Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Guest wants to connect to this machine...


  • Please log in to reply
11 replies to this topic

#1 cwzcwz

cwzcwz

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 05 December 2013 - 09:48 PM

Someone with an IP in China has been logging into my computer. I get this message on my Windows 7 Ultimate machine:

 

Guest_Connect.jpg

 

If I'm not around to catch it it logs me off and does who knows what. I've run MRT/Security Essentials & MalwareBytes and both report nothing. Guest access has never been turned on but remote assistance was turned on, I just turned that off. According to a Microsoft MVP, I should never see a screen like this. Does anyone know if this is a virus or is someone able to get around my password security?



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,190 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:28 AM

Posted 06 December 2013 - 04:20 PM

I would first suspect how you are connecting, tho it's not impossible they have logged in.

Are you wired/wireless.. Pasworded and wireless encrypted on the router?


Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
.
.
.
ADW Cleaner

Please download AdwCleaner by Xplode and save to your Desktop.
  • Double click on AdwCleaner.exe to run the tool
  • Click on the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
  • After the scan has finished...
    <-insert any special instructions here for what to uncheck OR remove this line if there are none->
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • .
    .
    .

    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    .
    .
    .
    .
    • Last run ESET.
      • Hold down Control and click on this link to open ESET OnlineScan in a new window.
      • Click the esetonlinebtn.png button.
      • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
      • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
      • Double click on the esetsmartinstaller_enu.png icon on your desktop.
      • Check "YES, I accept the Terms of Use."
      • Click the Start button.
      • Accept any security warnings from your browser.
      • Under scan settings, check "Scan Archives" and "Remove found threats"
      • Click Advanced settings and select the following:
      • Scan potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth technology
      • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
      • When the scan completes, click List Threats
      • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
      • Click the Back button.
      • Click the Finish button.
      • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 06 December 2013 - 07:11 PM

I'm not sure what you mean "I would first suspect how you are connecting..."

 

I have a Linksys E4200 router that I am connected to with an ethernet cable. It is a wireless router with WPA2/WPA Mixed Mode security.

 

I'll run the tools you have requested and post the results.



#4 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 06 December 2013 - 07:35 PM

I removed some IP info, if you really need it I'll send it to you privately:

 

MiniToolBox by Farbar  Version: 13-07-2013
Ran by Kit (administrator) on 06-12-2013 at 19:19:12
Running from "E:\Documents and Settings\Kit\Downloads"
Microsoft Windows 7 Ultimate  Service Pack 1 (X86)
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
 
 
 
========================= IP Configuration: ================================
 
Generic Marvell Yukon 88E8057 PCI-E Gigabit Ethernet Controller = Local Area Connection (Connected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
add route prefix=169.254.0.0/16 interface="iftype0_0" nexthop=192.168.1.115 metric=1 publish=Yes
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : XX
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Local Area Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Generic Marvell Yukon 88E8057 PCI-E Gigabit Ethernet Controller
   Physical Address. . . . . . . . . : 00-1F-BC-08-70-3D
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::2d12%10(Preferred) 
   IPv4 Address. . . . . . . . . . . : xxx.xxx.xxx.xxx(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Friday, December 06, 2013 6:30:46 PM
   Lease Expires . . . . . . . . . . : Saturday, December 07, 2013 6:30:46 PM
   Default Gateway . . . . . . . . . : xxx.xxx.xxx.xxx
   DHCP Server . . . . . . . . . . . : xxx.xxx.xxx.xxx
   DHCPv6 IAID . . . . . . . . . . . : 234889148
   DHCPv6 Client DUID. . . . . . . . : 00-01
   DNS Servers . . . . . . . . . . . : 66.189.0.100
                                       24.159.64.23
                                       24.247.24.53
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter isatap.{8B177878-5806-46B7-BFB4-DC86B38A73AA}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 9:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001(Preferred) 
   Link-local IPv6 Address . . . . . : fe80 
   Default Gateway . . . . . . . . . : ::
   NetBIOS over Tcpip. . . . . . . . : Disabled
Server:  vip01oxfrma.oxfr.ma.charter.com
Address:  66.189.0.100
 
Name:    google.com
Addresses:  2607:f8b0:4004:800::1001
 74.125.228.5
 74.125.228.3
 74.125.228.8
 74.125.228.14
 74.125.228.2
 74.125.228.7
 74.125.228.9
 74.125.228.4
 74.125.228.1
 74.125.228.0
 74.125.228.6
 
 
Pinging google.com [74.125.228.3] with 32 bytes of data:
Reply from 74.125.228.3: bytes=32 time=16ms TTL=54
Reply from 74.125.228.3: bytes=32 time=17ms TTL=54
 
Ping statistics for 74.125.228.3:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 16ms, Maximum = 17ms, Average = 16ms
Server:  vip01oxfrma.oxfr.ma.charter.com
Address:  66.189.0.100
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.139.183.24
 98.138.253.109
 
 
Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=132ms TTL=41
Reply from 206.190.36.45: bytes=32 time=122ms TTL=41
 
Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 122ms, Maximum = 132ms, Average = 127ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=5ms TTL=128
Reply from 127.0.0.1: bytes=32 time=1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 1ms, Maximum = 5ms, Average = 3ms
===========================================================================
Interface List
 10...00 1f bc 08 70 3d ......Generic Marvell Yukon 88E8057 PCI-E Gigabit Ethernet Controller
  1...........................Software Loopback Interface 1
 11...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.115     10
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
 
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
 
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
 
===========================================================================
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 12     58 ::/0                     On-link
  1    306 ::1/128                  On-link
 12     58 2001::/32                On-link
 
                                    On-link
 10    266 fe80::/64                On-link
 12    306 fe80::/64                On-link
                                    On-link
  1    306 ff00::/8                 On-link
 12    306 ff00::/8                 On-link
 10    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\system32\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog9 01 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 26 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 27 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 28 C:\Windows\system32\mswsock.dll [231424] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (12/06/2013 06:22:17 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-
 
Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" 
 
could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (12/05/2013 07:58:48 PM) (Source: Microsoft-Windows-User Profiles Service) (User: I5)
Description: Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off.
 
Error: (12/05/2013 07:58:48 PM) (Source: Microsoft-Windows-User Profiles Service) (User: I5)
Description: Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on.
 
Error: (12/05/2013 00:36:18 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-
 
Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" 
 
could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (12/04/2013 07:37:38 PM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak).  hr = 
 
0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {e891ea29-bb43-4e6b-bf0d-4b7d7b6aacf0}
 
Error: (12/02/2013 08:51:44 AM) (Source: Winlogon) (User: )
Description: The Windows logon process has unexpectedly terminated.
 
Error: (12/02/2013 06:21:10 AM) (Source: Winlogon) (User: )
Description: The Windows logon process has unexpectedly terminated.
 
Error: (12/02/2013 02:23:53 AM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak).  hr = 
 
0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
Error: (12/01/2013 11:30:15 PM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak).  hr = 
 
0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
Error: (12/01/2013 11:30:12 PM) (Source: VSS) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak).  hr = 
 
0x80070539, The security ID structure is invalid.
.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
 
System errors:
=============
Error: (12/05/2013 08:04:42 PM) (Source: DCOM) (User: I5)
Description: application-specificLocalActivation{687E55CA-6621-4C41-B9F1-C0EDDC94BB05}{9037E3CF-1794-4AF6-9C8D-92838D7A23DB}I5GuestS-1-5-21-3421564789-3185939024-
 
2393924428-501LocalHost (Using LRPC)
 
Error: (12/05/2013 10:42:59 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UmRdpService service.
 
Error: (12/04/2013 07:49:05 PM) (Source: Service Control Manager) (User: )
Description: The Steam Client Service service failed to start due to the following error: 
%%1053
 
Error: (12/04/2013 07:49:05 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
 
Error: (12/04/2013 07:48:05 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using 
 
LRPC)
 
Error: (12/04/2013 07:47:31 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
vhdbus
 
Error: (12/04/2013 07:46:57 PM) (Source: Service Control Manager) (User: )
Description: The lxeeCATSCustConnectService service failed to start due to the following error: 
%%1053
 
Error: (12/04/2013 07:46:57 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the lxeeCATSCustConnectService service to connect.
 
Error: (12/02/2013 06:21:48 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NlaSvc service.
 
Error: (12/01/2013 07:26:57 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using 
 
LRPC)
 
 
Microsoft Office Sessions:
=========================
Error: (12/06/2013 06:22:17 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:
 
\Program Files\Microsoft Visual Studio 10.0\Common7\Packages\Debugger\X64\msvsmon.exe
 
Error: (12/05/2013 07:58:48 PM) (Source: Microsoft-Windows-User Profiles Service)(User: I5)
Description: 
 
Error: (12/05/2013 07:58:48 PM) (Source: Microsoft-Windows-User Profiles Service)(User: I5)
Description: 
 
Error: (12/05/2013 00:36:18 AM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:
 
\Program Files\Microsoft Visual Studio 10.0\Common7\Packages\Debugger\X64\msvsmon.exe
 
Error: (12/04/2013 07:37:38 PM) (Source: VSS)(User: )
Description: ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak)0x80070539, The security ID structure is invalid.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {e891ea29-bb43-4e6b-bf0d-4b7d7b6aacf0}
 
Error: (12/02/2013 08:51:44 AM) (Source: Winlogon)(User: )
Description: 
 
Error: (12/02/2013 06:21:10 AM) (Source: Winlogon)(User: )
Description: 
 
Error: (12/02/2013 02:23:53 AM) (Source: VSS)(User: )
Description: ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak)0x80070539, The security ID structure is invalid.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
Error: (12/01/2013 11:30:15 PM) (Source: VSS)(User: )
Description: ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak)0x80070539, The security ID structure is invalid.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
Error: (12/01/2013 11:30:12 PM) (Source: VSS)(User: )
Description: ConvertStringSidToSid(S-1-5-21-3421564789-3185939024-2393924428-501.bak)0x80070539, The security ID structure is invalid.
 
 
Operation:
   OnIdentify event
   Gathering Writer Data
 
Context:
   Execution Context: Shadow Copy Optimization Writer
   Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-
 
3bee2926fd7f}
   Writer Name: Shadow Copy Optimization Writer
   Writer Instance ID: {36c0533d-8648-4161-9d9f-5995a19264dc}
 
 
CodeIntegrity Errors:
===================================
  Date: 2013-10-28 21:30:31.176
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-10-17 21:15:46.521
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-09-23 00:40:35.402
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-09-15 02:18:14.530
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-09-08 01:56:20.225
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-08-16 17:27:57.721
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-08-10 06:19:44.711
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-08-07 07:35:13.313
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-08-03 22:35:13.704
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
  Date: 2013-08-01 08:33:18.456
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page 
 
image hashes could not be found on the system.
 
