Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows must now restart


  • Please log in to reply
11 replies to this topic

#1 CantTakeItAnyMore

CantTakeItAnyMore

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 26 March 2014 - 05:25 PM

I need your help.

 

I have a Dell Inspiron 1525 w/ Windows Vista Home Premium Service Pack 2.

 

It has started rebooting randomly. 

 

These are the 2 messages that I get:  Windows Must Now Restart Because The DCOM Server Process Launcher Service Terminated Unexpectedly

 

And, Windows Must Now Restart Because The Plug & Play Service Terminated Unexpectedly

This happens every time the computer is turned on and then randomly after that.  The DCOM message is always 1st and then the Plug & Play message.


Edited by hamluis, 27 March 2014 - 11:17 AM.
Moved from Vista to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 Allan

Allan

  • BC Advisor
  • 8,584 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New Jersey
  • Local time:05:39 AM

Posted 27 March 2014 - 07:07 AM

I'm going to ask that your post is moved to the malware forum. Please wait for a response from a malware specialist.



#3 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:39 AM

Posted 27 March 2014 - 01:54 PM

Hello

Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
    Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



    Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
  • .
    .
    .
    ADW Cleaner

    Please download AdwCleaner by Xplode and save to your Desktop.
  • Double-click on AdwCleaner.exe to run the tool.
    Vista/Windows 7/8 users right-click and select Run As Administrator.
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • After reviewing the log, click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
  • -- Note: The contents of the AdwCleaner log file may be confusing. Unless you see a program name that you recognize and know should not be removed, don't worry about it. If you see an entry you want to keep, return to AdwCleaner before cleaning...all detected items will be listed (and checked) in each tab. Click on each one and uncheck any items you want to keep (except you cannot uncheck Chrome and Firefox preferences lines).


    .

    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  • .
    .
    .
    .
  • Last run ESET.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#4 CantTakeItAnyMore

CantTakeItAnyMore
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 29 March 2014 - 11:41 PM

Sorry it took so long for me to reply.

 

I'm still trying to get through the ESET onling scanner.  It is taking so long that the computer re-boots before it can finish.  It is currently at 36% with 7 infections. 

 

 

Here are the  logs I have so far:

 

MiniToolBox by Farbar  Version: 23-01-2014
Ran by Anthony (administrator) on 28-03-2014 at 17:49:06
Running from "C:\Users\Anthony \AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z33S547Y"
Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.no_proxies_on", "*.local"
"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

 

127.0.0.1       localhost

========================= IP Configuration: ================================

Dell Wireless 1395 WLAN Mini-Card = Wireless Network Connection (Connected)
Marvell Yukon 88E8040 PCI-E Fast Ethernet Controller = Local Area Connection (Media disconnected)

# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set interface interface="Local Area Connection" forwarding=disabled advertise=disabled mtu=1500 metric=0 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled
set interface interface="Wireless Network Connection" forwarding=disabled advertise=disabled mtu=1500 metric=0 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled

popd
# End of IPv4 configuration

 

Windows IP Configuration

   Host Name . . . . . . . . . . . . : Freedom
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : wowway.com

Wireless LAN adapter Wireless Network Connection:

   Connection-specific DNS Suffix  . : wowway.com
   Description . . . . . . . . . . . : Dell Wireless 1395 WLAN Mini-Card
   Physical Address. . . . . . . . . : 00-23-4D-4D-E4-75
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::1d3:5e2e:a12d:3121%12(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.102(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Friday, March 28, 2014 5:22:46 PM
   Lease Expires . . . . . . . . . . : Saturday, March 29, 2014 5:22:46 PM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 201335629
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-10-6F-4E-89-00-21-9B-EC-C6-6E
   DNS Servers . . . . . . . . . . . : 64.233.217.2
                                       64.233.217.3
   NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Marvell Yukon 88E8040 PCI-E Fast Ethernet Controller
   Physical Address. . . . . . . . . : 00-21-9B-EC-C6-6E
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 6:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : isatap.{ACA1797F-C391-4395-A1AD-583A9FA1119D}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 7:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 02-00-54-55-4E-01
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:90d7:c50:296a:3f57:fe99(Preferred)
   Link-local IPv6 Address . . . . . : fe80::c50:296a:3f57:fe99%10(Preferred)
   Default Gateway . . . . . . . . . : ::
   NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Local Area Connection* 11:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : 6TO4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 12:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : wowway.com
   Description . . . . . . . . . . . : isatap.wowway.com
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  try11-dns1.try.wideopenwest.com
Address:  64.233.217.2

Name:    google.com
Addresses:  2607:f8b0:4009:803::1009
   74.125.225.133
   74.125.225.135
   74.125.225.132
   74.125.225.128
   74.125.225.134
   74.125.225.130
   74.125.225.129
   74.125.225.136
   74.125.225.131
   74.125.225.137
   74.125.225.142

 

Pinging google.com [74.125.225.0] with 32 bytes of data:

Reply from 74.125.225.0: bytes=32 time=48ms TTL=54

Reply from 74.125.225.0: bytes=32 time=55ms TTL=54

 

Ping statistics for 74.125.225.0:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 48ms, Maximum = 55ms, Average = 51ms

Server:  try11-dns1.try.wideopenwest.com
Address:  64.233.217.2

Name:    yahoo.com
Addresses:  98.138.253.109
   206.190.36.45
   98.139.183.24

 

Pinging yahoo.com [206.190.36.45] with 32 bytes of data:

Reply from 206.190.36.45: bytes=32 time=131ms TTL=51

Reply from 206.190.36.45: bytes=32 time=130ms TTL=51

 

Ping statistics for 206.190.36.45:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 130ms, Maximum = 131ms, Average = 130ms

 

Pinging 127.0.0.1 with 32 bytes of data:

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

 

Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
 12 ...00 23 4d 4d e4 75 ...... Dell Wireless 1395 WLAN Mini-Card
 11 ...00 21 9b ec c6 6e ...... Marvell Yukon 88E8040 PCI-E Fast Ethernet Controller
  1 ........................... Software Loopback Interface 1
 15 ...00 00 00 00 00 00 00 e0  isatap.{ACA1797F-C391-4395-A1AD-583A9FA1119D}
 10 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
 13 ...00 00 00 00 00 00 00 e0  6TO4 Adapter
 14 ...00 00 00 00 00 00 00 e0  isatap.wowway.com
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.102     30
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link     192.168.1.102    286
    192.168.1.102  255.255.255.255         On-link     192.168.1.102    286
    192.168.1.255  255.255.255.255         On-link     192.168.1.102    286
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     192.168.1.102    286
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     192.168.1.102    286
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 10     18 ::/0                     On-link
  1    306 ::1/128                  On-link
 10     18 2001::/32                On-link
 10    266 2001:0:9d38:90d7:c50:296a:3f57:fe99/128
                                    On-link
 12    286 fe80::/64                On-link
 10    266 fe80::/64                On-link
 12    286 fe80::1d3:5e2e:a12d:3121/128
                                    On-link
 10    266 fe80::c50:296a:3f57:fe99/128
                                    On-link
  1    306 ff00::/8                 On-link
 10    266 ff00::/8                 On-link
 12    286 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\system32\NLAapi.dll [48128] (Microsoft Corporation)
Catalog5 02 C:\Windows\system32\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\system32\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 06 C:\Windows\system32\winrnr.dll [19968] (Microsoft Corporation)
Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 26 C:\Windows\system32\mswsock.dll [223232] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (03/28/2014 05:18:44 PM) (Source: SecurityCenter) (User: )
Description: The Windows Security Center Service was unable to establish event queries with WMI to monitor third party AntiVirus, AntiSpyware and Firewall.

Error: (03/28/2014 05:18:20 PM) (Source: Microsoft-Windows-SpoolerSpoolss) (User: NT AUTHORITY)
Description: 0x8007000d

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64144242

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64144242

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64128454

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64128454

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/28/2014 05:10:13 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64112745

Error: (03/28/2014 05:10:13 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64112745

System errors:
=============

Microsoft Office Sessions:
=========================
Error: (03/28/2014 05:18:44 PM) (Source: SecurityCenter)(User: )
Description:

Error: (03/28/2014 05:18:20 PM) (Source: Microsoft-Windows-SpoolerSpoolss)(User: NT AUTHORITY)
Description: 0x8007000d

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64144242

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64144242

Error: (03/28/2014 05:10:45 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64128454

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64128454

Error: (03/28/2014 05:10:29 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/28/2014 05:10:13 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64112745

Error: (03/28/2014 05:10:13 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64112745

CodeIntegrity Errors:
===================================
  Date: 2014-03-03 21:34:54.887
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:53.941
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:52.907
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:51.158
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:50.213
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:49.040
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidshx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:47.699
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidsdriverx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:46.320
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidsdriverx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:45.563
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidsdriverx.sys because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-03 21:34:44.369
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\avgidsdriverx.sys because the set of per-page image hashes could not be found on the system.

=========================== Installed Programs ============================

Acoustica Effects Pack (Version: 1.0)
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.1.377)
Adobe AIR (Version: 1.0.4990)
Adobe AIR (Version: 1.0.8.4990)
Adobe Flash Player 12 ActiveX (Version: 12.0.0.77)
Adobe Flash Player 12 Plugin (Version: 12.0.0.77)
Adobe Help Center 2.1 (Version: 2.1)
Adobe Photoshop Elements 5.0 (Version: 5.0)
Adobe Reader 9.5.5 (Version: 9.5.5)
Advanced Audio FX Engine
Advanced Video FX Engine
Amazon MP3 Downloader 1.0.15 (Version: 1.0.15)
AOL Install (Version: 1.0.0)
Apple Application Support (Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (Version: 2.1.3.127)
AVG 2014 (Version: 14.0.3722)
AVG 2014 (Version: 14.0.4259)
AVG 2014 (Version: 2014.0.4259)
Banctec Service Agreement (Version: 2.0.0)
Bonjour (Version: 3.0.0.10)
Browser Address Error Redirector (Version: 1.00.0000)
Camera Window DS (Version: 5.3.1)
Canon Auto Update Service (Version: 1.1.0.13)
Canon Camera Window DSLR 5 for ZoomBrowser EX (Version: 5.3.1)
Canon DIGITAL CAMERA Solution Disk Software Guide (Version: 1.6.0.1)
Canon G.726 WMP-Decoder (Version: 1.1.0.4)
CANON iMAGE GATEWAY MyCamera Download Plugin (Version: 3.1.1.2)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (Version: 1.9.0.9)
Canon MOV Decoder (Version: 1.9.0.8)
Canon MOV Encoder (Version: 1.8.0.1)
Canon MovieEdit Task for ZoomBrowser EX (Version: 3.9.0.6)
Canon PhotoRecord (Version: 02.02.03002)
Canon PowerShot ELPH 310 HS_IXUS 230 HS Camera User Guide (Version: 1.0.0.1)
Canon RAW Image Task for ZoomBrowser EX (Version: 3.3.0.5)
Canon Utilities CameraWindow DC (Version: 7.1.0.7)
Canon Utilities CameraWindow DC 8 (Version: 8.6.0.11)
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX (Version: 6.4.2.16)
Canon Utilities CameraWindow Launcher (Version: 7.6.0.1)
Canon Utilities Movie Uploader for YouTube (Version: 1.3.0.3)
Canon Utilities MyCamera (Version: 7.5.0.1)
Canon Utilities MyCamera DC (Version: 7.0.1.8)
Canon Utilities PhotoStitch (Version: 3.1.22.46)
Canon Utilities RemoteCapture DC (Version: 3.0.1.8)
Canon Utilities RemoteCapture Task for ZoomBrowser EX (Version: 1.7.1.9)
Canon Utilities ZoomBrowser EX (Version: 6.8.0.10)
Canon ZoomBrowser EX Memory Card Utility (Version: 1.6.0.15)
Carbonite (Version: 5.5.2 build 3820  (Jan-31-2014))
Cisco EAP-FAST Module (Version: 2.1.3)
Cisco LEAP Module (Version: 1.0.12)
Cisco PEAP Module (Version: 1.0.13)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Conexant HDA D330 MDC V.92 Modem (Version: 7.74.00)
Convert (Version: 4.10)
Dell Getting Started Guide (Version: 1.00.0000)
Dell Resource CD (Version: 1.00.0000)
Dell Touchpad (Version: 7.1.103.4)
Dell Webcam Center
Dell Webcam Manager
Dell Wireless WLAN Card Utility (Version: 4.170.77.13)
Dell-eBay (Version: 1.00.0000)
Digital Line Detect (Version: 1.21)
Digital Voice Editor 3 (Version: 3.1.02.12070)
DivX Web Player (Version: 1.4.3)
EarthLink Setup Files (Version: 2008.1.18.0)
Easy-WebPrint
EDocs
eyeQ
Family Tree Maker 2008 (Version: 17.0.7)
FlipShare (Version: 5.12.3.0)
Google Desktop (Version: 5.9.1005.12335)
GoToAssist 8.0.0.514
HP Officejet Pro 8500 A910 Basic Device Software (Version: 22.0.334.0)
HP Officejet Pro 8500 A910 Help (Version: 140.0.2.2)
HP Officejet Pro 8500 A910 Product Improvement Study (Version: 22.0.334.0)
HP Update (Version: 5.002.005.003)
I.R.I.S. OCR (Version: 12.3.4)
Intel® Matrix Storage Manager
iolo technologies' System Mechanic (Version: 12.5.0)
Iomega App Services
Iomega HotBurn
iTunes (Version: 11.1.3.8)
Java Auto Updater (Version: 2.0.7.1)
Java™ 6 Update 33 (Version: 6.0.330)
Java™ 6 Update 5 (Version: 1.6.0.50)
Laptop Integrated Webcam Driver (1.04.01.1011) 
LeapFrog Connect (Version: 5.1.5.17469)
LeapFrog MyOwnLeaptop Plugin (Version: 5.1.5.17469)
Live! Cam Avatar Creator (Version: 4.6.0817.1)
Live! Cam Avatar v1.0 (Version: 1.0)
Marketsplash Shortcuts (Version: 1.0.0.9)
MediaDirect (Version: 3.5)
Memeo AutoBackup (Version: 2.50.1938)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Default Manager (Version: 2.1.55.0)
Microsoft Office 2000 Disc 2 (Version: 9.00.2720)
Microsoft Office 2000 Professional (Version: 9.00.2720)
Microsoft Office 2000 Small Business (Version: 9.00.2720)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Primary Interoperability Assemblies 2005 (Version: 8.0.50727.42)
Microsoft Security Client (Version: 4.4.0304.0)
Microsoft Security Essentials (Version: 4.4.304.0)
Microsoft Silverlight (Version: 5.1.30214.0)
Microsoft Visual C Runtime (Version: 8.0.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Works (Version: 9.7.0621)
Microsoft WSE 3.0 (Version: 3.0.5305.0)
MobileMe Control Panel (Version: 3.1.1.0)
Mozilla Firefox 27.0.1 (x86 en-US) (Version: 27.0.1)
Mozilla Maintenance Service (Version: 27.0.1)
MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB973685) (Version: 4.30.2107.0)
MSXML 4.0 SP3 Parser (Version: 4.30.2100.0)
My Dell (Version: 3.4.6422.14)
NetWaiting (Version: 2.5.53)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0)
OutlookAddinSetup (Version: 1.0.0)
Paint.NET 3.8 (Version: 3.8 Build 2708.22782)
PC Tools Anti-Spam Toolbar (Version: 1.0.0)
Picasa 3 (Version: 3.9)
PlayMemories Home (Version: 7.0.00.11271)
QuickSet (Version: 8.2.20)
QuickTime (Version: 7.74.80.86)
Roxio Creator Audio (Version: 3.7.0)
Roxio Creator Copy (Version: 3.7.0)
Roxio Creator Data (Version: 3.7.0)
Roxio Creator DE (Version: 10.1)
Roxio Creator DE (Version: 3.7.0)
Roxio Creator Tools (Version: 3.7.0)
Roxio Express Labeler 3 (Version: 3.2.1)
Roxio Update Manager (Version: 6.0.0)
Skype Click to Call (Version: 5.7.8773)
Skype™ 6.11 (Version: 6.11.102)
Sony Image Data Suite (Version: 3.2.00.15160)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Spin It Again
System Checkup 3.5 (Version: 3.5.0.23)
thinkorswim
Uniblue RegistryBooster (Version: 6.1.0.9)
Uniblue SystemTweaker
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Use the entry named LeapFrog Connect to uninstall (LeapFrog MyOwnLeaptop Plugin) (Version: )
VC80CRTRedist - 8.0.50727.762 (Version: 1.0.0)
Virtual Earth 3D (Beta) (Version: 3.0.808.29001)
Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1)
VLC media player 1.0.1 (Version: 1.0.1)
VoiceOver Kit (Version: 1.42.128.0)
Walmart MP3 Music Downloads (Version: 1.6.4.4)
WD Diagnostics (Version: 1.09.0002)
Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net  (09/10/2009 02.03.05.012) (Version: 09/10/2009 02.03.05.012)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Live installer (Version: 12.0.1471.1025)
Windows Live Mail (Version: 12.0.1606.1023)
Windows Live OneCare safety scanner (Version: 1.0.0.0)

========================= Memory info: ===================================

Percentage of memory in use: 70%
Total physical RAM: 3061.31 MB
Available physical RAM: 911.42 MB
Total Pagefile: 6334.66 MB
Available Pagefile: 3792.62 MB
Total Virtual: 2047.88 MB
Available Virtual: 1958.74 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:220.58 GB) (Free:75.91 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:9.77 GB) (Free:4.79 GB) NTFS

========================= Users: ========================================

User accounts for \\FREEDOM

Administrator            Anthony Guest                   

**** End of log ****

 

 

 

 

 

00:14:47.0164 0x1c94  TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43
00:14:55.0184 0x1c94  ============================================================
00:14:55.0184 0x1c94  Current date / time: 2014/03/30 00:14:55.0184
00:14:55.0184 0x1c94  SystemInfo:
00:14:55.0184 0x1c94 
00:14:55.0184 0x1c94  OS Version: 6.0.6002 ServicePack: 2.0
00:14:55.0185 0x1c94  Product type: Workstation
00:14:55.0185 0x1c94  ComputerName: FREEDOM
00:14:55.0185 0x1c94  UserName: Anthony V. Marabate
00:14:55.0185 0x1c94  Windows directory: C:\Windows
00:14:55.0185 0x1c94  System windows directory: C:\Windows
00:14:55.0185 0x1c94  Processor architecture: Intel x86
00:14:55.0185 0x1c94  Number of processors: 2
00:14:55.0186 0x1c94  Page size: 0x1000
00:14:55.0186 0x1c94  Boot type: Normal boot
00:14:55.0186 0x1c94  ============================================================
00:14:56.0300 0x1c94  KLMD registered as C:\Windows\system32\drivers\91688587.sys
00:14:56.0511 0x1c94  System UUID: {83BA97D8-FF89-0491-5CA2-0E43A884A22E}
00:14:57.0762 0x1c94  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:14:57.0792 0x1c94  ============================================================
00:14:57.0792 0x1c94  \Device\Harddisk0\DR0:
00:14:57.0793 0x1c94  MBR partitions:
00:14:57.0793 0x1c94  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x1388000
00:14:57.0793 0x1c94  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x139C000, BlocksNum 0x1B929168
00:14:57.0814 0x1c94  ============================================================
00:14:57.0911 0x1c94  C: <-> \Device\Harddisk0\DR0\Partition2
00:14:57.0963 0x1c94  D: <-> \Device\Harddisk0\DR0\Partition1
00:14:57.0963 0x1c94  ============================================================
00:14:57.0963 0x1c94  Initialize success
00:14:57.0963 0x1c94  ============================================================
 

