Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Another victim of InternetCorkBoard and public8media


  • Please log in to reply
12 replies to this topic

#1 lopezsaenz00

lopezsaenz00

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 29 July 2013 - 01:39 AM

I just noticed it a few days back.

I've been using the AdBlock add-on for Google Chrome for years and just realized some websites were full of "Ad not by this site" signs but i didn't noticed them because of the AdBlock, now I realize it's kind of a big deal and I'm not sure on how to get rid of it.

 

I use Avast free and of course it doesn't help to find the malware. 

I mostly use Google Chrome.

I don't get redirected if I use Google (Like in other similar cases I've read), but the random hyperlinks in normal text are everywhere.

I already search for help but I'm not sure if I should just follow another case.
The computer runs on WIndows 7 Home Premium 64Bit.

 

Thanks.



BC AdBot (Login to Remove)

 


#2 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 29 July 2013 - 08:26 AM

:welcome:

 

:step1: Install and run MBAM

:step2:  Running TDSSKiller to obtain log

 

Note: Don't cure or delete a threat, but choose skip for all instead.

  • Please download TDSSKiller from here and save it to your Desktop
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters

tds2.jpg

  • In the Additional options: Check Detect TDLFS file system
  • Click Start Scan and allow the scan process to run

tds4-1.jpg

  • Choose for all threats to Skip for all of them.
  • Click Continue
  • Please post the TDSSKiller.[Version]_[Date]_[Time]_log.txt found in your root directory (typically c:\)

===================================================

 

:step3: ESET Online Scanner

==================

Note: If your AV is blocking Eset online scanner, please temporarily disable your AV.

 

I'd like us to scan your machine with ESET OnlineScan This process may may take several hours, that is normal.

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and » UNCHECK "Remove found threats" <== Important
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Copy and paste the information in your next reply. (If no malware was found you will not be presented with a log).
  • Click the Back button.
  • Click the Finish button.

===================================================


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#3 lopezsaenz00

lopezsaenz00
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 29 July 2013 - 11:46 AM

Hi, thanks for the assistance.

Actually, last night I left Avast running a boot-up scan and it found some infected files and deleted them.

Right now I don't see any trace of the malware (the links and ads).
But I'm not sure if this got fixed completely.

Should I still run the MBAM, TDSKiller and ESET Online Scanner to be sure?



#4 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 29 July 2013 - 11:48 AM

Yes I would do these additional steps to be sure, but you also did a very good thing with Avast it's bootscan.  :thumbup2:


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#5 lopezsaenz00

lopezsaenz00
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 29 July 2013 - 12:04 PM

Just a quick question:

 

the note about  Don't cure or delete a threat, but choose skip for all instead.
 

Should I skip for all during the MBAM? or just in the TDSSKiller



#6 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 30 July 2013 - 02:55 AM

Just the TDSSKiller.


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#7 lopezsaenz00

lopezsaenz00
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 30 July 2013 - 03:42 AM

Here are the logs

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.29.05
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
LoLPEZ :: LOLPEZ-VAIO [administrator]
 
7/29/2013 12:26:14 PM
MBAM-log-2013-07-29 (14-51-04).txt
 
Scan type: Full scan (C:\|E:\|F:\|H:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 668391
Time elapsed: 2 hour(s), 23 minute(s), 25 second(s)
 
Memory Processes Detected: 2
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> 1196 -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> 4808 -> No action taken.
 
Memory Modules Detected: 1
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.dll (Adware.BProtector) -> No action taken.
 
Registry Keys Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.BrowserDefender.A) -> No action taken.
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (Adware.BProtector) -> Bad: (c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll) Good: () -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.BrowserDefender.A) -> Bad: (c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll) Good: () -> No action taken.
HKCR\regfile\shell\open\command| (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> No action taken.
 
Folders Detected: 5
C:\Users\LoLPEZ\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings (PUP.Optional.BrowserDefender.A) -> No action taken.
 
Files Detected: 51
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.dll (Adware.BProtector) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FR1U8ZKA\pack[1].7z (Adware.BProtector) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\nsc697F.tmp (PUP.Optional.AskToolbar) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX0\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX0\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX0\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX0\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX1\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX1\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX1\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX1\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX2\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX2\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX2\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX2\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX3\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX3\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX3\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX3\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX4\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX4\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX4\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX4\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX5\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX5\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX5\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX5\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX6\asneu.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX6\epic_eula.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX6\epic_pers.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Local\Temp\RarSFX6\epic_regs.dll (Trojan.Agent.ED) -> No action taken.
C:\Users\LoLPEZ\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.dll (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.settings (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension\bprotector.js (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 (PUP.Optional.BrowserDefender.A) -> No action taken.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 (PUP.Optional.BrowserDefender.A) -> No action taken.
 
(end)
 

 

 

 

 

 

 

 

 

 

 

 

