09:11:04.0453 3424 TDSS rootkit removing tool 2.7.34.0 May 2 2012 09:59:18 09:11:04.0468 3424 ============================================================ 09:11:04.0468 3424 Current date / time: 2012/05/03 09:11:04.0468 09:11:04.0468 3424 SystemInfo: 09:11:04.0468 3424 09:11:04.0468 3424 OS Version: 5.1.2600 ServicePack: 3.0 09:11:04.0468 3424 Product type: Workstation 09:11:04.0468 3424 ComputerName: ALLISON 09:11:04.0468 3424 UserName: Reginald 09:11:04.0468 3424 Windows directory: C:\WINDOWS 09:11:04.0468 3424 System windows directory: C:\WINDOWS 09:11:04.0468 3424 Processor architecture: Intel x86 09:11:04.0468 3424 Number of processors: 2 09:11:04.0468 3424 Page size: 0x1000 09:11:04.0468 3424 Boot type: Normal boot 09:11:04.0468 3424 ============================================================ 09:11:05.0515 3424 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 09:11:05.0515 3424 Drive \Device\Harddisk1\DR4 - Size: 0xEE800000 (3.73 Gb), SectorSize: 0x200, Cylinders: 0x1E6, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 09:11:05.0562 3424 ============================================================ 09:11:05.0562 3424 \Device\Harddisk0\DR0: 09:11:05.0562 3424 MBR partitions: 09:11:05.0562 3424 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x17886, BlocksNum 0x39CCEE0B 09:11:05.0562 3424 \Device\Harddisk1\DR4: 09:11:05.0562 3424 MBR partitions: 09:11:05.0562 3424 ============================================================ 09:11:05.0593 3424 C: <-> \Device\Harddisk0\DR0\Partition0 09:11:05.0593 3424 ============================================================ 09:11:05.0593 3424 Initialize success 09:11:05.0593 3424 ============================================================ 09:11:21.0500 2540 ============================================================ 09:11:21.0500 2540 Scan started 09:11:21.0500 2540 Mode: Manual; 09:11:21.0500 2540 ============================================================ 09:11:21.0828 2540 Abiosdsk - ok 09:11:21.0859 2540 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS 09:11:21.0859 2540 abp480n5 - ok 09:11:21.0890 2540 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys 09:11:21.0890 2540 ACPI - ok 09:11:21.0906 2540 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys 09:11:21.0906 2540 ACPIEC - ok 09:11:21.0968 2540 AdobeFlashPlayerUpdateSvc (0d4c486a24a711a45fd83acdf4d18506) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 09:11:21.0968 2540 AdobeFlashPlayerUpdateSvc - ok 09:11:22.0000 2540 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys 09:11:22.0000 2540 adpu160m - ok 09:11:22.0015 2540 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 09:11:22.0015 2540 aec - ok 09:11:22.0062 2540 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys 09:11:22.0062 2540 AFD - ok 09:11:22.0093 2540 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys 09:11:22.0093 2540 agp440 - ok 09:11:22.0093 2540 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys 09:11:22.0093 2540 agpCPQ - ok 09:11:22.0109 2540 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys 09:11:22.0109 2540 Aha154x - ok 09:11:22.0125 2540 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys 09:11:22.0125 2540 aic78u2 - ok 09:11:22.0140 2540 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys 09:11:22.0140 2540 aic78xx - ok 09:11:22.0156 2540 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll 09:11:22.0156 2540 Alerter - ok 09:11:22.0171 2540 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe 09:11:22.0187 2540 ALG - ok 09:11:22.0187 2540 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys 09:11:22.0187 2540 AliIde - ok 09:11:22.0203 2540 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys 09:11:22.0203 2540 alim1541 - ok 09:11:22.0218 2540 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys 09:11:22.0218 2540 amdagp - ok 09:11:22.0234 2540 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys 09:11:22.0234 2540 amsint - ok 09:11:22.0250 2540 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys 09:11:22.0250 2540 asc - ok 09:11:22.0265 2540 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys 09:11:22.0265 2540 asc3350p - ok 09:11:22.0265 2540 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys 09:11:22.0265 2540 asc3550 - ok 09:11:22.0343 2540 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 09:11:22.0343 2540 aspnet_state - ok 09:11:22.0375 2540 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 09:11:22.0375 2540 AsyncMac - ok 09:11:22.0375 2540 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 09:11:22.0375 2540 atapi - ok 09:11:22.0390 2540 Atdisk - ok 09:11:22.0406 2540 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 09:11:22.0406 2540 Atmarpc - ok 09:11:22.0421 2540 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll 09:11:22.0421 2540 AudioSrv - ok 09:11:22.0437 2540 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 09:11:22.0437 2540 audstub - ok 09:11:23.0031 2540 AVGIDSAgent (2fa777badbb92b29fbd2f3d3d382ef96) C:\Program Files\AVG\AVG2012\avgidsagent.exe 09:11:23.0046 2540 AVGIDSAgent - ok 09:11:23.0156 2540 AVGIDSDriver (1074f787080068c71303b61fae7e7ca4) C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys 09:11:23.0156 2540 AVGIDSDriver - ok 09:11:23.0156 2540 AVGIDSFilter (61a7e0b02f82cff3db2445bbe50b3589) C:\WINDOWS\system32\DRIVERS\avgidsfilterx.sys 09:11:23.0171 2540 AVGIDSFilter - ok 09:11:23.0187 2540 AVGIDSHX (d63d83659eedf60b3a3e620281a888e5) C:\WINDOWS\system32\DRIVERS\avgidshx.sys 09:11:23.0187 2540 AVGIDSHX - ok 09:11:23.0187 2540 AVGIDSShim (baf975b72062f53d327788e99d64197e) C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys 09:11:23.0203 2540 AVGIDSShim - ok 09:11:23.0218 2540 Avgldx86 (dda6a2a18841e4c9172bb85958b8d948) C:\WINDOWS\system32\DRIVERS\avgldx86.sys 09:11:23.0218 2540 Avgldx86 - ok 09:11:23.0234 2540 Avgmfx86 (ccdd61545aaea265977e4b1efdc74e8c) C:\WINDOWS\system32\DRIVERS\avgmfx86.sys 09:11:23.0234 2540 Avgmfx86 - ok 09:11:23.0250 2540 Avgrkx86 (1fd90b28d2c3100bf4500199c8ad6358) C:\WINDOWS\system32\DRIVERS\avgrkx86.sys 09:11:23.0250 2540 Avgrkx86 - ok 09:11:23.0281 2540 Avgtdix (1263f2554ace925c237a40b4c568d815) C:\WINDOWS\system32\DRIVERS\avgtdix.sys 09:11:23.0281 2540 Avgtdix - ok 09:11:23.0390 2540 avgwd (ea1145debcd508fd25bd1e95c4346929) C:\Program Files\AVG\AVG2012\avgwdsvc.exe 09:11:23.0390 2540 avgwd - ok 09:11:23.0406 2540 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 09:11:23.0406 2540 Beep - ok 09:11:23.0453 2540 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll 09:11:23.0453 2540 BITS - ok 09:11:23.0484 2540 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll 09:11:23.0484 2540 Browser - ok 09:11:23.0562 2540 catchme - ok 09:11:23.0609 2540 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys 09:11:23.0609 2540 cbidf - ok 09:11:23.0625 2540 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 09:11:23.0625 2540 cbidf2k - ok 09:11:23.0656 2540 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys 09:11:23.0656 2540 cd20xrnt - ok 09:11:23.0687 2540 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 09:11:23.0687 2540 Cdaudio - ok 09:11:23.0718 2540 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 09:11:23.0718 2540 Cdfs - ok 09:11:23.0718 2540 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 09:11:23.0718 2540 Cdrom - ok 09:11:23.0718 2540 Changer - ok 09:11:23.0734 2540 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe 09:11:23.0734 2540 CiSvc - ok 09:11:23.0750 2540 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe 09:11:23.0750 2540 ClipSrv - ok 09:11:23.0828 2540 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 09:11:23.0828 2540 clr_optimization_v2.0.50727_32 - ok 09:11:23.0843 2540 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys 09:11:23.0843 2540 CmdIde - ok 09:11:23.0843 2540 COMSysApp - ok 09:11:23.0875 2540 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys 09:11:23.0875 2540 Cpqarray - ok 09:11:23.0875 2540 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll 09:11:23.0875 2540 CryptSvc - ok 09:11:23.0906 2540 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys 09:11:23.0906 2540 dac2w2k - ok 09:11:23.0921 2540 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys 09:11:23.0921 2540 dac960nt - ok 09:11:23.0968 2540 