Advertisement

There's no such thing as a stupid question, but they're the easiest to answer.
Login
Search

Advertisement

Virus & Other Malware Removal Virus & Other Malware Removal
Search Search
Search for:
Tech Support Guy > > >

Solved: Google link redirect virus


(!)

Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
01-Sep-2012, 11:36 AM #16
Yea it's still happening.

2:

RogueKiller V8.0.1 [08/30/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.geekstogo.com/forum/files...3-roguekiller/
Blog: http://tigzyrk.blogspot.com

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Normal mode
User : Andrew [Admin rights]
Mode : Scan -- Date : 08/31/2012 05:56:49

Bad processes : 0

Registry Entries : 3
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> FOUND
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

Particular Files / Folders:
[ZeroAccess][FILE] @ : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\@ --> FOUND
[ZeroAccess][FOLDER] U : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\U --> FOUND
[ZeroAccess][FOLDER] L : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\L --> FOUND

Driver : [LOADED]

Infection : ZeroAccess

HOSTS File:
--> C:\Windows\system32\drivers\etc\hosts



MBR Check:

+++++ PhysicalDrive0: WDC WD50 00AAKS-00YGA SCSI Disk Device +++++
--- User ---
[MBR] 1c72c8b0a2a06ced7a53cde038a4291f
[BSP] b80042458062b4ee652d5f354179560e : Windows 7 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476929 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt



3:

RogueKiller V8.0.1 [08/30/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.geekstogo.com/forum/files...3-roguekiller/
Blog: http://tigzyrk.blogspot.com

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Normal mode
User : Andrew [Admin rights]
Mode : Remove -- Date : 08/31/2012 05:58:32

Bad processes : 0

Registry Entries : 3
[HJ SMENU] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> REPLACED (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

Particular Files / Folders:
[ZeroAccess][FILE] @ : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\@ --> REMOVED
[ZeroAccess][FOLDER] ROOT : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\U --> REMOVED
[ZeroAccess][FOLDER] ROOT : C:\Users\Andrew\AppData\Local\{81cf4dfc-ead3-1638-5a8c-e9c5768bbef5}\L --> REMOVED

Driver : [LOADED]

Infection : ZeroAccess

HOSTS File:
--> C:\Windows\system32\drivers\etc\hosts



MBR Check:

+++++ PhysicalDrive0: WDC WD50 00AAKS-00YGA SCSI Disk Device +++++
--- User ---
[MBR] 1c72c8b0a2a06ced7a53cde038a4291f
[BSP] b80042458062b4ee652d5f354179560e : Windows 7 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476929 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt



4:

RogueKiller V8.0.2 [08/31/2012] by Tigzy
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.geekstogo.com/forum/files...3-roguekiller/
Blog: http://tigzyrk.blogspot.com

Operating System: Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Normal mode
User : Andrew [Admin rights]
Mode : Scan -- Date : 08/31/2012 20:47:47

Bad processes : 0

Registry Entries : 0

Particular Files / Folders:

Driver : [LOADED]

Infection :

HOSTS File:
--> C:\Windows\system32\drivers\etc\hosts



MBR Check:

+++++ PhysicalDrive0: WDC WD50 00AAKS-00YGA SCSI Disk Device +++++
--- User ---
[MBR] 1c72c8b0a2a06ced7a53cde038a4291f
[BSP] b80042458062b4ee652d5f354179560e : Windows 7 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 476929 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Finished : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
01-Sep-2012, 11:59 AM #17
Please follow these instructions and post the log:

Please follow the instructions exactly as written, deviating from the instructions and trying to fix anything before I have seen the logs may make your PC unbootable. If TDSSKiller does not offer the Cure option DO NOT select delete as you may remove files needed for the system to operate.
Please download Kaspersky's TDSSKiller and save it to your Desktop. <-Important!
-- The tool is frequently updated...if you used TDSSKiller before, delete that version and download the most current one before using again.
Be sure to print out and follow the instructions for performing a scan.
  • Extract (unzip) the file to your desktop and make sure TDSSKiller.exe (the contents of the zipped file) is on the Desktop itself, not within a folder on the Desktop.
  • Alternatively, you can download TDSSKiller.exe and use that instead.
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If an update is available, TDSSKiller will prompt you to update and download the most current version. Click Load Update. Close TDSSKiller and start again.
  • When the program opens, click the Change parameters.

  • Under "Additional options", check the boxes next to Verify file digital signatures and Detect TDLFS file system, then click OK.

  • Click the Start Scan button.

  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If 'Suspicious objects' are detected, the default action will be Skip. Leave the default set to Skip and click on Continue.
  • If Malicious objects are detected, they will show in the Scan results - Select action for found objects and offer three options.

  • Ensure Cure is selected...then click Continue -> Reboot computer for cure completion.

  • Important! -> If Cure is not available, please choose Skip instead. Do not choose Delete unless instructed. If you choose Delete you may remove critical system files and make your PC unstable or possibly unbootable.
  • A log file named TDSSKiller_version_date_time_log.txt will be created and saved to the root directory (usually Local Disk C: ).
  • Copy and paste the contents of that file in your next reply.
-- If TDSSKiller does not run, try renaming it. To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to these instructions. In some cases it may be necessary to redownload TDSSKiller and randomly rename it to something else before beginning the download and saving to the computer or to perform the scan in "safe mode".
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
01-Sep-2012, 02:27 PM #18
It didn't find anything, here's the log:

14:24:21.0757 4128 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
14:24:22.0012 4128 ============================================================
14:24:22.0012 4128 Current date / time: 2012/09/01 14:24:22.0012
14:24:22.0012 4128 SystemInfo:
14:24:22.0012 4128
14:24:22.0012 4128 OS Version: 6.1.7601 ServicePack: 1.0
14:24:22.0012 4128 Product type: Workstation
14:24:22.0013 4128 ComputerName: ANDREW-PC
14:24:22.0013 4128 UserName: Andrew
14:24:22.0013 4128 Windows directory: C:\Windows
14:24:22.0013 4128 System windows directory: C:\Windows
14:24:22.0013 4128 Processor architecture: Intel x86
14:24:22.0013 4128 Number of processors: 2
14:24:22.0013 4128 Page size: 0x1000
14:24:22.0013 4128 Boot type: Normal boot
14:24:22.0013 4128 ============================================================
14:24:23.0242 4128 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
14:24:23.0262 4128 ============================================================
14:24:23.0262 4128 \Device\Harddisk0\DR0:
14:24:23.0262 4128 MBR partitions:
14:24:23.0262 4128 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41
14:24:23.0262 4128 ============================================================
14:24:23.0287 4128 C: <-> \Device\Harddisk0\DR0\Partition1
14:24:23.0287 4128 ============================================================
14:24:23.0287 4128 Initialize success
14:24:23.0287 4128 ============================================================
14:25:08.0286 2948 ============================================================
14:25:08.0286 2948 Scan started
14:25:08.0286 2948 Mode: Manual; SigCheck; TDLFS;
14:25:08.0286 2948 ============================================================
14:25:08.0799 2948 ================ Scan system memory ========================
14:25:08.0799 2948 System memory - ok
14:25:08.0799 2948 ================ Scan services =============================
14:25:09.0256 2948 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:25:09.0304 2948 1394ohci - ok
14:25:09.0334 2948 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:25:09.0348 2948 ACPI - ok
14:25:09.0367 2948 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:25:09.0393 2948 AcpiPmi - ok
14:25:09.0552 2948 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
14:25:09.0561 2948 AdobeARMservice - ok
14:25:09.0596 2948 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
14:25:09.0614 2948 adp94xx - ok
14:25:09.0653 2948 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
14:25:09.0667 2948 adpahci - ok
14:25:09.0702 2948 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
14:25:09.0714 2948 adpu320 - ok
14:25:09.0749 2948 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:25:09.0786 2948 AeLookupSvc - ok
14:25:09.0836 2948 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
14:25:09.0851 2948 AFD - ok
14:25:09.0875 2948 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
14:25:09.0885 2948 agp440 - ok
14:25:09.0926 2948 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
14:25:09.0937 2948 aic78xx - ok
14:25:09.0968 2948 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
14:25:09.0995 2948 ALG - ok
14:25:10.0011 2948 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
14:25:10.0021 2948 aliide - ok
14:25:10.0038 2948 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
14:25:10.0050 2948 amdagp - ok
14:25:10.0054 2948 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
14:25:10.0066 2948 amdide - ok
14:25:10.0077 2948 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
14:25:10.0102 2948 AmdK8 - ok
14:25:10.0121 2948 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
14:25:10.0147 2948 AmdPPM - ok
14:25:10.0180 2948 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:25:10.0191 2948 amdsata - ok
14:25:10.0226 2948 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:25:10.0238 2948 amdsbs - ok
14:25:10.0258 2948 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:25:10.0268 2948 amdxata - ok
14:25:10.0298 2948 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
14:25:10.0330 2948 AppID - ok
14:25:10.0353 2948 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:25:10.0385 2948 AppIDSvc - ok
14:25:10.0390 2948 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
14:25:10.0413 2948 Appinfo - ok
14:25:10.0530 2948 [ 20F6F19FE9E753F2780DC2FA083AD597 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:25:10.0538 2948 Apple Mobile Device - ok
14:25:10.0575 2948 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
14:25:10.0587 2948 AppMgmt - ok
14:25:10.0597 2948 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
14:25:10.0609 2948 arc - ok
14:25:10.0620 2948 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:25:10.0631 2948 arcsas - ok
14:25:10.0688 2948 [ 054DF24C92B55427E0757CFFF160E4F2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
14:25:10.0703 2948 aswFsBlk - ok
14:25:10.0760 2948 [ 258143605E77E4008F1758481D6A977D ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:25:10.0769 2948 aswMonFlt - ok
14:25:10.0797 2948 [ 352D5A48EBAB35A7693B048679304831 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
14:25:10.0806 2948 aswRdr - ok
14:25:10.0825 2948 [ 8D34D2B24297E27D93E847319ABFDEC4 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:25:10.0840 2948 aswSnx - ok
14:25:10.0867 2948 [ 010012597333DA1F46C3243F33F8409E ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:25:10.0880 2948 aswSP - ok
14:25:10.0904 2948 [ F9F84364416658E9786235904D448D37 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
14:25:10.0914 2948 aswTdi - ok
14:25:10.0934 2948 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:25:10.0956 2948 AsyncMac - ok
14:25:10.0972 2948 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
14:25:10.0982 2948 atapi - ok
14:25:11.0016 2948 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:25:11.0060 2948 AudioEndpointBuilder - ok
14:25:11.0067 2948 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:25:11.0090 2948 Audiosrv - ok
14:25:11.0179 2948 [ 996E6D052438E8D8DFD501F31560B2E0 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
14:25:11.0188 2948 avast! Antivirus - ok
14:25:11.0208 2948 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:25:11.0237 2948 AxInstSV - ok
14:25:11.0278 2948 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
14:25:11.0300 2948 b06bdrv - ok
14:25:11.0324 2948 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
14:25:11.0337 2948 b57nd60x - ok
14:25:11.0361 2948 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
14:25:11.0386 2948 BDESVC - ok
14:25:11.0404 2948 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
14:25:11.0424 2948 Beep - ok
14:25:11.0484 2948 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
14:25:11.0555 2948 BFE - ok
14:25:11.0614 2948 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
14:25:11.0640 2948 BITS - ok
14:25:11.0657 2948 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:25:11.0680 2948 blbdrive - ok
14:25:11.0727 2948 [ 1C87705CCB2F60172B0FC86B5D82F00D ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
14:25:11.0741 2948 Bonjour Service - ok
14:25:11.0769 2948 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:25:11.0780 2948 bowser - ok
14:25:11.0797 2948 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
14:25:11.0815 2948 BrFiltLo - ok
14:25:11.0830 2948 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
14:25:11.0853 2948 BrFiltUp - ok
14:25:11.0933 2948 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
14:25:11.0965 2948 BridgeMP - ok
14:25:12.0003 2948 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
14:25:12.0015 2948 Browser - ok
14:25:12.0033 2948 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:25:12.0047 2948 Brserid - ok
14:25:12.0062 2948 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:25:12.0083 2948 BrSerWdm - ok
14:25:12.0100 2948 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:25:12.0121 2948 BrUsbMdm - ok
14:25:12.0124 2948 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:25:12.0136 2948 BrUsbSer - ok
14:25:12.0149 2948 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
14:25:12.0174 2948 BTHMODEM - ok
14:25:12.0207 2948 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
14:25:12.0244 2948 bthserv - ok
14:25:12.0509 2948 catchme - ok
14:25:12.0527 2948 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:25:12.0562 2948 cdfs - ok
14:25:12.0609 2948 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:25:12.0622 2948 cdrom - ok
14:25:12.0652 2948 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
14:25:12.0673 2948 CertPropSvc - ok
14:25:12.0690 2948 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
14:25:12.0702 2948 circlass - ok
14:25:12.0731 2948 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
14:25:12.0744 2948 CLFS - ok
14:25:13.0000 2948 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:25:13.0011 2948 clr_optimization_v2.0.50727_32 - ok
14:25:13.0242 2948 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:25:13.0253 2948 clr_optimization_v4.0.30319_32 - ok
14:25:13.0276 2948 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
14:25:13.0300 2948 CmBatt - ok
14:25:13.0312 2948 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:25:13.0322 2948 cmdide - ok
14:25:13.0373 2948 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
14:25:13.0394 2948 CNG - ok
14:25:13.0398 2948 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
14:25:13.0408 2948 Compbatt - ok
14:25:13.0419 2948 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:25:13.0439 2948 CompositeBus - ok
14:25:13.0442 2948 COMSysApp - ok
14:25:13.0458 2948 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
14:25:13.0468 2948 crcdisk - ok
14:25:13.0510 2948 [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:25:13.0522 2948 CryptSvc - ok
14:25:13.0555 2948 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
14:25:13.0576 2948 CSC - ok
14:25:13.0609 2948 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
14:25:13.0627 2948 CscService - ok
14:25:13.0661 2948 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
14:25:13.0686 2948 DcomLaunch - ok
14:25:13.0712 2948 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
14:25:13.0748 2948 defragsvc - ok
14:25:13.0770 2948 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:25:13.0798 2948 DfsC - ok
14:25:13.0831 2948 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:25:13.0854 2948 Dhcp - ok
14:25:13.0858 2948 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
14:25:13.0891 2948 discache - ok
14:25:13.0925 2948 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
14:25:13.0935 2948 Disk - ok
14:25:13.0960 2948 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
14:25:13.0983 2948 dmvsc - ok
14:25:14.0027 2948 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:25:14.0089 2948 Dnscache - ok
14:25:14.0111 2948 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
14:25:14.0144 2948 dot3svc - ok
14:25:14.0162 2948 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
14:25:14.0191 2948 DPS - ok
14:25:14.0241 2948 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:25:14.0253 2948 drmkaud - ok
14:25:14.0287 2948 [ FB38473835476A6FB272215A1D972AF9 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:25:14.0298 2948 dtsoftbus01 - ok
14:25:14.0332 2948 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:25:14.0362 2948 DXGKrnl - ok
14:25:14.0390 2948 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
14:25:14.0413 2948 EapHost - ok
14:25:14.0505 2948 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
14:25:14.0615 2948 ebdrv - ok
14:25:14.0655 2948 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
14:25:14.0666 2948 EFS - ok
14:25:14.0766 2948 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:25:14.0785 2948 ehRecvr - ok
14:25:14.0797 2948 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
14:25:14.0810 2948 ehSched - ok
14:25:14.0831 2948 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
14:25:14.0848 2948 elxstor - ok
14:25:14.0861 2948 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:25:14.0885 2948 ErrDev - ok
14:25:14.0918 2948 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
14:25:14.0941 2948 EventSystem - ok
14:25:14.0962 2948 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
14:25:14.0984 2948 exfat - ok
14:25:15.0005 2948 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:25:15.0039 2948 fastfat - ok
14:25:15.0087 2948 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
14:25:15.0105 2948 Fax - ok
14:25:15.0115 2948 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:25:15.0139 2948 fdc - ok
14:25:15.0167 2948 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
14:25:15.0202 2948 fdPHost - ok
14:25:15.0210 2948 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
14:25:15.0232 2948 FDResPub - ok
14:25:15.0255 2948 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:25:15.0265 2948 FileInfo - ok
14:25:15.0273 2948 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:25:15.0310 2948 Filetrace - ok
14:25:15.0323 2948 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:25:15.0348 2948 flpydisk - ok
14:25:15.0374 2948 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:25:15.0388 2948 FltMgr - ok
14:25:15.0426 2948 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll
14:25:15.0471 2948 FontCache - ok
14:25:15.0537 2948 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
14:25:15.0546 2948 FontCache3.0.0.0 - ok
14:25:15.0550 2948 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:25:15.0560 2948 FsDepends - ok
14:25:15.0582 2948 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:25:15.0592 2948 Fs_Rec - ok
14:25:15.0625 2948 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:25:15.0640 2948 fvevol - ok
14:25:15.0667 2948 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:25:15.0678 2948 gagp30kx - ok
14:25:15.0706 2948 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:25:15.0713 2948 GEARAspiWDM - ok
14:25:15.0750 2948 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
14:25:15.0792 2948 gpsvc - ok
14:25:15.0805 2948 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:25:15.0817 2948 hcw85cir - ok
14:25:15.0856 2948 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:25:15.0884 2948 HdAudAddService - ok
14:25:15.0915 2948 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:25:15.0929 2948 HDAudBus - ok
14:25:15.0937 2948 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
14:25:15.0959 2948 HidBatt - ok
14:25:15.0974 2948 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
14:25:16.0000 2948 HidBth - ok
14:25:16.0025 2948 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
14:25:16.0049 2948 HidIr - ok
14:25:16.0097 2948 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
14:25:16.0128 2948 hidserv - ok
14:25:16.0146 2948 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:25:16.0166 2948 HidUsb - ok
14:25:16.0190 2948 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:25:16.0211 2948 hkmsvc - ok
14:25:16.0231 2948 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:25:16.0258 2948 HomeGroupListener - ok
14:25:16.0292 2948 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:25:16.0320 2948 HomeGroupProvider - ok
14:25:16.0342 2948 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:25:16.0353 2948 HpSAMD - ok
14:25:16.0375 2948 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:25:16.0401 2948 HTTP - ok
14:25:16.0414 2948 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:25:16.0424 2948 hwpolicy - ok
14:25:16.0445 2948 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:25:16.0472 2948 i8042prt - ok
14:25:16.0509 2948 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:25:16.0525 2948 iaStorV - ok
14:25:16.0598 2948 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:25:16.0628 2948 idsvc - ok
14:25:16.0644 2948 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
14:25:16.0654 2948 iirsp - ok
14:25:16.0703 2948 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
14:25:16.0742 2948 IKEEXT - ok
14:25:16.0752 2948 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
14:25:16.0762 2948 intelide - ok
14:25:16.0781 2948 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:25:16.0792 2948 intelppm - ok
14:25:16.0822 2948 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:25:16.0845 2948 IPBusEnum - ok
14:25:16.0867 2948 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:25:16.0887 2948 IpFilterDriver - ok
14:25:16.0906 2948 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:25:16.0933 2948 iphlpsvc - ok
14:25:16.0950 2948 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:25:16.0961 2948 IPMIDRV - ok
14:25:16.0975 2948 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:25:16.0997 2948 IPNAT - ok
14:25:17.0037 2948 [ 3A6D4D8ABACF64292D060C9E06D2050D ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
14:25:17.0064 2948 iPod Service - ok
14:25:17.0086 2948 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:25:17.0107 2948 IRENUM - ok
14:25:17.0124 2948 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:25:17.0135 2948 isapnp - ok
14:25:17.0149 2948 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:25:17.0163 2948 iScsiPrt - ok
14:25:17.0185 2948 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:25:17.0195 2948 kbdclass - ok
14:25:17.0212 2948 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
14:25:17.0231 2948 kbdhid - ok
14:25:17.0252 2948 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
14:25:17.0264 2948 KeyIso - ok
14:25:17.0304 2948 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:25:17.0315 2948 KSecDD - ok
14:25:17.0355 2948 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:25:17.0368 2948 KSecPkg - ok
14:25:17.0403 2948 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
14:25:17.0440 2948 KtmRm - ok
14:25:17.0523 2948 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
14:25:17.0561 2948 LanmanServer - ok
14:25:17.0608 2948 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:25:17.0632 2948 LanmanWorkstation - ok
14:25:17.0661 2948 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:25:17.0696 2948 lltdio - ok
14:25:17.0727 2948 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:25:17.0751 2948 lltdsvc - ok
14:25:17.0762 2948 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
14:25:17.0795 2948 lmhosts - ok
14:25:17.0824 2948 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
14:25:17.0835 2948 LSI_FC - ok
14:25:17.0847 2948 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:25:17.0858 2948 LSI_SAS - ok
14:25:17.0867 2948 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:25:17.0878 2948 LSI_SAS2 - ok
14:25:17.0892 2948 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
14:25:17.0903 2948 LSI_SCSI - ok
14:25:17.0913 2948 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
14:25:17.0950 2948 luafv - ok
14:25:17.0980 2948 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:25:18.0027 2948 Mcx2Svc - ok
14:25:18.0073 2948 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
14:25:18.0107 2948 megasas - ok
14:25:18.0204 2948 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
14:25:18.0251 2948 MegaSR - ok
14:25:18.0419 2948 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
14:25:18.0428 2948 Microsoft Office Groove Audit Service - ok
14:25:18.0454 2948 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
14:25:18.0491 2948 MMCSS - ok
14:25:18.0496 2948 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
14:25:18.0522 2948 Modem - ok
14:25:18.0526 2948 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:25:18.0542 2948 monitor - ok
14:25:18.0546 2948 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:25:18.0556 2948 mouclass - ok
14:25:18.0570 2948 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:25:18.0594 2948 mouhid - ok
14:25:18.0611 2948 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:25:18.0622 2948 mountmgr - ok
14:25:18.0695 2948 [ E8D79312373F254DC13F3965BDB3D521 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
14:25:18.0706 2948 MozillaMaintenance - ok
14:25:18.0728 2948 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
14:25:18.0740 2948 mpio - ok
14:25:18.0744 2948 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:25:18.0774 2948 mpsdrv - ok
14:25:18.0803 2948 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:25:18.0849 2948 MpsSvc - ok
14:25:18.0870 2948 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:25:18.0884 2948 MRxDAV - ok
14:25:18.0927 2948 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:25:18.0938 2948 mrxsmb - ok
14:25:18.0963 2948 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:25:18.0976 2948 mrxsmb10 - ok
14:25:18.0992 2948 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:25:19.0004 2948 mrxsmb20 - ok
14:25:19.0021 2948 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
14:25:19.0032 2948 msahci - ok
14:25:19.0045 2948 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:25:19.0056 2948 msdsm - ok
14:25:19.0073 2948 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
14:25:19.0101 2948 MSDTC - ok
14:25:19.0120 2948 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:25:19.0141 2948 Msfs - ok
14:25:19.0158 2948 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:25:19.0178 2948 mshidkmdf - ok
14:25:19.0188 2948 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:25:19.0198 2948 msisadrv - ok
14:25:19.0243 2948 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:25:19.0285 2948 MSiSCSI - ok
14:25:19.0288 2948 msiserver - ok
14:25:19.0317 2948 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:25:19.0348 2948 MSKSSRV - ok
14:25:19.0368 2948 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:25:19.0401 2948 MSPCLOCK - ok
14:25:19.0440 2948 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:25:19.0461 2948 MSPQM - ok
14:25:19.0481 2948 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:25:19.0493 2948 MsRPC - ok
14:25:19.0512 2948 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:25:19.0522 2948 mssmbios - ok
14:25:19.0531 2948 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:25:19.0551 2948 MSTEE - ok
14:25:19.0566 2948 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
14:25:19.0593 2948 MTConfig - ok
14:25:19.0653 2948 [ D48659BB24C48345D926ECB45C1EBDF5 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
14:25:19.0662 2948 MTsensor - ok
14:25:19.0683 2948 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
14:25:19.0694 2948 Mup - ok
14:25:19.0722 2948 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
14:25:19.0758 2948 napagent - ok
14:25:19.0809 2948 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:25:19.0825 2948 NativeWifiP - ok
14:25:19.0861 2948 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:25:19.0878 2948 NDIS - ok
14:25:19.0892 2948 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:25:19.0924 2948 NdisCap - ok
14:25:19.0949 2948 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:25:19.0968 2948 NdisTapi - ok
14:25:19.0972 2948 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:25:20.0005 2948 Ndisuio - ok
14:25:20.0018 2948 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:25:20.0049 2948 NdisWan - ok
14:25:20.0067 2948 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:25:20.0087 2948 NDProxy - ok
14:25:20.0098 2948 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:25:20.0132 2948 NetBIOS - ok