20:22:28.0019 4844  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
20:22:30.0021 4844  ============================================================
20:22:30.0022 4844  Current date / time: 2013/07/29 20:22:30.0021
20:22:30.0022 4844  SystemInfo:
20:22:30.0022 4844  
20:22:30.0022 4844  OS Version: 6.1.7601 ServicePack: 1.0
20:22:30.0022 4844  Product type: Workstation
20:22:30.0022 4844  ComputerName: LOLPEZ-VAIO
20:22:30.0022 4844  UserName: LoLPEZ
20:22:30.0022 4844  Windows directory: C:\Windows
20:22:30.0022 4844  System windows directory: C:\Windows
20:22:30.0022 4844  Running under WOW64
20:22:30.0022 4844  Processor architecture: Intel x64
20:22:30.0022 4844  Number of processors: 2
20:22:30.0022 4844  Page size: 0x1000
20:22:30.0023 4844  Boot type: Normal boot
20:22:30.0023 4844  ============================================================
20:22:45.0252 4844  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:22:45.0316 4844  Drive \Device\Harddisk2\DR2 - Size: 0xEC180000 (3.69 Gb), SectorSize: 0x200, Cylinders: 0x1DFAE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x1, Type 'W'
20:22:45.0319 4844  Drive \Device\Harddisk3\DR3 - Size: 0xE8E0DB5A00 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
20:22:45.0699 4844  ============================================================
20:22:45.0699 4844  \Device\Harddisk0\DR0:
20:22:45.0719 4844  MBR partitions:
20:22:45.0719 4844  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xF3E000, BlocksNum 0x32000
20:22:45.0719 4844  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xF70000, BlocksNum 0x1B8482F0
20:22:45.0896 4844  \Device\Harddisk2\DR2:
20:22:45.0897 4844  MBR partitions:
20:22:45.0897 4844  \Device\Harddisk2\DR2\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0x760C00
20:22:45.0897 4844  \Device\Harddisk3\DR3:
20:22:45.0898 4844  MBR partitions:
20:22:45.0898 4844  \Device\Harddisk3\DR3\Partition1: MBR, Type 0xC, StartLBA 0x800, BlocksNum 0x747045AC
20:22:45.0898 4844  ============================================================
20:22:46.0198 4844  C: <-> \Device\Harddisk0\DR0\Partition2
20:22:46.0199 4844  H: <-> \Device\Harddisk3\DR3\Partition1
20:22:46.0200 4844  ============================================================
20:22:46.0200 4844  Initialize success
20:22:46.0200 4844  ============================================================
20:23:17.0754 7156  ============================================================
20:23:17.0754 7156  Scan started
20:23:17.0754 7156  Mode: Manual; TDLFS; 
20:23:17.0754 7156  ============================================================
20:23:36.0632 7156  ================ Scan system memory ========================
20:23:36.0632 7156  System memory - ok
20:23:36.0651 7156  ================ Scan services =============================
20:23:41.0915 7156  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
20:23:41.0926 7156  1394ohci - ok
20:23:42.0231 7156  [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon        C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
20:23:42.0237 7156  ACDaemon - ok
20:23:42.0630 7156  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
20:23:42.0645 7156  ACPI - ok
20:23:42.0731 7156  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
20:23:42.0786 7156  AcpiPmi - ok
20:23:43.0049 7156  [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:23:43.0075 7156  AdobeARMservice - ok
20:23:44.0285 7156  [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:23:44.0298 7156  AdobeFlashPlayerUpdateSvc - ok
20:23:44.0518 7156  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
20:23:44.0592 7156  adp94xx - ok
20:23:44.0759 7156  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
20:23:44.0789 7156  adpahci - ok
20:23:44.0920 7156  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
20:23:45.0075 7156  adpu320 - ok
20:23:45.0125 7156  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
20:23:45.0132 7156  AeLookupSvc - ok
20:23:45.0339 7156  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
20:23:45.0355 7156  AFD - ok
20:23:45.0482 7156  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
20:23:45.0549 7156  agp440 - ok
20:23:45.0661 7156  [ 95BC4330FA44240CA00C641A73C7E62D ] aksdf           C:\Windows\system32\drivers\aksdf.sys
20:23:45.0692 7156  aksdf - ok
20:23:45.0937 7156  [ E2E5CF34D6C56ACE5E986969A3D9B0B5 ] aksfridge       C:\Windows\system32\drivers\aksfridge.sys
20:23:45.0983 7156  aksfridge - ok
20:23:46.0391 7156  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
20:23:46.0449 7156  ALG - ok
20:23:46.0633 7156  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
20:23:46.0675 7156  aliide - ok
20:23:46.0831 7156  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
20:23:46.0952 7156  amdide - ok
20:23:47.0166 7156  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
20:23:47.0199 7156  AmdK8 - ok
20:23:47.0299 7156  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
20:23:47.0363 7156  AmdPPM - ok
20:23:47.0501 7156  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
20:23:47.0558 7156  amdsata - ok
20:23:47.0955 7156  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
20:23:47.0971 7156  amdsbs - ok
20:23:48.0068 7156  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
20:23:48.0069 7156  amdxata - ok
20:23:48.0197 7156  [ 56BD886820C4AEDF493CFCDF1CCFB004 ] ApfiltrService  C:\Windows\system32\DRIVERS\Apfiltr.sys
20:23:48.0200 7156  ApfiltrService - ok
20:23:48.0301 7156  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
20:23:48.0321 7156  AppID - ok
20:23:48.0420 7156  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
20:23:48.0440 7156  AppIDSvc - ok
20:23:48.0579 7156  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
20:23:48.0639 7156  Appinfo - ok
20:23:48.0781 7156  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
20:23:48.0802 7156  arc - ok
20:23:48.0916 7156  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
20:23:48.0965 7156  arcsas - ok
20:23:49.0072 7156  [ C130BC4A51B1382B2BE8E44579EC4C0A ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
20:23:49.0073 7156  ArcSoftKsUFilter - ok
20:23:49.0688 7156  [ 108FB6DDB69E537A2EA53F425363FAE5 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:23:49.0706 7156  aspnet_state - ok
20:23:49.0831 7156  [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk        C:\Windows\system32\drivers\aswFsBlk.sys
20:23:49.0832 7156  aswFsBlk - ok
20:23:50.0008 7156  [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
20:23:50.0009 7156  aswMonFlt - ok
20:23:50.0117 7156  [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr          C:\Windows\System32\Drivers\aswrdr2.sys
20:23:50.0118 7156  aswRdr - ok
20:23:50.0321 7156  [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
20:23:50.0322 7156  aswRvrt - ok
20:23:50.0632 7156  [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
20:23:50.0644 7156  aswSnx - ok
20:23:50.0713 7156  [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP           C:\Windows\system32\drivers\aswSP.sys
20:23:50.0716 7156  aswSP - ok
20:23:50.0794 7156  [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi          C:\Windows\system32\drivers\aswTdi.sys
20:23:50.0796 7156  aswTdi - ok
20:23:51.0157 7156  [ 22F521108881DC59837F6FC614E0568F ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
20:23:51.0175 7156  aswVmm - ok
20:23:51.0350 7156  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
20:23:51.0410 7156  AsyncMac - ok
20:23:51.0534 7156  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
20:23:51.0544 7156  atapi - ok
20:23:51.0912 7156  [ 5D4529AC4156E16BEDB01441AE0CF984 ] athr            C:\Windows\system32\DRIVERS\athrx.sys
20:23:51.0980 7156  athr - ok
20:23:53.0618 7156  [ DE0EDE41BC530F1759C6FFFCB8C7A0CF ] atikmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
20:23:53.0831 7156  atikmdag - ok
20:23:54.0039 7156  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:23:54.0084 7156  AudioEndpointBuilder - ok
20:23:54.0227 7156  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
20:23:54.0237 7156  AudioSrv - ok
20:23:54.0622 7156  [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
20:23:54.0623 7156  avast! Antivirus - ok
20:23:54.0859 7156  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
20:23:54.0884 7156  AxInstSV - ok
20:23:55.0129 7156  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
20:23:55.0223 7156  b06bdrv - ok
20:23:55.0451 7156  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
20:23:55.0513 7156  b57nd60a - ok
20:23:55.0709 7156  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
20:23:55.0764 7156  BDESVC - ok
20:23:55.0901 7156  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
20:23:55.0941 7156  Beep - ok
20:23:56.0376 7156  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
20:23:56.0444 7156  BFE - ok
20:23:56.0703 7156  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
20:23:56.0756 7156  BITS - ok
20:23:57.0174 7156  [ 686045905787B68D829CE647A6DFAD2B ] Blackberry Device Manager C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
20:23:57.0210 7156  Blackberry Device Manager - ok
20:23:57.0336 7156  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
20:23:57.0348 7156  blbdrive - ok
20:23:57.0473 7156  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
20:23:57.0495 7156  bowser - ok
20:23:57.0577 7156  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
20:23:57.0580 7156  BrFiltLo - ok
20:23:57.0616 7156  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
20:23:57.0627 7156  BrFiltUp - ok
20:23:57.0714 7156  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
20:23:57.0724 7156  Browser - ok
20:23:58.0739 7156  [ 013A330F16B1CECBDE5CB6F921689523 ] BrowserDefendert C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
20:23:58.0872 7156  BrowserDefendert - ok
20:23:58.0962 7156  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
20:23:59.0015 7156  Brserid - ok
20:23:59.0091 7156  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
20:23:59.0107 7156  BrSerWdm - ok
20:23:59.0192 7156  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
20:23:59.0203 7156  BrUsbMdm - ok
20:23:59.0230 7156  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
20:23:59.0236 7156  BrUsbSer - ok
20:23:59.0768 7156  [ 424BC9745D52CD5501214C01379378CA ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
20:23:59.0789 7156  BstHdAndroidSvc - ok
20:23:59.0944 7156  [ BFBE9220934B215AA46CDCBB6B6A1F73 ] BstHdDrv        C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
20:23:59.0946 7156  BstHdDrv - ok
20:24:00.0091 7156  [ 339F2B3DB5AD322DD507F26CA26D586E ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
20:24:00.0130 7156  BstHdLogRotatorSvc - ok
20:24:00.0301 7156  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
20:24:00.0369 7156  BthEnum - ok
20:24:00.0661 7156  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
20:24:00.0677 7156  BTHMODEM - ok
20:24:00.0760 7156  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
20:24:00.0774 7156  BthPan - ok
20:24:01.0002 7156  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
20:24:01.0068 7156  BTHPORT - ok
20:24:01.0158 7156  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
20:24:01.0259 7156  bthserv - ok
20:24:01.0306 7156  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
20:24:01.0319 7156  BTHUSB - ok
20:24:01.0430 7156  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
20:24:01.0443 7156  cdfs - ok
20:24:01.0612 7156  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
20:24:01.0656 7156  cdrom - ok
20:24:01.0789 7156  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
20:24:01.0841 7156  CertPropSvc - ok
20:24:01.0957 7156  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
20:24:01.0988 7156  circlass - ok
20:24:02.0129 7156  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
20:24:02.0174 7156  CLFS - ok
20:24:02.0841 7156  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:24:02.0872 7156  clr_optimization_v2.0.50727_32 - ok
20:24:03.0314 7156  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:24:03.0328 7156  clr_optimization_v2.0.50727_64 - ok
20:24:03.0869 7156  [ 6D7C8A951AF6AD6835C029B3CB88D333 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:24:05.0443 7156  clr_optimization_v4.0.30319_32 - ok
20:24:05.0553 7156  [ 86329C35FF23CFEF0FB6C0023BA06BCE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:24:06.0149 7156  clr_optimization_v4.0.30319_64 - ok
20:24:06.0301 7156  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
20:24:06.0348 7156  CmBatt - ok
20:24:06.0382 7156  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
20:24:06.0395 7156  cmdide - ok
20:24:06.0510 7156  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
20:24:06.0536 7156  CNG - ok
20:24:06.0691 7156  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
20:24:06.0692 7156  Compbatt - ok
20:24:06.0778 7156  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
20:24:06.0910 7156  CompositeBus - ok
20:24:06.0955 7156  COMSysApp - ok
20:24:11.0404 7156  [ F46FF007508C32788D8D5F32F27C25C7 ] CoordinatorServiceHost C:\Program Files (x86)\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
20:24:11.0418 7156  CoordinatorServiceHost - ok
20:24:11.0454 7156  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
20:24:11.0487 7156  crcdisk - ok
20:24:11.0623 7156  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
20:24:11.0639 7156  CryptSvc - ok
20:24:11.0827 7156  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
20:24:11.0859 7156  DcomLaunch - ok
20:24:12.0010 7156  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
20:24:12.0024 7156  defragsvc - ok
20:24:12.0153 7156  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
20:24:12.0179 7156  DfsC - ok
20:24:12.0639 7156  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
20:24:12.0708 7156  Dhcp - ok
20:24:12.0747 7156  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
20:24:12.0762 7156  discache - ok
20:24:12.0864 7156  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
20:24:12.0875 7156  Disk - ok
20:24:12.0942 7156  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
20:24:12.0960 7156  Dnscache - ok
20:24:13.0091 7156  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
20:24:13.0120 7156  dot3svc - ok
20:24:13.0226 7156  [ B42ED0320C6E41102FDE0005154849BB ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
20:24:13.0262 7156  Dot4 - ok
20:24:13.0428 7156  [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print       C:\Windows\system32\drivers\Dot4Prt.sys
20:24:13.0562 7156  Dot4Print - ok
20:24:13.0604 7156  [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
20:24:13.0668 7156  dot4usb - ok
20:24:13.0852 7156  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
20:24:13.0856 7156  DPS - ok
20:24:13.0998 7156  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
20:24:14.0010 7156  drmkaud - ok
20:24:14.0408 7156  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
20:24:14.0418 7156  DXGKrnl - ok
20:24:14.0528 7156  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
