Jump to content

jageeaguilar

Members
  • Posts

    7
  • Joined

  • Last visited

Posts posted by jageeaguilar

  1. DDS (Ver_2012-11-20.01) - NTFS_AMD64

    Internet Explorer: 9.0.8112.16455

    Run by Josh Aguilar at 11:11:25 on 2012-12-10

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.4090.1850 [GMT -8:00]

    .

    AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}

    SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    ============== Running Processes ===============

    .

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe -k rpcss

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Windows\system32\svchost.exe -k GPSvcGroup

    C:\Windows\system32\SLsvc.exe

    C:\Windows\system32\svchost.exe -k LocalService

    C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe -k NetworkService

    C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    C:\Windows\system32\taskeng.exe

    C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe

    C:\Windows\system32\Dwm.exe

    C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    C:\Windows\Explorer.EXE

    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    C:\Program Files\Bonjour\mDNSResponder.exe

    C:\Program Files\Windows Defender\MSASCui.exe

    C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

    C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe

    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe

    C:\Windows\WindowsMobile\wmdcBase.exe

    C:\Program Files\Logitech\SetPointP\SetPoint.exe

    C:\Windows\ehome\ehtray.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe

    C:\Users\Josh Aguilar\Local Settings\Apps\F.lux\flux.exe

    C:\Users\Josh Aguilar\AppData\Local\Programs\Google\MusicManager\MusicManager.exe

    C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE

    C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe

    C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe

    C:\Program Files\AVAST Software\Avast\AvastUI.exe

    C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

    C:\Program Files (x86)\O2Micro Flash Memory Card Driver\o2flash.exe

    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

    C:\Windows\system32\svchost.exe -k imgsvc

    C:\Windows\System32\svchost.exe -k WerSvcGroup

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    C:\Windows\system32\SearchIndexer.exe

    C:\Windows\system32\DRIVERS\xaudio64.exe

    C:\Windows\system32\RUNDLL32.EXE

    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

    C:\Program Files\iPod\bin\iPodService.exe

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Update\1.3.21.123\GoogleCrashHandler.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Update\1.3.21.123\GoogleCrashHandler64.exe

    C:\Windows\system32\svchost.exe -k WindowsMobile

    C:\Windows\System32\mobsync.exe

    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

    C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\servicing\TrustedInstaller.exe

    C:\Users\Josh Aguilar\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Windows\system32\SearchProtocolHost.exe

    C:\Windows\system32\SearchFilterHost.exe

    C:\Windows\System32\osk.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\System32\cscript.exe

    .

    ============== Pseudo HJT Report ===============

    .

    uStart Page = hxxp://safesearchr.lavasoft.com/?source=3336ca5f&tbp=homepage&toolbarid=adawaretb&v=2_2&u=3D525B33D5D58B6F70535C507AFCDBA6

    uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=2&o=vp64&d=1108&m=p-7805u&c=BB

    mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=2&o=vp64&d=1108&m=p-7805u&c=BB

    mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=2&o=vp64&d=1108&m=p-7805u&c=BB

    uURLSearchHooks: {687578b9-7132-4a7a-80e4-30ee31099e03} - <orphaned>

    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll

    BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    BHO: NitroPDFBHO Class: {CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54} - C:\Program Files (x86)\Nitro PDF\PDF Download\NitroPDF.dll

    BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

    TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

    uRun: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    uRun: [Google Update] "C:\Users\Josh Aguilar\AppData\Local\Google\Update\GoogleUpdate.exe" /c

    uRun: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent

    uRun: [F.lux] "C:\Users\Josh Aguilar\Local Settings\Apps\F.lux\flux.exe" /noshow

    uRun: [MusicManager] "C:\Users\Josh Aguilar\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"

    uRun: [WorkForce 435(Network)] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIHRA.EXE /FU "C:\Users\JOSHAG~1\AppData\Local\Temp\E_S8689.tmp" /EF "HKCU"

    mRun: [eRecoveryService] <no file>

    StartupFolder: C:\Users\JOSHAG~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ONENOT~1.LNK - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE

    mPolicies-Explorer: NoActiveDesktop = dword:1

    mPolicies-Explorer: NoActiveDesktopChanges = dword:1

    mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0

    mPolicies-System: EnableUIADesktopToggle = dword:0

    IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000

    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll

    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

    DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab

    DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab

    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab

    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    TCP: NameServer = 192.168.1.1

    TCP: Interfaces\{43A86402-F5FB-487B-AB19-A46F94CFC834} : DHCPNameServer = 209.18.47.61 209.18.47.62

    TCP: Interfaces\{FA4801C0-30F9-4BC8-8C1C-1D5CBF945AFA} : DHCPNameServer = 192.168.1.1

    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll

    LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg

    x64-mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=2&o=vp64&d=1108&m=p-7805u&c=BB

    x64-mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=2&o=vp64&d=1108&m=p-7805u&c=BB

    x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll

    x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll

    x64-Run: [Windows Defender] C:\Program Files (x86)\Windows Defender\MSASCui.exe -hide

    x64-Run: [iAAnotif] "C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe"

    x64-Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    x64-Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun

    x64-Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdcBase.exe

    x64-Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming

    x64-mPolicies-Explorer: NoActiveDesktop = dword:1

    x64-mPolicies-Explorer: NoActiveDesktopChanges = dword:1

    x64-mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0

    x64-mPolicies-System: EnableUIADesktopToggle = dword:0

    x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

    .

    ============= SERVICES / DRIVERS ===============

    .

    R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2012-11-4 984144]

    R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2012-11-4 370288]

    R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-5-14 759048]

    R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2012-11-4 25232]

    R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2012-11-4 71600]

    R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-11-4 44808]

    R2 EpsonCustomerParticipation;EpsonCustomerParticipation;C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe [2011-6-9 555392]

    R2 ETService;Empowering Technology Service;C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe [2008-11-20 24576]

    R2 FontCache;Windows Font Cache Service;C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 27648]

    R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-11-17 399432]

    R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-11-17 676936]

    R2 yksvc;Marvell Yukon Service;RUNDLL32.EXE ykx64coinst,serviceStartProc --> RUNDLL32.EXE ykx64coinst,serviceStartProc [?]

    R3 CAXHWAZL;CAXHWAZL;C:\Windows\System32\drivers\CAXHWAZL.sys [2008-10-9 294400]

    R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2012-11-17 25928]

    R3 NETwNv64;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\NETwNv64.sys [2010-10-31 7959552]

    R3 O2MDRDR;O2MDRDR;C:\Windows\System32\drivers\o2mdx64.sys [2008-5-12 62424]

    R3 O2SDRDR;O2SDRDR;C:\Windows\System32\drivers\o2sdx64.sys [2008-6-11 51800]

    R3 VSTWinDriver6;VSTWinDriver6;C:\Windows\System32\drivers\VSTwindrvr6.sys [2008-7-3 252928]

    R3 yukonx64;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk60x64.sys [2008-7-24 392192]

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]

    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;C:\Windows\System32\drivers\LEqdUsb.sys [2011-9-1 76056]

    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;C:\Windows\System32\drivers\LHidEqd.sys [2011-9-1 15128]

    S3 NETw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\NETw5v64.sys [2008-11-17 4751360]

    S3 npggsvc;nProtect GameGuard Service;C:\Windows\System32\GameMon.des -service --> C:\Windows\System32\GameMon.des -service [?]

    S3 PCASp50a64;PCASp50a64 NDIS Protocol Driver;C:\Windows\System32\drivers\PCASp50a64.sys [2009-8-24 41280]

    S3 PerfHost;Performance Counter DLL Host;C:\Windows\SysWOW64\perfhost.exe [2008-1-20 19968]

    S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-4-25 52736]

    S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-3-18 1020768]

    S4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-8-3 89920]

    .

    =============== File Associations ===============

    .

    FileExt: .js: JSFile=C:\Windows\SysWOW64\WScript.exe "%1" %*

    FileExt: .jse: JSEFile=C:\Windows\SysWOW64\WScript.exe "%1" %*

    .

    =============== Created Last 30 ================

    .

    .

    ==================== Find3M ====================

    .

    2012-11-16 11:05:39 66395536 ----a-w- C:\Windows\System32\mrt.exe

    2012-10-30 23:51:56 59728 ----a-w- C:\Windows\System32\drivers\aswTdi.sys

    2012-10-30 23:51:55 984144 ----a-w- C:\Windows\System32\drivers\aswSnx.sys

    2012-10-30 23:51:55 71600 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys

    2012-10-30 23:51:55 44272 ----a-w- C:\Windows\System32\drivers\aswRdr.sys

    2012-10-30 23:51:55 370288 ----a-w- C:\Windows\System32\drivers\aswSP.sys

    2012-10-30 23:51:53 25232 ----a-w- C:\Windows\System32\drivers\aswFsBlk.sys

    2012-10-30 23:51:07 41224 ----a-w- C:\Windows\avastSS.scr

    2012-10-30 23:50:59 227648 ----a-w- C:\Windows\SysWow64\aswBoot.exe

    2012-10-30 23:50:30 285328 ----a-w- C:\Windows\System32\aswBoot.exe

    2012-10-12 14:53:34 2769920 ----a-w- C:\Windows\System32\win32k.sys

    2012-10-08 23:44:21 73656 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

    2012-10-08 23:44:21 696760 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

    2012-10-04 03:03:05 17811968 ----a-w- C:\Windows\System32\mshtml.dll

    2012-10-04 02:24:36 10925568 ----a-w- C:\Windows\System32\ieframe.dll

    2012-10-04 02:18:45 2312704 ----a-w- C:\Windows\System32\jscript9.dll

    2012-10-04 02:12:16 1346048 ----a-w- C:\Windows\System32\urlmon.dll

    2012-10-04 02:11:22 1392128 ----a-w- C:\Windows\System32\wininet.dll

    2012-10-04 02:10:43 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl

    2012-10-04 02:10:19 237056 ----a-w- C:\Windows\System32\url.dll

    2012-10-04 02:08:50 85504 ----a-w- C:\Windows\System32\jsproxy.dll

    2012-10-04 02:07:11 173056 ----a-w- C:\Windows\System32\ieUnatt.exe

    2012-10-04 02:07:01 816640 ----a-w- C:\Windows\System32\jscript.dll

    2012-10-04 02:06:55 599040 ----a-w- C:\Windows\System32\vbscript.dll

    2012-10-04 02:05:40 729088 ----a-w- C:\Windows\System32\msfeeds.dll

    2012-10-04 02:04:55 2144768 ----a-w- C:\Windows\System32\iertutil.dll

    2012-10-04 02:03:48 96768 ----a-w- C:\Windows\System32\mshtmled.dll

    2012-10-04 02:03:26 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

    2012-10-04 01:59:12 248320 ----a-w- C:\Windows\System32\ieui.dll

    2012-10-03 23:00:04 12320768 ----a-w- C:\Windows\SysWow64\mshtml.dll

    2012-10-03 22:35:48 9738240 ----a-w- C:\Windows\SysWow64\ieframe.dll

    2012-10-03 22:30:48 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll

    2012-10-03 22:22:51 1103872 ----a-w- C:\Windows\SysWow64\urlmon.dll

    2012-10-03 22:21:58 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

    2012-10-03 22:21:57 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll

    2012-10-03 22:20:53 231936 ----a-w- C:\Windows\SysWow64\url.dll

    2012-10-03 22:19:28 65024 ----a-w- C:\Windows\SysWow64\jsproxy.dll

    2012-10-03 22:18:27 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

    2012-10-03 22:18:10 717824 ----a-w- C:\Windows\SysWow64\jscript.dll

    2012-10-03 22:18:01 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll

    2012-10-03 22:16:41 607744 ----a-w- C:\Windows\SysWow64\msfeeds.dll

    2012-10-03 22:16:03 1793024 ----a-w- C:\Windows\SysWow64\iertutil.dll

    2012-10-03 22:15:16 73216 ----a-w- C:\Windows\SysWow64\mshtmled.dll

    2012-10-03 22:14:47 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

    2012-10-03 22:11:09 176640 ----a-w- C:\Windows\SysWow64\ieui.dll

    2012-09-30 03:54:26 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

    2012-09-25 16:31:19 91648 ----a-w- C:\Windows\System32\synceng.dll

    2012-09-25 16:19:41 75776 ----a-w- C:\Windows\SysWow64\synceng.dll

    2012-09-23 01:10:34 18960 ----a-w- C:\Windows\System32\drivers\LNonPnP.sys

    2012-09-13 13:45:46 2048 ----a-w- C:\Windows\System32\tzres.dll

    2012-09-13 13:28:08 2048 ----a-w- C:\Windows\SysWow64\tzres.dll

    .

