Jump to content

ScrltOTara

Members
  • Posts

    2
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Hi: My daughter's laptop is infected with a bogus svchost.exe file. Malwarebytes caught it as malware, said it removed it, but it keeps coming back when I reboot. The file is located in C:\Windows, NOT C:\Windows\system32 so I know it's bad. I ran the TDSSKiller I found in another post here and it found 2 entries TDSS FileSystem: Physical drive: \Device\Harddisk0\DR0 It allwed me to cure one and the second is still there, says suspicious object, medium risk. When I try to download ComboFix, the computer yells at me that it's a virus? Trying to figure out where to go from here... here's the log from TDSSKiller: 10:56:46.0590 5360 TDSS rootkit removing tool 2.7.13.0 Feb 15 2012 19:33:14 10:56:48.0602 5360 ============================================================ 10:56:48.0602 5360 Current date / time: 2012/02/18 10:56:48.0602 10:56:48.0602 5360 SystemInfo: 10:56:48.0602 5360 10:56:48.0602 5360 OS Version: 6.1.7601 ServicePack: 1.0 10:56:48.0602 5360 Product type: Workstation 10:56:48.0602 5360 ComputerName: SHANNON-PC 10:56:48.0602 5360 UserName: Shannon 10:56:48.0602 5360 Windows directory: C:\Windows 10:56:48.0602 5360 System windows directory: C:\Windows 10:56:48.0602 5360 Running under WOW64 10:56:48.0602 5360 Processor architecture: Intel x64 10:56:48.0602 5360 Number of processors: 4 10:56:48.0602 5360 Page size: 0x1000 10:56:48.0602 5360 Boot type: Normal boot 10:56:48.0602 5360 ============================================================ 10:56:49.0070 5360 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 10:56:49.0070 5360 \Device\Harddisk0\DR0: 10:56:49.0070 5360 MBR used 10:56:49.0070 5360 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3200800, BlocksNum 0x476572B0 10:56:49.0133 5360 Initialize success 10:56:49.0133 5360 ============================================================ 10:56:57.0588 5424 ============================================================ 10:56:57.0588 5424 Scan started 10:56:57.0588 5424 Mode: Manual; SigCheck; TDLFS; 10:56:57.0588 5424 ============================================================ 10:56:58.0274 5424 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 10:56:58.0415 5424 1394ohci - ok 10:56:58.0524 5424 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 10:56:58.0555 5424 ACPI - ok 10:56:58.0571 5424 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 10:56:58.0633 5424 AcpiPmi - ok 10:56:58.0742 5424 adfs (2f0683fd2df1d92e891caca14b45a8c1) C:\Windows\system32\drivers\adfs.sys 10:56:58.0789 5424 adfs - ok 10:56:58.0883 5424 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys 10:56:58.0898 5424 adp94xx - ok 10:56:58.0945 5424 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys 10:56:58.0961 5424 adpahci - ok 10:56:59.0007 5424 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys 10:56:59.0007 5424 adpu320 - ok 10:56:59.0101 5424 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 10:56:59.0163 5424 AFD - ok 10:56:59.0226 5424 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 10:56:59.0226 5424 agp440 - ok 10:56:59.0257 5424 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 10:56:59.0273 5424 aliide - ok 10:56:59.0288 5424 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 10:56:59.0288 5424 amdide - ok 10:56:59.0304 5424 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys 10:56:59.0382 5424 AmdK8 - ok 10:56:59.0397 5424 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys 10:56:59.0444 5424 AmdPPM - ok 10:56:59.0522 5424 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 10:56:59.0553 5424 amdsata - ok 10:56:59.0585 5424 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys 10:56:59.0600 5424 amdsbs - ok 10:56:59.0647 5424 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys 10:56:59.0647 5424 amdxata - ok 10:56:59.0709 5424 AmUStor (92a848f962da91c631147d566414bb7e) C:\Windows\system32\drivers\AmUStor.SYS 10:56:59.0709 5424 AmUStor - ok 10:56:59.0756 5424 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 10:56:59.0943 5424 AppID - ok 10:57:00.0099 5424 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys 10:57:00.0115 5424 arc - ok 10:57:00.0131 5424 