Jump to content

My Windows Defender and Windows Firewall won't turn on?


Recommended Posts

I was told to post these logs in order for someone to help me.

.

DDS (Ver_2011-08-26.01) - NTFSAMD64

Internet Explorer: 9.0.8112.16421

Run by Sammerz93 at 1:21:12 on 2012-09-05

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4044.2309 [GMT -5:00]

.

AV: Norton Internet Security *Disabled/Outdated* {63DF5164-9100-186D-2187-8DC619EFD8BF}

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Norton Internet Security *Disabled/Outdated* {D8BEB080-B73A-17E3-1B37-B6B462689202}

FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

.

============== Running Processes ===============

.

C:\windows\system32\wininit.exe

C:\windows\system32\lsm.exe

C:\windows\system32\svchost.exe -k DcomLaunch

C:\windows\system32\svchost.exe -k RPCSS

C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k LocalService

C:\windows\system32\svchost.exe -k NetworkService

C:\windows\System32\spoolsv.exe

C:\windows\System32\svchost.exe -k LocalServiceNoNetwork

c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe

C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

C:\windows\system32\rundll32.exe

C:\windows\system32\rundll32.exe

C:\windows\SysWOW64\rundll32.exe

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

C:\windows\system32\svchost.exe -k imgsvc

C:\windows\system32\TODDSrv.exe

C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

C:\windows\system32\taskhost.exe

C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

C:\windows\system32\Dwm.exe

C:\windows\Explorer.EXE

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe

C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe

C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe

C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe

C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe

C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

C:\Program Files (x86)\PC Cleaners\PCCleaners.exe

C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\windows\system32\SearchIndexer.exe

C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe

C:\Windows\System32\StikyNot.exe

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe

C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\windows\System32\svchost.exe -k WerSvcGroup

c:\PROGRA~2\mcafee\SITEAD~1\saui.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.207\McUicnt.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

C:\windows\system32\SearchProtocolHost.exe

C:\windows\system32\SearchFilterHost.exe

C:\windows\system32\DllHost.exe

C:\windows\SysWOW64\cmd.exe

C:\windows\system32\conhost.exe

C:\windows\SysWOW64\cscript.exe

C:\windows\system32\wbem\wmiprvse.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.facebook.com/

uDefault_Page_URL = hxxp://start.toshiba.com

mStart Page = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

uInternet Settings,ProxyOverride = <local>

uURLSearchHooks: H - No File

uURLSearchHooks: H - No File

mWinlogon: Userinit=userinit.exe,

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: AOL Toolbar Loader: {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

BHO: Price Check by AOL: {d25b97e9-62b2-40ce-becf-e43a7b879072} - C:\Program Files (x86)\Price Check by AOL\aolpricecheck.dll

BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO: TOSHIBA Media Controller Plug-in: {f3c88694-effa-4d78-b409-54b7b2535b14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll

BHO: Yontoo: {fd72061e-9fde-484d-a58a-0bab4151cad8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

TB: AOL Toolbar: {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

TB: {687578B9-7132-4A7A-80E4-30EE31099E03} - No File

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

uRun: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent

uRun: [Facebook Update] "C:\Users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe

mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60

mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED

mRun: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe"

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

mRun: [PC Cleaners] "C:\Program Files (x86)\PC Cleaners\PCCleaners.exe" /minimize

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

LSP: mswsock.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

TCP: DhcpNameServer = 66.253.230.60 66.253.230.210 68.234.128.70

TCP: Interfaces\{67B01EF4-8284-4691-A4A1-F13EEBF059C8} : DhcpNameServer = 192.168.33.1 75.75.75.75 75.75.76.76

TCP: Interfaces\{67B01EF4-8284-4691-A4A1-F13EEBF059C8}\2656C6B696E6E2362633E2765756374737 : DhcpNameServer = 192.168.169.1

TCP: Interfaces\{E52C985C-1EE6-42CE-921C-B87F114D0CF5} : DhcpNameServer = 66.253.230.60 66.253.230.210 68.234.128.70

Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll

Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO-X64: AcroIEHelperStub - No File

BHO-X64: AOL Toolbar Loader: {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

BHO-X64: AOL Toolbar Loader - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO-X64: SkypeIEPluginBHO - No File

BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

BHO-X64: Price Check by AOL: {D25B97E9-62B2-40CE-BECF-E43A7B879072} - C:\Program Files (x86)\Price Check by AOL\aolpricecheck.dll

BHO-X64: Price Check by AOL - No File

BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO-X64: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll

BHO-X64: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

BHO-X64: Yontoo Layers - No File

TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

TB-X64: AOL Toolbar: {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

TB-X64: {687578B9-7132-4A7A-80E4-30EE31099E03} - No File

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60

mRun-x64: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED

mRun-x64: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe"

mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

mRun-x64: [PC Cleaners] "C:\Program Files (x86)\PC Cleaners\PCCleaners.exe" /minimize

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\

FF - prefs.js: browser.search.selectedEngine - Google

FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/

FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=

FF - prefs.js: network.proxy.type - 0

FF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL

FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll

FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll

FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Users\Sammerz93\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll

FF - plugin: C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\plugins\np-mswmp.dll

FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll

.

---- FIREFOX POLICIES ----

FF - user.js: extensions.funmoods.hmpg - true

FF - user.js: extensions.funmoods.hmpgUrl - hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

FF - user.js: extensions.funmoods.dfltSrch - true

FF - user.js: extensions.funmoods.srchPrvdr - Search

FF - user.js: extensions.funmoods.dnsErr - true

FF - user.js: extensions.funmoods_i.newTab - true

FF - user.js: extensions.funmoods.newTabUrl - hxxp://start.funmoods.com/?f=2&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

FF - user.js: extensions.funmoods.tlbrSrchUrl -

FF - user.js: extensions.funmoods.id - c881a29c00000000000000266cea83ba

FF - user.js: extensions.funmoods.instlDay - 15520

FF - user.js: extensions.funmoods.vrsn - 1.5.23.22

FF - user.js: extensions.funmoods.vrsni - 1.5.23.22

FF - user.js: extensions.funmoods_i.vrsnTs - 1.5.23.2221:45:6

FF - user.js: extensions.funmoods.prtnrId - funmoods

FF - user.js: extensions.funmoods.prdct - funmoods

FF - user.js: extensions.funmoods.aflt - nv1

FF - user.js: extensions.funmoods_i.smplGrp - none

FF - user.js: extensions.funmoods.tlbrId - base

FF - user.js: extensions.funmoods.instlRef - nv1

FF - user.js: extensions.funmoods.dfltLng -

FF - user.js: extensions.funmoods.excTlbr - false

FF - user.js: extensions.funmoods.autoRvrt - false

FF - user.js: extensions.funmoods.envrmnt - production

FF - user.js: extensions.funmoods.isdcmntcmplt - true

FF - user.js: extensions.funmoods.mntrvrsn - 1.3.0

FF - user.js: extentions.y2layers.installId - b8442a97-1e2d-4f1a-a4d1-886a76047e29

FF - user.js: extentions.y2layers.defaultEnableAppsList - twittube,ezLooker,pagerage,buzzdock,toprelatedtopics

.

FF - user.js: extensions.autoDisableScopes - 14

FF - user.js: network.protocol-handler.warn-external.dnupdate - false

FF - user.js: browser.sessionstore.resume_from_crash - false

.

============= SERVICES / DRIVERS ===============

.

R0 tos_sps64;TOSHIBA tos_sps64 Service;C:\windows\system32\DRIVERS\tos_sps64.sys --> C:\windows\system32\DRIVERS\tos_sps64.sys [?]

R1 vwififlt;Virtual WiFi Filter Driver;C:\windows\system32\DRIVERS\vwififlt.sys --> C:\windows\system32\DRIVERS\vwififlt.sys [?]

R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-8-31 655944]

R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [2012-6-12 103440]

R2 PCCUJobMgr;Common Client Job Manager Service;C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe [2011-12-14 126392]

R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-12-14 2656280]

R3 FwLnk;FwLnk Driver;C:\windows\system32\DRIVERS\FwLnk.sys --> C:\windows\system32\DRIVERS\FwLnk.sys [?]

R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\windows\system32\DRIVERS\L1C62x64.sys --> C:\windows\system32\DRIVERS\L1C62x64.sys [?]

R3 MBAMProtector;MBAMProtector;\??\C:\windows\system32\drivers\mbam.sys --> C:\windows\system32\drivers\mbam.sys [?]

R3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe [2011-6-17 237008]

R3 MEIx64;Intel® Management Engine Interface;C:\windows\system32\DRIVERS\HECIx64.sys --> C:\windows\system32\DRIVERS\HECIx64.sys [?]

R3 PGEffect;Pangu effect driver;C:\windows\system32\DRIVERS\pgeffect.sys --> C:\windows\system32\DRIVERS\pgeffect.sys [?]

R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\windows\system32\DRIVERS\rtl8192Ce.sys --> C:\windows\system32\DRIVERS\rtl8192Ce.sys [?]

R3 Sftfs;Sftfs;C:\windows\system32\DRIVERS\Sftfslh.sys --> C:\windows\system32\DRIVERS\Sftfslh.sys [?]

R3 Sftplay;Sftplay;C:\windows\system32\DRIVERS\Sftplaylh.sys --> C:\windows\system32\DRIVERS\Sftplaylh.sys [?]

R3 Sftredir;Sftredir;C:\windows\system32\DRIVERS\Sftredirlh.sys --> C:\windows\system32\DRIVERS\Sftredirlh.sys [?]

R3 Sftvol;Sftvol;C:\windows\system32\DRIVERS\Sftvollh.sys --> C:\windows\system32\DRIVERS\Sftvollh.sys [?]

R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]

R3 TMachInfo;TMachInfo;C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-12-14 57216]

R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2011-6-9 138152]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\windows\system32\DRIVERS\vwifimp.sys --> C:\windows\system32\DRIVERS\vwifimp.sys [?]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-3 160944]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-20 250568]

S3 EraserUtilDrv11210;EraserUtilDrv11210;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11210.sys [2012-8-15 138912]

S3 EraserUtilDrv11220;EraserUtilDrv11220;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys [2012-8-29 138912]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-2-15 138360]

S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-15 113120]

S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]

S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\system32\Drivers\RtsUStor.sys --> C:\windows\system32\Drivers\RtsUStor.sys [?]

S3 TsUsbFlt;TsUsbFlt;C:\windows\system32\drivers\tsusbflt.sys --> C:\windows\system32\drivers\tsusbflt.sys [?]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\system32\drivers\TsUsbGD.sys --> C:\windows\system32\drivers\TsUsbGD.sys [?]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\system32\Wat\WatAdminSvc.exe --> C:\windows\system32\Wat\WatAdminSvc.exe [?]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]

.

=============== Created Last 30 ================

.

2012-09-04 21:15:36 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Microsoft Games

2012-08-31 19:35:50 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\PCPro

2012-08-31 19:35:50 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\PC Cleaners

2012-08-31 19:35:49 4269368 ----a-w- C:\windows\uninst.exe

2012-08-31 19:35:49 -------- d-----w- C:\ProgramData\PC1Data

2012-08-31 19:35:49 -------- d-----w- C:\Program Files (x86)\PC Cleaners

2012-08-31 15:13:16 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\Malwarebytes

2012-08-31 15:13:03 24904 ----a-w- C:\windows\System32\drivers\mbam.sys

2012-08-31 15:13:03 -------- d-----w- C:\ProgramData\Malwarebytes

2012-08-31 15:13:03 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2012-08-30 20:27:27 -------- d-----w- C:\Users\Sammerz93\AppData\Local\ElevatedDiagnostics

2012-08-30 04:29:57 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Chromium

2012-08-26 19:43:20 -------- d-----w- C:\Users\Sammerz93\AppData\Local\NPE

2012-08-26 19:19:56 27256 ----a-w- C:\windows\System32\drivers\FixZeroAccess.sys

2012-08-21 04:15:57 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\Stellarium

2012-08-21 04:15:35 -------- d-----w- C:\Program Files (x86)\Stellarium

2012-08-15 19:18:23 -------- d-----w- C:\Program Files\STOPzilla!

2012-08-10 01:04:27 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Price Check by AOL

2012-08-10 01:04:23 -------- d-----w- C:\Users\Sammerz93\AppData\Local\AOL Toolbar

2012-08-09 09:50:55 -------- d-sh--w- C:\windows\SysWow64\%APPDATA%

2012-08-09 05:40:54 -------- d-----w- C:\Users\Sammerz93\.swt

2012-08-09 05:38:48 -------- d-----w- C:\Program Files (x86)\Vuze

2012-08-09 05:36:18 -------- d-----w- C:\ProgramData\Price Check by AOL

2012-08-09 05:36:18 -------- d-----w- C:\Program Files (x86)\Price Check by AOL

2012-08-09 05:36:05 -------- d-----w- C:\ProgramData\AOL Toolbar

2012-08-09 05:36:05 -------- d-----w- C:\Program Files (x86)\AOL Toolbar

2012-08-09 05:35:54 -------- d-----w- C:\Program Files (x86)\Common Files\Software Update Utility

2012-08-09 05:35:23 -------- d-----w- C:\Program Files (x86)\BTJunkie Downloader

2012-08-07 18:03:24 9133488 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ADD98A8B-EA42-4692-85A8-1011C7B6343A}\mpengine.dll

.

==================== Find3M ====================

.

2012-08-23 20:08:05 73416 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl

2012-08-23 20:08:05 696520 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe

2012-06-12 03:08:36 3148800 ----a-w- C:\windows\System32\win32k.sys

.

============= FINISH: 1:23:28.60 ===============

Attach.zip

Link to post
Share on other sites

Hello Sammerz93 and :welcome:! My name is Maniac and I will be glad to help you solve your malware problem.

Please note:

  • If you are a paying customer, you have the privilege to contact the help desk at Consumer Support. If you choose this option to get help, please let me know.
  • I recommend you to keep the instructions I will be giving you so that they are available to you at any time. You can save them in a text file or print them.
  • Make sure you read all of the instructions and fixes thoroughly before continuing with them.
  • Follow my instructions strictly and don’t hesitate to stop and ask me if you have any questions.
  • Post your log files, don't attach them. Every log file should be copy/pasted in your next reply.

Step 1

  • Launch Malwarebytes' Anti-Malware
  • Go to Update tab and select Check for Updates. If an update is found, it will download and install the latest version.
  • Go to Scanner tab and select Perform Quick Scan, then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer,please do so immediately.

Step 2

Download aswMBR.exe to your desktop.

Double click the aswMBR.exe to run it

Click the "Scan" button to start scan

aswMBR2-1.gif

On completion of the scan click save log, save it to your desktop and post in your next reply

aswMBR2.png

Step 3

Please download AdwCleaner from here and save it on your Desktop.

  1. Right-click on adwcleaner.exe and select Run As Administrator to launch the application.
  2. Now click on the Search tab.
  3. Please post the contents of the log-file created in your next post.

Note: The log can also be located at C:\ >> AdwCleaner[XX].txt >> XX <-- Denotes the number of times the application has been ran, so in this should be something like R1.

Step 4

Please download Farbar Service Scanner and run it on the computer with the issue.

  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update

    [*]Press "Scan".

    [*]It will create a log (FSS.txt) in the same directory the tool is run.

    [*]Please copy and paste the log to your reply.

In your next reply, post the following log files:

  • Malwarebytes' Anti-Malware log
  • aswMBR log
  • AdwCleaner
  • Farbar Service Scanner log
  • a new fresh DDS log

Link to post
Share on other sites

Thank you for taking the time to help me! Here is everything you've asked for (:

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software

Run date: 2012-09-07 14:26:38

-----------------------------

14:26:38.233 OS Version: Windows x64 6.1.7601 Service Pack 1

14:26:38.234 Number of processors: 2 586 0x2A07

14:26:38.235 ComputerName: SAMMERZ93-PC UserName: Sammerz93

14:26:40.067 Initialize success

14:27:51.103 AVAST engine defs: 12090701

14:28:07.552 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1

14:28:07.554 Disk 0 Vendor: TOSHIBA_ GT00 Size: 305245MB BusType: 3

14:28:07.562 Disk 0 MBR read successfully

14:28:07.564 Disk 0 MBR scan

14:28:07.568 Disk 0 Windows VISTA default MBR code

14:28:07.576 Disk 0 Partition 1 80 (A) 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048

14:28:07.592 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 289747 MB offset 3074048

14:28:07.625 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 13997 MB offset 596475904

14:28:07.761 Disk 0 scanning C:\windows\system32\drivers

14:28:22.949 Service scanning

14:29:17.458 Modules scanning

14:29:17.464 Disk 0 trace - called modules:

14:29:17.495 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys

14:29:17.850 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80067b1060]

14:29:17.854 3 CLASSPNP.SYS[fffff8800176343f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004dc6050]

14:29:22.749 AVAST engine scan C:\windows

14:29:25.204 AVAST engine scan C:\windows\system32

14:31:14.404 File: C:\windows\system32\services.exe **INFECTED** Win32:Sirefef-ZT [Trj]

14:31:47.596 File: C:\windows\assembly\GAC_32\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]

14:31:49.802 File: C:\windows\assembly\GAC_64\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]

14:33:36.919 AVAST engine scan C:\windows\system32\drivers

14:33:45.907 AVAST engine scan C:\Users\Sammerz93

14:39:46.600 AVAST engine scan C:\ProgramData

14:40:55.019 Scan finished successfully

14:41:40.992 Disk 0 MBR has been saved successfully to "C:\Users\Sammerz93\Desktop\MBR.dat"

14:41:40.997 The log file has been saved successfully to "C:\Users\Sammerz93\Desktop\aswMBR.txt"

# AdwCleaner v2.000 - Logfile created 09/07/2012 at 14:42:25

# Updated 30/08/2012 by Xplode

# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)

# User : Sammerz93 - SAMMERZ93-PC

# Boot Mode : Normal

# Running from : C:\Users\Sammerz93\Downloads\adwcleaner.exe

# Option [search]

***** [services] *****

***** [Files / Folders] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll

File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.xpt

File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll

File Found : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.xpt

File Found : C:\Users\Sammerz93\AppData\Local\funmoods-speeddial.crx

Folder Found : C:\Program Files (x86)\Common Files\Software Update Utility

Folder Found : C:\Program Files (x86)\Conduit

Folder Found : C:\Program Files (x86)\Yontoo

Folder Found : C:\ProgramData\Tarma Installer

Folder Found : C:\Users\SAMMER~1\AppData\Local\Temp\boost_interprocess

Folder Found : C:\Users\SAMMER~1\AppData\Local\Temp\CT2504091

Folder Found : C:\Users\SAMMER~1\AppData\Local\Temp\CT3072253

Folder Found : C:\Users\Sammerz93\AppData\Local\Conduit

Folder Found : C:\Users\Sammerz93\AppData\LocalLow\Conduit

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\ConduitCommon

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\CT2504091

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\CT3072253

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\plugin@yontoo.com

Folder Found : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\Smartbar

***** [Registry] *****

Key Found : HKCU\Software\AppDataLow\Software\Conduit

Key Found : HKCU\Software\AppDataLow\Software\SmartBar

Key Found : HKCU\Software\Conduit

Key Found : HKCU\Software\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Found : HKCU\Software\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Found : HKCU\Software\Softonic

Key Found : HKCU\Software\SweetIm

Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}

Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}

Key Found : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}

Key Found : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}

Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}

Key Found : HKLM\SOFTWARE\Classes\AppID\{B27D9527-3762-4D71-963D-FB7A94FDD678}

Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

Key Found : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}

Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}

Key Found : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}

Key Found : HKLM\SOFTWARE\Classes\AppID\dnu.EXE

Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL

Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL

Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL

Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL

Key Found : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL

Key Found : HKLM\SOFTWARE\Classes\dnUpdate

Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser

Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1

Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController

Key Found : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1

Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2504091

Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3072253

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}

Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}

Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Api

Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1

Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Layers

Key Found : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1

Key Found : HKLM\Software\Conduit

Key Found : HKLM\Software\Iminent

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Found : HKLM\Software\SweetIm

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}

Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}

Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Found : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc

Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}

Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\facemoods

Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility

Key Found : HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191}

Key Found : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Found : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Found : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}

Key Found : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}

Key Found : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}

Key Found : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}

Key Found : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}

Key Found : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}

Key Found : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}

Key Found : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}

Key Found : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}

Key Found : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}

Key Found : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}

Key Found : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}

Key Found : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}

Key Found : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}

Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}

Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\facemoods

Key Found : HKLM\SOFTWARE\Software

Key Found : HKLM\SOFTWARE\Tarma Installer

***** [internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

-\\ Mozilla Firefox v13.0.1 (en-US)

Profile name : default

File : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\prefs.js

Found : user_pref("CT2504091.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");

Found : user_pref("CT2504091.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]

Found : user_pref("CT2504091.FirstTime", "true");

Found : user_pref("CT2504091.FirstTimeFF3", "true");

Found : user_pref("CT2504091.UserID", "UN69545093034620614");

Found : user_pref("CT2504091.addressBarTakeOverEnabledInHidden", "true");

Found : user_pref("CT2504091.autoDisableScopes", 14);

Found : user_pref("CT2504091.cbcountry_001", "US");

Found : user_pref("CT2504091.cbfirsttime", "Thu Aug 09 2012 00:39:06 GMT-0500 (Central Daylight Time)");

Found : user_pref("CT2504091.defaultSearch", "false");

Found : user_pref("CT2504091.embeddedsData", "[{\"appId\":\"129079840422026594\",\"apiPermissions\":{\"cross[...]

Found : user_pref("CT2504091.enableAlerts", "false");

Found : user_pref("CT2504091.enableSearchFromAddressBar", "true");

Found : user_pref("CT2504091.firstTimeDialogOpened", "true");

Found : user_pref("CT2504091.fixPageNotFoundError", "true");

Found : user_pref("CT2504091.fixPageNotFoundErrorInHidden", "true");

Found : user_pref("CT2504091.fixUrls", true);

Found : user_pref("CT2504091.installId", "ConduitNSISIntegration");

Found : user_pref("CT2504091.installType", "ConduitNSISIntegration");

Found : user_pref("CT2504091.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");

Found : user_pref("CT2504091.isNewTabEnabled", true);

Found : user_pref("CT2504091.isPerformedSmartBarTransition", "true");

Found : user_pref("CT2504091.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");

Found : user_pref("CT2504091.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about[...]

Found : user_pref("CT2504091.openThankYouPage", "false");

Found : user_pref("CT2504091.openUninstallPage", "false");

Found : user_pref("CT2504091.search.searchAppId", "129079840422026594");

Found : user_pref("CT2504091.search.searchCount", "0");

Found : user_pref("CT2504091.searchInNewTabEnabledInHidden", "true");

Found : user_pref("CT2504091.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}");

Found : user_pref("CT2504091.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");

Found : user_pref("CT2504091.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]

Found : user_pref("CT2504091.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\[...]

Found : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]

Found : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]

Found : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]

Found : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]

Found : user_pref("CT2504091.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data[...]

Found : user_pref("CT2504091.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1344490743499");

Found : user_pref("CT2504091.serviceLayer_services_appTracking_lastUpdate", "1344490745667");

Found : user_pref("CT2504091.serviceLayer_services_appsMetadata_lastUpdate", "1344490743299");

Found : user_pref("CT2504091.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1344490745377");

Found : user_pref("CT2504091.serviceLayer_services_login_10.10.20.14_lastUpdate", "1344490744426");

Found : user_pref("CT2504091.serviceLayer_services_optimizer_lastUpdate", "1344490744120");

Found : user_pref("CT2504091.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1344490746879");

Found : user_pref("CT2504091.serviceLayer_services_searchAPI_lastUpdate", "1344490743139");

Found : user_pref("CT2504091.serviceLayer_services_serviceMap_lastUpdate", "1344490742822");

Found : user_pref("CT2504091.serviceLayer_services_toolbarContextMenu_lastUpdate", "1344490744325");

Found : user_pref("CT2504091.serviceLayer_services_toolbarSettings_lastUpdate", "1344490742966");

Found : user_pref("CT2504091.serviceLayer_services_translation_lastUpdate", "1344490743307");

Found : user_pref("CT2504091.settingsINI", true);

Found : user_pref("CT2504091.shouldFirstTimeDialog", "false");

Found : user_pref("CT2504091.smartbar.CTID", "CT2504091");

Found : user_pref("CT2504091.smartbar.Uninstall", "0");

Found : user_pref("CT2504091.smartbar.toolbarName", "Vuze Remote ");

Found : user_pref("CT2504091.startPage", "false");

Found : user_pref("CT2504091.toolbarBornServerTime", "9-8-2012");

Found : user_pref("CT2504091.toolbarCurrentServerTime", "9-8-2012");

Found : user_pref("CT2504091.toolbarDisabled", "true");

Found : user_pref("CT3072253..clientLogIsEnabled", false);

Found : user_pref("CT3072253..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]

Found : user_pref("CT3072253..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]

Found : user_pref("CT3072253.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);

Found : user_pref("CT3072253.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");

Found : user_pref("CT3072253.BrowserCompStateIsOpen_129573915102477663", true);

Found : user_pref("CT3072253.BrowserCompStateIsOpen_129749445881800338", true);

Found : user_pref("CT3072253.BrowserCompStateIsOpen_129805375651312503", true);

Found : user_pref("CT3072253.CTID", "CT3072253");

Found : user_pref("CT3072253.CurrentServerDate", "7-9-2012");

Found : user_pref("CT3072253.DSInstall", false);

Found : user_pref("CT3072253.DialogsAlignMode", "LTR");

Found : user_pref("CT3072253.DialogsGetterLastCheckTime", "Tue Sep 04 2012 18:18:19 GMT-0500 (Central Daylig[...]

Found : user_pref("CT3072253.DownloadReferralCookieData", "");

Found : user_pref("CT3072253.FirstServerDate", "26-6-2012");

Found : user_pref("CT3072253.FirstTime", true);

Found : user_pref("CT3072253.FirstTimeFF3", true);

Found : user_pref("CT3072253.FirstTimeHiddenVer", true);

Found : user_pref("CT3072253.FixPageNotFoundErrors", true);

Found : user_pref("CT3072253.GroupingServerCheckInterval", 1440);

Found : user_pref("CT3072253.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");

Found : user_pref("CT3072253.HPInstall", false);

Found : user_pref("CT3072253.HasUserGlobalKeys", true);

Found : user_pref("CT3072253.HomePageProtectorEnabled", false);

Found : user_pref("CT3072253.HomepageBeforeUnload", "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutA[...]

Found : user_pref("CT3072253.Initialize", true);

Found : user_pref("CT3072253.InitializeCommonPrefs", true);

Found : user_pref("CT3072253.InstallationAndCookieDataSentCount", 3);

Found : user_pref("CT3072253.InstallationId", "fft4E66.tmp.exe");

Found : user_pref("CT3072253.InstallationType", "XPE");

Found : user_pref("CT3072253.InstalledDate", "Mon Jun 25 2012 20:07:13 GMT-0500 (Central Daylight Time)");

Found : user_pref("CT3072253.IsAlertDBUpdated", true);

Found : user_pref("CT3072253.IsGrouping", false);

Found : user_pref("CT3072253.IsInitSetupIni", true);

Found : user_pref("CT3072253.IsMulticommunity", false);

Found : user_pref("CT3072253.IsOpenThankYouPage", true);

Found : user_pref("CT3072253.IsOpenUninstallPage", false);

Found : user_pref("CT3072253.LanguagePackLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Dayligh[...]

Found : user_pref("CT3072253.LanguagePackReloadIntervalMM", 1440);

Found : user_pref("CT3072253.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]

Found : user_pref("CT3072253.LastLogin_3.13.0.6", "Tue Jul 17 2012 21:36:13 GMT-0500 (Central Daylight Time)[...]

Found : user_pref("CT3072253.LastLogin_3.14.1.0", "Wed Sep 05 2012 00:26:35 GMT-0500 (Central Daylight Time)[...]

Found : user_pref("CT3072253.LastLogin_3.15.1.0", "Fri Sep 07 2012 14:13:02 GMT-0500 (Central Daylight Time)[...]

Found : user_pref("CT3072253.LatestVersion", "3.14.1.0");

Found : user_pref("CT3072253.Locale", "en");

Found : user_pref("CT3072253.MCDetectTooltipHeight", "83");

Found : user_pref("CT3072253.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");

Found : user_pref("CT3072253.MCDetectTooltipWidth", "295");

Found : user_pref("CT3072253.MyStuffEnabledAtInstallation", true);

Found : user_pref("CT3072253.OriginalFirstVersion", "3.13.0.6");

Found : user_pref("CT3072253.SHRINK_TOOLBAR", 1);

Found : user_pref("CT3072253.SearchCaption", "uTorrentControl2 Customized Web Search");

Found : user_pref("CT3072253.SearchEngineBeforeUnload", "Search");

Found : user_pref("CT3072253.SearchFromAddressBarIsInit", true);

Found : user_pref("CT3072253.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT307[...]

Found : user_pref("CT3072253.SearchInNewTabEnabled", true);

Found : user_pref("CT3072253.SearchInNewTabIntervalMM", 1440);

Found : user_pref("CT3072253.SearchInNewTabLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Dayli[...]

Found : user_pref("CT3072253.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]

Found : user_pref("CT3072253.SearchInNewTabUserEnabled", false);

Found : user_pref("CT3072253.SearchProtectorEnabled", false);

Found : user_pref("CT3072253.SearchProtectorToolbarDisabled", false);

Found : user_pref("CT3072253.SendProtectorDataViaLogin", true);

Found : user_pref("CT3072253.ServiceMapLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Daylight [...]

Found : user_pref("CT3072253.SettingsLastCheckTime", "Fri Sep 07 2012 14:12:56 GMT-0500 (Central Daylight Ti[...]

Found : user_pref("CT3072253.SettingsLastUpdate", "1346938891");

Found : user_pref("CT3072253.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT3072253&SearchSource=13");

Found : user_pref("CT3072253.ThirdPartyComponentsInterval", 504);

Found : user_pref("CT3072253.ThirdPartyComponentsLastCheck", "Wed Aug 29 2012 21:25:58 GMT-0500 (Central Day[...]

Found : user_pref("CT3072253.ThirdPartyComponentsLastUpdate", "1331805997");

Found : user_pref("CT3072253.ToolbarShrinkedFromSetup", false);

Found : user_pref("CT3072253.TrusteLinkUrl", "hxxp://trust.conduit.com/CT3072253");

Found : user_pref("CT3072253.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]

Found : user_pref("CT3072253.UserID", "UN71119223081873524");

Found : user_pref("CT3072253.ValidationData_Search", 2);

Found : user_pref("CT3072253.ValidationData_Toolbar", 2);

Found : user_pref("CT3072253.alertChannelId", "1463702");

Found : user_pref("CT3072253.autoDisableScopes", -1);

Found : user_pref("CT3072253.backendstorage.cb_experience_000", "3237");

Found : user_pref("CT3072253.backendstorage.cb_firstuse0100", "31");

Found : user_pref("CT3072253.backendstorage.cb_user_id_000", "43423232313731323735393132395F46697265666F78")[...]

Found : user_pref("CT3072253.backendstorage.cbcountry_001", "5553");

Found : user_pref("CT3072253.backendstorage.cbfirsttime", "4D6F6E204A756E20323520323031322032303A30373A31372[...]

Found : user_pref("CT3072253.backendstorage.url_history0001", "687474703A2F2F7777772E66616365626F6F6B2E636F6[...]

Found : user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]

Found : user_pref("CT3072253.globalFirstTimeInfoLastCheckTime", "Tue Aug 28 2012 14:26:30 GMT-0500 (Central [...]

Found : user_pref("CT3072253.homepageProtectorEnableByLogin", true);

Found : user_pref("CT3072253.initDone", true);

Found : user_pref("CT3072253.isAppTrackingManagerOn", true);

Found : user_pref("CT3072253.myStuffEnabled", true);

Found : user_pref("CT3072253.myStuffPublihserMinWidth", 400);

Found : user_pref("CT3072253.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]

Found : user_pref("CT3072253.myStuffServiceIntervalMM", 1440);

Found : user_pref("CT3072253.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]

Found : user_pref("CT3072253.navigateToUrlOnSearch", false);

Found : user_pref("CT3072253.oldAppsList", "129295695672325902,129571859753931591,111,129593762370823811,129[...]

Found : user_pref("CT3072253.revertSettingsEnabled", false);

Found : user_pref("CT3072253.searchProtectorDialogDelayInSec", 10);

Found : user_pref("CT3072253.searchProtectorEnableByLogin", true);

Found : user_pref("CT3072253.testingCtid", "");

Found : user_pref("CT3072253.toolbarAppMetaDataLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central D[...]

Found : user_pref("CT3072253.toolbarContextMenuLastCheckTime", "Wed Sep 05 2012 22:39:13 GMT-0500 (Central D[...]

Found : user_pref("CT3072253.usagesFlag", 2);

Found : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", [...]

Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253",[...]

Found : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"9df[...]

Found : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Sammerz93\\AppData\\Roaming\\Mozill[...]

Found : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");

Found : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.yahoo.com/search?fr=mcafee[...]

Found : user_pref("CommunityToolbar.ToolbarsList", "CT3072253");

Found : user_pref("CommunityToolbar.ToolbarsList2", "CT3072253");

Found : user_pref("CommunityToolbar.ToolbarsList4", "CT3072253");

Found : user_pref("CommunityToolbar.globalUserId", "33581b52-83e6-4d62-98de-6e1a78cc3eb9");

Found : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);

Found : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);

Found : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");

Found : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Sep 05 2012 22:39:1[...]

Found : user_pref("CommunityToolbar.notifications.alertEnabled", false);

Found : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");

Found : user_pref("CommunityToolbar.notifications.locale", "en");

Found : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);

Found : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Sep 06 2012 23:31:45 GMT-0500 (C[...]

Found : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");

Found : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);

Found : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");

Found : user_pref("CommunityToolbar.notifications.showTrayIcon", false);

Found : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);

Found : user_pref("CommunityToolbar.notifications.userId", "c1e8859f-bf6b-415a-bd0f-42de0de97113");

Found : user_pref("CommunityToolbar.originalHomepage", "hxxp://www.facebook.com/");

Found : user_pref("CommunityToolbar.originalSearchEngine", "Secure Search");

Found : user_pref("aol_toolbar.buttons.layout", "aol_mail_5496;facebook_40839;mapquest_40872;twitter_40883;w[...]

Found : user_pref("aol_toolbar.default.homepage.check", false);

Found : user_pref("aol_toolbar.default.search.check", false);

Found : user_pref("aol_toolbar.firsttime.showwindow", false);

Found : user_pref("aol_toolbar.guid", "{D14CCA73-0583-14DF-925A-B22E5E5415D7}");

Found : user_pref("aol_toolbar.install.distroid", "aol");

Found : user_pref("aol_toolbar.install.lastTbVersion", "5.74.1.8384");

Found : user_pref("aol_toolbar.install.lid", "hyplognew00000010");

Found : user_pref("aol_toolbar.install.mtmhp", "hyplogusaolp00000019");

Found : user_pref("aol_toolbar.install.ncid", "");

Found : user_pref("aol_toolbar.metrics.activestampdate", "9");

Found : user_pref("aol_toolbar.metrics.activestampmonth", "7");

Found : user_pref("aol_toolbar.metrics.activestampyear", "2012");

Found : user_pref("aol_toolbar.metrics.originalDate", "9");

Found : user_pref("aol_toolbar.metrics.originalHours", "5");

Found : user_pref("aol_toolbar.metrics.originalMinutes", "38");

Found : user_pref("aol_toolbar.metrics.originalMonth", "8");

Found : user_pref("aol_toolbar.metrics.originalSeconds", "50");

Found : user_pref("aol_toolbar.metrics.originalYear", "2012");

Found : user_pref("aol_toolbar.relatednews.enabled", false);

Found : user_pref("aol_toolbar.remote.publish.xml", "1344490730351");

Found : user_pref("aol_toolbar.rtw.active", false);

Found : user_pref("aol_toolbar.search.button", true);

Found : user_pref("aol_toolbar.search.cid", "09-08-2012");

Found : user_pref("aol_toolbar.search.instd", "20120809053553262");

Found : user_pref("aol_toolbar.search.oid", "09-08-2012");

Found : user_pref("aol_toolbar.search.placement", "right");

Found : user_pref("aol_toolbar.search.populateoncomplete", false);

Found : user_pref("aol_toolbar.search.savehistory", false);

Found : user_pref("aol_toolbar.search.searchtype", "web");

Found : user_pref("aol_toolbar.search.source", "tb50-ff-amonetizetest1");

Found : user_pref("aol_toolbar.skin.custom", false);

Found : user_pref("aol_toolbar.surf.date", "5");

Found : user_pref("aol_toolbar.surf.lastDate", "9");

Found : user_pref("aol_toolbar.surf.lastMonth", "7");

Found : user_pref("aol_toolbar.surf.lastYear", "2012");

Found : user_pref("aol_toolbar.surf.month", "5");

Found : user_pref("aol_toolbar.surf.prevMonth", "0");

Found : user_pref("aol_toolbar.surf.total", "5");

Found : user_pref("aol_toolbar.surf.week", "5");

Found : user_pref("aol_toolbar.surf.year", "5");

Found : user_pref("aol_toolbar.ticker.active", false);

Found : user_pref("aol_toolbar.upgrade.showwindow", false);

Found : user_pref("aol_toolbar.weather.degc", "24");

Found : user_pref("aol_toolbar.weather.degf", "76");

Found : user_pref("aol_toolbar.weather.image", "chrome://aoltoolbar/skin/weather/29_n.png");

Found : user_pref("aol_toolbar.weather.metric", true);

Found : user_pref("aol_toolbar.weather.tooltip", "New York , NY : Partly Cloudy");

Found : user_pref("aol_toolbar.weather.update", "1344490730485");

Found : user_pref("aol_toolbar.weather.zipcode", "10065");

Found : user_pref("extensions.funmoods.aflt", "nv1");

Found : user_pref("extensions.funmoods.autoRvrt", false);

Found : user_pref("extensions.funmoods.cntry", "US");

Found : user_pref("extensions.funmoods.dfltLng", "");

Found : user_pref("extensions.funmoods.dfltSrch", true);

Found : user_pref("extensions.funmoods.dnsErr", true);

Found : user_pref("extensions.funmoods.envrmnt", "production");

Found : user_pref("extensions.funmoods.excTlbr", false);

Found : user_pref("extensions.funmoods.hdrMd5", "14AF370693B1D9267471EB44E3E9420B");

Found : user_pref("extensions.funmoods.hmpg", true);

Found : user_pref("extensions.funmoods.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2[...]

Found : user_pref("extensions.funmoods.id", "c881a29c00000000000000266cea83ba");

Found : user_pref("extensions.funmoods.instlDay", "15520");

Found : user_pref("extensions.funmoods.instlRef", "nv1");

Found : user_pref("extensions.funmoods.isdcmntcmplt", true);

Found : user_pref("extensions.funmoods.lastVrsnTs", "1.5.23.2221:45:6");

Found : user_pref("extensions.funmoods.mntrvrsn", "1.3.0");

Found : user_pref("extensions.funmoods.newTab", true);

Found : user_pref("extensions.funmoods.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=nv1&chnl=nv1&cd=2XzutAt[...]

Found : user_pref("extensions.funmoods.prdct", "funmoods");

Found : user_pref("extensions.funmoods.prtnrId", "funmoods");

Found : user_pref("extensions.funmoods.sg", "none");

Found : user_pref("extensions.funmoods.smplGrp", "none");

Found : user_pref("extensions.funmoods.srchPrvdr", "Search");

Found : user_pref("extensions.funmoods.tlbrId", "base");

Found : user_pref("extensions.funmoods.tlbrSrchUrl", "");

Found : user_pref("extensions.funmoods.vrsn", "1.5.23.22");

Found : user_pref("extensions.funmoods.vrsnTs", "1.5.23.2221:45:6");

Found : user_pref("extensions.funmoods.vrsni", "1.5.23.22");

Found : user_pref("extensions.funmoods_i.newTab", true);

Found : user_pref("extensions.funmoods_i.smplGrp", "none");

Found : user_pref("extensions.funmoods_i.vrsnTs", "1.5.23.2221:45:6");

Found : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=[...]

-\\ Google Chrome v [unable to get version]

File : C:\Users\Sammerz93\AppData\Local\Google\Chrome\User Data\Default\Preferences

Found [l.3] : homepage = "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180",

Found [l.22] : search_url = "hxxp://start.funmoods.com/results.php?f=4&q={searchTerms}&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180",

*************************

AdwCleaner[R1].txt - [32549 octets] - [07/09/2012 14:42:25]

########## EOF - C:\AdwCleaner[R1].txt - [32610 octets] ##########

Malwarebytes Anti-Malware (Trial) 1.62.0.1300

www.malwarebytes.org

Database version: v2012.09.07.11

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 9.0.8112.16421

Sammerz93 :: SAMMERZ93-PC [administrator]

Protection: Enabled

9/7/2012 2:16:46 PM

mbam-log-2012-09-07 (14-16-46).txt

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 194935

Time elapsed: 2 minute(s), 2 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 0

(No malicious items detected)

Files Detected: 2

C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\00000008.@ (Trojan.Dropper.BCMiner) -> Quarantined and deleted successfully.

C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000000.@ (Rootkit.0Access.64) -> Quarantined and deleted successfully.

(end)

2012/09/07 00:24:41 -0500 SAMMERZ93-PC Sammerz93 DETECTION C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ Rootkit.0Access DENY

2012/09/07 00:45:33 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting protection

2012/09/07 00:45:35 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Protection started successfully

2012/09/07 00:45:38 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting IP protection

2012/09/07 00:45:38 -0500 SAMMERZ93-PC Sammerz93 ERROR IP protection failed: FwpmEngineOpen0 failed with error code 1753

2012/09/07 01:21:54 -0500 SAMMERZ93-PC Sammerz93 DETECTION C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ Rootkit.0Access QUARANTINE

2012/09/07 01:26:04 -0500 SAMMERZ93-PC Sammerz93 DETECTION C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ Rootkit.0Access DENY

2012/09/07 14:11:56 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting protection

2012/09/07 14:11:59 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Protection started successfully

2012/09/07 14:12:02 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting IP protection

2012/09/07 14:12:02 -0500 SAMMERZ93-PC Sammerz93 ERROR IP protection failed: FwpmEngineOpen0 failed with error code 1753

2012/09/07 14:13:16 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Executing scheduled update: Daily

2012/09/07 14:14:06 -0500 SAMMERZ93-PC Sammerz93 DETECTION C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ Rootkit.0Access QUARANTINE

2012/09/07 14:14:15 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting database refresh

2012/09/07 14:14:17 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Scheduled update executed successfully: database updated from version v2012.08.31.09 to version v2012.09.07.11

2012/09/07 14:14:17 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Database refreshed successfully

2012/09/07 14:18:54 -0500 SAMMERZ93-PC Sammerz93 DETECTION C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ Rootkit.0Access QUARANTINE

2012/09/07 14:24:10 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting protection

2012/09/07 14:24:12 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Protection started successfully

2012/09/07 14:24:15 -0500 SAMMERZ93-PC Sammerz93 MESSAGE Starting IP protection

2012/09/07 14:24:15 -0500 SAMMERZ93-PC Sammerz93 ERROR IP protection failed: FwpmEngineOpen0 failed with error code 1753

Farbar Service Scanner Version: 06-08-2012

Ran by Sammerz93 (administrator) on 07-09-2012 at 14:45:43

Running from "C:\Users\Sammerz93\Downloads"

Microsoft Windows 7 Home Premium Service Pack 1 (X64)

Boot Mode: Normal

****************************************************************

Internet Services:

============

Connection Status:

==============

Localhost is accessible.

LAN connected.

Google IP is accessible.

Google.com is accessible.

Yahoo IP is accessible.

Yahoo.com is accessible.

Windows Firewall:

=============

mpsdrv Service is not running. Checking service configuration:

The start type of mpsdrv service is OK.

The ImagePath of mpsdrv service is OK.

MpsSvc Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to retrieve start type of MpsSvc. The value does not exist.

Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of MpsSvc. The value does not exist.

Unable to retrieve ServiceDll of MpsSvc. The value does not exist.

bfe Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.

Checking ImagePath: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.

Checking ServiceDll: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.

Firewall Disabled Policy:

==================

System Restore:

============

System Restore Disabled Policy:

========================

Action Center:

============

wscsvc Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.

Checking ImagePath: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.

Checking ServiceDll: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.

Windows Update:

============

wuauserv Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.

Checking ImagePath: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.

Checking ServiceDll: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.

BITS Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.

Checking ImagePath: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.

Checking ServiceDll: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.

Windows Autoupdate Disabled Policy:

============================

Windows Defender:

==============

WinDefend Service is not running. Checking service configuration:

Checking Start type: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.

Checking ImagePath: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.

Checking ServiceDll: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.

Other Services:

==============

Checking Start type of SharedAccess: ATTENTION!=====> Unable to retrieve start type of SharedAccess. The value does not exist.

Checking ImagePath of SharedAccess: ATTENTION!=====> Unable to retrieve ImagePath of SharedAccess. The value does not exist.

