Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Win7 Computer keeps getting BSOD


  • Please log in to reply
12 replies to this topic

#1 mrculp

mrculp

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 15 August 2013 - 03:17 PM

I have win7 64 bit system 4GB ram hp laptop it has gotten unbelievably slow and has a lot of trouble getting to the net from the browsers now. Also after a little while it will BSOD.



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,082 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:55 AM

Posted 15 August 2013 - 07:47 PM

Hello mrculp,

Can you run these next.

If needed to complete the scans use Safe Mode with Networking as a boot option.
Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
 
Please Download TDSSkiller
Launch it.
Click on change parameters-Select TDLFS file system
Click on "Scan".
Please post the LOG report(log file should be in your C drive)
Do not change the default options on scan results.
 
Please download AdwCleaner by Xplode onto your desktop.
Close all open programs and internet browsers.
Double click on adwcleaner.exe to run the tool.
Click on Delete.
Confirm each time with Ok.
You will be prompted to restart your computer. A text file will open after the restart.
Please post the contents of that logfile with your next reply.
You can find the logfile at C:\AdwCleaner[S1].txt as well.
 
Last run ESET.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 10:42 AM

As this is my daughters computer, anything that needs to be removed, or suggested to be removed can be done easily.

 

 

 

MiniToolBox by Farbar  Version: 13-07-2013
Ran by User (administrator) on 17-08-2013 at 11:27:54
Running from "C:\InstallCD"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1       localhost

========================= IP Configuration: ================================

Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)
Realtek RTL8188CE 802.11b/g/n WiFi Adapter = Wireless Network Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : User-HP
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection 2:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
   Physical Address. . . . . . . . . : AC-81-12-7B-63-A7
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Realtek RTL8188CE 802.11b/g/n WiFi Adapter
   Physical Address. . . . . . . . . : AC-81-12-7B-63-A7
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : 2C-27-D7-E8-C1-74
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{D0425734-C3BE-4242-8F25-4D2E4EF6979C}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 9:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{1D6FBE54-400C-4943-80EB-6B8E6F4255E3}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{C8032F58-8C4F-4B6E-9C15-20F93C796BBF}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  UnKnown
Address:  127.0.0.1

Ping request could not find host google.com. Please check the name and try again.
Server:  UnKnown
Address:  127.0.0.1

Ping request could not find host yahoo.com. Please check the name and try again.

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=47ms TTL=128
Reply from 127.0.0.1: bytes=32 time=15ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 15ms, Maximum = 47ms, Average = 31ms
===========================================================================
Interface List
 16...ac 81 12 7b 63 a7 ......Microsoft Virtual WiFi Miniport Adapter
 13...ac 81 12 7b 63 a7 ......Realtek RTL8188CE 802.11b/g/n WiFi Adapter
 11...2c 27 d7 e8 c1 74 ......Realtek PCIe FE Family Controller
  1...........................Software Loopback Interface 1
 36...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
 15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
 17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
  1    306 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 114146977

Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 114146977

Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15866

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15866

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15631

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15631

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/15/2013 09:24:20 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15631


System errors:
=============
Error: (08/15/2013 09:27:55 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Error: (08/15/2013 09:23:52 PM) (Source: Application Popup) (User: )
Description: \??\C:\ComboFix\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (08/15/2013 09:04:23 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Error: (08/15/2013 06:59:00 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\Rtlihvs.dll
Error Code: 126

Error: (08/15/2013 06:57:43 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AVP service.

Error: (08/15/2013 06:57:13 PM) (Source: Service Control Manager) (User: )
Description: The Adobe Flash Player Update Service service failed to start due to the following error:
%%109

Error: (08/15/2013 06:54:28 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR4.

Error: (08/15/2013 06:54:27 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR4.

Error: (08/15/2013 06:54:26 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR4.

Error: (08/15/2013 06:49:50 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR3.


Microsoft Office Sessions:
=========================
Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 114146977

Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 114146977

Error: (08/17/2013 11:26:28 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15866

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15866

Error: (08/16/2013 03:44:16 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15631

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15631

Error: (08/15/2013 09:43:39 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/15/2013 09:24:20 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15631


CodeIntegrity Errors:
===================================
  Date: 2013-08-15 21:23:52.035
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-08-15 21:23:51.801
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX (Version: 11.7.700.224)
Adobe Flash Player 11 Plugin (Version: 11.7.700.224)
Adobe Reader X (10.1.3) MUI (Version: 10.1.3)
Adobe Shockwave Player 11.5 (Version: 11.5.9.620)
Agatha Christie - Peril at End House (Version: 2.2.0.95)
Amazon Add to Wish List IE Extension 1.2 (Version: 1.2)
AMD APP SDK Runtime (Version: 2.5.775.2)
AMD Catalyst Install Manager (Version: 3.0.847.0)
AMD Fuel (Version: 2011.0928.607.9079)
AMD Media Foundation Decoders (Version: 1.0.60928.0618)
AMD Steady Video Plug-In  (Version: 1.00.0000)
AMD System Monitor (Version: 1.0.5)
AMD VISION Engine Control Center (Version: 2011.0928.607.9079)
Apple Application Support (Version: 2.1.7)
Apple Mobile Device Support (Version: 5.1.1.4)
Apple Software Update (Version: 2.1.3.127)
avast! Free Antivirus (Version: 8.0.1489.0)
Bejeweled 2 Deluxe (Version: 2.2.0.95)
Bejeweled 3 (Version: 2.2.0.95)
Blackhawk Striker 2 (Version: 2.2.0.95)
Blasterball 3 (Version: 2.2.0.95)
Blio (Version: 2.2.6699)
Bonjour (Version: 3.0.0.10)
Bounce Symphony (Version: 2.2.0.95)
Build-a-lot 2 (Version: 2.2.0.95)
Cake Mania (Version: 2.2.0.95)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (Version: 2011.0928.607.9079)
Catalyst Control Center InstallProxy (Version: 2011.0928.607.9079)
Catalyst Control Center Localization All (Version: 2011.0928.607.9079)
CCC Help Chinese Standard (Version: 2011.0928.0606.9079)
CCC Help Chinese Traditional (Version: 2011.0928.0606.9079)
CCC Help Czech (Version: 2011.0928.0606.9079)
CCC Help Danish (Version: 2011.0928.0606.9079)
CCC Help Dutch (Version: 2011.0928.0606.9079)
CCC Help English (Version: 2011.0928.0606.9079)
CCC Help Finnish (Version: 2011.0928.0606.9079)
CCC Help French (Version: 2011.0928.0606.9079)
CCC Help German (Version: 2011.0928.0606.9079)
CCC Help Greek (Version: 2011.0928.0606.9079)
CCC Help Hungarian (Version: 2011.0928.0606.9079)
CCC Help Italian (Version: 2011.0928.0606.9079)
CCC Help Japanese (Version: 2011.0928.0606.9079)
CCC Help Korean (Version: 2011.0928.0606.9079)
CCC Help Norwegian (Version: 2011.0928.0606.9079)
CCC Help Polish (Version: 2011.0928.0606.9079)
CCC Help Portuguese (Version: 2011.0928.0606.9079)
CCC Help Russian (Version: 2011.0928.0606.9079)
CCC Help Spanish (Version: 2011.0928.0606.9079)
CCC Help Swedish (Version: 2011.0928.0606.9079)
CCC Help Thai (Version: 2011.0928.0606.9079)
CCC Help Turkish (Version: 2011.0928.0606.9079)
ccc-utility64 (Version: 2011.0928.607.9079)
Chuzzle Deluxe (Version: 2.2.0.95)
Cisco EAP-FAST Module (Version: 2.2.14)
Cisco LEAP Module (Version: 1.0.19)
Cisco PEAP Module (Version: 1.1.6)
CyberLink YouCam (Version: 3.5.1.3922)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Diner Dash 2 Restaurant Rescue (Version: 2.2.0.95)
Dora's World Adventure (Version: 2.2.0.95)
Dropbox (Version: 2.0.22)
Energy Star Digital Logo (Version: 1.0.1)
ESU for Microsoft Windows 7 (Version: 1.0.0)
Evernote v. 4.2.2 (Version: 4.2.2.3979)
Farm Frenzy (Version: 2.2.0.95)
FATE - The Traitor Soul (Version: 2.2.0.95)
GameSpy Arcade
Hewlett-Packard ACLM.NET v1.2.1.1 (Version: 1.00.0000)
HP Auto (Version: 1.0.12494.3472)
HP Client Services (Version: 1.1.12938.3539)
HP Connection Manager (Version: 4.1.25.1)
HP Customer Experience Enhancements (Version: 6.0.1.7)
HP Documentation (Version: 1.1.0.0)
HP Games (Version: 1.0.2.4)
HP MovieStore (Version: 1.0.047)
HP MovieStore (Version: 2.0)
HP On Screen Display (Version: 1.3.5)
HP Power Manager (Version: 1.4.7)
HP Quick Launch (Version: 2.7.2)
HP Setup (Version: 8.6.4530.3651)
HP Setup Manager (Version: 1.1.13253.3682)
HP Software Framework (Version: 4.5.10.1)
HP Support Assistant (Version: 7.0.39.15)
IDT Audio (Version: 1.0.6341.0)
IHMC CmapTools v5.04.02 (Version: 5.0.4.2)
Internet Explorer Toolbar 4.7 by SweetPacks (Version: 4.7.0008)
iTunes (Version: 10.6.1.7)
Java Auto Updater (Version: 2.0.3.1)
Java™ 6 Update 24 (64-bit) (Version: 6.0.240)
Java™ 6 Update 24 (Version: 6.0.240)
Junk Mail filter update (Version: 15.4.3502.0922)
Kaspersky Anti-Virus 2011 (Version: 11.0.2.556)
Magic Desktop (Version: 3.0)
Mah Jong Medley (Version: 2.2.0.95)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 (Version: 14.0.4763.1000)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Home and Student 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft WSE 3.0 Runtime (Version: 3.0.5305.0)
Mozilla Firefox 22.0 (x86 en-US) (Version: 22.0)
Mozilla Maintenance Service (Version: 22.0)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Mystery P.I. - Stolen in San Francisco (Version: 2.2.0.95)
Namco All-Stars PAC-MAN (Version: 2.2.0.95)
PDFCreator (Version: 1.2.0)
Penguins! (Version: 2.2.0.95)
Plants vs. Zombies - Game of the Year (Version: 2.2.0.95)
PlayReady PC Runtime x86 (Version: 1.3.0)
Poker Superstars III (Version: 2.2.0.95)
Polar Bowler (Version: 2.2.0.95)
Polar Golfer (Version: 2.2.0.95)
RealDownloader (Version: 1.3.1)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0)
Realtek Ethernet Controller Driver (Version: 7.40.126.2011)
Realtek PCIE Card Reader (Version: 6.1.7601.83)
REALTEK Wireless LAN Driver (Version: 1.00.11.0706)
RealUpgrade 1.1 (Version: 1.1.0)
Recovery Manager (Version: 2.0.0)
Respondus LockDown Browser (Version: 1.02.0001)
RoxioNow Player (Version: 1.9.5.103)
Slingo Supreme (Version: 2.2.0.95)
Synaptics Pointing Device Driver (Version: 15.3.11.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (Version: 1)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition
Update Installer for WildTangent Games App
Virtual Villagers 4 - The Tree of Life (Version: 2.2.0.95)
Wheel of Fortune 2 (Version: 2.2.0.95)
WildTangent Games App (HP Games) (Version: 4.0.5.31)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3508.1109)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Zuma Deluxe (Version: 2.2.0.95)