 

 

 

 

# AdwCleaner v3.022 - Report created 29/03/2014 at 12:59:20
# Updated 13/03/2014 by Xplode
# Operating System : Windows Vista ™ Home Premium Service Pack 2 (32 bits)
# Username : Anthony
# Running from : C:\Users\Anthony\Desktop\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****

***** [ Files / Folders ] *****

File Found : C:\Users\ANTHON~1.MAR\AppData\Local\Temp\Uninstall.exe
Folder Found C:\ProgramData\AVG Security Toolbar

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Found : HKCU\Software\AVG Secure Search
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.19328

-\\ Mozilla Firefox v27.0.1 (en-US)

[ File : C:\Users\Anthony\AppData\Roaming\Mozilla\Firefox\Profiles\6wt18tsh.default\prefs.js ]

*************************

AdwCleaner[R0].txt - [5831 octets] - [24/02/2014 23:54:50]
AdwCleaner[R1].txt - [1765 octets] - [29/03/2014 12:59:20]
AdwCleaner[S0].txt - [6044 octets] - [25/02/2014 00:04:43]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [1885 octets] ##########

 

 

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows Vista ™ Home Premium x86
Ran by Anthony on Sat 03/29/2014 at 17:32:33.01
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

~~~ Services

 

~~~ Registry Values

 

~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{D616F9B7-61F1-41CC-862B-7E5B91F3269F}

 

~~~ Files

 

~~~ Folders

 

~~~ FireFox

Successfully deleted: [File] C:\Users\Anthony  \AppData\Roaming\mozilla\firefox\profiles\6wt18tsh.default\extensions\yptohnkcie@yptohnkcie.org.xpi [Tracur]
Successfully deleted: [File] C:\Users\Anthony \AppData\Roaming\mozilla\firefox\profiles\6wt18tsh.default\searchplugins\bing-zugo.xml
Emptied folder: C:\Users\Anthony \AppData\Roaming\mozilla\firefox\profiles\6wt18tsh.default\minidumps [118 files]

 

~~~ Event Viewer Logs were cleared

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 03/29/2014 at 17:42:31.32
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



#5 CantTakeItAnyMore

CantTakeItAnyMore
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 30 March 2014 - 08:38 AM

The ESET online scanner finally finished.  It's a good sign that the computer was able to run for 8 hours and 4 minutes without a re-boot. 

 

Here is te log:

 

C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\Launcher.exe.vir    a variant of Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\rbmonitor.exe.vir    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\rbnotifier.exe.vir    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\rb_move_serial.exe.vir    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\rb_ubm.exe.vir    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Program Files\uniblue\RegistryBooster\registrybooster.exe.vir    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\AdwCleaner\Quarantine\C\Users\Anthony V. Marabate\AppData\Roaming\uniblue\RegistryBooster\_temp\ub.exe.vir    a variant of Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\AppData\Local\Kwsics\sfspyvl.dll    a variant of Win32/Boaxxe.BH.gen trojan    cleaned by deleting - quarantined
C:\Users\Anthony V. Marabate\AppData\Local\Temp\bhs56C7.tmp    a variant of Win32/DomaIQ.AF potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\AppData\Local\Temp\bhs6DB1.tmp    a variant of Win32/DomaIQ.AF potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\AppData\Local\Temp\bhsFEAA.tmp    a variant of Win32/DomaIQ.AF potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\15\2bf5394f-6cec0fc3    Java/Exploit.Agent.QSI trojan    cleaned by deleting - quarantined
C:\Users\Anthony V. Marabate\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54\7a4c54f6-28966f02    multiple threats    cleaned by deleting - quarantined
C:\Users\Anthony V. Marabate\Downloads\Codec-C(1).exe    Win32/InstallMate potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\Downloads\Codec-C.exe    Win32/InstallMate potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\Downloads\emusic_fx_express.exe    Win32/Toolbar.Conduit.A potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\Downloads\registrybooster.exe    Win32/RegistryBooster potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\Downloads\Setup.exe    a variant of Win32/DomaIQ.AZ potentially unwanted application    deleted - quarantined
C:\Users\Anthony V. Marabate\Downloads\speedupmypc.exe    Win32/SpeedUpMyPC potentially unwanted application    deleted - quarantined
C:\Windows\System32\rpcss.dll    Win32/Patched.IB trojan    error while cleaning
C:\Windows\System32\config\systemprofile\AppData\Roaming\Mozilla\Firefox\Profiles\7mp4uooz.default\extensions\yptohnkcie@yptohnkcie.org.xpi    Win32/TrojanDownloader.Tracur.V trojan    deleted - quarantined
 



#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:39 AM

Posted 30 March 2014 - 05:05 PM

Hello.. Some nasty Trojans were removed

Also in Control Panel remove these..

Adobe Reader 9.5.5 (Version: 9.5.5)
Java Auto Updater (Version: 2.0.7.1)
Java™ 6 Update 33 (Version: 6.0.330)
Java™ 6 Update 5 (Version: 1.6.0.50)
Uniblue RegistryBooster (Version: 6.1.0.9)
Uniblue SystemTweaker

Reboot

Do not install registry boosters or cleaners, they do more harm than good.


Please look at your TDSS killer log and repost he last 10 or 20 lines.. Or reru it and post te new log yours was cut off.


Please run MBAM.
  • Download Malwarebytes Anti-Malware Free and save it to your desktop
  • Double click the desktop icon, click Run, then OK
  • Click Next
  • Select I accept the agreement then continue to click Next then finally click Install
  • Uncheck Enable free trial of Malwarebytes Anti-Malware Premium if you do not want the free trial of the paid version, then click Finish
  • If you are notified the Database is out of date click Update Now
  • Click Scan Now >>
----------
  • Note: If Malwarebytes will not launch please do the following to launch Malwarebytes Chameleon:
  • Click Start (Start, Search, All files and folders for Windows XP) then type mbam
  • Double click one of the four following files (if one does not work try the next one, and so on) - A black command window will open. Follow those instructions until the Malwarebytes program starts the scan

mbam-chameleon.scr
mbam-chameleon
mbam-chameleon.exe
mbam-chameleon.com

----------
  • When completed click the down arrow on Export Log and select Text file (*.txt)
  • Save the file to your desktop as MBAM
  • Click Apply Actions then restart your computer if requested
  • Copy and past the contents of MBAM.txt in your reply

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 CantTakeItAnyMore

CantTakeItAnyMore
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 30 March 2014 - 10:18 PM

OK,Removed:
Adobe Reader 9.5.5 (Version: 9.5.5)
Java™ 6 Update 33 (Version: 6.0.330)
Java™ 6 Update 5 (Version: 1.6.0.50)
The other three were already gone. ???

I ran TDSS Killer again and got this huge log, Not sure why the last log was so small.