20:24:14.0560 7156  EapHost - ok
20:24:15.0393 7156  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
20:24:15.0521 7156  ebdrv - ok
20:24:15.0618 7156  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
20:24:15.0646 7156  EFS - ok
20:24:16.0062 7156  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
20:24:16.0149 7156  ehRecvr - ok
20:24:16.0248 7156  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
20:24:16.0437 7156  ehSched - ok
20:24:16.0613 7156  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
20:24:16.0657 7156  elxstor - ok
20:24:16.0726 7156  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
20:24:16.0827 7156  ErrDev - ok
20:24:17.0050 7156  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
20:24:17.0095 7156  EventSystem - ok
20:24:17.0207 7156  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
20:24:17.0255 7156  exfat - ok
20:24:17.0338 7156  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
20:24:17.0373 7156  fastfat - ok
20:24:17.0619 7156  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
20:24:17.0760 7156  Fax - ok
20:24:18.0222 7156  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
20:24:18.0258 7156  fdc - ok
20:24:18.0351 7156  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
20:24:18.0369 7156  fdPHost - ok
20:24:18.0443 7156  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
20:24:18.0456 7156  FDResPub - ok
20:24:18.0507 7156  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
20:24:18.0517 7156  FileInfo - ok
20:24:18.0562 7156  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
20:24:18.0577 7156  Filetrace - ok
20:24:19.0212 7156  [ 73081CF28F0AE20A52CA4F67CEE6E6B0 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
20:24:19.0381 7156  FLEXnet Licensing Service - ok
20:24:19.0468 7156  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
20:24:19.0477 7156  flpydisk - ok
20:24:19.0629 7156  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
20:24:19.0652 7156  FltMgr - ok
20:24:19.0997 7156  [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache       C:\Windows\system32\FntCache.dll
20:24:20.0055 7156  FontCache - ok
20:24:20.0180 7156  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:24:20.0190 7156  FontCache3.0.0.0 - ok
20:24:20.0268 7156  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
20:24:20.0334 7156  FsDepends - ok
20:24:20.0381 7156  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
20:24:20.0382 7156  Fs_Rec - ok
20:24:20.0568 7156  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
20:24:23.0349 7156  fvevol - ok
20:24:23.0432 7156  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
20:24:23.0442 7156  gagp30kx - ok
20:24:23.0644 7156  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
20:24:23.0676 7156  gpsvc - ok
20:24:24.0103 7156  [ 626A24ED1228580B9518C01930936DF9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:24:24.0113 7156  gupdate - ok
20:24:24.0260 7156  [ 626A24ED1228580B9518C01930936DF9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:24:24.0261 7156  gupdatem - ok
20:24:24.0462 7156  [ 78FAD9117E4527F2CA82259DA10F40BD ] hardlock        C:\Windows\system32\drivers\hardlock.sys
20:24:24.0487 7156  hardlock - ok
20:24:24.0546 7156  hasplms - ok
20:24:24.0665 7156  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
20:24:24.0701 7156  hcw85cir - ok
20:24:24.0855 7156  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:24:24.0921 7156  HdAudAddService - ok
20:24:24.0957 7156  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
20:24:24.0969 7156  HDAudBus - ok
20:24:25.0013 7156  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
20:24:25.0045 7156  HidBatt - ok
20:24:25.0140 7156  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
20:24:25.0179 7156  HidBth - ok
20:24:25.0260 7156  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
20:24:25.0282 7156  HidIr - ok
20:24:25.0328 7156  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
20:24:25.0337 7156  hidserv - ok
20:24:25.0460 7156  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
20:24:25.0515 7156  HidUsb - ok
20:24:25.0579 7156  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
20:24:25.0616 7156  hkmsvc - ok
20:24:25.0694 7156  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:24:25.0710 7156  HomeGroupListener - ok
20:24:25.0795 7156  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:24:25.0810 7156  HomeGroupProvider - ok
20:24:26.0185 7156  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
20:24:26.0195 7156  hpqcxs08 - ok
20:24:26.0308 7156  [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
20:24:26.0316 7156  hpqddsvc - ok
20:24:26.0395 7156  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
20:24:26.0418 7156  HpSAMD - ok
20:24:29.0127 7156  [ 447256D1C026654C5CD3CC17E7B20631 ] HsfXAudioService C:\Windows\SysWOW64\XAudio64.dll
20:24:29.0195 7156  HsfXAudioService - ok
20:24:29.0434 7156  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
20:24:29.0502 7156  HTTP - ok
20:24:29.0586 7156  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
20:24:29.0588 7156  hwpolicy - ok
20:24:29.0671 7156  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
20:24:29.0701 7156  i8042prt - ok
20:24:29.0866 7156  [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON        C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
20:24:29.0956 7156  IAANTMON - ok
20:24:30.0156 7156  [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
20:24:30.0162 7156  iaStor - ok
20:24:30.0327 7156  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
20:24:30.0422 7156  iaStorV - ok
20:24:30.0770 7156  [ 6F95324909B502E2651442C1548AB12F ] IDriverT        C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
20:24:30.0803 7156  IDriverT - ok
20:24:31.0015 7156  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:24:31.0161 7156  idsvc - ok
20:24:32.0091 7156  [ DFEAF0A1D98D397035012C8E28D1520F ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
20:24:32.0333 7156  igfx - ok
20:24:32.0378 7156  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
20:24:32.0399 7156  iirsp - ok
20:24:33.0137 7156  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
20:24:33.0167 7156  IKEEXT - ok
20:24:33.0556 7156  [ B16FC828CE7A76A8F1CE682E6EAD2627 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
20:24:33.0577 7156  IntcAzAudAddService - ok
20:24:33.0723 7156  [ 88A20FA54C73DED4E8DAC764E9130AE9 ] IntcHdmiAddService C:\Windows\system32\drivers\IntcHdmi.sys
20:24:33.0766 7156  IntcHdmiAddService - ok
20:24:33.0841 7156  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
20:24:33.0856 7156  intelide - ok
20:24:33.0972 7156  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
20:24:33.0974 7156  intelppm - ok
20:24:34.0009 7156  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
20:24:34.0030 7156  IPBusEnum - ok
20:24:34.0097 7156  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:24:34.0162 7156  IpFilterDriver - ok
20:24:34.0263 7156  [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
20:24:34.0305 7156  iphlpsvc - ok
20:24:34.0363 7156  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
20:24:34.0459 7156  IPMIDRV - ok
20:24:34.0530 7156  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
20:24:34.0561 7156  IPNAT - ok
20:24:34.0648 7156  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
20:24:34.0667 7156  IRENUM - ok
20:24:34.0717 7156  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
20:24:34.0734 7156  isapnp - ok
20:24:34.0832 7156  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
20:24:34.0957 7156  iScsiPrt - ok
20:24:35.0151 7156  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
20:24:35.0152 7156  kbdclass - ok
20:24:35.0327 7156  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
20:24:35.0337 7156  kbdhid - ok
20:24:35.0360 7156  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
20:24:35.0365 7156  KeyIso - ok
20:24:35.0406 7156  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
20:24:35.0427 7156  KSecDD - ok
20:24:35.0532 7156  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
20:24:35.0549 7156  KSecPkg - ok
20:24:35.0638 7156  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
20:24:35.0660 7156  ksthunk - ok
20:24:35.0734 7156  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
20:24:35.0772 7156  KtmRm - ok
20:24:35.0938 7156  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
20:24:35.0961 7156  LanmanServer - ok
20:24:36.0080 7156  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:24:36.0126 7156  LanmanWorkstation - ok
20:24:36.0235 7156  [ 458ED3DAE4A8FF4AD350EAE1464CF65F ] libusb0         C:\Windows\system32\DRIVERS\libusb0.sys
20:24:36.0324 7156  libusb0 - ok
20:24:36.0484 7156  [ 20CDB07017497C94A0BAD253C4BAFCBC ] LkCitadelServer C:\Windows\SysWOW64\lkcitdl.exe
20:24:36.0561 7156  LkCitadelServer - ok
20:24:36.0705 7156  [ C373079F8D6A3543FAADB96C874CF06B ] lkClassAds      C:\Windows\SysWOW64\lkads.exe
20:24:36.0719 7156  lkClassAds - ok
20:24:36.0773 7156  [ ED1C2F1B9B7DEDEE5C6287211AC4422E ] lkTimeSync      C:\Windows\SysWOW64\lktsrv.exe
20:24:36.0813 7156  lkTimeSync - ok
20:24:36.0946 7156  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
20:24:37.0024 7156  lltdio - ok
20:24:37.0149 7156  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
20:24:37.0169 7156  lltdsvc - ok
20:24:37.0203 7156  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
20:24:37.0230 7156  lmhosts - ok
20:24:37.0272 7156  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
20:24:37.0275 7156  LSI_FC - ok
20:24:37.0340 7156  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
20:24:37.0370 7156  LSI_SAS - ok
20:24:37.0511 7156  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
20:24:37.0656 7156  LSI_SAS2 - ok
20:24:37.0791 7156  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
20:24:37.0841 7156  LSI_SCSI - ok
20:24:37.0906 7156  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
20:24:37.0920 7156  luafv - ok
20:24:38.0107 7156  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
20:24:38.0176 7156  Mcx2Svc - ok
20:24:38.0240 7156  [ E4F44EC214B3E381E1FC844A02926666 ] mdmxsdk         C:\Windows\system32\DRIVERS\mdmxsdk.sys
20:24:38.0302 7156  mdmxsdk - ok
20:24:38.0377 7156  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
20:24:38.0419 7156  megasas - ok
20:24:38.0538 7156  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
20:24:38.0595 7156  MegaSR - ok
20:24:38.0840 7156  [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
20:24:38.0872 7156  Microsoft Office Groove Audit Service - ok
20:24:38.0969 7156  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
20:24:38.0989 7156  MMCSS - ok
20:24:39.0037 7156  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
20:24:39.0054 7156  Modem - ok
20:24:39.0108 7156  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
20:24:39.0109 7156  monitor - ok
20:24:39.0168 7156  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
20:24:39.0170 7156  mouclass - ok
20:24:39.0274 7156  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
20:24:39.0275 7156  mouhid - ok
20:24:39.0325 7156  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
20:24:39.0343 7156  mountmgr - ok
20:24:39.0413 7156  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
20:24:39.0447 7156  mpio - ok
20:24:39.0499 7156  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
20:24:39.0522 7156  mpsdrv - ok
20:24:39.0740 7156  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
20:24:39.0802 7156  MpsSvc - ok
20:24:39.0879 7156  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
20:24:39.0896 7156  MRxDAV - ok
20:24:39.0950 7156  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
20:24:39.0966 7156  mrxsmb - ok
20:24:40.0018 7156  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:24:40.0036 7156  mrxsmb10 - ok
20:24:40.0100 7156  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:24:40.0110 7156  mrxsmb20 - ok
20:24:40.0185 7156  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
20:24:40.0202 7156  msahci - ok
20:24:40.0229 7156  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
20:24:40.0259 7156  msdsm - ok
20:24:40.0280 7156  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
20:24:40.0291 7156  MSDTC - ok
20:24:40.0383 7156  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
20:24:40.0386 7156  Msfs - ok
20:24:40.0462 7156  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
20:24:40.0483 7156  mshidkmdf - ok
20:24:40.0534 7156  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
20:24:40.0535 7156  msisadrv - ok
20:24:40.0636 7156  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
20:24:40.0714 7156  MSiSCSI - ok
20:24:40.0721 7156  msiserver - ok
20:24:40.0821 7156  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
20:24:40.0839 7156  MSKSSRV - ok
20:24:40.0864 7156  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
20:24:40.0867 7156  MSPCLOCK - ok
20:24:40.0969 7156  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
20:24:40.0990 7156  MSPQM - ok
20:24:41.0061 7156  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
20:24:41.0079 7156  MsRPC - ok
20:24:41.0150 7156  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
20:24:41.0151 7156  mssmbios - ok
20:24:41.0265 7156  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
20:24:41.0286 7156  MSTEE - ok
20:24:41.0335 7156  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
20:24:41.0354 7156  MTConfig - ok
20:24:41.0450 7156  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
20:24:41.0452 7156  Mup - ok
20:24:41.0572 7156  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
20:24:41.0639 7156  napagent - ok
20:24:41.0778 7156  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
20:24:41.0785 7156  NativeWifiP - ok
20:24:41.0989 7156  [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS            C:\Windows\system32\drivers\ndis.sys
20:24:42.0054 7156  NDIS - ok
20:24:42.0149 7156  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
20:24:42.0151 7156  NdisCap - ok
20:24:42.0204 7156  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
20:24:42.0206 7156  NdisTapi - ok
20:24:42.0274 7156  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
20:24:42.0291 7156  Ndisuio - ok
20:24:42.0340 7156  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
20:24:42.0353 7156  NdisWan - ok
20:24:42.0415 7156  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
20:24:42.0436 7156  NDProxy - ok
20:24:42.0535 7156  [ D5AC41AE382738483FAFFBD7E373D49A ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
20:24:42.0553 7156  Net Driver HPZ12 - ok
20:24:42.0587 7156  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
20:24:42.0620 7156  NetBIOS - ok
20:24:42.0688 7156  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
20:24:42.0718 7156  NetBT - ok
20:24:42.0751 7156  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
20:24:42.0757 7156  Netlogon - ok
20:24:42.0853 7156  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
20:24:42.0872 7156  Netman - ok