========================= Memory info: ===================================

Percentage of memory in use: 55%
Total physical RAM: 3561.41 MB
Available physical RAM: 1577.56 MB
Total Pagefile: 7121 MB
Available Pagefile: 4737.25 MB
Total Virtual: 4095.88 MB
Available Virtual: 3982.17 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:284.07 GB) (Free:205.71 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:13.72 GB) (Free:1.53 GB) NTFS
3 Drive e: (HES_JUST_NOT_THAT_INTO_YOU) (CDROM) (Total:4.29 GB) (Free:0 GB) UDF

========================= Users: ========================================

User accounts for \\USER-HP

Administrator            Guest                    User                     


**** End of log ****
 

 



11:31:03.0127 4460  TDSS rootkit removing tool 2.8.18.0 Jun 10 2013 21:44:19
11:31:03.0485 4460  ============================================================
11:31:03.0485 4460  Current date / time: 2013/08/17 11:31:03.0485
11:31:03.0485 4460  SystemInfo:
11:31:03.0485 4460  
11:31:03.0485 4460  OS Version: 6.1.7601 ServicePack: 1.0
11:31:03.0485 4460  Product type: Workstation
11:31:03.0485 4460  ComputerName: USER-HP
11:31:03.0485 4460  UserName: User
11:31:03.0485 4460  Windows directory: C:\Windows
11:31:03.0485 4460  System windows directory: C:\Windows
11:31:03.0485 4460  Running under WOW64
11:31:03.0485 4460  Processor architecture: Intel x64
11:31:03.0485 4460  Number of processors: 2
11:31:03.0485 4460  Page size: 0x1000
11:31:03.0485 4460  Boot type: Normal boot
11:31:03.0485 4460  ============================================================
11:31:03.0485 4460  BG loaded
11:31:03.0891 4460  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:31:03.0907 4460  ============================================================
11:31:03.0907 4460  \Device\Harddisk0\DR0:
11:31:03.0907 4460  MBR partitions:
11:31:03.0907 4460  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
11:31:03.0907 4460  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x23825000
11:31:03.0907 4460  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x23889000, BlocksNum 0x1B71800
11:31:03.0907 4460  \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x253FA800, BlocksNum 0x33AB0
11:31:03.0907 4460  ============================================================
11:31:03.0953 4460  C: <-> \Device\Harddisk0\DR0\Partition2
11:31:04.0047 4460  D: <-> \Device\Harddisk0\DR0\Partition3
11:31:04.0047 4460  ============================================================
11:31:04.0047 4460  Initialize success
11:31:04.0047 4460  ============================================================
11:33:50.0080 6988  ============================================================
11:33:50.0096 6988  Scan started
11:33:50.0096 6988  Mode: Manual;
11:33:50.0096 6988  ============================================================
11:33:51.0500 6988  ================ Scan system memory ========================
11:33:51.0500 6988  System memory - ok
11:33:51.0500 6988  ================ Scan services =============================
11:33:52.0108 6988  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
11:33:52.0124 6988  1394ohci - ok
11:33:52.0186 6988  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
11:33:52.0202 6988  ACPI - ok
11:33:52.0264 6988  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
11:33:52.0264 6988  AcpiPmi - ok
11:33:52.0436 6988  [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:33:52.0436 6988  AdobeARMservice - ok
11:33:52.0841 6988  [ 9915504F602D277EE47FD843A677FD15 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:33:52.0857 6988  AdobeFlashPlayerUpdateSvc - ok
11:33:52.0950 6988  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
11:33:52.0966 6988  adp94xx - ok
11:33:53.0044 6988  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\drivers\adpahci.sys
11:33:53.0060 6988  adpahci - ok
11:33:53.0091 6988  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
11:33:53.0106 6988  adpu320 - ok
11:33:53.0138 6988  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
11:33:53.0153 6988  AeLookupSvc - ok
11:33:53.0216 6988  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
11:33:53.0247 6988  AFD - ok
11:33:53.0294 6988  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
11:33:53.0309 6988  agp440 - ok
11:33:53.0340 6988  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
11:33:53.0340 6988  ALG - ok
11:33:53.0418 6988  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
11:33:53.0418 6988  aliide - ok
11:33:53.0481 6988  [ 850F0C8034225FA3F50D551A905FA503 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
11:33:53.0496 6988  AMD External Events Utility - ok
11:33:53.0590 6988  AMD FUEL Service - ok
11:33:53.0637 6988  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
11:33:53.0637 6988  amdide - ok
11:33:53.0699 6988  [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64        C:\Windows\system32\DRIVERS\amdiox64.sys
11:33:53.0699 6988  amdiox64 - ok
11:33:53.0762 6988  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
11:33:53.0762 6988  AmdK8 - ok
11:33:54.0152 6988  [ 7979BF4A66EFDADF3D00A052409609B1 ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
11:33:54.0448 6988  amdkmdag - ok
11:33:54.0510 6988  [ 7D5CDB0161E91951D3DD99E55CEA4D01 ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
11:33:54.0526 6988  amdkmdap - ok
11:33:54.0573 6988  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
11:33:54.0588 6988  AmdPPM - ok
11:33:54.0666 6988  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
11:33:54.0682 6988  amdsata - ok
11:33:54.0713 6988  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
11:33:54.0729 6988  amdsbs - ok
11:33:54.0744 6988  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
11:33:54.0760 6988  amdxata - ok
11:33:54.0822 6988  [ BB4FE7889DB9CBBE61A308E99697F53C ] amd_sata        C:\Windows\system32\DRIVERS\amd_sata.sys
11:33:54.0838 6988  amd_sata - ok
11:33:54.0854 6988  [ 5631CBA53F1CBEA3F9E88348E6723391 ] amd_xata        C:\Windows\system32\DRIVERS\amd_xata.sys
11:33:54.0869 6988  amd_xata - ok
11:33:54.0932 6988  [ 4DE0D5D747A73797C95A97DCCE5018B5 ] androidusb      C:\Windows\system32\Drivers\ssadadb.sys
11:33:54.0932 6988  androidusb - ok
11:33:55.0010 6988  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
11:33:55.0010 6988  AppID - ok
11:33:55.0041 6988  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
11:33:55.0056 6988  AppIDSvc - ok
11:33:55.0103 6988  [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo         C:\Windows\System32\appinfo.dll
11:33:55.0119 6988  Appinfo - ok
11:33:55.0275 6988  [ 7EF47644B74EBE721CC32211D3C35E76 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:33:55.0290 6988  Apple Mobile Device - ok
11:33:55.0353 6988  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\drivers\arc.sys
11:33:55.0368 6988  arc - ok
11:33:55.0384 6988  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\drivers\arcsas.sys
11:33:55.0400 6988  arcsas - ok
11:33:55.0712 6988  [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
11:33:55.0727 6988  aspnet_state - ok
11:33:55.0774 6988  [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk        C:\Windows\system32\drivers\aswFsBlk.sys
11:33:55.0790 6988  aswFsBlk - ok
11:33:55.0852 6988  [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
11:33:55.0852 6988  aswMonFlt - ok
11:33:55.0883 6988  [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr          C:\Windows\System32\Drivers\aswrdr2.sys
11:33:55.0899 6988  aswRdr - ok
11:33:55.0977 6988  [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
11:33:55.0977 6988  aswRvrt - ok
11:33:56.0086 6988  [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
11:33:56.0180 6988  aswSnx - ok
11:33:56.0242 6988  [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP           C:\Windows\system32\drivers\aswSP.sys
11:33:56.0242 6988  aswSP - ok
11:33:56.0289 6988  [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi          C:\Windows\system32\drivers\aswTdi.sys
11:33:56.0304 6988  aswTdi - ok
11:33:56.0382 6988  [ 22F521108881DC59837F6FC614E0568F ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
11:33:56.0382 6988  aswVmm - ok
11:33:56.0445 6988  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
11:33:56.0445 6988  AsyncMac - ok
11:33:56.0507 6988  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
11:33:56.0507 6988  atapi - ok
11:33:56.0616 6988  [ CBD14F698DEF12EE3557604B726CB8EB ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
11:33:56.0616 6988  AtiHDAudioService - ok
11:33:56.0694 6988  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:33:56.0788 6988  AudioEndpointBuilder - ok
11:33:56.0850 6988  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
11:33:56.0882 6988  AudioSrv - ok
11:33:57.0006 6988  [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:33:57.0006 6988  avast! Antivirus - ok
11:33:57.0225 6988  [ B2B3FCBA37671C853879DF7DDE8A839A ] AVP             C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe
11:33:57.0240 6988  AVP - ok
11:33:57.0318 6988  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
11:33:57.0334 6988  AxInstSV - ok