22:03:38.0573 0x1090 TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43
22:03:46.0451 0x1090 ============================================================
22:03:46.0451 0x1090 Current date / time: 2014/03/30 22:03:46.0451
22:03:46.0451 0x1090 SystemInfo:
22:03:46.0451 0x1090
22:03:46.0451 0x1090 OS Version: 6.0.6002 ServicePack: 2.0
22:03:46.0451 0x1090 Product type: Workstation
22:03:46.0451 0x1090 ComputerName: FREEDOM
22:03:46.0466 0x1090 UserName: Anthony
22:03:46.0466 0x1090 Windows directory: C:\Windows
22:03:46.0466 0x1090 System windows directory: C:\Windows
22:03:46.0466 0x1090 Processor architecture: Intel x86
22:03:46.0466 0x1090 Number of processors: 2
22:03:46.0466 0x1090 Page size: 0x1000
22:03:46.0466 0x1090 Boot type: Normal boot
22:03:46.0466 0x1090 ============================================================
22:03:48.0026 0x1090 KLMD registered as C:\Windows\system32\drivers\17765417.sys
22:03:49.0103 0x1090 System UUID: {83BA97D8-FF89-0491-5CA2-0E43A884A22E}
22:03:52.0270 0x1090 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:03:52.0316 0x1090 ============================================================
22:03:52.0316 0x1090 \Device\Harddisk0\DR0:
22:03:52.0316 0x1090 MBR partitions:
22:03:52.0316 0x1090 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x1388000
22:03:52.0316 0x1090 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x139C000, BlocksNum 0x1B929168
22:03:52.0441 0x1090 ============================================================
22:03:53.0050 0x1090 C: <-> \Device\Harddisk0\DR0\Partition2
22:03:53.0096 0x1090 D: <-> \Device\Harddisk0\DR0\Partition1
22:03:53.0096 0x1090 ============================================================
22:03:53.0096 0x1090 Initialize success
22:03:53.0096 0x1090 ============================================================
22:06:58.0097 0x1154 ============================================================
22:06:58.0097 0x1154 Scan started
22:06:58.0097 0x1154 Mode: Manual;
22:06:58.0097 0x1154 ============================================================
22:06:58.0097 0x1154 KSN ping started
22:07:00.0624 0x1154 KSN ping finished: true
22:07:01.0763 0x1154 ================ Scan system memory ========================
22:07:01.0763 0x1154 System memory - ok
22:07:01.0763 0x1154 ================ Scan services =============================
22:07:02.0200 0x1154 [ 82B296AE1892FE3DBEE00C9CF92F8AC7, 54B22BA63E1DA616B546992141B0C3117BA057283B8F60CB9BECE203661FEBF3 ] ACPI C:\Windows\system32\drivers\acpi.sys
22:07:02.0216 0x1154 ACPI - ok
22:07:02.0434 0x1154 [ 177FF6608B48638D4066726F3A3F8444, D0D7B7EAEFDF30210CE4D31E9C7AB349CEB862A452D5925E698B60204AAE8A49 ] AdobeActiveFileMonitor5.0 C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
22:07:02.0528 0x1154 AdobeActiveFileMonitor5.0 - ok
22:07:02.0684 0x1154 [ 9D96B0D5855FD1B98023B3EEC9F06786, E4C79233158BE8AA4E9C6DD71585E5D2703A5156531EB3D692D7D81BC443E844 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:07:02.0886 0x1154 AdobeFlashPlayerUpdateSvc - ok
22:07:03.0027 0x1154 [ 04F0FCAC69C7C71A3AC4EB97FAFC8303, FBBDD38574A1F66A5AA12B82E34FDE60B870180C4B7100C15757539DC869ED4B ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
22:07:03.0058 0x1154 adp94xx - ok
22:07:03.0120 0x1154 [ 60505E0041F7751BDBB80F88BF45C2CE, 1DE16042B8ABD7B643189E836DE273832EE743FD66AFBB641E8049C4E0CD04D8 ] adpahci C:\Windows\system32\drivers\adpahci.sys
22:07:03.0152 0x1154 adpahci - ok
22:07:03.0183 0x1154 [ 8A42779B02AEC986EAB64ECFC98F8BD7, B89938EFF4E81FA44197D2D839EBD3340DDE01FBC79605049C088621784C1B91 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys
22:07:03.0198 0x1154 adpu160m - ok
22:07:03.0276 0x1154 [ 241C9E37F8CE45EF51C3DE27515CA4E5, 1A03E93DD8C1F3640C96124A14A3D0F4E349B06CCA2118CE40B8AE201A4030A7 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
22:07:03.0276 0x1154 adpu320 - ok
22:07:03.0354 0x1154 [ 9D1FDA9E086BA64E3C93C9DE32461BCF, 200FD0BFC811EC8993AF9FC78F58823ECC717063F438B627FBCDD6BD7790CAA8 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:07:03.0354 0x1154 AeLookupSvc - ok
22:07:03.0448 0x1154 [ EF1142512BEC12F1C2C87735DA1755BE, 236EFD8FBA717123E0CF5A136ACEBB80A2BE1FA4B1A9A2C74728BC4EB4E787D8 ] AESTFilters C:\Windows\system32\aestsrv.exe
22:07:03.0448 0x1154 AESTFilters - ok
22:07:03.0573 0x1154 [ 3911B972B55FEA0478476B2E777B29FA, 62545B90C7DD3F73777E62CD8264E611A4D71B6956CABFD2D820D25F41F471FD ] AFD C:\Windows\system32\drivers\afd.sys
22:07:03.0651 0x1154 AFD - ok
22:07:03.0744 0x1154 [ 13F9E33747E6B41A3FF305C37DB0D360, 066DD6060B1CF93F85BBAAA52848C801128CD294E8B7EACD912E0EF219DBFBC2 ] agp440 C:\Windows\system32\drivers\agp440.sys
22:07:03.0744 0x1154 agp440 - ok
22:07:03.0807 0x1154 [ AE1FDF7BF7BB6C6A70F67699D880592A, B831BF156FC49287A19FC149383D437B1034EA6F42CE9D761EB90ABD0F8D96B1 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
22:07:03.0807 0x1154 aic78xx - ok
22:07:03.0869 0x1154 [ A1545B731579895D8CC44FC0481C1192, 6B0EE833BA39C142D625A03586CCD8F6C9C3136C603CE5DF5BAC1AA3423E3E7F ] ALG C:\Windows\System32\alg.exe
22:07:03.0869 0x1154 ALG - ok
22:07:03.0932 0x1154 [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91, 0EADB6AE21FEDAB55D41F41B638198B556CC2BE2EE57F6C8B40EB044A318319F ] aliide C:\Windows\system32\drivers\aliide.sys
22:07:03.0932 0x1154 aliide - ok
22:07:04.0025 0x1154 [ C47344BC706E5F0B9DCE369516661578, 689C9CDAF6F38227F1C34359CAEB3C7798F318EDFD4B7FE532FBE3C8E4EE3DC8 ] amdagp C:\Windows\system32\drivers\amdagp.sys
22:07:04.0103 0x1154 amdagp - ok
22:07:04.0134 0x1154 [ 9B78A39A4C173FDBC1321E0DD659B34C, 2CA66EB68AD7A317D91C13B8CFD4E8CA985926A610D19595B613F5553B145C7B ] amdide C:\Windows\system32\drivers\amdide.sys
22:07:04.0134 0x1154 amdide - ok
22:07:04.0197 0x1154 [ 18F29B49AD23ECEE3D2A826C725C8D48, 0FA08882301D218E367E63E1966B6406220EE94BAE7E7DAD6E55EB70BF6FED7F ] AmdK7 C:\Windows\system32\drivers\amdk7.sys
22:07:04.0197 0x1154 AmdK7 - ok
22:07:04.0212 0x1154 [ 93AE7F7DD54AB986A6F1A1B37BE7442D, ECE0ABA2DECEED94AC678240A4B604F04022F0740F2295CBD07D25F5917E878A ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
22:07:04.0228 0x1154 AmdK8 - ok
22:07:04.0290 0x1154 [ A80230BD04F0B8BF05185B369BB1CBB8, 8B167D2E31E7687E3B8E166938095DD7E5D77D270CDD78332CA68199A041F72F ] ApfiltrService C:\Windows\system32\DRIVERS\Apfiltr.sys
22:07:04.0353 0x1154 ApfiltrService - ok
22:07:04.0462 0x1154 [ C6D704C7F0434DC791AAC37CAC4B6E14, 35CF7D1895F97637E0C678A39F3049B871BCA9526D379C7793ED33B87D2EAC4C ] Appinfo C:\Windows\System32\appinfo.dll
22:07:04.0509 0x1154 Appinfo - ok
22:07:04.0634 0x1154 [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:07:04.0634 0x1154 Apple Mobile Device - ok
22:07:04.0696 0x1154 [ 5D2888182FB46632511ACEE92FDAD522, 2E53231ACAF9B2FB7993DBC1CD15C06D7B0CCE0D08DAFF7B0CC13A2040028A75 ] arc C:\Windows\system32\drivers\arc.sys
22:07:04.0696 0x1154 arc - ok
22:07:04.0805 0x1154 [ 5E2A321BD7C8B3624E41FDEC3E244945, 9D47FF6C823868F2267FEFAB5851D3CD2BC3F619A2D6EFF803EA22DB0509C450 ] arcsas C:\Windows\system32\drivers\arcsas.sys
22:07:04.0821 0x1154 arcsas - ok
22:07:05.0055 0x1154 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
22:07:05.0055 0x1154 aspnet_state - ok
22:07:05.0164 0x1154 [ 53B202ABEE6455406254444303E87BE1, 4C91CA8DD345FEDD74A6AF2C07580717703F979B7DE2532B1D00B9F6896DDE70 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:07:05.0164 0x1154 AsyncMac - ok
22:07:05.0289 0x1154 [ 1F05B78AB91C9075565A9D8A4B880BC4, 737BE9F9376DAB0CCDFED93EA6D67F0C432367EA63CD772A453485BE769AF3BD ] atapi C:\Windows\system32\drivers\atapi.sys
22:07:05.0351 0x1154 atapi - ok
22:07:05.0445 0x1154 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:07:05.0460 0x1154 AudioEndpointBuilder - ok
22:07:05.0492 0x1154 [ 68E2A1A0407A66CF50DA0300852424AB, 5FFDAE4E477C90A855081B5120582810471F67D3E9C343779A7AFB8D684D16F8 ] Audiosrv C:\Windows\System32\Audiosrv.dll
22:07:05.0507 0x1154 Audiosrv - ok
22:07:05.0601 0x1154 [ B4A79941AB02993E43A6C2248CE932FD, 250A4F35CC366FA65A918C9EDDA1E278CA20AC77412EDAD716A2BB1BF07DB7B8 ] Avgdiskx C:\Windows\system32\DRIVERS\avgdiskx.sys
22:07:05.0616 0x1154 Avgdiskx - ok
22:07:06.0771 0x1154 [ 9D5EA7BD5E29F404CD158AED17B40A15, BC38F90AD8BBB51C27D9D325E400DF10B8A8BE34A497A7207F2E73E46E9AB3EE ] AVGIDSAgent C:\Program Files\AVG\AVG2014\avgidsagent.exe
22:07:06.0927 0x1154 AVGIDSAgent - ok
22:07:07.0083 0x1154 [ 92CA68E3361576420C43FC33C47DECF7, 33C566F5327737CA1EFBFC5369372AED088A103CE18CDD352D10DDF2841A40A2 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdriverx.sys
22:07:07.0083 0x1154 AVGIDSDriver - ok
22:07:07.0223 0x1154 [ 4D792ED58F49235704E580C34391CFF5, 368B882052B75B6FE147A3EC0873A50FC6A9E96E8298EAA50186FD259FEE5E34 ] AVGIDSHX C:\Windows\system32\DRIVERS\avgidshx.sys
22:07:07.0223 0x1154 AVGIDSHX - ok
22:07:07.0301 0x1154 [ 18B3FFED808F032E037ED7F54A838053, 488FBA275B7B0B97E4372EA1BDFBB53238B0BF201DF004CC8FCDA82A0A0105DD ] AVGIDSShim C:\Windows\system32\DRIVERS\avgidsshimx.sys
22:07:07.0317 0x1154 AVGIDSShim - ok
22:07:07.0364 0x1154 [ 578ECC3D911897B2C5B760EDAF8ED6CA, 99CAACB349C8629D4BE6070BDBFB0BDB4A13ABFFF738F04D723D2AFE7EA58894 ] Avgldx86 C:\Windows\system32\DRIVERS\avgldx86.sys
22:07:07.0379 0x1154 Avgldx86 - ok
22:07:07.0473 0x1154 [ BD1A440B9F126AFE52978A44952B0018, 83577249AACC3F0C655C27A471739113B2086BFC1FF15D0ED7E64B0215B739DB ] Avglogx C:\Windows\system32\DRIVERS\avglogx.sys
22:07:07.0488 0x1154 Avglogx - ok
22:07:07.0535 0x1154 [ 7DC192EC714342E7C020C7CF42E394D8, 09F4CFFD93067E62B09C550A7A0588E90CAD190E49E1B7082FC5A949AF389781 ] Avgmfx86 C:\Windows\system32\DRIVERS\avgmfx86.sys
22:07:07.0551 0x1154 Avgmfx86 - ok
22:07:07.0660 0x1154 [ E6322DF686CE1C59D7797FAEF0732454, 03534F19568B421F9BE9C99A7A5302D38FCABA26E95C49A492DA49E58A918B55 ] Avgrkx86 C:\Windows\system32\DRIVERS\avgrkx86.sys
22:07:07.0660 0x1154 Avgrkx86 - ok
22:07:07.0769 0x1154 [ E98603F9D1F412F38ADF2F76053F9E5A, 1CE4668E0202ADD8C4C3D7D883DC837F7888F5D6E3B6FEE8338E15A86FE6AC22 ] Avgtdix C:\Windows\system32\DRIVERS\avgtdix.sys
22:07:07.0769 0x1154 Avgtdix - ok
22:07:07.0878 0x1154 [ B747B6BB015E552F49C634BB19540F3D, 5000AD41BD101BC06D595484B6E58DEEBB962939ACF4B24DE515771D1C4AE3ED ] avgwd C:\Program Files\AVG\AVG2014\avgwdsvc.exe
22:07:07.0894 0x1154 avgwd - ok
22:07:07.0972 0x1154 [ 7BD70AEED0D975285A1B20BD012EBF4E, 67A90F035405369C9C5FC30F25F04E70E86E7AE56A441E2E3D06F765C8794F7D ] BCM42RLY C:\Windows\system32\drivers\BCM42RLY.sys
22:07:07.0972 0x1154 BCM42RLY - ok
22:07:08.0346 0x1154 [ FA6707A346CD122407F3B0BAD1C47639, 9E8E4C0720169745BF9A566C3025307643C368489B7A076DBA9F4795B2F17C63 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl6.sys
22:07:08.0456 0x1154 BCM43XX - ok
22:07:08.0580 0x1154 [ 67E506B75BD5326A3EC7B70BD014DFB6, 3B07243970CAB4E93A858BEA6E31F56AD0157C42D624F3FEB469E68EEEF65669 ] Beep C:\Windows\system32\drivers\Beep.sys
22:07:08.0580 0x1154 Beep - ok
22:07:08.0690 0x1154 [ C789AF0F724FDA5852FB9A7D3A432381, 4B0F7A3A8F2D45E49630D24F2630B8014BCDB793B9C6E83FD2B2863A54F62BF5 ] BFE C:\Windows\System32\bfe.dll
22:07:08.0721 0x1154 BFE - ok
22:07:08.0892 0x1154 [ 93952506C6D67330367F7E7934B6A02F, 1D9A6B10B9489C1A32F730E22CC399BFF0796E3FCB3BA52BE45ED487CAC59EBD ] BITS C:\Windows\System32\qmgr.dll
22:07:08.0986 0x1154 BITS - ok
22:07:09.0033 0x1154 [ D4DF28447741FD3D953526E33A617397, E7239BA432090F8AC7DF453DB876507CD4419ECA964D289408A1B2B353618693 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
22:07:09.0033 0x1154 blbdrive - ok
22:07:09.0251 0x1154 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:07:09.0282 0x1154 Bonjour Service - ok
22:07:09.0376 0x1154 [ 35F376253F687BDE63976CCB3F2108CA, C5EF6301D7BC067050038DB75D961681D1CBE418285AD60167C1334B0B54DFE9 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:07:09.0376 0x1154 bowser - ok
22:07:09.0376 0x1154 bqqnspqu - ok
22:07:09.0454 0x1154 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys
22:07:09.0470 0x1154 BrFiltLo - ok
22:07:09.0516 0x1154 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys
22:07:09.0532 0x1154 BrFiltUp - ok
22:07:09.0563 0x1154 [ A3629A0C4226F9E9C72FAAEEBC3AD33C, FB4D2738B64AADA52B95A6CF7ED4CDBFE4DD4BEBCAF1AE9CE64317F97DB38DDF ] Browser C:\Windows\System32\browser.dll
22:07:09.0579 0x1154 Browser - ok
22:07:09.0641 0x1154 [ B304E75CFF293029EDDF094246747113, CB6B219B186C3511A0DE3CDE7F7B8966A9E32D808A952CA8C5B42B3A3A17BFB0 ] Brserid C:\Windows\system32\drivers\brserid.sys
22:07:09.0657 0x1154 Brserid - ok
22:07:09.0688 0x1154 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys
22:07:09.0688 0x1154 BrSerWdm - ok
22:07:09.0735 0x1154 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys
22:07:09.0735 0x1154 BrUsbMdm - ok
22:07:09.0782 0x1154 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys
22:07:09.0782 0x1154 BrUsbSer - ok
22:07:09.0860 0x1154 [ AD07C1EC6665B8B35741AB91200C6B68, DCE1305A30D6713222A01C1F1D03ED0ADABE23C742CE1E82BB142531B82A3FF7 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
22:07:09.0860 0x1154 BTHMODEM - ok
22:07:10.0562 0x1154 [ 22C59665394A74D709049234C2FEE211, FAAD1476F42F57C80C95D5EF8BBDFF25CB2BD83E512762FD8DE14903039B3258 ] CarboniteService C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
22:07:11.0046 0x1154 CarboniteService - ok
22:07:11.0218 0x1154 [ A9ACC4B9730B6D5B0BB2BFFDC53F0812, 4823608742EE23B9B090B9BD42F758CE6DBDA4985865AAEB1D3660763A154636 ] CCALib8 C:\Program Files\Canon\CAL\CALMAIN.exe
22:07:11.0218 0x1154 CCALib8 - ok
22:07:11.0343 0x1154 [ 7ADD03E75BEB9E6DD102C3081D29840A, 0CA14A77CE990B5AA32C0725C22CA190ECBC73B75064DD959CABAD79B8846F1D ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:07:11.0358 0x1154 cdfs - ok
22:07:11.0436 0x1154 [ 6B4BFFB9BECD728097024276430DB314, 4451EFEAD37B05C8A3CB610B6D72E73B55D3D1E1CC1B17405598C1EDAA93C2D5 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:07:11.0436 0x1154 cdrom - ok
22:07:11.0545 0x1154 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] CertPropSvc C:\Windows\System32\certprop.dll
22:07:11.0545 0x1154 CertPropSvc - ok
22:07:11.0577 0x1154 [ E5D4133F37219DBCFE102BC61072589D, 74C7F8C53D9C71CE3C8B33BC0331948571318402B0A8E1AC4552360504092A46 ] circlass C:\Windows\system32\drivers\circlass.sys
22:07:11.0592 0x1154 circlass - ok
22:07:11.0842 0x1154 [ D7659D3B5B92C31E84E53C1431F35132, 6BFE644AD9890A8CEEDCC4B97ADD564AD57202FBC5D21599469E0C4B31BB27C6 ] CLFS C:\Windows\system32\CLFS.sys
22:07:11.0873 0x1154 CLFS - ok
22:07:12.0013 0x1154 [ 8EE772032E2FE80A924F3B8DD5082194, B743DF91563A22CC15D9B44105804B5866A29D3DFC156DBE88DFAFEF903B94C0 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:07:12.0029 0x1154 clr_optimization_v2.0.50727_32 - ok
22:07:12.0154 0x1154 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:07:12.0154 0x1154 clr_optimization_v4.0.30319_32 - ok
22:07:12.0279 0x1154 [ 99AFC3795B58CC478FBBBCDC658FCB56, 0D1B27C42A058C5D56A0157B5ECA9A054254F6B9C8015D0321021A7EFCE10CE2 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
22:07:12.0279 0x1154 CmBatt - ok
22:07:12.0310 0x1154 [ 0CA25E686A4928484E9FDABD168AB629, C2CB2333CAB40CDF93219870E66700F957188C86A1B1A004BC4652953091E5C5 ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:07:12.0325 0x1154 cmdide - ok
22:07:12.0341 0x1154 [ 6AFEF0B60FA25DE07C0968983EE4F60A, E4037EF9EDE57A1039AB814EBCE9A8B12C9A084E7FAC6296212ACF2394DD37B6 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
22:07:12.0357 0x1154 Compbatt - ok
22:07:12.0357 0x1154 COMSysApp - ok
22:07:12.0372 0x1154 [ 741E9DFF4F42D2D8477D0FC1DC0DF871, 06EA43D771E3455F943AB624CC00C2259FE5E561164908630755E933EF44A522 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
22:07:12.0372 0x1154 crcdisk - ok
22:07:12.0403 0x1154 [ 1F07BECDCA750766A96CDA811BA86410, F4E36F0003184BCB36D59B23AC903421AD8C0A1FD2D6315E06375235ABC9A0AD ] Crusoe C:\Windows\system32\drivers\crusoe.sys
22:07:12.0403 0x1154 Crusoe - ok
22:07:12.0497 0x1154 [ 75C6A297E364014840B48ECCD7525E30, CD12F8DC46590B4E9D6629A75E5D21146F62188772CF29594B4D9A4E911D1088 ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:07:12.0497 0x1154 CryptSvc - ok
22:07:12.0637 0x1154 [ 2DED90A4E6EF42C81EE8EB765F025109, CF29B8DE38EB409FE9B3CBA0EA1EC24F3BC136CCCD62FAFB8A831750C66C2CBD ] DcomLaunch C:\Windows\system32\rpcss.dll
22:07:12.0700 0x1154 DcomLaunch - ok
22:07:12.0778 0x1154 [ 622C41A07CA7E6DD91770F50D532CB6C, 2A9040949CB45F9970FDE930278F30D2F08E957290CB3D4DC4F2CA94F3D444D2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:07:12.0778 0x1154 DfsC - ok
22:07:13.0043 0x1154 [ 2CC3DCFB533A1035B13DCAB6160AB38B, C88C91F662ADE248EEE3B568E70C2BC2D5075B7D9B7D3C63E83D011C5F7812B0 ] DFSR C:\Windows\system32\DFSR.exe
22:07:13.0215 0x1154 DFSR - ok
22:07:13.0324 0x1154 [ 9028559C132146FB75EB7ACF384B086A, 35159D86706441ED94895B4629411B4445FCB4526AFD1F7036EE647931B7A94D ] Dhcp C:\Windows\System32\dhcpcsvc.dll
22:07:13.0339 0x1154 Dhcp - ok
22:07:13.0449 0x1154 [ 5D4AEFC3386920236A548271F8F1AF6A, 11B74D6800EC6F7AAEFB0B6A9F2E8376C7C3B8DB677F03AC3743CB004CA96B08 ] disk C:\Windows\system32\drivers\disk.sys
22:07:13.0449 0x1154 disk - ok
22:07:13.0573 0x1154 [ 659AEAC64F7ECB76BC15E83BBBD7D4FF, DA188C4C7242F0EAC00AB770E4A1DEE07C532A9A295F41CE17BB4F93C25B173D ] dnbudf C:\Windows\system32\drivers\dnbudf.sys
22:07:13.0729 0x1154 dnbudf - ok
22:07:13.0839 0x1154 [ 57D762F6F5974AF0DA2BE88A3349BAAA, D9E7DC8F9FB7837F88BBB95B52147AA80E688FB9762EEA99B8046D9C6AD48F3C ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:07:13.0839 0x1154 Dnscache - ok
22:07:13.0948 0x1154 [ 324FD74686B1EF5E7C19A8AF49E748F6, DC6EB4304555B60DD17E04D20DFE4E279718E4041A9310DE29E678834BB22C5B ] dot3svc C:\Windows\System32\dot3svc.dll
22:07:13.0963 0x1154 dot3svc - ok