 
=========================== Installed Programs ============================
 
32 Bit HP CIO Components Installer (Version: 8.1.1)
Adobe AIR (Version: 3.1.0.4880)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Reader XI (11.0.05) (Version: 11.0.05)
Amazon Kindle
AMD Accelerated Video Transcoding (Version: 12.5.100.21116)
AMD APP SDK Runtime (Version: 10.0.937.2)
AMD Catalyst Install Manager (Version: 8.0.877.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
AMD Media Foundation Decoders (Version: 1.0.71116.1554)
Apple Application Support (Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (Version: 2.1.3.127)
Application Profiles (Version: 2.0.4888.34279)
Audacity 2.0.3 (Version: 2.0.3)
Bonjour (Version: 3.0.0.10)
CameraHelperMsi (Version: 13.50.854.0)
Canon IJ Network Scan Utility
Canon IJ Network Tool
Canon MX860 series MP Drivers
Canon ScanGear Starter
CanoScan Toolbox Ver4.1
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center (Version: 2012.1116.1515.27190)
Catalyst Control Center Graphics Previews Common (Version: 2012.1116.1515.27190)
Catalyst Control Center InstallProxy (Version: 2012.1116.1515.27190)
Catalyst Control Center Localization All (Version: 2012.1116.1515.27190)
CCC Help Chinese Standard (Version: 2012.1116.1514.27190)
CCC Help Chinese Traditional (Version: 2012.1116.1514.27190)
CCC Help Czech (Version: 2012.1116.1514.27190)
CCC Help Danish (Version: 2012.1116.1514.27190)
CCC Help Dutch (Version: 2012.1116.1514.27190)
CCC Help English (Version: 2012.1116.1514.27190)
CCC Help Finnish (Version: 2012.1116.1514.27190)
CCC Help French (Version: 2012.1116.1514.27190)
CCC Help German (Version: 2012.1116.1514.27190)
CCC Help Greek (Version: 2012.1116.1514.27190)
CCC Help Hungarian (Version: 2012.1116.1514.27190)
CCC Help Italian (Version: 2012.1116.1514.27190)
CCC Help Japanese (Version: 2012.1116.1514.27190)
CCC Help Korean (Version: 2012.1116.1514.27190)
CCC Help Norwegian (Version: 2012.1116.1514.27190)
CCC Help Polish (Version: 2012.1116.1514.27190)
CCC Help Portuguese (Version: 2012.1116.1514.27190)
CCC Help Russian (Version: 2012.1116.1514.27190)
CCC Help Spanish (Version: 2012.1116.1514.27190)
CCC Help Swedish (Version: 2012.1116.1514.27190)
CCC Help Thai (Version: 2012.1116.1514.27190)
CCC Help Turkish (Version: 2012.1116.1514.27190)
ccc-utility (Version: 2012.1116.1515.27190)
ChromecastApp (Version: 1.1.266.0)
Cisco Connect (Version: 1.3.10351.4)
Cisco SDM (Version: 2.5)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
DHTML Editing Component (Version: 6.02.0001)
Dropbox (Version: 2.0.22)
eReg (Version: 1.20.138.34)
ESET Online Scanner v3
Fallout: New Vegas
Google Chrome (Version: 31.0.1650.63)
Google Earth Plug-in (Version: 7.1.1.1888)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4601.54)
Google Update Helper (Version: 1.3.21.165)
HP Jetdirect Wireless Setup Wizard
Hydrogen 0.9.6 preview release for windows
iCloud (Version: 3.0.2.163)
IIS 8.0 Express (Version: 8.0.1508)
IIS Express Application Compatibility Database for x86
Internet Explorer (Enable DEP)
iTunes (Version: 11.1.3.8)
LAME v3.98.3 for Audacity
Lexmark Pro700 Series
LibreOffice 4.1 Help Pack (English (United States)) (Version: 4.1.2.3)
LibreOffice 4.1.2.3 (Version: 4.1.2.3)
Logitech SetPoint 6.32 (Version: 6.32.20)
Logitech Webcam Software (Version: 2.0)
LWS Facebook (Version: 13.50.854.0)
LWS Gallery (Version: 13.50.854.0)
LWS Help_main (Version: 13.50.862.0)
LWS Launcher (Version: 13.50.859.0)
LWS Motion Detection (Version: 13.30.1395.0)
LWS Pictures And Video (Version: 13.50.861.0)
LWS Twitter (Version: 13.30.1346.0)
LWS Video Mask Maker (Version: 13.30.1379.0)
LWS VideoEffects (Version: 13.30.1379.0)
LWS Webcam Software (Version: 13.31.1038.0)
LWS WLM Plugin (Version: 1.30.1201.0)
LWS YouTube Plugin (Version: 13.31.1038.0)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
MCITP Self-Paced Training Kit (Exams 70-640, 70-642, 70-646): Windows Server 2008 Server Administrator Core Requirements (Version: 2.00.00)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Multi-Targeting Pack (Version: 4.0.30319)
Microsoft .NET Framework 4.5 RC Multi-Targeting Pack (Version: 4.5.50501)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft ASP.NET MVC 2 - VWD Express 2010 Tools (Version: 2.0.50217.0)
Microsoft ASP.NET MVC 2 (Version: 2.0.50217.0)
Microsoft ASP.NET MVC 3 - VWD Express 2010 Tools (Version: 3.0.20105.0)
Microsoft ASP.NET MVC 3 (Version: 3.0.20105.0)
Microsoft ASP.NET Web Pages - VWD Express 2010 Tools (Version: 1.0.20105.0)
Microsoft ASP.NET Web Pages (Version: 1.0.20105.0)
Microsoft Games for Windows - LIVE Redistributable (Version: 3.5.92.0)
Microsoft Games for Windows Marketplace (Version: 3.5.50.0)
Microsoft Help Viewer 1.1 (Version: 1.1.40219)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Press Training Kit Exam Prep Suite 70-640 (Version: 1.0.0)
Microsoft Press Training Kit Exam Prep Suite 70-642 (Version: 1.0.0)
Microsoft Press Training Kit Exam Prep Suite 70-646 (Version: 1.0.0)
Microsoft Report Viewer Redistributable 2008 (KB971119) (Version: 9.0.30731)
Microsoft Report Viewer Redistributable 2008 SP1
Microsoft Security Client (Version: 4.4.0304.0)
Microsoft Security Essentials (Version: 4.4.304.0)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SkyDrive (Version: 17.0.2003.1112)
Microsoft System CLR Types for SQL Server 2012 (Version: 11.0.2100.60)
Microsoft Virtual Server 2005 R2 SP1 (Version: 1.1.603.0)
Microsoft Visual Basic 2010 Express - ENU (Version: 10.0.40219)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (Version: 9.0.30729.4974)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio 2005 Tools for Office Runtime (Version: 8.0.60940.0)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (Version: 10.0.40219)
Microsoft Visual Studio 2010 Service Pack 1 (Version: 10.0.40219)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (Version: 10.0.40303)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (Version: 10.0.40308)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (Version: 9.0.35191)
Microsoft Visual Web Developer 2010 Express - ENU (Version: 10.0.40219)
Microsoft VMRCplus (Version: 1.8.0)
Microsoft Web Deploy 3.0 (Version: 3.1236.1516)
Microsoft Web Deploy dbSqlPackage Provider - enu (Version: 10.3.20225.0)
Microsoft Web Platform Installer 4.0 (Version: 4.0.1307)
Microsoft Web Platform Installer 4.0 (Version: 4.0.1586)
Microsoft Web Tooling Extensions - Visual Studio 11 Express for Web (Version: 1.0.30628.0)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
Nostromo (Version: 3.2.4)
NuGet (Version: 1.0.20105.0)
Octoshape add-in for Adobe Flash Player
OfficePrinter
OpenAL
Paint Shop Pro 7 Anniversary Edition (Version: 7.0.4.0000)
Personal Color Viewer (Version: 3.0.2)
Prerequisites for SSDT  (Version: 11.0.2100.60)
QODBC Driver
QuickBooks (Version: 20.0.4012.807)
QuickBooks (Version: 22.0.4012.2206)
QuickBooks (Version: 23.0.4008.2305)
QuickBooks Enterprise Solutions: Accountant Edition 10.0 (Version: 20.0.4012.807)
QuickBooks Enterprise Solutions: Accountant Edition 12.0 (Version: 22.0.4012.2206)
QuickBooks Enterprise Solutions: Accountant Edition 13.0 (Version: 23.0.4008.2305)
QuickBooks Point of Sale 10.0 (Version: 21.11.908)
QuickBooks Point of Sale 2013 (Version: 22.3.1029)
QuickTime (Version: 7.74.80.86)
RAGE
Realtek High Definition Audio Driver (Version: 6.0.1.5888)
Renesas Electronics USB 3.0 Host Controller Driver (Version: 2.1.25.0)
Seagate Manager Installer (Version: 2.01.0600)
SeaTools for Windows (Version: 1.2.0.7)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
SES Driver (Version: 1.0.0)
Skype Click to Call (Version: 5.10.9560)
Skype™ 6.0 (Version: 6.0.126)
SQL Server Data Framework Tools - enu (Version: 11.1.20425.00)
Steam (Version: 1.0.0.0)
Steinberg Cubase LE
System Requirements Lab CYRI (Version: 4.5.1.0)
TeamViewer 8 (Version: 8.0.22298)
TreeSize Free V2.7 (Version: 2.7)
TSP100 Setup Version 5.3.0 (Version: 5.3.0)
Turbo Lister 2 (Version: 2.00.0000)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition
Video Converter Packages
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU (Version: 4.0.8080.0)
Visual Studio Tools for the Office system 3.0 Runtime
Visual Studio Tools for the Office system 3.0 Runtime (Version: 9.0.30729)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (Version: 1)
WCF RIA Services V1.0 SP1 (Version: 4.1.60114.0)
WD SmartWare (Version: 1.6.4.6)
Web Deployment Tool (Version: 1.1.0618)
Windows Azure Authoring Tools - June 2012 Release (Version: 1.7.30602.1703)
Windows Azure Emulator - June 2012 Release (Version: 1.7.30602.1703)
Windows Azure Libraries for .NET 1.7 – June 2012 (Version: 1.7)
Windows Azure Tools for Microsoft Visual Studio 2012 - June 2012 (Version: 1.7.50517.1601)
Windows Azure Tools for Microsoft Visual Studio 2012 Core (Version: 1.7.50517.1601)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows XP Mode (Version: 1.3.7600.16423)
 
========================= Memory info: ===================================
 
Percentage of memory in use: 89%
Total physical RAM: 2999.12 MB
Available physical RAM: 308.77 MB
Total Pagefile: 7224.32 MB
Available Pagefile: 1256.72 MB
Total Virtual: 2047.88 MB
Available Virtual: 1931.69 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:74.43 GB) (Free:8.68 GB) NTFS
3 Drive e: () (Fixed) (Total:698.63 GB) (Free:230.34 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\I5
 
Administrator            Guest                    Kit                      
QBDataServiceUser20      QBDataServiceUser22      QBDataServiceUser23      
QBPOSDBSrvUser           
 
 
**** End of log ****


#5 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,190 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:28 AM

Posted 06 December 2013 - 07:50 PM

I ask that and you answered what I needed. Many people are just connecting wirelessly thru a wide-open router and any one can log on.

That looks OK
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#6 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 06 December 2013 - 09:05 PM

OK, more to come. Thanks.



#7 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 07 December 2013 - 01:21 PM

TDSSKiller Results:

 