    ============= FINISH: 11:12:45.40 ===============

    attach.txt

  2. Thank you,

    I have tried to uninstall AVG, both versions. I am really concerned because twice in the last couple weeks I have had accounts (email and Blizzard) compromised that I normally do not have trouble with suspicious log ins. Computer performance is also down significantly. I only had avast and the newer versions of the anti virus after performance dipped.

  3. I wasn't able to find the file for the report, so i just copy and pasted the text.

    19:39:36.0485 5812 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35

    19:39:37.0371 5812 ============================================================

    19:39:37.0371 5812 Current date / time: 2012/11/20 19:39:37.0371

    19:39:37.0371 5812 SystemInfo:

    19:39:37.0371 5812

    19:39:37.0371 5812 OS Version: 6.0.6002 ServicePack: 2.0

    19:39:37.0371 5812 Product type: Workstation

    19:39:37.0371 5812 ComputerName: JOSH-5622251950

    19:39:37.0372 5812 UserName: Josh Aguilar

    19:39:37.0372 5812 Windows directory: C:\Windows

    19:39:37.0372 5812 System windows directory: C:\Windows

    19:39:37.0372 5812 Running under WOW64

    19:39:37.0372 5812 Processor architecture: Intel x64

    19:39:37.0372 5812 Number of processors: 2

    19:39:37.0372 5812 Page size: 0x1000

    19:39:37.0372 5812 Boot type: Normal boot

    19:39:37.0372 5812 ============================================================

    19:39:37.0919 5812 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

    19:39:37.0930 5812 ============================================================

    19:39:37.0930 5812 \Device\Harddisk0\DR0:

    19:39:37.0930 5812 MBR partitions:

    19:39:37.0930 5812 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1400800, BlocksNum 0x2402D800

    19:39:37.0930 5812 ============================================================

    19:39:37.0968 5812 C: <-> \Device\Harddisk0\DR0\Partition1

    19:39:37.0969 5812 ============================================================

    19:39:37.0969 5812 Initialize success

    19:39:37.0969 5812 ============================================================

    19:39:39.0917 3084 ============================================================

    19:39:39.0917 3084 Scan started

    19:39:39.0918 3084 Mode: Manual;

    19:39:39.0918 3084 ============================================================

    19:39:40.0267 3084 ================ Scan system memory ========================

    19:39:40.0267 3084 System memory - ok

    19:39:40.0268 3084 ================ Scan services =============================

    19:39:40.0386 3084 [ B33CF4DE909A5B30F526D82053A63C8E ] ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe

    19:39:40.0402 3084 ABBYY.Licensing.FineReader.Sprint.9.0 - ok

    19:39:40.0641 3084 [ 1965AAFFAB07E3FB03C77F81BEBA3547 ] ACPI C:\Windows\system32\drivers\acpi.sys

    19:39:40.0645 3084 ACPI - ok

    19:39:40.0732 3084 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    19:39:40.0734 3084 AdobeARMservice - ok

    19:39:40.0819 3084 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    19:39:40.0823 3084 AdobeFlashPlayerUpdateSvc - ok

    19:39:40.0875 3084 [ F14215E37CF124104575073F782111D2 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys

    19:39:40.0882 3084 adp94xx - ok

    19:39:40.0975 3084 [ 7D05A75E3066861A6610F7EE04FF085C ] adpahci C:\Windows\system32\drivers\adpahci.sys

    19:39:40.0980 3084 adpahci - ok

    19:39:40.0990 3084 [ 820A201FE08A0C345B3BEDBC30E1A77C ] adpu160m C:\Windows\system32\drivers\adpu160m.sys

    19:39:40.0993 3084 adpu160m - ok

    19:39:41.0007 3084 [ 9B4AB6854559DC168FBB4C24FC52E794 ] adpu320 C:\Windows\system32\drivers\adpu320.sys

    19:39:41.0010 3084 adpu320 - ok

    19:39:41.0039 3084 [ 0F421175574BFE0BF2F4D8E910A253BB ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

    19:39:41.0040 3084 AeLookupSvc - ok

    19:39:41.0076 3084 [ C4F6CE6087760AD70960C9EB130E7943 ] AFD C:\Windows\system32\drivers\afd.sys

    19:39:41.0080 3084 AFD - ok

    19:39:41.0108 3084 [ F6F6793B7F17B550ECFDBD3B229173F7 ] agp440 C:\Windows\system32\drivers\agp440.sys

    19:39:41.0109 3084 agp440 - ok

    19:39:41.0149 3084 [ 222CB641B4B8A1D1126F8033F9FD6A00 ] aic78xx C:\Windows\system32\drivers\djsvs.sys

    19:39:41.0151 3084 aic78xx - ok

    19:39:41.0201 3084 [ 5922F4F59B7868F3D74BBBBEB7B825A3 ] ALG C:\Windows\System32\alg.exe

    19:39:41.0203 3084 ALG - ok

    19:39:41.0229 3084 [ 157D0898D4B73F075CE9FA26B482DF98 ] aliide C:\Windows\system32\drivers\aliide.sys

    19:39:41.0230 3084 aliide - ok

    19:39:41.0239 3084 [ 970FA5059E61E30D25307B99903E991E ] amdide C:\Windows\system32\drivers\amdide.sys

    19:39:41.0240 3084 amdide - ok

    19:39:41.0261 3084 [ CDC3632A3A5EA4DBB83E46076A3165A1 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys

    19:39:41.0262 3084 AmdK8 - ok

    19:39:41.0298 3084 [ 9C37B3FD5615477CB9A0CD116CF43F5C ] Appinfo C:\Windows\System32\appinfo.dll

    19:39:41.0299 3084 Appinfo - ok

    19:39:41.0360 3084 [ F401929EE0CC92BFE7F15161CA535383 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    19:39:41.0361 3084 Apple Mobile Device - ok

    19:39:41.0386 3084 [ BA8417D4765F3988FF921F30F630E303 ] arc C:\Windows\system32\drivers\arc.sys

    19:39:41.0388 3084 arc - ok

    19:39:41.0409 3084 [ 9D41C435619733B34CC16A511E644B11 ] arcsas C:\Windows\system32\drivers\arcsas.sys

    19:39:41.0411 3084 arcsas - ok

    19:39:41.0452 3084 [ 4FCAEF0C5BE7629AEB878998E0FE959B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys

    19:39:41.0452 3084 aswFsBlk - ok

    19:39:41.0523 3084 [ B50CDD87772D6A11CB90924AAD399DF8 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys

    19:39:41.0523 3084 aswMonFlt - ok

    19:39:41.0559 3084 [ A4096B90F21BBD2973AFAB8EEE01CD25 ] AswRdr C:\Windows\system32\drivers\AswRdr.sys

    19:39:41.0560 3084 AswRdr - ok

    19:39:41.0592 3084 [ E71D826A1F3CE9C9DE3E77F2D02AFFBF ] aswSnx C:\Windows\system32\drivers\aswSnx.sys

    19:39:41.0615 3084 aswSnx - ok

    19:39:41.0687 3084 [ 538A32E2C99BF073D4CA76C30BEDAA60 ] aswSP C:\Windows\system32\drivers\aswSP.sys

    19:39:41.0691 3084 aswSP - ok

    19:39:41.0757 3084 [ 6EDC79D73745FD44C41B55B2D13D0B70 ] aswTdi C:\Windows\system32\drivers\aswTdi.sys

    19:39:41.0757 3084 aswTdi - ok

    19:39:41.0813 3084 [ 22D13FF3DAFEC2A80634752B1EAA2DE6 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

    19:39:41.0815 3084 AsyncMac - ok

    19:39:41.0831 3084 [ 1898FAE8E07D97F2F6C2D5326C633FAC ] atapi C:\Windows\system32\drivers\atapi.sys

    19:39:41.0832 3084 atapi - ok

    19:39:41.0864 3084 [ 79318C744693EC983D20E9337A2F8196 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

    19:39:41.0871 3084 AudioEndpointBuilder - ok

    19:39:41.0889 3084 [ 79318C744693EC983D20E9337A2F8196 ] AudioSrv C:\Windows\System32\Audiosrv.dll

    19:39:41.0892 3084 AudioSrv - ok

    19:39:41.0997 3084 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe

    19:39:41.0998 3084 avast! Antivirus - ok

    19:39:42.0022 3084 AVGIDSDriver - ok

    19:39:42.0027 3084 AVGIDSFilter - ok

    19:39:42.0033 3084 AVGIDSHA - ok

    19:39:42.0053 3084 Avgrkx64 - ok

    19:39:42.0058 3084 Avgtdia - ok

    19:39:42.0105 3084 [ FFB96C2589FFA60473EAD78B39FBDE29 ] BFE C:\Windows\System32\bfe.dll

    19:39:42.0111 3084 BFE - ok

    19:39:42.0151 3084 [ 6D316F4859634071CC25C4FD4589AD2C ] BITS C:\Windows\System32\qmgr.dll

    19:39:42.0176 3084 BITS - ok

    19:39:42.0202 3084 [ 79FEEB40056683F8F61398D81DDA65D2 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys

    19:39:42.0204 3084 blbdrive - ok

    19:39:42.0263 3084 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

    19:39:42.0270 3084 Bonjour Service - ok

    19:39:42.0333 3084 [ 2348447A80920B2493A9B582A23E81E1 ] bowser C:\Windows\system32\DRIVERS\bowser.sys

    19:39:42.0334 3084 bowser - ok

    19:39:42.0348 3084 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys

    19:39:42.0349 3084 BrFiltLo - ok

    19:39:42.0365 3084 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys

    19:39:42.0367 3084 BrFiltUp - ok

    19:39:42.0384 3084 [ 71142FA02068CB93C9319417737C915D ] Bridge C:\Windows\system32\DRIVERS\bridge.sys

    19:39:42.0386 3084 Bridge - ok

    19:39:42.0396 3084 [ 71142FA02068CB93C9319417737C915D ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys

    19:39:42.0397 3084 BridgeMP - ok

    19:39:42.0422 3084 [ A1B39DE453433B115B4EA69EE0343816 ] Browser C:\Windows\System32\browser.dll

    19:39:42.0424 3084 Browser - ok

    19:39:42.0460 3084 [ F0F0BA4D815BE446AA6A4583CA3BCA9B ] Brserid C:\Windows\system32\drivers\brserid.sys