22:07:14.0073 0x1154 [ A622E888F8AA2F6B49E9BC466F0E5DEF, 3DED7F22A29AD2F8C927DFA0FD87FDE5ED0BDCAC7260BD9F71D8EA34328C772A ] DPS C:\Windows\system32\dps.dll
22:07:14.0088 0x1154 DPS - ok
22:07:14.0166 0x1154 [ 97FEF831AB90BEE128C9AF390E243F80, A7F4118603E2D5DDDB117EF7C058684EA5B37690EFAB2BEBA570EEF9C36281BE ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:07:14.0166 0x1154 drmkaud - ok
22:07:14.0260 0x1154 [ C68AC676B0EF30CFBB1080ADCE49EB1F, 62A808F2BB22507B66AE825315BBB655776AFEFD9E7DE33795DD308ACE87F0CD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:07:14.0307 0x1154 DXGKrnl - ok
22:07:14.0400 0x1154 [ 908ED85B7806E8AF3AF5E9B74F7809D4, 9A763D247035578A946094D2C1CE8204E6EDFFD7237C7BF2058B5F4ECC0306E0 ] e1express C:\Windows\system32\DRIVERS\e1e6032.sys
22:07:14.0431 0x1154 e1express - ok
22:07:14.0525 0x1154 [ 5425F74AC0C1DBD96A1E04F17D63F94C, AD133CEDCDEA75420C75A91BB4CF7152475D46ED7B7703E3BAE5F9946D610292 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys
22:07:14.0556 0x1154 E1G60 - ok
22:07:14.0634 0x1154 [ C0B95E40D85CD807D614E264248A45B9, 30421DAF1722A225222268CB8BA4FE60CB76C6FD0C9157B0F53FC1368F806A4E ] EapHost C:\Windows\System32\eapsvc.dll
22:07:14.0634 0x1154 EapHost - ok
22:07:14.0759 0x1154 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371, F3E9CF5D8E9124CB06F08454C5F0E510DE19A92780151FB2F8A58A0905D59B8F ] Ecache C:\Windows\system32\drivers\ecache.sys
22:07:14.0759 0x1154 Ecache - ok
22:07:14.0868 0x1154 [ 9BE3744D295A7701EB425332014F0797, 1A139EE9232581E466591C5EBEF41E4BF1F82D99C1959F1C68C879B240E9F46D ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:07:14.0915 0x1154 ehRecvr - ok
22:07:14.0946 0x1154 [ AD1870C8E5D6DD340C829E6074BF3C3F, 064D07106A1BBE80294F1913354832F2B67D22274BB4D36C81D2D83C96FE0B88 ] ehSched C:\Windows\ehome\ehsched.exe
22:07:14.0946 0x1154 ehSched - ok
22:07:15.0024 0x1154 [ C27C4EE8926E74AA72EFCAB24C5242C3, F1EBF78CCE9BA76AFD0478BC66B67CA44DEAF3C380369BFCE91BD8F678C8608A ] ehstart C:\Windows\ehome\ehstart.dll
22:07:15.0024 0x1154 ehstart - ok
22:07:15.0149 0x1154 [ DA8B28199B46B72502D5A3F75D446254, C1895040F30B3FEEDD724FCB7E27E118FA637E3AA420980D0EFB2D069C389925 ] ElRawDisk C:\Windows\system32\drivers\ElRawDsk.sys
22:07:15.0149 0x1154 ElRawDisk - ok
22:07:15.0289 0x1154 [ 23B62471681A124889978F6295B3F4C6, A90C521F06125B86A26EA625B0E7F811AF7D328E1313165E7AD4A83596A23819 ] elxstor C:\Windows\system32\drivers\elxstor.sys
22:07:15.0321 0x1154 elxstor - ok
22:07:15.0414 0x1154 [ 4E6B23DFC917EA39306B529B773950F4, C4BA77632B4BD46C4C1797F7F57399DB506D3EB6E5A0A36C269A793DAA3445C2 ] EMDMgmt C:\Windows\system32\emdmgmt.dll
22:07:15.0477 0x1154 EMDMgmt - ok
22:07:15.0523 0x1154 [ 3DB974F3935483555D7148663F726C61, C288CFC04213B0340ABEC752C0A7B308B29122B5F51E68387BA1D9E9D7166FDD ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:07:15.0523 0x1154 ErrDev - ok
22:07:15.0633 0x1154 [ 67058C46504BC12D821F38CF99B7B28F, E8D19F305F78BCA1DA8425315F2C77A377CD51E3CC54323DC2FF355120EA097D ] EventSystem C:\Windows\system32\es.dll
22:07:15.0664 0x1154 EventSystem - ok
22:07:15.0742 0x1154 [ 22B408651F9123527BCEE54B4F6C5CAE, 31AF9649333A9496A9224001266D1B68CE2A31B9FB182A755D127FC5492AA6B2 ] exfat C:\Windows\system32\drivers\exfat.sys
22:07:15.0773 0x1154 exfat - ok
22:07:15.0820 0x1154 [ 1E9B9A70D332103C52995E957DC09EF8, 7E709D545D4025A2E9F3489CF2A231040904CB53E3E4EEAC15A22468FAB2A5B3 ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:07:15.0835 0x1154 fastfat - ok
22:07:15.0929 0x1154 [ AFE1E8B9782A0DD7FB46BBD88E43F89A, B4CBE1DC3430F2F3485F49007C71293D5B86E9C405741EA00A67B00A38BE1F8D ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:07:15.0929 0x1154 fdc - ok
22:07:15.0991 0x1154 [ 6629B5F0E98151F4AFDD87567EA32BA3, 8CC02D5E0639CDF74B2F85DB56D6199E1858F1A58465ED1D8B25C968E986132C ] fdPHost C:\Windows\system32\fdPHost.dll
22:07:15.0991 0x1154 fdPHost - ok
22:07:16.0023 0x1154 [ 89ED56DCE8E47AF40892778A5BD31FD2, 924360875796C3DDDDA8097FDF53F6846B227F7413766F00AEDD981EFD691BF9 ] FDResPub C:\Windows\system32\fdrespub.dll
22:07:16.0023 0x1154 FDResPub - ok
22:07:16.0147 0x1154 [ A8C0139A884861E3AAE9CFE73B208A9F, 3B021D148A2989AAA46AE58E5FED8A2DCA25E9212C2FA7F922880EF5A077E49B ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:07:16.0147 0x1154 FileInfo - ok
22:07:16.0194 0x1154 [ 0AE429A696AECBC5970E3CF2C62635AE, 1ECC315C099D17835788B68F0DE00EC98DC5AEE8F329D739E0DB90A898F22244 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:07:16.0194 0x1154 Filetrace - ok
22:07:16.0522 0x1154 [ B8602C90D3C427D8A86CE60437615CF5, E8058E71FD60D21884CBCF398338A65A92926BAC406F96713A262BDFDD04C80A ] FlipShare Service C:\Program Files\Flip Video\FlipShare\FlipShareService.exe
22:07:16.0584 0x1154 FlipShare Service - ok
22:07:16.0740 0x1154 [ AC5FB7094F31534594CAE48306972CBD, DB5A0F63EF6ABF68B1A952A05646A163A5C075E3571682FC1C4B32918E1569FC ] FlipShareServer C:\Program Files\Flip Video\FlipShareServer\FlipShareServer.exe
22:07:17.0038 0x1154 FlipShareServer - ok
22:07:17.0100 0x1154 [ 85B7CF99D532820495D68D747FDA9EBD, 682D35D219D1AFBE51CF0AB03F2D3E15C940F5AF291C1A611A19F4D279143F3C ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:07:17.0100 0x1154 flpydisk - ok
22:07:17.0178 0x1154 [ 01334F9EA68E6877C4EF05D3EA8ABB05, 82F8AA6AD2B5077898773D4A5814819EAF0E872FFD95894E06FEDAB6EE92CF99 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:07:17.0194 0x1154 FltMgr - ok
22:07:17.0381 0x1154 [ 8CE364388C8ECA59B14B539179276D44, AD37AD512412A1A0955218A3DA0D6FBE1E30F373153CAF5912EFC076D348FED8 ] FontCache C:\Windows\system32\FntCache.dll
22:07:17.0443 0x1154 FontCache - ok
22:07:17.0662 0x1154 [ C7FBDD1ED42F82BFA35167A5C9803EA3, 372FF71070D5ECE17342466A690737A0622E93C98DBED8172C49B0854F0012B7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:07:17.0662 0x1154 FontCache3.0.0.0 - ok
22:07:17.0693 0x1154 [ B972A66758577E0BFD1DE0F91AAA27B5, E934034F3F740A83D4E7ABCD2C581845AC2945B0BCCAACF65CC3F99A1DBDE455 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:07:17.0693 0x1154 Fs_Rec - ok
22:07:17.0724 0x1154 [ 34582A6E6573D54A07ECE5FE24A126B5, 5F45DC38F8015AD90616EAD3B57820CCD284938A96B2C4E1FF5FC7BDEE8A848D ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
22:07:17.0740 0x1154 gagp30kx - ok
22:07:17.0833 0x1154 [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:07:17.0833 0x1154 GEARAspiWDM - ok
22:07:17.0975 0x1154 [ 9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F, 6D2B301E77839FFF1C74425B37D02C3F3837CE50E856C21AE4CF7ABABB04ADDC ] GoogleDesktopManager-051210-111108 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
22:07:17.0975 0x1154 GoogleDesktopManager-051210-111108 - ok
22:07:18.0099 0x1154 [ D3316F6E3C011435F36E3D6E49B3196C, 941DF52BA26603A146ED6B65A696DB87153868ED0469EF9C2EB09AC7E63525B7 ] GoToAssist C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
22:07:18.0099 0x1154 GoToAssist - ok
22:07:18.0177 0x1154 [ CD5D0AEEE35DFD4E986A5AA1500A6E66, DCED5126837292593F1C1B35DF18E3B631D6C0C6D0742B77C7B7742C55A7825F ] gpsvc C:\Windows\System32\gpsvc.dll
22:07:18.0240 0x1154 gpsvc - ok
22:07:18.0396 0x1154 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:07:18.0396 0x1154 gusvc - ok
22:07:18.0505 0x1154 [ 062452B7FFD68C8C042A6261FE8DFF4A, DD9873502456D3C058C6177AC223B28C71370E624FA0814C17EA3D93201F2B56 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:07:18.0583 0x1154 HDAudBus - ok
22:07:18.0614 0x1154 [ 1338520E78D90154ED6BE8F84DE5FCEB, 8531F1C5856983EBDA4C2B70162645ECE72FFFBA9FE7A28BCEDDF2169B7ECF9D ] HidBth C:\Windows\system32\drivers\hidbth.sys
22:07:18.0614 0x1154 HidBth - ok
22:07:18.0661 0x1154 [ FF3160C3A2445128C5A6D9B076DA519E, DC1A70C80CD55F33B3AD5A21E86AF7C3086D8CC2DC6148C058E74A871E0BAD4A ] HidIr C:\Windows\system32\drivers\hidir.sys
22:07:18.0661 0x1154 HidIr - ok
22:07:18.0739 0x1154 [ 84067081F3318162797385E11A8F0582, 11E32E3800CFCA37354388243F88D0239D622891BAC5483518A2BE5D1CA19015 ] hidserv C:\Windows\system32\hidserv.dll
22:07:18.0739 0x1154 hidserv - ok
22:07:18.0817 0x1154 [ CCA4B519B17E23A00B826C55716809CC, 91AD0758A6185B0FBBE383BDB1B457FFB850477AFF8DE040DE9527A97D28EF62 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:07:18.0833 0x1154 HidUsb - ok
22:07:18.0864 0x1154 [ D8AD255B37DA92434C26E4876DB7D418, C901EADDD93FC90C8F29F4B6DE808F8E4F486C877FC0AA27DA4ACDE17E28899D ] hkmsvc C:\Windows\system32\kmsvc.dll
22:07:18.0879 0x1154 hkmsvc - ok
22:07:18.0943 0x1154 [ 16EE7B23A009E00D835CDB79574A91A6, 964AFE7D2F7E48C7DE7FDAB48F57ADC4AD44A0B2A9A03071E0E8D334007E5572 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys
22:07:18.0943 0x1154 HpCISSs - ok
22:07:19.0083 0x1154 [ 99F85640054BA65190B860D878A7C9AE, CE87323FFA4A74EA721A5E7CA6F233C54F21C2C1C6BF7DE84049CE7CEB0741AE ] HSF_DPV C:\Windows\system32\DRIVERS\HSX_DPV.sys
22:07:19.0192 0x1154 HSF_DPV - ok
22:07:19.0286 0x1154 [ CFBC2B81972E298F0E19EE68FA9E73DA, F149EE69F7300494329A5609ACC2D2F4A6D2F681CD368E7DA43C4D768D5B6C64 ] HSXHWAZL C:\Windows\system32\DRIVERS\HSXHWAZL.sys
22:07:19.0302 0x1154 HSXHWAZL - ok
22:07:19.0395 0x1154 [ F870AA3E254628EBEAFE754108D664DE, B0444E7D246AA1982094030ACB991690F6A7DD3FB07B1BB6A1BC0F3AA9718A70 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:07:19.0426 0x1154 HTTP - ok
22:07:19.0489 0x1154 [ C6B032D69650985468160FC9937CF5B4, 4D5A944C70037F35A9DBA4F49F174455FA80ED7EAEDAA143F0A2C0E05AE585D8 ] i2omp C:\Windows\system32\drivers\i2omp.sys
22:07:19.0489 0x1154 i2omp - ok
22:07:19.0614 0x1154 [ 22D56C8184586B7A1F6FA60BE5F5A2BD, D96A2962848C1F59B143BFEC22EC48BD1C5A75D0EBCFD7FB965E66B85FF7D8CA ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:07:19.0660 0x1154 i8042prt - ok
22:07:19.0785 0x1154 [ AE38A12F79A4980DDB88F36514F8A1DA, CA7EE57EC2ECA88ABFD087DAF8963021DC12821FDFAAD0336A16F8DC119C0FC4 ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
22:07:19.0848 0x1154 IAANTMON - ok
22:07:19.0926 0x1154 [ 997E8F5939F2D12CD9F2E6B395724C16, C22F10BADE29DA6F7EB79D9F5D81D9FBEC17D4D4F8B25E0AF4E5CEAE28E8ABF6 ] iaStor C:\Windows\system32\drivers\iastor.sys
22:07:19.0941 0x1154 iaStor - ok
22:07:20.0004 0x1154 [ 54155EA1B0DF185878E0FC9EC3AC3A14, 344A0793499261D2E4FF2FCCC70501329485F8E299EBC68953D07BA86F0D4729 ] iaStorV C:\Windows\system32\drivers\iastorv.sys
22:07:20.0019 0x1154 iaStorV - ok
22:07:20.0175 0x1154 [ 60B044A221CF76CC6077B0C3E9136CFF, C679841F31A6BE4924DFE31E8D3890012287C4C01DAEF58648447A081C8EE57A ] ICDUSB2 C:\Windows\system32\Drivers\ICDUSB2.sys
22:07:20.0175 0x1154 ICDUSB2 - ok
22:07:20.0300 0x1154 [ 98477B08E61945F974ED9FDC4CB6BDAB, C7E8F661F6FBF6AB493E950D2E70363496E155B1838CE7B490B981BD840B04FC ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:07:20.0409 0x1154 idsvc - ok
22:07:20.0628 0x1154 [ C134E69CE901422D1F2D7EA8D69098FE, 38D7AB6C85C0BCE34B8F52DDBD6F0371DF551003DF6BAE20A2AB1D1349128890 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
22:07:20.0752 0x1154 igfx - ok
22:07:20.0784 0x1154 [ 2D077BF86E843F901D8DB709C95B49A5, 78FF558A881F307858F5C7C74A748B8B2562AF3CAC7EA8639945609001D790CE ] iirsp C:\Windows\system32\drivers\iirsp.sys
22:07:20.0799 0x1154 iirsp - ok
22:07:21.0142 0x1154 [ 9908D8A397B76CD8D31D0D383C5773C9, FFA6996BE9F11A81CB63C849C2400EB44A07706D1EEB7A3502D4110DAC3684A2 ] IKEEXT C:\Windows\System32\ikeext.dll
22:07:21.0205 0x1154 IKEEXT - ok
22:07:21.0267 0x1154 [ 98D303CCB3415E9202E82043B37D66DC, 53526635EBCA6E2C2E9AAEC68B333CAE6A5FF0008859FCDE3D84A2C9098B30B0 ] IntcHdmiAddService C:\Windows\system32\drivers\IntcHdmi.sys
22:07:21.0283 0x1154 IntcHdmiAddService - ok
22:07:21.0376 0x1154 [ 83AA759F3189E6370C30DE5DC5590718, 7406FE41EA8FB80052517318CB72E2641E92E579FAFAF5E8DDDFF0BF8DAE773A ] intelide C:\Windows\system32\DRIVERS\intelide.sys
22:07:21.0392 0x1154 intelide - ok
22:07:21.0454 0x1154 [ 224191001E78C89DFA78924C3EA595FF, E4EC9CAAEEEAEB30E13F4A8023AF687F29514667380DDFD638BBFFF1D5FC2563 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:07:21.0454 0x1154 intelppm - ok
22:07:22.0687 0x1154 [ 2920A7C35D7D026EEDACAEF269C92B66, 553A496C0CE9E868D68A0B7A2ADACC4C2E4AB8B3D0C4139B82DD832DF9DB4CA0 ] ioloSystemService C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
22:07:22.0983 0x1154 ioloSystemService - ok
22:07:23.0092 0x1154 [ B28EBE493AC60306E6C39DB37D1EE91A, ACF3C902DE4312DE9005B87986ED03E941CB458DC60A15280BC01C113B5A5660 ] iomdisk C:\Windows\system32\DRIVERS\iomdisk.sys
22:07:23.0124 0x1154 iomdisk - ok
22:07:23.0248 0x1154 [ 896EFAA6FFAA0F9CAA655757A3BE3C40, 4C3E2343882AE7394C1672AA848528BDC5C84FD2A6A929EEF7D7FC7900185E56 ] Iomega App Services C:\PROGRA~1\Iomega\System32\AppServices.exe
22:07:24.0762 0x1154 Iomega App Services - ok
22:07:24.0824 0x1154 [ 9AC218C6E6105477484C6FDBE7D409A4, FF30D09CD2A0F5BBEC309E953370F194B6F26BF4227E627B594AAA48B0F5D3C2 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:07:24.0824 0x1154 IPBusEnum - ok
22:07:24.0996 0x1154 [ 62C265C38769B864CB25B4BCF62DF6C3, CAF6BCE967104233E216464E4729B0275C3BD426D812F404AB0EE83A7F2063D8 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:07:24.0996 0x1154 IpFilterDriver - ok
22:07:25.0089 0x1154 [ 1998BD97F950680BB55F55A7244679C2, A4E8BB4C6B2AF4800BD5E0BA8725FD0927F8FB6751AEBF6DD16B59C414CCB9D8 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:07:25.0089 0x1154 iphlpsvc - ok
22:07:25.0105 0x1154 IpInIp - ok
22:07:25.0245 0x1154 [ B25AAF203552B7B3491139D582B39AD1, EA9C38F512F40FF12975A6719E6FE4D7EA93A4B2497103E0FDA5A4CD6033C0A6 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys
22:07:25.0245 0x1154 IPMIDRV - ok
22:07:25.0323 0x1154 [ 8793643A67B42CEC66490B2A0CF92D68, 8B1ED1314E4C6623824DD6B9C15A0F7F996F4D243BF0B305421251BE40850907 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys
22:07:25.0339 0x1154 IPNAT - ok
22:07:25.0479 0x1154 [ 066F2BBE2EEC9A42B065B552BF356B4E, AE86DB5BFD4748C54C0C224E7FBEA3C032F1071A39303DF35AA04869D3950B7A ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
22:07:25.0526 0x1154 iPod Service - ok
22:07:25.0620 0x1154 [ 109C0DFB82C3632FBD11949B73AEEAC9, 73B01426100256B7110DF0B74483AF1B62FC209612EEC29A7BF6DC31A7FBEFB6 ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:07:25.0635 0x1154 IRENUM - ok
22:07:25.0682 0x1154 [ 6C70698A3E5C4376C6AB5C7C17FB0614, 10FBCBA5A74AF5D136B152FD4D3DFA2A1F2CEBC3F979D5BA6DB98B3DCB2F7A07 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:07:25.0698 0x1154 isapnp - ok
22:07:25.0822 0x1154 [ 232FA340531D940AAC623B121A595034, 90C93F04D8A0094EEBD118F10223605B8169DA5F24C466F503CED5C014BD17B1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
22:07:25.0822 0x1154 iScsiPrt - ok
22:07:25.0854 0x1154 [ BCED60D16156E428F8DF8CF27B0DF150, 4934E9AB8A8A548548F0C63517F2BF4DE84B05E5C9C7C2AA6C1517B8F9C340D4 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys
22:07:25.0854 0x1154 iteatapi - ok
22:07:25.0885 0x1154 [ 06FA654504A498C30ADCA8BEC4E87E7E, 651BC35A0A3D504573BBAB40DE81929BB18C9FC0CD7944FEAE0E99CD7658EA88 ] iteraid C:\Windows\system32\drivers\iteraid.sys
22:07:25.0885 0x1154 iteraid - ok
22:07:25.0916 0x1154 [ 37605E0A8CF00CBBA538E753E4344C6E, B9A9FFDCE45B0830E277CF322C28ACB49372C16144B0F676B283BE5DAE9A7F30 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:07:25.0916 0x1154 kbdclass - ok
22:07:25.0947 0x1154 [ 18247836959BA67E3511B62846B9C2E0, 9623FF990A1C11A707C358CC9FDD4306C2992A8C766A50DAFC9534A283AA011D ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:07:25.0963 0x1154 kbdhid - ok
22:07:25.0994 0x1154 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] KeyIso C:\Windows\system32\lsass.exe
22:07:26.0010 0x1154 KeyIso - ok
22:07:26.0197 0x1154 [ 4A1445EFA932A3BAF5BDB02D7131EE20, 9DD262ED72DF268FE024063788F54124E320D0775D8DC0C5CAD099CD5F655DA2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:07:26.0228 0x1154 KSecDD - ok
22:07:26.0353 0x1154 [ 8078F8F8F7A79E2E6B494523A828C585, BB399993166853F0C01B7508649ECD7E7473238267BA8333D0441128FE656347 ] KtmRm C:\Windows\system32\msdtckrm.dll
22:07:26.0384 0x1154 KtmRm - ok
22:07:26.0462 0x1154 [ 1BF5EEBFD518DD7298434D8C862F825D, F41C79410345C40B346EB5EDEA397ECD29ECB9B921AC3E19F9453E52A7B9288A ] LanmanServer C:\Windows\system32\srvsvc.dll
22:07:26.0462 0x1154 LanmanServer - ok
22:07:26.0571 0x1154 [ 1DB69705B695B987082C8BAEC0C6B34F, D395B272F6B69D4A9FC3CDEFD812EF0DBFECF3C1B1C787C7CC1E1A1B091B8DB3 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:07:26.0571 0x1154 LanmanWorkstation - ok
22:07:27.0460 0x1154 [ 9780D807FE1C36E76FB9A48D4E5277F8, 613D9029F63123C9D061ED8866E42400A7503C96C0EF03E99C1C9D8AD28CA537 ] LeapFrog Connect Device Service C:\Program Files\LeapFrog\LeapFrog Connect\CommandService.exe
22:07:28.0147 0x1154 LeapFrog Connect Device Service - ok
22:07:28.0303 0x1154 [ D1C5883087A0C3F1344D9D55A44901F6, 608D67357AFDDD538D2C12C93EB0793ECA4EB3AF2BAB779E881C41F50E4AB911 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:07:28.0303 0x1154 lltdio - ok
22:07:28.0350 0x1154 [ 2D5A428872F1442631D0959A34ABFF63, E532C6ECFFB936EFF744CA57BDC6394C89E797B6B0822D04F1F3F35D9BDDD4F0 ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:07:28.0365 0x1154 lltdsvc - ok
22:07:28.0521 0x1154 [ 35D40113E4A5B961B6CE5C5857702518, 453097AEF46ED48107395D9A1696AAC259FD6CEA8A655D38C5E246FDDAB81664 ] lmhosts C:\Windows\System32\lmhsvc.dll
22:07:28.0521 0x1154 lmhosts - ok
22:07:28.0568 0x1154 [ C7E15E82879BF3235B559563D4185365, 98C9268ADF6BAEB0522BB84BE6C98D0D6D5EB4BD27BB61412D208232164C8435 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
22:07:28.0584 0x1154 LSI_FC - ok
22:07:28.0615 0x1154 [ EE01EBAE8C9BF0FA072E0FF68718920A, 655924440E611278998226299645BC72B3627A8A057286DC8D65A162CFBBE484 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
22:07:28.0630 0x1154 LSI_SAS - ok
22:07:28.0708 0x1154 [ 912A04696E9CA30146A62AFA1463DD5C, 1D336D47B9D1C8449F29CDB776C092235E3D70CE53D9440970533E376EB004D3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
