Jump to content

Had a Hijacker here DDS log


Recommended Posts

HI guys,

Had a hijacker that was controlling my PC and chatting to me. Disabled internet connection and completed all virus and malware scans, removed everything that came up as malicious.

Just wanted to make sure it was all gone.

Would be great if you could help.

Here is my DDS and TDSSKiller Logs.

DDS (Ver_2012-11-20.01) - NTFS_AMD64

Internet Explorer: 9.0.8112.16464 BrowserJavaVersion: 10.9.2

Run by ToMiSmE at 10:39:19 on 2013-03-13

Microsoft Windows 7 Home Premium 6.1.7600.0.1252.44.1033.18.8169.5362 [GMT 0:00]

.

AV: AVG Internet Security 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: AVG Internet Security 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}

FW: AVG Internet Security 2013 *Enabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

.

============== Running Processes ===============

.

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\nvvsvc.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalService

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files (x86)\AVG\AVG2013\avgfws.exe

C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\IProsetMonitor.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\MediaMall\MediaMallServer.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Windows\SysWOW64\PnkBstrA.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe

C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe

c:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe

C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe

c:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe

C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\System32\alg.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\System32\WUDFHost.exe

C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE

C:\Program Files\Logitech\SetPointG\SetPointII.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Program Files (x86)\Java\jre7\bin\javaw.exe

C:\Program Files (x86)\AVG\AVG2013\avgui.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\Steam\steam.exe

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

C:\Windows\system32\wuauclt.exe

C:\Program Files (x86)\kuaiyong\DRM\KYDeviceServer.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\system32\taskeng.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\ToMiSmE\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL

BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

uRun: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

uRun: [XDXD] "C:\Program Files (x86)\Java\jre7\bin\javaw.exe" -jar "C:\Windows\System32\API.jar"

mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY

uPolicies-Explorer: NoDrives = dword:0

mPolicies-Explorer: NoDrives = dword:0

mPolicies-System: ConsentPromptBehaviorAdmin = dword:0

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableLUA = dword:0

mPolicies-System: EnableUIADesktopToggle = dword:0

mPolicies-System: PromptOnSecureDesktop = dword:0

IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000

IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105

IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-00109-0002-0009-ABCDEFFEDCBC} - <orphaned>

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

TCP: NameServer = 192.168.1.254

TCP: Interfaces\{3B082356-2500-4A31-9E43-4F3B8C03A91E} : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{57A73536-6099-45FE-9B18-EB5FC69F4959} : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{A591CFE6-E9AE-47B5-871C-676C4E4F4C87} : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{A591CFE6-E9AE-47B5-871C-676C4E4F4C87}\47F6D646E62656 : DHCPNameServer = 192.168.0.1

TCP: Interfaces\{D8963A8C-4211-44F1-A772-7D06F932F31B} : DHCPNameServer = 192.168.1.254

Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll

SSODL: WebCheck - <orphaned>

x64-BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL

x64-BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

x64-BHO: Hotspot Shield Class: {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - LocalServer32 - <no file="">

x64-Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming

x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

x64-Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll

x64-SSODL: WebCheck - <orphaned>

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\ToMiSmE\AppData\Roaming\Mozilla\Firefox\Profiles\lzcr2uy7.default\

FF - ExtSQL: 2013-02-10 16:42; leethax@leethax.net; C:\Users\ToMiSmE\AppData\Roaming\Mozilla\Firefox\Profiles\lzcr2uy7.default\extensions\leethax@leethax.net.xpi

.

---- FIREFOX POLICIES ----

FF - user.js: network.protocol-handler.warn-external.dnupdate - false

.

============= SERVICES / DRIVERS ===============

.

R0 AVGIDSHA;AVGIDSHA;C:\Windows\System32\drivers\avgidsha.sys [2012-10-15 63328]

R0 Avgloga;AVG Logging Driver;C:\Windows\System32\drivers\avgloga.sys [2012-9-21 225120]

R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2012-11-15 111968]

R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2012-9-14 40800]

R1 Avgfwfd;AVG network filter service;C:\Windows\System32\drivers\avgfwd6a.sys [2012-9-4 50296]

R1 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\avgidsdrivera.sys [2012-10-22 154464]

R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2012-10-2 185696]

R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2012-9-21 200032]

R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2013-1-13 283200]

R2 avgfws;AVG Firewall;C:\Program Files (x86)\AVG\AVG2013\avgfws.exe [2012-12-10 1342024]

R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]

R2 Intel® PROSet Monitoring Service;Intel® PROSet Monitoring Service;C:\Windows\System32\IPROSetMonitor.exe [2012-7-27 170824]

R2 KYDeviceServer;¿ìÓÃÉ豸·þÎñ;C:\Program Files (x86)\kuaiyong\DRM\KYDeviceServer.exe -Host --> C:\Program Files (x86)\kuaiyong\DRM\KYDeviceServer.exe -Host [?]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-3-12 398184]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-3-12 682344]

R2 MediaMall Server;MediaMall Server;C:\Program Files (x86)\MediaMall\MediaMallServer.exe [2012-10-11 3608880]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-12-29 383416]

R2 TeamViewer7;TeamViewer 7;C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-11-2 2849120]

R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2012-8-23 2148216]

R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-3-12 24176]

R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [2012-7-4 11880]

R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM);C:\Windows\System32\drivers\vcsvad.sys [2013-2-14 21504]

S2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-15 5814904]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536]

S3 BEService;BattlEye Service;C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2013-2-22 49152]

S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-12-30 102368]

S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [2012-10-27 136896]

S3 netr7364;RT73 USB Wireless LAN Card Driver for Vista;C:\Windows\System32\drivers\netr7364.sys [2009-6-10 707072]

S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]

S3 RTCore64;RTCore64;C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2012-9-17 13368]

S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-12-30 203104]

S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]

S3 taphss6;Anchorfree HSS VPN Adapter;C:\Windows\System32\drivers\taphss6.sys [2012-11-15 40712]

S3 tapoas;TAP-Win32 Adapter OAS;C:\Windows\System32\drivers\tapoas.sys [2012-7-15 30720]

S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-9-27 1255736]

.

=============== Created Last 30 ================

.

2013-03-13 10:30:03 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\Wireshark

2013-03-13 10:20:08 -------- d-----w- C:\Program Files\Wireshark

2013-03-13 10:00:11 98816 ----a-w- C:\Windows\sed.exe

2013-03-13 10:00:11 256000 ----a-w- C:\Windows\PEV.exe

2013-03-13 10:00:11 208896 ----a-w- C:\Windows\MBR.exe

2013-03-12 21:30:03 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\Malwarebytes

2013-03-12 21:29:45 24176 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-03-12 21:29:45 -------- d-----w- C:\ProgramData\Malwarebytes

2013-03-12 21:29:45 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-03-12 21:29:38 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\Programs

2013-03-12 20:37:01 -------- d-----w- C:\Windows\pss

2013-03-10 15:43:59 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\AOL

2013-03-10 15:43:58 -------- d-----w- C:\Program Files (x86)\Common Files\Software Update Utility

2013-03-07 14:43:43 35192 ----a-w- C:\Windows\System32\TURegOpt.exe

2013-03-07 14:43:41 26488 ----a-w- C:\Windows\System32\authuitu.dll

2013-03-07 14:43:41 21880 ----a-w- C:\Windows\SysWow64\authuitu.dll

2013-03-07 14:43:03 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\AVG

2013-03-07 14:42:07 -------- d-----w- C:\ProgramData\AVG

2013-03-07 14:41:35 -------- d-sh--w- C:\ProgramData\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}

2013-03-05 15:10:07 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\ElevatedDiagnostics

2013-03-04 19:22:53 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\Gyazo

2013-03-04 19:21:17 -------- d-----w- C:\Program Files (x86)\Gyazo

2013-02-28 19:55:54 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\AVG2013

2013-02-28 19:53:01 -------- d-----w- C:\ProgramData\AVG2013

2013-02-28 19:53:01 -------- d-----w- C:\$AVG

2013-02-28 19:52:21 -------- d-----w- C:\Program Files (x86)\AVG

2013-02-26 14:40:13 9162192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AB2DD1A2-FA7F-4D87-A048-D815737FF58F}\mpengine.dll

2013-02-25 23:49:07 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\Avg2013

2013-02-25 17:17:49 -------- d-----w- C:\Program Files (x86)\RegMagik

2013-02-23 19:33:56 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\ArmA 2 OA

