruction here for installation.
Accept the License Agreement.
Once the ActiveX installs,Click Full System Scan
Once the download completes, the scan will begin automatically.
The scan will take some time to finish, so please be patient.
When the scan completes, click the Automatic cleaning (recommended) button.
Click the Show Report button and Copy&Paste the entire report in your next reply.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 06 June 2013 - 04:39 PM

ok, Thank you!! I have been unsuccessfully frunning the eset since this morning. computer keeps shutting down at 25% and it takes a little over an hour to get it going again... I will run the f-secure now.



#6 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 06 June 2013 - 05:47 PM

ok i'm sorry i have tried to post this like 10 times but the computer won't stay on... f-secure found nothing. is there a log somewhere that I can post i don't see anything.  the computer has blue screened me 3 times 1 time I didn't see what it said and the other 2 times it said shutdown to prevent damage. after the f-secure I tried to run the eset again. the computer died but this time it said that the program has run before and that it will only scan necessary files. If I run the AVG it shuts down in the begining and then the computer will turn itself off 5 seconds after I turn it back on. over and over again each time getting a little further in the proccess until it starts. . . I don't know what to do next. Running a junkware removal or malwarebytes shuts the computer down. I just wanted to add that incase it helps...  



#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 06 June 2013 - 06:38 PM

Lets see if you can run Windows Repair (All In One), Check all the boxes.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 07 June 2013 - 11:10 PM

`


Edited by nlewis5, 08 June 2013 - 05:55 PM.


#9 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 07 June 2013 - 11:13 PM

`


Edited by nlewis5, 08 June 2013 - 05:55 PM.


#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 08 June 2013 - 10:07 AM

Did you try Un installing MSE ,rebooting and see how it runs.. Remember you have NO AV now so don't leave running more than 10 mins.

If it's better try installing Free Avast or Avira.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 08 June 2013 - 11:44 AM

Thanks! I will try that and let you know how it goes. I really apprechiate the help.



#12 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 08 June 2013 - 04:13 PM

I fixed it. Can you delete this entire thread please. I know it won't help anyone lol I was all over the place trying to fix this thing. THANK YOU for all of this help!!! Your Awesome!!! <3


Edited by nlewis5, 08 June 2013 - 06:02 PM.


#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 08 June 2013 - 08:12 PM

OK, glad it's working. Did you install an AV?
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#14 nlewis5

nlewis5
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:09:55 AM

Posted 09 June 2013 - 03:56 AM

I did! (sorry, just so excited it's working) I have Avira and I saw that you use comodo so I gave that a try... LOVE IT! :)  



#15 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,537 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:12:55 PM

Posted 10 June 2013 - 07:05 PM

Good choice I use that also.



Installing Comodo Firewall


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users