13:18:04.0200 0x121c  TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
13:18:09.0371 0x121c  ============================================================
13:18:09.0371 0x121c  Current date / time: 2013/12/07 13:18:09.0371
13:18:09.0371 0x121c  SystemInfo:
13:18:09.0372 0x121c  
13:18:09.0372 0x121c  OS Version: 6.1.7601 ServicePack: 1.0
13:18:09.0372 0x121c  Product type: Workstation
13:18:09.0372 0x121c  ComputerName: I5
13:18:09.0372 0x121c  UserName: Kit
13:18:09.0372 0x121c  Windows directory: C:\Windows
13:18:09.0372 0x121c  System windows directory: C:\Windows
13:18:09.0372 0x121c  Processor architecture: Intel x86
13:18:09.0372 0x121c  Number of processors: 4
13:18:09.0372 0x121c  Page size: 0x1000
13:18:09.0372 0x121c  Boot type: Normal boot
13:18:09.0372 0x121c  ============================================================
13:18:10.0020 0x121c  KLMD registered as C:\Windows\system32\drivers\78910589.sys
13:18:10.0631 0x121c  System UUID: {19A7E8A4-8415-4A39-0084-79500E7EFDBB}
13:18:11.0589 0x121c  Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:18:11.0606 0x121c  Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
13:18:11.0625 0x121c  ============================================================
13:18:11.0625 0x121c  \Device\Harddisk0\DR0:
13:18:11.0625 0x121c  MBR partitions:
13:18:11.0625 0x121c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:18:11.0625 0x121c  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x94DC800
13:18:11.0625 0x121c  \Device\Harddisk1\DR1:
13:18:11.0625 0x121c  MBR partitions:
13:18:11.0625 0x121c  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x57541401
13:18:11.0626 0x121c  ============================================================
13:18:11.0627 0x121c  C: <-> \Device\Harddisk0\DR0\Partition2
13:18:11.0647 0x121c  E: <-> \Device\Harddisk1\DR1\Partition1
13:18:11.0647 0x121c  ============================================================
13:18:11.0647 0x121c  Initialize success
13:18:11.0647 0x121c  ============================================================
13:18:47.0192 0x2518  ============================================================
13:18:47.0192 0x2518  Scan started
13:18:47.0192 0x2518  Mode: Manual; 
13:18:47.0192 0x2518  ============================================================
13:18:47.0192 0x2518  KSN ping started
13:18:50.0022 0x2518  KSN ping finished: true
13:18:50.0080 0x2518  ================ Scan system memory ========================
13:18:50.0080 0x2518  System memory - ok
13:18:50.0080 0x2518  ================ Scan services =============================
13:18:50.0117 0x2518  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
13:18:50.0121 0x2518  1394ohci - ok
13:18:50.0141 0x2518  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
13:18:50.0147 0x2518  ACPI - ok
13:18:50.0151 0x2518  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
13:18:50.0152 0x2518  AcpiPmi - ok
13:18:50.0160 0x2518  [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
13:18:50.0163 0x2518  AdobeARMservice - ok
13:18:50.0172 0x2518  [ A283108E14F3970432C21AF4C0CB1BCE, 1D3219EF916D54232838870EDE557296AACB714B456ED0AAE0DE3CE3822F4643 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
13:18:50.0178 0x2518  AdobeFlashPlayerUpdateSvc - ok
13:18:50.0191 0x2518  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
13:18:50.0202 0x2518  adp94xx - ok
13:18:50.0211 0x2518  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
13:18:50.0219 0x2518  adpahci - ok
13:18:50.0226 0x2518  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
13:18:50.0229 0x2518  adpu320 - ok
13:18:50.0234 0x2518  [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
13:18:50.0236 0x2518  AeLookupSvc - ok
13:18:50.0247 0x2518  [ F81BB7E487EDCEAB630A7EE66CF23913, 7D1638FD7E388EF670FA0A421762E0413351058A20DDF0F9988A383F05395A68 ] AFD             C:\Windows\system32\drivers\afd.sys
13:18:50.0254 0x2518  AFD - ok
13:18:50.0258 0x2518  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
13:18:50.0259 0x2518  agp440 - ok
13:18:50.0263 0x2518  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
13:18:50.0266 0x2518  aic78xx - ok
13:18:50.0271 0x2518  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
13:18:50.0273 0x2518  ALG - ok
13:18:50.0275 0x2518  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
13:18:50.0276 0x2518  aliide - ok
13:18:50.0284 0x2518  [ F9491B157A8CD70557745FA0312C1EEE, CA91E1E136ED6AE3E16883E465D4AEB47260416ABCF14D58ADB395AE2368B418 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
13:18:50.0289 0x2518  AMD External Events Utility - ok
13:18:50.0291 0x2518  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
13:18:50.0293 0x2518  amdagp - ok
13:18:50.0296 0x2518  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
13:18:50.0297 0x2518  amdide - ok
13:18:50.0301 0x2518  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
13:18:50.0303 0x2518  AmdK8 - ok
13:18:50.0516 0x2518  [ F53B89A4B976B534DAA8AEDAFEAF8EA3, 1973FC771B69ADEE17A3405B7961958B8DF135506D60554BD233325EC1C46AA6 ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
13:18:50.0726 0x2518  amdkmdag - ok
13:18:50.0748 0x2518  [ 3DEA9B1D1B274C739C9367FB1E56185F, ACE1520FE4754DB61F6C1726C2B6859ABA322115DF8FB43660A0D964019039CA ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
13:18:50.0754 0x2518  amdkmdap - ok
13:18:50.0758 0x2518  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
13:18:50.0760 0x2518  AmdPPM - ok
13:18:50.0764 0x2518  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
13:18:50.0767 0x2518  amdsata - ok
13:18:50.0773 0x2518  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
13:18:50.0777 0x2518  amdsbs - ok
13:18:50.0780 0x2518  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
13:18:50.0782 0x2518  amdxata - ok
13:18:50.0787 0x2518  [ D1AF38FBAC0DC7E6D796B0ED01707EE0, FAFD2C36594A1628293E7623C8CAB2D47EDF8C6C0E18CC2FB37F9A6CA1F0E57C ] AppHostSvc      C:\Windows\system32\inetsrv\apphostsvc.dll
13:18:50.0789 0x2518  AppHostSvc - ok
13:18:50.0792 0x2518  [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID           C:\Windows\system32\drivers\appid.sys
13:18:50.0794 0x2518  AppID - ok
13:18:50.0798 0x2518  [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc        C:\Windows\System32\appidsvc.dll
13:18:50.0799 0x2518  AppIDSvc - ok
13:18:50.0803 0x2518  [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo         C:\Windows\System32\appinfo.dll
13:18:50.0804 0x2518  Appinfo - ok
13:18:50.0810 0x2518  [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:18:50.0812 0x2518  Apple Mobile Device - ok
13:18:50.0819 0x2518  [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt         C:\Windows\System32\appmgmts.dll
13:18:50.0823 0x2518  AppMgmt - ok
13:18:50.0828 0x2518  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\DRIVERS\arc.sys
13:18:50.0830 0x2518  arc - ok
13:18:50.0833 0x2518  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
13:18:50.0835 0x2518  arcsas - ok
13:18:50.0846 0x2518  [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
13:18:50.0851 0x2518  aspnet_state - ok
13:18:50.0854 0x2518  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
13:18:50.0855 0x2518  AsyncMac - ok
13:18:50.0858 0x2518  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
13:18:50.0858 0x2518  atapi - ok
13:18:50.0864 0x2518  [ 6ADC42CF4A6AB84975CA63DCCFAAF5D8, 9629ABDC25D848F5B16A937A4897B17EE9BD6DFF0A69CF0FF97219AE15D3920F ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
13:18:50.0867 0x2518  AtiHDAudioService - ok
13:18:50.0879 0x2518  [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:18:50.0891 0x2518  AudioEndpointBuilder - ok
13:18:50.0903 0x2518  [ CE3B4E731638D2EF62FCB419BE0D39F0, 3B98179CB0101778D9E7810D2CD46D9C0D7120E141BA11471666E7D9EB3C93CC ] Audiosrv        C:\Windows\System32\Audiosrv.dll
13:18:50.0911 0x2518  Audiosrv - ok
13:18:50.0916 0x2518  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
13:18:50.0917 0x2518  AxInstSV - ok
13:18:50.0929 0x2518  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
13:18:50.0940 0x2518  b06bdrv - ok
13:18:50.0951 0x2518  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
13:18:50.0956 0x2518  b57nd60x - ok
13:18:50.0960 0x2518  [ A840DCCE93C91FC4F69C04A42CD7A180, 13C541E542C38E367C80B41A074D3067030F40F54A607A84F82047D3088AD545 ] bcgame          C:\Windows\system32\drivers\bcgame.sys
13:18:50.0961 0x2518  bcgame - ok
13:18:50.0965 0x2518  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
13:18:50.0968 0x2518  BDESVC - ok
13:18:50.0971 0x2518  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
13:18:50.0972 0x2518  Beep - ok
13:18:50.0986 0x2518  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
13:18:50.0999 0x2518  BFE - ok
13:18:51.0014 0x2518  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
13:18:51.0033 0x2518  BITS - ok
13:18:51.0037 0x2518  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
13:18:51.0038 0x2518  blbdrive - ok
13:18:51.0049 0x2518  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:18:51.0058 0x2518  Bonjour Service - ok
13:18:51.0062 0x2518  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
13:18:51.0064 0x2518  bowser - ok
13:18:51.0067 0x2518  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:18:51.0068 0x2518  BrFiltLo - ok
13:18:51.0071 0x2518  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:18:51.0072 0x2518  BrFiltUp - ok
13:18:51.0076 0x2518  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
13:18:51.0079 0x2518  Browser - ok
13:18:51.0087 0x2518  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
13:18:51.0094 0x2518  Brserid - ok
13:18:51.0098 0x2518  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
13:18:51.0100 0x2518  BrSerWdm - ok
13:18:51.0103 0x2518  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
13:18:51.0104 0x2518  BrUsbMdm - ok
13:18:51.0106 0x2518  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
13:18:51.0107 0x2518  BrUsbSer - ok
13:18:51.0111 0x2518  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
13:18:51.0112 0x2518  BTHMODEM - ok
13:18:51.0118 0x2518  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
13:18:51.0120 0x2518  bthserv - ok
13:18:51.0124 0x2518  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
13:18:51.0125 0x2518  cdfs - ok
13:18:51.0130 0x2518  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
13:18:51.0133 0x2518  cdrom - ok
13:18:51.0137 0x2518  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
13:18:51.0139 0x2518  CertPropSvc - ok
13:18:51.0143 0x2518  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
13:18:51.0144 0x2518  circlass - ok
13:18:51.0152 0x2518  [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS            C:\Windows\system32\CLFS.sys
13:18:51.0158 0x2518  CLFS - ok
13:18:51.0165 0x2518  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:18:51.0166 0x2518  clr_optimization_v2.0.50727_32 - ok
13:18:51.0171 0x2518  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:18:51.0181 0x2518  clr_optimization_v4.0.30319_32 - ok
13:18:51.0184 0x2518  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
13:18:51.0185 0x2518  CmBatt - ok
13:18:51.0188 0x2518  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
13:18:51.0189 0x2518  cmdide - ok
13:18:51.0200 0x2518  [ 85449EEBE8F8EBD6481EFBF0F352B4EB, E6FF04970C5A5BFDE7297A86C1C7B9BFE2E0F976A1A1AFB874CEB488DC6151CC ] CNG             C:\Windows\system32\Drivers\cng.sys
13:18:51.0208 0x2518  CNG - ok
13:18:51.0211 0x2518  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
13:18:51.0213 0x2518  Compbatt - ok
13:18:51.0216 0x2518  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
13:18:51.0217 0x2518  CompositeBus - ok
13:18:51.0220 0x2518  COMSysApp - ok
13:18:51.0224 0x2518  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
13:18:51.0225 0x2518  crcdisk - ok
13:18:51.0232 0x2518  [ 7CA1BECEA5DE2643ADDAD32670E7A4C9, E3AB4CC52A97E3855D7EAB87363F807FDD2162ED8C76A036CD71549ED64E7797 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
13:18:51.0236 0x2518  CryptSvc - ok
13:18:51.0247 0x2518  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC             C:\Windows\system32\drivers\csc.sys
13:18:51.0255 0x2518  CSC - ok
13:18:51.0270 0x2518  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService      C:\Windows\System32\cscsvc.dll
13:18:51.0284 0x2518  CscService - ok
13:18:51.0295 0x2518  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
13:18:51.0305 0x2518  DcomLaunch - ok
13:18:51.0313 0x2518  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
13:18:51.0319 0x2518  defragsvc - ok
13:18:51.0323 0x2518  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
13:18:51.0326 0x2518  DfsC - ok
13:18:51.0333 0x2518  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
13:18:51.0339 0x2518  Dhcp - ok
13:18:51.0343 0x2518  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
13:18:51.0344 0x2518  discache - ok
13:18:51.0348 0x2518  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
13:18:51.0350 0x2518  Disk - ok
13:18:51.0355 0x2518  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
13:18:51.0359 0x2518  Dnscache - ok
13:18:51.0366 0x2518  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
13:18:51.0372 0x2518  dot3svc - ok
13:18:51.0376 0x2518  [ B5E479EB83707DD698F66953E922042C, 82891A4699F180A20EB25A0EC49A7E008B007A374BAA3279483AC1C95D125FE8 ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
13:18:51.0379 0x2518  Dot4 - ok
13:18:51.0383 0x2518  [ CAEFD09B6A6249C53A67D55A9A9FCABF, A76C951EA8A830E5BA22D8D393A946BBAEEDB76478539F647E58199B383F786B ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
13:18:51.0384 0x2518  Dot4Print - ok
13:18:51.0387 0x2518  [ CF491FF38D62143203C065260567E2F7, 4315FD8FC88CF627EBE469A2DF0F280B17C95D3004FC7A93D6F8E47F0D91A037 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
13:18:51.0389 0x2518  dot4usb - ok
13:18:51.0397 0x2518  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