20:24:43.0148 7156  [ E8B9164DA7701C1E595647C3A3AFA766 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:24:43.0186 7156  NetMsmqActivator - ok
20:24:43.0247 7156  [ E8B9164DA7701C1E595647C3A3AFA766 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:24:43.0249 7156  NetPipeActivator - ok
20:24:43.0333 7156  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
20:24:43.0360 7156  netprofm - ok
20:24:43.0409 7156  [ E8B9164DA7701C1E595647C3A3AFA766 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:24:43.0413 7156  NetTcpActivator - ok
20:24:43.0432 7156  [ E8B9164DA7701C1E595647C3A3AFA766 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:24:43.0435 7156  NetTcpPortSharing - ok
20:24:44.0428 7156  [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64        C:\Windows\system32\DRIVERS\netw5v64.sys
20:24:44.0580 7156  netw5v64 - ok
20:24:44.0673 7156  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
20:24:44.0698 7156  nfrd960 - ok
20:24:44.0951 7156  [ A36307747E7BB2DC015F9FE4350A4A08 ] NIDomainService C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
20:24:44.0976 7156  NIDomainService - ok
20:24:45.0329 7156  [ B17093B9A2C5F874975C732C1A8BA771 ] NILM License Manager C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe
20:24:45.0401 7156  NILM License Manager - ok
20:24:45.0577 7156  niSvcLoc - ok
20:24:45.0698 7156  [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc          C:\Windows\System32\nlasvc.dll
20:24:45.0755 7156  NlaSvc - ok
20:24:45.0839 7156  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
20:24:45.0851 7156  Npfs - ok
20:24:45.0891 7156  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
20:24:45.0916 7156  nsi - ok
20:24:45.0944 7156  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
20:24:45.0959 7156  nsiproxy - ok
20:24:46.0151 7156  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
20:24:46.0213 7156  Ntfs - ok
20:24:46.0291 7156  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
20:24:46.0302 7156  Null - ok
20:24:46.0432 7156  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
20:24:46.0492 7156  nvraid - ok
20:24:46.0603 7156  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
20:24:46.0631 7156  nvstor - ok
20:24:46.0703 7156  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
20:24:46.0797 7156  nv_agp - ok
20:24:47.0033 7156  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:24:47.0043 7156  odserv - ok
20:24:47.0095 7156  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
20:24:47.0147 7156  ohci1394 - ok
20:24:47.0330 7156  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:24:47.0339 7156  ose - ok
20:24:48.0383 7156  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
20:24:48.0518 7156  osppsvc - ok
20:24:48.0640 7156  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
20:24:48.0671 7156  p2pimsvc - ok
20:24:48.0792 7156  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
20:24:48.0830 7156  p2psvc - ok
20:24:48.0921 7156  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
20:24:48.0930 7156  Parport - ok
20:24:48.0987 7156  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
20:24:48.0995 7156  partmgr - ok
20:24:49.0044 7156  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
20:24:49.0077 7156  PcaSvc - ok
20:24:49.0168 7156  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
20:24:49.0177 7156  pci - ok
20:24:49.0236 7156  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
20:24:49.0271 7156  pciide - ok
20:24:49.0332 7156  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
20:24:49.0428 7156  pcmcia - ok
20:24:49.0466 7156  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
20:24:49.0467 7156  pcw - ok
20:24:49.0605 7156  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
20:24:49.0639 7156  PEAUTH - ok
20:24:49.0701 7156  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
20:24:49.0716 7156  PerfHost - ok
20:24:49.0928 7156  [ 7957D9A927D1493E9F35A91724FE0F82 ] Pharos Systems ComTaskMaster C:\PROGRA~2\PHAROS~1\Core\CTskMstr.exe
20:24:49.0945 7156  Pharos Systems ComTaskMaster - ok
20:24:50.0080 7156  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
20:24:50.0153 7156  pla - ok
20:24:50.0328 7156  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
20:24:50.0355 7156  PlugPlay - ok
20:24:50.0471 7156  [ 37F6046CDC630442D7DC087501FF6FC6 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
20:24:50.0526 7156  Pml Driver HPZ12 - ok
20:24:50.0560 7156  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
20:24:50.0609 7156  PNRPAutoReg - ok
20:24:50.0730 7156  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
20:24:50.0755 7156  PNRPsvc - ok
20:24:50.0846 7156  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
20:24:50.0896 7156  PolicyAgent - ok
20:24:50.0987 7156  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
20:24:50.0997 7156  Power - ok
20:24:51.0174 7156  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
20:24:51.0178 7156  PptpMiniport - ok
20:24:51.0215 7156  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
20:24:51.0239 7156  Processor - ok
20:24:51.0343 7156  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
20:24:51.0411 7156  ProfSvc - ok
20:24:51.0429 7156  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
20:24:51.0432 7156  ProtectedStorage - ok
20:24:51.0548 7156  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
20:24:51.0552 7156  Psched - ok
20:24:51.0671 7156  [ AED797CCA02783296C68AA10D0CFF8A9 ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
20:24:51.0672 7156  PxHlpa64 - ok
20:24:52.0018 7156  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
20:24:52.0100 7156  ql2300 - ok
20:24:52.0168 7156  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
20:24:52.0184 7156  ql40xx - ok
20:24:52.0289 7156  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
20:24:52.0346 7156  QWAVE - ok
20:24:52.0432 7156  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
20:24:52.0473 7156  QWAVEdrv - ok
20:24:52.0528 7156  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
20:24:52.0549 7156  RasAcd - ok
20:24:52.0625 7156  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
20:24:52.0680 7156  RasAgileVpn - ok
20:24:52.0781 7156  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
20:24:52.0795 7156  RasAuto - ok
20:24:52.0888 7156  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
20:24:52.0934 7156  Rasl2tp - ok
20:24:53.0039 7156  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
20:24:53.0126 7156  RasMan - ok
20:24:53.0217 7156  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
20:24:53.0247 7156  RasPppoe - ok
20:24:53.0334 7156  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
20:24:53.0360 7156  RasSstp - ok
20:24:53.0486 7156  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
20:24:53.0530 7156  rdbss - ok
20:24:53.0584 7156  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
20:24:53.0607 7156  rdpbus - ok
20:24:53.0667 7156  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
20:24:53.0715 7156  RDPCDD - ok
20:24:53.0838 7156  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
20:24:53.0899 7156  RDPENCDD - ok
20:24:53.0941 7156  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
20:24:53.0983 7156  RDPREFMP - ok
20:24:54.0074 7156  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
20:24:54.0182 7156  RDPWD - ok
20:24:54.0387 7156  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
20:24:54.0426 7156  rdyboost - ok
20:24:54.0501 7156  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
20:24:54.0564 7156  RemoteAccess - ok
20:24:54.0660 7156  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
20:24:54.0715 7156  RemoteRegistry - ok
20:24:54.0900 7156  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
20:24:55.0012 7156  RFCOMM - ok
20:24:55.0243 7156  [ 258AADB43E3F3468B5CF8CB0F84872C2 ] rimsptsk        C:\Windows\system32\DRIVERS\rimssn64.sys
20:24:55.0321 7156  rimsptsk - ok
20:24:55.0497 7156  [ 6D850FAD4CC9498D1F382B77BA4035CC ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
20:24:55.0608 7156  RimUsb - ok
20:24:55.0735 7156  [ 344604E6913BD6E4EAEC34AF2E0943D7 ] RimVSerPort     C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
20:24:55.0772 7156  RimVSerPort - ok
20:24:55.0911 7156  [ 71E182A0DE1CECB3F912960716345405 ] risdptsk        C:\Windows\system32\DRIVERS\risdsn64.sys
20:24:55.0984 7156  risdptsk - ok
20:24:56.0130 7156  [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM       C:\Windows\system32\Drivers\RootMdm.sys
20:24:56.0152 7156  ROOTMODEM - ok
20:24:56.0372 7156  [ D02E5A46F77C182CA1964080BCD586F7 ] Roxio UPnP Renderer 10 C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
20:24:56.0397 7156  Roxio UPnP Renderer 10 - ok
20:24:56.0487 7156  [ E5809597278802D09273EE07B5FC56E1 ] Roxio Upnp Server 10 C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
20:24:56.0494 7156  Roxio Upnp Server 10 - ok
20:24:56.0590 7156  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
20:24:56.0601 7156  RpcEptMapper - ok
20:24:56.0677 7156  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
20:24:56.0694 7156  RpcLocator - ok
20:24:56.0776 7156  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
20:24:56.0783 7156  RpcSs - ok
20:24:56.0814 7156  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
20:24:56.0829 7156  rspndr - ok
20:24:56.0926 7156  [ 34F05C417F038FFA3BEF69B798D7D7DD ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
20:24:56.0962 7156  RTHDMIAzAudService - ok
20:24:57.0083 7156  [ 01E6A1E53E39A0B1E2B6AE62BF52E8EC ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
20:24:57.0090 7156  RtkAudioService - ok
20:24:57.0217 7156  [ 9A5FB8DE6567BC86FCCDE2F0336857A3 ] SampleCollector C:\Program Files\Sony\VAIO Care\collsvc.exe
20:24:57.0306 7156  SampleCollector - ok
20:24:57.0320 7156  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
20:24:57.0325 7156  SamSs - ok
20:24:57.0372 7156  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
20:24:57.0385 7156  sbp2port - ok
20:24:57.0450 7156  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
20:24:57.0481 7156  SCardSvr - ok
20:24:57.0535 7156  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
20:24:57.0574 7156  scfilter - ok
20:24:57.0860 7156  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
20:24:57.0927 7156  Schedule - ok
20:24:58.0009 7156  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
20:24:58.0011 7156  SCPolicySvc - ok
20:24:58.0073 7156  [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus           C:\Windows\system32\drivers\sdbus.sys
20:24:58.0101 7156  sdbus - ok
20:24:58.0170 7156  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
20:24:58.0192 7156  SDRSVC - ok
20:24:58.0276 7156  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
20:24:58.0277 7156  secdrv - ok
20:24:58.0342 7156  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
20:24:58.0358 7156  seclogon - ok
20:24:58.0388 7156  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
20:24:58.0398 7156  SENS - ok
20:24:58.0526 7156  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
20:24:58.0530 7156  SensrSvc - ok
20:24:58.0609 7156  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
20:24:58.0638 7156  Serenum - ok
20:24:58.0696 7156  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
20:24:58.0711 7156  Serial - ok
20:24:58.0859 7156  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
20:24:58.0888 7156  sermouse - ok
20:24:58.0959 7156  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
20:24:58.0967 7156  SessionEnv - ok
20:24:59.0038 7156  [ 70F9C476B62DE4F2823E918A6C181ADE ] SFEP            C:\Windows\system32\DRIVERS\SFEP.sys
20:24:59.0053 7156  SFEP - ok
20:24:59.0106 7156  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
20:24:59.0145 7156  sffdisk - ok
20:24:59.0175 7156  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
20:24:59.0236 7156  sffp_mmc - ok
20:24:59.0264 7156  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
20:24:59.0277 7156  sffp_sd - ok
20:24:59.0377 7156  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
20:24:59.0395 7156  sfloppy - ok
20:24:59.0499 7156  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
20:24:59.0518 7156  SharedAccess - ok
20:24:59.0607 7156  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:24:59.0649 7156  ShellHWDetection - ok
20:24:59.0708 7156  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
20:24:59.0760 7156  SiSRaid2 - ok
20:24:59.0819 7156  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
20:24:59.0840 7156  SiSRaid4 - ok
20:24:59.0962 7156  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
20:24:59.0986 7156  Smb - ok
20:25:00.0138 7156  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
20:25:00.0182 7156  SNMPTRAP - ok
20:25:00.0427 7156  [ 98886C88A1CB13D61672AE2C638B7E1C ] SOHCImp         C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
20:25:00.0604 7156  SOHCImp - ok
20:25:00.0662 7156  [ 442A13F395546F4564C377296D43B564 ] SOHDBSvr        C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
20:25:00.0689 7156  SOHDBSvr - ok
20:25:00.0866 7156  [ 556681BE668D71DC162391A45422B52C ] SOHDms          C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
20:25:00.0973 7156  SOHDms - ok
20:25:00.0987 7156  [ 72B46103E4111439109ACF5882627C24 ] SOHDs           C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
20:25:01.0000 7156  SOHDs - ok
20:25:01.0082 7156  [ 725B6E9CD1959271AC993DC035E1606D ] SOHPlMgr        C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
20:25:01.0136 7156  SOHPlMgr - ok
20:25:01.0361 7156  [ 4945020BC094C322571184A6E8056B3A ] SolidWorks Licensing Service C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
20:25:01.0408 7156  SolidWorks Licensing Service - ok
20:25:01.0472 7156  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
20:25:01.0474 7156  spldr - ok
20:25:01.0664 7156  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
20:25:01.0700 7156  Spooler - ok
20:25:02.0412 7156  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
20:25:02.0533 7156  sppsvc - ok
20:25:02.0602 7156  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
20:25:02.0664 7156  sppuinotify - ok
20:25:02.0850 7156  [ D6AB7C13FCDD2E4CAC35244D2C172D9A ] sptd            C:\Windows\System32\Drivers\sptd.sys
20:25:02.0906 7156  sptd - ok
20:25:03.0089 7156  [ EAD5300C93946B0250A309E2BF2BE4CF ] SQLWriter       C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
20:25:03.0130 7156  SQLWriter - ok
20:25:03.0332 7156  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
20:25:03.0418 7156  srv - ok
20:25:03.0617 7156  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
20:25:03.0693 7156  srv2 - ok
20:25:03.0782 7156  [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA       C:\Windows\system32\DRIVERS\VSTAZL6.SYS
20:25:03.0830 7156  SrvHsfHDA - ok
20:25:04.0123 7156  [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92       C:\Windows\system32\DRIVERS\VSTDPV6.SYS
20:25:04.0168 7156  SrvHsfV92 - ok
20:25:04.0300 7156  [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac     C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