14:25:20.0147 2948 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:25:20.0169 2948 NetBT - ok
14:25:20.0189 2948 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
14:25:20.0202 2948 Netlogon - ok
14:25:20.0243 2948 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
14:25:20.0268 2948 Netman - ok
14:25:20.0293 2948 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
14:25:20.0332 2948 netprofm - ok
14:25:20.0367 2948 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:25:20.0377 2948 NetTcpPortSharing - ok
14:25:20.0405 2948 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
14:25:20.0415 2948 nfrd960 - ok
14:25:20.0431 2948 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:25:20.0471 2948 NlaSvc - ok
14:25:20.0475 2948 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:25:20.0496 2948 Npfs - ok
14:25:20.0515 2948 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
14:25:20.0538 2948 nsi - ok
14:25:20.0553 2948 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:25:20.0581 2948 nsiproxy - ok
14:25:20.0632 2948 [ 81189C3D7763838E55C397759D49007A ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:25:20.0655 2948 Ntfs - ok
14:25:20.0673 2948 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
14:25:20.0693 2948 Null - ok
14:25:20.0730 2948 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
14:25:20.0745 2948 NVENETFD - ok
14:25:21.0006 2948 [ 4152708C0C24E30DAE7FA87D5AFE1D7B ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:25:21.0293 2948 nvlddmkm - ok
14:25:21.0327 2948 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:25:21.0339 2948 nvraid - ok
14:25:21.0351 2948 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:25:21.0363 2948 nvstor - ok
14:25:21.0418 2948 [ 26DB28B32E8D2F57CB5065A4A053801A ] nvsvc C:\Windows\system32\nvvsvc.exe
14:25:21.0440 2948 nvsvc - ok
14:25:21.0463 2948 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:25:21.0474 2948 nv_agp - ok
14:25:21.0591 2948 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:25:21.0606 2948 odserv - ok
14:25:21.0626 2948 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:25:21.0653 2948 ohci1394 - ok
14:25:21.0679 2948 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:25:21.0690 2948 ose - ok
14:25:21.0727 2948 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:25:21.0754 2948 p2pimsvc - ok
14:25:21.0790 2948 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
14:25:21.0807 2948 p2psvc - ok
14:25:21.0833 2948 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:25:21.0845 2948 Parport - ok
14:25:21.0880 2948 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:25:21.0891 2948 partmgr - ok
14:25:21.0906 2948 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
14:25:21.0929 2948 Parvdm - ok
14:25:21.0948 2948 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:25:21.0965 2948 PcaSvc - ok
14:25:21.0977 2948 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
14:25:21.0989 2948 pci - ok
14:25:22.0001 2948 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
14:25:22.0011 2948 pciide - ok
14:25:22.0032 2948 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:25:22.0045 2948 pcmcia - ok
14:25:22.0065 2948 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
14:25:22.0076 2948 pcw - ok
14:25:22.0106 2948 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:25:22.0149 2948 PEAUTH - ok
14:25:22.0193 2948 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:25:22.0238 2948 PeerDistSvc - ok
14:25:22.0292 2948 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
14:25:22.0372 2948 pla - ok
14:25:22.0422 2948 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:25:22.0449 2948 PlugPlay - ok
14:25:22.0538 2948 [ 3A2BDD76E7D2A5F40A7174793D1BA794 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
14:25:22.0548 2948 PnkBstrA - ok
14:25:22.0582 2948 [ 9A386EC60A166DF66205343CA12C6B86 ] PnkBstrB C:\Windows\system32\PnkBstrB.exe
14:25:22.0594 2948 PnkBstrB - ok
14:25:22.0618 2948 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:25:22.0631 2948 PNRPAutoReg - ok
14:25:22.0648 2948 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:25:22.0662 2948 PNRPsvc - ok
14:25:22.0692 2948 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:25:22.0732 2948 PolicyAgent - ok
14:25:22.0758 2948 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
14:25:22.0782 2948 Power - ok
14:25:22.0801 2948 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:25:22.0834 2948 PptpMiniport - ok
14:25:22.0852 2948 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
14:25:22.0877 2948 Processor - ok
14:25:22.0926 2948 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
14:25:22.0949 2948 ProfSvc - ok
14:25:22.0969 2948 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:25:22.0982 2948 ProtectedStorage - ok
14:25:23.0004 2948 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:25:23.0026 2948 Psched - ok
14:25:23.0066 2948 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
14:25:23.0120 2948 ql2300 - ok
14:25:23.0140 2948 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
14:25:23.0152 2948 ql40xx - ok
14:25:23.0186 2948 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
14:25:23.0220 2948 QWAVE - ok
14:25:23.0236 2948 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:25:23.0250 2948 QWAVEdrv - ok
14:25:23.0337 2948 [ E155E09229624C69A1A6609C0CB3641F ] RalinkRegistryWriter C:\Program Files\Ralink\Common\RaRegistry.exe
14:25:23.0362 2948 RalinkRegistryWriter - ok
14:25:23.0378 2948 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:25:23.0398 2948 RasAcd - ok
14:25:23.0429 2948 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:25:23.0448 2948 RasAgileVpn - ok
14:25:23.0468 2948 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
14:25:23.0492 2948 RasAuto - ok
14:25:23.0513 2948 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:25:23.0548 2948 Rasl2tp - ok
14:25:23.0584 2948 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
14:25:23.0624 2948 RasMan - ok
14:25:23.0651 2948 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:25:23.0672 2948 RasPppoe - ok
14:25:23.0702 2948 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:25:23.0730 2948 RasSstp - ok
14:25:23.0753 2948 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:25:23.0786 2948 rdbss - ok
14:25:23.0802 2948 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:25:23.0815 2948 rdpbus - ok
14:25:23.0828 2948 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:25:23.0849 2948 RDPCDD - ok
14:25:23.0880 2948 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:25:23.0892 2948 RDPDR - ok
14:25:23.0923 2948 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:25:23.0950 2948 RDPENCDD - ok
14:25:23.0968 2948 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:25:23.0997 2948 RDPREFMP - ok
14:25:24.0031 2948 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:25:24.0052 2948 RDPWD - ok
14:25:24.0076 2948 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:25:24.0089 2948 rdyboost - ok
14:25:24.0117 2948 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
14:25:24.0139 2948 RemoteAccess - ok
14:25:24.0174 2948 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:25:24.0198 2948 RemoteRegistry - ok
14:25:24.0223 2948 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:25:24.0259 2948 RpcEptMapper - ok
14:25:24.0292 2948 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
14:25:24.0316 2948 RpcLocator - ok
14:25:24.0341 2948 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
14:25:24.0367 2948 RpcSs - ok
14:25:24.0371 2948 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:25:24.0403 2948 rspndr - ok
14:25:24.0442 2948 [ 027158280EDF528EE322CFD00AE9E9BE ] rt61x86 C:\Windows\system32\DRIVERS\netr61.sys
14:25:24.0473 2948 rt61x86 - ok
14:25:24.0493 2948 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
14:25:24.0504 2948 s3cap - ok
14:25:24.0529 2948 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
14:25:24.0542 2948 SamSs - ok
14:25:24.0571 2948 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:25:24.0582 2948 sbp2port - ok
14:25:24.0609 2948 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:25:24.0639 2948 SCardSvr - ok
14:25:24.0655 2948 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:25:24.0690 2948 scfilter - ok
14:25:24.0722 2948 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
14:25:24.0750 2948 Schedule - ok
14:25:24.0767 2948 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:25:24.0786 2948 SCPolicySvc - ok
14:25:24.0818 2948 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:25:24.0842 2948 SDRSVC - ok
14:25:24.0866 2948 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:25:24.0900 2948 secdrv - ok
14:25:24.0915 2948 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
14:25:24.0946 2948 seclogon - ok
14:25:24.0969 2948 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
14:25:24.0993 2948 SENS - ok
14:25:25.0020 2948 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:25:25.0041 2948 SensrSvc - ok
14:25:25.0069 2948 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:25:25.0080 2948 Serenum - ok
14:25:25.0094 2948 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:25:25.0119 2948 Serial - ok
14:25:25.0137 2948 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
14:25:25.0148 2948 sermouse - ok
14:25:25.0170 2948 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
14:25:25.0195 2948 SessionEnv - ok
14:25:25.0211 2948 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:25:25.0235 2948 sffdisk - ok
14:25:25.0239 2948 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:25:25.0251 2948 sffp_mmc - ok
14:25:25.0267 2948 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:25:25.0280 2948 sffp_sd - ok
14:25:25.0292 2948 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
14:25:25.0303 2948 sfloppy - ok
14:25:25.0325 2948 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:25:25.0352 2948 SharedAccess - ok
14:25:25.0379 2948 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:25:25.0403 2948 ShellHWDetection - ok
14:25:25.0417 2948 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
14:25:25.0428 2948 sisagp - ok
14:25:25.0443 2948 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:25:25.0453 2948 SiSRaid2 - ok
14:25:25.0471 2948 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:25:25.0482 2948 SiSRaid4 - ok
14:25:25.0514 2948 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:25:25.0536 2948 Smb - ok
14:25:25.0590 2948 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:25:25.0604 2948 SNMPTRAP - ok
14:25:25.0613 2948 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
14:25:25.0623 2948 spldr - ok
14:25:25.0665 2948 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
14:25:25.0680 2948 Spooler - ok
14:25:25.0766 2948 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
14:25:25.0879 2948 sppsvc - ok
14:25:25.0892 2948 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:25:25.0922 2948 sppuinotify - ok
14:25:25.0966 2948 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:25:25.0981 2948 srv - ok
14:25:25.0996 2948 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:25:26.0018 2948 srv2 - ok
14:25:26.0043 2948 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:25:26.0072 2948 srvnet - ok
14:25:26.0098 2948 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:25:26.0123 2948 SSDPSRV - ok
14:25:26.0137 2948 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:25:26.0170 2948 SstpSvc - ok
14:25:26.0208 2948 Steam Client Service - ok
14:25:26.0297 2948 [ 9BF7E58D9113CE15CF4F1E1B18CEFF83 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
14:25:26.0310 2948 Stereo Service - ok
14:25:26.0335 2948 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:25:26.0345 2948 stexstor - ok
14:25:26.0385 2948 [ EDB05BD63148796F23EA78506404A538 ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
14:25:26.0410 2948 StillCam - ok
14:25:26.0451 2948 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
14:25:26.0471 2948 StiSvc - ok
14:25:26.0499 2948 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
14:25:26.0510 2948 storflt - ok
14:25:26.0528 2948 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
14:25:26.0541 2948 StorSvc - ok
14:25:26.0555 2948 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:25:26.0566 2948 storvsc - ok
14:25:26.0584 2948 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:25:26.0594 2948 swenum - ok
14:25:26.0610 2948 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
14:25:26.0649 2948 swprv - ok
14:25:26.0693 2948 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
14:25:26.0741 2948 SysMain - ok
14:25:26.0758 2948 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:25:26.0775 2948 TabletInputService - ok
14:25:26.0789 2948 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
14:25:26.0813 2948 TapiSrv - ok
14:25:26.0823 2948 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
14:25:26.0847 2948 TBS - ok
14:25:26.0912 2948 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:25:26.0937 2948 Tcpip - ok
14:25:26.0987 2948 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:25:27.0011 2948 TCPIP6 - ok
14:25:27.0031 2948 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:25:27.0059 2948 tcpipreg - ok
14:25:27.0075 2948 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:25:27.0101 2948 TDPIPE - ok
14:25:27.0130 2948 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:25:27.0140 2948 TDTCP - ok
14:25:27.0157 2948 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:25:27.0176 2948 tdx - ok
14:25:27.0186 2948 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:25:27.0197 2948 TermDD - ok
14:25:27.0228 2948 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
14:25:27.0255 2948 TermService - ok
14:25:27.0267 2948 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
14:25:27.0296 2948 Themes - ok
14:25:27.0308 2948 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
14:25:27.0330 2948 THREADORDER - ok
14:25:27.0358 2948 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
14:25:27.0394 2948 TrkWks - ok
14:25:27.0472 2948 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:25:27.0493 2948 TrustedInstaller - ok
14:25:27.0545 2948 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:25:27.0567 2948 tssecsrv - ok
14:25:27.0591 2948 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:25:27.0612 2948 TsUsbFlt - ok
14:25:27.0626 2948 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
14:25:27.0646 2948 TsUsbGD - ok
14:25:27.0673 2948 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:25:27.0693 2948 tunnel - ok
14:25:27.0708 2948 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:25:27.0719 2948 uagp35 - ok
14:25:27.0744 2948 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:25:27.0767 2948 udfs - ok
14:25:27.0797 2948 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:25:27.0824 2948 UI0Detect - ok
14:25:27.0851 2948 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:25:27.0863 2948 uliagpkx - ok
14:25:27.0898 2948 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:25:27.0925 2948 umbus - ok
14:25:27.0949 2948 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
14:25:27.0974 2948 UmPass - ok
14:25:28.0002 2948 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
14:25:28.0017 2948 UmRdpService - ok
14:25:28.0038 2948 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
14:25:28.0063 2948 upnphost - ok
14:25:28.0100 2948 [ 83CAFCB53201BBAC04D822F32438E244 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
14:25:28.0130 2948 USBAAPL - ok
14:25:28.0180 2948 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:25:28.0210 2948 usbaudio - ok
14:25:28.0243 2948 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:25:28.0255 2948 usbccgp - ok
14:25:28.0269 2948 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:25:28.0282 2948 usbcir - ok
14:25:28.0305 2948 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:25:28.0316 2948 usbehci - ok
14:25:28.0342 2948 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:25:28.0356 2948 usbhub - ok
14:25:28.0373 2948 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:25:28.0398 2948 usbohci - ok
14:25:28.0410 2948 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\drivers\usbprint.sys
14:25:28.0423 2948 usbprint - ok
14:25:28.0456 2948 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:25:28.0483 2948 USBSTOR - ok
14:25:28.0501 2948 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:25:28.0511 2948 usbuhci - ok
14:25:28.0538 2948 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
14:25:28.0560 2948 UxSms - ok
14:25:28.0579 2948 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
14:25:28.0591 2948 VaultSvc - ok
14:25:28.0612 2948 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:25:28.0623 2948 vdrvroot - ok
14:25:28.0653 2948 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
14:25:28.0693 2948 vds - ok
14:25:28.0710 2948 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:25:28.0722 2948 vga - ok
14:25:28.0739 2948 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
14:25:28.0759 2948 VgaSave - ok
14:25:28.0776 2948 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:25:28.0789 2948 vhdmp - ok
14:25:28.0817 2948 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
14:25:28.0828 2948 viaagp - ok
14:25:28.0832 2948 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
14:25:28.0854 2948 ViaC7 - ok
14:25:28.0857 2948 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
14:25:28.0868 2948 viaide - ok
14:25:28.0898 2948 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:25:28.0911 2948 vmbus - ok
14:25:28.0922 2948 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
14:25:28.0933 2948 VMBusHID - ok
14:25:28.0944 2948 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:25:28.0955 2948 volmgr - ok
14:25:28.0978 2948 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:25:28.0992 2948 volmgrx - ok
14:25:29.0006 2948 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:25:29.0020 2948 volsnap - ok
14:25:29.0052 2948 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:25:29.0065 2948 vsmraid - ok
14:25:29.0113 2948 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
14:25:29.0181 2948 VSS - ok
14:25:29.0185 2948 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:25:29.0197 2948 vwifibus - ok
14:25:29.0230 2948 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:25:29.0251 2948 vwififlt - ok
14:25:29.0276 2948 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
14:25:29.0290 2948 vwifimp - ok
14:25:29.0309 2948 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
14:25:29.0334 2948 W32Time - ok
14:25:29.0349 2948 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
14:25:29.0375 2948 WacomPen - ok
14:25:29.0391 2948 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:25:29.0412 2948 WANARP - ok
14:25:29.0415 2948 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:25:29.0435 2948 Wanarpv6 - ok
14:25:29.0520 2948 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:25:29.0573 2948 WatAdminSvc - ok
14:25:29.0615 2948 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
14:25:29.0656 2948 wbengine - ok
14:25:29.0694 2948 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:25:29.0719 2948 WbioSrvc - ok
14:25:29.0742 2948 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:25:29.0762 2948 wcncsvc - ok
14:25:29.0773 2948 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:25:29.0801 2948 WcsPlugInService - ok
14:25:29.0805 2948 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
14:25:29.0816 2948 Wd - ok
14:25:29.0842 2948 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:25:29.0860 2948 Wdf01000 - ok
14:25:29.0864 2948 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:25:29.0896 2948 WdiServiceHost - ok
14:25:29.0900 2948 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:25:29.0915 2948 WdiSystemHost - ok
14:25:29.0932 2948 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
14:25:29.0962 2948 WebClient - ok
14:25:29.0983 2948 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:25:30.0009 2948 Wecsvc - ok
14:25:30.0018 2948 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:25:30.0041 2948 wercplsupport - ok
14:25:30.0077 2948 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
14:25:30.0101 2948 WerSvc - ok
14:25:30.0137 2948 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:25:30.0158 2948 WfpLwf - ok
14:25:30.0176 2948 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:25:30.0187 2948 WIMMount - ok
14:25:30.0252 2948 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
14:25:30.0297 2948 WinDefend - ok
14:25:30.0302 2948 WinHttpAutoProxySvc - ok
14:25:30.0442 2948 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:25:30.0463 2948 Winmgmt - ok
14:25:30.0517 2948 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
14:25:30.0571 2948 WinRM - ok
14:25:30.0627 2948 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
14:25:30.0640 2948 WinUsb - ok
14:25:30.0684 2948 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
14:25:30.0742 2948 Wlansvc - ok
14:25:30.0830 2948 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:25:30.0891 2948 wlidsvc - ok
14:25:30.0908 2948 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:25:30.0919 2948 WmiAcpi - ok
14:25:30.0946 2948 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:25:30.0968 2948 wmiApSrv - ok
14:25:31.0033 2948 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
14:25:31.0072 2948 WMPNetworkSvc - ok
14:25:31.0089 2948 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:25:31.0114 2948 WPCSvc - ok
14:25:31.0132 2948 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:25:31.0162 2948 WPDBusEnum - ok
14:25:31.0191 2948 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:25:31.0226 2948 ws2ifsl - ok
14:25:31.0241 2948 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
14:25:31.0269 2948 wscsvc - ok
14:25:31.0319 2948 [ 553F6CCD7C58EB98D4A8FBDAF283D7A9 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
14:25:31.0330 2948 WSDPrintDevice - ok
14:25:31.0334 2948 WSearch - ok
14:25:31.0409 2948 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
14:25:31.0482 2948 wuauserv - ok
14:25:31.0498 2948 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:25:31.0529 2948 WudfPf - ok
14:25:31.0565 2948 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:25:31.0586 2948 WUDFRd - ok
14:25:31.0626 2948 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:25:31.0662 2948 wudfsvc - ok
14:25:31.0681 2948 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
14:25:31.0700 2948 WwanSvc - ok
14:25:31.0782 2948 [ CE0C846127D6ABB1E2A22E59682B2527 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys
14:25:31.0801 2948 xnacc - ok
14:25:31.0832 2948 ================ Scan global ===============================
14:25:31.0866 2948 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
14:25:31.0894 2948 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
14:25:31.0911 2948 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
14:25:31.0947 2948 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
14:25:31.0982 2948 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
14:25:31.0986 2948 [Global] - ok
14:25:31.0986 2948 ================ Scan MBR ==================================