13:18:51.0401 0x2518  DPS - ok
13:18:51.0404 0x2518  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
13:18:51.0404 0x2518  drmkaud - ok
13:18:51.0422 0x2518  [ 71BC35067CABC02C9453AEAA42B2E43E, 713B19F2C08EA5E4C087F7A74A8856932CF33E19D63384823DD4E02ED8798619 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
13:18:51.0440 0x2518  DXGKrnl - ok
13:18:51.0446 0x2518  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
13:18:51.0449 0x2518  EapHost - ok
13:18:51.0516 0x2518  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
13:18:51.0584 0x2518  ebdrv - ok
13:18:51.0590 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] EFS             C:\Windows\System32\lsass.exe
13:18:51.0592 0x2518  EFS - ok
13:18:51.0607 0x2518  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
13:18:51.0621 0x2518  ehRecvr - ok
13:18:51.0625 0x2518  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
13:18:51.0627 0x2518  ehSched - ok
13:18:51.0640 0x2518  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
13:18:51.0651 0x2518  elxstor - ok
13:18:51.0654 0x2518  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
13:18:51.0655 0x2518  ErrDev - ok
13:18:51.0666 0x2518  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
13:18:51.0672 0x2518  EventSystem - ok
13:18:51.0677 0x2518  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
13:18:51.0681 0x2518  exfat - ok
13:18:51.0687 0x2518  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
13:18:51.0692 0x2518  fastfat - ok
13:18:51.0707 0x2518  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
13:18:51.0719 0x2518  Fax - ok
13:18:51.0723 0x2518  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
13:18:51.0724 0x2518  fdc - ok
13:18:51.0727 0x2518  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
13:18:51.0728 0x2518  fdPHost - ok
13:18:51.0731 0x2518  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
13:18:51.0733 0x2518  FDResPub - ok
13:18:51.0737 0x2518  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
13:18:51.0739 0x2518  FileInfo - ok
13:18:51.0742 0x2518  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
13:18:51.0743 0x2518  Filetrace - ok
13:18:51.0746 0x2518  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
13:18:51.0747 0x2518  flpydisk - ok
13:18:51.0753 0x2518  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
13:18:51.0758 0x2518  FltMgr - ok
13:18:51.0780 0x2518  [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache       C:\Windows\system32\FntCache.dll
13:18:51.0801 0x2518  FontCache - ok
13:18:51.0806 0x2518  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
13:18:51.0808 0x2518  FontCache3.0.0.0 - ok
13:18:51.0815 0x2518  [ 9513B437B7ADB1E6065B7F0D83D11ECF, 3CC583C10D177635AD7BBB308AD90232651244EC66D8E93258316C35956C3D50 ] FreeAgentGoNext Service C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
13:18:51.0820 0x2518  FreeAgentGoNext Service - ok
13:18:51.0823 0x2518  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
13:18:51.0825 0x2518  FsDepends - ok
13:18:51.0830 0x2518  [ D909075FA72C090F27AA926C32CB4612, F8610C20C4DD499D5B4ACEBD7107E52E25B6449AEED58D1A203F7D654B55C4DF ] fssfltr         C:\Windows\system32\DRIVERS\fssfltr.sys
13:18:51.0832 0x2518  fssfltr - ok
13:18:51.0834 0x2518  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
13:18:51.0835 0x2518  Fs_Rec - ok
13:18:51.0842 0x2518  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
13:18:51.0846 0x2518  fvevol - ok
13:18:51.0850 0x2518  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
13:18:51.0853 0x2518  gagp30kx - ok
13:18:51.0856 0x2518  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:18:51.0857 0x2518  GEARAspiWDM - ok
13:18:51.0873 0x2518  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
13:18:51.0887 0x2518  gpsvc - ok
13:18:51.0894 0x2518  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
13:18:51.0898 0x2518  gupdate - ok
13:18:51.0903 0x2518  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
13:18:51.0906 0x2518  gupdatem - ok
13:18:51.0912 0x2518  [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc           C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
13:18:51.0916 0x2518  gusvc - ok
13:18:51.0919 0x2518  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
13:18:51.0921 0x2518  hcw85cir - ok
13:18:51.0930 0x2518  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:18:51.0937 0x2518  HdAudAddService - ok
13:18:51.0943 0x2518  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
13:18:51.0946 0x2518  HDAudBus - ok
13:18:51.0949 0x2518  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
13:18:51.0950 0x2518  HidBatt - ok
13:18:51.0954 0x2518  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
13:18:51.0957 0x2518  HidBth - ok
13:18:51.0959 0x2518  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
13:18:51.0961 0x2518  HidIr - ok
13:18:51.0964 0x2518  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
13:18:51.0966 0x2518  hidserv - ok
13:18:51.0969 0x2518  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
13:18:51.0971 0x2518  HidUsb - ok
13:18:51.0974 0x2518  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
13:18:51.0978 0x2518  hkmsvc - ok
13:18:51.0985 0x2518  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:18:51.0990 0x2518  HomeGroupListener - ok
13:18:51.0998 0x2518  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:18:52.0002 0x2518  HomeGroupProvider - ok
13:18:52.0007 0x2518  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
13:18:52.0009 0x2518  HpSAMD - ok
13:18:52.0023 0x2518  [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
13:18:52.0036 0x2518  HTTP - ok
13:18:52.0040 0x2518  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
13:18:52.0041 0x2518  hwpolicy - ok
13:18:52.0044 0x2518  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
13:18:52.0046 0x2518  i8042prt - ok
13:18:52.0058 0x2518  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
13:18:52.0066 0x2518  iaStorV - ok
13:18:52.0087 0x2518  [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
13:18:52.0107 0x2518  idsvc - ok
13:18:52.0112 0x2518  IEEtwCollectorService - ok
13:18:52.0115 0x2518  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
13:18:52.0117 0x2518  iirsp - ok
13:18:52.0121 0x2518  [ FC9735B66850CF8AEBBC1E207ECB2AD8, A2546FFB6E49784F052EFA036776E246CADA34D7146B3AA2D19AC1463D20B480 ] IISADMIN        C:\Windows\system32\inetsrv\inetinfo.exe
13:18:52.0122 0x2518  IISADMIN - ok
13:18:52.0139 0x2518  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
13:18:52.0156 0x2518  IKEEXT - ok
13:18:52.0217 0x2518  [ F2BAA4FF548F7F0317F7638951C1CD9C, C5B35FCEE8AC7C3BE4D4F834A49A0B71A17E751AFB02DE84ECB9774AA49B2879 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
13:18:52.0274 0x2518  IntcAzAudAddService - ok
13:18:52.0280 0x2518  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
13:18:52.0281 0x2518  intelide - ok
13:18:52.0285 0x2518  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
13:18:52.0287 0x2518  intelppm - ok
13:18:52.0291 0x2518  [ D057DF46B913AC54200DFD0EDB2909CE, 1F5EBE65EBFA9845176A0BE24B45BF9BE8FF9F93664CCDCB7DFF8D8EA5E67B53 ] Intuit Entitlement Service v6.0 C:\Program Files\Common Files\Intuit\Entitlement Client\v6.0\Server\Intuit.Spc.Map.EntitlementClient.Server.Service.exe
13:18:52.0291 0x2518  Intuit Entitlement Service v6.0 - ok
13:18:52.0296 0x2518  [ 3FC9CBB6110084615DC80BB1CCAEA7C2, D16D2F929563ECD796DDC19084F26C48F8E63B8BF7C3A5F9EA09AEB0DF54BE42 ] Intuit Entitlement Service v8 C:\Program Files\Common Files\Intuit\Entitlement Client\v8\Server\Intuit.Spc.Map.EntitlementClient.Server.Service.exe
13:18:52.0297 0x2518  Intuit Entitlement Service v8 - ok
13:18:52.0300 0x2518  [ 7BDB4E00E1CB174B56E5B2C31DDE68A7, C7FC4B2A3245DCD4E01B8DC9F7AA8D4FBDD5D1B4F5A00B8895B2EC5E9068D91A ] IntuitUpdateService C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
13:18:52.0301 0x2518  IntuitUpdateService - ok
13:18:52.0304 0x2518  [ 1663A135865F0BA6E853353E98E67F2A, 700D383F964EBF38D9B66A6C7966700F0DBE7C7AF77AAE2F67AF703E36C8116B ] IntuitUpdateServiceV4 C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
13:18:52.0305 0x2518  IntuitUpdateServiceV4 - ok
13:18:52.0309 0x2518  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
13:18:52.0311 0x2518  IPBusEnum - ok
13:18:52.0315 0x2518  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:18:52.0317 0x2518  IpFilterDriver - ok
13:18:52.0331 0x2518  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
13:18:52.0342 0x2518  iphlpsvc - ok
13:18:52.0347 0x2518  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
13:18:52.0349 0x2518  IPMIDRV - ok
13:18:52.0354 0x2518  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
13:18:52.0356 0x2518  IPNAT - ok
13:18:52.0371 0x2518  [ 066F2BBE2EEC9A42B065B552BF356B4E, AE86DB5BFD4748C54C0C224E7FBEA3C032F1071A39303DF35AA04869D3950B7A ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
13:18:52.0384 0x2518  iPod Service - ok
13:18:52.0387 0x2518  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
13:18:52.0388 0x2518  IRENUM - ok
13:18:52.0392 0x2518  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
13:18:52.0393 0x2518  isapnp - ok
13:18:52.0401 0x2518  [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
13:18:52.0406 0x2518  iScsiPrt - ok
13:18:52.0410 0x2518  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
13:18:52.0412 0x2518  kbdclass - ok
13:18:52.0415 0x2518  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
13:18:52.0416 0x2518  kbdhid - ok
13:18:52.0418 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] KeyIso          C:\Windows\system32\lsass.exe
13:18:52.0419 0x2518  KeyIso - ok
13:18:52.0423 0x2518  [ F286830298323272260332D6ABC905C1, FF4CD182A95CA53119B228690D682EE9214BE131A0DBCB09B6189FBEBBFF902C ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
13:18:52.0425 0x2518  KSecDD - ok
13:18:52.0430 0x2518  [ D7C760D57B1656DD748B9E4AB6CB5A51, F8AE4185A6A9F7005DEFF1FDC03F395C6189825B482B8C650637FD29DE93AB68 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
13:18:52.0434 0x2518  KSecPkg - ok
13:18:52.0444 0x2518  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
13:18:52.0452 0x2518  KtmRm - ok
13:18:52.0458 0x2518  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
13:18:52.0463 0x2518  LanmanServer - ok
13:18:52.0468 0x2518  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:18:52.0472 0x2518  LanmanWorkstation - ok
13:18:52.0482 0x2518  [ 910344E2A984010435AE84783B25E5EB, 0A547AA691EE89383A8DDF5191943C9AB4021BFD55B51504E81308C52EBE5130 ] LBTServ         C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
13:18:52.0490 0x2518  LBTServ - ok
13:18:52.0495 0x2518  [ EEE5A87EC378C9AD7CE91073FBD63465, 7B2D10399FDB54412D1D7F11CA5AD1886A2256872F311C15DB5B09FCF827E1A1 ] LEqdUsb         C:\Windows\system32\Drivers\LEqdUsb.Sys
13:18:52.0496 0x2518  LEqdUsb - ok
13:18:52.0499 0x2518  [ 62663B385087F5977D8EBD1FDC67B639, FDA5B164EA9BAD449894E41FDF61BE0F65F7D73987CFE1E28E8866D0A180DCC4 ] LHidEqd         C:\Windows\system32\Drivers\LHidEqd.Sys
13:18:52.0500 0x2518  LHidEqd - ok
13:18:52.0503 0x2518  [ 01CC7FB6E790EF044B411377F3A1FF41, A935C0C45F7A8EA7D6A462064928B6F982709FB33C21DE6424232297F3A1948B ] LHidFilt        C:\Windows\system32\DRIVERS\LHidFilt.Sys
13:18:52.0505 0x2518  LHidFilt - ok
13:18:52.0510 0x2518  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
13:18:52.0511 0x2518  lltdio - ok
13:18:52.0518 0x2518  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
13:18:52.0523 0x2518  lltdsvc - ok
13:18:52.0526 0x2518  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
13:18:52.0528 0x2518  lmhosts - ok
13:18:52.0531 0x2518  [ A2E7EAE8898D7B4B8C302B8F4E836BB5, 1F3C1228891C90B4567DE07AD8A9EF1F5005ED74A71EC5E814906FEF44D02ADC ] LMouFilt        C:\Windows\system32\DRIVERS\LMouFilt.Sys
13:18:52.0532 0x2518  LMouFilt - ok
13:18:52.0538 0x2518  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
13:18:52.0540 0x2518  LSI_FC - ok
13:18:52.0544 0x2518  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
13:18:52.0546 0x2518  LSI_SAS - ok
13:18:52.0550 0x2518  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:18:52.0552 0x2518  LSI_SAS2 - ok
13:18:52.0556 0x2518  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:18:52.0559 0x2518  LSI_SCSI - ok
13:18:52.0563 0x2518  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
13:18:52.0566 0x2518  luafv - ok
13:18:52.0569 0x2518  [ 81642F134929946AB4B9572C4C17298C, ECD5923ED78D048446AB3E7EDA2AFE0A8F7AA2BF703A3DA77ECB96647895E07C ] LUsbFilt        C:\Windows\system32\Drivers\LUsbFilt.Sys
13:18:52.0570 0x2518  LUsbFilt - ok
13:18:52.0574 0x2518  [ 8BE71D7EDB8C7494913722059F760DD0, BA02D1EC025BDA8ADAE34483AB6B422A75D0C11392761F83BCB0D0ADB5B1EAE2 ] LVPr2Mon        C:\Windows\system32\DRIVERS\LVPr2Mon.sys
13:18:52.0575 0x2518  LVPr2Mon - ok
13:18:52.0584 0x2518  [ ED643E777BA3F7151EF3F0FB6BE4F7F0, 94B96367ECF2140299F36D93C00C9FE666953BEA6A1253EEEAAC439A682D38CA ] LVRS            C:\Windows\system32\DRIVERS\lvrs.sys
13:18:52.0591 0x2518  LVRS - ok
13:18:52.0686 0x2518  [ 5BC80451109A8DD7F2DDD35BCE2929A3, F97BAD2D43D1E199841BAE5707424B49B4451CD486F249646E898FC7CC7AB4C8 ] LVUVC           C:\Windows\system32\DRIVERS\lvuvc.sys
13:18:52.0778 0x2518  LVUVC - ok
13:18:52.0798 0x2518  [ A9D8D63C7378DD34E4E19036093A9264, A3153B0126F9FA77705377F42827F9D26AF910E4D72563481788A78739D6BCCB ] lxeeCATSCustConnectService C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeeserv.exe
13:18:52.0807 0x2518  lxeeCATSCustConnectService - ok
13:18:52.0811 0x2518  lxee_device - ok
13:18:52.0815 0x2518  [ 4470E3C1E0C3378E4CAB137893C12C3A, CA8E66356F0E671D5454E561E7EAD74DE25DCF53BE452369F96ECACFA8709489 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
13:18:52.0816 0x2518  MBAMProtector - ok
13:18:52.0828 0x2518  [ 65085456FD9A74D7F1A999520C299ECB, EA564BC913EF1B8A4CAA9242FC70F525B68CF1F3CA462F63B0B7215B93FE8530 ] MBAMScheduler   C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