11:33:57.0381 6988  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
11:33:57.0412 6988  b06bdrv - ok
11:33:57.0474 6988  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
11:33:57.0490 6988  b57nd60a - ok
11:33:57.0584 6988  [ 9E84A931DBEE0292E38ED672F6293A99 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl664.sys
11:33:57.0677 6988  BCM43XX - ok
11:33:57.0708 6988  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
11:33:57.0724 6988  BDESVC - ok
11:33:57.0740 6988  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
11:33:57.0755 6988  Beep - ok
11:33:57.0880 6988  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
11:33:57.0958 6988  BFE - ok
11:33:58.0005 6988  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\system32\qmgr.dll
11:33:58.0036 6988  BITS - ok
11:33:58.0098 6988  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
11:33:58.0114 6988  blbdrive - ok
11:33:58.0192 6988  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:33:58.0192 6988  Bonjour Service - ok
11:33:58.0239 6988  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
11:33:58.0270 6988  bowser - ok
11:33:58.0332 6988  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
11:33:58.0348 6988  BrFiltLo - ok
11:33:58.0379 6988  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
11:33:58.0395 6988  BrFiltUp - ok
11:33:58.0426 6988  [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
11:33:58.0426 6988  BridgeMP - ok
11:33:58.0488 6988  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
11:33:58.0504 6988  Browser - ok
11:33:58.0535 6988  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
11:33:58.0551 6988  Brserid - ok
11:33:58.0582 6988  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
11:33:58.0582 6988  BrSerWdm - ok
11:33:58.0613 6988  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
11:33:58.0629 6988  BrUsbMdm - ok
11:33:58.0644 6988  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
11:33:58.0660 6988  BrUsbSer - ok
11:33:58.0707 6988  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
11:33:58.0707 6988  BTHMODEM - ok
11:33:58.0785 6988  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
11:33:58.0785 6988  bthserv - ok
11:33:58.0832 6988  catchme - ok
11:33:58.0894 6988  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
11:33:58.0894 6988  cdfs - ok
11:33:58.0956 6988  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
11:33:58.0972 6988  cdrom - ok
11:33:59.0019 6988  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
11:33:59.0034 6988  CertPropSvc - ok
11:33:59.0097 6988  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\drivers\circlass.sys
11:33:59.0112 6988  circlass - ok
11:33:59.0175 6988  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
11:33:59.0190 6988  CLFS - ok
11:33:59.0315 6988  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:33:59.0331 6988  clr_optimization_v2.0.50727_32 - ok
11:33:59.0424 6988  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:33:59.0440 6988  clr_optimization_v2.0.50727_64 - ok
11:33:59.0658 6988  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:33:59.0658 6988  clr_optimization_v4.0.30319_32 - ok
11:33:59.0721 6988  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:33:59.0721 6988  clr_optimization_v4.0.30319_64 - ok
11:33:59.0783 6988  [ 50F92C943F18B070F166D019DFAB3D9A ] clwvd           C:\Windows\system32\DRIVERS\clwvd.sys
11:33:59.0783 6988  clwvd - ok
11:33:59.0846 6988  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
11:33:59.0861 6988  CmBatt - ok
11:33:59.0877 6988  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
11:33:59.0877 6988  cmdide - ok
11:33:59.0939 6988  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
11:33:59.0955 6988  CNG - ok
11:34:00.0002 6988  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
11:34:00.0017 6988  Compbatt - ok
11:34:00.0080 6988  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
11:34:00.0095 6988  CompositeBus - ok
11:34:00.0126 6988  COMSysApp - ok
11:34:00.0173 6988  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
11:34:00.0189 6988  crcdisk - ok
11:34:00.0251 6988  [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc        C:\Windows\system32\cryptsvc.dll
11:34:00.0251 6988  CryptSvc - ok
11:34:00.0314 6988  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
11:34:00.0329 6988  DcomLaunch - ok
11:34:00.0360 6988  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
11:34:00.0376 6988  defragsvc - ok
11:34:00.0438 6988  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
11:34:00.0438 6988  DfsC - ok
11:34:00.0563 6988  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
11:34:00.0579 6988  Dhcp - ok
11:34:00.0610 6988  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
11:34:00.0626 6988  discache - ok
11:34:00.0704 6988  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\drivers\disk.sys
11:34:00.0719 6988  Disk - ok
11:34:00.0766 6988  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
11:34:00.0797 6988  Dnscache - ok
11:34:00.0828 6988  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
11:34:00.0844 6988  dot3svc - ok
11:34:00.0906 6988  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
11:34:00.0906 6988  DPS - ok
11:34:00.0969 6988  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
11:34:00.0984 6988  drmkaud - ok
11:34:01.0062 6988  [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
11:34:01.0156 6988  DXGKrnl - ok
11:34:01.0218 6988  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
11:34:01.0234 6988  EapHost - ok
11:34:01.0374 6988  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\drivers\evbda.sys
11:34:01.0437 6988  ebdrv - ok
11:34:01.0515 6988  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
11:34:01.0546 6988  EFS - ok
11:34:01.0655 6988  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
11:34:01.0671 6988  ehRecvr - ok
11:34:01.0686 6988  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
11:34:01.0702 6988  ehSched - ok
11:34:01.0780 6988  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
11:34:01.0811 6988  elxstor - ok
11:34:01.0842 6988  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
11:34:01.0842 6988  ErrDev - ok
11:34:01.0936 6988  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
11:34:01.0952 6988  EventSystem - ok
11:34:02.0014 6988  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
11:34:02.0030 6988  exfat - ok
11:34:02.0030 6988  ezSharedSvc - ok
11:34:02.0045 6988  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
11:34:02.0061 6988  fastfat - ok
11:34:02.0170 6988  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
11:34:02.0201 6988  Fax - ok
11:34:02.0248 6988  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\drivers\fdc.sys
11:34:02.0248 6988  fdc - ok
11:34:02.0310 6988  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
11:34:02.0326 6988  fdPHost - ok
11:34:02.0326 6988  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
11:34:02.0342 6988  FDResPub - ok
11:34:02.0388 6988  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
11:34:02.0404 6988  FileInfo - ok
11:34:02.0420 6988  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
11:34:02.0435 6988  Filetrace - ok
11:34:02.0498 6988  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
11:34:02.0498 6988  flpydisk - ok
11:34:02.0622 6988  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
11:34:02.0622 6988  FltMgr - ok
11:34:02.0747 6988  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\Windows\system32\FntCache.dll
11:34:02.0841 6988  FontCache - ok
11:34:02.0903 6988  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:34:02.0919 6988  FontCache3.0.0.0 - ok
11:34:02.0950 6988  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
11:34:02.0950 6988  FsDepends - ok
11:34:02.0981 6988  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
11:34:02.0997 6988  Fs_Rec - ok
11:34:03.0059 6988  [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
11:34:03.0090 6988  fvevol - ok
11:34:03.0153 6988  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
11:34:03.0153 6988  gagp30kx - ok
11:34:03.0262 6988  [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
11:34:03.0278 6988  GamesAppService - ok
11:34:03.0340 6988  [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
11:34:03.0356 6988  GEARAspiWDM - ok
11:34:03.0402 6988  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
11:34:03.0480 6988  gpsvc - ok
11:34:03.0543 6988  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
11:34:03.0543 6988  hcw85cir - ok
11:34:03.0668 6988  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:34:03.0683 6988  HdAudAddService - ok
11:34:03.0761 6988  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
11:34:03.0761 6988  HDAudBus - ok
11:34:03.0792 6988  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
11:34:03.0792 6988  HidBatt - ok
11:34:03.0839 6988  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
11:34:03.0839 6988  HidBth - ok
11:34:03.0886 6988  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\drivers\hidir.sys
11:34:03.0902 6988  HidIr - ok