20:25:04.0346 7156  SrvHsfWinac - ok
20:25:04.0409 7156  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
20:25:04.0708 7156  srvnet - ok
20:25:04.0787 7156  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
20:25:04.0810 7156  SSDPSRV - ok
20:25:04.0869 7156  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
20:25:04.0908 7156  SstpSvc - ok
20:25:04.0942 7156  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
20:25:04.0956 7156  stexstor - ok
20:25:05.0087 7156  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
20:25:05.0121 7156  stisvc - ok
20:25:05.0175 7156  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
20:25:05.0177 7156  swenum - ok
20:25:05.0272 7156  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
20:25:05.0293 7156  swprv - ok
20:25:05.0521 7156  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
20:25:05.0593 7156  SysMain - ok
20:25:05.0647 7156  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:25:05.0654 7156  TabletInputService - ok
20:25:05.0687 7156  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
20:25:05.0710 7156  TapiSrv - ok
20:25:05.0790 7156  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
20:25:05.0813 7156  TBS - ok
20:25:06.0222 7156  [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
20:25:06.0338 7156  Tcpip - ok
20:25:06.0913 7156  [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
20:25:06.0925 7156  TCPIP6 - ok
20:25:07.0022 7156  [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
20:25:07.0049 7156  tcpipreg - ok
20:25:07.0137 7156  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
20:25:07.0208 7156  TDPIPE - ok
20:25:07.0264 7156  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
20:25:07.0330 7156  TDTCP - ok
20:25:07.0453 7156  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
20:25:07.0463 7156  tdx - ok
20:25:07.0529 7156  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
20:25:07.0531 7156  TermDD - ok
20:25:07.0614 7156  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
20:25:07.0647 7156  TermService - ok
20:25:07.0736 7156  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
20:25:07.0755 7156  Themes - ok
20:25:07.0816 7156  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
20:25:07.0819 7156  THREADORDER - ok
20:25:07.0894 7156  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
20:25:07.0912 7156  TrkWks - ok
20:25:08.0032 7156  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:25:08.0047 7156  TrustedInstaller - ok
20:25:08.0165 7156  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
20:25:08.0239 7156  tssecsrv - ok
20:25:08.0456 7156  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
20:25:08.0624 7156  TsUsbFlt - ok
20:25:08.0729 7156  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
20:25:08.0766 7156  tunnel - ok
20:25:08.0805 7156  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
20:25:08.0841 7156  uagp35 - ok
20:25:08.0920 7156  [ 63F6D08C54D5B3C1B12A6172032055C7 ] uCamMonitor     C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
20:25:08.0942 7156  uCamMonitor - ok
20:25:09.0080 7156  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
20:25:09.0144 7156  udfs - ok
20:25:09.0195 7156  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
20:25:09.0215 7156  UI0Detect - ok
20:25:09.0282 7156  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
20:25:09.0299 7156  uliagpkx - ok
20:25:09.0386 7156  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\drivers\umbus.sys
20:25:09.0404 7156  umbus - ok
20:25:09.0450 7156  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
20:25:09.0480 7156  UmPass - ok
20:25:09.0546 7156  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
20:25:09.0567 7156  upnphost - ok
20:25:09.0684 7156  [ AA33FC47ED58C34E6E9261E4F850B7EB ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
20:25:09.0705 7156  USBAAPL64 - ok
20:25:09.0852 7156  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
20:25:09.0872 7156  usbaudio - ok
20:25:09.0924 7156  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
20:25:09.0943 7156  usbccgp - ok
20:25:10.0051 7156  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
20:25:10.0077 7156  usbcir - ok
20:25:10.0111 7156  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
20:25:10.0129 7156  usbehci - ok
20:25:10.0238 7156  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
20:25:10.0279 7156  usbhub - ok
20:25:10.0306 7156  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
20:25:10.0320 7156  usbohci - ok
20:25:10.0385 7156  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
20:25:10.0403 7156  usbprint - ok
20:25:10.0477 7156  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
20:25:10.0503 7156  usbscan - ok
20:25:10.0531 7156  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:25:10.0548 7156  USBSTOR - ok
20:25:10.0618 7156  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
20:25:10.0639 7156  usbuhci - ok
20:25:10.0789 7156  [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
20:25:10.0815 7156  usbvideo - ok
20:25:10.0878 7156  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
20:25:10.0891 7156  UxSms - ok
20:25:11.0093 7156  [ 4E7135D6D0127067E4CFEE12259F895D ] VAIO Entertainment TV Device Arbitration Service C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
20:25:11.0155 7156  VAIO Entertainment TV Device Arbitration Service - ok
20:25:11.0259 7156  [ D4197CF0C8567046FD4AF28FF47AF528 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
20:25:11.0292 7156  VAIO Event Service - ok
20:25:11.0959 7156  [ 2D6605C1F0BBD0F71A4CB3A5B1E07240 ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe
20:25:11.0965 7156  VAIO Power Management - ok
20:25:11.0987 7156  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
20:25:11.0990 7156  VaultSvc - ok
20:25:12.0127 7156  [ DE838737831298F5D8EE10B7BF39ABBC ] VBoxDrv         C:\Windows\system32\DRIVERS\VBoxDrv.sys
20:25:12.0131 7156  VBoxDrv - ok
20:25:12.0261 7156  [ 8980F9528BAB3AA881892669DFC79228 ] VBoxNetAdp      C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
20:25:12.0264 7156  VBoxNetAdp - ok
20:25:12.0349 7156  [ 9BF49F26447ECC60D7DC52AD65EA8BD7 ] VBoxNetFlt      C:\Windows\system32\DRIVERS\VBoxNetFlt.sys
20:25:12.0351 7156  VBoxNetFlt - ok
20:25:12.0517 7156  [ 47F7C4DEE8BAAD82047EC7AA20116E02 ] VBoxUSBMon      C:\Windows\system32\DRIVERS\VBoxUSBMon.sys
20:25:12.0520 7156  VBoxUSBMon - ok
20:25:12.0717 7156  [ 06FE5BEDDADB158D84E6DE33CBE19F3E ] VCFw            C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
20:25:12.0752 7156  VCFw - ok
20:25:12.0889 7156  [ 34063C0B842E73662067F9B03947C55C ] VcmIAlzMgr      C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
20:25:12.0922 7156  VcmIAlzMgr - ok
20:25:13.0060 7156  [ A8F5D1651A324ABC6C308891A1252EE3 ] VcmINSMgr       C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
20:25:13.0116 7156  VcmINSMgr - ok
20:25:13.0277 7156  [ DB544B487F360128DC1C383E0A6FCC2F ] VcmXmlIfHelper  C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
20:25:13.0306 7156  VcmXmlIfHelper - ok
20:25:13.0341 7156  Vcsw - ok
20:25:13.0422 7156  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
20:25:13.0423 7156  vdrvroot - ok
20:25:13.0573 7156  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
20:25:13.0616 7156  vds - ok
20:25:13.0640 7156  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
20:25:13.0684 7156  vga - ok
20:25:13.0743 7156  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
20:25:13.0757 7156  VgaSave - ok
20:25:13.0826 7156  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
20:25:13.0852 7156  vhdmp - ok
20:25:13.0902 7156  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
20:25:13.0924 7156  viaide - ok
20:25:13.0973 7156  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
20:25:13.0980 7156  volmgr - ok
20:25:14.0046 7156  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
20:25:14.0073 7156  volmgrx - ok
20:25:14.0125 7156  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
20:25:14.0131 7156  volsnap - ok
20:25:14.0167 7156  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
20:25:14.0184 7156  vsmraid - ok
20:25:14.0451 7156  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
20:25:14.0542 7156  VSS - ok
20:25:14.0577 7156  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
20:25:14.0593 7156  vwifibus - ok
20:25:14.0633 7156  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
20:25:14.0658 7156  vwififlt - ok
20:25:14.0734 7156  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
20:25:14.0755 7156  vwifimp - ok
20:25:14.0793 7156  [ D8BEF4AC1EAC809DBDBD441D6CFF6C4C ] VzCdbSvc        C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
20:25:14.0805 7156  VzCdbSvc - ok
20:25:14.0892 7156  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
20:25:14.0942 7156  W32Time - ok
20:25:14.0970 7156  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
20:25:14.0977 7156  WacomPen - ok
20:25:15.0025 7156  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
20:25:15.0028 7156  WANARP - ok
20:25:15.0037 7156  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
20:25:15.0038 7156  Wanarpv6 - ok
20:25:15.0343 7156  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
20:25:15.0403 7156  WatAdminSvc - ok
20:25:15.0626 7156  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
20:25:15.0694 7156  wbengine - ok
20:25:15.0774 7156  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
20:25:15.0803 7156  WbioSrvc - ok
20:25:15.0888 7156  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
20:25:15.0925 7156  wcncsvc - ok
20:25:15.0966 7156  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:25:15.0989 7156  WcsPlugInService - ok
20:25:16.0049 7156  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
20:25:16.0051 7156  Wd - ok
20:25:16.0139 7156  [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
20:25:16.0170 7156  WDC_SAM - ok
20:25:16.0272 7156  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
20:25:16.0308 7156  Wdf01000 - ok
20:25:16.0338 7156  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
20:25:16.0360 7156  WdiServiceHost - ok
20:25:16.0387 7156  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
20:25:16.0392 7156  WdiSystemHost - ok
20:25:16.0450 7156  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
20:25:16.0486 7156  WebClient - ok
20:25:16.0579 7156  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
20:25:16.0603 7156  Wecsvc - ok
20:25:16.0622 7156  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
20:25:16.0628 7156  wercplsupport - ok
20:25:16.0668 7156  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
20:25:16.0689 7156  WerSvc - ok
20:25:16.0778 7156  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
20:25:16.0780 7156  WfpLwf - ok
20:25:16.0827 7156  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
20:25:16.0830 7156  WIMMount - ok
20:25:16.0870 7156  WinDefend - ok
20:25:17.0081 7156  [ 18A47DBD1191D40FC8AE347A535AF238 ] WinDriver6      C:\Windows\system32\drivers\windrvr6.sys
20:25:17.0085 7156  WinDriver6 - ok
20:25:17.0091 7156  WinHttpAutoProxySvc - ok
20:25:17.0353 7156  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
20:25:17.0376 7156  Winmgmt - ok
20:25:17.0632 7156  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
20:25:17.0713 7156  WinRM - ok
20:25:17.0880 7156  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
20:25:17.0884 7156  WinUsb - ok
20:25:17.0961 7156  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
20:25:18.0007 7156  Wlansvc - ok
20:25:18.0063 7156  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
20:25:18.0077 7156  WmiAcpi - ok
20:25:18.0123 7156  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
20:25:18.0145 7156  wmiApSrv - ok
20:25:18.0197 7156  WMPNetworkSvc - ok
20:25:18.0259 7156  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
20:25:18.0271 7156  WPCSvc - ok
20:25:18.0319 7156  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
20:25:18.0334 7156  WPDBusEnum - ok
20:25:18.0352 7156  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
20:25:18.0354 7156  ws2ifsl - ok
20:25:18.0382 7156  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
20:25:18.0399 7156  wscsvc - ok
20:25:18.0404 7156  WSearch - ok
20:25:18.0688 7156  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
20:25:18.0756 7156  wuauserv - ok
20:25:18.0799 7156  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
20:25:18.0812 7156  WudfPf - ok
20:25:18.0864 7156  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
20:25:18.0868 7156  WUDFRd - ok
20:25:18.0945 7156  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
20:25:18.0956 7156  wudfsvc - ok
20:25:18.0978 7156  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
20:25:18.0996 7156  WwanSvc - ok
20:25:19.0024 7156  [ E8F3FA126A06F8E7088F63757112A186 ] XAudio          C:\Windows\system32\DRIVERS\XAudio64.sys
20:25:19.0026 7156  XAudio - ok
20:25:19.0092 7156  [ 6AFFD75C6807B3DD3AB018E27B88EF95 ] yukonw7         C:\Windows\system32\DRIVERS\yk62x64.sys
20:25:19.0099 7156  yukonw7 - ok
20:25:19.0128 7156  ================ Scan global ===============================
20:25:19.0147 7156  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
20:25:19.0210 7156  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
20:25:19.0235 7156  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
20:25:19.0268 7156  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
20:25:19.0315 7156  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
20:25:19.0348 7156  [Global] - ok
20:25:19.0349 7156  ================ Scan MBR ==================================
20:25:19.0362 7156  [ A3095E5B8060D0D6B97E87EC1BB50C3C ] \Device\Harddisk0\DR0
20:25:20.0340 7156  \Device\Harddisk0\DR0 - ok
20:25:20.0348 7156  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
20:25:20.0483 7156  \Device\Harddisk2\DR2 - ok
20:25:20.0514 7156  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk3\DR3
20:25:20.0619 7156  \Device\Harddisk3\DR3 - ok
20:25:20.0620 7156  ================ Scan VBR ==================================
20:25:20.0647 7156  [ 42352240326ED91CB59516C2CCC83373 ] \Device\Harddisk0\DR0\Partition1
20:25:20.0661 7156  \Device\Harddisk0\DR0\Partition1 - ok
20:25:20.0684 7156  [ AF908E17F28F754754686C3DAFD3302B ] \Device\Harddisk0\DR0\Partition2
20:25:20.0691 7156  \Device\Harddisk0\DR0\Partition2 - ok
20:25:20.0698 7156  [ 7CE5B8AD7FB4067559A1BD12A971F70E ] \Device\Harddisk2\DR2\Partition1
20:25:20.0699 7156  \Device\Harddisk2\DR2\Partition1 - ok
20:25:20.0732 7156  [ 4E2860DD609E6A9A1A245C1CDE015E8F ] \Device\Harddisk3\DR3\Partition1
20:25:20.0734 7156  \Device\Harddisk3\DR3\Partition1 - ok
20:25:20.0734 7156  ============================================================
20:25:20.0734 7156  Scan finished
20:25:20.0734 7156  ============================================================
20:25:20.0749 4204  Detected object count: 0
20:25:20.0749 4204  Actual detected object count: 0
20:26:25.0733 6944  Deinitialize success
 