14:25:32.0000 2948 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:25:32.0223 2948 \Device\Harddisk0\DR0 - ok
14:25:32.0223 2948 ================ Scan VBR ==================================
14:25:32.0225 2948 [ AB7D97224353956932B64F6930BC2274 ] \Device\Harddisk0\DR0\Partition1
14:25:32.0226 2948 \Device\Harddisk0\DR0\Partition1 - ok
14:25:32.0227 2948 ============================================================
14:25:32.0227 2948 Scan finished
14:25:32.0227 2948 ============================================================
14:25:32.0234 5596 Detected object count: 0
14:25:32.0234 5596 Actual detected object count: 0
14:25:59.0802 4188 ============================================================
14:25:59.0802 4188 Scan started
14:25:59.0802 4188 Mode: Manual; SigCheck; TDLFS;
14:25:59.0802 4188 ============================================================
14:26:00.0471 4188 ================ Scan system memory ========================
14:26:00.0472 4188 System memory - ok
14:26:00.0472 4188 ================ Scan services =============================
14:26:00.0953 4188 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
14:26:00.0972 4188 1394ohci - ok
14:26:00.0998 4188 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:26:01.0010 4188 ACPI - ok
14:26:01.0023 4188 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:26:01.0035 4188 AcpiPmi - ok
14:26:01.0191 4188 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
14:26:01.0200 4188 AdobeARMservice - ok
14:26:01.0227 4188 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
14:26:01.0242 4188 adp94xx - ok
14:26:01.0259 4188 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
14:26:01.0271 4188 adpahci - ok
14:26:01.0283 4188 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
14:26:01.0294 4188 adpu320 - ok
14:26:01.0330 4188 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:26:01.0349 4188 AeLookupSvc - ok
14:26:01.0375 4188 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
14:26:01.0388 4188 AFD - ok
14:26:01.0407 4188 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
14:26:01.0416 4188 agp440 - ok
14:26:01.0441 4188 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
14:26:01.0451 4188 aic78xx - ok
14:26:01.0467 4188 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
14:26:01.0477 4188 ALG - ok
14:26:01.0492 4188 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
14:26:01.0502 4188 aliide - ok
14:26:01.0511 4188 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
14:26:01.0521 4188 amdagp - ok
14:26:01.0525 4188 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
14:26:01.0535 4188 amdide - ok
14:26:01.0542 4188 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
14:26:01.0553 4188 AmdK8 - ok
14:26:01.0561 4188 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
14:26:01.0572 4188 AmdPPM - ok
14:26:01.0603 4188 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:26:01.0613 4188 amdsata - ok
14:26:01.0641 4188 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
14:26:01.0652 4188 amdsbs - ok
14:26:01.0673 4188 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:26:01.0683 4188 amdxata - ok
14:26:01.0705 4188 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
14:26:01.0724 4188 AppID - ok
14:26:01.0752 4188 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:26:01.0770 4188 AppIDSvc - ok
14:26:01.0774 4188 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
14:26:01.0793 4188 Appinfo - ok
14:26:01.0904 4188 [ 20F6F19FE9E753F2780DC2FA083AD597 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:26:01.0911 4188 Apple Mobile Device - ok
14:26:01.0932 4188 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
14:26:01.0943 4188 AppMgmt - ok
14:26:01.0954 4188 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
14:26:01.0964 4188 arc - ok
14:26:01.0977 4188 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
14:26:01.0988 4188 arcsas - ok
14:26:02.0037 4188 [ 054DF24C92B55427E0757CFFF160E4F2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
14:26:02.0045 4188 aswFsBlk - ok
14:26:02.0067 4188 [ 258143605E77E4008F1758481D6A977D ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
14:26:02.0076 4188 aswMonFlt - ok
14:26:02.0096 4188 [ 352D5A48EBAB35A7693B048679304831 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
14:26:02.0104 4188 aswRdr - ok
14:26:02.0124 4188 [ 8D34D2B24297E27D93E847319ABFDEC4 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
14:26:02.0136 4188 aswSnx - ok
14:26:02.0157 4188 [ 010012597333DA1F46C3243F33F8409E ] aswSP C:\Windows\system32\drivers\aswSP.sys
14:26:02.0168 4188 aswSP - ok
14:26:02.0186 4188 [ F9F84364416658E9786235904D448D37 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
14:26:02.0195 4188 aswTdi - ok
14:26:02.0216 4188 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:26:02.0236 4188 AsyncMac - ok
14:26:02.0240 4188 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
14:26:02.0250 4188 atapi - ok
14:26:02.0274 4188 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:26:02.0296 4188 AudioEndpointBuilder - ok
14:26:02.0315 4188 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
14:26:02.0337 4188 Audiosrv - ok
14:26:02.0420 4188 [ 996E6D052438E8D8DFD501F31560B2E0 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
14:26:02.0429 4188 avast! Antivirus - ok
14:26:02.0457 4188 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:26:02.0470 4188 AxInstSV - ok
14:26:02.0511 4188 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
14:26:02.0523 4188 b06bdrv - ok
14:26:02.0540 4188 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
14:26:02.0552 4188 b57nd60x - ok
14:26:02.0568 4188 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
14:26:02.0579 4188 BDESVC - ok
14:26:02.0595 4188 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
14:26:02.0615 4188 Beep - ok
14:26:02.0642 4188 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
14:26:02.0665 4188 BFE - ok
14:26:02.0705 4188 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\system32\qmgr.dll
14:26:02.0731 4188 BITS - ok
14:26:02.0748 4188 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:26:02.0759 4188 blbdrive - ok
14:26:02.0811 4188 [ 1C87705CCB2F60172B0FC86B5D82F00D ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
14:26:02.0822 4188 Bonjour Service - ok
14:26:02.0852 4188 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:26:02.0862 4188 bowser - ok
14:26:02.0879 4188 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
14:26:02.0891 4188 BrFiltLo - ok
14:26:02.0905 4188 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
14:26:02.0917 4188 BrFiltUp - ok
14:26:02.0933 4188 [ 77361D72A04F18809D0EFB6CCEB74D4B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
14:26:02.0954 4188 BridgeMP - ok
14:26:02.0995 4188 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
14:26:03.0006 4188 Browser - ok
14:26:03.0025 4188 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:26:03.0037 4188 Brserid - ok
14:26:03.0054 4188 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:26:03.0066 4188 BrSerWdm - ok
14:26:03.0075 4188 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:26:03.0087 4188 BrUsbMdm - ok
14:26:03.0091 4188 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:26:03.0102 4188 BrUsbSer - ok
14:26:03.0149 4188 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
14:26:03.0161 4188 BTHMODEM - ok
14:26:03.0248 4188 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
14:26:03.0269 4188 bthserv - ok
14:26:03.0609 4188 catchme - ok
14:26:03.0613 4188 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:26:03.0634 4188 cdfs - ok
14:26:03.0668 4188 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
14:26:03.0679 4188 cdrom - ok
14:26:03.0693 4188 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
14:26:03.0712 4188 CertPropSvc - ok
14:26:03.0731 4188 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
14:26:03.0743 4188 circlass - ok
14:26:03.0772 4188 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
14:26:03.0785 4188 CLFS - ok
14:26:04.0001 4188 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:26:04.0010 4188 clr_optimization_v2.0.50727_32 - ok
14:26:04.0184 4188 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:26:04.0194 4188 clr_optimization_v4.0.30319_32 - ok
14:26:04.0218 4188 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
14:26:04.0228 4188 CmBatt - ok
14:26:04.0238 4188 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:26:04.0248 4188 cmdide - ok
14:26:04.0299 4188 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
14:26:04.0316 4188 CNG - ok
14:26:04.0320 4188 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
14:26:04.0330 4188 Compbatt - ok
14:26:04.0334 4188 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
14:26:04.0346 4188 CompositeBus - ok
14:26:04.0349 4188 COMSysApp - ok
14:26:04.0359 4188 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
14:26:04.0368 4188 crcdisk - ok
14:26:04.0402 4188 [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:26:04.0414 4188 CryptSvc - ok
14:26:04.0447 4188 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
14:26:04.0459 4188 CSC - ok
14:26:04.0477 4188 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
14:26:04.0491 4188 CscService - ok
14:26:04.0521 4188 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
14:26:04.0545 4188 DcomLaunch - ok
14:26:04.0571 4188 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
14:26:04.0594 4188 defragsvc - ok
14:26:04.0605 4188 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:26:04.0624 4188 DfsC - ok
14:26:04.0640 4188 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
14:26:04.0661 4188 Dhcp - ok
14:26:04.0665 4188 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
14:26:04.0686 4188 discache - ok
14:26:04.0701 4188 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
14:26:04.0711 4188 Disk - ok
14:26:04.0736 4188 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
14:26:04.0747 4188 dmvsc - ok
14:26:04.0786 4188 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:26:04.0799 4188 Dnscache - ok
14:26:04.0821 4188 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
14:26:04.0843 4188 dot3svc - ok
14:26:04.0855 4188 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
14:26:04.0876 4188 DPS - ok
14:26:04.0901 4188 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:26:04.0912 4188 drmkaud - ok
14:26:04.0939 4188 [ FB38473835476A6FB272215A1D972AF9 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:26:04.0949 4188 dtsoftbus01 - ok
14:26:04.0984 4188 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:26:05.0001 4188 DXGKrnl - ok
14:26:05.0033 4188 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
14:26:05.0055 4188 EapHost - ok
14:26:05.0149 4188 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
14:26:05.0184 4188 ebdrv - ok
14:26:05.0223 4188 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
14:26:05.0235 4188 EFS - ok
14:26:05.0335 4188 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:26:05.0350 4188 ehRecvr - ok
14:26:05.0366 4188 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
14:26:05.0377 4188 ehSched - ok
14:26:05.0400 4188 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
14:26:05.0414 4188 elxstor - ok
14:26:05.0447 4188 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:26:05.0457 4188 ErrDev - ok
14:26:05.0503 4188 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
14:26:05.0526 4188 EventSystem - ok
14:26:05.0564 4188 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
14:26:05.0585 4188 exfat - ok
14:26:05.0607 4188 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:26:05.0628 4188 fastfat - ok
14:26:05.0664 4188 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
14:26:05.0679 4188 Fax - ok
14:26:05.0692 4188 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:26:05.0702 4188 fdc - ok
14:26:05.0728 4188 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
14:26:05.0749 4188 fdPHost - ok
14:26:05.0762 4188 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
14:26:05.0783 4188 FDResPub - ok
14:26:05.0807 4188 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:26:05.0817 4188 FileInfo - ok
14:26:05.0825 4188 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:26:05.0845 4188 Filetrace - ok
14:26:05.0858 4188 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:26:05.0869 4188 flpydisk - ok
14:26:05.0884 4188 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:26:05.0896 4188 FltMgr - ok
14:26:05.0928 4188 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll
14:26:05.0954 4188 FontCache - ok
14:26:06.0023 4188 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
14:26:06.0031 4188 FontCache3.0.0.0 - ok
14:26:06.0035 4188 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:26:06.0045 4188 FsDepends - ok
14:26:06.0060 4188 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:26:06.0069 4188 Fs_Rec - ok
14:26:06.0086 4188 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:26:06.0100 4188 fvevol - ok
14:26:06.0120 4188 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
14:26:06.0130 4188 gagp30kx - ok
14:26:06.0175 4188 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:26:06.0182 4188 GEARAspiWDM - ok
14:26:06.0227 4188 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
14:26:06.0252 4188 gpsvc - ok
14:26:06.0266 4188 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:26:06.0276 4188 hcw85cir - ok
14:26:06.0317 4188 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:26:06.0331 4188 HdAudAddService - ok
14:26:06.0343 4188 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
14:26:06.0355 4188 HDAudBus - ok
14:26:06.0364 4188 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
14:26:06.0375 4188 HidBatt - ok
14:26:06.0386 4188 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
14:26:06.0398 4188 HidBth - ok
14:26:06.0411 4188 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
14:26:06.0422 4188 HidIr - ok
14:26:06.0433 4188 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\System32\hidserv.dll
14:26:06.0455 4188 hidserv - ok
14:26:06.0459 4188 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
14:26:06.0469 4188 HidUsb - ok
14:26:06.0502 4188 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:26:06.0522 4188 hkmsvc - ok
14:26:06.0543 4188 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:26:06.0556 4188 HomeGroupListener - ok
14:26:06.0596 4188 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:26:06.0609 4188 HomeGroupProvider - ok
14:26:06.0629 4188 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:26:06.0640 4188 HpSAMD - ok
14:26:06.0662 4188 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:26:06.0685 4188 HTTP - ok
14:26:06.0689 4188 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:26:06.0699 4188 hwpolicy - ok
14:26:06.0716 4188 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
14:26:06.0727 4188 i8042prt - ok
14:26:06.0755 4188 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:26:06.0768 4188 iaStorV - ok
14:26:06.0843 4188 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:26:06.0860 4188 idsvc - ok
14:26:06.0873 4188 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
14:26:06.0883 4188 iirsp - ok
14:26:06.0916 4188 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
14:26:06.0941 4188 IKEEXT - ok
14:26:06.0946 4188 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
14:26:06.0956 4188 intelide - ok
14:26:06.0968 4188 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:26:06.0979 4188 intelppm - ok
14:26:07.0001 4188 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:26:07.0022 4188 IPBusEnum - ok
14:26:07.0046 4188 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:26:07.0066 4188 IpFilterDriver - ok
14:26:07.0093 4188 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
14:26:07.0118 4188 iphlpsvc - ok
14:26:07.0129 4188 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:26:07.0140 4188 IPMIDRV - ok
14:26:07.0154 4188 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:26:07.0175 4188 IPNAT - ok
14:26:07.0216 4188 [ 3A6D4D8ABACF64292D060C9E06D2050D ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
14:26:07.0232 4188 iPod Service - ok
14:26:07.0236 4188 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:26:07.0249 4188 IRENUM - ok
14:26:07.0270 4188 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:26:07.0280 4188 isapnp - ok
14:26:07.0295 4188 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:26:07.0307 4188 iScsiPrt - ok
14:26:07.0311 4188 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
14:26:07.0322 4188 kbdclass - ok
14:26:07.0333 4188 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
14:26:07.0344 4188 kbdhid - ok
14:26:07.0356 4188 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
14:26:07.0368 4188 KeyIso - ok
14:26:07.0409 4188 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:26:07.0419 4188 KSecDD - ok
14:26:07.0460 4188 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:26:07.0471 4188 KSecPkg - ok
14:26:07.0590 4188 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
14:26:07.0613 4188 KtmRm - ok
14:26:07.0677 4188 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\System32\srvsvc.dll
14:26:07.0700 4188 LanmanServer - ok
14:26:07.0737 4188 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:26:07.0760 4188 LanmanWorkstation - ok
14:26:07.0774 4188 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:26:07.0794 4188 lltdio - ok
14:26:07.0823 4188 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:26:07.0845 4188 lltdsvc - ok
14:26:07.0858 4188 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
14:26:07.0878 4188 lmhosts - ok
14:26:07.0895 4188 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
14:26:07.0906 4188 LSI_FC - ok
14:26:07.0918 4188 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
14:26:07.0929 4188 LSI_SAS - ok
14:26:07.0938 4188 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
14:26:07.0948 4188 LSI_SAS2 - ok
14:26:07.0963 4188 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
14:26:07.0973 4188 LSI_SCSI - ok
14:26:07.0984 4188 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
14:26:08.0005 4188 luafv - ok
14:26:08.0035 4188 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:26:08.0048 4188 Mcx2Svc - ok
14:26:08.0061 4188 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
14:26:08.0072 4188 megasas - ok
14:26:08.0084 4188 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
14:26:08.0097 4188 MegaSR - ok
14:26:08.0257 4188 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
14:26:08.0266 4188 Microsoft Office Groove Audit Service - ok
14:26:08.0293 4188 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
14:26:08.0315 4188 MMCSS - ok
14:26:08.0319 4188 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
14:26:08.0340 4188 Modem - ok
14:26:08.0349 4188 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:26:08.0364 4188 monitor - ok
14:26:08.0368 4188 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
14:26:08.0378 4188 mouclass - ok
14:26:08.0381 4188 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:26:08.0393 4188 mouhid - ok
14:26:08.0408 4188 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:26:08.0418 4188 mountmgr - ok
14:26:08.0459 4188 [ E8D79312373F254DC13F3965BDB3D521 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
14:26:08.0469 4188 MozillaMaintenance - ok
14:26:08.0501 4188 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
14:26:08.0512 4188 mpio - ok
14:26:08.0516 4188 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:26:08.0535 4188 mpsdrv - ok
14:26:08.0559 4188 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
14:26:08.0585 4188 MpsSvc - ok
14:26:08.0601 4188 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:26:08.0614 4188 MRxDAV - ok
14:26:08.0649 4188 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:26:08.0660 4188 mrxsmb - ok
14:26:08.0678 4188 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:26:08.0689 4188 mrxsmb10 - ok
14:26:08.0707 4188 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:26:08.0717 4188 mrxsmb20 - ok
14:26:08.0736 4188 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
14:26:08.0746 4188 msahci - ok
14:26:08.0759 4188 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:26:08.0770 4188 msdsm - ok
14:26:08.0788 4188 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
14:26:08.0801 4188 MSDTC - ok
14:26:08.0808 4188 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:26:08.0828 4188 Msfs - ok
14:26:08.0848 4188 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:26:08.0867 4188 mshidkmdf - ok
14:26:08.0878 4188 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:26:08.0888 4188 msisadrv - ok
14:26:08.0916 4188 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:26:08.0937 4188 MSiSCSI - ok
14:26:08.0940 4188 msiserver - ok
14:26:08.0957 4188 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:26:08.0977 4188 MSKSSRV - ok
14:26:08.0992 4188 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:26:09.0012 4188 MSPCLOCK - ok
14:26:09.0022 4188 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:26:09.0042 4188 MSPQM - ok
14:26:09.0063 4188 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:26:09.0074 4188 MsRPC - ok
14:26:09.0094 4188 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
14:26:09.0104 4188 mssmbios - ok
14:26:09.0113 4188 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:26:09.0133 4188 MSTEE - ok
14:26:09.0148 4188 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
14:26:09.0159 4188 MTConfig - ok
14:26:09.0193 4188 [ D48659BB24C48345D926ECB45C1EBDF5 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
14:26:09.0202 4188 MTsensor - ok
14:26:09.0224 4188 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
14:26:09.0234 4188 Mup - ok
14:26:09.0271 4188 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
14:26:09.0294 4188 napagent - ok
14:26:09.0316 4188 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:26:09.0331 4188 NativeWifiP - ok
14:26:09.0360 4188 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:26:09.0377 4188 NDIS - ok
14:26:09.0384 4188 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:26:09.0407 4188 NdisCap - ok
14:26:09.0423 4188 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:26:09.0443 4188 NdisTapi - ok
14:26:09.0451 4188 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:26:09.0471 4188 Ndisuio - ok
14:26:09.0484 4188 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:26:09.0504 4188 NdisWan - ok
14:26:09.0516 4188 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:26:09.0535 4188 NDProxy - ok
14:26:09.0540 4188 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:26:09.0560 4188 NetBIOS - ok
14:26:09.0580 4188 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:26:09.0601 4188 NetBT - ok
14:26:09.0622 4188 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
14:26:09.0634 4188 Netlogon - ok
14:26:09.0651 4188 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
14:26:09.0675 4188 Netman - ok
14:26:09.0693 4188 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
14:26:09.0717 4188 netprofm - ok
14:26:09.0750 4188 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:26:09.0759 4188 NetTcpPortSharing - ok
14:26:09.0779 4188 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
14:26:09.0790 4188 nfrd960 - ok
14:26:09.0805 4188 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:26:09.0828 4188 NlaSvc - ok
