Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Java Trojans found all over the place


  • Please log in to reply
9 replies to this topic

#1 bob monkhouse

bob monkhouse

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:12:55 AM

Posted 04 August 2013 - 06:10 AM

Hello all,

 

I recently had a problem with AVG failing to update and suspected some problems,  so I uninstalled AVG, then installed Avast.  I ran a full scan with Avast last night and uncovered 69 infected files, many of which are labelled as Java Exploits and Trojans of various flavours.  Though I have moved these detected files to Avast's virus vault, I'd like a second opinion on whether or not my system is now as clean as it could be.  Any help would be greatly appreciated!

 

I'm running Vista Home Basic 32-bit.

 

Bob



BC AdBot (Login to Remove)

 


#2 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:55 AM

Posted 04 August 2013 - 07:42 AM

:welcome:

 

Let's have a look for malware..

 

:step1:  Install and run MBAM

:step2:    Running TDSSKiller to obtain log

 

Note: Don't cure or delete a threat, but choose skip for all instead.

  • Please download TDSSKiller from here and save it to your Desktop
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters

tds2.jpg

  • In the Additional options: Check Detect TDLFS file system
  • Click Start Scan and allow the scan process to run

tds4-1.jpg

  • Choose for all threats to Skip for all of them.
  • Click Continue
  • Please post the TDSSKiller.[Version]_[Date]_[Time]_log.txt found in your root directory (typically c:\)

===================================================

 

:step2:  ESET Online Scanner

==================

Note: If your AV is blocking Eset online scanner, please temporarily disable your AV.

 

I'd like us to scan your machine with ESET OnlineScan This process may may take several hours, that is normal.

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and » UNCHECK "Remove found threats" <== Important
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Copy and paste the information in your next reply. (If no malware was found you will not be presented with a log).
  • Click the Back button.
  • Click the Finish button.

===================================================


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#3 bob monkhouse

bob monkhouse
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:12:55 AM

Posted 04 August 2013 - 11:30 AM

Thanks GFK.  Malwarebytes and ESET found nothing, however there was a threat detected by TDSSKiller.  Here are the logs:

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2013.08.04.01

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Ross :: ROSS-PC [administrator]

04/08/2013 13:49:40
mbam-log-2013-08-04 (13-49-40).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 391294
Time elapsed: 1 hour(s), 57 minute(s), 50 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 