    19:39:42.0462 3084 Brserid - ok

    19:39:42.0477 3084 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys

    19:39:42.0478 3084 BrSerWdm - ok

    19:39:42.0487 3084 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys

    19:39:42.0489 3084 BrUsbMdm - ok

    19:39:42.0499 3084 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys

    19:39:42.0500 3084 BrUsbSer - ok

    19:39:42.0516 3084 [ E0777B34E05F8A82A21856EFC900C29F ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys

    19:39:42.0517 3084 BTHMODEM - ok

    19:39:42.0564 3084 [ CD69E6640BC4778EB4159D34A707106E ] CAXHWAZL C:\Windows\system32\DRIVERS\CAXHWAZL.sys

    19:39:42.0568 3084 CAXHWAZL - ok

    19:39:42.0590 3084 [ B4D787DB8D30793A4D4DF9FEED18F136 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

    19:39:42.0592 3084 cdfs - ok

    19:39:42.0622 3084 [ C025AA69BE3D0D25C7A2E746EF6F94FC ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys

    19:39:42.0623 3084 cdrom - ok

    19:39:42.0658 3084 [ 5A268127633C7EE2A7FB87F39D748D56 ] CertPropSvc C:\Windows\System32\certprop.dll

    19:39:42.0659 3084 CertPropSvc - ok

    19:39:42.0685 3084 [ 02EA568D498BBDD4BA55BF3FCE34D456 ] circlass C:\Windows\system32\drivers\circlass.sys

    19:39:42.0686 3084 circlass - ok

    19:39:42.0710 3084 [ 3DCA9A18B204939CFB24BEA53E31EB48 ] CLFS C:\Windows\system32\CLFS.sys

    19:39:42.0715 3084 CLFS - ok

    19:39:42.0768 3084 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

    19:39:42.0769 3084 clr_optimization_v2.0.50727_32 - ok

    19:39:42.0816 3084 [ CE07A466201096F021CD09D631B21540 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

    19:39:42.0818 3084 clr_optimization_v2.0.50727_64 - ok

    19:39:42.0868 3084 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    19:39:42.0870 3084 clr_optimization_v4.0.30319_32 - ok

    19:39:42.0918 3084 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

    19:39:42.0921 3084 clr_optimization_v4.0.30319_64 - ok

    19:39:42.0945 3084 [ B52D9A14CE4101577900A364BA86F3DF ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

    19:39:42.0946 3084 CmBatt - ok

    19:39:42.0962 3084 [ E5D5499A1C50A54B5161296B6AFE6192 ] cmdide C:\Windows\system32\drivers\cmdide.sys

    19:39:42.0964 3084 cmdide - ok

    19:39:42.0995 3084 [ 491CBD050CE600B0FB8E71D01D76E0F9 ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys

    19:39:42.0998 3084 CnxtHdAudService - ok

    19:39:43.0073 3084 [ 7FB8AD01DB0EABE60C8A861531A8F431 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

    19:39:43.0074 3084 Compbatt - ok

    19:39:43.0079 3084 COMSysApp - ok

    19:39:43.0084 3084 [ A8585B6412253803CE8EFCBD6D6DC15C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys

    19:39:43.0085 3084 crcdisk - ok

    19:39:43.0125 3084 [ CA78B312C44E4D52E842C2C8BD48E452 ] CryptSvc C:\Windows\system32\cryptsvc.dll

    19:39:43.0128 3084 CryptSvc - ok

    19:39:43.0175 3084 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] DcomLaunch C:\Windows\system32\rpcss.dll

    19:39:43.0191 3084 DcomLaunch - ok

    19:39:43.0233 3084 [ 8B722BA35205C71E7951CDC4CDBADE19 ] DfsC C:\Windows\system32\Drivers\dfsc.sys

    19:39:43.0234 3084 DfsC - ok

    19:39:43.0371 3084 [ C647F468F7DE343DF8C143655C5557D4 ] DFSR C:\Windows\system32\DFSR.exe

    19:39:43.0471 3084 DFSR - ok

    19:39:43.0517 3084 [ 3ED0321127CE70ACDAABBF77E157C2A7 ] Dhcp C:\Windows\System32\dhcpcsvc.dll

    19:39:43.0521 3084 Dhcp - ok

    19:39:43.0546 3084 [ B0107E40ECDB5FA692EBF832F295D905 ] disk C:\Windows\system32\drivers\disk.sys

    19:39:43.0548 3084 disk - ok

    19:39:43.0583 3084 [ 06230F1B721494A6DF8D47FD395BB1B0 ] Dnscache C:\Windows\System32\dnsrslvr.dll

    19:39:43.0585 3084 Dnscache - ok

    19:39:43.0618 3084 [ 1A7156DD1E850E9914E5E991E3225B94 ] dot3svc C:\Windows\System32\dot3svc.dll

    19:39:43.0622 3084 dot3svc - ok

    19:39:43.0672 3084 [ 74C02B1717740C3B8039539E23E4B53F ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys

    19:39:43.0675 3084 Dot4 - ok

    19:39:43.0704 3084 [ 08321D1860235BF42CF2854234337AEA ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys

    19:39:43.0705 3084 Dot4Print - ok

    19:39:43.0718 3084 [ 4ADCCF0124F2B6911D3786A5D0E779E5 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys

    19:39:43.0719 3084 dot4usb - ok

    19:39:43.0754 3084 [ 1583B39790DB3EAEC7EDB0CB0140C708 ] DPS C:\Windows\system32\dps.dll

    19:39:43.0757 3084 DPS - ok

    19:39:43.0787 3084 [ F1A78A98CFC2EE02144C6BEC945447E6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

    19:39:43.0788 3084 drmkaud - ok

    19:39:43.0840 3084 dump_wmimmc - ok

    19:39:43.0877 3084 [ B8E554E502D5123BC111F99D6A2181B4 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

    19:39:43.0894 3084 DXGKrnl - ok

    19:39:43.0977 3084 [ 264CEE7B031A9D6C827F3D0CB031F2FE ] E1G60 C:\Windows\system32\DRIVERS\E1G6032E.sys

    19:39:43.0980 3084 E1G60 - ok

    19:39:43.0991 3084 EagleX64 - ok

    19:39:44.0017 3084 [ C2303883FD9BE49DC36A6400643002EA ] EapHost C:\Windows\System32\eapsvc.dll

    19:39:44.0019 3084 EapHost - ok

    19:39:44.0090 3084 [ 5F94962BE5A62DB6E447FF6470C4F48A ] Ecache C:\Windows\system32\drivers\ecache.sys

    19:39:44.0093 3084 Ecache - ok

    19:39:44.0145 3084 [ 14CE384D2E27B64C256BDA4DC39C312D ] ehRecvr C:\Windows\ehome\ehRecvr.exe

    19:39:44.0150 3084 ehRecvr - ok

    19:39:44.0218 3084 [ B93159C1313D66FDFBBE876F5189CD52 ] ehSched C:\Windows\ehome\ehsched.exe

    19:39:44.0220 3084 ehSched - ok

    19:39:44.0244 3084 [ F5EE2527D74449868E3C3227A59BCD28 ] ehstart C:\Windows\ehome\ehstart.dll

    19:39:44.0245 3084 ehstart - ok

    19:39:44.0292 3084 [ C4636D6E10469404AB5308D9FD45ED07 ] elxstor C:\Windows\system32\drivers\elxstor.sys

    19:39:44.0298 3084 elxstor - ok

    19:39:44.0368 3084 [ A9B18B63A4FD6BAAB83326706D857FAB ] EMDMgmt C:\Windows\system32\emdmgmt.dll

    19:39:44.0374 3084 EMDMgmt - ok

    19:39:44.0426 3084 [ ABDD5AD016AFFD34AD40E944CE94BF59 ] EpsonBidirectionalService C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe

    19:39:44.0428 3084 EpsonBidirectionalService - ok

    19:39:44.0473 3084 [ 757305C7AD34222F4A46D86FE0BEE241 ] EpsonCustomerParticipation C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe

    19:39:44.0490 3084 EpsonCustomerParticipation - ok

    19:39:44.0573 3084 [ BC3A58E938BB277E46BF4B3003B01ABD ] ErrDev C:\Windows\system32\drivers\errdev.sys

    19:39:44.0574 3084 ErrDev - ok

    19:39:44.0647 3084 [ 4D06D9A26227AC485305133916888DF1 ] ETService C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe

    19:39:44.0648 3084 ETService - ok

    19:39:44.0724 3084 [ E12F22B73F153DECE721CD45EC05B4AF ] EventSystem C:\Windows\system32\es.dll

    19:39:44.0729 3084 EventSystem - ok

    19:39:44.0793 3084 [ 486844F47B6636044A42454614ED4523 ] exfat C:\Windows\system32\drivers\exfat.sys

    19:39:44.0795 3084 exfat - ok

    19:39:44.0826 3084 [ 1A4BEE34277784619DDAF0422C0C6E23 ] fastfat C:\Windows\system32\drivers\fastfat.sys

    19:39:44.0829 3084 fastfat - ok

    19:39:44.0916 3084 [ 81B79B6DF71FA1D2C6D688D830616E39 ] fdc C:\Windows\system32\DRIVERS\fdc.sys

    19:39:44.0917 3084 fdc - ok

    19:39:44.0943 3084 [ BB9267ACACD8B7533DD936C34A0CBA5E ] fdPHost C:\Windows\system32\fdPHost.dll

    19:39:44.0945 3084 fdPHost - ok

    19:39:44.0998 3084 [ 300C80931EABBE1DB7591C516EFE8D0F ] FDResPub C:\Windows\system32\fdrespub.dll

    19:39:45.0000 3084 FDResPub - ok

    19:39:45.0021 3084 [ 457B7D1D533E4BD62A99AED9C7BB4C59 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

    19:39:45.0023 3084 FileInfo - ok

    19:39:45.0048 3084 [ D421327FD6EFCCAF884A54C58E1B0D7F ] Filetrace C:\Windows\system32\drivers\filetrace.sys

    19:39:45.0049 3084 Filetrace - ok

    19:39:45.0068 3084 [ 230923EA2B80F79B0F88D90F87B87EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

    19:39:45.0069 3084 flpydisk - ok

    19:39:45.0092 3084 [ E3041BC26D6930D61F42AEDB79C91720 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

    19:39:45.0096 3084 FltMgr - ok

    19:39:45.0145 3084 [ BE1C5BD1CA7ED015BC6FA1AE67E592C8 ] FontCache C:\Windows\system32\FntCache.dll

    19:39:45.0210 3084 FontCache - ok

    19:39:45.0271 3084 [ BC5B0BE5AF3510B0FD8C140EE42C6D3E ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

    19:39:45.0272 3084 FontCache3.0.0.0 - ok

    19:39:45.0328 3084 [ 5779B86CD8B32519FBECB136394D946A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

    19:39:45.0330 3084 Fs_Rec - ok

    19:39:45.0362 3084 [ C8E416668D3DC2BE3D4FE4C79224997F ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys

    19:39:45.0364 3084 gagp30kx - ok

    19:39:45.0401 3084 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

    19:39:45.0402 3084 GEARAspiWDM - ok

    19:39:45.0440 3084 [ A0E1B575BA8F504968CD40C0FAEB2384 ] gpsvc C:\Windows\System32\gpsvc.dll

    19:39:45.0455 3084 gpsvc - ok

    19:39:45.0537 3084 [ 68E732382B32417FF61FD663259B4B09 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

    19:39:45.0542 3084 HdAudAddService - ok

    19:39:45.0594 3084 [ F942C5820205F2FB453243EDFEC82A3D ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys

    19:39:45.0619 3084 HDAudBus - ok

    19:39:45.0687 3084 [ B4881C84A180E75B8C25DC1D726C375F ] HidBth C:\Windows\system32\drivers\hidbth.sys