22:07:28.0708 0x1154 LSI_SCSI - ok
22:07:28.0771 0x1154 [ 8F5C7426567798E62A3B3614965D62CC, 659810257D942C5F4168E1247868CDA990F2324AC9ACAA9A6211F64B7AC9EC6E ] luafv C:\Windows\system32\drivers\luafv.sys
22:07:28.0771 0x1154 luafv - ok
22:07:28.0833 0x1154 [ AEF9BABB8A506BC4CE0451A64AADED46, D5608A703EA7E97F11ED4D029B4B820440B0C9317DB7D7DC0152253CD723DC07 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:07:28.0880 0x1154 Mcx2Svc - ok
22:07:28.0989 0x1154 [ 0CEA2D0D3FA284B85ED5B68365114F76, E6FF0EC98FDC3F628438B613C356C237E68686E3B5B17A58A60C16F4B9A2B968 ] mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys
22:07:28.0989 0x1154 mdmxsdk - ok
22:07:29.0052 0x1154 [ 0001CE609D66632FA17B84705F658879, D5F9758BDC2B733307B565A74B33F5581FB425A5A9F32CCFA307DA1569EBD6CD ] megasas C:\Windows\system32\drivers\megasas.sys
22:07:29.0067 0x1154 megasas - ok
22:07:29.0161 0x1154 [ C252F32CD9A49DBFC25ECF26EBD51A99, 47EC8F475AB62A00FAF989CD2C3ABDF2922588F75CC15C83CD99A62EF6400FB0 ] MegaSR C:\Windows\system32\drivers\megasr.sys
22:07:29.0192 0x1154 MegaSR - ok
22:07:29.0254 0x1154 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] MMCSS C:\Windows\system32\mmcss.dll
22:07:29.0270 0x1154 MMCSS - ok
22:07:29.0301 0x1154 [ E13B5EA0F51BA5B1512EC671393D09BA, 5B380D1B435D809CA201FD5ED075D42F3C6BA1A4EEDBC4040F7E3329F05A334A ] Modem C:\Windows\system32\drivers\modem.sys
22:07:29.0301 0x1154 Modem - ok
22:07:29.0332 0x1154 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8, 1E8031D51E074FDFB53E98E26DABF313B901C028D01196BFD402EED5D0A89595 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:07:29.0332 0x1154 monitor - ok
22:07:29.0442 0x1154 [ 5BF6A1326A335C5298477754A506D263, CC7F58E5955A448F6CE28D6D8EB98C7479E11F931B5C733CFE71A29B2E95923D ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:07:29.0442 0x1154 mouclass - ok
22:07:29.0504 0x1154 [ 93B8D4869E12CFBE663915502900876F, 7464DE60FAAD8793D855F1F86C3C865B3A3EE41C19A3E926D1BE4426E67F5EC2 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:07:29.0582 0x1154 mouhid - ok
22:07:29.0676 0x1154 [ BDAFC88AA6B92F7842416EA6A48E1600, 2CA8A7BB260016D6B7953980A94C45A3C5D41F7DC7E73EEFB1C18EA144749503 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys
22:07:29.0691 0x1154 MountMgr - ok
22:07:29.0785 0x1154 [ 14C701AE145A029FD5FAA5E529412B92, CAFB9465ADB313D3A0B5683B5D6DAA37CCD34289511C6637985FB5BB1841F978 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:07:29.0800 0x1154 MozillaMaintenance - ok
22:07:29.0878 0x1154 [ 8072A7BB35D92CC621AC2605EEF79BC4, 68F61BE84A5032CEC24F04C90DACA1AE78F3744016389BE2345256B26E44E09A ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
22:07:29.0894 0x1154 MpFilter - ok
22:07:29.0925 0x1154 [ 511D011289755DD9F9A7579FB0B064E6, 1FD0D0D5B6E08FE06F7A5D0821BCD859B0F98A6DEA58AAB7FB6C95B64212FFC8 ] mpio C:\Windows\system32\drivers\mpio.sys
22:07:29.0925 0x1154 mpio - ok
22:07:30.0144 0x1154 [ 65C34426C83EFA32D48380A97717997B, CD7EB6BFBB0BE382BA21055460D9A72323F09AF3194A22D8EDB28D5DB3BAE8E7 ] MpKslc68a7064 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F7917758-CB16-4801-8599-076E947243E6}\MpKslc68a7064.sys
22:07:30.0159 0x1154 MpKslc68a7064 - ok
22:07:30.0237 0x1154 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E, 62055C0DCEB69873B8961AB17DBD002F44319A44CB05EC3A61421A0C6D4736CD ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:07:30.0237 0x1154 mpsdrv - ok
22:07:30.0362 0x1154 [ 5DE62C6E9108F14F6794060A9BDECAEC, 655E6645CC4A1EDBE5F51F5F80C7B504DD956851E788A6E4E4E08CDCDCE160D9 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:07:30.0409 0x1154 MpsSvc - ok
22:07:30.0565 0x1154 [ 4FBBB70D30FD20EC51F80061703B001E, 72907A0CA5CFF82F40C02A65CD8EFD51D7CFC33BE67DE572D1ACF4FD3B248F0A ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys
22:07:30.0565 0x1154 Mraid35x - ok
22:07:30.0627 0x1154 [ 82CEA0395524AACFEB58BA1448E8325C, 16E37990A291C848DE35F48EA7E09AE5B258AE589EB08A3FA2C60DC1278DE182 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:07:30.0643 0x1154 MRxDAV - ok
22:07:30.0690 0x1154 [ 1E94971C4B446AB2290DEB71D01CF0C2, 4701AA1B419AEF735CB2DA34532B0F1844433272C36D79F4EB55807E39B923D1 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:07:30.0705 0x1154 mrxsmb - ok
22:07:30.0814 0x1154 [ 4FCCB34D793B116423209C0F8B7A3B03, 7A483AEB691ADBE82779F12F0BB1CCCBFFD7E92902EC1ADC99AB7D129F887143 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:07:30.0830 0x1154 mrxsmb10 - ok
22:07:30.0892 0x1154 [ C3CB1B40AD4A0124D617A1199B0B9D7C, B975A39DE6D324C6274B6E3B883F36082A958F028335CEB3A37F44481EB284B3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:07:30.0892 0x1154 mrxsmb20 - ok
22:07:30.0955 0x1154 [ F70590424EEFBF5C27A40C67AFDB8383, 1F2AC1DA12F7E6F09D8F6622EF1366ABD4B86EBE51DD1915E803D56A568A3412 ] msahci C:\Windows\system32\drivers\msahci.sys
22:07:30.0955 0x1154 msahci - ok
22:07:31.0048 0x1154 [ 4468B0F385A86ECDDAF8D3CA662EC0E7, EAEDC9CDD2EEC5000AF8190A4BE7729282576C3F88E64FDF57F455F5CECC81C9 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:07:31.0048 0x1154 msdsm - ok
22:07:31.0126 0x1154 [ FD7520CC3A80C5FC8C48852BB24C6DED, C3F3D7A07FAB9AF38A2A00BF0DF6EEE18CA8FE26277BEC9D8ADB793F2CD5EC1F ] MSDTC C:\Windows\System32\msdtc.exe
22:07:31.0126 0x1154 MSDTC - ok
22:07:31.0236 0x1154 [ A9927F4A46B816C92F461ACB90CF8515, 753284F726F9B4D3E7322C75532244CA43714F00717C2019391FB36DEE0738C0 ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:07:31.0236 0x1154 Msfs - ok
22:07:31.0298 0x1154 [ 0F400E306F385C56317357D6DEA56F62, C48FA8193787359902D20D869F5F602CD66D3C5D061A58DDB72F51EED433C4BC ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:07:31.0298 0x1154 msisadrv - ok
22:07:31.0360 0x1154 [ 85466C0757A23D9A9AECDC0755203CB2, 79141B8DF9D7470466872AF03A85C3D3976512BFDBDB8B92A22225DC8EFD70A6 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:07:31.0376 0x1154 MSiSCSI - ok
22:07:31.0376 0x1154 msiserver - ok
22:07:31.0454 0x1154 [ D8C63D34D9C9E56C059E24EC7185CC07, D0CBFB8D57E6D908679DC0488ED659CA35B92626DEA890873E165F051A1AD2AE ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:07:31.0454 0x1154 MSKSSRV - ok
22:07:31.0516 0x1154 [ 1EE3643D1AA747222427F63353611AD7, 18465E375485DF4E980121449077D5BA87C25C5FA8D86F40DA3B7BE153306766 ] MsMpSvc C:\Program Files\Microsoft Security Client\MsMpEng.exe
22:07:31.0532 0x1154 MsMpSvc - ok
22:07:31.0641 0x1154 [ 1D373C90D62DDB641D50E55B9E78D65E, 1D4897A96EA54D6FAC7916D69B4E88CAE1397C38CC8FAE08554772808476357B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:07:31.0641 0x1154 MSPCLOCK - ok
22:07:31.0657 0x1154 [ B572DA05BF4E098D4BBA3A4734FB505B, B7923F204CEADD0F62C2FE4B7CF8C56DAB70F88093B15C5692D0E61490CF4BAA ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:07:31.0672 0x1154 MSPQM - ok
22:07:31.0750 0x1154 [ B49456D70555DE905C311BCDA6EC6ADB, 8E40586B3A1FAE9996459E0261726C9DD6A8D5F575604868C45604613385C92F ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:07:31.0766 0x1154 MsRPC - ok
22:07:31.0797 0x1154 [ E384487CB84BE41D09711C30CA79646C, 520391DEE14D4D6C1EA99C7D31DD95D56B44D54CA3CD8E5C9855E9C0A04F026C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:07:31.0797 0x1154 mssmbios - ok
22:07:31.0813 0x1154 [ 7199C1EEC1E4993CAF96B8C0A26BD58A, DD02DF8ED7AF5BB88BD2A91F38CE4C52432CB8044BDCBC41C320CD22B10B8A3B ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:07:31.0813 0x1154 MSTEE - ok
22:07:31.0860 0x1154 [ 6A57B5733D4CB702C8EA4542E836B96C, 080FB0B01E949D24CDD6876125B3A72DA9F88845D8B9A1A425BCA99E7ACF6821 ] Mup C:\Windows\system32\Drivers\mup.sys
22:07:31.0860 0x1154 Mup - ok
22:07:31.0922 0x1154 [ E4EAF0C5C1B41B5C83386CF212CA9584, 5946C3DCE65A0DB164169A1775DFCA544AF4E1895ADF6916BB1653F373F8D9AF ] napagent C:\Windows\system32\qagentRT.dll
22:07:31.0984 0x1154 napagent - ok
22:07:32.0094 0x1154 [ 85C44FDFF9CF7E72A40DCB7EC06A4416, DC37C99C458CA69B33BFD3894187089E947F4F9C01EC2ED024FA8614989E0956 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:07:32.0094 0x1154 NativeWifiP - ok
22:07:32.0172 0x1154 [ 1357274D1883F68300AEADD15D7BBB42, EE6352CBF0D9D633816F338159CDA27F1A805C3DDC3402D8605B50D8F3CD3300 ] NDIS C:\Windows\system32\drivers\ndis.sys
22:07:32.0203 0x1154 NDIS - ok
22:07:32.0265 0x1154 [ 0E186E90404980569FB449BA7519AE61, DE41791D9D3074007D6DD1D3933E7A2A13E3789D0AD4F029105B58279622FC1B ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:07:32.0265 0x1154 NdisTapi - ok
22:07:32.0328 0x1154 [ D6973AA34C4D5D76C0430B181C3CD389, 7C303F3D6BFF8B82E39998135B444837091AB1F9EB8F28D013E5EF45DB237EFC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:07:32.0328 0x1154 Ndisuio - ok
22:07:32.0484 0x1154 [ 818F648618AE34F729FDB47EC68345C3, 5FC8F9237BD7FCE3C62D5BDDD49DC104BE2BECDC2FA8CDC1DB8F1891CBAA9140 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:07:32.0484 0x1154 NdisWan - ok
22:07:32.0515 0x1154 [ 71DAB552B41936358F3B541AE5997FB3, 30A8B3E33CBF04FC047254E404C0321F9028F2640036AA8AC1EA0A5E64551684 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:07:32.0515 0x1154 NDProxy - ok
22:07:32.0593 0x1154 [ BCD093A5A6777CF626434568DC7DBA78, 2A283DD93230361204EA0897864EAF0224CB8C02E025AE2E4237B07A598B3EBD ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:07:32.0593 0x1154 NetBIOS - ok
22:07:32.0671 0x1154 [ ECD64230A59CBD93C85F1CD1CAB9F3F6, 83650D756C1F2768A2AAAFC7924F2A4316ABAEB1708F4B05803CDDD699B5AB6F ] netbt C:\Windows\system32\DRIVERS\netbt.sys
22:07:32.0686 0x1154 netbt - ok
22:07:32.0702 0x1154 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] Netlogon C:\Windows\system32\lsass.exe
22:07:32.0718 0x1154 Netlogon - ok
22:07:32.0811 0x1154 [ C8052711DAECC48B982434C5116CA401, 417DEB86D157DD3F0B4678410FE27FDD3E8FA04AB03AF398F6C02BF207070B35 ] Netman C:\Windows\System32\netman.dll
22:07:32.0874 0x1154 Netman - ok
22:07:32.0920 0x1154 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:07:32.0936 0x1154 NetMsmqActivator - ok
22:07:32.0983 0x1154 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:07:32.0983 0x1154 NetPipeActivator - ok
22:07:33.0030 0x1154 [ 2EF3BBE22E5A5ACD1428EE387A0D0172, 55DB91EDD0339D2434C06445F8A716A48EA90925B0FF7EBF45BB79D4B54B80BF ] netprofm C:\Windows\System32\netprofm.dll
22:07:33.0092 0x1154 netprofm - ok
22:07:33.0123 0x1154 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:07:33.0123 0x1154 NetTcpActivator - ok
22:07:33.0154 0x1154 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
22:07:33.0170 0x1154 NetTcpPortSharing - ok
22:07:33.0217 0x1154 [ 2E7FB731D4790A1BC6270ACCEFACB36E, EE9A00B694E8A3A5842CDC56C7BA1364317AC8134E046A0059661D057094B1A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
22:07:33.0217 0x1154 nfrd960 - ok
22:07:33.0326 0x1154 [ FCBC2F48430EB0D7150A6521C0B84ACA, EEFB975E2D1121EE9E93702F2CA2938C99C6B2273616C85816BA15E857E8D4FF ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
22:07:33.0326 0x1154 NisDrv - ok
22:07:33.0435 0x1154 [ E4AA07F8BCBCB66EF115C443CD45C7A2, 3B538D9E376F12FC8589BA500BB5E859337CF1856D0E4AA66E2E3B5E301DAEC5 ] NisSrv C:\Program Files\Microsoft Security Client\NisSrv.exe
22:07:33.0482 0x1154 NisSrv - ok
22:07:33.0529 0x1154 [ 2997B15415F9BBE05B5A4C1C85E0C6A2, 5455536515FE740E18E090329FDCC40288724372AD18ACDB2CB4BB9D85CF681E ] NlaSvc C:\Windows\System32\nlasvc.dll
22:07:33.0529 0x1154 NlaSvc - ok
22:07:33.0763 0x1154 [ D36F239D7CCE1931598E8FB90A0DBC26, DF9397411D0CE5A87E3346D4E6E25BEC537A21BCE196CC55FD999CD08FC4A637 ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:07:33.0763 0x1154 Npfs - ok
22:07:33.0825 0x1154 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD, 15CA178518EB3D457AA4C109D97A8490821590842AE4E9841703B5A55870C8F6 ] nsi C:\Windows\system32\nsisvc.dll
22:07:33.0825 0x1154 nsi - ok
22:07:33.0856 0x1154 [ 609773E344A97410CE4EBF74A8914FCF, 90B9CBD2B62854DD503DE4A910CB987D402368EB99882FE20FFB6DEACD70F2BD ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:07:33.0872 0x1154 nsiproxy - ok
22:07:33.0981 0x1154 [ 6A4A98CEE84CF9E99564510DDA4BAA47, 18C3D8C0F12761D3B7FC43D9413CF4C4CEBF8CA9BEC521381F40D241B35EA779 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:07:34.0059 0x1154 Ntfs - ok
22:07:34.0106 0x1154 [ E875C093AEC0C978A90F30C9E0DFBB72, D3A480CD7EF374EFBC1BB831B33B81534774DDDBB0FB338BEE1D444949FD8DE7 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys
22:07:34.0106 0x1154 ntrigdigi - ok
22:07:34.0122 0x1154 [ C5DBBCDA07D780BDA9B685DF333BB41E, 3652893DFF05469A273C3073D8D0A9D6D6BBDEC7855FEA8EAB768F95BA674108 ] Null C:\Windows\system32\drivers\Null.sys
22:07:34.0123 0x1154 Null - ok
22:07:34.0154 0x1154 [ 2EDF9E7751554B42CBB60116DE727101, 37A0AA78E83DBB5A788F7F067EB71DDF6CCC72A66BB41B209E1A5E2F68F8AF9B ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:07:34.0169 0x1154 nvraid - ok
22:07:34.0201 0x1154 [ ABED0C09758D1D97DB0042DBB2688177, 84B9BF886EF9181915E8AB6D971446BC681E6DE4485DBECD62838EAFA10E7F46 ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:07:34.0216 0x1154 nvstor - ok
22:07:34.0263 0x1154 [ 18BBDF913916B71BD54575BDB6EEAC0B, 5FBA165149AB09E869DCE35622E91CFC964BDD22B31A5E76CF12F1565402B207 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:07:34.0263 0x1154 nv_agp - ok
22:07:34.0279 0x1154 NwlnkFlt - ok
22:07:34.0294 0x1154 NwlnkFwd - ok
22:07:34.0403 0x1154 [ 19CAC780B858822055F46C58A111723C, D91CE501328281B8FEE6943776A145FB3201645B01BA8D1545FFA93A547DE2C7 ] OEM02Dev C:\Windows\system32\DRIVERS\OEM02Dev.sys
22:07:34.0419 0x1154 OEM02Dev - ok
22:07:34.0435 0x1154 [ 86326062A90494BDD79CE383511D7D69, 43D5682CA8ECB4BA7CC1A5C4C2BF966EE4802E8C3AA84CDEB634CA3C410DAB89 ] OEM02Vfx C:\Windows\system32\DRIVERS\OEM02Vfx.sys
22:07:34.0435 0x1154 OEM02Vfx - ok
22:07:34.0544 0x1154 [ 6F310E890D46E246E0E261A63D9B36B4, 7050B0C43CC0DF2DDAD3EB8D2FF9EEE425A627C68654CBB154D55A4B1A47AA08 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
22:07:34.0559 0x1154 ohci1394 - ok
22:07:34.0762 0x1154 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2pimsvc C:\Windows\system32\p2psvc.dll
22:07:34.0825 0x1154 p2pimsvc - ok
22:07:34.0871 0x1154 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] p2psvc C:\Windows\system32\p2psvc.dll
22:07:34.0903 0x1154 p2psvc - ok
22:07:35.0043 0x1154 [ 0FA9B5055484649D63C303FE404E5F4D, ABF357001A5E7B21621560E74FA538E2D899C5111A6AAC784B5B12D9D819C6CD ] Parport C:\Windows\system32\drivers\parport.sys
22:07:35.0059 0x1154 Parport - ok
22:07:35.0105 0x1154 [ B9C2B89F08670E159F7181891E449CD9, BD48CE95CF4B75D1FD5FD379B2A8727BC000F2B6748B77636C6BDB0B37B0344A ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:07:35.0105 0x1154 partmgr - ok
22:07:35.0138 0x1154 [ 4F9A6A8A31413180D0FCB279AD5D8112, DCE48BC6E3447403521BB9FBF727E629DEE45B69B8AE8CFEE1A67FECAE3CB9D3 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
22:07:35.0138 0x1154 Parvdm - ok
22:07:35.0216 0x1154 [ C6276AD11F4BB49B58AA1ED88537F14A, 409E956AF994640DF8D062E5E41F87A6EE7EEE0335C191B582722A49322357CE ] PcaSvc C:\Windows\System32\pcasvc.dll
22:07:35.0216 0x1154 PcaSvc - ok
22:07:35.0356 0x1154 [ 941DC1D19E7E8620F40BBC206981EFDB, 156142A8B587131D2D47074CBFD0A31F69B3C27A8C74C8C4F29DFE7B53BBA802 ] pci C:\Windows\system32\drivers\pci.sys
22:07:35.0372 0x1154 pci - ok
22:07:35.0403 0x1154 [ 1636D43F10416AEB483BC6001097B26C, 36E61A993693A46538FE0F726D67BB28886F61D53384AD600D1282296A27662E ] pciide C:\Windows\system32\drivers\pciide.sys
22:07:35.0403 0x1154 pciide - ok
22:07:35.0465 0x1154 [ E6F3FB1B86AA519E7698AD05E58B04E5, 2C4B45DDD3B980C9DAA6F039CAEFCD6E84A4D5BB43AFBA73C0C42B5556C1303C ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
22:07:35.0481 0x1154 pcmcia - ok
22:07:35.0574 0x1154 [ 40C611622882C3FCAFEB845C1E12A10F, A4F5790D9976D06822A656DCFDFEF76831A00089F6AC5519429142E6CBBC3EAC ] PDFsFilter C:\Windows\system32\DRIVERS\PDFsFilter.sys
22:07:35.0637 0x1154 PDFsFilter - ok
22:07:35.0762 0x1154 [ 6349F6ED9C623B44B52EA3C63C831A92, 9EAA3ABD396870123107D6E1B758F56FDA378BD28B28DB8415AA470D24294F92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:07:35.0871 0x1154 PEAUTH - ok
22:07:35.0949 0x1154 pfc - ok
22:07:36.0105 0x1154 [ B1689DF169143F57053F795390C99DB3, 887B8C76B34CABC68067C0F27CC4EEF02457A53634C96FE5B0FE9B99453BDBEF ] pla C:\Windows\system32\pla.dll
22:07:36.0261 0x1154 pla - ok
22:07:36.0354 0x1154 [ C5E7F8A996EC0A82D508FD9064A5569E, 416A93816CDF12DD42DEA796D37E6E2000D3172AAAB20D3EAD3B715DACD4B61F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:07:36.0370 0x1154 PlugPlay - ok
22:07:36.0604 0x1154 [ CBCEC2C45E7D672EC6E46CBFF23BDF8E, 2E51A0E9A5AE8F017D0AC22D46036FFFAF917CBC6A7C7297B63C1154DFC7FCC6 ] PMBDeviceInfoProvider C:\Program Files\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
22:07:36.0620 0x1154 PMBDeviceInfoProvider - ok
22:07:36.0682 0x1154 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll
22:07:36.0713 0x1154 PNRPAutoReg - ok
22:07:36.0807 0x1154 [ 0C8E8E61AD1EB0B250B846712C917506, 8F23657B90BFFCD7273B93EDA2D3768F35C1C5A313F22AE33452BE3B2A550649 ] PNRPsvc C:\Windows\system32\p2psvc.dll
22:07:36.0838 0x1154 PNRPsvc - ok
22:07:36.0900 0x1154 [ D0494460421A03CD5225CCA0059AA146, FC30E90522C63F2A66D89381705712D2CDF07B2E029DF40C2DEBB2353E763E90 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:07:36.0963 0x1154 PolicyAgent - ok
22:07:37.0010 0x1154 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1, 6E4B188A4BFDBBCA51347BCCE2873F2D0F858398851B9B5129CB9F36A02E4354 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:07:37.0025 0x1154 PptpMiniport - ok
22:07:37.0041 0x1154 [ 2027293619DD0F047C584CF2E7DF4FFD, B7C172CCD08D8A30483D27536355ED1E5009B33629355B426470AFBA8542B394 ] Processor C:\Windows\system32\drivers\processr.sys