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll 09:11:23.0968 2540 DcomLaunch - ok 09:11:23.0984 2540 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll 09:11:23.0984 2540 Dhcp - ok 09:11:23.0984 2540 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 09:11:23.0984 2540 Disk - ok 09:11:23.0984 2540 dmadmin - ok 09:11:24.0031 2540 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys 09:11:24.0046 2540 dmboot - ok 09:11:24.0062 2540 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys 09:11:24.0062 2540 dmio - ok 09:11:24.0093 2540 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 09:11:24.0093 2540 dmload - ok 09:11:24.0109 2540 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll 09:11:24.0109 2540 dmserver - ok 09:11:24.0140 2540 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 09:11:24.0140 2540 DMusic - ok 09:11:24.0156 2540 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll 09:11:24.0156 2540 Dnscache - ok 09:11:24.0171 2540 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll 09:11:24.0187 2540 Dot3svc - ok 09:11:24.0203 2540 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys 09:11:24.0203 2540 dpti2o - ok 09:11:24.0203 2540 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 09:11:24.0203 2540 drmkaud - ok 09:11:24.0218 2540 E100B (3fca03cbca11269f973b70fa483c88ef) C:\WINDOWS\system32\DRIVERS\e100b325.sys 09:11:24.0218 2540 E100B - ok 09:11:24.0250 2540 e1express (34aaa3b298a852b3663e6e0d94d12945) C:\WINDOWS\system32\DRIVERS\e1e5132.sys 09:11:24.0250 2540 e1express - ok 09:11:24.0296 2540 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll 09:11:24.0296 2540 EapHost - ok 09:11:24.0312 2540 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll 09:11:24.0312 2540 ERSvc - ok 09:11:24.0343 2540 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe 09:11:24.0343 2540 Eventlog - ok 09:11:24.0390 2540 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll 09:11:24.0390 2540 EventSystem - ok 09:11:24.0406 2540 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 09:11:24.0406 2540 Fastfat - ok 09:11:24.0453 2540 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 09:11:24.0453 2540 FastUserSwitchingCompatibility - ok 09:11:24.0468 2540 Fax (e97d6a8684466df94ff3bc24fb787a07) C:\WINDOWS\system32\fxssvc.exe 09:11:24.0468 2540 Fax - ok 09:11:24.0468 2540 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 09:11:24.0484 2540 Fdc - ok 09:11:24.0484 2540 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys 09:11:24.0484 2540 Fips - ok 09:11:24.0500 2540 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 09:11:24.0500 2540 Flpydisk - ok 09:11:24.0531 2540 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 09:11:24.0531 2540 FltMgr - ok 09:11:24.0578 2540 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 09:11:24.0578 2540 FontCache3.0.0.0 - ok 09:11:24.0609 2540 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 09:11:24.0609 2540 Fs_Rec - ok 09:11:24.0625 2540 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 09:11:24.0625 2540 Ftdisk - ok 09:11:24.0703 2540 GoogleDesktopManager-051210-111108 (9f5f2f0fb0a7f5aa9f16b9a7b6dad89f) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe 09:11:24.0703 2540 GoogleDesktopManager-051210-111108 - ok 09:11:24.0734 2540 GoToAssist (d3316f6e3c011435f36e3d6e49b3196c) C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe 09:11:24.0734 2540 GoToAssist - ok 09:11:24.0750 2540 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 09:11:24.0750 2540 Gpc - ok 09:11:24.0781 2540 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe 09:11:24.0781 2540 gupdate - ok 09:11:24.0781 2540 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe 09:11:24.0781 2540 gupdatem - ok 09:11:24.0812 2540 gusvc (408ddd80eede47175f6844817b90213e) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe 09:11:24.0812 2540 gusvc - ok 09:11:24.0828 2540 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 09:11:24.0828 2540 HDAudBus - ok 09:11:24.0843 2540 helpsvc - ok 09:11:24.0859 2540 HidServ (deb04da35cc871b6d309b77e1443c796) C:\WINDOWS\System32\hidserv.dll 09:11:24.0859 2540 HidServ - ok 09:11:24.0875 2540 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys 09:11:24.0875 2540 HidUsb - ok 09:11:24.0906 2540 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll 09:11:24.0906 2540 hkmsvc - ok 09:11:24.0921 2540 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys 09:11:24.0921 2540 hpn - ok 09:11:24.0968 2540 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys 09:11:24.0968 2540 HTTP - ok 09:11:24.0984 2540 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll 09:11:24.0984 2540 HTTPFilter - ok 09:11:25.0000 2540 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys 09:11:25.0000 2540 i2omgmt - ok 09:11:25.0015 2540 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys 09:11:25.0015 2540 i2omp - ok 09:11:25.0015 2540 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 09:11:25.0015 2540 i8042prt - ok 09:11:25.0281 2540 ialm (28423512370705aeda6a652fedb25468) C:\WINDOWS\system32\DRIVERS\igxpmp32.sys 09:11:25.0312 2540 ialm - ok 09:11:25.0406 2540 iaStor (997e8f5939f2d12cd9f2e6b395724c16) C:\WINDOWS\system32\drivers\iaStor.sys 09:11:25.0406 2540 iaStor - ok 09:11:25.0515 2540 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 09:11:25.0531 2540 idsvc - ok 09:11:25.0546 2540 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 09:11:25.0546 2540 Imapi - ok 09:11:25.0578 2540 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe 09:11:25.0578 2540 ImapiService - ok 09:11:25.0593 2540 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys 09:11:25.0593 2540 ini910u - ok 09:11:25.0812 2540 IntcAzAudAddService (17bbbabb21f86b650b2626045a9d016c) C:\WINDOWS\system32\drivers\RtkHDAud.sys 09:11:25.0828 2540 IntcAzAudAddService - ok 09:11:25.0921 2540 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys 09:11:25.0921 2540 IntelIde - ok 09:11:25.0968 2540 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys 09:11:25.0968 2540 intelppm - ok 09:11:25.0984 2540 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 09:11:25.0984 2540 Ip6Fw - ok 09:11:26.0000 2540 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 09:11:26.0000 2540 IpFilterDriver - ok 09:11:26.0015 2540 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 09:11:26.0015 2540 IpInIp - ok 09:11:26.0015 2540 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 09:11:26.0015 2540 IpNat - ok 09:11:26.0031 2540 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 09:11:26.0031 2540 IPSec - ok 09:11:26.0046 2540 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 09:11:26.0046 2540 IRENUM - ok 09:11:26.0062 2540 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys 09:11:26.0062 2540 isapnp - ok 09:11:26.0171 2540 JavaQuickStarterService (8c5c59e1921eca3607390a1f641556df) C:\Program Files\Java\jre7\bin\jqs.exe 09:11:26.0171 2540 JavaQuickStarterService - ok 09:11:26.0187 2540 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 09:11:26.0187 2540 Kbdclass - ok 09:11:26.0187 2540 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys 09:11:26.0203 2540 kbdhid - ok 09:11:26.0218 2540 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 09:11:26.0218 2540 kmixer - ok 09:11:26.0234 2540 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys 09:11:26.0234 2540 KSecDD - ok 09:11:26.0265 2540 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll 09:11:26.0265 2540 lanmanserver - ok 09:11:26.0312 2540 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll 09:11:26.0312 2540 lanmanworkstation - ok 09:11:26.0312 2540 lbrtfdc - ok 09:11:26.0328 2540 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll 09:11:26.0343 2540 LmHosts - ok 09:11:26.0359 2540 McciCMService (e6cb119ef2e148eaa1a247343550756e) C:\Program Files\Common Files\Motive\McciCMService.exe 09:11:26.0375 2540 McciCMService - ok 09:11:26.0375 2540 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll 09:11:26.0375 2540 Messenger - ok 09:11:26.0390 2540 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 09:11:26.0390 2540 mnmdd - ok 09:11:26.0421 2540 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe 09:11:26.0421 2540 mnmsrvc - ok 09:11:26.0437 2540 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys 09:11:26.0437 2540 Modem - ok 09:11:26.0437 2540 