13:18:52.0837 0x2518  MBAMScheduler - ok
13:18:52.0855 0x2518  [ E0D7732F2D2E24B2DB3F67B6750295B8, AA5CA86AF1ACEC900F60339016B3DC55472DB40ADB99186005A7ABE67B7D66FC ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
13:18:52.0871 0x2518  MBAMService - ok
13:18:52.0875 0x2518  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
13:18:52.0878 0x2518  Mcx2Svc - ok
13:18:52.0881 0x2518  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
13:18:52.0883 0x2518  megasas - ok
13:18:52.0890 0x2518  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
13:18:52.0896 0x2518  MegaSR - ok
13:18:52.0904 0x2518  Microsoft SharePoint Workspace Audit Service - ok
13:18:52.0908 0x2518  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
13:18:52.0911 0x2518  MMCSS - ok
13:18:52.0914 0x2518  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
13:18:52.0915 0x2518  Modem - ok
13:18:52.0917 0x2518  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
13:18:52.0919 0x2518  monitor - ok
13:18:52.0922 0x2518  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
13:18:52.0923 0x2518  mouclass - ok
13:18:52.0926 0x2518  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
13:18:52.0927 0x2518  mouhid - ok
13:18:52.0932 0x2518  [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
13:18:52.0934 0x2518  mountmgr - ok
13:18:52.0942 0x2518  [ E77DC03DD3C8E5A388BF9EED2A28F3D1, ED0DAA975D1EC35CE036F02596218E15CC6A054167628D12A0A5AD91B841F422 ] MpFilter        C:\Windows\system32\DRIVERS\MpFilter.sys
13:18:52.0948 0x2518  MpFilter - ok
13:18:52.0953 0x2518  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
13:18:52.0956 0x2518  mpio - ok
13:18:52.0963 0x2518  [ 06D4F934E09C359B0EFBFB3146F1D910, 484F57CD6F8757137F3B3491B8AC8ECF6C6385A666CD1671833DDD9E962AAB4A ] MpKsl2cb85b6d   C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7D5A799C-8431-4209-8435-786FB804B0D1}\MpKsl2cb85b6d.sys
13:18:52.0964 0x2518  MpKsl2cb85b6d - ok
13:18:52.0968 0x2518  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
13:18:52.0970 0x2518  mpsdrv - ok
13:18:52.0985 0x2518  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
13:18:53.0000 0x2518  MpsSvc - ok
13:18:53.0006 0x2518  [ 21F4B24ACFC79A483515BD986DD9043F, 22681907E02E0B723ABE2CEF0602D36C8EF862E7E2B62A9B40A5EF582E58D7BA ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
13:18:53.0008 0x2518  MRxDAV - ok
13:18:53.0014 0x2518  [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
13:18:53.0017 0x2518  mrxsmb - ok
13:18:53.0025 0x2518  [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:18:53.0030 0x2518  mrxsmb10 - ok
13:18:53.0035 0x2518  [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:18:53.0038 0x2518  mrxsmb20 - ok
13:18:53.0041 0x2518  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
13:18:53.0041 0x2518  msahci - ok
13:18:53.0046 0x2518  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
13:18:53.0050 0x2518  msdsm - ok
13:18:53.0055 0x2518  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
13:18:53.0060 0x2518  MSDTC - ok
13:18:53.0065 0x2518  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
13:18:53.0066 0x2518  Msfs - ok
13:18:53.0069 0x2518  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
13:18:53.0070 0x2518  mshidkmdf - ok
13:18:53.0073 0x2518  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
13:18:53.0074 0x2518  msisadrv - ok
13:18:53.0078 0x2518  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
13:18:53.0083 0x2518  MSiSCSI - ok
13:18:53.0084 0x2518  msiserver - ok
13:18:53.0087 0x2518  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
13:18:53.0088 0x2518  MSKSSRV - ok
13:18:53.0091 0x2518  [ B0F49DA36F30922F5DDC3B623B778FCE, EE025AEFA4A2095AFEABFB3A49639DA77D78068A3F5EEDA6C15D34853AFD5609 ] MsMpSvc         C:\Program Files\Microsoft Security Client\MsMpEng.exe
13:18:53.0092 0x2518  MsMpSvc - ok
13:18:53.0095 0x2518  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
13:18:53.0096 0x2518  MSPCLOCK - ok
13:18:53.0098 0x2518  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
13:18:53.0099 0x2518  MSPQM - ok
13:18:53.0105 0x2518  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
13:18:53.0110 0x2518  MsRPC - ok
13:18:53.0114 0x2518  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
13:18:53.0115 0x2518  mssmbios - ok
13:18:53.0118 0x2518  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
13:18:53.0119 0x2518  MSTEE - ok
13:18:53.0122 0x2518  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
13:18:53.0123 0x2518  MTConfig - ok
13:18:53.0125 0x2518  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
13:18:53.0126 0x2518  Mup - ok
13:18:53.0136 0x2518  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
13:18:53.0145 0x2518  napagent - ok
13:18:53.0154 0x2518  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
13:18:53.0160 0x2518  NativeWifiP - ok
13:18:53.0179 0x2518  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\Windows\system32\drivers\ndis.sys
13:18:53.0196 0x2518  NDIS - ok
13:18:53.0200 0x2518  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
13:18:53.0202 0x2518  NdisCap - ok
13:18:53.0204 0x2518  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
13:18:53.0205 0x2518  NdisTapi - ok
13:18:53.0208 0x2518  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
13:18:53.0210 0x2518  Ndisuio - ok
13:18:53.0215 0x2518  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
13:18:53.0218 0x2518  NdisWan - ok
13:18:53.0222 0x2518  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
13:18:53.0223 0x2518  NDProxy - ok
13:18:53.0228 0x2518  [ A081CB6FB9A12668F233EB5414BE3A0E, EE2A1311B51D1FEBAF79F45E568A927D8EA7704AFC8495AED2D26927566F61E3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
13:18:53.0229 0x2518  Net Driver HPZ12 - ok
13:18:53.0234 0x2518  [ 7AFD0E39AB15CB355487B7CC19F4E2C5, E6AFC722743ABEBC1CB9909912AB822F2996EAA7F42774BD7C77F24A6DAAA7A5 ] Netaapl         C:\Windows\system32\DRIVERS\netaapl.sys
13:18:53.0235 0x2518  Netaapl - ok
13:18:53.0238 0x2518  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
13:18:53.0239 0x2518  NetBIOS - ok
13:18:53.0246 0x2518  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
13:18:53.0250 0x2518  NetBT - ok
13:18:53.0253 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] Netlogon        C:\Windows\system32\lsass.exe
13:18:53.0254 0x2518  Netlogon - ok
13:18:53.0263 0x2518  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
13:18:53.0271 0x2518  Netman - ok
13:18:53.0280 0x2518  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:18:53.0285 0x2518  NetMsmqActivator - ok
13:18:53.0290 0x2518  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:18:53.0292 0x2518  NetPipeActivator - ok
13:18:53.0302 0x2518  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
13:18:53.0311 0x2518  netprofm - ok
13:18:53.0316 0x2518  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:18:53.0319 0x2518  NetTcpActivator - ok
13:18:53.0324 0x2518  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
13:18:53.0327 0x2518  NetTcpPortSharing - ok
13:18:53.0331 0x2518  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
13:18:53.0332 0x2518  nfrd960 - ok
13:18:53.0336 0x2518  [ 32FF06EC6D946EF791D98D6C838A3090, 319BDD491CB22D0CCCCE76A2854CF469D7AF046289F9C56CD03AE3D3CBC0275E ] NisDrv          C:\Windows\system32\DRIVERS\NisDrvWFP.sys
13:18:53.0339 0x2518  NisDrv - ok
13:18:53.0347 0x2518  [ 42D33042371BFB1A7D40834590CAFD30, 53DA3618EC10293B2DF686E291A4EF6ACBBD41D116EC762D54106D201A784E87 ] NisSrv          C:\Program Files\Microsoft Security Client\NisSrv.exe
13:18:53.0354 0x2518  NisSrv - ok
13:18:53.0362 0x2518  [ 374071043F9E4231EE43BE2BB48DD36D, C4FA3FC40CC49DBBB91901D14210A55D3831FAC9F9B3FF45FCA7F5CF242C9E92 ] NlaSvc          C:\Windows\System32\nlasvc.dll
13:18:53.0369 0x2518  NlaSvc - ok
13:18:53.0372 0x2518  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
13:18:53.0374 0x2518  Npfs - ok
13:18:53.0376 0x2518  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
13:18:53.0378 0x2518  nsi - ok
13:18:53.0381 0x2518  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
13:18:53.0382 0x2518  nsiproxy - ok
13:18:53.0413 0x2518  [ 5E43D2B0EE64123D4880DFA6626DEFDE, 164413A22DE58B19EA2B4120034B46D6BE1F424B80C3421E10BE5C81153D049F ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
13:18:53.0440 0x2518  Ntfs - ok
13:18:53.0446 0x2518  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
13:18:53.0447 0x2518  Null - ok
13:18:53.0451 0x2518  [ 4E173C7088C5B754EC66D2279B9021F7, 242FB5948B1E771FD03E610C7013E5EC156A3E0EF643122C39720BB97314CEBE ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
13:18:53.0453 0x2518  nusb3hub - ok
13:18:53.0458 0x2518  [ A058A987EA477B3255424F3CFE77176A, 9761CD0A155F14058AC2474C358F294CF62208F2A99CB07C90E05D943AC3C8F9 ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
13:18:53.0462 0x2518  nusb3xhc - ok
13:18:53.0467 0x2518  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
13:18:53.0470 0x2518  nvraid - ok
13:18:53.0476 0x2518  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
13:18:53.0480 0x2518  nvstor - ok
13:18:53.0485 0x2518  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
13:18:53.0488 0x2518  nv_agp - ok
13:18:53.0492 0x2518  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
13:18:53.0494 0x2518  ohci1394 - ok
13:18:53.0500 0x2518  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:18:53.0504 0x2518  ose - ok
13:18:53.0606 0x2518  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:18:53.0705 0x2518  osppsvc - ok
13:18:53.0720 0x2518  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
13:18:53.0727 0x2518  p2pimsvc - ok
13:18:53.0737 0x2518  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
13:18:53.0746 0x2518  p2psvc - ok
13:18:53.0750 0x2518  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\DRIVERS\parport.sys
13:18:53.0752 0x2518  Parport - ok
13:18:53.0756 0x2518  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
13:18:53.0758 0x2518  partmgr - ok
13:18:53.0761 0x2518  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
13:18:53.0762 0x2518  Parvdm - ok
13:18:53.0763 0x2518  PCANDIS4 - ok
13:18:53.0771 0x2518  [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc          C:\Windows\System32\pcasvc.dll
13:18:53.0776 0x2518  PcaSvc - ok
13:18:53.0782 0x2518  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
13:18:53.0786 0x2518  pci - ok
13:18:53.0789 0x2518  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
13:18:53.0790 0x2518  pciide - ok
13:18:53.0796 0x2518  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
13:18:53.0800 0x2518  pcmcia - ok
13:18:53.0804 0x2518  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
13:18:53.0805 0x2518  pcw - ok
13:18:53.0821 0x2518  [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
13:18:53.0835 0x2518  PEAUTH - ok
13:18:53.0860 0x2518  [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
13:18:53.0883 0x2518  PeerDistSvc - ok
13:18:53.0923 0x2518  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
13:18:53.0958 0x2518  pla - ok
13:18:53.0970 0x2518  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:18:53.0978 0x2518  PlugPlay - ok
13:18:53.0982 0x2518  [ 65BC271F337637731D3C71455AE1F476, DAD32B61FE0147F8D2DA4C8F016920CD6BB2098F16E3CC2768009763E71DEFBC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:18:53.0984 0x2518  Pml Driver HPZ12 - ok
13:18:53.0989 0x2518  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:18:53.0992 0x2518  PNRPAutoReg - ok
13:18:54.0000 0x2518  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:18:54.0006 0x2518  PNRPsvc - ok
13:18:54.0017 0x2518  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:18:54.0026 0x2518  PolicyAgent - ok
13:18:54.0034 0x2518  [ 72463AFAEB064CAF10D16D00E495070A, 74D72A67053DCB688687CE043485551EC9A37FF71CAEC4AE9016591220901081 ] PortEmulator    C:\Program Files\StarMicronics\TSP100\Software\20121010\portemu_umdf_tsp100.exe
13:18:54.0041 0x2518  PortEmulator - ok
13:18:54.0046 0x2518  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
13:18:54.0051 0x2518  Power - ok
13:18:54.0055 0x2518  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
13:18:54.0057 0x2518  PptpMiniport - ok
13:18:54.0061 0x2518  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
13:18:54.0062 0x2518  Processor - ok
13:18:54.0071 0x2518  [ CADEFAC453040E370A1BDFF3973BE00D, 2E3DD8DA702468D8AB0F3CE27188B1991D4CB015FB36BAE4C6E7996B61CF49B8 ] ProfSvc         C:\Windows\system32\profsvc.dll
13:18:54.0076 0x2518  ProfSvc - ok
13:18:54.0079 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:18:54.0081 0x2518  ProtectedStorage - ok
13:18:54.0085 0x2518  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
13:18:54.0088 0x2518  Psched - ok
13:18:54.0092 0x2518  [ C655E74661B2A7017FA7A225593E5C88, 4F86E2D21D362C7E54DE2AE4F7033460829CA4CFBB47DF14254D167493197875 ] QBCFMonitorService C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
13:18:54.0094 0x2518  QBCFMonitorService - ok
13:18:54.0098 0x2518  [ 6BEE1814470DC12FA20C53DFC3C97EBB, 91E8C22E54A090966E9B96395392B2C03A32DB1AF8DB2289E2EA9460F0A76C0F ] QBFCService     C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
13:18:54.0100 0x2518  QBFCService - ok
13:18:54.0172 0x2518  [ 66825E27D8BDC2E8EB1CD7E0D1429F75, C2B570BCFAA2EBCC3574D38E7450F533F366DC2129DF6CD7EC1F7D4207FD91FE ] QBPOSDBServiceV10 C:\Program Files\Intuit\QuickBooks Point of Sale 10.0\DatabaseServer\QBPOSDBService.exe
13:18:54.0239 0x2518  QBPOSDBServiceV10 - ok
13:18:54.0311 0x2518  [ B737455181C7E1369D5539BA36CEA4F1, 9C589DF2312EEF7A7F0C123E2881E502FFE11ECB59AB59F71405D5A4A9F7CFF4 ] QBPOSDBServiceV11 C:\Program Files\Intuit\QuickBooks Point of Sale 11.0\DatabaseServer\QBPOSDBService.exe
13:18:54.0380 0x2518  QBPOSDBServiceV11 - ok
13:18:54.0414 0x2518  [ 556EF21A96D296357D7BA075095E0A0A, 6645EAF5C1D52DCB97817789B0EF63A2ACD5BAF3DD180595A8764041C2378C86 ] QBVSS           C:\Program Files\Common Files\Intuit\DataProtect\QBIDPService.exe