Checking ServiceDll of SharedAccess: ATTENTION!=====> Unable to open SharedAccess registry key. The service key does not exist.

File Check:

========

C:\Windows\System32\nsisvc.dll => MD5 is legit

C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit

C:\Windows\System32\dhcpcore.dll => MD5 is legit

C:\Windows\System32\drivers\afd.sys => MD5 is legit

C:\Windows\System32\drivers\tdx.sys => MD5 is legit

C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit

C:\Windows\System32\dnsrslvr.dll => MD5 is legit

C:\Windows\System32\mpssvc.dll => MD5 is legit

C:\Windows\System32\bfe.dll => MD5 is legit

C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit

C:\Windows\System32\SDRSVC.dll => MD5 is legit

C:\Windows\System32\vssvc.exe => MD5 is legit

C:\Windows\System32\wscsvc.dll => MD5 is legit

C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit

C:\Windows\System32\wuaueng.dll => MD5 is legit

C:\Windows\System32\qmgr.dll => MD5 is legit

C:\Windows\System32\es.dll => MD5 is legit

C:\Windows\System32\cryptsvc.dll => MD5 is legit

C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\System32\rpcss.dll => MD5 is legit

**** End of log ****

.

DDS (Ver_2011-08-26.01) - NTFSAMD64

Internet Explorer: 9.0.8112.16421

Run by Sammerz93 at 14:47:21 on 2012-09-07

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4044.1628 [GMT -5:00]

.

AV: Norton Internet Security *Disabled/Outdated* {63DF5164-9100-186D-2187-8DC619EFD8BF}

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Norton Internet Security *Disabled/Outdated* {D8BEB080-B73A-17E3-1B37-B6B462689202}

FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

.

============== Running Processes ===============

.

C:\windows\system32\wininit.exe

C:\windows\system32\lsm.exe

C:\windows\system32\svchost.exe -k DcomLaunch

C:\windows\system32\svchost.exe -k RPCSS

C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k LocalService

C:\windows\system32\svchost.exe -k NetworkService

C:\windows\System32\spoolsv.exe

C:\windows\System32\svchost.exe -k LocalServiceNoNetwork

c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe

C:\windows\system32\rundll32.exe

C:\windows\system32\rundll32.exe

C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

C:\windows\SysWOW64\rundll32.exe

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

C:\windows\system32\svchost.exe -k imgsvc

C:\windows\system32\TODDSrv.exe

C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\windows\system32\taskhost.exe

C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

C:\windows\system32\Dwm.exe

C:\windows\Explorer.EXE

C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe

C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe

C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe

C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe

C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Windows\System32\StikyNot.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe

C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

C:\windows\system32\SearchIndexer.exe

C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Mozilla Firefox\firefox.exe

C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe

C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

C:\windows\SysWOW64\NOTEPAD.EXE

c:\PROGRA~2\mcafee\SITEAD~1\saui.exe

C:\windows\SysWOW64\NOTEPAD.EXE

C:\Program Files (x86)\VideoLAN\VLC\vlc.exe

C:\windows\system32\NOTEPAD.EXE

C:\windows\system32\wbem\wmiprvse.exe

C:\windows\system32\svchost.exe -k SDRSVC

C:\windows\system32\vssvc.exe

"C:\windows\SysWOW64\svchost.exe" -k LocalServiceDns

C:\windows\system32\DllHost.exe

C:\windows\system32\DllHost.exe

C:\windows\SysWOW64\cmd.exe

C:\windows\system32\conhost.exe

C:\windows\SysWOW64\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.facebook.com/

uDefault_Page_URL = hxxp://start.toshiba.com

mStart Page = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

uInternet Settings,ProxyOverride = <local>

uURLSearchHooks: H - No File

uURLSearchHooks: H - No File

mWinlogon: Userinit=userinit.exe,

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: AOL Toolbar Loader: {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

BHO: Price Check by AOL: {d25b97e9-62b2-40ce-becf-e43a7b879072} - C:\Program Files (x86)\Price Check by AOL\aolpricecheck.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO: TOSHIBA Media Controller Plug-in: {f3c88694-effa-4d78-b409-54b7b2535b14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll

BHO: Yontoo: {fd72061e-9fde-484d-a58a-0bab4151cad8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

TB: AOL Toolbar: {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

TB: {687578B9-7132-4A7A-80E4-30EE31099E03} - No File

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

uRun: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent

uRun: [Facebook Update] "C:\Users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe

mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60

mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED

mRun: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe"

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

LSP: mswsock.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab

TCP: DhcpNameServer = 66.253.230.60 66.253.230.210 68.234.128.70

TCP: Interfaces\{67B01EF4-8284-4691-A4A1-F13EEBF059C8} : DhcpNameServer = 192.168.33.1 75.75.75.75 75.75.76.76

TCP: Interfaces\{67B01EF4-8284-4691-A4A1-F13EEBF059C8}\2656C6B696E6E2362633E2765756374737 : DhcpNameServer = 192.168.169.1

TCP: Interfaces\{E52C985C-1EE6-42CE-921C-B87F114D0CF5} : DhcpNameServer = 66.253.230.60 66.253.230.210 68.234.128.70

Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll

Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO-X64: AcroIEHelperStub - No File

BHO-X64: AOL Toolbar Loader: {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

BHO-X64: AOL Toolbar Loader - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO-X64: SkypeIEPluginBHO - No File

BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

BHO-X64: Price Check by AOL: {D25B97E9-62B2-40CE-BECF-E43A7B879072} - C:\Program Files (x86)\Price Check by AOL\aolpricecheck.dll

BHO-X64: Price Check by AOL - No File

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO-X64: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll

BHO-X64: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll

BHO-X64: Yontoo Layers - No File

TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

TB-X64: AOL Toolbar: {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll

TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

TB-X64: {687578B9-7132-4A7A-80E4-30EE31099E03} - No File

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60

mRun-x64: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED

mRun-x64: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe"

mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\

FF - prefs.js: browser.search.selectedEngine - Google

FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/

FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=

FF - prefs.js: network.proxy.type - 0

FF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL

FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll

FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll

FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Users\Sammerz93\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll

FF - plugin: C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}\plugins\np-mswmp.dll

FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll

.

---- FIREFOX POLICIES ----

FF - user.js: extensions.funmoods.hmpg - true

FF - user.js: extensions.funmoods.hmpgUrl - hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

FF - user.js: extensions.funmoods.dfltSrch - true

FF - user.js: extensions.funmoods.srchPrvdr - Search

FF - user.js: extensions.funmoods.dnsErr - true

FF - user.js: extensions.funmoods_i.newTab - true

FF - user.js: extensions.funmoods.newTabUrl - hxxp://start.funmoods.com/?f=2&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180

FF - user.js: extensions.funmoods.tlbrSrchUrl -

FF - user.js: extensions.funmoods.id - c881a29c00000000000000266cea83ba

FF - user.js: extensions.funmoods.instlDay - 15520

FF - user.js: extensions.funmoods.vrsn - 1.5.23.22

FF - user.js: extensions.funmoods.vrsni - 1.5.23.22

FF - user.js: extensions.funmoods_i.vrsnTs - 1.5.23.2221:45:6

FF - user.js: extensions.funmoods.prtnrId - funmoods

FF - user.js: extensions.funmoods.prdct - funmoods

FF - user.js: extensions.funmoods.aflt - nv1

FF - user.js: extensions.funmoods_i.smplGrp - none

FF - user.js: extensions.funmoods.tlbrId - base

FF - user.js: extensions.funmoods.instlRef - nv1

FF - user.js: extensions.funmoods.dfltLng -

FF - user.js: extensions.funmoods.excTlbr - false

FF - user.js: extensions.funmoods.autoRvrt - false

FF - user.js: extensions.funmoods.envrmnt - production

FF - user.js: extensions.funmoods.isdcmntcmplt - true

FF - user.js: extensions.funmoods.mntrvrsn - 1.3.0

FF - user.js: extentions.y2layers.installId - b8442a97-1e2d-4f1a-a4d1-886a76047e29

FF - user.js: extentions.y2layers.defaultEnableAppsList - twittube,ezLooker,pagerage,buzzdock,toprelatedtopics

.

FF - user.js: extensions.autoDisableScopes - 14

FF - user.js: network.protocol-handler.warn-external.dnupdate - false

FF - user.js: browser.sessionstore.resume_from_crash - false

.

============= SERVICES / DRIVERS ===============

.

R0 tos_sps64;TOSHIBA tos_sps64 Service;C:\windows\system32\DRIVERS\tos_sps64.sys --> C:\windows\system32\DRIVERS\tos_sps64.sys [?]

R1 vwififlt;Virtual WiFi Filter Driver;C:\windows\system32\DRIVERS\vwififlt.sys --> C:\windows\system32\DRIVERS\vwififlt.sys [?]

R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-8-31 655944]

R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [2012-6-12 103440]

R2 PCCUJobMgr;Common Client Job Manager Service;C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe [2011-12-14 126392]

R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-12-14 2656280]

R3 FwLnk;FwLnk Driver;C:\windows\system32\DRIVERS\FwLnk.sys --> C:\windows\system32\DRIVERS\FwLnk.sys [?]

R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\windows\system32\DRIVERS\L1C62x64.sys --> C:\windows\system32\DRIVERS\L1C62x64.sys [?]

R3 MBAMProtector;MBAMProtector;\??\C:\windows\system32\drivers\mbam.sys --> C:\windows\system32\drivers\mbam.sys [?]

R3 MEIx64;Intel® Management Engine Interface;C:\windows\system32\DRIVERS\HECIx64.sys --> C:\windows\system32\DRIVERS\HECIx64.sys [?]

R3 PGEffect;Pangu effect driver;C:\windows\system32\DRIVERS\pgeffect.sys --> C:\windows\system32\DRIVERS\pgeffect.sys [?]

R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\windows\system32\DRIVERS\rtl8192Ce.sys --> C:\windows\system32\DRIVERS\rtl8192Ce.sys [?]

R3 Sftfs;Sftfs;C:\windows\system32\DRIVERS\Sftfslh.sys --> C:\windows\system32\DRIVERS\Sftfslh.sys [?]

R3 Sftplay;Sftplay;C:\windows\system32\DRIVERS\Sftplaylh.sys --> C:\windows\system32\DRIVERS\Sftplaylh.sys [?]

R3 Sftredir;Sftredir;C:\windows\system32\DRIVERS\Sftredirlh.sys --> C:\windows\system32\DRIVERS\Sftredirlh.sys [?]

R3 Sftvol;Sftvol;C:\windows\system32\DRIVERS\Sftvollh.sys --> C:\windows\system32\DRIVERS\Sftvollh.sys [?]

R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]

R3 TMachInfo;TMachInfo;C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-12-14 57216]

R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2011-6-9 138152]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\windows\system32\DRIVERS\vwifimp.sys --> C:\windows\system32\DRIVERS\vwifimp.sys [?]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-3 160944]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-20 250568]

S3 EraserUtilDrv11210;EraserUtilDrv11210;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11210.sys [2012-8-15 138912]

S3 EraserUtilDrv11220;EraserUtilDrv11220;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys [2012-8-29 138912]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-2-15 138360]

S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe [2011-6-17 237008]

S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-15 113120]

S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]

S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\system32\Drivers\RtsUStor.sys --> C:\windows\system32\Drivers\RtsUStor.sys [?]

S3 TsUsbFlt;TsUsbFlt;C:\windows\system32\drivers\tsusbflt.sys --> C:\windows\system32\drivers\tsusbflt.sys [?]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\system32\drivers\TsUsbGD.sys --> C:\windows\system32\drivers\TsUsbGD.sys [?]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\system32\Wat\WatAdminSvc.exe --> C:\windows\system32\Wat\WatAdminSvc.exe [?]

S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]

.

=============== Created Last 30 ================

.

2012-09-06 03:44:45 -------- d-----w- C:\Users\Sammerz93\AppData\Local\{178C6F08-5CCC-417C-B0B6-7E4048D17BAD}

2012-09-04 21:15:36 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Microsoft Games

2012-08-31 19:35:50 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\PCPro

2012-08-31 19:35:50 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\PC Cleaners

2012-08-31 19:35:49 4269368 ----a-w- C:\windows\uninst.exe

2012-08-31 19:35:49 -------- d-----w- C:\ProgramData\PC1Data

2012-08-31 15:13:16 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\Malwarebytes

2012-08-31 15:13:03 24904 ----a-w- C:\windows\System32\drivers\mbam.sys

2012-08-31 15:13:03 -------- d-----w- C:\ProgramData\Malwarebytes

2012-08-31 15:13:03 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2012-08-30 20:27:27 -------- d-----w- C:\Users\Sammerz93\AppData\Local\ElevatedDiagnostics

2012-08-30 04:29:57 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Chromium

2012-08-26 19:43:20 -------- d-----w- C:\Users\Sammerz93\AppData\Local\NPE

2012-08-26 19:19:56 27256 ----a-w- C:\windows\System32\drivers\FixZeroAccess.sys

2012-08-21 04:15:57 -------- d-----w- C:\Users\Sammerz93\AppData\Roaming\Stellarium

2012-08-21 04:15:35 -------- d-----w- C:\Program Files (x86)\Stellarium

2012-08-15 19:18:23 -------- d-----w- C:\Program Files\STOPzilla!

2012-08-10 01:04:27 -------- d-----w- C:\Users\Sammerz93\AppData\Local\Price Check by AOL

2012-08-10 01:04:23 -------- d-----w- C:\Users\Sammerz93\AppData\Local\AOL Toolbar

2012-08-09 09:50:55 -------- d-sh--w- C:\windows\SysWow64\%APPDATA%

2012-08-09 05:40:54 -------- d-----w- C:\Users\Sammerz93\.swt

2012-08-09 05:38:48 -------- d-----w- C:\Program Files (x86)\Vuze

2012-08-09 05:36:18 -------- d-----w- C:\ProgramData\Price Check by AOL

2012-08-09 05:36:18 -------- d-----w- C:\Program Files (x86)\Price Check by AOL

2012-08-09 05:36:05 -------- d-----w- C:\ProgramData\AOL Toolbar

2012-08-09 05:36:05 -------- d-----w- C:\Program Files (x86)\AOL Toolbar

2012-08-09 05:35:54 -------- d-----w- C:\Program Files (x86)\Common Files\Software Update Utility

2012-08-09 05:35:23 -------- d-----w- C:\Program Files (x86)\BTJunkie Downloader

.

==================== Find3M ====================

.

2012-08-23 20:08:05 73416 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl

2012-08-23 20:08:05 696520 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe

2012-06-12 03:08:36 3148800 ----a-w- C:\windows\System32\win32k.sys

.

============= FINISH: 14:47:55.36 ===============

Link to post
Share on other sites

BACKDOOR WARNING

One or more of the identified infections is known to use a backdoor.

This allows hackers to remotely control your computer, steal critical system information and download and execute files.

I would advice you to disconnect this PC from the Internet immediately. If you do any banking or other financial transactions on the PC or if it should contain any other sensitive information, please get to a known clean computer and change all passwords where applicable, and it would be wise to contact those same financial institutions to apprise them of your situation.

Though the infection has been identified and can be killed, because of it's backdoor functionality, your PC is very likely compromised and there is no way to be sure your computer can ever again be trusted. Many experts in the security community believe that once infected with this type of trojan, the best course of action would be a reformat and reinstall of the OS. Please read these for more information:

Help: I Got Hacked. Now What Do I Do?

Help: I Got Hacked. Now What Do I Do? Part II

How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud?

When Should I Format, How Should I Reinstall

We can still clean this machine but I can't guarantee that it will be 100% secure afterwards. Let me know what you decide to do. If you decide to go through with the cleanup, please proceed with the following steps.

Step 1

  1. Please re-run AdwCleaner
  2. Click on Delete button.
  3. Confirm each time with OK.
  4. Your computer will be rebooted automatically. A text file will open after the restart. Please post the content of that logfile in your reply.

Note: You can find the logfile at C:\AdwCleaner[sn].txt as well - n is the order number.

Step 2

Please download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
    image000q.png
  • Put a checkmark beside loaded modules.
    2012081514h0118.png
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.
    2012081517h0349.png
  • Click the Start Scan button.
    19695967.jpg
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.
    67776163.jpg
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    62117367.jpg
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.

In your next reply, post the following log files:

  • AdwCleaner log
  • TDSSKiller log

Link to post
Share on other sites

When I did the TDSS Killer after the scan it showed no threats? So do I just skip all the directions after that?

Here are the logs:

19:11:08.0325 2368 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48

19:11:08.0637 2368 ============================================================

19:11:08.0637 2368 Current date / time: 2012/09/09 19:11:08.0637

19:11:08.0637 2368 SystemInfo:

19:11:08.0653 2368

19:11:08.0653 2368 OS Version: 6.1.7601 ServicePack: 1.0

19:11:08.0653 2368 Product type: Workstation

19:11:08.0653 2368 ComputerName: SAMMERZ93-PC

19:11:08.0653 2368 UserName: Sammerz93

19:11:08.0653 2368 Windows directory: C:\windows

19:11:08.0653 2368 System windows directory: C:\windows

19:11:08.0653 2368 Running under WOW64

19:11:08.0653 2368 Processor architecture: Intel x64

19:11:08.0653 2368 Number of processors: 2

19:11:08.0653 2368 Page size: 0x1000

19:11:08.0653 2368 Boot type: Normal boot

19:11:08.0653 2368 ============================================================

19:11:13.0265 2368 BG loaded

19:11:14.0669 2368 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

19:11:14.0669 2368 ============================================================

19:11:14.0669 2368 \Device\Harddisk0\DR0:

19:11:14.0669 2368 MBR partitions:

19:11:14.0669 2368 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x235E9800

19:11:14.0669 2368 ============================================================

19:11:14.0810 2368 C: <-> \Device\Harddisk0\DR0\Partition1

19:11:14.0810 2368 ============================================================

19:11:14.0810 2368 Initialize success

19:11:14.0810 2368 ============================================================

19:11:44.0892 3108 ============================================================

19:11:44.0892 3108 Scan started

19:11:44.0892 3108 Mode: Manual; SigCheck; TDLFS;

19:11:44.0892 3108 ============================================================

19:11:46.0062 3108 ================ Scan system memory ========================

19:11:46.0062 3108 System memory - ok

19:11:46.0062 3108 ================ Scan services =============================

19:11:46.0281 3108 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys

19:11:51.0023 3108 1394ohci - ok

19:11:51.0054 3108 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys

19:11:51.0117 3108 ACPI - ok

19:11:51.0195 3108 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys

19:11:51.0335 3108 AcpiPmi - ok

19:11:51.0476 3108 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

19:11:51.0507 3108 AdobeFlashPlayerUpdateSvc - ok

19:11:51.0585 3108 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\drivers\adp94xx.sys

19:11:51.0616 3108 adp94xx - ok

19:11:51.0678 3108 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\drivers\adpahci.sys

19:11:51.0694 3108 adpahci - ok

19:11:51.0725 3108 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\drivers\adpu320.sys

19:11:51.0725 3108 adpu320 - ok

19:11:51.0772 3108 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll

19:11:52.0068 3108 AeLookupSvc - ok

19:11:52.0209 3108 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys

19:11:52.0334 3108 AFD - ok

19:11:52.0412 3108 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys

19:11:52.0427 3108 agp440 - ok

19:11:52.0490 3108 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe

19:11:52.0599 3108 ALG - ok

19:11:52.0661 3108 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys

19:11:52.0677 3108 aliide - ok

19:11:52.0708 3108 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys

19:11:52.0724 3108 amdide - ok

19:11:52.0755 3108 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\drivers\amdk8.sys

19:11:52.0786 3108 AmdK8 - ok

19:11:52.0817 3108 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\drivers\amdppm.sys

19:11:52.0880 3108 AmdPPM - ok

19:11:52.0989 3108 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys

19:11:53.0020 3108 amdsata - ok

19:11:53.0082 3108 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\drivers\amdsbs.sys

19:11:53.0114 3108 amdsbs - ok

19:11:53.0238 3108 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys

19:11:53.0270 3108 amdxata - ok

19:11:53.0316 3108 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys

19:11:54.0222 3108 AppID - ok

19:11:54.0285 3108 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll

19:11:54.0363 3108 AppIDSvc - ok

19:11:54.0425 3108 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll

19:11:54.0487 3108 Appinfo - ok

19:11:54.0565 3108 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\drivers\arc.sys

19:11:54.0581 3108 arc - ok

19:11:54.0721 3108 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\drivers\arcsas.sys

19:11:54.0737 3108 arcsas - ok

19:11:54.0924 3108 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys

19:11:55.0033 3108 AsyncMac - ok

19:11:55.0174 3108 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys

19:11:55.0189 3108 atapi - ok

19:11:55.0236 3108 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll

19:11:55.0330 3108 AudioEndpointBuilder - ok

19:11:55.0330 3108 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll

19:11:55.0377 3108 AudioSrv - ok

19:11:55.0577 3108 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll

19:11:55.0747 3108 AxInstSV - ok

19:11:55.0887 3108 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys

19:11:55.0992 3108 b06bdrv - ok

19:11:56.0127 3108 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys

19:11:56.0187 3108 b57nd60a - ok

19:11:56.0212 3108 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll

19:11:56.0507 3108 BDESVC - ok

19:11:56.0592 3108 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys

19:11:56.0652 3108 Beep - ok

19:11:56.0802 3108 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys

19:11:56.0832 3108 blbdrive - ok

19:11:56.0882 3108 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys

19:11:56.0987 3108 bowser - ok

19:11:57.0027 3108 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys

19:11:57.0092 3108 BrFiltLo - ok

19:11:57.0122 3108 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys

19:11:57.0142 3108 BrFiltUp - ok

19:11:57.0187 3108 [ 8EF0D5C41EC907751B8429162B1239ED ] Browser C:\windows\System32\browser.dll

19:11:57.0272 3108 Browser - ok

19:11:57.0337 3108 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys

19:11:57.0612 3108 Brserid - ok

19:11:57.0702 3108 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys

19:11:57.0742 3108 BrSerWdm - ok

19:11:57.0902 3108 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys

19:11:57.0957 3108 BrUsbMdm - ok

19:11:57.0992 3108 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys

19:11:58.0077 3108 BrUsbSer - ok

19:11:58.0112 3108 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys

19:11:58.0197 3108 BTHMODEM - ok

19:11:58.0272 3108 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll

19:11:58.0322 3108 bthserv - ok

19:11:58.0427 3108 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys

19:11:58.0507 3108 cdfs - ok

19:11:58.0542 3108 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys

19:11:58.0577 3108 cdrom - ok

19:11:58.0632 3108 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll

19:11:58.0712 3108 CertPropSvc - ok

19:11:58.0802 3108 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\drivers\circlass.sys

19:11:58.0857 3108 circlass - ok

19:11:59.0002 3108 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys

19:11:59.0017 3108 CLFS - ok

19:11:59.0187 3108 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

19:11:59.0247 3108 clr_optimization_v2.0.50727_32 - ok

19:11:59.0342 3108 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

19:11:59.0362 3108 clr_optimization_v2.0.50727_64 - ok

19:11:59.0447 3108 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

19:11:59.0507 3108 clr_optimization_v4.0.30319_32 - ok

19:11:59.0617 3108 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

19:11:59.0632 3108 clr_optimization_v4.0.30319_64 - ok

19:11:59.0677 3108 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys

19:11:59.0757 3108 CmBatt - ok

19:11:59.0772 3108 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys

19:11:59.0782 3108 cmdide - ok

19:11:59.0852 3108 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys

19:11:59.0897 3108 CNG - ok

19:12:00.0082 3108 [ A260BE645DD096D90318C8CF98536720 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys

19:12:00.0137 3108 CnxtHdAudService - ok

19:12:00.0202 3108 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\drivers\compbatt.sys

19:12:00.0207 3108 Compbatt - ok

19:12:00.0227 3108 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys

19:12:00.0277 3108 CompositeBus - ok

19:12:00.0297 3108 COMSysApp - ok

19:12:00.0337 3108 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\drivers\crcdisk.sys

19:12:00.0347 3108 crcdisk - ok

19:12:00.0527 3108 [ 4F5414602E2544A4554D95517948B705 ] CryptSvc C:\windows\system32\cryptsvc.dll

19:12:00.0917 3108 CryptSvc - ok

19:12:01.0387 3108 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

19:12:01.0412 3108 cvhsvc - ok

19:12:01.0607 3108 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll

19:12:01.0802 3108 DcomLaunch - ok

19:12:01.0927 3108 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll

19:12:02.0017 3108 defragsvc - ok

19:12:02.0067 3108 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys

19:12:02.0142 3108 DfsC - ok

19:12:02.0257 3108 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll

19:12:02.0382 3108 Dhcp - ok

19:12:02.0467 3108 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys

19:12:02.0557 3108 discache - ok

19:12:02.0627 3108 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\drivers\disk.sys

19:12:02.0637 3108 Disk - ok

19:12:02.0712 3108 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll

19:12:02.0792 3108 Dnscache - ok

19:12:02.0897 3108 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll

19:12:02.0992 3108 dot3svc - ok

19:12:03.0152 3108 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll

19:12:03.0222 3108 DPS - ok

19:12:03.0457 3108 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys

19:12:03.0487 3108 drmkaud - ok

19:12:03.0622 3108 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys

19:12:03.0657 3108 DXGKrnl - ok

19:12:03.0767 3108 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll

19:12:03.0837 3108 EapHost - ok

19:12:04.0192 3108 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\drivers\evbda.sys

19:12:04.0302 3108 ebdrv - ok

19:12:04.0557 3108 [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys

19:12:04.0722 3108 eeCtrl - ok

19:12:04.0762 3108 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe

19:12:04.0917 3108 EFS - ok

19:12:05.0197 3108 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe

19:12:05.0517 3108 ehRecvr - ok

19:12:05.0587 3108 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe

19:12:05.0617 3108 ehSched - ok

19:12:05.0757 3108 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\drivers\elxstor.sys

19:12:05.0787 3108 elxstor - ok

19:12:05.0997 3108 [ 1343DF3451BC0C442DC69837C6FBA21B ] EraserUtilDrv11210 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11210.sys

19:12:06.0022 3108 EraserUtilDrv11210 - ok

19:12:06.0397 3108 [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilDrv11220 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys

19:12:06.0422 3108 EraserUtilDrv11220 - ok

19:12:06.0502 3108 [ 8C0F9B877BC0B7FFD327EF55F9EFB642 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys

19:12:06.0522 3108 EraserUtilRebootDrv - ok

19:12:06.0552 3108 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys

19:12:06.0582 3108 ErrDev - ok

19:12:06.0757 3108 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll

19:12:06.0847 3108 EventSystem - ok

19:12:06.0907 3108 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys

19:12:06.0942 3108 exfat - ok

19:12:07.0017 3108 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys

19:12:07.0072 3108 fastfat - ok

19:12:07.0157 3108 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe

19:12:07.0267 3108 Fax - ok

19:12:07.0292 3108 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\drivers\fdc.sys

19:12:07.0317 3108 fdc - ok

19:12:07.0367 3108 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll

19:12:07.0442 3108 fdPHost - ok

19:12:07.0622 3108 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll

19:12:07.0702 3108 FDResPub - ok

19:12:07.0772 3108 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys

19:12:07.0782 3108 FileInfo - ok

19:12:07.0782 3108 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys

19:12:07.0887 3108 Filetrace - ok

19:12:08.0087 3108 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\drivers\flpydisk.sys

19:12:08.0107 3108 flpydisk - ok

19:12:08.0157 3108 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys

19:12:08.0172 3108 FltMgr - ok

19:12:08.0332 3108 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll

19:12:08.0412 3108 FontCache - ok

19:12:08.0467 3108 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

19:12:08.0477 3108 FontCache3.0.0.0 - ok

19:12:08.0507 3108 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys

19:12:08.0517 3108 FsDepends - ok

19:12:08.0567 3108 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys

19:12:08.0577 3108 Fs_Rec - ok

19:12:08.0712 3108 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys

19:12:08.0732 3108 fvevol - ok

19:12:08.0767 3108 [ 60ACB128E64C35C2B4E4AAB1B0A5C293 ] FwLnk C:\windows\system32\DRIVERS\FwLnk.sys

19:12:08.0832 3108 FwLnk - ok

19:12:08.0922 3108 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys

19:12:08.0937 3108 gagp30kx - ok

19:12:09.0257 3108 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

19:12:09.0272 3108 GamesAppService - ok

19:12:09.0437 3108 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll

19:12:09.0487 3108 gpsvc - ok

19:12:09.0622 3108 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:12:09.0642 3108 gupdate - ok

19:12:09.0677 3108 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:12:09.0697 3108 gupdatem - ok

19:12:09.0712 3108 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

19:12:09.0777 3108 gusvc - ok

19:12:09.0817 3108 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys

19:12:09.0867 3108 hcw85cir - ok

19:12:09.0942 3108 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys

19:12:10.0052 3108 HdAudAddService - ok

19:12:10.0107 3108 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys

19:12:10.0197 3108 HDAudBus - ok

19:12:10.0237 3108 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\drivers\HidBatt.sys

19:12:10.0322 3108 HidBatt - ok

Link to post
Share on other sites

19:12:10.0362 3108 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\drivers\hidbth.sys

19:12:10.0422 3108 HidBth - ok

19:12:10.0472 3108 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\drivers\hidir.sys

19:12:10.0512 3108 HidIr - ok

19:12:10.0557 3108 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll

19:12:10.0662 3108 hidserv - ok

19:12:10.0757 3108 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\drivers\hidusb.sys

19:12:10.0787 3108 HidUsb - ok

19:12:10.0842 3108 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll

19:12:10.0922 3108 hkmsvc - ok

19:12:11.0062 3108 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll

19:12:11.0137 3108 HomeGroupListener - ok

19:12:11.0172 3108 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll

19:12:11.0212 3108 HomeGroupProvider - ok

19:12:11.0272 3108 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys

19:12:11.0282 3108 HpSAMD - ok

19:12:11.0357 3108 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys

19:12:11.0422 3108 HTTP - ok

19:12:11.0422 3108 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys

19:12:11.0437 3108 hwpolicy - ok

19:12:11.0527 3108 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys

19:12:11.0557 3108 i8042prt - ok

19:12:11.0682 3108 [ D7921D5A870B11CC1ADAB198A519D50A ] iaStor C:\windows\system32\DRIVERS\iaStor.sys

19:12:11.0697 3108 iaStor - ok

19:12:11.0757 3108 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys

19:12:11.0772 3108 iaStorV - ok

19:12:11.0872 3108 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

19:12:11.0897 3108 idsvc - ok

19:12:13.0232 3108 [ 370C2A8629B30F910F740387795DDC6F ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys

19:12:13.0412 3108 igfx - ok

19:12:13.0452 3108 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\drivers\iirsp.sys

19:12:13.0467 3108 iirsp - ok

19:12:13.0647 3108 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll

19:12:13.0802 3108 IKEEXT - ok

19:12:13.0832 3108 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys

19:12:13.0842 3108 intelide - ok

19:12:13.0962 3108 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys

19:12:14.0022 3108 intelppm - ok

19:12:14.0087 3108 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll

19:12:14.0182 3108 IPBusEnum - ok

19:12:14.0242 3108 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys

19:12:14.0287 3108 IpFilterDriver - ok

19:12:14.0307 3108 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys

19:12:14.0337 3108 IPMIDRV - ok

19:12:14.0352 3108 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys

19:12:14.0417 3108 IPNAT - ok

19:12:14.0477 3108 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys

19:12:14.0512 3108 IRENUM - ok

19:12:14.0552 3108 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys

19:12:14.0577 3108 isapnp - ok

19:12:14.0622 3108 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys

19:12:14.0642 3108 iScsiPrt - ok

19:12:14.0677 3108 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys

19:12:14.0702 3108 kbdclass - ok

19:12:14.0767 3108 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys

19:12:14.0792 3108 kbdhid - ok

19:12:14.0822 3108 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe

19:12:14.0832 3108 KeyIso - ok

19:12:14.0852 3108 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys

19:12:14.0862 3108 KSecDD - ok

19:12:14.0892 3108 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys

19:12:14.0902 3108 KSecPkg - ok

19:12:14.0947 3108 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys

19:12:14.0997 3108 ksthunk - ok

19:12:15.0032 3108 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll

19:12:15.0087 3108 KtmRm - ok

19:12:15.0127 3108 [ 045FB70BC993B691517CE309045FF02D ] L1C C:\windows\system32\DRIVERS\L1C62x64.sys

19:12:15.0137 3108 L1C - ok

19:12:15.0192 3108 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll

19:12:15.0262 3108 LanmanServer - ok

19:12:15.0292 3108 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll

19:12:15.0337 3108 LanmanWorkstation - ok

19:12:15.0367 3108 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys

19:12:15.0417 3108 lltdio - ok

19:12:15.0467 3108 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll

19:12:15.0517 3108 lltdsvc - ok

19:12:15.0532 3108 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll

19:12:15.0567 3108 lmhosts - ok

19:12:15.0617 3108 [ 98B16E756243BEA9410E32025B19C06F ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

19:12:15.0632 3108 LMS - ok

19:12:15.0657 3108 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys

19:12:15.0667 3108 LSI_FC - ok

19:12:15.0692 3108 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys

19:12:15.0702 3108 LSI_SAS - ok

19:12:15.0717 3108 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys

19:12:15.0727 3108 LSI_SAS2 - ok

19:12:15.0742 3108 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys

19:12:15.0757 3108 LSI_SCSI - ok

19:12:15.0782 3108 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys

19:12:15.0832 3108 luafv - ok

19:12:15.0877 3108 [ DC8490812A3B72811AE534F423B4C206 ] MBAMProtector C:\windows\system32\drivers\mbam.sys

19:12:15.0887 3108 MBAMProtector - ok

19:12:15.0965 3108 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

19:12:15.0992 3108 MBAMService - ok

19:12:16.0086 3108 [ BE8C524313DB75FA26FB2B0C0AAFF88E ] McAfee SiteAdvisor Service c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe

19:12:16.0111 3108 McAfee SiteAdvisor Service - ok

19:12:16.0171 3108 [ 22A7776C5D8EB5930EDF9C8DD0884259 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe

19:12:16.0186 3108 McComponentHostService - ok

19:12:16.0211 3108 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll

19:12:16.0226 3108 Mcx2Svc - ok

19:12:16.0254 3108 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\drivers\megasas.sys

19:12:16.0265 3108 megasas - ok

19:12:16.0298 3108 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\drivers\MegaSR.sys

19:12:16.0313 3108 MegaSR - ok

19:12:16.0349 3108 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys

19:12:16.0354 3108 MEIx64 - ok

19:12:16.0389 3108 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll

19:12:16.0459 3108 MMCSS - ok

19:12:16.0459 3108 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys

19:12:16.0504 3108 Modem - ok

19:12:16.0549 3108 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys

19:12:16.0574 3108 monitor - ok

19:12:16.0594 3108 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys

19:12:16.0604 3108 mouclass - ok

19:12:16.0629 3108 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\drivers\mouhid.sys

19:12:16.0654 3108 mouhid - ok

19:12:16.0659 3108 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys

19:12:16.0669 3108 mountmgr - ok

19:12:16.0744 3108 [ 15D5398EED42C2504BB3D4FC875C15D1 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

19:12:16.0754 3108 MozillaMaintenance - ok

19:12:16.0774 3108 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys

19:12:16.0784 3108 mpio - ok

19:12:16.0804 3108 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys

19:12:16.0839 3108 mpsdrv - ok

19:12:16.0864 3108 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys

19:12:16.0894 3108 MRxDAV - ok

19:12:16.0899 3108 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys

19:12:16.0929 3108 mrxsmb - ok

19:12:16.0934 3108 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys

19:12:16.0949 3108 mrxsmb10 - ok

19:12:16.0959 3108 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys

19:12:16.0969 3108 mrxsmb20 - ok

19:12:16.0989 3108 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\DRIVERS\msahci.sys

19:12:16.0999 3108 msahci - ok

19:12:17.0014 3108 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys

19:12:17.0024 3108 msdsm - ok

19:12:17.0039 3108 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe

19:12:17.0064 3108 MSDTC - ok

19:12:17.0069 3108 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys

19:12:17.0099 3108 Msfs - ok

19:12:17.0114 3108 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys

19:12:17.0164 3108 mshidkmdf - ok

19:12:17.0184 3108 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys

19:12:17.0189 3108 msisadrv - ok

19:12:17.0224 3108 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll

19:12:17.0279 3108 MSiSCSI - ok

19:12:17.0284 3108 msiserver - ok

19:12:17.0324 3108 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys

19:12:17.0369 3108 MSKSSRV - ok

19:12:17.0384 3108 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys

19:12:17.0429 3108 MSPCLOCK - ok

19:12:17.0449 3108 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys

19:12:17.0514 3108 MSPQM - ok

19:12:17.0544 3108 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys

19:12:17.0559 3108 MsRPC - ok

19:12:17.0589 3108 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys

19:12:17.0599 3108 mssmbios - ok

19:12:17.0624 3108 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys

19:12:17.0679 3108 MSTEE - ok

19:12:17.0699 3108 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\drivers\MTConfig.sys

19:12:17.0709 3108 MTConfig - ok

19:12:17.0709 3108 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys

19:12:17.0719 3108 Mup - ok

19:12:17.0769 3108 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll

19:12:17.0829 3108 napagent - ok

19:12:17.0879 3108 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys

19:12:17.0919 3108 NativeWifiP - ok

19:12:17.0959 3108 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\windows\system32\drivers\ndis.sys

19:12:17.0979 3108 NDIS - ok

19:12:18.0039 3108 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys

19:12:18.0069 3108 NdisCap - ok

19:12:18.0099 3108 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys

19:12:18.0139 3108 NdisTapi - ok

19:12:18.0149 3108 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys

19:12:18.0199 3108 Ndisuio - ok

19:12:18.0209 3108 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys

19:12:18.0249 3108 NdisWan - ok

19:12:18.0269 3108 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys

19:12:18.0299 3108 NDProxy - ok

19:12:18.0309 3108 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys

19:12:18.0349 3108 NetBIOS - ok

19:12:18.0369 3108 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys

19:12:18.0399 3108 NetBT - ok

19:12:18.0419 3108 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe

19:12:18.0429 3108 Netlogon - ok

19:12:18.0449 3108 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll

19:12:18.0499 3108 Netman - ok

19:12:18.0509 3108 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll

19:12:18.0549 3108 netprofm - ok

19:12:18.0579 3108 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

19:12:18.0589 3108 NetTcpPortSharing - ok

19:12:18.0629 3108 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys

19:12:18.0639 3108 nfrd960 - ok

19:12:18.0689 3108 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\windows\System32\nlasvc.dll

19:12:18.0739 3108 NlaSvc - ok

19:12:18.0759 3108 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys

19:12:18.0789 3108 Npfs - ok

19:12:18.0809 3108 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll

19:12:18.0849 3108 nsi - ok

19:12:18.0869 3108 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys

19:12:18.0909 3108 nsiproxy - ok

19:12:18.0959 3108 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\windows\system32\drivers\Ntfs.sys

19:12:18.0999 3108 Ntfs - ok

19:12:19.0009 3108 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys

19:12:19.0039 3108 Null - ok

19:12:19.0059 3108 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys

19:12:19.0069 3108 nvraid - ok

19:12:19.0099 3108 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys

19:12:19.0109 3108 nvstor - ok

19:12:19.0119 3108 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys

19:12:19.0129 3108 nv_agp - ok

19:12:19.0149 3108 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys

19:12:19.0159 3108 ohci1394 - ok

19:12:19.0209 3108 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

19:12:19.0219 3108 ose - ok

19:12:19.0359 3108 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

19:12:19.0539 3108 osppsvc - ok

19:12:19.0569 3108 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll

19:12:19.0609 3108 p2pimsvc - ok

19:12:19.0629 3108 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll

19:12:19.0639 3108 p2psvc - ok

19:12:19.0669 3108 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\drivers\parport.sys

19:12:19.0689 3108 Parport - ok

19:12:19.0709 3108 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys

19:12:19.0719 3108 partmgr - ok

19:12:19.0739 3108 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll

19:12:19.0769 3108 PcaSvc - ok

19:12:19.0829 3108 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

19:12:19.0839 3108 PCCUJobMgr - ok

19:12:19.0869 3108 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys

19:12:19.0879 3108 pci - ok

19:12:19.0879 3108 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\DRIVERS\pciide.sys

19:12:19.0889 3108 pciide - ok

19:12:19.0909 3108 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\drivers\pcmcia.sys

19:12:19.0929 3108 pcmcia - ok

19:12:19.0929 3108 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys

19:12:19.0939 3108 pcw - ok

19:12:19.0959 3108 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys

19:12:20.0009 3108 PEAUTH - ok

19:12:20.0159 3108 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe

19:12:20.0219 3108 PerfHost - ok

19:12:20.0269 3108 [ 91111CEBBDE8015E822C46120ED9537C ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys

19:12:20.0279 3108 PGEffect - ok

19:12:20.0339 3108 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll

19:12:20.0409 3108 pla - ok

19:12:20.0449 3108 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll

19:12:20.0499 3108 PlugPlay - ok

19:12:20.0579 3108 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll

19:12:20.0609 3108 PNRPAutoReg - ok

19:12:20.0649 3108 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll

19:12:20.0659 3108 PNRPsvc - ok

19:12:20.0739 3108 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll

19:12:20.0809 3108 PolicyAgent - ok

19:12:20.0869 3108 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll

19:12:20.0959 3108 Power - ok

19:12:20.0999 3108 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys

19:12:21.0079 3108 PptpMiniport - ok

19:12:21.0179 3108 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\drivers\processr.sys

19:12:21.0209 3108 Processor - ok

19:12:21.0249 3108 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll

19:12:21.0299 3108 ProfSvc - ok

19:12:21.0319 3108 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe

19:12:21.0329 3108 ProtectedStorage - ok

19:12:21.0399 3108 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys

19:12:21.0459 3108 Psched - ok

19:12:21.0549 3108 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\drivers\ql2300.sys

19:12:21.0659 3108 ql2300 - ok

19:12:21.0689 3108 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\drivers\ql40xx.sys

19:12:21.0699 3108 ql40xx - ok

19:12:21.0749 3108 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll

19:12:21.0769 3108 QWAVE - ok

19:12:21.0859 3108 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys

19:12:21.0909 3108 QWAVEdrv - ok

19:12:21.0929 3108 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys

19:12:21.0999 3108 RasAcd - ok

19:12:22.0059 3108 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys

19:12:22.0099 3108 RasAgileVpn - ok

19:12:22.0149 3108 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll

19:12:22.0259 3108 RasAuto - ok

19:12:22.0309 3108 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys

19:12:22.0359 3108 Rasl2tp - ok

19:12:22.0409 3108 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll

19:12:22.0449 3108 RasMan - ok

19:12:22.0459 3108 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys

19:12:22.0509 3108 RasPppoe - ok

19:12:22.0529 3108 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys

19:12:22.0579 3108 RasSstp - ok

19:12:22.0599 3108 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys

19:12:22.0649 3108 rdbss - ok

19:12:22.0689 3108 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\drivers\rdpbus.sys

19:12:22.0739 3108 rdpbus - ok

19:12:22.0749 3108 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys

19:12:22.0819 3108 RDPCDD - ok

19:12:22.0869 3108 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys

19:12:22.0919 3108 RDPENCDD - ok

19:12:22.0929 3108 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys

19:12:22.0969 3108 RDPREFMP - ok

19:12:22.0989 3108 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys

19:12:23.0029 3108 RDPWD - ok

19:12:23.0049 3108 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys

19:12:23.0059 3108 rdyboost - ok

19:12:23.0129 3108 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll

19:12:23.0249 3108 RemoteAccess - ok

19:12:23.0309 3108 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll

19:12:23.0359 3108 RemoteRegistry - ok

19:12:23.0369 3108 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll

19:12:23.0429 3108 RpcEptMapper - ok

19:12:23.0449 3108 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe

19:12:23.0459 3108 RpcLocator - ok

19:12:23.0509 3108 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll

19:12:23.0539 3108 RpcSs - ok

19:12:23.0569 3108 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys

19:12:23.0649 3108 rspndr - ok

19:12:23.0729 3108 [ 0E3DCF76F11DC431B088A2DFD7265CDA ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys

19:12:23.0769 3108 RSUSBSTOR - ok

19:12:23.0859 3108 [ 64FDF4FE366CA42DA2B7D9D424B6E39B ] RTL8192Ce C:\windows\system32\DRIVERS\rtl8192Ce.sys