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys 10:57:00.0131 5424 arcsas - ok 10:57:00.0240 5424 ASMMAP64 (4c016fd76ed5c05e84ca8cab77993961) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 10:57:00.0240 5424 ASMMAP64 - ok 10:57:00.0302 5424 asmthub3 (718692fff22d6af47eba0a741a924921) C:\Windows\system32\DRIVERS\asmthub3.sys 10:57:00.0318 5424 asmthub3 - ok 10:57:00.0411 5424 asmtxhci (bad70a5ac534c108f680a33c654bc626) C:\Windows\system32\DRIVERS\asmtxhci.sys 10:57:00.0411 5424 asmtxhci - ok 10:57:00.0489 5424 assd (06f30358a657cba22115c4368b4001f9) C:\Windows\system32\drivers\assd.sys 10:57:00.0489 5424 assd - ok 10:57:00.0536 5424 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 10:57:00.0770 5424 AsyncMac - ok 10:57:00.0786 5424 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 10:57:00.0786 5424 atapi - ok 10:57:00.0879 5424 athr (0acc06fcf46f64ed4f11e57ee461c1f4) C:\Windows\system32\DRIVERS\athrx.sys 10:57:01.0020 5424 athr - ok 10:57:01.0129 5424 ATKWMIACPIIO (1f7238a37389ed92e9d8eee975cabd54) C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys 10:57:01.0129 5424 ATKWMIACPIIO - ok 10:57:01.0254 5424 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys 10:57:01.0332 5424 b06bdrv - ok 10:57:01.0379 5424 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 10:57:01.0410 5424 b57nd60a - ok 10:57:01.0441 5424 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 10:57:01.0488 5424 Beep - ok 10:57:01.0753 5424 BHDrvx64 (1d757a7e020c577c4259a755f21b7152) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\BASHDefs\20120215.001\BHDrvx64.sys 10:57:01.0769 5424 BHDrvx64 - ok 10:57:01.0862 5424 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 10:57:01.0893 5424 blbdrive - ok 10:57:01.0940 5424 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 10:57:02.0003 5424 bowser - ok 10:57:02.0034 5424 bpenum (597fffac47605337b1c719b4975238f0) C:\Windows\system32\DRIVERS\bpenum.sys 10:57:02.0081 5424 bpenum - ok 10:57:02.0096 5424 bpmp (f66c6ad105ef5a899207f4907366e2e2) C:\Windows\system32\DRIVERS\bpmp.sys 10:57:02.0143 5424 bpmp - ok 10:57:02.0174 5424 bpusb (ae6751f004dfebe0a7548265ccf432ce) C:\Windows\system32\Drivers\bpusb.sys 10:57:02.0221 5424 bpusb - ok 10:57:02.0268 5424 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys 10:57:02.0330 5424 BrFiltLo - ok 10:57:02.0346 5424 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys 10:57:02.0361 5424 BrFiltUp - ok 10:57:02.0408 5424 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 10:57:02.0455 5424 Brserid - ok 10:57:02.0471 5424 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 10:57:02.0486 5424 BrSerWdm - ok 10:57:02.0517 5424 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 10:57:02.0549 5424 BrUsbMdm - ok 10:57:02.0549 5424 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 10:57:02.0564 5424 BrUsbSer - ok 10:57:02.0627 5424 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\DRIVERS\BthEnum.sys 10:57:02.0673 5424 BthEnum - ok 10:57:02.0705 5424 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys 10:57:02.0736 5424 BTHMODEM - ok 10:57:02.0736 5424 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys 10:57:02.0751 5424 BthPan - ok 10:57:02.0829 5424 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\system32\Drivers\BTHport.sys 10:57:02.0876 5424 BTHPORT - ok 10:57:02.0923 5424 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\system32\Drivers\BTHUSB.sys 10:57:02.0939 5424 BTHUSB - ok 10:57:03.0017 5424 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 10:57:03.0079 5424 cdfs - ok 10:57:03.0126 5424 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys 10:57:03.0173 5424 cdrom - ok 10:57:03.0204 5424 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys 10:57:03.0235 5424 circlass - ok 10:57:03.0266 5424 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 10:57:03.0282 5424 CLFS - ok 10:57:03.0313 5424 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 10:57:03.0344 5424 CmBatt - ok 10:57:03.0344 5424 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 10:57:03.0360 5424 cmdide - ok 10:57:03.0422 5424 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys 10:57:03.0438 5424 CNG - ok 10:57:03.0500 5424 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys 10:57:03.0516 