11:34:03.0933 6988  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\System32\hidserv.dll
11:34:03.0948 6988  hidserv - ok
11:34:04.0089 6988  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
11:34:04.0089 6988  HidUsb - ok
11:34:04.0136 6988  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
11:34:04.0151 6988  hkmsvc - ok
11:34:04.0214 6988  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:34:04.0229 6988  HomeGroupListener - ok
11:34:04.0260 6988  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:34:04.0276 6988  HomeGroupProvider - ok
11:34:04.0416 6988  [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
11:34:04.0416 6988  HP Support Assistant Service - ok
11:34:04.0510 6988  [ 6A181452D4E240B8ECC7614B9A19BDE9 ] HPClientSvc     C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
11:34:04.0526 6988  HPClientSvc - ok
11:34:04.0635 6988  [ E07F8E78D08D9269E3365C2A4F637191 ] hpCMSrv         C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
11:34:04.0682 6988  hpCMSrv - ok
11:34:04.0806 6988  [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
11:34:04.0838 6988  hpqwmiex - ok
11:34:04.0900 6988  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
11:34:04.0900 6988  HpSAMD - ok
11:34:05.0025 6988  [ 2BEC76BDCD1BC080210325E7B5094834 ] HPWMISVC        C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
11:34:05.0025 6988  HPWMISVC - ok
11:34:05.0150 6988  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
11:34:05.0228 6988  HTTP - ok
11:34:05.0259 6988  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
11:34:05.0259 6988  hwpolicy - ok
11:34:05.0321 6988  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
11:34:05.0337 6988  i8042prt - ok
11:34:05.0415 6988  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
11:34:05.0430 6988  iaStorV - ok
11:34:05.0649 6988  [ D72BF0AE484F88399E8343E821C10D6A ] IconMan_R       C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
11:34:05.0696 6988  IconMan_R - ok
11:34:05.0774 6988  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:34:05.0805 6988  idsvc - ok
11:34:05.0867 6988  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
11:34:05.0883 6988  iirsp - ok
11:34:05.0930 6988  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
11:34:06.0023 6988  IKEEXT - ok
11:34:06.0070 6988  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
11:34:06.0070 6988  intelide - ok
11:34:06.0132 6988  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
11:34:06.0132 6988  intelppm - ok
11:34:06.0179 6988  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
11:34:06.0195 6988  IPBusEnum - ok
11:34:06.0242 6988  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:34:06.0242 6988  IpFilterDriver - ok
11:34:06.0320 6988  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
11:34:06.0351 6988  iphlpsvc - ok
11:34:06.0382 6988  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
11:34:06.0398 6988  IPMIDRV - ok
11:34:06.0413 6988  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
11:34:06.0429 6988  IPNAT - ok
11:34:06.0491 6988  [ 50D6CCC6FF5561F9F56946B3E6164FB8 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
11:34:06.0522 6988  iPod Service - ok
11:34:06.0569 6988  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
11:34:06.0585 6988  IRENUM - ok
11:34:06.0647 6988  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
11:34:06.0663 6988  isapnp - ok
11:34:06.0725 6988  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
11:34:06.0725 6988  iScsiPrt - ok
11:34:06.0772 6988  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
11:34:06.0788 6988  kbdclass - ok
11:34:06.0850 6988  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
11:34:06.0850 6988  kbdhid - ok
11:34:06.0881 6988  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
11:34:06.0912 6988  KeyIso - ok
11:34:06.0975 6988  [ 8D7120743A0973CEAB548B475C9D4289 ] KL1             C:\Windows\system32\DRIVERS\kl1.sys
11:34:06.0990 6988  KL1 - ok
11:34:07.0037 6988  [ CD146D8E525D6EEBDCAF24120A8AB9CE ] kl2             C:\Windows\system32\DRIVERS\kl2.sys
11:34:07.0053 6988  kl2 - ok
11:34:07.0146 6988  [ C1786C2F8DE0F62E076F7EF8DEA4E87A ] KLIF            C:\Windows\system32\DRIVERS\klif.sys
11:34:07.0162 6988  KLIF - ok
11:34:07.0193 6988  [ 2A64B3A9EED93A2E96537B67C079FC96 ] KLIM6           C:\Windows\system32\DRIVERS\klim6.sys
11:34:07.0193 6988  KLIM6 - ok
11:34:07.0224 6988  [ 9468D07E91BA136D82415F5DFC1FE168 ] klmouflt        C:\Windows\system32\DRIVERS\klmouflt.sys
11:34:07.0224 6988  klmouflt - ok
11:34:07.0271 6988  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
11:34:07.0287 6988  KSecDD - ok
11:34:07.0365 6988  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
11:34:07.0380 6988  KSecPkg - ok
11:34:07.0443 6988  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
11:34:07.0458 6988  ksthunk - ok
11:34:07.0490 6988  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
11:34:07.0505 6988  KtmRm - ok
11:34:07.0583 6988  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\System32\srvsvc.dll
11:34:07.0614 6988  LanmanServer - ok
11:34:07.0646 6988  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:34:07.0677 6988  LanmanWorkstation - ok
11:34:07.0739 6988  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
11:34:07.0755 6988  lltdio - ok
11:34:07.0786 6988  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
11:34:07.0802 6988  lltdsvc - ok
11:34:07.0848 6988  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
11:34:07.0864 6988  lmhosts - ok
11:34:07.0911 6988  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
11:34:07.0926 6988  LSI_FC - ok
11:34:07.0958 6988  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
11:34:07.0973 6988  LSI_SAS - ok
11:34:07.0989 6988  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
11:34:08.0004 6988  LSI_SAS2 - ok
11:34:08.0020 6988  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
11:34:08.0036 6988  LSI_SCSI - ok
11:34:08.0098 6988  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
11:34:08.0114 6988  luafv - ok
11:34:08.0192 6988  [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
11:34:08.0192 6988  MBAMProtector - ok
11:34:08.0238 6988  [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler   C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:34:08.0254 6988  MBAMScheduler - ok
11:34:08.0316 6988  [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService     C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
11:34:08.0332 6988  MBAMService - ok
11:34:08.0394 6988  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
11:34:08.0394 6988  Mcx2Svc - ok
11:34:08.0441 6988  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\drivers\megasas.sys
11:34:08.0457 6988  megasas - ok
11:34:08.0504 6988  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
11:34:08.0519 6988  MegaSR - ok
11:34:08.0550 6988  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
11:34:08.0566 6988  MMCSS - ok
11:34:08.0582 6988  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
11:34:08.0597 6988  Modem - ok
11:34:08.0628 6988  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
11:34:08.0644 6988  monitor - ok
11:34:08.0660 6988  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
11:34:08.0675 6988  mouclass - ok
11:34:08.0722 6988  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\drivers\mouhid.sys
11:34:08.0722 6988  mouhid - ok
11:34:08.0738 6988  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
11:34:08.0753 6988  mountmgr - ok
11:34:08.0847 6988  [ 528A5C2570F468155A1B3CF0A2FF5EBD ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
11:34:08.0862 6988  MozillaMaintenance - ok
11:34:08.0894 6988  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
11:34:08.0909 6988  mpio - ok
11:34:08.0940 6988  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
11:34:08.0956 6988  mpsdrv - ok
11:34:09.0003 6988  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
11:34:09.0081 6988  MpsSvc - ok
11:34:09.0096 6988  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
11:34:09.0112 6988  MRxDAV - ok
11:34:09.0143 6988  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
11:34:09.0159 6988  mrxsmb - ok
11:34:09.0206 6988  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:34:09.0206 6988  mrxsmb10 - ok
11:34:09.0237 6988  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:34:09.0252 6988  mrxsmb20 - ok
11:34:09.0299 6988  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
11:34:09.0299 6988  msahci - ok
11:34:09.0377 6988  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
11:34:09.0393 6988  msdsm - ok
11:34:09.0455 6988  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
11:34:09.0471 6988  MSDTC - ok
11:34:09.0518 6988  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
11:34:09.0518 6988  Msfs - ok
11:34:09.0533 6988  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
11:34:09.0533 6988  mshidkmdf - ok
11:34:09.0580 6988  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
11:34:09.0596 6988  msisadrv - ok
11:34:09.0642 6988  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
11:34:09.0658 6988  MSiSCSI - ok
11:34:09.0674 6988  msiserver - ok