15:51:10.0005 5040  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
15:51:10.0351 5040  ============================================================
15:51:10.0351 5040  Current date / time: 2013/08/04 15:51:10.0351
15:51:10.0351 5040  SystemInfo:
15:51:10.0351 5040  
15:51:10.0351 5040  OS Version: 6.0.6002 ServicePack: 2.0
15:51:10.0351 5040  Product type: Workstation
15:51:10.0351 5040  ComputerName: ROSS-PC
15:51:10.0351 5040  UserName: Ross
15:51:10.0351 5040  Windows directory: C:\Windows
15:51:10.0351 5040  System windows directory: C:\Windows
15:51:10.0351 5040  Processor architecture: Intel x86
15:51:10.0351 5040  Number of processors: 2
15:51:10.0351 5040  Page size: 0x1000
15:51:10.0352 5040  Boot type: Normal boot
15:51:10.0352 5040  ============================================================
15:51:12.0186 5040  Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:51:13.0152 5040  Drive \Device\Harddisk1\DR1 - Size: 0x75400000 (1.83 Gb), SectorSize: 0x200, Cylinders: 0xEF, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
15:51:13.0153 5040  ============================================================
15:51:13.0153 5040  \Device\Harddisk0\DR0:
15:51:13.0186 5040  MBR partitions:
15:51:13.0186 5040  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1A00800, BlocksNum 0x11018800
15:51:13.0186 5040  \Device\Harddisk1\DR1:
15:51:13.0187 5040  MBR partitions:
15:51:13.0187 5040  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x6, StartLBA 0x89, BlocksNum 0x3A9F77
15:51:13.0187 5040  ============================================================
15:51:13.0230 5040  C: <-> \Device\Harddisk0\DR0\Partition1
15:51:13.0328 5040  ============================================================
15:51:13.0329 5040  Initialize success
15:51:13.0329 5040  ============================================================
15:51:33.0701 5992  ============================================================
15:51:33.0701 5992  Scan started
15:51:33.0701 5992  Mode: Manual; TDLFS;
15:51:33.0701 5992  ============================================================
15:51:35.0553 5992  ================ Scan system memory ========================
15:51:35.0553 5992  System memory - ok
15:51:35.0554 5992  ================ Scan services =============================
15:51:35.0894 5992  [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI            C:\Windows\system32\drivers\acpi.sys
15:51:35.0900 5992  ACPI - ok
15:51:36.0041 5992  [ E8FE4FCE23D2809BD88BCC1D0F8408CE ] AdobeActiveFileMonitor6.0 C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
15:51:36.0045 5992  AdobeActiveFileMonitor6.0 - ok
15:51:36.0160 5992  [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
15:51:36.0162 5992  AdobeARMservice - ok
15:51:36.0264 5992  [ F040037B149FD0F5A5044AE563390FA7 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:51:36.0305 5992  AdobeFlashPlayerUpdateSvc - ok
15:51:36.0367 5992  [ 04F0FCAC69C7C71A3AC4EB97FAFC8303 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
15:51:36.0375 5992  adp94xx - ok
15:51:36.0507 5992  [ 60505E0041F7751BDBB80F88BF45C2CE ] adpahci         C:\Windows\system32\drivers\adpahci.sys
15:51:36.0522 5992  adpahci - ok
15:51:36.0550 5992  [ 8A42779B02AEC986EAB64ECFC98F8BD7 ] adpu160m        C:\Windows\system32\drivers\adpu160m.sys
15:51:36.0592 5992  adpu160m - ok
15:51:36.0698 5992  [ 241C9E37F8CE45EF51C3DE27515CA4E5 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
15:51:36.0700 5992  adpu320 - ok
15:51:36.0798 5992  [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
15:51:36.0820 5992  AeLookupSvc - ok
15:51:37.0017 5992  [ 3911B972B55FEA0478476B2E777B29FA ] AFD             C:\Windows\system32\drivers\afd.sys
15:51:37.0024 5992  AFD - ok
15:51:37.0061 5992  [ 13F9E33747E6B41A3FF305C37DB0D360 ] agp440          C:\Windows\system32\drivers\agp440.sys
15:51:37.0064 5992  agp440 - ok
15:51:37.0087 5992  [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
15:51:37.0090 5992  aic78xx - ok
15:51:37.0157 5992  [ A1545B731579895D8CC44FC0481C1192 ] ALG             C:\Windows\System32\alg.exe
15:51:37.0159 5992  ALG - ok
15:51:37.0179 5992  [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91 ] aliide          C:\Windows\system32\drivers\aliide.sys
15:51:37.0181 5992  aliide - ok
15:51:37.0197 5992  [ C47344BC706E5F0B9DCE369516661578 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
15:51:37.0200 5992  amdagp - ok
15:51:37.0218 5992  [ 9B78A39A4C173FDBC1321E0DD659B34C ] amdide          C:\Windows\system32\drivers\amdide.sys
15:51:37.0220 5992  amdide - ok
15:51:37.0246 5992  [ 18F29B49AD23ECEE3D2A826C725C8D48 ] AmdK7           C:\Windows\system32\drivers\amdk7.sys
15:51:37.0248 5992  AmdK7 - ok
15:51:37.0266 5992  [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
15:51:37.0285 5992  AmdK8 - ok
15:51:37.0331 5992  [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo         C:\Windows\System32\appinfo.dll
15:51:37.0333 5992  Appinfo - ok
15:51:37.0397 5992  [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:51:37.0400 5992  Apple Mobile Device - ok
15:51:37.0428 5992  [ 5D2888182FB46632511ACEE92FDAD522 ] arc             C:\Windows\system32\drivers\arc.sys
15:51:37.0441 5992  arc - ok
15:51:37.0473 5992  [ 5E2A321BD7C8B3624E41FDEC3E244945 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
15:51:37.0477 5992  arcsas - ok
15:51:37.0532 5992  [ 4AF5F360BA1E8794D32B366E45A64A0A ] aswFsBlk        C:\Windows\system32\drivers\aswFsBlk.sys
15:51:37.0534 5992  aswFsBlk - ok
15:51:37.0581 5992  [ 1F7094D4268D46F718C51286DC189791 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
15:51:37.0582 5992  aswMonFlt - ok
15:51:37.0602 5992  [ 7B43265F92257A21CBFD88E7A651044C ] AswRdr          C:\Windows\system32\drivers\AswRdr.sys
15:51:37.0605 5992  AswRdr - ok
15:51:37.0645 5992  [ B680134BA1813B78B47FDD1DFF223CA5 ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
15:51:37.0648 5992  aswRvrt - ok
15:51:37.0682 5992  [ CCD565A8A72AF7D45F9A242013870926 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
15:51:37.0697 5992  aswSnx - ok
15:51:37.0749 5992  [ 937300BC7C4CDF7576BCCE44E19BBB9D ] aswSP           C:\Windows\system32\drivers\aswSP.sys
15:51:37.0758 5992  aswSP - ok
15:51:37.0787 5992  [ 1F71F170D90E42EFDE9633D81D5E12DC ] aswTdi          C:\Windows\system32\drivers\aswTdi.sys
15:51:37.0790 5992  aswTdi - ok
15:51:37.0807 5992  [ 8CFAA2B965773A653F48F1207A9CB9C4 ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
15:51:37.0811 5992  aswVmm - ok
15:51:37.0836 5992  [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
15:51:37.0838 5992  AsyncMac - ok
15:51:37.0885 5992  [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi           C:\Windows\system32\drivers\atapi.sys
15:51:37.0886 5992  atapi - ok
15:51:38.0042 5992  [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:51:38.0088 5992  AudioEndpointBuilder - ok
15:51:38.0134 5992  [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv        C:\Windows\System32\Audiosrv.dll
15:51:38.0137 5992  Audiosrv - ok
15:51:38.0207 5992  [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
15:51:38.0209 5992  avast! Antivirus - ok
15:51:38.0246 5992  [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep            C:\Windows\system32\drivers\Beep.sys
15:51:38.0248 5992  Beep - ok
15:51:38.0311 5992  [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE             C:\Windows\System32\bfe.dll
15:51:38.0316 5992  BFE - ok
15:51:38.0369 5992  [ 93952506C6D67330367F7E7934B6A02F ] BITS            C:\Windows\System32\qmgr.dll
15:51:38.0380 5992  BITS - ok
15:51:38.0405 5992  [ D4DF28447741FD3D953526E33A617397 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
15:51:38.0408 5992  blbdrive - ok
15:51:38.0524 5992  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
15:51:38.0533 5992  Bonjour Service - ok
15:51:38.0587 5992  [ 35F376253F687BDE63976CCB3F2108CA ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
15:51:38.0589 5992  bowser - ok
15:51:38.0630 5992  [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo        C:\Windows\system32\drivers\brfiltlo.sys
15:51:38.0632 5992  BrFiltLo - ok
15:51:38.0677 5992  [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp        C:\Windows\system32\drivers\brfiltup.sys
15:51:38.0679 5992  BrFiltUp - ok
15:51:38.0705 5992  [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser         C:\Windows\System32\browser.dll
15:51:38.0708 5992  Browser - ok
15:51:38.0730 5992  [ B304E75CFF293029EDDF094246747113 ] Brserid         C:\Windows\system32\drivers\brserid.sys
15:51:38.0733 5992  Brserid - ok
15:51:38.0763 5992  [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm        C:\Windows\system32\drivers\brserwdm.sys
15:51:38.0766 5992  BrSerWdm - ok
15:51:38.0783 5992  [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm        C:\Windows\system32\drivers\brusbmdm.sys
15:51:38.0785 5992  BrUsbMdm - ok
15:51:38.0801 5992  [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer        C:\Windows\system32\drivers\brusbser.sys
15:51:38.0803 5992  BrUsbSer - ok
15:51:38.0839 5992  [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
15:51:38.0841 5992  BTHMODEM - ok
15:51:38.0875 5992  [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
15:51:38.0878 5992  cdfs - ok
15:51:38.0928 5992  [ 6B4BFFB9BECD728097024276430DB314 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
15:51:38.0930 5992  cdrom - ok
15:51:39.0033 5992  [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc     C:\Windows\System32\certprop.dll
15:51:39.0047 5992  CertPropSvc - ok