14:26:09.0832 4188 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:26:09.0853 4188 Npfs - ok
14:26:09.0873 4188 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
14:26:09.0895 4188 nsi - ok
14:26:09.0911 4188 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:26:09.0931 4188 nsiproxy - ok
14:26:09.0990 4188 [ 81189C3D7763838E55C397759D49007A ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:26:10.0013 4188 Ntfs - ok
14:26:10.0031 4188 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
14:26:10.0051 4188 Null - ok
14:26:10.0080 4188 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
14:26:10.0094 4188 NVENETFD - ok
14:26:10.0339 4188 [ 4152708C0C24E30DAE7FA87D5AFE1D7B ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:26:10.0463 4188 nvlddmkm - ok
14:26:10.0494 4188 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:26:10.0505 4188 nvraid - ok
14:26:10.0519 4188 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:26:10.0530 4188 nvstor - ok
14:26:10.0552 4188 [ 26DB28B32E8D2F57CB5065A4A053801A ] nvsvc C:\Windows\system32\nvvsvc.exe
14:26:10.0568 4188 nvsvc - ok
14:26:10.0588 4188 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:26:10.0599 4188 nv_agp - ok
14:26:10.0716 4188 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
14:26:10.0729 4188 odserv - ok
14:26:10.0751 4188 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:26:10.0762 4188 ohci1394 - ok
14:26:10.0788 4188 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:26:10.0797 4188 ose - ok
14:26:10.0828 4188 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:26:10.0843 4188 p2pimsvc - ok
14:26:10.0866 4188 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
14:26:10.0881 4188 p2psvc - ok
14:26:10.0900 4188 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:26:10.0911 4188 Parport - ok
14:26:10.0947 4188 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:26:10.0958 4188 partmgr - ok
14:26:10.0974 4188 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
14:26:10.0985 4188 Parvdm - ok
14:26:10.0998 4188 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:26:11.0014 4188 PcaSvc - ok
14:26:11.0028 4188 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
14:26:11.0039 4188 pci - ok
14:26:11.0052 4188 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
14:26:11.0062 4188 pciide - ok
14:26:11.0083 4188 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
14:26:11.0095 4188 pcmcia - ok
14:26:11.0116 4188 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
14:26:11.0126 4188 pcw - ok
14:26:11.0157 4188 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:26:11.0182 4188 PEAUTH - ok
14:26:11.0261 4188 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
14:26:11.0281 4188 PeerDistSvc - ok
14:26:11.0334 4188 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
14:26:11.0368 4188 pla - ok
14:26:11.0415 4188 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:26:11.0431 4188 PlugPlay - ok
14:26:11.0465 4188 [ 3A2BDD76E7D2A5F40A7174793D1BA794 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
14:26:11.0475 4188 PnkBstrA - ok
14:26:11.0501 4188 [ 9A386EC60A166DF66205343CA12C6B86 ] PnkBstrB C:\Windows\system32\PnkBstrB.exe
14:26:11.0512 4188 PnkBstrB - ok
14:26:11.0528 4188 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:26:11.0541 4188 PNRPAutoReg - ok
14:26:11.0558 4188 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:26:11.0572 4188 PNRPsvc - ok
14:26:11.0602 4188 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:26:11.0625 4188 PolicyAgent - ok
14:26:11.0659 4188 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
14:26:11.0682 4188 Power - ok
14:26:11.0694 4188 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:26:11.0715 4188 PptpMiniport - ok
14:26:11.0729 4188 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
14:26:11.0740 4188 Processor - ok
14:26:11.0778 4188 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
14:26:11.0792 4188 ProfSvc - ok
14:26:11.0805 4188 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:26:11.0816 4188 ProtectedStorage - ok
14:26:11.0831 4188 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:26:11.0853 4188 Psched - ok
14:26:11.0893 4188 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
14:26:11.0918 4188 ql2300 - ok
14:26:11.0942 4188 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
14:26:11.0953 4188 ql40xx - ok
14:26:11.0987 4188 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
14:26:12.0004 4188 QWAVE - ok
14:26:12.0013 4188 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:26:12.0026 4188 QWAVEdrv - ok
14:26:12.0097 4188 [ E155E09229624C69A1A6609C0CB3641F ] RalinkRegistryWriter C:\Program Files\Ralink\Common\RaRegistry.exe
14:26:12.0106 4188 RalinkRegistryWriter - ok
14:26:12.0129 4188 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:26:12.0150 4188 RasAcd - ok
14:26:12.0173 4188 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:26:12.0192 4188 RasAgileVpn - ok
14:26:12.0204 4188 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
14:26:12.0228 4188 RasAuto - ok
14:26:12.0249 4188 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:26:12.0269 4188 Rasl2tp - ok
14:26:12.0287 4188 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
14:26:12.0310 4188 RasMan - ok
14:26:12.0320 4188 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:26:12.0341 4188 RasPppoe - ok
14:26:12.0363 4188 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:26:12.0383 4188 RasSstp - ok
14:26:12.0405 4188 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:26:12.0426 4188 rdbss - ok
14:26:12.0438 4188 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:26:12.0450 4188 rdpbus - ok
14:26:12.0464 4188 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:26:12.0483 4188 RDPCDD - ok
14:26:12.0508 4188 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
14:26:12.0519 4188 RDPDR - ok
14:26:12.0534 4188 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:26:12.0553 4188 RDPENCDD - ok
14:26:12.0563 4188 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:26:12.0582 4188 RDPREFMP - ok
14:26:12.0618 4188 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:26:12.0629 4188 RDPWD - ok
14:26:12.0645 4188 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:26:12.0657 4188 rdyboost - ok
14:26:12.0686 4188 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
14:26:12.0708 4188 RemoteAccess - ok
14:26:12.0735 4188 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:26:12.0759 4188 RemoteRegistry - ok
14:26:12.0768 4188 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:26:12.0791 4188 RpcEptMapper - ok
14:26:12.0820 4188 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
14:26:12.0832 4188 RpcLocator - ok
14:26:12.0861 4188 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
14:26:12.0885 4188 RpcSs - ok
14:26:12.0889 4188 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:26:12.0910 4188 rspndr - ok
14:26:12.0946 4188 [ 027158280EDF528EE322CFD00AE9E9BE ] rt61x86 C:\Windows\system32\DRIVERS\netr61.sys
14:26:12.0958 4188 rt61x86 - ok
14:26:12.0979 4188 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
14:26:12.0990 4188 s3cap - ok
14:26:13.0008 4188 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
14:26:13.0019 4188 SamSs - ok
14:26:13.0041 4188 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:26:13.0051 4188 sbp2port - ok
14:26:13.0079 4188 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:26:13.0102 4188 SCardSvr - ok
14:26:13.0117 4188 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:26:13.0136 4188 scfilter - ok
14:26:13.0167 4188 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
14:26:13.0194 4188 Schedule - ok
14:26:13.0212 4188 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:26:13.0232 4188 SCPolicySvc - ok
14:26:13.0263 4188 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:26:13.0276 4188 SDRSVC - ok
14:26:13.0286 4188 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:26:13.0306 4188 secdrv - ok
14:26:13.0319 4188 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
14:26:13.0342 4188 seclogon - ok
14:26:13.0356 4188 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\system32\sens.dll
14:26:13.0380 4188 SENS - ok
14:26:13.0424 4188 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:26:13.0437 4188 SensrSvc - ok
14:26:13.0456 4188 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:26:13.0466 4188 Serenum - ok
14:26:13.0497 4188 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:26:13.0509 4188 Serial - ok
14:26:13.0565 4188 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
14:26:13.0576 4188 sermouse - ok
14:26:13.0599 4188 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
14:26:13.0621 4188 SessionEnv - ok
14:26:13.0632 4188 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:26:13.0643 4188 sffdisk - ok
14:26:13.0647 4188 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:26:13.0659 4188 sffp_mmc - ok
14:26:13.0671 4188 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:26:13.0683 4188 sffp_sd - ok
14:26:13.0696 4188 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
14:26:13.0707 4188 sfloppy - ok
14:26:13.0729 4188 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
14:26:13.0752 4188 SharedAccess - ok
14:26:13.0782 4188 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:26:13.0806 4188 ShellHWDetection - ok
14:26:13.0809 4188 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
14:26:13.0820 4188 sisagp - ok
14:26:13.0823 4188 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
14:26:13.0834 4188 SiSRaid2 - ok
14:26:13.0849 4188 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
14:26:13.0860 4188 SiSRaid4 - ok
14:26:13.0868 4188 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:26:13.0889 4188 Smb - ok
14:26:13.0911 4188 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:26:13.0924 4188 SNMPTRAP - ok
14:26:13.0933 4188 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
14:26:13.0943 4188 spldr - ok
14:26:13.0977 4188 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
14:26:13.0992 4188 Spooler - ok
14:26:14.0078 4188 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
14:26:14.0128 4188 sppsvc - ok
14:26:14.0146 4188 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:26:14.0168 4188 sppuinotify - ok
14:26:14.0212 4188 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
14:26:14.0224 4188 srv - ok
14:26:14.0242 4188 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:26:14.0255 4188 srv2 - ok
14:26:14.0280 4188 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:26:14.0291 4188 srvnet - ok
14:26:14.0319 4188 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:26:14.0343 4188 SSDPSRV - ok
14:26:14.0358 4188 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:26:14.0381 4188 SstpSvc - ok
14:26:14.0404 4188 Steam Client Service - ok
14:26:14.0460 4188 [ 9BF7E58D9113CE15CF4F1E1B18CEFF83 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
14:26:14.0471 4188 Stereo Service - ok
14:26:14.0490 4188 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
14:26:14.0499 4188 stexstor - ok
14:26:14.0532 4188 [ EDB05BD63148796F23EA78506404A538 ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
14:26:14.0543 4188 StillCam - ok
14:26:14.0581 4188 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
14:26:14.0601 4188 StiSvc - ok
14:26:14.0629 4188 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
14:26:14.0639 4188 storflt - ok
14:26:14.0657 4188 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
14:26:14.0671 4188 StorSvc - ok
14:26:14.0685 4188 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
14:26:14.0695 4188 storvsc - ok
14:26:14.0699 4188 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
14:26:14.0709 4188 swenum - ok
14:26:14.0732 4188 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
14:26:14.0757 4188 swprv - ok
14:26:14.0807 4188 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
14:26:14.0832 4188 SysMain - ok
14:26:14.0847 4188 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:26:14.0863 4188 TabletInputService - ok
14:26:14.0877 4188 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
14:26:14.0901 4188 TapiSrv - ok
14:26:14.0912 4188 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
14:26:14.0935 4188 TBS - ok
14:26:15.0000 4188 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:26:15.0024 4188 Tcpip - ok
14:26:15.0058 4188 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:26:15.0082 4188 TCPIP6 - ok
14:26:15.0094 4188 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:26:15.0114 4188 tcpipreg - ok
14:26:15.0130 4188 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:26:15.0140 4188 TDPIPE - ok
14:26:15.0177 4188 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:26:15.0187 4188 TDTCP - ok
14:26:15.0204 4188 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:26:15.0223 4188 tdx - ok
14:26:15.0233 4188 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
14:26:15.0243 4188 TermDD - ok
14:26:15.0275 4188 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
14:26:15.0301 4188 TermService - ok
14:26:15.0314 4188 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
14:26:15.0330 4188 Themes - ok
14:26:15.0347 4188 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
14:26:15.0369 4188 THREADORDER - ok
14:26:15.0387 4188 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
14:26:15.0411 4188 TrkWks - ok
14:26:15.0469 4188 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:26:15.0489 4188 TrustedInstaller - ok
14:26:15.0509 4188 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:26:15.0528 4188 tssecsrv - ok
14:26:15.0546 4188 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:26:15.0557 4188 TsUsbFlt - ok
14:26:15.0565 4188 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
14:26:15.0575 4188 TsUsbGD - ok
14:26:15.0595 4188 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:26:15.0616 4188 tunnel - ok
14:26:15.0631 4188 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
14:26:15.0641 4188 uagp35 - ok
14:26:15.0666 4188 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:26:15.0687 4188 udfs - ok
14:26:15.0711 4188 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:26:15.0725 4188 UI0Detect - ok
14:26:15.0740 4188 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:26:15.0750 4188 uliagpkx - ok
14:26:15.0762 4188 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
14:26:15.0773 4188 umbus - ok
14:26:15.0788 4188 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
14:26:15.0799 4188 UmPass - ok
14:26:15.0824 4188 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
14:26:15.0839 4188 UmRdpService - ok
14:26:15.0853 4188 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
14:26:15.0879 4188 upnphost - ok
14:26:15.0915 4188 [ 83CAFCB53201BBAC04D822F32438E244 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
14:26:15.0924 4188 USBAAPL - ok
14:26:15.0962 4188 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:26:15.0974 4188 usbaudio - ok
14:26:16.0000 4188 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:26:16.0010 4188 usbccgp - ok
14:26:16.0025 4188 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:26:16.0037 4188 usbcir - ok
14:26:16.0062 4188 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:26:16.0072 4188 usbehci - ok
14:26:16.0099 4188 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:26:16.0111 4188 usbhub - ok
14:26:16.0130 4188 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:26:16.0140 4188 usbohci - ok
14:26:16.0159 4188 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\drivers\usbprint.sys
14:26:16.0171 4188 usbprint - ok
14:26:16.0205 4188 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:26:16.0215 4188 USBSTOR - ok
14:26:16.0224 4188 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:26:16.0235 4188 usbuhci - ok
14:26:16.0261 4188 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
14:26:16.0283 4188 UxSms - ok
14:26:16.0302 4188 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
14:26:16.0314 4188 VaultSvc - ok
14:26:16.0335 4188 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:26:16.0345 4188 vdrvroot - ok
14:26:16.0368 4188 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
14:26:16.0395 4188 vds - ok
14:26:16.0433 4188 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:26:16.0445 4188 vga - ok
14:26:16.0454 4188 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
14:26:16.0474 4188 VgaSave - ok
14:26:16.0491 4188 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:26:16.0502 4188 vhdmp - ok
14:26:16.0515 4188 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
14:26:16.0525 4188 viaagp - ok
14:26:16.0530 4188 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
14:26:16.0541 4188 ViaC7 - ok
14:26:16.0545 4188 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
14:26:16.0555 4188 viaide - ok
14:26:16.0580 4188 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
14:26:16.0592 4188 vmbus - ok
14:26:16.0604 4188 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
14:26:16.0615 4188 VMBusHID - ok
14:26:16.0626 4188 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:26:16.0636 4188 volmgr - ok
14:26:16.0659 4188 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:26:16.0672 4188 volmgrx - ok
14:26:16.0688 4188 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:26:16.0700 4188 volsnap - ok
14:26:16.0718 4188 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
14:26:16.0729 4188 vsmraid - ok
14:26:16.0778 4188 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
14:26:16.0808 4188 VSS - ok
14:26:16.0812 4188 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
14:26:16.0824 4188 vwifibus - ok
14:26:16.0837 4188 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
14:26:16.0850 4188 vwififlt - ok
14:26:16.0867 4188 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
14:26:16.0880 4188 vwifimp - ok
14:26:16.0902 4188 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
14:26:16.0927 4188 W32Time - ok
14:26:16.0948 4188 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
14:26:16.0958 4188 WacomPen - ok
14:26:16.0963 4188 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:26:16.0983 4188 WANARP - ok
14:26:16.0986 4188 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:26:17.0005 4188 Wanarpv6 - ok
14:26:17.0069 4188 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:26:17.0094 4188 WatAdminSvc - ok
14:26:17.0131 4188 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
14:26:17.0155 4188 wbengine - ok
14:26:17.0168 4188 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:26:17.0185 4188 WbioSrvc - ok
14:26:17.0199 4188 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:26:17.0217 4188 wcncsvc - ok
14:26:17.0231 4188 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:26:17.0245 4188 WcsPlugInService - ok
14:26:17.0248 4188 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
14:26:17.0258 4188 Wd - ok
14:26:17.0283 4188 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:26:17.0297 4188 Wdf01000 - ok
14:26:17.0302 4188 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:26:17.0318 4188 WdiServiceHost - ok
14:26:17.0321 4188 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:26:17.0337 4188 WdiSystemHost - ok
14:26:17.0356 4188 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
14:26:17.0374 4188 WebClient - ok
14:26:17.0391 4188 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:26:17.0416 4188 Wecsvc - ok
14:26:17.0426 4188 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:26:17.0449 4188 wercplsupport - ok
14:26:17.0460 4188 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
14:26:17.0484 4188 WerSvc - ok
14:26:17.0504 4188 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:26:17.0524 4188 WfpLwf - ok
14:26:17.0543 4188 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:26:17.0553 4188 WIMMount - ok
14:26:17.0619 4188 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
14:26:17.0636 4188 WinDefend - ok
14:26:17.0640 4188 WinHttpAutoProxySvc - ok
14:26:17.0783 4188 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:26:17.0803 4188 Winmgmt - ok
14:26:17.0883 4188 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
14:26:17.0916 4188 WinRM - ok
14:26:17.0952 4188 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
14:26:17.0964 4188 WinUsb - ok
14:26:18.0008 4188 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
14:26:18.0031 4188 Wlansvc - ok
14:26:18.0105 4188 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:26:18.0134 4188 wlidsvc - ok
14:26:18.0150 4188 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:26:18.0161 4188 WmiAcpi - ok
14:26:18.0188 4188 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:26:18.0200 4188 wmiApSrv - ok
14:26:18.0250 4188 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
14:26:18.0269 4188 WMPNetworkSvc - ok
14:26:18.0290 4188 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:26:18.0303 4188 WPCSvc - ok
14:26:18.0316 4188 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:26:18.0331 4188 WPDBusEnum - ok
14:26:18.0342 4188 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:26:18.0362 4188 ws2ifsl - ok
14:26:18.0392 4188 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\system32\wscsvc.dll
14:26:18.0408 4188 wscsvc - ok
14:26:18.0436 4188 [ 553F6CCD7C58EB98D4A8FBDAF283D7A9 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
14:26:18.0448 4188 WSDPrintDevice - ok
14:26:18.0451 4188 WSearch - ok
14:26:18.0527 4188 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
14:26:18.0560 4188 wuauserv - ok
14:26:18.0582 4188 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:26:18.0601 4188 WudfPf - ok
14:26:18.0616 4188 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:26:18.0636 4188 WUDFRd - ok
14:26:18.0652 4188 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:26:18.0675 4188 wudfsvc - ok
14:26:18.0699 4188 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
14:26:18.0716 4188 WwanSvc - ok
14:26:18.0758 4188 [ CE0C846127D6ABB1E2A22E59682B2527 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys
14:26:18.0774 4188 xnacc - ok
14:26:18.0780 4188 ================ Scan global ===============================
14:26:18.0809 4188 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
14:26:18.0837 4188 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
14:26:18.0846 4188 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
14:26:18.0881 4188 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
14:26:18.0909 4188 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
14:26:18.0913 4188 [Global] - ok
14:26:18.0913 4188 ================ Scan MBR ==================================
14:26:18.0927 4188 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:26:19.0150 4188 \Device\Harddisk0\DR0 - ok
14:26:19.0150 4188 ================ Scan VBR ==================================
14:26:19.0152 4188 [ AB7D97224353956932B64F6930BC2274 ] \Device\Harddisk0\DR0\Partition1
14:26:19.0153 4188 \Device\Harddisk0\DR0\Partition1 - ok
14:26:19.0153 4188 ============================================================
14:26:19.0153 4188 Scan finished
14:26:19.0153 4188 ============================================================
14:26:19.0159 4792 Detected object count: 0
14:26:19.0159 4792 Actual detected object count: 0
14:26:24.0289 4508 Deinitialize success