13:18:54.0441 0x2518  QBVSS - ok
13:18:54.0473 0x2518  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
13:18:54.0504 0x2518  ql2300 - ok
13:18:54.0510 0x2518  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
13:18:54.0513 0x2518  ql40xx - ok
13:18:54.0523 0x2518  QuickBooksDB20 - ok
13:18:54.0594 0x2518  QuickBooksDB22 - ok
13:18:54.0607 0x2518  QuickBooksDB23 - ok
13:18:54.0616 0x2518  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
13:18:54.0622 0x2518  QWAVE - ok
13:18:54.0625 0x2518  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:18:54.0626 0x2518  QWAVEdrv - ok
13:18:54.0629 0x2518  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:18:54.0630 0x2518  RasAcd - ok
13:18:54.0634 0x2518  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
13:18:54.0636 0x2518  RasAgileVpn - ok
13:18:54.0640 0x2518  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
13:18:54.0644 0x2518  RasAuto - ok
13:18:54.0648 0x2518  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
13:18:54.0651 0x2518  Rasl2tp - ok
13:18:54.0660 0x2518  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
13:18:54.0667 0x2518  RasMan - ok
13:18:54.0671 0x2518  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:18:54.0674 0x2518  RasPppoe - ok
13:18:54.0678 0x2518  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
13:18:54.0681 0x2518  RasSstp - ok
13:18:54.0689 0x2518  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:18:54.0695 0x2518  rdbss - ok
13:18:54.0698 0x2518  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
13:18:54.0699 0x2518  rdpbus - ok
13:18:54.0702 0x2518  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
13:18:54.0703 0x2518  RDPCDD - ok
13:18:54.0708 0x2518  [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
13:18:54.0712 0x2518  RDPDR - ok
13:18:54.0715 0x2518  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
13:18:54.0716 0x2518  RDPENCDD - ok
13:18:54.0721 0x2518  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
13:18:54.0722 0x2518  RDPREFMP - ok
13:18:54.0727 0x2518  [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:18:54.0728 0x2518  RdpVideoMiniport - ok
13:18:54.0734 0x2518  [ F031683E6D1FEA157ABB2FF260B51E61, 83B552819A5964152882C527E1421DBCEAACC74DEB897E3C4B53F52F1467FED3 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
13:18:54.0739 0x2518  RDPWD - ok
13:18:54.0746 0x2518  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:18:54.0750 0x2518  rdyboost - ok
13:18:54.0754 0x2518  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:18:54.0757 0x2518  RemoteAccess - ok
13:18:54.0762 0x2518  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:18:54.0766 0x2518  RemoteRegistry - ok
13:18:54.0770 0x2518  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:18:54.0774 0x2518  RpcEptMapper - ok
13:18:54.0776 0x2518  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
13:18:54.0778 0x2518  RpcLocator - ok
13:18:54.0789 0x2518  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
13:18:54.0795 0x2518  RpcSs - ok
13:18:54.0800 0x2518  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
13:18:54.0802 0x2518  rspndr - ok
13:18:54.0813 0x2518  [ 325590E7E9587459643BA24D2CF73BF2, 92699FF111C597D6DF0AA4CE059F199E3E67CD15E43C102968E3285995FF0079 ] RTL8187         C:\Windows\system32\DRIVERS\rtl8187.sys
13:18:54.0823 0x2518  RTL8187 - ok
13:18:54.0826 0x2518  [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
13:18:54.0827 0x2518  s3cap - ok
13:18:54.0829 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] SamSs           C:\Windows\system32\lsass.exe
13:18:54.0831 0x2518  SamSs - ok
13:18:54.0834 0x2518  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
13:18:54.0836 0x2518  sbp2port - ok
13:18:54.0842 0x2518  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:18:54.0847 0x2518  SCardSvr - ok
13:18:54.0850 0x2518  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:18:54.0852 0x2518  scfilter - ok
13:18:54.0871 0x2518  [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule        C:\Windows\system32\schedsvc.dll
13:18:54.0889 0x2518  Schedule - ok
13:18:54.0894 0x2518  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:18:54.0896 0x2518  SCPolicySvc - ok
13:18:54.0901 0x2518  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:18:54.0905 0x2518  SDRSVC - ok
13:18:54.0908 0x2518  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
13:18:54.0909 0x2518  secdrv - ok
13:18:54.0912 0x2518  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\Windows\system32\seclogon.dll
13:18:54.0915 0x2518  seclogon - ok
13:18:54.0917 0x2518  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
13:18:54.0920 0x2518  SENS - ok
13:18:54.0923 0x2518  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:18:54.0926 0x2518  SensrSvc - ok
13:18:54.0928 0x2518  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
13:18:54.0930 0x2518  Serenum - ok
13:18:54.0934 0x2518  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
13:18:54.0936 0x2518  Serial - ok
13:18:54.0940 0x2518  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
13:18:54.0941 0x2518  sermouse - ok
13:18:54.0950 0x2518  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
13:18:54.0955 0x2518  SessionEnv - ok
13:18:54.0958 0x2518  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
13:18:54.0958 0x2518  sffdisk - ok
13:18:54.0960 0x2518  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
13:18:54.0962 0x2518  sffp_mmc - ok
13:18:54.0964 0x2518  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
13:18:54.0965 0x2518  sffp_sd - ok
13:18:54.0968 0x2518  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
13:18:54.0970 0x2518  sfloppy - ok
13:18:54.0979 0x2518  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:18:54.0987 0x2518  SharedAccess - ok
13:18:54.0998 0x2518  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:18:55.0007 0x2518  ShellHWDetection - ok
13:18:55.0011 0x2518  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
13:18:55.0013 0x2518  sisagp - ok
13:18:55.0017 0x2518  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:18:55.0019 0x2518  SiSRaid2 - ok
13:18:55.0023 0x2518  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
13:18:55.0025 0x2518  SiSRaid4 - ok
13:18:55.0032 0x2518  [ D0C0B700152B1F610F10B356483B3401, 514896C41D0CF28DF24AA80A5C3326A911B3564B2CF35FE3FAA100247C1749A9 ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
13:18:55.0037 0x2518  SkypeUpdate - ok
13:18:55.0041 0x2518  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
13:18:55.0042 0x2518  Smb - ok
13:18:55.0050 0x2518  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:18:55.0052 0x2518  SNMPTRAP - ok
13:18:55.0055 0x2518  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
13:18:55.0056 0x2518  spldr - ok
13:18:55.0066 0x2518  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
13:18:55.0075 0x2518  Spooler - ok
13:18:55.0148 0x2518  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
13:18:55.0218 0x2518  sppsvc - ok
13:18:55.0225 0x2518  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
13:18:55.0229 0x2518  sppuinotify - ok
13:18:55.0238 0x2518  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:18:55.0246 0x2518  srv - ok
13:18:55.0255 0x2518  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:18:55.0262 0x2518  srv2 - ok
13:18:55.0267 0x2518  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:18:55.0271 0x2518  srvnet - ok
13:18:55.0277 0x2518  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:18:55.0282 0x2518  SSDPSRV - ok
13:18:55.0287 0x2518  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:18:55.0291 0x2518  SstpSvc - ok
13:18:55.0306 0x2518  [ 7DE35FB26617D9AEF44CEFE9FAC5C51A, ADAFD4690D61070DEEC7D04CBE565C73EF92A17F9C16B7FDD1375D38CD54395A ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
13:18:55.0320 0x2518  Steam Client Service - ok
13:18:55.0323 0x2518  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
13:18:55.0325 0x2518  stexstor - ok
13:18:55.0328 0x2518  [ EDB05BD63148796F23EA78506404A538, 8EBF623D3DEB6CCAC75AAFCF8B23271029A28BE29D459088E40FBF109E80AA17 ] StillCam        C:\Windows\system32\drivers\serscan.sys
13:18:55.0329 0x2518  StillCam - ok
13:18:55.0341 0x2518  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
13:18:55.0354 0x2518  StiSvc - ok
13:18:55.0358 0x2518  [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
13:18:55.0359 0x2518  storflt - ok
13:18:55.0363 0x2518  [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
13:18:55.0364 0x2518  storvsc - ok
13:18:55.0367 0x2518  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\drivers\swenum.sys
13:18:55.0368 0x2518  swenum - ok
13:18:55.0377 0x2518  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
13:18:55.0385 0x2518  swprv - ok
13:18:55.0388 0x2518  Synth3dVsc - ok
13:18:55.0416 0x2518  [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain         C:\Windows\system32\sysmain.dll
13:18:55.0443 0x2518  SysMain - ok
13:18:55.0449 0x2518  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
13:18:55.0453 0x2518  TabletInputService - ok
13:18:55.0460 0x2518  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:18:55.0467 0x2518  TapiSrv - ok
13:18:55.0473 0x2518  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
13:18:55.0476 0x2518  TBS - ok
13:18:55.0484 0x2518  [ 26CBF7CCFBC2CE4BEAA0DAA800ED0E76, DE51DDAEA1F7D56D8C7C9B08F7021F95A36C663CF17A83F9C515AA9D8D112C8E ] TcpEmulatorTSP100LAN C:\Program Files\StarMicronics\TSP100\Software\20121010\tcpemu_tsp100lan.exe
13:18:55.0490 0x2518  TcpEmulatorTSP100LAN - ok
13:18:55.0521 0x2518  [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:18:55.0550 0x2518  Tcpip - ok
13:18:55.0582 0x2518  [ CA59F7C570AF70BC174F477CFE2D9EE3, F09E4E14207A2AC6957D2C0AC8707D0E356A9087FA6DC703373242D8EEB026BD ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
13:18:55.0603 0x2518  TCPIP6 - ok
13:18:55.0609 0x2518  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:18:55.0610 0x2518  tcpipreg - ok
13:18:55.0615 0x2518  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
13:18:55.0616 0x2518  TDPIPE - ok
13:18:55.0619 0x2518  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
13:18:55.0620 0x2518  TDTCP - ok
13:18:55.0624 0x2518  [ B459575348C20E8121D6039DA063C704, 1B4328A9EA39FF5A57F258E02254D04B73455F1DF7C997C13702A8B2F12D0347 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:18:55.0625 0x2518  tdx - ok
13:18:55.0753 0x2518  [ F67C21CC4195F6AFC447418FE163E156, 01D245952C1AF2B365DBA6C36AFE0FFB2332480B6A1D7D4B43A0DE4FB7535B0B ] TeamViewer8     C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
13:18:55.0875 0x2518  TeamViewer8 - ok
13:18:55.0883 0x2518  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\drivers\termdd.sys
13:18:55.0885 0x2518  TermDD - ok
13:18:55.0899 0x2518  [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService     C:\Windows\System32\termsrv.dll
13:18:55.0913 0x2518  TermService - ok
13:18:55.0916 0x2518  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
13:18:55.0919 0x2518  Themes - ok
13:18:55.0922 0x2518  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
13:18:55.0924 0x2518  THREADORDER - ok
13:18:55.0929 0x2518  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
13:18:55.0932 0x2518  TrkWks - ok
13:18:55.0939 0x2518  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:18:55.0944 0x2518  TrustedInstaller - ok
13:18:55.0950 0x2518  [ B37B08F2E5EEB1A37E448E09BACE1101, 32CC9E06B88BAB6FAB4696B744548DFCE9199A7FD2BA8B019F269CA75895852C ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
13:18:55.0951 0x2518  tssecsrv - ok
13:18:55.0956 0x2518  [ C6A5FBD4977305E1FA23E02C042DB463, A6EB5E4B8051A258D40A385609E930318EAA3494C8466F48542B806FE6A7C47A ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
13:18:55.0958 0x2518  TsUsbFlt - ok
13:18:55.0960 0x2518  tsusbhub - ok
13:18:55.0966 0x2518  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
13:18:55.0970 0x2518  tunnel - ok
13:18:55.0974 0x2518  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
13:18:55.0976 0x2518  uagp35 - ok
13:18:55.0985 0x2518  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:18:55.0992 0x2518  udfs - ok
13:18:55.0998 0x2518  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:18:56.0001 0x2518  UI0Detect - ok
13:18:56.0004 0x2518  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
13:18:56.0007 0x2518  uliagpkx - ok
13:18:56.0010 0x2518  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
13:18:56.0012 0x2518  umbus - ok
13:18:56.0016 0x2518  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
13:18:56.0017 0x2518  UmPass - ok
13:18:56.0024 0x2518  [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService    C:\Windows\System32\umrdp.dll
13:18:56.0030 0x2518  UmRdpService - ok
13:18:56.0044 0x2518  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
13:18:56.0068 0x2518  UMVPFSrv - ok
13:18:56.0081 0x2518  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
13:18:56.0088 0x2518  upnphost - ok
13:18:56.0092 0x2518  [ 6E421CCC57059B0186C6259CA3B6DFC9, E348BF23CCD6C14FD10C1689BBDC77E125245331F97BFE60D4C8FD9A8711CB59 ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
13:18:56.0094 0x2518  USBAAPL - ok
13:18:56.0098 0x2518  [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
13:18:56.0101 0x2518  usbaudio - ok
13:18:56.0105 0x2518  [ 71D97F1A3CC47A56728F7A400A3F8295, ED3FDB73D8A98D9BAF702C0F5C7AD79D525D19DCE1487D442536913BEA5C7F15 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
13:18:56.0107 0x2518  usbccgp - ok
13:18:56.0111 0x2518  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
13:18:56.0114 0x2518  usbcir - ok
13:18:56.0118 0x2518  [ C4FB8E7ADEA9B5CEEA885A1B504B7E40, 3E0AE5D236890452F2EA33504309A7E5FE49C567FF6F68A83A5987F05ED01BF0 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
13:18:56.0120 0x2518  usbehci - ok
13:18:56.0126 0x2518  [ 86AA95ACB611001E26CD2C0145F2225A, 584D26E8C9407A4E717DCBF2D3819DB441C2D455B5FDA6654FBA3794E19B4D51 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