2013-02-22 00:47:23 -------- d-----w- C:\Program Files (x86)\Common Files\BattlEye

2013-02-22 00:28:59 -------- d-----w- C:\ProgramData\Bohemia Interactive Studio

2013-02-22 00:16:38 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\ArmA 2

2013-02-22 00:07:46 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\DayZCommander

2013-02-22 00:06:50 -------- d-----w- C:\Program Files\Bohemia Interactive

2013-02-22 00:05:35 -------- d-----w- C:\Program Files (x86)\Dotjosh Studios

2013-02-21 23:38:14 -------- d-----w- C:\Program Files (x86)\Bohemia Interactive

2013-02-20 20:29:15 -------- d-----w- C:\Program Files (x86)\Cheat Engine 6.2

2013-02-19 10:22:39 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\PE Explorer

2013-02-19 10:22:35 -------- d-----w- C:\Program Files (x86)\PE Explorer

2013-02-17 16:41:39 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\Mumble

2013-02-17 16:38:32 -------- d-----w- C:\Program Files (x86)\Mumble

2013-02-17 15:43:29 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\Turbine

2013-02-17 15:43:26 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\ApplicationHistory

2013-02-17 15:01:51 -------- d-----w- C:\.soulsplit

2013-02-17 14:53:38 -------- d-----w- C:\.mpr_file_store_32

2013-02-17 12:04:53 -------- d-----w- C:\Users\ToMiSmE\.newsflash

2013-02-15 22:04:52 208448 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll

2013-02-15 18:35:07 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\minecraft

2013-02-15 08:35:57 -------- d-----w- C:\Users\ToMiSmE\Newsflash

2013-02-15 08:35:00 -------- d-----w- C:\Program Files (x86)\Newsflash

2013-02-14 21:35:35 996352 ----a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll

2013-02-14 21:35:35 768000 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll

2013-02-14 19:54:12 -------- d-----w- C:\Users\ToMiSmE\AppData\Roaming\Avnex

2013-02-14 19:53:58 21504 ----a-w- C:\Windows\System32\drivers\vcsvad.sys

2013-02-14 19:53:52 -------- d-----w- C:\Program Files (x86)\ AV Vcs 7.0 DIAMOND

2013-02-14 16:48:04 5500776 ----a-w- C:\Windows\System32\ntoskrnl.exe

2013-02-14 16:48:03 3957608 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe

2013-02-14 16:48:02 3902312 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe

2013-02-13 18:11:46 538496 ----a-w- C:\Windows\System32\PROUnstl.exe

2013-02-13 18:08:49 73032 ----a-w- C:\Windows\System32\e1cmsg.dll

2013-02-13 18:08:49 482128 ----a-w- C:\Windows\System32\drivers\e1c62x64.sys

2013-02-13 18:08:49 36472 ----a-w- C:\Windows\System32\NicCo36.dll

2013-02-13 18:08:49 101224 ----a-w- C:\Windows\System32\NicInstC.dll

2013-02-13 14:57:53 -------- d-----w- C:\Users\ToMiSmE\AppData\Local\Pentax

2013-02-13 14:57:41 -------- d-----w- C:\Program Files (x86)\PENTAX

.

==================== Find3M ====================

.

2013-03-12 21:14:34 73432 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2013-03-12 21:14:34 693976 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

2013-02-28 16:38:14 271200 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr

2013-02-28 16:38:14 271200 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe

2013-02-28 16:38:01 271200 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0

2013-01-17 01:28:58 273840 ------w- C:\Windows\System32\MpSigStub.exe

2013-01-14 10:26:43 727737 ----a-w- C:\Windows\unins000.exe

2013-01-13 11:27:55 283200 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys

2013-01-09 01:19:09 2312704 ----a-w- C:\Windows\System32\jscript9.dll

2013-01-09 01:12:03 1392128 ----a-w- C:\Windows\System32\wininet.dll

2013-01-09 01:11:06 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl

2013-01-09 01:07:51 173056 ----a-w- C:\Windows\System32\ieUnatt.exe

2013-01-09 01:07:47 599040 ----a-w- C:\Windows\System32\vbscript.dll

2013-01-09 01:04:42 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

2013-01-08 22:11:21 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll

2013-01-08 22:03:20 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll

2013-01-08 22:03:12 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2013-01-08 21:59:02 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

2013-01-08 21:58:29 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll

2013-01-08 21:56:23 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2013-01-04 19:09:12 178800 ----a-w- C:\Windows\SysWow64\CmdLineExt_x64.dll

2013-01-04 05:41:01 1893224 ----a-w- C:\Windows\System32\drivers\tcpip.sys

2013-01-04 05:40:54 287576 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS

2013-01-04 05:37:01 362496 ----a-w- C:\Windows\System32\wow64win.dll

2013-01-04 05:37:00 243200 ----a-w- C:\Windows\System32\wow64.dll

2013-01-04 05:37:00 13312 ----a-w- C:\Windows\System32\wow64cpu.dll

2013-01-04 05:36:33 215040 ----a-w- C:\Windows\System32\winsrv.dll

2013-01-04 05:33:49 16384 ----a-w- C:\Windows\System32\ntvdm64.dll

2013-01-04 05:30:34 424960 ----a-w- C:\Windows\System32\KernelBase.dll

2013-01-04 05:27:03 6144 ---ha-w- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll

2013-01-04 05:27:03 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll

2013-01-04 05:27:03 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll

2013-01-04 05:27:02 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll

2013-01-04 05:27:02 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll

2013-01-04 05:27:02 4096 ---ha-w- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll

2013-01-04 05:27:01 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll

2013-01-04 05:27:01 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll

2013-01-04 05:27:00 4608 ---ha-w- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll

2013-01-04 05:27:00 3584 ---ha-w- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll

2013-01-04 05:27:00 3072 ---ha-w- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll

2013-01-04 04:51:09 5120 ----a-w- C:\Windows\SysWow64\wow32.dll

2013-01-04 04:51:08 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll

2013-01-04 03:22:49 3150848 ----a-w- C:\Windows\System32\win32k.sys

2013-01-04 03:19:55 338432 ----a-w- C:\Windows\System32\conhost.exe

2013-01-04 02:48:37 25600 ----a-w- C:\Windows\SysWow64\setup16.exe

2013-01-04 02:48:34 7680 ----a-w- C:\Windows\SysWow64\instnm.exe

2013-01-04 02:48:34 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll

2013-01-04 02:48:33 2048 ----a-w- C:\Windows\SysWow64\user.exe

2013-01-04 02:43:35 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll

2013-01-04 02:43:34 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll

2013-01-04 02:43:34 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll

2013-01-04 02:43:34 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll

2012-12-30 20:47:01 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe

2012-12-30 20:32:59 2434856 ----a-w- C:\Windows\SysWow64\pbsvc_bc2.exe

2012-12-29 08:40:27 6382008 ----a-w- C:\Windows\System32\nvcpl.dll

2012-12-29 08:40:27 3455416 ----a-w- C:\Windows\System32\nvsvc64.dll

2012-12-29 08:40:11 2923201 ----a-w- C:\Windows\System32\nvcoproc.bin

2012-12-29 08:40:09 884152 ----a-w- C:\Windows\System32\nvvsvc.exe

2012-12-29 08:40:09 63928 ----a-w- C:\Windows\System32\nvshext.dll

2012-12-29 08:40:09 118712 ----a-w- C:\Windows\System32\nvmctray.dll

2012-12-29 02:54:24 550328 ----a-w- C:\Windows\SysWow64\nvStreaming.exe

2012-12-16 16:52:02 46080 ----a-w- C:\Windows\System32\atmlib.dll

2012-12-16 14:40:45 367616 ----a-w- C:\Windows\System32\atmfd.dll

2012-12-16 14:25:27 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll

2012-12-16 14:25:19 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll

2012-10-10 20:33:18 4096000 ----a-w- C:\Program Files (x86)\GUT50F1.tmp

.