5424 Compbatt - ok 10:57:03.0547 5424 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys 10:57:03.0578 5424 CompositeBus - ok 10:57:03.0609 5424 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys 10:57:03.0609 5424 crcdisk - ok 10:57:03.0641 5424 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 10:57:03.0687 5424 DfsC - ok 10:57:03.0703 5424 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 10:57:03.0719 5424 discache - ok 10:57:03.0765 5424 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys 10:57:03.0781 5424 Disk - ok 10:57:03.0828 5424 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 10:57:03.0859 5424 drmkaud - ok 10:57:03.0906 5424 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 10:57:03.0921 5424 DXGKrnl - ok 10:57:03.0999 5424 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys 10:57:04.0124 5424 ebdrv - ok 10:57:04.0280 5424 eeCtrl (0c3f9eff8ddd9f9eb56d754b4620155f) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys 10:57:04.0280 5424 eeCtrl - ok 10:57:04.0343 5424 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys 10:57:04.0358 5424 elxstor - ok 10:57:04.0389 5424 EraserUtilRebootDrv (8c0f9b877bc0b7ffd327ef55f9efb642) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 10:57:04.0389 5424 EraserUtilRebootDrv - ok 10:57:04.0405 5424 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 10:57:04.0421 5424 ErrDev - ok 10:57:04.0467 5424 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 10:57:04.0499 5424 exfat - ok 10:57:04.0499 5424 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 10:57:04.0545 5424 fastfat - ok 10:57:04.0577 5424 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys 10:57:04.0623 5424 fdc - ok 10:57:04.0670 5424 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 10:57:04.0686 5424 FileInfo - ok 10:57:04.0686 5424 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 10:57:04.0748 5424 Filetrace - ok 10:57:04.0779 5424 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys 10:57:04.0795 5424 flpydisk - ok 10:57:04.0795 5424 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 10:57:04.0811 5424 FltMgr - ok 10:57:04.0826 5424 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 10:57:04.0842 5424 FsDepends - ok 10:57:04.0889 5424 fssfltr (6c06701bf1db05405804d7eb610991ce) C:\Windows\system32\DRIVERS\fssfltr.sys 10:57:04.0889 5424 fssfltr - ok 10:57:04.0904 5424 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 10:57:04.0920 5424 Fs_Rec - ok 10:57:04.0935 5424 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 10:57:04.0935 5424 fvevol - ok 10:57:04.0967 5424 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys 10:57:04.0967 5424 gagp30kx - ok 10:57:05.0013 5424 GEARAspiWDM (af4dee5531395dee72b35b36c9671fd0) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 10:57:05.0029 5424 GEARAspiWDM - ok 10:57:05.0107 5424 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 10:57:05.0169 5424 hcw85cir - ok 10:57:05.0201 5424 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 10:57:05.0232 5424 HdAudAddService - ok 10:57:05.0263 5424 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys 10:57:05.0294 5424 HDAudBus - ok 10:57:05.0294 5424 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys 10:57:05.0310 5424 HidBatt - ok 10:57:05.0341 5424 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys 10:57:05.0388 5424 HidBth - ok 10:57:05.0403 5424 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys 10:57:05.0435 5424 HidIr - ok 10:57:05.0450 5424 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys 10:57:05.0466 5424 HidUsb - ok 10:57:05.0481 5424 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 10:57:05.0497 5424 HpSAMD - ok 10:57:05.0544 5424 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 10:57:05.0606 5424 HTTP - ok 10:57:05.0606 5424 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 10:57:05.0622 5424 hwpolicy - ok 10:57:05.0622 5424 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 10:57:05.0637 5424 i8042prt - ok 10:57:05.0700 5424 iaStor (d7921d5a870b11cc1adab198a519d50a) C:\Windows\system32\DRIVERS\iaStor.sys 10:57:05.0715 5424 iaStor - ok 10:57:05.0778 5424 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 10:57:05.0793 5424 iaStorV - ok 10:57:06.0043 5424 