Also, I ran TDSSKiller before as per site instructions, here's log 1:

22:17:40.0135 8912 TDSS rootkit removing tool 2.8.7.0 Aug 20 2012 17:30:03
22:17:40.0511 8912 ============================================================
22:17:40.0511 8912 Current date / time: 2012/08/23 22:17:40.0511
22:17:40.0511 8912 SystemInfo:
22:17:40.0511 8912
22:17:40.0511 8912 OS Version: 6.1.7601 ServicePack: 1.0
22:17:40.0511 8912 Product type: Workstation
22:17:40.0511 8912 ComputerName: ANDREW-PC
22:17:40.0511 8912 UserName: Andrew
22:17:40.0511 8912 Windows directory: C:\Windows
22:17:40.0511 8912 System windows directory: C:\Windows
22:17:40.0511 8912 Processor architecture: Intel x86
22:17:40.0511 8912 Number of processors: 2
22:17:40.0511 8912 Page size: 0x1000
22:17:40.0511 8912 Boot type: Normal boot
22:17:40.0511 8912 ============================================================
22:17:42.0392 8912 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:17:42.0619 8912 ============================================================
22:17:42.0619 8912 \Device\Harddisk0\DR0:
22:17:42.0621 8912 MBR partitions:
22:17:42.0621 8912 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41
22:17:42.0621 8912 ============================================================
22:17:42.0645 8912 C: <-> \Device\Harddisk0\DR0\Partition1
22:17:42.0654 8912 ============================================================
22:17:42.0654 8912 Initialize success
22:17:42.0654 8912 ============================================================
22:17:44.0881 3480 ============================================================
22:17:44.0881 3480 Scan started
22:17:44.0881 3480 Mode: Manual;
22:17:44.0881 3480 ============================================================
22:17:47.0277 3480 ================ Scan system memory ========================
22:17:47.0277 3480 System memory - ok
22:17:47.0277 3480 ================ Scan services =============================
22:17:47.0820 3480 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
22:17:47.0823 3480 1394ohci - ok
22:17:47.0856 3480 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys
22:17:47.0860 3480 ACPI - ok
22:17:47.0882 3480 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
22:17:47.0883 3480 AcpiPmi - ok
22:17:48.0042 3480 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
22:17:48.0043 3480 AdobeARMservice - ok
22:17:48.0077 3480 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
22:17:48.0082 3480 adp94xx - ok
22:17:48.0101 3480 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys
22:17:48.0181 3480 adpahci - ok
22:17:48.0250 3480 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
22:17:48.0252 3480 adpu320 - ok
22:17:48.0289 3480 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:17:48.0290 3480 AeLookupSvc - ok
22:17:48.0350 3480 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys
22:17:48.0355 3480 AFD - ok
22:17:48.0373 3480 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys
22:17:48.0375 3480 agp440 - ok
22:17:48.0399 3480 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys
22:17:48.0401 3480 aic78xx - ok
22:17:48.0433 3480 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
22:17:48.0435 3480 ALG - ok
22:17:48.0451 3480 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys
22:17:48.0452 3480 aliide - ok
22:17:48.0461 3480 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys
22:17:48.0462 3480 amdagp - ok
22:17:48.0466 3480 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys
22:17:48.0467 3480 amdide - ok
22:17:48.0475 3480 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
22:17:48.0477 3480 AmdK8 - ok
22:17:48.0487 3480 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
22:17:48.0488 3480 AmdPPM - ok
22:17:48.0528 3480 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:17:48.0530 3480 amdsata - ok
22:17:48.0579 3480 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
22:17:48.0582 3480 amdsbs - ok
22:17:48.0615 3480 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:17:48.0616 3480 amdxata - ok
22:17:48.0638 3480 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys
22:17:48.0640 3480 AppID - ok
22:17:48.0668 3480 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:17:48.0670 3480 AppIDSvc - ok
22:17:48.0674 3480 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll
22:17:48.0676 3480 Appinfo - ok
22:17:48.0862 3480 [ 20F6F19FE9E753F2780DC2FA083AD597 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:17:48.0913 3480 Apple Mobile Device - ok
22:17:49.0031 3480 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
22:17:49.0034 3480 AppMgmt - ok
22:17:49.0045 3480 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys
22:17:49.0047 3480 arc - ok
22:17:49.0060 3480 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys
22:17:49.0061 3480 arcsas - ok
22:17:49.0119 3480 [ 054DF24C92B55427E0757CFFF160E4F2 ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
22:17:49.0121 3480 aswFsBlk - ok
22:17:49.0175 3480 [ 258143605E77E4008F1758481D6A977D ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
22:17:49.0177 3480 aswMonFlt - ok
22:17:49.0204 3480 [ 352D5A48EBAB35A7693B048679304831 ] aswRdr C:\Windows\system32\drivers\aswRdr.sys
22:17:49.0205 3480 aswRdr - ok
22:17:49.0223 3480 [ 8D34D2B24297E27D93E847319ABFDEC4 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
22:17:49.0228 3480 aswSnx - ok
22:17:49.0273 3480 [ 010012597333DA1F46C3243F33F8409E ] aswSP C:\Windows\system32\drivers\aswSP.sys
22:17:49.0278 3480 aswSP - ok
22:17:49.0303 3480 [ F9F84364416658E9786235904D448D37 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
22:17:49.0304 3480 aswTdi - ok
22:17:49.0324 3480 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:17:49.0325 3480 AsyncMac - ok
22:17:49.0346 3480 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys
22:17:49.0347 3480 atapi - ok
22:17:49.0373 3480 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:17:49.0379 3480 AudioEndpointBuilder - ok
22:17:49.0386 3480 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll
22:17:49.0388 3480 Audiosrv - ok
22:17:49.0478 3480 [ 996E6D052438E8D8DFD501F31560B2E0 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:17:49.0479 3480 avast! Antivirus - ok
22:17:49.0523 3480 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:17:49.0525 3480 AxInstSV - ok
22:17:49.0568 3480 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
22:17:49.0574 3480 b06bdrv - ok
22:17:49.0598 3480 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
22:17:49.0601 3480 b57nd60x - ok
22:17:49.0626 3480 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
22:17:49.0628 3480 BDESVC - ok
22:17:49.0653 3480 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
22:17:49.0654 3480 Beep - ok
22:17:49.0691 3480 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll
22:17:49.0697 3480 BFE - ok
22:17:49.0738 3480 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll
22:17:49.0752 3480 BITS - ok
22:17:49.0773 3480 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:17:49.0774 3480 blbdrive - ok
22:17:49.0827 3480 [ 1C87705CCB2F60172B0FC86B5D82F00D ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:17:49.0831 3480 Bonjour Service - ok
22:17:49.0860 3480 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:17:49.0862 3480 bowser - ok
22:17:49.0879 3480 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
22:17:49.0880 3480 BrFiltLo - ok
22:17:49.0897 3480 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
22:17:49.0898 3480 BrFiltUp - ok
22:17:49.0937 3480 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll
22:17:49.0939 3480 Browser - ok
22:17:49.0958 3480 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:17:49.0962 3480 Brserid - ok
22:17:49.0979 3480 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:17:49.0980 3480 BrSerWdm - ok
22:17:49.0992 3480 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:17:49.0993 3480 BrUsbMdm - ok
22:17:50.0007 3480 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:17:50.0009 3480 BrUsbSer - ok
22:17:50.0025 3480 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
22:17:50.0026 3480 BTHMODEM - ok
22:17:50.0057 3480 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
22:17:50.0059 3480 bthserv - ok
22:17:50.0063 3480 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:17:50.0065 3480 cdfs - ok
22:17:50.0095 3480 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:17:50.0097 3480 cdrom - ok
22:17:50.0120 3480 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll
22:17:50.0122 3480 CertPropSvc - ok
22:17:50.0150 3480 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys
22:17:50.0152 3480 circlass - ok
22:17:50.0183 3480 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
22:17:50.0186 3480 CLFS - ok
22:17:50.0411 3480 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:17:50.0415 3480 clr_optimization_v2.0.50727_32 - ok
22:17:50.0653 3480 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:17:50.0677 3480 clr_optimization_v4.0.30319_32 - ok
22:17:50.0703 3480 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
22:17:50.0705 3480 CmBatt - ok
22:17:50.0723 3480 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:17:50.0725 3480 cmdide - ok
22:17:50.0776 3480 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys
22:17:50.0780 3480 CNG - ok
22:17:50.0784 3480 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\drivers\compbatt.sys
22:17:50.0786 3480 Compbatt - ok
22:17:50.0830 3480 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
22:17:50.0831 3480 CompositeBus - ok
22:17:50.0834 3480 COMSysApp - ok
22:17:50.0844 3480 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
22:17:50.0845 3480 crcdisk - ok
22:17:50.0888 3480 [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:17:50.0890 3480 CryptSvc - ok
22:17:50.0924 3480 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys
22:17:50.0929 3480 CSC - ok
22:17:50.0970 3480 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll
22:17:50.0976 3480 CscService - ok
22:17:51.0031 3480 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll
22:17:51.0038 3480 DcomLaunch - ok
22:17:51.0065 3480 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
22:17:51.0069 3480 defragsvc - ok
22:17:51.0090 3480 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:17:51.0092 3480 DfsC - ok
22:17:51.0117 3480 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll
22:17:51.0121 3480 Dhcp - ok
22:17:51.0125 3480 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
22:17:51.0127 3480 discache - ok
22:17:51.0153 3480 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys
22:17:51.0154 3480 Disk - ok
22:17:51.0180 3480 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
22:17:51.0182 3480 dmvsc - ok
22:17:51.0222 3480 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:17:51.0225 3480 Dnscache - ok
22:17:51.0248 3480 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll
22:17:51.0252 3480 dot3svc - ok
22:17:51.0265 3480 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll
22:17:51.0269 3480 DPS - ok
22:17:51.0303 3480 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:17:51.0304 3480 drmkaud - ok
22:17:51.0333 3480 [ FB38473835476A6FB272215A1D972AF9 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
22:17:51.0337 3480 dtsoftbus01 - ok
22:17:51.0369 3480 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:17:51.0388 3480 DXGKrnl - ok
22:17:51.0419 3480 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
22:17:51.0422 3480 EapHost - ok
22:17:51.0518 3480 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
22:17:51.0593 3480 ebdrv - ok
22:17:51.0634 3480 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe
22:17:51.0637 3480 EFS - ok
22:17:51.0737 3480 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:17:51.0747 3480 ehRecvr - ok
22:17:51.0760 3480 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
22:17:51.0761 3480 ehSched - ok
22:17:51.0786 3480 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys
22:17:51.0791 3480 elxstor - ok
22:17:51.0799 3480 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:17:51.0801 3480 ErrDev - ok
22:17:51.0822 3480 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
22:17:51.0827 3480 EventSystem - ok
22:17:51.0842 3480 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
22:17:51.0844 3480 exfat - ok
22:17:51.0860 3480 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:17:51.0863 3480 fastfat - ok
22:17:51.0908 3480 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe
22:17:51.0915 3480 Fax - ok
22:17:51.0928 3480 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
22:17:51.0929 3480 fdc - ok
22:17:51.0956 3480 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
22:17:51.0958 3480 fdPHost - ok
22:17:51.0973 3480 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
22:17:51.0990 3480 FDResPub - ok
22:17:52.0010 3480 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:17:52.0011 3480 FileInfo - ok
22:17:52.0020 3480 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:17:52.0022 3480 Filetrace - ok
22:17:52.0053 3480 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
22:17:52.0054 3480 flpydisk - ok
22:17:52.0071 3480 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:17:52.0074 3480 FltMgr - ok
22:17:52.0114 3480 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll
22:17:52.0138 3480 FontCache - ok
22:17:52.0201 3480 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:17:52.0204 3480 FontCache3.0.0.0 - ok
22:17:52.0208 3480 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:17:52.0209 3480 FsDepends - ok
22:17:52.0230 3480 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:17:52.0231 3480 Fs_Rec - ok
22:17:52.0264 3480 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:17:52.0267 3480 fvevol - ok
22:17:52.0290 3480 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
22:17:52.0292 3480 gagp30kx - ok
22:17:52.0320 3480 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:17:52.0322 3480 GEARAspiWDM - ok
22:17:52.0356 3480 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll
22:17:52.0365 3480 gpsvc - ok
22:17:52.0378 3480 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:17:52.0379 3480 hcw85cir - ok
22:17:52.0428 3480 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:17:52.0432 3480 HdAudAddService - ok
22:17:52.0463 3480 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:17:52.0465 3480 HDAudBus - ok
22:17:52.0476 3480 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
22:17:52.0477 3480 HidBatt - ok
22:17:52.0489 3480 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys
22:17:52.0491 3480 HidBth - ok
22:17:52.0514 3480 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys
22:17:52.0516 3480 HidIr - ok
22:17:52.0537 3480 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
22:17:52.0539 3480 hidserv - ok
22:17:52.0562 3480 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:17:52.0563 3480 HidUsb - ok
22:17:52.0630 3480 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:17:52.0633 3480 hkmsvc - ok
22:17:52.0655 3480 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:17:52.0659 3480 HomeGroupListener - ok
22:17:52.0699 3480 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:17:52.0704 3480 HomeGroupProvider - ok
22:17:52.0724 3480 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
22:17:52.0726 3480 HpSAMD - ok
22:17:52.0749 3480 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:17:52.0755 3480 HTTP - ok
22:17:52.0759 3480 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:17:52.0760 3480 hwpolicy - ok
22:17:52.0786 3480 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:17:52.0788 3480 i8042prt - ok
22:17:52.0825 3480 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:17:52.0829 3480 iaStorV - ok
22:17:52.0905 3480 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:17:52.0930 3480 idsvc - ok
22:17:52.0943 3480 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys
22:17:52.0944 3480 iirsp - ok
22:17:52.0994 3480 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll
22:17:53.0011 3480 IKEEXT - ok
22:17:53.0027 3480 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys
22:17:53.0028 3480 intelide - ok
22:17:53.0046 3480 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
22:17:53.0048 3480 intelppm - ok
22:17:53.0079 3480 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:17:53.0082 3480 IPBusEnum - ok
22:17:53.0107 3480 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:17:53.0109 3480 IpFilterDriver - ok
22:17:53.0130 3480 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:17:53.0137 3480 iphlpsvc - ok
22:17:53.0149 3480 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
22:17:53.0151 3480 IPMIDRV - ok
22:17:53.0166 3480 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:17:53.0168 3480 IPNAT - ok
22:17:53.0212 3480 [ 3A6D4D8ABACF64292D060C9E06D2050D ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
22:17:53.0235 3480 iPod Service - ok
22:17:53.0252 3480 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:17:53.0254 3480 IRENUM - ok
22:17:53.0266 3480 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:17:53.0267 3480 isapnp - ok
22:17:53.0282 3480 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
22:17:53.0286 3480 iScsiPrt - ok
22:17:53.0301 3480 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:17:53.0302 3480 kbdclass - ok
22:17:53.0320 3480 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
22:17:53.0321 3480 kbdhid - ok
22:17:53.0335 3480 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe
22:17:53.0337 3480 KeyIso - ok
22:17:53.0379 3480 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:17:53.0381 3480 KSecDD - ok
22:17:53.0422 3480 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:17:53.0424 3480 KSecPkg - ok
22:17:53.0460 3480 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
22:17:53.0466 3480 KtmRm - ok
22:17:53.0507 3480 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll
22:17:53.0513 3480 LanmanServer - ok
22:17:53.0542 3480 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:17:53.0547 3480 LanmanWorkstation - ok
22:17:53.0578 3480 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:17:53.0580 3480 lltdio - ok
22:17:53.0611 3480 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:17:53.0615 3480 lltdsvc - ok
22:17:53.0629 3480 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
22:17:53.0632 3480 lmhosts - ok
22:17:53.0658 3480 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
22:17:53.0660 3480 LSI_FC - ok
22:17:53.0673 3480 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
22:17:53.0675 3480 LSI_SAS - ok
22:17:53.0685 3480 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
22:17:53.0686 3480 LSI_SAS2 - ok
22:17:53.0701 3480 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
22:17:53.0703 3480 LSI_SCSI - ok
22:17:53.0714 3480 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
22:17:53.0716 3480 luafv - ok
22:17:53.0748 3480 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:17:53.0751 3480 Mcx2Svc - ok
22:17:53.0766 3480 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys
22:17:53.0768 3480 megasas - ok
22:17:53.0781 3480 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
22:17:53.0785 3480 MegaSR - ok
22:17:53.0962 3480 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
22:17:53.0965 3480 Microsoft Office Groove Audit Service - ok
22:17:53.0990 3480 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
22:17:53.0993 3480 MMCSS - ok
22:17:53.0997 3480 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
22:17:53.0999 3480 Modem - ok
22:17:54.0002 3480 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:17:54.0003 3480 monitor - ok
22:17:54.0026 3480 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:17:54.0027 3480 mouclass - ok
22:17:54.0032 3480 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:17:54.0034 3480 mouhid - ok
22:17:54.0055 3480 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:17:54.0057 3480 mountmgr - ok
22:17:54.0180 3480 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:17:54.0183 3480 MozillaMaintenance - ok
22:17:54.0205 3480 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys
22:17:54.0208 3480 mpio - ok
22:17:54.0212 3480 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:17:54.0215 3480 mpsdrv - ok
22:17:54.0239 3480 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:17:54.0256 3480 MpsSvc - ok
22:17:54.0272 3480 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:17:54.0275 3480 MRxDAV - ok
22:17:54.0313 3480 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:17:54.0315 3480 mrxsmb - ok
22:17:54.0332 3480 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:17:54.0336 3480 mrxsmb10 - ok
22:17:54.0353 3480 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:17:54.0355 3480 mrxsmb20 - ok
22:17:54.0374 3480 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys
22:17:54.0376 3480 msahci - ok
22:17:54.0389 3480 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:17:54.0391 3480 msdsm - ok
22:17:54.0410 3480 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
22:17:54.0414 3480 MSDTC - ok
22:17:54.0432 3480 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:17:54.0433 3480 Msfs - ok
22:17:54.0452 3480 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:17:54.0454 3480 mshidkmdf - ok
22:17:54.0466 3480 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:17:54.0467 3480 msisadrv - ok
22:17:54.0513 3480 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:17:54.0516 3480 MSiSCSI - ok
22:17:54.0520 3480 msiserver - ok
22:17:54.0554 3480 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:17:54.0555 3480 MSKSSRV - ok
22:17:54.0572 3480 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:17:54.0573 3480 MSPCLOCK - ok
22:17:54.0586 3480 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:17:54.0587 3480 MSPQM - ok
22:17:54.0610 3480 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:17:54.0613 3480 MsRPC - ok
22:17:54.0632 3480 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:17:54.0634 3480 mssmbios - ok
22:17:54.0643 3480 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:17:54.0644 3480 MSTEE - ok
22:17:54.0662 3480 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
22:17:54.0663 3480 MTConfig - ok
22:17:54.0732 3480 [ D48659BB24C48345D926ECB45C1EBDF5 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys
22:17:54.0733 3480 MTsensor - ok
22:17:54.0754 3480 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
22:17:54.0756 3480 Mup - ok
22:17:54.0784 3480 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll
22:17:54.0791 3480 napagent - ok
22:17:54.0855 3480 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:17:54.0859 3480 NativeWifiP - ok
22:17:54.0923 3480 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys
22:17:54.0938 3480 NDIS - ok
22:17:54.0947 3480 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:17:54.0948 3480 NdisCap - ok
22:17:54.0970 3480 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:17:54.0971 3480 NdisTapi - ok
22:17:54.0975 3480 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:17:54.0977 3480 Ndisuio - ok
22:17:54.0990 3480 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:17:54.0992 3480 NdisWan - ok
22:17:55.0005 3480 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:17:55.0006 3480 NDProxy - ok
22:17:55.0020 3480 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:17:55.0021 3480 NetBIOS - ok
22:17:55.0044 3480 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:17:55.0047 3480 NetBT - ok
22:17:55.0069 3480 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe
22:17:55.0072 3480 Netlogon - ok
22:17:55.0120 3480 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
22:17:55.0126 3480 Netman - ok
22:17:55.0148 3480 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
22:17:55.0156 3480 netprofm - ok
22:17:55.0197 3480 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:17:55.0199 3480 NetTcpPortSharing - ok