============= FINISH: 10:39:26.59 ===============

TDSSKiller:

10:53:23.0595 0640 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

10:53:24.0113 0640 ============================================================

10:53:24.0113 0640 Current date / time: 2013/03/13 10:53:24.0113

10:53:24.0113 0640 SystemInfo:

10:53:24.0113 0640

10:53:24.0113 0640 OS Version: 6.1.7600 ServicePack: 0.0

10:53:24.0113 0640 Product type: Workstation

10:53:24.0113 0640 ComputerName: TOMISME-PC

10:53:24.0113 0640 UserName: ToMiSmE

10:53:24.0113 0640 Windows directory: C:\Windows

10:53:24.0113 0640 System windows directory: C:\Windows

10:53:24.0113 0640 Running under WOW64

10:53:24.0113 0640 Processor architecture: Intel x64

10:53:24.0113 0640 Number of processors: 4

10:53:24.0113 0640 Page size: 0x1000

10:53:24.0113 0640 Boot type: Normal boot

10:53:24.0113 0640 ============================================================

10:53:24.0960 0640 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040

10:53:24.0966 0640 Drive \Device\Harddisk1\DR1 - Size: 0x39EC00000 (14.48 Gb), SectorSize: 0x200, Cylinders: 0x762, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'

10:53:24.0978 0640 ============================================================

10:53:24.0978 0640 \Device\Harddisk0\DR0:

10:53:24.0979 0640 MBR partitions:

10:53:24.0979 0640 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000

10:53:24.0979 0640 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D7082

10:53:24.0979 0640 \Device\Harddisk1\DR1:

10:53:24.0980 0640 MBR partitions:

10:53:24.0980 0640 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x2000, BlocksNum 0x1CF4000

10:53:24.0980 0640 ============================================================

10:53:25.0009 0640 C: <-> \Device\Harddisk0\DR0\Partition2

10:53:25.0016 0640 E: <-> \Device\Harddisk0\DR0\Partition1

10:53:25.0016 0640 ============================================================

10:53:25.0016 0640 Initialize success

10:53:25.0016 0640 ============================================================

10:53:27.0889 6160 ============================================================

10:53:27.0889 6160 Scan started

10:53:27.0889 6160 Mode: Manual;

10:53:27.0889 6160 ============================================================

10:53:28.0532 6160 ================ Scan system memory ========================

10:53:28.0532 6160 System memory - ok

10:53:28.0533 6160 ================ Scan services =============================

10:53:28.0686 6160 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys

10:53:28.0689 6160 1394ohci - ok

10:53:28.0703 6160 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys

10:53:28.0706 6160 ACPI - ok

10:53:28.0716 6160 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys

10:53:28.0717 6160 AcpiPmi - ok

10:53:28.0792 6160 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

10:53:28.0793 6160 AdobeARMservice - ok

10:53:28.0888 6160 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

10:53:28.0890 6160 AdobeFlashPlayerUpdateSvc - ok

10:53:28.0924 6160 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

10:53:28.0928 6160 adp94xx - ok

10:53:28.0942 6160 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys

10:53:28.0945 6160 adpahci - ok

10:53:28.0960 6160 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

10:53:28.0962 6160 adpu320 - ok

10:53:28.0987 6160 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

10:53:28.0988 6160 AeLookupSvc - ok

10:53:29.0025 6160 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys

10:53:29.0031 6160 AFD - ok

10:53:29.0044 6160 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys

10:53:29.0044 6160 agp440 - ok

10:53:29.0053 6160 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe

10:53:29.0054 6160 ALG - ok

10:53:29.0065 6160 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys

10:53:29.0065 6160 aliide - ok

10:53:29.0070 6160 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys

10:53:29.0070 6160 amdide - ok

10:53:29.0079 6160 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

10:53:29.0080 6160 AmdK8 - ok

10:53:29.0090 6160 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

10:53:29.0091 6160 AmdPPM - ok

10:53:29.0128 6160 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys

10:53:29.0129 6160 amdsata - ok

10:53:29.0155 6160 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

10:53:29.0157 6160 amdsbs - ok

10:53:29.0173 6160 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys

10:53:29.0173 6160 amdxata - ok

10:53:29.0190 6160 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys

10:53:29.0191 6160 AppID - ok

10:53:29.0221 6160 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll

10:53:29.0222 6160 AppIDSvc - ok

10:53:29.0241 6160 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll

10:53:29.0242 6160 Appinfo - ok

10:53:29.0281 6160 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

10:53:29.0282 6160 Apple Mobile Device - ok

10:53:29.0305 6160 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys

10:53:29.0306 6160 arc - ok

10:53:29.0315 6160 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys

10:53:29.0316 6160 arcsas - ok

10:53:29.0365 6160 aspnet_state - ok

10:53:29.0378 6160 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

10:53:29.0379 6160 AsyncMac - ok

10:53:29.0387 6160 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys

10:53:29.0388 6160 atapi - ok

10:53:29.0411 6160 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

10:53:29.0418 6160 AudioEndpointBuilder - ok

10:53:29.0428 6160 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll

10:53:29.0433 6160 AudioSrv - ok

10:53:29.0449 6160 [ 3D1FFAA3358CA0D8A298DEA8BECFC468 ] Avgfwfd C:\Windows\system32\DRIVERS\avgfwd6a.sys

10:53:29.0450 6160 Avgfwfd - ok

10:53:29.0497 6160 [ D0BE22C910E46550C6308D50DDA76B94 ] avgfws C:\Program Files (x86)\AVG\AVG2013\avgfws.exe

10:53:29.0507 6160 avgfws - ok

10:53:29.0598 6160 [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe

10:53:29.0623 6160 AVGIDSAgent - ok

10:53:29.0639 6160 [ 388056EBD5FE6718FE669078DBE37897 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys

10:53:29.0640 6160 AVGIDSDriver - ok

10:53:29.0648 6160 [ 550E981747D6A6C55078C77346FFC2C6 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys

10:53:29.0649 6160 AVGIDSHA - ok

10:53:29.0667 6160 [ 5989592A91A17587799792A81E1541D4 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys

10:53:29.0668 6160 Avgldx64 - ok

10:53:29.0688 6160 [ 3FC43AA02545FCDDC22817829114DEC8 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys

10:53:29.0689 6160 Avgloga - ok

10:53:29.0709 6160 [ 841C40C193889730848849AC220D9242 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys

10:53:29.0711 6160 Avgmfx64 - ok

10:53:29.0726 6160 [ FE4F444DBE4BBBDFD8FECF49398DEFC7 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys

10:53:29.0726 6160 Avgrkx64 - ok

10:53:29.0739 6160 [ 6E634525613D48A1D1657FB21F21F3B2 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys

10:53:29.0741 6160 Avgtdia - ok

10:53:29.0748 6160 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe

10:53:29.0750 6160 avgwd - ok

10:53:29.0769 6160 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll

10:53:29.0771 6160 AxInstSV - ok

10:53:29.0793 6160 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys

10:53:29.0795 6160 b06bdrv - ok

10:53:29.0811 6160 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys

10:53:29.0812 6160 b57nd60a - ok

10:53:29.0838 6160 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll

10:53:29.0839 6160 BDESVC - ok

10:53:29.0849 6160 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys

10:53:29.0850 6160 Beep - ok

10:53:29.0893 6160 [ 06C1E887BF34C0E31EB8E2C999E4842F ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe

10:53:29.0893 6160 BEService - ok

10:53:29.0919 6160 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll

10:53:29.0926 6160 BFE - ok

10:53:29.0968 6160 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll

10:53:29.0973 6160 BITS - ok

10:53:29.0985 6160 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

10:53:29.0985 6160 blbdrive - ok

10:53:30.0037 6160 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe

10:53:30.0041 6160 Bonjour Service - ok

10:53:30.0069 6160 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys

10:53:30.0071 6160 bowser - ok

10:53:30.0081 6160 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

10:53:30.0081 6160 BrFiltLo - ok

10:53:30.0095 6160 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

10:53:30.0095 6160 BrFiltUp - ok

10:53:30.0108 6160 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys

10:53:30.0109 6160 BridgeMP - ok

10:53:30.0150 6160 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll

10:53:30.0152 6160 Browser - ok

10:53:30.0167 6160 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys

10:53:30.0170 6160 Brserid - ok

10:53:30.0178 6160 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

10:53:30.0178 6160 BrSerWdm - ok

10:53:30.0189 6160 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

10:53:30.0190 6160 BrUsbMdm - ok

10:53:30.0199 6160 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

10:53:30.0199 6160 BrUsbSer - ok

10:53:30.0242 6160 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys

10:53:30.0243 6160 BthEnum - ok

10:53:30.0261 6160 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

10:53:30.0262 6160 BTHMODEM - ok

10:53:30.0292 6160 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys

10:53:30.0292 6160 BthPan - ok

10:53:30.0331 6160 [ D59773C7FDD3D795D6FE402EEEA8D71E ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys

10:53:30.0336 6160 BTHPORT - ok

10:53:30.0343 6160 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll

10:53:30.0344 6160 bthserv - ok

10:53:30.0370 6160 [ 8504842634DD144C075B6B0C982CCEC4 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys

10:53:30.0371 6160 BTHUSB - ok

10:53:30.0386 6160 catchme - ok

10:53:30.0393 6160 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

10:53:30.0394 6160 cdfs - ok

10:53:30.0408 6160 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys

10:53:30.0410 6160 cdrom - ok

10:53:30.0441 6160 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll

10:53:30.0442 6160 CertPropSvc - ok

10:53:30.0450 6160 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys

10:53:30.0450 6160 circlass - ok

10:53:30.0463 6160 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys

10:53:30.0465 6160 CLFS - ok

10:53:30.0559 6160 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

10:53:30.0560 6160 clr_optimization_v2.0.50727_32 - ok

10:53:30.0624 6160 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe

10:53:30.0625 6160 clr_optimization_v2.0.50727_64 - ok

10:53:30.0682 6160 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

10:53:30.0683 6160 clr_optimization_v4.0.30319_32 - ok

10:53:30.0724 6160 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

10:53:30.0725 6160 clr_optimization_v4.0.30319_64 - ok

10:53:30.0742 6160 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

10:53:30.0742 6160 CmBatt - ok

10:53:30.0756 6160 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys

10:53:30.0756 6160 cmdide - ok

10:53:30.0794 6160 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys

10:53:30.0798 6160 CNG - ok

10:53:30.0814 6160 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

10:53:30.0815 6160 Compbatt - ok

10:53:30.0824 6160 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys

10:53:30.0825 6160 CompositeBus - ok

10:53:30.0828 6160 COMSysApp - ok

10:53:30.0859 6160 cpuz135 - ok

10:53:30.0881 6160 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

10:53:30.0882 6160 crcdisk - ok

10:53:30.0908 6160 [ BAF19B633933A9FB4883D27D66C39E9A ] CryptSvc C:\Windows\system32\cryptsvc.dll

10:53:30.0909 6160 CryptSvc - ok

10:53:30.0945 6160 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll

10:53:30.0951 6160 DcomLaunch - ok

10:53:30.0988 6160 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll

10:53:30.0992 6160 defragsvc - ok

10:53:31.0020 6160 [ 9C253CE7311CA60FC11C774692A13208 ] DfsC C:\Windows\system32\Drivers\dfsc.sys

10:53:31.0021 6160 DfsC - ok

10:53:31.0054 6160 [ B9430166FEB246F6070A62B3554932C9 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys

10:53:31.0055 6160 dg_ssudbus - ok

10:53:31.0081 6160 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll

10:53:31.0085 6160 Dhcp - ok

10:53:31.0095 6160 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys

10:53:31.0096 6160 discache - ok

10:53:31.0118 6160 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys

10:53:31.0120 6160 Disk - ok

10:53:31.0153 6160 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll

10:53:31.0156 6160 Dnscache - ok

10:53:31.0188 6160 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll

10:53:31.0192 6160 dot3svc - ok

10:53:31.0204 6160 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll

10:53:31.0206 6160 DPS - ok

10:53:31.0249 6160 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

10:53:31.0250 6160 drmkaud - ok

10:53:31.0266 6160 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys

10:53:31.0268 6160 dtsoftbus01 - ok

10:53:31.0306 6160 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

10:53:31.0316 6160 DXGKrnl - ok

10:53:31.0344 6160 [ 1BEF2C2E229452EC49FFE5A27283341D ] e1cexpress C:\Windows\system32\DRIVERS\e1c62x64.sys

10:53:31.0348 6160 e1cexpress - ok

10:53:31.0357 6160 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll

10:53:31.0359 6160 EapHost - ok

10:53:31.0419 6160 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys

10:53:31.0442 6160 ebdrv - ok

10:53:31.0472 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe

10:53:31.0473 6160 EFS - ok

10:53:31.0540 6160 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe

10:53:31.0543 6160 ehRecvr - ok

10:53:31.0569 6160 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe

10:53:31.0570 6160 ehSched - ok

10:53:31.0589 6160 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys

10:53:31.0591 6160 elxstor - ok

10:53:31.0600 6160 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys

10:53:31.0600 6160 ErrDev - ok

10:53:31.0632 6160 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll

10:53:31.0634 6160 EventSystem - ok

10:53:31.0648 6160 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys

10:53:31.0650 6160 exfat - ok

10:53:31.0664 6160 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys

10:53:31.0666 6160 fastfat - ok

10:53:31.0702 6160 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe

10:53:31.0706 6160 Fax - ok

10:53:31.0719 6160 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys

10:53:31.0720 6160 fdc - ok

10:53:31.0732 6160 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll

10:53:31.0732 6160 fdPHost - ok

10:53:31.0741 6160 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll

10:53:31.0742 6160 FDResPub - ok

10:53:31.0751 6160 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

10:53:31.0752 6160 FileInfo - ok

10:53:31.0758 6160 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys

10:53:31.0758 6160 Filetrace - ok

10:53:31.0760 6160 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

10:53:31.0761 6160 flpydisk - ok

10:53:31.0773 6160 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

10:53:31.0774 6160 FltMgr - ok

10:53:31.0814 6160 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll

10:53:31.0821 6160 FontCache - ok

10:53:31.0860 6160 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

10:53:31.0860 6160 FontCache3.0.0.0 - ok

10:53:31.0867 6160 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys

10:53:31.0868 6160 FsDepends - ok

10:53:31.0890 6160 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

10:53:31.0890 6160 Fs_Rec - ok

10:53:31.0955 6160 [ C5A4A998EEA6297A235169CCD1F2D93F ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe

10:53:31.0957 6160 Futuremark SystemInfo Service - ok

10:53:31.0992 6160 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys

10:53:31.0993 6160 fvevol - ok

10:53:32.0008 6160 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

10:53:32.0008 6160 gagp30kx - ok

10:53:32.0030 6160 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

10:53:32.0030 6160 GEARAspiWDM - ok

10:53:32.0064 6160 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll

10:53:32.0069 6160 gpsvc - ok

10:53:32.0121 6160 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

10:53:32.0122 6160 gupdate - ok

10:53:32.0126 6160 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

10:53:32.0127 6160 gupdatem - ok

10:53:32.0136 6160 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

10:53:32.0136 6160 hcw85cir - ok

10:53:32.0169 6160 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys

10:53:32.0172 6160 HdAudAddService - ok

10:53:32.0179 6160 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys

10:53:32.0180 6160 HDAudBus - ok

10:53:32.0183 6160 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

10:53:32.0183 6160 HidBatt - ok

10:53:32.0193 6160 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys

10:53:32.0194 6160 HidBth - ok

10:53:32.0215 6160 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys

10:53:32.0215 6160 HidIr - ok

10:53:32.0224 6160 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll

10:53:32.0225 6160 hidserv - ok

10:53:32.0241 6160 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

10:53:32.0242 6160 HidUsb - ok

10:53:32.0275 6160 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll

10:53:32.0276 6160 hkmsvc - ok

10:53:32.0287 6160 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll

10:53:32.0289 6160 HomeGroupListener - ok

10:53:32.0325 6160 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll

10:53:32.0328 6160 HomeGroupProvider - ok

10:53:32.0338 6160 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys

10:53:32.0339 6160 HpSAMD - ok

10:53:32.0360 6160 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys

10:53:32.0366 6160 HTTP - ok

10:53:32.0381 6160 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

10:53:32.0381 6160 hwpolicy - ok

10:53:32.0397 6160 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys

10:53:32.0398 6160 i8042prt - ok

10:53:32.0425 6160 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys

10:53:32.0427 6160 iaStorV - ok

10:53:32.0461 6160 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe

10:53:32.0465 6160 idsvc - ok

10:53:32.0473 6160 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys

10:53:32.0474 6160 iirsp - ok

10:53:32.0503 6160 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll

10:53:32.0509 6160 IKEEXT - ok

10:53:32.0554 6160 [ 42CEE1BA152FA267AE8587B4DE3B7B28 ] Intel® PROSet Monitoring Service C:\Windows\system32\IProsetMonitor.exe