11:34:09.0736 6988  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
11:34:09.0736 6988  MSKSSRV - ok
11:34:09.0752 6988  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
11:34:09.0752 6988  MSPCLOCK - ok
11:34:09.0767 6988  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
11:34:09.0783 6988  MSPQM - ok
11:34:09.0845 6988  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
11:34:09.0861 6988  MsRPC - ok
11:34:09.0908 6988  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
11:34:09.0908 6988  mssmbios - ok
11:34:09.0923 6988  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
11:34:09.0923 6988  MSTEE - ok
11:34:09.0970 6988  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
11:34:09.0970 6988  MTConfig - ok
11:34:10.0001 6988  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
11:34:10.0017 6988  Mup - ok
11:34:10.0079 6988  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
11:34:10.0110 6988  napagent - ok
11:34:10.0188 6988  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
11:34:10.0204 6988  NativeWifiP - ok
11:34:10.0266 6988  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
11:34:10.0298 6988  NDIS - ok
11:34:10.0344 6988  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
11:34:10.0344 6988  NdisCap - ok
11:34:10.0376 6988  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
11:34:10.0391 6988  NdisTapi - ok
11:34:10.0407 6988  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
11:34:10.0407 6988  Ndisuio - ok
11:34:10.0438 6988  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
11:34:10.0438 6988  NdisWan - ok
11:34:10.0500 6988  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
11:34:10.0516 6988  NDProxy - ok
11:34:10.0547 6988  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
11:34:10.0547 6988  NetBIOS - ok
11:34:10.0625 6988  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
11:34:10.0641 6988  NetBT - ok
11:34:10.0656 6988  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
11:34:10.0688 6988  Netlogon - ok
11:34:10.0734 6988  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
11:34:10.0750 6988  Netman - ok
11:34:10.0828 6988  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:34:10.0844 6988  NetMsmqActivator - ok
11:34:10.0875 6988  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:34:10.0890 6988  NetPipeActivator - ok
11:34:10.0968 6988  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
11:34:10.0984 6988  netprofm - ok
11:34:10.0984 6988  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:34:11.0015 6988  NetTcpActivator - ok
11:34:11.0015 6988  [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:34:11.0046 6988  NetTcpPortSharing - ok
11:34:11.0109 6988  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
11:34:11.0124 6988  nfrd960 - ok
11:34:11.0156 6988  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
11:34:11.0171 6988  NlaSvc - ok
11:34:11.0202 6988  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
11:34:11.0218 6988  Npfs - ok
11:34:11.0249 6988  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
11:34:11.0265 6988  nsi - ok
11:34:11.0280 6988  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
11:34:11.0296 6988  nsiproxy - ok
11:34:11.0452 6988  [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
11:34:11.0530 6988  Ntfs - ok
11:34:11.0561 6988  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
11:34:11.0577 6988  Null - ok
11:34:11.0702 6988  [ A85B4F2EF3A7304A5399EF0526423040 ] NVENETFD        C:\Windows\system32\DRIVERS\nvm62x64.sys
11:34:11.0702 6988  NVENETFD - ok
11:34:11.0764 6988  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
11:34:11.0780 6988  nvraid - ok
11:34:11.0826 6988  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
11:34:11.0842 6988  nvstor - ok
11:34:11.0873 6988  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
11:34:11.0889 6988  nv_agp - ok
11:34:11.0920 6988  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
11:34:11.0920 6988  ohci1394 - ok
11:34:12.0014 6988  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:34:12.0029 6988  ose - ok
11:34:12.0341 6988  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:34:12.0435 6988  osppsvc - ok
11:34:12.0482 6988  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
11:34:12.0513 6988  p2pimsvc - ok
11:34:12.0575 6988  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
11:34:12.0591 6988  p2psvc - ok
11:34:12.0638 6988  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\drivers\parport.sys
11:34:12.0638 6988  Parport - ok
11:34:12.0684 6988  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
11:34:12.0684 6988  partmgr - ok
11:34:12.0716 6988  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
11:34:12.0731 6988  PcaSvc - ok
11:34:12.0778 6988  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
11:34:12.0778 6988  pci - ok
11:34:12.0794 6988  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
11:34:12.0809 6988  pciide - ok
11:34:12.0840 6988  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
11:34:12.0856 6988  pcmcia - ok
11:34:12.0887 6988  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
11:34:12.0903 6988  pcw - ok
11:34:12.0981 6988  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
11:34:13.0028 6988  PEAUTH - ok
11:34:13.0246 6988  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
11:34:13.0262 6988  PerfHost - ok
11:34:13.0355 6988  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
11:34:13.0402 6988  pla - ok
11:34:13.0480 6988  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
11:34:13.0496 6988  PlugPlay - ok
11:34:13.0527 6988  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
11:34:13.0527 6988  PNRPAutoReg - ok
11:34:13.0558 6988  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
11:34:13.0574 6988  PNRPsvc - ok
11:34:13.0636 6988  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
11:34:13.0652 6988  PolicyAgent - ok
11:34:13.0683 6988  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
11:34:13.0698 6988  Power - ok
11:34:13.0776 6988  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
11:34:13.0792 6988  PptpMiniport - ok
11:34:13.0823 6988  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\drivers\processr.sys
11:34:13.0823 6988  Processor - ok
11:34:13.0870 6988  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
11:34:13.0886 6988  ProfSvc - ok
11:34:13.0917 6988  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:34:13.0948 6988  ProtectedStorage - ok
11:34:14.0010 6988  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
11:34:14.0026 6988  Psched - ok
11:34:14.0166 6988  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
11:34:14.0260 6988  ql2300 - ok
11:34:14.0291 6988  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
11:34:14.0307 6988  ql40xx - ok
11:34:14.0354 6988  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
11:34:14.0369 6988  QWAVE - ok
11:34:14.0416 6988  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
11:34:14.0432 6988  QWAVEdrv - ok
11:34:14.0432 6988  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
11:34:14.0447 6988  RasAcd - ok
11:34:14.0510 6988  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
11:34:14.0525 6988  RasAgileVpn - ok
11:34:14.0556 6988  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
11:34:14.0572 6988  RasAuto - ok
11:34:14.0588 6988  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
11:34:14.0603 6988  Rasl2tp - ok
11:34:14.0650 6988  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
11:34:14.0666 6988  RasMan - ok
11:34:14.0681 6988  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
11:34:14.0697 6988  RasPppoe - ok
11:34:14.0712 6988  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
11:34:14.0728 6988  RasSstp - ok
11:34:14.0790 6988  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
11:34:14.0806 6988  rdbss - ok
11:34:14.0822 6988  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
11:34:14.0837 6988  rdpbus - ok
11:34:14.0868 6988  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
11:34:14.0884 6988  RDPCDD - ok
11:34:14.0915 6988  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
11:34:14.0915 6988  RDPENCDD - ok
11:34:14.0946 6988  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
11:34:14.0946 6988  RDPREFMP - ok
11:34:14.0993 6988  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
11:34:15.0009 6988  RDPWD - ok
11:34:15.0056 6988  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
11:34:15.0056 6988  rdyboost - ok
11:34:15.0134 6988  [ 89525CC2DBAD44F7199B9CC188B3F9C5 ] RealNetworks Downloader Resolver Service C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
11:34:15.0149 6988  RealNetworks Downloader Resolver Service - ok
11:34:15.0180 6988  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
11:34:15.0196 6988  RemoteAccess - ok
11:34:15.0227 6988  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
11:34:15.0243 6988  RemoteRegistry - ok
11:34:15.0290 6988  [ 7B04C9843921AB1F695FB395422C5360 ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
11:34:15.0305 6988  RimUsb - ok