15:51:39.0072 5992  [ E5D4133F37219DBCFE102BC61072589D ] circlass        C:\Windows\system32\drivers\circlass.sys
15:51:39.0074 5992  circlass - ok
15:51:39.0201 5992  [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS            C:\Windows\system32\CLFS.sys
15:51:39.0208 5992  CLFS - ok
15:51:39.0406 5992  [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:51:39.0410 5992  clr_optimization_v2.0.50727_32 - ok
15:51:39.0472 5992  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:51:39.0520 5992  clr_optimization_v4.0.30319_32 - ok
15:51:39.0574 5992  [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
15:51:39.0576 5992  CmBatt - ok
15:51:39.0597 5992  [ 0CA25E686A4928484E9FDABD168AB629 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
15:51:39.0599 5992  cmdide - ok
15:51:39.0618 5992  [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
15:51:39.0620 5992  Compbatt - ok
15:51:39.0627 5992  COMSysApp - ok
15:51:39.0637 5992  [ 741E9DFF4F42D2D8477D0FC1DC0DF871 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
15:51:39.0639 5992  crcdisk - ok
15:51:39.0659 5992  [ 1F07BECDCA750766A96CDA811BA86410 ] Crusoe          C:\Windows\system32\drivers\crusoe.sys
15:51:39.0661 5992  Crusoe - ok
15:51:39.0729 5992  [ 3EDE4C1F9672C972479201544969ADCB ] CryptSvc        C:\Windows\system32\cryptsvc.dll
15:51:39.0731 5992  CryptSvc - ok
15:51:39.0802 5992  [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch      C:\Windows\system32\rpcss.dll
15:51:39.0812 5992  DcomLaunch - ok
15:51:39.0854 5992  [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
15:51:39.0857 5992  DfsC - ok
15:51:39.0972 5992  [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR            C:\Windows\system32\DFSR.exe
15:51:40.0204 5992  DFSR - ok
15:51:40.0278 5992  [ 9028559C132146FB75EB7ACF384B086A ] Dhcp            C:\Windows\System32\dhcpcsvc.dll
15:51:40.0282 5992  Dhcp - ok
15:51:40.0336 5992  [ 5D4AEFC3386920236A548271F8F1AF6A ] disk            C:\Windows\system32\drivers\disk.sys
15:51:40.0352 5992  disk - ok
15:51:40.0426 5992  [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache        C:\Windows\System32\dnsrslvr.dll
15:51:40.0430 5992  Dnscache - ok
15:51:40.0479 5992  [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc         C:\Windows\System32\dot3svc.dll
15:51:40.0485 5992  dot3svc - ok
15:51:40.0522 5992  [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS             C:\Windows\system32\dps.dll
15:51:40.0525 5992  DPS - ok
15:51:40.0563 5992  [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
15:51:40.0564 5992  drmkaud - ok
15:51:40.0630 5992  [ 5DE0FAEC9E5D1AAE74F8568897891A01 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
15:51:40.0757 5992  DXGKrnl - ok
15:51:40.0800 5992  [ 5425F74AC0C1DBD96A1E04F17D63F94C ] E1G60           C:\Windows\system32\DRIVERS\E1G60I32.sys
15:51:40.0802 5992  E1G60 - ok
15:51:40.0845 5992  [ C0B95E40D85CD807D614E264248A45B9 ] EapHost         C:\Windows\System32\eapsvc.dll
15:51:40.0849 5992  EapHost - ok
15:51:40.0909 5992  [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache          C:\Windows\system32\drivers\ecache.sys
15:51:40.0914 5992  Ecache - ok
15:51:40.0952 5992  [ 23B62471681A124889978F6295B3F4C6 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
15:51:40.0959 5992  elxstor - ok
15:51:41.0050 5992  [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt         C:\Windows\system32\emdmgmt.dll
15:51:41.0062 5992  EMDMgmt - ok
15:51:41.0091 5992  [ 3DB974F3935483555D7148663F726C61 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
15:51:41.0093 5992  ErrDev - ok
15:51:41.0206 5992  [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem     C:\Windows\system32\es.dll
15:51:41.0210 5992  EventSystem - ok
15:51:41.0309 5992  [ 921878114F48949CFAE9ABE6FC4C4CC3 ] ewusbnet        C:\Windows\system32\DRIVERS\ewusbnet.sys
15:51:41.0311 5992  ewusbnet - ok
15:51:41.0419 5992  [ E98A64C7F106740A38FB2B78197816F8 ] ew_hwusbdev     C:\Windows\system32\DRIVERS\ew_hwusbdev.sys
15:51:41.0452 5992  ew_hwusbdev - ok
15:51:41.0570 5992  [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat           C:\Windows\system32\drivers\exfat.sys
15:51:41.0594 5992  exfat - ok
15:51:41.0685 5992  [ 42F721C52EEF2D6DF9372A53813A83EF ] ezSharedSvc     C:\Windows\System32\ezsvc7.dll
15:51:41.0690 5992  ezSharedSvc - ok
15:51:41.0742 5992  [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
15:51:41.0747 5992  fastfat - ok
15:51:41.0770 5992  [ AFE1E8B9782A0DD7FB46BBD88E43F89A ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
15:51:41.0772 5992  fdc - ok
15:51:41.0799 5992  [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost         C:\Windows\system32\fdPHost.dll
15:51:41.0802 5992  fdPHost - ok
15:51:41.0815 5992  [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub        C:\Windows\system32\fdrespub.dll
15:51:41.0818 5992  FDResPub - ok
15:51:41.0838 5992  [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
15:51:41.0840 5992  FileInfo - ok
15:51:41.0860 5992  [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
15:51:41.0862 5992  Filetrace - ok
15:51:41.0932 5992  [ 227846995AFEEFA70D328BF5334A86A5 ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
15:51:41.0945 5992  FLEXnet Licensing Service - ok
15:51:41.0962 5992  [ 85B7CF99D532820495D68D747FDA9EBD ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
15:51:41.0965 5992  flpydisk - ok
15:51:42.0039 5992  [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
15:51:42.0044 5992  FltMgr - ok
15:51:42.0145 5992  [ 119ACA7CADCA75BEA6B38E999443BAA6 ] FontCache       C:\Windows\system32\FntCache.dll
15:51:42.0162 5992  FontCache - ok
15:51:42.0232 5992  [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:51:42.0235 5992  FontCache3.0.0.0 - ok
15:51:42.0298 5992  [ 790A4CA68F44BE35967B3DF61F3E4675 ] FsUsbExDisk     C:\Windows\system32\FsUsbExDisk.SYS
15:51:42.0302 5992  FsUsbExDisk - ok
15:51:42.0327 5992  [ D3F9205CC4CB07553F2F9472C767EA87 ] FsUsbExService  C:\Windows\system32\FsUsbExService.Exe
15:51:42.0333 5992  FsUsbExService - ok
15:51:42.0388 5992  [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
15:51:42.0401 5992  Fs_Rec - ok
15:51:42.0429 5992  [ 34582A6E6573D54A07ECE5FE24A126B5 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
15:51:42.0431 5992  gagp30kx - ok
15:51:42.0494 5992  [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
15:51:42.0496 5992  GEARAspiWDM - ok
15:51:42.0650 5992  [ 9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F ] GoogleDesktopManager-051210-111108 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
15:51:42.0707 5992  GoogleDesktopManager-051210-111108 - ok
15:51:42.0766 5992  [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc           C:\Windows\System32\gpsvc.dll
15:51:42.0779 5992  gpsvc - ok
15:51:42.0867 5992  [ 626A24ED1228580B9518C01930936DF9 ] gupdate1ca1830e5cc39a9 C:\Program Files\Google\Update\GoogleUpdate.exe
15:51:42.0871 5992  gupdate1ca1830e5cc39a9 - ok
15:51:42.0891 5992  [ 626A24ED1228580B9518C01930936DF9 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
15:51:42.0893 5992  gupdatem - ok
15:51:42.0944 5992  [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc           C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
15:51:42.0949 5992  gusvc - ok
15:51:42.0993 5992  [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
15:51:42.0999 5992  HdAudAddService - ok
15:51:43.0048 5992  [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
15:51:43.0054 5992  HDAudBus - ok
15:51:43.0070 5992  [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth          C:\Windows\system32\drivers\hidbth.sys
15:51:43.0072 5992  HidBth - ok
15:51:43.0104 5992  [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr           C:\Windows\system32\drivers\hidir.sys
15:51:43.0106 5992  HidIr - ok
15:51:43.0150 5992  [ 84067081F3318162797385E11A8F0582 ] hidserv         C:\Windows\system32\hidserv.dll
15:51:43.0154 5992  hidserv - ok
15:51:43.0194 5992  [ CCA4B519B17E23A00B826C55716809CC ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
15:51:43.0196 5992  HidUsb - ok
15:51:43.0253 5992  [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc          C:\Windows\system32\kmsvc.dll
15:51:43.0259 5992  hkmsvc - ok
15:51:43.0283 5992  [ 16EE7B23A009E00D835CDB79574A91A6 ] HpCISSs         C:\Windows\system32\drivers\hpcisss.sys
15:51:43.0286 5992  HpCISSs - ok
15:51:43.0353 5992  [ 0EEECA26C8D4BDE2A4664DB058A81937 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
15:51:43.0363 5992  HTTP - ok
15:51:43.0406 5992  [ 22A4B14530194FC57C1C849FB5AFEE17 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys
15:51:43.0436 5992  huawei_enumerator - ok
15:51:43.0466 5992  [ 0B3957226EC94B1ECB7B9348BB535A23 ] hwdatacard      C:\Windows\system32\DRIVERS\ewusbmdm.sys
15:51:43.0468 5992  hwdatacard - ok
15:51:43.0509 5992  [ C6B032D69650985468160FC9937CF5B4 ] i2omp           C:\Windows\system32\drivers\i2omp.sys
15:51:43.0512 5992  i2omp - ok
15:51:43.0555 5992  [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
15:51:43.0557 5992  i8042prt - ok
15:51:43.0667 5992  [ 54155EA1B0DF185878E0FC9EC3AC3A14 ] iaStorV         C:\Windows\system32\drivers\iastorv.sys
15:51:43.0673 5992  iaStorV - ok
15:51:43.0778 5992  [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:51:43.0808 5992  idsvc - ok
15:51:43.0914 5992  [ 0627FC0C422CD6E0F23E1B0D1D9F0899 ] igfx            C:\Windows\system32\DRIVERS\igdkmd32.sys
15:51:43.0972 5992  igfx - ok
15:51:43.0992 5992  [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