10:53:32.0556 6160 Intel® PROSet Monitoring Service - ok

10:53:32.0560 6160 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys

10:53:32.0560 6160 intelide - ok

10:53:32.0588 6160 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys

10:53:32.0590 6160 intelppm - ok

10:53:32.0600 6160 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll

10:53:32.0602 6160 IPBusEnum - ok

10:53:32.0616 6160 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

10:53:32.0617 6160 IpFilterDriver - ok

10:53:32.0639 6160 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

10:53:32.0644 6160 iphlpsvc - ok

10:53:32.0671 6160 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys

10:53:32.0671 6160 IPMIDRV - ok

10:53:32.0680 6160 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys

10:53:32.0682 6160 IPNAT - ok

10:53:32.0712 6160 [ 6E50CFA46527B39015B750AAD161C5CC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe

10:53:32.0717 6160 iPod Service - ok

10:53:32.0720 6160 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys

10:53:32.0720 6160 IRENUM - ok

10:53:32.0731 6160 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys

10:53:32.0731 6160 isapnp - ok

10:53:32.0760 6160 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys

10:53:32.0761 6160 iScsiPrt - ok

10:53:32.0776 6160 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys

10:53:32.0777 6160 kbdclass - ok

10:53:32.0789 6160 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys

10:53:32.0790 6160 kbdhid - ok

10:53:32.0798 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe

10:53:32.0799 6160 KeyIso - ok

10:53:32.0829 6160 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

10:53:32.0831 6160 KSecDD - ok

10:53:32.0838 6160 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

10:53:32.0839 6160 KSecPkg - ok

10:53:32.0851 6160 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys

10:53:32.0852 6160 ksthunk - ok

10:53:32.0877 6160 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll

10:53:32.0881 6160 KtmRm - ok

10:53:32.0904 6160 KYDeviceServer - ok

10:53:32.0948 6160 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll

10:53:32.0953 6160 LanmanServer - ok

10:53:32.0979 6160 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

10:53:32.0983 6160 LanmanWorkstation - ok

10:53:33.0063 6160 [ 7772DFAB22611050B79504E671B06E6E ] LBTServ C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

10:53:33.0064 6160 LBTServ - ok

10:53:33.0086 6160 [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt C:\Windows\system32\DRIVERS\LHidFilt.Sys

10:53:33.0086 6160 LHidFilt - ok

10:53:33.0102 6160 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

10:53:33.0103 6160 lltdio - ok

10:53:33.0113 6160 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll

10:53:33.0116 6160 lltdsvc - ok

10:53:33.0118 6160 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll

10:53:33.0119 6160 lmhosts - ok

10:53:33.0132 6160 [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt C:\Windows\system32\DRIVERS\LMouFilt.Sys

10:53:33.0133 6160 LMouFilt - ok

10:53:33.0144 6160 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

10:53:33.0145 6160 LSI_FC - ok

10:53:33.0158 6160 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

10:53:33.0159 6160 LSI_SAS - ok

10:53:33.0171 6160 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

10:53:33.0172 6160 LSI_SAS2 - ok

10:53:33.0180 6160 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

10:53:33.0181 6160 LSI_SCSI - ok

10:53:33.0213 6160 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys

10:53:33.0214 6160 luafv - ok

10:53:33.0231 6160 [ 92EB844D90615CB266F84C3202B8786E ] MBAMProtector C:\Windows\system32\drivers\mbam.sys

10:53:33.0232 6160 MBAMProtector - ok

10:53:33.0284 6160 [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

10:53:33.0286 6160 MBAMScheduler - ok

10:53:33.0310 6160 [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

10:53:33.0313 6160 MBAMService - ok

10:53:33.0335 6160 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

10:53:33.0336 6160 Mcx2Svc - ok

10:53:33.0420 6160 [ FB8C5E481B92E7FB120C9226FB25567B ] MediaMall Server C:\Program Files (x86)\MediaMall\MediaMallServer.exe

10:53:33.0437 6160 MediaMall Server - ok

10:53:33.0451 6160 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys

10:53:33.0452 6160 megasas - ok

10:53:33.0468 6160 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

10:53:33.0469 6160 MegaSR - ok

10:53:33.0493 6160 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys

10:53:33.0494 6160 MEIx64 - ok

10:53:33.0529 6160 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll

10:53:33.0531 6160 MMCSS - ok

10:53:33.0542 6160 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys

10:53:33.0543 6160 Modem - ok

10:53:33.0553 6160 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys

10:53:33.0554 6160 monitor - ok

10:53:33.0564 6160 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys

10:53:33.0565 6160 mouclass - ok

10:53:33.0574 6160 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys

10:53:33.0574 6160 mouhid - ok

10:53:33.0583 6160 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys

10:53:33.0584 6160 mountmgr - ok

10:53:33.0613 6160 [ 51A84B690DF519DCF656F780243D953E ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

10:53:33.0614 6160 MozillaMaintenance - ok

10:53:33.0623 6160 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys

10:53:33.0624 6160 mpio - ok

10:53:33.0635 6160 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

10:53:33.0636 6160 mpsdrv - ok

10:53:33.0659 6160 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll

10:53:33.0665 6160 MpsSvc - ok

10:53:33.0679 6160 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

10:53:33.0680 6160 MRxDAV - ok

10:53:33.0709 6160 [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

10:53:33.0711 6160 mrxsmb - ok

10:53:33.0745 6160 [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

10:53:33.0748 6160 mrxsmb10 - ok

10:53:33.0773 6160 [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

10:53:33.0774 6160 mrxsmb20 - ok

10:53:33.0784 6160 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys

10:53:33.0784 6160 msahci - ok

10:53:33.0797 6160 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys

10:53:33.0797 6160 msdsm - ok

10:53:33.0813 6160 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe

10:53:33.0815 6160 MSDTC - ok

10:53:33.0824 6160 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys

10:53:33.0824 6160 Msfs - ok

10:53:33.0832 6160 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

10:53:33.0833 6160 mshidkmdf - ok

10:53:33.0843 6160 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys

10:53:33.0844 6160 msisadrv - ok

10:53:33.0878 6160 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll

10:53:33.0881 6160 MSiSCSI - ok

10:53:33.0885 6160 msiserver - ok

10:53:33.0900 6160 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

10:53:33.0901 6160 MSKSSRV - ok

10:53:33.0938 6160 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

10:53:33.0939 6160 MSPCLOCK - ok

10:53:33.0948 6160 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

10:53:33.0949 6160 MSPQM - ok

10:53:33.0961 6160 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

10:53:33.0965 6160 MsRPC - ok

10:53:33.0968 6160 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys

10:53:33.0969 6160 mssmbios - ok

10:53:33.0975 6160 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

10:53:33.0976 6160 MSTEE - ok

10:53:34.0039 6160 [ C83829C280F0207677B7AAA151EF9C4D ] msvad_simple C:\Windows\system32\drivers\povrtdev.sys

10:53:34.0039 6160 msvad_simple - ok

10:53:34.0048 6160 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

10:53:34.0048 6160 MTConfig - ok

10:53:34.0064 6160 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys

10:53:34.0065 6160 Mup - ok

10:53:34.0098 6160 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll

10:53:34.0103 6160 napagent - ok

10:53:34.0123 6160 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

10:53:34.0126 6160 NativeWifiP - ok

10:53:34.0146 6160 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys

10:53:34.0151 6160 NDIS - ok

10:53:34.0164 6160 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

10:53:34.0165 6160 NdisCap - ok

10:53:34.0171 6160 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

10:53:34.0171 6160 NdisTapi - ok

10:53:34.0182 6160 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

10:53:34.0182 6160 Ndisuio - ok

10:53:34.0189 6160 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

10:53:34.0190 6160 NdisWan - ok

10:53:34.0202 6160 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

10:53:34.0203 6160 NDProxy - ok

10:53:34.0211 6160 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

10:53:34.0211 6160 NetBIOS - ok

10:53:34.0221 6160 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys

10:53:34.0223 6160 NetBT - ok

10:53:34.0231 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe

10:53:34.0232 6160 Netlogon - ok

10:53:34.0264 6160 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll

10:53:34.0266 6160 Netman - ok

10:53:34.0302 6160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

10:53:34.0303 6160 NetMsmqActivator - ok

10:53:34.0320 6160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

10:53:34.0321 6160 NetPipeActivator - ok

10:53:34.0340 6160 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll

10:53:34.0344 6160 netprofm - ok

10:53:34.0381 6160 [ 81B8D0C1CE44A7FDBD596B693783950C ] netr7364 C:\Windows\system32\DRIVERS\netr7364.sys