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys 09:11:26.0453 2540 Mouclass - ok 09:11:26.0468 2540 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys 09:11:26.0468 2540 mouhid - ok 09:11:26.0484 2540 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 09:11:26.0484 2540 MountMgr - ok 09:11:26.0500 2540 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys 09:11:26.0500 2540 mraid35x - ok 09:11:26.0500 2540 MREMP50 - ok 09:11:26.0500 2540 MRESP50 - ok 09:11:26.0515 2540 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 09:11:26.0515 2540 MRxDAV - ok 09:11:26.0562 2540 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 09:11:26.0562 2540 MRxSmb - ok 09:11:26.0562 2540 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe 09:11:26.0562 2540 MSDTC - ok 09:11:26.0562 2540 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 09:11:26.0562 2540 Msfs - ok 09:11:26.0578 2540 MSIServer - ok 09:11:26.0593 2540 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 09:11:26.0593 2540 MSKSSRV - ok 09:11:26.0593 2540 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 09:11:26.0593 2540 MSPCLOCK - ok 09:11:26.0609 2540 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 09:11:26.0609 2540 MSPQM - ok 09:11:26.0609 2540 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 09:11:26.0609 2540 mssmbios - ok 09:11:26.0625 2540 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys 09:11:26.0625 2540 Mup - ok 09:11:26.0656 2540 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll 09:11:26.0656 2540 napagent - ok 09:11:26.0671 2540 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 09:11:26.0671 2540 NDIS - ok 09:11:26.0687 2540 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 09:11:26.0687 2540 NdisTapi - ok 09:11:26.0703 2540 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 09:11:26.0703 2540 Ndisuio - ok 09:11:26.0703 2540 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 09:11:26.0703 2540 NdisWan - ok 09:11:26.0718 2540 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys 09:11:26.0718 2540 NDProxy - ok 09:11:26.0734 2540 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 09:11:26.0734 2540 NetBIOS - ok 09:11:26.0750 2540 NetBT (0033cb64096aac19fca0654b0ed830ba) C:\WINDOWS\system32\DRIVERS\netbt.sys 09:11:26.0750 2540 NetBT ( Virus.Win32.ZAccess.k ) - infected 09:11:26.0750 2540 NetBT - detected Virus.Win32.ZAccess.k (0) 09:11:26.0765 2540 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe 09:11:26.0781 2540 NetDDE - ok 09:11:26.0781 2540 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe 09:11:26.0781 2540 NetDDEdsdm - ok 09:11:26.0796 2540 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 09:11:26.0796 2540 Netlogon - ok 09:11:26.0812 2540 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll 09:11:26.0812 2540 Netman - ok 09:11:26.0890 2540 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 09:11:26.0906 2540 NetTcpPortSharing - ok 09:11:26.0921 2540 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll 09:11:26.0937 2540 Nla - ok 09:11:26.0937 2540 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 09:11:26.0937 2540 Npfs - ok 09:11:26.0968 2540 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 09:11:26.0968 2540 Ntfs - ok 09:11:26.0968 2540 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 09:11:26.0968 2540 NtLmSsp - ok 09:11:27.0015 2540 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll 09:11:27.0015 2540 NtmsSvc - ok 09:11:27.0031 2540 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 09:11:27.0031 2540 Null - ok 09:11:27.0140 2540 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 09:11:27.0156 2540 nv - ok 09:11:27.0234 2540 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 09:11:27.0234 2540 NwlnkFlt - ok 09:11:27.0250 2540 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 09:11:27.0250 2540 NwlnkFwd - ok 09:11:27.0343 2540 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 09:11:27.0343 2540 odserv - ok 09:11:27.0375 2540 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:11:27.0375 2540 ose - ok 09:11:27.0406 2540 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys 09:11:27.0406 2540 Parport - ok 