    19:39:45.0688 3084 HidBth - ok

    19:39:45.0752 3084 [ 4E77A77E2C986E8F88F996BB3E1AD829 ] HidIr C:\Windows\system32\drivers\hidir.sys

    19:39:45.0753 3084 HidIr - ok

    19:39:45.0784 3084 [ 59361D38A297755D46A540E450202B2A ] hidserv C:\Windows\system32\hidserv.dll

    19:39:45.0786 3084 hidserv - ok

    19:39:45.0813 3084 [ 443BDD2D30BB4F00795C797E2CF99EDF ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

    19:39:45.0814 3084 HidUsb - ok

    19:39:45.0844 3084 [ B12F367EA39C0795FD57E31242CE1A5A ] hkmsvc C:\Windows\system32\kmsvc.dll

    19:39:45.0847 3084 hkmsvc - ok

    19:39:45.0867 3084 [ D7109A1E6BD2DFDBCBA72A6BC626A13B ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys

    19:39:45.0868 3084 HpCISSs - ok

    19:39:45.0902 3084 [ 57BA73B5B321291E5114CB21350E1EA0 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL6.SYS

    19:39:45.0906 3084 HSFHWAZL - ok

    19:39:45.0952 3084 [ EBDBA99C2362457BE429F024396B63BE ] HSF_DPV C:\Windows\system32\DRIVERS\CAX_DPV.sys

    19:39:46.0016 3084 HSF_DPV - ok

    19:39:46.0041 3084 [ 098F1E4E5C9CB5B0063A959063631610 ] HTTP C:\Windows\system32\drivers\HTTP.sys

    19:39:46.0048 3084 HTTP - ok

    19:39:46.0068 3084 [ DA94C854CEA5FAC549D4E1F6E88349E8 ] i2omp C:\Windows\system32\drivers\i2omp.sys

    19:39:46.0069 3084 i2omp - ok

    19:39:46.0097 3084 [ CBB597659A2713CE0C9CC20C88C7591F ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys

    19:39:46.0098 3084 i8042prt - ok

    19:39:46.0151 3084 [ CB686F44BF955EA02520710A56874FA4 ] IAANTMON C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

    19:39:46.0156 3084 IAANTMON - ok

    19:39:46.0190 3084 [ 8D58627FEF3F8767665D9F4DC91CBD97 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys

    19:39:46.0193 3084 iaStor - ok

    19:39:46.0227 3084 [ 3E3BF3627D886736D0B4E90054F929F6 ] iaStorV C:\Windows\system32\drivers\iastorv.sys

    19:39:46.0231 3084 iaStorV - ok

    19:39:46.0421 3084 [ 749F5F8CEDCA70F2A512945325FC489D ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

    19:39:46.0442 3084 idsvc - ok

    19:39:46.0471 3084 [ 8C3951AD2FE886EF76C7B5027C3125D3 ] iirsp C:\Windows\system32\drivers\iirsp.sys

    19:39:46.0473 3084 iirsp - ok

    19:39:46.0499 3084 [ 0C9EA6E654E7B0471741E343A6C671AF ] IKEEXT C:\Windows\System32\ikeext.dll

    19:39:46.0514 3084 IKEEXT - ok

    19:39:46.0589 3084 [ 8C7FA71CB1EBCD3EDE8958D27B1BF0B4 ] int15 C:\Windows\SysWOW64\drivers\int15_64.sys

    19:39:46.0589 3084 int15 - ok

    19:39:46.0615 3084 [ DF797A12176F11B2D301C5B234BB200E ] intelide C:\Windows\system32\drivers\intelide.sys

    19:39:46.0616 3084 intelide - ok

    19:39:46.0633 3084 [ BFD84AF32FA1BAD6231C4585CB469630 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys

    19:39:46.0634 3084 intelppm - ok

    19:39:46.0652 3084 [ 5624BC1BC5EEB49C0AB76A8114F05EA3 ] IPBusEnum C:\Windows\system32\ipbusenum.dll

    19:39:46.0655 3084 IPBusEnum - ok

    19:39:46.0685 3084 [ D8AABC341311E4780D6FCE8C73C0AD81 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

    19:39:46.0687 3084 IpFilterDriver - ok

    19:39:46.0720 3084 [ BF0DBFA9792C5C14FA00F61C75116C1B ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

    19:39:46.0724 3084 iphlpsvc - ok

    19:39:46.0728 3084 IpInIp - ok

    19:39:46.0791 3084 [ 9C2EE2E6E5A7203BFAE15C299475EC67 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys

    19:39:46.0793 3084 IPMIDRV - ok

    19:39:46.0815 3084 [ B7E6212F581EA5F6AB0C3A6CEEEB89BE ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys

    19:39:46.0817 3084 IPNAT - ok

    19:39:46.0870 3084 [ A9AB99EE7D39725EAFEC82732D2B3271 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe

    19:39:46.0875 3084 iPod Service - ok

    19:39:46.0924 3084 [ 8C42CA155343A2F11D29FECA67FAA88D ] IRENUM C:\Windows\system32\drivers\irenum.sys

    19:39:46.0925 3084 IRENUM - ok

    19:39:46.0946 3084 [ 0672BFCEDC6FC468A2B0500D81437F4F ] isapnp C:\Windows\system32\drivers\isapnp.sys

    19:39:46.0948 3084 isapnp - ok

    19:39:46.0980 3084 [ E4FDF99599F27EC25D2CF6D754243520 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys

    19:39:46.0983 3084 iScsiPrt - ok

    19:39:47.0009 3084 [ 63C766CDC609FF8206CB447A65ABBA4A ] iteatapi C:\Windows\system32\drivers\iteatapi.sys

    19:39:47.0010 3084 iteatapi - ok

    19:39:47.0050 3084 [ 1281FE73B17664631D12F643CBEA3F59 ] iteraid C:\Windows\system32\drivers\iteraid.sys

    19:39:47.0051 3084 iteraid - ok

    19:39:47.0084 3084 [ 423696F3BA6472DD17699209B933BC26 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys

    19:39:47.0085 3084 kbdclass - ok

    19:39:47.0111 3084 [ DBDF75D51464FBC47D0104EC3D572C05 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys

    19:39:47.0112 3084 kbdhid - ok

    19:39:47.0129 3084 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] KeyIso C:\Windows\system32\lsass.exe

    19:39:47.0131 3084 KeyIso - ok

    19:39:47.0161 3084 [ 88956AD9FA510848AD176777A6C6C1F5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

    19:39:47.0168 3084 KSecDD - ok

    19:39:47.0193 3084 [ 1D419CF43DB29396ECD7113D129D94EB ] ksthunk C:\Windows\system32\drivers\ksthunk.sys

    19:39:47.0194 3084 ksthunk - ok

    19:39:47.0227 3084 [ 1FAF6926F3416D3DA05C5B265491BDAE ] KtmRm C:\Windows\system32\msdtckrm.dll

    19:39:47.0234 3084 KtmRm - ok

    19:39:47.0270 3084 [ 50C7A3CB427E9BB5ED0708A669956AB5 ] LanmanServer C:\Windows\system32\srvsvc.dll

    19:39:47.0275 3084 LanmanServer - ok

    19:39:47.0311 3084 [ CAF86FC1388BE1E470F1A7B43E348ADB ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

    19:39:47.0317 3084 LanmanWorkstation - ok

    19:39:47.0423 3084 [ 7772DFAB22611050B79504E671B06E6E ] LBTServ C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    19:39:47.0428 3084 LBTServ - ok

    19:39:47.0489 3084 [ ED7EC050CD6C20E1A93A4DAFB7EFD14D ] LEqdUsb C:\Windows\system32\DRIVERS\LEqdUsb.Sys

    19:39:47.0490 3084 LEqdUsb - ok

    19:39:47.0506 3084 [ 3267BC698E29474A8381E68904EB0390 ] LHidEqd C:\Windows\system32\DRIVERS\LHidEqd.Sys

    19:39:47.0507 3084 LHidEqd - ok

    19:39:47.0550 3084 [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt C:\Windows\system32\DRIVERS\LHidFilt.Sys

    19:39:47.0551 3084 LHidFilt - ok

    19:39:47.0563 3084 [ 96ECE2659B6654C10A0C310AE3A6D02C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

    19:39:47.0565 3084 lltdio - ok

    19:39:47.0644 3084 [ 961CCBD0B1CCB5675D64976FAE37D092 ] lltdsvc C:\Windows\System32\lltdsvc.dll

    19:39:47.0650 3084 lltdsvc - ok

    19:39:47.0701 3084 [ A47F8080CACC23C91FE823AD19AA5612 ] lmhosts C:\Windows\System32\lmhsvc.dll

    19:39:47.0703 3084 lmhosts - ok

    19:39:47.0717 3084 [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt C:\Windows\system32\DRIVERS\LMouFilt.Sys

    19:39:47.0719 3084 LMouFilt - ok

    19:39:47.0772 3084 [ ACBE1AF32D3123E330A07BFBC5EC4A9B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys

    19:39:47.0775 3084 LSI_FC - ok

    19:39:47.0811 3084 [ 799FFB2FC4729FA46D2157C0065B3525 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys

    19:39:47.0813 3084 LSI_SAS - ok

    19:39:47.0856 3084 [ F445FF1DAAD8A226366BFAF42551226B ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys

    19:39:47.0858 3084 LSI_SCSI - ok

    19:39:47.0921 3084 [ 52F87B9CC8932C2A7375C3B2A9BE5E3E ] luafv C:\Windows\system32\drivers\luafv.sys

    19:39:47.0923 3084 luafv - ok

    19:39:47.0978 3084 [ 29C733E1DE824670DC9315CFC9BDBCD3 ] LUsbFilt C:\Windows\system32\Drivers\LUsbFilt.Sys

    19:39:47.0979 3084 LUsbFilt - ok

    19:39:48.0112 3084 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys

    19:39:48.0113 3084 MBAMProtector - ok

    19:39:48.0487 3084 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

    19:39:48.0492 3084 MBAMScheduler - ok

    19:39:48.0569 3084 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

    19:39:48.0581 3084 MBAMService - ok

    19:39:48.0645 3084 [ 76A58DF02BD4EA29F189B82D0BEF17F8 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

    19:39:48.0648 3084 Mcx2Svc - ok

    19:39:48.0669 3084 [ E4F44EC214B3E381E1FC844A02926666 ] mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys

    19:39:48.0670 3084 mdmxsdk - ok

    19:39:48.0742 3084 [ 5C5CD6AACED32FB26C3FB34B3DCF972F ] megasas C:\Windows\system32\drivers\megasas.sys

    19:39:48.0743 3084 megasas - ok

    19:39:48.0791 3084 [ 859BC2436B076C77C159ED694ACFE8F8 ] MegaSR C:\Windows\system32\drivers\megasr.sys

    19:39:48.0797 3084 MegaSR - ok

    19:39:48.0829 3084 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] MMCSS C:\Windows\system32\mmcss.dll

    19:39:48.0832 3084 MMCSS - ok

    19:39:48.0839 3084 [ 59848D5CC74606F0EE7557983BB73C2E ] Modem C:\Windows\system32\drivers\modem.sys

    19:39:48.0840 3084 Modem - ok

    19:39:48.0851 3084 [ C247CC2A57E0A0C8C6DCCF7807B3E9E5 ] monitor C:\Windows\system32\DRIVERS\monitor.sys

    19:39:48.0852 3084 monitor - ok

    19:39:48.0862 3084 [ 9367304E5E412B120CF5F4EA14E4E4F1 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys

    19:39:48.0863 3084 mouclass - ok

    19:39:48.0896 3084 [ C2C2BD5C5CE5AAF786DDD74B75D2AC69 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys

    19:39:48.0897 3084 mouhid - ok

    19:39:48.0904 3084 [ 11BC9B1E8801B01F7F6ADB9EAD30019B ] MountMgr C:\Windows\system32\drivers\mountmgr.sys

    19:39:48.0906 3084 MountMgr - ok

    19:39:48.0941 3084 [ F8276EB8698142884498A528DFEA8478 ] mpio C:\Windows\system32\drivers\mpio.sys

    19:39:48.0943 3084 mpio - ok

    19:39:49.0002 3084 [ C92B9ABDB65A5991E00C28F13491DBA2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

    19:39:49.0004 3084 mpsdrv - ok

    19:39:49.0036 3084 [ 897E3BAF68BA406A61682AE39C83900C ] MpsSvc C:\Windows\system32\mpssvc.dll

    19:39:49.0052 3084 MpsSvc - ok

    19:39:49.0078 3084 [ 3C200630A89EF2C0864D515B7A75802E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys

    19:39:49.0080 3084 Mraid35x - ok

    19:39:49.0099 3084 [ 7C1DE4AA96DC0C071611F9E7DE02A68D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

    19:39:49.0102 3084 MRxDAV - ok

    19:39:49.0125 3084 [ 1485811B320FF8C7EDAD1CAEBB1C6C2B ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

    19:39:49.0127 3084 mrxsmb - ok

    19:39:49.0154 3084 [ 3B929A60C833FC615FD97FBA82BC7632 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

    19:39:49.0158 3084 mrxsmb10 - ok

    19:39:49.0176 3084 [ C64AB3E1F53B4F5B5BB6D796B2D7BEC3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

    19:39:49.0179 3084 mrxsmb20 - ok

    19:39:49.0209 3084 [ 1AC860612B85D8E85EE257D372E39F4D ] msahci C:\Windows\system32\drivers\msahci.sys

    19:39:49.0211 3084 msahci - ok

    19:39:49.0224 3084 [ 264BBB4AAF312A485F0E44B65A6B7202 ] msdsm C:\Windows\system32\drivers\msdsm.sys

    19:39:49.0227 3084 msdsm - ok

    19:39:49.0250 3084 [ 7EC02CE772F068ED0BEAFA3DA341A9BC ] MSDTC C:\Windows\System32\msdtc.exe

    19:39:49.0253 3084 MSDTC - ok

    19:39:49.0284 3084 [ 704F59BFC4512D2BB0146AEC31B10A7C ] Msfs C:\Windows\system32\drivers\Msfs.sys

    19:39:49.0285 3084 Msfs - ok

    19:39:49.0319 3084 [ 00EBC952961664780D43DCA157E79B27 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys

    19:39:49.0321 3084 msisadrv - ok

    19:39:49.0345 3084 [ 366B0C1F4478B519C181E37D43DCDA32 ] MSiSCSI C:\Windows\system32\iscsiexe.dll

    19:39:49.0349 3084 MSiSCSI - ok

    19:39:49.0353 3084 msiserver - ok

    19:39:49.0391 3084 [ 0EA73E498F53B96D83DBFCA074AD4CF8 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

    19:39:49.0393 3084 MSKSSRV - ok

    19:39:49.0405 3084 [ 52E59B7E992A58E740AA63F57EDBAE8B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

    19:39:49.0406 3084 MSPCLOCK - ok

    19:39:49.0433 3084 [ 49084A75BAE043AE02D5B44D02991BB2 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

    19:39:49.0434 3084 MSPQM - ok

    19:39:49.0464 3084 [ DC6CCF440CDEDE4293DB41C37A5060A5 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

    19:39:49.0469 3084 MsRPC - ok

    19:39:49.0519 3084 [ 855796E59DF77EA93AF46F20155BF55B ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys

    19:39:49.0521 3084 mssmbios - ok

    19:39:49.0538 3084 [ 86D632D75D05D5B7C7C043FA3564AE86 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

    19:39:49.0539 3084 MSTEE - ok

    19:39:49.0561 3084 [ 0CC49F78D8ACA0877D885F149084E543 ] Mup C:\Windows\system32\Drivers\mup.sys

    19:39:49.0562 3084 Mup - ok

    19:39:49.0587 3084 [ A5B10C845E7538C60C0F5D87A57CB3F5 ] napagent C:\Windows\system32\qagentRT.dll

    19:39:49.0595 3084 napagent - ok

    19:39:49.0624 3084 [ 2007B826C4ACD94AE32232B41F0842B9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

    19:39:49.0627 3084 NativeWifiP - ok

    19:39:49.0671 3084 [ 65950E07329FCEE8E6516B17C8D0ABB6 ] NDIS C:\Windows\system32\drivers\ndis.sys

    19:39:49.0696 3084 NDIS - ok

    19:39:49.0760 3084 [ 64DF698A425478E321981431AC171334 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

    19:39:49.0761 3084 NdisTapi - ok

    19:39:49.0773 3084 [ 8BAA43196D7B5BB972C9A6B2BBF61A19 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

    19:39:49.0774 3084 Ndisuio - ok

    19:39:49.0799 3084 [ F8158771905260982CE724076419EF19 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

    19:39:49.0802 3084 NdisWan - ok

    19:39:49.0825 3084 [ 9CB77ED7CB72850253E973A2D6AFDF49 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

    19:39:49.0827 3084 NDProxy - ok

    19:39:49.0838 3084 [ A499294F5029A7862ADC115BDA7371CE ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

    19:39:49.0840 3084 NetBIOS - ok

    19:39:49.0866 3084 [ FC2C792EBDDC8E28DF939D6A92C83D61 ] netbt C:\Windows\system32\DRIVERS\netbt.sys

    19:39:49.0870 3084 netbt - ok

    19:39:49.0882 3084 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] Netlogon C:\Windows\system32\lsass.exe

    19:39:49.0884 3084 Netlogon - ok

    19:39:49.0909 3084 [ 9B63B29DEFC0F3115A559D2597BF5D75 ] Netman C:\Windows\System32\netman.dll

    19:39:49.0915 3084 Netman - ok

    19:39:49.0933 3084 [ 7846D0136CC2B264926A73047BA7688A ] netprofm C:\Windows\System32\netprofm.dll

    19:39:49.0940 3084 netprofm - ok

    19:39:49.0967 3084 [ 74751DDA198165947FD7454D83F49825 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

    19:39:49.0969 3084 NetTcpPortSharing - ok

    19:39:50.0113 3084 [ 2BDCB7B7917380794C9D87AC2153CE33 ] NETw5v64 C:\Windows\system32\DRIVERS\NETw5v64.sys

    19:39:50.0223 3084 NETw5v64 - ok

    19:39:50.0417 3084 [ 8EA525C4AD4634AE5F6A23DE586FA429 ] NETwNv64 C:\Windows\system32\DRIVERS\NETwNv64.sys

    19:39:50.0592 3084 NETwNv64 - ok

    19:39:50.0655 3084 [ 4AC08BD6AF2DF42E0C3196D826C8AEA7 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys

    19:39:50.0657 3084 nfrd960 - ok

    19:39:50.0689 3084 [ F145BF4C4668E7E312069F81EF847CFC ] NlaSvc C:\Windows\System32\nlasvc.dll

    19:39:50.0694 3084 NlaSvc - ok

    19:39:50.0755 3084 [ B298874F8E0EA93F06EC40AA8D146478 ] Npfs C:\Windows\system32\drivers\Npfs.sys

    19:39:50.0756 3084 Npfs - ok

    19:39:50.0764 3084 npggsvc - ok

    19:39:50.0769 3084 NPPTNT2 - ok

    19:39:50.0780 3084 [ ACB62BAA1C319B17752553DF3026EEEB ] nsi C:\Windows\system32\nsisvc.dll

    19:39:50.0783 3084 nsi - ok

    19:39:50.0810 3084 [ 1523AF19EE8B030BA682F7A53537EAEB ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

    19:39:50.0811 3084 nsiproxy - ok

    19:39:50.0864 3084 [ BAC869DFB98E499BA4D9BB1FB43270E1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

    19:39:50.0897 3084 Ntfs - ok

    19:39:50.0943 3084 [ DD5D684975352B85B52E3FD5347C20CB ] Null C:\Windows\system32\drivers\Null.sys

    19:39:50.0944 3084 Null - ok

    19:39:50.0986 3084 [ 857FB74754EBFF94EE3AD40788740916 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys

    19:39:50.0988 3084 NVHDA - ok

    19:39:51.0251 3084 [ F12C5F17D48D9F5C70E4408B3CCB5443 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

    19:39:51.0482 3084 nvlddmkm - ok

    19:39:51.0552 3084 [ 2C040B7ADA5B06F6FACADAC8514AA034 ] nvraid C:\Windows\system32\drivers\nvraid.sys

    19:39:51.0555 3084 nvraid - ok

    19:39:51.0576 3084 [ F7EA0FE82842D05EDA3EFDD376DBFDBA ] nvstor C:\Windows\system32\drivers\nvstor.sys

    19:39:51.0578 3084 nvstor - ok

    19:39:51.0626 3084 [ 8A55543C379B0582F0C33DB447D1C892 ] NVSvc C:\Windows\system32\nvvsvc.exe

    19:39:51.0652 3084 NVSvc - ok

    19:39:51.0696 3084 [ 19067CA93075EF4823E3938A686F532F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys

    19:39:51.0698 3084 nv_agp - ok

    19:39:51.0702 3084 NwlnkFlt - ok

    19:39:51.0707 3084 NwlnkFwd - ok

    19:39:51.0767 3084 [ D955D5DE998DB2476BF0892BE3A96C26 ] o2flash C:\Program Files (x86)\O2Micro Flash Memory Card Driver\o2flash.exe

    19:39:51.0768 3084 o2flash - ok

    19:39:51.0788 3084 [ 1FBB63BD15D25B022DC986D463F94219 ] O2MDRDR C:\Windows\system32\DRIVERS\o2mdx64.sys

    19:39:51.0789 3084 O2MDRDR - ok

    19:39:51.0800 3084 [ C88959545B5F598791D30314C7DB5718 ] O2SDRDR C:\Windows\system32\DRIVERS\o2sdx64.sys

    19:39:51.0801 3084 O2SDRDR - ok

    19:39:51.0840 3084 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

    19:39:51.0890 3084 odserv - ok

    19:39:51.0924 3084 [ B5B1CE65AC15BBD11C0619E3EF7CFC28 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys

    19:39:51.0927 3084 ohci1394 - ok

    19:39:51.0952 3084 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

    19:39:51.0955 3084 ose - ok

    19:39:51.0993 3084 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2pimsvc C:\Windows\system32\p2psvc.dll

    19:39:52.0005 3084 p2pimsvc - ok

    19:39:52.0030 3084 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2psvc C:\Windows\system32\p2psvc.dll

    19:39:52.0037 3084 p2psvc - ok

    19:39:52.0119 3084 [ AECD57F94C887F58919F307C35498EA0 ] Parport C:\Windows\system32\drivers\parport.sys

    19:39:52.0121 3084 Parport - ok

    19:39:52.0164 3084 [ B43751085E2ABE389DA466BC62A4B987 ] partmgr C:\Windows\system32\drivers\partmgr.sys

    19:39:52.0166 3084 partmgr - ok

    19:39:52.0224 3084 [ 18B6869E23937175144E6F1D3CB85FC2 ] PCASp50a64 C:\Windows\system32\Drivers\PCASp50a64.sys