19:12:23.0889 3108 RTL8192Ce - ok

19:12:23.0899 3108 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe

19:12:23.0909 3108 SamSs - ok

19:12:23.0929 3108 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys

19:12:23.0939 3108 sbp2port - ok

19:12:23.0959 3108 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll

19:12:23.0999 3108 SCardSvr - ok

19:12:24.0029 3108 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys

19:12:24.0069 3108 scfilter - ok

19:12:24.0109 3108 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll

19:12:24.0169 3108 Schedule - ok

19:12:24.0199 3108 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll

19:12:24.0229 3108 SCPolicySvc - ok

19:12:24.0259 3108 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll

19:12:24.0289 3108 SDRSVC - ok

19:12:24.0329 3108 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys

19:12:24.0389 3108 secdrv - ok

19:12:24.0409 3108 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll

19:12:24.0449 3108 seclogon - ok

19:12:24.0459 3108 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll

19:12:24.0509 3108 SENS - ok

19:12:24.0519 3108 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll

19:12:24.0569 3108 SensrSvc - ok

19:12:24.0599 3108 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\drivers\serenum.sys

19:12:24.0619 3108 Serenum - ok

19:12:24.0649 3108 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\drivers\serial.sys

19:12:24.0669 3108 Serial - ok

19:12:24.0669 3108 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\drivers\sermouse.sys

19:12:24.0689 3108 sermouse - ok

19:12:24.0719 3108 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll

19:12:24.0779 3108 SessionEnv - ok

19:12:24.0799 3108 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys

19:12:24.0819 3108 sffdisk - ok

19:12:24.0829 3108 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys

19:12:24.0849 3108 sffp_mmc - ok

19:12:24.0869 3108 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys

19:12:24.0899 3108 sffp_sd - ok

19:12:24.0929 3108 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\drivers\sfloppy.sys

19:12:24.0949 3108 sfloppy - ok

19:12:25.0009 3108 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys

19:12:25.0039 3108 Sftfs - ok

19:12:25.0109 3108 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

19:12:25.0129 3108 sftlist - ok

19:12:25.0159 3108 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys

19:12:25.0179 3108 Sftplay - ok

19:12:25.0189 3108 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys

19:12:25.0199 3108 Sftredir - ok

19:12:25.0229 3108 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys

19:12:25.0239 3108 Sftvol - ok

19:12:25.0259 3108 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

19:12:25.0269 3108 sftvsa - ok

19:12:25.0299 3108 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll

19:12:25.0349 3108 ShellHWDetection - ok

19:12:25.0379 3108 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys

19:12:25.0389 3108 SiSRaid2 - ok

19:12:25.0399 3108 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys

19:12:25.0409 3108 SiSRaid4 - ok

19:12:25.0449 3108 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe

19:12:25.0459 3108 SkypeUpdate - ok

19:12:25.0499 3108 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys

19:12:25.0549 3108 Smb - ok

19:12:25.0629 3108 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe

19:12:25.0679 3108 SNMPTRAP - ok

19:12:25.0719 3108 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys

19:12:25.0729 3108 spldr - ok

19:12:25.0769 3108 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\windows\System32\spoolsv.exe

19:12:25.0809 3108 Spooler - ok

19:12:25.0959 3108 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe

19:12:26.0139 3108 sppsvc - ok

19:12:26.0159 3108 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll

19:12:26.0199 3108 sppuinotify - ok

19:12:26.0229 3108 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys

19:12:26.0309 3108 srv - ok

19:12:26.0319 3108 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys

19:12:26.0349 3108 srv2 - ok

19:12:26.0389 3108 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys

19:12:26.0389 3108 srvnet - ok

19:12:26.0439 3108 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll

19:12:26.0479 3108 SSDPSRV - ok

19:12:26.0489 3108 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll

19:12:26.0529 3108 SstpSvc - ok

19:12:26.0549 3108 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\drivers\stexstor.sys

19:12:26.0559 3108 stexstor - ok

19:12:26.0669 3108 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll

19:12:26.0699 3108 stisvc - ok

19:12:26.0739 3108 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\DRIVERS\swenum.sys

19:12:26.0749 3108 swenum - ok

19:12:26.0789 3108 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll

19:12:26.0849 3108 swprv - ok

19:12:26.0919 3108 [ 470C47DABA9CA3966F0AB3F835D7D135 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys

19:12:26.0939 3108 SynTP - ok

19:12:27.0129 3108 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll

19:12:27.0179 3108 SysMain - ok

19:12:27.0219 3108 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll

19:12:27.0249 3108 TabletInputService - ok

19:12:27.0259 3108 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll

19:12:27.0779 3108 TapiSrv - ok

19:12:27.0819 3108 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll

19:12:27.0859 3108 TBS - ok

19:12:27.0919 3108 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\windows\system32\drivers\tcpip.sys

19:12:27.0969 3108 Tcpip - ok

19:12:27.0989 3108 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys

19:12:28.0029 3108 TCPIP6 - ok

19:12:28.0049 3108 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys

19:12:28.0169 3108 tcpipreg - ok

19:12:28.0229 3108 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys

19:12:28.0259 3108 tdcmdpst - ok

19:12:28.0269 3108 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys

19:12:28.0339 3108 TDPIPE - ok

19:12:28.0366 3108 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys

19:12:28.0417 3108 TDTCP - ok

19:12:28.0456 3108 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys

19:12:28.0515 3108 tdx - ok

19:12:28.0541 3108 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys

19:12:28.0551 3108 TermDD - ok

19:12:28.0586 3108 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll

19:12:28.0650 3108 TermService - ok

19:12:28.0681 3108 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll

19:12:28.0696 3108 Themes - ok

19:12:28.0712 3108 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll

19:12:28.0746 3108 THREADORDER - ok

19:12:28.0853 3108 [ 71C321649B28638EE80A2EEB164C1DC8 ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

19:12:28.0875 3108 TMachInfo - ok

19:12:28.0928 3108 [ 8E2C799D3476EAC32C3BA0DF7CE6AF19 ] TODDSrv C:\windows\system32\TODDSrv.exe

19:12:28.0937 3108 TODDSrv - ok

19:12:29.0059 3108 [ 1C73689B900428C7D054A41C4687F55C ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

19:12:29.0079 3108 TosCoSrv - ok

19:12:29.0151 3108 [ 29D0886CF250FCEF1BF9E65AB8D2C0C8 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

19:12:29.0177 3108 TOSHIBA HDD SSD Alert Service - ok

19:12:29.0269 3108 [ 09FF7B0B1B5C3D225495CB6F5A9B39F8 ] tos_sps64 C:\windows\system32\DRIVERS\tos_sps64.sys

19:12:29.0295 3108 tos_sps64 - ok

19:12:29.0332 3108 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll

19:12:29.0390 3108 TrkWks - ok

19:12:29.0442 3108 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe

Link to post
Share on other sites

19:12:29.0493 3108 TrustedInstaller - ok

19:12:29.0533 3108 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys

19:12:29.0616 3108 tssecsrv - ok

19:12:29.0651 3108 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys

19:12:29.0676 3108 TsUsbFlt - ok

19:12:29.0688 3108 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys

19:12:29.0713 3108 TsUsbGD - ok

19:12:29.0764 3108 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys

19:12:29.0820 3108 tunnel - ok

19:12:29.0856 3108 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS

19:12:29.0863 3108 TVALZ - ok

19:12:29.0872 3108 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\drivers\uagp35.sys

19:12:29.0882 3108 uagp35 - ok

19:12:29.0888 3108 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys

19:12:29.0935 3108 udfs - ok

19:12:29.0967 3108 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe

19:12:29.0978 3108 UI0Detect - ok

19:12:29.0990 3108 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys

19:12:30.0000 3108 uliagpkx - ok

19:12:30.0035 3108 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys

19:12:30.0056 3108 umbus - ok

19:12:30.0060 3108 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\drivers\umpass.sys

19:12:30.0077 3108 UmPass - ok

19:12:30.0207 3108 [ 7A78ED1088890114DFDE2C4AB038D6B6 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

19:12:30.0279 3108 UNS - ok

19:12:30.0306 3108 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll

19:12:30.0367 3108 upnphost - ok

19:12:30.0392 3108 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys

19:12:30.0408 3108 usbccgp - ok

19:12:30.0434 3108 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys

19:12:30.0450 3108 usbcir - ok

19:12:30.0454 3108 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\DRIVERS\usbehci.sys

19:12:30.0481 3108 usbehci - ok

19:12:30.0488 3108 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys

19:12:30.0502 3108 usbhub - ok

19:12:30.0514 3108 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys

19:12:30.0535 3108 usbohci - ok

19:12:30.0560 3108 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\drivers\usbprint.sys

19:12:30.0588 3108 usbprint - ok

19:12:30.0636 3108 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS

19:12:30.0683 3108 USBSTOR - ok

19:12:30.0696 3108 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys

19:12:30.0716 3108 usbuhci - ok

19:12:30.0761 3108 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\system32\Drivers\usbvideo.sys

19:12:30.0774 3108 usbvideo - ok

19:12:30.0801 3108 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll

19:12:30.0859 3108 UxSms - ok

19:12:30.0878 3108 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe

19:12:30.0887 3108 VaultSvc - ok

19:12:30.0905 3108 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys

19:12:30.0915 3108 vdrvroot - ok

19:12:30.0954 3108 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe

19:12:31.0023 3108 vds - ok

19:12:31.0054 3108 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys

19:12:31.0084 3108 vga - ok

19:12:31.0100 3108 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys

19:12:31.0146 3108 VgaSave - ok

19:12:31.0175 3108 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys

19:12:31.0189 3108 vhdmp - ok

19:12:31.0209 3108 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys

19:12:31.0219 3108 viaide - ok

19:12:31.0252 3108 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys

19:12:31.0266 3108 volmgr - ok

19:12:31.0273 3108 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys

19:12:31.0351 3108 volmgrx - ok

19:12:31.0377 3108 [ DF8126BD41180351A093A3AD2FC8903B ] volsnap C:\windows\system32\drivers\volsnap.sys

19:12:31.0395 3108 volsnap - ok

19:12:31.0429 3108 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\drivers\vsmraid.sys

19:12:31.0445 3108 vsmraid - ok

19:12:31.0531 3108 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe

19:12:31.0613 3108 VSS - ok

19:12:31.0633 3108 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys

19:12:31.0667 3108 vwifibus - ok

19:12:31.0687 3108 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys

19:12:31.0737 3108 vwififlt - ok

19:12:31.0776 3108 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys

19:12:31.0804 3108 vwifimp - ok

19:12:31.0859 3108 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll

19:12:31.0903 3108 W32Time - ok

19:12:31.0920 3108 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\drivers\wacompen.sys

19:12:31.0961 3108 WacomPen - ok

19:12:32.0011 3108 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys

19:12:32.0088 3108 WANARP - ok

19:12:32.0094 3108 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys

19:12:32.0188 3108 Wanarpv6 - ok

19:12:32.0317 3108 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe

19:12:32.0417 3108 WatAdminSvc - ok

19:12:32.0603 3108 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe

19:12:32.0752 3108 wbengine - ok

19:12:32.0770 3108 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll

19:12:32.0813 3108 WbioSrvc - ok

19:12:32.0845 3108 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll

19:12:32.0906 3108 wcncsvc - ok

19:12:32.0927 3108 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll

19:12:33.0143 3108 WcsPlugInService - ok

19:12:33.0186 3108 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\drivers\wd.sys

19:12:33.0200 3108 Wd - ok

19:12:33.0223 3108 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys

19:12:33.0250 3108 Wdf01000 - ok

19:12:33.0268 3108 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll

19:12:33.0418 3108 WdiServiceHost - ok

19:12:33.0433 3108 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll

19:12:33.0453 3108 WdiSystemHost - ok

19:12:33.0487 3108 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll

19:12:33.0564 3108 WebClient - ok

19:12:33.0593 3108 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll

19:12:33.0657 3108 Wecsvc - ok

19:12:33.0686 3108 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll

19:12:33.0757 3108 wercplsupport - ok

19:12:33.0842 3108 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll

19:12:33.0882 3108 WerSvc - ok

19:12:33.0912 3108 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys

19:12:33.0947 3108 WfpLwf - ok

19:12:33.0978 3108 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys

19:12:33.0989 3108 WIMMount - ok

19:12:33.0994 3108 WinHttpAutoProxySvc - ok

19:12:34.0091 3108 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll

19:12:34.0197 3108 Winmgmt - ok

19:12:34.0337 3108 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll

19:12:34.0433 3108 WinRM - ok

19:12:34.0653 3108 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll

19:12:34.0756 3108 Wlansvc - ok

19:12:34.0827 3108 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

19:12:34.0836 3108 wlcrasvc - ok

19:12:35.0153 3108 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

19:12:35.0247 3108 wlidsvc - ok

19:12:35.0273 3108 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys

19:12:35.0332 3108 WmiAcpi - ok

19:12:35.0390 3108 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe

19:12:35.0423 3108 wmiApSrv - ok

19:12:35.0440 3108 WMPNetworkSvc - ok

19:12:35.0472 3108 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll

19:12:35.0509 3108 WPCSvc - ok

19:12:35.0532 3108 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll

19:12:35.0609 3108 WPDBusEnum - ok

19:12:35.0789 3108 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys

19:12:35.0952 3108 ws2ifsl - ok

19:12:35.0960 3108 WSearch - ok

19:12:35.0966 3108 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\windows\system32\drivers\WudfPf.sys

19:12:36.0120 3108 WudfPf - ok

19:12:36.0151 3108 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys

19:12:36.0300 3108 WUDFRd - ok

19:12:36.0468 3108 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\windows\System32\WUDFSvc.dll

19:12:36.0650 3108 wudfsvc - ok

19:12:36.0673 3108 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll

19:12:36.0816 3108 WwanSvc - ok

19:12:37.0000 3108 ================ Scan global ===============================

19:12:37.0049 3108 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll

19:12:37.0080 3108 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\windows\system32\winsrv.dll

19:12:37.0086 3108 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\windows\system32\winsrv.dll

19:12:37.0126 3108 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll

19:12:37.0160 3108 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\windows\system32\services.exe

19:12:37.0164 3108 [Global] - ok

19:12:37.0165 3108 ================ Scan MBR ==================================

19:12:37.0176 3108 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0

19:12:37.0915 3108 \Device\Harddisk0\DR0 - ok

19:12:37.0919 3108 ================ Scan VBR ==================================

19:12:38.0227 3108 [ F35360472A297C6EDD472B5A8FE5D58B ] \Device\Harddisk0\DR0\Partition1

19:12:38.0626 3108 \Device\Harddisk0\DR0\Partition1 - ok

19:12:38.0627 3108 ============================================================

19:12:38.0627 3108 Scan finished

19:12:38.0627 3108 ============================================================

19:12:38.0642 3416 Detected object count: 0

19:12:38.0642 3416 Actual detected object count: 0

19:15:24.0066 3040 ============================================================

19:15:24.0066 3040 Scan started

19:15:24.0066 3040 Mode: Manual; SigCheck; TDLFS;

19:15:24.0066 3040 ============================================================

19:15:24.0174 3040 ================ Scan system memory ========================

19:15:24.0174 3040 System memory - ok

19:15:24.0175 3040 ================ Scan services =============================

19:15:24.0334 3040 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys

19:15:24.0363 3040 1394ohci - ok

19:15:24.0411 3040 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys

19:15:24.0424 3040 ACPI - ok

19:15:24.0441 3040 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys

19:15:24.0453 3040 AcpiPmi - ok

19:15:24.0580 3040 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

19:15:24.0594 3040 AdobeFlashPlayerUpdateSvc - ok

19:15:24.0624 3040 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\drivers\adp94xx.sys

19:15:24.0647 3040 adp94xx - ok

19:15:24.0692 3040 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\drivers\adpahci.sys

19:15:24.0710 3040 adpahci - ok

19:15:24.0734 3040 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\drivers\adpu320.sys

19:15:24.0749 3040 adpu320 - ok

19:15:24.0784 3040 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll

19:15:24.0822 3040 AeLookupSvc - ok

19:15:24.0854 3040 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys

19:15:24.0869 3040 AFD - ok

19:15:24.0897 3040 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys

19:15:24.0906 3040 agp440 - ok

19:15:24.0912 3040 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe

19:15:24.0924 3040 ALG - ok

19:15:24.0936 3040 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys

19:15:24.0945 3040 aliide - ok

19:15:24.0961 3040 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys

19:15:24.0969 3040 amdide - ok

19:15:24.0991 3040 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\drivers\amdk8.sys

19:15:25.0002 3040 AmdK8 - ok

19:15:25.0006 3040 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\drivers\amdppm.sys

19:15:25.0016 3040 AmdPPM - ok

19:15:25.0020 3040 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys

19:15:25.0031 3040 amdsata - ok

19:15:25.0048 3040 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\drivers\amdsbs.sys

19:15:25.0059 3040 amdsbs - ok

19:15:25.0066 3040 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys

19:15:25.0074 3040 amdxata - ok

19:15:25.0090 3040 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys

19:15:25.0122 3040 AppID - ok

19:15:25.0150 3040 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll

19:15:25.0182 3040 AppIDSvc - ok

19:15:25.0186 3040 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll

19:15:25.0218 3040 Appinfo - ok

19:15:25.0238 3040 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\drivers\arc.sys

19:15:25.0247 3040 arc - ok

19:15:25.0265 3040 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\drivers\arcsas.sys

19:15:25.0274 3040 arcsas - ok

19:15:25.0290 3040 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys

19:15:25.0322 3040 AsyncMac - ok

19:15:25.0333 3040 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys

19:15:25.0341 3040 atapi - ok

19:15:25.0370 3040 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll

19:15:25.0407 3040 AudioEndpointBuilder - ok

19:15:25.0417 3040 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll

19:15:25.0455 3040 AudioSrv - ok

19:15:25.0486 3040 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll

19:15:25.0501 3040 AxInstSV - ok

19:15:25.0542 3040 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys

19:15:25.0555 3040 b06bdrv - ok

19:15:25.0580 3040 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys

19:15:25.0592 3040 b57nd60a - ok

19:15:25.0614 3040 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll

19:15:25.0624 3040 BDESVC - ok

19:15:25.0635 3040 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys

19:15:25.0667 3040 Beep - ok

19:15:25.0680 3040 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys

19:15:25.0690 3040 blbdrive - ok

19:15:25.0693 3040 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys

19:15:25.0703 3040 bowser - ok

19:15:25.0714 3040 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys

19:15:25.0726 3040 BrFiltLo - ok

19:15:25.0745 3040 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys

19:15:25.0757 3040 BrFiltUp - ok

19:15:25.0784 3040 [ 8EF0D5C41EC907751B8429162B1239ED ] Browser C:\windows\System32\browser.dll

19:15:25.0818 3040 Browser - ok

19:15:25.0837 3040 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys

19:15:25.0849 3040 Brserid - ok

19:15:25.0859 3040 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys

19:15:25.0871 3040 BrSerWdm - ok

19:15:25.0891 3040 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys

19:15:25.0903 3040 BrUsbMdm - ok

19:15:25.0923 3040 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys

19:15:25.0932 3040 BrUsbSer - ok

19:15:25.0947 3040 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys

19:15:25.0960 3040 BTHMODEM - ok

19:15:25.0984 3040 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll

19:15:26.0017 3040 bthserv - ok

19:15:26.0060 3040 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys

19:15:26.0094 3040 cdfs - ok

19:15:26.0099 3040 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys

19:15:26.0110 3040 cdrom - ok

19:15:26.0118 3040 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll

19:15:26.0150 3040 CertPropSvc - ok

19:15:26.0169 3040 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\drivers\circlass.sys

19:15:26.0181 3040 circlass - ok

19:15:26.0200 3040 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys

19:15:26.0214 3040 CLFS - ok

19:15:26.0285 3040 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

19:15:26.0299 3040 clr_optimization_v2.0.50727_32 - ok

19:15:26.0329 3040 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

19:15:26.0337 3040 clr_optimization_v2.0.50727_64 - ok

19:15:26.0390 3040 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

19:15:26.0414 3040 clr_optimization_v4.0.30319_32 - ok

19:15:26.0460 3040 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

19:15:26.0470 3040 clr_optimization_v4.0.30319_64 - ok

19:15:26.0488 3040 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys

19:15:26.0499 3040 CmBatt - ok

19:15:26.0516 3040 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys

19:15:26.0527 3040 cmdide - ok

19:15:26.0564 3040 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys

19:15:26.0589 3040 CNG - ok

19:15:26.0643 3040 [ A260BE645DD096D90318C8CF98536720 ] CnxtHdAudService C:\windows\system32\drivers\CHDRT64.sys

19:15:26.0721 3040 CnxtHdAudService - ok

19:15:26.0743 3040 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\drivers\compbatt.sys

19:15:26.0753 3040 Compbatt - ok

19:15:26.0760 3040 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys

19:15:26.0776 3040 CompositeBus - ok

19:15:26.0782 3040 COMSysApp - ok

19:15:26.0800 3040 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\drivers\crcdisk.sys

19:15:26.0808 3040 crcdisk - ok

19:15:26.0866 3040 [ 4F5414602E2544A4554D95517948B705 ] CryptSvc C:\windows\system32\cryptsvc.dll

19:15:26.0890 3040 CryptSvc - ok

19:15:27.0382 3040 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE

19:15:27.0416 3040 cvhsvc - ok

19:15:27.0542 3040 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll

19:15:27.0596 3040 DcomLaunch - ok

19:15:27.0625 3040 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll

19:15:27.0660 3040 defragsvc - ok

19:15:27.0702 3040 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys

19:15:27.0758 3040 DfsC - ok

19:15:27.0847 3040 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll

19:15:27.0894 3040 Dhcp - ok

19:15:27.0924 3040 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys

19:15:27.0958 3040 discache - ok

19:15:27.0962 3040 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\drivers\disk.sys

19:15:27.0974 3040 Disk - ok

19:15:28.0010 3040 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll

19:15:28.0021 3040 Dnscache - ok

19:15:28.0027 3040 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll

19:15:28.0061 3040 dot3svc - ok

19:15:28.0066 3040 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll

19:15:28.0099 3040 DPS - ok

19:15:28.0110 3040 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys

19:15:28.0121 3040 drmkaud - ok

19:15:28.0155 3040 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys

19:15:28.0177 3040 DXGKrnl - ok

19:15:28.0188 3040 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll

19:15:28.0221 3040 EapHost - ok

19:15:28.0330 3040 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\drivers\evbda.sys

19:15:28.0376 3040 ebdrv - ok

19:15:28.0439 3040 [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys

19:15:28.0470 3040 eeCtrl - ok

19:15:28.0507 3040 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe

19:15:28.0518 3040 EFS - ok

19:15:28.0635 3040 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe

19:15:28.0726 3040 ehRecvr - ok

19:15:28.0755 3040 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe

19:15:28.0765 3040 ehSched - ok

19:15:28.0810 3040 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\drivers\elxstor.sys

19:15:28.0828 3040 elxstor - ok

19:15:28.0885 3040 [ 1343DF3451BC0C442DC69837C6FBA21B ] EraserUtilDrv11210 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11210.sys

19:15:28.0893 3040 EraserUtilDrv11210 - ok

19:15:28.0930 3040 [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilDrv11220 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys

19:15:28.0939 3040 EraserUtilDrv11220 - ok

19:15:28.0981 3040 [ 8C0F9B877BC0B7FFD327EF55F9EFB642 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys

19:15:28.0990 3040 EraserUtilRebootDrv - ok

19:15:29.0030 3040 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys

19:15:29.0041 3040 ErrDev - ok

19:15:29.0148 3040 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll

19:15:29.0204 3040 EventSystem - ok

19:15:29.0228 3040 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys

19:15:29.0261 3040 exfat - ok

19:15:29.0304 3040 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys

19:15:29.0341 3040 fastfat - ok

19:15:29.0378 3040 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe

19:15:29.0398 3040 Fax - ok

19:15:29.0416 3040 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\drivers\fdc.sys

19:15:29.0425 3040 fdc - ok

19:15:29.0455 3040 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll

19:15:29.0488 3040 fdPHost - ok

19:15:29.0492 3040 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll

19:15:29.0525 3040 FDResPub - ok

19:15:29.0560 3040 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys

19:15:29.0569 3040 FileInfo - ok

19:15:29.0575 3040 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys

19:15:29.0612 3040 Filetrace - ok

19:15:29.0629 3040 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\drivers\flpydisk.sys

19:15:29.0639 3040 flpydisk - ok

19:15:29.0645 3040 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys

19:15:29.0658 3040 FltMgr - ok

19:15:29.0721 3040 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll

19:15:29.0743 3040 FontCache - ok

19:15:29.0789 3040 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

19:15:29.0796 3040 FontCache3.0.0.0 - ok

19:15:29.0819 3040 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys

19:15:29.0828 3040 FsDepends - ok

19:15:29.0876 3040 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys

19:15:29.0885 3040 Fs_Rec - ok

19:15:29.0891 3040 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys

19:15:29.0907 3040 fvevol - ok

19:15:29.0935 3040 [ 60ACB128E64C35C2B4E4AAB1B0A5C293 ] FwLnk C:\windows\system32\DRIVERS\FwLnk.sys

19:15:29.0942 3040 FwLnk - ok

19:15:29.0965 3040 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys

19:15:29.0974 3040 gagp30kx - ok

19:15:30.0037 3040 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

19:15:30.0058 3040 GamesAppService - ok

19:15:30.0097 3040 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll

19:15:30.0137 3040 gpsvc - ok

19:15:30.0210 3040 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:15:30.0223 3040 gupdate - ok

19:15:30.0228 3040 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:15:30.0240 3040 gupdatem - ok

19:15:30.0269 3040 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

19:15:30.0278 3040 gusvc - ok

19:15:30.0315 3040 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys

19:15:30.0333 3040 hcw85cir - ok

19:15:30.0359 3040 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys

19:15:30.0375 3040 HdAudAddService - ok

19:15:30.0396 3040 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys

19:15:30.0409 3040 HDAudBus - ok

19:15:30.0427 3040 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\drivers\HidBatt.sys

19:15:30.0437 3040 HidBatt - ok

19:15:30.0450 3040 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\drivers\hidbth.sys

19:15:30.0463 3040 HidBth - ok

19:15:30.0484 3040 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\drivers\hidir.sys

19:15:30.0497 3040 HidIr - ok

19:15:30.0547 3040 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll

19:15:30.0605 3040 hidserv - ok

19:15:30.0703 3040 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\drivers\hidusb.sys

19:15:30.0716 3040 HidUsb - ok

19:15:30.0743 3040 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll

19:15:30.0806 3040 hkmsvc - ok

19:15:30.0839 3040 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll

19:15:30.0850 3040 HomeGroupListener - ok

19:15:30.0961 3040 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll

19:15:30.0981 3040 HomeGroupProvider - ok

19:15:30.0994 3040 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys

19:15:31.0005 3040 HpSAMD - ok

19:15:31.0106 3040 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys

19:15:31.0154 3040 HTTP - ok

19:15:31.0157 3040 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys

19:15:31.0166 3040 hwpolicy - ok

19:15:31.0170 3040 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys

19:15:31.0181 3040 i8042prt - ok

19:15:31.0253 3040 [ D7921D5A870B11CC1ADAB198A519D50A ] iaStor C:\windows\system32\DRIVERS\iaStor.sys

19:15:31.0292 3040 iaStor - ok

19:15:31.0323 3040 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys

19:15:31.0339 3040 iaStorV - ok

19:15:31.0446 3040 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

19:15:31.0476 3040 idsvc - ok

19:15:32.0283 3040 [ 370C2A8629B30F910F740387795DDC6F ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys

19:15:32.0422 3040 igfx - ok

19:15:32.0487 3040 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\drivers\iirsp.sys

19:15:32.0515 3040 iirsp - ok

19:15:32.0574 3040 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll

19:15:32.0617 3040 IKEEXT - ok

19:15:32.0626 3040 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys

19:15:32.0636 3040 intelide - ok

19:15:32.0663 3040 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys

19:15:32.0673 3040 intelppm - ok

19:15:32.0696 3040 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll

19:15:32.0731 3040 IPBusEnum - ok

19:15:32.0742 3040 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys

19:15:32.0777 3040 IpFilterDriver - ok

19:15:32.0794 3040 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys

19:15:32.0805 3040 IPMIDRV - ok

19:15:32.0810 3040 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys

19:15:32.0845 3040 IPNAT - ok

19:15:32.0850 3040 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys

19:15:32.0866 3040 IRENUM - ok

19:15:32.0873 3040 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys

19:15:32.0884 3040 isapnp - ok

19:15:32.0900 3040 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys

19:15:32.0913 3040 iScsiPrt - ok

19:15:32.0921 3040 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys

19:15:32.0930 3040 kbdclass - ok

19:15:32.0964 3040 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys

19:15:32.0974 3040 kbdhid - ok

19:15:33.0018 3040 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe

19:15:33.0028 3040 KeyIso - ok

19:15:33.0095 3040 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys

19:15:33.0128 3040 KSecDD - ok

19:15:33.0167 3040 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys

19:15:33.0178 3040 KSecPkg - ok

19:15:33.0200 3040 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys

19:15:33.0233 3040 ksthunk - ok

19:15:33.0279 3040 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll

19:15:33.0329 3040 KtmRm - ok

19:15:33.0361 3040 [ 045FB70BC993B691517CE309045FF02D ] L1C C:\windows\system32\DRIVERS\L1C62x64.sys

19:15:33.0369 3040 L1C - ok

19:15:33.0436 3040 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll

19:15:33.0490 3040 LanmanServer - ok

19:15:33.0526 3040 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll

19:15:33.0560 3040 LanmanWorkstation - ok

19:15:33.0601 3040 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys

19:15:33.0634 3040 lltdio - ok

19:15:33.0725 3040 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll

19:15:33.0785 3040 lltdsvc - ok

19:15:33.0819 3040 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll

19:15:33.0852 3040 lmhosts - ok

19:15:33.0965 3040 [ 98B16E756243BEA9410E32025B19C06F ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

19:15:33.0979 3040 LMS - ok

19:15:34.0000 3040 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys

19:15:34.0010 3040 LSI_FC - ok

19:15:34.0048 3040 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys

19:15:34.0058 3040 LSI_SAS - ok

19:15:34.0096 3040 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys

19:15:34.0117 3040 LSI_SAS2 - ok

19:15:34.0155 3040 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys

19:15:34.0165 3040 LSI_SCSI - ok

19:15:34.0202 3040 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys

19:15:34.0237 3040 luafv - ok

19:15:34.0264 3040 [ DC8490812A3B72811AE534F423B4C206 ] MBAMProtector C:\windows\system32\drivers\mbam.sys

19:15:34.0283 3040 MBAMProtector - ok

19:15:34.0429 3040 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

19:15:34.0470 3040 MBAMService - ok

19:15:34.0588 3040 [ BE8C524313DB75FA26FB2B0C0AAFF88E ] McAfee SiteAdvisor Service c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe

19:15:34.0635 3040 McAfee SiteAdvisor Service - ok

19:15:34.0691 3040 [ 22A7776C5D8EB5930EDF9C8DD0884259 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe

19:15:34.0706 3040 McComponentHostService - ok

19:15:34.0752 3040 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll

19:15:34.0764 3040 Mcx2Svc - ok

19:15:34.0807 3040 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\drivers\megasas.sys

19:15:34.0817 3040 megasas - ok

19:15:34.0840 3040 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\drivers\MegaSR.sys

19:15:34.0852 3040 MegaSR - ok

19:15:34.0879 3040 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys

19:15:34.0886 3040 MEIx64 - ok

19:15:34.0920 3040 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll

19:15:34.0983 3040 MMCSS - ok

19:15:35.0006 3040 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys

19:15:35.0037 3040 Modem - ok

19:15:35.0147 3040 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys

19:15:35.0170 3040 monitor - ok

19:15:35.0177 3040 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys

19:15:35.0187 3040 mouclass - ok

19:15:35.0191 3040 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\drivers\mouhid.sys

19:15:35.0204 3040 mouhid - ok

Link to post
Share on other sites

19:15:35.0212 3040 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys

19:15:35.0222 3040 mountmgr - ok

19:15:35.0265 3040 [ 15D5398EED42C2504BB3D4FC875C15D1 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

19:15:35.0281 3040 MozillaMaintenance - ok

19:15:35.0329 3040 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys

19:15:35.0341 3040 mpio - ok

19:15:35.0361 3040 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys

19:15:35.0398 3040 mpsdrv - ok

19:15:35.0420 3040 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys

19:15:35.0435 3040 MRxDAV - ok

19:15:35.0455 3040 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys

19:15:35.0474 3040 mrxsmb - ok

19:15:35.0480 3040 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys

19:15:35.0491 3040 mrxsmb10 - ok

19:15:35.0525 3040 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys

19:15:35.0535 3040 mrxsmb20 - ok

19:15:35.0580 3040 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\DRIVERS\msahci.sys

19:15:35.0590 3040 msahci - ok

19:15:35.0603 3040 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys

19:15:35.0615 3040 msdsm - ok

19:15:35.0627 3040 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe

19:15:35.0640 3040 MSDTC - ok

19:15:35.0665 3040 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys

19:15:35.0697 3040 Msfs - ok

19:15:35.0711 3040 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys

19:15:35.0743 3040 mshidkmdf - ok

19:15:35.0758 3040 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys

19:15:35.0767 3040 msisadrv - ok

19:15:35.0799 3040 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll

19:15:35.0833 3040 MSiSCSI - ok

19:15:35.0836 3040 msiserver - ok

19:15:35.0866 3040 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys

19:15:35.0899 3040 MSKSSRV - ok

19:15:35.0902 3040 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys

19:15:35.0936 3040 MSPCLOCK - ok

19:15:35.0948 3040 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys

19:15:35.0979 3040 MSPQM - ok

19:15:35.0998 3040 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys

19:15:36.0012 3040 MsRPC - ok

19:15:36.0032 3040 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys

19:15:36.0041 3040 mssmbios - ok

19:15:36.0067 3040 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys

19:15:36.0101 3040 MSTEE - ok

19:15:36.0121 3040 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\drivers\MTConfig.sys

19:15:36.0132 3040 MTConfig - ok

19:15:36.0153 3040 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys

19:15:36.0162 3040 Mup - ok

19:15:36.0240 3040 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll

19:15:36.0283 3040 napagent - ok

19:15:36.0353 3040 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys

19:15:36.0398 3040 NativeWifiP - ok

19:15:36.0477 3040 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\windows\system32\drivers\ndis.sys

19:15:36.0516 3040 NDIS - ok

19:15:36.0548 3040 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys

19:15:36.0581 3040 NdisCap - ok

19:15:36.0665 3040 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys

19:15:36.0705 3040 NdisTapi - ok

19:15:36.0711 3040 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys

19:15:36.0744 3040 Ndisuio - ok

19:15:36.0792 3040 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys

19:15:36.0827 3040 NdisWan - ok

19:15:36.0870 3040 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys

19:15:36.0903 3040 NDProxy - ok

19:15:36.0906 3040 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys

19:15:36.0938 3040 NetBIOS - ok

19:15:36.0964 3040 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys

19:15:36.0998 3040 NetBT - ok

19:15:37.0018 3040 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe

19:15:37.0028 3040 Netlogon - ok

19:15:37.0112 3040 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll

19:15:37.0172 3040 Netman - ok

19:15:37.0239 3040 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll

19:15:37.0279 3040 netprofm - ok

19:15:37.0376 3040 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe

19:15:37.0393 3040 NetTcpPortSharing - ok

19:15:37.0456 3040 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys

19:15:37.0466 3040 nfrd960 - ok

19:15:37.0503 3040 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\windows\System32\nlasvc.dll

19:15:37.0539 3040 NlaSvc - ok

19:15:37.0578 3040 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys

19:15:37.0611 3040 Npfs - ok

19:15:37.0664 3040 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll

19:15:37.0726 3040 nsi - ok

19:15:37.0767 3040 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys

19:15:37.0801 3040 nsiproxy - ok

19:15:37.0986 3040 [ A2F74975097F52A00745F9637451FDD8 ] Ntfs C:\windows\system32\drivers\Ntfs.sys

19:15:38.0035 3040 Ntfs - ok

19:15:38.0077 3040 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys

19:15:38.0113 3040 Null - ok

19:15:38.0130 3040 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys

19:15:38.0151 3040 nvraid - ok

19:15:38.0179 3040 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys

19:15:38.0189 3040 nvstor - ok

19:15:38.0235 3040 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys

19:15:38.0247 3040 nv_agp - ok

19:15:38.0267 3040 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys

19:15:38.0279 3040 ohci1394 - ok

19:15:38.0323 3040 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE

19:15:38.0335 3040 ose - ok

19:15:38.0690 3040 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

19:15:38.0777 3040 osppsvc - ok

19:15:38.0814 3040 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll

19:15:38.0826 3040 p2pimsvc - ok

19:15:38.0910 3040 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll

19:15:38.0945 3040 p2psvc - ok

19:15:38.0996 3040 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\drivers\parport.sys

19:15:39.0035 3040 Parport - ok

19:15:39.0055 3040 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys

19:15:39.0067 3040 partmgr - ok

19:15:39.0119 3040 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll

19:15:39.0141 3040 PcaSvc - ok

19:15:39.0195 3040 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] PCCUJobMgr C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

19:15:39.0205 3040 PCCUJobMgr - ok

19:15:39.0233 3040 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys

19:15:39.0246 3040 pci - ok

19:15:39.0250 3040 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\DRIVERS\pciide.sys

19:15:39.0261 3040 pciide - ok

19:15:39.0280 3040 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\drivers\pcmcia.sys

19:15:39.0291 3040 pcmcia - ok

19:15:39.0302 3040 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys

19:15:39.0318 3040 pcw - ok

19:15:39.0396 3040 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys

19:15:39.0442 3040 PEAUTH - ok

19:15:39.0569 3040 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe

19:15:39.0586 3040 PerfHost - ok

19:15:39.0647 3040 [ 91111CEBBDE8015E822C46120ED9537C ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys

19:15:39.0667 3040 PGEffect - ok

19:15:39.0779 3040 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll

19:15:39.0837 3040 pla - ok

19:15:39.0885 3040 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll

19:15:39.0899 3040 PlugPlay - ok

19:15:39.0919 3040 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll

19:15:39.0929 3040 PNRPAutoReg - ok

19:15:39.0935 3040 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll

19:15:39.0948 3040 PNRPsvc - ok

19:15:39.0985 3040 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll

19:15:40.0022 3040 PolicyAgent - ok

19:15:40.0052 3040 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll

19:15:40.0089 3040 Power - ok

19:15:40.0160 3040 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys

19:15:40.0211 3040 PptpMiniport - ok

19:15:40.0277 3040 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\drivers\processr.sys

19:15:40.0287 3040 Processor - ok

19:15:40.0337 3040 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll

19:15:40.0366 3040 ProfSvc - ok

19:15:40.0430 3040 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe

19:15:40.0440 3040 ProtectedStorage - ok

19:15:40.0464 3040 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys

19:15:40.0497 3040 Psched - ok

19:15:40.0659 3040 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\drivers\ql2300.sys

19:15:40.0693 3040 ql2300 - ok

19:15:40.0738 3040 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\drivers\ql40xx.sys

19:15:40.0748 3040 ql40xx - ok

19:15:40.0824 3040 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll

19:15:40.0841 3040 QWAVE - ok

19:15:40.0905 3040 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys

19:15:40.0933 3040 QWAVEdrv - ok

19:15:40.0959 3040 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys

19:15:41.0002 3040 RasAcd - ok

19:15:41.0045 3040 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys

19:15:41.0080 3040 RasAgileVpn - ok

19:15:41.0141 3040 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll

19:15:41.0178 3040 RasAuto - ok

19:15:41.0234 3040 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys

19:15:41.0289 3040 Rasl2tp - ok

19:15:41.0332 3040 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll

19:15:41.0368 3040 RasMan - ok

19:15:41.0390 3040 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys

19:15:41.0422 3040 RasPppoe - ok

19:15:41.0461 3040 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys

19:15:41.0496 3040 RasSstp - ok

19:15:41.0534 3040 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys

19:15:41.0567 3040 rdbss - ok

19:15:41.0639 3040 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\drivers\rdpbus.sys

19:15:41.0651 3040 rdpbus - ok

19:15:41.0674 3040 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys

19:15:41.0709 3040 RDPCDD - ok

19:15:41.0748 3040 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys

19:15:41.0782 3040 RDPENCDD - ok

19:15:41.0811 3040 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys

19:15:41.0841 3040 RDPREFMP - ok

19:15:41.0877 3040 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys

19:15:41.0888 3040 RDPWD - ok

19:15:41.0969 3040 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys

19:15:41.0981 3040 rdyboost - ok

19:15:42.0021 3040 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll

19:15:42.0060 3040 RemoteAccess - ok

19:15:42.0102 3040 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll

19:15:42.0136 3040 RemoteRegistry - ok

19:15:42.0142 3040 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll

19:15:42.0180 3040 RpcEptMapper - ok

19:15:42.0203 3040 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe

19:15:42.0212 3040 RpcLocator - ok

19:15:42.0251 3040 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll

19:15:42.0293 3040 RpcSs - ok

19:15:42.0373 3040 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys

19:15:42.0408 3040 rspndr - ok

19:15:42.0440 3040 [ 0E3DCF76F11DC431B088A2DFD7265CDA ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys

19:15:42.0450 3040 RSUSBSTOR - ok

19:15:42.0508 3040 [ 64FDF4FE366CA42DA2B7D9D424B6E39B ] RTL8192Ce C:\windows\system32\DRIVERS\rtl8192Ce.sys

19:15:42.0532 3040 RTL8192Ce - ok

19:15:42.0552 3040 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe

19:15:42.0562 3040 SamSs - ok

19:15:42.0582 3040 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys

19:15:42.0595 3040 sbp2port - ok

19:15:42.0728 3040 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll

19:15:42.0767 3040 SCardSvr - ok

19:15:42.0804 3040 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys

19:15:42.0835 3040 scfilter - ok

19:15:42.0876 3040 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll

19:15:42.0920 3040 Schedule - ok

19:15:42.0942 3040 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll

19:15:42.0972 3040 SCPolicySvc - ok

19:15:43.0013 3040 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll

19:15:43.0023 3040 SDRSVC - ok

19:15:43.0084 3040 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys

19:15:43.0118 3040 secdrv - ok

19:15:43.0191 3040 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll

19:15:43.0248 3040 seclogon - ok

19:15:43.0304 3040 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll

19:15:43.0356 3040 SENS - ok

19:15:43.0380 3040 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll

19:15:43.0390 3040 SensrSvc - ok

19:15:43.0443 3040 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\drivers\serenum.sys

19:15:43.0471 3040 Serenum - ok

19:15:43.0490 3040 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\drivers\serial.sys

19:15:43.0500 3040 Serial - ok

19:15:43.0523 3040 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\drivers\sermouse.sys

19:15:43.0533 3040 sermouse - ok

19:15:43.0579 3040 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll

19:15:43.0613 3040 SessionEnv - ok

19:15:43.0646 3040 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys

19:15:43.0658 3040 sffdisk - ok

19:15:43.0661 3040 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys

19:15:43.0676 3040 sffp_mmc - ok

19:15:43.0694 3040 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys

19:15:43.0707 3040 sffp_sd - ok

19:15:43.0729 3040 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\drivers\sfloppy.sys

19:15:43.0739 3040 sfloppy - ok

19:15:43.0778 3040 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys

19:15:43.0800 3040 Sftfs - ok

19:15:43.0892 3040 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

19:15:43.0907 3040 sftlist - ok

19:15:43.0920 3040 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys

19:15:43.0931 3040 Sftplay - ok

19:15:43.0961 3040 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys

19:15:43.0968 3040 Sftredir - ok

19:15:43.0995 3040 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys

19:15:44.0002 3040 Sftvol - ok

19:15:44.0054 3040 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

19:15:44.0077 3040 sftvsa - ok

19:15:44.0111 3040 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll

19:15:44.0155 3040 ShellHWDetection - ok

19:15:44.0183 3040 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys

19:15:44.0193 3040 SiSRaid2 - ok

19:15:44.0212 3040 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys

19:15:44.0222 3040 SiSRaid4 - ok

19:15:44.0295 3040 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe

19:15:44.0316 3040 SkypeUpdate - ok

19:15:44.0345 3040 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys

19:15:44.0377 3040 Smb - ok

19:15:44.0408 3040 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe

19:15:44.0418 3040 SNMPTRAP - ok

19:15:44.0440 3040 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys

19:15:44.0448 3040 spldr - ok

19:15:44.0469 3040 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\windows\System32\spoolsv.exe