09:11:27.0421 2540 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 09:11:27.0421 2540 PartMgr - ok 09:11:27.0437 2540 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys 09:11:27.0437 2540 ParVdm - ok 09:11:27.0453 2540 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys 09:11:27.0453 2540 PCI - ok 09:11:27.0453 2540 PCIDump - ok 09:11:27.0453 2540 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys 09:11:27.0453 2540 PCIIde - ok 09:11:27.0484 2540 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys 09:11:27.0484 2540 Pcmcia - ok 09:11:27.0484 2540 PDCOMP - ok 09:11:27.0484 2540 PDFRAME - ok 09:11:27.0500 2540 PDRELI - ok 09:11:27.0500 2540 PDRFRAME - ok 09:11:27.0515 2540 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys 09:11:27.0515 2540 perc2 - ok 09:11:27.0531 2540 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys 09:11:27.0531 2540 perc2hib - ok 09:11:27.0562 2540 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe 09:11:27.0578 2540 PlugPlay - ok 09:11:27.0593 2540 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 09:11:27.0593 2540 PolicyAgent - ok 09:11:27.0609 2540 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 09:11:27.0609 2540 PptpMiniport - ok 09:11:27.0625 2540 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 09:11:27.0625 2540 ProtectedStorage - ok 09:11:27.0625 2540 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 09:11:27.0625 2540 PSched - ok 09:11:27.0656 2540 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 09:11:27.0656 2540 Ptilink - ok 09:11:27.0671 2540 PxHelp20 (03e0fe281823ba64b3782f5b38950e73) C:\WINDOWS\system32\Drivers\PxHelp20.sys 09:11:27.0671 2540 PxHelp20 - ok 09:11:27.0687 2540 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys 09:11:27.0687 2540 ql1080 - ok 09:11:27.0687 2540 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys 09:11:27.0687 2540 Ql10wnt - ok 09:11:27.0703 2540 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys 09:11:27.0703 2540 ql12160 - ok 09:11:27.0703 2540 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys 09:11:27.0703 2540 ql1240 - ok 09:11:27.0718 2540 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys 09:11:27.0718 2540 ql1280 - ok 09:11:27.0734 2540 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 09:11:27.0734 2540 RasAcd - ok 09:11:27.0765 2540 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll 09:11:27.0765 2540 RasAuto - ok 09:11:27.0765 2540 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 09:11:27.0765 2540 Rasl2tp - ok 09:11:27.0796 2540 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll 09:11:27.0796 2540 RasMan - ok 09:11:27.0796 2540 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 09:11:27.0796 2540 RasPppoe - ok 09:11:27.0796 2540 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 09:11:27.0812 2540 Raspti - ok 09:11:27.0812 2540 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 09:11:27.0828 2540 Rdbss - ok 09:11:27.0828 2540 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 09:11:27.0828 2540 RDPCDD - ok 09:11:27.0843 2540 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 09:11:27.0843 2540 rdpdr - ok 09:11:27.0875 2540 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys 09:11:27.0890 2540 RDPWD - ok 09:11:27.0906 2540 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe 09:11:27.0906 2540 RDSessMgr - ok 09:11:27.0921 2540 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys 09:11:27.0921 2540 redbook - ok 09:11:27.0937 2540 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll 09:11:27.0953 2540 RemoteAccess - ok 09:11:27.0968 2540 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe 09:11:27.0968 2540 RpcLocator - ok 09:11:28.0031 2540 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\System32\rpcss.dll 09:11:28.0031 2540 RpcSs - ok 09:11:28.0046 2540 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe 09:11:28.0046 2540 RSVP - ok 09:11:28.0078 2540 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 09:11:28.0078 2540 SamSs - ok 09:11:28.0093 2540 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe 09:11:28.0093 2540 SCardSvr - ok 09:11:28.0125 2540 