    19:39:52.0225 3084 PCASp50a64 - ok

    19:39:52.0243 3084 [ 9AB157B374192FF276C1628FBDBA2B0E ] PcaSvc C:\Windows\System32\pcasvc.dll

    19:39:52.0247 3084 PcaSvc - ok

    19:39:52.0300 3084 [ 47AB1E0FC9D0E12BB53BA246E3A0906D ] pci C:\Windows\system32\drivers\pci.sys

    19:39:52.0303 3084 pci - ok

    19:39:52.0324 3084 [ 8D618C829034479985A9ED56106CC732 ] pciide C:\Windows\system32\drivers\pciide.sys

    19:39:52.0326 3084 pciide - ok

    19:39:52.0341 3084 [ 037661F3D7C507C9993B7010CEEE6288 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys

    19:39:52.0345 3084 pcmcia - ok

    19:39:52.0350 3084 PCTINDIS5X64 - ok

    19:39:52.0381 3084 [ 58865916F53592A61549B04941BFD80D ] PEAUTH C:\Windows\system32\drivers\peauth.sys

    19:39:52.0398 3084 PEAUTH - ok

    19:39:52.0424 3084 [ 0ED8727EA0172860F47258456C06CAEA ] PerfHost C:\Windows\SysWow64\perfhost.exe

    19:39:52.0427 3084 PerfHost - ok

    19:39:52.0511 3084 [ E9E68C1A0F25CF4A7AC966EEA74EE89E ] pla C:\Windows\system32\pla.dll

    19:39:52.0521 3084 pla - ok

    19:39:52.0593 3084 [ FE6B0F59215C9FD9F9D26539C58C8B82 ] PlugPlay C:\Windows\system32\umpnpmgr.dll

    19:39:52.0600 3084 PlugPlay - ok

    19:39:52.0676 3084 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPAutoReg C:\Windows\system32\p2psvc.dll

    19:39:52.0683 3084 PNRPAutoReg - ok

    19:39:52.0712 3084 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPsvc C:\Windows\system32\p2psvc.dll

    19:39:52.0719 3084 PNRPsvc - ok

    19:39:52.0743 3084 [ 89A5560671C2D8B4A4B51F3E1AA069D8 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

    19:39:52.0759 3084 PolicyAgent - ok

    19:39:52.0793 3084 [ 23386E9952025F5F21C368971E2E7301 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

    19:39:52.0796 3084 PptpMiniport - ok

    19:39:52.0813 3084 [ 5080E59ECEE0BC923F14018803AA7A01 ] Processor C:\Windows\system32\drivers\processr.sys

    19:39:52.0814 3084 Processor - ok

    19:39:52.0840 3084 [ E058CE4FC2449D8BFA14739C83B7FF2A ] ProfSvc C:\Windows\system32\profsvc.dll

    19:39:52.0845 3084 ProfSvc - ok

    19:39:52.0861 3084 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] ProtectedStorage C:\Windows\system32\lsass.exe

    19:39:52.0863 3084 ProtectedStorage - ok

    19:39:52.0887 3084 [ C5AB7F0809392D0DA027F4A2A81BFA31 ] PSched C:\Windows\system32\DRIVERS\pacer.sys

    19:39:52.0889 3084 PSched - ok

    19:39:52.0939 3084 [ 0B83F4E681062F3839BE2EC1D98FD94A ] ql2300 C:\Windows\system32\drivers\ql2300.sys

    19:39:52.0970 3084 ql2300 - ok

    19:39:52.0998 3084 [ E1C80F8D4D1E39EF9595809C1369BF2A ] ql40xx C:\Windows\system32\drivers\ql40xx.sys

    19:39:53.0000 3084 ql40xx - ok

    19:39:53.0021 3084 [ 90574842C3DA781E279061A3EFF91F07 ] QWAVE C:\Windows\system32\qwave.dll

    19:39:53.0027 3084 QWAVE - ok

    19:39:53.0034 3084 [ E8D76EDAB77EC9C634C27B8EAC33ADC5 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

    19:39:53.0036 3084 QWAVEdrv - ok

    19:39:53.0077 3084 [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll

    19:39:53.0081 3084 RapiMgr - ok

    19:39:53.0092 3084 [ 1013B3B663A56D3DDD784F581C1BD005 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

    19:39:53.0094 3084 RasAcd - ok

    19:39:53.0165 3084 [ B2AE18F847D07F0044404DDF7CB04497 ] RasAuto C:\Windows\System32\rasauto.dll

    19:39:53.0169 3084 RasAuto - ok

    19:39:53.0191 3084 [ AC7BC4D42A7E558718DFDEC599BBFC2C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

    19:39:53.0194 3084 Rasl2tp - ok

    19:39:53.0213 3084 [ 3AD83E4046C43BE510DE681588ACB8AF ] RasMan C:\Windows\System32\rasmans.dll

    19:39:53.0220 3084 RasMan - ok

    19:39:53.0246 3084 [ 4517FBF8B42524AFE4EDE1DE102AAE3E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

    19:39:53.0247 3084 RasPppoe - ok

    19:39:53.0273 3084 [ C6A593B51F34C33E5474539544072527 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

    19:39:53.0275 3084 RasSstp - ok

    19:39:53.0297 3084 [ 322DB5C6B55E8D8EE8D6F358B2AAABB1 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

    19:39:53.0301 3084 rdbss - ok

    19:39:53.0307 3084 [ 603900CC05F6BE65CCBF373800AF3716 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

    19:39:53.0308 3084 RDPCDD - ok

    19:39:53.0338 3084 [ C045D1FB111C28DF0D1BE8D4BDA22C06 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys

    19:39:53.0342 3084 rdpdr - ok

    19:39:53.0346 3084 [ CAB9421DAF3D97B33D0D055858E2C3AB ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

    19:39:53.0348 3084 RDPENCDD - ok

    19:39:53.0378 3084 [ AE4BD9E1C33D351D8E607FC81F15160C ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

    19:39:53.0380 3084 RDPWD - ok

    19:39:53.0406 3084 [ C612B9557DA73F70D41F8A6FBC8E5344 ] RemoteAccess C:\Windows\System32\mprdim.dll

    19:39:53.0409 3084 RemoteAccess - ok

    19:39:53.0431 3084 [ 44B9D8EC2F3EF3A0EFB00857AF70D861 ] RemoteRegistry C:\Windows\system32\regsvc.dll

    19:39:53.0437 3084 RemoteRegistry - ok

    19:39:53.0463 3084 [ F46C457840D4B7A4DAAFEE739CE04102 ] RpcLocator C:\Windows\system32\locator.exe

    19:39:53.0465 3084 RpcLocator - ok

    19:39:53.0500 3084 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] RpcSs C:\Windows\system32\rpcss.dll

    19:39:53.0508 3084 RpcSs - ok

    19:39:53.0599 3084 [ 22A9CB08B1A6707C1550C6BF099AAE73 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

    19:39:53.0601 3084 rspndr - ok

    19:39:53.0609 3084 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] SamSs C:\Windows\system32\lsass.exe

    19:39:53.0612 3084 SamSs - ok

    19:39:53.0662 3084 [ CD9C693589C60AD59BBBCFB0E524E01B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys

    19:39:53.0665 3084 sbp2port - ok

    19:39:53.0668 3084 SBRE - ok

    19:39:53.0711 3084 [ FD1CDCF108D5EF3366F00D18B70FB89B ] SCardSvr C:\Windows\System32\SCardSvr.dll

    19:39:53.0716 3084 SCardSvr - ok

    19:39:53.0748 3084 [ 0F838C811AD295D2A4489B9993096C63 ] Schedule C:\Windows\system32\schedsvc.dll

    19:39:53.0773 3084 Schedule - ok

    19:39:53.0840 3084 [ 5A268127633C7EE2A7FB87F39D748D56 ] SCPolicySvc C:\Windows\System32\certprop.dll

    19:39:53.0841 3084 SCPolicySvc - ok

    19:39:53.0859 3084 [ B42EE50F7D24F837F925332EB349ECA5 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys

    19:39:53.0862 3084 sdbus - ok

    19:39:53.0888 3084 [ 4FF71B076A7760FE75EA5AE2D0EE0018 ] SDRSVC C:\Windows\System32\SDRSVC.dll

    19:39:53.0892 3084 SDRSVC - ok

    19:39:53.0898 3084 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys

    19:39:53.0900 3084 secdrv - ok

    19:39:53.0907 3084 [ 5ACDCBC67FCF894A1815B9F96D704490 ] seclogon C:\Windows\system32\seclogon.dll

    19:39:53.0911 3084 seclogon - ok

    19:39:53.0922 3084 [ 90973A64B96CD647FF81C79443618EED ] SENS C:\Windows\System32\sens.dll

    19:39:53.0926 3084 SENS - ok

    19:39:53.0949 3084 [ F71BFE7AC6C52273B7C82CBF1BB2A222 ] Serenum C:\Windows\system32\drivers\serenum.sys

    19:39:53.0950 3084 Serenum - ok

    19:39:53.0985 3084 [ E62FAC91EE288DB29A9696A9D279929C ] Serial C:\Windows\system32\drivers\serial.sys

    19:39:53.0988 3084 Serial - ok

    19:39:53.0997 3084 [ A842F04833684BCEEA7336211BE478DF ] sermouse C:\Windows\system32\drivers\sermouse.sys

    19:39:53.0999 3084 sermouse - ok

    19:39:54.0017 3084 [ A8E4A4407A09F35DCCC3771AF590B0C4 ] SessionEnv C:\Windows\system32\sessenv.dll

    19:39:54.0022 3084 SessionEnv - ok

    19:39:54.0032 3084 [ 14D4B4465193A87C127933978E8C4106 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys

    19:39:54.0034 3084 sffdisk - ok

    19:39:54.0043 3084 [ 7073AEE3F82F3D598E3825962AA98AB2 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

    19:39:54.0044 3084 sffp_mmc - ok

    19:39:54.0064 3084 [ 35E59EBE4A01A0532ED67975161C7B82 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

    19:39:54.0065 3084 sffp_sd - ok

    19:39:54.0079 3084 [ 6B7838C94135768BD455CBDC23E39E5F ] sfloppy C:\Windows\system32\drivers\sfloppy.sys

    19:39:54.0080 3084 sfloppy - ok

    19:39:54.0115 3084 [ 4C5AEE179DA7E1EE9A9CCB9DA289AF34 ] SharedAccess C:\Windows\System32\ipnathlp.dll

    19:39:54.0121 3084 SharedAccess - ok

    19:39:54.0150 3084 [ 56793271ECDEDD350C5ADD305603E963 ] ShellHWDetection C:\Windows\System32\shsvcs.dll

    19:39:54.0156 3084 ShellHWDetection - ok

    19:39:54.0203 3084 [ 7A5DE502AEB719D4594C6471060A78B3 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys

    19:39:54.0205 3084 SiSRaid2 - ok

    19:39:54.0236 3084 [ 3A2F769FAB9582BC720E11EA1DFB184D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys

    19:39:54.0238 3084 SiSRaid4 - ok

    19:39:54.0319 3084 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe

    19:39:54.0322 3084 SkypeUpdate - ok

    19:39:54.0389 3084 [ A9A27A8E257B45A604FDAD4F26FE7241 ] slsvc C:\Windows\system32\SLsvc.exe

    19:39:54.0480 3084 slsvc - ok

    19:39:54.0515 3084 [ FD74B4B7C2088E390A30C85A896FC3AF ] SLUINotify C:\Windows\system32\SLUINotify.dll