19:15:44.0506 3040 Spooler - ok

19:15:44.0601 3040 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe

19:15:44.0670 3040 sppsvc - ok

19:15:44.0687 3040 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll

19:15:44.0728 3040 sppuinotify - ok

19:15:44.0765 3040 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys

19:15:44.0779 3040 srv - ok

19:15:44.0835 3040 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys

19:15:44.0850 3040 srv2 - ok

19:15:44.0896 3040 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys

19:15:44.0918 3040 srvnet - ok

19:15:44.0949 3040 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll

19:15:44.0987 3040 SSDPSRV - ok

19:15:44.0991 3040 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll

19:15:45.0026 3040 SstpSvc - ok

19:15:45.0037 3040 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\drivers\stexstor.sys

19:15:45.0046 3040 stexstor - ok

19:15:45.0066 3040 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll

19:15:45.0088 3040 stisvc - ok

19:15:45.0118 3040 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\DRIVERS\swenum.sys

19:15:45.0127 3040 swenum - ok

19:15:45.0171 3040 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll

19:15:45.0211 3040 swprv - ok

19:15:45.0243 3040 [ 470C47DABA9CA3966F0AB3F835D7D135 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys

19:15:45.0254 3040 SynTP - ok

19:15:45.0356 3040 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll

19:15:45.0397 3040 SysMain - ok

19:15:45.0437 3040 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll

19:15:45.0454 3040 TabletInputService - ok

19:15:45.0461 3040 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll

19:15:45.0496 3040 TapiSrv - ok

19:15:45.0508 3040 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll

19:15:45.0541 3040 TBS - ok

19:15:45.0598 3040 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip C:\windows\system32\drivers\tcpip.sys

19:15:45.0634 3040 Tcpip - ok

19:15:45.0657 3040 [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys

19:15:45.0692 3040 TCPIP6 - ok

19:15:45.0718 3040 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys

19:15:45.0750 3040 tcpipreg - ok

19:15:45.0809 3040 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys

19:15:45.0816 3040 tdcmdpst - ok

19:15:45.0833 3040 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys

19:15:45.0842 3040 TDPIPE - ok

19:15:45.0852 3040 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys

19:15:45.0861 3040 TDTCP - ok

19:15:45.0880 3040 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys

19:15:45.0913 3040 tdx - ok

19:15:45.0925 3040 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys

19:15:45.0936 3040 TermDD - ok

19:15:45.0961 3040 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll

19:15:46.0002 3040 TermService - ok

19:15:46.0023 3040 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll

19:15:46.0041 3040 Themes - ok

19:15:46.0077 3040 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll

19:15:46.0110 3040 THREADORDER - ok

19:15:46.0173 3040 [ 71C321649B28638EE80A2EEB164C1DC8 ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

19:15:46.0196 3040 TMachInfo - ok

19:15:46.0235 3040 [ 8E2C799D3476EAC32C3BA0DF7CE6AF19 ] TODDSrv C:\windows\system32\TODDSrv.exe

19:15:46.0244 3040 TODDSrv - ok

19:15:46.0392 3040 [ 1C73689B900428C7D054A41C4687F55C ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

19:15:46.0420 3040 TosCoSrv - ok

19:15:46.0492 3040 [ 29D0886CF250FCEF1BF9E65AB8D2C0C8 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

19:15:46.0500 3040 TOSHIBA HDD SSD Alert Service - ok

19:15:46.0540 3040 [ 09FF7B0B1B5C3D225495CB6F5A9B39F8 ] tos_sps64 C:\windows\system32\DRIVERS\tos_sps64.sys

19:15:46.0554 3040 tos_sps64 - ok

19:15:46.0596 3040 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll

19:15:46.0634 3040 TrkWks - ok

19:15:46.0683 3040 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe

19:15:46.0720 3040 TrustedInstaller - ok

19:15:46.0753 3040 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys

19:15:46.0784 3040 tssecsrv - ok

19:15:46.0804 3040 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys

19:15:46.0814 3040 TsUsbFlt - ok

19:15:46.0852 3040 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys

19:15:46.0888 3040 TsUsbGD - ok

19:15:46.0945 3040 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys

19:15:46.0985 3040 tunnel - ok

19:15:47.0042 3040 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS

19:15:47.0049 3040 TVALZ - ok

19:15:47.0081 3040 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\drivers\uagp35.sys

19:15:47.0091 3040 uagp35 - ok

19:15:47.0168 3040 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys

19:15:47.0223 3040 udfs - ok

19:15:47.0264 3040 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe

19:15:47.0276 3040 UI0Detect - ok

19:15:47.0321 3040 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys

19:15:47.0332 3040 uliagpkx - ok

19:15:47.0358 3040 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys

19:15:47.0370 3040 umbus - ok

19:15:47.0390 3040 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\drivers\umpass.sys

19:15:47.0435 3040 UmPass - ok

19:15:47.0701 3040 [ 7A78ED1088890114DFDE2C4AB038D6B6 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

19:15:47.0751 3040 UNS - ok

19:15:47.0807 3040 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll

19:15:47.0856 3040 upnphost - ok

19:15:47.0889 3040 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys

19:15:47.0898 3040 usbccgp - ok

19:15:47.0909 3040 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys

19:15:47.0923 3040 usbcir - ok

19:15:47.0927 3040 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\DRIVERS\usbehci.sys

19:15:47.0936 3040 usbehci - ok

19:15:47.0942 3040 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys

19:15:47.0955 3040 usbhub - ok

19:15:47.0967 3040 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys

19:15:47.0976 3040 usbohci - ok

19:15:48.0022 3040 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\drivers\usbprint.sys

19:15:48.0035 3040 usbprint - ok

19:15:48.0412 3040 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS

19:15:48.0521 3040 USBSTOR - ok

19:15:48.0694 3040 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys

19:15:48.0721 3040 usbuhci - ok

19:15:48.0946 3040 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\system32\Drivers\usbvideo.sys

19:15:48.0965 3040 usbvideo - ok

19:15:50.0243 3040 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll

19:15:50.0880 3040 UxSms - ok

19:15:50.0898 3040 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe

19:15:50.0907 3040 VaultSvc - ok

19:15:50.0911 3040 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys

19:15:50.0919 3040 vdrvroot - ok

19:15:50.0952 3040 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe

19:15:50.0989 3040 vds - ok

19:15:51.0030 3040 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys

19:15:51.0056 3040 vga - ok

19:15:51.0075 3040 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys

19:15:51.0107 3040 VgaSave - ok

19:15:51.0139 3040 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys

19:15:51.0151 3040 vhdmp - ok

19:15:51.0173 3040 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys

19:15:51.0181 3040 viaide - ok

19:15:51.0227 3040 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys

19:15:51.0237 3040 volmgr - ok

19:15:51.0347 3040 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys

19:15:51.0377 3040 volmgrx - ok

19:15:51.0408 3040 [ DF8126BD41180351A093A3AD2FC8903B ] volsnap C:\windows\system32\drivers\volsnap.sys

19:15:51.0451 3040 volsnap - ok

19:15:51.0493 3040 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\drivers\vsmraid.sys

19:15:51.0505 3040 vsmraid - ok

19:15:51.0615 3040 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe

19:15:51.0664 3040 VSS - ok

19:15:51.0709 3040 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys

19:15:51.0722 3040 vwifibus - ok

19:15:51.0751 3040 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys

19:15:51.0769 3040 vwififlt - ok

19:15:51.0840 3040 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys

19:15:51.0884 3040 vwifimp - ok

19:15:51.0927 3040 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll

19:15:51.0965 3040 W32Time - ok

19:15:51.0985 3040 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\drivers\wacompen.sys

19:15:52.0002 3040 WacomPen - ok

19:15:52.0087 3040 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys

19:15:52.0139 3040 WANARP - ok

19:15:52.0143 3040 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys

19:15:52.0178 3040 Wanarpv6 - ok

19:15:52.0236 3040 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe

19:15:52.0267 3040 WatAdminSvc - ok

19:15:52.0396 3040 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe

19:15:52.0425 3040 wbengine - ok

19:15:52.0430 3040 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll

19:15:52.0447 3040 WbioSrvc - ok

19:15:52.0476 3040 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll

19:15:52.0496 3040 wcncsvc - ok

19:15:52.0534 3040 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll

19:15:52.0545 3040 WcsPlugInService - ok

19:15:52.0584 3040 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\drivers\wd.sys

19:15:52.0594 3040 Wd - ok

19:15:52.0633 3040 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys

19:15:52.0654 3040 Wdf01000 - ok

19:15:52.0697 3040 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll

19:15:52.0716 3040 WdiServiceHost - ok

19:15:52.0723 3040 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll

19:15:52.0743 3040 WdiSystemHost - ok

19:15:52.0773 3040 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll

19:15:52.0791 3040 WebClient - ok

19:15:52.0813 3040 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll

19:15:52.0849 3040 Wecsvc - ok

19:15:52.0871 3040 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll

19:15:52.0904 3040 wercplsupport - ok

19:15:52.0909 3040 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll

19:15:52.0941 3040 WerSvc - ok

19:15:52.0975 3040 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys

19:15:53.0008 3040 WfpLwf - ok

19:15:53.0064 3040 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys

19:15:53.0097 3040 WIMMount - ok

19:15:53.0110 3040 WinHttpAutoProxySvc - ok

19:15:53.0166 3040 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll

19:15:53.0201 3040 Winmgmt - ok

19:15:53.0407 3040 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll

19:15:53.0463 3040 WinRM - ok

19:15:53.0525 3040 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll

19:15:53.0549 3040 Wlansvc - ok

19:15:53.0613 3040 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

19:15:53.0620 3040 wlcrasvc - ok

19:15:53.0859 3040 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

19:15:53.0909 3040 wlidsvc - ok

19:15:53.0925 3040 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys

19:15:53.0935 3040 WmiAcpi - ok

19:15:53.0976 3040 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe

19:15:53.0989 3040 wmiApSrv - ok

19:15:54.0048 3040 WMPNetworkSvc - ok

19:15:54.0080 3040 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll

19:15:54.0099 3040 WPCSvc - ok

19:15:54.0128 3040 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll

19:15:54.0145 3040 WPDBusEnum - ok

19:15:54.0241 3040 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys

19:15:54.0284 3040 ws2ifsl - ok

19:15:54.0287 3040 WSearch - ok

19:15:54.0342 3040 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\windows\system32\drivers\WudfPf.sys

19:15:54.0378 3040 WudfPf - ok

19:15:54.0437 3040 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys

19:15:54.0473 3040 WUDFRd - ok

19:15:54.0509 3040 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\windows\System32\WUDFSvc.dll

19:15:54.0544 3040 wudfsvc - ok

19:15:54.0570 3040 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll

19:15:54.0587 3040 WwanSvc - ok

19:15:54.0596 3040 ================ Scan global ===============================

19:15:54.0623 3040 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll

19:15:54.0655 3040 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\windows\system32\winsrv.dll

19:15:54.0664 3040 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\windows\system32\winsrv.dll

19:15:54.0690 3040 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll

19:15:54.0723 3040 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\windows\system32\services.exe

19:15:54.0727 3040 [Global] - ok

Link to post
Share on other sites

19:15:54.0728 3040 ================ Scan MBR ==================================

19:15:54.0749 3040 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0

19:15:55.0411 3040 \Device\Harddisk0\DR0 - ok

19:15:55.0412 3040 ================ Scan VBR ==================================

19:15:55.0457 3040 [ F35360472A297C6EDD472B5A8FE5D58B ] \Device\Harddisk0\DR0\Partition1

19:15:55.0458 3040 \Device\Harddisk0\DR0\Partition1 - ok

19:15:55.0459 3040 ================ Scan active images ========================

19:15:55.0461 3040 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys

19:15:55.0461 3040 C:\Windows\System32\drivers\crashdmp.sys - ok

19:15:55.0465 3040 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys

19:15:55.0465 3040 C:\Windows\System32\drivers\dumpfve.sys - ok

19:15:55.0469 3040 [ D7921D5A870B11CC1ADAB198A519D50A ] C:\Windows\System32\drivers\iaStor.sys

19:15:55.0469 3040 C:\Windows\System32\drivers\iaStor.sys - ok

19:15:55.0473 3040 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys

19:15:55.0473 3040 C:\Windows\System32\drivers\cdrom.sys - ok

19:15:55.0478 3040 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys

19:15:55.0478 3040 C:\Windows\System32\drivers\null.sys - ok

19:15:55.0482 3040 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys

19:15:55.0482 3040 C:\Windows\System32\drivers\beep.sys - ok

19:15:55.0487 3040 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys

19:15:55.0487 3040 C:\Windows\System32\drivers\vga.sys - ok

19:15:55.0491 3040 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys

19:15:55.0491 3040 C:\Windows\System32\drivers\videoprt.sys - ok

19:15:55.0496 3040 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys

19:15:55.0496 3040 C:\Windows\System32\drivers\watchdog.sys - ok

19:15:55.0500 3040 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys

19:15:55.0500 3040 C:\Windows\System32\drivers\RDPCDD.sys - ok

19:15:55.0505 3040 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys

19:15:55.0505 3040 C:\Windows\System32\drivers\RDPENCDD.sys - ok

19:15:55.0509 3040 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys

19:15:55.0509 3040 C:\Windows\System32\drivers\RDPREFMP.sys - ok

19:15:55.0512 3040 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys

19:15:55.0512 3040 C:\Windows\System32\drivers\msfs.sys - ok

19:15:55.0516 3040 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys

19:15:55.0516 3040 C:\Windows\System32\drivers\npfs.sys - ok

19:15:55.0520 3040 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys

19:15:55.0520 3040 C:\Windows\System32\drivers\tdi.sys - ok

19:15:55.0524 3040 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys

19:15:55.0524 3040 C:\Windows\System32\drivers\tdx.sys - ok

19:15:55.0528 3040 [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys

19:15:55.0528 3040 C:\Windows\System32\drivers\afd.sys - ok

19:15:55.0532 3040 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys

19:15:55.0532 3040 C:\Windows\System32\drivers\netbt.sys - ok

19:15:55.0537 3040 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys

19:15:55.0537 3040 C:\Windows\System32\drivers\pacer.sys - ok

19:15:55.0541 3040 [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys

19:15:55.0541 3040 C:\Windows\System32\drivers\vwififlt.sys - ok

19:15:55.0545 3040 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys

19:15:55.0545 3040 C:\Windows\System32\drivers\wfplwf.sys - ok

19:15:55.0548 3040 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys

19:15:55.0548 3040 C:\Windows\System32\drivers\netbios.sys - ok

19:15:55.0552 3040 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys

19:15:55.0552 3040 C:\Windows\System32\drivers\nsiproxy.sys - ok

19:15:55.0556 3040 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys

19:15:55.0556 3040 C:\Windows\System32\drivers\rdbss.sys - ok

19:15:55.0560 3040 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys

19:15:55.0560 3040 C:\Windows\System32\drivers\termdd.sys - ok

19:15:55.0564 3040 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys

19:15:55.0564 3040 C:\Windows\System32\drivers\wanarp.sys - ok

19:15:55.0568 3040 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys

19:15:55.0568 3040 C:\Windows\System32\drivers\dfsc.sys - ok

19:15:55.0573 3040 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys

19:15:55.0573 3040 C:\Windows\System32\drivers\discache.sys - ok

19:15:55.0577 3040 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys

19:15:55.0577 3040 C:\Windows\System32\drivers\mssmbios.sys - ok

19:15:55.0581 3040 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys

19:15:55.0581 3040 C:\Windows\System32\drivers\blbdrive.sys - ok

19:15:55.0586 3040 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys

19:15:55.0586 3040 C:\Windows\System32\drivers\tunnel.sys - ok

19:15:55.0590 3040 [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll

19:15:55.0590 3040 C:\Windows\System32\ntdll.dll - ok

19:15:55.0594 3040 [ 1911A3356FA3F77CCC825CCBAC038C2A ] C:\Windows\System32\smss.exe

19:15:55.0594 3040 C:\Windows\System32\smss.exe - ok

19:15:55.0597 3040 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe

19:15:55.0597 3040 C:\Windows\System32\autochk.exe - ok

19:15:55.0601 3040 [ 370C2A8629B30F910F740387795DDC6F ] C:\Windows\System32\drivers\igdkmd64.sys

19:15:55.0601 3040 C:\Windows\System32\drivers\igdkmd64.sys - ok

19:15:55.0606 3040 [ F5BEE30450E18E6B83A5012C100616FD ] C:\Windows\System32\drivers\dxgkrnl.sys

19:15:55.0606 3040 C:\Windows\System32\drivers\dxgkrnl.sys - ok

19:15:55.0609 3040 [ 9CD68BDDF322535C02ADC8331013D13D ] C:\Windows\System32\drivers\dxgmms1.sys

19:15:55.0609 3040 C:\Windows\System32\drivers\dxgmms1.sys - ok

19:15:55.0613 3040 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] C:\Windows\System32\drivers\HECIx64.sys

19:15:55.0613 3040 C:\Windows\System32\drivers\HECIx64.sys - ok

19:15:55.0617 3040 [ AE259C75F9A0B057B6BF9E9695632B09 ] C:\Windows\System32\drivers\usbport.sys

19:15:55.0617 3040 C:\Windows\System32\drivers\usbport.sys - ok

19:15:55.0621 3040 [ C025055FE7B87701EB042095DF1A2D7B ] C:\Windows\System32\drivers\usbehci.sys

19:15:55.0621 3040 C:\Windows\System32\drivers\usbehci.sys - ok

19:15:55.0625 3040 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys

19:15:55.0625 3040 C:\Windows\System32\drivers\hdaudbus.sys - ok

19:15:55.0629 3040 [ 045FB70BC993B691517CE309045FF02D ] C:\Windows\System32\drivers\L1C62x64.sys

19:15:55.0629 3040 C:\Windows\System32\drivers\L1C62x64.sys - ok

19:15:55.0633 3040 [ 64FDF4FE366CA42DA2B7D9D424B6E39B ] C:\Windows\System32\drivers\rtl8192ce.sys

19:15:55.0633 3040 C:\Windows\System32\drivers\rtl8192ce.sys - ok

19:15:55.0637 3040 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys

19:15:55.0637 3040 C:\Windows\System32\drivers\i8042prt.sys - ok

19:15:55.0641 3040 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys

19:15:55.0641 3040 C:\Windows\System32\drivers\vwifibus.sys - ok

19:15:55.0645 3040 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys

19:15:55.0645 3040 C:\Windows\System32\drivers\kbdclass.sys - ok

19:15:55.0648 3040 [ 470C47DABA9CA3966F0AB3F835D7D135 ] C:\Windows\System32\drivers\SynTP.sys

19:15:55.0648 3040 C:\Windows\System32\drivers\SynTP.sys - ok

19:15:55.0653 3040 [ CCA2AB1752A61F29C3C941CD79D78CEA ] C:\Windows\System32\drivers\usbd.sys

19:15:55.0653 3040 C:\Windows\System32\drivers\usbd.sys - ok

19:15:55.0657 3040 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys

19:15:55.0658 3040 C:\Windows\System32\drivers\mouclass.sys - ok

19:15:55.0662 3040 [ B9B42A302325537D7B9DC52D47F33A73 ] C:\Windows\System32\kernel32.dll

19:15:55.0662 3040 C:\Windows\System32\kernel32.dll - ok

19:15:55.0668 3040 [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys

19:15:55.0668 3040 C:\Windows\System32\drivers\CmBatt.sys - ok

19:15:55.0672 3040 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys

19:15:55.0672 3040 C:\Windows\System32\drivers\agilevpn.sys - ok

19:15:55.0676 3040 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys

19:15:55.0676 3040 C:\Windows\System32\drivers\CompositeBus.sys - ok

19:15:55.0679 3040 [ 60ACB128E64C35C2B4E4AAB1B0A5C293 ] C:\Windows\System32\drivers\FwLnk.sys

19:15:55.0679 3040 C:\Windows\System32\drivers\FwLnk.sys - ok

19:15:55.0683 3040 [ ADA036632C664CAA754079041CF1F8C1 ] C:\Windows\System32\drivers\intelppm.sys

19:15:55.0683 3040 C:\Windows\System32\drivers\intelppm.sys - ok

19:15:55.0687 3040 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys

19:15:55.0687 3040 C:\Windows\System32\drivers\ndistapi.sys - ok

19:15:55.0692 3040 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys

19:15:55.0692 3040 C:\Windows\System32\drivers\ndiswan.sys - ok

19:15:55.0695 3040 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys

19:15:55.0695 3040 C:\Windows\System32\drivers\rasl2tp.sys - ok

19:15:55.0698 3040 [ FD542B661BD22FA69CA789AD0AC58C29 ] C:\Windows\System32\drivers\tdcmdpst.sys

19:15:55.0698 3040 C:\Windows\System32\drivers\tdcmdpst.sys - ok

19:15:55.0702 3040 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys

19:15:55.0702 3040 C:\Windows\System32\drivers\ks.sys - ok

19:15:55.0706 3040 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys

19:15:55.0706 3040 C:\Windows\System32\drivers\raspppoe.sys - ok

19:15:55.0710 3040 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys

19:15:55.0710 3040 C:\Windows\System32\drivers\raspptp.sys - ok

19:15:55.0713 3040 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys

19:15:55.0713 3040 C:\Windows\System32\drivers\rassstp.sys - ok

19:15:55.0717 3040 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys

19:15:55.0717 3040 C:\Windows\System32\drivers\swenum.sys - ok

19:15:55.0720 3040 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys

19:15:55.0720 3040 C:\Windows\System32\drivers\umbus.sys - ok

19:15:55.0724 3040 [ 287C6C9410B111B68B52CA298F7B8C24 ] C:\Windows\System32\drivers\usbhub.sys

19:15:55.0724 3040 C:\Windows\System32\drivers\usbhub.sys - ok

19:15:55.0728 3040 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys

19:15:55.0728 3040 C:\Windows\System32\drivers\ndproxy.sys - ok

19:15:55.0732 3040 [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys

19:15:55.0732 3040 C:\Windows\System32\drivers\drmk.sys - ok

19:15:55.0737 3040 [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys

19:15:55.0737 3040 C:\Windows\System32\drivers\portcls.sys - ok

19:15:55.0740 3040 [ A260BE645DD096D90318C8CF98536720 ] C:\Windows\System32\drivers\CHDRT64.sys

19:15:55.0740 3040 C:\Windows\System32\drivers\CHDRT64.sys - ok

19:15:55.0744 3040 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys

19:15:55.0744 3040 C:\Windows\System32\drivers\ksthunk.sys - ok

19:15:55.0747 3040 [ 6F1A3157A1C89435352CEB543CDB359C ] C:\Windows\System32\drivers\usbccgp.sys

19:15:55.0748 3040 C:\Windows\System32\drivers\usbccgp.sys - ok

19:15:55.0751 3040 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll

19:15:55.0751 3040 C:\Windows\System32\psapi.dll - ok

19:15:55.0755 3040 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll

19:15:55.0755 3040 C:\Windows\System32\setupapi.dll - ok

19:15:55.0759 3040 [ 454800C2BC7F3927CE030141EE4F4C50 ] C:\Windows\System32\drivers\usbvideo.sys

19:15:55.0759 3040 C:\Windows\System32\drivers\usbvideo.sys - ok

19:15:55.0762 3040 [ 91111CEBBDE8015E822C46120ED9537C ] C:\Windows\System32\drivers\PGEffect.sys

19:15:55.0762 3040 C:\Windows\System32\drivers\PGEffect.sys - ok

19:15:55.0766 3040 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll

19:15:55.0766 3040 C:\Windows\System32\ws2_32.dll - ok

19:15:55.0770 3040 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll

19:15:55.0770 3040 C:\Windows\System32\imm32.dll - ok

19:15:55.0774 3040 [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll

19:15:55.0774 3040 C:\Windows\System32\shell32.dll - ok

19:15:55.0778 3040 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll

19:15:55.0778 3040 C:\Windows\System32\sechost.dll - ok

19:15:55.0781 3040 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll

19:15:55.0782 3040 C:\Windows\System32\Wldap32.dll - ok

19:15:55.0786 3040 [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll

19:15:55.0786 3040 C:\Windows\System32\advapi32.dll - ok

19:15:55.0790 3040 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll

19:15:55.0790 3040 C:\Windows\System32\comdlg32.dll - ok

19:15:55.0793 3040 [ 78CA24E3B51C624007C1B8A7B8D6C9AF ] C:\Windows\System32\iertutil.dll

19:15:55.0793 3040 C:\Windows\System32\iertutil.dll - ok

19:15:55.0797 3040 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll

19:15:55.0797 3040 C:\Windows\System32\clbcatq.dll - ok

19:15:55.0800 3040 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll

19:15:55.0800 3040 C:\Windows\System32\nsi.dll - ok

19:15:55.0805 3040 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll

19:15:55.0805 3040 C:\Windows\System32\oleaut32.dll - ok

19:15:55.0808 3040 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll

19:15:55.0808 3040 C:\Windows\System32\msctf.dll - ok

19:15:55.0812 3040 [ 5A45FA344F4AD99D903F4B20E43B89EC ] C:\Windows\System32\wininet.dll

19:15:55.0812 3040 C:\Windows\System32\wininet.dll - ok

19:15:55.0816 3040 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll

19:15:55.0816 3040 C:\Windows\System32\shlwapi.dll - ok

19:15:55.0822 3040 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll

19:15:55.0822 3040 C:\Windows\System32\ole32.dll - ok

19:15:55.0825 3040 [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll

19:15:55.0826 3040 C:\Windows\System32\gdi32.dll - ok

19:15:55.0829 3040 [ 2F8B1E3EE3545D3B5A8D56FA1AE07B65 ] C:\Windows\System32\usp10.dll

19:15:55.0829 3040 C:\Windows\System32\usp10.dll - ok

19:15:55.0833 3040 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll

19:15:55.0833 3040 C:\Windows\System32\difxapi.dll - ok

19:15:55.0839 3040 [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll

19:15:55.0839 3040 C:\Windows\System32\rpcrt4.dll - ok

19:15:55.0843 3040 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll

19:15:55.0843 3040 C:\Windows\System32\msvcrt.dll - ok

19:15:55.0847 3040 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll

19:15:55.0847 3040 C:\Windows\System32\normaliz.dll - ok

19:15:55.0851 3040 [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll

19:15:55.0851 3040 C:\Windows\System32\lpk.dll - ok

19:15:55.0855 3040 [ E8FD953D416772794408A68CC20B247D ] C:\Windows\System32\urlmon.dll

19:15:55.0855 3040 C:\Windows\System32\urlmon.dll - ok

19:15:55.0858 3040 [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll

19:15:55.0858 3040 C:\Windows\System32\imagehlp.dll - ok

19:15:55.0862 3040 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll

19:15:55.0862 3040 C:\Windows\System32\user32.dll - ok

19:15:55.0866 3040 [ FAF1BA660F84789CCCE747CE6F9D055A ] C:\Windows\System32\crypt32.dll

19:15:55.0866 3040 C:\Windows\System32\crypt32.dll - ok

19:15:55.0870 3040 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll

19:15:55.0870 3040 C:\Windows\System32\comctl32.dll - ok

19:15:55.0874 3040 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll

19:15:55.0874 3040 C:\Windows\System32\cfgmgr32.dll - ok

19:15:55.0877 3040 [ 6B5174702343BD955E174FDFEFA2A1A3 ] C:\Windows\System32\KernelBase.dll

19:15:55.0877 3040 C:\Windows\System32\KernelBase.dll - ok

19:15:55.0881 3040 [ 53238D99636BBA85F491C3E8FD22AB00 ] C:\Windows\System32\wintrust.dll

19:15:55.0881 3040 C:\Windows\System32\wintrust.dll - ok

19:15:55.0886 3040 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll

19:15:55.0886 3040 C:\Windows\System32\devobj.dll - ok

19:15:55.0888 3040 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll

19:15:55.0888 3040 C:\Windows\System32\msasn1.dll - ok

19:15:55.0893 3040 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll

19:15:55.0893 3040 C:\Windows\SysWOW64\normaliz.dll - ok

19:15:55.0896 3040 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys

19:15:55.0897 3040 C:\Windows\System32\drivers\dxapi.sys - ok

19:15:55.0900 3040 [ 511166D3F5D7EBA36DE48C4F5E195886 ] C:\Windows\System32\win32k.sys

19:15:55.0900 3040 C:\Windows\System32\win32k.sys - ok

19:15:55.0905 3040 [ 96F587CA26A6AA894BD8CACE4540CFFC ] C:\Windows\System32\csrsrv.dll

19:15:55.0905 3040 C:\Windows\System32\csrsrv.dll - ok

19:15:55.0908 3040 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe

19:15:55.0908 3040 C:\Windows\System32\csrss.exe - ok

19:15:55.0911 3040 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll

19:15:55.0911 3040 C:\Windows\System32\basesrv.dll - ok

19:15:55.0915 3040 [ EB6A48CC998E1090E44E8E7F1009A640 ] C:\Windows\System32\winsrv.dll

19:15:55.0915 3040 C:\Windows\System32\winsrv.dll - ok

19:15:55.0919 3040 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys

19:15:55.0919 3040 C:\Windows\System32\drivers\monitor.sys - ok

19:15:55.0923 3040 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll

19:15:55.0923 3040 C:\Windows\System32\tsddd.dll - ok

19:15:55.0927 3040 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll

19:15:55.0927 3040 C:\Windows\System32\sxssrv.dll - ok

19:15:55.0930 3040 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe

19:15:55.0930 3040 C:\Windows\System32\wininit.exe - ok

19:15:55.0934 3040 [ 05569A79BF4693670B709144382D02D4 ] C:\Windows\System32\cdd.dll

19:15:55.0934 3040 C:\Windows\System32\cdd.dll - ok

19:15:55.0939 3040 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL

19:15:55.0939 3040 C:\Windows\System32\KBDUS.DLL - ok

19:15:55.0942 3040 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll

19:15:55.0942 3040 C:\Windows\System32\profapi.dll - ok

19:15:55.0946 3040 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll

19:15:55.0946 3040 C:\Windows\System32\RpcRtRemote.dll - ok

19:15:55.0949 3040 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll

19:15:55.0949 3040 C:\Windows\System32\sxs.dll - ok

19:15:55.0953 3040 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll

19:15:55.0953 3040 C:\Windows\System32\WlS0WndH.dll - ok

19:15:55.0957 3040 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll

19:15:55.0957 3040 C:\Windows\System32\cryptbase.dll - ok

19:15:55.0961 3040 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll

19:15:55.0961 3040 C:\Windows\System32\apphelp.dll - ok

19:15:55.0965 3040 [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll

19:15:55.0965 3040 C:\Windows\System32\lsasrv.dll - ok

19:15:55.0968 3040 [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe

19:15:55.0968 3040 C:\Windows\System32\lsass.exe - ok

19:15:55.0971 3040 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe

19:15:55.0971 3040 C:\Windows\System32\lsm.exe - ok

19:15:55.0975 3040 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\Windows\System32\services.exe

19:15:55.0975 3040 C:\Windows\System32\services.exe - ok

19:15:55.0978 3040 [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll

19:15:55.0978 3040 C:\Windows\System32\sspisrv.dll - ok

19:15:55.0982 3040 [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll

19:15:55.0982 3040 C:\Windows\System32\sspicli.dll - ok

19:15:55.0987 3040 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll

19:15:55.0987 3040 C:\Windows\System32\sysntfy.dll - ok

19:15:55.0991 3040 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll

19:15:55.0991 3040 C:\Windows\System32\wmsgapi.dll - ok

19:15:55.0995 3040 [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll

19:15:55.0995 3040 C:\Windows\System32\mswsock.dll - ok

19:15:55.0998 3040 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll

19:15:55.0998 3040 C:\Windows\System32\samsrv.dll - ok

19:15:56.0001 3040 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll

19:15:56.0001 3040 C:\Windows\System32\scesrv.dll - ok

19:15:56.0005 3040 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll

19:15:56.0005 3040 C:\Windows\System32\scext.dll - ok

19:15:56.0009 3040 [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll

19:15:56.0009 3040 C:\Windows\System32\secur32.dll - ok

19:15:56.0013 3040 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll

19:15:56.0013 3040 C:\Windows\System32\cryptdll.dll - ok

19:15:56.0016 3040 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll

19:15:56.0016 3040 C:\Windows\System32\wevtapi.dll - ok

19:15:56.0020 3040 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll

19:15:56.0020 3040 C:\Windows\System32\authz.dll - ok

19:15:56.0025 3040 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll

19:15:56.0025 3040 C:\Windows\System32\cngaudit.dll - ok

19:15:56.0030 3040 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll

19:15:56.0030 3040 C:\Windows\System32\srvcli.dll - ok

19:15:56.0034 3040 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll

19:15:56.0034 3040 C:\Windows\System32\cryptsp.dll - ok

19:15:56.0039 3040 [ 400645085A91BF3EB0271329B95AE0BE ] C:\Windows\System32\ncrypt.dll

19:15:56.0039 3040 C:\Windows\System32\ncrypt.dll - ok

19:15:56.0043 3040 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll

19:15:56.0043 3040 C:\Windows\System32\rsaenh.dll - ok

19:15:56.0047 3040 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll

19:15:56.0047 3040 C:\Windows\System32\bcrypt.dll - ok

19:15:56.0050 3040 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll

19:15:56.0050 3040 C:\Windows\System32\msprivs.dll - ok

19:15:56.0053 3040 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll

19:15:56.0053 3040 C:\Windows\System32\netjoin.dll - ok

19:15:56.0057 3040 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe

19:15:56.0057 3040 C:\Windows\System32\winlogon.exe - ok

19:15:56.0061 3040 [ 4350FED1ED450E731EF0124AAE21131A ] C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000000.@

19:15:56.0061 3040 C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000000.@ - ok

19:15:56.0065 3040 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll

19:15:56.0065 3040 C:\Windows\System32\winsta.dll - ok

19:15:56.0069 3040 [ 16ECE8BD6734CC170B9AE74176E89A9B ] C:\Windows\System32\kerberos.dll

19:15:56.0069 3040 C:\Windows\System32\kerberos.dll - ok

19:15:56.0073 3040 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll

19:15:56.0073 3040 C:\Windows\System32\negoexts.dll - ok

19:15:56.0076 3040 [ 1B2E79DB7750D7E8B6F61D2611F9FF59 ] C:\Windows\assembly\GAC_64\Desktop.ini

19:15:56.0077 3040 C:\Windows\assembly\GAC_64\Desktop.ini - ok

19:15:56.0080 3040 [ 92BAD4BC9257D19E8BC0E106D5C6073D ] C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000064.@

19:15:56.0080 3040 C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000064.@ - ok

19:15:56.0084 3040 [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll

19:15:56.0084 3040 C:\Windows\System32\cabinet.dll - ok

19:15:56.0089 3040 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll

19:15:56.0089 3040 C:\Windows\System32\msv1_0.dll - ok

19:15:56.0093 3040 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll

19:15:56.0093 3040 C:\Windows\System32\wship6.dll - ok

19:15:56.0097 3040 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll

19:15:56.0097 3040 C:\Windows\System32\netlogon.dll - ok

19:15:56.0100 3040 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll

19:15:56.0100 3040 C:\Windows\System32\dnsapi.dll - ok

19:15:56.0104 3040 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll

19:15:56.0104 3040 C:\Windows\System32\logoncli.dll - ok

19:15:56.0108 3040 [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll

19:15:56.0108 3040 C:\Windows\System32\schannel.dll - ok

19:15:56.0112 3040 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll

19:15:56.0112 3040 C:\Windows\System32\wdigest.dll - ok

19:15:56.0116 3040 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll

19:15:56.0116 3040 C:\Windows\System32\TSpkg.dll - ok

19:15:56.0121 3040 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll

19:15:56.0121 3040 C:\Windows\System32\pku2u.dll - ok

19:15:56.0126 3040 [ 7DBA64AD70C2E2481C68D9E0F7CD7840 ] C:\Windows\System32\LIVESSP.DLL

19:15:56.0126 3040 C:\Windows\System32\LIVESSP.DLL - ok

19:15:56.0131 3040 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll

19:15:56.0131 3040 C:\Windows\System32\bcryptprimitives.dll - ok

19:15:56.0136 3040 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll

19:15:56.0136 3040 C:\Windows\System32\credssp.dll - ok

19:15:56.0140 3040 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll

19:15:56.0140 3040 C:\Windows\System32\efslsaext.dll - ok

19:15:56.0144 3040 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll

19:15:56.0144 3040 C:\Windows\System32\scecli.dll - ok

19:15:56.0150 3040 [ 1B9B865BE9020F591A273CB37BC0EE3D ] C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@

19:15:56.0150 3040 C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\000000cb.@ - ok

19:15:56.0154 3040 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll

19:15:56.0155 3040 C:\Windows\System32\ubpm.dll - ok

19:15:56.0159 3040 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL

19:15:56.0159 3040 C:\Windows\System32\WSHTCPIP.DLL - ok

19:15:56.0164 3040 [ 05F08E6A19AE6F441D74262BC841A6FD ] C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\00000004.@

19:15:56.0164 3040 C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\00000004.@ - ok

19:15:56.0168 3040 [ 6F68F63794097E54F36474ED4384B759 ] C:\Windows\System32\svchost.exe

19:15:56.0169 3040 C:\Windows\System32\svchost.exe - ok

19:15:56.0173 3040 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll

19:15:56.0174 3040 C:\Windows\System32\umpnpmgr.dll - ok

19:15:56.0177 3040 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll

19:15:56.0177 3040 C:\Windows\System32\devrtl.dll - ok

19:15:56.0180 3040 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll

19:15:56.0180 3040 C:\Windows\System32\SPInf.dll - ok

19:15:56.0184 3040 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll

19:15:56.0184 3040 C:\Windows\System32\gpapi.dll - ok

19:15:56.0188 3040 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll

19:15:56.0188 3040 C:\Windows\System32\userenv.dll - ok

19:15:56.0192 3040 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll

19:15:56.0192 3040 C:\Windows\System32\umpo.dll - ok

19:15:56.0196 3040 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll

19:15:56.0196 3040 C:\Windows\System32\pcwum.dll - ok

19:15:56.0200 3040 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll

19:15:56.0200 3040 C:\Windows\System32\powrprof.dll - ok

19:15:56.0204 3040 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys

19:15:56.0204 3040 C:\Windows\System32\drivers\luafv.sys - ok

19:15:56.0208 3040 [ 8F571F016FA1976F445147E9E6C8AE9B ] C:\Windows\System32\drivers\Sftvollh.sys

19:15:56.0208 3040 C:\Windows\System32\drivers\Sftvollh.sys - ok

19:15:56.0212 3040 [ D3381DC54C34D79B22CEE0D65BA91B7C ] C:\Windows\System32\drivers\WUDFPf.sys

19:15:56.0212 3040 C:\Windows\System32\drivers\WUDFPf.sys - ok

19:15:56.0216 3040 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll

19:15:56.0216 3040 C:\Windows\System32\RpcEpMap.dll - ok

19:15:56.0221 3040 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll

19:15:56.0221 3040 C:\Windows\System32\rpcss.dll - ok

19:15:56.0223 3040 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll

19:15:56.0223 3040 C:\Windows\System32\wshqos.dll - ok

19:15:56.0228 3040 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll

19:15:56.0228 3040 C:\Windows\System32\FirewallAPI.dll - ok

19:15:56.0233 3040 [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll

19:15:56.0233 3040 C:\Windows\System32\authui.dll - ok

19:15:56.0238 3040 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe

19:15:56.0238 3040 C:\Windows\System32\LogonUI.exe - ok

19:15:56.0242 3040 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll

19:15:56.0242 3040 C:\Windows\System32\version.dll - ok

19:15:56.0246 3040 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll

19:15:56.0246 3040 C:\Windows\System32\wevtsvc.dll - ok

19:15:56.0251 3040 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll

19:15:56.0251 3040 C:\Windows\System32\cryptui.dll - ok

19:15:56.0256 3040 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll

19:15:56.0256 3040 C:\Windows\System32\adtschema.dll - ok

19:15:56.0260 3040 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll

19:15:56.0260 3040 C:\Windows\System32\audiosrv.dll - ok

19:15:56.0264 3040 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll

19:15:56.0264 3040 C:\Windows\System32\avrt.dll - ok

19:15:56.0268 3040 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll

19:15:56.0268 3040 C:\Windows\System32\mmcss.dll - ok

19:15:56.0275 3040 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll

19:15:56.0275 3040 C:\Windows\System32\MMDevAPI.dll - ok

19:15:56.0278 3040 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll

19:15:56.0278 3040 C:\Windows\System32\propsys.dll - ok

19:15:56.0283 3040 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll

19:15:56.0283 3040 C:\Windows\System32\wlansvc.dll - ok

19:15:56.0288 3040 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll

19:15:56.0288 3040 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok

19:15:56.0294 3040 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys

19:15:56.0294 3040 C:\Windows\System32\drivers\fltMgr.sys - ok

19:15:56.0296 3040 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll

19:15:56.0296 3040 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok

19:15:56.0301 3040 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL

19:15:56.0301 3040 C:\Windows\System32\PSHED.DLL - ok

19:15:56.0306 3040 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll

19:15:56.0306 3040 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok

19:15:56.0310 3040 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll

19:15:56.0310 3040 C:\Windows\System32\samlib.dll - ok

19:15:56.0313 3040 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll

19:15:56.0313 3040 C:\Windows\System32\shacct.dll - ok

19:15:56.0317 3040 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe

19:15:56.0317 3040 C:\Windows\System32\audiodg.exe - ok

19:15:56.0321 3040 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll

19:15:56.0321 3040 C:\Windows\System32\uxtheme.dll - ok

19:15:56.0325 3040 [ 179E8401224D557ECFF3695F2016EA5B ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll

19:15:56.0325 3040 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll - ok

19:15:56.0329 3040 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll

19:15:56.0329 3040 C:\Windows\System32\gpsvc.dll - ok

19:15:56.0332 3040 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll

19:15:56.0332 3040 C:\Windows\System32\ntmarta.dll - ok

19:15:56.0337 3040 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll

19:15:56.0337 3040 C:\Windows\System32\dui70.dll - ok

19:15:56.0341 3040 [ 2DF36F15B2BC1571A6A542A3C2107920 ] C:\Windows\System32\nlaapi.dll

19:15:56.0341 3040 C:\Windows\System32\nlaapi.dll - ok

19:15:56.0346 3040 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll

19:15:56.0346 3040 C:\Windows\System32\profsvc.dll - ok

19:15:56.0350 3040 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll

19:15:56.0350 3040 C:\Windows\System32\atl.dll - ok

Link to post
Share on other sites

19:15:56.0354 3040 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll

19:15:56.0354 3040 C:\Windows\System32\dsrole.dll - ok

19:15:56.0358 3040 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll

19:15:56.0358 3040 C:\Windows\System32\duser.dll - ok

19:15:56.0362 3040 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll

19:15:56.0362 3040 C:\Windows\System32\themeservice.dll - ok

19:15:56.0366 3040 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll

19:15:56.0366 3040 C:\Windows\System32\es.dll - ok

19:15:56.0370 3040 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll

19:15:56.0370 3040 C:\Windows\System32\slc.dll - ok

19:15:56.0374 3040 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll

19:15:56.0374 3040 C:\Windows\System32\winmm.dll - ok

19:15:56.0378 3040 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv

19:15:56.0378 3040 C:\Windows\System32\wdmaud.drv - ok

19:15:56.0381 3040 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll

19:15:56.0382 3040 C:\Windows\System32\comres.dll - ok

19:15:56.0386 3040 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll

19:15:56.0386 3040 C:\Windows\System32\ksuser.dll - ok

19:15:56.0390 3040 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll

19:15:56.0390 3040 C:\Windows\System32\Sens.dll - ok

19:15:56.0394 3040 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll

19:15:56.0394 3040 C:\Windows\System32\SndVolSSO.dll - ok

19:15:56.0398 3040 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll

19:15:56.0398 3040 C:\Windows\System32\uxsms.dll - ok

19:15:56.0401 3040 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll

19:15:56.0401 3040 C:\Windows\System32\wtsapi32.dll - ok

19:15:56.0405 3040 [ 80E69670BDA10F32A941BA7358E33012 ] C:\Windows\System32\WUDFPlatform.dll