IDSVia64 (18c40c3f368323b203ace403cb430db1) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\IPSDefs\20120217.003\IDSvia64.sys 10:57:06.0059 5424 IDSVia64 - ok 10:57:06.0339 5424 igfx (0d1b8c64bdf0e5cdc523a1409ffb5ef0) C:\Windows\system32\DRIVERS\igdkmd64.sys 10:57:06.0776 5424 igfx - ok 10:57:06.0823 5424 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys 10:57:06.0823 5424 iirsp - ok 10:57:06.0870 5424 intaud_WaveExtensible (caddf0927dac63edae48f5c35a61d87d) C:\Windows\system32\drivers\intelaud.sys 10:57:06.0885 5424 intaud_WaveExtensible - ok 10:57:07.0026 5424 IntcAzAudAddService (a3c9367a02b2a1fc22536add3601b64f) C:\Windows\system32\drivers\RTKVHD64.sys 10:57:07.0088 5424 IntcAzAudAddService - ok 10:57:07.0151 5424 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys 10:57:07.0213 5424 IntcDAud - ok 10:57:07.0244 5424 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 10:57:07.0244 5424 intelide - ok 10:57:07.0275 5424 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 10:57:07.0291 5424 intelppm - ok 10:57:07.0307 5424 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 10:57:07.0338 5424 IpFilterDriver - ok 10:57:07.0369 5424 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 10:57:07.0385 5424 IPMIDRV - ok 10:57:07.0431 5424 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 10:57:07.0478 5424 IPNAT - ok 10:57:07.0509 5424 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 10:57:07.0619 5424 IRENUM - ok 10:57:07.0619 5424 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 10:57:07.0634 5424 isapnp - ok 10:57:07.0650 5424 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 10:57:07.0665 5424 iScsiPrt - ok 10:57:07.0712 5424 iwdbus (716f66336f10885d935b08174dc54242) C:\Windows\system32\DRIVERS\iwdbus.sys 10:57:07.0743 5424 iwdbus - ok 10:57:07.0775 5424 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 10:57:07.0775 5424 kbdclass - ok 10:57:07.0790 5424 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 10:57:07.0821 5424 kbdhid - ok 10:57:07.0868 5424 kbfiltr (e63ef8c3271d014f14e2469ce75fecb4) C:\Windows\system32\DRIVERS\kbfiltr.sys 10:57:07.0868 5424 kbfiltr - ok 10:57:07.0915 5424 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys 10:57:07.0946 5424 KSecDD - ok 10:57:07.0962 5424 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys 10:57:07.0977 5424 KSecPkg - ok 10:57:08.0040 5424 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 10:57:08.0087 5424 ksthunk - ok 10:57:08.0118 5424 L1C (655a5d8e80869781cce23760ada7e695) C:\Windows\system32\DRIVERS\L1C62x64.sys 10:57:08.0133 5424 L1C - ok 10:57:08.0165 5424 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 10:57:08.0211 5424 lltdio - ok 10:57:08.0274 5424 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys 10:57:08.0305 5424 LSI_FC - ok 10:57:08.0321 5424 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys 10:57:08.0336 5424 LSI_SAS - ok 10:57:08.0336 5424 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys 10:57:08.0352 5424 LSI_SAS2 - ok 10:57:08.0352 5424 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys 10:57:08.0367 5424 LSI_SCSI - ok 10:57:08.0383 5424 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 10:57:08.0430 5424 luafv - ok 10:57:08.0445 5424 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys 10:57:08.0445 5424 megasas - ok 10:57:08.0461 5424 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys 10:57:08.0477 5424 MegaSR - ok 10:57:08.0508 5424 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys 10:57:08.0523 5424 MEIx64 - ok 10:57:08.0523 5424 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 10:57:08.0570 5424 Modem - ok 10:57:08.0601 5424 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 10:57:08.0633 5424 monitor - ok 10:57:08.0648 5424 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 10:57:08.0664 5424 mouclass - ok 10:57:08.0664 5424 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 10:57:08.0695 5424 mouhid - ok 10:57:08.0726 5424 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 10:57:08.0726 5424 mountmgr - ok 10:57:08.0742 5424 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 10:57:08.0757 5424 mpio - ok 10:57:08.0757 5424 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 10:57:08.0804 