13:18:56.0133 0x2518  usbhub - ok
13:18:56.0136 0x2518  [ DCDF9855145A14DFCA0AB32308871961, 9A21013AD032195D54CE655DE5363E78BB74CC55C40B889520B478892F4BA40A ] usbohci         C:\Windows\system32\drivers\usbohci.sys
13:18:56.0137 0x2518  usbohci - ok
13:18:56.0140 0x2518  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
13:18:56.0141 0x2518  usbprint - ok
13:18:56.0144 0x2518  [ FC6B21DB4B5B398AB93DBE59CBF11036, A94094C208F376405C07822A6143001EF1B12AE93205CD8002E87F6EB45F6374 ] usbscan         C:\Windows\system32\drivers\usbscan.sys
13:18:56.0147 0x2518  usbscan - ok
13:18:56.0151 0x2518  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:18:56.0154 0x2518  USBSTOR - ok
13:18:56.0157 0x2518  [ 8E51D04175BAA14C4F79AA5F6D248770, 6CE2E45E272734A5D1D0C4CE2BD7B61C61C7538903E87203E376495D198EFBD0 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
13:18:56.0158 0x2518  usbuhci - ok
13:18:56.0161 0x2518  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
13:18:56.0164 0x2518  UxSms - ok
13:18:56.0166 0x2518  [ 803B370865D907EA21DC0C2B6A8936B5, E98F0BA1D94786E061A3EA2CC76041FF6BE0ADF47C6205D5572C03BF0E29CA78 ] VaultSvc        C:\Windows\system32\lsass.exe
13:18:56.0167 0x2518  VaultSvc - ok
13:18:56.0170 0x2518  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
13:18:56.0172 0x2518  vdrvroot - ok
13:18:56.0186 0x2518  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
13:18:56.0199 0x2518  vds - ok
13:18:56.0202 0x2518  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
13:18:56.0204 0x2518  vga - ok
13:18:56.0206 0x2518  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
13:18:56.0208 0x2518  VgaSave - ok
13:18:56.0209 0x2518  VGPU - ok
13:18:56.0212 0x2518  [ 3E720E41D0754670E3C8A9EFC3E28339, A8DDDAEC9BF96890FCCC2AEB4A10CBCAC73465F2C1B67E7874F44F125D265FD1 ] vhdbus          C:\Windows\system32\DRIVERS\vhdbus.sys
13:18:56.0213 0x2518  vhdbus - ok
13:18:56.0219 0x2518  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
13:18:56.0224 0x2518  vhdmp - ok
13:18:56.0227 0x2518  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
13:18:56.0229 0x2518  viaagp - ok
13:18:56.0233 0x2518  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
13:18:56.0235 0x2518  ViaC7 - ok
13:18:56.0238 0x2518  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
13:18:56.0239 0x2518  viaide - ok
13:18:56.0311 0x2518  [ AB623B051669EA0358B6D068D646EE4A, 80BA375AB3318F477813A645C304CDEAE490E4264B0BACD24ED226EC79D4C3B8 ] Virtual Server  C:\Program Files\Microsoft Virtual Server\vssrvc.exe
13:18:56.0381 0x2518  Virtual Server - ok
13:18:56.0390 0x2518  [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus           C:\Windows\system32\drivers\vmbus.sys
13:18:56.0395 0x2518  vmbus - ok
13:18:56.0398 0x2518  [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
13:18:56.0399 0x2518  VMBusHID - ok
13:18:56.0406 0x2518  [ 0F44899FB8D117DAD00BDEE115E49078, 4CD3BC80D5B1E5383EE973C741B50600405E179C6624334D37BEA81F43CFAB3F ] vmh             C:\Program Files\Microsoft Virtual Server\vmh.exe
13:18:56.0410 0x2518  vmh - ok
13:18:56.0418 0x2518  [ 817DA66B1B889FAD1DBF669E0E2F3228, 242EC5B151AFBD61CA7AB1F926A3ACB94874002C8B46FFB492F8C0EAB011A538 ] vmm             C:\Windows\system32\Drivers\vmm.sys
13:18:56.0423 0x2518  vmm - ok
13:18:56.0427 0x2518  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
13:18:56.0429 0x2518  volmgr - ok
13:18:56.0438 0x2518  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:18:56.0445 0x2518  volmgrx - ok
13:18:56.0453 0x2518  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:18:56.0458 0x2518  volsnap - ok
13:18:56.0464 0x2518  [ B26536ADD1D748CDA104D856C979AE79, C88FBCD63DB3607232616FAB989F0FD7FB00ED542E6AC1BC76076A7C13A6FB22 ] vpcbus          C:\Windows\system32\DRIVERS\vpchbus.sys
13:18:56.0469 0x2518  vpcbus - ok
13:18:56.0474 0x2518  [ F75AAF3E202E73F7BC43627A358FDFA2, D860178EF6427FAB4D354F008EB41554A68844516A7CE8604EDB5FBD4DFEECBC ] VPCNetS2        C:\Windows\system32\DRIVERS\VMNetSrv.sys
13:18:56.0476 0x2518  VPCNetS2 - ok
13:18:56.0480 0x2518  [ A0F7E923A6261760130F22B85DF9040E, E70ED14497262C75CC2D4B67B046BB43D8F47A4B8487D258694891E9B4C6DA44 ] vpcnfltr        C:\Windows\system32\DRIVERS\vpcnfltr.sys
13:18:56.0481 0x2518  vpcnfltr - ok
13:18:56.0486 0x2518  [ 5F4B55E91CE7E2523C9E1E0ECE858869, 3C395198C1845A15C4E39888383587A5E481E2761B885DBB5FC2C17C7075E6B4 ] vpcusb          C:\Windows\system32\DRIVERS\vpcusb.sys
13:18:56.0488 0x2518  vpcusb - ok
13:18:56.0498 0x2518  [ B487191FE18D6863381A1AC55482469A, 77A6C87E833E90FFD2FF51C6B28041D8AE9C6CE293DA4166E65470C18C017971 ] vpcvmm          C:\Windows\system32\drivers\vpcvmm.sys
13:18:56.0504 0x2518  vpcvmm - ok
13:18:56.0510 0x2518  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
13:18:56.0514 0x2518  vsmraid - ok
13:18:56.0539 0x2518  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
13:18:56.0563 0x2518  VSS - ok
13:18:56.0567 0x2518  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
13:18:56.0568 0x2518  vwifibus - ok
13:18:56.0571 0x2518  [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
13:18:56.0573 0x2518  vwififlt - ok
13:18:56.0583 0x2518  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
13:18:56.0590 0x2518  W32Time - ok
13:18:56.0604 0x2518  [ 57C8C20BFA5BEF6BD851EBAC67A8CED0, D5968069D934400A46B9FF92ECA9D7660BDC30C6909BA588AD49F7656246EE98 ] W3SVC           C:\Windows\system32\inetsrv\iisw3adm.dll
13:18:56.0614 0x2518  W3SVC - ok
13:18:56.0617 0x2518  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
13:18:56.0619 0x2518  WacomPen - ok
13:18:56.0623 0x2518  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
13:18:56.0625 0x2518  WANARP - ok
13:18:56.0627 0x2518  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:18:56.0628 0x2518  Wanarpv6 - ok
13:18:56.0639 0x2518  [ 57C8C20BFA5BEF6BD851EBAC67A8CED0, D5968069D934400A46B9FF92ECA9D7660BDC30C6909BA588AD49F7656246EE98 ] WAS             C:\Windows\system32\inetsrv\iisw3adm.dll
13:18:56.0647 0x2518  WAS - ok
13:18:56.0678 0x2518  [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
13:18:56.0708 0x2518  WatAdminSvc - ok
13:18:56.0739 0x2518  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
13:18:56.0767 0x2518  wbengine - ok
13:18:56.0775 0x2518  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:18:56.0780 0x2518  WbioSrvc - ok
13:18:56.0789 0x2518  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:18:56.0796 0x2518  wcncsvc - ok
13:18:56.0800 0x2518  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:18:56.0803 0x2518  WcsPlugInService - ok
13:18:56.0806 0x2518  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
13:18:56.0807 0x2518  Wd - ok
13:18:56.0835 0x2518  [ 412D0A8A75C2F83BD69428B68A37F431, 00FE1F8775579EA80D2E93AD197C5E86103D03FEE62633B6E0A5650FDEA09A44 ] WDBackup        C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe
13:18:56.0861 0x2518  WDBackup - ok
13:18:56.0865 0x2518  [ D6EFAF429FD30C5DF613D220E344CCE7, 807D4563E8AD4073688691078EB13AF240E14BA5E0C8506A48B3060A20B90082 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam.sys
13:18:56.0866 0x2518  WDC_SAM - ok
13:18:56.0875 0x2518  [ 7A5ABA8C6D9D0737F514305D9EC45728, A4D0B64B287D4E1195FABE48105DAAD7C69191421167E42889504A8E7C33CF72 ] WDDriveService  C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
13:18:56.0880 0x2518  WDDriveService - ok
13:18:56.0894 0x2518  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:18:56.0907 0x2518  Wdf01000 - ok
13:18:56.0912 0x2518  [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:18:56.0916 0x2518  WdiServiceHost - ok
13:18:56.0918 0x2518  [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:18:56.0921 0x2518  WdiSystemHost - ok
13:18:56.0949 0x2518  [ B1B27BF974E7BB20059AD7E58D7EE384, B6C329FBC25FC1ABFB3A07DC6A6284DEE12BCE54FE19C7D4ADA0BDC8CD56A8FD ] WDRulesService  C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
13:18:56.0975 0x2518  WDRulesService - ok
13:18:56.0985 0x2518  [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient       C:\Windows\System32\webclnt.dll
13:18:56.0991 0x2518  WebClient - ok
13:18:56.0998 0x2518  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:18:57.0003 0x2518  Wecsvc - ok
13:18:57.0007 0x2518  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:18:57.0010 0x2518  wercplsupport - ok
13:18:57.0015 0x2518  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
13:18:57.0019 0x2518  WerSvc - ok
13:18:57.0021 0x2518  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
13:18:57.0022 0x2518  WfpLwf - ok
13:18:57.0025 0x2518  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:18:57.0026 0x2518  WIMMount - ok
13:18:57.0043 0x2518  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
13:18:57.0059 0x2518  WinDefend - ok
13:18:57.0066 0x2518  WinHttpAutoProxySvc - ok
13:18:57.0075 0x2518  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:18:57.0080 0x2518  Winmgmt - ok
13:18:57.0107 0x2518  [ 1B91CD34EA3A90AB6A4EF0550174F4CC, 5B6618615EBFBA594C945AD35F5C68DA8C6053892B6D12D626BB6120910D80DC ] WinRM           C:\Windows\system32\WsmSvc.dll
13:18:57.0135 0x2518  WinRM - ok
13:18:57.0141 0x2518  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
13:18:57.0143 0x2518  WinUsb - ok
13:18:57.0164 0x2518  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
13:18:57.0184 0x2518  Wlansvc - ok
13:18:57.0190 0x2518  [ 6067ACEF367E79914AF628FA1E9B5330, 491A705267B48C103E00B26BBD21FA8829DB03A88343CBC27264CEE5DE8C8DEF ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
13:18:57.0194 0x2518  wlcrasvc - ok
13:18:57.0233 0x2518  [ FB01D4AE207B9EFDBABFC55DC95C7E31, E0EFDBBE0BAC275230C8C1A053948C21BCF20B99B92E50939E95FFB9DC87F6BA ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:18:57.0271 0x2518  wlidsvc - ok
13:18:57.0275 0x2518  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
13:18:57.0276 0x2518  WmiAcpi - ok
13:18:57.0283 0x2518  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:18:57.0287 0x2518  wmiApSrv - ok
13:18:57.0313 0x2518  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
13:18:57.0338 0x2518  WMPNetworkSvc - ok
13:18:57.0342 0x2518  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
13:18:57.0345 0x2518  WPCSvc - ok
13:18:57.0349 0x2518  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:18:57.0353 0x2518  WPDBusEnum - ok
13:18:57.0356 0x2518  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:18:57.0358 0x2518  ws2ifsl - ok
13:18:57.0362 0x2518  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
13:18:57.0366 0x2518  wscsvc - ok
13:18:57.0370 0x2518  [ 553F6CCD7C58EB98D4A8FBDAF283D7A9, 71FBE50C470D1F54FDAADCECEC2CB021AE240CD59DE4E8EB5BCAA6E7F2F86560 ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
13:18:57.0371 0x2518  WSDPrintDevice - ok
13:18:57.0373 0x2518  WSearch - ok
13:18:57.0418 0x2518  [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:18:57.0460 0x2518  wuauserv - ok
13:18:57.0466 0x2518  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:18:57.0469 0x2518  WudfPf - ok
13:18:57.0475 0x2518  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
13:18:57.0479 0x2518  WUDFRd - ok
13:18:57.0483 0x2518  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:18:57.0487 0x2518  wudfsvc - ok
13:18:57.0494 0x2518  [ 3C5E51C05BE9B56EAFF4E388C3AB25E4, 10D9FDEDAB1FB2E76D54661AFA5C1A6B1B0980525F38F5D061537077841C6AEE ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:18:57.0500 0x2518  WwanSvc - ok
13:18:57.0505 0x2518  [ A640C90B007762939507C28A021BE3B3, 465289C2620E6B53973E08C969D86EB8C5AE33D279B1055E48725758F9FCF9B9 ] xusb21          C:\Windows\system32\DRIVERS\xusb21.sys
13:18:57.0507 0x2518  xusb21 - ok
13:18:57.0517 0x2518  [ B07C5B7EFDF936FF93D4F540938725BE, A9D559B0A99937CC4E7F065566054DAFCCD0C6C3AA98B47ADF7CB2ABD30B0182 ] yukonw7         C:\Windows\system32\DRIVERS\yk62x86.sys
13:18:57.0525 0x2518  yukonw7 - ok
13:18:57.0529 0x2518  ================ Scan global ===============================
13:18:57.0533 0x2518  [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
13:18:57.0540 0x2518  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
13:18:57.0550 0x2518  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
13:18:57.0557 0x2518  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
13:18:57.0565 0x2518  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
13:18:57.0573 0x2518  [ Global ] - ok
13:18:57.0573 0x2518  ================ Scan MBR ==================================
13:18:57.0575 0x2518  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:18:57.0620 0x2518  \Device\Harddisk0\DR0 - ok
13:18:57.0695 0x2518  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
13:18:58.0593 0x2518  \Device\Harddisk1\DR1 - ok
13:18:58.0594 0x2518  ================ Scan VBR ==================================
13:18:58.0595 0x2518  [ 975E904D7009FA761590D0648D68D7DF ] \Device\Harddisk0\DR0\Partition1
13:18:58.0597 0x2518  \Device\Harddisk0\DR0\Partition1 - ok
13:18:58.0599 0x2518  [ E39C50A1F3FF1DF7BBD66DE7CF0FE990 ] \Device\Harddisk0\DR0\Partition2
13:18:58.0600 0x2518  \Device\Harddisk0\DR0\Partition2 - ok
13:18:58.0603 0x2518  [ 7E4FF22091DA42989D0CCA064C00BE34 ] \Device\Harddisk1\DR1\Partition1
13:18:58.0605 0x2518  \Device\Harddisk1\DR1\Partition1 - ok
13:18:58.0605 0x2518  Waiting for KSN requests completion. In queue: 216
13:18:59.0605 0x2518  Waiting for KSN requests completion. In queue: 216
13:19:00.0605 0x2518  Waiting for KSN requests completion. In queue: 216
13:19:01.0871 0x2518  AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.4.304.0 ), 0x61000 ( enabled : updated )
13:19:01.0886 0x2518  Win FW state via NFP2: enabled
13:19:04.0658 0x2518  ============================================================
13:19:04.0658 0x2518  Scan finished
13:19:04.0658 0x2518  ============================================================
13:19:04.0665 0x0e3c  Detected object count: 0
13:19:04.0665 0x0e3c  Actual detected object count: 0