19:15:56.0405 3040 C:\Windows\System32\WUDFPlatform.dll - ok

19:15:56.0409 3040 [ 7A95C95B6C4CF292D689106BCAE49543 ] C:\Windows\System32\WUDFSvc.dll

19:15:56.0409 3040 C:\Windows\System32\WUDFSvc.dll - ok

19:15:56.0413 3040 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys

19:15:56.0413 3040 C:\Windows\System32\drivers\lltdio.sys - ok

19:15:56.0417 3040 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys

19:15:56.0417 3040 C:\Windows\System32\drivers\ndisuio.sys - ok

19:15:56.0421 3040 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys

19:15:56.0421 3040 C:\Windows\System32\drivers\nwifi.sys - ok

19:15:56.0425 3040 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll

19:15:56.0425 3040 C:\Windows\System32\hid.dll - ok

19:15:56.0428 3040 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys

19:15:56.0428 3040 C:\Windows\System32\drivers\rspndr.sys - ok

19:15:56.0432 3040 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL

19:15:56.0432 3040 C:\Windows\System32\IPHLPAPI.DLL - ok

19:15:56.0435 3040 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll

19:15:56.0435 3040 C:\Windows\System32\lmhsvc.dll - ok

19:15:56.0440 3040 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll

19:15:56.0440 3040 C:\Windows\System32\nsisvc.dll - ok

19:15:56.0443 3040 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll

19:15:56.0443 3040 C:\Windows\System32\dhcpcore.dll - ok

19:15:56.0447 3040 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll

19:15:56.0447 3040 C:\Windows\System32\nrpsrv.dll - ok

19:15:56.0451 3040 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll

19:15:56.0451 3040 C:\Windows\System32\winnsi.dll - ok

19:15:56.0455 3040 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll

19:15:56.0455 3040 C:\Windows\System32\dnsrslvr.dll - ok

19:15:56.0459 3040 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll

19:15:56.0459 3040 C:\Windows\System32\eapphost.dll - ok

19:15:56.0463 3040 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll

19:15:56.0463 3040 C:\Windows\System32\eapsvc.dll - ok

19:15:56.0467 3040 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll

19:15:56.0467 3040 C:\Windows\System32\keyiso.dll - ok

19:15:56.0471 3040 [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL

19:15:56.0471 3040 C:\Windows\System32\FWPUCLNT.DLL - ok

19:15:56.0473 3040 [ 71C7B65B6557B75B99907E76956AE4B8 ] C:\Windows\System32\dhcpcore6.dll

19:15:56.0473 3040 C:\Windows\System32\dhcpcore6.dll - ok

19:15:56.0477 3040 [ 4CBCC37856EA2039C27A2FB661DDA0E5 ] C:\Windows\System32\dhcpcsvc6.dll

19:15:56.0477 3040 C:\Windows\System32\dhcpcsvc6.dll - ok

19:15:56.0481 3040 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll

19:15:56.0481 3040 C:\Windows\System32\dwmapi.dll - ok

19:15:56.0484 3040 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll

19:15:56.0484 3040 C:\Windows\System32\umb.dll - ok

19:15:56.0488 3040 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll

19:15:56.0488 3040 C:\Windows\System32\wlanmsm.dll - ok

19:15:56.0492 3040 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll

19:15:56.0492 3040 C:\Windows\System32\dhcpcsvc.dll - ok

19:15:56.0496 3040 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll

19:15:56.0496 3040 C:\Windows\System32\xmllite.dll - ok

19:15:56.0500 3040 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll

19:15:56.0500 3040 C:\Windows\System32\AudioSes.dll - ok

19:15:56.0503 3040 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll

19:15:56.0504 3040 C:\Windows\System32\dnsext.dll - ok

19:15:56.0508 3040 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll

19:15:56.0508 3040 C:\Windows\System32\onex.dll - ok

19:15:56.0511 3040 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll

19:15:56.0511 3040 C:\Windows\System32\wlansec.dll - ok

19:15:56.0515 3040 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll

19:15:56.0515 3040 C:\Windows\System32\eappcfg.dll - ok

19:15:56.0519 3040 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll

19:15:56.0519 3040 C:\Windows\System32\eappprxy.dll - ok

19:15:56.0523 3040 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll

19:15:56.0523 3040 C:\Windows\System32\msacm32.dll - ok

19:15:56.0527 3040 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv

19:15:56.0527 3040 C:\Windows\System32\msacm32.drv - ok

19:15:56.0531 3040 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll

19:15:56.0531 3040 C:\Windows\System32\l2gpstore.dll - ok

19:15:56.0535 3040 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll

19:15:56.0535 3040 C:\Windows\System32\wlgpclnt.dll - ok

19:15:56.0539 3040 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll

19:15:56.0539 3040 C:\Windows\System32\midimap.dll - ok

19:15:56.0543 3040 [ 26B73A85855681500BCC25C7CD9FF5B1 ] C:\Windows\System32\WindowsCodecs.dll

19:15:56.0543 3040 C:\Windows\System32\WindowsCodecs.dll - ok

19:15:56.0547 3040 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll

19:15:56.0547 3040 C:\Windows\System32\WinSCard.dll - ok

19:15:56.0550 3040 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll

19:15:56.0550 3040 C:\Windows\System32\wlanutil.dll - ok

19:15:56.0553 3040 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll

19:15:56.0553 3040 C:\Windows\System32\AudioEng.dll - ok

19:15:56.0558 3040 [ 4FFDE68C4B7C9993FA551E7E36DDB34D ] C:\Windows\System32\msxml6.dll

19:15:56.0558 3040 C:\Windows\System32\msxml6.dll - ok

19:15:56.0561 3040 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll

19:15:56.0561 3040 C:\Windows\System32\AUDIOKSE.dll - ok

19:15:56.0565 3040 [ 1F3781E9DC77EF94D6A807A4D5238185 ] C:\Windows\System32\CX64AP48.dll

19:15:56.0565 3040 C:\Windows\System32\CX64AP48.dll - ok

19:15:56.0569 3040 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll

19:15:56.0569 3040 C:\Windows\System32\VaultCredProvider.dll - ok

19:15:56.0573 3040 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll

19:15:56.0573 3040 C:\Windows\System32\winbrand.dll - ok

19:15:56.0577 3040 [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll

19:15:56.0577 3040 C:\Windows\System32\SmartcardCredentialProvider.dll - ok

19:15:56.0581 3040 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll

19:15:56.0582 3040 C:\Windows\System32\BioCredProv.dll - ok

19:15:56.0586 3040 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll

19:15:56.0586 3040 C:\Windows\System32\netcfgx.dll - ok

19:15:56.0592 3040 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll

19:15:56.0592 3040 C:\Windows\System32\shsvcs.dll - ok

19:15:56.0597 3040 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll

19:15:56.0597 3040 C:\Windows\System32\winbio.dll - ok

19:15:56.0600 3040 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll

19:15:56.0600 3040 C:\Windows\System32\WMALFXGFXDSP.dll - ok

19:15:56.0605 3040 [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll

19:15:56.0605 3040 C:\Windows\System32\credui.dll - ok

19:15:56.0608 3040 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] C:\Windows\System32\drivers\vwifimp.sys

19:15:56.0608 3040 C:\Windows\System32\drivers\vwifimp.sys - ok

19:15:56.0611 3040 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll

19:15:56.0612 3040 C:\Windows\System32\vaultcli.dll - ok

19:15:56.0615 3040 [ 764908FE1FA96F93C95B1B67A0FCED29 ] C:\Windows\System32\netapi32.dll

19:15:56.0615 3040 C:\Windows\System32\netapi32.dll - ok

19:15:56.0619 3040 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll

19:15:56.0619 3040 C:\Windows\System32\netutils.dll - ok

19:15:56.0622 3040 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll

19:15:56.0623 3040 C:\Windows\System32\wkscli.dll - ok

19:15:56.0626 3040 [ 08D8C5E32648D6E7976F0458545EA600 ] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVCP.dll

19:15:56.0626 3040 C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVCP.dll - ok

19:15:56.0630 3040 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll

19:15:56.0630 3040 C:\Windows\System32\mfplat.dll - ok

19:15:56.0633 3040 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll

19:15:56.0633 3040 C:\Windows\System32\samcli.dll - ok

19:15:56.0638 3040 [ D037BEA6039248D4DE0C5F361F19970D ] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVHelper.dll

19:15:56.0638 3040 C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVHelper.dll - ok

19:15:56.0643 3040 [ 7AE92C896AF9ABFBDB18C1D055B6EBA7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll

19:15:56.0643 3040 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll - ok

19:15:56.0647 3040 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll

19:15:56.0647 3040 C:\Windows\System32\schedsvc.dll - ok

19:15:56.0651 3040 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll

19:15:56.0651 3040 C:\Windows\System32\ktmw32.dll - ok

19:15:56.0657 3040 [ 06A754FE28A06F780A099703CFCAAA22 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll

19:15:56.0657 3040 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll - ok

19:15:56.0662 3040 [ 9AE75388EE2C110216B8319584E8AC34 ] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVCtrl.dll

19:15:56.0662 3040 C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVCtrl.dll - ok

19:15:56.0667 3040 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll

19:15:56.0667 3040 C:\Windows\System32\fveapi.dll - ok

19:15:56.0673 3040 [ 2A9238A326763122424E07EF320D5D3A ] C:\Program Files\TOSHIBA\SmartFaceV\FaceRec.dll

19:15:56.0673 3040 C:\Program Files\TOSHIBA\SmartFaceV\FaceRec.dll - ok

19:15:56.0677 3040 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll

19:15:56.0677 3040 C:\Windows\System32\tbs.dll - ok

19:15:56.0682 3040 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll

19:15:56.0682 3040 C:\Windows\System32\fvecerts.dll - ok

19:15:56.0686 3040 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll

19:15:56.0686 3040 C:\Windows\System32\taskcomp.dll - ok

19:15:56.0690 3040 [ 91175B7E997CFAC64F271A15B4217BC7 ] C:\Program Files\TOSHIBA\SmartFaceV\FaceHI.dll

19:15:56.0690 3040 C:\Program Files\TOSHIBA\SmartFaceV\FaceHI.dll - ok

19:15:56.0694 3040 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll

19:15:56.0694 3040 C:\Windows\System32\wiarpc.dll - ok

19:15:56.0698 3040 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys

19:15:56.0698 3040 C:\Windows\System32\drivers\http.sys - ok

19:15:56.0702 3040 [ B96C17B5DC1424D56EEA3A99E97428CD ] C:\Windows\System32\spoolsv.exe

19:15:56.0702 3040 C:\Windows\System32\spoolsv.exe - ok

19:15:56.0706 3040 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys

19:15:56.0706 3040 C:\Windows\System32\drivers\srvnet.sys - ok

19:15:56.0710 3040 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys

19:15:56.0710 3040 C:\Windows\System32\drivers\bowser.sys - ok

19:15:56.0713 3040 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys

19:15:56.0713 3040 C:\Windows\System32\drivers\mrxsmb.sys - ok

19:15:56.0717 3040 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys

19:15:56.0717 3040 C:\Windows\System32\drivers\mrxsmb10.sys - ok

19:15:56.0721 3040 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys

19:15:56.0721 3040 C:\Windows\System32\drivers\mrxsmb20.sys - ok

19:15:56.0724 3040 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys

19:15:56.0724 3040 C:\Windows\System32\drivers\srv2.sys - ok

19:15:56.0727 3040 [ 9C5BF3E0541B8A2F85DF1D642E495EE4 ] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVLogOn.dll

19:15:56.0727 3040 C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVLogOn.dll - ok

19:15:56.0731 3040 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys

19:15:56.0731 3040 C:\Windows\System32\drivers\srv.sys - ok

19:15:56.0735 3040 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll

19:15:56.0735 3040 C:\Windows\System32\certCredProvider.dll - ok

19:15:56.0739 3040 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll

19:15:56.0739 3040 C:\Windows\System32\wkssvc.dll - ok

19:15:56.0743 3040 [ 032229246107C5C7211E6D1498B52D3D ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL

19:15:56.0743 3040 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL - ok

19:15:56.0746 3040 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll

19:15:56.0746 3040 C:\Windows\System32\srvsvc.dll - ok

19:15:56.0750 3040 [ 8EF0D5C41EC907751B8429162B1239ED ] C:\Windows\System32\browser.dll

19:15:56.0750 3040 C:\Windows\System32\browser.dll - ok

19:15:56.0753 3040 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll

19:15:56.0753 3040 C:\Windows\System32\netmsg.dll - ok

19:15:56.0758 3040 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll

19:15:56.0758 3040 C:\Windows\System32\clusapi.dll - ok

19:15:56.0761 3040 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll

19:15:56.0761 3040 C:\Windows\System32\sscore.dll - ok

19:15:56.0765 3040 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll

19:15:56.0765 3040 C:\Windows\System32\rasplap.dll - ok

19:15:56.0768 3040 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll

19:15:56.0768 3040 C:\Windows\System32\resutils.dll - ok

19:15:56.0772 3040 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll

19:15:56.0772 3040 C:\Windows\System32\rasapi32.dll - ok

19:15:56.0776 3040 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll

19:15:56.0776 3040 C:\Windows\System32\rasman.dll - ok

19:15:56.0779 3040 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll

19:15:56.0779 3040 C:\Windows\System32\rtutils.dll - ok

19:15:56.0783 3040 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll

19:15:56.0783 3040 C:\Windows\System32\UXInit.dll - ok

19:15:56.0787 3040 [ 4F5414602E2544A4554D95517948B705 ] C:\Windows\System32\cryptsvc.dll

19:15:56.0787 3040 C:\Windows\System32\cryptsvc.dll - ok

19:15:56.0791 3040 [ AFB5B500AD69E24ED1BC15D1161641EF ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

19:15:56.0791 3040 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - ok

19:15:56.0795 3040 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll

19:15:56.0795 3040 C:\Windows\System32\dps.dll - ok

19:15:56.0798 3040 [ 1D817D77C8EB600AB311AAC8E68B5A1A ] C:\Windows\System32\cryptnet.dll

19:15:56.0798 3040 C:\Windows\System32\cryptnet.dll - ok

19:15:56.0802 3040 [ 0C043B0ABBB5E14E68906AB80365395B ] C:\Windows\System32\efssvc.dll

19:15:56.0802 3040 C:\Windows\System32\efssvc.dll - ok

19:15:56.0806 3040 [ 7F8E83B9466A0A002D4AB15C104062A7 ] C:\Windows\System32\efscore.dll

19:15:56.0806 3040 C:\Windows\System32\efscore.dll - ok

19:15:56.0810 3040 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll

19:15:56.0810 3040 C:\Windows\System32\vssapi.dll - ok

19:15:56.0813 3040 [ BE8C524313DB75FA26FB2B0C0AAFF88E ] C:\PROGRA~2\McAfee\SITEAD~1\mcsacore.exe

19:15:56.0814 3040 C:\PROGRA~2\McAfee\SITEAD~1\mcsacore.exe - ok

19:15:56.0817 3040 [ 802496CB59A30349F9A6DD22D6947644 ] C:\Windows\System32\FDResPub.dll

19:15:56.0817 3040 C:\Windows\System32\FDResPub.dll - ok

19:15:56.0821 3040 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll

19:15:56.0821 3040 C:\Windows\System32\taskschd.dll - ok

19:15:56.0826 3040 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll

19:15:56.0826 3040 C:\Windows\System32\WSDApi.dll - ok

19:15:56.0829 3040 [ 58283053C781AD3A579C95D7765C1FA0 ] C:\Windows\System32\efsutil.dll

19:15:56.0829 3040 C:\Windows\System32\efsutil.dll - ok

19:15:56.0833 3040 [ 74A118E0FFBC39CDE358BFA50BE55DE4 ] C:\PROGRA~2\McAfee\SITEAD~1\sasshmod.dll

19:15:56.0833 3040 C:\PROGRA~2\McAfee\SITEAD~1\sasshmod.dll - ok

19:15:56.0837 3040 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll

19:15:56.0837 3040 C:\Windows\System32\webservices.dll - ok

19:15:56.0841 3040 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll

19:15:56.0841 3040 C:\Windows\System32\fundisc.dll - ok

19:15:56.0845 3040 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll

19:15:56.0845 3040 C:\Windows\System32\vsstrace.dll - ok

19:15:56.0848 3040 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll

19:15:56.0848 3040 C:\Windows\System32\rasadhlp.dll - ok

19:15:56.0852 3040 [ 1EE99A89CC788ADA662441D1E9830529 ] C:\Windows\System32\nlasvc.dll

19:15:56.0852 3040 C:\Windows\System32\nlasvc.dll - ok

19:15:56.0856 3040 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll

19:15:56.0856 3040 C:\Windows\System32\pcasvc.dll - ok

19:15:56.0859 3040 [ 4A435F95B940E93A88FEC144BD409789 ] C:\Windows\System32\ncsi.dll

19:15:56.0859 3040 C:\Windows\System32\ncsi.dll - ok

19:15:56.0863 3040 [ 2F86BE1818C2D7AC90478E3323EE7FCB ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe

19:15:56.0863 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe - ok

19:15:56.0867 3040 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll

19:15:56.0867 3040 C:\Windows\System32\winhttp.dll - ok

19:15:56.0871 3040 [ E73B0F1819602CB6EF176FB78D76A47B ] C:\Windows\SysWOW64\ntdll.dll

19:15:56.0871 3040 C:\Windows\SysWOW64\ntdll.dll - ok

19:15:56.0875 3040 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll

19:15:56.0875 3040 C:\Windows\System32\imageres.dll - ok

19:15:56.0879 3040 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll

19:15:56.0880 3040 C:\Windows\System32\aepic.dll - ok

19:15:56.0884 3040 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll

19:15:56.0884 3040 C:\Windows\System32\webio.dll - ok

19:15:56.0888 3040 [ 51420C22E4ED51F2FE598FB96B9A990C ] C:\PROGRA~2\McAfee\SITEAD~1\saupkeep.dll

19:15:56.0888 3040 C:\PROGRA~2\McAfee\SITEAD~1\saupkeep.dll - ok

19:15:56.0893 3040 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll

19:15:56.0893 3040 C:\Windows\System32\ssdpapi.dll - ok

19:15:56.0897 3040 [ B1E3772FFA96AC5AEE89BF202AF8E348 ] C:\Windows\System32\wow64.dll

19:15:56.0897 3040 C:\Windows\System32\wow64.dll - ok

19:15:56.0902 3040 [ FC5A43FA257F546F8F2B96B5529857E1 ] C:\Windows\System32\wow64win.dll

19:15:56.0902 3040 C:\Windows\System32\wow64win.dll - ok

19:15:56.0906 3040 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll

19:15:56.0906 3040 C:\Windows\System32\sfc.dll - ok

19:15:56.0909 3040 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll

19:15:56.0909 3040 C:\Windows\System32\sfc_os.dll - ok

19:15:56.0913 3040 [ B8BEB540424DF9C131E324DC33E9EFC4 ] C:\PROGRA~2\McAfee\SITEAD~1\x64\MCSACO~1.DLL

19:15:56.0913 3040 C:\PROGRA~2\McAfee\SITEAD~1\x64\MCSACO~1.DLL - ok

19:15:56.0917 3040 [ DD81D91FF3B0763C392422865C9AC12E ] C:\Windows\System32\rundll32.exe

19:15:56.0917 3040 C:\Windows\System32\rundll32.exe - ok

19:15:56.0921 3040 [ AA0D2571A4348838B8DD49FD0043826A ] C:\Windows\System32\wow64cpu.dll

19:15:56.0921 3040 C:\Windows\System32\wow64cpu.dll - ok

19:15:56.0926 3040 [ 0B2D65FDDE31069299AA6330F359FF9C ] C:\Windows\System32\msxml3.dll

19:15:56.0926 3040 C:\Windows\System32\msxml3.dll - ok

19:15:56.0930 3040 [ B4C65EA0CD445CE2DB16B512E6519FEC ] C:\PROGRA~2\McAfee\SITEAD~1\x64\saHook.dll

19:15:56.0930 3040 C:\PROGRA~2\McAfee\SITEAD~1\x64\saHook.dll - ok

19:15:56.0934 3040 [ 51138BEEA3E2C21EC44D0932C71762A8 ] C:\Windows\SysWOW64\rundll32.exe

19:15:56.0934 3040 C:\Windows\SysWOW64\rundll32.exe - ok

19:15:56.0938 3040 [ 99C3F8E9CC59D95666EB8D8A8B4C2BEB ] C:\Windows\SysWOW64\kernel32.dll

19:15:56.0938 3040 C:\Windows\SysWOW64\kernel32.dll - ok

19:15:56.0942 3040 [ 5C2D21C9B6B6175B89BC5D7E3CB979E1 ] C:\Windows\SysWOW64\KernelBase.dll

19:15:56.0942 3040 C:\Windows\SysWOW64\KernelBase.dll - ok

19:15:56.0946 3040 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll

19:15:56.0946 3040 C:\Windows\SysWOW64\user32.dll - ok

19:15:56.0949 3040 [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll

19:15:56.0949 3040 C:\Windows\SysWOW64\gdi32.dll - ok

19:15:56.0953 3040 [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll

19:15:56.0953 3040 C:\Windows\SysWOW64\lpk.dll - ok

19:15:56.0957 3040 [ 804AAAFEBB3AD5F49334DD906BCB1DE5 ] C:\Windows\SysWOW64\usp10.dll

19:15:56.0957 3040 C:\Windows\SysWOW64\usp10.dll - ok

19:15:56.0960 3040 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll

19:15:56.0961 3040 C:\Windows\System32\aeevts.dll - ok

19:15:56.0965 3040 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll

19:15:56.0965 3040 C:\Windows\SysWOW64\msvcrt.dll - ok

19:15:56.0968 3040 [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll

19:15:56.0968 3040 C:\Windows\SysWOW64\advapi32.dll - ok

19:15:56.0971 3040 [ C5AD8083CF94201F1F8084ECC696A8B7 ] C:\Windows\SysWOW64\rpcrt4.dll

19:15:56.0971 3040 C:\Windows\SysWOW64\rpcrt4.dll - ok

19:15:56.0974 3040 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll

19:15:56.0974 3040 C:\Windows\SysWOW64\sechost.dll - ok

19:15:56.0977 3040 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll

19:15:56.0978 3040 C:\Windows\SysWOW64\cryptbase.dll - ok

19:15:56.0981 3040 [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll

19:15:56.0981 3040 C:\Windows\SysWOW64\imagehlp.dll - ok

19:15:56.0985 3040 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll

19:15:56.0985 3040 C:\Windows\SysWOW64\ole32.dll - ok

19:15:56.0989 3040 [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll

19:15:56.0989 3040 C:\Windows\SysWOW64\sspicli.dll - ok

19:15:56.0992 3040 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll

19:15:56.0992 3040 C:\Windows\SysWOW64\apphelp.dll - ok

19:15:56.0996 3040 [ 368B2BEE3F88BFB883D2C74A258DE6F6 ] C:\Windows\AppPatch\AcLayers.dll

19:15:56.0996 3040 C:\Windows\AppPatch\AcLayers.dll - ok

19:15:57.0000 3040 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll

19:15:57.0000 3040 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok

19:15:57.0004 3040 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll

19:15:57.0004 3040 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok

19:15:57.0008 3040 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll

19:15:57.0009 3040 C:\Windows\SysWOW64\imm32.dll - ok

19:15:57.0012 3040 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll

19:15:57.0012 3040 C:\Windows\SysWOW64\msctf.dll - ok

19:15:57.0016 3040 [ 88104CCBC329D185A881031A11259229 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccL90U.dll

19:15:57.0016 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccL90U.dll - ok

19:15:57.0020 3040 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll

19:15:57.0020 3040 C:\Windows\SysWOW64\oleaut32.dll - ok

19:15:57.0026 3040 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll

19:15:57.0026 3040 C:\Windows\SysWOW64\ws2_32.dll - ok

19:15:57.0031 3040 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll

19:15:57.0031 3040 C:\Windows\SysWOW64\nsi.dll - ok

19:15:57.0036 3040 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll

19:15:57.0036 3040 C:\Windows\SysWOW64\shlwapi.dll - ok

19:15:57.0041 3040 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll

19:15:57.0041 3040 C:\Windows\SysWOW64\dbghelp.dll - ok

19:15:57.0046 3040 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll

19:15:57.0047 3040 C:\Windows\SysWOW64\version.dll - ok

19:15:57.0051 3040 [ 29E9794708DF51DB5DC89FB2E903A0F6 ] C:\Windows\SysWOW64\shell32.dll

19:15:57.0051 3040 C:\Windows\SysWOW64\shell32.dll - ok

19:15:57.0055 3040 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll

19:15:57.0055 3040 C:\Windows\SysWOW64\cfgmgr32.dll - ok

19:15:57.0060 3040 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll

19:15:57.0061 3040 C:\Windows\SysWOW64\profapi.dll - ok

19:15:57.0063 3040 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll

19:15:57.0063 3040 C:\Windows\SysWOW64\psapi.dll - ok

19:15:57.0068 3040 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll

19:15:57.0068 3040 C:\Windows\SysWOW64\userenv.dll - ok

19:15:57.0073 3040 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys

19:15:57.0073 3040 C:\Windows\System32\drivers\PEAuth.sys - ok

19:15:57.0077 3040 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys

19:15:57.0077 3040 C:\Windows\System32\drivers\secdrv.sys - ok

19:15:57.0081 3040 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv

19:15:57.0081 3040 C:\Windows\SysWOW64\winspool.drv - ok

19:15:57.0086 3040 [ 6D7DE520D8AA80A243347BECD401EB54 ] C:\Windows\AppPatch\acwow64.dll

19:15:57.0086 3040 C:\Windows\AppPatch\acwow64.dll - ok

19:15:57.0090 3040 [ C6CC9297BD53E5229653303E556AA539 ] C:\Windows\System32\drivers\Sftfslh.sys

19:15:57.0090 3040 C:\Windows\System32\drivers\Sftfslh.sys - ok

19:15:57.0095 3040 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll

19:15:57.0095 3040 C:\Windows\SysWOW64\mpr.dll - ok

19:15:57.0100 3040 [ A85403902F18FF6D34407D52A89F42FD ] C:\PROGRA~2\McAfee\SITEAD~1\sahook.dll

19:15:57.0100 3040 C:\PROGRA~2\McAfee\SITEAD~1\sahook.dll - ok

19:15:57.0105 3040 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll

19:15:57.0105 3040 C:\Windows\SysWOW64\uxtheme.dll - ok

19:15:57.0111 3040 [ 0921ED273D89BA9778437ECD26B6A78A ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccVrTrst.dll

19:15:57.0111 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccVrTrst.dll - ok

19:15:57.0116 3040 [ 390AA7BC52CEE43F6790CDEA1E776703 ] C:\Windows\System32\drivers\Sftplaylh.sys

19:15:57.0116 3040 C:\Windows\System32\drivers\Sftplaylh.sys - ok

19:15:57.0120 3040 [ C3CDDD18F43D44AB713CF8C4916F7696 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

19:15:57.0120 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe - ok

19:15:57.0126 3040 [ 1295338CFE6F249823EF9BC8D4368A84 ] C:\Windows\SysWOW64\crypt32.dll

19:15:57.0126 3040 C:\Windows\SysWOW64\crypt32.dll - ok

19:15:57.0130 3040 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll

19:15:57.0130 3040 C:\Windows\SysWOW64\clbcatq.dll - ok

19:15:57.0134 3040 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll

19:15:57.0134 3040 C:\Windows\SysWOW64\dwmapi.dll - ok

19:15:57.0139 3040 [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll

19:15:57.0139 3040 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok

19:15:57.0147 3040 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll

19:15:57.0147 3040 C:\Windows\SysWOW64\cryptsp.dll - ok

19:15:57.0150 3040 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll

19:15:57.0150 3040 C:\Windows\SysWOW64\RpcRtRemote.dll - ok

19:15:57.0156 3040 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll

19:15:57.0156 3040 C:\Windows\SysWOW64\rsaenh.dll - ok

19:15:57.0160 3040 [ EA396139541706B4B433641D62EA53CE ] C:\Program Files (x86)\Skype\Updater\Updater.exe

19:15:57.0160 3040 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok

19:15:57.0164 3040 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll

19:15:57.0164 3040 C:\Windows\SysWOW64\credssp.dll - ok

19:15:57.0169 3040 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll

19:15:57.0169 3040 C:\Windows\SysWOW64\msasn1.dll - ok

19:15:57.0174 3040 [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll

19:15:57.0174 3040 C:\Windows\SysWOW64\secur32.dll - ok

19:15:57.0178 3040 [ A7D79E9F660340AB20CD73F12910985F ] C:\Windows\SysWOW64\wintrust.dll

19:15:57.0179 3040 C:\Windows\SysWOW64\wintrust.dll - ok

19:15:57.0183 3040 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll

19:15:57.0183 3040 C:\Windows\SysWOW64\wtsapi32.dll - ok

19:15:57.0187 3040 [ 591FE0A6CEB19BF886CEB1331F591940 ] C:\Windows\SysWOW64\ncrypt.dll

19:15:57.0187 3040 C:\Windows\SysWOW64\ncrypt.dll - ok

19:15:57.0192 3040 [ DF687E3D8836BFB04FCC0615BF15A519 ] C:\Windows\System32\drivers\tcpipreg.sys

19:15:57.0192 3040 C:\Windows\System32\drivers\tcpipreg.sys - ok

19:15:57.0197 3040 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll

19:15:57.0197 3040 C:\Windows\System32\sysmain.dll - ok

19:15:57.0201 3040 [ 8E2C799D3476EAC32C3BA0DF7CE6AF19 ] C:\Windows\System32\TODDSrv.exe

19:15:57.0201 3040 C:\Windows\System32\TODDSrv.exe - ok

19:15:57.0205 3040 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll

19:15:57.0205 3040 C:\Windows\System32\wiaservc.dll - ok

19:15:57.0210 3040 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll

19:15:57.0210 3040 C:\Windows\SysWOW64\bcrypt.dll - ok

19:15:57.0214 3040 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll

19:15:57.0214 3040 C:\Windows\SysWOW64\bcryptprimitives.dll - ok

19:15:57.0217 3040 [ 1C73689B900428C7D054A41C4687F55C ] C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

19:15:57.0217 3040 C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe - ok

19:15:57.0222 3040 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll

19:15:57.0222 3040 C:\Windows\SysWOW64\gpapi.dll - ok

19:15:57.0226 3040 [ 4050600091370422C9B20AC34DC1ACAC ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvc.dll

19:15:57.0226 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvc.dll - ok

19:15:57.0230 3040 [ 09A06ECC3CE3048B17F25F75ACC63D14 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccIPC.dll

19:15:57.0230 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccIPC.dll - ok

19:15:57.0234 3040 [ 3EAE925DCD7D2704982BBCA4DC7EAE7E ] C:\Program Files\TOSHIBA\Power Saver\TPwrReg.dll

19:15:57.0234 3040 C:\Program Files\TOSHIBA\Power Saver\TPwrReg.dll - ok

19:15:57.0238 3040 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll

19:15:57.0238 3040 C:\Windows\System32\wiatrace.dll - ok

19:15:57.0242 3040 [ 6316957BB3431DFB06BFFA98C0F1926E ] C:\Windows\SysWOW64\cryptnet.dll

19:15:57.0242 3040 C:\Windows\SysWOW64\cryptnet.dll - ok

19:15:57.0246 3040 [ D1103CFC8D7EA09ED22536EC301603F9 ] C:\Program Files\TOSHIBA\Power Saver\TPwrFunc.dll

19:15:57.0246 3040 C:\Program Files\TOSHIBA\Power Saver\TPwrFunc.dll - ok

19:15:57.0249 3040 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll

19:15:57.0249 3040 C:\Windows\SysWOW64\Wldap32.dll - ok

19:15:57.0253 3040 [ DF5246F51E8557E20D40B3641CAE57B7 ] C:\Program Files\TOSHIBA\Power Saver\TtosFunc.dll

19:15:57.0253 3040 C:\Program Files\TOSHIBA\Power Saver\TtosFunc.dll - ok

19:15:57.0258 3040 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv

19:15:57.0258 3040 C:\Windows\System32\winspool.drv - ok

19:15:57.0263 3040 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll

19:15:57.0263 3040 C:\Windows\SysWOW64\SensApi.dll - ok

Link to post
Share on other sites

19:15:57.0267 3040 [ 725E8022808C6B92D99EF36F2E9FCE02 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\diMaster.dll

19:15:57.0267 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\diMaster.dll - ok

19:15:57.0271 3040 [ 2B61F6766CAE1125C00DD9DDD268D876 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSet.dll

19:15:57.0271 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSet.dll - ok

19:15:57.0275 3040 [ 5B465C535EA4F73C4B14A1320B8CA5F8 ] C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccJobMgr.dll

19:15:57.0275 3040 C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccJobMgr.dll - ok

19:15:57.0279 3040 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll

19:15:57.0279 3040 C:\Windows\SysWOW64\winsta.dll - ok

19:15:57.0283 3040 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll

19:15:57.0283 3040 C:\Windows\SysWOW64\powrprof.dll - ok

19:15:57.0287 3040 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll

19:15:57.0287 3040 C:\Windows\SysWOW64\setupapi.dll - ok

19:15:57.0292 3040 [ 2BACD71123F42CEA603F4E205E1AE337 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

19:15:57.0292 3040 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - ok

19:15:57.0296 3040 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll

19:15:57.0296 3040 C:\Windows\System32\trkwks.dll - ok

19:15:57.0300 3040 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll

19:15:57.0300 3040 C:\Windows\System32\wbem\WMIsvc.dll - ok

19:15:57.0304 3040 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll

19:15:57.0304 3040 C:\Windows\System32\wbemcomn.dll - ok

19:15:57.0309 3040 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL

19:15:57.0309 3040 C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL - ok

19:15:57.0313 3040 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll

19:15:57.0313 3040 C:\Windows\System32\SensApi.dll - ok

19:15:57.0316 3040 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll

19:15:57.0316 3040 C:\Windows\System32\wbem\WinMgmtR.dll - ok

19:15:57.0320 3040 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll

19:15:57.0320 3040 C:\Windows\System32\wbem\WmiDcPrv.dll - ok

19:15:57.0325 3040 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll

19:15:57.0325 3040 C:\Windows\System32\wer.dll - ok

19:15:57.0329 3040 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll

19:15:57.0329 3040 C:\Windows\System32\wbem\fastprox.dll - ok

19:15:57.0333 3040 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll

19:15:57.0333 3040 C:\Windows\System32\ntdsapi.dll - ok

19:15:57.0337 3040 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll

19:15:57.0337 3040 C:\Windows\SysWOW64\devobj.dll - ok

19:15:57.0341 3040 [ 13693B6354DD6E72DC5131DA7D764B90 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

19:15:57.0341 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe - ok

19:15:57.0345 3040 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll

19:15:57.0345 3040 C:\Windows\System32\wbem\wbemprox.dll - ok

19:15:57.0348 3040 [ 6177E1A8F215576A56D437B48A00848B ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftsync.dll

19:15:57.0348 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftsync.dll - ok

19:15:57.0352 3040 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll

19:15:57.0352 3040 C:\Windows\System32\wbem\wbemcore.dll - ok

19:15:57.0356 3040 [ 295E1F2BC1AFDAFD98FF426BCE524BA9 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftuser.dll

19:15:57.0356 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftuser.dll - ok

19:15:57.0361 3040 [ A733CC986EB51F8FBF598B981DC19FBA ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftcore.dll

19:15:57.0361 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftcore.dll - ok

19:15:57.0365 3040 [ 079FD1D59EAD19270C979AF174D881A3 ] C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll

19:15:57.0365 3040 C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll - ok

19:15:57.0368 3040 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll

19:15:57.0368 3040 C:\Windows\System32\wbem\esscli.dll - ok

19:15:57.0373 3040 [ 2A46FFE841EC43001D5A293A54DB34DE ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE

19:15:57.0373 3040 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE - ok

19:15:57.0376 3040 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll

19:15:57.0376 3040 C:\Windows\System32\wbem\wbemsvc.dll - ok

19:15:57.0380 3040 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll

19:15:57.0380 3040 C:\Windows\System32\wbem\wmiutils.dll - ok

19:15:57.0384 3040 [ 32BFCF1CA719F2A3A31C721BD5F90303 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftpsr.dll

19:15:57.0384 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftpsr.dll - ok

19:15:57.0388 3040 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll

19:15:57.0388 3040 C:\Windows\System32\wbem\repdrvfs.dll - ok

19:15:57.0392 3040 [ 8CE1A6D16B9077E91E192499EB611C5F ] C:\Windows\SysWOW64\netapi32.dll

19:15:57.0392 3040 C:\Windows\SysWOW64\netapi32.dll - ok

19:15:57.0396 3040 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll

19:15:57.0396 3040 C:\Windows\SysWOW64\netutils.dll - ok

19:15:57.0400 3040 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll

19:15:57.0400 3040 C:\Windows\SysWOW64\srvcli.dll - ok

19:15:57.0404 3040 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll

19:15:57.0404 3040 C:\Windows\SysWOW64\wkscli.dll - ok

19:15:57.0409 3040 [ 40EE4E67311F4019CCA2120D88C60576 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftfsi_wow64.dll

19:15:57.0409 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftfsi_wow64.dll - ok

19:15:57.0413 3040 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll

19:15:57.0413 3040 C:\Windows\System32\wbem\WmiPrvSD.dll - ok

19:15:57.0417 3040 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll

19:15:57.0417 3040 C:\Windows\System32\ncobjapi.dll - ok

19:15:57.0420 3040 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll

19:15:57.0420 3040 C:\Windows\System32\wbem\wbemess.dll - ok

19:15:57.0425 3040 [ 8E87270C4704CF2951E1E7820D6C8A2B ] C:\Windows\SysWOW64\wininet.dll

19:15:57.0425 3040 C:\Windows\SysWOW64\wininet.dll - ok

19:15:57.0428 3040 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll

19:15:57.0428 3040 C:\Windows\SysWOW64\wbemcomn.dll - ok

19:15:57.0432 3040 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll

19:15:57.0432 3040 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok

19:15:57.0436 3040 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll

19:15:57.0436 3040 C:\Windows\SysWOW64\wbem\fastprox.dll - ok

19:15:57.0440 3040 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll

19:15:57.0440 3040 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok

19:15:57.0444 3040 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll

19:15:57.0444 3040 C:\Windows\SysWOW64\ntdsapi.dll - ok

19:15:57.0447 3040 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe

19:15:57.0447 3040 C:\Windows\System32\wbem\WmiPrvSE.exe - ok

19:15:57.0451 3040 [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll

19:15:57.0451 3040 C:\Windows\System32\wbem\cimwin32.dll - ok

19:15:57.0455 3040 [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll

19:15:57.0455 3040 C:\Windows\System32\framedynos.dll - ok

19:15:57.0459 3040 [ 325380E6EA9F558DEF1631A45FB6D041 ] C:\Windows\System32\keymgr.dll

19:15:57.0459 3040 C:\Windows\System32\keymgr.dll - ok

19:15:57.0463 3040 [ C516284DE6DB833E77CC0E5217CDC6AA ] C:\Windows\SysWOW64\iertutil.dll

19:15:57.0463 3040 C:\Windows\SysWOW64\iertutil.dll - ok

19:15:57.0467 3040 [ 1408CF9B0DD2AAA80D8E7087C8A2E3BC ] C:\Windows\SysWOW64\urlmon.dll

19:15:57.0467 3040 C:\Windows\SysWOW64\urlmon.dll - ok

19:15:57.0470 3040 [ 09AB81CEE443569D9A3CC151DDF70444 ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftcomp.dll

19:15:57.0470 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftcomp.dll - ok

19:15:57.0473 3040 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL

19:15:57.0473 3040 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok

19:15:57.0477 3040 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll

19:15:57.0477 3040 C:\Windows\SysWOW64\winhttp.dll - ok

19:15:57.0481 3040 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll

19:15:57.0481 3040 C:\Windows\SysWOW64\winnsi.dll - ok

19:15:57.0484 3040 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll

19:15:57.0484 3040 C:\Windows\SysWOW64\webio.dll - ok

19:15:57.0488 3040 [ 8EA53101FF2B15BDFF934B62A8FB326D ] C:\Windows\SysWOW64\logoncli.dll

19:15:57.0488 3040 C:\Windows\SysWOW64\logoncli.dll - ok

19:15:57.0492 3040 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll

19:15:57.0492 3040 C:\Windows\SysWOW64\msi.dll - ok

19:15:57.0496 3040 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll

19:15:57.0496 3040 C:\Windows\SysWOW64\wsock32.dll - ok

19:15:57.0499 3040 [ 617E29A0B0A2807466560D4C4E338D3E ] C:\Windows\System32\drivers\Sftredirlh.sys

19:15:57.0499 3040 C:\Windows\System32\drivers\Sftredirlh.sys - ok

19:15:57.0503 3040 [ 1EBE9524683C7C4EED8B8BC93FB6FBCC ] C:\Windows\SysWOW64\fltLib.dll

19:15:57.0503 3040 C:\Windows\SysWOW64\fltLib.dll - ok

19:15:57.0506 3040 [ 3D3CBD1847F980FB03343A63671E7886 ] C:\Windows\SysWOW64\schannel.dll

19:15:57.0506 3040 C:\Windows\SysWOW64\schannel.dll - ok

19:15:57.0511 3040 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll

19:15:57.0511 3040 C:\Windows\System32\dssenh.dll - ok

19:15:57.0516 3040 [ D9A9702E43A5859896F34898D5FD3FEC ] C:\Windows\SysWOW64\msxml6.dll

19:15:57.0516 3040 C:\Windows\SysWOW64\msxml6.dll - ok

19:15:57.0522 3040 [ 72794D112CBAFF3BC0C29BF7350D4741 ] C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE

19:15:57.0522 3040 C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE - ok

19:15:57.0528 3040 [ C797D1677BA81306AFBB9FA8A9A8F483 ] C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSHARED.DLL

19:15:57.0528 3040 C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSHARED.DLL - ok

19:15:57.0533 3040 [ 108C2CFA5527458C096A699929ECBD80 ] C:\Windows\SysWOW64\credui.dll

19:15:57.0533 3040 C:\Windows\SysWOW64\credui.dll - ok

19:15:57.0537 3040 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll

19:15:57.0537 3040 C:\Windows\SysWOW64\oleacc.dll - ok

19:15:57.0542 3040 [ 7717F84F483002815490033BF069DABD ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll

19:15:57.0542 3040 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll - ok

19:15:57.0546 3040 [ 565A30B70BE8A9B171839003F2D69683 ] C:\Windows\SysWOW64\hlink.dll

19:15:57.0546 3040 C:\Windows\SysWOW64\hlink.dll - ok

19:15:57.0550 3040 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

19:15:57.0550 3040 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok

19:15:57.0554 3040 [ 74AF1FFCAFD60DA88A386AE161F56438 ] C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\en-us\CVHIntl.dll

19:15:57.0554 3040 C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\en-us\CVHIntl.dll - ok

19:15:57.0559 3040 [ B08E3476F0874DBAD672D0AC4FB2580B ] C:\Program Files (x86)\Microsoft Application Virtualization Client\sftintf.dll

19:15:57.0559 3040 C:\Program Files (x86)\Microsoft Application Virtualization Client\sftintf.dll - ok

19:15:57.0563 3040 [ 1128637CAD49A8E3C8B5FA5D0A061525 ] C:\Windows\SysWOW64\cryptdll.dll

19:15:57.0563 3040 C:\Windows\SysWOW64\cryptdll.dll - ok

19:15:57.0567 3040 [ 4C1E16B9A53102C8D6FBA587CBCB95DE ] C:\Windows\SysWOW64\msv1_0.dll

19:15:57.0567 3040 C:\Windows\SysWOW64\msv1_0.dll - ok

19:15:57.0571 3040 [ 1CDEA9188899E76D4FFD54C9D512CCDB ] C:\Windows\SysWOW64\msxml3.dll

19:15:57.0571 3040 C:\Windows\SysWOW64\msxml3.dll - ok

19:15:57.0576 3040 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe

19:15:57.0576 3040 C:\Windows\System32\dllhost.exe - ok

19:15:57.0579 3040 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll

19:15:57.0579 3040 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok

19:15:57.0583 3040 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll

19:15:57.0583 3040 C:\Windows\System32\IDStore.dll - ok

19:15:57.0587 3040 [ 517110BD83835338C037269E603DB55D ] C:\Windows\System32\taskhost.exe