15:51:43.0994 5992  iirsp - ok
15:51:44.0065 5992  [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT          C:\Windows\System32\ikeext.dll
15:51:44.0076 5992  IKEEXT - ok
15:51:44.0156 5992  [ 9B89F2E3D705651DEC1F01033B9D6B24 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
15:51:44.0214 5992  IntcAzAudAddService - ok
15:51:44.0252 5992  [ 83AA759F3189E6370C30DE5DC5590718 ] intelide        C:\Windows\system32\drivers\intelide.sys
15:51:44.0255 5992  intelide - ok
15:51:44.0281 5992  [ 224191001E78C89DFA78924C3EA595FF ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
15:51:44.0283 5992  intelppm - ok
15:51:44.0305 5992  [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
15:51:44.0310 5992  IPBusEnum - ok
15:51:44.0323 5992  [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:51:44.0325 5992  IpFilterDriver - ok
15:51:44.0373 5992  [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
15:51:44.0380 5992  iphlpsvc - ok
15:51:44.0387 5992  IpInIp - ok
15:51:44.0406 5992  [ B25AAF203552B7B3491139D582B39AD1 ] IPMIDRV         C:\Windows\system32\drivers\ipmidrv.sys
15:51:44.0409 5992  IPMIDRV - ok
15:51:44.0430 5992  [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT           C:\Windows\system32\DRIVERS\ipnat.sys
15:51:44.0434 5992  IPNAT - ok
15:51:44.0621 5992  [ E46B17060D3962A384AE484094614788 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
15:51:44.0696 5992  iPod Service - ok
15:51:44.0718 5992  [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
15:51:44.0720 5992  IRENUM - ok
15:51:44.0749 5992  [ 6C70698A3E5C4376C6AB5C7C17FB0614 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
15:51:44.0752 5992  isapnp - ok
15:51:44.0804 5992  [ 232FA340531D940AAC623B121A595034 ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
15:51:44.0807 5992  iScsiPrt - ok
15:51:44.0917 5992  [ 724A6A9AB5E1807665C5DB71C30BFC5F ] ISWKL           C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys
15:51:44.0920 5992  ISWKL - ok
15:51:44.0951 5992  [ 57FE873B8246DEF1372503CBC57A7499 ] IswSvc          C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
15:51:44.0959 5992  IswSvc - ok
15:51:45.0019 5992  [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi        C:\Windows\system32\drivers\iteatapi.sys
15:51:45.0022 5992  iteatapi - ok
15:51:45.0049 5992  [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid         C:\Windows\system32\drivers\iteraid.sys
15:51:45.0052 5992  iteraid - ok
15:51:45.0066 5992  [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
15:51:45.0068 5992  kbdclass - ok
15:51:45.0088 5992  [ 18247836959BA67E3511B62846B9C2E0 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
15:51:45.0090 5992  kbdhid - ok
15:51:45.0150 5992  [ A3E186B4B935905B829219502557314E ] KeyIso          C:\Windows\system32\lsass.exe
15:51:45.0154 5992  KeyIso - ok
15:51:45.0217 5992  [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
15:51:45.0227 5992  KSecDD - ok
15:51:45.0277 5992  [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm           C:\Windows\system32\msdtckrm.dll
15:51:45.0284 5992  KtmRm - ok
15:51:45.0343 5992  [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer    C:\Windows\system32\srvsvc.dll
15:51:45.0350 5992  LanmanServer - ok
15:51:45.0406 5992  [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
15:51:45.0414 5992  LanmanWorkstation - ok
15:51:45.0450 5992  [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
15:51:45.0452 5992  lltdio - ok
15:51:45.0494 5992  [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
15:51:45.0502 5992  lltdsvc - ok
15:51:45.0519 5992  [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts         C:\Windows\System32\lmhsvc.dll
15:51:45.0523 5992  lmhosts - ok
15:51:45.0543 5992  [ C7E15E82879BF3235B559563D4185365 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
15:51:45.0547 5992  LSI_FC - ok
15:51:45.0572 5992  [ EE01EBAE8C9BF0FA072E0FF68718920A ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
15:51:45.0575 5992  LSI_SAS - ok
15:51:45.0602 5992  [ 912A04696E9CA30146A62AFA1463DD5C ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
15:51:45.0606 5992  LSI_SCSI - ok
15:51:45.0632 5992  [ 8F5C7426567798E62A3B3614965D62CC ] luafv           C:\Windows\system32\drivers\luafv.sys
15:51:45.0635 5992  luafv - ok
15:51:45.0738 5992  [ 6EC65465744C0B9495AEA4D51947DB49 ] lxdnCATSCustConnectService C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdnserv.exe
15:51:45.0743 5992  lxdnCATSCustConnectService - ok
15:51:45.0750 5992  lxdn_device - ok
15:51:45.0811 5992  ManyCam - ok
15:51:45.0873 5992  [ 4470E3C1E0C3378E4CAB137893C12C3A ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
15:51:45.0919 5992  MBAMProtector - ok
15:51:46.0106 5992  [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler   C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
15:51:46.0163 5992  MBAMScheduler - ok
15:51:46.0325 5992  [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
15:51:46.0356 5992  MBAMService - ok
15:51:46.0396 5992  [ 0001CE609D66632FA17B84705F658879 ] megasas         C:\Windows\system32\drivers\megasas.sys
15:51:46.0399 5992  megasas - ok
15:51:46.0439 5992  [ C252F32CD9A49DBFC25ECF26EBD51A99 ] MegaSR          C:\Windows\system32\drivers\megasr.sys
15:51:46.0447 5992  MegaSR - ok
15:51:46.0495 5992  [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS           C:\Windows\system32\mmcss.dll
15:51:46.0501 5992  MMCSS - ok
15:51:46.0524 5992  [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem           C:\Windows\system32\drivers\modem.sys
15:51:46.0525 5992  Modem - ok
15:51:46.0555 5992  [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
15:51:46.0557 5992  monitor - ok
15:51:46.0588 5992  [ 5BF6A1326A335C5298477754A506D263 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
15:51:46.0590 5992  mouclass - ok
15:51:46.0635 5992  [ 93B8D4869E12CFBE663915502900876F ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
15:51:46.0637 5992  mouhid - ok
15:51:46.0651 5992  [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr        C:\Windows\system32\drivers\mountmgr.sys
15:51:46.0654 5992  MountMgr - ok
15:51:46.0754 5992  [ 528A5C2570F468155A1B3CF0A2FF5EBD ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
15:51:46.0758 5992  MozillaMaintenance - ok
15:51:46.0811 5992  [ 511D011289755DD9F9A7579FB0B064E6 ] mpio            C:\Windows\system32\drivers\mpio.sys
15:51:46.0814 5992  mpio - ok
15:51:46.0843 5992  [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
15:51:46.0846 5992  mpsdrv - ok
15:51:46.0891 5992  [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc          C:\Windows\system32\mpssvc.dll
15:51:46.0903 5992  MpsSvc - ok
15:51:46.0931 5992  [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x        C:\Windows\system32\drivers\mraid35x.sys
15:51:46.0940 5992  Mraid35x - ok
15:51:47.0040 5992  [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
15:51:47.0043 5992  MRxDAV - ok
15:51:47.0089 5992  [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
15:51:47.0092 5992  mrxsmb - ok
15:51:47.0152 5992  [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:51:47.0157 5992  mrxsmb10 - ok
15:51:47.0174 5992  [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:51:47.0177 5992  mrxsmb20 - ok
15:51:47.0197 5992  [ 28023E86F17001F7CD9B15A5BC9AE07D ] msahci          C:\Windows\system32\drivers\msahci.sys
15:51:47.0200 5992  msahci - ok
15:51:47.0217 5992  [ 4468B0F385A86ECDDAF8D3CA662EC0E7 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
15:51:47.0219 5992  msdsm - ok
15:51:47.0248 5992  [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC           C:\Windows\System32\msdtc.exe
15:51:47.0255 5992  MSDTC - ok
15:51:47.0299 5992  [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
15:51:47.0301 5992  Msfs - ok
15:51:47.0316 5992  [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
15:51:47.0319 5992  msisadrv - ok
15:51:47.0351 5992  [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
15:51:47.0357 5992  MSiSCSI - ok
15:51:47.0364 5992  msiserver - ok
15:51:47.0388 5992  [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
15:51:47.0390 5992  MSKSSRV - ok
15:51:47.0404 5992  [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
15:51:47.0406 5992  MSPCLOCK - ok
15:51:47.0422 5992  [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
15:51:47.0424 5992  MSPQM - ok
15:51:47.0465 5992  [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
15:51:47.0470 5992  MsRPC - ok
15:51:47.0489 5992  [ E384487CB84BE41D09711C30CA79646C ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
15:51:47.0491 5992  mssmbios - ok
15:51:47.0513 5992  [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
15:51:47.0515 5992  MSTEE - ok
15:51:47.0535 5992  [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup             C:\Windows\system32\Drivers\mup.sys
15:51:47.0537 5992  Mup - ok
15:51:47.0583 5992  [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent        C:\Windows\system32\qagentRT.dll
15:51:47.0594 5992  napagent - ok
15:51:47.0633 5992  [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
15:51:47.0638 5992  NativeWifiP - ok
15:51:47.0694 5992  [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS            C:\Windows\system32\drivers\ndis.sys
15:51:47.0781 5992  NDIS - ok
15:51:47.0822 5992  [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
15:51:47.0824 5992  NdisTapi - ok
15:51:47.0831 5992  [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
15:51:47.0833 5992  Ndisuio - ok
15:51:47.0884 5992  [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