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll 09:11:28.0125 2540 Schedule - ok 09:11:28.0171 2540 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 09:11:28.0171 2540 Secdrv - ok 09:11:28.0187 2540 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll 09:11:28.0187 2540 seclogon - ok 09:11:28.0187 2540 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll 09:11:28.0187 2540 SENS - ok 09:11:28.0218 2540 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 09:11:28.0218 2540 serenum - ok 09:11:28.0234 2540 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys 09:11:28.0234 2540 Serial - ok 09:11:28.0250 2540 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 09:11:28.0250 2540 Sfloppy - ok 09:11:28.0265 2540 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll 09:11:28.0265 2540 SharedAccess - ok 09:11:28.0312 2540 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 09:11:28.0312 2540 ShellHWDetection - ok 09:11:28.0312 2540 Simbad - ok 09:11:28.0375 2540 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys 09:11:28.0375 2540 sisagp - ok 09:11:28.0406 2540 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys 09:11:28.0406 2540 Sparrow - ok 09:11:28.0421 2540 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 09:11:28.0421 2540 splitter - ok 09:11:28.0437 2540 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe 09:11:28.0437 2540 Spooler - ok 09:11:28.0500 2540 sprtsvc_dellsupportcenter - ok 09:11:28.0531 2540 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys 09:11:28.0531 2540 sr - ok 09:11:28.0546 2540 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll 09:11:28.0546 2540 srservice - ok 09:11:28.0578 2540 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys 09:11:28.0578 2540 Srv - ok 09:11:28.0593 2540 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll 09:11:28.0593 2540 SSDPSRV - ok 09:11:28.0625 2540 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll 09:11:28.0625 2540 stisvc - ok 09:11:28.0671 2540 stllssvr (7489520e98a119b5a9a00857f4f87d16) C:\Program Files\Common Files\SureThing Shared\stllssvr.exe 09:11:28.0671 2540 stllssvr - ok 09:11:28.0671 2540 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 09:11:28.0671 2540 swenum - ok 09:11:28.0687 2540 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 09:11:28.0687 2540 swmidi - ok 09:11:28.0687 2540 SwPrv - ok 09:11:28.0703 2540 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys 09:11:28.0703 2540 symc810 - ok 09:11:28.0718 2540 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys 09:11:28.0718 2540 symc8xx - ok 09:11:28.0718 2540 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys 09:11:28.0718 2540 sym_hi - ok 09:11:28.0718 2540 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys 09:11:28.0718 2540 sym_u3 - ok 09:11:28.0734 2540 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 09:11:28.0734 2540 sysaudio - ok 09:11:28.0750 2540 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe 09:11:28.0750 2540 SysmonLog - ok 09:11:28.0765 2540 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll 09:11:28.0765 2540 TapiSrv - ok 09:11:28.0812 2540 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys 09:11:28.0812 2540 Tcpip - ok 09:11:28.0828 2540 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 09:11:28.0828 2540 TDPIPE - ok 09:11:28.0843 2540 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 09:11:28.0843 2540 TDTCP - ok 09:11:28.0859 2540 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 09:11:28.0859 2540 TermDD - ok 09:11:28.0890 2540 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll 09:11:28.0890 2540 TermService - ok 09:11:28.0921 2540 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 09:11:28.0921 2540 Themes - ok 09:11:28.0953 2540 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys 09:11:28.0953 2540 TosIde - ok 09:11:28.0968 2540 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll 09:11:28.0968 2540 TrkWks - ok 09:11:29.0000 2540 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 09:11:29.0000 2540 Udfs - ok 09:11:29.0015 2540 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys 09:11:29.0015 2540 ultra - ok 09:11:29.0031 