10:53:34.0387 6160 netr7364 - ok

10:53:34.0391 6160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

10:53:34.0392 6160 NetTcpActivator - ok

10:53:34.0395 6160 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

10:53:34.0397 6160 NetTcpPortSharing - ok

10:53:34.0412 6160 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

10:53:34.0412 6160 nfrd960 - ok

10:53:34.0434 6160 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll

10:53:34.0437 6160 NlaSvc - ok

10:53:34.0446 6160 [ 351533ACC2A069B94E80BBFC177E8FDF ] NPF C:\Windows\system32\drivers\npf.sys

10:53:34.0447 6160 NPF - ok

10:53:34.0454 6160 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys

10:53:34.0455 6160 Npfs - ok

10:53:34.0485 6160 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll

10:53:34.0486 6160 nsi - ok

10:53:34.0488 6160 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

10:53:34.0489 6160 nsiproxy - ok

10:53:34.0534 6160 [ 184C189D4FC416978550FC599BB4EDDA ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

10:53:34.0542 6160 Ntfs - ok

10:53:34.0552 6160 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys

10:53:34.0552 6160 Null - ok

10:53:34.0588 6160 [ 1F07B814C0BB5AABA703ABFF1F31F2E8 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys

10:53:34.0589 6160 NVHDA - ok

10:53:34.0755 6160 [ 26AA3C7E6E1DB7107BF93503F6F57E88 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys

10:53:34.0793 6160 nvlddmkm - ok

10:53:34.0809 6160 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys

10:53:34.0810 6160 nvraid - ok

10:53:34.0843 6160 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys

10:53:34.0844 6160 nvstor - ok

10:53:34.0882 6160 [ A83AC04D672567CAF8BE7A4D73C0B850 ] NVSvc C:\Windows\system32\nvvsvc.exe

10:53:34.0887 6160 NVSvc - ok

10:53:34.0959 6160 [ FB660F80BDC4F13D594996976AFAECD9 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

10:53:34.0969 6160 nvUpdatusService - ok

10:53:34.0988 6160 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys

10:53:34.0989 6160 nv_agp - ok

10:53:35.0008 6160 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys

10:53:35.0009 6160 ohci1394 - ok

10:53:35.0051 6160 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

10:53:35.0052 6160 ose64 - ok

10:53:35.0157 6160 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

10:53:35.0178 6160 osppsvc - ok

10:53:35.0203 6160 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll

10:53:35.0206 6160 p2pimsvc - ok

10:53:35.0246 6160 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll

10:53:35.0251 6160 p2psvc - ok

10:53:35.0265 6160 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys

10:53:35.0265 6160 Parport - ok

10:53:35.0288 6160 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys

10:53:35.0289 6160 partmgr - ok

10:53:35.0303 6160 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll

10:53:35.0307 6160 PcaSvc - ok

10:53:35.0316 6160 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys

10:53:35.0319 6160 pci - ok

10:53:35.0327 6160 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys

10:53:35.0328 6160 pciide - ok

10:53:35.0343 6160 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

10:53:35.0345 6160 pcmcia - ok

10:53:35.0364 6160 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys

10:53:35.0365 6160 pcw - ok

10:53:35.0385 6160 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys

10:53:35.0392 6160 PEAUTH - ok

10:53:35.0465 6160 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe

10:53:35.0467 6160 PerfHost - ok

10:53:35.0503 6160 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll

10:53:35.0527 6160 pla - ok

10:53:35.0698 6160 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll

10:53:35.0704 6160 PlugPlay - ok

10:53:35.0708 6160 PnkBstrA - ok

10:53:35.0715 6160 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll

10:53:35.0717 6160 PNRPAutoReg - ok

10:53:35.0723 6160 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll

10:53:35.0727 6160 PNRPsvc - ok

10:53:35.0761 6160 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

10:53:35.0767 6160 PolicyAgent - ok

10:53:35.0792 6160 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll

10:53:35.0795 6160 Power - ok

10:53:35.0804 6160 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

10:53:35.0806 6160 PptpMiniport - ok

10:53:35.0816 6160 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys

10:53:35.0817 6160 Processor - ok

10:53:35.0849 6160 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll

10:53:35.0853 6160 ProfSvc - ok

10:53:35.0864 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe

10:53:35.0865 6160 ProtectedStorage - ok

10:53:35.0873 6160 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys

10:53:35.0875 6160 Psched - ok

10:53:35.0912 6160 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

10:53:35.0923 6160 ql2300 - ok

10:53:35.0934 6160 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

10:53:35.0936 6160 ql40xx - ok

10:53:35.0964 6160 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll

10:53:35.0968 6160 QWAVE - ok

10:53:35.0982 6160 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

10:53:35.0983 6160 QWAVEdrv - ok

10:53:35.0993 6160 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

10:53:35.0994 6160 RasAcd - ok

10:53:36.0028 6160 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

10:53:36.0029 6160 RasAgileVpn - ok

10:53:36.0040 6160 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll

10:53:36.0043 6160 RasAuto - ok

10:53:36.0055 6160 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

10:53:36.0057 6160 Rasl2tp - ok

10:53:36.0095 6160 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll

10:53:36.0100 6160 RasMan - ok

10:53:36.0114 6160 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

10:53:36.0116 6160 RasPppoe - ok

10:53:36.0128 6160 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

10:53:36.0129 6160 RasSstp - ok

10:53:36.0145 6160 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

10:53:36.0149 6160 rdbss - ok

10:53:36.0185 6160 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

10:53:36.0186 6160 rdpbus - ok

10:53:36.0205 6160 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

10:53:36.0206 6160 RDPCDD - ok

10:53:36.0216 6160 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

10:53:36.0217 6160 RDPENCDD - ok

10:53:36.0235 6160 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

10:53:36.0235 6160 RDPREFMP - ok

10:53:36.0271 6160 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

10:53:36.0274 6160 RDPWD - ok

10:53:36.0289 6160 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys

10:53:36.0291 6160 rdyboost - ok

10:53:36.0314 6160 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll

10:53:36.0316 6160 RemoteAccess - ok

10:53:36.0326 6160 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll

10:53:36.0328 6160 RemoteRegistry - ok

10:53:36.0370 6160 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys

10:53:36.0372 6160 RFCOMM - ok

10:53:36.0378 6160 RimUsb - ok

10:53:36.0416 6160 [ 4AAFFFA67AC4DFA3D9985D78573887E2 ] RimVSerPort C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys

10:53:36.0417 6160 RimVSerPort - ok

10:53:36.0428 6160 [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM C:\Windows\system32\Drivers\RootMdm.sys

10:53:36.0429 6160 ROOTMODEM - ok

10:53:36.0450 6160 [ B60F58F175DE20A6739194E85B035178 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe

10:53:36.0451 6160 rpcapd - ok

10:53:36.0466 6160 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll

10:53:36.0468 6160 RpcEptMapper - ok

10:53:36.0486 6160 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe

10:53:36.0488 6160 RpcLocator - ok

10:53:36.0513 6160 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll

10:53:36.0518 6160 RpcSs - ok

10:53:36.0546 6160 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

10:53:36.0547 6160 rspndr - ok

10:53:36.0595 6160 [ EF5BA21690C2F4BA7E62BF022B2DF1F7 ] RTCore64 C:\Program Files (x86)\MSI Afterburner\RTCore64.sys

10:53:36.0596 6160 RTCore64 - ok

10:53:36.0599 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe

10:53:36.0601 6160 SamSs - ok

10:53:36.0614 6160 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys

10:53:36.0616 6160 sbp2port - ok

10:53:36.0642 6160 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll

10:53:36.0646 6160 SCardSvr - ok

10:53:36.0681 6160 [ 3A09F31454DFEFBB124BAF378F90B636 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys

10:53:36.0682 6160 SCDEmu - ok

10:53:36.0691 6160 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys

10:53:36.0692 6160 scfilter - ok

10:53:36.0736 6160 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll

10:53:36.0746 6160 Schedule - ok

10:53:36.0775 6160 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll

10:53:36.0776 6160 SCPolicySvc - ok

10:53:36.0781 6160 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll

10:53:36.0785 6160 SDRSVC - ok

10:53:36.0814 6160 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys

10:53:36.0814 6160 secdrv - ok

10:53:36.0818 6160 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll

10:53:36.0820 6160 seclogon - ok

10:53:36.0828 6160 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll

10:53:36.0830 6160 SENS - ok

10:53:36.0834 6160 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll

10:53:36.0836 6160 SensrSvc - ok

10:53:36.0854 6160 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys

10:53:36.0855 6160 Serenum - ok

10:53:36.0875 6160 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys

10:53:36.0876 6160 Serial - ok

10:53:36.0885 6160 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys

10:53:36.0886 6160 sermouse - ok

10:53:36.0904 6160 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll

10:53:36.0907 6160 SessionEnv - ok

10:53:36.0926 6160 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys

10:53:36.0926 6160 sffdisk - ok

10:53:36.0931 6160 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys

10:53:36.0931 6160 sffp_mmc - ok

10:53:36.0940 6160 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys

10:53:36.0940 6160 sffp_sd - ok

10:53:36.0947 6160 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

10:53:36.0948 6160 sfloppy - ok

10:53:36.0977 6160 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll

10:53:36.0980 6160 SharedAccess - ok

10:53:36.0992 6160 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll

10:53:36.0996 6160 ShellHWDetection - ok

10:53:37.0011 6160 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

10:53:37.0011 6160 SiSRaid2 - ok

10:53:37.0024 6160 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

10:53:37.0025 6160 SiSRaid4 - ok

10:53:37.0039 6160 [ 8C4F0DCC6A5100D48F9B2F950CDD220F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe

10:53:37.0040 6160 SkypeUpdate - ok

10:53:37.0048 6160 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys

10:53:37.0050 6160 Smb - ok

10:53:37.0059 6160 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe

10:53:37.0061 6160 SNMPTRAP - ok

10:53:37.0064 6160 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys

10:53:37.0065 6160 spldr - ok

10:53:37.0104 6160 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe

10:53:37.0109 6160 Spooler - ok

10:53:37.0174 6160 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe

10:53:37.0233 6160 sppsvc - ok

10:53:37.0239 6160 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll

10:53:37.0240 6160 sppuinotify - ok

10:53:37.0271 6160 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys

10:53:37.0275 6160 srv - ok

10:53:37.0308 6160 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

10:53:37.0311 6160 srv2 - ok

10:53:37.0341 6160 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

10:53:37.0343 6160 srvnet - ok

10:53:37.0363 6160 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

10:53:37.0366 6160 SSDPSRV - ok

10:53:37.0376 6160 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll

10:53:37.0379 6160 SstpSvc - ok

10:53:37.0413 6160 [ C692C94FE55CAD0633440236022C27B3 ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys

10:53:37.0415 6160 ssudmdm - ok

10:53:37.0459 6160 Steam Client Service - ok

10:53:37.0495 6160 [ 00FCEC4DA4198F5F2B9BBD9225842568 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

10:53:37.0497 6160 Stereo Service - ok

10:53:37.0500 6160 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys

10:53:37.0501 6160 stexstor - ok

10:53:37.0526 6160 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll

10:53:37.0531 6160 stisvc - ok

10:53:37.0539 6160 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys

10:53:37.0539 6160 swenum - ok

10:53:37.0591 6160 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

10:53:37.0595 6160 SwitchBoard - ok

10:53:37.0613 6160 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll

10:53:37.0620 6160 swprv - ok

10:53:37.0651 6160 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll

10:53:37.0671 6160 SysMain - ok

10:53:37.0683 6160 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll

10:53:37.0685 6160 TabletInputService - ok

10:53:37.0710 6160 [ B70DF208E97536CA9F29289E609F5B16 ] taphss C:\Windows\system32\DRIVERS\taphss.sys

10:53:37.0711 6160 taphss - ok

10:53:37.0742 6160 [ 8B9FD32C71F29DF235A27CE9FF4F19DC ] taphss6 C:\Windows\system32\DRIVERS\taphss6.sys

10:53:37.0742 6160 taphss6 - ok

10:53:37.0749 6160 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll

10:53:37.0753 6160 TapiSrv - ok

10:53:37.0787 6160 [ 927D0CDB3F96EFC1E98FB1A2C9FB67AD ] tapoas C:\Windows\system32\DRIVERS\tapoas.sys

10:53:37.0788 6160 tapoas - ok

10:53:37.0819 6160 TBPanel - ok

10:53:37.0828 6160 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll

10:53:37.0831 6160 TBS - ok

10:53:37.0884 6160 [ 5CFB7AB8F9524D1A1E14369DE63B83CC ] Tcpip C:\Windows\system32\drivers\tcpip.sys

10:53:37.0898 6160 Tcpip - ok

10:53:37.0934 6160 [ 5CFB7AB8F9524D1A1E14369DE63B83CC ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

10:53:37.0947 6160 TCPIP6 - ok

10:53:37.0962 6160 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

10:53:37.0963 6160 tcpipreg - ok

10:53:37.0977 6160 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys

10:53:37.0978 6160 TDPIPE - ok

10:53:38.0011 6160 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys

10:53:38.0012 6160 TDTCP - ok

10:53:38.0029 6160 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys

10:53:38.0030 6160 tdx - ok

10:53:38.0125 6160 [ B1B546EA1D908A8F90EBEB02E5878AA0 ] TeamViewer7 C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe

10:53:38.0146 6160 TeamViewer7 - ok

10:53:38.0151 6160 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys

10:53:38.0152 6160 TermDD - ok

10:53:38.0179 6160 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll

10:53:38.0186 6160 TermService - ok

10:53:38.0196 6160 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll

10:53:38.0198 6160 Themes - ok

10:53:38.0228 6160 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll

10:53:38.0230 6160 THREADORDER - ok

10:53:38.0239 6160 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll

10:53:38.0242 6160 TrkWks - ok

10:53:38.0275 6160 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

10:53:38.0276 6160 TrustedInstaller - ok

10:53:38.0297 6160 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

10:53:38.0298 6160 tssecsrv - ok

10:53:38.0379 6160 [ DD296C78B0D2C3F5E42DC0D2972CD992 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe

10:53:38.0395 6160 TuneUp.UtilitiesSvc - ok

10:53:38.0404 6160 [ 7BC3381C0713F613B31ACDE38B71CB53 ] TuneUpUtilitiesDrv C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys

10:53:38.0404 6160 TuneUpUtilitiesDrv - ok

10:53:38.0416 6160 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

10:53:38.0417 6160 tunnel - ok

10:53:38.0444 6160 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

10:53:38.0444 6160 uagp35 - ok

10:53:38.0464 6160 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys

10:53:38.0467 6160 udfs - ok

10:53:38.0480 6160 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe

10:53:38.0482 6160 UI0Detect - ok

10:53:38.0491 6160 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys

10:53:38.0492 6160 uliagpkx - ok

10:53:38.0500 6160 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys

10:53:38.0501 6160 umbus - ok

10:53:38.0518 6160 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys

10:53:38.0518 6160 UmPass - ok

10:53:38.0526 6160 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll

10:53:38.0531 6160 upnphost - ok

10:53:38.0541 6160 [ AF1B9474D67897D0C2CFF58E0ACEACCC ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys

10:53:38.0542 6160 USBAAPL64 - ok

10:53:38.0562 6160 [ 77B01BC848298223A95D4EC23E1785A1 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys

10:53:38.0563 6160 usbaudio - ok

10:53:38.0590 6160 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

10:53:38.0592 6160 usbccgp - ok

10:53:38.0599 6160 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys

10:53:38.0600 6160 usbcir - ok

10:53:38.0613 6160 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\drivers\usbehci.sys

10:53:38.0614 6160 usbehci - ok

10:53:38.0624 6160 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys

10:53:38.0628 6160 usbhub - ok

10:53:38.0649 6160 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\drivers\usbohci.sys

10:53:38.0650 6160 usbohci - ok

10:53:38.0654 6160 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys

10:53:38.0655 6160 usbprint - ok

10:53:38.0668 6160 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

10:53:38.0669 6160 USBSTOR - ok

10:53:38.0680 6160 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\drivers\usbuhci.sys

10:53:38.0681 6160 usbuhci - ok

10:53:38.0695 6160 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll

10:53:38.0696 6160 UxSms - ok

10:53:38.0706 6160 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe

10:53:38.0706 6160 VaultSvc - ok

10:53:38.0729 6160 [ A2FE818D7F930C51ADA37C04DBCB015D ] VBoxNetAdp C:\Windows\system32\DRIVERS\VBoxNetAdp.sys