#8 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 07 December 2013 - 01:31 PM

ADWCleaner:

# AdwCleaner v3.014 - Report created 07/12/2013 at 13:26:51
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : Kit - I5
# Running from : E:\Documents and Settings\Kit\Downloads\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\Searchprotect
Folder Deleted : C:\Users\Kit\AppData\Local\Conduit
Folder Deleted : C:\Users\Kit\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Kit\AppData\Roaming\Searchprotect
Folder Deleted : C:\Users\Kit\AppData\Roaming\strongvault
File Deleted : C:\END
File Deleted : C:\Users\Kit\AppData\Local\funmoods-speeddial.crx
File Deleted : C:\Users\Kit\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\Kit\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3201318
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3282146
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3287822
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\InfoAtoms
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16428
 
 
-\\ Google Chrome v31.0.1650.63
 
[ File : C:\Users\Kit\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Deleted : homepage
Deleted : urls_to_restore_on_startup
 
*************************
 
AdwCleaner[R0].txt - [5706 octets] - [07/12/2013 13:22:59]
AdwCleaner[S0].txt - [5669 octets] - [07/12/2013 13:26:51]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5729 octets] ##########


#9 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 07 December 2013 - 04:35 PM

JRT:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Ultimate x86
Ran by Kit on Sat 12/07/2013 at 13:34:50.68
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\PricePeepInstaller-IronSource_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\PricePeepInstaller-IronSource_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{F7718F2F-16CA-4314-8094-C2A817F6DD21}
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\Users\Kit\appdata\local\cre"
Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin"
Successfully deleted: [Folder] "C:\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\Kit\appdata\local\{2E32A3A9-E412-49CC-8D18-92801DBC09A5}
Successfully deleted: [Empty Folder] C:\Users\Kit\appdata\local\{613954D9-BE75-4247-B6CC-CA24F25DF39D}
Successfully deleted: [Empty Folder] C:\Users\Kit\appdata\local\{897132CE-583F-4CAB-928B-06A31EC51596}
Successfully deleted: [Empty Folder] C:\Users\Kit\appdata\local\{CF85603F-1F80-4202-BD14-3B499E50F3C9}
Successfully deleted: [Empty Folder] C:\Users\Kit\appdata\local\{E5B6933E-8B8E-4DDA-855A-E06995A06C7A}
 
 
 
~~~ Event Viewer Logs were cleared


#10 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 07 December 2013 - 07:36 PM

Eset:

 

No threats found



#11 cwzcwz

cwzcwz
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:28 AM

Posted 14 December 2013 - 09:31 AM

I think I've found the solution to this problem:

http://social.technet.microsoft.com/Forums/windows/en-US/41116afb-a1ee-43c5-9882-f0584138e0ac/guest-logon-with-disabled-guest-account?forum=w7itprosecurity#f7ecefd6-75ab-4124-ba58-d3b27ef4c9a5



#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,190 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:28 AM

Posted 14 December 2013 - 09:02 PM

Good job, plus we cleaned all that junk off.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users