15:51:47.0900 5992  NdisWan - ok
15:51:47.0928 5992  [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
15:51:47.0951 5992  NDProxy - ok
15:51:48.0151 5992  [ 40D7D0A208EE863BCA8D89E299216F15 ] Nero BackItUp Scheduler 3 C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
15:51:48.0284 5992  Nero BackItUp Scheduler 3 - ok
15:51:48.0305 5992  [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
15:51:48.0308 5992  NetBIOS - ok
15:51:48.0365 5992  [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt           C:\Windows\system32\DRIVERS\netbt.sys
15:51:48.0443 5992  netbt - ok
15:51:48.0461 5992  [ A3E186B4B935905B829219502557314E ] Netlogon        C:\Windows\system32\lsass.exe
15:51:48.0465 5992  Netlogon - ok
15:51:48.0507 5992  [ C8052711DAECC48B982434C5116CA401 ] Netman          C:\Windows\System32\netman.dll
15:51:48.0517 5992  Netman - ok
15:51:48.0539 5992  [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm        C:\Windows\System32\netprofm.dll
15:51:48.0548 5992  netprofm - ok
15:51:48.0600 5992  [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:51:48.0604 5992  NetTcpPortSharing - ok
15:51:48.0723 5992  [ E559EA9138C77B5D1FDA8C558764A25F ] NETw5v32        C:\Windows\system32\DRIVERS\NETw5v32.sys
15:51:48.0756 5992  NETw5v32 - ok
15:51:48.0803 5992  [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
15:51:48.0864 5992  nfrd960 - ok
15:51:48.0892 5992  [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc          C:\Windows\System32\nlasvc.dll
15:51:48.0900 5992  NlaSvc - ok
15:51:49.0188 5992  [ CD4326BC339F98DE21AA07B208A305AE ] NMIndexingService C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
15:51:49.0221 5992  NMIndexingService - ok
15:51:49.0266 5992  [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
15:51:49.0275 5992  Npfs - ok
15:51:49.0308 5992  [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi             C:\Windows\system32\nsisvc.dll
15:51:49.0332 5992  nsi - ok
15:51:49.0388 5992  [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
15:51:49.0463 5992  nsiproxy - ok
15:51:49.0553 5992  [ 2C1121F2B87E9A6B12485DF53CD848C7 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
15:51:49.0574 5992  Ntfs - ok
15:51:49.0616 5992  [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi       C:\Windows\system32\drivers\ntrigdigi.sys
15:51:49.0634 5992  ntrigdigi - ok
15:51:49.0657 5992  [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null            C:\Windows\system32\drivers\Null.sys
15:51:49.0660 5992  Null - ok
15:51:49.0685 5992  [ 2EDF9E7751554B42CBB60116DE727101 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
15:51:49.0687 5992  nvraid - ok
15:51:49.0728 5992  [ ABED0C09758D1D97DB0042DBB2688177 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
15:51:49.0737 5992  nvstor - ok
15:51:49.0770 5992  [ 18BBDF913916B71BD54575BDB6EEAC0B ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
15:51:49.0774 5992  nv_agp - ok
15:51:49.0780 5992  NwlnkFlt - ok
15:51:49.0791 5992  NwlnkFwd - ok
15:51:49.0829 5992  [ BE32DA025A0BE1878F0EE8D6D9386CD5 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
15:51:49.0832 5992  ohci1394 - ok
15:51:49.0893 5992  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:51:49.0898 5992  ose - ok
15:51:50.0138 5992  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:51:50.0282 5992  osppsvc - ok
15:51:50.0330 5992  [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc        C:\Windows\system32\p2psvc.dll
15:51:50.0375 5992  p2pimsvc - ok
15:51:50.0389 5992  [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc          C:\Windows\system32\p2psvc.dll
15:51:50.0400 5992  p2psvc - ok
15:51:50.0434 5992  [ 0FA9B5055484649D63C303FE404E5F4D ] Parport         C:\Windows\system32\drivers\parport.sys
15:51:50.0438 5992  Parport - ok
15:51:50.0482 5992  [ B9C2B89F08670E159F7181891E449CD9 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
15:51:50.0495 5992  partmgr - ok
15:51:50.0536 5992  [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm          C:\Windows\system32\drivers\parvdm.sys
15:51:50.0538 5992  Parvdm - ok
15:51:50.0549 5992  PCASp50 - ok
15:51:50.0588 5992  [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc          C:\Windows\System32\pcasvc.dll
15:51:50.0594 5992  PcaSvc - ok
15:51:50.0685 5992  [ 941DC1D19E7E8620F40BBC206981EFDB ] pci             C:\Windows\system32\drivers\pci.sys
15:51:50.0689 5992  pci - ok
15:51:50.0706 5992  [ 1636D43F10416AEB483BC6001097B26C ] pciide          C:\Windows\system32\drivers\pciide.sys
15:51:50.0709 5992  pciide - ok
15:51:50.0793 5992  [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
15:51:50.0822 5992  pcmcia - ok
15:51:51.0090 5992  [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
15:51:51.0110 5992  PEAUTH - ok
15:51:51.0258 5992  [ B1689DF169143F57053F795390C99DB3 ] pla             C:\Windows\system32\pla.dll
15:51:51.0308 5992  pla - ok
15:51:51.0338 5992  [ 875E4E0661F3A5994DF9E5E3A0A4F96B ] PLFlash DeviceIoControl Service C:\Windows\system32\IoctlSvc.exe
15:51:51.0343 5992  PLFlash DeviceIoControl Service - ok
15:51:51.0403 5992  [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
15:51:51.0411 5992  PlugPlay - ok
15:51:51.0452 5992  [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg     C:\Windows\system32\p2psvc.dll
15:51:51.0462 5992  PNRPAutoReg - ok
15:51:51.0482 5992  [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc         C:\Windows\system32\p2psvc.dll
15:51:51.0492 5992  PNRPsvc - ok
15:51:51.0550 5992  [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
15:51:51.0574 5992  PolicyAgent - ok
15:51:51.0625 5992  [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
15:51:51.0643 5992  PptpMiniport - ok
15:51:51.0661 5992  [ 2027293619DD0F047C584CF2E7DF4FFD ] Processor       C:\Windows\system32\drivers\processr.sys
15:51:51.0663 5992  Processor - ok
15:51:51.0711 5992  [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc         C:\Windows\system32\profsvc.dll
15:51:51.0720 5992  ProfSvc - ok
15:51:51.0750 5992  [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
15:51:51.0754 5992  ProtectedStorage - ok
15:51:51.0811 5992  [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched          C:\Windows\system32\DRIVERS\pacer.sys
15:51:51.0833 5992  PSched - ok
15:51:51.0862 5992  [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20        C:\Windows\system32\Drivers\PxHelp20.sys
15:51:51.0865 5992  PxHelp20 - ok
15:51:51.0950 5992  [ 0A6DB55AFB7820C99AA1F3A1D270F4F6 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
15:51:51.0960 5992  ql2300 - ok
15:51:51.0981 5992  [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
15:51:51.0986 5992  ql40xx - ok
15:51:52.0051 5992  [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE           C:\Windows\system32\qwave.dll
15:51:52.0061 5992  QWAVE - ok
15:51:52.0163 5992  [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
15:51:52.0165 5992  QWAVEdrv - ok
15:51:52.0193 5992  [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
15:51:52.0220 5992  RasAcd - ok
15:51:52.0261 5992  [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto         C:\Windows\System32\rasauto.dll
15:51:52.0268 5992  RasAuto - ok
15:51:52.0310 5992  [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
15:51:52.0314 5992  Rasl2tp - ok
15:51:52.0382 5992  [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan          C:\Windows\System32\rasmans.dll
15:51:52.0392 5992  RasMan - ok
15:51:52.0430 5992  [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
15:51:52.0433 5992  RasPppoe - ok
15:51:52.0478 5992  [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
15:51:52.0482 5992  RasSstp - ok
15:51:52.0538 5992  [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
15:51:52.0544 5992  rdbss - ok
15:51:52.0591 5992  [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
15:51:52.0593 5992  RDPCDD - ok
15:51:52.0618 5992  [ FBC0BACD9C3D7F6956853F64A66E252D ] rdpdr           C:\Windows\system32\drivers\rdpdr.sys
15:51:52.0624 5992  rdpdr - ok
15:51:52.0634 5992  [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
15:51:52.0636 5992  RDPENCDD - ok
15:51:52.0700 5992  [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
15:51:52.0705 5992  RDPWD - ok
15:51:52.0754 5992  [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess    C:\Windows\System32\mprdim.dll
15:51:52.0760 5992  RemoteAccess - ok
15:51:52.0803 5992  [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry  C:\Windows\system32\regsvc.dll
15:51:52.0810 5992  RemoteRegistry - ok
15:51:52.0869 5992  [ F17713D108ACA124A139FDE877EEF68A ] RimUsb          C:\Windows\system32\Drivers\RimUsb.sys
15:51:52.0871 5992  RimUsb - ok
15:51:52.0895 5992  [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator      C:\Windows\system32\locator.exe
15:51:52.0900 5992  RpcLocator - ok
15:51:52.0951 5992  [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs           C:\Windows\system32\rpcss.dll
15:51:52.0961 5992  RpcSs - ok
15:51:53.0040 5992  [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
15:51:53.0043 5992  rspndr - ok
15:51:53.0080 5992  [ 174B9514CD1A0C33CE4BBC02A3C81A62 ] RTL8169         C:\Windows\system32\DRIVERS\Rtlh86.sys
15:51:53.0084 5992  RTL8169 - ok
15:51:53.0137 5992  [ 406046DD9C70BEC52881CCEC7E11D83C ] RTL8187B        C:\Windows\system32\DRIVERS\RTL8187B.sys
15:51:53.0159 5992  RTL8187B - ok
15:51:53.0186 5992  [ 01C64783DB1F40E1E3DF67DD36199B35 ] RTSTOR          C:\Windows\system32\drivers\RTSTOR.SYS
15:51:53.0189 5992  RTSTOR - ok