22:17:55.0227 3480 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
22:17:55.0228 3480 nfrd960 - ok
22:17:55.0244 3480 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll
22:17:55.0250 3480 NlaSvc - ok
22:17:55.0254 3480 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:17:55.0256 3480 Npfs - ok
22:17:55.0279 3480 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
22:17:55.0282 3480 nsi - ok
22:17:55.0300 3480 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:17:55.0301 3480 nsiproxy - ok
22:17:55.0354 3480 [ 81189C3D7763838E55C397759D49007A ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:17:55.0377 3480 Ntfs - ok
22:17:55.0395 3480 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
22:17:55.0396 3480 Null - ok
22:17:55.0436 3480 [ B5E37E31C053BC9950455A257526514B ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x32.sys
22:17:55.0440 3480 NVENETFD - ok
22:17:55.0705 3480 [ 4152708C0C24E30DAE7FA87D5AFE1D7B ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:17:55.0929 3480 nvlddmkm - ok
22:17:55.0975 3480 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:17:55.0977 3480 nvraid - ok
22:17:55.0991 3480 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:17:55.0992 3480 nvstor - ok
22:17:56.0049 3480 [ 26DB28B32E8D2F57CB5065A4A053801A ] nvsvc C:\Windows\system32\nvvsvc.exe
22:17:56.0064 3480 nvsvc - ok
22:17:56.0085 3480 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:17:56.0087 3480 nv_agp - ok
22:17:56.0205 3480 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:17:56.0211 3480 odserv - ok
22:17:56.0240 3480 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
22:17:56.0242 3480 ohci1394 - ok
22:17:56.0269 3480 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:17:56.0271 3480 ose - ok
22:17:56.0308 3480 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:17:56.0314 3480 p2pimsvc - ok
22:17:56.0347 3480 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
22:17:56.0353 3480 p2psvc - ok
22:17:56.0381 3480 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
22:17:56.0382 3480 Parport - ok
22:17:56.0420 3480 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:17:56.0421 3480 partmgr - ok
22:17:56.0437 3480 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
22:17:56.0439 3480 Parvdm - ok
22:17:56.0454 3480 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
22:17:56.0459 3480 PcaSvc - ok
22:17:56.0475 3480 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
22:17:56.0478 3480 pci - ok
22:17:56.0491 3480 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
22:17:56.0492 3480 pciide - ok
22:17:56.0514 3480 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
22:17:56.0517 3480 pcmcia - ok
22:17:56.0539 3480 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
22:17:56.0540 3480 pcw - ok
22:17:56.0571 3480 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:17:56.0583 3480 PEAUTH - ok
22:17:56.0650 3480 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
22:17:56.0671 3480 PeerDistSvc - ok
22:17:56.0740 3480 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
22:17:56.0781 3480 pla - ok
22:17:56.0837 3480 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:17:56.0844 3480 PlugPlay - ok
22:17:56.0937 3480 [ 3A2BDD76E7D2A5F40A7174793D1BA794 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
22:17:56.0941 3480 PnkBstrA - ok
22:17:56.0981 3480 [ 9A386EC60A166DF66205343CA12C6B86 ] PnkBstrB C:\Windows\system32\PnkBstrB.exe
22:17:56.0986 3480 PnkBstrB - ok
22:17:57.0000 3480 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:17:57.0004 3480 PNRPAutoReg - ok
22:17:57.0011 3480 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:17:57.0015 3480 PNRPsvc - ok
22:17:57.0050 3480 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:17:57.0055 3480 PolicyAgent - ok
22:17:57.0090 3480 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
22:17:57.0095 3480 Power - ok
22:17:57.0117 3480 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:17:57.0119 3480 PptpMiniport - ok
22:17:57.0135 3480 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys
22:17:57.0136 3480 Processor - ok
22:17:57.0176 3480 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
22:17:57.0181 3480 ProfSvc - ok
22:17:57.0194 3480 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:17:57.0196 3480 ProtectedStorage - ok
22:17:57.0212 3480 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:17:57.0214 3480 Psched - ok
22:17:57.0265 3480 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
22:17:57.0299 3480 ql2300 - ok
22:17:57.0323 3480 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
22:17:57.0325 3480 ql40xx - ok
22:17:57.0360 3480 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
22:17:57.0365 3480 QWAVE - ok
22:17:57.0377 3480 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:17:57.0378 3480 QWAVEdrv - ok
22:17:57.0462 3480 [ E155E09229624C69A1A6609C0CB3641F ] RalinkRegistryWriter C:\Program Files\Ralink\Common\RaRegistry.exe
22:17:57.0465 3480 RalinkRegistryWriter - ok
22:17:57.0485 3480 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:17:57.0487 3480 RasAcd - ok
22:17:57.0520 3480 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:17:57.0522 3480 RasAgileVpn - ok
22:17:57.0543 3480 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
22:17:57.0548 3480 RasAuto - ok
22:17:57.0563 3480 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:17:57.0565 3480 Rasl2tp - ok
22:17:57.0601 3480 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
22:17:57.0607 3480 RasMan - ok
22:17:57.0618 3480 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:17:57.0620 3480 RasPppoe - ok
22:17:57.0644 3480 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:17:57.0646 3480 RasSstp - ok
22:17:57.0670 3480 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:17:57.0673 3480 rdbss - ok
22:17:57.0687 3480 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
22:17:57.0688 3480 rdpbus - ok
22:17:57.0703 3480 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:17:57.0705 3480 RDPCDD - ok
22:17:57.0731 3480 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
22:17:57.0734 3480 RDPDR - ok
22:17:57.0765 3480 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:17:57.0767 3480 RDPENCDD - ok
22:17:57.0778 3480 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:17:57.0779 3480 RDPREFMP - ok
22:17:57.0816 3480 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:17:57.0819 3480 RDPWD - ok
22:17:57.0844 3480 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:17:57.0847 3480 rdyboost - ok
22:17:57.0876 3480 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
22:17:57.0880 3480 RemoteAccess - ok
22:17:57.0909 3480 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:17:57.0914 3480 RemoteRegistry - ok
22:17:57.0941 3480 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:17:57.0945 3480 RpcEptMapper - ok
22:17:57.0977 3480 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
22:17:57.0979 3480 RpcLocator - ok
22:17:58.0010 3480 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
22:17:58.0014 3480 RpcSs - ok
22:17:58.0019 3480 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:17:58.0020 3480 rspndr - ok
22:17:58.0053 3480 [ 027158280EDF528EE322CFD00AE9E9BE ] rt61x86 C:\Windows\system32\DRIVERS\netr61.sys
22:17:58.0057 3480 rt61x86 - ok
22:17:58.0086 3480 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
22:17:58.0088 3480 s3cap - ok
22:17:58.0106 3480 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe
22:17:58.0109 3480 SamSs - ok
22:17:58.0139 3480 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:17:58.0141 3480 sbp2port - ok
22:17:58.0169 3480 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:17:58.0174 3480 SCardSvr - ok
22:17:58.0191 3480 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:17:58.0193 3480 scfilter - ok
22:17:58.0224 3480 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
22:17:58.0243 3480 Schedule - ok
22:17:58.0261 3480 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
22:17:58.0262 3480 SCPolicySvc - ok
22:17:58.0287 3480 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:17:58.0292 3480 SDRSVC - ok
22:17:58.0310 3480 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:17:58.0311 3480 secdrv - ok
22:17:58.0326 3480 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
22:17:58.0330 3480 seclogon - ok
22:17:58.0355 3480 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
22:17:58.0360 3480 SENS - ok
22:17:58.0382 3480 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:17:58.0386 3480 SensrSvc - ok
22:17:58.0414 3480 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
22:17:58.0415 3480 Serenum - ok
22:17:58.0430 3480 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
22:17:58.0432 3480 Serial - ok
22:17:58.0448 3480 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys
22:17:58.0450 3480 sermouse - ok
22:17:58.0474 3480 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
22:17:58.0479 3480 SessionEnv - ok
22:17:58.0490 3480 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
22:17:58.0491 3480 sffdisk - ok
22:17:58.0495 3480 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:17:58.0496 3480 sffp_mmc - ok
22:17:58.0504 3480 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
22:17:58.0505 3480 sffp_sd - ok
22:17:58.0521 3480 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
22:17:58.0522 3480 sfloppy - ok
22:17:58.0545 3480 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:17:58.0550 3480 SharedAccess - ok
22:17:58.0590 3480 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:17:58.0597 3480 ShellHWDetection - ok
22:17:58.0601 3480 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
22:17:58.0603 3480 sisagp - ok
22:17:58.0613 3480 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
22:17:58.0615 3480 SiSRaid2 - ok
22:17:58.0633 3480 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
22:17:58.0635 3480 SiSRaid4 - ok
22:17:58.0643 3480 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:17:58.0645 3480 Smb - ok
22:17:58.0694 3480 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:17:58.0698 3480 SNMPTRAP - ok
22:17:58.0708 3480 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
22:17:58.0710 3480 spldr - ok
22:17:58.0744 3480 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
22:17:58.0751 3480 Spooler - ok
22:17:58.0836 3480 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
22:17:58.0914 3480 sppsvc - ok
22:17:58.0929 3480 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:17:58.0934 3480 sppuinotify - ok
22:17:58.0979 3480 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
22:17:58.0983 3480 srv - ok
22:17:59.0001 3480 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:17:59.0005 3480 srv2 - ok
22:17:59.0030 3480 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:17:59.0053 3480 srvnet - ok
22:17:59.0127 3480 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:17:59.0189 3480 SSDPSRV - ok
22:17:59.0316 3480 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:17:59.0321 3480 SstpSvc - ok
22:17:59.0353 3480 Steam Client Service - ok
22:17:59.0443 3480 [ 9BF7E58D9113CE15CF4F1E1B18CEFF83 ] Stereo Service C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:17:59.0453 3480 Stereo Service - ok
22:17:59.0472 3480 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys
22:17:59.0474 3480 stexstor - ok
22:17:59.0514 3480 [ EDB05BD63148796F23EA78506404A538 ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
22:17:59.0516 3480 StillCam - ok
22:17:59.0555 3480 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
22:17:59.0567 3480 StiSvc - ok
22:17:59.0620 3480 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
22:17:59.0622 3480 storflt - ok
22:17:59.0640 3480 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll
22:17:59.0644 3480 StorSvc - ok
22:17:59.0659 3480 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
22:17:59.0661 3480 storvsc - ok
22:17:59.0664 3480 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:17:59.0666 3480 swenum - ok
22:17:59.0689 3480 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
22:17:59.0696 3480 swprv - ok
22:17:59.0764 3480 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
22:17:59.0794 3480 SysMain - ok
22:17:59.0812 3480 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:17:59.0817 3480 TabletInputService - ok
22:17:59.0835 3480 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
22:17:59.0841 3480 TapiSrv - ok
22:17:59.0853 3480 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
22:17:59.0858 3480 TBS - ok
22:17:59.0916 3480 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:17:59.0951 3480 Tcpip - ok
22:17:59.0991 3480 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:17:59.0997 3480 TCPIP6 - ok
22:18:00.0010 3480 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:18:00.0012 3480 tcpipreg - ok
22:18:00.0030 3480 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:18:00.0032 3480 TDPIPE - ok
22:18:00.0068 3480 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:18:00.0069 3480 TDTCP - ok
22:18:00.0087 3480 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:18:00.0089 3480 tdx - ok
22:18:00.0100 3480 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:18:00.0101 3480 TermDD - ok
22:18:00.0133 3480 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
22:18:00.0144 3480 TermService - ok
22:18:00.0155 3480 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
22:18:00.0160 3480 Themes - ok
22:18:00.0180 3480 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
22:18:00.0183 3480 THREADORDER - ok
22:18:00.0204 3480 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
22:18:00.0209 3480 TrkWks - ok
22:18:00.0269 3480 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:18:00.0272 3480 TrustedInstaller - ok
22:18:00.0293 3480 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:18:00.0294 3480 tssecsrv - ok
22:18:00.0314 3480 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
22:18:00.0316 3480 TsUsbFlt - ok
22:18:00.0323 3480 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
22:18:00.0325 3480 TsUsbGD - ok
22:18:00.0354 3480 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:18:00.0356 3480 tunnel - ok
22:18:00.0364 3480 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys
22:18:00.0366 3480 uagp35 - ok
22:18:00.0391 3480 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:18:00.0395 3480 udfs - ok
22:18:00.0412 3480 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:18:00.0416 3480 UI0Detect - ok
22:18:00.0441 3480 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:18:00.0443 3480 uliagpkx - ok
22:18:00.0471 3480 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:18:00.0472 3480 umbus - ok
22:18:00.0497 3480 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys
22:18:00.0498 3480 UmPass - ok
22:18:00.0525 3480 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
22:18:00.0530 3480 UmRdpService - ok
22:18:00.0545 3480 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
22:18:00.0551 3480 upnphost - ok
22:18:00.0590 3480 [ 83CAFCB53201BBAC04D822F32438E244 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
22:18:00.0592 3480 USBAAPL - ok
22:18:00.0645 3480 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
22:18:00.0648 3480 usbaudio - ok
22:18:00.0675 3480 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:18:00.0677 3480 usbccgp - ok
22:18:00.0692 3480 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:18:00.0694 3480 usbcir - ok
22:18:00.0721 3480 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
22:18:00.0722 3480 usbehci - ok
22:18:00.0741 3480 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:18:00.0745 3480 usbhub - ok
22:18:00.0764 3480 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
22:18:00.0765 3480 usbohci - ok
22:18:00.0792 3480 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\drivers\usbprint.sys
22:18:00.0794 3480 usbprint - ok
22:18:00.0822 3480 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:18:00.0824 3480 USBSTOR - ok
22:18:00.0833 3480 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:18:00.0835 3480 usbuhci - ok
22:18:00.0853 3480 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
22:18:00.0858 3480 UxSms - ok
22:18:00.0878 3480 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe
22:18:00.0880 3480 VaultSvc - ok
22:18:00.0902 3480 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
22:18:00.0904 3480 vdrvroot - ok
22:18:00.0927 3480 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
22:18:00.0936 3480 vds - ok
22:18:00.0951 3480 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:18:00.0953 3480 vga - ok
22:18:00.0963 3480 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
22:18:00.0964 3480 VgaSave - ok
22:18:00.0984 3480 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
22:18:00.0987 3480 vhdmp - ok
22:18:01.0000 3480 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
22:18:01.0001 3480 viaagp - ok
22:18:01.0005 3480 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
22:18:01.0007 3480 ViaC7 - ok
22:18:01.0011 3480 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
22:18:01.0012 3480 viaide - ok
22:18:01.0048 3480 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
22:18:01.0051 3480 vmbus - ok
22:18:01.0064 3480 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
22:18:01.0066 3480 VMBusHID - ok
22:18:01.0077 3480 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:18:01.0079 3480 volmgr - ok
22:18:01.0102 3480 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:18:01.0106 3480 volmgrx - ok
22:18:01.0147 3480 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:18:01.0151 3480 volsnap - ok
22:18:01.0177 3480 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
22:18:01.0180 3480 vsmraid - ok
22:18:01.0221 3480 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
22:18:01.0255 3480 VSS - ok
22:18:01.0259 3480 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:18:01.0261 3480 vwifibus - ok
22:18:01.0305 3480 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:18:01.0307 3480 vwififlt - ok
22:18:01.0343 3480 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
22:18:01.0345 3480 vwifimp - ok
22:18:01.0367 3480 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
22:18:01.0374 3480 W32Time - ok
22:18:01.0416 3480 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
22:18:01.0417 3480 WacomPen - ok
22:18:01.0433 3480 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:18:01.0435 3480 WANARP - ok
22:18:01.0438 3480 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:18:01.0440 3480 Wanarpv6 - ok
22:18:01.0520 3480 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:18:01.0554 3480 WatAdminSvc - ok
22:18:01.0599 3480 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
22:18:01.0625 3480 wbengine - ok
22:18:01.0644 3480 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:18:01.0650 3480 WbioSrvc - ok
22:18:01.0667 3480 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:18:01.0675 3480 wcncsvc - ok
22:18:01.0691 3480 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:18:01.0695 3480 WcsPlugInService - ok
22:18:01.0699 3480 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys
22:18:01.0701 3480 Wd - ok
22:18:01.0726 3480 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:18:01.0731 3480 Wdf01000 - ok
22:18:01.0735 3480 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:18:01.0740 3480 WdiServiceHost - ok
22:18:01.0743 3480 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:18:01.0747 3480 WdiSystemHost - ok
22:18:01.0766 3480 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll
22:18:01.0772 3480 WebClient - ok
22:18:01.0784 3480 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:18:01.0790 3480 Wecsvc - ok
22:18:01.0803 3480 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:18:01.0808 3480 wercplsupport - ok
22:18:01.0845 3480 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
22:18:01.0849 3480 WerSvc - ok
22:18:01.0889 3480 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:18:01.0890 3480 WfpLwf - ok
22:18:01.0911 3480 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:18:01.0913 3480 WIMMount - ok
22:18:01.0979 3480 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
22:18:01.0994 3480 WinDefend - ok
22:18:01.0998 3480 WinHttpAutoProxySvc - ok
22:18:02.0135 3480 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:18:02.0139 3480 Winmgmt - ok
22:18:02.0194 3480 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
22:18:02.0224 3480 WinRM - ok
22:18:02.0279 3480 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
22:18:02.0281 3480 WinUsb - ok
22:18:02.0319 3480 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
22:18:02.0340 3480 Wlansvc - ok
22:18:02.0432 3480 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:18:02.0474 3480 wlidsvc - ok
22:18:02.0485 3480 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
22:18:02.0487 3480 WmiAcpi - ok
22:18:02.0515 3480 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:18:02.0518 3480 wmiApSrv - ok
22:18:02.0585 3480 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
22:18:02.0609 3480 WMPNetworkSvc - ok
22:18:02.0650 3480 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:18:02.0654 3480 WPCSvc - ok
22:18:02.0668 3480 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:18:02.0673 3480 WPDBusEnum - ok
22:18:02.0702 3480 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:18:02.0704 3480 ws2ifsl - ok
22:18:02.0718 3480 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
22:18:02.0724 3480 wscsvc - ok
22:18:02.0771 3480 [ 553F6CCD7C58EB98D4A8FBDAF283D7A9 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
22:18:02.0773 3480 WSDPrintDevice - ok
22:18:02.0776 3480 WSearch - ok
22:18:02.0854 3480 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
22:18:02.0904 3480 wuauserv - ok
22:18:02.0933 3480 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:18:02.0936 3480 WudfPf - ok
22:18:02.0960 3480 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:18:02.0962 3480 WUDFRd - ok
22:18:03.0004 3480 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:18:03.0009 3480 wudfsvc - ok
22:18:03.0034 3480 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll
22:18:03.0040 3480 WwanSvc - ok
22:18:03.0118 3480 [ CE0C846127D6ABB1E2A22E59682B2527 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys
22:18:03.0124 3480 xnacc - ok
22:18:03.0160 3480 ================ Scan global ===============================
22:18:03.0186 3480 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
22:18:03.0214 3480 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
22:18:03.0231 3480 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
22:18:03.0275 3480 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
22:18:03.0327 3480 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
22:18:03.0333 3480 [Global] - ok
22:18:03.0333 3480 ================ Scan MBR ==================================
22:18:03.0345 3480 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:18:03.0543 3480 \Device\Harddisk0\DR0 - ok
22:18:03.0544 3480 ================ Scan VBR ==================================
22:18:03.0546 3480 [ AB7D97224353956932B64F6930BC2274 ] \Device\Harddisk0\DR0\Partition1
22:18:03.0547 3480 \Device\Harddisk0\DR0\Partition1 - ok
22:18:03.0548 3480 ============================================================
22:18:03.0548 3480 Scan finished
22:18:03.0548 3480 ============================================================
22:18:03.0557 7704 Detected object count: 0
22:18:03.0557 7704 Actual detected object count: 0
22:18:07.0371 6320 Deinitialize success
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
02-Sep-2012, 06:06 AM #19
So far we appear to have cleaned out all of the infections so we need to be looking at Add-ons in your browser. Please follow these instructions to run your browser with no Add-ons and see if that stops the redirects.