11:34:15.0383 6988  [ 085D18C71AB2611A3D61528132B6501E ] RoxioNow Service C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
11:34:15.0414 6988  RoxioNow Service - ok
11:34:15.0446 6988  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
11:34:15.0461 6988  RpcEptMapper - ok
11:34:15.0508 6988  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
11:34:15.0508 6988  RpcLocator - ok
11:34:15.0586 6988  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
11:34:15.0617 6988  RpcSs - ok
11:34:15.0695 6988  [ 1F5E7AF59B390261A85F5BEDB1BB88B3 ] RSPCIESTOR      C:\Windows\system32\DRIVERS\RtsPStor.sys
11:34:15.0711 6988  RSPCIESTOR - ok
11:34:15.0773 6988  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
11:34:15.0773 6988  rspndr - ok
11:34:15.0851 6988  [ EA5532868BA76923D75BCB2A1448D810 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
11:34:15.0867 6988  RTL8167 - ok
11:34:15.0976 6988  [ 508D997A5E9F400FADE6C85251BF13DF ] RTL8192Ce       C:\Windows\system32\DRIVERS\rtl8192Ce.sys
11:34:16.0007 6988  RTL8192Ce - ok
11:34:16.0023 6988  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
11:34:16.0054 6988  SamSs - ok
11:34:16.0085 6988  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
11:34:16.0101 6988  sbp2port - ok
11:34:16.0148 6988  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
11:34:16.0163 6988  SCardSvr - ok
11:34:16.0210 6988  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
11:34:16.0210 6988  scfilter - ok
11:34:16.0304 6988  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
11:34:16.0397 6988  Schedule - ok
11:34:16.0428 6988  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
11:34:16.0444 6988  SCPolicySvc - ok
11:34:16.0506 6988  [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
11:34:16.0506 6988  sdbus - ok
11:34:16.0553 6988  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
11:34:16.0569 6988  SDRSVC - ok
11:34:16.0600 6988  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
11:34:16.0616 6988  secdrv - ok
11:34:16.0662 6988  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
11:34:16.0662 6988  seclogon - ok
11:34:16.0678 6988  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\system32\sens.dll
11:34:16.0709 6988  SENS - ok
11:34:16.0772 6988  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
11:34:16.0787 6988  SensrSvc - ok
11:34:16.0834 6988  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\drivers\serenum.sys
11:34:16.0850 6988  Serenum - ok
11:34:16.0865 6988  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\drivers\serial.sys
11:34:16.0881 6988  Serial - ok
11:34:16.0912 6988  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
11:34:16.0928 6988  sermouse - ok
11:34:16.0974 6988  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
11:34:16.0990 6988  SessionEnv - ok
11:34:17.0021 6988  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
11:34:17.0037 6988  sffdisk - ok
11:34:17.0052 6988  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
11:34:17.0068 6988  sffp_mmc - ok
11:34:17.0084 6988  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
11:34:17.0099 6988  sffp_sd - ok
11:34:17.0130 6988  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
11:34:17.0130 6988  sfloppy - ok
11:34:17.0193 6988  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
11:34:17.0208 6988  SharedAccess - ok
11:34:17.0240 6988  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:34:17.0271 6988  ShellHWDetection - ok
11:34:17.0318 6988  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
11:34:17.0333 6988  SiSRaid2 - ok
11:34:17.0364 6988  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
11:34:17.0364 6988  SiSRaid4 - ok
11:34:17.0427 6988  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
11:34:17.0442 6988  Smb - ok
11:34:17.0520 6988  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
11:34:17.0536 6988  SNMPTRAP - ok
11:34:17.0552 6988  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
11:34:17.0567 6988  spldr - ok
11:34:17.0614 6988  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
11:34:17.0645 6988  Spooler - ok
11:34:17.0786 6988  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
11:34:17.0849 6988  sppsvc - ok
11:34:17.0865 6988  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
11:34:17.0880 6988  sppuinotify - ok
11:34:17.0943 6988  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
11:34:17.0958 6988  srv - ok
11:34:17.0974 6988  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
11:34:17.0989 6988  srv2 - ok
11:34:18.0067 6988  [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA       C:\Windows\system32\DRIVERS\VSTAZL6.SYS
11:34:18.0083 6988  SrvHsfHDA - ok
11:34:18.0177 6988  [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92       C:\Windows\system32\DRIVERS\VSTDPV6.SYS
11:34:18.0208 6988  SrvHsfV92 - ok
11:34:18.0255 6988  [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac     C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
11:34:18.0270 6988  SrvHsfWinac - ok
11:34:18.0301 6988  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
11:34:18.0317 6988  srvnet - ok
11:34:18.0348 6988  [ 8F8324ED1DE63FFC7B1A02CD2D963C72 ] ssadbus         C:\Windows\system32\DRIVERS\ssadbus.sys
11:34:18.0364 6988  ssadbus - ok
11:34:18.0411 6988  [ 58221EFCB74167B73667F0024C661CE0 ] ssadmdfl        C:\Windows\system32\DRIVERS\ssadmdfl.sys
11:34:18.0411 6988  ssadmdfl - ok
11:34:18.0473 6988  [ 4DA7C71BFAC5AD71255B7E4CAB980163 ] ssadmdm         C:\Windows\system32\DRIVERS\ssadmdm.sys
11:34:18.0473 6988  ssadmdm - ok
11:34:18.0535 6988  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
11:34:18.0551 6988  SSDPSRV - ok
11:34:18.0582 6988  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
11:34:18.0598 6988  SstpSvc - ok
11:34:18.0754 6988  [ A6B2EC3A2B6AD7C3F7B2F3495CADE4C0 ] STacSV          C:\Program Files\IDT\WDM\STacSV64.exe
11:34:18.0769 6988  STacSV - ok
11:34:18.0816 6988  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\drivers\stexstor.sys
11:34:18.0816 6988  stexstor - ok
11:34:18.0894 6988  [ EBA98394A7D58F7552C52192BD8FA7E6 ] STHDA           C:\Windows\system32\DRIVERS\stwrt64.sys
11:34:18.0925 6988  STHDA - ok
11:34:18.0988 6988  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
11:34:19.0066 6988  stisvc - ok
11:34:19.0097 6988  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
11:34:19.0113 6988  swenum - ok
11:34:19.0159 6988  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
11:34:19.0191 6988  swprv - ok
11:34:19.0300 6988  [ C447977ED2A4AE9346FE3A0579A34D7C ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
11:34:19.0393 6988  SynTP - ok
11:34:19.0487 6988  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
11:34:19.0581 6988  SysMain - ok
11:34:19.0612 6988  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:34:19.0627 6988  TabletInputService - ok
11:34:19.0690 6988  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
11:34:19.0705 6988  TapiSrv - ok
11:34:19.0737 6988  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
11:34:19.0752 6988  TBS - ok
11:34:19.0908 6988  [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
11:34:20.0002 6988  Tcpip - ok
11:34:20.0158 6988  [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
11:34:20.0189 6988  TCPIP6 - ok
11:34:20.0267 6988  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
11:34:20.0267 6988  tcpipreg - ok
11:34:20.0329 6988  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
11:34:20.0329 6988  TDPIPE - ok
11:34:20.0376 6988  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
11:34:20.0392 6988  TDTCP - ok
11:34:20.0407 6988  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
11:34:20.0407 6988  tdx - ok
11:34:20.0470 6988  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
11:34:20.0501 6988  TermDD - ok
11:34:20.0548 6988  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
11:34:20.0579 6988  TermService - ok
11:34:20.0595 6988  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
11:34:20.0610 6988  Themes - ok
11:34:20.0657 6988  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
11:34:20.0673 6988  THREADORDER - ok
11:34:20.0688 6988  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
11:34:20.0704 6988  TrkWks - ok
11:34:20.0782 6988  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:34:20.0782 6988  TrustedInstaller - ok
11:34:20.0813 6988  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
11:34:20.0829 6988  tssecsrv - ok
11:34:20.0875 6988  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
11:34:20.0891 6988  TsUsbFlt - ok
11:34:20.0922 6988  [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
11:34:20.0938 6988  TsUsbGD - ok
11:34:20.0953 6988  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
11:34:20.0953 6988  tunnel - ok
11:34:21.0000 6988  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
11:34:21.0000 6988  uagp35 - ok
11:34:21.0078 6988  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
11:34:21.0094 6988  udfs - ok
11:34:21.0141 6988  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
11:34:21.0156 6988  UI0Detect - ok
11:34:21.0203 6988  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
11:34:21.0219 6988  uliagpkx - ok