19:15:57.0587 3040 C:\Windows\System32\taskhost.exe - ok

19:15:57.0591 3040 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll

19:15:57.0591 3040 C:\Windows\System32\wdi.dll - ok

19:15:57.0595 3040 [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe

19:15:57.0595 3040 C:\Windows\System32\AtBroker.exe - ok

19:15:57.0598 3040 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll

19:15:57.0598 3040 C:\Windows\System32\perftrack.dll - ok

19:15:57.0602 3040 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll

19:15:57.0602 3040 C:\Windows\System32\wpdbusenum.dll - ok

19:15:57.0606 3040 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll

19:15:57.0606 3040 C:\Windows\System32\mpr.dll - ok

19:15:57.0610 3040 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll

19:15:57.0610 3040 C:\Windows\System32\diagperf.dll - ok

19:15:57.0615 3040 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll

19:15:57.0615 3040 C:\Windows\System32\MsCtfMonitor.dll - ok

19:15:57.0619 3040 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll

19:15:57.0619 3040 C:\Windows\System32\msutb.dll - ok

19:15:57.0625 3040 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll

19:15:57.0625 3040 C:\Windows\System32\PortableDeviceApi.dll - ok

19:15:57.0629 3040 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe

19:15:57.0629 3040 C:\Windows\System32\taskeng.exe - ok

19:15:57.0633 3040 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe

19:15:57.0633 3040 C:\Windows\System32\userinit.exe - ok

19:15:57.0638 3040 [ 89B89AE23491F5D4E338499A3D568269 ] C:\Windows\System32\localspl.dll

19:15:57.0638 3040 C:\Windows\System32\localspl.dll - ok

19:15:57.0642 3040 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe

19:15:57.0642 3040 C:\Windows\System32\dwm.exe - ok

19:15:57.0646 3040 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll

19:15:57.0646 3040 C:\Windows\System32\HotStartUserAgent.dll - ok

19:15:57.0651 3040 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll

19:15:57.0651 3040 C:\Windows\System32\PlaySndSrv.dll - ok

19:15:57.0656 3040 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll

19:15:57.0656 3040 C:\Windows\System32\PortableDeviceConnectApi.dll - ok

19:15:57.0659 3040 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll

19:15:57.0659 3040 C:\Windows\System32\Apphlpdm.dll - ok

19:15:57.0663 3040 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll

19:15:57.0663 3040 C:\Windows\System32\pnpts.dll - ok

19:15:57.0667 3040 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll

19:15:57.0667 3040 C:\Windows\System32\dwmredir.dll - ok

19:15:57.0672 3040 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll

19:15:57.0672 3040 C:\Windows\System32\wdiasqmmodule.dll - ok

19:15:57.0676 3040 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll

19:15:57.0676 3040 C:\Windows\System32\dwmcore.dll - ok

19:15:57.0680 3040 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll

19:15:57.0680 3040 C:\Windows\System32\spoolss.dll - ok

19:15:57.0685 3040 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll

19:15:57.0685 3040 C:\Windows\System32\TSChannel.dll - ok

19:15:57.0690 3040 [ F02A533F517EB38333CB12A9E8963773 ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

19:15:57.0690 3040 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok

19:15:57.0694 3040 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll

19:15:57.0694 3040 C:\Windows\System32\PrintIsolationProxy.dll - ok

19:15:57.0698 3040 [ 39C5FCF8AA3B83D79A0E853ECB38BF25 ] C:\Program Files (x86)\Google\Update\1.3.21.115\goopdate.dll

19:15:57.0698 3040 C:\Program Files (x86)\Google\Update\1.3.21.115\goopdate.dll - ok

19:15:57.0701 3040 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll

19:15:57.0701 3040 C:\Windows\System32\FXSMON.dll - ok

19:15:57.0706 3040 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll

19:15:57.0706 3040 C:\Windows\System32\tcpmon.dll - ok

19:15:57.0709 3040 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll

19:15:57.0709 3040 C:\Windows\SysWOW64\ntmarta.dll - ok

19:15:57.0713 3040 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll

19:15:57.0713 3040 C:\Windows\SysWOW64\cscapi.dll - ok

19:15:57.0716 3040 [ 93F29E6964BAEF31E53D203992B0AFD4 ] C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe

19:15:57.0716 3040 C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler.exe - ok

19:15:57.0721 3040 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll

19:15:57.0721 3040 C:\Windows\System32\snmpapi.dll - ok

19:15:57.0723 3040 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll

19:15:57.0723 3040 C:\Windows\System32\wsnmp32.dll - ok

19:15:57.0727 3040 [ E1374D37477322D4956604711008C69D ] C:\Windows\System32\d3d10_1.dll

19:15:57.0727 3040 C:\Windows\System32\d3d10_1.dll - ok

19:15:57.0731 3040 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll

19:15:57.0731 3040 C:\Windows\System32\usbmon.dll - ok

19:15:57.0734 3040 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll

19:15:57.0734 3040 C:\Windows\System32\WSDMon.dll - ok

19:15:57.0738 3040 [ C282F4A84FDA6EF4376996542F7A1249 ] C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe

19:15:57.0738 3040 C:\Program Files (x86)\Google\Update\1.3.21.115\GoogleCrashHandler64.exe - ok

19:15:57.0742 3040 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll

19:15:57.0742 3040 C:\Windows\System32\fdPnp.dll - ok

19:15:57.0745 3040 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll

19:15:57.0745 3040 C:\Windows\SysWOW64\mstask.dll - ok

19:15:57.0749 3040 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll

19:15:57.0749 3040 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok

19:15:57.0753 3040 [ 2AC11BE0F5D9A01433732AAB8BA21774 ] C:\Windows\System32\win32spl.dll

19:15:57.0753 3040 C:\Windows\System32\win32spl.dll - ok

19:15:57.0758 3040 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe

19:15:57.0758 3040 C:\Windows\explorer.exe - ok

19:15:57.0762 3040 [ 426BA4E737A7988FD1202AF2F2B2F4A6 ] C:\Windows\System32\d3d10_1core.dll

19:15:57.0762 3040 C:\Windows\System32\d3d10_1core.dll - ok

19:15:57.0766 3040 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll

19:15:57.0766 3040 C:\Windows\System32\NapiNSP.dll - ok

19:15:57.0769 3040 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll

19:15:57.0769 3040 C:\Windows\System32\pnrpnsp.dll - ok

19:15:57.0773 3040 [ F404E59DB6A0F122AB26BF4F3E2FD0FA ] C:\Windows\System32\dxgi.dll

19:15:57.0773 3040 C:\Windows\System32\dxgi.dll - ok

19:15:57.0777 3040 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll

19:15:57.0777 3040 C:\Windows\System32\winrnr.dll - ok

19:15:57.0781 3040 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll

19:15:57.0781 3040 C:\Windows\System32\inetpp.dll - ok

19:15:57.0785 3040 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll

19:15:57.0785 3040 C:\Windows\System32\cscapi.dll - ok

19:15:57.0789 3040 [ F5138EEC090C296CF6FB6C6C19BE1D9E ] C:\Windows\System32\igd10umd64.dll

19:15:57.0789 3040 C:\Windows\System32\igd10umd64.dll - ok

19:15:57.0795 3040 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll

19:15:57.0795 3040 C:\Windows\System32\ExplorerFrame.dll - ok

19:15:57.0798 3040 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll

19:15:57.0798 3040 C:\Windows\System32\radardt.dll - ok

19:15:57.0802 3040 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll

19:15:57.0802 3040 C:\Windows\System32\EhStorShell.dll - ok

19:15:57.0806 3040 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll

19:15:57.0806 3040 C:\Windows\System32\ntshrui.dll - ok

19:15:57.0810 3040 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll

19:15:57.0810 3040 C:\Windows\System32\IconCodecService.dll - ok

19:15:57.0813 3040 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] C:\Windows\System32\appinfo.dll

19:15:57.0813 3040 C:\Windows\System32\appinfo.dll - ok

19:15:57.0817 3040 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll

19:15:57.0817 3040 C:\Windows\System32\uDWM.dll - ok

19:15:57.0821 3040 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe

19:15:57.0821 3040 C:\Windows\System32\runonce.exe - ok

19:15:57.0827 3040 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe

19:15:57.0827 3040 C:\Windows\SysWOW64\runonce.exe - ok

19:15:57.0830 3040 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll

19:15:57.0830 3040 C:\Windows\SysWOW64\propsys.dll - ok

19:15:57.0834 3040 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe

19:15:57.0834 3040 C:\Windows\SysWOW64\cmd.exe - ok

19:15:57.0837 3040 [ 448BF22538F1DFCB3412AE2B1CF123A9 ] C:\Windows\System32\conhost.exe

19:15:57.0837 3040 C:\Windows\System32\conhost.exe - ok

19:15:57.0842 3040 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll

19:15:57.0842 3040 C:\Windows\SysWOW64\winbrand.dll - ok

19:15:57.0845 3040 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll

19:15:57.0845 3040 C:\Windows\System32\aelupsvc.dll - ok

19:15:57.0849 3040 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll

19:15:57.0849 3040 C:\Windows\System32\dimsjob.dll - ok

19:15:57.0853 3040 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll

19:15:57.0853 3040 C:\Windows\System32\netprofm.dll - ok

19:15:57.0857 3040 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll

19:15:57.0857 3040 C:\Windows\System32\npmproxy.dll - ok

19:15:57.0861 3040 [ 8DCDD0B5939043A1EC98C6F168A56B16 ] C:\Windows\SysWOW64\ieframe.dll

19:15:57.0861 3040 C:\Windows\SysWOW64\ieframe.dll - ok

19:15:57.0865 3040 [ BE247AE996A9FDE007A27B51413A6C79 ] C:\Windows\SysWOW64\shdocvw.dll

19:15:57.0865 3040 C:\Windows\SysWOW64\shdocvw.dll - ok

19:15:57.0869 3040 [ AD6B1A69B0CCCF27A792F4C00740D24D ] C:\Users\Sammerz93\AppData\Local\Temp\DDBB4F34-7C2A-4839-9BB3-A9E9545E4669.exe

19:15:57.0869 3040 C:\Users\Sammerz93\AppData\Local\Temp\DDBB4F34-7C2A-4839-9BB3-A9E9545E4669.exe - ok

19:15:57.0873 3040 [ 529F25D17404C52034079069AA8D7BB8 ] C:\Windows\assembly\GAC_32\Desktop.ini

19:15:57.0873 3040 C:\Windows\assembly\GAC_32\Desktop.ini - ok

19:15:57.0878 3040 [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll

19:15:57.0878 3040 C:\Windows\SysWOW64\mswsock.dll - ok

19:15:57.0882 3040 [ 7B8A205FA63EB21CC059F0F252DFC700 ] C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000032.@

19:15:57.0882 3040 C:\Windows\Installer\{56e02f73-c73e-341c-1909-583710acfd43}\U\80000032.@ - ok

19:15:57.0888 3040 [ 7A6986DD659B96398A11AF5173892715 ] C:\Windows\SysWOW64\cabinet.dll

19:15:57.0888 3040 C:\Windows\SysWOW64\cabinet.dll - ok

19:15:57.0895 3040 [ 29CA5974FAB0E8AE4AA7814FE05CF832 ] C:\Windows\SysWOW64\dhcpcsvc6.dll

19:15:57.0895 3040 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok

19:15:57.0900 3040 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll

19:15:57.0900 3040 C:\Windows\SysWOW64\wship6.dll - ok

19:15:57.0903 3040 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL

19:15:57.0903 3040 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok

19:15:57.0909 3040 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll

19:15:57.0909 3040 C:\Windows\SysWOW64\dhcpcsvc.dll - ok

19:15:57.0913 3040 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll

19:15:57.0913 3040 C:\Windows\SysWOW64\dnsapi.dll - ok

19:15:57.0918 3040 [ 12B79422A23814429CDA9E734C58F78F ] C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL

19:15:57.0918 3040 C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL - ok

19:15:57.0924 3040 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll

19:15:57.0924 3040 C:\Windows\SysWOW64\rasadhlp.dll - ok

19:15:57.0928 3040 [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL

19:15:57.0928 3040 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok

19:15:57.0933 3040 [ 1DB71A41DAEE6B3F8CD0DDA8209FA2D5 ] C:\Windows\SysWOW64\WindowsCodecs.dll

19:15:57.0933 3040 C:\Windows\SysWOW64\WindowsCodecs.dll - ok

19:15:57.0937 3040 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll

19:15:57.0937 3040 C:\Windows\SysWOW64\EhStorShell.dll - ok

19:15:57.0941 3040 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll

19:15:57.0941 3040 C:\Windows\SysWOW64\ntshrui.dll - ok

19:15:57.0945 3040 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll

19:15:57.0945 3040 C:\Windows\SysWOW64\imageres.dll - ok

19:15:57.0948 3040 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll

19:15:57.0948 3040 C:\Windows\SysWOW64\slc.dll - ok

19:15:57.0951 3040 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll

19:15:57.0952 3040 C:\Windows\SysWOW64\sfc.dll - ok

19:15:57.0955 3040 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll

19:15:57.0955 3040 C:\Windows\SysWOW64\sfc_os.dll - ok

19:15:57.0959 3040 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll

19:15:57.0959 3040 C:\Windows\SysWOW64\devrtl.dll - ok

19:15:57.0963 3040 [ B519848DFA30AE2B306576B51321D102 ] C:\Windows\System32\ie4uinit.exe

19:15:57.0963 3040 C:\Windows\System32\ie4uinit.exe - ok

19:15:57.0966 3040 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl

19:15:57.0966 3040 C:\Windows\System32\timedate.cpl - ok

19:15:57.0970 3040 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll

19:15:57.0970 3040 C:\Windows\System32\actxprxy.dll - ok

19:15:57.0974 3040 [ C4F40F6CACD796A8E16671D0E9A2F319 ] C:\Windows\System32\shdocvw.dll

19:15:57.0974 3040 C:\Windows\System32\shdocvw.dll - ok

19:15:57.0976 3040 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll

19:15:57.0976 3040 C:\Windows\System32\linkinfo.dll - ok

19:15:57.0980 3040 [ 661CEEDE98A2E0E5CDD7DE239EB38353 ] C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll

19:15:57.0980 3040 C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll - ok

19:15:57.0983 3040 [ 3504B34CD2DE00BA3CC1A195F1B739BD ] C:\Windows\System32\gameux.dll

19:15:57.0983 3040 C:\Windows\System32\gameux.dll - ok

19:15:57.0987 3040 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll

19:15:57.0987 3040 C:\Windows\System32\msftedit.dll - ok

19:15:57.0991 3040 [ 7FCAB194F01E3403C300EB034E480B36 ] C:\Windows\System32\msls31.dll

19:15:57.0991 3040 C:\Windows\System32\msls31.dll - ok

19:15:57.0996 3040 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll

19:15:57.0996 3040 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok

19:15:58.0001 3040 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll

19:15:58.0001 3040 C:\Windows\System32\msi.dll - ok

19:15:58.0005 3040 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll

19:15:58.0005 3040 C:\Windows\System32\msiltcfg.dll - ok

19:15:58.0009 3040 [ 64E498DF53A9481C0F65923B8E1AF8FF ] C:\Windows\System32\igfxtray.exe

19:15:58.0009 3040 C:\Windows\System32\igfxtray.exe - ok

19:15:58.0012 3040 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll

19:15:58.0012 3040 C:\Windows\System32\thumbcache.dll - ok

19:15:58.0016 3040 [ 92D65E5A207C81F15DC546C0365A1753 ] C:\Windows\System32\hccutils.dll

19:15:58.0016 3040 C:\Windows\System32\hccutils.dll - ok

19:15:58.0020 3040 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll

19:15:58.0020 3040 C:\Windows\System32\networkexplorer.dll - ok

19:15:58.0024 3040 [ F20C4731C0B5B50FEDE5CAAEF77D15E2 ] C:\Windows\System32\igfxsrvc.exe

19:15:58.0024 3040 C:\Windows\System32\igfxsrvc.exe - ok

Link to post
Share on other sites

19:15:58.0028 3040 [ D2AF25E2921BACC9B87E1AB7054F22D2 ] C:\Windows\System32\hkcmd.exe

19:15:58.0028 3040 C:\Windows\System32\hkcmd.exe - ok

19:15:58.0030 3040 [ E58E1B907C67DE1FD65BE37EB3C5E79D ] C:\Windows\System32\igfxpers.exe

19:15:58.0030 3040 C:\Windows\System32\igfxpers.exe - ok

19:15:58.0034 3040 [ 4F12EAD0B4C8BDAED5A11CC11F394B0A ] C:\Program Files\CONEXANT\SAII\SAIICpl.exe

19:15:58.0034 3040 C:\Program Files\CONEXANT\SAII\SAIICpl.exe - ok

19:15:58.0038 3040 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll

19:15:58.0038 3040 C:\Windows\System32\DeviceCenter.dll - ok

19:15:58.0042 3040 [ 1EB4061EA92513FD8ECB8F0DB5B5D5CD ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

19:15:58.0042 3040 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok

19:15:58.0047 3040 [ C90DF97E0434BDB9BA1B53DAA0613E88 ] C:\Windows\System32\igfxsrvc.dll

19:15:58.0047 3040 C:\Windows\System32\igfxsrvc.dll - ok

19:15:58.0051 3040 [ C5BCAB2B9BD316DDFD53D4CB5E1C438D ] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe

19:15:58.0051 3040 C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe - ok

19:15:58.0055 3040 [ F82483A80D49ACCA81193A294FB233CD ] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe

19:15:58.0055 3040 C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe - ok

19:15:58.0060 3040 [ A6C039BAAC52F266AB393D0D62236583 ] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe

19:15:58.0060 3040 C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe - ok

19:15:58.0064 3040 [ 381AAB4EEDDB57D77D2619874649B709 ] C:\Windows\System32\igfxdev.dll

19:15:58.0064 3040 C:\Windows\System32\igfxdev.dll - ok

19:15:58.0068 3040 [ A709D7F4DCC91CF0945F784F7D233B89 ] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe

19:15:58.0068 3040 C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe - ok

19:15:58.0072 3040 [ 426350B428CD70D037A3326EB9E5EDFD ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe

19:15:58.0072 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe - ok

19:15:58.0076 3040 [ 5D61BE7DB55B026A5D61A3EED09D0EAD ] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

19:15:58.0076 3040 C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe - ok

19:15:58.0080 3040 [ EF49D309C27814AB86D9AB567DD9DC86 ] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe

19:15:58.0080 3040 C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe - ok

19:15:58.0084 3040 [ CBEC06E32D0AC9C3D0A9199EDC1FB959 ] C:\Program Files (x86)\Skype\Phone\Skype.exe

19:15:58.0084 3040 C:\Program Files (x86)\Skype\Phone\Skype.exe - ok

19:15:58.0088 3040 [ 9EB925EDC8CF1C3D06E50E9348B54A0A ] C:\Users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe

19:15:58.0088 3040 C:\Users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe - ok

19:15:58.0092 3040 [ B22CB67919EBAD88B0E8BB9CDA446010 ] C:\Windows\System32\StikyNot.exe

19:15:58.0092 3040 C:\Windows\System32\StikyNot.exe - ok

19:15:58.0096 3040 [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll

19:15:58.0096 3040 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll - ok

19:15:58.0100 3040 [ BE56D0547E24644DEEB19397521B1EAA ] C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7529.1424\gtn.dll

19:15:58.0100 3040 C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7529.1424\gtn.dll - ok

19:15:58.0104 3040 [ 8AC44F0E443974442B574E1DE77C8877 ] C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe

19:15:58.0104 3040 C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe - ok

19:15:58.0109 3040 [ 0287C9E40BC751BF94A90FEA39B4CAE6 ] C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll

19:15:58.0109 3040 C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll - ok

19:15:58.0113 3040 [ E1A4E83428A43374BE5CE1130AE502E2 ] C:\Windows\System32\igfxrenu.lrc

19:15:58.0113 3040 C:\Windows\System32\igfxrenu.lrc - ok

19:15:58.0116 3040 [ F0CEB0B91C934E5E0FC11BABE65FE375 ] C:\Windows\System32\SynCOM.dll

19:15:58.0116 3040 C:\Windows\System32\SynCOM.dll - ok

19:15:58.0120 3040 [ 49D3F53BEA86A4EFEFA53550E0DBFDB1 ] C:\Users\Sammerz93\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll

19:15:58.0120 3040 C:\Users\Sammerz93\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll - ok

19:15:58.0125 3040 [ 105CFE016CCB20175BEACEC146F175AB ] C:\Windows\System32\IccLibDll_x64.dll

19:15:58.0125 3040 C:\Windows\System32\IccLibDll_x64.dll - ok

19:15:58.0129 3040 [ D70D6B42933C1174FE961F0BCA3573A3 ] C:\Program Files\TOSHIBA\FlashCards\TCrdEvnt.dll

19:15:58.0129 3040 C:\Program Files\TOSHIBA\FlashCards\TCrdEvnt.dll - ok

19:15:58.0133 3040 [ 76849AB697E63D85CC35DD2F8AEA1C6B ] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.dll

19:15:58.0133 3040 C:\Program Files\TOSHIBA\FlashCards\TCrdMain.dll - ok

19:15:58.0137 3040 [ 839F96DBAAFD3353E0B248A5E0BD2A51 ] C:\Windows\SysWOW64\rasapi32.dll

19:15:58.0137 3040 C:\Windows\SysWOW64\rasapi32.dll - ok

19:15:58.0141 3040 [ 1705B6E6E1D883965F32C7D3B8E78CE6 ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe

19:15:58.0142 3040 C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe - ok

19:15:58.0145 3040 [ 02F4246866BF35BF2244E5CF72E25895 ] C:\Program Files (x86)\TOSHIBA\Toshiba Online Backup\Activation\TobuActivation.exe

19:15:58.0145 3040 C:\Program Files (x86)\TOSHIBA\Toshiba Online Backup\Activation\TobuActivation.exe - ok

19:15:58.0149 3040 [ F7DD2D785280DB73DC9060F80361BEFB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe

19:15:58.0149 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - ok

19:15:58.0153 3040 [ 2D7816ACDA1CC85C873CBC19A4121D58 ] C:\Program Files (x86)\TOSHIBA\Toshiba App Place\ToshibaAppPlace.exe

19:15:58.0153 3040 C:\Program Files (x86)\TOSHIBA\Toshiba App Place\ToshibaAppPlace.exe - ok

19:15:58.0157 3040 [ AFAFD74780A0BB4EBE76CDE10C9CCE43 ] C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll

19:15:58.0157 3040 C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll - ok

19:15:58.0168 3040 [ AF43C4F7F3C8BC95DAD95024F96CDC4A ] C:\Program Files (x86)\QuickTime\QTTask.exe

19:15:58.0168 3040 C:\Program Files (x86)\QuickTime\QTTask.exe - ok

19:15:58.0172 3040 [ 7E14F1832783225866AAD6477F8FA573 ] C:\Windows\System32\igfxress.dll

19:15:58.0172 3040 C:\Windows\System32\igfxress.dll - ok

19:15:58.0177 3040 [ 0B3595A4FF0B36D68E5FC67FD7D70FDC ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll

19:15:58.0177 3040 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll - ok

19:15:58.0181 3040 [ 0F042176F243D71C552E9D07D2FCB141 ] C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll

19:15:58.0181 3040 C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll - ok

19:15:58.0185 3040 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll

19:15:58.0185 3040 C:\Windows\System32\mscoree.dll - ok

19:15:58.0188 3040 [ FB1096AB46B84957AAB9070994FF5202 ] C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

19:15:58.0188 3040 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe - ok

19:15:58.0193 3040 [ 0B5511674394666E9D221F8681B2C2E6 ] C:\Windows\System32\consent.exe

19:15:58.0193 3040 C:\Windows\System32\consent.exe - ok

19:15:58.0196 3040 [ 1B16EFEC853D7F246642E893B33944D8 ] C:\Windows\System32\SynTPAPI.dll

19:15:58.0196 3040 C:\Windows\System32\SynTPAPI.dll - ok

19:15:58.0200 3040 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll

19:15:58.0200 3040 C:\Windows\System32\msimg32.dll - ok

19:15:58.0204 3040 [ FFA7172354B9256DBB2CDD75F16F33FE ] C:\Windows\SysWOW64\rasman.dll

19:15:58.0204 3040 C:\Windows\SysWOW64\rasman.dll - ok

19:15:58.0208 3040 [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159 ] C:\Windows\SysWOW64\rtutils.dll

19:15:58.0208 3040 C:\Windows\SysWOW64\rtutils.dll - ok

19:15:58.0212 3040 [ EF9F69074FF0A48DD30FEF5A33518D86 ] C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll

19:15:58.0212 3040 C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll - ok

19:15:58.0216 3040 [ AA794B099F776B37ACCDEAD00E0FBFC9 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll

19:15:58.0216 3040 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok

19:15:58.0220 3040 [ 84DB35F319E5B67838A4877C11748866 ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

19:15:58.0220 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe - ok

19:15:58.0225 3040 [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll

19:15:58.0225 3040 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll - ok

19:15:58.0228 3040 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll

19:15:58.0228 3040 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok

19:15:58.0232 3040 [ A05C0003E8D7CEA359A439690554F8BB ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll

19:15:58.0232 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok

19:15:58.0236 3040 [ EFE8A50B9AE0205D399E94E89E244E65 ] C:\Program Files\TOSHIBA\Power Saver\TCooling.dll

19:15:58.0236 3040 C:\Program Files\TOSHIBA\Power Saver\TCooling.dll - ok

19:15:58.0240 3040 [ E542A10321E884C2C50290AC67E82DAE ] C:\Program Files\TOSHIBA\Power Saver\TOddPwr.dll

19:15:58.0240 3040 C:\Program Files\TOSHIBA\Power Saver\TOddPwr.dll - ok

19:15:58.0245 3040 [ 92DA9EDE07390B4352B29DD82079E398 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll

19:15:58.0245 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok

19:15:58.0249 3040 [ 8B22CF51B907E3A221267CF1E502993A ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll

19:15:58.0249 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok

19:15:58.0253 3040 [ 054B87C872292A960B9B8A834B34DFA7 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll

19:15:58.0253 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok

19:15:58.0258 3040 [ 60FB378B6D1C80DC69DD80F8E05D4346 ] C:\Program Files\TOSHIBA\Power Saver\TPwrSrv.dll

19:15:58.0258 3040 C:\Program Files\TOSHIBA\Power Saver\TPwrSrv.dll - ok

19:15:58.0262 3040 [ 34B01BBD8F00B6B9C9248DC4F1E3CD01 ] C:\Program Files (x86)\Internet Explorer\iexplore.exe

19:15:58.0262 3040 C:\Program Files (x86)\Internet Explorer\iexplore.exe - ok

19:15:58.0267 3040 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll

19:15:58.0267 3040 C:\Windows\SysWOW64\comdlg32.dll - ok

19:15:58.0271 3040 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll

19:15:58.0271 3040 C:\Windows\SysWOW64\msimg32.dll - ok

19:15:58.0275 3040 [ B3F4982BD2542AB40AFA6D6E695E5E06 ] C:\Program Files\TOSHIBA\Power Saver\TPwrBrightness.dll

19:15:58.0275 3040 C:\Program Files\TOSHIBA\Power Saver\TPwrBrightness.dll - ok

19:15:58.0279 3040 [ FB665485B6C8EE16FED0619ADFF8B27A ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.dll

19:15:58.0279 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.dll - ok

19:15:58.0283 3040 [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll

19:15:58.0283 3040 C:\Windows\SysWOW64\d3d9.dll - ok

19:15:58.0287 3040 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll

19:15:58.0287 3040 C:\Windows\SysWOW64\winmm.dll - ok

19:15:58.0292 3040 [ 638C7596B493F5F77DB9EF6BAD8FE46C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll

19:15:58.0292 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok

19:15:58.0296 3040 [ 3819AD4329303EAC88480CA16A650735 ] C:\Windows\System32\UIAnimation.dll

19:15:58.0296 3040 C:\Windows\System32\UIAnimation.dll - ok

19:15:58.0300 3040 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe

19:15:58.0300 3040 C:\Windows\System32\SearchIndexer.exe - ok

19:15:58.0304 3040 [ 794950DB77AA590C2964ECA0A5874A09 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll

19:15:58.0304 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok

19:15:58.0308 3040 [ F164E175B6092D3BA0DC7056487717BC ] C:\Program Files\TOSHIBA\Power Saver\T1394Pwr.dll

19:15:58.0308 3040 C:\Program Files\TOSHIBA\Power Saver\T1394Pwr.dll - ok

19:15:58.0312 3040 [ 250BF888DDBE88D61EB19A9D4957C794 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll

19:15:58.0312 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok

19:15:58.0317 3040 [ E436C2E89416F31699F2A3CA79DDC095 ] C:\Program Files\TOSHIBA\Power Saver\TKBLEDPwr.dll

19:15:58.0317 3040 C:\Program Files\TOSHIBA\Power Saver\TKBLEDPwr.dll - ok

19:15:58.0321 3040 [ 5A963C340DE1A01BA6E24945CE05D16A ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll

19:15:58.0321 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll - ok

19:15:58.0325 3040 [ C4CA3DBBCEC3136D37DA20B50291E63A ] C:\Program Files\TOSHIBA\Power Saver\TSDPwr.dll

19:15:58.0325 3040 C:\Program Files\TOSHIBA\Power Saver\TSDPwr.dll - ok

19:15:58.0329 3040 [ DF987E7AA36D53411B1087B246739326 ] C:\Program Files\TOSHIBA\Power Saver\TPCIePwr.dll

19:15:58.0329 3040 C:\Program Files\TOSHIBA\Power Saver\TPCIePwr.dll - ok

19:15:58.0333 3040 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll

19:15:58.0333 3040 C:\Windows\System32\tquery.dll - ok

19:15:58.0337 3040 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll

19:15:58.0337 3040 C:\Windows\SysWOW64\sxs.dll - ok

19:15:58.0344 3040 [ 76F123E491B26DAAD5DFBC20FC5996DB ] C:\Program Files\TOSHIBA\Power Saver\TScreen.dll

19:15:58.0344 3040 C:\Program Files\TOSHIBA\Power Saver\TScreen.dll - ok

19:15:58.0350 3040 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll

19:15:58.0350 3040 C:\Windows\System32\mssrch.dll - ok

19:15:58.0353 3040 [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll

19:15:58.0353 3040 C:\Windows\SysWOW64\d3d8thk.dll - ok

19:15:58.0357 3040 [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll

19:15:58.0357 3040 C:\Windows\SysWOW64\msacm32.dll - ok

19:15:58.0361 3040 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll

19:15:58.0361 3040 C:\Windows\SysWOW64\shfolder.dll - ok

19:15:58.0365 3040 [ 703FFD301AB900B047337C5D40FD6F96 ] C:\Windows\SysWOW64\olepro32.dll

19:15:58.0365 3040 C:\Windows\SysWOW64\olepro32.dll - ok

19:15:58.0369 3040 [ F4BC62990E7E5C29799A895B80FC3177 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll

19:15:58.0369 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll - ok

19:15:58.0372 3040 [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll

19:15:58.0372 3040 C:\Windows\SysWOW64\avrt.dll - ok

19:15:58.0376 3040 [ 28CA821606669BB9215CE010767720FA ] C:\Windows\SysWOW64\cryptui.dll

19:15:58.0376 3040 C:\Windows\SysWOW64\cryptui.dll - ok

19:15:58.0380 3040 [ 149D74E1128A86DC9CFB2851FBEA11EB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll

19:15:58.0380 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll - ok

19:15:58.0384 3040 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll

19:15:58.0384 3040 C:\Windows\System32\oledlg.dll - ok

19:15:58.0388 3040 [ 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 ] C:\Windows\SysWOW64\mapi32.dll

19:15:58.0388 3040 C:\Windows\SysWOW64\mapi32.dll - ok

19:15:58.0392 3040 [ 76CDA84DCB30EBDEF0D86051A72E0C0F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\f73f0a9c9a83dcd3ff428be509a7992f\mscorlib.ni.dll

19:15:58.0392 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\f73f0a9c9a83dcd3ff428be509a7992f\mscorlib.ni.dll - ok

19:15:58.0396 3040 [ 24744F14E76174927AA2BD4600709192 ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamnet.dll

19:15:58.0396 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamnet.dll - ok

19:15:58.0400 3040 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\87130331.sys

19:15:58.0400 3040 C:\Windows\System32\drivers\87130331.sys - ok

19:15:58.0405 3040 [ B010CF886420EE29C2C276646721D255 ] C:\Windows\SysWOW64\wlanapi.dll

19:15:58.0405 3040 C:\Windows\SysWOW64\wlanapi.dll - ok

19:15:58.0408 3040 [ 1D6A771D1D702AE07919DB52C889A249 ] C:\Windows\SysWOW64\wlanutil.dll

19:15:58.0408 3040 C:\Windows\SysWOW64\wlanutil.dll - ok

19:15:58.0412 3040 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll

19:15:58.0412 3040 C:\Windows\System32\stobject.dll - ok

19:15:58.0416 3040 [ 9C96B167C21F6DCCF68E96853B0A8F93 ] C:\Program Files\TOSHIBA\FlashCards\FnPRTSC.dll

19:15:58.0416 3040 C:\Program Files\TOSHIBA\FlashCards\FnPRTSC.dll - ok

19:15:58.0424 3040 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll

19:15:58.0424 3040 C:\Windows\System32\batmeter.dll - ok

19:15:58.0427 3040 [ 6820A9E91AFF7CB3A510360D8CCD9BDD ] C:\Windows\SysWOW64\mshtml.dll

19:15:58.0428 3040 C:\Windows\SysWOW64\mshtml.dll - ok

19:15:58.0432 3040 [ E126445756DFE53F9788911BBD7BFF16 ] C:\Program Files\TOSHIBA\FlashCards\FnSticky.dll

19:15:58.0432 3040 C:\Program Files\TOSHIBA\FlashCards\FnSticky.dll - ok

19:15:58.0437 3040 [ 47AFBB582DC348AF02B2EDDAF7243A6E ] C:\Program Files\TOSHIBA\Power Saver\TFunctab.dll

19:15:58.0437 3040 C:\Program Files\TOSHIBA\Power Saver\TFunctab.dll - ok

19:15:58.0441 3040 [ 1C937AA6A3E2E5F5F650686437AE2854 ] C:\Program Files\TOSHIBA\FlashCards\SmoothView.dll

19:15:58.0441 3040 C:\Program Files\TOSHIBA\FlashCards\SmoothView.dll - ok

19:15:58.0446 3040 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll

19:15:58.0446 3040 C:\Windows\System32\esent.dll - ok

19:15:58.0450 3040 [ 11615D80DC10ABB83D2A9002B70A4E36 ] C:\Program Files\TOSHIBA\FlashCards\TWarnMsg\TWarnMsg.dll

19:15:58.0450 3040 C:\Program Files\TOSHIBA\FlashCards\TWarnMsg\TWarnMsg.dll - ok

19:15:58.0455 3040 [ 1AC9B56AC7E043AC2874D61CBCED5F49 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\Mute.dll

19:15:58.0455 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\Mute.dll - ok

19:15:58.0460 3040 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll

19:15:58.0460 3040 C:\Windows\System32\prnfldr.dll - ok

19:15:58.0465 3040 [ 1DCD0B1345720349220CE79316A56751 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll

19:15:58.0465 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll - ok

19:15:58.0469 3040 [ 06DEF9378C701E638B707B33B1E8151C ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\TCrdKBB.exe

19:15:58.0469 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\TCrdKBB.exe - ok

19:15:58.0474 3040 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll

19:15:58.0474 3040 C:\Windows\System32\DXP.dll - ok

19:15:58.0479 3040 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll

19:15:58.0479 3040 C:\Windows\System32\Syncreg.dll - ok

19:15:58.0484 3040 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll

19:15:58.0484 3040 C:\Windows\ehome\ehSSO.dll - ok

19:15:58.0488 3040 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll

19:15:58.0488 3040 C:\Windows\System32\msidle.dll - ok

19:15:58.0493 3040 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll

19:15:58.0493 3040 C:\Windows\System32\netshell.dll - ok

19:15:58.0497 3040 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll

19:15:58.0497 3040 C:\Windows\SysWOW64\riched20.dll - ok

19:15:58.0501 3040 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll

19:15:58.0501 3040 C:\Windows\System32\mssprxy.dll - ok

19:15:58.0505 3040 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui

19:15:58.0505 3040 C:\Windows\System32\en-US\tquery.dll.mui - ok

19:15:58.0510 3040 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll

19:15:58.0510 3040 C:\Windows\SysWOW64\ExplorerFrame.dll - ok

19:15:58.0514 3040 [ 88B0BCC23660D466879099F26CCB8CA5 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF1.dll

19:15:58.0514 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF1.dll - ok

19:15:58.0518 3040 [ 6E6DBEB083B26E55A87BCDCF1354F45E ] C:\Program Files\TOSHIBA\Power Saver\TFunc2.dll

19:15:58.0518 3040 C:\Program Files\TOSHIBA\Power Saver\TFunc2.dll - ok

19:15:58.0521 3040 [ E6BC081DDE7391AD0A044C0796A86D08 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF3.dll

19:15:58.0521 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF3.dll - ok

19:15:58.0526 3040 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll

19:15:58.0527 3040 C:\Windows\SysWOW64\duser.dll - ok

19:15:58.0531 3040 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll

19:15:58.0531 3040 C:\Windows\SysWOW64\dui70.dll - ok

19:15:58.0533 3040 [ EDE3D67AE2951D330AA6A4EB7FEF7739 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF4.dll

19:15:58.0533 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF4.dll - ok

19:15:58.0538 3040 [ D908CF40BEFA099EA92129BB485CFBA9 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF5.dll

19:15:58.0538 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF5.dll - ok

19:15:58.0542 3040 [ 2A50F11A365A2BF58871F79727B2C91B ] C:\Windows\System32\igfxext.exe

19:15:58.0542 3040 C:\Windows\System32\igfxext.exe - ok

19:15:58.0546 3040 [ 26D9B632130EDDB2B16DDCDFDD0723D5 ] C:\Windows\System32\igfxexps.dll

19:15:58.0546 3040 C:\Windows\System32\igfxexps.dll - ok

19:15:58.0550 3040 [ CACB1FB9B211A8BEF470A78FC573AEBA ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\Brightness.dll

19:15:58.0550 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\Brightness.dll - ok

19:15:58.0554 3040 [ 43AA2EFD14590DE58A545BF3B28ED09F ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF8Dll.dll

19:15:58.0554 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF8Dll.dll - ok

19:15:58.0558 3040 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll

19:15:58.0558 3040 C:\Windows\System32\AltTab.dll - ok

19:15:58.0562 3040 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll

19:15:58.0562 3040 C:\Windows\System32\wlanapi.dll - ok

19:15:58.0565 3040 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll

19:15:58.0565 3040 C:\Windows\System32\WPDShServiceObj.dll - ok

19:15:58.0569 3040 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll

19:15:58.0569 3040 C:\Windows\System32\pnidui.dll - ok

19:15:58.0573 3040 [ E625ABBE3ED37D3160151DFD33AE6B91 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\TouchPad.dll

19:15:58.0573 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\TouchPad.dll - ok

19:15:58.0578 3040 [ 37CF2461CB5E40C4CFAB82C8FC79A2BC ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll

19:15:58.0578 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok

19:15:58.0582 3040 [ 66935625C1758EFEFFAF8CF0E020A6F9 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll

19:15:58.0582 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll - ok

19:15:58.0586 3040 [ 4C671C688884F18152441DC16AA629F6 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll

19:15:58.0586 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll - ok

19:15:58.0590 3040 [ 13BC9BF69A7A03ED92BFDF36E9B4C508 ] C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnSpace.dll

19:15:58.0590 3040 C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnSpace.dll - ok

19:15:58.0595 3040 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL

19:15:58.0595 3040 C:\Windows\System32\QUTIL.DLL - ok

19:15:58.0598 3040 [ E75963624A3F55C90AC8A7C2E65072FF ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll

19:15:58.0598 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll - ok

19:15:58.0602 3040 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll

19:15:58.0602 3040 C:\Windows\System32\PortableDeviceTypes.dll - ok

19:15:58.0606 3040 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll

19:15:58.0606 3040 C:\Windows\SysWOW64\MMDevAPI.dll - ok

19:15:58.0610 3040 [ D9E21CBF9E6A87847AFFD39EA3FA28EE ] C:\Windows\System32\SearchProtocolHost.exe

19:15:58.0610 3040 C:\Windows\System32\SearchProtocolHost.exe - ok

19:15:58.0614 3040 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll

19:15:58.0614 3040 C:\Windows\System32\FXSST.dll - ok

19:15:58.0617 3040 [ FC33CBBB9CADCEC307DA010FE763D04C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll

19:15:58.0617 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok

19:15:58.0621 3040 [ 3ABB7ADB9CCBCD24D6C55201A3842A94 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll

19:15:58.0621 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok

19:15:58.0626 3040 [ D2A5B2B09F2AF5ED13BF494508B09788 ] C:\Windows\System32\msshooks.dll

19:15:58.0626 3040 C:\Windows\System32\msshooks.dll - ok

19:15:58.0630 3040 [ 49A3AD5CE578CD77F445F3D244AEAB2D ] C:\Windows\System32\SearchFilterHost.exe

19:15:58.0630 3040 C:\Windows\System32\SearchFilterHost.exe - ok

19:15:58.0633 3040 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll

19:15:58.0633 3040 C:\Windows\System32\FXSAPI.dll - ok

19:15:58.0638 3040 [ 8BA9851E671E8B5E49E303748FFD530C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll

19:15:58.0638 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok

19:15:58.0642 3040 [ 2E14406E05789F91C9282AE7CFCA3A07 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll

19:15:58.0642 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok

19:15:58.0647 3040 [ 73862FF693168369A90F046E7F227B83 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

19:15:58.0647 3040 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok

19:15:58.0650 3040 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll

19:15:58.0650 3040 C:\Windows\System32\FXSRESM.dll - ok

19:15:58.0654 3040 [ 48041BAEB60CE5F34F13CC2A1361E49C ] C:\Windows\System32\mssph.dll

19:15:58.0654 3040 C:\Windows\System32\mssph.dll - ok

19:15:58.0658 3040 [ 8F4BB0CFECED925D440ABC2481278360 ] C:\Windows\System32\mapi32.dll

19:15:58.0658 3040 C:\Windows\System32\mapi32.dll - ok

19:15:58.0663 3040 [ BA48FCD5653B8A62F39AAF2663EC5D10 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\c40ec0f4cd203c880298f94c0427dd54\System.ni.dll

19:15:58.0663 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System\c40ec0f4cd203c880298f94c0427dd54\System.ni.dll - ok

19:15:58.0667 3040 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll

19:15:58.0667 3040 C:\Windows\System32\srchadmin.dll - ok

19:15:58.0671 3040 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl

19:15:58.0671 3040 C:\Windows\System32\bthprops.cpl - ok

19:15:58.0676 3040 [ FC3A5E13D26C131E6BB39094D9ACD1F6 ] C:\Windows\System32\ieframe.dll

19:15:58.0676 3040 C:\Windows\System32\ieframe.dll - ok

19:15:58.0681 3040 [ 07AD88DF9EF73215458867EFC1BFFE9E ] C:\Windows\System32\wbem\wmiprov.dll

19:15:58.0681 3040 C:\Windows\System32\wbem\wmiprov.dll - ok

19:15:58.0685 3040 [ 19BC13711AC403FEB830522E4831701B ] C:\Windows\SysWOW64\gameux.dll

19:15:58.0685 3040 C:\Windows\SysWOW64\gameux.dll - ok

19:15:58.0688 3040 [ EDF2A5E96BEC469DA3F64E9BDD386111 ] C:\Windows\SysWOW64\xmllite.dll

19:15:58.0688 3040 C:\Windows\SysWOW64\xmllite.dll - ok

19:15:58.0691 3040 [ 590D5C506044FE02FF7643E32FF9BDAC ] C:\Windows\SysWOW64\wer.dll

19:15:58.0691 3040 C:\Windows\SysWOW64\wer.dll - ok

19:15:58.0696 3040 [ 5987EA8A82C53359BCD2C29D6588583E ] C:\Windows\SysWOW64\linkinfo.dll

19:15:58.0696 3040 C:\Windows\SysWOW64\linkinfo.dll - ok

19:15:58.0699 3040 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll

19:15:58.0699 3040 C:\Windows\System32\oleacc.dll - ok

19:15:58.0703 3040 [ 2B7DB3E2C6DC1BC4D3682838BDB1304C ] C:\Windows\SysWOW64\igdumdx32.dll

19:15:58.0703 3040 C:\Windows\SysWOW64\igdumdx32.dll - ok

19:15:58.0706 3040 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe

19:15:58.0706 3040 C:\Windows\System32\FXSSVC.exe - ok

19:15:58.0710 3040 [ D7CEAEDD5F75D2C8A2E80887D7C114CE ] C:\Windows\System32\webcheck.dll

