Jump to content

Uncontrollable window opening


Laxjim8

Recommended Posts

All of a sudden my browsers have started opening lots of windows without my input, every couple seconds they also go to the homepage making it difficult for me to post here on my computer. So if you have suggestions on how to do that they would be very appreciated as well. Here are the two logs. Thanks in advanced!

Dds

.

DDS (Ver_2011-08-26.01) - NTFSAMD64 

Internet Explorer: 9.0.8112.16421

Run by Jim at 1:02:44 on 2012-02-15

Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.6092.2942 [GMT -5:00]

.

AV: Symantec Endpoint Protection *Disabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Symantec Endpoint Protection *Disabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}

FW: Symantec Endpoint Protection *Enabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}

.

============== Running Processes ===============

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Program Files\IDT\WDM\STacSV64.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\Hpservice.exe

C:\Windows\system32\WUDFHost.exe

C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Smc.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\WLANExt.exe

C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe

C:\Windows\system32\conhost.exe

C:\Windows\system32\Dwm.exe

C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe

C:\Windows\Explorer.EXE

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\taskhost.exe

C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files\IDT\WDM\AESTSr64.exe

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\IDT\WDM\sttray64.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Windows\System32\igfxtray.exe

C:\Program Files\Intel\WiFi\bin\EvtEng.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\SysWOW64\ezSharedSvcHost.exe

C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\SmcGui.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe

C:\Program Files\Microsoft IntelliPoint\ipoint.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files (x86)\Steam\Steam.exe

C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe

C:\Windows\system32\HPSIsvc.exe

C:\Windows\system32\taskeng.exe

C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe

C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe

C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe

C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe

C:\Program Files (x86)\Pandora\Pandora.exe

C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe

C:\Program Files (x86)\CyberLink\Shared files\brs.exe

C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe

C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe

C:\Windows\SysWOW64\PnkBstrA.exe

C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe

C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE

C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe

C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe

C:\Program Files (x86)\iTunes\iTunesHelper.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Amazon\Amazon Unbox Video\ADVWindowsClientService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\SearchIndexer.exe

C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\spool\DRIVERS\x64\3\HP1006MC.EXE

C:\Program Files (x86)\Common Files\Steam\SteamService.exe

C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Windows\system32\svchost.exe -k SDRSVC

C:\Windows\system32\svchost.exe -k WbioSvcGroup

C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.exe

C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\SymCorpUI.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\SysWOW64\cmd.exe

C:\Windows\system32\conhost.exe

C:\Windows\SysWOW64\cscript.exe

C:\Windows\system32\wbem\wmiprvse.exe

.

============== Pseudo HJT Report ===============

.

uSearch Bar = Preserve

uInternet Settings,ProxyOverride = *.local;192.168.*.*

mWinlogon: Userinit=userinit.exe

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: Lync Browser Helper: {31d09ba0-12f5-4cce-be8a-2923e76605da} - C:\Program Files (x86)\Microsoft Lync\OCHelper.dll

BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL

BHO: TrueSuite Website Log On: {8590886e-ec8c-43c1-a32c-e4c2b0b6395b} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL

BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

uRun: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

uRun: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

mRun: [<NO NAME>] 

mRun: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

mRun: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"

mRun: [bDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe

mRun: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe

mRun: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [Communicator] "C:\Program Files (x86)\Microsoft Lync\communicator.exe" /fromrunkey

mRun: [bCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices

mRun: [ccApp] "C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

mRun: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

StartupFolder: C:\Users\Jim\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe

StartupFolder: C:\Users\Jim\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Pandora.lnk - C:\Program Files (x86)\Pandora\Pandora.exe

StartupFolder: C:\Users\Jim\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PDANET~1.LNK - C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\AMAZON~1.LNK - C:\Program Files (x86)\Amazon\Amazon Unbox Video\ADVWindowsClientSystemTray.exe

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\UVAITC~1.LNK - C:\Windows\Installer\{A4766C69-E64B-47D4-984C-BE9E91FDDBF3}\_93C62315C0D5B38E0A1810.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-explorer: EnableShellExecuteHooks = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Lync\OCHelper.dll

IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

TCP: DhcpNameServer = 128.143.2.7 128.143.3.7 128.143.22.119

TCP: Interfaces\{3D7AAB19-4333-4807-8244-CC305DA30A57} : DhcpNameServer = 128.143.2.7 128.143.3.7 128.143.22.119

TCP: Interfaces\{3D7AAB19-4333-4807-8244-CC305DA30A57}\7556C636F6D656F547F6F5556516F575962756C6563737 : DhcpNameServer = 128.143.2.7 128.143.3.7 128.143.22.119

Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

SEH: EasyBits ShellExecute Hook: {e54729e8-bb3d-4270-9d49-7389ea579090} - C:\Windows\SysWow64\EZUPBH~1.DLL

SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL

BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO-X64:     AcroIEHelperStub - No File

BHO-X64: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Lync\OCHelper.dll

BHO-X64:     Lync add-on BHO - No File

BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL

BHO-X64: TrueSuite Website Log On: {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll

BHO-X64:     TSBHO Class - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL

BHO-X64:     URLRedirectionBHO - No File

BHO-X64: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

TB-X64: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun-x64: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

mRun-x64: [(Default)] 

mRun-x64: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe

mRun-x64: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"

mRun-x64: [bDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe

mRun-x64: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe

mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun-x64: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe

mRun-x64: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe

mRun-x64: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun-x64: [Communicator] "C:\Program Files (x86)\Microsoft Lync\communicator.exe" /fromrunkey

mRun-x64: [bCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices

mRun-x64: [ccApp] "C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe"

mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

mRun-x64: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

IE-X64: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204

SEH-X64: EasyBits ShellExecute Hook: {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWow64\EZUPBH~1.DLL

SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL

Hosts: 74.208.10.249 gs.apple.com

.

============= SERVICES / DRIVERS ===============

.

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]

R2 AESTFilters;Andrea ST Filters Service;C:\Program Files\IDT\WDM\AESTSr64.exe [2011-7-27 89600]

R2 ezSharedSvc;Easybits Services for Windows;C:\Windows\System32\ezSharedSvcHost.exe [2011-4-8 514232]

R2 FPLService;TrueSuiteService;C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [2011-2-18 265544]

R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2011-6-21 85560]

R2 HPClientSvc;HP Client Services;C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]

R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-3-28 94264]

R2 HPSIService;HP SI Service;C:\Windows\system32\HPSIsvc.exe --> C:\Windows\system32\HPSIsvc.exe [?]

R2 hpsrv;HP Service;C:\Windows\system32\Hpservice.exe --> C:\Windows\system32\Hpservice.exe [?]

R2 HPWMISVC;HPWMISVC;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-11-9 26680]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-7-27 13336]

R2 MotoHelper;MotoHelper Service;C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [2011-8-10 227184]

R2 RoxioNow Service;RoxioNow Service;C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [2010-11-26 399344]

R2 SSUService;Splashtop Software Updater Service;C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]

R2 Symantec AntiVirus;Symantec Endpoint Protection;C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe [2010-7-1 1832072]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-7-27 2656280]

R3 clwvd;CyberLink WebCam Virtual Driver;C:\Windows\system32\DRIVERS\clwvd.sys --> C:\Windows\system32\DRIVERS\clwvd.sys [?]

R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-2-4 138360]

R3 hpCMSrv;HP Connection Manager 4.0 Service;C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-2-15 1071160]

R3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]

R3 MEIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]

R3 NETwNs64;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\system32\DRIVERS\NETwNs64.sys --> C:\Windows\system32\DRIVERS\NETwNs64.sys [?]

R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\system32\DRIVERS\nusb3hub.sys --> C:\Windows\system32\DRIVERS\nusb3hub.sys [?]

R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\system32\DRIVERS\nusb3xhc.sys --> C:\Windows\system32\DRIVERS\nusb3xhc.sys [?]

R3 pneteth;PdaNet Broadband;C:\Windows\system32\DRIVERS\pneteth.sys --> C:\Windows\system32\DRIVERS\pneteth.sys [?]

R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\Windows\system32\DRIVERS\RtsPStor.sys --> C:\Windows\system32\DRIVERS\RtsPStor.sys [?]

R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]

R3 wdkmd;Intel WiDi KMD;C:\Windows\system32\DRIVERS\WDKMD.sys --> C:\Windows\system32\DRIVERS\WDKMD.sys [?]

S2 CLKMSVC10_38F51D56;CyberLink Product - 2011/07/27 13:44:59;C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [2011-1-25 241648]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-3-1 183560]

S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

S3 hcwhdpvr;Hauppauge HD PVR Capture Device;C:\Windows\system32\DRIVERS\hcwhdpvr.sys --> C:\Windows\system32\DRIVERS\hcwhdpvr.sys [?]

S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-6-12 31125880]

S3 MotDev;Motorola Inc. USB Device;C:\Windows\system32\DRIVERS\motodrv.sys --> C:\Windows\system32\DRIVERS\motodrv.sys [?]

S3 mvusbews;USB EWS Device;C:\Windows\system32\Drivers\mvusbews.sys --> C:\Windows\system32\Drivers\mvusbews.sys [?]

S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-1-5 340240]

S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]

S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\system32\DRIVERS\VSTAZL6.SYS --> C:\Windows\system32\DRIVERS\VSTAZL6.SYS [?]

S3 SrvHsfV92;SrvHsfV92;C:\Windows\system32\DRIVERS\VSTDPV6.SYS --> C:\Windows\system32\DRIVERS\VSTDPV6.SYS [?]

S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\system32\DRIVERS\VSTCNXT6.SYS --> C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [?]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]

S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]

.

=============== Created Last 30 ================

.

2012-02-15 05:55:49 -------- d-----w- C:\HP_TOOLS_mountHPSF

2012-02-14 20:01:24 -------- d-----w- C:\Users\Jim\AppData\Roaming\Malwarebytes

2012-02-14 20:01:19 23152 ----a-w- C:\Windows\System32\drivers\mbam.sys

2012-02-14 20:01:19 -------- d-----w- C:\ProgramData\Malwarebytes

2012-02-14 20:01:19 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2012-02-08 16:45:21 -------- d-----w- C:\Users\Jim\AppData\Local\{4DA1DC5B-541C-465B-8EDE-30DC5B305FF1}

2012-02-08 16:45:07 -------- d-----w- C:\Users\Jim\AppData\Roaming\Windows Live Writer

2012-02-08 16:45:07 -------- d-----w- C:\Users\Jim\AppData\Local\Windows Live Writer

2012-02-03 22:00:42 22784 ----a-w- C:\Windows\SysWow64\drivers\afc.sys

2012-02-03 21:59:09 -------- d-----w- C:\ProgramData\ArcSoft

2012-02-03 21:58:32 393216 ----a-w- C:\Windows\SysWow64\MSLUP60.dll

2012-02-03 21:58:31 245408 ----a-w- C:\Windows\SysWow64\unicows.dll

2012-02-03 21:58:31 1645320 ----a-w- C:\Windows\SysWow64\gdiplus.dll

2012-02-03 21:58:30 256768 ----a-w- C:\Windows\SysWow64\MSLURT.dll

2012-02-03 21:57:46 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll

2012-02-03 21:57:45 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll

2012-02-03 21:57:45 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll

2012-02-03 21:57:45 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll

2012-02-03 21:56:51 -------- d-----w- C:\Program Files (x86)\Hauppauge

2012-02-03 21:55:37 191944 ----a-w- C:\Windows\System32\drivers\hcwhdpvr.sys

2012-02-03 21:33:14 -------- d-----w- C:\Program Files (x86)\Common Files\OFX

2012-02-03 21:33:13 -------- d-----w- C:\Program Files (x86)\NewBlue

2012-02-03 21:32:33 -------- d-----w- C:\Program Files (x86)\iZotope

2012-02-03 21:29:55 -------- d-----w- C:\Windows\SysWow64\spool

2012-02-03 21:29:55 -------- d-----w- C:\Program Files (x86)\Sony

2012-01-23 07:00:44 -------- d-----w- C:\Users\Jim\AppData\Local\Amazon

.

==================== Find3M  ====================

.

2011-12-20 02:36:51 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2011-11-24 04:52:09 3145216 ----a-w- C:\Windows\System32\win32k.sys

2011-11-19 14:58:00 77312 ----a-w- C:\Windows\System32\packager.dll

2011-11-19 14:01:00 67072 ----a-w- C:\Windows\SysWow64\packager.dll

2011-11-17 14:52:42 808440 ----a-w- C:\Windows\SysWow64\CDDBUI.dll

2011-11-17 14:52:42 796152 ----a-w- C:\Windows\SysWow64\CDDBControl.dll

2011-11-17 06:49:14 95600 ----a-w- C:\Windows\System32\drivers\ksecdd.sys

2011-11-17 06:49:14 152432 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys

2011-11-17 06:44:43 459232 ----a-w- C:\Windows\System32\drivers\cng.sys

2011-11-17 06:41:18 1731920 ----a-w- C:\Windows\System32\ntdll.dll

2011-11-17 06:35:28 395776 ----a-w- C:\Windows\System32\webio.dll

2011-11-17 06:35:26 29184 ----a-w- C:\Windows\System32\sspisrv.dll

2011-11-17 06:35:26 136192 ----a-w- C:\Windows\System32\sspicli.dll

2011-11-17 06:35:25 340992 ----a-w- C:\Windows\System32\schannel.dll

2011-11-17 06:35:25 28160 ----a-w- C:\Windows\System32\secur32.dll

2011-11-17 06:35:19 1447936 ----a-w- C:\Windows\System32\lsasrv.dll

2011-11-17 06:33:55 31232 ----a-w- C:\Windows\System32\lsass.exe

.