15:51:53.0205 5992  [ A3E186B4B935905B829219502557314E ] SamSs           C:\Windows\system32\lsass.exe
15:51:53.0209 5992  SamSs - ok
15:51:53.0245 5992  [ 3CE8F073A557E172B330109436984E30 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
15:51:53.0249 5992  sbp2port - ok
15:51:53.0421 5992  [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService  C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
15:51:53.0444 5992  SBSDWSCService - ok
15:51:53.0494 5992  [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
15:51:53.0503 5992  SCardSvr - ok
15:51:53.0571 5992  [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule        C:\Windows\system32\schedsvc.dll
15:51:53.0582 5992  Schedule - ok
15:51:53.0599 5992  [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc     C:\Windows\System32\certprop.dll
15:51:53.0601 5992  SCPolicySvc - ok
15:51:53.0642 5992  [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
15:51:53.0649 5992  SDRSVC - ok
15:51:53.0782 5992  [ 331E7BDE228914574FC9AE6CD520DAFA ] SeaPort         C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
15:51:53.0787 5992  SeaPort - ok
15:51:53.0813 5992  [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
15:51:53.0816 5992  secdrv - ok
15:51:53.0834 5992  [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon        C:\Windows\system32\seclogon.dll
15:51:53.0840 5992  seclogon - ok
15:51:53.0867 5992  [ A9BBAB5759771E523F55563D6CBE140F ] SENS            C:\Windows\System32\sens.dll
15:51:53.0873 5992  SENS - ok
15:51:53.0893 5992  [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum         C:\Windows\system32\drivers\serenum.sys
15:51:53.0896 5992  Serenum - ok
15:51:53.0915 5992  [ C70D69A918B178D3C3B06339B40C2E1B ] Serial          C:\Windows\system32\drivers\serial.sys
15:51:53.0919 5992  Serial - ok
15:51:53.0937 5992  [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
15:51:53.0946 5992  sermouse - ok
15:51:54.0022 5992  [ D2193326F729B163125610DBF3E17D57 ] SessionEnv      C:\Windows\system32\sessenv.dll
15:51:54.0030 5992  SessionEnv - ok
15:51:54.0056 5992  [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
15:51:54.0058 5992  sffdisk - ok
15:51:54.0071 5992  [ E95D451F7EA3E583AEC75F3B3EE42DC5 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
15:51:54.0074 5992  sffp_mmc - ok
15:51:54.0096 5992  [ 3D0EA348784B7AC9EA9BD9F317980979 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
15:51:54.0112 5992  sffp_sd - ok
15:51:54.0129 5992  [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
15:51:54.0132 5992  sfloppy - ok
15:51:54.0164 5992  [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
15:51:54.0173 5992  SharedAccess - ok
15:51:54.0223 5992  [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:51:54.0233 5992  ShellHWDetection - ok
15:51:54.0258 5992  [ 1D76624A09A054F682D746B924E2DBC3 ] sisagp          C:\Windows\system32\drivers\sisagp.sys
15:51:54.0261 5992  sisagp - ok
15:51:54.0298 5992  [ 43CB7AA756C7DB280D01DA9B676CFDE2 ] SiSRaid2        C:\Windows\system32\drivers\sisraid2.sys
15:51:54.0301 5992  SiSRaid2 - ok
15:51:54.0327 5992  [ A99C6C8B0BAA970D8AA59DDC50B57F94 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
15:51:54.0331 5992  SiSRaid4 - ok
15:51:54.0441 5992  [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc           C:\Windows\system32\SLsvc.exe
15:51:54.0530 5992  slsvc - ok
15:51:54.0575 5992  [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify      C:\Windows\system32\SLUINotify.dll
15:51:54.0583 5992  SLUINotify - ok
15:51:54.0637 5992  [ 7B75299A4D201D6A6533603D6914AB04 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
15:51:54.0640 5992  Smb - ok
15:51:54.0677 5992  [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
15:51:54.0684 5992  SNMPTRAP - ok
15:51:54.0713 5992  [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr           C:\Windows\system32\drivers\spldr.sys
15:51:54.0716 5992  spldr - ok
15:51:54.0763 5992  [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler         C:\Windows\System32\spoolsv.exe
15:51:54.0770 5992  Spooler - ok
15:51:54.0830 5992  [ 41987F9FC0E61ADF54F581E15029AD91 ] srv             C:\Windows\system32\DRIVERS\srv.sys
15:51:54.0837 5992  srv - ok
15:51:54.0881 5992  [ FF33AFF99564B1AA534F58868CBE41EF ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
15:51:54.0886 5992  srv2 - ok
15:51:54.0907 5992  [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
15:51:54.0911 5992  srvnet - ok
15:51:54.0944 5992  [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
15:51:54.0952 5992  SSDPSRV - ok
15:51:55.0053 5992  [ 14622AE81C72B08691EEDAABC1D4A129 ] ssm_bus         C:\Windows\system32\DRIVERS\ssm_bus.sys
15:51:55.0073 5992  ssm_bus - ok
15:51:55.0100 5992  [ 43EE5E9FDA61A5E0EAC4C1DE699E6E4D ] ssm_mdfl        C:\Windows\system32\DRIVERS\ssm_mdfl.sys
15:51:55.0102 5992  ssm_mdfl - ok
15:51:55.0121 5992  [ 918CFD32C7FEB174F356A0A6FAD11F4B ] ssm_mdm         C:\Windows\system32\DRIVERS\ssm_mdm.sys
15:51:55.0125 5992  ssm_mdm - ok
15:51:55.0168 5992  [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
15:51:55.0191 5992  SstpSvc - ok
15:51:55.0237 5992  [ 5A1D0CA8A5F1E7B4EC50B9D76C001F0E ] ss_bus          C:\Windows\system32\DRIVERS\ss_bus.sys
15:51:55.0241 5992  ss_bus - ok
15:51:55.0265 5992  [ F0A85580E36A3A85059037D39A9CF079 ] ss_mdfl         C:\Windows\system32\DRIVERS\ss_mdfl.sys
15:51:55.0268 5992  ss_mdfl - ok
15:51:55.0302 5992  [ 84C3DBFD1BFA4ADC0A950B3D5506CB00 ] ss_mdm          C:\Windows\system32\DRIVERS\ss_mdm.sys
15:51:55.0331 5992  ss_mdm - ok
15:51:55.0388 5992  [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc          C:\Windows\System32\wiaservc.dll
15:51:55.0399 5992  stisvc - ok
15:51:55.0441 5992  [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
15:51:55.0444 5992  swenum - ok
15:51:55.0479 5992  [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv           C:\Windows\System32\swprv.dll
15:51:55.0488 5992  swprv - ok
15:51:55.0510 5992  [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx         C:\Windows\system32\drivers\symc8xx.sys
15:51:55.0513 5992  Symc8xx - ok
15:51:55.0535 5992  [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi          C:\Windows\system32\drivers\sym_hi.sys
15:51:55.0537 5992  Sym_hi - ok
15:51:55.0560 5992  [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3          C:\Windows\system32\drivers\sym_u3.sys
15:51:55.0563 5992  Sym_u3 - ok
15:51:55.0608 5992  [ D2AA5D5FDB821EB5F9366C5E3BC2D9EA ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
15:51:55.0613 5992  SynTP - ok
15:51:55.0669 5992  [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain         C:\Windows\system32\sysmain.dll
15:51:55.0685 5992  SysMain - ok
15:51:55.0735 5992  [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:51:55.0748 5992  TabletInputService - ok
15:51:55.0790 5992  [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv         C:\Windows\System32\tapisrv.dll
15:51:55.0798 5992  TapiSrv - ok
15:51:55.0817 5992  [ CB05822CD9CC6C688168E113C603DBE7 ] TBS             C:\Windows\System32\tbssvc.dll
15:51:55.0824 5992  TBS - ok
15:51:55.0879 5992  [ 078218D74C4EFC2CE7E4C6DF22A94F2F ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
15:51:55.0898 5992  Tcpip - ok
15:51:55.0922 5992  [ 078218D74C4EFC2CE7E4C6DF22A94F2F ] Tcpip6          C:\Windows\system32\DRIVERS\tcpip.sys
15:51:55.0932 5992  Tcpip6 - ok
15:51:56.0027 5992  [ 4C11A1820DDC37FA653913AD680ACCAE ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
15:51:56.0029 5992  tcpipreg - ok
15:51:56.0063 5992  [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
15:51:56.0065 5992  TDPIPE - ok
15:51:56.0083 5992  [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
15:51:56.0086 5992  TDTCP - ok
15:51:56.0125 5992  [ 76B06EB8A01FC8624D699E7045303E54 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
15:51:56.0128 5992  tdx - ok
15:51:56.0142 5992  [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
15:51:56.0145 5992  TermDD - ok
15:51:56.0215 5992  [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService     C:\Windows\System32\termsrv.dll
15:51:56.0225 5992  TermService - ok
15:51:56.0386 5992  [ 8F14DE79EBE73D6D717B8455E64DDA86 ] TGCM_ImportWiFiSvc C:\Program Files\O2\Connection Manager\ImpWiFiSvc.exe
15:51:56.0422 5992  TGCM_ImportWiFiSvc - ok
15:51:56.0443 5992  [ C7230FBEE14437716701C15BE02C27B8 ] Themes          C:\Windows\system32\shsvcs.dll
15:51:56.0451 5992  Themes - ok
15:51:56.0473 5992  [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER     C:\Windows\system32\mmcss.dll
15:51:56.0493 5992  THREADORDER - ok
15:51:56.0528 5992  [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks          C:\Windows\System32\trkwks.dll
15:51:56.0535 5992  TrkWks - ok
15:51:56.0595 5992  [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:51:56.0597 5992  TrustedInstaller - ok
15:51:56.0639 5992  [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
15:51:56.0642 5992  tssecsrv - ok
15:51:56.0659 5992  [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp           C:\Windows\system32\DRIVERS\tunmp.sys
15:51:56.0661 5992  tunmp - ok
15:51:56.0709 5992  [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
15:51:56.0712 5992  tunnel - ok
15:51:56.0735 5992  [ 7D33C4DB2CE363C8518D2DFCF533941F ] uagp35          C:\Windows\system32\drivers\uagp35.sys
15:51:56.0740 5992  uagp35 - ok
15:51:56.0784 5992  [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
15:51:56.0787 5992  udfs - ok
15:51:56.0827 5992  [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