5424 mpsdrv - ok 10:57:08.0820 5424 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 10:57:08.0913 5424 MRxDAV - ok 10:57:08.0945 5424 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 10:57:09.0007 5424 mrxsmb - ok 10:57:09.0069 5424 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 10:57:09.0101 5424 mrxsmb10 - ok 10:57:09.0116 5424 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 10:57:09.0163 5424 mrxsmb20 - ok 10:57:09.0194 5424 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 10:57:09.0210 5424 msahci - ok 10:57:09.0210 5424 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 10:57:09.0225 5424 msdsm - ok 10:57:09.0241 5424 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 10:57:09.0272 5424 Msfs - ok 10:57:09.0272 5424 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 10:57:09.0319 5424 mshidkmdf - ok 10:57:09.0319 5424 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 10:57:09.0335 5424 msisadrv - ok 10:57:09.0366 5424 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 10:57:09.0413 5424 MSKSSRV - ok 10:57:09.0428 5424 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 10:57:09.0475 5424 MSPCLOCK - ok 10:57:09.0491 5424 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 10:57:09.0522 5424 MSPQM - ok 10:57:09.0553 5424 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 10:57:09.0569 5424 MsRPC - ok 10:57:09.0569 5424 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 10:57:09.0584 5424 mssmbios - ok 10:57:09.0584 5424 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 10:57:09.0631 5424 MSTEE - ok 10:57:09.0647 5424 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys 10:57:09.0662 5424 MTConfig - ok 10:57:09.0693 5424 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 10:57:09.0693 5424 Mup - ok 10:57:09.0756 5424 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 10:57:09.0787 5424 NativeWifiP - ok 10:57:09.0990 5424 NAVENG (2dbe90210de76be6e1653bb20ec70ec2) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20120217.004\ENG64.SYS 10:57:09.0990 5424 NAVENG - ok 10:57:10.0068 5424 NAVEX15 (346da70e203b8e2c850277713de8f71b) C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20120217.004\EX64.SYS 10:57:10.0099 5424 NAVEX15 - ok 10:57:10.0224 5424 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys 10:57:10.0255 5424 NDIS - ok 10:57:10.0286 5424 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 10:57:10.0364 5424 NdisCap - ok 10:57:10.0395 5424 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 10:57:10.0442 5424 NdisTapi - ok 10:57:10.0458 5424 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 10:57:10.0489 5424 Ndisuio - ok 10:57:10.0505 5424 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 10:57:10.0551 5424 NdisWan - ok 10:57:10.0567 5424 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 10:57:10.0598 5424 NDProxy - ok 10:57:10.0598 5424 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 10:57:10.0645 5424 NetBIOS - ok 10:57:10.0661 5424 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 10:57:10.0692 5424 NetBT - ok 10:57:10.0926 5424 NETwNs64 (ac69618de5bcce8747c9ab0aae1003c1) C:\Windows\system32\DRIVERS\NETwNs64.sys 10:57:11.0175 5424 NETwNs64 - ok 10:57:11.0238 5424 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys 10:57:11.0238 5424 nfrd960 - ok 10:57:11.0253 5424 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 10:57:11.0285 5424 Npfs - ok 10:57:11.0300 5424 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 10:57:11.0331 5424 nsiproxy - ok 10:57:11.0394 5424 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 10:57:11.0472 5424 Ntfs - ok 10:57:11.0487 5424 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 10:57:11.0534 5424 Null - ok 10:57:11.0597 5424 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 10:57:11.0612 5424 nvraid - ok 10:57:11.0628 5424 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 10:57:11.0643 5424 nvstor - ok 10:57:11.0675 5424 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 10:57:11.0675 5424 nv_agp - ok 10:57:11.0690 5424 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 10:57:11.0721 5424 ohci1394 - ok 10:57:11.0737 5424 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys 10:57:11.0737 5424 Parport - ok 