2540 UMWdf (c81b8635dee0d3ef5f64b3dd643023a5) C:\WINDOWS\system32\wdfmgr.exe 09:11:29.0031 2540 UMWdf - ok 09:11:29.0046 2540 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 09:11:29.0046 2540 Update - ok 09:11:29.0078 2540 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll 09:11:29.0078 2540 upnphost - ok 09:11:29.0078 2540 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe 09:11:29.0078 2540 UPS - ok 09:11:29.0093 2540 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 09:11:29.0093 2540 usbccgp - ok 09:11:29.0109 2540 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys 09:11:29.0109 2540 usbehci - ok 09:11:29.0125 2540 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 09:11:29.0125 2540 usbhub - ok 09:11:29.0140 2540 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 09:11:29.0156 2540 usbprint - ok 09:11:29.0187 2540 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 09:11:29.0187 2540 usbscan - ok 09:11:29.0203 2540 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 09:11:29.0203 2540 USBSTOR - ok 09:11:29.0203 2540 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 09:11:29.0203 2540 usbuhci - ok 09:11:29.0218 2540 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 09:11:29.0218 2540 VgaSave - ok 09:11:29.0234 2540 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 09:11:29.0234 2540 viaagp - ok 09:11:29.0234 2540 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 09:11:29.0234 2540 ViaIde - ok 09:11:29.0265 2540 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys 09:11:29.0265 2540 VolSnap - ok 09:11:29.0281 2540 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe 09:11:29.0281 2540 VSS - ok 09:11:29.0312 2540 w32time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll 09:11:29.0328 2540 w32time - ok 09:11:29.0328 2540 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 09:11:29.0328 2540 Wanarp - ok 09:11:29.0328 2540 WDICA - ok 09:11:29.0343 2540 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 09:11:29.0343 2540 wdmaud - ok 09:11:29.0359 2540 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll 09:11:29.0359 2540 WebClient - ok 09:11:29.0437 2540 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll 09:11:29.0437 2540 winmgmt - ok 09:11:29.0468 2540 WmdmPmSN (a477391b7a8b0a0daabadb17cf533a4b) C:\WINDOWS\system32\MsPMSNSv.dll 09:11:29.0468 2540 WmdmPmSN - ok 09:11:29.0500 2540 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe 09:11:29.0500 2540 WmiApSrv - ok 09:11:29.0515 2540 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys 09:11:29.0515 2540 WS2IFSL - ok 09:11:29.0546 2540 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll 09:11:29.0546 2540 wscsvc - ok 09:11:29.0562 2540 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll 09:11:29.0562 2540 wuauserv - ok 09:11:29.0625 2540 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll 09:11:29.0625 2540 WZCSVC - ok 09:11:29.0656 2540 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll 09:11:29.0656 2540 xmlprov - ok 09:11:29.0671 2540 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0 09:11:29.0843 2540 \Device\Harddisk0\DR0 - ok 09:11:29.0843 2540 MBR (0x1B8) (777134b73bedf4b23a42ea7d17861349) \Device\Harddisk1\DR4 09:11:37.0859 2540 \Device\Harddisk1\DR4 - ok 09:11:37.0875 2540 Boot (0x1200) (8ff352ad3b5dce90d136aacdc4bda6c8) \Device\Harddisk0\DR0\Partition0 09:11:37.0875 2540 \Device\Harddisk0\DR0\Partition0 - ok 09:11:37.0890 2540 ============================================================ 09:11:37.0890 2540 Scan finished 09:11:37.0890 2540 ============================================================ 09:11:37.0890 0488 Detected object count: 1 09:11:37.0890 0488 Actual detected object count: 1 09:12:28.0140 0488 C:\WINDOWS\system32\DRIVERS\netbt.sys - copied to quarantine 09:12:28.0156 0488 VerifyFileNameVersionInfo: GetFileVersionInfoSizeW(C:\WINDOWS\system32\drivers\netbt.sys) error 1813 09:12:30.0859 0488 Backup copy found, using it.. 09:12:30.0859 0488 C:\WINDOWS\system32\DRIVERS\netbt.sys - will be cured on reboot 09:12:31.0593 0488 NetBT ( Virus.Win32.ZAccess.k ) - User select action: Cure 09:12:35.0703 2216 Deinitialize success