15:51:56.0834 5992  UI0Detect - ok
15:51:56.0859 5992  [ B0ACFDC9E4AF279E9116C03E014B2B27 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
15:51:56.0862 5992  uliagpkx - ok
15:51:56.0878 5992  [ 9224BB254F591DE4CA8D572A5F0D635C ] uliahci         C:\Windows\system32\drivers\uliahci.sys
15:51:56.0885 5992  uliahci - ok
15:51:56.0897 5992  [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata          C:\Windows\system32\drivers\ulsata.sys
15:51:56.0900 5992  UlSata - ok
15:51:56.0928 5992  [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2         C:\Windows\system32\drivers\ulsata2.sys
15:51:56.0940 5992  ulsata2 - ok
15:51:57.0010 5992  [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
15:51:57.0012 5992  umbus - ok
15:51:57.0039 5992  [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost        C:\Windows\System32\upnphost.dll
15:51:57.0050 5992  upnphost - ok
15:51:57.0112 5992  [ 6E421CCC57059B0186C6259CA3B6DFC9 ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
15:51:57.0116 5992  USBAAPL - ok
15:51:57.0162 5992  [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
15:51:57.0165 5992  usbccgp - ok
15:51:57.0195 5992  [ E9476E6C486E76BC4898074768FB7131 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
15:51:57.0199 5992  usbcir - ok
15:51:57.0223 5992  [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
15:51:57.0226 5992  usbehci - ok
15:51:57.0270 5992  [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
15:51:57.0275 5992  usbhub - ok
15:51:57.0299 5992  [ 38DBC7DD6CC5A72011F187425384388B ] usbohci         C:\Windows\system32\drivers\usbohci.sys
15:51:57.0301 5992  usbohci - ok
15:51:57.0347 5992  [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
15:51:57.0349 5992  usbprint - ok
15:51:57.0398 5992  [ A508C9BD8724980512136B039BBA65E9 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
15:51:57.0401 5992  usbscan - ok
15:51:57.0438 5992  [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:51:57.0441 5992  USBSTOR - ok
15:51:57.0464 5992  [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
15:51:57.0466 5992  usbuhci - ok
15:51:57.0488 5992  [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
15:51:57.0492 5992  usbvideo - ok
15:51:57.0534 5992  [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms           C:\Windows\System32\uxsms.dll
15:51:57.0542 5992  UxSms - ok
15:51:57.0619 5992  [ CD88D1B7776DC17A119049742EC07EB4 ] vds             C:\Windows\System32\vds.exe
15:51:57.0632 5992  vds - ok
15:51:57.0650 5992  [ 87B06E1F30B749A114F74622D013F8D4 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
15:51:57.0653 5992  vga - ok
15:51:57.0684 5992  [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave         C:\Windows\System32\drivers\vga.sys
15:51:57.0686 5992  VgaSave - ok
15:51:57.0729 5992  [ 5D7159DEF58A800D5781BA3A879627BC ] viaagp          C:\Windows\system32\drivers\viaagp.sys
15:51:57.0733 5992  viaagp - ok
15:51:57.0749 5992  [ C4F3A691B5BAD343E6249BD8C2D45DEE ] ViaC7           C:\Windows\system32\drivers\viac7.sys
15:51:57.0752 5992  ViaC7 - ok
15:51:57.0770 5992  [ AADF5587A4063F52C2C3FED7887426FC ] viaide          C:\Windows\system32\drivers\viaide.sys
15:51:57.0772 5992  viaide - ok
15:51:57.0788 5992  [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
15:51:57.0792 5992  volmgr - ok
15:51:57.0841 5992  [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
15:51:57.0849 5992  volmgrx - ok
15:51:57.0908 5992  [ 786DB5771F05EF300390399F626BF30A ] volsnap         C:\Windows\system32\drivers\volsnap.sys
15:51:57.0914 5992  volsnap - ok
15:51:57.0978 5992  [ 2FECBD49AEFC6A64B9EA598B772EF8C9 ] Vsdatant        C:\Windows\system32\DRIVERS\vsdatant.sys
15:51:57.0988 5992  Vsdatant - ok
15:51:58.0050 5992  vsmon - ok
15:51:58.0082 5992  [ 587253E09325E6BF226B299774B728A9 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
15:51:58.0084 5992  vsmraid - ok
15:51:58.0212 5992  [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS             C:\Windows\system32\vssvc.exe
15:51:58.0246 5992  VSS - ok
15:51:58.0287 5992  [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time         C:\Windows\system32\w32time.dll
15:51:58.0299 5992  W32Time - ok
15:51:58.0321 5992  [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
15:51:58.0324 5992  WacomPen - ok
15:51:58.0350 5992  [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
15:51:58.0352 5992  Wanarp - ok
15:51:58.0360 5992  [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
15:51:58.0363 5992  Wanarpv6 - ok
15:51:58.0391 5992  [ A3CD60FD826381B49F03832590E069AF ] wcncsvc         C:\Windows\System32\wcncsvc.dll
15:51:58.0401 5992  wcncsvc - ok
15:51:58.0467 5992  [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:51:58.0474 5992  WcsPlugInService - ok
15:51:58.0572 5992  [ 78FE9542363F297B18C027B2D7E7C07F ] Wd              C:\Windows\system32\drivers\wd.sys
15:51:58.0597 5992  Wd - ok
15:51:58.0710 5992  [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
15:51:58.0720 5992  Wdf01000 - ok
15:51:58.0742 5992  [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
15:51:58.0750 5992  WdiServiceHost - ok
15:51:58.0756 5992  [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
15:51:58.0764 5992  WdiSystemHost - ok
15:51:58.0820 5992  [ 04C37D8107320312FBAE09926103D5E2 ] WebClient       C:\Windows\System32\webclnt.dll
15:51:58.0828 5992  WebClient - ok
15:51:58.0883 5992  [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc          C:\Windows\system32\wecsvc.dll
15:51:58.0891 5992  Wecsvc - ok
15:51:58.0928 5992  [ 670FF720071ED741206D69BD995EA453 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
15:51:58.0941 5992  wercplsupport - ok
15:51:59.0047 5992  [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc          C:\Windows\System32\WerSvc.dll
15:51:59.0056 5992  WerSvc - ok
15:51:59.0074 5992  WinHttpAutoProxySvc - ok
15:51:59.0139 5992  [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
15:51:59.0144 5992  Winmgmt - ok
15:51:59.0224 5992  [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM           C:\Windows\system32\WsmSvc.dll
15:51:59.0253 5992  WinRM - ok
15:51:59.0349 5992  [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc         C:\Windows\System32\wlansvc.dll
15:51:59.0365 5992  Wlansvc - ok
15:51:59.0399 5992  [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
15:51:59.0401 5992  WmiAcpi - ok
15:51:59.0459 5992  [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
15:51:59.0588 5992  wmiApSrv - ok
15:51:59.0709 5992  [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
15:51:59.0720 5992  WMPNetworkSvc - ok
15:51:59.0769 5992  [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
15:51:59.0778 5992  WPCSvc - ok
15:51:59.0834 5992  [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
15:51:59.0842 5992  WPDBusEnum - ok
15:51:59.0891 5992  [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb          C:\Windows\system32\DRIVERS\wpdusb.sys
15:51:59.0894 5992  WpdUsb - ok
15:52:00.0085 5992  [ B800EEC15851597405784126C407188C ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:52:00.0101 5992  WPFFontCache_v0400 - ok
15:52:00.0122 5992  [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
15:52:00.0124 5992  ws2ifsl - ok
15:52:00.0164 5992  [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc          C:\Windows\System32\wscsvc.dll
15:52:00.0171 5992  wscsvc - ok
15:52:00.0178 5992  WSearch - ok
15:52:00.0262 5992  [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv        C:\Windows\system32\wuaueng.dll
15:52:00.0307 5992  wuauserv - ok
15:52:00.0358 5992  [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
15:52:00.0362 5992  WudfPf - ok
15:52:00.0446 5992  [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
15:52:00.0553 5992  WUDFRd - ok
15:52:00.0624 5992  [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
15:52:00.0633 5992  wudfsvc - ok
15:52:00.0693 5992  ================ Scan global ===============================
15:52:00.0739 5992  [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
15:52:00.0791 5992  [ A508314231C49AEE86987CEA3EAECAD1 ] C:\Windows\system32\winsrv.dll
15:52:00.0811 5992  [ A508314231C49AEE86987CEA3EAECAD1 ] C:\Windows\system32\winsrv.dll
15:52:00.0871 5992  [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
15:52:00.0881 5992  [Global] - ok
15:52:00.0882 5992  ================ Scan MBR ==================================
15:52:00.0909 5992  [ 4C1C466E0D9E7B73AD314F6E31C2964F ] \Device\Harddisk0\DR0
15:52:04.0064 5992  \Device\Harddisk0\DR0 ( TDSS File System ) - warning
15:52:04.0064 5992  \Device\Harddisk0\DR0 - detected TDSS File System (1)
15:52:04.0769 5992  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
15:52:04.0976 5992  \Device\Harddisk1\DR1 - ok
15:52:04.0976 5992  ================ Scan VBR ==================================
15:52:05.0007 5992  [ 698BEE7AB7069D532C87A841A6335988 ] \Device\Harddisk0\DR0\Partition1
15:52:05.0009 5992  \Device\Harddisk0\DR0\Partition1 - ok
15:52:05.0014 5992  [ 3C69ADEE80D6C7A2075A1B344ED6CFE6 ] \Device\Harddisk1\DR1\Partition1
15:52:05.0016 5992  \Device\Harddisk1\DR1\Partition1 - ok
15:52:05.0017 5992  ============================================================
15:52:05.0017 5992  Scan finished
15:52:05.0017 5992  ============================================================
15:52:05.0036 5036  Detected object count: 1
15:52:05.0036 5036  Actual detected object count: 1
15:52:31.0074 5036  \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
15:52:31.0074 5036  \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
 