 
 
 
C:\.Trash-1000\files\$Recycle.Bin\S-1-5-21-3378465879-3125831137-566490611-1001\$RDVWOZ1.exe a variant of Win32/OpenInstall application
C:\Program Files (x86)\EAGLE-5.6.0\Keygen.exe a variant of Win32/Keygen.AF application
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe a variant of Win32/bProtector.A application
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe a variant of Win32/bProtector.A application
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension\bprotector.js Win32/bProtector.F application
C:\Users\All Users\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe a variant of Win32/bProtector.A application
C:\Users\All Users\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe a variant of Win32/bProtector.A application
C:\Users\All Users\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension\bprotector.js Win32/bProtector.F application
C:\Users\LoLPEZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1G4OD7W\tonebytes_4929[1].exe Win32/DownWare.G application
C:\Users\LoLPEZ\AppData\Local\Temp\nsc697F.tmp a variant of Win32/Bundled.Toolbar.Ask application
C:\Users\LoLPEZ\AppData\Local\Temp\nst46B6.tmp a variant of Win32/Bundled.Toolbar.Ask application
C:\Users\LoLPEZ\AppData\Local\Temp\C5B6FD98-BAB0-7891-B511-6E3FEED1A61C\Latest\BExternal.dll a variant of Win32/Toolbar.Babylon.C application
C:\Users\LoLPEZ\AppData\Local\Temp\C5B6FD98-BAB0-7891-B511-6E3FEED1A61C\Latest\IEHelper.dll Win32/Toolbar.Babylon.E application
C:\Users\LoLPEZ\AppData\Local\Temp\C5B6FD98-BAB0-7891-B511-6E3FEED1A61C\Latest\Setup.exe a variant of Win32/Toolbar.Babylon.E application
C:\Users\LoLPEZ\AppData\Local\Temp\nstBFC7.tmp-2\APN_ATU3_.exe a variant of Win32/Bundled.Toolbar.Ask.D application
C:\Users\LoLPEZ\AppData\Local\Temp\OpenCandy\OCSetupHlp.dll Win32/OpenCandy application
C:\Windows\Installer\151cc7c.msi a variant of Win32/Bundled.Toolbar.Ask application
H:\PC\Software\Nero\Setupx.exe a variant of Win32/Bundled.Toolbar.Ask.A application
H:\FL Studio 9\flstudio_9.0.exe Win32/OpenCandy application
H:\Age Of Empires 2 Gold Edition\DAEMONToolsPro500316-0317.exe Win32/OpenCandy application
H:\ISO\Windows XP Pro SP3 - Activated\WXPVOL_EN.iso multiple threats
Operating memory a variant of Win32/bProtector.A application
 