11:34:21.0281 6988  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
11:34:21.0281 6988  umbus - ok
11:34:21.0312 6988  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\drivers\umpass.sys
11:34:21.0328 6988  UmPass - ok
11:34:21.0375 6988  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
11:34:21.0390 6988  upnphost - ok
11:34:21.0468 6988  [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
11:34:21.0484 6988  USBAAPL64 - ok
11:34:21.0531 6988  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
11:34:21.0546 6988  usbccgp - ok
11:34:21.0593 6988  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
11:34:21.0624 6988  usbcir - ok
11:34:21.0655 6988  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
11:34:21.0655 6988  usbehci - ok
11:34:21.0733 6988  [ B7037444DC5138FC7D3D3968B4DE5C4B ] usbfilter       C:\Windows\system32\DRIVERS\usbfilter.sys
11:34:21.0733 6988  usbfilter - ok
11:34:21.0765 6988  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
11:34:21.0796 6988  usbhub - ok
11:34:21.0827 6988  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
11:34:21.0843 6988  usbohci - ok
11:34:21.0905 6988  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
11:34:21.0921 6988  usbprint - ok
11:34:21.0952 6988  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
11:34:21.0967 6988  usbscan - ok
11:34:21.0999 6988  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:34:22.0014 6988  USBSTOR - ok
11:34:22.0077 6988  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
11:34:22.0092 6988  usbuhci - ok
11:34:22.0155 6988  [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
11:34:22.0155 6988  usbvideo - ok
11:34:22.0201 6988  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
11:34:22.0217 6988  UxSms - ok
11:34:22.0248 6988  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
11:34:22.0279 6988  VaultSvc - ok
11:34:22.0311 6988  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
11:34:22.0326 6988  vdrvroot - ok
11:34:22.0389 6988  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
11:34:22.0420 6988  vds - ok
11:34:22.0467 6988  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
11:34:22.0467 6988  vga - ok
11:34:22.0498 6988  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
11:34:22.0513 6988  VgaSave - ok
11:34:22.0560 6988  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
11:34:22.0560 6988  vhdmp - ok
11:34:22.0591 6988  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
11:34:22.0591 6988  viaide - ok
11:34:22.0669 6988  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
11:34:22.0685 6988  volmgr - ok
11:34:22.0732 6988  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
11:34:22.0747 6988  volmgrx - ok
11:34:22.0810 6988  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
11:34:22.0841 6988  volsnap - ok
11:34:22.0950 6988  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
11:34:22.0966 6988  vsmraid - ok
11:34:23.0044 6988  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
11:34:23.0091 6988  VSS - ok
11:34:23.0122 6988  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
11:34:23.0137 6988  vwifibus - ok
11:34:23.0169 6988  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
11:34:23.0184 6988  vwififlt - ok
11:34:23.0200 6988  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
11:34:23.0215 6988  vwifimp - ok
11:34:23.0262 6988  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
11:34:23.0278 6988  W32Time - ok
11:34:23.0325 6988  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
11:34:23.0356 6988  WacomPen - ok
11:34:23.0403 6988  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
11:34:23.0418 6988  WANARP - ok
11:34:23.0449 6988  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
11:34:23.0465 6988  Wanarpv6 - ok
11:34:23.0543 6988  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
11:34:23.0574 6988  WatAdminSvc - ok
11:34:23.0652 6988  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
11:34:23.0699 6988  wbengine - ok
11:34:23.0715 6988  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
11:34:23.0730 6988  WbioSrvc - ok
11:34:23.0761 6988  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
11:34:23.0793 6988  wcncsvc - ok
11:34:23.0808 6988  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:34:23.0824 6988  WcsPlugInService - ok
11:34:23.0855 6988  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
11:34:23.0855 6988  Wd - ok
11:34:23.0933 6988  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
11:34:23.0949 6988  Wdf01000 - ok
11:34:23.0964 6988  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
11:34:23.0980 6988  WdiServiceHost - ok
11:34:23.0995 6988  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
11:34:24.0011 6988  WdiSystemHost - ok
11:34:24.0058 6988  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
11:34:24.0089 6988  WebClient - ok
11:34:24.0136 6988  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
11:34:24.0167 6988  Wecsvc - ok
11:34:24.0183 6988  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
11:34:24.0198 6988  wercplsupport - ok
11:34:24.0261 6988  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
11:34:24.0276 6988  WerSvc - ok
11:34:24.0339 6988  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
11:34:24.0354 6988  WfpLwf - ok
11:34:24.0354 6988  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
11:34:24.0370 6988  WIMMount - ok
11:34:24.0401 6988  WinDefend - ok
11:34:24.0417 6988  WinHttpAutoProxySvc - ok
11:34:24.0541 6988  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
11:34:24.0557 6988  Winmgmt - ok
11:34:24.0713 6988  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
11:34:24.0760 6988  WinRM - ok
11:34:24.0853 6988  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
11:34:24.0869 6988  WinUsb - ok
11:34:24.0931 6988  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
11:34:25.0009 6988  Wlansvc - ok
11:34:25.0087 6988  [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
11:34:25.0103 6988  wlcrasvc - ok
11:34:25.0275 6988  [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
11:34:25.0321 6988  wlidsvc - ok
11:34:25.0353 6988  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
11:34:25.0368 6988  WmiAcpi - ok
11:34:25.0399 6988  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
11:34:25.0415 6988  wmiApSrv - ok
11:34:25.0477 6988  WMPNetworkSvc - ok
11:34:25.0509 6988  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
11:34:25.0524 6988  WPCSvc - ok
11:34:25.0540 6988  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
11:34:25.0555 6988  WPDBusEnum - ok
11:34:25.0602 6988  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
11:34:25.0618 6988  ws2ifsl - ok
11:34:25.0649 6988  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\system32\wscsvc.dll
11:34:25.0665 6988  wscsvc - ok
11:34:25.0680 6988  WSearch - ok
11:34:25.0852 6988  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
11:34:25.0899 6988  wuauserv - ok
11:34:25.0945 6988  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
11:34:25.0961 6988  WudfPf - ok
11:34:25.0992 6988  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
11:34:26.0008 6988  WUDFRd - ok
11:34:26.0055 6988  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
11:34:26.0070 6988  wudfsvc - ok
11:34:26.0133 6988  [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc         C:\Windows\System32\wwansvc.dll
11:34:26.0164 6988  WwanSvc - ok
11:34:26.0195 6988  ================ Scan global ===============================
11:34:26.0242 6988  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
11:34:26.0289 6988  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
11:34:26.0320 6988  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
11:34:26.0367 6988  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
11:34:26.0429 6988  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
11:34:26.0445 6988  [Global] - ok
11:34:26.0445 6988  ================ Scan MBR ==================================
11:34:26.0460 6988  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:34:26.0710 6988  \Device\Harddisk0\DR0 - ok
11:34:26.0710 6988  ================ Scan VBR ==================================
11:34:26.0710 6988  [ 5FDF608341AF161FA2F62BE06C0F88FC ] \Device\Harddisk0\DR0\Partition1
11:34:26.0725 6988  \Device\Harddisk0\DR0\Partition1 - ok
11:34:26.0741 6988  [ 08F643E7ACBF6AF5A5428C8E7BBB1DD5 ] \Device\Harddisk0\DR0\Partition2
11:34:26.0741 6988  \Device\Harddisk0\DR0\Partition2 - ok
11:34:26.0772 6988  [ D2181E298CB0E4F71F251CBBB84BD666 ] \Device\Harddisk0\DR0\Partition3
11:34:26.0772 6988  \Device\Harddisk0\DR0\Partition3 - ok
11:34:26.0803 6988  [ E5217A07DF8D255F17834B8AE4CF734E ] \Device\Harddisk0\DR0\Partition4
11:34:26.0803 6988  \Device\Harddisk0\DR0\Partition4 - ok
11:34:26.0803 6988  ============================================================
11:34:26.0803 6988  Scan finished
11:34:26.0803 6988  ============================================================
11:34:26.0835 6308  Detected object count: 0
11:34:26.0835 6308  Actual detected object count: 0
11:34:42.0700 2516  Deinitialize success
 