 



#4 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:55 AM

Posted 04 August 2013 - 11:39 AM

:step1: Backdoor/Rootkit warning: TDSS

 

This computer is infected with a rootkit called TDSS. You will need to change all passwords after this and pay attention to do not homebanking. Don't use the machine now for other goals then malware removal.

 

:step2: Rerun TDSSKiller This time: Delete >>TDSS file system.

 

==

 

14:41:57.0796 3700  \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
14:41:57.0796 3700  \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip 

 

==

 

:step3: Repeat scan with TDSSKiller and see if TDSS is gone.


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#5 bob monkhouse

bob monkhouse
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:12:55 AM

Posted 04 August 2013 - 11:56 AM

Ok, I ran TDSSKiller and deleted the infected item.  When I ran it the second time the scan came back clean.  Should I take any further action to make sure everything's fine?  Thanks for your help so far, Bob



#6 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:55 AM

Posted 04 August 2013 - 12:04 PM

Just continue with rest of my instructions.


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#7 bob monkhouse

bob monkhouse
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:12:55 AM

Posted 04 August 2013 - 12:26 PM

Which part?



#8 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:55 AM

Posted 04 August 2013 - 12:59 PM

:step2:  ESET Online Scanner


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:


#9 bob monkhouse

bob monkhouse
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:12:55 AM

Posted 04 August 2013 - 01:35 PM

ESET found no threats, so didn't produce a log.



#10 GodfatherKing

GodfatherKing

  • Members
  • 587 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:55 AM

Posted 06 August 2013 - 02:23 PM

Looks good.

 

===

 

 

:step1: My advice is to keep your computer up to date with Windows Updates, Java and Adobe Reader and Flash Player.

 

:step2: Use WOT to inspect sites if they are safe or not :http://www.mywot.com/

 

:step3: A good working AntiVirus is also important. I personally advice Avast free or Avira. MSE it's detection is not so great.

 

:step4: Let's check how good your security is:

 

Download Security Check from here or here and save it to your Desktop.

  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • Notepad document should open automatically called checkup.txt; please post the contents of that document.

NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.
NOTE 2 SecurityCheck may produce some false warning(s), so leave the results reading to me.


If you have received help from me and I don't have respond to you for almost >= 3 days, send me a Private Message.  :hello:





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users