============= FINISH:  1:03:09.63 ===============

Attach

.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2011-08-26.01)

.

Microsoft Windows 7 Home Premium 

Boot Device: \Device\HarddiskVolume1

Install Date: 8/10/2011 12:25:47 PM

System Uptime: 2/15/2012 12:37:15 AM (1 hours ago)

.

Motherboard: Hewlett-Packard |  | 165B

Processor: Intel® Core i7-2630QM CPU @ 2.00GHz | CPU1 | 2001/1333mhz

.

==== Disk Partitions =========================

.

C: is FIXED (NTFS) - 684 GiB total, 497.338 GiB free.

D: is FIXED (NTFS) - 14 GiB total, 1.562 GiB free.

E: is CDROM (CDFS)

.

==== Disabled Device Manager Items =============

.

==== System Restore Points ===================

.

RP76: 1/25/2012 8:56:16 PM - Scheduled Checkpoint

RP77: 1/28/2012 1:20:45 AM - HPSF Restore Point

RP78: 2/1/2012 7:00:10 PM - Windows Backup

RP79: 2/3/2012 4:55:44 PM - Device Driver Package Install: Hauppauge, Inc. Sound, video and game controllers

RP80: 2/3/2012 4:58:19 PM - Installed ShowBiz

RP81: 2/14/2012 3:18:35 PM - Removed Splashtop Streamer

RP82: 2/14/2012 6:02:58 PM - Restore Operation

.

==== Installed Programs ======================

.

Adobe AIR

Adobe Flash Player 10 ActiveX

Adobe Flash Player 11 Plugin

Adobe Reader X MUI

Adobe Shockwave Player 11.5

Agatha Christie - Peril at End House

Age of Empires III

Amazon Kindle

Amazon MP3 Downloader 1.0.12

Amazon MP3 Uploader

Amazon Unbox Video

Apple Application Support

Apple Software Update

ArcSoft ShowBiz

Audacity 1.2.6

Battlefield 2142

Bejeweled 2 Deluxe

Bejeweled 3

Bing Bar

Blackhawk Striker 2

Blasterball 3

Blio

Bounce Symphony

Build-a-lot 2

Cake Mania

Call of Duty 4: Modern Warfare

Chuzzle Deluxe

Company of Heroes

CyberLink PowerDVD 10

CyberLink YouCam

D3DX10

Definition update for Microsoft Office 2010 (KB982726) 32-Bit Edition

Diner Dash 2 Restaurant Rescue

Dora's World Adventure

Dropbox

DVD Architect Studio 5.0

Energy Star Digital Logo

ESU for Microsoft Windows 7

Evernote v. 4.2.2

Farm Frenzy

FATE - The Traitor Soul

Hewlett-Packard ACLM.NET v1.1.1.0

HP Connection Manager

HP Customer Experience Enhancements

HP Documentation

HP Games

HP MovieStore

HP On Screen Display

HP Power Manager

HP Quick Launch

HP Setup

HP Setup Manager

HP SimplePass 2011

HP Software Framework

HP Support Assistant

IDT Audio

Intel® Control Center

Intel® Management Engine Components

Intel® Processor Graphics

Intel® Rapid Storage Technology

Intel® Wireless Display

ITC Network Setup Tool

Java Auto Updater

Java 6 Update 26

Junk Mail filter update

LiveUpdate 3.3 (Symantec Corporation)

Magic Desktop

Magic Online

Mah Jong Medley

Malwarebytes Anti-Malware version 1.60.1.1000

Mesh Runtime

Microsoft .NET Framework 4 Multi-Targeting Pack

Microsoft Age of Empires

Microsoft Office 2010 Service Pack 1 (SP1)

Microsoft Office Access MUI (English) 2010

Microsoft Office Access Setup Metadata MUI (English) 2010

Microsoft Office Excel MUI (English) 2010

Microsoft Office Groove MUI (English) 2010

Microsoft Office InfoPath MUI (English) 2010

Microsoft Office OneNote MUI (English) 2010

Microsoft Office Outlook MUI (English) 2010

Microsoft Office PowerPoint MUI (English) 2010

Microsoft Office Professional Plus 2010

Microsoft Office Proof (English) 2010

Microsoft Office Proof (French) 2010

Microsoft Office Proof (Spanish) 2010

Microsoft Office Proofing (English) 2010

Microsoft Office Publisher MUI (English) 2010

Microsoft Office Shared MUI (English) 2010

Microsoft Office Shared Setup Metadata MUI (English) 2010

Microsoft Office Word MUI (English) 2010

Microsoft Silverlight

Microsoft SQL Server 2005 Compact Edition [ENU]

Microsoft Visual C++  Compilers 2010 Standard - enu - x86

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319

Microsoft WSE 3.0 Runtime

MotoHelper 2.0.53 Driver 5.2.0

MotoHelper MergeModules

MSVCRT

MSVCRT Redists

MSVCRT_amd64

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

Mystery P.I. - Stolen in San Francisco

Namco All-Stars PAC-MAN

Napoleon: Total War Demo

NewBlue VideoFX for Sony Vegas MSPPS

Pandora

PdaNet for Android 3.02

Penguins!

Plants vs. Zombies - Game of the Year

PlayReady PC Runtime x86

Poker Superstars III

Polar Bowler

Polar Golfer

QuickTime

Realtek Ethernet Controller Driver

Realtek PCIE Card Reader

Recovery Manager

Renesas Electronics USB 3.0 Host Controller Driver

RoxioNow Player

RSDLite

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)

Security Update for Microsoft .NET Framework 4 Extended (KB2416472)

Security Update for Microsoft .NET Framework 4 Extended (KB2487367)

Security Update for Microsoft .NET Framework 4 Extended (KB2656351)

Security Update for Microsoft Office 2010 (KB2553091)

Security Update for Microsoft Office 2010 (KB2553096)

Security Update for Microsoft Office 2010 (KB2553353) 32-Bit Edition

Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition

Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition

Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)

Seven Kingdoms II

Sid Meier's Civilization V - Demo

Skype™ 5.5

Slingo Supreme

Sony Vocal Eraser

Sound Forge Audio Studio 10.0

Steam

Total War: SHOGUN 2 Demo

Ubuntu

Update for Microsoft .NET Framework 4 Client Profile (KB2468871)

Update for Microsoft .NET Framework 4 Client Profile (KB2473228)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523)

Update for Microsoft .NET Framework 4 Extended (KB2468871)

Update for Microsoft .NET Framework 4 Extended (KB2533523)

Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition

Update for Microsoft Office 2010 (KB2494150)

Update for Microsoft Office 2010 (KB2553065)

Update for Microsoft Office 2010 (KB2553092)

Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition

Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition

Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition

Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition

Update for Microsoft Office 2010 (KB2553455) 32-Bit Edition

Update for Microsoft Office 2010 (KB2566458)

Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition

Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition

Update for Microsoft Outlook 2010 (KB2553323) 32-Bit Edition

Update for Microsoft Outlook Social Connector (KB2583935)

Update Installer for WildTangent Games App

Vegas Movie Studio HD Platinum 11.0

Virtual Villagers 4 - The Tree of Life

VirtualDJ Home FREE

Wheel of Fortune 2

WildTangent Games App (HP Games)

Windows Live Communications Platform

Windows Live Essentials

Windows Live Installer

Windows Live Mail

Windows Live Mesh

Windows Live Mesh ActiveX Control for Remote Connections

Windows Live Messenger

Windows Live Movie Maker

Windows Live Photo Common

Windows Live Photo Gallery

Windows Live PIMT Platform

Windows Live SOXE

Windows Live SOXE Definitions

Windows Live UX Platform

Windows Live UX Platform Language Pack

Windows Live Writer

Windows Live Writer Resources

Windows SDK IntellisenseNFX

Yahoo! Detect

Zuma Deluxe

.

==== Event Viewer Messages From Past Week ========

.

2/9/2012 5:44:58 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer DAVID-VAIO that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/9/2012 4:47:42 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer ADAM-HP that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/9/2012 4:04:52 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MMCSS service.

2/9/2012 1:34:33 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer ASHLEY-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/8/2012 7:03:33 PM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.21.240. The computer with the IP address 172.26.17.172 did not allow the name to be claimed by this computer.

2/8/2012 4:06:46 PM, Error: Microsoft-Windows-DistributedCOM [10016]  - The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {204810B9-73B2-11D4-BF42-00B0D0118B56}  and APPID  {E495081B-BBA5-4B89-BA3C-3B86A686B87A}  to the user Jim-School\Video SID (S-1-5-21-2733682295-1358861309-1769079307-1007) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.

2/8/2012 3:00:57 AM, Error: bowser [8003]  - The master browser has received a server announcement from the computer PROCYON that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/8/2012 10:52:25 AM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.21.240. The computer with the IP address 172.26.19.247 did not allow the name to be claimed by this computer.

2/15/2012 12:44:23 AM, Error: Service Control Manager [7034]  - The HP Connection Manager 4.0 Service service terminated unexpectedly.  It has done this 2 time(s).

2/15/2012 12:43:36 AM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.22.15. The computer with the IP address 172.26.21.44 did not allow the name to be claimed by this computer.

2/15/2012 12:43:34 AM, Error: Service Control Manager [7034]  - The HP Connection Manager 4.0 Service service terminated unexpectedly.  It has done this 1 time(s).

2/15/2012 12:40:25 AM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the HPWMISVC service.

2/15/2012 12:35:14 AM, Error: Service Control Manager [7001]  - The Computer Browser service depends on the Server service which failed to start because of the following error:  The dependency service or group failed to start.

2/15/2012 12:32:26 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}

2/15/2012 12:25:53 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}

2/15/2012 12:25:52 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

2/15/2012 12:25:45 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

2/15/2012 12:25:40 AM, Error: Microsoft-Windows-WLAN-AutoConfig [10000]  - WLAN Extensibility Module has failed to start. Module Path: C:\Windows\System32\IWMSSvc.dll Error Code: 21

2/15/2012 12:25:35 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}

2/15/2012 12:25:28 AM, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  discache eeCtrl spldr SRTSP SRTSPX Wanarpv6

2/14/2012 6:23:48 PM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the HP Software Framework Service service to connect.

2/14/2012 6:23:48 PM, Error: Service Control Manager [7000]  - The HP Software Framework Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

2/14/2012 6:23:48 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1053" attempting to start the service hpqwmiex with arguments "" in order to run the server: {F5539356-2F02-40D4-999E-FA61F45FE12E}

2/14/2012 5:54:24 PM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

2/14/2012 5:54:24 PM, Error: Service Control Manager [7000]  - The Steam Client Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

2/14/2012 5:53:43 PM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the HP Support Assistant Service service to connect.

2/14/2012 5:53:43 PM, Error: Service Control Manager [7000]  - The HP Support Assistant Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.

2/14/2012 2:45:51 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer MACBOOK-827B00 that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/14/2012 2:45:49 PM, Error: NetBT [4319]  - A duplicate name has been detected on the TCP network.  The IP address of the computer that sent the message is in the data. Use nbtstat -n in a command window to see which name is in the Conflict state.

2/14/2012 1:11:38 AM, Error: BROWSER [8020]  - The browser was unable to promote itself to master browser.  The computer that currently believes it is the master browser is unknown.

2/13/2012 6:14:50 PM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.23.146. The computer with the IP address 172.26.17.134 did not allow the name to be claimed by this computer.

2/13/2012 6:07:33 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the hpqwmiex service.

2/13/2012 12:37:15 AM, Error: bowser [8003]  - The master browser has received a server announcement from the computer UVA-GRILL2 that believes that it is the master browser for the domain on transport NetBT_Tcpip_{9A714707-4567-4DCB-92B8-9CA9F52523C3}. The master browser is stopping or an election is being forced.

2/13/2012 11:15:37 PM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.23.146. The computer with the IP address 172.26.22.22 did not allow the name to be claimed by this computer.

2/12/2012 7:06:31 PM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.21.240. The computer with the IP address 172.26.18.251 did not allow the name to be claimed by this computer.

2/12/2012 4:56:24 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer D-172-26-16-122 that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/12/2012 2:02:41 AM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.21.240. The computer with the IP address 172.26.18.214 did not allow the name to be claimed by this computer.