22:07:37.0041 0x1154 Processor - ok
22:07:37.0103 0x1154 [ 0508FAA222D28835310B7BFCA7A77346, 3AE2340C6E365F137CC00D9560069501DD2724756EA9EBF7A6CDFFC91B43709C ] ProfSvc C:\Windows\system32\profsvc.dll
22:07:37.0103 0x1154 ProfSvc - ok
22:07:37.0134 0x1154 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] ProtectedStorage C:\Windows\system32\lsass.exe
22:07:37.0134 0x1154 ProtectedStorage - ok
22:07:37.0166 0x1154 [ 99514FAA8DF93D34B5589187DB3AA0BA, 4DDE5EC0C721B22E1D7D55ED3514B60EA07435C232A3A931BB49C7F486B52C18 ] PSched C:\Windows\system32\DRIVERS\pacer.sys
22:07:37.0166 0x1154 PSched - ok
22:07:37.0290 0x1154 [ 153D02480A0A2F45785522E814C634B6, 02B7590F2F4A8FA0B031CDA7A28BD55E7C04A080C1EA810BF3AC3212A62153A6 ] PxHelp20 C:\Windows\system32\Drivers\PxHelp20.sys
22:07:37.0290 0x1154 PxHelp20 - ok
22:07:37.0493 0x1154 [ 0A6DB55AFB7820C99AA1F3A1D270F4F6, 8B7D44A7698B95FE34CBBE4FAB2F01EC1F5BA86C2B19672F99767E650E99BF1C ] ql2300 C:\Windows\system32\drivers\ql2300.sys
22:07:37.0665 0x1154 ql2300 - ok
22:07:37.0743 0x1154 [ 81A7E5C076E59995D54BC1ED3A16E60B, A2988F065F93C41B3B389BFF3BB3FD69F768C2AF249C2356F315CC92E5C9E128 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
22:07:37.0758 0x1154 ql40xx - ok
22:07:37.0805 0x1154 [ E9ECAE663F47E6CB43962D18AB18890F, F1A05320CAED9E745AA36A6DA9B64C48AAEDE888B42B249840CEB31448F7F432 ] QWAVE C:\Windows\system32\qwave.dll
22:07:37.0836 0x1154 QWAVE - ok
22:07:37.0868 0x1154 [ 9F5E0E1926014D17486901C88ECA2DB7, 67CDFB99AB546DCEEF20507EAC07DD52FFB51BFDFE9416ABEDDC1201B60D720E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:07:37.0868 0x1154 QWAVEdrv - ok
22:07:38.0070 0x1154 [ E642B131FB74CAF4BB8A014F31113142, 18A81B27FB2DA556AC51DBA8956203A6E821D75B2B09F11049250E732318F573 ] R300 C:\Windows\system32\DRIVERS\atikmdag.sys
22:07:38.0273 0x1154 R300 - ok
22:07:38.0320 0x1154 [ 147D7F9C556D259924351FEB0DE606C3, E41EBA5F3098C6CF2BE4C0060A5F4BF161C3677D983B7A0D70ACC12FC3CFEFD7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:07:38.0336 0x1154 RasAcd - ok
22:07:38.0382 0x1154 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F, 6A410ABCCD2211EFF511CDBF22E4152B57D2996336EBE711DFF71904AF232DB2 ] RasAuto C:\Windows\System32\rasauto.dll
22:07:38.0382 0x1154 RasAuto - ok
22:07:38.0414 0x1154 [ A214ADBAF4CB47DD2728859EF31F26B0, A24F37F55E2C018B1B4FA2C568A01AAAAEA1220833ED24A93378386174A70A32 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:07:38.0460 0x1154 Rasl2tp - ok
22:07:38.0523 0x1154 [ 75D47445D70CA6F9F894B032FBC64FCF, 9112EA5D25F867136858524C7965ACCEDC02675D1E2985B950598D89CCF25E14 ] RasMan C:\Windows\System32\rasmans.dll
22:07:38.0554 0x1154 RasMan - ok
22:07:38.0601 0x1154 [ 509A98DD18AF4375E1FC40BC175F1DEF, CC7C278CA298CE102D871E34C176E73F903D6687D1E8B5AFAB8772C7DE1A60B1 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:07:38.0601 0x1154 RasPppoe - ok
22:07:38.0648 0x1154 [ 2005F4A1E05FA09389AC85840F0A9E4D, D8A664073FDE82F9AB324347024CDB7043635C84EB11C24C59AB384C52F0FD94 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:07:38.0663 0x1154 RasSstp - ok
22:07:38.0710 0x1154 [ B14C9D5B9ADD2F84F70570BBBFAA7935, 3D533767A50554B86C769DF4D8841B3EA680B3807E85EA3533BDA9B649548269 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:07:38.0741 0x1154 rdbss - ok
22:07:38.0772 0x1154 [ 89E59BE9A564262A3FB6C4F4F1CD9899, 6F948FB0E73495CA60B7B19E758268495EC8A084C475EC59AD7940AA619570BB ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:07:38.0788 0x1154 RDPCDD - ok
22:07:38.0835 0x1154 [ FBC0BACD9C3D7F6956853F64A66E252D, 7672B10C7039295B152C02C96903E869FF2C0A88A2C3FA89BAE9F1D593B43569 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys
22:07:38.0850 0x1154 rdpdr - ok
22:07:38.0882 0x1154 [ 9D91FE5286F748862ECFFA05F8A0710C, 33F37F1B207151A5564BF051BBF16F35D8C5A0F426CCA078A51F125BF09E487B ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:07:38.0882 0x1154 RDPENCDD - ok
22:07:38.0944 0x1154 [ C127EBD5AFAB31524662C48DFCEB773A, 40A6B88FEAFF02D1B5C0CA32F290CF3D9B48B85D248C7532F30CC5C09BAA4D89 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:07:38.0960 0x1154 RDPWD - ok
22:07:39.0069 0x1154 [ BCDD6B4804D06B1F7EBF29E53A57ECE9, 8A961CCD0A0265E03D9952C733B593B02B5CF64E308D6B420276D2D6B20F86FC ] RemoteAccess C:\Windows\System32\mprdim.dll
22:07:39.0069 0x1154 RemoteAccess - ok
22:07:39.0162 0x1154 [ 9E6894EA18DAFF37B63E1005F83AE4AB, 5D6DF994D297C875D547C7B111A571AA90D582DAECADE18A53F65AD988819E67 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:07:39.0178 0x1154 RemoteRegistry - ok
22:07:39.0256 0x1154 [ 355AAC141B214BEF1DBC1483AFD9BD50, EB9AF96E81C1644C0190D269119BE71C63B60D50153C6EA2659B488C4456DBDF ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys
22:07:39.0272 0x1154 rimmptsk - ok
22:07:39.0303 0x1154 [ A4216C71DD4F60B26418CCFD99CD0815, C189953DD7B3AB31167D8746E8F829D222FEF3F8866317814414EF3E0D92B9E1 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys
22:07:39.0303 0x1154 rimsptsk - ok
22:07:39.0350 0x1154 [ D231B577024AA324AF13A42F3A807D10, F63885D67FA40F3640044C79AE8FAA536D307959D2AE9543C4A8F3CE5447CF91 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys
22:07:39.0350 0x1154 rismxdp - ok
22:07:39.0381 0x1154 [ 5123F83CBC4349D065534EEB6BBDC42B, 92A3F38EA924D83D601BB93E3750F9DBC2DD963FB7ACF2A0E776297E21815225 ] RpcLocator C:\Windows\system32\locator.exe
22:07:39.0396 0x1154 RpcLocator - ok
22:07:39.0443 0x1154 [ 2DED90A4E6EF42C81EE8EB765F025109, CF29B8DE38EB409FE9B3CBA0EA1EC24F3BC136CCCD62FAFB8A831750C66C2CBD ] RpcSs C:\Windows\system32\rpcss.dll
22:07:39.0474 0x1154 RpcSs - ok
22:07:39.0584 0x1154 [ 9C508F4074A39E8B4B31D27198146FAD, 84913471E5A6C297B1EDABE45EF3FE7D2C4410EF04370F615109FD9E2690FFDB ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:07:39.0599 0x1154 rspndr - ok
22:07:39.0615 0x1154 [ A3E186B4B935905B829219502557314E, 7F58EAC6C12208D792C77014AC9D37AD1A7B2E73863C914F5DA831A72E1D52BB ] SamSs C:\Windows\system32\lsass.exe
22:07:39.0615 0x1154 SamSs - ok
22:07:39.0724 0x1154 [ 3CE8F073A557E172B330109436984E30, CEC281C6076FAA1E34372CF419C6308E73811316606B8D0D9055B7D8952BDC88 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:07:39.0724 0x1154 sbp2port - ok
22:07:39.0927 0x1154 [ 77B7A11A0C3D78D3386398FBBEA1B632, A3D290AB793BDC2F84C7B963300DFCE81CFE082A0FFF7489E8E5B14714892C00 ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:07:39.0927 0x1154 SCardSvr - ok
22:07:40.0020 0x1154 [ 1A58069DB21D05EB2AB58EE5753EBE8D, EED8111EB613F4C93D1638C74FDB0A6DC6694E1B108DCD0D794B5B5F9B8C6EE4 ] Schedule C:\Windows\system32\schedsvc.dll
22:07:40.0083 0x1154 Schedule - ok
22:07:40.0145 0x1154 [ 312EC3E37A0A1F2006534913E37B4423, 81B8F462336791D162DAFA8092C1F437638DA3022CA24A2458B9FE183FC18C5D ] SCPolicySvc C:\Windows\System32\certprop.dll
22:07:40.0161 0x1154 SCPolicySvc - ok
22:07:40.0208 0x1154 [ 8F36B54688C31EED4580129040C6A3D3, DC150689CBAEEC94B9DE0CA6A633FAD16CDDDC452521232E0C2A44BAE61E08D9 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
22:07:40.0223 0x1154 sdbus - ok
22:07:40.0270 0x1154 [ 716313D9F6B0529D03F726D5AAF6F191, 44FE994A11631C1D99C73026340BACE39973C65A1281D87A61B481C9B5FAB251 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:07:40.0270 0x1154 SDRSVC - ok
22:07:40.0364 0x1154 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:07:40.0364 0x1154 secdrv - ok
22:07:40.0410 0x1154 [ FD5199D4D8A521005E4B5EE7FE00FA9B, 0FB7A1D300C72B1ADC423CC57343C17853E5F8ACFE3EA2C42FAC2FF72E502FBE ] seclogon C:\Windows\system32\seclogon.dll
22:07:40.0410 0x1154 seclogon - ok
22:07:40.0551 0x1154 [ A9BBAB5759771E523F55563D6CBE140F, 415BF6F6A1E4C5F98DABF9C2EEAF8CA49730693046E5F94C7655683717EDAD75 ] SENS C:\Windows\System32\sens.dll
22:07:40.0566 0x1154 SENS - ok
22:07:40.0613 0x1154 [ 68E44E331D46F0FB38F0863A84CD1A31, 0778D85B6869CE2610820DC9724360538BFE832426E898AEBC34E53D2AB4322B ] Serenum C:\Windows\system32\drivers\serenum.sys
22:07:40.0613 0x1154 Serenum - ok
22:07:40.0660 0x1154 [ C70D69A918B178D3C3B06339B40C2E1B, 40BEEECA4C797A3355F4B01C57C2763C33028F27826315062320789A496D0810 ] Serial C:\Windows\system32\drivers\serial.sys
22:07:40.0676 0x1154 Serial - ok
22:07:40.0691 0x1154 [ 8AF3D28A879BF75DB53A0EE7A4289624, C870BEBB969DCD9170E64584D1CD329A193D9FC812A45EF3574891110CA68B45 ] sermouse C:\Windows\system32\drivers\sermouse.sys
22:07:40.0707 0x1154 sermouse - ok
22:07:40.0800 0x1154 [ D2193326F729B163125610DBF3E17D57, 82C894E24E2C139C884246A693AD37BBF0A4E9375B7F7A288EF1DB22F89434B9 ] SessionEnv C:\Windows\system32\sessenv.dll
22:07:40.0816 0x1154 SessionEnv - ok
22:07:40.0847 0x1154 [ 3EFA810BDCA87F6ECC24F9832243FE86, E50FEA94DB9851A46A8A71A8C061AC953A9D5B14585382B3F0FFC84931A0A68F ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
22:07:40.0847 0x1154 sffdisk - ok
22:07:40.0956 0x1154 [ E95D451F7EA3E583AEC75F3B3EE42DC5, B014BE4F9B0C79ECCE2537D1CF4AAD48ACB4C5AD3DACAC4444F0F465B9689921 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:07:40.0972 0x1154 sffp_mmc - ok
22:07:41.0050 0x1154 [ 9F66A46C55D6F1CCABC79BB7AFCCC545, 029115C69315D2298F7FC944A53EF7F120FF74919208EB5ABC190022176D9B16 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
22:07:41.0066 0x1154 sffp_sd - ok
22:07:41.0144 0x1154 [ 46ED8E91793B2E6F848015445A0AC188, 34A97304F23EA153422848F6F1CAF8ADF0944EA781E12F027B6DEAF751A04B5D ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
22:07:41.0206 0x1154 sfloppy - ok
22:07:41.0284 0x1154 [ E1499BD0FF76B1B2FBBF1AF339D91165, 9A8F0403467E75880D3070C4D862489A75134383BAF8E7C45F8C5E7DFB0605A5 ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:07:41.0315 0x1154 SharedAccess - ok
22:07:41.0378 0x1154 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:07:41.0409 0x1154 ShellHWDetection - ok
22:07:41.0456 0x1154 [ 1D76624A09A054F682D746B924E2DBC3, DC903DD466AB8899883253F09477B02E4E93A31C8B279F9F02BD555F1AA083B7 ] sisagp C:\Windows\system32\drivers\sisagp.sys
22:07:41.0471 0x1154 sisagp - ok
22:07:41.0518 0x1154 [ 43CB7AA756C7DB280D01DA9B676CFDE2, 08484CAEA0518C0A4CCCD292D8C803B27FEC453537EE1E4CEE74A7208356A474 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys
22:07:41.0518 0x1154 SiSRaid2 - ok
22:07:41.0565 0x1154 [ A99C6C8B0BAA970D8AA59DDC50B57F94, 97AC9DD6DC4F58AC60E819B999BB157663EE7C1739521D16768AA9AC00DAD012 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
22:07:41.0580 0x1154 SiSRaid4 - ok
22:07:41.0736 0x1154 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
22:07:41.0736 0x1154 SkypeUpdate - ok
22:07:42.0033 0x1154 [ 862BB4CBC05D80C5B45BE430E5EF872F, F4961B22C93E472C8C862421AA231CDDA9E40D3958741A1D666357F22CC3143D ] slsvc C:\Windows\system32\SLsvc.exe
22:07:42.0314 0x1154 slsvc - ok
22:07:42.0423 0x1154 [ 6EDC422215CD78AA8A9CDE6B30ABBD35, D8342BC3152859F4F7512E85ABEC61147DBCAB515458644728874E42F639D6CA ] SLUINotify C:\Windows\system32\SLUINotify.dll
22:07:42.0438 0x1154 SLUINotify - ok
22:07:42.0470 0x1154 [ 7B75299A4D201D6A6533603D6914AB04, 172BE3951F06B1991EF70B71EB91786D1EFC4E381C22BCA3A5F622CD59F3227E ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:07:42.0485 0x1154 Smb - ok
22:07:42.0610 0x1154 [ 2A146A055B4401C16EE62D18B8E2A032, D0930FFA53951C92F56E1ECB41374F4C0AA01ECBF99F474513A21EAD579CFE47 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:07:42.0610 0x1154 SNMPTRAP - ok
22:07:42.0657 0x1154 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF, E03BEE733F4C2A5F39946D4955679A290E22758DFCE4222EE69ABF64FC54EDF7 ] spldr C:\Windows\system32\drivers\spldr.sys
22:07:42.0657 0x1154 spldr - ok
22:07:42.0735 0x1154 [ 8554097E5136C3BF9F69FE578A1B35F4, 2578545CFD647FB18F217B33C8CB4F0184A35F548659494056E455020CC15FB0 ] Spooler C:\Windows\System32\spoolsv.exe
22:07:42.0750 0x1154 Spooler - ok
22:07:42.0813 0x1154 [ 41987F9FC0E61ADF54F581E15029AD91, A46E718648C2DD3B43FC3798932C966315893A59442A0686CE46C605B9E4641E ] srv C:\Windows\system32\DRIVERS\srv.sys
22:07:42.0828 0x1154 srv - ok
22:07:42.0891 0x1154 [ FF33AFF99564B1AA534F58868CBE41EF, EFBB005DA19E5B320009CBF93E686D8BFA6A50A23B5A5001C7C84C7D85EF7D49 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:07:42.0906 0x1154 srv2 - ok
22:07:43.0125 0x1154 [ 7605C0E1D01A08F3ECD743F38B834A44, 83A77E31004BCF83443F30EFC290E04BB1A2F332E8DFD614AB6E25B527C92299 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:07:43.0140 0x1154 srvnet - ok
22:07:43.0281 0x1154 [ D5DFFEAA1E15D4EFFABB9D9A3068AC5B, CBB57877DF2F4D5CCF39D65E863F4C3EC30E6EBBD95132667908BF6E638E27FA ] sscdbus C:\Windows\system32\DRIVERS\sscdbus.sys
22:07:43.0281 0x1154 sscdbus - ok
22:07:43.0421 0x1154 [ 8A1BE0C347814F482F493AEA619D57F6, 868AA830CC581FDB66F065938F8AC69621FD2E1767D5A29BAD1B9DB154C46F4A ] sscdmdfl C:\Windows\system32\DRIVERS\sscdmdfl.sys
22:07:43.0421 0x1154 sscdmdfl - ok
22:07:43.0499 0x1154 [ 5AB0B1987F682A59B15B78F84C6AD7D0, 1A7FD72E82884D16525F36C0394F2F6845FE9F3580D9A01E6066605E5B72AB8D ] sscdmdm C:\Windows\system32\DRIVERS\sscdmdm.sys
22:07:43.0515 0x1154 sscdmdm - ok
22:07:43.0546 0x1154 [ 751E66EB32EFA80633B80F5D7FF0A1D8, 0826F4E707D27F633CB3B0D2B3EE6B8A9FBB6E00A91A26A33D0223CCBFF4799B ] sscdserd C:\Windows\system32\DRIVERS\sscdserd.sys
22:07:43.0546 0x1154 sscdserd - ok
22:07:43.0608 0x1154 [ 03D50B37234967433A5EA5BA72BC0B62, 7B61D6A4BF5D446A9473D058BC207FB6DA7C2FEFB8083F3B66CAC8907DBD8327 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:07:43.0624 0x1154 SSDPSRV - ok
22:07:43.0702 0x1154 [ 6F1A32E7B7B30F004D9A20AFADB14944, AA9D874A14CA4779E76701D2B02F4CCA92CD5917435FB4CACA149FCB2D1D4C4C ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:07:43.0718 0x1154 SstpSvc - ok
22:07:43.0827 0x1154 [ 7E6DD4B34ACD36AF6C711D2BDE91B040, 737C76749FE53A968E558289613A6ED5A0263F9585A47028343284F64808AC67 ] STacSV C:\Windows\system32\STacSV.exe
22:07:43.0827 0x1154 STacSV - ok
22:07:43.0905 0x1154 [ 6A2A5E809C2C0178326D92B19EE4AAD3, B2D78857BDB72A2CB63950558CA3D5105F1857056F52BB8E9D888394CC2D06E9 ] STHDA C:\Windows\system32\drivers\stwrt.sys
22:07:43.0952 0x1154 STHDA - ok
22:07:44.0045 0x1154 [ EF70B3D22B4BFFDA6EA851ECB063EFAA, 1666572F8F988805C3A2E949FA6B060B35B72DBB115B86F4CFC710FB6A86C3E3 ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
22:07:44.0045 0x1154 StillCam - ok
22:07:44.0201 0x1154 [ 5DE7D67E49B88F5F07F3E53C4B92A352, 6930A598C35646646ED0E91633797EFE139AE6CDD0012335BD1340754A22F997 ] stisvc C:\Windows\System32\wiaservc.dll
22:07:44.0248 0x1154 stisvc - ok
22:07:44.0342 0x1154 [ 1D0063597C3666404FCF97698ABEB019, 352A63C97F930499BC598C2A398663377D7CCD4A42770E35635C90EDC4DA530A ] stllssvr C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
22:07:44.0404 0x1154 stllssvr - ok
22:07:44.0435 0x1154 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56, 23CC47FA2D6E183D69DB0D3D3F3081A830D94A58FBC0A9A295B3A56C51E9486A ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:07:44.0466 0x1154 swenum - ok
22:07:44.0529 0x1154 [ F21FD248040681CCA1FB6C9A03AAA93D, 32FE765841A183A1F2C1ACACBBF8CDB11E7D4D4396F9C9F6CFF1B51C9B620ED3 ] swprv C:\Windows\System32\swprv.dll
22:07:44.0560 0x1154 swprv - ok
22:07:44.0607 0x1154 [ 192AA3AC01DF071B541094F251DEED10, 5C6EB56D1C39F3717EB754A1B37C8A618BA4F2107F64048E985D71FA04D1AD05 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys
22:07:44.0607 0x1154 Symc8xx - ok
22:07:44.0654 0x1154 [ 8C8EB8C76736EBAF3B13B633B2E64125, A6C4845DDED81CCF4947612A4D6E42035136025BCD80812D2FF396927CAADEC5 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys
22:07:44.0669 0x1154 Sym_hi - ok
22:07:44.0685 0x1154 [ 8072AF52B5FD103BBBA387A1E49F62CB, D336A7D008D145619E79043EBF5D0D455086BA1FEF89612BC2EA11CC363D82B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys
22:07:44.0685 0x1154 Sym_u3 - ok
22:07:44.0794 0x1154 [ 9A51B04E9886AA4EE90093586B0BA88D, 1666C29FBFA34174B506678C920636519051D03456A6DDCCD6FF708CAE5D9962 ] SysMain C:\Windows\system32\sysmain.dll
22:07:44.0856 0x1154 SysMain - ok
22:07:44.0919 0x1154 [ 2DCA225EAE15F42C0933E998EE0231C3, 67C7913E41854DFA3043426B7D59AA1FBBB9DE01A6E6904E40A696A7C61A5F98 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:07:44.0919 0x1154 TabletInputService - ok
22:07:45.0044 0x1154 [ D7673E4B38CE21EE54C59EEEB65E2483, 330D0AD13F5008D8569CE8E5EA0BBD69F54F59FEB54FD903FA18D2849CEC6AF0 ] TapiSrv C:\Windows\System32\tapisrv.dll
22:07:45.0059 0x1154 TapiSrv - ok
22:07:45.0090 0x1154 [ CB05822CD9CC6C688168E113C603DBE7, 9DB8945BDC702BB13E9DE477F2D3CCA4CE0E9E8CE9B54CE1A25375F2A2C93F0E ] TBS C:\Windows\System32\tbssvc.dll
22:07:45.0106 0x1154 TBS - ok
22:07:45.0200 0x1154 [ 27D470DABC77BC60D0A3B0E4DEB6CB91, BB505F418856D722CC883CB4EEB51A26E9C62EFDF6E4B5BFCCCDEAE43025130C ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:07:45.0278 0x1154 Tcpip - ok
22:07:45.0371 0x1154 [ 27D470DABC77BC60D0A3B0E4DEB6CB91, BB505F418856D722CC883CB4EEB51A26E9C62EFDF6E4B5BFCCCDEAE43025130C ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys
22:07:45.0418 0x1154 Tcpip6 - ok
22:07:45.0574 0x1154 [ 608C345A255D82A6289C2D468EB41FD7, 74ECFDD45DC3EB3AFAEF9C42B546241AA1D6ACB2F6591A76DDB8BB1768545889 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:07:45.0574 0x1154 tcpipreg - ok
22:07:45.0621 0x1154 [ 5DCF5E267BE67A1AE926F2DF77FBCC56, E00C0A03AEE579B51B39930A72F39F4EFFE7CDA37187B0AE90F4E001AD15473B ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:07:45.0621 0x1154 TDPIPE - ok
22:07:45.0668 0x1154 [ 389C63E32B3CEFED425B61ED92D3F021, E4718E290678F00995E754AE66F1027D227BFAB9E1A1D2AC8E4EAD27DC50CB17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:07:45.0683 0x1154 TDTCP - ok
22:07:45.0746 0x1154 [ 76B06EB8A01FC8624D699E7045303E54, EC30F244B48A35622ED3EE91792F6A1517C5A50770FAB3945E7A945EB7AF28A8 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:07:45.0746 0x1154 tdx - ok