19:15:58.0710 3040 C:\Windows\System32\webcheck.dll - ok

19:15:58.0714 3040 [ 040CAD6E6600BCEF7A91AE9885C4158F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\222eb8aa336953a6b0216db2b0c4770d\System.Drawing.ni.dll

19:15:58.0715 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\222eb8aa336953a6b0216db2b0c4770d\System.Drawing.ni.dll - ok

19:15:58.0718 3040 [ 933421733C2C4BE8CB161D18E9652E69 ] C:\Windows\SysWOW64\igdumd32.dll

19:15:58.0718 3040 C:\Windows\SysWOW64\igdumd32.dll - ok

19:15:58.0721 3040 [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll

19:15:58.0721 3040 C:\Windows\System32\mlang.dll - ok

19:15:58.0725 3040 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll

19:15:58.0726 3040 C:\Windows\System32\SyncCenter.dll - ok

19:15:58.0729 3040 [ 1E8D1091011E1C51B44A94DE5EE89A6A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\dc5bb74eefdbf954cdfb70dd534d5564\System.Windows.Forms.ni.dll

19:15:58.0729 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\dc5bb74eefdbf954cdfb70dd534d5564\System.Windows.Forms.ni.dll - ok

19:15:58.0732 3040 [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll

19:15:58.0732 3040 C:\Windows\System32\imapi2.dll - ok

19:15:58.0736 3040 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll

19:15:58.0736 3040 C:\Windows\System32\netman.dll - ok

19:15:58.0739 3040 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll

19:15:58.0739 3040 C:\Windows\System32\rasdlg.dll - ok

19:15:58.0743 3040 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll

19:15:58.0743 3040 C:\Windows\System32\hgcpl.dll - ok

19:15:58.0747 3040 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll

19:15:58.0747 3040 C:\Windows\System32\provsvc.dll - ok

19:15:58.0750 3040 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll

19:15:58.0750 3040 C:\Windows\SysWOW64\AudioSes.dll - ok

19:15:58.0755 3040 [ FF2B106909EED48C536DA04742C0324A ] C:\Windows\System32\Query.dll

19:15:58.0755 3040 C:\Windows\System32\Query.dll - ok

19:15:58.0758 3040 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll

19:15:58.0758 3040 C:\Windows\System32\mprapi.dll - ok

19:15:58.0762 3040 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll

19:15:58.0762 3040 C:\Windows\System32\dot3api.dll - ok

19:15:58.0765 3040 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll

19:15:58.0765 3040 C:\Windows\System32\wlanhlp.dll - ok

19:15:58.0769 3040 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll

19:15:58.0769 3040 C:\Windows\System32\hnetcfg.dll - ok

19:15:58.0773 3040 [ 37F674BD7EC41C352260D16C6A646FB6 ] C:\Windows\SysWOW64\jscript.dll

19:15:58.0773 3040 C:\Windows\SysWOW64\jscript.dll - ok

19:15:58.0777 3040 [ 8EE6BDE1D572677AA35707C52C585F75 ] C:\Windows\SysWOW64\mlang.dll

19:15:58.0777 3040 C:\Windows\SysWOW64\mlang.dll - ok

19:15:58.0782 3040 [ 0510403E7774E7C1FA4197E514120375 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\766ce7ee1a2e4f2a85fd90e7572f5d53\System.Core.ni.dll

19:15:58.0782 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\766ce7ee1a2e4f2a85fd90e7572f5d53\System.Core.ni.dll - ok

19:15:58.0787 3040 [ D64D99EC088B54FFE8EE67A480386C20 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll

19:15:58.0787 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll - ok

19:15:58.0790 3040 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll

19:15:58.0790 3040 C:\Windows\System32\WWanAPI.dll - ok

19:15:58.0795 3040 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll

19:15:58.0795 3040 C:\Windows\System32\wwapi.dll - ok

19:15:58.0799 3040 [ 857F78A80A36BF9BE8B10D85E49CE2C4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\193d03ca60573c92f92d9b07fa5bc243\System.Configuration.ni.dll

19:15:58.0799 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\193d03ca60573c92f92d9b07fa5bc243\System.Configuration.ni.dll - ok

19:15:58.0802 3040 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL

19:15:58.0802 3040 C:\Windows\System32\QAGENT.DLL - ok

19:15:58.0806 3040 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll

19:15:58.0806 3040 C:\Windows\System32\shfolder.dll - ok

19:15:58.0812 3040 [ 59D5398F85127D0035542D6218F50A2C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\265531568722647aab229a2cec195b3d\System.Runtime.Serialization.ni.dll

19:15:58.0812 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\265531568722647aab229a2cec195b3d\System.Runtime.Serialization.ni.dll - ok

19:15:58.0816 3040 [ 37C813CF6B4E892E2CDA6FEF3B871AFC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\24d1b7ccbedaa3602bae6a6acea9929e\System.Xml.ni.dll

19:15:58.0816 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\24d1b7ccbedaa3602bae6a6acea9929e\System.Xml.ni.dll - ok

19:15:58.0820 3040 [ 534D84434D9DB1D1E1E865F64E52AA8E ] C:\Windows\System32\twext.dll

19:15:58.0820 3040 C:\Windows\System32\twext.dll - ok

19:15:58.0823 3040 [ 9A116E8BB44D4367257D7462441E3E16 ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll

19:15:58.0824 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll - ok

19:15:58.0828 3040 [ A10B048B681C38E26CA90CD1BC123604 ] C:\Windows\System32\syncui.dll

19:15:58.0828 3040 C:\Windows\System32\syncui.dll - ok

19:15:58.0831 3040 [ 33947F1566C8EC685EB6057D882C99D2 ] C:\Windows\System32\synceng.dll

19:15:58.0832 3040 C:\Windows\System32\synceng.dll - ok

19:15:58.0835 3040 [ 8B22B0CF8912F810B28AFBFC8B42727F ] C:\Windows\System32\acppage.dll

19:15:58.0835 3040 C:\Windows\System32\acppage.dll - ok

19:15:58.0839 3040 [ E2107F227E1C174C20BEB7A51404BBAC ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\csc.exe

19:15:58.0839 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\csc.exe - ok

19:15:58.0843 3040 [ 17ED2224666F6F65F8054D84A3839E71 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cscomp.dll

19:15:58.0844 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cscomp.dll - ok

19:15:58.0847 3040 [ EE338F7673C339D5497C97E86D1011A3 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\alink.dll

19:15:58.0847 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\alink.dll - ok

19:15:58.0851 3040 [ E3A4D59ED585226D381225521BF2A36D ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorpe.dll

19:15:58.0851 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorpe.dll - ok

19:15:58.0855 3040 [ 449F7C92A14B7F50B898FC67202A326C ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cvtres.exe

19:15:58.0855 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cvtres.exe - ok

19:15:58.0859 3040 [ 0017163E0D5985168792BEE5CF70D5DF ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll

19:15:58.0860 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll - ok

19:15:58.0863 3040 [ 1D1EAA16D193C6A2D45981ED3914D22A ] C:\Windows\SysWOW64\msimtf.dll

19:15:58.0863 3040 C:\Windows\SysWOW64\msimtf.dll - ok

19:15:58.0868 3040 [ 53CECC958DB8F5E8188B1E80042588DB ] C:\Windows\SysWOW64\jscript9.dll

19:15:58.0868 3040 C:\Windows\SysWOW64\jscript9.dll - ok

19:15:58.0872 3040 [ 35CEDE6439FF0D8903223A0817FFE46C ] C:\Windows\SysWOW64\d2d1.dll

19:15:58.0872 3040 C:\Windows\SysWOW64\d2d1.dll - ok

19:15:58.0877 3040 [ A29D734F650F958424743BE3BAA052C8 ] C:\Windows\SysWOW64\DWrite.dll

19:15:58.0877 3040 C:\Windows\SysWOW64\DWrite.dll - ok

19:15:58.0881 3040 [ 5C4CB4086FB83115B153E47ADD961A0C ] C:\Windows\System32\FntCache.dll

19:15:58.0881 3040 C:\Windows\System32\FntCache.dll - ok

19:15:58.0885 3040 [ 0411B7958C524BB2E91EE1B3035FE321 ] C:\Windows\SysWOW64\dxgi.dll

19:15:58.0885 3040 C:\Windows\SysWOW64\dxgi.dll - ok

19:15:58.0888 3040 [ 2DE90400A63818FA38C4C5C9ADB166BF ] C:\Windows\SysWOW64\d3d10_1.dll

19:15:58.0888 3040 C:\Windows\SysWOW64\d3d10_1.dll - ok

19:15:58.0891 3040 [ 9C36A3CA80F9B204C670336D344F5DF8 ] C:\Windows\SysWOW64\d3d10_1core.dll

19:15:58.0891 3040 C:\Windows\SysWOW64\d3d10_1core.dll - ok

19:15:58.0895 3040 [ 78B7A3BDA25C90DAA50D36A56A8D1351 ] C:\Windows\SysWOW64\d3d10warp.dll

19:15:58.0895 3040 C:\Windows\SysWOW64\d3d10warp.dll - ok

19:15:58.0898 3040 [ 35AAE2E841AA1A949775168E119482C9 ] C:\Windows\SysWOW64\msls31.dll

19:15:58.0898 3040 C:\Windows\SysWOW64\msls31.dll - ok

19:15:58.0902 3040 [ D3C0837346C49095B8AF9EF54AD7E90A ] C:\Program Files (x86)\Mozilla Firefox\firefox.exe

19:15:58.0902 3040 C:\Program Files (x86)\Mozilla Firefox\firefox.exe - ok

19:15:58.0906 3040 [ 67EC459E42D3081DD8FD34356F7CAFC1 ] C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll

19:15:58.0906 3040 C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll - ok

19:15:58.0910 3040 [ A0F448A3AEDAD420B13866355F538B61 ] C:\Program Files (x86)\Mozilla Firefox\nspr4.dll

19:15:58.0910 3040 C:\Program Files (x86)\Mozilla Firefox\nspr4.dll - ok

19:15:58.0914 3040 [ 3DE755A30D131BE8671A638D5C0E898D ] C:\Program Files (x86)\Mozilla Firefox\mozglue.dll

19:15:58.0914 3040 C:\Program Files (x86)\Mozilla Firefox\mozglue.dll - ok

19:15:58.0918 3040 [ A4C78C8BA7AFC2B5C7B4581E8796C63D ] C:\Program Files (x86)\Mozilla Firefox\plc4.dll

19:15:58.0918 3040 C:\Program Files (x86)\Mozilla Firefox\plc4.dll - ok

19:15:58.0922 3040 [ 16C1297D836AD87A53DD6AB69BC7B570 ] C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll

19:15:58.0922 3040 C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll - ok

19:15:58.0926 3040 [ 346644D82E19DADA9934504025BFA5CB ] C:\Program Files (x86)\Mozilla Firefox\plds4.dll

19:15:58.0926 3040 C:\Program Files (x86)\Mozilla Firefox\plds4.dll - ok

Link to post
Share on other sites

19:15:58.0930 3040 [ C09AC580BF42E84B0CB3F2FA73382FEF ] C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll

19:15:58.0930 3040 C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll - ok

19:15:58.0935 3040 [ 06D12D2CC88F7C6228F28BAC0AA9B716 ] C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll

19:15:58.0935 3040 C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll - ok

19:15:58.0939 3040 [ 8EA5E15DE69C2ACB292B1D48F00DE031 ] C:\Program Files (x86)\Mozilla Firefox\softokn3.dll

19:15:58.0939 3040 C:\Program Files (x86)\Mozilla Firefox\softokn3.dll - ok

19:15:58.0944 3040 [ 9F58B16676FF68AB0FFC618078F83725 ] C:\Program Files (x86)\Mozilla Firefox\nss3.dll

19:15:58.0944 3040 C:\Program Files (x86)\Mozilla Firefox\nss3.dll - ok

19:15:58.0949 3040 [ 11E885D7336BD50F3ABBF0E3A5FDE894 ] C:\Program Files (x86)\Mozilla Firefox\ssl3.dll

19:15:58.0949 3040 C:\Program Files (x86)\Mozilla Firefox\ssl3.dll - ok

19:15:58.0953 3040 [ 62593D2AFEC7C88A61C0858C9C4E6C6E ] C:\Program Files (x86)\Mozilla Firefox\smime3.dll

19:15:58.0953 3040 C:\Program Files (x86)\Mozilla Firefox\smime3.dll - ok

19:15:58.0958 3040 [ A013B3AD1626C27FDCCBE27F9EAC3D7A ] C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

19:15:58.0958 3040 C:\Program Files (x86)\Mozilla Firefox\mozjs.dll - ok

19:15:58.0963 3040 [ 86F963944A1BADD1CFBC66F54E7583F1 ] C:\Program Files (x86)\Mozilla Firefox\xul.dll

19:15:58.0963 3040 C:\Program Files (x86)\Mozilla Firefox\xul.dll - ok

19:15:58.0968 3040 [ 03E9314004F504A14A61C3D364B62F66 ] C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll

19:15:58.0968 3040 C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll - ok

19:15:58.0972 3040 [ 6D1A6C5A5D05D230C9D90C77F1A48AC2 ] C:\Program Files (x86)\Mozilla Firefox\xpcom.dll

19:15:58.0972 3040 C:\Program Files (x86)\Mozilla Firefox\xpcom.dll - ok

19:15:58.0977 3040 [ 76E47408F544B70A0DE4590F7BF8AC77 ] C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll

19:15:58.0977 3040 C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll - ok

19:15:58.0980 3040 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll

19:15:58.0980 3040 C:\Windows\SysWOW64\wshqos.dll - ok

19:15:58.0984 3040 [ 3551FB8621274BC451356EFF70ECC2DC ] C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll

19:15:58.0984 3040 C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll - ok

19:15:58.0987 3040 [ A2631C4465BBCE72B7E371DFB924A9D3 ] C:\Windows\SysWOW64\feclient.dll

19:15:58.0987 3040 C:\Windows\SysWOW64\feclient.dll - ok

19:15:58.0991 3040 [ 3E4FC76314F0DD59946552D0B19BCC2B ] C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll

19:15:58.0992 3040 C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll - ok

19:15:58.0996 3040 [ AE383D208B896D17C5201D1F156353CB ] C:\Program Files (x86)\Mozilla Firefox\freebl3.dll

19:15:58.0996 3040 C:\Program Files (x86)\Mozilla Firefox\freebl3.dll - ok

19:15:59.0000 3040 [ 2CC8AA20E1132B362DAAC938098A7D2E ] C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll

19:15:59.0000 3040 C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll - ok

19:15:59.0003 3040 [ 2A0DD9961ED969EB10781DBC57EBA9CC ] C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe

19:15:59.0003 3040 C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe - ok

19:15:59.0007 3040 [ A80C173AC5C75706BB74AE4D78F2A53D ] C:\Program Files (x86)\Windows Media Player\wmplayer.exe

19:15:59.0007 3040 C:\Program Files (x86)\Windows Media Player\wmplayer.exe - ok

19:15:59.0011 3040 [ FE45A1512E2EC883E1DE72F9A2842EE5 ] C:\Windows\SysWOW64\igd10umd32.dll

19:15:59.0011 3040 C:\Windows\SysWOW64\igd10umd32.dll - ok

19:15:59.0016 3040 [ EE77A034F10D1E62E12768861711DA41 ] C:\Program Files\Internet Explorer\ieproxy.dll

19:15:59.0016 3040 C:\Program Files\Internet Explorer\ieproxy.dll - ok

19:15:59.0020 3040 [ 2A2F6984F2E7F92D42D6D6D142C78F29 ] C:\Program Files (x86)\VideoLAN\VLC\vlc.exe

19:15:59.0020 3040 C:\Program Files (x86)\VideoLAN\VLC\vlc.exe - ok

19:15:59.0023 3040 [ 5ECC0FD881F471BDC253533472C3B49E ] C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll

19:15:59.0023 3040 C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll - ok

19:15:59.0027 3040 [ 66C95D62EB11D3190AEA74624F996A44 ] C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll

19:15:59.0027 3040 C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll - ok

19:15:59.0031 3040 [ 2572E1F0254E2267E97DE1B15D099EC4 ] C:\Windows\SysWOW64\d3d10.dll

19:15:59.0031 3040 C:\Windows\SysWOW64\d3d10.dll - ok

19:15:59.0035 3040 [ 547F78746F20901C770E8653B242217C ] C:\Windows\SysWOW64\d3d10core.dll

19:15:59.0035 3040 C:\Windows\SysWOW64\d3d10core.dll - ok

19:15:59.0039 3040 [ 70599088A25FEE1B99BC67CFF3321267 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll

19:15:59.0039 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll - ok

19:15:59.0043 3040 [ EC2A52417EEDA78322CF0668B7A3A8B5 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libaout_directx_plugin.dll

19:15:59.0043 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libaout_directx_plugin.dll - ok

19:15:59.0047 3040 [ CF2CA306F8EDDB3D41A9E7058002BD47 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll

19:15:59.0047 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll - ok

19:15:59.0050 3040 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll

19:15:59.0051 3040 C:\Windows\System32\wbem\NCProv.dll - ok

19:15:59.0054 3040 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll

19:15:59.0054 3040 C:\Windows\SysWOW64\NapiNSP.dll - ok

19:15:59.0058 3040 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll

19:15:59.0058 3040 C:\Windows\SysWOW64\pnrpnsp.dll - ok

19:15:59.0062 3040 [ 93FEB1F95CBC75836257BC2B7CB4005B ] C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectx_plugin.dll

19:15:59.0062 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectx_plugin.dll - ok

19:15:59.0066 3040 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll

19:15:59.0066 3040 C:\Windows\SysWOW64\winrnr.dll - ok

19:15:59.0070 3040 [ 41623176FEF9DF3C113EAADADBB5FB42 ] C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe

19:15:59.0070 3040 C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe - ok

19:15:59.0074 3040 [ 154F0F73ECB3DCB4A2C0AA323F3B50EB ] C:\Program Files (x86)\VideoLAN\VLC\plugins\mmxext\libmemcpymmxext_plugin.dll

19:15:59.0074 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\mmxext\libmemcpymmxext_plugin.dll - ok

19:15:59.0078 3040 [ DA133BE1A49533B7B9DF6BE30355D4D2 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll

19:15:59.0078 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll - ok

19:15:59.0082 3040 [ 22E020FA26223C12BB32E7AB39703DB7 ] C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll

19:15:59.0082 3040 C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll - ok

19:15:59.0086 3040 [ 66A75051D5ECA7CD52604F2167DD18C8 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll

19:15:59.0086 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll - ok

19:15:59.0090 3040 [ 7F8678C59F188528D60104E697C2361E ] C:\Windows\SysWOW64\mscms.dll

19:15:59.0090 3040 C:\Windows\SysWOW64\mscms.dll - ok

19:15:59.0096 3040 [ 48B7A73996F34D1569627F628D3ED36F ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll

19:15:59.0096 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll - ok

19:15:59.0100 3040 [ 87B758CECAA7511B90BE0645F7605A15 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll

19:15:59.0100 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll - ok

19:15:59.0108 3040 [ 99DF28C4694D80BA22239C5EBA0339EA ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll

19:15:59.0108 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll - ok

19:15:59.0115 3040 [ 5CDD72EBAA1EFB012A8869350FFED43C ] C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_httplive_plugin.dll

19:15:59.0115 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_httplive_plugin.dll - ok

19:15:59.0120 3040 [ DE0F72669692B683A226B67454B75126 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_dash_plugin.dll

19:15:59.0120 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_dash_plugin.dll - ok

19:15:59.0125 3040 [ E084C9C6C5265FD17C75C03D000121CA ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll

19:15:59.0125 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll - ok

19:15:59.0129 3040 [ F37E4BF5ACF13870514E93E33A20F428 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll

19:15:59.0129 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll - ok

19:15:59.0133 3040 [ 361FD230E637167D5F770C7FA4B42DF9 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_record_plugin.dll

19:15:59.0133 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libstream_filter_record_plugin.dll - ok

19:15:59.0139 3040 [ 6B3A6B5766587195623930D42369D44A ] C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll

19:15:59.0139 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll - ok

19:15:59.0144 3040 [ 6E73DB6478D517E1424DFA5CA0AB6188 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll

19:15:59.0144 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll - ok

19:15:59.0150 3040 [ A415B14EAE0263ECE6623F8801EEF26A ] C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll

19:15:59.0150 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll - ok

19:15:59.0153 3040 [ 1E4AB28F1E71B24B5488505D4948A78F ] C:\PROGRA~2\McAfee\SITEAD~1\mcbrwctl.dll

19:15:59.0153 3040 C:\PROGRA~2\McAfee\SITEAD~1\mcbrwctl.dll - ok

19:15:59.0157 3040 [ F7F037E44FC66D94A602AE0B611713AE ] C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll

19:15:59.0157 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll - ok

19:15:59.0163 3040 [ 92F9CFD755E97D684D3FAB48A037623C ] C:\PROGRA~2\McAfee\SITEAD~1\MCSACO~1.DLL

19:15:59.0163 3040 C:\PROGRA~2\McAfee\SITEAD~1\MCSACO~1.DLL - ok

19:15:59.0167 3040 [ B7BBF927F5F8B5E338FEE152650DAC55 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll

19:15:59.0167 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll - ok

19:15:59.0171 3040 [ CF51780FE59B312F62924E3674323C76 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libglobalhotkeys_plugin.dll

19:15:59.0171 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libglobalhotkeys_plugin.dll - ok

19:15:59.0176 3040 [ 2D46CA36155168221537D09048191863 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll

19:15:59.0176 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll - ok

19:15:59.0180 3040 [ D89610299CF86913E11FF31744F9993A ] C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_http_plugin.dll

19:15:59.0180 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_http_plugin.dll - ok

19:15:59.0184 3040 [ 0F07480054342A36F3734352FC069366 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libupnp_plugin.dll

19:15:59.0185 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libupnp_plugin.dll - ok

19:15:59.0188 3040 [ 334986B4BF6253437240D8F1F556FF8C ] C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libpodcast_plugin.dll

19:15:59.0188 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libpodcast_plugin.dll - ok

19:15:59.0193 3040 [ 013C0045F9A856FCA9132FE4061F2461 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll

19:15:59.0193 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll - ok

19:15:59.0197 3040 [ 2CCFB842E5BEBB8E1A182329F6E293C6 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libmediadirs_plugin.dll

19:15:59.0197 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libmediadirs_plugin.dll - ok

19:15:59.0201 3040 [ ADE792EA251F9C12A87E1B99D8F58A79 ] C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libwindrive_plugin.dll

19:15:59.0201 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libwindrive_plugin.dll - ok

19:15:59.0205 3040 [ 2ED65CF5725FCD0DFD40F87782AE37D5 ] C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll

19:15:59.0205 3040 C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll - ok

19:15:59.0209 3040 [ 0E85C11F8850D524B02181C6E02BA9AE ] C:\Windows\SysWOW64\dsound.dll

19:15:59.0209 3040 C:\Windows\SysWOW64\dsound.dll - ok

19:15:59.0213 3040 [ 3BF801ED38CFD8CDD3EDEDBB47F073AB ] C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe

19:15:59.0213 3040 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe - ok

19:15:59.0217 3040 [ 816B681CC308FAA128EDCB90643DCED7 ] C:\Windows\SysWOW64\icm32.dll

19:15:59.0217 3040 C:\Windows\SysWOW64\icm32.dll - ok

19:15:59.0221 3040 [ F49210D92D29DD5B6B34037BE888654A ] C:\Program Files\TOSHIBA\ReelTime\ReelTimeRemoteStorage.dll

19:15:59.0221 3040 C:\Program Files\TOSHIBA\ReelTime\ReelTimeRemoteStorage.dll - ok

19:15:59.0225 3040 [ DB4BC74DC444CC7A5F8F6DF2D38FBD96 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcm90.dll

19:15:59.0225 3040 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcm90.dll - ok

19:15:59.0229 3040 [ 0A94DE4AA9864D312E60D747FD249ABE ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll

19:15:59.0229 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll - ok

19:15:59.0232 3040 [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll

19:15:59.0232 3040 C:\Windows\System32\riched20.dll - ok

19:15:59.0236 3040 [ 9DAAD9A3B59061C5B58FD64F524FB879 ] C:\Program Files\TOSHIBA\ReelTime\DataProcess.DLL

19:15:59.0236 3040 C:\Program Files\TOSHIBA\ReelTime\DataProcess.DLL - ok

19:15:59.0240 3040 [ 4AE2661105545396A0339E852BDC45EC ] C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libexport_plugin.dll

19:15:59.0240 3040 C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libexport_plugin.dll - ok

19:15:59.0245 3040 [ 89C4B3BF66D3C2F3D83F9DEDF1B218D6 ] C:\Windows\System32\mshtml.dll

19:15:59.0245 3040 C:\Windows\System32\mshtml.dll - ok

19:15:59.0249 3040 [ 87204B04A63E684D3FD02A7BC10741CD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f71d2f65d0f149c75ac7a569dbcc8500\System.ServiceProcess.ni.dll

19:15:59.0249 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f71d2f65d0f149c75ac7a569dbcc8500\System.ServiceProcess.ni.dll - ok

19:15:59.0253 3040 [ 71C321649B28638EE80A2EEB164C1DC8 ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

19:15:59.0253 3040 C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe - ok

19:15:59.0257 3040 [ 4370B54FC11742DC5A88DC8602729459 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\fd4a8227569e64d657b80483da8ffe78\System.Management.ni.dll

19:15:59.0257 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\fd4a8227569e64d657b80483da8ffe78\System.Management.ni.dll - ok

19:15:59.0261 3040 [ 45375DF47ED4D0535739465105AAABE3 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\WMINet_Utils.dll

19:15:59.0261 3040 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\WMINet_Utils.dll - ok

19:15:59.0265 3040 [ C00DB14550E4BD49737F311C644E45FF ] C:\Windows\System32\wmi.dll

19:15:59.0265 3040 C:\Windows\System32\wmi.dll - ok

19:15:59.0269 3040 [ A5A70AF023570C1D26501B14338C1D6C ] C:\Windows\System32\browcli.dll

19:15:59.0269 3040 C:\Windows\System32\browcli.dll - ok

19:15:59.0272 3040 [ C4BFE4B61086416B0529212F92BCE081 ] C:\Windows\System32\schedcli.dll

19:15:59.0272 3040 C:\Windows\System32\schedcli.dll - ok

19:15:59.0277 3040 [ E601860AA04CE2198DBC6AC2AF80AFF7 ] C:\Windows\System32\perfos.dll

19:15:59.0277 3040 C:\Windows\System32\perfos.dll - ok

19:15:59.0281 3040 [ 0D893F8D145D3B125B0226727C243A69 ] C:\Windows\System32\security.dll

19:15:59.0281 3040 C:\Windows\System32\security.dll - ok

19:15:59.0284 3040 [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

19:15:59.0284 3040 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok

19:15:59.0289 3040 [ E5F7C30EDF0892667933BE879F067D67 ] C:\Windows\SysWOW64\msvcr100_clr0400.dll

19:15:59.0289 3040 C:\Windows\SysWOW64\msvcr100_clr0400.dll - ok

19:15:59.0293 3040 [ D83947A58613E9091B4C9CC0F1546A8D ] C:\Windows\SysWOW64\mscoree.dll

19:15:59.0293 3040 C:\Windows\SysWOW64\mscoree.dll - ok

19:15:59.0298 3040 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

19:15:59.0299 3040 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok

19:15:59.0303 3040 [ CB21CD39637AC13F3455454B2F648257 ] C:\Windows\System32\msvcr100_clr0400.dll

19:15:59.0303 3040 C:\Windows\System32\msvcr100_clr0400.dll - ok

19:15:59.0307 3040 [ 85F0CCD6E2C2694793ADF04B6B6658AA ] C:\Program Files (x86)\Google\Update\1.3.21.115\goopdateres_en.dll

19:15:59.0307 3040 C:\Program Files (x86)\Google\Update\1.3.21.115\goopdateres_en.dll - ok

19:15:59.0313 3040 [ 98B16E756243BEA9410E32025B19C06F ] C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

19:15:59.0313 3040 C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe - ok

19:15:59.0317 3040 [ B3CE0951E3C1EA3C733573C472EE85F9 ] C:\Windows\System32\msimtf.dll

19:15:59.0317 3040 C:\Windows\System32\msimtf.dll - ok

19:15:59.0321 3040 [ 1F04E809409A9B5FFD510B5FD89A1155 ] C:\Windows\System32\d2d1.dll

19:15:59.0321 3040 C:\Windows\System32\d2d1.dll - ok

19:15:59.0325 3040 [ 7426279D625196393EABBEFE1C60A0C2 ] C:\Windows\System32\DWrite.dll

19:15:59.0325 3040 C:\Windows\System32\DWrite.dll - ok

19:15:59.0329 3040 [ 64ABE1250EC1A1CFD1442E7C8800216E ] C:\Windows\System32\d3d10warp.dll

19:15:59.0329 3040 C:\Windows\System32\d3d10warp.dll - ok

19:15:59.0332 3040 [ F0F6082335C4BEB06D67850495203EAD ] C:\Windows\System32\igdumd64.dll

19:15:59.0333 3040 C:\Windows\System32\igdumd64.dll - ok

19:15:59.0336 3040 [ DC8490812A3B72811AE534F423B4C206 ] C:\Windows\System32\drivers\mbam.sys

19:15:59.0336 3040 C:\Windows\System32\drivers\mbam.sys - ok

19:15:59.0340 3040 [ 43683E970F008C93C9429EF428147A54 ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

19:15:59.0340 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe - ok

19:15:59.0345 3040 [ 8F233C5BC68E34D18D38257B283CE96C ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamcore.dll

19:15:59.0345 3040 C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamcore.dll - ok

19:15:59.0352 3040 [ E17E0188BB90FAE42D83E98707EFA59C ] C:\Windows\System32\sppsvc.exe

19:15:59.0352 3040 C:\Windows\System32\sppsvc.exe - ok

19:15:59.0358 3040 [ FFF95479C7AB1550F0750A5D01744211 ] C:\Windows\System32\drivers\spsys.sys

19:15:59.0358 3040 C:\Windows\System32\drivers\spsys.sys - ok

19:15:59.0360 3040 [ 7A78ED1088890114DFDE2C4AB038D6B6 ] C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

19:15:59.0360 3040 C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe - ok

19:15:59.0366 3040 [ D6692338B985D4A0CA52B828314D897D ] C:\Windows\SysWOW64\drprov.dll

19:15:59.0366 3040 C:\Windows\SysWOW64\drprov.dll - ok

19:15:59.0369 3040 [ D480C9220BFE667DE65A46CDE80EA7E9 ] C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\StatusStrings.dll

19:15:59.0370 3040 C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\StatusStrings.dll - ok

19:15:59.0374 3040 [ D7B7159BC8374E87D8C45A30377A3440 ] C:\Windows\SysWOW64\ntlanman.dll

19:15:59.0374 3040 C:\Windows\SysWOW64\ntlanman.dll - ok

19:15:59.0379 3040 [ 122F89E0905FC656D56F65CD7A2E9B4D ] C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\xerces-c_2_7.dll

19:15:59.0379 3040 C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\xerces-c_2_7.dll - ok

19:15:59.0382 3040 [ 284B59D7B56FC76C80E622AB856B1FAB ] C:\Windows\SysWOW64\davclnt.dll

19:15:59.0383 3040 C:\Windows\SysWOW64\davclnt.dll - ok

19:15:59.0386 3040 [ 179BECE8D1A4C488DDB7191FF9BE3FB0 ] C:\Windows\SysWOW64\davhlpr.dll

19:15:59.0386 3040 C:\Windows\SysWOW64\davhlpr.dll - ok

19:15:59.0390 3040 [ F6F22291024906E43D135A4B1705FEAC ] C:\Windows\System32\sppwinob.dll

19:15:59.0390 3040 C:\Windows\System32\sppwinob.dll - ok

19:15:59.0395 3040 [ 2B373B5F7E36B5ED5DA176D4400EF091 ] C:\Windows\System32\sppobjs.dll

19:15:59.0395 3040 C:\Windows\System32\sppobjs.dll - ok

19:15:59.0398 3040 [ 09F65C8CD07A1658694A5B06578731EB ] C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe

19:15:59.0398 3040 C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe - ok

19:15:59.0402 3040 [ 2F03490092C032392FB6FF635222B9B2 ] C:\Windows\SysWOW64\apisetschema.dll

19:15:59.0402 3040 C:\Windows\SysWOW64\apisetschema.dll - ok

19:15:59.0405 3040 [ 29D0886CF250FCEF1BF9E65AB8D2C0C8 ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

19:15:59.0405 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe - ok

19:15:59.0411 3040 [ 89F4D0DD6606A2FE15931E6888DBBC8D ] C:\Windows\SysWOW64\stdole2.tlb

19:15:59.0411 3040 C:\Windows\SysWOW64\stdole2.tlb - ok

19:15:59.0414 3040 [ 25F1EAC74071F48D523828F3F72864B0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\718cd5a598ed3e225a73b2aba7bcc1e1\Microsoft.ManagementConsole.ni.dll

19:15:59.0414 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\718cd5a598ed3e225a73b2aba7bcc1e1\Microsoft.ManagementConsole.ni.dll - ok

19:15:59.0418 3040 [ 16569CAAE83A094078573CEC6193AF0B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\803188573fb19785a94284e097c48a67\Microsoft.ManagementConsole.ni.dll

19:15:59.0418 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\803188573fb19785a94284e097c48a67\Microsoft.ManagementConsole.ni.dll - ok

19:15:59.0422 3040 [ 34B44289AE752667EB92173172F43D61 ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosReg.dll

19:15:59.0422 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosReg.dll - ok

19:15:59.0426 3040 [ 244419D125B36663BBF97AD79862B775 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\18367b9a0b9e9261d1d9e371230af87c\Microsoft.MediaCenter.Sports.ni.dll

19:15:59.0426 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\18367b9a0b9e9261d1d9e371230af87c\Microsoft.MediaCenter.Sports.ni.dll - ok

19:15:59.0431 3040 [ AFFE84C35040FA0F2A4A8A7023E8A2D5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\260d83ee2128a3388051cf416d4450b0\Microsoft.MediaCenter.Shell.ni.dll

19:15:59.0431 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\260d83ee2128a3388051cf416d4450b0\Microsoft.MediaCenter.Shell.ni.dll - ok

19:15:59.0435 3040 [ 678F88824F234C35D40D0D8880CDE7C2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\31fb31c16a37080687f869db6b443adf\Microsoft.MediaCenter.Bml.ni.dll

19:15:59.0435 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\31fb31c16a37080687f869db6b443adf\Microsoft.MediaCenter.Bml.ni.dll - ok

19:15:59.0439 3040 [ 6DC62A205DE124200880CB73696E9BE5 ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmart.dll

19:15:59.0439 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmart.dll - ok

19:15:59.0445 3040 [ F76279C8C3D1C638D8A6BBCFECC15909 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\409dae089f2e041343cff71f822cd505\Microsoft.MediaCenter.ITVVM.ni.dll

19:15:59.0445 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\409dae089f2e041343cff71f822cd505\Microsoft.MediaCenter.ITVVM.ni.dll - ok

19:15:59.0449 3040 [ 6C477F0CC13657A60CA1B8BA0EECE32D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\514667153fd74307d21e7f50b79858c9\Microsoft.MediaCenter.Interop.ni.dll

19:15:59.0449 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\514667153fd74307d21e7f50b79858c9\Microsoft.MediaCenter.Interop.ni.dll - ok

19:15:59.0454 3040 [ C77A542A18B67353A1831A5F97CAC60A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5c50dfc78bd40be7ca0d850c781671e4\Microsoft.MediaCenter.UI.ni.dll

19:15:59.0454 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5c50dfc78bd40be7ca0d850c781671e4\Microsoft.MediaCenter.UI.ni.dll - ok

19:15:59.0458 3040 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL

19:15:59.0458 3040 C:\Windows\System32\QAGENTRT.DLL - ok

19:15:59.0464 3040 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll

19:15:59.0464 3040 C:\Windows\System32\fveui.dll - ok

19:15:59.0469 3040 [ 61A27C4CCF187116DAEF7818BABB8416 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\653e1ee01f10d658d52ca42e17e74283\Microsoft.MediaCenter.UI.ni.dll

19:15:59.0469 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\653e1ee01f10d658d52ca42e17e74283\Microsoft.MediaCenter.UI.ni.dll - ok

19:15:59.0473 3040 [ A81545E6188FBCA153775DBD69090987 ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe

19:15:59.0473 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe - ok

19:15:59.0478 3040 [ D876A64E3A525B7FFF388DCC339F8710 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\73bfbdccdc1b0ae87f70a0ec594fee3c\Microsoft.MediaCenter.Bml.ni.dll

19:15:59.0479 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\73bfbdccdc1b0ae87f70a0ec594fee3c\Microsoft.MediaCenter.Bml.ni.dll - ok

19:15:59.0481 3040 [ 6968B8C41190973BE2C8E3ED7320CE17 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c057be8bb6614cce013af3721fe34983\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll

19:15:59.0481 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c057be8bb6614cce013af3721fe34983\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll - ok

19:15:59.0485 3040 [ 51EA946074FFAFF25B68F5C3DB431436 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c5f4ab28f67d5bf0cc221ef81e7f6966\Microsoft.MediaCenter.iTv.ni.dll

19:15:59.0485 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\c5f4ab28f67d5bf0cc221ef81e7f6966\Microsoft.MediaCenter.iTv.ni.dll - ok

19:15:59.0489 3040 [ 69A5AD1FF6F7E3D7469A91F521913C28 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e29cbd30a31d3c8dae19eb17f70c4ec4\Microsoft.MediaCenter.iTv.ni.dll

19:15:59.0489 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e29cbd30a31d3c8dae19eb17f70c4ec4\Microsoft.MediaCenter.iTv.ni.dll - ok

19:15:59.0493 3040 [ 0E484519E398209556DFA3C33585FE23 ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll

19:15:59.0493 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll - ok

19:15:59.0498 3040 [ E6E2EF1E472F25B1B3FA9124B9EB6205 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f015188310f7613f819fcf032f98705a\Microsoft.MediaCenter.iTv.Media.ni.dll

19:15:59.0498 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f015188310f7613f819fcf032f98705a\Microsoft.MediaCenter.iTv.Media.ni.dll - ok

19:15:59.0502 3040 [ 3211CACE476284FC09E382B49A70542F ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TReport.dll

19:15:59.0502 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TReport.dll - ok

19:15:59.0506 3040 [ 9B84D05C9E7B7EE50B1E4903DBE07A16 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f4faec8b6d3e2c327c68070963ec1750\Microsoft.MediaCenter.ITVVM.ni.dll

19:15:59.0506 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f4faec8b6d3e2c327c68070963ec1750\Microsoft.MediaCenter.ITVVM.ni.dll - ok

19:15:59.0510 3040 [ 91098AA47CC853DBADC2984BC457E446 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3040e2de07177c0a6a66a49de61fdc59\Microsoft.PowerShell.GPowerShell.ni.dll

19:15:59.0510 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\3040e2de07177c0a6a66a49de61fdc59\Microsoft.PowerShell.GPowerShell.ni.dll - ok

19:15:59.0515 3040 [ 3C59CF4DC24EEFC6E6BCAB550CC0DEC5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6c3fe42a14ac5b48ebd43be290973d24\Microsoft.PowerShell.GraphicalHost.ni.dll

19:15:59.0515 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6c3fe42a14ac5b48ebd43be290973d24\Microsoft.PowerShell.GraphicalHost.ni.dll - ok

19:15:59.0518 3040 [ A4C545EBD5CAA764B19FF4DC0542B85C ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\en-US\tossenotify.exe.mui

19:15:59.0518 3040 C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\en-US\tossenotify.exe.mui - ok

19:15:59.0522 3040 [ 6A532F0E755DDDCD3C2E18279045051C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6caa366471176a065a96d77e8ba01eeb\Microsoft.PowerShell.Commands.Utility.ni.dll

19:15:59.0522 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\6caa366471176a065a96d77e8ba01eeb\Microsoft.PowerShell.Commands.Utility.ni.dll - ok

19:15:59.0527 3040 [ 1D079011A9231D52FEE780CEA25739D8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\b21fa6ff448b99a97319e18c166c03e2\Microsoft.PowerShell.Security.ni.dll

19:15:59.0527 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\b21fa6ff448b99a97319e18c166c03e2\Microsoft.PowerShell.Security.ni.dll - ok

19:15:59.0529 3040 [ 47A65753EE82949D01364105AD85D29E ] C:\Windows\SysWOW64\tzres.dll

19:15:59.0529 3040 C:\Windows\SysWOW64\tzres.dll - ok

19:15:59.0533 3040 [ D65C974F382D4E155D84AFA23D7F831E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ca7e936eed0de2436d87b2601ee3a20a\Microsoft.PowerShell.Editor.ni.dll

19:15:59.0533 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ca7e936eed0de2436d87b2601ee3a20a\Microsoft.PowerShell.Editor.ni.dll - ok

19:15:59.0537 3040 [ 3A93CCC6F891C604D4C909991FD6AF5B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f29b31b09b826a27cced362030561d00\Microsoft.PowerShell.Editor.ni.dll

19:15:59.0537 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f29b31b09b826a27cced362030561d00\Microsoft.PowerShell.Editor.ni.dll - ok

19:15:59.0542 3040 [ 594B8AA82B9F68734966E2849F433AA6 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f5790625975320b1ffad63b476da9132\Microsoft.PowerShell.Commands.Management.ni.dll

19:15:59.0542 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f5790625975320b1ffad63b476da9132\Microsoft.PowerShell.Commands.Management.ni.dll - ok

19:15:59.0547 3040 [ 414B41DED06EB3DB13061EAFB2F0F766 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fb0d102ca78bd05fe7064b9e6be30fc7\Microsoft.PowerShell.ConsoleHost.ni.dll

19:15:59.0547 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fb0d102ca78bd05fe7064b9e6be30fc7\Microsoft.PowerShell.ConsoleHost.ni.dll - ok

19:15:59.0551 3040 [ 5E32823091575D51FBF69CD4E53F8C5C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\28ba52bc122353647f1b547506e2df7c\Microsoft.Transactions.Bridge.ni.dll

19:15:59.0551 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\28ba52bc122353647f1b547506e2df7c\Microsoft.Transactions.Bridge.ni.dll - ok

19:15:59.0555 3040 [ 05AB3217F27B6535BCAF6ED3FA6B8D02 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\c56d6513e4b239b1b1dbe29b0588321a\Microsoft.Transactions.Bridge.Dtc.ni.dll

19:15:59.0555 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\c56d6513e4b239b1b1dbe29b0588321a\Microsoft.Transactions.Bridge.Dtc.ni.dll - ok

19:15:59.0559 3040 [ 57B786CD9FD32B4D7B3EBEAFD9196DD8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\1586ee919f86130df9771cf9b8d95d3a\Microsoft.VisualBasic.ni.dll

19:15:59.0559 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\1586ee919f86130df9771cf9b8d95d3a\Microsoft.VisualBasic.ni.dll - ok

19:15:59.0564 3040 [ 76F7BE7454C1066A0D91207448FD325D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\70b3f55017e9ddb67ce0f3c983eb6f37\Microsoft.VisualBasic.ni.dll

19:15:59.0564 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\70b3f55017e9ddb67ce0f3c983eb6f37\Microsoft.VisualBasic.ni.dll - ok

19:15:59.0567 3040 [ 7E5EEECD068A1508C3CE5D83BF5C50E0 ] C:\Windows\SysWOW64\dskquota.dll

19:15:59.0567 3040 C:\Windows\SysWOW64\dskquota.dll - ok

19:15:59.0572 3040 [ CE6536A29FA792919D490E0D6EB43B3C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\3c3a6cce983114e7406e0a6e6116ecd8\Microsoft.VisualC.ni.dll

19:15:59.0572 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\3c3a6cce983114e7406e0a6e6116ecd8\Microsoft.VisualC.ni.dll - ok

19:15:59.0577 3040 [ 7C8F7D09E3DA6AC4C0F29315C6670DAB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\83222514e209f186ad3a1c3794168bfd\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll

19:15:59.0577 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\83222514e209f186ad3a1c3794168bfd\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll - ok

19:15:59.0581 3040 [ F1387F5674697F2D8EB6DE2266477860 ] C:\Windows\System32\dskquota.dll

19:15:59.0581 3040 C:\Windows\System32\dskquota.dll - ok

19:15:59.0587 3040 [ 2A0E793168F6EB546D928479FB686B25 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\d6578432220dbabf2b15027681327bf8\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll

19:15:59.0587 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\d6578432220dbabf2b15027681327bf8\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll - ok

19:15:59.0591 3040 [ 36D04D52D73BADC30692FF97B72779CC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\9d57c4bbbc0b3243046fc7839da71b00\Microsoft.WSMan.Runtime.ni.dll