2/12/2012 1:02:15 AM, Error: bowser [8003]  - The master browser has received a server announcement from the computer CHRIS-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 7:44:42 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer LINDSEY-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 6:19:35 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer MININT-R9OVHVN that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 5:37:54 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer OWNER-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 5:35:15 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer CHLOE-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 3:34:17 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer MDOG-HP that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/11/2012 2:28:30 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the wscsvc service.

2/11/2012 11:12:37 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer JAMES-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/10/2012 3:51:43 PM, Error: NetBT [4321]  - The name "WORKGROUP      :1d" could not be registered on the interface with IP address 172.26.21.240. The computer with the IP address 172.26.22.54 did not allow the name to be claimed by this computer.

2/10/2012 2:05:05 AM, Error: bowser [8003]  - The master browser has received a server announcement from the computer JENNIFER-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/10/2012 10:46:47 PM, Error: bowser [8003]  - The master browser has received a server announcement from the computer MAX-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/10/2012 1:27:42 AM, Error: bowser [8003]  - The master browser has received a server announcement from the computer KRISTIAN-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D7AAB19-4333-4807-8244-CC305DA30A57}. The master browser is stopping or an election is being forced.

2/10/2012 1:25:04 PM, Error: BROWSER [8019]  - The browser was unable to promote itself to master browser.  The browser will continue to attempt to promote itself to the master browser, but will no longer log any events in the event log in Event Viewer.

.

==== End Of File ===========================

Link to post
Share on other sites

Hello and :welcome:

Lets first also run a rootkit scan.

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!

  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.

Link to post
Share on other sites

here is the log, it did not report finding anything

13:05:32.0760 26392 TDSS rootkit removing tool 2.7.12.0 Feb 11 2012 16:58:52

13:05:32.0990 26392 ============================================================

13:05:32.0990 26392 Current date / time: 2012/02/15 13:05:32.0990

13:05:32.0990 26392 SystemInfo:

13:05:32.0990 26392

13:05:32.0990 26392 OS Version: 6.1.7601 ServicePack: 1.0

13:05:32.0990 26392 Product type: Workstation

13:05:32.0990 26392 ComputerName: JIM-SCHOOL

13:05:32.0990 26392 UserName: Jim

13:05:32.0990 26392 Windows directory: C:\Windows

13:05:32.0990 26392 System windows directory: C:\Windows

13:05:32.0990 26392 Running under WOW64

13:05:32.0990 26392 Processor architecture: Intel x64

13:05:32.0990 26392 Number of processors: 8

13:05:32.0990 26392 Page size: 0x1000

13:05:32.0990 26392 Boot type: Normal boot

13:05:32.0990 26392 ============================================================

13:05:33.0651 26392 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

13:05:33.0661 26392 \Device\Harddisk0\DR0:

13:05:33.0661 26392 MBR used

13:05:33.0661 26392 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800

13:05:33.0661 26392 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x557EB000

13:05:33.0661 26392 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x5584F800, BlocksNum 0x1CC3000

13:05:33.0661 26392 \Device\Harddisk0\DR0\Partition3: MBR, Type 0xC, StartLBA 0x57512800, BlocksNum 0x336F0

13:05:33.0751 26392 Initialize success

13:05:33.0751 26392 ============================================================

13:05:37.0391 28960 ============================================================

13:05:37.0391 28960 Scan started

13:05:37.0391 28960 Mode: Manual;

13:05:37.0391 28960 ============================================================

13:05:38.0191 28960 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys

13:05:38.0221 28960 1394ohci - ok

13:05:38.0281 28960 Accelerometer (5c368f4b04ed2a923e6afca2d37baff5) C:\Windows\system32\DRIVERS\Accelerometer.sys

13:05:38.0281 28960 Accelerometer - ok

13:05:38.0371 28960 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys

13:05:38.0381 28960 ACPI - ok

13:05:38.0441 28960 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys

13:05:38.0451 28960 AcpiPmi - ok

13:05:38.0551 28960 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys

13:05:38.0581 28960 adp94xx - ok

13:05:38.0681 28960 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys

13:05:38.0701 28960 adpahci - ok

13:05:38.0791 28960 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys

13:05:38.0821 28960 adpu320 - ok

13:05:38.0871 28960 Afc - ok

13:05:38.0961 28960 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys

13:05:38.0961 28960 AFD - ok

13:05:39.0041 28960 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys

13:05:39.0061 28960 agp440 - ok

13:05:39.0161 28960 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys

13:05:39.0191 28960 aliide - ok

13:05:39.0261 28960 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys

13:05:39.0291 28960 amdide - ok

13:05:39.0381 28960 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys

13:05:39.0421 28960 AmdK8 - ok

13:05:39.0481 28960 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys

13:05:39.0511 28960 AmdPPM - ok

13:05:39.0591 28960 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys

13:05:39.0611 28960 amdsata - ok

13:05:39.0711 28960 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys

13:05:39.0741 28960 amdsbs - ok

13:05:39.0821 28960 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys

13:05:39.0821 28960 amdxata - ok

13:05:39.0981 28960 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys

13:05:40.0001 28960 AppID - ok

13:05:40.0101 28960 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys

13:05:40.0131 28960 arc - ok

13:05:40.0201 28960 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys

13:05:40.0231 28960 arcsas - ok

13:05:40.0311 28960 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys

13:05:40.0341 28960 AsyncMac - ok

13:05:40.0401 28960 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys

13:05:40.0401 28960 atapi - ok

13:05:40.0511 28960 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys

13:05:40.0541 28960 b06bdrv - ok

13:05:40.0621 28960 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys

13:05:40.0651 28960 b57nd60a - ok

13:05:40.0781 28960 BCM43XX (9e84a931dbee0292e38ed672f6293a99) C:\Windows\system32\DRIVERS\bcmwl664.sys

13:05:40.0811 28960 BCM43XX - ok

13:05:40.0891 28960 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys

13:05:40.0891 28960 Beep - ok

13:05:40.0991 28960 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys

13:05:41.0001 28960 blbdrive - ok

13:05:41.0101 28960 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys

13:05:41.0101 28960 bowser - ok

13:05:41.0172 28960 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys

13:05:41.0202 28960 BrFiltLo - ok

13:05:41.0272 28960 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys

13:05:41.0292 28960 BrFiltUp - ok

13:05:41.0362 28960 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys

13:05:41.0402 28960 Brserid - ok

13:05:41.0472 28960 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys

13:05:41.0502 28960 BrSerWdm - ok

13:05:41.0562 28960 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys

13:05:41.0582 28960 BrUsbMdm - ok

13:05:41.0662 28960 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys

13:05:41.0682 28960 BrUsbSer - ok

13:05:41.0772 28960 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\DRIVERS\BthEnum.sys

13:05:41.0792 28960 BthEnum - ok

13:05:41.0892 28960 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys

13:05:41.0922 28960 BTHMODEM - ok

13:05:42.0002 28960 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys

13:05:42.0012 28960 BthPan - ok

13:05:42.0222 28960 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\system32\Drivers\BTHport.sys

13:05:42.0242 28960 BTHPORT - ok

13:05:42.0332 28960 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\system32\Drivers\BTHUSB.sys

13:05:42.0362 28960 BTHUSB - ok

13:05:42.0452 28960 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys

13:05:42.0452 28960 cdfs - ok

13:05:42.0542 28960 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys

13:05:42.0542 28960 cdrom - ok

13:05:42.0622 28960 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys

13:05:42.0652 28960 circlass - ok

13:05:42.0742 28960 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys

13:05:42.0752 28960 CLFS - ok

13:05:42.0892 28960 clwvd (50f92c943f18b070f166d019dfab3d9a) C:\Windows\system32\DRIVERS\clwvd.sys

13:05:42.0892 28960 clwvd - ok

13:05:42.0962 28960 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys

13:05:42.0972 28960 CmBatt - ok

13:05:43.0042 28960 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys

13:05:43.0072 28960 cmdide - ok

13:05:43.0182 28960 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys

13:05:43.0192 28960 CNG - ok

13:05:43.0262 28960 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys

13:05:43.0262 28960 Compbatt - ok

13:05:43.0342 28960 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys

13:05:43.0352 28960 CompositeBus - ok

13:05:43.0432 28960 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys

13:05:43.0452 28960 crcdisk - ok

13:05:43.0562 28960 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys

13:05:43.0562 28960 DfsC - ok

13:05:43.0642 28960 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys

13:05:43.0642 28960 discache - ok

13:05:43.0732 28960 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys

13:05:43.0732 28960 Disk - ok

13:05:43.0822 28960 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys

13:05:43.0852 28960 drmkaud - ok

13:05:43.0952 28960 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys

13:05:43.0962 28960 DXGKrnl - ok

13:05:44.0112 28960 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys

13:05:44.0192 28960 ebdrv - ok

13:05:44.0312 28960 eeCtrl (0c3f9eff8ddd9f9eb56d754b4620155f) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys

13:05:44.0332 28960 eeCtrl - ok

13:05:44.0432 28960 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys

13:05:44.0452 28960 elxstor - ok

13:05:44.0572 28960 EraserUtilRebootDrv (8c0f9b877bc0b7ffd327ef55f9efb642) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys

13:05:44.0612 28960 EraserUtilRebootDrv - ok

13:05:44.0672 28960 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys

13:05:44.0692 28960 ErrDev - ok

13:05:44.0792 28960 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys

13:05:44.0822 28960 exfat - ok

13:05:44.0892 28960 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys

13:05:44.0902 28960 fastfat - ok

13:05:44.0982 28960 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys

13:05:45.0012 28960 fdc - ok

13:05:45.0092 28960 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys

13:05:45.0102 28960 FileInfo - ok

13:05:45.0162 28960 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys

13:05:45.0192 28960 Filetrace - ok

13:05:45.0262 28960 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys

13:05:45.0282 28960 flpydisk - ok

13:05:45.0362 28960 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys

13:05:45.0362 28960 FltMgr - ok

13:05:45.0462 28960 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys

13:05:45.0472 28960 FsDepends - ok

13:05:45.0552 28960 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys

13:05:45.0552 28960 Fs_Rec - ok

13:05:45.0642 28960 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys

13:05:45.0652 28960 fvevol - ok

13:05:45.0722 28960 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys

13:05:45.0752 28960 gagp30kx - ok

13:05:45.0912 28960 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

13:05:45.0912 28960 GEARAspiWDM - ok

13:05:45.0982 28960 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys

13:05:46.0002 28960 hcw85cir - ok

13:05:46.0092 28960 hcwhdpvr (66ff6e6540bc124b023bd4681cd85b8f) C:\Windows\system32\DRIVERS\hcwhdpvr.sys

13:05:46.0112 28960 hcwhdpvr - ok

13:05:46.0202 28960 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys

13:05:46.0232 28960 HdAudAddService - ok

13:05:46.0322 28960 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys

13:05:46.0322 28960 HDAudBus - ok

13:05:46.0392 28960 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys

13:05:46.0412 28960 HidBatt - ok

13:05:46.0492 28960 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys

13:05:46.0522 28960 HidBth - ok

13:05:46.0602 28960 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys

13:05:46.0642 28960 HidIr - ok

13:05:46.0732 28960 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys

13:05:46.0732 28960 HidUsb - ok

13:05:46.0852 28960 hpdskflt (4e0bec0f78096ffd6d3314b497fc49d3) C:\Windows\system32\DRIVERS\hpdskflt.sys

13:05:46.0852 28960 hpdskflt - ok

13:05:46.0932 28960 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys

13:05:46.0952 28960 HpSAMD - ok

13:05:47.0122 28960 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys

13:05:47.0132 28960 HTTP - ok

13:05:47.0203 28960 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys

13:05:47.0203 28960 hwpolicy - ok

13:05:47.0283 28960 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys

13:05:47.0293 28960 i8042prt - ok

13:05:47.0383 28960 iaStor (d469b77687e12fe43e344806740b624d) C:\Windows\system32\DRIVERS\iaStor.sys

13:05:47.0383 28960 iaStor - ok

13:05:47.0503 28960 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys

13:05:47.0543 28960 iaStorV - ok

13:05:47.0933 28960 igfx (6383899c5f964d71b0f96b81fbe59bb8) C:\Windows\system32\DRIVERS\igdkmd64.sys