10:57:11.0753 5424 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 10:57:11.0768 5424 partmgr - ok 10:57:11.0784 5424 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 10:57:11.0799 5424 pci - ok 10:57:11.0799 5424 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 10:57:11.0815 5424 pciide - ok 10:57:11.0815 5424 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys 10:57:11.0831 5424 pcmcia - ok 10:57:11.0846 5424 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 10:57:11.0846 5424 pcw - ok 10:57:11.0862 5424 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 10:57:11.0909 5424 PEAUTH - ok 10:57:11.0987 5424 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 10:57:12.0049 5424 PptpMiniport - ok 10:57:12.0065 5424 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys 10:57:12.0096 5424 Processor - ok 10:57:12.0143 5424 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 10:57:12.0174 5424 Psched - ok 10:57:12.0221 5424 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys 10:57:12.0267 5424 ql2300 - ok 10:57:12.0283 5424 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys 10:57:12.0299 5424 ql40xx - ok 10:57:12.0299 5424 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 10:57:12.0330 5424 QWAVEdrv - ok 10:57:12.0345 5424 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 10:57:12.0377 5424 RasAcd - ok 10:57:12.0408 5424 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 10:57:12.0439 5424 RasAgileVpn - ok 10:57:12.0455 5424 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 10:57:12.0517 5424 Rasl2tp - ok 10:57:12.0548 5424 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 10:57:12.0595 5424 RasPppoe - ok 10:57:12.0595 5424 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 10:57:12.0626 5424 RasSstp - ok 10:57:12.0673 5424 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 10:57:12.0704 5424 rdbss - ok 10:57:12.0720 5424 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys 10:57:12.0735 5424 rdpbus - ok 10:57:12.0767 5424 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 10:57:12.0829 5424 RDPCDD - ok 10:57:12.0845 5424 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 10:57:12.0876 5424 RDPENCDD - ok 10:57:12.0907 5424 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 10:57:12.0938 5424 RDPREFMP - ok 10:57:12.0954 5424 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys 10:57:13.0001 5424 RDPWD - ok 10:57:13.0032 5424 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 10:57:13.0032 5424 rdyboost - ok 10:57:13.0079 5424 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys 10:57:13.0094 5424 RFCOMM - ok 10:57:13.0110 5424 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 10:57:13.0172 5424 rspndr - ok 10:57:13.0172 5424 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 10:57:13.0188 5424 sbp2port - ok 10:57:13.0188 5424 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 10:57:13.0235 5424 scfilter - ok 10:57:13.0281 5424 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 10:57:13.0375 5424 secdrv - ok 10:57:13.0406 5424 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys 10:57:13.0437 5424 Serenum - ok 10:57:13.0453 5424 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys 10:57:13.0484 5424 Serial - ok 10:57:13.0500 5424 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys 10:57:13.0515 5424 sermouse - ok 10:57:13.0547 5424 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 10:57:13.0562 5424 sffdisk - ok 10:57:13.0562 5424 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 10:57:13.0578 5424 sffp_mmc - ok 10:57:13.0593 5424 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 10:57:13.0609 5424 sffp_sd - ok 10:57:13.0625 5424 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys 10:57:13.0640 5424 sfloppy - ok 10:57:13.0687 5424 SiSGbeLH (1bc348cf6baa90ec8e533ef6e6a69933) C:\Windows\system32\DRIVERS\SiSG664.sys 10:57:13.0718 5424 SiSGbeLH - ok 10:57:13.0734 5424 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys 10:57:13.0749 5424 SiSRaid2 - ok 10:57:13.0749 5424 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys 10:57:13.0765 5424 SiSRaid4 - ok 10:57:13.0796 5424 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 10:57:13.0843 5424 Smb - ok 10:57:13.0890 5424 