 



#4 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 10:45 AM

i cannot run eset as i cannot get to the internet any longer from this computer



#5 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 10:53 AM

# AdwCleaner v2.306 - Logfile created 08/17/2013 at 11:44:25
# Updated 19/07/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : User - USER-HP
# Boot Mode : Normal
# Running from : C:\InstallCD\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry is clean.

-\\ Mozilla Firefox v22.0 (en-US)

*************************

AdwCleaner[R1].txt - [6895 octets] - [15/08/2013 18:19:32]
AdwCleaner[R2].txt - [6955 octets] - [15/08/2013 18:20:34]
AdwCleaner[S1].txt - [6519 octets] - [15/08/2013 18:25:33]
AdwCleaner[S2].txt - [721 octets] - [17/08/2013 11:44:25]

########## EOF - C:\AdwCleaner[S2].txt - [780 octets] ##########
 

 



#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,082 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:55 AM

Posted 17 August 2013 - 10:56 AM

For the connection try these...

Please click Start > Run, type inetcpl.cpl in the runbox and press enter.
Click the Connections tab and click the LAN settings option.
Verify if "Use a proxy..." is checked, if so, UNcheck it and click OK/OK to exit.
Now check if the internet is working again.

OR

Go to Start ... Run and type in cmd
A dos Window will appear.
Type in the dos window: netsh winsock reset
Click on the enter key.

Reboot your system to complete the process.

If needed : type these one line at a time, press enter after each line. See if it works after each.


netsh interface ipv4 reset
netsh interface ipv6 reset
ipconfig /flushdns


WIN7.. Please Download this file, Click Me
Right-click on winsockfix.bat and click on Run as Administrator.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 11:13 AM

still cannot get to internet



#8 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 11:30 AM

So I can get to the internet now, however when I open a new window in firefox it goes to something called "sweet packs" not sure how to get rid of this from occurring.



#9 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,082 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:55 AM

Posted 17 August 2013 - 11:59 AM

OK run ADWcleaner again

then Please download Malwarebytes Anti-Malware mbamicontw5.gif and save it to your desktop.
  • Important!! When you save the mbam-setup file, rename it to something random (such as 123abc.exe) before beginning the download.
  • Double-click on the renamed file to install, then follow these instructions
  • for doing a Quick Scan in normal mode.
  • Don't forget to check for database definition updates through the program's interface (preferable method) before scanning.
  • If you cannot update Malwarebytes or use the Internet to download any files to the infected computer, manually update the database by following the instructions in FAQ Section A: 4. Issues
Malwarebytes may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.
  • After completing the scan, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab .
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows the database version and your operating system.
  • Exit Malwarebytes when done.
Note: If Malwarebytes encounters a file that is difficult to remove, you will be asked to reboot your computer so it can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally will prevent Malwarebytes from removing all the malware.

-- Some types of malware will target Malwarebytes and other security tools to keep them from running properly. If that's the case, use Malwarebytes Chameleon and follow the onscreen instructions. The Chameleon folder can be accessed by opening the program folder for Malwarebytes Anti-Malware (normally C:\Program Files\Malwarebytes' Anti-Malware or C:\Program Files (x86)\Malwarebytes' Anti-Malware).


And ESET
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#10 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 17 August 2013 - 04:32 PM

I figured out how to get the sweet stuff out of the browser from automatically coming up, and seems to be clean, I will follow the last instruction you gave, just to be safe.



#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,082 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:55 AM

Posted 17 August 2013 - 07:33 PM

Did you look in the add ons to your browser(s)?
OK, let me know.

Edited by boopme, 17 August 2013 - 07:33 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#12 mrculp

mrculp
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:55 AM

Posted 18 August 2013 - 09:08 AM

Yep, looked in the browsers, and found where it was going to that site with each new window opened, and fixed that from happening. Everything appears to be working really well, I'm just going to tweak a little to make it a little faster on boot-up, can I donate some money for your help?



#13 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,082 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:55 AM

Posted 19 August 2013 - 08:43 AM

Thanks for the offer... I do not accept donations nor does BC.. But I will recommend, if you'd like to contribute to something that would be very much appreciated..
Make a donation to some people here that would appreciate it. They help or developed some of the tools we use here to clean computers or are ajust hard workers.

I am still adding to this list.

farbar
fireman4it
JSntgRvr
m0le
myrti
sempai
Thunder
SweetTech
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users