13:05:48.0173 28960 igfx - ok

13:05:48.0253 28960 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys

13:05:48.0283 28960 iirsp - ok

13:05:48.0383 28960 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys

13:05:48.0393 28960 IntcDAud - ok

13:05:48.0463 28960 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys

13:05:48.0483 28960 intelide - ok

13:05:48.0563 28960 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys

13:05:48.0563 28960 intelppm - ok

13:05:48.0643 28960 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys

13:05:48.0663 28960 IpFilterDriver - ok

13:05:48.0743 28960 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys

13:05:48.0773 28960 IPMIDRV - ok

13:05:48.0843 28960 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys

13:05:48.0883 28960 IPNAT - ok

13:05:48.0973 28960 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys

13:05:49.0013 28960 IRENUM - ok

13:05:49.0093 28960 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys

13:05:49.0123 28960 isapnp - ok

13:05:49.0203 28960 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys

13:05:49.0233 28960 iScsiPrt - ok

13:05:49.0303 28960 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys

13:05:49.0303 28960 kbdclass - ok

13:05:49.0373 28960 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys

13:05:49.0383 28960 kbdhid - ok

13:05:49.0473 28960 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys

13:05:49.0483 28960 KSecDD - ok

13:05:49.0573 28960 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys

13:05:49.0573 28960 KSecPkg - ok

13:05:49.0653 28960 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys

13:05:49.0653 28960 ksthunk - ok

13:05:49.0753 28960 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys

13:05:49.0753 28960 lltdio - ok

13:05:49.0903 28960 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys

13:05:49.0923 28960 LSI_FC - ok

13:05:50.0033 28960 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys

13:05:50.0063 28960 LSI_SAS - ok

13:05:50.0133 28960 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys

13:05:50.0163 28960 LSI_SAS2 - ok

13:05:50.0243 28960 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys

13:05:50.0253 28960 LSI_SCSI - ok

13:05:50.0333 28960 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys

13:05:50.0333 28960 luafv - ok

13:05:50.0423 28960 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys

13:05:50.0453 28960 megasas - ok

13:05:50.0543 28960 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys

13:05:50.0563 28960 MegaSR - ok

13:05:50.0643 28960 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys

13:05:50.0643 28960 MEIx64 - ok

13:05:50.0733 28960 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys

13:05:50.0763 28960 Modem - ok

13:05:50.0843 28960 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys

13:05:50.0843 28960 monitor - ok

13:05:50.0943 28960 MotDev (3cc500c9b0e4d476802d277353cb2c89) C:\Windows\system32\DRIVERS\motodrv.sys

13:05:50.0973 28960 MotDev - ok

13:05:51.0063 28960 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys

13:05:51.0063 28960 mouclass - ok

13:05:51.0133 28960 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys

13:05:51.0133 28960 mouhid - ok

13:05:51.0223 28960 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys

13:05:51.0223 28960 mountmgr - ok

13:05:51.0303 28960 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys

13:05:51.0323 28960 mpio - ok

13:05:51.0383 28960 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys

13:05:51.0383 28960 mpsdrv - ok

13:05:51.0453 28960 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys

13:05:51.0483 28960 MRxDAV - ok

13:05:51.0553 28960 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys

13:05:51.0553 28960 mrxsmb - ok

13:05:51.0623 28960 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys

13:05:51.0633 28960 mrxsmb10 - ok

13:05:51.0703 28960 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys

13:05:51.0703 28960 mrxsmb20 - ok

13:05:51.0773 28960 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys

13:05:51.0773 28960 msahci - ok

13:05:51.0873 28960 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys

13:05:51.0913 28960 msdsm - ok

13:05:51.0983 28960 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys

13:05:51.0983 28960 Msfs - ok

13:05:52.0073 28960 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys

13:05:52.0093 28960 mshidkmdf - ok

13:05:52.0163 28960 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys

13:05:52.0163 28960 msisadrv - ok

13:05:52.0254 28960 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys

13:05:52.0284 28960 MSKSSRV - ok

13:05:52.0364 28960 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys

13:05:52.0394 28960 MSPCLOCK - ok

13:05:52.0454 28960 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys

13:05:52.0474 28960 MSPQM - ok

13:05:52.0554 28960 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys

13:05:52.0564 28960 MsRPC - ok

13:05:52.0624 28960 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys

13:05:52.0624 28960 mssmbios - ok

13:05:52.0709 28960 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys

13:05:52.0731 28960 MSTEE - ok

13:05:52.0798 28960 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys

13:05:52.0823 28960 MTConfig - ok

13:05:52.0883 28960 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys

13:05:52.0883 28960 Mup - ok

13:05:52.0973 28960 mvusbews (86292363b050c1b55fe77d75af3efb71) C:\Windows\system32\Drivers\mvusbews.sys

13:05:53.0013 28960 mvusbews - ok

13:05:53.0103 28960 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys

13:05:53.0113 28960 NativeWifiP - ok

13:05:53.0243 28960 NAVENG (2dbe90210de76be6e1653bb20ec70ec2) C:\PROGRA~3\Symantec\DEFINI~1\VIRUSD~1\20120214.023\ENG64.SYS

13:05:53.0273 28960 NAVENG - ok

13:05:53.0473 28960 NAVEX15 (346da70e203b8e2c850277713de8f71b) C:\PROGRA~3\Symantec\DEFINI~1\VIRUSD~1\20120214.023\EX64.SYS

13:05:53.0503 28960 NAVEX15 - ok

13:05:53.0623 28960 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys

13:05:53.0633 28960 NDIS - ok

13:05:53.0703 28960 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys

13:05:53.0723 28960 NdisCap - ok

13:05:53.0783 28960 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys

13:05:53.0783 28960 NdisTapi - ok

13:05:53.0903 28960 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys

13:05:53.0903 28960 Ndisuio - ok

13:05:53.0933 28960 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys

13:05:53.0933 28960 NdisWan - ok

13:05:54.0003 28960 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys

13:05:54.0003 28960 NDProxy - ok

13:05:54.0073 28960 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys

13:05:54.0073 28960 NetBIOS - ok

13:05:54.0143 28960 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys

13:05:54.0153 28960 NetBT - ok

13:05:54.0423 28960 NETwNs64 (b9c587bdaa61a689883439d5ae6fe7f3) C:\Windows\system32\DRIVERS\NETwNs64.sys

13:05:54.0593 28960 NETwNs64 - ok

13:05:54.0663 28960 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys

13:05:54.0693 28960 nfrd960 - ok

13:05:54.0773 28960 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys

13:05:54.0773 28960 Npfs - ok

13:05:54.0843 28960 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys

13:05:54.0843 28960 nsiproxy - ok

13:05:54.0963 28960 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys

13:05:54.0994 28960 Ntfs - ok

13:05:55.0064 28960 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys

13:05:55.0064 28960 Null - ok

13:05:55.0164 28960 nusb3hub (158ad24745bd85ba9be3c51c38f48c32) C:\Windows\system32\DRIVERS\nusb3hub.sys

13:05:55.0164 28960 nusb3hub - ok

13:05:55.0254 28960 nusb3xhc (d40a13b2c0891e218f9523b376955db6) C:\Windows\system32\DRIVERS\nusb3xhc.sys

13:05:55.0254 28960 nusb3xhc - ok

13:05:55.0344 28960 NVENETFD (a85b4f2ef3a7304a5399ef0526423040) C:\Windows\system32\DRIVERS\nvm62x64.sys

13:05:55.0364 28960 NVENETFD - ok

13:05:55.0444 28960 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys

13:05:55.0474 28960 nvraid - ok

13:05:55.0554 28960 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys

13:05:55.0584 28960 nvstor - ok

13:05:55.0654 28960 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys

13:05:55.0704 28960 nv_agp - ok

13:05:55.0774 28960 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys

13:05:55.0804 28960 ohci1394 - ok

13:05:56.0054 28960 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys

13:05:56.0094 28960 Parport - ok

13:05:56.0204 28960 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys

13:05:56.0214 28960 partmgr - ok

13:05:56.0294 28960 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys

13:05:56.0294 28960 pci - ok

13:05:56.0364 28960 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys

13:05:56.0384 28960 pciide - ok

13:05:56.0454 28960 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys

13:05:56.0474 28960 pcmcia - ok

13:05:56.0554 28960 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys

13:05:56.0554 28960 pcw - ok

13:05:56.0644 28960 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys

13:05:56.0654 28960 PEAUTH - ok

13:05:56.0774 28960 pneteth (8ac5649c9070674d4607301c180ab10b) C:\Windows\system32\DRIVERS\pneteth.sys

13:05:56.0774 28960 pneteth - ok

13:05:56.0884 28960 Point64 (4f0878fd62d5f7444c5f1c4c66d9d293) C:\Windows\system32\DRIVERS\point64.sys

13:05:56.0914 28960 Point64 - ok

13:05:57.0014 28960 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys

13:05:57.0014 28960 PptpMiniport - ok

13:05:57.0074 28960 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys

13:05:57.0104 28960 Processor - ok

13:05:57.0184 28960 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys

13:05:57.0194 28960 Psched - ok

13:05:57.0294 28960 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys

13:05:57.0324 28960 ql2300 - ok

13:05:57.0414 28960 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys

13:05:57.0444 28960 ql40xx - ok

13:05:57.0524 28960 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys

13:05:57.0544 28960 QWAVEdrv - ok

13:05:57.0614 28960 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys

13:05:57.0644 28960 RasAcd - ok

13:05:57.0714 28960 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys

13:05:57.0714 28960 RasAgileVpn - ok

13:05:57.0784 28960 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys

13:05:57.0784 28960 Rasl2tp - ok

13:05:57.0894 28960 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys

13:05:57.0894 28960 RasPppoe - ok

13:05:57.0964 28960 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys

13:05:57.0964 28960 RasSstp - ok

13:05:58.0034 28960 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys

13:05:58.0044 28960 rdbss - ok

13:05:58.0114 28960 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys

13:05:58.0144 28960 rdpbus - ok

13:05:58.0224 28960 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys

13:05:58.0224 28960 RDPCDD - ok

13:05:58.0304 28960 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys

13:05:58.0304 28960 RDPENCDD - ok

13:05:58.0384 28960 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys

13:05:58.0394 28960 RDPREFMP - ok

13:05:58.0464 28960 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys

13:05:58.0494 28960 RDPWD - ok

13:05:58.0584 28960 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys

13:05:58.0594 28960 rdyboost - ok

13:05:58.0694 28960 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys

13:05:58.0714 28960 RFCOMM - ok

13:05:58.0814 28960 RSPCIESTOR (d5c3e1629a3f7f0857d27949252b94ce) C:\Windows\system32\DRIVERS\RtsPStor.sys

13:05:58.0824 28960 RSPCIESTOR - ok

13:05:58.0894 28960 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys

13:05:58.0904 28960 rspndr - ok

13:05:58.0994 28960 RTL8167 (ed5873f7dfb2f96d37f13322211b6bdc) C:\Windows\system32\DRIVERS\Rt64win7.sys

13:05:59.0004 28960 RTL8167 - ok

13:05:59.0074 28960 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys

13:05:59.0104 28960 sbp2port - ok

13:05:59.0174 28960 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys

13:05:59.0204 28960 scfilter - ok

13:05:59.0284 28960 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys

13:05:59.0304 28960 sdbus - ok

13:05:59.0394 28960 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys

13:05:59.0394 28960 secdrv - ok

13:05:59.0484 28960 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys

13:05:59.0504 28960 Serenum - ok

13:05:59.0584 28960 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys

13:05:59.0624 28960 Serial - ok

13:05:59.0694 28960 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys

13:05:59.0724 28960 sermouse - ok

13:05:59.0784 28960 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys

13:05:59.0824 28960 sffdisk - ok

13:05:59.0904 28960 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys

13:05:59.0924 28960 sffp_mmc - ok

13:05:59.0984 28960 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys

13:06:00.0014 28960 sffp_sd - ok

13:06:00.0094 28960 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys

13:06:00.0114 28960 sfloppy - ok

13:06:00.0214 28960 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys

13:06:00.0244 28960 SiSRaid2 - ok

13:06:00.0304 28960 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys

13:06:00.0344 28960 SiSRaid4 - ok

13:06:00.0414 28960 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys

13:06:00.0444 28960 Smb - ok

13:06:00.0565 28960 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys

13:06:00.0565 28960 spldr - ok

13:06:00.0665 28960 SRTSP (b531fc8918dcdaae638511a123c3465e) C:\Windows\system32\Drivers\SRTSP64.SYS

13:06:00.0675 28960 SRTSP - ok

13:06:00.0755 28960 SRTSPL (2bd3a73d0601320b72486fc3ebc2544f) C:\Windows\system32\Drivers\SRTSPL64.SYS

13:06:00.0815 28960 SRTSPL - ok

13:06:00.0885 28960 SRTSPX (529b337c1aeeb289f0b502eb0ee6a8f5) C:\Windows\system32\Drivers\SRTSPX64.SYS

13:06:00.0885 28960 SRTSPX - ok

13:06:00.0965 28960 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys

13:06:00.0965 28960 srv - ok

13:06:01.0045 28960 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys

13:06:01.0055 28960 srv2 - ok

13:06:01.0145 28960 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS

13:06:01.0175 28960 SrvHsfHDA - ok

13:06:01.0285 28960 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS

13:06:01.0315 28960 SrvHsfV92 - ok

13:06:01.0405 28960 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS

13:06:01.0425 28960 SrvHsfWinac - ok

13:06:01.0505 28960 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys

13:06:01.0515 28960 srvnet - ok

13:06:01.0615 28960 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys

13:06:01.0645 28960 stexstor - ok

13:06:01.0755 28960 STHDA (74387b34b43f94e380608888c56a5ccd) C:\Windows\system32\DRIVERS\stwrt64.sys