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 10:57:13.0890 5424 spldr - ok 10:57:13.0983 5424 SRTSP (90ef30c3867bcde4579c01a6d6e75a7a) C:\Windows\System32\Drivers\N360x64\0502000.00D\SRTSP64.SYS 10:57:14.0015 5424 SRTSP - ok 10:57:14.0061 5424 SRTSPX (c513e8a5e7978da49077f5484344ee1b) C:\Windows\system32\drivers\N360x64\0502000.00D\SRTSPX64.SYS 10:57:14.0077 5424 SRTSPX - ok 10:57:14.0139 5424 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 10:57:14.0217 5424 srv - ok 10:57:14.0249 5424 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 10:57:14.0280 5424 srv2 - ok 10:57:14.0327 5424 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 10:57:14.0358 5424 srvnet - ok 10:57:14.0405 5424 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys 10:57:14.0405 5424 stexstor - ok 10:57:14.0420 5424 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 10:57:14.0436 5424 swenum - ok 10:57:14.0623 5424 SymDS (6160145c7a87fc7672e8e3b886888176) C:\Windows\system32\drivers\N360x64\0502000.00D\SYMDS64.SYS 10:57:14.0639 5424 SymDS - ok 10:57:14.0919 5424 SymEFA (96aeed40d4d3521568b42027687e69e0) C:\Windows\system32\drivers\N360x64\0502000.00D\SYMEFA64.SYS 10:57:14.0935 5424 SymEFA - ok 10:57:14.0982 5424 SymEvent (21a1c2d694c3cf962d31f5e873ab3d6f) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 10:57:14.0997 5424 SymEvent - ok 10:57:15.0044 5424 SymIRON (bd0d711d8cbfcaa19ca123306eaf53a5) C:\Windows\system32\drivers\N360x64\0502000.00D\Ironx64.SYS 10:57:15.0044 5424 SymIRON - ok 10:57:15.0107 5424 SymNetS (a6adb3d83023f8daa0f7b6fda785d83b) C:\Windows\System32\Drivers\N360x64\0502000.00D\SYMNETS.SYS 10:57:15.0122 5424 SymNetS - ok 10:57:15.0216 5424 SynTP (f0d7c68cda9784689caa72c17af393b2) C:\Windows\system32\DRIVERS\SynTP.sys 10:57:15.0231 5424 SynTP - ok 10:57:15.0341 5424 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 10:57:15.0450 5424 Tcpip - ok 10:57:15.0512 5424 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 10:57:15.0543 5424 TCPIP6 - ok 10:57:15.0590 5424 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 10:57:15.0637 5424 tcpipreg - ok 10:57:15.0653 5424 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 10:57:15.0699 5424 TDPIPE - ok 10:57:15.0715 5424 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 10:57:15.0746 5424 TDTCP - ok 10:57:15.0777 5424 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 10:57:15.0809 5424 tdx - ok 10:57:15.0824 5424 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys 10:57:15.0840 5424 TermDD - ok 10:57:15.0871 5424 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 10:57:15.0902 5424 tssecsrv - ok 10:57:15.0933 5424 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 10:57:16.0011 5424 TsUsbFlt - ok 10:57:16.0011 5424 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys 10:57:16.0043 5424 TsUsbGD - ok 10:57:16.0074 5424 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 10:57:16.0136 5424 tunnel - ok 10:57:16.0199 5424 TurboB (b355581a9da34c92e2dbafa410d2f829) C:\Windows\system32\DRIVERS\TurboB.sys 10:57:16.0230 5424 TurboB - ok 10:57:16.0277 5424 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys 10:57:16.0277 5424 uagp35 - ok 10:57:16.0308 5424 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 10:57:16.0355 5424 udfs - ok 10:57:16.0355 5424 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 10:57:16.0370 5424 uliagpkx - ok 10:57:16.0401 5424 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 10:57:16.0433 5424 umbus - ok 10:57:16.0464 5424 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys 10:57:16.0495 5424 UmPass - ok 10:57:16.0542 5424 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys 10:57:16.0589 5424 USBAAPL64 - ok 10:57:16.0651 5424 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 10:57:16.0667 5424 usbccgp - ok 10:57:16.0713 5424 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 10:57:16.0745 5424 usbcir - ok 10:57:16.0760 5424 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys 10:57:16.0823 5424 usbehci - ok 10:57:16.0869 5424 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 10:57:16.0901 5424 usbhub - ok 10:57:16.0932 5424 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys 10:57:16.0979 5424 usbohci - ok 10:57:17.0025 5424 