    19:39:54.0519 3084 SLUINotify - ok

    19:39:54.0579 3084 [ 290B6F6A0EC4FCDFC90F5CB6D7020473 ] Smb C:\Windows\system32\DRIVERS\smb.sys

    19:39:54.0581 3084 Smb - ok

    19:39:54.0605 3084 [ F8F47F38909823B1AF28D60B96340CFF ] SNMPTRAP C:\Windows\System32\snmptrap.exe

    19:39:54.0608 3084 SNMPTRAP - ok

    19:39:54.0634 3084 [ 386C3C63F00A7040C7EC5E384217E89D ] spldr C:\Windows\system32\drivers\spldr.sys

    19:39:54.0636 3084 spldr - ok

    19:39:54.0656 3084 [ F66FF751E7EFC816D266977939EF5DC3 ] Spooler C:\Windows\System32\spoolsv.exe

    19:39:54.0663 3084 Spooler - ok

    19:39:54.0694 3084 [ 880A57FCCB571EBD063D4DD50E93E46D ] srv C:\Windows\system32\DRIVERS\srv.sys

    19:39:54.0700 3084 srv - ok

    19:39:54.0769 3084 [ A1AD14A6D7A37891FFFECA35EBBB0730 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

    19:39:54.0771 3084 srv2 - ok

    19:39:54.0800 3084 [ 4BED62F4FA4D8300973F1151F4C4D8A7 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

    19:39:54.0803 3084 srvnet - ok

    19:39:54.0817 3084 [ 192C74646EC5725AEF3F80D19FF75F6A ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

    19:39:54.0822 3084 SSDPSRV - ok

    19:39:54.0848 3084 [ 2EE3FA0308E6185BA64A9A7F2E74332B ] SstpSvc C:\Windows\system32\sstpsvc.dll

    19:39:54.0854 3084 SstpSvc - ok

    19:39:54.0877 3084 Steam Client Service - ok

    19:39:54.0911 3084 [ 15825C1FBFB8779992CB65087F316AF5 ] stisvc C:\Windows\System32\wiaservc.dll

    19:39:54.0928 3084 stisvc - ok

    19:39:54.0959 3084 [ 8A851CA908B8B974F89C50D2E18D4F0C ] swenum C:\Windows\system32\DRIVERS\swenum.sys

    19:39:54.0960 3084 swenum - ok

    19:39:54.0999 3084 [ D49A1942B3E55E9C20DA553A9EA95519 ] swmsflt C:\Windows\System32\drivers\swmsflt.sys

    19:39:55.0000 3084 swmsflt - ok

    19:39:55.0040 3084 [ 64E4C4F9A98B1B435BEF78A37BB130EE ] swmx00 C:\Windows\system32\DRIVERS\swmx00.sys

    19:39:55.0043 3084 swmx00 - ok

    19:39:55.0068 3084 [ 4A827A6BE651DA66AA85D17726743BF5 ] SWNC5E00 C:\Windows\system32\DRIVERS\SWNC5E00.sys

    19:39:55.0070 3084 SWNC5E00 - ok

    19:39:55.0102 3084 [ 6DE37F4DE19D4EFD9C48C43ADDBC949A ] swprv C:\Windows\System32\swprv.dll

    19:39:55.0119 3084 swprv - ok

    19:39:55.0136 3084 [ 2F26A2C6FC96B29BEFF5D8ED74E6625B ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys

    19:39:55.0137 3084 Symc8xx - ok

    19:39:55.0174 3084 [ A909667976D3BCCD1DF813FED517D837 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys

    19:39:55.0177 3084 Sym_hi - ok

    19:39:55.0197 3084 [ 36887B56EC2D98B9C362F6AE4DE5B7B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys

    19:39:55.0199 3084 Sym_u3 - ok

    19:39:55.0242 3084 [ B432C6063D4C621241C2B6E05CA0C3E3 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys

    19:39:55.0246 3084 SynTP - ok

    19:39:55.0284 3084 [ 92D7A8B0F87B036F17D25885937897A6 ] SysMain C:\Windows\system32\sysmain.dll

    19:39:55.0309 3084 SysMain - ok

    19:39:55.0343 3084 [ 005CE42567F9113A3BCCB3B20073B029 ] TabletInputService C:\Windows\System32\TabSvc.dll

    19:39:55.0347 3084 TabletInputService - ok

    19:39:55.0372 3084 [ CC2562B4D55E0B6A4758C65407F63B79 ] TapiSrv C:\Windows\System32\tapisrv.dll

    19:39:55.0379 3084 TapiSrv - ok

    19:39:55.0389 3084 [ CDBE8D7C1E201B911CDC346D06617FB5 ] TBS C:\Windows\System32\tbssvc.dll

    19:39:55.0393 3084 TBS - ok

    19:39:55.0439 3084 [ 46D448E9117464E4D3BBF36D7E3FA48E ] Tcpip C:\Windows\system32\drivers\tcpip.sys

    19:39:55.0472 3084 Tcpip - ok

    19:39:55.0510 3084 [ 46D448E9117464E4D3BBF36D7E3FA48E ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys

    19:39:55.0518 3084 Tcpip6 - ok

    19:39:55.0548 3084 [ C7E72A4071EE0200E3C075DACFB2B334 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

    19:39:55.0549 3084 tcpipreg - ok

    19:39:55.0574 3084 [ 1D8BF4AAA5FB7A2761475781DC1195BC ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys

    19:39:55.0576 3084 TDPIPE - ok

    19:39:55.0588 3084 [ 7F7E00CDF609DF657F4CDA02DD1C9BB1 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys

    19:39:55.0589 3084 TDTCP - ok

    19:39:55.0620 3084 [ 458919C8C42E398DC4802178D5FFEE27 ] tdx C:\Windows\system32\DRIVERS\tdx.sys

    19:39:55.0622 3084 tdx - ok

    19:39:55.0636 3084 [ 8C19678D22649EC002EF2282EAE92F98 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys

    19:39:55.0639 3084 TermDD - ok

    19:39:55.0672 3084 [ 5CDD30BC217082DAC71A9878D9BFD566 ] TermService C:\Windows\System32\termsrv.dll

    19:39:55.0689 3084 TermService - ok

    19:39:55.0714 3084 [ 56793271ECDEDD350C5ADD305603E963 ] Themes C:\Windows\system32\shsvcs.dll

    19:39:55.0718 3084 Themes - ok

    19:39:55.0735 3084 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] THREADORDER C:\Windows\system32\mmcss.dll

    19:39:55.0738 3084 THREADORDER - ok

    19:39:55.0765 3084 [ F4689F05AF472A651A7B1B7B02D200E7 ] TrkWks C:\Windows\System32\trkwks.dll

    19:39:55.0770 3084 TrkWks - ok

    19:39:55.0809 3084 [ 66328B08EF5A9305D8EDE36B93930369 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

    19:39:55.0810 3084 TrustedInstaller - ok

    19:39:55.0845 3084 [ 9E5409CD17C8BEF193AAD498F3BC2CB8 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

    19:39:55.0847 3084 tssecsrv - ok

    19:39:55.0873 3084 [ 89EC74A9E602D16A75A4170511029B3C ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys

    19:39:55.0874 3084 tunmp - ok

    19:39:55.0895 3084 [ 30A9B3F45AD081BFFC3BCAA9C812B609 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

    19:39:55.0896 3084 tunnel - ok

    19:39:55.0921 3084 [ FEC266EF401966311744BD0F359F7F56 ] uagp35 C:\Windows\system32\drivers\uagp35.sys

    19:39:55.0923 3084 uagp35 - ok

    19:39:55.0967 3084 [ FAF2640A2A76ED03D449E443194C4C34 ] udfs C:\Windows\system32\DRIVERS\udfs.sys

    19:39:55.0972 3084 udfs - ok

    19:39:55.0993 3084 [ 060507C4113391394478F6953A79EEDC ] UI0Detect C:\Windows\system32\UI0Detect.exe

    19:39:55.0997 3084 UI0Detect - ok

    19:39:56.0014 3084 [ 4EC9447AC3AB462647F60E547208CA00 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

    19:39:56.0016 3084 uliagpkx - ok

    19:39:56.0034 3084 [ 697F0446134CDC8F99E69306184FBBB4 ] uliahci C:\Windows\system32\drivers\uliahci.sys

    19:39:56.0039 3084 uliahci - ok

    19:39:56.0058 3084 [ 31707F09846056651EA2C37858F5DDB0 ] UlSata C:\Windows\system32\drivers\ulsata.sys

    19:39:56.0061 3084 UlSata - ok

    19:39:56.0067 3084 [ 85E5E43ED5B48C8376281BAB519271B7 ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys

    19:39:56.0070 3084 ulsata2 - ok

    19:39:56.0090 3084 [ 46E9A994C4FED537DD951F60B86AD3F4 ] umbus C:\Windows\system32\DRIVERS\umbus.sys

    19:39:56.0092 3084 umbus - ok

    19:39:56.0105 3084 [ 7093799FF80E9DECA0680D2E3535BE60 ] upnphost C:\Windows\System32\upnphost.dll

    19:39:56.0121 3084 upnphost - ok

    19:39:56.0169 3084 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys

    19:39:56.0170 3084 USBAAPL64 - ok

    19:39:56.0203 3084 [ C6BA890DE6E41857FBE84175519CAE7D ] usbaudio C:\Windows\system32\drivers\usbaudio.sys

    19:39:56.0206 3084 usbaudio - ok

    19:39:56.0228 3084 [ 07E3498FC60834219D2356293DA0FECC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

    19:39:56.0231 3084 usbccgp - ok

    19:39:56.0255 3084 [ 9247F7E0B65852C1F6631480984D6ED2 ] usbcir C:\Windows\system32\drivers\usbcir.sys

    19:39:56.0258 3084 usbcir - ok

    19:39:56.0313 3084 [ 827E44DE934A736EA31E91D353EB126F ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys

    19:39:56.0314 3084 usbehci - ok

    19:39:56.0351 3084 [ BB35CD80A2ECECFADC73569B3D70C7D1 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys

    19:39:56.0355 3084 usbhub - ok

    19:39:56.0370 3084 [ EBA14EF0C07CEC233F1529C698D0D154 ] usbohci C:\Windows\system32\drivers\usbohci.sys

    19:39:56.0376 3084 usbohci - ok

    19:39:56.0416 3084 [ 28B693B6D31E7B9332C1BDCEFEF228C1 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys

    19:39:56.0418 3084 usbprint - ok

    19:39:56.0450 3084 [ EA0BF666868964FBE8CB10E50C97B9F1 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys

    19:39:56.0451 3084 usbscan - ok

    19:39:56.0468 3084 [ B854C1558FCA0C269A38663E8B59B581 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

    19:39:56.0470 3084 USBSTOR - ok

    19:39:56.0493 3084 [ B2872CBF9F47316ABD0E0C74A1ABA507 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys

    19:39:56.0495 3084 usbuhci - ok

    19:39:56.0514 3084 [ FC33099877790D51B0927B7039059855 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys

    19:39:56.0517 3084 usbvideo - ok

    19:39:56.0552 3084 [ 1E36BB1A3C5AAF2AA9FA9A126DF8C16C ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys

    19:39:56.0556 3084 usb_rndisx - ok

    19:39:56.0582 3084 [ FA3CA291F80EE13A1AC210492A7DFBB9 ] UVCFTR C:\Windows\system32\Drivers\UVCFTR_S.SYS

    19:39:56.0584 3084 UVCFTR - ok

    19:39:56.0612 3084 [ D76E231E4850BB3F88A3D9A78DF191E3 ] UxSms C:\Windows\System32\uxsms.dll