13:06:01.0765 28960 STHDA - ok

13:06:01.0875 28960 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys

13:06:01.0875 28960 swenum - ok

13:06:01.0985 28960 SymEvent (d1f1a5e72e33d6be449f5f1f4a513dd1) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS

13:06:02.0005 28960 SymEvent - ok

13:06:02.0115 28960 SynTP (33e6a285daa5134d8ea2247914c86c09) C:\Windows\system32\DRIVERS\SynTP.sys

13:06:02.0135 28960 SynTP - ok

13:06:02.0265 28960 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys

13:06:02.0285 28960 Tcpip - ok

13:06:02.0415 28960 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys

13:06:02.0435 28960 TCPIP6 - ok

13:06:02.0505 28960 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys

13:06:02.0515 28960 tcpipreg - ok

13:06:02.0575 28960 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys

13:06:02.0585 28960 TDPIPE - ok

13:06:02.0655 28960 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys

13:06:02.0685 28960 TDTCP - ok

13:06:02.0785 28960 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys

13:06:02.0785 28960 tdx - ok

13:06:02.0875 28960 Teefer2 (ef6ccf8b483201f7196d83fc136fa43a) C:\Windows\system32\DRIVERS\teefer2.sys

13:06:02.0885 28960 Teefer2 - ok

13:06:02.0955 28960 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys

13:06:02.0965 28960 TermDD - ok

13:06:03.0085 28960 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys

13:06:03.0115 28960 tssecsrv - ok

13:06:03.0195 28960 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys

13:06:03.0215 28960 TsUsbFlt - ok

13:06:03.0285 28960 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys

13:06:03.0305 28960 TsUsbGD - ok

13:06:03.0385 28960 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys

13:06:03.0385 28960 tunnel - ok

13:06:03.0455 28960 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys

13:06:03.0485 28960 uagp35 - ok

13:06:03.0555 28960 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys

13:06:03.0585 28960 udfs - ok

13:06:03.0675 28960 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys

13:06:03.0695 28960 uliagpkx - ok

13:06:03.0775 28960 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys

13:06:03.0775 28960 umbus - ok

13:06:03.0865 28960 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys

13:06:03.0895 28960 UmPass - ok

13:06:03.0975 28960 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys

13:06:04.0015 28960 USBAAPL64 - ok

13:06:04.0095 28960 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys

13:06:04.0095 28960 usbccgp - ok

13:06:04.0165 28960 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys

13:06:04.0205 28960 usbcir - ok

13:06:04.0275 28960 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys

13:06:04.0275 28960 usbehci - ok

13:06:04.0355 28960 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys

13:06:04.0365 28960 usbhub - ok

13:06:04.0445 28960 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys

13:06:04.0475 28960 usbohci - ok

13:06:04.0555 28960 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys

13:06:04.0585 28960 usbprint - ok

13:06:04.0665 28960 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS

13:06:04.0695 28960 USBSTOR - ok

13:06:04.0765 28960 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys

13:06:04.0785 28960 usbuhci - ok

13:06:04.0875 28960 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys

13:06:04.0875 28960 usbvideo - ok

13:06:04.0955 28960 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys

13:06:04.0955 28960 vdrvroot - ok

13:06:05.0035 28960 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys

13:06:05.0065 28960 vga - ok

13:06:05.0135 28960 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys

13:06:05.0145 28960 VgaSave - ok

13:06:05.0205 28960 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys

13:06:05.0235 28960 vhdmp - ok

13:06:05.0305 28960 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys

13:06:05.0315 28960 viaide - ok

13:06:05.0395 28960 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys

13:06:05.0395 28960 volmgr - ok

13:06:05.0465 28960 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys

13:06:05.0475 28960 volmgrx - ok

13:06:05.0545 28960 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys

13:06:05.0555 28960 volsnap - ok

13:06:05.0635 28960 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys

13:06:05.0675 28960 vsmraid - ok

13:06:05.0745 28960 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys

13:06:05.0745 28960 vwifibus - ok

13:06:05.0835 28960 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys

13:06:05.0835 28960 vwififlt - ok

13:06:05.0995 28960 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys

13:06:06.0005 28960 vwifimp - ok

13:06:06.0055 28960 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys

13:06:06.0085 28960 WacomPen - ok

13:06:06.0165 28960 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

13:06:06.0175 28960 WANARP - ok

13:06:06.0195 28960 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

13:06:06.0195 28960 Wanarpv6 - ok

13:06:06.0275 28960 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys

13:06:06.0305 28960 Wd - ok

13:06:06.0395 28960 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys

13:06:06.0405 28960 Wdf01000 - ok

13:06:06.0495 28960 wdkmd (5e1640435dd54d00451156ca5340b109) C:\Windows\system32\DRIVERS\WDKMD.sys

13:06:06.0495 28960 wdkmd - ok

13:06:06.0585 28960 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys

13:06:06.0585 28960 WfpLwf - ok

13:06:06.0675 28960 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys

13:06:06.0695 28960 WIMMount - ok

13:06:06.0785 28960 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUSB.sys

13:06:06.0785 28960 WinUsb - ok

13:06:06.0895 28960 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys

13:06:06.0905 28960 WmiAcpi - ok

13:06:07.0005 28960 WPS (37725ebe2f8972809903a10599c365a2) C:\Windows\system32\drivers\wpsdrvnt.sys

13:06:07.0025 28960 WPS - ok

13:06:07.0105 28960 WpsHelper (d9b5a13804b7d97770c42da484a9d86e) C:\Windows\system32\drivers\WpsHelper.sys

13:06:07.0125 28960 WpsHelper - ok

13:06:07.0195 28960 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys

13:06:07.0225 28960 ws2ifsl - ok

13:06:07.0295 28960 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys

13:06:07.0295 28960 WudfPf - ok

13:06:07.0375 28960 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys

13:06:07.0375 28960 WUDFRd - ok

13:06:07.0415 28960 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0

13:06:07.0476 28960 \Device\Harddisk0\DR0 - ok

13:06:07.0476 28960 Boot (0x1200) (14f04746d1f758d8237d1f9818386785) \Device\Harddisk0\DR0\Partition0

13:06:07.0486 28960 \Device\Harddisk0\DR0\Partition0 - ok

13:06:07.0516 28960 Boot (0x1200) (aa6ee48564e8cc00656cf8b6db4dc032) \Device\Harddisk0\DR0\Partition1

13:06:07.0516 28960 \Device\Harddisk0\DR0\Partition1 - ok

13:06:07.0546 28960 Boot (0x1200) (66085e8b8c3411cc251abdb90bf518ee) \Device\Harddisk0\DR0\Partition2

13:06:07.0556 28960 \Device\Harddisk0\DR0\Partition2 - ok

13:06:07.0576 28960 Boot (0x1200) (9c31694b841ed60760bf68f5ed32776d) \Device\Harddisk0\DR0\Partition3

13:06:07.0576 28960 \Device\Harddisk0\DR0\Partition3 - ok

13:06:07.0576 28960 ============================================================

13:06:07.0576 28960 Scan finished

13:06:07.0576 28960 ============================================================

13:06:07.0596 28884 Detected object count: 0

13:06:07.0596 28884 Actual detected object count: 0

13:07:16.0772 29392 ============================================================

13:07:16.0772 29392 Scan started

13:07:16.0772 29392 Mode: Manual;

13:07:16.0772 29392 ============================================================

13:07:17.0713 29392 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys

13:07:17.0713 29392 1394ohci - ok

13:07:17.0763 29392 Accelerometer (5c368f4b04ed2a923e6afca2d37baff5) C:\Windows\system32\DRIVERS\Accelerometer.sys

13:07:17.0763 29392 Accelerometer - ok

13:07:17.0883 29392 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys

13:07:17.0883 29392 ACPI - ok

13:07:17.0993 29392 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys

13:07:17.0993 29392 AcpiPmi - ok

13:07:18.0053 29392 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys

13:07:18.0063 29392 adp94xx - ok

13:07:18.0233 29392 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys

13:07:18.0233 29392 adpahci - ok

13:07:18.0403 29392 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys

13:07:18.0403 29392 adpu320 - ok

13:07:18.0493 29392 Afc - ok

13:07:18.0643 29392 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys

13:07:18.0648 29392 AFD - ok

13:07:18.0711 29392 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys

13:07:18.0713 29392 agp440 - ok

13:07:18.0778 29392 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys

13:07:18.0778 29392 aliide - ok

13:07:18.0846 29392 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys

13:07:18.0846 29392 amdide - ok

13:07:18.0908 29392 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys

13:07:18.0908 29392 AmdK8 - ok

13:07:18.0968 29392 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys

13:07:18.0978 29392 AmdPPM - ok

13:07:19.0038 29392 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys

13:07:19.0038 29392 amdsata - ok

13:07:19.0098 29392 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys

13:07:19.0098 29392 amdsbs - ok

13:07:19.0178 29392 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys

13:07:19.0178 29392 amdxata - ok

13:07:19.0258 29392 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys

13:07:19.0258 29392 AppID - ok

13:07:19.0328 29392 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys

13:07:19.0328 29392 arc - ok

13:07:19.0388 29392 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys

13:07:19.0388 29392 arcsas - ok

13:07:19.0458 29392 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys

13:07:19.0458 29392 AsyncMac - ok

13:07:19.0528 29392 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys

13:07:19.0528 29392 atapi - ok

13:07:19.0608 29392 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys

13:07:19.0608 29392 b06bdrv - ok

13:07:19.0678 29392 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys

13:07:19.0678 29392 b57nd60a - ok

13:07:19.0778 29392 BCM43XX (9e84a931dbee0292e38ed672f6293a99) C:\Windows\system32\DRIVERS\bcmwl664.sys

13:07:19.0788 29392 BCM43XX - ok

13:07:19.0928 29392 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys

13:07:19.0928 29392 Beep - ok

13:07:20.0108 29392 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys

13:07:20.0108 29392 blbdrive - ok

13:07:20.0248 29392 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys

13:07:20.0248 29392 bowser - ok

13:07:20.0318 29392 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys

13:07:20.0318 29392 BrFiltLo - ok

13:07:20.0378 29392 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys

13:07:20.0378 29392 BrFiltUp - ok

13:07:20.0453 29392 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys

13:07:20.0456 29392 Brserid - ok

13:07:20.0518 29392 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys

13:07:20.0518 29392 BrSerWdm - ok

13:07:20.0578 29392 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys

13:07:20.0578 29392 BrUsbMdm - ok

13:07:20.0633 29392 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys

13:07:20.0633 29392 BrUsbSer - ok

13:07:20.0711 29392 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\DRIVERS\BthEnum.sys

13:07:20.0711 29392 BthEnum - ok

13:07:20.0773 29392 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys

13:07:20.0776 29392 BTHMODEM - ok

13:07:20.0853 29392 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys

13:07:20.0856 29392 BthPan - ok

13:07:20.0936 29392 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\system32\Drivers\BTHport.sys

13:07:20.0936 29392 BTHPORT - ok

13:07:21.0026 29392 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\system32\Drivers\BTHUSB.sys

13:07:21.0026 29392 BTHUSB - ok

13:07:21.0096 29392 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys

13:07:21.0096 29392 cdfs - ok

13:07:21.0166 29392 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys

13:07:21.0166 29392 cdrom - ok

13:07:21.0226 29392 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys

13:07:21.0226 29392 circlass - ok

13:07:21.0296 29392 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys

13:07:21.0296 29392 CLFS - ok

13:07:21.0376 29392 clwvd (50f92c943f18b070f166d019dfab3d9a) C:\Windows\system32\DRIVERS\clwvd.sys

13:07:21.0376 29392 clwvd - ok

13:07:21.0446 29392 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys

13:07:21.0446 29392 CmBatt - ok

13:07:21.0516 29392 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys

13:07:21.0516 29392 cmdide - ok

13:07:21.0616 29392 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys

13:07:21.0626 29392 CNG - ok

13:07:21.0691 29392 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys

13:07:21.0691 29392 Compbatt - ok

13:07:21.0751 29392 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys

13:07:21.0751 29392 CompositeBus - ok

13:07:21.0818 29392 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys

13:07:21.0821 29392 crcdisk - ok

13:07:21.0941 29392 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys

13:07:21.0941 29392 DfsC - ok

13:07:21.0961 29392 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys

13:07:21.0971 29392 discache - ok

13:07:22.0011 29392 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys

13:07:22.0011 29392 Disk - ok

13:07:22.0131 29392 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys

13:07:22.0131 29392 drmkaud - ok

13:07:22.0161 29392 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys

13:07:22.0171 29392 DXGKrnl - ok

13:07:22.0331 29392 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys

13:07:22.0351 29392 ebdrv - ok

13:07:22.0431 29392 eeCtrl (0c3f9eff8ddd9f9eb56d754b4620155f) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys

13:07:22.0431 29392 eeCtrl - ok

13:07:22.0511 29392 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys

13:07:22.0521 29392 elxstor - ok

13:07:22.0621 29392 EraserUtilRebootDrv (8c0f9b877bc0b7ffd327ef55f9efb642) C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys

13:07:22.0621 29392 EraserUtilRebootDrv - ok

13:07:22.0691 29392 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys

13:07:22.0691 29392 ErrDev - ok

13:07:22.0771 29392 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys

13:07:22.0771 29392 exfat - ok

13:07:22.0841 29392 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys

13:07:22.0841 29392 fastfat - ok

13:07:22.0901 29392 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys

13:07:22.0901 29392 fdc - ok

13:07:22.0971 29392 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys

13:07:22.0971 29392 FileInfo - ok

13:07:23.0041 29392 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys

13:07:23.0041 29392 Filetrace - ok

13:07:23.0111 29392 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys

13:07:23.0121 29392 flpydisk - ok

13:07:23.0191 29392 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys

13:07:23.0191 29392 FltMgr - ok

13:07:23.0268 29392 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys

13:07:23.0268 29392 FsDepends - ok

13:07:23.0333 29392 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys

13:07:23.0336 29392 Fs_Rec - ok

13:07:23.0398 29392 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys

13:07:23.0398 29392 fvevol - ok

13:07:23.0478 29392 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys

13:07:23.0478 29392 gagp30kx - ok

13:07:23.0618 29392 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

13:07:23.0618 29392 GEARAspiWDM - ok

13:07:23.0758 29392 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys

13:07:23.0758 29392 hcw85cir - ok

13:07:23.0828 29392 hcwhdpvr (66ff6e6540bc124b023bd4681cd85b8f) C:\Windows\system32\DRIVERS\hcwhdpvr.sys

13:07:23.0828 29392 hcwhdpvr - ok

13:07:23.0958 29392 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys

13:07:23.0958 29392 HdAudAddService - ok

13:07:24.0078 29392 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys

13:07:24.0078 29392 HDAudBus - ok

13:07:24.0138 29392 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys

13:07:24.0138 29392 HidBatt - ok

13:07:24.0168 29392 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys

13:07:24.0168 29392 HidBth - ok

13:07:24.0321 29392 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys

13:07:24.0321 29392 HidIr - ok

13:07:24.0388 29392 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys

13:07:24.0388 29392 HidUsb - ok

13:07:24.0478 29392 hpdskflt (4e0bec0f78096ffd6d3314b497fc49d3) C:\Windows\system32\DRIVERS\hpdskflt.sys

13:07:24.0478 29392 hpdskflt - ok

13:07:24.0541 29392 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys

13:07:24.0543 29392 HpSAMD - ok

13:07:24.0628 29392 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys

13:07:24.0633 29392 HTTP - ok

13:07:24.0696 29392 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys

13:07:24.0696 29392 hwpolicy - ok

13:07:24.0766 29392 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys

13:07:24.0768 29392 i8042prt - ok

13:07:24.0838 29392 iaStor (d469b77687e12fe43e344806740b624d) C:\Windows\system32\DRIVERS\iaStor.sys

13:07:24.0841 29392 iaStor - ok

13:07:24.0908 29392 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys

13:07:24.0918 29392 iaStorV - ok

13:07:25.0208 29392 igfx (6383899c5f964d71b0f96b81fbe59bb8) C:\Windows\system32\DRIVERS\igdkmd64.sys

13:07:25.0288 29392 igfx - ok

13:07:25.0368 29392 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys

13:07:25.0368 29392 iirsp - ok

13:07:25.0448 29392 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys

13:07:25.0448 29392 IntcDAud - ok

13:07:25.0518 29392 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys

13:07:25.0518 29392 intelide - ok

13:07:25.0588 29392 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys

13:07:25.0588 29392 intelppm - ok

13:07:25.0648 29392 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys

13:07:25.0648 29392 IpFilterDriver - ok

13:07:25.0718 29392 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys

13:07:25.0718 29392 IPMIDRV - ok

13:07:25.0798 29392 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys

13:07:25.0798 29392 IPNAT - ok

13:07:25.0938 29392 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys

13:07:25.0938 29392 IRENUM - ok

13:07:26.0041 29392 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys

13:07:26.0041 29392 isapnp - ok

13:07:26.0111 29392 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys

13:07:26.0121 29392 iScsiPrt - ok

13:07:26.0181 29392 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys

13:07:26.0181 29392 kbdclass - ok

13:07:26.0241 29392 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys

13:07:26.0241 29392 kbdhid - ok

13:07:26.0331 29392 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys

13:07:26.0331 29392 KSecDD - ok

13:07:26.0431 29392 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys

13:07:26.0431 29392 KSecPkg - ok

13:07:26.0491 29392 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys

13:07:26.0491 29392 ksthunk - ok

13:07:26.0571 29392 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys

13:07:26.0571 29392 lltdio - ok

13:07:26.0641 29392 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys

13:07:26.0641 29392 LSI_FC - ok

13:07:26.0701 29392 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys

13:07:26.0711 29392 LSI_SAS - ok

13:07:26.0771 29392 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys

13:07:26.0781 29392 LSI_SAS2 - ok

13:07:26.0861 29392 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys

13:07:26.0861 29392 LSI_SCSI - ok

13:07:26.0951 29392 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys

13:07:26.0951 29392 luafv - ok

13:07:27.0021 29392 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys

13:07:27.0021 29392 megasas - ok

13:07:27.0101 29392 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys

13:07:27.0103 29392 MegaSR - ok

13:07:27.0171 29392 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\DRIVERS\HECIx64.sys

13:07:27.0171 29392 MEIx64 - ok

13:07:27.0266 29392 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys

13:07:27.0276 29392 Modem - ok

13:07:27.0356 29392 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys

13:07:27.0356 29392 monitor - ok

13:07:27.0446 29392 MotDev (3cc500c9b0e4d476802d277353cb2c89) C:\Windows\system32\DRIVERS\motodrv.sys

13:07:27.0446 29392 MotDev - ok

13:07:27.0516 29392 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys

13:07:27.0516 29392 mouclass - ok

13:07:27.0576 29392 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys

13:07:27.0576 29392 mouhid - ok

13:07:27.0646 29392 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys

13:07:27.0646 29392 mountmgr - ok

13:07:27.0716 29392 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys

13:07:27.0726 29392 mpio - ok

13:07:27.0796 29392 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys

13:07:27.0796 29392 mpsdrv - ok

13:07:27.0886 29392 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys

13:07:27.0886 29392 MRxDAV - ok

13:07:27.0976 29392 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys

13:07:27.0976 29392 mrxsmb - ok

13:07:28.0046 29392 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys

13:07:28.0046 29392 mrxsmb10 - ok

13:07:28.0116 29392 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys

13:07:28.0126 29392 mrxsmb20 - ok

13:07:28.0196 29392 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys

13:07:28.0196 29392 msahci - ok

13:07:28.0266 29392 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys

13:07:28.0266 29392 msdsm - ok

13:07:28.0346 29392 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys

13:07:28.0346 29392 Msfs - ok

13:07:28.0406 29392 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys

13:07:28.0406 29392 mshidkmdf - ok

13:07:28.0466 29392 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys

13:07:28.0466 29392 msisadrv - ok

13:07:28.0596 29392 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys

13:07:28.0606 29392 MSKSSRV - ok

13:07:28.0636 29392 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys

13:07:28.0636 29392 MSPCLOCK - ok

13:07:28.0666 29392 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys

13:07:28.0666 29392 MSPQM - ok

13:07:28.0766 29392 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys

13:07:28.0766 29392 MsRPC - ok

13:07:28.0836 29392 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys

13:07:28.0836 29392 mssmbios - ok

13:07:28.0906 29392 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys

13:07:28.0906 29392 MSTEE - ok

13:07:28.0926 29392 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys

13:07:28.0926 29392 MTConfig - ok

13:07:28.0996 29392 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys

13:07:28.0996 29392 Mup - ok

13:07:29.0066 29392 mvusbews (86292363b050c1b55fe77d75af3efb71) C:\Windows\system32\Drivers\mvusbews.sys

13:07:29.0066 29392 mvusbews - ok

13:07:29.0146 29392 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys

13:07:29.0146 29392 NativeWifiP - ok

13:07:29.0256 29392 NAVENG (2dbe90210de76be6e1653bb20ec70ec2) C:\PROGRA~3\Symantec\DEFINI~1\VIRUSD~1\20120214.023\ENG64.SYS

13:07:29.0256 29392 NAVENG - ok

13:07:29.0438 29392 NAVEX15 (346da70e203b8e2c850277713de8f71b) C:\PROGRA~3\Symantec\DEFINI~1\VIRUSD~1\20120214.023\EX64.SYS

13:07:29.0453 29392 NAVEX15 - ok

13:07:29.0553 29392 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys

13:07:29.0561 29392 NDIS - ok

13:07:29.0631 29392 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys

13:07:29.0631 29392 NdisCap - ok

13:07:29.0696 29392 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys

13:07:29.0696 29392 NdisTapi - ok

13:07:29.0763 29392 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys

13:07:29.0763 29392 Ndisuio - ok

13:07:29.0838 29392 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys

13:07:29.0838 29392 NdisWan - ok

13:07:29.0868 29392 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys

13:07:29.0868 29392 NDProxy - ok

13:07:30.0018 29392 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys

13:07:30.0018 29392 NetBIOS - ok

13:07:30.0088 29392 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys

13:07:30.0088 29392 NetBT - ok

13:07:30.0298 29392 NETwNs64 (b9c587bdaa61a689883439d5ae6fe7f3) C:\Windows\system32\DRIVERS\NETwNs64.sys

13:07:30.0348 29392 NETwNs64 - ok

13:07:30.0418 29392 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys

13:07:30.0418 29392 nfrd960 - ok

13:07:30.0498 29392 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys

13:07:30.0498 29392 Npfs - ok

13:07:30.0568 29392 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys

13:07:30.0568 29392 nsiproxy - ok

13:07:30.0678 29392 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys

13:07:30.0688 29392 Ntfs - ok

13:07:30.0748 29392 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys

13:07:30.0748 29392 Null - ok

13:07:30.0818 29392 nusb3hub (158ad24745bd85ba9be3c51c38f48c32) C:\Windows\system32\DRIVERS\nusb3hub.sys

13:07:30.0818 29392 nusb3hub - ok

13:07:30.0878 29392 nusb3xhc (d40a13b2c0891e218f9523b376955db6) C:\Windows\system32\DRIVERS\nusb3xhc.sys

13:07:30.0888 29392 nusb3xhc - ok

13:07:30.0958 29392 NVENETFD (a85b4f2ef3a7304a5399ef0526423040) C:\Windows\system32\DRIVERS\nvm62x64.sys

13:07:30.0958 29392 NVENETFD - ok

13:07:31.0038 29392 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys

13:07:31.0038 29392 nvraid - ok

13:07:31.0108 29392 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys

13:07:31.0108 29392 nvstor - ok

13:07:31.0178 29392 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys

13:07:31.0178 29392 nv_agp - ok

13:07:31.0238 29392 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys

13:07:31.0248 29392 ohci1394 - ok

13:07:31.0308 29392 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys

13:07:31.0318 29392 Parport - ok

13:07:31.0388 29392 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys

13:07:31.0388 29392 partmgr - ok

13:07:31.0448 29392 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys

13:07:31.0448 29392 pci - ok

13:07:31.0518 29392 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys

13:07:31.0518 29392 pciide - ok

13:07:31.0588 29392 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys

13:07:31.0588 29392 pcmcia - ok

13:07:31.0659 29392 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys

13:07:31.0659 29392 pcw - ok

13:07:31.0739 29392 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys

13:07:31.0739 29392 PEAUTH - ok

13:07:31.0859 29392 pneteth (8ac5649c9070674d4607301c180ab10b) C:\Windows\system32\DRIVERS\pneteth.sys

13:07:31.0859 29392 pneteth - ok

13:07:31.0939 29392 Point64 (4f0878fd62d5f7444c5f1c4c66d9d293) C:\Windows\system32\DRIVERS\point64.sys