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys 10:57:17.0057 5424 usbprint - ok 10:57:17.0103 5424 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 10:57:17.0181 5424 USBSTOR - ok 10:57:17.0197 5424 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 10:57:17.0228 5424 usbuhci - ok 10:57:17.0291 5424 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys 10:57:17.0306 5424 usbvideo - ok 10:57:17.0322 5424 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 10:57:17.0353 5424 vdrvroot - ok 10:57:17.0353 5424 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 10:57:17.0369 5424 vga - ok 10:57:17.0384 5424 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 10:57:17.0415 5424 VgaSave - ok 10:57:17.0431 5424 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 10:57:17.0447 5424 vhdmp - ok 10:57:17.0447 5424 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 10:57:17.0462 5424 viaide - ok 10:57:17.0462 5424 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 10:57:17.0478 5424 volmgr - ok 10:57:17.0509 5424 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 10:57:17.0525 5424 volmgrx - ok 10:57:17.0540 5424 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 10:57:17.0540 5424 volsnap - ok 10:57:17.0571 5424 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys 10:57:17.0571 5424 vsmraid - ok 10:57:17.0587 5424 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys 10:57:17.0618 5424 vwifibus - ok 10:57:17.0634 5424 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 10:57:17.0649 5424 vwififlt - ok 10:57:17.0649 5424 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys 10:57:17.0665 5424 vwifimp - ok 10:57:17.0681 5424 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys 10:57:17.0696 5424 WacomPen - ok 10:57:17.0727 5424 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 10:57:17.0774 5424 WANARP - ok 10:57:17.0790 5424 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 10:57:17.0805 5424 Wanarpv6 - ok 10:57:17.0852 5424 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys 10:57:17.0852 5424 Wd - ok 10:57:17.0868 5424 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 10:57:17.0883 5424 Wdf01000 - ok 10:57:17.0915 5424 wdkmd (63ce387483e74a0bd79ee4e5eba1fd2e) C:\Windows\system32\DRIVERS\WDKMD.sys 10:57:17.0930 5424 wdkmd - ok 10:57:17.0961 5424 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 10:57:17.0977 5424 WfpLwf - ok 10:57:18.0039 5424 WimFltr (52ded146e4797e6ccf94799e8e22bb2a) C:\Windows\system32\DRIVERS\wimfltr.sys 10:57:18.0039 5424 WimFltr - ok 10:57:18.0055 5424 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 10:57:18.0055 5424 WIMMount - ok 10:57:18.0149 5424 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 10:57:18.0180 5424 WinUsb - ok 10:57:18.0227 5424 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys 10:57:18.0242 5424 WmiAcpi - ok 10:57:18.0258 5424 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 10:57:18.0289 5424 ws2ifsl - ok 10:57:18.0305 5424 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 10:57:18.0367 5424 WudfPf - ok 10:57:18.0367 5424 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 10:57:18.0461 5424 WUDFRd - ok 10:57:18.0601 5424 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 10:57:18.0804 5424 \Device\Harddisk0\DR0 ( TDSS File System ) - warning 10:57:18.0804 5424 \Device\Harddisk0\DR0 - detected TDSS File System (1) 10:57:18.0804 5424 Boot (0x1200) (2b28ff1742f1def7ff92ac9af6d1c260) \Device\Harddisk0\DR0\Partition0 10:57:18.0819 5424 \Device\Harddisk0\DR0\Partition0 - ok 10:57:18.0819 5424 ============================================================ 10:57:18.0819 5424 Scan finished 10:57:18.0819 5424 ============================================================ 10:57:18.0835 5184 Detected object count: 1 10:57:18.0835 5184 Actual detected object count: 1 10:58:21.0703 5184 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user 10:58:21.0703 5184 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
  2. Me, too. I have a bluetooth device installed on my windows xp machine, file is dated 2004, Malwarebytes has never detected it as a trojan before, but today it did. I'm afraid to remove it in case it's a valid file.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.