    19:39:56.0616 3084 UxSms - ok

    19:39:56.0647 3084 [ 294945381DFA7CE58CECF0A9896AF327 ] vds C:\Windows\System32\vds.exe

    19:39:56.0663 3084 vds - ok

    19:39:56.0716 3084 [ 916B94BCF1E09873FFF2D5FB11767BBC ] vga C:\Windows\system32\DRIVERS\vgapnp.sys

    19:39:56.0718 3084 vga - ok

    19:39:56.0765 3084 [ B83AB16B51FEDA65DD81B8C59D114D63 ] VgaSave C:\Windows\System32\drivers\vga.sys

    19:39:56.0767 3084 VgaSave - ok

    19:39:56.0785 3084 [ 8294B6C3FDB6C33F24E150DE647ECDAA ] viaide C:\Windows\system32\drivers\viaide.sys

    19:39:56.0787 3084 viaide - ok

    19:39:56.0799 3084 [ 2B7E885ED951519A12C450D24535DFCA ] volmgr C:\Windows\system32\drivers\volmgr.sys

    19:39:56.0802 3084 volmgr - ok

    19:39:56.0825 3084 [ CEC5AC15277D75D9E5DEC2E1C6EAF877 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

    19:39:56.0832 3084 volmgrx - ok

    19:39:56.0863 3084 [ 5280AADA24AB36B01A84A6424C475C8D ] volsnap C:\Windows\system32\drivers\volsnap.sys

    19:39:56.0867 3084 volsnap - ok

    19:39:56.0883 3084 [ A68F455ED2673835209318DD61BFBB0E ] vsmraid C:\Windows\system32\drivers\vsmraid.sys

    19:39:56.0886 3084 vsmraid - ok

    19:39:56.0933 3084 [ B75232DAD33BFD95BF6F0A3E6BFF51E1 ] VSS C:\Windows\system32\vssvc.exe

    19:39:57.0025 3084 VSS - ok

    19:39:57.0072 3084 [ E72B7F6AD60EC55B2BBEF6C6202CDE2A ] VSTWinDriver6 C:\Windows\system32\drivers\VSTwindrvr6.sys

    19:39:57.0075 3084 VSTWinDriver6 - ok

    19:39:57.0104 3084 [ F14A7DE2EA41883E250892E1E5230A9A ] W32Time C:\Windows\system32\w32time.dll

    19:39:57.0120 3084 W32Time - ok

    19:39:57.0154 3084 [ FEF8FE5923FEAD2CEE4DFABFCE3393A7 ] WacomPen C:\Windows\system32\drivers\wacompen.sys

    19:39:57.0156 3084 WacomPen - ok

    19:39:57.0188 3084 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys

    19:39:57.0190 3084 Wanarp - ok

    19:39:57.0194 3084 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

    19:39:57.0195 3084 Wanarpv6 - ok

    19:39:57.0231 3084 [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll

    19:39:57.0237 3084 WcesComm - ok

    19:39:57.0257 3084 [ B4E4C37D0AA6100090A53213EE2BF1C1 ] wcncsvc C:\Windows\System32\wcncsvc.dll

    19:39:57.0274 3084 wcncsvc - ok

    19:39:57.0306 3084 [ EA4B369560E986F19D93F45A881484AC ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

    19:39:57.0310 3084 WcsPlugInService - ok

    19:39:57.0325 3084 [ 0C17A0816F65B89E362E682AD5E7266E ] Wd C:\Windows\system32\drivers\wd.sys

    19:39:57.0327 3084 Wd - ok

    19:39:57.0361 3084 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

    19:39:57.0377 3084 Wdf01000 - ok

    19:39:57.0401 3084 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiServiceHost C:\Windows\system32\wdi.dll

    19:39:57.0406 3084 WdiServiceHost - ok

    19:39:57.0409 3084 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiSystemHost C:\Windows\system32\wdi.dll

    19:39:57.0413 3084 WdiSystemHost - ok

    19:39:57.0439 3084 [ 3E6D05381CF35F75EBB055544A8ED9AC ] WebClient C:\Windows\System32\webclnt.dll

    19:39:57.0444 3084 WebClient - ok

    19:39:57.0504 3084 [ 8D40BC587993F876658BF9FB0F7D3462 ] Wecsvc C:\Windows\system32\wecsvc.dll

    19:39:57.0510 3084 Wecsvc - ok

    19:39:57.0523 3084 [ 9C980351D7E96288EA0C23AE232BD065 ] wercplsupport C:\Windows\System32\wercplsupport.dll

    19:39:57.0528 3084 wercplsupport - ok

    19:39:57.0536 3084 [ 66B9ECEBC46683F47EDC06333C075FEF ] WerSvc C:\Windows\System32\WerSvc.dll

    19:39:57.0541 3084 WerSvc - ok

    19:39:57.0573 3084 [ 9E6C63F94D2C3D884A8936E448B1028B ] winachsf C:\Windows\system32\DRIVERS\CAX_CNXT.sys

    19:39:57.0590 3084 winachsf - ok

    19:39:57.0627 3084 WinDefend - ok

    19:39:57.0632 3084 WinHttpAutoProxySvc - ok

    19:39:57.0810 3084 [ D2E7296ED1BD26D8DB2799770C077A02 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

    19:39:57.0813 3084 Winmgmt - ok

    19:39:57.0867 3084 [ 6CBB0C68F13B9C2EC1B16F5FA5E7C869 ] WinRM C:\Windows\system32\WsmSvc.dll

    19:39:57.0909 3084 WinRM - ok

    19:39:57.0943 3084 [ 7F2F9E48566B2087F2AAAD258CB2A8D4 ] WinUSB C:\Windows\system32\DRIVERS\WinUSB.sys

    19:39:57.0944 3084 WinUSB - ok

    19:39:58.0001 3084 WisINT15 - ok

    19:39:58.0038 3084 [ EC339C8115E91BAED835957E9A677F16 ] Wlansvc C:\Windows\System32\wlansvc.dll

    19:39:58.0055 3084 Wlansvc - ok

    19:39:58.0164 3084 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    19:39:58.0205 3084 wlidsvc - ok

    19:39:58.0232 3084 [ E18AEBAAA5A773FE11AA2C70F65320F5 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys

    19:39:58.0233 3084 WmiAcpi - ok

    19:39:58.0264 3084 [ 21FA389E65A852698B6A1341F36EE02D ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

    19:39:58.0268 3084 wmiApSrv - ok

    19:39:58.0278 3084 WMPNetworkSvc - ok

    19:39:58.0344 3084 [ 83B6CA03C846FCD47F9883D77D1EB27B ] WMZuneComm C:\Program Files\Zune\WMZuneComm.exe

    19:39:58.0350 3084 WMZuneComm - ok

    19:39:58.0383 3084 [ CBC156C913F099E6680D1DF9307DB7A8 ] WPCSvc C:\Windows\System32\wpcsvc.dll

    19:39:58.0388 3084 WPCSvc - ok

    19:39:58.0411 3084 [ 490A18B4E4D53DC10879DEAA8E8B70D9 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

    19:39:58.0416 3084 WPDBusEnum - ok

    19:39:58.0449 3084 [ 5E2401B3FC1089C90E081291357371A9 ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys

    19:39:58.0451 3084 WpdUsb - ok

    19:39:58.0545 3084 [ 991E2C2CF3BC204C2BB2EE1476149E4E ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe

    19:39:58.0570 3084 WPFFontCache_v0400 - ok

    19:39:58.0602 3084 [ 8A900348370E359B6BFF6A550E4649E1 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

    19:39:58.0604 3084 ws2ifsl - ok

    19:39:58.0636 3084 [ 9EA3E6D0EF7A5C2B9181961052A4B01A ] wscsvc C:\Windows\System32\wscsvc.dll

    19:39:58.0640 3084 wscsvc - ok

    19:39:58.0644 3084 WSearch - ok

    19:39:58.0744 3084 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll

    19:39:58.0827 3084 wuauserv - ok

    19:39:58.0877 3084 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

    19:39:58.0878 3084 WudfPf - ok

    19:39:58.0912 3084 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

    19:39:58.0915 3084 WUDFRd - ok

    19:39:58.0928 3084 [ 3DCC7BF5AFA921B479E622BD999121F3 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

    19:39:58.0932 3084 wudfsvc - ok

    19:39:58.0958 3084 [ F22E443518BC599D12888DAF292A56D8 ] XAudio C:\Windows\system32\DRIVERS\xaudio64.sys

    19:39:58.0960 3084 XAudio - ok

    19:39:58.0980 3084 [ 963C27034BBA4AC52A13F7A3C657C708 ] XAudioService C:\Windows\system32\DRIVERS\xaudio64.exe

    19:39:58.0986 3084 XAudioService - ok

    19:39:59.0061 3084 [ DA1C23F65EF1894AB5B6FF79D81F544A ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys

    19:39:59.0083 3084 xnacc - ok

    19:39:59.0160 3084 [ 47AEA795C67B7440E60D1F7542CB3D38 ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys

    19:39:59.0161 3084 xusb21 - ok

    19:39:59.0184 3084 yksvc - ok

    19:39:59.0217 3084 [ B681CADB266B151061E7BAA82B0D77B7 ] yukonx64 C:\Windows\system32\DRIVERS\yk60x64.sys

    19:39:59.0223 3084 yukonx64 - ok

    19:39:59.0449 3084 [ 67B787C34FB2888D01B130AE007042D8 ] ZuneNetworkSvc C:\Program Files\Zune\ZuneNss.exe

    19:39:59.0648 3084 ZuneNetworkSvc - ok

    19:39:59.0702 3084 [ 4D89FC1C20CF655739EFAC5DA81A67BC ] ZuneWlanCfgSvc C:\Program Files\Zune\ZuneWlanCfgSvc.exe

    19:39:59.0709 3084 ZuneWlanCfgSvc - ok

    19:39:59.0729 3084 ================ Scan global ===============================

    19:39:59.0745 3084 [ 060DC3A7A9A2626031EB23D90151428D ] C:\Windows\system32\basesrv.dll

    19:39:59.0784 3084 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll

    19:39:59.0814 3084 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll

    19:39:59.0857 3084 [ 934E0B7D77FF78C18D9F8891221B6DE3 ] C:\Windows\system32\services.exe

    19:39:59.0864 3084 [Global] - ok

    19:39:59.0865 3084 ================ Scan MBR ==================================

    19:39:59.0876 3084 [ 8C9F9E03865C35F0F3829A23CDA42F5D ] \Device\Harddisk0\DR0

    19:40:02.0070 3084 \Device\Harddisk0\DR0 - ok

    19:40:02.0070 3084 ================ Scan VBR ==================================

    19:40:02.0073 3084 [ 6569DA1F0BBC30D797A24EF24B586460 ] \Device\Harddisk0\DR0\Partition1

    19:40:02.0074 3084 \Device\Harddisk0\DR0\Partition1 - ok

    19:40:02.0075 3084 ============================================================

    19:40:02.0075 3084 Scan finished

    19:40:02.0075 3084 ============================================================

    19:40:02.0188 7136 Detected object count: 0

    19:40:02.0188 7136 Actual detected object count: 0

  4. Hello,

    I believe I am infected as their is a process "svchostexe" that is listed near the top of CPU consumption for when I open my resource monitor and seems to be associated with Trojan malware. I am reasonably sure I got it from a torrent download about a month ago, I would appreciate any help. I am medium computer savvy, but very naive when it comes to any repair or alterations of this sort. Windows Vista Home

    attach.txt

    dds.txt

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.