13:07:31.0949 29392 Point64 - ok

13:07:32.0039 29392 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys

13:07:32.0039 29392 PptpMiniport - ok

13:07:32.0099 29392 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys

13:07:32.0099 29392 Processor - ok

13:07:32.0179 29392 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys

13:07:32.0179 29392 Psched - ok

13:07:32.0279 29392 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys

13:07:32.0289 29392 ql2300 - ok

13:07:32.0349 29392 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys

13:07:32.0359 29392 ql40xx - ok

13:07:32.0439 29392 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys

13:07:32.0439 29392 QWAVEdrv - ok

13:07:32.0475 29392 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys

13:07:32.0475 29392 RasAcd - ok

13:07:32.0542 29392 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys

13:07:32.0542 29392 RasAgileVpn - ok

13:07:32.0590 29392 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys

13:07:32.0600 29392 Rasl2tp - ok

13:07:32.0630 29392 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys

13:07:32.0630 29392 RasPppoe - ok

13:07:32.0680 29392 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys

13:07:32.0680 29392 RasSstp - ok

13:07:32.0710 29392 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys

13:07:32.0710 29392 rdbss - ok

13:07:32.0780 29392 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys

13:07:32.0780 29392 rdpbus - ok

13:07:32.0840 29392 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys

13:07:32.0840 29392 RDPCDD - ok

13:07:32.0900 29392 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys

13:07:32.0900 29392 RDPENCDD - ok

13:07:32.0980 29392 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys

13:07:32.0980 29392 RDPREFMP - ok

13:07:33.0040 29392 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys

13:07:33.0040 29392 RDPWD - ok

13:07:33.0100 29392 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys

13:07:33.0110 29392 rdyboost - ok

13:07:33.0190 29392 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys

13:07:33.0190 29392 RFCOMM - ok

13:07:33.0270 29392 RSPCIESTOR (d5c3e1629a3f7f0857d27949252b94ce) C:\Windows\system32\DRIVERS\RtsPStor.sys

13:07:33.0270 29392 RSPCIESTOR - ok

13:07:33.0340 29392 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys

13:07:33.0340 29392 rspndr - ok

13:07:33.0430 29392 RTL8167 (ed5873f7dfb2f96d37f13322211b6bdc) C:\Windows\system32\DRIVERS\Rt64win7.sys

13:07:33.0440 29392 RTL8167 - ok

13:07:33.0510 29392 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys

13:07:33.0510 29392 sbp2port - ok

13:07:33.0610 29392 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys

13:07:33.0610 29392 scfilter - ok

13:07:33.0670 29392 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys

13:07:33.0670 29392 sdbus - ok

13:07:33.0730 29392 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys

13:07:33.0740 29392 secdrv - ok

13:07:33.0810 29392 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys

13:07:33.0810 29392 Serenum - ok

13:07:33.0873 29392 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys

13:07:33.0875 29392 Serial - ok

13:07:33.0978 29392 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys

13:07:33.0978 29392 sermouse - ok

13:07:34.0058 29392 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys

13:07:34.0060 29392 sffdisk - ok

13:07:34.0118 29392 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys

13:07:34.0118 29392 sffp_mmc - ok

13:07:34.0193 29392 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys

13:07:34.0193 29392 sffp_sd - ok

13:07:34.0270 29392 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys

13:07:34.0270 29392 sfloppy - ok

13:07:34.0350 29392 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys

13:07:34.0350 29392 SiSRaid2 - ok

13:07:34.0430 29392 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys

13:07:34.0430 29392 SiSRaid4 - ok

13:07:34.0490 29392 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys

13:07:34.0490 29392 Smb - ok

13:07:34.0580 29392 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys

13:07:34.0580 29392 spldr - ok

13:07:34.0650 29392 SRTSP (b531fc8918dcdaae638511a123c3465e) C:\Windows\system32\Drivers\SRTSP64.SYS

13:07:34.0660 29392 SRTSP - ok

13:07:34.0751 29392 SRTSPL (2bd3a73d0601320b72486fc3ebc2544f) C:\Windows\system32\Drivers\SRTSPL64.SYS

13:07:34.0751 29392 SRTSPL - ok

13:07:34.0841 29392 SRTSPX (529b337c1aeeb289f0b502eb0ee6a8f5) C:\Windows\system32\Drivers\SRTSPX64.SYS

13:07:34.0841 29392 SRTSPX - ok

13:07:34.0921 29392 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys

13:07:34.0931 29392 srv - ok

13:07:35.0001 29392 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys

13:07:35.0001 29392 srv2 - ok

13:07:35.0081 29392 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS

13:07:35.0081 29392 SrvHsfHDA - ok

13:07:35.0181 29392 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS

13:07:35.0191 29392 SrvHsfV92 - ok

13:07:35.0284 29392 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS

13:07:35.0289 29392 SrvHsfWinac - ok

13:07:35.0366 29392 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys

13:07:35.0369 29392 srvnet - ok

13:07:35.0441 29392 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys

13:07:35.0441 29392 stexstor - ok

13:07:35.0531 29392 STHDA (74387b34b43f94e380608888c56a5ccd) C:\Windows\system32\DRIVERS\stwrt64.sys

13:07:35.0534 29392 STHDA - ok

13:07:35.0599 29392 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys

13:07:35.0599 29392 swenum - ok

13:07:35.0671 29392 SymEvent (d1f1a5e72e33d6be449f5f1f4a513dd1) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS

13:07:35.0671 29392 SymEvent - ok

13:07:35.0762 29392 SynTP (33e6a285daa5134d8ea2247914c86c09) C:\Windows\system32\DRIVERS\SynTP.sys

13:07:35.0772 29392 SynTP - ok

13:07:35.0972 29392 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys

13:07:35.0992 29392 Tcpip - ok

13:07:36.0132 29392 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys

13:07:36.0142 29392 TCPIP6 - ok

13:07:36.0252 29392 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys

13:07:36.0252 29392 tcpipreg - ok

13:07:36.0402 29392 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys

13:07:36.0402 29392 TDPIPE - ok

13:07:36.0462 29392 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys

13:07:36.0462 29392 TDTCP - ok

13:07:36.0492 29392 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys

13:07:36.0492 29392 tdx - ok

13:07:36.0672 29392 Teefer2 (ef6ccf8b483201f7196d83fc136fa43a) C:\Windows\system32\DRIVERS\teefer2.sys

13:07:36.0672 29392 Teefer2 - ok

13:07:36.0762 29392 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys

13:07:36.0762 29392 TermDD - ok

13:07:36.0832 29392 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys

13:07:36.0832 29392 tssecsrv - ok

13:07:36.0912 29392 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys

13:07:36.0912 29392 TsUsbFlt - ok

13:07:36.0982 29392 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys

13:07:36.0982 29392 TsUsbGD - ok

13:07:37.0052 29392 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys

13:07:37.0052 29392 tunnel - ok

13:07:37.0122 29392 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys

13:07:37.0122 29392 uagp35 - ok

13:07:37.0182 29392 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys

13:07:37.0192 29392 udfs - ok

13:07:37.0262 29392 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys

13:07:37.0262 29392 uliagpkx - ok

13:07:37.0332 29392 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys

13:07:37.0332 29392 umbus - ok

13:07:37.0392 29392 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys

13:07:37.0392 29392 UmPass - ok

13:07:37.0482 29392 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys

13:07:37.0482 29392 USBAAPL64 - ok

13:07:37.0552 29392 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys

13:07:37.0562 29392 usbccgp - ok

13:07:37.0652 29392 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys

13:07:37.0652 29392 usbcir - ok

13:07:37.0722 29392 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys

13:07:37.0722 29392 usbehci - ok

13:07:37.0792 29392 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys

13:07:37.0792 29392 usbhub - ok

13:07:37.0892 29392 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys

13:07:37.0892 29392 usbohci - ok

13:07:37.0925 29392 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys

13:07:37.0925 29392 usbprint - ok

13:07:37.0997 29392 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS

13:07:37.0997 29392 USBSTOR - ok

13:07:38.0065 29392 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys

13:07:38.0065 29392 usbuhci - ok

13:07:38.0142 29392 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys

13:07:38.0142 29392 usbvideo - ok

13:07:38.0210 29392 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys

13:07:38.0212 29392 vdrvroot - ok

13:07:38.0382 29392 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys

13:07:38.0382 29392 vga - ok

13:07:38.0452 29392 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys

13:07:38.0452 29392 VgaSave - ok

13:07:38.0512 29392 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys

13:07:38.0522 29392 vhdmp - ok

13:07:38.0652 29392 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys

13:07:38.0652 29392 viaide - ok

13:07:38.0772 29392 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys

13:07:38.0772 29392 volmgr - ok

13:07:38.0922 29392 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys

13:07:38.0922 29392 volmgrx - ok

13:07:39.0022 29392 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys

13:07:39.0022 29392 volsnap - ok

13:07:39.0102 29392 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys

13:07:39.0102 29392 vsmraid - ok

13:07:39.0162 29392 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys

13:07:39.0162 29392 vwifibus - ok

13:07:39.0232 29392 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys

13:07:39.0232 29392 vwififlt - ok

13:07:39.0302 29392 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys

13:07:39.0302 29392 vwifimp - ok

13:07:39.0372 29392 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys

13:07:39.0372 29392 WacomPen - ok

13:07:39.0442 29392 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

13:07:39.0442 29392 WANARP - ok

13:07:39.0452 29392 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys

13:07:39.0452 29392 Wanarpv6 - ok

13:07:39.0522 29392 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys

13:07:39.0522 29392 Wd - ok

13:07:39.0602 29392 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys

13:07:39.0602 29392 Wdf01000 - ok

13:07:39.0672 29392 wdkmd (5e1640435dd54d00451156ca5340b109) C:\Windows\system32\DRIVERS\WDKMD.sys

13:07:39.0672 29392 wdkmd - ok

13:07:39.0742 29392 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys

13:07:39.0742 29392 WfpLwf - ok

13:07:39.0802 29392 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys

13:07:39.0802 29392 WIMMount - ok

13:07:39.0932 29392 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUSB.sys

13:07:39.0932 29392 WinUsb - ok

13:07:40.0012 29392 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys

13:07:40.0012 29392 WmiAcpi - ok

13:07:40.0092 29392 WPS (37725ebe2f8972809903a10599c365a2) C:\Windows\system32\drivers\wpsdrvnt.sys

13:07:40.0092 29392 WPS - ok

13:07:40.0162 29392 WpsHelper (d9b5a13804b7d97770c42da484a9d86e) C:\Windows\system32\drivers\WpsHelper.sys

13:07:40.0172 29392 WpsHelper - ok

13:07:40.0222 29392 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys

13:07:40.0232 29392 ws2ifsl - ok

13:07:40.0312 29392 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys

13:07:40.0312 29392 WudfPf - ok

13:07:40.0387 29392 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys

13:07:40.0390 29392 WUDFRd - ok

13:07:40.0442 29392 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0

13:07:40.0495 29392 \Device\Harddisk0\DR0 - ok

13:07:40.0497 29392 Boot (0x1200) (14f04746d1f758d8237d1f9818386785) \Device\Harddisk0\DR0\Partition0

13:07:40.0497 29392 \Device\Harddisk0\DR0\Partition0 - ok

13:07:40.0530 29392 Boot (0x1200) (aa6ee48564e8cc00656cf8b6db4dc032) \Device\Harddisk0\DR0\Partition1

13:07:40.0532 29392 \Device\Harddisk0\DR0\Partition1 - ok

13:07:40.0565 29392 Boot (0x1200) (66085e8b8c3411cc251abdb90bf518ee) \Device\Harddisk0\DR0\Partition2

13:07:40.0565 29392 \Device\Harddisk0\DR0\Partition2 - ok

13:07:40.0577 29392 Boot (0x1200) (9c31694b841ed60760bf68f5ed32776d) \Device\Harddisk0\DR0\Partition3

13:07:40.0577 29392 \Device\Harddisk0\DR0\Partition3 - ok

13:07:40.0580 29392 ============================================================

13:07:40.0580 29392 Scan finished

13:07:40.0580 29392 ============================================================

13:07:40.0590 28908 Detected object count: 0

13:07:40.0590 28908 Actual detected object count: 0

Link to post
Share on other sites

Hi again,

COMBOFIX

---------------

Please download ComboFix from one of these locations:


Bleepingcomputer
ForoSpyware

  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. (Click on this link to see a list of programs that should be disabled. The list is not all inclusive.)
  • Double click on Combofix.exe and follow the prompts.
  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, or if you are running Vista, ComboFix will continue it's malware removal procedures.

Query_RC.gif

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

RC_successful.gif

Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\Combofix.txt in your next reply.

Link to post
Share on other sites

I was unable to prevent IE windows from opening for the duration of the scan, I'm unsure how this might have affected it...

ComboFix 12-02-15.01 - Jim 02/15/2012 15:50:32.1.8 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6092.4359 [GMT -5:00]

Running from: c:\users\Jim\Desktop\ComboFix.exe

AV: Symantec Endpoint Protection *Disabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}

FW: Symantec Endpoint Protection *Disabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}

SP: Symantec Endpoint Protection *Disabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\programdata\Roaming

.