How to run Firefox and Internet Explorer with no add-ons
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
02-Sep-2012, 10:10 AM #20
A box didn't pop up when I typed 'firefox -safe-mode' in run, all it did was open a new firefox window. Also couldn't find the firefox safemode icon in my start menu. However, I just tried to get the redirect to happen again and I couldn't after 5 min of google searching. Not sure if this means it's gone, though, since it only happened 20-30% of the time anyway, could just be on a lucky streak.
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
02-Sep-2012, 11:24 AM #21
I have never used Firefox so not too sure what the problem may be with Safe Mode not being available.

It does sound encouraging that you are not seeing any more redirects, all the logs do indicate the infection has gone.

Follow this guide and check for any Add-ons that you do not recognise and remove them: Disable or Remove Add-ons in Firefox

Let me know if you find anything suspicious.

Please also run one more scan with Combofix and post the log.
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
02-Sep-2012, 01:43 PM #22
It just happened again, went to some site that tried to give me a virus and avast blocked it.

Didn't see any suspicious plugins, but I'll run combofix again.
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
02-Sep-2012, 02:04 PM #23
Here's the log:

ComboFix 12-09-01.01 - Andrew 09/02/2012 13:48:39.2.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.3327.2034 [GMT -4:00]
Running from: c:\users\Andrew\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2012-08-02 to 2012-09-02 )))))))))))))))))))))))))))))))
.
.
2012-09-02 18:01 . 2012-09-02 18:01 -------- d-----w- c:\users\Guest\AppData\Local\temp
2012-09-02 18:01 . 2012-09-02 18:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-09-01 01:19 . 2012-09-01 01:19 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E1CCC4CA-EB1F-43E0-A8EF-FD8F098AB112}\offreg.dll
2012-08-31 17:43 . 2012-08-23 07:15 7022536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E1CCC4CA-EB1F-43E0-A8EF-FD8F098AB112}\mpengine.dll
2012-08-24 23:42 . 2012-07-14 00:16 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll
2012-08-24 23:42 . 2012-07-14 00:16 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll
2012-08-24 23:42 . 2012-07-14 00:16 770384 ----a-w- c:\program files\Mozilla Firefox\msvcr100.dll
2012-08-24 23:42 . 2012-07-14 00:16 421200 ----a-w- c:\program files\Mozilla Firefox\msvcp100.dll
2012-08-24 23:42 . 2012-08-30 10:45 18912 ----a-w- c:\program files\Mozilla Firefox\AccessibleMarshal.dll
2012-08-15 19:07 . 2012-07-04 21:14 102912 ----a-w- c:\windows\system32\browser.dll
2012-08-15 19:07 . 2012-07-04 21:14 41984 ----a-w- c:\windows\system32\browcli.dll
2012-08-15 19:07 . 2012-05-14 04:33 769024 ----a-w- c:\windows\system32\localspl.dll
2012-08-08 17:38 . 2012-08-08 17:38 -------- d-----w- c:\users\Andrew\AppData\Local\{D9C29A25-E17F-11E1-8270-B8AC6F996F26}
2012-08-06 00:36 . 2012-08-06 05:38 -------- d-----w- c:\users\Andrew\.explorer.cache
2012-08-06 00:36 . 2012-08-06 00:36 -------- d-----w- c:\users\Andrew\.explorer.local
2012-08-03 18:33 . 2011-03-30 22:43 538472 ------w- c:\windows\system32\HPDiscoPMa011.dll
2012-08-03 18:33 . 2012-08-03 18:33 -------- d-----w- c:\programdata\HP
2012-08-03 18:33 . 2012-08-03 18:33 -------- d-----w- c:\program files\HP
2012-08-03 18:32 . 2012-08-03 18:34 -------- d-----w- c:\users\Andrew\AppData\Local\HP
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-20 01:34 . 2011-10-22 19:47 215128 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-08-20 01:34 . 2011-10-22 19:42 215128 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-08-20 01:31 . 2011-10-22 19:46 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-08-20 01:30 . 2011-10-22 19:42 215128 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-07-11 20:05 . 2012-07-11 20:05 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-11 20:05 . 2011-08-19 23:21 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-03 17:46 . 2011-08-20 21:33 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-06-07 00:59 . 2012-06-07 00:59 1070152 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2012-06-06 05:05 . 2012-07-11 21:13 1390080 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 05:05 . 2012-07-11 21:13 1236992 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 05:03 . 2012-07-11 21:13 805376 ----a-w- c:\windows\system32\cdosys.dll
2003-03-19 01:20 . 2012-05-01 21:56 1060864 ----a-w- c:\program files\mozilla firefox\plugins\mfc71.dll
2003-02-21 08:42 . 2012-05-01 21:56 348160 ----a-w- c:\program files\mozilla firefox\plugins\msvcr71.dll
2012-08-30 10:45 . 2012-08-24 23:42 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2012-06-07 1519304]
.
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2012-06-07 01:33 1519304 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2012-06-07 1519304]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2012-06-07 1519304]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shell iconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\Steam\Steam.exe" [2012-08-03 1353080]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"F.lux"="c:\users\Andrew\Local Settings\Apps\F.lux\flux.exe" [2009-08-29 966656]
"HP Deskjet 3050A J611 series (NET)"="c:\program files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe" [2011-03-30 1721192]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-07-19 421736]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2012-06-07 1564872]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Ralink Wireless Utility.lnk - c:\program files\Ralink\Common\RaUI.exe [2011-9-1 1560576]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\syste m]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux3"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 rt61x86;RT61 Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr61.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
S3 WSDPrintDevice;WSD Print Support via UMB;c:\windows\system32\DRIVERS\WSDPrint.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - 41664758
*Deregistered* - 41664758
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.ask.com/?l=dis&o=14676
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
FF - ProfilePath - c:\users\Andrew\AppData\Roaming\Mozilla\Firefox\Profiles\qii74uh8.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-2838226452-2035102192-4194869524-1000\Software\SecuROM\License information*]
"datasecu"=hex:ac,61,30,7f,08,9b,1e,cc,2c,04,01,bf,ff,d4,bd,85,22,f0,a5,fc, 23,
4d,f9,5d,d3,ea,4c,aa,24,27,f7,56,62,92,cf,ff,ef,6e,d8,38,4a,fb,f0,15,dc,51, \
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2012-09-02 14:03:34
ComboFix-quarantined-files.txt 2012-09-02 18:03
ComboFix2.txt 2012-09-01 01:34
.
Pre-Run: 169,929,306,112 bytes free
Post-Run: 174,368,935,936 bytes free
.
- - End Of File - - 1F3C4E48B2F258E6E29787A8B603EA86
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
03-Sep-2012, 06:07 AM #24
Quote:
It just happened again, went to some site that tried to give me a virus and avast blocked it.
Please post the address of this site so I can check it.
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
03-Sep-2012, 01:29 PM #25
Just got the redirect again, to here: http://compare.us.com/search/bill+me+later/

I searched for 'Bill me later'. Sometimes I get redirected to shady search sites like this, sometimes I get a blank page that gets blocked by avast as a virus attack.
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
03-Sep-2012, 02:06 PM #26
The link you posted doesn't appear to be malicious, but obviously as the AV is flagging up some you are being sent to are.

The only thing I can see in your logs that may be connected with this is the Ask Toolbar. Go into Control Panel, Programs and Features and uninstall it along with the Updater.

If that doesn't stop the problem then run this and post the log.

Please download MiniToolBox and save it to your desktop.
Double click on the MiniToolBox icon
You will now see the following window appear.

Click on each of the boxes as indicated in the list below, then click on the GO button.
Copy & Paste the contents of the report that appears into your next post, you can also find a copy of the report on your desktop (Result.txt).

•Flush DNS
•Report IE Proxy Settings
•Reset IE Proxy Settings
•Report FF Proxy Settings
•Reset FF Proxy Settings
•List content of Hosts
•List last 10 Event Viewer log
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
03-Sep-2012, 02:31 PM #27
I'll try these steps now. It just linked me to a malicious site: http://click.gethotresults.com/ads-c...ness+astronaut
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
03-Sep-2012, 02:38 PM #28
Ok I uninstalled the toolbar, but got yet another virus redirect: http://click.get-amazing-results.com...t+penny+arcade

Trying the other thing now.
Oppo28's Avatar
Oppo28 Oppo28 is offline
Member with 42 posts.
THREAD STARTER
 
Join Date: Dec 2008
03-Sep-2012, 02:39 PM #29
Here's the log:

MiniToolBox by Farbar Version: 23-07-2012
Ran by Andrew (administrator) on 03-09-2012 at 14:39:06
Microsoft Windows 7 Professional Service Pack 1 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1 localhost


========================= Event log errors: ===============================

Application errors:
==================
Error: (09/03/2012 02:32:26 PM) (Source: MsiInstaller) (User: Andrew-PC)Andrew-PC
Description: Product: Ask Toolbar -- Error 1730.You must be an Administrator to remove this application. To remove this application, you can log on as an administrator, or contact your technical support group for assistance.

Error: (09/03/2012 01:42:57 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/03/2012 01:41:11 PM) (Source: Bonjour Service) (User: )
Description: 468: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)

Error: (09/03/2012 01:41:11 PM) (Source: Bonjour Service) (User: )
Description: 432: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)

Error: (09/03/2012 01:41:11 PM) (Source: Bonjour Service) (User: )
Description: 428: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)

Error: (09/03/2012 01:41:11 PM) (Source: Bonjour Service) (User: )
Description: 204: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)

Error: (09/03/2012 01:40:49 PM) (Source: Application Hang) (User: )
Description: The program firefox.exe version 15.0.0.4619 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: cd4

Start Time: 01cd89f8f33b7ff0

Termination Time: 57

Application Path: C:\Program Files\Mozilla Firefox\firefox.exe

Report Id:

Error: (09/03/2012 03:18:36 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/03/2012 03:15:52 AM) (Source: Bonjour Service) (User: )
Description: 464: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)

Error: (09/03/2012 03:15:52 AM) (Source: Bonjour Service) (User: )
Description: 436: ERROR: read_msg errno 10054 (An existing connection was forcibly closed by the remote host.)


System errors:
=============
Error: (09/02/2012 02:01:56 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (09/02/2012 01:57:03 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (09/02/2012 01:48:28 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (08/31/2012 09:15:45 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 9:14:00 PM on ?8/?31/?2012 was unexpected.

Error: (08/31/2012 09:07:54 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (08/31/2012 08:56:54 PM) (Source: DCOM) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Error: (08/31/2012 08:56:44 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (08/29/2012 09:19:08 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 11:55:50 AM on ?8/?29/?2012 was unexpected.

Error: (08/23/2012 05:31:59 PM) (Source: Service Control Manager) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053

Error: (08/23/2012 05:31:59 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.


Microsoft Office Sessions:
=========================

**** End of log ****
Mark1956's Avatar
Malware Removal Specialist with 14,074 posts.
 
Join Date: May 2011
Location: Spain
Experience: Advanced
03-Sep-2012, 03:41 PM #30
This is proving a tricky one to find, but there is obviously something still in your system.

Please try this: Please post the log from RKill.

Please download RKill by Grinler and save it to your desktop.
Link 2
Link 3
Link 4
  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista or Windows 7, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • A log pops up at the end of the run. This log file is located at C:\rkill.log. Please post this only if requested to by the person helping you. Otherwise you can close this log when you wish.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • If the tool does not run from any of the links provided, please let me know.
DO NOT reboot, run Malwarebytes, let it update and run a full scan. If it finds anything, fix it and post the resulting log. If it finds nothing, post that log instead.
As Seen On

BBC, Reader's Digest, PC Magazine, Today Show, Money Magazine
WELCOME TO TECH SUPPORT GUY!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.


(clock)
THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools


WELCOME
You Are Using: Server ID
Trusted Website Back to the Top ↑