 



#8 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 30 July 2013 - 04:02 AM

:step1: Rerun MBAM and this time quarantaines all the infections. 


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#9 lopezsaenz00

lopezsaenz00
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 30 July 2013 - 03:50 PM

Done!
 
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.29.05
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
LoLPEZ :: LOLPEZ-VAIO [administrator]
 
7/30/2013 11:39:23 AM
mbam-log-2013-07-30 (11-39-23).txt
 
Scan type: Full scan (C:\|E:\|F:\|H:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 668584
Time elapsed: 2 hour(s), 43 minute(s), 43 second(s)
 
Memory Processes Detected: 2
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> 1884 -> Delete on reboot.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> 4032 -> Delete on reboot.
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 5
C:\Users\LoLPEZ\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144 (PUP.Optional.BrowserDefender.A) -> Delete on reboot.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} (PUP.Optional.BrowserDefender.A) -> Delete on reboot.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
 
Files Detected: 20
C:\Users\LoLPEZ\AppData\Local\Temp\nsc697F.tmp (PUP.Optional.AskToolbar) -> Quarantined and deleted successfully.
C:\Users\LoLPEZ\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (PUP.Optional.BrowserDefender.A) -> Delete on reboot.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.settings (PUP.Optional.BrowserDefender.A) -> Delete on reboot.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension\bprotector.js (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 (PUP.Optional.BrowserDefender.A) -> Quarantined and deleted successfully.
 
(end)


#10 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 31 July 2013 - 02:45 AM

:step1: Download TFC from the download link above and save the file on your desktop.

 
Note 1: Depending on how much data is currently stored in the Temp folders, this process can take quite a while to remove all of the files, so please be patient.
 
Note 2: This program will not delete your Cookies or Browser History.
 
  • Close ALL running applications as TFC will terminate them before attempting to clean up the temporary files.
  • Double-click on the TFC icon.
  • When the program starts, click on the Start button.  TFC will terminate the Explorer process and all running applications and then begin the process of cleaning out all of your temp folders.
  • When done, press OK to reboot your computer and finish the cleanup.

 

The program normally force a reboot.

 

:step2: Remove the found infections (some may be already gone by TFC)


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#11 lopezsaenz00

lopezsaenz00
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:12:10 AM

Posted 02 August 2013 - 02:28 AM

I tried to run the TFC but it gave me the blue screen.

any suggestions?



#12 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:10 AM

Posted 02 August 2013 - 02:41 AM

Sorry you're experiencing errors with TFC.

 

Let's try some other tools:

 

:step1: Download Emsisoft Emergency Kit

  • Open EmsisoftEmergencyKit by  double-click Start.exe.
  • A new window will open. Under "Run Directly:" click Emergency Kit Scanner.
  • When asked to run an online update, click Yes.
  • When the update is finished, click the Back to Security Status link in the left corner. On the main screen click the Scan Now button.
  • Select the Deep Scan option and click the SCAN button.
  • When the scan is finished click the Quarantine selected objects button. Note, this option is only available if malicious objects were detected during the scan.
  • Click the View Report button and in the Reports window double-click on the most recent log. Note, logs are named as follows: a2scan_<date>-<time>.txt.
  • Copy/paste the report contents in your next reply

 

:step2: Please download and scan with the Kaspersky Virus Removal Tool from one of the following links and save it to your desktop.