22:07:45.0808 0x1154 [ 3CAD38910468EAB9A6479E2F01DB43C7, 9D18C71EDF39743A0A592BC0873909D2B75B5B177B2672A865D1EEC0BFD2F61C ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:07:45.0808 0x1154 TermDD - ok
22:07:45.0902 0x1154 [ BB95DA09BEF6E7A131BFF3BA5032090D, BAF6997F8D944F85F0553957677866C7F22E72AA434BA45FFFB6CC41041070DC ] TermService C:\Windows\System32\termsrv.dll
22:07:45.0980 0x1154 TermService - ok
22:07:46.0058 0x1154 [ C7230FBEE14437716701C15BE02C27B8, 8221DE73D77CF71C2857D78829E807D015D9CB8BDEE4BAFD6950BF0C718CC774 ] Themes C:\Windows\system32\shsvcs.dll
22:07:46.0073 0x1154 Themes - ok
22:07:46.0089 0x1154 [ 1076FFCFFAAE8385FD62DFCB25AC4708, 8C5C106FCB018E019DEBA8E1A6AA170CD7A93293F27994F724EBC486238DA0AA ] THREADORDER C:\Windows\system32\mmcss.dll
22:07:46.0104 0x1154 THREADORDER - ok
22:07:46.0136 0x1154 [ EC74E77D0EB004BD3A809B5F8FB8C2CE, 1E4BBC58D0E35D79C764CF1BA73602C5E29A5A2393D40332801D533E445C6667 ] TrkWks C:\Windows\System32\trkwks.dll
22:07:46.0151 0x1154 TrkWks - ok
22:07:46.0307 0x1154 [ 97D9D6A04E3AD9B6C626B9931DB78DBA, 8E42133ED5EE5EEC414A8B11C1035385C6141E445EA9677F947D20768F25A877 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:07:46.0307 0x1154 TrustedInstaller - ok
22:07:46.0354 0x1154 [ DCF0F056A2E4F52287264F5AB29CF206, D9F770BD65AE4320A8C130DEA1D093AA4E37FCA573BBE6A59D6D045452EA711D ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:07:46.0354 0x1154 tssecsrv - ok
22:07:46.0416 0x1154 [ CAECC0120AC49E3D2F758B9169872D38, 80DB15ADF5F4FF78D0C7D5081B6C0E8F1E5125872B60D23C19DA8E62C9DAC9A8 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys
22:07:46.0432 0x1154 tunmp - ok
22:07:46.0494 0x1154 [ 300DB877AC094FEAB0BE7688C3454A9C, 3B36AA191FBE25B1A61150EAA2BDF8BA286DC4C052F6E98B0ED8202135553D8C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:07:46.0510 0x1154 tunnel - ok
22:07:46.0541 0x1154 [ 7D33C4DB2CE363C8518D2DFCF533941F, C6A539AD31B0BD9F895E0A537783AA75D5760C8590D83BA832D59A9B090CA0E9 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
22:07:46.0541 0x1154 uagp35 - ok
22:07:46.0572 0x1154 [ D9728AF68C4C7693CB100B8441CBDEC6, A2CEE1EE4EF17106349F4E6967F504354801934179FBB3F10B9A4E3C30BC28CE ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:07:46.0635 0x1154 udfs - ok
22:07:46.0713 0x1154 [ ECEF404F62863755951E09C802C94AD5, 5D92062B3E371F196774EBFE840C78501E55A244DB2A49703C7AC0141C7DABF1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:07:46.0713 0x1154 UI0Detect - ok
22:07:46.0822 0x1154 [ B0ACFDC9E4AF279E9116C03E014B2B27, 455D30859E381361FF6EE8B01EDC22A2E66CD5EC22CA9F314E88009DB77A8BAF ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:07:46.0822 0x1154 uliagpkx - ok
22:07:46.0869 0x1154 [ 9224BB254F591DE4CA8D572A5F0D635C, C5E7B24587AC5A28ECA63300307AD95B8A846833340126AE378840A40E53C056 ] uliahci C:\Windows\system32\drivers\uliahci.sys
22:07:46.0947 0x1154 uliahci - ok
22:07:46.0994 0x1154 [ 8514D0E5CD0534467C5FC61BE94A569F, A6EFB967044F88335469DB3351587E31CEC659BB6A7D8ED45C68329232C31BB9 ] UlSata C:\Windows\system32\drivers\ulsata.sys
22:07:47.0009 0x1154 UlSata - ok
22:07:47.0040 0x1154 [ 38C3C6E62B157A6BC46594FADA45C62B, 44F87DC955CB4E35E0EB4C8B4E931472B33D97FE000C22370A06AD5EDCEFD0BA ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys
22:07:47.0056 0x1154 ulsata2 - ok
22:07:47.0103 0x1154 [ 32CFF9F809AE9AED85464492BF3E32D2, 91AAA47AEF17F373276B01AC8FA823592A0C854541A7A9A3B78F2350DB964EBC ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:07:47.0103 0x1154 umbus - ok
22:07:47.0196 0x1154 [ 68308183F4AE0BE7BF8ECD07CB297999, 4444233CA3C42BEE50ED47553D4AE5A7C12D8F288D2FA4B2DAE1D9B9FEC1A72D ] upnphost C:\Windows\System32\upnphost.dll
22:07:47.0212 0x1154 upnphost - ok
22:07:47.0337 0x1154 [ 6E421CCC57059B0186C6259CA3B6DFC9, E348BF23CCD6C14FD10C1689BBDC77E125245331F97BFE60D4C8FD9A8711CB59 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
22:07:47.0399 0x1154 USBAAPL - ok
22:07:47.0462 0x1154 [ CAF811AE4C147FFCD5B51750C7F09142, BD670CF88D8F932AD1C6BA91FB68A7204BC473657C6A057C92AFB84D164D393C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:07:47.0462 0x1154 usbccgp - ok
22:07:47.0586 0x1154 [ E9476E6C486E76BC4898074768FB7131, D14B8F69A511DC1F990A9C123C18689AFE59659BA8130D248D8D03E9BD2143B6 ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:07:47.0618 0x1154 usbcir - ok
22:07:47.0696 0x1154 [ 79E96C23A97CE7B8F14D310DA2DB0C9B, EB441D3B93965CD927E0C181031AD1082F59F9885BF35CABFDCA08C6C76B0DAF ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
22:07:47.0711 0x1154 usbehci - ok
22:07:47.0742 0x1154 [ 4673BBCB006AF60E7ABDDBE7A130BA42, 0B7DED0D887A3530AA5497FDBCB69389486FB9E2B6FAE3163E33713256D575BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:07:47.0774 0x1154 usbhub - ok
22:07:47.0820 0x1154 [ 38DBC7DD6CC5A72011F187425384388B, 456CFCD190035C3033709C8DC0F6DC4352BBF751D57C0C52DD04F8C301FEBACD ] usbohci C:\Windows\system32\drivers\usbohci.sys
22:07:47.0820 0x1154 usbohci - ok
22:07:47.0867 0x1154 [ E75C4B5269091D15A2E7DC0B6D35F2F5, B0A4141B69B66276890836DE98EB8BC790D35CE59FA503060593E8CC12AA106B ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
22:07:47.0883 0x1154 usbprint - ok
22:07:47.0945 0x1154 [ BE3DA31C191BC222D9AD503C5224F2AD, 201FB0FDBF423342202686DC0D8A3221B7798AE04C04A649D3441C257C733CE8 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:07:47.0945 0x1154 USBSTOR - ok
22:07:48.0054 0x1154 [ 814D653EFC4D48BE3B04A307ECEFF56F, D73D62F51AEFE2F8F2B938B20107C246F2AC2F62ED49112DBD092A5D2E4024B3 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
22:07:48.0054 0x1154 usbuhci - ok
22:07:48.0132 0x1154 [ 1509E705F3AC1D474C92454A5C2DD81F, 7F525921A3513224F8B093A16E19B4235B300349A14B0B86EE11B7473BA53337 ] UxSms C:\Windows\System32\uxsms.dll
22:07:48.0148 0x1154 UxSms - ok
22:07:48.0242 0x1154 [ CD88D1B7776DC17A119049742EC07EB4, 6B68B9EDB8C6BCB2644F1F004D5743E928509D12107D996F390A24A72E0AA528 ] vds C:\Windows\System32\vds.exe
22:07:48.0320 0x1154 vds - ok
22:07:48.0413 0x1154 [ 87B06E1F30B749A114F74622D013F8D4, 06C06EF87F7DC668D23B50AA5F419F62474ACF90E325E167491BF290286D6594 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:07:48.0413 0x1154 vga - ok
22:07:48.0491 0x1154 [ 2E93AC0A1D8C79D019DB6C51F036636C, 8B6F3B4EE90691A22788915AD0F99D8EE617750430A34E7CEB9AB4FB4E581755 ] VgaSave C:\Windows\System32\drivers\vga.sys
22:07:48.0491 0x1154 VgaSave - ok
22:07:48.0538 0x1154 [ 5D7159DEF58A800D5781BA3A879627BC, 499A8E51FDE61AE0D7C1812D1E5B331211A36BD095A4992C629B93DE6D80F4E6 ] viaagp C:\Windows\system32\drivers\viaagp.sys
22:07:48.0538 0x1154 viaagp - ok
22:07:48.0585 0x1154 [ C4F3A691B5BAD343E6249BD8C2D45DEE, 19DE07AD6CD51036FA8A6B8EE82F34D7F5264FF3A12CBE6E52BD036D0303E319 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
22:07:48.0585 0x1154 ViaC7 - ok
22:07:48.0632 0x1154 [ AADF5587A4063F52C2C3FED7887426FC, 0A74791A236FDAFCD045CFB79A159245B94F7C2033E0CD830C1B76F0F994E06D ] viaide C:\Windows\system32\drivers\viaide.sys
22:07:48.0632 0x1154 viaide - ok
22:07:48.0647 0x1154 [ 69503668AC66C77C6CD7AF86FBDF8C43, 2CE407674A58313737073F02B9A617460BBA84B36C3A16D98AE5ED45279F5006 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:07:48.0647 0x1154 volmgr - ok
22:07:48.0725 0x1154 [ 23E41B834759917BFD6B9A0D625D0C28, 9F60992805262F936E8DA33610FDF60A191ECAFC08BBF657C8F9A21833C8EFC5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:07:48.0741 0x1154 volmgrx - ok
22:07:48.0803 0x1154 [ 147281C01FCB1DF9252DE2A10D5E7093, DF5DCF6FD472F21863DC10B62F7647420B9686607857D08286B618D585E50219 ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:07:48.0834 0x1154 volsnap - ok
22:07:48.0897 0x1154 [ 587253E09325E6BF226B299774B728A9, C9F46197819C2A095456393C518A9B00B59ECDC54F464D038AA7F8DCCDB93CCF ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
22:07:48.0897 0x1154 vsmraid - ok
22:07:49.0006 0x1154 [ DB3D19F850C6EB32BDCB9BC0836ACDDB, D81FF1CDA87A2FE83EFD5B3FE01EFF940952F8BAEE70BEA3B2F6EF30E2121704 ] VSS C:\Windows\system32\vssvc.exe
22:07:49.0100 0x1154 VSS - ok
22:07:49.0209 0x1154 [ 96EA68B9EB310A69C25EBB0282B2B9DE, C76D3427F8A2953CB4D96BBA1523679CBE1BBF7FA821A35D2FBEB3E67AC6A10B ] W32Time C:\Windows\system32\w32time.dll
22:07:49.0240 0x1154 W32Time - ok
22:07:49.0302 0x1154 [ 48DFEE8F1AF7C8235D4E626F0C4FE031, A41D05BC0DA3C476C32E0A4DAF015DF7BADF28A03CE236D5596885FF1772F148 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
22:07:49.0302 0x1154 WacomPen - ok
22:07:49.0334 0x1154 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
22:07:49.0349 0x1154 Wanarp - ok
22:07:49.0349 0x1154 [ 55201897378CCA7AF8B5EFD874374A26, 350ADDCEFAA33E301027CFEA8DDE703F6FBD6E53624598CB2E7B671B9E48F7CC ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:07:49.0365 0x1154 Wanarpv6 - ok
22:07:49.0427 0x1154 [ A3CD60FD826381B49F03832590E069AF, 213C5DB5E5D828264286FD7548527566D6160CCA780BC6853B7B28CECF329674 ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:07:49.0490 0x1154 wcncsvc - ok
22:07:49.0568 0x1154 [ 11BCB7AFCDD7AADACB5746F544D3A9C7, 0370E20FD12ED713F94E5CD76F068F7A7A5E7F42416DD2A8A41249020DA7DA31 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:07:49.0568 0x1154 WcsPlugInService - ok
22:07:49.0614 0x1154 [ 78FE9542363F297B18C027B2D7E7C07F, 6BC3ED2A48EF41E1EE597FD58271DB12256EC013518663331CD0FBCB3FC415EE ] Wd C:\Windows\system32\drivers\wd.sys
22:07:49.0630 0x1154 Wd - ok
22:07:49.0677 0x1154 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96, 6A6EFFDB538DE1E201058A00F3E056F1256E92EED943FBFBCE28E54BE751E33D ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:07:49.0739 0x1154 Wdf01000 - ok
22:07:49.0817 0x1154 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:07:49.0833 0x1154 WdiServiceHost - ok
22:07:49.0848 0x1154 [ ABFC76B48BB6C96E3338D8943C5D93B5, B5B22D445724D58641A53276063A4AA2A98F07B93865C86E94661EB31BD63511 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:07:49.0864 0x1154 WdiSystemHost - ok
22:07:49.0926 0x1154 [ 04C37D8107320312FBAE09926103D5E2, 1C6726A9871CBACB240AFA93E57781515F01758D43693DDA395EA683D97234F0 ] WebClient C:\Windows\System32\webclnt.dll
22:07:49.0942 0x1154 WebClient - ok
22:07:50.0004 0x1154 [ AE3736E7E8892241C23E4EBBB7453B60, 0F998116CC07CD719CB237EAE53BB16B2EDD6973828B9C1055EB981AEA0453D1 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:07:50.0036 0x1154 Wecsvc - ok
22:07:50.0067 0x1154 [ 670FF720071ED741206D69BD995EA453, 4B96F5E3545F69AE9EBC75DC4AB27B87306D656EE526AE39E7EC7E2B6F83F7FD ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:07:50.0067 0x1154 wercplsupport - ok
22:07:50.0145 0x1154 [ 32B88481D3B326DA6DEB07B1D03481E7, 821FBAF147E525ED15EB9391B16A96C6D5464841258B11F277EFB57A3BD50E37 ] WerSvc C:\Windows\System32\WerSvc.dll
22:07:50.0160 0x1154 WerSvc - ok
22:07:50.0254 0x1154 [ 72CC6A8CA7891031D6380DB5025C773C, 33D5021C3A2FE8E9F6E2C22F4777E1D82A6B3998EB857B618A3C8838D3C8B03E ] winachsf C:\Windows\system32\DRIVERS\HSX_CNXT.sys
22:07:50.0316 0x1154 winachsf - ok
22:07:50.0458 0x1154 [ 4575AA12561C5648483403541D0D7F2B, 2DBB7904285F16E879E1662C4CC4DFAA420D5EB24DDFC4BAC0B7616F5F44649A ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:07:50.0489 0x1154 WinDefend - ok
22:07:50.0505 0x1154 WinHttpAutoProxySvc - ok
22:07:50.0629 0x1154 [ 6B2A1D0E80110E3D04E6863C6E62FD8A, EE8BC7C378993EFE90273764C83119EBF331768CD7B24DE949233C74A51306C2 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:07:50.0629 0x1154 Winmgmt - ok
22:07:50.0754 0x1154 [ 7CFE68BDC065E55AA5E8421607037511, C2CE76D52AD4E31FC4216E94457DC16ABF65A5F3E883F0BD97AD387FB7574533 ] WinRM C:\Windows\system32\WsmSvc.dll
22:07:50.0848 0x1154 WinRM - ok
22:07:50.0988 0x1154 [ C008405E4FEEB069E30DA1D823910234, C392A7B5FEACB7D11A3A231C1AD65D533984E6E7429ECD3BFBF90A27E8DEB157 ] Wlansvc C:\Windows\System32\wlansvc.dll
22:07:51.0066 0x1154 Wlansvc - ok
22:07:51.0316 0x1154 [ 5144AE67D60EC653F97DDF3FEED29E77, F6238767284B2356A9F502E2ACCFAAC283FA13CBF238E98B5115A55179526B10 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:07:51.0535 0x1154 wlidsvc - ok
22:07:51.0660 0x1154 [ 94A85E956A065E23E0010A6A7826243B, F70A8301D071667718F04A9F261946ED8D64EE1B08055C518186252198F8F3F1 ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
22:07:51.0691 0x1154 WLSetupSvc - ok
22:07:51.0691 0x1154 wltrysvc - ok
22:07:51.0754 0x1154 [ 2E7255D172DF0B8283CDFB7B433B864E, 60C786CF0EA4A29B309B9457F0496D5A0AF1F093FC2C5D88078865814B7DBBA3 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
22:07:51.0754 0x1154 WmiAcpi - ok
22:07:51.0925 0x1154 [ 43BE3875207DCB62A85C8C49970B66CC, 27169F2E8A30807794407DA8F80611E4287F940AAE2A1F00F547901872FB9703 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:07:51.0941 0x1154 wmiApSrv - ok
22:07:52.0175 0x1154 [ 3978704576A121A9204F8CC49A301A9B, 936CC13B90A183613BDA4081556C96D48CA415B5F65D61E18CB5F2E51EEBE59F ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:07:52.0268 0x1154 WMPNetworkSvc - ok
22:07:52.0362 0x1154 [ CFC5A04558F5070CEE3E3A7809F3FF52, 45899E04000E21C4E009BE8B6149F199A5B2E0512C657A525770BF9DBFED7D2B ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:07:52.0378 0x1154 WPCSvc - ok
22:07:52.0487 0x1154 [ 801FBDB89D472B3C467EB112A0FC9246, C24053FA12732089384D3AF06C676FF201D282FC5AD56A42B6EE8BAED4379CB2 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:07:52.0502 0x1154 WPDBusEnum - ok
22:07:52.0658 0x1154 [ DE9D36F91A4DF3D911626643DEBF11EA, 8029ECE76E29276BFB6ED3387AC560A9A779AAF683A4416E96334FAF7BDBADA0 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys
22:07:52.0690 0x1154 WpdUsb - ok
22:07:52.0814 0x1154 [ F8D3544ACBCE9110362119F7C10D848E, 31C49201A931751A36286874AC0B929D886F490D7CE48CCC9283850A56AD9FD9 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
22:07:52.0892 0x1154 WPFFontCache_v0400 - ok
22:07:52.0955 0x1154 [ E3A3CB253C0EC2494D4A61F5E43A389C, 10BA8B102E31B961819E524FCA5FA817B588EC77FB26B4E176D0A5CFF11EDF79 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:07:52.0955 0x1154 ws2ifsl - ok
22:07:53.0033 0x1154 [ 1CA6C40261DDC0425987980D0CD2AAAB, 727C1E3A170316641F832A8D197EDA6D6EE1206E4ED7B741E5A4017B7F2F7B88 ] wscsvc C:\Windows\System32\wscsvc.dll
22:07:53.0033 0x1154 wscsvc - ok
22:07:53.0048 0x1154 WSearch - ok
22:07:53.0267 0x1154 [ FC3EC24FCE372C89423E015A2AC1A31E, 8D028182CF83667D3E4D148979972D208FA6D9B8540EE47A0A7831B770ECD257 ] wuauserv C:\Windows\system32\wuaueng.dll
22:07:53.0423 0x1154 wuauserv - ok
22:07:53.0516 0x1154 [ AC13CB789D93412106B0FB6C7EB2BCB6, 8F5B0BD0CBBAB182A400F8994D4727BC0C978D749B6429A2D41B412AE97428B6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:07:53.0516 0x1154 WUDFRd - ok
22:07:53.0563 0x1154 [ 575A4190D989F64732119E4114045A4F, 373C344B106AFDB1E6125A21DFE28CA6CFC77FA87FE904656A4F209DB2ED69C7 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:07:53.0563 0x1154 wudfsvc - ok
22:07:53.0626 0x1154 [ DAB33CFA9DD24251AAA389FF36B64D4B, 1C5D7C3D6C3552BDD52EB7E76031746D7DAAF64CA2432CC23329DA72BE7252D0 ] XAudio C:\Windows\system32\DRIVERS\xaudio.sys
22:07:53.0641 0x1154 XAudio - ok
22:07:53.0719 0x1154 [ CD5F291A1161F15896D1A4D63DAFF5DF, 4F30DC454F255249431FCD14DE17858A79A088A4084F2CEDD0CF25382D427285 ] XAudioService C:\Windows\system32\DRIVERS\xaudio.exe
22:07:53.0766 0x1154 XAudioService - ok
22:07:53.0891 0x1154 [ 04E268ADFC81964C49DC0C082D520F7E, 7D2574E366636AB1D59A08FE3038268095D627C39636C6ED6BCE1D5ACB44A179 ] yukonwlh C:\Windows\system32\DRIVERS\yk60x86.sys
22:07:53.0906 0x1154 yukonwlh - ok
22:07:53.0953 0x1154 ================ Scan global ===============================
22:07:54.0000 0x1154 [ F31EEBC1A1C81FD04005489CC3DCDFE7, 098C35ACFCCE1686C5A6DB6057001CBF8B06A863A0802CB2E9D793F4795F8CEE ] C:\Windows\system32\basesrv.dll
22:07:54.0094 0x1154 [ D2293B069E4B63DC17B2F08D45E71124, 615305E8B854CFAAC70378B29014517FEBDA6BB90BDC2E455B5127CD7B0AEAB3 ] C:\Windows\system32\winsrv.dll
22:07:54.0156 0x1154 [ D2293B069E4B63DC17B2F08D45E71124, 615305E8B854CFAAC70378B29014517FEBDA6BB90BDC2E455B5127CD7B0AEAB3 ] C:\Windows\system32\winsrv.dll
22:07:54.0437 0x1154 [ D4E6D91C1349B7BFB3599A6ADA56851B, 8748091BF27F05D28D45688E04DD9229A4B2E159209A64F457703F66A8CECE4D ] C:\Windows\system32\services.exe
22:07:54.0499 0x1154 [ Global ] - ok
22:07:54.0499 0x1154 ================ Scan MBR ==================================
22:07:54.0530 0x1154 [ CDB4DE4BBD714F152979DA2DCBEF57EB ] \Device\Harddisk0\DR0
22:07:55.0092 0x1154 \Device\Harddisk0\DR0 - ok
22:07:55.0108 0x1154 ================ Scan VBR ==================================
22:07:55.0170 0x1154 [ 1C87BB41B794AA77B498067DE1159056 ] \Device\Harddisk0\DR0\Partition1
22:07:55.0201 0x1154 \Device\Harddisk0\DR0\Partition1 - ok
22:07:55.0264 0x1154 [ F805FA144E726CEAA4CF9A250587B283 ] \Device\Harddisk0\DR0\Partition2
22:07:55.0357 0x1154 \Device\Harddisk0\DR0\Partition2 - ok
22:07:55.0357 0x1154 Waiting for KSN requests completion. In queue: 385
22:07:56.0371 0x1154 Waiting for KSN requests completion. In queue: 385
22:07:57.0385 0x1154 Waiting for KSN requests completion. In queue: 385
22:07:58.0399 0x1154 Waiting for KSN requests completion. In queue: 385
22:07:59.0413 0x1154 Waiting for KSN requests completion. In queue: 385
22:08:00.0568 0x1154 AV detected via SS2: AVG AntiVirus Free Edition 2014, C:\Program Files\AVG\AVG2014\avgwsc.exe ( 14.0.0.4110 ), 0x41000 ( enabled : updated )
22:08:00.0630 0x1154 AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.5.216.0 ), 0x61000 ( enabled : updated )
22:08:00.0739 0x1154 Win FW state via NFP2: enabled
22:08:03.0313 0x1154 ============================================================
22:08:03.0313 0x1154 Scan finished
22:08:03.0313 0x1154 ============================================================
22:08:03.0329 0x10ec Detected object count: 0
22:08:03.0329 0x10ec Actual detected object count: 0