10:53:38.0730 6160 VBoxNetAdp - ok

10:53:38.0746 6160 VBoxNetFlt - ok

10:53:38.0759 6160 [ 3A4B01C2BDB07DFEF29B0B369487503A ] VCSVADHWSer C:\Windows\system32\DRIVERS\vcsvad.sys

10:53:38.0760 6160 VCSVADHWSer - ok

10:53:38.0767 6160 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys

10:53:38.0768 6160 vdrvroot - ok

10:53:38.0784 6160 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe

10:53:38.0791 6160 vds - ok

10:53:38.0805 6160 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys

10:53:38.0806 6160 vga - ok

10:53:38.0815 6160 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys

10:53:38.0816 6160 VgaSave - ok

10:53:38.0834 6160 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys

10:53:38.0836 6160 vhdmp - ok

10:53:38.0853 6160 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys

10:53:38.0853 6160 viaide - ok

10:53:38.0870 6160 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys

10:53:38.0872 6160 volmgr - ok

10:53:38.0889 6160 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

10:53:38.0892 6160 volmgrx - ok

10:53:38.0920 6160 [ 9E425AC5C9A5A973273D169F43B4F5E1 ] volsnap C:\Windows\system32\drivers\volsnap.sys

10:53:38.0922 6160 volsnap - ok

10:53:38.0939 6160 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

10:53:38.0941 6160 vsmraid - ok

10:53:38.0976 6160 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe

10:53:38.0998 6160 VSS - ok

10:53:39.0027 6160 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys

10:53:39.0028 6160 vwifibus - ok

10:53:39.0039 6160 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys

10:53:39.0040 6160 vwififlt - ok

10:53:39.0061 6160 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys

10:53:39.0062 6160 vwifimp - ok

10:53:39.0091 6160 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll

10:53:39.0096 6160 W32Time - ok

10:53:39.0101 6160 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

10:53:39.0102 6160 WacomPen - ok

10:53:39.0116 6160 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys

10:53:39.0118 6160 WANARP - ok

10:53:39.0121 6160 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

10:53:39.0122 6160 Wanarpv6 - ok

10:53:39.0175 6160 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

10:53:39.0183 6160 WatAdminSvc - ok

10:53:39.0207 6160 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe

10:53:39.0222 6160 wbengine - ok

10:53:39.0236 6160 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll

10:53:39.0238 6160 WbioSrvc - ok

10:53:39.0268 6160 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll

10:53:39.0271 6160 wcncsvc - ok

10:53:39.0284 6160 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

10:53:39.0287 6160 WcsPlugInService - ok

10:53:39.0295 6160 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys

10:53:39.0295 6160 Wd - ok

10:53:39.0327 6160 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

10:53:39.0333 6160 Wdf01000 - ok

10:53:39.0343 6160 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll

10:53:39.0346 6160 WdiServiceHost - ok

10:53:39.0349 6160 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll

10:53:39.0351 6160 WdiSystemHost - ok

10:53:39.0391 6160 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll

10:53:39.0397 6160 WebClient - ok

10:53:39.0406 6160 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll

10:53:39.0410 6160 Wecsvc - ok

10:53:39.0423 6160 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll

10:53:39.0426 6160 wercplsupport - ok

10:53:39.0436 6160 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll

10:53:39.0438 6160 WerSvc - ok

10:53:39.0446 6160 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

10:53:39.0446 6160 WfpLwf - ok

10:53:39.0449 6160 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys

10:53:39.0451 6160 WIMMount - ok

10:53:39.0475 6160 WinDefend - ok

10:53:39.0481 6160 WinHttpAutoProxySvc - ok

10:53:39.0538 6160 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

10:53:39.0542 6160 Winmgmt - ok

10:53:39.0581 6160 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll

10:53:39.0614 6160 WinRM - ok

10:53:39.0642 6160 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys

10:53:39.0643 6160 WinUsb - ok

10:53:39.0660 6160 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll

10:53:39.0667 6160 Wlansvc - ok

10:53:39.0767 6160 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc c:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

10:53:39.0783 6160 wlidsvc - ok

10:53:39.0786 6160 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys

10:53:39.0786 6160 WmiAcpi - ok

10:53:39.0818 6160 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

10:53:39.0820 6160 wmiApSrv - ok

10:53:39.0825 6160 WMPNetworkSvc - ok

10:53:39.0827 6160 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll

10:53:39.0828 6160 WPCSvc - ok

10:53:39.0840 6160 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

10:53:39.0842 6160 WPDBusEnum - ok

10:53:39.0848 6160 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

10:53:39.0848 6160 ws2ifsl - ok

10:53:39.0876 6160 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll

10:53:39.0877 6160 wscsvc - ok

10:53:39.0879 6160 WSearch - ok

10:53:39.0934 6160 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll

10:53:39.0945 6160 wuauserv - ok

10:53:39.0970 6160 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

10:53:39.0971 6160 WudfPf - ok

10:53:39.0983 6160 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

10:53:39.0985 6160 WUDFRd - ok

10:53:40.0009 6160 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

10:53:40.0011 6160 wudfsvc - ok

10:53:40.0021 6160 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll

10:53:40.0026 6160 WwanSvc - ok

10:53:40.0072 6160 [ 4A5CE13408945E525503B5F73D29B9C5 ] xnacc C:\Windows\system32\DRIVERS\xnacc.sys

10:53:40.0079 6160 xnacc - ok

10:53:40.0132 6160 ================ Scan global ===============================

10:53:40.0161 6160 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll

10:53:40.0177 6160 [ 3FB74FF230B5D240A57AE1C4A3D0459D ] C:\Windows\system32\winsrv.dll

10:53:40.0181 6160 [ 3FB74FF230B5D240A57AE1C4A3D0459D ] C:\Windows\system32\winsrv.dll

10:53:40.0185 6160 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll

10:53:40.0220 6160 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe

10:53:40.0290 6160 [Global] - ok

10:53:40.0290 6160 ================ Scan MBR ==================================

10:53:40.0319 6160 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0

10:53:40.0482 6160 \Device\Harddisk0\DR0 - ok

10:53:40.0487 6160 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1

10:53:40.0495 6160 \Device\Harddisk1\DR1 - ok

10:53:40.0496 6160 ================ Scan VBR ==================================

10:53:40.0498 6160 [ 59471F6A82FA8E05C0F08FDC0632BDF5 ] \Device\Harddisk0\DR0\Partition1

10:53:40.0499 6160 \Device\Harddisk0\DR0\Partition1 - ok

10:53:40.0506 6160 [ CD0D9107AEB8243CDAC3A88E43F2BED4 ] \Device\Harddisk0\DR0\Partition2

10:53:40.0507 6160 \Device\Harddisk0\DR0\Partition2 - ok

10:53:40.0510 6160 [ 6A498F789204A6BEF50ECDECADB20A22 ] \Device\Harddisk1\DR1\Partition1

10:53:40.0512 6160 \Device\Harddisk1\DR1\Partition1 - ok

10:53:40.0512 6160 ============================================================

10:53:40.0512 6160 Scan finished

10:53:40.0512 6160 ============================================================

10:53:40.0518 5988 Detected object count: 0

10:53:40.0519 5988 Actual detected object count: 0

Thanks in advance.</orphaned></orphaned></no></orphaned></orphaned>

attach.rar

Link to post
Share on other sites

  • Staff

Please run the following

Refer to the ComboFix User's Guide

  1. Download ComboFix from the following location:
    Link
    * IMPORTANT !!! Place ComboFix.exe on your Desktop
  2. Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with ComboFix.
    You can get help on disabling your protection programs here
  3. Double click on ComboFix.exe & follow the prompts.
  4. Your desktop may go blank. This is normal. It will return when ComboFix is done. ComboFix may reboot your machine. This is normal.
  5. When finished, it shall produce a log for you. Post that log in your next reply
    Note:
    Do not mouseclick combofix's window whilst it's running. That may cause it to stall.
    ---------------------------------------------------------------------------------------------
  6. Ensure your AntiVirus and AntiSpyware applications are re-enabled.
    ---------------------------------------------------------------------------------------------

NOTE: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.

Link to post
Share on other sites

  • 3 weeks later...
Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.