.

((((((((((((((((((((((((( Files Created from 2012-01-15 to 2012-02-15 )))))))))))))))))))))))))))))))

.

.

2012-02-15 21:03 . 2012-02-15 21:03 -------- d-----w- c:\users\Natalie\AppData\Local\temp

2012-02-15 21:03 . 2012-02-15 21:03 -------- d-----w- c:\users\haxors\AppData\Local\temp

2012-02-15 21:03 . 2012-02-15 21:03 -------- d-----w- c:\users\Default\AppData\Local\temp

2012-02-15 05:55 . 2012-02-15 05:55 -------- d-----w- C:\HP_TOOLS_mountHPSF

2012-02-14 20:01 . 2012-02-14 20:01 -------- d-----w- c:\users\Jim\AppData\Roaming\Malwarebytes

2012-02-14 20:01 . 2012-02-14 23:16 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

2012-02-14 20:01 . 2012-02-14 20:01 -------- d-----w- c:\programdata\Malwarebytes

2012-02-14 20:01 . 2011-12-10 20:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-02-08 16:45 . 2012-02-08 16:45 -------- d-----w- c:\users\Jim\AppData\Local\Windows Live Writer

2012-02-08 16:45 . 2012-02-08 16:45 -------- d-----w- c:\users\Jim\AppData\Roaming\Windows Live Writer

2012-02-03 23:22 . 2012-02-03 23:22 -------- d-----w- c:\programdata\Sony

2012-02-03 22:00 . 2006-09-18 13:50 22784 ----a-w- c:\windows\SysWow64\drivers\afc.sys

2012-02-03 21:59 . 2012-02-03 21:59 -------- d-----w- c:\program files (x86)\Common Files\ArcSoft

2012-02-03 21:59 . 2012-02-03 21:59 -------- d-----w- c:\programdata\ArcSoft

2012-02-03 21:58 . 2005-05-28 11:58 393216 ----a-w- c:\windows\SysWow64\MSLUP60.dll

2012-02-03 21:58 . 2006-01-24 15:20 1645320 ----a-w- c:\windows\SysWow64\gdiplus.dll

2012-02-03 21:58 . 2005-07-16 07:35 245408 ----a-w- c:\windows\SysWow64\unicows.dll

2012-02-03 21:58 . 2012-02-03 21:58 -------- d-----w- c:\program files (x86)\ArcSoft

2012-02-03 21:58 . 2007-04-19 14:39 256768 ----a-w- c:\windows\SysWow64\MSLURT.dll

2012-02-03 21:57 . 2001-09-05 09:18 225280 ----a-w- c:\program files (x86)\Common Files\InstallShield\IScript\iscript.dll

2012-02-03 21:57 . 2001-09-05 09:18 77824 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll

2012-02-03 21:57 . 2001-09-05 09:14 176128 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll

2012-02-03 21:57 . 2001-09-05 09:13 32768 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll

2012-02-03 21:56 . 2012-02-03 21:56 -------- d-----w- c:\program files (x86)\Hauppauge

2012-02-03 21:55 . 2011-10-31 12:12 191944 ----a-w- c:\windows\system32\drivers\hcwhdpvr.sys

2012-02-03 21:33 . 2012-02-03 21:33 -------- d-----w- c:\program files (x86)\Common Files\OFX

2012-02-03 21:33 . 2012-02-03 21:33 -------- d-----w- c:\program files (x86)\NewBlue

2012-02-03 21:32 . 2012-02-03 21:32 -------- d-----w- c:\program files (x86)\iZotope

2012-02-03 21:29 . 2012-02-14 23:15 -------- d-----w- c:\windows\SysWow64\spool

2012-02-03 21:29 . 2012-02-03 23:31 -------- d-----w- c:\program files (x86)\Sony

2012-02-03 21:22 . 2012-02-14 23:15 -------- d-----w- c:\users\Video

2012-02-03 21:20 . 2012-02-03 21:21 -------- d-----w- c:\users\Jim\AppData\Roaming\Sony

2012-01-23 07:00 . 2012-01-23 07:01 -------- d-----w- c:\users\Jim\AppData\Local\Amazon

.

.

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2011-12-20 02:36 . 2011-08-10 21:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2011-11-24 04:52 . 2011-12-14 13:18 3145216 ----a-w- c:\windows\system32\win32k.sys

2011-11-19 14:58 . 2012-01-11 17:47 77312 ----a-w- c:\windows\system32\packager.dll

2011-11-19 14:01 . 2012-01-11 17:47 67072 ----a-w- c:\windows\SysWow64\packager.dll

.

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]

@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 94208 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]

@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 94208 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]

@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 94208 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]

"Steam"="c:\program files (x86)\Steam\steam.exe" [2011-08-10 1242448]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"IAStorIcon"="c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" [2011-01-13 283160]

"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288]

"HPConnectionManager"="c:\program files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe" [2011-02-15 94264]

"RemoteControl10"="c:\program files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" [2010-02-03 87336]

"BDRegion"="c:\program files (x86)\Cyberlink\Shared files\brs.exe" [2011-01-25 75048]

"HP Quick Launch"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" [2010-11-09 586296]

"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2010-11-16 35736]

"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]

"Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2011-03-16 61112]

"HPOSD"="c:\program files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe" [2011-01-27 318520]

"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]

"Communicator"="c:\program files (x86)\Microsoft Lync\communicator.exe" [2011-11-16 12065056]

"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]

"ccApp"="c:\program files (x86)\Common Files\Symantec Shared\ccApp.exe" [2010-05-06 115560]

"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-07-05 421888]

"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-09-27 59240]

"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-10-09 421736]

.

c:\users\Jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

Dropbox.lnk - c:\users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-1-18 24246216]

Pandora.lnk - c:\program files (x86)\Pandora\Pandora.exe [2011-8-10 142848]

PdaNet Desktop.lnk - c:\program files (x86)\PdaNet for Android\PdaNetPC.exe [2011-8-10 480880]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Amazon Unbox.lnk - c:\program files (x86)\Amazon\Amazon Unbox Video\ADVWindowsClientSystemTray.exe [2010-9-13 97384]

UVA ITC Network Setup Tool Cert Checker.lnk - c:\windows\Installer\{A4766C69-E64B-47D4-984C-BE9E91FDDBF3}\_93C62315C0D5B38E0A1810.exe [2011-10-13 3262]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

"EnableShellExecuteHooks"= 1 (0x1)

.

[hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

"mixer1"=wdmaud.drv

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccEvtMgr]

@="Service"

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccSetMgr]

@="Service"

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antivirus]

@="Service"

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

.

R2 CLKMSVC10_38F51D56;CyberLink Product - 2011/07/27 13:44;c:\program files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [2011-01-25 241648]

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-02 183560]

R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

R3 hcwhdpvr;Hauppauge HD PVR Capture Device;c:\windows\system32\DRIVERS\hcwhdpvr.sys [x]

R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 31125880]

R3 MotDev;Motorola Inc. USB Device;c:\windows\system32\DRIVERS\motodrv.sys [x]

R3 mvusbews;USB EWS Device;c:\windows\system32\Drivers\mvusbews.sys [x]

R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]

R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-10 4925184]

R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [x]

R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [x]

R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [x]

R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [x]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]

R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]

R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]

S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]

S2 FPLService;TrueSuiteService;c:\program files (x86)\HP SimplePass 2011\TrueSuiteService.exe [2011-02-18 265544]

S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2011-06-21 85560]

S2 HPClientSvc;HP Client Services;c:\program files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-10-11 346168]

S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-03-28 94264]

S2 HPSIService;HP SI Service;c:\windows\system32\HPSIsvc.exe [x]

S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [x]

S2 HPWMISVC;HPWMISVC;c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-11-09 26680]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-13 13336]

S2 MotoHelper;MotoHelper Service;c:\program files (x86)\Motorola\MotoHelper\MotoHelperService.exe [2011-08-10 227184]

S2 RoxioNow Service;RoxioNow Service;c:\program files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [2010-11-26 399344]

S2 SSUService;Splashtop Software Updater Service;c:\program files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [2011-11-10 370504]

S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-12-22 2656280]

S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys [x]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-02-03 138360]

S3 hpCMSrv;HP Connection Manager 4.0 Service;c:\program files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2011-02-15 1071160]

S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]

S3 MEIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]

S3 NETwNs64;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [x]

S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x]

S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x]

S3 pneteth;PdaNet Broadband;c:\windows\system32\DRIVERS\pneteth.sys [x]

S3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\DRIVERS\RtsPStor.sys [x]

S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]

S3 wdkmd;Intel WiDi KMD;c:\windows\system32\DRIVERS\WDKMD.sys [x]

.

.

--- Other Services/Drivers In Memory ---

.

*NewlyCreated* - 94635404

*NewlyCreated* - 99069034

*Deregistered* - 94635404

*Deregistered* - 99069034

*Deregistered* - CLKMDRV10_38F51D56

.

Contents of the 'Scheduled Tasks' folder

.

2012-02-04 c:\windows\Tasks\HPCeeScheduleForJim.job

- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14 05:15]

.

.

--------- x86-64 -----------

.

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]

@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 97792 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]

@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 97792 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]

@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 97792 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]

@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"

[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]

2011-02-18 05:12 97792 ----a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2011-03-11 1128448]

"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-01-05 1933584]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-15 168216]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-15 392472]

"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-15 416024]

"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-08-01 2417032]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"LoadAppInit_DLLs"=0x0

.

------- Supplementary Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

mLocal Page = c:\windows\system32\blank.htm

uInternet Settings,ProxyOverride = *.local;192.168.*.*

IE: {{A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://c:\program files (x86)\Evernote\Evernote\EvernoteIE.dll/204

TCP: DhcpNameServer = 128.143.2.7 128.143.3.7 128.143.22.119

.

- - - - ORPHANS REMOVED - - - -

.

Toolbar-Locked - (no file)

Wow6432Node-HKLM-Run-ArcSoft Connection Service - c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe

SafeBoot-Symantec Antvirus

HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe

AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe

AddRemove-EasyBits Magic Desktop - c:\windows\system32\ezMDUninstall.exe

AddRemove-{CA43FE4F-9FF2-4AD7-88F0-CC3BAC17B226} - c:\program files (x86)\InstallShield Installation Information\{CA43FE4F-9FF2-4AD7-88F0-CC3BAC17B226}\setup.exe

AddRemove-Amazon Kindle - c:\users\Jim\AppData\Local\Amazon\Kindle\application\uninstall.exe

.

.

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.10"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

@Denied: (A 2) (Everyone)

@="IFlashBroker4"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]

@Denied: (A) (Everyone)

"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]

@Denied: (A) (Everyone)

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]

"Key"="ActionsPane3"

"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Completion time: 2012-02-15 16:29:37

ComboFix-quarantined-files.txt 2012-02-15 21:29

.

Pre-Run: 533,596,327,936 bytes free

Post-Run: 534,218,817,536 bytes free

.

- - End Of File - - BC771B00C4F035AE461C10A0C6FD101C

Link to post
Share on other sites

Normal mode: windows open without me starting IE, but seem to open more rapidly if I open a window first

Safe mode: it appears to do the same thing although I am unsure if the 'help and support' window that opens automatically counts as me opening a browser window first

Link to post
Share on other sites

Please run the following scan (re-enable any disabled processes).

ESET ONLINE SCANNER

----------------------------

I'd like us to scan your machine with ESET OnlineScan

  1. Hold down Control and click on this link to open ESET OnlineScan in a new window.
  2. Click the esetonlinebtn.png button.
  3. For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)

    1. Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    2. Double click on the esetsmartinstaller_enu.png
      icon on your desktop.

    3. Check "YES, I accept the Terms of Use."
    4. Click the Start button.
    5. Accept any security warnings from your browser.
    6. Under scan settings, check "Scan Archives" and "Remove found threats"
    7. Click Advanced settings and select the following:
      • Scan potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth technology

[*]ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.

[*]When the scan completes, click List Threats

[*]Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.

[*]Click the Back button.

[*]Click the Finish button.

Link to post
Share on other sites

Here are the results of the scan

C:\Users\haxors\Desktop\SuperOneClickv2.1.1-ShortFuse.zip multiple threats deleted - quarantined

C:\Users\haxors\Desktop\SuperOneClickv2.1.1-ShortFuse\Exploits\GingerBreak Linux/Exploit.Lotoor.AF trojan cleaned by deleting - quarantined

C:\Users\haxors\Desktop\SuperOneClickv2.1.1-ShortFuse\Exploits\psneuter Linux/Exploit.Lotoor.AK trojan cleaned by deleting - quarantined

C:\Users\haxors\Downloads\z4root.1.3.0.apk Android/Exploit.RageCage.A trojan deleted - quarantined

C:\Users\Jim\Downloads\cnet_audacity-win-1_2_6_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined

C:\Users\Jim\Dropbox\z4root.1.3.0.apk Android/Exploit.RageCage.A trojan deleted - quarantined

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.