Here is the text from the mbam-log:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.03.31.01

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.19328
Anthony :: FREEDOM [administrator]

3/30/2014 10:29:57 PM
mbam-log-2014-03-30 (22-29-57).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 241961
Time elapsed: 29 minute(s), 35 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

#8 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:39 AM

Posted 31 March 2014 - 12:05 PM

Ok, good. How is it running now?

Install Adobe Reader XI
Note UN check the Optional offers
 

Optional offer:


Yes, install Google Chrome as my default browser and Google Toolbar for Internet Explorer.

google_banner_225x66.png

Learn more | Install Options
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#9 CantTakeItAnyMore

CantTakeItAnyMore
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 31 March 2014 - 08:44 PM

It is running much faster and has not re-booted(on it's own) in 2 days. I was seriously ready to through it in the first wood chipper I saw.  Now I won't be bying a new computer for a while longer.    

 

Thank you!!!



#10 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:39 AM

Posted 31 March 2014 - 09:04 PM

You're welcome,that's good to hear.

Clean up

Create a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been backed up, renamed and saved in System Restore. Since this is a protected directory your tools cannot access to delete these files, they sometimes can re-infect your system if you accidentally use an old restore point. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state. The easiest and safest way to do this is:
  • Go to Start > Programs > Accessories > System Tools and click "System Restore".
  • Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name, then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.
  • Then use Disk Cleanup
  • to remove all but the most recently created Restore Point.
  • Go to Start > Run and type: Cleanmgr
  • Click "Ok". Disk Cleanup will scan your files for several minutes, then open.
  • Click the "More Options" tab, then click the "Clean up" button under System Restore.
  • Click Ok. You will be prompted with "Are you sure you want to delete all but the most recent restore point?"
  • Click Yes, then click Ok.
  • Click Yes again when prompted with "Are you sure you want to perform these actions?"
  • Disk Cleanup will remove the files and close automatically. Vista and Windows 7 users can refer to these links:
  • Create a New Restore Point in Vista
  • Create a New Restore Point in Windows 7 (alternate method)
  • Disk Cleanup in Vista
  • Disk Cleanup in Windows 7
  • ◾Reboot and see how it is.
Have a Great day!
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#11 CantTakeItAnyMore

CantTakeItAnyMore
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:39 AM

Posted 06 April 2014 - 07:48 PM

Just wanted to say,

 

Thank You!

 

The computer has not re-booted itself once in the last week.

 

 

 



#12 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:05:39 AM

Posted 07 April 2014 - 02:13 PM

You're most welcome!!
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users