19:15:59.0592 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\9d57c4bbbc0b3243046fc7839da71b00\Microsoft.WSMan.Runtime.ni.dll - ok

19:15:59.0597 3040 [ EA041272A5F3A65A22AF1AEA582A4E3F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\61812970c4743b686a67f28687e1dcb6\MIGUIControls.ni.dll

19:15:59.0597 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\61812970c4743b686a67f28687e1dcb6\MIGUIControls.ni.dll - ok

19:15:59.0601 3040 [ AA0C18E1E840CB35D109BDFC6726E5B4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\051b72a48f2c3f7ddd7353c7d5479b10\MMCEx.ni.dll

19:15:59.0601 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\051b72a48f2c3f7ddd7353c7d5479b10\MMCEx.ni.dll - ok

19:15:59.0605 3040 [ E94A54D1FD3DB4DBB67B63B6F38147E4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\df2557ab1b8e4389d846e13dc82eba57\MMCEx.ni.dll

19:15:59.0605 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\df2557ab1b8e4389d846e13dc82eba57\MMCEx.ni.dll - ok

19:15:59.0611 3040 [ E5EF6A5B5002A01122CA33352009D8AD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\67240ddde494b9cc05cd732ccd099668\MMCFxCommon.ni.dll

19:15:59.0611 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\67240ddde494b9cc05cd732ccd099668\MMCFxCommon.ni.dll - ok

19:15:59.0615 3040 [ 617015378A6342D9DC6298AD506A1EC0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\926d20041c179cebc6f4398155b1b2c4\MMCFxCommon.ni.dll

19:15:59.0615 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\926d20041c179cebc6f4398155b1b2c4\MMCFxCommon.ni.dll - ok

19:15:59.0619 3040 [ 0159D7FB48BB560268391971ED0194D6 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napcrypt\5346ceca518baf5e5fa3fed9f900f792\napcrypt.ni.dll

19:15:59.0619 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\napcrypt\5346ceca518baf5e5fa3fed9f900f792\napcrypt.ni.dll - ok

19:15:59.0624 3040 [ 7E39F3DCDAE3835BDBC5907119427509 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\2f1bad2fb963482a02443d5e7fece2b6\napsnap.ni.dll

19:15:59.0624 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\2f1bad2fb963482a02443d5e7fece2b6\napsnap.ni.dll - ok

19:15:59.0629 3040 [ 621F38F747D9A458F49BE369696BF904 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\bc8a2d99d8ebd29f94905072ccf4b3b8\napsnap.ni.dll

19:15:59.0630 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\bc8a2d99d8ebd29f94905072ccf4b3b8\napsnap.ni.dll - ok

19:15:59.0634 3040 [ 2D3138A94614C394C6A3BBCA9F1C0057 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Narrator\d0c041e321cf4d752d5113a0cdbccbaa\Narrator.ni.exe

19:15:59.0634 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\Narrator\d0c041e321cf4d752d5113a0cdbccbaa\Narrator.ni.exe - ok

19:15:59.0639 3040 [ ADFA58124FF4547814FC89B0BF91DC65 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\4fbff79b8ebf082d08c0080923ff5036\PresentationBuildTasks.ni.dll

19:15:59.0639 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\4fbff79b8ebf082d08c0080923ff5036\PresentationBuildTasks.ni.dll - ok

19:15:59.0644 3040 [ 0D3890DE590E8126B0E1EB7AC5889D7A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\1a359e9b908a2565c546a8ca04b241c2\PresentationCFFRasterizer.ni.dll

19:15:59.0644 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\1a359e9b908a2565c546a8ca04b241c2\PresentationCFFRasterizer.ni.dll - ok

19:15:59.0649 3040 [ 77D23D333BF27515EA51A23E96A63D6C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\47054c4d5b7e522c21a9d57797410302\PresentationFramework.ni.dll

19:15:59.0649 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\47054c4d5b7e522c21a9d57797410302\PresentationFramework.ni.dll - ok

19:15:59.0654 3040 [ 392C629FD8BF704115D1D4D0781CB71A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\89de197bdde5984658045ade41c2c9b9\PresentationFramework.Classic.ni.dll

19:15:59.0654 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\89de197bdde5984658045ade41c2c9b9\PresentationFramework.Classic.ni.dll - ok

19:15:59.0657 3040 [ 54DAF1C69DE1A5E2A6A9D6B43CCAEB68 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\9aa6320f06da2553fb04e78722c739c8\PresentationFramework.ni.dll

19:15:59.0657 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\9aa6320f06da2553fb04e78722c739c8\PresentationFramework.ni.dll - ok

19:15:59.0663 3040 [ F5FE6DC4703544B53630C716E9F2EFEF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\b91c32fab08ba62d8c7681cc596895be\PresentationUI.ni.dll

19:15:59.0663 3040 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\b91c32fab08ba62d8c7681cc596895be\PresentationUI.ni.dll - ok

19:15:59.0667 3040 [ 8B57A1AD493653BB57F281FE75DD175B ] C:\Windows\SysWOW64\NaturalLanguage6.dll

19:15:59.0667 3040 C:\Windows\SysWOW64\NaturalLanguage6.dll - ok

19:15:59.0671 3040 [ 01E2855FB06C422E721D890AF201C2D7 ] C:\Windows\System32\NaturalLanguage6.dll

19:15:59.0671 3040 C:\Windows\System32\NaturalLanguage6.dll - ok

19:15:59.0675 3040 [ 2992932C1AB1D29A1A4A9E8CB8530CBF ] C:\Windows\SysWOW64\NlsData0009.dll

19:15:59.0675 3040 C:\Windows\SysWOW64\NlsData0009.dll - ok

19:15:59.0679 3040 [ 701D9F5F3F21580936638D5C5F86B460 ] C:\Windows\System32\NlsData0009.dll

19:15:59.0679 3040 C:\Windows\System32\NlsData0009.dll - ok

19:15:59.0684 3040 [ C8CB301BF896C7C556BBE963FADF5BB6 ] C:\Windows\SysWOW64\NlsLexicons0009.dll

19:15:59.0684 3040 C:\Windows\SysWOW64\NlsLexicons0009.dll - ok

19:15:59.0688 3040 [ 148A733B93A2AC104280495DA09D3CC2 ] C:\Windows\System32\NlsLexicons0009.dll

19:15:59.0688 3040 C:\Windows\System32\NlsLexicons0009.dll - ok

19:15:59.0692 3040 [ 8444A7364D6877922049E99BF4B78C5C ] C:\Windows\SysWOW64\ELSCore.dll

19:15:59.0692 3040 C:\Windows\SysWOW64\ELSCore.dll - ok

19:15:59.0699 3040 [ 76D86E65FF7D10292886A1F2DB93A911 ] C:\Windows\System32\ELSCore.dll

19:15:59.0699 3040 C:\Windows\System32\ELSCore.dll - ok

19:15:59.0702 3040 [ 7B3FD36359DE5D2EE49D213CCAD13427 ] C:\Windows\SysWOW64\elsTrans.dll

19:15:59.0702 3040 C:\Windows\SysWOW64\elsTrans.dll - ok

19:15:59.0706 3040 [ 12929BDE96189F4E968AD035573424F0 ] C:\Windows\System32\elsTrans.dll

19:15:59.0706 3040 C:\Windows\System32\elsTrans.dll - ok

19:15:59.0710 3040 [ 02A2ED8497F437EA200DF3ACED255AFE ] C:\Windows\SysWOW64\elslad.dll

19:15:59.0710 3040 C:\Windows\SysWOW64\elslad.dll - ok

19:15:59.0714 3040 [ AEE087CF7423BA44CC2DE03CC565E399 ] C:\Windows\System32\elslad.dll

19:15:59.0714 3040 C:\Windows\System32\elslad.dll - ok

19:15:59.0718 3040 [ 52799EAD792B0E9AE7FD4BA5BD18FE5C ] C:\Windows\SysWOW64\wbem\WMIADAP.exe

19:15:59.0718 3040 C:\Windows\SysWOW64\wbem\WMIADAP.exe - ok

19:15:59.0722 3040 [ 005247E3057BC5D5C3F8C6F886FFC10C ] C:\Windows\System32\wbem\WMIADAP.exe

19:15:59.0722 3040 C:\Windows\System32\wbem\WMIADAP.exe - ok

19:15:59.0726 3040 [ 529879612A7FAE235914E3AA6A9A669C ] C:\Windows\SysWOW64\loadperf.dll

19:15:59.0726 3040 C:\Windows\SysWOW64\loadperf.dll - ok

19:15:59.0730 3040 [ 9FE3ED67345F0FF829A4A53B90E09672 ] C:\Windows\System32\loadperf.dll

19:15:59.0730 3040 C:\Windows\System32\loadperf.dll - ok

19:15:59.0732 3040 [ ECDB182F885292145826C58252B53000 ] C:\Windows\SysWOW64\svchost.exe

19:15:59.0732 3040 C:\Windows\SysWOW64\svchost.exe - ok

19:15:59.0736 3040 [ FBC18BEE67E9179F02E7894EB548F18D ] C:\Windows\SysWOW64\en-US\svchost.exe.mui

19:15:59.0736 3040 C:\Windows\SysWOW64\en-US\svchost.exe.mui - ok

19:15:59.0740 3040 [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll

19:15:59.0740 3040 C:\Windows\SysWOW64\atl.dll - ok

19:15:59.0745 3040 [ D205C24A9D069049FE2DF2A1B38726A7 ] C:\Windows\SysWOW64\wdmaud.drv

19:15:59.0745 3040 C:\Windows\SysWOW64\wdmaud.drv - ok

19:15:59.0748 3040 [ 9C67F6BBDA3881CFD02095160CF91576 ] C:\Windows\SysWOW64\ksuser.dll

19:15:59.0748 3040 C:\Windows\SysWOW64\ksuser.dll - ok

19:15:59.0751 3040 ============================================================

19:15:59.0751 3040 Scan finished

19:15:59.0751 3040 ============================================================

19:15:59.0758 3640 Detected object count: 0

19:15:59.0758 3640 Actual detected object count: 0

Link to post
Share on other sites

# AdwCleaner v2.000 - Logfile created 09/09/2012 at 19:01:37

# Updated 30/08/2012 by Xplode

# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)

# User : Sammerz93 - SAMMERZ93-PC

# Boot Mode : Normal

# Running from : C:\Users\Sammerz93\Downloads\adwcleaner.exe

# Option [Delete]

***** [services] *****

***** [Files / Folders] *****

File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll

File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.xpt

File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll

File Deleted : C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.xpt

File Deleted : C:\Users\Sammerz93\AppData\Local\funmoods-speeddial.crx

Folder Deleted : C:\Program Files (x86)\Common Files\Software Update Utility

Folder Deleted : C:\Program Files (x86)\Conduit

Folder Deleted : C:\Program Files (x86)\Yontoo

Folder Deleted : C:\ProgramData\Tarma Installer

Folder Deleted : C:\Users\SAMMER~1\AppData\Local\Temp\boost_interprocess

Folder Deleted : C:\Users\SAMMER~1\AppData\Local\Temp\CT2504091

Folder Deleted : C:\Users\SAMMER~1\AppData\Local\Temp\CT3072253

Folder Deleted : C:\Users\Sammerz93\AppData\Local\Conduit

Folder Deleted : C:\Users\Sammerz93\AppData\LocalLow\Conduit

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\ConduitCommon

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\CT2504091

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\CT3072253

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\extensions\plugin@yontoo.com

Folder Deleted : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\Smartbar

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Conduit

Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar

Key Deleted : HKCU\Software\Conduit

Key Deleted : HKCU\Software\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Deleted : HKCU\Software\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKCU\Software\Softonic

Key Deleted : HKCU\Software\SweetIm

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6C259840-5BA8-46E6-8ED1-EF3BA47D8BA1}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B27D9527-3762-4D71-963D-FB7A94FDD678}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}

Key Deleted : HKLM\SOFTWARE\Classes\AppID\dnu.EXE

Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL

Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL

Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL

Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL

Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL

Key Deleted : HKLM\SOFTWARE\Classes\dnUpdate

Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser

Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUIBrowser.1

Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController

Key Deleted : HKLM\SOFTWARE\Classes\dnUpdater.DownloadUpdController.1

Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2504091

Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3072253

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{92380354-381A-471F-BE2E-DD9ACD9777EA}

Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers

Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1

Key Deleted : HKLM\Software\Conduit

Key Deleted : HKLM\Software\Iminent

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\Software\SweetIm

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7B089B94-D1DC-4C6B-87E1-8156E22C1D96}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E15A9BFD-D16D-496D-8222-44CADF316E70}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\facemoods

Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdUtility

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{660E6F4F-840D-436D-B668-433D9591BAC5}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7435878-65B9-44D1-A443-81754E5DFC90}

Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}

Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\facemoods

Key Deleted : HKLM\SOFTWARE\Software

Key Deleted : HKLM\SOFTWARE\Tarma Installer

***** [internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

Restored : [HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKCU\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Restored : [HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180 --> hxxp://www.google.com

-\\ Mozilla Firefox v13.0.1 (en-US)

Profile name : default

File : C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\prefs.js

C:\Users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\user.js ... Deleted !

Deleted : user_pref("CT2504091.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");

Deleted : user_pref("CT2504091.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]

Deleted : user_pref("CT2504091.FirstTime", "true");

Deleted : user_pref("CT2504091.FirstTimeFF3", "true");

Deleted : user_pref("CT2504091.UserID", "UN69545093034620614");

Deleted : user_pref("CT2504091.addressBarTakeOverEnabledInHidden", "true");

Deleted : user_pref("CT2504091.autoDisableScopes", 14);

Deleted : user_pref("CT2504091.cbcountry_001", "US");

Deleted : user_pref("CT2504091.cbfirsttime", "Thu Aug 09 2012 00:39:06 GMT-0500 (Central Daylight Time)");

Deleted : user_pref("CT2504091.defaultSearch", "false");

Deleted : user_pref("CT2504091.embeddedsData", "[{\"appId\":\"129079840422026594\",\"apiPermissions\":{\"cross[...]

Deleted : user_pref("CT2504091.enableAlerts", "false");

Deleted : user_pref("CT2504091.enableSearchFromAddressBar", "true");

Deleted : user_pref("CT2504091.firstTimeDialogOpened", "true");

Deleted : user_pref("CT2504091.fixPageNotFoundError", "true");

Deleted : user_pref("CT2504091.fixPageNotFoundErrorInHidden", "true");

Deleted : user_pref("CT2504091.fixUrls", true);

Deleted : user_pref("CT2504091.installId", "ConduitNSISIntegration");

Deleted : user_pref("CT2504091.installType", "ConduitNSISIntegration");

Deleted : user_pref("CT2504091.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");

Deleted : user_pref("CT2504091.isNewTabEnabled", true);

Deleted : user_pref("CT2504091.isPerformedSmartBarTransition", "true");

Deleted : user_pref("CT2504091.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");

Deleted : user_pref("CT2504091.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about[...]

Deleted : user_pref("CT2504091.openThankYouPage", "false");

Deleted : user_pref("CT2504091.openUninstallPage", "false");

Deleted : user_pref("CT2504091.search.searchAppId", "129079840422026594");

Deleted : user_pref("CT2504091.search.searchCount", "0");

Deleted : user_pref("CT2504091.searchInNewTabEnabledInHidden", "true");

Deleted : user_pref("CT2504091.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}");

Deleted : user_pref("CT2504091.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");

Deleted : user_pref("CT2504091.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]

Deleted : user_pref("CT2504091.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\[...]

Deleted : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]

Deleted : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]

Deleted : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]

Deleted : user_pref("CT2504091.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]

Deleted : user_pref("CT2504091.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data[...]

Deleted : user_pref("CT2504091.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1344490743499");

Deleted : user_pref("CT2504091.serviceLayer_services_appTracking_lastUpdate", "1344490745667");

Deleted : user_pref("CT2504091.serviceLayer_services_appsMetadata_lastUpdate", "1344490743299");

Deleted : user_pref("CT2504091.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1344490745377");

Deleted : user_pref("CT2504091.serviceLayer_services_login_10.10.20.14_lastUpdate", "1344490744426");

Deleted : user_pref("CT2504091.serviceLayer_services_optimizer_lastUpdate", "1344490744120");

Deleted : user_pref("CT2504091.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1344490746879");

Deleted : user_pref("CT2504091.serviceLayer_services_searchAPI_lastUpdate", "1344490743139");

Deleted : user_pref("CT2504091.serviceLayer_services_serviceMap_lastUpdate", "1344490742822");

Deleted : user_pref("CT2504091.serviceLayer_services_toolbarContextMenu_lastUpdate", "1344490744325");

Deleted : user_pref("CT2504091.serviceLayer_services_toolbarSettings_lastUpdate", "1344490742966");

Deleted : user_pref("CT2504091.serviceLayer_services_translation_lastUpdate", "1344490743307");

Deleted : user_pref("CT2504091.settingsINI", true);

Deleted : user_pref("CT2504091.shouldFirstTimeDialog", "false");

Deleted : user_pref("CT2504091.smartbar.CTID", "CT2504091");

Deleted : user_pref("CT2504091.smartbar.Uninstall", "0");

Deleted : user_pref("CT2504091.smartbar.toolbarName", "Vuze Remote ");

Deleted : user_pref("CT2504091.startPage", "false");

Deleted : user_pref("CT2504091.toolbarBornServerTime", "9-8-2012");

Deleted : user_pref("CT2504091.toolbarCurrentServerTime", "9-8-2012");

Deleted : user_pref("CT2504091.toolbarDisabled", "true");

Deleted : user_pref("CT3072253..clientLogIsEnabled", false);

Deleted : user_pref("CT3072253..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]

Deleted : user_pref("CT3072253..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]

Deleted : user_pref("CT3072253.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);

Deleted : user_pref("CT3072253.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");

Deleted : user_pref("CT3072253.BrowserCompStateIsOpen_129573915102477663", true);

Deleted : user_pref("CT3072253.BrowserCompStateIsOpen_129749445881800338", true);

Deleted : user_pref("CT3072253.BrowserCompStateIsOpen_129805375651312503", true);

Deleted : user_pref("CT3072253.CTID", "CT3072253");

Deleted : user_pref("CT3072253.CurrentServerDate", "7-9-2012");

Deleted : user_pref("CT3072253.DSInstall", false);

Deleted : user_pref("CT3072253.DialogsAlignMode", "LTR");

Deleted : user_pref("CT3072253.DialogsGetterLastCheckTime", "Tue Sep 04 2012 18:18:19 GMT-0500 (Central Daylig[...]

Deleted : user_pref("CT3072253.DownloadReferralCookieData", "");

Deleted : user_pref("CT3072253.FirstServerDate", "26-6-2012");

Deleted : user_pref("CT3072253.FirstTime", true);

Deleted : user_pref("CT3072253.FirstTimeFF3", true);

Deleted : user_pref("CT3072253.FirstTimeHiddenVer", true);

Deleted : user_pref("CT3072253.FixPageNotFoundErrors", true);

Deleted : user_pref("CT3072253.GroupingServerCheckInterval", 1440);

Deleted : user_pref("CT3072253.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");

Deleted : user_pref("CT3072253.HPInstall", false);

Deleted : user_pref("CT3072253.HasUserGlobalKeys", true);

Deleted : user_pref("CT3072253.HomePageProtectorEnabled", false);

Deleted : user_pref("CT3072253.HomepageBeforeUnload", "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutA[...]

Deleted : user_pref("CT3072253.Initialize", true);

Deleted : user_pref("CT3072253.InitializeCommonPrefs", true);

Deleted : user_pref("CT3072253.InstallationAndCookieDataSentCount", 3);

Deleted : user_pref("CT3072253.InstallationId", "fft4E66.tmp.exe");

Deleted : user_pref("CT3072253.InstallationType", "XPE");

Deleted : user_pref("CT3072253.InstalledDate", "Mon Jun 25 2012 20:07:13 GMT-0500 (Central Daylight Time)");

Deleted : user_pref("CT3072253.IsAlertDBUpdated", true);

Deleted : user_pref("CT3072253.IsGrouping", false);

Deleted : user_pref("CT3072253.IsInitSetupIni", true);

Deleted : user_pref("CT3072253.IsMulticommunity", false);

Deleted : user_pref("CT3072253.IsOpenThankYouPage", true);

Deleted : user_pref("CT3072253.IsOpenUninstallPage", false);

Deleted : user_pref("CT3072253.LanguagePackLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Dayligh[...]

Deleted : user_pref("CT3072253.LanguagePackReloadIntervalMM", 1440);

Deleted : user_pref("CT3072253.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]

Deleted : user_pref("CT3072253.LastLogin_3.13.0.6", "Tue Jul 17 2012 21:36:13 GMT-0500 (Central Daylight Time)[...]

Deleted : user_pref("CT3072253.LastLogin_3.14.1.0", "Wed Sep 05 2012 00:26:35 GMT-0500 (Central Daylight Time)[...]

Deleted : user_pref("CT3072253.LastLogin_3.15.1.0", "Fri Sep 07 2012 14:13:02 GMT-0500 (Central Daylight Time)[...]

Deleted : user_pref("CT3072253.LatestVersion", "3.14.1.0");

Deleted : user_pref("CT3072253.Locale", "en");

Deleted : user_pref("CT3072253.MCDetectTooltipHeight", "83");

Deleted : user_pref("CT3072253.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");

Deleted : user_pref("CT3072253.MCDetectTooltipWidth", "295");

Deleted : user_pref("CT3072253.MyStuffEnabledAtInstallation", true);

Deleted : user_pref("CT3072253.OriginalFirstVersion", "3.13.0.6");

Deleted : user_pref("CT3072253.SHRINK_TOOLBAR", 1);

Deleted : user_pref("CT3072253.SearchCaption", "uTorrentControl2 Customized Web Search");

Deleted : user_pref("CT3072253.SearchEngineBeforeUnload", "Search");

Deleted : user_pref("CT3072253.SearchFromAddressBarIsInit", true);

Deleted : user_pref("CT3072253.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT307[...]

Deleted : user_pref("CT3072253.SearchInNewTabEnabled", true);

Deleted : user_pref("CT3072253.SearchInNewTabIntervalMM", 1440);

Deleted : user_pref("CT3072253.SearchInNewTabLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Dayli[...]

Deleted : user_pref("CT3072253.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]

Deleted : user_pref("CT3072253.SearchInNewTabUserEnabled", false);

Deleted : user_pref("CT3072253.SearchProtectorEnabled", false);

Deleted : user_pref("CT3072253.SearchProtectorToolbarDisabled", false);

Deleted : user_pref("CT3072253.SendProtectorDataViaLogin", true);

Deleted : user_pref("CT3072253.ServiceMapLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central Daylight [...]

Deleted : user_pref("CT3072253.SettingsLastCheckTime", "Fri Sep 07 2012 14:12:56 GMT-0500 (Central Daylight Ti[...]

Deleted : user_pref("CT3072253.SettingsLastUpdate", "1346938891");

Deleted : user_pref("CT3072253.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT3072253&SearchSource=13");

Deleted : user_pref("CT3072253.ThirdPartyComponentsInterval", 504);

Deleted : user_pref("CT3072253.ThirdPartyComponentsLastCheck", "Wed Aug 29 2012 21:25:58 GMT-0500 (Central Day[...]

Deleted : user_pref("CT3072253.ThirdPartyComponentsLastUpdate", "1331805997");

Deleted : user_pref("CT3072253.ToolbarShrinkedFromSetup", false);

Deleted : user_pref("CT3072253.TrusteLinkUrl", "hxxp://trust.conduit.com/CT3072253");

Deleted : user_pref("CT3072253.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]

Deleted : user_pref("CT3072253.UserID", "UN71119223081873524");

Deleted : user_pref("CT3072253.ValidationData_Search", 2);

Deleted : user_pref("CT3072253.ValidationData_Toolbar", 2);

Deleted : user_pref("CT3072253.alertChannelId", "1463702");

Deleted : user_pref("CT3072253.autoDisableScopes", -1);

Deleted : user_pref("CT3072253.backendstorage.cb_experience_000", "3237");

Deleted : user_pref("CT3072253.backendstorage.cb_firstuse0100", "31");

Deleted : user_pref("CT3072253.backendstorage.cb_user_id_000", "43423232313731323735393132395F46697265666F78")[...]

Deleted : user_pref("CT3072253.backendstorage.cbcountry_001", "5553");

Deleted : user_pref("CT3072253.backendstorage.cbfirsttime", "4D6F6E204A756E20323520323031322032303A30373A31372[...]

Deleted : user_pref("CT3072253.backendstorage.url_history0001", "687474703A2F2F7777772E66616365626F6F6B2E636F6[...]

Deleted : user_pref("CT3072253.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]

Deleted : user_pref("CT3072253.globalFirstTimeInfoLastCheckTime", "Tue Aug 28 2012 14:26:30 GMT-0500 (Central [...]

Deleted : user_pref("CT3072253.homepageProtectorEnableByLogin", true);

Deleted : user_pref("CT3072253.initDone", true);

Deleted : user_pref("CT3072253.isAppTrackingManagerOn", true);

Deleted : user_pref("CT3072253.myStuffEnabled", true);

Deleted : user_pref("CT3072253.myStuffPublihserMinWidth", 400);

Deleted : user_pref("CT3072253.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]

Deleted : user_pref("CT3072253.myStuffServiceIntervalMM", 1440);

Deleted : user_pref("CT3072253.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]

Deleted : user_pref("CT3072253.navigateToUrlOnSearch", false);

Deleted : user_pref("CT3072253.oldAppsList", "129295695672325902,129571859753931591,111,129593762370823811,129[...]

Deleted : user_pref("CT3072253.revertSettingsEnabled", false);

Deleted : user_pref("CT3072253.searchProtectorDialogDelayInSec", 10);

Deleted : user_pref("CT3072253.searchProtectorEnableByLogin", true);

Deleted : user_pref("CT3072253.testingCtid", "");

Deleted : user_pref("CT3072253.toolbarAppMetaDataLastCheckTime", "Thu Sep 06 2012 23:31:44 GMT-0500 (Central D[...]

Deleted : user_pref("CT3072253.toolbarContextMenuLastCheckTime", "Wed Sep 05 2012 22:39:13 GMT-0500 (Central D[...]

Deleted : user_pref("CT3072253.usagesFlag", 2);

Deleted : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT3072253/CT3072253[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT3072253", [...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT3072253",[...]

Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"9df[...]

Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Sammerz93\\AppData\\Roaming\\Mozill[...]

Deleted : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.15.1.0");

Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.yahoo.com/search?fr=mcafee[...]

Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT3072253");

Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT3072253");

Deleted : user_pref("CommunityToolbar.ToolbarsList4", "CT3072253");

Deleted : user_pref("CommunityToolbar.globalUserId", "33581b52-83e6-4d62-98de-6e1a78cc3eb9");

Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);

Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);

Deleted : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3072253");

Deleted : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Sep 05 2012 22:39:1[...]

Deleted : user_pref("CommunityToolbar.notifications.alertEnabled", false);

Deleted : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");

Deleted : user_pref("CommunityToolbar.notifications.locale", "en");

Deleted : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);

Deleted : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Sep 06 2012 23:31:45 GMT-0500 (C[...]

Deleted : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");

Deleted : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);

Deleted : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");

Deleted : user_pref("CommunityToolbar.notifications.showTrayIcon", false);

Deleted : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);

Deleted : user_pref("CommunityToolbar.notifications.userId", "c1e8859f-bf6b-415a-bd0f-42de0de97113");

Deleted : user_pref("CommunityToolbar.originalHomepage", "hxxp://www.facebook.com/");

Deleted : user_pref("CommunityToolbar.originalSearchEngine", "Secure Search");

Deleted : user_pref("aol_toolbar.buttons.layout", "aol_mail_5496;facebook_40839;mapquest_40872;twitter_40883;w[...]

Deleted : user_pref("aol_toolbar.default.homepage.check", false);

Deleted : user_pref("aol_toolbar.default.search.check", false);

Deleted : user_pref("aol_toolbar.firsttime.showwindow", false);

Deleted : user_pref("aol_toolbar.guid", "{D14CCA73-0583-14DF-925A-B22E5E5415D7}");

Deleted : user_pref("aol_toolbar.install.distroid", "aol");

Deleted : user_pref("aol_toolbar.install.lastTbVersion", "5.74.1.8384");

Deleted : user_pref("aol_toolbar.install.lid", "hyplognew00000010");

Deleted : user_pref("aol_toolbar.install.mtmhp", "hyplogusaolp00000019");

Deleted : user_pref("aol_toolbar.install.ncid", "");

Deleted : user_pref("aol_toolbar.metrics.activestampdate", "9");

Deleted : user_pref("aol_toolbar.metrics.activestampmonth", "7");

Deleted : user_pref("aol_toolbar.metrics.activestampyear", "2012");

Deleted : user_pref("aol_toolbar.metrics.originalDate", "9");

Deleted : user_pref("aol_toolbar.metrics.originalHours", "5");

Deleted : user_pref("aol_toolbar.metrics.originalMinutes", "38");

Deleted : user_pref("aol_toolbar.metrics.originalMonth", "8");

Deleted : user_pref("aol_toolbar.metrics.originalSeconds", "50");

Deleted : user_pref("aol_toolbar.metrics.originalYear", "2012");

Deleted : user_pref("aol_toolbar.relatednews.enabled", false);

Deleted : user_pref("aol_toolbar.remote.publish.xml", "1344490730351");

Deleted : user_pref("aol_toolbar.rtw.active", false);

Deleted : user_pref("aol_toolbar.search.button", true);

Deleted : user_pref("aol_toolbar.search.cid", "09-08-2012");

Deleted : user_pref("aol_toolbar.search.instd", "20120809053553262");

Deleted : user_pref("aol_toolbar.search.oid", "09-08-2012");

Deleted : user_pref("aol_toolbar.search.placement", "right");

Deleted : user_pref("aol_toolbar.search.populateoncomplete", false);

Deleted : user_pref("aol_toolbar.search.savehistory", false);

Deleted : user_pref("aol_toolbar.search.searchtype", "web");

Deleted : user_pref("aol_toolbar.search.source", "tb50-ff-amonetizetest1");

Deleted : user_pref("aol_toolbar.skin.custom", false);

Deleted : user_pref("aol_toolbar.surf.date", "5");

Deleted : user_pref("aol_toolbar.surf.lastDate", "9");

Deleted : user_pref("aol_toolbar.surf.lastMonth", "7");

Deleted : user_pref("aol_toolbar.surf.lastYear", "2012");

Deleted : user_pref("aol_toolbar.surf.month", "5");

Deleted : user_pref("aol_toolbar.surf.prevMonth", "0");

Deleted : user_pref("aol_toolbar.surf.total", "5");

Deleted : user_pref("aol_toolbar.surf.week", "5");

Deleted : user_pref("aol_toolbar.surf.year", "5");

Deleted : user_pref("aol_toolbar.ticker.active", false);

Deleted : user_pref("aol_toolbar.upgrade.showwindow", false);

Deleted : user_pref("aol_toolbar.weather.degc", "24");

Deleted : user_pref("aol_toolbar.weather.degf", "76");

Deleted : user_pref("aol_toolbar.weather.image", "chrome://aoltoolbar/skin/weather/29_n.png");

Deleted : user_pref("aol_toolbar.weather.metric", true);

Deleted : user_pref("aol_toolbar.weather.tooltip", "New York , NY : Partly Cloudy");

Deleted : user_pref("aol_toolbar.weather.update", "1344490730485");

Deleted : user_pref("aol_toolbar.weather.zipcode", "10065");

Deleted : user_pref("extensions.funmoods.aflt", "nv1");

Deleted : user_pref("extensions.funmoods.autoRvrt", false);

Deleted : user_pref("extensions.funmoods.cntry", "US");

Deleted : user_pref("extensions.funmoods.dfltLng", "");

Deleted : user_pref("extensions.funmoods.dfltSrch", true);

Deleted : user_pref("extensions.funmoods.dnsErr", true);

Deleted : user_pref("extensions.funmoods.envrmnt", "production");

Deleted : user_pref("extensions.funmoods.excTlbr", false);

Deleted : user_pref("extensions.funmoods.hdrMd5", "14AF370693B1D9267471EB44E3E9420B");

Deleted : user_pref("extensions.funmoods.hmpg", true);

Deleted : user_pref("extensions.funmoods.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2[...]

Deleted : user_pref("extensions.funmoods.id", "c881a29c00000000000000266cea83ba");

Deleted : user_pref("extensions.funmoods.instlDay", "15520");

Deleted : user_pref("extensions.funmoods.instlRef", "nv1");

Deleted : user_pref("extensions.funmoods.isdcmntcmplt", true);

Deleted : user_pref("extensions.funmoods.lastVrsnTs", "1.5.23.2221:45:6");

Deleted : user_pref("extensions.funmoods.mntrvrsn", "1.3.0");

Deleted : user_pref("extensions.funmoods.newTab", true);

Deleted : user_pref("extensions.funmoods.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=nv1&chnl=nv1&cd=2XzutAt[...]

Deleted : user_pref("extensions.funmoods.prdct", "funmoods");

Deleted : user_pref("extensions.funmoods.prtnrId", "funmoods");

Deleted : user_pref("extensions.funmoods.sg", "none");

Deleted : user_pref("extensions.funmoods.smplGrp", "none");

Deleted : user_pref("extensions.funmoods.srchPrvdr", "Search");

Deleted : user_pref("extensions.funmoods.tlbrId", "base");

Deleted : user_pref("extensions.funmoods.tlbrSrchUrl", "");

Deleted : user_pref("extensions.funmoods.vrsn", "1.5.23.22");

Deleted : user_pref("extensions.funmoods.vrsnTs", "1.5.23.2221:45:6");

Deleted : user_pref("extensions.funmoods.vrsni", "1.5.23.22");

Deleted : user_pref("extensions.funmoods_i.newTab", true);

Deleted : user_pref("extensions.funmoods_i.smplGrp", "none");

Deleted : user_pref("extensions.funmoods_i.vrsnTs", "1.5.23.2221:45:6");

Deleted : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3072253&SearchSource=2&q=[...]

-\\ Google Chrome v [unable to get version]

File : C:\Users\Sammerz93\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.3] : homepage = "hxxp://start.funmoods.com/?f=1&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180",

Deleted [l.22] : search_url = "hxxp://start.funmoods.com/results.php?f=4&q={searchTerms}&a=nv1&chnl=nv1&cd=2XzutAtN2Y1L1QzutDtDtByCyC0C0E0AzztA0B0A0AtBzy0CtN0D0TzutBtDtCtBtDyCtBzy&cr=809745180",

*************************

AdwCleaner[R1].txt - [32634 octets] - [07/09/2012 14:42:25]

AdwCleaner[s2].txt - [34191 octets] - [09/09/2012 19:01:37]

########## EOF - C:\AdwCleaner[s2].txt - [34252 octets] ##########

Link to post
Share on other sites

Good! :)

Please visit this webpage for download links, and instructions for running the tool:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

* Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Please post the C:\ComboFix.txt in your next reply for further review.

Note: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.

Link to post
Share on other sites

Awesome it worked! Here is the log:

ComboFix 12-09-10.04 - Sammerz93 09/11/2012 15:18:18.2.2 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4044.3000 [GMT -5:00]

Running from: c:\users\Sammerz93\Downloads\ComboFix.exe

SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

((((((((((((((((((((((((( Files Created from 2012-08-11 to 2012-09-11 )))))))))))))))))))))))))))))))

.

.

2012-09-11 20:23 . 2012-09-11 20:23 -------- d-----w- c:\users\Default\AppData\Local\temp

2012-09-04 21:15 . 2012-09-04 21:26 -------- d-----w- c:\users\Sammerz93\AppData\Local\Microsoft Games

2012-08-31 19:35 . 2012-08-31 19:35 -------- d-----w- c:\users\Sammerz93\AppData\Roaming\PCPro

2012-08-31 19:35 . 2012-08-31 19:35 -------- d-----w- c:\users\Sammerz93\AppData\Roaming\PC Cleaners

2012-08-31 19:35 . 2012-08-31 19:35 -------- d-----w- c:\programdata\PC1Data

2012-08-31 19:35 . 2012-08-31 19:35 4269368 ----a-w- c:\windows\uninst.exe

2012-08-31 15:13 . 2012-08-31 15:13 -------- d-----w- c:\users\Sammerz93\AppData\Roaming\Malwarebytes

2012-08-31 15:13 . 2012-08-31 15:13 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

2012-08-31 15:13 . 2012-08-31 15:13 -------- d-----w- c:\programdata\Malwarebytes

2012-08-31 15:13 . 2012-07-03 18:46 24904 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-08-30 20:37 . 2012-08-30 20:37 -------- d-----w- c:\program files (x86)\ERUNT

2012-08-30 20:27 . 2012-08-30 20:27 -------- d-----w- c:\users\Sammerz93\AppData\Local\ElevatedDiagnostics

2012-08-30 04:29 . 2012-08-30 04:29 -------- d-----w- c:\users\Sammerz93\AppData\Local\Chromium

2012-08-26 19:43 . 2012-08-29 08:02 -------- d-----w- c:\users\Sammerz93\AppData\Local\NPE

2012-08-26 19:19 . 2012-08-30 02:35 27256 ----a-w- c:\windows\system32\drivers\FixZeroAccess.sys

2012-08-21 04:15 . 2012-08-30 02:20 -------- d-----w- c:\users\Sammerz93\AppData\Roaming\Stellarium

2012-08-21 04:15 . 2012-08-30 02:20 -------- d-----w- c:\program files (x86)\Stellarium

2012-08-15 19:18 . 2012-08-15 19:18 -------- d-----w- c:\program files\STOPzilla!

.

.

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-09-11 19:24 . 2012-02-22 21:54 62134624 ----a-w- c:\windows\system32\MRT.exe

2012-08-23 20:08 . 2012-04-20 22:58 696520 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

2012-08-23 20:08 . 2011-10-31 02:34 73416 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2012-06-29 10:04 . 2012-08-07 18:03 9133488 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ADD98A8B-EA42-4692-85A8-1011C7B6343A}\mpengine.dll

.

.

((((((((((((((((((((((((((((( SnapShot@2012-09-10_22.50.25 )))))))))))))))))))))))))))))))))))))))))

.

+ 2010-11-21 03:09 . 2012-09-10 23:27 38004 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin

+ 2012-09-07 05:04 . 2012-09-11 19:26 40960 c:\windows\Installer\{90850409-6000-11D3-8CFE-0150048383C9}\wrdvicon.exe

- 2012-09-07 05:04 . 2012-09-07 05:05 40960 c:\windows\Installer\{90850409-6000-11D3-8CFE-0150048383C9}\wrdvicon.exe

+ 2012-09-11 19:26 . 2012-09-11 19:26 34632 c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe

- 2012-09-07 05:19 . 2012-09-07 05:19 34632 c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe

- 2012-09-10 22:49 . 2012-09-10 22:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

+ 2012-09-11 20:24 . 2012-09-11 20:24 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat

- 2012-09-10 22:49 . 2012-09-10 22:49 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

+ 2012-09-11 20:24 . 2012-09-11 20:24 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat

+ 2012-02-14 11:13 . 2012-09-11 13:37 248008 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin

- 2009-07-14 05:01 . 2012-09-10 22:49 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

+ 2009-07-14 05:01 . 2012-09-11 20:23 228720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat

- 2012-08-26 19:21 . 2012-09-07 06:55 345148 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1017574143-2721373642-570698491-1000-12288.dat

+ 2012-08-26 19:21 . 2012-09-11 20:15 345148 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1017574143-2721373642-570698491-1000-12288.dat

- 2012-09-07 05:04 . 2012-09-07 05:05 135168 c:\windows\Installer\{90850409-6000-11D3-8CFE-0150048383C9}\misc.exe

+ 2012-09-07 05:04 . 2012-09-11 19:26 135168 c:\windows\Installer\{90850409-6000-11D3-8CFE-0150048383C9}\misc.exe

+ 2010-08-25 22:06 . 2010-08-25 22:06 6479360 c:\windows\Installer\44b5410.msp

+ 2012-02-17 05:15 . 2012-09-11 20:23 31393852 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1017574143-2721373642-570698491-1000-8192.dat

- 2012-02-17 05:15 . 2012-09-10 22:40 31393852 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-1017574143-2721373642-570698491-1000-8192.dat

+ 2012-07-18 20:53 . 2012-07-18 20:53 10937344 c:\windows\Installer\44b5406.msp

+ 2009-08-17 21:40 . 2009-08-17 21:40 17309040 c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6514\MSO.DLL

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

.

[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D25B97E9-62B2-40CE-BECF-E43A7B879072}]

2012-01-31 20:49 272712 ----a-w- c:\program files (x86)\Price Check by AOL\aolpricecheck.dll

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2011-12-14 39408]

"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928]

"Facebook Update"="c:\users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2012-07-12 138096]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2011-07-12 1298816]

"NortonOnlineBackupReminder"="c:\program files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" [2011-06-22 3218864]

"ToshibaAppPlace"="c:\program files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe" [2010-09-23 552960]

"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-09-27 59240]

"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]

"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

"aux"=wdmaud.drv

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

.

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-03 160944]

R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-23 250568]

R3 EraserUtilDrv11210;EraserUtilDrv11210;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11210.sys [2012-07-05 138912]

R3 EraserUtilDrv11220;EraserUtilDrv11220;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys [2012-08-29 138912]

R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-02-15 138360]

R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 136176]

R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-21 113120]

R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-10 4925184]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-10-08 243712]

R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-07-12 57216]

R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2011-06-10 138152]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-02-22 1255736]

R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

S0 tos_sps64;TOSHIBA tos_sps64 Service;c:\windows\system32\DRIVERS\tos_sps64.sys [2009-06-24 482384]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]

S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]

S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-07-03 655944]

S2 PCCUJobMgr;Common Client Job Manager Service;c:\program files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe [2011-07-19 126392]

S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]

S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]

S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2009-07-07 9216]

S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2011-02-09 77424]

S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-07-03 24904]

S3 MEIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]

S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [2011-02-09 38096]

S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\DRIVERS\rtl8192Ce.sys [2011-01-05 1109096]

S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264]

S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648]

S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960]

S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376]

S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]

.

.

Contents of the 'Scheduled Tasks' folder

.

2012-09-10 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-20 20:08]

.

2012-09-10 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1017574143-2721373642-570698491-1000Core.job

- c:\users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-04-15 10:10]

.

2012-09-10 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1017574143-2721373642-570698491-1000UA.job

- c:\users\Sammerz93\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-04-15 10:10]

.

2012-09-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 23:37]

.

2012-09-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-12-14 23:37]

.

.

--------- X64 Entries -----------

.

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-08 167256]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-08 391000]

"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-08 418136]

"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-12-14 316032]

"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU]

"TPwrMain"="c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE" [bU]

"TCrdMain"="c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe" [bU]

"TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376]

"TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2011-06-10 710560]

"TosNC"="c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe" [bU]

"TosReelTimeMonitor"="c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe" [bU]

.

------- Supplementary Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page = hxxp://www.facebook.com/

mStart Page = hxxp://www.google.com

mLocal Page = c:\windows\SysWOW64\blank.htm

uInternet Settings,ProxyOverride = <local>

FF - ProfilePath - c:\users\Sammerz93\AppData\Roaming\Mozilla\Firefox\Profiles\bz1g7xf7.default\

FF - prefs.js: browser.search.selectedEngine - Google

FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/

FF - prefs.js: network.proxy.type - 0

.

- - - - ORPHANS REMOVED - - - -

.

Toolbar-Locked - (no file)

.

.

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCCUJobMgr]

"ImagePath"="\"c:\program files (x86)\Norton PC Checkup\Engine\2.0.13.11\ccSvcHst.exe\" /s \"PCCUJobMgr\" /m \"c:\program files (x86)\Norton PC Checkup\Engine\2.0.13.11\diMaster.dll\" /prefetch:1"

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_USERS\S-1-5-21-1017574143-2721373642-570698491-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*%*2*0*D*e*v*i*n*%*2*0*S*h*e*l*t*o*n*%*2*‹%>\OpenWithList]

@Class="Shell"

"a"="vlc.exe"

"MRUList"="a"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_3_300_271_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.11"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_3_300_271.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

@Denied: (A 2) (Everyone)

@="IFlashBroker4"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\DbgagD\1*]

"value"="?\08\04\09\05'\0e_"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

------------------------ Other Running Processes ------------------------

.

c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

.

**************************************************************************

.

Completion time: 2012-09-11 15:29:00 - machine was rebooted

ComboFix-quarantined-files.txt 2012-09-11 20:29

ComboFix2.txt 2012-09-10 22:54

.

Pre-Run: 115,039,744,000 bytes free

Post-Run: 114,954,145,792 bytes free

.

- - End Of File - - 8D7EE9ACE6D970AF5496458263A7D172

Link to post
Share on other sites

Good! :)

Please run a free online scan with the ESET Online Scanner

Note: You will need to use Internet Explorer for this scan

  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install
  • Click Start
  • Make sure that the options Remove found threats and the option Scan unwanted applications is checked
  • Click Scan (This scan can take several hours, so please be patient)
  • Once the scan is completed, you may close the window
  • Use Notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
  • Copy and paste that log as a reply to this topic

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.