Be sure to print out and read the instructions provided in:

  • Double-click the setup file (i.e. setup_11.0.0.1245x11_2012_18-23_13_03.exe) to install the utility.
    Vista/Windows 7/8 users right-click and select Run As Administrator.
  • If you receive a UAC prompt asking if you would like to continue running the program, you should press the Continue button.
  • The required files will be exracted and installed...be patient as this will take a few minutes.
  • At the 'Welcome!' windows, check the box next to I accept the license agreement and click Start.
  • A new window will open with two tabs (Automatic Scan and Manual Disinfection) and two icons on the right.
  • For a more comprehensive (but longer) scan, click the icon which looks like a round gear, Click Scan Scope and place a check mark in the box next to Local Disk (C:).
    System memory, Hidden Startups and Disk boot sector boxes should already be checked by default.
  • Click on the 'Automatic Scan' tab, and click the green Start scanning button to begin.
  • The time to finish and percentage completed will show as the scan is in progress...Important! Do not use the computer during the scan.
  • If no threats are detected, exit the program.
  • If threats are detected, you will be prompted for action: Disinfect, Delete if disinfection failes.
  • Place a checkmark in the Apply to all box, and click Disinfect if the button is active.
  • After the scan finishes, if any threats are left unneutralized in the Scan window (Red exclamation point), click the Neutralize allbutton.
  • Place a checkmark in the Apply to all box, and click Disinfect if the button is active.
  • If advised that a special disinfection procedure is required which demands system reboot, click the Ok button to close the window.
  • When finished, click the rectanular notepad icon > select Detected threats > click on to highlight and click the Save icon to save the results as a text file...name it avptool.txt).
  • Copy and paste the report results of avptool.txt with any threats detected in your next reply.
  • When finished, follow these instructions on How to uninstall Kaspersky Virus Removal Tool.

If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#13 bersel

bersel

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:02:10 AM

Posted 17 September 2013 - 10:07 PM

Hi, I had the same issue so I ran the MBAM scan and this is the resulting log:

 

Scan options disabled: P2P
Objects scanned: 527927
Time elapsed: 2 hour(s), 29 minute(s), 49 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 14
HKCR\CLSID\{11111111-1111-1111-1111-110411151154} (PUP.Optional.Lyrics.A) -> No action taken.
HKCR\TypeLib\{44444444-4444-4444-4444-440444154454} (PUP.Optional.Lyrics.A) -> No action taken.
HKCR\Interface\{55555555-5555-5555-5555-550455155554} (PUP.Optional.Lyrics.A) -> No action taken.
HKCR\CrossriderApp0041554.BHO.1 (PUP.Optional.Lyrics.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411151154} (PUP.Optional.Lyrics.A) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411151154} (PUP.Optional.Lyrics.A) -> No action taken.
HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} (PUP.Optional.OptimzerPro.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 (PUP.Optional.OptimizerPro.A) -> No action taken.
HKCR\CrossriderApp0041554.BHO (PUP.Optional.CrossRider.A) -> No action taken.
HKCR\CrossriderApp0041554.Sandbox (PUP.Optional.CrossRider.A) -> No action taken.
HKCR\CrossriderApp0041554.Sandbox.1 (PUP.Optional.CrossRider.A) -> No action taken.
HKCU\Software\InstalledBrowserExtensions\Lyrics (PUP.Optional.Lyrics.A) -> No action taken.
HKLM\Software\a2zLyrics-1 (PUP.Optional.A2ZLyrics.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\a2zLyrics-1 (PUP.Optional.A2ZLyrics.A) -> No action taken.
 
Registry Values Detected: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Optimizer Pro (PUP.Optional.OptimizePro.A) -> Data: C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe -> No action taken.
 
Registry Data Items Detected: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.OptimizerPro.A) -> Bad: (c:\progra~2\optimi~1\optpro~1.dll) Good: () -> No action taken.
 
Folders Detected: 6
C:\Program Files (x86)\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Users\alejandro\Documents\Optimizer Pro (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Users\alejandro\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> No action taken.
C:\Users\alejandro\AppData\Roaming\OpenCandy\155F824BCD4F442B8AB34B5E7A5234CB (PUP.Optional.OpenCandy) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1 (PUP.Optional.A2ZLyrics.A) -> No action taken.
 
Files Detected: 71
C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe (PUP.Optional.OptimizePro.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-bho.dll (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-bho64.dll (PUP.Optional.Lyrics.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-1743769176-4253579772-3329860419-1001\$RI21XR5.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-bg.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-buttonutil.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-buttonutil64.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-chromeinstaller.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-codedownloader.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-enabler.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-updater.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\utils.exe (PUP.Optional.Lyrics.A) -> No action taken.
C:\Users\alejandro\AppData\Local\Bundled software uninstaller\bi_client.exe (PUP.Optional.Somoto.A) -> No action taken.
C:\Users\alejandro\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000000 (PUP.Optional.Installrex) -> No action taken.
C:\Users\alejandro\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FGD8LDV5\bi_downloader[1].exe (PUP.Optional.Somoto.A) -> No action taken.
C:\Users\alejandro\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LWT6VIHG\SoftonicDownloader_para_rar-file-open-knife.exe (PUP.Optional.Softonic) -> No action taken.
C:\Users\alejandro\AppData\Local\Temp\a2zLyrics_1060-8102_v122.exe (PUP.Optional.Adtool) -> No action taken.
C:\Users\alejandro\AppData\Local\Temp\nsiA0B7.tmp (PUP.Optional.Somoto.A) -> No action taken.
C:\Users\alejandro\AppData\Local\Temp\OptimizerPro.exe (PUP.Optional.OptimizePro.A) -> No action taken.
C:\Users\alejandro\AppData\Local\Temp\Optimizer_Pro.exe (PUP.Optional.1ClickDownload.A) -> No action taken.
C:\Users\alejandro\Desktop\DTLite4471-0333.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Users\alejandro\Downloads\Pain.and.Gain.2013.720p.BluRay.X264-AMIABLE [PublicHD].exe (PUP.Optional.Installrex) -> No action taken.
C:\Users\alejandro\Downloads\SoftonicDownloader_para_daemon-tools.exe (PUP.Optional.Softonic) -> No action taken.
C:\Users\selva_000\Downloads\SoftonicDownloader_para_master-key.exe (PUP.Optional.Softonic) -> No action taken.
C:\Windows.old\Program Files (x86)\Optimizer Pro\OptProLauncher.exe (PUP.Optional.OptimizePro.A) -> No action taken.
C:\Windows.old\Users\Alejandro\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2W8BD5JL\bi_downloader[1].exe (PUP.Optional.Somoto.A) -> No action taken.
C:\Windows.old\Users\Alejandro\AppData\Local\Temp\nst5AA8.tmp (PUP.Optional.Somoto.A) -> No action taken.
C:\Windows.old\Users\Alejandro\AppData\Local\Temp\OptimizerPro.exe (PUP.Optional.OptimizePro.A) -> No action taken.
C:\Windows.old\Users\Alejandro\AppData\Local\Temp\Optimizer_Pro.exe (PUP.Optional.1ClickDownload.A) -> No action taken.
C:\Windows.old\Users\Alejandro\AppData\Local\Temp\nspB2A3.tmp\bi_client.exe (PUP.Optional.Somoto.A) -> No action taken.
C:\Windows.old\Users\Alejandro\Downloads\DTLite4471-0337.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Windows.old\Users\Alejandro\Local Settings\Application Data\Bundled software uninstaller\bi_client.exe (PUP.Optional.Somoto.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptimizerPro.chm (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\CookiesException.txt (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\English.ini (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\file_id.diz (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\HomePage.url (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptimizerPro.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProCrash.dll (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProGuard.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProSchedule.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProSmartScan.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProStart.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\OptProUninstaller.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\scan.gif (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\sqlite3.dll (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\StartupList.txt (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\unins000.dat (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\unins000.exe (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Program Files (x86)\Optimizer Pro\unins000.msg (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro on the Web.lnk (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Check updates.lnk (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Help.lnk (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro\Uninstall Optimizer Pro.lnk (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Users\alejandro\Documents\Optimizer Pro\CookiesException.txt (PUP.Optional.OptimizerPro.A) -> No action taken.
C:\Windows\Tasks\a2zLyrics-1-chromeinstaller.job (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Windows\Tasks\a2zLyrics-1-codedownloader.job (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Windows\Tasks\a2zLyrics-1-enabler.job (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Windows\Tasks\a2zLyrics-1-updater.job (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Users\alejandro\AppData\Roaming\OpenCandy\155F824BCD4F442B8AB34B5E7A5234CB\TuneUpUtilities2013-2200319_en-US.exe (PUP.Optional.OpenCandy) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\41554.crx (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-buttonutil.dll (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-buttonutil64.dll (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-helper.exe (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1.ico (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\background.html (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\Installer.log (PUP.Optional.A2ZLyrics.A) -> No action taken.
C:\Program Files (x86)\a2zLyrics-1\Uninstall.exe (PUP.Optional.A2ZLyrics.A) -> No action taken.
 
(end)
 

 

Thank you for your time






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users